Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 05-01-2021 Gestart door Coban (Beheerder) op COBAN-HP (Hewlett-Packard HP Pavilion dv7 Notebook PC) (07-01-2021 10:02:59) Gestart vanaf C:\Users\Coban\Downloads Geladen Profielen: Coban Platform: Windows 10 Home Versie 1909 18363.1256 (X64) Taal: Nederlands (Nederland) Standaardbrowser: Chrome Boot Modus: Normal ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, zal het proces worden gesloten. Het bestand zal niet worden verplaatst.) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Andrea Electronics Corporation) [Bestand niet getekend] C:\Program Files\IDT\WDM\AESTSr64.exe (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleChromeDAV.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (AuthenTec, Inc. -> HP) C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe (AuthenTec, Inc. -> HP) C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe (AuthenTec, Inc. -> HP) C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe (devolo AG -> devolo AG) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe (EasyBits Software AS -> EasyBits Software AS) [Bestand niet getekend] C:\Windows\SysWOW64\ezSharedSvcHost.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <32> (Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe (Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Hewlett-Packard Company -> Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\usocoreworker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Renesas Electronics Corporation -> Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Symantec Corporation -> Symantec Corporation) C:\Program Files\Norton Security\Engine\22.20.2.57\NortonSecurity.exe <2> (Symantec Corporation -> Symantec Corporation) C:\Program Files\Norton Security\Engine\22.20.2.57\nsWscSvc.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe ==================== Register (gefilterd) =================== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1128448 2011-03-11] (IDT, Inc.) [Bestand niet getekend] HKLM\...\Run: [BTMTrayAgent] => C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [10355200 2011-01-24] (Intel Corporation) [Bestand niet getekend] HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [302904 2019-03-24] (Apple Inc. -> Apple Inc.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954352 2016-04-27] (Synaptics Incorporated -> Synaptics Incorporated) HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation -> Renesas Electronics Corporation) HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [586296 2010-11-09] (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-03-16] (EasyBits Software AS -> EasyBits Software AS) [Bestand niet getekend] HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [318520 2011-01-27] (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKU\S-1-5-21-2719908977-4093848447-3276493948-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2019-03-13] (Apple Inc. -> Apple Inc.) HKU\S-1-5-21-2719908977-4093848447-3276493948-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2019-03-13] (Apple Inc. -> Apple Inc.) HKU\S-1-5-21-2719908977-4093848447-3276493948-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Coban\AppData\Local\Microsoft\Teams\Update.exe [2452664 2021-01-03] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-2719908977-4093848447-3276493948-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31135728 2020-12-16] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) HKU\S-1-5-21-2719908977-4093848447-3276493948-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32414392 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-2719908977-4093848447-3276493948-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\SysWOW64\ezScrSvr.scr [456888 2011-03-16] (EasyBits Software AS -> EasyBits Software AS) [Bestand niet getekend] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.88\Installer\chrmstp.exe [2021-01-04] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CineForm Status.lnk [2018-03-07] ShortcutTarget: CineForm Status.lnk -> C:\Program Files (x86)\CineForm\Tools\GoProCineFormStatusViewer.exe (GoPro) [Bestand niet getekend] ==================== Geplande Taken (gefilterd) ============ (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {00778B82-629D-4AF5-AD24-CB5BD5B5DCEA} - \Microsoft\Windows\SideShow\SessionAgent -> Geen bestand <==== AANDACHT Task: {011F7B80-D077-4304-A06F-9C4448D3E470} - \Microsoft\Windows\Media Center\DispatchRecoveryTasks -> Geen bestand <==== AANDACHT Task: {05BB7061-BE3D-44C6-A5DA-2BC2756BB516} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Geen bestand <==== AANDACHT Task: {05FD02DE-A5DF-44B0-99FF-63FDD54CC0EF} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [40432 2020-12-16] (Garmin International, Inc. -> ) Task: {069FFDFF-BCBB-4BAF-8834-66AC31B1A17B} - \Microsoft\Windows\SideShow\GadgetManager -> Geen bestand <==== AANDACHT Task: {088482FA-65B8-4E17-9ABF-1DCD48E8D373} - \Microsoft\Windows\Tcpip\IpAddressConflict1 -> Geen bestand <==== AANDACHT Task: {08960463-DF67-491C-A0D7-ACED94E5E65B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Ghost