Dag allemaal,


Ik hoop dat dit onderdeel van het forum nog actief is en dat de methode die gevraagd wordt om te gebruiken nog up-to-date is.

In ieder geval worstel ik al enkele dagen met een opvallend trage laptop die op willekeurige momenten lagspikes vertoont of vastloopt. Iets is volgens mij in de achtergrond de boel aan het vertragen, maar ik weet niet wat. Taakbeheer vertoont geen onnodige processen (denk ik) en ik start enkel de programma's op die ik echt nodig heb (denk ik).
Eerst dacht ik dat OneDrive de boosdoener was. Ik gebruik deze niet echt, dus heb hem maar uitgeschakeld, maar dit heeft niet veel geholpen. Naast wat automatische scans van Windows Defender heb ik zelf nog geen actie ondernomen.


Alvast bedankt voor de hulp!

Martijn



Malwarebytes
www.malwarebytes.com

-Logboekdetails-
Scandatum: 12-05-19
Scantijd: 15:47
Logbestand: 7a21f66a-74bc-11e9-b974-30f7722095ee.json

-Software-informatie-
Versie: 3.7.1.2839
Versie componenten: 1.0.586
Update pakketversie: 1.0.10568
Licentie: Gratis

-Systeeminformatie-
Besturingssysteem: Windows 10 (Build 17134.706)
Processor: x64
Bestandssysteem: NTFS
Gebruiker: LAPTOP-2U2CI2KU\Martijn

-Scansamenvatting-
Scantype: Bedreigingsscan
Scan geactiveerd door: Handmatig
Resultaat: Voltooid
Objecten gescand: 289923
Dreigingen herkend: 5
Dreigingen in quarantaine: 5
Verstreken tijd: 7 min, 23 sec

-Scanopties-
Geheugen: Ingeschakeld
Opstarten: Ingeschakeld
Bestandssysteem: Ingeschakeld
Archieven: Ingeschakeld
Rootkits: Uitgeschakeld
Heuristiek: Ingeschakeld
POP: Detectie
POA: Detectie

-Scandetails-
Proces: 0
(Geen kwaadaardige items gedetecteerd)

Module: 0
(Geen kwaadaardige items gedetecteerd)

Registersleutel: 0
(Geen kwaadaardige items gedetecteerd)

Registerwaarde: 0
(Geen kwaadaardige items gedetecteerd)

Registerdata: 0
(Geen kwaadaardige items gedetecteerd)

Gegevensstroom: 0
(Geen kwaadaardige items gedetecteerd)

Map: 1
PUP.Optional.Booking, C:\PROGRAM FILES\BOOKING.COM, In quarantaine, [898], [310593],1.0.10568

Bestand: 4
PUP.Optional.Booking, C:\Program Files\Booking.COM\Booking.com.lnk, In quarantaine, [898], [310593],1.0.10568
PUP.Optional.Booking, C:\Program Files\Booking.COM\Booking.ico, In quarantaine, [898], [310593],1.0.10568
PUP.Optional.Booking, C:\Program Files\Booking.COM\StartURL.exe, In quarantaine, [898], [310593],1.0.10568
PUP.Optional.Booking, C:\Program Files\Booking.COM\Version.txt, In quarantaine, [898], [310593],1.0.10568

Fysieke sector: 0
(Geen kwaadaardige items gedetecteerd)

WMI: 0
(Geen kwaadaardige items gedetecteerd)


(end)



GMER 2.2.19882 - http://www.gmer.net
Rootkit scan 2019-05-12 16:12:46
Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000034 TOSHIBA_MQ01ABD100 rev.AX003J 931,51GB
Running: y208jce1.exe; Driver: C:\Users\Martijn\AppData\Local\Temp\kxldiaod.sys


---- Disk sectors - GMER 2.2 ----

Disk \Device\Harddisk0\DR0 unknown MBR code

---- Threads - GMER 2.2 ----

Thread C:\WINDOWS\system32\csrss.exe [716:444] ffffdf9fd95c6840
Thread c:\windows\system32\svchost.exe [3408:4504] 00007fff40b913f0
Thread c:\windows\system32\svchost.exe [3408:4508] 00007fff3ecbb8b0
Thread c:\windows\system32\svchost.exe [3408:4544] 00007fff3ec96d10
Thread c:\windows\system32\svchost.exe [3408:3776] 00007fff38c33f50

---- Services - GMER 2.2 ----

Service C:\WINDOWS\system32\svchost.exe (*** hidden *** ) [MANUAL] BcastDVRUserService_40ed7 <-- ROOTKIT !!!
Service C:\WINDOWS\system32\svchost.exe (*** hidden *** ) [MANUAL] BluetoothUserService_40ed7 <-- ROOTKIT !!!
Service C:\WINDOWS\system32\svchost.exe (*** hidden *** ) [AUTO] CDPUserSvc_40ed7 <-- ROOTKIT !!!
Service C:\WINDOWS\system32\svchost.exe (*** hidden *** ) [MANUAL] DevicePickerUserSvc_40ed7 <-- ROOTKIT !!!
Service C:\WINDOWS\system32\svchost.exe (*** hidden *** ) [MANUAL] DevicesFlowUserSvc_40ed7 <-- ROOTKIT !!!
Service C:\WINDOWS\system32\svchost.exe (*** hidden *** ) [MANUAL] MessagingService_40ed7 <-- ROOTKIT !!!
Service C:\WINDOWS\system32\svchost.exe (*** hidden *** ) [AUTO] OneSyncSvc_40ed7 <-- ROOTKIT !!!
Service C:\WINDOWS\system32\svchost.exe (*** hidden *** ) [MANUAL] PimIndexMaintenanceSvc_40ed7 <-- ROOTKIT !!!
Service C:\WINDOWS\system32\svchost.exe (*** hidden *** ) [MANUAL] PrintWorkflowUserSvc_40ed7 <-- ROOTKIT !!!
Service C:\WINDOWS\System32\svchost.exe (*** hidden *** ) [MANUAL] UnistoreSvc_40ed7 <-- ROOTKIT !!!
Service C:\WINDOWS\system32\svchost.exe (*** hidden *** ) [MANUAL] UserDataSvc_40ed7 <-- ROOTKIT !!!
Service C:\WINDOWS\system32\svchost.exe (*** hidden *** ) [AUTO] WpnUserService_40ed7 <-- ROOTKIT !!!

