Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 17-07-2025 Gestart door Erikv (23-07-2025 12:54:41) Run:1 Gestart vanaf C:\Users\Erikv\OneDrive\Bureaublad Geladen Profielen: Erikv Boot Modus: Normal ============================================== fixlist inhoud: ***************** Start:: CreateRestorePoint: CloseProcesses: HKLM-x32\...\Run: [] => [X] HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restrictie <==== AANDACHT HKU\S-1-5-21-772462493-3368024724-2760790539-1001\...\Run: [AMDNoiseSuppression] => "C:\WINDOWS\system32\AMD\ANR\AMDNoiseSuppression.exe" (Geen bestand) HKU\S-1-5-21-772462493-3368024724-2760790539-1001\...\Run: [] => [X] HKU\S-1-5-21-772462493-3368024724-2760790539-1001\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [3038464 2025-06-27] (Microsoft Windows -> Microsoft Corporation) <==== AANDACHT InternetURL: C:\Users\Erikv\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DataHarbor.url -> URL: "C:\Users\Erikv\AppData\Local\SecureData Dynamics\DataHarbor.js" <==== AANDACHT Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Media Center Tray Applet.lnk [2024-06-13] <==== AANDACHT ShortcutTarget: Media Center Tray Applet.lnk -> C:\Windows\Installer\{7DADC74F-5BEA-409B-96BB-62D57AFC131A}\Media Center Tray Applet () [Bestand niet getekend] <==== AANDACHT GroupPolicy: Restrictie - Chrome <==== AANDACHT Policies: C:\ProgramData\NTUSER.pol: Restrictie <==== AANDACHT HKLM\SOFTWARE\Policies\Google: Restrictie <==== AANDACHT HKLM\SOFTWARE\Policies\Microsoft\Edge: Restrictie <==== AANDACHT Task: {0C82833A-078D-479F-AFC4-3D877E3014DF} - \Opera GX scheduled assistant Autoupdate 1710762975 -> Geen bestand <==== AANDACHT Task: {B24ACD27-2529-4356-9566-1CFCDC82D176} - System32\Tasks\Microsoft\Windows\IsClosed\Current => C:\Users\Erikv\AppData\Roaming\IsClosed\Current.exe (Geen bestand) Task: {0E30584A-FB0A-49C8-9920-2803E20D3735} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (Geen bestand) Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Geen bestand) Task: {5F7C3B8A-FADC-46E9-98A7-A7D70F9244EE} - System32\Tasks\Symantec Endpoint Protection\Symantec Endpoint Protection Autofix => "C:\Program Files\Symantec\Symantec Endpoint Protection\14.3.12154.10000.105\Bin64\SymErr.exe" /ui (Geen bestand) Task: {4039CAC3-F868-4B54-9459-4E19ADD003CF} - System32\Tasks\Symantec Endpoint Protection\Symantec Endpoint Protection Error Analyzer => "C:\Program Files\Symantec\Symantec Endpoint Protection\14.3.12154.10000.105\Bin64\SymErr.exe" /analyze (Geen bestand) Task: {3C3C5637-B7B0-4F54-B83E-E84601A24C75} - System32\Tasks\Symantec Endpoint Protection\Symantec Endpoint Protection Error Processor => "C:\Program Files\Symantec\Symantec Endpoint Protection\14.3.12154.10000.105\Bin64\SymErr.exe" /submit (Geen bestand) FF Homepage: Mozilla\Firefox\Profiles\q3tu29b5.default -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=BT171001&iDate=2021-09-13 11:19:31&bName= FF NewTab: Mozilla\Firefox\Profiles\q3tu29b5.default -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=BT171001&iDate=2021-09-13 11:19:31&bName= FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [2024-11-07] (Avast Software s.r.o. -> Gen Digital Inc.) FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [2024-11-07] (Avast Software s.r.o. -> Gen Digital Inc.) S3 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-11-07] (Avast Software s.r.o. -> Gen Digital Inc.) S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-11-07] (Avast Software s.r.o. -> Gen Digital Inc.) S3 AvastSecureBrowserElevationService; C:\Program Files\AVAST Software\Browser\Application\130.0.27176.93\elevation_service.exe [1880632 2024-11-06] (Avast Software s.r.o. -> Gen Digital Inc.) S2 EraserSvc11915; "C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\ccSvcHst.exe" /h ccCommon [X] S2 sepWscSvc; "C:\Program Files\Symantec\Symantec Endpoint Protection\14.3.12154.10000.105\Bin64\sepWscSvc64.exe" [X] S3 SNAC; "C:\Program Files\Symantec\Symantec Endpoint Protection\14.3.12154.10000.105\Bin64\snac64.exe" [X] R3 cpuz154; C:\WINDOWS\temp\cpuz154\cpuz154_x64.sys [40976 2025-07-22] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== AANDACHT S3 SymEvnt; \??