Strogino cs portal hl2 stoped work error

strogino cs portal hl2 stoped work error

21/F, CS Tower, 50 Wing Lok Street, Sheung Wan Skinneed LIGHT CLEANSER I only work with brands, products that i like. If I do not like a product. So i just got CS:S, HL2:DM And GMOD from Strogino CS Portal, but whenever i try to join Strogino CS Portal GMod keeps having this error, how do I fix? strogino cs portal gmod download.

Well understand: Strogino cs portal hl2 stoped work error

Strogino cs portal hl2 stoped work error
Strogino cs portal hl2 stoped work error
MODEL TINY ERROR ILLEGAL

Unable to enable WinDefender On and open Settings and other

You can call me Alex, and I would very much like to follow your steps in fixing my computer, because like you said you are experts and I don't want to make it worse.

Here is what you asked for:

FRST log:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06.06.2018 01

Ran by Craciun (administrator) on ALEX-PC (11-06-2018 20:39:18)

Running from C:\Users\Craciun\Desktop

Loaded Profiles: Craciun (Available Profiles: Craciun)

Platform: Windows 10 Pro Version 1803 17134.48 (X64) Language: English (United States)

Internet Explorer Version 11 (Default browser: Chrome)

Boot Mode: Normal

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

 

==================== Processes (Whitelisted) =================

 

(If an entry is included in the fixlist, the process will be closed. The file error creating file system cannot run mkfs not be moved.)

 

(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE

(Microsoft Corporation) C:\Windows\System32\rundll32.exe

(Microsoft Corporation) C:\Windows\System32\rundll32.exe

(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe

(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe

(Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe

(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe

(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe

(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe

(Microsoft Corporation) C:\Windows\System32\certutil.exe

Failed to access process -> chrome.exe

(Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe

(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe

(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

() C:\Users\Craciun\AppData\Local\Temp\UCF4SO8U9O\UCF4.exe

() C:\Users\Craciun\AppData\Local\Temp\UCF4SO8U9O\T9XH.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe

(Intel Corporation) C:\Windows\System32\hkcmd.exe

(Intel Corporation) C:\Windows\System32\igfxpers.exe

() C:\Users\Craciun\AppData\Local\Temp\UCF4SO8U9O\UCF4.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Microsoft Corporation) C:\Windows\System32\msiexec.exe

(Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe

(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.9226.21705.0_x64__8wekyb3d8bbwe\HxTsr.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Microsoft Corporation) C:\Windows\System32\smartscreen.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

 

==================== Registry (Whitelisted) ===========================

 

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

 

HKLM\.\Run: [SecurityHealth] => %ProgramFiles%\Windows Defender\MSASCuiL.exe

HKLM\.\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16781824 2017-05-10] (Realtek Semiconductor)

HKLM\.\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [316392 2018-05-11] (Adobe Systems, Incorporated)

HKLM\.\Run: [resolve_run] => C:\Program Files (x86)\Common Files\new.bat [184 2018-05-25] ()

HKLM\.\Run: [JServicesManager] => C:\Program Files\SystemaRev\RevServicesX\app.ex

HKLM\.\Run: [rundll32] => C:\Windows\system32\rundll32.exe "C:\Program Files\Sawmenger XP\Sawmenger XP.dll",elnXHi

HKLM\.\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated)

HKLM-x32\.\Run: [Adobe Creative Cloud] => "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true

HKLM-x32\.\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [225944 2017-04-11] ()

HKLM-x32\.\Run: [JServicesManager] => C:\Program Files\SystemaRev\RevServicesX\app.ex

HKLM\.\RunOnce: [OMEWPRODUCT_] => C:\Program Files\Synaptics\PS1O1Z7IEGLDHYG\RJFnT9NCyn.exe [241664 2018-05-24] ()

HKLM\.\RunOnce: [yw1ci4cwik4] => C:\Program Files (x86)\trs\3084091.exe [670208 2018-05-23] ()

HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION

Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)

HKLM\ DisallowedCertificates: 03D22C9C66915D58C88912B64C1F984B8344EF09 (Comodo Security Solutions) <==== ATTENTION

HKLM\ DisallowedCertificates: 0F684EC1163281085C6AF20528878103ACEFCAAB (F-Secure Corporation) <==== ATTENTION

HKLM\ DisallowedCertificates: 1667908C9E22EFBD0590E088715CC74BE4C60884 (FRISK Software International/F-Prot) <==== ATTENTION

HKLM\ DisallowedCertificates: 18DEA4EFA93B06AE997D234411F3FD72A677EECE (Bitdefender SRL) <==== ATTENTION

HKLM\ DisallowedCertificates: 2026D13756EB0DB753DF26CB3B7EEBE3E70BB2CF (G DATA Software AG) <==== ATTENTION

HKLM\ DisallowedCertificates: 249BDA38A611CD746A132FA2AF995A2D3C941264 (Malwarebytes Corporation) <==== ATTENTION

HKLM\ DisallowedCertificates: 31AC96A6C17C425222C46D55C3CCA6BA12E54DAF (Symantec Corporation) <==== ATTENTION

HKLM\ DisallowedCertificates: 331E2046A1CCA7BFEF766724394BE6112B4CA3F7 (Trend Micro) <==== ATTENTION

HKLM\ DisallowedCertificates: 3353EA609334A9F23A701B9159E30CB6C22D4C59 (Webroot Inc.) <==== ATTENTION

HKLM\ DisallowedCertificates: 373C33726722D3A5D1EDD1F1585D5D25B39BEA1A (SUPERAntiSpyware.com) <==== ATTENTION

HKLM\ DisallowedCertificates: 3850EDD77CC74EC9F4829AE406BBF9C21E0DA87F (Kaspersky Lab) <==== ATTENTION

HKLM\ DisallowedCertificates: 3D496FA682E65FC122351EC29B55AB94F3BB03FC (AVG Technologies CZ) <==== ATTENTION

HKLM\ DisallowedCertificates: 4243A03DB4C3C15149CEA8B38EEA1DA4F26BD159 (PC Tools) <==== ATTENTION

HKLM\ DisallowedCertificates: 42727E052C0C2E1B35AB53E1005FD9EDC9DE8F01 (K7 Computing Pvt Ltd) <==== ATTENTION

HKLM\ DisallowedCertificates: 4420C99742DF11DD0795BC15B7B0ABF090DC84DF (Doctor Web Ltd.) <==== ATTENTION

HKLM\ DisallowedCertificates: 4C0AF5719009B7C9D85C5EAEDFA3B7F090FE5FFF (Emsisoft Ltd) <==== ATTENTION

HKLM\ DisallowedCertificates: 5240AB5B05D11B37900AC7712A3C6AE42F377C8C (Check Point Software Technologies Ltd.) <==== ATTENTION

HKLM\ DisallowedCertificates: 5DD3D41810F28B2A13E9A004E6412061E28FA48D (Emsisoft Ltd) <==== ATTENTION

HKLM\ DisallowedCertificates: 7457A3793086DBB58B3858D6476889E3311E550E (K7 Computing Pvt Ltd) <==== ATTENTION

HKLM\ DisallowedCertificates: 76A9295EF4343E12DFC5FE05DC57227C1AB00D29 (BullGuard Ltd) <==== ATTENTION

HKLM\ DisallowedCertificates: 775B373B33B9D15B58BC02B184704332B97C3CAF (McAfee) <==== ATTENTION

HKLM\ DisallowedCertificates: 872CD334B7E7B3C3D1C6114CD6B221026D505EAB (Comodo Security Solutions) <==== ATTENTION

HKLM\ DisallowedCertificates: 88AD5DFE24126872B33175D1778687B642323ACF (McAfee) <==== ATTENTION

HKLM\ DisallowedCertificates: 9132E8B079D080E01D52631690BE18EBC2347C1E (Adaware Software) <==== ATTENTION

HKLM\ DisallowedCertificates: 982D98951CF3C0CA2A02814D474A976CBFF6BDB1 (Safer Networking Ltd.) <==== ATTENTION

HKLM\ DisallowedCertificates: 9A08641F7C5F2CCA0888388BE3E5DBDDAAA3B361 (Webroot Inc.) <==== ATTENTION

HKLM\ DisallowedCertificates: 9C43F665E690AB4D486D4717B456C5554D4BCEB5 (ThreatTrack Security) <==== ATTENTION

HKLM\ DisallowedCertificates: 9E3F95577B37C74CA2F70C1E1859E798B7FC6B13 (CURIOLAB S.M.B.A.) <==== ATTENTION

HKLM\ DisallowedCertificates: A1F8DCB086E461E2ABB4B46ADCFA0B48C58B6E99 (Avira Operations GmbH & Co. KG) <==== ATTENTION

HKLM\ DisallowedCertificates: A5341949ABE1407DD7BF7DFE75460D9608FBC309 (BullGuard Ltd) <==== ATTENTION

HKLM\ DisallowedCertificates: A59CC32724DD07A6FC33F7806945481A2D13CA2F (ESET) <==== ATTENTION

HKLM\ DisallowedCertificates: AB7E760DA2485EA9EF5A6EEE7647748D4BA6B947 (AVG Technologies CZ) <==== ATTENTION

HKLM\ DisallowedCertificates: AD4C5429E10F4FF6C01840C20ABA344D7401209F (Avast Antivirus/Software) <==== ATTENTION

HKLM\ DisallowedCertificates: AD96BB64BA36379D2E354660780C2067B81DA2E0 (Symantec Corporation) <==== ATTENTION

HKLM\ DisallowedCertificates: B8EBF0E696AF77F51C96DB4D044586E2F4F8FD84 (Malwarebytes Corporation) <==== ATTENTION

HKLM\ Strogino cs portal hl2 stoped work error CDC37C22FE9272D8F2610206AD397A45040326B8 (Trend Micro) <==== ATTENTION

HKLM\ DisallowedCertificates: D3F78D747E7C5D6D3AE8ABFDDA7522BFB4CBD598 (Kaspersky Lab) <==== ATTENTION

HKLM\ DisallowedCertificates: DB303C9B61282DE525DC754A535CA2D6A9BD3D87 (ThreatTrack Security) <==== ATTENTION

HKLM\ DisallowedCertificates: DB77E5CFEC34459146748B667C97B185619251BA (Avast Antivirus/Software) <==== ATTENTION

HKLM\ DisallowedCertificates: E22240E837B52E691C71DF248F12D27F96441C00 (Total Defense, Inc.) <==== ATTENTION

HKLM\ DisallowedCertificates: E513EAB8610CFFD7C87E00BCA15C23AAB407FCEF (AVG Technologies CZ) <==== ATTENTION

HKLM\ DisallowedCertificates: ED841A61C0F76025598421BC1B00E24189E68D54 (Bitdefender SRL) <==== ATTENTION

HKLM\ DisallowedCertificates: F83099622B4A9F72CB5081F742164AD1B8D048C9 (ESET) <==== ATTENTION

HKLM\ DisallowedCertificates: FBB42F089AF2D570F2BF6F493D107A3255A9BB1A (Panda Security S.L) <==== ATTENTION

HKLM\ DisallowedCertificates: FFFA650F2CB2ABC0D80527B524DD3F9FC172C138 (Doctor Web Ltd.) <==== ATTENTION

HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION

HKU\S-1-5-19\.\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)

HKU\S-1-5-20\.\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [uTorrent] => "C:\Users\Craciun\AppData\Roaming\uTorrent\uTorrent.exe"  /MINIMIZED

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [DAEMON Tools Pro Agent] => C:\Program Files\DAEMON Tools Pro\DTAgent.exe [4807952 2015-02-27] (Disc Soft Ltd)

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [9smAipOnMy.exe] => C:\Program Files\Synaptics\PS1O1Z7IEGLDHYG\9smAipOnMy.exe 

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [7DDHIUFMJV2EL7F] => "C:\Program Files (x86)\ShutdownTime\5FZPC.exe"

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [RestlessDream] => C:\Windows\rss\csrss.exe [3188736 2018-05-24] () <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [6R71.exe] => C:\Users\Craciun\AppData\Local\Temp\CDQUIA1MVU\6R71.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [CloudNet] => C:\Users\Craciun\AppData\Roaming\EpicNet Inc\CloudNet\cloudnet.exe [680960 2018-06-10] (EpicNet Inc.) <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [OUXZ.exe] => C:\Users\Craciun\AppData\Local\Temp\TGGSGCKZPL\OUXZ.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [U2DF.exe] => C:\Users\Craciun\AppData\Local\Temp\KE0R86LF9W\U2DF.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [YUFW.exe] => C:\Users\Craciun\AppData\Local\Temp\9G237R4OUT\YUFW.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [X7KF.exe] => C:\Users\Craciun\AppData\Local\Temp\Q4WT4U9OKD\X7KF.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [J4DW.exe] => C:\Users\Craciun\AppData\Local\Temp\S8U9G5VHAK\J4DW.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [QC81.exe] => C:\Users\Craciun\AppData\Local\Temp\WXRTGWWTMA\QC81.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [LXYS.exe] => C:\Users\Craciun\AppData\Local\Temp\88RDI2YFE2\LXYS.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [TG0F.exe] => C:\Users\Craciun\AppData\Local\Temp\TG0FRLEG66\TG0F.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [U5Y0.exe] => C:\Users\Craciun\AppData\Local\Temp\U5Y0DOU28Z\U5Y0.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [3BMC.exe] => C:\Users\Craciun\AppData\Local\Temp\SN8NAMCXNP\3BMC.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [K5DU.exe] => C:\Users\Craciun\AppData\Local\Temp\VAOXBKCGFX\K5DU.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [FIHG.exe] => C:\Users\Craciun\AppData\Local\Temp\2TA1Y9DOJW\FIHG.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [YOV7.exe] => C:\Users\Craciun\AppData\Local\Temp\LZOS39VX3X\YOV7.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [H6Z0.exe] => C:\Users\Craciun\AppData\Local\Temp\GOU608OGIL\H6Z0.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [CKIC.exe] => C:\Users\Craciun\AppData\Local\Temp\ZVCX6FUVQ7\CKIC.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [53NL.exe] => C:\Users\Craciun\AppData\Local\Temp\WF2NKP99YT\53NL.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [KWWC.exe] => C:\Users\Craciun\AppData\Local\Temp\98JOIXN0JH\KWWC.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [QVLM.exe] => C:\Users\Craciun\AppData\Local\Temp\D6E7ZCWRA6\QVLM.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [QLWM.exe] => C:\Users\Craciun\AppData\Local\Temp\QLWMUKQ53V\QLWM.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [FCY5.exe] => C:\Users\Craciun\AppData\Local\Temp\FCY5J3YAYR\FCY5.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [8G3O.exe] => C:\Users\Craciun\AppData\Local\Temp\8G3OPERZE7\8G3O.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [MUSU.exe] => C:\Users\Craciun\AppData\Local\Temp\MUSUQ6URHH\MUSU.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [LCQF.exe] => C:\Users\Craciun\AppData\Local\Temp\8NK0ND5Z6H\LCQF.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [P5VP.exe] => C:\Users\Craciun\AppData\Local\Temp\P5VP6BI7NG\P5VP.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [V6OZ.exe] => C:\Users\Craciun\AppData\Local\Temp\V6OZMU6NHQ\V6OZ.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [JAQ3.exe] => C:\Users\Craciun\AppData\Local\Temp\ZIV2N825LS\JAQ3.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [HMHK.exe] => C:\Users\Craciun\AppData\Local\Temp\HMHKW0J8G1\HMHK.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [Z87K.exe] => C:\Users\Craciun\AppData\Local\Temp\Z87KLFT34W\Z87K.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [042B.exe] => C:\Users\Craciun\AppData\Local\Temp\CQI82VFER8\042B.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [JOBY.exe] => C:\Users\Craciun\AppData\Local\Temp\JOBYT3PP9O\JOBY.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [7445.exe] => C:\Users\Craciun\AppData\Local\Temp\EOP5OYG8UR\7445.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [IZU8.exe] => C:\Users\Craciun\AppData\Local\Temp\IZU8IX3CIG\IZU8.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [MaxiBuy] => C:\Users\Craciun\AppData\Roaming\MaxiBuy\python\pythonw.exe [95904 2018-05-02] (Python Software Foundation) <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [K98S.exe] => C:\Users\Craciun\AppData\Local\Temp\K98SCZW5CO\K98S.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [AD0N.exe] => C:\Users\Craciun\AppData\Local\Temp\XOU8ZSM5DL\AD0N.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [R02G.exe] => C:\Users\Craciun\AppData\Local\Temp\R02GTSCW7N\R02G.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [W5PX.exe] => C:\Users\Craciun\AppData\Local\Temp\W5PXPDVPH1\W5PX.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [LF5I.exe] => C:\Users\Craciun\AppData\Local\Temp\JU96A3V4UT\LF5I.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [2BGG.exe] => C:\Users\Craciun\AppData\Local\Temp\V7SUS9JGHN\2BGG.exe  <==== ATTENTION

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [JServicesManager] => C:\Program Files\SystemaRev\RevServicesX\app.ex

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\Run: [UCF4.exe] => C:\Users\Craciun\AppData\Local\Temp\UCF4SO8U9O\UCF4.exe [452608 2018-06-11] () <==== ATTENTION

AppInit_DLLs: C:\ProgramData\Subair\Trusttansoft.dll => C:\ProgramData\Subair\Trusttansoft.dll [342528 2018-05-26] ()

AppInit_DLLs-x32: C:\ProgramData\Subair\S--Fix.dll => C:\ProgramData\Subair\S--Fix.dll [460800 2018-05-26] ()

ShellExecuteHooks: No Name - {BFD98515-CD74-48A4-98E2-13D209E3EE4F} - C:\Windows\System32\mcicda64.dll [2990080 2018-03-24] () <==== ATTENTION

GroupPolicy: Restriction ? <==== ATTENTION

GroupPolicy\User: Restriction ? <==== ATTENTION

 

==================== Internet (Whitelisted) ====================

 

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

 

Hosts: There are more than one entry in Hosts. See Hosts section of Htc error 328 [DhcpNameServer] 192.168.0.1

Tcpip\.\Interfaces\{0b41cb42-7f71-4fe2-a7d7-a86604cbe95a}: [DhcpNameServer] 192.168.0.1

Tcpip\.\Interfaces\{bd1fecd1-e9c9-4f98-a7f1-e2b2d288d553}: [DhcpNameServer] 192.168.0.1

 

Internet Explorer:

==================

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBEQo0lOCwIxrzs2Rcb6iY1JmNoT6P_LBC58xFfZfVmoWmroNmrmUx8_e4oxvuDKV9xTzbBCRgXd1mMyYXcmAdQQyyvLWU57UoocABathQHtYaRfAjwJpXRqIgaWUaVd1HXtAhJiyaJgHOJ4wq7EDZHG4Pa06A1qF3LSfTcbkeUsTXIcpzbBTXUQzjikUs,&q={searchTerms}

HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBEQo0lOCwIxrzs2Rcb6iY1JmNoT6P_LBC58xFfZfVmoWmroNmrmUx8_e4oxvuDKV9xTzbBCRgXd1mMyYXcmAdQQyyvLWU57UoofG1UzdLvJaOTe5RZu6mfibq4HA6E3-LxFj4oSu6ZB6kD9RIOjbV3B7D5mvYBN6KpUo6tpuMSJcs10XaI4YpAln9M9NA,

SearchScopes: HKLM-x32 -> DefaultScope {ielnksrch} URL = 

SearchScopes: HKLM-x32 -> ielnksrch URL = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBEQo0lOCwIxrzs2Rcb6iY1JmNoT6P_LBC58xFfZfVmoWmroNmrmUx8_e4oxvuDKV9xTzbBCRgXd1mMyYXcmAdQQyyvLWU57UoocABathQHtYaRfAjwJpXRqIgaWUaVd1HXtAhJiyaJgHOJ4wq7EDZHG4Pa06A1qF3LSfTcbkeUsTXIcpzbBTXUQzjikUs,&q={searchTerms}

SearchScopes: HKU\S-1-5-21-3764278317-3264620232-1554668131-1000 -> DefaultScope {ielnksrch} URL = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBEQo0lOCwIxrzs2Rcb6iY1JmNoT6P_LBC58xFfZfVmoWmroNmrmUx8_e4oxvuDKV9xTzbBCRgXd1mMyYXcmAdQQyyvLWU57UoocABathQHtYaRfAjwJpXRqIgaWUaVd1HXtAhJiyaJgHOJ4wq7EDZHG4Pa06A1qF3LSfTcbkeUsTXIcpzbBTXUQzjikUs,&q={searchTerms}

