Start::
CreateRestorePoint:
CloseProcesses:
Virusscan: C:\Users\User\AppData\Local\Sideloadly\sideloadlydaemon.exe
File: C:\Users\User\AppData\Local\Sideloadly\sideloadlydaemon.exe
Virusscan: C:\Program Files\Chaos Group\Chaos Cosmos\cbservice.exe
File: C:\Program Files\Chaos Group\Chaos Cosmos\cbservice.exe
Virusscan: C:\Program Files\Chaos\UnifiedLogin\ulasupervisor.exe
File: C:\Program Files\Chaos\UnifiedLogin\ulasupervisor.exe
CHR HKU\S-1-5-21-418434546-2613134936-1023350470-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ibknafobnmndicojahlppolcaaibngjf]
Virusscan: C:\Users\User\cpohvp84.exe
Shortcut: C:\Users\User\AppData\Roaming\Microsoft\Word\Помещения%20311216551309266679\Помещения%20.docx.lnk -> C:\Users\User\Desktop\работа мади\Помещения .docx (Нет файла) <==== Cyrillic
AlternateDataStreams: C:\Windows:CM_be7995bdfc8d8ab791fbfefa187c3875a89ccddaea42f3929155d8af0adee7c6 [26]
IE trusted site: HKU\S-1-5-21-418434546-2613134936-1023350470-1001\...\sharepoint.com -> hxxps://nthume-files.sharepoint.com
FirewallRules: [TCP Query User{1C9942EF-54D7-4985-AE96-11E85F9E093A}E:\driver\sdi64-drv.exe] => (Allow) E:\driver\sdi64-drv.exe => Нет файла
FirewallRules: [UDP Query User{7DD93BD7-F456-4C45-B2D7-F3839C74A2CD}E:\driver\sdi64-drv.exe] => (Allow) E:\driver\sdi64-drv.exe => Нет файла
FirewallRules: [{E9392C55-FAF0-4B23-9048-C4CA7FEDA185}] => (Allow) LPort=30305
FirewallRules: [{F5428EA8-2F70-4417-911C-B4B810123A51}] => (Allow) LPort=30306
FirewallRules: [{8D81C4E1-8E8D-456E-BA5E-E93D4CD62E5E}] => (Allow) LPort=27015
FirewallRules: [{39FDD639-ED94-42AC-9980-E5B410CC8D6D}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 24\CineRender\CineRenderNEM.exe => Нет файла
FirewallRules: [{99745B88-3315-4D8F-9E1C-3C9957FBFA62}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 24\CineRender\CineRenderNEM.exe => Нет файла
FirewallRules: [{240793F8-B5AF-456E-8D02-409CE7217823}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 24\CineRender\CineRenderNEM.exe => Нет файла
FirewallRules: [{39FDD639-ED94-42AC-9980-E5B410CC8D6D}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 24\CineRender\CineRenderNEM.exe => Нет файла
FirewallRules: [{99745B88-3315-4D8F-9E1C-3C9957FBFA62}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 24\CineRender\CineRenderNEM.exe => Нет файла
FirewallRules: [{240793F8-B5AF-456E-8D02-409CE7217823}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 24\CineRender\CineRenderNEM.exe => Нет файла
ExportKey: HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions
Hosts:
Reboot:
End::