Ga naar inhoud

Aanbevolen berichten

Geplaatst:

Beste, zou het mogelijk zijn om mijn laptop eens na te kijken en eventueel op te ruim, want denk dat er enorm veel overbodige dingen opstaan.

Mvg Alain.

Geplaatst:

Alain,

da's wel een heel algemene vraag waar je verschillende kanten mee op kan.

 

Wat bedoel je met 'overbodige' dingen: heb je het over programma's, over bestanden, over...

Enne: waardoor kom je tot die vraag van je?

Geplaatst:

Passer,

ik wil bedoelen mijn laptop eens grondig kuisen. Zodat ik meer opslag heb. Er staan ook veel dubbele bestanden op. Heb geprobeerd die te verwijderen maar dit is verkeerd afgelopen. Waarschijnlijk bestanden die niet mochten verwijderd zijn. Sinds de aankoop van mijn lenovo heb ik zeker 30 à 40 keer alles opnieuw moeten instellen.Als ik kan verkoop ik hem direct en schaf mij weer een Acer aan.

Geplaatst:

dat het aan lenovo zou liggen lijkt me stug, je moet niet verbaasd zijn als datzelfde optreedt op een acer....  bijna alles wat op een pc gebeurt is in opdracht van een linkermuisklik.

laat de experts hier eens kijken of de pc nog enigszins hersteld kan worden.

hoe je dat aan de vork steekt lees je

 

Geplaatst:

Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 16.02.2024
Gestart door Alain (18-02-2024 10:04:53)
Gestart vanaf C:\Users\Alain\Downloads
Microsoft Windows 11 Home Versie 23H2 22631.3155 (X64) (2024-01-20 03:12:05)
Boot Modus: Normal
==========================================================


==================== Accounts: =============================


(Als een item is opgenomen in de fixlist, zal het worden verwijderd.)

Administrator (S-1-5-21-2785639542-1252406328-114974376-500 - Administrator - Disabled)
Alain (S-1-5-21-2785639542-1252406328-114974376-1001 - Administrator - Enabled) => C:\Users\Alain
DefaultAccount (S-1-5-21-2785639542-1252406328-114974376-503 - Limited - Disabled)
Gast (S-1-5-21-2785639542-1252406328-114974376-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-2785639542-1252406328-114974376-504 - Limited - Disabled)

==================== Security Center ========================

(Als een item is opgenomen in de fixlist, zal het worden verwijderd.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Geïnstalleerde programma's ======================

(Alleen de adware-programma's met 'verborgen' vlag kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeïnstalleerd worden.)

4K Video Downloader+ (HKLM\...\{F3D1B7E9-2D9E-4315-8C42-1754B8CB1690}) (Version: 1.4.3.0060 - Open Media LLC) Hidden
4K Video Downloader+ (HKLM-x32\...\{58c5bace-796a-4d3d-bd07-a3ff90f3d05f}) (Version: 1.4.0.55 - Open Media LLC)
4K YouTube to MP3 (HKLM\...\{4C959C00-FE3A-4EBD-AF0F-26969673913D}) (Version: 5.1.1.0057 - Open Media LLC) Hidden
4K YouTube to MP3 (HKLM-x32\...\{e0ebfaf5-5dac-49dd-81a4-6257eb47fda6}) (Version: 5.1.0.55 - Open Media LLC)
Canon IJ Network Scanner Selector EX2 (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX2) (Version: 2.0.15.2 - Canon Inc.)
Canon IJ Printer Assistant Tool (HKLM-x32\...\Canon IJ Printer Assistant Tool) (Version: 1.60.1.15 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.6.1.2 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 6.5.2 - Canon Inc.)
Canon TR4600 series Driver (HKLM\...\{1199FAD5-9546-44F3-81CF-FFDB8040B7BF}_Canon_TR4600_series) (Version: 1.01 - Canon Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 121.0.6167.185 - Google LLC)
Intel(R) Chipset Device Software (HKLM\...\{00C43022-CFDA-4942-9D3F-04199C91C939}) (Version: 10.1.18121.8164 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{37942a92-9e3f-4d70-9b5c-5955cbc54505}) (Version: 10.1.18121.8164 - Intel(R) Corporation)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 3.1.53.0 - Lenovo Group Ltd.)
Microsoft 365 - nl-nl (HKLM\...\O365HomePremRetail - nl-nl) (Version: 16.0.17231.20194 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 121.0.2277.128 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 121.0.2277.128 - Microsoft Corporation)
Microsoft Support and Recovery Assistant - 1  (HKU\S-1-5-21-2785639542-1252406328-114974376-1001\...\4336df8a13b91f17) (Version: 17.1.987.16 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 (HKLM-x32\...\{6913e92a-b64e-41c9-a5e6-cef39207fe89}) (Version: 14.25.28508.3 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.25.28508 (HKLM-x32\...\{65e650ff-30be-469d-b63a-418d71ea1765}) (Version: 14.25.28508.3 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.25.28508 (HKLM\...\{7D0B74C2-C3F8-4AF1-940F-CD79AB4B2DCE}) (Version: 14.25.28508 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.25.28508 (HKLM\...\{EEA66967-97E2-4561-A999-5C22E3CDE428}) (Version: 14.25.28508 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.25.28508 (HKLM-x32\...\{0FA68574-690B-4B00-89AA-B28946231449}) (Version: 14.25.28508 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.25.28508 (HKLM-x32\...\{2BC3BD4D-FABA-4394-93C7-9AC82A263FE2}) (Version: 14.25.28508 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.17231.20194 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.17231.20194 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0413-1000-0000000FF1CE}) (Version: 16.0.17231.20194 - Microsoft Corporation) Hidden
PowerShell 7.5.1.0-x64 (HKLM-x32\...\{38bc704a-c443-4b08-8507-9b2294862aa8}) (Version: 7.5.1.0 - Microsoft Corporation)
PowerShell 7-preview-x64 (HKLM\...\{06DF3C89-5180-4A8E-BF23-7C5280FE73A4}) (Version: 7.5.0.1 - Microsoft Corporation) Hidden
PowerShell 7-x64 (HKLM\...\{B06D1894-3827-4E0C-A092-7DC50BE8B210}) (Version: 7.4.1.0 - Microsoft Corporation)
Printerregistratie (HKLM-x32\...\Canon EISRegistration) (Version: 1.9.1 - Canon Inc.)
Windows Pc-statuscontrole (HKLM\...\{1F9259B3-62E8-4835-B6DA-2E5439C5D128}) (Version: 3.7.2204.15001 - Microsoft Corporation)

Packages:
=========
AppUp.IntelGraphicsExperience -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5336.0_x64__8j3eq9eme6ctt [2024-02-14] (INTEL CORP) [Startup Task]
Dev Home (Preview) -> C:\Program Files\WindowsApps\Microsoft.Windows.DevHome_0.1001.389.0_x64__8wekyb3d8bbwe [2024-01-31] (Microsoft Corporation)
Dolby Audio -> C:\Program Files\WindowsApps\dolbylaboratories.dolbyaudio_3.20402.409.0_x64__rz1tebttyb220 [2024-01-20] (Dolby Laboratories)
Foto's (oudere versie) -> C:\Program Files\WindowsApps\Microsoft.PhotosLegacy_2023.11110.29003.0_x64__8wekyb3d8bbwe [2024-02-15] (Microsoft Corporation)
Microsoft Defender -> C:\Program Files\WindowsApps\microsoft.6365217ce6eb4_102.2311.21003.0_x64__8wekyb3d8bbwe [2024-02-18] (Microsoft Corporation) [Startup Task]
Microsoft.LegacyPhotosMediaEngineAdd-on -> C:\Program Files\WindowsApps\Microsoft.LegacyPhotosMediaEngineAdd-on_2022.2206.0.0_x64__8wekyb3d8bbwe [2024-02-01] (Microsoft Corporation)
Microsoft.WindowsAppRuntime.CBS -> C:\Windows\SystemApps\Microsoft.WindowsAppRuntime.CBS_8wekyb3d8bbwe [2024-01-20] (Microsoft Corporation)
Power Automate -> C:\Program Files\WindowsApps\Microsoft.PowerAutomateDesktop_11.2402.223.0_x64__8wekyb3d8bbwe [2024-02-16] (Microsoft Corporation) [Startup Task]
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.12.219.0_x64__dt26b99r8h8gj [2024-01-20] (Realtek Semiconductor Corp)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.19.1262.0_x64__8wekyb3d8bbwe [2024-02-07] (Microsoft Studios) [MS Ad]
Windows Feature Experience Pack -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.FileExp_cw5n1h2txyewy [2024-01-24] (Microsoft Corporation)