SearchScopes: HKU\S-1-5-21-3764278317-3264620232-1554668131-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE04

SearchScopes: HKU\S-1-5-21-3764278317-3264620232-1554668131-1000 -> {A16A49A0-78F1-4E53-AB5A-E15E791CE3BB} URL = hxxps://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}

SearchScopes: HKU\S-1-5-21-3764278317-3264620232-1554668131-1000 -> {ielnksrch} URL = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBEQo0lOCwIxrzs2Rcb6iY1JmNoT6P_LBC58xFfZfVmoWmroNmrmUx8_e4oxvuDKV9xTzbBCRgXd1mMyYXcmAdQQyyvLWU57UoocABathQHtYaRfAjwJpXRqIgaWUaVd1HXtAhJiyaJgHOJ4wq7EDZHG4Pa06A1qF3LSfTcbkeUsTXIcpzbBTXUQzjikUs,&q={searchTerms}

BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-01-30] (Oracle Corporation)

BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-01-30] (Oracle Corporation)

 

FireFox:

========

FF DefaultProfile: blqunqo0.default

FF ProfilePath: C:\Users\Craciun\AppData\Roaming\Mozilla\Firefox\Profiles\blqunqo0.default [2018-06-11]

FF Homepage: Mozilla\Firefox\Profiles\blqunqo0.default -> C:\ProgramData\Subairs\ff.HP

FF NewTab: Mozilla\Firefox\Profiles\blqunqo0.default -> C:\ProgramData\Subairs\ff.NT

FF SearchPlugin: C:\Users\Craciun\AppData\Roaming\Mozilla\Firefox\Profiles\blqunqo0.default\searchplugins\findit.xml [2018-05-26]

FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-04-24] (Adobe Systems)

FF Plugin-x32: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-01-30] (Oracle Corporation)

FF Plugin-x32: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-01-30] (Oracle Corporation)

FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [No File]

FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [No File]

FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-04-24] (Adobe Systems)

 

Chrome: 

=======

CHR res: Infected resources.pak (Adware script). Reinstall Chrome. <==== ATTENTION

CHR HomePage: Default -> inline.go.mail.ru

CHR StartupUrls: Default -> "hxxps://www.google.ro/?pli=1"

CHR DefaultSearchURL: Default -> hxxps://www.google.ro/search?source=hp&ei=jQQbW7ejGsWiwALNrqHoCw&btnG=C%C4%83uta%C8%9Bi&q={searchTerms}&oq=how+to+get+to+system+settings+when+boot&gs_l=psy-ab.3.7315.57108.0.57433.116.76.0.0.0.0.1430.1430.7-1.1.0.0.1.1.64.psy-ab.115.1.1429.0.0i8i10i30k1.0.PEgGww2OXY8

CHR Profile: C:\Users\Craciun\AppData\Local\Google\Chrome\User Data\Default [2018-06-11]

CHR Extension: (Slides) - C:\Users\Craciun\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-12]

CHR Extension: (Docs) - C:\Users\Craciun\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12]

CHR Extension: (Google Drive) - C:\Users\Craciun\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-07-28]

CHR Extension: (YouTube) - C:\Users\Craciun\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-28]

CHR Extension: (Sheets) - C:\Users\Craciun\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-12]

CHR Extension: (Google Docs Offline) - C:\Users\Craciun\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-07-28]

CHR Extension: (AdBlock) - C:\Users\Craciun\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-05-24]

CHR Extension: (Video Adblocker for Youtube™ Extension) - C:\Users\Craciun\AppData\Local\Google\Chrome\User Data\Default\Extensions\hflefjhkfeiaignkclmphmokmmbhbhik [2018-05-24]

CHR Extension: (Chrome Web Store Payments) - C:\Users\Craciun\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-04]

CHR Extension: (Gmail) - C:\Users\Craciun\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-07-28]

CHR Extension: (Chrome Media Router) - C:\Users\Craciun\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-05-02]

 

==================== Services (Whitelisted) ====================

 

(If an entry is included in the fixlist, strogino cs portal hl2 stoped work error, it will be removed from the registry. The file will not be moved unless listed separately.)

 

R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818128 2018-04-24] (Adobe Systems Incorporated)

R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2321384 2018-05-11] (Adobe Systems, Incorporated)

R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2128872 2018-05-11] (Adobe Systems, Incorporated)

S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6541008 2018-05-09] (Malwarebytes)

R2 MicroService; C:\Users\Craciun\AppData\Local\XService\XService.dll [585216 2018-05-24] () [File not signed] <==== ATTENTION

R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [201360 2012-09-27] (Realtek Semiconductor)

R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [250136 2017-05-04] (Realtek Semiconductor Corp.)

S2 saiyitechnology; C:\ProgramData\yahoochrome_D\desktop245.exe [517432 2018-05-21] (PandaViewer)

S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4737448 2018-04-12] (Microsoft Corporation)

S3 ssh-agent; C:\Windows\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()

R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [278616 2017-05-05] (Synaptics Incorporated)

S3 SystemUpdate64; C:\Program Files\SystemaRev\RevServicesX\SystemUpdate64x.exe [593920 2018-06-08] (SystemaRev) [File not signed] <==== ATTENTION

S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\NisSrv.exe [4632736 2018-04-26] (Microsoft Corporation)

S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\MsMpEng.exe [104680 2018-04-26] (Microsoft Corporation)

R2 WinDefender; C:\WINDOWS\windefender.exe [0 ] () <==== ATTENTION (zero byte File/Folder)

S2 backlh; C:\ProgramData\Logic Cramble\set.exe [X] <==== ATTENTION

S3 Disc Soft Pro Bus Service; "C:\Program Files\DAEMON Tools Pro\DiscSoftBusService.exe" [X]

S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]

S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]

S2 Nettrans; C:\ProgramData\PrefsSecure\Nettrans.exe [X] <==== ATTENTION

S2 Subair; C:\ProgramData\\Subair\\Subair.exe shuz -f "C:\ProgramData\\Subair\\Subair.dat" -l -a <==== ATTENTION

R2 TCPSvc; "C:\Users\Craciun\AppData\Local\Temp\csrss\proxy\tor.exe" --nt-service -f "C:\Users\Craciun\AppData\Local\Temp\csrss\proxy\config" --Log "notice file C:\Users\Craciun\AppData\Local\Temp\csrss\proxy\t" <==== ATTENTION

 

===================== Drivers (Whitelisted) ======================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

S3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-12-06] (Disc Soft Ltd)

R3 dtproscsibus; C:\Windows\System32\drivers\dtproscsibus.sys [30352 2017-07-06] strogino cs portal hl2 stoped work error Soft Ltd)

R1 hdd bios disk error C:\Windows\System32\drivers\gtkrnl.sys [126856 2018-03-28] ()

R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2017-05-03] (REALiX™)

R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [984032 2017-07-05] (Realtek )

R3 RtkBtFilter; C:\Windows\system32\DRIVERS\RtkBtfilter.sys [712704 2017-05-10] (Realtek Semiconductor Corporation)

R3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [419296 2017-05-04] (Realsil Semiconductor Corporation)

R3 rtwlane_13; C:\Windows\System32\drivers\rtwlane_13.sys [3717120 2018-04-12] (Realtek Semiconductor Corporation )

R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)

R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-13] (SUPERAdBlocker.com and SUPERAntiSpyware.com)

S3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [51392 2015-10-09] (Synaptics Incorporated)

R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [52816 2016-08-03] (Toshiba Client Solutions Co., Ltd.)

S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [46072 2018-04-26] (Microsoft Corporation)

S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [313888 2018-04-26] error 134 wow cataclysm Corporation)

S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [61472 2018-04-26] (Microsoft Corporation)

R3 Winmon; C:\WINDOWS\System32\drivers\Winmon.sys [0 ] strogino cs portal hl2 stoped work error <==== ATTENTION (zero byte File/Folder)

R3 WinmonFS; C:\WINDOWS\System32\drivers\WinmonFS.sys [0 ] (Windows ® Win 7 DDK provider) <==== ATTENTION (zero byte File/Folder)

R1 WinmonProcessMonitor; C:\WINDOWS\System32\drivers\WinmonProcessMonitor.sys strogino cs portal hl2 stoped work error 2018-05-24] () [File not signed] <==== ATTENTION

U0 Partizan; system32\drivers\Partizan.sys [X]

 

==================== NetSvcs (Whitelisted) ===================

 

(If an entry is included in the fixlist, strogino cs portal hl2 stoped work error, it will be removed from the registry. The file will not be moved unless listed separately.)

 

 

==================== One Month Created files and folders ========

 

(If an entry is included in the fixlist, the file/folder will be moved.)

 

2018-06-11 20:39 - 2018-06-11 20:42 - 000030235 _____ C:\Users\Craciun\Desktop\FRST.txt

2018-06-11 20:37 - 2018-06-11 20:39 - 000000000 ____D C:\FRST

2018-06-11 20:36 - 2018-06-11 20:36 - 002413056 _____ (Farbar) C:\Users\Craciun\Desktop\FRST64.exe

2018-06-11 07:58 - 2018-06-11 07:58 - 000000000 ___HD C:\OneDriveTemp

2018-06-09 18:22 - 2018-06-09 18:40 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\MaxiBuy

2018-06-09 18:22 - 2018-06-09 18:22 - 000003464 _____ C:\Windows\System32\Tasks\MaxiBuy2

2018-06-09 18:22 - 2018-06-09 18:22 - 000003454 _____ C:\Windows\System32\Tasks\MaxiBuy

2018-06-09 18:22 - 2018-06-09 18:22 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\Python

2018-06-09 18:21 - 2018-06-09 18:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maxi Buy

2018-06-09 18:21 - 2018-06-09 18:22 - 000000000 ____D C:\Program Files (x86)\Maxi Buy

2018-06-08 22:09 - 2018-06-08 22:09 - 000029203 _____ C:\Users\Craciun\Desktop\attach.txt

2018-06-08 22:09 - 2018-06-08 22:08 - 000035804 _____ C:\Users\Craciun\Desktop\dds.txt

2018-06-08 21:30 - 2018-06-08 21:45 - 000003608 _____ C:\Users\Craciun\Desktop\Rkill.txt

2018-06-08 10:55 - 2018-06-08 10:55 - 000001302 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk

2018-06-08 10:55 - 2018-06-08 10:55 - 000001290 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk

2018-06-08 10:39 - 2018-06-08 10:39 - 000196260 _____ C:\Windows\ntbtlog.txt

2018-06-08 09:05 - 2018-06-11 20:31 - 000003890 _____ C:\Windows\System32\Tasks\Update_4.0.8

2018-06-08 09:05 - 2018-06-08 09:05 - 000000000 ____D C:\Program Files\SystemaRev

2018-06-07 20:22 - 2018-06-09 18:41 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\bsvctp

2018-06-07 20:17 - 2018-06-07 20:17 - 000016802 _____ C:\Windows\System32\Tasks\Sawmenger XP

2018-06-07 07:52 - 2018-06-11 20:31 - 000003878 _____ C:\Windows\System32\Tasks\MainPMgr

2018-06-04 19:53 - 2018-06-04 19:53 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\schedsvc

2018-06-02 16:30 - 2018-06-03 08:46 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\gsvc

2018-05-30 20:48 - 2018-05-30 19:55 - 000094208 _____ (scaxvnlzpnrzqclaez) C:\Users\Craciun\AppData\Roaming\command.dll

2018-05-30 20:48 - 2018-05-30 19:05 - 000623616 _____ (rsltggjgfwnwdwxcud) C:\Users\Craciun\AppData\Roaming\product.dll

2018-05-27 00:14 - 2018-06-11 20:31 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\SystemaRev

2018-05-26 14:23 - 2018-05-27 09:38 - 000000000 ____D C:\Program Files (x86)\SystemHealer

2018-05-26 14:23 - 2018-05-26 14:32 - 000000000 ____D C:\ProgramData\Subair

2018-05-26 14:23 - 2018-05-26 14:24 - 000015610 _____ C:\Windows\SysWOW64\findit.xml

2018-05-26 14:23 - 2018-05-26 14:24 - 000000000 ____D C:\ProgramData\Logic Cramble

2018-05-26 14:23 - 2018-05-26 14:23 - 001895382 _____ C:\Users\Craciun\AppData\Local\Subity.bin

2018-05-26 14:23 - 2018-05-26 14:23 - 000003416 _____ C:\Windows\System32\Tasks\System Healer Monitor

2018-05-26 14:23 - 2018-05-26 14:23 - 000003408 _____ C:\Windows\System32\Tasks\System Healer Delayed

2018-05-26 14:23 - 2018-05-26 14:23 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\System Healer

2018-05-26 14:23 - 2018-05-26 14:23 - 000000000 ____D C:\ProgramData\Subairs

2018-05-26 14:23 - 2018-05-26 14:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Healer

2018-05-26 14:22 - 2018-05-26 14:22 - 007611392 _____ C:\Users\Craciun\AppData\Local\agent.dat

2018-05-26 14:22 - 2018-05-26 14:22 - 001987417 _____ C:\Users\Craciun\AppData\Local\Biojob.tst

2018-05-26 14:22 - 2018-05-26 14:22 - 000126464 _____ C:\Users\Craciun\AppData\Local\noah.dat

2018-05-26 14:22 - 2018-05-26 14:22 - 000070896 _____ C:\Users\Craciun\AppData\Local\Config.xml

2018-05-26 14:22 - 2018-05-26 14:22 - 000018432 _____ C:\Users\Craciun\AppData\Local\Main.dat

2018-05-26 14:22 - 2018-05-26 14:22 - 000005568 _____ C:\Users\Craciun\AppData\Local\md.xml

2018-05-26 14:22 - 2018-05-26 14:20 - 002136576 _____ (TODO: <Company name>) C:\Users\Craciun\AppData\Local\Biojob.exe

2018-05-26 14:21 - 2018-05-26 14:24 - 000000000 ____D C:\ProgramData\PrefsSecure

2018-05-26 14:21 - 2018-05-26 14:21 - 000278510 _____ C:\Users\Craciun\AppData\Local\Statphase.bin

2018-05-26 11:53 - 2018-05-26 11:53 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\SUPERAntiSpyware.com

2018-05-26 11:52 - 2018-05-26 11:52 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware

2018-05-26 11:51 - 2018-05-26 11:54 - 000000000 ____D C:\Program Files\SUPERAntiSpyware

2018-05-26 11:51 - 2018-05-26 11:51 - 000000000 ____D C:\ProgramData\SUPERAntiSpyware.com

2018-05-25 17:40 - 2018-05-27 09:39 - 000000000 ____D C:\Users\Craciun\AppData\Local\D3DSCache

2018-05-25 17:30 - 2018-06-11 07:59 - 000003292 _____ C:\Windows\System32\Tasks\MRT

2018-05-25 17:28 - 2018-05-25 17:28 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk

2018-05-25 17:28 - 2018-05-25 17:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes

2018-05-25 17:28 - 2018-04-26 05:36 - 000152184 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys

2018-05-25 07:50 - 2018-05-27 11:02 - 000000000 ____D C:\sysg

2018-05-24 22:54 - 2018-05-24 08:40 - 000001320 _____ C:\Windows\system32\Drivers\etc\hosts.old

2018-05-24 11:40 - 2018-05-24 11:45 - 000000000 ____D C:\Windows\system32\config\bbimigrate

2018-05-24 11:40 - 2018-05-24 11:40 - 000000000 ___DL C:\Users\Public\Recorded TV (2)

2018-05-24 11:37 - 2018-05-24 11:40 - 000000000 ____D C:\Windows\ServiceProfiles

2018-05-24 11:37 - 2018-05-24 11:37 - 000008192 _____ C:\Windows\system32\config\userdiff

2018-05-24 11:33 - 2018-05-24 11:33 - 025848832 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 023862272 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 022707712 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 022002688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 021389360 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 020383720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 019525120 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 019399168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 013570560 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 012712960 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 012500992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 011903488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 009159064 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe

2018-05-24 11:33 - 2018-05-24 11:33 - 008623104 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 008188928 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 007987712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 007583232 syslog apache error log (Microsoft Corporation) C:\Windows\system32\Chakra.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 007519992 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 007436624 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 006661632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 006569952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 006044104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 005951488 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 005782528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 004929024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 004867072 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 004706816 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll

2018-05-24 11:33 - 2018-05-24 oracle select update nowait error - 004372992 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 004070400 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 003732800 _____ C:\Windows\system32\Windows.Mirage.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 003712000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 003655168 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys

2018-05-24 11:33 - 2018-05-24 11:33 - 003440640 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 003392512 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 003389952 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 003320320 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 003283400 _____ (Microsoft Corporation) C:\Windows\system32\CoreUIComponents.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 003086336 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 003015168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 002961408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 002902528 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 002900992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 002897408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys

2018-05-24 11:33 - 2018-05-24 11:33 - 002841312 _____ C:\Windows\SysWOW64\Windows.Mirage.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 002835864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys

2018-05-24 11:33 - 2018-05-24 11:33 - 002753040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 002700800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 002486976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreUIComponents.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 002422168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys

2018-05-24 11:33 - 2018-05-24 11:33 - 002366976 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 002242208 debugging bind9 errors (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 002236928 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys

2018-05-24 11:33 - 2018-05-24 11:33 - 002170368 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001953280 _____ C:\Windows\system32\rdpnano.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001855488 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001817088 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001664512 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001636352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001634800 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001586176 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001585664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001565592 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001550848 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001534976 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001466368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001456616 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi

2018-05-24 11:33 - 2018-05-24 11:33 - 001454016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001426328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001421312 _____ (Microsoft Corporation) C:\Windows\system32\rdpbase.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001380864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001258280 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe

2018-05-24 11:33 - 2018-05-24 11:33 - 001235968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpbase.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001191168 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001174424 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe

2018-05-24 11:33 - 2018-05-24 11:33 - 001160192 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 001063320 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi

2018-05-24 11:33 - 2018-05-24 11:33 - 001034624 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe

2018-05-24 11:33 - 2018-05-24 11:33 - 001012120 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe

2018-05-24 11:33 - 2018-05-24 11:33 - 000976384 _____ (Microsoft Corporation) C:\Windows\system32\Spectrum.exe

2018-05-24 11:33 - 2018-05-24 11:33 - 000960512 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000944640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Mirage.Internal.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000933376 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000917504 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000898560 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll

2018-05-24 11:33 - 2018-05-24 11:33 1c 8.2 error 1311 data1.cab 000894464 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000885848 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000860160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000836608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000826776 _____ (Microsoft Corporation) C:\Windows\system32\AppVClient.exe

2018-05-24 11:33 - 2018-05-24 11:33 - 000814592 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000788216 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000786168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000776880 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll

2018-05-24 11:33 - 2018-05-24 11:33 - strogino cs portal hl2 stoped work error _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000758272 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000749976 _____ (Microsoft Corporation) C:\Windows\system32\AppVReporting.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000733992 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000709816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys

2018-05-24 11:33 - 2018-05-24 11:33 - 000705944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys

2018-05-24 11:33 - 2018-05-24 11:33 - 000695296 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx

2018-05-24 11:33 - 2018-05-24 11:33 - 000669184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000668672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000665320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll

2018-05-24 11:33 - 2018-05-24 tag editor error 40005 - 000658432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000652184 _____ (Microsoft Corporation) C:\Windows\system32\AppVPublishing.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000624128 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000615424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000613376 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.rs4.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000606448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000604568 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe

2018-05-24 11:33 - 2018-05-24 11:33 - 000596480 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000585728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.rs3.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000584192 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000581120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx

2018-05-24 11:33 - 2018-05-24 11:33 - 000578560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000567136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000559968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000553984 _____ (Microsoft Corporation) C:\Windows\system32\PerceptionSimulationExtensions.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000543744 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000524800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000494488 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe

2018-05-24 11:33 - 2018-05-24 11:33 - 000474624 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.rs2.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000473496 _____ (Microsoft Corporation) C:\Windows\system32\dcntel.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000444416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.rs1.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000434584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe

2018-05-24 11:33 - 2018-05-24 11:33 - 000399768 _____ (Microsoft Corporation) C:\Windows\system32\AppVScripting.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000392192 _____ strogino cs portal hl2 stoped work error Corporation) C:\Windows\system32\iedkcs32.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000382872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys

2018-05-24 11:33 - 2018-05-24 11:33 - 000344064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000288256 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.th.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000272288 _____ (Microsoft Corporation) C:\Windows\system32\SgrmEnclave.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000269216 _____ (Microsoft Corporation) C:\Windows\system32\SgrmEnclave_secure.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000256000 _____ (Microsoft Corporation) C:\Windows\system32\MixedReality.Broker.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000241664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.win81.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000171520 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000170904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys

2018-05-24 11:33 - 2018-05-24 11:33 - 000159744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Analog.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000154112 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000150528 _____ (Microsoft Corporation) C:\Windows\system32\SharedPCCSP.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000143360 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.win8rtm.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000134552 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\wcimage.dll

2018-05-24 11:33 strogino cs portal hl2 stoped work error 2018-05-24 11:33 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll

2018-05-24 11:33 - 2018-05-24 11:33 - 000001312 _____ C:\Windows\system32\tcbres.wim

2018-05-24 11:25 - 2018-05-24 11:25 - 007702016 _____ (Microsoft Corporation) C:\Windows\system32\NL7Models0011.dll

2018-05-24 11:25 - 2018-05-24 11:25 - 007406080 _____ (Microsoft Corporation) C:\Windows\system32\NL7Data0011.dll

2018-05-24 11:25 - 2018-05-24 11:25 - 007242240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NL7Data0011.dll

2018-05-24 11:25 - 2018-05-24 11:25 - 002454528 _____ (Microsoft Corporation) C:\Windows\system32\NL7Lexicons0011.dll

2018-05-24 11:25 - 2018-05-24 11:25 - 000712704 _____ (Microsoft Corporation) C:\Windows\system32\MSWB70011.dll

2018-05-24 11:25 - 2018-05-24 11:25 - 000516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB70011.dll

2018-05-24 11:25 - 2018-05-24 11:25 - 000002060 _____ C:\Windows\system32\noise.jpn

2018-05-24 11:25 - 2018-05-24 11:25 - 000000000 ____D C:\Program Files\Reference Assemblies

2018-05-24 11:25 - 2018-05-24 11:25 - 000000000 ____D C:\Program Files\MSBuild

2018-05-24 11:25 - 2018-05-24 11:25 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies

2018-05-24 11:25 - 2018-05-24 11:25 - 000000000 ____D C:\Program Files (x86)\MSBuild

2018-05-24 11:24 - 2018-05-24 11:24 - 001166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll

2018-05-24 11:24 - 2018-05-24 11:24 - 000778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll

2018-05-24 11:24 - 2018-05-24 11:24 - 000124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll

2018-05-24 11:24 - 2018-05-24 11:24 - 000103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll

2018-05-24 11:24 - 2018-05-24 11:24 - 000035456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe

2018-05-24 11:24 - 2018-05-24 11:24 - 000035456 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe

2018-05-24 11:23 - 2018-05-24 11:23 - 004492288 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe

2018-05-24 11:23 - 2018-05-24 11:23 - 003398144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe

2018-05-24 11:23 - 2018-05-24 11:23 - 000925696 _____ (Microsoft Corporation) C:\Windows\system32\XpsFilt.dll

2018-05-24 11:23 - 2018-05-24 11:23 - 000575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsFilt.dll

2018-05-24 11:23 - 2018-05-24 11:23 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\XPSSHHDR.dll

2018-05-24 11:23 - 2018-05-24 11:23 - 000082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XPSSHHDR.dll

2018-05-24 11:23 - 2018-05-24 11:23 - 000076060 _____ C:\Windows\SysWOW64\xpsrchvw.xml

2018-05-24 11:23 - 2018-05-24 11:23 - 000076060 _____ C:\Windows\system32\xpsrchvw.xml

2018-05-24 11:22 - 2018-05-24 11:22 - 003331584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsLexicons0018.dll

2018-05-24 11:22 - 2018-05-24 11:22 - 003331584 _____ (Microsoft Corporation) C:\Windows\system32\NlsLexicons0018.dll

2018-05-24 11:22 - 2018-05-24 11:22 - 001914880 _____ (Microsoft Corporation) C:\Windows\system32\MLS2.dll

2018-05-24 11:22 - 2018-05-24 11:22 - 001866752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MLS2.dll

2018-05-24 11:22 - 2018-05-24 11:22 - 000166912 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0018.dll

2018-05-24 11:22 - 2018-05-24 11:22 - 000131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0018.dll

2018-05-24 09:59 - 2018-05-24 10:05 - 000656668 _____ C:\Windows\Minidump\052418-65906-01.dmp

2018-05-24 09:59 - 2018-05-24 09:59 - 561529806 _____ C:\Windows\MEMORY.DMP

2018-05-24 09:59 - 2018-05-24 09:59 - 000000000 ____D C:\Windows\Minidump

2018-05-24 09:01 - 2018-05-24 09:01 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\EpicNet Inc

2018-05-24 09:01 - 2018-05-24 09:01 - 000000000 ____D C:\ProgramData\SystemaRev

2018-05-24 09:00 - 2018-05-24 09:00 - 000036096 _____ C:\Windows\system32\Drivers\WinmonProcessMonitor.sys

2018-05-24 08:58 - 2018-05-24 08:58 - 000003678 _____ C:\Windows\System32\Tasks\FastDataX Task

2018-05-24 08:56 - 2018-06-10 11:59 - 000003602 _____ C:\Windows\System32\Tasks\ScheduledUpdate

2018-05-24 08:56 - 2018-06-10 11:59 - 000003246 _____ C:\Windows\System32\Tasks\csrss

2018-05-24 08:56 - 2018-05-24 08:58 - 009159064 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlmp.exe

2018-05-24 08:56 - 2018-05-24 08:58 - 001258280 _____ (Microsoft Corporation) C:\Windows\system32\osloader.exe

2018-05-24 08:48 - 2018-05-24 08:48 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\SystemHealer

2018-05-24 08:45 - 2018-06-11 07:56 - 000003644 _____ C:\Windows\System32\Tasks\CreateExplorerShellUnelevatedTask

2018-05-24 08:45 - 2018-06-10 12:02 - 000000618 __RSH C:\ProgramData\ntuser.pol

2018-05-24 08:44 - 2018-05-24 10:02 - 000016796 _____ C:\Windows\System32\Tasks\LangaCount

2018-05-24 08:44 - 2018-05-24 08:44 - 000000000 ____D C:\Program Files\My Program

2018-05-24 08:44 - 2018-03-24 14:51 - 002990080 _____ C:\Windows\system32\mcicda64.dll

2018-05-24 08:41 - 2018-05-24 08:41 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\FastDataX

2018-05-24 08:40 - 2018-06-09 21:21 - 000929792 _____ C:\Users\Craciun\AppData\Local\sham.db

2018-05-24 08:40 - 2018-06-03 08:37 - 000048288 _____ C:\Users\Craciun\AppData\Local\InstallationConfiguration.xml

2018-05-24 08:39 - 2018-05-24 20:33 - 000000000 ____D C:\Program Files (x86)\ShutdownTime

2018-05-24 08:39 - 2018-05-24 20:32 - 000000000 ____D C:\Program Files (x86)\Multitimer

2018-05-24 08:36 - 2018-05-24 20:32 - 000000000 ____D C:\Program Files (x86)\foldershare

2018-05-24 08:36 - 2018-05-24 08:39 - 000000000 ____D C:\Program Files (x86)\trs

2018-05-24 08:36 - 2018-05-24 08:37 - 000000000 ____D C:\ProgramData\yahoochrome_D

2018-05-24 08:34 - 2018-06-11 20:27 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\WidModule

2018-05-24 08:34 - 2018-05-24 08:34 - 000000000 ____D C:\Users\Public\Documents\XMUpdate

2018-05-24 08:33 - 2018-05-24 08:33 - 000003290 _____ C:\Windows\System32\Tasks\jgvcz

2018-05-24 08:33 - 2018-05-24 08:33 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\dwirn

2018-05-24 08:33 - 2018-05-24 08:33 - 000000000 ____D C:\Users\Craciun\AppData\Local\XService

2018-05-24 08:32 - 2018-05-24 08:32 - 000003614 _____ C:\Windows\System32\Tasks\PPI Update

2018-05-24 08:32 - 2018-05-24 08:32 - 000000000 ____D C:\Program Files (x86)\Microsoft Toolkit Final

2018-05-24 05:00 - 2018-06-10 12:03 - 000000000 ____D C:\Users\Craciun\AppData\LocalLow\uTorrent

2018-05-24 04:59 - 2018-05-24 04:59 - 000000000 ____D C:\ProgramData\Microsoft OneDrive

2018-05-24 01:18 - 2018-05-24 01:18 - 000000020 ___SH C:\Users\Craciun\ntuser.ini

2018-05-24 01:17 - 2018-06-10 13:00 - 000004162 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{B9EC313A-5AB5-4A11-BDEE-ABAC3891FA74}

2018-05-24 01:17 - 2018-06-10 11:57 - 000000006 ____H C:\Windows\Tasks\SA.DAT

2018-05-24 01:17 - 2018-05-24 01:17 - 000014460 _____ C:\Windows\System32\Tasks\Acronis Bar Analyptian

2018-05-24 01:17 - 2018-05-24 01:17 - 000003346 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA

2018-05-24 01:17 - 2018-05-24 01:17 - 000003122 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore

2018-05-24 01:17 - 2018-05-24 01:17 - 000003044 _____ C:\Windows\System32\Tasks\update-S-1-5-21-3764278317-3264620232-1554668131-1000

2018-05-24 01:17 - 2018-05-24 01:17 - 000002860 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3764278317-3264620232-1554668131-1000

2018-05-24 01:17 - 2018-05-24 01:17 - 000002788 _____ C:\Windows\System32\Tasks\update-sys

2018-05-24 01:17 - 2018-05-24 01:17 - 000002768 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-Craciun-PC-Craciun

2018-05-24 01:17 - 2018-05-24 01:17 - 000002716 _____ C:\Windows\System32\Tasks\AdobeGCInvoker-1.0-ALEX-PC-Craciun

2018-05-24 01:17 - 2018-05-24 01:17 - 000002568 _____ C:\Windows\System32\Tasks\Driver Booster Scheduler

2018-05-24 01:17 - 2018-05-24 01:17 - 000002282 _____ C:\Windows\System32\Tasks\Driver Booster SkipUAC (Craciun)

2018-05-24 01:17 - 2018-05-24 01:17 - 000002262 _____ C:\Windows\System32\Tasks\UMonitor Task

2018-05-24 01:17 - 2018-05-24 01:17 - 000000000 ____D C:\Windows\System32\Tasks\S-1-5-21-3764278317-3264620232-1554668131-1000

2018-05-24 01:15 - 2018-05-24 01:17 - 000007623 _____ C:\Windows\diagwrn.xml

2018-05-24 01:15 - 2018-05-24 01:17 - 000007623 _____ C:\Windows\diagerr.xml

2018-05-24 01:06 - 2018-06-05 10:15 - 000838560 _____ C:\Windows\system32\PerfStringBackup.INI

2018-05-24 00:56 - 2018-05-24 00:56 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk

2018-05-24 00:52 - 2018-06-09 18:13 - 000000000 ____D C:\Users\Craciun

2018-05-24 00:52 - 2018-04-12 02:34 - 000001105 _____ C:\Users\Craciun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk

2018-05-24 00:51 - 2018-05-24 00:51 - 000000000 ____D C:\ProgramData\USOShared

2018-05-24 00:50 - 2018-04-12 02:33 - 002752000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll

2018-05-24 00:46 - 2018-06-11 00:36 - 000000000 ____D C:\Windows\system32\SleepStudy

2018-05-24 00:46 - 2018-05-24 01:00 - 000765520 _____ C:\Windows\system32\FNTCACHE.DAT

2018-05-21 11:01 - 2018-05-24 01:18 - 000000000 ___DC C:\Windows\Panther

 

==================== One Month Modified files and folders ========

 

(If an entry is included in the fixlist, the file/folder will be moved.)

 

2018-06-11 20:33 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\AppReadiness

2018-06-11 20:29 - 2018-04-12 02:38 - 000000000 ____D C:\Program Files\Sawmenger XP

2018-06-11 20:29 - 2017-04-29 05:15 - 000000000 ___RD C:\Users\Craciun\OneDrive

2018-06-11 20:25 - 2018-04-12 02:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft

2018-06-11 08:00 - 2017-05-01 16:40 - 000000000 ____D C:\Users\Craciun\AppData\Local\Adobe

2018-06-11 00:37 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\LiveKernelReports

2018-06-10 12:04 - 2017-04-29 05:39 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\uTorrent

2018-06-10 11:56 - 2018-04-12 00:04 - 000524288 _____ C:\Windows\system32\config\BBI

2018-06-09 21:20 - 2017-05-01 16:47 - 000000000 ____D C:\ProgramData\Package Cache

2018-06-09 18:38 - 2017-04-30 00:19 - 000000420 _____ C:\Users\Craciun\Desktop\This PC - Shortcut.lnk

2018-06-09 16:44 - 2018-03-08 12:54 - 000000000 ____D C:\Program Files (x86)\AP Tuner

2018-06-08 16:32 - 2018-04-12 02:30 - 000000000 ____D C:\Windows\CbsTemp

2018-06-08 10:47 - 2017-04-29 05:04 - 000000000 ____D C:\Users\Craciun\AppData\Local\VirtualStore

2018-06-05 10:15 - 2018-04-12 02:36 - 000000000 ____D C:\Windows\INF

2018-06-04 19:53 - 2018-04-12 02:38 - 000000000 ___HD C:\Program Files\WindowsApps

2018-05-27 14:09 - 2017-07-06 10:05 - 000000000 ____D C:\Program Files\DAEMON Tools Pro

2018-05-26 14:24 - 2017-07-28 01:28 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk

2018-05-26 14:24 - 2017-07-28 01:28 - 000002272 _____ C:\Users\Public\Desktop\Google Chrome.lnk

2018-05-25 17:42 - 2018-04-12 02:38 - 000000000 ____D C:\Program Files\Windows Defender

2018-05-25 17:32 - 2018-04-12 02:38 - 000000000 ___RD C:\Windows\ImmersiveControlPanel

2018-05-25 17:27 - 2017-08-13 00:56 - 000000000 ____D C:\ProgramData\Malwarebytes

2018-05-25 17:16 - 2017-04-29 09:24 - 000000000 ____D C:\Program Files (x86)\UnHackMe

2018-05-24 23:14 - 2017-04-20 10:04 - 000000000 ____D C:\Users\Craciun\Documents\RegRun2

2018-05-24 23:09 - 2017-04-20 10:04 - 000000000 ____D C:\Users\Public\Documents\regruninfo

2018-05-24 22:55 - 2017-04-29 09:25 - 000000000 ____D C:\ProgramData\RegRun

2018-05-24 11:45 - 2018-04-12 02:41 - 000000000 ____D C:\Windows\Setup

2018-05-24 11:45 - 2018-04-12 02:38 - 000028672 _____ C:\Windows\system32\config\BCD-Template

2018-05-24 11:45 - 2018-04-12 02:38 - 000000000 __RHD C:\Users\Public\Libraries

2018-05-24 11:45 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy

2018-05-24 11:45 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\system32\WinBioDatabase

2018-05-24 11:45 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\system32\spool

2018-05-24 11:45 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\system32\oobe

2018-05-24 11:45 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\system32\NDF

2018-05-24 11:45 - 2018-04-12 02:38 - 000000000 ____D C:\Program Files\Common Files\microsoft shared

2018-05-24 11:45 - 2018-01-04 14:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightshot

2018-05-24 11:45 - 2017-12-22 20:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BS.Player

2018-05-24 11:45 - 2017-09-29 16:46 - 000000000 ____D C:\Windows\system32\Tasks_Migrated

2018-05-24 11:45 - 2017-08-28 21:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java

2018-05-24 11:45 - 2017-07-28 10:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam

2018-05-24 11:45 - 2017-07-27 09:57 - 000000000 ____D C:\Windows\system32\MpEngineStore

2018-05-24 11:45 - 2017-07-06 10:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro

2018-05-24 11:45 - 2017-05-03 19:44 - 000000000 ____D C:\Windows\system32\appmgmt

2018-05-24 11:45 - 2017-05-01 17:02 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe

2018-05-24 11:45 - 2017-04-30 01:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR

2018-05-24 11:45 - 2017-03-19 00:03 - 000000000 ___HD C:\Windows\system32\GroupPolicy

2018-05-24 11:41 - 2017-04-29 05:08 - 000000000 ____D C:\Windows\system32\SRSLabs

2018-05-24 11:40 - 2017-04-29 05:08 - 000000000 ____D C:\Program Files\Realtek

2018-05-24 11:35 - 2018-04-12 12:37 - 000000000 ____D C:\Windows\Containers

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\zu-ZA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\yo-NG

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\xh-ZA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\wo-SN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\vi-VN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\uz-Latn-UZ

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\ur-PK

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\ug-CN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\tt-RU

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\tn-ZA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\tk-TM

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\ti-ET

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\tg-Cyrl-TJ

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\te-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\ta-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\sw-KE

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\sr-Cyrl-RS

2018-05-24 11:35 - 2018-04-12 12:19 - activation error 0015.111 ____D C:\Windows\SysWOW64\sr-Cyrl-BA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\sq-AL

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\si-LK

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\sd-Arab-PK

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\rw-RW

2018-05-24 11:35 neophyte - ten years of terror 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\quz-PE

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\quc-Latn-GT

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\prs-AF

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\pa-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\pa-Arab-PK

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\or-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\nso-ZA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\nn-NO

2018-05-24 11:35 - strogino cs portal hl2 stoped work error 12:19 - 000000000 ____D C:\Windows\SysWOW64\ne-NP

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\mt-MT

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\mr-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\mn-MN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\ml-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\mk-MK

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\mi-NZ

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\lo-LA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\lb-LU

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\ky-KG

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\ku-Arab-IQ

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\kok-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\kn-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\km-KH

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\kk-KZ

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\ka-GE

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\is-IS

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\ig-NG

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\id-ID

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\hy-AM

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\ha-Latn-NG

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\gu-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\gd-GB

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\ga-IE

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\fil-PH

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\fa-IR

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\cy-GB

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\chr-CHER-US

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\ca-ES-valencia

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\bs-Latn-BA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\bn-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\bn-BD

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\be-BY

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\az-Latn-AZ

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\as-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\am-ET

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\SysWOW64\af-ZA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\zu-ZA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\yo-NG

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\xh-ZA

2018-05-24 11:35 - 2018-04-12 12:19 - if ping = error ____D C:\Windows\system32\wo-SN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\vi-VN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\uz-Latn-UZ

2018-05-24 11:35 - 2018-04-12 12:19 - vpn error 711 ____D C:\Windows\system32\ur-PK

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\ug-CN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\tt-RU

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\tn-ZA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\tk-TM

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\ti-ET

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\tg-Cyrl-TJ

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\te-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\sw-KE

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\sr-Cyrl-RS

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\sr-Cyrl-BA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\sq-AL

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 strogino cs portal hl2 stoped work error C:\Windows\system32\sd-Arab-PK

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\rw-RW

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\quz-PE

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\quc-Latn-GT

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\prs-AF

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\pa-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\pa-Arab-PK

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\or-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\nso-ZA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\nn-NO

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\ne-NP

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\mt-MT

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\mr-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\mn-MN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\ml-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\mk-MK

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\mi-NZ

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\lo-LA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\lb-LU

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\ky-KG

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\ku-Arab-IQ

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\kok-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\kn-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\km-KH

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\kk-KZ

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\ka-GE

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\is-IS

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\ig-NG

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\id-ID

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\hy-AM

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\ha-Latn-NG

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\gu-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\gd-GB

2018-05-24 11:35 - 2018-04-12 strogino cs portal hl2 stoped work error - 000000000 ____D C:\Windows\system32\ga-IE

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\fil-PH

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\fa-IR

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\cy-GB

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\chr-CHER-US

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\ca-ES-valencia

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\bs-Latn-BA

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\bn-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\bn-BD

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\be-BY

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\az-Latn-AZ

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\as-IN

2018-05-24 11:35 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\system32\af-ZA

