Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 17.01.2018 01 Gestart door Eigenaar (21-01-2018 11:17:27) Gestart vanaf D:\Bureaublad Windows 7 Home Premium Service Pack 1 (X64) (2015-03-10 20:38:47) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3003377172-2765754124-3774478947-500 - Administrator - Disabled) Eigenaar (S-1-5-21-3003377172-2765754124-3774478947-1000 - Administrator - Enabled) => C:\Users\Eigenaar Gast (S-1-5-21-3003377172-2765754124-3774478947-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3003377172-2765754124-3774478947-1002 - Limited - Enabled) ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: Norton Security (Enabled - Up to date) {30744133-1E94-7B35-F4A3-82A5AEF1CBAA} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Norton Security (Enabled - Up to date) {8B15A0D7-38AE-74BB-CE13-B9D7D5768117} FW: Norton Security (Enabled) {084FC016-54FB-7A6D-DFFC-2B9050228CD1} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag zou kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeinstallerd worden.) 3DYD Youtube Source (remove only) (HKLM-x32\...\3DYD Youtube Source) (Version: - ) 4K Video Downloader 4.2 (HKLM-x32\...\4K Video Downloader_is1) (Version: 4.2.1.2185 - Open Media LLC) 7-Zip 16.04 (HKLM-x32\...\7-Zip) (Version: 16.04 - Igor Pavlov) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) 9-lab Removal Tool (HKLM-x32\...\9-lab Removal Tool) (Version: - ) AC3Filter 2.6.0b (HKLM-x32\...\AC3Filter_is1) (Version: 2.6.0b - Alexander Vigovsky) Acronis True Image 2015 (HKLM-x32\...\{35CFA5F4-EE2D-4B13-AAED-BC643B6874B5}) (Version: 18.0.6613 - Acronis) Hidden Acronis True Image 2015 (HKLM-x32\...\{35CFA5F4-EE2D-4B13-AAED-BC643B6874B5}Visible) (Version: 18.0.6613 - Acronis) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated) Adobe Audition 1.5 (HKLM-x32\...\{86EF9FC4-F209-4520-B7E1-C7FF0EEBDFFF}) (Version: 1.5 - Adobe Systems) Adobe Audition 3.0 (HKLM-x32\...\Adobe Audition 3.0) (Version: 3.0 - Adobe Systems Incorporated) Adobe Audition CS6 (HKLM-x32\...\{30FD541D-3C9D-41C4-B240-A994EE4E0231}) (Version: 5.0 - Adobe Systems Incorporated) Adobe Flash Player 20 ActiveX (HKLM-x32\...\{7B0961DB-15EB-41AF-85DA-C296924CA408}) (Version: 20.0.0.228 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Reader XI (11.0.15) - Nederlands (HKLM-x32\...\{AC76BA86-7AD7-1043-7B44-AB0000000001}) (Version: 11.0.15 - Adobe Systems Incorporated) Aimersoft Helper Compact 2.5.2 (HKLM-x32\...\{405147F7-FCC5-499B-A27E-EA6BD4A80435}_is1) (Version: 2.5.2 - Aimersoft) AMD Catalyst Install Manager (HKLM\...\{5C676CDB-B092-27E7-C524-3C0EA520AE8C}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.) Ant Video downloader (Native messaging host) (HKLM-x32\...\{BF8A7739-30E3-4E72-8AD6-F87D2C73386F}) (Version: 3.0.15 - Ant.com) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.14 - Michael Tippach) aTube Catcher versie 3.8 (HKLM-x32\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp) Audacity 2.2.0 (HKLM-x32\...\Audacity_is1) (Version: 2.2.0 - Audacity Team) AVS Video Editor 7.4.1 (HKLM-x32\...\AVS Video Editor_is1) (Version: 7.4.1.281 - Online Media Technologies Ltd.) Bass Audio Decoder (remove only) (HKLM-x32\...\Bass Audio Decoder) (Version: - ) bl (HKLM-x32\...\{2A075BB4-E976-4278-BF3F-E5C6945D84C0}) (Version: 1.0.0 - Your Company Name) Hidden Canon Inkjet Printer Driver Add-On Module V2.00 (HKLM\...\CANONIJINBOXADDON200) (Version: - ) CCExtractor (HKLM-x32\...\{099A3BE8-200C-41D9-8DC7-53D8D3B36598}) (Version: 0.85 - CCExtractor Development) CCleaner (HKLM\...\CCleaner) (Version: 5.39 - Piriform) Citrix Receiver (HKLM-x32\...\CitrixOnlinePluginPackWeb) (Version: 13.0.0.6685 - Citrix Systems, Inc.) Compatibiliteitspakket voor het 2007 Microsoft Office system (HKLM-x32\...\{90120000-0020-0413-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Conexant Polaris Unused CIR Function (HKLM\...\VID_1D19&PID_6120&MI_00) (Version: 1.0.0.0 - Conexant Systems) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden DCoder Image Source (remove only) (HKLM-x32\...\DCoder Image Source) (Version: - ) Directory List & Print (Pro) 2.35 (HKLM-x32\...\Directory List & Print (Pro)_is1) (Version: - Infonautics GmbH, Switzerland) Directory Lister v0.9.1 (HKLM-x32\...\Directory Lister_is1) (Version: - KRKSoft) Directory Lister v2 64bit v2.24 (HKLM\...\Directory Lister Pro 64bit_is1) (Version: 2.24 - KRKSoft) DirectVobSub (remove only) (HKLM-x32\...\DirectVobSub) (Version: - ) DirLister 1.0 (HKLM-x32\...\DirLister) (Version: 1.0 - DukeLupus) DVD Shrink 3.2 (HKLM-x32\...\DVD Shrink_is1) (Version: - DVD Shrink) eLicenser Control (HKLM-x32\...\eLicenser Control) (Version: - Steinberg Media Technologies GmbH) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) ffdshow v1.3.4533 [2014-09-29] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4533.0 - ) FFMPEG Core Files (remove only) (HKLM-x32\...