==================== Aangepaste CLSID (gefilterd): ==============

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)


==================== Codecs (gefilterd) ====================

==================== Snelkoppelingen & WMI ========================

==================== Geladen Modules (gefilterd) =============

2024-01-24 06:43 - 2019-10-11 15:45 - 000353280 ____C (CANON INC) [Bestand niet getekend] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\scchmpm.dll
2024-01-24 06:43 - 2019-11-01 09:16 - 000219648 ____C (CANON INC.) [Bestand niet getekend] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\cnmpu2.dll
2024-01-24 06:43 - 2019-12-05 16:17 - 000104448 ____C (CANON INC.) [Bestand niet getekend] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNS2_IMG.dll
2024-01-24 06:43 - 2019-12-05 16:17 - 000009216 ____C (CANON INC.) [Bestand niet getekend] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNS2_NLD.DLL
2020-03-29 15:47 - 2020-03-29 15:47 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2020-03-29 15:47 - 2020-03-29 15:47 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll

==================== Alternate Data Streams (gefilterd) ========

==================== Veilige Modus (gefilterd) ==================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. De waarde van "AlternateShell" wordt hersteld.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"

==================== Bestandskoppeling (gefilterd) =================

==================== Internet Explorer (gefilterd) ==========

HKU\S-1-5-21-2785639542-1252406328-114974376-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2024-02-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-02-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-02-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-02-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-02-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-02-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-02-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-02-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-02-01] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts inhoud: =========================

(Indien nodig kan Hosts:-opdracht worden opgenomen in de fixlist om Hosts te resetten.)

2019-03-19 05:49 - 2019-03-19 05:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Andere gebieden ===========================

(Momenteel is er geen automatische fix voor dit onderdeel.)

HKU\S-1-5-21-2785639542-1252406328-114974376-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is ingeschakeld.

==================== MSCONFIG/TASK MANAGER Uitgeschakelde items ==

(Als een item is opgenomen in de fixlist, zal het worden verwijderd.)

HKU\S-1-5-21-2785639542-1252406328-114974376-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_BB091E1C7C1412A0B7256BB30DA07242"
HKU\S-1-5-21-2785639542-1252406328-114974376-1001\...\StartupApproved\Run: => "OneDrive"

==================== Firewall regels (gefilterd) ================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

FirewallRules: [{0E937F8F-6C83-47FD-84E0-3EA77CF73897}] => (Allow) C:\Program Files\WindowsApps\microsoftteams_23335.205.2559.726_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{541B44BF-4782-4122-A08F-CC247BAC844D}] => (Allow) C:\Program Files\WindowsApps\microsoftteams_23335.205.2559.726_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{DB050926-92B4-4C89-B8FE-612ECC4B299F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{35BE1DED-66C2-4740-8B49-EE199C3FB04C}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{0AEB38E0-06C0-47B9-B722-769268EE97C7}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\121.0.2277.128\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Herstelpunten =========================

12-02-2024 06:13:13 Windows Update
12-02-2024 06:13:17 Windows Update
16-02-2024 02:54:49 Windows Update

==================== Defecte Apparaatbeheer Apparaten ============


==================== Eventlog fouten: ========================

Applicatiefouten:
==================
Error: (02/17/2024 11:20:07 AM) (Source: DPTF) (EventID: 17) (User: NT AUTHORITY)
Description: Event-ID 17

Error: (02/16/2024 11:04:29 AM) (Source: DPTF) (EventID: 17) (User: NT AUTHORITY)
Description: Event-ID 17

Error: (02/16/2024 08:08:12 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: )
Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {5112D24B-08FC-493E-9093-9CF28C7BC5C3}

Error: (02/15/2024 11:35:15 AM) (Source: DPTF) (EventID: 17) (User: NT AUTHORITY)
Description: Event-ID 17

Error: (02/15/2024 05:05:23 AM) (Source: DPTF) (EventID: 17) (User: NT AUTHORITY)
Description: Event-ID 17

Error: (02/14/2024 07:57:49 AM) (Source: Application Hang) (EventID: 1002) (User: NT AUTHORITY)
Description: Programma Widgets.exe versie 424.1301.2520.0 communiceert niet meer met Windows en is gesloten. Als u wilt zien of er meer informatie over het probleem beschikbaar is, controleert u de probleemgeschiedenis in het configuratiescherm van Beveiliging en onderhoud.

Error: (02/14/2024 03:00:15 AM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Naam van toepassing met fout: svchost.exe_AppXSvc, versie: 10.0.22621.1, tijdstempel: 0x6dc5c2a5
Naam van module met fout: ntdll.dll, versie: 10.0.22621.3085, tijdstempel: 0xbced4b82
Uitzonderingscode: 0xc0000409
Foutmarge: 0x00000000000a43b0
Id van proces met fout: 0x0x1ac4
Starttijd van toepassing met fout: 0x0x1da54aeb67a33ac
Pad naar toepassing met fout: C:\WINDOWS\system32\svchost.exe
Pad naar module met fout: C:\WINDOWS\SYSTEM32\ntdll.dll
Rapport-id: 2281c06b-a499-4ed3-aa6d-407f0b9b2e56
Volledige pakketnaam met fout: 
Relatieve toepassings-id van pakket met fout:

Error: (02/13/2024 12:23:10 PM) (Source: DPTF) (EventID: 17) (User: NT AUTHORITY)
Description: Event-ID 17


Systeemfouten:
=============
Error: (02/17/2024 12:11:49 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80073d02: 9WZDNCRFHVQM-MICROSOFT.WINDOWSCOMMUNICATIONSAPPS.

Error: (02/17/2024 07:27:24 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80073d02: 9WZDNCRFHVQM-MICROSOFT.WINDOWSCOMMUNICATIONSAPPS.

Error: (02/16/2024 07:48:03 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80073d02: 9WZDNCRFHVQM-MICROSOFT.WINDOWSCOMMUNICATIONSAPPS.

Error: (02/16/2024 04:12:41 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: De Google Update-service (gupdate)-service kan vanwege de volgende fout niet worden gestart: 
De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord.

Error: (02/16/2024 04:12:41 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: Google Update-service (gupdate).

Error: (02/14/2024 11:43:32 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-2MKGQKPA)
Description: De server {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd.

Error: (02/14/2024 07:57:54 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80073d02: 9NMPJ99VJBWV-Microsoft.YourPhone.

Error: (02/14/2024 07:56:57 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80073d02: 9MV0B5HZVK9Z-Microsoft.GamingApp.


Windows Defender:
================
Date: 2024-02-18 06:31:02
Description: 
Scan van Microsoft Defender Antivirus is gestopt voordat deze was voltooid.
Scan-id: {334BCA21-931F-4C8D-948A-2230EC95BD59}
Type scan: Antimalware
Scanparameters: Snelle scan
Gebruiker: NT AUTHORITY\SYSTEM 

Date: 2024-02-17 07:26:49
Description: 
Scan van Microsoft Defender Antivirus is gestopt voordat deze was voltooid.
Scan-id: {79CEFB27-D880-4C8E-8AA2-A6C0BB746B68}
Type scan: Antimalware
Scanparameters: Snelle scan
Gebruiker: NT AUTHORITY\SYSTEM 

Date: 2024-02-16 07:47:10
Description: 
Scan van Microsoft Defender Antivirus is gestopt voordat deze was voltooid.
Scan-id: {80C0CEEC-A7BB-4D42-9396-58FBFC6ACFF4}
Type scan: Antimalware
Scanparameters: Snelle scan
Gebruiker: NT AUTHORITY\SYSTEM 

Date: 2024-02-15 11:33:03
Description: 
Scan van Microsoft Defender Antivirus is gestopt voordat deze was voltooid.
Scan-id: {10C8DB36-DB82-4DFD-B617-F3ABA03A40C5}
Type scan: Antimalware
Scanparameters: Snelle scan
Gebruiker: NT AUTHORITY\SYSTEM 

Date: 2024-02-14 06:33:51
Description: 
Scan van Microsoft Defender Antivirus is gestopt voordat deze was voltooid.
Scan-id: {09E27CD2-D958-4E7C-9FBE-C286965524C7}
Type scan: Antimalware
Scanparameters: Snelle scan
Gebruiker: NT AUTHORITY\SYSTEM 

CodeIntegrity:
===============
Date: 2024-02-14 03:00:28
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\fcon.dll because the set of per-page image hashes could not be found on the system. 

Date: 2024-02-14 03:00:25
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\SystemSettings.DataModel.dll because the set of per-page image hashes could not be found on the system. 

