Mededeling

Collapse
No announcement yet.

Probleem met truekey

Collapse
X
  •  
  • Filter
  • Tijd
  • Show
Clear All
new posts

  • Probleem met truekey

    Hallo

    Ik heb sinds gisteren een app/tool genaamd truekey.
    Bij opstarten van de pc heb ik nu ook de mogelijkheid om zonder wachtwoord in te loggen.
    Ik heb zelf niets van dien aard geïnstalleerd wil dat ook niet.
    Op c staat nu onder program files een map truekey waar ik geen machtigingen voor heb
    Ik kan truekey niet deïnstalleren of verwijderen.
    Een beetje speurwerk levert op dat het toch meer doet dan ik wist
    En iemand is maker en eigenaar met meer rechten dan ik
    Ik wil het eraf krijgen maar het lukt me niet
    Ik heb gisteren een update van flashplayer gedaan misschien dat het daar in zat?
    Kan iemand me hiermee helpen?
    Kan nog geen logje posten want adres was niet bekend (werk aan server)

    Alvast bedankt

  • #2
    log van mailware bite

    Malwarebytes Anti-Malware
    www.malwarebytes.org

    Scandatum: 25-11-2016
    Scantijd: 21:16
    Logboekbestand: mwam log.txt
    Beheerder: Ja

    Versie: 2.2.1.1043
    Malware-database: v2016.11.25.11
    Rootkit-database: v2016.11.20.01
    Licentie: Gratis
    Malware-bescherming: Uitgeschakeld
    Bescherming tegen kwaadaardige websites: Uitgeschakeld
    Zelfbescherming: Uitgeschakeld

    Besturingssysteem: Windows 10
    Processor: x64
    Bestandssysteem: NTFS
    Gebruiker: Will

    Scantype: Bedreigingsscan
    Resultaat: Voltooid
    Objecten gescand: 430032
    Verstreken tijd: 23 min, 51 sec

    Geheugen: Ingeschakeld
    Opstarten: Ingeschakeld
    Bestandssysteem: Ingeschakeld
    Archieven: Ingeschakeld
    Rootkits: Uitgeschakeld
    Heuristiek: Ingeschakeld
    POP: Ingeschakeld
    POA: Ingeschakeld

    Processen: 0
    (Geen kwaadaardige items gedetecteerd)

    Modules: 0
    (Geen kwaadaardige items gedetecteerd)

    Registersleutels: 0
    (Geen kwaadaardige items gedetecteerd)

    Registerwaarden: 0
    (Geen kwaadaardige items gedetecteerd)

    Registerdata: 0
    (Geen kwaadaardige items gedetecteerd)

    Mappen: 0
    (Geen kwaadaardige items gedetecteerd)

    Bestanden: 0
    (Geen kwaadaardige items gedetecteerd)

    Fysieke Sectoren: 0
    (Geen kwaadaardige items gedetecteerd)


    (end)

    Comment


    • #3
      log van gmer

      GMER 2.2.19882 - http://www.gmer.net
      Rootkit scan 2016-11-25 22:23:15
      Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\0000002f WDC_WD10JPVX-55JC3T0 rev.01.01A01 931,51GB
      Running: q1emckyh.exe; Driver: C:\Users\Will\AppData\Local\Temp\kfryifob.sys


