Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 05-03-2023 Gestart door kyara (11-03-2023 10:55:05) Gestart vanaf C:\Users\kyara\Downloads Microsoft Windows 10 Education Versie 2004 19041.1415 (X64) (2020-08-21 18:26:28) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) Administrator (S-1-5-21-1897470774-1862642794-3720411195-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1897470774-1862642794-3720411195-503 - Limited - Disabled) Gast (S-1-5-21-1897470774-1862642794-3720411195-501 - Limited - Disabled) kyara (S-1-5-21-1897470774-1862642794-3720411195-1001 - Administrator - Enabled) => C:\Users\kyara WDAGUtilityAccount (S-1-5-21-1897470774-1862642794-3720411195-504 - Limited - Disabled) ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeïnstalleerd worden.) Adobe Acrobat Reader - Nederlands (HKLM-x32\...\{AC76BA86-7AD7-1043-7B44-AC0F074E4100}) (Version: 22.003.20322 - Adobe Systems Incorporated) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601042}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.9.199 - Adobe Systems, Inc.) Advanced System Repair Pro (HKU\S-1-5-21-1897470774-1862642794-3720411195-1001\...\Advanced System Repair Pro) (Version: 1.9.9.2 - Advanced System Repair, Inc.) <==== AANDACHT Apple Application Support (32-bit) (HKLM-x32\...\{CCA8C50D-785B-4896-8675-FFE0C4ECCBC3}) (Version: 8.7 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{75BEF7E8-4370-4D42-94F3-B5AA77057965}) (Version: 8.7 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{065D0CC8-C382-48AF-8A88-0DD3366EB26C}) (Version: 16.0.0.25 - Apple Inc.) Apple Software Update (HKLM-x32\...\{B292D163-23D2-4523-A699-1ABEC1875609}) (Version: 2.7.0.3 - Apple Inc.) Audacity 3.1.3 (HKLM-x32\...\Audacity_is1) (Version: 3.1.3 - Audacity Team) Belgium e-ID middleware 5.0.17 (build 5498) (HKLM\...\{DB942AEA-93D6-4FE4-8862-180D35A75498}) (Version: 5.0.5498 - Belgian Government) BlueStacks 3 (HKLM-x32\...\BlueStacks) (Version: 3.7.41.1619 - BlueStack Systems, Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.87 - Piriform) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.) Connective SignID Production (HKLM\...\{60C09A55-765F-470C-B9F1-7C1009ED01E8}) (Version: 3.5.18.0 - Connective) Connective Signing Plugins (HKLM-x32\...\{4E3E9C50-EC82-44A8-A830-18D6916CB81B}) (Version: 2.0.8 - Connective) CyberLink Power Media Player 14 (HKLM-x32\...\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}) (Version: 14.0.2.5829 - CyberLink Corp.) CyberLink PowerDirector 12 (HKLM\...\{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.5.4601 - Uw bedrijfsnaam) Hidden CyberLink PowerDirector 12 (HKLM-x32\...\InstallShield_{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.5.4601 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\{A9CEDD6E-4792-493e-BB35-D86D2E188A5A}) (Version: 6.0.2.4627 - CyberLink Corp.) DisableMSDefender (HKLM\...\{74FE39A0-FB76-47CD-84BA-91E2BBB17EF2}) (Version: 1.0.0 - Hewlett-Packard Company) Hidden Dropbox 25 GB (HKLM-x32\...\{0867A88D-764F-366E-9E21-130DA8B472C3}) (Version: 3.1.18.0 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.733.1 - Dropbox, Inc.) Hidden Energy Star (HKLM\...\{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}) (Version: 1.0.9 - Hewlett-Packard Company) FortiClient VPN (HKLM\...\{A0E304BB-C9D7-4B3A-99E8-A20C793DD374}) (Version: 7.0.2.0090 - Fortinet Technologies Inc) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 111.0.5563.64 - Google LLC) Google Video Support Plugin (HKU\S-1-5-21-1897470774-1862642794-3720411195-1001\...\{F9B579C2-D854-300A-BE62-A09EB9D722E4}) (Version: 19.12.1000.0 - Google, LLC.) Hofmann 14.4.1.1 (HKLM-x32\...\{5D335217-865D-4A93-8B96-9B84E2A86E3D}) (Version: 14.4.1 - Hofmann) HP CoolSense (HKLM-x32\...\{69D30761-C220-4DD6-9BCB-6559FC4A4C8C}) (Version: 2.21.2 - HP Inc.) HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP) HP ePrint SW (HKLM\...\{3C246BB4-8985-480D-8163-0E075A23AB04}) (Version: 5.0.18701 - HP) Hidden HP ePrint SW (HKLM\...\{7855A8A5-0B5B-41A9-AC8B-A50405FB72FE}) (Version: 5.0.18701 - HP) Hidden HP ePrint SW (HKLM\...\{7ADB025F-BFB1-480B-B3BF-B2FF8F115FB8}) (Version: 5.0.18701 - HP) Hidden HP ePrint SW (HKLM\...\{EFDACC2F-510D-4A1A-A988-196D58B4B915}) (Version: 5.0.18701 - HP) Hidden HP ePrint SW (HKLM-x32\...\{88970959-baf7-4864-a39a-69a58e8ae5cf}) (Version: 5.0.18701 - HP) HP ePrint SW (HKLM-x32\...\{E2A0A04B-C0A4-49F5-A496-4B93E1D0710D}) (Version: 5.0.18701 - HP) Hidden HP Recovery Manager (HKLM-x32\...\{64BAA990-F1FC-4145-A7B1-E41FBBC9DA47}) (Version: 1.2.1510 - Hewlett-Packard) Hidden HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.8305.5282 - Hewlett-Packard) HP Support Solutions Framework (HKLM-x32\...\{F283E29B-0B9B-492B-A4BF-5585D996E5AF}) (Version: 12.18.34.21 - Hewlett-Packard Company) HP System Event Utility (HKLM-x32\...