Information about programs of ZennoLab

BuildID: 50384.12.07.2023

All used users: 8b16ee58-7d66-40b4-b77f-88ca3e26ef48@zenno.club

AppData path: C:\Users\Andrey\AppData\Roaming\ZennoLab

Installed programs of ZennoLab:

ZennoBox V7 7.7.10.0 RU
User: 8b16ee58-7d66-40b4-b77f-88ca3e26ef48@zenno.club
Install directory: C:\Program Files\ZennoLab\RU\ZennoBox V7\7.7.10.0
AppData directory: C:\Users\Andrey\AppData\Roaming\ZennoLab\ZennoBox\7
Hashes verification: Warning
Hashes changed:
XulFx45.xpi
XulFx52.xpi
ZennoPoster Pro V7 7.7.10.0 RU
User: 8b16ee58-7d66-40b4-b77f-88ca3e26ef48@zenno.club
Install directory: D:\RU\ZennoPoster Pro V7\7.7.10.0
AppData directory: C:\Users\Andrey\AppData\Roaming\ZennoLab\ZennoPoster\7
Hashes verification: Warning
Hashes changed:
XulFx52.xpi
XulFx45.xpi
Samples\2. Form filling registration.zp
Samples\4. Scrolldown ajax page.zp

Information about the operating system

Name: Майкрософт Windows 10 Pro

Version: Microsoft Windows NT 10.0.19045.0

Bit depth: 64 bit

System directory: C:\WINDOWS\system32

Local Disks:

C:Filesystem: NTFS; free 83,51 Gb (89671892992 byte) of 122,75 Gb (131803074560 byte); Tags: System, ZennoPoster
D:Filesystem: NTFS; free 97,53 Gb (104719454208 byte) of 100,27 Gb (107662536704 byte); Tags: ZennoPoster

Time: 28.01.2024 9:24:41 (UTC+02:00) Вильнюс, Киев, Рига, София, Таллин, Хельсинки (Финляндия (зима))

UTC Local: 28.01.2024 7:24:41

UTC NTP: 28.01.2024 7:24:41

Calendar: GregorianCalendar (Localized)

Information about the memory

Physical:

Total: 8055 Mb
Available: 2730 Mb

Commit:

Limit: 9335 Mb
Total: 6990 Mb

Process:

Process Count: 195
Thread Count: 2258
Handles Count: 82290

Information connection to auth servers

Server: userarea.zennolab.com

Address: 65.109.20.69
RoundTrip time: 131
Time to live: 120
Don't fragment: False
Buffer size: 32

Server: userarea-us.zennolab.com

Address: 144.76.172.207
RoundTrip time: 132
Time to live: 121
Don't fragment: False
Buffer size: 32

Server: userarea-hk.zennolab.com

Address: 45.136.197.207
RoundTrip time: 387
Time to live: 51
Don't fragment: False
Buffer size: 32

Information about hardware

CPUs:

Intel(R) Core(TM) i5-3427U CPU @ 1.80GHz; Cores: 2; MaxClockSpeed: 2301;

RAM:

BankLabel: BANK 0; RAM: 4 Gb; Speed: 1600;
BankLabel: BANK 2; RAM: 4 Gb; Speed: 1600;

Total size: 8 Gb

Video Cards:

Intel(R) HD Graphics 4000; RAM: 2112 Mb;

Hard Drives:

ADATA SU630; Size: 223,57 Gb;

Logical Drives:

C:\; Size: 122,75 Gb; Free: 83,51 Gb;
D:\; Size: 100,27 Gb; Free: 97,53 Gb;

Information about installed programs and services

Versions of. Net Framework:

.Net Framework 4 Client (v4.8.09037)
.Net Framework 4 Full (v4.8.09037)

Antivirus:

Windows Defender

Additional software:

Visual C++ redistributable 2008: Installed
Visual C++ redistributable 2010 (x86): Not installed
Visual C++ redistributable 2010 (x64): Not installed
Visual C++ redistributable 2013 (x86): Installed
Visual C++ redistributable 2013 (x64): Installed
Visual C++ redistributable 2015 (x86): Not installed
Visual C++ redistributable 2015 (x64): Not installed
Visual C++ redistributable 2017 (x86): Not installed
Visual C++ redistributable 2017 (x64): Not installed
Visual C++ redistributable 2015-2019 (x86): Installed
Visual C++ redistributable 2015-2019 (x64): Not installed

Other software:

Counter-Strike 1.6 Русская версия, версия 1.6
Google Chrome
Imo Messenger
Microsoft Edge
Microsoft Edge Update
Microsoft Update Health Tools
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.36.32532
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.24.28127
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.24.28127
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.36.32532
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.36.32532
RustDesk
Synaptics Pointing Device Driver
Update for Windows 10 for x64-based Systems (KB5001716)
VPN Unlimited 9.1.0
WinRAR 6.24 (64-разрядная)
Среда выполнения Microsoft Edge WebView2 Runtime

