Cannot change network settings

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • Ztrahel
    PCHF Member
    • Feb 2017
    • 14

    #1

    Cannot change network settings

    Hello,

    Since some weeks I’ve been having some lags. They’re very weird, when I’m gaming my ping is at ~27ms instead of ~18ms like it used to be. Although it feels like 100ms, or sometimes just freezes.
    It could be because I messed something up by fooling around with VirtualBox/VMWare, but I’m not certain…

    I wanted to try and change my DNS, but got the following problem:
    [MEDIA=imgur]ldQKSGN[/MEDIA]

    Okay, weird. I google it and get “I fixed it by resetting windows 10, nothing else worked”.

    I don’t want to do this, because … “When all else fails troubleshooting a network issue, you can always remove and re-add the network adapter.”
    → When I tried to uninstall and reinstall my network adapter, it was not recognized anymore so I had to do system restore to 2 weeks back.

    The next solution I found:
    Another fix was: “Try to remove the “Bridged” entry from VMWare’s program called “Virtual Network Editor””

    Now I see I have some Bridged connections here …
    [MEDIA=imgur]no1yd2Q[/MEDIA]

    When I try to uninstall …
    [MEDIA=imgur]3qxWWB0[/MEDIA]
    Now, error 0x8007007E, seems like it can be a million things…

    Okay, I try to uncheck the boxes.
    [MEDIA=imgur]fPpMgcA[/MEDIA]
    Get the same error as before…
    “An unexpected condition occurred. Not all of your requested changes in settings could be made.”

    Many thanks if someone can help.

    Greetings
  • jmarket
    PCHF Owner
    • Jan 2015
    • 7635

    #2
    Hi Ztrahel and welcome to PCHF Let’s get you started shall we?

    Please download the FRST 32 bit or FRST 64bit version to suit your operating system. It is important FRST is downloaded to your desktop.

    If you are unsure if your operating system is 32 or 64 Bit please go HERE.

    Once downloaded right click the FRST desktop icon and select “Run as administrator” from the menu.



    If you receive any security warnings, or the User Account Control warning opens at any time whilst using FRST you can safely allow FRST to proceed.
    Frst will open with two dialogue boxes, accept the disclaimer.


    Accept the default whitelist options,
    If the additions.txt options box is not checked please select it.
    Then select “Scan”



    Frst will take a few minutes to scan your computer, and when finished will produce two log files on your desktop, FRST.txt, and Addition.txt. They will display immediately on the desktop, but can be reopened later as a notepad file.



    Please Copy and Paste the contents of these logs in your next post for review by our Security Team

    Comment

    • Ztrahel
      PCHF Member
      • Feb 2017
      • 14

      #3
      Thank you for your quick response! Here you go.

      Comment

      • Ztrahel
        PCHF Member
        • Feb 2017
        • 14

        #4
        I just had a windows update. I can change the settings now and the bridged adapters are gone but I’m still lagging.

        Comment

        • Malnutrition
          PCHF Moderator
          • Jul 2016
          • 7041

          #5
          Remove BitTorrent from your machine.. You may reinstall it after we are done here. Just at least refrain from using i it while we work on your machine please.

          Also, remove this program from your machine with Geek Uninstaller.

          Spybot - Search & Destroy (HKLM-x32...{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)

          Clean up temp files and reduce startup load with CCleaner.

          [ul]
          [li]Download CCleaner from here.[/li][li]After install Click Options.[/li][li]Go to monitoring.[/li][li]Uncheck All Monitoring items.[/li][li]Go to advanced – Click close program after cleaning.[/li][li]Go to settings – click run ccleaner when the computer starts.[/li][li]Now that you have ccleaner installed and set-up:[/li][li]Open the program.[/li][li]Go to Tools[/li][li]Go to Startup[/li][li]Now double click each item. To Disable.[/li][li]Leave only your antivirus enabled.[/li][li]Then disable All items in your scheduled task as well.[/li][li]Unless they are related to windows defender.Or your antivirus.[/li][li]Reboot the machine.[/li][/ul]

          FRST Fix.


          Click Here To Download Fixlist.

          Download attached fixlist.txt file and save it to the Desktop. NOTE. It’s important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work. NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system Run FRST/FRST64 and press the Fix button just once and wait. If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run. When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.

          Eliminate Bad Settings with this nice tool.
          [ul]
          [li]Download SupRestric.exe save to your desktop.[/li][li]Close all running programs.[/li][li]Temporarily disable the antivirus[/li][li]Double click the file to launch it.[/li][li]Windows: 7/8/10 Vista and run as administrator[/li][li]Click Yes at any prompt.[/li]
          [li]The analysis takes only a few moments.[/li][li]The report is on the desktop ( CTR.txt )[/li][li]Copy paste report in next reply.[/li][li]A reboot is needed to complete the repairs.[/li][/ul]

          Adware Cleaner Scan.

          Please download AdwCleaner by Xplode onto your desktop.

          [ul]
          [li]Close all open programs and internet browsers.[/li][li]Double click on adwcleaner.exe to run the tool.[/li][li]Click on Scan button.[/li][li]When the scan has finished click on Clean button.[/li][li]Your computer will be rebooted automatically. A text file will open after the restart.[/li][li]Please post the contents of that logfile with your next reply.[/li][li]You can find the logfile at C:\AdwCleaner[S1].txt as well.[/li][/ul]


          After you have posted the FRST fix.


          Disable your Antivirus & Anti spyware applications!!
          Download Autologger to your desktop.
          Create a new folder on desktop.
          Unzip it there.
          Right click Autologger and run as admin.
          AVZ4 will open and scan your machine, allow this to complete.
          Upload Collectionlog.zip to your next reply.
          [MEDIA=imgur]KA81Q57[/MEDIA]

          Comment

          • Ztrahel
            PCHF Member
            • Feb 2017
            • 14

            #6
            there was no C:\AdwCleaner[S1].txt, but there was a C:\AdwCleaner[S0].txt and [C0] so including those…


