Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 05.01.2024 01 Gestart door hurkm (06-01-2024 13:07:24) Run:1 Gestart vanaf C:\Users\hurkm\Desktop\FIXEN Geladen Profielen: hurkm Boot Modus: Normal ============================================== fixlist inhoud: ***************** start:: CreateRestorePoint: CloseProcesses: HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Task: {E5AD57C0-9BC8-41F6-A364-B5CEA243AE82} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Geen bestand) Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => %systemroot%\system32\MusNotification.exe (Geen bestand) Task: {D2974240-5CCB-46D7-BEF3-4BA58D135BEA} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => %systemroot%\system32\MusNotification.exe Display (Geen bestand) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Geen bestand) FF Notifications: Mozilla\Firefox\Profiles\0j9msxzw.default-release -> hxxps://vyzbm.crystalcraft.top 2024-01-03 16:54 - 2024-01-03 16:55 - 054963608 _____ (IObit ) C:\Users\hurkm\Downloads\advanced-systemcare-setup.exe 2023-12-11 14:10 - 2023-12-11 14:10 - 009850880 _____ C:\WINDOWS\system32\config\DRIVERS.iobit 2023-12-07 09:46 - 2023-12-07 09:46 - 057272296 _____ (IObit ) C:\Users\hurkm\Downloads\iobit_malware_fighter_setup.exe 2024-01-05 14:17 - 2023-11-14 15:17 - 000000000 ____D C:\Program Files (x86)\IObit 2024-01-05 14:13 - 2023-11-14 15:18 - 000000000 ____D C:\Users\hurkm\AppData\LocalLow\IObit 2024-01-05 14:13 - 2023-11-14 15:17 - 000000000 ____D C:\Users\hurkm\AppData\Roaming\IObit 2024-01-05 14:13 - 2023-11-14 15:17 - 000000000 ____D C:\ProgramData\IObit FW: McAfee (Enabled) {2FDD6819-222E-5E9F-F5E7-E13A2241D502} HKLM\...\StartupApproved\Run32: => "IObit Malware Fighter" HKU\S-1-5-21-2343222833-1654671474-3426894111-1001\...\StartupApproved\Run: => "Advanced SystemCare 12" EmptyTemp: End:: ***************** Herstelpunt is succesvol gemaakt. Proces succesvol afgesloten. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\{C885AA15-1764-4293-B82A-0586ADD46B35} => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E5AD57C0-9BC8-41F6-A364-B5CEA243AE82}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E5AD57C0-9BC8-41F6-A364-B5CEA243AE82}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D2974240-5CCB-46D7-BEF3-4BA58D135BEA}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D2974240-5CCB-46D7-BEF3-4BA58D135BEA}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E0F10DCF-44AD-40E8-9370-FB5DA59F93FB}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0F10DCF-44AD-40E8-9370-FB5DA59F93FB}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => is succesvol verwijderd "FF Notifications:" => is succesvol verwijderd C:\Users\hurkm\Downloads\advanced-systemcare-setup.exe => is succesvol verplaatst C:\WINDOWS\system32\config\DRIVERS.iobit => is succesvol verplaatst C:\Users\hurkm\Downloads\iobit_malware_fighter_setup.exe => is succesvol verplaatst "C:\Program Files (x86)\IObit" map verplaatsing: C:\Program Files (x86)\IObit => is succesvol verplaatst "C:\Users\hurkm\AppData\LocalLow\IObit" map verplaatsing: C:\Users\hurkm\AppData\LocalLow\IObit => is succesvol verplaatst "C:\Users\hurkm\AppData\Roaming\IObit" map verplaatsing: C:\Users\hurkm\AppData\Roaming\IObit => is succesvol verplaatst "C:\ProgramData\IObit" map verplaatsing: C:\ProgramData\IObit => is succesvol verplaatst "FW: McAfee (Enabled) {2FDD6819-222E-5E9F-F5E7-E13A2241D502}" => is succesvol verwijderd "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\\IObit Malware Fighter" => is succesvol verwijderd "HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\IObit Malware Fighter" => niet gevonden "HKU\S-1-5-21-2343222833-1654671474-3426894111-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Advanced SystemCare 12" => is succesvol verwijderd "HKU\S-1-5-21-2343222833-1654671474-3426894111-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Advanced SystemCare 12" => niet gevonden =========== EmptyTemp: ========== FlushDNS => voltooid BITS transfer queue => 1310720 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 29551836 B Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B Windows/system/drivers => 3915001 B Edge => 0 B Firefox => 601150536 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 960094 B systemprofile32 => 960094 B LocalService => 984994 B NetworkService => 984994 B hurkm => 44858490 B RecycleBin => 125736706 B EmptyTemp: => 772.9 MB tijdelijke gegevens verwijderd. ================================ Het systeem moest herstart worden. ==== Einde van Fixlog 13:08:00 ====