Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 26-10-2017 Gestart door ivan (30-10-2017 14:00:49) Gestart vanaf C:\Users\ivan\Downloads Windows 10 Home Versie 1703 15063.674 (X64) (2017-07-26 17:03:21) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2256063074-1406158368-803226353-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2256063074-1406158368-803226353-503 - Limited - Disabled) Gast (S-1-5-21-2256063074-1406158368-803226353-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2256063074-1406158368-803226353-1003 - Limited - Enabled) ivan (S-1-5-21-2256063074-1406158368-803226353-1001 - Administrator - Enabled) => C:\Users\ivan ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: IObit Malware Fighter (Enabled - Up to date) {2C1A27ED-EADF-56B0-8FBA-D38AFF9152A2} AV: Avast Antivirus (Disabled - Out of date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Disabled - Out of date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag zou kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeinstallerd worden.) Adobe Reader XI (11.0.22) - Nederlands (HKLM-x32\...\{AC76BA86-7AD7-1043-7B44-AB0000000001}) (Version: 11.0.22 - Adobe Systems Incorporated) Advanced SystemCare 10 (HKLM-x32\...\Advanced SystemCare_is1) (Version: 10.5.0 - IObit) Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 385.69 - NVIDIA Corporation) Hidden ApowerPDF V3.1.3 (HKLM-x32\...\{8691C793-7B2C-46C5-9AB2-AB80D129A5EC}_is1) (Version: 3.1.3 - APOWERSOFT LIMITED) Apowersoft Video Converter Studio V4.6.1 (HKLM-x32\...\{195E8D7F-292B-4B04-A6E7-E96CAF04C767}_is1) (Version: 4.6.1 - APOWERSOFT LIMITED) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.7.2314 - AVAST Software) AVG (HKLM\...\{BA40B3B4-7707-437E-84FF-8C18BE5AD9B6}) (Version: 1.211.2 - AVG Technologies) Hidden AVG AntiVirus FREE (HKLM-x32\...\AVG Antivirus) (Version: 17.7.3032 - AVG Technologies) AVG PC TuneUp (HKLM-x32\...\{A3DEEC4D-7D8A-465E-90BD-B853A19DDF82}) (Version: 16.75.1 - AVG Technologies) Hidden Belgium e-ID middleware 4.2.8 (build 3252) (HKLM\...\{DB942AEA-93D6-4FE4-8862-180D35A73252}) (Version: 4.2.3252 - Belgian Government) BurnAware Premium 10.4 (GAOTD) (HKLM-x32\...\BurnAware Premium_is1) (Version: - Burnaware) Canon MP540 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP540_series) (Version: - ) CCleaner (HKLM\...\CCleaner) (Version: 5.35 - Piriform) Dimo Videomate version 3.6.1 (HKLM-x32\...\299AF5A5-0809-4CE0-8FD5-1E6EFD27E518_is1) (Version: 3.6.1 - DimoSoft, Inc.) Driver Easy 5.5.3 (HKLM\...\DriverEasy_is1) (Version: 5.5.3 - Easeware) EaseUS Todo Backup Free 10.5 (HKLM-x32\...\EaseUS Todo Backup_is1) (Version: 10.5 - CHENGDU YIWO Tech Development Co., Ltd) eID Chrome Middleware 1.1.6 (HKLM-x32\...\eID Chrome Middleware 1.1.6) (Version: 1.1.6 - ) FMW 1 (HKLM\...\{3F8A655C-2D4D-4BAC-8384-0E937CC137C8}) (Version: 1.225.1 - AVG Technologies) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 62.0.3202.75 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.123 - Google Inc.) Hidden HTML-Kit 292 (HKLM-x32\...\HTMLKit_is1) (Version: 1.0 - HTMLKit.com) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4425 - Intel Corporation) Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{A6B5A546-4A63-4E6C-8336-3E8903CD91AA}) (Version: 19.11.1639.0649 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\...\{d5572863-793c-4ec8-872a-43cccc68b948}) (Version: 18.40.0 - Intel Corporation) IObit Malware Fighter 5 (HKLM-x32\...\IObit Malware Fighter_is1) (Version: 5.3 - IObit) IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 7.0.2.32 - IObit) Java 8 Update 144 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180144F0}) (Version: 8.0.1440.1 - Oracle Corporation) Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation) KB4023057 (HKLM\...\{27C6D60B-CAD4-4C70-A1F2-299C731EA8F7}) (Version: 2.0.0.0 - Microsoft Corporation) Microsoft Office 365 - es-es (HKLM\...\O365HomePremRetail - es-es) (Version: 16.0.8528.2147 - Microsoft Corporation) Microsoft Office 365 - nl-nl (HKLM\...\O365HomePremRetail - nl-nl) (Version: 16.0.8528.2147 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2256063074-1406158368-803226353-1001\...\OneDriveSetup.exe) (Version: 17.3.7073.1013 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) NVIDIA 3D Vision stuurprogramma 385.69 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 385.69 - NVIDIA Corporation) NVIDIA GeForce Experience 3.9.0.61 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.9.0.61 - NVIDIA Corporation) NVIDIA Grafisch stuurprogramma 385.69 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 385.69 - NVIDIA Corporation) NVIDIA PhysX Systeem Software 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.8528.2147 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.8528.2147 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0413-1000-0000000FF1CE}) (Version: 16.0.8326.2107 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0C0A-1000-0000000FF1CE}) (Version: 16.0.8326.2107 - Microsoft Corporation) Hidden ONEKEY PDF Convert to Word version 2.0 (HKLM-x32\...\{C6C05D6E-B19C-4537-9F4D-09A636D05D3B}_is1) (Version: 2.0 - EasyAppSoft) paint.net (HKLM\...