\FFMPEG Core Files) (Version: - ) FL Studio 12 (HKLM-x32\...\FL Studio 12) (Version: - Image-Line) FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line) Free PDF to Word Doc Converter v1.1 (HKLM-x32\...\Free PDF to Word Doc Converter_is1) (Version: 1.1 - www.hellopdf.com) Freemake Video Downloader (HKLM-x32\...\Freemake Video Downloader_is1) (Version: 3.7.4 - Ellora Assets Corporation) FVD Downloader Module (HKLM-x32\...\{A3F74A3C-6824-4878-AB46-21280389D09F}) (Version: 1.0.8 - Nimbus) GemistDownloader (HKLM-x32\...\GemistDownloader) (Version: 2.9.0.4 - BeukemaMedia (HelpdeskWeb.nl)) GIMP 2.8.20 (HKLM\...\GIMP-2_is1) (Version: 2.8.20 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.) Google Earth Pro (HKLM-x32\...\{ECF2E224-42F5-4E50-B58E-94CA70E85697}) (Version: 7.3.0.3832 - Google) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden GPAC (remove only) (HKLM-x32\...\GPAC) (Version: - ) Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - ) HandBrake 1.0.3 (HKLM-x32\...\HandBrake) (Version: 1.0.3 - ) HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software) Icaros 3.0.0 (HKLM\...\Icaros_is1) (Version: 3.0.0.000 - Tabibito Technology) IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line) InfraRecorder 0.53 (x64 edition) (HKLM\...\{2C22EA92-CB30-4932-0053-000001000000}) (Version: 0.53.00.00 - Christian Kindahl) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) KeepVid Pro(Build 7.0.1.3) (HKLM-x32\...\KeepVid Pro_is1) (Version: 7.0.1.3 - KeepVid Studio) LAV Filters 0.70.2 (HKLM-x32\...\lavfilters_is1) (Version: 0.70.2 - Hendrik Leppkes) MadVR (remove only) (HKLM-x32\...\MadVR) (Version: - ) MAGIX Speed burnR (MSI) (HKLM\...\{3F3FB8E8-3E52-48B2-A574-0B27BF758AEC}) (Version: 7.0.1.29 - MAGIX Software GmbH) Hidden MAGIX Speed burnR (MSI) (HKLM-x32\...\MX.{3F3FB8E8-3E52-48B2-A574-0B27BF758AEC}) (Version: 7.0.1.29 - MAGIX Software GmbH) MAGIX Video converter 3 (HKLM\...\VID_1D19&PID_6120&MI_01) (Version: 1.0.0.0 - Conexant Systems) MAGIX Video easy Red uw video's! (HKLM\...\{70099892-092B-4E91-9788-85561FAD2E04}) (Version: 5.0.3.113 - MAGIX Software GmbH) Hidden MAGIX Video easy Red uw video's! (HKLM-x32\...\MX.{70099892-092B-4E91-9788-85561FAD2E04}) (Version: 5.0.3.113 - MAGIX Software GmbH) MAGIX Video Sound Cleaning Lab (HKLM\...\{80CD8A97-53DA-4E50-956C-53B88E005F5F}) (Version: 22.0.1.22 - MAGIX Software GmbH) Hidden MAGIX Video Sound Cleaning Lab (HKLM-x32\...\MX.{80CD8A97-53DA-4E50-956C-53B88E005F5F}) (Version: 22.0.1.22 - MAGIX Software GmbH) Malwarebytes versie 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes) M-Audio MIDISPORT 6.1.3 (x64) (HKLM\...\{AED2A1D4-19B4-4692-8004-E1A3E8A9E85B}) (Version: 6.1.3 - M-Audio) Microsoft .NET Framework 4.7 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02053 - Microsoft Corporation) Microsoft .NET Framework 4.7 (Nederlands) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1043) (Version: 4.7.02053 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Professional Editie 2003 (HKLM-x32\...\{90110413-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\OneDriveSetup.exe) (Version: 17.0.4035.0328 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) MiniTool Partition Wizard Free 9.1 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.) Mixxx 2.0.0 (64-bit) (HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\Mixxx (2.0.0)) (Version: 2.0.0 - The Mixxx Development Team) MKVToolNix 9.5.0 (32bit) (HKLM-x32\...\MKVToolNix) (Version: 9.5.0 - Moritz Bunkus) Movie Maker (HKLM-x32\...\{DC5E5027-65E8-41CB-815C-9AAB48BFB8E2}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 57.0.3 (x64 nl) (HKLM\...\Mozilla Firefox 57.0.3 (x64 nl)) (Version: 57.0.3 - Mozilla) Mozilla Firefox 57.0.4 (x64 nl) (HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\Mozilla Firefox 57.0.4 (x64 nl)) (Version: 57.0.4 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 57.0.3 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MultiCommander (x64) (HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\MultiCommander x64) (Version: 7.7.0.2404 - Mathias Svensson) Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - ) Norton Security (HKLM-x32\...\NS) (Version: 22.11.2.7 - Symantec Corporation) Online Plug-in (HKLM-x32\...\{AE2E0F4A-E08F-4A15-B4DC-D8FC9CEFF9C7}) (Version: 13.0.0.6685 - Citrix Systems, Inc.) Hidden Online Video Converter version 1.0.6 (HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\{628BF902-EB66-4BDB-97CB-AE4AAAAA5A7F}_is1) (Version: 1.0.6 - APOWERSOFT LIMITED) OpenOffice 4.1.2 (HKLM-x32\...\{41E7B095-1618-49CF-972F-72B5D5235423}) (Version: 4.12.9782 - Apache Software Foundation) OpenShot Video Editor (HKLM-x32\...\{C55769E7-0B81-4E22-B5CE-805506E6B6B2}) (Version: 2.0.7 - OpenShot Studios, LLC) ph (HKLM-x32\...