\{1BE6E90E-F615-432E-A588-DB9BB792C81D}) (Version: 1.4.3 - Hewlett-Packard Company) HP Touchpoint Analytics Client (HKLM\...\{E5FB98E0-0784-44F0-8CEC-95CD4690C43F}) (Version: 4.0.2.1439 - HP Inc.) HP Welcome (HKLM\...\HPWelcome) (Version: 1.0 - HP Inc.) iCloud (HKLM\...\{8808B208-87D1-4725-8192-76D257E9DEAE}) (Version: 7.21.0.23 - Apple Inc.) Intel(R) Chipset Device Software (HKLM\...\{8C91A5EB-2C62-4A6D-8802-CC79FD2ED390}) (Version: 10.1.1.7 - Intel Corporation) Hidden Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.1.10600.147 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1054 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{7B3B60EB-197B-4B06-ADFF-D0B50E755D4F}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{EC465D35-92DC-4DAE-9EA8-01215688F709}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Driver (HKLM\...\{E5B5A486-C7F5-429C-9324-13835620F2FD}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) ME UninstallLegacy (HKLM\...\{E9B9A1A5-6398-4C99-8FDE-10794F6505C5}) (Version: 1.0.1.0 - Intel Corporation) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4312 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{205AE40D-8AD7-4F29-A430-DD2168DA562D}) (Version: 14.5.0.1081 - Intel Corporation) Hidden Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.0.1081 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{51788BA4-D93F-4E7B-BA13-ACC88E7803DB}) (Version: 30.100.1519.07 - Intel Corporation) Hidden Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1519.7 - Intel Corporation) Intel(R) Trusted Connect Service Client x64 (HKLM\...\{C9552825-7BF2-4344-BA91-D3CD46F4C442}) (Version: 1.47.866.0 - Intel Corporation) Hidden Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.47.866.0 - Intel Corporation) Hidden Intel(R) Trusted Connect Services Client (HKLM-x32\...\{246c6cc0-9810-4728-9a29-28474de2eec5}) (Version: 1.47.866.0 - Intel Corporation) Hidden Intel(R) Virtual Buttons (HKLM-x32\...\1992736F-C90A-481C-B21B-EE34CAD07387) (Version: 1.1.0.21 - Intel Corporation) Intel® Integrated Sensor Solution (HKLM-x32\...\{dab50e7a-3a51-4ce0-9644-131748487cfe}) (Version: 3.0.4.1012 - Intel Corporation) ISS_Drivers_x64 (HKLM\...\{6725DB57-487E-42F9-B986-A3113872FE47}) (Version: 3.0.4.1012 - Intel Corporation) Hidden iTunes (HKLM\...\{33DF73B9-2FBF-4371-9C0C-EF2D5025E084}) (Version: 12.12.6.1 - Apple Inc.) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 110.0.1587.63 - Microsoft Corporation) Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 110.0.1587.63 - Microsoft Corporation) Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe (x64) (HKLM\...\{B0169E83-757B-EF66-E2F0-391944D785BC}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft Office 2016 voor Thuisgebruik en Studenten - nl-nl (HKLM\...\HomeStudentRetail - nl-nl) (Version: 16.0.15726.20202 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1897470774-1862642794-3720411195-1001\...\OneDriveSetup.exe) (Version: 23.038.0219.0001 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-1897470774-1862642794-3720411195-1001\...\Teams) (Version: 1.6.00.4472 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{7B981965-2FBC-433C-B4B3-E183EE97CD29}) (Version: 2.83.0.0 - Microsoft Corporation) Microsoft VC++ redistributables repacked. (HKLM\...\{D3531D7A-B6FA-44A5-A024-E2A14F325F90}) (Version: 12.0.0.0 - Intel Corporation) Hidden Microsoft VC++ redistributables repacked. (HKLM-x32\...\{985F7F32-5BE4-4CDA-9582-F7AEA40D1974}) (Version: 12.0.0.0 - Intel Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.23026 (HKLM-x32\...\{BE960C1C-7BAD-3DE6-8B1A-2616FE532845}) (Version: 14.0.23026 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.23026 (HKLM-x32\...\{A2563E55-3BEC-3828-8D67-E5E8B9E8B675}) (Version: 14.0.23026 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27012 (HKLM-x32\...\{427ada59-85e7-4bc8-b8d5-ebf59db60423}) (Version: 14.16.27012.6 - Microsoft Corporation) Microsoft Visual C++ 2017 X64 Additional Runtime - 14.16.27012 (HKLM\...\{DF5B1280-A057-4536-9D03-3BCAA0D4C6F0}) (Version: 14.16.27012 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 X64 Minimum Runtime - 14.16.27012 (HKLM\...\{3ECD99CB-EDAF-45DA-AD9C-2C4875F375FB}) (Version: 14.16.27012 - Microsoft Corporation) Hidden Mozilla Firefox 88.0 (x64 nl) (HKLM\...\Mozilla Firefox 88.0 (x64 nl)) (Version: 88.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 75.0 - Mozilla) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.15726.20202 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.15726.20202 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.15726.20202 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0413-0000-0000000FF1CE}) (Version: 16.0.15726.20202 - Microsoft Corporation) Hidden OpenShot Video Editor versie 2.5.1 (HKLM\...