Possibly infected PC
Solved
LeG
-
bazfile Posted messages 58485 Registration date Status Moderator Last intervention -
bazfile Posted messages 58485 Registration date Status Moderator Last intervention -
Good evening, I have a problem with my PC, I think it’s infected. Ever since I installed a crack from a website, it’s been lagging a lot. I can't get rid of it. Could someone help me please? Have a good evening.
1 answer
-
Hello,
Download FRST once downloaded save it to the desktop then right-click on FRST and choose Run as administrator you will get this:
Click on AnalyzeAttention, wait for the messages saying that the analysis is complete to appear
At the end of the analysis, you will have two text files on the desktop FRST and Addition
Then send the FRST and ADDITION reports to CJOINT see THIS TUTORIAL then provide the two links generated by Cjoint in your reply.
--
bazfile
Moderator/Security Contributor.
a hello, a reply, a thank you are always appreciated.-
Thank you for responding. Here are the two documents requested.
https://www.cjoint.com/c/LCfsBlxL6hb
https://www.cjoint.com/c/LCfsCoDxeab
Thank you. -
Your PC is not infected; you have "application hang" errors. See the details of the "application hang" errors at the end of the message. We can see that the launch of certain applications generated this problem. This error can be caused by several things: software or hardware problems, damaged system files, etc. Read this carefully https://www.malekal.com/erreurs-observateur-evenements-windows-10/#Application_hang paragraph Application hang
Test your hard drive with CrystalDiskInfo. Use the color codes that follow to interpret the results; click on the image to enlarge:
If the disk is damaged, there's no point in going any further.
.
There are also some errors that were caused by AVG software. If you are not using it, uninstall:
- AVG Secure Browser
- AVG Update Helper
A small cleanup is needed; some things are outdated.
Procedure to follow in the indicated order:
1- Open FRST as an administrator. To do this, right-click on FRST and choose run as administrator
2 - Copy the entire script found in the box below:Start::
CreateRestorePoint:
CloseProcesses:
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction
HKU\S-1-5-21-3759430858-2062896490-526321863-1002\...\Run: [EpicGamesLauncher] => "A:\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent (No file)
AlternateDataStreams: C:\Users\grego\Desktop\6.jpeg:3or4kl4x13tuuug3Byamue2s4b [95]
AlternateDataStreams: C:\Users\grego\Desktop\6.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0]
FirewallRules: [{477957A8-84F4-48F0-BF7A-DDE38C218E71}] => (Allow) G:\DOWNLOAD\DriversCloud.exe => No file
FirewallRules: [{E554E489-2A3F-40A4-8D96-4EE7E675651E}] => (Allow) G:\DOWNLOAD\DriversCloud.exe => No file
FirewallRules: [TCP Query User{96AF43B7-2670-4D45-B695-74829DBC0C30}A:\call of duty vanguard\vanguard.exe] => (Allow) A:\call of duty vanguard\vanguard.exe => No file
FirewallRules: [UDP Query User{01614C62-5B0C-49E4-B263-2EF78D7E31D2}A:\call of duty vanguard\vanguard.exe] => (Allow) A:\call of duty vanguard\vanguard.exe => No file
FirewallRules: [{D4716693-5104-432F-92B8-206F8926244A}] => (Allow) A:\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No file
FirewallRules: [{816E3648-2864-4A4B-8146-A38D66DB9F29}] => (Allow) A:\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No file
FirewallRules: [TCP Query User{70F40AB5-A529-4278-9734-5962A45C3769}F:\steamlibrary\steamapps\common\conan exiles\conansandbox\binaries\win64\conansandbox.exe] => (Allow) F:\steamlibrary\steamapps\common\conan exiles\conansandbox\binaries\win64\conansandbox.exe => No file
FirewallRules: [UDP Query User{6FEB94E2-5244-40F4-896E-0F4CDF1E14DA}F:\steamlibrary\steamapps\common\conan exiles\conansandbox\binaries\win64\conansandbox.exe] => (Allow) F:\steamlibrary\steamapps\common\conan exiles\conansandbox\binaries\win64\conansandbox.exe => No file
FirewallRules: [TCP Query User{D2101AE1-A394-460D-80D0-3CBD26841A86}C:\users\grego\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\grego\appdata\roaming\spotify\spotify.exe => No file
FirewallRules: [UDP Query User{6DB0EA47-62E3-42BF-A523-C01C67205E2D}C:\users\grego\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\grego\appdata\roaming\spotify\spotify.exe => No file
FirewallRules: [TCP Query User{F0BD9CF3-2FC5-4449-B073-4D9E3125086B}A:\call of duty black ops cold war\blackopscoldwar.exe] => (Allow) A:\call of duty black ops cold war\blackopscoldwar.exe => No file
FirewallRules: [UDP Query User{56BFC901-89AE-4F79-8532-936B701425D3}A:\call of duty black ops cold war\blackopscoldwar.exe] => (Allow) A:\call of duty black ops cold war\blackopscoldwar.exe => No file
FirewallRules: [TCP Query User{0F63CA54-CF3B-4346-A6D5-D64DFBCCE706}C:\users\grego\appdata\local\temp\rar$exa6040.49865\pro\utorrent.exe] => (Allow) C:\users\grego\appdata\local\temp\rar$exa6040.49865\pro\utorrent.exe => No file
FirewallRules: [UDP Query User{23D5EE37-A7FA-4ABC-AB2E-C5D47E9FCC91}C:\users\grego\appdata\local\temp\rar$exa6040.49865\pro\utorrent.exe] => (Allow) C:\users\grego\appdata\local\temp\rar$exa6040.49865\pro\utorrent.exe => No file
FirewallRules: [{8B073650-F4BD-4535-85BD-B1B83CEFE87E}] => (Allow) F:\Red Dead Redemption 2\RDR2.exe => No file
FirewallRules: [{DF1668DD-5BB0-43FA-9517-27AC59B0FC15}] => (Allow) F:\Red Dead Redemption 2\RDR2.exe => No file
EmptyTemp:
End::
3- Once the script is copied, click on Fix, FRST will automatically take the script from the clipboard.