\{185F9795-9663-4F13-9EF9-307A282ADB5A}) (Version: 1.0.0 - Your Company Name) Hidden PlayMemories Home (HKLM-x32\...\{E03CD71A-F595-49DF-9ADC-0CFC93B1B211}) (Version: 6.0.02.14151 - Sony Corporation) Plex Media Server (HKLM-x32\...\{B4760EA0-17DF-4F24-89ED-97DDD2DB57A2}) (Version: 0.9.1211 - Plex, Inc.) Hidden Plex Media Server (HKLM-x32\...\{ca5910de-4c30-4f28-b6bd-5dd8edff922d}) (Version: 0.9.1211 - Plex, Inc.) Prism Video File Converter (HKLM-x32\...\Prism) (Version: 3.04 - NCH Software) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.65.1025.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7183 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.52 - Piriform) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.25.0 - Renesas Electronics Corporation) Hidden Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.25.0 - Renesas Electronics Corporation) Rig Manager (HKLM\...\{D82099F0-1636-4F93-9DF1-D881B6EC9BC2}) (Version: 2.1.26.13232 - Kemper GmbH) Rig Manager (HKLM\...\{E25B8D3A-BBF5-4940-A202-08E9E2DC27EC}) (Version: 2.1.19.13125 - Kemper GmbH) Samsung Link 2.0.0.1503181422 (HKLM\...\8474-7877-9059-0204) (Version: 2.0.0.1503181422 - Copyright 2013 SAMSUNG) Skype™ 7.3 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.3.101 - Skype Technologies S.A.) Subtitle Edit 3.5.2 (HKLM-x32\...\SubtitleEdit_is1) (Version: 3.5.2.0 - Nikse) Taalpakket voor Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - NLD (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - NLD) (Version: 10.0.50903 - Microsoft Corporation) Total Video Converter 3.70 100621 (HKLM-x32\...\Total Video Converter 3.70_is1) (Version: - EffectMatrix Inc.) TreeSize Free V4.0.3 (HKLM-x32\...\TreeSize Free_is1) (Version: 4.0.3 - JAM Software) Trio Manager 1.1.0 (HKLM-x32\...\{F2461770-CBE3-4CB3-BFB6-667A6E95B303}_is1) (Version: 1.1.0 - Harman International, Inc.) Tunatic (HKLM-x32\...\Tunatic) (Version: - ) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) USB2.0 Grabber (HKLM-x32\...\{45518B6D-9DDF-4144-83E4-A56762524F35}) (Version: 7.12.000.003 - Youyan) vanBasco's Karaoke Player (HKLM-x32\...\VMidi) (Version: - ) VdhCoApp 1.1.1 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper) VidCoder 1.5.34 (x64) (HKLM\...\VidCoder-x64_is1) (Version: 1.5.34 - RandomEngy) VLC media player (HKLM\...\VLC media player) (Version: 2.2.6 - VideoLAN) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) VSO ConvertXtoVideo Ultimate 2 (HKLM-x32\...\{{3852A371-F5ED-491A-86C3-998CD0688D4A}_is1) (Version: 2.0.0.11 - VSO Software) Wacom (HKLM\...\Pen Tablet Driver) (Version: 5.3.5-3 - Wacom Technology Corp.) Wacom-tablet (HKLM\...\Wacom Tablet Driver) (Version: 6.3.23-1 - Wacom Technology Corp.) WavePad Sound Editor (HKLM-x32\...\WavePad) (Version: 7.13 - NCH Software) WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.) WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.) WinDirStat 1.1.2 (HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\WinDirStat) (Version: - ) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) WinZip 20.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240EF}) (Version: 20.0.11659 - WinZip Computing, S.L. ) Wondershare Photo Recovery (build 3.1.1) (HKLM-x32\...\Wondershare Photo Recovery_is1) (Version: - Wondershare Co., Ltd.) Youtube Downloader HD v. 2.9.9.30 (HKLM-x32\...\Youtube Downloader HD_is1) (Version: - YoutubeDownloaderHD.com) Zoom Player (remove only) (HKLM-x32\...\ZoomPlayer) (Version: 14 - Inmatrix LTD) ==================== Aangepaste CLSID (gefilterd): ========================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) CustomCLSID: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Eigenaar\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Eigenaar\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Eigenaar\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000_Classes\CLSID\{F09690BD-582D-4439-B6ED-5C2545D2F424}\InprocServer32 -> C:\Windows\system32\kernel32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Eigenaar\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Eigenaar\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\FileSyncApi64.dll (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.11.2.7\buShell.dll [2017-11-11] (Symantec Corporation) ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.11.2.7\buShell.dll [2017-11-11] (Symantec Corporation) ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.11.2.7\buShell.dll [2017-11-11] (Symantec Corporation) ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2014-09-09] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2014-09-09] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2014-09-09] (Acronis) ShellIconOverlayIdentifiers-x32: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.11.2.7\buShell.dll [2017-11-11] (Symantec Corporation) ShellIconOverlayIdentifiers-x32: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.11.2.7\buShell.dll [2017-11-11] (Symantec Corporation) ShellIconOverlayIdentifiers-x32: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.11.2.7\buShell.dll [2017-11-11] (Symantec Corporation) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov) ContextMenuHandlers1: [9-lab Removal Tool] -> {8E571ABB-30D3-402F-BBEC-3954466CF529} => C:\Program Files\9-lab\Removal Tool\shellext.dll [2015-06-10] (9-lab LLC) ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.11.2.7\buShell.dll [2017-11-11] (Symantec Corporation) ContextMenuHandlers1: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.11.2.7\NavShExt.dll [2017-11-11] (Symantec Corporation) ContextMenuHandlers1: [VersionsPageShellExt] -> {9E42900A-85F9-4E67-9778-575FBBA0A81C} => C:\Program Files (x86)\Acronis\TrueImageHome\x64\versions_page.dll [2014-09-09] (Acronis) ContextMenuHandlers1: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2015-10-26] (WinZip Computing, S.L.) ContextMenuHandlers2: [9-lab Removal Tool] -> {8E571ABB-30D3-402F-BBEC-3954466CF529} => C:\Program Files\9-lab\Removal Tool\shellext.dll [2015-06-10] (9-lab LLC) ContextMenuHandlers2: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.11.2.7\NavShExt.dll [2017-11-11] (Symantec Corporation) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers3: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] () ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov) ContextMenuHandlers4: [9-lab Removal Tool] -> {8E571ABB-30D3-402F-BBEC-3954466CF529} => C:\Program Files\9-lab\Removal Tool\shellext.dll [2015-06-10] (9-lab LLC) ContextMenuHandlers4: [MSSE] -> {0365FE2C-F183-4091-AC82-BFC39FB75C49} => -> Geen bestand ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Geen bestand ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2015-04-08] (Piriform Ltd) ContextMenuHandlers4: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2015-10-26] (WinZip Computing, S.L.) ContextMenuHandlers4: [ZPShellExt] -> {ABE00001-0123-ABED-1248-0248ADFA1909} => C:\Program Files (x86)\Zoom Player\zpshlext64.dll [2017-07-05] () ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2013-04-27] (Advanced Micro Devices, Inc.) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov) ContextMenuHandlers6: [9-lab Removal Tool] -> {8E571ABB-30D3-402F-BBEC-3954466CF529} => C:\Program Files\9-lab\Removal Tool\shellext.dll [2015-06-10] (9-lab LLC) ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.11.2.7\buShell.dll [2017-11-11] (Symantec Corporation) ContextMenuHandlers6: [DirLister] -> {EF479680-EA35-4EA9-B093-7114F3E3E0DA} => C:\Program Files\Directory Lister\DirListerExt64.dll [2016-08-12] (KRKsoft.com) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Geen bestand ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2015-04-08] (Piriform Ltd) ContextMenuHandlers6: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.11.2.7\NavShExt.dll [2017-11-11] (Symantec Corporation) ContextMenuHandlers6: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] () ContextMenuHandlers6: [VersionsPageShellExt] -> {9E42900A-85F9-4E67-9778-575FBBA0A81C} => C:\Program Files (x86)\Acronis\TrueImageHome\x64\versions_page.dll [2014-09-09] (Acronis) ContextMenuHandlers6: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2015-10-26] (WinZip Computing, S.L.) ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {076701E1-5C0F-4352-8813-7BD802A5C65C} - System32\Tasks\{C5B1C188-A95A-44AA-8E7C-89E733119394} => C:\Windows\system32\pcalua.exe -a "D:\MIJN DOCUMENTEN\DOWNLOADS INTERNET\Audition 3.0 Setup.exe" -d "D:\MIJN DOCUMENTEN\DOWNLOADS INTERNET" Task: {0E42B788-B3A3-4A13-A411-E822968C1E85} - System32\Tasks\Norton Security\Norton Security Error Processor => C:\Program Files\Norton Security\Engine\22.11.2.7\SymErr.exe [2017-11-11] (Symantec Corporation) Task: {2625556E-F1DC-4C34-991F-BB9C15C5E566} - System32\Tasks\{5B439E20-61D0-4A56-B588-08CA694F7293} => C:\Program Files (x86)\Zoom Player\zplayer.exe [2017-11-29] (Inmatrix LTD) Task: {2CA4A8D2-797B-448A-9498-52033C265B2C} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton Security\Engine\22.11.2.7\WSCStub.exe [2017-11-11] (Symantec Corporation) Task: {46FBB6E9-C73B-48EA-8D4E-587C35C455F4} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton Security\Upgrade.exe [2017-11-11] (Symantec Corporation) Task: {60136D5F-DA6B-4F7A-82C9-5970AC6D087B} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-01-09] (Piriform Ltd) Task: {6153EDBD-998E-410E-A4D8-7E735A0FC58D} - System32\Tasks\{3F4AD8F3-8A30-4B7F-8275-CC39E45D7D47} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\ZHPDiag\ZHPhep.exe" -d "C:\Program Files (x86)\ZHPDiag" Task: {6C1DB9E6-0FE7-4DB3-94AB-85685CB791B8} - System32\Tasks\{696B787B-5199-4243-95DF-BF20CB6CE255} => C:\Windows\system32\pcalua.exe -a "D:\MIJN DOCUMENTEN\DOWNLOADS INTERNET\Downloads\M-AUDIO midisport 1x1 MA_CMIDI_V32_4_2_03v8.exe" Task: {7D762136-6519-4F42-82EC-2A414C28BAD9} - System32\Tasks\{19422A82-F8E6-44B3-8ED4-6D9AEFD7C122} => C:\Windows\system32\pcalua.exe -a "D:\MIJN DOCUMENTEN\DOWNLOADS INTERNET\aomwin200ea24(1).exe" -d "D:\MIJN DOCUMENTEN\DOWNLOADS INTERNET" Task: {87D4EA02-7A62-4E9E-8C37-18F7335E4D9C} - System32\Tasks\{4F4BBD92-D5F4-405D-941F-F327193AF634} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\ToolwizTimeMachine\Uninstall.exe" -d "C:\Program Files\ToolwizTimeMachine" Task: {8CEFC375-3F8A-4D28-99C6-44E0BB6E7878} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => D:\Bureaublad\WR_Tray_Icon.exe Task: {93FAC7B1-33B6-4A9E-BDAA-A34092FB72A1} - System32\Tasks\Games\UpdateCheck_S-1-5-21-3003377172-2765754124-3774478947-1000 Task: {94E683E9-D6B8-4731-861B-3EF418EAE6FF} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-21] (Microsoft Corporation) Task: {BDF32DBE-1AE3-476F-AF76-1CBE3BB19CBC} - System32\Tasks\GoogleUpdateTaskMachineCore1d12ecccadf768d => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-04] (Google Inc.) Task: {C47B052B-0F9E-4D72-BCF7-5D39D5484A84} - System32\Tasks\Norton Security\Norton Security Error Analyzer => C:\Program Files\Norton Security\Engine\22.11.2.7\SymErr.exe [2017-11-11] (Symantec Corporation) Task: {C566C2E4-0ABE-4B76-B936-1C053C10BDDC} - System32\Tasks\{A3631839-85A0-47F1-95DB-153192DC0B38} => C:\Windows\system32\pcalua.exe -a D:\Bureaublad\aomwin200ea24(2).exe -d D:\Bureaublad Task: {CC3E93D4-1FC5-4135-94D0-F4C7BA8795BE} - System32\Tasks\{40CB0697-D1A0-42B9-BFD2-7D86CC235532} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\Uninstall.exe" -c /app FreeVideoEditor Task: {CF8F5C60-E7A6-4720-A3C3-312875073225} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-01-17] (Adobe Systems Incorporated) Task: {D7E60DA2-8DEB-440B-8009-76540A82214E} - System32\Tasks\{E6289BEC-5156-458F-8C12-453A596DEA5B} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe" -d "C:\Program Files (x86)\ZHPDiag\ZHPFix" Task: {DDB89F08-C0DB-4B52-924D-5F2D31608BC6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-04] (Google Inc.) Task: {E21857BA-E23E-4D34-B2A0-E0192A3E5692} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-04] (Google Inc.) Task: {F9C6413F-BDDD-4F0B-93AB-3072F0D81BEA} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated) Task: {F9E9EEF7-23E3-4352-81E6-F613D9063BBE} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-01-09] (Piriform Ltd) (Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0e216148a7959.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0f086a60a9f09.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Snelkoppelingen & WMI ======================== (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) Shortcut: C:\Users\Eigenaar\Favorites\NCH Software Download Site.lnk -> hxxp://www.nchsoftware.com/index.htm Shortcut: C:\Users\Eigenaar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Yamb 2.1.0.0 beta 2\Yamb - Website.lnk -> hxxp://yamb.unite-video.com Shortcut: C:\Users\Eigenaar\AppData\Roaming\Microsoft\Windows\Network Shortcuts\Mijn websites bij MSN\target.lnk -> hxxp://www.msnusers.co ==================== Geladen Modules (gefilterd) ============== 2010-07-15 05:44 - 2010-07-15 05:44 - 000020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll 2015-09-26 20:03 - 2015-03-18 14:22 - 000025088 _____ () C:\Program Files\Samsung\Samsung Link\JniSys.dll 2015-09-26 20:03 - 2015-03-18 14:22 - 002633728 _____ () C:\Program Files\Samsung\Samsung Link\scone_proxy.dll 2015-09-26 20:03 - 2015-03-18 14:22 - 002540544 _____ () C:\Program Files\Samsung\Samsung Link\scone_stub.dll 2017-07-30 21:51 - 2017-07-30 21:51 - 000669696 _____ () C:\Windows\temp\sqlite-3.7.151-amd64-sqlitejdbc.dll 2018-01-09 15:21 - 2018-01-09 15:21 - 000089472 _____ () C:\Program Files\CCleaner\lang\lang-1043.dll 2017-07-21 09:30 - 2014-08-19 20:12 - 001356568 _____ () C:\Program Files\Tablet\Pen\libxml2.dll 2017-08-15 07:55 - 2017-06-29 00:43 - 001658312 _____ () C:\Program Files\Tablet\Wacom\libxml2.dll 2018-01-01 21:26 - 2017-12-17 16:21 - 051369400 _____ () K:\MIJN DOCUMENTEN KOPIE D\ALLE SNELKOPPELINGEN\net.downloadhelper.coapp\bin\net.downloadhelper.coapp-win-64.exe 2018-01-01 21:36 - 2016-10-08 17:03 - 001506304 _____ () C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\DAQExp.dll 2018-01-01 21:36 - 2016-07-21 10:54 - 000137728 _____ () C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\CBSCreateVC.dll ==================== Alternate Data Streams (gefilterd) ========= ==================== Veilige Modus (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service" ==================== Bestandskoppeling (gefilterd) =============== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd.) ==================== Internet Explorer vertrouwde/beperkte toegang =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd.) IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\008k.com -> 008k.