            [HEADING=1]
            Code:
            Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 29-01-2017
            Gestart door Ezra (05-02-2017 01:02:36) Run:1
            Gestart vanaf C:\Users\Ezra\Desktop
            Geladen Profielen: Ezra (Beschikbare Profielen: Ezra & School & DefaultAppPool)
            Boot Modus: Normal[/HEADING]
            fixlist inhoud:
            [HR][/HR]
            start
            CloseProcesses:
            CreateRestorePoint:
            Emptytemp:
            HKLM-x32...\Run: => 
            Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll 
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000...\Run: [Google Update] => C:\Users\Ezra\AppData\Local\Google\Update\1.3.32.7\GoogleUpdateCore.exe [601752 2016-12-16] (Google Inc.)
            Startup: C:\Users\Ezra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup~Disabled [2017-01-27] ()
            BootExecute: autocheck autochk * sdnclean64.exe
            Tcpip\Parameters: [DhcpNameServer] 195.130.130.4 195.130.131.4
            Tcpip..\Interfaces{62498916-e653-48f3-a23c-528bd2c27d3e}: [DhcpNameServer] 195.130.130.4 195.130.131.4
            Tcpip..\Interfaces{a46356ca-c77b-4524-8602-2352a4ed1953}: [NameServer] 8.8.8.8,8.8.4.4
            Tcpip..\Interfaces{a46356ca-c77b-4524-8602-2352a4ed1953}: [DhcpNameServer] 195.130.130.4 195.130.131.4
            Winsock: Catalog5 07 C:\Program Files (x86)\Bonjour\mdnsNSP.dll => Geen bestand
            HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrictie <======= AANDACHT
            HKU.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrictie <======= AANDACHT
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrictie <======= AANDACHT
            FF Plugin-x32: @tools.google.com/Google Update;version=3 → C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
            FF Plugin-x32: @tools.google.com/Google Update;version=9 → C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
            C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
            FF Plugin HKU\S-1-5-21-1109422385-2511755253-1881603609-1000: @tools.google.com/Google Update;version=3 → C:\Users\Ezra\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
            FF Plugin HKU\S-1-5-21-1109422385-2511755253-1881603609-1000: @tools.google.com/Google Update;version=9 → C:\Users\Ezra\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
            FF Plugin HKU\S-1-5-21-1109422385-2511755253-1881603609-1000: @unity3d.com/UnityPlayer,version=1.0 → C:\Users\Ezra\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-01-26] (Unity Technologies ApS)
            CHR HKLM-x32...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
            S2 VMUSBArbService; “C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe” 
            S3 ALSysIO; ??\C:\Users\Ezra\AppData\Local\Temp\ALSysIO64.sys 
            S3 dbx; system32\DRIVERS\dbx.sys 
            S3 GunBod; ??\E:\Games\SoftnyxGame\GunboundIS\avital\gunbod64.sys 
            U3 idsvc; geen ImagePath
            S3 vmci; \SystemRoot\System32\drivers\vmci.sys 
            C:\Users\Ezra\AppData\Roaming\Tencent
            2017-01-27 14:40 - 2014-07-11 16:48 - 00000356 _____ C:\WINDOWS\Tasks\DriverToolkit Autorun.job
            2017-01-27 14:40 - 2014-06-08 16:29 - 00000924 _____ C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA.job
            2017-01-27 14:40 - 2014-06-08 16:29 - 00000902 _____ C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core.job
            2017-01-27 14:40 - 2014-02-06 14:46 - 00000940 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
            2017-01-27 14:22 - 2014-02-06 14:03 - 00000000 ____D C:\WINDOWS\system32\MRT
            2017-01-27 14:20 - 2014-02-06 14:03 - 135657872 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
            2017-01-27 14:06 - 2016-12-18 01:38 - 00002832 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
            2017-01-27 14:06 - 2016-11-28 14:32 - 00002962 _____ C:\WINDOWS\System32\Tasks\CTServiceInstaller
            2017-01-27 14:06 - 2016-10-23 16:38 - 00002170 _____ C:\WINDOWS\System32\Tasks\USER_ESRV_SVC_WILLAMETTE
            2017-01-27 14:06 - 2016-07-09 17:25 - 00003580 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA
            2017-01-27 14:06 - 2016-07-09 17:25 - 00003312 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core
            2017-01-27 14:06 - 2016-05-27 15:51 - 00002728 _____ C:\WINDOWS\System32\Tasks\Overwolf Updater Task
            2017-01-27 14:06 - 2014-08-30 19:59 - 00003562 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
            2017-01-27 14:06 - 2014-08-30 19:59 - 00003338 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
            2017-01-27 14:06 - 2014-07-11 16:48 - 00002460 _____ C:\WINDOWS\System32\Tasks\DriverToolkit Autorun
            2017-01-27 14:06 - 2014-06-19 19:30 - 00002622 _____ C:\WINDOWS\System32\Tasks\BaronReplays
            2017-01-27 14:06 - 2014-06-08 16:29 - 00003690 _____ C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA
            2017-01-27 14:06 - 2014-06-08 16:29 - 00003448 _____ C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core
            2017-01-27 14:06 - 2014-02-06 14:19 - 00002598 _____ C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask
            2017-01-27 14:05 - 2016-03-03 20:16 - 00002866 _____ C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-dekerfezra@gmail.com
            2017-01-27 14:05 - 2015-05-15 13:09 - 00003542 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
            2017-01-27 14:05 - 2014-02-06 14:46 - 00003258 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
            2017-01-27 14:07 - 2016-05-25 17:44 - 00003388 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A3A1128E-A6C4-431A-A05C-1E19BC85B47E}
            2017-01-27 14:07 - 2016-02-21 16:54 - 00003384 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{2B0DCEB8-FA4E-4BD1-A19B-A36A147CC743}
            2017-01-08 19:54 - 2014-02-06 17:04 - 00000000 __SHD C:\WINDOWS\SysWOW64\AI_RecycleBin
            2016-03-12 21:34 - 2016-03-12 21:48 - 0000132 _____ () C:\Users\Ezra\AppData\Roaming\Adobe PNG Format CS6 Prefs
            2016-03-04 18:59 - 2016-03-15 02:20 - 0001456 _____ () C:\Users\Ezra\AppData\Local\Adobe Save for Web 13.0 Prefs
            2014-05-01 19:40 - 2015-12-31 18:55 - 0007610 _____ () C:\Users\Ezra\AppData\Local\Resmon.ResmonCfg
            2016-07-02 22:13 - 2016-07-02 22:13 - 0000000 _____ () C:\Users\Ezra\AppData\Local{0F559947-C2B3-4688-A79B-1E8B043232A8}
            2016-07-02 22:19 - 2016-07-02 22:19 - 0000000 _____ () C:\Users\Ezra\AppData\Local{51993163-AAC4-471A-AA8C-07C3A42D4A3A}
            2016-07-02 22:17 - 2016-07-02 22:17 - 0000000 _____ () C:\Users\Ezra\AppData\Local{E5A8D5D0-20A1-4247-9DFE-C44A29B50175}
            2016-01-11 03:39 - 2016-01-11 03:39 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
            2015-11-20 00:27 - 2015-11-20 00:27 - 0000231 _____ () C:\ProgramData\HirezPipeError.txt
            CustomCLSID: HKU\S-1-5-21-1109422385-2511755253-1881603609-1000_Classes\CLSID{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 → C:\Users\Ezra\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => Geen bestand
            CustomCLSID: HKU\S-1-5-21-1109422385-2511755253-1881603609-1000_Classes\CLSID{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 → C:\Users\Ezra\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => Geen bestand
            CustomCLSID: HKU\S-1-5-21-1109422385-2511755253-1881603609-1000_Classes\CLSID{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 → C:\Users\Ezra\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => Geen bestand
            Task: {01D1A729-CAFF-41A1-945F-049DA762749C} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => E:\Situationally useful\MBAM + SpyBot\Spybot - Search & Destroy\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
            Task: {0BBA429F-F8B6-46CD-85F4-4E5277E0E8B7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d → Geen bestand <==== AANDACHT
            Task: {0D18573F-0E1A-4A0D-A66C-36C8A9D0705B} - System32\Tasks\BaronReplays => C:\Users\Ezra\Downloads\BaronReplays\BaronReplays.exe
            Task: {120E8B19-9BBE-4D8C-A916-2B929E7C9A04} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d → Geen bestand <==== AANDACHT
            Task: {14B802D3-7889-4BD6-9FBC-87EC0C0632B7} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
            Task: {18BE20A9-12E8-48FC-83A9-585C16C4B144} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
            Task: {27F33F80-2C53-4C2D-8465-367CF84CBF5E} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
            Task: {2DDA6923-8D10-4578-8BB1-1A26FD24E5B0} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
            Task: {2ECC6DD4-4F1D-48A3-BB9B-81E8E1715249} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
            Task: {301A62D9-2638-4A88-9B9B-D0CDCDD78F76} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-01-27] (Adobe Systems Incorporated)
            Task: {3603A9BE-426B-4E91-889C-54EEEA1FF246} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2016-03-17] (Intel Corporation)
            Task: {39BB7A0C-53A4-4185-ADC1-4381FB0755C1} - System32\Tasks\ASUS\ASUS DigiVRM Help => C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\VRMHelp.exe [2011-11-14] (ASUSTeK Computer Inc.)
            Task: {3A413BED-89BA-4BFE-A464-C7C563B8CA69} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
            Task: {3E86D199-EC56-470D-B0F1-C2EAE8723724} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
            Task: {41258844-13BC-411F-B21A-6B8313C68C1A} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent → Geen bestand <==== AANDACHT
            Task: {458B9636-52F7-4DF9-BAA6-851E255377C2} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
            Task: {45CED75A-B165-4208-84FA-A073E5CFA5E1} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
            Task: {461559F7-C100-4D5E-9DAC-6B1158A77EE0} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
            Task: {4801929D-91EF-4BC5-B313-E3051C5E7430} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig → Geen bestand <==== AANDACHT
            Task: {51DA5983-85A3-4FDA-A681-D9642473C33B} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr.exe [2011-09-09] ()
            Task: {56D52DE4-7837-43C6-ADED-EB695C4D624F} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d → Geen bestand <==== AANDACHT
            Task: {61D032D1-5A41-4C28-B0B6-B16BBC8D06AB} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => E:\Situationally useful\MBAM + SpyBot\Spybot - Search & Destroy\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.)
            Task: {6DA95CDB-0F67-4A11-9B72-A3FE9CD3E3B9} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent → Geen bestand <==== AANDACHT
            Task: {6E18893F-7F5E-4595-96F7-B7407B319AC1} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [2015-03-12] (Tweaking.com)
            Task: {715A5704-2B8B-420C-9A93-221FC7DC7D35} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe
            Task: {72C9506D-4948-48C0-AC9D-DC929B80C7BF} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
            Task: {75DE8F95-5EBA-4A88-A022-945E59678FA0} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
            Task: {77C94308-4335-4698-AEE6-5ECDD0047405} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
            Task: {77DED4BE-F53E-46E9-A58D-BA8364E83016} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
            Task: {78EABB8F-DDE2-4E16-A427-F9DD088F7A26} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
            Task: {838A574E-09D8-4796-91D7-CC65A5895490} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-dekerfezra@gmail.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-10-14] (Adobe Systems Incorporated)
            Task: {85306B9E-9BA9-4D27-81F7-F6DD583EB131} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
            Task: {8B1DBB9A-396B-4654-A987-2A101EE1574E} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B → Geen bestand <==== AANDACHT
            Task: {8BA9A19B-08A0-4791-A7F4-A51F65E9C86E} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
            Task: {91B8AB30-CCCE-486C-BF53-2D15F96E9CD1} - System32\Tasks\USER_ESRV_SVC_WILLAMETTE => Wscript.exe //B //NoLogo “C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\task.vbs”
            Task: {99297AE5-FDCD-4CA7-B897-13D9891026CA} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d → Geen bestand <==== AANDACHT
            Task: {9AEBD2A1-331B-48DD-B2C9-7C33DDED7AA5} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
            Task: {9C6DB456-9A01-4A6A-8067-82CA62D876B7} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
            Task: {9F136684-ACB7-4FE0-9CEA-5B407B402721} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
            Task: {A34B4AC1-BE38-4545-910C-C68CB803CC61} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA => C:\Users\Ezra\AppData\Local\Google\Update\GoogleUpdate.exe [2016-07-09] (Google Inc.)
            Task: {AB2DA77E-B6D6-4EA6-82CA-5A338ADA6807} - System32\Tasks\DriverToolkit Autorun => C:\Program Files (x86)\DriverToolkit\DriverToolkit.exe
            Task: {ADCB1E44-EF86-4BBB-B4D0-CC5DF4AC6029} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA => C:\Users\Ezra\AppData\Local\Facebook\Update\FacebookUpdate.exe
            Task: {AEA1F92B-D69C-4B96-8511-B3F62578A0BF} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2017-01-04] (Overwolf LTD)
            C:\Users\Ezra\AppData\Local\Facebook
            Task: {C04AA215-4522-4595-8937-D68E04615E6F} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd → Geen bestand <==== AANDACHT