\{4BB0DCDC-BC24-49EC-8937-72956C33A470}_is1) (Version: 2.5.1 - OpenShot Studios, LLC) REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 1.0.0.47 - REALTEK Semiconductor Corp.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10125.21277 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7553 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.0.0.63 - REALTEK Semiconductor Corp.) Safe Watch (HKU\S-1-5-21-1897470774-1862642794-3720411195-1001\...\11b9ea7a-35e8-5cfb-8216-8caab4be266f) (Version: 1.6.24 - ) Skype versie 8.59 (HKLM-x32\...\Skype_is1) (Version: 8.59 - Skype Technologies S.A.) Software voor Intel® Chipset-apparaten (HKLM-x32\...\{60c073df-e736-4210-9c3a-5fc2b651cef3}) (Version: 10.1.1.7 - Intel(R) Corporation) Hidden Speccy (HKLM\...\Speccy) (Version: 1.32 - Piriform) Spotify (HKU\S-1-5-21-1897470774-1862642794-3720411195-1001\...\Spotify) (Version: 1.2.6.863.ge7902f05 - Spotify AB) swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics ClickPad Driver (HKLM\...\SynTPDeinstKey) (Version: 19.5.10.75 - Synaptics Incorporated) Syncios 6.6.1 (HKLM-x32\...\Syncios) (Version: 6.6.1 - Anvsoft) TreeSize Free V4.3.1 (HKLM-x32\...\TreeSize Free_is1) (Version: 4.3.1 - JAM Software) Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{9E5A6059-314A-4F02-B8A4-8C9C97989589}) (Version: 8.91.0.0 - Microsoft Corporation) Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0) (Version: 1.0.33.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0-6) (Version: 1.0.33.0 - LunarG, Inc.) Windows 10-updateassistent (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.23072 - Microsoft Corporation) WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) WPS Office (11.2.0.11486) (HKU\S-1-5-21-1897470774-1862642794-3720411195-1001\...\Kingsoft Office) (Version: 11.2.0.11486 - Kingsoft Corp.) Packages: ========= AV1 Video Extension -> C:\Program Files\WindowsApps\Microsoft.AV1VideoExtension_1.1.52851.0_x64__8wekyb3d8bbwe [2022-12-06] (Microsoft Corporation) Cool File Viewer -> C:\Program Files\WindowsApps\20815shootingapp.AirFileViewer_1.5.2.0_x86__xcg28tkrsnqww [2023-01-31] (Cool File Viewer) Foto's-invoegtoepassing -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2022-11-06] (Microsoft Corporation) HP LOUNGE -> C:\Program Files\WindowsApps\UniversalMusicMobile.HPLOUNGE_2.1.1.0_x64__3ms5eyejfeart [2017-04-03] (Universal Music Mobile) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_143.1.1136.0_x64__v10z8vjag6ke6 [2023-03-07] (HP Inc.) HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.23.20.0_x64__v10z8vjag6ke6 [2023-01-20] (HP Inc.) Media-engine-invoegtoepassing voor Foto's -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-11-06] (Microsoft Corporation) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-13] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-13] (Microsoft Corporation) [MS Ad] Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.98.1805.0_x64__mcm4njqhnhss8 [2022-02-17] (Netflix, Inc.) Patience -> C:\Program Files\WindowsApps\26720RandomSaladGamesLLC.SimpleSolitaire_7.4.14.0_x64__kx24dqmazqk8j [2023-01-14] (Random Salad Games LLC) WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.777.2143.0_x64__8wekyb3d8bbwe [2023-03-07] (Microsoft Corporation) WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.777.2143.0_x86__8wekyb3d8bbwe [2023-03-07] (Microsoft Corporation) ==================== Aangepaste CLSID (gefilterd): ============== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) CustomCLSID: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{004B49B7-11B9-5058-AA22-08DD0A3ADC4B}\InprocServer32 -> {1F8B07C4-9468-D082-9297-FAEE85889A47} => Geen bestand CustomCLSID: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\kyara\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.23034.3\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{1F9E0710-2073-435F-9C1B-F29946205947}\InprocServer32 -> C:\Users\kyara\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{28A80003-18FD-411D-B0A3-3C81F618E22B}\InprocServer32 -> C:\Users\kyara\AppData\Local\Kingsoft\WPS Office\11.2.0.11486\office6\kwpsmenushellext64.dll (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) CustomCLSID: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{5EA43877-C6D8-4885-B77A-C0BB27E94372}\InprocServer32 -> C:\Users\kyara\AppData\Local\Microsoft\EdgeUpdate\1.3.173.49\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{7C360CF9-D475-44FC-8163-AD6C95CF5F5D}\InprocServer32 -> C:\Users\kyara\AppData\Local\Kingsoft\WPS Office\11.2.0.11486\office6\kmso2pdfplugins64.dll (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) CustomCLSID: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{81093D63-7825-417B-BFC8-ADC63FA4E53D}\InprocServer32 -> C:\Users\kyara\AppData\Local\Microsoft\EdgeUpdate\1.3.173.49\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\kyara\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{DD0822AA-3A0A-4BDC-B749-4B00B9115850}\InprocServer32 -> {55725728-9468-D082-7EC7-03A485889A47} => Geen bestand CustomCLSID: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{E8791438-3525-48BF-A600-C577AD1674C2}\InprocServer32 -> C:\Users\kyara\AppData\Local\Microsoft\EdgeUpdate\1.3.173.49\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\kyara\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2020-09-08] (Apple Inc. -> Apple Inc.) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\ki126577.inf_amd64_ae71f87c8938d56a\igfxDTCM.dll [2018-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers1_S-1-5-21-1897470774-1862642794-3720411195-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\kyara\AppData\Local\Kingsoft\WPS Office\11.2.0.11486\office6\kwpsmenushellext64.dll [2023-03-02] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) ContextMenuHandlers4_S-1-5-21-1897470774-1862642794-3720411195-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\kyara\AppData\Local\Kingsoft\WPS Office\11.2.0.11486\office6\kwpsmenushellext64.dll [2023-03-02] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) ==================== Codecs (gefilterd) ==================== ==================== Snelkoppelingen & WMI ======================== (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Booking.com.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> hxxp://www.booking.com/index.html?aid=398438&label=square ==================== Geladen Modules (gefilterd) ============= 2019-06-19 04:18 - 2019-06-19 04:18 - 001326080 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\androidSyncCore.dll 2019-06-19 04:18 - 2019-06-19 04:18 - 000100352 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\driverMgr4Transfer.dll 2019-04-24 08:24 - 2019-04-24 08:24 - 001515008 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\DuiLib.dll 2018-03-15 01:55 - 2018-03-15 01:55 - 001487360 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\exiv2.dll 2018-03-15 01:55 - 2018-03-15 01:55 - 000104448 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\expat.dll 2019-06-19 04:18 - 2019-06-19 04:18 - 000034304 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\generalFunc.dll 2018-12-29 03:51 - 2018-12-29 03:51 - 001042432 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\libandroidrecovery.dll 2018-12-26 09:00 - 2018-12-26 09:00 - 004554857 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\libexiv2.dll 2018-12-26 09:00 - 2018-12-26 09:00 - 000121524 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\libgcc_s_dw2-1.dll 2019-04-09 04:02 - 2019-04-09 04:02 - 013525412 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\libheic.dll 2017-10-30 01:42 - 2017-10-30 01:42 - 001970688 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\libplist.dll 2018-12-26 09:00 - 2018-12-26 09:00 - 000594944 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\libsscan.dll 2018-12-26 09:00 - 2018-12-26 09:00 - 001544523 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\libstdc++-6.dll 2019-04-09 07:41 - 2019-04-09 07:41 - 000791552 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\sqlite3.dll 2017-10-30 01:41 - 2017-10-30 01:41 - 000066048 _____ () [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\zlib1.dll 2021-10-25 11:21 - 2021-10-25 11:21 - 002024466 _____ (Fortinet Inc.) [Bestand niet getekend] C:\Program Files\Fortinet\FortiClient\utilsdll.dll 2015-06-23 16:00 - 2015-06-23 16:00 - 000285696 _____ (Intel Corporation) [Bestand niet getekend] [Bestand is in gebruik] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\PsiData.dll 2015-06-23 16:00 - 2015-06-23 16:00 - 000562688 _____ (Intel Corporation) [Bestand niet getekend] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\ISDI2.dll 2020-04-20 09:38 - 2020-04-20 09:38 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems32.dll] C:\Program Files (x86)\Microsoft Office\root\Office16\AppVIsvSubsystems32.dll 2020-04-20 09:38 - 2020-04-20 09:38 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R32.dll] C:\Program Files (x86)\Microsoft Office\root\Office16\c2r32.dll 2017-10-30 09:06 - 2017-10-30 09:06 - 000065693 _____ (MingW-W64 Project. All rights reserved.) [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\libwinpthread-1.dll 2018-12-26 09:00 - 2018-12-26 09:00 - 000086070 _____ (Open Source Software community project) [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\pthreadVC2.dll 2017-10-30 01:39 - 2017-10-30 01:39 - 001374720 _____ (Pizzolato Davide - www.xdp.it) [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\cximage.dll 2018-12-26 09:00 - 2018-12-26 09:00 - 000360448 _____ (The curl library, hxxps://curl.haxx.se/) [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\libcurl.dll 2018-12-26 09:00 - 2018-12-26 09:00 - 002106880 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\libcrypto-1_1.dll 2018-12-26 09:00 - 2018-12-26 09:00 - 000370176 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\libssl-1_1.dll 2019-06-19 04:18 - 2019-06-19 04:18 - 000016896 _____ (TODO: ) [Bestand niet getekend] C:\Program Files (x86)\Anvsoft\Syncios\geneLog.dll ==================== Alternate Data Streams (gefilterd) ======== ==================== Veilige Modus (gefilterd) ================== ==================== Bestandskoppeling (gefilterd) ================= ==================== Internet Explorer (gefilterd) ========== HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE HKU\S-1-5-21-1897470774-1862642794-3720411195-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE HKU\S-1-5-21-1897470774-1862642794-3720411195-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE SearchScopes: HKLM-x32 -> {987C87F1-62B2-43F7-B6BA-48D7C9CFE0A8} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001 -> {987C87F1-62B2-43F7-B6BA-48D7C9CFE0A8} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2022-11-06] (Microsoft Corporation -> Microsoft Corporation) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2023-01-10] (HP Inc. -> HP Inc.) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2023-01-10] (HP Inc. -> HP Inc.) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-06] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-06] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-06] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-06] (Microsoft Corporation -> Microsoft Corporation) (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd.) IE trusted site: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001\...\sharepoint.com -> hxxps://studentarteveldehsbe-files.sharepoint.com ==================== Hosts inhoud: ========================= (Indien nodig kan Hosts:-opdracht worden opgenomen in de fixlist om Hosts te resetten.) 2015-10-30 08:24 - 2023-03-11 10:37 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Andere gebieden =========================== (Momenteel is er geen automatische fix voor dit onderdeel.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-1897470774-1862642794-3720411195-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\kyara\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\1e6a6d8d400feb1de6526cd64c3225fb.png DNS Servers: 195.130.130.2 - 195.130.131.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Windows Firewall is ingeschakeld. Network Binding: ============= Ethernet: FortiClient NDIS 6.3 Packet Filter Driver -> ft_fortifilter (enabled) Ethernet 2: FortiClient NDIS 6.3 Packet Filter Driver -> ft_fortifilter (enabled) Ethernet 3: FortiClient NDIS 6.3 Packet Filter Driver -> ft_fortifilter (enabled) Wi-Fi: FortiClient NDIS 6.3 Packet Filter Driver -> ft_fortifilter (enabled) ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == ==================== Firewall regels (gefilterd) ================ (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [{AFDD6583-392F-46C3-AB51-FB5FD5544940}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{8DC32C1B-7952-4E1F-89AE-C0DA30DFEE15}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{822AF2E7-5005-43E3-A46D-5EA6A021340B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{21DE24C1-5080-4D06-B6B0-D130798B4D50}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{512B6693-64EE-4A97-A9C6-478AA4EF5CC3}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe (BlueStack Systems, Inc. -> BlueStack Systems, Inc.) FirewallRules: [{89FEE83B-8783-43A6-9D8B-A04CCE19F382}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{3B5CB5DD-49DE-4A17-A543-E20B937B84B1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{B1275BC9-93C7-4E45-B676-5A6DFAD36B8F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{20ED7EFA-8878-44FD-A48D-BA23186B3F69}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{E107BA52-8742-4313-BFEA-EC51D80F3A7B}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{8402DD99-057E-42FF-B84F-FEFF3D6A61FD}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{94C65070-CD94-48A9-9894-4345EE42AF50}] => (Allow) C:\Program Files (x86)\Anvsoft\Syncios\pdt_syncios.exe (Anvsoft Inc. -> Syncios Data Transfer) FirewallRules: [{413B1D81-902E-4F74-89AF-25B104C98044}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.) FirewallRules: [TCP Query User{8F35F044-9EA5-4938-90DA-4065F2005627}C:\users\kyara\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kyara\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [UDP Query User{291BC28B-5E52-4CDF-9313-8A87C68C1763}C:\users\kyara\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kyara\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [TCP