start CreateRestorePoint: ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand 2019-05-02 05:19 - 2019-05-02 05:19 - 000529920 _____ (JPEXS) [Bestand niet getekend] C:\Users\Mike van Gelderen\AppData\Local\Temp\javactivex_1556767156837.exe 2019-05-02 05:19 - 2019-05-02 05:19 - 000224840 ____N (Java(TM) Native Access (JNA)) [Bestand niet getekend] C:\Users\Mike van Gelderen\AppData\Local\Temp\jna-Mike van Gelderen\jna4009550277653100749.dll FirewallRules: [UDP Query User{05410AAF-753C-4AC9-9BAB-556A83AD0586}C:\users\mike van gelderen\appdata\local\discordgames\king of the hat\content\kingofthehat.exe] => (Allow) C:\users\mike van gelderen\appdata\local\discordgames\king of the hat\content\kingofthehat.exe Geen bestand FirewallRules: [TCP Query User{25910400-4481-484D-8DF2-2DD022F07986}C:\users\mike van gelderen\appdata\local\discordgames\king of the hat\content\kingofthehat.exe] => (Allow) C:\users\mike van gelderen\appdata\local\discordgames\king of the hat\content\kingofthehat.exe Geen bestand C:\Users\Mike van Gelderen\AppData\Local\Temp\Rar$EXb5796.23284\supermeatboy1010u810trainer\super_meat_boy_plus10_trainer.exe C:\Users\Mike van Gelderen\AppData\Local\Temp\Rar$EXb5796.6833\supermeatboy1010u810trainer\super_meat_boy_plus10_trainer.exe C:\Users\Mike van Gelderen\AppData\Local\Temp\Rar$EXb5796.7715\supermeatboy1010u810trainer\super_meat_boy_plus10_trainer.exe C:\Users\Mike van Gelderen\AppData\Local\Temp\Rar$EXb5796.1812\supermeatboy1010u810trainer\super_meat_boy_plus10_trainer.exe (JPEXS) [Bestand niet getekend] C:\Users\Mike van Gelderen\AppData\Local\Temp\javactivex_1556767156837.exe Task: {9D6EC343-1307-4F8B-A3BF-F1EEBA1244D0} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2380088 2019-04-06] (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\Common Files\AVAST Software HKU\S-1-5-21-1207944724-1315577772-3040610273-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.goe-web.com/ SearchScopes: HKU\S-1-5-21-1207944724-1315577772-3040610273-1001 -> DefaultScope {1B8C0769-18E2-4DBF-A054-5C3F1FF526D6} URL = hxxp://www.goe-web.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-1207944724-1315577772-3040610273-1001 -> {1B8C0769-18E2-4DBF-A054-5C3F1FF526D6} URL = hxxp://www.goe-web.com/search?q={searchTerms} Edge HomeButtonPage: HKU\S-1-5-21-1207944724-1315577772-3040610273-1001 -> hxxp://www.goe-web.com/ CHR HomePage: Default -> hxxp://www.goe-web.com/ CHR StartupUrls: Default -> "hxxp://www.goe-web.com/" CHR HKU\S-1-5-21-1207944724-1315577772-3040610273-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcebahaopmklkfaaacddffiomjjldmkk] - hxxps://clients2.google.com/service/update2/crx 2019-04-29 01:51 - 2019-04-29 01:51 - 000347073 _____ C:\Users\Mike van Gelderen\Downloads\supermeatboy1010u810trainer.zip 2019-04-29 01:42 - 2019-04-29 01:42 - 000001903 _____ C:\Users\Mike van Gelderen\Downloads\super_meat_boy_trainer.zip 2019-04-04 19:37 - 2019-04-04 19:39 - 394151287 _____ C:\Users\Mike van Gelderen\Downloads\SuperMeatBoy_20181019_Humble.zip 2019-04-09 18:24 - 2019-01-05 05:49 - 000000000 ____D C:\ProgramData\AVAST Software EmptyTemp: end