• Hulpvragenden in dit forumonderdeel worden enkel geholpen door daartoe bevoegde teamleden.
    Dit is belangrijk, zodat de hulpvragende goed geholpen kan worden zonder (goedbedoelde) aanvullende berichten van andere leden.
    Reageren op andermans discussie is daarom uitgeschakeld.
  • De afgelopen dagen zijn er meerdere fora waarop bestaande accounts worden overgenomen door spammers. De gebruikersnamen en wachtwoorden zijn via een hack of een lek via andere sites buitgemaakt. Via have i been pwned? kan je controleren of jouw gegeven ook zijn buitgemaakt. Wijzig bij twijfel jouw wachtwoord of schakel de twee-staps-verificatie in.

Schijf 100%

Status
Niet open voor verdere reacties.
False Positive!


Graag de twee logs in één keer posten - gebruik de tools in de volgorde zoals aangegeven.

Stap •1•
Download
51e281a62c183-Junkware_Removal_Tool_icon_Canned_1351185104.png.jpg
Junkware Removal Tool by Thisisu.
Downloadlokatie: Dit programma absoluut naar het bureaublad downloaden of anders naar het bureaublad verplaatsen!
Opmerkingen:
  • Alle openstaande programma's en webpagina's dienen afgesloten te zijn.
  • Het is raadzaam de actieve beveiligingssoftware te de-activeren, zodat mogelijke conflicten met JRT.exe uitgsloten worden.:
  • Hier en hier vindt je gegevens hoe antivirusprogramma's en spywarescanners te deaktiveren.
  • Dat tijdens de scan van JRT.exe tijdelijk de snelkoppelingen verdwijnen van het bureaublad, is normaal.
Junkware Removal Tool by Thisisu opstarten:
  • Windows 2000 en Windows XP: dubbelklik op JRT.exe.
  • Windows Vista, Windows 7, Windows 8 en Windows 10: via rechtsklik op JRT.exe en kies voor "Als Administrator uitvoeren".
  • JRT.exe zal daarna Windows gaan scannen.
  • Deze scan kan afhankelijk van de systeemspecificaties soms vrij lang duren, wees dus geduldig.
  • Indien de scan voltooid is, zal een logje (JRT.txt) op het bureaublad opgeslagen worden en automatisch openen.
  • Post de inhoud van dit log in je volgende bericht.

Stap •2•
Download
52186926180a1-adwcleaner_nieuw.png
AdwCleaner by Xplode.
Downloadlokatie: Dit programma absoluut naar het bureaublad downloaden of anders naar het bureaublad verplaatsen!
Opmerkingen:
  • Alle openstaande programma's en webpagina's dienen afgesloten te zijn.
AdwCleaner opstarten:
  • Windows 2000 en Windows XP: dubbelklik op adwcleaner.exe.
  • Windows Vista, Windows 7, Windows 8 en Windows 10: via rechtsklik op adwcleaner.exe en kies voor "Als Administrator uitvoeren".
AdwCleaner is opgestart:
  • Klik op de knop Scan
  • Is de scan gereed, klik dan op de knop Verwijderen
  • Klik bij AdwCleaner – Afsluiting van de programma's op OK
  • Klik bij AdwCleaner – Herstarten noodzakelijk op OK
AdwCleaner logbestand:
  • Nadat de PC opnieuw is opgestart, opent een logfile.
  • Ingeval het log niet opent, is dit alsnog terug te vinden in C:\AdwCleaner\AdwCleaner[R0, of 1, of 2].txt
  • Post vervolgens de inhoud van dit log in je volgende bericht.
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 10 Home x64
Ran by gebruiker (Administrator) on za 14-10-2017 at 20:27:00,98
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0




Registry: 0





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on za 14-10-2017 at 20:31:11,18
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
# AdwCleaner 7.0.3.1 - Logfile created on Sat Oct 14 18:38:37 2017
# Updated on 2017/29/09 by Malwarebytes
# Running on Windows 10 Home (X64)
# Mode: clean
# Support: Customer Support & Help Center

***** [ Services ] *****

No malicious services deleted.

***** [ Folders ] *****

No malicious folders deleted.

***** [ Files ] *****

No malicious files deleted.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks deleted.

***** [ Registry ] *****

Deleted: [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\softonic.com
Deleted: [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\vlc-windows-10.nl.softonic.com
Deleted: [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\softonic.com
Deleted: [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\vlc-windows-10.nl.softonic.com


***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries deleted.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries deleted.