      ---- Threads - GMER 2.2 ----

      Thread C:\WINDOWS\system32\csrss.exe [696:732] fffff547ceb36c20

      ---- Registry - GMER 2.2 ----

      Reg HKLM\SYSTEM\CurrentControlSet\Control\BackupRestore\[email protected] ????????????????? ????????????????????????????.?????????????????????????????????????????????? ??????????????????????????????????????????? ?????????????????????????????????????????????????L?=??????? ???????????????????????????????????????t??????????? ????????o??????????? ???L?????????????s???? ??????????????????????????????b???&???????????????????????????????????s???XboxComposite???-24?????????????????????$UserProfile$\AppData\Local\Microsoft\Office\15.0\OfficeFileCache\*.fsf?$User Profile$\AppData\Local\Microsoft\Office\15.0\OfficeFileCache\*.fsd?$UserProfile$\Local Settings\Application Data\Office\15.0\OfficeFileCache\*.fsd?$UserProfile$\Local Settings\Application Data\Office\15.0\OfficeFileCache\*.fsf?$UserProfile$\AppData\Local\Microsoft\Office\15.0\OfficeFileC ache\LocalCacheFileEditManager\*.fsf?$UserProfile$\AppData\Local\Microsoft\Office\15.0\OfficeFileCac he\LocalCacheFileEditManager\*.fsd?$UserProfile$\Local Settings\Application Data\Office\15.0\OfficeFileCache\LocalCacheFileEditManager\*.fsd?$UserProf
      Reg HKLM\SYSTEM\CurrentControlSet\Control\CMF\[email protected] 0x9E 0xE6 0xCC 0xDD ...
      Reg HKLM\SYSTEM\CurrentControlSet\Control\CMF\[email protected] 0xB0 0xC3 0x64 0x54 ...
      Reg HKLM\SYSTEM\CurrentControlSet\Control\CMF\[email protected] 0xFF 0x0F 0xD4 0xDD ...
      Reg HKLM\SYSTEM\CurrentControlSet\Control\CMF\[email protected] 0x85 0xEA 0x6B 0x54 ...
      Reg HKLM\SYSTEM\CurrentControlSet\Control\CMF\SqmData\[email protected] 20
      Reg HKLM\SYSTEM\CurrentControlSet\Control\GraphicsDrivers\Configuration\CMN15BB0_1D_07DC_2E^C7D8FA1D34A5 [email protected] 0xB4 0x68 0xED 0xDE ...
      Reg HKLM\SYSTEM\CurrentControlSet\Control\[email protected] 872
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\[email protected] Miniport (IKEv2) 1?
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\[email protected] Miniport (IP) 1?
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\[email protected] Miniport (IPv6) 1?
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\[email protected] Miniport (L2TP) 1?
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\[email protected] Miniport (Network Monitor) 1?
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\[email protected] Miniport (PPPOE) 1?
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\[email protected] Miniport (PPTP) 1?
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\[email protected] Miniport (SSTP) 1?
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{57D17A2C-C0C7-4A8B-97A0-A2E45AB9C5C6}
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{57D17A2C-C0C7-4A8B-97A0-A2E45AB9C5C6}\Connection
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{57D17A2C-C0C7-4A8B-97A0-A2E45AB9C5C6}\[email protected] LAN-verbinding* 7
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{57D17A2C-C0C7-4A8B-97A0-A2E45AB9C5C6}\[email protected] SWD\MSRRAS\MS_PPTPMINIPORT
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{60262D74-3DAF-4DD0-AE5C-F8240988249B}
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{60262D74-3DAF-4DD0-AE5C-F8240988249B}\Connection
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{60262D74-3DAF-4DD0-AE5C-F8240988249B}\[email protected] LAN-verbinding* 9
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{60262D74-3DAF-4DD0-AE5C-F8240988249B}\[email protected] SWD\MSRRAS\MS_NDISWANIP
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{79C4E2A5-0282-4EC7-A189-FAAB5424A264}
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{79C4E2A5-0282-4EC7-A189-FAAB5424A264}\Connection
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{79C4E2A5-0282-4EC7-A189-FAAB5424A264}\Connect[email protected] LAN-verbinding* 11
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{79C4E2A5-0282-4EC7-A189-FAAB5424A264}\[email protected] SWD\MSRRAS\MS_NDISWANBH
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{87B314D8-2ABC-474C-A2C1-EE5E0599036A}
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{87B314D8-2ABC-474C-A2C1-EE5E0599036A}\Connection
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{87B314D8-2ABC-474C-A2C1-EE5E0599036A}\[email protected] LAN-verbinding* 6
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{87B314D8-2ABC-474C-A2C1-EE5E0599036A}\[email protected] SWD\MSRRAS\MS_L2TPMINIPORT
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{AA9ABBE3-E854-4946-AA9C-6379EA811532}
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{AA9ABBE3-E854-4946-AA9C-6379EA811532}\Connection
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{AA9ABBE3-E854-4946-AA9C-6379EA811532}\[email protected] LAN-verbinding* 8
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{AA9ABBE3-E854-4946-AA9C-6379EA811532}\[email protected] SWD\MSRRAS\MS_PPPOEMINIPORT
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{C0CED031-09BE-4CB5-BA2C-44250246765C}
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{C0CED031-09BE-4CB5-BA2C-44250246765C}\Connection
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{C0CED031-09BE-4CB5-BA2C-44250246765C}\[email protected] LAN-verbinding* 4
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{C0CED031-09BE-4CB5-BA2C-44250246765C}\[email protected] SWD\MSRRAS\MS_SSTPMINIPORT
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{C4EC800B-AFA1-47CB-A774-11E8C4F27854}
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{C4EC800B-AFA1-47CB-A774-11E8C4F27854}\Connection
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{C4EC800B-AFA1-47CB-A774-11E8C4F27854}\[email protected] LAN-verbinding* 10
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{C4EC800B-AFA1-47CB-A774-11E8C4F27854}\[email protected] SWD\MSRRAS\MS_NDISWANIPV6
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{C5E4801A-6264-48A8-B71E-FEC28FBA73D3}
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{C5E4801A-6264-48A8-B71E-FEC28FBA73D3}\Connection
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{C5E4801A-6264-48A8-B71E-FEC28FBA73D3}\[email protected] LAN-verbinding* 5
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{C5E4801A-6264-48A8-B71E-FEC28FBA73D3}\[email protected] SWD\MSRRAS\MS_AGILEVPNMINIPORT
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Session [email protected] \??\C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll.old??\??\C:\Program Files (x86)\Malwarebytes Anti-Malware\is-00BBL.tmp?!\??\C:\Program Files (x86)\Malwarebytes Anti-Malware\cloud.dll?\??\C:\Program Files (x86)\Malwarebytes Anti-Malware\is-OAR3V.tmp?!\??\C:\Program Files (x86)\Malwarebytes Anti-Malware\cloud-enumeration.dll?\??\C:\Program Files (x86)\Malwarebytes Anti-Malware\is-S5FCQ.tmp?!\??\C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamresearch.exe?\??\C:\WINDOWS\SYSTEM32\Drivers\avgidsha.sys.old??\??\C:\ProgramData\MFADat a\cfgdump??\??\C:\Config.Msi\efa5c.rbf??\??\C:\Config.Msi\efa5d.rbf??
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\[email protected] 4521948
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\kernel\[email protected] 1380596011
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\[email protected] 20
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\[email protected] 490034805
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\[email protected] 1798
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\[email protected] 1764
      Reg HKLM\SYSTEM\CurrentControlSet\Control\Terminal [email protected] 399d4b95-b7fe-469d-ad6e-a71f50f
      Reg HKLM\SYSTEM\CurrentControlSet\Control\WMI\Autologger\[email protected] 3
      Reg HKLM\SYSTEM\CurrentControlSet\Control\WMI\Autologger\[email protected] 2
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Avgfwfd\Parameters\Adapters\{60262D74-3DAF-4DD0-AE5C-F8240988249B}
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Avgfwfd\Parameters\Adapters\{60262D74-3DAF-4DD0-AE5C-F8240988249B}\{FDDDF6A6-9B8C-4545-BFAF-4ADD56257B8B}-0000
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Avgfwfd\Parameters\Adapters\{79C4E2A5-0282-4EC7-A189-FAAB5424A264}
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Avgfwfd\Parameters\Adapters\{79C4E2A5-0282-4EC7-A189-FAAB5424A264}\{FDDDF6A6-9B8C-4545-BFAF-4ADD56257B8B}-0000
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Avgfwfd\Parameters\Adapters\{C4EC800B-AFA1-47CB-A774-11E8C4F27854}
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Avgfwfd\Parameters\Adapters\{C4EC800B-AFA1-47CB-A774-11E8C4F27854}\{FDDDF6A6-9B8C-4545-BFAF-4ADD56257B8B}-0000
      Reg HKLM\SYSTEM\CurrentControlSet\Services\AVGIDSHA\[email protected] 357
      Reg HKLM\SYSTEM\CurrentControlSet\Services\BITS\[email protected] 0x2B 0x1F 0x6B 0x44 ...
      Reg HKLM\SYSTEM\CurrentControlSet\Services\BITS\[email protected] Global\MMF_BITS2dbb0d97-c544-4de3-97ac-226b4e92a37c
      Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\342387834112
      Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\[email protected] 0x42 0xDD 0x01 0x31 ...
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\Probe\{914089dc-e939-4ed3-99d5-1f20319917eb}@LastProbeTime 1480106514
      Reg HKLM\SYSTEM\CurrentControlSet\Services\iphlpsvc\Parameters\Isatap\{721AD35A-04C7-48BE-86E8-86C1CBD246B7}@InterfaceName Reusable ISATAP Interface {721AD35A-04C7-48BE-86E8-86C1CBD246B7}
