Pca General DB 0
Pca General DB 0
exe|firefox|
mozilla corporation|137.0.2|000624a0cb2bed9551bee13b3d8d54c4372900000000|Abnormal
process exit with code 0x1
2025-04-24 11:56:19.784|3|\windows.old\usersxxxxxx\appdata\roaming\telegram
desktop\telegram.exe|telegram desktop|telegram fz-llc|5.12.3.0|
00062b6ace827045b136af641d1d6c23434d00000904|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-04-24 14:50:51.334|2|%USERPROFILE%\downloads\
avast_free_antivirus_setup_online.exe|avast|gen digital inc.|2.1.133.0|
0006d5595b355fb3e8ad2871fde1fbb43fe600000904|Abnormal process exit with code
0xc000042c
2025-04-24 14:52:30.929|2|%systemroot%\temp\asw-764bd375-1579-4082-bfde-
4de9e656e4f5\common\icarus.exe|||||Abnormal process exit with code 0xafd3
2025-04-24 14:52:31.087|2|%systemroot%\temp\asw.73cb85cce1a67d24\
avast_free_antivirus_online_setup.exe|avast installer|gen digital inc.|
25.3.9983.2649|0006658d76d8f7c65b70470d2f92280a114f00000904|Abnormal process exit
with code 0xafd3
2025-04-24 14:52:31.225|2|%USERPROFILE%\downloads\
avast_free_antivirus_setup_online.exe|avast|gen digital inc.|2.1.133.0|
0006d5595b355fb3e8ad2871fde1fbb43fe600000904|Abnormal process exit with code 0xafd3
2025-04-24 14:52:32.709|2|%USERPROFILE%\downloads\
avast_free_antivirus_setup_online.exe|avast|gen digital inc.|2.1.133.0|
0006d5595b355fb3e8ad2871fde1fbb43fe600000904|Abnormal process exit with code
0xc000042c
2025-04-24 14:52:43.679|2|%systemroot%\temp\asw-cd9df5e0-1c6b-4a7d-8314-
8d04743dd8e8\avast-av\icarus.exe|avast installer|gen digital inc.|25.3.8935.0|
0006ed490141ede407d3c8f6b4de9cc7698900000904|Abnormal process exit with code 0xaca8
2025-04-24 14:52:44.044|2|%systemroot%\temp\asw-cd9df5e0-1c6b-4a7d-8314-
8d04743dd8e8\avast-av-vps\icarus.exe|avast installer|gen digital inc.|25.3.8935.0|
0006ed490141ede407d3c8f6b4de9cc7698900000904|Abnormal process exit with code 0xac44
2025-04-24 14:58:17.845|2|%USERPROFILE%\downloads\
avast_free_antivirus_setup_online.exe|avast|gen digital inc.|2.1.133.0|
0006d5595b355fb3e8ad2871fde1fbb43fe600000904|Abnormal process exit with code
0xc000042c
2025-04-24 14:59:38.590|2|%programfiles%\avast software\browser\application\
avastbrowser.exe|avast secure browser|gen digital inc.|134.0.29548.179|
0006f433f9ebda947930826a250ca27979ba00000904|Abnormal process exit with code 0x1
2025-04-24 14:59:54.550|2|%programfiles%\avast software\browser\application\
134.0.29548.179\installer\setup.exe|avast secure browser installer|gen digital
inc.|134.0.29548.179|0006dbd353fb814643433e80086d2a5d7e8800000904|Abnormal process
exit with code 0x49
2025-04-24 14:59:57.192|2|%programfiles%\avast software\browser\application\
avastbrowser.exe|avast secure browser|gen digital inc.|134.0.29548.179|
0006f433f9ebda947930826a250ca27979ba00000904|Abnormal process exit with code 0x1
2025-04-24 14:59:57.659|2|%programfiles%\avast software\browser\application\
134.0.29548.179\installer\chrmstp.exe|avast secure browser installer|gen digital
inc.|134.0.29548.179|0006dbd353fb814643433e80086d2a5d7e8800000904|Abnormal process
exit with code 0x49
2025-04-24 14:59:58.183|2|%programfiles%\avast software\browser\application\
avastbrowser.exe|avast secure browser|gen digital inc.|134.0.29548.179|
0006f433f9ebda947930826a250ca27979ba00000904|Abnormal process exit with code 0x3ef
2025-04-24 14:59:58.214|2|%programfiles%\avast software\browser\application\
avastbrowser.exe|avast secure browser|gen digital inc.|134.0.29548.179|
0006f433f9ebda947930826a250ca27979ba00000904|Abnormal process exit with code 0x1
2025-04-24 15:15:30.512|3|%programfiles%\winrar\winrar.exe|winrar|alexander roshal|
7.1.0|00007720a9f59d36153bde16a1e7583f7ca200000000|PCA resolve is called, resolver
name: DetectorShim_KernelDriver, result: 0
2025-04-24 15:19:24.577|0|%USERPROFILE%\downloads\compressed\
offline.explorer.enterprise.8.6.0.4988.portable\
offline.explorer.enterprise.8.6.0.4988.portable\offlineexplorerportable.exe|offline
explorer mx portable|portableappz.blogspot.com|0.0.0.0|
00064354df2e6b4f92d30cf6134fd24401b200000000|Installer failed
