Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 29-11-2017 Gestart door jonas (30-11-2017 17:17:44) Gestart vanaf D:\downloads Windows 10 Home Versie 1703 15063.726 (X64) (2017-04-18 05:19:03) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1444661948-3188908094-294470660-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1444661948-3188908094-294470660-503 - Limited - Disabled) Gast (S-1-5-21-1444661948-3188908094-294470660-501 - Limited - Disabled) jonas (S-1-5-21-1444661948-3188908094-294470660-1001 - Administrator - Enabled) => C:\Users\jonas jonas_h98bp02 (S-1-5-21-1444661948-3188908094-294470660-1017 - Administrator - Disabled) => C:\Users\jonas_h98bp02 ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: AVG Antivirus (Enabled - Out of date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG Antivirus (Enabled - Out of date) {F620D48B-1497-73CC-F290-58052563BEAE} FW: AVG Antivirus (Enabled) {757AB44A-78C2-7D1A-E37F-CA42A037B368} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag zou kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeinstallerd worden.) Adobe Flash Player 27 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 27.0.0.187 - Adobe Systems Incorporated) Adobe Flash Player 27 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 27.0.0.187 - Adobe Systems Incorporated) AVG (HKLM\...\{E61E6143-4937-43FC-8C12-06B8A987484D}) (Version: 1.211.3 - AVG Technologies) Hidden AVG Internet Security (HKLM-x32\...\AVG Antivirus) (Version: 17.7.3032 - AVG Technologies) AVG PC TuneUp (HKLM-x32\...\{82B9AF2D-4254-428A-9D1E-7714BA91A4B0}) (Version: 16.76.2 - AVG Technologies) Hidden AVG PC TuneUp (HKLM-x32\...\AVG PC TuneUp) (Version: 16.76.3.18604 - AVG Technologies) Backup and Sync from Google (HKLM-x32\...\{604582EB-8259-4ED6-9B1B-6F2494D4B640}) (Version: 3.37.7411.4599 - Google, Inc.) Blend for Visual Studio 2012 (HKLM-x32\...\{57F20F04-014D-453F-B6A3-AE9485C4DFAB}) (Version: 5.0.30709.0 - Microsoft Corporation) Hidden Blend for Visual Studio 2012 ENU resources (HKLM-x32\...\{532DBCC8-9468-435C-AEF6-30B7F50735A2}) (Version: 5.0.30709.0 - Microsoft Corporation) Hidden Blend for Visual Studio Add-in for Adobe FXG Import (HKLM-x32\...\{834B6E00-F509-40F2-A677-E86261184576}) (Version: 1.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for .NET 4.5 (HKLM-x32\...\{37E53780-3944-4A6A-842F-727128E8616E}) (Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for Silverlight 5 (HKLM-x32\...\{0C03A66F-1FF0-45F9-8D67-0D806EBFFBA1}) (Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blender (HKLM\...\{DEA73CCA-7EC9-41EA-8509-1041C1CABFD0}) (Version: 2.78.3 - Blender Foundation) Brackets (HKLM-x32\...\{9E1DE4E6-DA6C-46E9-9EF2-15189E534511}) (Version: 1.11 - brackets.io) Chrome Remote Desktop Host (HKLM-x32\...\{D61C8E6E-A4F3-4CD8-8568-51CEB5660C89}) (Version: 63.0.3239.32 - Google Inc.) CyberLink Home Cinema 10 (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 10.0 - CyberLink Corp.) CyberLink PhotoDirector 5 (HKLM\...\{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}) (Version: 5.0.5.6602 - CyberLink Corp.) Hidden CyberLink PowerDirector 12 (HKLM\...\{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.4118.0 - CyberLink Corp.) Hidden CyberLink PowerDirector 16 (HKLM-x32\...\{EE9EC028-49D2-4349-B0A3-9B2E752A4958}) (Version: 16.0.2313.0 - CyberLink Corp.) CyberLink PowerRecover (HKLM\...\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.7.0.4510 - CyberLink Corp.) Hidden CyberLink PowerRecover (HKLM-x32\...\InstallShield_{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.7.0.4510 - CyberLink Corp.) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Discord (HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\Discord) (Version: 0.0.298 - Discord Inc.) Dolby Digital Plus Advanced Audio (HKLM\...\{B0BFC63F-EA07-419E-960B-3FB2ED5DD0B2}) (Version: 7.6.5.1 - Dolby Laboratories Inc) Dotfuscator and Analytics Community Edition (HKLM-x32\...\{372D17F6-A54E-4A01-B264-1314890FFE61}) (Version: 5.5.4521.29298 - PreEmptive Solutions) Hidden ELAN Touchpad 15.19.7.1_X64_WHQL (HKLM\...\Elantech) (Version: 15.19.7.1 - ELAN Microelectronic Corp.) Entity Framework Designer for Visual Studio 2012 - enu (HKLM-x32\...\{3F29268A-F53A-4387-9F2B-E9368A823178}) (Version: 11.1.30729.00 - Microsoft Corporation) FaceRig virtual audio driver version 1.0 (HKLM-x32\...\{D605CD1D-D626-4740-B657-86DC30723FCF}_is1) (Version: 1.0 - Adoriasoft LLC) FaceRig Virtual Video driver version 1.0.1.1000 (HKLM-x32\...\{7D6A1A0F-F57E-4C6B-9331-86CBC7D5C787}_is1) (Version: 1.0.1.1000 - Adoriasoft LLC) FMW 1 (HKLM\...\{36133E9F-B129-4206-9FB4-13F707787542}) (Version: 1.226.3 - AVG Technologies) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 62.0.3202.94 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Gyazo 3.3.4 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Nota Inc.) Hama Racing Wheel Thunder V5 (HKLM-x32\...\{AEC7CD2E-2BB5-40C3-9592-078F64677E6C}) (Version: 1.00.0000 - Ihr Firmenname) HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software) IIS 8.0 Express (HKLM\...\{7BF61FA9-BDFB-4563-98AD-FCB0DA28CCC7}) (Version: 8.0.1557 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{9f4f4a9b-eec5-4906-92fe-d1f43ccf5c8d}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb) (Version: - ) Intel(R) Chipset Device Software (HKLM-x32\...\{a2d9fda8-65eb-4c06-81ef-31e0a4daa335}) (Version: 10.1.1.11 - Intel(R) Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1162 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4352 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.6.0.1029 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1519.7 - Intel Corporation) Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{9A287643-10C5-4463-B9D1-B2404CE18CCF}) (Version: 17.1.1529.1620 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\...\{fefa9370-e735-4821-9cbc-48bd843e7ac3}) (Version: 19.80.0 - Intel Corporation) Java 8 Update 144 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180144F0}) (Version: 8.0.1440.1 - Oracle Corporation) JavaScript Tooling (HKLM\...\{73468C65-BC53-4D88-9246-75A5BB014DA2}) (Version: 11.0.60315 - Microsoft Corporation) Hidden LEGO MINDSTORMS EV3 Home Content (HKLM-x32\...\{142D9B8C-E72A-4970-A703-B8AF9904E6F1}) (Version: 1.2.30 - The LEGO Group) Hidden LEGO MINDSTORMS EV3 Home Edition (HKLM-x32\...