Information about running processes

Process name PID CPU (%) Memory (mb) Threads Handles Module path Args
ApplicationFrameHost7684029,314346C:\WINDOWS\system32\ApplicationFrameHost.exe
CheckingProcessor13856048,6719669D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\CheckingProcessor.exe
chrome95400121,4515377C:\Program Files\Google\Chrome\Application\chrome.exe
chrome115805,47117,7421436C:\Program Files\Google\Chrome\Application\chrome.exe
chrome135843,12146,6815585C:\Program Files\Google\Chrome\Application\chrome.exe
chrome1069608,78239C:\Program Files\Google\Chrome\Application\chrome.exe
chrome63800,7843,3816345C:\Program Files\Google\Chrome\Application\chrome.exe
chrome5948028,3913249C:\Program Files\Google\Chrome\Application\chrome.exe
chrome122122,34196,94381796C:\Program Files\Google\Chrome\Application\chrome.exe
chrome101240118,7515370C:\Program Files\Google\Chrome\Application\chrome.exe
chrome59200136,5116305C:\Program Files\Google\Chrome\Application\chrome.exe
chrome9548020,310233C:\Program Files\Google\Chrome\Application\chrome.exe
chrome10464066,0614291C:\Program Files\Google\Chrome\Application\chrome.exe
chrome52000199,4815375C:\Program Files\Google\Chrome\Application\chrome.exe
chrome10796060,5516277C:\Program Files\Google\Chrome\Application\chrome.exe
cmd888804,891102C:\WINDOWS\SysWOW64\cmd.exe
conhost770405,312108C:\WINDOWS\system32\conhost.exe
conhost2220010,692108C:\WINDOWS\system32\conhost.exe
conhost968405,312108C:\WINDOWS\system32\conhost.exe
conhost1091206,183119C:\WINDOWS\system32\conhost.exe
conhost114805,32108C:\WINDOWS\system32\conhost.exe
conhost228010,72108C:\WINDOWS\system32\conhost.exe
conhost221607,433127C:\WINDOWS\system32\conhost.exe
csrss328406,160761
csrss48805,730598
ctfmon61640249609C:\WINDOWS\system32\ctfmon.exe
dasHost556803,61186C:\WINDOWS\system32\dashost.exe
dasHost2024013,034391C:\WINDOWS\system32\dashost.exe
dasHost910006,71132C:\WINDOWS\system32\dashost.exe
Diagnostic120161,5673,8624654D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\Diagnostic.exe
dllhost1968016,592294C:\WINDOWS\system32\DllHost.exe
dllhost4964012,556253C:\WINDOWS\system32\DllHost.exe
dllhost1301207,392129C:\WINDOWS\system32\DllHost.exe
dwm11641,5670,35161028C:\WINDOWS\System32\dwm.exe
explorer68000,78159,34992585C:\WINDOWS\Explorer.EXE
fontdrvhost82802,66536C:\WINDOWS\system32\fontdrvhost.exe
fontdrvhost744015,43538C:\WINDOWS\System32\fontdrvhost.exe
GoogleCrashHandler714001,383184C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler.exe
GoogleCrashHandler64714800,273168C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler64.exe
HttpExecutor111160,7859,313640D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\HttpExecutor.exe
HttpExecutor5816058,9214790D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\HttpExecutor.exe
Idle000,0100
igfxCUIService158808,662187C:\WINDOWS\system32\igfxCUIService.exe
igfxEM3092014,015270C:\WINDOWS\system32\igfxEM.exe
igfxHK4416011,382166C:\WINDOWS\system32\igfxHK.exe
igfxTray7240014,052246C:\WINDOWS\system32\igfxTray.exe
instance_cr_helper_mta7588078,9218763D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\instance_cr_helper_mta.exe--type=gpu-process
instance_cr_helper_mta12236068,9221715D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\instance_cr_helper_mta.exe--type=utility --utility-sub-type=network.mojom.NetworkService
instance_cr_helper_sta2324093,3124715D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\instance_cr_helper_sta.exe--type=renderer
LockApp2292039,9413550C:\WINDOWS\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
lsass660019,7181454C:\WINDOWS\system32\lsass.exe
Memory Compression12440,78346,8300
msedge609207,997163C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge120400141,316252C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge328032,819307C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge188063,2918234C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge49760129,19471360C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge11372032,0816318C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge10948017,48174C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge12244026,3514203C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
