Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-04-2017 01
Ran by gabri (13-04-2025 16:48:08)
Running from C:\Users\gabri\Downloads
Windows 10 Pro Version 2009 (X64) (2025-01-26 21:44:49)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrador (S-1-5-21-578177175-4207696623-182477467-500 - Administrator -
Disabled)
DefaultAccount (S-1-5-21-578177175-4207696623-182477467-503 - Limited - Disabled)
gabri (S-1-5-21-578177175-4207696623-182477467-1001 - Administrator - Enabled) =>
C:\Users\gabri
Invitado (S-1-5-21-578177175-4207696623-182477467-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-578177175-4207696623-182477467-504 - Limited -
Disabled)
WsiAccount (S-1-5-21-578177175-4207696623-182477467-1002 - Limited - Disabled) =>
C:\Users\WsiAccount
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to
unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\uTorrent) (Version:
3.6.0.47178 - BitTorrent Limited)
Aimlabs (HKLM\...\Steam App 714010) (Version: - State Space Labs, Inc.)
Aplicación de NVIDIA 11.0.3.232 (HKLM\...\{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_Display.NvApp) (Version: 11.0.3.232 - NVIDIA Corporation)
Assetto Corsa (HKLM\...\Steam App 244210) (Version: - Kunos Simulazioni)
ASUS Ambient HAL (Version: 4.2.0.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS Ambient HAL (x32 Version: 4.2.0.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (x32 Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS Aura SDK (Version: 3.04.46 - ASUSTek COMPUTER INC.) Hidden
ASUS Framework Service (HKLM-x32\...\{339A6383-7862-46DA-8A9D-E84180EF9424})
(Version: 4.2.0.4 - ASUSTeK Computer Inc.)
ASUS Update Helper (x32 Version: 1.3.107.129 - ASUSTeK Computer Inc.) Hidden
AURA DRAM Component (Version: 1.1.27 - ASUS) Hidden
AURA DRAM Component (x32 Version: 1.1.27 - ASUS) Hidden
AURA lighting effect add-on (HKLM-x32\...\{1E2EA04B-FCA7-457E-B6F4-F33E1858E859})
(Version: 0.0.44 - ASUSTek COMPUTER INC.)
AURA lighting effect add-on x64 (HKLM\...\{C5A4A164-4428-4931-B728-96EEF0FA3C44})
(Version: 0.0.44 - ASUSTek COMPUTER INC.)
AURA Service (HKLM-x32\...\{5a78a7d3-44e9-4462-8796-3746f1c62cb8}) (Version:
3.07.54 - ASUSTeK Computer Inc.)
AURA Service (x32 Version: 3.07.54 - ASUSTeK Computer Inc.) Hidden
BakkesMod version 3.0 (HKLM\...\{BF029534-4334-4CFC-B771-50B7EE54346F}_is1)
(Version: 3.0 - BakkesMod)
Cheat Engine 7.5 (HKLM\...\Cheat Engine_is1) (Version: - Cheat Engine)
Counter-Strike 2 (HKLM\...\Steam App 730) (Version: - Valve)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 12.2.0.2264 - Disc Soft
Ltd)
Denuvo Anti-Cheat (HKLM\...\Denuvo Anti-Cheat) (Version: 6.5.0.4513 - Denuvo GmbH)
Discord (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\Discord) (Version:
1.0.9003 - Discord Inc.)
DixMax (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\
es.shufflex.dixmax.android) (Version: 2.4 - dixmax.shufflex.es)
EA app (HKLM-x32\...\{f70f2b69-1ea4-4bcd-acf5-e37b6bd0cbf0}) (Version:
13.428.0.5941 - Electronic Arts)
EA app (Version: 13.428.0.5941 - Electronic Arts) Hidden
EA SPORTS FC 25 (HKLM-x32\...\{E06B70DD-D5C9-458A-9518-2AE2C4C1AF34}) (Version: -
Electronic Arts, Inc.)
EA SPORTS FC™ 25 (HKLM\...\Steam App 2669320) (Version: - EA Canada & EA
Romania)
ENE RGB HAL (Version: 1.1.53.0 - Ene Tech.) Hidden
ENE RGB HAL (x32 Version: 1.1.53.0 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (Version: 1.0.13.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (x32 Version: 1.0.13.0 - ENE TECHNOLOGY INC.) Hidden
Epic Games Launcher (HKLM-x32\...\{94CF9B25-8425-4185-82A0-BBF3C6C957DC}) (Version:
1.3.128.0 - Epic Games, Inc.)
Epic Online Services (HKLM-x32\...\{C7D679C2-04A8-434A-8799-4C2F001388BE})
(Version: 2.9.0 - Epic Games, Inc.)
Euro Truck Simulator 2 (HKLM\...\Steam App 227300) (Version: - SCS Software)
Expeditions A MudRunner Game MULTi13 - ElAmigos versión 27.02.2025 (HKLM-x32\...\
{64104340-1914-4CF0-81A5-6224AB229416}_is1) (Version: 27.02.2025 - Focus
Entertainment)
Fishing Planet (HKLM\...\Steam App 380600) (Version: - Fishing Planet LLC)
FxSound (HKLM\...\{686221C2-D1C8-4EED-A285-5006FEFCAFF4}) (Version: 1.1.31.0 -
FxSound LLC)
GameSDK Service (HKLM-x32\...\{021d69c3-d686-4a94-8fb5-fd1ee782fb14}) (Version:
1.0.5.0 - ASUSTek COMPUTER INC.)
GameSDK Service (x32 Version: 1.0.5.0 - ASUSTek COMPUTER INC.) Hidden
GMenu (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\4ac46a8d-c0d4-56ee-
87f3-9abd4ce22e7f) (Version: 3.28.0 - AOC)
Google (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\
com.google.android.googlequicksearchbox) (Version: 16.6.28.ve.x86_64 -
android.google.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 135.0.7049.85 - Google LLC)
Google Partner Setup (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\
com.google.android.partnersetup) (Version: 100.652836256 - android.google.com)
Google Play Services for AR (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\
com.google.ar.core) (Version: 1.48.250340293 - ar.google.com)
Grand Theft Auto V Legacy (HKLM\...\Steam App 271590) (Version: - Rockstar North)
Intel Driver && Support Assistant (x32 Version: 25.2.15.9 - Intel) Hidden
Intel(R) Computing Improvement Program (HKLM\...\{3346E783-37FA-4DD6-BDE1-
1F428CF7CDBD}) (Version: 2.4.10965 - Intel Corporation)
Intel® Driver & Support Assistant (HKLM-x32\...\{27D11F0C-7F75-4104-A031-
E00C4E8CF190}) (Version: 25.2.15.9 - Intel)
Java 8 Update 441 (HKLM-x32\...\{77724AE4-039E-4CA4-87B4-2F32180441F0}) (Version:
8.0.4410.7 - Oracle Corporation)
JDownloader 2 (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\jdownloader2)
(Version: 2.0.240220 - AppWork GmbH)
Kingston AURA DRAM Component (Version: 1.1.36 - KINGSTON COMPONENTS INC.) Hidden
Kingston AURA DRAM Component (x32 Version: 1.1.36 - KINGSTON COMPONENTS INC.)
Hidden
Launcher Prerequisites (x64) (x32 Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version:
2025.3.696161 - Logitech)
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM-x32\...\{9d3fc73f-1cf4-412c-a1c9-
d2ad28ccbd62}) (Version: 6.0.36.34214 - Microsoft Corporation)
Microsoft .NET Runtime - 8.0.14 (x64) (HKLM-x32\...\{a6918640-3436-4607-9108-
9b6038e680d6}) (Version: 8.0.14.34611 - Microsoft Corporation)
Microsoft ASP.NET Core 8.0.14 - Shared Framework (x86) (HKLM-x32\...\{b4843496-
41d3-405c-b4c6-2ff39b7609ed}) (Version: 8.0.14.25112 - Microsoft Corporation)
Microsoft ASP.NET Core 9.0.3 - Shared Framework (x86) (HKLM-x32\...\{0bb286d3-7a8b-
4aeb-9f36-846a6ac85304}) (Version: 9.0.3.25112 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 135.0.3179.73 - Microsoft
Corporation)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473})
(Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-
51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-
6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-
38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-
C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-
F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\
{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft
Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-
B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\
{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft
Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\
{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft
Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\
{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft
Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\
{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft
Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\
{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft
Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\
{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft
Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\
{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft
Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34438 (HKLM-x32\...\
{b49c10dd-4d54-45f8-ad13-fa25704456a4}) (Version: 14.42.34438.0 - Microsoft
Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.42.34438 (HKLM-x32\...\
{ba10fda9-f731-441f-a999-000bbb7ceec2}) (Version: 14.42.34438.0 - Microsoft
Corporation)
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM-x32\...\{0532b8f2-12d7-43de-
95fc-7b87006758a8}) (Version: 6.0.36.34217 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.14 (x86) (HKLM-x32\...\{f70d61fa-5d61-4582-
bf8d-07dec8e4fcda}) (Version: 8.0.14.34613 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 9.0.3 (x86) (HKLM-x32\...\{b55c915b-e878-4b4d-
91cd-65e00b0f48c4}) (Version: 9.0.3.34613 - Microsoft Corporation)
MiniRoyale (HKLM\...\Steam App 1657090) (Version: - IndigoBlue)
NvCpl (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Controlador de audio HD 1.4.3.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.3.2 - NVIDIA Corporation)
NVIDIA Controlador de gráficos 572.83 (HKLM\...\{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_Display.Driver) (Version: 572.83 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.10920.35420203 (HKLM\...\{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.10920.35420203 - NVIDIA Corporation)
NVIDIA Software del sistema PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
NVIDIA USBC Driver 1.52.831.832 (HKLM\...\{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_USBC) (Version: 1.52.831.832 - NVIDIA Corporation)
Oracle VirtualBox 7.1.6 (HKLM\...\{08123D53-81FD-48DF-BDD1-64FC2B977919}) (Version:
7.1.6 - Oracle and/or its affiliates)
Outplayed (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\
Overwolf_cghphpbjeabdkomiphingnegihoigeggcfphdofo) (Version: 145.0.8326 - Overwolf
app)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.273.1.4 - Overwolf Ltd.)
Patriot Viper DRAM RGB (Version: 1.0.9.8 - Patriot Memory) Hidden
Patriot Viper DRAM RGB (x32 Version: 1.0.9.8 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (Version: 1.1.0.3 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (x32 Version: 1.1.0.3 - Patriot Memory) Hidden
Play Store (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\
com.android.vending) (Version: 45.1.12-31 [0] [PR] 729649519 - android.com)
PowerShell 7-preview-x64 (HKLM\...\{BD83E859-420D-425A-8AC6-AAC4737E58A9})
(Version: 7.6.0.3 - Microsoft Corporation)
PowerShell 7-x64 (HKLM\...\{D012DCD1-67EA-4627-938F-19FD677FC03A}) (Version:
7.5.0.0 - Microsoft Corporation)
Pur Video Player (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\
com.asizesoft.pvp.android) (Version: 1.8.8 - pvp.asizesoft.com)
Python 3.13.2 (64-bit) (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\
{2f6912bf-a96d-496e-9d97-7d9b771df28d}) (Version: 3.13.2150.0 - Python Software
Foundation)
Python 3.13.2 Core Interpreter (64-bit) (Version: 3.13.2150.0 - Python Software
Foundation) Hidden
Python 3.13.2 Development Libraries (64-bit) (Version: 3.13.2150.0 - Python
Software Foundation) Hidden
Python 3.13.2 Documentation (64-bit) (Version: 3.13.2150.0 - Python Software
Foundation) Hidden
Python 3.13.2 Executables (64-bit) (Version: 3.13.2150.0 - Python Software
Foundation) Hidden
Python 3.13.2 pip Bootstrap (64-bit) (Version: 3.13.2150.0 - Python Software
Foundation) Hidden
Python 3.13.2 Standard Library (64-bit) (Version: 3.13.2150.0 - Python Software
Foundation) Hidden
Python 3.13.2 Tcl/Tk Support (64-bit) (Version: 3.13.2150.0 - Python Software
Foundation) Hidden
Python 3.13.2 Test Suite (64-bit) (Version: 3.13.2150.0 - Python Software
Foundation) Hidden
Python Launcher (HKLM-x32\...\{C7213DDA-56FA-4C9E-BA0C-1C907366F456}) (Version:
3.13.2150.0 - Python Software Foundation)
R.E.P.O. (HKLM\...\Steam App 3241660) (Version: - semiwork)
Remove Empty Directories version 2.2 (HKLM-x32\...\{06F25DC8-71E2-44E2-805A-
F15E15B51C74}_is1) (Version: 2.2 - Jonas John)
Riot Client (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\Riot Game
Riot_Client.) (Version: - Riot Games, Inc)
Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version:
1.0.102.2423 - Rockstar Games)
Rockstar Games SDK (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.4.0.71 -
Rockstar Games)
ROG Live Service (HKLM\...\{2D87BFB6-C184-4A59-9BBE-3E20CE797631}) (Version:
2.4.26.0 - ASUSTek COMPUTER INC.)