\{ACC62EC7-E615-473F-83A5-F95DF9A20E49}) (Version: 1.2.30 - The LEGO Group) Hidden LEGO MINDSTORMS EV3 Home Nederlandse ondersteuning (HKLM-x32\...\{34B91E79-03D1-417D-A05A-2B2FF3127DF3}) (Version: 1.2.30 - The LEGO Group) Hidden LEGO MINDSTORMS EV3 Uninstaller (HKLM-x32\...\{5F3092B9-4240-4037-A287-BF6F9A2996BC}) (Version: 1.0.11 - The LEGO Group) Hidden LEGO MINDSTORMS NXT x64 Driver (HKLM\...\{A0831C28-A6FA-49A3-86AE-B5AE3C9EE19C}) (Version: 1.20.115.0 - LEGO) LMSOFT Web Creator Pro 6 (HKLM-x32\...\Web Creator Pro 6) (Version: - LMSOFT Inc.) LocalESPC (HKLM-x32\...\{BDBE5D2A-AAB7-77BD-7A0E-5006665CE7C6}) (Version: 8.59.25584 - Microsoft Corporation) Hidden LocalESPCui for en-us (HKLM-x32\...\{B5DA9D49-9BD8-0F2F-52FC-C7E66BC8D944}) (Version: 8.59.25584 - Microsoft) Hidden LoiLo Game Recorder (HKLM\...\{89E4163C-BD19-45A9-BCEB-980741786799}_is1) (Version: 1.1.0.1 - LoiLo inc.) McAfee Safe Connect (HKLM-x32\...\{F210DAEC-9E43-467E-87E8-B02DA469CFFC}) (Version: 1.4.1.150 - McAfee, Inc) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.599.11 - McAfee, Inc.) Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{5CBFF3F3-2D40-34EE-BCA5-A95BC19E400D}) (Version: 4.5.50709 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{1948E039-EC79-4591-951D-9867A8C14C90}) (Version: 4.5.50709 - Microsoft Corporation) Microsoft ASP.NET MVC 3 (HKLM-x32\...\{D32EF103-4016-4C15-BCB0-700C0A7A2309}) (Version: 3.0.50813.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft ASP.NET Web Pages (HKLM-x32\...\{631471BE-DEAB-454B-A9AC-CE3EB42C28B3}) (Version: 1.0.20105.0 - Microsoft Corporation) Microsoft Help Viewer 2.0 (HKLM-x32\...\Microsoft Help Viewer 2.0) (Version: 2.0.50727 - Microsoft Corporation) Microsoft Office 365 - nl-nl (HKLM\...\O365HomePremRetail - nl-nl) (Version: 16.0.8625.2127 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Silverlight 4 SDK (HKLM-x32\...\{189AEA94-DAFB-487A-8CEE-F9D3DDE0A748}) (Version: 4.0.60310.0 - Microsoft Corporation) Microsoft Silverlight 5 SDK (HKLM-x32\...\{E1FBB3D4-ADB0-4949-B101-855DA061C735}) (Version: 5.0.61118.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{9D573E71-1077-4C7E-B4DB-4E22A5D2B48B}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM\...\{36E619BC-A234-4EC3-849B-779A7C865A45}) (Version: 11.0.2316.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{FBA6F90E-36EC-4FC9-9B25-3834E3BD46A8}) (Version: 11.0.2316.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{13D558FE-A863-402C-B115-160007277033}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{DA1C1761-5F4F-4332-AB9D-29EDF3F8EA0A}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{FA0A244E-F3C2-4589-B42A-3D522DE79A42}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL Compiler Service (HKLM\...\{BEB0F91E-F2EA-48A1-B938-7857ABF2A93D}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{0E8670B8-3965-4930-ADA6-570348B67153}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL Language Service (HKLM-x32\...\{6D6D43E5-218C-4B05-92D3-2240810F4760}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - enu (11.1.20627.00) (HKLM-x32\...\{FA804794-2CCB-4301-954F-2C2894698876}) (Version: 11.1.20627.00 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - enu (11.1.20627.00) (HKLM-x32\...\{790E9425-8570-493F-9AE7-81AFC9E46930}) (Version: 11.1.20627.00 - Microsoft Corporation) Microsoft SQL Server System CLR Types (HKLM-x32\...\{A47FD1BF-A815-4A76-BE65-53A15BD5D25D}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x64) (HKLM\...\{4701DEDE-1888-49E0-BAE5-857875924CA2}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2012 (HKLM-x32\...\{E2082604-4BA5-44BB-BBFB-AF0F3CB8C6AB}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{F1949145-EB64-4DE7-9D81-E6D27937146C}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{2DFD8316-9EF1-3210-908C-4CB61961C1AC}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.11.25325 (HKLM-x32\...\{6c6356fe-cbfa-4944-9bed-a9e99f45cb7a}) (Version: 14.11.25325.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Professional 2012 (HKLM-x32\...\{c93c1c16-fd12-4b07-8926-2a4af46b6597}) (Version: 11.0.50727.26 - Microsoft Corporation) Microsoft Web Deploy 3.5 (HKLM\...\{3674F088-9B90-473A-AAC3-20A00D8D810C}) (Version: 3.1237.1762 - Microsoft Corporation) Microsoft Web Deploy dbSqlPackage Provider - enu (HKLM-x32\...\{E4C33F5B-1B2F-466E-957E-B274F08151A0}) (Version: 10.3.20225.0 - Microsoft Corporation) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Mine-imator version 1.0.6 (HKLM-x32\...\{EF61A1AA-5F85-4E94-ACC6-D5650A312AE6}}_is1) (Version: 1.0.6 - David Norgren) Movie Maker (HKLM-x32\...\{DC5E5027-65E8-41CB-815C-9AAB48BFB8E2}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 56.0.2 (x64 en-US) (HKLM\...\Mozilla Firefox 56.0.2 (x64 en-US)) (Version: 56.0.2 - Mozilla) MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) NewBlue Video Essentials for Windows (HKLM-x32\...\NewBlue Video Essentials for Windows) (Version: 3.0 - NewBlue) NI .NET Framework 4.0 (HKLM-x32\...\{0C43BB65-C604-4D94-A83A-54DCB42780B8}) (Version: 4.01.49154 - National Instruments) Hidden NI EulaDepot (HKLM-x32\...\{87F60C46-07E2-46B4-B872-680DE4184C0A}) (Version: 3.20.363 - National Instruments) Hidden NI MDF Support (HKLM-x32\...\{FA35D849-889D-4454-9532-6BE2008D2CDF}) (Version: 3.20.363 - National Instruments) Hidden NI Security Update (KB 67L8LCQW) (64-bit) (HKLM\...\{4A78D9E6-D349-4CCA-9295-45B12BE5BC6C}) (Version: 1.0.29.0 - National Instruments) Hidden NI Security Update (KB 67L8LCQW) (HKLM-x32\...\{20124E21-206B-485F-838F-14BB88161045}) (Version: 1.0.29.0 - National Instruments) Hidden NI Uninstaller (HKLM-x32\...\{C7743231-5899-418D-8CA5-22B0F654D894}) (Version: 3.20.363 - National Instruments) Hidden NI VC2008MSMs x64 (HKLM\...\{07E00E94-7A78-40FA-9BEF-71C190E98041}) (Version: 9.0.401 - National Instruments) Hidden NI VC2008MSMs x86 (HKLM-x32\...\{E84997A1-4D6F-4C0B-B60D-F85B360D2666}) (Version: 9.0.401 - National Instruments) Hidden Nightbot (HKLM-x32\...\{c59fdb2c-3f60-4455-b0a8-c45b5aee5447}_is1) (Version: 0.0.4 - NightDev, LLC) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 18.0.1 - OBS Project) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.8625.2127 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.8625.2127 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.8625.2127 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0413-0000-0000000FF1CE}) (Version: 16.0.8326.2076 - Microsoft Corporation) Hidden One Click Root (HKLM-x32\...