Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 07-10-2022 01 Gestart door Sean (08-10-2022 12:28:43) Run:1 Gestart vanaf D:\Bewaren\bureaublad Geladen Profielen: Sean Boot Modus: Normal ============================================== fixlist inhoud: ***************** start:: CreateRestorePoint: CloseProcesses: HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restrictie <==== AANDACHT GroupPolicy: Restrictie ? <==== AANDACHT Policies: C:\ProgramData\NTUSER.pol: Restrictie <==== AANDACHT Task: {22BE72DB-C5DD-4FC6-9798-F9FF5B0FE857} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c (Geen bestand) Task: {26D612BC-5514-428D-8F6B-D2AA775400A1} - \Microsoft\Windows\UNP\RunCampaignManager -> Geen bestand <==== AANDACHT HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrictie <==== AANDACHT FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [Geen bestand] FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Geen bestand] FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Geen bestand] FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Geen bestand] S3 FvSvc; "C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe" -service [X] S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X] S3 fiddrv64; geen ImagePath S1 EneTechIo; \??\C:\WINDOWS\system32\drivers\ene.sys [X] S3 semav6msr64; \??\C:\WINDOWS\system32\drivers\semav6msr64.sys [X] CustomCLSID: HKU\S-1-5-21-1301745139-1219763072-805054973-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Sean\AppData\Local\Microsoft\OneDrive\18.151.0729.0013\amd64\FileSyncShell64.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-1301745139-1219763072-805054973-1001_Classes\CLSID\{233525e0-5434-46ef-b464-fd7e45e2e145}\localserver32 -> "C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe" -ToastActivated => Geen bestand CustomCLSID: HKU\S-1-5-21-1301745139-1219763072-805054973-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Sean\AppData\Local\Microsoft\OneDrive\18.151.0729.0013\amd64\FileSyncShell64.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-1301745139-1219763072-805054973-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Sean\AppData\Local\Microsoft\OneDrive\18.151.0729.0013\amd64\FileSyncShell64.dll => Geen bestand ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll -> Geen bestand ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll -> Geen bestand ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll -> Geen bestand ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Geen bestand ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Geen bestand ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Geen bestand ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Geen bestand ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Geen bestand ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Geen bestand ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Geen bestand ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Geen bestand ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Geen bestand ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll -> Geen bestand ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Geen bestand ContextMenuHandlers1: [PeContextMenuExtension] -> {098A124A-AA1C-38C8-A65E-D1199A14516A} => C:\Program Files (x86)\Common Files\Wondershare\PDFelement\AddIns\PEShellExt_x64.dll -> Geen bestand ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Geen bestand ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Geen bestand ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Geen bestand ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll -> Geen bestand AlternateDataStreams: C:\Users\Sean\AppData\Local\Temp:com.affinity.designer.2 [240] AlternateDataStreams: C:\Users\Sean\AppData\Local\Temp:com.affinity.designer.3 [197] AlternateDataStreams: C:\Users\Sean\AppData\Local\Temp:com.affinity.photo.2 [240] AlternateDataStreams: C:\Users\Sean\AppData\Local\Temp:com.affinity.photo.3 [197] AlternateDataStreams: C:\Users\Sean\AppData\Local\Temp:com.affinity.publisher.2 [286] AlternateDataStreams: C:\Users\Sean\AppData\Local\Temp:com.affinity.publisher.3 [197] Toolbar: HKU\S-1-5-21-1301745139-1219763072-805054973-1001 -> Geen Naam - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Geen bestand FirewallRules: [{91D5D407-A60B-469B-93DC-B8EF58E92AE2}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS073F\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{070963F4-0E2E-4FFF-ADE1-288DBB740B79}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS073F\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{A467D69E-ECBE-41F4-97D0-CE630A649F97}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS76C4\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{E46C5FFA-54A3-4EA2-9C8E-EA1B57C416FA}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS76C4\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{F1793235-7959-4C17-BFDA-D0B2C96F22F0}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS765E\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{8DCB7A77-E46D-47B6-BD8C-B5E652E87C4A}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS765E\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{6637D2DE-00C8-4431-A287-F660C123728E}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe => Geen bestand FirewallRules: [{85C080A5-651B-46F0-A23E-B6BA6B6258C0}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe => Geen bestand FirewallRules: [{94CFE576-9925-461A-8801-4284B7F430AA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe => Geen bestand FirewallRules: [{907A13D1-3C6C-408C-8BCC-8FEFC4B1896C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe => Geen bestand FirewallRules: [{AE82591E-5575-4EB2-8C70-470C0CE96EB7}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS526E\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{60DC497A-6922-4220-8E5C-F64C081B8A04}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS526E\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{CD16698C-B456-44B6-A514-FDFE6E1B1384}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS17B1\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{4A6AC6FA-F414-42CA-ADFB-2116D047F1AA}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS17B1\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{AE97F2FD-5AA6-4091-B174-8BAC1ED22F00}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS2245\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{6E45EDC8-C352-4F5B-9FAB-DC0962770300}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS2245\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{7A89AF98-54D9-4EA7-960E-CA9FB6EC0033}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS2160\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{A806106F-BC34-44DC-8E3C-07961E422A76}] => (Allow) C:\Users\Sean\AppData\Local\Temp\7zS2160\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{1010BE8C-E1F0-4E76-A261-E4EDD50E95F9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe => Geen bestand FirewallRules: [{82A82C85-E87B-4A7C-9D16-0B70CD8C6345}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe => Geen bestand FirewallRules: [{A4391415-380A-4CC1-83F8-51935602C5B2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe => Geen bestand FirewallRules: [{76CDEB99-4F98-4342-BEA4-DA32703D814C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe => Geen bestand FirewallRules: [TCP Query User{FA3B100A-C222-4426-AD10-C80B9A1A5FE1}D:\wondershare mobilego portable\data\mobilego\local\stubexe\0x91c27d093622b891\mobilegoservice.exe] => (Allow) D:\wondershare mobilego portable\data\mobilego\local\stubexe\0x91c27d093622b891\mobilegoservice.exe => Geen bestand FirewallRules: [UDP Query User{57D6D742-ACE1-4DF4-A7B6-CE4A746D7B1A}D:\wondershare mobilego portable\data\mobilego\local\stubexe\0x91c27d093622b891\mobilegoservice.exe] => (Allow) D:\wondershare mobilego portable\data\mobilego\local\stubexe\0x91c27d093622b891\mobilegoservice.exe => Geen bestand FirewallRules: [TCP Query User{2D64473A-834B-431C-A1F6-B6749F78E4AB}C:\users\sean\appdata\local\thug pro\thugpro.exe] => (Allow) C:\users\sean\appdata\local\thug pro\thugpro.exe => Geen bestand FirewallRules: [UDP Query User{00F15774-6E95-4BF9-BF5B-1619EFAF15A6}C:\users\sean\appdata\local\thug pro\thugpro.exe] => (Allow) C:\users\sean\appdata\local\thug pro\thugpro.exe => Geen bestand FirewallRules: [{8C420AAE-D5C9-4C47-A7E5-1C3ECA3E47F0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe => Geen bestand FirewallRules: [{841A9F4B-91D4-4141-A862-7F68FC3A078B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe => Geen bestand FirewallRules: [{46A5702F-58F2-494B-8591-262DDE4F5350}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe => Geen bestand FirewallRules: [{AB9D5DA7-A76C-4BAC-AF5A-38B2F63CAA1E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe => Geen bestand EmptyTemp: Reboot: end:: ***************** Herstelpunt is succesvol gemaakt. Proces succesvol afgesloten. HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => is succesvol verwijderd C:\WINDOWS\system32\GroupPolicy\Machine => is succesvol verplaatst C:\WINDOWS\system32\GroupPolicy\GPT.ini => is succesvol verplaatst C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => is succesvol verplaatst C:\ProgramData\NTUSER.pol => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{22BE72DB-C5DD-4FC6-9798-F9FF5B0FE857}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{22BE72DB-C5DD-4FC6-9798-F9FF5B0FE857}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{26D612BC-5514-428D-8F6B-D2AA775400A1}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{26D612BC-5514-428D-8F6B-D2AA775400A1}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => niet gevonden HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => is succesvol verwijderd HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect => is succesvol verwijderd HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1 => is succesvol verwijderd HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4 => is succesvol verwijderd HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.6 => is succesvol verwijderd HKLM\System\CurrentControlSet\Services\FvSvc => is succesvol verwijderd FvSvc => service is succesvol verwijderd HKLM\System\CurrentControlSet\Services\gupdatem => is succesvol verwijderd gupdatem => service is succesvol verwijderd HKLM\System\CurrentControlSet\Services\fiddrv64 => is succesvol verwijderd fiddrv64 => service is succesvol verwijderd HKLM\System\CurrentControlSet\Services\EneTechIo => is succesvol verwijderd EneTechIo => service is succesvol verwijderd HKLM\System\CurrentControlSet\Services\semav6msr64 => is succesvol verwijderd semav6msr64 => service is succesvol verwijderd HKU\S-1-5-21-1301745139-1219763072-805054973-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => is succesvol verwijderd HKU\S-1-5-21-1301745139-1219763072-805054973-1001_Classes\CLSID\{233525e0-5434-46ef-b464-fd7e45e2e145} => is succesvol verwijderd HKU\S-1-5-21-1301745139-1219763072-805054973-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => is succesvol verwijderd HKU\S-1-5-21-1301745139-1219763072-805054973-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ AccExtIco1 => is succesvol verwijderd HKLM\Software\Classes\CLSID\{AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ AccExtIco2 => is succesvol verwijderd HKLM\Software\Classes\CLSID\{853B7E05-C47D-4985-909A-D0DC5C6D7303} => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ AccExtIco3 => is succesvol verwijderd HKLM\Software\Classes\CLSID\{42D38F2E-98E9-4382-B546-E24E4D6D04BB} => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => is succesvol verwijderd HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => is succesvol verwijderd HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => is succesvol verwijderd HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => is succesvol verwijderd HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => is succesvol verwijderd HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => is succesvol verwijderd HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => is succesvol verwijderd HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => is succesvol verwijderd HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ FileSyncEx => is succesvol verwijderd HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => is succesvol verwijderd HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\AccExt => is succesvol verwijderd HKLM\Software\Classes\CLSID\{2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => is succesvol verwijderd HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => is succesvol verwijderd HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PeContextMenuExtension => is succesvol verwijderd HKLM\Software\Classes\CLSID\{098A124A-AA1C-38C8-A65E-D1199A14516A} => is succesvol verwijderd HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => is succesvol verwijderd HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ FileSyncEx => is succesvol verwijderd HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => is succesvol verwijderd HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\AccExt => is succesvol verwijderd C:\Users\Sean\AppData\Local\Temp => ":com.affinity.designer.2" ADS is succesvol verwijderd C:\Users\Sean\AppData\Local\Temp => ":com.affinity.designer.3" ADS is succesvol verwijderd C:\Users\Sean\AppData\Local\Temp => ":com.affinity.photo.2" ADS is succesvol verwijderd C:\Users\Sean\AppData\Local\Temp => ":com.affinity.photo.3" ADS is succesvol verwijderd C:\Users\Sean\AppData\Local\Temp => ":com.affinity.publisher.2" ADS is succesvol verwijderd C:\Users\Sean\AppData\Local\Temp => ":com.affinity.publisher.3" ADS is succesvol verwijderd "HKU\S-1-5-21-1301745139-1219763072-805054973-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{91D5D407-A60B-469B-93DC-B8EF58E92AE2}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{070963F4-0E2E-4FFF-ADE1-288DBB740B79}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A467D69E-ECBE-41F4-97D0-CE630A649F97}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E46C5FFA-54A3-4EA2-9C8E-EA1B57C416FA}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F1793235-7959-4C17-BFDA-D0B2C96F22F0}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8DCB7A77-E46D-47B6-BD8C-B5E652E87C4A}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6637D2DE-00C8-4431-A287-F660C123728E}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{85C080A5-651B-46F0-A23E-B6BA6B6258C0}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{94CFE576-9925-461A-8801-4284B7F430AA}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{907A13D1-3C6C-408C-8BCC-8FEFC4B1896C}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AE82591E-5575-4EB2-8C70-470C0CE96EB7}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{60DC497A-6922-4220-8E5C-F64C081B8A04}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CD16698C-B456-44B6-A514-FDFE6E1B1384}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4A6AC6FA-F414-42CA-ADFB-2116D047F1AA}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AE97F2FD-5AA6-4091-B174-8BAC1ED22F00}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6E45EDC8-C352-4F5B-9FAB-DC0962770300}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7A89AF98-54D9-4EA7-960E-CA9FB6EC0033}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A806106F-BC34-44DC-8E3C-07961E422A76}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1010BE8C-E1F0-4E76-A261-E4EDD50E95F9}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{82A82C85-E87B-4A7C-9D16-0B70CD8C6345}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A4391415-380A-4CC1-83F8-51935602C5B2}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{76CDEB99-4F98-4342-BEA4-DA32703D814C}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FA3B100A-C222-4426-AD10-C80B9A1A5FE1}D:\wondershare mobilego portable\data\mobilego\local\stubexe\0x91c27d093622b891\mobilegoservice.exe" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{57D6D742-ACE1-4DF4-A7B6-CE4A746D7B1A}D:\wondershare mobilego portable\data\mobilego\local\stubexe\0x91c27d093622b891\mobilegoservice.exe" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2D64473A-834B-431C-A1F6-B6749F78E4AB}C:\users\sean\appdata\local\thug pro\thugpro.exe" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{00F15774-6E95-4BF9-BF5B-1619EFAF15A6}C:\users\sean\appdata\local\thug pro\thugpro.exe" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8C420AAE-D5C9-4C47-A7E5-1C3ECA3E47F0}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{841A9F4B-91D4-4141-A862-7F68FC3A078B}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{46A5702F-58F2-494B-8591-262DDE4F5350}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AB9D5DA7-A76C-4BAC-AF5A-38B2F63CAA1E}" => is succesvol verwijderd =========== EmptyTemp: ========== FlushDNS => voltooid BITS transfer queue => 1572864 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 20527919 B Java, Discord, Steam htmlcache, WinHttpAutoProxySvc *.cache => 66024 B Windows/system/drivers => 10175392 B Edge => 0 B Chrome => 1252408503 B Firefox => 1202772962 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 898484 B LocalService => 4617684 B NetworkService => 39559774 B Sean => 60545167 B RecycleBin => 0 B EmptyTemp: => 2.4 GB tijdelijke gegevens verwijderd. ================================ Het systeem moest herstart worden. ==== Einde van Fixlog 12:31:17 ====