Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 10-08-2019 Gestart door Nasim (Beheerder) op NASIM (ASUSTeK COMPUTER INC. X555LD) (10-08-2019 20:29:09) Gestart vanaf C:\Users\Nasim\Desktop Geladen Profielen: Nasim & Gast (Beschikbare Profielen: Nasim & Gast) Platform: Windows 8.1 (Update) (X64) Taal: Nederlands (Nederland) Standaardbrowser: FF Boot Modus: Normal Handleiding voor Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, zal het proces worden gesloten. Het bestand zal niet worden verplaatst.) (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\aswEngSrv.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\aswidsagent.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe (Digital Wave Ltd -> Digital Wave Ltd) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe (Digital Wave Ltd -> Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe (Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Software -> Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe (Intel(R) Software -> Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe (Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ==================== Register (gefilterd) =========================== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\Windows\system32\DptfPolicyLpmServiceHelper.exe [114048 2013-10-18] (Intel(R) Software -> Intel Corporation) HKLM\...\Run: [AVGUI.exe] => C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [316848 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation) HKU\S-1-5-21-2769203267-2919422116-2587263349-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [23153344 2019-07-11] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-2769203267-2919422116-2587263349-1001\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [1599464 2018-05-22] (Digital Wave Ltd -> Digital Wave Ltd) HKU\S-1-5-21-2769203267-2919422116-2587263349-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-08032019020714568\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [23153344 2019-07-11] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-2769203267-2919422116-2587263349-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-08032019020714568\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [1599464 2018-05-22] (Digital Wave Ltd -> Digital Wave Ltd) HKU\S-1-5-21-2769203267-2919422116-2587263349-501\...\Run: [Google Update] => "C:\Users\Nasim\AppData\Local\Google\Update\GoogleUpdate.exe" /c HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\76.0.3809.100\Installer\chrmstp.exe [2019-08-09] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restrictie <==== AANDACHT ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {03193649-D621-4E51-8453-5FE3BFB7EC37} - System32\Tasks\RtHDVBg => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1485312 2017-04-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {058B67AE-F1B6-46C8-B61C-DC2225BB89F9} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1485312 2017-04-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {1C8FE2FE-D895-4477-B5F6-3A679A624574} - System32\Tasks\Opera scheduled Autoupdate 1538240876 => C:\Users\Nasim\AppData\Local\Programs\Opera\launcher.exe Task: {22B141D5-5AF7-41BB-9195-91169981B56D} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [757184 2018-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {307326AD-9F5B-44A0-BB86-8087B1AC1621} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [976832 2018-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {36702375-17FC-41D4-AB1A-A93745EC5C80} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19723888 2014-03-27] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) Task: {36E27157-D0DB-4D2D-A708-3BCE4417161E} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe Task: {3A3391C0-833D-4847-BF2F-A4D227B183E9} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2081712 2019-08-08] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) Task: {521D521E-37AA-4E43-9B7F-77BBCEBF5312} - System32\Tasks\Antivirus Emergency Update => C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe [3987888 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) Task: {62C513D9-348E-44F7-B395-34421CE07FB8} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_223_Plugin.exe [1457208 2019-07-10] (Adobe Inc. -> Adobe) Task: {6D33768A-DFAF-4AE3-818E-7D82AE7AF953} - \ASUS Live Update1 -> Geen bestand <==== AANDACHT Task: {71582357-71DA-474B-9713-710D5A690EE1} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-07-10] (Adobe Inc. -> Adobe) Task: {7883D05B-0774-458F-ABF5-185BFDC05156} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7F8E1EDA-A227-4BE0-93F3-18A408113372} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1485312 