Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 12-08-2020 Gestart door Gebruiker (18-08-2020 14:47:14) Run:1 Gestart vanaf C:\Users\Gebruiker\Downloads Geladen Profielen: Gebruiker Boot Modus: Normal ============================================== fixlist inhoud: ***************** CreateRestorePoint: AppInit_DLLs: C:\Users\GEBRUI~1\AppData\Local\Linkey\IEEXTE~1\iedll64.dll => Geen bestand GroupPolicy\User: Restrictie ? <==== AANDACHT CHR HKLM\SOFTWARE\Policies\Google: Restrictie <==== AANDACHT Task: {0BD41FF5-7FD2-4CB4-A833-E46DE67F42B9} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Geen bestand <==== AANDACHT Task: {1A032D6A-6F1B-4CA4-91DF-C9BC82C00F93} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Geen bestand <==== AANDACHT Task: {467D9D91-2113-494E-AB11-B76EC12E0103} - System32\Tasks\{F7A65E1A-318C-48F0-8ABE-667976911B46} => "c:\program files (x86)\mozilla firefox\firefox.exe" hxxps://ui.skype.com/ui/0/7.36.0.101/nl/go/help.faq.installer?LastError=1618 Task: {5073F3B6-C480-4A53-A6FF-B42A3226B0B2} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Geen bestand <==== AANDACHT Task: {5093635F-7029-4B79-938E-2F1D521F8B6A} - \2BrightSparks\SyncBackFree\Gebruiker-PC-Gebruiker\SyncBackFree -> Geen bestand <==== AANDACHT Task: {5388CD69-F7C4-4096-9F67-F8FF6D0D87AA} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Geen bestand <==== AANDACHT Task: {729A268C-1856-4231-BE1B-80BC1F6837C7} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Geen bestand <==== AANDACHT Task: {7C38B631-E7C8-4865-8F70-2DC12788455A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Geen bestand <==== AANDACHT Task: {800DDB39-0657-41B4-831D-BC9DEAA9AD4D} - \Microsoft\Windows\UNP\RunCampaignManager -> Geen bestand <==== AANDACHT Task: {CA0838B9-AAD7-4FE5-9E33-69B522D9D5ED} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Geen bestand <==== AANDACHT Task: {CA3AEABD-1660-4F57-8ED5-12B850D9D275} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Geen bestand <==== AANDACHT Task: {D2F477F2-60D5-4548-897C-95E3C35F515C} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Geen bestand <==== AANDACHT Task: {D3AAD3A6-C447-4ED1-80AB-C1A565DF2299} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Geen bestand <==== AANDACHT Task: {F3DB37CC-C9A2-4242-A820-FCD784F6A528} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Geen bestand <==== AANDACHT Task: {FE161114-9CFB-45F7-926F-0B6093A7DCBB} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Geen bestand <==== AANDACHT HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrictie <==== AANDACHT BHO: Geen Naam -> {4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} -> Geen bestand BHO-x32: Geen Naam -> {4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} -> Geen bestand BHO-x32: Advanced SystemCare Browser Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll [2014-02-20] (IObit Information Technology -> IObit) Toolbar: HKLM - Geen Naam - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - Geen bestand Toolbar: HKLM - Geen Naam - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - Geen bestand Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Geen bestand FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [Geen bestand] S3 WsDrvInst; "C:\Program Files (x86)\Wondershare\MobileGo-b\DriverInstall.exe" [X] U3 idsvc; geen ImagePath CustomCLSID: HKU\S-1-5-21-3963349371-3354336234-3057670200-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Gebruiker\AppData\Local\Microsoft\OneDrive\19.232.1124.0010\amd64\FileSyncShell64.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-3963349371-3354336234-3057670200-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Gebruiker\AppData\Local\Microsoft\OneDrive\19.232.1124.0010\amd64\FileSyncShell64.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-3963349371-3354336234-3057670200-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Gebruiker\AppData\Local\Microsoft\OneDrive\19.232.1124.0010\amd64\FileSyncShell64.dll => Geen bestand ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand FirewallRules: [UDP Query User{486417FA-EDF9-459C-B87F-ACDD4A98C7BD}C:\program files (x86)\wondershare\mobilego-b\mobilegoservice.exe] => (Block) C:\program files (x86)\wondershare\mobilego-b\mobilegoservice.exe => Geen bestand FirewallRules: [TCP Query User{C15A7D7B-6C19-4E1E-92F8-D4B1BD6DC044}C:\program files (x86)\wondershare\mobilego-b\mobilegoservice.exe] => (Block) C:\program files (x86)\wondershare\mobilego-b\mobilegoservice.exe => Geen bestand FirewallRules: [UDP Query User{1CD85904-2853-4A29-8EBA-0513A520C8A4}C:\program files (x86)\wondershare\mobilego-b\mobilegoservice.exe] => (Allow) C:\program files (x86)\wondershare\mobilego-b\mobilegoservice.exe => Geen bestand FirewallRules: [TCP Query User{5FB0B552-8C08-4CED-B3EB-EC9CCC5157F5}C:\program files (x86)\wondershare\mobilego-b\mobilegoservice.exe] => (Allow) C:\program files (x86)\wondershare\mobilego-b\mobilegoservice.exe => Geen bestand EmptyTemp: Reboot: ***************** Fout: (0) Mislukt om een herstelpunt te maken. "C:\Users\GEBRUI~1\AppData\Local\Linkey\IEEXTE~1\iedll64.dll" => Waarde gegevens is succesvol verwijderd C:\WINDOWS\system32\GroupPolicy\User => is succesvol verplaatst C:\WINDOWS\system32\GroupPolicy\GPT.ini => is succesvol verplaatst C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => is succesvol verplaatst HKLM\SOFTWARE\Policies\Google => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0BD41FF5-7FD2-4CB4-A833-E46DE67F42B9}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0BD41FF5-7FD2-4CB4-A833-E46DE67F42B9}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1A032D6A-6F1B-4CA4-91DF-C9BC82C00F93}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1A032D6A-6F1B-4CA4-91DF-C9BC82C00F93}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{467D9D91-2113-494E-AB11-B76EC12E0103}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{467D9D91-2113-494E-AB11-B76EC12E0103}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\{F7A65E1A-318C-48F0-8ABE-667976911B46} => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F7A65E1A-318C-48F0-8ABE-667976911B46}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5073F3B6-C480-4A53-A6FF-B42A3226B0B2}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5073F3B6-C480-4A53-A6FF-B42A3226B0B2}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5093635F-7029-4B79-938E-2F1D521F8B6A}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5093635F-7029-4B79-938E-2F1D521F8B6A}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\2BrightSparks\SyncBackFree\Gebruiker-PC-Gebruiker\SyncBackFree" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5388CD69-F7C4-4096-9F67-F8FF6D0D87AA}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5388CD69-F7C4-4096-9F67-F8FF6D0D87AA}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{729A268C-1856-4231-BE1B-80BC1F6837C7}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{729A268C-1856-4231-BE1B-80BC1F6837C7}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7C38B631-E7C8-4865-8F70-2DC12788455A}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7C38B631-E7C8-4865-8F70-2DC12788455A}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{800DDB39-0657-41B4-831D-BC9DEAA9AD4D}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{800DDB39-0657-41B4-831D-BC9DEAA9AD4D}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => niet gevonden "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CA0838B9-AAD7-4FE5-9E33-69B522D9D5ED}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CA0838B9-AAD7-4FE5-9E33-69B522D9D5ED}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CA3AEABD-1660-4F57-8ED5-12B850D9D275}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CA3AEABD-1660-4F57-8ED5-12B850D9D275}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D2F477F2-60D5-4548-897C-95E3C35F515C}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D2F477F2-60D5-4548-897C-95E3C35F515C}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D3AAD3A6-C447-4ED1-80AB-C1A565DF2299}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D3AAD3A6-C447-4ED1-80AB-C1A565DF2299}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F3DB37CC-C9A2-4242-A820-FCD784F6A528}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3DB37CC-C9A2-4242-A820-FCD784F6A528}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FE161114-9CFB-45F7-926F-0B6093A7DCBB}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FE161114-9CFB-45F7-926F-0B6093A7DCBB}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => is succesvol verwijderd HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => is succesvol verwijderd HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} => is succesvol verwijderd HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} => is succesvol verwijderd HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} => is succesvol verwijderd HKLM\Software\Wow6432Node\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} => is succesvol verwijderd "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}" => is succesvol verwijderd "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}" => is succesvol verwijderd HKLM\Software\Classes\PROTOCOLS\Handler\skype4com => is succesvol verwijderd HKLM\Software\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf => is succesvol verwijderd HKLM\System\CurrentControlSet\Services\WsDrvInst => is succesvol verwijderd WsDrvInst => service is succesvol verwijderd HKLM\System\CurrentControlSet\Services\idsvc => is succesvol verwijderd idsvc => service is succesvol verwijderd HKU\S-1-5-21-3963349371-3354336234-3057670200-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => is succesvol verwijderd HKU\S-1-5-21-3963349371-3354336234-3057670200-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => is succesvol verwijderd HKU\S-1-5-21-3963349371-3354336234-3057670200-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast => is succesvol verwijderd HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{486417FA-EDF9-459C-B87F-ACDD4A98C7BD}C:\program files (x86)\wondershare\mobilego-b\mobilegoservice.exe" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{C15A7D7B-6C19-4E1E-92F8-D4B1BD6DC044}C:\program files (x86)\wondershare\mobilego-b\mobilegoservice.exe" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{1CD85904-2853-4A29-8EBA-0513A520C8A4}C:\program files (x86)\wondershare\mobilego-b\mobilegoservice.exe" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{5FB0B552-8C08-4CED-B3EB-EC9CCC5157F5}C:\program files (x86)\wondershare\mobilego-b\mobilegoservice.exe" => niet gevonden =========== EmptyTemp: ========== BITS transfer queue => 8937472 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 8791915 B Java, Flash, Steam htmlcache => 1158 B Windows/system/drivers => 5740721 B Edge => 1052490 B Chrome => 268446 B Firefox => 102646570 B Opera => 140963 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 255606 B NetworkService => 261362 B