Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 13-11-2019 Gestart door Carl (13-11-2019 12:30:28) Gestart vanaf C:\Users\Carl\Desktop Windows 8.1 (Update) (X64) (2015-10-26 03:37:44) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3613076481-972898892-3462059891-500 - Administrator - Disabled) => C:\Users\Administrator Carl (S-1-5-21-3613076481-972898892-3462059891-1001 - Administrator - Enabled) => C:\Users\Carl Gast (S-1-5-21-3613076481-972898892-3462059891-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3613076481-972898892-3462059891-1003 - Limited - Enabled) ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeïnstalleerd worden.) 8GadgetPack (HKLM-x32\...\{36E60904-D465-40F7-82A7-A9C7A84C29B7}) (Version: 24.0.0 - 8GadgetPack.net) Adobe Acrobat Reader DC - Nederlands (HKLM-x32\...\{AC76BA86-7AD7-1043-7B44-AC0F074E4100}) (Version: 19.021.20049 - Adobe Systems Incorporated) Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.293 - Adobe) Aldfaer (HKU\S-1-5-21-3613076481-972898892-3462059891-1001\...\Aldfaer) (Version: - ) Audacity 2.3.0 (HKLM-x32\...\Audacity_is1) (Version: 2.3.0 - Audacity Team) calibre (HKLM-x32\...\{C1ABA225-DEC3-4F06-B7E7-7EA785BDC120}) (Version: 3.23.0 - Kovid Goyal) CameraHelperMsi (HKLM-x32\...\{15634701-BACE-4449-8B25-1567DA8C9FD3}) (Version: 13.51.815.0 - Logitech) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.54 - Piriform) CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.6795 - CDBurnerXP) Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft) Compatibiliteitspakket voor het 2007 Microsoft Office system (HKLM-x32\...\{90120000-0020-0413-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Corel Applications (HKLM-x32\...\Corel Applications) (Version: - ) CyberLink MediaStory (HKLM-x32\...\InstallShield_{55762F9A-FCE3-45d5-817B-051218658423}) (Version: 1.0.1314 - CyberLink Corp.) CyberLink PhotoDirector 3 (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.1.4107 - CyberLink Corp.) CyberLink PowerDirector 10 (HKLM\...\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.2810 - CyberLink Corp.) Hidden CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.2810 - CyberLink Corp.) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Dazzle Video Capture DVC100 X64 Driver 1.07 (HKLM-x32\...\{631D71FD-237F-4D74-B090-88E66FBC5A10}) (Version: 1.07.0000 - Pinnacle) Download Manager (HKU\S-1-5-21-3613076481-972898892-3462059891-1001\...\e10685ec571b7282) (Version: 4.0.0.18 - Also Digital B.V.) Doxillion Document Converter (HKLM-x32\...\Doxillion) (Version: 3.02 - NCH Software) Driver & Application Installation (HKLM-x32\...\{BFECCF2A-F094-4066-8BFA-29CCBB7F6602}) (Version: 6.13.0621 - Lenovo) erLT (HKLM-x32\...\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}) (Version: 1.20.138.34 - Logitech, Inc.) Hidden Express Zip File Compression (HKLM-x32\...\ExpressZip) (Version: 5.23 - NCH Software) FamilySafetyGuide (HKLM-x32\...\{9A268503-5AB0-479E-9690-929BDEC55C00}) (Version: 1.00.0711 - lenovo) Freemake Audio Converter versie 1.1.8 (HKLM-x32\...\Freemake Audio Converter_is1) (Version: 1.1.8 - Ellora Assets Corporation) Genesys USB Mass Storage Device (HKLM-x32\...\{959B7F35-2819-40C5-A0CD-3C53B5FCC935}) (Version: 4.1.2.2 - Genesys Logic) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 78.0.3904.97 - Google LLC) Google Earth Pro (HKLM\...\{70A0F34E-564B-4F93-ADD6-3BAEC6E44075}) (Version: 7.3.2.5776 - Google) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.341 - Google LLC) Hidden HP LaserJet Pro MFP M125-M126 (HKLM-x32\...\{c65448bc-e467-4ec7-b4a5-246697f52957}) (Version: 8.0.14087.1054 - Hewlett-Packard) HP Update (HKLM-x32\...\{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}) (Version: 5.003.002.004 - Hewlett-Packard) hpbDSService (HKLM-x32\...\{62022DCB-BA92-4EC2-AE03-9B946E4DBF12}) (Version: 002.002.07399 - Hewlett-Packard) Hidden hpbM126DSService (HKLM-x32\...\{9A0C3AE6-A6C3-46C4-95A5-E3745CCE3D57}) (Version: 001.001.08254 - Hewlett-Packard) Hidden HPDXP (HKLM-x32\...\{0BFDA228-F4D0-42C0-90B2-8C47F147AEB1}) (Version: 3.0.26.59 - HP) Hidden HPLJDXPHelper (HKLM-x32\...\{5E4DD8C2-A906-4F1B-94B6-4F6A51D625B2}) (Version: 060.048.005 - HP) Hidden HPLJProMFPM125M126 (HKLM-x32\...\{B2894225-82C7-4006-B243-6272589993B2}) (Version: 1.00.0000 - Hewlett-Packard) HPLJUTCore (HKLM-x32\...\{30DD7187-F392-4D83-8AED-D9A2DC64EF15}) (Version: 008.000.0001 - HP) Hidden HPLJUTM125_126 (HKLM-x32\...\{9E7CB788-5C1F-4A18-95AA-8F4B1618A80C}) (Version: 008.000.0001 - HP) Hidden hppLaserJetService (HKLM-x32\...\{178F0383-A2F1-427C-9881-6EACB8728C76}) (Version: 009.033.00905 - Hewlett-Packard) Hidden hppM125LaserJetService (HKLM-x32\...