            Task: {C0A78A6F-A543-40CE-AEBC-4B5B8C62988B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core => C:\Users\Ezra\AppData\Local\Google\Update\GoogleUpdate.exe [2016-07-09] (Google Inc.)
            Task: {C44DF3A0-8C8C-4AF1-A5FF-ED82F3B15FEE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated)
            Task: {C67684B2-62EC-4193-A9A5-7FF90629D643} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
            Task: {CA21BA89-C323-4956-A35F-72AC4BDBFE6A} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core => C:\Users\Ezra\AppData\Local\Facebook\Update\FacebookUpdate.exe
            Task: {D38D08D1-5DD3-4918-8DD5-B5BAC32B5DFF} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d → Geen bestand <==== AANDACHT
            Task: {DE8AECD2-7BB7-4385-952E-4F929D22CA9D} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
            Task: {E9383294-AF8E-4364-A19C-8393307BFFA2} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
            Task: {F3AA22B5-9DDF-497D-B3DC-E7AC0D1369A8} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe
            Task: {FC721942-3060-47E2-B935-8DE112687CA4} - \Microsoft\Windows\Setup\gwx\launchtrayprocess → Geen bestand <==== AANDACHT
            Task: {FCB9ECB0-EB7F-4BBE-A2A3-856181687726} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
            Task: {FD1EB7A9-CCDB-4756-9E01-FB427D94AB6F} - System32\Tasks\CTServiceInstaller => C:\Program Files (x86)\Cold Turkey\CTServiceInstaller.exe [2016-04-07] (Felix Belzile)
            Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core.job => C:\Users\Ezra\AppData\Local\Facebook\Update\FacebookUpdate.exe
            Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA.job => C:\Users\Ezra\AppData\Local\Facebook\Update\FacebookUpdate.exe
            ShortcutWithArgument: C:\Users\Ezra\Dropbox\KDG.NET - Framework\Developer Command Prompt for VS2015.lnk → C:\Windows\System32\cmd.exe (Microsoft Corporation) → /k ““C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\Tools\VsDevCmd.bat””
            ShortcutWithArgument: C:\Users\Ezra\Desktop\Stream\TwitchAlerts Stream Labels.lnk → C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) → --profile-directory=Default --app-id=kgmggmdngboajiakmbpdknfpdelbjbcg
            ShortcutWithArgument: C:\Users\Ezra\AppData\Local\Google\Chrome\User Data\App-opstartprogramma van Chrome.lnk → C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) → --show-app-list
            ShortcutWithArgument: C:\Users\Ezra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\App-opstartprogramma van Chrome.lnk → C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) → --show-app-list
            ShortcutWithArgument: C:\Users\Ezra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps\Pomodo’more.lnk → C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) → --profile-directory=Default --app-id=hficppmoghghfokbapbmbjbcenolcpep
            ShortcutWithArgument: C:\Users\Ezra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps\TwitchAlerts Stream Labels.lnk → C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) → --profile-directory=Default --app-id=kgmggmdngboajiakmbpdknfpdelbjbcg
            ShortcutWithArgument: C:\Users\Ezra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk → C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) → --disable-new-avatar-menu
            AlternateDataStreams: C:\Users\Ezra\Desktop\CodeLite.exe - Shortcut.lnk:com.dropbox.attributes [168]
            AlternateDataStreams: C:\Users\Ezra\Desktop\JavaScript - Snelkoppeling.lnk:com.dropbox.attributes [168]
            AlternateDataStreams: C:\Users\Ezra\Desktop\KDG - Snelkoppeling.lnk:com.dropbox.attributes [168]
            AlternateDataStreams: C:\Users\Ezra\Desktop\rstudio.exe - Shortcut.lnk:com.dropbox.attributes [168]
            AlternateDataStreams: C:\Users\School\Desktop\CodeLite - Snelkoppeling.lnk:com.dropbox.attributes [168]
            HKLM...\StartupApproved\Run32: => “beid”
            HKLM...\StartupApproved\Run32: => “Gaming mouse”
            HKLM...\StartupApproved\Run32: => “SunJavaUpdateSched”
            HKLM...\StartupApproved\Run32: => “SDTray”
            HKLM...\StartupApproved\Run32: => “vmware-tray.exe”
            HKLM...\StartupApproved\Run32: => “Corsair Utility Engine”
            HKLM...\StartupApproved\Run32: => “iTunesHelper”
            HKLM...\StartupApproved\Run32: => “NvBackend”
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000...\StartupApproved\StartupFolder: => “XenoSuite.lnk”
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000...\StartupApproved\Run: => “Dropbox Update”
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000...\StartupApproved\Run: => “GAINWARD”
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000...\StartupApproved\Run: => “OneDrive”
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000...\StartupApproved\Run: => “puush”
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000...\StartupApproved\Run: => “Skype”
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000...\StartupApproved\Run: => “Akamai NetSession Interface”
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000...\StartupApproved\Run: => “Google Update”
            MSCONFIG\Services: AdobeARMservice => 2
            MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
            MSCONFIG\Services: Apple Mobile Device => 2
            MSCONFIG\Services: Apple Mobile Device Service => 2
            MSCONFIG\Services: asComSvc => 2
            MSCONFIG\Services: asHmComSvc => 2
            MSCONFIG\Services: AsusFanControlService => 2
            MSCONFIG\Services: Bonjour Service => 2
            MSCONFIG\Services: DragonUpdater => 2
            MSCONFIG\Services: EventLog => 2
            MSCONFIG\Services: Everything => 2
            MSCONFIG\Services: gupdate => 2
            MSCONFIG\Services: gupdatem => 3
            MSCONFIG\Services: Hamachi2Svc => 2
            MSCONFIG\Services: HiPatchService => 2
            MSCONFIG\Services: ICCS => 3
            MSCONFIG\Services: iPod Service => 3
            MSCONFIG\Services: LanmanWorkstation => 2
            MSCONFIG\Services: MozillaMaintenance => 3
            MSCONFIG\Services: NvNetworkService => 2
            MSCONFIG\Services: NvStreamNetworkSvc => 3
            MSCONFIG\Services: NvStreamSvc => 2
            MSCONFIG\Services: OracleMTSRecoveryService => 3
            MSCONFIG\Services: OracleServiceXE => 2
            MSCONFIG\Services: OracleXEClrAgent => 3
            MSCONFIG\Services: OracleXETNSListener => 2
            MSCONFIG\Services: Razer Game Scanner Service => 2
            MSCONFIG\Services: Realtek11nSU => 2
            MSCONFIG\Services: SDScannerService => 2
            MSCONFIG\Services: SDUpdateService => 2
            MSCONFIG\Services: SDWSCService => 2
            MSCONFIG\Services: SkypeUpdate => 2
            MSCONFIG\Services: Steam Client Service => 3
            MSCONFIG\Services: SwitchBoard => 3
            MSCONFIG\Services: TeamViewer => 2
            MSCONFIG\Services: TeamViewer9 => 2
            MSCONFIG\Services: VMAuthdService => 2
            MSCONFIG\Services: VMnetDHCP => 2
            MSCONFIG\Services: VMUSBArbService => 2
            MSCONFIG\Services: VMware NAT Service => 2
            MSCONFIG\Services: VMwareHostd => 2
            MSCONFIG\Services: wampapache => 3
            MSCONFIG\Services: wampmysqld => 3
            MSCONFIG\Services: XblAuthManager => 3
            MSCONFIG\Services: XblGameSave => 3
            MSCONFIG\Services: XboxNetApiSvc => 3
            MSCONFIG\startupreg: Adobe ARM => “C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe”
            MSCONFIG\startupreg: Adobe Creative Cloud => “C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe” --showwindow=false --onOSstartup=true
            MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => “C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe”
            MSCONFIG\startupreg: AdobeCS6ServiceManager => “C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe” -launchedbylogin
            MSCONFIG\startupreg: Akamai NetSession Interface => “C:\Users\Ezra\AppData\Local\Akamai\netsession_win.exe”
            MSCONFIG\startupreg: CamserviceOG => E:\Cam\Hercules Optical Glass\XtrCtrlEx.exe /startup
            MSCONFIG\startupreg: Facebook Update => “C:\Users\Ezra\AppData\Local\Facebook\Update\FacebookUpdate.exe” /c /nocrashserver
            MSCONFIG\startupreg: iTunesHelper => “C:\Program Files\iTunes\iTunesHelper.exe”
            MSCONFIG\startupreg: OPGG Recorder => “C:\Users\Ezra\Downloads\opggrecorder.exe”
            MSCONFIG\startupreg: QuickTime Task => “E:\Media\Quicktime\QTTask.exe” -atboottime
            MSCONFIG\startupreg: RzWizard => C:\Program Files (x86)\Razer\RzWizard\RzWizard.exe
            MSCONFIG\startupreg: SwitchBoard => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
            MSCONFIG\startupreg: USB3MON => “C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe”
            MSCONFIG\startupreg: vmware-tray.exe => “C:\Users\Ezra\VMware\vmware-tray.exe”
            Reg: reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
            Reg: reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
            CMD: netsh advfirewall reset
            CMD: netsh advfirewall set allprofiles state ON
            CMD: ipconfig /flushdns
            CMD: netsh winsock reset catalog
            Emptytemp:
            RemoveProxy:
            reboot:
            end
            [HR][/HR]
            Proces succesvol afgesloten.
            Fout: (0) Mislukt een herstelpunt maken.
            HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\ => waarde is succesvol verwijderd.
            HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SDWinLogon => sleutel niet gevonden.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\Software\Microsoft\Windows\CurrentVersion\Run\Google Update => waarde niet gevonden.
            C:\Users\Ezra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup~Disabled => is succesvol verplaatst.
            HKLM\System\CurrentControlSet\Control\Session Manager\BootExecute => waarde met succes hersteld
            HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\DhcpNameServer => waarde is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces{62498916-e653-48f3-a23c-528bd2c27d3e}\DhcpNameServer => waarde is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces{a46356ca-c77b-4524-8602-2352a4ed1953}\NameServer => waarde is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces{a46356ca-c77b-4524-8602-2352a4ed1953}\DhcpNameServer => waarde niet gevonden.
            HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000007 => sleutel niet gevonden.
            HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => sleutel is succesvol verwijderd.
            HKU.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer => sleutel niet gevonden.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Policies\Microsoft\Internet Explorer => sleutel is succesvol verwijderd.
            HKLM\Software\Wow6432Node\MozillaPlugins@tools.google.com/Google Update;version=3 => sleutel is succesvol verwijderd.
            C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll => is succesvol verplaatst.
            HKLM\Software\Wow6432Node\MozillaPlugins@tools.google.com/Google Update;version=9 => sleutel is succesvol verwijderd.
            C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll => niet gevonden.
            “C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll” => niet gevonden.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\Software\MozillaPlugins@tools.google.com/Google Update;version=3 => sleutel is succesvol verwijderd.
            C:\Users\Ezra\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll => is succesvol verplaatst.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\Software\MozillaPlugins@tools.google.com/Google Update;version=9 => sleutel is succesvol verwijderd.
            C:\Users\Ezra\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll => niet gevonden.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\Software\MozillaPlugins@unity3d.com/UnityPlayer,version=1.0 => sleutel is succesvol verwijderd.
            C:\Users\Ezra\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll => is succesvol verplaatst.
            HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj => sleutel is succesvol verwijderd.
            VMUSBArbService => dienst niet gevonden.
            ALSysIO => dienst niet gevonden.
            dbx => dienst niet gevonden.
            GunBod => dienst niet gevonden.
            HKLM\System\CurrentControlSet\Services\idsvc => sleutel is succesvol verwijderd.
            idsvc => dienst is succesvol verwijderd.
            vmci => dienst niet gevonden.
            C:\Users\Ezra\AppData\Roaming\Tencent => is succesvol verplaatst.
            C:\WINDOWS\Tasks\DriverToolkit Autorun.job => is succesvol verplaatst.
            C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA.job => is succesvol verplaatst.
            C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core.job => is succesvol verplaatst.
            C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => is succesvol verplaatst.
            C:\WINDOWS\system32\MRT => is succesvol verplaatst.
            C:\WINDOWS\system32\MRT.exe => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2 => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\CTServiceInstaller => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\USER_ESRV_SVC_WILLAMETTE => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\Overwolf Updater Task => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\DriverToolkit Autorun => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\BaronReplays => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-dekerfezra@gmail.com => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A3A1128E-A6C4-431A-A05C-1E19BC85B47E} => is succesvol verplaatst.