\{F10AAD91-58DF-44EC-A647-810197141667}) (Version: 4.0.19 - dotPDN LLC) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.18.526.2017 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8254 - Realtek Semiconductor Corp.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.9.20 - Synaptics Incorporated) UpdateAssistant (HKLM-x32\...\{61B90E2F-2DD9-4581-8856-C2441B61571A}) (Version: 1.7.0.0 - Microsoft Corporation) Hidden VirusTotal Uploader 2.2 (HKLM-x32\...\VTUploader) (Version: - ) Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - LunarG, Inc.) Hidden Windows 10-updateassistent (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22243 - Microsoft Corporation) Windows-stuurprogrammapakket - Intel (MEIx64) System (03/28/2016 11.0.5.1189) (HKLM\...\63CEF5543DBF9887E6220C5C2F7F85C2D4C726D5) (Version: 03/28/2016 11.0.5.1189 - Intel) Windows-stuurprogrammapakket - Intel Corporation (iaStorA) HDC (08/01/2013 12.8.0.1016) (HKLM\...\C8A921233C0C441A4E4EAABC2AB08C872FD77A6E) (Version: 08/01/2013 12.8.0.1016 - Intel Corporation) Windows-stuurprogrammapakket - Intel Corporation (iaStorA) SCSIAdapter (08/01/2013 12.8.0.1016) (HKLM\...\211350202B66C807A74E1EE662C346B52F0F9FEF) (Version: 08/01/2013 12.8.0.1016 - Intel Corporation) Windows-stuurprogrammapakket - INTEL SDHost (10/03/2016 10.1.1.38) (HKLM\...\3940B61A6946281A57FD433C0DA034A5B9986B23) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (01/01/1970 10.1.1.38) (HKLM\...\1674A78ADD615AFC08DF4DDB2D89B4D31D3C3608) (Version: 01/01/1970 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (01/01/1970 10.1.1.38) (HKLM\...\457E1577222DC00F386FD7B52F2554E23F4AE877) (Version: 01/01/1970 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (01/01/1970 10.1.1.38) (HKLM\...\565C49E6FF0423867DE07B48E170702EA31E6413) (Version: 01/01/1970 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (01/01/1970 10.1.1.38) (HKLM\...\9D472255BE66B61FDF2A8FC84C03ECA763EBF2BC) (Version: 01/01/1970 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (01/01/1970 10.1.1.38) (HKLM\...\9F465606A3F2B010F6B880A41850763182141A2F) (Version: 01/01/1970 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (01/01/1970 10.1.1.38) (HKLM\...\A8B947FD46ADBA2595DA1E46122E1AC68FDF498A) (Version: 01/01/1970 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (01/01/1970 10.1.1.38) (HKLM\...\BA0CC399C64A9D28FDBD5367961A7D983BA5D229) (Version: 01/01/1970 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (01/01/1970 10.1.1.38) (HKLM\...\C9E7B450C33BC523360D517BC580D6760A7909E2) (Version: 01/01/1970 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (01/01/1970 10.1.1.38) (HKLM\...\D933D940A84C0D19EDBBB88FAECCB8B825B9840F) (Version: 01/01/1970 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (01/01/1970 10.1.1.38) (HKLM\...\E9FA72E34585F7E8AEC9E8A5480A61B4F2BB8945) (Version: 01/01/1970 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\0D860D04D8BD23FD35067EB99B09A017888DD4B8) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\0E1E9275B54BF4122D3EA7BE2A532E0377819823) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\12B3AEBAC72FCBF7760C5BE0C978D67FCCF66C3A) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\149CBA12E5CD545D6ABA2829D2B173CBEC7E0FB4) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\27DDDB7F7A91AE0A5EE7D90CA1748575594B05E4) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\35EF7ABD50A806F31310140CF0C15CDD6DE29096) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\37703362FAB9C29A4C25C20480E53D330F40EB0A) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\50E679C4CABA08ABBF124A28BA710707F680573E) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\5C74A765E29D2CD3D8D1024CAF2985F2C606F217) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\6908A7809BA5DAEF06DC44576ABF081338169E62) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\723EB430B9AD0A545D1A475BA594F5273275BE61) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\7F8620A4F412BE5E2ABF3318B7B5EABCCE8A04D7) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\81CCB74AA48AE01DE6D9D32E5143728EF02343C9) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\969BBDEE649A8C2165127FA233219F8B904B5E47) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\97077B7F26CCDFC1BC77C772D0AE8623934004EB) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\A7E82A563DF588F2FF3B854EBE9D974BC08399E9) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\A99D69A870440222E6853EEC230F1625A51EACC9) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\B28593A04C2C65FE929AFEF8719ACC2AF33777AE) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\B479A01CC8B01B43B0BCDA818CE6C2898819EDCA) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\CD8F74C2A244D20A67E5EDC390D493285D02D446) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\DE40BF09C820EC53D6B8F5533EA3CD5BC2352BF6) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\E8DE9F718759FD4FD8D474C7E67A03904419F6E2) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL System (10/03/2016 10.1.1.38) (HKLM\...\F2D2DC629939FBB1317CA3491FD0EFAD05C3F443) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL USB (10/03/2016 10.1.1.38) (HKLM\...