hardnekkige popup van Bitdefender na de-installatie

  • Onderwerp starter Onderwerp starter Najsnarf
  • Startdatum Startdatum
  • Reacties 30
  • Weergaven 2430
Status
Niet open voor verdere reacties.

Najsnarf

PCS Lid
Lid geworden
5 aug 2016
Berichten
2.710
Waarderingsscore
394
Punten
83
OS
W11pro
AV
MBAM en Windows
I.v.m. een download moest ik de bescherming Bitdefender tijdelijk uitschakelen. Na afloop wilde het schuifknopje niet meer op "aan". Vervolgens die B.d. gedeïnstalleerd, maar nu blijven er om de haverklap deze popup meldingen komen:
5b12474dc0ad9-No.001.jpg

Als je besluit die Bd weer opnieuw te installeren moet je weer opnieuw een account aanmaken, zodat men je weet te vinden. Kortom: hoe kom ik er helemaal van af? Is trouwens ook nog te vinden in de werkbalk!
5b124864943df-No.002.jpg

(rood icoontje met zwart plekje)
 
Wat is dat toch met Bitdefender Free.
Zie ook: Probleem - my device is at risk!

Download
51ec4de7e6926-MiniToolbox_Canned.png
MiniToolBox en plaats dit tool op jouw bureaublad.

Farbar MiniToolBox gebruiken:
  • Sluit nu eerst alle nog openstaande programmavensters!
    • Windows 2000 en Windows XP: start "MiniToolBox.exe" via dubbelklikken.
    • Windows Vista, Windows 7, Windows 8 en Windows 10: start "MiniToolBox.exe" via rechtsklik Als Administrator uitvoeren.
Vink de volgende onderdelen aan:

  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices - Only Problems
  • List Users, Partitions and Memory size
  • List Minidump Files
    • Klik nu op de knop "Go".
    • Aansluitend wordt een log aangemaakt (Result.txt) in de zelfde map waar "MiniToolBox.exe" in zit.
    • Kopieer en plak de inhoud van het log in jouw volgende bericht.
 
MiniToolBox by Farbar Version: 17-06-2016
Ran by F.J.Stols (administrator) on 02-06-2018 at 10:32:57
Running from "C:\Users\Gebruiker\Desktop"
Microsoft Windows 10 Pro (X64)
Model: To Be Filled By O.E.M. Manufacturer: To Be Filled By O.E.M.
Boot Mode: Normal
***************************************************************************

========================= Event log errors: ===============================

Application errors:
==================
Error: (06/02/2018 10:32:57 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:57 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:57 AM) (Source: Acronis Scheduler) (User: NT AUTHORITY)
Description: Taakplanner kan de taak >> "" met GUID '2AEC8EEC-1EBB-4024-9D81-82EF9D37519D' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:56 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:56 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:56 AM) (Source: Acronis Scheduler) (User: NT AUTHORITY)
Description: Taakplanner kan de taak >> "" met GUID '2AEC8EEC-1EBB-4024-9D81-82EF9D37519D' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:55 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:55 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:55 AM) (Source: Acronis Scheduler) (User: NT AUTHORITY)
Description: Taakplanner kan de taak >> "" met GUID '2AEC8EEC-1EBB-4024-9D81-82EF9D37519D' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:54 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).


System errors:
=============
Error: (06/02/2018 10:17:58 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: toepassingsspecifiekLokaalStartenWindows.SecurityCenter.WscBrokerManagerNiet beschikbaarNT AUTHORITYSYSTEMS-1-5-18LocalHost (via LRPC)Niet beschikbaarNiet beschikbaar

Error: (06/02/2018 10:17:41 AM) (Source: volsnap) (User: )
Description: De schaduwkopieën van volume K: zijn afgebroken tijdens de detectie omdat een essentieel controlebestand niet kan worden geopend.

Error: (06/02/2018 10:15:57 AM) (Source: DCOM) (User: AZERTY)
Description: toepassingsspecifiekLokaalStarten{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}AZERTYF.J.StolsS-1-5-21-1916800224-2560957495-3225600593-1001LocalHost (via LRPC)Niet beschikbaarNiet beschikbaar

Error: (06/02/2018 10:15:57 AM) (Source: DCOM) (User: AZERTY)
Description: toepassingsspecifiekLokaalStarten{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}AZERTYF.J.StolsS-1-5-21-1916800224-2560957495-3225600593-1001LocalHost (via LRPC)Niet beschikbaarNiet beschikbaar

Error: (06/02/2018 10:15:56 AM) (Source: Service Control Manager) (User: )
Description: De mmsminisrv-service kan vanwege de volgende fout niet worden gestart:
%%1053 = De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord.


Error: (06/02/2018 10:15:56 AM) (Source: Service Control Manager) (User: )
Description: Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: mmsminisrv.

Error: (06/02/2018 10:15:46 AM) (Source: Ntfs) (User: NT AUTHORITY)
Description: Er is een beschadiging ontdekt in de bestandssysteemstructuur op het volume \\?\Volume{926f9b4d-00dd-4234-bda6-7b0c27252c8e}.

De exacte beschadiging is onbekend. De bestandssysteemstructuren moeten online worden gescand.

Error: (06/02/2018 10:15:46 AM) (Source: Microsoft-Windows-Ntfs) (User: NT AUTHORITY)
Description: \\?\Volume{926f9b4d-00dd-4234-bda6-7b0c27252c8e}\Device\HarddiskVolume63

Error: (06/02/2018 10:15:41 AM) (Source: Application Popup) (User: )
Description: avipbb.sys

Error: (06/02/2018 07:06:25 AM) (Source: Microsoft-Windows-Eventlog) (User: NT AUTHORITY)
Description: Er is een fout (res=1392) opgetreden tijdens het initialiseren van bronnen voor logboekregistratie voor kanaal Microsoft-Windows-Backup.


Microsoft Office Sessions:
=========================
Error: (06/02/2018 10:32:58 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:58 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:58 AM) (Source: Acronis Scheduler)(User: NT AUTHORITY)
Description: Taakplanner kan de taak >> "" met GUID '2AEC8EEC-1EBB-4024-9D81-82EF9D37519D' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:57 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:57 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:57 AM) (Source: Acronis Scheduler)(User: NT AUTHORITY)
Description: Taakplanner kan de taak >> "" met GUID '2AEC8EEC-1EBB-4024-9D81-82EF9D37519D' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:56 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:56 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:56 AM) (Source: Acronis Scheduler)(User: NT AUTHORITY)
Description: Taakplanner kan de taak >> "" met GUID '2AEC8EEC-1EBB-4024-9D81-82EF9D37519D' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:55 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).


CodeIntegrity Errors:
===================================
Date: 2018-06-01 13:48:01.793
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 13:31:55.874
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 12:17:27.078
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 12:15:55.052
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 11:39:22.568
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 08:46:34.247
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 08:37:49.466
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-05-31 10:45:29.974
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-05-31 07:27:40.230
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-05-30 19:03:41.415
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.


=========================== Installed Programs ============================

4Team Safe PST Backup (HKLM-x32\...\{DF6372B1-3687-4C35-8FF3-AF289944A037}) (Version: 2.70.0639 - 4Team Corporation)
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
7-Zip 18.01 (x64) (HKLM\...\7-Zip) (Version: 18.01 - Igor Pavlov)
Adobe Flash Player 29 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 29.0.0.171 - Adobe Systems Incorporated)
Adobe Photoshop Elements 7.0 (HKLM-x32\...\Adobe Photoshop Elements 7) (Version: 7.0 - Adobe Systems Incorporated)
Adobe Photoshop Lightroom 5.7.1 64-bit (HKLM\...\{BC86B82C-8C0E-4408-9AC1-6B0F2D636963}) (Version: 5.7.1 - Adobe Systems Incorporated)
Adres 2000 Versie 1.93 (HKLM-x32\...\Adres 2000_is1) (Version: - H.C.C. Akkerman)
AOMEI Backupper Standard (HKLM-x32\...\{A83692F5-3E9B-4E95-9E7E-B5DF5536CE9D}_is1) (Version: - AOMEI Technology Co., Ltd.)
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 22.0.10.78 - Bitdefender)
Bitdefender Antivirus Free (HKLM\...\{1FCCF41D-5F00-4FE2-9653-162D0486C8B4}) (Version: 1.0.10.12 - Bitdefender)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.3.1.4 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 4.2.0 - Canon Inc.)
Canon MG6600 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG6600_series) (Version: 1.01 - Canon Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.43 - Piriform)
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.6795 - CDBurnerXP)
Classic Shell (HKLM\...\{CABCE573-0A86-42FA-A52A-C7EA61D5BE08}) (Version: 4.3.1 - IvoSoft)
CrystalDiskInfo 7.5.1 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 7.5.1 - Crystal Dew World)
CutePDF Writer 3.1 (HKLM\...\CutePDF Writer Installation) (Version: 3.1 - Acro Software Inc.)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Easy Rolodex 3.2 (HKLM\...\{48FC3F43-D57D-43A3-B1E6-EE88AFD93DE5}) (Version: 3.2 - Woerdekom Webdesign en Software)
FastStone Capture 4.8 (HKLM-x32\...\FastStone Capture) (Version: 4.8 - FastStone Soft)
FastStone Image Viewer 6.4 (HKLM-x32\...\FastStone Image Viewer) (Version: 6.4 - FastStone Soft)
FastStone Photo Resizer 3.8 (HKLM-x32\...\FastStone Photo Resizer) (Version: 3.8 - FastStone Soft.)
Folder Size 3.4.0.0 (HKLM-x32\...\{2DFA85ED-588F-4CE3-A175-29E52C3804A8}_is1) (Version: 3.4.0.0 - MindGems, Inc.)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 5.4.5.124 - Foxit Corporation)
Gadwin PrintScreen (HKLM-x32\...\Gadwin PrintScreen) (Version: 4.3 - Gadwin Systems, Inc.)
Gebruikersregistratie voor Canon MG6600 series (HKLM-x32\...\Gebruikersregistratie voor Canon MG6600 series) (Version: - ‭Canon Inc.)
GFExperience.Deployer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.Deployer) (Version: 3.10.0.95 - NVIDIA Corporation) Hidden
Google Earth Pro (HKLM\...\{D9EF644E-2FAE-493B-8180-5617CC774C4F}) (Version: 7.3.1.4507 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
Image Composite Editor (HKLM\...\{92AB5708-1AAA-4B1B-A8D5-45CF3AD77519}) (Version: 2.0.3 - Microsoft Corporation)
Image Resizer for Windows (64 bit) (HKLM\...\{617CA6E9-D5FB-4017-8130-82E68C56C34D}) (Version: 3.0.4802.35565 - Brice Lambson) Hidden
Image Resizer for Windows (HKLM-x32\...\{69d72156-6582-4556-8637-06f40aa7f85b}) (Version: 3.0.4802.35565 - Brice Lambson)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 20.2 - Intel)
Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
MailWasher Pro (HKLM-x32\...\MailWasher Pro_is1) (Version: - FireTrust Limited)
Malwarebytes versie 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft IntelliType Pro 8.0 (HKLM\...\{98C8DF59-BE5F-4EC2-9B12-FD2A54928EDB}) (Version: 8.0.225.0 - Microsoft)
Microsoft Office Professional Plus 2016 - nl-nl (HKLM\...\ProPlusRetail - nl-nl) (Version: 16.0.9330.2087 - Microsoft Corporation)
Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 18.065.0329.0002 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
MiniTool Partition Wizard Free 10.2.2 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.)
Mozilla Firefox 60.0.1 (x64 nl) (HKLM\...\Mozilla Firefox 60.0.1 (x64 nl)) (Version: 60.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 59.0.2 - Mozilla)
NVIDIA 3D Vision controllerstuurprogramma 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation)
NVIDIA HD Audio-stuurprogramma 1.3.35.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.35.1 - NVIDIA Corporation)
NVIDIA PhysX Systeem Software 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0413-0000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden
Panda Devices Agent (HKLM-x32\...\{3F9548B2-0B34-4453-A92E-35056B053F19}) (Version: 1.08.00 - Panda Security) Hidden
Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.08 - Panda Security) Hidden
Panda Protection (HKLM\...\{52F9D0C3-E6CF-4553-9013-8F2E834BD0B1}) (Version: 8.93.00 - Panda Security) Hidden
Revo Uninstaller 2.0.4 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.4 - VS Revo Group, Ltd.)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 2.11.4.0 - NVIDIA Corporation) Hidden
Speccy (HKLM\...\Speccy) (Version: 1.31 - Piriform)
Taalpakket voor Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - NLD (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - NLD) (Version: 10.0.50903 - Microsoft Corporation)
TeamViewer 13 (HKLM-x32\...\TeamViewer) (Version: 13.0.6447 - TeamViewer)
TomTom HOME (HKLM-x32\...\{30E6FC43-C31F-4968-9A06-AA38E3C3CF73}) (Version: 2.10.1 - Uw bedrijfsnaam)
TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.0 - VideoLAN)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden
WhatsApp (HKCU\...\WhatsApp) (Version: 0.2.9229 - WhatsApp)
Windows 10 Update Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22334 - Microsoft Corporation)
Windows 7 Games for Windows 10 and 8 (HKLM\...\Win7Games) (Version: 2.0 - Winaero - Free small and useful software for Windows)
Wise Disk Cleaner 9.73 (HKLM-x32\...\Wise Disk Cleaner_is1) (Version: 9.73 - WiseCleaner.com, Inc.)
Wise Registry Cleaner 9.5.5 (HKLM-x32\...\Wise Registry Cleaner_is1) (Version: 9.5.5 - WiseCleaner.com, Inc.)
ZoneAlarm Antivirus (HKLM-x32\...\{1E626920-8C87-4114-BBD0-428B6F4BFB4F}) (Version: 15.0.653.17211 - Check Point Software Technologies Ltd.) Hidden
ZoneAlarm Firewall (HKLM-x32\...\{3B214EF2-9413-4300-96DB-165ECA1ED736}) (Version: 15.1.504.17269 - Check Point Software Technologies Ltd.) Hidden
ZoneAlarm Free Firewall (HKLM-x32\...\ZoneAlarm Free Firewall) (Version: 15.1.504.17269 - Check Point)
ZoneAlarm Security (HKLM-x32\...\{A51FEF33-C7A2-492E-840B-35A85D1F007E}) (Version: 15.1.504.17269 - Check Point Software Technologies Ltd.) Hidden