2025-04-24 15:19:24.577|3|%USERPROFILE%\downloads\compressed\
offline.explorer.enterprise.8.6.0.4988.portable\
offline.explorer.enterprise.8.6.0.4988.portable\offlineexplorerportable.exe|offline
explorer mx portable|portableappz.blogspot.com|0.0.0.0|
00064354df2e6b4f92d30cf6134fd24401b200000000|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-04-24 19:35:33.152|0|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgameslauncher.exe|unreal engine|epic games, inc.|18.5.0-41681068++
+portal+release-live|000653ddebe34d5ca86388d7c6c2cdcd859300000904|Installer failed
2025-04-24 19:35:33.334|3|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgameslauncher.exe|unreal engine|epic games, inc.|18.5.0-41681068++
+portal+release-live|000653ddebe34d5ca86388d7c6c2cdcd859300000904|PCA resolve is
called, resolver name: DetectorShim_KernelDriver, result: 0
2025-04-25 06:54:18.459|3|%USERPROFILE%\appdata\local\roblox\versions\version-
a9a5d0b275a34ffb\robloxplayerbeta.exe|roblox|roblox corporation|0, 670, 0, 6700713|
0000b67a06a09de9833fe8a7a4f33c6275460000ffff|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-04-25 10:15:26.020|2|%USERPROFILE%\appdata\local\temp\cc908b1a-0c73-4361-9722-
aeca3d39eee5_crosshair.x.v03282025.7z.ee5\crosshair x\crosshairx.exe|crosshairx|
github, inc.|10.1.1|00063335edb4e6966fcc68533bad97b4139900000904|Abnormal process
exit with code 0xc0000135
2025-04-26 15:30:22.392|3|%programfiles(x86)%\epic games\launcher\portal\binaries\
win32\epicgameslauncher.exe|unreal engine|epic games, inc.|1.11.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|PCA resolve is
called, resolver name: DetectorShim_KernelDriver, result: 0
2025-04-27 09:03:32.655|2|%USERPROFILE%\downloads\planetvpn.exe|planetvpn
|planetvpn |2.10.33.71
|00068f5e0c937f18958ebe6d4d4ecb77778b00000000|Abnormal process exit with code 0x2
2025-04-27 09:03:33.228|2|%USERPROFILE%\appdata\local\temp\is-jp5sp.tmp\
planetvpn.tmp|||||Abnormal process exit with code 0x2
2025-04-27 09:03:33.242|2|%USERPROFILE%\downloads\planetvpn.exe|planetvpn
|planetvpn |2.10.33.71
|00068f5e0c937f18958ebe6d4d4ecb77778b00000000|Abnormal process exit with code 0x2
2025-04-27 09:03:33.777|2|%USERPROFILE%\appdata\local\temp\is-pknue.tmp\
planetvpn.tmp|||||Abnormal process exit with code 0x2
2025-04-27 16:27:26.433|3|%programfiles%\windowsapps\
microsoft.gethelp_10.2409.22951.0_x64__8wekyb3d8bbwe\gethelp.exe|microsoft get
help|microsoft corporation|10.2409.241021001-2024.10.21|
00066906822b0e302a94d6e86d958c7ab45700000000|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-04-28 03:35:44.840|3|%programfiles%\windowsapps\
microsoft.windows.photos_2025.11030.12002.0_x64__8wekyb3d8bbwe\photos.exe||||
0006160fdd24c51a5e9fbbd351baaca661090000ffff|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-04-28 03:35:45.417|3|%USERPROFILE%\downloads\crosshair.x.v03282025\crosshair
x\crosshairx.exe|crosshairx|github, inc.|10.1.1|
00063335edb4e6966fcc68533bad97b4139900000904|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-04-28 13:30:02.550|3|%programfiles%\windowsapps\
microsoft.screensketch_11.2502.18.0_x64__8wekyb3d8bbwe\snippingtool\
snippingtool.exe|snipping tool|microsoft corporation|11.2502.18.0|
0006e76e70c10c3fed5123463241a561b57400000000|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-04-28 13:31:50.171|3|%programfiles%\windowsapps\
microsoft.copilot_1.25034.135.0_x64__8wekyb3d8bbwe\copilot.exe|copilot|microsoft
corporation|1.25034.135+5709886cfe71c79ccf6e472fa68c72271ee3e774|
0006bbf539db3844a4f075f93be2edc699b200000000|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-04-28 13:35:15.776|3|%programfiles%\windowsapps\
clipchamp.clipchamp_4.2.10020.0_x64__yxz26nhyzhsrt\clipchamp\clipchamp.exe|
clipchamp|clipchamp|1.0.0+dfc2aa7125c4a671fc604f0ea5fb14c5185c9d89|
00067923681a18e77192999159d282808b6600000000|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-04-28 13:51:56.408|3|%programfiles%\windowsapps\
microsoft.paint_11.2502.161.0_x64__8wekyb3d8bbwe\paintapp\mspaint.exe|paint|