---- EOF - GMER 2.2 ----



DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.17134.1
Run by Martijn at 16:15:30 on 2019-05-12
Microsoft Windows 10 Home 10.0.17134.0.1252.44.2057.18.8051.5219 [GMT 2:00]
.
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
c:\windows\system32\svchost.exe -k dcomlaunch -p -s PlugPlay
C:\WINDOWS\system32\fontdrvhost.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
c:\windows\system32\svchost.exe -k rpcss -p
c:\windows\system32\svchost.exe -k dcomlaunch -p -s LSM
C:\WINDOWS\system32\fontdrvhost.exe
C:\WINDOWS\system32\dwm.exe
c:\windows\system32\svchost.exe -k netsvcs -p -s gpsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s NcbService
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s hidserv
c:\windows\system32\svchost.exe -k netsvcs -p -s ProfSvc
c:\windows\system32\svchost.exe -k netsvcs -p -s UserManager
c:\windows\system32\svchost.exe -k localservice -p -s BthAvctpSvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
c:\windows\system32\svchost.exe -k localservice -p -s bthserv
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s EventLog
c:\windows\system32\svchost.exe -k localservice -p -s nsi
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s Dhcp
c:\windows\system32\svchost.exe -k networkservice -p -s NlaSvc
c:\windows\system32\svchost.exe -k appmodel -p -s camsvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s BTAGService
C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Containe r.exe
C:\Windows\system32\nvvsvc.exe
c:\windows\system32\svchost.exe -k localservice -p -s netprofm
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s DeviceAssociationService
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s TimeBrokerSvc
c:\windows\system32\svchost.exe -k netsvcs -p -s Themes
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s SysMain
c:\windows\system32\svchost.exe -k localservice -p -s EventSystem
c:\windows\system32\svchost.exe -k netsvcs -p -s SENS
C:\WINDOWS\System32\DriverStore\FileRepository\igd lh64.inf_amd64_82119d956c80af5a\igfxCUIService.exe
C:\WINDOWS\system32\svchost.exe -k LocalService -p
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s AudioEndpointBuilder
c:\windows\system32\svchost.exe -k localservice -p -s FontCache
c:\windows\system32\svchost.exe -k netsvcs -p -s Schedule
C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Containe r.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
c:\windows\system32\svchost.exe -k appmodel -p -s StateRepository
c:\windows\system32\svchost.exe -k networkservice -p -s Dnscache
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s WinHttpAutoProxySvc
c:\windows\system32\svchost.exe -k localservice -p -s LicenseManager
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
svchost.exe
c:\windows\system32\svchost.exe -k netsvcs -p -s ShellHWDetection
C:\WINDOWS\System32\spoolsv.exe
c:\windows\system32\svchost.exe -k networkservice -p -s LanmanWorkstation
C:\WINDOWS\system32\AUDIODG.EXE
c:\windows\system32\svchost.exe -k netsvcs -p -s IKEEXT
C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
C:\WINDOWS\system32\AdminService.exe
c:\windows\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
c:\windows\system32\svchost.exe -k localservice -p -s SstpSvc
c:\windows\system32\svchost.exe -k localservicenonetwork -p -s DPS
c:\windows\system32\svchost.exe -k netsvcs -p -s LanmanServer
c:\windows\system32\svchost.exe -k networkservice -p -s CryptSvc
C:\WINDOWS\SysWOW64\SecUPDUtilSvc.exe
C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s TrkWks
c:\windows\system32\svchost.exe -k netsvcs -p -s WpnService
c:\windows\system32\svchost.exe -k netsvcs -p -s iphlpsvc
c:\windows\system32\svchost.exe -k networkservice -p -s TapiSrv
c:\windows\system32\svchost.exe -k localservice -p -s WdiServiceHost
c:\windows\system32\svchost.exe -k netsvcs
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s WdiSystemHost
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s lmhosts
c:\windows\system32\sihost.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup -s CDPUserSvc
c:\windows\system32\svchost.exe -k unistacksvcgroup -s WpnUserService
c:\windows\system32\taskhostw.exe
C:\WINDOWS\system32\nvvsvc.exe
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s TabletInputService
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\Acer\Acer Quick Access\QASvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Acer\Acer Quick Access\QALSvc.exe
c:\windows\system32\svchost.exe -k localservice -p -s CDPSvc
C:\Program Files\Dolby Digital Plus\ddp.exe
c:\windows\system32\svchost.exe -k netsvcs -p -s TokenBroker
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\Pres entationFontCache.exe
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s PcaSvc
C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
C:\WINDOWS\System32\DriverStore\FileRepository\igd lh64.inf_amd64_82119d956c80af5a\igfxext.exe
c:\windows\system32\svchost.exe -k netsvcs -p -s Appinfo
C:\Program Files\Acer\Acer Quick Access\QAAgent.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s NgcCtnrSvc
C:\Program Files\Acer\Acer Quick Access\QALockHandler.exe
C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\WINDOWS\System32\DriverStore\FileRepository\igd lh64.inf_amd64_82119d956c80af5a\igfxEM.exe
C:\OEM\Preload\FubTracking\FubTracking.exe
C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2t xyewy\ShellExperienceHost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\SearchUI.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x6 4__kzf8qxf38zg5c\SkypeApp.exe
C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19031.114 11.0_x64__8wekyb3d8bbwe\Video.UI.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\System32\smartscreen.exe
C:\WINDOWS\system32\SettingSyncHost.exe
C:\Program Files\Windows Defender\MSASCuiL.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x6 4__kzf8qxf38zg5c\SkypeBackgroundHost.exe