========================= Memory info: ===================================

Percentage of memory in use: 30%
Total physical RAM: 8127.79 MB
Available physical RAM: 5647.09 MB
Total Virtual: 9407.79 MB
Available Virtual: 6465.12 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:221.22 GB) (Free:168.64 GB) NTFS
3 Drive e: ( 1 TB dikzak) (Fixed) (Total:931.51 GB) (Free:845.81 GB) NTFS
5 Drive g: (Western Dig USB bovenop) (Fixed) (Total:465.63 GB) (Free:281.45 GB) NTFS
6 Drive k: (Toshiba 3.0) (Fixed) (Total:931.51 GB) (Free:867.01 GB) NTFS

========================= Users: ========================================

Gebruikersaccounts voor \\AZERTY

Administrator DefaultAccount F.J.Stols
Gast WDAGUtilityAccount
De opdracht is voltooid.

========================= Minidump Files ==================================

No minidump file found


**** End of log ****

p.s. zi zie ik dat Acronis ook nog tre zien is: die heb ik al in geen 100 jaar meetr gebruikt!
MiniToolBox by Farbar Version: 17-06-2016
Ran by F.J.Stols (administrator) on 02-06-2018 at 10:32:57
Running from "C:\Users\Gebruiker\Desktop"
Microsoft Windows 10 Pro (X64)
Model: To Be Filled By O.E.M. Manufacturer: To Be Filled By O.E.M.
Boot Mode: Normal
***************************************************************************

========================= Event log errors: ===============================

Application errors:
==================
Error: (06/02/2018 10:32:57 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:57 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:57 AM) (Source: Acronis Scheduler) (User: NT AUTHORITY)
Description: Taakplanner kan de taak >> "" met GUID '2AEC8EEC-1EBB-4024-9D81-82EF9D37519D' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:56 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:56 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:56 AM) (Source: Acronis Scheduler) (User: NT AUTHORITY)
Description: Taakplanner kan de taak >> "" met GUID '2AEC8EEC-1EBB-4024-9D81-82EF9D37519D' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:55 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:55 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:55 AM) (Source: Acronis Scheduler) (User: NT AUTHORITY)
Description: Taakplanner kan de taak >> "" met GUID '2AEC8EEC-1EBB-4024-9D81-82EF9D37519D' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:54 AM) (Source: Acronis Scheduler) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).


System errors:
=============
Error: (06/02/2018 10:17:58 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: toepassingsspecifiekLokaalStartenWindows.SecurityCenter.WscBrokerManagerNiet beschikbaarNT AUTHORITYSYSTEMS-1-5-18LocalHost (via LRPC)Niet beschikbaarNiet beschikbaar

Error: (06/02/2018 10:17:41 AM) (Source: volsnap) (User: )
Description: De schaduwkopieën van volume K: zijn afgebroken tijdens de detectie omdat een essentieel controlebestand niet kan worden geopend.

Error: (06/02/2018 10:15:57 AM) (Source: DCOM) (User: AZERTY)
Description: toepassingsspecifiekLokaalStarten{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}AZERTYF.J.StolsS-1-5-21-1916800224-2560957495-3225600593-1001LocalHost (via LRPC)Niet beschikbaarNiet beschikbaar

Error: (06/02/2018 10:15:57 AM) (Source: DCOM) (User: AZERTY)
Description: toepassingsspecifiekLokaalStarten{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}AZERTYF.J.StolsS-1-5-21-1916800224-2560957495-3225600593-1001LocalHost (via LRPC)Niet beschikbaarNiet beschikbaar

Error: (06/02/2018 10:15:56 AM) (Source: Service Control Manager) (User: )
Description: De mmsminisrv-service kan vanwege de volgende fout niet worden gestart:
%%1053 = De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord.


Error: (06/02/2018 10:15:56 AM) (Source: Service Control Manager) (User: )
Description: Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: mmsminisrv.

Error: (06/02/2018 10:15:46 AM) (Source: Ntfs) (User: NT AUTHORITY)
Description: Er is een beschadiging ontdekt in de bestandssysteemstructuur op het volume \\?\Volume{926f9b4d-00dd-4234-bda6-7b0c27252c8e}.

De exacte beschadiging is onbekend. De bestandssysteemstructuren moeten online worden gescand.

Error: (06/02/2018 10:15:46 AM) (Source: Microsoft-Windows-Ntfs) (User: NT AUTHORITY)
Description: \\?\Volume{926f9b4d-00dd-4234-bda6-7b0c27252c8e}\Device\HarddiskVolume63

Error: (06/02/2018 10:15:41 AM) (Source: Application Popup) (User: )
Description: avipbb.sys

Error: (06/02/2018 07:06:25 AM) (Source: Microsoft-Windows-Eventlog) (User: NT AUTHORITY)
Description: Er is een fout (res=1392) opgetreden tijdens het initialiseren van bronnen voor logboekregistratie voor kanaal Microsoft-Windows-Backup.


Microsoft Office Sessions:
=========================
Error: (06/02/2018 10:32:58 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:58 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:58 AM) (Source: Acronis Scheduler)(User: NT AUTHORITY)
Description: Taakplanner kan de taak >> "" met GUID '2AEC8EEC-1EBB-4024-9D81-82EF9D37519D' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:57 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:57 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:57 AM) (Source: Acronis Scheduler)(User: NT AUTHORITY)
Description: Taakplanner kan de taak >> "" met GUID '2AEC8EEC-1EBB-4024-9D81-82EF9D37519D' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:56 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:56 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:56 AM) (Source: Acronis Scheduler)(User: NT AUTHORITY)
Description: Taakplanner kan de taak >> "" met GUID '2AEC8EEC-1EBB-4024-9D81-82EF9D37519D' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 10:32:55 AM) (Source: Acronis Scheduler)(User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).


CodeIntegrity Errors:
===================================
Date: 2018-06-01 13:48:01.793
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 13:31:55.874
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 12:17:27.078
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 12:15:55.052
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 11:39:22.568
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 08:46:34.247
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 08:37:49.466
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-05-31 10:45:29.974
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-05-31 07:27:40.230
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-05-30 19:03:41.415
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.


=========================== Installed Programs ============================

4Team Safe PST Backup (HKLM-x32\...\{DF6372B1-3687-4C35-8FF3-AF289944A037}) (Version: 2.70.0639 - 4Team Corporation)
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
7-Zip 18.01 (x64) (HKLM\...\7-Zip) (Version: 18.01 - Igor Pavlov)
Adobe Flash Player 29 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 29.0.0.171 - Adobe Systems Incorporated)
Adobe Photoshop Elements 7.0 (HKLM-x32\...\Adobe Photoshop Elements 7) (Version: 7.0 - Adobe Systems Incorporated)
Adobe Photoshop Lightroom 5.7.1 64-bit (HKLM\...\{BC86B82C-8C0E-4408-9AC1-6B0F2D636963}) (Version: 5.7.1 - Adobe Systems Incorporated)
Adres 2000 Versie 1.93 (HKLM-x32\...\Adres 2000_is1) (Version: - H.C.C. Akkerman)
AOMEI Backupper Standard (HKLM-x32\...\{A83692F5-3E9B-4E95-9E7E-B5DF5536CE9D}_is1) (Version: - AOMEI Technology Co., Ltd.)
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 22.0.10.78 - Bitdefender)
Bitdefender Antivirus Free (HKLM\...\{1FCCF41D-5F00-4FE2-9653-162D0486C8B4}) (Version: 1.0.10.12 - Bitdefender)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.3.1.4 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 4.2.0 - Canon Inc.)
Canon MG6600 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG6600_series) (Version: 1.01 - Canon Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.43 - Piriform)
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.6795 - CDBurnerXP)
Classic Shell (HKLM\...\{CABCE573-0A86-42FA-A52A-C7EA61D5BE08}) (Version: 4.3.1 - IvoSoft)
CrystalDiskInfo 7.5.1 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 7.5.1 - Crystal Dew World)
CutePDF Writer 3.1 (HKLM\...\CutePDF Writer Installation) (Version: 3.1 - Acro Software Inc.)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Easy Rolodex 3.2 (HKLM\...\{48FC3F43-D57D-43A3-B1E6-EE88AFD93DE5}) (Version: 3.2 - Woerdekom Webdesign en Software)
FastStone Capture 4.8 (HKLM-x32\...\FastStone Capture) (Version: 4.8 - FastStone Soft)
FastStone Image Viewer 6.4 (HKLM-x32\...\FastStone Image Viewer) (Version: 6.4 - FastStone Soft)
FastStone Photo Resizer 3.8 (HKLM-x32\...\FastStone Photo Resizer) (Version: 3.8 - FastStone Soft.)
Folder Size 3.4.0.0 (HKLM-x32\...\{2DFA85ED-588F-4CE3-A175-29E52C3804A8}_is1) (Version: 3.4.0.0 - MindGems, Inc.)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 5.4.5.124 - Foxit Corporation)
Gadwin PrintScreen (HKLM-x32\...\Gadwin PrintScreen) (Version: 4.3 - Gadwin Systems, Inc.)
Gebruikersregistratie voor Canon MG6600 series (HKLM-x32\...\Gebruikersregistratie voor Canon MG6600 series) (Version: - ‭Canon Inc.)
GFExperience.Deployer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.Deployer) (Version: 3.10.0.95 - NVIDIA Corporation) Hidden
Google Earth Pro (HKLM\...\{D9EF644E-2FAE-493B-8180-5617CC774C4F}) (Version: 7.3.1.4507 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
Image Composite Editor (HKLM\...\{92AB5708-1AAA-4B1B-A8D5-45CF3AD77519}) (Version: 2.0.3 - Microsoft Corporation)
Image Resizer for Windows (64 bit) (HKLM\...\{617CA6E9-D5FB-4017-8130-82E68C56C34D}) (Version: 3.0.4802.35565 - Brice Lambson) Hidden
Image Resizer for Windows (HKLM-x32\...\{69d72156-6582-4556-8637-06f40aa7f85b}) (Version: 3.0.4802.35565 - Brice Lambson)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 20.2 - Intel)
Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
MailWasher Pro (HKLM-x32\...\MailWasher Pro_is1) (Version: - FireTrust Limited)
Malwarebytes versie 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft IntelliType Pro 8.0 (HKLM\...\{98C8DF59-BE5F-4EC2-9B12-FD2A54928EDB}) (Version: 8.0.225.0 - Microsoft)
Microsoft Office Professional Plus 2016 - nl-nl (HKLM\...\ProPlusRetail - nl-nl) (Version: 16.0.9330.2087 - Microsoft Corporation)
Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 18.065.0329.0002 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
MiniTool Partition Wizard Free 10.2.2 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.)
Mozilla Firefox 60.0.1 (x64 nl) (HKLM\...\Mozilla Firefox 60.0.1 (x64 nl)) (Version: 60.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 59.0.2 - Mozilla)
NVIDIA 3D Vision controllerstuurprogramma 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation)
NVIDIA HD Audio-stuurprogramma 1.3.35.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.35.1 - NVIDIA Corporation)
NVIDIA PhysX Systeem Software 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0413-0000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden
Panda Devices Agent (HKLM-x32\...\{3F9548B2-0B34-4453-A92E-35056B053F19}) (Version: 1.08.00 - Panda Security) Hidden
Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.08 - Panda Security) Hidden
Panda Protection (HKLM\...\{52F9D0C3-E6CF-4553-9013-8F2E834BD0B1}) (Version: 8.93.00 - Panda Security) Hidden
Revo Uninstaller 2.0.4 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.4 - VS Revo Group, Ltd.)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 2.11.4.0 - NVIDIA Corporation) Hidden
Speccy (HKLM\...\Speccy) (Version: 1.31 - Piriform)
Taalpakket voor Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - NLD (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - NLD) (Version: 10.0.50903 - Microsoft Corporation)
TeamViewer 13 (HKLM-x32\...\TeamViewer) (Version: 13.0.6447 - TeamViewer)
TomTom HOME (HKLM-x32\...\{30E6FC43-C31F-4968-9A06-AA38E3C3CF73}) (Version: 2.10.1 - Uw bedrijfsnaam)
TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.0 - VideoLAN)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden
WhatsApp (HKCU\...\WhatsApp) (Version: 0.2.9229 - WhatsApp)
Windows 10 Update Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22334 - Microsoft Corporation)
Windows 7 Games for Windows 10 and 8 (HKLM\...\Win7Games) (Version: 2.0 - Winaero - Free small and useful software for Windows)
Wise Disk Cleaner 9.73 (HKLM-x32\...\Wise Disk Cleaner_is1) (Version: 9.73 - WiseCleaner.com, Inc.)
Wise Registry Cleaner 9.5.5 (HKLM-x32\...\Wise Registry Cleaner_is1) (Version: 9.5.5 - WiseCleaner.com, Inc.)
ZoneAlarm Antivirus (HKLM-x32\...\{1E626920-8C87-4114-BBD0-428B6F4BFB4F}) (Version: 15.0.653.17211 - Check Point Software Technologies Ltd.) Hidden
ZoneAlarm Firewall (HKLM-x32\...\{3B214EF2-9413-4300-96DB-165ECA1ED736}) (Version: 15.1.504.17269 - Check Point Software Technologies Ltd.) Hidden
ZoneAlarm Free Firewall (HKLM-x32\...\ZoneAlarm Free Firewall) (Version: 15.1.504.17269 - Check Point)
ZoneAlarm Security (HKLM-x32\...\{A51FEF33-C7A2-492E-840B-35A85D1F007E}) (Version: 15.1.504.17269 - Check Point Software Technologies Ltd.) Hidden