2017-04-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {8C88D30A-5875-4A84-A3E5-CF5BC78955F3} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [109880 2014-01-14] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) Task: {94D38815-5CD2-4839-AEBA-6DB3DF00A853} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [662464 2018-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A0F2EA48-5F9D-4B6B-8CC9-7FE33B41C1F5} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation) Task: {AD188D0F-F8B4-46E5-B70B-9E0C84CC69F6} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [510912 2018-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B40AC9C1-936A-4863-A5B8-38F8B6D0190A} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe Task: {B5167AFF-A7EA-45B0-A26C-A03EB8536230} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [662464 2018-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B58D3464-6135-4394-9B69-1DB176EAB50E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1236048 2019-07-24] (Adobe Inc. -> Adobe Systems) Task: {BAA3D22B-C1E3-4B34-9E6C-427A90A819A2} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe [469952 2018-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BE8E6916-07D5-40B7-A35C-6D957E42CD8B} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-07-11] (Piriform Software Ltd -> Piriform Software Ltd) Task: {CA1C69A5-4C09-473B-990A-89671EA1F2FB} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation) Task: {DF328656-F84D-4895-B4DE-4CD0595C1836} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-04-14] (Google Inc -> Google Inc.) Task: {E166F4E1-0CC9-4CD7-B821-34AC8CAF99D6} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2069952 2018-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E543F41F-5CBB-40AD-9794-5765A84109FA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16835256 2019-07-11] (Piriform Software Ltd -> Piriform Software Ltd) Task: {E5443497-A14C-4F37-AB19-7D2DCB66A677} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation) Task: {F71A479E-7648-4DA4-8249-1135411762B5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-04-14] (Google Inc -> Google Inc.) (Als een item is opgenomen in de fixlist, wordt de taak (job) bestand verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2769203267-2919422116-2587263349-1001Core.job => C:\Users\Nasim\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2769203267-2919422116-2587263349-1001Core1d0bdac4b4f3a86.job => C:\Users\Nasim\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2769203267-2919422116-2587263349-1001Core1d0bfc25d814b50.job => C:\Users\Nasim\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2769203267-2919422116-2587263349-1001Core1d0e18f29cf7e22.job => C:\Users\Nasim\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2769203267-2919422116-2587263349-1001Core1d0f074d11bd656.job => C:\Users\Nasim\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2769203267-2919422116-2587263349-1001Core1d12f59dd7c2ebe.job => C:\Users\Nasim\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2769203267-2919422116-2587263349-1001Core1d15d33c0a965e6.job => C:\Users\Nasim\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2769203267-2919422116-2587263349-1001Core1d1ab77751635b5.job => C:\Users\Nasim\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist en een registeritem is, wordt het verwijderd of hersteld naar de standaard.) Tcpip\Parameters: [DhcpNameServer] 62.179.104.196 213.46.228.196 Tcpip\..\Interfaces\{B5AF814B-089B-4510-9148-10ED12426FC0}: [DhcpNameServer] 62.179.104.196 213.46.228.196 Tcpip\..\Interfaces\{FA181939-715A-493A-861E-F94DA887B078}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-2769203267-2919422116-2587263349-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB HKU\S-1-5-21-2769203267-2919422116-2587263349-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.nl/ HKU\S-1-5-21-2769203267-2919422116-2587263349-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-08032019020714568\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB HKU\S-1-5-21-2769203267-2919422116-2587263349-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-08032019020714568\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.nl/ HKU\S-1-5-21-2769203267-2919422116-2587263349-501\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.nl/ HKU\S-1-5-21-2769203267-2919422116-2587263349-501\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2769203267-2919422116-2587263349-501 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2018-02-15] (Microsoft