*************************

::Tracing keys deleted
::Winsock settings cleared
::Additional Actions: 0



*************************

C:/AdwCleaner/AdwCleaner[S0].txt - [1887 B] - [2017/10/14 18:34:51]
C:/AdwCleaner/AdwCleaner[S1].txt - [1956 B] - [2017/10/14 18:37:34]


########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt ##########
 
Softonic is geen betrouwbare downloadsite - dat is al jaren het geval!


Nu wil ik graag dat jij de Eset Online Scanner op de juiste wijze gaat gebruiken:

Zie daarvoor: Handleiding Eset Online scanner
Aansluitend graag het log ervan in jouw volgende antwoord posten.
 
C:\Users\gebruiker\Desktop\Naar Externe HDD\Canon\S7\Download\DailyRingNgp_V1.0.0_1002_20160615.apk een variant van Android/Agent.AIN trojaans paard
C:\Users\gebruiker\Desktop\Naar Externe HDD\Canon\S7\Download\pokevision-1.1 fount.in.apk een variant van Android/Inmobi.C potentieel onveilige toepassing
 
Nee ik ben zelf ook geen voorstander van Softonic maar Crystaldiskinfo kon ik daar wel downloaden
 
Verwijder handmatig beide bestanden uit de Externe HD en indien je die APK's in je phone hebt zitten - ook verwijderen!

Hoe draait dat notebook inmiddels?
 
Zijn verwijderd. Nee staan niet in de mobiel.

Start en is sneller klaar voor gebruik , en die 100% zakt ook snel. Had niet zo heel veel "troep" in de notebook?
 
Download
51f51523a23a0-OTL_Canned_Nieuw.png
OTL.exe

Downloadlokatie: Dit programma absoluut naar het bureaublad downloaden of anders naar het bureaublad verplaatsen!
Sluit voordat OTL.exe gaat scannen, eerst alle andere openstaande vensters!

OTL.exe gebruiken:
    • Windows 2000 en Windows XP: dubbelklik op OTL.exe.
    • Windows Vista, Windows 7, Windows 8 en Windows 10: via rechtsklik op OTL.exe en kies voor "Als Administrator uitvoeren".


  • Zet een vinkje bij Scan All Users, LOP Check en bij PURITY Check.
  • Kopieer onderstaande in de Code-kader staande tekst en plak deze in het kader onder
    4f9111a6d2a6c-OTL-2.png


    Code:
    services.*
    explorer.exe
    winlogon.exe
    Userinit.exe
    msconfig
    safebootminimal
    drivers32
    netsvcs
    %SYSTEMDRIVE%\*.exe
    %systemroot%\*. /mp /s
    hklm\software\clients\startmenuinternet|command /rs
    hklm\software\clients\startmenuinternet|command /64 /rs
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\drivers\*.sys /90
    [createrestorepoint]
  • Klik vervolgens op de knop
    50cd93c69be5b-OTL_-_Run_Scan_knop.jpg
    .
  • Verander verder geen andere instellingen in OTL, alleen tenzij ik hiervoor specifiek instructies geef.
  • De scan zal niet heel erg lang duren.
    • Er zullen twee Kladblok-vensters geopend worden wanneer de scan klaar is: OTL.Txt en Extras.txt.
    • Kopieer vervolgens de inhoud van zowel OTL.txt alsmede Extras.txt en plak die gegevens in je volgende bericht.

In geval de inhoud van een van de logs of van beide logs te groot is om te posten, kijk dan hier: Hoe een bijlage toevoegen?
 
OTL Extras logfile created on: 14-10-2017 22:50:35 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\gebruiker\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.15063.0)
Locale: 00000413 | Country: Nederland | Language: NLD | Date Format: d-M-yyyy

3,94 Gb Total Physical Memory | 2,51 Gb Available Physical Memory | 63,70% Memory free
7,94 Gb Paging File | 6,57 Gb Available in Paging File | 82,76% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 297,07 Gb Total Space | 153,63 Gb Free Space | 51,71% Space Free | Partition Type: NTFS

