Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 05-02-2022 Gestart door Francine (12-02-2022 20:41:24) Run:1 Gestart vanaf C:\Users\Francine\OneDrive\Bureaublad Geladen Profielen: Francine & Henri Boot Modus: Normal ============================================== fixlist inhoud: ***************** CreateRestorePoint: CloseProcesses: (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restrictie <==== AANDACHT HKLM\SOFTWARE\Policies\Google: Restrictie <==== AANDACHT Edge Extension: (Geen Naam) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [niet gevonden] Edge Extension: (Geen Naam) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [niet gevonden] Edge Extension: (Geen Naam) -> EdgeExtension_PasswordBossPasswordBoss_q9bv770jy21py => C:\Program Files\WindowsApps\PasswordBoss.PasswordBoss_5.0.4407.0_x86__q9bv770jy21py [niet gevonden] Edge Extension: (Geen Naam) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [niet gevonden] Edge Extension: (Geen Naam) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [niet gevonden] CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=E210BE91082G0&p={searchTerms} CHR DefaultSearchKeyword: Default -> mcafee CHR Extension: (McAfee® WebAdvisor) - C:\Users\Francine\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2022-01-29] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKU\S-1-5-21-9162235-4046158101-2280952487-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [971912 2022-02-09] (McAfee, LLC -> McAfee, LLC) S3 WinRing0_1_2_0; \??\C:\Users\Francine\AppData\Local\Temp\tmp7EAD.tmp [X] <==== AANDACHT 2022-01-13 13:45 - 2022-01-13 13:46 - 152668448 _____ (SEIKO EPSON CORPORATION) C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (6).EXE 2022-01-12 23:49 - 2022-01-12 23:49 - 152668448 _____ (SEIKO EPSON CORPORATION) C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (5).EXE 2022-01-12 23:44 - 2022-01-12 23:44 - 001122344 _____ (SOURCENEXT CORPORATION) C:\Users\Francine\Downloads\delinf_10540 (3).EXE 2022-01-12 23:42 - 2022-01-12 23:42 - 152668448 _____ (SEIKO EPSON CORPORATION) C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (4).EXE 2022-01-12 23:37 - 2022-01-12 23:37 - 001122344 _____ (SOURCENEXT CORPORATION) C:\Users\Francine\Downloads\delinf_10540 (2).EXE 2022-01-12 23:26 - 2022-01-12 23:26 - 152668448 _____ (SEIKO EPSON CORPORATION) C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (3).EXE 2022-01-12 23:19 - 2022-01-12 23:19 - 152668448 _____ (SEIKO EPSON CORPORATION) C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (2).EXE 2022-01-12 23:16 - 2022-01-12 23:16 - 152668448 _____ (SEIKO EPSON CORPORATION) C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (1).EXE 2022-01-12 22:49 - 2022-01-12 22:49 - 001122344 _____ (SOURCENEXT CORPORATION) C:\Users\Francine\Downloads\delinf_10540 (1).EXE ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Geen bestand ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Geen bestand ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Geen bestand ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Geen bestand ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Geen bestand ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Geen bestand ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Geen bestand ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Geen bestand ShortcutWithArgument: C:\Users\Francine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RouteYou.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=cbclfccgoofclllfkmjcflhlbbpghfdm ShortcutWithArgument: C:\Users\Francine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps\Mijn Fluvius.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=jgdafmnnkgomnjdhpbebckonpgjgjgpj 2022-02-09 23:25 - 2022-02-09 23:25 - 000207360 ____N (Java(TM) Native Access (JNA)) [Bestand niet getekend] C:\Windows\Temp\jna-147562037\jna4301880171474777205.dll BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2022-02-09] (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2022-02-09] (McAfee, LLC -> McAfee, LLC) FirewallRules: [{74964E88-865C-4965-9DD0-26C8B830EB06}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.74.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Geen bestand FirewallRules: [{B80E2DFE-1D3C-449B-A09E-B3945933311B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.74.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Geen bestand FirewallRules: [{3D3BAD51-664E-4402-AA2C-F0E9FCB4C911}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.74.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Geen bestand FirewallRules: [{A4F4BD9C-B0FC-4D5C-8FEA-52628B8C5A76}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.74.