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\00hq.com -> 00hq.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\0190-dialers.com -> 0190-dialers.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\01i.info -> 01i.info IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\0411dd.com -> 0411dd.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\0511zfhl.com -> 0511zfhl.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\05p.com -> 05p.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\0632qyw.com -> 0632qyw.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\0calories.net -> 0calories.net IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\0cj.net -> 0cj.net IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\0scan.com -> 0scan.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\1-domains-registrations.com -> 1-domains-registrations.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\1-se.com -> 1-se.com IE restricted site: HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\...\1001movie.com -> 1001movie.com Er zijn 6091 Meer websites. ==================== Hosts inhoud: =============================== (Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.) 2009-07-14 03:34 - 2017-08-08 20:38 - 000000855 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Andere gebieden ============================ (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-21-3003377172-2765754124-3774478947-1000\Control Panel\Desktop\\Wallpaper -> DNS Servers: 89.101.251.229 - 89.101.251.228 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == MSCONFIG\Services: AcrSch2Svc => 2 MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: afcdpsrv => 2 MSCONFIG\Services: AllShare Framework DMS => 2 MSCONFIG\Services: FreemakeVideoCapture => 2 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: MBAMService => 2 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: syncagentsrv => 2 MSCONFIG\Services: WPCSvc => 3 MSCONFIG\startupreg: PMBVolumeWatcher => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe MSCONFIG\startupreg: Samsung Link => "C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe" MSCONFIG\startupreg: ToolwizTimeMachine => "C:\Program Files\ToolwizTimeMachine\ToolwizTM.exe" MSCONFIG\startupreg: TrueImageMonitor.exe => "C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe" ==================== Firewall regels (gefilterd) =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [{3E3748D6-0E4C-4FF7-A5B1-F55607E172BA}] => (Allow) C:\Users\Eigenaar\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{A264CC20-4755-4D4A-87C1-2DE0DB5DCC0E}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{CA81F293-61A2-45DC-8C8A-19D1C785E50C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{69CF20C9-BD83-409E-93BA-780CEF40ABD1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{97DA464B-A35F-44D6-8715-0EDBF54373E8}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{6000BC5D-BC80-4494-BCD5-D9FC89416721}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{D94448C6-02A7-4D19-B20D-65E1666316B8}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{2806C118-497B-4F96-85E0-3ED85CB58407}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [TCP Query User{CEEF87B5-0573-488F-A9F1-08118652ED52}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{4F0A2B8C-219A-4B31-B687-95EA5CF6B591}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{03F873F2-4830-4696-AC41-04AAD9EBAA6E}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe FirewallRules: [{0B1AD3F7-92B1-4A7F-A59F-0EAD7BFD1304}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe FirewallRules: [{EC413C98-40C2-4D21-B5F0-CEDC2DEC989D}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe FirewallRules: [{561D1F3B-23EE-4CFC-8CE0-8BDEDC0ACE7F}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe FirewallRules: [{FDB23A56-4681-45F4-A504-164853E58A97}] => (Allow) D:\MIJN DOCUMENTEN\Plex Media Server.exe FirewallRules: [{8B6739D7-F873-4E17-830C-24273B72C0BB}] => (Allow) D:\MIJN DOCUMENTEN\PlexScriptHost.exe FirewallRules: [{CFB845E4-E64C-4C4F-A81F-CCF744796606}] => (Allow) D:\MIJN DOCUMENTEN\PlexDlnaServer.exe FirewallRules: [{382C3217-D52A-4A23-9653-DAE7C815F3F1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{1841C183-0AA2-4FF1-BA3A-A21D20BABF99}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{CD8DAFE8-3DC3-407D-BEC3-BB16E8D2A348}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{E49DFA66-11A1-40BD-9F77-80ECBF22E277}] => (Allow) C:\Program Files (x86)\Popcorn Time\Updater.exe