Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 15-03-2017 Gestart door Sippo (16-03-2017 20:52:49) Gestart vanaf C:\Users\Sippo\Desktop Windows 10 Home Versie 1607 (X64) (2016-08-26 23:57:59) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3808174966-3550055594-1478129862-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3808174966-3550055594-1478129862-503 - Limited - Disabled) Gast (S-1-5-21-3808174966-3550055594-1478129862-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3808174966-3550055594-1478129862-1002 - Limited - Enabled) Sippo (S-1-5-21-3808174966-3550055594-1478129862-1000 - Administrator - Enabled) => C:\Users\Sippo ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag zou kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeinstallerd worden.) Aangifte inkomstenbelasting 2013 (HKLM-x32\...\Aangifte inkomstenbelasting 2013) (Version: - Belastingdienst) Aangifte inkomstenbelasting 2014 (HKLM-x32\...\Aangifte inkomstenbelasting 2014) (Version: - Belastingdienst) Acer Backup Manager (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.99 - NTI Corporation) Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1904 - CyberLink Corp.) Acer Crystal Eye Webcam (x32 Version: 1.0.1904 - CyberLink Corp.) Hidden Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3008 - Acer Incorporated) Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3504 - Acer Incorporated) Acer Games (HKLM-x32\...\WildTangent acer Master Uninstall) (Version: 1.0.2.5 - WildTangent) Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0530.2011 - Acer Incorporated) Adobe Acrobat Reader DC - Nederlands (HKLM-x32\...\{AC76BA86-7AD7-1043-7B44-AC0F074E4100}) (Version: 15.023.20070 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.7.1.19610 - Adobe Systems Incorporated) Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.221 - Adobe Systems Incorporated) Adobe Flash Player 24 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 24.0.0.221 - Adobe Systems Incorporated) Advanced SystemCare 10 (HKLM-x32\...\Advanced SystemCare_is1) (Version: 10.0.3 - IObit) Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98 - WildTangent) Hidden AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) AMD Catalyst Install Manager (HKLM\...\{F2A7CE36-57BF-5C86-952D-90DBF3746D82}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AMD Quick Stream (HKLM\...\{E9EED4AE-682B-4501-9574-D09A21717599}_is1) (Version: 3.10.4.0 - AppEx Networks) amulesw (HKLM-x32\...\{13D7C2E9-08E7-4889-94FF-87E707184E53}) (Version: 1.0.7 - amules) <==== AANDACHT Apple Application Support (64-bit) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.) Ashampoo WinOptimizer 2015 v.11.00.50 (HKLM-x32\...\{4209F371-3276-A8F7-B851-845A83732AB4}_is1) (Version: 11.00.50 - Ashampoo GmbH & Co. KG) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.2.43 - Atheros Communications Inc.) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.2.2288 - AVAST Software) Backup Manager V3 (x32 Version: 3.0.0.99 - NTI Corporation) Hidden Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden BikaQ Rss (HKLM-x32\...\{78A2D999-4673-4FCC-818E-57B0AF8F3B70}) (Version: 2.0.16 - BikaQ) <==== AANDACHT Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.5.0.0 - Canon Inc.) Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - ‪Canon Inc.‬) Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.1.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - ‪Canon Inc.‬) Canon MG3200 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3200_series) (Version: 1.01 - Canon Inc.) Canon MG3200 series On-screen Manual (HKLM-x32\...\Canon MG3200 series On-screen Manual) (Version: 7.5.0 - Canon Inc.) Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 1.0.0 - Canon Inc.) Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 1.0.0 - Canon Inc.) Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.0.0 - Canon Inc.) Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.0.0 - Canon Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.25 - Piriform) Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden clear.fi (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 1.0.2024.00 - CyberLink Corp.) clear.fi (x32 Version: 1.0.1517_36458 - CyberLink Corp.) Hidden clear.fi (x32 Version: 1.0.2024.00 - CyberLink Corp.) Hidden clear.fi (x32 Version: 9.0.8026 - CyberLink Corp.) Hidden clear.fi Client (HKLM-x32\...\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}) (Version: 1.00.3500 - Acer Incorporated) Crazy Chicken Kart 2 (x32 Version: 2.2.0.97 - WildTangent) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Evernote v. 4.5.1 (HKLM-x32\...\{28921580-E4BB-11E0-9FD7-1CC1DEF07CBE}) (Version: 4.5.1.5451 - Evernote Corp.) FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden Final Drive: Nitro (x32 Version: 2.2.0.95 - WildTangent) Hidden Fooz Kids (HKLM-x32\...