Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 14.03.2018 Gestart door Karien (01-04-2018 20:19:28) Gestart vanaf C:\Users\Karien\Downloads Windows 10 Home Versie 1709 16299.309 (X64) (2017-12-10 20:26:29) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1333784657-3298144514-1791887718-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1333784657-3298144514-1791887718-503 - Limited - Disabled) Gast (S-1-5-21-1333784657-3298144514-1791887718-501 - Limited - Disabled) Karien (S-1-5-21-1333784657-3298144514-1791887718-1001 - Administrator - Enabled) => C:\Users\Karien WDAGUtilityAccount (S-1-5-21-1333784657-3298144514-1791887718-504 - Limited - Disabled) ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: BullGuard Antivirus (Enabled - Up to date) {13E9CAA5-762A-794E-2DA9-245D5622A105} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: BullGuard Antispyware (Enabled - Up to date) {A8882B41-5010-76C0-1719-1F2F2DA5EBB8} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: BullGuard Firewall (Enabled) {2BD24B80-3C45-7816-06F6-8D68A8F1E67E} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeïnstalleerd worden.) Adobe Acrobat Reader DC - Nederlands (HKLM-x32\...\{AC76BA86-7AD7-1043-7B44-AC0F074E4100}) (Version: 18.011.20038 - Adobe Systems Incorporated) Adobe Shockwave Player 12.3 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.3.1.201 - Adobe Systems, Inc.) Albelli.be Fotoboeken (HKU\S-1-5-21-1333784657-3298144514-1791887718-1001\...\{C16DFB31-4A09-474E-AF61-02AFB3008763}_is1) (Version: 12.1.0.2266 - albelli BE) Apple Application Support (32-bit) (HKLM-x32\...\{D811A40A-9791-497C-B9DC-2D89C8E95EA1}) (Version: 6.1 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{8B47B514-F5D2-4E0D-B951-6E250618A7CD}) (Version: 6.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{31A0B634-BCF4-4D3F-8336-87FEACFEE142}) (Version: 11.0.1.2 - Apple Inc.) Apple Software Update (HKLM-x32\...\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}) (Version: 2.4.8.1 - Apple Inc.) Backup and Sync from Google (HKLM\...\{4B7277C7-9CEE-45FC-B36B-19AD28281B9C}) (Version: 3.40.8921.5350 - Google, Inc.) Belgium e-ID middleware 4.3.2 (build 3551) (HKLM\...\{DB942AEA-93D6-4FE4-8862-180D35A73551}) (Version: 4.3.3551 - Belgian Government) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Broadcom Bluetooth Drivers (HKLM\...\{0A1B4690-E176-4533-8058-939480AEE1D0}) (Version: 12.0.1.900 - Broadcom Corporation) BullGuard Internet Security (HKLM\...\BullGuard) (Version: 18.0 - BullGuard Ltd.) DIGIPASS Native Bridge 2.3.2 (HKLM-x32\...\{D9145E6A-FEDE-4922-8EB0-6154E4C528CB}) (Version: 2.3.2 - VASCO Data Security) Hidden DIGIPASS Native Bridge 2.3.2 (HKU\S-1-5-21-1333784657-3298144514-1791887718-1001\...\{9417bcae-5ec1-4171-81d5-46bf5bf9b573}) (Version: 2.3.2 - VASCO Data Security) Free WMA MP3 Converter (HKLM-x32\...\Free WMA MP3 Converter) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 65.0.3325.181 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden HiJackThis (HKLM-x32\...\{45A66726-69BC-466B-A7A4-12FCBA4883D7}) (Version: 1.0.0 - Trend Micro) HP Officejet Pro 8600 Basissoftware van het apparaat (HKLM\...\{A2518197-0768-4AF0-BFE5-C2965A812F9A}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Officejet Pro 8600 Help (HKLM-x32\...\{7788947C-D122-4E93-9F7D-52624FD8C10D}) (Version: 28.0.0 - Hewlett Packard) HP Officejet Pro 8600 Productverbeteringsonderzoek (HKLM\...\{1722618C-AACF-4EB3-915F-EA23E42DCE2F}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Support Solutions Framework (HKLM-x32\...\{F283E29B-0B9B-492B-A4BF-5585D996E5AF}) (Version: 12.8.47.1 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP) Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.1.10600.150 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1158 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4549 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.2.1088 - Intel Corporation) iTunes (HKLM\...\{C690D43D-4ECF-4904-A0AC-09AFD4BEA6BF}) (Version: 12.7.1.14 - Apple Inc.) Java 8 Update 161 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180161F0}) (Version: 8.0.1610.12 - Oracle Corporation) Java 8 Update 161 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180161F0}) (Version: 8.0.1610.12 - Oracle Corporation) Light Image Resizer 4.7.6.1 (HKLM-x32\...\{EBE030DD-D404-4D92-85E9-8C3624820808}_is1) (Version: 4.7.6.1 - ObviousIdea) Microsoft Office 2013 voor Thuisgebruik en Studenten - nl-nl (HKLM\...\HomeStudentRetail - nl-nl) (Version: 15.0.4997.1000 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1333784657-3298144514-1791887718-1001\...\OneDriveSetup.exe) (Version: 18.044.0301.0006 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 46.0 (x86 nl) (HKLM-x32\...\Mozilla Firefox 46.0 (x86 nl)) (Version: 46.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 46.0.0.5955 - Mozilla) Office 15 Click-to-Run Extensibility Component (HKLM-x32\...\{90150000-008C-0000-0000-0000000FF1CE}) (Version: 15.0.4997.1000 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (HKLM\...\{90150000-008F-0000-1000-0000000FF1CE}) (Version: 15.0.4997.1000 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (HKLM-x32\...\{90150000-008C-0413-0000-0000000FF1CE}) (Version: 15.0.4997.1000 - Microsoft Corporation) Hidden Ontwikkelingsplan (HKLM-x32\...