Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 24-10-2020 Gestart door wendy_000 (25-10-2020 12:25:38) Run:2 Gestart vanaf C:\Users\wendy_000\Desktop Geladen Profielen: UpdatusUser & wendy_000 & Bike Ibiza Boot Modus: Normal ============================================== fixlist inhoud: ***************** start: CreateRestorePoint: CloseProcesses: HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restrictie <==== AANDACHT Task: {04D7E7BD-3C64-437F-AE98-F48555337016} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Geen bestand <==== AANDACHT Task: {128F9040-E9D9-403B-BD0F-217A91DDF248} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Geen bestand <==== AANDACHT Task: {1DD404AB-33C0-4CBD-8B08-1857A67A262D} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Geen bestand <==== AANDACHT Task: {284A7AD4-6954-4E00-97C5-16BC35D7FF38} - \Microsoft\Windows\UNP\RunCampaignManager -> Geen bestand <==== AANDACHT Task: {6E373D7A-16C2-468F-81A1-D8628D0048C2} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Geen bestand <==== AANDACHT Task: {6E43AD66-1ED2-4E46-B0F5-335419DAC4D8} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Geen bestand <==== AANDACHT Task: {9536672D-156C-4FB7-AD19-C00F753E3C4E} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Geen bestand <==== AANDACHT Task: {B09D6976-0C2D-4597-BF81-3D7D9D2C2D24} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Geen bestand <==== AANDACHT Task: {CA77D0BC-3D99-4764-A7B7-E36B304CD482} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Geen bestand <==== AANDACHT Task: {D828C3A0-046C-4F1C-B84B-AA347AE7DBA7} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Geen bestand <==== AANDACHT Task: {F35C1DA4-4C9C-4429-B97C-9102EDC26106} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Geen bestand <==== AANDACHT Task: {FE3E5EDE-F832-4E89-A7B8-6E0918FBEAF0} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Geen bestand <==== AANDACHT FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.3.8\\npsitesafety.dll [Geen bestand] CHR HKU\S-1-5-21-2738978234-4125683323-18102037-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [chfdnecihphmhljaaejmgoiahnihplgn]) ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand FirewallRules: [{4C49D456-8686-4E43-A5B1-D9DBE1949EB5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Geen bestand FirewallRules: [{BECCE4F2-BD84-4A88-A5F1-BF91491E2DD2}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Geen bestand FirewallRules: [{383D5908-1BC6-49E2-9FEF-F58CB26462D5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Geen bestand FirewallRules: [{C5C079AA-44A6-4B52-B0A7-7BB0AEABA97C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Geen bestand FirewallRules: [{376721AD-1AD2-49AB-97F7-5EF5222E0A40}] => (Allow) C:\Users\wendy_000\AppData\Roaming\Zoom\bin\airhost.exe => Geen bestand FirewallRules: [UDP Query User{9D11108E-6291-4EC5-9D91-06635C95F74C}C:\users\wendy_000\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\wendy_000\appdata\roaming\spotify\spotify.exe => Geen bestand FirewallRules: [TCP Query User{D42BF224-EE54-4B51-A0E5-EFC3CAAA05A4}C:\users\wendy_000\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\wendy_000\appdata\roaming\spotify\spotify.exe => Geen bestand FirewallRules: [UDP Query User{95694670-8D05-45B9-8EE9-9527DD75F8FB}C:\users\wendy_000\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\wendy_000\appdata\roaming\spotify\spotify.exe => Geen bestand FirewallRules: [TCP Query User{744B51D3-DDA1-45A4-8508-687F76723821}C:\users\wendy_000\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\wendy_000\appdata\roaming\spotify\spotify.exe => Geen bestand EmptyTemp: Reboot: end: ***************** Herstelpunt is succesvol gemaakt. Proces succesvol afgesloten. HKLM\SOFTWARE\Policies\Mozilla => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{04D7E7BD-3C64-437F-AE98-F48555337016}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{04D7E7BD-3C64-437F-AE98-F48555337016}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{128F9040-E9D9-403B-BD0F-217A91DDF248}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{128F9040-E9D9-403B-BD0F-217A91DDF248}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1DD404AB-33C0-4CBD-8B08-1857A67A262D}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1DD404AB-33C0-4CBD-8B08-1857A67A262D}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{284A7AD4-6954-4E00-97C5-16BC35D7FF38}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{284A7AD4-6954-4E00-97C5-16BC35D7FF38}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => niet gevonden "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6E373D7A-16C2-468F-81A1-D8628D0048C2}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6E373D7A-16C2-468F-81A1-D8628D0048C2}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6E43AD66-1ED2-4E46-B0F5-335419DAC4D8}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6E43AD66-1ED2-4E46-B0F5-335419DAC4D8}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9536672D-156C-4FB7-AD19-C00F753E3C4E}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9536672D-156C-4FB7-AD19-C00F753E3C4E}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B09D6976-0C2D-4597-BF81-3D7D9D2C2D24}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B09D6976-0C2D-4597-BF81-3D7D9D2C2D24}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CA77D0BC-3D99-4764-A7B7-E36B304CD482}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CA77D0BC-3D99-4764-A7B7-E36B304CD482}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D828C3A0-046C-4F1C-B84B-AA347AE7DBA7}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D828C3A0-046C-4F1C-B84B-AA347AE7DBA7}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F35C1DA4-4C9C-4429-B97C-9102EDC26106}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F35C1DA4-4C9C-4429-B97C-9102EDC26106}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FE3E5EDE-F832-4E89-A7B8-6E0918FBEAF0}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FE3E5EDE-F832-4E89-A7B8-6E0918FBEAF0}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => is succesvol verwijderd HKLM\Software\Wow6432Node\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin => is succesvol verwijderd HKU\S-1-5-21-2738978234-4125683323-18102037-1002\SOFTWARE\Google\Chrome\Extensions\chfdnecihphmhljaaejmgoiahnihplgn => is succesvol verwijderd HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\00avast => is succesvol verwijderd HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4C49D456-8686-4E43-A5B1-D9DBE1949EB5}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BECCE4F2-BD84-4A88-A5F1-BF91491E2DD2}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{383D5908-1BC6-49E2-9FEF-F58CB26462D5}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C5C079AA-44A6-4B52-B0A7-7BB0AEABA97C}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{376721AD-1AD2-49AB-97F7-5EF5222E0A40}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9D11108E-6291-4EC5-9D91-06635C95F74C}C:\users\wendy_000\appdata\roaming\spotify\spotify.exe" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D42BF224-EE54-4B51-A0E5-EFC3CAAA05A4}C:\users\wendy_000\appdata\roaming\spotify\spotify.exe" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{95694670-8D05-45B9-8EE9-9527DD75F8FB}C:\users\wendy_000\appdata\roaming\spotify\spotify.exe" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{744B51D3-DDA1-45A4-8508-687F76723821}C:\users\wendy_000\appdata\roaming\spotify\spotify.exe" => is succesvol verwijderd =========== EmptyTemp: ========== BITS transfer queue => 11034624 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 494324603 B Java, Flash, Steam htmlcache => 524 B Windows/system/drivers => 192773461 B Edge => 2148935 B Chrome => 1214641046 B Firefox => 63075267 B Opera => 108047702 B Temp, IE cache, history, cookies, recent: Default => 7680 B Users => 7680 B ProgramData => 7680 B Public => 7680 B systemprofile => 7680 B systemprofile32 => 7680 B LocalService => 10046 B NetworkService => 103872 B UpdatusUser => 111552 B wendy_000 => 87690900 B Bike Ibiza => 87700841 B defaultuser100000 => 87708521 B RecycleBin => 832460728 B EmptyTemp: => 3 GB tijdelijke gegevens verwijderd. ================================ Het systeem moest herstart worden. ==== Einde van Fixlog 12:36:42 ====