Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-08-2020 Ran by Степа (31-08-2020 16:38:56) Running from C:\Users\Степа\Desktop Windows 7 Professional Service Pack 1 (X64) (2016-11-23 16:18:19) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= ASPNET (S-1-5-21-3129829678-2388851804-851762452-1005 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-3129829678-2388851804-851762452-1003 - Limited - Enabled) Администратор (S-1-5-21-3129829678-2388851804-851762452-500 - Administrator - Disabled) Гость (S-1-5-21-3129829678-2388851804-851762452-501 - Limited - Enabled) Степа (S-1-5-21-3129829678-2388851804-851762452-1000 - Administrator - Enabled) => C:\Users\Степа ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Kaspersky Internet Security (Disabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98} AS: Kaspersky Internet Security (Disabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Disabled) {BE0DF4B4-018B-AF50-0486-D6FE7C8A8AE3} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\uTorrent) (Version: 3.5.5.45790 - BitTorrent Inc.) Acronis Disk Director 12 (HKLM-x32\...\{FE6AA38C-8A06-41FB-B94C-5431743BB0BF}) (Version: 12.0.3297 - Acronis) Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.0.45.2 - Adobe Systems Incorporated) Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.414 - Adobe) Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.414 - Adobe) AIDA64 (HKLM-x32\...\AIDA64) (Version: 6.25.5400 - FinalWire Ltd.) AIMP (HKLM-x32\...\AIMP) (Version: v4.13.1887, 19.02.2017 - AIMP DevTeam) Airport Inc (HKLM-x32\...\Airport Inc) (Version: - ) AMD Catalyst Install Manager (HKLM\...\{A00CC809-7137-B31B-D13D-401DA7BD962F}) (Version: 3.0.868.0 - Advanced Micro Devices, Inc.) AmpegSVX (HKLM-x32\...\{CF1D7323-8A0A-49C7-83B0-088DB90721E2}) (Version: 1.1.3 - IK Multimedia) AmpliTube2 (HKLM-x32\...\{FB6691DA-66D3-412E-9853-641CF7D0C35A}) (Version: 2.0.0 - ) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.13 - Michael Tippach) Audacity 2.3.0 (HKLM-x32\...\Audacity_is1) (Version: 2.3.0 - Audacity Team) Bandicam 4.5.8 (HKLM-x32\...\Bandicam_is1) (Version: 4.5.8.1673 - Bandicam Company) Bandicam MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - Bandicam.com) BLESS (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\Game 101XP 3) (Version: - 101XP) Blitz (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\Blitz) (Version: 1.6.22 - Blitz Inc.) Blitz 1.12.1 (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\153f8ce0-b97a-575b-ba12-4ff8b1481894) (Version: 1.12.1 - Blitz, Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.29 - Piriform) CPUID CPU-Z 1.92 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.92 - CPUID, Inc.) Discord (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\Discord) (Version: 0.0.307 - Discord Inc.) Epic Games Launcher (HKLM-x32\...\{12B43B01-EE3D-4A95-900F-DCFC2832C34B}) (Version: 1.1.279.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden EVEREST Ultimate Edition v5.50 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - Lavalys, Inc.) File Info (HKLM-x32\...\File Info) (Version: 1.0.1.4125 - ROSTPAY LTD) FineReader 12 (HKLM-x32\...\FineReader 12) (Version: 12 - ABBYY) Flight Support (HKLM\...\{714DA7C8-D6E7-44D5-94EE-87BBA4F22B26}) (Version: 8.0.213.0 - Logitech) Folder Size (64-bit) (HKLM\...\{F24FF688-7138-4CCF-A83F-71E9FB01170E}) (Version: 2.6 - Brio) FreeTrack v2.2.0.279 (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\FreeTrack v2.2.0.279) (Version: - ) GameRanger (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\GameRanger) (Version: - GameRanger Technologies) GameSpy Comrade (HKLM-x32\...\{5F4C776F-8CBD-4C4F-892F-B568ABDD70C8}) (Version: 1.5.0.156 - GameSpy) Geeks3D FurMark 1.20.1.0 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 85.0.4183.83 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden Guitar Pro 7 - Soundbanks (HKLM-x32\...\com.arobas-music.guitarpro7-soundbanks_is1) (Version: 1.0.69 - Arobas Music) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.1.6.3 - Hi-Rez Studios) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) HP Deskjet 3070 B611 series Справка (HKLM-x32\...\{9F20CE56-3828-432D-A3C5-3EC6A2ED93C6}) (Version: 140.0.2.2 - Hewlett Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.5192 - HP Photo Creations) HP Update (HKLM-x32\...\{85DF2EED-08BC-46FB-90DA-28B0D0A8E8A8}) (Version: 5.003.000.004 - Hewlett-Packard) Intel® RealSense™ SDK Runtime Gold (x86): Core (HKLM-x32\...\{4BAB7070-1D73-11E6-8844-2C44FD873B55}) (Version: 10.0.26.396 - Intel Corporation) Hidden Intel® RealSense™ SDK Runtime Gold (x86): Core: Calibration (HKLM-x32\...\{676C639E-1D73-11E6-BF2F-2C44FD873B55}) (Version: 10.0.26.396 - Intel Corporation) Hidden Intel® RealSense™ SDK Runtime Gold (x86): User Segmentation (HKLM-x32\...\{51040000-1D73-11E6-A45D-2C44FD873B55}) (Version: 10.0.26.396 - Intel Corporation) Hidden Java 8 Update 144 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180144F0}) (Version: 8.0.1440.1 - Oracle Corporation) Kaspersky Internet Security (HKLM-x32\...\{E27B1D7B-3B34-43A2-9FC0-9828D5DF46E2}) (Version: 17.0.0.611 - Лаборатория Касперского) Hidden Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{E27B1D7B-3B34-43A2-9FC0-9828D5DF46E2}) (Version: 17.0.0.611 - Лаборатория Касперского) Kaspersky Secure Connection (HKLM-x32\...\{1CF84962-50F8-48CA-9082-B70F3A02C686}) (Version: 17.0.0.611 - Лаборатория Касперского) Hidden Kaspersky Secure Connection (HKLM-x32\...\InstallWIX_{1CF84962-50F8-48CA-9082-B70F3A02C686}) (Version: 17.0.0.611 - Лаборатория Касперского) Kerbal Space Program (HKLM-x32\...\{E8D22FE1-AB5F-42CA-1683-6F70B96DDD90}_is1) (Version: 1.0.1.17 - FreeTP.Org) Kerbal Space Program (HKLM-x32\...\1429864849_is1) (Version: 2.8.0.11 - GOG.com) Kerbal Space Program: Breaking Ground (HKLM-x32\...\1506581192_is1) (Version: 1.9.1.02788 - GOG.com) Kerbal Space Program: Making History (HKLM-x32\...\2092205632_is1) (Version: 1.9.1.02788 - GOG.com) KillProcess 2.44 (HKLM-x32\...\KillProcess) (Version: 2.44 - Orange Lamp Software Solutions) KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.2.1.4 - PandoraTV) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden League of Legends (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc) LEGO® Star Wars™ - The Complete Saga (HKLM-x32\...\1731318270_is1) (Version: 1.0 - GOG.com) LogMeIn Hamachi (HKLM-x32\...\{ECC0FA07-863E-44BC-8B1D-DA22F96E5FB7}) (Version: 2.2.0.633 - LogMeIn, Inc.) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.633 - LogMeIn, Inc.) Macrium Reflect Free Edition (HKLM\...\{8C4C0A5B-B375-42DB-90BE-AD40EDB2EF9D}) (Version: 7.2.5107 - Paramount Software (UK) Ltd.) Hidden Macrium Reflect Free Edition (HKLM\...\MacriumReflect) (Version: 7.2 - Paramount Software (UK) Ltd.) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.599.11 - McAfee, Inc.) Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft) Microsoft .NET Framework 4.8 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.8.03761 - Microsoft Corporation) Microsoft .NET Framework 4.8 (Русский) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1049) (Version: 4.8.03761 - Корпорация Майкрософт) Microsoft Access Runtime 2013 (HKLM-x32\...\Office15.AccessRT) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft PowerPoint 2010 (HKLM-x32\...\Office14.POWERPOINT) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft PowerPoint 2010 Interactive Guide RUS (HKLM-x32\...\{EFA90477-BC5B-4502-8B7F-8C0BAFFDABFB}) (Version: 1.2.1 - Microsoft) Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{14297226-E0A0-3781-8911-E9D529552663}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Code (User) (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.45.0 - Microsoft Corporation) Microsoft Word 2010 (HKLM-x32\...