• Hulpvragenden in dit forumonderdeel worden enkel geholpen door daartoe bevoegde teamleden.
    Dit is belangrijk, zodat de hulpvragende goed geholpen kan worden zonder (goedbedoelde) aanvullende berichten van andere leden.
    Reageren op andermans discussie is daarom uitgeschakeld.
  • De afgelopen dagen zijn er meerdere fora waarop bestaande accounts worden overgenomen door spammers. De gebruikersnamen en wachtwoorden zijn via een hack of een lek via andere sites buitgemaakt. Via have i been pwned? kan je controleren of jouw gegeven ook zijn buitgemaakt. Wijzig bij twijfel jouw wachtwoord of schakel de twee-staps-verificatie in.

In Behandeling hallo.wie kan mij helpen,pc erg traag en loopt vast

Status
Niet open voor verdere reacties.

wimdeman

wim van hoog naar laag
Lid geworden
24 mei 2007
Berichten
870
Waarderingsscore
0
hallo
pc is erg traag en loopt vast/bevriest als ik FRST wil laten scannen
mvg wim
 
Alles stofvrij binnenin?
Zet de weblink van Speccy hier neer, zie m'n sig.
 
Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 20.06.2018
Gestart door petra (Beheerder) op PETRA-PC (22-06-2018 21:20:03)
Gestart vanaf C:\Users\petra\Desktop
Geladen Profielen: petra & (Beschikbare Profielen: petra)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Taal: Nederlands (Nederland)
Internet Explorer Versie 11 (Standaardbrowser: Chrome)
Boot Modus: Normal
Handleiding voor Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processen (gefilterd) =================

(Als een item is opgenomen in de fixlist, zal het proces worden gesloten. Het bestand zal niet worden verplaatst.)

(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\stacsv64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.141.333\AvastBrowserCrashHandler.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.141.333\AvastBrowserCrashHandler64.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
() C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Google) C:\Users\petra\AppData\Local\Google\Chrome\User Data\SwReporter\30.160.202\software_reporter_tool.exe
(Google) C:\Users\petra\AppData\Local\Google\Chrome\User Data\SwReporter\30.160.202\software_reporter_tool.exe
(Google) C:\Users\petra\AppData\Local\Google\Chrome\User Data\SwReporter\30.160.202\software_reporter_tool.exe
(Microsoft Corporation) C:\Windows\System32\CompatTel\wicainventory.exe

==================== Register (gefilterd) ===========================

(Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242904 2018-06-19] (AVAST Software)
HKLM-x32\...\Run: [WirelessAssistant] => C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard)
HKLM-x32\...\Run: [QlbCtrl.exe] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [320056 2009-06-24] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [Magic Desktop for HP notification] => C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe [1444880 2015-11-24] (Easybits)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restrictie <==== AANDACHT
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [17074688 2018-06-19] (Piriform Ltd)
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\...\Run: [AvastBrowserAutoLaunch_8B1768473B86749CB8ABB5CBD1C7484B] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1808264 2018-06-12] (AVAST Software)
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\...\Policies\system: [DisableChangePassword] 1
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\...\Policies\Explorer: [NoInternetOpenWith] 1
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\ezScrSvr.scr
HKU\S-1-5-21-3037185331-2861149877-865260356-1003\...\Run: [HPADVISOR] => C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe autorun=AUTORUN
HKU\S-1-5-21-3037185331-2861149877-865260356-1003\...\Run: [Exetender] => "C:\Program Files (x86)\FantastiGames\GPlayer.exe" /schedule 300000
HKU\S-1-5-21-3037185331-2861149877-865260356-1003\...\Policies\system: [WallpaperStyle] 2
HKU\S-1-5-21-3037185331-2861149877-865260356-1003\...\Policies\system: [DisableLockWorkstation] 1
HKU\S-1-5-21-3037185331-2861149877-865260356-1003\...\Policies\system: [DisableChangePassword] 1
IFEO\cvh.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\EMET_GUI.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\fsui.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\hpcustpartic.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\moviemaker.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\pptview.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\sftdde.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\windowslivewriter.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlmail.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlsync.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlxphotogallery.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52272 2009-09-02] (EasyBits Software Corp.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast Cleanup Premium.lnk [2018-01-22]
ShortcutTarget: Avast Cleanup Premium.lnk -> C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe (AVAST Software)
Startup: C:\Users\petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2017-11-22]
ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\petra\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook)
Startup: C:\Users\petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Inktwaarschuwingen controleren - .lnk [2018-02-24]
ShortcutTarget: Inktwaarschuwingen controleren - .lnk -> C:\Program Files\HP\HP Photosmart 5520 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
BootExecute: autocheck autochk * PCloudBroom64.exe \systemroot\system32\BroomData.bit

==================== Internet (gefilterd) ====================

(Als een item is opgenomen in de fixlist en een registeritem is, wordt het verwijderd of hersteld naar de standaard.)

Tcpip\Parameters: [DhcpNameServer] 89.101.251.228 89.101.251.229
Tcpip\..\Interfaces\{0E4F863B-4878-4515-87D1-9B02BEA5C6AF}: [DhcpNameServer] 89.101.251.228 89.101.251.229
Tcpip\..\Interfaces\{24C558B0-D525-41D2-9A19-2B15CD0F207C}: [DhcpNameServer] 212.54.44.54 212.54.40.25
Tcpip\..\Interfaces\{33B1ED06-A44C-4924-AAB2-84F627EEA03B}: [DhcpNameServer] 89.101.251.228 89.101.251.229
Tcpip\..\Interfaces\{FC0F5693-B54F-4B2B-B7CC-25CF955C22FE}: [DhcpNameServer] 192.168.2.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=56626&homepage=hxxp://www.msn.com/?pc=AV01
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3037185331-2861149877-865260356-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=56626&homepage=hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_NL&c=94&bd=Presario&pf=cnnb
HKU\S-1-5-21-3037185331-2861149877-865260356-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_NL&c=94&bd=Presario&pf=cnnb
HKU\S-1-5-21-3037185331-2861149877-865260356-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
URLSearchHook: HKU\S-1-5-21-3037185331-2861149877-865260356-1003 - (Geen Naam) - {22dfbf5b-a7cd-4b25-9471-3dc68c71855f} - Geen bestand
SearchScopes: HKLM -> {2B674302-A1C7-47B1-B3E4-7757FF86CCDF} URL = hxxp://nl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008
SearchScopes: HKLM -> {3935291F-8D64-42E0-A3BD-33D49A80D65C} URL = hxxp://nl.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913935
SearchScopes: HKLM-x32 -> {2B674302-A1C7-47B1-B3E4-7757FF86CCDF} URL = hxxp://nl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008
SearchScopes: HKLM-x32 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3037185331-2861149877-865260356-1001 -> {0b4d26f6-61a8-4463-99dd-5f2fe0400fa6} URL = hxxps://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3037185331-2861149877-865260356-1001 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\S-1-5-21-3037185331-2861149877-865260356-1003 -> DefaultScope {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = hxxp://lavasoft.blekko.com/ws/?source=f439e2c0&tbp=rbox&toolbarid=adawaretb&u=1911D225DDFAB5573991BD5131A94697&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3037185331-2861149877-865260356-1003 -> {052B4F8B-5610-4BD0-A751-0B69FBD28D50} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYNL&apn_uid=50769E3B-B03B-44BF-A8B1-1FC2FBD20FAD&apn_sauid=636B1D87-6214-44A6-BDC0-C438BAB2CBC6
SearchScopes: HKU\S-1-5-21-3037185331-2861149877-865260356-1003 -> {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = hxxp://lavasoft.blekko.com/ws/?source=f439e2c0&tbp=rbox&toolbarid=adawaretb&u=1911D225DDFAB5573991BD5131A94697&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3037185331-2861149877-865260356-1003 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD22} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=779&systemid=2&apn_dtid=IME002&apn_ptnrs=AG2&o=APN10641&apn_uid=5309025731624960&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3037185331-2861149877-865260356-1003 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=161&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=2891002432644412&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3037185331-2861149877-865260356-1003 -> {A092B29A-415D-456F-B2E6-6A11F9F632E7} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3018509
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2018-06-19] (AVAST Software)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08] (Adobe Systems Incorporated)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2018-06-19] (AVAST Software)
Toolbar: HKU\S-1-5-21-3037185331-2861149877-865260356-1003 -> Geen Naam - {22DFBF5B-A7CD-4B25-9471-3DC68C71855F} - Geen bestand
DPF: HKLM-x32 {0742B9EF-8C83-41CA-BFBA-830A59E23533} hxxps://oas.support.microsoft.com/ActiveX/MSDcode.cab
DPF: HKLM-x32 {149E45D8-163E-4189-86FC-45022AB2B6C9} file:///C:/Program%20Files%20(x86)/Secrets%20of%20Olympus/Images/stg_drm.ocx
DPF: HKLM-x32 {6A060448-60F9-11D5-A6CD-0002B31F7455}
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: HKLM-x32 {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} hxxp://game.zylom.com/activex/zylomgamesplayer.cab
DPF: HKLM-x32 {C345E174-3E87-4F41-A01C-B066A90A49B4} hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocx
DPF: HKLM-x32 {CC450D71-CC90-424C-8638-1F2DBAC87A54} file:///C:/Program%20Files%20(x86)/Farmscapes/Images/armhelper.ocx
DPF: HKLM-x32 {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} hxxp://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_intel_4.5.3.0.cab
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: livecall - Geen CLSID Waarde
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - Geen bestand

FireFox:
========
FF ProfilePath: C:\Users\petra\AppData\Roaming\TomTom\HOME\Profiles\atrvdw12.default [2013-01-21]
FF Extension: (Emulator) - C:\Users\petra\AppData\Roaming\TomTom\HOME\Profiles\atrvdw12.default\Extensions\Navcore.7.903.9183@tomtom.com [2011-08-06] [Verouderd] [ niet getekend]
FF Extension: (Map status indicator) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [2013-01-21] [Verouderd] [ niet getekend]
FF ProfilePath: C:\Users\petra\AppData\Roaming\Mozilla\Firefox\Profiles\b104e7ey.default [2017-11-01]
FF Homepage: Mozilla\Firefox\Profiles\b104e7ey.default -> about:home
FF Extension: (FTdownloader 2) - C:\Users\petra\AppData\Roaming\Mozilla\Firefox\Profiles\b104e7ey.default\Extensions\ftdownloader2@ftdownloader.com.xpi [2013-02-11] [Verouderd] [ niet getekend]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_30_0_0_113.dll [2018-06-19] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [Geen bestand]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_30_0_0_113.dll [2018-06-19] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll [Geen bestand]
FF Plugin-x32: @exent.com/npExentCtl,version=7.0.0.0 -> C:\Program Files (x86)\FantastiGames\npExentCtl.dll [Geen bestand]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Geen bestand]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation)
FF Plugin-x32: @oberon-media.com/ONCAdapter -> C:\Program Files (x86)\Common Files\Oberon Media\NCAdapter\1.0.0.8\npapicomadapter.dll [Geen bestand]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-06-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-06-19] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\6\NP_wtapp.dll [Geen bestand]
FF Plugin-x32: @zylom.com/ZylomGamesPlayer -> C:\ProgramData\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll [2009-10-23] (Zylom)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2013-05-08] (Adobe Systems Inc.)
FF Plugin-x32: www.exent.com/GameTreatWidget -> C:\Program Files (x86)\FantastiGames\NPGameTreatPlugin.dll [Geen bestand]

Chrome:
=======
CHR DefaultProfile: Default
CHR NewTab: Default -> Not-active:"chrome-extension://cegaablngohnpapmfhdecgdbngjmjgkk/stubby.html", Not-active:"chrome-extension://kjdgebhgfdlbmnidjnmlkjhhpddkjpgm/stubby.html"
CHR Profile: C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default [2018-06-22]
CHR Extension: (YouTube) - C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-26]
CHR Extension: (ProductivityBoss) - C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk [2018-06-21]
CHR Extension: (Google Search) - C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]
CHR Extension: (FileShareFanatic) - C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm [2017-07-23]
CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-06-21]
CHR Extension: (Gmail) - C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29]
CHR Extension: (Chrome Media Router) - C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-06-21]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <niet gevonden>
 
hallo
pc is erg traag en loopt vast/bevriest als ik FRST wil laten scannen
mvg wim

Heb je al eens gescand met Malwarebytes?
Ik zie in de log Eset online scanner staan, wanneer heb jij die voor het laatst gebruikt?
 
Gaat lekker weer in dit topic.
https://www.nationaalcomputerforum.nl/threads/wie-post-er-in-dit-forum.133493/

Download
51a46ae42d560-malwarebytes_anti_malware.png
MalwareBytes Anti-Malware.