Rogue Company (HKLM\...\Steam App 872200) (Version: - First Watch Games)
Screen+ (HKLM-x32\...\Screen+) (Version: 0.0.6.0 - AOC)
Servicios de Google Play (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\
com.google.android.gms) (Version: 25.07.33 (190800-728382230) - android.google.com)
Spotify (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\Spotify) (Version:
1.2.60.564.gcc6305cb - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Thunderstore Mod Manager (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\
Overwolf_ahpflogoookodlegojjphcjpjaejgghjnfcdjdmi) (Version: 1.80.0 - Overwolf app)
Tom Clancy's Rainbow Six Siege (HKLM\...\Steam App 359550) (Version: - Ubisoft
Montreal)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 152.0.11052 - Ubisoft)
UE4 Prerequisites (x64) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (x32 Version: 1.0.14.0 - Epic Games, Inc.) Hidden
Universal Holtek RGB DRAM (Version: 1.0.0.7 - PD) Hidden
Universal Holtek RGB DRAM (x32 Version: 1.0.0.7 - PD) Hidden
VALORANT (HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\Riot Game
valorant.live) (Version: - Riot Games, Inc)
Voicemod (HKLM\...\{8435A407-F778-4647-9CDB-46E5EC50BAD0}_is1) (Version: 2.51.1.0 -
Voicemod, Inc., Sucursal en España)
WD_BLACK AN1500 (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK AN1500 (x32 Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
WebView2 Runtime de Microsoft Edge (x32 Version: 135.0.3179.73 - Microsoft
Corporation) Hidden
WinRAR 7.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH)
Wondershare Filmora 14(Build 14.3.2.11147) (HKU\S-1-5-21-578177175-4207696623-
182477467-1001\...\Wondershare Filmora 14_is1) (Version: - Wondershare Software)
Wondershare NativePush(Build 1.1.0.0) (HKU\S-1-5-21-578177175-4207696623-182477467-
1001\...\Wondershare NativePush_is1) (Version: - Wondershare Software)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The
file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-578177175-4207696623-182477467-1001_Classes\CLSID\
{14100442-9664-1407-2647-000000000000}\localserver32 -> C:\Users\gabri\AppData\
Local\Wondershare\Wondershare NativePush\WsToastNotification.exe (Wondershare)
CustomCLSID: HKU\S-1-5-21-578177175-4207696623-182477467-1001_Classes\CLSID\
{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-578177175-4207696623-182477467-1001_Classes\CLSID\
{89b2b650-c4dd-d68b-46e7-3176f1973c8b}\localserver32 -> C:\Program Files\Voicemod
Desktop\VoicemodDesktop.exe (Voicemod)
CustomCLSID: HKU\S-1-5-21-578177175-4207696623-182477467-1001_Classes\CLSID\
{BEA218D2-6950-497B-9434-61683EC065FE}\InprocServer32 -> C:\Users\gabri\AppData\
Local\Programs\Python\Launcher\pyshellext.amd64.dll (Python Software Foundation)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The
file will not be moved unless listed separately.)
Task: {023A6A90-6810-4BBD-8F9E-AFF9981BD6A4} - System32\Tasks\Microsoft\Windows\
LanguageComponentsInstaller\ReconcileLanguageResources
Task: {036FA9DB-5268-4D2F-BADF-62ED3CE612F9} - System32\Tasks\
USER_ESRV_SVC_QUEENCREEK => powershell -Command "Start-Process -WindowStyle Hidden
task.bat"
Task: {053354A1-BDC4-419C-89B7-EC01731AF165} - System32\Tasks\Microsoft\Windows\
InstallService\WakeUpAndScanForUpdates
Task: {086B6188-FDC7-406C-9AC7-C9B32B6E7716} - System32\Tasks\Microsoft\Windows\
InstallService\SmartRetry
Task: {0A18F0F5-0A91-4636-A2B5-0D88BFC4B1C3} - System32\Tasks\Microsoft\Windows\
Data Integrity Scan\Data Integrity Check And Scan
Task: {0B0CF470-5BD9-4D16-A3EA-372935E8F53A} - System32\Tasks\Microsoft\Windows\
UpdateOrchestrator\UIEOrchestrator => C:\WINDOWS\system32\UIEOrchestrator.exe
[2025-01-29] ()
Task: {0C9E24B1-FA69-4154-B7F3-041454657229} - System32\Tasks\Microsoft\Windows\
WlanSvc\CDSSync
Task: {0EEE7F7C-5414-4CA7-A534-C2F2E0A8738F} - System32\Tasks\Microsoft\Windows\
ExploitGuard\ExploitGuard MDM policy Refresh
Task: {0F969002-B01E-4248-A863-E567A3CBF968} - System32\Tasks\Microsoft\Windows\
Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows
Defender\Platform\4.18.25030.2-0\MpCmdRun.exe [2025-04-10] (Microsoft Corporation)
Task: {14009D62-42B3-4D3E-B6BD-6CDDEFE12190} - System32\Tasks\Microsoft\Windows\
Containers\CmCleanup
Task: {1ADC697A-24A7-4976-BDF2-26642DD9EDFF} - System32\Tasks\Microsoft\Windows\
Shell\UpdateUserPictureTask
Task: {219E9632-FEE2-4630-8187-1E6B07139576} - System32\Tasks\ASUS\Framework
Service => C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe [2024-08-
13] (ASUSTeK COMPUTER INC.)
Task: {222B1E40-DFB7-4001-B965-BB6BFDB425F9} - System32\Tasks\Microsoft\Windows\
DeviceDirectoryClient\RegisterDeviceProtectionStateChanged
Task: {22363D07-70CC-4BA4-AC3A-F273D8FFD9CE} - System32\Tasks\
CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NoUACCheck
Task: {2273CC53-20C0-46E1-87CE-1DA662FDABDB} - System32\Tasks\Microsoft\Windows\
Chkdsk\SyspartRepair => C:\WINDOWS\system32\bcdboot.exe [2025-03-19] (Microsoft
Corporation)
Task: {23E474A8-C7B5-465B-A9AC-E9842CCE4CE3} - System32\Tasks\NVIDIA App
SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA
Corporation\NVIDIA App\CEF\NVIDIA App.exe [2025-04-07] (NVIDIA Corporation)
Task: {2B3F3EC4-388B-4E73-975E-DC8FCEE75F50} - System32\Tasks\Overwolf Updater Task
=> C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2025-03-31]
(Overwolf LTD)
Task: {31E02121-AA4E-4A22-8B38-0869791D7392} - System32\Tasks\Microsoft\Windows\
Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows
Defender\Platform\4.18.25030.2-0\MpCmdRun.exe [2025-04-10] (Microsoft Corporation)
Task: {33633593-08C9-463E-B57F-0DABB42098C5} - System32\Tasks\Microsoft\Windows\
Management\Provisioning\MdmDiagnosticsCleanup => C:\WINDOWS\system32\
MdmDiagnosticsTool.exe [2025-03-19] (Microsoft Corporation)
Task: {33EA5EE4-D3AB-4880-A784-C61CD2ECD64D} - System32\Tasks\
MicrosoftEdgeUpdateTaskMachineUA{AAA2B29C-A464-4A29-9293-77E2C78761AD} => C:\
Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2021-08-05]
(Microsoft Corporation) <==== ATTENTION
Task: {34302CB6-1B34-4AC0-B652-672CDD164780} - System32\Tasks\Microsoft\Windows\
Workplace Join\Device-Sync
Task: {378F6015-0185-4BB2-B3BF-618ECB692C57} - System32\Tasks\Microsoft\Windows\
PushToInstall\Registration => Sc.exe start pushtoinstall registration
Task: {386A631A-CAE3-48DE-ACFE-3137D4CD1C61} - System32\Tasks\microsoft\windows\
input\syncpensettings
Task: {3BD251DE-5AE3-47F0-B9D1-23E3269284B8} - System32\Tasks\MSIAfterburner => C:\
Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
Task: {3F2A48F6-832E-47A1-A068-EB4A941D3017} - System32\Tasks\Microsoft\Windows\
Flighting\FeatureConfig\BootstrapUsageDataReporting
Task: {4871DBF2-8258-404E-8FB0-9C9BF97044D2} - System32\Tasks\ASUS\
ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [2025-
01-23] (ASUSTeK Computer Inc.) <==== ATTENTION
Task: {497E1A38-F975-4158-A775-2A3EB053F644} - System32\Tasks\Microsoft\Windows\
InstallService\RestoreDevice
Task: {4C15DAD2-FCFA-40CF-8C21-3E6BB41CB2AC} - System32\Tasks\Microsoft\Windows\
AppxDeploymentClient\UCPD velocity => C:\WINDOWS\system32\UCPDMgr.exe [2025-01-29]
(Microsoft Corporation)
Task: {4DF6787F-8F41-49CF-B76B-E52BAA2BFAFE} - System32\Tasks\IntelSURQC-Upgrade-
86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\
Updater\bin\IntelSoftwareAssetManagerService.exe [2024-11-18] (Intel Corporation)
Task: {4E37D925-1F54-4C39-BA2D-654395EC2186} - System32\Tasks\Microsoft\Windows\
Application Experience\PcaPatchDbTask => Rundll32.exe %windir%\system32\
PcaSvc.dll,PcaPatchSdbTask
Task: {4E98E762-C645-4C7E-A82C-EB49D2A3F592} - System32\Tasks\Microsoft\Windows\
CloudRestore\Restore
Task: {4FC46F25-7FDF-4C98-96D7-F618E296EF8C} - System32\Tasks\ASUS\
ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\
ArmourySocketServer\ArmourySocketServer.exe [2024-08-13] (ASUS)
Task: {5297A9C1-50B4-4FAF-B986-96493046DA3F} - System32\Tasks\Microsoft\Windows\
Printing\PrinterCleanupTask
Task: {53F72FF9-4DB7-4FAB-BB8A-A635EB34E10F} - System32\Tasks\Microsoft\Windows\
InstallService\ScanForUpdatesAsUser
Task: {5594B173-58B2-4399-8A0F-7FFA5C10223E} - System32\Tasks\IntelSURQC-Upgrade-
86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\
QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [2024-11-18] (Intel
Corporation)
Task: {595751A3-EE52-4A13-89A3-1951946DF08B} - System32\Tasks\Microsoft\Windows\
ConsentUX\UnifiedConsent\UnifiedConsentSyncTask
Task: {5B059E26-35C9-42E7-A9B2-80B5AFFE86B7} - System32\Tasks\Microsoft\Windows\
EDP\EDP Inaccessible Credentials Task
Task: {5BF16BC3-7981-45DF-93F4-420EC4EDEB9E} - System32\Tasks\Microsoft\Windows\
DeviceDirectoryClient\RegisterDeviceWnsFallback
Task: {5C97977F-B8A8-4D0F-B6F6-BA4C8E2F2B7D} - System32\Tasks\Microsoft\Windows\
Flighting\FeatureConfig\UsageDataReporting
Task: {5CED9E51-FA65-4A22-AC1A-5FB37B6EB080} - System32\Tasks\Intelligent
StandbyList Cleaner => C:\Users\gabri\Downloads\ISLC v1.0.3.4\Intelligent standby
list cleaner ISLC.exe
Task: {5E601133-3AB3-43A4-833E-1B9C41DF1CEF} - System32\Tasks\Microsoft\Windows\
Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\
Windows Defender\Platform\4.18.25030.2-0\MpCmdRun.exe [2025-04-10] (Microsoft
Corporation)
Task: {61012F9B-FFD6-4E36-BD45-42CE5AC83FC1} - System32\Tasks\Microsoft\Windows\
Application Experience\MareBackup => %windir%\system32\compattelrunner.exe
Task: {61014571-FEE0-459A-99D6-DE84F00D0DF9} - System32\Tasks\Microsoft\Windows\
BrokerInfrastructure\BgTaskRegistrationMaintenanceTask
Task: {623E8262-63F5-4D54-B90B-09D21A347C4B} - System32\Tasks\Microsoft\Windows\
Shell\ThemesSyncedImageDownload
Task: {67121E94-8B59-4246-A2CE-D5C90ED9C316} - System32\Tasks\Microsoft\Windows\
WlanSvc\MoProfileManagement
Task: {67EF6835-2426-4F8E-98DF-E26F2D630481} - System32\Tasks\Microsoft\Windows\
Flighting\FeatureConfig\UsageDataFlushing
Task: {694CFE9E-EF92-4F44-880A-613DBB5A32F1} - System32\Tasks\Microsoft\Windows\
Printing\PrintJobCleanupTask
Task: {6B549F30-9F73-486A-9FFB-D9A4B9B0B516} - System32\Tasks\Microsoft\Windows\
Sustainability\PowerGridForecastTask
Task: {6E9522D4-5ECB-478B-90ED-91561B8D4524} - System32\Tasks\Microsoft\Windows\
SharedPC\Account Cleanup
Task: {730947A5-753E-4D67-8F64-4AC1FEA62B46} - System32\Tasks\Microsoft\Windows\
BitLocker\BitLocker MDM policy Refresh
Task: {795AA1E2-213C-4513-BAF8-AE0D3272830C} - System32\Tasks\ASUS\
AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\
AcPowerNotification\AcPowerNotification.exe [2024-08-13] (ASUS)
Task: {824A786C-8D14-4BD5-AE7C-61CCDB4CEEFE} - System32\Tasks\Microsoft\Windows\
International\Synchronize Language Settings
Task: {82DAFA0C-A629-4274-BF60-8E7C50C749B6} - System32\Tasks\Microsoft\Windows\
Subscription\LicenseAcquisition => C:\WINDOWS\system32\ClipRenew.exe [2025-03-19]
(Microsoft Corporation)
Task: {8556AE5F-6E6E-4E81-A6C3-DBAE39B104FE} - System32\Tasks\ASUS\
P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\
ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe
Task: {863CD78A-0758-4D73-9995-73195045DAEE} - System32\Tasks\Microsoft\Windows\
Kernel\La57Cleanup => C:\WINDOWS\system32\la57setup.exe [2025-01-26] (Microsoft
Corporation)
Task: {87555B29-C0C2-44E3-87F3-A0BD06278F9E} - System32\Tasks\Microsoft\Windows\
UNP\RunUpdateNotificationMgr => C:\WINDOWS\System32\UNP\UpdateNotificationMgr.exe
[2025-03-19] (Microsoft Corporation)
Task: {883B6E09-8B8D-4FB9-A47B-13980F5F3D65} - System32\Tasks\Microsoft\Windows\
Subscription\EnableLicenseAcquisition => C:\WINDOWS\system32\ClipRenew.exe [2025-
03-19] (Microsoft Corporation)
Task: {89CB1F37-7249-46BB-8136-2A842FD64BCE} - System32\Tasks\Microsoft\Windows\
Printing\EduPrintProv => C:\WINDOWS\system32\eduprintprov.exe [2025-01-29]
(Microsoft Corporation)
Task: {8AEB6549-1BDB-4B07-B232-F4D033D4CB78} - System32\Tasks\Microsoft\Windows\
Servicing\OOBEFodSetup => C:\WINDOWS\system32\OOBEFodSetup.exe [2025-01-26]
(Microsoft Corporation)
Task: {8D51FC39-7A4E-40C3-BA08-FD4D2289F857} - System32\Tasks\Microsoft\Windows\
AppListBackup\BackupNonMaintenance
Task: {8E536D53-A939-4E65-8879-92AA10E1D508} - System32\Tasks\Microsoft\Windows\
Clip\LicenseImdsIntegration => C:\WINDOWS\system32\fclip.exe [2025-03-19]
(Microsoft Corporation)
Task: {95425085-1A14-4B85-9028-E50D0FC160B4} - System32\Tasks\Microsoft\Windows\
WindowsUpdate\Refresh Group Policy Cache
Task: {A00416EE-51A9-4A19-845A-5E6B88662E70} - System32\Tasks\Microsoft\Windows\
EDP\StorageCardEncryption Task
Task: {AE889AF2-B6E2-4941-8C89-FCD4EB658F9B} - System32\Tasks\Microsoft\Windows\
UpdateOrchestrator\UUS Failover Task => C:\WINDOWS\System32\MLEngineStub.exe [2025-
01-29] (Microsoft Corporation)
Task: {B1FCC4F0-C819-48DF-BFC9-235C7C6C291A} - System32\Tasks\GoogleSystem\
GoogleUpdater\GoogleUpdaterTaskSystem137.0.7115.0{6B7E55D2-9310-4C60-9926-
66ACEB60ACF5} => C:\Program Files (x86)\Google\GoogleUpdater\137.0.7115.0\
updater.exe [2025-04-08] (Google LLC) <==== ATTENTION
Task: {B2301A61-DA96-4438-AF41-9B8864D59F67} - System32\Tasks\Microsoft\Windows\
InstallService\ScanForUpdates
Task: {B2FEAD89-04EB-4ED0-A170-01F547834BE8} - System32\Tasks\Microsoft\Windows\
Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\
Windows Defender\Platform\4.18.25030.2-0\MpCmdRun.exe [2025-04-10] (Microsoft
Corporation)
Task: {B3257D3C-F184-4C59-9980-3B3B15ECFA8E} - System32\Tasks\
MicrosoftEdgeUpdateTaskMachineCore{C2ACE1E1-4D03-4E78-843F-54EDB057DA1E} => C:\
Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2021-08-05]
(Microsoft Corporation) <==== ATTENTION
Task: {B385CC07-5D33-4329-847E-1231807E3A1A} - System32\Tasks\Microsoft\Windows\
Management\Autopilot\RemediateHardwareChange
Task: {B5842524-7870-47B4-B50B-AB18CE4BB63B} - System32\Tasks\Microsoft\Windows\
PushToInstall\LoginCheck => Sc.exe start pushtoinstall login
Task: {B86F17B7-0298-4679-9BEA-3567E58A7D51} - System32\Tasks\Microsoft\Windows\
Application Experience\SdbinstMergeDbTask => C:\WINDOWS\system32\sdbinst.exe [2025-
03-19] (Microsoft Corporation)
Task: {B8AE930D-D1A3-4BE8-A42B-51308A375CB8} - System32\Tasks\Microsoft\Windows\
Network Connectivity Status Indicator\NcsiIdentifyUserProxies
Task: {B8DEC486-8231-41C5-9109-D7ACDA5A5692} - System32\Tasks\microsoft\windows\
capabilityaccessmanager\maintenancetasks => Rundll32.exe %windir%\system32\
CapabilityAccessManager.dll,CapabilityAccessManagerDoStoreMaintenance
Task: {BA203418-2685-4D01-92A0-BF444CF758EE} - System32\Tasks\Microsoft\Windows\
Location\Notifications => %windir%\System32\LocationNotificationWindows.exe
Task: {BAAD3A4A-D43E-4282-8FF8-DB4C1FE0D633} - System32\Tasks\Microsoft\Windows\
Shell\ThemeAssetTask_SyncFODState
Task: {C4976E90-6B5C-45B9-ACA5-7F5CC2044584} - System32\Tasks\Microsoft\Windows\
USB\Usb-Notifications
Task: {C5B41A1D-9B4A-40B1-90E2-576692C9043D} - System32\Tasks\Microsoft\Windows\
AppListBackup\Backup
Task: {C8C17542-0160-4524-8427-B08DDA9940E7} - System32\Tasks\Microsoft\Windows\
Sustainability\SustainabilityTelemetry
Task: {CB0BC922-D9B1-412C-843D-C3FAD889A1CD} - System32\Tasks\Microsoft\Windows\
TPM\Tpm-PreAttestationHealthCheck
Task: {CCDF2739-12DF-4239-8656-1579FDB32290} - System32\Tasks\Microsoft\Windows\
Flighting\FeatureConfig\ReconcileFeatures
Task: {D1211565-C8D3-4652-94F0-E7177DB88C70} - System32\Tasks\Microsoft\Windows\
Diagnosis\UnexpectedCodepath => C:\WINDOWS\system32\UCConfigTask.exe [2025-03-19]
()
Task: {D2E8BEB4-6AC1-4881-8DAD-33150CE72101} - System32\Tasks\Microsoft\Windows\
WaaSMedic\PerformRemediation
Task: {D3E18E57-AFF2-40EE-9FFA-F0EA32AAE5CD} - System32\Tasks\Microsoft\Windows\
Flighting\FeatureConfig\ReconcileConfigs
Task: {D4CAFB46-93D5-4E18-AA3D-20DE8826C425} - System32\Tasks\Microsoft\Windows\
InstallService\WakeUpAndContinueUpdates
Task: {D6202CD9-DA83-4CCD-8770-2D23C3500179} - System32\Tasks\Microsoft\Windows\
WwanSvc\OobeDiscovery
Task: {D9E8C92C-8501-4B77-B2A6-61C954176B60} - System32\Tasks\Microsoft\Windows\
CloudRestore\Backup
Task: {DB668C31-1324-4A15-85EA-0405D4E765DD} - System32\Tasks\Microsoft\Windows\
DirectX\DirectXDatabaseUpdater => C:\WINDOWS\system32\directxdatabaseupdater.exe
[2025-01-29] (Microsoft Corporation)
Task: {E514D19D-6BC0-4298-A90D-AA41B59396A1} - System32\Tasks\Microsoft\Windows\
StateRepository\MaintenanceTasks => Rundll32.exe %windir%\system32\
Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks
Task: {E5DAFE8A-DA05-457C-8C66-DB5A71445323} - System32\Tasks\Microsoft\Windows\
Flighting\OneSettings\RefreshCache
Task: {E9FDE5C7-06DA-4076-AEC7-02A5487C4DA3} - System32\Tasks\Microsoft\Windows\
Diagnosis\RecommendedTroubleshootingScanner
Task: {EA454F25-D763-42A3-B501-5F741CAA5BB8} - System32\Tasks\Microsoft\Windows\
Management\Autopilot\DetectHardwareChange
Task: {EC4E1419-ADE4-4C7B-B3E1-C4DE54F3DBA8} - System32\Tasks\Microsoft\Windows\
PerformanceTrace\RequestTrace
Task: {EE772226-1162-41A0-881E-BF27E0E13F17} - System32\Tasks\FxSound\Update => C:\
Program Files\FxSound LLC\FxSound\updater.exe [2025-03-08] (FxSound LLC)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\
UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe
Task: {F449940A-F863-4436-87DD-962B5295EB2F} - System32\Tasks\Microsoft\Windows\
BitLocker\BitLocker Encrypt All Drives
Task: {F49854D8-60F3-475E-8F40-E85C4EC04138} - System32\Tasks\Microsoft\Windows\
DirectX\DXGIAdapterCache => C:\WINDOWS\system32\dxgiadaptercache.exe [2025-01-29]
(Microsoft Corporation)
Task: {F983667A-A798-41D2-B3ED-FA98A4E9332E} - System32\Tasks\UsbMonitor => C:\
Users\gabri\Desktop\35inchENG\UsbMonitor.exe [2024-01-10] ()
Task: {FBC07E80-EEF1-4B33-A181-FA740A079237} - System32\Tasks\ASUS\
ASUSUpdateTaskMachineCore1db6ddfa7cd79e6 => C:\Program Files (x86)\ASUS\Update\
AsusUpdate.exe [2025-01-23] (ASUSTeK Computer Inc.) <==== ATTENTION
Task: {FD953D65-B217-4C79-946C-40F34EA51665} - System32\Tasks\Microsoft\Windows\
ReFsDedupSvc\Initialization
Task: {FE4C5459-A15F-44BD-9C9E-1584E0B70445} - System32\Tasks\Microsoft\Windows\
Flighting\FeatureConfig\UsageDataReceiver
(If an entry is included in the fixlist, the task (.job) file will be moved. The
file which is running by the task will not be moved.)
