![]() Static PE information: Resource n ame: RT_IC ON type: G LS_BINARY_ LSB_FIRSTīinary contains paths to development resourcesĬlassification label: sus26.evad functionality to adjust token privileges (e.g. ![]() ![]() Static PE information: Resource n ame: RT_BI TMAP type: GLS_BINAR Y_LSB_FIRS T exeįound potential string decryption / allocating functionsĬode function: String fun ction: 004 41A5C appe ars 226 ti mesĬode function: String fun ction: 004 41A8F appe ars 39 tim esĬode function: String fun ction: 004 6DA6D appe ars 36 tim es Source: C:\Users\u ser\Deskto p\CCleaner. String found in binary or memory: oopops.sou rceforge.n et com/http:/ /ENTS_WINDO W_MESSAGES oftware macromedi a.com/shoc kwave/down load/ http ://sdc.sho /shockwave /download/ index.cgi? String found in binary or memory: adobp/1.0/ String found in binary or memory: isknight.o rg/ (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\ - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.Source: CCleaner.e xe, 000000 00.0000000 2.12784275 10.0000000 07FAE0000. (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_120314e52c04567c\RstMwService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_c59c7d36072c06c5\IntelCpHeciSvc.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_c59c7d36072c06c5\IntelCpHDCPSvc.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_a7428663aca90897\igf圎M.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_a7428663aca90897\igfxCUIService.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_d52c63e0e1c02c96\jhi_service.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe > Dolby Laboratories, Inc.) C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe > Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe > Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe > AVM Software) C:\Program Files (x86)\Paltalk\update\pt_update_service.exe (If an entry is included in the fixlist, the process will be closed. Platform: Windows 10 Home Version 1909 18363.836 (X64) Language: English (United States)ĭefault browser: "C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe" - "%1" Running from C:\Users\ronny\OneDrive\Desktop Scan result of Farbar Recovery Scan Tool (FRST) (圆4) Version: 13-05-2020 01 i tried to run farbar twice and each scan it goes through windows folders then scanning other areas and becomes non responsive, it did give these reorts. this has never been so slow, click on a link or website and if it opens it's a couple of minutes. since then my mouse behavior has been horrible. also and when it did run the processes tabs were all off the chart. no matter what i did came up not responding, task mgr. it took almost 5 minutes for a page to load. not sure if at
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |