Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 15-03-2017 Gestart door Stephan Reisig (26-03-2017 16:09:24) Gestart vanaf C:\Users\Stephan Reisig\Desktop Windows 7 Ultimate Service Pack 1 (X64) (2014-03-04 20:19:40) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3820285416-1422433888-2532357495-500 - Administrator - Disabled) => C:\Users\Administrator Gast (S-1-5-21-3820285416-1422433888-2532357495-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3820285416-1422433888-2532357495-1002 - Limited - Enabled) Stephan Reisig (S-1-5-21-3820285416-1422433888-2532357495-1001 - Administrator - Enabled) => C:\Users\Stephan Reisig ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: Avira Antivirus (Enabled - Up to date) {B3F630BD-538D-1B4A-14FA-14B63235278F} AS: Avira Antivirus (Enabled - Up to date) {0897D159-75B7-14C4-2E4A-2FC449B26D32} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag zou kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeinstallerd worden.) µTorrent (HKU\S-1-5-21-3820285416-1422433888-2532357495-1001\...\uTorrent) (Version: 3.4.2.35702 - BitTorrent Inc.) 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden ABN AMRO e.dentifier2 software (HKLM-x32\...\{55BF7E3E-F00A-4A3D-BB76-09228B35FFD6}) (Version: 02.00 - ABN AMRO BANK) ABN AMRO E.dentifier2 Software (HKLM-x32\...\{7FFDD64B-C182-41D6-AB43-257C07AE486A}) (Version: 03.00 - ABN AMRO BANK) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated) Adobe Flash Player 10 ActiveX (HKLM-x32\...\{B7B3E9B3-FB14-4927-894B-E9124509AF5A}) (Version: 10.0.32.18 - Adobe Systems, Inc.) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\Adobe Photoshop CS6) (Version: 13.0.0.0 - © The Computer Guy Tony) Adobe Reader XI (11.0.08) - Nederlands (HKLM-x32\...\{AC76BA86-7AD7-1043-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.7.157 - Adobe Systems, Inc.) AIO_Scan (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden AMD Catalyst Install Manager (HKLM\...\{C2956908-53A3-88FC-B795-B16508296FC4}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Apowersoft Free Audio Recorder V2.3.4 (HKLM-x32\...\{E35F91E4-C68C-43E8-BE90-35CDEE4E5730}_is1) (Version: 2.3.4 - APOWERSOFT LIMITED) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.25.154 - Avira Operations GmbH & Co. KG) Avira Connect (HKLM-x32\...\{0b46d918-af4f-4612-8076-5c0ae67cb2aa}) (Version: 1.2.81.41506 - Avira Operations GmbH & Co. KG) Avira Connect (x32 Version: 1.2.81.41506 - Avira Operations GmbH & Co. KG) Hidden BDAntiRansomware (HKLM\...\{BE40AB1F-558F-4434-B72F-461EF97E7796}_is1) (Version: 1.0.12.1 - Bitdefender) BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.00 - Piriform) Copy (x32 Version: 130.0.428.000 - Hewlett-Packard) Hidden CPUID CPU-Z 1.76 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dazzle Video Capture DVC100 X64 Driver 1.06 (HKLM-x32\...\{BFF23267-1D19-444E-93E2-E5059BE805EA}) (Version: 1.06.0000 - Pinnacle) Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden DJ_AIO_ProductContext (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden DJ_AIO_Software (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden DJ_AIO_Software_min (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden F2100 (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden F2100_Help (x32 Version: 90.0.222.000 - Hewlett-Packard) Hidden GemistDownloader (HKLM-x32\...\GemistDownloader) (Version: 2.8.1.8a - Wietze Beukema (HelpdeskWeb.nl)) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 57.0.2987.110 - Google Inc.) Google Drive (HKLM-x32\...\{07A12123-B717-496B-B471-48AF6407B433}) (Version: 1.32.4066.7445 - Google, Inc.) Google Photos Backup (HKU\S-1-5-21-3820285416-1422433888-2532357495-1001\...\Google Photos Backup) (Version: 1.1.2.13 - Google, Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden GWX Control Panel (HKLM-x32\...\UltimateOutsider_GwxControlPanel) (Version: - UltimateOutsider) HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software) HP Deskjet All-In-One Driver Software 13.0 Rel. 1 (HKLM\...\{EB773820-0871-46A8-9B96-F2B04F8B34F0}) (Version: 13.0 - HP) HP Smart Web Printing 4.51 (HKLM\...