Computer Name: ROWAN-PC | User Name: gebruiker | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [mplayerc64.enqueue] -- "C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe" /add "%1" (MPC-HC Team)
Directory [mplayerc64.play] -- "C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe" "%1" (MPC-HC Team)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Directory [Powershell] -- powershell.exe -noexit -command Set-Location '%V' (Microsoft Corporation)
Directory [UpdateEncryptionSettings] -- Reg Error: Key error.
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [mplayerc64.enqueue] -- "C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe" /add "%1" (MPC-HC Team)
Directory [mplayerc64.play] -- "C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe" "%1" (MPC-HC Team)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Directory [Powershell] -- powershell.exe -noexit -command Set-Location '%V' (Microsoft Corporation)
Directory [UpdateEncryptionSettings] -- Reg Error: Key error.
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 26 54 36 81 74 2A D3 01 [binary data]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{080A0837-A552-4661-A65F-F62F00EB8709}" = lport=5353 | protocol=6 | dir=in | name=polar rndis tcp in |
"{518B85F7-FF4A-49EA-B58A-259EB089BE62}" = lport=5353 | protocol=17 | dir=in | name=polar rndis udp in |
"{5595006B-9669-4ABA-8024-CC16072CD1C3}" = lport=5353 | protocol=6 | dir=out | name=polar rndis tcp out |
"{6A363E13-19BF-4DBD-9E05-2A47F3F15B4D}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{C637B8F3-3016-4F43-89A6-56BFC3DED1C6}" = lport=5353 | protocol=17 | dir=out | name=polar rndis udp out |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0048266E-9736-40CC-9F6C-4F22D8130EAB}" = dir=out | name=@{microsoft.windowsmaps_5.1706.2001.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsmaps/resources/appstorename} |
"{027E8A47-86DC-4081-84E6-B259ED4235B2}" = dir=out | name=@{adobesystemsincorporated.adobephotoshopexpress_1.3.5.74_x64__ynb6jyjzte8ga?ms-resource://adobesystemsincorporated.adobephotoshopexpress/resources/appnametitle} |
"{030D049D-A6C6-4744-B0AB-0949FCA6B1B2}" = dir=in | name=@{microsoft.windows.photos_2017.39081.15820.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{03778736-2311-48B8-8120-23AB5C952897}" = dir=out | name=@{microsoft.windows.apprep.chxapp_1000.15063.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.apprep.chxapp/resources/displayname} |
"{03896F42-3BBA-477F-AAFE-892B8BCF5FA1}" = dir=in | name=@{microsoft.oneconnect_2.1709.2484.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.oneconnect/oneconnect/appstorename} |
"{03F9B24F-DEA0-45A8-982B-879001ED531C}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.8600.40525.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} |
"{041534F5-11A8-4CC9-A955-65EE972EBBE0}" = dir=out | name=@{microsoft.oneconnect_2.1709.2484.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.oneconnect/oneconnect/appstorename} |
"{0521FAD5-C61D-4BEA-909E-432402B24CF1}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{058EB158-BA09-4C32-A5F9-85734ABF604A}" = dir=out | name=xbox |
"{0D9B68F7-B363-452D-BAFB-70343BC183FB}" = dir=in | name=microsoft sticky notes |
"{0DA3851F-40B1-43E3-863F-3792964A2140}" = dir=out | name=@{microsoft.bingnews_4.21.2212.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"{0E3F8E58-93AB-49DF-96A0-FAB724C32B49}" = dir=out | name=@{microsoft.windowsfeedbackhub_1.1705.2121.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} |
"{0F2FA560-D597-444C-99E1-8E6A29CCD19A}" = dir=in | name=@{microsoft.bingnews_4.21.2212.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"{1005369E-DAFE-487E-B8E2-27F2F3CF7262}" = dir=out | name=@{microsoft.ppiprojection_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} |
"{14A19083-89BB-44D5-A39C-7836B1EA2F47}" = dir=out | name=@{microsoft.messaging_3.19.1001.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/resources/appstorename} |
"{1573E2C8-097C-42C4-9B9D-483770128D60}" = dir=out | name=@{microsoft.zunemusic_10.17083.18321.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{15F82E20-D8F9-4A1A-B738-045389EDC7A3}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{1628430F-5CA7-437C-964D-952963DEA72F}" = dir=in | name=@{microsoft.messaging_3.26.24002.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.messaging/resources/appstorename} |
"{21905385-C2C3-4483-B8B9-8D1AD66F3FBD}" = dir=out | name=@{microsoft.zunevideo_10.17082.14121.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{26A5D976-645E-4EEC-8B78-A9632B433AC7}" = dir=out | name=windows_ie_ac_001 |
"{28414531-51B4-4C74-B684-AEFD482E3F91}" = dir=out | name=@{microsoft.windows.sechealthui_10.0.15063.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.windows.sechealthui/resources/packagedisplayname} |
"{2A65D172-A389-4F8E-8AF7-86AF8C74FCF9}" = dir=in | name=@{adobesystemsincorporated.adobephotoshopexpress_1.3.5.74_x64__ynb6jyjzte8ga?ms-resource://adobesystemsincorporated.adobephotoshopexpress/resources/appnametitle} |
"{2DD1DC13-756F-4E9B-B8DF-F0AADB001105}" = dir=out | name=@{windows.contactsupport_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{2E22B39E-6A97-4F53-8804-FD401DFC9507}" = dir=out | name=@{microsoft.commsphone_1.10.15000.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} |
"{310FEF4C-4505-4128-AD67-8361D78C093B}" = dir=out | name=@{microsoft.storepurchaseapp_11707.1707.25006.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.storepurchaseapp/resources/displaytitle} |
"{345DFFC0-B0FF-4364-984D-E66D83CE1B28}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.15063.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{3B52137C-86ED-43F4-9831-77E3F03BD83A}" = dir=in | name=netflix |
"{3C0C1676-E02C-42B5-B498-4DF41DBA45F1}" = dir=in | name=@{microsoft.windowsstore_11708.1001.30.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{3CF60AC8-C013-47AA-B77D-3E7423C7C30C}" = dir=out | name=@{environmentsapp_10.0.15063.0_neutral__cw5n1h2txyewy?ms-resource://environmentsapp/resources/displayname} |
"{42427EEA-757B-4FE7-83A4-56CF047104F5}" = dir=in | name=onenote |
"{43DE0FC7-4D6D-4F07-A5FE-62AC1ABA8534}" = dir=in | name=@{microsoft.windowsfeedbackhub_1.1705.2121.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} |
"{46176ABD-D4CA-433E-9C42-72A556A07F34}" = dir=out | name=@{microsoft.windows.oobenetworkcaptiveportal_10.0.15063.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.windows.oobenetworkcaptiveportal/resources/appdisplayname} |
"{4AC10556-66BD-4D09-B1A7-2D41B3A3A089}" = dir=out | name=@{microsoft.skypeapp_11.19.856.0_x64__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/skypevideo_productname} |
"{4B48F4F6-2F10-4E17-9EC4-CA1EB7369FE7}" = dir=in | name=@{microsoft.microsoftedge_40.15063.674.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{4B4D521A-E3CE-4DDA-ADD8-13446C35FD7C}" = dir=out | name=onenote |
"{4C8F0528-2A56-4FE2-B791-75B9E7BF43BB}" = dir=out | name=@{microsoft.windows.cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/packagedisplayname} |
"{52004068-ECF4-441E-86F0-9A6E69307BB8}" = dir=out | name=@{microsoft.getstarted_5.11.1641.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.getstarted/resources/appstorename} |
"{64205641-8DA0-4C8D-86DC-437D4A5DD30A}" = dir=out | name=@{microsoft.windows.shellexperiencehost_10.0.15063.674_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.shellexperiencehost/resources/pkgdisplayname} |
"{65860CBC-1321-48AB-B008-E41E7EF4CB31}" = dir=out | name=@{microsoft.3dbuilder_14.1.1302.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.3dbuilder/resources/appstorename} |