\Office14.WORD) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) MinesweeperApp (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\MinesweeperApp) (Version: - ) MorphVOX Pro (HKLM-x32\...\{4bfc0d50-0417-46a0-ab1e-475fb1a90916}) (Version: 4.4.17.22603 - Screaming Bee) MorphVOX Pro (HKLM-x32\...\{5F075DA5-407B-4F4D-BF2A-922CCA85706A}) (Version: 4.4.17.22603 - Screaming Bee) Hidden Mozilla Firefox 79.0 (x64 ru) (HKLM\...\Mozilla Firefox 79.0 (x64 ru)) (Version: 79.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 79.0 - Mozilla) MSI Afterburner 4.6.2 (HKLM-x32\...\Afterburner) (Version: 4.6.2 - MSI Co., LTD) Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version: 5.2.2.8 - Native Instruments) Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.5.1 - Notepad++ Team) NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.27 - NVIDIA Corporation) Hidden NVIDIA GeForce Experience 3.20.4.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.4.14 - NVIDIA Corporation) NVIDIA Аудиодрайвер HD 1.3.38.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.34 - NVIDIA Corporation) NVIDIA Графический драйвер 451.67 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 451.67 - NVIDIA Corporation) NVIDIA Системное программное обеспечение PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) NvModuleTracker (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver) (Version: 6.14.24033.38719 - NVIDIA Corporation) Hidden paint.net (HKLM\...\{6AC1101E-7561-43C9-BEEA-4AB1D220D8FF}) (Version: 4.0.13 - dotPDN LLC) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.) Python 3.7.1 (64-bit) (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\{4df9675d-1f68-492c-b6ac-27cebaa6512b}) (Version: 3.7.1150.0 - Python Software Foundation) Python 3.7.1 Core Interpreter (64-bit) (HKLM\...\{3CDB402E-5970-4DCB-8EE8-D50517AB55AE}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden Python 3.7.1 Development Libraries (64-bit) (HKLM\...\{61D00EE1-616D-4782-A8C5-EDD436BE9766}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden Python 3.7.1 Documentation (64-bit) (HKLM\...\{C66332A3-9916-4CA0-89B3-88E4F0789207}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden Python 3.7.1 Executables (64-bit) (HKLM\...\{C3B089F9-4BA6-45A6-91A2-C5938F8702F8}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden Python 3.7.1 pip Bootstrap (64-bit) (HKLM\...\{ED677B31-8BF6-49FA-9B99-A63CD45D316A}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden Python 3.7.1 Standard Library (64-bit) (HKLM\...\{7627B8B4-82DD-4BD2-B33B-465E41693F0D}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden Python 3.7.1 Tcl/Tk Support (64-bit) (HKLM\...\{00FB4D96-77D4-4043-950E-8FA816BCAD7D}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden Python 3.7.1 Test Suite (64-bit) (HKLM\...\{A1CFED46-5F31-4813-A494-681BBB2B6E23}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden Python 3.7.1 Utility Scripts (64-bit) (HKLM\...\{96DEF82E-CD26-4AB5-A7FB-81E1B6D1DE91}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden Python Launcher (HKLM-x32\...\{C3A1C6B1-9096-47A7-AB5C-09114002A996}) (Version: 3.7.6501.0 - Python Software Foundation) QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.) RAD Video Tools (HKLM-x32\...\RADVideo) (Version: - RAD Game Tools, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.98.107.2016 - Realtek) Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform) Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.) RivaTuner Statistics Server 7.2.3 (HKLM-x32\...\RTSS) (Version: 7.2.3 - Unwinder) Roblox Player (HKLM-x32\...\roblox-player-admin) (Version: - Roblox Corporation) SaveFrom.net helper 0.16 (HKLM-x32\...\{998eb3a4-0d03-41cc-b431-d4db6a725ed9}_is1) (Version: 0.16 - ) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0000-0000-0000000FF1CE}_Office14.POWERPOINT_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001B-0000-0000-0000000FF1CE}_Office14.WORD_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Skype, версия 8.48 (HKLM-x32\...\Skype_is1) (Version: 8.48 - Skype Technologies S.A.) Soundpad (HKLM\...\{6D1AED82-77DC-4BBD-AFAD-F16749DCBA61}) (Version: 3.3.2.0 - Leppsoft) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Synthesia (HKLM-x32\...\Synthesia) (Version: 10.6.5425 - Synthesia LLC) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.7 - TeamSpeak Systems GmbH) TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp) Terraria (HKLM-x32\...\1207665503_is1) (Version: v1.4.0.3 - GOG.com) The Forest [1.12] (HKLM-x32\...\{188CE843-2CDE-4ED8-BFDC-8DA81DCAADED}_RePack_TheForest_is1) (Version: - Endnight Games Ltd) Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.0a - Ghisler Software GmbH) TrueConf 7.5.0 (HKLM\...\{7A002A70-F9B6-4C5C-BFDD-8C69893999E7}_is1) (Version: 7.5.0 - TrueConf) Unity Web Player (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\UnityWebPlayer) (Version: 5.3.5f1 - Unity Technologies ApS) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) Update for Skype for Business 2015 (KB4484289) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.AccessRT_{F97B139A-D8BF-46FF-A6F6-50710FED8644}) (Version: - Microsoft) VALORANT (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\Riot Game valorant.live) (Version: - Riot Games, Inc) Vegas Pro 13.0 (64-bit) (HKLM\...\{CDA02BF0-BFBC-11E3-AFA0-F04DA23A5C58}) (Version: 13.0.290 - Sony) Vortex (HKLM\...\57979c68-f490-55b8-8fed-8b017a5af2fe) (Version: 1.0.0 - Black Tree Gaming Ltd.) War Thunder Launcher 1.0.1.741 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment) Warface (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\Warface) (Version: 1.353 - Mail.ru) Western Digital SSD Dashboard (HKLM-x32\...\Western Digital SSD Dashboard) (Version: 2.7.0.0 - Western Digital Corporation) WinRAR 5.20 (64-разрядная) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH) Word Recovery Toolbox 2.6 (HKLM-x32\...\Word Recovery Toolbox_is1) (Version: - Recovery Toolbox, Inc.) Word Repair Toolbox 2.5 (HKLM-x32\...\Word Repair Toolbox_is1) (Version: - Recovery Toolbox, Inc.) x264vfw - H.264/MPEG-4 AVC codec for x64 (remove only) (HKLM-x32\...\x264vfw64) (Version: - ) X52 H.O.T.A.S. (HKLM\...\{A27FA83D-4B86-4690-874E-7C2C76463D6F}) (Version: 8.0.213.0 - Logitech) XviD MPEG-4 Video Codec rev.1.2.2 (HKLM-x32\...\{7E35AD35-5FE0-4DB5-80C5-13353CEEDC56}_is1) (Version: - ) Исследование для улучшения продуктов HP Deskjet 3070 B611 series (HKLM\...\{49AC3D34-82BC-4C7F-87F7-8B74EFEEDCF9}) (Version: 25.0.571.0 - Hewlett-Packard Co.) Обновления NVIDIA 38.0.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.5.0 - NVIDIA Corporation) Hidden Основные программы для устройства HP Deskjet 3070 B611 series (HKLM\...\{523F1BEC-3E4A-4C7E-9B6D-9E0504045314}) (Version: 25.0.571.0 - Hewlett-Packard Co.) Панель управления NVIDIA 451.67 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 451.67 - NVIDIA Corporation) Hidden плеер (версия 1.0.0 сборка 91) и органайзер Открытой Образовате (HKLM-x32\...\OMS1.0_is1) (Version: 1.0.0.91 - РМЦ) Поддержка программ Apple (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Расписание уроков (HKLM-x32\...\Расписание уроков) (Version: - ) Расчет выслуги лет 2.4.4 (HKLM-x32\...\Расчет выслуги лет 2.4.4) (Version: - ) СОЛО на клавиатуре (HKLM-x32\...\СОЛО на клавиатуре) (Version: - ) Среда выполнения Intel® RealSense™ SDK (HKLM-x32\...\ARP_for_prd_rs_sdk_runtime_10.0.26.0396) (Version: 10.0.26.0396 - Intel Corporation) Чертежник (демо версия) 1.10.1 (HKLM-x32\...