Date: 2024-01-20 04:34:11
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements. 


==================== Geheugen info =========================== 

BIOS: LENOVO DKCN55WW 05/24/2022
Moederbord: LENOVO LNVNB161216
Processor: Intel(R) Core(TM) i5-1035G1 CPU @ 1.00GHz
Percentage geheugen in gebruik: 57%
Totaal fysiek RAM-geheugen: 12083.24 MB
Beschikbaar fysiek RAM-geheugen: 5190.11 MB
Totaal Virtueel geheugen: 13939.24 MB
Beschikbaar Virtueel geheugen: 6112.54 MB

==================== Schijven ================================

Drive 😄 (Windows-SSD) (Fixed) (Total:475.69 GB) (Free:208.46 GB) (Model: WDC PC SN520 SDAPMUW-512G-1101) NTFS

\\?\Volume{ed247b8d-5507-48e7-9f76-22a451d51c40}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.07 GB) NTFS
\\?\Volume{5780107a-8fb8-433b-8953-682523fe4e8c}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partitietabel ====================

==========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: 0589B5FE)

Partition: GPT.

==================== Einde van Addition.txt =======================

 

 

Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 16.02.2024
Gestart door Alain (Beheerder) op LAPTOP-2MKGQKPA (LENOVO 81W8) (18-02-2024 10:03:17)
Gestart vanaf C:\Users\Alain\Downloads\FRST64.exe
Geladen Profielen: Alain
Platform: Microsoft Windows 11 Home Versie 23H2 22631.3155 (X64) Taal: Nederlands (Nederland)
Standaardbrowser: Chrome
Boot Modus: Normal

==================== Processen (gefilterd) =================

(Als een item is opgenomen in de fixlist, zal het proces worden gesloten. Het bestand zal niet worden verplaatst.)

(C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_424.1301.140.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\121.0.2277.128\msedgewebview2.exe <6>
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxEMN.exe
(ETDCtrl.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDTouch.exe
(ETDService.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrl.exe
(ETDService.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrlHelper.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <30>
(LNBITSSvc.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\AutoModeDetect.exe
(services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(services.exe ->) (Dolby Laboratories, Inc. -> ) C:\Windows\System32\dolbyaposvc\DAX3API.exe <2>
(services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4a3ae74cfa6c37d6\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_4b31d9b38e2bb506\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_0b214be229a13e84\jhi_service.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_c98d5e0dfc88ac2f\RstMwService.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\LenovoVantageService.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(services.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\LNBITSSvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(svchost.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5336.0_x64__8j3eq9eme6ctt\IGCC.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2401.1001.10.0_x64__8wekyb3d8bbwe\XboxGameBarWidgets.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21812.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21812.0_x64__8wekyb3d8bbwe\HxTsr.exe
(svchost.exe ->) (Microsoft Windows -> ) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_424.1301.140.0_x64__cw5n1h2txyewy\Dashboard\WidgetService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe

==================== Register (gefilterd) ===================

(Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1085224 2020-06-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [278440 2019-12-05] (Canon Inc. -> CANON INC.)
HKLM\...\RunOnce: [msedge_cleanup_{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}] => C:\Program Files (x86)\Microsoft\EdgeWebView\Application\121.0.2277.128\Installer\setup.exe [6910912 2024-02-17] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2785639542-1252406328-114974376-1001\...\Run: [MicrosoftEdgeAutoLaunch_BB091E1C7C1412A0B7256BB30DA07242] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [3788240 2024-02-15] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2785639542-1252406328-114974376-1001\...\RunOnce: [Uninstall 24.015.0121.0003] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Alain\AppData\Local\Microsoft\OneDrive\24.015.0121.0003" [0 2024-02-16] () <==== AANDACHT [nul byte bestand/map]
HKLM\...\Windows x64\Print Processors\Canon TR4600 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDHJ.DLL [543744 2021-07-11] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor TR4600 series: C:\WINDOWS\system32\CNCALHJ.DLL [266752 2021-03-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TR4600 series: C:\WINDOWS\system32\CNMLMHJ.DLL [989184 2021-07-11] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\121.0.6167.185\Installer\chrmstp.exe [2024-02-16] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> 

==================== Geplande Taken (gefilterd) =================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

Task: {B7318C4F-1892-4E13-8868-66C6C672957C} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem123.0.6288.0{8B7DF03B-0FE1-4901-B276-D112CAE3CD35} => C:\Program Files (x86)\Google\GoogleUpdater\123.0.6288.0\updater.exe [4682528 2024-02-08] (Google LLC -> Google LLC) <==== AANDACHT
Task: {A270E7DC-E94C-4CE0-BB5C-6B6E9E90561D} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [74952 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {0C284A66-ACE0-4994-A3CE-568D2B7C0C0E} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => C:\WINDOWS\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> START ImControllerService
Task: {4A3FB902-65C4-46EB-A9B4-607F445982D2} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => C:\WINDOWS\System32\reg.exe [102400 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {E304B22E-3ECD-4F1D-869D-AE57520B949C} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\02cce6f1-7194-4c99-8363-cee62c61a517 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {BA46E4A3-D0E7-4B3C-B470-389EA992FAEC} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\0e5e5636-526b-470f-85f9-3f9be25d38fc => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {4E01FE61-B881-4860-911F-97B7CB2AC706} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\11ff2218-fb64-4ae2-8421-10ea88c7072a => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {B8478D7D-D55B-4B10-98BD-6DE794FCC679} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\3e96775c-4b31-4e4d-afc7-6204135bbfa9 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {114B42FA-FDB3-496A-85E1-495BA93CB25A} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\448d9996-f29c-4d81-95f9-4c5c3c8ea93d => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {3DEB9620-8376-4F57-840B-1F924ACFD256} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => C:\WINDOWS\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> start LenovoVantageService
Task: {7C584D4F-5B2A-4F50-88C0-83D99547404D} - System32\Tasks\LenovoUtility Startup => C:\Windows\explorer.exe [5356504 2024-02-16] (Microsoft Windows -> Microsoft Corporation)
Task: {1DC37E38-EC08-4A06-A2AE-D7BC60F18FDD} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28371568 2024-01-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {4062DC7C-AB3E-495D-9797-CCF5BA63F814} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28371568 2024-01-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {EDF5E503-705A-40DF-902F-B179460659FC} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [306352 2024-02-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {8414050E-6E89-41DB-A93C-AD4C55E2CE32} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [306352 2024-02-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {F2EFDEE9-A4E7-42DD-8013-0C0B287B072C} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [170128 2024-02-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {45CF73C8-9A94-47C5-8E45-347738A58FC5} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe  (Geen bestand)
Task: {DAC4143C-BD1D-45BD-A4ED-82ED8D80BB8C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe  (Geen bestand)
Task: {947D7190-C38C-42B9-902B-5DC22E9967EA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2024-01-20] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {0190F5BF-657E-4E2D-88E8-66AAF225A842} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2024-01-20] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {872871D7-67A8-4A3D-A23E-D2B230FCEB3B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2024-01-20] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {94907176-12DE-4CF0-B2A5-8AD183DAE942} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2024-01-20] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {06FEF118-1E47-4CD0-8CA1-3F23A5249FEF} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2785639542-1252406328-114974376-500 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe  (Geen bestand)

(Als een item is opgenomen in de fixlist, wordt de taak (job) bestand verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.)


==================== Internet (gefilterd) ====================

(Als een item is opgenomen in de fixlist en een registeritem is, wordt het verwijderd of hersteld naar de standaard.)

Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{498d07a5-ade3-41da-8caf-a154389176d9}: [DhcpNameServer] 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{82137533-ffd8-429d-955b-598eb0211dff}: [DhcpNameServer] 150.209.1.2

Edge: 
=======
Edge Profile: C:\Users\Alain\AppData\Local\Microsoft\Edge\User Data\Default [2024-02-16]
Edge HomePage: Default -> hxxps://www.bing.com/?FORM=Z9FD1
Edge StartupUrls: Default -> "hxxps://www.bing.com/?FORM=Z9FD1"
Edge Extension: (Offline Documenten) - C:\Users\Alain\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-20]
Edge Extension: (Pastebin.com) - C:\Users\Alain\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghipmampnddcpdlppkkamoankmkmcbmh [2024-01-24]
Edge Extension: (Adblock Plus - gratis adblocker) - C:\Users\Alain\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2024-02-07]
Edge Extension: (Edge relevant text changes) - C:\Users\Alain\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-02-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-02-01] (Microsoft Corporation -> Microsoft Corporation)

Chrome: 
=======
CHR Profile: C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default [2024-02-18]
CHR Notifications: Default -> hxxps://calendar.google.com; hxxps://www.youtube.com
CHR HomePage: Default -> hxxps://bing.com/
CHR StartupUrls: Default -> "hxxps://bing.com/","hxxps://bing.com/"
CHR DefaultSearchURL: Default -> hxxps://www.bing.com/search?q={searchTerms}&PC=U316&FORM=CHROMN
CHR DefaultSearchKeyword: Default -> hxxp://www.bing.com
CHR DefaultNewTabURL: Default -> hxxps://www.bing.com/chrome/newtab
CHR DefaultSuggestURL: Default -> hxxps://www.bing.com/osjson.aspx?query={searchTerms}&language={language}&PC=U316
CHR Extension: (Google Translate) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2024-01-20]
CHR Extension: (Donker Thema voor Google Chrome) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\annfbnbieaamhaimclajlajpijgkdblo [2024-01-24]
CHR Extension: (eID Chrome Extension) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkbdaodnaecdijpajecpncpdomgcoakc [2024-01-20]
CHR Extension: (Adblock voor Youtube™) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2024-01-20]
CHR Extension: (SimpleLogin:Receive & Send emails anonymously) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\dphilobhebphkdjbpfohgikllaljmgbn [2024-02-17]
CHR Extension: (Adobe Acrobat: tools voor PDF's bewerken, converteren en ondertekenen) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2024-02-09]
CHR Extension: (Trusted Shops-extensie voor Google Chrome) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcpnemckonbbmnoakbjgjkgokkbaeo [2024-02-06]
CHR Extension: (AdBlock Max - advertentie blokeerder) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggdpplfehdighdpleoegjefnpefgpgfh [2024-01-20]
CHR Extension: (Offline Documenten) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-02-17]
CHR Extension: (Klarna | Shop nu. Betaal later.) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfapbcheiepjppjbnkphkmegjlipojba [2024-01-27]
CHR Extension: (Connective signing extension) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\kclpjmhngbacampgcdojmiedamjbgjjm [2024-01-20]
CHR Extension: (AntumID MyDigiPassword) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkabnooiepelolejnmeclfklkadiojhd [2024-01-20]
CHR Extension: (Promojagers.be Extension) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfdcnacbhjonmghbbnadkjcejbdlnaep [2024-01-20]
CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-01-20]

==================== Services (gefilterd) ===================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14045768 2024-01-29] (Microsoft Corporation -> Microsoft Corporation)
R2 DolbyDAXAPI; C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe [1646536 2019-06-16] (Dolby Laboratories, Inc. -> )
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [376800 2019-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
S2 GoogleUpdaterInternalService123.0.6288.0; C:\Program Files (x86)\Google\GoogleUpdater\123.0.6288.0\updater.exe [4682528 2024-02-08] (Google LLC -> Google LLC) <==== AANDACHT
S2 GoogleUpdaterService123.0.6288.0; C:\Program Files (x86)\Google\GoogleUpdater\123.0.6288.0\updater.exe [4682528 2024-02-08] (Google LLC -> Google LLC) <==== AANDACHT
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [446328 2023-09-13] (Canon Inc. -> )
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\LenovoVantageService.exe [16648 2019-11-21] (Lenovo -> Lenovo Group Ltd.)
R2 LITSSVC; C:\WINDOWS\System32\LNBITSSvc.exe [1831672 2022-08-17] (Lenovo -> Lenovo(beijing) Limited)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2024-01-20] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2024-01-20] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (gefilterd) ===================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 googledrivefs31357; C:\WINDOWS\System32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys [384712 2023-11-01] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R3 MpKsl0a51a7b4; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4080FFD0-E155-4125-86E8-5E027EBC1D55}\MpKslDrv.sys [272664 2024-02-18] (Microsoft Windows -> Microsoft Corporation)
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [76832 2022-09-30] (Samsung Electronics CO., LTD. -> QUALCOMM Incorporated)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2024-01-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [594304 2024-01-20] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105856 2024-01-20] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (gefilterd) ===================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)


==================== Een maand (aangemaakt) (gefilterd) =========

(Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.)