\{6EAD0BE5-D1CF-4BE8-A66F-53FE9B8D89CC}) (Version: 1.0.0.4 - One Click Root) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) paint.net (HKLM\...\{F10AAD91-58DF-44EC-A647-810197141667}) (Version: 4.0.19 - dotPDN LLC) PreEmptive Analytics Visual Studio Components (HKLM-x32\...\{2C76E3DA-BA76-4FAD-B1B1-72B46D639028}) (Version: 1.0.2180.1 - PreEmptive Solutions) Hidden Prerequisites for SSDT (HKLM-x32\...\{9169C939-ED01-446A-BD0C-29873BAF4E48}) (Version: 11.0.2100.60 - Microsoft Corporation) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10163.31215 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.2.703.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7622 - Realtek Semiconductor Corp.) Restream Chat (HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\5574fe55cba0ac1f) (Version: 2.2.1.42 - Restream.io) Roblox Player for jonas (HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version: - Roblox Corporation) Roblox Studio for jonas (HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\{2922D6F1-2865-4EFA-97A9-94EEAB3AFA14}) (Version: - Roblox Corporation) ScpToolkit (HKLM\...\{AC052048-9828-45E3-872B-04CE30A3B58B}) (Version: 1.6.238.16010 - Nefarius Software Solutions) Speccy (HKLM\...\Speccy) (Version: 1.31 - Piriform) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Taalpakket voor Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - NLD (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - NLD) (Version: 10.0.50903 - Microsoft Corporation) Teach2000 versie 8.53 (HKLM-x32\...\Teach2000.7 XP - The Troolean Edition_is1) (Version: 8.53 - basement.nl) TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.88438 - TeamViewer) TreeSize Free V3.4.5 (HKLM-x32\...\TreeSize Free_is1) (Version: 3.4.5 - JAM Software) Universal Adb Driver (HKLM-x32\...\{C0E08D8D-6076-4117-B644-2AF34F35B757}) (Version: 1.0.4 - ClockworkMod) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) VideoPad Video Editor (HKLM-x32\...\VideoPad) (Version: 5.01 - NCH Software) Visual Studio 2012 Update 5 (KB2707250) (HKLM-x32\...\{6d052d71-b953-48cd-8a75-3462b00efeb7}) (Version: 11.0.61219 - Microsoft Corporation) VSDC Free Video Editor version 5.8.1.790 (HKLM\...\VSDC Free Video Editor_is1) (Version: 5.8.1.790 - Flash-Integro LLC) WCF Data Services 5.0 (for OData v3) Primary Components (HKLM-x32\...\{0BCC836F-0B28-4090-B58A-64883BAA3B2F}) (Version: 5.0.50628.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2012 (HKLM-x32\...\{148878BD-A2A5-4CF1-A103-2BA632F41953}) (Version: 5.0.50710.0 - Microsoft Corporation) Hidden Windows 10-upgradeassistent (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17384 - Microsoft Corporation) Windows 7 Upgrade Advisor (HKLM-x32\...\{0DC66F25-C58F-40d3-86BC-CA29C6D99BF8}) (Version: 2.0.5000.0 - Microsoft Corporation) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) WinRAR 5.40 beta 1 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.1 - win.rar GmbH) Wondershare Filmora(Build 8.2.2) (HKLM\...\Wondershare Filmora_is1) (Version: - Wondershare Software) Wondershare Helper Compact 2.5.2 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.2 - Wondershare) XAMPP (HKLM-x32\...\xampp) (Version: 7.1.9-0 - Bitnami) Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org) ==================== Aangepaste CLSID (gefilterd): ========================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-01] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-01] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-01] (Google) ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files (x86)\AVG\Antivirus\ashShA64.dll [2017-10-13] (AVG Technologies CZ, s.r.o.) ContextMenuHandlers1: [AVG Shredder Shell Extension] -> {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} => C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-x64.dll [2017-11-15] (AVG Technologies CZ, s.r.o.) ContextMenuHandlers1: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2015-05-26] (Cyberlink) ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-11-01] (Google) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-05-12] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-05-12] (Alexander Roshal) ContextMenuHandlers2: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2015-05-26] (Cyberlink) ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ContextMenuHandlers4: [AVG Disk Space Explorer Shell Extension] -> {4838CD50-7E5D-4811-9B17-C47A85539F28} => C:\Program Files (x86)\AVG\AVG PC TuneUp\DseShExt-x64.dll [2017-11-15] (AVG Technologies CZ, s.r.o.) ContextMenuHandlers4: [AVG Shredder Shell Extension] -> {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} => C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-x64.dll [2017-11-15] (AVG Technologies CZ, s.r.o.) ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-11-01] (Google) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f507e86e308a4c50\igfxDTCM.dll [2017-07-31] (Intel Corporation) ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files (x86)\AVG\Antivirus\ashShA64.dll [2017-10-13] (AVG Technologies CZ, s.r.o.) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-05-12] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-05-12] (Alexander Roshal) ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {005EDEAE-38AF-4068-8FE5-B923C5CFCFB4} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_27_0_0_187_pepper.exe [2017-11-16] (Adobe Systems Incorporated) Task: {02711844-E041-4EEE-80EE-BFE5CF707DDA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-13] (Google Inc.) Task: {135BC9A1-FD24-46A4-972E-773BD792EE88} - System32\Tasks\Antivirus Emergency Update => C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe [2017-10-13] (AVG Technologies CZ, s.r.o.) Task: {16455EDF-6E97-4229-9E68-2EB3578FCD2D} - System32\Tasks\HPCeeScheduleForjonas => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-01-22] (Hewlett-Packard) Task: {27294166-FF4C-4B0E-91F9-0FF612DA94B7} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-10-03] () Task: {2FAE092F-3E3A-4F78-BE46-D74711761BDE} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2017-07-21] (Oracle Corporation) Task: {4054EE79-C415-4F31-9A72-8B5160E13682} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-10-03] () Task: {45406A90-D8C3-4146-857C-ECF7DB34E1E3} - System32\Tasks\updater => C:\Program Files\Nefarius Software Solutions\ScpToolkit\ScpUpdater.exe [2016-01-10] (Nefarius Software Solutions) Task: {503A81F9-5F61-4086-8AFB-3E8A0D908AB2} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-10-26] () Task: {5BAA4CC7-AE00-4A3B-8E67-AFEC558655E4} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-11-02] (Microsoft Corporation) Task: {6CAD6EA9-627D-442A-9018-8D85EAC050A2} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-11-02] (Microsoft Corporation) Task: {7A57A8D8-7214-46A3-9804-FE1F433C76AC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-13] (Google Inc.) Task: {A14D32FF-AB4D-4FE0-9A6A-DCA7A9E41866} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-10-26] () Task: {AFA8987D-51A8-44E0-9745-0376C08E78AF} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2017-11-17] (Microsoft Corporation) Task: {CDFB1AE0-4713-4749-8717-4D3CA5608C78} - System32\Tasks\AVG EUpdate Task => avgsetupx.exe Task: {E14EDB4D-9E1B-4AF7-8BDD-14D7CC269589} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-11-16] (Adobe Systems Incorporated) Task: {F27BC63D-AE52-4344-B323-61B0A79AAE31} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe [2017-11-15] (AVG Technologies CZ, s.r.o.) (Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForjonas.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Snelkoppelingen & WMI ======================== (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) Shortcut: C:\Users\jonas\Favorites\NCH Software Download Site.lnk -> hxxp://www.nchsoftware.com/index.htm ShortcutWithArgument: C:\Users\jonas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps\Chrome Remote Desktop.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp ==================== Geladen Modules (gefilterd) ============== 2017-03-18 21:57 - 2017-03-18 21:57 - 000377344 _____ () c:\windows\system32\SSDM.dll 2017-11-16 17:31 - 2017-11-16 17:31 - 000307712 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ReactiveSockets\e31aae03d827d303a544e9421914a947\ReactiveSockets.ni.dll 2014-05-02 10:52 - 2014-05-02 10:52 - 000599040 _____ () C:\Program Files\Nefarius Software Solutions\ScpToolkit\irrKlang\amd64\irrKlang.NET4.dll 2014-05-02 05:55 - 2014-05-02 05:55 - 000185344 _____ () C:\Program Files\Nefarius Software Solutions\ScpToolkit\irrKlang\amd64\ikpflac.dll 2014-05-02 05:05 - 2014-05-02 05:05 - 000173056 _____ () C:\Program Files\Nefarius Software Solutions\ScpToolkit\irrKlang\amd64\ikpmp3.dll 2016-01-21 05:37 - 2014-04-14 19:59 - 000389896 _____ () C:\Program Files\CyberLink\Shared files\RichVideo64.exe 2017-03-18 21:58 - 2017-03-18 21:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-03-18 21:59 - 2017-03-20 04:56 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-09-15 17:32 - 2017-09-15 17:32 - 000068528 _____ () C:\Program Files (x86)\AVG\Antivirus\x64\module_lifetime.dll 2017-11-14 15:37 - 2017-11-10 10:57 - 002871640 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\swiftshader\libglesv2.dll 2017-11-14 15:37 - 2017-11-10 10:57 - 000138072 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\swiftshader\libegl.dll 2017-09-15 17:29 - 2017-09-15 17:28 - 048920064 _____ () C:\Program Files (x86)\AVG\UiDll\2623\libcef.dll 2017-10-13 20:38 - 2017-10-13 20:38 - 000168216 _____ () C:\Program Files (x86)\AVG\Antivirus\JsonRpcServer.dll 2017-09-15 17:31 - 2017-09-15 17:31 - 000060160 _____ () C:\Program Files (x86)\AVG\Antivirus\module_lifetime.dll 2017-09-15 17:32 - 2017-09-15 17:32 - 067109376 _____ () C:\Program Files (x86)\AVG\Antivirus\libcef.dll 2017-10-13 20:38 - 2017-10-13 20:38 - 000218208 _____ () C:\Program Files (x86)\AVG\Antivirus\event_routing_rpc.dll 2017-10-13 20:38 - 2017-10-13 20:38 - 000245704 _____ () C:\Program Files (x86)\AVG\Antivirus\tasks_core.dll 2017-10-25 11:59 - 2017-10-25 11:59 - 000704456 _____ () C:\Program Files (x86)\AVG\Antivirus\ffl2.dll ==================== Alternate Data Streams (gefilterd) ========= (Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.) ==================== Veilige Modus (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.) ==================== Bestandskoppeling (gefilterd) =============== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd.) ==================== Internet Explorer vertrouwde/beperkte toegang =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd.) IE trusted site: HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\amazon.com -> hxxps://amazon.com ==================== Hosts inhoud: ========================== (Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.) 2017-10-14 14:15 - 2017-11-16 17:22 - 000000806 _____ C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost 127.0.0.1 host 46.30.213.207 bol 0.0.0.1 mssplus.mcafee.com ==================== Andere gebieden ============================ (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-21-1444661948-3188908094-294470660-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\jonas\Desktop\SractOriginal.png DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == HKLM\...\StartupApproved\StartupFolder: => "ScpToolkit Tray Notifications.lnk" HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk" HKLM\...\StartupApproved\Run: => "SecurityHealth" HKLM\...\StartupApproved\Run: => "RtHDVCpl" HKLM\...\StartupApproved\Run: => "GoPro Tray App" HKLM\...\StartupApproved\Run: => "Wondershare Helper Compact.exe" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "Malwarebytes TrayApp" HKLM\...\StartupApproved\Run: => "EvtMgr6" HKLM\...\StartupApproved\Run: => "XboxStat" HKLM\...\StartupApproved\Run32: => "CLMLServer_For_P2G8" HKLM\...\StartupApproved\Run32: => "CLVirtualDrive" HKLM\...\StartupApproved\Run32: => "PowerDVD12Agent" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "InstallValidator.exe.FA87EC44_C38F_4148_93A1_FF4A64A2B707" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\StartupFolder: => "MEGAsync.lnk" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\StartupFolder: => "Adobe Gamma.lnk" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\Run: => "GoogleDriveSync" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\Run: => "Speech Recognition" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\Run: => "f.lux" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\Run: => "257976BCD6ABB66B0873DE70C111740A0043EF2D._service_run" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\Run: => "BuildNotification" HKU\S-1-5-21-1444661948-3188908094-294470660-1001\...