  • Windows 2000 en Windows XP: dubbelklik op mbam-setup.exe.
  • Windows Vista, Windows 7, Windows 8: en Windows 10: via rechtsklik op mbam-setup.exe en kies voor "Als Administrator uitvoeren".
  • Klik in het menu van Malwarebytes ANTI-MALWARE op Instellingen" en daar op "Detectie en Bescherming" en zet vervolgens een vinkje bij "Scan naar rootkits".
  • Klik vervolgens op de knop Scan nu om een bedreigingsscan uit te voeren.
  • Er zal nu gecontroleerd worden op beschikbare updates, klik hier op "Nu bijwerken als er beschikbare updates zijn.
  • De scan wordt nu automatisch gestart,wanneer de scan gereed is en er bedreigingen zijn gedetecteerd krijgt u hier een overzicht van.

  • Wanneer er geen bedreigingen zijn gedetecteerd klikt u na de scan op Bekijk gedetailleerd logboek.
  • Klik vervolgens op de knop Exporteer en kies de optie "Tekstbestand (*.txt)".
  • Geef vervolgens een bestandsnaam op voor het opslaan van het logbestand, bijvoorbeeld MBAM Scanlog.
  • Kies bijvoorbeeld het bureaublad als opslaglocatie en klik vervolgens op de knop Opslaan.

  • Wanneer er wel bedreigingen zijn gedetecteerd klikt u na de scan op Acties toepassen.
  • Bij de melding om de computer opnieuw op te starten klikt u op Ja / Yes.
  • Open na de herstart MalwareBytes Anti-Malware en klik bovenaan op Historie en selecteer Programmalogboeken.
  • Klik op de nieuwste Scan Log.
  • Klik op "Exporteer" en kies de optie "Tekstbestand (*.txt)".
    5557b93ba94ab-Malwarebytes_Exporteer_ScanLog.png
  • Geef vervolgens een bestandsnaam op voor het opslaan van het logbestand, bijvoorbeeld MBAM Scanlog.
  • Kies bijvoorbeeld het bureaublad als opslaglocatie en klik vervolgens op de knop Opslaan.
    532aab157609a-MBAM-Scan.png

MBAM-Log posten:
  • Kopieer nu de inhoud van het zojuist opgeslagen log en plak dit in uw nieuwe antwoord erbij.


Indien jij MBAM meteen als gratis versie wil gebruiken in plaatst van de veertien dagen durende demo met al zijn toeters en bellen te gebruiken, kijk dan hier
 
hallo,alvast bedankt voor alle moeite.
hier mijn logje
Malwarebytes
www.malwarebytes.com

-Logboekdetails-
Scandatum: 23-06-18
Scantijd: 22:16
Logbestand: 4a334b04-7722-11e8-8188-000000000000.json
Beheerder: Ja

-Software-informatie-
Versie: 3.5.1.2522
Versie componenten: 1.0.374
Update pakketversie: 1.0.5601
Licentie: Proef

-Systeeminformatie-
Besturingssysteem: Windows 7 Service Pack 1
Processor: x64
Bestandssysteem: NTFS
Gebruiker: petra-PC\petra

-Scansamenvatting-
Scantype: Bedreigingsscan
Scan geactiveerd door: Handmatig
Resultaat: Voltooid
Objecten gescand: 278167
Dreigingen herkend: 426
Dreigingen in quarantaine: 426
Verstreken tijd: 9 min, 55 sec

-Scanopties-
Geheugen: Ingeschakeld
Opstarten: Ingeschakeld
Bestandssysteem: Ingeschakeld
Archieven: Ingeschakeld
Rootkits: Uitgeschakeld
Heuristiek: Ingeschakeld
POP: Detectie
POA: Detectie

-Scandetails-
Proces: 0
(Geen kwaadaardige items gedetecteerd)

Module: 0
(Geen kwaadaardige items gedetecteerd)

Registersleutel: 10
PUP.Optional.APNToolBar.Gen, HKU\S-1-5-18\SOFTWARE\AskPartnerNetwork, In quarantaine, [709], [186876],1.0.5601
PUP.Optional.SuperOptimizer, HKU\S-1-5-18\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, In quarantaine, [1466], [243667],1.0.5601
PUP.Optional.SearchQu, HKU\S-1-5-21-3037185331-2861149877-865260356-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD22}, In quarantaine, [1488], [242757],1.0.5601
PUP.Optional.SearchQu, HKU\S-1-5-21-3037185331-2861149877-865260356-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}, In quarantaine, [1488], [242757],1.0.5601
PUP.Optional.Conduit, HKU\S-1-5-21-3037185331-2861149877-865260356-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A092B29A-415D-456F-B2E6-6A11F9F632E7}, In quarantaine, [220], [236866],1.0.5601
PUP.Optional.ASK, HKU\S-1-5-21-3037185331-2861149877-865260356-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{052B4F8B-5610-4BD0-A751-0B69FBD28D50}, In quarantaine, [2], [258187],1.0.5601
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{45241884-FF98-4158-A6BE-F7A66B9A2110}, In quarantaine, [3], [253595],1.0.5601
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6e47d688-85ec-465a-9946-ec58220f14fc}, In quarantaine, [3], [253595],1.0.5601
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C38B6889-0B1B-409D-A04B-DFFFAEC7C06B}, In quarantaine, [3], [253595],1.0.5601
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E56D7270-83EB-4A1A-BF5F-B4413B1B74EB}, In quarantaine, [3], [253595],1.0.5601

Registerwaarde: 13
PUP.Optional.SearchProtect.AppFlsh, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|APPINIT_DLLS, In quarantaine, [1401], [-1],0.0.0
PUP.Optional.SearchQu, HKU\S-1-5-21-3037185331-2861149877-865260356-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD22}|SUGGESTIONSURL_JSON, In quarantaine, [1488], [242757],1.0.5601
PUP.Optional.SearchQu, HKU\S-1-5-21-3037185331-2861149877-865260356-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}|SUGGESTIONSURL_JSON, In quarantaine, [1488], [242757],1.0.5601
PUP.Optional.Conduit, HKU\S-1-5-21-3037185331-2861149877-865260356-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A092B29A-415D-456F-B2E6-6A11F9F632E7}|URL, In quarantaine, [220], [236866],1.0.5601
PUP.Optional.Conduit, HKU\S-1-5-21-3037185331-2861149877-865260356-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A092B29A-415D-456F-B2E6-6A11F9F632E7}|FAVICONURL, In quarantaine, [220], [236866],1.0.5601
PUP.Optional.ASK, HKU\S-1-5-21-3037185331-2861149877-865260356-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{052B4F8B-5610-4BD0-A751-0B69FBD28D50}|URL, In quarantaine, [2], [258187],1.0.5601
PUP.Optional.SearchResults, HKU\S-1-5-21-3037185331-2861149877-865260356-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD22}|URL, In quarantaine, [159], [184971],1.0.5601
PUP.Optional.SearchResults, HKU\S-1-5-21-3037185331-2861149877-865260356-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}|URL, In quarantaine, [159], [184971],1.0.5601
PUP.Optional.Binkiland, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY|APPPATH, In quarantaine, [254], [235824],1.0.5601
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{45241884-FF98-4158-A6BE-F7A66B9A2110}|APPPATH, In quarantaine, [3], [253595],1.0.5601
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6e47d688-85ec-465a-9946-ec58220f14fc}|APPPATH, In quarantaine, [3], [253595],1.0.5601
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C38B6889-0B1B-409D-A04B-DFFFAEC7C06B}|APPPATH, In quarantaine, [3], [253595],1.0.5601
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E56D7270-83EB-4A1A-BF5F-B4413B1B74EB}|APPPATH, In quarantaine, [3], [253595],1.0.5601

Registerdata: 0
(Geen kwaadaardige items gedetecteerd)

Gegevensstroom: 0
(Geen kwaadaardige items gedetecteerd)

Map: 97
PUP.Optional.SearchProtect.AppFlsh, C:\Users\petra\AppData\Local\SearchProtect\Logs, In quarantaine, [1401], [181457],1.0.5601
PUP.Optional.SearchProtect.AppFlsh, C:\USERS\PETRA\APPDATA\LOCAL\SEARCHPROTECT, In quarantaine, [1401], [181457],1.0.5601
PUP.Optional.MindSpark.Generic, C:\USERS\PETRA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Local Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\USERS\PETRA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\abstractbutton\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedscript\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\thirdparty\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\uninstall\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedhtml\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\weather\css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\topapps\css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\weather\js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\weather\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\topapps\js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\generic\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\radio\css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\foreground, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedscript\html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\alert\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\flare\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\radio\js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\moviereviews\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\topapps, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\link\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\weather, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\abstractbutton, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedhtml\html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedscript\js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\common, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\rss\js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\rss\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\radio, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\test, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedhtml\js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedscript, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\flare\icons, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\images, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\rss, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\radio\radioWrapper, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\search\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\thirdparty, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\moviereviews\html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedhtml, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\radio\foreground, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\uninstall, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\radio\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\moviereviews\css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\moviereviews\js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\generic, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\weather, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\api\background, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\supertab\html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\alert, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\flare, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\moviereviews, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\supertab\css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\search\html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\link, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\supertab\js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\rss, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\api\window, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\radio\css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\supertab, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\search, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\radio, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\adapter, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\api, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\native\libs, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\_metadata, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\native, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\icons, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\USERS\PETRA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\KJDGEBHGFDLBMNIDJNMLKJHHPDDKJPGM, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\USERS\PETRA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Local Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\USERS\PETRA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\_metadata, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\config, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\icons, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\USERS\PETRA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\CEGAABLNGOHNPAPMFHDECGDBNGJMJGKK, In quarantaine, [1682], [467555],1.0.5601