\C:\ProgramData\Symantec\Symantec Endpoint Protection\14.3.12154.10000.105\Data\SymPlatform\SymEvnt.sys [X] AV: Ashampoo Anti-Virus (Disabled - Out of date) {B01CBDFB-A7BE-AB86-8FC0-8A93ABB2ABA5} AV: Symantec Endpoint Protection (Disabled - Up to date) {091A987B-24E1-2858-ACB1-D840E2B4E50C} FW: Symantec Endpoint Protection (Disabled) {3121195E-6E8E-2900-87EE-71751C67A277} Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1697.6 - AVAST Software) Hidden ContextMenuHandlers6: [LDVPMenu] -> {8BEEE74D-455E-4616-A97A-F6E86C317F32} => C:\Program Files\Symantec\Symantec Endpoint Protection\14.3.12154.10000.105\Bin64\vpshell2.dll -> Geen bestand AlternateDataStreams: C:\ProgramData\Spotnet:spn.k [428] FirewallRules: [{8E3C8A58-819E-4CD8-9F45-7AE7968A4A73}] => (Allow) H:\Vuze\Azureus.exe => Geen bestand FirewallRules: [{3968CBD6-6F45-402E-9479-C03B567C037E}] => (Allow) H:\Vuze\Azureus.exe => Geen bestand FirewallRules: [{C9014174-E874-42FC-90A7-7675F0BA2A43}] => (Block) C:\program files\hitpaw video converter\update.exe => Geen bestand FirewallRules: [{05338F85-EE04-4122-81CD-8D87E562A5DA}] => (Block) C:\program files\hitpaw video converter\update.exe => Geen bestand FirewallRules: [{94AE0EFA-5605-4786-A8C1-1FB00E711C7A}] => (Block) C:\program files\hitpaw video converter\hitpawedittoolkit.exe => Geen bestand FirewallRules: [{4C19BCB4-9C3E-4F4D-87CD-F13E7510CDD6}] => (Block) C:\program files\hitpaw video converter\hitpawedittoolkit.exe => Geen bestand FirewallRules: [{8B8C4DA5-5E88-44AA-8FBA-9A5E82D386B5}] => (Block) C:\program files\hitpaw video converter\hitpawsplash.exe => Geen bestand FirewallRules: [{9797B67A-5B5A-4797-8170-75A4F9DA84D0}] => (Block) C:\program files\hitpaw video converter\hitpawsplash.exe => Geen bestand FirewallRules: [{0FBAEC15-3C0A-49CD-890F-4C50FE28E952}] => (Block) C:\program files\hitpaw video converter\hitpawvideoconverter.exe => Geen bestand FirewallRules: [{E0D85720-CEF7-417E-ADC8-3D7501C462F1}] => (Block) C:\program files\hitpaw video converter\hitpawvideoconverter.exe => Geen bestand FirewallRules: [{B860D2F1-E507-48E7-85B2-E23B5B5E6AEC}] => (Allow) C:\Program Files (x86)\EaseUS\EaseUS Fixo\Fixo.exe => Geen bestand FirewallRules: [{9E0EC93C-D436-4DE7-AFCF-E36AE75F3755}] => (Allow) C:\Program Files\Avid\Pro Tools\AvidVideoEngine.exe => Geen bestand EmptyTemp: Reboot: End:: ***************** Herstelpunt is succesvol gemaakt. Proces succesvol afgesloten. "HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => is succesvol verwijderd HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate => is succesvol verwijderd "HKU\S-1-5-21-772462493-3368024724-2760790539-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AMDNoiseSuppression" => niet gevonden "HKU\S-1-5-21-772462493-3368024724-2760790539-1001\Software\Microsoft\Windows\CurrentVersion\Run\\" => is succesvol verwijderd "HKU\S-1-5-21-772462493-3368024724-2760790539-1001\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell" => is succesvol verwijderd C:\Users\Erikv\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DataHarbor.url => is succesvol verplaatst C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Media Center Tray Applet.lnk => is succesvol verplaatst C:\Windows\Installer\{7DADC74F-5BEA-409B-96BB-62D57AFC131A}\Media Center Tray Applet => is succesvol verplaatst "C:\WINDOWS\system32\GroupPolicy\Machine" Map verplaatsing: C:\WINDOWS\system32\GroupPolicy\Machine => is succesvol verplaatst C:\WINDOWS\system32\GroupPolicy\GPT.ini => is succesvol verplaatst C:\ProgramData\NTUSER.pol => is succesvol verplaatst HKLM\SOFTWARE\Policies\Google => is succesvol verwijderd HKLM\SOFTWARE\Policies\Microsoft\Edge => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0C82833A-078D-479F-AFC4-3D877E3014DF}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0C82833A-078D-479F-AFC4-3D877E3014DF}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Opera GX scheduled assistant Autoupdate 1710762975" => niet gevonden "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B24ACD27-2529-4356-9566-1CFCDC82D176}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B24ACD27-2529-4356-9566-1CFCDC82D176}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Microsoft\Windows\IsClosed\Current => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\IsClosed\Current" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0E30584A-FB0A-49C8-9920-2803E20D3735}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0E30584A-FB0A-49C8-9920-2803E20D3735}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Microsoft\Windows\Location\Notifications => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5F7C3B8A-FADC-46E9-98A7-A7D70F9244EE}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F7C3B8A-FADC-46E9-98A7-A7D70F9244EE}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Symantec Endpoint Protection\Symantec Endpoint Protection Autofix => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Symantec Endpoint Protection\Symantec Endpoint Protection