2024-02-18 10:03 - 2024-02-18 10:03 - 000022323 ____C C:\Users\Alain\Downloads\FRST.txt
2024-02-18 09:55 - 2024-02-18 10:03 - 000000000 ___DC C:\FRST
2024-02-18 09:53 - 2024-02-18 09:53 - 002390016 ____C (Farbar) C:\Users\Alain\Downloads\FRST64.exe
2024-02-16 09:54 - 2024-02-16 09:54 - 000047721 ____C C:\Users\Alain\Downloads\Verklaring voor Ateff, Ana en Noah.pdf
2024-02-16 04:14 - 2024-02-16 04:14 - 000767158 ____C C:\WINDOWS\system32\perfh013.dat
2024-02-16 04:14 - 2024-02-16 04:14 - 000152606 ____C C:\WINDOWS\system32\perfc013.dat
2024-02-09 02:29 - 2024-02-16 08:13 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\Excel
2024-02-06 06:46 - 2024-02-06 06:46 - 000020068 ____C C:\Users\Alain\Downloads\naughtybeffer@gmail.com.ical.zip
2024-02-03 07:11 - 2024-02-03 07:11 - 000519758 ____C C:\Users\Alain\Downloads\E2400509837.pdf
2024-02-02 06:03 - 2024-02-02 06:03 - 000000000 ___DC C:\Program Files\Common Files\DESIGNER
2024-02-01 03:40 - 2024-02-01 03:47 - 000000000 ___DC C:\Program Files\PowerShell
2024-02-01 02:33 - 2024-02-16 04:10 - 000001607 ____C C:\WINDOWS\system32\config\VSMIDK
2024-02-01 02:30 - 2024-02-01 02:30 - 000001447 ____C C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\4K YouTube to MP3.lnk
2024-01-31 07:11 - 2024-01-31 07:12 - 248571400 ____C (DJ.Studio BV) C:\Users\Alain\Downloads\DJ.Studio Setup 2.6.11.exe
2024-01-30 02:14 - 2024-01-30 02:14 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\MMC
2024-01-29 06:10 - 2024-01-29 06:10 - 000001356 ____C C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2024-01-29 06:10 - 2024-01-29 06:10 - 000000000 ___DC C:\Users\Alain\AppData\Local\PCHealthCheck
2024-01-29 03:47 - 2024-01-29 03:47 - 000323091 ____C C:\Users\Alain\Downloads\N2300012483.pdf
2024-01-28 02:52 - 2024-01-28 02:52 - 013732492 ____C C:\Users\Alain\Downloads\SaRACmd_17_01_0987_011 (1).zip
2024-01-28 02:49 - 2024-01-28 02:49 - 000000000 ___DC C:\Users\Alain\Downloads\OutlookAdvancedDiagnostics-with-SaRACmdLine
2024-01-28 02:48 - 2024-01-28 02:48 - 000005370 ____C C:\Users\Alain\Downloads\OutlookAdvancedDiagnostics-with-SaRACmdLine.zip
2024-01-28 02:47 - 2024-01-28 02:47 - 000000000 ___DC C:\Users\Alain\Downloads\SaRACmd_17_01_0987_011
2024-01-28 02:46 - 2024-01-28 02:47 - 013732492 ____C C:\Users\Alain\Downloads\SaRACmd_17_01_0987_011.zip
2024-01-28 02:26 - 2024-01-28 03:04 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\Outlook
2024-01-26 03:16 - 2024-01-28 02:55 - 000000000 ___DC C:\Users\Alain\AppData\Local\SaRALogs
2024-01-26 03:15 - 2024-01-28 02:41 - 000000000 ___DC C:\Users\Alain\AppData\Local\Deployment
2024-01-25 10:22 - 2024-02-01 02:24 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\4kdownload.com
2024-01-25 01:55 - 2024-02-16 10:06 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\UProof
2024-01-25 01:55 - 2024-02-16 08:13 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\Word
2024-01-25 01:55 - 2024-01-25 01:55 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\Proof
2024-01-25 01:55 - 2024-01-25 01:55 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\Office
2024-01-25 01:55 - 2024-01-25 01:55 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\AddIns
2024-01-24 08:55 - 2024-01-24 08:55 - 000001549 ____C C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\4K Video Downloader+.lnk
2024-01-24 08:43 - 2024-01-24 08:43 - 000000996 ____C C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4K Video Downloader+.lnk
2024-01-24 08:42 - 2024-01-24 08:49 - 000000000 ___DC C:\Users\Alain\AppData\Local\4kdownload.com
2024-01-24 08:40 - 2024-01-24 08:43 - 000000000 ___DC C:\Program Files\4KDownload
2024-01-24 08:40 - 2024-01-24 08:40 - 000000914 ____C C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4K YouTube to MP3.lnk
2024-01-24 08:39 - 2024-01-24 08:39 - 000965472 ____C (Open Media LLC) C:\Users\Alain\Downloads\4kvideodownloaderplus_1.4.0_x64_online.exe
2024-01-24 08:39 - 2024-01-24 08:39 - 000773536 ____C (Open Media LLC) C:\Users\Alain\Downloads\4kyoutubetomp3_5.1.0_x64_online.exe
2024-01-24 06:44 - 2024-01-24 06:44 - 000000000 ___DC C:\Program Files\Canon
2024-01-24 06:43 - 2024-01-24 06:43 - 000000000 __HDC C:\ProgramData\CanonBJ
2024-01-24 06:42 - 2024-01-24 06:42 - 000000000 __HDC C:\Program Files\CanonBJ
2024-01-24 06:41 - 2024-02-03 06:12 - 000000000 ___DC C:\ProgramData\CanonIJPLM
2024-01-24 06:41 - 2024-01-24 07:01 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Canon
2024-01-24 06:41 - 2024-01-24 06:44 - 000000000 ___DC C:\Program Files (x86)\Canon
2024-01-24 06:41 - 2024-01-24 06:41 - 000000000 ___DC C:\Users\Alain\Downloads\mas2-win-102_0_5-ea34_2
2024-01-24 06:41 - 2024-01-24 06:41 - 000000000 ___DC C:\ProgramData\Canon
2024-01-24 06:40 - 2024-01-24 06:40 - 009891608 ____C C:\Users\Alain\Downloads\mas2-win-102_0_5-ea34_2.exe
2024-01-24 06:10 - 2024-01-24 06:10 - 000000000 __HDC C:\ProgramData\CanonIJFAX
2024-01-24 06:06 - 2024-01-27 11:43 - 000000000 ___DC C:\Users\Alain\AppData\Local\ElevatedDiagnostics
2024-01-24 04:38 - 2024-01-24 04:38 - 000019222 ____C C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-01-24 04:38 - 2024-01-24 04:38 - 000019222 ____C C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2024-01-21 03:55 - 2024-01-21 03:55 - 000000000 ___DC C:\Users\Alain\AppData\Local\Backup
2024-01-20 09:14 - 2024-01-20 09:14 - 000000000 ___DC C:\Program Files\Microsoft Update Health Tools
2024-01-20 09:12 - 2024-02-16 03:55 - 000000000 ___DC C:\WINDOWS\system32\MRT
2024-01-20 04:50 - 2024-01-20 05:53 - 000000000 ___DC C:\Users\Alain\AppData\Local\Comms
2024-01-20 04:49 - 2024-01-20 04:49 - 000000000 ___DC C:\Users\Alain\AppData\Local\VirtualStore
2024-01-20 04:37 - 2024-01-20 04:37 - 000000000 ___DC C:\WINDOWS\system32\Tasks\GoogleSystem
2024-01-20 04:33 - 2024-02-16 01:12 - 000002278 ____C C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-01-20 04:33 - 2024-01-20 04:34 - 000000000 ___DC C:\Users\Alain\AppData\Local\Publishers
2024-01-20 04:33 - 2024-01-20 04:33 - 000000000 ___DC C:\Users\Alain\AppData\Local\Google
2024-01-20 04:32 - 2024-01-20 04:32 - 000000000 ___DC C:\Program Files\Google
2024-01-20 04:31 - 2024-01-20 04:37 - 000000000 ___DC C:\Program Files (x86)\Google
2024-01-20 04:27 - 2024-01-20 04:27 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\Network
2024-01-20 04:27 - 2024-01-20 04:27 - 000000000 ___DC C:\Users\Alain\AppData\Local\OneDrive
2024-01-20 04:20 - 2024-01-20 04:20 - 000000000 ___DC C:\Users\Alain\AppData\Local\Lenovo
2024-01-20 04:19 - 2024-02-16 04:38 - 000000000 ___DC C:\Users\Alain\AppData\Local\D3DSCache
2024-01-20 04:18 - 2024-02-01 03:00 - 000000000 ___DC C:\Users\Alain\AppData\Local\PlaceholderTileLogoFolder
2024-01-20 04:18 - 2024-01-20 04:18 - 000000000 ___DC C:\ProgramData\Microsoft OneDrive
2024-01-20 04:17 - 2024-02-16 10:06 - 000000000 ___DC C:\Users\Alain\AppData\Local\Packages
2024-01-20 04:17 - 2024-01-29 06:16 - 000000000 ___DC C:\ProgramData\Packages
2024-01-20 04:17 - 2024-01-26 03:15 - 000000000 ___DC C:\Users\Alain\AppData\Local\Apps\2.0
2024-01-20 04:17 - 2024-01-24 04:44 - 000000000 ___DC C:\Users\Alain\AppData\Local\ConnectedDevicesPlatform
2024-01-20 04:17 - 2024-01-20 04:17 - 000000020 __SHC C:\Users\Alain\ntuser.ini
2024-01-20 04:17 - 2024-01-20 04:17 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Adobe
2024-01-20 04:12 - 2024-02-16 04:14 - 001712192 ____C C:\WINDOWS\system32\PerfStringBackup.INI
2024-01-20 04:09 - 2024-02-02 00:15 - 000003806 ____C C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{58F80CE5-CFF4-47A9-B1D8-E6801163FF6B}
2024-01-20 04:09 - 2024-02-02 00:15 - 000003682 ____C C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{75943149-1FC5-4F7A-9C98-8CFB298A9E28}
2024-01-20 04:08 - 2024-02-16 04:10 - 000000006 ___HC C:\WINDOWS\Tasks\SA.DAT
2024-01-20 04:08 - 2024-01-20 05:49 - 000000000 ___DC C:\WINDOWS\system32\Tasks\Lenovo
2024-01-20 04:08 - 2024-01-20 04:55 - 000000000 ___DC C:\WINDOWS\system32\Tasks\McAfee
2024-01-20 04:08 - 2024-01-20 04:08 - 000004030 ____C C:\WINDOWS\system32\Tasks\LenovoUtility Startup
2024-01-20 04:08 - 2024-01-20 04:08 - 000002852 ____C C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2785639542-1252406328-114974376-500
2024-01-20 04:08 - 2024-01-20 04:08 - 000000000 SHDCL C:\Users\Default\AppData\Local\Geschiedenis
2024-01-20 04:08 - 2024-01-20 04:08 - 000000000 SHDCL C:\Users\Default User
2024-01-20 04:08 - 2024-01-20 04:08 - 000000000 SHDCL C:\Users\All Users
2024-01-20 04:08 - 2024-01-20 04:08 - 000000000 SHDCL C:\ProgramData\Sjablonen
2024-01-20 04:08 - 2024-01-20 04:08 - 000000000 SHDCL C:\ProgramData\Menu Start
2024-01-20 04:08 - 2024-01-20 04:08 - 000000000 SHDCL C:\ProgramData\Documenten
2024-01-20 04:08 - 2024-01-20 04:08 - 000000000 SHDCL C:\ProgramData\Bureaublad
2024-01-20 04:08 - 2020-03-29 15:41 - 000002852 ____C C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-666435117-3194074887-4211948032-500
2024-01-20 04:08 - 2019-10-17 05:12 - 000003388 ____C C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3354727278-81800435-1074778100-500
2024-01-20 04:07 - 2024-01-20 04:07 - 000000000 ___DC C:\Users\Default\AppData\Roaming\Microsoft\Network
2024-01-20 04:07 - 2024-01-20 04:07 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\SystemCertificates
