Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 08.11.2018 Gestart door Vlught (Beheerder) op DESKTOP-QJFQFVL (09-11-2018 22:42:35) Gestart vanaf C:\Users\Vlught\Desktop Geladen Profielen: Vlught (Beschikbare Profielen: User & Vlught) Platform: Windows 10 Home Versie 1809 17763.55 (X64) Taal: Nederlands (Nederland) Internet Explorer Versie 11 (Standaardbrowser: Chrome) Boot Modus: Normal Handleiding voor Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, zal het proces worden gesloten. Het bestand zal niet worden verplaatst.) (AMD) C:\Windows\System32\atiesrxx.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (AMD) C:\Windows\System32\atieclxx.exe (Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe (Symantec Corporation) C:\Program Files (x86)\Norton Security\Engine\22.8.0.50\ns.exe (Symantec Corporation) C:\Program Files (x86)\Norton Security\Engine\22.8.0.50\ns.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Windows\System32\SecurityHealthSystray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11810.1001.12.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe (Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe (Piriform Ltd) C:\Program Files\CCleaner\CCUpdate.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\cmd.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Symantec Corporation) C:\Program Files (x86)\Norton Security\Engine\22.8.0.50\conathst.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Register (gefilterd) =========================== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [SecurityHealth] => C:\Windows\system32\SecurityHealthSystray.exe [83968 2018-09-15] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18384360 2017-06-29] (Realtek Semiconductor) HKU\S-1-5-21-118719308-4287615939-2223386079-1003\...\Run: [Discord] => C:\Users\Vlught\AppData\Local\Discord\app-0.0.301\Discord.exe [57816920 2018-04-30] (Discord Inc.) HKU\S-1-5-21-118719308-4287615939-2223386079-1003\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [19467544 2018-10-23] (Piriform Ltd) HKU\S-1-5-21-118719308-4287615939-2223386079-1003\...\Run: [EpicGamesLauncher] => F:\Fortnite\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [34910608 2018-11-07] (Epic Games, Inc.) ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist en een registeritem is, wordt het verwijderd of hersteld naar de standaard.) Hosts: Er zijn meer dan één item in Hosts. Zie Hosts deel van Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{70d079fb-3ffe-4250-b94d-b266ad649922}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/ HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-118719308-4287615939-2223386079-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/ BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Security\Engine64\22.8.0.50\coIEPlg.dll [2016-09-23] (Symantec Corporation) BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Security\Engine\22.8.0.50\coIEPlg.dll [2016-09-23] (Symantec Corporation) Edge: ====== Edge Extension: (BookReader) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets [2018-09-15] Edge Extension: (PinJSAPI) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [2018-09-15] FireFox: ======== FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NS_22.5.2.15\coFFAddon FF Extension: (Norton Security Toolbar) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NS_22.5.2.15\coFFAddon [2018-11-09] [Verouderd] FF HKLM-x32\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NS_22.5.2.15\coFFAddon FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-11-06] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-11-06] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-10-19] (Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\Vlught\AppData\Local\Google\Chrome\User Data\Default [2018-11-09] CHR Extension: (Presentaties) - C:\Users\Vlught\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-11-06] CHR Extension: (Documenten) - C:\Users\Vlught\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-11-06] CHR Extension: (Google Drive) - C:\Users\Vlught\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-11-06] CHR Extension: (YouTube) - C:\Users\Vlught\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-11-06] CHR Extension: (Norton Security