Let the fix be carried out. Once it is complete, you will be asked to restart your PC; do so as soon as prompted, see below.
Then once your computer has restarted:
4- You will have a Fixlog file on your desktop. Then send these reports to https://www.cjoint.com/, see this tutorial, then provide the link generated by Cjoint in your next message.Details of "application Hang" errors on your PC.
==================Error: (03/05/2022 07:21:12 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program FRST64.exe version 27.2.2022.0 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.
Process ID: 2050
Start time: 01d830bd1e400fef
Stop time: 4
Path to application: C:\Users\grego\Downloads\FRST64.exe
Report ID: 46d48477-7616-4b93-9261-87ce1b1cb45e
Faulty package full name:
Faulty package application ID:
Hang type: Unknown
Error: (03/05/2022 07:17:05 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program SystemSettings.exe version 10.0.19041.1566 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.
Process ID: 1e28
Start time: 01d830a87574ffdc
Stop time: 4294967295
Path to application: C:\Windows\ImmersiveControlPanel\SystemSettings.exe
Report ID: 162c0c24-b312-4807-a062-17e3c78efe05
Faulty package full name: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy
Faulty package application ID: microsoft.windows.immersivecontrolpanel
Hang type: Quiesce
Error: (03/05/2022 06:32:06 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program ModernWarfare.exe version 1.0.0.0 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.
Process ID: 17c4
Start time: 01d830aa0bfae2ec
Stop time: 4294967295
Path to application: F:\Call of Duty Modern Warfare\ModernWarfare.exe
Report ID: 6261850b-3cca-45a9-adaf-e8e951d189e2
Faulty package full name:
Faulty package application ID:
Hang type
Error: (03/05/2022 06:31:39 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program explorer.exe version 10.0.19041.1566 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.
Process ID: 1e14
Start time: 01d830a85c6e2a60
Stop time: 5313
Path to application: C:\Windows\explorer.exe
Report ID: 91f9b741-18c0-431b-92c2-92e0f5d9a39b
Faulty package full name:
Faulty package application ID:
Hang type: Unknown
Error: (03/05/2022 06:30:19 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Discord.exe version 1.0.9004.0 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.
Process ID: a8
Start time: 01d830aff85dc132
Stop time: 4294967295
Path to application: C:\Users\grego\AppData\Local\Discord\app-1.0.9004\Discord.exe
Report ID: f773571b-29c7-42d7-a220-9f72078ac224
Faulty package full name:
Faulty package application ID:
Hang type: Top level window is idle
Error: (03/05/2022 04:59:44 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program ModernWarfare.exe version 1.0.0.0 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.
Process ID: 1b28
Start time: 01d830a98754cad4
Stop time: 4294967295
Path to application: F:\Call of Duty Modern Warfare\ModernWarfare.exe
Report ID: 7364e9f1-0dbd-4f36-a907-28a5325dee21
Faulty package full name:
Faulty package application ID:
Hang type: Top level window is idle
Error: (03/05/2022 04:55:33 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program ModernWarfare.exe version 1.0.0.0 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.
Process ID: 2ebc
Start time: 01d830a8b2d7872d
Stop time: 4294967295
Path to application: F:\Call of Duty Modern Warfare\ModernWarfare.exe
Report ID: d4490073-681f-48ba-a5cf-3c20702fa069
Faulty package full name:
Faulty package application ID:
Hang type: Top level window is idle
Error: (03/05/2022 04:34:36 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Battle.net.exe version 2.10.0.13335 has stopped interacting with Windows and has been closed. To see if more information about the problem is available, check the problem history in the Control Panel Security and Maintenance.
Process ID: 291c
Start time: 01d830a5b59c550f
Stop time: 4294967295
Path to application: G:\BLIZZARD\Battle.net\Battle.net.exe
Report ID: 704df92d-2cee-41e5-a74a-2f38e7d3a18c
Faulty package full name:
Faulty package application ID:
Hang type: Unknown
-