Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 14.03.2018 Gestart door Aniek (01-04-2018 11:17:06) Gestart vanaf C:\Users\lady_\Downloads Windows 10 Home Versie 1709 16299.309 (X64) (2018-03-18 15:30:46) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1931134060-2763814536-37410116-500 - Administrator - Disabled) Aniek (S-1-5-21-1931134060-2763814536-37410116-1001 - Administrator - Enabled) => C:\Users\lady_ DefaultAccount (S-1-5-21-1931134060-2763814536-37410116-503 - Limited - Disabled) Gast (S-1-5-21-1931134060-2763814536-37410116-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-1931134060-2763814536-37410116-504 - Limited - Disabled) ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeïnstalleerd worden.) adobe (HKLM\...\{CB1807B2-D1EF-473F-BA95-8641F057B855}) (Version: 1.0.0000 - Adobe Systems Incorporated) Hidden Apple Application Support (32-bit) (HKLM-x32\...\{D4C80B0C-CF67-43A7-90C3-466853543B54}) (Version: 6.3 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{B2A2E8AF-BC48-4191-B2C4-3846A19835CA}) (Version: 6.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{AA7D90D2-2387-4FA5-A3AF-96811BE49BFD}) (Version: 11.0.5.14 - Apple Inc.) Apple Software Update (HKLM-x32\...\{19589375-5C58-4AFA-842F-8B34744CCEAD}) (Version: 2.5.0.1 - Apple Inc.) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 18.2.2328 - AVAST Software) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.41 - Piriform) Dokan Driver (x64) (HKLM\...\{C550A790-4D58-4918-824A-192461614F6B}) (Version: 1.1.0.2 - HTC Corp.) Hidden Gyazo 3.3.5 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Nota Inc.) HTC Account (HKLM\...\{D5CD92A7-8ECC-46C9-A478-421F79ECA36F}) (Version: 1.5.1.5 - HTC Corp.) Hidden Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation) iTunes (HKLM\...\{A5FA22F3-4BA1-4F07-8FD4-DA8E17D020AB}) (Version: 12.7.3.46 - Apple Inc.) Malwarebytes versie 3.4.5.2467 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.4.5.2467 - Malwarebytes) Microsoft OneDrive (HKU\S-1-5-21-1931134060-2763814536-37410116-1001\...\OneDriveSetup.exe) (Version: 18.025.0204.0009 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation) Mozilla Firefox 59.0.2 (x64 en-US) (HKLM\...\Mozilla Firefox 59.0.2 (x64 en-US)) (Version: 59.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 59.0.1 - Mozilla) MSI Afterburner 4.4.2 (HKLM-x32\...\Afterburner) (Version: 4.4.2 - MSI Co., LTD) PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7004 - Realtek Semiconductor Corp.) Speccy (HKLM\...\Speccy) (Version: 1.31 - Piriform) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Tansee iPhone/iPad/iPod Music/Video Transfer 2.3.3.0 (HKLM-x32\...\Tansee iPhone/iPad/iPod Music/Video Transfer_is1) (Version: 2.3.3.0 - Tansee, Inc.) Topaz Adjust 5 (HKLM-x32\...\Topaz Adjust 5) (Version: 5.2.0 - Topaz Labs, LLC) Topaz B&W Effects (HKLM-x32\...\Topaz BW Effects 2) (Version: 2.1.0 - Topaz Labs, LLC) Topaz Clean 3 (HKLM-x32\...\Topaz Clean 3) (Version: 3.2.0 - Topaz Labs, LLC) Topaz DeJpeg 4 (HKLM-x32\...\Topaz DeJpeg 4) (Version: 4.1.0 - Topaz Labs, LLC) Topaz DeNoise 6 (HKLM-x32\...\Topaz DeNoise 6) (Version: 6.0.1 - Topaz Labs, LLC) Topaz Fusion Express 2 (HKLM-x32\...\Topaz Fusion Express 2) (Version: 2.1.3 - Topaz Labs, LLC) Topaz Glow 2 (HKLM\...\Topaz Glow 2) (Version: 2.0.0 - Topaz Labs, LLC) Topaz InFocus (HKLM-x32\...\Topaz InFocus) (Version: 1.1.0 - Topaz Labs, LLC) Topaz Lens Effects (HKLM-x32\...\Topaz Lens Effects) (Version: 1.3.0 - Topaz Labs, LLC) Topaz ReMask 5 (HKLM-x32\...\Topaz ReMask 5) (Version: 5.0.1 - Topaz Labs, LLC) Topaz ReStyle (HKLM-x32\...\Topaz ReStyle) (Version: 1.1.0 - Topaz Labs, LLC) Topaz Star Effects (HKLM-x32\...\Topaz Star Effects) (Version: 1.2.0 - Topaz Labs, LLC) Topaz Studio (HKU\S-1-5-21-1931134060-2763814536-37410116-1001\...\{266c73b9-01f5-45c9-95d3-4b97fbf9d525}) (Version: 1.0.9 - Topaz Labs, LLC) Topaz Texture Effects 2 (HKLM-x32\...\Topaz Texture Effects 2) (Version: 2.1.1 - Topaz Labs, LLC) Trapcode Suite 14 (HKLM\...\Trapcode Suite 14 v14.0) (Version: - Red Giant LLC) VIVE Software (HKLM-x32\...