Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 15.04.2018 Gestart door Bettina (15-04-2018 23:34:18) Run:1 Gestart vanaf C:\Users\Bettina\Desktop Geladen Profielen: Bettina (Beschikbare Profielen: Bettina) Boot Modus: Normal ============================================== fixlist inhoud: ***************** CreateRestorePoint: CHR HKLM\SOFTWARE\Policies\Google: Restrictie <==== AANDACHT HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrictie <==== AANDACHT R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [554408 2018-02-16] (AO Kaspersky Lab) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [218080 2018-02-16] (AO Kaspersky Lab) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [355168 2018-02-16] (AO Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [1079264 2018-02-16] (AO Kaspersky Lab) U3 iswSvc; geen ImagePath 2018-04-14 01:06 - 2018-02-16 22:59 - 000554408 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\kl1.sys 2018-04-14 01:06 - 2018-02-16 22:59 - 000355168 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klhk.sys 2018-04-14 01:06 - 2018-02-16 22:59 - 000151864 _____ (AO Kaspersky Lab) C:\Windows\system32\klhkum.dll 2018-04-14 00:14 - 2018-04-14 00:14 - 001205856 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\uninstaller (4).exe 2018-04-14 00:14 - 2018-04-14 00:14 - 001205856 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\uninstaller (3).exe 2018-04-14 00:11 - 2018-04-14 00:11 - 001205856 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\uninstaller (2).exe 2018-04-14 00:10 - 2018-04-14 00:10 - 001205856 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\uninstaller.exe 2018-04-14 00:10 - 2018-04-14 00:10 - 001205856 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\uninstaller (1).exe 2018-04-13 21:25 - 2018-04-13 21:25 - 064481608 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\FREEAV (1).exe 2018-04-13 21:21 - 2018-04-13 21:22 - 064481608 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\FREEAV.exe 2018-04-13 21:05 - 2018-04-13 21:05 - 002145376 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\PANDAFREEAV (8).exe 2018-04-13 21:04 - 2018-04-13 21:04 - 002145376 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\PANDAFREEAV (7).exe 2018-04-13 21:01 - 2018-04-13 21:01 - 002145376 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\PANDAFREEAV (6).exe 2018-04-13 21:01 - 2018-04-13 21:01 - 002145376 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\PANDAFREEAV (5).exe 2018-04-13 21:01 - 2018-04-13 21:01 - 002145376 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\PANDAFREEAV (4).exe 2018-04-13 20:57 - 2018-04-13 20:57 - 002145376 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\PANDAFREEAV (3).exe 2018-04-13 20:50 - 2018-04-13 20:50 - 002145376 _____ (Panda Security, S.L.) C:\Users\Bettina\Downloads\PANDAFREEAV (2).exe 2018-04-13 09:55 - 2018-04-13 16:10 - 000000000 ____D C:\ProgramData\panda_url_filtering 2018-04-14 12:18 - 2016-12-14 22:34 - 000000000 ____D C:\ProgramData\Panda Security 2018-04-13 14:25 - 2016-12-14 22:35 - 000000000 ____D C:\Users\Bettina\AppData\Roaming\Panda Security 2018-04-14 12:42 - 2018-04-14 12:55 - 000040960 _____ (Realtek) C:\Users\Bettina\AppData\Local\Temp\rtdrvmon.exe ContextMenuHandlers1: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => -> Geen bestand ContextMenuHandlers1: [ZLAVShExt] -> {D9872D13-7651-4471-9EEE-F0A00218BEBB} => C:\Program Files (x86)\CheckPoint\ZoneAlarm\zlavscan.dll -> Geen bestand ContextMenuHandlers5: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => -> Geen bestand ContextMenuHandlers6: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => -> Geen bestand ContextMenuHandlers6: [ZLAVShExt] -> {D9872D13-7651-4471-9EEE-F0A00218BEBB} => C:\Program Files (x86)\CheckPoint\ZoneAlarm\zlavscan.dll -> Geen bestand FirewallRules: [{8CD18BBB-B56C-4036-88E3-E5086AD305B7}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{FAD43413-1AA3-410E-B815-E0736D070052}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{FC928F10-4C4F-4143-B639-1FFBE2F4C23C}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{0A5B5BCD-D26D-4A06-B555-E317637DD214}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe CloseProcesses: EmptyTemp: end ***************** Herstelpunt is succesvol gemaakt. "HKLM\SOFTWARE\Policies\Google" => is