Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 11-03-2023 Gestart door kyara (11-03-2023 23:32:27) Run:1 Gestart vanaf C:\Users\kyara\Downloads Geladen Profielen: kyara Boot Modus: Normal ============================================== fixlist inhoud: ***************** start:: CreateRestorePoint: CloseProcesses: Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2019-07-10] ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine\Vpn.exe (AVAST Software s.r.o. -> AVAST Software) Task: {25056EAB-4BC3-4130-BF93-FA499718C028} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2295192 2023-01-31] (Avast Software s.r.o. -> Avast Software) Task: {758A0DD8-9F19-4474-9299-1C2CF3EA405E} - System32\Tasks\Avast SecureLine VPN Update => c:\program files\avast software\secureline\vpnupdate.exe [1392008 2019-07-09] (AVAST Software s.r.o. -> AVAST Software) Task: {4802DBB4-7A3A-41CD-B026-EA202167B18E} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs (Geen bestand) Task: {D28906B3-B76E-452F-A147-1FBAEB2B48D0} - \Microsoft\Windows\UNP\RunCampaignManager -> Geen bestand <==== AANDACHT Edge Extension: (Geen Naam) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [niet gevonden] Edge Extension: (Geen Naam) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [niet gevonden] Edge Extension: (Geen Naam) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [niet gevonden] Edge Extension: (Geen Naam) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [niet gevonden] CustomCLSID: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{004B49B7-11B9-5058-AA22-08DD0A3ADC4B}\InprocServer32 -> {1F8B07C4-9468-D082-9297-FAEE85889A47} => Geen bestand CustomCLSID: HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{DD0822AA-3A0A-4BDC-B749-4B00B9115850}\InprocServer32 -> {55725728-9468-D082-7EC7-03A485889A47} => Geen bestand ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Booking.com.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> hxxp://www.booking.com/index.html?aid=398438&label=square EmptyTemp: Reboot: end:: ***************** Fout: (0) Mislukt om een herstelpunt te maken. Proces succesvol afgesloten. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk => is succesvol verplaatst C:\Program Files\AVAST Software\SecureLine\Vpn.exe => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{25056EAB-4BC3-4130-BF93-FA499718C028}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{25056EAB-4BC3-4130-BF93-FA499718C028}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Avast Software\Overseer => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Avast Software\Overseer" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{758A0DD8-9F19-4474-9299-1C2CF3EA405E}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{758A0DD8-9F19-4474-9299-1C2CF3EA405E}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Avast SecureLine VPN Update => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Avast SecureLine VPN Update" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{4802DBB4-7A3A-41CD-B026-EA202167B18E}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4802DBB4-7A3A-41CD-B026-EA202167B18E}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\AVAST Software\Avast settings backup => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AVAST Software\Avast settings backup" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D28906B3-B76E-452F-A147-1FBAEB2B48D0}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D28906B3-B76E-452F-A147-1FBAEB2B48D0}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => niet gevonden HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => is succesvol verwijderd HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\BookReader_B171F20233094AC88D05A8EF7B9763E8 => is succesvol verwijderd HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => is succesvol verwijderd HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => is succesvol verwijderd HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{004B49B7-11B9-5058-AA22-08DD0A3ADC4B} => is succesvol verwijderd HKU\S-1-5-21-1897470774-1862642794-3720411195-1001_Classes\CLSID\{DD0822AA-3A0A-4BDC-B749-4B00B9115850} => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => is succesvol verwijderd HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => is succesvol verwijderd C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Booking.com.lnk => snelkoppeling argument is succesvol verwijderd =========== EmptyTemp: ========== FlushDNS => voltooid BITS transfer queue => 1572864 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 6918827 B Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 702240 B Windows/system/drivers => 296788 B Edge => 61722 B Chrome => 127695806 B Firefox => 10716276 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 42349 B NetworkService => 47513 B kyara => 102789486 B RecycleBin => 2381363 B EmptyTemp: => 241.5 MB tijdelijke gegevens verwijderd. ================================ Het systeem moest herstart worden. ==== Einde van Fixlog 23:32:57 ====