"{660562FE-3648-42F5-9E89-63C344981FAC}" = dir=out | name=@{microsoft.bingweather_4.21.2212.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{6A5BF908-A7AF-487B-AA71-7D1BF8A6B570}" = dir=out | name=@{microsoft.xboxidentityprovider_11.29.23003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxidentityprovider/resources/displayname} |
"{6C4CCF99-6C2D-4DFC-BB8A-6A94D2D287A6}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{6C685839-06DD-48A4-A411-E3893E65A808}" = dir=out | name=@{microsoft.messaging_3.26.24002.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.messaging/resources/appstorename} |
"{6E07592A-847B-4F99-9873-5D93995192FA}" = dir=in | name=@{microsoft.skypeapp_11.19.856.0_x64__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/skypevideo_productname} |
"{744C0728-DAEA-4962-92D7-4AC3C30B643B}" = dir=out | name=@{microsoft.people_10.2.1451.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.people/resources/appstorename} |
"{744CA4FA-53DE-43C5-83A6-EF63B8F02F1B}" = dir=in | name=sway |
"{744FA852-8572-4BBF-A946-C082DC50C32F}" = dir=out | name=sway |
"{7770AD60-9E62-41FB-9B6E-10A335FF6E58}" = dir=out | name=mixed reality viewer |
"{7882890D-7786-4B1D-B774-2934914F8C33}" = dir=out | name=@{microsoft.mspaint_3.1710.4027.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.mspaint/resources/appname} |
"{7CACB596-35D9-4781-82BB-705D20C6FF81}" = dir=in | name=@{microsoft.ppiprojection_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} |
"{80F391E8-5C9E-4DCD-8894-84B955AEFADA}" = dir=out | name=@{microsoft.accountscontrol_10.0.15063.674_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{82C0C9B7-3612-4ABA-9185-F42D3048C9AF}" = dir=in | app=c:\program files (x86)\bluestacks\hd-plus-service.exe |
"{83181ED2-2534-4A0C-9C74-8870F59975F7}" = dir=out | name=microsoft solitaire collection |
"{87335F88-51DA-48F2-B2A8-6EF855BD58CB}" = dir=in | name=@{microsoft.commsphone_1.10.15000.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} |
"{8FBFC506-5A27-4E78-9EDB-3001D7D9A86B}" = dir=out | name=@{microsoft.bingfinance_4.21.2212.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{91439976-527C-4B6A-A4BE-04E212981791}" = dir=out | name=@{microsoft.windowsstore_11708.1001.30.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{91918AA3-3C6D-4B28-947D-8975C87A6DFB}" = dir=out | name=holographic item player |
"{9637CCE8-AC2C-450F-A613-0EC53D4AFE47}" = dir=out | name=@{microsoft.appconnector_1.3.3.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.appconnector/resources/connectorstubtitle} |
"{96F1940B-2D94-437B-AB09-C66284A6E35D}" = dir=in | name=@{microsoft.bingweather_4.21.2212.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{97DDF227-7A32-44AA-BC75-73A4D53914E8}" = dir=out | name=xbox game bar |
"{98FEAB2B-8AA9-4B1C-A8D4-C78D04C710C8}" = dir=out | name=@{microsoft.windows.holographicfirstrun_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.holographicfirstrun/resources/pkgdisplayname} |
"{9A03A813-70D0-4628-9E18-6C64CB4402BF}" = dir=in | name=@{microsoft.windows.cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/packagedisplayname} |
"{9EECCA5D-1435-4AEC-B693-46A757386805}" = dir=out | name=wallet |
"{A0384499-8E0D-4524-8D17-0BB5D3D4C8A8}" = dir=in | name=@{microsoft.messaging_3.19.1001.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/resources/appstorename} |
"{A0B26682-044B-467C-85D6-AA2316399630}" = dir=in | name=@{microsoft.bingsports_4.21.2212.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{A60A6481-BD08-49F4-B438-C55CABE07400}" = dir=out | name=@{microsoft.microsoftedge_40.15063.674.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{AE088241-1114-4392-85AE-59A4CEC00D49}" = dir=in | name=@{microsoft.microsoftofficehub_17.8414.5925.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{B23B8799-1E4A-4869-8703-D42A195E8AC6}" = dir=in | name=@{microsoft.ppiprojection_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} |
"{B66B9F36-737F-43C2-BB00-384126406B10}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.15063.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{B7835C21-DD75-478C-BC6A-0E5F93E6B0A3}" = dir=in | name=@{microsoft.zunevideo_10.17082.14121.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{B7A8CEF5-8221-4BD7-9A6C-A76EA7AF5805}" = dir=out | name=@{microsoft.lockapp_10.0.15063.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{BE86C81F-41B6-49B8-9798-EB27523851C8}" = dir=in | name=xbox |
"{C02D72E3-BF15-4039-BE24-6E59C6102065}" = dir=out | name=@{microsoft.connectivitystore_1.1604.4.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.connectivitystore/mswifiresources/appstorename} |
"{C0631EF0-70E1-48AF-976E-620CA363A237}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.15063.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{C13796B6-D558-41AF-897B-9F17F31C6B65}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{CAB8F71D-2C4A-4A0F-B918-F7E77AF1C821}" = dir=out | name=@{microsoft.windowsphone_10.1609.2561.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphone/resources/appstorename} |
"{CD3A4AD1-D63E-4BD2-BC20-1A4DBC565A05}" = dir=out | name=microsoft sticky notes |
"{CFB60FCC-3330-4FB0-8422-9C609176D20F}" = dir=in | name=@{windows.contactsupport_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{D22A4B32-994E-4636-ABA3-A8CB2DADACA9}" = dir=out | name=netflix |
"{D41231C7-0A06-4198-948D-6AE98BA0F014}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.15063.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{D4D45DFC-EFF4-4724-9119-FE2781AA1E81}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.8600.40525.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} |
"{D9AF40E0-B05F-47C6-B406-2B67188B5ED5}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{E1431AE0-AF26-48B1-9332-A2909F65396A}" = dir=out | name=twitter |
"{E3149815-ACD0-4354-A2F4-28F939DB03AD}" = dir=out | name=@{microsoft.windowscalculator_10.1709.2703.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscalculator/resources/appstorename} |
"{E9A1163C-F843-40DF-903A-E3803D4CC970}" = dir=out | name=@{microsoft.bingsports_4.21.2212.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{F2DC476F-7E3A-4A8E-842A-FA3419804925}" = dir=out | name=@{microsoft.windows.photos_2017.39081.15820.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{F8DB8EEA-2C3A-47E2-9366-5B0B5D248727}" = dir=in | name=@{microsoft.bingfinance_4.21.2212.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{FA5D4A01-43C8-4292-A764-D62BBA180894}" = dir=out | name=@{microsoft.microsoftofficehub_17.8414.5925.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{FCADE73C-1ADF-45F5-8378-93D0CCEF7C90}" = dir=out | name=@{microsoft.ppiprojection_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} |
"TCP Query User{AA0E1897-5FDF-4A3C-A74D-557F6FAA52D2}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe |
"UDP Query User{2ABC7F02-28E6-4635-B8F5-5DDD72C4E6FD}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{26A24AE4-039D-4CA4-87B4-2F64180144F0}" = Java 8 Update 144 (64-bit)
"{4DFCD818-036A-4229-A67D-CF17DC461D92}" = Windows 10 Update and Privacy Settings
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{8A9B16F0-A84E-4EC5-BDA7-0ACCE79FB043}" = HP 3D DriveGuard
"{E4F5E48E-7155-4CF9-88CD-7F377EC9AC54}" = Bonjour
"{ED06689A-33B7-4D35-8F76-36A82CD03406}" = KB4023057
"4144-4862-0472-7103" = WorldPainter 2.4.1
"EaseUS Data Recovery Wizard_is1" = EaseUS Data Recovery Wizard
"PROSet" = Intel(R) Network Connections Drivers
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"VLC media player" = VLC media player

