Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 16-09-2024 Gestart door annie (25-09-2024 11:24:48) Gestart vanaf C:\Users\annie\Downloads Microsoft Windows 11 Home Versie 23H2 22631.4169 (X64) (2024-03-15 16:29:26) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) Administrator (S-1-5-21-1251728993-3463846439-761789713-500 - Administrator - Disabled) annie (S-1-5-21-1251728993-3463846439-761789713-1001 - Administrator - Enabled) => C:\Users\annie DefaultAccount (S-1-5-21-1251728993-3463846439-761789713-503 - Limited - Disabled) Gast (S-1-5-21-1251728993-3463846439-761789713-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-1251728993-3463846439-761789713-504 - Limited - Disabled) ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: Malwarebytes (Enabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee (Disabled - Up to date) {0BE13B34-492A-21C0-AE43-C1742279CCB6} FW: McAfee (Enabled) {2FDD6819-222E-5E9F-F5E7-E13A2241D502} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeïnstalleerd worden.) Ezviz Studio (HKLM-x32\...\{49DF99D3-BC81-439A-8F40-A0529159024C}_is1) (Version: - EZVIZ Inc.) GlideX Service Installer (HKLM\...\{A06BDD76-D95C-4AC7-A0DA-73971F366D9B}) (Version: 3.3.4.0 - ASUSTeK COMPUTER INC.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 129.0.6668.71 - Google LLC) Malwarebytes version 5.1.11.133 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.1.11.133 - Malwarebytes) McAfee (HKLM\...\McAfee.WPS) (Version: 1.22.203.1 - McAfee, LLC) Microsoft 365 - nl-nl (HKLM\...\O365HomePremRetail - nl-nl) (Version: 16.0.17928.20156 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 129.0.2792.52 - Microsoft Corporation) Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 129.0.2792.52 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1251728993-3463846439-761789713-1001\...\OneDriveSetup.exe) (Version: 24.166.0818.0003 - Microsoft Corporation) Microsoft OneNote - nl-nl (HKLM\...\OneNoteFreeRetail - nl-nl) (Version: 16.0.17928.20156 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation) Mozilla Firefox (x64 nl) (HKLM\...\Mozilla Firefox 130.0.1 (x64 nl)) (Version: 130.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 124.0.1 - Mozilla) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.17928.20156 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.17928.20156 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0413-1000-0000000FF1CE}) (Version: 16.0.17928.20156 - Microsoft Corporation) Hidden paint.net (HKLM\...\{1F895C18-6A2F-4A9E-BBE9-246783070F37}) (Version: 4.0.16 - dotPDN LLC) Revo Uninstaller 2.4.5 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.4.5 - VS Revo Group, Ltd.) Speccy (HKLM\...\Speccy) (Version: 1.32 - Piriform) update_server (HKLM-x32\...\{1D08522D-308D-4615-AEA9-44021FD7445A}_is1) (Version: - ) WebAdvisor van McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.949 - McAfee, LLC) Packages: ========= AppUp.IntelGraphicsExperience -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5635.0_x64__8j3eq9eme6ctt [2024-09-15] (INTEL CORP) [Startup Task] B9ECED6F.ScreenPadMaster -> C:\Program Files\WindowsApps\B9ECED6F.ScreenPadMaster_3.1.42.0_x64__qmba6cd70vzyy [2024-09-05] (ASUSTeK COMPUTER INC.) Dirac Audio Manager -> C:\Program Files\WindowsApps\DrivewintechTechnologyCo.DiracAudoManager_2.10.117.0_x64__e7q8crqfywnwm [2024-08-15] (Drivewintech Technology Co., Ltd) Foto's -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2024.11070.31001.0_x64__8wekyb3d8bbwe [2024-08-08] (Microsoft Corporation) [Startup Task] GlideX -> C:\Program Files\WindowsApps\B9ECED6F.Glidex_3.3.4.0_x64__qmba6cd70vzyy [2024-09-13] (ASUSTeK COMPUTER INC.) McAfee -> C:\Program Files\McAfee\wps\1.22.203.1 [2024-09-23] () Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2409.10002.0_x64__8wekyb3d8bbwe [2024-09-19] (Microsoft Corporation) [Startup Task] Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-03-20] (Microsoft Corp.) Microsoft.BingSearch -> C:\Program Files\WindowsApps\Microsoft.BingSearch_1.0.95.0_x64__8wekyb3d8bbwe [2024-07-28] (Microsoft Corporation) Microsoft.StartExperiencesApp -> C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.1.144.0_x64__8wekyb3d8bbwe [2024-09-17] (Microsoft Corporation) [Startup Task] MicrosoftWindows.CrossDevice -> C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.24081.57.0_x64__cw5n1h2txyewy [2024-09-12] (Microsoft Windows) [Startup Task] MyASUS -> C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.23.0_x64__qmba6cd70vzyy [2024-09-23] (ASUSTeK COMPUTER INC.) Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.50.319.0_x64__dt26b99r8h8gj [2024-07-28] (Realtek Semiconductor Corp) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0 [2024-09-01] (Spotify AB) [Startup Task] Widgets Platform Runtime -> C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.4.0.0_x64__8wekyb3d8bbwe [2024-09-06] (Microsoft Corporation) WinAppRuntime.Main.1.4 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.4_4000.1309.2056.0_x64__8wekyb3d8bbwe [2024-08-15] (Microsoft Corp.) WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.214.1843.0_x64__8wekyb3d8bbwe [2024-08-15] (Microsoft Corp.) WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_6000.242.101.0_x64__8wekyb3d8bbwe [2024-09-06] (Microsoft Corp.) Windows App Runtime DDLM 4000.1082.2259.0-x6 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.4000.1082.2259.0-x6_4000.1082.2259.0_x64__8wekyb3d8bbwe [2024-05-02] (Microsoft Corporation) Windows App Runtime DDLM 4000.1082.2259.0-x8 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.4000.1082.2259.0-x8_4000.1082.2259.0_x86__8wekyb3d8bbwe [2024-05-02] (Microsoft Corporation) Windows App Runtime DDLM 4000.964.11.0-x6 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.4000.964.11.0-x6_4000.964.11.0_x64__8wekyb3d8bbwe [2024-03-20] (Microsoft Corporation) Windows App Runtime DDLM 4000.964.11.0-x8 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.4000.964.11.0-x8_4000.964.11.0_x86__8wekyb3d8bbwe [2024-03-20] (Microsoft Corporation) Windows Feature Experience Pack -> C:\Windows\SystemApps\LKG\MicrosoftWindows.LKG.AccountsService_cw5n1h2txyewy [2024-09-12] (Microsoft Windows) Windows Feature Experience Pack -> C:\Windows\SystemApps\LKG\MicrosoftWindows.LKG.DesktopSpotlight_cw5n1h2txyewy [2024-09-12] (Microsoft Windows) Windows Feature Experience Pack -> C:\Windows\SystemApps\LKG\MicrosoftWindows.LKG.IrisService_cw5n1h2txyewy [2024-09-12] (Microsoft Windows) ==================== Aangepaste CLSID (gefilterd): ============== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) CustomCLSID: HKU\S-1-5-21-1251728993-3463846439-761789713-1001_Classes\CLSID\{92a10339-c580-dfd8-94c3-030311ba18f4}\localserver32 -> C:\ProgramData\ASUS\AsusSurvey\AsusSurvey.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) ContextMenuHandlers1: [McCtxMenu] -> {4ADAAC88-E1BD-424F-816D-15E059007938} => C:\Program Files\McAfee\wps\1.22.203.1\mc-ctxmnu.dll [2024-09-23] (McAfee, LLC -> McAfee, LLC) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-09-25] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-09-25] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers6: [McCtxMenu] -> {4ADAAC88-E1BD-424F-816D-15E059007938} => C:\Program Files\McAfee\wps\1.22.203.1\mc-ctxmnu.dll [2024-09-23] (McAfee, LLC -> McAfee, LLC) ==================== Codecs (gefilterd) ==================== ==================== Snelkoppelingen & WMI ======================== ==================== Geladen Modules (gefilterd) ============= 2024-03-16 12:07 - 2015-09-10 17:50 - 000195072 _____ () [Bestand niet getekend] C:\Program Files (x86)\hicloud\update_server\ExceptionHandler.dll 2024-03-16 12:07 - 2015-09-10 17:50 - 001320448 _____ () [Bestand niet getekend] C:\Program Files (x86)\hicloud\update_server\hlog.dll 2024-03-16 12:07 - 2015-09-10 17:50 - 000151607 _____ () [Bestand niet getekend] C:\Program Files (x86)\hicloud\update_server\hpr.dll 2024-03-16 12:07 - 2015-09-10 17:50 - 000107520 _____ () [Bestand niet getekend] C:\Program Files (x86)\hicloud\update_server\SPUpDate.dll 2024-03-16 12:07 - 2015-09-10 17:50 - 000285184 _____ (The cURL library, hxxp://curl.haxx.se/) [Bestand niet getekend] C:\Program Files (x86)\hicloud\update_server\libcurl.dll 2024-03-16 12:07 - 2015-09-10 17:50 - 001204736 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Bestand niet getekend] C:\Program Files (x86)\hicloud\update_server\LIBEAY32.dll 2024-03-16 12:07 - 2015-09-10 17:50 - 000296448 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Bestand niet getekend] C:\Program Files (x86)\hicloud\update_server\SSLEAY32.dll ==================== Alternate Data Streams (gefilterd) ======== (Als een item is opgenomen in de fixlist, wordt alleen de ADS verwijderd.) AlternateDataStreams: C:\Users\annie\Downloads\ChromeSetup.exe:MBAM.Zone.Identifier [384] AlternateDataStreams: C:\Users\annie\Downloads\FRST64(2).exe:MBAM.Zone.Identifier [193] AlternateDataStreams: C:\Users\annie\Downloads\FRST64.exe:MBAM.Zone.Identifier [193] ==================== Veilige Modus (gefilterd) ================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. De waarde van "AlternateShell" wordt hersteld.