Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie:01-05-2016 Gestart door Coby (2016-05-01 18:35:08) Gestart vanaf C:\Users\Coby\Desktop Windows 10 Home Versie 1511 (X64) (2016-03-26 09:52:29) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-503092519-2811942456-882599974-500 - Administrator - Disabled) Coby (S-1-5-21-503092519-2811942456-882599974-1000 - Administrator - Enabled) => C:\Users\Coby DefaultAccount (S-1-5-21-503092519-2811942456-882599974-503 - Limited - Disabled) Gast (S-1-5-21-503092519-2811942456-882599974-501 - Limited - Disabled) ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: 电脑管家系统防护 (Enabled - Up to date) {6F9C3F92-B625-0E47-F0B1-447602EC65F5} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: 电脑管家系统防护 (Enabled - Up to date) {D4FDDE76-901F-01C9-CA01-7F04796B2F48} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag zou kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeinstallerd worden.) 20/20 v2.2 (HKLM-x32\...\20/20 v2.2) (Version: - ) Adobe Acrobat Reader DC - Nederlands (HKLM-x32\...\{AC76BA86-7AD7-1043-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated) Alien Skin Eye Candy 5 Impact (HKLM-x32\...\EyeCandy5Impact) (Version: - ) Alien Skin Eye Candy 5 Nature (HKLM-x32\...\EyeCandy5Nature) (Version: - ) Alien Skin Eye Candy 5 Textures (HKLM-x32\...\EyeCandy5Textures) (Version: - ) Alien Skin Eye Candy 6 (HKLM-x32\...\Eye Candy 6) (Version: - ) Alien Skin Eye Candy 7 (HKLM\...\Alien Skin Eye Candy 7) (Version: - Alien Skin) Alien Skin Xenofex 2.0 (HKLM-x32\...\Xenofex2) (Version: - ) CCleaner (remove only) (HKLM-x32\...\CCleaner) (Version: - Piriform) Contents (x32 Version: 1.6.1.109 - Corel Corporation) Hidden Corel Paint Shop Pro X (HKLM-x32\...\{1A15507A-8551-4626-915D-3D5FA095CC1B}) (Version: 10.0 - Corel Inc) Corel PaintShop Photo Pro X3 (HKLM-x32\...\_{D1AEB5DB-04FA-489D-94EF-8600898B93EE}) (Version: 1.6.1.109 - Corel Corporation) Corel PaintShop Photo Pro X3 (x32 Version: 1.00.0000 - Corel Corporation) Hidden Corel PaintShop Pro X6 (HKLM-x32\...\_{166D1CB6-DD8A-40DD-9E25-4D31D2D6DE4D}) (Version: 16.2.0.20 - Corel Corporation) Corel PaintShop Pro X6 (x32 Version: 16.2.0.20 - Corel Corporation) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DeviceIO (x32 Version: 1.6.1.109 - Corel Corporation) Hidden Eye Candy 4000 (HKLM-x32\...\Eye Candy 4000) (Version: - ) Filter Forge 1.009 (HKLM-x32\...\Filter Forge_is1) (Version: - Filter Forge, Inc.) FM Patcher 1.01 (HKLM-x32\...\FM Patcher_is1) (Version: - AFH Systems & The Plugin Site) GetSmile v1.952 (HKLM-x32\...\GetSmile0903_is1) (Version: 1.952 - Sofrayt LLC) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.112 - Google Inc.) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.7619.1252 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden ICA (x32 Version: 1.6.1.109 - Corel Corporation) Hidden ICA (x32 Version: 16.0.0.113 - Corel Corporation) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation) IPM_PSP_COM (x32 Version: 16.0.0.113 - Corel Corporation) Hidden IPM_PSP_Pro (x32 Version: 1.00.0000 - Corel Corporation) Hidden Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.309.1 - McAfee, Inc.) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-0030-0000-0000-0000000FF1CE}_ENTERPRISER_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISER) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) MLE (x32 Version: 1.0.0.23 - Corel Corporation) Hidden Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden MyEmoticons (HKU\S-1-5-21-503092519-2811942456-882599974-1000\...\MyEmoticons) (Version: 1.0.0.0 - GreenTree Applications SRL) PSP Thumbnail Handler (HKLM-x32\...\{2086A549-ED96-4dc9-BBE3-0538AB29ABEC}) (Version: 1.10.21 - Bot Productions) PSPH10Pro (x32 Version: 1.00.0000 - Corel Corporation) Hidden PSPPContent (x32 Version: 1.00.0000 - Corel Corporation) Hidden PSPPContent (x32 Version: 16.0.0.113 - Corel Corporation) Hidden PSPPHelp (x32 Version: 16.0.0.113 - Corel Corporation) Hidden PSPPRO_DCRAW (x32 Version: 13.0.0 - Corel Corporation) Hidden PSPPro64 (Version: 16.2.0.20 - Corel Corporation) Hidden PureHD (x32 Version: 1.6.1.109 - Corel Corporation) Hidden QuickTime (HKLM-x32\...