Query User{CD9C799C-3CCC-4242-BBF4-CBBD58BED14C}C:\users\kyara\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\kyara\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{292A0A16-0824-4E30-A4F6-95DDE8EC41F8}C:\users\kyara\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\kyara\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{A4155C28-4012-43C4-9A58-9B34629A502E}] => (Allow) C:\Program Files\OpenShot Video Editor\openshot-qt.exe (OpenShot Studios, LLC) [Bestand niet getekend] FirewallRules: [{B4C78DEE-E8A2-440A-9975-9EEFB474DF7E}] => (Allow) C:\Users\kyara\AppData\Local\Programs\safe-watch\safe-watch.exe (OPEN VIDEO, TOV -> GitHub, Inc.) FirewallRules: [TCP Query User{3B3A5651-A5BA-4505-BDA5-AEAE1FBAEA48}C:\users\kyara\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kyara\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [UDP Query User{AA139805-1D2B-497C-9DC7-4C129D65B766}C:\users\kyara\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kyara\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{64FF8414-A6F2-46D6-AF4B-A20D8DDACE60}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{2C0ED946-41A3-406E-9E70-0D62B9785EF8}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\110.0.1587.63\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{C5ECB543-370C-4A3D-95DE-AAE77B50442B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.94.3428.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{FC2AA0B4-DD32-45D8-B992-3C1F1A083290}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.94.3428.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{B7C27CA5-FAC3-47BE-9818-13D7256B09B8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.94.3428.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{A60D2B02-4DEF-498F-8FD7-86B73F1CEC4E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.94.3428.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{09D72403-8986-4AE7-990A-CC5219A28727}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Herstelpunten ========================= AANDACHT: Systeemherstel is uitgeschakeld (Total:117.49 GB) (Free:0.72 GB) (1%) ==================== Defecte Apparaatbeheer Apparaten ============ Name: Fortinet SSL VPN Virtual Ethernet Adapter Description: Fortinet SSL VPN Virtual Ethernet Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Fortinet Inc. Service: ftsvnic Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Eventlog fouten: ======================== Applicatiefouten: ================== Error: (03/11/2023 10:45:20 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: vpnupdate.exe, versie: 5.4.510.0, tijdstempel: 0x5d1c471f Naam van module met fout: vpnupdate.exe, versie: 5.4.510.0, tijdstempel: 0x5d1c471f Uitzonderingscode: 0xc0000409 Foutmarge: 0x000df62d Id van proces met fout: 0x3978 Starttijd van toepassing met fout: 0x01d953fe2279797b Pad naar toepassing met fout: c:\program files\avast software\secureline\vpnupdate.exe Pad naar module met fout: c:\program files\avast software\secureline\vpnupdate.exe Rapport-id: 79768827-cc38-4377-bf37-5942183eb907 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (03/11/2023 10:43:40 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3009) (User: NT AUTHORITY) Description: Installing the performance counter strings for service WmiApRpl (WmiApRpl) failed. The first DWORD in the Data section contains the error code. Error: (03/11/2023 10:43:40 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY) Description: The performance strings in the Performance registry value is corrupted when process WmiApRpl extension counter provider. The BaseIndex value from the Performance registry is the first DWORD in the Data section, LastCounter value is the second DWORD in the Data section, and LastHelp value is the third DWORD in the Data section. Error: (03/11/2023 10:39:11 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3009) (User: NT AUTHORITY) Description: Installing the performance counter strings for service WmiApRpl (WmiApRpl) failed. The first DWORD in the Data section contains the error code. Error: (03/11/2023 10:39:11 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY) Description: The performance strings in the Performance registry value is corrupted when process WmiApRpl extension counter provider. The BaseIndex value from the Performance registry is the first DWORD in the Data section, LastCounter value is the second DWORD in the Data section, and LastHelp value is the third DWORD in the Data section. Error: (03/11/2023 10:38:02 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe.Manifest' niet maken. Kan afhankelijke assembly Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (03/11/2023 10:37:28 