\509D0619CF37844B21C1F5712C263140F4CF9D3C) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL USB (10/03/2016 10.1.1.38) (HKLM\...\574345FE679226D5EDC74924293DAC5AC7D9EA51) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL USB (10/03/2016 10.1.1.38) (HKLM\...\7CF8C713073BE4949CCA5CBCA6BB54F6B3903EAD) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL USB (10/03/2016 10.1.1.38) (HKLM\...\81032186E342BA7BF859B231D126A0BA6C7E35F7) (Version: 10/03/2016 10.1.1.38 - INTEL) Windows-stuurprogrammapakket - INTEL USB (10/03/2016 10.1.1.38) (HKLM\...\E65C982C8EB9CEDC1CAD3078E70D87251F59BC79) (Version: 10/03/2016 10.1.1.38 - INTEL) WinX DVD Ripper Platinum 8.5.1 (HKLM-x32\...\WinX DVD Ripper Platinum_is1) (Version: - Digiarty Software, Inc.) WinX HD Video Converter Deluxe 5.10.0 (HKLM-x32\...\WinX HD Video Converter Deluxe_is1) (Version: - Digiarty Software, Inc.) Wise Driver Care 2.1 (HKLM-x32\...\Wise Driver Care_is1) (Version: 2.1 - WiseCleaner.com, Inc.) Zoolz2 (HKLM-x32\...\Zoolz2) (Version: 2.1 - Genie9) ==================== Aangepaste CLSID (gefilterd): ========================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) CustomCLSID: HKU\S-1-5-21-2256063074-1406158368-803226353-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-30] (AVAST Software) ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-30] (AVAST Software) ContextMenuHandlers1: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2016-09-20] (IObit) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-30] (AVAST Software) ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => -> Geen bestand ContextMenuHandlers1: [IObit Malware Fighter] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2017-03-31] (IObit) ContextMenuHandlers1: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2017-05-22] (IObit) ContextMenuHandlers1: [SAScanShlExt] -> {94243EC1-AEE5-4d44-A6CF-6407ED967FED} => -> Geen bestand ContextMenuHandlers1: [SimpleShlExt] -> {45203D3B-3D73-4497-8AFE-D29950AC6C55} => C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll [2017-06-23] (CHENGDU YIWO Tech Development Co.,Ltd) ContextMenuHandlers2: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2016-09-20] (IObit) ContextMenuHandlers2: [SimpleShlExt] -> {45203D3B-3D73-4497-8AFE-D29950AC6C55} => C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll [2017-06-23] (CHENGDU YIWO Tech Development Co.,Ltd) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-30] (AVAST Software) ContextMenuHandlers4: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2016-09-20] (IObit) ContextMenuHandlers4: [IObit Malware Fighter] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2017-03-31] (IObit) ContextMenuHandlers4: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2017-05-22] (IObit) ContextMenuHandlers4: [SimpleShlExt] -> {45203D3B-3D73-4497-8AFE-D29950AC6C55} => C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll [2017-06-23] (CHENGDU YIWO Tech Development Co.,Ltd) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-09-21] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-09-16] (NVIDIA Corporation) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-30] (AVAST Software) ContextMenuHandlers6: [IObit Malware Fighter] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2017-03-31] (IObit) ContextMenuHandlers6: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2017-05-22] (IObit) ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {10EDBF1F-C784-468A-A730-A6D180AEF7F7} - System32\Tasks\ReimageUpdater => C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [2017-09-11] (Reimage®) <==== AANDACHT Task: {12CA84CB-40AC-430B-BE97-63132C42E24D} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-09-16] (NVIDIA Corporation) Task: {13C8E468-D49A-4085-A021-D6D8EA5A6B79} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-26] () Task: {22820112-4FDA-4257-A4DE-43DC40C1EFDA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-09-20] (Piriform Ltd) Task: {3377B26D-2F83-4745-A4DA-3AEBD45C28A9} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-10-30] (AVAST Software) Task: {38A45AC1-8513-4B8E-AF84-EBA6C787BBD9} - System32\Tasks\ASC10_SkipUac_ivan => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [2017-08-07] (IObit) Task: {3B3A3C1C-8549-4FFB-B3C8-44C0B72B5925} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-09-16] (NVIDIA Corporation) Task: {53CD4F59-C04A-4437-8B3B-7339EB3C64B9} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-26] () Task: {702E7C48-1C57-40FF-B81B-1317EA264161} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-09-16] (NVIDIA Corporation) Task: {7DCC206B-2969-490E-B6B6-BA25B0A10292} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-07-19] (Adobe Systems Incorporated) Task: {7EB97C9C-0C05-446C-AA31-2083461CE490} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-09-16] (NVIDIA Corporation) Task: {96A3679C-D91E-493F-8AAD-74CC6B625681} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-10-23] (Microsoft Corporation) Task: {9AC75AB6-4E6A-47D7-AD64-FBD12D638963} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2017-09-05] (Oracle Corporation) Task: {9BAA88A3-CEC3-4180-8D49-9AF77DAE8D14} - System32\Tasks\Driver Easy Scheduled Scan => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe [2017-08-14] (Easeware) Task: {A02AB8AF-B247-4775-9C0F-4303647F8756} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-10-23] (Microsoft Corporation) Task: {A596DD84-5B8A-47E4-9C88-323E644A52C9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-30] (Google Inc.) Task: {AB8AACF4-C4D6-4223-A69D-D8C45791876B} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-09-16] (NVIDIA Corporation) Task: {B9E21C03-3B00-46C0-9C14-4BE08E463A80} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-09-16] (NVIDIA Corporation) Task: {C85F9F3D-5705-4116-8479-D22C39286734} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2017-10-26] (Microsoft Corporation) Task: {C9C01AB1-8D8A-45CA-939B-6E2ACE39F4EC} - System32\Tasks\Antivirus Emergency Update => C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe Task: {CDE8836A-7F8F-471B-8690-36426B99F3B9} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-09-16] (NVIDIA Corporation) Task: {DB26082F-F8CC-4E5A-AE55-8CD14297592B} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-09-16] (NVIDIA Corporation) Task: {DB46D84E-B4CF-409C-912C-C97413347673} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-30] (Google Inc.) (Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\Driver Easy Scheduled Scan.job => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Snelkoppelingen & WMI ======================== (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) Shortcut: C:\Users\ivan\OneDrive\ivanh\Favorites\NCH Software Download Site.lnk -> hxxp://www.nchsoftware.com/index.htm ==================== Geladen Modules (gefilterd) ============== 2017-03-18 21:58 - 2017-03-18 21:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-08-15 18:00 - 2017-09-16 20:27 - 001267320 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-08-04 15:17 - 2017-06-19 02:07 - 000259776 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe 2017-03-18 21:59 - 2017-03-20 04:56 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-10-05 08:54 - 2017-10-05 08:55 - 000021504 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2017-10-05 08:54 - 2017-10-05 08:55 - 048839168 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2017-10-05 08:54 - 2017-10-05 08:55 - 002523136 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\UnityEngineDelegates.dll 2017-10-05 08:54 - 2017-10-05 08:56 - 000164352 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\VideoPlugin.dll 2017-10-05 08:54 - 2017-10-05 08:55 - 000352256 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\Microsoft.Photos.AGM.Native.Windows.dll 2017-10-05 08:54 - 2017-10-05 08:55 - 000675328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\IPPNativePlugin.dll 2017-10-05 08:54 - 2017-10-05 08:55 - 002836480 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\MediaEngineCSWrapper.dll 2017-10-05 08:54 - 2017-10-05 08:55 - 020559872 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\PhotosApp.Windows.dll 2017-10-05 08:54 - 2017-10-05 08:55 - 002705408 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\MediaEngine.dll 2017-10-05 08:54 - 2017-10-05 08:54 - 003128320 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\AppCore.Windows.dll 2017-09-01 08:19 - 2017-09-01 08:19 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2017-10-05 08:54 - 2017-10-05 08:55 - 000118784 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\ExploreModel.dll 2017-10-05 08:54 - 2017-10-05 08:55 - 000046080 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\Microsoft.Photos.Edit.Services.dll 2017-10-05 08:54 - 2017-10-05 08:55 - 001380864 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.Controls.dll 2017-10-05 08:54 - 2017-10-05 08:54 - 000367616 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\AnimatedGIF.dll 2017-08-04 15:17 - 2017-02-21 16:19 - 000083136 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CodeLog.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000090816 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBGetRemoteNetInfo.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000019648 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CompressFile.dll 2017-08-04 15:17 - 2016-03-07 17:08 - 001291264 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\libxml2.dll 2017-08-04 15:17 - 2004-10-05 02:08 - 000055808 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\zlib1.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000024768 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CmcTbProxy.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000188608 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCPipeCenter.dll 2017-08-04 15:17 - 2017-06-19 02:04 - 000183488 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCAdapt.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000163520 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCAdapt_RTTO.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000056000 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBInfo.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000018112 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCNetTokenProxy.dll 2017-08-04 15:17 - 2017-06-19 02:04 - 000123584 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActivationOnline.dll 2017-08-04 15:17 - 2017-06-19 02:05 - 000021696 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\fsclog.dll 2017-08-04 15:17 - 2017-06-19 02:05 - 000085696 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\logsys.