Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 14.03.2018 Gestart door broek (12-04-2018 12:05:51) Gestart vanaf C:\Users\broek\Desktop Windows 10 Pro Versie 1709 16299.371 (X64) (2018-03-22 06:39:04) Boot Modus: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-576629670-1266948981-1518855768-500 - Administrator - Disabled) Anderen (S-1-5-21-576629670-1266948981-1518855768-1006 - Limited - Enabled) broek (S-1-5-21-576629670-1266948981-1518855768-1001 - Administrator - Enabled) => C:\Users\broek DefaultAccount (S-1-5-21-576629670-1266948981-1518855768-503 - Limited - Disabled) Gast (S-1-5-21-576629670-1266948981-1518855768-501 - Limited - Disabled) => C:\Users\Gast WDAGUtilityAccount (S-1-5-21-576629670-1266948981-1518855768-504 - Limited - Disabled) ==================== Security Center ======================== (Als een item is opgenomen in de fixlist, zal het worden verwijderd.) AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Kaspersky Total Security (Enabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Kaspersky Total Security (Enabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} FW: Kaspersky Total Security (Enabled) {BE0DF4B4-018B-AF50-0486-D6FE7C8A8AE3} ==================== Geïnstalleerde programma's ====================== (Alleen de adware-programma's met 'verborgen' vlag kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeïnstalleerd worden.) 64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden 8500A909_eDocs (HKLM-x32\...\{B318D3D1-3421-4E2A-9C63-5D8FC2457B9C}) (Version: 1.00.0000 - Hewlett-Packard) Hidden ABN AMRO E.dentifier2 Software (HKLM-x32\...\{7FFDD64B-C182-41D6-AB43-257C07AE486A}) (Version: 03.10 - ABN AMRO BANK) Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 18.011.20038 - Adobe Systems Incorporated) Adobe Acrobat Reader DC - Nederlands (HKLM-x32\...\{AC76BA86-7AD7-1043-7B44-AC0F074E4100}) (Version: 18.011.20038 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 26.0.0.118 - Adobe Systems Incorporated) Adobe Digital Editions 4.5 (HKLM-x32\...\Adobe Digital Editions 4.5) (Version: 4.5.7 - Adobe Systems Incorporated) Adobe Flash Player 29 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 29.0.0.113 - Adobe Systems Incorporated) Akamai NetSession Interface (HKU\S-1-5-21-576629670-1266948981-1518855768-1001\...\Akamai) (Version: - Akamai Technologies, Inc) Anoto penDirector 1.4.0.0 (HKLM-x32\...\Anoto_penDirector) (Version: 1.4.0.0 - Anoto AB) Apple Application Support (HKLM-x32\...\{45C56AA7-ED1B-4800-A97F-EDDF3F3520B1}) (Version: 2.3.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{52D87F32-70E4-4348-8148-C0B9F35B1314}) (Version: 2.3.0.177 - Apple Inc.) Applian FLV and Media Player 3.1.1.12 (HKLM-x32\...\Applian FLV and Media Player) (Version: 3.1.1.12 - Applian Technologies) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 18.3.2333 - AVAST Software) Bkool Indoor version 3.62 9890 (HKLM-x32\...\{B16838DD-95AA-4875-9123-A40DF977D99E}_is1) (Version: 3.62 9890 - Bkool) BPD_DSWizards (HKLM-x32\...\{AC4E477E-BBD4-4C68-8D6C-D10C3BB658F3}) (Version: 1.00.0000 - Hewlett-Packard) Hidden bpd_scan (HKLM-x32\...\{3D73DC7A-2D1D-45CF-8A67-24873925C716}) (Version: 3.00.0000 - Hewlett-Packard) Hidden BPDSoftware (HKLM-x32\...\{4FCA6934-2AE3-4ACA-9931-A6D38A3EDB13}) (Version: 140.0.001.000 - Hewlett-Packard) Hidden BPDSoftware_Ini (HKLM-x32\...\{AD0AA962-111E-41D5-A705-0E3D9178A661}) (Version: 1.00.0000 - Hewlett-Packard) Hidden BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden CameraHelperMsi (HKLM-x32\...\{15634701-BACE-4449-8B25-1567DA8C9FD3}) (Version: 13.51.815.0 - Logitech) Hidden Camtasia Studio 8 (HKLM-x32\...\{AF33D0D2-2627-4AC8-8473-FDBB7892129C}) (Version: 8.6.0.2079 - TechSmith Corporation) CompanionLink (HKLM-x32\...\{8CBBF8B0-22BF-4B82-A6B6-81E4D0181F2E}) (Version: 8.0.16.0 - CompanionLink Software, Inc.) Corel WinDVD (HKLM-x32\...\{5C1F18D2-F6B7-4242-B803-B5A78648185D}) (Version: 10.0.5.828 - Corel Inc.) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden Direct DiscRecorder (HKLM-x32\...\{F2004B8D-7791-4B35-A3FA-D8CA8BB4DD81}) (Version: 1.00.0000 - Corel Corporation) Hidden Direct DiscRecorder (HKLM-x32\...\InstallShield_{F2004B8D-7791-4B35-A3FA-D8CA8BB4DD81}) (Version: 1.00.0000 - Corel Corporation) Hidden Disable AMT Profile Synchronization Pop-up for Windows XP/Vista/7 (HKLM\...\DisableAMTPopup) (Version: 1.00 - ) DisplayLink Core Software (HKLM\...\{444953EE-C57D-4E6E-AE48-062EF9220FF0}) (Version: 7.9.1336.0 - DisplayLink Corp.) Hidden DisplayLink Core Software (HKLM\...\{6B4A0DC7-5998-45E4-A716-667453AD54F3}) (Version: 8.0.778.0 - DisplayLink Corp.) DocProc (HKLM-x32\...\{9B362566-EC1B-4700-BB9C-EC661BDE2175}) (Version: 140.0.185.000 - Hewlett-Packard) Hidden Dolby Audio X2 Windows API SDK (HKLM\...\{F994125B-7BF5-4A38-A569-82833CEB24DC}) (Version: 0.8.4.83 - Dolby Laboratories, Inc.) Hidden Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.7000.4 - Dolby Laboratories Inc) DriverUpdate (HKLM\...\{836289DF-2790-4B96-89DB-F6579EB0DF2B}) (Version: 5.4.1 - Slimware Utilities Holdings, Inc.) Hidden DriverUpdate (HKLM\...\DriverUpdate) (Version: 5.4.1 - Slimware Utilities Holdings, Inc.) DYMO Label (HKLM-x32\...\{CE289CFA-898E-4601-B858-A25EC0CEA9EE}) (Version: 8.7.0.44412 - Newell Rubbermaid) eLecta Live Virtual Room 8.0 (HKLM-x32\...\{2557C300-2B7E-4B18-9596-5FEE3B44A01C}_is1) (Version: 8.0 - ELECTA COMMUNICATIONS LTD) erLT (HKLM-x32\...\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}) (Version: 1.20.138.34 - Logitech, Inc.) Hidden Fax (HKLM-x32\...\{9294F169-72EE-4D74-AE92-CA25F64B4FF8}) (Version: 140.0.307.000 - Hewlett-Packard) Hidden FBReader for Windows (HKLM-x32\...\FBReader for Windows) (Version: - ) FileZilla Client 3.30.0 (HKLM-x32\...\FileZilla Client) (Version: 3.30.0 - Tim Kosse) FLV Player (HKLM-x32\...\FLV Player2.0.25) (Version: 2.0.25 - Martijn de Visser Software) Galerie de photos Windows Live (HKLM-x32\...\{488F0347-C4A7-4374-91A7-30818BEDA710}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Garmin Communicator Plugin (HKLM-x32\...\{647BB978-2876-487B-9B0E-FDB73F0EA4A2}) (Version: 4.0.4 - Garmin Ltd or its subsidiaries) Garmin Communicator Plugin x64 (HKLM\...\{237D687E-9E50-4A30-B810-262764CC491B}) (Version: 4.0.4 - Garmin Ltd or its subsidiaries) GoodSync (HKLM\...\{B26B00DA-2E5D-4CF2-83C5-911198C0F009}) (Version: 10.8.2.2 - Siber Systems) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 65.0.3325.181 - Google Inc.) Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google) Google Photos Backup (HKU\S-1-5-21-576629670-1266948981-1518855768-1001\...\Google Photos Backup) (Version: 1.1.2.13 - Google, Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden GoPro Studio (HKLM-x32\...