Extra scanresultaten van Farbar Recovery Scan Tool (x86) Versie: 11-10-2017 Gestart door Magic Tom (13-10-2017 18:25:40) Gestart vanaf C:\Users\Magic Tom\Downloads Microsoft Windows 10 Home Versie 1703 170317-1834 (X86) (2017-10-04 12:44:46) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-126822462-2923299525-1815723027-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-126822462-2923299525-1815723027-503 - Limited - Disabled) Gast (S-1-5-21-126822462-2923299525-1815723027-501 - Limited - Disabled) Magic Tom (S-1-5-21-126822462-2923299525-1815723027-1004 - Administrator - Enabled) => C:\Users\Magic Tom Schattie (S-1-5-21-126822462-2923299525-1815723027-1001 - Administrator - Enabled) => C:\Users\Schattie ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: Avira Antivirus (Disabled - Up to date) {B3F630BD-538D-1B4A-14FA-14B63235278F} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Disabled - Up to date) {0897D159-75B7-14C4-2E4A-2FC449B26D32} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag zou kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeinstallerd worden.) µTorrent (HKU\S-1-5-21-126822462-2923299525-1815723027-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223142801\...\uTorrent) (Version: 3.4.7.42330 - BitTorrent Inc.) µTorrent (HKU\S-1-5-21-126822462-2923299525-1815723027-1004\...\uTorrent) (Version: 3.5.0.44090 - BitTorrent Inc.) µTorrent (HKU\S-1-5-21-126822462-2923299525-1815723027-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223143666\...\uTorrent) (Version: 3.5.0.44090 - BitTorrent Inc.) Acer Crystal Eye Webcam 3.0.6.3 (HKLM\...\{A77255C4-AFCB-44A3-BF0F-2091A71FFD9E}) (Version: 3.0.6.3 - SuYin) Acer eAudio Management (HKLM\...\{57265292-228A-41FA-9AEC-4620CBCC2739}) (Version: 3.0.3008 - CyberLink Corp.) Acer eDataSecurity Management (HKLM\...\{A5633652-3795-4829-BB0B-644F0279E279}) (Version: 3.0.3065 - Egis Inc.) Acer Empowering Technology (HKLM\...\{8F1B6239-FEA0-450A-A950-B05276CE177C}) (Version: 3.0.3009 - Acer Incorporated) Acer ePower Management (HKLM\...\{58E5844B-7CE2-413D-83D1-99294BF6C74F}) (Version: 3.0.3014 - Acer Incorporated) Acer eRecovery Management (HKLM\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 3.0.3014 - Acer Incorporated) Acer eSettings Management (HKLM\...\{13D85C14-2B85-419F-AC41-C7F21E68B25D}) (Version: 3.0.3007 - Acer Incorporated) Acer GridVista (HKLM\...\GridVista) (Version: 2.72.317 - ) Acer Mobility Center Plug-In (HKLM\...\{11316260-6666-467B-AC34-183FCB5D4335}) (Version: 3.0.3000 - Acer Inc.) Acer ScreenSaver (HKLM\...\{79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}) (Version: 1.13.1301 - Acer Inc.) Acer VCM (HKLM\...\{047F790A-7A2A-4B6A-AD02-38092BA63DAC}) (Version: 3.1.3000 - Acer Incorporated) Activation Assistant for the 2007 Microsoft Office suites (HKLM\...\{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}) (Version: 1.0 - Microsoft Corporation) Hidden Activation Assistant for the 2007 Microsoft Office suites (HKLM\...\Activation Assistant for the 2007 Microsoft Office suites) (Version: - Microsoft Corporation) Adobe Flash Player 27 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 27.0.0.159 - Adobe Systems Incorporated) Adobe Reader 8.1.3 (HKLM\...\{AC76BA86-7AD7-1033-7B44-A81300000003}) (Version: 8.1.3 - Adobe Systems Incorporated) Agere Systems HDA Modem (HKLM\...\Agere Systems Soft Modem) (Version: - Agere Systems) Apple Application Support (32-bit) (HKLM\...\{05E07D23-91E9-4E70-A4CC-EF505088F967}) (Version: 5.4.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{90B7F915-6343-43CE-9DA7-E79E5BAC6673}) (Version: 10.3.1.2 - Apple Inc.) Apple Software Update (HKLM\...\{52D87F32-70E4-4348-8148-C0B9F35B1314}) (Version: 2.3.0.177 - Apple Inc.) Atheros Communications Inc.(R) AR8121/AR8113/AR8114 Gigabit/Fast Ethernet Driver (HKLM\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.30 - Atheros Communications Inc.) Avira (HKLM\...\{bbae0e09-4839-446f-8900-db9dfd443c62}) (Version: 1.2.97.30459 - Avira Operations GmbH & Co. KG) Avira (HKLM\...\{F0142122-F47D-4003-8747-7096FEC87429}) (Version: 1.2.97.30459 - Avira Operations GmbH & Co. KG) Hidden Avira Antivirus (HKLM\...\Avira Antivirus) (Version: 15.0.30.29 - Avira Operations GmbH & Co. KG) Avira Browser Safety (HKLM\...\{9E10EA90-5E97-43B7-A246-FC7B4F5E9493}) (Version: 1.4.5.509 - Avira Operations GmbH & Co KG) Avira System Speedup (HKLM\...\Avira System Speedup_is1) (Version: 4.2.1.6365 - Avira Operations GmbH & Co. KG) Belgium e-ID middleware 4.0.5 (build 7363) (HKLM\...\{824563DE-75AD-4166-9DC0-B6482F207363}) (Version: 4.0.7363 - Belgian Government) Bonjour (HKLM\...\{D168AAD0-6686-47C1-B599-CDD4888B9D1A}) (Version: 3.1.0.1 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.35 - Piriform) D3DX10 (HKLM\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.5.1.0230 - Disc Soft Ltd) DC-Bass Source 1.3.0 (HKLM\...\DC-Bass Source) (Version: - ) DivX Version Checker (HKLM\...\{3FC7CBBC4C1E11DCA1A752EA55D89593}) (Version: 7.1.0.9 - DivX, Inc.) Easy DVD Player (HKLM\...\Easy DVD Player) (Version: 4.6.9.2163 - ZJMedia Computing Inc.) FastImageResizer (remove only) (HKLM\...\FastImageResizer) (Version: - ) Google Chrome (HKLM\...\Google Chrome) (Version: 61.0.3163.100 - Google Inc.) Google Earth Plug-in (HKLM\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google) Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden HiJackThis (HKLM\...