\{18D5B189-DBDD-4E57-A84B-58C7700E9BB0}) (Version: 001.032.00682 - Hewlett-Packard) Hidden hpStatusAlerts (HKLM-x32\...\{6470E292-3B55-41DC-B5EB-91C34C5ACB5D}) (Version: 080.040.00171 - Hewlett Packard) Hidden hpStatusAlertsM125-M126 (HKLM-x32\...\{581A9CCB-1AD7-4BB4-A698-590305F773FB}) (Version: 080.046.00113 - Hewlett-Packard) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.22.1760 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3412 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation) iSkysoft Helper Compact 2.5.2 (HKLM-x32\...\{9BF12010-8799-41A5-A671-E9CFDE9E79F3}_is1) (Version: 2.5.2 - iSkysoft) iSkysoft Video Converter Ultimate(Build 10.5.0.202) (HKLM-x32\...\iSkysoft Video Converter Ultimate_is1) (Version: 10.5.0.202 - iSkysoft Software) Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Lenovo Assistant (HKLM-x32\...\{B2DE4F30-B8C7-49C0-85B9-2F37A5290F00}) (Version: 2.0.0.29 - Lenovo) Lenovo Blacksilk USB Keyboard Driver (HKLM-x32\...\{B266E062-D6C5-485B-B426-51B152B041A6}) (Version: V1.6.13.0724 - Lenovo) Lenovo Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.7408 - CyberLink Corp.) Hidden Lenovo Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.7408 - CyberLink Corp.) Lenovo PowerDVD10 (HKLM-x32\...\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.5108.52 - CyberLink Corp.) Hidden Lenovo PowerDVD10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.5108.52 - CyberLink Corp.) Lenovo Rescue System (HKLM\...\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 4.0.0.1901 - CyberLink Corp.) Hidden Lenovo Rescue System (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 4.0.0.1901 - CyberLink Corp.) Lenovo Solution Center (HKLM\...\{5E35CA26-A9A2-47B8-AB52-8D0C9A3CA685}) (Version: 03.12.003 - Lenovo) LJDXPHelperUI (HKLM-x32\...\{EAECD0D7-F27D-4F13-8312-A9C0B5C5F1B7}) (Version: 060.048.005 - HP) Hidden Logitech-webcamsoftware (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.80 - Logitech Inc.) LVT (HKLM-x32\...\{9E3469A6-443A-452C-BF44-8D7CE3A9A7E2}) (Version: 5.00.0914 - Lenovo) Malwarebytes versie 3.8.3.2965 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.8.3.2965 - Malwarebytes) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Professional Editie 2003 (HKLM-x32\...\{90110413-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3613076481-972898892-3462059891-1001\...\OneDriveSetup.exe) (Version: 17.0.4035.0328 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation) Movie Maker (HKLM-x32\...\{DC5E5027-65E8-41CB-815C-9AAB48BFB8E2}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 68.1.1 - Mozilla) Mozilla Thunderbird 68.1.1 (x86 nl) (HKLM-x32\...\Mozilla Thunderbird 68.1.1 (x86 nl)) (Version: 68.1.1 - Mozilla) Nitro Pro 9 (HKLM\...\{70B831B7-A8EE-4C5F-8F34-F383D24B3A04}) (Version: 9.0.5.9 - Nitro) Pinnacle Studio 18 - Install Manager (HKLM\...\{39B53CC2-EE72-44E6-800D-C61A6465BF1A}) (Version: 18.0.234 - Corel Corporation) Pinnacle Studio 18 (HKLM\...\{11FB47FB-B341-4FD8-A505-E4C0CC0536C1}) (Version: 18.0.0.234 - Corel Corporation) Pinnale Systems 32bit Software Keys (HKLM-x32\...\{C7FBAF9B-1E3C-4E1A-8C22-4A4FAEB641CC}_is1) (Version: - VPP TEAM) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.18.621.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7005 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver (HKLM-x32\...\{9DAABC60-A5EF-41FF-B2B9-17329590CD5}) (Version: 1.00.0227 - REALTEK Semiconductor Corp.) Skype versie 8.52 (HKLM-x32\...\Skype_is1) (Version: 8.52 - Skype Technologies S.A.) Spotify (HKU\S-1-5-21-3613076481-972898892-3462059891-1001\...\Spotify) (Version: 1.0.96.181.gf6bc1b6b - Spotify AB) Switch Sound File Converter (HKLM-x32\...\Switch) (Version: 5.31 - NCH Software) Telegram Desktop version 1.7.14 (HKU\S-1-5-21-3613076481-972898892-3462059891-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 1.7.14 - Telegram Messenger LLP) Test Drive 5 (HKLM-x32\...\Test Drive 5) (Version: - Accolade) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) WhatsApp (HKU\S-1-5-21-3613076481-972898892-3462059891-1001\...\WhatsApp) (Version: 0.3.5374 - WhatsApp) Windows 7 Games for Windows 10 and 8 (HKLM\...\Win7Games) (Version: 2.0 - hxxp://winaero.com) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) WinImage (HKU\S-1-5-21-3613076481-972898892-3462059891-1001\...