Resign Task => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\HPResignFileLoader.exe Task: {09F06BFE-A3C8-40E3-846A-6E6F4000C238} - \Microsoft\Windows\Tcpip\IpAddressConflict2 -> Geen bestand <==== AANDACHT Task: {0BAA88CE-EBF3-4E3B-9C7C-408A8BEA1B38} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-02-23] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {10F685E8-E8EB-447A-8132-6830C27A724C} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.) Task: {1A6B0D3E-AE5F-4D79-BB42-B1201B80721F} - \Microsoft\Windows\Media Center\ConfigureInternetTimeService -> Geen bestand <==== AANDACHT Task: {1A8B2FB0-1426-44B9-A2B0-F29011B8E699} - System32\Tasks\GoogleUpdateTaskMachineUA1d165d25686dd50 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2016-01-15] (Google Inc -> Google Inc.) Task: {207D64EB-6883-493C-9FBA-7FE3BF7C5D30} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Geen bestand <==== AANDACHT Task: {20ABE119-5454-4693-A7E6-9E63B724041D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26896568 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd) Task: {20FA47D1-75F0-41C1-8F76-DC2BD63E49BF} - System32\Tasks\Norton Security with Backup\Norton Security Autofix => C:\Program Files\Norton Security\Engine\22.20.2.57\SymErr.exe [117056 2020-03-20] (Symantec Corporation -> Symantec Corporation) Task: {28D6C865-7688-4B4B-ADA2-472EAEF2EE19} - \Microsoft\Windows\Media Center\MediaCenterRecoveryTask -> Geen bestand <==== AANDACHT Task: {2AF76C29-9DCF-4EDB-8B13-19CE662FE0B7} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK Task: {2C34102C-7E0F-402B-8A3E-370969931E8A} - \Microsoft\Windows\Media Center\UpdateRecordPath -> Geen bestand <==== AANDACHT Task: {30E9B9AD-F994-4B9E-980B-624F3FF4B843} - \Microsoft\Windows\Media Center\PBDADiscoveryW2 -> Geen bestand <==== AANDACHT Task: {34FE2EEF-8C98-4759-906F-394F296D8F96} - \Microsoft\Windows Defender\MP Scheduled Scan -> Geen bestand <==== AANDACHT Task: {415D48F0-7E7D-4A93-BF1F-E4B6F14B2EF5} - \Microsoft\Windows\Media Center\ehDRMInit -> Geen bestand <==== AANDACHT Task: {437D3DB8-42D7-4B46-B8D0-DA92A292FB7A} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Geen bestand <==== AANDACHT Task: {44B4A287-D7E9-40C6-B3FC-8269F23E5EA3} - \{151CAC7F-F899-4268-B176-91974F9928DD} -> Geen bestand <==== AANDACHT Task: {478BAF11-23CA-476A-BED1-1BF7E5FB6318} - \Microsoft\Windows\Media Center\PvrRecoveryTask -> Geen bestand <==== AANDACHT Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB} Task: {4929D054-D71A-4E26-848D-E73E8C20C97E} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Coban\Downloads\esetonlinescanner_luc.exe [15012440 2021-01-06] (ESET, spol. s r.o. -> ESET spol. s r.o.) Task: {4B0E5104-385C-4307-81EA-3402F35DED86} - \{1B384324-4D55-41C8-9EF2-20904E62BC0B} -> Geen bestand <==== AANDACHT Task: {4E8712F7-6D07-4641-A937-56178850A3E6} - \Microsoft\Windows\Media Center\InstallPlayReady -> Geen bestand <==== AANDACHT Task: {52217ADB-26DB-4213-B784-ADC57BC0FEE8} - \Microsoft\Windows\Media Center\OCURActivate -> Geen bestand <==== AANDACHT Task: {526F0D78-E6DE-4F0E-B65F-F668BB201179} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {5338A8D4-64DD-441D-BABD-2646BFF11A9D} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Geen bestand <==== AANDACHT Task: {5528F22C-2470-4715-ACAE-E274EF6898C7} - \Microsoft\Windows\MobilePC\HotStart -> Geen bestand <==== AANDACHT Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - \Microsoft\Windows\Shell\WindowsParentalControls -> Geen bestand <==== AANDACHT Task: {64F475E5-1495-413C-B72F-47C62745F692} - \Microsoft\Windows\SideShow\AutoWake -> Geen bestand <==== AANDACHT Task: {67015880-FE1D-454F-9829-254A538F8B9F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Task: {6F9F5656-51F4-4292-B760-E311CC323520} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Geen bestand <==== AANDACHT Task: {70280780-FB6C-4D61-9E54-335F3B853065} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Task: {703C530C-0AA1-4507-9EB1-0A14CA7733A1} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1349200 2020-11-03] (Adobe Inc. -> Adobe Inc.) Task: {746461FF-28D1-46C0-A754-329DA9088338} - \Microsoft\Windows\Media Center\PBDADiscoveryW1 -> Geen bestand <==== AANDACHT Task: {79B9A350-438D-4F3E-81DE-BCA2169D93AB} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Geen bestand <==== AANDACHT Task: {7C8CED47-2810-41B7-B1F7-3D2E4F8A1F12} - \SetupManager -> Geen bestand <==== AANDACHT Task: {85716EB3-A8F6-45EA-A0F6-2315B96F5A03} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Coban\Downloads\esetonlinescanner_luc.exe [15012440 2021-01-06] (ESET, spol. s r.o. -> ESET spol. s r.o.) Task: {8953176C-F29B-4133-9097-BC144A7337AE} - \Microsoft\Windows\UNP\RunCampaignManager -> Geen bestand <==== AANDACHT Task: {8C494E8E-45F0-49A2-B1E0-A837D8C79615} - \Microsoft\Windows Live\SOXE\Extractor Definitions Update Task -> Geen bestand <==== AANDACHT Task: {918E590A-F5E4-400B-9928-6522D45EEFAF} - \User_Feed_Synchronization-{A25DED9A-B3DA-464C-AE3F-9FDD670AA183} -> Geen bestand <==== AANDACHT Task: {9370CA99-8D9D-4D64-80EA-8A2985E2AF32} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton Security\Upgrade.exe [2162704 2020-03-20] (Symantec Corporation -> Symantec Corporation) Task: {94A22DFE-FFB1-462F-89B9-4E011DA7ECE5} - System32\Tasks\Norton Security with Backup\Norton Security Error Processor => C:\Program Files\Norton Security\Engine\22.20.2.57\SymErr.exe [117056 2020-03-20] (Symantec Corporation -> Symantec Corporation) Task: {9EBDE6E4-E5D6-4577-8C2C-EFF0FD75929E} - \Microsoft\Windows\Media Center\PvrScheduleTask -> Geen bestand <==== AANDACHT Task: {A03573DA-7D2F-4549-98DC-5D2CE9C28458} - \Microsoft\Windows\Media Center\OCURDiscovery -> Geen bestand <==== AANDACHT Task: {A0567378-7315-48D3-A5EA-AD409EFD66C6} - \Microsoft\Windows\Media Center\PBDADiscovery -> Geen bestand <==== AANDACHT Task: {A3DB76C7-E17C-4E21-9947-F4F4E20AEF47} - \Microsoft\Windows\Media Center\RegisterSearch -> Geen bestand <==== AANDACHT Task: {A4E8A754-634F-4452-8D1A-F29CDBB97BB6} - \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask -> Geen bestand <==== AANDACHT Task: {A8BF13E4-BE44-4E69-81AB-E5DA32B575FA} - \Microsoft\Windows\Media Center\mcupdate -> Geen bestand <==== AANDACHT Task: {AD648555-6DAC-4A05-A0C7-8FEA2DC13241} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - \Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor -> Geen bestand <==== AANDACHT Task: {B5C1E043-ECC1-4189-B672-6613C5B6D00E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-02-23] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BA194237-2B67-41A0-A40E-CE8538ED9D7F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-02-23] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C0110447-FEB0-44EC-84C3-28C79BFE7D0B} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Geen bestand <==== AANDACHT Task: {C16AC4F8-4DFA-49C5-9F58-4B079BC59ED8} - \Microsoft\Windows\Media Center\ReindexSearchRoot -> Geen bestand <==== AANDACHT Task: {C372E6AC-94F7-4111-8CF8-92864CEA710A} - \{9054B0CD-FFF3-406F-AD94-D7DF6CF0C051} -> Geen bestand <==== AANDACHT Task: {C990D0E1-4CAD-446C-BAB5-A3C369F24C34} - \GoogleUpdateTaskMachineCore -> Geen bestand <==== AANDACHT Task: {D03786C1-352D-4499-8BEF-0FCED078B300} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton Security\Engine\22.20.2.57\WSCStub.exe [645008 2020-03-20] (Symantec Corporation -> Symantec Corporation) Task: {D176A918-EC68-40EE-A93A-BF0821B1E5CA} - \Microsoft\Windows\SideShow\SystemDataProviders -> Geen bestand <==== AANDACHT Task: {D70B5E49-A6D3-4E94-B692-9B60D667AE1F} - \Microsoft\Windows\Media Center\RecordingRestart -> Geen bestand <==== AANDACHT Task: {D7A29407-AC31-4EC6-8F8C-8D98A652D6EB} - \Microsoft\Windows\Media Center\ActivateWindowsSearch -> Geen bestand <==== AANDACHT Task: {D9AC81FE-2F46-4E92-BEF5-3415A709E19E} - System32\Tasks\GoogleUpdateTaskMachineCore1d165d2563f7408 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2016-01-15] (Google Inc -> Google Inc.) Task: {E3F1248D-57C6-4FD7-A824-46497DE00A7F} - \GoogleUpdateTaskMachineUA -> Geen bestand <==== AANDACHT Task: {EA520E89-4498-4EB2-A313-E399CB0ACA2F} - \Microsoft\Windows\Media Center\mcupdate_scheduled -> Geen bestand <==== AANDACHT Task: {EACA24FF-236C-401D-A1E7-B3D5267B8A50} - \Microsoft\Windows\RAC\RacTask -> Geen bestand <==== AANDACHT Task: {ECF5FB81-11E7-423D-9639-B8443064AF67} - System32\Tasks\Norton Security with Backup\Norton Security Error Analyzer => C:\Program Files\Norton Security\Engine\22.20.2.57\SymErr.exe [117056 2020-03-20] (Symantec Corporation -> Symantec Corporation) Task: {F25705A5-59D6-432B-9E11-699742DD3DAB} - \Microsoft\Windows\Media Center\SqlLiteRecoveryTask -> Geen bestand <==== AANDACHT Task: {FA8E733B-E42F-4442-8930-222163A6C523} - System32\Tasks\Norton Security Scan for Coban => C:\Program Files (x86)\Norton Security Scan\Engine\4.6.1.179\Nss.exe [848912 2019-02-15] (Symantec Corporation -> Symantec Corporation) Task: {FBDF0CD9-F336-42A0-B5F5-1DE0DC68428D} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd) (Als een item is opgenomen in de fixlist, wordt de taak (job) bestand verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist en een registeritem is, wordt het verwijderd of hersteld naar de standaard.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.254 195.121.1.34 195.121.1.66 Tcpip\..\Interfaces\{108aec29-a75a-4cf0-9e33-82fbd72c47de}: [DhcpNameServer] 192.168.2.254 195.121.1.34 195.121.1.66 Tcpip\..\Interfaces\{6d5612dd-f178-4cd7-8af4-a5178a19838e}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{b439ec7b-ecb8-445b-acbc-c1d3c2e46e21}: [DhcpNameServer] 172.20.10.1 Edge: ====== Edge Profile: C:\Users\Coban\AppData\Local\Microsoft\Edge\User Data\Default [2021-01-06] FireFox: ======== FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\IPSFFPlgn => niet gevonden FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\coFFPlgn_2011_7_9_4 => niet gevonden FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-06-11] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-06-11] (VideoLAN -> VideoLAN) FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll [Geen bestand] FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll [2011-04-24] (Sun Microsystems, Inc.) [Bestand