\{BE06FF1A-83A0-42F2-913E-6E405393145C}) (Version: 5.12.5383 - GoPro, Inc.) Hidden GPBaseService2 (HKLM-x32\...\{BB3447F6-9553-4AA9-960E-0DB5310C5779}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden HDtracks Downloader (HKLM-x32\...\HDtracks Downloader) (Version: 18 - J. River, Inc.) HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Officejet Pro 8500 A909 Series (HKLM\...\{49C2B7C1-A4E7-4770-8E30-255795AD4712}) (Version: 14.0 - HP) HP Officejet Pro 8500 A910 Basissoftware van het apparaat (HKLM\...\{051BCD63-D588-49E6-95E6-F9DE54CBE480}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Officejet Pro 8500 A910 Haelp (HKLM-x32\...\{871B2A9D-0F12-44B3-88C1-E0CB10A232E4}) (Version: 140.0.2.2 - Hewlett Packard) HP Officejet Pro 8500 A910 Productverbeteringsonderzoek (HKLM\...\{569CDBCF-8998-4AB9-BE54-A7C16C277153}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPProductAssistant (HKLM-x32\...\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden HPSSupply (HKLM-x32\...\{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP) Intel(R) Chipset Device Software (HKLM-x32\...\{44ded3eb-1686-46a6-9770-fd79096c29f7}) (Version: 10.1.1.45 - Intel(R) Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1067 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 23.20.16.4905 - Intel Corporation) Hidden Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.48.197.0 - Intel Corporation) Hidden Intel(R) Trusted Connect Services Client (HKLM-x32\...\{66129f84-d3f0-4884-ac54-369ae6fc2cf6}) (Version: 1.48.197.0 - Intel Corporation) Hidden Intel® PROSet/Wireless Software (HKLM-x32\...\{ba25c46f-28f8-4449-97ab-7bb20f3f9a9c}) (Version: 20.30.0 - Intel Corporation) iSpring Converter Pro 8 (HKLM\...\{2E286370-A513-4E5C-8A70-732166675EC4}) (Version: 8.7.20205 - iSpring Solutions Inc.) iSpring QuizMaker 8 (HKLM-x32\...\{CAAD7F7C-0970-4287-A352-B792955BBC85}) (Version: 8.7.20205 - iSpring Solutions Inc.) Java 8 Update 161 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180161F0}) (Version: 8.0.1610.12 - Oracle Corporation) Junk Mail filter update (HKLM-x32\...\{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Kaspersky Secure Connection (HKLM-x32\...\{F33C0717-8E04-4EB5-90C8-47221287DB4F}) (Version: 18.0.0.405 - Kaspersky Lab) Hidden Kaspersky Secure Connection (HKLM-x32\...\InstallWIX_{F33C0717-8E04-4EB5-90C8-47221287DB4F}) (Version: 18.0.0.405 - Kaspersky Lab) Kaspersky Total Security (HKLM-x32\...\{5AAE61FF-858E-453E-B8F3-944618149975}) (Version: 18.0.0.405 - Kaspersky Lab) Hidden Kaspersky Total Security (HKLM-x32\...\InstallWIX_{5AAE61FF-858E-453E-B8F3-944618149975}) (Version: 18.0.0.405 - Kaspersky Lab) Laplink PCmover Professional (HKLM-x32\...\{C5FC0140-206A-4D19-873B-5C8EB114751F}) (Version: 11.00.1004.0 - Laplink Software, Inc.) LastPass(alleen deïnstalleren) (HKLM-x32\...\LastPass) (Version: - LastPass) Lenovo Settings - Power (HKLM-x32\...\{A6CFC34A-56EE-4AF5-8C49-995F59E6A160}) (Version: 2.00.000 - Lenovo) Hidden Logitech Options (HKLM\...\LogiOptions) (Version: 6.80.372 - Logitech) Logitech SetPoint 6.67 (HKLM\...\sp6) (Version: 6.67.83 - Logitech) Logitech-webcamsoftware (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.51 - Logitech Inc.) MarketResearch (HKLM-x32\...\{D360FA88-17C8-4F14-B67F-13AAF9607B12}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden Microsoft .NET Framework 2.0 fix Version 1.0.0.1 (HKLM-x32\...\{C12304D8-48C3-46C9-A62F-82FFAFC04170}_is1) (Version: 1.0.0.1 - Wondershare, Inc.) Microsoft .NET Framework 4.7.1 (Nederlands) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1043) (Version: 4.7.02558 - Microsoft Corporation) Microsoft Office 365 - de-de (HKLM\...\o365homepremretail - de-de) (Version: 16.0.9126.2116 - Microsoft Corporation) Microsoft Office 365 - en-us (HKLM\...\o365homepremretail - en-us) (Version: 16.0.9126.2116 - Microsoft Corporation) Microsoft Office 365 - nl-nl (HKLM\...\o365homepremretail - nl-nl) (Version: 16.0.9126.2116 - Microsoft Corporation) Microsoft Office Professional Plus 2016 - de-de (HKLM\...\ProPlusRetail - de-de) (Version: 16.0.9126.2116 - Microsoft Corporation) Microsoft Office Professional Plus 2016 - en-us (HKLM\...\ProPlusRetail - en-us) (Version: 16.0.9126.2116 - Microsoft Corporation) Microsoft Office Professional Plus 2016 - nl-nl (HKLM\...\ProPlusRetail - nl-nl) (Version: 16.0.9126.2116 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-576629670-1266948981-1518855768-1001\...\OneDriveSetup.exe) (Version: 17.3.6743.1212 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Motorola Device Manager (HKLM-x32\...\{28DB8373-C1BB-444F-A427-A55585A12ED7}) (Version: 2.5.4 - Motorola Mobility) Motorola Device Software Update (HKLM-x32\...\{894AB83D-A9AF-4E54-BFF3-A7262A0A6C13}) (Version: 13.09.3001 - Motorola Mobility) Hidden Motorola Mobile Drivers Installation 6.4.0 (HKLM\...\{27986EDD-C9EC-4B52-B92F-06D073F0AA52}) (Version: 6.4.0 - Motorola Mobility LLC) Mozilla Firefox 59.0.1 (x86 nl) (HKLM-x32\...\Mozilla Firefox 59.0.1 (x86 nl)) (Version: 59.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 59.0.1 - Mozilla) MPM (HKLM-x32\...\{8AEA6737-8AF3-47BB-95CE-AAB62BE68985}) (Version: 1.00.0000 - Hewlett-Packard) MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden Music Manager (HKU\S-1-5-21-576629670-1266948981-1518855768-1001\...\MusicManager) (Version: - Google, Inc.) MyScript Anoto InkRetriever 1.0 (HKLM-x32\...\MyScript Anoto InkRetriever 1.0_is1) (Version: 1.0.0.8 - Vision Objects) MyScript Studio Notes Edition 1.3 (HKLM-x32\...\MyScript Studio 1.3_is1) (Version: 1.3.0.955 - Vision Objects) MyScript Stylus 3.2 (HKLM-x32\...\MyScript Stylus 3.2_is1) (Version: 3.2.60.140 - Vision Objects) MyScript Stylus LanguagePack nl_NL 3.2 (HKLM-x32\...\MyScript Stylus LanguagePack nl_NL 3.2_is1) (Version: 3.2.60.140 - Vision Objects) Network64 (HKLM\...\{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}) (Version: 140.0.306.000 - Hewlett-Packard) Hidden NordVPN (HKLM-x32\...\{5B727BF8-D797-4CB9-9B90-69D78F4986C6}) (Version: 6.12.11 - NordVPN) Hidden NordVPN (HKLM-x32\...\NordVPN 6.12.11) (Version: 6.12.11 - NordVPN) Note Manager Software (HKLM-x32\...\{0875AD13-6B67-4E66-86D6-100AA0E51ECA}) (Version: 3.4.203.2 - ) Note Manager Software (HKLM-x32\...\{188F5452-6C4E-4CA9-8E57-CF72E5331D2B}) (Version: 3.4.201.19 - ) OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP) ODD Eject (HKLM-x32\...\{808B53B5-9E5F-4F99-A6B9-BDDF323EF229}) (Version: 1.0.0.1 - ) Hidden ODD Eject (HKLM-x32\...