Bestand: 306
PUP.Optional.Binkiland, C:\USERS\PETRA\APPDATA\LOCALLOW\MICROSOFT\INTERNET EXPLORER\SERVICES\FavIcon.icoWSE_Binkiland, In quarantaine, [254], [235812],1.0.5601
PUP.Optional.FTDownloader, C:\USERS\PETRA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\B104E7EY.DEFAULT\EXTENSIONS\ftdownloader2@ftdownloader.com.xpi, In quarantaine, [2402], [238561],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\000003.log, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\CURRENT, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\LOCK, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\LOG, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\LOG.old, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\MANIFEST-000001, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\000003.log, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\CURRENT, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\LOCK, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\LOG, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\LOG.old, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\MANIFEST-000001, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\USERS\PETRA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Secure Preferences, Vervangen, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\USERS\PETRA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Preferences, Vervangen, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\USERS\PETRA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\KJDGEBHGFDLBMNIDJNMLKJHHPDDKJPGM\12.702.11.34303_0\MANIFEST.JSON, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\adapter\adapterUtil.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\adapter\widget-adapter.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\abstractbutton\background\abstractButton.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\alert\background\alertButton.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedhtml\background\embedHtmlWidget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedhtml\html\embedHtmlTemplate.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedhtml\html\innerEmbedHtmlTemplate.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedhtml\js\embedHtmlUI.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedscript\background\embedScriptWidget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedscript\html\embedScriptTemplate.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedscript\html\innerEmbedScriptTemplate.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\embedscript\js\embedScriptUI.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\flare\background\FlareWidget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\flare\icons\Icon_Flare_blue.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\flare\icons\Icon_Flare_pink.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\flare\icons\Thumbs.db, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\generic\background\GenericWidget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\link\background\linkButton.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\background\menuButton.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\css\menuframe.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\html\menuframe.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\images\right_arrow.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\images\right_arrow_white.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\js\jquery-1.7.1.min.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\js\menuframe.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\js\query-string.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\js\underscore-1.3.1.min.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\menu\README.txt, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\rss\background\RssWidget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\thirdparty\background\thirdPartyWidget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\uninstall\background\uninstallButton.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\components\weather\background\weatherButton.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\bs.30.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\common.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\dynamic.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\enableDetect.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\eventListening.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\global.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\jquery-1.7.1.min.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\list-interaction.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\messageEventListener.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\navRedirector.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\paramReplacer.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\PartnerId.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\set.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\underscore-1.3.1.min.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\underscore-1.5.2.min.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\js\unifiedLogging.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\common\common.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\common\eventListening.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\common\jquery-1.7.1.min.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\common\list-interaction.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\common\set.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\common\underscore-1.3.1.min.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\radio\css\radio-widget.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\radio\js\radio-custom.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\radio\js\radio-parser.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\radio\js\radio-widget-ui.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\radio\js\radio-widget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\radio\radio-widget.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\rss\js\rss-widget-custom.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\rss\js\rss-widget-parse.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\rss\js\rss-widget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\rss\rssWidget.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\test\invalid.json, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\test\jquery.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\test\qunit.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\test\qunit.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\test\resource.json, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\test\resource.xml, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\test\testWidget.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\test\testWidget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\topapps\css\widget.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\topapps\js\nanigans-topapps-feed.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\topapps\js\topapps-config.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\topapps\js\widget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\topapps\widget.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\weather\css\weatherButton.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\weather\js\weather.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widgets\weather\weatherButton.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\common\widget-api\widget-context-1.0.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\api\background\ApiBasedWidget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\api\background\widget-api-impl.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\api\window\hiddenWidgetWindow.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\api\window\hiddenWidgetWindow.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\api\window\hiddenWidgetWindowInit.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\api\window\widgetWindow.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\api\window\widgetWindow.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\background\updateSearch.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\background\updateSearchPromptBg.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\foreground\07_buttons2.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\foreground\08_buttons2.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\foreground\defaultSearchModal.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\foreground\defaultSearchModalInjector.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\foreground\defaultSearchModalInjector.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\foreground\tvf_btn_ok.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\foreground\tvf_btn_ok2.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\foreground\tvf_restart_alert_icon.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\foreground\tvf_restart_icon.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\defaultSearch\foreground\updateSearchPromptFg.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\moviereviews\background\MovieReviewsWidget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\moviereviews\css\movieReviews.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\moviereviews\html\movieReviews.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\moviereviews\js\movieReviews.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\radio\background\RadioWidget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\radio\css\toolbar-item.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\radio\foreground\button.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\radio\radioWrapper\radioWrapper.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\radio\radioWrapper\radioWrapper.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\search\background\searchBox.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\search\html\searchSuggestions.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\search\html\searchSuggestions.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\search\html\searchSuggestions.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\search\html\searchSuggestionsInit.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\supertab\css\supertab.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\supertab\html\supertab.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\supertab\js\newtabfork.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\supertab\js\reporting.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\supertab\js\srchsugg.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\supertab\js\supertab.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\supertab\js\unifiedLogging.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\components\supertab\js\__utm.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\_metadata\computed_hashes.json, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\_metadata\verified_contents.json, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\icons\arrowSprite.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\icons\icon128.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\icons\icon16.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\icons\icon19disabled.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\icons\icon19on.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\icons\icon48.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\icons\tb_icon_search_disappearing_ask.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\223763231.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\223763234.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\223763256.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\223763268.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\223763274.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\223763304.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\224441885.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\down_arrow.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\IDR_PRODUCT_LOGO_16.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\IDR_WEBSTORE_ICON.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\magnifying_glass.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\RadioPlayerSprite.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\search_button.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\tvf_icon_guide.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\tvf_logo.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\images\wrench.png, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\newTabInitialize.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\chromeStorage.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\chromeUtils.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\companionSWUtils.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\exeManager.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\exeManagerNMD.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\exePackageManager.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\focusManager.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\globalBlacklistManager.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\messaging.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\mutation_summary-min.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\mutation_summary.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\nativeMessagingDispatcher.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\newTabInfo.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\options.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\readLocalStorage.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\recentlyClosedTabs.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\reservespacefortoolbar.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\reservespaceifenabled.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\scriptInjector.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\searchContext.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\settingsOverrides.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\toolbarCookieParser.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\toolbarPreinit.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\underscore-1.3.1.min.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\URILoaderContentScript.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\webTooltabAPI.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\Widget.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\widgetContentScriptInjectee.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\widgetFactory.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\js\widgetWindowManager.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\native\libs\jquery-1.7.1.min.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\native\libs\jquery-1.9.1.min.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\native\libs\underscore-1.5.2.min.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\native\cache.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\native\ce.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\native\debug.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\native\ss.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\activePing.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\buttonLogger.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\competitorDnsList.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\console.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\FFPreferencesPersister.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\httpTransport.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\HttpURL.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\internationalSearch.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\LocalStoragePersister.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\MindsparkGlobal.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\MindsparkGlobal.unitTest.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\MindsparkGlobalNotes.txt, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\rsvp-latest.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\searchSuggestLocale.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\testHttpTransport.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\unifiedLogger.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\unifiedLogging.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\universalConsole.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\shared\utils.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\spent2.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\bg.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\buildVars, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\buildVars.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\companionSW.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\config.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\contentScript.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\contentScript.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\debug.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\debug.jade, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\spentJ.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\spentK.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\spentK.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\startup.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\stub.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\stubby.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\superFrame.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\toolbar.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\toolbar.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\toolbarUI.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\toolbarUI.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\toolbarUI.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\url.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\urlFragmentActions.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\webtooltab.cs.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\extension_toolbar_api.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\initWidgetWindow.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\newTabContentScript.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\options.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\spent.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\spent.html, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\spent.js, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjdgebhgfdlbmnidjnmlkjhhpddkjpgm\12.702.11.34303_0\spent2.css, In quarantaine, [1682], [443121],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk\000003.log, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk\CURRENT, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk\LOCK, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk\LOG, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk\LOG.old, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk\MANIFEST-000001, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk\000003.log, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk\CURRENT, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk\LOCK, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk\LOG, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk\LOG.old, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\cegaablngohnpapmfhdecgdbngjmjgkk\MANIFEST-000001, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\USERS\PETRA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Secure Preferences, Vervangen, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\USERS\PETRA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Preferences, Vervangen, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\USERS\PETRA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\CEGAABLNGOHNPAPMFHDECGDBNGJMJGKK\13.611.13.2863_0\MANIFEST.JSON, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\config\config.json, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\icons\icon128.png, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\icons\icon16.png, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\icons\icon19disabled.png, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\icons\icon19on.png, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\icons\icon48.png, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\ajax.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\background.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\chrome.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\content_script.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\dlp.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\dlpHelper.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\extension_detect.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\genericLoadRemoteSettings.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\index.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\initOfferCEF.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\logger.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\offerService.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\pageUtils.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\PartnerId.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\product.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\storage.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\TabManager.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\TemplateParser.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\ul.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\urlFragmentActions.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\urlUtils.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\util.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\js\webtooltabAPI.js, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\_metadata\verified_contents.json, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\newtabproduct.html, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.MindSpark.Generic, C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cegaablngohnpapmfhdecgdbngjmjgkk\13.611.13.2863_0\stubby.html, In quarantaine, [1682], [467555],1.0.5601
PUP.Optional.DriverToolkit, C:\USERS\PETRA\DOWNLOADS\DRIVERTOOLKITINSTALLER.EXE, In quarantaine, [888], [512879],1.0.5601
PUP.Optional.Freemium, C:\USERS\PETRA\DOWNLOADS\DOWNLOAD-AUDIOGRABBER.EXE, In quarantaine, [491], [301050],1.0.5601
PUP.Optional.DriverToolkit, C:\USERS\PETRA\DOWNLOADS\DRIVERTOOLKITINSTALLER (1).EXE, In quarantaine, [888], [512879],1.0.5601
Adware.GameVance, C:\USERS\PETRA\DOWNLOADS\DREAM_PET_LINK (1).EXE, In quarantaine, [2948], [110524],1.0.5601
Adware.GameVance, C:\USERS\PETRA\DOWNLOADS\DREAM_PET_LINK.EXE, In quarantaine, [2948], [110524],1.0.5601

Fysieke sector: 0
(Geen kwaadaardige items gedetecteerd)

WMI: 0
(Geen kwaadaardige items gedetecteerd)


(end)
 
Dat is al een behoorlijke opruiming geworden.

We kijken verder: download
536cf876403ee-AdwCleaner_Icon.png
AdwCleaner by Malwarebytes naar het bureaublad.

Klik met de rechtermuisknop op AdwCleaner en kies voor de optie
RunAsAdmin.jpg
Als administrator uitvoeren.
  • Klik vervolgens op de knop Nu scannen.
  • Wanneer de scan gereed is klikt u vervolgens op de knop Reiniging en Reparaties.
  • Klik vervolgens in het informatiescherm op Schoonmaken en nu opnieuw opstarten.
  • Nadat de computer opnieuw is opgestart wordt AdwCleaner automatisch geopend, klik op Logbestand bekijken.
  • Plaats dit logbestand als bijlage in het volgende bericht.
  • (Dit logbestand kunt u tevens terug vinden op de systeemschijf als C:\AdwCleaner\Logs\AdwCleaner[C00].txt.)
 
hallo,bedankt voor je tijd en inzet
hier mijn logje
# -------------------------------
# Malwarebytes AdwCleaner 7.2.0.0
# -------------------------------
# Build: 06-05-2018
# Database: 2018-06-22.2
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 06-23-2018
# Duration: 00:00:28
# OS: Windows 7 Home Premium
# Cleaned: 32
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Users\Public\Documents\iWin
Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iwin games
Deleted C:\Users\petra\AppData\Local\DriverToolkit
Deleted C:\extensions

***** [ Files ] *****

Deleted C:\END

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\Software\Microsoft\Internet Explorer\TabbedBrowsing|bProtectShowTabsWelcome
Deleted HKCU\Software\AppDataLow\Software\Smartbar
Deleted HKU\S-1-5-18\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-18\Software\Web Assistant
Deleted HKU\.DEFAULT\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-18\Software\Web Assistant
Deleted HKCU\Software\DriverToolkit
Deleted HKLM\Software\Wow6432Node\Classes\TypeLib\{ADEA3C4E-2184-40A2-9556-488456427E80}
Deleted HKLM\Software\Classes\TypeLib\{ADEA3C4E-2184-40A2-9556-488456427E80}
Deleted HKLM\Software\Wow6432Node\Classes\TypeLib\{81CA8FCD-1420-4A07-B47D-B30F3DDA79E1}
Deleted HKLM\Software\Classes\TypeLib\{81CA8FCD-1420-4A07-B47D-B30F3DDA79E1}
Deleted HKLM\Software\Wow6432Node\Classes\Interface\{E773F2CF-5E6E-FF2B-81A1-AC581A26B2B2}
Deleted HKLM\Software\Classes\Interface\{E773F2CF-5E6E-FF2B-81A1-AC581A26B2B2}
Deleted HKLM\Software\Wow6432Node\Classes\Interface\{B77AD4AC-C1C2-B293-7737-71E13A11FFEA}
Deleted HKLM\Software\Classes\Interface\{B77AD4AC-C1C2-B293-7737-71E13A11FFEA}
Deleted HKLM\Software\Wow6432Node\Classes\Interface\{B37B4BA6-334E-72C1-B57E-6AFE8F8A5AF3}
Deleted HKLM\Software\Classes\Interface\{B37B4BA6-334E-72C1-B57E-6AFE8F8A5AF3}
Deleted HKLM\Software\Wow6432Node\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}
Deleted HKLM\Software\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}
Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{27BF8F8D-58B8-D41C-F913-B7EEB57EF6F6}
Deleted HKLM\Software\Wow6432Node\Classes\Interface\{A3492A3A-6715-9371-F8DB-1C48CC4DAAA1}
Deleted HKLM\Software\Classes\Interface\{A3492A3A-6715-9371-F8DB-1C48CC4DAAA1}
Deleted HKLM\Software\Wow6432Node\Classes\Interface\{596BB86E-F1E5-A1DE-3363-41AB634E77EF}
Deleted HKLM\Software\Classes\Interface\{596BB86E-F1E5-A1DE-3363-41AB634E77EF}
Deleted HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-3037185331-2861149877-865260356-1001\Software\SweetIM

***** [ Chromium (and derivatives) ] *****

Deleted OneClickDownload
Deleted FTdownloader 2
Deleted Ask Toolbar
Deleted SecureSearch

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [4203 octets] - [23/06/2018 23:30:16]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
 
Jij mag AdwCleaner nogmaals gaan gebruiken - het is mijn ervaring dat er dan vaak nog weer meer gevonden wordt.
 
goedenmorgen,dank voor je hulp zover
hier mijn logje
# -------------------------------
# Malwarebytes AdwCleaner 7.2.0.0
# -------------------------------
# Build: 06-05-2018
# Database: 2018-06-22.2
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 06-24-2018
# Duration: 00:00:46
# OS: Windows 7 Home Premium
# Scanned: 41265
# Detected: 0


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.


AdwCleaner[S00].txt - [4203 octets] - [23/06/2018 23:30:16]
AdwCleaner[C00].txt - [3805 octets] - [23/06/2018 23:31:46]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S01].txt ##########
 
Mooi zo, dan nu het volgende doen:

Download
52063a40e2e64-Farbar_Recovery_Scan_Tool_canned.png
Farbar Recovery Scan Tool 32 of 64 bit van één van de onderstaande links
Farbar Recovery Scan Tool 32 bit (x86)
Farbar Recovery Scan Tool 64 bit (x64)
Downloadlokatie: Dit programma absoluut naar het bureaublad downloaden dan wel daar naar toe verplaatsen!
Opmerkingen
: Alle openstaande programma's en webpagina's dienen afgesloten te zijn.

Antivirusprogramma en actieve malwarescanners dienen al voor je FRST.exe start gedeaktiveert zijn!
Hier en hier vindt je gegevens hoe antivirusprogramma's en spywarescanners te deaktiveren.

