"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6d29bb8b-f135-47e9-9ff9-392b06a68bf3}" => removed successfully 2021-10-02 23:23 - 2021-10-18 13:15 - 000000000 ____D C:\Program Files\dotnet at System.Windows.Forms.Clipboard.GetDataObject(Int32, Int32) Task: {bb2029d9-cbf0-4ee3-aa1b-fbafda7b399a} - no filepath Percentage of memory in use: 19% "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{53b08e97-673e-4df6-ae10-9a73f6648a6c}" => removed successfully HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp//go.microsoft.com/fwlink/p/?LinkId=255141 S4 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2109.6-0\NisSrv.exe [2855512 2021-10-24] (Microsoft Windows Publisher -> Microsoft Corporation) -> ) Please re-enable javascript to access full functionality. Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) (If an entry is included in the fixlist, it will be removed from the registry. Reason:0xC004F011 Faulting application start time: 0x01d7c8b23661392d 2021-10-04 10:59 - 2021-10-04 10:59 - 000000000 ____D C:\Tor Browser ========= End of CMD: ========= 2021-10-05 09:55 - 2021-10-08 09:32 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-10-02 23:25 - 2021-10-02 23:26 - 000000000 ____D C:\Windows\system32\1031 Task: {204d0e3a-f218-488d-b696-4b0f49357ce1} - no filepath Web- Request warranty service online - Request and check RMA status Business Support - Check warranty status by SN - Request and check RMA status Warranty Terms 3 years Service Center G.B.T., Inc. Task: {d7495c49-8426-461c-8455-350522fba9cb} - no filepath Task: {b30dbf6f-75b4-422c-82ed-f93cae0f7dec} - no filepath NVIDIA GeForce Experience 3.23.0.74 (HKLM\\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.23.0.74 - NVIDIA Corporation) 2021-10-24 13:01 - 2021-10-24 17:56 - 000000410 __RSH C:\ProgramData\ntuser.pol 2021-05-04 17:17 - 2021-05-04 17:17 - 000475648 _____ (GIGABYTE Technology Co.,Ltd.) (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <13> The following corrective action will be taken in 3 milliseconds: Restart the service. 2021-10-02 23:25 - 2021-10-04 18:19 - 000000000 ____D C:\Windows\system32\1046 2021-10-03 13:53 - 2021-10-03 13:53 - 000000000 ____D C:\Users\Pepega\AppData\Roaming\NVIDIA vs_clickoncesigntoolmsi (HKLM-x32\\{B00D9AE3-D2B9-4C16-AF48-B3AF4B46E67A}) (Version: 17.0.31703 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.30.30528 (HKLM-x32\\{97b4863e-6df5-4673-8f93-2a549b8a4a91}) (Version: 14.30.30528.0 - Microsoft Corporation) 2021-10-02 23:17 - 2021-10-24 09:40 - 000000000 ____D C:\Users\Pepega\AppData\Local\NVIDIA Corporation 2021-10-15 11:58 - 2021-10-15 11:58 - 000000000 ____D C:\Users\Pepega\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LDPlayer4 Task: {b3eb79cd-689d-4158-bea3-8771c38a327c} - no filepath Python 3.9.5 Standard Library (64-bit symbols) (HKLM\\{72FB8CF5-E7CB-4CD2-90B2-39ADC3483845}) (Version: 3.9.5150.0 - Python Software Foundation) Hidden 2021-10-07 17:52 - 2021-10-08 11:46 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-10-02 23:17 - 2021-10-02 23:18 - 000000000 ____D C:\Windows\SysWOW64\directx FF Extension: (Decentraleyes) - C:\Users\Pepega\AppData\Roaming\Mozilla\Firefox\Profiles\q42kwfcc.default-release\Extensions\jid1-BoFifL9Vbdl2zQ@jetpack.xpi [2021-10-05] Task: {d6cfa018-c9cc-40f6-8ae8-0b452b7908aa} - no filepath Resetting Anycast Address, OK! Process Name: C:\Users\Pepega\AppData\Local\Discord\app-1.0.9003\Discord.exe 2021-10-02 22:56 - 2021-10-24 19:38 - 000000000 ____D C:\ProgramData\NVIDIA 2021-10-02 22:55 - 2021-10-24 19:39 - 000000000 ____D C:\Users\Pepega\AppData\Local\ConnectedDevicesPlatform For more information please see