Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 14.03.2018 Gestart door Wolfje (28-03-2018 09:56:08) Gestart vanaf C:\Users\Wolfje\Desktop Windows 10 Pro Versie 1709 16299.309 (X64) (2018-01-28 09:21:36) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3231867038-1094624959-2576915519-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3231867038-1094624959-2576915519-503 - Limited - Disabled) Gast (S-1-5-21-3231867038-1094624959-2576915519-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-3231867038-1094624959-2576915519-504 - Limited - Disabled) Wolfje (S-1-5-21-3231867038-1094624959-2576915519-1001 - Administrator - Enabled) => C:\Users\Wolfje ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AV: ESET NOD32 Antivirus (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70} AS: ESET NOD32 Antivirus (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeïnstalleerd worden.) 9-lab Removal Tool (HKLM-x32\...\9-lab Removal Tool) (Version: - ) BleachBit (HKLM-x32\...\BleachBit) (Version: 1.12 - BleachBit) CCleaner (HKLM\...\CCleaner) (Version: 5.38 - Piriform) CPUID CPU-Z 1.84 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.84 - CPUID, Inc.) DVDFab (x64) 10.0.8.0 (02/02/2018) (HKLM-x32\...\DVDFab 10(x64)) (Version: 10.0.8.0 - Fengtao Software Inc.) ESET Security (HKLM\...\{3EB22EED-2263-4174-9F36-09BD15A7AEF8}) (Version: 11.0.159.5 - ESET, spol. s r.o.) GemistDownloader (HKLM-x32\...\GemistDownloader) (Version: 2.9.0.5 - BeukemaMedia (HelpdeskWeb.nl)) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 65.0.3325.181 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden GOOSE VPN (HKLM-x32\...\GOOSE) (Version: 3.2.3 (38) - GOOSE Ltd.) GrabIt 1.7.5 Beta (build 1016) (HKLM-x32\...\GrabIt_is1) (Version: - Ilan Shemes) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1037 - Intel Corporation) Intel(R) Network Connections 22.4.16.0 (HKLM\...\PROSetDX) (Version: 22.4.16.0 - Intel) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 23.20.16.4905 - Intel Corporation) KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version: - ) Logitech SetPoint 6.67 (HKLM\...\sp6) (Version: 6.67.83 - Logitech) Mahjong Towers II (HKLM-x32\...\Mahjong Towers II) (Version: - ) Malwarebytes versie 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes) Microsoft Office Professional Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation) MultiPar versie 1.2.9.8 (HKU\.DEFAULT\...\{AAFC96BF-C615-4D77-9A55-C692A7B26FC5}_is1) (Version: 1.2.9.8 - Yutaka Sawada) MultiPar versie 1.2.9.9 (HKU\S-1-5-21-3231867038-1094624959-2576915519-1001\...\{AAFC96BF-C615-4D77-9A55-C692A7B26FC5}_is1) (Version: 1.2.9.9 - Yutaka Sawada) Nero 2018 (HKLM-x32\...\{DB8EF13D-AD5C-4893-BB41-BD010964E730}) (Version: 19.0.10200 - Nero AG) Nero Info (HKLM-x32\...\{F030BFE8-8476-4C08-A553-233DE80A2BE1}) (Version: 19.0.1003 - Nero AG) NewZFinders 1.1.2 Build 002 (HKLM-x32\...\NewZFinders_is1) (Version: - ZProDuCTioN) Outils de vérification linguistique 2016 de Microsoft Office - Français (HKLM\...\{90160000-001F-040C-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden Prerequisite installer (HKLM-x32\...\{AD240F1A-3102-492E-B657-17969A9D5E9A}) (Version: 19.0.0004 - Nero AG) Hidden qBittorrent 4.0.3 (HKLM-x32\...\qBittorrent) (Version: 4.0.3 - The qBittorrent project) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8378 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform) Samsung Universal Scan Driver (HKLM-x32\...\Samsung Universal Scan Driver) (Version: 1.2.19.0 - Samsung Electronics Co., Ltd.) settings w10 (HKLM\...\{75D37BD7-6B9F-41F6-A317-DF7544DF07F7}) (Version: 1.0.0.0 - Den Spike) Software voor Intel® Chipset-apparaten (HKLM-x32\...\{17408817-d415-4768-a160-ae6d46d6bdb0}) (Version: 10.1.1.44 - Intel(R) Corporation) Hidden Speccy (HKLM\...\Speccy) (Version: 1.31 - Piriform) Taalprogramma's voor Microsoft Office 2016 - Nederlands (HKLM\...