Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 02-05.2019 Gestart door Mike van Gelderen (03-05-2019 11:59:00) Run:1 Gestart vanaf C:\Users\Mike van Gelderen\Desktop\Nieuwe map (3) Geladen Profielen: Mike van Gelderen (Beschikbare Profielen: defaultuser0 & Mike van Gelderen) Boot Modus: Normal ============================================== fixlist inhoud: ***************** start CreateRestorePoint: ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand 2019-05-02 05:19 - 2019-05-02 05:19 - 000529920 _____ (JPEXS) [Bestand niet getekend] C:\Users\Mike van Gelderen\AppData\Local\Temp\javactivex_1556767156837.exe 2019-05-02 05:19 - 2019-05-02 05:19 - 000224840 ____N (Java(TM) Native Access (JNA)) [Bestand niet getekend] C:\Users\Mike van Gelderen\AppData\Local\Temp\jna-Mike van Gelderen\jna4009550277653100749.dll FirewallRules: [UDP Query User{05410AAF-753C-4AC9-9BAB-556A83AD0586}C:\users\mike van gelderen\appdata\local\discordgames\king of the hat\content\kingofthehat.exe] => (Allow) C:\users\mike van gelderen\appdata\local\discordgames\king of the hat\content\kingofthehat.exe Geen bestand FirewallRules: [TCP Query User{25910400-4481-484D-8DF2-2DD022F07986}C:\users\mike van gelderen\appdata\local\discordgames\king of the hat\content\kingofthehat.exe] => (Allow) C:\users\mike van gelderen\appdata\local\discordgames\king of the hat\content\kingofthehat.exe Geen bestand C:\Users\Mike van Gelderen\AppData\Local\Temp\Rar$EXb5796.23284\supermeatboy1010u810trainer\super_meat_boy_plus10_trainer.exe C:\Users\Mike van Gelderen\AppData\Local\Temp\Rar$EXb5796.6833\supermeatboy1010u810trainer\super_meat_boy_plus10_trainer.exe C:\Users\Mike van Gelderen\AppData\Local\Temp\Rar$EXb5796.7715\supermeatboy1010u810trainer\super_meat_boy_plus10_trainer.exe C:\Users\Mike van Gelderen\AppData\Local\Temp\Rar$EXb5796.1812\supermeatboy1010u810trainer\super_meat_boy_plus10_trainer.exe (JPEXS) [Bestand niet getekend] C:\Users\Mike van Gelderen\AppData\Local\Temp\javactivex_1556767156837.exe Task: {9D6EC343-1307-4F8B-A3BF-F1EEBA1244D0} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2380088 2019-04-06] (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\Common Files\AVAST Software HKU\S-1-5-21-1207944724-1315577772-3040610273-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.goe-web.com/ SearchScopes: HKU\S-1-5-21-1207944724-1315577772-3040610273-1001 -> DefaultScope {1B8C0769-18E2-4DBF-A054-5C3F1FF526D6} URL = hxxp://www.goe-web.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-1207944724-1315577772-3040610273-1001 -> {1B8C0769-18E2-4DBF-A054-5C3F1FF526D6} URL = hxxp://www.goe-web.com/search?q={searchTerms} Edge HomeButtonPage: HKU\S-1-5-21-1207944724-1315577772-3040610273-1001 -> hxxp://www.goe-web.com/ CHR HomePage: Default -> hxxp://www.goe-web.com/ CHR StartupUrls: Default -> "hxxp://www.goe-web.com/" CHR HKU\S-1-5-21-1207944724-1315577772-3040610273-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcebahaopmklkfaaacddffiomjjldmkk] - hxxps://clients2.google.com/service/update2/crx 2019-04-29 01:51 - 2019-04-29 01:51 - 000347073 _____ C:\Users\Mike van Gelderen\Downloads\supermeatboy1010u810trainer.zip 2019-04-29 01:42 - 2019-04-29 01:42 - 000001903 _____ C:\Users\Mike van Gelderen\Downloads\super_meat_boy_trainer.zip 2019-04-04 19:37 - 2019-04-04 19:39 - 394151287 _____ C:\Users\Mike van Gelderen\Downloads\SuperMeatBoy_20181019_Humble.zip 2019-04-09 18:24 - 2019-01-05 05:49 - 000000000 ____D C:\ProgramData\AVAST Software EmptyTemp: end ***************** Fout: (0) Mislukt om een herstelpunt te maken. HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => is succesvol verwijderd HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => niet gevonden HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => is succesvol verwijderd HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => niet gevonden "C:\Users\Mike van Gelderen\AppData\Local\Temp\javactivex_1556767156837.exe" => niet gevonden C:\Users\Mike van Gelderen\AppData\Local\Temp\jna-Mike van Gelderen\jna4009550277653100749.dll => is succesvol verplaatst "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{05410AAF-753C-4AC9-9BAB-556A83AD0586}C:\users\mike van gelderen\appdata\local\discordgames\king of the hat\content\kingofthehat.exe" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{25910400-4481-484D-8DF2-2DD022F07986}C:\users\mike van gelderen\appdata\local\discordgames\king of the hat\content\kingofthehat.exe" => is succesvol verwijderd "C:\Users\Mike van Gelderen\AppData\Local\Temp\Rar$EXb5796.23284\supermeatboy1010u810trainer\super_meat_boy_plus10_trainer.exe" => niet gevonden "C:\Users\Mike van Gelderen\AppData\Local\Temp\Rar$EXb5796.6833\supermeatboy1010u810trainer\super_meat_boy_plus10_trainer.exe" => niet gevonden "C:\Users\Mike van Gelderen\AppData\Local\Temp\Rar$EXb5796.7715\supermeatboy1010u810trainer\super_meat_boy_plus10_trainer.exe" => niet gevonden "C:\Users\Mike van Gelderen\AppData\Local\Temp\Rar$EXb5796.1812\supermeatboy1010u810trainer\super_meat_boy_plus10_trainer.exe" => niet gevonden C:\Users\Mike van Gelderen\AppData\Local\Temp\javactivex_1556767156837.exe => Geen lopend proces gevonden "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{9D6EC343-1307-4F8B-A3BF-F1EEBA1244D0}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9D6EC343-1307-4F8B-A3BF-F1EEBA1244D0}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Avast Software\Overseer => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Avast Software\Overseer" => is succesvol verwijderd C:\Program Files\Common Files\AVAST Software => is succesvol verplaatst HKU\S-1-5-21-1207944724-1315577772-3040610273-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => waarde met succes hersteld "HKU\S-1-5-21-1207944724-1315577772-3040610273-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => is succesvol verwijderd HKU\S-1-5-21-1207944724-1315577772-3040610273-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1B8C0769-18E2-4DBF-A054-5C3F1FF526D6} => is succesvol verwijderd HKLM\Software\Classes\CLSID\{1B8C0769-18E2-4DBF-A054-5C3F1FF526D6} => niet gevonden "HKU\S-1-5-21-1207944724-1315577772-3040610273-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\Main\\HomeButtonPage" => is succesvol verwijderd "Chrome HomePage" => is succesvol verwijderd "Chrome StartupUrls" => is succesvol verwijderd HKU\S-1-5-21-1207944724-1315577772-3040610273-1001\SOFTWARE\Google\Chrome\Extensions\fcebahaopmklkfaaacddffiomjjldmkk => is succesvol verwijderd C:\Users\Mike van Gelderen\Downloads\supermeatboy1010u810trainer.zip => is succesvol verplaatst C:\Users\Mike van Gelderen\Downloads\super_meat_boy_trainer.zip => is succesvol verplaatst C:\Users\Mike van Gelderen\Downloads\SuperMeatBoy_20181019_Humble.zip => is succesvol verplaatst C:\ProgramData\AVAST Software => is succesvol verplaatst =========== EmptyTemp: ========== BITS transfer queue => 10248192 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 51931894 B Java, Flash, Steam htmlcache => 10963 B Windows/system/drivers => 4542175 B Edge => 1389588 B Chrome => 852985952 B Firefox => 92914772 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 0 B LocalService => 0 B NetworkService => 62156 B NetworkService => 0 B defaultuser0 => 0 B Mike van Gelderen => 411560358 B RecycleBin => 0 B EmptyTemp: => 1.3 GB tijdelijke gegevens verwijderd. ================================ Het systeem moest herstart worden. ==== Einde van Fixlog 12:03:40 ====