Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 05-02-2022 Gestart door Francine (Beheerder) op DESKTOP-D9P86AH (MEDIONPC MS-7616) (11-02-2022 08:57:05) Gestart vanaf D:\Downloads Geladen Profielen: Francine Platform: Microsoft Windows 10 Home Versie 21H1 19043.1526 (X64) Taal: Nederlands (Nederland) Standaardbrowser: Edge Boot Modus: Normal ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, zal het proces worden gesloten. Het bestand zal niet worden verplaatst.) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <4> (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe (bookingDesktopApp.) [Bestand niet getekend] C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe (Corel Corporation -> WinZip Computing, S.L. (WinZip Computing)) C:\Program Files (x86)\WinZip Disk Tools\wzdisktools.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <3> (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\141.4.3299\QtWebEngineProcess.exe <2> (Gadwin, Ltd. -> Gadwin, Ltd.) C:\Program Files\Gadwin\Gadwin PrintScreen\PrintScreen64.exe (Google LLC -> ) C:\Program Files\Google\Drive File Stream\54.0.3.0\crashpad_handler.exe <3> (Google LLC -> ) C:\Program Files\Google\Drive File Stream\55.0.3.0\crashpad_handler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <4> (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe <6> (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <43> (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2111.12605.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2111.12605.0_x64__8wekyb3d8bbwe\Win32Bridge.Server.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe <2> (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Oracle\Java\javapath_target_139371375\java.exe (PacketVideo Corporation -> ) C:\Program Files (x86)\Twonky\TwonkyServer\twonkyproxy.exe (PacketVideo Corporation -> ) C:\Program Files (x86)\Twonky\TwonkyServer\twonkyserver.exe (PacketVideo Corporation -> ) C:\Program Files (x86)\Twonky\TwonkyServer\twonkywebdav.exe (PacketVideo Corporation -> PacketVideo) C:\Program Files (x86)\Twonky\TwonkyServer\twonkystarter.exe (PasswordBoss, LLC -> PasswordBoss, LLC) C:\Program Files (x86)\PasswordBoss\PBUpdater\PBUpdater.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (Samsung Electronics CO., LTD. -> Samsung) C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe (Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe (South Bay Software) [Bestand niet getekend] C:\Program Files (x86)\AutoSizer\AutoSizer.exe (Tanuki Software Ltd. -> Tanuki Software, Ltd.) C:\Program Files (x86)\Universal Media Server\win32\service\wrapper.exe (Wondershare software CO., LIMITED -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe ==================== Register (gefilterd) =================== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1794888 2015-06-29] (NVIDIA Corporation -> NVIDIA Corporation) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [157464 2021-12-22] (Avast Software s.r.o. -> AVAST Software) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [298296 2018-03-25] (Apple Inc. -> Apple Inc.) HKLM\...\Run: [WinZip UN] => C:\Program Files\WinZip\WZUpdateNotifier.exe [2862032 2018-11-07] (Corel Corporation -> Corel Corporation) HKLM\...\Run: [WinZip PreLoader] => C:\Program Files\WinZip\WzPreloader.exe [130624 2018-11-07] (Corel Corporation -> WinZip Computing) HKLM-x32\...\Run: [Nikon Message Center 2] => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [588288 2016-01-08] (Nikon Corporation) [Bestand niet getekend] HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [47432 2013-08-15] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [31048 2013-08-15] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM-x32\...\Run: [PDFHook] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe [636192 2010-03-05] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM-x32\...\Run: [PDF5 Registry Controller] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe [62752 2010-03-05] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2409944 2018-06-22] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67896 2018-03-16] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [318112 2017-11-15] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) HKLM-x32\...\Run: [Shindan] => C:\Program Files (x86)\Brother\BPR2\brdiagtool.exe [214528 2017-05-19] (Brother Industries, Ltd.) [Bestand niet getekend] HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2137744 2016-10-08] (Wondershare software CO., LIMITED -> Wondershare) HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [868328 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [10585376 2022-02-02] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [145344 2019-07-26] (Brother Industries, Ltd. -> Brother Industries, Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4522496 2013-03-22] (Brother Industries, Ltd.) [Bestand niet getekend] HKLM-x32\...\Run: [BrHelp] => C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [1944576 2013-03-07] (Brother Industries, Ltd.) [Bestand niet getekend] HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe [55334232 2022-01-25] (Google LLC -> Google, Inc.) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe [55334232 2022-01-25] (Google LLC -> Google, Inc.) HKU\S-1-5-21-9162235-4046158101-2280952487-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2593128 2022-01-29] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-9162235-4046158101-2280952487-1001\...\Run: [Gadwin PrintScreen (64-bit)] => C:\Program Files\Gadwin\Gadwin PrintScreen\PrintScreen64.exe [14832512 2021-03-31] (Gadwin, Ltd. -> Gadwin, Ltd.) HKU\S-1-5-21-9162235-4046158101-2280952487-1001\...