Logfile of Trend Micro HiJackThis 2.0.6 - Private Fork by Alex Dragokas ver. Alpha 4.3 Platform: x64 Windows 10 (Home), 10.0.14393, Service Pack: 0 Time: 12.02.2017 - 00:17 Language: OS: English (0x409). Display: English (0x409). Non-Unicode: English (0x1009) Elevated: Yes Ran by: Hunter Cutbush (group: Administrator) on HUNTER Chrome: 56.0.2924.87 Firefox: 50.1.0.6186 Edge: 11.0.14393.693 Internet Explorer: 11.0.14393.0 Boot mode: Normal Running processes: Number | Path 1 C:\OEM\Preload\FubTracking\FubTracking.exe 1 C:\PROGRA~1\COMMON~1\McAfee\Platform\McUICnt.exe 4 C:\PROGRA~2\RAPTRI~1\PlaysTV\QtWebEngineProcess.exe 1 C:\PROGRA~2\RAPTRI~1\PlaysTV\plays_ep64.exe 1 C:\PROGRA~2\RAPTRI~1\PlaysTV\playstv.exe 1 C:\PROGRA~2\RAPTRI~1\Raptr\raptr.exe 1 C:\PROGRA~2\RAPTRI~1\Raptr\raptr_ep64.exe 1 C:\PROGRA~2\RAPTRI~1\Raptr\raptr_im.exe 1 C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe 1 C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe 1 C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe 1 C:\Program Files (x86)\Acer\Acer Drive\AcerDriveProxy.exe 1 C:\Program Files (x86)\Acer\Acer Drive\AcerDriveTray.exe 1 C:\Program Files (x86)\Acer\Acer Drive\AcerDriveUI.exe 1 C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe 1 C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe 1 C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe 1 C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe 1 C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe 1 C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe 1 C:\Program Files (x86)\Amazon\Amazon Assistant\amazonAssistantService.exe 2 C:\Program Files (x86)\Battle.net\Battle.net.8293\Battle.net Helper.exe 1 C:\Program Files (x86)\Battle.net\Battle.net.8293\Battle.net.exe 1 C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe 1 C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe 2 C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe 1 C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe 1 C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AdobeGCClient.exe 1 C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe 1 C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 1 C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe 6 C:\Program Files (x86)\Google\Chrome\Application\chrome.exe 1 C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe 1 C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe 1 C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe 1 C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe 1 C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe 1 C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe 1 C:\Program Files (x86)\Microsoft Office\Office15\FIRSTRUN.EXE 2 C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe 1 C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe 1 C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe 1 C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe 1 C:\Program Files (x86)\NZXT\CAM\CAM_V3.exe 1 C:\Program Files (x86)\NZXT\CAM\Service\CAMService.exe 1 C:\Program Files (x86)\Origin\Origin.exe 1 C:\Program Files (x86)\Origin\OriginWebHelperService.exe 2 C:\Program Files (x86)\Origin\QtWebEngineProcess.exe 1 C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe 1 C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe 1 C:\Program Files\AVAST Software\SecureLine\secureline.exe 1 C:\Program Files\AVAST Software\SecureLine\vpnsvc.exe 1 C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe 1 C:\Program Files\Acer\Acer Quick Access\QAAgent.exe 1 C:\Program Files\Acer\Acer Quick Access\QASvc.exe 1 C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe 1 C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe 1 C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe 1 C:\Program Files\Common Files\McAfee\CSP\2.3.253.0\McCSPServiceHost.exe 1 C:\Program Files\Common Files\McAfee\ClientAnalytics\Legacy\McClientAnalytics.exe 2 C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe 1 C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe 2 C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe 1 C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe 1 C:\Program Files\Common Files\McAfee\VSCore_15_6\mcapexe.exe 1 C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe 1 C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe 1 C:\Program Files\McAfee Security Scan\3.11.500\SSScheduler.exe 1 C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe 1 C:\Program Files\NVIDIA Corporation\Display\nvtray.exe 1 C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe 1 C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe 1 C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe 1 