\InstallShield_{808B53B5-9E5F-4F99-A6B9-BDDF323EF229}) (Version: 1.0.0.1 - ) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.9126.2116 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.9126.2116 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.9126.2116 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0407-0000-0000000FF1CE}) (Version: 16.0.9126.2116 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.9126.2116 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0413-0000-0000000FF1CE}) (Version: 16.0.9126.2116 - Microsoft Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Pavtube BDMagic Ver 4.9.2.0 (HKLM-x32\...\{322AED85-69CD-49E5-AA61-123707D9A80B}_is1) (Version: - ) PC Connectivity Solution (HKLM-x32\...\{BA77F9D2-CD35-41EB-9BC9-769879DFF8A6}) (Version: 12.0.48.0 - Nokia) penDirectorMergeModules (HKLM-x32\...\{936E904A-514B-4B7B-8CEB-57B5BBA0E5E4}) (Version: 1.4.0.0 - Anoto AB) Hidden Photo Sketcher Software Version 1.0.12 (HKLM-x32\...\{87786ECE-DAC1-4FA0-8028-A130263046EA}) (Version: 1.0.12.0 - ) Quik (HKLM\...\{DF7EE9CB-0369-44F3-9B91-BF05A2D4891D}) (Version: 0.1.5383 - GoPro, Inc.) Hidden Quik (HKLM-x32\...\{b15a4fb5-7637-45ca-b230-33d94af786a7}) (Version: 2.3.0.5383 - GoPro, Inc.) Raccolta foto di Windows Live (HKLM-x32\...\{ED16B700-D91F-44B0-867C-7EB5253CA38D}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Registry Patch to Enable Maximum Power Saving on WiFi Adapters for Windows 7 (HKLM\...\EnablePS) (Version: 1.00 - ) Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Signature995 (HKLM-x32\...\Signature995) (Version: - ) Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.6.8442 - Skype Technologies S.A.) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) SlimCleaner Plus (HKLM\...\{ABA29C63-B22D-45F8-BA20-7C8EF17B5E62}) (Version: 2.5.10 - Slimware Utilities Holdings, Inc.) Hidden SlimCleaner Plus (HKLM\...\SlimCleaner Plus) (Version: 2.5.10 - Slimware Utilities Holdings, Inc.) SlimDrivers (HKLM-x32\...\{746AB259-6474-4111-8966-1C62F9A6E063}) (Version: 2.3.1 - SlimWare Utilities, Inc.) SmoothboardAir (HKLM-x32\...\SmoothboardAir) (Version: - ) SmoothDraw version 4.0.5 (HKLM-x32\...\SmoothDraw_is1) (Version: 4.0.5 - ) Snelkoppelingen naar Marketsplash (HKLM-x32\...\{61A74D66-D2E0-45C8-AC28-EC66EA9D9002}) (Version: 1.0.1.7 - Hewlett-Packard) Software voor Intel® Chipset-apparaten (HKLM-x32\...\{fb610cea-ba50-4d4b-a717-cf025419035c}) (Version: 10.1.1.13 - Intel(R) Corporation) Hidden SolutionCenter (HKLM-x32\...\{BC5DD87B-0143-4D14-AAE6-97109614DC6B}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden Status (HKLM-x32\...\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}) (Version: 140.0.342.000 - Hewlett-Packard) Hidden SyncBackSE (HKLM-x32\...\SyncBackSE_is1) (Version: 6.5.49.0 - 2BrightSparks) SysInfoTools-PST-File-Viewer (HKLM-x32\...\{888663E6-87F6-46BA-A4A1-0ED8868B4DC9}_is1) (Version: 2.0.0.0 - SysInfoTools) Taalpakket voor Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - NLD (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - NLD) (Version: 10.0.50903 - Microsoft Corporation) TAP-NordVPN 9.21.2 (HKLM\...\TAP-NordVPN) (Version: 9.21.2 - NordVPN.com) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.36244 - TeamViewer) Thunderbolt™ Software (HKLM-x32\...\{BD73BA0A-366B-4548-BA20-25F1B5E3B0CB}) (Version: 17.3.72.250 - Intel Corporation) TomTom MyDrive Connect 4.1.6.3253 (HKLM-x32\...\MyDriveConnect) (Version: 4.1.6.3253 - TomTom) TomTom Sports Connect (HKLM-x32\...\TomTom Sports Connect) (Version: 3.3.6.0 - TomTom International B.V.) Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.596.000 - Hewlett-Packard) Hidden TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden TrueCrypt (HKLM-x32\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation) UScreenCapture (x86) (HKLM-x32\...\{9E912C47-345C-4306-9272-36DC42E06B01}) (Version: 2.0.0 - UnrealStreaming) VC80CRTRedist - 8.0.50727.6195 (HKLM-x32\...\{933B4015-4618-4716-A828-5289FC03165F}) (Version: 1.2.0 - DivX, Inc) Hidden VFW_Codec32 (HKLM-x32\...\{ECDB3455-70F4-4EE6-B89E-3B4C5E9FF592}) (Version: 0.1.160.0 - GoPro, Inc.) Hidden VFW_Codec64 (HKLM\...\{AE4073DE-7596-4E3B-9DE3-18BE2C3EFAA6}) (Version: 0.1.160.0 - GoPro, Inc.) Hidden VirtualWhiteboard version VirtualWhiteboard 1.0.0.1 (HKLM-x32\...\{5384B53A-1D41-4DE3-BEC1-38D15793E3C9}_is1) (Version: VirtualWhiteboard 1.0.0.1 - e-pens Ltd) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0) (Version: 1.0.65.0 - LunarG, Inc.) Hidden Wacom (HKLM\...\Pen Tablet Driver) (Version: 5.3.5-3 - Wacom Technology Corp.) WD Quick View (HKLM-x32\...\{EB4BBA42-010C-44C7-88FA-BBBBFF9582A5}) (Version: 2.4.16.16 - Western Digital Technologies, Inc.) WD SmartWare (HKLM\...\{37B5A3DE-A3C2-4EB8-84EF-941F5DDA2B3F}) (Version: 2.4.16.16 - Western Digital Technologies, Inc.) WD SmartWare Installer (HKLM-x32\...\{4555885d-a64c-4234-9aac-72a8a6b5590b}) (Version: 2.4.16.16 - Western Digital Technologies, Inc.) WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation) Windows-stuurprogrammapakket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia) Windows-stuurprogrammapakket - OnePlus, Inc. (WinUSB) AndroidUsbDeviceClass (05/24/2012 6.0.0000.00000) (HKLM\...\45F0494FFE4F917A43E7F8EC9B2D43560396A625) (Version: 05/24/2012 6.0.0000.00000 - OnePlus, Inc.) ==================== Aangepaste CLSID (gefilterd): ========================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) CustomCLSID: HKU\S-1-5-21-576629670-1266948981-1518855768-1001_Classes\CLSID\{004B49B7-11B9-5058-AA22-08DD0A3ADC4B}\InprocServer32 -> {1F6D7276-9468-D082-20E2-1CEE85889A47} => Geen bestand CustomCLSID: HKU\S-1-5-21-576629670-1266948981-1518855768-1001_Classes\CLSID\{DD0822AA-3A0A-4BDC-B749-4B00B9115850}\InprocServer32 -> {5685427F-9468-D082-29D2-F4A785889A47} => Geen bestand ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-10] (AVAST Software) ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => -> Geen bestand ShellIconOverlayIdentifiers: [SharingPrivate] -> {08244EE6-92F0-47f2-9FC9-929BAA2E7235} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [MemopalBackedUp] -> {8ED3CC2D-6BC2-43AD-8C43-F51FBB413AE6} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [MemopalError] -> {B9CA6E12-7975-4997-B5BD-CA12ECE0FEAD} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [MemopalPartiallyBackedUp] -> {95DDC869-FC98-4D47-BD34-2EDC9AA09C01} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [MemopalToBackup] -> {2CDD871E-60EB-40BD-9721-A1CB57042F75} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [SharingPrivate] -> {08244EE6-92F0-47f2-9FC9-929BAA2E7235} => -> Geen bestand ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems Inc.) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-10] (AVAST Software) ContextMenuHandlers1: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\x64\ShellEx.dll [2018-03-23] (AO Kaspersky Lab) ContextMenuHandlers1: [WDBackupMenuHandler] -> {C752BC82-C19A-4827-9C15-0996BA85C180} => C:\Program Files\Western Digital\WD SmartWare\\WDContextMenuHandler.dll [2016-04-19] (Western Digital Technologies, Inc.) ContextMenuHandlers2: [CWDDriveMenuHandler] -> {CCEFA845-DCDB-4A2F-8BED-DBE87CD198EC} => C:\Program Files\Western Digital\WD SmartWare\\WDContextMenuHandler.dll [2016-04-19] (Western Digital Technologies, Inc.) ContextMenuHandlers2: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\x64\ShellEx.dll [2018-03-23] (AO Kaspersky Lab) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-10] (AVAST Software) ContextMenuHandlers4: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\x64\ShellEx.dll [2018-03-23] (AO Kaspersky Lab) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4f8de18921295e41\igfxDTCM.dll [2018-01-05] (Intel Corporation) ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems Inc.) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-10] (AVAST Software) ContextMenuHandlers6: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\x64\ShellEx.dll [2018-03-23] (AO Kaspersky Lab) ContextMenuHandlers6: [WDBackupMenuHandler] -> {C752BC82-C19A-4827-9C15-0996BA85C180} => C:\Program Files\Western Digital\WD SmartWare\\WDContextMenuHandler.dll [2016-04-19] (Western Digital Technologies, Inc.) ==================== Geplande Taken (gefilterd) ============= (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {029E76D9-A4C4-4DC0-BE63-748A28928574} - System32\Tasks\2BrightSparks\SyncBack\FTH-MICHIELVAND-broek\SyncBackSE => C:\Program Files (x86)\2BrightSparks\SyncBackSE\SyncBackSE.exe [2014-10-13] (2BrightSparks Pte Ltd) Task: {02A1B131-160D-4D9D-8C2A-6A7CBE953F09} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => sc.exe start ThunderboltService Task: {06B9FD50-2DDF-4B58-A647-F7DF9A20049F} - System32\Tasks\HPCustParticipation HP Officejet Pro 8500 A910 => C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.) Task: {16657989-B87A-4821-BCA1-B0278E02E463} - System32\Tasks\Lenovo\SimpleTap Watermark Launcher => C:\Program Files\lenovo\simpletap\simpletap.exe [2011-07-18] (Lenovo) Task: {16E2A14B-38F2-4492-ACC1-5B71D40F0050} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on switch user if service is up => ConditionalAppStarter.exe Task: {1C1B4057-DD8F-4525-934A-A551371397CE} - \Avast Software\Overseer -> Geen bestand <==== AANDACHT Task: {2855F02D-5D19-478C-AAB7-2CFBF23C456E} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-04-04] (Microsoft Corporation) Task: {2A2361C4-F67A-4FCD-8C0F-99E546058726} - System32\Tasks\{94F50550-F028-4ECB-BFCE-400475C92097} => C:\Program Files (x86)\CompanionLink\CompanionLink.exe [2018-01-11] (CompanionLink Software, Inc.) Task: {3325FA7F-64C0-45D7-B7FA-1D6F74E87867} - System32\Tasks\{8870ED47-FE8D-42E0-A2DC-88C1640529E7} => C:\Program Files (x86)\CompanionLink\CompanionLink.exe [2018-01-11] (CompanionLink Software, Inc.) Task: {36AA066B-6B63-44D0-B899-F65FFEB37650} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-04-04] (Microsoft Corporation) Task: {37B6466D-FD52-48AE-B616-E91D8D9ABE1A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2018-01-30] (HP Inc.) Task: {39937679-9488-4B39-8B76-C40A7CCCA6A6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-03-21] (Google Inc.) Task: {3EE39FDA-D6DC-4532-B8C2-4625B185F5F5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated) Task: {421D6657-4E9B-4840-931B-E02E7B00B237} - System32\Tasks\SlimDrivers Startup => C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe [2015-08-19] (SlimWare Utilities, Inc.) Task: {432B5019-EA42-4A27-98EE-4AEA8003AE18} - System32\Tasks\Motorola Device Manager Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2014-10-30] () Task: {4C31BD37-CF44-461C-93C0-1DB685F15493} - System32\Tasks\Lenovo\Lenovo Hardware Settings => "C:\Windows\system32\rundll32.exe" "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.dll",PwrMgrBkGndMonitor Task: {4F73F3EF-D7E5-4B8C-9A54-20F8F28253D6} - System32\Tasks\DriverUpdate Startup => C:\Program Files (x86)\DriverUpdate\DriverUpdate.exe Task: {5C81BEC8-30BB-42C9-B628-8B3118B95AC8} - System32\Tasks\2BrightSparks\SyncBack\Yeet-THINK-Yeet\SyncBackSE => C:\Program Files (x86)\2BrightSparks\SyncBackSE\SyncBackSE.exe [2014-10-13] (2BrightSparks Pte Ltd) Task: {5F2A4BB9-8EA7-4EE0-960F-F0C7B94AF85E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2018-02-07] (HP Inc.) Task: {5FFD42CF-3E78-4043-9F57-675E2D439957} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\ea4cc418-7a2d-4b56-b388-8ea149d26a97 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2018-03-02] (Lenovo Group Limited) Task: {641AB0C7-CC97-4705-8E60-33057572485A} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_29_0_0_113_Plugin.exe [2018-03-20] (Adobe Systems Incorporated) Task: {66046169-AC0D-4EF2-A944-DA2E2CFC5348} - System32\Tasks\RTFTrack => C:\Windows\RTFTrack.exe [2017-10-20] (Realtek semiconductor) Task: {707350C9-06A0-4A64-9F20-FB3D478575A4} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2017-11-10] (Realtek Semiconductor) Task: {7569186F-2E9E-4B92-B9C3-7E6AA1DC0E11} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.) Task: {76C0B26F-789F-46F4-BE2A-C5C99D88924F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {7E5CCED4-1AC4-4195-BF20-DD9DED10896E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-02-14] (Apple Inc.) Task: {81DC9358-F307-4147-8C3F-862B0D0906ED} - System32\Tasks\RtHDVBg_Dolby => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2017-11-10] (Realtek Semiconductor) Task: {85F009B6-83E9-4574-87C0-7814E4CA3F99} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => tbtsvc.exe Task: {8ABBA234-781D-4AE9-9A07-C97CCDA4CB19} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-04-04] (Microsoft Corporation) Task: {8DF150A2-145E-4325-ACB7-75B8EB3DF8AF} - System32\Tasks\2BrightSparks\SyncBack\Yeet-THINK-Yeet\SyncBackSE Background => C:\Program Files (x86)\2BrightSparks\SyncBackSE\SyncBackSE.exe [2014-10-13] (2BrightSparks Pte Ltd) Task: {90C13D38-42FF-4BE9-974A-9F3A6F3C9ED0} - System32\Tasks\{B641E358-BD62-46FF-A9EF-983633EC4DB1} => C:\Program Files (x86)\CompanionLink\CompanionLink.exe [2018-01-11] (CompanionLink Software, Inc.) Task: {93798AD8-34D6-428F-80C3-8C3B1D1EB176} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-11-07] (HP Inc.) Task: {97C10373-C589-4F6C-A4FB-50E62777E996} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-04-04] (Microsoft Corporation) Task: {9A1A98C6-6EDD-4109-95C7-9EBF6251065D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-03-24] (Microsoft Corporation) Task: {A309013A-4D08-4256-85C0-D11780790F2A} - System32\Tasks\2BrightSparks\SyncBack\Yeet-THINK-Yeet\SyncBackSE SSD BU => C:\Program Files (x86)\2BrightSparks\SyncBackSE\SyncBackSE.exe [2014-10-13] (2BrightSparks Pte Ltd) Task: {AA6EBE0C-83D5-4ECC-9161-F2CCF8A86A8E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {ABC9A017-7B90-4AD7-998A-435C7AC79975} - \Avast Emergency Update -> Geen bestand <==== AANDACHT Task: {B358CAAE-EB53-4E24-B60C-FDF067861FAA} - System32\Tasks\DriverUpdate Scan => C:\Program Files (x86)\DriverUpdate\DriverUpdate.exe Task: {B459FF74-4105-43EB-9D6F-70917F7C5090} - System32\Tasks\Lenovo\Lenovo ITS PnP Task => C:\Windows\System32\LITSSvc.exe [2018-02-26] (Lenovo.) Task: {B766BF9E-93C8-49BD-A4E3-A5BD1127F7A5} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => ConditionalAppStarter.exe Task: {B8A092FE-0513-4B51-9B65-C6A3B40D48AB} - System32\Tasks\{18AF4F19-C4EF-415D-B138-2619ADA2C926} => C:\Program Files (x86)\VirtualWhiteboard\VirtualWhiteboard.exe [2011-06-01] () Task: {BAA8CA29-30F3-4FC9-9D06-AF28C716CC04} - System32\Tasks\SlimCleaner Plus (Scheduled Scan - Yeet) => C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe [2016-10-25] (Slimware Utilities Holdings, Inc.) Task: {BBC6E241-72E4-4DBE-8934-9A748862781D} - System32\Tasks\MCP => C:\Program Files (x86)\LENOVO\Message Center Plus\MCPLaunch.exe Task: {C2ADAF0E-015A-4277-8A1D-53BAF7AD587C} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2014-10-30] () Task: {CB123342-6A7F-434D-A457-7D266018FEF1} - System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-broekhoen@gmail.com => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-01-05] (Adobe Systems, Incorporated) Task: {CB832D64-B834-4B27-8E3A-07DFCE126CFF} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => ConditionalAppStarter.exe Task: {CD56555B-7848-4ABC-B351-AB269C9D4194} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\Windows\system32\ImController.InfInstaller.exe [2018-03-02] (Lenovo Group Limited) Task: {D219D200-7FE0-4603-B7EF-C3B357392875} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\2a9e1921-fce4-444a-9bb1-d5b3d3c16897 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2018-03-02] (Lenovo Group Limited) Task: {D2DB08DC-7CCC-4634-9920-D1AC1E7B2369} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => %windir%\system32\sc.exe START ImControllerService Task: {D4D87497-A374-4EFF-AE5E-098AC7BA027D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-03-21] (Google Inc.) Task: {D6E08409-8E89-4EA3-B1F4-1CF0815689F0} - System32\Tasks\2BrightSparks\SyncBack\Yeet-THINK-Yeet\SyncBackSE Yeet va 060812 => C:\Program Files (x86)\2BrightSparks\SyncBackSE\SyncBackSE.exe [2014-10-13] (2BrightSparks Pte Ltd) Task: {D82A616B-404F-4C8C-88F0-5B79C9C98041} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-03-20] (Adobe Systems Incorporated) Task: {DA5F6E1C-71DD-4003-9D34-6583357E2CDE} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\417577bf-9b13-476d-a086-0d65ba7d4003 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2018-03-02] (Lenovo Group Limited) Task: {DF82EA6C-8D9C-440B-BC25-DF20E00D8A0C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-11-07] (HP Inc.) Task: {E186BA88-497A-4891-B144-DD96E4E69B46} - System32\Tasks\Western Digital\SmartWare\____Volume_8af6d445_f6f4_11e0_ac61_806e6f6e6963__dropbox_9159763a_0049_40e8_8c7b_e5305479a2df_dropbox_ => C:\Program Files (x86)\Western Digital\WD SmartWare\BackupTask.exe [2016-04-19] (Western Digital Technologies, Inc.) Task: {E94EA798-2249-487E-9C07-A22CC5F5C827} - System32\Tasks\Adobe-online actualiseringsprogramma => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated) Task: {EBD52BDB-9AAE-4363-B825-AC32412672ED} - System32\Tasks\Lenovo\Lenovo ITS Task => C:\Windows\System32\LITSSvc.exe [2018-02-26] (Lenovo.) Task: {EFFAC3C5-C817-4924-B06C-EA5726F17EF1} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {F483A6D2-05D5-493A-AF4E-76A620D7A493} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.) Task: {F77B0499-880F-44C1-8499-96BEE99F191C} - System32\Tasks\RtsCM => C:\Windows\RtsCM64.exe [2017-10-20] (Realtek Semiconductor Corp.) Task: {F894648B-67AC-4444-98C3-A4A61C128789} - System32\Tasks\Motorola Device Manager Engine => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2014-10-30] () Task: {FD20FD8B-B61E-427A-8893-518DF3D6510F} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-03-24] (Microsoft Corporation) Task: {FDD0DE35-4D5F-42F9-ABAF-B2731125DAFF} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2017-11-10] (Realtek Semiconductor) (Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe ==================== Snelkoppelingen & WMI ======================== (De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.) ShortcutWithArgument: C:\Users\broek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps\Google Play Muziek.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=fahmaaghhglfmonjliepjlchgpgfmobi ShortcutWithArgument: C:\Users\broek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps\Lenovo 320S-14IKB _i5-7200u_8G_256G -.._.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=acknldhenbijimppdnchpodhacaaidfc ShortcutWithArgument: C:\Users\broek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps\Messenger for WhatsApp™.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=infelompnbbancffeibkenmdbbmpoged ==================== Geladen Modules (gefilterd) ============== 2017-09-29 15:41 - 2017-09-29 15:41 - 000184432 _____ () C:\Windows\SYSTEM32\inputhost.dll 2018-03-29 11:25 - 2018-03-29 11:25 - 000429304 _____ () C:\Program Files (x86)\NordVPN\nordvpn-service.exe 2018-03-21 17:02 - 2018-02-22 02:26 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2018-03-21 17:02 - 2018-02-22 02:21 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2011-10-15 08:19 - 2010-10-26 13:40 - 000049056 _____ () C:\Program Files\CONEXANT\ForteConfig\fmapp.exe 2017-03-16 17:15 - 2017-03-16 17:15 - 000866224 _____ () C:\Program Files\GoPro\GoPro Desktop App\GoProDesktopSystemTray.exe 2018-01-15 01:09 - 2018-01-15 01:09 - 000077824 _____ () C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\zlib.dll 2018-01-15 01:09 - 2018-01-15 01:09 - 000144896 _____ () C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\libssh2.dll 2017-03-16 17:15 - 2017-03-16 17:15 - 000037808 _____ () C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe 2018-03-23 16:19 - 2018-03-23 16:19 - 013204704 _____ () C:\Program Files\Siber Systems\GoodSync\gs-server.exe 2018-04-06 08:47 - 2018-04-06 08:47 - 000178688 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11803.1001.6.0_x64__8wekyb3d8bbwe\WinStore.Preview.dll 2018-03-22 10:16 - 2018-03-22 10:16 - 002250240 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11803.1001.6.