\{45A66726-69BC-466B-A7A4-12FCBA4883D7}) (Version: 1.0.0 - Trend Micro) ImgBurn (HKLM\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!) IncrediMail (HKLM\...\{FDFE5E63-116A-4655-9B4D-29F4AFE441B3}) (Version: 6.3.9.5253 - IncrediMail) Hidden IncrediMail 2.0 (HKLM\...\IncrediMail) (Version: 6.3.9.5253 - IncrediMail Ltd.) Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation) ITECIR (HKLM\...\{40580068-9B10-40B5-9548-536CE88AB23C}) (Version: 1.6 - ITE) iTunes (HKLM\...\{2F95FFC4-8624-43AB-8256-AA223555C9B7}) (Version: 12.6.0.100 - Apple Inc.) JMicron JMB38X Flash Media Controller (HKLM\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.00.12.07 - JMicron Technology Corp.) Junk Mail filter update (HKLM\...\{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden KB4023057 (HKLM\...\{FF5DFCAF-68C9-43A2-839D-9B8EC1771DE8}) (Version: 2.4.0.0 - Microsoft Corporation) Launch Manager (HKLM\...\LManager) (Version: - ) LightScribe 1.4.142.1 (HKLM\...\{CE386A4E-D0DA-4208-8235-BCE43275C694}) (Version: 1.4.142.1 - hxxp://www.lightscribe.com) Hidden Mesh Runtime (HKLM\...\{8C6D6116-B724-4810-8F2D-D047E6B7D68E}) (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Messenger Companion (HKLM\...\{8142D25E-028A-4563-86ED-5755783C8029}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-126822462-2923299525-1815723027-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223142801\...\OneDriveSetup.exe) (Version: 17.3.6998.0830 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-126822462-2923299525-1815723027-1004\...\OneDriveSetup.exe) (Version: 17.3.6998.0830 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-126822462-2923299525-1815723027-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223143666\...\OneDriveSetup.exe) (Version: 17.3.6998.0830 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - KB2467175 (HKLM\...\{a0fe116e-9a8a-466f-aee0-625cb7c207e3}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Works (HKLM\...\{A2A0A82F-025F-458d-A0CD-9BB2320804B5}) (Version: 08.05.0822 - Microsoft Corporation) Mozilla Firefox 48.0 (x86 nl) (HKLM\...\Mozilla Firefox 48.0 (x86 nl)) (Version: 48.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 48.0.0.6051 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NVIDIA Grafisch stuurprogramma 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 342.01 - NVIDIA Corporation) NVIDIA HD Audio-stuurprogramma 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA Update 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation) OGA Notifier 1.7.0105.35.0 (HKLM\...\{ADE14C1E-AA43-45D3-88E5-00767D31B0E8}) (Version: 1.7.0105.35.0 - Microsoft Corporation) Hidden OpenSource Flash Video Splitter 1.0.0.5 (HKLM\...\OpenSource Flash Video Splitter) (Version: 1.0.0.5 - ) Photo Notifier and Animation Creator (HKLM\...\Photo Notifier and Animation Creator) (Version: 1.0.0.1009 - IncrediMail Ltd.) PhotoMail Maker (HKLM\...\{75AE8014-1184-4BC0-B279-C879540719EE}) (Version: 6.0.0.1007 - Uw bedrijfsnaam) Hidden PhotoMail Maker (HKLM\...\PhotoMail) (Version: 6.0.0.1007 - IncrediMail Ltd.) PhotoNow! (HKLM\...\{D36DD326-7280-11D8-97C8-000129760CBE}) (Version: 1.1.4619 - CyberLink Corp.) Popcorn-Time (HKU\S-1-5-21-126822462-2923299525-1815723027-1004\...\Popcorn-Time) (Version: 0.3.10 - Popcorn Time) Popcorn-Time (HKU\S-1-5-21-126822462-2923299525-1815723027-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223143666\...\Popcorn-Time) (Version: 0.3.10 - Popcorn Time) PowerDirector (HKLM\...\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 6.50.0000 - CyberLink Corp.) Hidden QuickTime 7 (HKLM\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.) Samsung i-Launcher 1.1.0.0 (HKLM\...\Samsung i-Launcher) (Version: 1.1.0.0 - Samsung Electronics Co., Ltd.) Skype™ 7.4 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.4.102 - Skype Technologies S.A.) Speccy (HKLM\...\Speccy) (Version: 1.31 - Piriform) Stuurprogrammapakket voor Windows - Fedict SmartCard (10/04/2011 4.0.0.5) (HKLM\...\3FE3642036A0F4AEC17772437CE14BB1E67006AA) (Version: 10/04/2011 4.0.0.5 - Fedict) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.2.17.5 - Synaptics Incorporated) TomTom HOME (HKLM\...\{0E09BE17-EDEA-42CA-8974-42A587F51510}) (Version: 2.9.8 - Uw bedrijfsnaam) TomTom HOME (HKLM\...\{5DCB2EB3-87AD-426E-8D74-8B92C9D731C4}) (Version: 2.9.8 - Uw bedrijfsnaam) TomTom HOME Visual Studio Merge Modules (HKLM\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) Total Annihilation - Battle Tactics (HKLM\...\Total Annihilation - Battle Tactics) (Version: - ) Total Annihilation - Core Contingency (HKLM\...\Total Annihilation - Core Contingency) (Version: - ) Total Annihilation (HKLM\...\Total Annihilation) (Version: - ) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update voor Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0413-0000-0000000FF1CE}_HOMESTUDENTR_{5CF7002F-6F49-4482-9564-5614FBE560FA}) (Version: - Microsoft) Update voor Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0413-0000-0000000FF1CE}_HOMESTUDENTR_{15D84E79-1ED7-42C5-B2FD-745C3FBDDDC5}) (Version: - Microsoft) Update voor Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0413-0000-0000000FF1CE}_HOMESTUDENTR_{A66AE6A1-8D8C-4102-BC18-38CBDE40F809}) (Version: - Microsoft) UpdateAssistant (HKLM\...\{DE45508F-369E-4476-8F19-088F4933340E}) (Version: 1.8.0.0 - Microsoft Corporation) Hidden Validity Sensors software (HKLM\...