\VIVE Software) (Version: 1.0.6.138 - HTC) ViveDriver (HKLM-x32\...\{8ff389b7-122a-494c-9d04-cb3165b8738d}) (Version: 1.1.0.8 - HTC Corp.) ViveDummy (HKLM-x32\...\{1F9BDD9F-AB3D-4384-A080-80E713702ADE}) (Version: 0.9.0.4 - HTC) Hidden VIVEPORT Companion (HKLM-x32\...\{4772732a-0acd-4e90-8bab-126d4fd2ae23}) (Version: 0.8.0.4 - HTC Corp.) Hidden VIVEPORT Companion (x86) (HKLM-x32\...\{68585C25-8054-4BC2-8407-311D00F9ECD4}) (Version: 0.8.0.4 - HTC Corp.) Hidden VIVEPORT Desktop (HKLM-x32\...\{129befe7-8738-444f-b4fc-7b3e9c21fbdd}) (Version: 1.2.1.36 - HTC Corp.) Hidden VIVEPORT Desktop (x86) (HKLM-x32\...\{5C7B8B9F-CD38-47B9-9B3D-81CB29F438BC}) (Version: 1.2.1.36 - HTC Corp.) Hidden VIVEPORT Diagnosis (HKLM-x32\...\{25a4b45d-88c8-4f43-b950-06449e868cc2}) (Version: 1.2.0.46 - HTC Corp.) VIVEPORT Diagnosis (x86) (HKLM-x32\...\{888FC9C1-8C7A-42CE-B50D-ADD01DB7870D}) (Version: 1.2.0.46 - HTC Corp.) Hidden VIVEPORT DirectX 9.0 (HKLM-x32\...\{4b01ac5b-340e-4644-828b-0882c8255a4e}) (Version: 1.2.0.3 - HTC Corp.) Hidden VIVEPORT DirectX 9.0 (x86/x64) (HKLM-x32\...\{9D42F21E-7CFA-4C87-99FD-C81CFFCB12E5}) (Version: 1.2.0.3 - HTC Corp.) Hidden WinRAR 5.50 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) ==================== Aangepaste CLSID (gefilterd): ========================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) CustomCLSID: HKU\S-1-5-21-1931134060-2763814536-37410116-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-994EA02E6E0D}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => Geen bestand ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-10] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-10] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-10] () ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => D:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-03-18] (AVAST Software) ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-10] () ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => D:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-03-18] (AVAST Software) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => D:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-03-18] (AVAST Software) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-03-27] (Malwarebytes) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-02-23] (NVIDIA Corporation) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-10] () ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => D:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-03-18] (AVAST Software) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-03-27] (Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal) ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {0F1C8098-AC1D-443E-83A7-D19873D6AD8A} - System32\Tasks\{EE903960-FE13-0DCF-B84C-D6622F6302C5} => C:\WINDOWS\SysWOW64\pMaWRzNAi.exe [1624-02-24] (Microsoft Corporation) Task: {142AB4B3-EB2A-4C9F-8BEE-B39562ADB08E} - System32\Tasks\CCleaner Update => D:\Program Files\CCleaner\CCUpdate.exe [2018-03-06] (Piriform Ltd) Task: {22DEC956-A74B-4871-A897-C051CF5A51AC} - System32\Tasks\{23E90B2C-20EC-C6F9-72D7-2978A6781D42} => C:\WINDOWS\ysoeoEAUFoy.exe [1624-02-24] (Microsoft Corporation) Task: {638255E0-44FA-41FC-B36E-1054763AC732} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-1931134060-2763814536-37410116-1001 Task: {663DE9C1-981A-4C63-9A98-20A05E206326} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-12-21] (Nota Inc.) Task: {736513DB-FE74-41A1-B1A8-77AE1D3DF353} - System32\Tasks\Avast Emergency Update => D:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-03-18] (AVAST Software) Task: {7EEB9390-1F3C-4242-A476-22B873E82029} - System32\Tasks\CCleanerSkipUAC => D:\Program Files\CCleaner\CCleaner.exe [2018-03-06] (Piriform Ltd) Task: {84835B2C-9477-4B65-901F-BA4CED212029} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-10-12] (Apple Inc.) Task: {98A8FEAC-0BE9-421A-81EA-48DE4DBA1FCB} - System32\Tasks\AdobeGCInvoker-1.0-CLOVER-Aniek => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-01-05] (Adobe Systems, Incorporated) Task: {A40B1F5E-E88D-4460-A7C2-E487EA8E0704} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-12-21] (Nota Inc.) Task: {E393CF8F-768B-485A-804F-0108D0E76E8C} - System32\Tasks\AdobeAAMUpdater-1.0-CLOVER-Aniek => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated) Task: {F9AB7A28-8C4D-4A75-A840-630BF365FC3E} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2017-12-15] () Task: {FE9EA13A-345B-4E51-8CBF-BA72EE31CD91} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2018-03-18] (AVAST Software) (Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) ==================== Snelkoppelingen & WMI ======================== (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) ==================== Geladen Modules (gefilterd) ============== 2017-09-29 15:41 - 2017-09-29 15:41 - 000184432 ____N () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-12-15 11:04 - 2017-12-15 11:04 - 000725288 _____ () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe 2018-02-10 01:12 - 2018-02-10 01:12 - 000614856 _____ () C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll 2018-01-05 01:14 - 2018-01-05 01:14 - 000088888 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2018-01-05 01:13 - 2018-01-05 01:13 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2018-04-01 11:00 - 2018-03-27 13:47 - 002492704 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2018-04-01 11:00 - 2018-03-12 15:09 - 002300192 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2018-03-14 12:16 - 2018-02-22 02:26 - 011044864 ____N () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2018-03-14 12:16 - 2018-02-22 02:21 - 001804288 ____N () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-12-14 19:56 - 2017-12-14 19:56 - 000232448 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll 2017-12-14 19:56 - 2017-12-14 19:56 - 000357888 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll 2017-12-14 19:56 - 2017-12-14 19:56 - 000071680 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll 2017-12-14 19:56 - 2017-12-14 19:56 - 000056832 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll 2017-12-14 19:57 - 2017-12-14 19:57 - 000566784 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll 2018-03-18 18:59 - 2018-01-11 04:05 - 000784672 _____ () D:\Program Files (x86)\Steam\SDL2.dll 2018-03-18 18:59 - 2016-09-01 03:02 - 004969248 _____ () D:\Program Files (x86)\Steam\v8.dll 2018-03-18 18:59 - 2018-03-27 00:33 - 002631968 _____ () D:\Program Files (x86)\Steam\video.dll 2018-03-18 18:59 - 2016-09-01 03:02 - 001563936 _____ () D:\Program Files (x86)\Steam\icui18n.dll 2018-03-18 18:59 - 2016-09-01 03:02 - 001195296 _____ () D:\Program Files (x86)\Steam\icuuc.dll 2018-03-18 18:59 - 2017-12-20 03:43 - 005137696 _____ () D:\Program Files (x86)\Steam\libavcodec-57.dll 2018-03-18 18:59 - 2017-12-20 03:43 - 000695584 _____ () D:\Program Files (x86)\Steam\libavformat-57.dll 2018-03-18 18:59 - 2017-12-20 03:43 - 000351520 _____ () D:\Program Files (x86)\Steam\libavresample-3.dll 2018-03-18 18:59 - 2017-12-20 03:43 - 000847136 _____ () D:\Program Files (x86)\Steam\libavutil-55.dll 2018-03-18 18:59 - 2017-12-20 03:43 - 000783648 _____ () D:\Program Files (x86)\Steam\libswscale-4.dll 2018-03-18 18:59 - 2018-03-27 00:33 - 000977184 _____ () D:\Program Files (x86)\Steam\bin\chromehtml.DLL 2018-03-18 18:59 - 2016-07-05 00:17 - 000266560 _____ () D:\Program Files (x86)\Steam\openvr_api.dll 2018-03-18 18:37 - 2018-03-18 18:37 - 067126928 _____ () D:\Program Files\AVAST Software\Avast\libcef.dll 2018-03-18 18:37 - 2018-03-18 18:37 - 000287960 _____ () D:\Program Files\AVAST Software\Avast\streamback.dll 2018-03-18 18:37 - 2018-03-18 18:37 - 000280280 _____ () D:\Program Files\AVAST Software\Avast\tasks_core.dll 2018-03-18 18:37 - 2018-03-18 18:37 - 000275160 _____ () D:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2018-03-18 18:59 - 2017-09-07 04:04 - 000678400 _____ () D:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll 2018-03-18 18:59 - 2017-12-13 23:16 - 071471392 _____ () D:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll 2018-03-18 18:59 - 