\FoozKids) (Version: 3.0.8 - FUHU, Inc.) Fooz Kids (x32 Version: 3.0.8 - FUHU, Inc.) Hidden Fooz Kids Platform (HKLM-x32\...\{8D68CE08-9A14-4B7B-9857-3C646A2F34C7}) (Version: 2.1 - FUHU, Inc.) Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Free FLV to MP4 Converter 1.0.28 (HKLM-x32\...\{B00D1F02-C556-48eb-9DC2-32C778B71CE2}_is1) (Version: 1.0.28 - free-videoconverter) Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galeria fotogràfica del Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Gebruikersregistratie voor Canon MG3200 series (HKLM-x32\...\Gebruikersregistratie voor Canon MG3200 series) (Version: - Canon Inc.‎) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 56.0.2924.87 - Google Inc.) Google Earth Pro (HKLM-x32\...\{35DAA04C-1720-4BE3-A920-A03731EC6A1D}) (Version: 7.1.5.1557 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3501 - Acer Incorporated) Insaniquarium Deluxe (x32 Version: 2.2.0.97 - WildTangent) Hidden IrfanView 4.44 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.44 - Irfan Skiljan) Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation) Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) Jewel Match 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden Jewel Quest Solitaire (x32 Version: 2.2.0.95 - WildTangent) Hidden John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Lagarith lossless video codec (Remove Only) (HKLM\...\LAGARITH) (Version: - ) Launch Manager (HKLM-x32\...\LManager) (Version: 5.1.7 - Acer Inc.) Malwarebytes versie 3.0.6.1469 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\OneDriveSetup.exe) (Version: 17.3.6798.0207 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50905.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 52.0 (x86 nl) (HKLM-x32\...\Mozilla Firefox 52.0 (x86 nl)) (Version: 52.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 52.0.0.6270 - Mozilla) Mozilla Thunderbird 45.8.0 (x86 nl) (HKLM-x32\...\Mozilla Thunderbird 45.8.0 (x86 nl)) (Version: 45.8.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Mystery of Mortlake Mansion (x32 Version: 2.2.0.98 - WildTangent) Hidden MyWinLocker (Version: 4.0.14.27 - Egis Technology Inc.) Hidden MyWinLocker 4 (x32 Version: 4.0.14.27 - Egis Technology Inc.) Hidden MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.19 - Egis Technology Inc.) MyWinLocker Suite (x32 Version: 4.0.14.19 - Egis Technology Inc.) Hidden NCP Secure Client - Juniper Edition (HKLM\...\{81C44F7F-5A1E-4FA9-ADE2-B84C866B8091}) (Version: 10.04.26745 - NCP engineering GmbH) newsXpresso (HKLM-x32\...\InstallShield_{613C0AC5-3A67-4B94-8B13-9176AD83F5BF}) (Version: 1.0.0.40 - esobi Inc.) newsXpresso (x32 Version: 1.0.0.40 - esobi Inc.) Hidden NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.9002 - NTI Corporation) NTI Media Maker 9 (x32 Version: 9.0.2.9002 - NTI Corporation) Hidden Opera Stable 43.0.2442.1144 (HKLM-x32\...\Opera 43.0.2442.1144) (Version: 43.0.2442.1144 - Opera Software) Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden PagePlusX7ContentDeclaration (x32 Version: 1.0.0.0 - Serif (Europe) Ltd) Hidden PC Navigator 15 15.0.2-1 (HKLM-x32\...\PCNavigator15_is1) (Version: 15.0.2-1 - MapFactor s.r.o) Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30127 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) SafeZone Stable 3.55.2393.590 (x32 Version: 3.55.2393.590 - Avast Software) Hidden Serif WebPlus X8 (HKLM\...\{471E0EA1-37E7-4C4C-B0E1-518883231403}) (Version: 16.0.4.032 - Serif (Europe) Ltd) Serif WebPlus: Business Template - Real Estate 1 (HKLM-x32\...\{182D9A20-F5AE-4E6C-A4FC-651351DD083E}) (Version: 1.2.0.027 - Serif (Europe) Ltd) Serif WebPlus: Interest Template - Music 1 (HKLM-x32\...\{83C97249-FB38-4FF0-8480-1D8E367767D8}) (Version: 1.2.0.027 - Serif (Europe) Ltd) Serif WebPlus: Interest Template - Photography 2 (HKLM-x32\...\{465C892E-BEE0-422F-A992-EA627D1943A3}) (Version: 1.2.0.027 - Serif (Europe) Ltd) Shredder (Version: 2.0.8.9 - Egis Technology Inc.) Hidden Shredder (x32 Version: 2.0.8.9 - Egis Technology Inc.) Hidden Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.8 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.8.102 - Skype Technologies S.A.) SlimCleaner (HKLM-x32\...\{6B8D6199-EE44-4FD7-813A-6D8C62C9B384}) (Version: 4.0.30878 - SlimWare Utilities, Inc.) Slingo Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.1.3.6 - Synaptics Incorporated) Taalpakket voor Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - NLD (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - NLD) (Version: 10.0.50903 - Microsoft Corporation) Torchlight (x32 Version: 2.2.0.97 - WildTangent) Hidden Update for Skype for Business 2015 (KB3039776) 64-Bit Edition (HKLM\...\{90150000-012B-0413-1000-0000000FF1CE}_Office15.PROPLUS_{F0120021-C9E2-4B7A-9F74-CCC86E1A9A16}) (Version: - Microsoft) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Update_msi (HKLM-x32\...