Corporation -> Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_221\bin\ssv.dll [2019-07-20] (Oracle America, Inc. -> Oracle Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-07-20] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2017-08-24] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2017-08-15] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF DefaultProfile: vscney4p.default FF ProfilePath: C:\Users\Nasim\AppData\Roaming\Mozilla\Firefox\Profiles\vscney4p.default [2019-08-10] FF Homepage: Mozilla\Firefox\Profiles\vscney4p.default -> www.google.nl/ FF Extension: (leethax.net extension) - C:\Users\Nasim\AppData\Roaming\Mozilla\Firefox\Profiles\vscney4p.default\Extensions\leethax@leethax.net.xpi [2017-08-25] [Verouderd] FF Extension: (OrangeBlueFoxAbstract) - C:\Users\Nasim\AppData\Roaming\Mozilla\Firefox\Profiles\vscney4p.default\Extensions\{159d00ec-dcf1-4b4c-8ee7-ab01470014ca}.xpi [2019-03-23] FF Extension: (Blue Butterfly in Grass by MaDonna) - C:\Users\Nasim\AppData\Roaming\Mozilla\Firefox\Profiles\vscney4p.default\Extensions\{1c5b746d-7667-4829-a3e8-3ee3d04d1bbc}.xpi [2019-03-23] FF Extension: (LUCKY GREEN BAMBOO) - C:\Users\Nasim\AppData\Roaming\Mozilla\Firefox\Profiles\vscney4p.default\Extensions\{467445da-90dc-4c83-8dbf-76af093ef933}.xpi [2019-03-23] FF Extension: (Popup Blocker Ultimate) - C:\Users\Nasim\AppData\Roaming\Mozilla\Firefox\Profiles\vscney4p.default\Extensions\{60B7679C-BED9-11E5-998D-8526BB8E7F8B}.xpi [2017-11-14] FF Extension: (Green Floral) - C:\Users\Nasim\AppData\Roaming\Mozilla\Firefox\Profiles\vscney4p.default\Extensions\{a9bec75f-6787-417e-823b-94aa2e268b0f}.xpi [2019-03-23] FF Extension: (MaDonnas Aurora Blue) - C:\Users\Nasim\AppData\Roaming\Mozilla\Firefox\Profiles\vscney4p.default\Extensions\{abeb6cbe-c171-4bc8-8047-6783e8513546}.xpi [2019-03-23] FF Extension: (Firefox B) - C:\Users\Nasim\AppData\Roaming\Mozilla\Firefox\Profiles\vscney4p.default\Extensions\{ac40163c-8804-4dad-90fc-e25ebd6e9a57}.xpi [2019-03-23] FF Extension: (Underwater Dolphins) - C:\Users\Nasim\AppData\Roaming\Mozilla\Firefox\Profiles\vscney4p.default\Extensions\{dfe514c6-8bc3-4326-99e6-85fe04aa44ff}.xpi [2019-03-23] FF Extension: (Earth from space) - C:\Users\Nasim\AppData\Roaming\Mozilla\Firefox\Profiles\vscney4p.default\Extensions\{e3cdb989-8a0e-4fdf-aeed-02058fd00835}.xpi [2019-03-23] FF Extension: (Dark Fox) - C:\Users\Nasim\AppData\Roaming\Mozilla\Firefox\Profiles\vscney4p.default\Extensions\{e7fe4ffe-f256-4f85-906d-072fdd698585}.xpi [2019-03-23] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_223.dll [2019-07-10] (Adobe Inc. -> ) FF Plugin: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-07-20] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-07-20] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-06-11] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-06-11] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-06-11] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-06-11] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-06-11] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-06-11] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-06-11] (VideoLAN -> VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_223.dll [2019-07-10] (Adobe Inc. -> ) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2013-12-18] (Foxit Corporation -> ) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2013-12-18] (Foxit Corporation -> ) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-10-23] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-10-23] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-19] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-21] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [Geen bestand] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-05-03] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Default CHR HomePage: Default -> hxxps://www.google.nl/ CHR StartupUrls: Default -> "hxxps://www.google.nl/" CHR Profile: C:\Users\Nasim\AppData\Local\Google\Chrome\User Data\Default [2019-08-10] CHR Extension: (Presentaties) - C:\Users\Nasim\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-03-01] CHR Extension: (Documenten) - C:\Users\Nasim\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-03-01] CHR Extension: (Google Drive) - C:\Users\Nasim\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-27] CHR Extension: (Spider Solitaire) - C:\Users\Nasim\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcopgabdbdohekgeabpbfhledmdahkpe [2015-04-14] CHR Extension: (YouTube) - C:\Users\Nasim\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-16] CHR