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mc-fw-host => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mc-fw-host => ""="Service" ==================== Bestandskoppeling (gefilterd) ================= ==================== Internet Explorer (gefilterd) ============= BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2024-08-30] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-08-30] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-08-30] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-08-30] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-08-30] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-08-30] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-08-30] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-08-30] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-08-30] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts inhoud: ========================= (Indien nodig kan Hosts:-opdracht worden opgenomen in de fixlist om Hosts te resetten.) 2022-05-07 07:24 - 2022-05-07 07:22 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts ==================== Andere gebieden =========================== (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-21-1251728993-3463846439-761789713-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\asus\wallpapers\asus.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is ingeschakeld. Network Binding: ============= Wi-Fi: MediaTek Wi-Fi 6E MT7902 Wireless LAN Card -> mtkwl6ex.sys vms_vsf: Hyper-V Virtual Switch Extension Filter vms_vsp: Hyper-V Virtual Switch Extension Protocol ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == ==================== Firewall regels (gefilterd) ================ (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [{616759D3-A31A-45C2-8AB9-EC1C7A67B04E}] => (Allow) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_7a3a8aa248377da4\ASUSLinkRemote\AsusLinkRemoteAgent.exe => Geen bestand FirewallRules: [{023F069A-8B7F-4154-93A4-4AFFF3B06A2F}] => (Allow) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_7a3a8aa248377da4\ASUSLinkRemote\AsusLinkRemoteAgent.exe => Geen bestand FirewallRules: [TCP Query User{4AA76B57-B35A-40BE-AD4F-312061ECFD35}C:\program files (x86)\ezviz studio\ezvizstudio.exe] => (Allow) C:\program files (x86)\ezviz studio\ezvizstudio.exe (杭州萤石软件有限公司 -> EZVIZ Inc.) FirewallRules: [UDP Query User{73E458A4-C72D-4AE9-AA23-C1B22A9FF479}C:\program files (x86)\ezviz studio\ezvizstudio.exe] => (Allow) C:\program files (x86)\ezviz studio\ezvizstudio.exe (杭州萤石软件有限公司 -> EZVIZ Inc.) FirewallRules: [{6A49F704-94E0-4A3D-9404-DF8D92B54250}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{62FA7886-207B-4498-BEB6-9B6ECC7B3DE9}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{2CD45DA6-9F54-4AAA-B43B-4CE89FF91F00}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{EB9B6DFF-C704-44FF-A4DA-4B7F31D67AE8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{22A049CA-91B2-4BD3-B4AB-14D357DE428E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{85A2FFC1-ABFD-49B6-A620-D686DF9B9550}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{7ECB2575-E92C-403D-86B5-2E9429BF8F85}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{D9CDDDC3-8BD6-471E-B578-983B63FBB0F1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{C5691553-7990-4EDB-B236-B54306C094BE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{A2DC05C1-9126-462A-A3BE-E44859C66EBD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{B0923FC7-59DC-42B4-81C8-3B51756DFB08}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{7B82880D-3B96-4C23-A93C-30DF4966AA98}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{7FC3E8A9-CBA5-4A1C-9850-D02960A70362}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{5AB2E666-AC3E-4203-AFFB-712212A9DF98}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.23.