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Geen bestand FirewallRules: [{2DBA3DA6-BB45-4211-9A47-4896971F7D99}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => Geen bestand EmptyTemp: Reboot: ***************** Herstelpunt is succesvol gemaakt. Proces succesvol afgesloten. C:\Program Files\McAfee\WebAdvisor\servicehost.exe => Geen lopend proces gevonden C:\Program Files\McAfee\WebAdvisor\uihost.exe => Geen lopend proces gevonden HKLM\SOFTWARE\Policies\Mozilla => is succesvol verwijderd HKLM\SOFTWARE\Policies\Google => is succesvol verwijderd HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => is succesvol verwijderd HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\BookReader_B171F20233094AC88D05A8EF7B9763E8 => is succesvol verwijderd HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\EdgeExtension_PasswordBossPasswordBoss_q9bv770jy21py => is succesvol verwijderd HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => is succesvol verwijderd HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => is succesvol verwijderd "Chrome DefaultSearchURL" => is succesvol verwijderd "Chrome DefaultSearchKeyword" => is succesvol verwijderd CHR Extension: (McAfee® WebAdvisor) - C:\Users\Francine\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2022-01-29] => Fout: Geen automatische fix gevonden voor dit item. HKLM\SOFTWARE\Google\Chrome\Extensions\fheoggkfdfchfphceeifdbepaooicaho => niet gevonden HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fheoggkfdfchfphceeifdbepaooicaho => niet gevonden HKU\S-1-5-21-9162235-4046158101-2280952487-1001\SOFTWARE\Google\Chrome\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh => is succesvol verwijderd McAfee WebAdvisor => service niet gevonden. HKLM\System\CurrentControlSet\Services\WinRing0_1_2_0 => is succesvol verwijderd WinRing0_1_2_0 => service is succesvol verwijderd C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (6).EXE => is succesvol verplaatst C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (5).EXE => is succesvol verplaatst C:\Users\Francine\Downloads\delinf_10540 (3).EXE => is succesvol verplaatst C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (4).EXE => is succesvol verplaatst C:\Users\Francine\Downloads\delinf_10540 (2).EXE => is succesvol verplaatst C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (3).EXE => is succesvol verplaatst C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (2).EXE => is succesvol verplaatst C:\Users\Francine\Downloads\MFC-J6520DW-inst-B2-EU1 (1).EXE => is succesvol verplaatst C:\Users\Francine\Downloads\delinf_10540 (1).EXE => is succesvol verplaatst HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => is succesvol verwijderd HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => is succesvol verwijderd HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => is succesvol verwijderd "HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => is succesvol verwijderd HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => is succesvol verwijderd HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => is succesvol verwijderd HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files => is succesvol verwijderd HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => is succesvol verwijderd HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files => is succesvol verwijderd C:\Users\Francine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RouteYou.lnk => snelkoppeling argument is succesvol verwijderd C:\Users\Francine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps\Mijn Fluvius.lnk => snelkoppeling argument is succesvol verwijderd "C:\Windows\Temp\jna-147562037\jna4301880171474777205.dll" => niet gevonden HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => niet gevonden C:\Program Files\McAfee => is succesvol verplaatst HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{74964E88-865C-4965-9DD0-26C8B830EB06}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B80E2DFE-1D3C-449B-A09E-B3945933311B}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3D3BAD51-664E-4402-AA2C-F0E9FCB4C911}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A4F4BD9C-B0FC-4D5C-8FEA-52628B8C5A76}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2DBA3DA6-BB45-4211-9A47-4896971F7D99}" => is succesvol verwijderd =========== EmptyTemp: ========== BITS transfer queue => 0 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 1261854199 B Java, Flash, Steam htmlcache => 291 B Windows/system/drivers => 27699851 B Edge => 1277839 B Chrome => 57574903 B Firefox => 125385686 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 371450 B NetworkService => 371450 B Francine => 714709738 B Henri => 721358777 B RecycleBin => 149 B EmptyTemp: => 2.7 GB tijdelijke gegevens verwijderd. ================================ Het systeem moest herstart worden. ==== Einde van Fixlog 20:51:59 ====