Extension: (Videostream for Google Chromecast™) - C:\Users\Nasim\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnciopoikihiagdjbjpnocolokfelagl [2018-10-28] CHR Extension: (Google Search) - C:\Users\Nasim\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27] CHR Extension: (Spreadsheets) - C:\Users\Nasim\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-03-01] CHR Extension: (Offline Documenten) - C:\Users\Nasim\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-10-28] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\Nasim\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-10-28] CHR Extension: (Gmail) - C:\Users\Nasim\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-14] CHR Extension: (Chrome Media Router) - C:\Users\Nasim\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-04-28] ==================== Services (gefilterd) ==================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R2 AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [415032 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R3 avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\aswidsagent.exe [6845400 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [440808 2018-05-22] (Digital Wave Ltd -> Digital Wave Ltd.) S2 DptfParticipantProcessorService; C:\Windows\system32\DptfParticipantProcessorService.exe [117704 2013-10-18] (Intel(R) Software -> Intel Corporation) S2 DptfPolicyConfigTDPService; C:\Windows\system32\DptfPolicyConfigTDPService.exe [116680 2013-10-18] (Intel(R) Software -> Intel Corporation) S2 DptfPolicyCriticalService; C:\Windows\system32\DptfPolicyCriticalService.exe [148160 2013-10-18] (Intel(R) Software -> Intel Corporation) S2 DptfPolicyLpmService; C:\Windows\system32\DptfPolicyLpmService.exe [126952 2013-10-18] (Intel(R) Software -> Intel Corporation) R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1401512 2016-04-16] (Intel(R) Software -> Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [282072 2014-03-18] (Intel Corporation - pGFX -> Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [827392 2013-09-02] (Intel(R) Corporation) [Bestand niet getekend] R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-10-23] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-10-23] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-14] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-14] (NVIDIA Corporation -> NVIDIA Corporation) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11969880 2019-07-03] (TeamViewer GmbH -> TeamViewer GmbH) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r ===================== Drivers (gefilterd) ====================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) S3 AgereSoftModem; C:\Windows\system32\DRIVERS\agrsm64.sys [1146880 2013-06-18] (Microsoft Windows -> LSI Corp) R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3892224 2014-03-07] (Microsoft Windows Hardware Compatibility Publisher -> Qualcomm Atheros Communications, Inc.) R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [69904 2014-03-31] (ASUSTeK Computer Inc. -> ASUS Corporation) R0 avgArDisk; C:\Windows\System32\drivers\avgArDisk.sys [37368 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [209304 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdriver.sys [263784 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R0 avgbidsh; C:\Windows\System32\drivers\avgbidsh.sys [206624 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R0 avgbuniv; C:\Windows\System32\drivers\avgbuniv.sys [61736 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R1 avgKbd; C:\Windows\System32\drivers\avgKbd.sys [42552 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R2 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [168944 2019-08-01] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [112568 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [88208 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [1030832 2019-08-01] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R1 avgSP; C:\Windows\System32\drivers\avgSP.sys [477336 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R2 avgStm; C:\Windows\System32\drivers\avgStm.sys [225864 2019-06-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [387736 2019-08-05] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Broadcom Corporation -> Windows (R) Win 7 DDK provider) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131904 2018-12-12] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 DptfDevDram; C:\Windows\system32\DRIVERS\DptfDevDram.sys [145640 2013-10-18] (Intel(R) Software -> Intel Corporation) S3 