            C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{2B0DCEB8-FA4E-4BD1-A19B-A36A147CC743} => is succesvol verplaatst.
            C:\WINDOWS\SysWOW64\AI_RecycleBin => is succesvol verplaatst.
            C:\Users\Ezra\AppData\Roaming\Adobe PNG Format CS6 Prefs => is succesvol verplaatst.
            C:\Users\Ezra\AppData\Local\Adobe Save for Web 13.0 Prefs => is succesvol verplaatst.
            C:\Users\Ezra\AppData\Local\Resmon.ResmonCfg => is succesvol verplaatst.
            C:\Users\Ezra\AppData\Local{0F559947-C2B3-4688-A79B-1E8B043232A8} => is succesvol verplaatst.
            C:\Users\Ezra\AppData\Local{51993163-AAC4-471A-AA8C-07C3A42D4A3A} => is succesvol verplaatst.
            C:\Users\Ezra\AppData\Local{E5A8D5D0-20A1-4247-9DFE-C44A29B50175} => is succesvol verplaatst.
            C:\ProgramData\DP45977C.lfl => is succesvol verplaatst.
            C:\ProgramData\HirezPipeError.txt => is succesvol verplaatst.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000_Classes\CLSID{590C4387-5EBD-4D46-8A84-CD0BA2EF2856} => sleutel is succesvol verwijderd.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000_Classes\CLSID{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4} => sleutel is succesvol verwijderd.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000_Classes\CLSID{793EE463-1304-471C-ADF1-68C2FFB01247} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon{01D1A729-CAFF-41A1-945F-049DA762749C} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{01D1A729-CAFF-41A1-945F-049DA762749C} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Check for updates => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{0BBA429F-F8B6-46CD-85F4-4E5277E0E8B7} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{0BBA429F-F8B6-46CD-85F4-4E5277E0E8B7} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon{0D18573F-0E1A-4A0D-A66C-36C8A9D0705B} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{0D18573F-0E1A-4A0D-A66C-36C8A9D0705B} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\BaronReplays => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BaronReplays => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon{120E8B19-9BBE-4D8C-A916-2B929E7C9A04} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{120E8B19-9BBE-4D8C-A916-2B929E7C9A04} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{14B802D3-7889-4BD6-9FBC-87EC0C0632B7} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{14B802D3-7889-4BD6-9FBC-87EC0C0632B7} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PBDADiscovery => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{18BE20A9-12E8-48FC-83A9-585C16C4B144} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{18BE20A9-12E8-48FC-83A9-585C16C4B144} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\RegisterSearch => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{27F33F80-2C53-4C2D-8465-367CF84CBF5E} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{27F33F80-2C53-4C2D-8465-367CF84CBF5E} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\UpdateRecordPath => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{2DDA6923-8D10-4578-8BB1-1A26FD24E5B0} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{2DDA6923-8D10-4578-8BB1-1A26FD24E5B0} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ReindexSearchRoot => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{2ECC6DD4-4F1D-48A3-BB9B-81E8E1715249} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{2ECC6DD4-4F1D-48A3-BB9B-81E8E1715249} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{301A62D9-2638-4A88-9B9B-D0CDCDD78F76} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{301A62D9-2638-4A88-9B9B-D0CDCDD78F76} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{3603A9BE-426B-4E91-889C-54EEEA1FF246} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{3603A9BE-426B-4E91-889C-54EEEA1FF246} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Intel\Intel Telemetry 2 => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Intel\Intel Telemetry 2 => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon{39BB7A0C-53A4-4185-ADC1-4381FB0755C1} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{39BB7A0C-53A4-4185-ADC1-4381FB0755C1} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\ASUS\ASUS DigiVRM Help => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS\ASUS DigiVRM Help => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{3A413BED-89BA-4BFE-A464-C7C563B8CA69} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{3A413BED-89BA-4BFE-A464-C7C563B8CA69} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ConfigureInternetTimeService => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{3E86D199-EC56-470D-B0F1-C2EAE8723724} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{3E86D199-EC56-470D-B0F1-C2EAE8723724} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\mcupdate_scheduled => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{41258844-13BC-411F-B21A-6B8313C68C1A} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{41258844-13BC-411F-B21A-6B8313C68C1A} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot{458B9636-52F7-4DF9-BAA6-851E255377C2} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{458B9636-52F7-4DF9-BAA6-851E255377C2} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\RecordingRestart => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{45CED75A-B165-4208-84FA-A073E5CFA5E1} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{45CED75A-B165-4208-84FA-A073E5CFA5E1} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PBDADiscoveryW2 => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{461559F7-C100-4D5E-9DAC-6B1158A77EE0} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{461559F7-C100-4D5E-9DAC-6B1158A77EE0} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PeriodicScanRetry => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{4801929D-91EF-4BC5-B313-E3051C5E7430} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{4801929D-91EF-4BC5-B313-E3051C5E7430} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon{51DA5983-85A3-4FDA-A681-D9642473C33B} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{51DA5983-85A3-4FDA-A681-D9642473C33B} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\ASUS\USB 3.0 Boost Service => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS\USB 3.0 Boost Service => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{56D52DE4-7837-43C6-ADED-EB695C4D624F} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{56D52DE4-7837-43C6-ADED-EB695C4D624F} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{61D032D1-5A41-4C28-B0B6-B16BBC8D06AB} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{61D032D1-5A41-4C28-B0B6-B16BBC8D06AB} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{6DA95CDB-0F67-4A11-9B72-A3FE9CD3E3B9} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{6DA95CDB-0F67-4A11-9B72-A3FE9CD3E3B9} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon{6E18893F-7F5E-4595-96F7-B7407B319AC1} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{6E18893F-7F5E-4595-96F7-B7407B319AC1} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Tweaking.com - Windows Repair Tray Icon => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Tweaking.com - Windows Repair Tray Icon => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{715A5704-2B8B-420C-9A93-221FC7DC7D35} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{715A5704-2B8B-420C-9A93-221FC7DC7D35} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CreateChoiceProcessTask => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{72C9506D-4948-48C0-AC9D-DC929B80C7BF} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{72C9506D-4948-48C0-AC9D-DC929B80C7BF} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\DispatchRecoveryTasks => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{75DE8F95-5EBA-4A88-A022-945E59678FA0} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{75DE8F95-5EBA-4A88-A022-945E59678FA0} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\OCURDiscovery => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{77C94308-4335-4698-AEE6-5ECDD0047405} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{77C94308-4335-4698-AEE6-5ECDD0047405} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PBDADiscoveryW1 => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{77DED4BE-F53E-46E9-A58D-BA8364E83016} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{77DED4BE-F53E-46E9-A58D-BA8364E83016} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\OCURActivate => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{78EABB8F-DDE2-4E16-A427-F9DD088F7A26} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{78EABB8F-DDE2-4E16-A427-F9DD088F7A26} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{838A574E-09D8-4796-91D7-CC65A5895490} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{838A574E-09D8-4796-91D7-CC65A5895490} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-dekerfezra@gmail.com => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeAAMUpdater-1.0-MicrosoftAccount-dekerfezra@gmail.com => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{85306B9E-9BA9-4D27-81F7-F6DD583EB131} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{85306B9E-9BA9-4D27-81F7-F6DD583EB131} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{8B1DBB9A-396B-4654-A987-2A101EE1574E} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{8B1DBB9A-396B-4654-A987-2A101EE1574E} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{8BA9A19B-08A0-4791-A7F4-A51F65E9C86E} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{8BA9A19B-08A0-4791-A7F4-A51F65E9C86E} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\InstallPlayReady => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon{91B8AB30-CCCE-486C-BF53-2D15F96E9CD1} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{91B8AB30-CCCE-486C-BF53-2D15F96E9CD1} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\USER_ESRV_SVC_WILLAMETTE => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\USER_ESRV_SVC_WILLAMETTE => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{99297AE5-FDCD-4CA7-B897-13D9891026CA} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{99297AE5-FDCD-4CA7-B897-13D9891026CA} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{9AEBD2A1-331B-48DD-B2C9-7C33DDED7AA5} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{9AEBD2A1-331B-48DD-B2C9-7C33DDED7AA5} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PvrRecoveryTask => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{9C6DB456-9A01-4A6A-8067-82CA62D876B7} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{9C6DB456-9A01-4A6A-8067-82CA62D876B7} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ehDRMInit => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{9F136684-ACB7-4FE0-9CEA-5B407B402721} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{9F136684-ACB7-4FE0-9CEA-5B407B402721} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PvrScheduleTask => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{A34B4AC1-BE38-4545-910C-C68CB803CC61} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{A34B4AC1-BE38-4545-910C-C68CB803CC61} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon{AB2DA77E-B6D6-4EA6-82CA-5A338ADA6807} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{AB2DA77E-B6D6-4EA6-82CA-5A338ADA6807} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\DriverToolkit Autorun => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DriverToolkit Autorun => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{ADCB1E44-EF86-4BBB-B4D0-CC5DF4AC6029} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{ADCB1E44-EF86-4BBB-B4D0-CC5DF4AC6029} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{AEA1F92B-D69C-4B96-8511-B3F62578A0BF} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{AEA1F92B-D69C-4B96-8511-B3F62578A0BF} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Overwolf Updater Task => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Overwolf Updater Task => sleutel is succesvol verwijderd.
            “C:\Users\Ezra\AppData\Local\Facebook” => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{C04AA215-4522-4595-8937-D68E04615E6F} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{C04AA215-4522-4595-8937-D68E04615E6F} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{C0A78A6F-A543-40CE-AEBC-4B5B8C62988B} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{C0A78A6F-A543-40CE-AEBC-4B5B8C62988B} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon{C44DF3A0-8C8C-4AF1-A5FF-ED82F3B15FEE} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{C44DF3A0-8C8C-4AF1-A5FF-ED82F3B15FEE} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Acrobat Update Task => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon{C67684B2-62EC-4193-A9A5-7FF90629D643} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{C67684B2-62EC-4193-A9A5-7FF90629D643} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{CA21BA89-C323-4956-A35F-72AC4BDBFE6A} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{CA21BA89-C323-4956-A35F-72AC4BDBFE6A} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{D38D08D1-5DD3-4918-8DD5-B5BAC32B5DFF} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{D38D08D1-5DD3-4918-8DD5-B5BAC32B5DFF} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{DE8AECD2-7BB7-4385-952E-4F929D22CA9D} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{DE8AECD2-7BB7-4385-952E-4F929D22CA9D} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{E9383294-AF8E-4364-A19C-8393307BFFA2} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{E9383294-AF8E-4364-A19C-8393307BFFA2} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ActivateWindowsSearch => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{F3AA22B5-9DDF-497D-B3DC-E7AC0D1369A8} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{F3AA22B5-9DDF-497D-B3DC-E7AC0D1369A8} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\StartRecording => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\StartRecording => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon{FC721942-3060-47E2-B935-8DE112687CA4} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{FC721942-3060-47E2-B935-8DE112687CA4} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{FCB9ECB0-EB7F-4BBE-A2A3-856181687726} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{FCB9ECB0-EB7F-4BBE-A2A3-856181687726} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\Microsoft\Windows\Media Center\mcupdate => is succesvol verplaatst.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\mcupdate => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{FD1EB7A9-CCDB-4756-9E01-FB427D94AB6F} => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{FD1EB7A9-CCDB-4756-9E01-FB427D94AB6F} => sleutel is succesvol verwijderd.