========================= Memory info: ===================================

Percentage of memory in use: 30%
Total physical RAM: 8127.79 MB
Available physical RAM: 5647.09 MB
Total Virtual: 9407.79 MB
Available Virtual: 6465.12 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:221.22 GB) (Free:168.64 GB) NTFS
3 Drive e: ( 1 TB dikzak) (Fixed) (Total:931.51 GB) (Free:845.81 GB) NTFS
5 Drive g: (Western Dig USB bovenop) (Fixed) (Total:465.63 GB) (Free:281.45 GB) NTFS
6 Drive k: (Toshiba 3.0) (Fixed) (Total:931.51 GB) (Free:867.01 GB) NTFS

========================= Users: ========================================

Gebruikersaccounts voor \\AZERTY

Administrator DefaultAccount F.J.Stols
Gast WDAGUtilityAccount
De opdracht is voltooid.

========================= Minidump Files ==================================

No minidump file found


**** End of log ****
Abraham 54: zo zie ik nog steeds Acronis meelopen, die heb ik al heel lang niet meer. Mocht je weer een KMS tegen komen: ik hàd een officiéle versie van office bij Rakuten. Maar daar had ik tamelijk onovrkomelijke problemen mee, en ben terug gegaan naar mijn vorige office 2016...
 
Dezelfde Bitdefender error als Kate!

Bovendien veroorzaken meer programma's fouten, zoals Acronis.

Overweeg Bitdefender te verwijderen en ook over te gaan op Kasperspy Free.
 
Inmiddels de BD (opnieuw) verwijderd met Revo. Kaspersky free had ik inderdaad al eens eerder gehad (ook op jouw advies, maar daar waren er in de loop van de tijd meer van), en ik ga opnieuw kijken. Hartelijk dank. fjs
 
Ik gebruik Kaspersky Free in combinatie met de ZoneAlarm Free firewall en ben daar zeer tevreden over.
De firewall bewaakt ook de hostfile tegen ingrepen
 
Z.A. had ik inderdaad al, en ga nu Kaspersky - ondanks berichten over de vermeende "spionageactiviteiten" installeren. MBAM heb ik dan ook nog. Kan ik dan die Windows defender uitschakelen?
vervolg: bij de installatie van kaspersky werden resten Avira aangetroffen. Gevraagd wordt opnieuw op te starten, maar dan blijven we in een kring rond draaien. Als ik "zeg"laat Avira maar zitten geeft Kaspersky er de brui aan: er zouden mogelijk virussen een rol spelen. wat nu?
 
Laatst bewerkt:
Die vermeende spionage activiteiten zijn in mijn ogen niets anders dan enkel geruchten (mede in de wereld gebracht, al weer een paar jaar geleden, door Kasperky's ex-vrouw).
Maar het past volledig in het politieke spel van westen tegen Rusland.
 
Maar: dankzij die onzichtbare Avira-resten kan ik Kaspersky NIET installeren, hoe kan ik dat doorbreken? De bitdefender popups zijn tot nu toe verdwenen.
 
Download
52063a40e2e64-Farbar_Recovery_Scan_Tool_canned.png
Farbar Recovery Scan Tool 32 of 64 bit van één van de onderstaande links
Farbar Recovery Scan Tool 32 bit (x86)
Farbar Recovery Scan Tool 64 bit (x64)
Downloadlokatie: Dit programma absoluut naar het bureaublad downloaden dan wel daar naar toe verplaatsen!
Opmerkingen
: Alle openstaande programma's en webpagina's dienen afgesloten te zijn.

Antivirusprogramma en actieve malwarescanners dienen al voor je FRST.exe start gedeaktiveert zijn!
Hier en hier vindt je gegevens hoe antivirusprogramma's en spywarescanners te deaktiveren.

FRST opstarten:
  • Windows 2000 en Windows XP: dubbelklik op FRST.exe.
  • Windows Vista, Windows 7, Windows 8/8.1 en Windows 10: via rechtsklik op FRST.exe of FRST64.exe en kies voor "Als Administrator uitvoeren".

FRST start op:
  • Wanneer het programma is geopend klik dan op de knop Yes bij de disclaimer.
  • Druk vervolgens op de Scan knop.
  • Aansluitend zal een logbestand - FRST.txt en Addition-txt aangemaakt worden en op het bureaublad opgeslagen worden.
  • Post de inhoud van beide logbestanden in jouw volgende bericht.
.

In geval de inhoud van een van de logs of van beide logs te groot is om te posten kijk dan hier: Info - Bijlage toevoegen aan een bericht.
 
Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 16.05.2018 01
Gestart door F.J.Stols (Beheerder) op AZERTY (02-06-2018 12:26:04)
Gestart vanaf C:\Users\Gebruiker\Desktop
Geladen Profielen: F.J.Stols (Beschikbare Profielen: F.J.Stols)
Platform: Windows 10 Pro Versie 1803 17134.48 (X64) Taal: Nederlands (Nederland)
Internet Explorer Versie 11 (Standaardbrowser: FF)
Boot Modus: Normal
Handleiding voor Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials

==================== Processen (gefilterd) =================

(Als een item is opgenomen in de fixlist, zal het proces worden gesloten. Het bestand zal niet worden verplaatst.)

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe
() C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(AOMEI Tech Co., Ltd.) C:\Program Files (x86)\AOMEI Backupper\ABService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\nlssrv32.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(4Team) C:\Program Files (x86)\4Team Corporation\SafePSTBackup Shadow Copy Service\SafePST.ShadowCopySvc.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.16.17656.18052-0\MsMpEng.exe
() C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.16.17656.18052-0\NisSrv.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliType Pro\itype.exe
(BonSoft) C:\Program Files\ClocX\ClocX.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
(Gadwin Systems, Inc) C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe
(eCOSM) C:\Program Files (x86)\MailWasher Pro\MailWasher.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(4Team Corporation) C:\Program Files (x86)\4Team Corporation\Safe PST Backup\SafePSTBackup.exe
(Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\ICM-Service.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11804.1001.10.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
(Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Register (gefilterd) ===========================

(Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [588872 2017-02-20] ()
HKLM\...\Run: [itype] => C:\Program Files\Microsoft IntelliType Pro\itype.exe [2306448 2010-07-21] (Microsoft Corporation)
HKLM\...\Run: [ClocX] => C:\Program Files\ClocX\ClocX.exe [2713600 2013-01-14] (BonSoft)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2017-08-13] (IvoSoft)
HKLM-x32\...\Run: [ZoneAlarm] => C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [145208 2017-04-14] (Check Point Software Technologies Ltd.)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\S-1-5-21-1916800224-2560957495-3225600593-1001\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [254840 2017-03-17] (TomTom)
HKU\S-1-5-21-1916800224-2560957495-3225600593-1001\...\Run: [Gadwin PrintScreen] => C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe [495616 2007-08-20] (Gadwin Systems, Inc)
HKU\S-1-5-21-1916800224-2560957495-3225600593-1001\...\Run: [MailWasher] => C:\PROGRA~2\MAILWA~1\MAILWA~1.EXE* [4393984 2003-11-06] ()
HKU\S-1-5-21-1916800224-2560957495-3225600593-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [18364648 2018-05-24] (Piriform Ltd)
HKU\S-1-5-21-1916800224-2560957495-3225600593-1001\...\Run: [Safe PST Backup] => C:\Program Files (x86)\4Team Corporation\Safe PST Backup\SafePSTBackup.exe [15792632 2018-02-01] (4Team Corporation)

==================== Internet (gefilterd) ====================

(Als een item is opgenomen in de fixlist en een registeritem is, wordt het verwijderd of hersteld naar de standaard.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.254 195.121.1.34 195.121.1.66
Tcpip\..\Interfaces\{b759dc05-4683-4f91-beb2-29472251c1ba}: [DhcpNameServer] 192.168.2.254 195.121.1.34 195.121.1.66

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1916800224-2560957495-3225600593-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.nl/
SearchScopes: HKLM -> {2211d4a5-48d0-47f5-a7cd-81e861470f7f} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-6b3d718d&q={searchTerms}
SearchScopes: HKLM-x32 -> {2211d4a5-48d0-47f5-a7cd-81e861470f7f} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-6b3d718d&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1916800224-2560957495-3225600593-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE00
SearchScopes: HKU\S-1-5-21-1916800224-2560957495-3225600593-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE00
SearchScopes: HKU\S-1-5-21-1916800224-2560957495-3225600593-1001 -> {1D4B9C1E-025D-41AE-8DEF-B53071ADC0CD} URL = hxxps://search.yahoo.com/search?p={searchTerms}&intl=us&fr=chrf-iryus&type=ypi_znlrm_00_00_ie
SearchScopes: HKU\S-1-5-21-1916800224-2560957495-3225600593-1001 -> {2211d4a5-48d0-47f5-a7cd-81e861470f7f} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE00
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-06-01] (Microsoft Corporation)
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (IvoSoft)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2017-08-13] (IvoSoft)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2018-04-30] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-06-01] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-06-01] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-06-01] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-06-01] (Microsoft Corporation)

Edge:
======
Edge HomeButtonPage: HKU\S-1-5-21-1916800224-2560957495-3225600593-1001 -> hxxp://www.google.com