FRST opstarten:
  • Windows 2000 en Windows XP: dubbelklik op FRST.exe.
  • Windows Vista, Windows 7, Windows 8/8.1 en Windows 10: via rechtsklik op FRST.exe of FRST64.exe en kies voor "Als Administrator uitvoeren".

FRST start op:
  • Wanneer het programma is geopend klik dan op de knop Yes bij de disclaimer.
  • Druk vervolgens op de Scan knop.
  • Aansluitend zal een logbestand - FRST.txt en Addition-txt aangemaakt worden en op het bureaublad opgeslagen worden.
.

Kijk hier: Hoe een bijlage toevoegen?
 
bedankt,hier mijn logjes
Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 20.06.2018
Gestart door petra (Beheerder) op PETRA-PC (24-06-2018 11:22:20)
Gestart vanaf C:\Users\petra\Desktop
Geladen Profielen: petra (Beschikbare Profielen: petra)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Taal: Nederlands (Nederland)
Internet Explorer Versie 11 (Standaardbrowser: Chrome)
Boot Modus: Normal
Handleiding voor Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processen (gefilterd) =================

(Als een item is opgenomen in de fixlist, zal het proces worden gesloten. Het bestand zal niet worden verplaatst.)

(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\stacsv64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.141.333\AvastBrowserCrashHandler.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.141.333\AvastBrowserCrashHandler64.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
() C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Register (gefilterd) ===========================

(Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242904 2018-06-19] (AVAST Software)
HKLM-x32\...\Run: [WirelessAssistant] => C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard)
HKLM-x32\...\Run: [QlbCtrl.exe] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [320056 2009-06-24] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [Magic Desktop for HP notification] => C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe [1444880 2015-11-24] (Easybits)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restrictie <==== AANDACHT
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [17074688 2018-06-19] (Piriform Ltd)
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\...\Run: [AvastBrowserAutoLaunch_8B1768473B86749CB8ABB5CBD1C7484B] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1808264 2018-06-12] (AVAST Software)
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\...\Policies\system: [DisableChangePassword] 1
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\...\Policies\Explorer: [NoInternetOpenWith] 1
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\ezScrSvr.scr
IFEO\cvh.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\EMET_GUI.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\fsui.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\hpcustpartic.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\moviemaker.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\pptview.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\sftdde.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\windowslivewriter.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlmail.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlsync.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlxphotogallery.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52272 2009-09-02] (EasyBits Software Corp.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast Cleanup Premium.lnk [2018-01-22]
ShortcutTarget: Avast Cleanup Premium.lnk -> C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe (AVAST Software)
Startup: C:\Users\petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2017-11-22]
ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\petra\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook)
Startup: C:\Users\petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Inktwaarschuwingen controleren - .lnk [2018-02-24]
ShortcutTarget: Inktwaarschuwingen controleren - .lnk -> C:\Program Files\HP\HP Photosmart 5520 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
BootExecute: autocheck autochk * PCloudBroom64.exe \systemroot\system32\BroomData.bit

==================== Internet (gefilterd) ====================

(Als een item is opgenomen in de fixlist en een registeritem is, wordt het verwijderd of hersteld naar de standaard.)

Tcpip\Parameters: [DhcpNameServer] 89.101.251.228 89.101.251.229
Tcpip\..\Interfaces\{0E4F863B-4878-4515-87D1-9B02BEA5C6AF}: [DhcpNameServer] 89.101.251.228 89.101.251.229
Tcpip\..\Interfaces\{24C558B0-D525-41D2-9A19-2B15CD0F207C}: [DhcpNameServer] 212.54.44.54 212.54.40.25
Tcpip\..\Interfaces\{33B1ED06-A44C-4924-AAB2-84F627EEA03B}: [DhcpNameServer] 89.101.251.228 89.101.251.229
Tcpip\..\Interfaces\{FC0F5693-B54F-4B2B-B7CC-25CF955C22FE}: [DhcpNameServer] 192.168.2.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=56626&homepage=hxxp://www.msn.com/?pc=AV01
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKLM -> {2B674302-A1C7-47B1-B3E4-7757FF86CCDF} URL = hxxp://nl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008
SearchScopes: HKLM -> {3935291F-8D64-42E0-A3BD-33D49A80D65C} URL = hxxp://nl.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913935
SearchScopes: HKLM-x32 -> {2B674302-A1C7-47B1-B3E4-7757FF86CCDF} URL = hxxp://nl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008
SearchScopes: HKLM-x32 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3037185331-2861149877-865260356-1001 -> {0b4d26f6-61a8-4463-99dd-5f2fe0400fa6} URL = hxxps://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3037185331-2861149877-865260356-1001 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2018-06-19] (AVAST Software)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08] (Adobe Systems Incorporated)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2018-06-19] (AVAST Software)
DPF: HKLM-x32 {0742B9EF-8C83-41CA-BFBA-830A59E23533} hxxps://oas.support.microsoft.com/ActiveX/MSDcode.cab
DPF: HKLM-x32 {149E45D8-163E-4189-86FC-45022AB2B6C9} file:///C:/Program%20Files%20(x86)/Secrets%20of%20Olympus/Images/stg_drm.ocx
DPF: HKLM-x32 {6A060448-60F9-11D5-A6CD-0002B31F7455}
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: HKLM-x32 {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} hxxp://game.zylom.com/activex/zylomgamesplayer.cab
DPF: HKLM-x32 {C345E174-3E87-4F41-A01C-B066A90A49B4} hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocx
DPF: HKLM-x32 {CC450D71-CC90-424C-8638-1F2DBAC87A54} file:///C:/Program%20Files%20(x86)/Farmscapes/Images/armhelper.ocx
DPF: HKLM-x32 {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} hxxp://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_intel_4.5.3.0.cab
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: livecall - Geen CLSID Waarde
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - Geen bestand

FireFox:
========
FF ProfilePath: C:\Users\petra\AppData\Roaming\TomTom\HOME\Profiles\atrvdw12.default [2013-01-21]
FF Extension: (Emulator) - C:\Users\petra\AppData\Roaming\TomTom\HOME\Profiles\atrvdw12.default\Extensions\Navcore.7.903.9183@tomtom.com [2011-08-06] [Verouderd] [ niet getekend]
FF Extension: (Map status indicator) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [2013-01-21] [Verouderd] [ niet getekend]
FF ProfilePath: C:\Users\petra\AppData\Roaming\Mozilla\Firefox\Profiles\b104e7ey.default [2018-06-24]
FF Homepage: Mozilla\Firefox\Profiles\b104e7ey.default -> about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_30_0_0_113.dll [2018-06-19] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [Geen bestand]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_30_0_0_113.dll [2018-06-19] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll [Geen bestand]
FF Plugin-x32: @exent.com/npExentCtl,version=7.0.0.0 -> C:\Program Files (x86)\FantastiGames\npExentCtl.dll [Geen bestand]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Geen bestand]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation)
FF Plugin-x32: @oberon-media.com/ONCAdapter -> C:\Program Files (x86)\Common Files\Oberon Media\NCAdapter\1.0.0.8\npapicomadapter.dll [Geen bestand]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-06-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-06-19] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\6\NP_wtapp.dll [Geen bestand]
FF Plugin-x32: @zylom.com/ZylomGamesPlayer -> C:\ProgramData\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll [2009-10-23] (Zylom)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2013-05-08] (Adobe Systems Inc.)
FF Plugin-x32: www.exent.com/GameTreatWidget -> C:\Program Files (x86)\FantastiGames\NPGameTreatPlugin.dll [Geen bestand]

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default [2018-06-24]
CHR Extension: (YouTube) - C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-26]
CHR Extension: (Google Search) - C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]
CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-06-21]
CHR Extension: (Gmail) - C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29]
CHR Extension: (Chrome Media Router) - C:\Users\petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-06-21]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <niet gevonden>

==================== Services (gefilterd) ====================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [89600 2009-03-02] (Andrea Electronics Corporation)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7620096 2018-06-19] (AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-06-19] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [317280 2018-06-19] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [428984 2018-06-19] (AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-06-19] (AVAST Software)
R2 CleanupPSvc; C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe [8633072 2018-06-19] (AVAST Software)
S4 EMET_Service; C:\Program Files (x86)\EMET 5.1\EMET_Service.exe [31880 2014-11-09] (Microsoft Corporation)
R2 LightScribeService; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2009-06-17] (Hewlett-Packard Company) [Bestand niet getekend]
S3 lxcy_device; C:\Windows\SysWOW64\lxcycoms.exe [537520 2006-11-29] ( )
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6541008 2018-05-09] (Malwarebytes)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-01-21] ()
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe [247808 2010-03-23] (IDT, Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (gefilterd) ======================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) <==== AANDACHT (geen ServiceDLL)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [196640 2018-06-19] (AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdrivera.sys [227504 2018-06-19] (AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsha.sys [199440 2018-06-19] (AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswbloga.sys [343752 2018-06-19] (AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniva.sys [57680 2018-06-19] (AVAST Software)
S3 aswHdsKe; C:\Windows\system32\drivers\aswHdsKe.sys [79216 2016-08-17] (AVAST Software)
S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [46968 2018-06-19] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [159120 2018-06-19] (AVAST Software)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [38152 2018-01-22] (AVAST Software)
R1 aswNetSec; C:\Windows\System32\drivers\aswNetSec.sys [640248 2018-06-19] (AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [111360 2018-06-19] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [85968 2018-06-19] (AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1027720 2018-06-19] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [460520 2018-06-19] (AVAST Software)
S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [205976 2018-06-19] (AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [381552 2018-06-19] (AVAST Software)
S3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2016-03-05] (Disc Soft Ltd)
S3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2016-03-05] (Disc Soft Ltd)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-08-05] (DT Soft Ltd)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [152184 2018-05-24] (Malwarebytes)
S3 gfiark; C:\Windows\System32\drivers\gfiark.sys [38456 2013-02-11] (GFI Software)
R0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-03-02] (GFI Software)
S4 LMIRfsClientNP; geen ImagePath
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [190696 2018-06-23] (Malwarebytes)
R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [112872 2018-06-24] (Malwarebytes)
R3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [44768 2018-06-24] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [253664 2018-06-24] (Malwarebytes)
R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [94840 2018-06-24] (Malwarebytes)
S3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [50320 2015-01-29] (Panda Security, S.L.)
R3 radpms; C:\Windows\System32\DRIVERS\radpms.sys [14944 2012-11-29] (LogMeIn, Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2016-03-04] (Duplex Secure Ltd.)
S1 A2DDA; \??\C:\Users\petra\Desktop\Run\a2ddax64.sys [X]
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [X]
S3 hmpalert; \??\C:\Windows\system32\drivers\hmpalert.sys [X]
S3 hmpnet; \??\C:\Windows\system32\drivers\hmpnet.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [X]
S2 LMIInfo; \??\C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [X]
S3 MEMSWEEP2; \??\C:\Windows\system32\C9FB.tmp [X]
S3 RtsUIR; system32\DRIVERS\Rts516xIR.sys [X]
S3 USBCCID; system32\DRIVERS\RtsUCcid.sys [X]
S2 X5XSEx_Pr143; \??\C:\Program Files (x86)\FantastiGames\X5XSEx_Pr143.Sys [X]

==================== NetSvcs (gefilterd) ===================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)


==================== Een Maand Aangemaakt bestanden en mappen ========

(Als een item is opgenomen in de fixlist, word de map of het bestand verplaatst.)