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.) FirewallRules: [{A6ABE865-DA73-4EF3-BAF8-8B6DA5A70271}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.23.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.) FirewallRules: [{9110793F-59E0-4697-8BB6-EDC8468B1BBA}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.23.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.) FirewallRules: [{BCC3284F-E015-467A-A6B5-38E47C15F5CC}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.23.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.) FirewallRules: [{5B336154-10B1-42F4-8EF8-9147D6066BDB}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\129.0.2792.52\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{C97CE5BD-76F1-49DC-B97F-F10C4570121C}] => (Allow) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_65474b5d0e394c04\ASUSSwitch\AsusSwitchNet.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) FirewallRules: [{A7191107-B09B-4C81-B547-B18EC2F34CEE}] => (Allow) C:\Program Files\ASUS\GlideX\GlideXService.exe (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) FirewallRules: [{84EE29C1-0A32-4156-9140-92C89515BCC4}] => (Allow) C:\Program Files\ASUS\GlideX\GlideXNear\GlideXNearService.exe (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) FirewallRules: [{D0906D18-2F09-4CD0-B1B0-667DAA8815F5}] => (Allow) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_65474b5d0e394c04\ASUSSwitch\AsusSwitchNetMDNS.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) FirewallRules: [{D677EF96-7CBC-4AA7-A092-69469CDD8B0E}] => (Allow) C:\Program Files\ASUS\GlideX\GlideXRemote\GlideXRemoteAgent.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) FirewallRules: [{3C9653E6-E538-417B-A32D-4D805E3CEE71}] => (Allow) C:\Program Files\ASUS\GlideX\GlideXRemote\GlideXRemoteAgent.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) FirewallRules: [{6E092E79-5044-4E0C-8937-4F3BE75251F6}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Herstelpunten ========================= 15-09-2024 20:47:11 Windows Update 15-09-2024 20:47:19 Windows Update 19-09-2024 07:42:18 Windows Update 22-09-2024 08:15:50 Windows Update 25-09-2024 11:00:53 Windows Update ==================== Defecte Apparaatbeheer Apparaten ============ ==================== Eventlog fouten: ======================== Applicatiefouten: ================== Error: (09/11/2024 12:06:03 PM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {F6FF1548-11CA-4244-AA20-7985F90A5DDC} Error: (08/31/2024 10:09:03 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {F92B28FA-74D4-4151-821E-19A290F9E91E} Error: (08/15/2024 07:10:27 AM) (Source: System Restore) (EventID: 8193) (User: ) Description: Er kan geen herstelpunt worden gemaakt (proces = C:\Windows\system32\svchost.exe -k netsvcs -p -s wuauserv; beschrijving = Windows Update; fout = 0x81000101). Error: (08/02/2024 10:58:47 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {4613100D-DE57-411E-8254-D7D75BB3598A} Error: (08/02/2024 10:55:34 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {7447ADCF-A258-46D7-9A51-A0DADFDECD57} Error: (08/01/2024 11:39:52 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {D116F911-6854-4641-9A38-CB2A85285297} Error: (07/31/2024 08:05:23 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {3F70107B-666D-41A4-853D-D60FA75BAAB4} Error: (07/31/2024 08:05:02 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {F34B08E4-B805-4008-8375-D566624CC0DF} Systeemfouten: ============= Error: (09/25/2024 11:09:04 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: De Mozilla Maintenance Service-service is gestopt met de volgende foutcode: Onjuiste functie.. Error: (09/24/2024 09:53:27 AM) (Source: DCOM) (EventID: 10010) (User: ANNIE) Description: De server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (09/24/2024 09:53:27 AM) (Source: DCOM) (EventID: 10010) (User: ANNIE) Description: De server {021E4F06-9DCC-49AD-88CF-ECC2DA314C8A} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (09/24/2024 09:53:27 AM) (Source: DCOM) (EventID: 10010) (User: ANNIE) Description: De server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (09/24/2024 09:53:27 AM) (Source: DCOM) (EventID: 10010) (User: ANNIE) Description: De