\Run: [AutoSizer] => C:\Program Files (x86)\AutoSizer\AutoSizer.exe [131072 2017-08-24] (South Bay Software) [Bestand niet getekend] HKU\S-1-5-21-9162235-4046158101-2280952487-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Software Inc. -> Acresso Corporation) HKU\S-1-5-21-9162235-4046158101-2280952487-1001\...\Run: [AshSnap] => C:\Program Files (x86)\Ashampoo\Ashampoo Snap 2018\ashsnap.exe [6189968 2017-06-13] (Ashampoo GmbH & Co. KG -> Ashampoo GmbH & Co. KG) HKU\S-1-5-21-9162235-4046158101-2280952487-1001\...\Run: [PasswordBoss] => C:\Program Files (x86)\PasswordBoss\PasswordBoss.exe [330504 2019-03-07] (PasswordBoss, LLC -> PasswordBoss, LLC) HKU\S-1-5-21-9162235-4046158101-2280952487-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35320448 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-9162235-4046158101-2280952487-1001\...\Run: [KiesPDLR.exe] => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [1023648 2017-11-15] (Samsung Electronics CO., LTD. -> Samsung) HKU\S-1-5-21-9162235-4046158101-2280952487-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe [55334232 2022-01-25] (Google LLC -> Google, Inc.) HKU\S-1-5-21-9162235-4046158101-2280952487-1001\...\Run: [MicrosoftEdgeAutoLaunch_9FB4A06D3C2069A87A57FAA95F045939] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 HKU\S-1-5-21-9162235-4046158101-2280952487-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31193432 2022-01-12] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) HKU\S-1-5-21-9162235-4046158101-2280952487-1002\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2593128 2022-01-29] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-9162235-4046158101-2280952487-1002\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe --startup_mode (Geen bestand) HKU\S-1-5-21-9162235-4046158101-2280952487-1002\...\Run: [MicrosoftEdgeAutoLaunch_F8D27F449D5EA26F128DE36A857215A4] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe [55334232 2022-01-25] (Google LLC -> Google, Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\98.0.4758.82\Installer\chrmstp.exe [2022-02-10] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MediaServer.lnk [2017-08-20] ShortcutTarget: MediaServer.lnk -> C:\Program Files (x86)\Twonky\TwonkyServer\twonkytray.exe (PacketVideo Corporation -> PacketVideo) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Universal Media Server.lnk [2018-03-10] ShortcutTarget: Universal Media Server.lnk -> C:\Program Files (x86)\Universal Media Server\UMS.exe (Universal Media Server) [Bestand niet getekend] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Wi-Fi MediaConnect.lnk [2017-08-20] ShortcutTarget: Wi-Fi MediaConnect.lnk -> C:\Program Files (x86)\Philips\Wi-Fi MediaConnect\Wi-Fi MediaConnect.exe (Koninklijke Philips Electronics N.V.) [Bestand niet getekend] Startup: C:\Users\Francine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Verzenden naar OneNote.lnk [2020-07-15] ShortcutTarget: Verzenden naar OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restrictie <==== AANDACHT HKLM\SOFTWARE\Policies\Google: Restrictie <==== AANDACHT ==================== Geplande Taken (gefilterd) ============ (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {062D6021-1A66-4125-BB4C-FEFD1112CB5E} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [26968 2022-01-12] (Garmin International, Inc. -> ) Task: {0A13998A-148B-47DD-AC69-4876085E96BD} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [108904 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {15429FBD-861C-4C43-8B5D-DF7350C959DD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-06-11] (Google Inc -> Google Inc.) Task: {1AE7C61C-E766-4048-B1B3-6412786BF21B} - System32\Tasks\WinZip Update Notifier 3 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2862032 2018-11-07] (Corel Corporation -> Corel Corporation) Task: {1E6D5294-6598-415E-B445-4D77EBD00FD3} - System32\Tasks\wzdt_notifier_executor => C:\Program Files (x86)\WinZip Disk Tools\notifier.exe [1918608 2021-12-03] (Corel Corporation -> Corel Corporation) Task: {21577825-38AE-4FB7-9AE3-110753C24C77} - System32\Tasks\bookingDesktopAppUpdateTaskMachineCore => C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe [102400 2020-12-27] (bookingDesktopApp.) [Bestand niet getekend] Task: {21A7CBD5-9AE1-46EC-B32C-5F09975A7808} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) Task: {34CD1E4E-7A3A-4AA7-A22A-5E5326DC7619} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.) Task: {375430CF-89E8-418A-993A-404A6580EBAB} - System32\Tasks\CCleanerSkipUAC - Francine => C:\Program Files\CCleaner\CCleaner.exe [29453952 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd) Task: {3B7E2096-AC2A-4C89-99BB-7AFFB75236FD} - System32\Tasks\WinZip Update Notifier 1 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2862032 2018-11-07] (Corel Corporation -> Corel Corporation) Task: {3CAEFEC1-832B-4C77-9C0A-F43C0254CF89} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) Task: {3F59D53B-F9BF-4652-B18C-C4410F377024} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-9162235-4046158101-2280952487-1002 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4078440 2022-01-29] (Microsoft Corporation -> Microsoft Corporation) Task: {53B36CC4-C829-4F4D-818C-1EBA568C9406} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK Task: {5ADF4B91-FCF6-418D-8FE5-2198F7E45824} - System32\Tasks\Connect => C:\Program Files (x86)\MAGIX\Connect\connect.exe [324680 2017-05-10] (MAGIX Software GmbH -> MAGIX Software GmbH) Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\AdobeGCInvoker-1.0" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\bookingDesktopAppUpdateTaskMachineCore" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\bookingDesktopAppUpdateTaskMachineUA" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\CCleaner Update" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\CCleanerSkipUAC - Francine" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\CreateExplorerShellUnelevatedTask" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(7): schtasks.exe -> /Change /TN "\DropboxUpdateTaskMachineCore" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(8): schtasks.exe -> /Change /TN "\DropboxUpdateTaskMachineUA" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(9): schtasks.exe -> /Change /TN "\GarminUpdaterTask" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(10): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(11): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(12): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineCore" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(13): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineCore1d6cf0d20632238" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(14): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineUA" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(15): schtasks.exe -> /Change /TN "\OneDrive Per-Machine Standalone Update Task" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(16): schtasks.exe -> /Change /TN "\OneDrive Reporting Task-S-1-5-21-9162235-4046158101-2280952487-1001" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(17): schtasks.exe -> /Change /TN "\OneDrive Reporting Task-S-1-5-21-9162235-4046158101-2280952487-1002" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(18): schtasks.exe -> /Change /TN "\WinZip Disk Tools" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(19): schtasks.exe -> /Change /TN "\WinZip Update Notifier 1" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(20): schtasks.exe -> /Change /TN "\WinZip Update Notifier 2" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(21): schtasks.exe -> /Change /TN "\WinZip Update Notifier 3" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(22): schtasks.exe -> /Change /TN "\wzdt_notifier_executor" /ENABLE Task: {5E9B7260-55D7-4AF4-BE52-A3BBFCF6CE86} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(23): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE Task: {60D184AE-7CDF-4C8C-9D5C-AF39650FE3EE} - System32\Tasks\WinZip Disk Tools => C:\Program Files (x86)\WinZip Disk Tools\wzdisktools.exe [2618512 2021-12-03] (Corel Corporation -> WinZip Computing, S.L. (WinZip Computing)) Task: {64E4999A-F514-493A-B4B8-6C6E723807F9} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-01-25] (Piriform Software Ltd -> Piriform) Task: {809538F2-0B86-4A8B-B623-DEC750D337BA} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22880112 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {81B7D185-7BA8-4346-B2E7-C0A5540C97B2} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4078440 2022-01-29] (Microsoft Corporation -> Microsoft Corporation) Task: {969A29CD-7795-4D95-823A-D53C0876D13F} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1172360 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {AA3ECF16-9EC0-441C-B892-D14294F3CA6B} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-04-30] (Avast Software s.r.o. -> Avast Software) Task: {AB58AE2C-90D4-4BB5-9278-71073F2C6D1A} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-D9P86AH-Francine => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {C8810C0E-F6A0-4C26-889F-BC458BB1BD07} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4969240 2021-12-22] (Avast Software s.r.o. -> AVAST Software) Task: {C8EC16EF-6349-4770-9D82-709DB8896130} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [108904 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {CB4B0B91-BABB-4AEE-A374-8B15A097D550} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-06-11] (Google Inc -> Google Inc.) Task: {CFC876A3-4CC8-4A84-AE5D-C8D6D1B46725} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22880112 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {E69C2A77-2C96-45A0-A50D-F7C77325D71D} - System32\Tasks\WinZip Update Notifier 2 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2862032 2018-11-07] (Corel Corporation -> Corel Corporation) Task: {F101705E-F432-44DF-81C5-0435BC3E9DD7} - System32\Tasks\bookingDesktopAppUpdateTaskMachineUA => C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe [102400 2020-12-27] (bookingDesktopApp.) [Bestand niet getekend] Task: {F64820DD-3C0F-4BB6-ACBB-0419553316F8} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-9162235-4046158101-2280952487-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4078440 2022-01-29] (Microsoft Corporation -> Microsoft Corporation) Task: {F794FB6A-06F2-43D1-859D-0D2016DF65ED} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {FF513322-5954-4D5E-855A-9CEE6B7503EF} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe do-task "E7CF176E110C211B" (Als een item is opgenomen in de fixlist, wordt de taak (job) bestand verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\Connect.job => C:\Program Files (x86)\MAGIX\Connect\connect.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist en een registeritem is, wordt het verwijderd of hersteld naar de standaard.) Tcpip\Parameters: [DhcpNameServer] 195.130.131.5 195.130.130.5 Tcpip\..