      Reg HKLM\SYSTEM\CurrentControlSet\Services\iphlpsvc\Parameters\Isatap\{721AD35A-04C7-48BE-86E8-86C1CBD246B7}@ReusableType 1
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMProtector
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 2
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 3
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 1
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] \??\C:\WINDOWS\system32\drivers\mbam.sys
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] FSFilter Anti-Virus
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] FltMgr?
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 1
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMProtector\Instances
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMProtector\[email protected] MBAMProtector Instance
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMProtector\Instances\MBAMProtector Instance
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMProtector\Instances\MBAMProtector [email protected] 328800
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMProtector\Instances\MBAMProtector [email protected] 0
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMProtector\Parameters
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMProtector\[email protected] mbampt.exe
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMProtector\[email protected] C:\Program Files (x86)\Malwarebytes Anti-Malware
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMProtector
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMService
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 16
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 2
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 1
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] MBAMProtector?
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 1
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] LocalSystem
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] Malwarebytes Anti-Malware service
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 0
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMService
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMWebAccessControl
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 2
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 3
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 1
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] \??\C:\WINDOWS\system32\drivers\mwac.sys
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] BFE?
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 1
      Reg HKLM\SYSTEM\CurrentControlSet\Services\MBAMWebAccessControl
      Reg HKLM\SYSTEM\CurrentControlSet\Services\NdisWan\[email protected] \Device\NdisWan_{C0CED031-09BE-4CB5-BA2C-44250246765C}?\Device\NdisWan_{C5E4801A-6264-48A8-B71E-FEC28FBA73D3}?\Device\NdisWan_{87B314D8-2ABC-474C-A2C1-EE5E0599036A}?\Device\NdisWan_{57D17A2C-C0C7-4A8B-97A0-A2E45AB9C5C6}?\Device\NdisWan_{AA9ABBE3-E854-4946-AA9C-6379EA811532}?
      Reg HKLM\SYSTEM\CurrentControlSet\Services\NdisWan\[email protected] \Device\{C0CED031-09BE-4CB5-BA2C-44250246765C}?\Device\{C5E4801A-6264-48A8-B71E-FEC28FBA73D3}?\Device\{87B314D8-2ABC-474C-A2C1-EE5E0599036A}?\Device\{57D17A2C-C0C7-4A8B-97A0-A2E45AB9C5C6}?\Device\{AA9ABBE3-E854-4946-AA9C-6379EA811532}?
      Reg HKLM\SYSTEM\CurrentControlSet\Services\NdisWan\[email protected] "{C0CED031-09BE-4CB5-BA2C-44250246765C}"?"{C5E4801A-6264-48A8-B71E-FEC28FBA73D3}"?"{87B314D8-2ABC-474C-A2C1-EE5E0599036A}"?"{57D17A2C-C0C7-4A8B-97A0-A2E45AB9C5C6}"?"{AA9ABBE3-E854-4946-AA9C-6379EA811532}"?
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Psched\Parameters\Adapters\{60262D74-3DAF-4DD0-AE5C-F8240988249B}
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Psched\Parameters\Adapters\{60262D74-3DAF-4DD0-AE5C-F8240988249B}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Psched\Parameters\Adapters\{79C4E2A5-0282-4EC7-A189-FAAB5424A264}
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Psched\Parameters\Adapters\{79C4E2A5-0282-4EC7-A189-FAAB5424A264}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Psched\Parameters\Adapters\{C4EC800B-AFA1-47CB-A774-11E8C4F27854}
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Psched\Parameters\Adapters\{C4EC800B-AFA1-47CB-A774-11E8C4F27854}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000
      Reg HKLM\SYSTEM\CurrentControlSet\Services\rdyboost\[email protected] 5
      Reg HKLM\SYSTEM\CurrentControlSet\Services\rdyboost\[email protected] ?vr?, ?nov ?25 ?16, 08:47:09???????????????????????????????????
      Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\[email protected] 3131
      Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\[email protected] 178
      Reg HKLM\SYSTEM\CurrentControlSet\Services\srvnet\[email protected] 19
      Reg HKLM\SYSTEM\CurrentControlSet\Services\SynTP\[email protected] 300
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{dc7be865-8701-4d36-ba15-dce7b930ddd8}@LeaseObtainedTime 1480102914
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{dc7be865-8701-4d36-ba15-dce7b930ddd8}@T1 1480146114
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{dc7be865-8701-4d36-ba15-dce7b930ddd8}@T2 1480178514
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{dc7be865-8701-4d36-ba15-dce7b930ddd8}@LeaseTerminatesTime 1480189314
      Reg HKLM\SYSTEM\CurrentControlSet\Services\W32Time\[email protected] 0xD5 0xAB 0x59 0x1B ...
      Reg HKLM\SYSTEM\CurrentControlSet\Services\W32Time\[email protected] 0xD5 0x13 0x1E 0x7D ...
      Reg HKLM\SYSTEM\CurrentControlSet\Services\W32Time\[email protected] 0xD5 0x43 0x95 0xB9 ...
      Reg HKLM\SYSTEM\CurrentControlSet\Services\[email protected] 2
      Reg HKLM\SYSTEM\CurrentControlSet\Services\wanarp\[email protected] \Device\wanarp_{60262D74-3DAF-4DD0-AE5C-F8240988249B}?
      Reg HKLM\SYSTEM\CurrentControlSet\Services\wanarp\[email protected] \Device\{60262D74-3DAF-4DD0-AE5C-F8240988249B}?
      Reg HKLM\SYSTEM\CurrentControlSet\Services\wanarp\[email protected] "{60262D74-3DAF-4DD0-AE5C-F8240988249B}"?
      Reg HKLM\SYSTEM\CurrentControlSet\Services\wanarp
      Reg HKLM\SYSTEM\CurrentControlSet\Services\wanarpv6\[email protected] \Device\wanarpv6_{C4EC800B-AFA1-47CB-A774-11E8C4F27854}?
      Reg HKLM\SYSTEM\CurrentControlSet\Services\wanarpv6\[email protected] \Device\{C4EC800B-AFA1-47CB-A774-11E8C4F27854}?
      Reg HKLM\SYSTEM\CurrentControlSet\Services\wanarpv6\[email protected] "{C4EC800B-AFA1-47CB-A774-11E8C4F27854}"?
      Reg HKLM\SYSTEM\CurrentControlSet\Services\WFPLWFS\Parameters\Adapters\{60262D74-3DAF-4DD0-AE5C-F8240988249B}
      Reg HKLM\SYSTEM\CurrentControlSet\Services\WFPLWFS\Parameters\Adapters\{60262D74-3DAF-4DD0-AE5C-F8240988249B}\{3BFD7820-D65C-4C1B-9FEA-983A019639EA}-0000
      Reg HKLM\SYSTEM\CurrentControlSet\Services\WFPLWFS\Parameters\Adapters\{79C4E2A5-0282-4EC7-A189-FAAB5424A264}
      Reg HKLM\SYSTEM\CurrentControlSet\Services\WFPLWFS\Parameters\Adapters\{79C4E2A5-0282-4EC7-A189-FAAB5424A264}\{3BFD7820-D65C-4C1B-9FEA-983A019639EA}-0000
      Reg HKLM\SYSTEM\CurrentControlSet\Services\WFPLWFS\Parameters\Adapters\{C4EC800B-AFA1-47CB-A774-11E8C4F27854}
      Reg HKLM\SYSTEM\CurrentControlSet\Services\WFPLWFS\Parameters\Adapters\{C4EC800B-AFA1-47CB-A774-11E8C4F27854}\{3BFD7820-D65C-4C1B-9FEA-983A019639EA}-0000
      Reg HKLM\SYSTEM\CurrentControlSet\Services\Winmgmt\[email protected] 0
      Reg HKLM\SYSTEM\Setup\Upgrade\NsiMigrationRoot\60\[email protected] 0x64 0x62 0x03 0x00 ...
      Reg HKLM\SYSTEM\Setup\Upgrade\NsiMigrationRoot\60\[email protected] 0x64 0x62 0x03 0x00 ...
      Reg HKLM\SYSTEM\Setup\Upgrade\NsiMigrationRoot\60\[email protected] 0x64 0x62 0x03 0x00 ...
      Reg HKLM\SYSTEM\Setup\Upgrade\NsiMigrationRoot\60\[email protected] 0x64 0x62 0x03 0x00 ...
      Reg HKLM\SYSTEM\Setup\Upgrade\NsiMigrationRoot\60\[email protected] 0x64 0x62 0x03 0x00 ...
      Reg HKLM\SYSTEM\Setup\Upgrade\NsiMigrationRoot\60\[email protected] 0x64 0x62 0x03 0x00 ...
      Reg HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\[email protected] 0x6D 0x13 0x90 0x42 ...
      Reg HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\StorageSense\Parameters\CachedSizes\{20202020-5720-2D44-8E81-0876895E2577}@01 0x00 0xD0 0x9E 0x79 ...
      Reg HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\StorageSense\Parameters\CachedSizes\{20202020-5720-2D44-8E81-0876895E2577}@10 0x00 0x50 0xBA 0x01 ...
      Reg HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\StorageSense\Parameters\CachedSizes\{20202020-5720-2D44-8E81-0876895E2577}@12 0x00 0x10 0xA2 0x19 ...
      Reg HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\StorageSense\Parameters\CachedSizes\{20202020-5720-2D44-8E81-0876895E2577}@18 0x00 0xB0 0xB0 0xF8 ...
      Reg HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\StorageSense\Parameters\CachedSizes\{20202020-5720-2D44-8E81-0876895E2577}@26 0x00 0x00 0xFD 0x95 ...
      Reg HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\StorageSense\Parameters\CachedSizes\{20202020-5720-2D44-8E81-0876895E2577}@28 0x00 0x30 0x92 0xB8 ...
      Reg HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\StorageSense\Parameters\CachedSizes\{20202020-5720-2D44-8E81-0876895E2577}@00 0x00 0x30 0x0C 0x29 ...