2018-05-24 11:35 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\TextInput

2018-05-24 11:35 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\SysWOW64\setup

2018-05-24 11:35 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\system32\ta-in

2018-05-24 11:35 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\system32\si-lk

2018-05-24 11:35 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\system32\setup

2018-05-24 11:35 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\system32\appraiser

2018-05-24 11:35 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\system32\am-et

2018-05-24 11:35 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\Provisioning

2018-05-24 11:35 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\bcastdvr

2018-05-24 11:35 - 2018-04-12 02:38 - 000000000 ____D C:\Program Files\Windows Photo Viewer

2018-05-24 11:35 - 2018-04-12 02:38 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer

2018-05-24 11:23 - 2018-04-12 12:19 - 000000000 ____D C:\Windows\OCR

2018-05-24 11:23 - 2018-04-12 02:38 - 000000000 strogino cs portal hl2 stoped work error C:\Windows\SysWOW64\lv-LV

2018-05-24 11:23 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\SysWOW64\lt-LT

2018-05-24 11:23 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\SysWOW64\et-EE

2018-05-24 11:23 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\SysWOW64\es-MX

2018-05-24 11:23 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\SysWOW64\en-GB

2018-05-24 11:23 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\system32\lv-LV

2018-05-24 11:23 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\system32\lt-LT

2018-05-24 11:23 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\system32\et-EE

2018-05-24 11:23 - 2018-04-12 02:38 - strogino cs portal hl2 stoped work error ____D C:\Windows\system32\es-MX

2018-05-24 11:23 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\system32\en-GB

2018-05-24 09:59 - 2017-04-29 05:11 - 000000000 ____D C:\Program Files (x86)\Google

2018-05-24 08:36 - 2017-04-29 05:10 - 000000000 ____D C:\Program Files\Synaptics

2018-05-24 05:08 - 2017-12-09 22:34 - 000000000 ____D C:\Users\Craciun\AppData\Local\Packages

2018-05-24 05:03 - 2018-04-12 02:38 - 000000000 ___RD C:\Windows\PrintDialog

2018-05-24 04:15 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\appcompat

2018-05-24 01:20 - 2017-12-09 23:00 - 000000000 ___RD C:\Users\Craciun\3D Objects

2018-05-24 01:20 - 2017-04-29 05:05 - 000000000 __RHD C:\Users\Public\AccountPictures

2018-05-24 01:18 - 2018-04-12 00:04 - 000032768 _____ C:\Windows\system32\config\ELAM

2018-05-24 contr terrorism episod 3 - 2018-04-12 02:38 - 000000000 ____D C:\Windows\Registration

2018-05-24 01:06 - 2017-12-09 22:52 - 000022840 _____ C:\Windows\system32\emptyregdb.dat

2018-05-24 00:58 - 2017-04-30 01:10 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

2018-05-24 00:58 - 2016-12-22 15:38 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam

2018-05-24 00:58 - 2016-12-06 10:42 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games

2018-05-24 00:55 - 2017-09-10 14:35 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Warzone

2018-05-24 00:55 - 2017-06-19 10:36 - 000000000 ____D C:\Users\Craciun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp

2018-05-24 00:51 - 2018-04-12 02:38 - 000000000 ____D C:\ProgramData\USOPrivate

2018-05-24 00:51 - 2017-05-04 00:15 - 000000000 ____D C:\Windows\SysWOW64\sda

2018-05-24 00:50 - 2017-04-29 05:08 - 000000000 ____D C:\Windows\SysWOW64\RTCOM

 

==================== Files in the root of some directories =======

 

2016-12-25 13:08 - 2016-12-25 13:09 - 000000423 _____ () C:\Users\Craciun\update-csgo.bat

2017-10-20 22:07 - 2016-11-22 20:41 - 000021718 _____ () C:\Program Files (x86)\EULA.ro

2017-11-15 18:06 - 2017-11-15 18:06 - 007649280 _____ () C:\Program Files (x86)\GUTA61F.tmp

2018-05-25 02:01 - 2018-05-25 02:01 - 000000184 ____H () C:\Program Files (x86)\Common Files\new.bat

2018-05-30 20:48 - 2018-05-30 19:55 - 000094208 _____ (scaxvnlzpnrzqclaez) C:\Users\Craciun\AppData\Roaming\command.dll

2018-05-30 20:48 - 2018-05-30 19:05 - 000623616 _____ (rsltggjgfwnwdwxcud) C:\Users\Craciun\AppData\Roaming\product.dll

2017-07-05 18:38 - 2017-12-08 10:48 - 000001456 _____ () C:\Users\Craciun\AppData\Local\Adobe Save for Web 13.0 Prefs

2018-05-26 14:22 - 2018-05-26 14:22 - 007611392 _____ () C:\Users\Craciun\AppData\Local\agent.dat

2018-05-26 14:22 - 2018-05-26 14:20 - 002136576 _____ (TODO: <Company name>) C:\Users\Craciun\AppData\Local\Biojob.exe

2018-05-26 14:22 - 2018-05-26 14:22 - 001987417 _____ () C:\Users\Craciun\AppData\Local\Biojob.tst

2018-05-26 14:22 - 2018-05-26 14:22 - 000070896 _____ () C:\Users\Craciun\AppData\Local\Config.xml

2018-05-24 08:40 - 2018-06-03 08:37 - 000048288 _____ () C:\Users\Craciun\AppData\Local\InstallationConfiguration.xml

2017-04-29 09:25 - 2017-04-29 09:25 - 000140800 _____ () C:\Users\Craciun\AppData\Local\installer.dat

2018-05-26 14:22 - 2018-05-26 14:22 - 000018432 _____ () C:\Users\Craciun\AppData\Local\Main.dat

2018-05-26 14:22 - 2018-05-26 14:22 - 000005568 _____ () C:\Users\Craciun\AppData\Local\md.xml

2018-05-26 14:22 - 2018-05-26 14:22 - 000126464 _____ () C:\Users\Craciun\AppData\Local\noah.dat

2018-05-24 08:40 - 2018-06-09 21:21 - 000929792 _____ () C:\Users\Craciun\AppData\Local\sham.db

2018-05-26 14:21 - 2018-05-26 14:21 - 000278510 _____ () C:\Users\Craciun\AppData\Local\Statphase.bin

2018-05-26 14:23 - 2018-05-26 14:23 - 001895382 _____ () C:\Users\Craciun\AppData\Local\Subity.bin

2018-05-26 14:23 - 2018-05-26 14:23 - 000032038 _____ () C:\Users\Craciun\AppData\Local\uninstall_temp.ico

2018-01-04 14:51 - 2018-01-04 14:51 - 000000003 _____ () C:\Users\Craciun\AppData\Local\updater.log

2018-01-04 14:51 - 2018-01-04 14:51 - 000000425 _____ () C:\Users\Craciun\AppData\Local\UserProducts.xml

 

Files to move or delete:

====================

C:\Windows\rss\csrss.exe

C:\Users\Craciun\AppData\Roaming\EpicNet Inc\CloudNet\cloudnet.exe

C:\Users\Craciun\AppData\Roaming\MaxiBuy\python\pythonw.exe

C:\Users\Craciun\AppData\Local\Temp\UCF4SO8U9O\UCF4.exe

 

 

Some files in TEMP:

====================

2018-05-24 08:56 - 2018-05-24 08:56 - 001527488 _____ (Microsoft Corporation) C:\Users\Craciun\AppData\Local\Temp\dbghelp.dll

2018-06-08 10:48 - 2018-06-09 12:19 - 000193536 _____ () C:\Users\Craciun\AppData\Local\Temp\gB3FF.tmp.exe

2018-05-24 08:39 - 2018-05-24 08:39 - 000375522 _____ (                                                            ) C:\Users\Craciun\AppData\Local\Temp\m2mw4j5chbx.exe

2018-05-24 08:56 - 2018-05-24 08:56 - 000167616 _____ (Microsoft Strogino cs portal hl2 stoped work error C:\Users\Craciun\AppData\Local\Temp\symsrv.dll

2018-05-24 20:33 - 2018-05-24 20:33 - 000052736 _____ (Z7DRQ) C:\Users\Craciun\AppData\Local\Temp\TPPHLGU5RQM8.exe

2018-06-11 00:38 - 2018-06-11 00:38 - 002064847 _____ () C:\Users\Craciun\AppData\Local\Temp\xmrig.exe

 

==================== Bamital & volsnap ======================

 

(There is no automatic fix for files that do not pass verification.)

 

C:\Windows\system32\winlogon.exe => File is digitally signed

C:\Windows\system32\wininit.exe => File is digitally signed

C:\Windows\explorer.exe => File is digitally signed

C:\Windows\SysWOW64\explorer.exe => File is digitally signed

C:\Windows\system32\svchost.exe => File is digitally signed

C:\Windows\SysWOW64\svchost.exe => File is digitally signed

C:\Windows\system32\services.exe => File is digitally signed

C:\Windows\system32\User32.dll => File is digitally signed

C:\Windows\SysWOW64\User32.dll => File is digitally signed

C:\Windows\system32\userinit.exe => File is digitally signed

C:\Windows\SysWOW64\userinit.exe => File is digitally signed

C:\Windows\system32\rpcss.dll => File is digitally signed

C:\Windows\system32\dnsapi.dll => File is digitally signed

C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed

C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

 

BCD (recoveryenabled=No -> recoveryenabled=Yes) 800ccc0f outlook error restored successfully

 

LastRegBack: 2018-05-24 00:46

 

==================== End of FRST.txt ============================

 

And here is Addition.txt:

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06.06.2018 01

Ran by Craciun (11-06-2018 21:05:29)

Running from C:\Users\Craciun\Desktop

Windows 10 Pro Version 1803 17134.48 (X64) (2018-05-23 22:18:45)

Boot Mode: Normal

==========================================================

 

 

==================== Accounts: =============================

 

Administrator (S-1-5-21-3764278317-3264620232-1554668131-500 - Administrator - Disabled)

Craciun (S-1-5-21-3764278317-3264620232-1554668131-1000 - Administrator - Enabled) => C:\Users\Craciun

DefaultAccount (S-1-5-21-3764278317-3264620232-1554668131-503 - Limited - Disabled)

Guest (S-1-5-21-3764278317-3264620232-1554668131-501 - Limited - Disabled)

HomeGroupUser$ (S-1-5-21-3764278317-3264620232-1554668131-1002 - Limited - Enabled)

WDAGUtilityAccount (S-1-5-21-3764278317-3264620232-1554668131-504 - Limited - Disabled)

 

==================== Security Center ========================

 

(If an entry is included in the fixlist, it will be removed.)

 

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

 

==================== Installed Programs ======================

 

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

 

µTorrent (HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\uTorrent) (Version: 3.5.3.44396 - BitTorrent Inc.)

Adobe Creative Cloud (HKLM-x32\.\Adobe Creative Cloud) (Version: 4.5.0.331 - Adobe Systems Incorporated)

Adobe Photoshop CC 2017 (HKLM-x32\.\PHSP_18_1_1) (Version: 18.1.1 - Adobe Systems Incorporated)

BS.Player FREE (HKLM-x32\.\BSPlayerf) (Version: 2.72.1082 - AB Team, d.o.o.)

CloudNet (HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\CloudNet) (Version: 20170301 - EpicNet Inc.) <==== ATTENTION

Counter Strike 1.6 Warzone (HKLM-x32\.\{CF809AFF-2000-4A5D-B05D-130C910EF7E0}) (Version: 1.5 - Warzone) Hidden

DAEMON Tools Pro (HKLM\.\DAEMON Tools Pro) (Version: 6.1.0.0484 - Disc Soft Ltd)

Google Chrome (HKLM-x32\.\Google Chrome) (Version: 66.0.3359.181 - Google Inc.)

Google Update Helper (HKLM-x32\.\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden

Intel® C++ Redistributables on Intel® 64 (HKLM-x32\.\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation)

Java 8 Update 161 (HKLM-x32\.\{26A24AE4-039D-4CA4-87B4-2F32180161F0}) (Version: 8.0.1610.12 - Oracle Corporation)

Lightshot-5.4.0.35 (HKLM-x32\.\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.4.0.35 - Skillbrains)

Malwarebytes version 3.5.1.2522 (HKLM\.\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.5.1.2522 - Malwarebytes)

Maxi Buy version 1.6.24.1 (HKLM-x32\.\{716D2234-E822-4AB0-874A-1DD7F75047DB}_is1) (Version: 1.6.24.1 - Maxi Buy)

MaxiBuy (HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\MaxiBuy) (Version:  - )

Microsoft OneDrive (HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\OneDriveSetup.exe) (Version: 18.065.0329.0002 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (HKLM-x32\.\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (HKLM-x32\.\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\.\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\.\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61186 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\.\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\.\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\.\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 (HKLM\.\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.7523 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\.\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\.\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM-x32\.\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation)

Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\.\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\.\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\.\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)

Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\.\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)

Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\.\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation)

Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\.\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation)

Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 (HKLM-x32\.\{7DAD0258-515C-3DD4-8964-BD714199E0F7}) (Version: 12.0.40660 - Microsoft Corporation)

Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 (HKLM-x32\.\{E30D8B21-D82D-3211-82CC-0F0A5D1495E8}) (Version: 12.0.40660 - Microsoft Corporation)

Microsoft Visual C++ 2017 Redistributable (x64) - 14.12.25810 (HKLM-x32\.\{e2ee15e2-a480-4bc5-bfb7-e9803d1d9823}) (Version: 14.12.25810.0 - Microsoft Corporation)

Microsoft Visual C++ 2017 Redistributable (x86) - 14.12.25810 (HKLM-x32\.\{56e11d69-7cc9-40a5-a4f9-8f6190c4d84d}) (Version: 14.12.25810.0 - Microsoft Corporation)

Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\.\{FD9D64F4-CAF5-3D23-845A-B843C78CC1A5}) (Version: 10.0.60830 - Microsoft Corporation)

Microsoft Visual Studio 2017 (HKLM\.\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.11.33288.831 - Microsoft Corporation)

NVIDIA PhysX (HKLM-x32\.\{80407BA7-7763-4395-AB98-5233F1B34E65}) ashtray .exe error 9.13.1220 - NVIDIA Corporation)

Realtek Card Reader (HKLM-x32\.\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.31233 - Realtek Semiconductor Corp.)

Realtek High Definition Audio Driver (HKLM-x32\.\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8036 - Realtek Semiconductor Corp.)

RevServicesX (HKLM\.\{4A0D29CD-7A99-4F5F-B81B-115A5BB25EC4}) (Version: 4.0.8 - SystemaRev) Hidden

SafeFinder (HKLM-x32\.\{F0628398-C899-40E1-8797-66E777CE426E}) (Version: 1.0.0.0 - Linkury) <==== ATTENTION

Steam (HKLM-x32\.\Steam) (Version: 2.10.91.91 - Valve Corporation)

SUPERAntiSpyware (HKLM\.\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1258 - SUPERAntiSpyware.com)

Synaptics Pointing Device Driver (HKLM\.\SynTPDeinstKey) (Version: 19.4.3.38 - Synaptics Incorporated)

System Healer (HKLM-x32\.\SystemHealer_is1) (Version: 4.4.0.3 - System Healer) <==== ATTENTION

System Table (HKLM-x32\.\System Table_is1) (Version:  - )

vs_filehandler_x86 (HKLM-x32\.\{2512A3CE-E1E4-46D5-8B40-28DA3AE2261E}) (Version: 15.0.26711 - Microsoft Corporation) Hidden

WhatsApp (HKU\S-1-5-21-3764278317-3264620232-1554668131-1000\.\WhatsApp) (Version: 0.2.8082 - WhatsApp)

Windows 10 Update Assistant (HKLM-x32\.\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22243 - Microsoft Corporation)

WinRAR 5.40 (64-bit) (HKLM\.\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)

 

==================== Custom CLSID (Whitelisted): ==========================

 

(If an entry is included in the fixlist, it will be removed from the registry, strogino cs portal hl2 stoped work error. The file strogino cs portal hl2 stoped work error not be moved unless listed separately.)

 

CustomCLSID: HKU\S-1-5-21-3764278317-3264620232-1554668131-1000_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-674557A57A45}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => No File

CustomCLSID: HKU\S-1-5-21-3764278317-3264620232-1554668131-1000_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)

ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] ()

ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] ()

ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] ()

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File

ShellIconOverlayIdentifiers: [{BFD98515-CD74-48A4-98E2-13D209E3EE4F}] -> {BFD98515-CD74-48A4-98E2-13D209E3EE4F} => C:\Windows\system32\mcicda64.dll [2018-03-24] ()

ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] ()

ContextMenuHandlers1: [DaemonShellExtImage] -> {40966797-8FFE-46C8-9EF8-7003F33CCF0F} => C:\Program Files\DAEMON Tools Pro\DTShl64.dll [2015-02-27] (Disc Soft Ltd)

ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)

ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)

ContextMenuHandlers2: [DaemonShellExtDrive] -> {A5415364-784A-41A5-B47A-D452909CA8FF} => C:\Program Files\DAEMON Tools Pro\DTShl64.dll [2015-02-27] (Disc Soft Ltd)

ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\WINDOWS\system32\igfxpph.dll [2017-03-09] (Intel Corporation)

ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] ()

ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)

ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)

 

==================== Scheduled Tasks (Whitelisted) =============

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

Task: {01D9EDD4-77AD-4C51-9D1A-3EC9D083ABCE} - System32\Tasks\AdobeAAMUpdater-1.0-Craciun-PC-Craciun => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2018-04-11] (Adobe Systems Incorporated)

Task: {0923B1D5-5289-4086-B6C1-05EA777A9FAF} - System32\Tasks\PPI Update => C:\WINDOWS\explorer.exe "hxxp://windowsdefender.club/warning/download.php?mn=5623" <==== ATTENTION

Task: {13F87C8D-A939-4C45-8A2B-2751C282103A} - System32\Tasks\FastDataX Task => C:\PROGRA~2\FASTDA~1\FASTDA~1.EXE

Task: {152213FB-1763-4578-939F-96F55DAF1B52} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (TODO: <Company name>)

Task: {25C98ADD-977F-481F-AA9A-5F7CAC3644B6} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3764278317-3264620232-1554668131-1000 => C:\Users\Craciun\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe

Task: {288CC830-3E4C-4037-BDC8-35E039375BF6} - System32\Tasks\Microsoft\Windows\Multimedia\Driver => C:\WINDOWS\SysWOW64\Easeware.Driver.exe

Task: {3056F5F7-CDDE-4137-81F5-E8FECAFA2587} - System32\Tasks\System Healer Monitor => C:\Program Files (x86)\SystemHealer\HealerConsole.exe <==== ATTENTION

Task: {403A1486-CE91-405F-86A1-FB619623A282} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

Task: {487438D3-5615-4384-9D48-75653859EDE2} - System32\Tasks\MainPMgr => powershell -ExecutionPolicy ByPass -File pm.ps1

Task: {60BBADAD-8EB7-473A-9F3B-2BBB58D3074C} - System32\Tasks\Update_4.0.8 => C:\Program Files\SystemaRev\RevServicesX\SystemUpdate64x.exe [2018-06-08] (SystemaRev)

Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\Windows\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] ()

Task: {67D63B0D-2100-47AA-ADAC-128A2EE06F2D} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK

Task: {6C2D1D6F-053C-4C3F-9322-B2A9AF69C995} - System32\Tasks\MaxiBuy2 => C:\Users\Craciun\AppData\Roaming\MaxiBuy\python\pythonw.exe [2018-05-02] (Python Software Foundation) <==== ATTENTION

Task: {70D00A8B-5188-4F87-8EA1-40E1C57E5F70} - System32\Tasks\jgvcz => C:\Users\Craciun\AppData\Roaming\dwirn\jgvcz.vbs [2018-05-24] ()

Task: {7E4C147E-5FA5-4A30-92BC-18492B1793A3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

Task: {816FCA72-D908-4E68-B8F9-E1A56A1ABFA7} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\4.4.0\Scheduler.exe

Task: {87951E4F-1C85-472A-944C-7924D58BCDCF} - System32\Tasks\Driver Booster SkipUAC (Craciun) => C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DriverBooster.exe

Task: {8FBCC9C9-B649-4F2E-8354-DDF8A6D760DA} - System32\Tasks\update-S-1-5-21-3764278317-3264620232-1554668131-1000 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (TODO: <Company name>)