\{2AE5FFE6-A152-45D9-AD96-3C5A706759A0}) (Version: 1.00.0000 - VVKBaO) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.3.723.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7667 - Realtek Semiconductor Corp.) swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics ClickPad Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.31.31 - Synaptics Incorporated) Taalpakket voor Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - NLD (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - NLD) (Version: 10.0.50903 - Microsoft Corporation) TeamViewer 13 (HKLM-x32\...\TeamViewer) (Version: 13.0.6447 - TeamViewer) TomTom MyDrive Connect 4.1.5.3181 (HKLM-x32\...\MyDriveConnect) (Version: 4.1.5.3181 - TomTom) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) ==================== Aangepaste CLSID (gefilterd): ========================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ShellIconOverlayIdentifiers: [BackupOverlayErr] -> {8749448C-D907-45BF-A842-4D3898894AC8} => C:\Program Files\BullGuard Ltd\BullGuard\BackupShellHook.dll [2018-03-14] (BullGuard Ltd.) ShellIconOverlayIdentifiers: [BackupOverlayInProgress] -> {3FFBF330-7839-476B-BE14-2C8597CE11B6} => C:\Program Files\BullGuard Ltd\BullGuard\BackupShellHook.dll [2018-03-14] (BullGuard Ltd.) ShellIconOverlayIdentifiers: [BackupOverlaySynced] -> {C62CF4DB-48CB-4B03-BFD0-30A29125FA49} => C:\Program Files\BullGuard Ltd\BullGuard\BackupShellHook.dll [2018-03-14] (BullGuard Ltd.) ContextMenuHandlers1: [_Movavivc11] -> {1C604495-4D32-476e-8D7E-FBF50F6C80BF} => -> Geen bestand ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-01-13] (Intel Corporation) ContextMenuHandlers6: [bgshellext] -> {F4BF1657-195F-4A0F-ACA2-9AE99D65BC0E} => C:\Program Files\BullGuard Ltd\BullGuard\BgShellExt.dll [2018-03-14] (BullGuard Ltd.) ContextMenuHandlers6: [_Movavivc11] -> {1C604495-4D32-476e-8D7E-FBF50F6C80BF} => -> Geen bestand ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {0FB622C8-809D-4BCE-8D84-663F657DCC3C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-24] (Google Inc.) Task: {1D5FA160-BB97-423C-BC5A-743A423A3024} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-24] (Google Inc.) Task: {2735168D-3535-4A52-A656-B16099B40C40} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated) Task: {2A77E10A-5754-40EB-9CC1-47FCC75844DE} - System32\Tasks\BullGuard\BullGuardUpdate2 => C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate2.exe [2018-03-26] (BullGuard Ltd.) Task: {50D1EDCB-56CE-4D1C-97A0-71CE9298111D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2018-03-07] (HP Inc.) Task: {65E60F69-5BF7-4396-B89B-3E1E849B6EFB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.) Task: {778EFBCA-51C3-4DA3-8366-28B339128676} - System32\Tasks\HPCustParticipation HP Officejet Pro 8600 => C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.) Task: {78B4F51B-FB9F-4377-927D-B62FBE76F82F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2017-12-12] (Microsoft Corporation) Task: {85D91890-D113-441B-9BCA-F7E8609C0829} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {9B48D8A5-1D71-4E79-9513-2E0DDF2F3C24} - \Microsoft\Windows\UNP\RunCampaignManager -> Geen bestand <==== AANDACHT Task: {9C7404C8-4EB9-4A1F-9A38-2155FA2D1542} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2018-02-07] (HP Inc.) Task: {B386AAC7-FB22-42D1-92A5-43ED67051C9A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2018-02-07] (HP Inc.) Task: {BB218AD1-5C39-443B-AABD-6175BF22408A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-06-22] (HP Inc.) Task: {BD0BF105-1487-4728-B4E3-02F0DC48958B} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2018-03-13] (Microsoft Corporation) Task: {BF912CE4-97A9-43CD-8114-39F8E8136A1D} - System32\Tasks\HPCeeScheduleForKarien => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard) Task: {C5C7CD74-ED17-4DD1-A604-E90237C84DDC} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-11-07] (HP Inc.) Task: {CE19DD3C-7F4F-4A20-AA91-CA98A6F6CEF0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.) Task: {D25B2367-B757-4170-8230-C4C66B97CBB7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {E951374E-6D45-4483-B168-3967654A3AB8} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-07-24] (Apple Inc.) Task: {EC6A293B-618F-456C-AAAD-A2C8A74EF83B} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2017-12-12] (Microsoft Corporation) (Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\HPCeeScheduleForKarien.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Snelkoppelingen & WMI ======================== (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) ==================== Geladen Modules (gefilterd) ============== 2017-09-29 15:41 - 2017-09-29 15:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2018-03-02 20:17 - 2018-03-02 20:16 - 000084408 _____ () c:\program files\bullguard ltd\bullguard\zlib1.dll 2018-03-02 20:17 - 2018-03-02 20:16 - 000645048 _____ () c:\program files\bullguard ltd\bullguard\LibXml2.dll 2018-03-02 20:17 - 2018-03-02 20:16 - 000727480 _____ () c:\program files\bullguard ltd\bullguard\SQLite.dll 2015-12-24 21:20 - 2017-01-17 04:25 - 000117440 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2017-03-16 16:08 - 2017-03-16 16:08 - 000092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2017-10-19 00:51 - 2017-10-19 00:51 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2018-03-02 20:17 - 2018-03-02 20:16 - 000064952 _____ () C:\Program Files\BullGuard Ltd\BullGuard\LIBBZ2.dll 2017-01-13 20:38 - 2017-01-13 20:38 - 000401880 _____ () C:\WINDOWS\system32\igfxTray.exe 2018-03-13 21:07 - 2018-02-22 02:26 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2018-03-13 21:07 - 2018-02-22 02:21 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-12-10 19:13 - 2017-12-10 19:13 - 003657624 _____ () C:\Windows\SystemApps\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\ContentDeliveryManager.Background.dll 2017-12-10 19:13 - 2017-12-10 19:13 - 002470296 _____ () C:\Windows\SystemApps\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\ContentManagementSDK.dll 2018-03-16 20:19 - 2018-03-16 20:20 - 000061952 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11802.1001.11.0_x64__8wekyb3d8bbwe\WinStoreTasksWrapper.dll 2018-03-16 20:19 - 2018-03-16 20:20 - 000173568 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11802.1001.11.0_x64__8wekyb3d8bbwe\WinStore.Preview.dll 2018-03-15 11:31 - 2018-03-15 11:31 - 046139776 _____ () C:\Program Files\Google\Drive\googledrivesync.exe 2018-04-01 20:07 - 2018-04-01 20:07 - 000113152 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\_ctypes.pyd 2018-04-01 20:07 - 2018-04-01 20:07 - 000080896 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\bz2.pyd 2018-04-01 20:07 - 2018-04-01 20:07 - 001585152 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\_hashlib.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000128512 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\win32api.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000137728 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\pywintypes27.dll 2018-04-01 20:08 - 2018-04-01 20:08 - 000548864 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\pythoncom27.dll 2018-04-01 20:08 - 2018-04-01 20:08 - 000689664 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\unicodedata.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000438784 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\win32com.shell.shell.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 001489408 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\wx._core_.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 001007104 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\wx._gdi_.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 001039872 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\wx._windows_.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 001325056 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\wx._controls_.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000916992 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\wx._misc_.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 001084416 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\pysqlite2._sqlite.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000149504 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\win32file.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000136192 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\win32security.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000007680 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\hashobjs_ext.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000020992 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\thumbnails_ext.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000118784 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\usb_ext.pyd 2018-04-01 20:07 - 2018-04-01 20:07 - 000047616 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\_socket.pyd 2018-04-01 20:07 - 2018-04-01 20:07 - 002224128 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\_ssl.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000014848 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\common.time34.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000023040 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\win32event.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000033280 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\windows.conditional.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000019968 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\windows.winwrap.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000107520 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\windows.volumes.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000223232 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\win32gui.pyd 2018-04-01 20:07 - 2018-04-01 20:07 - 000173568 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\_elementtree.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000169472 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\pyexpat.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000048128 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\win32inet.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000103424 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\wx._html2.pyd 2018-04-01 20:07 - 2018-04-01 20:07 - 000046080 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\_psutil_windows.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000633240 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\windows._cacheinvalidation.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 005408256 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\cello.