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000032960 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DiskSearchImg.dll 2017-08-04 15:17 - 2017-06-19 02:05 - 000070848 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\MountImg.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000160448 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ImgFile.dll 2017-08-04 15:17 - 2017-06-19 02:04 - 000296640 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DsImgFile.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000078528 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FatLib.dll 2017-08-04 15:17 - 2017-06-19 02:05 - 000305856 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSUtil.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000026304 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CallbackOperator.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000210112 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSLib.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000074432 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CheckImg.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000142016 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\vhdvmdk.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000040128 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\BootDriver.dll 2017-08-04 15:17 - 2017-06-19 02:05 - 000844992 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ExImage.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000195776 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBackupSize.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000414400 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidImage.dll 2017-08-04 15:17 - 2017-06-19 02:04 - 000162496 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumDisk.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000029376 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DeviceAdapter.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000114368 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FileStorage.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000026816 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\GetDriverInfo.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000022720 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CorrectMbr.dll 2017-08-04 15:17 - 2017-06-19 02:04 - 000034496 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumTapeDevice.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000054464 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbTapeBrowse.dll 2017-08-04 15:17 - 2017-06-19 02:04 - 000026816 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AccountManager.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000066240 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\RegLib.dll 2017-08-04 15:17 - 2017-06-19 02:05 - 000072896 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NasOperator.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000221376 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBrowser.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000079040 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CloudOperator.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000020672 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActiveOnline.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000138432 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\VMConfig.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000021696 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidDeviceManager.dll 2017-08-04 15:17 - 2017-06-19 02:05 - 000074944 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\SqlExBrowser.dll 2017-08-04 15:17 - 2017-06-19 02:05 - 000585920 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\SqlSMOCPlusPlus.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000045248 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbDataSwap.dll 2017-08-04 15:17 - 2017-06-19 02:04 - 000367808 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DeviceManager.dll 2017-08-04 15:17 - 2017-06-19 02:04 - 000141504 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Device.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000149184 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Partition.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000052416 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FileSystemAnalyser.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000064192 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FATFileSystemAnalyser.dll 2017-08-04 15:17 - 2016-12-06 01:43 - 000091840 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Common.