niet getekend] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [Geen bestand] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-12-07] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default [2021-01-07] CHR Notifications: Default -> hxxps://bestellen.dominos.nl; hxxps://calendar.google.com; hxxps://www.onlinevideoconverter.com CHR NewTab: Default -> Not-active:"chrome-extension://gfoabcdjalmeenbjjngidappmppchblc/homePageRedirect.html" CHR DefaultSearchURL: Default -> hxxps://nortonsafe.search.ask.com/web?q={searchTerms}&o=APN11908 CHR DefaultSearchKeyword: Default -> NortonSafe CHR DefaultSuggestURL: Default -> hxxps://ss-sym.search.ask.com/ss?q={searchTerms}&li=ff CHR Extension: (Presentaties) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-17] CHR Extension: (Norton Password Manager) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\admmjipmmciaobhojoghlmleefbicajg [2021-01-06] CHR Extension: (Website Logon) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\aepeildmfnnehghlknddebgjghlompfe [2016-01-15] CHR Extension: (Documenten) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-17] CHR Extension: (Google Drive) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-01-03] CHR Extension: (YouTube) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-01-15] CHR Extension: (Videostream for Google Chromecastâ„¢) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnciopoikihiagdjbjpnocolokfelagl [2021-01-03] CHR Extension: (Google Search) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-15] CHR Extension: (Adobe Acrobat) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-01-03] CHR Extension: (Spreadsheets) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-17] CHR Extension: (iCloud-bladwijzers) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah [2019-04-07] CHR Extension: (Norton Home Page for Chrome) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfoabcdjalmeenbjjngidappmppchblc [2018-02-22] CHR Extension: (Offline Documenten) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-01-03] CHR Extension: (Norton Safe) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbmobhkkblcgdifigjglcjneplefbkmh [2018-02-22] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-06] CHR Extension: (Gmail) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-01-03] CHR Extension: (Chrome Media Router) - C:\Users\Coban\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-01-04] CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Security\Engine\22.20.2.57\Exts\Chrome.crx CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] CHR HKU\S-1-5-21-2719908977-4093848447-3276493948-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [aepeildmfnnehghlknddebgjghlompfe] - C:\Program Files (x86)\HP SimplePass 2011\tschrome.crx [2011-02-11] CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Security\Engine\22.20.2.57\Exts\Chrome.crx CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] ==================== Services (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [170056 2020-11-03] (Adobe Inc. -> Adobe Inc.) R2 AESTFilters; C:\Program Files\IDT\WDM\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation) [Bestand niet getekend] R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2019-03-08] (Apple Inc. -> Apple Inc.) S2 Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [901184 2011-01-24] (Intel Corporation) [Bestand niet getekend] S3 Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1298496 2011-01-24] (Intel Corporation) [Bestand niet getekend] S2 Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [991296 2011-01-24] (Intel Corporation) [Bestand niet getekend] R2 DevoloNetworkService; C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe [3755976 2015-07-01] (devolo AG -> devolo AG) R2 ezSharedSvc; C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232 2010-04-23] (EasyBits Software AS -> EasyBits Software AS) [Bestand niet getekend] R2 FPLService; C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe [265544 2011-02-17] (AuthenTec, Inc. -> HP) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2021-01-06] (Malwarebytes Inc -> Malwarebytes) R2 NortonSecurity; C:\Program Files\Norton Security\Engine\22.20.2.57\NortonSecurity.exe [344760 2020-03-20] (Symantec Corporation -> Symantec Corporation) R2 nsWscSvc; C:\Program Files\Norton Security\Engine\22.20.2.57\nsWscSvc.exe [1055960 2020-03-20] (Symantec Corporation -> Symantec Corporation) S2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [297984 2011-03-11] (IDT, Inc.) [Bestand niet getekend] S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-02-23] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-02-23] (Microsoft Windows Publisher -> Microsoft Corporation) S3 GamesAppService; "C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe" [X] S2 HP Health Check Service; "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe" [X] S2 HPClientSvc; "C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe" [X] ===================== Drivers (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R1 BHDrvx64; C:\Program Files\Norton