C:\Windows\System32\RuntimeBroker.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
c:\windows\system32\svchost.exe -k netsvcs -p
c:\windows\system32\svchost.exe -k unistacksvcgroup
C:\Windows\System32\RuntimeBroker.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files\rempl\sedsvc.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\Acer\Care Center\ACCStd.exe
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s wscsvc
C:\Program Files\Acer\Acer Power Management\ePowerButton_NB.exe
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p -s SSDPSRV
C:\WINDOWS\system32\SearchFilterHost.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\ApplicationFrameHost.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s NgcSvc
C:\Program Files\Mozilla Firefox\firefox.exe
svchost.exe
c:\windows\system32\svchost.exe -k netsvcs -p -s BITS
c:\windows\system32\svchost.exe -k bcastdvruserservice -s BcastDVRUserService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wlidsvc
C:\WINDOWS\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uLocal Page = %11%\blank.htm
mWinlogon: Userinit = C:\WINDOWS\System32\userinit.exe
uRun: [OneDrive] "C:\Users\Martijn\AppData\Local\Microsoft\OneDrive \OneDrive.exe" /background
uRun: [Steam] "C:\Steam\steam.exe" -silent
uRun: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
uRun: [vidnotifier.exe] C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe
mRun: [BacKGround Agent] C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
mPolicies-System: DSCAutomationHostEnabled = dword:2
mPolicies-System: EnableFullTrustStartupTasks = dword:2
mPolicies-System: EnableUwpStartupTasks = dword:2
mPolicies-System: SupportFullTrustStartupTasks = dword:1
mPolicies-System: SupportUwpStartupTasks = dword:1
mPolicies-System: FilterAdministratorToken = dword:1
TCP: NameServer = 195.130.130.3 195.130.131.3
TCP: Interfaces\{06a3c1ad-90b2-46d8-8b38-63afb73ef17b} : DHCPNameServer = 40.31.1.66
TCP: Interfaces\{f81dd6e2-35fc-49cb-8c32-0fe58a93f9aa} : DHCPNameServer = 195.130.130.3 195.130.131.3
TCP: Interfaces\{f81dd6e2-35fc-49cb-8c32-0fe58a93f9aa}\14D47545 : DHCPNameServer = 8.8.8.8 195.238.2.21
TCP: Interfaces\{f81dd6e2-35fc-49cb-8c32-0fe58a93f9aa}\3596475636F6D6432444634443 : DHCPNameServer = 192.168.0.1
Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
SSODL: WebCheck - <orphaned>
LSA: Security Packages = ""
CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
x64-Run: [SecurityHealth] C:\Program Files (x86)\Windows Defender\MSASCuiL.exe
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [RtHDVBg_Dolby] "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
x64-Run: [IAStorIcon] "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
x64-Run: [NvBackend] "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
x64-Run: [ShadowPlay] C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\nvspcap64.dll,ShadowPlayOnSyst emStart
x64-mPolicies-System: DSCAutomationHostEnabled = dword:2
x64-mPolicies-System: EnableFullTrustStartupTasks = dword:2
x64-mPolicies-System: EnableUwpStartupTasks = dword:2
x64-mPolicies-System: SupportFullTrustStartupTasks = dword:1
x64-mPolicies-System: SupportUwpStartupTasks = dword:1
x64-mPolicies-System: FilterAdministratorToken = dword:1
x64-Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
x64-Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
x64-SSODL: WebCheck - <orphaned>
x64-mASetup: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall
x64-mASetup: {89820200-ECBD-11cf-8B85-00AA005B4340} - U
x64-CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
.
============= SERVICES / DRIVERS ===============
.
R0 iaStorA;Intel Chipset SATA RAID Controller;C:\WINDOWS\System32\drivers\iaStorA.sys [2017-7-13 891392]
R0 intelpep;Stuurprogramma voor Intel(R) Power Engine-invoegtoepassing ;C:\WINDOWS\System32\drivers\intelpep.sys [2018-4-12 177192]
R0 iorate;Filterstuurprogramma voor schijf-I/O-snelheid;C:\WINDOWS\System32\drivers\iorate.sys [2018-12-12 58168]
R0 SgrmAgent;System Guard Runtime Monitor Agent;C:\WINDOWS\System32\drivers\SgrmAgent.sys [2018-4-12 63896]
R0 volume;Volumestuurprogramma;C:\WINDOWS\System32\dr ivers\volume.sys [2018-4-12 16288]
R0 WindowsTrustedRT;Windows Trusted Execution Environment Class Extension;C:\WINDOWS\System32\drivers\WindowsTrust edRT.sys [2018-7-18 72768]
R0 WindowsTrustedRTProxy;Microsoft Windows Trusted Runtime Secure Service;C:\WINDOWS\System32\drivers\WindowsTrusted RTProxy.sys [2018-4-12 18472]
R0 Wof;Windows Overlay File System Filter Driver;C:\WINDOWS\System32\drivers\wof.sys [2018-4-12 209816]
R1 afunix;afunix;C:\WINDOWS\System32\drivers\afunix.s ys [2018-4-12 39424]
R1 ahcache;Application Compatibility Cache;C:\WINDOWS\System32\drivers\ahcache.sys [2018-4-12 254464]
R1 bam;Background Activity Moderator Driver;C:\WINDOWS\System32\drivers\bam.sys [2018-4-12 60320]
R1 FileCrypt;FileCrypt;C:\WINDOWS\System32\drivers\fi lecrypt.sys [2018-4-12 55808]
R1 GpuEnergyDrv;GPU Energy Driver;C:\WINDOWS\System32\drivers\gpuenergydrv.sy s [2018-4-12 8192]
R2 AtherosSvc;AtherosSvc;C:\WINDOWS\System32\AdminSer vice.exe [2017-7-13 347064]
R2 CCDMonitorService;CCDMonitorService;C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2015-8-31 2839296]
R2 CDPSvc;Service Platform voor verbonden apparaten;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2019-2-14 85472]
R2 CDPUserSvc_40155;Connected Devices Platform User Service_40155;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2019-2-14 85472]
R2 CldFlt;Windows Cloud Files Filter Driver;C:\WINDOWS\System32\drivers\cldflt.sys [2019-4-9 414720]
R2 CoreMessagingRegistrar;CoreMessaging;C:\WINDOWS\Sy stem32\svchost.exe -k LocalServiceNoNetwork -p [2019-2-14 85472]
R2 DiagTrack;Connected User Experiences and Telemetry;C:\WINDOWS\System32\svchost.exe -k utcsvc -p [2019-2-14 85472]
R2 DusmSvc;Dataverbruik;C:\WINDOWS\System32\svchost.e xe -k LocalServiceNetworkRestricted -p [2019-2-14 85472]