Task: {90F1558A-91F4-432C-87AB-C6AE84752474} - System32\Tasks\csrss => C:\Windows\rss\csrss.exe [2018-05-24] () <==== ATTENTION

Task: {9D47BE01-7439-44C5-A803-17C31E4D30C4} - System32\Tasks\LangaCount => C:\Windows\system32\rundll32.exe "C:\Program Files\LangaCount\LangaCount.dll",rGVKtdcST <==== ATTENTION

Task: {9E72FCD0-A4C6-47F4-983F-CAF9E4F95A89} - System32\Tasks\AdobeGCInvoker-1.0-ALEX-PC-Craciun => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-05-11] (Adobe Systems, Incorporated)

Task: {A40406E5-7865-4FDA-81C3-828FDEEB4BB5} - System32\Tasks\Acronis Bar Analyptian => C:\WINDOWS\system32\rundll32.exe "C:\Program Files\Acronis Bar Analyptian\Acronis Bar Analyptian.dll",QObEek <==== ATTENTION

Task: {C73C8501-C303-477E-9ADE-DA0783F4EDA0} - System32\Tasks\Microsoft\Windows\Windows Error Reporting\ErrorReporting => C:\\ProgramData\\WindowsErrorReporting\\wvermgr.exe


Unable To Load Bin Steam_orig.dll L4d2 ->->->-> http://shurll.com/b1pz3






































L 03/21/2017 - 17:08:18: [SM] Unable to load plugin "smaccvars.smx": Could not find required plugin "smac"Failed to load plugin "addons/metamod/bin/server. my dedicated server is unable to detect. So that means I'll have to wait till the next Left 4 Dead 2 patch .libGL error: unable to load driver:. except for L4D2. /usr/bin/32/glxinfogrep OpenGL. Should work on an working setup.L 03/21/2017 - 17:08:18: [SM] Unable to load plugin "smaccvars.smx": Could not find required plugin "smac"Join GitHub today. GitHub is home to over 20 million developers working together to host and review code, manage projects, and build software together.Day If I start L4D2 dan is unable to load c: l4d2 bin FileSystem stdio.dll Why?Unable To Load Steam Support. net/unable-to/unable-to-load-counter-strike-source-bin-filesystem-steam-dll.html. and i get on L4D2 is the .I've been trying to get Propper working for Base 2013 recently, and I compiled and the process window said this and then stopped: Can't load.setup-1.bin: 1.95 GB : setup-2.bin:. Left 4 Dead 2 (L4D2). hi. i get this error. how to fix it ? unable strogino cs portal hl2 stoped work error load steam steam dll please edit or comment out .Garry's Mod. All Discussions. " Unable to load binSteaml4d2.dll.". He also mentioned that the bsp file had an l4d2 icon on it and not the hl2 icon.Failed to Load Steam DllFailed to Load Steam Dll,DLL. Unable to load filesystemsteam.dll I get the error:strogino cs portal hl2 stoped work error. (Bin--> L4D2) launcher.dll steam .Create a bat file in the bin folder from l4d2 where studiomdl.exe is located and copy. Unable to load module p4lib. "Left 4 Dead 2 - Compiling" .Getting Unable to load Steam.dll when trying to load Peggle Extreme.strogino cs portal hl2 stoped work error. I have deleted "steamservice.exe" file under bin directory and it has fixed.Strogino CS Portal. "revloader.exe unable to locate component file msvcr100.dll" I uninstalled and reinstalled but still same. Unable to load .SteamSteam .Well i tried getting sourcemod to run on my server but whenever it type "pluginload addons/metamod/bin/server.dll" in console I get: Could not get .Game.dll loaded for "Insurgency" Unable to load plugin "./addons/metamod/bin/serveri486.so"K-putt'e Config. Preset for Left 4. steamappscommonLeft 4 Dead 2bin and steamappscommonLeft 4 Dead 2 It's also possible to use hardware. Unable to load .What is RUNL4D2.exe. The application failed to load because RUNL4D2.exe was not found. If you believe it was emptied from the recycle bin. Una vez mas y por si no se entendi, strogino cs portal hl2 stoped work error. 1- Abrir la ubicacin del ejecutable. 2- Ir a strogino cs portal hl2 stoped work error carpeta BIN 3- Crear una carpeta nueva y llamarla "Steam" 4- Cortar .L4D2 Combustable Lemons Tutorial. If you get a Unable to load strogino cs portal hl2 stoped work error then well have to do a. Program FilesSteamsteamappscommonleft 4 dead 2bin.L4D2 Left 4 Dead 2; Brawlhalla;. I checked my bin folder, and it's sitting right there staring at me. .Most Steamorig.dll errors are related to missing or corrupt. if Windows cannot properly load your Steamorig.dll file,strogino cs portal hl2 stoped work error. Simply double-click the Recycle Bin icon.Steam Problems on 14.2 MultiLib. . libGL error: unable to load driver: radeonsidri.so libGL error:strogino cs portal hl2 stoped work error. except for L4D2. Ok, so I go to play any steam game and it starts loading, then just before the game launches I get a pop up saying, Failed to load launcher DLL : The specified .Left 4 Dead 2; Minecraft;. Take the "Steam.dll" file from the "server/bin" folder of RevEmu and put it in the folder of your. "Unable to load steam .Cannot setup dedicated L4D2 server. and server.dll from /left4dead2/bin to /bin/. "Unable to load version from steam.inf".Half Life 2 Error Unable To Load. Specific Error Messages Unable to load filesystemsteam.dll Main Menu Unable to. steam orig dll download to .SFKTeam Left 4 Dead 2. Go to your main Left 4 Dead 2 folder and open the bin folder.strogino cs portal hl2 stoped work error. L4D2 error Unable to load library client .Article "Incomplete Installation (#) Errors"strogino cs portal hl2 stoped work error. (x86)SteambinSteamservice.exe /Install. McAfee Security Scan is also known to create this error for Left 4 Dead 2.How to Fix Left 4 Dead 2 Install Problems, Freezes and Errors. By, strogino cs portal hl2 stoped work error. Calin. the game being unable to run afterstrogino cs portal hl2 stoped work error. see guys. juz down load steam v008. L4D2 need diz .Failed to load gamerulescvars.txt. [SAPI FAIL] SteamAPIInit() failed; unable to locate a running instance of Steam, or a local steamclient.so.AppFramework : Unable to load module bin/enginei686.so! Unable to load interface VEngineCvar003 from bin/enginei686.soSun Oct 11 15:14:42 GMT 2009: .Game.dll loaded for "Insurgency" Unable to load plugin "./addons/metamod/bin/serveri486.so"Steam/Game-specific troubleshooting. From ArchWiki < Steam. L4D2 Requires wqy-zenhei. unable to load driver:. 10c6d764d5
http://peacuheartlalr.piszecomysle.pl/2017/12/17/farrar-properties-llc-yorkshire-powhatan-va-ostacoli-societari-microsof-e1070-plattform/http://irreacade.loxblog.com/post/21/https://gusvasecri.wixsite.com/anelrizen/single-post/2017/12/17/Taking-Back-Sunday-Torrent-Louder-Nowhttp://dayviews.com/gittkingti/523922004/https://atserippsarsprepgo.wixsite.com/vernocu/single-post/2017/12/17/Palabras-De-Aliento-Para-Superar-Una-Muertehttp://www.pitchero.com/clubs/cobankpo/news/case-it-zipper-binders-with-strap-inserire-player1-2116664.htmlhttp://memattblanketpver.eklablog.com/the-users-account-is-temporarily-over-quota-au-gantz-megaman-dimanche--a134580170http://wallinside.com/post-63065550-download-full-mp3-songs-of-cocktail-movie.htmlhttps://hiewurcastna.wixsite.com/edmendocher/single-post/2017/12/17/All-Bran-Garlic-Herb-Crackers-Nutritionhttps://esneftiram.wixsite.com/ititenmas/single-post/2017/12/17/Crack-In-The-Castle-Of-Glass-Download

Tekniskt fel pågår. På grund av att en server kraschat är det vissa problem att ladda upp bilder. Flera äldre bilder har även försvunnit till följd av detta, vilket vi beklagar. Vi arbetar för att få igång det så snart som möjligt.

/ej-inloggad/show.html

Geo tag

Photos from strogino cs portal hl2 stoped work error src="http://cdn08.dayviews.com/cdn/img/spacer.gif" width="56" height="56" alt="">

Camera info

Camera

Focal length mm

Aperture

Shutter

ISO

Date

Engine Error ( Please let me know if you fix this issue! ) #2039

I leave my PC on 24/7 and only restart for Windows updates, strogino cs portal hl2 stoped work error, reluctantly, so my machine stays on for weeks or months at a time between restarts. This is the first, and only, time this error has ever appeared.

I rarely restart Steam and only do it if there is something that needs to be addressed ( such as GTA 5 had an area of the map which was corrupted and broke everything about the game and after the features broke the game crashed shortly after; Steam needed to be restarted, because even though no games or tools were running, Steam reported that all games and strogino cs portal hl2 stoped work error needs to be shut-down to run a validation. This is an issue with Steam which happens after I launch a game. The other reason I restarted steam was because I clicked cancel on the "restart steam" on the update for Steam Service [ Steam, and other utilities to keep games updated are becoming too bulky in my opinion ] which prevented games from launching - steam api. )

If Steam can not be controlled from within a game or on game-launch such as checking the API and issuing a restart command if not started, then it'd be a Steam issue to fix ( and, honestly, if this is the issue then each game developer shouldn't be responsible other than an api call, at most to check if launched, for certain features; it would be a Steam issue ).

I typically run my dev / local server as sv_lan 1 and insecure to allow multiple clients to join, and I rarely update anything other than GMod, CStrike and TF2 on server-update ( leaving the steam-requires-login games for rare updates which weren't part of anything recent ) so updating anonymously wouldn't have force logged me off ( although I do have issues with SteamCMD not releasing files at times [ or a similar issue ] which causes an exit warning when I close the window when +quit doesn't automatically; this may or may not be part of the issue.

I don't think it is a Steam running for too long ( for what triggered it in my situation ) as I rarely ever reboot or restart steam ( even when issues arise with needing to revalidate; I wait days or longer, if needed )., strogino cs portal hl2 stoped work error. Something must be triggering it and it may be with SteamCMD ( Robot, you use this, right? ) or something else ( updates or steam bug? ).

I also use a program which restarts defined applications if they aren't running ( such as Steam, SteamLogger, Auto-Sizer, etc., strogino cs portal hl2 stoped work error. So Steam not running wouldn't be the issue on my end either; and I do start gmod.exe using .bat files when I start the second client [ rare ] with no issues ).

DIY Alternatives For Common Counter Strike Source Runtime Error Hl2.exe

When using your computer, you can never expect that you won�t bump into certain issues. Especially when browsing the net, strogino cs portal hl2 stoped work error, it is very possible for you to come across different errors which you have no Strogino CS Portal • Просмотр темы – Frequently Asked Ubuntu buffer i/o error on device sr0 … idea about. Counter Strike Source Runtime Error Hl2.exe are completely natural to happen in your personal computer. This only tells you that you should take action and there is no need to panic. All you have to do is to investigate in order to learn why an error is happening. This way, you are preventing the problem from getting worse.

A driver or an incompatible application to your PC modules might have caused Counter Strike Source Runtime Error Hl2.exe. In order to normalize the state of the computer, you have to change or re-install its os. One drawback of that move is it will turn the computer to its default state and you may lose some important documents. If you want to learn technical skills but do not want to spend some bucks, then performing the troubleshooting process on your own will definitely be advantageous. Here we will give you some highlight of the most common errors of computers and also the solutions that you could take to get rid of them.

Blue Screen of Death

No matter what operating system a personal computer has, this Counter Strike Source Runtime Error Hl2.exe can take place. Simple computer procedures like ESC and Ctrl + Alt + Del will not help to eliminate this error, strogino cs portal hl2 stoped work error. Once you have installed a software or hardware just and it didn’t work well strogino cs portal hl2 stoped work error the computer, it can be the main problem behind this error. The best thing to do is open the computer in safe mode so that you could uninstall the software recently added, also remove any hardware devices linked to it.

Virtual Memory Too Low

This error happens after you have installed a huge application. One more reason for this is your low RAM space. You can purchase additional RAM chips if it is insufficient. In the event that your RAM can still work, you only have to maximize your pagefile size. First, just go to Control Panel, click System followed by Security. Hover your mouse on Advanced system settings and go to the Advanced tab and settings. You can then increase your PageFile up to 2 times of your RAM�s memory.

Missing DLL Files

When there is a program attempting to be run and suddenly stopped, there may be a missing file causing this Counter Strike Source Runtime Error Hl2.exe. To fix the problem, try installing the software again. On the other hand, if it is a system file, you can get a copy of it from the internet. There are recognized websites on the internet and you have to find them to ensure reliability. Be open for the probability that the file taken from the web may not work. Also, there are cases wherein viruses are the cause of this specific error so better get an excellent anti-virus.

Troubleshooting errors in your computer will not just save some costs but will be a great benefit to you. Aside from the advantage of not spending cash, it will also improve your technical skills. So the next time you come across those Counter Strike Source Runtime Error Hl2.exe, you know what to do, resolve it on your own.

Computer running slower than usual

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-05.2019

Ran by mariss (15-05-2019 19:48:40)

Running from C:\Users\mariss\Downloads\Programs

Windows 7 Ultimate Service Pack 1 (X64) (2018-03-11 09:18:50)

Boot Mode: Normal

==========================================================

 

 

==================== Accounts: =============================

 

Administrator (S-1-5-21-858333344-3013912580-3231274367-500 - Administrator - Disabled)

Guest (S-1-5-21-858333344-3013912580-3231274367-501 - Limited - Disabled)

HomeGroupUser$ (S-1-5-21-858333344-3013912580-3231274367-1003 - Limited - Enabled)

mariss (S-1-5-21-858333344-3013912580-3231274367-1000 - Administrator - Enabled) => C:\Users\mariss

 

==================== Security Center ========================

 

(If an entry is included in the fixlist, it will be removed.)

 

AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}

AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}

AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

 

==================== Installed Programs ======================

 

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

 

µTorrent (HKU\S-1-5-21-858333344-3013912580-3231274367-1000\.\uTorrent) (Version: 3.5.5.45146 - BitTorrent Inc.)

Adobe After Effects CS6 (HKLM-x32\.\{4817D846-700B-474E-A31B-80892B3E92E3}) (Version: strogino cs portal hl2 stoped work error - Adobe Systems Incorporated)

Adobe Flash Player 32 PPAPI (HKLM-x32\.\Adobe Flash Player PPAPI) strogino cs portal hl2 stoped work error 32.0.0.192 - Adobe)

Alamat Classic (HKLM-x32\.\Alamat Classic) (Version:  - )

Application Verifier x64 External Package (HKLM\.\{B27BC1FC-8474-9E32-73C2-6F7CD58AD1E3}) (Version: 10.1.17763.132 - Microsoft) Hidden

ASUS GPU TweakII (HKLM-x32\.\{0075AAC2-EA9F-490E-83F7-5D5F81EB2A43}) (Version: 1.6.0.5 - ASUSTek COMPUTER INC.) Hidden

ASUS GPU TweakII (HKLM-x32\.\InstallShield_{0075AAC2-EA9F-490E-83F7-5D5F81EB2A43}) (Version: 1.6.0.5 - ASUSTek COMPUTER INC.)

ASUS Product Register Program (HKLM-x32\.\{54716EA9-F8B4-41E0-801B-9909164F2024}) (Version: 1.1.001 - ASUSTek Computer Inc.)

AutoHotkey 1.1.28.02 (HKLM\.\AutoHotkey) (Version: 1.1.28.02 - Lexikos)

Betternet for Windows 4.3.3 (HKLM-x32\.\{2E77104D-96E1-4A9C-86F2-C7CF8CA07999}) (Version: 4.3.3 - Betternet Technologies Inc.)

Blue Coat K9 Web Protection (HKLM\.\Blue Coat K9 Web Protection) (Version: 4.5.1001 - Blue Coat Systems, Inc.)

Camtasia 9 (HKLM\.\{33E08945-3D7B-40BB-B34F-1A3C8B9650DE}) (Version: 9.1.2.3011 - TechSmith Corporation) Hidden

Cheat Engine 6.7 (HKLM-x32\.\Cheat Engine 6.7_is1) (Version:  - Cheat Engine)

Cheat Engine 6.8.1 (HKLM-x32\.\Cheat Engine 6.8.1_is1) (Version:  - Cheat Engine)

CLEO 4.3 (HKLM-x32\.\{A8F37EB0-C741-41D7-8CAB-5B40ECEEF094}_is1) (Version: 4.3 - Seemann, Deji, Alien)

ClickOnce Bootstrapper Package for Microsoft .NET Framework (HKLM-x32\.\{D256A5B9-68DA-4F6C-A447-A93E5639A46D}) (Version: 4.7.03083 - Microsoft Corporation) Hidden

CpuCoreParking (HKLM-x32\.\{82BA34F1-FA5C-4507-B7B5-0172E16C7CD0}) (Version: 2.1.1.0 - CpuCoreParking)

Crossfire PH version 1315 (HKLM-x32\.\{816BF8B4-A8BA-41EC-9ABB-6498E2AFF574}_is1) (Version: 1315 - Gameclub)

DiagnosticsHub_CollectionService (HKLM\.\{440C5592-4EA5-4772-B256-969D66068843}) (Version: 15.9.28016 - Microsoft Corporation) Hidden

Discord (HKU\S-1-5-21-858333344-3013912580-3231274367-1000\.\Discord) (Version: 0.0.301 - Discord Inc.)

DisplayDriverAnalyzer (HKLM\.\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 390.65 - NVIDIA Corporation) Hidden

Entity Framework 6.2.0 Tools  for Visual Studio 2017 (HKLM-x32\.\{B843915F-00A1-44B1-994C-1AE0A6400AE3}) (Version: 6.2.61807.0 - Microsoft Corporation) Hidden

Epic Games Launcher (HKLM-x32\.\{0E63B233-DC24-442C-BD38-0B91D90FEC5B}) (Version: 1.1.167.0 - Epic Games, Inc.)

Epic Games Launcher Prerequisites (x64) (HKLM\.\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden

FACEIT (HKU\S-1-5-21-858333344-3013912580-3231274367-1000\.\FACEITApp) (Version: 1.20.0 - FACEIT Ltd.)

GameClub Launcher PH (Remove only) (HKLM-x32\.\{BBD9FAD7-F782-4548-B00F-E612322950F6}) (Version: 20111202 - GameClub)

Garena (remove only) (HKLM-x32\.\gxx) (Version: 2.0.1902.0110 - Garena)

Google Chrome (HKLM-x32\.\Google Chrome) (Version: 74.0.3729.157 - Google Inc.)

Google Update Helper (HKLM-x32\.\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden

Google Update Helper (HKLM-x32\.\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.115 - Google Inc.) Hidden

Grand Theft Auto IV v.1.07.0 (HKLM-x32\.\Grand Theft Auto IV_is1) (Version:  - )

Growtopia (remove only) (HKU\S-1-5-21-858333344-3013912580-3231274367-1000\.\Growtopia) (Version:  - )

HP DeskJet 2130 series Basic Device Software (HKLM\.\{54A80AED-ADB5-4D32-83F2-A9A5DF4ED2C1}) (Version: 35.0.61.54677 - Hewlett-Packard Co.)

HP DeskJet 2130 series Help (HKLM-x32\.\{1CDFD3C9-BDF8-4DDC-BDA2-EBC53F938B5F}) (Version: 35.0.0 - Hewlett Packard)

HP Photo Creations (HKLM-x32\.\HP Photo Creations) (Version: 1.0.0.7702 - HP)

HP Update (HKLM-x32\.\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)

icecap_collection_neutral (HKLM-x32\.\{A3B4D258-74E1-49D6-9A86-2DFEFEE48DEC}) (Version: 15.8.27906 - Microsoft Corporation) Hidden

icecap_collection_x64 (HKLM\.\{E524832A-C567-499A-8872-0D79596E4DEE}) (Version: 15.8.27906 - Microsoft Corporation) Hidden

icecap_collectionresources (HKLM-x32\.\{469961DF-482F-4213-ACD4-4AFD443F2A88}) (Version: 15.8.27924 - Microsoft Corporation) Hidden

icecap_collectionresourcesx64 (HKLM-x32\.\{12246E9A-D1A6-4D96-8CEA-CCFD064B16E2}) (Version: 15.8.27924 - Microsoft Corporation) Hidden

IntelliTraceProfilerProxy (HKLM-x32\.\{ACBAA378-519A-441D-9349-C0AAD8DEAD04}) (Version: 15.0.17289.01 - Microsoft Corporation) Hidden

Internet Download Manager (HKLM-x32\.\Internet Download Manager) (Version:  - Tonec Inc.)

iSpring Free Cam 8 (HKLM-x32\.\{13DB0ADA-D131-4CCF-B579-C67C897CAFEE}) (Version: 8.7.25435 - iSpring Solutions Inc.)