MsMpEng40040280,430925
NisSrv6884012,310225
openvpn10360010,961153C:\Program Files (x86)\VPN Unlimited\openvpn.exe
pminstance_cr138160199,02441508D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\pminstance_cr.exe
ProjectMaker89640,78478,32852506D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\ProjectMaker.exe
QtWebEngineProcess6316024,127350C:\Program Files (x86)\VPN Unlimited\QtWebEngineProcess.exe
QtWebEngineProcess9364036,9912381C:\Program Files (x86)\VPN Unlimited\QtWebEngineProcess.exe
QtWebEngineProcess7364031,7612371C:\Program Files (x86)\VPN Unlimited\QtWebEngineProcess.exe
Registry100072,1700
RuntimeBroker5556030,2413480C:\Windows\System32\RuntimeBroker.exe
RuntimeBroker1708032,611465C:\Windows\System32\RuntimeBroker.exe
RuntimeBroker8024024,541301C:\Windows\System32\RuntimeBroker.exe
RuntimeBroker9240018,161243C:\Windows\System32\RuntimeBroker.exe
RuntimeBroker7508040,4613753C:\Windows\System32\RuntimeBroker.exe
RuntimeBroker3616016,761270C:\Windows\System32\RuntimeBroker.exe
RustDesk3332010,1417204C:\Program Files\RustDesk\RustDesk.exe
RustDesk396808,824180C:\Program Files\RustDesk\RustDesk.exe
SearchApp2484098,11511584C:\WINDOWS\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
SearchApp9660072,129980C:\WINDOWS\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
SearchIndexer5516038,7719729C:\WINDOWS\system32\SearchIndexer.exe
SecurityHealthService7480014,350442
SecurityHealthSystray564808,893179C:\Windows\System32\SecurityHealthSystray.exe
services65209,120718
SgrmBroker267606,830105
ShellExperienceHost6580059,425991C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
sihost5836026,768587C:\WINDOWS\system32\sihost.exe
smss36401,05053
spoolsv2952012,689422C:\WINDOWS\System32\spoolsv.exe
StartMenuExperienceHost5584060,687591C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
svchost1292015,756411C:\WINDOWS\System32\svchost.exe
svchost818407,034201C:\WINDOWS\system32\svchost.exe
svchost2580011,034236C:\WINDOWS\System32\svchost.exe
svchost214407,52203C:\WINDOWS\System32\svchost.exe
svchost257208,7711314C:\WINDOWS\system32\svchost.exe
svchost4692017,468388C:\WINDOWS\system32\svchost.exe
svchost385605,173143C:\WINDOWS\System32\svchost.exe
svchost902007,41148C:\WINDOWS\System32\svchost.exe
svchost2104010,468557C:\WINDOWS\System32\svchost.exe
svchost166807,337245C:\WINDOWS\system32\svchost.exe
svchost554409,221209C:\WINDOWS\system32\svchost.exe
svchost166408,74200C:\WINDOWS\System32\svchost.exe
svchost792031,39111491C:\WINDOWS\system32\svchost.exe
svchost1220011,481295C:\WINDOWS\system32\svchost.exe
svchost2280016,083176C:\WINDOWS\system32\svchost.exe
svchost121209,944252C:\WINDOWS\System32\svchost.exe
svchost378805,871143C:\WINDOWS\system32\svchost.exe
svchost205609,864171C:\WINDOWS\system32\svchost.exe
svchost8256015,640400
svchost369207,274265C:\WINDOWS\system32\svchost.exe
svchost320016,5491309C:\WINDOWS\system32\svchost.exe
svchost2456013,4610397C:\WINDOWS\System32\svchost.exe
svchost159208,212156C:\WINDOWS\system32\svchost.exe
svchost762006,661140C:\WINDOWS\system32\svchost.exe
svchost1020405,82126C:\WINDOWS\System32\svchost.exe
svchost201207,732187C:\WINDOWS\system32\svchost.exe
svchost4596026,018438C:\WINDOWS\system32\svchost.exe
svchost345207,453179C:\WINDOWS\System32\svchost.exe
svchost156805,772180C:\WINDOWS\system32\svchost.exe
svchost2860012,774227C:\WINDOWS\System32\svchost.exe
svchost8016012,363185C:\WINDOWS\System32\svchost.exe
svchost240005,423122C:\WINDOWS\System32\svchost.exe
svchost5844011,078407C:\WINDOWS\system32\svchost.exe
svchost3684010,165369C:\WINDOWS\System32\svchost.exe
svchost6696020,34285C:\WINDOWS\system32\svchost.exe
svchost2804018,2712546C:\WINDOWS\system32\svchost.exe
svchost409208,796209C:\WINDOWS\system32\svchost.exe
svchost3656037,3615375C:\WINDOWS\System32\svchost.exe
svchost160409,36193C:\WINDOWS\system32\svchost.exe