\{8DC42D05-680B-41B0-8878-6C14D24602DB}) (Version: 7.55.90.70 - Apple Inc.) ROBLOX Player for Coby (HKU\S-1-5-21-503092519-2811942456-882599974-1000\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version: - ROBLOX Corporation) Setup (x32 Version: 1.6.1.109 - Corel Corporation) Hidden Setup (x32 Version: 16.0.0.113 - Uw bedrijfsnaam) Hidden Share (x32 Version: 1.6.1.109 - Corel Corporation) Hidden Share64 (Version: 1.6.1.109 - Corel Corporation) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation) Skype™ 7.22 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.22.109 - Skype Technologies S.A.) Spotify (HKU\S-1-5-21-503092519-2811942456-882599974-1000\...\Spotify) (Version: 1.0.21.143.g76c19bcd - Spotify AB) Sqirlz Water Reflections (HKLM-x32\...\Sqirlz Water Reflections) (Version: - ) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.56083 - TeamViewer) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-0030-0000-0000-0000000FF1CE}_ENTERPRISER_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update voor Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0413-0000-0000000FF1CE}_ENTERPRISER_{5CF7002F-6F49-4482-9564-5614FBE560FA}) (Version: - Microsoft) Update voor Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0413-0000-0000000FF1CE}_ENTERPRISER_{15D84E79-1ED7-42C5-B2FD-745C3FBDDDC5}) (Version: - Microsoft) Update voor Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0413-0000-0000000FF1CE}_ENTERPRISER_{A66AE6A1-8D8C-4102-BC18-38CBDE40F809}) (Version: - Microsoft) VIO (x32 Version: 1.6.1.109 - Corel Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Media Encoder 9 Series (HKLM-x32\...\Windows Media Encoder 9) (Version: - ) WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - ) ==================== Aangepaste CLSID (gefilterd): ========================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) CustomCLSID: HKU\S-1-5-21-503092519-2811942456-882599974-1000_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Coby\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-503092519-2811942456-882599974-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-503092519-2811942456-882599974-1000_Classes\CLSID\{DEE03C2B-0C0C-41A9-9877-FD4B4D7B6EA3}\InprocServer32 -> C:\Users\Coby\AppData\Local\Roblox\Versions\version-4bc75dd7e05f4feb\RobloxProxy64.dll (ROBLOX Corporation) ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {2201C54E-3BA5-4498-9801-C91D185DEF74} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-04-12] (Microsoft Corporation) Task: {2FE32245-352C-43FC-8068-DE3A082020B7} - System32\Tasks\ksv3026 => C:\Program Files (x86)\QuickSearch\ksv3026.exe [2016-04-25] () <==== AANDACHT Task: {518616CE-2C00-4E05-B6D1-9E2B638D5C6B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-01-26] (Google Inc.) Task: {576C5FD9-6B2B-4671-A9D9-2F31EE607166} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-01-26] (Google Inc.) Task: {A1C656D0-54FC-462C-8F53-D8B24FA12AB5} - System32\Tasks\Nimeckreelule Log => C:\Program Files (x86)\Nimeckreelule\Nmclogtask.exe Task: {A8457B2D-C32B-475E-AF96-50731E3CF9B7} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated) Task: {A96A8FCD-61FF-4293-B7E4-393813AC2E7C} - System32\Tasks\Dravsynlether Core => C:\Program Files (x86)\Dravsynlether\Drvcoretsk.exe Task: {BF8057BA-F571-464D-9711-8A183823AB74} - System32\Tasks\{07F3123F-A3B4-4630-9449-66F7CB1E151B} => launchwinapp.