\{59B5A9CD-253D-4C41-A073-B387D4C9672D}) (Version: 1.0.0 - Default Company Name) Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.97 - WildTangent) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) Vuze (HKLM\...\8461-7759-5462-8226) (Version: 5.6.0.0 - Azureus Software, Inc.) Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3504 - Acer Incorporated) WildTangent Games App (Acer Games) (x32 Version: 4.0.5.14 - WildTangent) Hidden Windows 10-upgradeassistent (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17364 - Microsoft Corporation) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation) Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) WinSnare (HKLM-x32\...\{701025EA-B091-4E55-91B0-C0696C006EAA}) (Version: 4.3.2 - WinSnare) <==== AANDACHT Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden ==================== Aangepaste CLSID (gefilterd): ========================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {03E77732-731B-4231-A8D4-7728B7E2DA6C} - System32\Tasks\ASC10_SkipUac_Sippo => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe Task: {089BE41A-59D3-4FE5-A728-E71253268284} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\MpCmdRun.exe Task: {09ABA17E-082E-47D5-A17A-87FF43267CAE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.) Task: {0A492086-B85F-4F9D-9923-2A79BBA410CF} - System32\Tasks\{575E7C59-5B03-4104-B5C7-E3DBC444531E} => pcalua.exe -a "C:\Program Files (x86)\DriverGuide Toolkit\drvgdtk2.exe" -d C:\Users\Sippo\Desktop Task: {0BA46FE8-7B55-4B5C-B39F-7D82993A73BB} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2011-03-29] (Egis Technology Inc.) Task: {0C2A33A5-60AE-49AA-8410-1FE3E585EDAA} - System32\Tasks\clear.fiAgent => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [2011-08-24] (CyberLink Corp.) Task: {120E9254-A921-4D2F-BFBD-BDAC29B4313F} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => %SystemRoot%\ehome\mcupdate.exe Task: {19448760-E216-426A-8BA7-BDE3657DDC2E} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {2E700878-1621-4CF4-9DD8-336BFC0BB863} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {2F305A46-257B-40ED-BF2E-E7C2280CE819} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => %SystemRoot%\ehome\ehPrivJob.exe Task: {30F9612B-C3D0-4659-BBAB-829D8146101C} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => %SystemRoot%\ehome\mcupdate.exe Task: {332A6A94-086B-4C75-9566-A494CCA99439} - System32\Tasks\{8BFDEB3D-2727-4CE3-A871-C1A1546C60E0} => pcalua.exe -a "C:\Users\Sippo\AppData\Local\Temp\Temp1_Webcam Bison V.7.96.701.07a.zip\Webcam Bison V.7.96.701.07a\Drivers\Preload.exe" <==== AANDACHT Task: {48656D85-0EAB-424B-A759-985AD6A2934F} - System32\Tasks\ASC10_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [2016-11-10] (IObit) Task: {4BDBAACD-8AEB-446A-B554-CD230C4F8FB4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-12-06] (Piriform Ltd) Task: {50833839-387C-4A30-8269-080B362B2942} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-03-10] (AVAST Software) Task: {51594464-6D77-4E6D-A239-37648EB172B8} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2017-03-15] (Microsoft Corporation) Task: {58751236-3089-40A1-8ABD-15D87192F2DA} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => %SystemRoot%\ehome\ehPrivJob.exe Task: {5E520392-73FD-40ED-A20A-41FA3D82C194} - System32\Tasks\BikaQ_FetchAndUpgrade_CanBeDel => C:\Program Files (x86)\BikaQRss\BikaQ.exe [2017-02-23] (IEC) <==== AANDACHT Task: {61D595E1-CC04-4558-A0ED-227598B2A792} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated) Task: {70EDDA11-A2E5-4647-9199-6AC743921BC8} - System32\Tasks\SafeZone scheduled Autoupdate 1489125157 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-03-03] (Avast Software) Task: {715D63E4-E7E2-44D2-8627-698DBC7BDEB8} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {7494EC0D-E0AF-45CB-BB7A-12E0487D186B} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {7C1B2562-1E96-4416-9076-70A0515947F3} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => %SystemRoot%\ehome\ehPrivJob.exe Task: {7DC4A267-E1D5-45EC-B093-60C1EA564F46} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => %SystemRoot%\ehome\ehPrivJob.exe Task: {88B5AE94-26C4-4532-8457-BE8DED9FD74A} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {8CC80C11-D8DF-4930-BB68-EB6C4C6337E5} - System32\Tasks\Opera scheduled Autoupdate 1459279198 => C:\Program Files (x86)\Opera\launcher.exe [2017-02-27] (Opera Software) Task: {9139E435-6D0B-43AE-BDAD-10A95767032D} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => %SystemRoot%\ehome\ehPrivJob.exe Task: {91871BDA-9B3F-4E18-8472-E16632CA6424} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => %SystemRoot%\ehome\ehPrivJob.exe Task: {984541C0-6D7E-48CC-AD62-06B167DA469D} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => %SystemRoot%\ehome\ehPrivJob.exe Task: {9A50CEFC-E765-4F5A-900B-350F7119FFE9} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => %SystemRoot%\ehome\ehPrivJob.exe Task: {9D128285-34F8-4179-B67A-0084B0591994} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => %SystemRoot%\ehome\ehPrivJob.exe Task: {A0DD847D-A5A2-479B-A331-D24A14E9E836} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) Task: {A66406E3-ECAA-4CD5-A7B2-706FF83E259A} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => %windir%\ehome\MCUpdate.exe Task: {AA3AF835-9FB0-46E0-928A-C3DDAA475BD1} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => %SystemRoot%\ehome\ehPrivJob.exe Task: {ADAA6D01-EEF6-469C-A55A-03CF9F6724FA} - System32\Tasks\{68370195-F2A7-4DC1-8FC0-4078D884704C} => pcalua.exe -a "C:\Program Files\Reimage\Reimage Repair\uninst.exe" Task: {B94A390F-F10A-4098-9142-EFA836C43DAA} - System32\Tasks\DMREngine => C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [2011-08-24] (CyberLink) Task: {B9F92B61-85E3-4A44-8773-5ECBC8EE2DF6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.) Task: {BFA64EE7-9956-4F89-AE6E-C7DC99BEBFF7} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => %SystemRoot%\ehome\ehrec.exe Task: {C0C4EFB4-4D07-4790-AB36-CA880CC26382} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => %SystemRoot%\ehome\ehPrivJob.exe Task: {DE7B37F9-12AE-42FE-8EEA-3C3775D39448} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2011-03-29] (Egis Technology Inc.) Task: {E2E202EB-B3E4-41B2-A393-1866E0B09E7E} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_221_pepper.exe [2017-02-22] (Adobe Systems Incorporated) Task: {E46C4E25-713A-4AF5-A7B0-F1999BC7E965} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {E7B7E859-270C-49FF-B545-278332F994D4} - System32\Tasks\clear.fi => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [2011-08-24] (Acer Incorporated) Task: {ED32C7CB-00A7-4BA4-9B34-333EFB18009D} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => %SystemRoot%\ehome\ehPrivJob.exe Task: {EE9D2090-0B6F-4A51-8CA1-83336DC1462B} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => %SystemRoot%\ehome\ehPrivJob.exe Task: {EF2D6176-5B80-4F5A-BCE3-048057B71C0C} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => %SystemRoot%\ehome\ehrec.exe Task: {F29730FE-7C6D-4CCF-A564-9E6B9BE17134} - System32\Tasks\Milimili => C:\Program Files (x86)\MIO\MIO.exe Task: {F2ADBCFE-CD8E-4D28-8A41-4F1B8706AAE1} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-03-10] (AVAST Software) Task: {FC419111-DC8B-4D45-97DF-E0B28EA987E5} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => %SystemRoot%\ehome\mcupdate.exe (Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_221_pepper.exe Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\elbyExecuteWithUAC.job => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ExecuteWithUAC.exe ==================== Snelkoppelingen ============================= (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) Shortcut: C:\Users\Sippo\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Hipmy\Application\chrome.exe (Google Inc.) Shortcut: C:\Users\Sippo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Hipmy\Application\chrome.exe (Google Inc.) ShortcutWithArgument: C:\Users\Sippo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.startpageing123.com/?type=sc&ts=1489664067&z=de3e0df172e08e7feee1077gbzdb2tcq1q0z8e3qdm&from=che0812&uid=HitachiXHTS547550A9E384_J2160051H6AZPDH6AZPDX ShortcutWithArgument: C:\Users\Sippo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Hipmy\Application\chrome.exe (Google Inc.) -> hxxp://www.startpageing123.com/?type=sc&ts=1489664067&z=de3e0df172e08e7feee1077gbzdb2tcq1q0z8e3qdm&from=che0812&uid=HitachiXHTS547550A9E384_J2160051H6AZPDH6AZPDX ShortcutWithArgument: C:\Users\Sippo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.startpageing123.com/?type=sc&ts=1489664067&z=de3e0df172e08e7feee1077gbzdb2tcq1q0z8e3qdm&from=che0812&uid=HitachiXHTS547550A9E384_J2160051H6AZPDH6AZPDX ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Hipmy\Application\chrome.exe (Google Inc.) -> hxxp://www.startpageing123.com/?type=sc&ts=1489664067&z=de3e0df172e08e7feee1077gbzdb2tcq1q0z8e3qdm&from=che0812&uid=HitachiXHTS547550A9E384_J2160051H6AZPDH6AZPDX ==================== Geladen Modules (gefilterd) ============== 2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-12-14 18:19 - 2016-12-09 11:29 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2015-08-21 21:09 - 2015-08-21 21:09 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2017-03-16 12:31 - 2017-03-16 02:46 - 00113152 _____ () C:\Users\Sippo\AppData\Roaming\Kyubey\Kyubey.exe 2015-11-26 02:18 - 2015-11-26 02:18 - 00172544 _____ () C:\Program Files (x86)\NCP\SecureClient\x64\ncpbudget2008.dll 2015-11-26 02:18 - 2015-11-26 02:18 - 00261896 _____ () C:\Program Files (x86)\NCP\SecureClient\x64\ncpmif32.dll 2015-11-26 02:18 - 2015-11-26 02:18 - 00125440 _____ () C:\Program Files (x86)\NCP\SecureClient\ncpsec.exe 