succesvol verwijderd "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => is succesvol verwijderd kl1 => Kon service niet stoppen. "HKLM\System\CurrentControlSet\Services\kl1" => is succesvol verwijderd kl1 => dienst is succesvol verwijderd klflt => Kon service niet stoppen. "HKLM\System\CurrentControlSet\Services\klflt" => is succesvol verwijderd klflt => dienst is succesvol verwijderd klhk => Kon service niet stoppen. "HKLM\System\CurrentControlSet\Services\klhk" => is succesvol verwijderd klhk => dienst is succesvol verwijderd KLIF => Kon service niet stoppen. "HKLM\System\CurrentControlSet\Services\KLIF" => is succesvol verwijderd KLIF => dienst is succesvol verwijderd "HKLM\System\CurrentControlSet\Services\iswSvc" => is succesvol verwijderd iswSvc => dienst is succesvol verwijderd C:\Windows\system32\Drivers\kl1.sys => is succesvol verplaatst C:\Windows\system32\Drivers\klhk.sys => is succesvol verplaatst C:\Windows\system32\klhkum.dll => is succesvol verplaatst C:\Users\Bettina\Downloads\uninstaller (4).exe => is succesvol verplaatst C:\Users\Bettina\Downloads\uninstaller (3).exe => is succesvol verplaatst C:\Users\Bettina\Downloads\uninstaller (2).exe => is succesvol verplaatst C:\Users\Bettina\Downloads\uninstaller.exe => is succesvol verplaatst C:\Users\Bettina\Downloads\uninstaller (1).exe => is succesvol verplaatst C:\Users\Bettina\Downloads\FREEAV (1).exe => is succesvol verplaatst C:\Users\Bettina\Downloads\FREEAV.exe => is succesvol verplaatst C:\Users\Bettina\Downloads\PANDAFREEAV (8).exe => is succesvol verplaatst C:\Users\Bettina\Downloads\PANDAFREEAV (7).exe => is succesvol verplaatst C:\Users\Bettina\Downloads\PANDAFREEAV (6).exe => is succesvol verplaatst C:\Users\Bettina\Downloads\PANDAFREEAV (5).exe => is succesvol verplaatst C:\Users\Bettina\Downloads\PANDAFREEAV (4).exe => is succesvol verplaatst C:\Users\Bettina\Downloads\PANDAFREEAV (3).exe => is succesvol verplaatst C:\Users\Bettina\Downloads\PANDAFREEAV (2).exe => is succesvol verplaatst C:\ProgramData\panda_url_filtering => is succesvol verplaatst C:\ProgramData\Panda Security => is succesvol verplaatst C:\Users\Bettina\AppData\Roaming\Panda Security => is succesvol verplaatst C:\Users\Bettina\AppData\Local\Temp\rtdrvmon.exe => is succesvol verplaatst "HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\UAContextMenu" => is succesvol verwijderd HKLM\Software\Classes\CLSID\{A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => niet gevonden "HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ZLAVShExt" => is succesvol verwijderd "HKLM\Software\Classes\CLSID\{D9872D13-7651-4471-9EEE-F0A00218BEBB}" => is succesvol verwijderd "HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\UAContextMenu" => is succesvol verwijderd HKLM\Software\Classes\CLSID\{A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => niet gevonden "HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\UAContextMenu" => is succesvol verwijderd HKLM\Software\Classes\CLSID\{A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => niet gevonden "HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\ZLAVShExt" => is succesvol verwijderd HKLM\Software\Classes\CLSID\{D9872D13-7651-4471-9EEE-F0A00218BEBB} => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8CD18BBB-B56C-4036-88E3-E5086AD305B7}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FAD43413-1AA3-410E-B815-E0736D070052}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FC928F10-4C4F-4143-B639-1FFBE2F4C23C}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0A5B5BCD-D26D-4A06-B555-E317637DD214}" => is succesvol verwijderd Proces succesvol afgesloten. =========== EmptyTemp: ========== BITS transfer queue => 8388608 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 59203262 B Java, Flash, Steam htmlcache => 1246 B Windows/system/drivers => 19490310 B Edge => 0 B Chrome => 393434412 B Firefox => 24017828 B Opera => 853906 B Temp, IE cache, history, cookies, recent: Users => 0 B Default => 0 B Public => 0 B ProgramData => 0 B systemprofile => 16802 B systemprofile32 => 66356 B LocalService => 40960 B NetworkService => 0 B Bettina => 95430661 B RecycleBin => 65449 B EmptyTemp: => 573.2 MB tijdelijke gegevens verwijderd. ================================ Het systeem moest herstart worden. ==== Eind van Fixlog 23:35:23 ====