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=7.13.0.101&LastError=404 Task: {C042011D-CBAD-40B7-9E9F-657DFD032861} - System32\Tasks\{0922A9BE-8718-4185-9155-4098BB11BC19} => pcalua.exe -a "C:\Program Files (x86)\GetSmile\unins000.exe" Task: {E7445E50-E853-4593-8563-B1E07F676AA9} - System32\Tasks\UCBrowserUpdater => C:\Program Files (x86)\UCBrowser\Application\update_task.exe (Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\UCBrowserUpdater.job => C:\Program Files (x86)\UCBrowser\Application\update_task.exe ==================== Snelkoppelingen ============================= (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) ShortcutWithArgument: C:\Users\Coby\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://yeabests.cc --disable-quic ShortcutWithArgument: C:\Users\Coby\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://yeabests.cc --disable-quic ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://yeabests.cc --disable-quic ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://yeabests.cc --disable-quic ==================== Geladen Modules (gefilterd) ============== 2007-06-05 14:20 - 2007-06-05 14:20 - 00177704 _____ () C:\WINDOWS\SysWOW64\PSIService.exe 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-04-12 19:51 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-04-12 19:51 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-04-26 20:36 - 2016-04-26 20:36 - 00959176 _____ () C:\Users\Coby\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64\ClientTelemetry.dll 2009-12-30 19:48 - 2011-08-04 16:06 - 00139264 _____ () c:\Program Files (x86)\Corel\Corel PaintShop Photo Pro\X3\PSPClassic\PSPContextMenu64.dll 2016-05-01 15:34 - 2016-05-01 15:34 - 12265984 _____ () c:\program files\24fb083b9dac707c1654a4c67889bf23\5736f9627c63aa3cf94b5fa519dfe15e\ywlmjm.dll 2016-02-15 12:56 - 2016-02-15 12:56 - 46344704 _____ () C:\Program Files (x86)\CleanBrowser\app\bin\nw.exe 2016-03-26 11:01 - 2016-03-26 11:01 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-04-12 19:50 - 2016-04-02 05:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-04-12 19:50 - 2016-04-02 05:03 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-04-12 19:50 - 2016-04-02 04:58 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-04-12 19:51 - 2016-04-02 04:59 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-04-12 19:51 - 2016-04-02 05:02 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-04-19 08:27 - 2016-04-19 08:27 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2015-10-30 09:18 - 2015-10-30 09:18 - 02100064 _____ () C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe 2016-04-29 10:03 - 2016-04-29 10:03 - 00115904 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMAntiInject.dll 2016-04-29 10:04 - 2016-04-29 10:04 - 00088416 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\zlib.dll 2016-04-29 10:04 - 2016-04-29 10:04 - 00488640 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\sqlite.dll 2016-04-29 10:04 - 2016-04-29 10:04 - 00100704 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\tinyxml.dll 2016-04-29 10:04 - 2016-04-29 10:04 - 00046784 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\sysspeeduprtpplugin\SysSpeedupRtpPlugin.dll 2016-04-29 10:08 - 2016-03-28 21:11 - 00070848 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\qmiemalrtpplugin\qmiemalrtpplugin.dll 2016-04-29 10:03 - 2016-02-28 00:55 - 00036128 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\oDayProtect.dll 2016-04-29 10:04 - 2016-04-29 10:04 - 00128192 _____ () c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\qmrtpcontroller.dll 2016-05-01 15:34 - 2016-05-01 15:34 - 19933696 _____ () c:\program files\24fb083b9dac707c1654a4c67889bf23\5736f9627c63aa3cf94b5fa519dfe15e\mfvelc.dll 2016-02-15 12:56 - 2016-02-15 12:56 - 01481728 _____ () C:\Program Files (x86)\CleanBrowser\app\bin\libglesv2.dll 2016-02-15 12:56 - 2016-02-15 12:56 - 00073728 _____ () C:\Program Files (x86)\CleanBrowser\app\bin\libegl.dll 2016-04-29 10:03 - 2016-04-29 10:03 - 00342368 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\arkGraphic.dll 2016-04-29 10:04 - 2016-04-29 10:04 - 00194912 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\xImage.dll 2016-04-29 