Security\NortonData\22.20.2.57\Definitions\BASHDefs\20190927.005\BHDrvx64.sys [1952136 2020-03-20] (Symantec Corporation -> Symantec Corporation) S3 BrSerIf; C:\WINDOWS\system32\DRIVERS\BrSerIf.sys [97280 2006-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries Ltd.) S3 BrUsbSer; C:\WINDOWS\system32\DRIVERS\BrUsbSer.sys [19584 2006-09-03] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries Ltd.) R1 ccSet_NGC; C:\WINDOWS\System32\drivers\NGCx64\1614020.039\ccSetx64.sys [192376 2020-03-20] (Symantec Corporation -> Symantec Corporation) R3 clwvd; C:\WINDOWS\System32\drivers\clwvd.sys [31088 2010-07-28] (CyberLink -> CyberLink Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [516960 2020-07-21] (Symantec Corporation -> Broadcom) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [154464 2021-01-06] (Symantec Corporation -> Broadcom) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2021-01-06] (Malwarebytes Corporation -> Malwarebytes) R1 IDSVia64; C:\Program Files\Norton Security\NortonData\22.20.2.57\Definitions\IPSDefs\20200221.500\IDSVia64.sys [1451232 2020-03-20] (Symantec Corporation -> Symantec Corporation) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [220160 2021-01-06] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-01-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [197792 2021-01-06] (Malwarebytes Inc -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [77496 2021-01-06] (Malwarebytes Inc -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2021-01-06] (Malwarebytes Inc -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [139424 2021-01-06] (Malwarebytes Inc -> Malwarebytes) R2 NPF_devolo; C:\WINDOWS\sysWOW64\drivers\npf_devolo.sys [34048 2015-07-01] (devolo AG -> CACE Technologies) R3 SRTSP; C:\WINDOWS\System32\drivers\NGCx64\1614020.039\SRTSP64.SYS [889520 2020-03-20] (Symantec Corporation -> Symantec Corporation) R1 SRTSPX; C:\WINDOWS\System32\drivers\NGCx64\1614020.039\SRTSPX64.SYS [50864 2020-03-20] (Symantec Corporation -> Symantec Corporation) R0 SymDS; C:\WINDOWS\System32\drivers\NISx64\1207020.003\SYMDS64.SYS [450680 2011-01-27] (Symantec Corporation -> Symantec Corporation) R0 SymEFA; C:\WINDOWS\System32\drivers\NISx64\1207020.003\SYMEFA64.SYS [912504 2011-03-15] (Symantec Corporation -> Symantec Corporation) R0 SymEFASI; C:\WINDOWS\System32\drivers\NGCx64\1614020.039\SYMEFASI64.SYS [1964552 2020-03-20] (Symantec Corporation -> Symantec Corporation) S0 SymELAM; C:\WINDOWS\System32\drivers\NGCx64\1614020.039\SymELAM.sys [25024 2020-03-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Broadcom Corporation) R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS [99848 2020-05-19] (Symantec Corporation -> Symantec Corporation) R3 SymEvnt; C:\Program Files\Norton Security\NortonData\22.20.2.57\SymPlatform\SymEvnt.sys [712368 2020-01-07] (Symantec Corporation -> Symantec Corporation) R1 SymIRON; C:\WINDOWS\System32\drivers\NGCx64\1614020.039\Ironx64.SYS [316656 2020-03-20] (Symantec Corporation -> Symantec Corporation) R1 SymNetS; C:\WINDOWS\System32\drivers\NGCx64\1614020.039\symnets.sys [575280 2020-03-20] (Symantec Corporation -> Symantec Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2020-02-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2020-02-23] (Microsoft Windows -> Microsoft Corporation) R3 wdkmd; C:\WINDOWS\System32\drivers\WDKMD.sys [42392 2011-02-16] (Wireless Display -> Intel Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2020-02-23] (Microsoft Windows -> Microsoft Corporation) R1 wpCtrlDrv_NGC; C:\WINDOWS\System32\drivers\NGCx64\1614020.039\wpCtrlDrv.sys [1012120 2020-03-20] (Symantec Corporation -> Symantec Corporation) U3 idsvc; geen ImagePath ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Een maand (aangemaakt) (gefilterd) ========= (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2021-01-07 10:02 - 2021-01-07 10:07 - 000034848 _____ C:\Users\Coban\Downloads\FRST.txt 2021-01-07 10:01 - 2021-01-07 10:05 - 000000000 ____D C:\FRST 2021-01-07 10:00 - 2021-01-07 10:00 - 002282496 _____ (Farbar) C:\Users\Coban\Downloads\FRST64.exe 2021-01-07 09:54 - 2021-01-07 09:54 - 000000000 _____ C:\Users\Coban\Downloads\Niet bevestigd 507511.crdownload 2021-01-07 00:26 - 2021-01-07 00:26 - 000003798 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn 2021-01-07 00:26 - 2021-01-07 00:26 - 000003356 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime 2021-01-06 20:59 - 2021-01-06 20:59 - 000000836 _____ C:\Users\Coban\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk 2021-01-06 20:59 - 2021-01-06 20:59 - 000000708 _____ C:\Users\Coban\Desktop\ESET Online Scanner.lnk 2021-01-06 20:58 - 2021-01-06 20:59 - 015012440 _____ (ESET spol. s r.o.) C:\Users\Coban\Downloads\esetonlinescanner_luc.exe 2021-01-06 20:53 - 2021-01-06 20:53 - 000197792 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2021-01-06 20:53 - 2021-01-06 20:53 - 000139424 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2021-01-06 20:53 - 2021-01-06 20:53 - 000077496 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2021-01-06 20:42 - 2021-01-06 20:42 - 008447152 _____ (Malwarebytes) C:\Users\Coban\Downloads\adwcleaner_8.0.8.exe 2021-01-06 20:19 - 2021-01-06 20:19 - 000000000 ____D C:\Users\Coban\AppData\Local\mbam 2021-01-06 20:18 - 2021-01-06 20:18 - 000248968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2021-01-06 20:18 - 2021-01-06 20:18 - 000220160 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2021-01-06 20:18 - 2021-01-06 20:18 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-01-06 20:18 - 2021-01-06 20:18 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2021-01-06 20:18 - 2021-01-06 20:17 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2021-01-06 20:18 - 2021-01-06 20:17 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2021-01-06 20:17 - 2021-01-06 20:17 - 000000000 ____D C:\Program Files\Malwarebytes 2021-01-06 20:15 - 2021-01-06 20:15 - 002086424 _____ (Malwarebytes) C:\Users\Coban\Downloads\MBSetup.exe 2021-01-06 20:15 - 2021-01-06 20:15 - 002086424 _____ (Malwarebytes) C:\Users\Coban\Downloads\MBSetup (1).exe 2021-01-06 19:21 - 2021-01-06 19:21 - 000000000 ____D C:\Users\Coban\AppData\Local\Microsoft_Corporation 2021-01-06 15:23 - 2021-01-06 15:23 - 000000080 ___SH C:\bootTel.dat 2021-01-06 10:35 - 2021-01-06 10:35 - 003079424 _____ (PortableApps.com) C:\Users\Coban\Downloads\CrystalDiskInfoPortable_8.9.0a.paf.exe 2021-01-06 10:35 - 2021-01-06 10:35 - 000000000 ____D C:\Users\Coban\Downloads\CrystalDiskInfoPortable 2021-01-06 10:30 - 2021-01-06 10:30 - 000000000 ____D C:\WINDOWS\system32\Tasks\Remediation 2021-01-06 10:13 - 2021-01-06 22:13 - 000000000 ____D C:\Program Files\CCleaner 2021-01-06 10:13 - 2021-01-06 10:13 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2021-01-06 10:13 - 2021-01-06 10:13 - 000002874 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC 2021-01-06 10:13 - 2021-01-06 10:13 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2021-01-06 10:13 - 2021-01-06 10:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2021-01-04 02:17 - 2021-01-04 02:17 - 002045952 _____ C:\WINDOWS\system32\rdpnano.dll 2021-01-04 02:17 - 2021-01-04 02:17 - 000171008 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2021-01-04 02:16 - 2021-01-04 02:16 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl 2021-01-04 02:16 - 2021-01-04 02:16 - 000000357 _____ C:\WINDOWS\system32\DrtmAuth14.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000357 _____ C:\WINDOWS\system32\DrtmAuth13.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth18.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth17.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth16.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth15.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin 2021-01-04 02:16 - 2021-01-04 02:16 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin 2021-01-04 02:15 - 2021-01-04 02:15 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl 2021-01-04 02:14 - 2021-01-04 02:14 - 001756600 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-01-04 02:14 - 2021-01-04 02:14 - 001366144 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-01-04 02:14 - 2021-01-04 02:14 - 000059392 _____ C:\WINDOWS\system32\runexehelper.exe 2021-01-04 02:14 - 2021-01-04 02:14 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt 2021-01-04 01:07 - 2021-01-04 01:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin 2021-01-04 00:15 - 2021-01-04 00:15 - 001101312 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-01-04 00:15 - 2021-01-04 00:15 - 000860160 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-01-04 00:14 - 2021-01-04 00:14 - 000035840 _____ C:\WINDOWS\system32\deploymentcsphelper.exe 2021-01-04 00:13 - 2021-01-04 00:13 - 001841152 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-01-04 00:12 - 2021-01-04 00:12 - 000200704 _____ C:\WINDOWS\system32\IHDS.dll 2021-01-04 00:12 - 2021-01-04 00:12 - 000164864 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-01-03 23:05 - 2021-01-04 01:14 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-01-03 23:04 - 2021-01-03 23:11 - 000003674 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-01-03 23:04 - 2021-01-03 23:11 - 000003550 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-01-03 22:49 - 2021-01-03 22:49 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-01-03 22:42 - 2021-01-03 22:42 - 000000000 ____D C:\Users\Coban\AppData\Local\OneDrive 2021-01-03 22:17 - 2021-01-04 03:48 - 000000000 ____D C:\Program Files\ReviverSoft 2021-01-03 21:08 - 2021-01-03 21:08 - 000567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2021-01-03 21:08 - 2021-01-03 21:08 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2021-01-03 21:07 - 2021-01-03 21:07 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2021-01-03 21:07 - 2021-01-03 21:07 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2021-01-03 21:07 - 2021-01-03 21:07 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax 2021-01-03 21:07 - 2021-01-03 21:07 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2021-01-03 21:06 - 2021-01-03 21:06 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2021-01-03 21:06 - 2021-01-03 21:06 