microsoft corporation|11.2502.161.0|0006205ac2ea0a3f3c78306a45e89bd73fdb00000000|
PCA resolve is called, resolver name: DetectorShim_KernelDriver, result: 0
2025-04-28 14:08:16.334|3|%programfiles%\veracrypt\veracrypt.exe|veracrypt|idrix|
1.26.20|0000d29aeea62f2a8ba2a43fbb1b49f632b40000ffff|PCA resolve is called,
resolver name: DetectorShim_KernelDriver, result: 0
2025-04-29 01:40:25.172|3|%programfiles%\windowsapps\
microsoft.windowsnotepad_11.2501.31.0_x64__8wekyb3d8bbwe\notepad\notepad.exe|
notepad|microsoft corporation|11.2501.31.0|
00064d6b1dff6c46c65302a013e09e1c25e800000000|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-04-29 03:49:14.478|2|%USERPROFILE%\downloads\
drw_tr_installer.17458985401435b1981.exe||||
0006d888441a1bcf608fc318a99960b7e8830000ffff|Abnormal process exit with code
0xc000042c
2025-04-29 03:49:16.762|2|%USERPROFILE%\appdata\local\temp\downloader_easeus\
2.0.0\2trial\aliyun\infoforsetup.exe||||
000654706955afee81fe1f55d8642a3148fa0000ffff|Abnormal process exit with code 0x1
2025-04-29 03:59:40.219|2|%USERPROFILE%\downloads\
drw_tr_installer.17458985401435b1981.exe||||
0006d888441a1bcf608fc318a99960b7e8830000ffff|Abnormal process exit with code
0xc000042c
2025-04-29 04:25:11.085|0|%USERPROFILE%\downloads\hddscan (3)\hddscan.exe|hddscan||
4.1|00064edd4b408d289f4e1a702e27d56c01f800000904|Installer failed
2025-04-29 04:25:11.155|3|%USERPROFILE%\downloads\hddscan (3)\hddscan.exe|hddscan||
4.1|00064edd4b408d289f4e1a702e27d56c01f800000904|PCA resolve is called, resolver
name: DetectorShim_KernelDriver, result: 0
2025-04-29 12:29:40.149|2|%USERPROFILE%\downloads\tsetup-x64.5.13.1.exe|telegram
desktop |telegram fz-llc
|5.13.1 |
0006840a0b6e17eacdc62400742d62e8c9b500000000|Abnormal process exit with code 0x1
2025-04-29 12:29:40.453|2|%USERPROFILE%\appdata\local\temp\is-7uouf.tmp\tsetup-
x64.5.13.1.tmp|||||Abnormal process exit with code 0x1
2025-04-29 12:29:52.699|3|%USERPROFILE%\downloads\tsetup-x64.5.13.1.exe|telegram
desktop |telegram fz-llc
|5.13.1 |
0006840a0b6e17eacdc62400742d62e8c9b500000000|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-04-30 05:41:57.595|2|%systemroot%\syswow64\regsvr32.exe|microsoft® windows®
operating system|microsoft corporation|10.0.22621.5124|
0000f519feec486de87ed73cb92d3cac802400000000|Abnormal process exit with code 0x3
2025-04-30 05:41:57.643|2|%systemroot%\syswow64\regsvr32.exe|microsoft® windows®
operating system|microsoft corporation|10.0.22621.5124|
0000f519feec486de87ed73cb92d3cac802400000000|Abnormal process exit with code 0x3
2025-04-30 05:42:12.705|2|%USERPROFILE%\downloads\altercam-setup.exe|altercam
|bolide(r) software |6.4
|000601385280053bdd86a66c301d4eeb0b5200000000|Abnormal process exit with code 0x2
2025-04-30 05:42:13.032|2|%USERPROFILE%\appdata\local\temp\is-80sqj.tmp\altercam-
setup.tmp|||||Abnormal process exit with code 0x2
2025-04-30 05:42:13.044|2|%USERPROFILE%\downloads\altercam-setup.exe|altercam
|bolide(r) software |6.4
|000601385280053bdd86a66c301d4eeb0b5200000000|Abnormal process exit with code 0x2
2025-04-30 05:42:13.378|2|%USERPROFILE%\appdata\local\temp\is-1vj24.tmp\altercam-
setup.tmp|||||Abnormal process exit with code 0x2
2025-04-30 05:42:40.544|2|%programfiles(x86)%\altercam\altercam.exe|altercam|bolide
software|6.3.0.3392|00062f7c352ffbcd7619a6dce919ce80995a00000904|Abnormal process
exit with code 0x1
2025-04-30 05:43:27.113|2|%programfiles(x86)%\altercam\altercam.exe|altercam|bolide
software|6.3.0.3392|00062f7c352ffbcd7619a6dce919ce80995a00000904|Abnormal process
exit with code 0x1
2025-04-30 05:47:25.605|2|%systemroot%\syswow64\regsvr32.exe|microsoft® windows®
operating system|microsoft corporation|10.0.22621.5124|
0000f519feec486de87ed73cb92d3cac802400000000|Abnormal process exit with code 0x3
2025-04-30 05:47:25.636|2|%systemroot%\syswow64\regsvr32.exe|microsoft® windows®
operating system|microsoft corporation|10.0.22621.5124|
0000f519feec486de87ed73cb92d3cac802400000000|Abnormal process exit with code 0x3
2025-04-30 05:49:53.206|2|%programfiles(x86)%\altercam\tsvb\x64\
tsvbengineproc.exe||||00061bc19cf83ff562aef9b6cc55df270cbb0000ffff|Abnormal process