the following:https://go.microsoft.com/fwlink/?linkid=37020&name=SettingsModifier:Win32/PossibleHostsFileHijack&threatid=14994&enterprise=0 icecap_collectionresources (HKLM-x32\\{D71337CA-4452-43D2-9583-45670FF77185}) (Version: 17.0.31709 - Microsoft Corporation) Hidden "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9b1a2e00-1c51-45d5-b5e4-9257d58cc2fe}" => removed successfully Security intelligence Version: AV: 1.351.958.0, AS: 1.351.958.0, NIS: 1.351.958.0 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation) C:\Users\Pepega\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Thing2.bat => moved successfully 2021-10-08 09:32 - 2021-10-08 09:32 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla WebA Customers may purchase an AORUS Extended Warranty at the time of registration for eligible product. Task: {7ef13d49-f1cb-4454-af1c-a7a9e880a031} - no filepath 2021-10-18 20:24 - 2021-10-20 14:48 - 000000000 ____D C:\Users\Pepega\AppData\Local\Downloaded Installations Description: Application: Update.exe 2021-10-24 20:41 - 2021-10-24 20:41 - 013884680 _____ (NortonLifeLock Inc.) C:\Users\Pepega\Downloads\NPE.exe 2021-10-16 20:39 - 2021-10-16 20:41 - 000000000 ____D C:\ProgramData\Adobe "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1539d558-2bfa-453d-a38e-aa8bbec05194}" => removed successfully HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp//go.microsoft.com/fwlink/p/?LinkId=255141 Python Launcher (HKLM-x32\\{B6EF11B6-0882-43B1-AA75-4D3BD32A144A}) (Version: 3.9.7427.0 - Python Software Foundation) WebGitHub Gist: star and fork oshalygin's gists by creating an account on GitHub. 2021-10-02 23:47 - 2021-10-02 23:47 - 000000000 ____D C:\Users\Pepega\AppData\Local\Steam HKLM\\StartupApproved\Run: => "SecurityHealth" "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8c4fdb45-99dd-42f3-8984-07e5f8dff7f4}" => removed successfully ***************** Task: {252c0390-ef87-47eb-805e-da800dd5671d} - no filepath 2021-10-02 23:46 - 2021-10-02 23:46 - 000000000 ____D C:\ProgramData\Blizzard Entertainment ============= FF ProfilePath: C:\Users\Pepega\AppData\Roaming\Mozilla\Firefox\Profiles\q42kwfcc.default-release [2021-10-24] Description: Error: Unable to rebuild performance counter setting from system backup store, error code is 2 2021-10-22 11:43 - 2021-10-22 12:31 - 000000000 ____D C:\Users\Pepega\AppData\Local\Riot Games "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{e21ec10f-b0f2-4d8c-ac9d-e74491370460}" => removed successfully 2021-10-13 08:53 - 2021-10-14 10:24 - 000000059 _____ C:\Users\Pepega\Desktop\big.txt Resetting , OK! C:\Windows\Temp\ASPNETSetup_00001.log => moved successfully Faulting module name: SinEx 4.2.0 BETA Woofer [All Winver].exe, version: 0.0.0.0, time stamp: 0x616e2119 Resetting , OK! Task: {c68b5818-129c-4160-9e29-1a8feeb737d8} - no filepath "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{098ef5b0-108d-4923-9d7d-021a97ef1fba}" => removed successfully Task: {8a8c9b4d-3ba3-4f5f-8da4-8714c002e24f} - no filepath Adobe Media Encoder 2021 (HKLM-x32\\AME_15_4_1) (Version: 15.4.1 - Adobe Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2021-10-16] (Adobe Inc. -> Adobe Systems) Task: {86c0c79f-566b-48c2-a517-d270146f5782} - no filepath HKU\S-1-5-21-326566074-3447909417-183555969-1001\\Run: [Windows Driver Installation Service] => C:\Windows\SysWOW64\Windows Driver Installation Service\Windows Driver Installation Service.exe "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{c4718da2-1857-4507-932c-28593e4e8294}" => removed successfully Date: 2021-10-24 13:02:27.034 2021-10-24 14:56 - 2019-03-19 15:52 - 000000000 ___HD C:\Program