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000058560 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSFileSystemAnalyser.dll 2017-08-04 15:17 - 2016-12-06 01:44 - 000210112 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\SmartBackup.dll 2017-10-30 10:46 - 2017-10-30 10:46 - 000167096 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-10-30 10:46 - 2017-10-30 10:46 - 000059040 _____ () C:\Program Files\AVAST Software\Avast\module_lifetime.dll 2017-10-30 10:46 - 2017-10-30 10:46 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-10-30 10:46 - 2017-10-30 10:46 - 000217088 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-10-30 10:46 - 2017-10-30 10:46 - 000244584 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-10-30 10:46 - 2017-10-30 10:46 - 000234280 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-10-30 11:35 - 2017-10-30 11:35 - 000703336 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2017-09-11 09:46 - 2017-05-22 10:16 - 000442144 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madExcept_.bpl 2017-09-11 09:46 - 2017-05-22 10:16 - 000210720 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl 2017-09-11 09:46 - 2017-05-22 10:16 - 000059680 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl 2017-09-11 09:46 - 2017-05-22 10:17 - 000899872 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\webres.dll 2017-09-11 09:46 - 2017-05-23 17:57 - 000631584 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\ProductStatistics.dll 2017-09-11 09:46 - 2017-05-22 10:16 - 000524064 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\sqlite3.dll ==================== Alternate Data Streams (gefilterd) ========= (Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.) ==================== Veilige Modus (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service" ==================== Bestandskoppeling (gefilterd) =============== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd.) ==================== Internet Explorer vertrouwde/beperkte toegang =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd.) ==================== Hosts inhoud: =============================== (Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.) 2017-07-26 11:41 - 2017-07-26 11:39 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere gebieden ============================ (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-21-2256063074-1406158368-803226353-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == HKLM\...\StartupApproved\Run: => "SecurityHealth" HKLM\...\StartupApproved\Run: => "SynTPEnh" HKLM\...\StartupApproved\Run: => "RtHDVCpl" HKLM\...\StartupApproved\Run: => "RtHDVBg_Dolby" HKLM\...\StartupApproved\Run: => "ShadowPlay" HKLM\...\StartupApproved\Run: => "AvgUi" HKLM\...\StartupApproved\Run: => "AVGUI.exe" HKLM\...\StartupApproved\Run: => "Everything" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKU\S-1-5-21-2256063074-1406158368-803226353-1001\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-2256063074-1406158368-803226353-1001\...\StartupApproved\Run: => "OneDrive" ==================== Firewall regels (gefilterd) =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [{10974809-2FC5-4C5D-958A-E3E0C5EF47A4}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{45FE7572-82AB-443E-AE4F-75C6D3F629FF}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe FirewallRules: [{10225053-9FFD-457F-9F95-6D8199A11E66}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe FirewallRules: [{6ABE2F0D-3E7A-4F5F-B518-D159B733C267}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe FirewallRules: [{AA9774E6-D717-4A9C-8EF8-3ADDAF571A39}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe FirewallRules: [{DDD6F699-4B7D-43D3-BD8B-F09ABBD10F65}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe FirewallRules: [{B4940EA1-8445-412F-9CDB-6D27D681F443}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe FirewallRules: [{DAF5E068-1D8B-4975-A972-9FE963B8FFFB}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe FirewallRules: [{2B20DDC4-C0DF-4094-BD42-4B474ACB82BF}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe FirewallRules: [{F2831921-581B-4FB8-8DF4-4E3F2FB76ABC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{485E8D18-12EF-470D-90BC-53F290C47A35}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{9034EE5B-3B70-49AA-8264-C2329C2B1809}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{3A966FE0-7A3E-4FB6-893C-3CE416BA1791}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{A2245658-E580-444B-8E0B-7CE6C54015E3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{13072B9C-A0CE-4A1D-A853-0607B2A0DF69}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{2043BF72-8F11-4EC0-8E91-78890983799E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{178C94E2-7130-42BB-85D6-ACF490003F8D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{83980D7B-0B1E-49A0-A301-9E8B7FDA8E12}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{02C1C40D-B388-47F0-9722-BBBDCD4BB7A7}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Converter Studio\Video Converter Studio.exe FirewallRules: [{AC539F79-8772-40F4-9025-B0681E352657}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Converter Studio\Video Converter Studio.exe FirewallRules: [{FF9098B7-2DBD-4B27-88F7-968CEB4086CB}] => (Allow) C:\Program Files\Easeware\DriverEasy\DriverEasy.exe FirewallRules: [{7F69CC62-70B2-45BB-A028-FA910E749210}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{C9AD0BEB-1014-4AD5-B95E-AEF9BF244CC8}] => (Allow) C:\Program