2024-01-20 04:07 - 2024-01-20 04:07 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\Crypto
2024-01-20 04:05 - 2024-02-16 04:11 - 000000000 ___DC C:\Users\Alain
2024-01-20 04:05 - 2024-02-01 03:35 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\Windows
2024-01-20 04:05 - 2024-01-24 05:14 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\Spelling
2024-01-20 04:05 - 2024-01-20 04:05 - 000000000 SHDCL C:\Users\Alain\Sjablonen
2024-01-20 04:05 - 2024-01-20 04:05 - 000000000 SHDCL C:\Users\Alain\Netwerkprinteromgeving
2024-01-20 04:05 - 2024-01-20 04:05 - 000000000 SHDCL C:\Users\Alain\Mijn documenten
2024-01-20 04:05 - 2024-01-20 04:05 - 000000000 SHDCL C:\Users\Alain\Menu Start
2024-01-20 04:05 - 2024-01-20 04:05 - 000000000 SHDCL C:\Users\Alain\Documents\Mijn video's
2024-01-20 04:05 - 2024-01-20 04:05 - 000000000 SHDCL C:\Users\Alain\Documents\Mijn muziek
2024-01-20 04:05 - 2024-01-20 04:05 - 000000000 SHDCL C:\Users\Alain\Documents\Mijn afbeeldingen
2024-01-20 04:05 - 2024-01-20 04:05 - 000000000 SHDCL C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's
2024-01-20 04:05 - 2024-01-20 04:05 - 000000000 SHDCL C:\Users\Alain\AppData\Local\Geschiedenis
2024-01-20 04:00 - 2024-02-17 18:21 - 000002459 ____C C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-01-20 04:00 - 2024-02-16 04:10 - 000000134 ____C C:\WINDOWS\system32\regtest.txt
2024-01-20 04:00 - 2024-02-15 11:35 - 000000000 ___DC C:\WINDOWS\system32\SleepStudy
2024-01-20 04:00 - 2024-01-20 04:04 - 000000000 ___DC C:\ProgramData\Lenovo
2024-01-20 04:00 - 2024-01-20 04:03 - 000000000 ___DC C:\ProgramData\Intel
2024-01-20 04:00 - 2024-01-20 04:00 - 000000000 ___DC C:\WINDOWS\system32\dolbyaposvc
2024-01-20 04:00 - 2024-01-20 04:00 - 000000000 ___DC C:\WINDOWS\system32\config\BFS
2024-01-20 04:00 - 2024-01-20 04:00 - 000000000 ___DC C:\ProgramData\Realtek
2024-01-20 04:00 - 2024-01-20 04:00 - 000000000 ___DC C:\Program Files\Common Files\Dolby
2024-01-20 03:59 - 2024-01-24 04:43 - 000296192 ____C C:\WINDOWS\system32\FNTCACHE.DAT
2024-01-20 03:54 - 2015-04-28 19:06 - 000043256 ____C C:\WINDOWS\system32\oemlogo.bmp
2024-01-20 03:53 - 2024-01-20 04:12 - 000000000 ___DC C:\WINDOWS\Panther
2024-01-20 03:53 - 2024-01-20 04:12 - 000000000 ___DC C:\Windows.old
2024-01-20 03:53 - 2021-03-14 16:25 - 000000742 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10-updateassistent.lnk
2024-01-20 03:53 - 2021-02-09 16:41 - 000000742 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10 Update Assistant.lnk
2024-01-20 03:52 - 2024-01-20 03:53 - 000000000 ___DC C:\WINDOWS\ServiceProfiles
2024-01-20 03:51 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\system32\Intel
2024-01-20 03:51 - 2024-01-20 03:51 - 000000000 ___DC C:\WINDOWS\system32\cAVS
2024-01-20 03:50 - 2024-01-20 03:50 - 000000000 ___DC C:\WINDOWS\Firmware
2024-01-20 03:49 - 2024-01-20 03:49 - 000000000 ___DC C:\WINDOWS\Lenovo
2024-01-20 03:48 - 2024-01-20 03:48 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2024-01-20 03:47 - 2024-01-20 04:12 - 000000000 ___DC C:\WINDOWS\system32\FxsTmp
2024-01-20 03:47 - 2024-01-20 03:53 - 000000000 ___DC C:\WINDOWS\Setup
2024-01-20 03:47 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2024-01-20 03:47 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\SysWOW64\FxsTmp
2024-01-20 03:47 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\system32\OpenSSH
2024-01-20 03:47 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\system32\MailContactsCalendarSync
2024-01-20 03:47 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\addins
2024-01-20 03:47 - 2024-01-20 03:47 - 000000000 ___DC C:\ProgramData\ssh
2024-01-20 03:46 - 2024-01-20 03:46 - 000000000 ___DC C:\WINDOWS\SysWOW64\nl
2024-01-20 03:46 - 2024-01-20 03:46 - 000000000 ___DC C:\WINDOWS\system32\nl
2024-01-20 03:45 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\SysWOW64\winrm
2024-01-20 03:45 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\SysWOW64\WCN
2024-01-20 03:45 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\SysWOW64\slmgr
2024-01-20 03:45 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2024-01-20 03:45 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\system32\winrm
2024-01-20 03:45 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\system32\WCN
2024-01-20 03:45 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\system32\slmgr
2024-01-20 03:45 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\system32\Printing_Admin_Scripts
2024-01-20 03:45 - 2024-01-20 03:45 - 000000000 ___DC C:\WINDOWS\SysWOW64\sysprep
2024-01-20 03:45 - 2024-01-20 03:45 - 000000000 ___DC C:\WINDOWS\SysWOW64\0409
2024-01-20 03:45 - 2024-01-20 03:45 - 000000000 ___DC C:\WINDOWS\system32\0409
2024-01-20 03:45 - 2024-01-20 03:45 - 000000000 ___DC C:\WINDOWS\DigitalLocker
2024-01-20 03:42 - 2024-02-18 10:04 - 000000000 ___DC C:\ProgramData\regid.1991-06.com.microsoft
2024-01-20 03:42 - 2024-02-18 09:55 - 000000000 ___DC C:\WINDOWS\SystemTemp
2024-01-20 03:42 - 2024-02-18 05:54 - 000000000 ___DC C:\WINDOWS\AppReadiness
2024-01-20 03:42 - 2024-02-17 18:21 - 000000000 __HDC C:\Program Files\WindowsApps
2024-01-20 03:42 - 2024-02-16 04:25 - 000000000 ___DC C:\ProgramData\USOPrivate
2024-01-20 03:42 - 2024-02-16 04:10 - 000000000 ___DC C:\WINDOWS\ServiceState
2024-01-20 03:42 - 2024-02-16 04:09 - 000000000 __RDC C:\WINDOWS\ImmersiveControlPanel
2024-01-20 03:42 - 2024-02-16 04:09 - 000000000 ___DC C:\WINDOWS\SystemResources
2024-01-20 03:42 - 2024-02-16 04:09 - 000000000 ___DC C:\WINDOWS\system32\Sgrm
2024-01-20 03:42 - 2024-02-16 04:09 - 000000000 ___DC C:\WINDOWS\system32\Microsoft-Edge-WebView
2024-01-20 03:42 - 2024-02-16 04:09 - 000000000 ___DC C:\WINDOWS\bcastdvr
2024-01-20 03:42 - 2024-02-05 06:38 - 000000000 ___DC C:\WINDOWS\system32\NDF
2024-01-20 03:42 - 2024-01-24 06:43 - 000000000 ___DC C:\WINDOWS\Media
2024-01-20 03:42 - 2024-01-24 06:41 - 000000000 __RDC C:\Program Files (x86)
2024-01-20 03:42 - 2024-01-24 04:42 - 000000000 ___DC C:\WINDOWS\UUS
2024-01-20 03:42 - 2024-01-24 04:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\WinMetadata
2024-01-20 03:42 - 2024-01-24 04:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\setup
2024-01-20 03:42 - 2024-01-24 04:42 - 000000000 ___DC C:\WINDOWS\system32\WinMetadata
2024-01-20 03:42 - 2024-01-24 04:42 - 000000000 ___DC C:\WINDOWS\system32\setup
2024-01-20 03:42 - 2024-01-24 04:42 - 000000000 ___DC C:\WINDOWS\system32\SecureBootUpdates
2024-01-20 03:42 - 2024-01-24 04:42 - 000000000 ___DC C:\WINDOWS\system32\oobe
2024-01-20 03:42 - 2024-01-24 04:42 - 000000000 ___DC C:\WINDOWS\system32\appraiser
2024-01-20 03:42 - 2024-01-24 04:42 - 000000000 ___DC C:\WINDOWS\ShellComponents
2024-01-20 03:42 - 2024-01-24 04:42 - 000000000 ___DC C:\WINDOWS\Provisioning
2024-01-20 03:42 - 2024-01-24 04:42 - 000000000 ___DC C:\WINDOWS\BrowserCore
2024-01-20 03:42 - 2024-01-22 11:26 - 000000000 ___DC C:\Program Files\Common Files\microsoft shared
2024-01-20 03:42 - 2024-01-22 03:51 - 000000000 ___DC C:\WINDOWS\system32\SecurityHealth
2024-01-20 03:42 - 2024-01-21 03:54 - 000000000 ___DC C:\WINDOWS\appcompat
2024-01-20 03:42 - 2024-01-20 06:17 - 000000000 ___DC C:\Program Files\Windows Defender
2024-01-20 03:42 - 2024-01-20 04:33 - 000000000 __RDC C:\WINDOWS\PrintDialog
2024-01-20 03:42 - 2024-01-20 04:09 - 000000000 ___DC C:\WINDOWS\system32\spool
2024-01-20 03:42 - 2024-01-20 04:09 - 000000000 ___DC C:\WINDOWS\system32\AppLocker
2024-01-20 03:42 - 2024-01-20 04:08 - 000000000 ___DC C:\Program Files\Windows NT
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 __SDC C:\WINDOWS\SysWOW64\F12
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 __SDC C:\WINDOWS\SysWOW64\DiagSvcs
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 __SDC C:\WINDOWS\system32\F12
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 __SDC C:\WINDOWS\system32\dsc
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 __SDC C:\WINDOWS\system32\DiagSvcs
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\WaaS
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\SysWOW64\oobe
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\SysWOW64\Dism
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\system32\WinBioPlugIns
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\system32\SystemResetPlatform
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\system32\PerceptionSimulation
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\system32\Dism
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\PolicyDefinitions
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\OCR
2024-01-20 03:42 - 2024-01-20 04:04 - 000000000 ___DC C:\WINDOWS\IME
2024-01-20 03:42 - 2024-01-20 04:03 - 000000000 ___DC C:\Program Files\Windows Photo Viewer
2024-01-20 03:42 - 2024-01-20 04:03 - 000000000 ___DC C:\Program Files\Common Files\System
2024-01-20 03:42 - 2024-01-20 04:03 - 000000000 ___DC C:\Program Files (x86)\Windows Photo Viewer
2024-01-20 03:42 - 2024-01-20 04:02 - 000000000 ___DC C:\Users\Default\AppData\Roaming\Microsoft\Windows
2024-01-20 03:42 - 2024-01-20 04:00 - 000000000 ___DC C:\WINDOWS\system32\Drivers\DriverData