\WinImage) (Version: - ) WinRAR 5.10 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.10.0 - win.rar GmbH) Wondershare Helper Compact 2.5.3 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.3 - Wondershare) YTD Video Downloader 5.9.10 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 5.9.10 - GreenTree Applications SRL) <==== AANDACHT Packages: ========= AccuWeather for Windows 8 -> C:\Program Files\WindowsApps\AccuWeather.AccuWeatherforWindows8_4.1.0.31_x64__8zz2pj9h1h1d8 [2019-11-10] (AccuWeather) Companion -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_2.2.26.0_x86__k1h2ywk1493x8 [2019-11-10] (LENOVO INC.) Frameworkuapbase -> C:\Program Files\WindowsApps\48682KiddoTest.Frameworkuapbase_1.0.0.2_neutral__81ffpr532s7pc [2019-11-10] (KiddoTest) Games -> C:\Program Files\WindowsApps\Microsoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) [MS Ad] HP All-in-One Printer Remote -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_55.1.43.0_x86__v10z8vjag6ke6 [2019-11-13] (Hewlett-Packard Company) Kinect for Windows Framework -> C:\Program Files\WindowsApps\Microsoft.WindowsPreview.Kinect.8.0_2.0.1410.19000_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) Kinect for Windows Framework -> C:\Program Files\WindowsApps\Microsoft.WindowsPreview.Kinect.8.0_2.0.1410.19000_x86__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) Kinect for Windows Framework -> C:\Program Files\WindowsApps\Microsoft.WindowsPreview.Kinect.8.1_2.0.1410.19000_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) Kinect for Windows Framework -> C:\Program Files\WindowsApps\Microsoft.WindowsPreview.Kinect.8.1_2.0.1410.19000_x86__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) Lenovo Support -> C:\Program Files\WindowsApps\E046963F.LenovoSupport_2.0.5.0_x86__k1h2ywk1493x8 [2019-11-10] (Lenovo, INC.) Live TV -> C:\Program Files\WindowsApps\FilmOnLiveTVFree.FilmOnLiveTVFree_1.3.6.115_x64__zx03kxexxb716 [2019-11-10] (FilmOn TV Inc.) McAfee® Central for Lenovo -> C:\Program Files\WindowsApps\McAfeeInc.06.McAfeeSecurityAdvisorforLenovo_5.0.173.1_x64__bq6yxensn79aw [2019-11-10] (McAfee_Inc) Microsoft PlayReady -> C:\Program Files\WindowsApps\Microsoft.Internal.Media.PlayReadyClient_2.3.1678.1_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) Microsoft PlayReady -> C:\Program Files\WindowsApps\Microsoft.Internal.Media.PlayReadyClient_2.3.1678.1_x86__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) Microsoft Visual C++ Runtime Package -> C:\Program Files\WindowsApps\Microsoft.VCLibs.120.00.Preview.Internal_12.0.20222.2_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Platform Extensions Internal) Microsoft Visual C++ Runtime Package -> C:\Program Files\WindowsApps\Microsoft.VCLibs.120.00.Preview.Internal_12.0.20222.2_x86__8wekyb3d8bbwe [2019-11-10] (Microsoft Platform Extensions Internal) Microsoft Windows Library for JavaScript -> C:\Program Files\WindowsApps\Microsoft.WinJS.2.0.Preview.Internal_1.0.9385.3_neutral__8wekyb3d8bbwe [2019-11-10] (Microsoft Platform Extensions) Microsoft Windows-bibliotheek voor JavaScript -> C:\Program Files\WindowsApps\Microsoft.WinJS.2.0.Preview_1.0.9431.0_neutral__8wekyb3d8bbwe [2019-11-10] (Uitbreidingen voor Microsoft-platform) Microsoft Windows-bibliotheek voor JavaScript -> C:\Program Files\WindowsApps\Microsoft.WinJS.Preview.1_1.0.9345.0_neutral__8wekyb3d8bbwe [2019-11-10] (Microsoft Platform Extensions) MSN eten en drinken -> C:\Program Files\WindowsApps\Microsoft.BingFoodAndDrink_3.0.4.336_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) [MS Ad] MSN geldzaken -> C:\Program Files\WindowsApps\Microsoft.BingFinance_3.0.4.344_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) [MS Ad] MSN gezondheid en fitness -> C:\Program Files\WindowsApps\Microsoft.BingHealthAndFitness_3.0.4.336_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) [MS Ad] MSN nieuws -> C:\Program Files\WindowsApps\Microsoft.BingNews_3.0.4.344_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) [MS Ad] MSN reizen -> C:\Program Files\WindowsApps\Microsoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) [MS Ad] MSN sport -> C:\Program Files\WindowsApps\Microsoft.BingSports_3.0.4.345_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) [MS Ad] MSN weer -> C:\Program Files\WindowsApps\Microsoft.BingWeather_3.0.4.350_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) [MS Ad] Muziek -> C:\Program Files\WindowsApps\Microsoft.ZuneMusic_2.6.672.0_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) [MS Ad] mxtest2 -> C:\Program Files\WindowsApps\24712m1dfmmengesha.mxtest2_2.0.0.0_neutral__x35ns48czryn0 [2019-11-10] (m1df_mmengesha) PowerDVD for Lenovo Idea -> C:\Program Files\WindowsApps\CyberLinkCorp.id.PowerDVDforLenovoIdea_1.1.2618.24808_x86__hgg5mn3xps74a [2019-11-10] (CYBERLINK COM CORPORATION) Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_3.1.0.1016_x86__kzf8qxf38zg5c [2019-11-10] (Skype) [MS Ad] Test_Framework_BP_052015 -> C:\Program Files\WindowsApps\24712m1dfmmengesha.TestFrameworkBP052015_1.0.0.9_neutral__x35ns48czryn0 [2019-11-10] (m1df_mmengesha) Test_Framework_win81appxneutral_061115 -> C:\Program