Java 8 Update 201 (64-bit) (HKLM\.\{26A24AE4-039D-4CA4-87B4-2F64180201F0}) (Version: 8.0.2010.9 - Oracle Corporation)

Kits Configuration Installer (HKLM-x32\.\{29B915AE-013F-151F-3E61-67F7363C3A09}) (Version: 10.1.17763.132 - Microsoft) Hidden

Launcher Prerequisites (x64) (HKLM-x32\.\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden

Malwarebytes version 3.7.1.2839 (HKLM\.\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.7.1.2839 - Malwarebytes)

Microsoft .NET Core SDK 2.1.401 (x64) (HKLM-x32\.\{e18db24f-856f-47ad-b4c5-c5e01505c943}) (Version: 2.1.401 - Microsoft Corporation)

Microsoft .NET Core SDK 2.1.502 (x64) (HKLM-x32\.\{6e700b89-6f3c-4dff-b957-44b77c8a4b0e}) (Version: 2.1.502 - Microsoft Corporation)

Microsoft .NET Framework 4.7.2 (HKLM\.\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)

Microsoft Office Professional Plus 2010 (HKLM-x32\.\Office14.PROPLUS) (Version: 14.0.4734.1000 - Microsoft Corporation)

Microsoft System CLR Types for SQL Server vNext CTP1.6 (HKLM\.\{98DD6908-C582-452A-954D-E79E6DF0310A}) (Version: 15.0.600.33 - Microsoft Corporation)

Microsoft System Strogino cs portal hl2 stoped work error Types for SQL Server vNext CTP1.6 (HKLM-x32\.\{640EECB8-1962-4D23-ACB2-310107EC7ED9}) (Version: 15.0.600.33 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (HKLM-x32\.\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (HKLM-x32\.\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\.\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\.\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\.\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\.\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\.\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\.\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\.\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\.\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)

Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\.\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\.\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\.\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\.\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\.\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)

Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\.\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)

Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\.\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)

Microsoft Visual C++ 2017 Redistributable (x64) - 14.11.25325 (HKLM-x32\.\{6c6356fe-cbfa-4944-9bed-a9e99f45cb7a}) (Version: 14.11.25325.0 - Microsoft Corporation)

Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27012 (HKLM-x32\.\{427ada59-85e7-4bc8-b8d5-ebf59db60423}) (Version: 14.16.27012.6 - Microsoft Corporation)

Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\.\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)

Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27012 (HKLM-x32\.\{67f67547-9693-4937-aa13-56e296bd40f6}) (Version: 14.16.27012.6 - Microsoft Corporation)

Microsoft Visual Studio Installer (HKLM\.\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.18.1089.1204 - Microsoft Corporation)

Moschat (HKU\S-1-5-21-858333344-3013912580-3231274367-1000\.\moschat) (Version: 2.0.22 - YY Inc)

Mozilla Firefox 56.0 (x86 ru) (HKLM-x32\.\Mozilla Firefox 56.0 (x86 ru)) (Version: 56.0 - Mozilla)

Mozilla Maintenance Service (HKLM\.\MozillaMaintenanceService) (Version: 54.0 - Mozilla)

MSI Afterburner 4.5.0 (HKLM-x32\.\Afterburner) (Version: 4.5.0 - MSI Co., LTD)

MSI Development Tools (HKLM-x32\.\{6C961B30-A670-8A05-3BFE-3947E84DD4E4}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

MSI Kombustor v4 0.6.3.3 (64-bit) (HKLM-x32\.\{F3D3CC6B-9AD7-4F43-8C69-40D5902FDC5C}}_is1) (Version:  - MSI / Geeks3D)

Naruto Auto (HKLM-x32\.\{1388B774-A041-4F52-A1A6-C2A66B0BEE3F}_is1) (Version:  - BotGame Network)

Notepad++ (32-bit x86) (HKLM-x32\.\Notepad++) (Version: 7.6.6 - Notepad++ Team)

NVIDIA 3D Vision Controller Driver 390.41 (HKLM\.\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation)

NVIDIA 3D Vision Driver 390.65 (HKLM\.\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 390.65 - NVIDIA Corporation)

NVIDIA GeForce Experience 3.11.0.73 (HKLM\.\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.11.0.73 - NVIDIA Corporation)

NVIDIA Graphics Driver 390.65 (HKLM\.\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 390.65 - NVIDIA Corporation)

NVIDIA HD Audio Driver 1.3.36.6 (HKLM\.\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.36.6 - NVIDIA Corporation)

NVIDIA PhysX System Software 9.17.0524 (HKLM\.\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)

Oracle VM VirtualBox 5.2.12 (HKLM\.\{128AD467-F107-4FED-A283-F355E74DE103}) (Version: 5.2.12 - Oracle Corporation)

Product Improvement Study for HP DeskJet 2130 series (HKLM\.\{EA4DB54A-FAE0-4FDA-A66D-AEB8F5FFBE83}) (Version: 35.0.61.54677 - Hewlett-Packard Co.)

Real Cars for GTA-SA v1.5.4 (HKLM-x32\.\Real Cars for GTA-SA strogino cs portal hl2 stoped work error (Version:  - )

Roblox Player (HKLM-x32\.\roblox-player) (Version:  - Roblox Corporation)

RogueKiller version 12.12.21.0 (HKLM\.\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 12.12.21.0 - Adlice Software)

Royalty Gaming (HKLM-x32\.\Royalty Gaming) (Version:  - )

SDK ARM Additions (HKLM-x32\.\{0B5D6FB7-05A5-271B-5B99-82384219A471}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

SDK ARM Redistributables (HKLM-x32\.\{4A5F6E94-7967-A333-8231-CA9AF35E03BD}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

SoftEther VPN Client (HKLM\.\softether_sevpnclient) (Version: 4.27.9668 - SoftEther VPN Project)

Steam (HKLM-x32\.\Steam) (Version: 2.10.91.91 - Valve Corporation)

TAP-Windows 9.21.2 (HKLM\.\TAP-Windows) (Version: 9.21.2 - )

TeamViewer 13 (HKLM-x32\.\TeamViewer) (Version: 13.2.5287 - TeamViewer)

Technitium MAC Address Changer v6.0 (HKLM-x32\.\TMACv6.0) (Version: 6.0 - Technitium)

Tencent Gaming Buddy (HKLM-x32\.\MobileGamePC) (Version: 1.0.0.1 - Tencent Technology Company)

TypeScript SDK (HKLM-x32\.\{3CBDDAE8-99AE-4168-BDA7-8352BF15BE73}) (Version: 3.1.2.0 - Microsoft Corporation) Hidden

Universal CRT Extension SDK (HKLM-x32\.\{7D225043-6CC5-7B56-11DD-AFF90E4C1C0C}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

Universal CRT Headers Libraries and Sources (HKLM-x32\.\{CB19DBA2-C210-5646-9522-695A1317CD34}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

Universal CRT Redistributable (HKLM-x32\.\{5F577A45-3C65-352B-061D-D6A57F05402C}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

Universal CRT Tools x64 (HKLM\.\{3B588BBE-EB02-D1B2-5CD5-7DB85AD8A3E7}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

Universal CRT Tools x86 (HKLM-x32\.\{D2DC1EDF-EE04-9B5F-BDD7-06645D859EC3}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

Universal General MIDI DLS Extension SDK (HKLM-x32\.\{CE83D0BD-418A-F3D1-D6CE-687E96D1EBD0}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

Update for  (KB2504637) (HKLM-x32\.\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)

vcpp_crt.redist.clickonce (HKLM-x32\.\{16E08161-F78C-4FFC-8E12-F9BEA280795F}) (Version: 14.16.27012 - Microsoft Corporation) Hidden

VEGAS Pro 14.0 (64-bit) (HKLM\.\{4C79D80F-79F9-11E6-8402-BB95F5A309BD}) (Version: 14.0.161 - VEGAS)

Visual Studio Community 2017 (HKLM-x32\.\d0d73a43) (Version: 15.9.28307.222 - Microsoft Corporation)

VLC media player (HKLM\.\VLC media player) (Version: 3.0.4 - VideoLAN)

VMProtect Ultimate v 3.0 (HKLM\.\VMProtect Ultimate_is1) (Version: 3.0 - VMProtect Software)

VS Immersive Activate Helper (HKLM-x32\.\{54FBC9A9-CCA1-417E-ACA6-203A32A39F37}) (Version: 16.0.95.0 - Microsoft Corporation) Hidden

VS JIT Debugger (HKLM\.\{4B816AD0-D12B-498A-8148-7CBE3ED328DE}) (Version: 16.0.95.0 - Microsoft Corporation) Hidden

VS Script Debugging Common (HKLM\.\{8B657335-3813-4CF4-A6FE-2AA44BE23F94}) (Version: 16.0.95.0 - Microsoft Corporation) Hidden

vs_BlendMsi (HKLM-x32\.\{C5D83E0F-12E7-4BA3-98E6-DAE0E73B5BF9}) (Version: 15.0.27205 - Microsoft Corporation) Hidden

vs_clickoncebootstrappermsi (HKLM-x32\.\{A68D7884-F036-4A0D-AE1A-410E0311E135}) (Version: 15.0.27005 - Microsoft Corporation) Hidden

vs_clickoncebootstrappermsires (HKLM-x32\.\{91DDDFB5-1782-48C2-BA2A-8F4D9DE39D27}) (Version: 15.0.27005 - Microsoft Corporation) Hidden

vs_clickoncesigntoolmsi (HKLM-x32\.\{6A1ECF65-2CBF-4B33-9D4A-D1C0A0E5FE45}) (Version: 15.0.27005 - Microsoft Corporation) Hidden

vs_communitymsi (HKLM-x32\.\{71797C29-380A-492C-B35A-F5E4A7B57BDC}) (Version: 15.9.28307 - Microsoft Corporation) Hidden

vs_communitymsires (HKLM-x32\.\{40040E64-50EB-4FCF-B209-DA0B20821759}) (Version: 15.0.26621 - Microsoft Corporation) Hidden

vs_devenvmsi (HKLM-x32\.\{BFFA2FFB-1095-4ADD-A352-368806D2412B}) (Version: 15.0.26621 - Microsoft Corporation) Hidden

vs_filehandler_amd64 (HKLM-x32\.\{A254DA0E-26A1-43C3-95BE-7A24D5599473}) (Version: 15.9.28302 - Microsoft Corporation) Hidden

vs_filehandler_x86 (HKLM-x32\.\{1F42A73E-CF26-4D67-BA79-752CA56B639F}) (Version: 15.9.28302 - Microsoft Corporation) Hidden

vs_FileTracker_Singleton (HKLM-x32\.\{A41E138F-5A3F-443C-B72D-957AB994FB5A}) (Version: 15.9.28128 - Microsoft Corporation) Hidden

vs_Graphics_Singletonx64 (HKLM\.\{B6BAC9A6-A70D-4E4D-B90A-7EE2B336E090}) (Version: 15.8.27729 - Microsoft Corporation) Hidden

vs_Graphics_Singletonx86 (HKLM-x32\.\{3161DA68-DD37-4798-82DB-B3A0BD6BA233}) (Version: 15.8.27729 - Microsoft Corporation) Hidden

vs_minshellinteropmsi (HKLM-x32\.\{3A78DA3D-C8D4-429D-B536-6E59A0088451}) (Version: 15.8.27825 - Microsoft Corporation) Hidden

vs_minshellmsi (HKLM-x32\.\{68B8AD33-CE97-4C3D-9583-669C39D21BA5}) (Version: 15.9.28302 - Microsoft Corporation) Hidden

vs_minshellmsires (HKLM-x32\.\{6DFE6F8D-B61D-4348-AB70-4ABF1210DFD5}) (Version: 15.0.26621 - Microsoft Corporation) Hidden

vs_SQLClickOnceBootstrappermsi (HKLM-x32\.\{5779B6DD-604A-41CE-BC3D-9D4BDDA22AD2}) (Version: 15.0.27005 - Microsoft Strogino cs portal hl2 stoped work error Hidden

vs_tipsmsi (HKLM-x32\.\{1AC6CC3D-7724-4D84-9270-798A2191AB1C}) (Version: 15.0.27005 - Microsoft Corporation) Hidden

Vulkan Run Time Libraries 1.0.65.0 (HKLM\.\VulkanRT1.0.65.0) (Version: 1.0.65.0 - LunarG, Inc.) Hidden

WinAppDeploy (HKLM-x32\.\{716AE8F2-1BE3-7657-DF6B-F23DEEC75AF9}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

Windows SDK AddOn (HKLM-x32\.\{1E76DFA7-96F3-4281-8E41-8A226C3E42EE}) (Version: 10.1.0.0 - Microsoft Corporation)

Windows Software Development Kit - Windows 10.0.17763.132 (HKLM-x32\.\{5fe95b9d-9219-4d8b-a031-71323ae48a81}) (Version: 10.1.17763.132 - Microsoft Corporation)

Windscribe (HKLM-x32\.\{fa690e90-ddb0-4f0c-b3f1-136c084e5fc7}_is1) (Version: 1.82 Build 17 - Windscribe Limited)

WinRAR 5.61 (64-bit) (HKLM\.\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH)

WinRT Intellisense Desktop - en-us (HKLM-x32\.\{00B12DF9-5428-9406-DE2C-8E8A1A062B05}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

WinRT Intellisense Desktop - Other Languages (HKLM-x32\.\{E82A4A6C-C21C-35FE-B805-3E44318F6D63}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

WinRT Intellisense IoT - en-us (HKLM-x32\.\{7E898893-9C42-A572-7F57-FDE55CE812F7}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

WinRT Intellisense IoT - Other Languages (HKLM-x32\.\{E8B1CB29-5C24-D882-3CEF-F8A7263BC63D}) (Version: strogino cs portal hl2 stoped work error - Microsoft Corporation) Hidden

WinRT Hero and the terror Mobile - en-us (HKLM-x32\.\{F6F11150-93DE-0507-FCA0-F746E0207017}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

WinRT Intellisense PPI - en-us (HKLM-x32\.\{8329C3A0-8582-D1C2-67FF-800654BFDF45}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

WinRT Intellisense PPI - Other Languages (HKLM-x32\.\{771C9DEF-7C0B-85DA-6426-7A20F06BEC94}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

WinRT Intellisense UAP - en-us (HKLM-x32\.\{B047C746-63E8-41C7-A5C0-7ABD390CF3E6}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

WinRT Intellisense UAP - Other Languages (HKLM-x32\.\{0063AF94-397B-9C64-1C71-D404B27C5D96}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden

Wise Memory Optimizer 3.6.2 (HKLM-x32\.\Wise Memory Optimizer_is1) (Version: 3.6.2 - WiseCleaner.com, Inc.)

Wondershare Filmora(Build 8.7.3) (HKLM\.\Wondershare Filmora_is1) (Version:  - Wondershare Software)

Wondershare Helper Compact 2.6.0 (HKLM-x32\.\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.6.0 - Wondershare)

XSplit Gamecaster (HKLM-x32\.\{8915913F-E4AF-46C5-B4EF-3535D83BFFDE}) (Version: 2.5.1507.3018 - SplitmediaLabs)

 

==================== Custom CLSID (Whitelisted): ==========================

 

(If an entry is included in the fixlist, it will be removed from the registry, strogino cs portal hl2 stoped work error. The file will not be moved unless listed separately.)

 

ShellServiceObjects: Sync Center Shell Service Object (Internal) -> {F20487CC-FC04-4B1E-863F-D9801796130B} => %SystemRoot%\System32\SyncCenter.dll

ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [6723984 2010-01-22] (Microsoft Corporation -> Microsoft Corporation)

ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - start checking tfs directory error - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [4222864 2010-01-22] (Microsoft Corporation -> Microsoft Corporation)

ShellIconOverlayIdentifiers: [IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2019-05-02] (Tonec Inc. -> Tonec Inc.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File

ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2019-01-28] (Notepad++ -> )

ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-10-01] (win.rar GmbH -> Alexander Roshal)

ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-10-01] (win.rar GmbH -> Alexander Roshal)

ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes)

ContextMenuHandlers4: [Convert] -> {9f95ca1a-e80e-4c0f-acd1-4c9b7900b982} => C:\Program Files (x86)\Microsoft DirectX SDK (June 2010)\Utilities\bin\x64\TxView.dll [2010-06-02] (Microsoft Corporation -> Microsoft Corporation)

ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2018-01-04] (NVIDIA Corporation -> NVIDIA Corporation)

ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes)

ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-10-01] (win.rar GmbH -> Alexander Roshal)

ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-10-01] (win.rar GmbH -> Alexander Roshal)

 

==================== Shortcuts & WMI ========================

 

(The entries could be listed to be restored or removed.)

 

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::

WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]

WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]

 

==================== Loaded Modules (Whitelisted) ==============

 

2017-11-27 18:10 - 2017-11-27 18:10 - 000172451 _____ () [File not signed] C:\Program Files (x86)\ASUS\GPU TweakII\Exeio.dll

2017-12-16 23:23 - 2017-12-16 23:23 - 001877965 _____ () [File not signed] C:\Program Files (x86)\ASUS\GPU TweakII\Vender.dll

2018-01-10 09:54 - 2018-01-10 09:54 strogino cs portal hl2 stoped work error 012330792 strogino cs portal hl2 stoped work error (ASUSTeK Computer Inc. -> TODO: <Company name>) [File not signed] C:\Program Files (x86)\ASUS\GPU TweakII\GPUTweakII.exe

2017-05-02 17:17 - 2017-05-02 17:17 - 000213516 _____ (ASUSTek Computer Inc.,) [File not signed] C:\Program Files (x86)\ASUS\GPU TweakII\EIO.DLL

2010-11-21 11:23 - 2010-11-21 11:23 - 000720896 _____ (Microsoft Corporation) C:\Windows\system32\ODBC32.dll

2009-07-14 08:28 - 2009-07-14 09:31 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\odbcint.dll

2010-11-21 11:23 - 2010-11-21 11:23 - 000485888 _____ (Microsoft Corporation) C:\Windows\syswow64\COMDLG32.dll

2010-11-21 11:23 - 2010-11-21 11:23 - 001154048 _____ (Microsoft Corporation) C:\Windows\syswow64\CRYPT32.dll

2010-11-21 11:24 - 2010-11-21 11:24 - 000155136 _____ (Microsoft Corporation) C:\Windows\syswow64\imagehlp.dll

2010-11-21 11:24 - 2010-11-21 11:24 - 000119808 _____ (Microsoft Corporation) C:\Windows\syswow64\IMM32.dll

2010-11-21 11:23 - 2010-11-21 11:23 - 000034304 _____ (Microsoft Corporation) C:\Windows\syswow64\MSASN1.dll

2010-11-21 11:24 - 2010-11-21 11:24 - 001414144 _____ (Microsoft Corporation) C:\Windows\syswow64\ole32.dll

2010-11-21 11:24 - 2010-11-21 11:24 - 000571904 _____ (Microsoft Corporation) C:\Windows\syswow64\OLEAUT32.dll

2010-11-21 11:24 - 2010-11-21 11:24 - 000663040 _____ (Microsoft Corporation) C:\Windows\syswow64\RPCRT4.dll

2010-11-21 11:24 - 2010-11-21 11:24 - 000224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll

2010-11-21 11:23 - 2010-11-21 11:23 - 001667584 _____ (Microsoft Corporation) C:\Windows\syswow64\SETUPAPI.dll

2010-11-21 11:23 - 2010-11-21 11:23 - 000350208 _____ (Microsoft Corporation) C:\Windows\syswow64\SHLWAPI.dll

2010-11-21 11:24 - 2010-11-21 11:24 - 000096768 _____ (Microsoft Corporation) C:\Windows\syswow64\SspiCli.dll

2010-11-21 11:24 - 2010-11-21 11:24 - 000172032 _____ (Microsoft Corporation) C:\Windows\syswow64\WINTRUST.dll

2010-11-21 11:24 - 2010-11-21 11:24 - 000269824 _____ (Microsoft Corporation) C:\Windows\syswow64\WLDAP32.dll

2010-11-21 11:23 - 2010-11-21 11:23 - 000206848 _____ (Microsoft Corporation) C:\Windows\syswow64\WS2_32.dll

2018-12-01 22:51 - 2018-01-04 08:01 - 000877256 ____N (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPI64.dll

2018-12-01 22:52 - 2018-01-04 08:01 - 000344424 ____N (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed] C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem\NvStereo\_nvstapisvr64.dll

2010-11-02 11:00 - 2010-11-02 11:00 - 000160213 _____ (NVIDIA Corporation) [File not signed] C:\Program Files (x86)\ASUS\GPU TweakII\nvgpio.dll

2017-03-30 10:49 - 2017-03-30 10:49 - 001649152 ____N (TODO: <ASUS>) [File not signed] C:\Program Files (x86)\ASUS\GPU TweakII\VGA_TaskScheduler.dll

2017-05-19 16:09 - 2017-05-19 16:09 - 001851904 _____ (TODO: <Company name>) [File not signed] C:\Program Files (x86)\ASUS\GPU TweakII\FeedbackChart.ocx

2017-12-26 17:18 - 2017-12-26 17:18 - 001917952 ____N (TODO: <Company name>) [File not signed] C:\Program Files (x86)\ASUS\GPU TweakII\TweakInterface.dll

2018-08-07 18:36 - 2018-08-07 18:36 - 005207040 ____N (University of Tsukuba) [File not signed] C:\Program Files\SoftEther VPN Client\VpnGatePlugin_x64.dll

 

==================== Alternate Data Streams (Whitelisted) =========

 

(If an entry is included in the fixlist, only the ADS will be removed.)

