Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 01-01-2017 Gestart door Wim (03-01-2017 18:18:19) Gestart vanaf C:\Users\Wim\Downloads Windows 10 Home Versie 1607 (X64) (2016-09-16 00:51:03) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1190483251-3256212553-2091688138-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1190483251-3256212553-2091688138-503 - Limited - Disabled) Gast (S-1-5-21-1190483251-3256212553-2091688138-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1190483251-3256212553-2091688138-1003 - Limited - Enabled) Wim (S-1-5-21-1190483251-3256212553-2091688138-1001 - Administrator - Enabled) => C:\Users\Wim ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Bitdefender Endpoint Security Tools Antimalware (Enabled - Up to date) {3FB17364-4FCC-0FA7-6BBF-973897395371} AS: Bitdefender Endpoint Security Tools Antimalware (Enabled - Up to date) {84D09280-69F6-0029-510F-AC4AECBE19CC} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag zou kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeinstallerd worden.) . . . (Version: 2.1.28.3 - Intel) Hidden . . . (x32 Version: 2.6.1.4 - Intel) Hidden A3C (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\A3C) (Version: - ) A3C (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\A3C) (Version: - ) A3C (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\A3C) (Version: - ) Academia Press Betonbouw (HKLM-x32\...\{C361C05E-D858-4277-94DE-6803DE43FDC9}) (Version: 2.0 - ) ACE (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\ACE) (Version: - ) ACE (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\ACE) (Version: - ) ACE (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\ACE) (Version: - ) Adobe Acrobat Reader DC - Nederlands (HKLM-x32\...\{AC76BA86-7AD7-1043-7B44-AC0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated) Advanced IP Scanner 2.4 (HKLM-x32\...\{4144F4F4-EE33-43EC-AFA4-A10626C22092}) (Version: 2.4.2601 - Famatech) Agent Ransack x64 (HKLM\...\{FD8C1365-2229-4F37-A126-558DB2471CBE}) (Version: 7.0.828.1 - Mythicsoft Ltd) Aldfaer (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\Aldfaer) (Version: - ) Aldfaer (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\Aldfaer) (Version: - ) Aldfaer (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\Aldfaer) (Version: - ) Ansel (Version: 372.54 - NVIDIA Corporation) Hidden Any PDF to DWG Converter 2016 (HKLM-x32\...\Any PDF to DWG Converter_is1) (Version: - AnyDWG Software, Inc.) ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.4.1 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 3.0.8 - ASUS) ASUS Screen Saver (HKLM-x32\...\{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}) (Version: 1.0.3 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 2.01.0021 - ASUS) ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 3.1.9 - ASUS) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0034 - ASUS) Autodesk Design Review 2013 (HKLM-x32\...\Autodesk Design Review 2013) (Version: 13.0.0.82 - Autodesk, Inc.) Autodesk Design Review 2013 (x32 Version: 13.0.0.82 - Autodesk, Inc.) Hidden Autodesk Design Review DGN Importer (HKLM-x32\...\{8F7A766B-9E2E-4895-B4B2-958D035F09B9}) (Version: 2.00.071 - Autodesk, Inc) Belgium e-ID middleware 4.1.5 (build 1639) (HKLM\...\{DB942AEA-93D6-4FE4-8862-180D35A71639}) (Version: 4.1.1639 - Belgian Government) Bitdefender Endpoint Security Tools (HKLM\...\Endpoint Security) (Version: 6.2.15.860 - Bitdefender) CADS Composite Beam Designer (HKLM-x32\...\CADS Composite Beam Designer) (Version: 3.27.319.1 - Computer And Design Services Ltd) CADS WindLoadEngine (HKLM-x32\...\WindLoadEngine) (Version: 1.11.69.0 - Computer And Design Services Ltd) CCleaner (HKLM\...\CCleaner) (Version: 5.25 - Piriform) Citrix Online Launcher (HKLM-x32\...\{09DA5EE2-7E46-4DC4-96F9-BFEE50D40659}) (Version: 1.0.408 - Citrix) CodeTwo QR Code Desktop Reader (HKLM-x32\...\{D3A1FD3E-B0A9-46ED-89E9-D94EE0C3C9B6}) (Version: 1.0.1.5 - CodeTwo) Composite Column Designer (HKLM-x32\...\Composite Column Designer) (Version: 1.0.69.0 - Computer And Design Services Ltd) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DeepDyve Plugin (HKLM-x32\...\{B97881EB-5159-4BF2-A5C3-63AD003699FF}) (Version: 1.0.0 - DeepDyve) DEMU 4.12 (HKLM-x32\...\DEMU 4.12) (Version: 4.12 - Halfen GmbH) DEMU 4.12 (x32 Version: 4.12 - Halfen GmbH) Hidden DraftSight 2016 SP2 x64 (HKLM\...\{459B4886-8CB0-4E9B-87D9-D35CC80B1BCB}) (Version: 16.2.0060 - Dassault Systemes) Dropbox (HKLM-x32\...\Dropbox) (Version: 16.4.30 - Dropbox, Inc.) Dropbox Update Helper (x32 Version: 1.3.59.1 - Dropbox, Inc.) Hidden DWG TrueView 2013 (HKLM\...\DWG TrueView 2013) (Version: 19.0.55.0 - Autodesk) DWG TrueView 2013 (Version: 19.0.55.0 - Autodesk) Hidden ECtools 1.5.0.156 (HKLM-x32\...\ECtools_is1) (Version: - ) Elefir-EN (HKLM-x32\...\{259DE4BD-11AB-439E-948E-FB6924060837}) (Version: 1.5.8000 - Universidade de Aveiro) Extended Asian Language font pack for Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-2530-0000-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated) Files Terminator Free 2.6.0.2 (HKLM-x32\...\{05DD01C7-8776-4204-AFCD-F05E482C26F7}_is1) (Version: 2.6.0.2 - Marcello Pietrelli & Gianni Baini) Finnwood (HKLM-x32\...