Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 27-12-2021 Gestart door Johnny (03-01-2022 11:34:04) Run:1 Gestart vanaf C:\Users\AGAIN\Desktop Geladen Profielen: Johnny Boot Modus: Normal ============================================== fixlist inhoud: ***************** CreateRestorePoint: CloseProcesses: HKU\S-1-5-21-1639232374-763448831-3005767150-1001\...\MountPoints2: {34ef429e-460e-11e8-93ce-3010b39ca39e} - "H:\setup.EXE" /AUTORUN Task: {12E0E725-0F31-44A3-ACB0-9147F7C8506A} - System32\Tasks\Norton Security with Backup\Norton Security Error Analyzer => C:\Program Files\Norton Security\Engine\22.19.8.65\SymErr.exe /analyze (Geen bestand) Task: {4BCC265E-1B11-48E2-83F5-C5A9D9B8EB27} - System32\Tasks\Norton Security\Norton Security Error Analyzer => C:\Program Files\Norton Security\Engine\22.21.9.25\SymErr.exe /analyze (Geen bestand) Task: {812D563C-7B01-4336-ACC6-42EC51A2B59D} - System32\Tasks\Opera scheduled Autoupdate 1511702072 => C:\Users\AGAIN\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $(Arg0) (Geen bestand) Task: {CBAB6041-D0BE-402A-844A-8EF38D3ECC9E} - System32\Tasks\NortonCleanupTask => C:\Users\AGAIN\Desktop\LoginImporter\utils\NortonCleanup.bat (Geen bestand) Task: {E192E2B1-7954-4D55-A6C7-4546903E9CFA} - System32\Tasks\Opera scheduled assistant Autoupdate 1547213271 => C:\Users\AGAIN\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\AGAIN\AppData\Local\Programs\Opera\assistant" $(Arg0) Edge Extension: (Geen Naam) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [niet gevonden] Edge Extension: (Geen Naam) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [niet gevonden] Edge Extension: (Geen Naam) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [niet gevonden] Edge Extension: (Geen Naam) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [niet gevonden] FF Notifications: Mozilla\Firefox\Profiles\xam8r6tf.default-1514726411934 -> hxxps://www.hln.be; hxxps://www.pornrabbit.com IE trusted site: HKU\S-1-5-21-1639232374-763448831-3005767150-1001\...\webcompanion.com -> hxxp://webcompanion.com FirewallRules: [{DB47EA76-007F-432F-B294-39C4D32528CF}] => (Allow) C:\Users\AGAIN\AppData\Local\Programs\Opera\57.0.3098.116\opera.exe => Geen bestand FirewallRules: [{3565766C-9A60-4056-A395-9802DB0778F8}] => (Allow) C:\Users\AGAIN\AppData\Local\Programs\Opera\57.0.3098.106\opera.exe => Geen bestand FirewallRules: [{C188B0A1-B5AD-44CC-89F9-8500EC6DE549}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS6744\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{6F875633-28FE-4D6E-A2B7-C67C5213FDB1}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS6744\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{B5001962-8E9D-46AB-A42D-DCECA65E8334}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS66E2\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{6291AFF1-6DE9-4538-8432-2315869CD404}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS66E2\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{4DD09933-68C7-4E4B-9A2A-149CB88BA242}] => (Allow) D:\Metro last light\steamapps\common\Call of Duty Black Ops II\t6mp.exe => Geen bestand FirewallRules: [{7D0F2631-6448-4B06-BC71-0B46D2551EB3}] => (Allow) D:\Metro last light\steamapps\common\Call of Duty Black Ops II\t6mp.exe => Geen bestand FirewallRules: [{423674F1-CEDC-4746-A39A-C0948EA22A5E}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Geen bestand FirewallRules: [{442732DC-AAA3-4984-A35E-F4698E678726}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Geen bestand FirewallRules: [{8B000E60-06F7-4443-81EC-AEA68028B11E}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS77B8\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{7EFBC48A-3F63-4B1F-BB1D-5FE990097A38}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS77B8\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{7AAA1548-C583-4A10-A3CC-53B516749B97}] => (Allow) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe => Geen bestand FirewallRules: [{47F18BFD-DC9C-42F8-81A1-299E08A07958}] => (Allow) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe => Geen bestand FirewallRules: [{E9E42276-FD04-436E-958D-FB9743398D18}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS5421\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{D5E10654-F131-4DC9-A0F0-7894AE5BFD43}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS5421\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{D14E6F9E-B990-4396-8466-DD41145CCD39}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS5490\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{E0F344F4-D6EF-4728-8CF5-DA441DE6C0DB}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS5490\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{28E447A5-CF5E-40FD-B161-5C4671DDEBF4}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS123D\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{EAF9C26A-2F5C-4706-9667-BB9D2932D23B}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS123D\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{001F5A5A-A4D6-454A-BCA5-D093E0543E2F}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS13C8\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{BAB4C8F9-C4CE-4003-9F73-E90D6E6861D8}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS13C8\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{3723C473-4902-4DCF-A927-0B1AA03BC400}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS62AB\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{85D5BDD2-20D3-484D-9A23-17108DE95D0A}] => (Allow) C:\Users\AGAIN\AppData\Local\Temp\7zS62AB\HPDiagnosticCoreUI.exe => Geen bestand FirewallRules: [{D103D181-5273-4305-A6F5-1FBBB5EC60DB}] => (Allow) D:\Office12\ONENOTE.EXE => Geen bestand FirewallRules: [{CB2A0D82-9109-4DF1-9090-2F340794BCD4}] => (Allow) D:\Office12\ONENOTE.EXE => Geen bestand CMD: winmgmt /resetrepository EmptyTemp: Reboot: ***************** Herstelpunt is succesvol gemaakt. Proces succesvol afgesloten. HKU\S-1-5-21-1639232374-763448831-3005767150-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{34ef429e-460e-11e8-93ce-3010b39ca39e} => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{12E0E725-0F31-44A3-ACB0-9147F7C8506A}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{12E0E725-0F31-44A3-ACB0-9147F7C8506A}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Norton Security with Backup\Norton Security Error Analyzer => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Norton Security with Backup\Norton Security Error Analyzer" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4BCC265E-1B11-48E2-83F5-C5A9D9B8EB27}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4BCC265E-1B11-48E2-83F5-C5A9D9B8EB27}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Norton Security\Norton Security Error Analyzer => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Norton Security\Norton Security Error Analyzer" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{812D563C-7B01-4336-ACC6-42EC51A2B59D}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{812D563C-7B01-4336-ACC6-42EC51A2B59D}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1511702072 => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Opera scheduled Autoupdate 1511702072" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CBAB6041-D0BE-402A-844A-8EF38D3ECC9E}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CBAB6041-D0BE-402A-844A-8EF38D3ECC9E}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\NortonCleanupTask => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\NortonCleanupTask" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E192E2B1-7954-4D55-A6C7-4546903E9CFA}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E192E2B1-7954-4D55-A6C7-4546903E9CFA}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Opera scheduled assistant Autoupdate 1547213271 => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Opera scheduled assistant Autoupdate 1547213271" => is succesvol verwijderd HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => is succesvol verwijderd HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\BookReader_B171F20233094AC88D05A8EF7B9763E8 => is succesvol verwijderd HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => is succesvol verwijderd HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => is succesvol verwijderd "FF Notifications:" => is succesvol verwijderd HKU\S-1-5-21-1639232374-763448831-3005767150-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DB47EA76-007F-432F-B294-39C4D32528CF}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3565766C-9A60-4056-A395-9802DB0778F8}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C188B0A1-B5AD-44CC-89F9-8500EC6DE549}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6F875633-28FE-4D6E-A2B7-C67C5213FDB1}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B5001962-8E9D-46AB-A42D-DCECA65E8334}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6291AFF1-6DE9-4538-8432-2315869CD404}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4DD09933-68C7-4E4B-9A2A-149CB88BA242}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7D0F2631-6448-4B06-BC71-0B46D2551EB3}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{423674F1-CEDC-4746-A39A-C0948EA22A5E}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{442732DC-AAA3-4984-A35E-F4698E678726}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8B000E60-06F7-4443-81EC-AEA68028B11E}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7EFBC48A-3F63-4B1F-BB1D-5FE990097A38}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7AAA1548-C583-4A10-A3CC-53B516749B97}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{47F18BFD-DC9C-42F8-81A1-299E08A07958}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E9E42276-FD04-436E-958D-FB9743398D18}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D5E10654-F131-4DC9-A0F0-7894AE5BFD43}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D14E6F9E-B990-4396-8466-DD41145CCD39}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E0F344F4-D6EF-4728-8CF5-DA441DE6C0DB}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{28E447A5-CF5E-40FD-B161-5C4671DDEBF4}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EAF9C26A-2F5C-4706-9667-BB9D2932D23B}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{001F5A5A-A4D6-454A-BCA5-D093E0543E2F}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BAB4C8F9-C4CE-4003-9F73-E90D6E6861D8}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3723C473-4902-4DCF-A927-0B1AA03BC400}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{85D5BDD2-20D3-484D-9A23-17108DE95D0A}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D103D181-5273-4305-A6F5-1FBBB5EC60DB}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CB2A0D82-9109-4DF1-9090-2F340794BCD4}" => is succesvol verwijderd ========= winmgmt /resetrepository ========= WMI repository reset failed Error code: 0x8007041B Facility: Win32 Description: Er is een stopcode gestuurd naar een service waarvan andere gestarte services afhankelijk zijn. ========= Einde van CMD: ========= =========== EmptyTemp: ========== BITS transfer queue => 1048576 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 121414064 B Java, Flash, Steam htmlcache => 291857640 B Windows/system/drivers => 1080369 B Edge => 42509 B Firefox => 1128734370 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 90283 B systemprofile32 => 223218 B LocalService => 462906 B NetworkService => 462906 B AGAIN => 328393235 B RecycleBin => 11667215 B EmptyTemp: => 1.8 GB tijdelijke gegevens verwijderd. ================================ Het systeem moest herstart worden. ==== Einde van Fixlog 11:37:43 ====