\{90160000-001F-0413-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden Uninstall Samsung Printer Software (HKLM-x32\...\TotalUninstaller) (Version: 4.0.0.67 - Samsung Electronics CO., LTD.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.8 - VideoLAN) Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0) (Version: 1.0.65.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-2) (Version: 1.0.65.1 - LunarG, Inc.) Hidden WinRAR 5.50 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) Wise Care 365 4.6.7 (HKLM-x32\...\Wise Care 365_is1) (Version: 4.6.7 - WiseCleaner.com, Inc.) Wise Memory Optimizer 3.5.2 (HKLM-x32\...\Wise Memory Optimizer_is1) (Version: 3.5.2 - WiseCleaner.com, Inc.) ==================== Aangepaste CLSID (gefilterd): ========================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) CustomCLSID: HKU\S-1-5-21-3231867038-1094624959-2576915519-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Wolfje\AppData\Local\Microsoft\OneDrive\18.044.0301.0005\amd64\FileSyncShell64.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-3231867038-1094624959-2576915519-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Wolfje\AppData\Local\Microsoft\OneDrive\18.044.0301.0005\amd64\FileSyncShell64.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-3231867038-1094624959-2576915519-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Wolfje\AppData\Local\Microsoft\OneDrive\18.044.0301.0005\amd64\FileSyncShell64.dll => Geen bestand ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Geen bestand ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Geen bestand ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Geen bestand ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Geen bestand ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Geen bestand ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Geen bestand ContextMenuHandlers1: [9-lab Removal Tool] -> {8E571ABB-30D3-402F-BBEC-3954466CF529} => C:\Program Files\9-lab\Removal Tool\shellext.dll [2016-02-10] (9-lab LLC) ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2017-12-18] (ESET) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-14] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-14] (Alexander Roshal) ContextMenuHandlers2: [9-lab Removal Tool] -> {8E571ABB-30D3-402F-BBEC-3954466CF529} => C:\Program Files\9-lab\Removal Tool\shellext.dll [2016-02-10] (9-lab LLC) ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2017-12-18] (ESET) ContextMenuHandlers4: [9-lab Removal Tool] -> {8E571ABB-30D3-402F-BBEC-3954466CF529} => C:\Program Files\9-lab\Removal Tool\shellext.dll [2016-02-10] (9-lab LLC) ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_250db833a1cd577e\igfxDTCM.dll [2018-02-28] (Intel Corporation) ContextMenuHandlers6: [9-lab Removal Tool] -> {8E571ABB-30D3-402F-BBEC-3954466CF529} => C:\Program Files\9-lab\Removal Tool\shellext.dll [2016-02-10] (9-lab LLC) ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2017-12-18] (ESET) ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-14] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-14] (Alexander Roshal) ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {29838B2B-182B-4FD9-8AD2-CDBC3389FE39} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2017-12-01] (Piriform Ltd) Task: {3287C102-580C-43F2-92B8-C1A6306C4AB0} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2015-07-31] (Microsoft Corporation) Task: {5A51FC88-A331-4A13-AD27-00B2E0478212} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {69752734-2AC9-46EE-B918-0A2DAD934E63} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [2017-08-10] (Nero AG) Task: {701703C9-498E-4595-B579-DE7C5495AE4B} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-12-01] (Piriform Ltd) Task: {A0475E1D-3810-4F8C-8C78-50F4E28DE794} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK Task: {C648E493-16F3-4DF9-8940-14DF37ED1BEE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-01-28] (Google