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{13C96625-28E4-4c58-ADE0-CDAFC64752EB}" = JMicron 1394 Filter Driver
"{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}" = Minecraft
"{236BB7C4-4419-42FD-0409-1E257A25E34D}" = Adobe Photoshop CS2
"{26604C7E-A313-4D12-867F-7C6E7820BE4C}" = JMicron Flash Media Controller Driver
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{786C5747-1033-0000-B58E-000000000001}" = Adobe Stock Photos 1.0
"{8EDBA74D-0686-4C99-BFDD-F894678E5B39}" = Adobe Common File Installer
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{9A20BB10-551A-4D13-AB25-3A67EE3F600C}" = OpenOffice 4.1.3
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A1538F5C-7B65-4DB6-9FFB-FFC0DF2E85D8}_is1" = Polar FlowSync versie 2.6.2
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{B74D4E10-1033-0000-0000-000000000001}" = Adobe Bridge 1.0
"{E9787678-1033-0000-8E67-000000000001}" = Adobe Help Center 1.0
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0409-1E257A25E34D}" = Adobe Photoshop CS2
"Adobe Photoshop CS6" = Adobe Photoshop CS6
"Avast Antivirus" = Avast Free Antivirus
"BlueStacks" = BlueStacks 3
"CrystalDiskInfo_is1" = CrystalDiskInfo 7.0.5
"Google Chrome" = Google Chrome
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 12.7.5