FireFox:
========
FF DefaultProfile: ujuy6qkm.default-1520352159751
FF DefaultProfile: 2ueyth03.default
FF ProfilePath: C:\Users\Gebruiker\AppData\Roaming\TomTom\HOME\Profiles\qt9tjb9c.default [2017-08-15]
FF ProfilePath: C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\ujuy6qkm.default-1520352159751 [2018-06-02]
FF Homepage: Mozilla\Firefox\Profiles\ujuy6qkm.default-1520352159751 -> www.google.nl/
FF Extension: (uBlock Origin) - C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\ujuy6qkm.default-1520352159751\Extensions\uBlock0@raymondhill.net.xpi [2018-05-30]
FF Extension: (TLS 1.3 gradual roll-out fallback-limit) - C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\ujuy6qkm.default-1520352159751\features\{f1127058-e7e5-4955-875b-87a42babf2fa}\tls13-version-fallback-rollout-bug1462099@mozilla.org.xpi [2018-05-31] [Verouderd]
FF ProfilePath: C:\Users\Gebruiker\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\2ueyth03.default [2018-06-02]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_29_0_0_171.dll [2018-05-08] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_29_0_0_171.dll [2018-05-08] ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-04-29] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-04-29] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-21] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-02-09] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-02-09] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-02-09] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-02-09] (VideoLAN)

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx

==================== Services (gefilterd) ====================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1278208 2017-02-20] ()
R2 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [122728 2017-09-04] (AOMEI Tech Co., Ltd.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8652976 2018-05-24] (Microsoft Corporation)
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [651720 2016-07-23] (Macrovision Europe Ltd.) [Bestand niet getekend]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163712 2016-06-14] (NVIDIA Corporation)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [84616 2013-06-28] ()
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes)
S2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4795288 2017-02-13] (Acronis International GmbH)
S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [2908352 2017-01-06] (Acronis International GmbH)
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Bestand niet getekend]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-06-14] (NVIDIA Corporation)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024 2016-06-14] (NVIDIA Corporation)
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Bestand niet getekend]
R2 SafePSTShadowCopy; C:\Program Files (x86)\4Team Corporation\SafePSTBackup Shadow Copy Service\SafePST.ShadowCopySvc.exe [16392 2018-02-01] (4Team)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4737448 2018-04-12] (Microsoft Corporation)
S3 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
S4 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7013704 2016-12-21] ()
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10945776 2017-12-15] (TeamViewer GmbH)
R2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [4107680 2017-04-14] (Check Point Software Technologies Ltd.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.16.17656.18052-0\NisSrv.exe [4682552 2018-06-02] (Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.16.17656.18052-0\MsMpEng.exe [101096 2018-06-02] (Microsoft Corporation)
S3 ZAPrivacyService; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [114936 2016-11-01] (Check Point Software Technologies, Ltd.)
R2 ZoneAlarm ICM Service; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ICM-Service.exe [1058616 2017-04-14] (Check Point Software Technologies Ltd.)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Drivers (gefilterd) ======================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

R0 ambakdrv; C:\WINDOWS\System32\ambakdrv.sys [51120 2016-12-21] ()
R2 ammntdrv; C:\WINDOWS\system32\ammntdrv.sys [171952 2016-12-21] ()
R2 amwrtdrv; C:\WINDOWS\system32\amwrtdrv.sys [38320 2017-09-01] ()
R0 avdevprot; C:\WINDOWS\System32\DRIVERS\avdevprot.sys [60920 2017-12-07] (Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [178840 2017-12-07] (Avira Operations GmbH & Co. KG)
S1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [169376 2017-12-07] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [44488 2017-12-07] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [88488 2017-12-07] (Avira Operations GmbH & Co. KG)
R0 avusbflt; C:\WINDOWS\System32\Drivers\avusbflt.sys [38048 2017-12-07] (Avira Operations GmbH & Co. KG)
R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [375136 2017-03-13] (Acronis International GmbH)
R1 klhk; C:\WINDOWS\System32\drivers\klhk.sys [610496 2018-06-02] (AO Kaspersky Lab)
U5 KLIF; C:\Windows\System32\Drivers\KLIF.sys [1111232 2018-06-02] (AO Kaspersky Lab)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253880 2018-04-27] (Malwarebytes)
R1 mtihint; C:\WINDOWS\system32\Drivers\mtihint.sys [18504 2015-07-14] (Micron Technology, Inc.) [Bestand niet getekend]
R1 NNSNAHSL; C:\WINDOWS\system32\DRIVERS\NNSNAHSL.sys [89960 2017-03-17] (Panda Security, S.L.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_ref_pubwu.inf_amd64_2e7fa54192fe16d0\nvlddmkm.sys [16936048 2017-11-09] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-06-14] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation)
R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2013-09-30] ()
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2013-09-30] ()
S3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [21984 2015-06-04] ()
S3 smbdirect; C:\WINDOWS\System32\DRIVERS\smbdirect.sys [152064 2018-04-12] (Microsoft Corporation)
R0 tib; C:\WINDOWS\System32\DRIVERS\tib.sys [1310560 2017-03-13] (Acronis International GmbH)
R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [214360 2017-03-13] (Acronis International GmbH)
S3 tnd; C:\WINDOWS\system32\DRIVERS\tnd.sys [688864 2017-03-13] (Acronis International GmbH)
R1 UimBus; C:\WINDOWS\System32\drivers\UimBus.sys [102576 2015-08-21] ()
R1 Uim_DEVIM; C:\WINDOWS\System32\drivers\uim_devim.sys [25904 2015-08-21] ()
R1 Uim_IM; C:\WINDOWS\System32\drivers\uim_im.sys [701232 2015-08-21] ()
R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [324448 2017-03-13] (Acronis International GmbH)
R1 Vsdatant; C:\WINDOWS\system32\DRIVERS\vsdatant.sys [461240 2017-04-13] (Check Point Software Technologies Ltd.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46072 2018-06-02] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [313384 2018-06-02] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [61992 2018-06-02] (Microsoft Corporation)
U3 iswSvc; geen ImagePath

==================== NetSvcs (gefilterd) ===================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)


==================== Een Maand Aangemaakt bestanden en mappen ========

(Als een item is opgenomen in de fixlist, word de map of het bestand verplaatst.)