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\gabri\AppData\Roaming\Microsoft\Internet Explorer\
Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk -> C:\Program Files (x86)\
Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-
directory=Default
==================== Loaded Modules (Whitelisted) ==============
2024-04-01 08:22 - 2024-04-01 08:22 - 00051064 _____ () C:\WINDOWS\SYSTEM32\
camext.dll
2024-04-01 08:22 - 2024-04-01 08:22 - 00113032 _____ () C:\WINDOWS\system32\
Microsoft.Internal.WarpPal.dll
2025-03-19 14:28 - 2025-03-15 15:37 - 00890624 _____ () C:\WINDOWS\System32\
DriverStore\FileRepository\nv_dispi.inf_amd64_9d15b9aa9e1c885b\NvMemMapStoragex.dll
2025-01-23 23:12 - 2024-01-10 07:51 - 01214944 _____ () C:\Users\gabri\Desktop\
35inchENG\UsbMonitor.exe
2024-04-01 08:22 - 2024-04-01 08:22 - 00113032 _____ () C:\Windows\System32\
Microsoft.Internal.WarpPal.dll
2025-03-19 14:33 - 2025-03-19 14:33 - 00135168 _____ () C:\WINDOWS\system32\
WinUICohabitation.dll
2025-01-26 21:41 - 2025-01-26 21:41 - 00057344 _____ () C:\WINDOWS\SystemApps\
Microsoft.WindowsAppRuntime.CBS_8wekyb3d8bbwe\
Microsoft.UI.Composition.OSSupport.dll
2025-01-26 21:41 - 2025-01-26 21:41 - 00552960 _____ () C:\WINDOWS\SystemApps\
Microsoft.WindowsAppRuntime.CBS_8wekyb3d8bbwe\marshal.dll
2025-01-26 21:41 - 2025-01-26 21:41 - 00454656 _____ () C:\WINDOWS\SystemApps\
Microsoft.WindowsAppRuntime.CBS_8wekyb3d8bbwe\Microsoft.UI.Windowing.dll
2025-03-19 14:33 - 2025-03-19 14:33 - 03821056 _____ () C:\Windows\System32\
ControlCenter.dll
2024-04-01 08:22 - 2024-04-01 08:22 - 00113032 _____ () C:\WINDOWS\SYSTEM32\
Microsoft.Internal.WarpPal.dll
2025-03-19 14:33 - 2025-03-19 14:33 - 00365056 _____ () C:\WINDOWS\SystemApps\
MicrosoftWindows.Client.Photon_cw5n1h2txyewy\Payments.dll
2025-03-19 14:33 - 2025-03-19 14:33 - 00091648 _____ () C:\WINDOWS\SystemApps\
MicrosoftWindows.Client.Photon_cw5n1h2txyewy\Clipboard.dll
2025-01-26 21:41 - 2025-01-26 21:41 - 03830320 _____ () C:\WINDOWS\SystemApps\
MicrosoftWindows.Client.Photon_cw5n1h2txyewy\hermes.dll
2024-11-22 14:49 - 2024-11-22 14:49 - 00149032 _____ () C:\Program Files\ASUS\ROG
Live Service\libexpat.dll
2024-11-22 14:49 - 2024-11-22 14:49 - 04056104 _____ () C:\Program Files\ASUS\ROG
Live Service\cpprest142_2_10.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00209544 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\SurSvc.exe
2024-12-12 11:56 - 2024-12-12 11:56 - 00027784 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\esrv_lib_security.dll
2024-06-04 10:44 - 2024-06-04 10:44 - 00515944 _____ () C:\Program Files\ASUS\
KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe
2025-04-11 23:04 - 2025-04-07 17:14 - 174162976 _____ () C:\Program Files\NVIDIA
Corporation\NVIDIA App\CEF\libcef.dll
2025-04-11 23:04 - 2025-04-07 17:14 - 00451616 _____ () C:\Program Files\NVIDIA
Corporation\NVIDIA App\CEF\libEGL.dll
2025-04-11 23:04 - 2025-04-07 17:14 - 06444576 _____ () C:\Program Files\NVIDIA
Corporation\NVIDIA App\CEF\libGLESv2.dll
2025-01-23 23:09 - 2025-04-07 17:14 - 00271392 _____ () C:\WINDOWS\SYSTEM32\
FvSDK_x64.dll
2024-07-19 10:04 - 2024-07-19 10:04 - 00160104 _____ () C:\Program Files\ASUS\
AacAmbientHal\AacAmbientLighting.exe
2024-07-19 10:04 - 2024-07-19 10:04 - 00056168 _____ () C:\Program Files\ASUS\
AacAmbientHal\AacAmbientLighting.dll
2025-01-31 02:51 - 2025-04-07 17:14 - 00183328 _____ () C:\Program Files\NVIDIA
Corporation\FrameViewSDK\FvContainer\plugins.system\
AggregatorContainerPlugin_x64.dll
2025-01-31 02:51 - 2025-04-07 17:14 - 00615968 _____ () C:\Program Files\NVIDIA
Corporation\FrameViewSDK\FvContainer\plugins\
SystemDataCollectorsContainerPlugin_x64.dll
2025-01-23 23:09 - 2025-04-07 17:14 - 01055264 _____ () C:\Program Files\NVIDIA
Corporation\FrameViewSDK\bin\PresentMon_x64.exe
2025-04-01 19:52 - 2025-04-01 19:51 - 00563592 _____ () C:\Program Files\LGHUB\
system_tray\marshal.dll
2025-04-01 19:52 - 2025-04-01 19:51 - 00067976 _____ () C:\Program Files\LGHUB\
system_tray\Microsoft.UI.Composition.OSSupport.dll
2025-04-01 19:52 - 2025-04-01 19:51 - 00465288 _____ () C:\Program Files\LGHUB\
system_tray\Microsoft.UI.Windowing.dll
2024-06-04 10:45 - 2024-06-04 10:45 - 00642920 _____ () C:\Program Files\ASUS\
KINGSTON_Aac_DRAM\AacKingstonDramHal_x64.exe
2024-12-12 11:56 - 2024-12-12 11:56 - 01150600 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\esrv_svc.exe
2024-12-12 11:56 - 2024-12-12 11:56 - 02572424 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_modeler.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00514696 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\esrv_lib.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00231560 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\pl_agent_lib.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00258696 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_acpi_battery_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00250504 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_wifi_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00121992 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\devices_use_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00227976 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_system_power_state_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00599176 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_os_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00226952 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_phat_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00367752 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_process_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00684168 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_hw_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00486536 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_etw_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00271496 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_crashlog_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00588424 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_pmon_fps_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00083080 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_heartbeat_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00243848 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_csme_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00273032 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_process_watcher_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00877704 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\sql_logger.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 01088648 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\esrv.exe
2024-12-12 11:56 - 2024-12-12 11:56 - 00222344 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_user_waiting_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00253576 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_foreground_window_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00275592 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_desktop_mapper_input.dll
2024-12-12 11:56 - 2024-12-12 11:56 - 00251528 _____ () C:\Program Files\Intel\SUR\
QUEENCREEK\x64\intel_display_input.dll
2025-04-02 07:25 - 2025-04-02 07:25 - 00365600 _____ () C:\Program Files\
WindowsApps\Microsoft.XboxGamingOverlay_7.225.3271.0_x64__8wekyb3d8bbwe\
Xbox.Experimentation.dll
2024-04-01 08:22 - 2024-04-01 08:22 - 00113032 _____ () c:\windows\system32\
Microsoft.Internal.WarpPal.dll
2025-04-01 06:39 - 2025-04-01 06:39 - 04414840 _____ () C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\ffmpeg.dll
2025-04-01 06:39 - 2025-04-01 06:39 - 04491640 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\updater.node
2025-04-01 06:39 - 2025-04-01 06:39 - 08429432 _____ () C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\libglesv2.dll
2025-04-01 06:39 - 2025-04-01 06:39 - 00504184 _____ () C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\libegl.dll
2025-04-01 06:39 - 2025-04-01 06:39 - 05543800 _____ () C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\vk_swiftshader.dll
2025-04-09 18:34 - 2025-04-09 18:34 - 20280184 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_voice-2\discord_voice\discord_voice.node
2025-04-09 18:34 - 2025-04-09 18:34 - 08664440 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_voice-2\discord_voice\mediapipe.dll
2025-04-09 18:34 - 2025-04-09 18:34 - 00121208 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_utils-2\discord_utils\node_modules\
macos-notification-state\build\Release\notificationstate.node
2025-04-09 18:34 - 2025-04-09 18:34 - 00144248 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_utils-2\discord_utils\node_modules\
windows-notification-state\build\Release\notificationstate.node
2025-04-09 18:34 - 2025-04-09 18:34 - 01180024 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_utils-2\discord_utils\discord_utils.node
2025-04-01 06:39 - 2025-04-01 06:39 - 00546168 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_erlpack-1\discord_erlpack\
discord_erlpack.node
2025-04-01 06:39 - 2025-04-01 06:39 - 00756600 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_zstd-1\discord_zstd\discord_zstd.node
2025-04-01 06:39 - 2025-04-01 06:39 - 25934200 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_krisp-1\discord_krisp\discord_krisp.node
2025-04-01 06:39 - 2025-04-01 06:39 - 00722808 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_media-1\discord_media\discord_media.node
2025-04-01 06:39 - 2025-04-01 06:39 - 00980856 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_game_utils-1\discord_game_utils\
discord_game_utils.node
2025-04-01 06:39 - 2025-04-01 06:39 - 04643704 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_cloudsync-1\discord_cloudsync\
discord_cloudsync.node
2025-04-01 06:39 - 2025-04-01 06:39 - 00499064 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_modules-1\discord_modules\
discord_modules.node
2025-04-01 06:39 - 2025-04-01 06:39 - 10847608 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_dispatch-1\discord_dispatch\
discord_dispatch.node
2025-04-09 18:34 - 2025-04-09 18:34 - 00572280 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_desktop_overlay-2\
discord_desktop_overlay\discord_desktop_overlay.node
2025-04-01 06:39 - 2025-04-01 06:39 - 00904056 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_overlay2-1\discord_overlay2\
discord_overlay2.node
2025-04-01 06:39 - 2025-04-01 06:39 - 02015096 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_spellcheck-1\discord_spellcheck\
node_modules\cld\build\Release\cld.node
2025-04-01 06:39 - 2025-04-01 06:39 - 00853368 _____ () \\?\C:\Users\gabri\AppData\
Local\Discord\app-1.0.9188\modules\discord_hook-1\discord_hook\discord_hook.node
2025-03-19 14:33 - 2025-03-19 14:33 - 02455040 _____ () C:\Windows\
ShellExperiences\WindowsInternal.People.PeoplePicker.dll
2025-01-26 21:40 - 2025-01-26 21:40 - 00079280 _____ () C:\WINDOWS\SYSTEM32\
wtdccm.dll
2025-04-13 01:17 - 2025-04-11 08:05 - 06908592 _____ () C:\Program Files (x86)\
Microsoft\Edge\Application\135.0.3179.73\libglesv2.dll
2025-04-13 01:17 - 2025-04-11 08:05 - 00488608 _____ () C:\Program Files (x86)\
Microsoft\Edge\Application\135.0.3179.73\libegl.dll
2025-04-13 01:17 - 2025-04-11 08:03 - 04844584 _____ () C:\Program Files (x86)\
Microsoft\Edge\Application\135.0.3179.73\vk_swiftshader.dll
2025-01-23 23:04 - 2025-01-23 23:04 - 00890880 _____ () C:\Riot Games\Riot Client\
RiotClientCrashHandler.exe
2025-01-23 23:04 - 2025-01-23 23:04 - 02767872 _____ () C:\Riot Games\Riot Client\
RiotClientElectron\ffmpeg.dll
2025-01-23 23:04 - 2025-01-23 23:04 - 07535616 _____ () C:\Riot Games\Riot Client\
RiotClientElectron\libglesv2.dll
2025-01-23 23:04 - 2025-01-23 23:04 - 00484352 _____ () C:\Riot Games\Riot Client\
RiotClientElectron\libegl.dll
2025-01-23 23:04 - 2025-01-23 23:04 - 00915456 _____ () C:\Riot Games\Riot Client\
RiotClientElectron\vulkan-1.dll
2025-01-23 23:04 - 2025-01-23 23:04 - 05133824 _____ () C:\Riot Games\Riot Client\
RiotClientElectron\vk_swiftshader.dll
2025-01-23 22:42 - 2024-11-12 15:32 - 00113512 _____ () C:\Program Files (x86)\
ASUS\AXSP\4.03.12\ATKEX.dll
2025-01-23 22:42 - 2024-11-12 15:32 - 00229848 _____ () C:\Program Files (x86)\
ASUS\AXSP\4.03.12\ASUS_WMI.dll
2025-04-13 15:21 - 2025-04-13 15:21 - 00044592 _____ () C:\Program Files (x86)\
ASUS\AXSP\4.03.12\PEbiosinterface32.dll
2025-03-19 14:28 - 2025-03-15 15:37 - 00695232 _____ () C:\WINDOWS\System32\
DriverStore\FileRepository\nv_dispi.inf_amd64_9d15b9aa9e1c885b\NvMemMapStorage.dll
2025-01-23 22:42 - 2024-06-23 14:11 - 02551144 _____ () C:\Program Files (x86)\
ASUS\ArmouryDevice\ffmpeg.dll
2025-01-23 22:42 - 2024-08-13 14:58 - 00449536 _____ () \\?\C:\Program Files (x86)\
ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\ac_node_addon\build\
Release\ac_node_addon.node
2025-01-23 22:42 - 2024-07-03 15:49 - 00346112 _____ () \\?\C:\Program Files (x86)\
ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\@img\sharp-win32-ia32\
lib\sharp-win32-ia32.node
2025-01-23 22:42 - 2024-07-03 15:49 - 00336744 _____ () \\?\C:\Program Files (x86)\
ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\@img\sharp-win32-ia32\
lib\libvips-cpp.dll
2025-01-23 22:42 - 2024-07-03 15:49 - 18344296 _____ () \\?\C:\Program Files (x86)\
ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\@img\sharp-win32-ia32\
lib\libvips-42.dll
2025-04-02 08:39 - 2025-04-02 08:39 - 00443800 _____ () C:\Program Files (x86)\
Intel\Driver and Support Assistant\x86\DSACoreInterop.dll
2025-04-02 08:41 - 2025-04-02 08:41 - 00031640 _____ () C:\Program Files (x86)\
Intel\Driver and Support Assistant\x86\ThunderboltDesktopDeviceAdapter.dll
2022-05-31 13:19 - 2022-05-31 13:19 - 02613992 _____ () C:\Program Files (x86)\
ASUS\GameSDK Service\cpprest141_2_10.dll
2024-07-29 15:15 - 2024-07-29 15:15 - 00027936 _____ () C:\Program Files (x86)\
LightingService\Log4cxxWrapper.dll
2024-07-29 15:15 - 2024-07-29 15:15 - 00050480 _____ () C:\Program Files (x86)\
LightingService\AuraHueWrapper.dll
2022-03-17 12:03 - 2022-03-17 12:03 - 00113648 _____ () C:\Program Files\Patriot\
Aac_Patriot Viper M2 SSD RGB\VSCmiddlex86.dll
2024-07-29 15:15 - 2024-07-29 15:15 - 00252768 _____ () C:\Program Files (x86)\
LightingService\cpuutil.dll
2025-01-23 22:42 - 2024-06-23 14:11 - 06581608 _____ () C:\Program Files (x86)\
ASUS\ArmouryDevice\libglesv2.dll
2025-01-23 22:42 - 2024-06-23 14:11 - 00386920 _____ () C:\Program Files (x86)\
ASUS\ArmouryDevice\libegl.dll
2025-01-23 22:42 - 2024-06-23 14:11 - 04611944 _____ () C:\Program Files (x86)\
ASUS\ArmouryDevice\vk_swiftshader.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\gabri\Downloads\FRST64.exe:SmartScreen [7]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [2413]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The
"AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder =>
""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\cdd.dll => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys =>
""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TextInputManagementService
=> ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{13cfe1b1-6b17-424c-ac3f-
16ace8733898} => ""="I3C devices"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-
08002BE10318} => ""="Media"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-
08002BE10318} => "SafeBootDrivers"="1"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-
8C550228544C} => ""="Memory"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-
8C550228544C} => "SafeBootDrivers"="1"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{53966CB1-4D46-4166-BF23-
C522403CD495} => ""="ScmDisk"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AudioEndpointBuilder =>
""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AudioSrv => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CBDHSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\cdd.dll => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ExecutionContext.sys =>
""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HdAudAddService.Sys =>
""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HdAudBus.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MsQuic => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\netadaptercx.sys =>
""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetSetupSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NgcCtnrSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NgcSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SerCx2.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TextInputManagementService
=> ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\usbaudio.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WinHttpAutoProxySvc =>
""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{13cfe1b1-6b17-424c-ac3f-
16ace8733898} => ""="I3C devices"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96C-E325-11CE-BFC1-
08002BE10318} => ""="Media"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96C-E325-11CE-BFC1-
08002BE10318} => "SafeBootDrivers"="1"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{53966CB1-4D46-4166-BF23-
C522403CD495} => ""="ScmDisk"
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to
default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2025-01-23 21:13 - 2025-01-23 21:13 - 00000824 ____A C:\WINDOWS\system32\Drivers\
etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-578177175-4207696623-182477467-1001\Control Panel\Desktop\\Wallpaper -
> C:\Users\gabri\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\
LocalState\PhotosAppBackground\marvels-spider-man-2_3840x2160_xtrafondos.com.jpg
DNS Servers: 46.6.113.34 - 212.230.135.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System =>
(ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
HKLM\...\StartupApproved\Run: => "RtkAudUService"
HKLM\...\StartupApproved\Run: => "Riot Vanguard"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: =>
"EpicGamesLauncher"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: =>
"MicrosoftEdgeAutoLaunch_E366E5E6AF98057EB6410578BC1FD47F"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: =>
"OneDrive"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: =>
"RiotClient"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: =>
"Steam"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: =>
"Discord"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: => "ut"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: =>
"DAEMON Tools Lite Automount"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: =>
"Voicemod"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: => "G-
Menu"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: =>
"Overwolf"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: =>
"Spotify"
HKU\S-1-5-21-578177175-4207696623-182477467-1001\...\StartupApproved\Run: =>
"BakkesMod"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The
file will not be moved unless listed separately.)