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-3523116764-2631885041-2160676886-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"OneDriveSetup.exe" = Microsoft OneDrive

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 12-10-2017 13:49:55 | Computer Name = Rowan-PC | Source = Application Error | ID = 1000
Description = Naam van toepassing met fout: mDNSResponder.exe, versie: 2.0.4.0,
tijdstempel: 0x4cae1be1 Naam van module met fout: mDNSResponder.exe, versie: 2.0.4.0,
tijdstempel: 0x4cae1be1 Uitzonderingscode: 0xc0000005 Foutmarge: 0x0000110a Id van
proces met fout: 0xae0 Starttijd van toepassing met fout: 0x01d33e726c12c8ca Pad
naar toepassing met fout: C:\Program Files (x86)\Bonjour\mDNSResponder.exe Pad naar
module met fout: C:\Program Files (x86)\Bonjour\mDNSResponder.exe Rapport-id: 86837242-1acc-4ebd-ba9c-0234f6d49efb
Volledige
pakketnaam met fout: ? Relatieve toepassings-id van pakket met fout: ?

Error - 12-10-2017 14:31:15 | Computer Name = Rowan-PC | Source = Application Hang | ID = 1002
Description = Het programma javaw.exe, versie 8.0.25.18 reageert niet meer op Windows
en is afgesloten. Als u wilt zien of er meer informatie over het probleem beschikbaar
is, raadpleegt u de probleemgeschiedenis in het onderdeel Beveiliging en onderhoud
van het Configuratiescherm. Proces-id: da4 Starttijd: 01d3438714243d4d Eindtijd: 3

Toepassingspad:
C:\Program Files (x86)\Minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe Rapport-id:
cb81e429-f39c-4056-aace-9a53ab5d0aa8 Volledige pakketnaam met fout: ? Relatieve toepassings-id
van pakket met fout: ?

Error - 12-10-2017 14:36:13 | Computer Name = Rowan-PC | Source = Perflib | ID = 1008
Description =

Error - 12-10-2017 16:58:07 | Computer Name = Rowan-PC | Source = Microsoft-Windows-Immersive-Shell | ID = 2484
Description = Het pakket Microsoft.Windows.ShellExperienceHost_10.0.15063.674_neutral_neutral_cw5n1h2txyewy+App
is beëindigd omdat het onderbreken te lang duurde.