\{9C1B57EB-25E8-4E16-9005-C043EC2D804A}) (Version: - ) Game Explorer Categories - casual (HKLM-x32\...\WildTangentGameProvider-asus-casual) (Version: 3.2.0.6 - WildTangent, Inc.) Game Explorer Categories - enthusiast (HKLM-x32\...\WildTangentGameProvider-asus-enthusiast) (Version: 3.2.0.6 - WildTangent, Inc.) Game Explorer Categories - family (HKLM-x32\...\WildTangentGameProvider-asus-family) (Version: 3.2.0.6 - WildTangent, Inc.) Game Explorer Categories - kids (HKLM-x32\...\WildTangentGameProvider-asus-kids) (Version: 3.2.0.6 - WildTangent, Inc.) Game Explorer Categories - touch (HKLM-x32\...\WildTangentGameProvider-asus-touch) (Version: 3.2.0.6 - WildTangent, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 55.0.2883.87 - Google Inc.) Google Drive (HKLM-x32\...\{07A12123-B717-496B-B471-48AF6407B433}) (Version: 1.32.4066.7445 - Google, Inc.) Google Earth (HKLM-x32\...\{28E82311-8616-11E1-BEB0-B8AC6F97B88E}) (Version: 6.2.2.6613 - Google) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.8231.2252 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden GoToMeeting 7.30.0.6140 (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\GoToMeeting) (Version: 7.30.0.6140 - CitrixOnline) GoToMeeting 7.30.0.6140 (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\GoToMeeting) (Version: 7.30.0.6140 - CitrixOnline) GoToMeeting 7.30.0.6140 (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\GoToMeeting) (Version: 7.30.0.6140 - CitrixOnline) HB 3.00 (HKLM-x32\...\{52EF9D8D-431C-4471-9374-E305B0BB48CC}_is1) (Version: - HALFEN GmbH) Hilti PROFIS Anchor (HKLM-x32\...\{04AFB87D-4425-489A-ADDC-6E6462EF29DE}) (Version: 2.6.5 - Hilti Corp.) Hilti PROFIS AutoUpdate (HKLM-x32\...\{D7CA20F1-3B21-461C-9F04-A8ED236A5E90}) (Version: 2.0.4 - Hilti corp.) Hilti PROFIS Rebar (HKLM-x32\...\{9A01290A-5733-448C-9A72-69F553190A4C}) (Version: 2.4.4 - Hilti Corp.) iMindMap 7 (HKLM-x32\...\{8E84FAB9-3925-46FD-B4D0-E5FD8A2589D0}) (Version: 7.0.327 - ThinkBuzan) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\FFD10ECE-F715-4a86-9BD8-F6F47DA5DA1C) (Version: 7.1.0.2103 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.6.0.1038 - Intel Corporation) Intel® Driver Update Utility (HKLM-x32\...\{fe2eebd3-ee15-4538-bb19-b627e3f2a911}) (Version: 2.6.1.4 - Intel) Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Malwarebytes versie 3.0.5.1299 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.5.1299 - Malwarebytes) MATLAB(R) Compiler Runtime 7.10 (HKLM-x32\...\{A4FEEED3-51B4-4BBA-ACB2-8820EED93C52}) (Version: 7.10 - The MathWorks) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Office 365 - nl-nl (HKLM\...\O365HomePremRetail - nl-nl) (Version: 16.0.7571.2075 - Microsoft Corporation) Microsoft Office Visio Professional 2003 (HKLM-x32\...\{90510413-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\OneDriveSetup.exe) (Version: 17.3.6720.1207 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\OneDriveSetup.exe) (Version: 17.3.6720.1207 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\OneDriveSetup.exe) (Version: 17.3.6720.1207 - Microsoft Corporation) Microsoft SharePoint Designer 2010 (HKLM\...\Office14.SharePointDesigner) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden NirSoft BlueScreenView (HKLM-x32\...\NirSoft BlueScreenView) (Version: - ) NVIDIA Grafisch stuurprogramma 372.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 372.54 - NVIDIA Corporation) NVIDIA PhysX Systeem Software 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7571.2075 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.7571.2075 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.7571.2075 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7571.2075 - Microsoft Corporation) Hidden Outlook Google Calendar Sync (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\ae7ab5abd52d9711) (Version: 2.1.0.0 - Paul Woolcock) Outlook Google Calendar Sync (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\ae7ab5abd52d9711) (Version: 2.1.0.0 - Paul Woolcock) Outlook Google Calendar Sync (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\ae7ab5abd52d9711) (Version: 2.1.0.0 - Paul Woolcock) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.3 - pdfforge) PDFPrinter (HKLM\...\PDFPrinter) (Version: - ) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.) PORTAL+ (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\PORTAL+) (Version: - ) PORTAL+ (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\PORTAL+) (Version: - ) PORTAL+ (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\PORTAL+) (Version: - ) Ralink RT2860 Wireless LAN Card (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}) (Version: 5.0.46.0 - Ralink) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.21236 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.29.314.2014 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7224 - Realtek Semiconductor Corp.) Scia Engineer 15 (HKLM-x32\...\{A39DB31A-4752-4611-A2F9-299324BED8EF}) (Version: 15.0.1019 - Nemetschek Scia) Scia Engineer 15.1 (HKLM-x32\...\{1D8A2E21-E63C-4305-8FF4-4013FF79400B}) (Version: 15.1.136 - Nemetschek Scia) SCIA Engineer 15.2 (HKLM-x32\...\{080D26D6-3804-47FA-9734-02FE67AED665}) (Version: 15.2.140 - SCIA) SCIA Engineer 15.3 (HKLM-x32\...