10:03 - 2016-04-29 10:03 - 02156896 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\GF.dll 2016-04-29 10:04 - 2016-04-29 10:04 - 00092512 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\xGraphic32.dll 2016-04-29 10:03 - 2016-04-29 10:03 - 00158048 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\libpng.dll 2016-04-29 10:03 - 2016-04-29 10:03 - 00285024 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\libjpegturbo.dll 2016-04-29 10:03 - 2016-04-29 10:03 - 00137568 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\libexpatw.dll 2016-04-29 10:03 - 2016-04-29 10:03 - 00045408 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\jgImage.dll 2016-04-29 10:03 - 2016-04-29 10:03 - 00014176 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\jgIOStub.dll 2016-04-29 10:04 - 2016-04-29 10:04 - 00169152 _____ () c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\qmhipslogpolicy.dll 2016-04-29 10:03 - 2016-04-29 10:03 - 00083136 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\MemDefrag.dll 2016-04-29 10:03 - 2016-04-29 10:03 - 00337088 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMTrayPlugin\QMAutoTaskPlugin\SubPlugins\OperationFileCloudMgr.dll 2016-04-29 10:03 - 2016-04-29 10:03 - 00379232 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\DlForQd.dll 2016-04-29 10:04 - 2016-04-29 10:04 - 00264896 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\Win10ToastNotification.dll 2016-04-29 10:04 - 2016-04-29 10:04 - 00251072 _____ () C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMWlanMacDll.dll 2016-02-15 12:56 - 2016-02-15 12:56 - 01681224 _____ () C:\Program Files (x86)\CleanBrowser\app\bin\ffmpegsumo.dll 2016-04-26 20:36 - 2016-04-26 20:36 - 00679624 _____ () C:\Users\Coby\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\ClientTelemetry.dll 2016-04-19 08:27 - 2016-04-19 08:27 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-04-12 08:11 - 2016-04-06 12:04 - 01675928 _____ () C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\libglesv2.dll 2016-04-12 08:11 - 2016-04-06 12:04 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\libegl.dll 2014-03-31 22:35 - 2014-03-31 22:35 - 00278208 _____ () C:\Program Files (x86)\Windows Live\Writer\nl\WindowsLive.Writer.Localization.resources.dll ==================== Alternate Data Streams (gefilterd) ========= (Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.) AlternateDataStreams: C:\Windows:AstInfo [0] AlternateDataStreams: C:\Windows:nlsPreferences [0] ==================== Veilige Modus (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\QQPCRTP => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\zdengine => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\zdwfp => ""="Driver" ==================== EXE Bestandskoppeling (gefilterd) =============== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd.) ==================== Internet Explorer vertrouwde/beperkte toegang =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd.) ==================== Hosts inhoud: ========================== (Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.) 2016-01-26 19:43 - 2016-04-29 09:55 - 00001039 ____A C:\WINDOWS\system32\Drivers\etc\hosts 0.0.0.1 mssplus.mcafee.com 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com ==================== Andere gebieden ============================ (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-21-503092519-2811942456-882599974-1000\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.2.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == (Momenteel is er geen automatische fix voor dit onderdeel.) HKLM\...