FirewallRules: [Microsoft-Windows-DeviceManagement-CertificateInstall-TCP-Out] =>
(Allow) %SystemRoot%\system32\dmcertinst.exe
FirewallRules: [Microsoft-Windows-DeviceManagement-deviceenroller-TCP-Out] =>
(Allow) %SystemRoot%\system32\deviceenroller.exe
FirewallRules: [Microsoft-Windows-DeviceManagement-OmaDmClient-TCP-Out] => (Allow)
%SystemRoot%\system32\omadmclient.exe
FirewallRules: [UDP Query User{8B5750CC-357C-4A45-B2F2-E9F88CDF1F1D}C:\users\gabri\
downloads\beamng drive\beamng.drive\bin64\beamng.x64.exe] => (Allow) C:\users\
gabri\downloads\beamng drive\beamng.drive\bin64\beamng.x64.exe
FirewallRules: [TCP Query User{F4BD4082-4020-44EC-ABF8-068D46624869}C:\users\gabri\
downloads\beamng drive\beamng.drive\bin64\beamng.x64.exe] => (Allow) C:\users\
gabri\downloads\beamng drive\beamng.drive\bin64\beamng.x64.exe
FirewallRules: [{8E64AEFA-9A5D-4831-A96C-74456511850B}] => (Allow) C:\Users\gabri\
AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{4671DBB3-3CA4-4B52-878C-38AA55308F10}] => (Allow) C:\Users\gabri\
AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [UDP Query User{8B397A3E-2F8E-489E-B2DE-4FED41DD6F4B}C:\program
files\epic games\rocketleague\binaries\win64\rocketleague.exe] => (Allow) C:\
program files\epic games\rocketleague\binaries\win64\rocketleague.exe
FirewallRules: [TCP Query User{3480F6D1-0BF5-48A5-B88A-F6E30F509180}C:\program
files\epic games\rocketleague\binaries\win64\rocketleague.exe] => (Allow) C:\
program files\epic games\rocketleague\binaries\win64\rocketleague.exe
FirewallRules: [{5022BC85-3528-4B97-9CBE-C0A3849DCD95}] => (Allow) D:\SteamLibrary\
steamapps\common\assettocorsa\AssettoCorsa.exe
FirewallRules: [{C790A55D-7B99-4AC0-A5D9-D42AE68ACC66}] => (Allow) D:\SteamLibrary\
steamapps\common\assettocorsa\AssettoCorsa.exe
FirewallRules: [UDP Query User{C8FFC053-3AE8-4AC6-B022-4068DD072259}C:\program
files (x86)\steam\steamapps\common\ea sports fc 25\fc25.exe] => (Allow) C:\program
files (x86)\steam\steamapps\common\ea sports fc 25\fc25.exe
FirewallRules: [TCP Query User{4A3D2585-27AF-4032-825F-A91E62C39783}C:\program
files (x86)\steam\steamapps\common\ea sports fc 25\fc25.exe] => (Allow) C:\program
files (x86)\steam\steamapps\common\ea sports fc 25\fc25.exe
FirewallRules: [UDP Query User{62C8A911-0503-4E91-BD1F-1408AB7B9B97}C:\riot games\
riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot
client\riotclientelectron\riot client.exe
FirewallRules: [TCP Query User{67D3783F-F1EF-48F2-B580-D6A970ADD4A4}C:\riot games\
riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot
client\riotclientelectron\riot client.exe
FirewallRules: [{3029AA6D-6F0B-47E3-8233-824C1058D53A}] => (Allow) C:\Program Files
(x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [{26E5D41F-CE1A-4A97-8E89-86B66834E817}] => (Allow) C:\Program Files
(x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [{6D9ECC80-6C58-4DF4-BE8C-C2D9198E60AF}] => (Allow) C:\program
files\asus\aacambienthal\aacambientlighting.exe
FirewallRules: [{937E670C-7ECB-4DF5-BB13-A863F599237B}] => (Allow) C:\Program
Files\ASUS\AacAmbientHal\AacAmbientLighting.exe
FirewallRules: [{07CAC7EA-EE9A-44AF-AB84-02FD8CDC766F}] => (Allow) C:\Program Files
(x86)\Steam\Steam.exe
FirewallRules: [{6DA4DE54-B10F-4A09-8E80-A6829DEEAE7F}] => (Allow) C:\Program Files
(x86)\Steam\Steam.exe
FirewallRules: [{37D3E8E0-2890-4708-B7CD-168373D482EB}] => (Allow) C:\Program Files
(x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryHtmlDebugServer.exe
FirewallRules: [{168E2951-751E-4B58-8E26-E671C20F6118}] => (Allow) C:\Program Files
(x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
FirewallRules: [{AC6C4445-39E6-4C55-8B1E-A1D4BDC36973}] => (Allow) C:\Program Files
(x86)\ASUS\ArmouryDevice\asus_framework.exe
FirewallRules: [{468A658A-5DF7-4394-A6C7-0BE7390A4C92}] => (Allow) C:\Program
Files\ASUS\ROG Live Service\ROGLiveService.exe
FirewallRules: [{FA138AE3-FB5A-4340-9F5B-F7F21EB14C57}] => (Allow) C:\Program
Files\ASUS\ROG Live Service\ROGLiveService.exe
FirewallRules: [{6F749F00-D5CF-4E43-8985-E3F4C2B3ADEE}] => (Allow) C:\Program
Files\WindowsApps\microsoftteams_23335.242.2641.4129_x64__8wekyb3d8bbwe\msteams.exe
FirewallRules: [{FA6F4A21-D481-43E7-BE31-D4776305C925}] => (Allow) C:\Program
Files\WindowsApps\microsoftteams_23335.242.2641.4129_x64__8wekyb3d8bbwe\msteams.exe
FirewallRules: [{C217524F-4D7F-4CFB-9F17-3EDAA609CAC6}] => (Allow) C:\Users\gabri\
AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe
FirewallRules: [{8462F2C8-784A-4DB8-88B7-6FB466C566BD}] => (Allow) C:\Users\gabri\
AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe
FirewallRules: [{FC214F44-E537-4653-BF2E-5903297F9DBD}] => (Allow) C:\Program
Files\WindowsApps\MSTeams_24335.208.3315.1951_x64__8wekyb3d8bbwe\ms-teams.exe
FirewallRules: [{C227AA96-74BC-470A-8106-C361300EA760}] => (Allow) C:\Program
Files\WindowsApps\MSTeams_24335.208.3315.1951_x64__8wekyb3d8bbwe\ms-teams.exe
FirewallRules: [TCP Query User{9783ABC0-3CC9-4075-B16B-A59D915B736D}C:\users\gabri\
downloads\storage hunter\storagehunter\binaries\win64\storagehunter-win64-
shipping.exe] => (Allow) C:\users\gabri\downloads\storage hunter\storagehunter\
binaries\win64\storagehunter-win64-shipping.exe
FirewallRules: [UDP Query User{7EA6DE92-5116-48D7-BDF7-26581FC5B928}C:\users\gabri\
downloads\storage hunter\storagehunter\binaries\win64\storagehunter-win64-
shipping.exe] => (Allow) C:\users\gabri\downloads\storage hunter\storagehunter\
binaries\win64\storagehunter-win64-shipping.exe
FirewallRules: [TCP Query User{5FCE2F30-5378-4D7F-A867-7018B535DFD8}C:\program
files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech
gaming software\lcore.exe
FirewallRules: [UDP Query User{BEAEE051-4BCA-488A-99F2-1585F844B311}C:\program
files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech
gaming software\lcore.exe
FirewallRules: [TCP Query User{87BA76B9-E34C-4F78-A795-655C9040DCAC}D:\
steamlibrary\steamapps\common\assettocorsa\acs.exe] => (Allow) D:\steamlibrary\
steamapps\common\assettocorsa\acs.exe
FirewallRules: [UDP Query User{690FB9F3-D453-497D-834B-A4E40C14D32C}D:\
steamlibrary\steamapps\common\assettocorsa\acs.exe] => (Allow) D:\steamlibrary\
steamapps\common\assettocorsa\acs.exe
FirewallRules: [{50E4437A-4C3F-4B8D-8575-152705F5384C}] => (Allow) D:\SteamLibrary\
steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{E2DB91E6-2A23-40C7-B6FE-D0AA63F2DFCE}] => (Allow) D:\SteamLibrary\
steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [TCP Query User{2F427A65-C3DC-4288-92A4-ED31EB480672}C:\users\gabri\
appdata\local\actools content manager\plugins\cefsharp-114.2.120-x86\
cefsharp.browsersubprocess.exe] => (Allow) C:\users\gabri\appdata\local\actools
content manager\plugins\cefsharp-114.2.120-x86\cefsharp.browsersubprocess.exe
FirewallRules: [UDP Query User{7F717B5A-9120-45C4-835E-4CEE4629DA96}C:\users\gabri\
appdata\local\actools content manager\plugins\cefsharp-114.2.120-x86\
cefsharp.browsersubprocess.exe] => (Allow) C:\users\gabri\appdata\local\actools
content manager\plugins\cefsharp-114.2.120-x86\cefsharp.browsersubprocess.exe
FirewallRules: [TCP Query User{E781B9A1-A654-4857-BCCF-B9773156693B}C:\games\it
takes two\nuts\binaries\win64\ittakestwo.exe] => (Allow) C:\games\it takes two\
nuts\binaries\win64\ittakestwo.exe
FirewallRules: [UDP Query User{4D30F5E2-9253-489A-9186-C382F480B4BF}C:\games\it
takes two\nuts\binaries\win64\ittakestwo.exe] => (Allow) C:\games\it takes two\
nuts\binaries\win64\ittakestwo.exe
FirewallRules: [TCP Query User{49631A34-D152-4AF2-B704-D3A58A4CCF37}C:\games\it
takes two\nuts\binaries\win64\ittakestwo_trial.exe] => (Allow) C:\games\it takes
two\nuts\binaries\win64\ittakestwo_trial.exe
FirewallRules: [UDP Query User{5A58C6BA-13D4-4EC0-8292-E03E4481BEA2}C:\games\it
takes two\nuts\binaries\win64\ittakestwo_trial.exe] => (Allow) C:\games\it takes
two\nuts\binaries\win64\ittakestwo_trial.exe
FirewallRules: [TCP Query User{C1E83E7E-D864-4197-A820-CC4BF06CB3CB}C:\games\
baldurs gate 3\bin\bg3.exe] => (Allow) C:\games\baldurs gate 3\bin\bg3.exe
FirewallRules: [UDP Query User{3BB19803-7729-4057-9AAC-1E5B0A7882A1}C:\games\
baldurs gate 3\bin\bg3.exe] => (Allow) C:\games\baldurs gate 3\bin\bg3.exe
FirewallRules: [TCP Query User{CA5D31C7-EC34-4D64-9735-F4945F5B8F6E}D:\
steamlibrary\steamapps\common\rogue company\roguecompany\binaries\win64\
roguecompany.exe] => (Allow) D:\steamlibrary\steamapps\common\rogue company\
roguecompany\binaries\win64\roguecompany.exe
FirewallRules: [UDP Query User{950FC08D-AD85-4CED-BBF2-20EA3B8C466F}D:\
steamlibrary\steamapps\common\rogue company\roguecompany\binaries\win64\
roguecompany.exe] => (Allow) D:\steamlibrary\steamapps\common\rogue company\
roguecompany\binaries\win64\roguecompany.exe
FirewallRules: [TCP Query User{0FC744D6-D508-4A2B-84F3-EEAB71B08498}D:\
steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery.exe] =>
(Allow) D:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\
discovery.exe
FirewallRules: [UDP Query User{D30DEC31-D941-40F7-A58A-62DFB41A429E}D:\
steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery.exe] =>
(Allow) D:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\
discovery.exe
FirewallRules: [{669560CB-09F5-49C8-97B1-492E8A96FF29}] => (Allow) C:\Program
Files\Voicemod Desktop\VoicemodDesktop.exe
FirewallRules: [{A8B55C34-150C-449F-9829-06D65A513CFF}] => (Allow) C:\Program
Files\Voicemod Desktop\VoicemodDesktop.exe
FirewallRules: [TCP Query User{3C3B6F73-BDF1-4752-99A1-EAD514AF5558}C:\g-menu\g-
menu.exe] => (Allow) C:\g-menu\g-menu.exe
FirewallRules: [UDP Query User{212225D7-EB20-423C-9373-CD8040B9D795}C:\g-menu\g-
menu.exe] => (Allow) C:\g-menu\g-menu.exe
FirewallRules: [TCP Query User{CFE30272-FB73-4B6B-9258-060F067775FB}C:\g-menu\
resources\bin\g_menu.exe] => (Allow) C:\g-menu\resources\bin\g_menu.exe