R2 GfExperienceService;NVIDIA GeForce Experience Service;C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-1-25 1155216]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service;C:\WINDOWS\System32\DriverStore\FileReposi tory\igdlh64.inf_amd64_82119d956c80af5a\igfxCUISer vice.exe [2017-2-7 350704]
R2 isaHelperSvc;Intel(R) Security Assist Helper;C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [2015-5-19 7680]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2015-9-19 207648]
R2 MBAMService;Malwarebytes Service;C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [2019-5-12 6562472]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS;C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Containe r.exe [2018-12-8 767288]
R2 NvNetworkService;NVIDIA Network Service;C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-1-25 1871504]
R2 OneSyncSvc_40155;Sync Host_40155;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2019-2-14 85472]
R2 SamsungUPDUtilSvc;Samsung UPD Utility Service;C:\Windows\SysWOW64\SecUPDUtilSvc.exe [2019-1-18 143664]
R2 SecurityHealthService;Service Windows Defender-beveiligingscentrum;C:\WINDOWS\System32\SecurityHe althService.exe [2018-8-15 760888]
R2 sedsvc;Windows Remediation Service;C:\Program Files\rempl\sedsvc.exe [2019-3-30 338744]
R2 SgrmBroker;System Guard Runtime Monitor Broker;C:\WINDOWS\System32\SgrmBroker.exe [2018-4-12 163336]
R2 SSPORT;SSPORT;C:\WINDOWS\System32\drivers\SSPORT.S YS [2019-1-18 11576]
R2 storqosflt;Storage QoS Filter Driver;C:\WINDOWS\System32\drivers\storqosflt.sys [2019-4-9 82432]
R2 UserManager;User Manager;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
R2 UsoSvc;Update Orchestrator Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
R2 wcifs;Windows Container Isolation;C:\WINDOWS\System32\drivers\wcifs.sys [2019-4-9 152072]
R2 WpnService;Systeemservice voor Windows Push Notifications;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
R2 WpnUserService_40155;Windows Push Notifications User Service_40155;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2019-2-14 85472]
R3 AppXSvc;AppX Deployment Service (AppXSVC);C:\WINDOWS\System32\svchost.exe -k wsappx -p [2019-2-14 85472]
R3 BcastDVRUserService_40155;GameDVR and Broadcast User Service_40155;C:\WINDOWS\System32\svchost.exe -k BcastDVRUserService [2019-2-14 85472]
R3 BTAGService;Bluetooth Audio Gateway-service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2019-2-14 85472]
R3 BtFilter;BtFilter;C:\WINDOWS\System32\drivers\btfi lter.sys [2017-7-13 601448]
R3 BthAvctpSvc;AVCTP-service;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2019-2-14 85472]
R3 BthLEEnum;Bluetooth Low Energy-stuurprogramma;C:\WINDOWS\System32\drivers\Microso ft.Bluetooth.Legacy.LEEnumerator.sys [2018-4-12 86528]
R3 CAD;Charge Arbitration Driver;C:\WINDOWS\System32\drivers\CAD.sys [2018-4-12 60320]
R3 camsvc;Capability Access Manager Service;C:\WINDOWS\System32\svchost.exe -k appmodel -p [2019-2-14 85472]
R3 ClipSVC;Client License Service (ClipSVC);C:\WINDOWS\System32\svchost.exe -k wsappx -p [2019-2-14 85472]
R3 ePowerSvc;ePower Service;C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2015-5-14 2573568]
R3 ETDI2C;ELAN I2C Filter Driver;C:\WINDOWS\System32\drivers\ETDI2C.sys [2015-9-8 183896]
R3 iaLPSS2i_I2C;Intel(R) Serial IO I2C-stuurprogramma v2;C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2018-4-12 171520]
R3 IntcDAud;Intel(R) Display Audio;C:\WINDOWS\System32\drivers\IntcDAud.sys [2016-9-16 821224]
R3 LicenseManager;Service voor Windows-licentiebeheer ;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2019-2-14 85472]
R3 LMDriver;Launch Manager Wireless Driver;C:\WINDOWS\System32\drivers\LMDriver.sys [2018-5-15 31000]
R3 MBAMSwissArmy;MBAMSwissArmy;C:\WINDOWS\System32\dr ivers\mbamswissarmy.sys [2019-5-12 275232]
R3 NcbService;Network Connection Broker;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2019-2-14 85472]
R3 NdisVirtualBus;Microsoft Virtual Network Adapter Enumerator;C:\WINDOWS\System32\drivers\NdisVirtual Bus.sys [2018-4-12 20992]
R3 NgcCtnrSvc;Microsoft Passport Container;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2019-2-14 85472]
R3 NgcSvc;Microsoft Passport;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2019-2-14 85472]
R3 NvStreamKms;NvStreamKms;C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-1-25 19600]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);C:\WINDOWS\System32\drivers\nvvad64v.sys [2018-11-22 70024]
R3 PimIndexMaintenanceSvc_40155;Contact Data_40155;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2019-2-14 85472]
R3 QALSvc;Quick Access Local Service;C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [2015-9-5 401248]
R3 QASvc;Quick Access Service;C:\Program Files\Acer\Acer Quick Access\QASvc.exe [2015-9-5 453984]
R3 Qcamain10x64;Qualcomm Atheros Extensible Wireless LAN 11AC device driver;C:\WINDOWS\System32\drivers\Qcamain10x64.sy s [2017-4-24 2412976]
R3 RadioShim;Shim for HID-KMDF Interface layer;C:\WINDOWS\System32\drivers\RadioShim.sys [2018-5-15 25368]
R3 rt640x64;Realtek RT640 NT Driver;C:\WINDOWS\System32\drivers\rt640x64.sys [2017-7-13 984032]
R3 RTSUER;Realtek USB Card Reader - UER;C:\WINDOWS\System32\drivers\RtsUer.sys [2017-7-13 419296]
R3 SEMgrSvc;Betalingen en NFC/SE Manager;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2019-2-14 85472]
R3 StateRepository;State Repository Service;C:\WINDOWS\System32\svchost.exe -k appmodel -p [2019-2-14 85472]
R3 TimeBrokerSvc;Time Broker;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2019-2-14 85472]
R3 TokenBroker;Webaccountbeheer;C:\WINDOWS\System32\s vchost.exe -k netsvcs -p [2019-2-14 85472]
R3 UEFI;Microsoft UEFI-stuurprogramma;C:\WINDOWS\System32\drivers\uefi.sy s [2018-6-14 29600]
R3 UnistoreSvc_40155;User Data Storage_40155;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2019-2-14 85472]
R3 UserDataSvc_40155;User Data Access_40155;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2019-2-14 85472]