\StartupApproved\Run: => "McAfeeSafeConnect" ==================== Firewall regels (gefilterd) =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [TCP Query User{F468232A-782C-4386-AF14-03CFA72EB0FB}C:\Program Files (x86)\LEGO Software\LEGO MINDSTORMS EV3 Home Edition\MindstormsEV3.exe] => (Allow) C:\Program Files (x86)\LEGO Software\LEGO MINDSTORMS EV3 Home Edition\MindstormsEV3.exe FirewallRules: [UDP Query User{68E46633-8DC3-499C-A590-8A85F5FE92AD}C:\Program Files (x86)\LEGO Software\LEGO MINDSTORMS EV3 Home Edition\MindstormsEV3.exe] => (Allow) C:\Program Files (x86)\LEGO Software\LEGO MINDSTORMS EV3 Home Edition\MindstormsEV3.exe FirewallRules: [{FDFFC44C-14BE-41C7-B3D0-3A21A0AB2CD3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D3BA6DDC-EEFF-4BA7-B73F-E1B5B508CF0F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7F5672A6-3413-4E6E-89B2-DA005E1CB8E5}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{124E57CD-36DB-4B53-B87E-F948C5F59389}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A2AF3CF1-4561-47A1-9D6A-82622F17D7BE}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{99A1A5F4-316C-4557-913B-E3EB0FC6EABA}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E690101E-DE6E-4F06-9729-DE3008CB8F4F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{2BFC610C-E6CF-419D-9C46-716A91711349}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{03EA2663-3392-40A6-BEC6-432F0DAC3CFE}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{78EB36C5-B779-4D3E-9973-16184D94B76B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{891D1ABF-B80B-451C-AFFC-CCEED6354BD1}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{13508550-B38F-45C4-90BF-F375ACD64F4C}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{54716BA3-0B98-4911-9FE4-626E57293FC7}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{71A1852D-A7CC-4252-B072-1A156535A101}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{021E7810-CD48-4076-8CF8-B30373988D36}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D6DCCE31-9021-4DEF-83BD-69B4EA56E062}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F45C67F7-6F5F-4B55-B59F-B7EB905AA770}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{437836E5-5B3E-4624-9344-6E7E46554D9A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{DFEDA992-4E86-4020-8D17-63BAC67BA4D4}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{15758F9D-9F7D-49F1-9243-B515F683FCC5}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{B8667DEF-4A38-4F21-BA1E-11A686DD221B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{CB328C19-AF8F-4212-85DF-9FEE089F2ECD}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D215ED8F-1AEB-493E-A218-B296E888343F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{EB581540-0EF4-4768-8521-BFB5307B9DF9}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{BB430E81-FF62-445C-9B54-46327E88E328}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F64F28E2-EC4C-45CC-B22A-A1967A9D73AA}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{14F3EBC0-F5F7-4C2B-BA7A-BF5EF6BB3144}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{14F4987B-F8D5-4ECF-A249-2A321C0E5002}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{FC070587-7B04-4887-A625-28E2AA62B26A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{13F62FE0-215E-4A06-B4BF-910AEED39CFD}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{599AC892-3996-44AC-A811-26A37789D358}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{426FAC43-1EBC-40E3-91FB-99C0F0514D6E}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{3E201120-8387-49F2-90AC-BD643C78FC89}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{CD661D19-2165-4BFE-A56D-6145618C5242}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{2A2E8AC3-869D-4DD5-8F17-80C7F05673C0}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{84471805-E404-4289-9093-15BA36EFD083}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FaceRig\Bin\FaceRig.exe FirewallRules: [{8B345759-0B34-4C51-9A9B-1E9BB4FD681F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FaceRig\Bin\FaceRig.exe FirewallRules: [{D90D16B3-0654-46E3-9001-42CCB97D66F4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FaceRig\Bin\Launcher.exe FirewallRules: [{3EC35DE1-1DC9-4F48-A6FD-AD634447F2DB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FaceRig\Bin\Launcher.exe FirewallRules: [{72FE3FF0-CEBB-46D1-830E-1E4CA076C849}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{1E382B51-EEA3-4CD5-B3C4-435F2FBFEA54}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{2847CBB3-1B13-4192-93D2-824E70775F9C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\OMSI 2\Omsi.exe FirewallRules: [{9B9FDFED-F30A-497D-833C-F2B4F31806E0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\OMSI 2\Omsi.exe FirewallRules: [{1F75651D-4545-4CDE-A6FD-6C53F75FC06E}] => (Allow) D:\program files\Common7\IDE\devenv.exe FirewallRules: [{9F7D0DBA-DE6A-4F75-9320-807742E719CD}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD Cinema\PowerDVDCinema12.exe FirewallRules: [{C6840567-49BE-4AE4-B675-83EA239D203F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{70B6F0C4-1AF9-4277-BF95-EA1831875615}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{83A7576E-0BFD-4D1F-B2EC-8643836ACFA4}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{D54E65A2-5A36-4291-9B1F-668E19D11F04}] => (Allow) LPort=2869 FirewallRules: [{A019492B-30EB-4DD5-91F7-ABFBB73B6F91}] => (Allow) LPort=1900 FirewallRules: [{61D71A72-79B2-4823-9079-BCF46C147BAB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{C1D9CBB5-A7AF-4A64-B8DE-B1444399BD30}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A86DD274-10B1-4D17-9A6E-CF862EFE3EC6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Software Inc\Software Inc.exe FirewallRules: [{908FC7C3-4D6E-47FF-855C-B818CB5BDD6D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Software Inc\Software Inc.exe FirewallRules: [{A980D0C6-8147-4E30-8770-9A9F875255DC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{CCF5DE4E-CCD6-486D-AB00-C6692FAC103F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{A9DA2158-7A14-4D96-ADEC-2B6EC0949978}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{DDE2B0CE-DFAF-4BEA-9975-F8DD8AC59F52}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{45647051-2CE3-4EDF-923C-C23BFAE22828}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\OMSI 2\Busbetrieb-Simulator\launcher.exe FirewallRules: [{7A3F3B09-398A-4A8B-B7D7-F71624DFDCDE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\OMSI 2\Busbetrieb-Simulator\launcher.exe FirewallRules: [TCP Query User{8B12B999-A964-419B-A307-2CA862F3DD32}C:\program files (x86)\steam\steamapps\common\omsi 2\busbetrieb-simulator\omsischnittstelle.