Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 09-09-2024 Gestart door tanju (Beheerder) op TANJUPC (12-09-2024 09:39:06) Gestart vanaf C:\Users\tanju\Desktop\FRST64 (1).exe Geladen Profielen: tanju Platform: Microsoft Windows 11 Home Versie 23H2 22631.4169 (X64) Taal: Nederlands (Nederland) Standaardbrowser: Chrome Boot Modus: Normal ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, zal het proces worden gesloten. Het bestand zal niet worden verplaatst.) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <6> (C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe (C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (C:\Program Files\Parsec\pservice.exe ->) (Parsec Cloud, Inc. -> Parsec) C:\Program Files\Parsec\parsecd.exe <2> (C:\Program Files\TeamViewer\TeamViewer.exe ->) (TeamViewer Germany GmbH -> ) C:\Program Files\TeamViewer\crashpad_handler.exe <2> (C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer.exe (C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\tv_w32.exe (C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\tv_x64.exe (C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1031.17413.0_x64__nzyj5cx40ttqa\AppleMobileDeviceLauncher.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1031.17413.0_x64__nzyj5cx40ttqa\AppleMobileDeviceProcess.exe (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.24900.10.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\128.0.2739.67\msedgewebview2.exe <23> (C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe ->) (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe <8> (D:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7> (Discord Inc. -> Discord Inc.) C:\Users\tanju\AppData\Local\Discord\app-1.0.9162\Discord.exe <6> (explorer.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe <3> (explorer.exe ->) (Brook Park Software) [Bestand niet getekend] C:\Users\tanju\Desktop\mouseclicker.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <24> (explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.OutlookForWindows_1.2024.903.200_x64__8wekyb3d8bbwe\olk.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\MSTeams_24215.1007.3082.1590_x64__8wekyb3d8bbwe\ms-teams.exe <3> (explorer.exe ->) (Ryochan7) [Bestand niet getekend] C:\Users\tanju\Downloads\DS4Windows_3.2.17_x64\DS4Windows\DS4Windows.exe (explorer.exe ->) (Valve Corp. -> Valve Corporation) D:\Program Files (x86)\Steam\steam.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (OpenVPN Inc. -> OpenVPN) C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe <4> (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUS Inc.) C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.02.23\atkexComSvc.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Program Files (x86)\LightingService\LightingService.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe (services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe (services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe (services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe (services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe (services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\piecomponent.inf_amd64_a751a85f0845cf98\Intel_PIE_Service.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_3b3a65c9540c2b66\logi_lamparray_service.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\24.166.0818.0003\FileSyncHelper.exe (services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vds.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_34f9511bafd21ff9\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (OpenVPN Inc. -> ) C:\Program Files\OpenVPN Connect\agent_ovpnconnect_1706702535874.exe (services.exe ->) (OpenVPN Inc. -> ) C:\Program Files\OpenVPN Connect\ovpnhelper_service.exe (services.exe ->) (OpenVPN Inc. -> The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpnserv.exe (services.exe ->) (OpenVPN Inc. -> The OpenVPN project) C:\Program Files\OpenVPN\bin\openvpnserv2.exe (services.exe ->) (Parsec Cloud, Inc. -> Parsec) C:\Program Files\Parsec\pservice.exe (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe (services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe (sihost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1031.17413.0_x64__nzyj5cx40ttqa\AppleMobileDeviceLauncher.exe (sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.24081.55.0_x64__cw5n1h2txyewy\CrossDeviceService.exe (svchost.exe ->) (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\SpotifyWidgetProvider.exe (svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe (svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe (svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Compputer Inc.) C:\Program Files\ASUS\AacMB\Aac3572MbHal_x86.exe (svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe (svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.4.0.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <5> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SpaceAgent.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\spaceman.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe ==================== Register (gefilterd) =================== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [426904 2024-08-07] (Avast Software s.r.o. -> Gen Digital Inc.) HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [10373416 2024-08-22] (Avast Software s.r.o. -> Gen Digital Inc.) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restrictie <==== AANDACHT HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restrictie <==== AANDACHT HKU\S-1-5-21-3137216763-3384046345-3396708815-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4919352 2024-09-06] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3137216763-3384046345-3396708815-1001\...