            C:\WINDOWS\System32\Tasks\CTServiceInstaller => niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CTServiceInstaller => sleutel is succesvol verwijderd.
            C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000Core.job => niet gevonden.
            C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1109422385-2511755253-1881603609-1000UA.job => niet gevonden.
            C:\Users\Ezra\Dropbox\KDG.NET - Framework\Developer Command Prompt for VS2015.lnk => snelkoppeling argument is succesvol verwijderd..
            C:\Users\Ezra\Desktop\Stream\TwitchAlerts Stream Labels.lnk => snelkoppeling argument is succesvol verwijderd..
            C:\Users\Ezra\AppData\Local\Google\Chrome\User Data\App-opstartprogramma van Chrome.lnk => snelkoppeling argument is succesvol verwijderd..
            C:\Users\Ezra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\App-opstartprogramma van Chrome.lnk => snelkoppeling argument is succesvol verwijderd..
            C:\Users\Ezra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps\Pomodo’more.lnk => snelkoppeling argument is succesvol verwijderd..
            C:\Users\Ezra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps\TwitchAlerts Stream Labels.lnk => snelkoppeling argument is succesvol verwijderd..
            C:\Users\Ezra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk => snelkoppeling argument is succesvol verwijderd..
            “C:\Users\Ezra\Desktop\CodeLite.exe - Shortcut.lnk” => “:com.dropbox.attributes” ADS niet gevonden.
            “C:\Users\Ezra\Desktop\JavaScript - Snelkoppeling.lnk” => “:com.dropbox.attributes” ADS niet gevonden.
            C:\Users\Ezra\Desktop\KDG - Snelkoppeling.lnk => “:com.dropbox.attributes” ADS is succesvol verwijderd..
            “C:\Users\Ezra\Desktop\rstudio.exe - Shortcut.lnk” => “:com.dropbox.attributes” ADS niet gevonden.
            “C:\Users\School\Desktop\CodeLite - Snelkoppeling.lnk” => “:com.dropbox.attributes” ADS niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\beid => waarde is succesvol verwijderd.
            HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\beid => waarde is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\Gaming mouse => waarde is succesvol verwijderd.
            HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\Gaming mouse => waarde is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\SunJavaUpdateSched => waarde is succesvol verwijderd.
            HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\SunJavaUpdateSched => waarde is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\SDTray => waarde is succesvol verwijderd.
            HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\SDTray => waarde niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\vmware-tray.exe => waarde is succesvol verwijderd.
            HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\vmware-tray.exe => waarde niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\Corsair Utility Engine => waarde is succesvol verwijderd.
            HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\Corsair Utility Engine => waarde is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\iTunesHelper => waarde is succesvol verwijderd.
            HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\iTunesHelper => waarde niet gevonden.
            HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\NvBackend => waarde is succesvol verwijderd.
            HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\NvBackend => waarde niet gevonden.
            C:\Users\Ezra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\XenoSuite.lnk => niet gevonden.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\XenoSuite.lnk => waarde is succesvol verwijderd.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\Dropbox Update => waarde is succesvol verwijderd.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Dropbox Update => waarde niet gevonden.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\GAINWARD => waarde is succesvol verwijderd.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\GAINWARD => waarde niet gevonden.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\OneDrive => waarde is succesvol verwijderd.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OneDrive => waarde niet gevonden.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\puush => waarde is succesvol verwijderd.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\puush => waarde niet gevonden.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\Skype => waarde is succesvol verwijderd.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Skype => waarde niet gevonden.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\Akamai NetSession Interface => waarde is succesvol verwijderd.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Akamai NetSession Interface => waarde niet gevonden.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\Google Update => waarde is succesvol verwijderd.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Google Update => waarde niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AdobeARMservice => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\AdobeARMservice => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AdobeFlashPlayerUpdateSvc => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\AdobeFlashPlayerUpdateSvc => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Apple Mobile Device => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\Apple Mobile Device => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Apple Mobile Device Service => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\Apple Mobile Device Service => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\asComSvc => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\asComSvc => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\asHmComSvc => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\asHmComSvc => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AsusFanControlService => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\AsusFanControlService => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Bonjour Service => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\Bonjour Service => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\DragonUpdater => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\DragonUpdater => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EventLog => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\EventLog => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Everything => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\Everything => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gupdate => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\gupdate => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gupdatem => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\gupdatem => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Hamachi2Svc => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\Hamachi2Svc => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\HiPatchService => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\HiPatchService => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ICCS => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\ICCS => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\iPod Service => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\iPod Service => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\LanmanWorkstation => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\LanmanWorkstation => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MozillaMaintenance => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\MozillaMaintenance => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NvNetworkService => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\NvNetworkService => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NvStreamNetworkSvc => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\NvStreamNetworkSvc => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NvStreamSvc => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\NvStreamSvc => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\OracleMTSRecoveryService => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\OracleMTSRecoveryService => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\OracleServiceXE => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\OracleServiceXE => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\OracleXEClrAgent => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\OracleXEClrAgent => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\OracleXETNSListener => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\OracleXETNSListener => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Razer Game Scanner Service => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\Razer Game Scanner Service => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Realtek11nSU => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\Realtek11nSU => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SDScannerService => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\SDScannerService => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SDUpdateService => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\SDUpdateService => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SDWSCService => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\SDWSCService => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SkypeUpdate => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\SkypeUpdate => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Steam Client Service => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\Steam Client Service => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SwitchBoard => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\SwitchBoard => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TeamViewer => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\TeamViewer => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TeamViewer9 => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\TeamViewer9 => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\VMAuthdService => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\VMAuthdService => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\VMnetDHCP => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\VMnetDHCP => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\VMUSBArbService => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\VMUSBArbService => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\VMware NAT Service => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\VMware NAT Service => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\VMwareHostd => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\VMwareHostd => sleutel niet gevonden.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wampapache => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\wampapache => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wampmysqld => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\wampmysqld => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\XblAuthManager => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\XblAuthManager => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\XblGameSave => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\XblGameSave => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\XboxNetApiSvc => sleutel is succesvol verwijderd.
            HKLM\System\CurrentControlSet\Services\XboxNetApiSvc => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe Creative Cloud => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AdobeAAMUpdater-1.0 => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AdobeCS6ServiceManager => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Akamai NetSession Interface => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CamserviceOG => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Facebook Update => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\iTunesHelper => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\OPGG Recorder => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RzWizard => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SwitchBoard => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\USB3MON => sleutel is succesvol verwijderd.
            HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\vmware-tray.exe => sleutel is succesvol verwijderd.
            