2017-03-12 11:10 - 2017-02-24 06:23 - 02264352 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll 2017-03-12 11:10 - 2017-02-24 06:23 - 02264528 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2016-12-14 18:19 - 2016-12-09 11:29 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2009-01-22 00:45 - 2009-01-22 00:45 - 01401856 _____ () C:\Program Files (x86)\EgisTec MyWinLocker\x64\LIBEAY32.dll 2016-09-15 14:23 - 2016-09-07 05:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-01-11 18:51 - 2016-12-21 08:09 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-01-11 18:50 - 2016-12-21 07:54 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-01-11 18:50 - 2016-12-21 07:48 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-01-11 18:50 - 2016-12-21 07:48 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-01-11 18:50 - 2016-12-21 07:48 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-01-11 18:50 - 2016-12-21 07:53 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2017-03-13 12:27 - 2017-03-13 12:27 - 00077312 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-03-13 12:27 - 2017-03-13 12:27 - 00182784 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-03-13 12:27 - 2017-03-13 12:27 - 41048064 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2017-03-13 12:27 - 2017-03-13 12:27 - 02236896 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\roottools.dll 2015-11-26 02:18 - 2015-11-26 02:18 - 01790464 _____ () C:\Program Files (x86)\NCP\SecureClient\ncpgacc.dll 2015-11-26 02:18 - 2015-11-26 02:18 - 00107520 _____ () C:\Program Files (x86)\NCP\SecureClient\bsdntif.dll 2015-11-26 02:18 - 2015-11-26 02:18 - 00225544 _____ () C:\Program Files (x86)\NCP\SecureClient\ncpmif32.dll 2015-11-26 02:18 - 2015-11-26 02:18 - 01031680 _____ () C:\Program Files (x86)\NCP\SecureClient\rsussl.dll 2016-12-06 06:40 - 2016-08-18 18:43 - 00442144 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madExcept_.bpl 2016-12-06 06:40 - 2016-08-18 18:43 - 00210720 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madBasic_.bpl 2016-12-06 06:40 - 2016-08-18 18:43 - 00059680 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madDisAsm_.bpl 2016-12-06 06:40 - 2016-11-01 10:11 - 00078624 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\GetProcessDLL.dll 2017-03-16 12:35 - 2017-03-15 07:15 - 00118784 _____ () c:\programdata\apple\apple application\devicecfg.dll 2017-03-16 12:35 - 2017-03-15 07:15 - 00118784 _____ () C:\ProgramData\Apple\Apple Application\DeviceCfg.dll 2017-03-10 06:47 - 2017-03-10 06:47 - 00170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-03-10 06:47 - 2017-03-10 06:47 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-03-10 06:46 - 2017-03-10 06:46 - 00290352 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-03-10 06:47 - 2017-03-10 06:47 - 00655056 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll ==================== Alternate Data Streams (gefilterd) ========= (Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.) ==================== Veilige Modus (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Bestandskoppeling (gefilterd) =============== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd.) ==================== Internet Explorer vertrouwde/beperkte toegang =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd.) IE trusted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\driversupport.com -> hxxp://apps.driversupport.com IE trusted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\driversupport.com -> hxxps://apps.driversupport.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\008k.com -> 008k.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\00hq.com -> 00hq.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\0190-dialers.com -> 0190-dialers.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\01i.info -> 01i.info IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\05p.com -> 05p.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\0calories.net -> 0calories.net IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\0cj.net -> 0cj.net IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\0scan.com -> 0scan.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\1-domains-registrations.com -> 1-domains-registrations.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\1-se.com -> 1-se.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\1001movie.com -> 1001movie.com IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\1001night.biz -> 1001night.biz IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\100gal.net -> 100gal.net IE restricted site: HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\100sexlinks.com -> 100sexlinks.com Er zijn 4788 Meer websites. ==================== Hosts inhoud: =============================== (Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.) 