      ---- Disk sectors - GMER 2.2 ----

      Disk \Device\Harddisk0\DR0 unknown MBR code

      ---- EOF - GMER 2.2 ----

      Comment


      • #4
        log dds

        DDS (Ver_2012-11-20.01) - NTFS_AMD64
        Internet Explorer: 11.0.14393.0
        Run by Will at 22:28:53 on 2016-11-25
        Microsoft Windows 10 Home 10.0.14393.0.1252.31.1043.18.8071.4916 [GMT 1:00]
        .
        AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
        AV: AVG Internet Security *Enabled/Updated* {4D41356F-32AD-7C42-C820-63775EE4F413}
        SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
        SP: AVG Internet Security *Enabled/Updated* {F620D48B-1497-73CC-F290-58052563BEAE}
        FW: AVG Internet Security *Enabled* {757AB44A-78C2-7D1A-E37F-CA42A037B368}
        .
        ============== Running Processes ===============
        .
        C:\WINDOWS\system32\svchost.exe -k DcomLaunch
        C:\WINDOWS\system32\svchost.exe -k RPCSS
        C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
        C:\WINDOWS\system32\dwm.exe
        C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
        C:\WINDOWS\system32\svchost.exe -k netsvcs
        C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
        C:\WINDOWS\system32\nvvsvc.exe
        C:\WINDOWS\system32\svchost.exe -k LocalService
        C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
        C:\WINDOWS\System32\svchost.exe -k NetworkService
        C:\WINDOWS\system32\igfxCUIService.exe
        C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
        C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
        C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
        C:\WINDOWS\system32\WLANExt.exe
        C:\WINDOWS\System32\spoolsv.exe
        C:\WINDOWS\System32\svchost.exe -k utcsvc
        C:\Program Files (x86)\AVG\Av\avgfwsa.exe
        C:\WINDOWS\system32\svchost.exe -k appmodel
        C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
        C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
        C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
        C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
        c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
        C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
        C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
        C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
        C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
        C:\ProgramData\MobileBrServ\mbbservice.exe
        C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
        C:\WINDOWS\system32\SearchIndexer.exe
        C:\WINDOWS\system32\dashost.exe
        C:\WINDOWS\system32\svchost.exe -k imgsvc
        C:\Program Files\Intel\iCLS Client\HeciServer.exe
        C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
        C:\WINDOWS\system32\BtwRSupportService.exe
        C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
        C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
        C:\Program Files\Windows Media Player\wmpnetwk.exe
        C:\Program Files\Sony\VAIO Care\VAIOTM\VTSvc.exe
        C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
        C:\WINDOWS\SysWoW64\DllHost.exe
        C:\Program Files (x86)\AVG\Av\avgcsrva.exe
        C:\WINDOWS\system32\wbem\wmiprvse.exe
        C:\WINDOWS\system32\wbem\wmiprvse.exe
        C:\Program Files (x86)\AVG\Av\avgnsa.exe
        C:\Program Files (x86)\AVG\Av\avgemca.exe
        C:\Program Files (x86)\AVG\Av\avgrsa.exe
        C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
        C:\Program Files (x86)\Sony\VAIO Control Center\SUSSoundProxy.exe
        C:\WINDOWS\system32\sihost.exe
        C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
        C:\WINDOWS\system32\taskhostw.exe
        C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
        C:\WINDOWS\Explorer.EXE
        C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
        C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.EXE
        C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
        C:\Program Files\Sony\NFC Connection Utility\NFCConnectionUtility.exe
        C:\Program Files\Sony\VAIO Care\VAIOTM\VTUsr.exe
        C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
        C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
        C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
        C:\Windows\System32\RuntimeBroker.exe
        C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
        C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
        C:\WINDOWS\system32\igfxEM.exe
        C:\WINDOWS\system32\igfxHK.exe
        C:\WINDOWS\system32\igfxTray.exe
        C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
        C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
        C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
        C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
        C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
        C:\Program Files\HP\HP Photosmart 7520 series\Bin\ScanToPCActivationApp.exe
        C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
        C:\Users\Will\AppData\Roaming\Spotify\SpotifyWebHelper.exe
        C:\Program Files (x86)\Samsung\Kies\Kies.exe
        C:\Program Files\McAfee Security Scan\3.11.427\SSScheduler.exe
        C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
        C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
        C:\Program Files (x86)\AVG\Av\avgui.exe
        C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
        C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
        C:\Program Files\CCleaner\CCleaner64.exe
        C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
        C:\WINDOWS\system32\fontdrvhost.exe
        C:\WINDOWS\system32\ctfmon.exe
        C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
        C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
        C:\Program Files (x86)\Mozilla Firefox\firefox.exe
        C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
        C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
        C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
        C:\Program Files\Sony\VAIO Update\vuagent.exe
        C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe
        C:\WINDOWS\system32\SettingSyncHost.exe
        C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe
        C:\Program Files\Sony\VAIO Care\VCSystemTray.exe
        C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
        C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
        C:\Program Files\Sony\VAIO Care\VCService.exe
        C:\Program Files\Sony\VAIO Care\VCAgent.exe
        C:\WINDOWS\system32\svchost.exe -k SDRSVC
        C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
        C:\WINDOWS\system32\taskhostw.exe
        C:\WINDOWS\system32\AUDIODG.EXE
        C:\Windows\System32\smartscreen.exe
        C:\WINDOWS\system32\SearchProtocolHost.exe
        C:\WINDOWS\system32\SearchFilterHost.exe
        C:\WINDOWS\System32\cscript.exe
        .
        ============== Pseudo HJT Report ===============
        .
        uStart Page = hxxps://mysearch.avg.com/?cid=%7B00516D7E-FBD9-4AE2-B1FD-7BEE27E5B922%7D&mid=99741e1abf2f47cda1dae159f5c43f5d-9add7987cf3c2b902bc0e4d31672ba094ab7b23b&lang=nl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2015-02-23%2016:37:54&v=4.1.0.411&pid=wtu&sg=&sap=hp
        uDefault_Page_URL = hxxp://sony13.msn.com
        BHO: Skype for Business Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\office15\ochelper.dll
        BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\office15\grooveex.dll
        uRun: [HP Photosmart 7520 series (NET)] "C:\Program Files\HP\HP Photosmart 7520 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN2A62924705VV:NW" -scfn "HP Photosmart 7520 series (NET)" -AutoStart 1
        uRun: [TomTomHOME.exe] "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe"
        uRun: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
        uRun: [MyDriveConnect.exe] "C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe"
        uRun: [OneDrive] "C:\Users\Will\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
        uRun: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
        uRun: [Spotify Web Helper] "C:\Users\Will\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
        uRun: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
        uRun: [GalaxyClient] C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe /launchViaAutoStart
        mRun: [Intel AppUp(R) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
        mRun: [AVG_UI] "C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe" /lps=av
        mRun: [Nikon Message Center 2] C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe -s
        mRun: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
        mRun: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
        mRun: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
        mRun: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
        mRun: [AvgUi] "C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe" /lps=fmw
        mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
        StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\StartUp\MCAFEE~1.LNK - C:\Program Files\McAfee Security Scan\3.11.427\SSScheduler.exe
        mPolicies-System: DSCAutomationHostEnabled = dword:2
        IE: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
        IE: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
        IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\office15\onbttnie.dll
        IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\office15\ochelper.dll
        IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll
        TCP: NameServer = 192.168.1.1
        TCP: Interfaces\{6873e06b-106e-4a1c-91de-b8193cc31375} : DHCPNameServer = 192.168.1.1
        TCP: Interfaces\{dc7be865-8701-4d36-ba15-dce7b930ddd8} : DHCPNameServer = 192.168.1.1
        Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\msosb.dll
        Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
        Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
        SSODL: WebCheck - <orphaned>
        CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
        x64-BHO: Skype for Business Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll
        x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll
        x64-BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll
        x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll
        x64-Run: [RtHDVBg] "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SONYAPO
        x64-Run: [NvBackend] "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
        x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
        x64-mPolicies-System: DSCAutomationHostEnabled = dword:2
        x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll
        x64-IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll
        x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
