Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 23.02.2024 Gestart door erikb (23-02-2024 22:27:46) Run:1 Gestart vanaf C:\Users\erikb\Desktop Geladen Profielen: erikb & barba & madel Boot Modus: Normal ============================================== fixlist inhoud: ***************** start:: CreateRestorePoint: CloseProcesses: HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Geen bestand) Task: {AA79AB3A-65F7-455A-8087-558C67D95E77} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval => %systemroot%\system32\MusNotification.exe Display (Geen bestand) Task: {CF220C6D-E8F7-42E0-9EE8-0838EBF607AC} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC Reboot (Geen bestand) Task: {A846A4F1-E93E-456E-B17D-789F1AD080E5} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot (Geen bestand) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Geen bestand) Task: {D8FB4CCD-52A7-44C1-ABDF-27ED1DF039FD} - System32\Tasks\S-1-5-21-2372608050-3912716850-3987843000-1001\DataSenseLiveTileTask => %SystemRoot%\System32\DataUsageLiveTileTask.exe (Geen bestand) Edge DefaultSearchURL: Default -> hxxps://searchsafe.norton.com/search?omnisearch=yes&q={searchTerms} Edge DefaultSearchKeyword: Default -> nortonsafe Edge DefaultSuggestURL: Default -> hxxps://ss-sym.search.ask.com/ss?limit=10&li=ff&hl=nl&q={searchTerms} Edge Extension: (Norton Safe) - C:\Users\erikb\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mpnlkmlkncncpgnnkmkgoobfpnjmblnk [2023-12-28] CHR Extension: (Norton Safe) - C:\Users\erikb\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpnlkmlkncncpgnnkmkgoobfpnjmblnk [2023-12-28] S2 cphs; %SystemRoot%\System32\IntelCpHeciSvc.exe [X] S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] AV: Norton Security Ultra (Enabled - Up to date) {A2708B76-6835-6565-CB96-694212954A75} FW: Norton Security Ultra (Enabled) {9A4B0A53-225A-643D-E0C9-C077EC460D0E} ShellIconOverlayIdentifiers: [F-Secure DataGuard Icon Overlay] -> {CA789262-D278-40F7-AC12-19C0395F9DD9} => C:\Program Files (x86)\Safe Online\FsShellExtension64.dll -> Geen bestand AlternateDataStreams: C:\Users\erikb\Desktop\FRST64.exe:MBAM.Zone.Identifier [240] FirewallRules: [{CEADB664-CBDF-4577-8D09-4F2A8D218A6E}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23002.404.1835.2417_x64__8wekyb3d8bbwe\msteams.exe => Geen bestand FirewallRules: [{C637B07F-2BAF-4F41-9023-216E09783F4D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23002.404.1835.2417_x64__8wekyb3d8bbwe\msteams.exe => Geen bestand FirewallRules: [{F9298DC5-0725-43D2-B664-419E5302283D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22336.910.1806.2450_x64__8wekyb3d8bbwe\msteams.exe => Geen bestand FirewallRules: [{32BA546B-8545-45C6-A2C4-7C5B909A0FEE}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22336.910.1806.2450_x64__8wekyb3d8bbwe\msteams.exe => Geen bestand FirewallRules: [{2A97E1ED-ED8B-4C24-A3D1-1CC02DC0469D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.190.859.0_x86__zpdnekdrzrea0\Spotify.exe => Geen bestand FirewallRules: [{C31C02B7-91CA-4A80-BA78-4727FB50D22A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.190.859.0_x86__zpdnekdrzrea0\Spotify.exe => Geen bestand FirewallRules: [{C91ED496-2192-4D08-A7DF-E4A271930850}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.190.859.0_x86__zpdnekdrzrea0\Spotify.exe => Geen bestand FirewallRules: [{0F2D4E86-92AA-47F3-A3DF-94C0026DBA80}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.190.859.0_x86__zpdnekdrzrea0\Spotify.exe => Geen bestand FirewallRules: [{B38F13AA-B956-4285-B8C7-3CFBBC18BAD9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.190.859.0_x86__zpdnekdrzrea0\Spotify.exe => Geen bestand FirewallRules: [{E8B4612B-03A4-4060-BFB1-84C132736237}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.190.859.0_x86__zpdnekdrzrea0\Spotify.exe => Geen bestand FirewallRules: [{7B66C47C-526E-4007-9FF4-4317692A2F83}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.190.859.0_x86__zpdnekdrzrea0\Spotify.exe => Geen bestand FirewallRules: [{1D5113AF-B3C6-4F74-BCB2-694912F2B70F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.190.859.0_x86__zpdnekdrzrea0\Spotify.exe => Geen bestand FirewallRules: [{9640049C-4F1B-41F0-9B9F-C516A18858BC}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22133.500.1346.3200_x64__8wekyb3d8bbwe\msteams.exe => Geen bestand FirewallRules: [{D4CDB2E8-5D10-4DF4-8BB6-A577B534BB20}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22133.500.1346.3200_x64__8wekyb3d8bbwe\msteams.exe => Geen bestand FirewallRules: [{599E4DC7-BB9F-45EE-9FDC-A8EFEA96A4F8}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23106.400.2022.133_x64__8wekyb3d8bbwe\msteams.exe => Geen bestand FirewallRules: [{55C19861-60D3-42EC-B09C-C20792F806BA}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23106.400.2022.133_x64__8wekyb3d8bbwe\msteams.exe => Geen bestand FirewallRules: [{EF630FC9-FDD1-4BF5-9826-72E3088F868B}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23078.300.1950.927_x64__8wekyb3d8bbwe\msteams.exe => Geen bestand FirewallRules: [{76F7ABB3-376B-45B7-BD9E-B1BF530CB097}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23078.300.1950.927_x64__8wekyb3d8bbwe\msteams.exe => Geen bestand EmptyTemp: End:: ***************** Herstelpunt is succesvol gemaakt. Proces succesvol afgesloten. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\{C885AA15-1764-4293-B82A-0586ADD46B35} => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AA79AB3A-65F7-455A-8087-558C67D95E77}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AA79AB3A-65F7-455A-8087-558C67D95E77}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CF220C6D-E8F7-42E0-9EE8-0838EBF607AC}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CF220C6D-E8F7-42E0-9EE8-0838EBF607AC}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_AC" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A846A4F1-E93E-456E-B17D-789F1AD080E5}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A846A4F1-E93E-456E-B17D-789F1AD080E5}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E0F10DCF-44AD-40E8-9370-FB5DA59F93FB}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0F10DCF-44AD-40E8-9370-FB5DA59F93FB}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D8FB4CCD-52A7-44C1-ABDF-27ED1DF039FD}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D8FB4CCD-52A7-44C1-ABDF-27ED1DF039FD}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\S-1-5-21-2372608050-3912716850-3987843000-1001\DataSenseLiveTileTask => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\S-1-5-21-2372608050-3912716850-3987843000-1001\DataSenseLiveTileTask" => is succesvol verwijderd "Edge DefaultSearchURL" => is succesvol verwijderd "Edge DefaultSearchKeyword" => is succesvol verwijderd "Edge DefaultSuggestURL" => is succesvol verwijderd Edge Extension: (Norton Safe) - C:\Users\erikb\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mpnlkmlkncncpgnnkmkgoobfpnjmblnk [2023-12-28] => Fout: Geen automatische fix gevonden voor dit item. CHR Extension: (Norton Safe) - C:\Users\erikb\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpnlkmlkncncpgnnkmkgoobfpnjmblnk [2023-12-28] => Fout: Geen automatische fix gevonden voor dit item. HKLM\System\CurrentControlSet\Services\cphs => is succesvol verwijderd cphs => service is succesvol verwijderd HKLM\System\CurrentControlSet\Services\WinSetupMon => is succesvol verwijderd WinSetupMon => service is succesvol verwijderd "AV: Norton Security Ultra (Enabled - Up to date) {A2708B76-6835-6565-CB96-694212954A75}" => is succesvol verwijderd "FW: Norton Security Ultra (Enabled) {9A4B0A53-225A-643D-E0C9-C077EC460D0E}" => is succesvol verwijderd HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\F-Secure DataGuard Icon Overlay => is succesvol verwijderd HKLM\Software\Classes\CLSID\{CA789262-D278-40F7-AC12-19C0395F9DD9} => is succesvol verwijderd "C:\Users\erikb\Desktop\FRST64.exe" => ":MBAM.Zone.Identifier" ADS niet gevonden. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CEADB664-CBDF-4577-8D09-4F2A8D218A6E}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C637B07F-2BAF-4F41-9023-216E09783F4D}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F9298DC5-0725-43D2-B664-419E5302283D}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{32BA546B-8545-45C6-A2C4-7C5B909A0FEE}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2A97E1ED-ED8B-4C24-A3D1-1CC02DC0469D}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C31C02B7-91CA-4A80-BA78-4727FB50D22A}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C91ED496-2192-4D08-A7DF-E4A271930850}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0F2D4E86-92AA-47F3-A3DF-94C0026DBA80}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B38F13AA-B956-4285-B8C7-3CFBBC18BAD9}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E8B4612B-03A4-4060-BFB1-84C132736237}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7B66C47C-526E-4007-9FF4-4317692A2F83}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1D5113AF-B3C6-4F74-BCB2-694912F2B70F}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9640049C-4F1B-41F0-9B9F-C516A18858BC}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D4CDB2E8-5D10-4DF4-8BB6-A577B534BB20}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{599E4DC7-BB9F-45EE-9FDC-A8EFEA96A4F8}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{55C19861-60D3-42EC-B09C-C20792F806BA}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EF630FC9-FDD1-4BF5-9826-72E3088F868B}" => is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{76F7ABB3-376B-45B7-BD9E-B1BF530CB097}" => is succesvol verwijderd =========== EmptyTemp: ========== FlushDNS => voltooid BITS transfer queue => 1572864 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 12870970 B Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B Windows/system/drivers => 215633377 B Edge => 0 B Chrome => 586854244 B Firefox => 0 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 16 B systemprofile32 => 16 B LocalService => 19760 B NetworkService => 19760 B erikb => 114127999 B barba => 438562421 B madel => 438620472 B RecycleBin => 0 B EmptyTemp: => 1.7 GB tijdelijke gegevens verwijderd. ================================ Het systeem moest herstart worden. ==== Einde van Fixlog 22:28:09 ====