Files (x86)\IObit\IObit Malware Fighter\Surfing Protection\FFNativeMessage.exe FirewallRules: [{F851B044-BFD7-4E3A-AE51-5D77BA3CDD16}] => (Allow) C:\Program Files (x86)\IObit\IObit Malware Fighter\Surfing Protection\FFNativeMessage.exe FirewallRules: [{48B35E03-3949-4620-8867-3045147BF284}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe FirewallRules: [{4D81B9BF-BD25-445C-A031-0870B2B1ED65}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe FirewallRules: [{A4A2AE7B-08F2-4156-A0D0-15AB9B26CF03}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Herstelpunten ========================= 27-10-2017 19:09:52 Gepland controlepunt ==================== Defecte Apparaatbeheer Apparaten ============= ==================== Eventlog fouten: ========================= Applicatiefouten: ================== Error: (10/28/2017 10:42:25 AM) (Source: ESENT) (EventID: 489) (User: ) Description: CCleaner64 (8024) Een poging het bestand C:\Users\ivan\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat te openen voor alleen-lezen is mislukt. Systeemfout 32 (0x00000020): Het proces heeft geen toegang tot het bestand omdat het door een ander proces wordt gebruikt. . Tijdens het openen van het bestand treedt fout -1032 (0xfffffbf8) op. Error: (10/28/2017 09:44:00 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: AKOYA) Description: Het activeren van de app Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy!App is mislukt door de fout -2147023174. Kijk in het logboek Microsoft-Windows-TWinUI/Operational voor aanvullende informatie. Error: (10/28/2017 09:00:00 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: ASCService.exe, versie: 10.0.2.83, tijdstempel: 0x58cf8d9c Naam van module met fout: unknown, versie: 0.0.0.0, tijdstempel: 0x00000000 Uitzonderingscode: 0xc0000409 Foutmarge: 0x032dfc84 Id van proces met fout: 0x5dc Starttijd van toepassing met fout: 0x01d34f2a01a65a77 Pad naar toepassing met fout: C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe Pad naar module met fout: unknown Rapport-id: 69a2f013-9d32-40ed-a340-362370180c85 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (10/27/2017 06:20:01 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Fout in de Volume Shadow Copy-service: onverwachte fout bij het uitvoeren van een query voor de IVssWriterCallback-interface. hr = 0x80070005, Toegang geweigerd. . Dit wordt vaak veroorzaakt door onjuiste beveiligingsinstellingen in het writer- of requestorproces. Bewerking: Schrijvergegevens verzamelen Context: Klasse-id van schrijver: {e8132975-6f93-4464-a53e-1050253ae220} Naam van schrijver: System Writer Instantie-id van schrijver: {1daebc09-fd9d-4294-88ce-ebe0816afa1a} Error: (10/27/2017 10:43:06 AM) (Source: ESENT) (EventID: 455) (User: ) Description: SettingSyncHost (9080) {695B12D4-39B9-4DEC-AB03-C7AE78554E36}: Fout -1811 (0xfffff8ed) is opgetreden tijdens het openen van logboekbestand C:\Users\ivan\AppData\Local\Microsoft\Windows\SettingSync\metastore\edb0000D.log. Error: (10/26/2017 03:52:48 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4110) (User: ) Description: Het certificaat is niet toegevoegd aan het archief met basiscertificeringsinstanties van andere leveranciers. Retourfout: Toegang geweigerd. Error: (10/26/2017 03:52:48 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4110) (User: ) Description: Het certificaat is niet toegevoegd aan het archief met basiscertificeringsinstanties van andere leveranciers. Retourfout: Toegang geweigerd. Error: (10/26/2017 03:52:48 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4110) (User: ) Description: Het certificaat is niet toegevoegd aan het archief met basiscertificeringsinstanties van andere leveranciers. Retourfout: Toegang geweigerd. Error: (10/26/2017 03:52:48 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4110) (User: ) Description: Het certificaat is niet toegevoegd aan het archief met basiscertificeringsinstanties van andere leveranciers. Retourfout: Toegang geweigerd. Error: (10/26/2017 03:52:48 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4110) (User: ) Description: Het certificaat is niet toegevoegd aan het archief met basiscertificeringsinstanties van andere leveranciers. Retourfout: Toegang geweigerd. Systeemfouten: ============= Error: (10/30/2017 01:30:53 PM) (Source: DCOM) (EventID: 10016) (User: AKOYA) Description: In de machtigingsinstellingen standaard voor deze computer wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {9BA05972-F6A8-11CF-A442-00A0C90A8F39} en APPID {9BA05972-F6A8-11CF-A442-00A0C90A8F39} aan de gebruiker AKOYA\ivan SID (S-1-5-21-2256063074-1406158368-803226353-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (10/30/2017 11:41:48 AM) (Source: DCOM) (EventID: 10016) (User: AKOYA) Description: In de machtigingsinstellingen standaard voor deze computer wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {9BA05972-F6A8-11CF-A442-00A0C90A8F39} en APPID {9BA05972-F6A8-11CF-A442-00A0C90A8F39} aan de gebruiker AKOYA\ivan SID (S-1-5-21-2256063074-1406158368-803226353-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (10/30/2017 11:37:11 