Error - 12-10-2017 17:05:20 | Computer Name = Rowan-PC | Source = SideBySide | ID = 16842785
Description = Kan activeringscontext voor 'C:\Program Files\AVAST Software\Avast\setup\iplugins\IStats.dll'
niet maken. Kan afhankelijke assembly Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1"
niet vinden. Gebruik sxstrace.exe voor een gedetailleerde diagnose.

Error - 12-10-2017 18:19:51 | Computer Name = Rowan-PC | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Het activeren van de app microsoft.windowscommunicationsapps_8wekyb3d8bbwe!microsoft.windowslive.calendar
is mislukt door de fout -2144927142. Kijk in het logboek Microsoft-Windows-TWinUI/Operational
voor aanvullende informatie.

Error - 12-10-2017 22:55:54 | Computer Name = Rowan-PC | Source = Microsoft-Windows-Immersive-Shell | ID = 2484
Description = Het pakket Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe+App
is beëindigd omdat het onderbreken te lang duurde.

Error - 13-10-2017 0:14:33 | Computer Name = Rowan-PC | Source = Application Hang | ID = 1002
Description = Het programma javaw.exe, versie 8.0.25.18 reageert niet meer op Windows
en is afgesloten. Als u wilt zien of er meer informatie over het probleem beschikbaar
is, raadpleegt u de probleemgeschiedenis in het onderdeel Beveiliging en onderhoud
van het Configuratiescherm. Proces-id: 22fc Starttijd: 01d343d95304c6bc Eindtijd:
42 Toepassingspad: C:\Program Files (x86)\Minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe

Rapport-id:
affff255-47ec-4ade-8ac1-b75fb20bfe86 Volledige pakketnaam met fout: ? Relatieve toepassings-id
van pakket met fout: ?

Error - 14-10-2017 12:21:44 | Computer Name = Rowan-PC | Source = VSS | ID = 8194
Description =

Error - 14-10-2017 12:22:48 | Computer Name = Rowan-PC | Source = VSS | ID = 8193
Description =

[ System Events ]
Error - 14-10-2017 14:58:52 | Computer Name = Rowan-PC | Source = Service Control Manager | ID = 7000
Description = De eapihdrv-service kan vanwege de volgende fout niet worden gestart:
%%1275

Error - 14-10-2017 14:58:53 | Computer Name = Rowan-PC | Source = Application Popup | ID = 1060
Description =

Error - 14-10-2017 14:58:53 | Computer Name = Rowan-PC | Source = Service Control Manager | ID = 7000
Description = De eapihdrv-service kan vanwege de volgende fout niet worden gestart:
%%1275

Error - 14-10-2017 14:58:53 | Computer Name = Rowan-PC | Source = Application Popup | ID = 1060
Description =

Error - 14-10-2017 14:58:53 | Computer Name = Rowan-PC | Source = Service Control Manager | ID = 7000
Description = De eapihdrv-service kan vanwege de volgende fout niet worden gestart:
%%1275

Error - 14-10-2017 14:58:53 | Computer Name = Rowan-PC | Source = Application Popup | ID = 1060
Description =

Error - 14-10-2017 14:58:53 | Computer Name = Rowan-PC | Source = Service Control Manager | ID = 7000
Description = De eapihdrv-service kan vanwege de volgende fout niet worden gestart:
%%1275

Error - 14-10-2017 16:21:13 | Computer Name = Rowan-PC | Source = Service Control Manager | ID = 7000
Description = De CldFlt-service kan vanwege de volgende fout niet worden gestart:
%%50

Error - 14-10-2017 16:21:15 | Computer Name = Rowan-PC | Source = Service Control Manager | ID = 7009
Description = Time-out (30000 seconden) tijdens het wachten op het verbinden van
deze service: hpsrv.

Error - 14-10-2017 16:21:15 | Computer Name = Rowan-PC | Source = Service Control Manager | ID = 7000
Description = De hpsrv-service kan vanwege de volgende fout niet worden gestart:
%%1053


< End of report >
 

Bijlagen

  • OTL.Txt
    308,4 KB · Weergaven: 7
Sluit voordat
51f51523a23a0-OTL_Canned_Nieuw.png
OTL de fix gaat doen, eerst alle andere openstaande vensters!