\Run: [Discord] => C:\Users\tanju\AppData\Local\Discord\Update.exe [1525016 2023-04-26] (Discord Inc. -> GitHub) HKU\S-1-5-21-3137216763-3384046345-3396708815-1001\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [4407656 2024-07-17] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-3137216763-3384046345-3396708815-1001\...\Run: [MicrosoftEdgeAutoLaunch_37B8BD5681D040D1A41C268534325F42] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3741256 2024-09-05] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3137216763-3384046345-3396708815-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [3380840 2024-08-12] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-3137216763-3384046345-3396708815-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [46247680 2024-08-07] (Logitech Inc -> Logitech, Inc.) HKU\S-1-5-21-3137216763-3384046345-3396708815-1001\...\Run: [Parsec.App.0] => C:\Program Files\Parsec\parsecd.exe [465792 2024-01-19] (Parsec Cloud, Inc. -> Parsec) HKU\S-1-5-21-3137216763-3384046345-3396708815-1001\...\Run: [org.openvpn.client] => C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe [157689448 2024-01-31] (OpenVPN Inc. -> OpenVPN) HKU\S-1-5-21-3137216763-3384046345-3396708815-1001\...\Run: [AF_uuid_2139460] => 8eda149a-45af-415a-8c72-2b67f7e0b5d0 (Geen bestand) HKU\S-1-5-21-3137216763-3384046345-3396708815-1001\...\Run: [AF_counter_2139460] => 4 (Geen bestand) HKU\S-1-5-21-3137216763-3384046345-3396708815-1001\...\MountPoints2: {4796870b-f558-11ed-9946-24ee9a87a6f8} - "G:\setup.exe" HKLM\Software\Microsoft\Active Setup\Installed Components: [>OpenVPN_UserSetup] -> reg add HKCU\Software\Microsoft\Windows\CurrentVersion\Run /f /v OPENVPN-GUI /t REG_SZ /d "C:\Program Files\OpenVPN\bin\openvpn-gui.exe" HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\128.0.6613.121\Installer\chrmstp.exe [2024-09-11] (Google LLC -> Google LLC) Startup: C:\Users\tanju\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DS4Windows.lnk [2024-02-17] ShortcutTarget: DS4Windows.lnk -> C:\Users\tanju\Downloads\DS4Windows_3.2.17_x64\DS4Windows\DS4Windows.exe (Ryochan7) [Bestand niet getekend] Startup: C:\Users\tanju\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Verzenden naar OneNote.lnk [2023-08-30] ShortcutTarget: Verzenden naar OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restrictie <==== AANDACHT ==================== Geplande Taken (gefilterd) ================= (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {0F78F180-CFFC-462F-BE87-8FDBACEC71D8} - \PCIeBus -> Geen bestand <==== AANDACHT Task: {D95FA2E6-37D6-4CF5-B0D9-4F5A76111C18} - \PCIeBusQueue -> Geen bestand <==== AANDACHT Task: {FD5CBB75-FD21-4298-B167-AD42A591E4A4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1563080 2024-07-31] (Adobe Inc. -> Adobe Inc.) Task: {B4258B47-6D77-449F-A679-8AF1AC228CA0} - System32\Tasks\ASUS\AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe [309096 2023-03-13] (ASUSTeK COMPUTER INC. -> ASUS) Task: {5952C042-BE4F-45C8-8BB2-1EC53B879D20} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe [1895784 2023-03-13] (ASUSTeK COMPUTER INC. -> ASUS) Task: {4A31F327-A725-4B9C-92F2-6E9104BBF438} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1d989092329d5ad => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [156008 2023-05-17] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) Task: {52EE1CBD-353C-44E3-8B7B-231413BD22FF} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [156008 2023-05-17] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) Task: {A016048D-22E6-4DFE-A84D-1E9BB0C755C0} - System32\Tasks\ASUS\NoiseCancelingEngine => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe [1254760 2023-03-27] (ASUSTeK COMPUTER INC. -> ASUS) Task: {1B68BB1B-9E7C-45EA-B29A-950064E4C92F} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (Geen bestand) Task: {C1E2E7E9-22EB-4A10-A095-92177E800A15} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [5854504 2024-08-22] (Avast Software s.r.o. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\A (de data item heeft 70 meer tekens). Task: {C86B05A3-0B76-402F-A00B-BCE6DE5FF83C} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [8040744 2024-08-07] (Avast Software s.r.o. -> Gen Digital Inc.) Task: {6259CAC9-E4B4-4477-9A04-63C65C59A963} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5157272 2024-08-07] (Avast Software s.r.o. -> Gen Digital Inc.) Task: {83A83338-F165-45C0-9833-35734A3571F3} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [4964248 2024-08-07] (Avast Software s.r.o. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramDat (de data item heeft 80 meer tekens). Task: {7B36C6E7-5E92-4FD2-A4E8-3E5364F6F515} - System32\Tasks\Avast Software\Avast SecureLine VPN Emergency Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [1440664 2024-08-07] (Avast Software s.r.o. -> Gen Digital Inc.) Task: {13CAEDBA-54A5-4327-9735-6AC18621A72E} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [8002968 2024-07-19] (Avast Software s.r.o. -> Gen Digital Inc.) Task: {CC3B3965-DC14-41C4-A37A-09A0CCCB7190} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-11-25] (Avast Software s.r.o. -> Avast Software) Task: {7558F645-8CC1-4053-BAE9-F70E26D3E0CA} - System32\Tasks\AvastBrowserProtectS-1-5-21-3137216763-3384046345-3396708815-1001 => C:\Users\tanju\AppData\Local\Avast Software\Browser\Application\AvastBrowserProtect.exe --runonce (Geen bestand) Task: {85134D74-DF4B-4E0B-B4A4-0A7B171846F9} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{12BC3639-0493-4CC7-96FC-57A0147307C7} => C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe [4884584 2024-08-26] (Google LLC -> Google LLC) Task: {4E420E35-6FCF-4A9F-A023-38FB4020D5B6} - System32\Tasks\HidHide_Updater => C:\Program Files\Nefarius Software