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000010752 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\select.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000011776 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\win32crypt.pyd 2018-04-01 20:07 - 2018-04-01 20:07 - 000301568 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\PIL._imaging.pyd 2018-04-01 20:07 - 2018-04-01 20:07 - 000032256 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\_multiprocessing.pyd 2018-04-01 20:07 - 2018-04-01 20:07 - 000026112 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\_yappi.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000044032 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\win32process.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000027648 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\win32pipe.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000029696 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\win32pdh.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000038400 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\windows.connectivity.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000071168 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\windows.device_monitor.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000020480 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\win32profile.pyd 2018-04-01 20:08 - 2018-04-01 20:08 - 000026624 _____ () C:\Users\Karien\AppData\Local\Temp\_MEI90682\win32ts.pyd 2018-03-22 20:33 - 2018-03-20 08:00 - 004435288 _____ () C:\Program Files (x86)\Google\Chrome\Application\65.0.3325.181\libglesv2.dll 2018-03-22 20:33 - 2018-03-20 08:00 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\65.0.3325.181\libegl.dll ==================== Alternate Data Streams (gefilterd) ========= (Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.) ==================== Veilige Modus (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Bestandskoppeling (gefilterd) =============== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd.) ==================== Internet Explorer vertrouwde/beperkte toegang =============== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd.) ==================== Hosts inhoud: =============================== (Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.) 2015-10-30 09:24 - 2015-10-30 09:21 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere gebieden ============================ (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-21-1333784657-3298144514-1791887718-1001\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "HP Software Update" ==================== Firewall regels (gefilterd) =============== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [{D22FA6BD-C02A-4A01-BC39-05945493DF07}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{F399AEA8-E68E-41A8-B9F8-978EB9A89F73}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{BB20FC46-4224-4020-9A81-C6CC5296286F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{97B55981-CE65-427E-89E8-CD920156A6E1}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{857A1F4B-6C54-4B95-87A7-87973BDBA02E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{1E2B61A6-84CD-4280-812E-FA7F03901828}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{C808C493-0A0D-40CE-A256-9F2B697DBF5E}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPNetworkCommunicator.exe FirewallRules: [{587AF715-646B-402B-B388-CF4A3CE23F32}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\DeviceSetup.exe FirewallRules: [{BA9D380C-4513-4E51-AB95-C071BDEE81A7}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\bin\SendAFax.exe FirewallRules: [{BDDB07BE-EFB1-43BE-8245-23F6AF909F12}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\bin\DigitalWizards.exe FirewallRules: [{F349AACD-04AB-4D6F-8E99-16EBA977111A}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\bin\FaxApplications.exe FirewallRules: [{94D172DD-253A-40D4-AE94-0D53C0C11F60}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{8B1A394C-15DF-4B62-80EA-771F39C8AA1B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{8FB0380F-6DE2-402F-9448-40F277D6A69B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{7FDDF792-0538-4FD7-AF29-2B95F25DC59D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{05CFCBD6-6781-409B-A232-7E059DED8992}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{988DF0DD-41AC-4315-83B1-010D83D050CE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{7D47DDE8-C40E-44C9-B795-B82A1BB817D4}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Herstelpunten ========================= 28-02-2018 21:38:04 Windows Update 13-03-2018 21:04:44 Windows Update 01-04-2018 17:55:29 Installed HiJackThis ==================== Defecte Apparaatbeheer Apparaten ============= ==================== Eventlog fouten: ========================= Applicatiefouten: ================== Error: (04/01/2018 08:06:51 PM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150) TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12 Source File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume [3] Error: (04/01/2018 06:47:02 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: taskmgr.exe, versie: 10.0.16299.248, tijdstempel: 0xc182202c Naam van module met fout: taskmgr.exe, versie: 10.0.16299.248, tijdstempel: 0xc182202c Uitzonderingscode: 