svchost1492018,437331C:\WINDOWS\system32\svchost.exe
svchost8188036,162474C:\WINDOWS\system32\svchost.exe
svchost3644034,758587C:\WINDOWS\System32\svchost.exe
svchost3636013,498370C:\WINDOWS\system32\svchost.exe
svchost2768094269C:\WINDOWS\system32\svchost.exe
svchost405205,344136C:\WINDOWS\System32\svchost.exe
svchost6300017,353449C:\WINDOWS\System32\svchost.exe
svchost2316013,485174C:\WINDOWS\System32\svchost.exe
svchost317607,545184C:\WINDOWS\System32\svchost.exe
svchost1394807,690130
svchost273207,252184C:\WINDOWS\system32\svchost.exe
svchost186807,524181C:\WINDOWS\system32\svchost.exe
svchost1005608,791162C:\WINDOWS\system32\svchost.exe
svchost4452012,083287C:\WINDOWS\system32\svchost.exe
svchost186005,522240C:\WINDOWS\System32\svchost.exe
svchost1852012,155403C:\WINDOWS\System32\svchost.exe
svchost52807,936314C:\WINDOWS\system32\svchost.exe
svchost8624011,034217C:\WINDOWS\System32\svchost.exe
svchost1844013,723226C:\WINDOWS\system32\svchost.exe
svchost3888010,184240C:\WINDOWS\system32\svchost.exe
svchost3548018,932310C:\WINDOWS\system32\svchost.exe
svchost4408013,3812442C:\WINDOWS\System32\svchost.exe
svchost225206,591129C:\WINDOWS\system32\svchost.exe
svchost8816010,192148C:\WINDOWS\system32\svchost.exe
svchost395606,999210C:\WINDOWS\System32\svchost.exe
svchost3084020,3519460C:\WINDOWS\system32\svchost.exe
svchost3944021,396404C:\WINDOWS\system32\svchost.exe
svchost135607,9511348C:\WINDOWS\system32\svchost.exe
svchost3076016,3412441C:\WINDOWS\system32\svchost.exe
svchost264408,152197C:\WINDOWS\System32\svchost.exe
svchost382007,74183C:\WINDOWS\system32\svchost.exe
svchost1344013,313256C:\WINDOWS\system32\svchost.exe
svchost2204013,324258C:\WINDOWS\system32\svchost.exe
svchost650809,161176C:\WINDOWS\System32\svchost.exe
svchost520809,282181C:\WINDOWS\system32\svchost.exe
svchost606808,117250C:\WINDOWS\System32\svchost.exe
svchost1324014,48398C:\WINDOWS\system32\svchost.exe
svchost804409,620234
svchost216408,096165C:\WINDOWS\system32\svchost.exe
svchost819607,751143C:\WINDOWS\system32\svchost.exe
svchost388407,327236C:\WINDOWS\system32\svchost.exe
svchost258809,596391C:\WINDOWS\system32\svchost.exe
SynTPEnh85041,5621,359661C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
SynTPEnhService392004,173227C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
SynTPHelper629604,64185C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
System400,1303952
SystemSettings585601,8221848C:\Windows\ImmersiveControlPanel\SystemSettings.exe
SystemSettingsBroker900025,310424C:\Windows\System32\SystemSettingsBroker.exe
taskhostw7708017,728302C:\WINDOWS\system32\taskhostw.exe
taskhostw982408,792147C:\WINDOWS\system32\taskhostw.exe
Telegram76920125,45361093D:\Telegram Desktop\Telegram.exe
TextInputHost1072038,4111544C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe
UserOOBEBroker297209,241138C:\Windows\System32\oobe\UserOOBEBroker.exe
valWBFPolicyService389603,5281C:\WINDOWS\system32\valWBFPolicyService.exe
VBCSCompiler2064060,8913345C:\Program Files\ZennoLab\RU\ZennoBox V7\7.7.10.0\Progs\roslyn\VBCSCompiler.exe
VBCSCompiler7804050,8111338D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\roslyn\VBCSCompiler.exe
vpn-unlimited87920122,561381356C:\Program Files (x86)\VPN Unlimited\vpn-unlimited.exe
vpn-unlimited-daemon1960010,34193C:\Program Files (x86)\VPN Unlimited\vpn-unlimited-daemon.exe
WhatsApp1291607,7521613C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2401.4.0_x64__cv1g1gvanyjgm\WhatsApp.exe
wininit58006,30168
winlogon5400010,056283C:\WINDOWS\System32\WinLogon.exe
WmiPrvSE121521,5612,4811291C:\WINDOWS\system32\wbem\wmiprvse.exe
WUDFHost908012,3114361C:\Windows\System32\WUDFHost.exe
ZennoLab.AudioMute11184045,8212460D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\ZennoLab.AudioMute.exe
ZennoLab.ProcessTracker8924034,486384D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\ZennoLab.ProcessTracker.exe
ZennoPoster72883,91218,81621683D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\ZennoPoster.exe
ZennoPoster69160221,2661556D:\RU\ZennoPoster Pro V7\7.7.10.0\Progs\ZennoPoster.exe