exit with code 0x1
2025-04-30 21:34:10.207|2|%programfiles%\bravesoftware\brave-browser\application\
brave.exe|brave browser|brave software, inc.|135.1.77.101|
0006b51291defe3c19a5f912ab5b3e60e09700000904|Abnormal process exit with code 0x22
2025-05-02 06:04:51.725|2|%USERPROFILE%\appdata\local\roblox\versions\version-
a9a5d0b275a34ffb\robloxplayerinstaller.exe|roblox bootstrapper|roblox corporation|
1, 6, 0, 6700713|00066efafcf0cbcc992d67c068b6c53a564f00000904|Abnormal process exit
with code 0xc0000409
2025-05-02 08:54:06.259|2|%USERPROFILE%\appdata\local\roblox\versions\version-
c3c1514fd260482e\robloxplayerbeta.exe|roblox|roblox corporation|0, 671, 0, 6710817|
0006d05af32c48894886f0dc8b103851f23d00000904|Abnormal process exit with code
0xc0000409
2025-05-02 08:54:09.286|2|%USERPROFILE%\appdata\local\roblox\versions\version-
c3c1514fd260482e\robloxplayerbeta.exe|roblox|roblox corporation|0, 671, 0, 6710817|
0006d05af32c48894886f0dc8b103851f23d00000904|Abnormal process exit with code
0xc0000409
2025-05-02 08:54:09.597|2|%USERPROFILE%\appdata\local\roblox\versions\version-
c3c1514fd260482e\robloxplayerbeta.exe|roblox|roblox corporation|0, 671, 0, 6710817|
0006d05af32c48894886f0dc8b103851f23d00000904|Abnormal process exit with code
0xc0000409
2025-05-02 08:54:09.706|2|%USERPROFILE%\appdata\local\roblox\versions\version-
c3c1514fd260482e\robloxplayerbeta.exe|roblox|roblox corporation|0, 671, 0, 6710817|
0006d05af32c48894886f0dc8b103851f23d00000904|Abnormal process exit with code
0xc0000409
2025-05-02 08:54:09.690|2|%USERPROFILE%\appdata\local\roblox\versions\version-
c3c1514fd260482e\robloxplayerbeta.exe|roblox|roblox corporation|0, 671, 0, 6710817|
0006d05af32c48894886f0dc8b103851f23d00000904|Abnormal process exit with code
0xc0000409
2025-05-03 04:16:47.382|3|%USERPROFILE%\appdata\roaming\telegram desktop\
telegram.exe|telegram desktop|telegram fz-llc|5.13.1.0|
0000840a0b6e17eacdc62400742d62e8c9b50000ffff|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-05-04 11:02:29.777|2|%USERPROFILE%\appdata\local\roblox\versions\version-
c3c1514fd260482e\robloxplayerinstaller.exe|roblox bootstrapper|roblox corporation|
1, 6, 0, 6710817|000613a8e17f61b03229132d3a49a262282d00000904|Abnormal process exit
with code 0xc0000409
2025-05-04 12:31:44.705|2|%USERPROFILE%\downloads\crosshair.x.v03282025\crosshair
x\crosshairx.exe|crosshairx|github, inc.|10.1.1|
00063335edb4e6966fcc68533bad97b4139900000904|Abnormal process exit with code 0x1
2025-05-04 12:31:45.662|2|%USERPROFILE%\downloads\crosshair.x.v03282025\crosshair
x\crosshairx.exe|crosshairx|github, inc.|10.1.1|
00063335edb4e6966fcc68533bad97b4139900000904|Abnormal process exit with code 0x1
2025-05-04 12:31:46.463|2|%USERPROFILE%\downloads\crosshair.x.v03282025\crosshair
x\crosshairx.exe|crosshairx|github, inc.|10.1.1|
00063335edb4e6966fcc68533bad97b4139900000904|Abnormal process exit with code 0x1
2025-05-04 12:31:47.275|2|%USERPROFILE%\downloads\crosshair.x.v03282025\crosshair
x\crosshairx.exe|crosshairx|github, inc.|10.1.1|
00063335edb4e6966fcc68533bad97b4139900000904|Abnormal process exit with code 0x1
2025-05-04 12:31:48.072|2|%USERPROFILE%\downloads\crosshair.x.v03282025\crosshair
x\crosshairx.exe|crosshairx|github, inc.|10.1.1|
00063335edb4e6966fcc68533bad97b4139900000904|Abnormal process exit with code 0x1
2025-05-04 12:31:48.860|2|%USERPROFILE%\downloads\crosshair.x.v03282025\crosshair
x\crosshairx.exe|crosshairx|github, inc.|10.1.1|
00063335edb4e6966fcc68533bad97b4139900000904|Abnormal process exit with code 0x1
2025-05-04 12:31:49.730|2|%USERPROFILE%\downloads\crosshair.x.v03282025\crosshair
x\crosshairx.exe|crosshairx|github, inc.|10.1.1|
00063335edb4e6966fcc68533bad97b4139900000904|Abnormal process exit with code 0x1
2025-05-04 14:30:37.173|2|%USERPROFILE%\appdata\local\roblox\versions\version-
00d9c9f071944daf\robloxplayerbeta.exe|roblox|roblox corporation|0, 671, 530,
6711068|000646b8ae62748ecb2f3df957a9185007a700000904|Abnormal process exit with
code 0xc0000409