Files\WindowsApps\24712m1dfmmengesha.TestFrameworkwin81appxneutral06_4.0.0.7_neutral__x35ns48czryn0 [2019-11-10] (M1DF_Mmengesha) Test_FrameworkBackpublish_050515 -> C:\Program Files\WindowsApps\24712m1dfmmengesha.TestFrameworkBackpublish050515_1.0.0.0_neutral__x35ns48czryn0 [2019-11-10] (m1df_mmengesha) Test_FrameworkProd_062215_01 -> C:\Program Files\WindowsApps\50856m1dfLL.TestFrameworkProd06221501_1.0.0.10_neutral__nwcxtg9ehxpvt [2019-11-10] (m1df_lucyll) TESTFRAMEWORKABO2 -> C:\Program Files\WindowsApps\40538vasetest101.TESTFRAMEWORKABO2_12.0.21005.1_x64__ssm1v0s3df7zc [2019-11-10] (vasetest101) txtr ebooks Lenovo Edition -> C:\Program Files\WindowsApps\txtr.txtrReaderLenovoEdition_1.1.13.12_x86__g057jjhb9dtk6 [2019-11-10] (txtr) Video -> C:\Program Files\WindowsApps\Microsoft.ZuneVideo_2.6.446.0_x64__8wekyb3d8bbwe [2019-11-10] (Microsoft Corporation) [MS Ad] YouSendIt for Lenovo -> C:\Program Files\WindowsApps\YouSendIt.YouSendItForLenovo_1.0.5.1412_neutral__069rkrpjefrbc [2019-11-10] (YouSendIt) Zinio -> C:\Program Files\WindowsApps\ZinioLLC.Zinio_2.1.0.317_x64__0q6dqzpp40p2e [2019-11-10] (Zinio LLC) ==================== Aangepaste CLSID (gefilterd): ============== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) CustomCLSID: HKU\S-1-5-21-3613076481-972898892-3462059891-1001_Classes\CLSID\{0B7AD8D3-094A-44DE-A348-83C6C3FA347C}\InprocServer32 -> C:\Users\Carl\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Clipboarder.gadget\Release\Clipboarder64.dll (Helmut Buhler) [Bestand niet getekend] CustomCLSID: HKU\S-1-5-21-3613076481-972898892-3462059891-1001_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\Carl\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler) [Bestand niet getekend] CustomCLSID: HKU\S-1-5-21-3613076481-972898892-3462059891-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Carl\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328_1\amd64\FileSyncApi64.dll (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (Ivaylo Beltchev -> IvoSoft) [Bestand niet getekend] ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (Ivaylo Beltchev -> IvoSoft) [Bestand niet getekend] ContextMenuHandlers1: [ExpressZip] -> {8EEA165E-0B8B-4BA7-9796-50214C767171} => C:\Program Files (x86)\NCH Software\ExpressZip\ezcm64.dll [2018-12-28] () [Bestand niet getekend] ContextMenuHandlers1: [NP8ShellExtension] -> {9C4B85B8-956C-49BF-9BA5-101384E562B2} => C:\Program Files\Common Files\Nitro\Pro\9.0\NPShellExtension64.dll [2013-12-13] (Nitro PDF Software -> Nitro PDF) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2014-06-12] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2014-06-12] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\windows\system32\igfxpph.dll [2014-01-22] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers6: [ExpressZip] -> {8EEA165E-0B8B-4BA7-9796-50214C767171} => C:\Program Files (x86)\NCH Software\ExpressZip\ezcm64.dll [2018-12-28] () [Bestand niet getekend] ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\system32\StartMenuHelper64.dll [2014-04-20] (Ivaylo Beltchev -> IvoSoft) [Bestand niet getekend] ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2014-06-12] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2014-06-12] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (gefilterd) ==================== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Drivers32: [vidc.i420] => C:\WINDOWS\system32\lvcod64.dll [175392 2012-10-26] (Logitech, Inc. -> Logitech Inc.) HKLM\...\Drivers32: [vidc.mjpg] => pvmjpgx40.dll HKLM\...\Drivers32: [vidc.i420] => C:\Windows\SysWOW64\lvcodec2.dll [305000 2012-10-26] (Logitech, Inc. -> Logitech Inc.) ==================== Snelkoppelingen & WMI ======================== (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) ShortcutWithArgument: C:\Users\Carl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\a3a1d6b8109861c5\Google Hangouts.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=nckgahadagoaajjgafhacjanaoiihapd ==================== Geladen Modules (gefilterd) ============= 2019-04-17 11:59 - 2016-07-21 09:54 - 000137728 _____ () [Bestand niet getekend] C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\CBSCreateVC.dll 2019-04-17 11:59 - 2016-10-08 15:59 - 001506304 _____ () [Bestand niet getekend] C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\DAQExp.dll 2019-09-26 18:27 - 2016-07-21 09:54 - 000137728 _____ () [Bestand niet getekend] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll 2019-09-26 18:27 - 2017-03-23 08:49 - 001506304 _____ () [Bestand niet getekend] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll 2018-12-28 16:10 - 2018-12-28 16:10 - 000105984 _____ () [Bestand niet getekend] C:\Program Files (x86)\NCH