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\omsi 2\busbetrieb-simulator\omsischnittstelle.exe FirewallRules: [UDP Query User{CC8BDC1C-E191-4856-AA60-C4346398D16B}C:\program files (x86)\steam\steamapps\common\omsi 2\busbetrieb-simulator\omsischnittstelle.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\omsi 2\busbetrieb-simulator\omsischnittstelle.exe FirewallRules: [{9AB43973-7651-4325-A044-147715AF1315}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{96FCC625-DB72-42B3-89A8-120975C53740}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{57EC8B74-BD57-4C99-83E1-B6FFF04CED43}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{42373A84-7037-45D1-8724-A02473B51774}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{780A16F5-5659-46C7-AF56-066D5E3C2FF9}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{33B71078-EA13-40E5-892E-1E2DF030F2EF}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{48A07A25-F1EC-41CB-BD66-4C85F0C0799A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{B8E4BEE7-40DA-4AB1-BFB1-69635E7691DF}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{87B706D6-7051-4E71-ABE4-62996CAF82A0}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{92FA34C5-E38E-403E-B213-C26A57722413}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7A0F4498-FC04-4768-9C03-CFAC39A28D39}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{49C6284B-D5B6-45BA-896B-503B932C9DE3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{9B3E9579-B925-4235-9FCC-BD0FB2FE8D04}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{FD2008D5-1386-44C4-A7DE-AD1473B1C6AC}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{20A9E7BD-68B2-47FC-8A50-7AB7AC5F072D}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6738BE4D-A0CC-426A-926E-C7D39ED5EAFF}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F49158FC-D06D-483C-9146-443D3DC9BB0E}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{5A1F5149-D1D1-44CE-B266-ABC37D6DD333}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{CCD8A084-A306-443D-BC4E-202B4F184B2B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{39C6A32E-C235-4B0B-BAA4-10AEA342E751}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{5AE777DF-2B30-4A10-BCE0-FA584B7247AE}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E888D5B7-535A-4464-9B0E-892BF9FC5F81}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{868587DC-0017-4CD6-BAEA-925E30ACDF12}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{1C82C698-A532-45C8-80E2-EEBBA4D05600}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E0BDB9DB-BEF8-462A-9443-27BD40769FBF}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E4662E60-BC6F-4B8F-9449-59DF9F78A076}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{8F9FBFC6-216F-4E7D-9BB9-665462E6DC3D}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{28632CE2-8F62-4758-B049-3C0A1B9CCB80}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{4D1D2A9D-1862-42FD-B645-943D548F88CE}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{BFCAC07E-7E57-44EC-A857-90D2C5007486}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E764B24C-1E5B-46EC-888D-9E4C418B49E7}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{147E6C9F-9073-461A-A209-F8DB13C7709E}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{88D0F6DC-9FDE-4D2E-9031-8177734D840C}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{5FB2F16C-04F3-4972-9D15-83B09E4CA5FD}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{3F516B5A-A367-4E7F-9713-E1CDF2D1FBFB}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{99EB73F8-9FC3-46B5-A417-F7F53B12153F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{20EEB4C7-E2C1-4065-A4F8-36AC2EFD745E}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{63BCB4DB-3B23-471B-99A4-628E0C2E502A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{69C61F4D-7FD5-4516-B085-F009BB446568}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{2C973A78-860B-4055-99D7-87747900D770}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{3A90D807-B203-4568-AE49-03FFCB161DAA}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{5DBD9517-3086-40A4-B05C-4381361A88B6}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{AF9B7393-F70E-4289-8342-685A80929108}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{C54105C2-6537-4A26-8342-504F2E0DBAC6}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{171101FF-E4F2-4C62-A830-63C8A7513C3E}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{C6D0B1E7-A45E-4EF3-93F4-D58B47DB9077}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{2157AAC9-BE3B-4179-9713-94D8A35A3768}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{2EC0BD35-4A13-41B4-B77D-242D6B95F853}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E34D2B2F-53F6-4545-958A-115AF9238F6E}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{ECCC07CD-D895-409F-A34B-9F4D4D4C346F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{27F06A69-71F6-4970-8E84-D2B621BAACFF}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A2F23927-B4FF-4238-ADE3-CFDF759197EC}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{504EEA2E-413A-43A0-AD24-0C8CE40ABE9F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6ABE7304-49E3-44B5-AF75-5A57C3B7BED6}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{C1A42CCF-38CB-4687-857B-688B0508CB69}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Player.exe FirewallRules: [{7FCF243B-6FCE-4308-8BFE-EE1FE3DB1414}] => (Allow) C:\Users\jonas\AppData\Local\Temp\andy-x64\Setup.exe FirewallRules: [{83326DC2-7A23-48AC-A0A8-435038B07427}] => (Allow) C:\Users\jonas\AppData\Local\Temp\andy-x64\Setup.exe FirewallRules: [{650FCB46-250B-4265-82B5-DEF9220E9D08}] => (Allow) C:\Program Files\Andy\andy.exe FirewallRules: [{C2715F0E-B4B5-400A-81EB-CE44E7FA0329}] => (Allow) C:\Program Files\Andy\andy.exe FirewallRules: [{610406C1-C521-4757-AE23-71BC904ABC51}] => (Allow) C:\Program