\{567E8236-C414-4888-8211-3D61608D57AE}) (Version: 2.7.44 - Validity Sensors, Inc.) VC80CRTRedist - 8.0.50727.6195 (HKLM\...\{933B4015-4618-4716-A828-5289FC03165F}) (Version: 1.2.0 - DivX, Inc) Hidden Visual Studio C++ 10.0 Runtime (HKLM\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) VLC media player (HKLM\...\VLC media player) (Version: 2.2.6 - VideoLAN) WIDCOMM Bluetooth Software 6.0.1.5000 (HKLM\...\{03D1988F-469F-4843-8E6E-E5FE9D17889D}) (Version: 6.0.1.5000 - Broadcom Corporation) WinAce Archiver (HKLM\...\WinAce Archiver) (Version: 2.69 - e-merge GmbH) Windows 10 Update and Privacy Settings (HKLM\...\{542CC2C2-ABAF-4604-8723-DA296AF74540}) (Version: 1.0.14.0 - Microsoft Corporation) Windows 10-updateassistent (HKLM\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22243 - Microsoft Corporation) Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Sync (HKLM\...\{CD19EDD9-1632-4002-9212-7478E4BA0423}) (Version: 14.0.8089.726 - Microsoft Corporation) WinZip 12.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240B7}) (Version: 12.0.8252 - WinZip Computing, S.L. ) ==================== Aangepaste CLSID (gefilterd): ========================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ShellIconOverlayIdentifiers: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll [2008-07-29] (Egis Inc.) ContextMenuHandlers1: [EDSshellExt] -> {29FF7AB0-BE34-4992-A30B-53A9D86EE239} => C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSshellExt.dll [2008-07-29] (Egis Incorporated.) ContextMenuHandlers1: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files\Avira\Antivirus\shlext.dll [2017-09-28] (Avira Operations GmbH & Co. KG) ContextMenuHandlers1: [SystemSpeedupFilesMenu] -> {ef263503-8f0e-3e6a-ae2e-fe0b4b441d52} => C:\WINDOWS\system32\mscoree.dll [2017-03-18] (Microsoft Corporation) ContextMenuHandlers1: [ZFAdd] -> {8FF88D27-7BD0-11D1-BFB7-00AA00262A11} => C:\Program Files\WinAce\arcext.dll [2007-11-08] (e-merge GmbH) ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2016-12-14] (Malwarebytes) ContextMenuHandlers4: [EDSshellExt] -> {29FF7AB0-BE34-4992-A30B-53A9D86EE239} => C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSshellExt.dll [2008-07-29] (Egis Incorporated.) ContextMenuHandlers4: [SystemSpeedupFoldersMenu] -> {3d52b24d-33bb-3895-99ea-a0156f24a3f9} => C:\WINDOWS\system32\mscoree.dll [2017-03-18] (Microsoft Corporation) ContextMenuHandlers4: [ZFAdd] -> {8FF88D27-7BD0-11D1-BFB7-00AA00262A11} => C:\Program Files\WinAce\arcext.dll [2007-11-08] (e-merge GmbH) ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Geen bestand ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2016-11-14] (NVIDIA Corporation) ContextMenuHandlers5: [SystemSpeedupDesktopMenu] -> {cefaf456-bc17-3f4b-b7d9-75070925911b} => C:\WINDOWS\system32\mscoree.dll [2017-03-18] (Microsoft Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2016-12-14] (Malwarebytes) ContextMenuHandlers6: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files\Avira\Antivirus\shlext.dll [2017-09-28] (Avira Operations GmbH & Co. KG) ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {0A008BA3-3BE6-4F25-A00E-424608C45451} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-08] (Google Inc.) Task: {0A34EE48-2231-4F08-98D6-0CD3E924388C} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK Task: {0F1D5974-A807-4AF6-8C3F-650B458344AE} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {17B22F49-F59E-4679-8556-B520B2F06D09} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {1E8DB08B-2145-46C1-9F6E-0437EB844E3E} - System32\Tasks\Avira\System Speedup\Delayed Startup\Magic Tom\1 => C:\Program Files\CCleaner\CCleaner.exe [2017-09-20] (Piriform Ltd) <==== AANDACHT Task: {2E4BF06C-ECE5-4FF5-8C50-8F9F2ACF4FE0} - System32\Tasks\Avira\System Speedup\TestScheduler => C:\Program Files\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe [2017-10-05] (Avira Operations GmbH & Co. KG) Task: {305EBF5B-3D00-4695-B0E7-ED5B98CF0527} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {312FB303-E89E-408C-8D13-A3BE53B9493F} - System32\Tasks\SpyHunter4 => C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe Task: {36B75ECD-7956-4068-9A1F-C9E4114C5320} - System32\Tasks\Avira\System Speedup\Delayed Startup\All users\1 => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2015-11-26] (NVIDIA Corporation) Task: {36D7E5E5-E9CD-4CFA-95A5-DFFA9A5681E8} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Geen bestand <==== AANDACHT Task: {385E3661-FC0A-4616-9D51-45EBE9C658AA} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Geen bestand <==== AANDACHT Task: {413801BC-32E9-48E4-978E-5D560F116181} - System32\Tasks\{53AA9326-A8C2-4CC3-99D2-E04570DAF221} => C:\Windows\system32\pcalua.exe -a G:\setup.exe -d G:\ Task: {443C81D4-950B-4E8F-8BC7-1DCFB5CA5A17} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {49E29700-27C1-4471-9C95-3AA712D427E9} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {54FA5E2A-FD25-4E8D-A1CF-D323582CCC86} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {565B53FF-D307-4CBF-8FB5-839F4C025BE7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-09-20] (Piriform Ltd) Task: {5B238E31-B0FB-489B-81E9-C9B0F379C05B} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Geen bestand <==== AANDACHT Task: {612122C1-FA17-4EF1-9D6E-67D114FBFB05} - System32\Tasks\AviraSystemSpeedupUpdate => C:\ProgramData\Avira\SystemSpeedup\Update\avira_speedup_setup_update.exe [2017-10-09] (Avira Operations GmbH & Co. KG ) Task: {6AF717C6-3FE7-43A6-A24E-A89300DC972E} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Geen bestand <==== AANDACHT Task: {70D7C0B1-B476-44AA-A021-22B316D4D3DF} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {71006B88-7BFB-4615-B0A4-6894AE513B88} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {714F9A1B-54D3-44DB-884A-AF9B8F871D7A} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe Task: {71F07D05-B5D9-43EB-822A-F7297C047E79} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Geen bestand <==== AANDACHT Task: {7AEAAEB0-E279-4519-99D4-3FDCAA63E81F} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {7C7413B4-FB90-44D3-9DE3-7009A3956B93} - System32\Tasks\{D89D0EE7-E348-4153-9994-397E122CA8F6} => C:\Program Files\Skype\\Phone\Skype.exe [2015-04-17] (Skype Technologies S.A.) Task: {7E7A1B43-9F0E-4225-A74F-8219661CA5BD} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {7F159FA6-9201-4C4C-AC0E-13EDAD5AA4C3} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Geen bestand <==== AANDACHT Task: {8114CB24-4F8A-4250-A7DC-B0F138EFA65F} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {841454C3-F31C-4C67-8553-EF33D8036CF1} - System32\Tasks\Avira\System Speedup\Delayed Startup\All users\2 => C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe [2017-06-07] (DivX, LLC) Task: {84B9AEE9-0F7D-42A0-8345-86A76E3C10BC} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {84C1104A-AE49-4423-8450-AD9AE1CB422B} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {8DA55679-8757-4B96-9977-811DCDC65C16} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Geen bestand <==== AANDACHT Task: {91EEC102-C220-42C2-9262-F3755DEA8B64} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {9F5BC1DD-BD69-4F0B-B5F0-29C86AD3B2DD} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Geen bestand <==== AANDACHT Task: {A53D9064-CAFF-4A63-8B99-9E8178A27405} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {A5FC4A42-3E11-4E0E-B891-2F9ED696D177} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe Task: {A985A573-9C5A-4117-9C0C-0EF27C54BA9D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Geen bestand <==== AANDACHT Task: {AAF6DE16-96A0-4253-8882-4A536FAF6BCC} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {B429CFF5-CB6C-4E8D-9DF4-339FAB3EBA85} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {B4B3B6FC-213A-4126-BD70-9D67EC148446} - System32\Tasks\Avira Browser Safety Updater Task => C:\Program Files\Avira\Browser Safety\AviraBrowserSafetyUpdater.exe Task: {B83602DE-761E-4ADD-8CD3-FCD85292E347} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C1106AB3-FB39-4042-8C1E-E16B67DC3427} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C3915271-3D30-4F7D-8D8E-ABD1F76E15DD} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Geen bestand <==== AANDACHT Task: {CF82610D-41B4-4A9A-99C4-4C52B6710A56} - System32\Tasks\OGALogon => C:\Windows\system32\OGAVerify.exe [2008-12-31] () Task: {D14FAC32-B97A-4EE7-8BCE-53E461A1D3F4} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {D43BE058-BE31-4B87-812F-ADF93BA2BF13} - System32\Tasks\OGADaily => C:\Windows\system32\OGAVerify.exe [2008-12-31] () Task: {D99C4E7F-7D1D-4CCB-909B-4A06785118A5} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2017-02-14] (Apple Inc.) Task: {DC169ECB-7DA8-4CAA-B436-D54D44AC402D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-08] (Google Inc.) Task: {DD8D540D-F931-4280-A49D-1487BC881F45} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Geen bestand <==== AANDACHT Task: {E06E0D93-12E4-4A69-938B-2D743CD18755} - System32\Tasks\Avira SystrayStartTrigger => Avira.SystrayStartTrigger.exe Task: {E13A83A5-0D99-4EF0-B654-015BE99FDB00} - System32\Tasks\Avira\System Speedup\SpeedupSysTray => C:\Program Files\Avira\System Speedup\Avira.SystemSpeedup.UI.Systray.exe [2017-10-05] (Avira Operations GmbH & Co. KG) Task: {E64B6358-1AD1-48A7-BE28-3FA4A0477DD0} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2017-10-10] (Adobe Systems Incorporated) Task: {E7BE32F9-37DD-450D-A31A-C582B8EDD999} - System32\Tasks\{D9F9504F-123E-463C-84CC-B179B3A263B2} => C:\Windows\system32\pcalua.exe -a "C:\Users\Magic Tom\Downloads\topcom200powerlan200turbo.exe" -d "C:\Users\Magic Tom\Downloads" Task: {EAABA9CF-63C5-4CD8-95EA-529F5E303372} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {EB20CAB7-F791-41C4-AC31-071F4DBA4EE2} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {F388784F-EE29-4B3E-8801-6D311FFB8F7B} - System32\Tasks\{B7AD2E27-7A61-4EC2-AF94-95B5800705E4} => C:\WINDOWS\system32\pcalua.exe -a E:\Tom\Drivers\CDM21000_Setup.exe -d E:\Tom Task: {F618339F-0F99-4BDD-9395-BAF3C4DD7B15} - System32\Tasks\DivXUpdate => C:\Program Files\Common Files\DivX Shared\DivX Update\DivXUpdate.exe [2017-02-03] (DivX, LLC) (Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\OGADaily.job => C:\Windows\system32\OGAVerify.exe Task: C:\WINDOWS\Tasks\OGALogon.job => C:\Windows\system32\OGAVerify.exe Task: C:\WINDOWS\Tasks\SpyHunter4.job => C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe ==================== Snelkoppelingen & WMI ======================== (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) ShortcutWithArgument: C:\Users\Magic Tom\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\76f9e4d33b60b312\Popcorn-Time.lnk -> C:\Users\Magic Tom\AppData\Local\Popcorn-Time\Popcorn-Time.exe (The NWJS Community) -> --user-data-dir="C:\Users\Magic Tom\AppData\Local\Popcorn-Time\User Data" --profile-directory=Default --app-id=hecfofbbdfadifpemejbbdcjmfmboohj ==================== Geladen Modules (gefilterd) ============== 2017-03-16 16:09 - 2017-03-16 16:09 - 000080184 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2017-03-16 16:09 - 2017-03-16 16:09 - 001041720 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2001-01-12 11:17 - 2008-06-02 10:25 - 000024576 _____ () C:\Program Files\Acer\Empowering Technology\Service\ETService.exe 2017-10-04 14:10 - 2017-10-04 14:10 - 000032768 _____ () C:\WINDOWS\assembly\GAC_MSIL\Framework.Model.Controller\3.0.3009.0__14bcaafdb44b5951\Framework.Model.Controller.dll 2017-10-04 14:10 - 2017-10-04 14:10 - 000009216 _____ () C:\WINDOWS\assembly\GAC_MSIL\Framework.Model.ControllerInterface\3.0.3009.0__d842b71b4d6ed079\Framework.Model.ControllerInterface.dll 2017-10-04 14:10 - 2017-10-04 14:10 - 000061440 _____ () C:\WINDOWS\assembly\GAC_MSIL\Framework.Library\3.0.3009.0__3036420f80dd6947\Framework.Library.dll 2017-10-04 14:10 - 2017-10-04 14:10 - 000015360 _____ () C:\WINDOWS\assembly\GAC_MSIL\Framework.Host\3.0.3009.0__672b450de5a7e94a\Framework.Host.dll 2017-10-04 14:10 - 2017-10-04 14:10 - 000006144 _____ () C:\WINDOWS\assembly\GAC_MSIL\Framework.PluginInterface\3.0.3009.0__9ecdf03bb2054f94\Framework.PluginInterface.dll 2009-01-03 02:06 - 2008-05-30 13:22 - 000016384 _____ () C:\Program Files\Acer\Empowering Technology\eAudio\eAudioSrvPlugin.dll 2017-10-04 14:10 - 2017-10-04 14:10 - 000036864 _____ () C:\WINDOWS\assembly\GAC_MSIL\Framework.Utility\3.0.3009.0__4df5dcab8860d239\Framework.Utility.dll 2001-01-12 11:28 - 2008-05-26 15:40 - 000016384 _____ () C:\Program Files\Acer\Empowering Technology\eSettings\eSettings.ServicePlugin.dll 2001-01-12 11:28 - 2008-05-26 15:37 - 000016384 _____ () C:\Program Files\Acer\Empowering Technology\eSettings\eSettings.Logger.dll 2001-01-12 11:28 - 2008-05-26 15:39 - 000143360 _____ () C:\Program Files\Acer\Empowering Technology\eSettings\eSettings.Model.Computer.dll 2001-01-12 11:28 - 2008-05-26 15:37 - 000036864 _____ () C:\Program Files\Acer\Empowering Technology\Service\eSettings.Model.ComputerInterface.dll 2017-01-01 22:35 - 2017-04-23 09:44 - 001736992 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll 2001-01-12 12:03 - 2007-12-06 17:15 - 000110592 _____ () C:\Acer\Mobility Center\MobilityService.exe 2001-01-12 12:03 - 2007-11-27 16:08 - 000032768 _____ () C:\Acer\Mobility Center\MobilityInterface.dll 2017-10-04 14:01 - 2016-11-14 13:00 - 000123448 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll 2017-03-18 20:19 - 2017-03-18 20:19 - 000116824 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2007-05-11 01:50 - 2007-05-11 01:50 - 000017024 _____ () C:\Program Files\Adobe\Reader 8.0\Reader\viewerps.dll 2017-03-18 20:19 - 2017-03-19 11:36 - 001456128 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-09-07 18:12 - 2017-09-07 18:12 - 000077824 _____ () C:\Program Files\CCleaner\lang\lang-1043.dll 2017-09-28 15:42 - 2017-09-21 06:57 - 003011928 _____ () C:\Program Files\Google\Chrome\Application\61.0.3163.100\libglesv2.dll 2017-09-28 15:42 - 2017-09-21 06:57 - 000086872 _____ () C:\Program Files\Google\Chrome\Application\61.0.3163.100\libegl.dll 2017-10-04 23:31 - 2017-10-04 23:31 - 000064512 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x86__kzf8qxf38zg5c\SkypeHost.exe 2017-10-04 23:31 - 2017-10-04 23:31 - 000171008 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x86__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-10-04 23:31 - 2017-10-04 23:31 - 027734016 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x86__kzf8qxf38zg5c\SkyWrap.dll 2017-10-04 23:31 - 2017-10-04 23:31 - 001660928 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x86__kzf8qxf38zg5c\skypert.dll ==================== Alternate Data Streams (gefilterd) ========= (Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.) ==================== Veilige Modus (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.) ==================== Bestandskoppeling (gefilterd) =============== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd.) ==================== Internet Explorer vertrouwde/beperkte toegang =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd.) IE trusted site: HKU\S-1-5-21-126822462-2923299525-1815723027-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223142801\...\esprit.be -> hxxps://www.esprit.be ==================== Hosts Inhoud: =============================== (Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.) 2006-11-02 12:23 - 2012-10-27 16:54 - 000000027 _____ C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Andere gebieden ============================ (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223142172\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223142708\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-21-126822462-2923299525-1815723027-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223142801\Control Panel\Desktop\\Wallpaper -> C:\Users\Schattie\AppData\Roaming\Microsoft\Windows Live Photo Gallery\Bureaubladachtergrond van Windows Live Photo Gallery.jpg HKU\S-1-5-21-126822462-2923299525-1815723027-1004\Control Panel\Desktop\\Wallpaper -> C:\Users\Magic Tom\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper HKU\S-1-5-21-126822462-2923299525-1815723027-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223143666\Control Panel\Desktop\\Wallpaper -> C:\Users\Magic Tom\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223144228\Control Panel\Desktop\\Wallpaper -> DNS Servers: 195.130.130.4 - 195.130.131.