2015-09-25 01:52 - 000119208 _____ () D:\Program Files (x86)\Steam\winh264.dll ==================== Alternate Data Streams (gefilterd) ========= (Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.) ==================== Veilige Modus (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Bestandskoppeling (gefilterd) =============== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd.) ==================== Internet Explorer vertrouwde/beperkte toegang =============== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd.) ==================== Hosts inhoud: ========================== (Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.) 2018-03-18 17:20 - 2018-03-29 16:13 - 000001132 ____N C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 activate.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 lmlicenses.wip4.adobe.com 127.0.0.1 lm.licenses.adobe.com 127.0.0.1 na1r.services.adobe.com 127.0.0.1 hlrcv.stage.adobe.com ==================== Andere gebieden ============================ (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-21-1931134060-2763814536-37410116-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\lady_\Pictures\crater lake west3.jpg DNS Servers: 195.130.131.3 - 195.130.130.3 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run: => "VIVEPORT Desktop Helper" HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKU\S-1-5-21-1931134060-2763814536-37410116-1001\...\StartupApproved\Run: => "Gyazo" HKU\S-1-5-21-1931134060-2763814536-37410116-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1931134060-2763814536-37410116-1001\...\StartupApproved\Run: => "CCleaner Monitoring" ==================== Firewall regels (gefilterd) =============== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [{0C2ECB2E-C177-445A-9AED-45AEBE668A3A}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{388E1D87-EEB9-4BB5-87E6-000BAFE68374}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{9139E97F-EE7E-4278-8D20-FA3DFE942FF7}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{1F6CFF5B-A8C2-4B4E-B56B-CE3A9A863E19}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{348B4DB4-3B56-451E-954F-024DC3AF1749}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{EA8696AD-5F0C-4396-BAE3-20E06492682C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{B39358F7-0881-4C61-897B-575D2935A93C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{FD826DF8-ECAC-496E-B096-7A02E109E106}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{74F7E797-E8D9-4900-9AE5-776F402B9B31}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{A3D69752-FBD6-44AC-802A-06E9CDBA645E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{5E34EF0D-A09F-49E0-A508-72FD5CBC00B0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{CFD7A7D3-1464-4337-A99B-B169DBD3622C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{3FE613F4-717C-4643-A0CF-F9089E479338}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{82BE4F43-02C6-4DC3-BA9C-4E38923D1986}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{7A5632F6-4ACA-4285-9E0A-33094FF79D85}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\SpotifyWebHelper.exe FirewallRules: [{F1FA1B3B-D676-4C3F-AC6B-4EB690FEB9B0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.75.483.0_x86__zpdnekdrzrea0\SpotifyWebHelper.exe FirewallRules: [{802BFAD8-8256-40AF-9479-387D1C1C8293}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe FirewallRules: [{A4A78DF6-355A-4091-861B-3C34DD4E8490}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{B6AD9AEE-56C5-40EA-AA13-63396181DB2D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{359C9704-36CC-4BEB-8E8E-6AC41D9B47FF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{7BF659C3-A983-4480-BB1F-5701DCA8A8F6}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{96476F94-69A3-438D-93A3-AE915F72EC5D}] => (Allow) D:\Program Files\iTunes\iTunes.exe FirewallRules: [TCP Query User{EA6CCEEC-6305-4D00-9ACC-DE84AC6084A7}D:\program files (x86)\steam\steamapps\common\woff\woff.