2025-05-04 14:30:39.708|2|%USERPROFILE%\appdata\local\roblox\versions\version-
00d9c9f071944daf\robloxplayerbeta.exe|roblox|roblox corporation|0, 671, 530,
6711068|000646b8ae62748ecb2f3df957a9185007a700000904|Abnormal process exit with
code 0xc0000409
2025-05-04 14:30:39.734|2|%USERPROFILE%\appdata\local\roblox\versions\version-
00d9c9f071944daf\robloxplayerbeta.exe|roblox|roblox corporation|0, 671, 530,
6711068|000646b8ae62748ecb2f3df957a9185007a700000904|Abnormal process exit with
code 0xc0000409
2025-05-04 14:30:39.812|2|%USERPROFILE%\appdata\local\roblox\versions\version-
00d9c9f071944daf\robloxplayerbeta.exe|roblox|roblox corporation|0, 671, 530,
6711068|000646b8ae62748ecb2f3df957a9185007a700000904|Abnormal process exit with
code 0xc0000409
2025-05-04 14:30:39.968|2|%USERPROFILE%\appdata\local\roblox\versions\version-
00d9c9f071944daf\robloxplayerbeta.exe|roblox|roblox corporation|0, 671, 530,
6711068|000646b8ae62748ecb2f3df957a9185007a700000904|Abnormal process exit with
code 0xc0000409
2025-05-04 14:30:41.924|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 14:30:41.970|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 14:30:42.008|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 14:30:42.048|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 14:30:43.031|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 14:31:09.207|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 14:35:42.220|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 14:40:42.221|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 14:45:42.252|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 14:50:42.292|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 14:55:42.314|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 15:00:42.350|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 15:05:42.398|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 15:10:42.465|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 15:15:42.423|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 15:20:42.437|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 15:25:42.444|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 15:25:57.122|3|%USERPROFILE%\appdata\local\roblox\versions\version-
00d9c9f071944daf\robloxplayerbeta.exe|roblox|roblox corporation|0, 671, 530,
6711068|000646b8ae62748ecb2f3df957a9185007a700000904|PCA resolve is called,
resolver name: DetectorShim_KernelDriver, result: 0
2025-05-04 15:30:42.344|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 15:35:42.388|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 15:40:42.418|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 15:45:42.417|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 15:50:42.461|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 15:55:42.477|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 16:00:42.487|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 16:05:42.501|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 16:10:42.550|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 16:15:42.550|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 16:20:42.605|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 16:25:42.654|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 16:27:01.378|3|%programfiles%\diskgenius\diskgenius.exe||
@.@filedescription|5.6.1|0000a45bae1220b595b8f7e95a2b3f7086aa0000ffff|PCA resolve
is called, resolver name: DetectorShim_KernelDriver, result: 0
2025-05-04 16:30:42.677|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 16:35:42.718|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 16:39:31.737|2|%programfiles%\4ddig partition manager\
deviceviewerservice.exe|deviceviewerservice|tenorshare|1, 0, 0, 156-d-ecef316d|
0006cb2a5f4fcd9651b9932ce4a66ff8092b00000408|Abnormal process exit with code
0xffffffff
2025-05-04 16:39:31.783|2|%programfiles%\4ddig partition manager\
partitionmanagerservice.exe|partitionmanagerservice|tenorshare|1, 0, 0, 734-d-
17a826f9|000692bd24f91059a89d569ba25010d9b03700000408|Abnormal process exit with
code 0xffffffff