        x64-Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - <orphaned>
        x64-Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
        x64-Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
        x64-Notify: igfxcui - igfxdev.dll
        x64-SSODL: WebCheck - <orphaned>
        x64-mASetup: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall
        x64-mASetup: {89820200-ECBD-11cf-8B85-00AA005B4340} - U
        x64-CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
        Hosts: 0.0.0.1 mssplus.mcafee.com
        ================= FIREFOX ===================
        .
        FF - ProfilePath - C:\Users\Will\AppData\Roaming\Mozilla\Firefox\Profiles\qrfaoh5c.default-1477074985556\
        FF - prefs.js: browser.startup.homepage - hxxps://www.google.nl/
        FF - plugin: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
        FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
        FF - plugin: C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
        FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
        FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
        FF - plugin: C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp.dll
        FF - plugin: C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll
        FF - plugin: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll
        FF - plugin: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
        FF - plugin: C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll
        FF - plugin: C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_23_0_0_207.dll
        FF - plugin: C:\WINDOWS\SysWOW64\npDeployJava1.dll
        FF - plugin: C:\WINDOWS\SysWOW64\npmproxy.dll
        FF - plugin: C:\WINDOWS\SysWOW64\NPSM.dll
        FF - plugin: C:\WINDOWS\SysWOW64\NPSMDesktopProvider.dll
        .
        ============= SERVICES / DRIVERS ===============
        .
        R0 AVGIDSHA;AVGIDSHA;C:\WINDOWS\System32\drivers\avgidsha.sys [2015-5-26 267008]
        R0 Avgloga;AVG Logging Driver;C:\WINDOWS\System32\drivers\avgloga.sys [2016-2-16 360736]
        R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\WINDOWS\System32\drivers\avgmfx64.sys [2016-9-26 254208]
        R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\WINDOWS\System32\drivers\avgrkx64.sys [2014-6-17 52992]
        R0 avguniva;AVG Universal Driver;C:\WINDOWS\System32\drivers\avguniva.sys [2016-5-5 77056]
        R0 iaStorA;iaStorA;C:\WINDOWS\System32\drivers\iaStorA.sys [2013-12-27 647736]
        R0 intelpep;Stuurprogramma voor Intel(R) Power Engine-invoegtoepassing ;C:\WINDOWS\System32\drivers\intelpep.sys [2016-7-16 48152]
        R0 iorate;iorate;C:\WINDOWS\System32\drivers\iorate.sys [2016-11-17 48992]
        R0 nvpciflt;nvpciflt;C:\WINDOWS\System32\drivers\nvpciflt.sys [2016-6-23 55736]
        R0 volume;Volumestuurprogramma;C:\WINDOWS\System32\drivers\volume.sys [2016-7-16 16224]
        R0 WindowsTrustedRT;Windows Trusted Execution Environment Class Extension;C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [2016-7-16 107032]
        R0 WindowsTrustedRTProxy;Microsoft Windows Trusted Runtime Secure Service;C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [2016-7-16 17944]
        R0 Wof;Windows Overlay File System Filter Driver;C:\WINDOWS\System32\drivers\wof.sys [2016-10-2 199008]
        R1 ahcache;Application Compatibility Cache;C:\WINDOWS\System32\drivers\ahcache.sys [2016-10-29 227328]
        R1 Avgdiska;AVG Disk Driver;C:\WINDOWS\System32\drivers\avgdiska.sys [2016-5-13 163072]
        R1 Avgfwfd;AVG network filter service;C:\WINDOWS\System32\drivers\avgfwd6a.sys [2013-9-26 73992]
        R1 AVGIDSDriver;AVGIDSDriver;C:\WINDOWS\System32\drivers\avgidsdrivera.sys [2016-10-17 312576]
        R1 Avgldx64;AVG AVI Loader Driver;C:\WINDOWS\System32\drivers\avgldx64.sys [2016-10-19 267520]
        R1 Avgwfpa;AVG Firewall Driver;C:\WINDOWS\System32\drivers\avgwfpa.sys [2016-8-4 313096]
        R1 CLVirtualDrive;CLVirtualDrive;C:\WINDOWS\System32\drivers\CLVirtualDrive.sys [2013-12-26 92536]
        R1 FileCrypt;FileCrypt;C:\WINDOWS\System32\drivers\filecrypt.sys [2016-7-16 88576]
        R1 GpuEnergyDrv;GPU Energy Driver;C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2016-7-16 8192]
        R2 avgfws;AVG Firewall;C:\Program Files (x86)\AVG\Av\avgfwsa.exe [2016-11-2 1828472]
        R2 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [2016-11-2 5337696]
        R2 avgsvc;AVG Service;C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [2016-9-13 1149712]
        R2 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [2016-11-2 727512]
        R2 BcmBtRSupport;Bluetooth Driver Management Service;C:\WINDOWS\System32\BtwRSupportService.exe [2015-3-27 2251992]
        R2 CDPSvc;Service Platform voor verbonden apparaten;C:\WINDOWS\System32\svchost.exe -k LocalService [2016-7-16 44496]
        R2 CDPUserSvc_6e50f;CDPUserSvc_6e50f;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
        R2 ClickToRunSvc;Microsoft Office ClickToRun Service;C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe [2014-5-2 3040496]
        R2 clreg;Virtual Registry for Containers;C:\WINDOWS\System32\drivers\registry.sys [2016-7-16 70144]
        R2 CoreMessagingRegistrar;CoreMessaging;C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork [2016-7-16 44496]
        R2 DiagTrack;Connected User Experiences and Telemetry;C:\WINDOWS\System32\svchost.exe -k utcsvc [2016-7-16 44496]
        R2 GamesAppIntegrationService;GamesAppIntegrationService;C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2015-10-12 349728]
        R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service;C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2015-7-26 29728]
        R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service;C:\WINDOWS\System32\igfxCUIService.exe [2016-5-3 337888]
        R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-6-19 634632]
        R2 Intel(R) ME Service;Intel(R) ME Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2013-12-26 129824]
        R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe [2013-12-26 166688]
        R2 Mobile Broadband HL Service;Mobile Broadband HL Service;C:\ProgramData\MobileBrServ\mbbService.exe [2015-5-25 242256]
        R2 OneSyncSvc_6e50f;Host synchroniseren_6e50f;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
        R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [2014-6-24 481304]
        R2 SOHDms;Sony Digital Media Server;C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2014-1-16 495248]
        R2 ss_conn_service;SAMSUNG Mobile Connectivity Service;C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [2016-6-26 754784]
        R2 storqosflt;Storage QoS Filter Driver;C:\WINDOWS\System32\drivers\storqosflt.sys [2016-7-16 78336]
        R2 SynTPEnhService;SynTPEnh Caller Service;C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-9-24 246472]
        R2 tiledatamodelsvc;Tile Data model server;C:\WINDOWS\System32\svchost.exe -k appmodel [2016-7-16 44496]
        R2 TomTomHOMEService;TomTomHOMEService;C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [2015-7-13 93040]
        R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2013-12-26 365344]
        R2 UserManager;User Manager;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        R2 wcifs;Windows Container Isolation;C:\WINDOWS\System32\drivers\wcifs.sys [2016-10-2 119648]
        R2 wcnfs;Windows Container Name Virtualization;C:\WINDOWS\System32\drivers\wcnfs.sys [2016-7-16 66560]
        R2 WpnService;Systeemservice voor Windows Push Notifications;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        R3 bcbtums;Bluetooth RAM Firmware Download USB Filter;C:\WINDOWS\System32\drivers\bcbtums.sys [2015-3-27 173312]
        R3 DsSvc;Data Sharing Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
        R3 IntcDAud;Intel(R) Display Audio;C:\WINDOWS\System32\drivers\IntcDAud.sys [2015-8-21 463112]
        R3 iwdbus;IWD Bus Enumerator;C:\WINDOWS\System32\drivers\iwdbus.sys [2015-12-1 38896]
        R3 lfsvc;Geolocation Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        R3 LicenseManager;Service voor Windows-licentiebeheer ;C:\WINDOWS\System32\svchost.exe -k LocalService [2016-7-16 44496]
        R3 NcbService;Network Connection Broker;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
        R3 NdisVirtualBus;Microsoft Virtual Network Adapter Enumerator;C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [2016-7-16 20480]
        R3 PimIndexMaintenanceSvc_6e50f;Contact Data_6e50f;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
        R3 RSPCIESTOR;Realtek PCIE CardReader Driver;C:\WINDOWS\System32\drivers\RtsPStor.sys [2015-10-3 384760]
        R3 RTL8168;Realtek 8168 NT Driver;C:\WINDOWS\System32\drivers\Rt630x64.sys [2013-12-26 760032]
        R3 SFEP;Sony Firmware Extension Parser;C:\WINDOWS\System32\drivers\SFEP.sys [2012-7-16 14336]
        R3 SmbDrvI;SmbDrvI;C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2015-8-24 42696]
        R3 SpfService;VAIO Entertainment Common Service;C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2011-12-1 289952]
        R3 StateRepository;State Repository Service;C:\WINDOWS\System32\svchost.exe -k appmodel [2016-7-16 44496]
        R3 TimeBrokerSvc;Time Broker;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2016-7-16 44496]
        R3 UEFI;Microsoft UEFI-stuurprogramma;C:\WINDOWS\System32\drivers\uefi.sys [2016-7-16 28512]
        R3 UnistoreSvc_6e50f;User Data Storage_6e50f;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
        R3 UserDataSvc_6e50f;User Data Access_6e50f;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
        R3 VCService;VCService;C:\Program Files\Sony\VAIO Care\VCService.exe [2016-3-18 76856]
        R3 VUAgent;VUAgent;C:\Program Files\Sony\VAIO Update\VUAgent.exe [2016-7-20 1656600]
        S0 Avgboota;AVG Early Launch Anti-Malware Driver;C:\WINDOWS\System32\drivers\avgboota.sys [2016-1-7 21632]
        S2 0200661480014138mcinstcleanup;McAfee Application Installer Cleanup (0200661480014138);C:\WINDOWS\TEMP\020066~1.EXE -cleanup -nolog --> C:\WINDOWS\TEMP\020066~1.EXE -cleanup -nolog [?]
        S2 DoSvc;Delivery Optimization;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        S2 MapsBroker;Downloaded Maps Manager;C:\WINDOWS\System32\svchost.exe -k NetworkService [2016-7-16 44496]
        S2 Origin Web Helper Service;Origin Web Helper Service;C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2016-11-2 2209296]
        S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-9-20 324224]
        S2 sxuptp;SXUPTP Driver;C:\WINDOWS\System32\drivers\sxuptp.sys [2014-5-12 291352]
        S3 AcpiDev;Stuurprogramma voor ACPI-apparaten;C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-7-16 18432]
        S3 ADP80XX;ADP80XX;C:\WINDOWS\System32\drivers\adp80xx.sys [2016-7-16 1135456]
        S3 AJRouter;AllJoyn Router Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2016-7-16 44496]
        S3 applockerfltr;Smartlocker Filter Driver;C:\WINDOWS\System32\drivers\applockerfltr.sys [2016-7-16 15360]