\Draftsman_is1) (Version: - ) Языковой пакет Microsoft Visual Studio 2010 Tools для среды выполнения Office (x64) - RUS (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - RUS) (Version: 10.0.50903 - Microsoft Corporation) Яндекс.Диск (HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\YandexDisk2) (Version: 3.1.20.3664 - Яндекс) ==================== Custom CLSID (Whitelisted): ============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{11C9DD7B-CCF5-4502-90A1-FEE8889976D5}\InprocServer32 -> C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll (YANDEX LLC -> Яндекс) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{18224999-F24B-43ee-B697-9427587FDC9C}\InprocServer32 -> C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll (YANDEX LLC -> Яндекс) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{5F134845-AC70-CF45-3AF6-76C5AEA58F33}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Windows -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{63ADB0D1-6DA0-46A2-89D0-E0CE44536E32}\InprocServer32 -> C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll (YANDEX LLC -> Яндекс) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{75EF3512-D401-4172-BA0F-00E000DCBCE4}\InprocServer32 -> C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll (YANDEX LLC -> Яндекс) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{847202AE-CDE0-469A-AF10-8798E02DED83}\InprocServer32 -> C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll (YANDEX LLC -> Яндекс) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{8EEE3CD5-1F70-4B63-B19D-A5F1457761DB}\InprocServer32 -> C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll (YANDEX LLC -> Яндекс) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{9CE04609-A360-4266-9937-9D799E8D2D5A}\InprocServer32 -> C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll (YANDEX LLC -> Яндекс) CustomCLSID: HKU\S-1-5-21-3129829678-2388851804-851762452-1000_Classes\CLSID\{C5F6CDD1-FB7B-4971-A53F-4B00757F756B}\InprocServer32 -> C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll (YANDEX LLC -> Яндекс) ShellIconOverlayIdentifiers: [ YandexDisk1 SyncDone] -> {C5F6CDD1-FB7B-4971-A53F-4B00757F756B} => C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll [2020-06-18] (YANDEX LLC -> Яндекс) ShellIconOverlayIdentifiers: [ YandexDisk2 SyncProgress] -> {75EF3512-D401-4172-BA0F-00E000DCBCE4} => C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll [2020-06-18] (YANDEX LLC -> Яндекс) ShellIconOverlayIdentifiers: [ YandexDisk3 SyncDisabled] -> {8EEE3CD5-1F70-4B63-B19D-A5F1457761DB} => C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll [2020-06-18] (YANDEX LLC -> Яндекс) ShellIconOverlayIdentifiers: [ YandexDisk4 SyncError] -> {9CE04609-A360-4266-9937-9D799E8D2D5A} => C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll [2020-06-18] (YANDEX LLC -> Яндекс) ShellIconOverlayIdentifiers: [ YandexDisk5 SyncPart] -> {63ADB0D1-6DA0-46A2-89D0-E0CE44536E32} => C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll [2020-06-18] (YANDEX LLC -> Яндекс) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => D:\AIMP\System\aimp_menu64.dll -> No File ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2017-08-29] (Notepad++ -> ) ContextMenuHandlers1: [Kaspersky Anti-Virus 17.0.0] -> {39C9FA89-7012-4573-A92D-BFD1F8CA542D} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\shellex.dll [2017-04-29] (Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers1-x32: [OMSShellExt] -> {722F64AA-D2DD-4D82-B05C-0E85DC0907D9} => C:\Program Files (x86)\RNMC\OMS\ShlExt.dll [2010-06-17] (Russian National Multimedia Center) [File not signed] ContextMenuHandlers1: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:\Program Files\Macrium\Reflect\RContextMenu.dll [2019-09-20] (Paramount Software UK Ltd -> Paramount Software UK Ltd) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-12-02] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2014-12-02] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [Kaspersky Anti-Virus 17.0.0] -> {39C9FA89-7012-4573-A92D-BFD1F8CA542D} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\shellex.dll [2017-04-29] (Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers2: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:\Program Files\Macrium\Reflect\RContextMenu.dll [2019-09-20] (Paramount Software UK Ltd -> Paramount Software UK Ltd) ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => D:\AIMP\System\aimp_menu64.dll -> No File ContextMenuHandlers4: [Kaspersky Anti-Virus 17.0.0] -> {39C9FA89-7012-4573-A92D-BFD1F8CA542D} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\shellex.dll [2017-04-29] (Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2012-05-04] (Advanced Micro Devices, Inc.) [File not signed] ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2020-07-06] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [Kaspersky Anti-Virus 17.0.0] -> {39C9FA89-7012-4573-A92D-BFD1F8CA542D} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\shellex.dll [2017-04-29] (Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers6-x32: [OMSShellExt] -> {722F64AA-D2DD-4D82-B05C-0E85DC0907D9} => C:\Program Files (x86)\RNMC\OMS\ShlExt.dll [2010-06-17] (Russian National Multimedia Center) [File not signed] ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-12-02] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2014-12-02] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1_S-1-5-21-3129829678-2388851804-851762452-1000: [Yandex.Disk.3] -> {847202AE-CDE0-469A-AF10-8798E02DED83} => C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll [2020-06-18] (YANDEX LLC -> Яндекс) ContextMenuHandlers4_S-1-5-21-3129829678-2388851804-851762452-1000: [Yandex.Disk.3] -> {847202AE-CDE0-469A-AF10-8798E02DED83} => C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk3ShellExt-1511.dll [2020-06-18] (YANDEX LLC -> Яндекс) ==================== Codecs (Whitelisted) ==================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Drivers32: [vidc.i420] => C:\Windows\system32\lvcod64.dll [176416 2012-01-18] (Logitech, Inc. -> Logitech Inc.) HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\system32\rtvcvfw64.dll [246272 2012-09-29] () [File not signed] HKLM\...\Drivers32: [vidc.mjpg] => C:\Windows\system32\bdmjpeg64.dll [75248 2017-01-26] (Bandicam Company -> ) HKLM\...\Drivers32: [vidc.mpeg] => C:\Windows\system32\bdmpegv64.dll [75272 2017-01-26] (Bandicam Company -> ) HKLM\...\Drivers32: [msacm.bdmpeg] => C:\Windows\system32\bdmpega64.acm [75784 2017-01-26] (Bandicam Company -> ) HKLM\...\Drivers32: [vidc.x264] => C:\Program Files\x264vfw64\x264vfw64.dll [4034560 2012-03-26] (x264vfw project) [File not signed] HKLM\...\Drivers32: [vidc.i420] => C:\Windows\SysWOW64\lvcodec2.dll [307488 2012-01-18] (Logitech, Inc. -> Logitech Inc.) HKLM\...\Drivers32: [vidc.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [204800 2009-05-30] () [File not signed] HKLM\...\Drivers32-x32: [VIDC.VP80] => vp8vfw.dll HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-29] () [File not signed] HKLM\...\Drivers32: [vidc.yv12] => C:\Windows\SysWOW64\xvidvfw.dll [204800 2009-05-30] () [File not signed] HKLM\...\Drivers32: [vidc.mjpg] => C:\Windows\SysWOW64\bdmjpeg.dll [71152 2017-01-26] (Bandicam Company -> ) HKLM\...\Drivers32: [vidc.mpeg] => C:\Windows\SysWOW64\bdmpegv.dll [71176 2017-01-26] (Bandicam Company -> ) HKLM\...