Toolbar) - C:\Users\Vlught\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe [2018-11-06] CHR Extension: (Spreadsheets) - C:\Users\Vlught\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-11-06] CHR Extension: (Offline Documenten) - C:\Users\Vlught\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-11-06] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\Vlught\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-11-06] CHR Extension: (Gmail) - C:\Users\Vlught\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-11-06] CHR Extension: (Chrome Media Router) - C:\Users\Vlught\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-11-06] CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Security\Engine\22.8.0.50\Exts\Chrome.crx [2018-11-08] CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Security\Engine\22.8.0.50\Exts\Chrome.crx [2018-11-08] CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx ==================== Services (gefilterd) ==================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7356680 2018-11-06] () R2 BrokerInfrastructure; C:\Windows\System32\psmsrv.dll [241664 2018-09-15] (Microsoft Corporation) S3 cbdhsvc; C:\Windows\System32\cbdhsvc.dll [961024 2018-09-15] (Microsoft Corporation) S3 ConsentUxUserSvc; C:\Windows\System32\ConsentUxClient.dll [157696 2018-09-15] (Microsoft Corporation) S3 DisplayEnhancementService; C:\Windows\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll [914944 2018-09-15] (Microsoft Corporation) R2 NS; C:\Program Files (x86)\Norton Security\Engine\22.8.0.50\NS.exe [289080 2016-09-24] (Symantec Corporation) S3 perceptionsimulation; C:\Windows\system32\PerceptionSimulation\PerceptionSimulationService.exe [78848 2018-09-15] (Microsoft Corporation) S3 SessionEnv; C:\Windows\SysWOW64\sessenv.dll [409088 2018-09-15] (Microsoft Corporation) [Bestand niet getekend] S4 ssh-agent; C:\Windows\System32\OpenSSH\ssh-agent.exe [384512 2018-09-15] () S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\NisSrv.exe [3917016 2018-11-06] (Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MsMpEng.exe [114208 2018-11-06] (Microsoft Corporation) S3 WManSvc; C:\Windows\system32\Windows.Management.Service.dll [370176 2018-09-15] (Microsoft Corporation) ===================== Drivers (gefilterd) ====================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R3 amdkmdag; C:\Windows\System32\DriverStore\FileRepository\c0318486.inf_amd64_11ba0b4b7cc81d52\atikmdag.sys [38774688 2017-10-13] (Advanced Micro Devices, Inc.) R3 amdkmdap; C:\Windows\System32\DriverStore\FileRepository\c0318486.inf_amd64_11ba0b4b7cc81d52\atikmpag.sys [549792 2017-10-13] (Advanced Micro Devices, Inc.) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [111112 2017-11-17] (Advanced Micro Devices) R1 BasicDisplay; C:\Windows\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_5103ac179273be89\BasicDisplay.sys [68096 2018-09-15] (Microsoft Corporation) R1 BasicRender; C:\Windows\System32\DriverStore\FileRepository\basicrender.inf_amd64_0b8d03c3bc0e7fd9\BasicRender.sys [37376 2018-09-15] (Microsoft Corporation) R1 BHDrvx64; C:\Program Files (x86)\Norton Security\NortonData\22.5.2.15\Definitions\BASHDefs\20181106.001\BHDrvx64.sys [1925104 2018-11-05] (Symantec Corporation) S3 BthMini; C:\Windows\System32\drivers\BTHMINI.sys [34816 2018-09-15] (Microsoft Corporation) R1 ccSet_NS; C:\Windows\system32\drivers\NSx64\1608000.032\ccSetx64.sys [174328 2016-06-02] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [515776 2018-11-07] (Symantec Corporation) S3 hidspi; C:\Windows\System32\drivers\hidspi.sys [60928 2018-09-15] (Microsoft Corporation) S3 iaLPSS2i_GPIO2_CNL; C:\Windows\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128 2018-09-15] (Intel Corporation) S3 iaLPSS2i_GPIO2_GLK; C:\Windows\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256 2018-09-15] (Intel Corporation) S3 iaLPSS2i_I2C_CNL; C:\Windows\System32\drivers\iaLPSS2i_I2C_CNL.sys [180736 2018-09-15] (Intel Corporation) S3 iaLPSS2i_I2C_GLK; C:\Windows\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664 2018-09-15] (Intel Corporation) R1 IDSVia64; C:\Program Files (x86)\Norton Security\NortonData\22.5.2.15\Definitions\IPSDefs\20181108.061\IDSvia64.sys [1305072 2018-11-05] (Symantec