Software\ExpressZip\ezcm64.dll 2014-06-10 16:24 - 2011-05-17 21:27 - 000028672 _____ () [Bestand niet getekend] C:\Windows\jmesoft\hidhook.dll 2017-10-09 15:02 - 2017-10-07 14:28 - 000608256 _____ (Helmut Buhler) [Bestand niet getekend] C:\Program Files\Windows Sidebar\dwmapi.dll 2009-09-16 17:44 - 2009-09-16 17:44 - 000153088 _____ (Hewlett Packard) [Bestand niet getekend] C:\WINDOWS\System32\hptcpmib.dll 2009-09-16 17:45 - 2009-09-16 17:45 - 000331264 _____ (Hewlett Packard) [Bestand niet getekend] C:\WINDOWS\System32\HpTcpMon.dll 2009-09-16 10:44 - 2009-09-16 10:44 - 000132096 _____ (Hewlett Packard) [Bestand niet getekend] C:\WINDOWS\System32\hpzjrd01.dll 2012-12-04 10:52 - 2012-12-04 10:52 - 000041472 _____ (Hewlett-Packard Company) [Bestand niet getekend] C:\Program Files (x86)\HP\HPLaserJetService\HPHTTPProxy.dll 2012-12-04 10:51 - 2012-12-04 10:51 - 000073728 _____ (Hewlett-Packard Company) [Bestand niet getekend] C:\Program Files (x86)\HP\HPLaserJetService\HPTools.dll 2012-12-04 10:52 - 2012-12-04 10:52 - 001219072 _____ (Hewlett-Packard Company) [Bestand niet getekend] C:\Program Files (x86)\HP\HPLaserJetService\LEDMXMLObjects.dll 2012-12-04 10:51 - 2012-12-04 10:51 - 000034816 _____ (HP) [Bestand niet getekend] C:\Program Files (x86)\HP\HPLaserJetService\HPServiceCommunicator.dll 2013-08-07 22:24 - 2013-08-07 22:24 - 000514048 _____ (Intel Corporation) [Bestand niet getekend] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\ISDI2.dll 2013-08-07 22:24 - 2013-08-07 22:24 - 000286720 _____ (Intel Corporation) [Bestand niet getekend] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\PsiData.dll 2014-04-20 10:17 - 2014-04-20 10:17 - 003374272 _____ (Ivaylo Beltchev -> IvoSoft) [Bestand niet getekend] C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll 2014-04-20 10:17 - 2014-04-20 10:17 - 000284864 _____ (Ivaylo Beltchev -> IvoSoft) [Bestand niet getekend] C:\WINDOWS\system32\StartMenuHelper64.dll 2014-06-10 16:37 - 2014-06-10 16:36 - 000348160 _____ (Microsoft Corporation) [Bestand niet getekend] C:\Program Files (x86)\Lenovo\PowerDVD10\MSVCR71.dll 2009-09-16 17:45 - 2009-09-16 17:45 - 000317440 _____ (Microsoft Corporation) [Bestand niet getekend] C:\WINDOWS\System32\HPTcpMUI.dll 2014-06-10 16:23 - 2012-02-15 03:37 - 000594432 _____ (Realtek Semiconductor Corp. ) [Bestand niet getekend] C:\WINDOWS\system32\Rtlihvs.dll 2019-04-17 11:59 - 2016-10-08 16:00 - 000708608 _____ (Wondershare) [Bestand niet getekend] C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\CBSProducstInfo.dll 2019-09-26 18:27 - 2017-03-23 08:52 - 000708608 _____ (Wondershare) [Bestand niet getekend] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSProducstInfo.dll ==================== Alternate Data Streams (gefilterd) ======== (Als een item is opgenomen in de fixlist, wordt alleen de ADS verwijderd.) AlternateDataStreams: C:\ProgramData\Temp:0888F409 [276] AlternateDataStreams: C:\ProgramData\Temp:3440EB47 [798] AlternateDataStreams: C:\ProgramData\Temp:66633281 [130] ==================== Veilige Modus (gefilterd) ================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. De waarde van "AlternateShell" wordt hersteld.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" ==================== Bestandskoppeling (gefilterd) ================= ==================== Internet Explorer vertrouwde/beperkte toegang ========== ==================== Hosts inhoud: ========================= (Indien nodig kan Hosts:-opdracht worden opgenomen in de fixlist om Hosts te resetten.) 2013-08-22 14:25 - 2019-04-16 08:45 - 000000822 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Andere gebieden =========================== (Momenteel is er geen automatische fix voor dit onderdeel.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files (x86)\Calibre2\ HKU\S-1-5-21-3613076481-972898892-3462059891-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Carl\Documents\FOTO'S\WALLPAPER_3\5.jpg DNS Servers: 84.116.46.20 - 84.116.46.21 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) HKU\S-1-5-21-3613076481-972898892-3462059891-1001\...\StartupApproved\Run: => "MSGTAG" HKU\S-1-5-21-3613076481-972898892-3462059891-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-3613076481-972898892-3462059891-1001\...\StartupApproved\Run: => "Chromium" HKU\S-1-5-21-3613076481-972898892-3462059891-1001\...