Possibly infected PC

Solved
LeG -  
bazfile Posted messages 58485 Registration date   Status Moderator Last intervention   -
Good evening, I have a problem with my PC, I think it’s infected. Ever since I installed a crack from a website, it’s been lagging a lot. I can't get rid of it. Could someone help me please? Have a good evening.

1 answer

  1. bazfile Posted messages 58485 Registration date   Status Moderator Last intervention   20 266
     
    Hello,
    Download FRST once downloaded save it to the desktop then right-click on FRST and choose Run as administrator you will get this:

    Click on Analyze

    Attention, wait for the messages saying that the analysis is complete to appear



    At the end of the analysis, you will have two text files on the desktop FRST and Addition

    Then send the FRST and ADDITION reports to CJOINT see THIS TUTORIAL then provide the two links generated by Cjoint in your reply.

    --
    bazfile
    Moderator/Security Contributor.
    a hello, a reply, a thank you are always appreciated.
    0
    1. bazfile Posted messages 58485 Registration date   Status Moderator Last intervention   20 266 > LeG
       
      Your PC is not infected; you have "application hang" errors. See the details of the "application hang" errors at the end of the message. We can see that the launch of certain applications generated this problem. This error can be caused by several things: software or hardware problems, damaged system files, etc. Read this carefully https://www.malekal.com/erreurs-observateur-evenements-windows-10/#Application_hang paragraph Application hang

      Test your hard drive with CrystalDiskInfo. Use the color codes that follow to interpret the results; click on the image to enlarge:

      If the disk is damaged, there's no point in going any further.

      .
      There are also some errors that were caused by AVG software. If you are not using it, uninstall:
      - AVG Secure Browser
      - AVG Update Helper


      A small cleanup is needed; some things are outdated.

      Procedure to follow in the indicated order:

      1- Open FRST as an administrator. To do this, right-click on FRST and choose run as administrator
      2 - Copy the entire script found in the box below:
      Start::
      CreateRestorePoint:
      CloseProcesses:
      HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction
      HKU\S-1-5-21-3759430858-2062896490-526321863-1002\...\Run: [EpicGamesLauncher] => "A:\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent (No file)
      AlternateDataStreams: C:\Users\grego\Desktop\6.jpeg:3or4kl4x13tuuug3Byamue2s4b [95]
      AlternateDataStreams: C:\Users\grego\Desktop\6.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0]
      FirewallRules: [{477957A8-84F4-48F0-BF7A-DDE38C218E71}] => (Allow) G:\DOWNLOAD\DriversCloud.exe => No file
      FirewallRules: [{E554E489-2A3F-40A4-8D96-4EE7E675651E}] => (Allow) G:\DOWNLOAD\DriversCloud.exe => No file
      FirewallRules: [TCP Query User{96AF43B7-2670-4D45-B695-74829DBC0C30}A:\call of duty vanguard\vanguard.exe] => (Allow) A:\call of duty vanguard\vanguard.exe => No file
      FirewallRules: [UDP Query User{01614C62-5B0C-49E4-B263-2EF78D7E31D2}A:\call of duty vanguard\vanguard.exe] => (Allow) A:\call of duty vanguard\vanguard.exe => No file
      FirewallRules: [{D4716693-5104-432F-92B8-206F8926244A}] => (Allow) A:\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No file
      FirewallRules: [{816E3648-2864-4A4B-8146-A38D66DB9F29}] => (Allow) A:\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No file
      FirewallRules: [TCP Query User{70F40AB5-A529-4278-9734-5962A45C3769}F:\steamlibrary\steamapps\common\conan exiles\conansandbox\binaries\win64\conansandbox.exe] => (Allow) F:\steamlibrary\steamapps\common\conan exiles\conansandbox\binaries\win64\conansandbox.exe => No file
      FirewallRules: [UDP Query User{6FEB94E2-5244-40F4-896E-0F4CDF1E14DA}F:\steamlibrary\steamapps\common\conan exiles\conansandbox\binaries\win64\conansandbox.exe] => (Allow) F:\steamlibrary\steamapps\common\conan exiles\conansandbox\binaries\win64\conansandbox.exe => No file
      FirewallRules: [TCP Query User{D2101AE1-A394-460D-80D0-3CBD26841A86}C:\users\grego\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\grego\appdata\roaming\spotify\spotify.exe => No file
      FirewallRules: [UDP Query User{6DB0EA47-62E3-42BF-A523-C01C67205E2D}C:\users\grego\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\grego\appdata\roaming\spotify\spotify.exe => No file
      FirewallRules: [TCP Query User{F0BD9CF3-2FC5-4449-B073-4D9E3125086B}A:\call of duty black ops cold war\blackopscoldwar.exe] => (Allow) A:\call of duty black ops cold war\blackopscoldwar.exe => No file
      FirewallRules: [UDP Query User{56BFC901-89AE-4F79-8532-936B701425D3}A:\call of duty black ops cold war\blackopscoldwar.exe] => (Allow) A:\call of duty black ops cold war\blackopscoldwar.exe => No file
      FirewallRules: [TCP Query User{0F63CA54-CF3B-4346-A6D5-D64DFBCCE706}C:\users\grego\appdata\local\temp\rar$exa6040.49865\pro\utorrent.exe] => (Allow) C:\users\grego\appdata\local\temp\rar$exa6040.49865\pro\utorrent.exe => No file
      FirewallRules: [UDP Query User{23D5EE37-A7FA-4ABC-AB2E-C5D47E9FCC91}C:\users\grego\appdata\local\temp\rar$exa6040.49865\pro\utorrent.exe] => (Allow) C:\users\grego\appdata\local\temp\rar$exa6040.49865\pro\utorrent.exe => No file
      FirewallRules: [{8B073650-F4BD-4535-85BD-B1B83CEFE87E}] => (Allow) F:\Red Dead Redemption 2\RDR2.exe => No file
      FirewallRules: [{DF1668DD-5BB0-43FA-9517-27AC59B0FC15}] => (Allow) F:\Red Dead Redemption 2\RDR2.exe => No file

