Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 27.01.2018 Gestart door Marijke (29-01-2018 10:39:07) Gestart vanaf C:\Users\Marijke\Downloads Windows 10 Home Versie 1709 16299.125 (X64) (2018-01-27 22:38:41) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-4175743367-177076972-2086899918-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-4175743367-177076972-2086899918-503 - Limited - Disabled) defaultuser0 (S-1-5-21-4175743367-177076972-2086899918-1000 - Limited - Disabled) => C:\Users\defaultuser0 Gast (S-1-5-21-4175743367-177076972-2086899918-501 - Limited - Disabled) Marijke (S-1-5-21-4175743367-177076972-2086899918-1001 - Administrator - Enabled) => C:\Users\Marijke WDAGUtilityAccount (S-1-5-21-4175743367-177076972-2086899918-504 - Limited - Disabled) ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: BullGuard Antivirus (Enabled - Up to date) {13E9CAA5-762A-794E-2DA9-245D5622A105} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: BullGuard Antispyware (Enabled - Up to date) {A8882B41-5010-76C0-1719-1F2F2DA5EBB8} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: BullGuard Firewall (Enabled) {2BD24B80-3C45-7816-06F6-8D68A8F1E67E} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag zou kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeinstallerd worden.) . . (HKLM\...\{569F29BA-2D46-439B-8B7C-01D999B9201D}) (Version: 7.1 - Intel) Hidden . . . (HKLM-x32\...\{9F460796-0348-4B11-BCA0-714C4B85E3D7}) (Version: 3.1.2.2 - Intel) Hidden Adobe Acrobat Reader DC - Nederlands (HKLM-x32\...\{AC76BA86-7AD7-1043-7B44-AC0F074E4100}) (Version: 18.009.20050 - Adobe Systems Incorporated) Alt1 Toolkit (HKU\S-1-5-21-4175743367-177076972-2086899918-1001\...\Alt1Toolkit) (Version: 1.4.5 - RuneApps) Backup and Sync from Google (HKLM-x32\...\{908DB568-E5FA-40C7-A2AA-AB340190858B}) (Version: 3.38.7642.3857 - Google, Inc.) Belgium e-ID middleware 4.2.8 (build 3252) (HKLM\...\{DB942AEA-93D6-4FE4-8862-180D35A73252}) (Version: 4.2.3252 - Belgian Government) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Build-a-lot (HKLM-x32\...\WTA-248f3119-93fa-4898-abb9-7999e6292e4a) (Version: 3.0.2.59 - WildTangent) Hidden BullGuard Internet Security (HKLM\...\BullGuard) (Version: 18.0 - BullGuard Ltd.) CCleaner (HKLM\...\CCleaner) (Version: 5.30 - Piriform) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.) Crazy Chicken Soccer (HKLM-x32\...\WTA-1f47c2a0-d9f8-4d41-bf43-2430f964e4be) (Version: 2.2.0.110 - WildTangent) Hidden CyberLink Power Media Player 14 (HKLM-x32\...\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}) (Version: 14.0.6.7428 - CyberLink Corp.) CyberLink PowerDirector 14 (HKLM-x32\...\{6BADCD73-E925-46F7-A295-FF2448632728}) (Version: 14.0.2.3309 - CyberLink Corp.) Discord (HKU\S-1-5-21-4175743367-177076972-2086899918-1001\...\Discord) (Version: 0.0.300 - Discord Inc.) Dropbox 25 GB (HKLM-x32\...\{0867A88D-764F-366E-9E21-130DA8B472C3}) (Version: 3.1.18.0 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.59.1 - Dropbox, Inc.) Hidden Energy Star (HKLM\...\{5CB22648-35F8-41BC-9C35-1E41FE6E12A5}) (Version: 1.1.1 - HP Inc.) FreeLAN 2.0.0 (HKLM\...\{3AE669E7-36C2-48DF-985B-6037F9AF69A8}_is1) (Version: 2.0.0 - Julien Kauffmann) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.) Google Chrome Bèta (HKLM-x32\...\Google Chrome Beta) (Version: 64.0.3282.119 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Hextech Repair Tool (HKLM-x32\...\{7F9A97E6-E666-11E5-B582-B88687E82322}) (Version: 1.1.80 - Riot Games, Inc.) HP Audio Switch (HKLM-x32\...\{0C5D69BD-B518-46DB-8471-506CD27F9478}) (Version: 1.0.138.0 - HP Inc.) HP DeskJet 3630 series Basissoftware van het apparaat (HKLM\...\{D47F5B14-6D68-4656-8F44-C3F44A485A23}) (Version: 40.11.1107.1739 - HP Inc.) HP DeskJet 3630 series Help (HKLM-x32\...\{084F0EAA-EB34-4CC3-9CED-B7FF666AF300}) (Version: 35.0.0 - Hewlett Packard) HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.) HP Dropbox Plugin (HKLM-x32\...\{2E5A25A3-C329-40FB-9A09-E2C75B746935}) (Version: 36.0.41.58587 - HP) HP ePrint SW (HKLM-x32\...\{5b1a1d22-bd59-44e0-a954-e2f18ec43a23}) (Version: 5.2.20454 - HP Inc.) HP Google Drive Plugin (HKLM-x32\...\{CF37027C-AA2E-46B8-B741-6205E001C4F4}) (Version: 36.0.41.58587 - HP) HP JumpStart Bridge (HKLM-x32\...\{EB0912FF-C311-4E0F-A6B1-420FDD3C295E}) (Version: 1.3.0.407 - HP Inc.) HP JumpStart Launch (HKLM-x32\...