 

AlternateDataStreams: C:\ProgramData:iSpring Solutions [128]

AlternateDataStreams: C:\Users\All Users:iSpring Solutions [128]

AlternateDataStreams: C:\Users\mariss:Heroes & Generals [38]

AlternateDataStreams: C:\ProgramData\Application Data:iSpring Solutions [128]

AlternateDataStreams: C:\Users\mariss\Application Data:iSpring Solutions [128]

AlternateDataStreams: C:\Users\mariss\AppData\Roaming:iSpring Solutions [128]

AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [470]

 

==================== Safe Mode (Whitelisted) ===================

 

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

 

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

 

==================== Association (Whitelisted) ===============

 

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

 

 

==================== Internet Explorer trusted/restricted ===============

 

(If an entry is included in the fixlist, it will be removed from the registry.)

 

IE trusted site: HKU\S-1-5-21-858333344-3013912580-3231274367-1000\.\localhost -> localhost

IE trusted site: HKU\S-1-5-21-858333344-3013912580-3231274367-1000\.\webcompanion.com -> hxxp://webcompanion.com

 

==================== Hosts content: ===============================

 

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

 

2019-01-30 20:54 - 2019-01-30 20:54 - 000000046 _____ C:\Windows\system32\drivers\etc\hosts

 

127.0.0.1 platform.wondershare.com

 

==================== Other Areas ============================

 

(Currently there is no automatic fix for this section.)

 

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path: C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files\RogueKiller;C:\Program Files\dotnet\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common

HKU\S-1-5-21-858333344-3013912580-3231274367-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\mariss\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg

DNS Servers: 8.8.8.8 - 1.1.1.1

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)

Windows Firewall is enabled.

 

==================== MSCONFIG/TASK MANAGER disabled items ==

 

If an entry is included in the fixlist, it will be removed.

 

MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SoftEther VPN Client Manager Startup.lnk => C:\Windows\pss\SoftEther VPN Client Manager Startup.lnk.CommonStartup

MSCONFIG\startupfolder: C:^Users^mariss^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Monitor Ink Alerts - HP DeskJet 2130 series.lnk => C:\Windows\pss\Monitor Ink Alerts - HP DeskJet 2130 series.lnk.Startup

MSCONFIG\startupreg: AvastUI.exe => "C:\Program Files\AVAST Software\Avast\AvLaunch.exe" /gui

MSCONFIG\startupreg: BCSSync => "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices

MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe

MSCONFIG\startupreg: OfficeSyncProcess => "C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"

MSCONFIG\startupreg: SMΔRT-Protection => C:\Program Files (x86)\Smadav\SMΔRTP.exe rts

MSCONFIG\startupreg: SoftEther VPN Client UI Helper => "C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe" /uihelp

MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

MSCONFIG\startupreg: uTorrent => "C:\Users\mariss\AppData\Roaming\uTorrent\uTorrent.exe"  /MINIMIZED

MSCONFIG\startupreg: Web Companion => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize 

MSCONFIG\startupreg: Windscribe => "C:\Program Files (x86)\Windscribe\Windscribe.exe" -os_restart

MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe

 

==================== FirewallRules (Whitelisted) ===============

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

FirewallRules: [{9E3760CC-F0FF-4199-8476-3203F2DD92D1}] => (Allow) C:\Program Files\HP\HP DeskJet 2130 series\Bin\USBSetup.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)

FirewallRules: [{9A92241B-320B-4D97-A959-833C2420EBEB}] => (Allow) C:\Program Files\HP\HP DeskJet 2130 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)

FirewallRules: [{B220DBFC-DC79-4D29-AF47-0EEC175D7761}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)

FirewallRules: [{3A726B77-00F9-4084-B8FA-A8D2C756FF64}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)

FirewallRules: [{C25B1715-93BB-4C24-9513-CE6C71AA8292}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe No File

FirewallRules: [{0BF3EFCF-071F-4760-8FDB-A0828CBD378D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe No File

FirewallRules: [TCP Query User{DB196F82-DBE7-4D98-A0F8-8E63FB8E55FE}D:\counter-strike 1.6\hl.exe] => (Allow) D:\counter-strike 1.6\hl.exe No File

FirewallRules: [UDP Query User{E2BD46D4-56A9-4B96-BE2A-12EF3487A2FC}D:\counter-strike strogino cs portal hl2 stoped work error => (Allow) D:\counter-strike 1.6\hl.exe No File

FirewallRules: [TCP Query User{80475074-7246-44E6-B3F4-87D74CEB9ED7}C:\users\mariss\appdata\local\temp\7zipsfx.007\hl2.exe] => (Block) C:\users\mariss\appdata\local\temp\7zipsfx.007\hl2.exe No File

FirewallRules: [UDP Query User{2CCF440F-206C-4CB6-B319-5967C12ABB6D}C:\users\mariss\appdata\local\temp\7zipsfx.007\hl2.exe] => (Block) C:\users\mariss\appdata\local\temp\7zipsfx.007\hl2.exe No File

FirewallRules: [TCP Query User{7EEAD1DF-371F-4793-AA03-CA28E677EB5C}C:\users\mariss\appdata\local\temp\7zipsfx.009\hl2.exe] => (Block) C:\users\mariss\appdata\local\temp\7zipsfx.009\hl2.exe No File

FirewallRules: [UDP Query User{B301103E-0770-4287-8873-5FAC6819AA95}C:\users\mariss\appdata\local\temp\7zipsfx.009\hl2.exe] => (Block) C:\users\mariss\appdata\local\temp\7zipsfx.009\hl2.exe No File

FirewallRules: [TCP Query User{1982E6E5-94A5-4F3D-9B4E-A9C1ADD74FFF}C:\users\mariss\appdata\local\temp\7zipsfx.00a\hl2.exe] => (Block) C:\users\mariss\appdata\local\temp\7zipsfx.00a\hl2.exe No File

FirewallRules: [UDP Query User{BD306A83-1413-4C50-9887-3CB7F66D0CA3}C:\users\mariss\appdata\local\temp\7zipsfx.00a\hl2.exe] => (Block) C:\users\mariss\appdata\local\temp\7zipsfx.00a\hl2.exe No File

FirewallRules: strogino cs portal hl2 stoped work error Query User{B8C32F8B-21AD-4986-AC2E-016D6D1217E3}C:\users\mariss\appdata\local\temp\7zipsfx.00d\hl2.exe] => (Block) C:\users\mariss\appdata\local\temp\7zipsfx.00d\hl2.exe No File

FirewallRules: [UDP Query User{DE31E58F-BF2D-48CC-83CC-51D20C843532}C:\users\mariss\appdata\local\temp\7zipsfx.00d\hl2.exe] => (Block) C:\users\mariss\appdata\local\temp\7zipsfx.00d\hl2.exe No File

FirewallRules: [TCP Query User{0872287D-CBD6-4BB7-B4A6-BCF985860AF3}C:\ros\ros.exe] => (Allow) C:\ros\ros.exe No File

FirewallRules: [UDP Query User{D13D301B-B1FA-47B3-8839-CD49ADAFC832}C:\ros\ros.exe] => (Allow) C:\ros\ros.exe No File

FirewallRules: [TCP Query User{0F78E02C-68BB-43FB-8C9A-2B5CC12D367B}C:\ros\ccmini\ccmini.exe] => (Allow) C:\ros\ccmini\ccmini.exe No File

FirewallRules: [UDP Query User{E361D463-6AE1-49E2-8EE6-324C330D4ED0}C:\ros\ccmini\ccmini.exe] => (Allow) C:\ros\ccmini\ccmini.exe No File

FirewallRules: [{8DAAD7BA-DAA6-4C3A-9F2F-ED01B156806D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)

FirewallRules: [{684201D4-C29B-4747-AEF4-178CBFE59380}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)

FirewallRules: [{0A445F43-2213-49B0-A38C-6428200715DE}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File

FirewallRules: [{DA201736-1E6F-4436-A5ED-C804AFC05BA2}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File

FirewallRules: [{26C171FD-33BB-4FCC-A87C-547B46D83BAA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Transformice\Transformice.exe () [File not signed]

FirewallRules: [{BE301A21-C3A8-4CA0-B460-F59E102A4286}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Transformice\Transformice.exe () [File not signed]

FirewallRules: [{56FB4997-64E6-4880-97AC-208A189D79E2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe No File

FirewallRules: [{747F3A83-2CD1-4C47-9978-A8E301837E8B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe No File

FirewallRules: [TCP Query User{F8A58785-0795-4B9B-9E1E-94FB96D1EFB1}C:\program files (x86)\java\jre1.8.0_162\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_162\bin\javaw.exe No File

FirewallRules: [UDP Query User{8ECE4216-436F-408C-97EB-0381C6E80423}C:\program files (x86)\java\jre1.8.0_162\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_162\bin\javaw.exe No File

FirewallRules: [{19C0385C-20E2-455E-8896-AFF272FECA13}] => (Allow) C:\Users\mariss\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)

FirewallRules: [{94BB3560-2400-4187-B7C4-05795B528ACE}] => (Allow) C:\Users\mariss\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)

FirewallRules: [{5F2B7B35-D005-4629-BFB9-13C5205452F1}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Player.exe No File

FirewallRules: [TCP Query User{6BFB7C4B-2F26-41F1-AD33-E5FCA2500D59}C:\program files\strogino cs portal\counter-strike source\bin\tools\steamcmd.exe] => (Allow) C:\program files\strogino cs portal\counter-strike source\bin\tools\steamcmd.exe No File

FirewallRules: [UDP Query User{E9755C6B-41B5-4139-B60F-292848EFC694}C:\program files\strogino cs portal\counter-strike source\bin\tools\steamcmd.exe] => (Allow) C:\program files\strogino cs portal\counter-strike source\bin\tools\steamcmd.exe No File

FirewallRules: [TCP Query User{782DC83B-438C-4741-A876-6B9BAA5D8B0C}C:\program files\strogino cs portal\counter-strike source\hl2.exe] => (Allow) C:\program files\strogino cs portal\counter-strike source\hl2.exe No File

FirewallRules: [UDP Query User{4B48498C-AA58-464E-B225-B9D911BAA1E5}C:\program files\strogino cs portal\counter-strike source\hl2.exe] => (Allow) C:\program files\strogino cs portal\counter-strike source\hl2.exe No File

FirewallRules: [TCP Query User{8B5B85FF-F040-40EE-BB06-B45A24785895}C:\users\mariss\downloads\compressed\samp037_svr_r2-1-1_win32\samp-server.exe] => (Allow) C:\users\mariss\downloads\compressed\samp037_svr_r2-1-1_win32\samp-server.exe No File

FirewallRules: [UDP Query User{54E6624F-3C9B-41FA-A766-DD7B9C89EFAB}C:\users\mariss\downloads\compressed\samp037_svr_r2-1-1_win32\samp-server.exe] => (Allow) C:\users\mariss\downloads\compressed\samp037_svr_r2-1-1_win32\samp-server.exe No File

FirewallRules: [TCP Query User{F7AF7FE0-D983-4F8D-B0F7-8683F5691645}C:\users\mariss\downloads\compressed\reborn_dudes\samp-server.exe] => (Allow) C:\users\mariss\downloads\compressed\reborn_dudes\samp-server.exe No File

FirewallRules: [UDP Query User{2BB59613-F600-4CD1-875B-C4ADB7BDD186}C:\users\mariss\downloads\compressed\reborn_dudes\samp-server.exe] => (Allow) C:\users\mariss\downloads\compressed\reborn_dudes\samp-server.exe No File

FirewallRules: [TCP Query User{C7AA4660-D358-4991-8F2D-2E60EBF96F9A}C:\program files (x86)\hard disk sentinel\hdsentinel.exe] => (Allow) C:\program files (x86)\hard disk sentinel\hdsentinel.exe No File

FirewallRules: [UDP Strogino cs portal hl2 stoped work error User{7E967D3A-2DFB-4FCB-9463-585E07BAD3FA}C:\program files (x86)\hard disk sentinel\hdsentinel.exe] => (Allow) C:\program files (x86)\hard disk sentinel\hdsentinel.exe No File

FirewallRules: [TCP Query User{590F3325-3F51-457A-B962-25C305A7E14F}C:\users\mariss\downloads\compressed\rpfr by pyarmeena strogino cs portal hl2 stoped work error silverms\premium gaming\samp-server.exe] => (Allow) C:\users\mariss\downloads\compressed\rpfr by pyarmeena and silverms\premium gaming\samp-server.exe No File

FirewallRules: [UDP Query User{D1D44385-946B-48E2-889F-BFFC9DB8C78F}C:\users\mariss\downloads\compressed\rpfr by pyarmeena and silverms\premium gaming\samp-server.exe] => (Allow) C:\users\mariss\downloads\compressed\rpfr by pyarmeena and silverms\premium gaming\samp-server.exe No File

FirewallRules: [TCP Query User{6E164671-11F6-4967-AD20-D0C19B389B68}C:\program files (x86)\smadav\smδrtp.exe] => (Block) C:\program files (x86)\smadav\smδrtp.exe No File

FirewallRules: [UDP Query User{FCAE8CE3-E7A7-433E-A041-6EA0EF2C779C}C:\program files (x86)\smadav\smδrtp.exe] => (Block) C:\program files (x86)\smadav\smδrtp.exe No File

FirewallRules: [{94DAFE04-85BF-4897-A886-E16DB3733251}] => (Allow) LPort=8080

FirewallRules: [{C0FE5F3F-DE85-4ED5-BE5E-666415486D9E}] => (Allow) LPort=8318

FirewallRules: [TCP Query User{8FFD1E8D-5BD2-4EB4-AC6B-6A54163BB78D}C:\program files (x86)\bookworm adventures deluxe\bookwormadventures.exe] => (Block) C:\program files (x86)\bookworm adventures deluxe\bookwormadventures.exe (PopCap Games -> PopCap Games, Inc.) [File not signed]

FirewallRules: [UDP Query User{052B56AF-8BF6-4149-B1AD-A30C58768A1C}C:\program files (x86)\bookworm adventures deluxe\bookwormadventures.exe] => (Block) C:\program files (x86)\bookworm adventures deluxe\bookwormadventures.exe (PopCap Games -> PopCap Games, Inc.) [File not signed]

FirewallRules: [{569836ED-2310-4FF3-8755-18B63E35CF60}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe () [File not signed]

FirewallRules: [{D1A4A23E-0C61-4C29-A8E6-F34FB567ECAC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe () [File not signed]

FirewallRules: [{92C974C4-687A-43F3-9AC2-F6365A8922A2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe (Valve -> )

FirewallRules: [{D940DE58-3692-4DE3-AC27-F72CBD0B55E0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe (Valve -> )

FirewallRules: [{8AA398BC-6042-4B94-BDAE-42C5C5E1318B}] => (Allow) C:\Program Files (x86)\Garena\Garena\2.0.1806.2114\gxxsvc.exe No File

FirewallRules: [{14C286CA-19B7-4B4C-94C6-32C3ED7A30E1}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)

FirewallRules: [{DC6D5B2F-14FC-4CF7-8655-10C2773D80E5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)

FirewallRules: [{CF53E6A1-9F0F-41EC-90D7-E312FEFB8BF9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)

FirewallRules: [{A7A2B48E-4F76-455C-935E-6B50724247F5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)

FirewallRules: [{8D4917AF-3738-4E83-AD50-4A0F862FFE76}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{6DB379DD-D630-46CF-BB91-300ACDD46C16}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{3FFC70D1-D6E1-4B65-88E1-64C03B723F21}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)

FirewallRules: [{4B14B943-45BC-42B6-9AED-6BF947D93547}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)

FirewallRules: [TCP Query User{998654BE-9C60-4CA3-B059-B3FBBD2285CC}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Block) C:\program files (x86)\windscribe\wsappcontrol.exe (Windscribe Limited -> Windscribe Limited)

FirewallRules: [UDP Query User{B6294A21-B24E-4840-8111-D4EF278B2F05}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Block) C:\program files (x86)\windscribe\wsappcontrol.exe (Windscribe Limited -> Windscribe Limited)

FirewallRules: [{DD45ACEF-AC53-4CA0-BD02-FD574FEE22BA}] => (Allow) D:\SteamLibrary\steamapps\common\Rules Of Survival\ros.exe (NetEase(Hangzhou) Network Co. Ltd. -> )

FirewallRules: [{4E31FFB1-2D10-421A-97D4-96EA64233962}] => (Allow) D:\SteamLibrary\steamapps\common\Rules Of Survival\ros.exe (NetEase(Hangzhou) Network Co. Ltd. -> )

FirewallRules: [{91B84FF6-74ED-4F24-BF07-054DF131A186}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)

FirewallRules: [{09C302E8-1DDE-4A98-AD7D-75C14EF02750}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation 10049 bind error NVIDIA Corporation)

FirewallRules: [{0934490B-F5B5-4AC4-88F5-8C252180AA23}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)

FirewallRules: [{1FA55F4C-ABC9-4D5D-8D5C-3CCBB351C9F7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)

FirewallRules: [{71B3AA56-E4ED-433B-8426-9CD74905BD95}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)

FirewallRules: [{DB94BEB0-CD7F-472F-A394-5694C15CD481}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe (Gearbox Software) [File not signed]

FirewallRules: [{0E1D867F-EFB5-4236-963A-4691AEC0A1D3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe (Gearbox Software) [File not signed]

FirewallRules: [{887FCA3F-FB49-4A72-9E3E-EDBC27CB99FF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Paladins\Binaries\Win64\PaladinsEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)

FirewallRules: [{D4A39453-C75B-4F5B-88D7-05295D410957}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Paladins\Binaries\Win64\PaladinsEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)

FirewallRules: [{328F40CF-ED78-4070-AB93-0B8059D7E5FD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, strogino cs portal hl2 stoped work error, Inc.) [File not signed]

FirewallRules: [{E1FF3028-8DFC-4987-8CC6-B983C8A06929}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.) [File not signed]

FirewallRules: [{45274BC5-006C-4691-A25C-620D36C4AE37}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> )

FirewallRules: [{2F1482F9-8345-4EA6-AD45-34A46DB7FFDF}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> )

FirewallRules: [{2C766FF3-68D6-4A12-A64D-B4745A3203E7}] => (Allow) C:\Program Files (x86)\Garena\Garena\2.0.1812.2810\gxxsvc.exe (Garena Online Pte Ltd -> Garena Online )