2017-03-13 19:27 - 2017-03-13 19:27 - 00000829 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere gebieden ============================ (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Acer01.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == MSCONFIG\startupreg: AppEx Accelerator UI => C:\Program Files\AMD Quick Stream\AMDQuickStream.exe -h MSCONFIG\startupreg: ArcadeMovieService => "C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" MSCONFIG\startupreg: BackupManagerTray => "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k MSCONFIG\startupreg: BCSSync => "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices MSCONFIG\startupreg: CanonQuickMenu => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE /logon MSCONFIG\startupreg: IJNetworkScannerSelectorEX => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE MSCONFIG\startupreg: NcpBudgetGui => "C:\Program Files (x86)\NCP\SecureClient\NcpBudgetGui.exe" -start MSCONFIG\startupreg: NcpMonitor => "C:\Program Files (x86)\NCP\SecureClient\ncpmon.exe" autorun MSCONFIG\startupreg: NcpPopup => "C:\Program Files (x86)\NCP\SecureClient\ncppopup.exe" noerrmsg MSCONFIG\startupreg: NcpRsuGui => "C:\Program Files (x86)\NCP\SecureClient\rwsrsu.exe" -gui MSCONFIG\startupreg: OneDrive => "c:\users\sippo\appdata\local\microsoft\onedrive\onedrive.exe" /background MSCONFIG\startupreg: Raptr => C:\PROGRA~2\Raptr\raptrstub.exe --startup MSCONFIG\startupreg: RTHDVCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s MSCONFIG\startupreg: VirtualCloneDrive => "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s HKLM\...\StartupApproved\Run: => "SynTPEnh" HKLM\...\StartupApproved\Run: => "RTHDVCPL" HKLM\...\StartupApproved\Run32: => "StartCCC" HKLM\...\StartupApproved\Run32: => "BlueStacks Agent" HKLM\...\StartupApproved\Run32: => "NcpBudgetGui" HKLM\...\StartupApproved\Run32: => "NcpMonitor" HKLM\...\StartupApproved\Run32: => "NcpRsuGui" HKLM\...\StartupApproved\Run32: => "NcpPopup" HKLM\...\StartupApproved\Run32: => "IJNetworkScannerSelectorEX" HKLM\...\StartupApproved\Run32: => "CanonQuickMenu" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\StartupApproved\Run: => "Advanced SystemCare 8" HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\StartupApproved\Run: => "Advanced SystemCare 9" HKU\S-1-5-21-3808174966-3550055594-1478129862-1000\...\StartupApproved\Run: => "Advanced SystemCare 10" ==================== Firewall regels (gefilterd) =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [{2DB494ED-EB62-4A16-8F13-DC8BD1AE248A}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{A8B6885C-32DA-4F5C-AADD-994A5DA5C03B}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{B6531248-92F7-47E1-932B-62BAAADEACDB}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{3F5C1961-45D5-4452-8BDE-A376F11A3F73}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{EE275FAA-2F59-402E-93CE-5AF542031FF0}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{1EF64E90-A69A-4D8E-882D-90AF447F2B81}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{2244ED43-F778-453F-AB83-EB4A0E08F7FA}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{43B8445E-3F21-48EE-9043-3639BCB0ACE0}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{F1D6E170-FB8C-4D33-89FC-109DF4822880}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{EAC7161E-03AE-482A-88CD-6397950D6FD3}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{86488E4A-E38B-409A-808F-F49DD573D887}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{E6D6EB0B-B495-4014-90F8-F0B19B0A8148}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{72FAC054-291B-4294-97EA-EA72AA67A6CB}] => (Allow) C:\Program Files\Vuze\Azureus.exe FirewallRules: [{F86F478B-6C51-488A-AC9E-88B545F09706}] => (Allow) C:\Program Files\Vuze\Azureus.exe FirewallRules: [UDP Query User{3E68E417-671D-436C-BA2E-BBC37B646BE4}C:\program files\vuze\azureus.exe] => (Block) C:\program files\vuze\azureus.exe FirewallRules: [TCP Query User{A55BCB1B-C48E-4D05-B797-04EDF5BFA9ED}C:\program files\vuze\azureus.exe] => (Block) C:\program files\vuze\azureus.exe FirewallRules: [UDP Query User{B743941B-9881-4BB1-B003-B5E613EBAF59}C:\program files\serif\webplus\x8\program\webplus.exe] => (Allow) C:\program files\serif\webplus\x8\program\webplus.exe FirewallRules: [TCP Query User{E3660C39-CD3E-4147-BF49-FACDEBEB9309}C:\program files\serif\webplus\x8\program\webplus.exe] => (Allow) C:\program files\serif\webplus\x8\program\webplus.exe FirewallRules: [UDP Query User{880CB3F6-6948-4691-98D4-9B79837E7493}C:\windows\explorer.exe] => (Block) C:\windows\explorer.exe FirewallRules: [TCP Query User{A070C6D9-99B2-4AFA-9452-B3DEF8ED6694}C:\windows\explorer.exe] => (Block) C:\windows\explorer.exe FirewallRules: [{28D81ECD-ADB7-4690-AFD7-2F5B74FB7D79}] => (Block) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe FirewallRules: [{5E057089-80A6-4BFE-A0DC-FE3878DF47B6}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe FirewallRules: [{81B61813-755E-4334-A88E-D96243D3BD77}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe FirewallRules: [{2AD53B39-C12E-414B-9B94-AF0E99CD8461}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\CLML\CLMLSvc.exe FirewallRules: [{D0BF19E1-1979-4CC9-A5AB-953E506EA338}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe FirewallRules: [{36B20E99-E76C-41CD-8597-A77F4B8EA9DB}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe FirewallRules: [{50F0193E-5797-43EB-8B66-2B5406FDD92B}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{AA0A5AA0-66F2-46A0-99E9-DF890BD3703F}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{ED458F9F-69BC-43F5-B49D-100D8B38ED80}] => (Allow) LPort=1900 FirewallRules: [{2E085D80-4FB5-4525-8B75-630E60C93270}] => (Allow) LPort=2869 FirewallRules: [{92771EEC-748E-4C9C-B8B4-58908E41C1F7}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{6184D379-7957-4B0F-9198-085DDAC12E65}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{87A9BC88-2C87-4729-93AC-A6530EFFC865}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{D5410980-724F-437E-88F1-00B2ECFE2022}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A09E7DF7-F397-4B24-A144-539506329D5E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{9363A7E0-FCC6-4870-9699-5746C4CC763E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{D7EF814A-939A-419B-B04A-7B734E6A72E1}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe FirewallRules: [{A5968F3F-2E8C-433F-842B-35075CD7F698}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe FirewallRules: [{04E2854E-C8F9-426F-8E55-E772362D72A6}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{67E28FF2-C8F8-4723-AE60-307A9A63B641}] => (Allow) C:\Program Files (x86)\Opera\43.0.2442.991\opera.exe FirewallRules: [{74579ECB-10E6-453B-BA77-EDF7B6F560F6}] => (Allow) C:\Program Files (x86)\Opera\43.0.2442.1144\opera.exe FirewallRules: [{F0E2679B-5B53-44B4-9CAD-FFA5E5D2B429}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.561\SZBrowser.exe FirewallRules: [{3D662219-5BB7-4FB4-A24E-A66FF6A16F62}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.590\SZBrowser.exe FirewallRules: [{F8C1F205-AA5B-463B-875F-23C5C358656C}] => (Allow) C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe FirewallRules: [{56D27254-D696-4FC3-B1FC-9B71982181A8}] => (Allow) C:\Program Files (x86)\Firefox\Firefox.exe FirewallRules: [{37D7A916-B30B-4365-9214-F355B2353F00}] => (Allow) C:\Program Files (x86)\Hipmy\Application\chrome.exe ==================== Herstelpunten ========================= 12-03-2017 08:58:34 Windows Update 12-03-2017 08:59:53 Windows Update 12-03-2017 11:01:37 JRT Pre-Junkware Removal 12-03-2017 12:34:52 Herstelbewerking 15-03-2017 17:16:11 Windows Update 15-03-2017 17:17:24 Windows Update ==================== Defecte Apparaatbeheer Apparaten ============= ==================== Eventlog fouten: ========================= Applicatiefouten: ================== Error: (03/16/2017 02:59:15 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Fout in de Volume Shadow Copy-service: onverwachte fout bij het aanroepen van routine QueryFullProcessImageNameW. hr = 0x80070006, De ingang is ongeldig. . Bewerking: Asynchrone bewerking uitvoeren Context: Huidige status: DoSnapshotSet Error: (03/16/2017 02:57:01 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: De service Cryptografische services is mislukt tijdens het verwerken van aanroep OnIdentity() op het object System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Toegang geweigerd. . Error: (03/16/2017 02:46:05 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (03/15/2017 10:43:54 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Sippo-PC) Description: Het activeren van de app Microsoft.LockApp_cw5n1h2txyewy!WindowsDefaultLockScreen is mislukt door de fout -2144927142. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Error: (03/15/2017 06:18:11 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Het programma firefox.exe, versie 51.0.1.6234 reageert niet meer op Windows en is afgesloten. Als u wilt zien of er meer informatie over het probleem beschikbaar is, raadpleegt u de probleemgeschiedenis in het onderdeel Beveiliging en onderhoud van het Configuratiescherm. Proces-id: 18fc Starttijd: 01d29d124e19b174 Eindtijd: 65 Toepassingspad: C:\Program Files (x86)\Mozilla Firefox\firefox.exe Rapport-id: 5804a1de-09a3-11e7-9c3a-e840f2055710 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (03/15/2017 06:18:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: plugin-container.exe, versie: 51.0.1.6234, tijdstempel: 0x5888f707 Naam van module met fout: mozglue.dll, versie: 51.0.1.6234, tijdstempel: 0x5888f27e Uitzonderingscode: 0x80000003 Foutmarge: 0x0000ec83 Id van proces met fout: 0x2154 Starttijd van toepassing met fout: 0x01d29d9bab2a0aa5 Pad naar toepassing met fout: C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe Pad naar module met fout: C:\Program Files (x86)\Mozilla Firefox\mozglue.dll Rapport-id: 8fe7143f-b3e1-4cd6-868d-0f8766f54e0c Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (03/15/2017 05:17:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: De service Cryptografische services is mislukt tijdens het verwerken van aanroep OnIdentity() op het object System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Toegang geweigerd. . Error: (03/15/2017 05:16:26 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: De service Cryptografische services is mislukt tijdens het verwerken van aanroep OnIdentity() op het object System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Toegang geweigerd. . Error: (03/15/2017 05:01:02 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (03/14/2017 11:28:24 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Sippo-PC) Description: Het activeren van de app Microsoft.LockApp_cw5n1h2txyewy!WindowsDefaultLockScreen is mislukt door de fout -2144927142. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Systeemfouten: ============= Error: (03/16/2017 03:04:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De Update Service(FirefoxU)-service kan vanwege de volgende fout niet worden gestart: De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord. Error: (03/16/2017 03:04:55 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: Update Service(FirefoxU). Error: (03/16/2017 03:04:37 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De ed2k idle service-service kan vanwege de volgende fout niet worden gestart: De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord. Error: (03/16/2017 03:04:37 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: ed2k idle service. Error: (03/16/2017 03:01:14 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} en APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} aan de gebruiker NT AUTHORITY\SYSTEM SID (S-1-5-18) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (03/16/2017 03:00:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: De NetTcpActivator-service is afhankelijk van de NetTcpPortSharing-service, die vanwege de volgende fout niet kan worden gestart: Kan de service niet starten omdat deze is uitgeschakeld of omdat het geen ingeschakelde apparaten met zich heeft verbonden. Error: (03/16/2017 03:00:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De APXACC-service kan vanwege de volgende fout niet worden gestart: Een apparaat dat op het systeem is aangesloten, werkt niet. Error: (03/16/2017 03:00:43 PM) (Source: APXACC) (EventID: 1003) (User: ) Description: The NDIS6 LWF initialization has failed. (0xC0000001) Error: (03/16/2017 02:58:41 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Servicebesturingsbeheer heeft na het onverwachte afsluiten van de Windows Search-service geprobeerd een herstelactie (Service opnieuw starten) uit te voeren, maar deze actie is met de volgende fout mislukt: De service is al gestart. Error: (03/16/2017 02:58:12 PM) (Source: DCOM) (EventID: 10010) (User: Sippo-PC) Description: De server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. CodeIntegrity: =================================== Date: 2017-02-27 06:01:46.523 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-02-23 09:13:47.021 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-02-19 10:00:31.311 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-02-19 10:00:31.287 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-02-19 10:00:28.318 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-02-19 10:00:28.273 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-02-19 10:00:28.238 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-02-19 09:58:49.233 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-02-19 09:58:49.204 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-02-19 09:18:23.851 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Geheugen info =========================== Processor: AMD E-450 APU with Radeon(tm) HD Graphics Percentage geheugen in gebruik: 42% Totaal fysiek RAM-geheugen: 5865.9 MB Beschikbaar fysiek RAM-geheugen: 3379.37 MB Totaal Virtueel geheugen: 7401.9 MB Beschikbaar Virtual geheugen: 4734.25 MB ==================== Schijven ================================ Drive c: (Acer) (Fixed) (Total:236.88 GB) (Free:136.29 GB) NTFS Drive d: (NieuwVolume) (Fixed) (Total:215.78 GB) (Free:200.48 GB) NTFS Drive f: (My Disc) (CDROM) (Total:0.29 GB) (Free:0 GB) CDFS ==================== MBR & Partitietabel ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 8227D031) Partition 1: (Not Active) - (Size=13 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=236.9 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=215.8 GB) - (Type=OF Extended) ==================== Eind van Addition.txt ============================