      EmptyTemp:
      End::

      3- Once the script is copied, click on Fix, FRST will automatically take the script from the clipboard.



      Let the fix be carried out. Once it is complete, you will be asked to restart your PC; do so as soon as prompted, see below.
      Then once your computer has restarted:
      4- You will have a Fixlog file on your desktop. Then send these reports to https://www.cjoint.com/, see this tutorial, then provide the link generated by Cjoint in your next message.

      Details of "application Hang" errors on your PC.

      ==================
      Error: (03/05/2022 07:21:12 PM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: The program FRST64.exe version 27.2.2022.0 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.

      Process ID: 2050

      Start time: 01d830bd1e400fef

      Stop time: 4

      Path to application: C:\Users\grego\Downloads\FRST64.exe

      Report ID: 46d48477-7616-4b93-9261-87ce1b1cb45e

      Faulty package full name:

      Faulty package application ID:

      Hang type: Unknown

      Error: (03/05/2022 07:17:05 PM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: The program SystemSettings.exe version 10.0.19041.1566 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.

      Process ID: 1e28

      Start time: 01d830a87574ffdc

      Stop time: 4294967295

      Path to application: C:\Windows\ImmersiveControlPanel\SystemSettings.exe

      Report ID: 162c0c24-b312-4807-a062-17e3c78efe05

      Faulty package full name: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy

      Faulty package application ID: microsoft.windows.immersivecontrolpanel

      Hang type: Quiesce

      Error: (03/05/2022 06:32:06 PM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: The program ModernWarfare.exe version 1.0.0.0 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.

      Process ID: 17c4

      Start time: 01d830aa0bfae2ec

      Stop time: 4294967295

      Path to application: F:\Call of Duty Modern Warfare\ModernWarfare.exe

      Report ID: 6261850b-3cca-45a9-adaf-e8e951d189e2

      Faulty package full name:

      Faulty package application ID:

      Hang type

      Error: (03/05/2022 06:31:39 PM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: The program explorer.exe version 10.0.19041.1566 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.

      Process ID: 1e14

      Start time: 01d830a85c6e2a60

      Stop time: 5313

      Path to application: C:\Windows\explorer.exe

      Report ID: 91f9b741-18c0-431b-92c2-92e0f5d9a39b

      Faulty package full name:

      Faulty package application ID:

      Hang type: Unknown

      Error: (03/05/2022 06:30:19 PM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: The program Discord.exe version 1.0.9004.0 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.

      Process ID: a8

      Start time: 01d830aff85dc132

      Stop time: 4294967295

      Path to application: C:\Users\grego\AppData\Local\Discord\app-1.0.9004\Discord.exe

      Report ID: f773571b-29c7-42d7-a220-9f72078ac224

      Faulty package full name:

      Faulty package application ID:

      Hang type: Top level window is idle

      Error: (03/05/2022 04:59:44 PM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: The program ModernWarfare.exe version 1.0.0.0 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.

      Process ID: 1b28

      Start time: 01d830a98754cad4

      Stop time: 4294967295

      Path to application: F:\Call of Duty Modern Warfare\ModernWarfare.exe

      Report ID: 7364e9f1-0dbd-4f36-a907-28a5325dee21

      Faulty package full name:

      Faulty package application ID:

      Hang type: Top level window is idle

      Error: (03/05/2022 04:55:33 PM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: The program ModernWarfare.exe version 1.0.0.0 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.

      Process ID: 2ebc

      Start time: 01d830a8b2d7872d

      Stop time: 4294967295

      Path to application: F:\Call of Duty Modern Warfare\ModernWarfare.exe

      Report ID: d4490073-681f-48ba-a5cf-3c20702fa069

      Faulty package full name:

      Faulty package application ID:

      Hang type: Top level window is idle

      Error: (03/05/2022 04:34:36 PM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: The program Battle.net.exe version 2.10.0.13335 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.

      Process ID: 291c

      Start time: 01d830a5b59c550f

      Stop time: 4294967295

      Path to application: G:\BLIZZARD\Battle.net\Battle.net.exe

      Report ID: 704df92d-2cee-41e5-a74a-2f38e7d3a18c

      Faulty package full name:

      Faulty package application ID:

      Hang type: Unknown
      0