Files\Andy\AndyConsole.exe FirewallRules: [{793ADC37-451D-41BE-8B5E-7BCC42AE10B7}] => (Allow) C:\Program Files\Andy\AndyConsole.exe FirewallRules: [{BF077108-4069-46C0-8899-76CEC67D21CA}] => (Allow) C:\Program Files\Andy\HandyAndy.exe FirewallRules: [{F74FAE82-9651-459D-91EB-12F558F78B5A}] => (Allow) C:\Program Files\Andy\HandyAndy.exe FirewallRules: [{AA7D2643-D4BD-48F0-9608-95E0075FA726}] => (Allow) C:\Program Files\Andy\SetupFiles\Uninstall.exe FirewallRules: [{9BE2086F-84A6-4A22-B4E0-E840426D2ED3}] => (Allow) C:\Program Files\Andy\SetupFiles\Uninstall.exe FirewallRules: [{BD91A7CA-754B-44F2-BF99-D8280FE5C4A9}] => (Allow) C:\Users\jonas\AppData\Local\Temp\RemoveTemp.exe FirewallRules: [{190D5D68-FE35-4C10-AE80-E0F551B27E19}] => (Allow) C:\Users\jonas\AppData\Local\Temp\RemoveTemp.exe FirewallRules: [{9F1E22D1-490E-432D-884D-95E120A0A6F7}] => (Allow) C:\Program Files\Andy\SetupFiles\VMwareCheck.exe FirewallRules: [{1E0291CF-ADE5-4F0B-945D-1E41BADF3B04}] => (Allow) C:\Program Files\Andy\SetupFiles\VMwareCheck.exe FirewallRules: [{D9960FBA-D224-492E-8B48-9A5BA1A2AC6E}] => (Allow) C:\Program Files\Andy\SetupFiles\AndyDoctor.exe FirewallRules: [{50E070CA-330E-4F33-B89E-B7C9EBA05A5C}] => (Allow) C:\Program Files\Andy\SetupFiles\AndyDoctor.exe FirewallRules: [{FD60515C-810B-4CE0-A95D-28BAE2FCA1B9}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{237913C2-C88D-4930-B785-23959B19AF45}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{0EB052CD-D19A-4A26-865D-C4B8969EFA5F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F8186942-1921-4082-A5F9-62167A488EE5}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A5904DCD-1F12-418E-BA73-398C62B3688A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{83F16023-60ED-4FF1-A48F-FEA8138BE377}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{0BDBB3AF-CF6A-471A-899C-2A0EA0444EB9}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{1CB7095A-F223-4E22-902A-BAF0D9890DAE}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{29889426-EC3D-4DDA-A3A4-A7FFE576A57D}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{698C800A-6EBF-479B-B291-A63BAD0DC17F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{0D54CA98-EE9F-4E65-8711-4DA3ABA3E8F4}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{65AC4B38-571C-4AC2-988D-64C4D51DE2AC}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E9F75353-063F-4977-8514-CC9F9409A8FD}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{086CDADD-E0F8-45D5-864E-C7CF268F5581}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F55997C9-1E4C-41C7-ABCB-06BC0B774B56}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D670B8D1-94AC-4EB5-8424-64CC495CB50B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{C2CA4D89-CF92-4571-908A-965E528AAF6A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D232234A-8460-4BEB-8F67-2D8104F3D9BA}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{D0710036-4347-4AA3-88FC-65B6EA55C6FF}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F1C7B677-8466-4671-8534-87A52F84D943}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E43A97E8-D21A-4C4A-B182-F40C32121664}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{760468A9-5074-4CC6-B9BB-F5A25AA1FC9A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A6D8C447-7949-42DA-BDF7-DC58DA7DC423}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{8C949A79-95E7-4009-94F5-9D528100AC08}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{AB73CB6C-0FC8-4799-8444-940B44E90948}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D7598B55-874C-4FC0-869D-651279F9ECEE}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{10761BD9-EA9B-4800-B1B3-B1A2342E6EF2}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E1FAA56F-449B-4986-88E5-C47D822B1331}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E95A2D7B-E07B-4288-9FD9-BDAE8F19577F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{9E819A7D-AED1-4353-88E4-98FDFC31BC15}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{5B6361D8-8C8F-4121-98D4-1B8096553CC3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A4F03FE9-8F88-45B8-B612-63AA979BDA13}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A69CF84F-141B-4BE5-9EF7-C3E0C4B7BB4F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{10A63725-C05F-4ECF-BBD5-616A9F1EC1BE}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{199E916B-688A-49EF-9526-F8D59AC50238}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{54208B0E-C7A8-46FA-AD49-234492EA4F67}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7D06E92A-84E4-4028-812C-7CC41D69FE74}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E52F1F77-4F39-4B6E-981B-0B3096C0998B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{69270741-7DF3-4B6A-89D3-7C7AEDB6D870}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{4A361B34-8DE4-4530-B202-0B53C2313D53}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{BBE2F03C-BE6C-4468-8C62-9A1209D20CDA}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A9CFF91E-CD65-4C22-8225-12A682A7A870}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{2F655BDE-DCDD-415E-8B8A-C8F8E324733B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{3661A079-146D-476C-8672-317DF3356594}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{788D477B-3C84-41DB-B53F-97BF79958A87}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe FirewallRules: [{BC66A5E2-826B-436E-B9AC-4CE51CCDA10E}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe FirewallRules: [{6554D870-41D0-4CCE-88B7-9F45BF080CA7}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe FirewallRules: [{2F3CE102-1C7A-4323-AF39-92C12FFC1C96}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe FirewallRules: [{9EBBEDDA-68B4-4646-A6D8-973CA04F3D2C}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe FirewallRules: [{C39D5D2E-3197-4817-A065-8442DC44C7BC}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe FirewallRules: [{116BDB6F-0BD7-4653-990B-84E95022F5F2}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\63.0.3239.32\remoting_host.exe FirewallRules: [{555A91CB-040B-4C5D-98D7-21B5C5759C92}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{0E302799-3DA1-4D1C-8967-A3014D10032A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{23F97AF6-0CA4-4F2C-9B74-FA5C4828D5C0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{CD69FC25-73B6-4F5E-9816-EEFCEA508DBD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{72F931F7-0BF4-4328-9A96-5C6B871E6525}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{9D9A2664-58B3-442A-8894-054AFEFA3E7D}] => (Allow) C:\Program