\Drivers32: [msacm.bdmpeg] => C:\Windows\SysWOW64\bdmpega.acm [71176 2017-01-26] (Bandicam Company -> ) ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":: WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99] WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate] Shortcut: C:\Users\Степа\Links\всё с экрана.lnk -> C:\Users\Степа\Desktop\всё с экрана () <==== Cyrillic Shortcut: C:\Users\Степа\Links\Загрузки.lnk -> L:\Загрузки () <==== Cyrillic Shortcut: C:\Users\Степа\Documents\Загрузки.lnk -> L:\Загрузки () <==== Cyrillic Shortcut: C:\Users\Степа\Desktop\Запустить Kerbal Space Program Multiplayer.lnk -> C:\Program Files (x86)\Kerbal Space Program\KSPStart.exe () <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Яндекс.Диск\Заметки в Яндекс.Диске.lnk -> C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexNotes.exe (Яндекс) <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\СОЛО на клавиатуре\Uninstall СОЛО на клавиатуре.lnk -> D:\Solo9RusEngNum\Uninstall.exe (No File) <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\СОЛО на клавиатуре\СОЛО на клавиатуре.lnk -> D:\Solo9RusEngNum\Solo.exe (No File) <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Расписание уроков\Журнал учета пропущенных уроков.lnk -> D:\Расписание уроков\Журнал учета пропущенных уроков.xls (No File) <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Расписание уроков\Методические рекомендации.lnk -> D:\Расписание уроков\Методические рекомендации.pdf (No File) <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Расписание уроков\Расписание уроков.lnk -> D:\Расписание уроков\SchTimeTable.exe (No File) <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Расписание уроков\СанПиН.lnk -> D:\Расписание уроков\СанПиН.pdf (No File) <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Новости в последней версии.lnk -> C:\Program Files\WinRAR\WhatsNew.txt () <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Руководство по консольной версии RAR.lnk -> C:\Program Files\WinRAR\Rar.txt () <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Справка WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.chm () <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder\Деинсталлировать War Thunder.lnk -> D:\WarThunder\unins000.exe (No File) <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder\Журнал ошибок.lnk -> D:\WarThunder\.game_logs (No File) <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder\Повторы боев.lnk -> D:\WarThunder\Replays (No File) <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder\Скриншоты.lnk -> D:\WarThunder\Screenshots (No File) <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL 2\Руководство по использованию ASIO4ALL 2.lnk -> C:\Program Files (x86)\ASIO4ALL v2\ASIO4ALL v2 Instruction Manual.pdf () <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL 2\Сайт ASIO4ALL.lnk -> C:\Program Files (x86)\ASIO4ALL v2\ASIO4ALL Web Site.url () <==== Cyrillic Shortcut: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL 2\Удалить драйвер.lnk -> C:\Program Files (x86)\ASIO4ALL v2\uninstall.exe () <==== Cyrillic ShortcutWithArgument: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Яндекс.Диск\Скриншоты в Яндекс.Диске.lnk -> C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDiskScreenshotEditor.exe (Яндекс) -> -startmenu <==== Cyrillic ShortcutWithArgument: C:\Users\Степа\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Яндекс.Диск\Яндекс.Диск.lnk -> C:\Users\Степа\AppData\Roaming\Yandex\YandexDisk2\3.1.20.3664\YandexDisk2.exe (Яндекс) -> -startmenu <==== Cyrillic ShortcutWithArgument: C:\Users\Степа\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\_тролололник_ (magnus) - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1" ==================== Loaded Modules (Whitelisted) ============= 2011-11-13 14:30 - 2011-11-13 14:30 - 000676864 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll 2012-05-04 15:41 - 2012-05-04 15:41 - 000211968 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll 2011-11-13 14:31 - 2011-11-13 14:31 - 003643392 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll 2018-09-28 20:07 - 2018-09-28 20:07 - 000687616 _____ (SafeNet, Inc.) [File not signed] C:\Program Files (x86)\Common Files\Aladdin Shared\HASP\haspvlib_46707.dll ==================== Alternate Data Streams (Whitelisted) ======== (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData:MHD [306] AlternateDataStreams: C:\Users\All Users:MHD [306] AlternateDataStreams: C:\Users\Все пользователи:MHD [306] AlternateDataStreams: C:\ProgramData\Application Data:MHD [306] AlternateDataStreams: C:\Users\Public\AppData:CSM [464] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [227] AlternateDataStreams: C:\Users\Все пользователи\Application Data:MHD [306] AlternateDataStreams: C:\Users\Степа\Application Data:!uuid [32] AlternateDataStreams: C:\Users\Степа\Local Settings:MHD [282] AlternateDataStreams: C:\Users\Степа\AppData\Local:MHD [282] AlternateDataStreams: C:\Users\Степа\AppData\Roaming:!uuid [32] AlternateDataStreams: C:\Users\Степа\AppData\Local\Application Data:MHD [282] AlternateDataStreams: C:\Users\Степа\AppData\Local\Temp:$DATA​ [16] AlternateDataStreams: C:\Users\Степа\AppData\Local\Temp:MHD [242] ==================== Safe Mode (Whitelisted) ================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== Association (Whitelisted) ================= ==================== Internet Explorer trusted/restricted ========== (If an entry is included in the fixlist, it will be removed from the registry.) IE restricted site: HKU\S-1-5-21-3129829678-2388851804-851762452-1000\...\roblox.com -> hxxps://www.roblox.com ==================== Hosts content: ========================= (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 07:34 - 2020-08-26 23:28 - 000005463 ___SH C:\Windows\system32\drivers\etc\hosts 0.0.0.1 mssplus.mcafee.com 127.0.0.1 bandicam.com 127.0.0.1 ssl.bandisoft.com 127.0.0.1 cert.bandicam.com 127.0.0.1 www.bandicam.com 127.0.0.1 codeload.github.com 127.0.0.1 support.kaspersky.ru 127.0.0.1 kaspersky.ru 127.0.0.1 virusinfo.info 127.0.0.1 forum.kasperskyclub.ru 127.0.0.1 cyberforum.ru 127.0.0.1 soft-file.ru 127.0.0.1 www.360totalsecurity.com 127.0.0.1 cezurity.com 127.0.0.1 www.dropbox.com 127.0.0.1 193.228.54.23 127.0.0.1 spec-komp.com 127.0.0.1 eset.ua 127.0.0.1 panel.koronavirusfuck.xyz 127.0.0.1 360totalsecurity.com 127.0.0.1 www.esetnod32.ru 127.0.0.1 www.comss.ru 127.0.0.1 blog-pc.ru 127.0.0.1 www.securrity.ru 127.0.0.1 vellisa.ru 127.0.0.1 download-software.ru 127.0.0.1 drweb-cureit.ru 127.0.0.1 softpacket.ru 127.0.0.1 www.kaspersky.com 127.0.0.1 www.avast.ua There are 121 more lines. 2017-10-29 11:03 - 2020-08-31 16:35 - 000000374 _____ C:\Windows\system32\drivers\etc\hosts.ics ==================== Other Areas =========================== (Currently there is no automatic fix for this section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\AMD APP\bin\x86_64;C:\Program Files (x86)\AMD APP\bin\x86;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\QuickTime\QTSystem\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\Common Files\Acronis\SnapAPI\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common HKU\S-1-5-21-3129829678-2388851804-851762452-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (If an entry is included in the fixlist, it will be removed.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Zaxar Games Browser.lnk => C:\Windows\pss\Zaxar Games Browser.