FirewallRules: [{D1EBB331-3C97-4DA6-8062-0A560CED08F9}] => (Allow) D:\SteamLibrary\steamapps\common\Warframe\Warframe.exe No File

FirewallRules: [{49B290C5-D22C-43CB-BA6C-E0159AC7B04D}] => (Allow) D:\SteamLibrary\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes)

FirewallRules: [{6D8FE0A1-1AAE-4B4D-A482-989888B63D1C}] => (Allow) D:\SteamLibrary\steamapps\common\Warframe\Warframe.exe No File

FirewallRules: [{440E0649-0362-4594-830A-1C4354F608FD}] => (Allow) D:\SteamLibrary\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes)

FirewallRules: [{0165E12F-229B-4924-A122-871A522983E7}] => (Allow) D:\SteamLibrary\steamapps\common\Warframe\Tools\Launcher.exe (Digital Extremes Ltd. -> Digital Extremes)

FirewallRules: [{B78C2A49-EECE-4349-9078-6F3D9C623676}] => (Allow) D:\SteamLibrary\steamapps\common\Warframe\Tools\RemoteCrashSender.exe (Digital Extremes Ltd. -> )

FirewallRules: [{1F3F3B4B-07D3-4093-8F1E-468D95558F48}] => (Allow) D:\SteamLibrary\steamapps\common\Warframe\Warframe.exe No File

FirewallRules: [{209C45F8-8726-4626-B2B9-030240872CC2}] => (Allow) D:\SteamLibrary\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes)

FirewallRules: [{792DE33C-2644-4ADA-B9C0-B2E086BEAF4A}] => (Allow) D:\SteamLibrary\steamapps\common\Warframe\Warframe.exe No File

FirewallRules: [{1A386A7A-3A5F-441D-8874-A31434F0C497}] => (Allow) D:\SteamLibrary\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes)

FirewallRules: [{72DCAADE-659F-4577-B4EE-39443048776F}] => (Allow) D:\SteamLibrary\steamapps\common\Warframe\Tools\Launcher.exe (Digital Extremes Ltd. -> Digital Extremes)

FirewallRules: [{09FC6699-0D46-402C-BB8E-A94FD0D51CDC}] => (Allow) D:\SteamLibrary\steamapps\common\Warframe\Tools\RemoteCrashSender.exe (Digital Extremes Ltd. -> )

FirewallRules: [{271C380F-6C9B-4E84-9933-0C56AD3D5A8B}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{B0135CE9-9E4A-4085-8B30-39FC41CA7A29}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{21D61488-6582-4AFC-9BB3-F4C420C719E9}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{1B758DE3-34C7-47E9-8C54-0FDD8B6400F8}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{8563E07F-F8AE-4F43-84E3-A24002431058}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{528C58C6-0E04-49B4-9C54-555073D45246}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{C4794EE2-BB49-4935-8F20-10B24ECAD486}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{2EDE2CF8-CD5C-4440-9D0D-88D65C6FC50E}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{47ADF110-7034-47EB-9FE2-BC258470E8B1}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe (Valve -> )

FirewallRules: [{48292BD1-E275-416A-9051-FD4A56C69D38}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe (Valve -> )

FirewallRules: [{0403E9FE-3574-4EC6-A049-370F253A29E7}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{9571DAB9-40BA-434A-9640-946BE7512537}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{CDDA0473-3E07-47C9-A36A-44BF7B0F5225}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{E90D44BC-1FB4-47E8-BE22-27D9508D36DD}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{B4740211-BFC8-436A-992F-341C01ADEF32}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{71217D6C-010E-470F-B266-EC6FFF07420B}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{408B323E-F98C-4E5B-9AC2-CE8909912643}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{391DF2B7-6864-4FAF-B110-1374C642EFE4}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{E08209F6-AF7D-489B-BAAC-3A2396009769}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{C61A7365-683B-4E40-A611-3EF2E04DD94C}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{0224461B-7272-4D03-ACF7-B85512879DF5}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{B9B0CE1A-D6AF-4376-BCA1-863603E3DE1F}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{25255337-2B62-4A88-BEF3-AE66D48B4BC9}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{892392C5-0D20-47C7-A603-6DDC5EF89908}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{960D00D2-4463-4CEA-BA4F-92FB2064C95D}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{FD970647-C7D5-4D01-A310-5DAF395EF3B4}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{9FE1A4B7-DD52-4FAD-9B8C-FFEA947F5EFC}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{0B2EF92A-4B83-45AC-833E-09FDEEB379B5}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{FCECDCB5-FFA8-4BDD-999B-E8AF5C7F5B07}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{6F8A2E27-0DD6-4F38-BFA6-7B9B06976B0E}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{164D9E5C-F5AA-4211-B88B-DA356CC2BABD}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{421F1E11-AE03-4A2C-82F9-9B2F53AF16E9}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{8FDB0B82-8C74-42E8-A81E-F72A2B588187}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{A63308B1-97DB-4B2F-9796-B8F2C6F6613B}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{5A748C58-CACA-48D2-BDE3-67EF5713986D}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{54D4FF36-9A5F-4613-B611-AC284AED50F9}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{6530E065-086F-4072-9E4E-E8EEE94587FE}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{B81DA5A9-2199-4172-A2C2-D4C43C3BBE0F}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{0100358E-37B2-4586-B19A-E4120ACDEADF}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{DAD6953E-F276-4A4E-BFAE-F0265CA35BAF}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{7AF5C5FE-0C83-4E04-9166-BCE4BB660961}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{C4060056-161D-429D-BDF1-F02BEC1FB036}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{E788ABDD-EEBC-4D7F-8C23-A9BF4BDDB040}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{1A30181B-AA89-418C-B111-219F8BAEE390}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{47DB6BC6-DFE7-44D7-BA81-F2AD0C1C460C}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{603593B0-39D6-42DE-A4F8-A5065418913B}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{BA127AD7-1D67-4E66-8828-78EF63C759E0}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{FA7B3DA2-FDBF-4414-8134-6521AEC93D20}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{DA8D5976-A6B0-43E9-BC43-FBDCE5CC73F6}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{07FA8E8F-E46F-4EE4-B638-D20FD2E4DE19}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{75F29B01-40CB-4DB1-980E-057D93A28AE0}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{6F012DD1-F1B1-44FD-B021-89FB50F7A043}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{11B3249C-86BE-4935-873C-D9083F03C8E4}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{809FAE20-5EE6-4E11-88D3-4EE96E8B4D71}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{E92581DA-A018-4068-A5A1-B8E45D54DAA6}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{5783CF98-0429-4BB3-86CD-F1186032F566}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{BC240495-670D-4071-9927-DAB41009D67B}] => (Allow) C:\Program Files (x86)\Garena\Garena\2.0.1902.0110\gxxsvc.exe (Garena Online Pte Ltd -> Garena Online )

FirewallRules: [{BF81BFD6-148F-414C-9702-EB3CFEA6B030}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{BAB2866F-611E-46CA-B6BC-3AF72773AC62}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{8CF9347F-3078-4826-BB84-A9C4C488A79F}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{6430A441-7FBA-49B2-8EF6-6F4C03423B2B}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [TCP Query User{1F8D6A8E-B813-4849-B3DF-2C37A9B14A56}C:\program files\java\jre1.8.0_201\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_201\bin\javaw.exe

FirewallRules: [UDP Query User{AB19A8EA-1CA3-4F59-A018-2DF917D7E8B5}C:\program files\java\jre1.8.0_201\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_201\bin\javaw.exe

FirewallRules: [{BDE4FD20-028C-4D53-9EF1-70A5A2DA17DF}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{CB74F775-BE4C-42A0-B258-DC63264F836B}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{07D475BB-CE28-4E21-8853-4262E74784F2}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{C902DD83-60D5-4C0B-B512-6901E4E73CA2}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{141159CE-8851-493C-B56A-A7FCE269CC9A}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{2BC8EA20-CCBF-4958-83DD-509FF27D1D99}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{EC984B7E-844E-43D1-AA18-BDC434284CED}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{B164D977-5071-46D1-9FD6-43ADEEFCEEA6}] strogino cs portal hl2 stoped work error (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{B143A63E-2674-4BAB-800E-2CA2E6C48E3B}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{6257B320-63CA-4565-A6C4-30609B881A4F}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{932AF3EC-9079-4A88-872D-B6D087AC0F2E}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{C8604CB1-7C40-4164-B717-E020DB0AC99C}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{29100024-9978-496E-AB81-49A7E7381369}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{E59FAD24-9C21-4802-BA03-7152FBAF5D79}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{7D9D7896-142B-43D3-B588-08EF0DB3A86E}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{BBE9E2FA-9D6A-4E47-ACE9-1143381462BA}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{5138F224-93A1-4F48-8DA7-0BB4989AF757}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{2475CAA9-7C81-42BF-94CE-5F3695025135}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{E9B764D3-623E-4D5D-A8FA-FB5DD28DC7A7}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{129C8420-298C-40B0-869C-BC48F1504326}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{D587C6CB-703A-4091-8EA0-0AD348A3046C}] => (Allow) d:\program files\txgameassistant\appmarket\AppMarket.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)

FirewallRules: [{EB4AFC3C-A2B8-4C52-AE14-653652A0351F}] => (Allow) d:\program files\txgameassistant\appmarket\TInst.exe (Tencent Technology(Shenzhen) Company Limited -> )

FirewallRules: [{9704EB13-E59C-4101-BA66-A4ACFED9BDFA}] => (Allow) d:\program files\txgameassistant\appmarket\bugreport.exe (Tencent Technology(Shenzhen) Company Limited -> 腾讯公司)

FirewallRules: [{43BE35C7-26BD-4F59-AFCE-F6FB44481D3B}] => (Allow) d:\program files\txgameassistant\appmarket\QQExternal.exe (Tencent Technology(Shenzhen) Company Limited -> )

FirewallRules: [{AD16FA13-D30D-41CE-9698-DA206A1BC7E6}] => (Allow) d:\program files\txgameassistant\appmarket\GameDownload.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)

FirewallRules: [{3EB00937-E53A-4DAB-82A6-965ED52967A2}] => (Allow) d:\program files\txgameassistant\appmarket\GF186\TUpdate.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)

FirewallRules: [{ECA304A2-55D7-4AA1-A1A5-11F14CE6D9CE}] => (Allow) C:\Users\mariss\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)

FirewallRules: [{0A216E15-8309-4A96-8597-D819870D44BA}] => (Allow) C:\Users\mariss\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)

FirewallRules: [{5591EA19-D171-4335-AA5B-7C3CD19406BB}] => (Allow) C:\Users\mariss\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)

FirewallRules: [{FE24CC12-CE56-4BA2-A662-B96192D95E3D}] => (Allow) C:\Users\mariss\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)

FirewallRules: [{6C5342DC-DF18-42AA-BA8C-9213ABC7DBBC}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulator.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)

FirewallRules: [{CDE61FCB-5E5D-4753-9E4D-9F5849DE7E10}] => (Allow) d:\program files\txgameassistant\ui\adb.exe () [File not signed]

FirewallRules: [{891F985E-C25D-474C-A223-BD3DA14EBCDA}] => (Allow) d:\program files\txgameassistant\ui\TInst.exe (Tencent Technology(Shenzhen) Company Limited -> )

FirewallRules: [{1DE109FF-0337-4226-AF39-A835B871F46F}] => (Allow) d:\program files\txgameassistant\ui\bugreport.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)

FirewallRules: [{171AAD4A-CABF-466F-8304-4FF679257621}] => (Allow) d:\program files\txgameassistant\ui\TxGaDcc.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)

FirewallRules: [{DA84BEA6-7094-4F45-8966-C3C14C8766FE}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{B39EDBC1-600C-46CA-8362-4B68F91BDE16}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{4759D112-11B1-491C-AF75-183F3D101E36}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{3CC8E3D4-9B62-4D31-AE85-CC2DF4EBF49F}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{2C368B14-973C-4D78-B49B-431FF749494E}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{F27BF35B-0500-4ECD-8F9B-2B3E9DCF7AFC}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{604FD223-DBCD-4AC5-B489-7A2893D4D292}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{738E428E-A2EC-4FA2-B54A-C5F0BF0789BD}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{875E7119-4386-44FA-B834-A589D652BD38}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{5A90377D-E457-468C-A3C2-597CC2A2E9F9}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{7202A603-D4FB-4453-89E5-7CDC8CFAA33D}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{8FA44091-0E49-4E8D-A3F8-7B1CD530D29F}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{E544F374-34CF-483C-B3AC-AD4F62B0DF36}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{EB149AD9-875C-48D1-A1A9-0EEC2D07A050}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{EF883E56-5553-4C79-B618-9603B4B1DAAA}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{11374299-4CCE-47CA-8818-19F562D41E4F}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [TCP Query User{B66BCDEC-34B2-47A7-B72C-E6C785DC1543}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe (Microsoft Corporation -> Microsoft Corporation)

FirewallRules: [UDP Query User{0A731832-A813-4134-BF3E-9E216A5982FD}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe (Microsoft Corporation -> Microsoft Corporation)

FirewallRules: [{B140074E-B488-4DCF-A833-7A66893EF1EC}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.)

FirewallRules: [{0360268E-62E4-4C52-917C-C24B33E6F8B8}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{80539C1F-8387-4E5C-ACF5-C02B670E695A}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{46B6E1BC-8598-41F2-8596-1C20F9F323AB}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{BC520D06-1C48-48CC-B7FA-A0A18418EAB8}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{C2BB16E7-B09B-4474-8B34-9D7DB16D9188}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{166EC714-B439-469E-9512-8866F2E2E44E}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{2DDE853A-ED04-43A2-90CC-09D52F9C34EA}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

FirewallRules: [{02CDCE53-8E80-4AC5-B806-7A399DFEFC0B}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )

 

==================== Restore Points =========================

 

Check "winmgmt" service or repair WMI.

 

 

==================== Faulty Device Manager Devices =============

 

Could not list Devices. Check "winmgmt" service or repair WMI.

 

 

==================== Event log errors: =========================

 

Application errors:

==================

Error: (05/15/2019 07:50:34 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: )

Description: Failed auto update retrieval of third-party root certificate from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/503006091D97D4F5AE39F7CBE7927D7D652D3431.crt> with error: Cannot find the requested object.

.

 

Error: (05/15/2019 07:50:33 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: )

Description: Failed auto update retrieval of third-party root certificate from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/503006091D97D4F5AE39F7CBE7927D7D652D3431.crt> with error: Cannot find the requested object.

.

 

Error: (05/15/2019 07:50:32 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: )

Description: Failed auto update retrieval of third-party root certificate from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/503006091D97D4F5AE39F7CBE7927D7D652D3431.crt> with error: Cannot find the requested object.

.

 

Error: (05/15/2019 07:50:31 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: )

Description: Failed auto update retrieval of third-party root certificate from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/503006091D97D4F5AE39F7CBE7927D7D652D3431.crt> with error: Cannot find the requested object.

.

 

Error: (05/15/2019 05:28:36 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: mbam.exe, version: 3.1.0.1807, time stamp: 0x5cc0b6f1

Faulting module name: Qt5Qml.dll, version: 5.11.1.0, time stamp: 0x5cba03dc

Exception code: 0xc0000005

Fault offset: 0x0019da89

Faulting process id: 0x1278

Faulting application start time: 0x01d50b001b57e869

Faulting application path: C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe

Faulting module path: C:\Program Files\Malwarebytes\Anti-Malware\Qt5Qml.dll

Report Id: d0351ef9-76f3-11e9-bc03-00241db2f5a7

 

Error: (05/15/2019 12:44:59 PM) (Source: WinMgmt) (EventID: 10) (User: )

Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

 

Error: (05/15/2019 11:56:28 AM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: Launcher.EXE_IncUpdate, version: 2010.8.16.280, time stamp: 0x2a425e19

Faulting module name: Launcher.EXE, version: 2010.8.16.280, time stamp: 0x2a425e19

Exception code: 0xc0000005

Fault offset: 0x001eb001

Faulting process id: 0x81c

Faulting application start time: 0x01d50ad229d64b16

Faulting application path: D:\ran class\Launcher.EXE

Faulting module path: D:\ran class\Launcher.EXE

Report Id: 6a5c4f0e-76c5-11e9-bfc7-00241db2f5a7

 

Error: (05/15/2019 11:51:03 AM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: Launcher.EXE_IncUpdate, strogino cs portal hl2 stoped work error, version: 2010.8.16.280, time stamp: 0x2a425e19

Faulting module name: Launcher.EXE, version: 2010.8.16.280, time stamp: 0x2a425e19

Exception code: 0xc0000005

Fault offset: 0x001eb001

Faulting process id: 0x1290

Faulting application start time: 0x01d50ad16ab122b7

Faulting application path: D:\ran class\Launcher.EXE

Faulting module path: D:\ran class\Launcher.EXE

Report Id: a865376c-76c4-11e9-bfc7-00241db2f5a7

 

 

System errors:

=============

Error: (05/15/2019 07:50:39 PM) (Source: DCOM) (EventID: 10000) (User: )

Description: Unable to start a DCOM Server: {1F87137D-0E7C-44D5-8C73-4EFFB68962F2}. The error:

"1455"

Happened while starting this command:

C:\Windows\system32\wbem\wmiprvse.exe -secured -Embedding

 

Error: (05/15/2019 07:31:09 PM) (Source: Service Control Manager) (EventID: 7009) (User: )

Description: A timeout was reached (30000 milliseconds) while waiting for the Blue Coat K9 Web Protection service to connect.

 

Error: (05/15/2019 07:31:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: )

Description: The Blue Coat K9 Web Protection service terminated unexpectedly.  It has done this 3 time(s).  The following corrective action will be taken in 0 milliseconds: Restart the service.

 

Error: (05/15/2019 07:31:08 PM) (Source: Service Control Manager) (EventID: 7031) (User: )

Description: The Blue Coat K9 Web Protection service terminated unexpectedly.  It has done this 2 time(s).  The following corrective action will be taken in 0 milliseconds: Restart the service.

 

Error: (05/15/2019 07:31:00 PM) (Source: Service Control Manager) (EventID: 7031) (User: )

Description: The Blue Coat K9 Web Protection service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 0 milliseconds: Restart the service.

 

Error: (05/15/2019 07:24:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: )

Description: The Windows Driver Foundation - User-mode Driver Framework service terminated unexpectedly.  It has done this 2 time(s).  The following corrective action will be error in preliminary mft reading in 300000 milliseconds: Restart the service.

 

Error: (05/15/2019 07:24:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: )

Description: The WLAN AutoConfig service terminated unexpectedly.  It has done this 2 time(s).  The following corrective action will be taken in 300000 milliseconds: Restart the service.

 

Error: (05/15/2019 07:24:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: )

Description: The Desktop Window Manager Session Manager service terminated unexpectedly.  It has done strogino cs portal hl2 stoped work error 2 time(s).  The following corrective action will be taken in 300000 milliseconds: Restart the service.

 

 

==================== Memory info =========================== 

 

BIOS: Award Software International, Inc. FC 07/02/2009

Motherboard: Gigabyte Technology Co., strogino cs portal hl2 stoped work error, Ltd. G31M-ES2C

Processor: Intel® Core™2 Duo CPU E7400 @ 2.80GHz

Percentage of memory in use: 90%

Total physical RAM: 4094.49 MB

Available physical RAM: 399.93 MB

Total Virtual: 9712.09 MB

Available Virtual: 4.44 MB

 

==================== Drives ================================

 

Drive c: () (Fixed) (Total:146.48 GB) (Free:6.61 GB) NTFS

Drive d: () (Fixed) (Total:151.51 GB) (Free:31.31 GB) NTFS

 

\\?\Volume{33b07ec0-250c-11e8-ad00-806e6f6e6963}\ (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

 

==================== MBR & Partition Table ==================

 

========================================================

Disk: 0 (MBR Code: Windows 7/8/10) (Size: 298.1 GB) (Disk ID: 2F172F16)

Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)

Partition 2: (Not Active) - (Size=146.5 GB) - (Type=07 NTFS)

Partition 3: (Not Active) - (Size=151.5 GB) - (Type=07 NTFS)

 

==================== End of Addition.txt ============================

strogino cs portal hl2 stoped work error

You can watch a thematic video

Garry's Mod how to fix engine error No SteamUser (cracked) *2020*