\HP Smart Web Printing) (Version: 4.51 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden HPPhotoGadget (x32 Version: 130.0.282.000 - Hewlett-Packard) Hidden HPPhotoSmartDiscLabelContent1 (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPPhotosmartEssential (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217071FF}) (Version: 7.0.710 - Oracle) Java 8 Update 121 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden K-Lite Codec Pack 10.1.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.1.5 - ) Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (Nederlands) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1043) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Office Language Pack 2010 - Dutch/Nederlands (HKLM-x32\...\Office14.OMUI.nl-nl) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0413-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4734.1000 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3820285416-1422433888-2532357495-1001\...\OneDriveSetup.exe) (Version: 17.3.1171.0714 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) PDF Reader for Windows 7 (HKLM-x32\...\PDF Reader for Windows_is1) (Version: - PDFLogic Corporation) PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8036 - Realtek Semiconductor Corp.) SAMSUNG Mobile Composite Device Software (HKLM\...\SAMSUNG Mobile Composite Device) (Version: - ) SAMSUNG Mobile Modem Driver Set (HKLM\...\SAMSUNG Mobile Modem) (Version: - ) Samsung Mobile phone USB driver Drive Software (HKLM\...\Samsung Mobile phone USB driver Drive) (Version: - ) SAMSUNG Mobile USB Modem 1.0 Software (HKLM\...\SAMSUNG Mobile USB Modem 1.0) (Version: - ) SAMSUNG Mobile USB Modem Software (HKLM\...\SAMSUNG Mobile USB Modem) (Version: - ) Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.59.0 - Samsung Electronics Co., Ltd.) Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden Service Pack 2 for Microsoft Office 2010 Language Pack (KB2687449) 32-Bit Edition (HKLM-x32\...\{90140000-0100-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{2ABAC676-CF18-432C-B4B2-54F12AD59929}) (Version: - Microsoft) SmartWebPrinting (x32 Version: 130.0.457.000 - Hewlett-Packard) Hidden SMPlayer 15.9.0 (x64) (HKLM\...\SMPlayer) (Version: 15.9.0 - Ricardo Villalba) SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden Soluto (HKLM\...\{037C627B-384E-450E-866C-95BAB3CDEA17}) (Version: 1.3.1494.0 - Soluto) Speccy (HKLM\...\Speccy) (Version: 1.26 - Piriform) Spotify (HKU\S-1-5-21-3820285416-1422433888-2532357495-1001\...\Spotify) (Version: 0.9.14.13.gba5645ad - Spotify AB) Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Taalpakket voor Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - NLD (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - NLD) (Version: 10.0.50903 - Microsoft Corporation) Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden Topaz Adjust 5 (HKLM-x32\...\Topaz Adjust 5) (Version: 5.0.1 - Topaz Labs, LLC) Topaz B&W Effects (HKLM-x32\...\Topaz BW Effects 2) (Version: 2.1.0 - Topaz Labs, LLC) Topaz Clarity (HKLM-x32\...\Topaz Clarity) (Version: 1.0.0 - Topaz Labs, LLC) Topaz Clean 3 (HKLM-x32\...\Topaz Clean 3) (Version: 3.0.2 - Topaz Labs, LLC) Topaz DeJpeg 4 (HKLM-x32\...\Topaz DeJpeg 4) (Version: 4.0.2 - Topaz Labs, LLC) Topaz DeNoise 5 (HKLM-x32\...\Topaz DeNoise 5) (Version: 5.0.1 - Topaz Labs, LLC) Topaz Detail 3 (HKLM-x32\...\Topaz Detail 3) (Version: 3.1.0 - Topaz Labs, LLC) Topaz Fusion Express 2 (HKLM-x32\...\Topaz Fusion Express 2) (Version: 2.1.3 - Topaz Labs, LLC) Topaz InFocus (HKLM-x32\...\Topaz InFocus) (Version: 1.0.0 - Topaz Labs, LLC) Topaz Lens Effects (HKLM-x32\...\Topaz Lens Effects) (Version: 1.2.0 - Topaz Labs, LLC) Topaz ReMask 3 (HKLM-x32\...\Topaz ReMask 3) (Version: 3.2.1 - Topaz Labs, LLC) Topaz ReStyle (HKLM-x32\...\Topaz ReStyle) (Version: 1.0.0 - Topaz Labs, LLC) Topaz Simplify 4 (HKLM-x32\...\Topaz Simplify 4) (Version: 4.0.0 - Topaz Labs, LLC) Topaz Star Effects (HKLM-x32\...\Topaz Star Effects) (Version: 1.1.0 - Topaz Labs, LLC) TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden UnloadSupport (x32 Version: 11.0.0 - Hewlett-Packard) Hidden Vista Shortcut Manager x64 (HKLM\...