Files\WindowsApps "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{c68b5818-129c-4160-9e29-1a8feeb737d8}" => removed successfully 2021-10-13 22:14 - 2021-10-07 19:28 - 001597584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll Pepega (S-1-5-21-326566074-3447909417-183555969-1001 - Administrator - Enabled) => C:\Users\Pepega vs_CoreEditorFonts (HKLM-x32\\{E247EDC7-CB46-45AD-9F59-C5C339A006D9}) (Version: 17.0.31716 - Microsoft Corporation) Hidden "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3b6b25a5-1bf5-48bb-81f3-5e306db688ba}" => removed successfully Description: FirewallRules: [{c3fd991f-853b-41ba-b492-a58509655958}] => (Allow) C:\Program Files\ldplayerbox\LdVBoxHeadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -> Oracle Corporation) Adobe Premiere Pro 2021 (HKLM-x32\\PPRO_15_4_1) (Version: 15.4.1 - Adobe Inc.) 2021-10-13 22:14 - 2021-10-07 19:27 - 008722576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll Platform: Microsoft Windows 10 Pro Version 1909 18363.418 (X64) Language: English (United States) Category: Settings Modifier 2021-10-02 23:25 - 2021-10-04 18:19 - 000000000 ____D C:\Windows\system32\1055 \\?\Volume{7551d85d-c70c-448e-b08c-13d1c138506d}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 go to : C:\Program Files (x86)\GIGABYTE\AORUS LCD Panel Setting\Updater and run FWUpgrade.exe, you will see the progress and after completion, it will ask you to shutdown, click yes and the turn on the pc again. my os is win10 x64, 2004. goodluck. I have the 3090 and I do not see that folder. Task: {257fa8a3-d406-4d7e-99a9-c9e255f9f6f0} - no filepath "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{bc549475-73a3-47b9-8e8c-cce95c3b76c2}" => removed successfully Universal CRT Headers Libraries and Sources (HKLM-x32\\{6B56745A-F6A4-C51C-933A-AD96C00683EA}) (Version: 10.1.19041.685 - Microsoft Corporation) Hidden Network Binding: ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5292bbfbf575e2d2\nvshext.dll [2021-10-07] (Nvidia Corporation -> NVIDIA Corporation) It is the time when you shutdown not HKLM-x32\\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [781552 2021-10-16] (Adobe Inc. -> Adobe Inc.) Reboot: Task: {b7e27570-3f72-4ac2-b2ec-fd92b54c3a60} - no filepath Task: {6ee54cdc-f0d4-4cad-be32-be99498e56b8} - no filepath "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2a965443-ec13-4b75-abf9-394d697f739d}" => removed successfully Task: {410813e0-851c-472e-9a03-ef8f43a11e2b} - no filepath Task: {5594E525-77BA-4ACC-96A7-90740DA56E19} - System32\Tasks\NahimicSvc32Run => C:\Windows\SysWOW64\NahimicSvc32.exe [823304 2020-12-10] (A-Volute SAS -> Nahimic) 2021-10-15 11:58 - 2021-10-15 11:58 - 000000827 _____ C:\Users\Pepega\AppData\Roaming\Microsoft\Windows\Start Menu\LDPlayer4.lnk You currently have javascript disabled. Error: (10/24/2021 07:36:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp//go.microsoft.com/fwlink/?LinkId=54896 "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{cd558596-f4ee-4e6a-a00e-029783722e00}" => removed successfully 2021-10-16 20:39 - 2021-10-16 20:46 - 000000000 ____D C:\Program Files\Common Files\Adobe Resetting Global, OK! "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1e6a4e2b-eca4-4162-8baf-5e2cbc56f0a8}" => removed successfully Close the Dell Digital Delivery application. Windows Defender: CustomCLSID: HKU\S-1-5-21-326566074-3447909417-183555969-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Pepega\AppData\Local\Microsoft\OneDrive\21.170.0822.0002\amd64\FileSyncShell64.dll => No File ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal) The Corsair Service service terminated unexpectedly. ============================================== A If you have any question or concern about your RMA, please have your RMA reference number ready and contact our customer service at TEL: 1-626-8549338 Option 4, Hours: Mon-Fri 8:30 - 5:30 Pacific Time. Q How to purchase extended warranty service? A Customers may purchase an AORUS Extended Warranty at the time of registration for eligible product. 