2018-06-24 11:22 - 2018-06-24 11:23 - 000021851 _____ C:\Users\petra\Desktop\FRST.txt
2018-06-24 09:03 - 2018-06-24 09:03 - 000253664 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2018-06-23 23:44 - 2018-06-24 09:05 - 000094840 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2018-06-23 23:26 - 2018-06-23 23:26 - 007372496 _____ (Malwarebytes) C:\Users\petra\Desktop\adwcleaner_7.2.0.exe
2018-06-23 22:14 - 2018-06-24 09:04 - 000112872 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2018-06-23 22:14 - 2018-06-24 09:04 - 000044768 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2018-06-23 22:14 - 2018-06-23 22:14 - 000190696 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2018-06-23 22:13 - 2018-06-23 22:13 - 000001834 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2018-06-23 22:13 - 2018-06-23 22:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-06-23 22:13 - 2018-06-23 22:13 - 000000000 ____D C:\Program Files\Malwarebytes
2018-06-23 22:13 - 2018-05-24 06:55 - 000152184 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2018-06-23 22:11 - 2018-06-23 22:12 - 072874400 _____ (Malwarebytes ) C:\Users\petra\Desktop\mb3-setup-consumer-3.5.1.2522-1.0.374-1.0.5597.exe
2018-06-22 22:37 - 2018-06-22 22:37 - 000000763 _____ C:\Users\Public\Desktop\Speccy.lnk
2018-06-22 22:37 - 2018-06-22 22:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2018-06-22 22:37 - 2018-06-22 22:37 - 000000000 ____D C:\Program Files\Speccy
2018-06-22 22:35 - 2018-06-22 22:36 - 006889184 _____ (Piriform Ltd) C:\Users\petra\Downloads\spsetup132.exe
2018-06-22 21:16 - 2018-06-22 21:17 - 000000000 ____D C:\FRST
2018-06-22 21:13 - 2018-06-22 21:13 - 002412544 _____ (Farbar) C:\Users\petra\Desktop\FRST64.exe
2018-06-22 00:01 - 2015-09-14 13:03 - 000039672 _____ C:\Windows\system32\Drivers\DasPtct.SYS
2018-06-21 23:55 - 2018-06-21 23:55 - 000003792 _____ C:\Windows\SysWOW64\BroomData.bit
2018-06-21 23:55 - 2013-04-08 15:30 - 000022752 _____ C:\Windows\system32\PCloudBroom64.exe
2018-06-21 23:22 - 2018-06-21 23:22 - 000001249 _____ C:\Users\Public\Desktop\Panda Cloud Cleaner.lnk
2018-06-21 23:22 - 2018-06-21 23:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Security
2018-06-21 23:22 - 2018-06-21 23:22 - 000000000 ____D C:\Program Files (x86)\Panda Security
2018-06-21 23:22 - 2015-01-29 18:21 - 000050320 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys
2018-06-21 23:14 - 2018-06-21 23:14 - 038191600 _____ (Panda Security ) C:\Users\petra\Downloads\PandaCloudCleaner.exe
2018-06-21 21:56 - 2018-06-21 21:56 - 000000000 ____D C:\Users\petra\Desktop\afspraak id kaart
2018-06-19 22:10 - 2018-06-19 22:10 - 000004572 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2018-06-19 21:57 - 2018-06-19 21:57 - 000002488 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2018-06-19 21:56 - 2018-06-19 21:56 - 000003532 _____ C:\Windows\System32\Tasks\AvastUpdateTaskMachineUA
2018-06-19 21:56 - 2018-06-19 21:56 - 000003404 _____ C:\Windows\System32\Tasks\AvastUpdateTaskMachineCore
2018-06-19 21:55 - 2018-06-19 22:15 - 000000000 ____D C:\Users\petra\AppData\Local\AVAST Software
2018-06-19 21:53 - 2017-11-01 07:53 - 000346176 _____ C:\Windows\system32\FNTCACHE.DAT
2018-06-19 21:49 - 2018-06-19 21:48 - 000376536 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2018-06-19 21:35 - 2018-06-19 21:35 - 000000000 ____D C:\Users\petra\AppData\Local\BlueStacks
2018-06-19 20:44 - 2018-06-19 20:44 - 000003870 _____ C:\Windows\System32\Tasks\CCleaner Update
2018-06-19 19:57 - 2018-06-19 19:57 - 020813312 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe

==================== Een Maand Gewijzigd bestanden en mappen ========

(Als een item is opgenomen in de fixlist, word de map of het bestand verplaatst.)

2018-06-24 09:39 - 2009-07-14 06:45 - 000023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-06-24 09:39 - 2009-07-14 06:45 - 000023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-06-24 09:01 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-06-23 23:39 - 2009-09-02 10:43 - 000732646 _____ C:\Windows\system32\perfh013.dat
2018-06-23 23:39 - 2009-09-02 10:43 - 000149874 _____ C:\Windows\system32\perfc013.dat
2018-06-23 23:39 - 2009-07-14 07:13 - 001672576 _____ C:\Windows\system32\PerfStringBackup.INI
2018-06-23 23:39 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2018-06-23 23:30 - 2015-03-08 14:32 - 000000000 ____D C:\AdwCleaner
2018-06-23 22:13 - 2015-03-10 00:02 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-06-23 22:11 - 2011-06-01 14:36 - 000003958 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{DA22A8B7-AE17-4B29-AE85-E3DDDBA9A113}
2018-06-21 23:55 - 2015-12-05 16:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cool Edit Pro 2.0
2018-06-21 23:55 - 2015-03-15 14:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4
2018-06-21 22:29 - 2016-03-05 09:30 - 000000000 ____D C:\Users\petra\AppData\Roaming\DAEMON Tools Lite
2018-06-21 21:44 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2018-06-19 22:10 - 2012-06-29 00:30 - 000004422 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2018-06-19 22:09 - 2012-06-29 00:30 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2018-06-19 22:09 - 2012-03-26 20:33 - 000000000 ____D C:\Windows\system32\Macromed
2018-06-19 22:09 - 2011-06-19 23:30 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2018-06-19 22:09 - 2009-09-02 01:19 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2018-06-19 22:05 - 2017-04-23 14:55 - 000004168 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2018-06-19 22:05 - 2011-05-31 07:08 - 000000000 ____D C:\ProgramData\AVAST Software
2018-06-19 21:55 - 2018-01-22 13:46 - 000000000 ____D C:\Program Files (x86)\AVAST Software
2018-06-19 21:53 - 2011-12-30 11:46 - 000000000 ____D C:\Program Files (x86)\WinRAR
2018-06-19 21:48 - 2018-01-22 13:41 - 000196640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2018-06-19 21:48 - 2014-04-30 17:37 - 000046968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2018-06-19 21:48 - 2013-12-28 12:37 - 000205976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2018-06-19 21:48 - 2013-03-02 10:05 - 000460520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2018-06-19 21:48 - 2013-03-02 10:05 - 000381552 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2018-06-19 21:48 - 2013-03-02 10:05 - 000159120 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2018-06-19 21:48 - 2013-03-02 10:05 - 000111360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2018-06-19 21:48 - 2013-03-02 10:05 - 000085968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2018-06-19 21:47 - 2017-04-23 14:55 - 000343752 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbloga.sys
2018-06-19 21:47 - 2017-04-23 14:55 - 000227504 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdrivera.sys
2018-06-19 21:47 - 2017-04-23 14:55 - 000199440 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsha.sys
2018-06-19 21:47 - 2017-04-23 14:55 - 000057680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniva.sys
2018-06-19 21:47 - 2016-02-13 01:44 - 000640248 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetSec.sys
2018-06-19 21:47 - 2013-03-02 10:05 - 001027720 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2018-06-19 21:41 - 2017-10-16 19:11 - 000000000 ____D C:\Users\petra\Desktop\pasjes
2018-06-19 21:35 - 2016-03-23 23:31 - 000000000 ____D C:\ProgramData\BlueStacksGameManager
2018-06-19 21:35 - 2009-07-14 05:20 - 000000000 ___RD C:\Users\Public\Libraries
2018-06-19 21:26 - 2011-06-19 23:30 - 000000000 ____D C:\Program Files (x86)\Google
2018-06-19 21:24 - 2014-08-23 20:46 - 000000000 ____D C:\Users\petra\AppData\Local\com.gamehouse.acid
2018-06-19 21:24 - 2012-09-01 16:41 - 000000000 ____D C:\Zylom Games
2018-06-19 21:24 - 2011-10-01 20:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zylom
2018-06-19 21:20 - 2016-03-05 09:45 - 000000000 ____D C:\Users\petra\AppData\Roaming\SPORE
2018-06-19 21:19 - 2009-09-02 00:54 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2018-06-19 21:17 - 2015-03-15 14:27 - 000000000 ____D C:\Program Files (x86)\The Sims 4
2018-06-19 21:17 - 2013-05-29 04:10 - 000000000 ____D C:\Users\petra\AppData\Local\Unity
2018-06-19 20:51 - 2015-03-08 19:26 - 000002142 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-06-19 20:51 - 2013-01-04 00:08 - 000002183 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-06-19 20:49 - 2013-05-19 22:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2018-06-19 20:44 - 2015-06-28 12:30 - 000003622 _____ C:\Windows\System32\Tasks\HPCustParticipation HP Photosmart 5520 series
2018-06-19 20:44 - 2013-03-02 10:15 - 000000000 ____D C:\Program Files\CCleaner
2018-06-19 20:42 - 2012-10-08 17:46 - 000003490 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2018-06-19 20:42 - 2012-10-08 17:46 - 000003362 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2018-06-19 20:40 - 2012-11-18 12:56 - 000000000 __HDC C:\ProgramData\{47E1B06E-0207-42C9-8315-F1E24834ED9E}
2018-06-19 20:40 - 2012-09-07 16:33 - 000000000 ____D C:\Users\petra\AppData\Roaming\Skype
2018-06-19 20:40 - 2012-01-14 10:57 - 000000000 ____D C:\Users\petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ
2018-06-19 20:40 - 2012-01-09 10:48 - 000000000 ____D C:\Users\petra\Documents\Youcam
2018-06-19 20:40 - 2011-06-25 16:51 - 000000000 ____D C:\ProgramData\{E91883C8-8CDC-46A4-A45F-CB40EB82ED60}
2018-06-19 20:40 - 2011-05-30 23:37 - 000000000 ____D C:\Users\petra\AppData\Roaming\HpUpdate
2018-06-19 20:40 - 2011-05-30 23:31 - 000000000 ____D C:\Users\petra\AppData\Roaming\hpqlog
2018-06-19 20:40 - 2011-05-30 18:53 - 000000000 ____D C:\Users\petra\AppData\Local\Microsoft Help
2018-06-19 20:40 - 2011-05-30 18:25 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services
2018-06-19 20:40 - 2011-05-30 18:24 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\muvee
2018-06-19 20:40 - 2009-09-02 02:47 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hewlett-Packard
2018-06-19 20:40 - 2009-07-25 08:11 - 000000000 ____D C:\Windows\Panther
2018-06-19 20:40 - 2009-07-14 07:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2018-06-19 20:35 - 2011-05-30 23:32 - 000000274 _____ C:\ProgramData\HPWALog.txt
2018-06-19 20:31 - 2015-12-03 22:39 - 000000000 ____D C:\Windows\System32\Tasks\AVAST Software
2018-06-19 19:55 - 2018-01-22 13:50 - 000004194 _____ C:\Windows\System32\Tasks\Avast TUNEUP Update

==================== Bestanden in de root van sommige mappen =======

2015-03-02 20:37 - 2015-03-02 20:37 - 006103040 _____ () C:\Program Files (x86)\GUT5013.tmp
2012-05-13 06:51 - 2012-09-01 02:10 - 000000011 _____ () C:\Users\petra\AppData\Roaming\log.txt
2011-07-01 05:49 - 2011-07-01 06:22 - 000000140 _____ () C:\Users\petra\AppData\Roaming\wklnhst.dat
2011-05-30 23:32 - 2011-05-30 23:32 - 000000000 _____ () C:\Users\petra\AppData\Local\AtStart.txt
2011-05-30 23:32 - 2011-05-30 23:32 - 000000000 _____ () C:\Users\petra\AppData\Local\DSwitch.txt
2011-05-30 23:32 - 2011-05-30 23:32 - 000000000 _____ () C:\Users\petra\AppData\Local\QSwitch.txt
2011-07-21 23:19 - 2013-03-20 06:25 - 000007666 _____ () C:\Users\petra\AppData\Local\Resmon.ResmonCfg

==================== Bamital & volsnap ======================

(Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.)

C:\Windows\system32\winlogon.exe => Bestand is getekend
C:\Windows\system32\wininit.exe => Bestand is getekend
C:\Windows\SysWOW64\wininit.exe => Bestand is getekend
C:\Windows\explorer.exe => Bestand is getekend
C:\Windows\SysWOW64\explorer.exe => Bestand is getekend
C:\Windows\system32\svchost.exe => Bestand is getekend
C:\Windows\SysWOW64\svchost.exe => Bestand is getekend
C:\Windows\system32\services.exe => Bestand is getekend
C:\Windows\system32\User32.dll => Bestand is getekend
C:\Windows\SysWOW64\User32.dll => Bestand is getekend
C:\Windows\system32\userinit.exe => Bestand is getekend
C:\Windows\SysWOW64\userinit.exe => Bestand is getekend
C:\Windows\system32\rpcss.dll => Bestand is getekend
C:\Windows\system32\dnsapi.dll => Bestand is getekend
C:\Windows\SysWOW64\dnsapi.dll => Bestand is getekend
C:\Windows\system32\Drivers\volsnap.sys => Bestand is getekend

LastRegBack: 2018-01-22 14:44

==================== Eind van FRST.txt ============================
Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 20.06.2018
Gestart door petra (24-06-2018 11:23:48)
Gestart vanaf C:\Users\petra\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2011-05-30 16:51:00)
Boot Modus: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3037185331-2861149877-865260356-500 - Administrator - Disabled)
Gast (S-1-5-21-3037185331-2861149877-865260356-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3037185331-2861149877-865260356-1052 - Limited - Enabled)
petra (S-1-5-21-3037185331-2861149877-865260356-1001 - Administrator - Enabled) => C:\Users\petra

==================== Security Center ========================

(Als een item is opgenomen in de fixlist, zal het worden verwijderd.)

AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
FW: Avast Antivirus (Disabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}

==================== Geïnstalleerde programma's ======================

(Alleen de adware-programma's met 'verborgen' vlag kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeïnstalleerd worden.)

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 25.0.0.134 - Adobe Systems Incorporated)
Adobe Flash Player 30 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 30.0.0.113 - Adobe Systems Incorporated)
Adobe Flash Player 30 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 30.0.0.113 - Adobe Systems Incorporated)
Avast Cleanup Premium (HKLM-x32\...\{075CC190-59EE-499F-828B-0B5C098C8C15}_is1) (Version: 18.1.4888 - AVAST Software)
Avast Premier (HKLM-x32\...\Avast Antivirus) (Version: 18.4.2338 - AVAST Software)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 66.2.567.182 - AVAST Software)
EMET 5.1 (HKLM-x32\...\{72E7AE20-5B12-4F27-AF5E-DA03E3C09466}) (Version: 5.1 - Microsoft Corporation)
Facebook Gameroom 1.10.6515.35995 (HKLM-x32\...\{0B5F75BB-9192-4E2C-A0A6-D07DC31A2E84}) (Version: 1.10.6515.35995 - Facebook)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 67.0.3396.87 - Google Inc.)
Google Drive (HKLM-x32\...\{A8DC81F2-D365-4248-892A-FA3B5951F731}) (Version: 2.34.9392.7803 - Google, Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden
HP FWUpdateEDO2 (HKLM-x32\...\{415FA9AD-DA10-4ABE-97B6-5051D4795C90}) (Version: 1.2.0.0 - Hewlett-Packard)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Photosmart 5520 series Basissoftware van het apparaat (HKLM\...\{D2FFE8A1-980E-4CF9-A48F-453D767BA661}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Photosmart 5520 series Help (HKLM-x32\...\{193C95A3-E4D5-4482-A9C9-1510E29849E4}) (Version: 27.0.0 - Hewlett Packard)
HP Photosmart 5520 series Productverbeteringsonderzoek (HKLM\...\{ABDD5DC4-E37C-40E1-AB1C-601AA7F7D383}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPDiagnosticAlert (HKLM-x32\...\{B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D}) (Version: 1.00.0001 - Microsoft) Hidden
Malwarebytes versie 3.5.1.2522 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.5.1.2522 - Malwarebytes)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Home and Business 2010 - Nederlands (HKLM-x32\...\{90140011-0062-0413-0000-0000000FF1CE}) (Version: 14.0.6114.5002 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-0080-0413-0000-0000000FF1CE}) (Version: 14.0.6106.5001 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (Dutch) (HKLM-x32\...\{95120000-00AF-0413-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{5158F1F5-FA1B-4D49-B546-55A5004B89BD}) (Version: 9.7.0621 - Microsoft Corporation)
Panda Cloud Cleaner (HKLM-x32\...\{92B2B132-C7F0-43DC-921A-4493C04F78A4}_is1) (Version: 1.1.10 - Panda Security)
Speccy (HKLM\...\Speccy) (Version: 1.32 - Piriform)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{120831D2-E9AD-4383-AC40-01FE658E11D6}) (Version: 14.0.8064.206 - Microsoft Corporation)

==================== Aangepaste CLSID (gefilterd): ==========================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2018-04-23] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2018-04-23] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2018-04-23] (Google)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-19] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-19] (AVAST Software)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => -> Geen bestand
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-19] (AVAST Software)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2018-04-23] (Google)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-19] (AVAST Software)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2018-04-23] (Google)
ContextMenuHandlers4: [MSSE] -> {0365FE2C-F183-4091-AC82-BFC39FB75C49} => -> Geen bestand
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Geen bestand
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2008-10-28] (Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-19] (AVAST Software)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes)
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Geen bestand

==================== Geplande Taken (gefilterd) =============

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

Task: {07CEA4F6-F2AA-4908-BF4E-52379E67DAF8} - System32\Tasks\{F0428A47-7272-45DC-804B-2E244DDA9028} => C:\Windows\system32\pcalua.exe -a C:\Users\petra\Downloads\sp42810.exe -d C:\Users\petra\Downloads
Task: {116B3D52-C46F-46A9-8FF1-6A7628A5312D} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks [Argument = /run /TN "\Microsoft\Windows\Setup\gwx\refreshgwxconfig"]
Task: {3DE21C29-35BB-45CB-8467-090B7D2168AB} - System32\Tasks\Ad-Aware Antivirus Scheduled Scan => C:\PROGRA~2\AD-AWA~1\AdAwareLauncher.exe
Task: {412A85FD-6BC2-4DC7-95DF-D7344190FAE2} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-06-19] (Adobe Systems Incorporated)
Task: {4336F29A-1F0C-478A-847A-8DA7699CE928} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {4B06411E-05AA-48E8-A9D5-A9CCCBE79E02} - System32\Tasks\HPCustParticipation HP Photosmart 5520 series => C:\Program Files\HP\HP Photosmart 5520 series\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.)
Task: {695EA730-F4F3-4072-9F3B-57F652E575CB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-06-19] (Piriform Ltd)
Task: {70880AAF-F77C-49B4-8F57-1E73DB25BAE0} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\avast software\overseer\overseer.exe [2018-06-19] (AVAST Software)
Task: {7164A72B-6DDD-4E28-AC13-44503E8C96F9} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2018-06-19] (AVAST Software)
Task: {76BE103E-C950-4191-A703-C53578E9E784} - System32\Tasks\Avast TUNEUP Update => C:\Program Files (x86)\AVAST Software\Avast Cleanup\TUNEUpdate.exe [2018-06-19] (AVAST Software)
Task: {93193550-641A-45F4-8349-6760C09A02DD} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-06-19] (Piriform Ltd)
Task: {A14C6FA1-54A8-4826-86F5-75121C084C21} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {A447A2CA-C61A-43BF-A9A1-F5699B806C7A} - System32\Tasks\{A8EED974-60F0-4814-91A6-7F5C1BA9824F} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Mystery Age - De Magische Staf\Uninstall.exe"
Task: {C7423FD7-AF29-447D-893B-5D77A2C3C724} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-06-19] (AVAST Software)
Task: {D07311BD-CC36-4D63-BE29-DE51A2038692} - System32\Tasks\{D3B1A268-9940-481A-9F4D-761C951DDFF4} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\RealArcade\Installer\bin\gameinstaller.exe" -c "C:\Program Files (x86)\RealArcade\Installer\installerMain.clf" "C:\Program Files (x86)\RealArcade\Installer\uninstall\2a3650442ac81deafaf7b47131121482.rguninst" "AddRemove"
Task: {D1156194-B9A9-4919-BB49-F75001FD324D} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Command(3): %windir%\system32\rundll32.exe -> appraiser.dll,DailyGatedCheck
Task: {D1156194-B9A9-4919-BB49-F75001FD324D} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Command(4): %windir%\system32\rundll32.exe -> aepdu.dll,AePduRunUpdate -nolegacy
Task: {E86BC812-9500-4B47-8619-71B1D7B818E6} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Command(1): %windir%\system32\rundll32.exe -> aepdu.dll,AePduRunUpdate
Task: {E86BC812-9500-4B47-8619-71B1D7B818E6} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Command(2): %windir%\system32\rundll32.exe -> invagent.dll,RunUpdate -noappraiser
Task: {EFCA91B7-A7C0-4AF6-BB6D-507ECD3F703A} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_113_Plugin.exe [2018-06-19] (Adobe Systems Incorporated)
Task: {F9054D22-D0A9-4252-818B-1E6EB8A780D5} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2018-06-19] (AVAST Software)

(Als een item is opgenomen in de fixlist, wordt de taak (job) bestand verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.)


==================== Snelkoppelingen & WMI ========================

(De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.)


Shortcut: C:\Users\petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\Online Help.lnk -> hxxp://www.virtualdj.com/wiki
Shortcut: C:\Users\petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\www.virtualdj.com.lnk -> hxxp://www.virtualdj.com

==================== Geladen Modules (gefilterd) ==============

2009-09-02 02:09 - 2009-01-21 20:47 - 000247152 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
2013-02-20 02:45 - 2018-06-19 20:43 - 000094656 _____ () C:\Program Files\CCleaner\lang\lang-1043.dll
2011-05-30 18:19 - 2009-06-23 22:34 - 000074536 _____ () C:\Program Files (x86)\HP\QuickPlay\Kernel\Common\MCEMediaStatus64.dll
2018-06-23 22:13 - 2018-04-25 13:16 - 002297040 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2018-06-23 22:13 - 2018-05-30 09:22 - 002493648 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2009-07-01 15:44 - 2009-07-01 15:44 - 000632888 _____ () C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe
2018-06-19 21:48 - 2018-06-19 21:48 - 000482520 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2018-06-23 22:08 - 2018-06-23 22:08 - 005842576 _____ () C:\Program Files\AVAST Software\Avast\defs\18062304\algo.dll
2018-06-19 21:47 - 2018-06-19 21:47 - 000889048 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2018-06-19 21:48 - 2018-06-19 21:48 - 000924888 _____ () C:\Program Files\AVAST Software\Avast\anen.dll
2018-06-19 21:47 - 2018-06-19 21:47 - 000982744 _____ () C:\Program Files\AVAST Software\Avast\shepherdsync.dll
2018-06-19 21:47 - 2018-06-19 21:47 - 000150744 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll
2018-06-19 21:47 - 2018-06-19 21:47 - 000519896 _____ () C:\Program Files\AVAST Software\Avast\gui_cache.dll
2018-06-19 21:48 - 2018-06-19 21:48 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-06-19 21:47 - 2018-06-19 21:47 - 000293592 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2018-01-22 13:49 - 2016-09-12 15:53 - 048936448 _____ () C:\Program Files (x86)\AVAST Software\Avast Cleanup\libcef.dll
2018-06-19 20:51 - 2018-06-12 07:46 - 002242904 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.87\swiftshader\libglesv2.dll
2018-06-19 20:51 - 2018-06-12 07:46 - 000109912 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.87\swiftshader\libegl.dll

==================== Alternate Data Streams (gefilterd) =========

(Als een item is opgenomen in de fixlist, wordt alleen de ADS verwijderd.)

AlternateDataStreams: C:\ProgramData\Temp:97B3B270 [132]
AlternateDataStreams: C:\ProgramData\Temp:D01ACC06 [128]
AlternateDataStreams: C:\ProgramData\Temp:EDD903C5 [112]

==================== Veilige Modus (gefilterd) ===================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. De waarde van "AlternateShell" wordt hersteld.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"

==================== Bestandskoppeling (gefilterd) ===============

(Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd.)


==================== Internet Explorer vertrouwde/beperkte toegang ===============

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd.)


==================== Hosts inhoud: ===============================

(Indien nodig kan Hosts:-opdracht worden opgenomen in de fixlist om Hosts te resetten.)

2009-07-14 04:34 - 2015-03-09 20:58 - 000000855 _____ C:\Windows\system32\Drivers\etc\hosts

127.0.0.1 localhost

==================== Andere gebieden ============================

(Momenteel is er geen automatische fix voor dit onderdeel.)

HKU\S-1-5-21-3037185331-2861149877-865260356-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\petra\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 89.101.251.228 - 89.101.251.229
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is uitgeschakeld.