Corporation) S3 MbbCx; C:\Windows\System32\drivers\MbbCx.sys [290816 2018-09-15] (Microsoft Corporation) S3 Microsoft_Bluetooth_AvrcpTransport; C:\Windows\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [53760 2018-09-15] (Microsoft Corporation) S3 PktMon; C:\Windows\System32\drivers\PktMon.sys [85504 2018-09-15] (Microsoft Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [605696 2018-09-15] (Realtek ) S0 SmartSAMD; C:\Windows\System32\drivers\SmartSAMD.sys [219960 2018-09-15] (Microsemi Corportation) R1 SRTSP; C:\Windows\System32\Drivers\NSx64\1608000.032\SRTSP64.SYS [784624 2016-09-23] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\NSx64\1608000.032\SRTSPX64.SYS [49400 2016-09-23] (Symantec Corporation) R0 SymEFASI; C:\Windows\System32\drivers\NSx64\1608000.032\SYMEFASI64.SYS [1628888 2016-09-23] (Symantec Corporation) S0 SymELAM; C:\Windows\System32\drivers\NSx64\1608000.032\SymELAM.sys [24192 2015-07-11] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [100592 2018-11-08] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\NSx64\1608000.032\Ironx64.SYS [289520 2016-09-23] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NSx64\1608000.032\SYMNETS.SYS [567512 2016-09-23] (Symantec Corporation) S3 UcmUcsiAcpiClient; C:\Windows\System32\drivers\UcmUcsiAcpiClient.sys [31232 2018-09-15] (Microsoft Corporation) S3 UcmUcsiCx0101; C:\Windows\System32\Drivers\UcmUcsiCx.sys [99840 2018-09-15] (Microsoft Corporation) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [46184 2018-11-06] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [328696 2018-11-06] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [60408 2018-11-06] (Microsoft Corporation) R3 WinQuic; C:\Windows\System32\drivers\winquic.sys [156984 2018-09-15] (Microsoft Corporation) S3 EraserUtilDrv11820; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11820.sys [X] S3 NAVENG; \??\C:\Program Files (x86)\Norton Security\NortonData\22.5.2.15\Definitions\SDSDefs\20181107.009\ENG64.SYS [X] S3 NAVEX15; \??\C:\Program Files (x86)\Norton Security\NortonData\22.5.2.15\Definitions\SDSDefs\20181107.009\EX64.SYS [X] ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) NETSVC: WManSvc -> C:\Windows\system32\Windows.Management.Service.dll (Microsoft Corporation) ==================== Een Maand Aangemaakt bestanden en mappen ======== (Als een item is opgenomen in de fixlist, word de map of het bestand verplaatst.) 2018-11-09 22:42 - 2018-11-09 22:42 - 000015553 _____ C:\Users\Vlught\Desktop\FRST.txt 2018-11-09 22:42 - 2018-11-09 22:42 - 000000000 ____D C:\Users\Vlught\Desktop\FRST-OlderVersion 2018-11-09 22:42 - 2018-11-09 22:42 - 000000000 ____D C:\FRST 2018-11-09 22:41 - 2018-11-09 22:42 - 002415616 _____ (Farbar) C:\Users\Vlught\Desktop\FRST64.exe 2018-11-09 22:13 - 2018-11-09 22:30 - 000000000 ____D C:\Windows\System32\Tasks\Norton Security 2018-11-09 22:08 - 2018-11-09 22:08 - 000003386 _____ C:\Windows\System32\Tasks\Norton WSC Integration 2018-11-09 21:03 - 2018-11-09 21:03 - 000000000 ____D C:\$Windows.~BT 2018-11-09 21:00 - 2018-11-09 21:08 - 000000000 ___HD C:\$SysReset 2018-11-09 17:58 - 2018-11-09 17:58 - 000000000 ____D C:\Users\Vlught\Documents\League of Legends 2018-11-09 17:48 - 2018-11-09 17:48 - 000000741 _____ C:\Users\Public\Desktop\League of Legends.lnk 2018-11-09 17:48 - 2018-11-09 17:48 - 000000000 ____D C:\Riot Games 2018-11-09 17:48 - 2018-11-09 17:48 - 000000000 ____D C:\ProgramData\Riot Games 2018-11-09 17:48 - 2018-11-09 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends 2018-11-09 17:48 - 2008-07-31 10:41 - 000068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2018-11-09 17:48 - 2008-07-31 10:40 - 000509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2018-11-09 17:48 - 2008-07-12 08:18 - 003851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2018-11-09 17:48 - 2008-07-12 08:18 - 001493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2018-11-09 17:48 - 2008-07-12 08:18 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2018-11-09 17:47 - 2018-11-09 17:47 - 087399664 _____ (Riot Games, Inc) C:\Users\Vlught\Downloads\League of Legends installer EUW.exe 2018-11-08 19:55 - 2018-11-08 19:55 - 000165405 _____ C:\Users\Vlught\Downloads\specy Chris.txt 2018-11-08 14:29 - 