            ========= reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f =========
            
            The operation completed successfully.
            
            ========= Eind van Reg: =========
            
            ========= reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f =========
            
            The operation completed successfully.
            
            ========= Eind van Reg: =========
            
            ========= netsh advfirewall reset =========
            
            Ok.
            
            ========= Eind van CMD: =========
            
            ========= netsh advfirewall set allprofiles state ON =========
            
            Ok.
            
            ========= Eind van CMD: =========
            
            ========= ipconfig /flushdns =========
            
            Windows IP Configuration
            
            Successfully flushed the DNS Resolver Cache.
            
            ========= Eind van CMD: =========
            
            ========= netsh winsock reset catalog =========
            
            Sucessfully reset the Winsock Catalog.
            You must restart the computer in order to complete the reset.
            
            ========= Eind van CMD: =========
            
            ========= RemoveProxy: =========
            
            HKU.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\DefaultConnectionSettings => waarde is succesvol verwijderd.
            HKU.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\SavedLegacySettings => waarde is succesvol verwijderd.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\DefaultConnectionSettings => waarde is succesvol verwijderd.
            HKU\S-1-5-21-1109422385-2511755253-1881603609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\SavedLegacySettings => waarde is succesvol verwijderd.
            
            ========= Eind van RemoveProxy: =========
            
            =========== EmptyTemp: ==========
            
            BITS transfer queue => 32768 B
            DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 25405318 B
            Java, Flash, Steam htmlcache => 445113325 B
            Windows/system/drivers => 787406 B
            Edge => 3076164 B
            Chrome => 863413264 B
            Firefox => 0 B
            Opera => 0 B
            
            Temp, IE cache, history, cookies, recent:
            Default => 6144 B
            Users => 0 B
            ProgramData => 0 B
            Public => 0 B
            systemprofile => 0 B
            systemprofile32 => 0 B
            LocalService => 160458 B
            NetworkService => 539564 B
            Ezra => 76580841 B
            School => 1052170 B
            DefaultAppPool => 6144 B
            
            RecycleBin => 3814731 B
            EmptyTemp: => 1.3 GB tijdelijke gegevens verwijderd.
            
            ================================
            
            Het systeem moest herstart worden.
            