2025-05-04 16:40:42.693|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 16:45:42.692|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 16:50:42.740|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 16:55:42.769|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 17:00:42.804|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 17:05:42.836|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 17:10:42.877|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 17:15:42.893|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 17:20:42.919|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 17:25:42.920|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 17:30:42.948|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 17:35:42.987|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 17:40:43.004|2|%programfiles(x86)%\epic games\launcher\portal\binaries\
win64\epicgamesupdater.exe|epic games updater|epic games, inc.|0.0.0-41681068++
+portal+release-live|000059f0f20870bd3e77066436edd5de8b9b00000904|Abnormal process
exit with code 0x4
2025-05-04 19:56:49.370|2|%USERPROFILE%\appdata\local\roblox\versions\version-
00d9c9f071944daf\robloxplayerinstaller.exe|roblox bootstrapper|roblox corporation|
1, 6, 530, 6711068|0006fd8dceeee815dfc58c55efa8b9380dd100000904|Abnormal process
exit with code 0xc0000409
2025-05-05 06:08:53.255|2|%programfiles(x86)%\imyfone\imyfone lockwiper\
apple_driver\dpinst64.exe|driver package installer (dpinst)|microsoft corporation|
2.1.1|00007a5189e9855a6b4b5d2896d58ae638950000ffff|Abnormal process exit with code
0x200
2025-05-05 06:09:16.917|3|%programfiles(x86)%\imyfone\imyfone lockwiper\
lockwiper.exe|imyfone lockwiper|shenzhen imyfone technology co., ltd.|7.8.7.2|
00007a5189e9855a6b4b5d2896d58ae638950000ffff|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-05-05 06:21:18.451|3|%USERPROFILE%\downloads\xyplorer 26.10.0000\xyplorer
26.10.0000\keygen-crd\keygen\kg.exe|||1.0.0.0|
00067bb8d0fc3ffdb0d5cf1c17ea08a6176600000904|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-05-05 06:52:07.982|2|%programfiles(x86)%\xyplorer\xyplorer.exe|xyplorer|
cologne code company|26.10|000056c51a945d97028e30b369ea25fe84c50000ffff|Abnormal
process exit with code 0x1
2025-05-05 06:52:57.634|3|%programfiles(x86)%\xyplorer\xyplorer.exe|xyplorer|
cologne code company|26.10|000056c51a945d97028e30b369ea25fe84c50000ffff|PCA resolve
is called, resolver name: DetectorShim_KernelDriver, result: 0
2025-05-05 07:29:28.389|3|%USERPROFILE%\downloads\vmware workstation pro 17.6.0\
vmware workstation pro 17.6.0\keymaker-dvt\i_love_dvt\dvt-
vmware_workstation_pro_v17.x_keymaker_windows_amd64.exe||||
00065399a896ae4bca8099abf645a4f5828e0000ffff|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-05-05 09:34:58.924|2|%USERPROFILE%\downloads\iobit uninstaller pro 14.3.1.8\
iobit uninstaller pro 14.3.1.8\iobituninstaller.exe|uninstall utility 14
|iobit |14.3.1.8
|0006a89b783fc50002dca12a404a4edccd0800000000|Abnormal process exit with code 0x2
2025-05-05 09:34:59.115|2|%USERPROFILE%\appdata\local\temp\is-j9t60.tmp\
iobituninstaller.tmp|||||Abnormal process exit with code 0x2
2025-05-05 09:34:59.121|3|%USERPROFILE%\downloads\iobit uninstaller pro 14.3.1.8\
iobit uninstaller pro 14.3.1.8\iobituninstaller.exe|uninstall utility 14
|iobit |14.3.1.8
|0006a89b783fc50002dca12a404a4edccd0800000000|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-05-05 09:36:11.842|2|%programfiles(x86)%\iobit\iobit uninstaller\taskbarpin\
iconpin64.exe|iobit common component|iobit|1.0.0.10|
0006eace997dd09c9a943916c9c9cd3f155e00000904|Abnormal process exit with code 0x1
2025-05-05 09:37:27.410|2|%programfiles(x86)%\itop vpn\icop64.exe|common component|
itop inc.|1.0.0.10|000675736ef9319ac2a2f98c33a3faa33cdd00000904|Abnormal process
exit with code 0x1
2025-05-05 09:41:29.555|2|%programfiles(x86)%\iobit\iobit uninstaller\
iobituninstaler.exe|uninstall utility 14|iobit|14.0.0.0|
0006ce6a505c8a6afc378bee74240d34fa6500000904|Abnormal process exit with code
0xc0000142
2025-05-05 09:41:36.947|2|%programfiles(x86)%\iobit\iobit uninstaller\