2024-01-20 03:42 - 2024-01-20 03:59 - 000000000 ___DC C:\WINDOWS\system32\config\TxR
2024-01-20 03:42 - 2024-01-20 03:53 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2024-01-20 03:42 - 2024-01-20 03:53 - 000000000 _RHDC C:\Users\Public\Libraries
2024-01-20 03:42 - 2024-01-20 03:53 - 000000000 ___DC C:\WINDOWS\system32\WinBioDatabase
2024-01-20 03:42 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\SysWOW64\vi-VN
2024-01-20 03:42 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\SysWOW64\id-ID
2024-01-20 03:42 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\SysWOW64\gl-ES
2024-01-20 03:42 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\SysWOW64\eu-ES
2024-01-20 03:42 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\SysWOW64\ca-ES
2024-01-20 03:42 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\system32\vi-VN
2024-01-20 03:42 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\system32\id-ID
2024-01-20 03:42 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\system32\gl-ES
2024-01-20 03:42 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\system32\eu-ES
2024-01-20 03:42 - 2024-01-20 03:47 - 000000000 ___DC C:\WINDOWS\system32\ca-ES
2024-01-20 03:42 - 2024-01-20 03:46 - 000000000 ___DC C:\WINDOWS\SysWOW64\Com
2024-01-20 03:42 - 2024-01-20 03:46 - 000000000 ___DC C:\WINDOWS\system32\Sysprep
2024-01-20 03:42 - 2024-01-20 03:46 - 000000000 ___DC C:\WINDOWS\system32\migwiz
2024-01-20 03:42 - 2024-01-20 03:46 - 000000000 ___DC C:\WINDOWS\system32\Com
2024-01-20 03:42 - 2024-01-20 03:46 - 000000000 ___DC C:\Program Files (x86)\Windows Defender
2024-01-20 03:42 - 2024-01-20 03:45 - 000000000 ___DC C:\WINDOWS\SysWOW64\MUI
2024-01-20 03:42 - 2024-01-20 03:45 - 000000000 ___DC C:\WINDOWS\system32\MUI
2024-01-20 03:42 - 2024-01-20 03:45 - 000000000 ___DC C:\WINDOWS\Help
2024-01-20 03:42 - 2024-01-20 03:45 - 000000000 ___DC C:\Program Files (x86)\Windows NT
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 _SHDC C:\Program Files\Windows Sidebar
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 _SHDC C:\Program Files (x86)\Windows Sidebar
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 __SDC C:\WINDOWS\SysWOW64\Nui
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 __SDC C:\WINDOWS\SysWOW64\lxss
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 __SDC C:\WINDOWS\SysWOW64\Configuration
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 __SDC C:\WINDOWS\system32\UNP
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 __SDC C:\WINDOWS\system32\Nui
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 __SDC C:\WINDOWS\system32\lxss
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 __SDC C:\WINDOWS\system32\Configuration
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 __SDC C:\WINDOWS\Downloaded Program Files
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 __RDC C:\WINDOWS\Offline Web Pages
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 __HDC C:\WINDOWS\LanguageOverlayCache
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 __HDC C:\WINDOWS\ELAMBKUP
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\WUModels
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\Web
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\Vss
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\tracing
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\TAPI
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\SMI
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\ras
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\PerceptionSimulation
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\NDF
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\Msdtc
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\migwiz
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\Keywords
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\Ipmi
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\InputMethod
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\inetsrv
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\IME
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\icsxml
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\GroupPolicyUsers
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\GroupPolicy
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\downlevel
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\Bthprops
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\AppLocker
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SysWOW64\AdvancedInstallers
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SystemApps
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\winevt
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\WebThreatDefSvc
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\ShellExperiences
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\ras
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\ProximityToast
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\PointOfService
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\Pbr
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\Keywords
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\Ipmi
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\InputMethod
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\inetsrv
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\IME
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\icsxml
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\ias
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\Hydrogen
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\HealthAttestationClient
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\DriverState
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\downlevel
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\DDFs
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\config\systemprofile
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\config\RegBack
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\config\Journal
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\Bthprops
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\AdvancedInstallers
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\System
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SKB
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\ShellExperiences
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\security
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\schemas
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\SchCache
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\Resources
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\rescache
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\Registration
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\PLA
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\Performance
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\ModemLogs
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\LiveKernelReports
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\L2Schemas
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\InputMethod
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\InboxApps
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\IdentityCRL
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\Globalization
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\GameBarPresenceWriter
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\DiagTrack
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\Cursors
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\Containers
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\Branding
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\Users\Default\AppData\Roaming\Microsoft\Spelling
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\ProgramData\WindowsHolographicDevices
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\ProgramData\USOShared
2024-01-20 03:42 - 2024-01-20 03:42 - 000000000 ___DC C:\Program Files\ModifiableWindowsApps
2024-01-20 03:42 - 2024-01-20 03:40 - 000003103 ____C C:\WINDOWS\SysWOW64\mmc.exe.config
2024-01-20 03:42 - 2024-01-20 03:40 - 000003103 ____C C:\WINDOWS\system32\mmc.exe.config
2024-01-20 03:42 - 2024-01-20 03:40 - 000000858 ____C C:\WINDOWS\system32\DefaultQuestions.json
2024-01-20 03:40 - 2024-02-16 07:46 - 000000000 ___DC C:\WINDOWS\INF
2024-01-20 03:36 - 2024-02-16 03:52 - 000000000 ___DC C:\WINDOWS\CbsTemp
2024-01-20 03:35 - 2024-02-16 04:10 - 103022592 _____ C:\WINDOWS\system32\config\SOFTWARE
2024-01-20 03:35 - 2024-02-16 04:09 - 031457280 _____ C:\WINDOWS\system32\config\SYSTEM
2024-01-20 03:35 - 2024-02-16 04:09 - 002359296 _____ C:\WINDOWS\system32\config\DEFAULT
2024-01-20 03:35 - 2024-02-16 04:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2024-01-20 03:35 - 2024-02-16 04:09 - 000065536 _____ C:\WINDOWS\system32\config\SAM
2024-01-20 03:35 - 2024-02-16 04:09 - 000032768 _____ C:\WINDOWS\system32\config\SECURITY
2024-01-20 03:35 - 2024-02-15 09:20 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2024-01-20 03:35 - 2024-01-20 04:32 - 000000000 ___DC C:\WINDOWS\servicing
2024-01-20 03:35 - 2024-01-20 03:42 - 000000000 ___DC C:\WINDOWS\system32\SMI
2024-01-19 15:36 - 2024-01-20 04:08 - 000000000 __HDC C:\$SysReset