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Local Hostname DESKTOP-I0RQG5S.local already in use; will try DESKTOP-I0RQG5S-2.local instead Error: (03/11/2023 10:37:28 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister 4 DESKTOP-I0RQG5S.local. Addr 192.168.9.171 Systeemfouten: ============= Error: (03/11/2023 10:52:06 AM) (Source: Schannel) (EventID: 4103) (User: NT AUTHORITY) Description: Er is een onherstelbare fout opgetreden bij het maken van een TLS-referentie voor client. De interne foutstatus is 10013. Error: (03/11/2023 10:52:06 AM) (Source: Schannel) (EventID: 4103) (User: NT AUTHORITY) Description: Er is een onherstelbare fout opgetreden bij het maken van een TLS-referentie voor client. De interne foutstatus is 10013. Error: (03/11/2023 10:51:54 AM) (Source: Schannel) (EventID: 4103) (User: NT AUTHORITY) Description: Er is een onherstelbare fout opgetreden bij het maken van een TLS-referentie voor client. De interne foutstatus is 10013. Error: (03/11/2023 10:51:54 AM) (Source: Schannel) (EventID: 4103) (User: NT AUTHORITY) Description: Er is een onherstelbare fout opgetreden bij het maken van een TLS-referentie voor client. De interne foutstatus is 10013. Error: (03/11/2023 10:45:44 AM) (Source: Schannel) (EventID: 4103) (User: NT AUTHORITY) Description: Er is een onherstelbare fout opgetreden bij het maken van een TLS-referentie voor client. De interne foutstatus is 10013. Error: (03/11/2023 10:45:44 AM) (Source: Schannel) (EventID: 4103) (User: NT AUTHORITY) Description: Er is een onherstelbare fout opgetreden bij het maken van een TLS-referentie voor client. De interne foutstatus is 10013. Error: (03/11/2023 10:45:33 AM) (Source: Schannel) (EventID: 4103) (User: NT AUTHORITY) Description: Er is een onherstelbare fout opgetreden bij het maken van een TLS-referentie voor client. De interne foutstatus is 10013. Error: (03/11/2023 10:45:33 AM) (Source: Schannel) (EventID: 4103) (User: NT AUTHORITY) Description: Er is een onherstelbare fout opgetreden bij het maken van een TLS-referentie voor client. De interne foutstatus is 10013. Windows Defender: ================ Date: 2023-03-11 10:47:26 Description: Microsoft Defender Antivirus heeft malware of andere mogelijke ongewenste software gedetecteerd. Zie het volgende voor meer informatie: https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win32/PCClean&threatid=227219&enterprise=0 Naam: PUA:Win32/PCClean Ernst: Laag Categorie: Mogelijk ongewenste software Pad: file:_C:\Users\kyara\Downloads\OneSafe_PC_Cleaner.exe Detectieoorsprong: Lokale computer Detectietype: Concreet Detectiebron: Real-timebeveiliging Gebruiker: Procesnaam: C:\Users\kyara\Downloads\FRST64.exe Versie van beveiligingsinformatie: AV: 1.383.1563.0, AS: 1.383.1563.0, NIS: 1.383.1563.0 Engineversie: AM: 1.1.20000.2, NIS: 1.1.20000.2 Date: 2023-03-10 19:03:37 Description: Microsoft Defender Antivirus heeft malware of andere mogelijke ongewenste software gedetecteerd. Zie het volgende voor meer informatie: https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win32/PCClean&threatid=227219&enterprise=0 Naam: PUA:Win32/PCClean Ernst: Laag Categorie: Mogelijk ongewenste software Pad: file:_C:\Users\kyara\Downloads\OneSafe_PC_Cleaner.exe Detectieoorsprong: Lokale computer Detectietype: Concreet Detectiebron: Real-timebeveiliging Gebruiker: Procesnaam: C:\Windows\explorer.exe Versie van beveiligingsinformatie: AV: 1.383.1361.0, AS: 1.383.1361.0, NIS: 1.383.1361.0 Engineversie: AM: 1.1.20000.2, NIS: 1.1.20000.2 Date: 2023-03-08 19:26:52 Description: Microsoft Defender Antivirus heeft malware of andere mogelijke ongewenste software gedetecteerd. Zie het volgende voor meer informatie: https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win32/PCClean&threatid=227219&enterprise=0 Naam: PUA:Win32/PCClean Ernst: Laag Categorie: Mogelijk ongewenste software Pad: file:_C:\Users\kyara\Downloads\OneSafe_PC_Cleaner.exe Detectieoorsprong: Lokale computer Detectietype: Concreet Detectiebron: Real-timebeveiliging Gebruiker: Procesnaam: C:\Windows\explorer.exe Versie van beveiligingsinformatie: AV: 1.383.1215.0, AS: 1.383.1215.0, NIS: 1.383.1215.0 Engineversie: AM: 1.1.20000.2, NIS: 1.1.20000.2 Date: 2023-03-08 16:33:15 Description: Microsoft Defender Antivirus heeft malware of andere mogelijke ongewenste software gedetecteerd. Zie het volgende voor meer informatie: https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win32/AskToolbar&threatid=227072&enterprise=0 Naam: PUA:Win32/AskToolbar Ernst: Laag Categorie: Mogelijk ongewenste software Pad: file:_D:\ApnStub.exe Detectieoorsprong: Lokale computer Detectietype: Concreet Detectiebron: Real-timebeveiliging Gebruiker: DESKTOP-I0RQG5S\kyara Procesnaam: C:\Windows\explorer.exe Versie van beveiligingsinformatie: AV: 1.383.1215.0, AS: 