FirewallRules: [UDP Query User{F9566D87-469D-4183-91EE-1FE93BC5FCF3}C:\g-menu\
resources\bin\g_menu.exe] => (Allow) C:\g-menu\resources\bin\g_menu.exe
FirewallRules: [TCP Query User{BAF4FCD9-B7DA-4045-A05D-131D45AABE59}C:\program
files (x86)\steam\steamapps\common\生死狙击 2\client\hallclient.exe] => (Allow) C:\
program files (x86)\steam\steamapps\common\生死狙击 2\client\hallclient.exe
FirewallRules: [UDP Query User{AA1809AF-E853-4468-A5ED-EC9D7F51251B}C:\program
files (x86)\steam\steamapps\common\生死狙击 2\client\hallclient.exe] => (Allow) C:\
program files (x86)\steam\steamapps\common\生死狙击 2\client\hallclient.exe
FirewallRules: [TCP Query User{7833D3B2-06AA-4048-8C45-9E73F8AF816E}C:\users\gabri\
downloads\gang.beasts.v1.25.1646a\gang.beasts.v1.25.1646a\gang.beasts.v1.25.1646a\
gang beasts.exe] => (Allow) C:\users\gabri\downloads\gang.beasts.v1.25.1646a\
gang.beasts.v1.25.1646a\gang.beasts.v1.25.1646a\gang beasts.exe
FirewallRules: [UDP Query User{254715C4-A1C1-4C45-A663-DAC87BC8BF63}C:\users\gabri\
downloads\gang.beasts.v1.25.1646a\gang.beasts.v1.25.1646a\gang.beasts.v1.25.1646a\
gang beasts.exe] => (Allow) C:\users\gabri\downloads\gang.beasts.v1.25.1646a\
gang.beasts.v1.25.1646a\gang.beasts.v1.25.1646a\gang beasts.exe
FirewallRules: [TCP Query User{C8E865D1-7E79-4168-8D09-780B83C580C9}C:\users\gabri\
desktop\gang.beasts.v1.25.1646a\gang.beasts.v1.25.1646a\gang.beasts.v1.25.1646a\
gang beasts.exe] => (Allow) C:\users\gabri\desktop\gang.beasts.v1.25.1646a\
gang.beasts.v1.25.1646a\gang.beasts.v1.25.1646a\gang beasts.exe
FirewallRules: [UDP Query User{FF421211-13C2-4ADA-A966-13B8F3CFD5B5}C:\users\gabri\
desktop\gang.beasts.v1.25.1646a\gang.beasts.v1.25.1646a\gang.beasts.v1.25.1646a\
gang beasts.exe] => (Allow) C:\users\gabri\desktop\gang.beasts.v1.25.1646a\
gang.beasts.v1.25.1646a\gang.beasts.v1.25.1646a\gang beasts.exe
FirewallRules: [TCP Query User{159139AB-5005-4990-A7DD-9F24AD7FA23D}C:\games\
uncharted 4 legacy of thieves collection\tll.exe] => (Allow) C:\games\uncharted 4
legacy of thieves collection\tll.exe
FirewallRules: [UDP Query User{A2106F35-CB81-4FC8-8201-D1B9513F9489}C:\games\
uncharted 4 legacy of thieves collection\tll.exe] => (Allow) C:\games\uncharted 4
legacy of thieves collection\tll.exe
FirewallRules: [TCP Query User{331A4CC2-CCD6-4E62-A511-864680C6B3A5}D:\
steamlibrary\steamapps\common\assettocorsa\server\acserver.exe] => (Allow) D:\
steamlibrary\steamapps\common\assettocorsa\server\acserver.exe
FirewallRules: [UDP Query User{DE0DCA83-0DD0-44AB-A86C-6891FE132930}D:\
steamlibrary\steamapps\common\assettocorsa\server\acserver.exe] => (Allow) D:\
steamlibrary\steamapps\common\assettocorsa\server\acserver.exe
FirewallRules: [TCP Query User{998F35BC-5B45-45AE-99DA-DAC92ED88E94}C:\games\
uncharted 4 legacy of thieves collection\u4.exe] => (Allow) C:\games\uncharted 4
legacy of thieves collection\u4.exe
FirewallRules: [UDP Query User{2453C2C6-26A1-424F-B8BC-39C720549161}C:\games\
uncharted 4 legacy of thieves collection\u4.exe] => (Allow) C:\games\uncharted 4
legacy of thieves collection\u4.exe
FirewallRules: [TCP Query User{E72DD316-6E9A-4986-A0E8-98ECB01BE9F6}C:\games\
assassins creed iii remastered\aciii.exe] => (Allow) C:\games\assassins creed iii
remastered\aciii.exe
FirewallRules: [UDP Query User{8942D650-6F61-4231-9EFE-025BF18E6F3C}C:\games\
assassins creed iii remastered\aciii.exe] => (Allow) C:\games\assassins creed iii
remastered\aciii.exe
FirewallRules: [TCP Query User{CFC9A2C2-F301-42C6-AF90-BFDE65A53155}C:\users\gabri\
appdata\roaming\.tlauncher\starter\jre_default\jre-21.0.61-windows-x64\bin\
java.exe] => (Allow) C:\users\gabri\appdata\roaming\.tlauncher\starter\jre_default\
jre-21.0.61-windows-x64\bin\java.exe
FirewallRules: [UDP Query User{12613C3A-4C0B-44C5-B031-EEB0F54720E1}C:\users\gabri\
appdata\roaming\.tlauncher\starter\jre_default\jre-21.0.61-windows-x64\bin\
java.exe] => (Allow) C:\users\gabri\appdata\roaming\.tlauncher\starter\jre_default\
jre-21.0.61-windows-x64\bin\java.exe
FirewallRules: [TCP Query User{39458AB7-074A-41CA-9AD6-92E4DE413FA6}C:\users\gabri\
appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\
bin\javaw.exe] => (Allow) C:\users\gabri\appdata\roaming\.minecraft\runtime\java-
runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe
FirewallRules: [UDP Query User{B7A3B1A6-A3E2-4ACE-85E4-E31878B7BC02}C:\users\gabri\
appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\
bin\javaw.exe] => (Allow) C:\users\gabri\appdata\roaming\.minecraft\runtime\java-
runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe
FirewallRules: [{2543D39E-893A-4067-AB00-B9379C6760D0}] => (Allow) C:\Users\gabri\
Desktop\WSA\WsaClient\WsaClient.exe
FirewallRules: [{79E7A5B6-9C04-4E1B-825F-92D3925D9CE6}] => (Allow) C:\Users\gabri\
Desktop\WSA\WsaClient\WsaClient.exe
FirewallRules: [TCP Query User{D15AC90E-492B-45F2-9770-C79A7E8660F0}C:\users\gabri\
desktop\wsa\wsaclient\wsaclient.exe] => (Allow) C:\users\gabri\desktop\wsa\
wsaclient\wsaclient.exe
FirewallRules: [UDP Query User{6C839572-96F9-4186-AEB4-DD649AF5F9E6}C:\users\gabri\
desktop\wsa\wsaclient\wsaclient.exe] => (Allow) C:\users\gabri\desktop\wsa\
wsaclient\wsaclient.exe
FirewallRules: [{54E6A0F5-3503-4737-B9F2-7EF42AFA6D65}] => (Allow) C:\Users\gabri\
Desktop\WSA\WsaClient\WsaClient.exe
FirewallRules: [TCP Query User{9A53E94E-118D-47C8-B029-2D84728CC021}C:\users\gabri\
desktop\astroneer.v1.29.61.0-0xdeadc0de\astro\binaries\win64\astro-win64-
shipping.exe] => (Allow) C:\users\gabri\desktop\astroneer.v1.29.61.0-0xdeadc0de\
astro\binaries\win64\astro-win64-shipping.exe
FirewallRules: [UDP Query User{4B62A5EB-6F1F-463C-A001-7C14A8A8E56D}C:\users\gabri\
desktop\astroneer.v1.29.61.0-0xdeadc0de\astro\binaries\win64\astro-win64-
shipping.exe] => (Allow) C:\users\gabri\desktop\astroneer.v1.29.61.0-0xdeadc0de\
astro\binaries\win64\astro-win64-shipping.exe
FirewallRules: [{12A4395E-D818-4807-B964-E6EF6527B269}] => (Allow) C:\Program Files
(x86)\Steam\steamapps\common\Fishing Planet\FishingPlanet.exe
FirewallRules: [{F20E3663-B5DE-4359-946D-AF503E66A109}] => (Allow) C:\Program Files
(x86)\Steam\steamapps\common\Fishing Planet\FishingPlanet.exe
FirewallRules: [{94F2868A-9DDC-4DD2-A600-D557190BB8E0}] => (Allow) D:\SteamLibrary\
steamapps\common\Counter-Strike Global Offensive\game\bin\win64\cs2.exe
FirewallRules: [{FBC9056A-809D-4B3B-8E04-8EE42076448B}] => (Allow) D:\SteamLibrary\
steamapps\common\Counter-Strike Global Offensive\game\bin\win64\cs2.exe
FirewallRules: [TCP Query User{CB6414F6-7D3B-4F86-B94E-48BA61C6FB5B}C:\games\
gunsmith simulator\gunsmith simulator.exe] => (Allow) C:\games\gunsmith simulator\
gunsmith simulator.exe
FirewallRules: [UDP Query User{51131C35-0264-47DF-BA0B-40A615B5356D}C:\games\
gunsmith simulator\gunsmith simulator.exe] => (Allow) C:\games\gunsmith simulator\
gunsmith simulator.exe
FirewallRules: [TCP Query User{008D5C6B-3B7A-46E8-9B1B-E65AFFE15F5A}C:\program
files\epic games\crimebossrc\crimeboss\binaries\win64\crimeboss-win64-shipping.exe]
=> (Allow) C:\program files\epic games\crimebossrc\crimeboss\binaries\win64\
crimeboss-win64-shipping.exe
FirewallRules: [UDP Query User{274AD774-25AB-4BB7-B00F-C4AFAAA03EB9}C:\program
files\epic games\crimebossrc\crimeboss\binaries\win64\crimeboss-win64-shipping.exe]
=> (Allow) C:\program files\epic games\crimebossrc\crimeboss\binaries\win64\
crimeboss-win64-shipping.exe
FirewallRules: [{63DDB279-122F-4072-A2BE-82D864A39629}] => (Allow) C:\Program
Files\WindowsApps\Microsoft.SkypeApp_15.138.3203.0_x64__kzf8qxf38zg5c\Skype\
Skype.exe
FirewallRules: [{22911AA2-E45E-44AF-9A79-30461D05CDBD}] => (Allow) C:\Program
Files\WindowsApps\Microsoft.SkypeApp_15.138.3203.0_x64__kzf8qxf38zg5c\Skype\
Skype.exe
FirewallRules: [{8FFB531F-D60D-470D-908B-DFF4FC8A7C21}] => (Allow) C:\Program
Files\WindowsApps\Microsoft.SkypeApp_15.138.3203.0_x64__kzf8qxf38zg5c\Skype\
Skype.exe
FirewallRules: [{7A6888D6-F04A-4878-8E80-247A90B45228}] => (Allow) C:\Program
Files\WindowsApps\Microsoft.SkypeApp_15.138.3203.0_x64__kzf8qxf38zg5c\Skype\
Skype.exe
FirewallRules: [TCP Query User{ADDA1BEB-F986-4B11-9926-61413B477482}C:\users\gabri\
appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_chromebrowser] => (Allow)
C:\users\gabri\appdata\local\fivem\fivem.app\data\cache\subprocess\
fivem_chromebrowser
FirewallRules: [UDP Query User{5ABBDEC1-68A6-4F86-BC24-A5E0D0CCF6E2}C:\users\gabri\
appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_chromebrowser] => (Allow)
C:\users\gabri\appdata\local\fivem\fivem.app\data\cache\subprocess\
fivem_chromebrowser
FirewallRules: [{5008A05C-5B3F-478F-ADB6-E139D80F5D07}] => (Allow) D:\SteamLibrary\
steamapps\common\Aim Lab\AimLab_tb.exe
FirewallRules: [{2EB6C916-B0F0-4617-870D-D492A8AB9BA3}] => (Allow) D:\SteamLibrary\
steamapps\common\Aim Lab\AimLab_tb.exe
FirewallRules: [TCP Query User{9EA557D5-6D1E-4DEE-9496-7B366F2D369E}C:\users\gabri\
appdata\local\programs\stremio\stremio-runtime.exe] => (Allow) C:\users\gabri\
appdata\local\programs\stremio\stremio-runtime.exe
FirewallRules: [UDP Query User{B6550686-45D1-4100-A9A3-6E23F182039B}C:\users\gabri\
appdata\local\programs\stremio\stremio-runtime.exe] => (Allow) C:\users\gabri\
appdata\local\programs\stremio\stremio-runtime.exe
FirewallRules: [TCP Query User{26CD0397-034B-4A81-B2BB-4902E18C80A8}C:\program
files (x86)\steam\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe]
=> (Allow) C:\program files (x86)\steam\steamapps\common\fragpunk\fragpunk\
binaries\win64\fragpunk.exe
FirewallRules: [UDP Query User{005B4F9D-D35E-4062-9876-55BAA14A1E8C}C:\program
files (x86)\steam\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe]
=> (Allow) C:\program files (x86)\steam\steamapps\common\fragpunk\fragpunk\
binaries\win64\fragpunk.exe
FirewallRules: [{7E9913FE-F3B6-48D7-8A93-9C0236148BC0}] => (Allow) C:\Program Files
(x86)\Steam\steamapps\common\REPO\REPO.exe