FirewallRules: [{66F5A2FA-3CC3-4416-A182-313145784A86}] => (Allow) C:\Program Files (x86)\Popcorn Time\Updater.exe FirewallRules: [{A813ECD1-BED3-433F-9F9D-6AA77D6747CE}] => (Allow) C:\Program Files\Directory Lister\DirListerPro.exe FirewallRules: [{7E22A2D1-D672-424F-8946-CDA2D1D40EB4}] => (Allow) C:\Program Files\Directory Lister\DirListerPro.exe FirewallRules: [{211CEA36-9C7F-4BC8-A825-C1DC2DF80B12}] => (Allow) C:\Program Files\Directory Lister\DirListerPro.exe FirewallRules: [{90AF2056-6D0A-43A8-B0BC-3B7AD4D3DBC2}] => (Allow) C:\Program Files\Directory Lister\DirListerPro.exe FirewallRules: [{2F4E7CA8-8A0B-4EEC-A3DF-126AF80F7702}] => (Allow) C:\Users\Eigenaar\AppData\Local\Mozilla Firefox\firefox.exe FirewallRules: [{808C5383-751E-430D-9AF4-F01BB45F83DB}] => (Allow) C:\Users\Eigenaar\AppData\Local\Mozilla Firefox\firefox.exe FirewallRules: [{00FB407B-F956-48F5-AE7F-C97D1DFCE810}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Herstelpunten ========================= ==================== Defecte Apparaatbeheer Apparaten ============= ==================== Eventlog fouten: ========================= Applicatiefouten: ================== Error: (01/21/2018 10:20:58 AM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Kan geen registerinformatie van prestatiemeteritems lezen voor WSearchIdxPi, voor exemplaar , vanwege de volgende fout: De bewerking is voltooid. 0x0. Error: (01/21/2018 10:20:15 AM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: De prestatiemeter voor het gegevensverzamelaarobject kan niet worden geïnitialiseerd omdat de items niet zijn geladen of het gedeelde geheugen niet kan worden geopend. Dit is alleen van invloed op de beschikbaarheid van de prestatiemeteritems. Start de computer opnieuw op. Context: toepassing , catalogus SystemIndex Error: (01/21/2018 10:20:15 AM) (Source: Windows Search Service) (EventID: 3006) (User: ) Description: De prestatiemeter voor de gegevensverzamelaarservice kan niet worden geïnitialiseerd omdat de items niet zijn geladen of het gedeelde geheugen niet kan worden geopend. Dit is alleen van invloed op de beschikbaarheid van de prestatiemeteritems. Start de computer opnieuw op. Error: (01/21/2018 10:10:36 AM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Kan geen registerinformatie van prestatiemeteritems lezen voor WSearchIdxPi, voor exemplaar , vanwege de volgende fout: De bewerking is voltooid. 0x0. Error: (01/21/2018 10:10:22 AM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: De prestatiemeter voor het gegevensverzamelaarobject kan niet worden geïnitialiseerd omdat de items niet zijn geladen of het gedeelde geheugen niet kan worden geopend. Dit is alleen van invloed op de beschikbaarheid van de prestatiemeteritems. Start de computer opnieuw op. Context: toepassing , catalogus SystemIndex Error: (01/21/2018 10:10:21 AM) (Source: Windows Search Service) (EventID: 3006) (User: ) Description: De prestatiemeter voor de gegevensverzamelaarservice kan niet worden geïnitialiseerd omdat de items niet zijn geladen of het gedeelde geheugen niet kan worden geopend. Dit is alleen van invloed op de beschikbaarheid van de prestatiemeteritems. Start de computer opnieuw op. Error: (01/21/2018 06:39:24 AM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Kan geen registerinformatie van prestatiemeteritems lezen voor WSearchIdxPi, voor exemplaar , vanwege de volgende fout: De bewerking is voltooid. 0x0. Error: (01/21/2018 06:38:44 AM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: De prestatiemeter voor het gegevensverzamelaarobject kan niet worden geïnitialiseerd omdat de items niet zijn geladen of het gedeelde geheugen niet kan worden geopend. Dit is alleen van invloed op de beschikbaarheid van de prestatiemeteritems. Start de computer opnieuw op. Context: toepassing , catalogus SystemIndex Error: (01/21/2018 06:38:42 AM) (Source: Windows Search Service) (EventID: 3006) (User: ) Description: De prestatiemeter voor de gegevensverzamelaarservice kan niet worden geïnitialiseerd omdat de items niet zijn geladen of het gedeelde geheugen niet kan worden geopend. Dit is alleen van invloed op de beschikbaarheid van de prestatiemeteritems. Start de computer opnieuw op. Error: (01/21/2018 12:35:06 AM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Kan geen registerinformatie van prestatiemeteritems lezen voor WSearchIdxPi, voor exemplaar , vanwege de volgende fout: De bewerking is voltooid. 