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Степа^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Контроль предупреждений о чернилах - HP Deskjet 3070 B611 series (сеть).lnk => C:\Windows\pss\Контроль предупреждений о чернилах - HP Deskjet 3070 B611 series (сеть).lnk.Startup MSCONFIG\startupreg: Acronis Scheduler2 Service => "C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe" MSCONFIG\startupreg: BCSSync => "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices MSCONFIG\startupreg: Bloody2 => "C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe" Minimum MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: EpicGamesLauncher => "C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent MSCONFIG\startupreg: HP Deskjet 3070 B611 series (NET) => "C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN241682BH05MQ:NW" -scfn "HP Deskjet 3070 B611 series (NET)" -AutoStart 1 MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start MSCONFIG\startupreg: RTHDVCPL => "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s MSCONFIG\startupreg: ShadowPlay => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" ==================== FirewallRules (Whitelisted) ================ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{1AFB623E-B0B0-4578-8366-CF94898E57E7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{55ABA720-A1FC-44EF-977F-94612846D7A0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{CA817401-9A09-434A-BCFC-A19E2CE4F75C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{3453348D-A595-4F9E-AB04-C92633B71BA5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{32467CD7-64DA-41A5-91CB-F71E0A22CBCD}] => (Allow) D:\Steam\Steam.exe => No File FirewallRules: [{26F2A79D-E49A-4C1F-A376-57BBC910730E}] => (Allow) D:\Steam\Steam.exe => No File FirewallRules: [{D808BA64-042C-421E-AA1A-C5EBCE75EC0F}] => (Allow) C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{825B7350-12D0-4331-BF9A-E995166E8045}] => (Allow) C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\HPNetworkCommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{F82BF51D-8A36-4E6D-A50A-B22A37C669D9}] => (Allow) D:\WarThunder\launcher.exe => No File FirewallRules: [{F38B4ECF-C358-4DA8-B818-A02E497CB82A}] => (Allow) D:\WarThunder\launcher.exe => No File FirewallRules: [{5BC886F3-7ED5-4899-A33A-2226E0CDF4C4}] => (Allow) LPort=80 FirewallRules: [{D2367CFE-4E24-4EB9-9363-51D23062DB2C}] => (Allow) LPort=443 FirewallRules: [{C9BAFD22-DE81-4637-8786-FAD6FC2F06B5}] => (Allow) LPort=20010 FirewallRules: [{DCB921DE-8092-4CB8-A7BD-675D3E0AFE94}] => (Allow) LPort=3478 FirewallRules: [{372DC243-374F-4507-9912-E828FB3FBFC2}] => (Allow) LPort=7850 FirewallRules: [{DC673507-5F13-4FE5-B95C-E8963AEAB8F2}] => (Allow) LPort=7852 FirewallRules: [{52C5020E-047B-4AD5-B0EF-A2FB23ED54BC}] => (Allow) LPort=7853 FirewallRules: [{C357E37B-AF88-4C48-AD10-A1A455A67AAB}] => (Allow) LPort=27022 FirewallRules: [{124E1B34-BE43-42EF-A9B4-75AB498A25D0}] => (Allow) LPort=6881 FirewallRules: [{E149A9A9-1806-4971-8AA5-7B99B1FA2188}] => (Allow) LPort=33333 FirewallRules: [{BE955F62-DEBF-45B1-81F1-BFE25A2DE325}] => (Allow) LPort=20443 FirewallRules: [{58BEA939-9653-4D22-B5B1-9FAA31112BFE}] => (Allow) LPort=8090 FirewallRules: [TCP Query User{C664E8C2-2325-4A33-8FE5-D94F385F24E4}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File FirewallRules: [UDP Query User{E96D738C-E3A5-4053-82BA-96B88EA9F474}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File FirewallRules: [TCP Query User{7807CF74-0D5E-461C-AD84-4C37F8480D08}C:\program files\java\jre1.8.0_144\bin\java.exe] => (Allow) C:\program files\java\jre1.8.0_144\bin\java.exe FirewallRules: [UDP Query User{CCF85F94-4A15-4517-9A5A-14B903203274}C:\program files\java\jre1.8.0_144\bin\java.exe] => (Allow) C:\program files\java\jre1.8.0_144\bin\java.exe FirewallRules: [TCP Query User{575CC767-4E65-4017-ACE8-984BC4BB8B37}C:\users\степа\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\степа\appdata\roaming\gameranger\gameranger\gameranger.exe (GameRanger Technologies -> GameRanger Pty Ltd) FirewallRules: [UDP Query User{92AA13AD-931E-41F9-B4D7-F56DEBB32040}C:\users\степа\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\степа\appdata\roaming\gameranger\gameranger\gameranger.exe (GameRanger Technologies -> GameRanger Pty Ltd) FirewallRules: [TCP Query User{FC9BCA38-58D6-4ACE-AE0F-8650709EDD5B}C:\program files\java\jre1.8.0_144\temp-launcher\tnoodle-wca-0.13.4.exe] => (Allow) C:\program files\java\jre1.8.0_144\temp-launcher\tnoodle-wca-0.13.4.exe (Oracle America, Inc. -> Oracle Corporation) FirewallRules: [UDP Query User{E9CF6F78-8B16-4CB3-BA54-BEFE5C0B00D3}C:\program files\java\jre1.8.0_144\temp-launcher\tnoodle-wca-0.13.4.exe] => (Allow) C:\program files\java\jre1.8.0_144\temp-launcher\tnoodle-wca-0.13.4.exe (Oracle America, Inc. -> Oracle Corporation) FirewallRules: [{9D9922B9-A054-4145-91A8-2F307B650E85}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{06DE6045-B8F0-46D4-9775-748A0D2C9C42}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{D743DAED-F623-4F8F-965E-90405A86C500}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File FirewallRules: [{B5908F10-C6C1-4745-AACD-E44AD08F55BC}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File FirewallRules: [{B49D9AEF-197A-4964-A753-A9C64FF48D0A}] => (Allow) C:\Windows\system32\hasplms.exe (SafeNet Canada, Inc. -> SafeNet, Inc.) FirewallRules: [TCP Query User{937AE398-874C-4D06-B053-741B3E9EC923}C:\users\степа\appdata\roaming\exjava\jvm\bin\java.exe] => (Allow) C:\users\степа\appdata\roaming\exjava\jvm\bin\java.exe FirewallRules: [UDP Query User{9A0F14BD-DD22-41DD-A32A-EF37B167D250}C:\users\степа\appdata\roaming\exjava\jvm\bin\java.exe] => (Allow) C:\users\степа\appdata\roaming\exjava\jvm\bin\java.exe FirewallRules: [{1046D1DB-09DE-4E7E-BDB5-BD2DEB68EA7D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{1757212C-129C-4B99-A766-E153AE5EEA3F}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{59084BF1-2C80-4B2F-820E-D8A5667FEFD7}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{FFBC8BFD-264C-4B1D-ABBA-EB9101A8FDE6}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{61FE81E6-6B48-4EE8-932E-075964526F08}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{EDC1C452-AA7C-4BDE-89EA-E39910134AF8}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{227DA897-9A04-467F-83BD-9A4EBBFBFC9B}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe (Apple Inc. -> Apple Inc.) FirewallRules: [TCP Query User{4D4F85AD-1638-4655-A80D-1EF440692287}C:\program files\dcs-simpleradio-standalone\sr-clientradio.exe] => (Allow) C:\program files\dcs-simpleradio-standalone\sr-clientradio.exe (Open Source Developer, Ciaran Fisher -> Ciribob - GitHub.com/Ciribob) FirewallRules: [UDP Query User{0166691D-B285-4B5B-A3D8-5D80AEB2B71A}C:\program files\dcs-simpleradio-standalone\sr-clientradio.exe] => (Allow) C:\program files\dcs-simpleradio-standalone\sr-clientradio.exe (Open Source Developer, Ciaran Fisher -> Ciribob - GitHub.com/Ciribob) FirewallRules: [{13CB5349-D248-4053-AE69-F41DC4B4924F}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File FirewallRules: [{18CBEDFC-5BC7-48CD-B414-9B990BF037D9}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File FirewallRules: [TCP Query User{EF9508D8-B233-45CC-B5E0-3D8254DBE66C}C:\users\степа\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\степа\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [UDP Query User{9AB4EB7E-B73F-43F4-B89B-BB6423A1F2D4}C:\users\степа\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\степа\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{6F0A0E81-5E42-4518-8B80-3412AC996962}] => (Allow) C:\Program Files\TrueConf\Client\TrueConf.exe (TrueConf LLC -> TrueConf) FirewallRules: [{68BE8AC4-76CB-404F-924F-2913F003FE33}] => (Allow) C:\Program Files\TrueConf\Client\ExecutorServer.exe (TrueConf LLC -> TrueConf) FirewallRules: [{C8D6058E-6787-4692-BA59-F9E6ACDE1B60}] => (Allow) C:\Program