2018-11-08 14:34 - 000201440 _____ C:\Windows\ntbtlog.txt 2018-11-07 18:01 - 2018-11-07 18:01 - 000000298 _____ C:\Users\Vlught\Desktop\Fortnite.url 2018-11-07 16:29 - 2018-11-07 16:31 - 000000000 ____D C:\ProgramData\Epic 2018-11-07 16:29 - 2018-11-07 16:29 - 000000897 _____ C:\Users\Public\Desktop\Epic Games Launcher.lnk 2018-11-07 16:29 - 2018-11-07 16:29 - 000000897 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk 2018-11-07 16:29 - 2018-11-07 16:29 - 000000000 ____D C:\Users\Vlught\AppData\Local\UnrealEngineLauncher 2018-11-07 16:29 - 2018-11-07 16:29 - 000000000 ____D C:\Users\Vlught\AppData\Local\EpicGamesLauncher 2018-11-07 16:28 - 2018-11-07 16:29 - 033542144 _____ C:\Users\Vlught\Downloads\EpicInstaller-7.16.0-fortnite-0811629c68e840a181f8626a92832230.msi 2018-11-07 12:55 - 2018-11-07 13:01 - 000000000 ____D C:\Users\Vlught\Downloads\backups 2018-11-07 12:47 - 2018-11-07 12:47 - 000388608 _____ (Trend Micro Inc.) C:\Users\Vlught\Downloads\HijackThis.exe 2018-11-07 12:32 - 2018-11-07 12:32 - 000000085 _____ C:\Windows\wininit.ini 2018-11-07 12:30 - 2018-11-09 20:21 - 000004210 _____ C:\Windows\System32\Tasks\CCleaner Update 2018-11-07 12:30 - 2018-11-07 12:30 - 000002872 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2018-11-07 12:30 - 2018-11-07 12:30 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2018-11-07 12:30 - 2018-11-07 12:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2018-11-07 12:30 - 2018-11-07 12:30 - 000000000 ____D C:\Program Files\CCleaner 2018-11-07 12:29 - 2018-11-07 12:30 - 018072104 _____ (Piriform Ltd) C:\Users\Vlught\Downloads\ccsetup548.exe 2018-11-07 12:20 - 2018-11-09 22:20 - 000000000 ____D C:\Windows\System32\Tasks\Remediation 2018-11-07 12:20 - 2018-11-07 12:20 - 000000000 ____D C:\Program Files\Common Files\AV 2018-11-06 17:49 - 2018-11-06 17:50 - 000000000 ____D C:\Program Files\Common Files\logishrd 2018-11-06 17:39 - 2018-11-06 17:39 - 000000000 ____D C:\Users\Vlught\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2018-11-06 17:38 - 2018-11-07 16:32 - 000000000 ____D C:\Users\Vlught\AppData\Roaming\discord 2018-11-06 17:38 - 2018-11-06 17:39 - 000000000 ____D C:\Users\Vlught\AppData\Local\Discord 2018-11-06 17:38 - 2018-11-06 17:38 - 000000000 ____D C:\Users\Vlught\AppData\Local\SquirrelTemp 2018-11-06 17:36 - 2018-11-06 17:36 - 000000080 ___SH C:\bootTel.dat 2018-11-06 16:49 - 2018-11-06 16:49 - 000003576 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2018-11-06 16:49 - 2018-11-06 16:49 - 000003452 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2018-11-06 16:49 - 2018-11-06 16:49 - 000002393 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-11-06 16:49 - 2018-11-06 16:49 - 000002352 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2018-11-06 16:49 - 2018-11-06 16:49 - 000000000 ____D C:\Users\Vlught\AppData\Roaming\Nero 2018-11-06 16:45 - 2018-09-15 08:31 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts.20181106-164521.backup 2018-11-06 16:08 - 2018-11-06 16:08 - 000000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2018-11-06 16:07 - 2018-11-07 12:32 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy 2018-11-06 15:48 - 2018-11-09 22:08 - 000002381 _____ C:\Users\Public\Desktop\Norton Security.lnk 2018-11-06 15:48 - 2018-11-08 15:54 - 000100592 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 2018-11-06 15:48 - 2018-11-08 15:54 - 000008319 _____ C:\Windows\system32\Drivers\SYMEVENT64x86.CAT 2018-11-06 15:48 - 2018-11-07 14:38 - 000101112 _____ (Symantec Corporation) C:\Windows\SMSS-PFRO0e38.tmp 2018-11-06 15:48 - 2018-11-06 15:48 - 000000000 ____D C:\Program Files\Common Files\Symantec Shared 2018-11-06 15:47 - 2018-11-09 22:08 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security 2018-11-06 15:47 - 2018-11-09 22:08 - 000000000 ____D C:\Windows\system32\Drivers\NSx64 2018-11-06 15:47 - 2018-11-06 15:48 - 000000000 ____D C:\ProgramData\Norton 2018-11-06 15:47 - 2018-11-06 15:47 - 000000000 ____D C:\Program Files (x86)\Norton Security 2018-11-06 15:46 - 2018-11-06 15:46 - 000000000 ____D C:\ProgramData\NortonInstaller 2018-11-06 15:46 - 2018-11-06 15:46 - 000000000 ____D C:\Program Files (x86)\NortonInstaller 2018-11-06 15:31 - 2018-11-08 14:29 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job 