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\woff\woff.exe FirewallRules: [UDP Query User{DA6F5D0E-2E16-4A1A-AED5-8A468E0BEF32}D:\program files (x86)\steam\steamapps\common\woff\woff.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\woff\woff.exe FirewallRules: [{8016F855-1301-46F3-ABAF-CD8FDD26B8CD}] => (Block) D:\program files (x86)\steam\steamapps\common\woff\woff.exe FirewallRules: [{3D97C068-352B-40B7-BB0A-1DE8E6B0DB2D}] => (Block) D:\program files (x86)\steam\steamapps\common\woff\woff.exe FirewallRules: [TCP Query User{9AAE2B31-FA13-4E05-A1AA-D3AB831B0781}D:\program files (x86)\steam\steamapps\common\subnautica\subnautica.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\subnautica\subnautica.exe FirewallRules: [UDP Query User{600E6AFF-E2B4-43F6-AC03-63C69657D9AC}D:\program files (x86)\steam\steamapps\common\subnautica\subnautica.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\subnautica\subnautica.exe FirewallRules: [{12079482-4EE3-459A-AF42-CB7754E98852}] => (Block) D:\program files (x86)\steam\steamapps\common\subnautica\subnautica.exe FirewallRules: [{3EFD1D0E-8339-40E4-9789-242E6C9F518D}] => (Block) D:\program files (x86)\steam\steamapps\common\subnautica\subnautica.exe FirewallRules: [{4E3BE479-9A9C-4D74-9813-5E2CD301C57E}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtours.exe FirewallRules: [{E54BEF05-E603-4674-9815-287584D6F507}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtours.exe FirewallRules: [{A247A175-62CF-4D55-93EF-3942CC976BA9}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtourscfg.exe FirewallRules: [{FB7F7836-A9D8-4DB0-93C5-8B2BACD627A0}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtourscfg.exe FirewallRules: [TCP Query User{188C29F0-DD5E-4FCD-9286-BB848B823CBF}D:\program files (x86)\steam\steamapps\common\indeath\indeath\binaries\win64\indeath-win64-shipping.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\indeath\indeath\binaries\win64\indeath-win64-shipping.exe FirewallRules: [UDP Query User{4E525AC0-E7FB-4509-B42C-C44AD028A2F0}D:\program files (x86)\steam\steamapps\common\indeath\indeath\binaries\win64\indeath-win64-shipping.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\indeath\indeath\binaries\win64\indeath-win64-shipping.exe FirewallRules: [{6E7AC825-1BBF-42E6-A2E2-26BA9B03744B}] => (Block) D:\program files (x86)\steam\steamapps\common\indeath\indeath\binaries\win64\indeath-win64-shipping.exe FirewallRules: [{A19DBFCD-E8EF-47CF-9CB9-4E8D5ED79497}] => (Block) D:\program files (x86)\steam\steamapps\common\indeath\indeath\binaries\win64\indeath-win64-shipping.exe FirewallRules: [{01BC9E71-353E-4561-B869-D384287DDE4A}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\SoulWorker\SoulWorker.exe FirewallRules: [{CE41055C-7D52-47C1-B74D-8787F822A3DC}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\SoulWorker\SoulWorker.exe FirewallRules: [TCP Query User{3146609C-DA5E-4DF6-8A7E-FA6BB0440A16}D:\program files (x86)\steam\steamapps\common\eternity warriors™ vr\ewvr.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\eternity warriors™ vr\ewvr.exe FirewallRules: [UDP Query User{C26E8938-3831-40C4-9BAC-C0B70305B977}D:\program files (x86)\steam\steamapps\common\eternity warriors™ vr\ewvr.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\eternity warriors™ vr\ewvr.exe FirewallRules: [{DEE86080-417F-4CAD-BEE7-BB5145055905}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Eternity Warriors™ VR\EWVR.exe FirewallRules: [{F7A16DAD-E424-4615-97A0-9F5228D65DC8}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Eternity Warriors™ VR\EWVR.exe FirewallRules: [{92F9FEEE-1A73-4F1B-82B5-971796225EF3}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Sairento VR\SairentoVR.exe FirewallRules: [{F3A6756E-459A-46D4-BD99-8356C67E9EF6}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Sairento VR\SairentoVR.exe FirewallRules: [{E9F38A54-3E41-400F-A376-EB97F2850EE5}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Portal Stories VR\Lift.exe FirewallRules: [{762BD481-DA85-46B2-B3B5-BDF1EB53440C}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Portal Stories VR\Lift.exe FirewallRules: [TCP Query User{0FB1B9C0-9AB2-4266-B619-7755FC999926}D:\program files (x86)\steam\steamapps\common\killerisdead\binaries\win32\kidgame.