\{B90CB0DE-2E60-41C4-9857-466EB98192BF}) (Version: 1.1.158.0 - HP Inc.) HP OfficeJet 4650 series Basissoftware van het apparaat (HKLM\...\{D94D89DE-3943-4745-95B7-61D12BCB2F2C}) (Version: 40.11.1122.1796 - HP Inc.) HP OfficeJet 4650 series Help (HKLM-x32\...\{39A98F5E-A206-49F4-A03B-6145F07375DE}) (Version: 36.0.0 - Hewlett Packard) HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.8357.5639 - HP Inc.) HP Support Assistant (HKLM-x32\...\{6FA09B91-5D97-45A9-95E9-50F635C98043}) (Version: 8.5.37.19 - HP Inc.) HP Support Solutions Framework (HKLM-x32\...\{325A005F-D9DB-42DD-A154-C2CC592AF472}) (Version: 12.8.47.1 - HP Inc.) HP Sure Connect (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 1.0.0.29 - HP Inc.) HP System Event Utility (HKLM-x32\...\{ABE95EB9-5EA1-42A3-8009-BA7602127ED6}) (Version: 1.4.25 - HP Inc.) HP Touchpoint Analytics Client (HKLM\...\{E5FB98E0-0784-44F0-8CEC-95CD4690C43F}) (Version: 4.0.2.1439 - HP Inc.) HP Wireless Button Driver (HKLM-x32\...\{F5852AA8-30EA-495B-84B4-C2403C935D6F}) (Version: 1.1.19.1 - HP) HTC Driver Installer (HKLM-x32\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.17.0.001 - Uw bedrijfsnaam) HTC Sync Manager (HKLM-x32\...\{231D0C79-98A6-4693-A366-36DE7D7346EC}) (Version: 3.1.88.2 - HTC) I.R.I.S. OCR (HKLM-x32\...\{4A843560-44FA-4D79-9F11-BE95B588990F}) (Version: 12.3.7.0 - HP) Intel(R) Computing Improvement Program (HKLM\...\{699E6891-25C3-443A-9B8E-80C74F0172C8}) (Version: 2.1.03413 - Intel Corporation) Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.2.11003.3588 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1043 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 22.20.16.4815 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.2.12.1048 - Intel Corporation) Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.47.715.0 - Intel Corporation) Hidden Intel(R) Trusted Connect Services Client (HKLM-x32\...\{2b32b7d0-4f9f-47c8-adb7-807e6cb2fb75}) (Version: 1.47.715.0 - Intel Corporation) Hidden Intel® Driver & Support Assistant (HKLM-x32\...\{e7adbf16-34ad-490a-a4e8-feb60fb99973}) (Version: 3.1.2.2 - Intel) IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.9 - HTC) Java 8 Update 161 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180161F0}) (Version: 8.0.1610.12 - Oracle Corporation) League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc) Magic Heroes: Save Our Park (HKLM-x32\...\WTA-90706bd2-b7bd-4015-9471-9c7f346fbc8f) (Version: 3.0.2.59 - WildTangent) Hidden Malwarebytes versie 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes) Microsoft Office 365 ProPlus - nl-nl (HKLM\...\O365ProPlusRetail - nl-nl) (Version: 16.0.8827.2148 - Microsoft Corporation) Microsoft Office Famille et Étudiant 2016 - fr-fr (HKLM\...\HomeStudentRetail - fr-fr) (Version: 16.0.8827.2148 - Microsoft Corporation) Microsoft Office Home and Student 2016 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 16.0.8827.2148 - Microsoft Corporation) Microsoft Office Home and Student 2016 - en-us (HKLM\...\HomeStudentRetail - en-us) (Version: 16.0.8827.2148 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-4175743367-177076972-2086899918-1001\...\OneDriveSetup.exe) (Version: 17.3.7131.1115 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 24.0 - Mozilla) Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.5.1 - Notepad++ Team) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.8827.2148 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.8827.2148 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.8827.2148 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0407-0000-0000000FF1CE}) (Version: 16.0.8827.2148 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.8827.2148 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.8827.2148 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0413-0000-0000000FF1CE}) (Version: 16.0.8827.2148 - Microsoft Corporation) Hidden OpenVPN 2.3.12-I602 (HKLM-x32\...\OpenVPN) (Version: 2.3.12-I602 - ) Polar Bowler 1st Frame (HKLM-x32\...\WTA-60f36a1c-8d74-40ba-b6ad-65b77ff59b18) (Version: 3.0.2.59 - WildTangent) Hidden Popcorn-Time (HKU\S-1-5-21-4175743367-177076972-2086899918-1001\...\Popcorn-Time) (Version: 0.3.10 - Popcorn Time) Productverbeteringsonderzoek voor HP DeskJet 3630 series (HKLM\...\{934415F4-E7BF-406A-9ADF-9EA91979AB2F}) (Version: 40.11.1107.1739 - HP Inc.) Productverbeteringsonderzoek voor HP OfficeJet 4650 series (HKLM\...\{12F91AD5-7233-4466-A4DA-433DF107929E}) (Version: 40.11.1122.1796 - HP Inc.) Ranch Rush 2 - Premium Edition (HKLM-x32\...