Start:: CreateRestorePoint: CloseProcesses: HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" (Geen bestand) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restrictie <==== AANDACHT HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restrictie <==== AANDACHT HKU\S-1-5-21-3862030832-21954202-2311601593-1001\...\Run: [] => [X] GroupPolicy: Restrictie ? <==== AANDACHT Policies: C:\ProgramData\NTUSER.pol: Restrictie <==== AANDACHT Task: {A4305B66-A8BD-4741-A08C-76F5FF9C0BA6} - System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXvGPUDisableTask => %windir%\System32\RemoteFXvGPUDisablement.exe Disable (Geen bestand) Task: {A4433A3B-8845-4C9E-9D69-5A54DC373CE5} - System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXWarningTask => %windir%\System32\RemoteFXvGPUDisablement.exe Warning (Geen bestand) Task: {25A526E5-7BF8-43E1-8690-59E1D9D06F44} - System32\Tasks\Opera scheduled Autoupdate 1688235582 => C:\Users\Gebruiker\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $(Arg0) (Geen bestand) Edge Extension: (Browserbeveiliging door F-Secure) - C:\Users\Gebruiker\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cpikpibllpjmpnchjajlibnmmomnnhnm [2024-04-19] Edge HKLM\...\Edge\Extension: [cpikpibllpjmpnchjajlibnmmomnnhnm] Edge HKLM-x32\...\Edge\Extension: [cpikpibllpjmpnchjajlibnmmomnnhnm] FF HKLM\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.3\FFExt\light_plugin_firefox\addon.xpi => niet gevonden FF HKLM-x32\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.3\FFExt\light_plugin_firefox\addon.xpi => niet gevonden CHR Extension: (Browserbeveiliging door F-Secure) - C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmjjnhpacphpjmnnlnccpfmhkcloaade [2024-04-19] CHR HKLM\...\Chrome\Extension: [jmjjnhpacphpjmnnlnccpfmhkcloaade] CHR HKLM-x32\...\Chrome\Extension: [jmjjnhpacphpjmnnlnccpfmhkcloaade] BRA Extension: (Browsing Protection by F-Secure) - C:\Users\Gebruiker\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jmjjnhpacphpjmnnlnccpfmhkcloaade [2020-10-01] U3 aswbdisk; geen ImagePath CustomCLSID: HKU\S-1-5-21-3862030832-21954202-2311601593-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\Gebruiker\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => Geen bestand ShellIconOverlayIdentifiers: [F-Secure DataGuard Icon Overlay] -> {CA789262-D278-40F7-AC12-19C0395F9DD9} => C:\Program Files (x86)\Safe Online\FsShellExtension64.dll -> Geen bestand ContextMenuHandlers1: [Kaspersky Plus 21.15] -> {AE81D5A2-A34B-4D93-8DF8-540DBCE48043} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.15\x64\shellex.dll -> Geen bestand ContextMenuHandlers2: [Kaspersky Plus 21.15] -> {AE81D5A2-A34B-4D93-8DF8-540DBCE48043} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.15\x64\shellex.dll -> Geen bestand ContextMenuHandlers4: [Kaspersky Plus 21.15] -> {AE81D5A2-A34B-4D93-8DF8-540DBCE48043} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.15\x64\shellex.dll -> Geen bestand ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand ContextMenuHandlers6: [Kaspersky Plus 21.15] -> {AE81D5A2-A34B-4D93-8DF8-540DBCE48043} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.15\x64\shellex.dll -> Geen bestand FirewallRules: [{6890FE07-5531-4849-A6DD-E8005C8905C0}] => (Allow) C:\Users\Gebruiker\AppData\Local\Programs\Opera\100.0.4815.76\opera.exe => Geen bestand FirewallRules: [{6EA72D5F-9D5F-49B6-85AE-F10825051FC1}] => (Allow) C:\Users\Gebruiker\AppData\Local\Programs\Opera\103.0.4928.26\opera.exe => Geen bestand FirewallRules: [{14A45EE5-50C5-4ED3-90D1-11E27C53B733}] => (Allow) C:\Users\Gebruiker\AppData\Local\Programs\Opera\103.0.4928.47\opera.exe => Geen bestand EmptyTemp: Reboot: End::