\StartupApproved\Run32: => " QQPCTray" ==================== Firewall regels (gefilterd) =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{81B6A062-8B9F-42E7-95E4-E4A78C09609F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{C89E36AD-6FFB-458B-A524-A8950EB2FAA1}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{00C19BBF-799B-4219-8614-FDD0F5593CF7}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{20459547-85B7-4EE3-AD7C-80FF88A44C1C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{56213B0E-216F-48C8-9EFB-CBFB89BFA529}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{8F41D49D-C960-4264-AE01-DFE0A10063F3}] => (Allow) LPort=1900 FirewallRules: [{49994346-E85B-4E8C-88A7-3CBF4CDEBF21}] => (Allow) LPort=2869 FirewallRules: [{57A66BED-0259-49F7-9813-230875CCC4DF}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [UDP Query User{4DC62BB1-9232-4A24-9CC8-9AACCEA7FD10}C:\users\coby\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\coby\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{179F082D-8CD8-440D-B240-A0159C056ED8}C:\users\coby\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\coby\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{28AC167C-1A98-4164-9BB8-42C13ACA4C13}C:\windows.old\users\coby\appdata\roaming\spotify\spotify.exe] => (Allow) C:\windows.old\users\coby\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{B651247F-C83F-4D1E-A177-B9D1B46CF5A5}C:\windows.old\users\coby\appdata\roaming\spotify\spotify.exe] => (Allow) C:\windows.old\users\coby\appdata\roaming\spotify\spotify.exe FirewallRules: [{76089654-229A-4165-B908-5660CE9DC3B9}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{3A8163FB-4A94-4DEC-9B25-C36B592425BA}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{D5A840AC-3831-499C-B6E5-7B692B7DA549}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{99CF1FD3-504A-43DB-BEF3-E5DA201E7999}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{4A091DDE-3F36-4C36-A407-D50834C719EB}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{A4406E97-100A-4D5B-AD52-B570997E41CD}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{B5D74FE4-2BF9-4241-9BEB-436841158462}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe FirewallRules: [{203AE6CC-9DE6-4F60-9E97-DAAB30819ED4}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe FirewallRules: [{B3099609-1949-4538-B17A-4D9AC5C73203}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe FirewallRules: [{E492B028-FE75-45AD-8A89-602D9208BED5}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe FirewallRules: [{369245E5-822B-46C2-91A7-68F138774961}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{FA7F81F8-B23F-48B4-A4CF-68874AEF892A}] => (Allow) C:\Users\Coby\AppData\Local\Temp\1387344734\download\MiniThunderPlatform.exe FirewallRules: [{383A3428-602E-45D8-A933-6F25888E4291}] => (Allow) C:\Users\Coby\AppData\Local\Temp\1387344734\download\MiniThunderPlatform.exe FirewallRules: [{74F7F45F-8BE5-4BD3-8894-5A84B908F77E}] => (Allow) C:\Windows\Temp\download\MiniThunderPlatform.exe FirewallRules: [{505D2329-87C6-4B5F-9EC3-19029E5E9EF5}] => (Allow) C:\Windows\Temp\download\MiniThunderPlatform.exe FirewallRules: [{73B85214-DB2A-41AB-A970-65B3CC7E0401}] => (Allow) C:\Users\Coby\AppData\Roaming\UPUpdata\download\MiniThunderPlatform.exe FirewallRules: [{7306348D-6786-4327-999D-824FB6BCC36D}] => (Allow) C:\Users\Coby\AppData\Roaming\UPUpdata\download\MiniThunderPlatform.exe FirewallRules: [{F827A0B2-2F33-4605-BDAB-9CCE81CB42F5}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCmgrInstallGuide.exe FirewallRules: [{0FBF1785-E34D-4C6A-8472-3B2056AFEB0F}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe FirewallRules: [{16830367-6E9F-48DD-90FF-82D25D43936B}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCMgr.exe FirewallRules: [{772885D8-9635-435C-A78D-0AF0D48525DD}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe FirewallRules: [{438C2EBA-4353-4DD3-BDE3-BB7419B5A8CA}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMDL.exe FirewallRules: [{394C6736-232D-4A89-B920-CEAA71A60865}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe FirewallRules: [{3162C425-CAF6-48A9-8D38-871E93CD1EE9}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\bugreport.exe FirewallRules: [{C3E81C5B-DD54-4DEC-A14D-221262363DB9}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCFileOpen.exe FirewallRules: [{07148F2D-9E69-4314-9442-912D30E68D9D}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCLeakScan.exe FirewallRules: [{3C9FF88C-56B4-447E-94AB-A8E083027136}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPConfig.exe FirewallRules: [{177E1E0A-7EE4-473F-A75C-75DEEBD3AE47}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCSoftMgr.exe FirewallRules: [{5BF4510E-9525-4CB4-B372-5DF233187A99}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe FirewallRules: [{EF62B0A0-FB91-4532-9EC9-1D7518D17CE7}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCBTU.exe FirewallRules: [{26C5CA0B-FCE8-494D-9C2D-BA8623105556}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCClinic.exe FirewallRules: [{2380FC95-D3BF-4516-8938-06DA308794EB}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCLaunch.exe FirewallRules: [{C5503F55-6399-4E71-98AA-3216F8AEA65C}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMUpdate\QQPCMgrUpdate.exe FirewallRules: [{F70D5E70-F3AD-4FC0-8408-29D054463430}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCSoftGame.exe FirewallRules: [{3BEF5801-19F9-4817-9AC3-8793E44EA875}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCSysOptimize.exe FirewallRules: [{0F129E87-D586-411C-BC54-404294353A65}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCUpdateAVLib.exe FirewallRules: [{9C80092D-81D8-429B-89CF-936ACEC73DE8}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQRepair.exe FirewallRules: [{586C1058-91FC-41BD-B8D0-064ADFB9BFC0}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\Uninst.exe FirewallRules: [{A52C76C3-AD60-4EE7-92F6-C3DF5CDAC146}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCPatch.exe FirewallRules: [{0719F1BC-6DC7-4C81-AD0F-06786D34DFFE}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TpkUpdate.exe FirewallRules: [{989C3F03-C8DD-4A3C-A7A4-41E393DBE999}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMRouterMgr.exe FirewallRules: [{C925FCC6-5844-402F-927F-6ACF30AC41B6}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMAccountProtection.exe FirewallRules: [{C93F6E37-78BB-4A49-875C-512424C4E1B9}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMAdBlock.exe FirewallRules: [TCP Query User{E2FCF56B-35FD-4A39-A12C-73BD3FD61367}C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe] => (Block) C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe FirewallRules: [UDP Query User{0A0537A4-6830-456B-B84F-B540D04C7AE8}C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe] => (Block) C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe FirewallRules: [{5756FCC0-9F10-439C-BB3E-9DCA89EF31D7}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\131\bugreport_xf.exe FirewallRules: [{98B01EE1-1564-4243-B8B7-C227C970237A}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\131\tencentdl.exe FirewallRules: [{181B4B6A-577B-4CC1-8D46-87D0C10E8BB5}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\131\tencentdl.exe FirewallRules: [{FF75B188-F717-4F1E-824D-9EF437C74523}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\131\bugreport_xf.exe ==================== Herstelpunten ========================= 17-04-2016 19:00:24 Windows Back-up 24-04-2016 19:00:44 Windows Back-up 24-04-2016 19:20:42 Windows Back-up 28-04-2016 20:24:30 Installed ICA. 29-04-2016 12:29:56 Herstelbewerking 01-05-2016 10:16:30 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 ==================== Defecte Apparaatbeheer Apparaten ============= ==================== Eventlog fouten: ========================= Applicatiefouten: ================== Error: (05/01/2016 05:30:29 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Het programma MicrosoftEdge.exe, versie 11.0.10586.218 reageert niet meer op Windows en is afgesloten. Als u wilt zien of er meer informatie over het probleem beschikbaar is, raadpleegt u de probleemgeschiedenis