  • Windows 2000 en Windows XP: dubbelklik op OTL.exe.
  • Windows Vista, Windows 7 en Windows 8: via rechtsklik op OTL.exe en kies voor "Als Administrator uitvoeren".
    [*]Kopieer onderstaande in de Code-kader staande tekst en plak deze in het venster onder
    4f9111a6d2a6c-OTL-2.png

Code:
:OTL
O4:64bit: - HKLM..\Run: [SecurityHealth] C:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)


:Services


:Reg


:Files
ipconfig /flushdns /c

:Commands
[purity]
[emptytemp]
[emptyjava]
[emptyflash]
[createrestorepoint]
[reboot]


  • Klik daarna bovenaan op
    4f911cee9da59-OTL-4.png
  • Laat het programma ongestoord zijn werk doen.
  • OTL zal na de scan melden dat de PC opnieuw opgestart gaat worden. Sta dat dus toe.
  • Klik op OK
  • Na het opnieuw opstarten wordt enkel een nieuw log geopend.
  • Post via kopiëren en plakken de inhoud van dat OTL-scanlog.
 
Het scherm staat nu ~15-20minuten op reageert niet, is dat normaal? Hij blijft hangen bij 'O34 - HKLM BootExecute: (autocheck autochk *) '
 
Afsluiten en en opstarten verwijder je eerst die regel 034 uit de fix en sla je die weer op en dan herhaal je de fix!
 
All processes killed
========== OTL ==========
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SecurityHealth not found.
File move failed. C:\Program Files\Windows Defender\MSASCuiL.exe scheduled to be moved on reboot.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully!
========== SERVICES/DRIVERS ==========
========== REGISTRY ==========
========== FILES ==========
< ipconfig /flushdns /c >
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Users\gebruiker\Desktop\cmd.bat deleted successfully.
C:\Users\gebruiker\Desktop\cmd.txt deleted successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default.migrated

User: gebruiker
->Temp folder emptied: 1787502 bytes
->Temporary Internet Files folder emptied: 3224671 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 21362192 bytes
->Flash cache emptied: 0 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\sysnative\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 1151 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 25,00 mb


[EMPTYJAVA]

User: All Users

User: Default

User: Default User

User: Default.migrated

User: gebruiker
->Java cache emptied: 0 bytes

User: Public

Total Java Files Cleaned = 0,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Default.migrated

User: gebruiker
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0,00 mb

Restore point Set: OTL Restore Point

OTL by OldTimer - Version 3.2.69.0 log created on 10152017_095649

Files\Folders moved on Reboot...
File move failed. C:\Program Files\Windows Defender\MSASCuiL.exe scheduled to be moved on reboot.
C:\Users\gebruiker\AppData\Local\Microsoft\Windows\INetCache\Low\IE\ZI6OHNWI\cartcount[1].htm moved successfully.
C:\Users\gebruiker\AppData\Local\Microsoft\Windows\INetCache\Low\IE\ZI6OHNWI\me[1].htm moved successfully.
C:\Users\gebruiker\AppData\Local\Microsoft\Windows\INetCache\Low\IE\ZI6OHNWI\welcomeie11[2].htm moved successfully.
C:\Users\gebruiker\AppData\Local\Microsoft\Windows\INetCache\Low\IE\5MV20I03\latest[1].eot moved successfully.
C:\Users\gebruiker\AppData\Local\Microsoft\Windows\INetCache\Low\IE\3M9LCEGG\latest[1].eot moved successfully.
C:\Users\gebruiker\AppData\Local\Microsoft\Windows\INetCache\Low\MSIMGSIZ.DAT moved successfully.
C:\Users\gebruiker\AppData\Local\Microsoft\Windows\INetCache\Low\SmartScreenCache.dat moved successfully.
C:\Users\gebruiker\AppData\Local\Microsoft\Windows\INetCache\counters2.dat moved successfully.
File move failed. C:\WINDOWS\temp\_avast_\AvLock.txt scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
 
Yes, Stuk sneller met opstarten en die 100% daalt ook sneller. Had ik er veel zooi inzitten?
 
Heb nu alleen nog 2 desktop.ini op het bureaublad staan, kan ik die verplaatsen naar een andere map?
 
Vermoedelijk eerder bestanden in de tempmappen - die nu opgeschoond zijn.

Verder is Bonjour nog actief, terwijl ik verder geen Apple software vind....
 
Die twee ini bestanden mogen niet verplaatst worden, anders werkt Windows niet meer.
Dat lossen we nog weer op.
En graag antwoord op mijn vorige bericht.
 
Die desktop.ini Zijn na herstart ook van het scherm verdwenen.

Heb die bonjour nu ook handmatig verwijderd, kan het ermee te maken dat ik een Apple telefoon verbonden heb gehad met de notebook?
 
Status
Niet open voor verdere reacties.
Steun Ons

Nieuwste berichten

Terug
Bovenaan