2018-11-06 14:56 - 2018-11-06 14:56 - 000000000 ____D C:\Users\Vlught\AppData\Local\mbam 2018-11-06 14:55 - 2018-11-06 14:55 - 000000000 ____D C:\Users\Vlught\AppData\Local\mbamtray 2018-11-06 14:52 - 2018-11-06 14:52 - 000025894 _____ C:\ProgramData\agent.uninstall.1541512315.bdinstall.bin 2018-11-06 14:21 - 2018-11-06 14:21 - 000000000 _____ C:\Users\Public\Shared Files 2018-11-06 14:16 - 2018-11-06 14:16 - 000000000 ____D C:\Users\Vlught\AppData\Local\Speech Graphics 2018-11-06 14:15 - 2018-11-06 14:15 - 000000000 ____D C:\Users\Vlught\AppData\Local\NVIDIA Corporation 2018-11-06 14:15 - 2018-11-06 14:15 - 000000000 ____D C:\Users\Vlught\AppData\Local\FortniteGame 2018-11-06 13:56 - 2018-11-06 13:56 - 000000000 ____D C:\Users\Vlught\AppData\Local\DBG 2018-11-06 12:28 - 2018-11-06 12:28 - 000034484 _____ C:\ProgramData\agent.update.1541503707.bdinstall.bin 2018-11-06 12:24 - 2018-11-06 12:24 - 000000000 ____D C:\ProgramData\Bitdefender 2018-11-06 12:23 - 2018-11-06 12:23 - 000000000 ____D C:\Users\Vlught\AppData\Roaming\QuickScan 2018-11-06 12:15 - 2018-11-06 12:15 - 000042959 _____ C:\ProgramData\agent.1541502930.bdinstall.bin 2018-11-06 12:15 - 2018-11-06 12:15 - 000000000 ____D C:\ProgramData\Bitdefender Agent 2018-11-06 12:14 - 2018-11-06 12:14 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer 2018-11-06 12:14 - 2018-11-06 12:14 - 000000000 ____D C:\Program Files\Reference Assemblies 2018-11-06 12:14 - 2018-11-06 12:14 - 000000000 ____D C:\Program Files\MSBuild 2018-11-06 12:14 - 2018-11-06 12:14 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2018-11-06 12:14 - 2018-11-06 12:14 - 000000000 ____D C:\Program Files (x86)\MSBuild 2018-11-06 12:13 - 2018-11-06 12:13 - 000000000 ____D C:\Users\Vlught\AppData\LocalLow\AMD 2018-11-06 12:13 - 2018-09-09 17:17 - 001167960 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll 2018-11-06 12:13 - 2018-09-09 17:16 - 000126064 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2018-11-06 12:13 - 2018-09-09 17:16 - 000035440 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2018-11-06 12:13 - 2018-08-29 17:56 - 000780376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll 2018-11-06 12:13 - 2018-08-29 17:56 - 000104560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2018-11-06 12:13 - 2018-08-29 17:56 - 000036896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2018-11-06 12:12 - 2018-11-07 15:02 - 000000000 ____D C:\Users\Vlught\AppData\Local\D3DSCache 2018-11-06 12:12 - 2018-11-06 12:12 - 000000000 ____D C:\Users\Vlught\AppData\Local\CEF 2018-11-06 12:12 - 2010-06-02 04:55 - 000527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2018-11-06 12:12 - 2010-06-02 04:55 - 000518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2018-11-06 12:12 - 2010-06-02 04:55 - 000077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2018-11-06 12:12 - 2010-06-02 04:55 - 000074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2018-11-06 12:12 - 2010-05-26 11:41 - 002526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2018-11-06 12:12 - 2010-05-26 11:41 - 002401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2018-11-06 12:12 - 2010-05-26 11:41 - 001998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2018-11-06 12:12 - 2010-05-26 11:41 - 001907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2018-11-06 12:12 - 2010-05-26 11:41 - 000511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2018-11-06 12:12 - 2010-05-26 11:41 - 000276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2018-11-06 12:12 - 2010-02-04 10:01 - 000024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2018-11-06 12:12 - 2010-02-04 10:01 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2018-11-06 12:12 - 2007-04-04 18:54 - 000107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2018-11-06 12:11 - 2018-11-06 12:12 - 000000000 ____D C:\Users\Vlught\AppData\Local\UnrealEngine 2018-11-06 12:11 - 2010-05-26 11:41 - 002106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2018-11-06 12:11 - 2010-05-26 11:41 - 001868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2018-11-06 12:11 - 2010-05-26 11:41 - 000470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2018-11-06 12:11 - 2010-05-26 11:41 - 