        S3 AppReadiness;App Readiness;C:\WINDOWS\System32\svchost.exe -k AppReadiness [2016-7-16 44496]
        S3 AppXSvc;AppX Deployment Service (AppXSVC);C:\WINDOWS\System32\svchost.exe -k wsappx [2016-7-16 44496]
        S3 AvgAMPS;AvgAMPS;C:\Program Files (x86)\AVG\Av\avgamps.exe [2016-11-2 647864]
        S3 bcmfn;bcmfn Service;C:\WINDOWS\System32\drivers\bcmfn.sys [2016-7-16 9728]
        S3 bcmfn2;bcmfn2 Service;C:\WINDOWS\System32\drivers\bcmfn2.sys [2016-7-16 9728]
        S3 BRSptStub;BitRaider Mini-Support Service Stub Loader;C:\ProgramData\BitRaider\BRSptStub.exe [2015-11-15 363208]
        S3 BRSptSvc;BitRaider Mini-Support Service;C:\ProgramData\BitRaider\BRSptSvc.exe [2014-6-7 477960]
        S3 BthHFSrv;Bluetooth Handsfree Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceAndNoImpersonation [2016-7-16 44496]
        S3 btwampfl;btwampfl;C:\WINDOWS\System32\drivers\btwampfl.sys [2015-3-27 188160]
        S3 buttonconverter;Service voor Portable Device Control-apparaten;C:\WINDOWS\System32\drivers\buttonconverter.sys [2016-7-16 38912]
        S3 CapImg;HID-stuurprogramma voor CapImg-touchscreen;C:\WINDOWS\System32\drivers\capimg.sys [2016-10-29 118272]
        S3 cht4iscsi;cht4iscsi;C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-7-16 346976]
        S3 cht4vbd;Chelsio virtuele-busstuurprogramma;C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-7-16 2104160]
        S3 ClipSVC;Client License Service (ClipSVC);C:\WINDOWS\System32\svchost.exe -k wsappx [2016-7-16 44496]
        S3 DcpSvc;DataCollectionPublishingService;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        S3 DevQueryBroker;DevQuery Background Discovery Broker;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
        S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);C:\WINDOWS\System32\drivers\ssudbus.sys [2016-6-26 130688]
        S3 diagnosticshub.standardcollector.service;Microsoft(R) Diagnostics Hub Standard Collector-service;C:\WINDOWS\System32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2016-7-16 93184]
        S3 DmEnrollmentSvc;Registratieservice voor Apparaatbeheer;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        S3 dmwappushservice;dmwappushsvc;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        S3 embeddedmode;Ingesloten modus;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
        S3 EntAppSvc;Enterprise App Management Service;C:\WINDOWS\System32\svchost.exe -k appmodel [2016-7-16 44496]
        S3 FrameServer;Windows Camera Frame Server;C:\WINDOWS\System32\svchost.exe -k Camera [2016-7-16 44496]
        S3 GalaxyClientService;GalaxyClientService;C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [2015-5-20 284224]
        S3 GalaxyCommunication;GalaxyCommunication;C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.ex e [2015-5-20 6615616]
        S3 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2015-10-12 209952]
        S3 genericusbfn;Algemene USB-functieklasse;C:\WINDOWS\System32\drivers\genericusbfn.sys [2016-7-16 20480]
        S3 hidinterrupt;Algemeen stuurprogramma voor HID-knoppen waarvoor interrupts zijn geïmplementeerd;C:\WINDOWS\System32\drivers\hidinterrupt.sys [2016-7-16 50016]
        S3 HvHost;HV-hostservice;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
        S3 iagpio;Intel Serial IO GPIO Controller Driver;C:\WINDOWS\System32\drivers\iagpio.sys [2016-7-16 33280]
        S3 iai2c;Intel(R) Serial IO I2C-hostcontroller;C:\WINDOWS\System32\drivers\iai2c.sys [2016-7-16 81408]
        S3 iaLPSS2i_GPIO2;Intel(R) Serial IO GPIO Driver v2;C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-7-16 64512]
        S3 iaLPSS2i_I2C;Intel(R) Serial IO I2C-stuurprogramma v2;C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2016-7-16 176384]
        S3 iaLPSSi_GPIO;Stuurprogramma van Intel(R) Serial IO GPIO-controller;C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [2016-7-16 38128]
        S3 iaLPSSi_I2C;Stuurprogramma voor Intel(R) Serial IO I2C-controller;C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [2016-7-16 113152]
        S3 iaStorAV;Intel(R) SATA RAID-controller Windows;C:\WINDOWS\System32\drivers\iaStorAV.sys [2016-7-16 673120]
        S3 ibbus;Mellanox InfiniBand Bus/AL (filterstuurprogramma);C:\WINDOWS\System32\drivers\ibbus.sys [2016-7-16 526176]
        S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-12-26 169752]
        S3 icssvc;Windows Mobile Hotspot Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2016-7-16 44496]
        S3 IndirectKmd;Indirecte weergave kernelmodusstuurprogramma;C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-7-16 35840]
        S3 intaud_WaveExtensible;Intel WiDi Audio Device;C:\WINDOWS\System32\drivers\intelaud.sys [2015-7-29 50240]
        S3 LSI_SAS2i;LSI_SAS2i;C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2016-7-16 105824]
        S3 LSI_SAS3i;LSI_SAS3i;C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2016-7-16 101216]
        S3 McComponentHostService;McAfee Security Scan Component Host Service;C:\Program Files\McAfee Security Scan\3.11.427\McCHSvc.exe [2016-10-13 329480]
        S3 megasas2i;megasas2i;C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-12 64352]
        S3 MessagingService_6e50f;MessagingService_6e50f;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
        S3 mlx4_bus;Mellanox ConnectX Bus Enumerator;C:\WINDOWS\System32\drivers\mlx4_bus.sys [2016-7-16 842584]
        S3 ndfltr;NetworkDirect-service;C:\WINDOWS\System32\drivers\ndfltr.sys [2016-7-16 108896]
        S3 NetAdapterCx;Network Adapter Wdf Class Extension Library;C:\WINDOWS\System32\drivers\NetAdapterCx.sys [2016-7-16 90624]
        S3 NetSetupSvc;Network Setup Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        S3 NetworkSupport;NetworkSupport;C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [2013-12-26 639584]
        S3 NgcCtnrSvc;Microsoft Passport Container;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2016-7-16 44496]
        S3 NgcSvc;Microsoft Passport;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
        S3 Origin Client Service;Origin Client Service;C:\Program Files (x86)\Origin\OriginClientService.exe [2016-11-2 2142728]
        S3 PcaSp60;Rawether NDIS 6.X SPR Protocol Driver;C:\WINDOWS\System32\drivers\PcaSp60.sys [2016-1-5 38912]
        S3 percsas2i;percsas2i;C:\WINDOWS\System32\drivers\percsas2i.sys [2016-7-16 58720]
        S3 percsas3i;percsas3i;C:\WINDOWS\System32\drivers\percsas3i.sys [2016-7-16 61792]
        S3 PhoneSvc;Phone Service;C:\WINDOWS\System32\svchost.exe -k LocalService [2016-7-16 44496]
        S3 ReFSv1;ReFSv1;C:\WINDOWS\System32\drivers\refsv1.sys [2016-7-16 928608]
        S3 RetailDemo;Retaildemoservice;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        S3 ScDeviceEnum;Smart Card Device Enumeration Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
        S3 scmbus;Microsoft-stuurprogramma voor geheugenbus opslagklasse;C:\WINDOWS\System32\drivers\scmbus.sys [2016-7-16 88416]
        S3 scmdisk0101;Microsoft-stuurprogramma voor NVDIMM-N-schijven;C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-7-16 123904]
        S3 SensorDataService;Sensor Data Service;C:\WINDOWS\System32\SensorDataService.exe [2016-10-2 1312768]
        S3 SensorService;Sensor Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
        S3 SerCx2;Serial UART Support Library;C:\WINDOWS\System32\drivers\SerCx2.sys [2016-7-16 151904]
        S3 smphost;Microsoft Storage Spaces SMP;C:\WINDOWS\System32\svchost.exe -k smphost [2016-7-16 44496]
        S3 SmsRouter;Microsoft Windows SMS Router-service.;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
        S3 SOHCImp;VAIO Content Importer;C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [2013-9-12 124560]
        S3 SOHDs;Sony Device Searcher;C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2013-1-29 79000]
        S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);C:\WINDOWS\System32\drivers\ssudmdm.sys [2016-6-26 164992]
        S3 stornvme;Microsoft Standard NVM Express Driver;C:\WINDOWS\System32\drivers\stornvme.sys [2016-10-2 81760]
        S3 storufs;Microsoft Universal Flash Storage (UFS)-stuurprogramma;C:\WINDOWS\System32\drivers\storufs.sys [2016-7-16 32096]
        S3 TieringEngineService;Storage Tiers Management;C:\WINDOWS\System32\TieringEngineService.exe [2016-7-16 287744]
        S3 UcmCx0101;USB Connector Manager KMDF Class Extension;C:\WINDOWS\System32\drivers\UcmCx.sys [2016-7-16 95744]
        S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension;C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [2016-7-16 108544]
        S3 UcmUcsi;UCSI-client van USB-connectorbeheer;C:\WINDOWS\System32\drivers\UcmUcsi.sys [2016-7-16 50688]
        S3 UdeCx;USB Device Emulation Support Library;C:\WINDOWS\System32\drivers\Udecx.sys [2016-7-16 45568]
        S3 Ufx01000;USB Function Class Extension;C:\WINDOWS\System32\drivers\ufx01000.sys [2016-7-16 263008]
        S3 UfxChipidea;Chipidea USB-controller;C:\WINDOWS\System32\drivers\UfxChipidea.sys [2016-7-16 96608]
        S3 ufxsynopsys;Synopsys USB-controller;C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2016-7-16 137056]
        S3 UrsChipidea;Stuurprogramma voor Chipidea USB Role-Switch;C:\WINDOWS\System32\drivers\urschipidea.sys [2016-7-16 28512]
        S3 UrsCx01000;USB Role-Switch Support Library;C:\WINDOWS\System32\drivers\urscx01000.sys [2016-7-16 57696]
        S3 UrsSynopsys;Stuurprogramma voor Synopsys USB Role-Switch;C:\WINDOWS\System32\drivers\urssynopsys.sys [2016-7-16 27488]
        S3 UsoSvc;Update Orchestrator Service for Windows Update;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        S3 VAIO Power Management;VAIO Power Management;C:\Program Files\Sony\VAIO Power Management\SPMService.exe [2013-12-26 477792]
        S3 VCFw;VAIO Content Folder Watcher;C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [2013-1-6 972000]
        S3 vhf;Virtual HID Framework (VHF)-stuurprogramma;C:\WINDOWS\System32\drivers\vhf.sys [2016-7-16 32256]
        S3 vmgid;Microsoft Hyper-V-stuurprogramma voor de gastinfrastructuur;C:\WINDOWS\System32\drivers\vmgid.sys [2016-7-16 10240]
        S3 vmicguestinterface;Hyper-V Guest Service Interface;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
        S3 vmicvmsession;Hyper-V PowerShell Direct Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
        S3 WalletService;WalletService;C:\WINDOWS\System32\svchost.exe -k appmodel [2016-7-16 44496]
        S3 WDC_SAM;WD SCSI Pass Thru driver;C:\WINDOWS\System32\drivers\wdcsam64.sys [2009-2-13 14464]
        S3 wdiwifi;WDI Driver Framework;C:\WINDOWS\System32\drivers\WdiWiFi.sys [2016-10-2 719360]
        S3 WdNisDrv;Windows Defender Network Inspection System Driver;C:\WINDOWS\System32\drivers\WdNisDrv.sys [2016-7-16 123232]
        S3 WdNisSvc;Windows Defender Network Inspection Service;C:\Program Files\Windows Defender\NisSrv.exe [2016-7-16 347328]
        S3 WEPHOSTSVC;Windows Encryption Provider Host Service;C:\WINDOWS\System32\svchost.exe -k WepHostSvcGroup [2016-7-16 44496]
        S3 WinMad;WinMad-service;C:\WINDOWS\System32\drivers\winmad.sys [2016-7-16 32096]