\StartupApproved\Run: => "Spotify" ==================== Firewall regels (gefilterd) ================ (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [{D9A2C3B8-F24C-45FB-857E-37AFE10E213A}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{1C0A33E5-5775-49E3-8B37-A00D0E0479F5}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD10.EXE (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{1F289128-23E3-4E85-9F9C-496B14F1205A}] => (Allow) C:\Program Files\CyberLink\PowerDirector10\PDR10.EXE (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{CEBF8B92-0E6E-41DE-B432-CA01A6306BDC}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\RM.exe (Corel Corporation -> Pinnacle) FirewallRules: [{251D1A08-507A-4942-BFD7-4D9411745E69}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\RM.exe (Corel Corporation -> Pinnacle) FirewallRules: [{6D927353-F6BB-4627-8BAF-254B95D5D4EC}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\NGStudio.exe (Corel Corporation -> Pinnacle) FirewallRules: [{1C9B7D93-258A-4675-BF43-0EDA64F9D71F}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\NGStudio.exe (Corel Corporation -> Pinnacle) FirewallRules: [{3D6EDFFB-BE49-4456-A30A-12A17617B0F0}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\UMI.exe (Corel Corporation -> Pinnacle) FirewallRules: [{7F0A9769-B793-4A9C-BB42-8193CC3EB173}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\UMI.exe (Corel Corporation -> Pinnacle) FirewallRules: [{5708EF6B-0D7B-4839-9F27-CBF7B20B9D6B}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{D6A284F8-F868-4159-91E1-7C808A772B25}] => (Allow) LPort=2869 FirewallRules: [{2A8EAEF4-FCC3-45EB-8597-BE06FCCA6C7F}] => (Allow) LPort=1900 FirewallRules: [{7F0E129E-3265-4092-A9C9-CBB6553AA9EE}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\RM.exe (Corel Corporation -> Pinnacle) FirewallRules: [{A5D50F16-6C13-4E6F-BCE4-07C60578DC6E}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\RM.exe (Corel Corporation -> Pinnacle) FirewallRules: [{752CCB81-908D-41E0-891C-41E1E3CDD1B2}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\NGStudio.exe (Corel Corporation -> Pinnacle) FirewallRules: [{D11F04F0-1A1E-45E7-A006-60805B4D7D3B}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\NGStudio.exe (Corel Corporation -> Pinnacle) FirewallRules: [{3444055F-716D-4176-844F-3D86DE29716D}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\UMI.exe (Corel Corporation -> Pinnacle) FirewallRules: [{45CC1004-EFD7-476A-8877-44ADC5FCA5F3}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\UMI.exe (Corel Corporation -> Pinnacle) FirewallRules: [TCP Query User{45AF8B34-6444-4CBC-B6DA-F852C6421DFA}C:\program files (x86)\msgtag\msgtag.exe] => (Allow) C:\program files (x86)\msgtag\msgtag.exe Geen bestand FirewallRules: [UDP Query User{9F94470F-6236-49CB-B108-AC7A450D9E03}C:\program files (x86)\msgtag\msgtag.exe] => (Allow) C:\program files (x86)\msgtag\msgtag.exe Geen bestand FirewallRules: [{6459221E-A771-4B3A-9CA5-38FD5C9F83B8}] => (Allow) C:\Program Files (x86)\HP\csiInstaller\c65448bc-e467-4ec7-b4a5-246697f52957\Installer\hpbcsiInstaller.exe (Hewlett-Packard Company -> Hewlett-Packard Company) FirewallRules: [{E581197E-CD41-4C5F-B3D1-A1098E40BF8D}] => (Allow) C:\Program Files (x86)\HP\csiInstaller\c65448bc-e467-4ec7-b4a5-246697f52957\Installer\hpbcsiInstaller.exe (Hewlett-Packard Company -> Hewlett-Packard Company) FirewallRules: [{5A55E760-A3E9-4996-83C1-E14CA68EA015}] => (Allow) C:\Program Files (x86)\HP\HP LaserJet Pro MFP M125-M126\Bin\HPNetworkCommunicatorCom.exe (VistaName -> Hewlett-Packard Co.) [Bestand niet getekend] FirewallRules: [{EA04D3E5-BF0A-41EC-932A-4A8C9368496E}] => (Allow) C:\Program Files (x86)\HP\HP LaserJet Pro MFP M125-M126\bin\EWSProxy.exe (VistaName -> Hewlett-Packard Co.) [Bestand niet getekend] FirewallRules: [TCP Query User{B379D132-E115-41A8-8EDE-97349CA5D846}C:\users\carl\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\carl\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [UDP Query User{07AB7184-FBD3-4F4C-A887-F29E6076D6C1}C:\users\carl\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\carl\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{1F4EAC49-AE29-4920-A99C-CBD0196B332D}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd) FirewallRules: [{0EB7F815-6932-468F-AAB6-00B6F48A6768}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd) FirewallRules: [{2BB6D745-1A2C-40C0-A65C-84C026A76CF4}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Converter Studio\Video Converter Studio.exe Geen bestand FirewallRules: [{CBE2F5A0-C955-4CFF-8942-6C4E24AE7E34}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Converter Studio\Video Converter Studio.exe Geen bestand FirewallRules: [{57604AB6-3578-4837-BC79-C277ED7A353B}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{9CA771BB-B0EE-41DE-81FB-096B5570A474}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{BEE8E7AD-84DF-40E5-868F-FBB6D51A1472}] => (Allow) C:\Users\Carl\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{D21BF173-8BC5-440A-90EB-DEB473AC3B7B}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{4E9B39F1-1798-4147-A5A5-E70BFC4184BB}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Labeljoy 