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\killerisdead\binaries\win32\kidgame.exe FirewallRules: [UDP Query User{C8156E5A-9927-4DF6-9C8E-AAE206FB7472}D:\program files (x86)\steam\steamapps\common\killerisdead\binaries\win32\kidgame.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\killerisdead\binaries\win32\kidgame.exe FirewallRules: [{7D93D425-7183-4A64-818D-E13F69C03BED}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\FINAL FANTASY XV\ffxv_s.exe FirewallRules: [{51079324-0ADF-401A-BDF2-268E673E8672}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\FINAL FANTASY XV\ffxv_s.exe FirewallRules: [{0593ED21-631C-4E87-BCE7-8673D26E029C}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Hitman™\Launcher.exe FirewallRules: [{D29746A4-D01E-4085-A4EA-F6D32B45665A}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Hitman™\Launcher.exe FirewallRules: [{CB0139A7-3633-4F2F-98B4-8BF40B7A1028}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\GORN\GORN.exe FirewallRules: [{2E36B624-EE41-4D23-9451-88C1E74A2CD8}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\GORN\GORN.exe FirewallRules: [{6A9DAAD2-096D-497C-9750-6E5DEA3A6039}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Google Spotlight Stories - Sonaria\win64\storyplayer.exe FirewallRules: [{728635B9-00FF-4818-AE6D-C3083933A4EE}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Google Spotlight Stories - Sonaria\win64\storyplayer.exe FirewallRules: [{117CF6AC-5A59-453A-90D5-378CF99BE1B8}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Factorio\bin\x64\factorio.exe FirewallRules: [{A1A08A1D-FD4F-4347-8670-7AA414AF8F1C}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Factorio\bin\x64\factorio.exe ==================== Herstelpunten ========================= AANDACHT: Systeemherstel is uitgeschakeld ==================== Defecte Apparaatbeheer Apparaten ============= ==================== Eventlog fouten: ========================= Applicatiefouten: ================== Error: (03/31/2018 03:57:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: Photoshop.exe, versie: 19.1.1.42094, tijdstempel: 0x5a7a160d Naam van module met fout: tlclarity2ps_x64.8bf, versie: 10.0.0.0, tijdstempel: 0x59f79856 Uitzonderingscode: 0xc0000005 Foutmarge: 0x00000000000133d4 Id van proces met fout: 0x4884 Starttijd van toepassing met fout: 0x01d3c8f8371d1398 Pad naar toepassing met fout: C:\Program Files\Adobe\Adobe Photoshop CC 2018\Photoshop.exe Pad naar module met fout: C:\Program Files\Topaz Labs\Topaz Studio\PS_Plugins_x64\tlclarity2ps_x64.8bf Rapport-id: 34a5ffb8-77ee-4839-8ad7-534b5913fb38 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (03/31/2018 03:50:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: Photoshop.exe, versie: 19.1.1.42094, tijdstempel: 0x5a7a160d Naam van module met fout: tltopazstudiops_x64.8bf, versie: 10.0.0.0, tijdstempel: 0x59f7972e Uitzonderingscode: 0xc0000005 Foutmarge: 0x00000000000133c4 Id van proces met fout: 0x1e7c Starttijd van toepassing met fout: 0x01d3c8f714da42a9 Pad naar toepassing met fout: C:\Program Files\Adobe\Adobe Photoshop CC 2018\Photoshop.exe Pad naar module met fout: C:\Program Files\Adobe\Adobe Photoshop CC 2018\Plug-Ins\topaz studio setup\PS_Plugins_x64\tltopazstudiops_x64.8bf Rapport-id: 077650ad-7ae4-48f3-8e3a-286ba4bec226 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (03/29/2018 05:31:44 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: Photoshop.exe, versie: 19.1.1.42094, tijdstempel: 0x5a7a160d Naam van module met fout: ntdll.dll, versie: 10.0.16299.248, tijdstempel: 0xeffc9126 Uitzonderingscode: 0xc000000d Foutmarge: 0x000000000010b2b0 Id van proces met fout: 0x1f04 Starttijd van toepassing met fout: 0x01d3c772fabd91c1 Pad naar toepassing met fout: C:\Program Files\Adobe\Adobe Photoshop CC 2018\Photoshop.exe Pad naar module met fout: C:\WINDOWS\SYSTEM32\ntdll.dll Rapport-id: 0dd85ff4-6ab6-4021-9020-da243fbfd346 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (03/29/2018 