R3 wdiwifi;WDI Driver Framework;C:\WINDOWS\System32\drivers\WdiWiFi.sys [2019-4-9 787968]
R3 wisvc;Windows Insider-service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
R3 xinputhid;Stuurprogramma voor XINPUT HID-filter;C:\WINDOWS\System32\drivers\xinputhid.sys [2018-4-12 46592]
S0 MbamElam;MbamElam;C:\WINDOWS\System32\drivers\Mbam Elam.sys [2019-5-12 20936]
S2 DoSvc;Delivery Optimization;C:\WINDOWS\System32\svchost.exe -k NetworkService -p [2019-2-14 85472]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2015-7-27 18856]
S2 MapsBroker;Downloaded Maps Manager;C:\WINDOWS\System32\svchost.exe -k NetworkService -p [2019-2-14 85472]
S2 NvStreamSvc;NVIDIA Streamer Service;C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-1-25 5544592]
S3 AcpiDev;Stuurprogramma voor ACPI-apparaten;C:\WINDOWS\System32\drivers\AcpiDev.sys [2018-4-12 20480]
S3 ADP80XX;ADP80XX;C:\WINDOWS\System32\drivers\adp80x x.sys [2018-4-12 1135520]
S3 AJRouter;AllJoyn Router Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2019-2-14 85472]
S3 AppReadiness;App Readiness;C:\WINDOWS\System32\svchost.exe -k AppReadiness -p [2019-2-14 85472]
S3 bcmfn2;bcmfn2 Service;C:\WINDOWS\System32\drivers\bcmfn2.sys [2018-4-12 9728]
S3 bindflt;Windows Bind Filter Driver;C:\WINDOWS\System32\drivers\bindflt.sys [2019-2-14 92704]
S3 BluetoothUserService_40155;Bluetooth User Support Service_40155;C:\WINDOWS\System32\svchost.exe -k BthAppGroup [2019-2-14 85472]
S3 bttflt;VHDPMEM BTT-filter voor Microsoft Hyper-V;C:\WINDOWS\System32\drivers\bttflt.sys [2018-4-12 38304]
S3 buttonconverter;Service voor Portable Device Control-apparaten;C:\WINDOWS\System32\drivers\buttonconver ter.sys [2018-4-12 39936]
S3 CapImg;HID-stuurprogramma voor CapImg-touchscreen;C:\WINDOWS\System32\drivers\capimg.sys [2018-4-12 123392]
S3 cht4iscsi;cht4iscsi;C:\WINDOWS\System32\drivers\ch t4sx64.sys [2018-4-12 321432]
S3 cht4vbd;Chelsio virtuele-busstuurprogramma;C:\WINDOWS\System32\drivers\cht4 vx64.sys [2018-4-12 1836952]
S3 cplspcon;Intel(R) Content Protection HDCP Service;C:\WINDOWS\System32\DriverStore\FileReposi tory\igdlh64.inf_amd64_82119d956c80af5a\IntelCpHDC PSvc.exe [2017-2-7 488944]
S3 DevicePickerUserSvc_40155;DevicePicker_40155;C:\WI NDOWS\System32\svchost.exe -k DevicesFlow [2019-2-14 85472]
S3 DevicesFlowUserSvc_40155;DevicesFlow_40155;C:\WIND OWS\System32\svchost.exe -k DevicesFlow [2019-2-14 85472]
S3 DevQueryBroker;DevQuery Background Discovery Broker;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2019-2-14 85472]
S3 diagnosticshub.standardcollector.service;Microsoft (R) Diagnostics Hub Standard Collector-service;C:\WINDOWS\System32\DiagSvcs\DiagnosticsHu b.StandardCollector.Service.exe [2018-8-15 90624]
S3 diagsvc;Diagnostic Execution Service;C:\WINDOWS\System32\svchost.exe -k diagnostics [2019-2-14 85472]
S3 DmEnrollmentSvc;Registratieservice voor Apparaatbeheer;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
S3 dmwappushservice;dmwappushsvc;C:\WINDOWS\System32\ svchost.exe -k netsvcs -p [2019-2-14 85472]
S3 DsSvc;Data Sharing Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2019-2-14 85472]
S3 embeddedmode;Ingesloten modus;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2019-2-14 85472]
S3 EntAppSvc;Enterprise App Management Service;C:\WINDOWS\System32\svchost.exe -k appmodel -p [2019-2-14 85472]
S3 FrameServer;Windows Camera Frame Server;C:\WINDOWS\System32\svchost.exe -k Camera [2019-2-14 85472]
S3 genericusbfn;Algemene USB-functieklasse;C:\WINDOWS\System32\drivers\genericu sbfn.sys [2018-4-12 20992]
S3 GraphicsPerfSvc;GraphicsPerfSvc;C:\WINDOWS\System3 2\svchost.exe -k GraphicsPerfSvcGroup [2019-2-14 85472]
S3 hidinterrupt;Algemeen stuurprogramma voor HID-knoppen waarvoor interrupts zijn geïmplementeerd;C:\WINDOWS\System32\drivers\hidin terrupt.sys [2018-4-12 50592]
S3 HvHost;HV-hostservice;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2019-2-14 85472]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver;C:\WINDOWS\System32\drivers\mshwnclx.sys [2018-4-12 27136]
S3 iagpio;Stuurprogramma van Intel Serial IO GPIO-controller;C:\WINDOWS\System32\drivers\iagpio.sys [2018-4-12 36864]
S3 iai2c;Intel(R) Serial IO I2C-hostcontroller;C:\WINDOWS\System32\drivers\iai2c.s ys [2018-4-12 91648]
S3 iaLPSS2_I2C;Intel(R) Serial IO I2C Driver v2;C:\WINDOWS\System32\drivers\iaLPSS2_I2C.sys [2015-6-16 185128]
S3 iaLPSS2i_GPIO2;Stuurprogramma v2 voor Intel(R) Serial IO GPIO;C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sy s [2018-4-12 79360]
S3 iaLPSS2i_GPIO2_BXT_P;Stuurprogramma v2 voor Intel(R) Serial IO GPIO;C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BX T_P.sys [2018-4-12 88576]
S3 iaLPSS2i_I2C_BXT_P;Intel(R) Serial IO I2C-stuurprogramma v2;C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P. sys [2018-4-12 174592]
S3 iaLPSSi_GPIO;Stuurprogramma van Intel(R) Serial IO GPIO-controller;C:\WINDOWS\System32\drivers\iaLPSSi_GPI O.sys [2018-4-12 38128]
S3 iaLPSSi_I2C;Stuurprogramma voor Intel(R) Serial IO I2C-controller;C:\WINDOWS\System32\drivers\iaLPSSi_I2C .sys [2018-4-12 113152]
S3 iaStorAVC;Intel Chipset SATA RAID-controller;C:\WINDOWS\System32\drivers\iaStorAVC.s ys [2018-4-12 885144]
S3 ibbus;Mellanox InfiniBand Bus/AL (filterstuurprogramma);C:\WINDOWS\System32\drivers \ibbus.sys [2018-4-12 526232]
S3 icssvc;Windows Mobile Hotspot Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2019-2-14 85472]
S3 IndirectKmd;Indirecte weergave kernelmodusstuurprogramma;C:\WINDOWS\System32\driv ers\IndirectKmd.sys [2018-4-12 38912]
S3 InstallService;Microsoft Store-installatieservice;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2015-5-22 881152]
S3 Intel(R) Security Assist;Intel(R) Security Assist;C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [2015-5-19 335872]
S3 IPT;IPT;C:\WINDOWS\System32\drivers\ipt.sys [2018-4-12 32256]
S3 IpxlatCfgSvc;Configuratieservice voor IP-vertaling;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2019-2-14 85472]
S3 ItSas35i;ItSas35i;C:\WINDOWS\System32\drivers\ItSa s35i.sys [2018-4-12 145816]