            ==== Eind van Fixlog 01:03:47 ====
            [/HEADING]

            Comment

            • Malnutrition
              PCHF Moderator
              • Jul 2016
              • 7041

              #7
              Ok, how about the other logs, and how is your machine running now?

              Comment

              • Ztrahel
                PCHF Member
                • Feb 2017
                • 14

                #8
                .
                Report of Restrictions Control Pierre13 (CTR version 2.4.0.0) of 05 \ 02 \ 2017 at 01:12:16
                PC of Ezra
                Windows 10 Home (64-bit)

                Repair error 2203 performed.

                Control presence restrictions

                [TROJ_POWELIKS.B] feature_browser_emulation key removed.
                [BKDR_BLACKEN.A] key Check_Associations deleted.
                Installation permission sponsor Java (x86) deleted.
                Authorization installation Java (x64) deleted.
                Restriction Display Recent documents deleted.
                Restriction Display Documents deleted.
                Restriction Synchronization Background Information Streams and Web Slices Removed.
                Restriction discovery of RSS feeds and Web Slices removed.
                Restriction UpperFilters Bluetooth deleted.
                Restriction LowerFilters Bluetooth removed.
                Numeric keypad active.
                User Restriction for Windows Installer Removed.
                Windows Update Search Reverted.
                Windows Firewall service enabled.
                Windows Firewall settings restored by default and enabled.

                238 controlled restrictions.

                14 restriction (s) repaired.
                Reboot the PC to take the repair (s) into account.

                The report is on the desktop (C: \ Users \ Ezra \ Desktop \ CTR.txt)

                Comment

                • Ztrahel
                  PCHF Member
                  • Feb 2017
                  • 14

                  #9
                  Issue not resolved, still laggy with normal ping. Did I miss any logs?

                  Comment

                  • Malnutrition
                    PCHF Moderator
                    • Jul 2016
                    • 7041

                    #10
                    No logs missed…

                    Step 1: HijackThis Fix.

                    Locate the HijackThis file from within the Autologger Folder.
                    Close all other open programs prior to running this tool!!
                    Right Click Run as Administrator.
                    Click Scan.
                    Then checkmark the items listed below.

                    O4 - HKCU..\StartupApproved\Run: [SpybotPostWindows10UpgradeReInstall] “C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe” (2017/02/05)
                    O4 - HKLM..\StartupApproved\Run32: [Dropbox] “C:\Program Files (x86)\Dropbox\Client\Dropbox.exe” /systemstartup (2017/02/05)
                    O4 - HKLM..\StartupApproved\Run32: [Razer Synapse] :“C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe” (2015/09/13)
                    O4 - HKLM..\StartupApproved\Run32: [SteelSeries World of Warcraft Cataclysm MMO Gaming Mouse] :“C:\Program Files (x86)\SteelSeries\World of Warcraft Cataclysm MMO Gaming Mouse\WoWMHID2.exe” (2015/09/13)
                    O4 - HKLM..\StartupApproved\Run: [RTHDVCPL] “C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe” -s (2017/02/05)
                    O4 - HKU\S-1-5-19..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
                    O4 - HKU\S-1-5-20..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
                    O4 - HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
                    O4 - HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415..\RunOnce: [WAB Migrate] C:\Program Files\Windows Mail\wab.exe /Upgrade
                    O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - (no file)
                    O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - (no file)
                    O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - (no file)
                    O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - (no file)
                    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)
                    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - (no file)
                    O23 - Service R2: CTService - (CTService) - Felix Logic - C:\Program Files (x86)\Cold Turkey\CTService.exe
                    O23 - Service R2: Intel(R) Security Assist Helper - (isaHelperSvc) - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
                    O23 - Service R2: Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE - (SystemUsageReportSvc_WILLAMETTE) - Unknown owner - C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe
                    O23 - Service S2: Dropbox Update Service (dbupdate) - (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
                    O23 - Service S3: Dropbox Update Service (dbupdatem) - (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
                    O23 - Service S3: Overwolf Updater Windows SCM - (OverwolfUpdater) - Overwolf LTD - C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe

                    Now click on fix checked.
                    After the fix is complete, then reboot your machine.

                    Step 2: ClearLNK

                    Download ClearLNK save it to your desktop.
                    Drag the file Check_Browsers_LNK from your Collection log made earlier.
                    As per picture.
                    A report on the work as a file ClearLNK- .log
                    Will be produced, post that log.

                    https://up2sha.re/uploads/2015/3/BPD7B3BAgEQl.gif

                    Step 3: Zhp Scan & Clean

                    Please download Zhp Cleaner to your desktop. Right Click the icon and select run as administrator.
                    1. Once you have started the program, you will need to click the scanner button.

                    [IMG alt="EgsT69u" width="602px" height="129px"]https://windowsinstructed.com/wp-content/uploads/2015/06/EgsT69u.png[/IMG]

                    The program will close all open browsers!
                    3. Once the scan is completed, the you will want to click the Repair button.
                    [URL unfurl="true"]http://windowsinstructed.com/wp-content/uploads/2015/06/6QJjV50.png[/URL]

                    At the end of the process you may be asked to reboot your machine. After you reboot a report will open on your desktop.
                    Copy and paste the report here in your next reply.

                    Step 4 :Universal Virus Sniffer Scan

                    Download uVS English Version To your desktop
                    Create a new folder on desktop.
                    Unzip it there.
                    Right click Start [MEDIA=imgur]L8goZMW[/MEDIA] and run as admin.
                    Select start under current User.
                    [MEDIA=imgur]4XlNKga[/MEDIA]
                    Then Select File. [MEDIA=imgur]iDTfLbb[/MEDIA]
                    The Select: Save Os Image with Checking digitial Signature (Slow)
                    [MEDIA=imgur]CRn1knJ[/MEDIA]
                    Allow completion this can take some time.
                    Then go back to the folder where you Saved – Unzipped – UVS
                    Upload your system image. Here in your next reply.
                    It will look something similar to this.
                    [MEDIA=imgur]tBCHqxH[/MEDIA]

                    Comment

                    • Malnutrition
                      PCHF Moderator
                      • Jul 2016
                      • 7041

                      #11
                      Also, if you are just having lag on the internet, check here after you complete all of the above steps.

                      Comment

                      • Ztrahel
                        PCHF Member
                        • Feb 2017
                        • 14

                        #12
                        Step 1:
                        O4 - HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
                        O4 - HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415..\RunOnce: [WAB Migrate] C:\Program Files\Windows Mail\wab.exe /Upgrade
                        → Were not there.

                        As said in my OP, I do have lags but my ping and download speed are fine. Could it just be a problem with my network card or my ISP?
                        Another important detail is that my gf’s computer, which is right next to mine and should be using the same network, does not have this problem.

                        Uninstalling the drivers of my network card and reinstalling them tells me my NIC is not recognized.
                        I need to eliminate all possibilities that the problem is on my end, because my ISP can send a technician but they charge $85+$40/15 min if the problem is not on their end.

                        The lags started after messing around with Oracle VirtualBox on my machine, for uni. But I don’t know if it’s related. I tried a system rollback already, but that did not work.

                        Comment

                        • Malnutrition
                          PCHF Moderator
                          • Jul 2016
                          • 7041

                          #13
                          Remove Oracle VM VirtualBox 5.1.14 with Geek Uninstaller, then reboot.

                          File Search With Everything Search Engine.
                          [HEADING=1]Download and install the Everything Search Engine
                          Right Click Run As Admin. Type or Copy Paste Tencent into search window.
                          Then Click Edit. >>>Select all.
                          Right Click highlighted items>>>>>>>> Copy full name to clipboard.
                          Paste content of clipboard, here in your next reply.[/HEADING]
                          Repeat the same step for the files below. – One at a time –
                          Code:
                          Vbox
                          VirtualBox
                          Comodo

                          Comment

                          • Ztrahel
                            PCHF Member
                            • Feb 2017
                            • 14

                            #14
                            Tencent
                            C:\FRST\Quarantine\C\Users\Ezra\AppData\Roaming\Te ncent
                            C:\Users\Ezra\AppData\Local\Comodo\Dragon\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot#SharedObjects\XX8AP9T5\static.v ideo.qq.com\TencentPlayer.swf
                            C:\Users\Ezra\AppData\Local\Comodo\Dragon\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot#SharedObjects\XX8AP9T5\imgcache .qq.com\tencentvideo_v1
                            C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0. 1.239\deploy\assets\imagePacks\ImagePack_buddyIcon sTencent.swf