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax 2021-01-03 21:06 - 2021-01-03 21:06 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2021-01-03 21:05 - 2021-01-03 21:05 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll 2021-01-03 21:05 - 2021-01-03 21:05 - 001282872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-01-03 21:05 - 2021-01-03 21:05 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll 2021-01-03 21:05 - 2021-01-03 21:05 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll 2021-01-03 21:05 - 2021-01-03 21:05 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll 2021-01-03 21:05 - 2021-01-03 21:05 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2021-01-03 21:05 - 2021-01-03 21:05 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll 2021-01-03 21:04 - 2021-01-03 21:04 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl 2021-01-03 21:02 - 2021-01-03 21:02 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-01-03 21:00 - 2021-01-03 21:00 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll 2021-01-03 21:00 - 2021-01-03 21:00 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll 2021-01-03 21:00 - 2021-01-03 21:00 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll 2021-01-03 21:00 - 2021-01-03 21:00 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll 2021-01-03 21:00 - 2021-01-03 21:00 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl 2021-01-03 21:00 - 2021-01-03 21:00 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll 2021-01-03 20:57 - 2021-01-03 20:57 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-01-03 20:56 - 2021-01-03 20:56 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin 2021-01-03 20:56 - 2021-01-03 20:56 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2021-01-03 19:59 - 2021-01-03 20:01 - 000002407 _____ C:\Users\Coban\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-01-03 19:38 - 2021-01-03 19:40 - 000002406 _____ C:\Users\Coban\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2021-01-03 19:38 - 2021-01-03 19:40 - 000002398 _____ C:\Users\Coban\Desktop\Microsoft Teams.lnk 2021-01-03 19:37 - 2021-01-03 19:37 - 000000000 ____D C:\Users\Coban\AppData\Roaming\Teams ==================== Een maand (gewijzigd) ================== (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2021-01-07 09:53 - 2020-01-12 21:44 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-01-07 09:53 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-01-07 09:53 - 2016-01-13 16:02 - 000000000 ____D C:\Users\Coban\AppData\LocalLow\AuthenTec 2021-01-06 21:01 - 2020-05-19 10:58 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton Security with Backup 2021-01-06 20:59 - 2017-03-01 09:20 - 000000000 ____D C:\Users\Coban\AppData\Local\ESET 2021-01-06 20:55 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-01-06 20:55 - 2016-01-13 16:30 - 000000000 ____D C:\Users\Coban\AppData\Local\CrashDumps 2021-01-06 20:54 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps 2021-01-06 20:51 - 2020-01-12 22:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-01-06 20:49 - 2019-03-19 05:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2021-01-06 20:48 - 2011-03-16 20:10 - 000000000 ____D C:\Program Files\Hewlett-Packard 2021-01-06 20:47 - 2016-01-13 16:04 - 000000000 ____D C:\Users\Coban\AppData\Roaming\Hewlett-Packard 2021-01-06 20:47 - 2016-01-13 16:04 - 000000000 ____D C:\Users\Coban\AppData\Local\Hewlett-Packard 2021-01-06 20:47 - 2011-04-24 13:43 - 000000000 ____D C:\ProgramData\Hewlett-Packard 2021-01-06 20:47 - 2011-04-24 13:35 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard 2021-01-06 20:47 - 2011-02-16 19:51 - 000000000 ___HD C:\HP 2021-01-06 20:44 - 2017-10-31 16:04 - 000000000 ____D C:\AdwCleaner 2021-01-06 20:18 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-01-06 20:17 - 2016-02-15 12:07 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-01-06 19:40 - 2017-12-16 14:22 - 000000000 ____D C:\Users\Coban\AppData\Local\Packages 2021-01-06 19:14 - 2020-01-12 21:44 - 000440608 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-01-06 10:21 - 2016-01-13 16:29 - 000000000 ____D C:\Users\Coban\AppData\LocalLow\Adblock Plus for IE 2021-01-06 10:16 - 2019-10-24 20:56 - 000000000 ___DC C:\WINDOWS\Panther 2021-01-06 10:16 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-01-06 10:16 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF 2021-01-04 03:45 - 2020-01-12 22:16 - 002009290 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-01-04 03:45 - 2019-03-19 13:33 - 000863242 _____ C:\WINDOWS\system32\perfh013.dat 2021-01-04 03:45 - 2019-03-19 13:33 - 000183258 _____ C:\WINDOWS\system32\perfc013.dat 2021-01-04 03:24 - 2016-02-18 22:43 - 000000000 ____D C:\ProgramData\Citrix 2021-01-04 03:22 - 2016-02-18 22:43 - 000000000 ____D C:\Users\Coban\AppData\Local\Citrix 2021-01-04 03:04 - 2016-02-13 20:31 - 000000000 ___RD C:\Users\Coban\Desktop\Snelkoppelingen 2021-01-04 02:46 - 2017-12-16 15:00 - 000000000 ___RD C:\Users\Coban\3D Objects 2021-01-04 02:46 - 2016-02-16 21:04 - 000000000 __RHD C:\Users\Public\AccountPictures 2021-01-04 02:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-01-04 02:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources 2021-01-04 02:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-01-04 02:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-01-04 02:34 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-01-04 02:34 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences 2021-01-04 02:34 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-01-04 02:34 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows Defender 2021-01-04 02:34 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2021-01-04 02:30 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-01-04 02:28 - 2016-01-15 19:05 - 000002321 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-01-04 01:09 - 2019-10-15 19:04 - 000000000 ____D C:\ProgramData\Garmin 2021-01-04 01:08 - 2017-08-22 21:43 - 000000000 ____D C:\ProgramData\Package Cache 2021-01-04 01:07 - 2019-10-15 19:02 - 000000000 ____D C:\Program Files (x86)\Garmin 2021-01-04 01:06 - 2020-01-12 22:13 - 000003624 _____ C:\WINDOWS\system32\Tasks\GarminUpdaterTask 2021-01-04 00:48 - 2019-10-15 19:04 - 000000000 ____D C:\Users\Coban\AppData\Local\Garmin 2021-01-04 00:45 - 2018-10-30 19:07 - 000000000 ____D C:\Users\Coban\AppData\Local\D3DSCache 2021-01-04 00:42 - 2016-10-01 19:44 - 000000000 ____D C:\Users\Coban\AppData\Local\ConnectedDevicesPlatform 2021-01-04 00:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\TextInput 2021-01-04 00:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-01-04 00:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-01-04 00:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2021-01-04 00:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-01-04 00:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-01-04 00:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2021-01-04 00:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\setup 2021-01-04 00:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\migwiz 2021-01-04 00:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\es-MX 2021-01-04 00:28 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-01-04 00:28 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\appraiser 2021-01-04 00:28 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Provisioning 2021-01-04 00:28 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-01-04 00:12 - 2020-01-12 21:50 - 002876928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2021-01-03 22:57 - 2016-02-17 21:53 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-01-03 22:49 - 2016-02-17 21:53 - 133736600 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-01-03 21:50 - 2019-03-19 05:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2021-01-03 21:38 - 2019-03-19 05:52 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2021-01-03 21:38 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2021-01-03 21:38 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2021-01-03 21:36 - 2019-03-19 05:52 - 000000000 ___SD C:\WINDOWS\system32\F12 2021-01-03 21:36 - 2019-03-19 05:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2021-01-03 21:36 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2021-01-03 21:36 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2021-01-03 21:36 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Com 2021-01-03 21:36 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2021-01-03 21:33 - 2019-03-19 13:35 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-01-03 21:33 - 2019-03-19 13:35 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-01-03 21:33 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Common Files\System 2021-01-03 21:33 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\servicing 2021-01-03 21:32 - 2019-03-19 05:52 - 000000000 ____D C:\PerfLogs 2021-01-03 20:08 - 2020-01-12 22:13 - 000003366 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2719908977-4093848447-3276493948-1001 2021-01-03 19:59 - 2016-02-16 21:07 - 000000000 ___RD C:\Users\Coban\OneDrive 2021-01-03 19:42 - 2020-01-12 22:13 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2021-01-03 19:40 - 2017-08-04 19:07 - 000000000 ____D C:\Users\Coban\AppData\Local\SquirrelTemp 2021-01-03 19:39 - 2017-03-01 08:53 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-01-03 19:33 - 2020-01-12 22:13 - 000003606 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA1d165d25686dd50 2021-01-03 19:33 - 2020-01-12 22:13 - 000003482 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d165d2563f7408 ==================== Bestanden in de root van sommige mappen ======== 2019-04-02 17:13 - 2019-04-02 17:13 - 007505920 _____ () C:\Program Files (x86)\GUTDD5A.tmp 2017-03-22 07:06 - 2018-03-07 17:55 - 000010752 _____ () C:\Users\Coban\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2016-01-26 20:04 - 2016-01-26 20:04 - 000001566 _____ () C:\Users\Coban\AppData\Local\PDLSetup.20160126.200430.txt ==================== SigCheck ============================ (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) ==================== Einde van FRST.txt ========================