\Interfaces\{96e0b2e9-d246-4834-9f2d-3232ead6553b}: [DhcpNameServer] 195.130.131.5 195.130.130.5 Edge: ======= DownloadDir: D:\Downloads Edge Notifications: HKU\S-1-5-21-9162235-4046158101-2280952487-1001 -> hxxps://www.facebook.com; hxxps://nutritek.ru; hxxps://www.24kitchen.nl; hxxps://www.noodweer.be; hxxps://www.gastronomixs.com; hxxps://www.recepten.be; hxxps://www.foodandwine.com; hxxps://www.culy.nl; hxxps://www.sligro.nl; hxxps://gocar.be; hxxps://vtm.be; hxxps://login2.vtm.be; hxxps://forums.tomsguide.com; hxxps://www.promobutler.be; hxxps://www.hln.be; hxxps://www.gratissoftware.nu; hxxps://www.nieuwsblad.be; hxxps://www.standaard.be; hxxps://www.autodoc.be; hxxps://www.wish.com Edge Extension: (Geen Naam) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [niet gevonden] Edge Extension: (Geen Naam) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [niet gevonden] Edge Extension: (Video Downloader professional) -> EdgeExtension_Link64GmbHVideoDownloaderProfessionalforEdge_r8gm29f18mcyc => C:\Program Files\WindowsApps\Link64GmbH.VideoDownloaderProfessionalforEdge_1.0.12.0_neutral__r8gm29f18mcyc [2019-09-29] Edge Extension: (Video Downloader GetThemAll) -> EdgeExtension_NimbusWebGetThemAllVideoDownlaoder_p5fjnfwkc9ns0 => C:\Program Files\WindowsApps\NimbusWeb.GetThemAll-VideoDownlaoder_2.3.2.0_x64__p5fjnfwkc9ns0 [2019-09-29] Edge Extension: (Geen Naam) -> EdgeExtension_PasswordBossPasswordBoss_q9bv770jy21py => C:\Program Files\WindowsApps\PasswordBoss.PasswordBoss_5.0.4407.0_x86__q9bv770jy21py [niet gevonden] Edge Extension: (Pin It Button) -> EdgeExtension_PinterestPinItButton_xnkra2w3aecd0 => C:\Program Files\WindowsApps\Pinterest.PinItButton_1.39.5.0_neutral__xnkra2w3aecd0 [2019-09-29] Edge Extension: (Save to Pocket) -> EdgeExtension_PocketSavetoPocket_v63j13wrfzj3t => C:\Program Files\WindowsApps\Pocket.SavetoPocket_2.0.38.0_neutral__v63j13wrfzj3t [2019-09-29] Edge Extension: (Geen Naam) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [niet gevonden] Edge Extension: (Geen Naam) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [niet gevonden] Edge DefaultProfile: Default Edge Profile: C:\Users\Francine\AppData\Local\Microsoft\Edge\User Data\Default [2022-02-11] Edge DownloadDir: Default -> D:\Downloads Edge Notifications: Default -> hxxps://androidworld.nl; hxxps://be.farmforage.com; hxxps://forums.tomsguide.com; hxxps://gocar.be; hxxps://login2.vtm.be; hxxps://nutritek.ru; hxxps://vanvideonaardvd.com; hxxps://vtm.be; hxxps://www.24kitchen.nl; hxxps://www.autodoc.be; hxxps://www.clint.be; hxxps://www.culy.nl; hxxps://www.delhaize.be; hxxps://www.facebook.com; hxxps://www.foodandwine.com; hxxps://www.gastronomixs.com; hxxps://www.gratissoftware.nu; hxxps://www.hln.be; hxxps://www.nieuwsblad.be; hxxps://www.noodweer.be; hxxps://www.promobutler.be; hxxps://www.recepten.be; hxxps://www.sligro.nl; hxxps://www.standaard.be; hxxps://www.vers-inspiratie.nl; hxxps://www.wish.com; hxxps://www.wondershare.net Edge Extension: (My Apps Secure Sign-in Extension) - C:\Users\Francine\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gaaceiggkkiffbfdpmfapegoiohkiipl [2020-11-25] Edge Extension: (Pinterest-bewaarknop) - C:\Users\Francine\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jfcjijcigimhjjdimpghneggnegiphhh [2020-06-11] Edge Extension: (Save to Pocket) - C:\Users\Francine\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jicacccodjjgmghnmekophahpmddeemd [2020-06-11] Edge Extension: (Connective signing extension) - C:\Users\Francine\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kclpjmhngbacampgcdojmiedamjbgjjm [2021-07-06] Edge Extension: (Password Boss) - C:\Users\Francine\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\oohkecdclgfdkolkkkoejdidlkfmifhi [2021-10-14] FireFox: ======== FF DefaultProfile: f9oyfcbf.default FF ProfilePath: C:\Users\Francine\AppData\Roaming\Mozilla\Firefox\Profiles\f9oyfcbf.default [2022-02-11] FF Extension: (eID België) - C:\Users\Francine\AppData\Roaming\Mozilla\Firefox\Profiles\f9oyfcbf.default\Extensions\belgiumeid@eid.belgium.be.xpi [2021-08-06] FF Extension: (Nederlands (NL) Language Pack) - C:\Users\Francine\AppData\Roaming\Mozilla\Firefox\Profiles\f9oyfcbf.default\Extensions\langpack-nl@firefox.mozilla.org.xpi [2022-02-10] FF Extension: (Woordenboek Nederlands) - C:\Users\Francine\AppData\Roaming\Mozilla\Firefox\Profiles\f9oyfcbf.default\Extensions\nl-NL@dictionaries.addons.mozilla.org.xpi [2022-02-10] FF Extension: (Avast SafePrice | Prijsvergelijking, aanbiedingen, waardebonnen) - C:\Users\Francine\AppData\Roaming\Mozilla\Firefox\Profiles\f9oyfcbf.default\Extensions\sp@avast.com.xpi [2022-02-09] FF Extension: (Avast Online Security) - C:\Users\Francine\AppData\Roaming\Mozilla\Firefox\Profiles\f9oyfcbf.default\Extensions\wrc@avast.com.xpi [2020-05-31] [UpdateUrl:hxxps://firefoxext.avcdn.net/firefoxext/avast/aos/update.json] FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-06-22] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @bookingdesktopapp.com/bookingDesktopApp Update;version=3 -> C:\Program Files (x86)\bookingDesktopApp\Update\1.3.99.0\npbookingDesktopAppUpdate3.dll [2020-12-27] (bookingDesktopApp.) [Bestand niet getekend] FF Plugin-x32: @bookingdesktopapp.com/bookingDesktopApp Update;version=9 -> C:\Program Files (x86)\bookingDesktopApp\Update\1.3.99.0\npbookingDesktopAppUpdate3.dll [2020-12-27] (bookingDesktopApp.) [Bestand niet getekend] FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2013-04-02] (Google Inc. -> Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-05-07] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-05-07] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-10-29] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-11-14] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Bestand niet getekend] FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-11-14] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Bestand niet getekend] FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-06-22] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin HKU\S-1-5-21-9162235-4046158101-2280952487-1001: connective.be/BrowserPlugin -> C:\Users\Francine\AppData\Local\Connective\SigningFirefoxPlugin\npapi-plugin.dll [2020-12-17] (Connective n.v.) [Bestand niet getekend] Chrome: ======= CHR Profile: C:\Users\Francine\AppData\Local\Google\Chrome\User Data\Default [2022-02-10] CHR Notifications: Default -> hxxps://www.facebook.com CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=E210BE91082G0&p={searchTerms} CHR DefaultSearchKeyword: Default -> mcafee CHR Extension: (Presentaties) - C:\Users\Francine\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-11-25] CHR Extension: (Documenten) - C:\Users\Francine\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-11-25] CHR Extension: (Google Drive) - C:\Users\Francine\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-25] CHR Extension: (YouTube) - C:\Users\Francine\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-11-25] CHR Extension: (Spreadsheets) - C:\Users\Francine\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-11-25] CHR Extension: (McAfee® WebAdvisor) - C:\Users\Francine\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2022-01-29] CHR Extension: (Offline Documenten) - C:\Users\Francine\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-02-09] CHR Extension: (Connective signing extension) - C:\Users\Francine\AppData\Local\Google\Chrome\User Data\Default\Extensions\kclpjmhngbacampgcdojmiedamjbgjjm [2020-11-25] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\Francine\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-04-05] CHR Extension: (Gmail) - C:\Users\Francine\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-25] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKU\S-1-5-21-9162235-4046158101-2280952487-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] ==================== Services (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818128 2018-06-22] (Adobe Systems Incorporated -> Adobe Systems Incorporated) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3849472 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3617024 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-03-14] (Apple Inc. -> Apple Inc.) S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8480848 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [452888 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [1720088 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [452888 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-06-01] (Avast Software s.r.o. -> AVAST Software) S2 bookingdesktopapp; C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe [102400 2020-12-27] (bookingDesktopApp.) [Bestand niet getekend] S3 bookingdesktopappm; C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe [102400 2020-12-27] (bookingDesktopApp.) [Bestand niet getekend] S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [Bestand niet getekend] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12124536 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44328 2022-02-02] (Dropbox, Inc -> Dropbox, Inc.) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.002.0103.0004\FileSyncHelper.exe [3354520 2022-01-29] (Microsoft Corporation -> Microsoft Corporation) R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [971912 2022-02-09] (McAfee, LLC -> McAfee, LLC) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.002.0103.0004\OneDriveUpdaterService.exe [3812248 2022-01-29] (Microsoft Corporation -> Microsoft Corporation) R2 PBUpdater; C:\Program Files (x86)\PasswordBoss\PBUpdater\PBUpdater.exe [1934088 2019-03-07] (PasswordBoss, LLC -> PasswordBoss, LLC) R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [145736 2013-08-15] (Nuance Communications, Inc. -> Nuance Communications, Inc.) R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [493544 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation) R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2017-01-16] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 TwonkyProxy; C:\Program Files (x86)\Twonky\TwonkyServer\twonkyproxy.exe [545608 2012-07-09] (PacketVideo Corporation -> ) R2 TwonkyServer; C:\Program Files (x86)\Twonky\TwonkyServer\twonkystarter.exe [549704 2012-07-09] (PacketVideo Corporation -> PacketVideo) R2 TwonkyWebDav; C:\Program Files (x86)\Twonky\TwonkyServer\twonkywebdav.exe [271176 2012-07-09] (PacketVideo Corporation -> ) R2 Universal Media Server; C:\Program Files (x86)\Universal Media Server\win32\service\wrapper.exe [384280 2014-11-23] (Tanuki Software Ltd. -> Tanuki Software, Ltd.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-02-24] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-02-24] (Microsoft Windows Publisher -> Microsoft Corporation) S3 wzdtDiskOptimizer; C:\Program Files (x86)\WinZip Disk Tools\wzdtDefragSrv64.exe [322192 2021-12-03] (Corel Corporation -> WinZip Computing, S.L. (WinZip Computing)) ===================== Drivers (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) S3 A38CCID; C:\WINDOWS\system32\DRIVERS\a38ccid.sys [86880 2018-07-12] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Card Systems Ltd.) R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [36784 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [223176 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [369216 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [252992 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [100416 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-09-28] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software) R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42416 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [186280 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [540056 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [108912 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83976 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [853800 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [545176 2021-12-22] (Avast Software s.r.o. -> AVAST Software) S2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215432 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [318760 2021-12-22] (Avast Software s.r.o. -> AVAST Software) R3 BrSerIb; C:\WINDOWS\system32\DRIVERS\BrSerIb.sys [95344 2014-10-23] (Brother Industries, Ltd. -> Brother Industries Ltd.) R3 