==================== Een maand (gewijzigd) ==================

(Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.)

2098-01-01 00:00 - 2022-08-22 05:54 - 000000296 ____C C:\Users\Alain\Documents\WMPInfo.xml
2024-02-16 05:01 - 2022-07-01 07:53 - 000000000 __RDC C:\Users\Alain\OneDrive
2024-02-16 04:11 - 2020-06-11 01:19 - 000000000 __SHD C:\Users\Alain\IntelGraphicsProfiles
2024-02-16 04:10 - 2020-06-10 14:47 - 000012288 ___SH C:\DumpStack.log.tmp
2024-02-16 04:10 - 2020-03-29 15:54 - 000000000 ___HD C:\Intel
2024-02-02 06:02 - 2020-03-29 15:47 - 000000000 ___DC C:\Program Files\Microsoft Office
2024-02-01 05:23 - 2022-10-03 06:13 - 000000000 ___DC C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerShell
2024-02-01 05:23 - 2020-03-29 15:52 - 000000000 ___DC C:\ProgramData\Package Cache
2024-01-26 03:16 - 2020-12-05 06:40 - 000000000 ___DC C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Corporation
2024-01-22 11:26 - 2021-11-19 12:22 - 000000000 ___DC C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office-hulpprogramma's
2024-01-20 06:17 - 2019-10-17 05:07 - 000000000 ___DC C:\WINDOWS\system32\Drivers\wd
2024-01-20 04:17 - 2020-03-29 15:48 - 000002490 ____C C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2024-01-20 04:17 - 2020-03-29 15:48 - 000002483 ____C C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2024-01-20 04:17 - 2020-03-29 15:48 - 000002441 ____C C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2024-01-20 04:17 - 2020-03-29 15:48 - 000002428 ____C C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2024-01-20 04:17 - 2020-03-29 15:48 - 000002416 ____C C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2024-01-20 04:17 - 2020-03-29 15:48 - 000002402 ____C C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2024-01-20 04:17 - 2019-10-17 05:10 - 000000000 _RHDC C:\Users\Public\AccountPictures
2024-01-20 04:07 - 2019-03-19 05:52 - 000000000 ___DC C:\WINDOWS\system32\Tasks_Migrated
2024-01-20 04:04 - 2020-03-29 16:03 - 000000000 ___DC C:\ProgramData\McInstTemp0163031585494186
2024-01-20 04:04 - 2020-03-29 15:57 - 000000000 ___DC C:\ProgramData\McInstTemp0152841585493874
2024-01-20 04:04 - 2020-03-29 15:45 - 000000000 ___DC C:\WINDOWS\system32\Drivers\Lenovo
2024-01-20 04:04 - 2019-03-19 05:52 - 000000000 ___DC C:\WINDOWS\SysWOW64\Macromed
2024-01-20 04:04 - 2019-03-19 05:52 - 000000000 ___DC C:\WINDOWS\system32\Macromed
2024-01-20 04:03 - 2020-03-29 15:52 - 000000000 ___DC C:\Program Files\Intel
2024-01-20 04:03 - 2020-03-29 15:46 - 000000000 ___DC C:\Program Files\Microsoft Office 15
2024-01-20 04:03 - 2020-03-29 15:45 - 000000000 ___DC C:\Program Files\Lenovo
2024-01-20 04:03 - 2020-03-29 15:45 - 000000000 ___DC C:\Program Files (x86)\Lenovo
2024-01-20 04:03 - 2019-10-07 03:51 - 000000000 ___DC C:\Program Files (x86)\Reference Assemblies
2024-01-20 04:03 - 2019-03-19 05:52 - 000000000 ___DC C:\Program Files\Windows Security
2024-01-20 04:02 - 2019-03-19 05:52 - 000000000 ___DC C:\WINDOWS\system32\MsDtc
2024-01-20 03:53 - 2023-11-07 08:02 - 000000000 ___DC C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoftMaker FreeOffice 2021
2024-01-20 03:53 - 2022-08-01 07:16 - 000000000 ___DC C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Handleiding voor Canon TR4600 series
2024-01-20 03:53 - 2022-06-25 07:45 - 000000000 ___DC C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2024-01-20 03:53 - 2020-06-11 13:41 - 000000000 ___DC C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java

==================== SigCheck ============================

(Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.)

==================== Einde van FRST.txt ========================

Geplaatst:
 
Hallo,

Veel rare dingen zijn er niet alleen wat restanten van McAfee en lege items.
Dat kunnen we opruimen.

Ga naar de map Download en sleep daaruit de tool FRST naar je bureaublad (dit is zeer belangrijk!)

Let op: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.
Download fixlist.txt uit de bijlage naar het bureaublad, waar ook FRST.exe aanwezig is.
  • Klik met de rechtermuisknop op FRST.exe en kies voor de optie Afbeelding Als administrator uitvoeren.
  • Druk op de Fixen knop.
  • Er zal u een logbestand aangemaakt worden (Fixlog.txt) op dezelfde plaats vanwaar de 'tool' is gestart.
  • Voeg dit logbestand als bijlage toe aan het volgende bericht.

Een handleiding via een filmpje van Farbar Recovery Scan Tool kan je HIER vinden.

 

 

 

fixlist.txt

Geplaatst:

Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 16.02.2024
Gestart door Alain (19-02-2024 01:18:48) Run:1
Gestart vanaf C:\Users\Alain\Downloads
Geladen Profielen: Alain
Boot Modus: Normal
==============================================

fixlist inhoud:
*****************
start::
CreateRestorePoint:
CloseProcesses:
HKU\S-1-5-21-2785639542-1252406328-114974376-1001\...\RunOnce: [Uninstall 24.015.0121.0003] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Alain\AppData\Local\Microsoft\OneDrive\24.015.0121.0003" [0 2024-02-16] () <==== AANDACHT [nul byte bestand/map]
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> 
Task: {45CF73C8-9A94-47C5-8E45-347738A58FC5} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe  (Geen bestand)
Task: {DAC4143C-BD1D-45BD-A4ED-82ED8D80BB8C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe  (Geen bestand)
Task: {06FEF118-1E47-4CD0-8CA1-3F23A5249FEF} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2785639542-1252406328-114974376-500 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe  (Geen bestand) 
C:\WINDOWS\system32\Tasks\McAfee
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
EmptyTemp:
End::
*****************

Herstelpunt is succesvol gemaakt.
Proces succesvol afgesloten.
"HKU\S-1-5-21-2785639542-1252406328-114974376-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Uninstall 24.015.0121.0003" => is succesvol verwijderd
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\{C885AA15-1764-4293-B82A-0586ADD46B35} => is succesvol verwijderd
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{45CF73C8-9A94-47C5-8E45-347738A58FC5}" => is succesvol verwijderd
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{45CF73C8-9A94-47C5-8E45-347738A58FC5}" => is succesvol verwijderd
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => is succesvol verplaatst
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => is succesvol verwijderd
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DAC4143C-BD1D-45BD-A4ED-82ED8D80BB8C}" => is succesvol verwijderd
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DAC4143C-BD1D-45BD-A4ED-82ED8D80BB8C}" => is succesvol verwijderd
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => is succesvol verplaatst
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => is succesvol verwijderd
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{06FEF118-1E47-4CD0-8CA1-3F23A5249FEF}" => is succesvol verwijderd
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{06FEF118-1E47-4CD0-8CA1-3F23A5249FEF}" => is succesvol verwijderd
C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2785639542-1252406328-114974376-500 => is succesvol verplaatst
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OneDrive Standalone Update Task-S-1-5-21-2785639542-1252406328-114974376-500" => is succesvol verwijderd

"C:\WINDOWS\system32\Tasks\McAfee" map verplaatsing:

C:\WINDOWS\system32\Tasks\McAfee => is succesvol verplaatst
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => is succesvol verwijderd
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => is succesvol verwijderd
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\MCODS => is succesvol verwijderd

=========== EmptyTemp: ==========

FlushDNS => voltooid
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 207143725 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 17545488 B
Edge => 0 B
Chrome => 795597470 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 8670 B
NetworkService => 36592 B
Alain => 152459760 B

RecycleBin => 0 B
EmptyTemp: => 1.1 GB tijdelijke gegevens verwijderd.

================================


Het systeem moest herstart worden.

==== Einde van Fixlog 01:20:14 ====

Fixlog.txt

Geplaatst:

hallo abbs, redelijk. soms lang wachten eer pagina's geladen worden of gewoon gaat de pagina's zelfs niet open. en e-mails krijg bijna geen, alleen veel ongewenste e-mails. (ts de 50 à 100) en of ik die blokkeer of rapporteer maakt geen verschil uit ze blijven terug komen.

 

Gast
Dit topic is nu gesloten voor nieuwe reacties.
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.