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De Windows Presentation Foundation Font Cache 3.0.0.0-service kan vanwege de volgende fout niet worden gestart: De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord. Error: (10/30/2017 11:37:11 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: FontCache3.0.0.0. Error: (10/30/2017 11:36:48 AM) (Source: DCOM) (EventID: 10016) (User: AKOYA) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Starten niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {7022A3B3-D004-4F52-AF11-E9E987FEE25F} en APPID {ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D} aan de gebruiker AKOYA\ivan SID (S-1-5-21-2256063074-1406158368-803226353-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (10/30/2017 11:36:48 AM) (Source: DCOM) (EventID: 10016) (User: AKOYA) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Starten niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {7022A3B3-D004-4F52-AF11-E9E987FEE25F} en APPID {ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D} aan de gebruiker AKOYA\ivan SID (S-1-5-21-2256063074-1406158368-803226353-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (10/30/2017 11:36:48 AM) (Source: DCOM) (EventID: 10016) (User: AKOYA) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Starten niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {7022A3B3-D004-4F52-AF11-E9E987FEE25F} en APPID {ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D} aan de gebruiker AKOYA\ivan SID (S-1-5-21-2256063074-1406158368-803226353-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (10/30/2017 11:36:48 AM) (Source: DCOM) (EventID: 10016) (User: AKOYA) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Starten niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {7022A3B3-D004-4F52-AF11-E9E987FEE25F} en APPID {ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D} aan de gebruiker AKOYA\ivan SID (S-1-5-21-2256063074-1406158368-803226353-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (10/30/2017 11:36:48 AM) (Source: DCOM) (EventID: 10016) (User: AKOYA) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Starten niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {7022A3B3-D004-4F52-AF11-E9E987FEE25F} en APPID {ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D} aan de gebruiker AKOYA\ivan SID (S-1-5-21-2256063074-1406158368-803226353-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (10/30/2017 11:36:48 AM) (Source: DCOM) (EventID: 10016) (User: AKOYA) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Starten niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {7022A3B3-D004-4F52-AF11-E9E987FEE25F} en APPID {ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D} aan de gebruiker AKOYA\ivan SID (S-1-5-21-2256063074-1406158368-803226353-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. CodeIntegrity: =================================== Date: 2017-08-31 12:31:32.235 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvpmi.inf_amd64_170d3f08319c153b\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-18 18:21:19.463 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvpmi.inf_amd64_170d3f08319c153b\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-16 12:03:49.742 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvpmi.inf_amd64_170d3f08319c153b\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-16 11:42:36.630 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvpmi.inf_amd64_170d3f08319c153b\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-13 18:43:13.697 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvpmwu.inf_amd64_f2045d1eeb288d10\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-09 18:12:15.044 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvpmwu.inf_amd64_f2045d1eeb288d10\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-04 11:40:35.110 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvpmwu.inf_amd64_f2045d1eeb288d10\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-03 12:22:57.727 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvpmwu.inf_amd64_f2045d1eeb288d10\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-07-28 09:11:32.967 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvpmwu.inf_amd64_f2045d1eeb288d10\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Geheugen info =========================== Processor: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz Percentage geheugen in gebruik: 41% Totaal fysiek RAM-geheugen: 8071.81 MB Beschikbaar fysiek RAM-geheugen: 4753.3 MB Totaal Virtueel geheugen: 9351.81 MB Beschikbaar Virtual geheugen: 6128.93 MB ==================== Schijven ================================ Drive c: () (Fixed) (Total:929.02 GB) (Free:828.07 GB) NTFS Drive d: () (Fixed) (Total:0.01 GB) (Free:0 GB) NTFS Drive e: (DRIVE-N-GO) (Fixed) (Total:931.5 GB) (Free:638.41 GB) NTFS ==================== MBR & Partitietabel ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 3EEE9375) Partition: GPT. ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 0B9113F1) Partition 1: (Active) - (Size=8 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931.5 GB) - (Type=OF Extended) ==================== Eind van Addition.txt ============================