5\LotoUpdate.exe] => Enabled:LotoUpdate ==================== Herstelpunten ========================= 27-10-2019 09:21:29 Gepland controlepunt 03-11-2019 09:33:18 Gepland controlepunt 05-11-2019 09:39:04 Herstelbewerking 13-11-2019 09:40:26 Windows Update ==================== Defecte Apparaatbeheer Apparaten ============ ==================== Eventlog fouten: ======================== Applicatiefouten: ================== Error: (11/13/2019 12:20:58 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: Lenovo-PC) Description: windows_ie_ac_0013 Error: (11/13/2019 12:20:41 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: Lenovo-PC) Description: adobe.acrobatreaderdc.protectedmode3 Error: (11/13/2019 12:20:17 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC) Description: Het activeren van de app microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail is mislukt door de fout -2147023170. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Error: (11/13/2019 12:20:09 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: Lenovo-PC) Description: Het pakket microsoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbwe+Microsoft.WindowsLive.Mail is beëindigd omdat het onderbreken te lang duurde. Error: (11/13/2019 11:46:20 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: mbamtray.exe, versie: 3.1.0.1840, tijdstempel: 0x5d5c13ae Naam van module met fout: Qt5Core.dll, versie: 5.11.1.0, tijdstempel: 0x5cba0161 Uitzonderingscode: 0xc0000005 Foutmarge: 0x0018dc19 Id van proces met fout: 0x43c Starttijd van toepassing met fout: 0x01d599fb4cb40a7d Pad naar toepassing met fout: C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe Pad naar module met fout: C:\Program Files\Malwarebytes\Anti-Malware\Qt5Core.dll Rapport-id: d336b866-0602-11ea-8303-c03fd594a6e6 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (11/10/2019 10:38:39 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: FreemakeUtilsService.exe, versie: 1.0.0.0, tijdstempel: 0x5d845af8 Naam van module met fout: KERNELBASE.dll, versie: 6.3.9600.19425, tijdstempel: 0x5d26ae6e Uitzonderingscode: 0xe0434352 Foutmarge: 0x00034e28 Id van proces met fout: 0x6ec Starttijd van toepassing met fout: 0x01d597aa97b1195d Pad naar toepassing met fout: C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe Pad naar module met fout: C:\WINDOWS\SYSTEM32\KERNELBASE.dll Rapport-id: dfb90785-039d-11ea-8303-c03fd594a6e6 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (11/10/2019 10:38:24 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Toepassing: FreemakeUtilsService.exe Framework-versie: v4.0.30319 Beschrijving: het proces is beëindigd als gevolg van een onverwerkte uitzondering. Uitzonderingsinformatie: System.IO.FileNotFoundException bij FreemakeUtilsService.Program.Main(System.String[]) Error: (11/10/2019 10:20:47 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: FreemakeUtilsService.exe, versie: 1.0.0.0, tijdstempel: 0x5d845af8 Naam van module met fout: KERNELBASE.dll, versie: 6.3.9600.19425, tijdstempel: 0x5d26ae6e Uitzonderingscode: 0xe0434352 Foutmarge: 0x00034e28 Id van proces met fout: 0x6c8 Starttijd van toepassing met fout: 0x01d597a81866bd85 Pad naar toepassing met fout: C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe Pad naar module met fout: C:\WINDOWS\SYSTEM32\KERNELBASE.dll Rapport-id: 60c1f80f-039b-11ea-8303-c03fd594a6e6 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Systeemfouten: ============= Error: (11/13/2019 09:41:45 AM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: De server {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (11/13/2019 09:41:15 AM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: De server {1B1F472E-3221-4826-97DB-2C2324D389AE} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (11/12/2019 03:20:29 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: Een melding van een onherstelbare fout is ontvangen van het externe eindpunt. De door het TLS-protocol gedefinieerde meldingcode van de onherstelbare fout is 20. Error: (11/12/2019 01:13:17 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: Een melding van een onherstelbare fout is ontvangen van het externe eindpunt. De door het TLS-protocol gedefinieerde meldingcode van de onherstelbare fout is 20. Error: (11/12/2019 09:12:10 AM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: De server {1B1F472E-3221-4826-97DB-2C2324D389AE} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (11/12/2019 09:11:40 AM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: De server {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (11/11/2019 02:01:18 