000248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2018-11-06 12:11 - 2007-04-04 18:53 - 000081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2018-11-05 15:00 - 2018-11-05 15:00 - 000000000 ____D C:\Users\Vlught\Documents\Studie 2018-11-05 15:00 - 2018-11-05 15:00 - 000000000 ____D C:\Users\Vlught\Documents\Square Enix 2018-11-05 14:59 - 2018-11-05 14:59 - 000000000 ____D C:\Users\Vlught\Documents\Image-Line 2018-11-05 14:19 - 2018-11-05 14:19 - 000003160 _____ C:\Windows\System32\Tasks\StartCN 2018-11-05 14:19 - 2018-11-05 14:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings 2018-11-05 14:19 - 2018-11-05 14:19 - 000000000 ____D C:\Program Files (x86)\AMD 2018-11-05 14:18 - 2018-11-05 14:18 - 000000000 ____D C:\Users\Vlught\AppData\Local\Comms 2018-11-05 14:12 - 2018-11-05 14:12 - 026805248 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 023440384 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 022112072 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 020809216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 019024384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 012857856 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 012151296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 011744256 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 009951744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 009696768 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2018-11-05 14:12 - 2018-11-05 14:12 - 007861248 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 007645600 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 006543224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 006062592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 005584056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 005440016 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 004588032 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe 2018-11-05 14:12 - 2018-11-05 14:12 - 003981312 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 003662336 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys 2018-11-05 14:12 - 2018-11-05 14:12 - 003556864 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 003380736 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 003378176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2018-11-05 14:12 - 2018-11-05 14:12 - 002927096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2018-11-05 14:12 - 2018-11-05 14:12 - 002893312 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 002832896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 002721280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys 2018-11-05 14:12 - 2018-11-05 14:12 - 002625552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2018-11-05 14:12 - 2018-11-05 14:12 - 002488320 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys 2018-11-05 14:12 - 2018-11-05 14:12 - 002469648 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 002435488 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 002323904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 002186752 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 002020560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 001884672 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 001863168 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 001830912 _____ (Microsoft Corporation) C:\Windows\system32\rdpserverbase.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 001797128 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 001762816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 001672072 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 001590288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpserverbase.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 001520208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 001495552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 001466992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 001360896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2018-11-05 14:12 - 2018-11-05 14:12 - 001255952 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe 2018-11-05 14:12 - 2018-11-05 14:12 - 001050640 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe 2018-11-05 14:12 - 2018-11-05 14:12 - 000918496 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 000863752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys 2018-11-05 14:12 - 2018-11-05 14:12 - 000850960 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 000582248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 000535040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2018-11-05 14:12 - 2018-11-05 14:12 - 000487424 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 000469504 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 000439296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2018-11-05 14:12 - 2018-11-05 14:12 - 000403968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 000402376 _____ (Microsoft Corporation) C:\Windows\system32\SgrmEnclave.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 000398208 _____ (Microsoft Corporation) C:\Windows\system32\SgrmEnclave_secure.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 000343552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 000136192 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll 2018-11-05 14:12 - 2018-11-05 14:12 - 000104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpshell.dll 2018-11-05 14:10 - 2018-11-05 14:11 - 000000000 ____D C:\Windows\system32\MRT 2018-11-05 14:10 - 2018-11-05 14:10 - 136745976 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2018-11-05 14:08 - 2018-11-06 14:47 - 000000000 ____D C:\Users\Vlught\AppData\Local\PlaceholderTileLogoFolder 2018-11-05 14:08 - 2018-11-06 12:18 - 000003378 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-118719308-4287615939-2223386079-1003 2018-11-05 14:08 - 2018-11-06 12:18 - 000000000 ___RD C:\Users\Vlught\OneDrive 2018-11-05 14:07 - 2018-11-05 14:07 - 000000000 ___HD C:\Users\Vlught\MicrosoftEdgeBackups 2018-11-05 14:07 - 2018-11-05 14:07 - 000000000 ____D C:\Users\Vlught\AppData\Local\MicrosoftEdge 2018-11-05 14:06 - 2018-11-07 12:48 - 000000000 ____D C:\Users\Vlught\AppData\Local\VirtualStore 2018-11-05 14:06 - 2018-11-06 16:59 - 000000000 ____D C:\Users\Vlught\AppData\Local\Google 2018-11-05 14:06 - 2018-11-06 14:10 - 000000000 ____D C:\Users\Vlught\AppData\Local\Packages 2018-11-05 14:06 - 2018-11-05 14:16 - 000000000 ___RD C:\Users\Vlught\3D Objects 2018-11-05 14:06 - 2018-11-05 14:08 - 000000000 ____D C:\Users\Vlught\AppData\Local\AMD 2018-11-05 14:06 - 2018-11-05 14:06 - 000000000 ____D C:\Users\Vlught\AppData\Roaming\Adobe 2018-11-05 14:06 - 2018-11-05 14:06 - 000000000 ____D C:\Users\Vlught\AppData\Local\Publishers 2018-11-05 14:06 - 2018-11-05 14:06 - 000000000 ____D C:\Users\Vlught\AppData\Local\ConnectedDevicesPlatform 2018-11-05 14:05 - 2018-11-06 12:18 - 000002386 _____ C:\Users\Vlught\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-11-05 14:05 - 2018-11-05 14:08 - 000000000 ____D C:\Users\Vlught 2018-11-05 14:05 - 2018-11-05 14:05 - 000000020 ___SH C:\Users\Vlught\ntuser.ini 2018-11-05 14:05 - 2018-11-05 14:05 - 000000000 _SHDL C:\Users\Vlught\Sjablonen 2018-11-05 14:05 - 2018-11-05 14:05 - 000000000 _SHDL C:\Users\Vlught\Netwerkprinteromgeving 2018-11-05 14:05 - 2018-11-05 14:05 - 000000000 _SHDL C:\Users\Vlught\Mijn documenten 2018-11-05 14:05 - 2018-11-05 14:05 - 000000000 _SHDL C:\Users\Vlught\Menu Start 2018-11-05 14:05 - 2018-11-05 14:05 - 000000000 _SHDL C:\Users\Vlught\Documents\Mijn video's 2018-11-05 14:05 - 2018-11-05 14:05 - 000000000 _SHDL C:\Users\Vlught\Documents\Mijn muziek 2018-11-05 14:05 - 2018-11-05 14:05 - 000000000 _SHDL C:\Users\Vlught\Documents\Mijn afbeeldingen 2018-11-05 14:05 - 2018-11-05 14:05 - 000000000 _SHDL C:\Users\Vlught\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's 2018-11-05 14:05 - 2018-11-05 14:05 - 000000000 _SHDL C:\Users\Vlught\AppData\Local\Geschiedenis 2018-11-05 14:04 - 2018-11-09 21:03 - 000065536 _____ C:\Windows\system32\spu_storage.bin 2018-11-05 14:04 - 2018-11-05 14:20 - 000000000 ____D C:\AMD 2018-11-05 14:04 - 2018-11-05 14:19 - 000000000 ____D C:\Program Files\AMD 2018-11-05 14:04 - 2018-11-05 14:04 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies ==================== Een Maand Gewijzigd bestanden en mappen ======== (Als een item is opgenomen in de fixlist, word de map of het bestand verplaatst.) 