in het onderdeel Beveiliging en onderhoud van het Configuratiescherm. Proces-id: 1888 Starttijd: 01d1a3be4f56b45c Eindtijd: 4294967295 Toepassingspad: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe Rapport-id: 96e0183b-0fb1-11e6-9413-3085a941414a Volledige pakketnaam met fout: Microsoft.MicrosoftEdge_25.10586.0.0_neutral__8wekyb3d8bbwe Relatieve toepassings-id van pakket met fout: MicrosoftEdge Error: (05/01/2016 05:30:18 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: COBY-PC) Description: Het activeren van de app Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge is mislukt door de fout -2144927142. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Error: (05/01/2016 03:36:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: COBY-PC) Description: Het activeren van de app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI is mislukt door de fout -2144927141. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Error: (05/01/2016 01:23:47 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: COBY-PC) Description: Het activeren van de app Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge is mislukt door de fout -2144927141. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Error: (05/01/2016 10:16:43 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: De service Cryptografische services is mislukt tijdens het verwerken van aanroep OnIdentity() op het object System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Toegang geweigerd. . Error: (04/30/2016 11:14:14 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: COBY-PC) Description: Het activeren van de app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI is mislukt door de fout -2144927141. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Error: (04/30/2016 10:56:07 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: PurchaseDialog.exe, versie: 10.0.10586.0, tijdstempel: 0x5632d845 Naam van module met fout: Windows.UI.Xaml.dll, versie: 10.0.10586.212, tijdstempel: 0x56fa191c Uitzonderingscode: 0xc0000409 Foutmarge: 0x00000000005411c0 Id van proces met fout: 0x18bc Starttijd van toepassing met fout: 0xPurchaseDialog.exe0 Pad naar toepassing met fout: PurchaseDialog.exe1 Pad naar module met fout: PurchaseDialog.exe2 Rapport-id: PurchaseDialog.exe3 Volledige pakketnaam met fout: PurchaseDialog.exe4 Relatieve toepassings-id van pakket met fout: PurchaseDialog.exe5 Error: (04/30/2016 09:12:09 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: COBY-PC) Description: Het activeren van de app Microsoft.Windows.Photos_8wekyb3d8bbwe!App is mislukt door de fout -2147023170. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Error: (04/29/2016 03:30:00 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: COBY-PC) Description: Het activeren van de app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI is mislukt door de fout -2144927141. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Error: (04/29/2016 02:15:37 PM) (Source: System Restore) (EventID: 8210) (User: ) Description: Er is tijdens Systeemherstel een onbekende fout opgetreden: (Windows Back-up). Aanvullende gegevens: 0x80071a90. Systeemfouten: ============= Error: (05/01/2016 06:29:43 PM) (Source: bowser) (EventID: 8003) (User: ) Description: De masterbrowser heeft een servermelding ontvangen van computer EXPERIA die meent de masterbrowser voor het domein te zijn op transport NetBT_Tcpip_{12724DBD-2385-4A6D-9335-D236C0B1DE8E}. De masterbrowser wordt gestopt of er wordt een verkiezing afgedwongen. Error: (05/01/2016 05:29:36 PM) (Source: bowser) (EventID: 8003) (User: ) Description: De masterbrowser heeft een servermelding ontvangen van computer EXPERIA die meent de masterbrowser voor het domein te zijn op transport NetBT_Tcpip_{12724DBD-2385-4A6D-9335-D236C0B1DE8E}. De masterbrowser wordt gestopt of er wordt een verkiezing afgedwongen. Error: (05/01/2016 03:37:03 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De