2018-06-02 12:26 - 2018-06-02 12:26 - 000018922 _____ C:\Users\Gebruiker\Desktop\FRST.txt
2018-06-02 12:25 - 2018-06-02 12:25 - 002413056 _____ (Farbar) C:\Users\Gebruiker\Desktop\FRST64.exe
2018-06-02 11:26 - 2018-06-02 11:26 - 001111232 ____N (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klif.sys
2018-06-02 11:26 - 2018-06-02 11:26 - 000610496 ____N (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klhk.sys
2018-06-02 11:26 - 2018-06-02 11:26 - 000220360 ____N (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klflt.sys
2018-06-02 11:26 - 2018-06-02 11:26 - 000151848 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\klhkum.dll
2018-06-02 11:26 - 2018-06-02 11:26 - 000000000 _____ C:\WINDOWS\system32\Drivers\OLDB910.tmp
2018-06-02 11:26 - 2018-06-02 11:26 - 000000000 _____ C:\WINDOWS\system32\Drivers\OLDB7E4.tmp
2018-06-02 11:26 - 2018-06-02 11:26 - 000000000 _____ C:\WINDOWS\system32\Drivers\OLDB7D3.tmp
2018-06-02 11:22 - 2018-06-02 11:22 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2018-06-02 11:15 - 2018-06-02 11:39 - 000000000 ____D C:\found.001
2018-06-02 10:55 - 2018-06-02 10:55 - 000022672 _____ C:\ProgramData\agent.uninstall.1527929695.bdinstall.bin
2018-06-02 10:51 - 2018-06-02 10:51 - 001793506 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2018-05-30 13:36 - 2018-05-30 13:37 - 000001388 _____ C:\Users\Gebruiker\Desktop\Toshiba 3.0 (G).lnk
2018-05-30 09:31 - 2018-05-30 09:31 - 000000000 ____D C:\Users\Gebruiker\AppData\Local\PeerDistRepub
2018-05-30 08:57 - 2018-05-30 09:31 - 000000000 ____D C:\WINDOWS\Minidump
2018-05-25 16:18 - 2018-05-25 16:18 - 000000000 ____D C:\ProgramData\bdch
2018-05-21 12:15 - 2018-05-21 12:14 - 000027136 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll
2018-05-21 12:14 - 2018-05-21 12:18 - 000000000 ____D C:\WINDOWS\CSC
2018-05-21 12:14 - 2018-05-21 12:15 - 000000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents
2018-05-21 12:14 - 2018-05-21 12:15 - 000000000 ___SD C:\WINDOWS\system32\AppV
2018-05-21 12:14 - 2018-05-21 12:14 - 000000000 ____D C:\WINDOWS\RemotePackages
2018-05-21 12:14 - 2018-05-21 12:14 - 000000000 ____D C:\WINDOWS\containers
2018-05-21 12:14 - 2018-05-21 12:14 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2018-05-08 20:05 - 2018-04-28 16:25 - 000652184 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2018-05-08 20:05 - 2018-04-28 16:24 - 000749976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2018-05-08 20:05 - 2018-04-28 16:23 - 000826776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
2018-05-08 20:05 - 2018-04-28 16:23 - 000399768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
2018-05-08 20:05 - 2018-04-28 16:19 - 021389360 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-05-08 20:05 - 2018-04-28 16:17 - 001634800 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2018-05-08 20:05 - 2018-04-28 16:04 - 012712960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2018-05-08 20:05 - 2018-04-28 16:04 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbscan.sys
2018-05-08 20:05 - 2018-04-28 16:03 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll
2018-05-08 20:05 - 2018-04-28 16:03 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedPCCSP.dll
2018-05-08 20:05 - 2018-04-28 16:02 - 008623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2018-05-08 20:05 - 2018-04-28 16:00 - 000695296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2018-05-08 20:05 - 2018-04-28 15:59 - 003655168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-05-08 20:05 - 2018-04-28 15:59 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2018-05-08 20:05 - 2018-04-28 15:58 - 004070400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2018-05-08 20:05 - 2018-04-28 15:58 - 001855488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2018-05-08 20:05 - 2018-04-28 15:58 - 001664512 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2018-05-08 20:05 - 2018-04-28 15:58 - 000758272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2018-05-08 20:05 - 2018-04-28 15:31 - 001454016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2018-05-08 20:05 - 2018-04-28 15:28 - 020383720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-05-08 20:05 - 2018-04-28 15:18 - 000150016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll
2018-05-08 20:05 - 2018-04-28 15:17 - 012500992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2018-05-08 20:05 - 2018-04-28 15:16 - 011903488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2018-05-08 20:05 - 2018-04-28 15:16 - 007987712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2018-05-08 20:05 - 2018-04-28 15:14 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2018-05-08 20:05 - 2018-04-28 15:14 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2018-05-08 20:05 - 2018-04-28 15:13 - 002897408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-05-08 20:05 - 2018-04-28 15:13 - 001585664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2018-05-08 20:05 - 2018-04-28 15:12 - 001380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2018-05-08 20:05 - 2018-04-28 13:20 - 023862272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2018-05-08 20:05 - 2018-04-28 13:17 - 019525120 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2018-05-08 20:05 - 2018-04-28 13:04 - 000944640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2018-05-08 20:05 - 2018-04-28 13:02 - 003732800 _____ C:\WINDOWS\system32\Windows.Mirage.dll
2018-05-08 20:05 - 2018-04-28 12:58 - 000976384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2018-05-08 20:05 - 2018-04-28 12:58 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Analog.dll
2018-05-08 20:05 - 2018-04-28 11:33 - 000658432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2018-05-08 20:05 - 2018-04-28 11:30 - 002841312 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2018-05-08 20:05 - 2018-04-28 08:18 - 000705944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2018-05-08 20:05 - 2018-04-28 06:37 - 001034624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2018-05-08 20:05 - 2018-04-28 06:35 - 000272288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2018-05-08 20:05 - 2018-04-28 06:35 - 000269216 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2018-05-08 20:05 - 2018-04-28 06:31 - 001063320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2018-05-08 20:05 - 2018-04-28 06:31 - 000473496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2018-05-08 20:05 - 2018-04-28 06:30 - 001456616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-05-08 20:05 - 2018-04-28 06:29 - 009159064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-05-08 20:05 - 2018-04-28 06:29 - 001565592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2018-05-08 20:05 - 2018-04-28 06:29 - 001174424 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-05-08 20:05 - 2018-04-28 06:29 - 001012120 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-05-08 20:05 - 2018-04-28 06:29 - 000885848 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2018-05-08 20:05 - 2018-04-28 06:29 - 000788216 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2018-05-08 20:05 - 2018-04-28 06:29 - 000776880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2018-05-08 20:05 - 2018-04-28 06:29 - 000494488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2018-05-08 20:05 - 2018-04-28 06:29 - 000382872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2018-05-08 20:05 - 2018-04-28 06:29 - 000134552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-05-08 20:05 - 2018-04-28 06:28 - 007436624 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-05-08 20:05 - 2018-04-28 06:28 - 002753040 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2018-05-08 20:05 - 2018-04-28 06:28 - 000709816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2018-05-08 20:05 - 2018-04-28 06:28 - 000170904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2018-05-08 20:05 - 2018-04-28 06:27 - 007519992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-05-08 20:05 - 2018-04-28 06:27 - 003283400 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2018-05-08 20:05 - 2018-04-28 06:27 - 002835864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-05-08 20:05 - 2018-04-28 06:27 - 002422168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2018-05-08 20:05 - 2018-04-28 06:27 - 001258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-05-08 20:05 - 2018-04-28 06:27 - 001191168 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2018-05-08 20:05 - 2018-04-28 06:27 - 000733992 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2018-05-08 20:05 - 2018-04-28 06:27 - 000604568 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2018-05-08 20:05 - 2018-04-28 06:14 - 002486976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2018-05-08 20:05 - 2018-04-28 06:14 - 000434584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2018-05-08 20:05 - 2018-04-28 06:13 - 006569952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-05-08 20:05 - 2018-04-28 06:13 - 006044104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-05-08 20:05 - 2018-04-28 06:13 - 001426328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2018-05-08 20:05 - 2018-04-28 06:13 - 000786168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2018-05-08 20:05 - 2018-04-28 06:13 - 000665320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2018-05-08 20:05 - 2018-04-28 06:13 - 000559968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2018-05-08 20:05 - 2018-04-28 06:12 - 002242208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2018-05-08 20:05 - 2018-04-28 06:12 - 000606448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2018-05-08 20:05 - 2018-04-28 06:12 - 000567136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2018-05-08 20:05 - 2018-04-28 06:11 - 025848832 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-05-08 20:05 - 2018-04-28 06:05 - 022002688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-05-08 20:05 - 2018-04-28 06:04 - 022707712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-05-08 20:05 - 2018-04-28 06:04 - 008188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2018-05-08 20:05 - 2018-04-28 06:04 - 004372992 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2018-05-08 20:05 - 2018-04-28 06:03 - 000585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs3.dll
2018-05-08 20:05 - 2018-04-28 06:03 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs1.dll
2018-05-08 20:05 - 2018-04-28 06:03 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.th.dll
2018-05-08 20:05 - 2018-04-28 06:03 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.win81.dll
2018-05-08 20:05 - 2018-04-28 06:02 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs4.dll
2018-05-08 20:05 - 2018-04-28 06:02 - 000474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs2.dll
2018-05-08 20:05 - 2018-04-28 06:02 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2018-05-08 20:05 - 2018-04-28 06:02 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.win8rtm.dll
2018-05-08 20:05 - 2018-04-28 06:02 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2018-05-08 20:05 - 2018-04-28 06:01 - 004706816 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2018-05-08 20:05 - 2018-04-28 06:00 - 007583232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-05-08 20:05 - 2018-04-28 06:00 - 004867072 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2018-05-08 20:05 - 2018-04-28 06:00 - 003389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2018-05-08 20:05 - 2018-04-28 05:59 - 019399168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-05-08 20:05 - 2018-04-28 05:59 - 003392512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2018-05-08 20:05 - 2018-04-28 05:59 - 003320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2018-05-08 20:05 - 2018-04-28 05:59 - 000898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2018-05-08 20:05 - 2018-04-28 05:59 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-05-08 20:05 - 2018-04-28 05:59 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2018-05-08 20:05 - 2018-04-28 05:59 - 000553984 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationExtensions.dll
2018-05-08 20:05 - 2018-04-28 05:59 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2018-05-08 20:05 - 2018-04-28 05:58 - 006661632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2018-05-08 20:05 - 2018-04-28 05:58 - 003086336 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2018-05-08 20:05 - 2018-04-28 05:58 - 002366976 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2018-05-08 20:05 - 2018-04-28 05:58 - 000814592 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2018-05-08 20:05 - 2018-04-28 05:58 - 000624128 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2018-05-08 20:05 - 2018-04-28 05:57 - 005951488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2018-05-08 20:05 - 2018-04-28 05:57 - 002170368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2018-05-08 20:05 - 2018-04-28 05:56 - 003440640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2018-05-08 20:05 - 2018-04-28 05:56 - 002961408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2018-05-08 20:05 - 2018-04-28 05:56 - 002902528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2018-05-08 20:05 - 2018-04-28 05:56 - 002700800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2018-05-08 20:05 - 2018-04-28 05:56 - 002236928 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2018-05-08 20:05 - 2018-04-28 05:56 - 001817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2018-05-08 20:05 - 2018-04-28 05:56 - 001550848 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2018-05-08 20:05 - 2018-04-28 05:56 - 000933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2018-05-08 20:05 - 2018-04-28 05:56 - 000917504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2018-05-08 20:05 - 2018-04-28 05:56 - 000775680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2018-05-08 20:05 - 2018-04-28 05:55 - 003712000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2018-05-08 20:05 - 2018-04-28 05:55 - 002900992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2018-05-08 20:05 - 2018-04-28 05:55 - 001586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2018-05-08 20:05 - 2018-04-28 05:55 - 001421312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2018-05-08 20:05 - 2018-04-28 05:55 - 001160192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2018-05-08 20:05 - 2018-04-28 05:55 - 000960512 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2018-05-08 20:05 - 2018-04-28 05:55 - 000596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2018-05-08 20:05 - 2018-04-28 05:55 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2018-05-08 20:05 - 2018-04-28 05:54 - 005782528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-05-08 20:05 - 2018-04-28 05:54 - 000561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2018-05-08 20:05 - 2018-04-28 05:53 - 004929024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2018-05-08 20:05 - 2018-04-28 05:53 - 001235968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2018-05-08 20:05 - 2018-04-28 05:53 - 000615424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2018-05-08 20:05 - 2018-04-28 05:53 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-05-08 20:05 - 2018-04-28 05:53 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2018-05-08 20:05 - 2018-04-28 05:52 - 003015168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2018-05-08 20:05 - 2018-04-28 05:52 - 001636352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2018-05-08 20:05 - 2018-04-28 05:52 - 000860160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2018-05-08 20:05 - 2018-04-28 05:52 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2018-05-08 20:05 - 2018-04-28 05:52 - 000619520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2018-05-08 20:05 - 2018-04-28 05:51 - 001466368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2018-05-08 20:05 - 2018-04-28 05:51 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2018-05-08 20:05 - 2018-04-28 05:51 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2018-05-08 20:05 - 2018-04-28 04:43 - 001953280 _____ C:\WINDOWS\system32\rdpnano.dll
2018-05-08 20:05 - 2018-04-28 04:42 - 000001312 _____ C:\WINDOWS\system32\tcbres.wim
2018-05-08 20:04 - 2018-04-28 16:03 - 013570560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2018-05-08 20:04 - 2018-04-28 16:02 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2018-05-08 20:04 - 2018-04-28 16:01 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
2018-05-08 20:04 - 2018-04-28 15:14 - 000344064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2018-05-08 20:04 - 2018-04-28 06:01 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
2018-05-08 20:04 - 2018-04-28 06:01 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2018-05-08 20:04 - 2018-04-28 06:00 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2018-05-08 20:04 - 2018-04-28 05:57 - 001534976 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2018-05-08 20:04 - 2018-04-28 05:57 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll
2018-05-08 20:04 - 2018-04-28 05:56 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll

==================== Een Maand Gewijzigd bestanden en mappen ========

(Als een item is opgenomen in de fixlist, word de map of het bestand verplaatst.)

2018-06-02 12:26 - 2018-04-25 11:46 - 000000000 ____D C:\FRST
2018-06-02 12:24 - 2016-11-18 15:52 - 000000000 ____D C:\Users\Gebruiker\AppData\LocalLow\Mozilla
2018-06-02 12:02 - 2016-07-22 12:25 - 000000000 ____D C:\Users\Gebruiker\Documents\Outlook-bestanden
2018-06-02 11:53 - 2018-05-01 17:51 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-06-02 11:40 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-06-02 11:40 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-06-02 11:30 - 2018-05-01 18:00 - 001775102 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-06-02 11:30 - 2018-04-12 18:01 - 000787108 _____ C:\WINDOWS\system32\perfh013.dat
2018-06-02 11:30 - 2018-04-12 18:01 - 000154568 _____ C:\WINDOWS\system32\perfc013.dat
2018-06-02 11:30 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF
2018-06-02 11:25 - 2018-05-01 18:02 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-06-02 11:25 - 2018-02-27 14:06 - 000000000 ____D C:\Program Files (x86)\AOMEI Backupper
2018-06-02 11:25 - 2017-04-16 03:23 - 000000082 _____ C:\WINDOWS\SysWOW64\winsevr.dat
2018-06-02 11:25 - 2016-08-05 09:26 - 000000000 ____D C:\ProgramData\NVIDIA
2018-06-02 11:25 - 2016-07-22 13:58 - 000000000 ____D C:\Users\Gebruiker\AppData\Roaming\MailWasherPro
2018-06-02 11:24 - 2018-04-11 23:04 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2018-06-02 11:23 - 2017-08-11 09:17 - 000000000 ____D C:\ProgramData\Avira
2018-06-02 11:08 - 2017-12-15 20:27 - 000000000 ____D C:\Users\Gebruiker\AppData\Local\ClassicShell
2018-06-02 11:06 - 2018-04-09 15:31 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2018-06-02 10:58 - 2016-11-05 11:40 - 000000000 ____D C:\ProgramData\Bitdefender
2018-06-02 10:56 - 2018-04-11 23:04 - 000131072 _____ C:\WINDOWS\system32\config\ELAM
2018-06-02 10:52 - 2017-03-04 15:28 - 000000000 ____D C:\ProgramData\firebird
2018-06-02 07:11 - 2016-07-22 12:29 - 000000416 _____ C:\Users\Gebruiker\Desktop\Deze pc.lnk
2018-06-02 07:06 - 2016-07-23 10:02 - 000000000 ____D C:\Users\Gebruiker\AppData\Roaming\DesktopOK
2018-06-02 06:37 - 2018-04-12 01:30 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-06-01 13:35 - 2018-04-30 08:49 - 000000570 _____ C:\Users\Gebruiker\Desktop\Western Dig USB bovenop (G).lnk
2018-06-01 12:32 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps
2018-06-01 12:26 - 2018-04-10 08:43 - 000001024 ____H C:\SYSTAG.BIN
2018-06-01 08:45 - 2018-04-29 11:48 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-05-31 11:05 - 2018-03-16 17:09 - 000000000 ____D C:\Users\Gebruiker\AppData\Roaming\WhatsApp
2018-05-31 10:59 - 2018-03-17 13:20 - 000000000 ____D C:\Users\Gebruiker\AppData\Local\WhatsApp
2018-05-31 10:59 - 2018-03-16 17:09 - 000002321 _____ C:\Users\Gebruiker\Desktop\WhatsApp.lnk
2018-05-31 10:59 - 2018-03-16 17:09 - 000000000 ____D C:\Users\Gebruiker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp
2018-05-31 10:53 - 2018-05-01 16:10 - 000000000 ___DC C:\WINDOWS\Panther
2018-05-31 10:53 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2018-05-31 10:51 - 2018-05-01 18:02 - 000003936 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2018-05-30 14:54 - 2017-11-03 15:03 - 000000000 ____D C:\Program Files\Mozilla Firefox
2018-05-30 14:54 - 2016-08-03 07:05 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2018-05-30 13:46 - 2017-11-03 15:03 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2018-05-30 09:31 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2018-05-30 08:59 - 2018-05-01 17:52 - 000000000 ____D C:\Users\Gebruiker
2018-05-21 12:18 - 2018-04-26 08:50 - 000000000 ____D C:\Users\Gebruiker\AppData\Local\Packages
2018-05-21 12:17 - 2016-08-07 08:52 - 000000000 ___RD C:\Users\Gebruiker\3D Objects
2018-05-21 12:17 - 2016-02-13 15:33 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-05-21 12:16 - 2018-05-01 17:51 - 000473456 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\tk-TM
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\sw-KE
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\si-LK
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\prs-AF
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\mn-MN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\ky-KG
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-BD
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\zu-ZA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\yo-NG
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\xh-ZA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\wo-SN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\tn-ZA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\tk-TM
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\ti-ET
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\te-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\sw-KE
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\rw-RW
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\prs-AF
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\or-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\nso-ZA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\mn-MN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\ky-KG
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\km-KH
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\is-IS
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\ig-NG
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\id-ID
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\bn-BD
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\be-BY
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\as-IN
2018-05-21 12:15 - 2018-04-12 18:02 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2018-05-21 12:15 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\TextInput
2018-05-21 12:15 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2018-05-21 12:15 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\ta-in
2018-05-21 12:15 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\si-lk
2018-05-21 12:15 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\setup
2018-05-21 12:15 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\oobe
2018-05-21 12:15 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\appraiser
2018-05-21 12:15 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\am-et
2018-05-21 12:15 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Provisioning
2018-05-21 12:15 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2018-05-21 12:15 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\bcastdvr
2018-05-21 12:14 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SystemApps
2018-05-21 12:14 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\security
2018-05-21 12:14 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\schemas
2018-05-21 12:14 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2018-05-21 12:14 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2018-05-21 12:11 - 2018-03-10 11:39 - 000000000 ____D C:\ProgramData\CanonIJPLM
2018-05-21 12:10 - 2018-05-01 18:02 - 000003576 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2018-05-21 12:10 - 2018-05-01 18:02 - 000003452 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2018-05-08 20:12 - 2016-07-22 09:51 - 000000000 ____D C:\WINDOWS\system32\MRT
2018-05-08 20:09 - 2017-10-11 15:58 - 141696960 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2018-05-08 20:09 - 2016-07-22 09:51 - 141696960 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2018-05-08 17:16 - 2018-05-01 18:02 - 000004688 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier
2018-05-08 17:16 - 2018-05-01 18:02 - 000004532 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2018-05-08 17:16 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2018-05-08 17:16 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Macromed