\{C7311329-C491-427B-8880-133E84869B3A}) (Version: 2.0 - Frameworkx) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden WinZip 21.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C2410D}) (Version: 21.0.12288 - WinZip Computing, S.L. ) YouSendIt Application Plug-in SDK (HKLM-x32\...\InstallShield_{3AE00DF4-ADF1-479E-834C-D1B2E71570BD}) (Version: 1.0.2 - YouSendIt) YouSendIt Application Plug-in SDK (x32 Version: 1.0.2 - YouSendIt) Hidden ==================== Aangepaste CLSID (gefilterd): ========================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) CustomCLSID: HKU\S-1-5-21-3820285416-1422433888-2532357495-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Stephan Reisig\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3820285416-1422433888-2532357495-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Stephan Reisig\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3820285416-1422433888-2532357495-1001_Classes\CLSID\{CB2B673F-D441-4CD4-AFBE-DC4037CA4220}\InprocServer32 -> C:\Program Files\WinZip\adxloader64.dll () CustomCLSID: HKU\S-1-5-21-3820285416-1422433888-2532357495-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Stephan Reisig\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3820285416-1422433888-2532357495-1001_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Stephan Reisig\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-3820285416-1422433888-2532357495-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Stephan Reisig\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-3820285416-1422433888-2532357495-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Stephan Reisig\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation) ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {1A0FF278-6995-4FD9-8DA7-69E84677D375} - System32\Tasks\{A84BBDCF-ABB9-41D5-A4E5-2D9A303F36A8} => pcalua.exe -a "D:\Films\Total Recorder VideoPro Edition v8.4 with Key [TorDigger]\TRAO_Speech_11.exe" -d "D:\Films\Total Recorder VideoPro Edition v8.4 with Key [TorDigger]" Task: {1D389D14-F9A9-4D40-BEB7-6FC42619231A} - System32\Tasks\AdobeAAMUpdater-1.0-StephanReisig-Stephan Reisig => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe Task: {2ED53275-E1CB-4DF3-9375-416A73413A0F} - System32\Tasks\{13C9B5CC-3FEE-4D5D-A6C3-6BC17203436B} => C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe Task: {35CB8EB3-3BDA-4C54-B2E6-7EE8D029658B} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-03-03] (Piriform Ltd) Task: {3CC8FA12-DCDE-4B0B-84D3-F3EDB5DD4C00} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3820285416-1422433888-2532357495-1001UA1d142ed8c2e54a1 => C:\Users\Stephan Reisig\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-30] (Google Inc.) Task: {586FE027-DEB3-4454-8D1E-ABAEBAD505DB} - System32\Tasks\{7B6FB17C-8210-485D-A745-BA5E3F57B174} => C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe Task: {5A6FFB82-C559-411C-AEF7-DF3776ED0198} - System32\Tasks\WinZip Update Notifier => C:\Program Files\WinZip\WZUpdateNotifier.exe [2017-02-13] (WinZip) Task: {616F0AE7-4A1B-486E-BAEA-C1608B5F9B4B} - System32\Tasks\{2E52839A-5C9F-4A58-9D5F-9A676F60B764} => C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe Task: {75716FC5-F61F-4C25-9704-EF463F69DFD4} - System32\Tasks\{053C4BE3-5F4D-460A-A0D7-C35A6F874393} => pcalua.exe -a "C:\Program Files (x86)\Adobe\Adobe Photoshop CS6\Microsoft\vcredist_x86.exe" -d "C:\Program Files (x86)\Adobe\Adobe Photoshop CS6\Microsoft\" -c /q Task: {7882F2F6-AE36-41DA-A12E-5B1B99D8464A} - System32\Tasks\WinZipBackGroundToolsTask => C:\Program Files\WinZip\WzBGTools.exe [2017-02-13] (WinZip Computing, S.L.) Task: {806FA7AF-8688-4B6A-989C-516FCFBF7362} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-17] (Google Inc.) Task: {AEC77C4D-F708-44E4-BE92-D2B757EDCA27} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3820285416-1422433888-2532357495-1001Core => C:\Users\Stephan Reisig\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-30] (Google Inc.) Task: {D010ED2C-E301-40F1-8C5C-68DEED315F47} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3820285416-1422433888-2532357495-1001UA => C:\Users\Stephan Reisig\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-30] (Google Inc.) Task: {D7B05305-257D-42A2-A4AD-B08F56B84590} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-17] (Google Inc.) (Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3820285416-1422433888-2532357495-1001UA.job => C:\Users\Stephan Reisig\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Snelkoppelingen ============================= (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) Shortcut: C:\Users\Stephan Reisig\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GemistDownloader\HelpdeskWeb.nl.lnk -> hxxp://www.helpdeskweb.nl/home/?ref=s ==================== Geladen Modules (gefilterd) ============== 2010-01-09 21:17 - 2010-01-09 21:17 - 04254560 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF ==================== Alternate Data Streams (gefilterd) ========= (Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.) AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51 [174] ==================== Veilige Modus (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.) ==================== Bestandskoppeling (gefilterd) =============== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd.) ==================== Internet Explorer vertrouwde/beperkte toegang =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd.) ==================== Hosts inhoud: =============================== (Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.) 2009-07-14 04:34 - 2017-03-25 02:53 - 00000035 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Andere gebieden ============================ (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-21-3820285416-1422433888-2532357495-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Stephan Reisig\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.2.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == MSCONFIG\Services: WMPNetworkSvc => 2 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup MSCONFIG\startupreg: AdobeBridge => MSCONFIG\startupreg: Becwsupa => "C:\Program Files (x86)\ABN AMRO e.dentifier2\wss\becwsupa.exe" MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: Google Photos Backup => "C:\Users\Stephan Reisig\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe" /autostart MSCONFIG\startupreg: MSC => "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun MSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun MSCONFIG\startupreg: Uninstall C: => ==================== Firewall regels (gefilterd) =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [TCP Query User{1FB420EE-9EC8-4946-8D92-BC23B78A2B6C}C:\users\stephan reisig\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\stephan reisig\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{0CF52326-7228-4255-9460-FBB2446A672A}C:\users\stephan reisig\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\stephan reisig\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{9591E886-B083-4EC6-B5FB-312549D59DAA}C:\users\stephan reisig\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\stephan reisig\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{086583B1-B0C4-4280-AD64-0D8797C950AF}C:\users\stephan reisig\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\stephan reisig\appdata\roaming\spotify\spotify.exe FirewallRules: [{3C77ACE7-48C6-41B5-80D0-685671066FB5}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{FBE4AD02-C5B6-4634-9CE0-FB5EFBDF91B6}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{B85A024E-3D00-41E1-9A93-881A78660813}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{5E2D7413-579D-4D1D-8AA4-F756CC7CCF8D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{1D500056-8314-41C9-9977-BFF773A98DB6}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{AB913C4E-6D41-4A14-B592-C66D058E9104}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{C9AD2834-74DB-4CE9-A5B5-892CCA0875E8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe FirewallRules: [{6D7C6F60-2CA1-462C-A261-AC34858F4FAE}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{BDFD7C7A-6F09-4C4C-B529-8B6B49E46BF2}] => (Allow) C:\Program Files (x86)\common files\hp\digital imaging\bin\hpqphotocrm.exe FirewallRules: [{B4270AC6-75C8-49D4-A70B-535165393CD6}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqsudi.exe