Nimeckreelule Log-service kan vanwege de volgende fout niet worden gestart: %%2 Error: (05/01/2016 03:37:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De Dravsynlether Core-service kan vanwege de volgende fout niet worden gestart: %%2 Error: (05/01/2016 03:36:56 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De BugreportW-service kan vanwege de volgende fout niet worden gestart: %%2 Error: (05/01/2016 03:36:50 PM) (Source: DCOM) (EventID: 10010) (User: COBY-PC) Description: CortanaUI.AppXr0dtzccx33hvam1xwfz3c1354p6222qd.mca Error: (05/01/2016 03:35:25 PM) (Source: bowser) (EventID: 8003) (User: ) Description: De masterbrowser heeft een servermelding ontvangen van computer EXPERIA die meent de masterbrowser voor het domein te zijn op transport NetBT_Tcpip_{12724DBD-2385-4A6D-9335-D236C0B1DE8E}. De masterbrowser wordt gestopt of er wordt een verkiezing afgedwongen. Error: (05/01/2016 03:34:48 PM) (Source: bowser) (EventID: 8016) (User: ) Description: Het browserstuurprogramma heeft te veel ongeldige datagrammen van de externe computer EXPERIA ontvangen om COBY-PC op transport NetBT_Tcpip_{12724DBD-2385-4A6D-9335-D236C0B1DE8E} te kunnen benoemen. Raadpleeg het datagram voor verdere gegevens. Er worden pas weer gebeurtenissen gegenereerd nadat de herstelfrequentie is verlopen. Error: (05/01/2016 03:34:45 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De Util thirteen degrees-service kan vanwege de volgende fout niet worden gestart: %%2 Error: (05/01/2016 03:34:45 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De Update thirteen degrees-service kan vanwege de volgende fout niet worden gestart: %%2 CodeIntegrity: =================================== Date: 2016-04-29 12:12:41.929 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-04-14 12:42:59.326 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-04-13 12:13:00.530 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-04-13 08:33:46.005 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-04-02 17:00:28.997 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-03-28 13:11:33.216 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-03-27 13:22:57.454 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-03-27 12:50:08.637 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-03-26 10:47:57.567 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-03-26 10:47:35.117 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. ==================== Geheugen info =========================== Processor: Intel(R) Core(TM) i3-3220 CPU @ 3.30GHz Percentage geheugen in gebruik: 37% Totaal fysiek RAM-geheugen: 7883.92 MB Beschikbaar fysiek RAM-geheugen: 4942.98 MB Totaal Virtueel geheugen: 9099.92 MB Beschikbaar Virtual geheugen: 5998.54 MB ==================== Schijven ================================ Drive c: (Windows) (Fixed) (Total:465.22 GB) (Free:284.51 GB) NTFS Drive d: (COBY PSP) (Fixed) (Total:225.05 GB) (Free:220.7 GB) NTFS Drive e: (FACTORY_IMAGE) (Fixed) (Total:7.84 GB) (Free:1.54 GB) NTFS ==>[systeem met boot componenten (verkregen van schijf)] Drive g: (CnMemory) (Fixed) (Total:2794.39 GB) (Free:2383.35 GB) NTFS Drive j: (Elements) (Fixed) (Total:931.51 GB) (Free:190.01 GB) NTFS ==================== MBR & Partitietabel ================== ======================================================== Disk: 0 (Size: 232.9 GB) (Disk ID: 1549F232) Partition 1: (Active) - (Size=225 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=7.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 946522C4) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=465.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=450 MB) - (Type=27) Attempted reading MBR returned 0 bytes. Could not read MBR for disk 2. ======================================================== Disk: 3 (Size: 931.5 GB) (Disk ID: E8900690) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Eind van Addition.txt ============================