Solutions\HidHide\HidHide_Updater.exe [1206200 2023-05-06] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.) -> C:\Program Files\Nefarius Software Solutions\HidHide\\/silent Task: {E51E2774-C1B4-4EC1-AF2C-3CF194D22500} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28605656 2024-08-25] (Microsoft Corporation -> Microsoft Corporation) Task: {4A95BEC1-43E7-4E32-99BF-EB3E1286CEE8} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28605656 2024-08-25] (Microsoft Corporation -> Microsoft Corporation) Task: {A0F346CB-1632-42E7-8346-ABEA9383B134} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312520 2024-08-27] (Microsoft Corporation -> Microsoft Corporation) Task: {AE72E3AC-290A-44B2-9999-F4F2D5EED42A} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312520 2024-08-27] (Microsoft Corporation -> Microsoft Corporation) Task: {B5AE22B4-D629-4374-A349-DC321101987E} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [187024 2024-08-27] (Microsoft Corporation -> Microsoft Corporation) Task: {2633B9A0-5798-4E3E-8DD6-E75603120BF2} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4464024 2024-08-15] (Microsoft Corporation -> Microsoft Corporation) Task: {A2B3A4B3-9821-4962-AC9B-7171AD07926F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1277480 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {7102F5DB-3522-423D-84B8-8B0CAC351B02} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3347496 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A39E87D6-0498-4A54-A5E6-F31C7229F3A6} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646696 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler Task: {B2DB482F-B078-4902-8AD8-686E244B4734} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A482E460-3CAE-422E-9A7A-924DFE9D4D0E} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {3D025DB6-5C2C-4041-B619-7150C42C54E0} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {56EB7048-7803-4BDD-9BEA-0BE804167173} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {D15F61BD-C376-4A5D-8DD1-40F62D10FB8B} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {5C7E87B2-A986-41BD-B6F2-D3F60D27E832} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7237EB9D-3CED-414B-949A-A88DE605C23A} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209208 2024-09-06] (Microsoft Corporation -> Microsoft Corporation) Task: {85EF4190-DC77-4BCE-9CED-5979248E78F7} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3137216763-3384046345-3396708815-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209208 2024-09-06] (Microsoft Corporation -> Microsoft Corporation) Task: {6DBD61A2-A969-44AC-928F-F4FF8E2C9856} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-3137216763-3384046345-3396708815-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\Windows\System32\wpninprc.dll [65536 2024-05-17] (Microsoft Windows -> Microsoft Corporation) Task: {D7692861-0E4B-4B0E-BBC8-558F9B3ED736} - System32\Tasks\Samsung_PSSD_Registration => C:\ProgramData\Samsung Apps\Portable SSD\SamsungPortableSSDMon.exe [497752 2020-04-29] (Samsung Electronics Co., Ltd. -> Samsung Electronics) Task: {3B4DE0AE-41E2-4C6B-8305-B6A051896A06} - System32\Tasks\ViGEmBus_Updater => C:\Program Files\Nefarius Software Solutions\ViGEm Bus Driver\ViGEmBus_Updater.exe [1117096 2022-09-27] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.) -> C:\Program Files\Nefarius Software Solutions\ViGEm Bus Driver\\/silent (Als een item is opgenomen in de fixlist, wordt de taak (job) bestand verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist en een registeritem is, wordt het verwijderd of hersteld naar de standaard.) Tcpip\Parameters: [DhcpNameServer] 192.168.50.1 Tcpip\..\Interfaces\{ea546ab8-911a-43b6-bcd4-9c3d057b52d7}: [NameServer] 100.120.134.1 Tcpip\..\Interfaces\{fab3f068-ed11-49ad-9974-53d24fa4bdf8}: [DhcpNameServer] 192.168.50.1 Tcpip\..\Interfaces\{fab3f068-ed11-49ad-9974-53d24fa4bdf8}\4516E6A65757: [DhcpNameServer] 212.224.129.90 212.224.129.94 Tcpip\..\Interfaces\{fab3f068-ed11-49ad-9974-53d24fa4bdf8}\F42716E67656D26666633693: [DhcpNameServer] 212.224.129.90 212.224.129.94 Edge: ======= Edge Profile: C:\Users\tanju\AppData\Local\Microsoft\Edge\User Data\Default [2024-08-19] Edge Extension: (eID Chrome Extension) - C:\Users\tanju\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bkbdaodnaecdijpajecpncpdomgcoakc [2023-05-17] Edge Extension: (Offline Documenten) - C:\Users\tanju\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-03-01] Edge Extension: (Chrome Remote Desktop) - C:\Users\tanju\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2023-05-17] Edge Extension: (Edge relevant text changes) - C:\Users\tanju\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-26] Edge Extension: (All Video Downloader professional) - C:\Users\tanju\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mbpnbnogejaolbhfpfgagldkeahefbhd [2023-09-05] Edge Extension: (Google Mail Checker) - C:\Users\tanju\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2024-08-18] Edge Extension: (AdBlock - blokkeer reclame op het internet) - C:\Users\tanju\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2024-08-18] Edge Extension: (Adblock for Youtube™) - C:\Users\tanju\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nipggfgilmoiofmnkbeabghbcaohmjih [2024-03-27] FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-04-06] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-08-23] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-08-27] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-04-06] (Microsoft Corporation -> Microsoft Corporation) FF Plugin HKU\S-1-5-21-3137216763-3384046345-3396708815-1001: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Users\tanju\AppData\Local\AVAST Software\Browser\Update\1.8.1653.5\npAvastBrowserUpdate3.dll [Geen bestand] FF Plugin HKU\S-1-5-21-3137216763-3384046345-3396708815-1001: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Users\tanju\AppData\Local\AVAST Software\Browser\Update\1.8.1653.5\npAvastBrowserUpdate3.dll [Geen bestand] Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default [2024-09-12] CHR Notifications: Default -> hxxps://calendar.google.com; hxxps://www.duolingo.com; hxxps://www.facebook.com; hxxps://www.netflix.com; hxxps://www.youtube.com CHR Extension: (eID Chrome Extension) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkbdaodnaecdijpajecpncpdomgcoakc [2023-05-18] CHR Extension: (uBlock Origin) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2024-08-12] CHR Extension: (Adblock voor Youtube™) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2024-08-08] CHR Extension: (Universele video-downloader) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\cogmkaeijeflocngklepoknelfjpdjng [2023-05-18] CHR Extension: (Mind Map) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\ekgkpdlpkbhonbbiimcbfhcfkehbocdf [2024-06-27] CHR Extension: (Video Downloader Professional) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2024-06-19] CHR Extension: (Offline Documenten) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-08-27] CHR Extension: (AdBlock - blokkeer reclame op het internet) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-09-06] CHR Extension: (Avast Online Security & Privacy) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2024-08-08] CHR Extension: (Ad Accelerator) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpboiedfklodfhngobidfjecdpmccehg [2024-04-23] CHR Extension: (CloudConvert) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfpmbfgodkfcebpgheiedaddoikmljkk [2023-05-18] CHR Extension: (Video Downloader Plus) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkdmdpdhfaamhgaojpelccmeehpfljgf [2024-04-03] CHR Extension: (Chrome Remote Desktop) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2023-05-18] CHR Extension: (Google Mail Checker) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2024-08-08] CHR Extension: (TubeBlock - Adblock for Youtube) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkdijghjjdkfpohnmmoicikpkjodcmio [2024-01-05] CHR Extension: (Save to Pocket) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2023-05-18] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-05-17] CHR Profile: C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Profile 2 [2024-01-12] CHR Extension: (uBlock Origin) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2023-12-03] CHR Extension: (Adblock for Youtube™) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2023-12-03] CHR Extension: (Google Docs Offline) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-12-03] CHR Extension: (Chrome Remote Desktop) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2023-12-03] CHR Extension: (Chrome Web Store Payments) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-12-03] CHR Profile: C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Profile 3 [2024-02-19] CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2024-02-19] CHR Extension: (Offline Documenten) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-02-19] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\tanju\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-02-19] CHR Profile: C:\Users\tanju\AppData\Local\Google\Chrome\User Data\System Profile [2024-02-19] CHR HKU\S-1-5-21-3137216763-3384046345-3396708815-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] ==================== Services (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-07-31] (Adobe Inc. -> Adobe Inc.) R2 agent_ovpnconnect; C:\Program Files\OpenVPN Connect\agent_ovpnconnect_1706702535874.exe [4698216 2024-01-31] (OpenVPN Inc. -> ) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.02.23\atkexComSvc.exe [896872 2023-03-29] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [156008 2023-05-17] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) R2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe [558104 2022-05-19] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [156008 2023-05-17] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) S2 AsusUpdateCheck; C:\Windows\System32\AsusUpdateCheck.exe [845256 2024-09-12] (ASUSTeK Computer Inc. -> ) R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [9015080 2024-08-19] (Avast Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [771480 2024-08-07] (Avast Software s.r.o. -> Gen Digital Inc.) R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2312488 2024-08-13] (Avast Software s.r.o. -> Gen Digital Inc.) R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1208216 2024-08-07] (Avast Software s.r.o. -> Gen Digital Inc.) R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2023-11-25] (Avast Software s.r.o. -> AVAST Software) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [18663720 2024-08-12] (BattlEye Innovations e.K. -> ) R2 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [19185960 2024-08-22] (Avast Software s.r.o. -> Gen Digital Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14042624 2024-08-25] (Microsoft Corporation -> Microsoft Corporation) S3 EAAntiCheatService; C:\Program Files\EA\AC\eaanticheat.gameservice.exe [89779592 2024-08-22] (Electronic Arts, Inc. -> Electronic Arts) S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [13772392 2024-08-12] (Electronic Arts, Inc. -> Electronic Arts) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811496 2023-11-27] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [935344 2023-12-28] (EasyAntiCheat Oy -> Epic Games, Inc.) R3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.166.0818.0003\FileSyncHelper.exe [3523112 2024-09-06] (Microsoft Corporation -> Microsoft Corporation) R2 GameSDK Service; C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe [397544 2022-05-31] (ASUSTeK COMPUTER INC. -> ASUS Inc.) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11193088 2024-08-07] (Logitech Inc -> Logitech, Inc.) R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [4799336 2023-09-13] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) R2 logi_lamparray_service; C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_3b3a65c9540c2b66\logi_lamparray_service.exe [10150488 2024-08-08] (Logitech Inc -> Logitech, Inc.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8965728 2024-09-12] (Malwarebytes Inc. -> Malwarebytes) S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [3073888 2024-09-12] (Malwarebytes Inc. -> Malwarebytes) R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_34f9511bafd21ff9\Display.NvContainer\NVDisplay.Container.exe [1275008 2024-07-31] (NVIDIA Corporation -> NVIDIA Corporation) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.166.0818.0003\OneDriveUpdaterService.exe [3863984 2024-09-06] (Microsoft Corporation -> Microsoft Corporation) R2 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv2.exe [24504 2024-07-18] (OpenVPN Inc. -> The OpenVPN project) R2 OpenVPNServiceInteractive; C:\Program Files\OpenVPN\bin\openvpnserv.exe [64800 2024-07-18] (OpenVPN Inc. -> The OpenVPN Project) R2 ovpnhelper_service; C:\Program Files\OpenVPN Connect\ovpnhelper_service.exe [4534888 2024-01-31] (OpenVPN Inc. -> ) R2 Parsec; C:\Program Files\Parsec\pservice.exe [418696 2024-01-19] (Parsec Cloud, Inc. -> Parsec) S3 Rockstar Service; D:\Program Files\Rockstar Games\Launcher\RockstarService.exe [6537200 2024-08-20] (Rockstar Games, Inc. -> Rockstar Games) R2 ROG Live Service; C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe [1665648 2023-07-25] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [12456856 2024-08-07] (Avast Software s.r.o. -> Gen Digital Inc.) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [22442808 2024-09-03] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\NisSrv.exe [3116904 2023-11-04] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe [133584 2023-11-04] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Drivers (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [39272 2023-06-27] (Apple Inc. -> Apple Inc.) S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [55608 2023-06-27] (Apple Inc. -> Apple Inc.) R1 Asusgio3; C:\Windows\system32\drivers\AsIO3.sys [49256 2022-08-16] (ASUSTeK COMPUTER INC. -> ) R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [229944 2024-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [380984 2024-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [293944 2024-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [84536 2024-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [27744 2024-08-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.) R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [28728 2024-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [271928 2024-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [549848 2024-08-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [97840 2024-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [69176 2024-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [948792 2024-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [1198648 2024-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [203728 2024-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [306648 2024-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) S3 aswVpnRdr; C:\Windows\System32\drivers\aswVpnRdr.sys [79248 2024-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software) R3 aswWintun; C:\Windows\System32\drivers\aswWintun.sys [40832 2024-01-28] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [532480 2023-05-05] (Microsoft Corporation) [Bestand niet getekend] S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [184320 2023-05-05] (Microsoft Corporation) [Bestand niet getekend] S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [Bestand niet getekend] R1 CTIAIO; C:\Windows\system32\drivers\CtiAIo64.sys [32320 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [158640 2024-09-12] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 HidHide; C:\Windows\System32\drivers\HidHide.sys [66584 2022-06-27] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.) R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [44880 2023-10-22] (Logitech Inc -> Logitech) R3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [32080 2023-10-22] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [73040 2023-10-22] (Logitech Inc -> Logitech) R3 logi_lamparray; C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_3b3a65c9540c2b66\logi_lamparray.sys [89176 2024-08-08] (Logitech Inc -> Logitech, Inc.) R2 mbamchameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [231504 2024-09-12] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [21480 2024-09-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\Windows\system32\DRIVERS\farflt11.sys [234168 2024-09-12] (Malwarebytes Inc. -> Malwarebytes) R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [78928 2024-09-12] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [239568 2024-09-12] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [189776 2024-09-12] (Malwarebytes Inc. -> Malwarebytes) R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [19016 2023-03-13] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd) R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [47240 2024-04-03] (NVIDIA Corporation -> NVIDIA Corporation) R3 ovpn-dco; C:\Windows\System32\drivers\ovpn-dco.sys [92664 2024-05-22] (WDKTestCert lev,133391533294737317 -> OpenVPN, Inc) R3 parsecudeaudio; C:\Windows\System32\drivers\parsecudeaudio.sys [163856 2023-05-23] (Microsoft Windows Hardware Compatibility Publisher -> Parsec) R3 parsecvusba; C:\Windows\System32\drivers\parsecvusba.sys [262712 2023-05-23] (Microsoft Windows Hardware Compatibility Publisher -> Parsec) R3 rt68cx21; C:\Windows\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_75af912c76141870\rt68cx21x64.sys [656288 2024-01-15] (Realtek Semiconductor Corp. -> Realtek) S3 rtcx21; C:\Windows\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_516e5c9b75c49dc2\rtcx21x64.sys [539648 2022-05-06] (Microsoft Windows -> Realtek) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R3 tap0901; C:\Windows\System32\drivers\tap0901.sys [41000 2024-08-21] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) R3 tap_ovpnconnect; C:\Windows\System32\drivers\tap_ovpnconnect.sys [40448 2024-01-31] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) R1 ViGEmBus; C:\Windows\System32\drivers\ViGEmBus.sys [249400 2022-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.) S3 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [55856 2023-11-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) U5 WdDevFlt; C:\Windows\System32\Drivers\WdDevFlt.sys [169232 2022-05-07] (Microsoft Windows -> Microsoft Corporation) S3 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [572712 2023-11-04] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105872 2023-11-04] (Microsoft Windows -> Microsoft Corporation) R3 wintun; C:\Windows\System32\drivers\wintun.sys [38176 2024-08-21] (WireGuard LLC -> WireGuard LLC) S3 xhunter1; C:\Windows\xhunter1.sys [194448 2024-09-11] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) S3 EAAntiCheat; system32\drivers\eaanticheat.sys [X] S3 NEProtect; \??\D:\Program Files (x86)\Steam\steamapps\common\Once Human\NEProtect.sys [X] ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Een maand (aangemaakt) (gefilterd) ========= (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2024-09-12 09:30 - 2024-09-12 09:39 - 000047187 _____ C:\Users\tanju\Desktop\FRST.txt 2024-09-12 09:30 - 2024-09-12 09:39 - 000000000 ____D C:\FRST 2024-09-12 09:29 - 2024-09-12 09:30 - 002397696 _____ (Farbar) C:\Users\tanju\Desktop\FRST64 (1).exe 2024-09-12 09:29 - 2024-09-12 09:29 - 002397696 _____ (Farbar) C:\Users\tanju\Downloads\FRST64 (1).exe 2024-09-12 09:28 - 2024-09-12 09:28 - 002095104 _____ (Farbar) C:\Users\tanju\Downloads\FRST (1).exe 2024-09-12 09:18 - 2024-09-12 09:18 - 000234168 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt11.sys 2024-09-12 09:18 - 2024-09-12 09:18 - 000189776 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2024-09-12 09:17 - 2024-09-12 09:37 - 000000000 ____D C:\Users\tanju\AppData\Local\Malwarebytes 2024-09-12 09:17 - 2024-09-12 09:17 - 002596072 _____ (Malwarebytes) C:\Users\tanju\Downloads\MBSetup (2).exe 2024-09-12 09:17 - 2024-09-12 09:17 - 000002093 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2024-09-12 09:17 - 2024-09-12 09:17 - 000002081 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2024-09-12 09:17 - 2024-09-12 09:17 - 000000000 ____D C:\ProgramData\Malwarebytes 2024-09-12 09:17 - 2024-09-12 09:17 - 000000000 ____D C:\Program Files\Malwarebytes 2024-09-12 04:18 - 2024-09-12 04:18 - 000764334 _____ C:\Windows\system32\perfh013.dat 2024-09-12 04:18 - 2024-09-12 04:18 - 000151760 _____ C:\Windows\system32\perfc013.dat 2024-09-11 17:33 - 2024-09-11 17:33 - 000054424 _____ C:\Users\tanju\Downloads\TanjuNAS_20240911.dss 2024-09-11 17:33 - 2024-09-11 17:33 - 000054424 _____ C:\Users\tanju\Desktop\TanjuNAS_20240911.dss 2024-09-10 17:27 - 2024-09-10 17:27 - 000014947 _____ C:\Users\tanju\Downloads\archive (1).zip 2024-09-10 17:26 - 2024-09-10 17:26 - 000002660 _____ C:\Users\tanju\Downloads\archive.zip 2024-09-04 21:07 - 2024-09-04 21:07 - 000022190 _____ C:\Users\tanju\Downloads\verklarende_nota.pdf 2024-09-04 16:07 - 2024-09-04 16:07 - 000062664 _____ C:\Users\tanju\Desktop\Bravios.pdf 2024-09-04 10:33 - 2024-09-04 10:53 - 3507069388 _____ C:\Users\tanju\Desktop\Backup 2016-001.zip 2024-09-04 10:32 - 2024-09-04 10:44 - 4272477280 _____ C:\Users\tanju\Desktop\Backup XXXX - 2015-001.zip 2024-09-03 20:59 - 2024-09-03 20:59 - 000000000 ____D C:\Users\tanju\AppData\Local\My Games 2024-09-03 16:59 - 2024-09-03 16:59 - 000041658 _____ C:\Users\tanju\Desktop\98501551-5860-4dbd-911c-fdca9f7f1e84.pdf 2024-09-03 14:12 - 2024-09-03 14:12 - 001005623 _____ C:\Users\tanju\Downloads\eurom-polar.pdf 2024-08-31 22:08 - 2024-08-31 22:08 - 000000000 ____D C:\Users\tanju\Desktop\Photos (3) 2024-08-31 22:07 - 2024-08-31 22:07 - 2142849157 _____ C:\Users\tanju\Desktop\Photos (3).zip 2024-08-31 22:03 - 2024-08-31 22:07 - 2142849157 _____ C:\Users\tanju\Downloads\Photos (3).zip 2024-08-31 21:54 - 2024-08-31 21:54 - 223989859 _____ C:\Users\tanju\Downloads\Photos (2).zip 2024-08-31 11:34 - 2024-08-31 11:34 - 000000222 _____ C:\Users\tanju\Desktop\Kingdom Come Deliverance.url 2024-08-27 17:29 - 2024-08-27 17:29 - 005461383 _____ C:\Users\tanju\Downloads\PROD-WebLogs-2024-08-27T15_29_35.472Z.zip 2024-08-27 17:29 - 2024-08-27 17:29 - 000813130 _____ C:\Users\tanju\Downloads\LIFE-WebLogs-2024-08-27T15_29_22.817Z.zip 2024-08-27 17:29 - 2024-08-27 17:29 - 000000000 ____D C:\Users\tanju\Downloads\MSTeams Support Logs 2024 08 27 15 29 19.0004954 2024-08-27 09:21 - 2024-08-27 09:21 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2024-08-23 17:50 - 2024-08-23 17:50 - 000000000 ____D C:\Users\tanju\AppData\Roaming\FiraxisLive 2024-08-23 17:50 - 2024-08-23 17:50 - 000000000 ____D C:\Users\tanju\AppData\Local\Firaxis Games 2024-08-23 14:52 - 2024-08-23 14:52 - 000000222 _____ C:\Users\tanju\Desktop\Sid Meier's Civilization VI.url 2024-08-21 14:02 - 2024-08-21 