                            Vbox
                            C:\Windows\System32\DRVSTORE\VBoxDrv_FB84AD0DA5504 598A7D07807FF95FCDDFAA19E1B
                            C:\Windows.old\WINDOWS\System32\DriverStore\FileRe pository\vboxnetadp6.inf_amd64_afcf9e6250751a9c
                            C:\Windows.old\WINDOWS\System32\DriverStore\FileRe pository\vboxnetadp6.inf_amd64_f13209508e8da14c
                            C:\Windows.old\WINDOWS\System32\DriverStore\FileRe pository\vboxusb.inf_amd64_094e32951752b64b
                            E:\School\ADOBE SCHOOL\Adobe Flash Builder 4.7 (64 Bit)\eclipse\plugins\com.adobe.flash.compiler_4.7. 0.349722\AIRSDK\frameworks\projects\air\Applicatio nUpdater\src\ApplicationUpdaterDialogs\components\ ApplicationUpdaterVBox.as
                            E:\School\ADOBE SCHOOL\Adobe Flash Builder 4.7 (64 Bit)\sdks\3.6.0\frameworks\projects\air\Applicatio nUpdater\src\ApplicationUpdaterDialogs\components\ ApplicationUpdaterVBox.as
                            E:\School\ADOBE SCHOOL\Adobe Flash Builder 4.7 (64 Bit)\sdks\4.6.0\frameworks\projects\air\Applicatio nUpdater\src\ApplicationUpdaterDialogs\components\ ApplicationUpdaterVBox.as
                            E:\School\ADOBE SCHOOL\Adobe Flash CS6\AIR3.2\frameworks\projects\air\ApplicationUpda ter\src\ApplicationUpdaterDialogs\components\Appli cationUpdaterVBox.as
                            E:\School\ADOBE SCHOOL\Adobe Flash CS6\AIR3.4\frameworks\projects\air\ApplicationUpda ter\src\ApplicationUpdaterDialogs\components\Appli cationUpdaterVBox.as
                            C:\Windows.old\ProgramData\Microsoft\Windows\DRM\I ndivBox.key
                            C:\Windows.old\ProgramData\Microsoft\Windows\DRM\P reUpgrade\IndivBox.key
                            C:\Windows.old\ProgramData\Microsoft\Windows\DRM\I ndivBox_64.key
                            C:\Windows.old\ProgramData\Microsoft\Windows\DRM\P reUpgrade\IndivBox_64.key
                            E:\School\VirtualBox\VirtualBox VMs\Ubuntu 14.04\Ubuntu 14.04.vbox
                            E:\School\VirtualBox\VirtualBox VMs\Ubuntu 14.04\Ubuntu 14.04.vbox-prev
                            C:\Users\Ezra.VirtualBox\vbox-ssl-cacertificate.crt
                            E:\School\ADOBE SCHOOL\Adobe Flash Builder 4.7 (64 Bit)\sdks\3.6.0\frameworks\projects\framework\src\ mx\containers\VBox.as
                            E:\School\ADOBE SCHOOL\Adobe Flash Builder 4.7 (64 Bit)\sdks\4.6.0\frameworks\projects\mx\src\mx\cont ainers\VBox.as
                            C:\Program Files\Java\jdk1.8.0_60\doc_fx\api\javafx\scene\lay out\VBox.html
                            C:\Program Files\Java\jdk1.8.0_60\doc_fx\api\javafx\scene\lay out\class-use\VBox.html
                            E:\School.OUDE SCHOOL DINGES\KDG\1e JAAR\Java\Periode 2 (OO Technieken)\Examen\api\javafx\scene\layout\VBox.ht ml
                            E:\School.OUDE SCHOOL DINGES\KDG\1e JAAR\Java\Periode 2 (OO Technieken)\Examen\api\javafx\scene\layout\class-use\VBox.html
                            E:\School\jdk\javafx\scene\layout\VBox.java
                            E:\School\ADOBE SCHOOL\Adobe Flash Builder 4.7 (64 Bit)\sdks\3.6.0\frameworks\projects\framework\src\ mx\containers\VBox.png
                            E:\School\ADOBE SCHOOL\Adobe Flash Builder 4.7 (64 Bit)\sdks\4.6.0\frameworks\projects\mx\src\mx\cont ainers\VBox.png
                            E:\School\jdk\javafx\scene\layout\VBoxBuilder.java
                            C:\Windows\System32\CatRoot{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\VBoxDrv.cat
                            C:\Windows.old\WINDOWS\System32\DriverStore\FileRe pository\vboxnetadp6.inf_amd64_afcf9e6250751a9c\vb oxnetadp6.PNF
                            C:\Windows\System32\drivers\VBoxNetAdp6.sys
                            C:\Windows\System32\drivers\VBoxNetLwf.sys
                            C:\Users\Ezra.VirtualBox\VBoxSVC.log
                            C:\Users\Ezra.VirtualBox\VBoxSVC.log.1
                            C:\Windows.old\WINDOWS\System32\DriverStore\FileRe pository\vboxusb.inf_amd64_094e32951752b64b\VBoxUS B.cat
                            C:\Windows.old\WINDOWS\System32\DriverStore\FileRe pository\vboxusb.inf_amd64_094e32951752b64b\VBoxUS B.inf
                            C:\Windows.old\WINDOWS\System32\DriverStore\FileRe pository\vboxusb.inf_amd64_094e32951752b64b\VBoxUS B.PNF
                            C:\Windows.old\WINDOWS\System32\DriverStore\FileRe pository\vboxusb.inf_amd64_094e32951752b64b\VBoxUS B.sys
                            C:\Windows\System32\CatRoot{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\VBoxUSBMon.cat

                            VirtualBox
                            C:\Users\Ezra.VirtualBox
                            C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
                            E:\School\VirtualBox
                            E:\School\VirtualBox\VirtualBox VMs
                            C:\Users\Ezra\Downloads\VirtualBox-5.0.32-112930-Win.exe
                            C:\Windows.old\WINDOWS\Prefetch\VIRTUALBOX.EXE-F4124FF9.pf
                            C:\Users\Ezra.VirtualBox\VirtualBox.xml
                            C:\Users\Ezra.VirtualBox\VirtualBox.xml-prev
                            C:\Users\Ezra\Dropbox\KDG\Computersystemen 2 - Windows\VirtualBoxNetworking(1).pdf
                            C:\Users\School\Dropbox\KDG\Computersystemen 2\VirtualBoxNetworking(1).pdf

                            Comodo
                            C:\Program Files (x86)\Comodo
                            C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
                            C:\Users\Ezra\AppData\Local\Comodo
                            C:\Users\Ezra\AppData\LocalLow\COMODO
                            C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
                            C:\Windows\ServiceProfiles\LocalService\AppData\Lo calLow\COMODO
                            E:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
                            E:\Restanten C\Users\Ezra\AppData\Local\Comodo
                            E:\Restanten C\Users\Ezra\AppData\LocalLow\COMODO
                            C:\Users\Ezra\AppData\Local\Comodo\Dragon\User Data\Default\Web Applications_crx_kglppafajjeikfgmjjegogphhkjnnmgc\ Comodo Dragon Browser Light Theme.ico
                            C:\Users\Ezra\AppData\Local\Comodo\Dragon\User Data\Default\Web Applications_crx_kglppafajjeikfgmjjegogphhkjnnmgc\ Comodo Dragon Browser Light Theme.ico.md5
                            C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo\Dragon\Comodo Dragon.lnk
                            E:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo\Dragon\Comodo Dragon.lnk
                            E:\Restanten C\Users\Ezra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Comodo Dragon.lnk
                            E:\Restanten C\Users\Ezra\AppData\Roaming\Microsoft\Windows\Coo kies\Low\ezra@comodo[2].txt
                            C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo\Dragon\Uninstall Comodo Dragon.lnk
                            E:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo\Dragon\Uninstall Comodo Dragon.lnk

                            Comment

                            • Malnutrition
                              PCHF Moderator
                              • Jul 2016
                              • 7041

                              #15
                              FRST Fix.

                              Click Here To Download Fixlist.

                              Download attached fixlist.txt file and save it to the Desktop. NOTE. It’s important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work. NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system Run FRST/FRST64 and press the Fix button just once and wait. If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run. When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.

                              Security Check Scan.

                              [ul]
                              [li]Download Security Check to your desktop.[/li][li]Right click it run as administrator.[/li][li]When the program completes, the tool will automatically open a log file.[/li][li]Please post that log here in your next post.[/li][/ul]

                              MiniToolBox Scan

                              Please download MINITOOLBOX and run it.

                              Checkmark following boxes:

                              Flush DNS
                              Reset FF proxy Settings
                              Reset Ie Proxy Settings
                              Report IE Proxy Settings
                              Report FF Proxy Settings
                              List content of Hosts
                              List IP configuration
                              List Winsock Entries
                              List last 10 Event Viewer log
                              List Installed Programs
                              List Users, Partitions and Memory size
                              List Devices (problems only)

                              Click Go post the result.

                              Comment

                              Working...