\{8E2E97C1-DD34-42BB-85EF-C6369B514302}) (Version: 15.3.120 - SCIA) SCIA Engineer 16.0 (HKLM-x32\...\{1EB299CE-210D-45FB-9464-EEE07DD6DED8}) (Version: 16.0.2038 - SCIA) SCIA Engineer 16.1 (HKLM-x32\...\{E84F841D-02AC-4BF4-92F4-91B83C71B909}) (Version: 16.1.1031 - SCIA) Sentinel Protection Installer 7.6.8 (HKLM-x32\...\{25F63CE2-4482-4926-9583-FE7A04E11F96}) (Version: 7.6.8 - SafeNet, Inc.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0017-0000-1000-0000000FF1CE}_Office14.SharePointDesigner_{98223B6C-F59E-4928-B553-43605D52ED19}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden SketchUp 2016 (HKLM\...\{E2B66CF6-ABA0-4E5F-B426-7478B18301AE}) (Version: 16.1.1449 - Trimble Navigation Limited) SlimCleaner (HKLM-x32\...\{6B8D6199-EE44-4FD7-813A-6D8C62C9B384}) (Version: 4.0.30878 - SlimWare Utilities, Inc.) SMART Anchor Design Software version 2.2.0.67 (HKLM-x32\...\{14906FA6-8513-4DAC-A5BF-B0FDC481DB74}_is1) (Version: 2.2.0.67 - PGB) Spotify (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\Spotify) (Version: 1.0.45.186.g3b5036d6 - Spotify AB) Spotify (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\Spotify) (Version: 1.0.45.186.g3b5036d6 - Spotify AB) Spotify (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\Spotify) (Version: 1.0.45.186.g3b5036d6 - Spotify AB) SprintPDF Viewer Nederlands (HKLM-x32\...\{50E6F461-0EDD-4EAF-CADA-76C0E0EFE1AE}_is1) (Version: - Jabbla) SteelMemberDesigner (HKLM-x32\...\SteelMemberDesigner) (Version: 1.04.207.0 - Computer And Design Services Ltd) STEICOxpress (HKLM-x32\...\{1589FEAD-BE38-474C-940E-79DC30E31E0D}) (Version: 2.1.59 - Steico) Stuurprogrammapakket voor Windows - Fedict SmartCard (08/08/2015 4.1.5) (HKLM\...\9F46F7AB1E3B1B5F5482EA8D97F401B04FBF7958) (Version: 08/08/2015 4.1.5 - Fedict) Taalpakket voor Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - NLD (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - NLD) (Version: 10.0.50903 - Microsoft Corporation) TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.72365 - TeamViewer) timeEdition 1.1.4 (HKLM-x32\...\timeEdition_is1) (Version: - living-e AG) Toggl Desktop (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\TogglDesktop) (Version: - Toggl) Toggl Desktop (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\TogglDesktop) (Version: - Toggl) Toggl Desktop (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\TogglDesktop) (Version: - Toggl) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Vertex Viewer 2016 (64-bit) 22.0 (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\Vertex Viewer 2016 (64-bit)) (Version: 22.0.13 - Vertex Systems Oy) Vertex Viewer 2016 (64-bit) 22.0 (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\Vertex Viewer 2016 (64-bit)) (Version: 22.0.13 - Vertex Systems Oy) Vertex Viewer 2016 (64-bit) 22.0 (HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\Vertex Viewer 2016 (64-bit)) (Version: 22.0.13 - Vertex Systems Oy) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) WebStorage (HKLM-x32\...\WebStorage) (Version: 2.2.2.524 - ASUS Cloud Corporation) WildTangent Games App (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-asus) (Version: 4.0.11.2 - WildTangent) Windows 10-upgradeassistent (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17354 - Microsoft Corporation) Windows Driver Package - ASUS (ATP) Mouse (03/17/2014 1.0.0.207) (HKLM\...\AA2CC56D4BBEE037DC99871F5F6551133D2A0CC3) (Version: 03/17/2014 1.0.0.207 - ASUS) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows-stuurprogrammapakket - ASUS (ATP) Mouse (11/11/2015 1.0.0.262) (HKLM\...\A044C5901003C24E6891688653ABA1068D04A1A0) (Version: 11/11/2015 1.0.0.262 - ASUS) WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.42.0 - ASUS) WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) Wise Disk Cleaner 9.31 (HKLM-x32\...\Wise Disk Cleaner_is1) (Version: 9.31 - WiseCleaner.com, Inc.) XColumnBase (HKLM-x32\...\{6B9C120C-685B-41E0-B4AE-C27FDE6C5775}) (Version: 1.11.4 - Struct4u) yEd Graph Editor 3.14.2 (HKLM-x32\...\3309-7404-0599-8908) (Version: 3.14.2 - yWorks GmbH) ==================== Aangepaste CLSID (gefilterd): ========================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) CustomCLSID: HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2013\en-US\dwgviewrficn.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2013\dwgviewr.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Wim\AppData\Local\Citrix\GoToMeeting\5530\G2MOutlookAddin64.dll (Citrix Online, a division of Citrix Systems, Inc.) CustomCLSID: HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2013\en-US\dwgviewrficn.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2013\dwgviewr.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Wim\AppData\Local\Citrix\GoToMeeting\5530\G2MOutlookAddin64.dll (Citrix Online, a division of Citrix Systems, Inc.) CustomCLSID: HKU\S-1-5-21-1190483251-3256212553-2091688138-1001_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2013\en-US\dwgviewrficn.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1190483251-3256212553-2091688138-1001_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2013\dwgviewr.