Autofix" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4039CAC3-F868-4B54-9459-4E19ADD003CF}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4039CAC3-F868-4B54-9459-4E19ADD003CF}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Symantec Endpoint Protection\Symantec Endpoint Protection Error Analyzer => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Symantec Endpoint Protection\Symantec Endpoint Protection Error Analyzer" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3C3C5637-B7B0-4F54-B83E-E84601A24C75}" => is succesvol verwijderd "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3C3C5637-B7B0-4F54-B83E-E84601A24C75}" => is succesvol verwijderd C:\WINDOWS\System32\Tasks\Symantec Endpoint Protection\Symantec Endpoint Protection Error Processor => is succesvol verplaatst "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Symantec Endpoint Protection\Symantec Endpoint Protection Error Processor" => is succesvol verwijderd "Firefox homepage" => is succesvol verwijderd "Firefox newtab" => is succesvol verwijderd "HKLM\Software\Wow6432Node\MozillaPlugins\@update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [2024-11-07] (Avast Software s.r.o." => niet gevonden C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll => is succesvol verplaatst "HKLM\Software\Wow6432Node\MozillaPlugins\@update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [2024-11-07] (Avast Software s.r.o." => niet gevonden "C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll" => niet gevonden HKLM\System\CurrentControlSet\Services\avast => is succesvol verwijderd avast => service is succesvol verwijderd HKLM\System\CurrentControlSet\Services\avastm => is succesvol verwijderd avastm => service is succesvol verwijderd HKLM\System\CurrentControlSet\Services\AvastSecureBrowserElevationService => is succesvol verwijderd AvastSecureBrowserElevationService => service is succesvol verwijderd EraserSvc11915 => service niet gevonden. sepWscSvc => service niet gevonden. SNAC => service niet gevonden. HKLM\System\CurrentControlSet\Services\cpuz154 => is succesvol verwijderd cpuz154 => service is succesvol verwijderd HKLM\System\CurrentControlSet\Services\SymEvnt => is succesvol verwijderd SymEvnt => service is succesvol verwijderd "AV: Ashampoo Anti-Virus (Disabled - Out of date) {B01CBDFB-A7BE-AB86-8FC0-8A93ABB2ABA5}" => is succesvol verwijderd "AV: Symantec Endpoint Protection (Disabled - Up to date) {091A987B-24E1-2858-ACB1-D840E2B4E50C}" => is succesvol verwijderd "FW: Symantec Endpoint Protection (Disabled) {3121195E-6E8E-2900-87EE-71751C67A277}" => is succesvol verwijderd "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{19C3AB22-3718-4E4D-B203-242F5001565B}\\SystemComponent" => is succesvol verwijderd HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\LDVPMenu => is succesvol verwijderd HKLM\Software\Classes\CLSID\{8BEEE74D-455E-4616-A97A-F6E86C317F32} => is succesvol verwijderd C:\ProgramData\Spotnet => ":spn.k" ADS is succesvol verwijderd "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8E3C8A58-819E-4CD8-9F45-7AE7968A4A73}" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3968CBD6-6F45-402E-9479-C03B567C037E}" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C9014174-E874-42FC-90A7-7675F0BA2A43}" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{05338F85-EE04-4122-81CD-8D87E562A5DA}" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{94AE0EFA-5605-4786-A8C1-1FB00E711C7A}" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4C19BCB4-9C3E-4F4D-87CD-F13E7510CDD6}" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8B8C4DA5-5E88-44AA-8FBA-9A5E82D386B5}" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9797B67A-5B5A-4797-8170-75A4F9DA84D0}" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0FBAEC15-3C0A-49CD-890F-4C50FE28E952}" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E0D85720-CEF7-417E-ADC8-3D7501C462F1}" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B860D2F1-E507-48E7-85B2-E23B5B5E6AEC}" => niet gevonden "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9E0EC93C-D436-4DE7-AFCF-E36AE75F3755}" => niet gevonden =========== EmptyTemp: ========== FlushDNS => voltooid BITS transfer queue => 0 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 11786180 B Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B Windows/system/drivers => 109310121 B Edge => 0 B Chrome => 432991353 B Vivaldi => 4886722 B Firefox => 444803805 B Opera => 7277823 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 0 B NetworkService => 0 B Erikv => 397297654 B RecycleBin => 2063570165 B EmptyTemp: => 3.2 GB tijdelijke gegevens verwijderd. ================================ Het systeem moest herstart worden. ==== Einde van Fixlog 12:58:11 ====