C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe 1 C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.11.105.0_x64__kzf8qxf38zg5c\SkypeHost.exe 1 C:\ProgramData\Battle.net\Agent\Agent.5414\Agent.exe 3 C:\Users\Hunter Cutbush\AppData\Local\Discord\app-0.0.297\Discord.exe 1 C:\Users\Hunter Cutbush\AppData\Local\Microsoft\OneDrive\OneDrive.exe 1 C:\Users\Hunter Cutbush\Desktop\HiJackThis.exe 1 C:\Windows\SysWOW64\cmd.exe 1 C:\Windows\System32\RuntimeBroker.exe 1 C:\Windows\System32\SearchFilterHost.exe 1 C:\Windows\System32\SearchIndexer.exe 1 C:\Windows\System32\SearchProtocolHost.exe 1 C:\Windows\System32\SettingSyncHost.exe 1 C:\Windows\System32\audiodg.exe 2 C:\Windows\System32\backgroundTaskHost.exe 6 C:\Windows\System32\conhost.exe 2 C:\Windows\System32\csrss.exe 1 C:\Windows\System32\dasHost.exe 1 C:\Windows\System32\dllhost.exe 1 C:\Windows\System32\dwm.exe 1 C:\Windows\System32\fontdrvhost.exe 1 C:\Windows\System32\lsass.exe 2 C:\Windows\System32\mfevtps.exe 1 C:\Windows\System32\services.exe 1 C:\Windows\System32\sihost.exe 1 C:\Windows\System32\smartscreen.exe 1 C:\Windows\System32\smss.exe 1 C:\Windows\System32\spoolsv.exe 18 C:\Windows\System32\svchost.exe 1 C:\Windows\System32\taskhostw.exe 2 C:\Windows\System32\wbem\WmiPrvSE.exe 1 C:\Windows\System32\wbem\unsecapp.exe 1 C:\Windows\System32\wininit.exe 1 C:\Windows\System32\winlogon.exe 1 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe 1 C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe 1 C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.693_none_42ff55c9655f38bf\TiWorker.exe 1 C:\Windows\explorer.exe 1 C:\Windows\servicing\TrustedInstaller.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer15.msn.com/?pc=ACTE O1 - Hosts: Reset contents to default O1 - Hosts: 127.0.0.1 down.baidu2016.com O1 - Hosts: 127.0.0.1 123.sogou.com O1 - Hosts: 127.0.0.1 www.czzsyzgm.com O1 - Hosts: 127.0.0.1 www.czzsyzxl.com O1 - Hosts: 127.0.0.1 down.baidu2016.com O1 - Hosts: 127.0.0.1 123.sogou.com O1 - Hosts: 127.0.0.1 www.czzsyzgm.com O1 - Hosts: 127.0.0.1 www.czzsyzxl.com O1 - Hosts: 127.0.0.1 down.baidu2016.com O1 - Hosts: 127.0.0.1 123.sogou.com O1 - Hosts: 127.0.0.1 www.czzsyzgm.com O1 - Hosts: 127.0.0.1 www.czzsyzxl.com O1 - Hosts: 127.0.0.1 union.baidu2019.com O1 - Hosts: 0.0.0.1 mssplus.mcafee.com O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_71\bin\jp2ssv.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_71\bin\ssv.dll O2 - BHO: McAfee WebAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll O2-32 - BHO: Dashlane BHO - {42D79B50-CC4A-4A8E-860F-BE674AF053A2} - C:\Users\Hunter Cutbush\AppData\Roaming\Dashlane\ie\Dashlanei.dll O2-32 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll O2-32 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll O2-32 - BHO: McAfee WebAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O3-32 - Toolbar: Dashlane Toolbar - {669695BC-A811-4A9D-8CDF-BA8C795F261C} - C:\Users\Hunter Cutbush\AppData\Roaming\Dashlane\ie\KWIEBar.dll O4 - Global User Startup: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.500\SSScheduler.exe O4 - HKCU\..\: [firstLaunch] 0 O4 - HKCU\..\Run: [OneDrive] "C:\Users\Hunter Cutbush\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background O4 - HKCU\..\StartupApproved\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR (2016/11/16) O4 - HKCU\..\StartupApproved\Run: [DashlanePlugin] "C:\Users\Hunter Cutbush\AppData\Roaming\Dashlane\DashlanePlugin.exe" ws (2016/11/08) O4 - HKCU\..\StartupApproved\Run: [Dashlane] "C:\Users\Hunter Cutbush\AppData\Roaming\Dashlane\Dashlane.exe" autoLaunchAtStartup (2016/11/08) O4 - HKCU\..\StartupApproved\Run: [Discord] C:\Users\Hunter Cutbush\AppData\Local\Discord\app-0.0.297\Discord.exe (2017/01/29) O4 - HKCU\..\StartupApproved\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun (2016/09/01) O4 - HKCU\..\StartupApproved\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent (2016/10/31) O4 - HKCU\..\StartupApproved\StartupFolder: Battle.net.lnk -> C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe (2017/01/29) O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" O4 - HKLM\..\Run: [Malwarebytes TrayApp] C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe O4 - HKLM\..\Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s O4 - HKLM\..\Run: [ShadowPlay] "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart O4 - HKLM\..\Run: [StartCN] "C:\Program Files\AMD\CNext\CNext\cnext.exe" atlogon O4 - HKLM\..\StartupApproved\Run32: [FireStormStartUpAutoRun] C:\Program Files (x86)\ZotacFireStorm\FireStorm.exe (2016/10/30) O4 - HKU\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup O4 - HKU\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup O4-32 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true O4-32 - HKLM\..