BrUsbSIb; C:\WINDOWS\system32\DRIVERS\BrUsbSIb.sys [21872 2014-10-23] (Brother Industries, Ltd. -> Brother Industries Ltd.) S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [153088 2021-08-10] (Microsoft Corporation) [Bestand niet getekend] S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 googledrivefs3688; C:\WINDOWS\System32\DRIVERS\googledrivefs3688.sys [381456 2021-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) S3 gpslc64; C:\WINDOWS\System32\Drivers\gpslc64.sys [102624 2010-03-10] (Mobile Action Technology Inc. -> Mobile Action Technology Inc.) R2 speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2020-02-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2020-02-24] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2020-02-24] (Microsoft Windows -> Microsoft Corporation) R3 WFMC_VAD; C:\WINDOWS\System32\drivers\wfmcvad.sys [24064 2010-02-08] (Microsoft Windows Hardware Compatibility Publisher -> WiFi Media Connect) S3 WinRing0_1_2_0; \??\C:\Users\Francine\AppData\Local\Temp\tmp7EAD.tmp [X] <==== AANDACHT ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Een maand (aangemaakt) (gefilterd) ========= (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2022-02-11 08:56 - 2022-02-11 08:57 - 000000000 ____D C:\FRST 2022-02-10 06:16 - 2022-02-10 06:16 - 000000017 _____ C:\Users\Francine\AppData\Local\resmon.resmoncfg 2022-02-09 23:28 - 2022-02-10 23:31 - 000002314 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Francine 2022-02-09 18:29 - 2022-02-09 18:29 - 000000000 ____D C:\Users\Henri\AppData\Roaming\Mozilla 2022-02-09 18:29 - 2022-02-09 18:29 - 000000000 ____D C:\Users\Henri\AppData\LocalLow\Mozilla 2022-02-09 18:29 - 2022-02-09 18:29 - 000000000 ____D C:\Users\Henri\AppData\Local\Mozilla 2022-02-09 18:29 - 2022-02-09 18:29 - 000000000 ____D C:\ProgramData\Mozilla 2022-02-09 16:56 - 2022-02-09 16:56 - 000000000 ____D C:\Users\Francine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps 2022-02-09 13:31 - 2022-02-09 13:31 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe 2022-02-09 13:31 - 2022-02-09 13:31 - 000011813 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-02-09 13:30 - 2022-02-09 13:30 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-02-09 13:30 - 2022-02-09 13:30 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe 2022-02-09 13:30 - 2022-02-09 13:30 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2022-02-09 13:18 - 2022-02-09 13:18 - 000000000 ___HD C:\$WinREAgent 2022-02-09 12:05 - 2022-02-09 12:05 - 000000000 ____D C:\Users\Henri\AppData\Local\PlaceholderTileLogoFolder 2022-02-09 10:38 - 2022-02-09 10:38 - 000000000 ____D C:\Users\Henri\AppData\Local\Avast Software 2022-02-09 10:08 - 2022-02-09 10:09 - 000000000 ____D C:\Users\Henri\AppData\Local\Dropbox 2022-02-09 10:08 - 2022-02-09 10:08 - 000000000 ____D C:\Users\Henri\AppData\Roaming\Sony Corporation 2022-02-09 10:08 - 2022-02-09 10:08 - 000000000 ____D C:\Users\Henri\AppData\Local\Wondershare 2022-02-09 10:05 - 2022-02-09 10:05 - 000000000 ___RD C:\Users\Henri\3D Objects 2022-02-09 10:04 - 2022-02-09 10:04 - 000000020 ___SH C:\Users\Henri\ntuser.ini 2022-02-09 09:56 - 2022-02-10 10:29 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-02-09 02:56 - 2022-02-09 18:35 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2022-02-08 09:58 - 2022-02-08 09:58 - 000000000 ____D C:\Users\Francine\AppData\LocalLow\Ookla 2022-02-08 09:58 - 2022-02-08 09:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speedtest By Ookla 2022-02-08 09:58 - 2022-02-08 09:58 - 000000000 ____D C:\Program Files\Speedtest 2022-02-07 08:41 - 2022-02-10 23:31 - 000002704 _____ C:\WINDOWS\system32\Tasks\wzdt_notifier_executor 2022-02-07 08:41 - 2022-02-10 23:31 - 000002542 _____ C:\WINDOWS\system32\Tasks\WinZip Disk Tools 2022-02-07 08:40 - 2022-02-07 08:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip Disk Tools 2022-02-07 08:40 - 2022-02-07 08:40 - 000000000 ____D C:\Program Files (x86)\WinZip Disk Tools 2022-02-07 08:39 - 2022-02-07 08:40 - 006491344 _____ (WinZip International LLC ) C:\Users\Francine\Downloads\wzdt9.exe 2022-02-04 01:07 - 2022-02-04 01:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2022-02-02 03:36 - 2022-02-02 03:36 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2022-02-02 03:36 - 2022-02-02 03:36 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2022-02-02 03:36 - 2022-02-02 03:36 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2022-02-02 03:36 - 2022-02-02 03:36 - 000044328 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2022-01-13 13:57 - 2022-01-13 14:50 - 000000000 ____D C:\Users\Francine\AppData\Roaming\ControlCenter4 2022-01-13 13:47 - 2022-01-13 13:47 - 000000066 _____ C:\WINDOWS\Brfaxrx.ini 2022-01-13 13:47 - 2022-01-13 13:47 - 000000000 ____D C:\Brother 2022-01-13 13:47 - 2013-08-07 05:41 - 000180224 _____ (Brother Industries, Ltd.) C:\WINDOWS\SysWOW64\BROSNMP.DLL 2022-01-13 13:45 - 2022-01-13 13:46 - 152668448 _____ (SEIKO EPSON CORPORATION) C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (6).EXE 2022-01-12 23:49 - 2022-01-12 23:49 - 152668448 _____ (SEIKO EPSON CORPORATION) C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (5).EXE 2022-01-12 23:44 - 2022-01-12 23:44 - 001122344 _____ (SOURCENEXT CORPORATION) C:\Users\Francine\Downloads\delinf_10540 (3).EXE 2022-01-12 23:42 - 2022-01-12 23:42 - 152668448 _____ (SEIKO EPSON CORPORATION) C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (4).EXE 2022-01-12 23:37 - 2022-01-12 23:37 - 001122344 _____ (SOURCENEXT CORPORATION) C:\Users\Francine\Downloads\delinf_10540 (2).EXE 2022-01-12 23:26 - 2022-01-12 23:26 - 152668448 _____ (SEIKO EPSON CORPORATION) C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (3).EXE 2022-01-12 23:19 - 2022-01-12 23:19 - 152668448 _____ (SEIKO EPSON CORPORATION) C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (2).EXE 