Files\TrueConf\Client\TrueConf_GL.exe (TrueConf LLC -> TrueConf) FirewallRules: [{F03D46F1-45C5-4D10-A101-FBF073C68877}] => (Allow) C:\Program Files\TrueConf\Client\TrueConf_Angle.exe (TrueConf LLC -> TrueConf) FirewallRules: [{51D21053-3EF0-4AF5-AE0C-F20832230E3C}] => (Allow) D:\Steam\steamapps\common\No Man's Sky\Binaries\NMS.exe => No File FirewallRules: [{FE5F95D1-50F2-4204-AEBA-31F3893D38AC}] => (Allow) D:\Steam\steamapps\common\No Man's Sky\Binaries\NMS.exe => No File FirewallRules: [TCP Query User{270039C2-6082-4683-8B52-BE2C616CA64F}D:\games\the forest\theforest32.exe] => (Allow) D:\games\the forest\theforest32.exe => No File FirewallRules: [UDP Query User{6F2D95EE-6D74-4F0A-9B88-1DD029671595}D:\games\the forest\theforest32.exe] => (Allow) D:\games\the forest\theforest32.exe => No File FirewallRules: [TCP Query User{428F9111-0024-4AEB-8FDF-47C6B7765634}D:\terraria\terrariaserver.exe] => (Allow) D:\terraria\terrariaserver.exe => No File FirewallRules: [UDP Query User{BE4AB884-DDFE-4599-AC09-650B58795A57}D:\terraria\terrariaserver.exe] => (Allow) D:\terraria\terrariaserver.exe => No File FirewallRules: [TCP Query User{0F3C7DF3-5F8D-42DE-92B5-5FE6078F6B05}D:\gamesmailru\warface\bin64release\game.exe] => (Allow) D:\gamesmailru\warface\bin64release\game.exe => No File FirewallRules: [UDP Query User{D2CDA561-0423-468D-B85A-A64295144B31}D:\gamesmailru\warface\bin64release\game.exe] => (Allow) D:\gamesmailru\warface\bin64release\game.exe => No File FirewallRules: [{C3B78C34-4265-4955-84F6-ED08DE378DCB}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe => No File FirewallRules: [{589645CD-2A46-4EE8-9E0C-891E466AA31D}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe => No File FirewallRules: [{EDD175F6-FE31-402A-9E46-4BF177752164}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\Launcher.exe => No File FirewallRules: [{DE3D6424-3553-4DAB-B588-8EF8C13222FF}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe => No File FirewallRules: [{C3EDA9A5-0D5C-461D-BBF0-2D11431EB46B}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe => No File FirewallRules: [{F9D155A1-CE21-4E36-9943-864E49CD95DC}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe => No File FirewallRules: [{2475FDC6-A0CC-45EA-A479-49E44FA5901B}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\Launcher.exe => No File FirewallRules: [{E25BD3DB-9865-4326-9A53-FFAF9D03B91A}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe => No File FirewallRules: [TCP Query User{74B183FA-F790-4668-B030-C1B24F92BCE7}D:\borderlands2\binaries\win32\borderlands2.exe] => (Allow) D:\borderlands2\binaries\win32\borderlands2.exe => No File FirewallRules: [UDP Query User{1728FA5D-273E-48BB-A366-6F2E5FDB3454}D:\borderlands2\binaries\win32\borderlands2.exe] => (Allow) D:\borderlands2\binaries\win32\borderlands2.exe => No File FirewallRules: [TCP Query User{83C6279E-A3AD-4998-BC64-93EC5FBCD3CA}C:\program files\java\jre1.8.0_144\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_144\bin\javaw.exe FirewallRules: [UDP Query User{09DA87F2-DBFF-4D58-A37E-2729951D156E}C:\program files\java\jre1.8.0_144\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_144\bin\javaw.exe FirewallRules: [TCP Query User{E8647CAD-F044-417E-805C-9BA30E16E500}C:\users\степа\appdata\roaming\.vimeworld\vimeworld.exe] => (Allow) C:\users\степа\appdata\roaming\.vimeworld\vimeworld.exe (Dmytro Manchynskyi -> VimeWorld) FirewallRules: [UDP Query User{837CC760-0966-421F-BE45-4FD7F227E25F}C:\users\степа\appdata\roaming\.vimeworld\vimeworld.exe] => (Allow) C:\users\степа\appdata\roaming\.vimeworld\vimeworld.exe (Dmytro Manchynskyi -> VimeWorld) FirewallRules: [{3CB6C2F5-E8DC-4383-9791-B24858C2EC07}] => (Allow) D:\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe => No File FirewallRules: [{DA78D1FC-88F2-4077-9613-967BEFBCEB1E}] => (Allow) D:\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe => No File FirewallRules: [TCP Query User{E8015FD4-B22E-46C6-B596-95C5F2E7F693}C:\program files (x86)\theescapists2\theescapists2.exe] => (Allow) C:\program files (x86)\theescapists2\theescapists2.exe () [File not signed] FirewallRules: [UDP Query User{26749428-58C9-42ED-9CC0-8888BEE967F0}C:\program files (x86)\theescapists2\theescapists2.exe] => (Allow) C:\program files (x86)\theescapists2\theescapists2.exe () [File not signed] FirewallRules: [{5B4C102F-0298-4720-A62A-F992E4AB96AA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{DB71E2B6-BD67-449D-9EAD-7C5852B18CBD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{A9616E99-D7C5-4979-AADC-1E2BCFF3FDEC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{8AF6EFDB-6176-4B98-A908-E9F0CF779FF2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{B161DC4F-46BB-4738-9C9D-5C2F1AD2E126}] => (Allow) D:\Steam\steamapps\common\SCP Secret Laboratory\SCPSL.exe => No File FirewallRules: [{4FFFF1DF-3FF2-4205-BEF1-FBD7D3BD7369}] => (Allow) D:\Steam\steamapps\common\SCP Secret Laboratory\SCPSL.exe => No File FirewallRules: [{AC899CF7-1315-4624-BA24-4437619471CE}] => (Allow) D:\Steam\steamapps\common\Star Wars - The Old Republic\launcher.exe => No File FirewallRules: [{FCC83933-464F-4DDA-8D62-404730A57A21}] => (Allow) D:\Steam\steamapps\common\Star Wars - The Old Republic\launcher.exe => No File FirewallRules: [TCP Query User{9A414E49-6C7A-4DBF-88CE-4ABC52F6C847}G:\found.000\dir0000.chk\programs\blitz\blitz.exe] => (Allow) G:\found.000\dir0000.chk\programs\blitz\blitz.exe => No File FirewallRules: [UDP Query User{328FA999-7F4C-4145-B293-5DE8B0D53B93}G:\found.000\dir0000.chk\programs\blitz\blitz.exe] => (Allow) G:\found.000\dir0000.chk\programs\blitz\blitz.exe => No File FirewallRules: [{877D7F47-3C5A-4BCA-9990-4A18A6D0A9A6}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{BC53D6FD-690E-437B-8A51-EA7798ADB4D9}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{27726DDD-F58F-4AEF-B9B4-3FAB863207C5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{11BC28D1-8621-4242-BFEC-5E933250CE37}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{8BD2FF21-A91E-43AA-9C13-FBC1493F4AFE}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{2C24AD01-E22F-4883-B170-8AB83E1B6EB0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{C8EB219E-5A13-4BD2-B75D-8E1DB681753C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SCP Secret Laboratory\SCPSL.exe (Hubert Moszka Northwood -> Northwood Studios) FirewallRules: [{A496B2ED-C8D2-4CFF-A17D-073BB55579DA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SCP Secret Laboratory\SCPSL.exe (Hubert Moszka Northwood -> Northwood Studios) FirewallRules: [{3B175246-00F1-42F6-A751-302B5A4B2BDA}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{57571812-1B69-45BE-9824-D6128FD6557E}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{374B1EB7-9EA0-44CC-9CEE-60B81396B0B9}] => (Allow) L:\Steam\steamapps\common\Star Wars - The Old Republic\launcher.exe (Electronic Arts, Inc. -> BioWare) FirewallRules: [{4E790A74-44EB-457F-9704-2E809502F267}] => (Allow) L:\Steam\steamapps\common\Star Wars - The Old Republic\launcher.exe (Electronic Arts, Inc. -> BioWare) FirewallRules: [{04E5E590-12E4-43D5-A8B1-10A8B07837E4}] => (Allow) L:\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> ) FirewallRules: [{658192A1-B28B-4ED7-B15D-4A8F0479F301}] => (Allow) L:\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> ) FirewallRules: [TCP Query User{93C94BB2-37F7-4BA3-95BF-89C51DA42F72}L:\warthunder\launcher.exe] => (Allow) L:\warthunder\launcher.exe (Gaijin Network LTD -> Gaijin Entertainment) FirewallRules: [UDP Query User{DCD2FFFD-12B8-46F5-B77D-C5F7787053B1}L:\warthunder\launcher.exe] => (Allow) L:\warthunder\launcher.exe (Gaijin Network LTD -> Gaijin Entertainment) FirewallRules: [TCP Query User{09A24B1C-BBAC-4ED3-841D-805182692CB5}L:\warthunder\win64\aces.exe] => (Allow) L:\warthunder\win64\aces.exe (Gaijin Network LTD -> Gaijin Entertainment) FirewallRules: [UDP Query User{FA936379-8B4F-4387-9743-BC79F15C2AEA}L:\warthunder\win64\aces.exe] => (Allow) L:\warthunder\win64\aces.exe (Gaijin Network LTD -> Gaijin Entertainment) FirewallRules: [{33F68DE2-FD22-4EC7-BA4D-2306589E6EAF}] => (Allow) L:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{7D2BFD36-13CA-4103-A4D1-22C97CCD941D}] => (Allow) L:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [TCP Query User{52CCFA84-CB0E-405D-BD3F-46560C70C6D7}C:\users\степа\appdata\local\programs\blitz\blitz.exe] => (Allow) C:\users\степа\appdata\local\programs\blitz\blitz.exe (Swift Media Entertainment, Inc. -> Blitz, Inc.) FirewallRules: [UDP Query User{B225F391-8FE6-44DE-8B53-25C7B116A0D8}C:\users\степа\appdata\local\programs\blitz\blitz.exe] => (Allow) C:\users\степа\appdata\local\programs\blitz\blitz.exe (Swift Media Entertainment, Inc. -> Blitz, Inc.) FirewallRules: [TCP Query User{3921A644-0DC4-4FCE-AA1C-F65057FCD1C9}L:\jedi fallen order\swgame\binaries\win64\starwarsjedifallenorder.exe] => (Allow) L:\jedi fallen order\swgame\binaries\win64\starwarsjedifallenorder.exe (Respawn Entertainment) [File not signed] FirewallRules: [UDP Query User{11C8FF6C-2D89-46BD-BC23-DDCE6E309C8B}L:\jedi fallen order\swgame\binaries\win64\starwarsjedifallenorder.exe] => (Allow) L:\jedi fallen order\swgame\binaries\win64\starwarsjedifallenorder.exe (Respawn Entertainment) [File not signed] FirewallRules: [{F215A29E-DB2F-4AB1-BA5F-B9B86F4E7E9F}] => (Allow) L:\Steam\steamapps\common\No Man's Sky\Binaries\NMS.exe (Hello Games) [File not signed] FirewallRules: [{024759AF-2726-4154-ACAD-C00F7608E2CA}] => (Allow) L:\Steam\steamapps\common\No Man's Sky\Binaries\NMS.exe (Hello Games) [File not signed] FirewallRules: [{CB552A22-BF43-4F7C-A31E-ABF924D17DEB}] => (Block) LPort=445 FirewallRules: [{2BA2F1B9-AA81-436A-9B2D-123CD7907A6E}] => (Block) LPort=445 FirewallRules: [{85232E0C-FE35-483E-856D-A0120546CABE}] => (Block) LPort=139 FirewallRules: [{7EF91AEC-895D-427A-9837-4C3CA63CB9D7}] => (Block) LPort=139 FirewallRules: [{078D2B1F-D1AE-41CB-B0DF-DBA29D3DB1CC}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Restore Points ========================= ==================== Faulty Device Manager Devices ============ Name: vgk Description: vgk Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: vgk Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ======================== Application errors: ================== Error: (08/31/2020 04:40:37 PM) (Source: VSS) (EventID: 12292) (User: ) Description: Ошибка теневого копирования тома: Ошибка при создании класса поставщика теневого копирования COM с CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070424, Указанная служба не установлена. ]. Операция: Получение интерфейса с возможностью вызова для данного поставщика Перечисление интерфейсов всех поставщиков, поддерживающих данный контекст Запрос теневых копий Контекст: Код поставщика: {b5946137-7b9f-4925-af80-51abd60b20d5} Код класса: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Контекст моментального снимка: 13 Контекст моментального снимка: 13 Контекст выполнения: Coordinator Error: (08/31/2020 04:40:37 PM) (Source: VSS) (EventID: 13) (User: ) Description: Информация теневого копирования тома: не удается запустить COM-сервер с CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} под именем SW_PROV. [0x80070424, Указанная служба не установлена. ] Операция: Получение интерфейса с возможностью вызова для данного поставщика Перечисление интерфейсов всех поставщиков, поддерживающих данный контекст Запрос теневых копий Контекст: Код поставщика: {b5946137-7b9f-4925-af80-51abd60b20d5} Код класса: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Контекст моментального снимка: 13 Контекст моментального снимка: 13 Контекст выполнения: Coordinator Error: (08/31/2020 04:38:14 PM) (Source: VSS) (EventID: 12292) (User: ) Description: Ошибка теневого копирования тома: Ошибка при создании класса поставщика теневого копирования COM с CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070424, Указанная служба не установлена. ]. Операция: Получение интерфейса с возможностью вызова для данного поставщика Перечисление интерфейсов всех поставщиков, поддерживающих данный контекст Запрос теневых копий Контекст: Код поставщика: {b5946137-7b9f-4925-af80-51abd60b20d5} Код класса: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Контекст моментального снимка: -1 Контекст моментального снимка: -1 Контекст выполнения: Coordinator Error: (08/31/2020 04:38:14 PM) (Source: VSS) (EventID: 13) (User: ) Description: Информация теневого копирования тома: не удается запустить COM-сервер с CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} под именем SW_PROV. [0x80070424, Указанная служба не установлена. ] Операция: Получение интерфейса с возможностью вызова для данного поставщика Перечисление интерфейсов всех поставщиков, поддерживающих данный контекст Запрос теневых копий Контекст: Код поставщика: {b5946137-7b9f-4925-af80-51abd60b20d5} Код класса: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Контекст моментального снимка: -1 Контекст моментального снимка: -1 Контекст выполнения: Coordinator Error: (08/31/2020 04:38:14 PM) (Source: VSS) (EventID: 12292) (User: ) Description: Ошибка теневого копирования тома: Ошибка при создании класса поставщика теневого копирования COM с CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070424, Указанная служба не установлена. ]. Операция: Получение интерфейса с возможностью вызова для данного поставщика Перечисление интерфейсов всех поставщиков, поддерживающих данный контекст Проверьте, поддерживается ли том поставщиком Добавление тома в набор теневых копий Контекст: Код поставщика: {b5946137-7b9f-4925-af80-51abd60b20d5} Код класса: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Контекст моментального снимка: 29 Контекст моментального снимка: 29 Контекст выполнения: Coordinator Код поставщика: {00000000-0000-0000-0000-000000000000} Имя тома: \\?\Volume{90797962-af3c-11ea-a720-8c89a5c892db}\ Контекст выполнения: Coordinator Error: (08/31/2020 04:38:14 PM) (Source: VSS) (EventID: 13) (User: ) Description: Информация теневого копирования тома: не удается запустить COM-сервер с CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} под именем SW_PROV. [0x80070424, Указанная служба не установлена. ] Операция: Получение интерфейса с возможностью вызова для данного поставщика Перечисление интерфейсов всех поставщиков, поддерживающих данный контекст Проверьте, поддерживается ли том поставщиком Добавление тома в набор теневых копий Контекст: Код поставщика: {b5946137-7b9f-4925-af80-51abd60b20d5} Код класса: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Контекст моментального снимка: 29 Контекст моментального снимка: 29 Контекст выполнения: Coordinator Код поставщика: {00000000-0000-0000-0000-000000000000} Имя тома: \\?