\WTA-c23f6f03-6f95-4053-bcaa-8d0cb48e3651) (Version: 2.2.0.97 - WildTangent) Hidden REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 1.0.0.57 - REALTEK Semiconductor Corp.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.31228 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.16.323.2017 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8233 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.0.0.104 - REALTEK Semiconductor Corp.) Runefall (HKLM-x32\...\WTA-900c0526-da1f-40fe-bf39-ce01a859d921) (Version: 3.0.2.126 - WildTangent) Hidden RuneScape Launcher 2.2.4 (HKLM\...\RuneScape Launcher_is1) (Version: 2.2.4 - Jagex Ltd) Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.104 - Skype Technologies S.A.) Software voor Intel® Chipset-apparaten (HKLM-x32\...\{314d4c01-f54b-4125-a71f-1e2722c29050}) (Version: 10.1.1.40 - Intel(R) Corporation) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.31.31 - Synaptics Incorporated) Taalpakket voor Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - NLD (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - NLD) (Version: 10.0.50903 - Microsoft Corporation) TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - ) Trinklit Supreme (HKLM-x32\...\WTA-567a8580-4e69-42f6-b880-e31dd3723489) (Version: 2.2.0.98 - WildTangent) Hidden Update Installer for WildTangent Games App (HKLM-x32\...\{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App) (Version: - WildTangent) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) Vulkan Run Time Libraries 1.0.42.0 (HKLM\...\VulkanRT1.0.42.0) (Version: 1.0.42.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1-2) (Version: 1.0.54.1 - LunarG, Inc.) Hidden WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.1.0.28 - WildTangent) WildTangent Games App for HP (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp) (Version: 4.1.1.14 - WildTangent) Hidden Windows 10-upgradeassistent (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17387 - Microsoft Corporation) WinRAR 5.50 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) YTD Video Downloader 5.8.6 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 5.8.6 - GreenTree Applications SRL) <==== AANDACHT ==================== Aangepaste CLSID (gefilterd): ========================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-20] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-20] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-20] (Google) ShellIconOverlayIdentifiers: [BackupOverlayErr] -> {8749448C-D907-45BF-A842-4D3898894AC8} => C:\Program Files\BullGuard Ltd\BullGuard\BackupShellHook.dll [2018-01-23] (BullGuard Ltd.) ShellIconOverlayIdentifiers: [BackupOverlayInProgress] -> {3FFBF330-7839-476B-BE14-2C8597CE11B6} => C:\Program Files\BullGuard Ltd\BullGuard\BackupShellHook.dll [2018-01-23] (BullGuard Ltd.) ShellIconOverlayIdentifiers: [BackupOverlaySynced] -> {C62CF4DB-48CB-4B03-BFD0-30A29125FA49} => C:\Program Files\BullGuard Ltd\BullGuard\BackupShellHook.dll [2018-01-23] (BullGuard Ltd.) ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2017-05-18] () ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-11-20] (Google) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-11-20] (Google) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\ki124757.inf_amd64_b607c305e0c4e0a1\igfxDTCM.dll [2017-10-12] (Intel Corporation) ContextMenuHandlers6: [bgshellext] -> {F4BF1657-195F-4A0F-ACA2-9AE99D65BC0E} => C:\Program Files\BullGuard Ltd\BullGuard\BgShellExt.dll [2018-01-23] (BullGuard Ltd.) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal) ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {05800F38-BB3E-4EFF-8248-1B594846E445} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-01-21] (Microsoft Corporation) Task: {07EDE9A9-B7D2-4448-8D31-E6FD1C95E983} - System32\Tasks\HPJumpStartProvider => C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartProvider.exe Task: {0B6FF267-D6E7-434A-9A12-396DEC43037B} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs] Task: {0C3EAB54-4E85-4EC9-AC67-A54256270075} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2017-11-08] (HP Inc.) Task: {1A96B71E-2BD5-4E65-AE93-8274F81837D5} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2017-09-21] (Intel(R) Corporation) Task: {396FC3E0-68B7-459F-8F71-ABE80935D194} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-01-15] (Microsoft