        S3 WinVerbs;WinVerbs-service;C:\WINDOWS\System32\drivers\winverbs.sys [2016-7-16 64864]
        S3 wisvc;Windows Insider Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        S3 workfolderssvc;Work Folders;C:\WINDOWS\System32\svchost.exe -k LocalService [2016-7-16 44496]
        S3 WpnUserService_6e50f;Windows Push Notification-gebruikersservice_6e50f;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
        S3 XblAuthManager;Xbox Live-verificatiebeheer;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        S3 XblGameSave;Games opslaan op Xbox Live;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        S3 xboxgip;Xbox Game Input Protocol Driver;C:\WINDOWS\System32\drivers\xboxgip.sys [2016-10-29 258560]
        S3 XboxNetApiSvc;Netwerkservice van Xbox Live;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        S3 xinputhid;XINPUT HID Filter Driver;C:\WINDOWS\System32\drivers\xinputhid.sys [2016-10-2 43520]
        S4 shpamsvc;Shared PC Account Manager;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
        S4 tzautoupdate;Updater van automatische tijdzone;C:\WINDOWS\System32\svchost.exe -k LocalService [2016-7-16 44496]
        .
        =============== File Associations ===============
        .
        FileExt: .txt: txtfile=C:\WINDOWS\System32\NOTEPAD.EXE %1 [UserChoice]
        .
        =============== Created Last 30 ================
        .
        2016-11-25 19:57:18 192216 ----a-w- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys
        2016-11-25 19:56:26 65408 ----a-w- C:\WINDOWS\System32\drivers\mwac.sys
        2016-11-25 19:56:26 27008 ----a-w- C:\WINDOWS\System32\drivers\mbam.sys
        2016-11-25 19:56:26 140672 ----a-w- C:\WINDOWS\System32\drivers\mbamchameleon.sys
        2016-11-25 19:56:26 -------- d---a-w- C:\Program Files (x86)\Malwarebytes Anti-Malware
        2016-11-25 19:56:26 -------- d-----w- C:\ProgramData\Malwarebytes
        2016-11-24 19:03:48 -------- d-----w- C:\Program Files\Common Files\Intel
        2016-11-17 09:41:58 8156080 ----a-w- C:\WINDOWS\System32\Windows.Media.Protection.PlayReady.dll
        2016-11-17 09:40:59 4708864 ----a-w- C:\WINDOWS\System32\ExplorerFrame.dll
        2016-11-02 18:40:22 -------- d-----w- C:\Users\Will\.QtWebEngineProcess
        2016-11-02 18:40:21 -------- d-----w- C:\Users\Will\.Origin
        2016-10-29 17:51:59 749920 ----a-w- C:\WINDOWS\SysWow64\drvstore.dll
        2016-10-29 17:49:14 1643008 ----a-w- C:\WINDOWS\System32\Windows.Media.Speech.dll
        2016-10-29 17:48:59 90112 ----a-w- C:\WINDOWS\System32\updatepolicy.dll
        2016-10-29 17:47:58 1356352 ----a-w- C:\WINDOWS\System32\ClipUp.exe
        2016-10-29 17:47:48 557408 ----a-w- C:\WINDOWS\System32\drivers\spaceport.sys
        2016-10-29 17:47:48 258560 ----a-w- C:\WINDOWS\System32\drivers\xboxgip.sys
        2016-10-29 17:47:47 967168 ----a-w- C:\WINDOWS\System32\drivers\bthport.sys
        2016-10-29 17:47:47 335712 ----a-w- C:\WINDOWS\System32\drivers\pci.sys
        2016-10-29 17:47:41 118272 ----a-w- C:\WINDOWS\System32\drivers\capimg.sys
        .
        ==================== Find3M ====================
        .
        2016-11-18 16:30:13 110144 ----a-w- C:\WINDOWS\System32\WindowsAccessBridge-64.dll
        2016-11-02 12:01:41 315744 ----a-w- C:\WINDOWS\SysWow64\atmfd.dll
        2016-11-02 12:01:37 484584 ----a-w- C:\WINDOWS\SysWow64\AudioSes.dll
        2016-11-02 11:22:59 601712 ----a-w- C:\WINDOWS\SysWow64\oleaut32.dll
        2016-11-02 11:22:59 1570672 ----a-w- C:\WINDOWS\SysWow64\ntdll.dll
        2016-11-02 11:20:37 590960 ----a-w- C:\WINDOWS\System32\AudioSes.dll
        2016-11-02 11:20:36 378720 ----a-w- C:\WINDOWS\System32\atmfd.dll
        2016-11-02 11:15:35 1051112 ----a-w- C:\WINDOWS\System32\winresume.efi
        2016-11-02 11:15:33 894096 ----a-w- C:\WINDOWS\System32\winresume.exe
        2016-11-02 11:14:00 7816544 ----a-w- C:\WINDOWS\System32\ntoskrnl.exe
        2016-11-02 11:13:51 1354320 ----a-w- C:\WINDOWS\System32\winload.efi
        2016-11-02 11:13:51 1173496 ----a-w- C:\WINDOWS\System32\winload.exe
        2016-11-02 11:13:47 1883784 ----a-w- C:\WINDOWS\System32\ntdll.dll
        2016-11-02 11:13:43 773720 ----a-w- C:\WINDOWS\System32\oleaut32.dll
        2016-11-02 11:13:36 423776 ----a-w- C:\WINDOWS\System32\wifitask.exe
        2016-11-02 11:12:57 341344 ----a-w- C:\WINDOWS\SysWow64\msv1_0.dll
        2016-11-02 11:12:35 2255712 ----a-w- C:\WINDOWS\System32\drivers\ntfs.sys
        2016-11-02 11:12:07 376672 ----a-w- C:\WINDOWS\System32\drivers\clfs.sys
        2016-11-02 11:10:44 2323728 ----a-w- C:\WINDOWS\SysWow64\d3d10warp.dll
        2016-11-02 11:08:52 576408 ----a-w- C:\WINDOWS\SysWow64\wer.dll
        2016-11-02 11:08:43 186424 ----a-w- C:\WINDOWS\SysWow64\weretw.dll
        2016-11-02 11:08:01 111968 ----a-w- C:\WINDOWS\SysWow64\NetSetupApi.dll
        2016-11-02 11:08:00 602464 ----a-w- C:\WINDOWS\SysWow64\NetSetupEngine.dll
        2016-11-02 11:05:53 6657176 ----a-w- C:\WINDOWS\SysWow64\Windows.Media.Protection.PlayReady.dll
        2016-11-02 11:05:50 3892352 ----a-w- C:\WINDOWS\SysWow64\mfcore.dll
        2016-11-02 11:05:40 951904 ----a-w- C:\WINDOWS\SysWow64\mfsvr.dll
        2016-11-02 11:05:29 405856 ----a-w- C:\WINDOWS\System32\msv1_0.dll
        2016-11-02 11:05:13 959112 ----a-w- C:\WINDOWS\SysWow64\ole32.dll
        2016-11-02 11:04:46 596832 ----a-w- C:\WINDOWS\SysWow64\comctl32.dll
        2016-11-02 11:04:36 4312248 ----a-w- C:\WINDOWS\SysWow64\explorer.exe
        2016-11-02 11:04:08 2678056 ----a-w- C:\WINDOWS\System32\d3d10warp.dll
        2016-11-02 11:03:21 714592 ----a-w- C:\WINDOWS\System32\drivers\vhdmp.sys
        2016-11-02 11:02:55 682816 ----a-w- C:\WINDOWS\System32\wer.dll
        2016-11-02 11:02:53 238056 ----a-w- C:\WINDOWS\System32\weretw.dll
        2016-11-02 11:02:31 848736 ----a-w- C:\WINDOWS\System32\NetSetupEngine.dll
        2016-11-02 11:02:31 148832 ----a-w- C:\WINDOWS\System32\NetSetupApi.dll
        2016-11-02 11:01:37 1425000 ----a-w- C:\WINDOWS\SysWow64\d3d9.dll
        2016-11-02 11:01:31 276832 ----a-w- C:\WINDOWS\SysWow64\input.dll
        2016-11-02 11:01:30 1415744 ----a-w- C:\WINDOWS\SysWow64\gdi32full.dll
        2016-11-02 11:01:28 545936 ----a-w- C:\WINDOWS\SysWow64\fontdrvhost.exe
        2016-11-02 11:01:20 1263856 ----a-w- C:\WINDOWS\SysWow64\msctf.dll
        2016-11-02 11:01:00 92512 ----a-w- C:\WINDOWS\System32\rdpudd.dll
        2016-11-02 11:00:22 4130432 ----a-w- C:\WINDOWS\System32\mfcore.dll
        2016-11-02 11:00:17 534096 ----a-w- C:\WINDOWS\System32\AudioEng.dll
        2016-11-02 11:00:17 1061968 ----a-w- C:\WINDOWS\System32\mfsvr.dll
        2016-11-02 11:00:06 1274712 ----a-w- C:\WINDOWS\System32\ole32.dll
        2016-11-02 10:59:45 4673304 ----a-w- C:\WINDOWS\explorer.exe
        2016-11-02 10:56:52 1609920 ----a-w- C:\WINDOWS\System32\d3d9.dll
        2016-11-02 10:56:50 322912 ----a-w- C:\WINDOWS\System32\input.dll
        2016-11-02 10:56:42 1572768 ----a-w- C:\WINDOWS\System32\gdi32full.dll
        2016-11-02 10:56:39 628552 ----a-w- C:\WINDOWS\System32\fontdrvhost.exe
        2016-11-02 10:56:38 1418312 ----a-w- C:\WINDOWS\System32\msctf.dll
        2016-11-02 10:55:52 48992 ----a-w- C:\WINDOWS\System32\drivers\iorate.sys
        2016-11-02 10:50:35 34304 ----a-w- C:\WINDOWS\SysWow64\LaunchWinApp.exe
        2016-11-02 10:49:47 37376 ----a-w- C:\WINDOWS\SysWow64\atmlib.dll
        2016-11-02 10:49:42 147968 ----a-w- C:\WINDOWS\SysWow64\win32k.sys
        2016-11-02 10:49:20 32768 ----a-w- C:\WINDOWS\apppatch\AcWinRT.dll
        2016-11-02 10:48:56 32768 ----a-w- C:\WINDOWS\SysWow64\efsext.dll
        2016-11-02 10:48:24 88064 ----a-w- C:\WINDOWS\apppatch\AcXtrnal.dll
        2016-11-02 10:48:00 95232 ----a-w- C:\WINDOWS\SysWow64\TSpkg.dll
        2016-11-02 10:47:36 156672 ----a-w- C:\WINDOWS\SysWow64\BcastDVRHelper.dll
        2016-11-02 10:47:26 47104 ----a-w- C:\WINDOWS\SysWow64\Windows.Shell.Search.UriHandler.dll
        2016-11-02 10:47:04 285184 ----a-w- C:\WINDOWS\SysWow64\Windows.UI.BlockedShutdown.dll
        2016-11-02 10:46:47 65536 ----a-w- C:\WINDOWS\SysWow64\wininetlui.dll
        2016-11-02 10:46:26 140288 ----a-w- C:\WINDOWS\SysWow64\AppCapture.dll
        2016-11-02 10:45:49 253952 ----a-w- C:\WINDOWS\SysWow64\Windows.UI.BioFeedback.dll
        2016-11-02 10:45:37 331776 ----a-w- C:\WINDOWS\apppatch\AcLayers.dll
        2016-11-02 10:45:17 492032 ----a-w- C:\WINDOWS\SysWow64\bcastdvr.exe
        2016-11-02 10:45:09 182784 ----a-w- C:\WINDOWS\SysWow64\mfsensorgroup.dll
        2016-11-02 10:44:50 231936 ----a-w- C:\WINDOWS\SysWow64\Windows.ApplicationModel.LockScreen.dll
        2016-11-02 10:44:45 180224 ----a-w- C:\WINDOWS\SysWow64\InstallAgent.exe
        2016-11-02 10:44:34 89088 ----a-w- C:\WINDOWS\SysWow64\AuthExt.dll
        2016-11-02 10:43:53 557568 ----a-w- C:\WINDOWS\SysWow64\StoreAgent.dll
        2016-11-02 10:43:43 198144 ----a-w- C:\WINDOWS\SysWow64\FSClient.dll
        2016-11-02 10:43:29 731136 ----a-w- C:\WINDOWS\SysWow64\d3d8.dll
        2016-11-02 10:42:55 549376 ----a-w- C:\WINDOWS\SysWow64\ActionCenterCPL.dll
        2016-11-02 10:42:48 223232 ----a-w- C:\WINDOWS\SysWow64\InstallAgentUserBroker.exe
        2016-11-02 10:42:44 306176 ----a-w- C:\WINDOWS\SysWow64\ieproxy.dll
        2016-11-02 10:42:35 202752 ----a-w- C:\WINDOWS\SysWow64\Windows.Devices.HumanInterfaceDevice.dll
        2016-11-02 10:42:32 866816 ----a-w- C:\WINDOWS\SysWow64\Windows.UI.Cred.dll
        2016-11-02 10:42:22 506880 ----a-w- C:\WINDOWS\SysWow64\DevicePairing.dll
        2016-11-02 10:42:19 632832 ----a-w- C:\WINDOWS\SysWow64\sud.dll
        2016-11-02 10:41:26 635904 ----a-w- C:\WINDOWS\SysWow64\jscript9diag.dll
        2016-11-02 10:40:36 896512 ----a-w- C:\WINDOWS\SysWow64\fontext.dll
        2016-11-02 10:40:34 198656 ----a-w- C:\WINDOWS\SysWow64\indexeddbserver.dll
        2016-11-02 10:40:21 548352 ----a-w- C:\WINDOWS\SysWow64\ddraw.dll
        2016-11-02 10:39:53 236544 ----a-w- C:\WINDOWS\SysWow64\UIAnimation.dll
        2016-11-02 10:39:24 348672 ----a-w- C:\WINDOWS\SysWow64\zipfldr.dll
        2016-11-02 10:39:06 465920 ----a-w- C:\WINDOWS\SysWow64\LockAppBroker.dll
        2016-11-02 10:38:52 760832 ----a-w- C:\WINDOWS\SysWow64\appwiz.cpl
        2016-11-02 10:38:35 22563840 ----a-w- C:\WINDOWS\System32\edgehtml.dll
        2016-11-02 10:37:46 19415040 ----a-w- C:\WINDOWS\SysWow64\edgehtml.dll
        2016-11-02 10:36:34 7626752 ----a-w- C:\WINDOWS\SysWow64\twinui.dll
        2016-11-02 10:36:05 63488 ----a-w- C:\WINDOWS\SysWow64\ErrorDetailsUpdate.dll
        2016-11-02 10:35:13 336896 ----a-w- C:\WINDOWS\SysWow64\msinfo32.exe
        2016-11-02 10:34:44 327168 ----a-w- C:\WINDOWS\System32\microsoft-windows-system-events.dll
        2016-11-02 10:34:23 43008 ----a-w- C:\WINDOWS\System32\LaunchWinApp.exe
        2016-11-02 10:34:11 15360 ----a-w- C:\WINDOWS\apppatch\apppatch64\AcXtrnal.dll
        2016-11-02 10:33:56 206848 ----a-w- C:\WINDOWS\System32\win32k.sys
        2016-11-02 10:33:48 3307520 ----a-w- C:\WINDOWS\SysWow64\MFMediaEngine.dll
        .
        ============= FINISH: 22:29:19,69 ===============