server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (09/19/2024 07:43:01 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80073d02: 9MSSGKG348SP-MicrosoftWindows.Client.WebExperience. Error: (09/17/2024 11:18:03 PM) (Source: DCOM) (EventID: 10010) (User: ANNIE) Description: De server B9ECED6F.ASUSPCAssistant_4.0.20.0_x64__qmba6cd70vzyy!App.AppX7kzebfqmdxej6ev77x78grbnx1efgwnw.mca heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (09/13/2024 07:39:07 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: De McAfee Scheduled Task - (McAfee-Dynamicappdownloader)-service is gestopt met de volgende foutcode: Onjuiste functie.. Windows Defender: ================ Date: 2024-07-19 15:28:15 Description: Scan van Microsoft Defender Antivirus is gestopt voordat deze was voltooid. Scan-id: {9C96ED33-558B-45A7-902C-4EC784F7AEF7} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2024-07-13 08:43:22 Description: Scan van Microsoft Defender Antivirus is gestopt voordat deze was voltooid. Scan-id: {89BC1337-B646-4C23-8980-7058DD406251} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2024-07-10 11:24:21 Description: Scan van Microsoft Defender Antivirus is gestopt voordat deze was voltooid. Scan-id: {6A86A106-4857-4F21-85DF-035BFBB15D9E} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2024-07-10 07:48:45 Description: Scan van Microsoft Defender Antivirus is gestopt voordat deze was voltooid. Scan-id: {68040C9A-FAA7-4588-AFA5-AF6BB7D81A3E} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2024-07-07 23:09:45 Description: Scan van Microsoft Defender Antivirus is gestopt voordat deze was voltooid. Scan-id: {DDF25FE8-C958-4CED-899F-6D2B43ACB5A8} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Event[0] Date: 2024-05-08 08:23:17 Description: Microsoft Defender Antivirus heeft een fout ontdekt tijdens het bijwerken van beveiligingsinformatie. Nieuwe versie van beveiligingsinformatie: 1.411.23.0 Vorige versie van beveiligingsinformatie: 1.411.2.0 Updatebron: Gebruiker Type beveiligingsinformatie: AntiSpyware Updatetype: Delta Gebruiker: NT AUTHORITY\SYSTEM Huidige engineversie: 1.1.24040.1 Vorige engineversie: 1.1.24040.1 Foutcode: 0x80004004 Foutbeschrijving: De bewerking is afgebroken Date: 2024-05-08 08:23:17 Description: Microsoft Defender Antivirus heeft een fout ontdekt tijdens het bijwerken van beveiligingsinformatie. Nieuwe versie van beveiligingsinformatie: 1.411.23.0 Vorige versie van beveiligingsinformatie: 1.411.2.0 Updatebron: Gebruiker Type beveiligingsinformatie: AntiVirus Updatetype: Delta Gebruiker: NT AUTHORITY\SYSTEM Huidige engineversie: 1.1.24040.1 Vorige engineversie: 1.1.24040.1 Foutcode: 0x80004004 Foutbeschrijving: De bewerking is afgebroken CodeIntegrity: =============== Date: 2024-09-25 11:10:31 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\WPS\1.22.203.1\mc-sec-plugin-x64.dll that did not meet the Windows signing level requirements. Date: 2024-09-25 11:10:31 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbamsi64.dll that did not meet the Windows signing level requirements. Date: 2024-09-25 11:08:15 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements. ==================== Geheugen info =========================== BIOS: American Megatrends International, LLC. X1704ZA.311 09/21/2023 Moederbord: ASUSTeK COMPUTER INC. X1704ZA Processor: 12th Gen Intel(R) Core(TM) i5-1235U Percentage geheugen in gebruik: 63% Totaal fysiek RAM-geheugen: 7877.6 MB Beschikbaar fysiek RAM-geheugen: 2838.73 MB Totaal Virtueel geheugen: 8581.6 MB Beschikbaar Virtueel geheugen: 3041.33 MB ==================== Schijven ================================ Drive c: (OS) (Fixed) (Total:475.39 GB) (Free:413.47 GB) (Model: NVMe SOLIDIGM SSDPFKNU512GZ) (Protected) NTFS \\?\Volume{d4180af8-4b17-4eff-b81c-0071d459f0c1}\ (RECOVERY) (Fixed) (Total:1.03 GB) (Free:0.06 GB) NTFS \\?\Volume{8d505dc3-eb57-4379-8d9b-2007b03c46e1}\ (MYASUS) (Fixed) (Total:0.25 GB) (Free:0.17 GB) FAT32 \\?\Volume{38455c2b-a92a-49d5-ac4d-56bbcd85a9d8}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.2 GB) FAT32 ==================== MBR & Partitietabel ==================== ========================================================== Disk: 0 (Size: 476.9 GB) (Disk ID: A7D52577) Partition: GPT. ==================== Einde van Addition.txt =======================