==================== Bestanden in de root van sommige mappen =======

2016-10-09 09:30 - 2016-10-09 09:30 - 000000046 _____ () C:\Users\Gebruiker\AppData\Roaming\Camdata.ini
2016-10-09 09:30 - 2016-10-09 09:30 - 000000408 _____ () C:\Users\Gebruiker\AppData\Roaming\CamLayout.ini
2016-10-09 09:30 - 2016-10-09 09:30 - 000000408 _____ () C:\Users\Gebruiker\AppData\Roaming\CamShapes.ini
2016-10-09 09:30 - 2016-10-09 09:30 - 000004547 _____ () C:\Users\Gebruiker\AppData\Roaming\CamStudio.cfg
2017-06-30 10:13 - 2017-10-04 14:57 - 000038518 _____ () C:\Users\Gebruiker\AppData\Roaming\Door lijstscheidingstekens gescheiden waarden (DOS).ADR
2016-07-23 21:09 - 2018-01-10 10:44 - 000022140 _____ () C:\Users\Gebruiker\AppData\Roaming\Door lijstscheidingstekens gescheiden waarden (Windows).ADR
2017-10-05 09:05 - 2017-10-05 09:05 - 000009401 _____ () C:\Users\Gebruiker\AppData\Roaming\Door lijstscheidingstekens gescheiden waarden (Windows).EML
2017-06-30 10:19 - 2017-07-24 12:27 - 000022106 _____ () C:\Users\Gebruiker\AppData\Roaming\Door tabs gescheiden waarden (DOS).ADR
2018-01-10 10:41 - 2018-01-10 10:41 - 000038522 _____ () C:\Users\Gebruiker\AppData\Roaming\Door tabs gescheiden waarden (Windows).ADR
2017-05-04 09:08 - 2017-07-22 02:09 - 000038487 _____ () C:\Users\Gebruiker\AppData\Roaming\Microsoft Excel 97-2003.ADR
2018-04-25 19:24 - 2018-04-25 19:24 - 000003520 _____ () C:\Users\Gebruiker\AppData\Roaming\registration_msg_viewer.key
2016-10-09 09:03 - 2016-10-09 10:58 - 000000096 _____ () C:\Users\Gebruiker\AppData\Roaming\version2.xml
2017-05-16 11:46 - 2017-05-16 11:46 - 000004096 ____H () C:\Users\Gebruiker\AppData\Local\keyfile3.drm
2018-02-22 09:30 - 2018-02-22 09:30 - 000000218 _____ () C:\Users\Gebruiker\AppData\Local\recently-used.xbel
2016-08-04 10:35 - 2016-08-04 10:36 - 000007666 _____ () C:\Users\Gebruiker\AppData\Local\resmon.resmoncfg

Sommige bestanden in TEMP:
====================
2018-05-30 13:49 - 2012-08-30 18:19 - 004327024 _____ (Foxit Corporation) C:\Users\Gebruiker\AppData\Local\Temp\Foxit Updater.exe

==================== Bamital & volsnap ======================

(Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.)

C:\WINDOWS\system32\winlogon.exe => Bestand is getekend
C:\WINDOWS\system32\wininit.exe => Bestand is getekend
C:\WINDOWS\explorer.exe => Bestand is getekend
C:\WINDOWS\SysWOW64\explorer.exe => Bestand is getekend
C:\WINDOWS\system32\svchost.exe => Bestand is getekend
C:\WINDOWS\SysWOW64\svchost.exe => Bestand is getekend
C:\WINDOWS\system32\services.exe => Bestand is getekend
C:\WINDOWS\system32\User32.dll => Bestand is getekend
C:\WINDOWS\SysWOW64\User32.dll => Bestand is getekend
C:\WINDOWS\system32\userinit.exe => Bestand is getekend
C:\WINDOWS\SysWOW64\userinit.exe => Bestand is getekend
C:\WINDOWS\system32\rpcss.dll => Bestand is getekend
C:\WINDOWS\system32\dnsapi.dll => Bestand is getekend
C:\WINDOWS\SysWOW64\dnsapi.dll => Bestand is getekend
C:\WINDOWS\system32\Drivers\volsnap.sys => Bestand is getekend

LastRegBack: 2018-05-01 17:51

==================== Eind van FRST.txt ============================

en vervolgens:
Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 16.05.2018 01
Gestart door F.J.Stols (02-06-2018 12:27:58)
Gestart vanaf C:\Users\Gebruiker\Desktop
Windows 10 Pro Versie 1803 17134.48 (X64) (2018-05-01 16:02:31)
Boot Modus: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1916800224-2560957495-3225600593-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1916800224-2560957495-3225600593-503 - Limited - Disabled)
F.J.Stols (S-1-5-21-1916800224-2560957495-3225600593-1001 - Administrator - Enabled) => C:\Users\Gebruiker
Gast (S-1-5-21-1916800224-2560957495-3225600593-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1916800224-2560957495-3225600593-504 - Limited - Disabled)

==================== Security Center ========================

(Als een item is opgenomen in de fixlist, zal het worden verwijderd.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ZoneAlarm Free Firewall Firewall (Enabled) {1B8D532F-88B1-B2AD-ED22-AED92687A1D2}

==================== Geïnstalleerde programma's ======================

(Alleen de adware-programma's met 'verborgen' vlag kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeïnstalleerd worden.)

4Team Safe PST Backup (HKLM-x32\...\{DF6372B1-3687-4C35-8FF3-AF289944A037}) (Version: 2.70.0639 - 4Team Corporation)
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
7-Zip 18.01 (x64) (HKLM\...\7-Zip) (Version: 18.01 - Igor Pavlov)
Adobe Flash Player 29 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 29.0.0.171 - Adobe Systems Incorporated)
Adobe Photoshop Elements 7.0 (HKLM-x32\...\Adobe Photoshop Elements 7) (Version: 7.0 - Adobe Systems Incorporated)
Adobe Photoshop Lightroom 5.7.1 64-bit (HKLM\...\{BC86B82C-8C0E-4408-9AC1-6B0F2D636963}) (Version: 5.7.1 - Adobe Systems Incorporated)
Adres 2000 Versie 1.93 (HKLM-x32\...\Adres 2000_is1) (Version: - H.C.C. Akkerman)
AOMEI Backupper Standard (HKLM-x32\...\{A83692F5-3E9B-4E95-9E7E-B5DF5536CE9D}_is1) (Version: - AOMEI Technology Co., Ltd.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.3.1.4 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 4.2.0 - Canon Inc.)
Canon MG6600 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG6600_series) (Version: 1.01 - Canon Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.43 - Piriform)
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.6795 - CDBurnerXP)
Classic Shell (HKLM\...\{CABCE573-0A86-42FA-A52A-C7EA61D5BE08}) (Version: 4.3.1 - IvoSoft)
CrystalDiskInfo 7.5.1 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 7.5.1 - Crystal Dew World)
CutePDF Writer 3.1 (HKLM\...\CutePDF Writer Installation) (Version: 3.1 - Acro Software Inc.)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Easy Rolodex 3.2 (HKLM\...\{48FC3F43-D57D-43A3-B1E6-EE88AFD93DE5}) (Version: 3.2 - Woerdekom Webdesign en Software)
FastStone Capture 4.8 (HKLM-x32\...\FastStone Capture) (Version: 4.8 - FastStone Soft)
FastStone Image Viewer 6.4 (HKLM-x32\...\FastStone Image Viewer) (Version: 6.4 - FastStone Soft)
FastStone Photo Resizer 3.8 (HKLM-x32\...\FastStone Photo Resizer) (Version: 3.8 - FastStone Soft.)
Folder Size 3.4.0.0 (HKLM-x32\...\{2DFA85ED-588F-4CE3-A175-29E52C3804A8}_is1) (Version: 3.4.0.0 - MindGems, Inc.)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 5.4.5.124 - Foxit Corporation)
Gadwin PrintScreen (HKLM-x32\...\Gadwin PrintScreen) (Version: 4.3 - Gadwin Systems, Inc.)
Gebruikersregistratie voor Canon MG6600 series (HKLM-x32\...\Gebruikersregistratie voor Canon MG6600 series) (Version: - ‭Canon Inc.)
GFExperience.Deployer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.Deployer) (Version: 3.10.0.95 - NVIDIA Corporation) Hidden
Google Earth Pro (HKLM\...\{D9EF644E-2FAE-493B-8180-5617CC774C4F}) (Version: 7.3.1.4507 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
Image Composite Editor (HKLM\...\{92AB5708-1AAA-4B1B-A8D5-45CF3AD77519}) (Version: 2.0.3 - Microsoft Corporation)
Image Resizer for Windows (64 bit) (HKLM\...\{617CA6E9-D5FB-4017-8130-82E68C56C34D}) (Version: 3.0.4802.35565 - Brice Lambson) Hidden
Image Resizer for Windows (HKLM-x32\...\{69d72156-6582-4556-8637-06f40aa7f85b}) (Version: 3.0.4802.35565 - Brice Lambson)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 20.2 - Intel)
Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
MailWasher Pro (HKLM-x32\...\MailWasher Pro_is1) (Version: - FireTrust Limited)
Malwarebytes versie 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft IntelliType Pro 8.0 (HKLM\...\{98C8DF59-BE5F-4EC2-9B12-FD2A54928EDB}) (Version: 8.0.225.0 - Microsoft)
Microsoft Office Professional Plus 2016 - nl-nl (HKLM\...\ProPlusRetail - nl-nl) (Version: 16.0.9330.2087 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1916800224-2560957495-3225600593-1001\...\OneDriveSetup.exe) (Version: 18.065.0329.0002 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
MiniTool Partition Wizard Free 10.2.2 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.)
Mozilla Firefox 60.0.1 (x64 nl) (HKLM\...\Mozilla Firefox 60.0.1 (x64 nl)) (Version: 60.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 59.0.2 - Mozilla)
NVIDIA 3D Vision controllerstuurprogramma 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation)
NVIDIA HD Audio-stuurprogramma 1.3.35.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.35.1 - NVIDIA Corporation)
NVIDIA PhysX Systeem Software 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0413-0000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden
Panda Devices Agent (HKLM-x32\...\{3F9548B2-0B34-4453-A92E-35056B053F19}) (Version: 1.08.00 - Panda Security) Hidden
Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.08 - Panda Security) Hidden
Panda Protection (HKLM\...\{52F9D0C3-E6CF-4553-9013-8F2E834BD0B1}) (Version: 8.93.00 - Panda Security) Hidden
Revo Uninstaller 2.0.4 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.4 - VS Revo Group, Ltd.)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 2.11.4.0 - NVIDIA Corporation) Hidden
Speccy (HKLM\...\Speccy) (Version: 1.31 - Piriform)
Taalpakket voor Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - NLD (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - NLD) (Version: 10.0.50903 - Microsoft Corporation)
TeamViewer 13 (HKLM-x32\...\TeamViewer) (Version: 13.0.6447 - TeamViewer)
TomTom HOME (HKLM-x32\...\{30E6FC43-C31F-4968-9A06-AA38E3C3CF73}) (Version: 2.10.1 - Uw bedrijfsnaam)
TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.0 - VideoLAN)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden
WhatsApp (HKU\S-1-5-21-1916800224-2560957495-3225600593-1001\...\WhatsApp) (Version: 0.2.9229 - WhatsApp)
Windows 10 Update Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22334 - Microsoft Corporation)
Windows 7 Games for Windows 10 and 8 (HKLM\...\Win7Games) (Version: 2.0 - hxxp://winaero.com)
Wise Disk Cleaner 9.73 (HKLM-x32\...\Wise Disk Cleaner_is1) (Version: 9.73 - WiseCleaner.com, Inc.)
Wise Registry Cleaner 9.5.5 (HKLM-x32\...\Wise Registry Cleaner_is1) (Version: 9.5.5 - WiseCleaner.com, Inc.)
ZoneAlarm Antivirus (HKLM-x32\...\{1E626920-8C87-4114-BBD0-428B6F4BFB4F}) (Version: 15.0.653.17211 - Check Point Software Technologies Ltd.) Hidden
ZoneAlarm Firewall (HKLM-x32\...\{3B214EF2-9413-4300-96DB-165ECA1ED736}) (Version: 15.1.504.17269 - Check Point Software Technologies Ltd.) Hidden
ZoneAlarm Free Firewall (HKLM-x32\...\ZoneAlarm Free Firewall) (Version: 15.1.504.17269 - Check Point)
ZoneAlarm Security (HKLM-x32\...\{A51FEF33-C7A2-492E-840B-35A85D1F007E}) (Version: 15.1.504.17269 - Check Point Software Technologies Ltd.) Hidden