iobituninstaler.exe|uninstall utility 14|iobit|14.0.0.0|
0006ce6a505c8a6afc378bee74240d34fa6500000904|Abnormal process exit with code
0xc0000142
2025-05-05 09:41:58.185|2|%programfiles(x86)%\iobit\iobit uninstaller\
iobituninstaler.exe|uninstall utility 14|iobit|14.0.0.0|
0006ce6a505c8a6afc378bee74240d34fa6500000904|Abnormal process exit with code
0xc0000142
2025-05-05 09:42:39.966|2|%programfiles(x86)%\iobit\iobit uninstaller\
iobituninstaler.exe|uninstall utility 14|iobit|14.0.0.0|
0006ce6a505c8a6afc378bee74240d34fa6500000904|Abnormal process exit with code
0xc0000142
2025-05-05 09:43:34.986|2|%USERPROFILE%\appdata\local\temp\_iu14d2n.tmp||||
0006c3b750b97392c67ad6a04c4cc919009e00000000|Abnormal process exit with code 0x1
2025-05-05 09:43:35.016|2|%programfiles(x86)%\itop vpn\unins000.exe||||
000646dd8593234f0607c7f9ffe5ae4edfe100000000|Abnormal process exit with code 0x1
2025-05-05 09:44:04.919|2|%programfiles(x86)%\itop vpn\icop64.exe|||||Abnormal
process exit with code 0x1
2025-05-05 09:46:40.286|2|%programfiles(x86)%\iobit\iobit uninstaller\
iobituninstaler.exe|uninstall utility 14|iobit|14.0.0.0|
0006ce6a505c8a6afc378bee74240d34fa6500000904|Abnormal process exit with code
0xc0000142
2025-05-05 09:47:08.491|0|%programfiles%\vs revo group\revo uninstaller\
revounin.exe|revo uninstaller|vs revo group|2.5.8.0|
00066f0af63126d2a32679d166581d283d9500000000|Installer failed
2025-05-05 09:47:56.594|2|%programfiles(x86)%\iobit\iobit uninstaller\
iobituninstaler.exe|uninstall utility 14|iobit|14.0.0.0|
0000fd73f8965f1317ab3f063e0bdef74a650000ffff|Abnormal process exit with code
0xc0000142
2025-05-05 09:48:15.654|2|%programfiles(x86)%\iobit\iobit uninstaller\
uninstallmonitor.exe|uninstall utility 13|iobit|13.0.0.0|
0000fd73f8965f1317ab3f063e0bdef74a650000ffff|Abnormal process exit with code
0xc0000142
2025-05-05 09:48:27.108|2|%programfiles(x86)%\iobit\iobit uninstaller\
iobituninstaler.exe|uninstall utility 14|iobit|14.0.0.0|
0000fd73f8965f1317ab3f063e0bdef74a650000ffff|Abnormal process exit with code
0xc0000142
2025-05-05 10:52:57.708|2|%programfiles%\4ddig partition manager\
deviceviewerservice.exe|deviceviewerservice|tenorshare|1, 0, 0, 156-d-ecef316d|
00000bc57dcd63c5613f9d67af69ee61d4230000ffff|Abnormal process exit with code
0xffffffff
2025-05-05 10:52:57.802|2|%programfiles%\4ddig partition manager\
partitionmanagerservice.exe|partitionmanagerservice|tenorshare|1, 0, 0, 734-d-
17a826f9|00000bc57dcd63c5613f9d67af69ee61d4230000ffff|Abnormal process exit with
code 0xffffffff
2025-05-06 15:29:37.651|0|\world of warcraft\launcher.exe|blizzard launcher|
blizzard entertainment|4, 0, 0, 2104|0006dd02a829283dc47e4e2835b2cca6628300000000|
Installer failed
2025-05-07 12:16:20.980|3|%programfiles%\windowsapps\
microsoft.windows.photos_2025.11040.23001.0_x64__8wekyb3d8bbwe\photos.exe||||
0006160fdd24c51a5e9fbbd351baaca661090000ffff|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-05-08 11:08:58.488|2|%programfiles%\microsoft office\root\office16\
ospprearm.exe||||00009556f70bb0e7ea4cde7e9cfe6720ec110000ffff|Abnormal process exit
with code 0xc004f025
2025-05-08 11:15:56.950|2|%USERPROFILE%\desktop\tor browser\browser\firefox.exe|tor
browser|mozilla corporation|128.7.0|0006a7165a5a4f8c9502a9ad7fb919fb427500000000|
Abnormal process exit with code 0x1
2025-05-08 11:15:56.993|2|%USERPROFILE%\desktop\tor browser\browser\firefox.exe|tor
browser|mozilla corporation|128.7.0|0006a7165a5a4f8c9502a9ad7fb919fb427500000000|
Abnormal process exit with code 0x1
2025-05-08 11:29:00.299|2|%USERPROFILE%\downloads\officedeploymenttool_16731-
20398.exe||microsoft corporation|16.0.16731.20398|
0006a4766c2f0a350a7dcc329cb761b861d000000000|Abnormal process exit with code
0xc000042c
2025-05-08 12:40:47.304|2|%programfiles%\winrar\winrar.exe|winrar|alexander roshal|
7.1.0|0006e7fec31368ac80fcf36c9a8f00884c3400000904|Abnormal process exit with code
0x3
2025-05-08 12:49:27.924|3|%USERPROFILE%\downloads\microsoft.office.365.proplus-
online.installer.3.3.0_yasdl.com\mini kms activator ultimate 2.1\mini kms activator