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1190483251-3256212553-2091688138-1001_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Wim\AppData\Local\Citrix\GoToMeeting\5530\G2MOutlookAddin64.dll (Citrix Online, a division of Citrix Systems, Inc.) ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {021383F1-7C22-4337-BFBC-68B311C14BB6} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2016-06-03] () Task: {05F7617B-33B4-4ACA-8762-05D57D3A73A3} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Geen bestand <==== AANDACHT Task: {070F1981-D41D-4F03-82B5-5B4FA2D47204} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2016-06-03] () Task: {0A797D73-8D47-4323-B8FC-302B78230D8F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-21] (Adobe Systems Incorporated) Task: {10143ABF-0183-45A2-A72E-145497F50657} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {12FACDFB-FA90-46A0-A594-1A7CE930801D} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-05] (Dropbox, Inc.) Task: {1DAAFDC0-13F5-4609-927F-C496D19E606A} - System32\Tasks\G2MUploadTask-S-1-5-21-1190483251-3256212553-2091688138-1001 => C:\Users\Wim\AppData\Local\Citrix\GoToMeeting\5174\g2mupload.exe [2016-06-30] (Citrix Online, a division of Citrix Systems, Inc.) Task: {1FBCA5BD-513E-43C8-99EE-D7CC56471752} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Geen bestand <==== AANDACHT Task: {2019A79C-A216-46C6-BB3B-7E11FB482E99} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2014-02-11] (ASUS) Task: {20DA0F77-9571-415E-A5AD-B508A67C88B6} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-04-10] (Realtek Semiconductor) Task: {24875845-A411-496F-929E-1B50316641B8} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-05] (Dropbox, Inc.) Task: {2C1A5C97-46F3-4D90-9960-30AADAD45E3B} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-12-14] (Microsoft Corporation) Task: {34D5BF72-7D51-4A23-9608-114518D9F02B} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Geen bestand <==== AANDACHT Task: {43D422DD-33C0-4721-BA11-C768F8C24860} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Geen bestand <==== AANDACHT Task: {5AEC7957-6BF8-4BA2-914F-705517D793CB} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> Geen bestand <==== AANDACHT Task: {5E7ED89C-432C-49EA-B24B-AD154AE2EE0B} - System32\Tasks\ASUS Splendid ColorU => C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [2013-10-07] (ASUSTeK Computer Inc.) Task: {666C9091-4BF4-44E6-83D9-9F93B3520EFB} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Geen bestand <==== AANDACHT Task: {6C93D613-5758-4305-A471-271C92A4FFE0} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-12-04] (Microsoft Corporation) Task: {6DBDDE55-3F88-4E3E-A4FF-77172DC31118} - \Microsoft\Windows\Setup\gwx\rundetector -> Geen bestand <==== AANDACHT Task: {708C07AA-094F-498E-9121-49F48B839193} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Geen bestand <==== AANDACHT Task: {7A8AC4CE-6EB3-47AD-B2EA-126C7206899A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {7BA1DFE7-EB2B-424C-B1B9-73F12D23406B} - System32\Tasks\Microsoft\Windows\PLA\System\{7763CAA6-9D30-4836-B697-88D0F0FADCC6}_System Diagnostics => Rundll32.exe C:\WINDOWS\system32\pla.dll,PlaHost "system\System Diagnostics" "$(Arg0)" Task: {7CEC42FE-FA74-4A6D-8077-C89EDC3A9DFF} - System32\Tasks\P4GIntlCtrl => C:\Program Files\ASUS\P4G\IntlDPST.exe [2014-02-11] () Task: {80AAC556-AA33-47F9-A991-F1E4110B995F} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2013-10-07] (ASUS) Task: {83054DC5-C99D-4593-A23C-1D6809FDC001} - System32\Tasks\CreateExplorerShellUnelevatedTask => /NOUACCHECK Task: {851C8190-5727-4131-A0A9-9F106A19B171} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2016-03-17] (Intel Corporation) Task: {86FD57F9-67FD-439D-93D1-6A76C806A6D0} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2014-03-27] (ASUSTek Computer Inc.) Task: {870D155F-ED43-4781-A7A6-31CD5A41E3CE} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Geen bestand <==== AANDACHT Task: {9BA25B57-A20C-481E-B98A-301CAB05CC27} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Geen bestand <==== AANDACHT Task: {A34A41EE-5DE1-4201-9713-05BCA13BB272} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Geen bestand <==== AANDACHT Task: {A4326178-774B-431E-908C-666BF6140B3C} - System32\Tasks\Microsoft\Windows\PLA\System\{BB6C5AFE-251A-4F4E-963C-58996AA70B4F}_System Diagnostics => Rundll32.exe C:\WINDOWS\system32\pla.dll,PlaHost "system\System Diagnostics" "$(Arg0)" Task: {A67AFE1E-2E06-4D77-9926-9F6C5CB1B555} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Geen bestand <==== AANDACHT Task: {AA17ADBF-EAD6-4FAF-8E0A-38040F2705E2} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2016-06-03] () Task: {B3C92134-E788-44B6-941E-22C714649F1A} - System32\Tasks\G2MUpdateTask-S-1-5-21-1190483251-3256212553-2091688138-1001 => C:\Users\Wim\AppData\Local\Citrix\GoToMeeting\5174\g2mupdate.exe [2016-06-30] (Citrix Online, a division of Citrix Systems, Inc.) Task: {B760D87C-9530-4CBE-A680-6A5DCA16CE59} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Geen bestand <==== AANDACHT Task: {BB0EB757-40EF-4FF5-9E4F-4DEA7EB201F9} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2016-12-04] (Microsoft Corporation) Task: {C10CDECF-98F1-444E-814B-D982DF5B54FF} - System32\Tasks\USER_ESRV_SVC_WILLAMETTE => Wscript.exe //B //NoLogo "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\task.vbs" Task: {C32E7946-E7DC-4A6A-99AB-ACA8E0763B75} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-12-04] (Microsoft Corporation) Task: {C654F48B-63AC-4594-9942-9CD55990133D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Geen bestand <==== AANDACHT Task: {C8C1BB17-F34F-4A56-A1CA-F0306C72E805} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [2014-01-14] (ASUSTek Computer Inc.) Task: {E726BC90-14F2-4631-A1E0-6C3AA1612455} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-12-06] (Piriform Ltd) Task: {F02351B0-9688-4135-9F1E-89024B938778} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Geen bestand <==== AANDACHT Task: {F61B400C-1B3A-4C48-8BA1-4A484009AB21} - \WPD\SqmUpload_S-1-5-21-1190483251-3256212553-2091688138-1001 -> Geen bestand <==== AANDACHT Task: {F6834397-04B2-402F-B12A-CCCFC1B53FF1} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Geen bestand <==== AANDACHT Task: {FBE46F59-9758-4920-8CC0-F5B1E41BB4B6} - System32\Tasks\RtHDVBg => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-04-15] (Realtek Semiconductor) Task: {FD60D71D-6536-448F-8C7F-1EFD4B9817B8} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\Wim\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe (Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-1190483251-3256212553-2091688138-1001.job => C:\Users\Wim\AppData\Local\Citrix\GoToMeeting\6140\g2mupdate.exe Task: C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-1190483251-3256212553-2091688138-1001.job => C:\Users\Wim\AppData\Local\Citrix\GoToMeeting\6140\g2mupload.exe ==================== Snelkoppelingen ============================= (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) ==================== Geladen Modules (gefilterd) ============== 2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-12-14 12:50 - 2016-12-09 11:29 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-01-14 18:19 - 2006-11-30 17:41 - 00087040 _____ () C:\WINDOWS\System32\custmon64.dll 2016-12-23 13:08 - 2015-10-06 16:56 - 00279608 _____ () C:\Program Files\Bitdefender\Endpoint Security\zlib.dll 2016-12-23 13:07 - 2016-04-16 19:07 - 00280576 _____ () C:\Program Files\Bitdefender\Endpoint Security\txmlutil.dll 2016-12-23 14:21 - 2016-12-23 14:21 - 01008448 _____ () C:\Program Files\Bitdefender\Endpoint Security\Signatures\WFEngines\wfengines_01625_001\ashttpbr.mdl 2016-12-23 14:21 - 2016-12-23 14:21 - 00541952 _____ () C:\Program Files\Bitdefender\Endpoint Security\Signatures\WFEngines\wfengines_01625_001\ashttpdsp.mdl 2016-12-23 14:21 - 2016-12-23 14:21 - 03613808 _____ () C:\Program Files\Bitdefender\Endpoint Security\Signatures\WFEngines\wfengines_01625_001\ashttpf.mdl 2016-12-23 14:21 - 2016-12-23 14:21 - 01542976 _____ () C:\Program Files\Bitdefender\Endpoint Security\Signatures\WFEngines\wfengines_01625_001\ashttprbl.mdl 2016-12-23 14:20 - 2016-12-23 14:21 - 01008448 _____ () C:\Program Files\Bitdefender\Endpoint Security\Signatures\OTEngines\otengines_02339_001\ashttpbr.mdl 2016-12-23 14:21 - 2016-12-23 14:21 - 00541952 _____ () C:\Program Files\Bitdefender\Endpoint Security\Signatures\OTEngines\otengines_02339_001\ashttpdsp.mdl 2016-12-23 14:21 - 2016-12-23 14:21 - 03202816 _____ () C:\Program Files\Bitdefender\Endpoint Security\Signatures\OTEngines\otengines_02339_001\ashttpph.mdl 2016-12-23 14:21 - 2016-12-23 14:21 - 01542976 _____ () C:\Program Files\Bitdefender\Endpoint Security\Signatures\OTEngines\otengines_02339_001\ashttprbl.mdl 2016-06-08 17:04 - 2016-06-08 17:04 - 00117400 _____ () C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe 2016-12-14 12:50 - 2016-12-09 11:29 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-12-09 05:06 - 2016-12-09 05:06 - 01678560 _____ () C:\Users\Wim\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\amd64\ClientTelemetry.dll 2016-09-16 02:04 - 2016-09-16 02:04 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2016-12-14 12:50 - 2016-12-09 10:41 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2016-11-09 15:19 - 2016-11-02 11:21 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-11-09 15:19 - 2016-11-02 11:15 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-11-09 15:19 - 2016-11-02 11:14 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2016-11-09 15:19 - 2016-11-02 11:16 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-11-09 15:19 - 2016-11-02 11:17 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-12-14 05:16 - 2016-12-14 05:16 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2016-12-14 05:16 - 2016-12-14 05:16 - 00179712 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2016-12-14 05:16 - 2016-12-14 05:16 - 42130432 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2016-12-14 05:16 - 2016-12-14 05:16 - 02216448 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\roottools.dll 2017-01-03 06:30 - 2016-12-14 12:55 - 02259232 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll 2014-11-12 05:18 - 2013-10-23 14:44 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2016-07-28 16:49 - 2016-12-04 02:49 - 01010368 _____ () C:\Program Files (x86)\Microsoft Office\Root\Office16\ADDINS\UmOutlookAddin.dll 2016-07-28 