1.383.1215.0, NIS: 1.383.1215.0 Engineversie: AM: 1.1.20000.2, NIS: 1.1.20000.2 Date: 2023-03-02 17:08:21 Description: Microsoft Defender Antivirus heeft malware of andere mogelijke ongewenste software gedetecteerd. Zie het volgende voor meer informatie: https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win32/PCClean&threatid=227219&enterprise=0 Naam: PUA:Win32/PCClean Ernst: Laag Categorie: Mogelijk ongewenste software Pad: file:_C:\Users\kyara\Downloads\OneSafe_PC_Cleaner.exe Detectieoorsprong: Lokale computer Detectietype: Concreet Detectiebron: Real-timebeveiliging Gebruiker: DESKTOP-I0RQG5S\kyara Procesnaam: C:\Windows\explorer.exe Versie van beveiligingsinformatie: AV: 1.383.916.0, AS: 1.383.916.0, NIS: 1.383.916.0 Engineversie: AM: 1.1.20000.2, NIS: 1.1.20000.2 Event[0]: Date: 2023-03-01 20:05:23 Description: Microsoft Defender Antivirus heeft een fout ontdekt tijdens het bijwerken van beveiligingsinformatie. Nieuwe versie van beveiligingsinformatie: Vorige versie van beveiligingsinformatie: 1.383.808.0 Updatebron: Gebruiker Type beveiligingsinformatie: AntiSpyware Updatetype: Delta Gebruiker: NT AUTHORITY\SYSTEM Huidige engineversie: Vorige engineversie: 1.1.20000.2 Foutcode: 0x80070070 Foutbeschrijving: Onvoldoende schijfruimte beschikbaar. Date: 2023-03-01 20:05:23 Description: Microsoft Defender Antivirus heeft een fout ontdekt tijdens het bijwerken van beveiligingsinformatie. Nieuwe versie van beveiligingsinformatie: Vorige versie van beveiligingsinformatie: 1.383.808.0 Updatebron: Gebruiker Type beveiligingsinformatie: AntiVirus Updatetype: Delta Gebruiker: NT AUTHORITY\SYSTEM Huidige engineversie: Vorige engineversie: 1.1.20000.2 Foutcode: 0x80070070 Foutbeschrijving: Onvoldoende schijfruimte beschikbaar. Date: 2023-02-27 23:18:32 Description: Microsoft Defender Antivirus heeft een fout ontdekt tijdens het bijwerken van beveiligingsinformatie. Nieuwe versie van beveiligingsinformatie: Vorige versie van beveiligingsinformatie: 1.383.484.0 Updatebron: Microsoft-updateserver Type beveiligingsinformatie: AntiVirus Updatetype: Volledig Gebruiker: NT AUTHORITY\SYSTEM Huidige engineversie: Vorige engineversie: 1.1.20000.2 Foutcode: 0x80240004 Foutbeschrijving: Er is tijdens het zoeken naar updates een onverwacht probleem opgetreden. Raadpleeg Help en ondersteuning voor meer informatie over het installeren van updates en het oplossen van problemen. Date: 2023-01-30 12:14:53 Description: Microsoft Defender Antivirus heeft een fout ontdekt tijdens het bijwerken van beveiligingsinformatie. Nieuwe versie van beveiligingsinformatie: Vorige versie van beveiligingsinformatie: 1.381.2815.0 Updatebron: Microsoft Centrum voor beveiliging tegen malware Type beveiligingsinformatie: AntiVirus Updatetype: Volledig Gebruiker: NT AUTHORITY\NETWORK SERVICE Huidige engineversie: Vorige engineversie: 1.1.19900.2 Foutcode: 0x80070070 Foutbeschrijving: Onvoldoende schijfruimte beschikbaar. Date: 2023-01-30 12:14:53 Description: Microsoft Defender Antivirus heeft een fout ontdekt tijdens het bijwerken van beveiligingsinformatie. Nieuwe versie van beveiligingsinformatie: Vorige versie van beveiligingsinformatie: 1.381.2815.0 Updatebron: Microsoft Centrum voor beveiliging tegen malware Type beveiligingsinformatie: AntiSpyware Updatetype: Volledig Gebruiker: NT AUTHORITY\NETWORK SERVICE Huidige engineversie: Vorige engineversie: 1.1.19900.2 Foutcode: 0x80070070 Foutbeschrijving: Onvoldoende schijfruimte beschikbaar. CodeIntegrity: =============== Date: 2023-03-10 09:41:39 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2023-02-13 12:15:26 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2023-02-04 16:39:01 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\ki126577.inf_amd64_ae71f87c8938d56a\igd10iumd64.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Geheugen info =========================== BIOS: Insyde F.25 02/26/2018 Moederbord: HP 80D1 Processor: Intel(R) Core(TM) i5-6200U CPU @ 2.30GHz Percentage geheugen in gebruik: 61% Totaal fysiek RAM-geheugen: 8112.41 MB Beschikbaar fysiek RAM-geheugen: 3119.56 MB Totaal Virtueel geheugen: 9154.81 MB Beschikbaar Virtueel geheugen: 4009 MB ==================== Schijven ================================ Drive c: (Windows) (Fixed) (Total:117.49 GB) (Free:0.72 GB) (Model: SAMSUNG MZNLF128HCHP-000H1) NTFS \\?\Volume{d264aea1-6861-49be-919e-4c93777b1c2a}\ () (Fixed) (Total:0.68 GB) (Free:0.08 GB) NTFS \\?\Volume{e26556bc-7ba3-41f1-bc71-e18af1ec9c87}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.18 GB) FAT32 ==================== MBR & Partitietabel ==================== ========================================================== Disk: 0 (Size: 119.2 GB) (Disk ID: A50E1C7D) Partition: GPT. ==================== Einde van Addition.txt =======================