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2018-03-22 10:15 - 2018-03-22 10:15 - 027139072 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17122.16211.1000_x64__8wekyb3d8bbwe\Video.UI.exe 2018-03-22 10:15 - 2018-03-22 10:15 - 000306176 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17122.16211.1000_x64__8wekyb3d8bbwe\SharedUI.dll 2018-03-22 10:15 - 2018-03-22 10:15 - 006687744 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17122.16211.1000_x64__8wekyb3d8bbwe\EntCommon.dll 2018-03-22 10:14 - 2018-03-22 10:14 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17122.16211.1000_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2018-03-21 16:58 - 2018-03-20 08:00 - 004435288 _____ () C:\Program Files (x86)\Google\Chrome\Application\65.0.3325.181\libglesv2.dll 2018-03-21 16:58 - 2018-03-20 08:00 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\65.0.3325.181\libegl.dll 2018-04-10 12:26 - 2018-04-10 12:26 - 000295640 _____ () c:\program files\avast software\avast\streamback.dll 2018-04-10 12:26 - 2018-04-10 12:26 - 000349912 _____ () c:\program files\avast software\avast\streamback_avast.dll 2018-04-10 12:26 - 2018-04-10 12:26 - 000282840 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2018-04-12 08:28 - 2018-04-12 08:28 - 005815952 _____ () c:\program files\avast software\avast\defs\18041106\algo.dll 2018-04-10 12:26 - 2018-04-10 12:26 - 000763608 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2018-04-10 12:27 - 2018-04-10 12:27 - 000911064 _____ () C:\Program Files\AVAST Software\Avast\anen.dll 2018-04-10 12:26 - 2018-04-10 12:26 - 000172760 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll 2018-04-10 12:26 - 2018-04-10 12:26 - 000969944 _____ () C:\Program Files\AVAST Software\Avast\shepherdsync.dll 2018-04-10 12:26 - 2018-04-10 12:26 - 000501464 _____ () C:\Program Files\AVAST Software\Avast\gui_cache.dll 2018-03-23 11:31 - 2018-03-23 11:31 - 000836968 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\kpcengine.2.3.dll 2014-04-07 16:31 - 2014-04-07 16:31 - 000172032 _____ () C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\css_core.dll 2018-03-08 10:53 - 2018-03-08 10:53 - 000238080 _____ () C:\Program Files (x86)\NordVPN\x86\Liberation.Native.Firewall.dll 2017-12-03 12:18 - 2017-12-03 12:18 - 001244304 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-03-17 01:34 - 2015-03-17 01:34 - 000010240 _____ () C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\locale\nl_nl\AcroTray.nld 2015-03-17 01:34 - 2015-03-17 01:34 - 000141312 _____ () C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Locale\nl_nl\PDFMaker\PDFMOutlookAddin.NLD 2018-02-02 21:08 - 2018-02-02 21:08 - 005930480 _____ () C:\Program Files (x86)\Adobe\Acrobat DC\PDFMaker\Common\AdobePDFMakerX.dll 2018-02-02 21:08 - 2018-02-02 21:08 - 003375616 _____ () C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Locale\nl_NL\PDFMaker\AdobePDFMakerX.NLD 2018-04-04 16:53 - 2018-04-04 16:54 - 001754296 _____ () C:\Program Files (x86)\Microsoft Office\Root\Office16\tmpod.dll 2018-02-02 21:08 - 2018-02-02 21:08 - 002101232 _____ () C:\Program Files (x86)\Adobe\Acrobat DC\PDFMaker\Common\SendAsLinkX.dll 2018-02-02 21:08 - 2018-02-02 21:08 - 000230912 _____ () C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Locale\nl_NL\Adobe Send\SendAsLinkX.NLD 2018-04-04 16:55 - 2018-04-04 16:55 - 001452728 _____ () C:\Program Files (x86)\Microsoft Office\root\Office16\ClientTelemetry.dll 2018-04-04 16:55 - 2018-04-04 16:55 - 000548016 _____ () C:\Program Files (x86)\Microsoft Office\root\Office16\msfad.dll 2017-06-30 08:58 - 2017-06-30 08:58 - 003352616 _____ () C:\Program Files\iSpring\Converter Pro 8\win32\xerces-c_2_8.dll 2015-03-17 01:34 - 2015-03-17 01:34 - 000151552 _____ () C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Locale\nl_nl\PDFMaker\PDFMOfficeAddin.NLD 2018-04-04 16:54 - 2018-04-04 16:54 - 000164528 _____ () C:\Program Files (x86)\Microsoft Office\root\Office16\JitV.dll ==================== Alternate Data Streams (gefilterd) ========= (Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.) AlternateDataStreams: C:\ProgramData:iSpring Converter Pro 8 [908] AlternateDataStreams: C:\Users\All Users:iSpring Converter Pro 8 [908] AlternateDataStreams: C:\ProgramData\Application Data:iSpring Converter Pro 8 [908] AlternateDataStreams: C:\Users\broek\Application Data:iSpring Converter Pro 8 [908] AlternateDataStreams: C:\Users\broek\AppData\Roaming:iSpring Converter Pro 8 [908] ==================== Veilige Modus (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.) ==================== Bestandskoppeling (gefilterd) =============== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd.) ==================== Internet Explorer vertrouwde/beperkte toegang =============== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd.) ==================== Hosts inhoud: =============================== (Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.) 2017-09-29 15:46 - 2017-09-29 15:44 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts ==================== Andere gebieden ============================ (Momenteel is er geen automatische fix voor dit onderdeel.) HKU\S-1-5-21-576629670-1266948981-1518855768-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\broek\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 213.46.228.196 - 62.179.104.196 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Windows Firewall is ingeschakeld. ==================== MSCONFIG/TASK MANAGER Uitgeschakelde items == MSCONFIG\Services: bthserv => 2 MSCONFIG\Services: btwdins => 2 MSCONFIG\Services: CFUACProxy_officeguardianc3 => 2 MSCONFIG\Services: ClickFreeC3WifiCfgService => 3 MSCONFIG\Services: ClickFreeCFNetAgentService => 2 MSCONFIG\Services: ClickFreeFirewallSettingService => 2 MSCONFIG\Services: Motorola Device Manager => 2 MSCONFIG\startupreg: GoogleChromeAutoLaunch_4AF3CD5253A8B108534F19D0562A43FF => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window MSCONFIG\startupreg: MusicManager => "C:\Users\broek\AppData\Local\Programs\Google\MusicManager\MusicManager.exe" ==================== Firewall regels (gefilterd) =============== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) FirewallRules: [{C4E5C246-065F-4A10-994D-84A7BF88134B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{DD5872E6-2207-4543-BF7F-133F88C79536}] => (Allow) C:\Program Files (x86)\Laplink\PCmover\pcmservice.exe FirewallRules: [TCP Query User{433C4A05-630F-4F53-A2BD-EEE0FF5F17C8}C:\program files (x86)\companionlink\companionlink.exe] => (Allow) C:\program files (x86)\companionlink\companionlink.exe FirewallRules: [UDP