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: Een melding van een onherstelbare fout is ontvangen van het externe eindpunt. De door het TLS-protocol gedefinieerde meldingcode van de onherstelbare fout is 20. Error: (11/11/2019 12:37:59 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: De server {1B1F472E-3221-4826-97DB-2C2324D389AE} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Windows Defender: =================================== Date: 2019-11-11 12:32:02.543 Description: Scan van Windows Defender is gestopt voordat deze was voltooid. Scan-id: {BFF0E2D3-9D7B-439C-AA25-8638DADFB74C} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2019-11-11 12:19:20.365 Description: Scan van Windows Defender is gestopt voordat deze was voltooid. Scan-id: {DB91694C-BA5E-4AC1-9F76-D284F09BE91F} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2019-11-11 11:09:09.613 Description: Scan van Windows Defender is gestopt voordat deze was voltooid. Scan-id: {CEF0743D-6CF1-4081-AEB5-1834DFAB293C} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2019-11-11 09:30:07.547 Description: Scan van Windows Defender is gestopt voordat deze was voltooid. Scan-id: {60320249-851B-49A4-9430-0928951E91AD} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2019-11-10 09:59:43.784 Description: Scan van Windows Defender is gestopt voordat deze was voltooid. Scan-id: {805D422B-F9EB-4C09-9835-A3CEF578BF08} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2019-11-10 10:38:46.329 Description: Windows Defender heeft een fout aangetroffen bij het laden van handtekeningen en probeert terug te keren naar een juiste set handtekeningen. Geprobeerde handtekeningen: Huidig Foutcode: 0x80070002 Foutbeschrijving: Het systeem kan het opgegeven bestand niet vinden. Handtekeningversie: 0.0.0.0;0.0.0.0 Engineversie: 0.0.0.0 Date: 2019-11-10 10:20:57.386 Description: Windows Defender heeft een fout aangetroffen bij het laden van handtekeningen en probeert terug te keren naar een juiste set handtekeningen. Geprobeerde handtekeningen: Huidig Foutcode: 0x80070002 Foutbeschrijving: Het systeem kan het opgegeven bestand niet vinden. Handtekeningversie: 0.0.0.0;0.0.0.0 Engineversie: 0.0.0.0 Date: 2019-11-05 09:52:56.809 Description: Windows Defender heeft een fout aangetroffen bij het laden van handtekeningen en probeert terug te keren naar een juiste set handtekeningen. Geprobeerde handtekeningen: Huidig Foutcode: 0x80070002 Foutbeschrijving: Het systeem kan het opgegeven bestand niet vinden. Handtekeningversie: 0.0.0.0;0.0.0.0 Engineversie: 0.0.0.0 CodeIntegrity: =================================== Date: 2018-02-15 18:12:18.677 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-15 18:12:18.534 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-15 18:12:18.400 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-15 18:12:18.253 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-15 18:12:18.103 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-15 18:12:17.953 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-15 18:12:17.806 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-15 18:12:17.667 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. ==================== Geheugen info =========================== BIOS: LENOVO IEKT24AUS 04/16/2014 Moederbord: LENOVO SHARKBAY Processor: Intel(R) Core(TM) i7-4790 CPU @ 3.60GHz Percentage geheugen in gebruik: 46% Totaal fysiek RAM-geheugen: 8106.35 MB Beschikbaar fysiek RAM-geheugen: 4371.79 MB Totaal Virtueel geheugen: 9386.35 MB Beschikbaar Virtueel geheugen: 5553.35 MB ==================== Schijven ================================ Drive c: (Windows8_OS) (Fixed) (Total:905.25 GB) (Free:733.29 GB) NTFS ==>[systeem met boot componenten (verkregen van schijf)] Drive d: (DOCUMENTENDISK) (Fixed) (Total:931.51 GB) (Free:624.23 GB) NTFS Drive e: (Harry) (CDROM) (Total:0.58 GB) (Free:0 GB) UDF Drive k: (EXTERN FILM ) (Fixed) (Total:931.51 GB) (Free:871.84 GB) NTFS \\?\Volume{3f0bb152-7178-4480-905e-838cbe7fb840}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.65 GB) NTFS \\?\Volume{77aa2886-b961-40e2-be10-dcbddbb1df2f}\ (PBR_DRV) (Fixed) (Total:24.41 GB) (Free:12.14 GB) NTFS ==================== MBR & Partitietabel ==================== ========================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 37D68739) Partition: GPT. ========================================================== Disk: 1 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: 0002846E) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ========================================================== Disk: 2 (Size: 931.5 GB) (Disk ID: 1A554D42) Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Einde van Addition.txt =======================