Corporation) Task: {3C9A5C84-9E5C-4586-80D0-D7C8BA572049} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [2016-10-04] (HP Inc.) Task: {483CF74B-AB50-4EA9-9FCD-8C6E83B9AECD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant printer driver installation => C:\WINDOWS\TEMP\sp81514.exe <==== AANDACHT Task: {593340AF-8F5A-4795-B751-87815B17CA87} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-01-21] (Microsoft Corporation) Task: {5DCA1F5C-E45C-45C5-A675-D04125FD1D87} - System32\Tasks\HPCustParticipation HP OfficeJet 4650 series => C:\Program Files\HP\HP OfficeJet 4650 series\Bin\HPCustPartic.exe [2017-04-06] (HP Inc.) Task: {5E22B4F0-DA63-4DE9-AECC-3CAE4DB01714} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-01-21] (Microsoft Corporation) Task: {62DD1404-E2D1-4924-BCF6-137965CD371C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.) Task: {704B56A8-2D02-46FA-AB3C-24C17A827439} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2018-01-10] (HP Inc.) Task: {72EFD515-0168-491F-89F0-7DA5568A191A} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2017-11-19] () Task: {730D99E7-318D-4D96-AEFA-ABB96F90CAA0} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2018-01-21] (Microsoft Corporation) Task: {785F76CF-1178-47BD-BA1B-DCDBBC7F3949} - System32\Tasks\S-1-5-21-4175743367-177076972-2086899918-1001\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe [2017-09-29] (Microsoft Corporation) Task: {7B599F8A-FF85-4520-9220-7278AA99CF0B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-09] (Google Inc.) Task: {960E5012-E4EE-4C62-8CA5-1B89AF67C03A} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe Task: {9670CD25-2242-4540-839D-F29AD1C6D82D} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-05-23] (Dropbox, Inc.) Task: {9D205738-9C1B-4C5F-ADA9-C1FC7B291289} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-09-27] (Adobe Systems Incorporated) Task: {9E502FFA-740B-44BC-9C38-340F295C1155} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.) Task: {A7A4AC14-4F26-4EBA-9F3F-D487C7AE9E97} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-01-21] (Microsoft Corporation) Task: {B2AE901C-0323-4F2B-B2EC-C4B9A8396DE5} - System32\Tasks\HPCustParticipation HP DeskJet 3630 series => C:\Program Files\HP\HP DeskJet 3630 series\Bin\HPCustPartic.exe [2017-02-08] (HP Inc.) Task: {B742963D-124C-4498-9050-5CBF1CE98512} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-09] (Google Inc.) Task: {BD1079EF-754E-4000-89FC-AFC2874B9F7E} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-01-15] (Microsoft Corporation) Task: {BEA43E63-5826-4471-9C4B-9B02E3CD4475} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {C1685466-048C-424E-8DC1-C58C2FD3FB19} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-05-19] (Piriform Ltd) Task: {D2F7450C-CB6C-4BD9-9A4E-B1213A2471E6} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs" Task: {D4D04E87-AC95-465F-BE04-3E3F78D8F617} - System32\Tasks\{7F7325E4-9AAC-4268-96CB-30C310C74DED} => "c:\program files (x86)\google\chrome beta\application\chrome.exe" hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=7.23.0.105&LastError=404 Task: {D5FB7251-3B23-438F-BCBC-F5357E97E256} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {D88573E6-1255-49F3-99AB-74C70AB59A99} - System32\Tasks\BullGuard\BullGuardUpdate2 => C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate2.exe [2018-01-23] (BullGuard Ltd.) Task: {D8B42D5B-95A6-4913-B486-B7821A4A2866} - System32\Tasks\DropboxOEM => C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [2016-09-21] () Task: {DD7DEC8A-0025-4B82-B0E7-6343E9A32045} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-06-22] (HP Inc.) Task: {F177718C-73DE-4298-AFDF-BA920D183978} - System32\Tasks\HPCeeScheduleForMarijke => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-05-12] (HP Development Company, L.P.) Task: {F68A751B-9667-4B9F-AE66-EFBA38C11C13} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe Task: {FB9EB069-E146-43F8-8AEB-CA9287A27382} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-05-23] (Dropbox, Inc.) (Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForMarijke.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Snelkoppelingen & WMI ======================== (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - AFKWARDEN.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/alt1/afkscape/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - CLUE SOLVER.