==================== MSCONFIG/TASK MANAGER Uitgeschakelde items ==

MSCONFIG\Services: GamesAppService => 3

==================== Firewall regels (gefilterd) ===============

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

FirewallRules: [{666625F6-FC73-4328-904B-FE00720ACB01}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector\PDR.EXE
FirewallRules: [{698ABB8A-1E84-42F2-8623-291F8791EB52}] => (Allow) C:\Program Files (x86)\HP\QuickPlay\QP.exe
FirewallRules: [{5C763781-E9FE-46EE-96F8-9DDCAB683FD9}] => (Allow) C:\Program Files (x86)\HP\QuickPlay\QPService.exe
FirewallRules: [{F3BF65A6-999F-41EB-B48F-59F28BFE30B1}] => (Allow) svchost.exe
FirewallRules: [{84C63954-32F1-47A4-8084-0842F26DC888}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe
FirewallRules: [{55D9AD6C-CCF0-4346-ADD8-C93BAB447590}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{EB761409-A509-4340-9C4A-C7E9287994FD}] => (Allow) LPort=2869
FirewallRules: [{A0D1A2E6-B756-4A35-9B08-FE0DFD6A6AFB}] => (Allow) LPort=1900
FirewallRules: [{DCCEB0EC-EFF2-4784-AF12-32B36FCC0C86}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe
FirewallRules: [TCP Query User{1E0983E8-C875-47E4-90BC-CF0700C429D5}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [UDP Query User{8A5FB161-AF86-4F57-888F-B3A6B6E8BB2B}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [{351B7F95-0178-4A5A-989D-026CEEABE9DE}] => (Allow) C:\Windows\SysWOW64\lxcycoms.exe
FirewallRules: [{69A9A720-B4C3-4EA2-B6A4-E78FA236B12B}] => (Allow) C:\Windows\SysWOW64\lxcycoms.exe
FirewallRules: [{1EFD4407-9E74-4468-8CB2-43FA1E465C7F}] => (Allow) C:\Program Files (x86)\Shareaza Applications\Shareaza\Shareaza.exe
FirewallRules: [{3877A484-BC39-4AE4-8C8B-3C8696DCEE16}] => (Allow) C:\Program Files (x86)\Shareaza Applications\Shareaza\Shareaza.exe
FirewallRules: [{C588DDB5-B331-4F10-B6DF-C51D31E109B3}] => (Allow) C:\Program Files (x86)\Shareaza Applications\Shareaza\Shareaza.exe
FirewallRules: [{237E7835-4204-41B5-87C2-572D2F312F5C}] => (Allow) C:\Program Files (x86)\Shareaza Applications\Shareaza\Shareaza.exe
FirewallRules: [TCP Query User{F327970F-23F2-41BC-97AD-3AA4F43517F4}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe
FirewallRules: [UDP Query User{31EAEF49-A054-4F42-BEBF-128EE2D3D3B4}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe
FirewallRules: [TCP Query User{0440A4F9-50AD-44A0-B24C-2A3EF43565B7}C:\games\world_of_tanks\worldoftanks.exe] => (Allow) C:\games\world_of_tanks\worldoftanks.exe
FirewallRules: [UDP Query User{A0933EF5-360B-41E7-A120-FCD03647A1BA}C:\games\world_of_tanks\worldoftanks.exe] => (Allow) C:\games\world_of_tanks\worldoftanks.exe
FirewallRules: [{9E93F04E-AF2E-4EC5-B1F5-5F9EA4720DCD}] => (Allow) C:\Program Files\HP\HP Photosmart 5520 series\Bin\DeviceSetup.exe
FirewallRules: [{64086C83-0B8A-44E5-AE39-37858C2BFE7A}] => (Allow) C:\Program Files\HP\HP Photosmart 5520 series\Bin\HPNetworkCommunicator.exe
FirewallRules: [{A9FF7DDE-1E7A-460B-8CB7-723E79AB423B}] => (Allow) C:\Program Files\HP\HP Photosmart 5520 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{C6365D83-1DC3-4B9D-8AB3-0EE18F9D443B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{657D9EA3-890F-437E-BD1E-4493367B7B4C}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe

==================== Herstelpunten =========================

01-11-2017 02:16:48 Windows Update

==================== Defecte Apparaatbeheer Apparaten =============

Name: Realtek RTL8102E/RTL8103E Family PCI-E Fast Ethernet NIC (NDIS 6.20)
Description: Realtek RTL8102E/RTL8103E Family PCI-E Fast Ethernet NIC (NDIS 6.20)
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Realtek
Service: RTL8167
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: LogMeIn Kernel Information Provider
Description: LogMeIn Kernel Information Provider
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: LMIInfo
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: X5XSEx_Pr143
Description: X5XSEx_Pr143
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: X5XSEx_Pr143
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: A2 Direct Disk Access Support Driver
Description: A2 Direct Disk Access Support Driver
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: A2DDA
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Eventlog fouten: =========================

Applicatiefouten:
==================
Error: (06/24/2018 11:01:26 AM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. De opgegeven account bestaat al.

Error: (06/24/2018 10:01:45 AM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. De opgegeven account bestaat al.

Error: (06/24/2018 09:34:55 AM) (Source: BROWSER) (EventID: 8032) (User: )
Description: \Device\NetBT_Tcpip_{33B1ED06-A44C-4924-AAB2-84F627EEA03B}

Error: (06/24/2018 09:13:50 AM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. De opgegeven account bestaat al.

Error: (06/24/2018 09:08:40 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Naam van toepassing met fout: FacebookGameroom.exe, versie: 1.10.6515.35995, tijdstempel: 0x59fbdba6
Naam van module met fout: libcef.dll, versie: 3.2987.1601.0, tijdstempel: 0x5984c1cd
Uitzonderingscode: 0xc0000005
Foutoffset: 0x01afeb06
Id van proces met fout: 0xa40
Starttijd van toepassing met fout: 0x01d40b894c751636
Pad naar toepassing met fout: C:\Users\petra\AppData\Local\Facebook\Games\FacebookGameroom.exe
Pad naar module met fout: C:\Users\petra\AppData\Local\Facebook\Games\libcef.dll
Rapport-id: 6bbff049-777d-11e8-aa7d-bacf23e4499c

Error: (06/24/2018 09:08:36 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: FacebookGameroom.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: exception code c0000005, exception address 5A8BEB06
Stack:

Error: (06/24/2018 12:03:24 AM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. De opgegeven account bestaat al.

Error: (06/23/2018 11:39:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Naam van toepassing met fout: FacebookGameroom.exe, versie: 1.10.6515.35995, tijdstempel: 0x59fbdba6
Naam van module met fout: libcef.dll, versie: 3.2987.1601.0, tijdstempel: 0x5984c1cd
Uitzonderingscode: 0xc0000005
Foutoffset: 0x01afeb06
Id van proces met fout: 0x8a4
Starttijd van toepassing met fout: 0x01d40b39f75b187b
Pad naar toepassing met fout: C:\Users\petra\AppData\Local\Facebook\Games\FacebookGameroom.exe
Pad naar module met fout: C:\Users\petra\AppData\Local\Facebook\Games\libcef.dll
Rapport-id: f657c6d7-772d-11e8-9532-a0597455c69d


Systeemfouten:
=============
Error: (06/24/2018 11:22:54 AM) (Source: bowser) (EventID: 8003) (User: )
Description: De masterbrowser heeft een servermelding ontvangen van computer LAPTOP-9QJK96GA
die meent de masterbrowser voor het domein te zijn op transport NetBT_Tcpip_{33B1ED06-A44C-4924-AAB2-84F627EEA03B}.
De masterbrowser wordt gestopt of er wordt een verkiezing afgedwongen.

Error: (06/24/2018 10:58:56 AM) (Source: bowser) (EventID: 8003) (User: )
Description: De masterbrowser heeft een servermelding ontvangen van computer LAPTOP-9QJK96GA
die meent de masterbrowser voor het domein te zijn op transport NetBT_Tcpip_{33B1ED06-A44C-4924-AAB2-84F627EEA03B}.
De masterbrowser wordt gestopt of er wordt een verkiezing afgedwongen.

Error: (06/24/2018 10:46:56 AM) (Source: bowser) (EventID: 8003) (User: )
Description: De masterbrowser heeft een servermelding ontvangen van computer LAPTOP-9QJK96GA
die meent de masterbrowser voor het domein te zijn op transport NetBT_Tcpip_{33B1ED06-A44C-4924-AAB2-84F627EEA03B}.
De masterbrowser wordt gestopt of er wordt een verkiezing afgedwongen.

Error: (06/24/2018 10:34:54 AM) (Source: bowser) (EventID: 8003) (User: )
Description: De masterbrowser heeft een servermelding ontvangen van computer LAPTOP-9QJK96GA
die meent de masterbrowser voor het domein te zijn op transport NetBT_Tcpip_{33B1ED06-A44C-4924-AAB2-84F627EEA03B}.
De masterbrowser wordt gestopt of er wordt een verkiezing afgedwongen.

Error: (06/24/2018 10:22:53 AM) (Source: bowser) (EventID: 8003) (User: )
Description: De masterbrowser heeft een servermelding ontvangen van computer LAPTOP-9QJK96GA
die meent de masterbrowser voor het domein te zijn op transport NetBT_Tcpip_{33B1ED06-A44C-4924-AAB2-84F627EEA03B}.
De masterbrowser wordt gestopt of er wordt een verkiezing afgedwongen.

Error: (06/24/2018 10:10:56 AM) (Source: bowser) (EventID: 8003) (User: )
Description: De masterbrowser heeft een servermelding ontvangen van computer LAPTOP-9QJK96GA
die meent de masterbrowser voor het domein te zijn op transport NetBT_Tcpip_{33B1ED06-A44C-4924-AAB2-84F627EEA03B}.
De masterbrowser wordt gestopt of er wordt een verkiezing afgedwongen.

Error: (06/24/2018 10:03:32 AM) (Source: NetBT) (EventID: 4321) (User: )
Description: De naam WORKGROUP :1d kan niet op de interface met het IP-adres 192.168.178.129 worden geregistreerd.
De computer met het IP-adres 192.168.178.213 staat niet toe dat deze naam door deze computer
wordt gebruikt.

Error: (06/24/2018 09:58:54 AM) (Source: bowser) (EventID: 8003) (User: )
Description: De masterbrowser heeft een servermelding ontvangen van computer LAPTOP-9QJK96GA
die meent de masterbrowser voor het domein te zijn op transport NetBT_Tcpip_{33B1ED06-A44C-4924-AAB2-84F627EEA03B}.
De masterbrowser wordt gestopt of er wordt een verkiezing afgedwongen.


Windows Defender:
===================================
Date: 2015-01-28 21:52:27.253
Description:
Scan van Windows Defender is gestopt voordat deze was voltooid.
Scan-id:{A2680D67-A417-4FB1-83BC-F42DEB6E4F16}
Type scan:AntiSpyware
Scanparameters:Snelle scan
Gebruiker:NT AUTHORITY\NETWORK SERVICE

Date: 2015-01-12 03:02:15.707
Description:
Windows Defender heeft spyware en andere mogelijk ongewenste software aangetroffen.
Zie voor meer informatie:
http://go.microsoft.com/fwlink/?lin...rModifier:Win32/KipodToolsCby&threatid=207199
Naam:BrowserModifier:Win32/KipodToolsCby
Id:207199
Ernst:Hoog
Categorie:Browseraanpassing
Gevonden pad:file:C:\Program Files (x86)\BearShare Applications\BearShare\Helper.dll;file:C:\Program Files (x86)\BearShare Applications\BearShare\InstallHelper.dll;firefoxplugins:HKCU@S-1-5-21-3037185331-2861149877-865260356-1001\SOFTWARE\MozillaPlugins\BearSharePlugin;regkey:HKCU@S-1-5-21-3037185331-2861149877-865260356-1001\SOFTWARE\MozillaPlugins\BearSharePlugin
Type detectie:Concreet
Detectiebron:Systeem
Status:Onbekend
Gebruiker:NT AUTHORITY\NETWORK SERVICE
Procesnaam:c:\program files\windows defender\MpCmdRun.exe

Date: 2015-03-02 21:59:38.378
Description:
Windows Defender heeft een fout aangetroffen bij het laden van handtekeningen en probeert terug te keren naar een juiste set handtekeningen.
Geprobeerde handtekeningen:Huidig
Foutcode:0x80070002
Foutbeschrijving:Het systeem kan het opgegeven bestand niet vinden.
Handtekeningversie:0.0.0.0
Engineversie:0.0.0.0

Date: 2015-03-02 20:24:12.263
Description:
Windows Defender heeft een fout aangetroffen bij het laden van handtekeningen en probeert terug te keren naar een juiste set handtekeningen.
Geprobeerde handtekeningen:Huidig
Foutcode:0x80070002
Foutbeschrijving:Het systeem kan het opgegeven bestand niet vinden.
Handtekeningversie:0.0.0.0
Engineversie:0.0.0.0

Date: 2015-03-02 19:36:31.677
Description:
Windows Defender heeft een fout aangetroffen bij het laden van handtekeningen en probeert terug te keren naar een juiste set handtekeningen.
Geprobeerde handtekeningen:Huidig
Foutcode:0x80070002
Foutbeschrijving:Het systeem kan het opgegeven bestand niet vinden.
Handtekeningversie:0.0.0.0
Engineversie:0.0.0.0

CodeIntegrity:
===================================

Date: 2016-04-11 13:22:07.926
Description:
De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\hmpalert.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem.

Date: 2016-04-11 12:49:04.700
Description:
De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\hmpalert.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem.

Date: 2016-04-11 01:13:30.176
Description:
De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\hmpalert.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem.

Date: 2016-04-11 01:04:52.565
Description:
De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\hmpalert.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem.

Date: 2016-04-11 00:11:36.448
Description:
De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\hmpalert.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem.

Date: 2016-04-10 20:46:19.688
Description:
De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\hmpalert.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem.

Date: 2016-04-10 17:11:34.485
Description:
De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\hmpalert.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem.

Date: 2016-04-10 16:27:44.924
Description:
De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\hmpalert.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem.