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == MSCONFIG\Services: Apple Mobile Device => 2 MSCONFIG\Services: Bonjour Service => 2 MSCONFIG\Services: eDataSecurity Service => 2 MSCONFIG\Services: SkypeUpdate => 2 MSCONFIG\Services: ss_conn_service => 2 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Acer VCM.lnk => C:\Windows\pss\Acer VCM.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^BTTray.lnk => C:\Windows\pss\BTTray.lnk.CommonStartup MSCONFIG\startupreg: APSDaemon => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: DivXMediaServer => C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe MSCONFIG\startupreg: eAudio => "C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe" MSCONFIG\startupreg: eDataSecurity Loader => C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe MSCONFIG\startupreg: ePower_DMC => C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe MSCONFIG\startupreg: IAAnotif => C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: KiesPreload => C:\Program Files\Samsung\Kies\Kies.exe /preload MSCONFIG\startupreg: KiesTrayAgent => C:\Program Files\Samsung\Kies\KiesTrayAgent.exe MSCONFIG\startupreg: LManager => C:\PROGRA~1\LAUNCH~1\LManager.exe MSCONFIG\startupreg: PLFSetI => C:\Windows\PLFSetI.exe MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: SynTPEnh => %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe MSCONFIG\startupreg: TomTomHOME.exe => "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" -s MSCONFIG\startupreg: WarReg_PopUp => C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe MSCONFIG\startupreg: Windows Defender => %ProgramFiles%\Windows Defender\MSASCui.exe -hide MSCONFIG\startupreg: WindowsWelcomeCenter => rundll32.exe oobefldr.dll,ShowWelcomeCenter MSCONFIG\startupreg: ZPdtWzdVitaKey MC3000 => "C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe" show HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run: => "DivXMediaServer" HKU\S-1-5-21-126822462-2923299525-1815723027-1004\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-126822462-2923299525-1815723027-1004\...\StartupApproved\Run: => "TomTomHOME.exe" HKU\S-1-5-21-126822462-2923299525-1815723027-1004\...\StartupApproved\Run: => "KiesPreload" HKU\S-1-5-21-126822462-2923299525-1815723027-1004\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" HKU\S-1-5-21-126822462-2923299525-1815723027-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223143666\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-126822462-2923299525-1815723027-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223143666\...\StartupApproved\Run: => "TomTomHOME.exe" HKU\S-1-5-21-126822462-2923299525-1815723027-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223143666\...\StartupApproved\Run: => "KiesPreload" HKU\S-1-5-21-126822462-2923299525-1815723027-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10122017223143666\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" ==================== Firewall regels (gefilterd) =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [{8F7C69E7-5122-4FD9-BD74-5E824AB80809}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe FirewallRules: [{59D97F57-D6B1-4B6C-A93D-A7C3E4F6F6FD}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [UDP Query User{F01D8A5D-BFE1-4ACA-815E-7EF856167BE4}C:\users\magic tom\appdata\local\popcorn-time\popcorn-time.exe] => (Block) C:\users\magic tom\appdata\local\popcorn-time\popcorn-time.exe FirewallRules: [TCP Query User{5AF2B42A-EAF9-427B-8911-B556D8D2283D}C:\users\magic tom\appdata\local\popcorn-time\popcorn-time.exe] => (Block) C:\users\magic tom\appdata\local\popcorn-time\popcorn-time.exe FirewallRules: [UDP Query User{C4ABAFB1-B34A-4F27-A71A-05E0AE72DB16}C:\users\magic tom\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\magic tom\appdata\local\popcorn-time\popcorn-time.exe FirewallRules: [TCP Query User{2BCBE228-D03B-445B-97F3-5656FB0C9E30}C:\users\magic tom\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\magic tom\appdata\local\popcorn-time\popcorn-time.exe FirewallRules: [{0D89DA45-C305-4780-A093-A40647A3ABEF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{AE986172-CC08-42BB-8DA0-62CB919009FA}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{7BD369E5-E728-408C-B902-FA45DB978614}] => (Allow) C:\Users\Schattie\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{7A910AD0-A564-4DBB-B7D7-F35DA06E6F6B}] => (Allow) C:\Users\Schattie\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E03FDCEE-5F0F-4F2B-8D3E-A2D50A606C99}] => (Allow) C:\Users\Schattie\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{68A4AA12-F8AE-47AC-833B-E8A6943EC65E}] => (Allow) C:\Users\Schattie\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{0C5BF3D4-2C4A-487A-9C31-D658535350BD}] => (Allow) C:\Users\Schattie\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{68E714AA-1977-49F0-8EFD-32303007998E}] => (Allow) C:\Users\Schattie\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{10138AE2-5C8C-4AFD-9ECE-B8D0ED715DF5}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{2FA58A00-2913-43E8-864A-A3D6C93B1807}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{21FE97CA-1BAB-4FA3-A920-70090F38A62C}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{4276B1B5-80D0-4B4F-A6FE-00066B3DF1F0}] => (Allow) C:\Windows\System32\muzapp.exe