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/clue/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\Alt1 - ColorGrabber.lnk -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/alt1/colorgrabber/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\Alt1 - D&D Notifications.lnk -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/notifications/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - DGKEY.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/alt1/dgkey/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - DROPLOGGER.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/droplogger/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - FARMING TIMER.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/farmtimer/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - FISH FLINGERS.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/alt1/fishflingers/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - MEG ANSWERS.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/alt1/meg/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - NOTEPAD.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/alt1/notepad/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - RS WIKI.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/alt1/object/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - STATS.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/alt1/stats/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - STOPWATCH.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/alt1/timer/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - TWITCH.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/alt1/twitch/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - WORLD MAP.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/map/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - XPMETER.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/alt1/xpmeter/appconfig.json ShortcutWithArgument: C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps\ALT1 - YOUTUBE.LNK -> C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (RuneApps) -> protocolurl=alt1://openapp/hxxp://runeapps.org/apps/alt1/youtube/appconfig.json ==================== Geladen Modules (gefilterd) ============== 2018-01-23 16:37 - 2018-01-23 16:36 - 000064952 _____ () C:\Program Files\BullGuard Ltd\BullGuard\LIBBZ2.dll 2018-01-23 16:37 - 2018-01-23 16:36 - 000084408 _____ () C:\Program Files\BullGuard Ltd\BullGuard\zlib1.dll 2018-01-23 16:37 - 2018-01-23 16:36 - 000645048 _____ () C:\Program Files\BullGuard Ltd\BullGuard\LibXml2.dll 2013-10-17 14:27 - 2013-10-17 14:27 - 000166912 _____ () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe 2018-01-23 16:37 - 2018-01-23 16:36 - 000727480 _____ () c:\program files\bullguard ltd\bullguard\SQLite.dll 2017-12-08 20:01 - 2017-11-29 09:11 - 002301384 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2017-09-29 14:41 - 2017-09-29 14:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-12-14 05:55 - 2017-12-14 05:55 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-12-14 05:55 - 2017-12-14 05:55 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-05-19 19:17 - 2017-05-19 19:17 - 000073728 _____ () C:\Program Files\CCleaner\lang\lang-1043.dll 2018-01-24 19:53 - 2018-01-24 08:48 - 004433752 _____ () C:\Program Files (x86)\Google\Chrome Beta\Application\64.0.3282.119\libglesv2.dll 2018-01-24 19:53 - 2018-01-24 08:48 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome Beta\Application\64.0.3282.119\libegl.dll 2017-08-23 12:50 - 2017-08-23 12:50 - 000030720 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\DbAccess.dll 2017-10-26 13:34 - 2017-10-26 13:34 - 000607016 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\sqlite3.dll 2017-08-23 12:51 - 2017-08-23 12:51 - 000059392 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\NAdvLog.dll 2017-08-23 12:51 - 2017-08-23 12:51 - 000035864 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\NFileCacheDBAccess.dll 2017-08-23 12:51 - 2017-08-23 12:51 - 000079888 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\ninstallerhelper.dll 2017-08-23 12:52 - 2017-08-23 12:52 - 000129016 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\zlib1.dll 2017-08-23 12:55 - 2017-08-23 12:55 - 000223240 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\DevConnMon.dll 2017-07-12 09:20 - 2017-07-12 09:20 - 001174016 _____ () C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\CefSharp.Core.dll 2017-07-12 09:20 - 2017-07-12 09:20 - 052036096 _____ () C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\libcef.dll 2017-07-12 09:20 - 2017-07-12 09:20 - 000796672 _____ () C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\CefSharp.BrowserSubprocess.Core.dll 2017-07-12 09:20 - 2017-07-12 09:20 - 001734656 _____ () C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\libglesv2.dll 2017-07-12 09:20 - 2017-07-12 09:20 - 000080384 _____ () C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\libegl.dll ==================== Alternate Data Streams (gefilterd) ========= (Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.) ==================== Veilige Modus (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.) ==================== Bestandskoppeling (gefilterd) =============== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd.) ==================== Internet Explorer vertrouwde/beperkte toegang =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd.) IE restricted site: HKU\S-1-5-21-4175743367-177076972-2086899918-1001\...\skype.com -> hxxps://apps.skype.com ==================== Hosts inhoud: =============================== (Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.) 2016-07-16 12:47 - 2018-01-27 19:41 - 000000822 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere gebieden ============================ (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-21-4175743367-177076972-2086899918-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == ==================== Firewall regels (gefilterd) =============== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [{272C4BE9-7B3D-4383-A48A-FE4BD03E6BB5}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{866C87E4-25A4-4F72-B606-E0B4A0CF86E7}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{DA452792-E5F8-450C-828B-BEE956DA472F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{4E1D5E23-4B60-456C-A53B-DB05EE8E6262}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{1A6E72FA-98A8-4838-8FD8-8D71D532D768}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{90463300-3F57-4CFA-8E46-35D6AFE6A531}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7F2941FF-4EED-4686-B503-B971714C09D7}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{39B93EC0-498A-468D-8DDF-B52B71DD078E}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{599A9CEE-C3F2-417F-97A1-1F1EEBB3D6AC}] => (Allow) C:\Users\Marijke\AppData\Roaming\Faceless LLC\Faceless Internet Connection\FacelessInternetConnection.exe FirewallRules: [{F1FFB6C1-2783-4859-9A44-E89414C2F1CF}] => (Allow) C:\Users\Marijke\AppData\Roaming\Faceless LLC\Faceless Internet Connection\FacelessInternetConnection.exe FirewallRules: [{5C6A0C7F-74EB-4C3B-B433-52B46708A1AA}] => (Allow) C:\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe FirewallRules: [{570EBDB5-FD04-4908-902B-8C7DA97B508B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{3B5C8E9B-B475-4B6E-97FC-7EAE7A2F261C}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{0618931C-1C67-4900-B818-A1CFE82ACF42}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7D52AAC7-5AFA-4392-80C3-AF209742B643}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{59CAF05D-08D1-41F6-8AC2-8F788FEC5929}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E4332884-3246-4179-9135-6B830B1AF8BB}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{ABE26945-AAAE-46F4-AC3D-CFE91BDD28B6}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{9259D473-AB94-4354-B630-F07D63EF7FFA}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{87C5BA50-E57F-419D-89F0-C124695EFFCC}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{BD58C227-E51C-42FD-8B63-E92645873292}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E4BE0605-50BA-43C3-BF1C-5237B999CA4F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{39BBA647-DECB-41AC-AA41-263A5CBB8F2F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{CFD617FA-BD12-40F3-A0CC-9472CF537B6D}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D8AA6F5F-09A2-4F85-94BA-267C30FD30E7}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E635354F-15B8-450B-8E46-2558969DCC41}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{2F354BFE-B97D-4E61-97B5-79A20BF253F3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D505BA66-E73E-4600-BCCE-9F80671FE76B}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe FirewallRules: [{96AB6EC3-2E9B-41FF-9328-1548537D678C}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe FirewallRules: [{08B1CB77-2E3B-4B15-A916-E7244859B2DF}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe FirewallRules: [{B25A4B58-7513-4584-A2C2-4461D6F37E3D}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe FirewallRules: [{62D6D6A3-F0C2-480A-894A-B6CB7C8A84DE}] => (Allow) C:\Program Files (x86)\HTC\HTC Sync Manager\HTCSyncManager.exe FirewallRules: [{675F51CB-93DD-48DF-8EE8-972F2CAB64E9}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe FirewallRules: [{24A6D857-7B0C-4129-BB2A-E1644FA4DB8F}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe FirewallRules: [{DD95D6A5-617A-47DC-A523-A5B801C62355}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe FirewallRules: [{20C62F90-184F-4A4B-BC82-0001431C7AE9}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe FirewallRules: [{E5C72E09-65FD-449E-A0F9-47583B80366E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{D5C9B533-FFF1-46CF-ABD2-F883027643C0}] => (Allow) C:\Program Files\HP\HP DeskJet 3630 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{CAC6AE2F-AD10-407B-B06B-93F0A0A5E1C1}] => (Allow) C:\Program Files\HP\HP DeskJet 3630 series\Bin\DeviceSetup.exe FirewallRules: [{8F404A93-77B0-4E94-A14E-6798DA601DEB}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{96D44064-7446-45C3-8D78-AFE923CB7D0F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{68AA0FD1-82D7-4184-BD08-683186000FDA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{800FD9EA-CA4A-41C6-A5A5-30FE4510BCAA}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{C3180C1B-EDFE-4FDA-82AF-F4F8A018460A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{E09EC1B5-C624-4106-881B-42CC879EA058}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD.exe FirewallRules: [{61AD3E75-6B5A-44B0-9062-20DEC1E48894}] => (Allow) LPort=5357 FirewallRules: [TCP Query User{EA353C02-1465-4EFE-819D-BB0311739FE3}C:\users\marijke\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\marijke\appdata\local\popcorn-time\popcorn-time.exe FirewallRules: [UDP Query User{07338E55-218C-4B61-8115-C513EFF02EBC}C:\users\marijke\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\marijke\appdata\local\popcorn-time\popcorn-time.exe FirewallRules: [{F274280B-F004-47BC-A47B-74E8BBC0B9F1}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{5A5E4D0C-09F7-4D06-913E-757B82318A11}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{8958FFF2-95DF-49CC-88F1-D7EF2B21127E}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{A2BA673A-7F85-4A3D-8373-1864AC6B3667}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{DB221B01-E9EF-4FBD-8F32-8C0169184B4A}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{475F9C59-CA6D-43A1-A29A-163AE3B02488}] => (Allow) C:\Program Files\HP\HP OfficeJet 4650 series\bin\FaxPrinterUtility.exe FirewallRules: [{8C363EE3-D094-4354-A159-0646072FA79F}] => (Allow) C:\Program Files\HP\HP OfficeJet 4650 series\bin\FaxApplications.exe FirewallRules: [{03733CCD-A863-49C1-AABF-D3211B675F9C}] => (Allow) C:\Program Files\HP\HP OfficeJet 4650 series\bin\DigitalWizards.exe FirewallRules: [{0D2F8A14-30FC-4C8A-8D4E-C025D3C862EA}] => (Allow) C:\Program Files\HP\HP OfficeJet 4650 series\bin\SendAFax.exe FirewallRules: [{6044EFC0-F3FC-42F2-B854-F78C38181F56}] => (Allow) C:\Program Files\HP\HP OfficeJet 4650 series\Bin\DeviceSetup.exe FirewallRules: [{325508C6-6A22-4E67-8BEC-70FDD5A99958}] => (Allow) C:\Program Files\HP\HP OfficeJet 4650 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{A89F3742-23B9-4F28-A65A-07071AD63D2D}] => (Allow) C:\Program Files (x86)\HTC\HTC Sync Manager\HTCSyncManager.exe FirewallRules: [TCP Query User{DC67CA25-05C8-42F4-B4D4-D3E369190400}C:\users\marijke\appdata\local\popcorn-time\popcorn-time.exe] => (Block) C:\users\marijke\appdata\local\popcorn-time\popcorn-time.exe FirewallRules: [UDP Query User{EA2B011A-FBF6-4A3E-945F-DD3B6444BF42}C:\users\marijke\appdata\local\popcorn-time\popcorn-time.exe] => (Block) C:\users\marijke\appdata\local\popcorn-time\popcorn-time.exe FirewallRules: [{76C83686-7207-43CF-8A42-0CE35DFD5762}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe FirewallRules: [{D41D8DC7-37E3-4C27-A7E2-91A43710390C}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe ==================== Herstelpunten ========================= 28-01-2018 18:44:55 Windows Update ==================== Defecte Apparaatbeheer Apparaten ============= ==================== Eventlog fouten: ========================= Applicatiefouten: ================== Error: (01/29/2018 10:26:15 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 39587360 Error: (01/29/2018 10:26:15 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 39587360 Error: (01/29/2018 10:26:15 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/28/2018 11:28:33 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 125032 Error: (01/28/2018 11:28:33 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 125032 Error: (01/28/2018 11:28:33 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/28/2018 11:28:17 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 109407 Error: (01/28/2018 11:28:17 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 109407 Error: (01/28/2018 11:28:17 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/28/2018 11:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 93782 Systeemfouten: ============= Error: (01/29/2018 10:31:45 AM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-4FJD2SGS) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker LAPTOP-4FJD2SGS\Marijke SID (S-1-5-21-4175743367-177076972-2086899918-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (01/29/2018 10:29:17 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (01/29/2018 10:26:52 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80073712: 2018-01 Cumulatieve update voor op Windows 10 Version 1709 for x64 gebaseerde systemen (KB4056892). Error: (01/28/2018 11:23:49 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-4FJD2SGS) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker LAPTOP-4FJD2SGS\Marijke SID (S-1-5-21-4175743367-177076972-2086899918-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (01/28/2018 10:41:58 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-4FJD2SGS) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker LAPTOP-4FJD2SGS\Marijke SID (S-1-5-21-4175743367-177076972-2086899918-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (01/28/2018 10:24:54 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80073712: 2018-01 Cumulatieve update voor op Windows 10 Version 1709 for x64 gebaseerde systemen (KB4056892). Error: (01/28/2018 10:12:24 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-4FJD2SGS) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker LAPTOP-4FJD2SGS\Marijke SID (S-1-5-21-4175743367-177076972-2086899918-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (01/28/2018 09:43:17 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80073712: 2018-01 Cumulatieve update voor op Windows 10 Version 1709 for x64 gebaseerde systemen (KB4056892). Error: (01/28/2018 09:36:05 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (01/28/2018 09:24:46 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: De Delivery Optimization-service is bij het starten vastgelopen. CodeIntegrity: =================================== Date: 2018-01-29 10:31:59.958 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-29 10:31:59.951 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-29 10:31:58.401 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-29 10:31:58.397 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-29 10:31:28.953 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-29 10:31:28.950 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-29 10:31:26.560 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-29 10:31:26.557 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-29 10:29:28.716 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-29 10:29:28.710 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. ==================== Geheugen info =========================== Processor: Intel(R) Core(TM) i3-6006U CPU @ 2.00GHz Percentage geheugen in gebruik: 58% Totaal fysiek RAM-geheugen: 6034.91 MB Beschikbaar fysiek RAM-geheugen: 2515.88 MB Totaal Virtueel geheugen: 7698.91 MB Beschikbaar Virtual geheugen: 3629.18 MB ==================== Schijven ================================ Drive c: (Windows) (Fixed) (Total:914.99 GB) (Free:829.05 GB) NTFS Drive d: (RECOVERY) (Fixed) (Total:15.29 GB) (Free:1.82 GB) NTFS ==>[systeem met boot componenten (verkregen van schijf)] ==================== MBR & Partitietabel ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 1A31702E) Partition: GPT. ==================== Eind van Addition.txt ============================