DptfDevPch; C:\Windows\system32\DRIVERS\DptfDevPch.sys [116752 2013-10-18] (Intel(R) Software -> Intel Corporation) S3 DptfDevProc; C:\Windows\system32\DRIVERS\DptfDevProc.sys [289744 2013-10-18] (Intel(R) Software -> Intel Corporation) S3 DptfManager; C:\Windows\system32\DRIVERS\DptfManager.sys [494296 2013-10-18] (Intel(R) Software -> Intel Corporation) R3 dptf_acpi; C:\Windows\System32\drivers\dptf_acpi.sys [64504 2016-04-16] (Intel(R) Software -> Intel Corporation) R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [60920 2016-04-16] (Intel(R) Software -> Intel Corporation) S3 dptf_pch; C:\Windows\System32\drivers\dptf_pch.sys [59384 2016-04-16] (Intel(R) Software -> Intel Corporation) R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [268784 2016-04-16] (Intel(R) Software -> Intel Corporation) R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] (ASUSTeK Computer Inc. -> ) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [275232 2019-08-01] (Malwarebytes Corporation -> Malwarebytes) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [31168 2018-03-14] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [59240 2017-12-15] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [57792 2017-01-20] (NVIDIA Corporation -> NVIDIA Corporation) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [167232 2018-12-12] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Een maand (aangemaakt) ======== (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2019-08-10 20:29 - 2019-08-10 20:30 - 000035184 _____ C:\Users\Nasim\Desktop\FRST.txt 2019-08-10 19:21 - 2019-08-10 20:29 - 000000000 ____D C:\FRST 2019-08-10 19:18 - 2019-08-10 19:18 - 002097664 _____ (Farbar) C:\Users\Nasim\Desktop\FRST64.exe 2019-08-01 22:15 - 2019-08-01 22:15 - 000275232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2019-08-01 00:56 - 2019-08-01 00:56 - 007623880 _____ (Malwarebytes) C:\Users\Nasim\Desktop\adwcleaner_7.4.exe 2019-07-31 16:50 - 2019-07-31 16:50 - 000000000 ____D C:\Users\Nasim\AppData\Roaming\Turtle Odyssey II 2019-07-31 16:36 - 2019-07-31 16:37 - 000000000 ____D C:\Windows\LastGood.Tmp 2019-07-28 14:05 - 2019-07-28 14:05 - 000418870 _____ C:\Users\Nasim\Downloads\Uittreksel KvK 07-2019.pdf 2019-07-25 21:07 - 2019-07-25 21:07 - 000001249 _____ C:\Users\Nasim\Desktop\Turtle Odyssey 2.lnk 2019-07-21 22:47 - 2019-07-10 06:08 - 025754624 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2019-07-21 22:47 - 2019-07-10 05:46 - 002909184 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2019-07-21 22:47 - 2019-07-10 05:44 - 000578560 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2019-07-21 22:47 - 2019-07-10 05:34 - 005775872 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2019-07-21 22:47 - 2019-07-10 05:33 - 000790528 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2019-07-21 22:47 - 2019-07-10 05:32 - 020291072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2019-07-21 22:47 - 2019-07-10 05:14 - 000496128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2019-07-21 22:47 - 2019-07-10 05:12 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2019-07-21 22:47 - 2019-07-10 05:11 - 002301952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2019-07-21 22:47 - 2019-07-10 05:11 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2019-07-21 22:47 - 2019-07-10 05:09 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2019-07-21 22:47 - 2019-07-10 05:09 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2019-07-21 22:47 - 2019-07-10 05:04 - 001033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2019-07-21 22:47 - 2019-07-10 05:04 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2019-07-21 22:47 - 2019-07-10 04:58 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2019-07-21 22:47 - 2019-07-10 04:56 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2019-07-21 22:47 - 2019-07-10 04:56 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2019-07-21 22:47 - 2019-07-10 04:56 - 000381952 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2019-07-21 22:47 - 2019-07-10 04:53 - 002132480 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2019-07-21 22:47 - 2019-07-10 04:51 - 015389696 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2019-07-21 22:47 - 2019-07-10 04:48 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2019-07-21 22:47 - 2019-07-10 04:48 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2019-07-21 22:47 - 2019-07-10 04:47 - 000128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2019-07-21 22:47 - 2019-07-10 04:46 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2019-07-21 22:47 - 2019-07-10 