ultimate 2.1.exe|mini kms activator ultimate 2020||2.1.0.0|
0000232b995d76c382160283df63a70c73570000ffff|PCA resolve is called, resolver name:
DetectorShim_ShortRunTime, result: 0
2025-05-08 12:49:27.979|3|%USERPROFILE%\downloads\microsoft.office.365.proplus-
online.installer.3.3.0_yasdl.com\mini kms activator ultimate 2.1\mini kms activator
ultimate 2.1.exe|mini kms activator ultimate 2020||2.1.0.0|
0000232b995d76c382160283df63a70c73570000ffff|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-05-08 12:57:03.176|0|%programfiles(x86)%\iobit\iobit unlocker\
iobitunlocker.exe|unlocker|iobit information technology|1.3.0.3|
00066af1649e4a69391f89f0d0454c9b091c00000904|Installer failed
2025-05-08 12:57:32.199|0|%programfiles(x86)%\iobit\iobit unlocker\
iobitunlocker.exe|unlocker|iobit information technology|1.3.0.3|
00066af1649e4a69391f89f0d0454c9b091c00000904|Installer failed
2025-05-08 12:58:43.591|2|%programfiles%\kmspico\kmseldi.exe|kms gui eldi|@byeldi|
37.1.0.0|00060ec496fd62ee15bd174ae644f33061fb00000000|Abnormal process exit with
code 0xffffffff
2025-05-08 13:00:59.870|3|%programfiles%\kmspico\kmseldi.exe|kms gui eldi|@byeldi|
37.1.0.0|0000c6c5b4bcd4f05da8a691dc1eecb5bac00000ffff|PCA resolve is called,
resolver name: DetectorShim_KernelDriver, result: 0
2025-05-08 13:06:19.419|0|%USERPROFILE%\downloads\kamilfree.com_office & windows
activater\kamilfree.com_office & windows activater\microsoft toolkit 2.7.4\
microsoft toolkit\microsoft toolkit.exe|microsoft toolkit||2.7.4.0|
00068f600bb851455c61d1f7e1cdb658442400000000|Installer failed
2025-05-08 13:06:19.588|3|%USERPROFILE%\downloads\kamilfree.com_office & windows
activater\kamilfree.com_office & windows activater\microsoft toolkit 2.7.4\
microsoft toolkit\microsoft toolkit.exe|microsoft toolkit||2.7.4.0|
00068f600bb851455c61d1f7e1cdb658442400000000|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-05-08 13:06:35.784|0|%USERPROFILE%\downloads\microsoft toolkit 3.1.1 [2025]\
microsoft toolkit 3.1.1 [2025]\microsofttoolkit\
microsofttoolkit_(password_mstoolkit.co)\microsofttoolkit.exe||||
0006901f0be2bdf8baf6ad1a65f01a38fae90000ffff|Installer failed
2025-05-08 13:06:35.871|3|%USERPROFILE%\downloads\microsoft toolkit 3.1.1 [2025]\
microsoft toolkit 3.1.1 [2025]\microsofttoolkit\
microsofttoolkit_(password_mstoolkit.co)\microsofttoolkit.exe||||
0006901f0be2bdf8baf6ad1a65f01a38fae90000ffff|PCA resolve is called, resolver name:
DetectorShim_KernelDriver, result: 0
2025-05-08 13:06:44.821|0|%USERPROFILE%\downloads\microsoft toolkit 3.1.1 [2025]\
microsoft toolkit 3.1.1 [2025]\microsofttoolkit\
microsofttoolkit_(password_mstoolkit.co)\microsofttoolkit.exe||||
0006901f0be2bdf8baf6ad1a65f01a38fae90000ffff|Installer failed
2025-05-08 16:05:55.336|2|%USERPROFILE%\appdata\local\roblox\versions\version-
c3c1514fd260482e\robloxplayerinstaller.exe|roblox bootstrapper|roblox corporation|
1, 6, 0, 6710817|000613a8e17f61b03229132d3a49a262282d00000904|Abnormal process exit
with code 0xc0000409
2025-05-10 00:19:15.617|2|%USERPROFILE%\appdata\local\roblox\versions\version-
c3c1514fd260482e\robloxplayerbeta.exe|roblox|roblox corporation|0, 671, 0, 6710817|
0006d05af32c48894886f0dc8b103851f23d00000904|Abnormal process exit with code 0x1
2025-05-10 00:20:03.187|2|%programfiles%\diskgenius\diskgenius.exe||
@.@filedescription|5.6.1|0000a45bae1220b595b8f7e95a2b3f7086aa0000ffff|Abnormal
2025-05-10 01:24:30.002|0|%USERPROFILE%\downloads\𝒟0𝓌𝓃𝓁❁𝒶𝒹_𝐿𝒶𝓉𝑒𝓈𝓉_𝒮𝑒𝓉𝓊𝓅_𝐹!
process exit with code 0x1
𝓁𝑒_9898\𝒟0𝓌𝓃𝓁❁𝒶𝒹_𝐿𝒶𝓉𝑒𝓈𝓉_𝒮𝑒𝓉𝓊𝓅_𝐹!𝓁𝑒_9898\setup.exe|antitrack|avast software|
1.0|0006b766baaa0e0f36b6dc91445739e61e0700000904|Installer failed
2025-05-10 01:37:03.978|0|%programfiles(x86)%\manycam\manycam.exe|manycam virtual
webcam|manycam ulc|9.1.0.5|00067101abde1ed401b7e10630245af903dd00000904|Installer
failed
2025-05-10 01:37:04.143|3|%programfiles(x86)%\manycam\manycam.exe|manycam virtual
webcam|manycam ulc|9.1.0.5|00067101abde1ed401b7e10630245af903dd00000904|PCA resolve
is called, resolver name: DetectorShim_KernelDriver, result: 0