start:: CreateRestorePoint: CloseProcesses: HKLM-x32\...\Run: [] => [X] Handler: WSKVAllmytubechrome - Geen CLSID Waarde Edge Extension: (Geen Naam) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions [niet gevonden] Edge Extension: (Geen Naam) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets [niet gevonden] Edge Extension: (Geen Naam) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions [niet gevonden] Edge Extension: (Geen Naam) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions [niet gevonden] FF HKU\S-1-5-21-2897933121-1580215152-3316838448-1001\...\Firefox\Extensions: [ISAllmytube@iSkysoft.com] - C:\Program Files (x86)\Aimersoft\Free YouTube Downloader voor Windows (Dutch)\BrowserPlugin\isallmytube@iskysoft.com_xpi FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [Geen bestand] S2 BlueStacksDrv; \??\C:\Program Files\BlueStacks\BstkDrv_bgp.sys [X] Task: {4B3A49D7-BADB-45A9-BDA1-69EECBC61D8A} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2020-10-28] (AVAST Software) <==== AANDACHT Task: {58CCC4DA-C86D-4E3D-8FAF-A7B24D8F3950} - System32\Tasks\Microsoft\Windows\StateRepository\MaintenanceTasks => Rundll32.exe %windir%\system32\Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks Task: {75E0EDF7-6AC3-4F47-A726-4F999A96FBC6} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-05-17] (Microsoft Corporation) <==== AANDACHT Task: {8667CD95-7017-46D9-9E43-3C36665FA364} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d69f0fd8c53dca => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-05-17] (Microsoft Corporation) <==== AANDACHT Task: {AB074190-ECF8-4C9B-9F64-BE60AE2C92A9} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-05-17] (Microsoft Corporation) <==== AANDACHT Task: {B76055C4-78D5-4735-9FDD-14EA805578F7} - System32\Tasks\Microsoft\Windows\Application Experience\PcaPatchDbTask => Rundll32.exe %windir%\system32\PcaSvc.dll,PcaPatchSdbTask Task: {DF198105-A0A8-426C-BA21-43C32BFC1120} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2020-10-28] (AVAST Software) <==== AANDACHTShortcutWithArgument: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Desktop\YouTube.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=agimnkijcaahngcdmfeangaknmldooml ShortcutWithArgument: C:\Users\rtull\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Excel.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=leffmjdabcgaflkikcefahmlgpodjkdm --app-url=hxxps://excel.office.com/ ShortcutWithArgument: C:\Users\rtull\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Surinaams eten – Kookvideo’s.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=nobafpangmkkldjjdliinkemkjocbanh --app-url=hxxp://www.surinaamseten.nl/kookvideo.html ShortcutWithArgument: C:\Users\rtull\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Upload _ Photobucket.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=lbogdlbpnicadahmfhmiinleeednoggj --app-url=hxxp://photobucket.com/uploadmedia/ ShortcutWithArgument: C:\Users\rtull\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps\YouTube.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=agimnkijcaahngcdmfeangaknmldooml ShortcutWithArgument: C:\Users\rtull\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory=Default ShortcutWithArgument: C:\Users\rtull\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\3540ba49f82ead5d\Avast Secure Browser.lnk -> C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe (AVAST Software) -> --profile-directory=Default AlternateDataStreams: C:\Users\rtull\Downloads\AVSVideoEditor.exe:SmartScreen [7] AlternateDataStreams: C:\Users\rtull\Downloads\BingWallpaper.exe:SmartScreen [7] AlternateDataStreams: C:\Users\rtull\Downloads\ChromeSetup.exe:SmartScreen [7] AlternateDataStreams: C:\Users\rtull\Downloads\EN4500_198.exe:SmartScreen [7] AlternateDataStreams: C:\Users\rtull\Downloads\FRST64.exe:SmartScreen [7] AlternateDataStreams: C:\Users\rtull\Downloads\LibreOffice_7.1.1_Win_x64.msi:SmartScreen [7] AlternateDataStreams: C:\Users\rtull\Downloads\LSBSetup.exe:SmartScreen [7] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\10991166_45646230_Polisversiebijlage.pdf:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Acoustica:com.dropbox.attrs [52] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Acoustica CD Label Maker:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\AVS4YOU:com.dropbox.attrs [52] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Belasting aangifte 2018.odt:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\bloemen map:com.dropbox.attrs [52] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Buro blad Oude Pc:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\C.Manager.jpg:3or4kl4x13tuuug3Byamue2s4b [95] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\C.Manager.jpg:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\C.Manager.jpg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Chromium.lnk:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\CyberLink:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Default.rdp:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\desktop (Nieuw).ini:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Documents B:com.dropbox.attrs [52] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\E-mails en WW.pdf:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Factuur 2018045 Familie Tull.pdf:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Favorites:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Fax:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Feestdagen:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\FlashIntegro:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\FrostWire:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Get Well:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Good morning:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\HT.Ramon:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\ING - Jaaroverzicht 2019 - Hr RR Tull.pdf:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Medicatie Gerda.pdf:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Medicijn gebruik Ramon 30-12-2019.odt:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Offerte 2018175 Familie Tull Imkerstraat 88 Eindhoven.pdf:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\One Drive Map:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Pc Starten en Afsluiten.odt:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\S18Uitschrijfformulier_61267018.pdf:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\S18Uitschrijfformulier_61267274-1.pdf:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Scan0007.pdf:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Scanned Documents:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Senioren map:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Smilies:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Verjaardagen:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\rtull\Dropbox\Mijn pc (PC-RAMON)\Documents\Video Trax.lbl:com.dropbox.attrs [54] Hosts: EmptyTemp: Reboot: end::