Inc.) Task: {DC7DE2E3-DB93-4AA5-95BC-F25E528F8D69} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {E91316EF-A676-4C25-B561-2D45B2BD58BF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-01-28] (Google Inc.) Task: {F0FE6D38-318C-4538-ABD4-1E89801BC023} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [2016-01-12] (@ByELDI) Task: {F186D06C-A007-4534-B1E1-D8A273348BB8} - System32\Tasks\AdobeGCInvoker-1.0-WOLFJESPC-Wolfje => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-01-05] (Adobe Systems, Incorporated) Task: {F7FD226E-363D-44B3-94AC-06320FEDC2CD} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2017-02-24] (Intel(R) Corporation) (Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) ==================== Snelkoppelingen & WMI ======================== (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) Shortcut: C:\Users\Wolfje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DVDFab 10 (x64)\DVDFab (x64) Online.lnk -> hxxp://www.dvdfab.cn/?s=dvdfab10&p=x64&v=10.0.8. ==================== Geladen Modules (gefilterd) ============== 2017-09-29 15:41 - 2017-09-29 15:41 - 000184432 _____ () C:\Windows\SYSTEM32\inputhost.dll 2018-02-03 17:43 - 2016-08-13 01:21 - 000031256 _____ () C:\Windows\System32\us008lm.dll 2018-02-03 14:24 - 2015-03-12 04:43 - 000022528 _____ () C:\Windows\System32\us013lm.dll 2018-01-28 14:21 - 2017-11-29 10:11 - 002301384 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2018-01-28 14:21 - 2017-11-29 10:11 - 002358728 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2018-03-13 19:40 - 2018-02-22 02:26 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2018-03-13 19:40 - 2018-02-22 02:21 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2018-03-27 06:15 - 2018-03-27 06:15 - 000086528 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2018-03-27 06:15 - 2018-03-27 06:15 - 000195072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2018-03-27 06:15 - 2018-03-27 06:15 - 022050304 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2018-03-27 06:15 - 2018-03-27 06:15 - 002584576 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\skypert.dll 2018-02-03 14:21 - 2013-10-04 06:53 - 000734720 _____ () C:\Windows\system32\SnMinDrv.dll 2018-02-03 14:21 - 2013-06-28 16:36 - 000091136 _____ () C:\Windows\system32\SSDEVM64.DLL 2015-07-30 04:32 - 2015-07-30 04:32 - 002210480 _____ () C:\Program Files\Microsoft Office\Office16\tmpod.dll 2015-07-31 10:58 - 2015-07-31 10:58 - 000588968 _____ () C:\Program Files\Microsoft Office\Office16\msfad.dll 2018-03-16 05:24 - 2018-03-16 05:25 - 000173568 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11802.1001.11.0_x64__8wekyb3d8bbwe\WinStore.Preview.dll 2018-03-09 07:13 - 2018-03-09 07:13 - 002250240 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11802.1001.11.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2018-03-22 06:25 - 2018-03-22 06:25 - 004330496 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1803.711.0_x64__8wekyb3d8bbwe\Calculator.exe 2018-03-16 05:24 - 2018-03-16 05:25 - 000631296 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1803.711.0_x64__8wekyb3d8bbwe\RuntimeConfiguration.dll 2015-12-29 00:25 - 2015-12-29 00:25 - 000120334 _____ () C:\Program Files (x86)\GOOSE\libgcc_s_dw2-1.dll 2015-12-29 00:25 - 2015-12-29 00:25 - 001540622 _____ () C:\Program Files (x86)\GOOSE\libstdc++-6.dll 2017-07-12 19:07 - 2017-07-12 19:07 - 001244304 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (gefilterd) ========= (Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.) ==================== Veilige Modus (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Bestandskoppeling (gefilterd) =============== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd.) ==================== Internet Explorer vertrouwde/beperkte toegang =============== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd.) ==================== Hosts inhoud: ========================== (Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.) 