==================== Geheugen info ===========================

Processor: Celeron(R) Dual-Core CPU T3000 @ 1.80GHz
Percentage geheugen in gebruik: 68%
Totaal fysiek RAM-geheugen: 3002.93 MB
Beschikbaar fysiek RAM-geheugen: 959.4 MB
Totaal Virtueel geheugen: 7501.11 MB
Beschikbaar Virtueel geheugen: 3044.16 MB

==================== Schijven ================================

Drive c: (control) (Fixed) (Total:285.23 GB) (Free:161.45 GB) NTFS ==>[systeem met boot componenten (verkregen van schijf)]
Drive d: (RECOVERY) (Fixed) (Total:12.66 GB) (Free:12.56 GB) NTFS

\\?\Volume{3a7ab48e-8ad8-11e0-9171-806e6f6e6963}\ (SYSTEM) (Fixed) (Total:0.19 GB) (Free:0.16 GB) NTFS

==================== MBR & Partitietabel ==================

========================================================
Disk: 0 (Size: 298.1 GB) (Disk ID: 8D465636)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=285.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=12.7 GB) - (Type=07 NTFS)

==================== Eind van Addition.txt ============================
 
Waarom gebruik jij een illegitiem geactiveerde Avast beveliging?

IFEO\cvh.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\EMET_GUI.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\fsui.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\hpcustpartic.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\moviemaker.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\pptview.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\sftdde.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\windowslivewriter.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlmail.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlsync.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlxphotogallery.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
 
hallo abraham
volgens mij gebruik ik een legitiem versie van avast
heb gewoon gekocht
 
Nu ik het onderzoek - kan ik inderdaad concluderen dat dit een tool van Avast zelf is.
 
ok,schrok al,
kan ik verder nog iets doen,
is al iets verbeterd maar nog erg traag
 
Waarschuwing: onderstaande bewerking is enkel voor deze computer bedoeld, het toepassen hiervan in een andere computer kan tot schade in Windows leiden.


We gaan
51a5c8edc4692-icon1337952077.png


Farbar Recovery Scan Tool (FRST.exe) opnieuw gebruiken.

Open een nieuw kladblok (of anders: notepad) bestand, via "Start\Alle programma’s\Bureau-accessoires\Kladblok (of Notepad)".
Kopieer en plak de tekst in het code-venster vanaf het woord Code in het lege kladblokvenster.

Code:
start
CreateRestorePoint:

HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restrictie <==== AANDACHT
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\...\Policies\system: [DisableChangePassword] 1
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\...\Policies\Explorer: [NoInternetOpenWith] 1
IFEO\cvh.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\EMET_GUI.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\fsui.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\hpcustpartic.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\moviemaker.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\pptview.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\sftdde.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\windowslivewriter.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlmail.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlsync.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlxphotogallery.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
SearchScopes: HKLM -> {3935291F-8D64-42E0-A3BD-33D49A80D65C} URL = hxxp://nl.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913935
Handler: livecall - Geen CLSID Waarde
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - Geen bestand
FF Extension: (Emulator) - C:\Users\petra\AppData\Roaming\TomTom\HOME\Profiles\atrvdw12.default\Extensions\Navcore.7.903.9183@tomtom.com [2011-08-06] [Verouderd] [ niet getekend]
FF Extension: (Map status indicator) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [2013-01-21] [Verouderd] [ niet getekend]
FF Plugin: @microsoft.com/GENUINE -> disabled [Geen bestand]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Geen bestand]
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\6\NP_wtapp.dll [Geen bestand]
FF Plugin-x32: www.exent.com/GameTreatWidget -> C:\Program Files (x86)\FantastiGames\NPGameTreatPlugin.dll [Geen bestand]
S2 X5XSEx_Pr143; \??\C:\Program Files (x86)\FantastiGames\X5XSEx_Pr143.Sys [X]

EmptyTemp:
CloseProcesses:
cmd: ipconfig /flushdns
cmd: netsh winsock reset
end

Sla nu dit kladblokbestand in de dezelfde locatie waar ook FRST.exe aanwezig is op als Fixlist.txt

Farbar Recovery Scan Tool (FRST.exe) met de fixlist.txt gebruiken
  • Windows Vista, Windows 7, Windows 8 en Windows 10: via rechtsklik op FRST.exe en kies voor "Als Administrator uitvoeren".
  • Als het programma wordt gestart, klik dan op Ja in de popup.
  • Druk op de Fix knop.
  • Na de fix wordt een logbestand - Fixlog.txt - in dezelfde locatie aangemaakt van waaruit FRST.exe is gestart.
  • Post de inhoud van dit logbestand in jouw volgende bericht.
 
hier het logje
Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 20.06.2018
Gestart door petra (24-06-2018 13:26:09) Run:1
Gestart vanaf C:\Users\petra\Desktop
Geladen Profielen: petra (Beschikbare Profielen: petra)
Boot Modus: Normal
==============================================

fixlist inhoud:
*****************
start
CreateRestorePoint:

HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restrictie <==== AANDACHT
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\...\Policies\system: [DisableChangePassword] 1
HKU\S-1-5-21-3037185331-2861149877-865260356-1001\...\Policies\Explorer: [NoInternetOpenWith] 1
IFEO\cvh.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\EMET_GUI.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\fsui.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\hpcustpartic.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\moviemaker.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\pptview.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\sftdde.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\windowslivewriter.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlmail.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlsync.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\wlxphotogallery.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
SearchScopes: HKLM -> {3935291F-8D64-42E0-A3BD-33D49A80D65C} URL = hxxp://nl.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913935
Handler: livecall - Geen CLSID Waarde
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - Geen bestand
FF Extension: (Emulator) - C:\Users\petra\AppData\Roaming\TomTom\HOME\Profiles\atrvdw12.default\Extensions\Navcore.7.903.9183@tomtom.com [2011-08-06] [Verouderd] [ niet getekend]
FF Extension: (Map status indicator) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [2013-01-21] [Verouderd] [ niet getekend]
FF Plugin: @microsoft.com/GENUINE -> disabled [Geen bestand]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Geen bestand]
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\6\NP_wtapp.dll [Geen bestand]
FF Plugin-x32: www.exent.com/GameTreatWidget -> C:\Program Files (x86)\FantastiGames\NPGameTreatPlugin.dll [Geen bestand]
S2 X5XSEx_Pr143; \??\C:\Program Files (x86)\FantastiGames\X5XSEx_Pr143.Sys [X]

EmptyTemp:
CloseProcesses:
cmd: ipconfig /flushdns
cmd: netsh winsock reset
end
*****************

Herstelpunt is succesvol gemaakt.
"HKLM\SOFTWARE\Policies\Microsoft\Windows Defender" => is succesvol verwijderd
"HKU\S-1-5-21-3037185331-2861149877-865260356-1001\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DisableChangePassword" => is succesvol verwijderd
"HKU\S-1-5-21-3037185331-2861149877-865260356-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoInternetOpenWith" => is succesvol verwijderd
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\cvh.exe" => is succesvol verwijderd
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\EMET_GUI.exe" => is succesvol verwijderd
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\fsui.exe" => is succesvol verwijderd
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\hpcustpartic.exe" => is succesvol verwijderd
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\moviemaker.exe" => is succesvol verwijderd
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\pptview.exe" => is succesvol verwijderd
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\sftdde.exe" => is succesvol verwijderd
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\windowslivewriter.exe" => is succesvol verwijderd
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\wlmail.exe" => is succesvol verwijderd
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\wlsync.exe" => is succesvol verwijderd
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\wlxphotogallery.exe" => is succesvol verwijderd
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{3935291F-8D64-42E0-A3BD-33D49A80D65C}" => is succesvol verwijderd
HKLM\Software\Classes\CLSID\{3935291F-8D64-42E0-A3BD-33D49A80D65C} => niet gevonden
"HKLM\Software\Classes\PROTOCOLS\Handler\livecall" => is succesvol verwijderd
"HKLM\Software\Classes\PROTOCOLS\Handler\msnim" => is succesvol verwijderd
HKLM\Software\Classes\CLSID\{828030A1-22C1-4009-854F-8E305202313F} => niet gevonden
C:\Users\petra\AppData\Roaming\TomTom\HOME\Profiles\atrvdw12.default\Extensions\Navcore.7.903.9183@tomtom.com => is succesvol verplaatst
C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com => is succesvol verplaatst
C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com => pad is succesvol verwijderd
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => is succesvol verwijderd
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => is succesvol verwijderd
"HKLM\Software\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0" => is succesvol verwijderd
"HKLM\Software\Wow6432Node\MozillaPlugins\www.exent.com/GameTreatWidget" => is succesvol verwijderd
"HKLM\System\CurrentControlSet\Services\X5XSEx_Pr143" => is succesvol verwijderd
X5XSEx_Pr143 => dienst is succesvol verwijderd
Proces succesvol afgesloten.

========= ipconfig /flushdns =========


Windows IP-configuratie

De DNS-omzettingscache is leeggemaakt.

========= Eind van CMD: =========


========= netsh winsock reset =========


De Winsock-catalogus is opnieuw ingesteld.
De computer dient opnieuw te worden opgestart om het opnieuw instellen te voltooien.


========= Eind van CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 1981033 B
Java, Flash, Steam htmlcache => 506 B
Windows/system/drivers => 69004414 B
Edge => 0 B
Chrome => 144592518 B
Firefox => 622592 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 33058 B
Public => 0 B
ProgramData => 0 B
systemprofile => 33318 B
systemprofile32 => 115232 B
LocalService => 132244 B
NetworkService => 72430 B
petra => 3257114 B
LogMeInRemoteUser => 33058 B

RecycleBin => 115967 B
EmptyTemp: => 217.8 MB tijdelijke gegevens verwijderd.

================================


Het systeem moest herstart worden.

==== Eind van Fixlog 13:28:24 ====
 
Ik wil nu graag, dat jij de Eset Online Scanner op de juiste wijze gaat gebruiken.

58a3608585d6f-Start_1.png

In het volgende scherm na klikken op Scan Nu wordt het Eset bestand als download aangeboden.
In IE kan je ook kiezen voor Uitvoeren - maar ik raad aan dit niet te doen.

Het voordeel van het downloaden houdt in, dat jij de Eset Online scan als App kan uitvoeren.

Na downloaden vind je dit bestand:
58a361b233640-Logo.png


Klik hier met rechts op en kies voor "Als administrator uitvoeren".


Vervolgens krijg je dan het eerste App-venster:​

58a36ae622fa4-Opstart.png

Klik op de knop Accepteren en dan krijg je een nieuw App-venster:​

58a363693714d-Instellingen.png

Klik nu in dat App-venster op > Geavanceerde instellingen
- daardoor krijg je weer een nieuw venster:​

58a3641ed6a43-Instellingen_2.png


Zet de vinkjes nu op dezelfde wijze als in bovenstaande voorbeeld.
Inderdaad wordt er zo niets verwijderd - maar dat heeft een reden.
Het kan altijd gebeuren dat er iets verwijderd wordt dat niet had gemogen.
Aan het einde van deze handleiding kom ik hier nog terug.

Klik nu op de knop Scannen.

Eset zal nu eerst zichzelf updaten, dit kan even duren.
Daarna start automatisch de scan.

Heb je veel ruimte en heel veel persoonlijke bestanden zoals muziek en video's
- dan zal de scan naar gelang enige tijd duren -
dit is ook afhankelijk van de processor in jouw computer of notebook.

Hieronder zie je hoe het scanvenster er uit ziet
(met doorlopende en veranderende reclame van Eset):

58a36604f2f85-scan.png


Is na verloop van tijd de scan klaar, dan krijg je venster met de gevonden bestanden:​

58a36726aa8ff-Eerste_Einde.png

Let nu goed op:

in de eerste plaats kies je nu voor Opslaan als tekstbestand.
Sla dit bestand in een makkelijk terug te vinden lokatie op als bijv. Esetscan datum
(bijv. Esetscan 14 feb 2017)

Daarna is het goed afsluiten van de scan een weetje.
Klik nu eerst op wat ik groen omcirkeld heb: Niet opschonen.

Je krijgt dan volgend venster te zien:​

58a3688548e24-Tweede_Einde.png

Je kan overwegen de Esetscanner in Windows aanwezig te laten voor een toekomstige scans,
maar je kan ook het vinkje zetten Gegevens van toepassing bij sluiten verwijderen.
Daarmee wordt Eset verwijderd.

Klik op de knop Voltooien.

Daardoor ga je naar het laatste scherm:​

58a369a2399c6-Dersde_Einde.png


Klik op het kruisje rechtsbovenin om Eset definitief te sluiten.

Nu kom ik terug op het gegeven, dat wanneer er bestanden door Eset gevonden zijn,
jij dit duidelijk maakt door de inhoud van het Esetlog in jouw antwoord mee te posten.
Zo kan ik zien dat of alles wel of niet verwijderd dient te worden.
Dat verwijderen laat ik dan middels een andere toepassing gebeuren.

Waar vind jij de website van Eset Online scanner?
Ga naar: https://www.eset.com/nl/thuis/producten/online-scanner/
 
Status
Niet open voor verdere reacties.
Steun Ons

Nieuwste berichten

Terug
Bovenaan