04:44 - 000880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2019-07-21 22:47 - 2019-07-10 04:43 - 004858880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2019-07-21 22:47 - 2019-07-10 04:42 - 004494848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2019-07-21 22:47 - 2019-07-10 04:40 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2019-07-21 22:47 - 2019-07-10 04:38 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2019-07-21 22:47 - 2019-07-10 04:38 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2019-07-21 22:47 - 2019-07-10 04:38 - 000333312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2019-07-21 22:47 - 2019-07-10 04:34 - 013791232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2019-07-21 22:47 - 2019-07-10 04:31 - 001566208 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2019-07-21 22:47 - 2019-07-10 04:19 - 004386304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2019-07-21 22:47 - 2019-07-10 04:19 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2019-07-21 22:47 - 2019-07-10 04:16 - 001331200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2019-07-21 22:47 - 2019-07-10 04:15 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2019-07-21 21:33 - 2019-07-21 21:33 - 000001885 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2019-07-21 21:32 - 2019-07-21 21:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2019-07-21 21:32 - 2019-01-08 16:32 - 000153328 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2019-07-20 18:56 - 2019-07-21 23:13 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2019-07-20 18:54 - 2019-07-20 18:54 - 000110064 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2019-07-20 18:54 - 2019-07-20 18:54 - 000000000 ____D C:\Users\Nasim\AppData\Roaming\Sun 2019-07-20 18:54 - 2019-07-20 18:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java ==================== Een maand (gewijzigd) ======== (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2019-08-10 20:28 - 2016-11-16 18:47 - 000000000 ____D C:\Users\Nasim\AppData\LocalLow\Mozilla 2019-08-10 20:22 - 2014-12-11 09:13 - 000000000 ____D C:\ProgramData\NVIDIA 2019-08-10 20:21 - 2015-04-22 18:30 - 003941376 ___SH C:\Users\Nasim\Desktop\Thumbs.db 2019-08-10 20:21 - 2015-04-13 19:41 - 000000000 __RDO C:\Users\Nasim\OneDrive 2019-08-10 19:37 - 2015-04-13 21:12 - 000000000 ____D C:\Users\Nasim\AppData\Roaming\uTorrent 2019-08-10 19:15 - 2018-07-04 21:50 - 000000000 ____D C:\Users\Nasim\AppData\Roaming\vlc 2019-08-10 19:13 - 2015-04-13 20:27 - 000000000 ___RD C:\Users\Nasim\Desktop\Films 2019-08-10 18:35 - 2019-05-20 22:35 - 000000000 ____D C:\Users\Nasim\AppData\Local\BitTorrentHelper 2019-08-10 18:24 - 2015-04-13 19:43 - 000003802 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{6629BCDB-C033-4173-BBE3-EC47C8ED59CA} 2019-08-10 02:55 - 2018-09-29 19:08 - 000004040 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1538240876 2019-08-10 02:55 - 2018-09-11 20:50 - 000000000 ____D C:\Windows\System32\Tasks\AVAST Software 2019-08-10 02:55 - 2018-04-25 16:14 - 000003922 _____ C:\Windows\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-08-10 02:55 - 2018-03-13 21:19 - 000004566 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier 2019-08-10 02:55 - 2017-10-25 00:13 - 000003870 _____ C:\Windows\System32\Tasks\CCleaner Update 2019-08-10 02:55 - 2017-07-27 13:03 - 000003168 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2769203267-2919422116-2587263349-1001 2019-08-10 02:55 - 2017-06-09 20:53 - 000003814 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-08-10 02:55 - 2017-05-17 23:38 - 000004174 _____ C:\Windows\System32\Tasks\Antivirus Emergency Update 2019-08-10 02:55 - 2017-02-21 19:51 - 000003180 _____ C:\Windows\System32\Tasks\RtHDVBg_ListenToDevice 2019-08-10 02:55 - 2016-12-16 18:20 - 000004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-08-10 02:55 - 2016-12-16 18:20 - 000003798 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-08-10 02:55 - 2016-12-16 18:19 - 000003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-08-10 02:55 - 2016-12-16 18:19 - 000003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-08-10 02:55 - 2016-12-16 18:19 - 000003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-08-10 02:55 - 2016-12-16 18:19 - 000003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-08-10 02:55 - 2016-08-06 14:36 - 000002784 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2019-08-10 02:55 - 2015-05-13 14:22 - 000003470 _____ C:\Windows\System32\Tasks\ASUS Live Update2 2019-08-10 02:55 - 2015-04-15 21:47 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2019-08-10 