FirewallRules: [{C14145F5-D7F7-41CD-AB58-B51CFB2C57B2}] => (Allow) C:\Windows\System32\muzapp.exe FirewallRules: [{347E873C-F79C-4828-800C-4D2A767F0400}] => (Allow) C:\Users\Magic Tom\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{6D29595A-E646-427D-B17C-A6D788AF0DD5}] => (Allow) C:\Users\Magic Tom\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{26AF366C-45F2-4757-A78F-EAE20F1E9799}] => (Allow) C:\Program Files\Cyberlink\PowerDirector\PDR.EXE FirewallRules: [{B339A064-06D0-4BCA-ACF0-9ECD7F80251C}] => (Allow) C:\Program Files\Acer\Acer VCM\VC.exe FirewallRules: [{8A7AF7C0-F657-49EB-B7BD-DF94A67F4292}] => (Allow) C:\Program Files\LimeWire\LimeWire.exe FirewallRules: [{8EECEAE3-A54E-4CF8-A300-9F1F4C55A181}] => (Allow) C:\Program Files\LimeWire\LimeWire.exe FirewallRules: [{3FA2C006-6C1B-4B6A-9EE0-0C561E91FF05}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{B35E03CE-81DD-4F95-AB03-8EA87A15C92D}] => (Allow) svchost.exe FirewallRules: [{BF6E25C0-F7FD-4565-9254-9EA9FE9BA106}] => (Allow) C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe FirewallRules: [{39EFC50D-1829-46F1-959B-F1B1B4B891D7}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe FirewallRules: [{351C7750-1E5E-4374-A5E4-115E579BD202}] => (Allow) LPort=2869 FirewallRules: [{BA8602C4-CEC6-4A77-BEA4-4358387ACC05}] => (Allow) LPort=1900 FirewallRules: [{3AFAABB3-5DA7-43B9-9A1C-25CD61A28556}] => (Allow) C:\Program Files\Windows Live\Mesh\MOE.exe FirewallRules: [{547BB7BB-75B9-4B23-B071-B92657467F46}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{103FE63C-1181-422C-8361-C6B4AE0F55E3}] => (Allow) C:\Program Files\IncrediMail\bin\ImpCnt.exe FirewallRules: [{7B1912EE-057F-4D3D-9E51-D7EFAFAA293B}] => (Allow) C:\Program Files\IncrediMail\bin\ImpCnt.exe FirewallRules: [{F6CED081-812B-4692-8E9B-8E45E3B4AC9E}] => (Allow) C:\Program Files\IncrediMail\bin\ImpCnt.exe FirewallRules: [{20820BDF-B847-4AD8-B99A-9FB3C4E69DF1}] => (Allow) C:\Program Files\IncrediMail\bin\IncMail.exe FirewallRules: [{FDC96D08-2387-431E-ABF9-AB63AC2AF545}] => (Allow) C:\Program Files\IncrediMail\bin\IncMail.exe FirewallRules: [{99750450-0A1C-4E18-B3B5-AD707EDE843E}] => (Allow) C:\Program Files\IncrediMail\bin\ImApp.exe FirewallRules: [{C214551D-17D3-4664-A6E8-87BFD920DBC8}] => (Allow) C:\Program Files\IncrediMail\bin\ImApp.exe FirewallRules: [{C03F88F9-4158-4ACE-A730-F5262D23A6B1}] => (Allow) C:\Program Files\IncrediMail\bin\IncMail.exe FirewallRules: [{3901601E-4741-4D58-B75F-0CF25BA226A1}] => (Allow) C:\Program Files\IncrediMail\bin\IncMail.exe FirewallRules: [{F460F8BD-1619-48EE-9C53-1D13109E4B37}] => (Allow) C:\Program Files\IncrediMail\bin\ImApp.exe FirewallRules: [{4DFF092D-F470-4DA3-90E0-371739F9D356}] => (Allow) C:\Program Files\IncrediMail\bin\ImApp.exe FirewallRules: [{516D8A92-CF9F-4D5E-B0BF-D5DAC5930AE4}] => (Allow) C:\Program Files\IncrediMail\bin\ImpCnt.exe FirewallRules: [{34ADF334-8C88-45BF-B769-8F08EBE910C6}] => (Allow) C:\Program Files\IncrediMail\bin\ImpCnt.exe FirewallRules: [TCP Query User{3BBD229D-43FB-476A-87DC-875808DA8B9A}C:\users\magic tom\downloads\utorrent.exe] => (Block) C:\users\magic tom\downloads\utorrent.exe FirewallRules: [UDP Query User{4EB9FFA8-9990-4D82-9C2E-97498CA8C5C2}C:\users\magic tom\downloads\utorrent.exe] => (Block) C:\users\magic tom\downloads\utorrent.exe FirewallRules: [TCP Query User{FF42F0BE-82ED-4F6F-B93C-46DC7FB9F293}C:\users\magic tom\downloads\utorrent.exe] => (Allow) C:\users\magic tom\downloads\utorrent.exe FirewallRules: [UDP Query User{C24C9FB1-9817-4ABD-A645-4ECD1E74EE5A}C:\users\magic tom\downloads\utorrent.exe] => (Allow) C:\users\magic tom\downloads\utorrent.exe FirewallRules: [{0F540F28-1800-4334-8BFB-DDB883BEFE06}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{01731AB9-9276-4208-8136-F9DC74079C76}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{B51FA066-270D-45EA-9EC3-A22B696D53A9}] => (Allow) C:\Users\Magic Tom\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{8F842777-ABEE-4F6F-BDF3-7C02946D05B2}] => (Allow) C:\Users\Magic Tom\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{D75BD1EB-68A5-4972-922A-D9CF9370127A}] => (Allow) C:\Users\Magic Tom\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{FE0DD70E-B404-4A3E-8347-4D5D5AECED32}] => (Allow) C:\Users\Magic Tom\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{3B16B385-C493-45B2-A868-F6161A81BE53}] => (Allow) C:\Users\Magic Tom\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{38D8DA52-D8DD-46E2-B96F-78D34F3380DB}] => (Allow) C:\Users\Magic Tom\AppData\Roaming\uTorrent\uTorrent.exe ==================== Herstelpunten ========================= 05-10-2017 00:53:39 Windows Update 11-10-2017 21:04:05 Windows Update 13-10-2017 18:08:03 Removed Java 8 Update 101 ==================== Defecte Apparaatbeheer Apparaten ============= ==================== Eventlog fouten: ========================= Applicatiefouten: ================== Error: (10/13/2017 06:15:54 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'c:\program files\acer\empowering technology\edatasecurity\x64\eDSLoader.exe' niet maken. Kan afhankelijke assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (10/13/2017 06:15:54 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'c:\program