FirewallRules: [{754F6744-6D3F-4719-BCF4-D859D231BA3C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpsapp.exe FirewallRules: [{27BC687C-F645-464C-BAF8-280FA19166E0}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpse.exe FirewallRules: [{04C290E8-3CCA-45DD-87EF-720B6EFF7E2B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{4B1A6704-B6F3-46C5-91E1-08AF3DD78634}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{EA02E5E8-2A14-4624-9873-B51A76BA9F0D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{DD74E147-6752-42D3-B46B-33A6CB92A735}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{05AD95E4-C351-4FB9-9E3E-0C6D511CD574}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{507FE58C-5CCA-4391-8F87-CA3FC2752743}] => (Allow) C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe FirewallRules: [{C9C3CC3C-9D5D-4C64-9B56-C892CA0FF42A}] => (Allow) C:\Users\Stephan Reisig\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{1B5361BC-FA00-42C2-96F7-704D21D9E282}] => (Allow) C:\Users\Stephan Reisig\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{D1832107-9A3B-4C0E-8E06-B9922E98CFD4}] => (Allow) C:\Program Files (x86)\ABN AMRO e.dentifier2\wss\becwsupa.exe FirewallRules: [{F0FD7CE0-70E3-4EDC-999F-72EF75C4CDF0}] => (Allow) C:\Program Files (x86)\ABN AMRO e.dentifier2\wss\becwsupa.exe FirewallRules: [{4C0AC077-F641-4837-B5E5-CF5EC2069724}] => (Allow) C:\Program Files (x86)\ABN AMRO e.dentifier2\wss\becwsupa.exe FirewallRules: [{DFBAA0A2-3A63-4CE3-832F-D0F2C73CCF93}] => (Allow) C:\Program Files (x86)\ABN AMRO e.dentifier2\wss\becwsupa.exe FirewallRules: [{65DB0A51-5044-430F-9B5B-8E35E0DA98F9}] => (Allow) C:\Program Files (x86)\ABN AMRO e.dentifier2\wss\becwssvr.exe FirewallRules: [{DBC3D356-14EB-49C5-A35F-3BA0F2D90939}] => (Allow) C:\Program Files (x86)\ABN AMRO e.dentifier2\wss\becwssvr.exe FirewallRules: [{14B3F362-D3BA-4FF0-AEB5-F82E77CA4BFD}] => (Allow) C:\Program Files (x86)\ABN AMRO e.dentifier2\wss\becwssvr.exe FirewallRules: [{3FDA36BC-27FC-4237-A0CE-F7E109E569D1}] => (Allow) C:\Program Files (x86)\ABN AMRO e.dentifier2\wss\becwssvr.exe FirewallRules: [{0D3E1506-DD00-4285-8036-52E2BED236B5}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Free Audio Recorder\Apowersoft Free Audio Recorder.exe FirewallRules: [{ACC504CF-C8AF-48BB-B261-0159B1E41345}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Free Audio Recorder\Apowersoft Free Audio Recorder.exe FirewallRules: [{BFFF0957-42E6-4C2B-BE91-33542A7B6388}] => (Allow) LPort=2869 FirewallRules: [{FD40DED9-65C3-4716-8F0C-DFD8F16A4598}] => (Allow) LPort=1900 FirewallRules: [{2E0D2C98-2502-47FF-AE7A-EDC73DD687C1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{5C360FB7-EA6A-4862-BB7D-F3EE19D7066F}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{C832012C-A79A-4002-AFD3-66F62A623D76}] => (Allow) C:\Windows\SysWOW64\muzapp.exe ==================== Herstelpunten ========================= 25-03-2017 21:04:31 Windows Update 25-03-2017 21:16:38 Windows Update 25-03-2017 23:19:19 Windows Update 26-03-2017 03:42:53 Windows Update 26-03-2017 05:44:35 Windows Update ==================== Defecte Apparaatbeheer Apparaten ============= ==================== Eventlog fouten: ========================= Applicatiefouten: ================== Error: (03/26/2017 03:47:06 AM) (Source: MsiInstaller) (EventID: 11714) (User: NT AUTHORITY) Description: Product: Microsoft .NET Framework 4.6.1 (NLD) -- Fout 1714. De oudere versie van Microsoft .NET Framework 4.6.1 (NLD) kan niet worden verwijderd. Neem contact op met technische ondersteuning. Systeemfout 1612. Error: (03/25/2017 11:32:26 PM) (Source: MsiInstaller) (EventID: 11714) (User: NT AUTHORITY) Description: Product: Microsoft .NET Framework 4.6.1 (NLD) -- Fout 1714. De oudere versie van Microsoft .NET Framework 4.6.1 (NLD) kan niet worden verwijderd. Neem contact op met technische ondersteuning. Systeemfout 1612. Error: (03/25/2017 09:19:31 PM) (Source: Microsoft Security Client Setup) (EventID: 100) (User: NT AUTHORITY) Description: HRESULT:0x80070643 Description:Cannot complete the Security Essentials Upgrade. An error has prevented the Security Essentials Upgrade Wizard from continuing. The previous version of