2022-01-12 23:16 - 2022-01-12 23:16 - 152668448 _____ (SEIKO EPSON CORPORATION) C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (1).EXE 2022-01-12 22:58 - 2022-01-12 22:58 - 000000000 ____D C:\Users\Francine\Downloads\install 2022-01-12 22:57 - 2022-01-12 22:58 - 152668448 _____ (SEIKO EPSON CORPORATION) C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1.EXE 2022-01-12 22:56 - 2022-01-12 22:56 - 000000000 ____D C:\Users\Francine\AppData\Local\HP 2022-01-12 22:49 - 2022-01-12 23:44 - 000000000 ____D C:\Users\Francine\Downloads\rempnp 2022-01-12 22:49 - 2022-01-12 22:49 - 001122344 _____ (SOURCENEXT CORPORATION) C:\Users\Francine\Downloads\delinf_10540 (1).EXE 2022-01-12 22:48 - 2022-01-12 22:48 - 001122344 _____ (SOURCENEXT CORPORATION) C:\Users\Francine\Downloads\delinf_10540.EXE 2022-01-12 14:40 - 2022-01-12 23:24 - 000000000 ____D C:\Users\Francine\AppData\Local\ElevatedDiagnostics 2022-01-12 11:10 - 2022-01-12 11:12 - 001420540 _____ C:\WINDOWS\Minidump\011222-10250-01.dmp 2022-01-12 01:00 - 2022-01-12 01:00 - 000523776 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe 2022-01-12 01:00 - 2022-01-12 01:00 - 000464384 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe ==================== Een maand (gewijzigd) ================== (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2022-02-11 08:55 - 2017-08-20 09:33 - 000000000 ____D C:\ProgramData\TwonkyServer 2022-02-11 08:51 - 2020-12-10 16:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-02-11 08:51 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-02-10 23:37 - 2017-06-11 17:24 - 000000000 ____D C:\Users\Francine\AppData\Local\Google 2022-02-10 23:31 - 2021-12-13 09:15 - 000003118 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-9162235-4046158101-2280952487-1002 2022-02-10 23:31 - 2021-12-13 09:15 - 000003118 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-9162235-4046158101-2280952487-1001 2022-02-10 23:31 - 2021-07-16 05:56 - 000003522 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA 2022-02-10 23:31 - 2021-07-16 05:56 - 000003298 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore 2022-02-10 23:31 - 2021-07-16 05:56 - 000001050 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job 2022-02-10 23:31 - 2021-07-16 05:56 - 000001046 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job 2022-02-10 23:31 - 2021-01-19 21:20 - 000003468 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6cf0d20632238 2022-02-10 23:31 - 2020-12-27 09:50 - 000003536 _____ C:\WINDOWS\system32\Tasks\bookingDesktopAppUpdateTaskMachineUA 2022-02-10 23:31 - 2020-12-27 09:50 - 000003312 _____ C:\WINDOWS\system32\Tasks\bookingDesktopAppUpdateTaskMachineCore 2022-02-10 23:31 - 2020-12-10 17:07 - 000003662 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-02-10 23:31 - 2020-12-10 17:07 - 000003566 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2022-02-10 23:31 - 2020-12-10 17:07 - 000003438 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-02-10 23:31 - 2020-12-10 17:07 - 000003342 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2022-02-10 23:31 - 2020-12-10 17:07 - 000003254 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2022-02-10 23:31 - 2020-12-10 17:07 - 000002776 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2022-02-10 23:31 - 2020-12-10 17:07 - 000002762 _____ C:\WINDOWS\system32\Tasks\GarminUpdaterTask 2022-02-10 23:31 - 2020-12-10 17:07 - 000002758 _____ C:\WINDOWS\system32\Tasks\WinZip Update Notifier 2 2022-02-10 23:31 - 2020-12-10 17:07 - 000002756 _____ C:\WINDOWS\system32\Tasks\WinZip Update Notifier 3 2022-02-10 23:31 - 2020-12-10 17:07 - 000002756 _____ C:\WINDOWS\system32\Tasks\WinZip Update Notifier 1 2022-02-10 23:31 - 2020-12-10 17:07 - 000002672 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0 2022-02-10 23:31 - 2020-12-10 17:07 - 000002644 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask 2022-02-10 23:31 - 2020-12-10 17:07 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software 2022-02-10 23:19 - 2017-06-11 17:23 - 000000000 ____D C:\Program Files (x86)\Google 2022-02-10 20:04 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-02-10 20:04 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-02-10 16:59 - 2019-02-04 20:15 - 000000000 ____D C:\Users\Francine\AppData\Local\babl-0.1 2022-02-10 16:52 - 2019-05-07 11:57 - 000000000 ____D C:\Program Files\CCleaner 2022-02-10 16:21 - 2021-09-01 08:10 - 000002057 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2022-02-10 10:34 - 2021-01-04 15:32 - 000000000 ____D C:\Users\Francine\AppData\Local\Deployment 2022-02-10 10:29 - 2017-07-09 18:18 - 000000000 ____D C:\Users\Francine\AppData\LocalLow\Mozilla 2022-02-10 07:23 - 2021-10-01 10:55 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2022-02-10 07:18 - 2017-12-14 00:02 - 000000000 ____D C:\Users\Francine\AppData\Local\Packages 2022-02-10 07:14 - 2018-05-02 19:43 - 000000000 ____D C:\Program Files\CEWE Photoservice 2022-02-10 06:46 - 2018-03-30 21:50 - 000000000 ____D C:\Users\Francine\AppData\Local\AVAST Software 2022-02-10 00:28 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2022-02-10 00:22 - 2020-11-25 06:53 - 000002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-02-09 23:32 - 2020-12-10 17:02 - 002701636 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-02-09 23:32 - 2020-12-10 16:15 - 000780698 _____ C:\WINDOWS\system32\perfh00C.dat 2022-02-09 23:32 - 2020-12-10 16:15 - 000149364 _____ C:\WINDOWS\system32\perfc00C.dat 2022-02-09 23:32 - 2019-12-07 16:12 - 000785960 _____ C:\WINDOWS\system32\perfh013.dat 2022-02-09 23:32 - 2019-12-07 16:12 - 000154088 _____ C:\WINDOWS\system32\perfc013.dat 2022-02-09 23:28 - 2021-07-16 05:56 - 000000000 ____D C:\Users\Francine\AppData\Local\Dropbox 2022-02-09 23:28 - 2018-06-29 22:47 - 