\Volume{90797962-af3c-11ea-a720-8c89a5c892db}\ Контекст выполнения: Coordinator Error: (08/31/2020 04:38:14 PM) (Source: VSS) (EventID: 12292) (User: ) Description: Ошибка теневого копирования тома: Ошибка при создании класса поставщика теневого копирования COM с CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070424, Указанная служба не установлена. ]. Операция: Получение интерфейса с возможностью вызова для данного поставщика Перечисление интерфейсов всех поставщиков, поддерживающих данный контекст Запрос теневых копий Контекст: Код поставщика: {b5946137-7b9f-4925-af80-51abd60b20d5} Код класса: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Контекст моментального снимка: -1 Контекст моментального снимка: -1 Контекст выполнения: Coordinator Error: (08/31/2020 04:38:14 PM) (Source: VSS) (EventID: 13) (User: ) Description: Информация теневого копирования тома: не удается запустить COM-сервер с CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} под именем SW_PROV. [0x80070424, Указанная служба не установлена. ] Операция: Получение интерфейса с возможностью вызова для данного поставщика Перечисление интерфейсов всех поставщиков, поддерживающих данный контекст Запрос теневых копий Контекст: Код поставщика: {b5946137-7b9f-4925-af80-51abd60b20d5} Код класса: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Контекст моментального снимка: -1 Контекст моментального снимка: -1 Контекст выполнения: Coordinator System errors: ============= Error: (08/30/2020 11:21:55 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Ошибка установки: не удается установить следующее обновление из-за ошибки 0x80070663: Обновление для системы безопасности Microsoft Office 2013 (KB4484359) 32-разрядный выпуск. Error: (08/30/2020 11:21:53 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Ошибка установки: не удается установить следующее обновление из-за ошибки 0x80070663: Обновление для системы безопасности Microsoft Office 2013 (KB4484359) 32-разрядный выпуск. Error: (08/30/2020 11:21:52 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Ошибка установки: не удается установить следующее обновление из-за ошибки 0x80070663: Обновление для системы безопасности Microsoft Office 2013 (KB4484359) 32-разрядный выпуск. Error: (08/30/2020 11:21:52 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Ошибка установки: не удается установить следующее обновление из-за ошибки 0x80070663: Обновление для системы безопасности Microsoft Office 2013 (KB4484359) 32-разрядный выпуск. Error: (08/30/2020 11:21:51 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Ошибка установки: не удается установить следующее обновление из-за ошибки 0x80070663: Обновление для системы безопасности Microsoft Office 2013 (KB4484359) 32-разрядный выпуск. Error: (08/30/2020 11:21:51 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Ошибка установки: не удается установить следующее обновление из-за ошибки 0x80070663: Обновление для системы безопасности Microsoft Office 2013 (KB4484359) 32-разрядный выпуск. Error: (08/30/2020 11:21:51 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Ошибка установки: не удается установить следующее обновление из-за ошибки 0x80070663: Обновление для системы безопасности Microsoft Office 2013 (KB4484359) 32-разрядный выпуск. Error: (08/30/2020 12:30:54 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Ошибка установки: не удается установить следующее обновление из-за ошибки 0x80070663: Обновление для системы безопасности Microsoft Office 2013 (KB4484359) 32-разрядный выпуск. Windows Defender: =================================== Date: 2020-08-30 20:05:28.613 Description: Проверка, выполняемая Защитник Windows, была остановлена до полного завершения. ИД проверки:{23129978-3347-44EB-B296-D5431AFD3F03} Тип проверки:Антишпионская программа Параметры проверки:Быстрая проверка Пользователь:STEPA\Степа Date: 2018-09-23 22:12:50.725 Description: Проверка, выполняемая Защитник Windows, была остановлена до полного завершения. ИД проверки:{FA0D3208-123F-4451-833C-4AFAE8B7E3CD} Тип проверки:Антишпионская программа Параметры проверки:Быстрая проверка Пользователь:Степа-ПК\Степа Date: 2018-01-14 09:30:45.904 Description: Проверка, выполняемая Защитник Windows, была остановлена до полного завершения. ИД проверки:{8C154C46-8FDE-4F21-9AB1-DB2ED5583610} Тип проверки:Антишпионская программа Параметры проверки:Быстрая проверка Пользователь:NT AUTHORITY\NETWORK SERVICE Date: 2018-07-04 09:00:19.926 Description: При попытке Защитник Windows обновить подпись произошла ошибка. Новая версия подписи:1.271.442.0 Предыдущая версия подписи:1.269.1075.0 Источник обновления:Пользователь Тип подписи:Антишпионская программа Тип обновления:Разностное Пользователь:NT AUTHORITY\система Текущая версия подсистемы:1.1.15000.2 Предыдущая версия подсистемы:1.1.14901.4 Код ошибки:0x80070666 Описание ошибки:Уже установлена другая версия этого продукта. Продолжение установки невозможно. Для настройки конфигурации или удаления существующей версии продукта используйте значок "Установка и удаление программ" на панели управления . Date: 2018-07-04 09:00:19.925 Description: При попытке Защитник Windows обновить подсистему произошла ошибка. Новая версия подсистемы:1.1.15000.2 Предыдущая версия подсистемы:1.1.14901.4 Источник обновления:Пользователь Пользователь:NT AUTHORITY\система Код ошибки:0x80070666 Описание ошибки:Уже установлена другая версия этого продукта. Продолжение установки невозможно. Для настройки конфигурации или удаления существующей версии продукта используйте значок "Установка и удаление программ" на панели управления . CodeIntegrity: =================================== Date: 2020-07-31 23:39:27.105 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\UniteFx.dll because the set of per-page image hashes could not be found on the system. Date: 2020-07-17 23:13:55.406 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\WUDFRd.sys because the set of per-page image hashes could not be found on the system. Date: 2020-07-17 23:13:55.157 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\WUDFPf.sys because the set of per-page image hashes could not be found on the system. Date: 2020-07-17 23:13:54.782 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\WUDFRd.sys because the set of per-page image hashes could not be found on the system. Date: 2020-07-17 23:13:46.327 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\hamachi.sys because the set of per-page image hashes could not be found on the system. Date: 2020-07-17 23:13:46.140 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\ipnat.sys because the set of per-page image hashes could not be found on the system. Date: 2020-07-17 23:13:45.906 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\srv.sys because the set of per-page image hashes could not be found on the system. Date: 2020-07-17 23:13:44.424 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\srv2.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== BIOS: American Megatrends Inc. P1.60 06/17/2016 Motherboard: ASRock 970M Pro3 Processor: AMD FX-8320E Eight-Core Processor Percentage of memory in use: 56% Total physical RAM: 12260.38 MB Available physical RAM: 5390.96 MB Total Virtual: 24518.89 MB Available Virtual: 17210.09 MB ==================== Drives ================================ Drive c: (Система) (Fixed) (Total:222.98 GB) (Free:35.44 GB) NTFS Drive e: (Зарезервировано системой) (Fixed) (Total:0.34 GB) (Free:0.27 GB) NTFS ==>[system with boot components (obtained from drive)] Drive l: (Новый том) (Fixed) (Total:931.17 GB) (Free:540.25 GB) NTFS \\?\Volume{bff18ca5-af34-11ea-a6fe-806e6f6e6963}\ (Зарезервировано системой) (Fixed) (Total:0.59 GB) (Free:0.55 GB) NTFS ==================== MBR & Partition Table ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: A29FD37C) Partition 1: (Active) - (Size=600 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=223 GB) - (Type=07 NTFS) ========================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 00B2F7C9) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931.2 GB) - (Type=07 NTFS) ==================== End of Addition.txt =======================