Security Essentials was restored. Error code:0x80070643. (null) Error: (03/25/2017 09:19:27 PM) (Source: MsiInstaller) (EventID: 10005) (User: NT AUTHORITY) Description: Product: Microsoft Security Client -- All customizable parameters must be specified on install: AMPRODUCT, PRODUCTICON, PRODUCTLOCALIZEDNAME, REMEDIATIONEXE, SIGNATURECATEGORYID and PRODUCT_SKU Error: (03/25/2017 09:06:02 PM) (Source: Microsoft Security Client Setup) (EventID: 100) (User: NT AUTHORITY) Description: HRESULT:0x80070643 Description:Cannot complete the Security Essentials Upgrade. An error has prevented the Security Essentials Upgrade Wizard from continuing. The previous version of Security Essentials was restored. Error code:0x80070643. (null) Error: (03/25/2017 09:05:58 PM) (Source: MsiInstaller) (EventID: 10005) (User: NT AUTHORITY) Description: Product: Microsoft Security Client -- All customizable parameters must be specified on install: AMPRODUCT, PRODUCTICON, PRODUCTLOCALIZEDNAME, REMEDIATIONEXE, SIGNATURECATEGORYID and PRODUCT_SKU Error: (03/25/2017 08:40:33 PM) (Source: Microsoft Security Client Setup) (EventID: 100) (User: NT AUTHORITY) Description: HRESULT:0x8004FF84 Description:Cannot complete the Security Essentials Upgrade. An error has prevented the Security Essentials Upgrade Wizard from continuing. The previous version of Security Essentials was restored. Error code:0x8004FF84. Error: (03/25/2017 08:36:57 PM) (Source: MsiInstaller) (EventID: 11714) (User: NT AUTHORITY) Description: Product: Microsoft Security Client -- Error 1714. The older version of Microsoft Security Client cannot be removed. Contact your technical support group. System Error 1612. Error: (03/25/2017 06:16:59 PM) (Source: .NET Runtime) (EventID: 1022) (User: ) Description: .NET Runtime version 4.0.30319.0 - Er is een fout opgetreden tijdens de initialisatie van de koppelingsinfrastructuur voor de profiling-API. Dit proces staat niet toe dat een profiler wordt gekoppeld. HRESULT: 0x80004005. Proces-id (decimaal): 2644. Bericht-id: [0x2509]. Error: (03/25/2017 05:46:16 PM) (Source: .NET Runtime) (EventID: 1022) (User: ) Description: .NET Runtime version 4.0.30319.0 - Er is een fout opgetreden tijdens de initialisatie van de koppelingsinfrastructuur voor de profiling-API. Dit proces staat niet toe dat een profiler wordt gekoppeld. HRESULT: 0x80004005. Proces-id (decimaal): 3236. Bericht-id: [0x2509]. Systeemfouten: ============= Error: (03/26/2017 03:50:06 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: Windows Error Reporting Service. Error: (03/26/2017 03:41:17 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: De volgende opstartstuurprogramma's zijn niet geladen: StarOpen Error: (03/26/2017 03:40:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De Microsoft Antimalware Service-service kan vanwege de volgende fout niet worden gestart: De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord. Error: (03/26/2017 03:40:04 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: Microsoft Antimalware Service. Error: (03/26/2017 03:39:45 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\Drivers\StarOpen.SYS kan niet worden geladen vanwege incompatibiliteit met dit systeem. Vraag de leverancier van de software om een compatibele versie van het stuurprogramma. Error: (03/26/2017 03:15:32 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: De volgende opstartstuurprogramma's zijn niet geladen: StarOpen Error: (03/26/2017 03:14:16 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: Avira Service Host. Error: (03/26/2017 03:13:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De Microsoft Antimalware Service-service kan vanwege de volgende fout niet worden gestart: De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord. Error: (03/26/2017 03:13:27 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: Microsoft Antimalware Service. Error: (03/26/2017 03:13:06 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\Drivers\StarOpen.SYS kan niet worden geladen vanwege incompatibiliteit met dit systeem. Vraag de leverancier van de software om een compatibele versie van het stuurprogramma. CodeIntegrity: =================================== Date: 