14:02 - 005423104 _____ C:\Users\tanju\Downloads\OpenVPN-2.6.12-I001-amd64.msi 2024-08-21 14:02 - 2024-08-21 14:02 - 000038176 _____ (WireGuard LLC) C:\Windows\system32\Drivers\wintun.sys 2024-08-21 14:02 - 2024-08-21 14:02 - 000000000 ____D C:\Users\tanju\OpenVPN 2024-08-21 14:02 - 2024-08-21 14:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenVPN 2024-08-21 14:02 - 2024-08-21 14:02 - 000000000 ____D C:\Program Files\OpenVPN 2024-08-20 14:44 - 2024-08-20 14:44 - 000000000 ____D C:\Users\tanju\AppData\Roaming\Microsoft\Document Building Blocks 2024-08-18 16:42 - 2024-08-18 16:42 - 000000222 _____ C:\Users\tanju\Desktop\Hell Let Loose.url 2024-08-18 16:31 - 2024-08-18 16:31 - 000000223 _____ C:\Users\tanju\Desktop\Company of Heroes 3.url 2024-08-14 18:00 - 2024-08-14 17:34 - 2465911922 _____ C:\Users\tanju\Desktop\Album 2017-001.zip 2024-08-14 17:06 - 2024-08-14 17:34 - 2465911922 _____ C:\Users\tanju\Downloads\Album 2017-001.zip 2024-08-14 16:24 - 2024-08-14 16:32 - 217276419 _____ C:\Users\tanju\Desktop\Backup 2018-001.zip 2024-08-14 14:47 - 2024-08-14 14:47 - 005947521 _____ C:\Users\tanju\Desktop\courrier du CE N.V. Ghent Dredging.pdf 2024-08-14 10:31 - 2024-08-14 10:31 - 000013006 _____ C:\Users\tanju\Downloads\basic.ics 2024-08-14 10:29 - 2024-08-14 10:29 - 000002740 _____ C:\Users\tanju\Downloads\tanju.turkeli@gmail.com.ical.zip 2024-08-14 10:03 - 2024-08-14 10:03 - 000010744 _____ C:\Users\tanju\Downloads\Document van Tanju.xlsx 2024-08-14 10:03 - 2024-08-14 10:03 - 000010744 _____ C:\Users\tanju\Desktop\Document van Tanju.xlsx 2024-08-13 22:45 - 2024-08-13 23:05 - 2448910984 _____ C:\Users\tanju\Desktop\Backup 2019.zip 2024-08-13 22:41 - 2024-08-13 22:48 - 1514400577 _____ C:\Users\tanju\Desktop\Backup 2020.zip 2024-08-13 22:15 - 2024-08-13 22:15 - 000026169 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json 2024-08-13 22:15 - 2024-08-13 22:15 - 000026169 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json ==================== Een maand (gewijzigd) ================== (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2024-09-12 09:39 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemTemp 2024-09-12 09:24 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-09-12 09:21 - 2023-05-18 12:43 - 000000000 ____D C:\Users\tanju\AppData\Roaming\utorrent 2024-09-12 09:17 - 2022-05-07 07:24 - 000000000 ___HD C:\Windows\ELAMBKUP 2024-09-12 09:17 - 2022-05-07 07:22 - 000000000 ____D C:\Windows\INF 2024-09-12 09:13 - 2023-05-18 12:45 - 000000000 ____D C:\Users\tanju\AppData\Roaming\discord 2024-09-12 09:12 - 2023-05-18 12:45 - 000000000 ____D C:\Users\tanju\AppData\Local\Discord 2024-09-12 04:27 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate 2024-09-12 04:18 - 2023-05-17 23:38 - 001711336 _____ C:\Windows\system32\PerfStringBackup.INI 2024-09-12 04:14 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps 2024-09-12 04:14 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\AppReadiness 2024-09-12 04:12 - 2024-02-18 23:40 - 000000000 ____D C:\Users\tanju\AppData\Roaming\OpenVPN Connect 2024-09-12 04:12 - 2023-10-22 12:23 - 000000000 ____D C:\Users\tanju\AppData\Local\LGHUB 2024-09-12 04:12 - 2023-06-05 15:24 - 000000000 ___RD C:\Users\tanju\OneDrive - GCloud Belgium 2024-09-12 04:12 - 2023-05-18 13:40 - 000000000 ____D C:\Users\tanju\AppData\Local\CrashDumps 2024-09-12 04:12 - 2023-05-17 23:37 - 000000000 ____D C:\ProgramData\NVIDIA 2024-09-12 04:11 - 2024-04-05 06:29 - 000476400 _____ C:\Windows\system32\FNTCACHE.DAT 2024-09-12 04:11 - 2023-12-17 14:06 - 000000000 ____D C:\Program Files\TeamViewer 2024-09-12 04:11 - 2023-11-25 15:42 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software 2024-09-12 04:11 - 2023-05-18 12:38 - 000000000 ____D C:\ProgramData\Avast Software 2024-09-12 04:11 - 2023-05-17 23:32 - 000845256 _____ C:\Windows\system32\AsusUpdateCheck.exe 2024-09-12 04:11 - 2023-05-17 23:32 - 000012288 ___SH C:\DumpStack.log.tmp 2024-09-12 04:11 - 2023-05-17 23:32 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2024-09-12 04:11 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ServiceState 2024-09-12 04:10 - 2023-10-28 15:06 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView 2024-09-12 04:10 - 2023-05-17 23:32 - 000901328 _____ () C:\Windows\system32\wpbbin.exe 2024-09-12 04:10 - 2022-05-07 07:24 - 000000000 ___SD C:\Windows\SysWOW64\F12 2024-09-12 04:10 - 2022-05-07 07:24 - 000000000 ___SD C:\Windows\system32\F12 2024-09-12 04:10 - 2022-05-07 07:24 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2024-09-12 04:10 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\WUModels 2024-09-12 04:10 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SysWOW64\Dism 2024-09-12 04:10 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemResources 2024-09-12 04:10 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\oobe 2024-09-12 04:10 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\HealthAttestationClient 2024-09-12 04:10 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\Dism 2024-09-12 04:10 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ShellExperiences 2024-09-12 04:10 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\Provisioning 2024-09-12 04:10 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\bcastdvr 2024-09-12 04:10 - 2022-05-07 07:17 - 001310720 _____ C:\Windows\system32\config\BBI 2024-09-11 23:59 - 2024-02-18 13:42 - 000003482 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2024-09-11 23:59 - 2023-10-28 14:54 - 000002992 _____ C:\Windows\system32\Tasks\HidHide_Updater 2024-09-11 23:59 - 2023-10-28 14:51 - 000002930 _____ C:\Windows\system32\Tasks\ViGEmBus_Updater 2024-09-11 23:59 - 2023-05-18 13:27 - 000002716 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2024-09-11 23:59 - 2023-05-18 00:02 - 000003398 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-09-11 23:59 - 2023-05-18 00:02 - 000003152 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-09-11 23:59 - 2023-05-18 00:02 - 000002984 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-09-11 23:59 - 2023-05-18 00:02 - 000002948 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-09-11 23:59 - 2023-05-18 00:02 - 000002948 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-09-11 23:59 - 2023-05-18 00:02 - 000002948 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-09-11 23:59 - 2023-05-18 00:02 - 000002948 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-09-11 23:59 - 2023-05-18 00:02 - 000002914 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-09-11 23:59 - 2023-05-18 00:02 - 000002744 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-09-11 23:59 - 2023-05-17 23:45 - 000003070 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3137216763-3384046345-3396708815-1001 2024-09-11 23:59 - 2023-05-17 23:32 - 000003658 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-09-11 23:59 - 2023-05-17 23:32 - 000003434 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-09-11 23:53 - 2024-01-17 15:03 - 000194448 _____ (Wellbia.com Co., Ltd.) C:\Windows\xhunter1.sys 2024-09-11 23:21 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\NDF 2024-09-11 22:32 - 2023-05-17 23:47 - 000002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-09-11 22:32 - 2023-05-17 23:47 - 000002226 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2024-09-11 21:04 - 2023-05-17 23:44 - 000000000 ____D C:\Users\tanju\AppData\Local\Packages 2024-09-11 18:26 - 2023-05-20 10:49 - 000000000 ____D C:\Windows\system32\MRT 2024-09-11 18:23 - 2023-05-20 10:49 - 199688632 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2024-09-11 18:23 - 2022-05-07 07:17 - 000000000 ____D C:\Windows\CbsTemp 2024-09-11 18:21 - 2023-05-17 23:34 - 003212800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2024-09-11 17:50 - 2023-05-17 23:32 - 000000000 ____D C:\Windows\system32\SleepStudy 2024-09-11 17:30 - 2023-10-28 14:51 - 000000000 ____D C:\Users\tanju\AppData\Roaming\DS4Windows 2024-09-11 17:29 - 2023-05-18 13:36 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2024-09-10 15:28 - 2023-05-23 16:49 - 000000124 _____ C:\ProgramData\autoclickconfig.ini 2024-09-10 13:44 - 2023-05-17 23:44 - 000000000 ____D C:\Users\tanju\AppData\Local\D3DSCache 2024-09-08 20:54 - 2023-05-18 13:31 - 000000000 ____D C:\Users\tanju\AppData\Roaming\Microsoft\Excel 2024-09-06 23:52 - 2023-05-17 23:32 - 000002408 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-09-06 10:19 - 2023-05-17 23:33 - 000000000 ____D C:\ProgramData\Packages 2024-09-06 10:18 - 2023-05-17 23:45 - 000000000 ____D C:\Users\tanju\AppData\Local\PlaceholderTileLogoFolder 2024-09-06 09:35 - 2023-05-18 13:27 - 000002134 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2024-09-05 21:28 - 2023-05-18 15:53 - 000000000 ____D C:\Users\tanju\AppData\Local\Steam 2024-09-04 12:29 - 2023-05-18 13:28 - 000000000 ____D C:\Users\tanju\AppData\Roaming\Microsoft\Word 2024-09-03 21:16 - 2024-01-30 21:52 - 000000000 ____D C:\Users\tanju\AppData\Local\Ubisoft Game Launcher 2024-09-03 20:59 - 2023-05-27 00:02 - 000000000 ____D C:\Users\tanju\Documents\My Games 2024-09-03 20:59 - 2023-05-17 23:47 - 000000000 ____D C:\ProgramData\Package Cache 2024-08-31 22:01 - 2023-12-06 18:35 - 000000000 ____D C:\Users\tanju\AppData\Roaming\vlc 2024-08-31 14:07 - 2023-05-18 00:02 - 000000000 ____D C:\Users\tanju\AppData\Local\NVIDIA Corporation 2024-08-31 11:34 - 2023-05-18 15:55 - 000000000 ____D C:\Users\tanju\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2024-08-28 16:38 - 2023-09-29 16:10 - 000000000 ____D C:\ProgramData\Packer 2024-08-27 10:03 - 2023-05-18 13:28 - 000000000 ____D C:\Users\tanju\AppData\Roaming\Microsoft\Office 2024-08-27 09:19 - 2023-05-18 13:24 - 000000000 ____D C:\Program Files\Microsoft Office 2024-08-26 22:07 - 2024-03-18 23:33 - 000000000 ____D C:\ProgramData\Hogwarts Legacy 2024-08-26 20:54 - 2024-02-18 13:42 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2024-08-22 22:50 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\LiveKernelReports 2024-08-21 14:08 - 2023-05-17 23:40 - 000000000 ___SD C:\Users\tanju\AppData\Roaming\Microsoft\Credentials 2024-08-21 14:02 - 2023-05-17 23:40 - 000000000 ____D C:\Users\tanju 2024-08-20 23:07 - 2023-05-18 17:17 - 000000000 ____D C:\Program Files\Rockstar Games 2024-08-14 22:54 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\UUS 2024-08-14 22:54 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2024-08-14 22:54 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemApps 2024-08-14 22:54 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\WinMetadata 2024-08-14 22:54 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\Sgrm 2024-08-14 22:54 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\SecureBootUpdates 2024-08-14 22:54 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\appraiser 2024-08-14 22:54 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ShellComponents 2024-08-14 22:54 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\schemas 2024-08-13 22:17 - 2022-05-07 07:25 - 000209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll 2024-08-13 22:17 - 2022-05-07 07:24 - 000249856 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll ==================== Bestanden in de root van sommige mappen ======== 2023-12-28 19:12 - 2024-05-02 22:54 - 000000169 _____ () C:\Users\tanju\AppData\Roaming\BattleBitConfig.ini ==================== SigCheck ============================ (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) ==================== Einde van FRST.txt ========================