FirewallRules: [{5B5EBC45-4CB3-4E95-80EE-3EEF2F941F7C}] => (Allow) C:\Program Files
(x86)\Steam\steamapps\common\REPO\REPO.exe
FirewallRules: [TCP Query User{3A558E0D-D225-4226-87DC-C8A44D42EE73}C:\program
files (x86)\steam\steamapps\common\inzoi demo\blueclient\binaries\win64\inzoi-
win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\inzoi
demo\blueclient\binaries\win64\inzoi-win64-shipping.exe
FirewallRules: [UDP Query User{6E75E59F-6BBD-43FE-8D61-A0D72EFA653E}C:\program
files (x86)\steam\steamapps\common\inzoi demo\blueclient\binaries\win64\inzoi-
win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\inzoi
demo\blueclient\binaries\win64\inzoi-win64-shipping.exe
FirewallRules: [TCP Query User{043E762E-1590-495A-9D22-89F49DC812A6}C:\users\gabri\
appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\gabri\appdata\roaming\
spotify\spotify.exe
FirewallRules: [UDP Query User{59FD355D-6419-4806-A83D-F6EAA164DA5F}C:\users\gabri\
appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\gabri\appdata\roaming\
spotify\spotify.exe
FirewallRules: [{D320C7CF-736C-4ED7-AE76-A9B1C7DBFD99}] => (Allow) C:\Users\gabri\
AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe
FirewallRules: [{3B4CD5C4-A021-449D-93D8-5F37D70DEFAA}] => (Allow) C:\Users\gabri\
AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe
FirewallRules: [{52B8E381-83FC-4EA2-AA3D-BBBEBBA9C87C}] => (Allow) C:\Program Files
(x86)\Steam\steamapps\common\Rogue Company\RogueCompany.exe
FirewallRules: [{27741B7C-A0D1-4BA6-AAF7-AA0CBE4F14A8}] => (Allow) C:\Program Files
(x86)\Steam\steamapps\common\Rogue Company\RogueCompany.exe
FirewallRules: [TCP Query User{20C90912-4EED-4CB5-8C40-8D7B80A1736C}C:\program
files (x86)\steam\steamapps\common\rogue company\roguecompany\binaries\win64\
roguecompany.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\rogue
company\roguecompany\binaries\win64\roguecompany.exe
FirewallRules: [UDP Query User{D17C238E-61F5-4DFD-8531-D8C5FBDE63E8}C:\program
files (x86)\steam\steamapps\common\rogue company\roguecompany\binaries\win64\
roguecompany.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\rogue
company\roguecompany\binaries\win64\roguecompany.exe
FirewallRules: [TCP Query User{2673B48E-4443-4517-9C42-962C337E6C38}C:\users\gabri\
desktop\new.heights.realistic.climbing.and.bouldering.build.13057037\new
heights.exe] => (Block) C:\users\gabri\desktop\
new.heights.realistic.climbing.and.bouldering.build.13057037\new heights.exe
FirewallRules: [UDP Query User{94480CF5-18A9-4D14-96AB-AE6F40A65E88}C:\users\gabri\
desktop\new.heights.realistic.climbing.and.bouldering.build.13057037\new
heights.exe] => (Block) C:\users\gabri\desktop\
new.heights.realistic.climbing.and.bouldering.build.13057037\new heights.exe
FirewallRules: [TCP Query User{FC3A49B3-E78C-44C7-94F7-C871A06455E8}C:\users\gabri\
desktop\game\undergroundgarage\binaries\win64\undergroundgarage-win64-shipping.exe]
=> (Block) C:\users\gabri\desktop\game\undergroundgarage\binaries\win64\
undergroundgarage-win64-shipping.exe
FirewallRules: [UDP Query User{6CD04A66-F691-4454-841A-2F23A25CD3E1}C:\users\gabri\
desktop\game\undergroundgarage\binaries\win64\undergroundgarage-win64-shipping.exe]
=> (Block) C:\users\gabri\desktop\game\undergroundgarage\binaries\win64\
undergroundgarage-win64-shipping.exe
FirewallRules: [{78F34660-9255-4827-8E54-99A12FE55037}] => (Allow) D:\SteamLibrary\
steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe
FirewallRules: [{54B0B7C6-6690-4FA3-8E42-6D952B61AB68}] => (Allow) D:\SteamLibrary\
steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe
FirewallRules: [{5304EE38-C9D6-477D-93A1-DD8B4BCCB082}] => (Allow) D:\SteamLibrary\
steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [{04535321-2567-4A71-AF2F-A4BBD7C0E1B6}] => (Allow) D:\SteamLibrary\
steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [TCP Query User{3AA8D7B1-E9EB-48D4-BC8D-51894226F421}C:\users\gabri\
appdata\local\ubisoft\r6siege\rainbowsix.exe] => (Allow) C:\users\gabri\appdata\
local\ubisoft\r6siege\rainbowsix.exe
FirewallRules: [UDP Query User{A55AB966-566D-4816-AF9D-A14957A0B5AE}C:\users\gabri\
appdata\local\ubisoft\r6siege\rainbowsix.exe] => (Allow) C:\users\gabri\appdata\
local\ubisoft\r6siege\rainbowsix.exe
FirewallRules: [{0D1A81CB-09DC-4C61-8923-F9A77A8AF9C9}] => (Allow) C:\Program
Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe
FirewallRules: [{A12864B1-77FC-4545-B253-6D6FE754DBA1}] => (Allow) C:\Program
Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe
FirewallRules: [{AB90D93B-CA36-4162-A97B-16888A43F083}] => (Allow) C:\Program
Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe
FirewallRules: [{CC6CA273-6EC1-413F-A7A6-4645EB78A170}] => (Allow) C:\Program
Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe
FirewallRules: [{3D6C7A34-C65B-4BB1-9EF8-13FD94473A22}] => (Allow) C:\Program
Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe
FirewallRules: [{4900861A-CA89-4A9D-9E6D-B570AB694032}] => (Allow) C:\Program
Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe
FirewallRules: [{59A77490-7AA7-4E3C-A6FE-B70D1B722270}] => (Allow) C:\Program
Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe
FirewallRules: [{7C8637E8-5902-42F3-A4E9-045E2B577C5B}] => (Allow) C:\Program
Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe
FirewallRules: [{6590C8F4-CFA1-41B7-B092-EF42568B510D}] => (Allow) C:\Program
Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe
FirewallRules: [{D409334A-98B0-4CCD-95F7-E91AB7FB81EB}] => (Allow) C:\Program
Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe
FirewallRules: [{FDA215D3-0D81-41EF-BAFF-FB29C0A7022D}] => (Allow) C:\Program
Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe
FirewallRules: [TCP Query User{15AE054F-3195-4BEE-B39A-E89F3B60294A}C:\program
files (x86)\steam\steamapps\common\miniroyale\miniroyale\binaries\win64\
miniroyale.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\
miniroyale\miniroyale\binaries\win64\miniroyale.exe
FirewallRules: [UDP Query User{C0E66E60-9573-42C9-B288-4D6E53D16393}C:\program
files (x86)\steam\steamapps\common\miniroyale\miniroyale\binaries\win64\
miniroyale.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\
miniroyale\miniroyale\binaries\win64\miniroyale.exe
FirewallRules: [TCP Query User{1EED20F6-B8C5-4049-A0B4-5271E9F8D3F9}C:\users\gabri\
desktop\inzoi.v20250330.early.access\blueclient\binaries\win64\inzoi-win64-
shipping.exe] => (Block) C:\users\gabri\desktop\inzoi.v20250330.early.access\
blueclient\binaries\win64\inzoi-win64-shipping.exe
FirewallRules: [UDP Query User{DA592E59-874D-4AF9-AB42-5A41CAA01EE2}C:\users\gabri\
desktop\inzoi.v20250330.early.access\blueclient\binaries\win64\inzoi-win64-
shipping.exe] => (Block) C:\users\gabri\desktop\inzoi.v20250330.early.access\
blueclient\binaries\win64\inzoi-win64-shipping.exe
FirewallRules: [{358F3F40-8045-4B1E-9544-3A99EC06D223}] => (Allow) C:\Program Files
(x86)\Overwolf\0.270.0.12\OverwolfBrowser.exe
FirewallRules: [{104E7322-4413-40B5-A284-A9C756C05CF3}] => (Allow) C:\Program Files
(x86)\Overwolf\0.270.0.12\OverwolfBrowser.exe
FirewallRules: [{ED81F57D-425F-4B20-98BC-2EC9A33DEE5A}] => (Block) C:\Program Files
(x86)\Overwolf\0.270.0.12\OverwolfBrowser.exe
FirewallRules: [{E660207F-8F51-4D1B-B072-E902ADD02A2A}] => (Block) C:\Program Files
(x86)\Overwolf\0.270.0.12\OverwolfBrowser.exe
FirewallRules: [{22175506-2002-424D-AB59-79B3EDE19C1E}] => (Allow) C:\Program Files
(x86)\Overwolf\0.273.1.4\OverwolfBrowser.exe
FirewallRules: [{6B174577-A06B-447F-AF16-ABA622EEA757}] => (Allow) C:\Program Files
(x86)\Overwolf\0.273.1.4\OverwolfBrowser.exe
FirewallRules: [{5708AA97-31BD-4A77-B0A0-BC69112BBBFE}] => (Allow) D:\SteamLibrary\
steamapps\common\Grand Theft Auto V\PlayGTAV.exe
FirewallRules: [{D60E2E21-4543-406E-9BD0-1157C192F7A6}] => (Allow) D:\SteamLibrary\
steamapps\common\Grand Theft Auto V\PlayGTAV.exe
FirewallRules: [TCP Query User{E839B3CB-73CC-4F96-A4AF-5D4050AA319D}D:\
steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\
steamlibrary\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{F4F18FB4-9F8C-4099-A9C7-99967C3650D4}D:\
steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\
steamlibrary\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [{F7B93FBE-F83C-4D46-9386-836211E29B45}] => (Allow) C:\Program
Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
FirewallRules: [{8300555E-8705-4DD6-BF6D-10288DA76D01}] => (Allow) C:\Program
Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
FirewallRules: [{F0E97DC7-5EC7-4169-B8E6-D2AECD19705A}] => (Allow) C:\Program
Files\Google\Chrome\Application\chrome.exe
FirewallRules: [{25510E2C-86BD-4F3D-BB01-2C7377607986}] => (Allow) C:\Program Files
(x86)\Microsoft\Edge\Application\msedge.exe
FirewallRules: [{1FF65B41-F883-4BB0-BFBA-3BD77AE31EB1}] => (Allow) C:\Program Files
(x86)\Steam\steamapps\common\MiniRoyale\RoomRoyalA.exe
FirewallRules: [{2EE53A77-7A40-435E-AEC7-0B77339FB0E2}] => (Allow) C:\Program Files
(x86)\Steam\steamapps\common\MiniRoyale\RoomRoyalA.exe
FirewallRules: [{A11D4B3B-C8A8-43AA-B428-49FE21895C07}] => (Allow) C:\Program Files
(x86)\Microsoft\EdgeWebView\Application\135.0.3179.73\msedgewebview2.exe
==================== Restore Points =========================
04-04-2025 02:15:09 Se ha instalado DirectX
08-04-2025 19:20:04 Intel® Driver & Support Assistant
08-04-2025 22:29:28 TRON v12.0.6: Pre-run checkpoint
13-04-2025 16:25:21 Windows Update
13-04-2025 16:25:28 Windows Update
==================== Faulty Device Manager Devices =============
Name: Temporizador de eventos de alta precisión
Description: Temporizador de eventos de alta precisión
Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
Manufacturer: (Dispositivos de sistema estándar)
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This
starts the Enable Device wizard. Follow the instructions.