==================== Aangepaste CLSID (gefilterd): ==========================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (IvoSoft)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov)
ContextMenuHandlers1: [Image Resizer] -> {51B4D7E5-7568-4234-B4BB-47FB3C016A69} => C:\Program Files\Image Resizer for Windows\ShellExtensions.dll [2013-02-23] (Brice Lambson)
ContextMenuHandlers1: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => -> Geen bestand
ContextMenuHandlers1: [ZLAVShExt] -> {D9872D13-7651-4471-9EEE-F0A00218BEBB} => -> Geen bestand
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-10-27] (NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
ContextMenuHandlers6: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => -> Geen bestand
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\System32\StartMenuHelper64.dll [2017-08-13] (IvoSoft)
ContextMenuHandlers6: [ZLAVShExt] -> {D9872D13-7651-4471-9EEE-F0A00218BEBB} => -> Geen bestand

==================== Geplande Taken (gefilterd) =============

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

Task: {15B89DBD-5F5D-4041-BDA8-08E1FB02DEC3} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-05-24] (Piriform Ltd)
Task: {28912CB6-DDD4-49E7-AE8E-7F79DEC40FF0} - System32\Tasks\R@1n-KMS\Office16ProPlus => wmic [Argument = path SoftwareLicensingProduct where (ID="d450596f-894d-49e0-966a-fd39ed4c4c64") call Activate]
Task: {2AA28BEE-0D10-4F6A-9B79-7CAC781A7522} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-06-01] (Microsoft Corporation)
Task: {32309752-8F3B-4705-B828-99C458485744} - System32\Tasks\S-1-5-21-1916800224-2560957495-3225600593-1001\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe [2018-04-12] (Microsoft Corporation)
Task: {3CD6EECD-6427-48B3-AF8B-2B693DA2973C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.16.17656.18052-0\MpCmdRun.exe [2018-06-02] (Microsoft Corporation)
Task: {40DD6017-782F-43B3-AEF3-9AA4634D15C6} - System32\Tasks\WiseCleaner\WDCSkipUAC => C:\Program Files (x86)\Wise\Wise Disk Cleaner\WiseDiskCleaner.exe [2018-04-10] (WiseCleaner.com)
Task: {495DDB1E-2354-4A25-A523-0F326C7E717E} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {4C0CA334-CB26-420F-9F1F-E26B21F9797E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.16.17656.18052-0\MpCmdRun.exe [2018-06-02] (Microsoft Corporation)
Task: {5F8E209E-4C48-4828-A1D4-4967CF23B3E9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-04] (Google Inc.)
Task: {618443E5-A8FC-42EB-8DEF-9BD3557A4E90} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-06-01] (Microsoft Corporation)
Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] ()
Task: {6E157424-082D-4BFB-967E-A3DD46D63D5F} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-06-01] (Microsoft Corporation)
Task: {73DBD391-BE80-4FFC-BF4E-2BF6B30205C0} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-05-08] (Adobe Systems Incorporated)
Task: {88BA36EA-725D-4B51-BBC1-DBE2823FA606} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.16.17656.18052-0\MpCmdRun.exe [2018-06-02] (Microsoft Corporation)
Task: {8ACB1824-0000-4976-9412-E247BF8AB61C} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-06-01] (Microsoft Corporation)
Task: {8DC15975-E459-4188-B79B-23EFD6EB2EB9} - System32\Tasks\Microsoft\Office\OfficeOsfInstaller => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\osfinstaller.exe [2018-06-01] (Microsoft Corporation)
Task: {8F6A08FF-C406-4A7A-967C-69216C8082A4} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-05-24] (Microsoft Corporation)
Task: {9620937F-64C7-43CF-977C-D24E06C1EE4A} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-05-24] (Microsoft Corporation)
Task: {964DCF5A-4676-4E00-8FE3-E455808F97B9} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_29_0_0_171_Plugin.exe [2018-05-08] (Adobe Systems Incorporated)
Task: {B023A6D4-5F3D-47BB-8ADA-D2BE786B5CD7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-04] (Google Inc.)
Task: {B04A40A7-AD03-4856-AD97-AFDDFE00BA7B} - System32\Tasks\NvNotifier_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\GFExperience.Deployer\NvNotifier.exe [2017-11-09] ()
Task: {B3F76EB7-EF2C-4675-9FD2-B8AF73020F8E} - System32\Tasks\Microsoft_Hardware_Launch_IType_exe => C:\Program Files\Microsoft IntelliType Pro\IType.exe [2010-07-21] (Microsoft Corporation)
Task: {E2C5A62E-7B4E-4367-8D20-5420025AAB75} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-05-24] (Piriform Ltd)
Task: {ECF8FDF8-7EAB-4350-A6A6-94186DE17BBF} - System32\Tasks\WiseCleaner\WRCSkipUAC => C:\Program Files (x86)\Wise\Wise Registry Cleaner\WiseRegCleaner.exe [2018-03-14] (WiseCleaner.com)
Task: {FBC80886-54B1-457C-B040-F96DAA63D36D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.16.17656.18052-0\MpCmdRun.exe [2018-06-02] (Microsoft Corporation)

(Als een item is opgenomen in de fixlist, wordt de taak (job) bestand verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Snelkoppelingen & WMI ========================

(De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.)


==================== Geladen Modules (gefilterd) ==============

2016-07-23 11:08 - 2016-01-22 16:57 - 000089008 _____ () C:\WINDOWS\System32\cpwmon64.dll
2018-04-12 01:34 - 2018-04-12 01:34 - 000491744 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-02-20 18:24 - 2017-02-20 18:24 - 001278208 _____ () C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
2018-03-10 11:39 - 2013-06-28 16:28 - 000084616 _____ () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
2018-04-12 01:34 - 2018-04-12 01:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll
2018-04-12 01:34 - 2018-04-12 01:34 - 002759168 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll
2017-02-20 18:12 - 2017-02-20 18:12 - 000588872 _____ () C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
2018-04-12 01:35 - 2018-04-12 18:03 - 002184704 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-05-25 16:20 - 2018-05-25 16:20 - 000086528 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2018-05-25 16:20 - 2018-05-25 16:20 - 000195072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2018-05-25 16:20 - 2018-05-25 16:20 - 022374400 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2018-05-25 16:20 - 2018-05-25 16:20 - 002610176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\skypert.dll
2018-05-25 16:20 - 2018-05-25 16:20 - 000654848 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll
2018-05-25 16:20 - 2018-05-25 16:20 - 000084992 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11804.1001.10.0_x64__8wekyb3d8bbwe\WinStore.Preview.dll
2018-05-08 17:18 - 2018-05-08 17:18 - 001873120 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11804.1001.10.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000966512 _____ () C:\Program Files (x86)\AOMEI Backupper\UiLogic.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000339816 _____ () C:\Program Files (x86)\AOMEI Backupper\Comn.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000266096 _____ () C:\Program Files (x86)\AOMEI Backupper\diskmgr.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000360304 _____ () C:\Program Files (x86)\AOMEI Backupper\ImgFile.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000139112 _____ () C:\Program Files (x86)\AOMEI Backupper\FuncLogic.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000040808 _____ () C:\Program Files (x86)\AOMEI Backupper\Encrypt.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000495464 _____ () C:\Program Files (x86)\AOMEI Backupper\EnumFolder.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000081776 _____ () C:\Program Files (x86)\AOMEI Backupper\Compress.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000114544 _____ () C:\Program Files (x86)\AOMEI Backupper\BrLog.dll
2018-02-27 14:06 - 2017-09-01 17:35 - 002411968 _____ () C:\Program Files (x86)\AOMEI Backupper\QtCore4.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000089960 _____ () C:\Program Files (x86)\AOMEI Backupper\Ldm.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000073584 _____ () C:\Program Files (x86)\AOMEI Backupper\Device.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000298864 _____ () C:\Program Files (x86)\AOMEI Backupper\BrFat.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000348008 _____ () C:\Program Files (x86)\AOMEI Backupper\Clone.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000978792 _____ () C:\Program Files (x86)\AOMEI Backupper\BrNtfs.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000175984 _____ () C:\Program Files (x86)\AOMEI Backupper\FlBackup.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000724848 _____ () C:\Program Files (x86)\AOMEI Backupper\Sync.dll
2018-02-27 14:06 - 2017-09-04 11:10 - 000126832 _____ () C:\Program Files (x86)\AOMEI Backupper\Backup.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000114544 _____ () C:\Program Files (x86)\AOMEI Backupper\BrVol.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000266088 _____ () C:\Program Files (x86)\AOMEI Backupper\GptBcd.dll
2018-02-27 14:06 - 2017-09-04 11:11 - 000188264 _____ () C:\Program Files (x86)\AOMEI Backupper\DeviceMgr.dll
2016-07-22 10:10 - 2016-06-14 22:03 - 000018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2018-04-29 11:49 - 2018-06-01 08:44 - 000164528 _____ () C:\Program Files (x86)\Microsoft Office\root\Office16\JitV.dll
2018-04-29 11:49 - 2018-04-29 11:50 - 001754296 _____ () C:\Program Files (x86)\Microsoft Office\Root\Office16\tmpod.dll
2018-04-29 11:52 - 2018-04-29 11:53 - 001452728 _____ () C:\Program Files (x86)\Microsoft Office\Root\Office16\ClientTelemetry.dll

==================== Alternate Data Streams (gefilterd) =========

(Als een item is opgenomen in de fixlist, wordt alleen de ADS verwijderd.)


==================== Veilige Modus (gefilterd) ===================

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. De waarde van "AlternateShell" wordt hersteld.)


==================== Bestandskoppeling (gefilterd) ===============

(Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd.)


==================== Internet Explorer vertrouwde/beperkte toegang ===============

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd.)


==================== Hosts inhoud: ===============================

(Indien nodig kan Hosts:-opdracht worden opgenomen in de fixlist om Hosts te resetten.)