000000000 ____D C:\Users\Francine\AppData\Local\CrashDumps 2022-02-09 23:25 - 2018-03-10 10:26 - 000000000 ____D C:\ProgramData\UMS 2022-02-09 23:25 - 2017-06-11 17:19 - 000000000 ____D C:\ProgramData\AVAST Software 2022-02-09 23:24 - 2020-12-10 17:07 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-02-09 23:24 - 2020-12-10 16:47 - 000593304 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-02-09 23:24 - 2020-12-10 16:47 - 000008192 ___SH C:\DumpStack.log.tmp 2022-02-09 23:24 - 2017-06-09 20:47 - 000000000 ____D C:\ProgramData\NVIDIA 2022-02-09 22:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-02-09 22:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-02-09 22:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2022-02-09 22:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2022-02-09 22:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-02-09 22:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2022-02-09 22:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2022-02-09 22:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2022-02-09 22:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-02-09 22:00 - 2019-12-07 10:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2022-02-09 22:00 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2022-02-09 21:59 - 2020-12-10 16:50 - 000000000 ____D C:\Users\Francine 2022-02-09 18:35 - 2017-07-09 18:17 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-02-09 16:45 - 2017-06-11 17:20 - 000026474 _____ C:\WINDOWS\BRRBCOM.INI 2022-02-09 13:36 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-02-09 13:31 - 2016-07-16 13:58 - 000414870 __RSH C:\bootmgr 2022-02-09 13:30 - 2020-12-10 16:48 - 002877440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-02-09 13:17 - 2017-06-09 21:04 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-02-09 13:12 - 2017-06-09 21:04 - 149611728 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-02-09 12:05 - 2017-12-14 00:01 - 000000000 ____D C:\Users\Henri\AppData\Local\Packages 2022-02-09 10:22 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2022-02-09 10:15 - 2017-06-12 09:27 - 000000000 ____D C:\Users\Henri\AppData\Local\Google 2022-02-09 10:05 - 2020-12-10 16:50 - 000000000 ____D C:\Users\Henri 2022-02-09 10:05 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-02-09 10:05 - 2017-06-12 09:27 - 000000000 ____D C:\Users\Henri\AppData\Local\ConnectedDevicesPlatform 2022-02-09 10:05 - 2017-06-09 20:14 - 000000000 __RHD C:\Users\Public\AccountPictures 2022-02-09 09:56 - 2019-05-13 13:34 - 000001224 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-02-07 08:45 - 2017-07-14 15:46 - 000000000 ____D C:\ProgramData\tmp 2022-02-06 10:24 - 2018-08-13 15:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google 2022-02-06 10:10 - 2020-06-11 03:21 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-02-04 01:07 - 2021-07-16 05:56 - 000000000 ____D C:\Program Files (x86)\Dropbox 2022-02-02 16:15 - 2017-06-11 17:33 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2022-02-01 07:16 - 2020-07-28 04:21 - 000000000 ____D C:\Users\Francine\AppData\Roaming\STACK 2022-01-31 16:57 - 2021-09-12 08:28 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2022-01-29 17:04 - 2019-09-30 05:55 - 000002134 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-01-28 09:48 - 2017-08-24 16:30 - 000000000 ____D C:\ProgramData\Garmin 2022-01-28 09:44 - 2019-02-25 16:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin 2022-01-28 09:44 - 2017-08-24 16:30 - 000000000 ____D C:\Program Files (x86)\Garmin 2022-01-28 09:44 - 2017-07-03 21:16 - 000000000 ____D C:\ProgramData\Package Cache 2022-01-13 14:49 - 2018-05-14 21:09 - 000000000 ____D C:\Program Files (x86)\ControlCenter4 2022-01-13 13:48 - 2017-07-24 17:47 - 000000092 _____ C:\WINDOWS\brpcfx.ini 2022-01-13 13:48 - 2017-07-24 17:47 - 000000086 _____ C:\WINDOWS\Brpfx04a.ini 2022-01-13 13:47 - 2017-07-24 17:47 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2022-01-13 13:47 - 2017-07-24 17:47 - 000000000 ____D C:\Program Files (x86)\Browny02 2022-01-13 13:47 - 2017-07-24 17:47 - 000000000 ____D C:\Program Files (x86)\Brother 2022-01-12 15:06 - 2017-07-24 17:47 - 000000000 ____D C:\ProgramData\ControlCenter4 2022-01-12 15:03 - 2017-06-11 17:20 - 000000141 _____ C:\WINDOWS\BROMJ6520DW.INI 2022-01-12 11:12 - 2020-12-12 14:32 - 000000000 ____D C:\WINDOWS\Minidump 2022-01-12 11:10 - 2021-10-02 05:54 - 910258544 _____ C:\WINDOWS\MEMORY.DMP 2022-01-12 01:18 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2022-01-12 01:18 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2022-01-12 01:18 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe ==================== Bestanden in de root van sommige mappen ======== 2017-06-12 07:42 - 2017-06-12 09:39 - 000038395 _____ () C:\Users\Francine\AppData\Roaming\Door komma's gescheiden waarden.ADR 2018-12-26 22:35 - 2018-12-26 22:35 - 000000268 ____H () C:\Users\Francine\AppData\Roaming\Libraries 2018-12-26 22:35 - 2018-12-26 22:35 - 000000268 ____H () C:\Users\Francine\AppData\Roaming\Light Machine 2018-09-28 20:25 - 2018-09-28 20:25 - 000000000 _____ () C:\Users\Francine\AppData\Local\oobelibMkey.log 2020-02-11 08:00 - 2020-02-11 08:00 - 000004782 _____ () C:\Users\Francine\AppData\Local\recently-used.xbel 2022-02-10 06:16 - 2022-02-10 06:16 - 000000017 _____ () C:\Users\Francine\AppData\Local\resmon.resmoncfg 2018-04-01 05:45 - 2018-04-01 05:45 - 000000000 _____ () C:\Users\Francine\AppData\Local\{3C0E20F5-4512-4A17-8635-AB9D14E00F86} 2018-04-01 05:45 - 2018-04-01 05:45 - 000000000 _____ () C:\Users\Francine\AppData\Local\{E35538CA-DD0E-4E3C-BCEA-1B063C470681} ==================== SigCheck ============================ (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) ==================== Einde van FRST.txt ========================