0xc0000409 Foutmarge: 0x00000000000147d9 Id van proces met fout: 0x2570 Starttijd van toepassing met fout: 0x01d3c9d2b0bedd56 Pad naar toepassing met fout: C:\WINDOWS\system32\taskmgr.exe Pad naar module met fout: C:\WINDOWS\system32\taskmgr.exe Rapport-id: f5f69b11-b93a-45f4-b714-2099204ba85e Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (04/01/2018 06:40:05 PM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150) TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12 Source File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume [3] Error: (04/01/2018 03:30:00 PM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150) TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12 Source File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume [3] Error: (04/01/2018 02:02:12 PM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150) TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12 Source File: ..\..\..\..\Sources\Policies\PolicyLib\PolicyBase.cpp @ line 673 Executing Function: PolicyBase::takeControlOfOsc Message: Failed to acquire OSC: Failure during execution of _OSC: DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12 Source File: ..\..\..\Sources\Manager\EsifServices.cpp @ line 473 Executing Function: EsifServices::primitiveExecuteSet Message: Error returned from ESIF services interface function call Participant: NoParticipant Domain: NoDomain ESIF Primitive: SET_OPERATING_SYSTEM_CAPABILITIES [93] ESIF Instance: 255 ESIF Return Code: ESIF_E_UNSUPPORTED_ACTION_TYPE [1202] Policy: Critical Policy [0] Error: (04/01/2018 12:18:34 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Het programma chrome.exe, versie 65.0.3325.181 reageert niet meer op Windows en is afgesloten. Als u wilt zien of er meer informatie over het probleem beschikbaar is, raadpleegt u de probleemgeschiedenis in het onderdeel Beveiliging en onderhoud van het Configuratiescherm. Proces-id: c54 Starttijd: 01d3c9a068f9574f Eindtijd: 57 Toepassingspad: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Rapport-id: 48c903f7-22a5-4a58-88ab-80eacbde3952 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (04/01/2018 11:02:41 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: De openprocedure voor de BITS-service in DLL-bestand C:\Windows\System32\bitsperf.dll is mislukt. Prestatiemetergegevens voor deze service zijn niet beschikbaar. De eerste vier bytes (DWORD) in de sectie Gegevens bevatten de foutcode. Error: (03/30/2018 10:11:44 PM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150) TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12 Source File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume [3] Systeemfouten: ============= Error: (04/01/2018 08:14:57 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: De Downloaded Maps Manager-service is bij het starten vastgelopen. Error: (04/01/2018 08:12:11 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-NQA5DGC) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker DESKTOP-NQA5DGC\Karien SID (S-1-5-21-1333784657-3298144514-1791887718-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/01/2018 08:10:13 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: De Delivery Optimization-service is bij het starten vastgelopen. Error: (04/01/2018 08:07:28 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/01/2018 07:00:17 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/01/2018 07:00:17 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/01/2018 07:00:17 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/01/2018 07:00:17 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. CodeIntegrity: =================================== Date: 2018-04-01 20:21:55.352 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-01 20:21:55.351 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-01 20:19:25.989 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-01 20:19:25.987 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-01 20:15:53.486 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-01 20:15:53.485 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-01 20:13:54.542 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-01 20:13:54.541 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. ==================== Geheugen info =========================== Processor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz Percentage geheugen in gebruik: 58% Totaal fysiek RAM-geheugen: 8114.26 MB Beschikbaar fysiek RAM-geheugen: 3365.34 MB Totaal Virtueel geheugen: 32690.26 MB Beschikbaar Virtual geheugen: 28189.54 MB ==================== Schijven ================================ Drive c: (Windows) (Fixed) (Total:1836.43 GB) (Free:1332.38 GB) NTFS Drive d: (RECOVERY) (Fixed) (Total:23.83 GB) (Free:2.68 GB) NTFS ==>[systeem met boot componenten (verkregen van schijf)] \\?\Volume{63bfe8df-84b2-4ed6-af94-e107b46fa5f6}\ (WINRE) (Fixed) (Total:0.63 GB) (Free:0.34 GB) NTFS \\?\Volume{70afa0d4-d463-49a3-85f2-4493c85920cc}\ () (Fixed) (Total:0.25 GB) (Free:0.13 GB) FAT32 \\?\Volume{883d2376-e4f5-41a3-8adb-6962e704710c}\ () (Fixed) (Total:1.74 GB) (Free:1.18 GB) NTFS ==================== MBR & Partitietabel ================== ======================================================== Disk: 0 (Size: 1863 GB) (Disk ID: 4AA12686) Partition: GPT. ==================== Eind van Addition.txt ============================