2017-09-29 15:46 - 2018-02-14 12:56 - 000003719 _____ C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 www.newsleecher.com 127.0.0.1 cap.cyberlink.com 127.0.0.1 activation.cyberlink.com 127.0.0.1 23.74.204.49 127.0.0.1 2.20.235.247 127.0.0.1 209.34.83.73:443 127.0.0.1 209.34.83.73:43 127.0.0.1 209.34.83.73 127.0.0.1 209.34.83.67:443 127.0.0.1 209.34.83.67:43 127.0.0.1 209.34.83.67 127.0.0.1 ood.opsource.net 127.0.0.1 199.7.52.190:80 127.0.0.1 199.7.52.190 127.0.0.1 OCSP.SPO1.VERISIGN.COM 127.0.0.1 199.7.54.72:80 127.0.0.1 199.7.54.72 127.0.0.1 192.150.14.69 127.0.0.1 192.150.18.101 127.0.0.1 192.150.18.108 127.0.0.1 192.150.22.40 127.0.0.1 192.150.8.100 127.0.0.1 192.150.8.118 127.0.0.1 209-34-83-73.ood.opsource.net 127.0.0.1 3dns-1.adobe.com 127.0.0.1 3dns-2.adobe.com 127.0.0.1 3dns-2.adobe.com 127.0.0.1 3dns-3.adobe.com 127.0.0.1 3dns-3.adobe.com 127.0.0.1 3dns-4.adobe.com ==================== Andere gebieden ============================ (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-21-3231867038-1094624959-2576915519-1001\Control Panel\Desktop\\Wallpaper -> D:\Mijn afbeeldingen\Wallpapers\_DSC5848.jpg DNS Servers: 85.113.233.93 - 85.113.233.94 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == HKLM\...\StartupApproved\StartupFolder: => "RUN.CMD" HKLM\...\StartupApproved\Run: => "RTHDVCPL" HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0" HKLM\...\StartupApproved\Run: => "Logitech Download Assistant" HKLM\...\StartupApproved\Run32: => "Nero BackItUp" HKU\S-1-5-21-3231867038-1094624959-2576915519-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3231867038-1094624959-2576915519-1001\...\StartupApproved\Run: => "CCleaner Monitoring" ==================== Firewall regels (gefilterd) =============== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [{0806E1D0-76B8-4E83-8573-C2D7542244B1}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{F16DBEE2-C0ED-48E5-B6AD-90CD64B38F82}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{CF8F1219-1534-49D1-B117-6AEA5D80D8CA}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [{BF431BB2-CC70-4EE4-A3A5-4204B5E7292C}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [TCP Query User{2B9DF33E-91F0-46EC-BCAE-F479515520B1}C:\users\wolfje\desktop\snappy driver update\sdi_x64_r1800.exe] => (Allow) C:\users\wolfje\desktop\snappy driver update\sdi_x64_r1800.exe FirewallRules: [UDP Query User{F160AACE-7563-4D57-86FD-301E963FD151}C:\users\wolfje\desktop\snappy driver update\sdi_x64_r1800.exe] => (Allow) C:\users\wolfje\desktop\snappy driver update\sdi_x64_r1800.exe FirewallRules: [{87F4BF70-A555-4C9B-B964-7E8E39392BD3}] => (Block) C:\users\wolfje\desktop\snappy driver update\sdi_x64_r1800.exe FirewallRules: [{404A5249-513E-4B58-8DE0-1674C0BCBA77}] => (Block) C:\users\wolfje\desktop\snappy driver update\sdi_x64_r1800.exe FirewallRules: [{252DF4B6-4C6F-43B3-B87E-2BD70750E552}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ICCUpdater.exe FirewallRules: [{D61977A1-831E-4EF2-A74A-C1B059450BEF}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ICCUpdater.exe FirewallRules: [{FC63173A-0DED-444C-BB26-CBB4D79D071C}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ScanCDLM.exe FirewallRules: [{D605E6B2-D193-49EA-BDD7-4885096B8F7D}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ScanCDLM.exe FirewallRules: [{1CCB8B59-91BF-41DC-A4DA-9B971F9563B3}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe FirewallRules: [{BF63D5C5-5000-4C63-B567-AE902A3E2FF7}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe FirewallRules: [TCP Query User{FFD585D8-4DFE-4A0F-8DCA-B9FAE3E7785B}C:\program files\dvdfab 10 nw\dvdfab64.exe] => (Allow) C:\program files\dvdfab 10 nw\dvdfab64.exe FirewallRules: [UDP Query User{2D0C1800-0C1A-419E-AEB1-D965A727C357}C:\program files\dvdfab 10 nw\dvdfab64.exe] => (Allow) C:\program files\dvdfab 10 nw\dvdfab64.exe FirewallRules: [{F5B4DF7B-1AF0-4A68-8A42-1756F177AD56}] => (Block) C:\program files\dvdfab 10 nw\dvdfab64.exe FirewallRules: [{11EE03D2-4565-4A64-A74E-05E0AC294463}] => (Block) C:\program files\dvdfab 10 nw\dvdfab64.exe FirewallRules: [{2A415615-9D65-4FAF-B593-DDA0296097B7}] => (Allow) C:\Program Files (x86)\Nero\Nero 2018\Nero Burning ROM\StartNBR.exe FirewallRules: [{9F32FECD-6B75-4091-AD66-74C3BB239C23}] => (Allow) C:\Program Files (x86)\Nero\Nero 2018\Nero BackItup\BackItUp.exe FirewallRules: [{357EDF31-628A-48B5-B08B-392647791E25}] => (Allow) C:\Program Files (x86)\Nero\Nero 2018\Nero BackItup\NBService.exe FirewallRules: [{E33BAD9B-4458-49E9-A41A-D9D1F5F8FF64}] => (Allow) C:\Program Files (x86)\Nero\Nero 2018\Nero MediaHome\NMDllHost.exe FirewallRules: [{5FEF52E1-BF7A-4330-B933-C375D86E2C7F}] => (Allow) C:\Program Files (x86)\Nero\Nero 2018\Nero MediaHome\MediaHome.exe FirewallRules: [{CEF0011F-A49B-4667-A608-732B0C1CF735}] => (Allow) C:\Program Files (x86)\Nero\Nero 2018\Nero Burning ROM\nero.exe FirewallRules: [{00060069-CE59-4269-86CB-DAE64BBA0314}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{381D73E0-8D49-4104-9286-E36AAD50EE83}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{BACC543A-6215-4A56-8DE1-42AE8ABD2138}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{DF7278F9-7C4F-4D75-8F29-99448E60BC6C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{B190FB46-E995-4BDD-8F29-6B64AB47EFF0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{F499CE05-3CC6-400D-98B0-2F3BC46E151E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{199C3BE3-CF06-41FA-B575-D76159F39751}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{1413AA41-25BD-44F3-B923-F7D7CE01E3FE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{FFD1404B-D3C9-4B1C-8F1C-3C55625D9DAF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\SpotifyWebHelper.exe FirewallRules: [{3D984D75-C211-44AA-B91D-E99B93FAD1E9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\SpotifyWebHelper.exe FirewallRules: [{8EC70048-6AAB-4B45-A7B0-A598E04A7A54}] => (Allow) C:\Program Files (x86)\GOOSE\GooseVPN.exe FirewallRules: [{054750EC-6EA6-4940-AD7E-0E2382DA7789}] => (Allow) C:\Program Files (x86)\GOOSE\GooseVPN.exe FirewallRules: [{00DB4A08-ACFB-4FE3-9C24-66CF46D93463}] => (Allow) C:\Program Files (x86)\GOOSE\Connection\openvpn.exe FirewallRules: [{CD1E2CBC-F370-4F74-B54C-394AFE452AED}] => (Allow) C:\Program Files (x86)\GOOSE\Connection\openvpn.exe FirewallRules: [{7CD4B6BF-E8C7-456F-AD96-377C7B6C45B1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Herstelpunten ========================= 13-03-2018 17:44:51 Installed drivers 21-03-2018 15:36:40 Gepland controlepunt ==================== Defecte Apparaatbeheer Apparaten ============= ==================== Eventlog fouten: ========================= Applicatiefouten: ================== Error: (03/28/2018 09:01:28 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: WOLFJESPC) Description: Overgeslagen: de validatie van Eap method DLL path is mislukt. Fout: id van type=254, id van auteur=311, id van leverancier=14122, type leverancier=1 Error: (03/28/2018 09:01:28 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: WOLFJESPC) Description: Overgeslagen: de validatie van Eap method DLL path is mislukt. Fout: id van type=254, id van auteur=311, id van leverancier=14122, type leverancier=1 Error: (03/28/2018 06:32:20 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: WOLFJESPC) Description: Overgeslagen: de validatie van Eap method DLL path is mislukt. Fout: id van type=254, id van auteur=311, id van leverancier=14122, type leverancier=1 Error: (03/28/2018 06:32:20 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: WOLFJESPC) Description: Overgeslagen: de validatie van Eap method DLL path is mislukt. Fout: id van type=254, id van