\Run: [CAM] C:\Program Files (x86)\NZXT\CAM\CAMLauncher.exe -autostart O4-32 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide O4-32 - HKLM\..\Run: [PlaysTV] "C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe" --startup O4-32 - HKLM\..\Run: [Raptr] "C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe" --startup O9 - Extra 'Tools' menuitem: McAfee WebAdvisor - {48A61126-9A19-4C50-A214-FF08CB94995C} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (HKLM) O9 - Extra button: McAfee WebAdvisor - {48A61126-9A19-4C50-A214-FF08CB94995C} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (HKLM) O9-32 - Extra 'Tools' menuitem: McAfee WebAdvisor - {48A61126-9A19-4C50-A214-FF08CB94995C} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (HKLM) O9-32 - Extra button: McAfee WebAdvisor - {48A61126-9A19-4C50-A214-FF08CB94995C} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (HKLM) O15 - Trusted Zone: *.amazon.ca O17 - HKLM\System\CSS\Services\Tcpip\..\{ff9e4315-307c-48d6-8ab0-7f57668ba35c}: NameServer = 8.8.4.4 O17 - HKLM\System\CSS\Services\Tcpip\..\{ff9e4315-307c-48d6-8ab0-7f57668ba35c}: NameServer = 8.8.8.8 O17 - HKLM\System\ControlSet001\Services\Tcpip\..\{ff9e4315-307c-48d6-8ab0-7f57668ba35c}: NameServer = 8.8.4.4 O17 - HKLM\System\ControlSet001\Services\Tcpip\..\{ff9e4315-307c-48d6-8ab0-7f57668ba35c}: NameServer = 8.8.8.8 O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~1\mcafee\msc\MCSNIE~1.DLL O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - (no file) O22 - ScheduledTask: (Ready) AMD Updater - {root} - "C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe" /AUTOUPDATEIN O22 - ScheduledTask: (Ready) AcerDriveUpdateChecker - {root} - C:\Program Files (x86)\Acer\Acer Drive\CheckUpdate.exe O22 - ScheduledTask: (Ready) Adobe Flash Player PPAPI Notifier - {root} - C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_194_pepper.exe -check pepperplugin O22 - ScheduledTask: (Ready) Adobe Flash Player Updater - {root} - C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe O22 - ScheduledTask: (Ready) AdobeAAMUpdater-1.0-MicrosoftAccount-hunter.pegasus@yahoo.ca - {root} - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe -mode=scheduled O22 - ScheduledTask: (Ready) BindingWorkItemQueueHandler - \Microsoft\Windows\NetCfg - {5AA199A0-1CED-43A5-9B85-3226086738A3} O22 - ScheduledTask: (Ready) CCleanerSkipUAC - {root} - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0) O22 - ScheduledTask: (Ready) CreateExplorerShellUnelevatedTask - {root} - C:\WINDOWS\explorer.exe /NOUACCHECK O22 - ScheduledTask: (Ready) Extractor Definitions Update Task - \Microsoft\Windows Live\SOXE - {3519154C-227E-47F3-9CC9-12C3F05817F1} O22 - ScheduledTask: (Ready) GoogleUpdateTaskMachineCore - {root} - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c O22 - ScheduledTask: (Ready) GoogleUpdateTaskMachineUA - {root} - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler O22 - ScheduledTask: (Ready) Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse - {root} - C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\1.50.1291.1\mcdatrep.exe /timeout=60000 /script=mcnrdhck.lua /hcmode=postdatupdate /datver=2887.0 /datupdatestatus=0 O22 - ScheduledTask: (Ready) Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse - {root} - C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\1.50.1291.1\mcdatrep.exe /script=mcnrdhck.lua /periodicRunCount=5 O22 - ScheduledTask: (Ready) Lpksetup - \Microsoft\Windows\MUI - C:\Windows\System32\lpksetup.exe -v O22 - ScheduledTask: (Ready) McAfee Auto Maintenance Task Agent - \McAfee - {ABCECA3B-EA5A-496B-A021-5C6BAB365E5C} O22 - ScheduledTask: (Ready) McAfee Idle Detection Task - \McAfee - {ABCDCA3B-DE6B-5A7C-B132-6D7CBA63E5C5} O22 - ScheduledTask: (Ready) Mcbuilder - \Microsoft\Windows\MUI - C:\Windows\System32\mcbuilder.exe O22 - ScheduledTask: (Ready) NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - {root} - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log O22 - ScheduledTask: (Ready) NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - {root} - C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe O22 - ScheduledTask: (Ready) NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - {root} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe O22 - ScheduledTask: (Ready) NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - {root} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe O22 - ScheduledTask: (Ready) NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - {root} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe O22 - ScheduledTask: (Ready) NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - {root} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe --logon O22 - ScheduledTask: (Ready) NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - {root} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe O22 - ScheduledTask: (Ready) OneDrive Standalone Update Task - {root} - C:\Users\Hunter Cutbush\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe (file missing) O22 - ScheduledTask: (Ready) OneDrive Standalone Update Task v2 - {root} - C:\Users\Hunter Cutbush\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe O22 - ScheduledTask: (Ready) Quick Access - {root} - "C:\Program Files\Acer\Acer Quick Access\QALauncher.exe" O22 - ScheduledTask: (Ready) Reboot - \Microsoft\Windows\UpdateOrchestrator - C:\WINDOWS\system32\MusNotification.exe RebootDialog O22 - ScheduledTask: (Ready) SpaceManagerTask - \Microsoft\Windows\SpacePort - C:\WINDOWS\system32\spaceman.exe /Work O22 - ScheduledTask: (Ready) StorageSense - \Microsoft\Windows\DiskFootprint - {AB2A519B-03B0-43CE-940A-A73DF850B49A} O22 - ScheduledTask: (Ready) UbtFrameworkService - {root} - "C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe" O22 - ScheduledTask: (Ready) Uninstaller_SkipUac_Hunter_Cutbush - {root} - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer (file missing) O22 - ScheduledTask: (Ready) User_Feed_Synchronization-{59CE0A41-AD17-4CD0-B8A9-3EC7995E134D} - {root} - C:\Windows\system32\msfeedssync.exe sync O22 - ScheduledTask: (Ready) WpsExternal_Hunter Cutbush_20170106054029 - {root} - C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe /wpscloudlaunch /run_plugin /plugin_name=ktaskschdtool /plugin_entry=ktaskschdtool.dll /task=wpsexternal /launchtask /ver=1.0 O22 - ScheduledTask: (Ready) WpsKtpcntrQingTask_Hunter Cutbush - {root} - C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5657\office6\ktpcntr.exe qing 10.1.0.5657 xxx server_url="http://kdl1.cache.wps.com/ksodl/wpscfg/client/____client____html____service____bubble.html" ic_server_url="http://info.kingsoftstore.com/wpsv6internet/infos.ads" (file missing) O22 - ScheduledTask: (Ready) WpsUpdateTask_Hunter Cutbush - {root} - C:\Program Files (x86)\Kingsoft\WPS Office\10.2.0.5811\wtoolex\wpsupdate.exe -from=task O22 - ScheduledTask: (Ready) avast! SL Update - {root} - C:\Program Files\AVAST Software\SecureLine\SLUpdate.exe O22 - ScheduledTask: (Ready) httpnewsfor24smocomhotsmartm - {root} - "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://newsfor24smo.com/hotsmartm O22 - ScheduledTask: (Running) AcerCloud - {root} - C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe task O22 - ScheduledTask: (Running) AcerDriveProxyLauncher - {root} - C:\Program Files (x86)\Acer\Acer Drive\AcerDriveProxy.exe O22 - ScheduledTask: (Running) AcerDriveTrayLauncher - {root} - C:\Program Files (x86)\Acer\Acer Drive\AcerDriveTray.exe O22 - ScheduledTask: (Running) Avast SecureLine - {root} - C:\Program Files\AVAST Software\SecureLine\SecureLine.exe /nogui O22 - ScheduledTask: (Running) BacKGroundAgent - {root} - C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe task O22 - ScheduledTask: (Running) CAM - {root} - C:\Program Files (x86)\NZXT\CAM\CAM_V3.exe O22 - ScheduledTask: (Running) FUBTrackingByPLD - {root} - "C:\OEM\Preload\FubTracking\FubTracking.exe" O22 - ScheduledTask: (Running) McAfeeLogon - {root} - C:\PROGRA~1\COMMON~1\McAfee\Platform\McUICnt.exe /platui O22 - ScheduledTask: (Running) Microsoft Office Touchless Attach Notification - \Microsoft\Office - C:\Program Files (x86)\Microsoft Office\Office15\FirstRun.exe /OEMTA silent O22 - ScheduledTask: (Running) abDocsDllLoader - {root} - C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe task O23 - Service R2: AMD FUEL Service - (AMD FUEL Service) - Advanced Micro Devices, Inc. - C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe O23 - Service R2: Adobe Genuine Software Integrity Service - (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe O23 - Service R2: AdobeUpdateService - (AdobeUpdateService) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe O23 - Service R2: Amazon Assistant Service - (Amazon Assistant Service) - Unknown owner - C:\Program Files (x86)\Amazon\Amazon Assistant\amazonAssistantService.exe O23 - Service R2: Avast SecureLine - (SecureLine) - Unknown owner - C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe O23 - Service R2: CCDMonitorService - (CCDMonitorService) - Acer Incorporated - C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe O23 - Service R2: Cyberlink RichVideo Service(CRVS) - (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe O23 - Service R2: Dashlane Upgrade Service - (Dashlane Upgrade Service) - Dashlane SAS - C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe O23 - Service R2: Hi-Rez Studios Authenticate and Update Service - (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe O23 - Service R2: Intel Security PEF Service - (PEFService) - Intel Security, Inc. - C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe O23 - Service R2: LiveUpdate - (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe O23 - Service R2: Malwarebytes Service - (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe O23 - Service R2: McAfee AP Service - (McAPExe) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\VSCore_15_6\McApExe.exe O23 - Service R2: McAfee Boot Delay Start Service - (McBootDelayStartSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service R2: McAfee CSP Service - (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\2.3.253.0\\McCSPServiceHost.exe O23 - Service R2: McAfee Home Network - (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service R2: McAfee Module Core Service - (ModuleCoreService) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe O23 - Service R2: McAfee Personal Firewall Service - (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service R2: McAfee Platform Services - (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service R2: McAfee Proxy Service - (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service R2: McAfee Service Controller - (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe O23 - Service R2: McAfee SiteAdvisor Service - (McAfee SiteAdvisor Service) - McAfee, Inc. - C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe O23 - Service R2: McAfee VirusScan Announcer - (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service R2: NVIDIA Display Container LS - (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe O23 - Service R2: NVIDIA LocalSystem Container - (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe O23 - Service R2: NVIDIA Telemetry Container - (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe O23 - Service R2: Origin Web Helper Service - (Origin Web Helper Service) - Electronic Arts - C:\Program Files (x86)\Origin\OriginWebHelperService.exe O23 - Service R2: Plays.tv Update Service (PlaysService) - (PlaysService) - Copyright (c) 2017 Plays.tv, LLC - C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe O23 - Service R2: acCAMService - (acCAMService) - Unknown owner - C:\Program Files (x86)\NZXT\CAM\Service\CAMService.exe O23 - Service R3: ClientAnalyticsService - (ClientAnalyticsService) - Intel Security - C:\Program Files\Common Files\McAfee\ClientAnalytics\Legacy\McClientAnalytics.exe O23 - Service R3: McAfee Firewall Core Service - (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe O23 - Service R3: McAfee Validation Trust Protection Service - (mfevtp) - McAfee, Inc. - C:\WINDOWS\system32\mfevtps.exe O23 - Service R3: Quick Access Service - (QASvc) - Acer Incorporated - C:\Program Files\Acer\Acer Quick Access\QASvc.exe O23 - Service R3: User Experience Improvement Program - (UEIPSvc) - acer - C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe O23 - Service S2: ACP User Service - (amdacpusrsvc) - Advanced Micro Devices - C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe O23 - Service S2: Google Update Service (gupdate) - (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service S3: Adobe Flash Player Update Service - (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service S3: EasyAntiCheat - (EasyAntiCheat) - EasyAntiCheat Ltd - C:\WINDOWS\SysWow64\EasyAntiCheat.exe O23 - Service S3: GamesAppService - (GamesAppService) - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe O23 - Service S3: Google Update Service (gupdatem) - (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service S3: McAfee Anti-Spam Service - (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service S3: McAfee Scanner - (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe O23 - Service S3: McAfee Security Scan Component Host Service - (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.11.500\McCHSvc.exe O23 - Service S3: Mozilla Maintenance Service - (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service S3: NVIDIA NetworkService Container - (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe O23 - Service S3: Origin Client Service - (Origin Client Service) - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe O23 - Service S3: Steam Client Service - (Steam Client Service) - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service S3: WPS Office Cloud Service - (wpscloudsvr) - Zhuhai Kingsoft Office Software Co.,Ltd - C:\Program Files (x86)\Kingsoft\WPS Office\wpscloudsvr.exe -- End of file - Time spent: 26 sec. - 55560 bytes, CRC32: FFFFFFFF. Sign: ᛑ㨳