Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 29-10-2024 Gestart door Leo (31-10-2024 15:29:51) Run:1 Gestart vanaf C:\Users\Leo\Desktop Geladen Profielen: Leo Boot Modus: Normal ============================================== fixlist inhoud: ***************** start:: CreateRestorePoint: CloseProcesses: HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restrictie <==== AANDACHT HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restrictie <==== AANDACHT HKLM\...\Print\Monitors\HP C211 Status Monitor: hpinkstsC211LM.dll (Geen bestand) Task: {9F6D72B7-AD2F-4AF0-987D-DE92CD74B9F7} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (Geen bestand) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Geen bestand) FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\bd_js_config.js [2023-05-12] <==== AANDACHT (Gericht op * .cfg bestand) FF ExtraCheck: C:\Program Files\mozilla firefox\bd_config.cfg [2023-05-12] <==== AANDACHT S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] AV: Kaspersky Total Security (Enabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23} FW: Kaspersky Total Security (Enabled) {774D7037-0984-41B0-3A87-5E88E680AD58} HKU\S-1-5-21-376915687-1664278911-1970410353-1001\...\ChromeHTML: -> <==== AANDACHT ContextMenuHandlers1: [PDFCreator.ShellContextMenu] -> {d9cea52e-100d-4159-89ea-76e845bc13e1} => -> Geen bestand AlternateDataStreams: C:\Users\Leo\Downloads\disk-drill-win.exe:BDU [0] AlternateDataStreams: C:\Users\Leo\Downloads\FRST64.exe:BDU [0] FirewallRules: [{0A3F7569-50D9-467C-ABF3-C30F112B0499}] => (Allow) C:\Users\Leo\Downloads\photo-enhancer.exe => Geen bestand FirewallRules: [{6AA838A5-26F6-4104-B7BF-013313AAABE7}] => (Allow) C:\Users\Leo\Downloads\photo-enhancer.exe => Geen bestand FirewallRules: [TCP Query User{DDAD64DA-A18C-411F-AE44-43F5BC0B4FE8}C:\program files (x86)\helicon software\helicon remote\heliconremote.exe] => (Block) C:\program files (x86)\helicon software\helicon remote\heliconremote.exe => Geen bestand FirewallRules: [UDP Query User{6F491CCE-0567-4059-9E53-FA3E66EFDC68}C:\program files (x86)\helicon software\helicon remote\heliconremote.exe] => (Block) C:\program files (x86)\helicon software\helicon remote\heliconremote.exe => Geen bestand FirewallRules: [{B7FDB88F-6C08-4E4E-9056-9745D8BB8A2B}] => (Allow) C:\Program Files\ON1\ON1 NoNoise AI 2024\on1capture.exe => Geen bestand FirewallRules: [{DC4134C8-11DC-46A0-841F-5DBBBBFF152A}] => (Allow) C:\Program Files\ON1\ON1 NoNoise AI 2024\on1capture.exe => Geen bestand FirewallRules: [{8B091495-23E8-451F-A34B-2F3017C5771E}] => (Allow) C:\Program Files\ON1\ON1 NoNoise AI 2024\ON1 Photoshop Emulator.exe => Geen bestand FirewallRules: [{FD72A5C1-DBCC-40CA-BCDC-2607F11EBFD5}] => (Allow) C:\Program Files\ON1\ON1 NoNoise AI 2024\ON1 Photoshop Emulator.exe => Geen bestand EmptyTemp: End:: ***************** Herstelpunt is succesvol gemaakt. Proces succesvol afgesloten. HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => waarde met succes hersteld HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => waarde met succes hersteld HKLM\System\CurrentControlSet\Control\Print\Monitors\HP C211 Status Monitor => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9F6D72B7-AD2F-4AF0-987D-DE92CD74B9F7}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9F6D72B7-AD2F-4AF0-987D-DE92CD74B9F7}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E0F10DCF-44AD-40E8-9370-FB5DA59F93FB}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0F10DCF-44AD-40E8-9370-FB5DA59F93FB}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => is succesvol verwijderd C:\Program Files\mozilla firefox\defaults\pref\bd_js_config.js => is succesvol verplaatst C:\Program Files\mozilla firefox\bd_config.cfg => is succesvol verplaatst HKLM\System\CurrentControlSet\Services\WinSetupMon => is succesvol verwijderd WinSetupMon => service is succesvol verwijderd "AV: Kaspersky Total Security (Enabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23}" => is succesvol verwijderd "FW: Kaspersky Total Security (Enabled) {774D7037-0984-41B0-3A87-5E88E680AD58}" => is succesvol verwijderd HKU\S-1-5-21-376915687-1664278911-1970410353-1001_Classes\ChromeHTML => is succesvol verwijderd HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PDFCreator.ShellContextMenu => is succesvol verwijderd C:\Users\Leo\Downloads\disk-drill-win.exe => ":BDU" ADS is succesvol verwijderd "C:\Users\Leo\Downloads\FRST64.exe" => ":BDU" ADS niet gevonden. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0A3F7569-50D9-467C-ABF3-C30F112B0499}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6AA838A5-26F6-4104-B7BF-013313AAABE7}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{DDAD64DA-A18C-411F-AE44-43F5BC0B4FE8}C:\program files (x86)\helicon software\helicon remote\heliconremote.exe" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{6F491CCE-0567-4059-9E53-FA3E66EFDC68}C:\program files (x86)\helicon software\helicon remote\heliconremote.exe" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B7FDB88F-6C08-4E4E-9056-9745D8BB8A2B}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DC4134C8-11DC-46A0-841F-5DBBBBFF152A}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8B091495-23E8-451F-A34B-2F3017C5771E}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FD72A5C1-DBCC-40CA-BCDC-2607F11EBFD5}" => is succesvol verwijderd =========== EmptyTemp: ========== FlushDNS => voltooid BITS transfer queue => 1310720 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 17976108 B Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 33012 B Windows/system/drivers => 1251823 B Edge => 0 B Chrome => 118784 B Brave => 36864 B Firefox => 132148952 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 4700 B NetworkService => 4700 B Leo => 99398225 B RecycleBin => 1192 B EmptyTemp: => 240.6 MB tijdelijke gegevens verwijderd. ================================ Het systeem moest herstart worden. ==== Einde van Fixlog 15:30:07 ====