        Comment


        • #5
          attach zal ik posten als het gevraagd wordt.
          Addware lukt niet de link werkt nog niet

          Comment


          • #6
            Download de 32 of 64 bit versie van HitmanPro naar het bureaublad.
            Klik hier voor een uitgebreide handleiding van HitmanPro.
            • Dubbelklik op "HitmanPro.exe" en klik op "volgende"
            • Vink de optie "Ik accepteer de voorwaarden van de gebruikersovereenkomst aan" en klik op "Volgende"
            • Klik in het setup scherm nu nogmaals op "Volgende", nu zal automatisch de scan starten, doe verder niets op de computer totdat de scan gereed is.
            • Als de scan klaar is klik je op "volgende"
            • Activeer nu de gratis licentie, hiermee kunt u 30 dagen gratis HitmanPro gebruiken en de gevonden infecties verwijderen.
            • Note: indien u reeds eerder gebruik hebt gemaakt van de 30 dagen trial-versie van HitmanPro is het niet meer mogelijk om gratis de gevonden infecties te verwijderen.
            • Als het verwijderen gereed is klik je onderin het scherm op "Save log" of "Logbestand opslaan" en sla deze op bijvoorbeeld het bureaublad op.
              Post dit logje als bijlagein het volgende bericht.
            • Klik nu op de knop "Herstarten".

            Windows 10 opstarten in Veilige Modus

            Comment


            • #7
              bedankt alvast

              Halllo

              Als het goed is heb ik het bestand toegevoegd
              Bijgevoegde Bestanden

              Comment


              • #8
                Hallo Juisterr

                ik heb de boel opnieuw opgestart maar zie de map nog steeds op mijn schijf, heb er ook geen toegang op

                Comment


                • #9
                  Download de Farbar Recovery Scan Tool 32 of 64 bit van één van de onderstaande links
                  Hier staat een beschrijving hoe u kunt kijken of u een 32 of 64 bit versie van Windows heeft.

                  Farbar Recovery Scan Tool uitvoeren
                  • Dubbelklik op FRST.exe om de tool te starten.
                  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
                  • Als het programma is geopend klik Yes (Ja) bij de disclaimer.
                  • Druk vervolgens op de Scan knop, er zal nu eerst een back-up van het register worden gemaakt.
                  • Wanneer de scan gereed is worden er twee logbestanden aangemaakt met de naam (FRST.txt) & (Addition.txt) op dezelfde plaats vanwaar de 'tool' is gestart.
                  • Voeg beide logbestanden als bijlage toe aan het volgende bericht.

                  Windows 10 opstarten in Veilige Modus

                  Comment


                  • #10
                    frst64

                    Hallo Juisterr

                    Hier de gevraagde bijlages



                    Addition.txtFRST.txt

                    Comment


                    • #11
                      Start de Farbar Recovery Scan Tool nogmaals.
                      • Download fixlist.txt uit de bijlage naar het bureaublad, waar ook FRST.exe aanwezig is.
                      • Dubbelklik op FRST.exe om de tool te starten.
                      • Als het programma is geopend klik Yes (Ja) bij de disclaimer.
                      • Druk op de Fix knop
                      • Er zal u een logbestand aangemaakt worden (fixlog.txt) op dezelfde plaats vanwaar de 'tool' is gestart.
                      • Voeg dit logbestand als bijlage toe aan het volgende bericht..
                      Bijgevoegde Bestanden

                      Windows 10 opstarten in Veilige Modus

                      Comment


                      • #12
                        Hoi Juisterr

                        Net de fix gedraaid, hier is het logbestand

                        vgr WillFixlog.txt

                        Comment


                        • #13
                          Oorspronkelijk geplaatst door AK100 Bekijk Berichten
                          Hoi Juisterr

                          Net de fix gedraaid, hier is het logbestand

                          vgr Will[ATTACH]14978[/ATTACH]
                          En alles goed nu ?

                          Windows 10 opstarten in Veilige Modus

                          Comment


                          • #14
                            Ik kan map truekey niet meer vinden heb wel nog 3 mappen programfiles
                            Programfiles, met alleen map; intelNFC heb een printscreen erbij gedaan
                            Programfiles met inderdaad alle programma's
                            Programfiles x86 met eveneens alle programma's. toegevoegd wat printscreens.
                            lijkt nu goed te zijn

                            Comment


                            • #15
                              printscreens

                              mappen.docx

                              volgens mij ben ik ergens in het verleden begonnen met 2 mappen programfiles

                              Comment

                              Sorry, you are not authorized to view this page
                              Working...
                              X