Files\CyberLink\PowerDirector16\PDR10.EXE ==================== Herstelpunten ========================= AANDACHT: Systeemherstel is uitgeschakeld ==================== Defecte Apparaatbeheer Apparaten ============= ==================== Eventlog fouten: ========================= Applicatiefouten: ================== Error: (11/30/2017 05:01:43 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'C:\Program Files (x86)\AVG\Antivirus\defs\17113000\aswEngin.dll' niet maken. Kan afhankelijke assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (11/30/2017 05:01:41 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'C:\Program Files (x86)\AVG\Antivirus\defs\17113000\aswEngin.dll' niet maken. Kan afhankelijke assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (11/29/2017 10:10:01 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'C:\Program Files (x86)\AVG\Antivirus\defs\17112902\aswEngin.dll' niet maken. Kan afhankelijke assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (11/29/2017 05:46:11 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'C:\Program Files (x86)\AVG\Antivirus\defs\17112902\aswEngin.dll' niet maken. Kan afhankelijke assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (11/29/2017 05:46:09 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'C:\Program Files (x86)\AVG\Antivirus\defs\17112902\aswEngin.dll' niet maken. Kan afhankelijke assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (11/29/2017 03:43:35 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'C:\Program Files (x86)\AVG\Antivirus\defs\17112900\aswEngin.dll' niet maken. Kan afhankelijke assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (11/29/2017 11:41:19 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'C:\Program Files (x86)\AVG\Antivirus\defs\17112900\aswEngin.dll' niet maken. Kan afhankelijke assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (11/29/2017 11:41:17 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'C:\Program Files (x86)\AVG\Antivirus\defs\17112900\aswEngin.dll' niet maken. Kan afhankelijke assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (11/28/2017 09:36:01 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'C:\Program Files (x86)\AVG\Antivirus\defs\17112802\aswEngin.dll' niet maken. Kan afhankelijke assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Error: (11/28/2017 07:36:25 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Kan activeringscontext voor 'C:\Program Files (x86)\AVG\Antivirus\defs\17112802\aswEngin.dll' niet maken. Kan afhankelijke assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose. Systeemfouten: ============= Error: (11/30/2017 05:11:46 PM) (Source: Netwtw04) (EventID: 5010) (User: ) Description: Intel(R) Dual Band Wireless-AC 3165: de netwerkadapter heeft een ongeldige waarde aan het stuurprogramma geleverd. 5010 - Driver DBG_ASSERT - instead of BSOD Error: (11/30/2017 05:11:46 PM) (Source: Netwtw04) (EventID: 5010) (User: ) Description: Intel(R) Dual Band Wireless-AC 3165: de netwerkadapter heeft een ongeldige waarde aan het stuurprogramma geleverd. 5010 - Driver DBG_ASSERT - instead of BSOD Error: (11/30/2017 05:01:11 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (11/30/2017 05:01:11 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (11/30/2017 05:01:11 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (11/30/2017 05:01:11 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (11/30/2017 05:01:03 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De CldFlt-service kan vanwege de volgende fout niet worden gestart: De aanvraag wordt niet ondersteund. Error: (11/29/2017 10:10:21 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (11/29/2017 10:10:21 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (11/29/2017 10:10:21 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. CodeIntegrity: =================================== Date: 2017-09-28 17:29:17.649 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Andy\msvcr100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-09-28 17:29:17.598 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Andy\msvcp100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-09-27 17:47:04.688 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Andy\msvcr100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-09-27 17:47:04.594 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Andy\msvcp100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-09-27 17:42:49.362 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Andy\msvcr100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-09-27 17:42:49.305 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Andy\msvcp100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-09-27 17:23:26.605 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Andy\msvcr100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-09-27 17:23:26.562 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Andy\msvcp100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-09-27 17:21:30.340 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Andy\msvcr100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-09-27 17:21:30.280 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Andy\msvcp100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Geheugen info =========================== Processor: Intel(R) Core(TM) i5-6267U CPU @ 2.90GHz Percentage geheugen in gebruik: 57% Totaal fysiek RAM-geheugen: 6025.35 MB Beschikbaar fysiek RAM-geheugen: 2569.54 MB Totaal Virtueel geheugen: 7305.35 MB Beschikbaar Virtual geheugen: 3717.86 MB ==================== Schijven ================================ Drive c: (Boot) (Fixed) (Total:117.15 GB) (Free:6.74 GB) NTFS Drive d: (Data) (Fixed) (Total:871.51 GB) (Free:596.54 GB) NTFS Drive e: (Recover) (Fixed) (Total:60 GB) (Free:36.92 GB) NTFS ==================== MBR & Partitietabel ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 411D467F) Partition: GPT. ======================================================== Disk: 1 (Size: 119.2 GB) (Disk ID: 411D4644) Partition: GPT. ==================== Eind van Addition.txt ============================