2015-12-10 13:33:21.789 Description: De integriteit van het bestand \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe kan niet worden gecontroleerd, omdat het handtekeningcertificaat is ingetrokken. Ga bij de uitgever na of er een nieuwe, ondertekende versie van de kernelmodule beschikbaar is. Date: 2015-12-10 13:33:21.781 Description: De integriteit van het bestand \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe kan niet worden gecontroleerd, omdat het handtekeningcertificaat is ingetrokken. Ga bij de uitgever na of er een nieuwe, ondertekende versie van de kernelmodule beschikbaar is. Date: 2015-12-10 13:33:21.773 Description: De integriteit van het bestand \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe kan niet worden gecontroleerd, omdat het handtekeningcertificaat is ingetrokken. Ga bij de uitgever na of er een nieuwe, ondertekende versie van de kernelmodule beschikbaar is. Date: 2015-12-10 13:33:21.713 Description: De integriteit van het bestand \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe kan niet worden gecontroleerd, omdat het handtekeningcertificaat is ingetrokken. Ga bij de uitgever na of er een nieuwe, ondertekende versie van de kernelmodule beschikbaar is. Date: 2015-12-10 13:33:20.603 Description: De integriteit van het bestand \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe kan niet worden gecontroleerd, omdat het handtekeningcertificaat is ingetrokken. Ga bij de uitgever na of er een nieuwe, ondertekende versie van de kernelmodule beschikbaar is. Date: 2015-12-10 13:33:20.597 Description: De integriteit van het bestand \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe kan niet worden gecontroleerd, omdat het handtekeningcertificaat is ingetrokken. Ga bij de uitgever na of er een nieuwe, ondertekende versie van de kernelmodule beschikbaar is. Date: 2015-12-10 13:33:20.591 Description: De integriteit van het bestand \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe kan niet worden gecontroleerd, omdat het handtekeningcertificaat is ingetrokken. Ga bij de uitgever na of er een nieuwe, ondertekende versie van de kernelmodule beschikbaar is. Date: 2015-12-10 13:33:20.534 Description: De integriteit van het bestand \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe kan niet worden gecontroleerd, omdat het handtekeningcertificaat is ingetrokken. Ga bij de uitgever na of er een nieuwe, ondertekende versie van de kernelmodule beschikbaar is. Date: 2015-12-10 13:33:17.485 Description: De integriteit van het bestand \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe kan niet worden gecontroleerd, omdat het handtekeningcertificaat is ingetrokken. Ga bij de uitgever na of er een nieuwe, ondertekende versie van de kernelmodule beschikbaar is. Date: 2015-12-10 13:33:17.479 Description: De integriteit van het bestand \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe kan niet worden gecontroleerd, omdat het handtekeningcertificaat is ingetrokken. Ga bij de uitgever na of er een nieuwe, ondertekende versie van de kernelmodule beschikbaar is. ==================== Geheugen info =========================== Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 5200+ Percentage geheugen in gebruik: 70% Totaal fysiek RAM-geheugen: 3967.43 MB Beschikbaar fysiek RAM-geheugen: 1181.91 MB Totaal Virtueel geheugen: 7933.04 MB Beschikbaar Virtual geheugen: 3814.82 MB ==================== Schijven ================================ Drive c: () (Fixed) (Total:101.43 GB) (Free:38.83 GB) NTFS Drive d: (Data) (Fixed) (Total:196.56 GB) (Free:192.85 GB) NTFS Drive f: () (Fixed) (Total:465.76 GB) (Free:110.65 GB) NTFS Drive g: () (Fixed) (Total:74.52 GB) (Free:49.97 GB) NTFS ==================== MBR & Partitietabel ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 303FD0E8) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=101.4 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=196.6 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 1549F232) Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 74.5 GB) (Disk ID: ECD031B3) Partition 1: (Active) - (Size=74.5 GB) - (Type=07 NTFS) ==================== Eind van Addition.txt ============================