S3 lfsvc;Geolocation Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
S3 LSI_SAS2i;LSI_SAS2i;C:\WINDOWS\System32\drivers\ls i_sas2i.sys [2018-4-12 124312]
S3 LSI_SAS3i;LSI_SAS3i;C:\WINDOWS\System32\drivers\ls i_sas3i.sys [2018-4-12 128408]
S3 LxpSvc;Service Language Experience;C:\WINDOWS\System32\svchost.exe -k netsvcs [2019-2-14 85472]
S3 mausbhost;Stuurprogramma voor MA-USB-hostcontroller;C:\WINDOWS\System32\drivers\mausbho st.sys [2018-4-12 505240]
S3 mausbip;Stuurprogramma voor IP-filter voor MA-USB;C:\WINDOWS\System32\drivers\mausbip.sys [2018-4-12 56736]
S3 megasas2i;megasas2i;C:\WINDOWS\System32\drivers\Me gaSas2i.sys [2018-4-12 75160]
S3 megasas35i;megasas35i;C:\WINDOWS\System32\drivers\ megasas35i.sys [2018-4-12 82328]
S3 MessagingService_40155;MessagingService_40155;C:\W INDOWS\System32\svchost.exe -k UnistackSvcGroup [2019-2-14 85472]
S3 mlx4_bus;Mellanox ConnectX Bus Enumerator;C:\WINDOWS\System32\drivers\mlx4_bus.sy s [2018-4-12 842648]
S3 NaturalAuthentication;Natuurlijke authenticatie;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
S3 ndfltr;NetworkDirect-service;C:\WINDOWS\System32\drivers\ndfltr.sys [2018-4-12 108952]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library;C:\WINDOWS\System32\drivers\NetAdapterCx.s ys [2018-4-12 175104]
S3 NetSetupSvc;Network Setup Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
S3 netvsc;netvsc;C:\WINDOWS\System32\drivers\netvsc.s ys [2018-4-12 197632]
S3 nvdimm;Microsoft NVDIMM-apparaatstuurprogramma;C:\WINDOWS\System32\drivers \nvdimm.sys [2018-4-12 104448]
S3 NvStUSB;NVIDIA Stereoscopic 3D USB driver;C:\WINDOWS\System32\drivers\nvstusb.sys [2017-5-18 486936]
S3 NVSWCFilter;NVIDIA SHIELD Wireless Controller Trackpad Service;C:\WINDOWS\System32\drivers\nvswcfilter.sy s [2018-11-22 45152]
S3 nvvhci;NVVHCI Enumerator Service;C:\WINDOWS\System32\drivers\nvvhci.sys [2018-11-22 74576]
S3 percsas2i;percsas2i;C:\WINDOWS\System32\drivers\pe rcsas2i.sys [2018-4-12 58776]
S3 percsas3i;percsas3i;C:\WINDOWS\System32\drivers\pe rcsas3i.sys [2018-4-12 61848]
S3 PhoneSvc;Phone Service;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2019-2-14 85472]
S3 PNPMEM;Stuurprogramma van Microsoft voor geheugenmodule;C:\WINDOWS\System32\drivers\pnpmem. sys [2018-4-12 16896]
S3 PrintWorkflowUserSvc_40155;PrintWorkflow_40155;C:\ WINDOWS\System32\svchost.exe -k PrintWorkflow [2019-2-14 85472]
S3 PushToInstall;Windows PushToInstall-service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
S3 Ramdisk;Windows RAM Disk Driver;C:\WINDOWS\System32\drivers\ramdisk.sys [2018-4-12 39840]
S3 ReFS;ReFS;C:\WINDOWS\System32\drivers\refs.sys [2019-3-14 1921848]
S3 ReFSv1;ReFSv1;C:\WINDOWS\System32\drivers\refsv1.s ys [2019-3-14 945464]
S3 RetailDemo;Retaildemoservice;C:\WINDOWS\System32\s vchost.exe -k rdxgroup [2019-2-14 85472]
S3 rhproxy;Resource Hub-proxystuurprogramma;C:\WINDOWS\System32\drivers\rh proxy.sys [2018-4-12 104448]
S3 ScDeviceEnum;Smart Card Device Enumeration Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2019-2-14 85472]
S3 scmbus;Microsoft-stuurprogramma voor geheugenbus opslagklasse;C:\WINDOWS\System32\drivers\scmbus.sy s [2018-8-15 128920]
S3 SDFRd;SDF Reflector;C:\WINDOWS\System32\drivers\SDFRd.sys [2018-4-12 33176]
S3 SensorDataService;Sensor Data Service;C:\WINDOWS\System32\SensorDataService.exe [2018-4-12 1273344]
S3 SensorService;Sensor Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2019-2-14 85472]
S3 SerCx2;Serial UART Support Library;C:\WINDOWS\System32\drivers\SerCx2.sys [2018-4-12 154528]
S3 SharedRealitySvc;Spatial Data Service;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2019-2-14 85472]
S3 smphost;Microsoft Storage Spaces SMP;C:\WINDOWS\System32\svchost.exe -k smphost [2019-2-14 85472]
S3 SmsRouter;Microsoft Windows SMS Router-service.;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2019-2-14 85472]
S3 SpatialGraphFilter;Holographic Spatial Graph Filter;C:\WINDOWS\System32\drivers\SpatialGraphFil ter.sys [2018-4-12 57752]
S3 spectrum;Windows Perception Service;C:\WINDOWS\System32\Spectrum.exe [2018-6-14 976384]
S3 stornvme;Microsoft Standard NVM Express Driver;C:\WINDOWS\System32\drivers\stornvme.sys [2018-6-11 105368]
S3 storufs;Microsoft Universal Flash Storage (UFS)-stuurprogramma;C:\WINDOWS\System32\drivers\storufs .sys [2018-7-18 48544]
S3 TieringEngineService;Storage Tiers Management;C:\WINDOWS\System32\TieringEngineServic e.exe [2018-4-12 303616]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension;C:\WINDOWS\System32\drivers\UcmCx.sys [2018-4-12 128512]
S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension;C:\WINDOWS\System32\drivers\UcmTcpciCx.s ys [2018-4-12 152576]
S3 UcmUcsi;UCSI-client van USB-connectorbeheer;C:\WINDOWS\System32\drivers\UcmUcs i.sys [2018-4-12 57856]
S3 UdeCx;USB Device Emulation Support Library;C:\WINDOWS\System32\drivers\Udecx.sys [2018-4-12 45056]
S3 UEIPSvc;User Experience Improvement Program;C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [2015-5-27 247040]
S3 Ufx01000;USB Function Class Extension;C:\WINDOWS\System32\drivers\ufx01000.sys [2018-4-12 282008]
S3 UfxChipidea;Chipidea USB-controller;C:\WINDOWS\System32\drivers\UfxChipidea .sys [2018-4-12 98200]
S3 ufxsynopsys;Synopsys USB-controller;C:\WINDOWS\System32\drivers\ufxsynopsys .sys [2018-4-12 144288]
S3 UrsChipidea;Stuurprogramma voor Chipidea USB Role-Switch;C:\WINDOWS\System32\drivers\urschipidea.sys [2018-4-12 29088]
S3 UrsCx01000;USB Role-Switch Support Library;C:\WINDOWS\System32\drivers\urscx01000.sys [2018-4-12 67992]
S3 UrsSynopsys;Stuurprogramma voor Synopsys USB Role-Switch;C:\WINDOWS\System32\drivers\urssynopsys.sys [2018-4-12 28064]
S3 VacSvc;Volumetric Audio Compositor-service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2019-2-14 85472]
S3 vhf;Virtual HID Framework (VHF)-stuurprogramma;C:\WINDOWS\System32\drivers\vhf.sys [2018-11-15 36352]