0x0. Systeemfouten: ============= Error: (01/21/2018 10:21:03 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: De Peer Networking Grouping-service is afhankelijk van de Peer Name Resolution Protocol-service, die vanwege de volgende fout niet kan worden gestart: %%-2140993535 Error: (01/21/2018 10:21:03 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: De Peer Name Resolution Protocol-service is gestopt met de volgende foutcode: %%-2140993535. Error: (01/21/2018 10:21:03 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: De Peer Networking Grouping-service is afhankelijk van de Peer Name Resolution Protocol-service, die vanwege de volgende fout niet kan worden gestart: %%-2140993535 Error: (01/21/2018 10:21:03 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: De Peer Name Resolution Protocol-service is gestopt met de volgende foutcode: %%-2140993535. Error: (01/21/2018 10:21:03 AM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: De wolk Peer Name Resolution Protocol is niet gestart omdat het maken van de standaardidentiteit is mislukt met foutcode: 0x80630801. Error: (01/21/2018 10:21:03 AM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: De wolk Peer Name Resolution Protocol is niet gestart omdat het maken van de standaardidentiteit is mislukt met foutcode: 0x80630801. Error: (01/21/2018 10:21:01 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: De Peer Networking Grouping-service is afhankelijk van de Peer Name Resolution Protocol-service, die vanwege de volgende fout niet kan worden gestart: %%-2140993535 Error: (01/21/2018 10:21:01 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: De Peer Name Resolution Protocol-service is gestopt met de volgende foutcode: %%-2140993535. Error: (01/21/2018 10:21:01 AM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: De wolk Peer Name Resolution Protocol is niet gestart omdat het maken van de standaardidentiteit is mislukt met foutcode: 0x80630801. Error: (01/21/2018 10:20:08 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: De Symantec Eraser Service-service kan vanwege de volgende fout niet worden gestart: Het systeem kan het opgegeven bestand niet vinden. CodeIntegrity: =================================== Date: 2017-12-30 09:30:48.177 Description: De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\RtkAPO64.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem. Date: 2017-12-30 09:30:48.114 Description: De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\RtkAPO64.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem. Date: 2017-12-30 08:34:48.318 Description: De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\RtkAPO64.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem. Date: 2017-12-30 08:34:48.256 Description: De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\RtkAPO64.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem. Date: 2017-12-30 08:32:27.957 Description: De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\RtkAPO64.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem. Date: 2017-12-30 08:32:27.879 Description: De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\RtkAPO64.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem. Date: 2017-12-30 08:31:53.917 Description: De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\RtkAPO64.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem. Date: 2017-12-30 08:31:53.823 Description: De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\RtkAPO64.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem. Date: 2017-12-30 07:24:39.351 Description: De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\RtkAPO64.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem. Date: 2017-12-30 07:24:39.304 Description: De integriteit van de kopie voor het bestand \Device\HarddiskVolume2\Windows\System32\RtkAPO64.dll kan niet worden geverifieerd omdat de reeks kopie-hashes per pagina niet is gevonden op het systeem. ==================== Geheugen info =========================== Processor: Intel(R) Core(TM) i7-2600 CPU @ 3.40GHz Percentage geheugen in gebruik: 48% Totaal fysiek RAM-geheugen: 6120.18 MB Beschikbaar fysiek RAM-geheugen: 3160.18 MB Totaal Virtueel geheugen: 12238.54 MB Beschikbaar Virtual geheugen: 8979.02 MB ==================== Schijven ================================ Drive c: () (Fixed) (Total:127.73 GB) (Free:58.18 GB) NTFS Drive d: () (Fixed) (Total:1648.8 GB) (Free:320.33 GB) NTFS Drive j: (INTENSO 2TB) (Fixed) (Total:1863.01 GB) (Free:0.01 GB) NTFS Drive k: (INTENSO 3TB ) (Fixed) (Total:2794.51 GB) (Free:586.52 GB) NTFS ==================== MBR & Partitietabel ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 5BC53D8B) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=127.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=1648.8 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=86.4 GB) - (Type=OF Extended) ======================================================== Disk: 2 (Size: 1863 GB) (Disk ID: 3CA6BCA5) Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS) Attempted reading MBR returned 0 bytes. Could not read MBR for disk 3. ==================== Eind van Addition.txt ============================