2018-11-09 22:40 - 2018-09-29 10:49 - 000000000 ____D C:\Windows\system32\SleepStudy 2018-11-09 22:12 - 2018-09-29 11:00 - 001771828 _____ C:\Windows\system32\PerfStringBackup.INI 2018-11-09 22:12 - 2018-09-15 17:42 - 000785984 _____ C:\Windows\system32\perfh013.dat 2018-11-09 22:12 - 2018-09-15 17:42 - 000154002 _____ C:\Windows\system32\perfc013.dat 2018-11-09 22:12 - 2018-09-15 08:31 - 000000000 ____D C:\Windows\INF 2018-11-09 22:10 - 2018-09-15 08:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-11-09 22:08 - 2018-09-29 10:49 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2018-11-09 22:08 - 2018-09-15 08:33 - 000000000 ___HD C:\Windows\ELAMBKUP 2018-11-09 21:03 - 2018-09-15 08:23 - 000000000 ____D C:\Windows\CbsTemp 2018-11-09 21:03 - 2018-09-15 07:09 - 000524288 _____ C:\Windows\system32\config\BBI 2018-11-09 16:53 - 2018-09-15 08:33 - 000000000 ___HD C:\Program Files\WindowsApps 2018-11-09 16:53 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\AppReadiness 2018-11-07 12:33 - 2018-09-29 11:49 - 000000000 ____D C:\Windows\Panther 2018-11-07 12:32 - 2018-09-29 11:12 - 000000000 ____D C:\Program Files\VideoLAN 2018-11-07 12:24 - 2018-09-29 11:01 - 000000000 ____D C:\Program Files (x86)\InstallShield Installation Information 2018-11-06 21:16 - 2018-09-15 07:09 - 000032768 _____ C:\Windows\system32\config\ELAM 2018-11-06 16:49 - 2018-09-29 11:10 - 000000000 ____D C:\Program Files (x86)\Google 2018-11-06 14:21 - 2018-09-15 08:33 - 000000000 __SHD C:\Users\Public\Libraries 2018-11-06 12:17 - 2018-09-29 10:49 - 000000000 ____D C:\Windows\system32\Drivers\wd 2018-11-06 12:17 - 2018-09-15 08:33 - 000000000 ____D C:\Program Files\Windows Defender 2018-11-06 12:14 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\SysWOW64\MUI 2018-11-06 12:14 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\system32\MUI 2018-11-06 12:12 - 2018-09-29 11:00 - 000000000 ____D C:\ProgramData\Package Cache 2018-11-05 15:05 - 2018-09-15 07:09 - 000000000 ____D C:\Windows\servicing 2018-11-05 14:18 - 2018-09-29 10:58 - 000000000 ____D C:\ProgramData\Packages 2018-11-05 14:16 - 2018-09-29 10:55 - 000000000 __RHD C:\Users\Public\AccountPictures 2018-11-05 14:16 - 2018-09-29 10:49 - 000257976 _____ C:\Windows\system32\FNTCACHE.DAT 2018-11-05 14:16 - 2018-09-15 17:44 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2018-11-05 14:16 - 2018-09-15 17:44 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2018-11-05 14:16 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\system32\appraiser 2018-11-05 14:16 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\bcastdvr 2018-11-05 14:10 - 2018-09-29 11:11 - 000004562 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2018-11-05 14:10 - 2018-09-29 11:11 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2018-11-05 14:09 - 2018-09-29 11:10 - 000000000 ____D C:\ProgramData\Adobe 2018-11-05 14:09 - 2018-09-29 10:58 - 000559880 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2018-11-05 14:06 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\system32\WinBioDatabase 2018-11-05 14:06 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\appcompat 2018-11-05 13:57 - 2018-09-29 10:55 - 000000000 ____D C:\Windows\SysWOW64\RTCOM 2018-11-05 13:56 - 2018-09-15 08:31 - 000028672 _____ C:\Windows\system32\config\BCD-Template ==================== Bamital & volsnap ====================== (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) C:\Windows\system32\winlogon.exe => Bestand is getekend C:\Windows\system32\wininit.exe => Bestand is getekend C:\Windows\explorer.exe => Bestand is getekend C:\Windows\SysWOW64\explorer.exe => Bestand is getekend C:\Windows\system32\svchost.exe => Bestand is getekend C:\Windows\SysWOW64\svchost.exe => Bestand is getekend C:\Windows\system32\services.exe => Bestand is getekend C:\Windows\system32\User32.dll => Bestand is getekend C:\Windows\SysWOW64\User32.dll => Bestand is getekend C:\Windows\system32\userinit.exe => Bestand is getekend C:\Windows\SysWOW64\userinit.exe => Bestand is getekend C:\Windows\system32\rpcss.dll => Bestand is getekend C:\Windows\system32\dnsapi.dll => Bestand is getekend C:\Windows\SysWOW64\dnsapi.dll => Bestand is getekend C:\Windows\system32\Drivers\volsnap.sys => Bestand is getekend ==================== Eind van FRST.txt ============================