Query User{8757D470-27C5-4535-86EE-10A1592FF4D4}C:\program files (x86)\companionlink\companionlink.exe] => (Allow) C:\program files (x86)\companionlink\companionlink.exe FirewallRules: [{56619587-E90B-4D0F-80C7-9EE55ECF6F89}] => (Block) C:\program files (x86)\companionlink\companionlink.exe FirewallRules: [{75C1BD86-CEB7-4C1D-ADF1-4183B6290655}] => (Block) C:\program files (x86)\companionlink\companionlink.exe FirewallRules: [{60037EE8-D519-4651-B38E-5338F2C5572B}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8500 A910\bin\FaxApplications.exe FirewallRules: [{55D17754-9451-4665-B08E-03CC5930985D}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8500 A910\bin\DigitalWizards.exe FirewallRules: [{2A38D7EB-6868-444E-9D7A-4ADCA4102835}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8500 A910\bin\SendAFax.exe FirewallRules: [{AAE2ADE4-034E-4697-892D-1D0AD657A8BA}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\DeviceSetup.exe FirewallRules: [{2216238D-AC54-43D7-9FAE-8EE5F8E9C65D}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\HPNetworkCommunicator.exe FirewallRules: [{1AF872AC-36FF-441A-8717-54952C691ACB}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{C09AF8E3-586D-4002-B878-0BC106B3FD63}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{D6C3460D-6B28-4C28-8465-0D1202020772}] => (Allow) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.EXE FirewallRules: [{1F2667C5-AD7D-404E-A123-B3384287A7FE}] => (Allow) C:\Users\broek\AppData\Local\Temp\7zS480F\HPDiagnosticCoreUI.exe FirewallRules: [{5297A234-4571-44BA-8946-082F9206AD60}] => (Allow) C:\Users\broek\AppData\Local\Temp\7zS480F\HPDiagnosticCoreUI.exe FirewallRules: [{2EFBEFAE-488F-4A97-B84E-D6F0BE6ADFC8}] => (Allow) C:\Program Files\Siber Systems\GoodSync\gs-server.exe FirewallRules: [{205A2F41-1B49-46EB-BFB7-90B234F99221}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{06BB0201-0CF0-498F-B278-DEC6BB003576}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{2A01B077-67E5-4CED-981F-277F99CB6179}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{1931EAE4-E240-442A-A649-CCE077A45531}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{3B6F6656-A80E-423D-AFE6-7D59167071A4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{8552AB3D-1978-46FF-B4D1-A745DE4CE273}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.77.338.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{A17F49FC-B729-4442-8E49-F4BAD380C379}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.77.338.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{9042C2D7-75BF-418E-A93D-D12A5E626C8F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.77.338.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{4A88D8FF-896C-467D-95EA-1FD86C4CC8FB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.77.338.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{5D59D0F4-C87E-49BA-8118-BB991DC62251}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.77.338.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{5F399493-D7AE-485F-B97F-874BBEF11413}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.77.338.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{06352C7A-757E-4828-99A4-0127E5281AA2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.77.338.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{EAD5E1F1-7527-4906-A200-76CFC575EE72}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.77.338.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{E5F514C9-E1C9-41A4-AA90-FF0821BA40AD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.77.338.0_x86__zpdnekdrzrea0\SpotifyWebHelper.exe FirewallRules: [{17AFE0A4-B341-4401-A8F8-A5AE6A45443D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.77.338.0_x86__zpdnekdrzrea0\SpotifyWebHelper.exe ==================== Herstelpunten ========================= 03-04-2018 21:54:01 Removed Bonjour 03-04-2018 21:58:42 Removed Bonjour 04-04-2018 11:19:16 Microsoft Office 2007 Primary Interop Assemblies is verwijderd 04-04-2018 12:01:17 Removed CompanionLink 04-04-2018 12:11:20 Installed CompanionLink 05-04-2018 09:41:39 Removed CompanionLink 05-04-2018 10:51:10 Installed CompanionLink 11-04-2018 11:42:55 Windows Update ==================== Defecte Apparaatbeheer Apparaten ============= Name: Officejet Pro 8500 A910 Description: Officejet Pro 8500 A910 Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318} Manufacturer: HP Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Generic Bluetooth Radio Description: Generic Bluetooth Radio Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Cambridge Silicon Radio Ltd. Service: BTHUSB Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Eventlog fouten: ========================= Applicatiefouten: ================== Error: (04/12/2018 10:12:11 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Naam van toepassing met fout: FRST64.exe, versie: 14.3.2018.0, tijdstempel: 0x5aa95005 Naam van module met fout: FRST64.exe, versie: 14.3.2018.0, tijdstempel: 0x5aa95005 Uitzonderingscode: 0xc0000005 Foutmarge: 0x0000000000024b29 Id van proces met fout: 0x2734 Starttijd van toepassing met fout: 0x01d3d235ce05bcc6 Pad naar toepassing met fout: C:\Users\broek\Desktop\FRST64.exe Pad naar module met fout: C:\Users\broek\Desktop\FRST64.exe Rapport-id: 8ec2829d-c454-4978-b6df-968cf0624769 Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Error: (04/12/2018 10:11:31 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Fout in de Volume Shadow Copy-service: onverwachte fout bij het aanroepen van routine QueryFullProcessImageNameW. hr = 0x8007001f, Een apparaat dat op het systeem is aangesloten, werkt niet. . Bewerking: Asynchrone bewerking uitvoeren Context: Huidige status: DoSnapshotSet Error: (04/12/2018 10:11:07 AM) (Source: VSS) (EventID: 8194) (User: ) Description: Fout in de Volume Shadow Copy-service: onverwachte fout bij het uitvoeren van een query voor de IVssWriterCallback-interface. hr = 0x80070005, Toegang geweigerd. . Dit wordt vaak veroorzaakt door onjuiste beveiligingsinstellingen in het writer- of requestorproces. Bewerking: Schrijvergegevens verzamelen Context: Klasse-id van schrijver: {e8132975-6f93-4464-a53e-1050253ae220} Naam van schrijver: System Writer Instantie-id van schrijver: {4bac04b8-30a5-4d91-91ab-fde248d670e0} Error: (04/12/2018 09:33:09 AM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY) Description: De initialisatie van de SCEP-certificaatinschrijving voor WORKGROUP\FTH-MICHIELVAND$ via https://IFX-KeyId-ce77153b6e110ca4ae2971a09851ef499326202a.microsoftaik.azure.net/templates/Aik/scep is mislukt: GetCACaps GetCACaps: Not Found {"Message":"The authority \"ifx-keyid-ce77153b6e110ca4ae2971a09851ef499326202a.microsoftaik.azure.net\" does not exist."