2021-10-14 10:50 - 2021-10-14 17:35 - 000001229 ____H C:\Users\Pepega\AppData\Local\d89b27a4d89b27a4d89b 2021-08-23 15:07 - 2021-08-23 15:07 - 000423936 _____ (TODO: ) [File not signed] C:\Program Files (x86)\GIGABYTE\RGBFusion\GvLedLib.dll Task: {46ee8f94-e240-420c-a5e8-0660f5c5f9e1} - no filepath "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16be7f3f-fa2f-44f1-b9e0-bb9be341d6ea}" => removed successfully CustomCLSID: HKU\S-1-5-21-326566074-3447909417-183555969-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Pepega\AppData\Local\Microsoft\OneDrive\21.170.0822.0002\amd64\FileSyncShell64.dll => No File "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{378659c1-e595-42d5-9357-395cbc08c53b}" => removed successfully Partition: GPT. HKLM\\StartupApproved\Run: => "WindowsDefender" Microsoft Windows Desktop Runtime - 5.0.11 (x64) (HKLM-x32\\{59d2a8eb-a667-428d-a393-42df4da226a4}) (Version: 5.0.11.30524 - Microsoft Corporation) System errors: 2021-10-20 14:50 - 2021-10-20 14:50 - 000017424 _____ (MICSYS Technology Co., LTd) C:\Windows\system32\Drivers\MsIo64.sys 0.0.0.0 watson.live.com CustomCLSID: HKU\S-1-5-21-326566074-3447909417-183555969-1001_Classes\CLSID\{20894375-46AE-46E2-BAFD-CB38975CDCE6}\InprocServer32 -> C:\Users\Pepega\AppData\Local\Microsoft\OneDrive\21.170.0822.0002\amd64\FileSyncShell64.dll => No File Task: {b44de6b6-1303-474b-bd1f-0c3e771de5d9} - no filepath VS Script Debugging Common (HKLM\\{9EC852BD-33D2-457C-99BB-ED3099B8176F}) (Version: 17.0.114.0 - Microsoft Corporation) Hidden 'Thing.bat' and 'Thing2.bat' are batch files that i wrote to try and kill 'Update.exe' and 'Windows Driver Installation Service.exe'. Task: {7d4dac2b-fbf4-45de-adae-6a9396b9ca9c} - no filepath 2021-10-02 22:55 - 2021-10-24 19:42 - 000049844 _____ C:\Windows\system32\PerfStringBackup.INI Task: {a68a203b-7eaa-4914-a565-5ff9759ae2a4} - no filepath vs_Graphics_Singletonx86 (HKLM-x32\\{7DDDDC70-9531-49E9-8002-9FAB2B87B54A}) (Version: 17.0.31710 - Microsoft Corporation) Hidden Resetting , OK! Anyway, here is the fixlog, I have no idea what anything in this means, and I dont know if it did what it was supposed to do or not. C:\WINDOWS\system32\*.tmp Task: {a68a203b-7eaa-4914-a565-5ff9759ae2a4} - no filepath 2021-10-02 23:44 - 2021-10-23 09:53 - 000000000 ____D C:\Program Files (x86)\Battle.net 0.0.0.0 oca.telemetry.microsoft.com.nsatc.net Task: {44e64ec2-07de-480c-b391-0e70d56ee3de} - no filepath at System.Windows.Forms.Clipboard.GetDataObject() Epic Online Services (HKLM-x32\\{32C68D93-D32F-4B01-8250-61642BFC22F8}) (Version: 2.0.28.0 - Epic Games, Inc.) 2021-10-13 22:14 - 2021-10-07 11:58 - 000085583 _____ C:\Windows\system32\nvinfo.pb "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{410813e0-851c-472e-9a03-ef8f43a11e2b}" => removed successfully Task: {73931e1e-d4e0-4d8f-9b0c-c332b70c4204} - no filepath Task: {964fea64-405c-411f-8d7c-f9b886d45580} - no filepath Task: {098ef5b0-108d-4923-9d7d-021a97ef1fba} - no filepath Task: {cefea723-c2e4-4ec0-b440-c45c5526fda8} - no filepath ==================== One month (created) (Whitelisted) ========= Task: {ca0fb10b-e917-4aa5-9e3a-f6a019682f3f} - no filepath Task: {1a105416-49db-4c94-a1d7-5a3597878e9a} - no filepath
Framingham Drug Bust, Articles T