10:17:21 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: Gw2-64.exe, versie: 1.0.0.1, tijdstempel: 0x5abc481a Naam van module met fout: d3d9.dll, versie: 0.0.0.1, tijdstempel: 0x5a9f173d Uitzonderingscode: 0xc0000005 Foutmarge: 0x0000000000020e90 Id van proces met fout: 0x1af4 Starttijd van toepassing met fout: 0x01d3c73650e3d662 Pad naar toepassing met fout: D:\Program Files\Guild Wars 2\Gw2-64.exe Pad naar module met fout: D:\Program Files\Guild Wars 2\bin64\d3d9.dll Rapport-id: 6ad16530-4684-4e61-80d4-a39511bbcef4 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (03/29/2018 10:16:55 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: Gw2-64.exe, versie: 1.0.0.1, tijdstempel: 0x5abc481a Naam van module met fout: d3d9.dll, versie: 0.0.0.1, tijdstempel: 0x5a9f173d Uitzonderingscode: 0xc0000005 Foutmarge: 0x0000000000020e90 Id van proces met fout: 0x1ca4 Starttijd van toepassing met fout: 0x01d3c7363c540fa2 Pad naar toepassing met fout: D:\Program Files\Guild Wars 2\Gw2-64.exe Pad naar module met fout: D:\Program Files\Guild Wars 2\bin64\d3d9.dll Rapport-id: 5f95e19d-edcf-4f11-bcf5-dbf33cd30353 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (03/29/2018 10:16:20 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: Gw2-64.exe, versie: 1.0.0.1, tijdstempel: 0x5abc481a Naam van module met fout: d3d9.dll, versie: 0.0.0.1, tijdstempel: 0x5a9f173d Uitzonderingscode: 0xc0000005 Foutmarge: 0x0000000000020e90 Id van proces met fout: 0x6fc Starttijd van toepassing met fout: 0x01d3c735e427c002 Pad naar toepassing met fout: D:\Program Files\Guild Wars 2\Gw2-64.exe Pad naar module met fout: D:\Program Files\Guild Wars 2\bin64\d3d9.dll Rapport-id: 817169f4-8bb3-4c3d-9129-652cd314b45e Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (03/28/2018 07:04:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: ffxv_s.exe, versie: 1.0.0.0, tijdstempel: 0x5aaa9713 Naam van module met fout: ffxv_s.exe, versie: 1.0.0.0, tijdstempel: 0x5aaa9713 Uitzonderingscode: 0xc0000005 Foutmarge: 0x00000000073e0684 Id van proces met fout: 0x1e84 Starttijd van toepassing met fout: 0x01d3c6aadf754699 Pad naar toepassing met fout: D:\Program Files (x86)\Steam\steamapps\common\FINAL FANTASY XV\ffxv_s.exe Pad naar module met fout: D:\Program Files (x86)\Steam\steamapps\common\FINAL FANTASY XV\ffxv_s.exe Rapport-id: bc858ca4-175e-4ae8-ab9e-046607be4784 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (03/26/2018 06:24:30 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Het programma PhotoScape.exe, versie 1.0.0.1302 reageert niet meer op Windows en is afgesloten. Als u wilt zien of er meer informatie over het probleem beschikbaar is, raadpleegt u de probleemgeschiedenis in het onderdeel Beveiliging en onderhoud van het Configuratiescherm. Proces-id: 21e4 Starttijd: 01d3c51ecfbe2a1d Eindtijd: 12 Toepassingspad: D:\Program Files (x86)\PhotoScape\PhotoScape.exe Rapport-id: b9f76029-706c-433a-b6b5-c02393622b94 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Systeemfouten: ============= Error: (04/01/2018 11:13:32 AM) (Source: BugCheck) (EventID: 1001) (User: ) Description: De computer is opnieuw opgestart na een bugcontrole. De bugcontrole is 0x000000ef (0xffff8786d3ea9580, 0x0000000000000000, 0x0000000000000000, 0x0000000000000000). Er is een dump opgeslagen in: C:\WINDOWS\MEMORY.DMP. Rapport-id: d3f593c1-2139-4238-b5dc-3adf571ef7dc. Error: (04/01/2018 11:13:26 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/01/2018 11:13:26 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/01/2018 11:13:26 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/01/2018 11:13:26 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} en APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/01/2018 11:13:24 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: De vorige afsluiting van het systeem om 11:12:21 op ‎1/‎04/‎2018 is onverwacht gebeurd. Error: (04/01/2018 11:11:32 AM) (Source: DCOM) (EventID: 10016) (User: CLOVER) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker CLOVER\Aniek SID (S-1-5-21-1931134060-2763814536-37410116-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/01/2018 11:10:53 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: De Windows Installer-service is onverwacht gestopt. Dit is 1 keer gebeurd. De volgende herstelbewerking zal over 120000 milliseconden worden uitgevoerd: Service opnieuw starten. Windows Defender: =================================== Date: 2018-03-20 12:49:26.556 Description: Scan van Windows Defender Antivirus is gestopt voordat deze was voltooid. Scan-id: {B07AD619-957D-4454-B084-27A26F38FB66} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2018-03-19 20:32:45.323 Description: Scan van Windows Defender Antivirus is gestopt voordat deze was voltooid. Scan-id: {154F0102-CD7C-4394-942E-F8B9C8AFCDE5} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2018-03-19 20:25:03.735 Description: Scan van Windows Defender Antivirus is gestopt voordat deze was voltooid. Scan-id: {6E020338-4131-4ECC-B99F-002E8D90DFF7} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2018-03-19 20:19:05.017 Description: Scan van Windows Defender Antivirus is gestopt voordat deze was voltooid. Scan-id: {4FC5FF69-338B-45DF-AB0B-E1CAABB132CC} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2018-03-19 20:13:43.486 Description: Scan van Windows Defender Antivirus is gestopt voordat deze was voltooid. Scan-id: {C6D4D3EF-8473-43EA-90F0-A6B7BBDBE1D3} Type scan: Antimalware Scanparameters: Snelle scan Gebruiker: NT AUTHORITY\SYSTEM Date: 2018-03-20 14:28:45.526 Description: Real-timebeveiligingsonderdeel van Windows Defender Antivirus heeft een fout aangetroffen en is niet uitgevoerd. Onderdeel: Gedragscontrole Foutcode: 0x80508023 Foutbeschrijving: Op dit apparaat is geen malware en andere mogelijk ongewenste software gevonden. Reden: Realtime-beveiliging werkt niet meer wegens een onbekende reden. Start de service opnieuw om de beveiliging te herstellen. Date: 2018-03-20 14:28:44.715 Description: Real-timebeveiligingsonderdeel van Windows Defender Antivirus heeft een fout aangetroffen en is niet uitgevoerd. Onderdeel: Gedragscontrole Foutcode: 0x80508023 Foutbeschrijving: Op dit apparaat is geen malware en andere mogelijk ongewenste software gevonden. Reden: Antimalwarebeveiliging werkt niet meer wegens een onbekende reden. In sommige gevallen kan het probleem worden verholpen door de service opnieuw te starten. CodeIntegrity: =================================== Date: 2018-04-01 11:13:29.139 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-01 11:13:29.138 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-01 11:11:47.290 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-04-01 11:11:47.051 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-04-01 11:11:38.953 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-04-01 11:11:38.786 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-04-01 11:06:29.767 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-01 11:06:29.765 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. ==================== Geheugen info =========================== Processor: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz Percentage geheugen in gebruik: 32% Totaal fysiek RAM-geheugen: 8142.89 MB Beschikbaar fysiek RAM-geheugen: 5491.82 MB Totaal Virtueel geheugen: 9550.89 MB Beschikbaar Virtual geheugen: 6613.27 MB ==================== Schijven ================================ Drive c: () (Fixed) (Total:111.25 GB) (Free:54.02 GB) NTFS Drive d: (Hdd) (Fixed) (Total:931.39 GB) (Free:124.23 GB) NTFS \\?\Volume{75a9f0e1-0000-0000-0000-100000000000}\ (Door systeem gereserveerd) (Fixed) (Total:0.1 GB) (Free:0.03 GB) NTFS \\?\Volume{75a9f0e1-0000-0000-0000-60d61b000000}\ () (Fixed) (Total:0.44 GB) (Free:0.06 GB) NTFS ==================== MBR & Partitietabel ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: 75A9F0E1) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=450 MB) - (Type=27) ======================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: D88EA534) Partition: GPT. ==================== Eind van Addition.txt ============================