files\acer\empowering technology\edatasecurity\x64\eDStbmngr.exe' niet maken. Kan afhankelijke assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (10/13/2017 06:15:54 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'c:\program files\acer\empowering technology\edatasecurity\x64\eDS_CCPSD.exe' niet maken. Kan afhankelijke assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (10/13/2017 06:15:53 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'c:\program files\acer\empowering technology\edatasecurity\x64\eDScsp.exe' niet maken. Kan afhankelijke assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (10/13/2017 06:14:04 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Fout in de Volume Shadow Copy-service: onverwachte fout bij het aanroepen van routine QueryFullProcessImageNameW. hr = 0x80070006, De ingang is ongeldig. . Bewerking: Asynchrone bewerking uitvoeren Context: Huidige status: DoSnapshotSet Error: (10/13/2017 06:13:12 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: De service Cryptografische services is mislukt tijdens het verwerken van aanroep OnIdentity() op het object System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Toegang geweigerd. . Error: (10/13/2017 06:11:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: dxa5736.tmp, versie: 3.0.0.240, tijdstempel: 0x5927c307 Naam van module met fout: dxa5736.tmp, versie: 3.0.0.240, tijdstempel: 0x5927c307 Uitzonderingscode: 0xc0000005 Foutmarge: 0x000b37b5 Id van proces met fout: 0x12e8 Starttijd van toepassing met fout: 0x01d3443ddb17a21b Pad naar toepassing met fout: C:\Users\MAGICT~1\AppData\Local\Temp\dxa5725.tmp\dxa5736.tmp Pad naar module met fout: C:\Users\MAGICT~1\AppData\Local\Temp\dxa5725.tmp\dxa5736.tmp Rapport-id: 6e31accb-d3f7-46ad-bb5d-68e7f784ea9b Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (10/13/2017 06:08:20 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: De service Cryptografische services is mislukt tijdens het verwerken van aanroep OnIdentity() op het object System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Toegang geweigerd. . Error: (10/12/2017 07:15:15 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'c:\program files\acer\empowering technology\edatasecurity\x64\eDSLoader.exe' niet maken. Kan afhankelijke assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (10/12/2017 07:15:15 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'c:\program files\acer\empowering technology\edatasecurity\x64\eDStbmngr.exe' niet maken. Kan afhankelijke assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Systeemfouten: ============= Error: (10/13/2017 06:03:25 PM) (Source: DCOM) (EventID: 10010) (User: Ons_laptopke) Description: De server {D63B10C5-BB46-4990-A94F-E40B9D520160} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (10/12/2017 10:49:50 PM) (Source: DCOM) (EventID: 10010) (User: ONS_LAPTOPKE) Description: De server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (10/12/2017 10:49:46 PM) (Source: DCOM) (EventID: 10010) (User: ONS_LAPTOPKE) Description: De server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (10/12/2017 10:49:46 PM) (Source: DCOM) (EventID: 10010) (User: ONS_LAPTOPKE) Description: De server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (10/12/2017 10:49:46 PM) (Source: DCOM) (EventID: 10010) (User: ONS_LAPTOPKE) Description: De server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (10/12/2017 10:49:46 PM) (Source: DCOM) (EventID: 10010) (User: ONS_LAPTOPKE) Description: De server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd. Error: (10/12/2017 07:26:30 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen standaard voor deze computer wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} en APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (10/12/2017 07:26:30 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (10/12/2017 07:26:30 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen standaard voor deze computer wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} en APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (10/12/2017 07:26:30 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. ==================== Geheugen info =========================== Processor: Intel(R) Core(TM)2 Duo CPU P7350 @ 2.00GHz Percentage geheugen in gebruik: 70% Totaal fysiek RAM-geheugen: 3068.95 MB Beschikbaar fysiek RAM-geheugen: 915.32 MB Totaal Virtueel geheugen: 9208.95 MB Beschikbaar Virtual geheugen: 6108.19 MB ==================== Schijven ================================ Drive c: (ACER) (Fixed) (Total:144.04 GB) (Free:60.06 GB) NTFS ==>[schijf met boot componenten (verkregen van BCD)] Drive d: () (Fixed) (Total:298.09 GB) (Free:114.26 GB) NTFS Drive e: (Tom) (Fixed) (Total:139.5 GB) (Free:31.65 GB) NTFS ==================== MBR & Partitietabel ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: EAF7F29B) Partition 1: (Not Active) - (Size=11 GB) - (Type=27) Partition 2: (Active) - (Size=144 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=139.5 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=3.5 GB) - (Type=12) ======================================================== Disk: 1 (MBR Code: Windows 7 or Vista) (Size: 298.1 GB) (Disk ID: B7F0A823) Partition 1: (Not Active) - (Size=298.1 GB) - (Type=07 NTFS) ==================== Eind van Addition.txt ============================