02:55 - 2015-04-14 18:16 - 000003490 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2019-08-10 02:55 - 2015-04-14 18:16 - 000003362 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2019-08-10 02:55 - 2015-04-13 19:54 - 000004262 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2019-08-10 02:55 - 2014-12-11 09:29 - 000002892 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2769203267-2919422116-2587263349-500 2019-08-10 02:55 - 2014-12-11 09:27 - 000002024 _____ C:\Windows\System32\Tasks\ASUS USB Charger Plus 2019-08-10 02:55 - 2014-12-11 09:23 - 000002702 _____ C:\Windows\System32\Tasks\ATK Package 36D18D69AFC3 2019-08-10 02:55 - 2014-12-11 09:16 - 000003168 _____ C:\Windows\System32\Tasks\RTKCPL 2019-08-10 02:55 - 2014-12-11 09:16 - 000003152 _____ C:\Windows\System32\Tasks\RtHDVBg 2019-08-09 19:21 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf 2019-08-09 15:09 - 2015-04-13 19:44 - 000003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2769203267-2919422116-2587263349-1001 2019-08-09 14:54 - 2018-12-23 17:45 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2019-08-09 14:34 - 2015-04-14 18:16 - 000002266 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2019-08-09 14:34 - 2015-04-14 18:16 - 000002225 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2019-08-08 14:28 - 2015-05-17 20:21 - 000000000 ____D C:\Users\Nasim\Desktop\Nasim 2019-08-06 20:52 - 2015-04-17 22:43 - 000000000 ____D C:\Users\Gast 2019-08-06 20:51 - 2018-12-23 17:45 - 000000985 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 14.lnk 2019-08-06 20:51 - 2018-12-23 17:45 - 000000973 _____ C:\Users\Public\Desktop\TeamViewer 14.lnk 2019-08-05 18:05 - 2015-04-13 19:38 - 000000000 ____D C:\Users\Nasim\AppData\Local\Packages 2019-08-05 18:04 - 2017-05-17 23:38 - 000387736 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgVmm.sys 2019-08-05 17:49 - 2015-04-22 14:48 - 001445888 ___SH C:\Users\Nasim\Downloads\Thumbs.db 2019-08-01 22:25 - 2019-06-30 22:02 - 000168944 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgMonFlt.sys 2019-08-01 22:25 - 2017-05-17 23:38 - 001030832 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSnx.sys 2019-08-01 22:14 - 2013-08-22 16:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2019-08-01 22:13 - 2014-10-29 08:25 - 000000000 ____D C:\Program Files (x86)\ASUS 2019-08-01 22:13 - 2013-08-22 15:25 - 000262144 ___SH C:\Windows\system32\config\BBI 2019-08-01 21:44 - 2019-01-17 16:01 - 000000000 ____D C:\AdwCleaner 2019-08-01 21:44 - 2014-10-29 08:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS 2019-08-01 21:35 - 2015-09-26 13:21 - 000000093 _____ C:\Users\Nasim\AppData\Roaming\sp_data.sys 2019-07-25 21:07 - 2016-04-07 17:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameTop.com 2019-07-25 21:06 - 2016-04-07 17:52 - 000000000 ____D C:\Program Files (x86)\GameTop.com 2019-07-22 21:37 - 2019-02-27 22:47 - 000000000 ____D C:\Users\Nasim\Desktop\Mp3 2019-07-22 21:28 - 2015-07-23 17:26 - 000000000 ____D C:\Users\Nasim\Desktop\Nasim map 2019-07-22 02:03 - 2015-04-13 19:38 - 000000000 ____D C:\Users\Nasim 2019-07-21 23:13 - 2015-04-13 19:48 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2019-07-21 23:04 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\PolicyDefinitions 2019-07-21 22:50 - 2013-08-22 17:20 - 000000000 ____D C:\Windows\CbsTemp 2019-07-20 18:56 - 2015-04-13 19:48 - 000001177 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2019-07-20 18:53 - 2015-04-15 18:39 - 000000000 ____D C:\Program Files\Java 2019-07-16 21:35 - 2018-07-25 00:39 - 000000836 _____ C:\Users\Public\Desktop\CCleaner.lnk 2019-07-14 19:24 - 2013-08-22 16:44 - 000481736 _____ C:\Windows\system32\FNTCACHE.DAT 2019-07-14 19:07 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\SysWOW64\Dism 2019-07-14 19:07 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\system32\Dism 2019-07-11 00:47 - 2019-05-12 22:11 - 000002343 _____ C:\Users\Nasim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive voor Bedrijven.lnk 2019-07-11 00:34 - 2015-04-17 19:28 - 000000000 ____D C:\Windows\system32\MRT 2019-07-11 00:21 - 2015-04-17 19:28 - 136618864 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe ==================== Bestanden in de root van sommige mappen ================ 2015-09-26 13:21 - 2019-08-01 21:35 - 000000093 _____ () C:\Users\Nasim\AppData\Roaming\sp_data.sys ==================== SigCheck =============================== (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) LastRegBack: 2016-03-25 15:13 ==================== Einde van FRST.txt ============================