Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 19-06-2019 Gestart door Johanna (22-06-2019 09:57:45) Run:1 Gestart vanaf C:\Users\Johanna\Desktop Geladen Profielen: Johanna & (Beschikbare Profielen: UpdatusUser & Johanna & DefaultAppPool) Boot Modus: Normal ============================================== fixlist inhoud: ***************** CreateRestorePoint: CloseProcesses: AppInit_DLLs: C:\WINDOWS\system32\nvinitx.dll => Geen bestand Task: {02B0DA6C-63CA-4299-ABD9-2649CEE16C6E} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Geen bestand <==== AANDACHT Task: {05A362A1-948C-4572-9A32-F7B07D770E1A} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Geen bestand <==== AANDACHT Task: {2A6164FA-226F-42BF-BFE0-7D68BC845F0C} - \Microsoft\Windows\UNP\RunCampaignManager -> Geen bestand <==== AANDACHT Task: {3FC411D9-2CDC-4CE9-8AA3-6C071E1ADC0A} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Geen bestand <==== AANDACHT Task: {4DD6B9B9-9E27-4640-8353-9ED0DBD1CFAE} - \Microsoft\Windows\Setup\gwx\rundetector -> Geen bestand <==== AANDACHT Task: {5849A48E-2341-4D0F-A4A9-B36EF2E3711B} - \Microsoft\Windows\Setup\EOONotify -> Geen bestand <==== AANDACHT Task: {99671530-9B85-4059-A318-286162F9F808} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Geen bestand <==== AANDACHT Task: {AF184C59-489A-4F5A-A756-98F02810632A} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Geen bestand <==== AANDACHT Task: {B58B9154-3007-4C57-8AB1-1EAA6017B431} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Geen bestand <==== AANDACHT Task: {C9B00088-6624-4958-8FF6-301ADDF21C1E} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Geen bestand <==== AANDACHT Task: {E5CE3DFA-ADFD-4576-B138-DE62C8F515A7} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Geen bestand <==== AANDACHT FF Plugin: @microsoft.com/VirtualEarth3D,version=4.0 -> C:\Program Files (x86)\Virtual Earth 3D\ [Geen bestand] U3 idsvc; geen ImagePath C:\WINDOWS\SysWOW64\sho4F75.tmp HKU\S-1-5-21-1668189645-3983755667-149744742-1001\...\ChromeHTML: -> C:\Users\Johanna\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) <==== AANDACHT ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Geen bestand ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Geen bestand ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Geen bestand ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Geen bestand ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Geen bestand ContextMenuHandlers1: [Roxio Burn] -> [CC]{E8CB9D53-A47A-42B5-9F5B-96B037C9DD4C} => -> Geen bestand ContextMenuHandlers1: [WinRAR32] -> [CC]{B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Geen bestand ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Geen bestand ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Geen bestand ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Geen bestand WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":: WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99] WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate] ShortcutWithArgument: C:\Users\Johanna\Downloads\App-opstartprogramma van Chrome.lnk -> C:\Users\Johanna\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC) -> --show-app-list ShortcutWithArgument: C:\Users\Johanna\AppData\Local\Google\Chrome\User Data\App-opstartprogramma van Chrome.lnk -> C:\Users\Johanna\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC) -> --show-app-list ShortcutWithArgument: C:\Users\Johanna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\App-opstartprogramma van Chrome.lnk -> C:\Users\Johanna\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC) -> --show-app-list AlternateDataStreams: C:\ProgramData\Temp:E7730732 [282] AlternateDataStreams: C:\Users\Johanna\Desktop\Darker Than Black - Gemini of the Meteor - 03.mkv:com.dropbox.attributes [168] EmptyTemp: ***************** Herstelpunt is succesvol gemaakt. Proces succesvol afgesloten. "C:\WINDOWS\system32\nvinitx.dll" => Waarde gegevens is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{02B0DA6C-63CA-4299-ABD9-2649CEE16C6E}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{02B0DA6C-63CA-4299-ABD9-2649CEE16C6E}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{05A362A1-948C-4572-9A32-F7B07D770E1A}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{05A362A1-948C-4572-9A32-F7B07D770E1A}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OfficeSoftwareProtectionPlatform\SvcRestartTask" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2A6164FA-226F-42BF-BFE0-7D68BC845F0C}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2A6164FA-226F-42BF-BFE0-7D68BC845F0C}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => niet gevonden "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3FC411D9-2CDC-4CE9-8AA3-6C071E1ADC0A}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3FC411D9-2CDC-4CE9-8AA3-6C071E1ADC0A}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4DD6B9B9-9E27-4640-8353-9ED0DBD1CFAE}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4DD6B9B9-9E27-4640-8353-9ED0DBD1CFAE}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\rundetector" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5849A48E-2341-4D0F-A4A9-B36EF2E3711B}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5849A48E-2341-4D0F-A4A9-B36EF2E3711B}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\EOONotify" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{99671530-9B85-4059-A318-286162F9F808}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99671530-9B85-4059-A318-286162F9F808}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AF184C59-489A-4F5A-A756-98F02810632A}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AF184C59-489A-4F5A-A756-98F02810632A}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B58B9154-3007-4C57-8AB1-1EAA6017B431}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B58B9154-3007-4C57-8AB1-1EAA6017B431}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C9B00088-6624-4958-8FF6-301ADDF21C1E}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C9B00088-6624-4958-8FF6-301ADDF21C1E}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E5CE3DFA-ADFD-4576-B138-DE62C8F515A7}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E5CE3DFA-ADFD-4576-B138-DE62C8F515A7}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => is succesvol verwijderd HKLM\Software\MozillaPlugins\@microsoft.com/VirtualEarth3D,version=4.0 => is succesvol verwijderd HKLM\System\CurrentControlSet\Services\idsvc => is succesvol verwijderd idsvc => service is succesvol verwijderd C:\WINDOWS\SysWOW64\sho4F75.tmp => is succesvol verplaatst HKU\S-1-5-21-1668189645-3983755667-149744742-1001_Classes\ChromeHTML => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ MEGA (Pending) => is succesvol verwijderd HKLM\Software\Classes\CLSID\{056D528D-CE28-4194-9BA3-BA2E9197FF8C} => niet gevonden HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ MEGA (Synced) => is succesvol verwijderd HKLM\Software\Classes\CLSID\{05B38830-F4E9-4329-978B-1DD28605D202} => niet gevonden HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ MEGA (Syncing) => is succesvol verwijderd HKLM\Software\Classes\CLSID\{0596C850-7BDD-4C9D-AFDF-873BE6890637} => niet gevonden HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg => is succesvol verwijderd HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => niet gevonden HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ MEGA (Pending) => is succesvol verwijderd HKLM\Software\Wow6432Node\Classes\CLSID\{056D528D-CE28-4194-9BA3-BA2E9197FF8C} => niet gevonden HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ MEGA (Synced) => is succesvol verwijderd HKLM\Software\Wow6432Node\Classes\CLSID\{05B38830-F4E9-4329-978B-1DD28605D202} => niet gevonden HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ MEGA (Syncing) => is succesvol verwijderd HKLM\Software\Wow6432Node\Classes\CLSID\{0596C850-7BDD-4C9D-AFDF-873BE6890637} => niet gevonden HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MEGA (Context menu) => is succesvol verwijderd HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => niet gevonden HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Roxio Burn => niet gevonden HKLM\Software\Classes\CLSID\[CC]{E8CB9D53-A47A-42B5-9F5B-96B037C9DD4C} => niet gevonden HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 => is succesvol verwijderd HKLM\Software\Classes\CLSID\[CC]{B41DB860-8EE4-11D2-9906-E49FADC173CA} => niet gevonden HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers\MEGA (Context menu) => is succesvol verwijderd HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => niet gevonden HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\MEGA (Context menu) => is succesvol verwijderd HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => niet gevonden HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MEGA (Context menu) => is succesvol verwijderd HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => niet gevonden "CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"" => is succesvol verwijderd "BVTFilter" => is succesvol verwijderd "BVTConsumer" => is succesvol verwijderd C:\Users\Johanna\Downloads\App-opstartprogramma van Chrome.lnk => snelkoppeling argument is succesvol verwijderd C:\Users\Johanna\AppData\Local\Google\Chrome\User Data\App-opstartprogramma van Chrome.lnk => snelkoppeling argument is succesvol verwijderd C:\Users\Johanna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\App-opstartprogramma van Chrome.lnk => snelkoppeling argument is succesvol verwijderd C:\ProgramData\Temp => ":E7730732" ADS is succesvol verwijderd C:\Users\Johanna\Desktop\Darker Than Black - Gemini of the Meteor - 03.mkv => ":com.dropbox.attributes" ADS is succesvol verwijderd =========== EmptyTemp: ========== BITS transfer queue => 10510336 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 179107162 B Java, Flash, Steam htmlcache => 0 B Windows/system/drivers => 127078 B Edge => 14531 B Chrome => 418672293 B Firefox => 19285350 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 0 B LocalService => 0 B NetworkService => 10697302 B NetworkService => 0 B UpdatusUser => 0 B Johanna => 8838944 B DefaultAppPool => 0 B RecycleBin => 108479421 B EmptyTemp: => 720.7 MB tijdelijke gegevens verwijderd. ================================ Het systeem moest herstart worden. ==== Einde van Fixlog 09:59:53 ====