S3 vmgid;Microsoft Hyper-V-stuurprogramma voor de gastinfrastructuur;C:\WINDOWS\System32\drivers\vmg id.sys [2018-8-15 10240]
S3 vmicguestinterface;Hyper-V Guest Service Interface;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2019-2-14 85472]
S3 vmicvmsession;Hyper-V PowerShell Direct Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2019-2-14 85472]
S3 WaaSMedicSvc;Windows Update Medic Service;C:\WINDOWS\System32\svchost.exe -k wusvcs -p [2019-2-14 85472]
S3 WalletService;WalletService;C:\WINDOWS\System32\sv chost.exe -k appmodel -p [2019-2-14 85472]
S3 WarpJITSvc;WarpJITSvc;C:\WINDOWS\System32\svchost. exe -k LocalServiceNetworkRestricted [2019-2-14 85472]
S3 wcnfs;Windows Container Name Virtualization;C:\WINDOWS\System32\drivers\wcnfs.s ys [2018-12-12 83456]
S3 WdNisDrv;Windows Defender Antivirus Network Inspection System Driver;C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [2019-4-24 60896]
S3 WdNisSvc;Windows Defender Antivirus Network Inspection Service;C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1904.1-0\NisSrv.exe [2019-4-24 3851264]
S3 WEPHOSTSVC;Windows Encryption Provider Host Service;C:\WINDOWS\System32\svchost.exe -k WepHostSvcGroup [2019-2-14 85472]
S3 WFDSConMgrSvc;Wi-Fi Direct Services Connection Manager-service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2019-2-14 85472]
S3 WinMad;WinMad-service;C:\WINDOWS\System32\drivers\winmad.sys [2018-4-12 32152]
S3 WinNat;Windows NAT Driver;C:\WINDOWS\System32\drivers\winnat.sys [2018-11-15 228864]
S3 WinVerbs;WinVerbs-service;C:\WINDOWS\System32\drivers\winverbs.sys [2018-4-12 64920]
S3 wlpasvc;Lokale profielassistentservice;C:\WINDOWS\System32\svchos t.exe -k LocalServiceNetworkRestricted -p [2019-2-14 85472]
S3 workfolderssvc;Work Folders;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2019-2-14 85472]
S3 WpcMonSvc;Ouderlijk toezicht;C:\WINDOWS\System32\svchost.exe -k LocalService [2019-2-14 85472]
S3 xbgm;Xbox Game Monitoring;C:\WINDOWS\System32\xbgmsvc.exe [2018-4-12 59512]
S3 XblAuthManager;Xbox Live-verificatiebeheer;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
S3 XblGameSave;Games opslaan op Xbox Live;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
S3 xboxgip;Xbox Game Input Protocol-stuurprogramma;C:\WINDOWS\System32\drivers\xboxgip .sys [2018-7-18 295424]
S3 XboxGipSvc;Xbox Accessory Management Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
S3 XboxNetApiSvc;Netwerkservice van Xbox Live;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
S3 xusb22;Stuurprogramma Service Xbox 360 Draadloze ontvanger 22;C:\WINDOWS\System32\drivers\xusb22.sys [2018-4-12 99328]
S3 YMIDUSBW;Yamaha USB-MIDI Driver (WDM);C:\WINDOWS\System32\drivers\ymidusbx64.sys [2015-7-28 43744]
S4 hvcrash;hvcrash;C:\WINDOWS\System32\drivers\hvcras h.sys [2018-4-12 33184]
S4 shpamsvc;Shared PC Account Manager;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2019-2-14 85472]
S4 ssh-agent;OpenSSH Authentication Agent;C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [2018-4-12 495616]
S4 tzautoupdate;Updater van automatische tijdzone;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2019-2-14 85472]
SUnknown WdmCompanionFilter;WdmCompanionFilter; [x]
.
=============== File Associations ===============
.
FileExt: .txt: txtfile=C:\WINDOWS\System32\NOTEPAD.EXE %1 [UserChoice]
.
=============== Created Last 30 ================
.
2019-05-12 14:17:48 15075152 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69DCD94C-76E4-446B-8539-E76CB209BA7A}\mpengine.dll
2019-05-12 13:44:18 15075152 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2E5E1141-FE03-4683-A9B8-E331DB0D0F6A}\mpengine.dll
2019-05-12 13:39:41 -------- d-----w- C:\Users\Martijn\AppData\Local\mbam
2019-05-12 13:39:14 -------- d-----w- C:\Users\Martijn\AppData\Local\mbamtray
2019-05-12 13:39:01 275232 ----a-w- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
2019-05-12 13:38:53 20936 ----a-w- C:\WINDOWS\System32\drivers\MbamElam.sys
2019-05-12 13:38:47 153328 ----a-w- C:\WINDOWS\System32\drivers\mbae64.sys
2019-05-12 13:38:40 -------- d-----w- C:\ProgramData\Malwarebytes
2019-05-12 13:38:40 -------- d-----w- C:\Program Files\Malwarebytes
2019-05-11 23:01:01 15075152 ------w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2019-05-11 16:31:26 -------- d-----w- C:\Users\Martijn\AppData\Local\OneDrive
2019-05-02 13:07:48 -------- d-----w- C:\Program Files (x86)\Wizards of the Coast
2019-04-22 13:31:12 -------- d-----w- C:\Users\Martijn\AppData\Local\Adobe
.
==================== Find3M ====================
.
2019-04-24 21:38:51 60896 ----a-w- C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys
2019-04-24 21:38:51 46472 ----a-w- C:\WINDOWS\System32\drivers\wd\WdBoot.sys
2019-04-24 21:38:51 344544 ----a-w- C:\WINDOWS\System32\drivers\wd\WdFilter.sys
2019-04-02 12:38:33 94008 ----a-w- C:\WINDOWS\System32\rdpudd.dll
2019-04-02 12:33:53 1634912 ----a-w- C:\WINDOWS\System32\gdi32full.dll
2019-04-02 12:19:10 64000 ----a-w- C:\WINDOWS\System32\iemigplugin.dll
2019-04-02 12:18:02 59904 ----a-w- C:\WINDOWS\System32\mf3216.dll
2019-04-02 12:16:00 1030144 ----a-w- C:\WINDOWS\System32\termsrv.dll
2019-04-02 12:15:42 140800 ----a-w- C:\WINDOWS\System32\oleprn.dll
2019-04-02 12:13:27 1605632 ----a-w- C:\WINDOWS\System32\rdpcorets.dll
2019-04-02 12:12:17 3643904 ----a-w- C:\WINDOWS\System32\win32kfull.sys
2019-04-02 12:12:05 1364992 ----a-w- C:\WINDOWS\System32\bcastdvruserservice.dll
2019-04-02 12:11:51 4053504 ----a-w- C:\WINDOWS\System32\msi.dll
2019-04-02 12:11:05 1857536 ----a-w- C:\WINDOWS\System32\msxml3.dll
2019-04-02 12:11:02 1662976 ----a-w- C:\WINDOWS\System32\GdiPlus.dll
2019-04-02 12:10:18 130048 ----a-w- C:\WINDOWS\System32\drivers\luafv.sys
2019-04-02 12:10:10 33280 ----a-w- C:\WINDOWS\System32\sxssrv.dll
2019-04-02 09:25:31 1454648 ----a-w- C:\WINDOWS\SysWow64\gdi32full.dll
2019-04-02 09:11:41 46080 ----a-w- C:\WINDOWS\SysWow64\mf3216.dll
2019-04-02 09:10:21 117760 ----a-w- C:\WINDOWS\SysWow64\oleprn.dll
2019-04-02 09:08:17 2889216 ----a-w- C:\WINDOWS\SysWow64\win32kfull.sys