2015-10-30 09:24 - 2015-10-30 09:21 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts


==================== Andere gebieden ============================

(Momenteel is er geen automatische fix voor dit onderdeel.)

HKU\S-1-5-21-1916800224-2560957495-3225600593-1001\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.2.254 - 195.121.1.34
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is uitgeschakeld.

==================== MSCONFIG/TASK MANAGER Uitgeschakelde items ==

HKLM\...\StartupApproved\Run: => "Acronis Scheduler2 Service"
HKLM\...\StartupApproved\Run: => "WindowsDefender"
HKU\S-1-5-21-1916800224-2560957495-3225600593-1001\...\StartupApproved\Run: => "OneDrive"

==================== Firewall regels (gefilterd) ===============

(Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

FirewallRules: [{4B900F12-5F53-469E-9D5B-7357696A8C72}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{AAAF11CC-CF22-469C-ABB7-1524B2114B7A}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{06826EE2-49A5-4F9A-813A-9C874BB0A015}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{41348984-7DEA-47DB-87AB-CED746CA3BF0}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{6EED48A1-FD4D-4811-A627-DD6DD3120137}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{9A626E48-5E9A-452B-B853-D22E6A42B175}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{6CDDF7EB-A2D8-48AD-A127-CA89845A05CB}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{A3C9F8BA-3386-4E5A-92F2-8DD50332C07D}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{66E5C036-A30F-451A-8269-556A9FC42260}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe

==================== Herstelpunten =========================


==================== Defecte Apparaatbeheer Apparaten =============


==================== Eventlog fouten: =========================

Applicatiefouten:
==================
Error: (06/02/2018 12:28:33 PM) (Source: Acronis Scheduler) (EventID: 1) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 12:28:33 PM) (Source: Acronis Scheduler) (EventID: 1) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 12:28:32 PM) (Source: Acronis Scheduler) (EventID: 1) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 12:28:32 PM) (Source: Acronis Scheduler) (EventID: 1) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 12:28:31 PM) (Source: Acronis Scheduler) (EventID: 1) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 12:28:31 PM) (Source: Acronis Scheduler) (EventID: 1) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 12:28:30 PM) (Source: Acronis Scheduler) (EventID: 1) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID 'FDE3E71C-2412-4847-928C-AD8BC32C3AE8' niet uitvoeren vanwege fout 267> (The directory name is invalid.).

Error: (06/02/2018 12:28:30 PM) (Source: Acronis Scheduler) (EventID: 1) (User: AZERTY)
Description: Taakplanner kan de taak >> "" met GUID '1A7779C8-8294-4740-8160-E7D888EB3738' niet uitvoeren vanwege fout 267> (The directory name is invalid.).


Systeemfouten:
=============
Error: (06/02/2018 11:35:22 AM) (Source: Microsoft-Windows-Ntfs) (EventID: 98) (User: NT AUTHORITY)
Description: E:\Device\HarddiskVolume12

Error: (06/02/2018 11:27:10 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Starten niet verleend aan Lokaal voor de COM-servertoepassing met CLSID
Windows.SecurityCenter.WscBrokerManager
en APPID
Niet beschikbaar
aan de gebruiker NT AUTHORITY\SYSTEM SID (S-1-5-18) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services.

Error: (06/02/2018 11:27:10 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Starten niet verleend aan Lokaal voor de COM-servertoepassing met CLSID
Windows.SecurityCenter.WscDataProtection
en APPID
Niet beschikbaar
aan de gebruiker NT AUTHORITY\SYSTEM SID (S-1-5-18) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services.

Error: (06/02/2018 11:26:49 AM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: ScRegSetValueExW-oproep voor Type is niet geslaagd vanwege deze fout:
Toegang geweigerd.
.

Error: (06/02/2018 11:25:08 AM) (Source: DCOM) (EventID: 10016) (User: AZERTY)
Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Starten niet verleend aan Lokaal voor de COM-servertoepassing met CLSID
{7022A3B3-D004-4F52-AF11-E9E987FEE25F}
en APPID
{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}
aan de gebruiker AZERTY\F.J.Stols SID (S-1-5-21-1916800224-2560957495-3225600593-1001) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services.

Error: (06/02/2018 11:25:07 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: De mmsminisrv-service kan vanwege de volgende fout niet worden gestart:
De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord.

Error: (06/02/2018 11:25:07 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: mmsminisrv.

Error: (06/02/2018 11:25:01 AM) (Source: Microsoft-Windows-Ntfs) (EventID: 98) (User: NT AUTHORITY)
Description: \\?\Volume{926f9b4d-00dd-4234-bda6-7b0c27252c8e}\Device\HarddiskVolume63


CodeIntegrity:
===================================

Date: 2018-06-01 13:48:01.793
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 13:31:55.874
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 12:17:27.078
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 12:15:55.052
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 11:39:22.568
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 08:46:34.247
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-06-01 08:37:49.466
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2018-05-31 10:45:29.974
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\agentctrl.exe that did not meet the Custom 3 / Antimalware signing level requirements.

==================== Geheugen info ===========================

Processor: Intel(R) Core(TM) i5-6400 CPU @ 2.70GHz
Percentage geheugen in gebruik: 26%
Totaal fysiek RAM-geheugen: 8127.79 MB
Beschikbaar fysiek RAM-geheugen: 5941.22 MB
Totaal Virtueel geheugen: 9407.79 MB
Beschikbaar Virtueel geheugen: 7082.25 MB

==================== Schijven ================================

Drive c: () (Fixed) (Total:229.52 GB) (Free:180.55 GB) NTFS
Drive e: ( 1 TB dikzak) (Fixed) (Total:931.51 GB) (Free:845.75 GB) NTFS
Drive g: (Western Dig USB bovenop) (Fixed) (Total:465.63 GB) (Free:281.45 GB) NTFS
Drive k: (Toshiba 3.0) (Fixed) (Total:931.51 GB) (Free:867.01 GB) NTFS

\\?\Volume{58bd4e30-ce49-01d3-18a7-5cac24e7e900}\ (Herstel) (Fixed) (Total:1.11 GB) (Free:0.71 GB) NTFS
\\?\Volume{926f9b4d-00dd-4234-bda6-7b0c27252c8e}\ () (Fixed) (Total:1.48 GB) (Free:1.1 GB) NTFS
\\?\Volume{4ed8ac85-4ff0-11e6-a66f-806e6f6e6963}\ () (Removable) (Total:3.72 GB) (Free:1.98 GB) FAT32
\\?\Volume{5b7fd410-ce49-01d3-086a-adad24e7e900}\ () (Fixed) (Total:0.65 GB) (Free:0.62 GB) FAT32

==================== MBR & Partitietabel ==================

========================================================
Disk: 0 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 232.9 GB) (Disk ID: 45245DFC)

Partition: GPT.

========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 465.8 GB) (Disk ID: 3F00AE48)

Partition: GPT.

========================================================
Disk: 3 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: A447CC47)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

========================================================
Disk: 5 (Protective MBR) (Size: 3.7 GB) (Disk ID: 00000000)

Partition: GPT.

==================== Eind van Addition.txt ============================
 
Bitdefender schijnt goed verwijdert te zijn.

Waarschuwing: onderstaande bewerking is enkel voor deze computer bedoeld, het toepassen hiervan in een andere computer kan tot schade in Windows leiden.


We gaan
51a5c8edc4692-icon1337952077.png


Farbar Recovery Scan Tool (FRST.exe) opnieuw gebruiken.

Open een nieuw kladblok (of anders: notepad) bestand, via "Start\Alle programma’s\Bureau-accessoires\Kladblok (of Notepad)".
Kopieer en plak de tekst in het code-venster vanaf het woord Code in het lege kladblokvenster.

Code:
start
CreateRestorePoint:

R0 avdevprot; C:\WINDOWS\System32\DRIVERS\avdevprot.sys [60920 2017-12-07] (Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [178840 2017-12-07] (Avira Operations GmbH & Co. KG)
S1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [169376 2017-12-07] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [44488 2017-12-07] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [88488 2017-12-07] (Avira Operations GmbH & Co. KG)
R0 avusbflt; C:\WINDOWS\System32\Drivers\avusbflt.sys [38048 2017-12-07] (Avira Operations GmbH & Co. KG)
2018-06-02 11:23 - 2017-08-11 09:17 - 000000000 ____D C:\ProgramData\Avira
2018-06-02 11:26 - 2018-06-02 11:26 - 001111232 ____N (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klif.sys
2018-06-02 11:26 - 2018-06-02 11:26 - 000610496 ____N (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klhk.sys
2018-06-02 11:26 - 2018-06-02 11:26 - 000220360 ____N (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klflt.sys
2018-06-02 11:26 - 2018-06-02 11:26 - 000151848 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\klhkum.dll

EmptyTemp:
CloseProcesses:
cmd: ipconfig /flushdns
cmd: netsh winsock reset
end

Sla nu dit kladblokbestand in de dezelfde locatie waar ook FRST.exe aanwezig is op als Fixlist.txt

Farbar Recovery Scan Tool (FRST.exe) met de fixlist.txt gebruiken
  • Windows Vista, Windows 7, Windows 8 en Windows 10: via rechtsklik op FRST.exe en kies voor "Als Administrator uitvoeren".
  • Als het programma wordt gestart, klik dan op Ja in de popup.
  • Druk op de Fix knop.
  • Na de fix wordt een logbestand - Fixlog.txt - in dezelfde locatie aangemaakt van waaruit FRST.exe is gestart.
  • Post de inhoud van dit logbestand in jouw volgende bericht.
 
Na deze handelingen - en herstart - wilde de pc niet meer opstarten. Meldingen zoals automatische herstel voorbereiden > problemen vaststellen> opnieuw opstarten > keuze geavanceerd of Windows 10 opstarten > weer mobo met keus F11, F2 F6: die zijn mij maar al te zeer bekend.Maar hij wilde helemaal niks.
Ik heb toen een vanaf (wat oudere) kopie C-schijf laten opstarten, daar werk ik nu mee. Kennelijk is er ook met die (nu tijdelijk onbruikbare) oorspronkelijke C-schijf ook iets aan de hand? Ik had de pc al eens geheel stroomloos gemaakt, de startknop een tijdje ingedrukt gehouden. Vreemd is dat ik dit gisteren óók had, maar na een uurtje later of zo startte hij weer vriendelijk op. Op deze manier neig je naar een nieuwe pc! Ik verstuur deze post dus met dezelfde pc maar een reserve HD (daar heb je zo'n ding voor) , en probeer later in de middag de oude HD weer.
 
Wat hebben jouw Windows vaak rare kuren na een fix.
 
Ja,
werk nu vanaf een andere pc in huis. Ik begin de moed op te geven, en als het zo blijft breng ik de pc weg naar Azerty in Raalte waar hij geassembleerd is. Te gek voor woorden dat als ik er een kopie-HD in doe die het óók niet doet:n dezelfde meldingen als in # 13.
Ik meld me weer,, maar het kan wel even duren.
Vervolgens even later toch nog een andere kopie gebruikt en daar start hij ver....... wèl mee op. Ik denk dat niemand dit begrijpt.
Maar ik denk dat we dit item maar moeten afsluiten: die bitdefender popups zijn verdwenen, en ik denk na over een handig A.V. programma
 
Laatst bewerkt:
Kaspersky Free behoort tot het allerbeste in mijn ogen.
 
Ik probeer het nog eens: Avira-resten zaten eerder in de weg.
paar minuten later: wat ik ook doe met de opgehaalde exe van 2,5 MB: hij doet echt niks. Waarschijnlijk zit Trump er nu achter.
 
Laatst bewerkt:
ja, dan zijn er tientallen keuzes al ik de zip uitpak. Ik nam de bovenste, maar uiteindelijk (na opnieuw ophalen binary file) hetzelfde resultaat
Volgende dag:
Inmiddels - d.w.z. na geruime tijd - doen de meeste van mijn kopieën van mijn C-schijf het weer. Toch werkt het allemaal nog niet lekker: af en toe stagneert er wat, en dan rustig afwachten. Mogelijk toch iets met mijn Windows 10 aan de hand? Als ik moed heb ga ik er mee naar Azerty.
 
Ik denk eerder dat het een software probleem betreft dan wat anders.
Mij valt iedere keer weer op in logs, hoeveel back-up programma's jij in iedere Windows hebt zitten, ik vermoed dat die onderling voor de nodige problemen zorgen.
 
Status
Niet open voor verdere reacties.
Terug
Bovenaan Onderaan