auteur=311, id van leverancier=14122, type leverancier=1 Error: (03/28/2018 06:17:53 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: WOLFJESPC) Description: Overgeslagen: de validatie van Eap method DLL path is mislukt. Fout: id van type=254, id van auteur=311, id van leverancier=14122, type leverancier=1 Error: (03/28/2018 06:17:52 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: WOLFJESPC) Description: Overgeslagen: de validatie van Eap method DLL path is mislukt. Fout: id van type=254, id van auteur=311, id van leverancier=14122, type leverancier=1 Error: (03/27/2018 06:25:53 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: WOLFJESPC) Description: Overgeslagen: de validatie van Eap method DLL path is mislukt. Fout: id van type=254, id van auteur=311, id van leverancier=14122, type leverancier=1 Error: (03/27/2018 06:25:53 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: WOLFJESPC) Description: Overgeslagen: de validatie van Eap method DLL path is mislukt. Fout: id van type=254, id van auteur=311, id van leverancier=14122, type leverancier=1 Systeemfouten: ============= Error: (03/28/2018 06:18:03 AM) (Source: DCOM) (EventID: 10016) (User: WOLFJESPC) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker WOLFJESPC\Wolfje SID (S-1-5-21-3231867038-1094624959-2576915519-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (03/28/2018 06:17:31 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (03/28/2018 06:17:31 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (03/28/2018 06:17:31 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (03/28/2018 06:17:31 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (03/27/2018 06:25:31 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (03/27/2018 06:25:31 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (03/27/2018 06:25:31 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. CodeIntegrity: =================================== Date: 2018-03-28 08:55:40.125 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eplgEdge.dll that did not meet the Store signing level requirements. Date: 2018-03-28 08:55:40.118 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-03-28 08:55:39.558 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eplgEdge.dll that did not meet the Store signing level requirements. Date: 2018-03-28 08:55:39.554 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-03-28 08:55:38.985 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eplgEdge.dll that did not meet the Store signing level requirements. Date: 2018-03-28 08:55:38.978 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-03-28 08:55:31.007 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eplgEdge.dll that did not meet the Store signing level requirements. Date: 2018-03-28 08:55:31.003 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. ==================== Geheugen info =========================== Processor: Intel(R) Core(TM) i7-8700K CPU @ 3.70GHz Percentage geheugen in gebruik: 9% Totaal fysiek RAM-geheugen: 32647.28 MB Beschikbaar fysiek RAM-geheugen: 29463.46 MB Totaal Virtueel geheugen: 65415.28 MB Beschikbaar Virtual geheugen: 62098.12 MB ==================== Schijven ================================ Drive c: () (Fixed) (Total:255.63 GB) (Free:207.89 GB) NTFS Drive d: (Bestandjes) (Fixed) (Total:862 GB) (Free:683.4 GB) NTFS Drive e: (Films enzo) (Fixed) (Total:1000.89 GB) (Free:728.25 GB) NTFS \\?\Volume{acf0ce62-0000-0000-0000-100000000000}\ (Door systeem gereserveerd) (Fixed) (Total:0.54 GB) (Free:0.17 GB) NTFS ==================== MBR & Partitietabel ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 256.2 GB) (Disk ID: ACF0CE62) Partition 1: (Active) - (Size=549 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=255.6 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000) Partition: GPT. ==================== Eind van Addition.txt ============================