2019-04-02 09:07:19 4054528 ----a-w- C:\WINDOWS\SysWow64\msi.dll
2019-04-02 09:07:12 1586688 ----a-w- C:\WINDOWS\SysWow64\msxml3.dll
2019-04-02 09:06:42 1470976 ----a-w- C:\WINDOWS\SysWow64\GdiPlus.dll
2019-04-02 08:36:50 1035256 ----a-w- C:\WINDOWS\System32\ApplyTrustOffline.exe
2019-04-02 08:24:56 135184 ----a-w- C:\WINDOWS\System32\hvloader.dll
2019-04-02 08:23:47 1023800 ----a-w- C:\WINDOWS\System32\hvax64.exe
2019-04-02 08:22:48 567592 ----a-w- C:\WINDOWS\System32\tcblaunch.exe
2019-04-02 08:22:48 1219896 ----a-w- C:\WINDOWS\System32\hvix64.exe
2019-04-02 08:22:31 76088 ----a-w- C:\WINDOWS\System32\drivers\hvservice.sys
2019-04-02 08:21:56 2467536 ----a-w- C:\WINDOWS\System32\msxml6.dll
2019-04-02 08:21:52 7520136 ----a-w- C:\WINDOWS\System32\Windows.Media.Protection.PlayR eady.dll
2019-04-02 08:21:29 735680 ----a-w- C:\WINDOWS\System32\AppXDeploymentClient.dll
2019-04-02 08:21:18 2822160 ----a-w- C:\WINDOWS\System32\drivers\dxgkrnl.sys
2019-04-02 08:20:30 412984 ----a-w- C:\WINDOWS\System32\drivers\dxgmms1.sys
2019-04-02 08:20:18 2719032 ----a-w- C:\WINDOWS\System32\drivers\tcpip.sys
2019-04-02 08:19:57 9083704 ----a-w- C:\WINDOWS\System32\ntoskrnl.exe
2019-04-02 08:19:56 793400 ----a-w- C:\WINDOWS\System32\drivers\dxgmms2.sys
2019-04-02 08:19:56 713272 ----a-w- C:\WINDOWS\System32\MSVideoDSP.dll
2019-04-02 08:19:53 786080 ----a-w- C:\WINDOWS\System32\oleaut32.dll
2019-04-02 08:01:09 25857536 ----a-w- C:\WINDOWS\System32\edgehtml.dll
2019-04-02 07:53:01 4384256 ----a-w- C:\WINDOWS\System32\EdgeContent.dll
2019-04-02 07:51:34 3399680 ----a-w- C:\WINDOWS\System32\AppXDeploymentServer.dll
2019-04-02 07:50:52 808448 ----a-w- C:\WINDOWS\System32\EdgeManager.dll
2019-04-02 07:50:21 7591936 ----a-w- C:\WINDOWS\System32\Chakra.dll
2019-04-02 07:49:52 209408 ----a-w- C:\WINDOWS\System32\AppXApplicabilityBlob.dll
2019-04-02 07:49:07 1307648 ----a-w- C:\WINDOWS\System32\MSVPXENC.dll
2019-04-02 07:48:54 1559552 ----a-w- C:\WINDOWS\System32\AppXDeploymentExtensions.deskt op.dll
2019-04-02 07:48:45 154112 ----a-w- C:\WINDOWS\System32\Chakradiag.dll
2019-04-02 07:48:15 310272 ----a-w- C:\WINDOWS\System32\drivers\netbt.sys
2019-04-02 07:47:43 894464 ----a-w- C:\WINDOWS\System32\webplatstorageserver.dll
2019-04-02 07:47:14 1214464 ----a-w- C:\WINDOWS\System32\rdpcore.dll
2019-04-02 07:46:37 2174976 ----a-w- C:\WINDOWS\System32\AppXDeploymentExtensions.oneco re.dll
2019-04-02 07:45:27 323584 ----a-w- C:\WINDOWS\System32\AppxAllUserStore.dll
2019-04-02 07:44:48 2208768 ----a-w- C:\WINDOWS\System32\win32kbase.sys
2019-04-02 07:44:34 1421312 ----a-w- C:\WINDOWS\System32\rdpbase.dll
2019-04-02 07:44:20 1724416 ----a-w- C:\WINDOWS\System32\rdpserverbase.dll
2019-04-02 07:43:22 542720 ----a-w- C:\WINDOWS\System32\vbscript.dll
2019-04-02 05:05:25 1989544 ----a-w- C:\WINDOWS\SysWow64\msxml6.dll
2019-04-02 05:04:53 6572120 ----a-w- C:\WINDOWS\SysWow64\Windows.Media.Protection.PlayR eady.dll
2019-04-02 05:04:48 581832 ----a-w- C:\WINDOWS\SysWow64\MSVideoDSP.dll
2019-04-02 05:04:47 560600 ----a-w- C:\WINDOWS\SysWow64\AppXDeploymentClient.dll
2019-04-02 05:04:43 604008 ----a-w- C:\WINDOWS\SysWow64\oleaut32.dll
2019-04-02 04:56:09 22018048 ----a-w- C:\WINDOWS\SysWow64\edgehtml.dll
2019-04-02 04:43:54 5788160 ----a-w- C:\WINDOWS\SysWow64\Chakra.dll
2019-04-02 04:43:45 608768 ----a-w- C:\WINDOWS\SysWow64\EdgeManager.dll
2019-04-02 04:43:33 578560 ----a-w- C:\WINDOWS\SysWow64\webplatstorageserver.dll
2019-04-02 04:42:45 1295360 ----a-w- C:\WINDOWS\SysWow64\MSVPXENC.dll
2019-04-02 04:41:53 1235968 ----a-w- C:\WINDOWS\SysWow64\rdpbase.dll
2019-04-02 04:41:50 1540096 ----a-w- C:\WINDOWS\SysWow64\rdpserverbase.dll
2019-04-02 04:41:17 230912 ----a-w- C:\WINDOWS\SysWow64\AppxAllUserStore.dll
2019-04-02 04:40:55 1073664 ----a-w- C:\WINDOWS\SysWow64\rdpcore.dll
2019-04-02 04:40:13 534016 ----a-w- C:\WINDOWS\SysWow64\vbscript.dll
2019-04-01 17:51:39 835480 ----a-w- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
2019-04-01 17:51:39 179608 ----a-w- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
2019-03-16 12:54:16 1008640 ----a-w- C:\WINDOWS\System32\Windows.Media.MixedRealityCapt ure.dll
2019-03-16 09:03:52 868864 ----a-w- C:\WINDOWS\SysWow64\Windows.Media.MixedRealityCapt ure.dll
2019-03-14 14:52:22 3933296 ----a-w- C:\WINDOWS\explorer.exe
2019-03-14 14:51:51 157192 ----a-w- C:\WINDOWS\System32\consent.exe
2019-03-14 14:35:39 11776 ----a-w- C:\WINDOWS\System32\appinfoext.dll
2019-03-14 14:34:02 127488 ----a-w- C:\WINDOWS\System32\AppxSysprep.dll
2019-03-14 14:33:58 82432 ----a-w- C:\WINDOWS\System32\drivers\storqosflt.sys
2019-03-14 14:33:54 30208 ----a-w- C:\WINDOWS\System32\RpcPing.exe
2019-03-14 14:33:42 182784 ----a-w- C:\WINDOWS\System32\drivers\rdpdr.sys
2019-03-14 14:31:35 198656 ----a-w- C:\WINDOWS\System32\wincredui.dll
2019-03-14 14:30:53 675328 ----a-w- C:\WINDOWS\System32\objsel.dll
2019-03-14 14:30:02 440832 ----a-w- C:\WINDOWS\System32\LockAppBroker.dll
2019-03-14 14:29:33 882688 ----a-w- C:\WINDOWS\System32\SmartcardCredentialProvider.dl l
2019-03-14 14:28:50 560640 ----a-w- C:\WINDOWS\System32\dsound.dll
2019-03-14 14:08:28 3611264 ----a-w- C:\WINDOWS\SysWow64\explorer.exe
2019-03-14 13:56:39 160768 ----a-w- C:\WINDOWS\SysWow64\wincredui.dll
2019-03-14 13:55:49 26624 ----a-w- C:\WINDOWS\SysWow64\RpcPing.exe
2019-03-14 13:53:51 375808 ----a-w- C:\WINDOWS\SysWow64\LockAppBroker.dll
2019-03-14 13:53:26 625664 ----a-w- C:\WINDOWS\SysWow64\SmartcardCredentialProvider.dl l
2019-03-14 13:53:01 559104 ----a-w- C:\WINDOWS\SysWow64\objsel.dll
2019-03-14 13:52:33 502784 ----a-w- C:\WINDOWS\SysWow64\dsound.dll
2019-03-14 08:57:04 611640 ----a-w- C:\WINDOWS\System32\drivers\spaceport.sys
2019-03-14 08:56:59 375096 ----a-w- C:\WINDOWS\System32\drivers\pci.sys
2019-03-14 08:38:03 380728 ----a-w- C:\WINDOWS\SysWow64\msv1_0.dll
2019-03-14 08:38:02 90360 ----a-w- C:\WINDOWS\SysWow64\mpr.dll
.
============= FINISH: 16:20:14,82 ===============