Name: Microsoft Kernel Debug Network Adapter
Description: Adaptador de red de depuración de kernel de Microsoft
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: kdnic
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This
starts the Enable Device wizard. Follow the instructions.
Name: Dispositivo PCI
Description: Dispositivo PCI
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which
starts the Hardware Update wizard.
Name: Controladora de bus SM
Description: Controladora de bus SM
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which
starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (04/12/2025 02:27:36 AM) (Source: Application Error) (EventID: 1000) (User:
GOLFITO31)
Description: Nombre de aplicación con errores: RocketLeague.exe, versión:
1.0.10897.0, marca de tiempo: 0x67db5f17
Nombre del módulo con errores: RocketLeague.exe, versión: 1.0.10897.0, marca de
tiempo: 0x67db5f17
Código de excepción: 0xc0000005
Desplazamiento con errores: 0x0000000000532df0
Id. de proceso con errores: 0x206c
Tiempo de inicio de aplicación con errores: 0x1dbab46ebe58af1
Ruta de aplicación con errores: C:\Program Files\Epic Games\rocketleague\Binaries\
Win64\RocketLeague.exe
Ruta de módulo con errores: C:\Program Files\Epic Games\rocketleague\Binaries\
Win64\RocketLeague.exe
Id. de informe: b30f4acd-d6f8-409b-80fc-610b71f575c4
Nombre completo del paquete con errores:
Id. de aplicación relacionado con el paquete con errores:
Error: (04/10/2025 03:04:46 PM) (Source: Application Error) (EventID: 1000) (User:
GOLFITO31)
Description: Nombre de aplicación con errores: AcPowerNotification.exe, versión:
1.0.12.19, marca de tiempo: 0x802edb44
Nombre del módulo con errores: unknown, versión: 0.0.0.0, marca de tiempo:
0x00000000
Código de excepción: 0xc0000005
Desplazamiento con errores: 0x00b7c049
Id. de proceso con errores: 0x1058
Tiempo de inicio de aplicación con errores: 0x1dbaa08b7dbae93
Ruta de aplicación con errores: C:\Program Files (x86)\ASUS\ArmouryDevice\dll\
AcPowerNotification\AcPowerNotification.exe
Ruta de módulo con errores: unknown
Id. de informe: 1057b794-d631-49f1-81fc-cd99caca89f2
Nombre completo del paquete con errores:
Id. de aplicación relacionado con el paquete con errores:
Error: (04/10/2025 03:04:46 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplicación: AcPowerNotification.exe
Versión de Framework: v4.0.30319
Descripción: el proceso terminó debido a una excepción no controlada.
Información de la excepción: System.NullReferenceException
en AcPowerNotification.MainWindow.OnClosed(System.EventArgs)
en System.Windows.Window.WmDestroy()
en System.Windows.Window.WindowFilterMessage(IntPtr, Int32, IntPtr, IntPtr,
Boolean ByRef)
en System.Windows.Interop.HwndSource.PublicHooksFilterMessage(IntPtr, Int32,
IntPtr, IntPtr, Boolean ByRef)
en MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
en MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
en System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate,
System.Object, Int32)
en System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object,
System.Delegate, System.Object, Int32, System.Delegate)
en
System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.Dispa
tcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
en MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
Error: (04/09/2025 11:11:48 AM) (Source: Application Error) (EventID: 1000) (User:
GOLFITO31)
Description: Nombre de aplicación con errores: GameBar.exe, versión: 7.225.3271.0,
marca de tiempo: 0x67e5a73f
Nombre del módulo con errores: GameBar.exe, versión: 7.225.3271.0, marca de tiempo:
0x67e5a73f
Código de excepción: 0xc0000005
Desplazamiento con errores: 0x00000000005f4048
Id. de proceso con errores: 0x3db4
Tiempo de inicio de aplicación con errores: 0x1dba937ce265c92
Ruta de aplicación con errores: C:\Program Files\WindowsApps\
Microsoft.XboxGamingOverlay_7.225.3271.0_x64__8wekyb3d8bbwe\GameBar.exe
Ruta de módulo con errores: C:\Program Files\WindowsApps\
Microsoft.XboxGamingOverlay_7.225.3271.0_x64__8wekyb3d8bbwe\GameBar.exe
Id. de informe: 482ac089-1693-407b-8cba-70ae76bed67b
Nombre completo del paquete con errores:
Microsoft.XboxGamingOverlay_7.225.3271.0_x64__8wekyb3d8bbwe
Id. de aplicación relacionado con el paquete con errores: App
Error: (04/07/2025 05:15:20 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Error al generar el contexto de activación para "C:\Program Files\
DAEMON Tools Lite\DTLite.exe". Error en el archivo de manifiesto o directiva "C:\
Program Files\DAEMON Tools Lite\DTLite.exe.Config" en la línea 0.
Sintaxis XML no válida.
Error: (04/07/2025 05:15:18 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Error al generar el contexto de activación para "C:\Program Files\
DAEMON Tools Lite\DTLite.exe". Error en el archivo de manifiesto o directiva "C:\
Program Files\DAEMON Tools Lite\DTLite.exe.Config" en la línea 0.
Sintaxis XML no válida.
Error: (04/07/2025 05:15:16 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Error al generar el contexto de activación para "C:\Program Files\
DAEMON Tools Lite\DTLite.exe". Error en el archivo de manifiesto o directiva "C:\
Program Files\DAEMON Tools Lite\DTLite.exe.Config" en la línea 0.
Sintaxis XML no válida.
Error: (04/07/2025 05:15:16 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Error al generar el contexto de activación para "C:\Program Files\
DAEMON Tools Lite\DTLite.exe". Error en el archivo de manifiesto o directiva "C:\
Program Files\DAEMON Tools Lite\DTLite.exe.Config" en la línea 0.
Sintaxis XML no válida.
Error: (04/07/2025 05:15:16 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Error al generar el contexto de activación para "C:\Program Files\
DAEMON Tools Lite\DTLite.exe". Error en el archivo de manifiesto o directiva "C:\
Program Files\DAEMON Tools Lite\DTLite.exe.Config" en la línea 0.
Sintaxis XML no válida.
Error: (04/07/2025 05:15:15 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Error al generar el contexto de activación para "C:\Program Files\
DAEMON Tools Lite\DTLite.exe". Error en el archivo de manifiesto o directiva "C:\
Program Files\DAEMON Tools Lite\DTLite.exe.Config" en la línea 0.
Sintaxis XML no válida.
System errors:
=============
Error: (04/13/2025 03:21:47 PM) (Source: Service Control Manager) (EventID: 7024)
(User: )
Description: El servicio Intel(R) Audio Service se cerró con el error específico de
servicio
La operación se completó correctamente.
Error: (04/13/2025 03:21:44 PM) (Source: Service Control Manager) (EventID: 7000)
(User: )
Description: El servicio l1vhlwf no pudo iniciarse debido al siguiente error:
Una característica de hipervisor no está disponible para el usuario.
Error: (04/12/2025 03:10:14 PM) (Source: Service Control Manager) (EventID: 7024)
(User: )
Description: El servicio Intel(R) Audio Service se cerró con el error específico de
servicio
La operación se completó correctamente.
Error: (04/12/2025 03:10:10 PM) (Source: Service Control Manager) (EventID: 7000)
(User: )
Description: El servicio l1vhlwf no pudo iniciarse debido al siguiente error:
Una característica de hipervisor no está disponible para el usuario.
Error: (04/12/2025 04:08:07 AM) (Source: DCOM) (EventID: 10010) (User: GOLFITO31)
Description: El servidor {FD06603A-2BDF-4BB1-B7DF-5DC68F353601} no se registró con
DCOM dentro del tiempo de espera requerido.
Error: (04/11/2025 12:50:10 PM) (Source: Service Control Manager) (EventID: 7024)
(User: )
Description: El servicio Intel(R) Audio Service se cerró con el error específico de
servicio
La operación se completó correctamente.
Error: (04/11/2025 12:49:59 PM) (Source: Service Control Manager) (EventID: 7000)
(User: )
Description: El servicio l1vhlwf no pudo iniciarse debido al siguiente error:
Una característica de hipervisor no está disponible para el usuario.
Error: (04/10/2025 03:05:58 PM) (Source: Service Control Manager) (EventID: 7024)
(User: )
Description: El servicio Intel(R) Audio Service se cerró con el error específico de
servicio
La operación se completó correctamente.
Error: (04/10/2025 03:05:54 PM) (Source: Service Control Manager) (EventID: 7000)
(User: )
Description: El servicio l1vhlwf no pudo iniciarse debido al siguiente error:
Una característica de hipervisor no está disponible para el usuario.
Error: (04/10/2025 03:04:46 PM) (Source: DCOM) (EventID: 10010) (User: GOLFITO31)
Description: El servidor {FD06603A-2BDF-4BB1-B7DF-5DC68F353601} no se registró con
DCOM dentro del tiempo de espera requerido.
CodeIntegrity:
===================================
䕶敮瑛そ ഊ†䱯朠乡浥㨠䵩捲潳潦琭坩湤潷猭䍯摥䥮瑥杲楴礯佰敲慴楯湡氍 ⁓⁍ ⵗ 楮摯睳 ⵃ 潤敉湴敧物瑹 ഊ†䑡瑥㨠㈰㈵ⴰ 㐭ㄳ吱㔺㈹㨰㘮ㄲ㘰〰ず ഊ†䕶敮琠䥄㨠㌰㌳ഊ†呡獫㨠
丯䄍 ⁌敶敬㨠䕲牯爀 ഊ†佰捯摥㨠丯䄍 ⁋敹睯牤㨠丯䄍 ⁕⁓ⴱⴵⴲ ㄭ㔷㠱㜷ㄷ㔭㐲〷㘹㘶㈳ⴱ 㠲㐷㜴㘷 ⴱ〰ㄍ ⁕獥爠乡浥㨠䝏䱆䥔伳ㅜ条扲植 ⁃⁇ഊ†潤攠䥮瑥杲楴礠摥瑥
牭楮敤⁴桡琠愠灲潣敳猠⡜䑥癩捥屈慲摤楳歖潬畭攷展獥牳屧慢物屁灰䑡瑡屌潣慬屄楳捯牤屡灰 ⴱ⸰⸹ ⁆⁴⁴桡琠摩搠湯琠浥整⁴桥⁍楣牯獯晴楧湩湧敶敬敱畩牥浥湴献
⁜ ⁍
癥湴嬱崍 ⁌⁎⁍ ⵗ 楮摯睳 ⵃ 潤敉湴敧物瑹⽏灥牡瑩潮慬 ഊ†卯畲捥㨠䵩捲潳潦琭坩湤潷猭䍯摥䥮瑥杲楴礍 ਠ⁄慴攺′〲㔭〴 ⴱ⸰ ⁅″〳㌍
⁉ ⁔⁎ഊ†⁅
⁏⁎ഊ†⁎ഊ†啳敲㨠匭ㄭ㔭㈱ⴵ 㜸ㄷ㜱㜵 ⴴ㈰㜶㤶㘲㌭ㄸ㈴㜷㐶㜭〱 ഊ†啳敲⁎慭攺⁇佌䙉呏㌱屧慢物 ഊ†䍯浰畴敲㨠䝯汦楴漳ㄍ ਠ⁄敳捲楰瑩潮㨠 ഊ ⁉⁰
⤠慴瑥浰瑥搠瑯潡搠屄
敶楣敜䡡牤摩獫噯汵浥㝜偲潧牡洠䙩汥猠⡸⸲⸱⸴⸀ഊഊ
==================== Memory info ===========================
Processor: 11th Gen Intel(R) Core(TM) i5-11400F @ 2.60GHz
Percentage of memory in use: 25%
Total physical RAM: 32625.57 MB
Available physical RAM: 24288.48 MB
Total Virtual: 34673.57 MB
Available Virtual: 24278.49 MB
==================== Drives ================================
Drive c: (GOLFITO31) (Fixed) (Total:930.47 GB) (Free:416.65 GB) NTFS
Drive d: (gabi2) (Fixed) (Total:931.5 GB) (Free:228.33 GB) NTFS
Drive e: (gabi1) (Fixed) (Total:465.75 GB) (Free:299.61 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 00000000)
Partition: GPT.
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 00000000)
Partition: GPT.
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt ============================