16:59 - 2016-12-22 04:21 - 00521416 _____ () C:\Program Files (x86)\Microsoft Office\root\Office16\msfad.dll ==================== Alternate Data Streams (gefilterd) ========= (Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.) AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0] AlternateDataStreams: C:\Users\Wim\Downloads\ccsetup525.exe:BDU [0] AlternateDataStreams: C:\Users\Wim\Downloads\EmsisoftEmergencyKit.exe:BDU [0] AlternateDataStreams: C:\Users\Wim\Downloads\FRST64.exe:BDU [0] AlternateDataStreams: C:\Users\Wim\Downloads\HijackThis.exe:BDU [0] AlternateDataStreams: C:\Users\Wim\Downloads\mb3-setup-consumer-3.0.5.1299.exe:BDU [0] ==================== Veilige Modus (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Bestandskoppeling (gefilterd) =============== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd.) HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\Software\Classes\.scr: DWGTrueViewScriptFile => C:\WINDOWS\system32\notepad.exe "%1" ==================== Internet Explorer vertrouwde/beperkte toegang =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd.) ==================== Hosts inhoud: =============================== (Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.) 2013-08-22 14:25 - 2016-10-19 21:50 - 00000824 ____N C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere gebieden ============================ (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103191\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063939490\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103461\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063940516\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img1.jpg HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img1.jpg HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img1.jpg DNS Servers: 195.130.131.5 - 195.130.130.5 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: Asus WebStorage Windows Service => 2 MSCONFIG\Services: BBSvc => 3 MSCONFIG\Services: dbupdate => 2 MSCONFIG\Services: dbupdatem => 3 MSCONFIG\Services: FlexNet Licensing Service 64 => 3 MSCONFIG\Services: GamesAppIntegrationService => 2 MSCONFIG\Services: GamesAppService => 3 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: gusvc => 3 MSCONFIG\Services: Hilti PROFIS AutoUpdate Service => 2 MSCONFIG\Services: USER_ESRV_SVC_WILLAMETTE => 3 HKLM\...\StartupApproved\Run: => "DptfPolicyLpmServiceHelper" HKLM\...\StartupApproved\Run: => "Logitech Download Assistant" HKLM\...\StartupApproved\Run: => "NvBackend" HKLM\...\StartupApproved\Run: => "ShadowPlay" HKLM\...\StartupApproved\Run: => "Malwarebytes TrayApp" HKLM\...\StartupApproved\Run32: => "ASUSPRP" HKLM\...\StartupApproved\Run32: => "WebStorage" HKLM\...\StartupApproved\Run32: => "PROFIS AutoUpdate" HKLM\...\StartupApproved\Run32: => "Dropbox" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "SDTray" HKLM\...\StartupApproved\Run32: => "Malwarebytes TrayApp" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\StartupApproved\StartupFolder: => "iMindMap7 Preloader.lnk" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\StartupApproved\StartupFolder: => "OutlookGoogleCalendarSync.lnk" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\StartupApproved\Run: => "msnmsgr" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\StartupApproved\Run: => "GoogleDriveSync" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\StartupApproved\Run: => "SpybotPostWindows10UpgradeReInstall" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\StartupApproved\StartupFolder: => "iMindMap7 Preloader.lnk" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\StartupApproved\StartupFolder: => "OutlookGoogleCalendarSync.lnk" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\StartupApproved\Run: => "msnmsgr" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\StartupApproved\Run: => "GoogleDriveSync" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\StartupApproved\Run: => "SpybotPostWindows10UpgradeReInstall" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063103661\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\StartupApproved\StartupFolder: => "iMindMap7 Preloader.lnk" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\StartupApproved\StartupFolder: => "OutlookGoogleCalendarSync.lnk" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\StartupApproved\Run: => "msnmsgr" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\StartupApproved\Run: => "GoogleDriveSync" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\StartupApproved\Run: => "SpybotPostWindows10UpgradeReInstall" HKU\S-1-5-21-1190483251-3256212553-2091688138-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01032017063942014\...