Duckje19
Junior lid
- Lid geworden
- 4 mei 2019
- Berichten
- 66
- Waarderingsscore
- 3
Bekijk de onderstaande video om te zien hoe je onze site als een web app op je startscherm installeert.
Opmerking: Deze functie is mogelijk niet beschikbaar in sommige browsers.
Die staat ook al een tijdje actief in mijn browser. Net zoals Ghostery en Privacy Badger. Ik zie wel dat mijn browser wordt beheerd door een organisatie?installeer dan de chrome adblock adonn
Geen probleem, alvast bedankt voor het mee nadenkenik had niet mogen reageren zag pas nadien dat dit in het HijackThis gedeelte vermeldstond en dat is enkel bedoeld voor hulp te krijgen van Abraham54
Dankje, de pop ups komen steeds terug. Het over over dating, reclame en alle andere rotzooi dat je kan bedenken...Ik heb Abraham even een bericht gestuurd met de vraag of hij even naar dit topic kan kijken.
start
CreateRestorePoint:
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [262024 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
GroupPolicy: Restriction - Chrome <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {A0FB928E-81F0-40A2-8D3C-2C02DD8F2DC8} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe [5046784 2019-06-09] () [File not signed]
Task: {01DC4DD0-7564-459F-BC72-8130C00C890D} - no filepath
Task: {16B34E26-DC84-41C5-ABFF-8E632A115B34} - no filepath
Task: {1D021038-CB4A-460C-90A8-4CFC0C8A8C96} - no filepath
Task: {3BFCD9C6-41E4-42C1-A112-A7411A3DB345} - no filepath
Task: {4865A8A3-93E3-4435-AE16-F177B33C1C68} - no filepath
Task: {4A368F72-C4AD-457E-A943-5D71D42A2E71} - no filepath
Task: {63B24B54-DA72-40DC-8545-22D76FE2C154} - no filepath
Task: {6F170473-500E-4289-9305-020B55DB3DB0} - no filepath
Task: {7CAE5C89-8BC9-4A9F-BE74-3D7F55E84181} - no filepath
Task: {8CB7E396-6440-455E-B038-07B4A3DEBDA4} - no filepath
Task: {9229A951-93BD-4C02-AD2A-224498C018C8} - no filepath
Task: {9D10BF22-3322-444F-8A19-A59400E58650} - no filepath
Task: {9ECD2768-4076-4891-992A-10A9027F6A30} - no filepath
Task: {AC10A253-F9B2-4239-9CA2-33926B32AC8E} - no filepath
Task: {AF0B14DC-3C17-4036-816E-EAD2C6A2EFE1} - no filepath
Task: {AF993F10-D1CF-4D07-84D6-B3FEECF97D34} - no filepath
Task: {D74F56AA-13AB-474A-A2FB-43EE06117BD9} - no filepath
Task: {D9666BCD-DE07-4D40-A31E-FCF2767BBE57} - no filepath
Task: {DA858DEF-1E13-4A88-BE5C-476DD9E4C924} - no filepath
Task: {E468DD11-C9FB-40C1-BF96-60520E089E42} - no filepath
Task: {EF1CB58E-1AF2-4CFE-8DD7-478CE66A252C} - no filepath
Task: {F7248CAC-C4B0-43F5-8B8F-62D259CA2CBA} - no filepath
Task: {FAA9B31A-6C9E-4816-9738-5678F90BFF5A} - no filepath
Task: {FF0D73B2-BCEE-4787-812D-9388F40ED64D} - no filepath
Task: {FF45642B-D07B-4F3D-BCEE-B82217715499} - no filepath
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
2019-06-09 19:31 - 2019-06-13 19:21 - 000003808 _____ C:\WINDOWS\System32\Tasks\AutoKMS
2019-06-09 19:31 - 2019-06-10 17:44 - 000000000 ____D C:\WINDOWS\AutoKMS
2019-06-13 19:13 - 2019-06-13 19:13 - 000113664 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\_ctypes.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000173568 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\_elementtree.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 001792512 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\_hashlib.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000032256 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\_multiprocessing.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000046080 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\_psutil_windows.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000047616 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\_socket.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 002224640 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\_ssl.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000026112 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\_yappi.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000080896 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\bz2.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 005752320 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\cello.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000014848 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\common.time34.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000007680 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\hashobjs_ext.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000301568 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\PIL._imaging.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000169472 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\pyexpat.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 001084416 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\pysqlite2._sqlite.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000548864 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\pythoncom27.dll
2019-06-13 19:13 - 2019-06-13 19:13 - 000137728 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\pywintypes27.dll
2019-06-13 19:13 - 2019-06-13 19:13 - 000010752 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\select.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000020992 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\thumbnails_ext.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000689664 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\unicodedata.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000118784 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\usb_ext.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000128512 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\win32api.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000438784 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\win32com.shell.shell.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000011776 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\win32crypt.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000023040 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\win32event.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000149504 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\win32file.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000223232 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\win32gui.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000048128 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\win32inet.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000029696 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\win32pdh.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000027648 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\win32pipe.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000044032 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\win32process.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000020480 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\win32profile.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000136192 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\win32security.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000026624 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\win32ts.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000034304 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\windows.conditional.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000038400 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\windows.connectivity.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000073216 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\windows.device_monitor.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000110080 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\windows.volumes.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000020480 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\windows.winwrap.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 001325056 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\wx._controls_.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 001489408 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\wx._core_.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 001007104 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\wx._gdi_.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000103424 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\wx._html2.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 000916992 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\wx._misc_.pyd
2019-06-13 19:13 - 2019-06-13 19:13 - 001039872 _____ () [File not signed] C:\Users\Davy\AppData\Local\Temp\_MEI118482\wx._windows_.pyd
AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [125]
AlternateDataStreams: C:\Users\Davy\Application Data:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\Davy\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]
C:\ProgramData\TEMP:5C321E34
C:\Users\Davy\Application Data:00e481b5e22dbe1f649fcddd505d3eb7
C:\Users\Davy\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7
FirewallRules: [{841D8D0E-DE0F-476B-A3C1-ADB485FF5556}] => (Allow) C:\Users\Davy\AppData\Local\Temp\Rar$EXb10324.42926\microsoft-toolkit-2.6.5\Microsoft Toolkit.exe No File
FirewallRules: [{DB322E22-7716-4820-9FCA-D3BACB8A4594}] => (Allow) C:\Users\Davy\AppData\Local\Temp\Rar$EXb10324.42926\microsoft-toolkit-2.6.5\Microsoft Toolkit.exe No File
EmptyTemp:
CloseProcesses:
cmd: ipconfig /flushdns
cmd: netsh winsock reset
end
start
CreateRestorePoint:
C:\Program Files\EnigmaSoft
C:\Users\Public\Desktop\SpyHunter5.lnk
C:\ProgramData\EnigmaSoft Limited
C:\WINDOWS\System32\drivers\EnigmaFileMonDriver.sys
C:\WINDOWS\system32\Drivers\EnigmaFileMonDriver.sys
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EnigmaSoft
C:\WINDOWS\System32\Tasks\AutoKMS
C:\WINDOWS\AutoKMS
C:\Users\Davy\Desktop\microsoft-toolkit-2.6.5.zip
C:\ProgramData\Microsoft Toolkit
EmptyTemp:
CloseProcesses:
cmd: ipconfig /flushdns
cmd: netsh winsock reset
end
We gebruiken essentiële cookies om deze site te laten werken, en optionele cookies om de ervaring te verbeteren.