} HTTP/1.1 404 Not Found Cache-Control: no-cache Date: Thu, 12 Apr 2018 07:33:07 GMT Pragma: no-cache Content-Length: 121 Content-Type: application/json; charset=utf-8 Expires: -1 x-ms-request-id: 97c31ec0-d95d-41b3-a660-0b0abddc5f0d Strict-Transport-Security: max-age=31536000;includeSubDomains X-Content-Type-Options: nosniff Methode: GET(297ms) Fase: GetCACaps Niet gevonden (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND) Error: (04/12/2018 08:28:23 AM) (Source: SideBySide) (EventID: 35) (User: ) Description: Kan activeringscontext voor 'C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest' niet maken. Fout in manifest of beleidsbestand 'C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL op regel 1. Onderdeel-id in manifest komt niet overeen met de id van het gevraagde onderdeel. Verwijzing is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0". Definitie is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0". Gebruik sxstrace.exe voor gedetailleerde diagnose. Error: (04/11/2018 03:09:07 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY) Description: De initialisatie van de SCEP-certificaatinschrijving voor WORKGROUP\FTH-MICHIELVAND$ via https://IFX-KeyId-ce77153b6e110ca4ae2971a09851ef499326202a.microsoftaik.azure.net/templates/Aik/scep is mislukt: GetCACaps GetCACaps: Not Found {"Message":"The authority \"ifx-keyid-ce77153b6e110ca4ae2971a09851ef499326202a.microsoftaik.azure.net\" does not exist."} HTTP/1.1 404 Not Found Cache-Control: no-cache Date: Wed, 11 Apr 2018 13:09:05 GMT Pragma: no-cache Content-Length: 121 Content-Type: application/json; charset=utf-8 Expires: -1 x-ms-request-id: cdecd20c-3079-47e7-9b2a-8bc9d51100ee Strict-Transport-Security: max-age=31536000;includeSubDomains X-Content-Type-Options: nosniff Methode: GET(688ms) Fase: GetCACaps Niet gevonden (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND) Error: (04/11/2018 03:08:56 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: Kan DLL voor uitbreidbare items rdyboost niet laden. De eerste vier bytes (DWORD) in de sectie Gegevens bevatten de Windows-foutcode. Error: (04/11/2018 01:29:14 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Het programma RevoUn.exe, versie 2.0.5.0 reageert niet meer op Windows en is afgesloten. Als u wilt zien of er meer informatie over het probleem beschikbaar is, raadpleegt u de probleemgeschiedenis in het onderdeel Beveiliging en onderhoud van het Configuratiescherm. Proces-id: e00 Starttijd: 01d3d17999a887cc Eindtijd: 4294967295 Toepassingspad: C:\Users\broek\Downloads\RevoUninstaller_Portable (1)\RevoUninstaller_Portable\x64\RevoUn.exe Rapport-id: 1638c9d5-8b25-4a86-a4ff-5563bac8992d Volledige pakketnaam met fout: Relatieve toepassings-id van pakket met fout: Systeemfouten: ============= Error: (04/12/2018 10:35:16 AM) (Source: DCOM) (EventID: 10016) (User: FTH-MICHIELVAND) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker FTH-MICHIELVAND\broek SID (S-1-5-21-576629670-1266948981-1518855768-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/12/2018 10:16:12 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/12/2018 09:54:13 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/12/2018 09:47:53 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/12/2018 09:42:57 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/12/2018 09:41:32 AM) (Source: Disk) (EventID: 7) (User: ) Description: Beschadigd blok in apparaat \Device\Harddisk3\DR10. Error: (04/12/2018 09:41:19 AM) (Source: DCOM) (EventID: 10016) (User: FTH-MICHIELVAND) Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} en APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} aan de gebruiker FTH-MICHIELVAND\broek SID (S-1-5-21-576629670-1266948981-1518855768-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services. Error: (04/12/2018 09:40:32 AM) (Source: Microsoft-Windows-Ntfs) (EventID: 98) (User: NT AUTHORITY) Description: H:\Device\HarddiskVolume152 CodeIntegrity: =================================== Date: 2018-04-12 11:38:35.330 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.stdformat.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-12 11:38:35.310 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\adodb.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-12 11:38:35.284 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\msdatasrc.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-12 11:38:35.230 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.stdformat.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-12 11:38:35.219 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\adodb.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-12 11:38:35.210 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\msdatasrc.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-12 11:38:34.564 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements. Date: 2018-04-12 11:38:34.453 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements. ==================== Geheugen info =========================== Processor: Intel(R) Core(TM) i7-8550U CPU @ 1.80GHz Percentage geheugen in gebruik: 38% Totaal fysiek RAM-geheugen: 16238.05 MB Beschikbaar fysiek RAM-geheugen: 9925.83 MB Totaal Virtueel geheugen: 18670.05 MB Beschikbaar Virtual geheugen: 11548.84 MB ==================== Schijven ================================ Drive c: (Windows) (Fixed) (Total:237.23 GB) (Free:102.54 GB) NTFS Drive e: (WD Unlocker) (CDROM) (Total:0.01 GB) (Free:0 GB) UDF Drive g: () (Removable) (Total:119.07 GB) (Free:26.85 GB) NTFS Drive h: (My Passport) (Fixed) (Total:931.48 GB) (Free:740.88 GB) NTFS Drive i: (SAMSUNG) (Fixed) (Total:596 GB) (Free:384.37 GB) FAT32 ==>[systeem met boot componenten (verkregen van schijf)] \\?\Volume{fd38d224-bd6d-4e07-8a46-93c0e5db633e}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32 \\?\Volume{d675ae9b-2d35-4591-8bac-41cdfc1801fb}\ (WinRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.58 GB) NTFS ==================== MBR & Partitietabel ================== ======================================================== Disk: 0 (Size: 238.5 GB) (Disk ID: F2B1EDFA) Partition: GPT. ======================================================== Disk: 1 (Protective MBR) (Size: 119.1 GB) (Disk ID: 00000000) Partition: GPT. ======================================================== Disk: 3 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: 00023F15) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 4 (MBR Code: Windows XP) (Size: 596.2 GB) (Disk ID: D3F3F7B4) Partition 1: (Active) - (Size=596.2 GB) - (Type=0C) ==================== Eind van Addition.txt ============================