\StartupApproved\Run: => "OneDrive" ==================== Firewall regels (gefilterd) =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [vm-monitoring-nb-session] => LPort=139 FirewallRules: [{B07C378A-3D94-444E-B007-02D45E671065}] => C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{C06B17AA-0E75-4A33-8CDA-F2A291302A01}] => C:\Program Files (x86)\Scia\Engineer15\DesignForms_CalcExe.exe FirewallRules: [{6257354D-DD0D-48C8-BEC9-0D5546CC4832}] => C:\Users\Wim\AppData\Local\Microsoft\OneDrive\OneDrive.exe FirewallRules: [TCP Query User{799A1F22-85AB-49FF-B1C4-544DA9E334F3}C:\users\wim\appdata\roaming\spotify\spotify.exe] => C:\users\wim\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{7B4B55C3-A97A-4925-9B03-054264F23B9B}C:\users\wim\appdata\roaming\spotify\spotify.exe] => C:\users\wim\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{9E752572-2AD6-4CFE-94F7-F05227777EEA}C:\users\wim\appdata\roaming\spotify\spotify.exe] => C:\users\wim\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{60CDD918-9D41-49A0-83BA-7BB0D6B0BB02}C:\users\wim\appdata\roaming\spotify\spotify.exe] => C:\users\wim\appdata\roaming\spotify\spotify.exe FirewallRules: [{5EE5A842-E3C9-4B68-9AA1-517EECFCC3ED}] => C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{5B9AB3EF-BA1C-454B-9B03-E1950DB4625E}] => LPort=2869 FirewallRules: [{E13E8546-1E10-4117-9252-9B276B2C6926}] => LPort=1900 FirewallRules: [{CB118FB0-07AB-492D-8380-0520696E6CA5}] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{D0C9BA0F-268B-4428-B280-665BBAADF842}] => C:\Program Files (x86)\Scia\Engineer15.1\DesignForms_CalcExe.exe FirewallRules: [{754BBE22-B02A-423F-9E8A-45812CF471C1}] => C:\Program Files (x86)\SCIA\Engineer15.2\DesignForms_CalcExe.exe FirewallRules: [{39D58F39-2721-4E84-BBE8-6A3BBF2E77B0}] => C:\Program Files (x86)\SCIA\Engineer15.3\DesignForms_CalcExe.exe FirewallRules: [{47CC0FF7-0E86-419C-BE38-C2CB23A40A13}] => C:\Program Files (x86)\SCIA\Engineer16.0\DesignForms_CalcExe.exe FirewallRules: [{D82EE693-968F-4253-B721-133A13E61780}] => %systemroot%\system32\alg.exe FirewallRules: [{F72D663E-A4C8-43EF-95E0-1BA911AD549F}] => %systemroot%\system32\alg.exe FirewallRules: [{BB923F0D-FB47-47B9-B430-36B014B31282}] => C:\Program Files (x86)\SCIA\Engineer16.1\DesignForms_CalcExe.exe FirewallRules: [{1902775E-6698-4C7A-82BA-FA59E0771845}] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe FirewallRules: [{EA6CE4EC-02B8-4A78-A00A-CC7665CB143D}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{E62A980F-0516-4338-BDB1-1BC628A027C3}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{0C10B2A8-F67C-4732-81DF-70CCFC5AD0EE}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{24E1F908-2AA5-41EA-9FF9-E2A41581D18B}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{C716E9A8-11D6-426A-A922-3AB17F08E67A}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ==================== Herstelpunten ========================= 24-12-2016 08:45:06 Gepland controlepunt 02-01-2017 09:04:07 Gepland controlepunt ==================== Defecte Apparaatbeheer Apparaten ============= Name: ASUS Touchpad Description: ASUS Touchpad Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: ASUS Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Eventlog fouten: ========================= Applicatiefouten: ================== Error: (01/03/2017 05:57:52 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: AOM) Description: Het activeren van de app Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App is mislukt door de fout -2144927141. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Error: (01/03/2017 05:57:20 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: AOM) Description: Het activeren van de app Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App is mislukt door de fout -2144927141. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Error: (01/03/2017 06:26:27 AM) (Source: DbxSvc) (EventID: 320) (User: ) Description: Failed to connect to the driver: (-2147024894) Het systeem kan het opgegeven bestand niet vinden. Error: (01/03/2017 06:20:46 AM) (Source: DbxSvc) (EventID: 320) (User: ) Description: Failed to connect to the driver: (-2147024894) Het systeem kan het opgegeven bestand niet vinden. Error: (01/03/2017 06:17:22 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: ShellExperienceHost.exe, versie: 10.0.14393.447, tijdstempel: 0x5819bf85 Naam van module met fout: Windows.UI.Xaml.dll, versie: 10.0.14393.479, tijdstempel: 0x58258ce8 Uitzonderingscode: 0xc000027b Foutmarge: 0x00000000006d675b Id van proces met fout: 0x2d8c Starttijd van toepassing met fout: 0x01d265764de2c3b6 Pad naar toepassing met fout: C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Pad naar module met fout: C:\Windows\System32\Windows.UI.Xaml.dll Rapport-id: 6c739e7a-2490-4809-9a50-fbf2f21f7a91 Volledige pakketnaam met fout: Microsoft.Windows.ShellExperienceHost_10.0.14393.576_neutral_neutral_cw5n1h2txyewy Relatieve toepassings-id van pakket met fout: App Error: (01/02/2017 09:04:29 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: De service Cryptografische services is mislukt tijdens het verwerken van aanroep OnIdentity() op het object System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Toegang geweigerd. . Error: (01/01/2017 08:28:20 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: De openprocedure voor de BITS-service in DLL-bestand C:\Windows\System32\bitsperf.dll is mislukt. Prestatiemetergegevens voor deze service zijn niet beschikbaar. De eerste vier bytes (DWORD) in de sectie Gegevens bevatten de foutcode. Error: (12/31/2016 09:54:49 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: AOM) Description: Het activeren van de app Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App is mislukt door de fout -2144927141. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Error: (12/30/2016 10:10:15 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: AOM) Description: Het pakket Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe+App is beëindigd omdat het onderbreken te lang duurde. Error: (12/27/2016 09:37:48 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: AOM) Description: Het activeren van de app Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App is mislukt door de fout -2144927141. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Systeemfouten: ============= Error: (01/03/2017 05:57:52 PM) (Source: DCOM) (EventID: 10010) (User: AOM) Description: De server App.AppXryc2qd338f5728r9gzzazav8206ba77s.mca heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (01/03/2017 05:57:20 PM) (Source: DCOM) (EventID: 10010) (User: AOM) Description: De server App.AppXwdz8g2fxr36xz0tdtagygnvemf85s7gg.mca heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (01/03/2017 06:30:22 AM) (Source: DCOM) (EventID: 10016) (User: AOM) Description: In de machtigingsinstellingen standaard voor deze computer wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} en APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} aan de gebruiker AOM\Wim SID (S-1-5-21-1190483251-3256212553-2091688138-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Microsoft.Windows.Cortana_1.7.0.14393_neutral_neutral_cw5n1h2txyewy SID (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (01/03/2017 06:27:21 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} en APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} aan de gebruiker NT AUTHORITY\SYSTEM SID (S-1-5-18) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (01/03/2017 06:26:55 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (01/03/2017 06:26:55 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (01/03/2017 06:26:28 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De WinDefend-service kan vanwege de volgende fout niet worden gestart: Kan de digitale handtekening voor dit bestand niet controleren. Door een recente wijziging in software of hardware is mogelijk een bestand geïnstalleerd dat onjuist is ondertekend of beschadigd is, of dat mogelijk schadelijke software van een onbekende bron is. Error: (01/03/2017 06:24:59 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} en APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} aan de gebruiker NT AUTHORITY\SYSTEM SID (S-1-5-18) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (01/03/2017 06:22:11 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De Windows Presentation Foundation Font Cache 3.0.0.0-service kan vanwege de volgende fout niet worden gestart: De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord. Error: (01/03/2017 06:22:11 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: FontCache3.0.0.0. CodeIntegrity: =================================== Date: 2017-01-03 06:26:28.069 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-01-03 06:20:46.792 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-24 12:16:57.899 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-24 11:44:38.309 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-23 14:29:32.355 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-09-21 11:35:14.961 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\WINDOWS\WinSxS\wow64_microsoft-windows-edp-audit_31bf3856ad364e35_10.0.10586.0_none_fbfd18fdbfe77d1b\edpauditapi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-09-21 11:35:14.958 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\WINDOWS\WinSxS\wow64_microsoft-windows-edp-audit_31bf3856ad364e35_10.0.10586.0_none_fbfd18fdbfe77d1b\edpauditapi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-09-21 11:35:14.944 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\WINDOWS\WinSxS\wow64_microsoft-windows-edp-audit_31bf3856ad364e35_10.0.10586.0_none_fbfd18fdbfe77d1b\edpauditapi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-09-21 11:35:14.925 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\WINDOWS\WinSxS\wow64_microsoft-windows-edp-audit_31bf3856ad364e35_10.0.10586.0_none_fbfd18fdbfe77d1b\edpauditapi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-09-21 11:33:26.074 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\WINDOWS\WinSxS\wow64_microsoft-windows-s..-credentialprovider_31bf3856ad364e35_10.0.10586.0_none_79f13fc599eae8eb\BioCredProv.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Geheugen info =========================== Processor: Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz Percentage geheugen in gebruik: 70% Totaal fysiek RAM-geheugen: 8075.27 MB Beschikbaar fysiek RAM-geheugen: 2375.53 MB Totaal Virtueel geheugen: 16075.27 MB Beschikbaar Virtual geheugen: 7953.54 MB ==================== Schijven ================================ Drive c: (OS) (Fixed) (Total:372.6 GB) (Free:189.85 GB) NTFS ==>[systeem met boot componenten (verkregen van schijf)] Drive d: (Data) (Fixed) (Total:537.8 GB) (Free:332.82 GB) NTFS ==================== MBR & Partitietabel ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 9BC003A7) Partition: GPT. ==================== Eind van Addition.txt ============================