Logfile of HiJackThis Fork by Alex Dragokas v.2.9.0.18 Platform: x64 Windows 7 (Home Premium), 6.1.7601.24535, Service Pack: 1 Time: 26.11.2019 - 00:23 (UTC+01:00) Language: OS: Spanish (0xC0A). Display: Spanish (0xC0A). Non-Unicode: Spanish (0xC0A) Elevated: Yes Ran by: Juanvi Maciá (group: Administrator) on JUANVIMACIA-PC, FirstRun: no Opera: 65.0.3467.48 Chrome: 69.0.3497.92 Internet Explorer: 11.0.9600.19541 Default: "C:\Program Files (x86)\Opera\Launcher.exe" -noautoupdate -- "%1" (Opera Internet Browser) Boot mode: Normal Running processes: Number | Path 1 C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe 1 C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe 1 C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe 1 C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe 1 C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe 1 C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe 1 C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe 1 C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe 1 C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe 1 C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe 1 C:\Program Files (x86)\ASUS\SmartLogon\smartlogon.exe 1 C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe 1 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 1 C:\Program Files (x86)\DesktopEarth\DesktopEarth.exe 1 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 1 C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe 1 C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe 1 C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe 49 C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe 1 C:\Program Files (x86)\Opera\65.0.3467.48\opera_crashreporter.exe 1 C:\Program Files (x86)\Paragon Software\HFS+ for Windows\apmwinsrv.exe 1 C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe 1 C:\Program Files (x86)\TP-LINK\COMMON\RaRegistry.exe 1 C:\Program Files (x86)\TP-LINK\COMMON\RaRegistry64.exe 1 C:\Program Files (x86)\TP-LINK\COMMON\TWCU.exe 1 C:\Program Files\Bonjour\mDNSResponder.exe 1 C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe 1 C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe 1 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 1 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE 1 C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe 1 C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7epasrv64x.exe 1 C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oPNDiscoveryx64.exe 1 C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe 1 C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64x.exe 1 C:\Program Files\Intel\TurboBoost\TurboBoost.exe 1 C:\Program Files\Intel\WiFi\bin\EvtEng.exe 1 C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe 1 C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe 2 C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe 1 C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe 1 C:\Program Files\P4G\BatteryLife.exe 1 C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe 1 C:\Program Files\Trend Micro\Titanium\TiMiniService.exe 1 C:\Program Files\Trend Micro\Titanium\TiResumeSrv.exe 1 C:\Program Files\WinRAR\WinRAR.exe 1 C:\Program Files\Windows Media Player\wmpnetwk.exe 1 C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe 1 C:\Users\Juanvi Maciá\AppData\Local\FluxSoftware\Flux\flux.exe 1 C:\Users\Juanvi Maciá\Desktop\HiJackThis\HiJackThis.exe 1 C:\Windows\AsScrPro.exe 1 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 1 C:\Windows\PixArt\PAC7302\Monitor.exe 1 C:\Windows\System32\FBAgent.exe 1 C:\Windows\System32\SearchIndexer.exe 1 C:\Windows\System32\WUDFHost.exe 3 C:\Windows\System32\conhost.exe 2 C:\Windows\System32\csrss.exe 1 C:\Windows\System32\dllhost.exe 1 C:\Windows\System32\dwm.exe 1 C:\Windows\System32\hkcmd.exe 1 C:\Windows\System32\igfxpers.exe 1 C:\Windows\System32\igfxtray.exe 1 C:\Windows\System32\lsass.exe 1 C:\Windows\System32\lsm.exe 1 C:\Windows\System32\nvvsvc.exe 1 C:\Windows\System32\services.exe 1 C:\Windows\System32\smss.exe 1 C:\Windows\System32\spoolsv.exe 16 C:\Windows\System32\svchost.exe 3 C:\Windows\System32\taskeng.exe 1 C:\Windows\System32\taskhost.exe 1 C:\Windows\System32\wbem\WmiPrvSE.exe 2 C:\Windows\System32\wbem\unsecapp.exe 1 C:\Windows\System32\wininit.exe 1 C:\Windows\System32\winlogon.exe 1 C:\Windows\System32\wlanext.exe 1 C:\Windows\explorer.exe 1 C:\Windows\servicing\TrustedInstaller.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Default_Page_URL] = www.google.com R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Default_Search_URL] = www.google.com R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Search Page] = www.google.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main: [Default_Page_URL] = www.google.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main: [Default_Search_URL] = www.google.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main: [Search Page] = www.google.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main: [Start Page] = www.google.com R0-32 - HKLM\Software\Microsoft\Internet Explorer\Main: [Default_Page_URL] = www.google.com R0-32 - HKLM\Software\Microsoft\Internet Explorer\Main: [Default_Search_URL] = www.google.com R0-32 - HKLM\Software\Microsoft\Internet Explorer\Main: [Search Page] = www.google.com R0-32 - HKLM\Software\Microsoft\Internet Explorer\Main: [Start Page] = www.google.com R0-32 - HKLM\Software\Microsoft\Internet Explorer\Search: [CustomizeSearch] = www.google.com R0-32 - HKLM\Software\Microsoft\Internet Explorer\Search: [SearchAssistant] = www.google.com R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: [SuggestionsURL] = http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding} - Google R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: [URL] = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 - Google O1 - Hosts: 127.0.0.1 localhost O2 - HKLM\..\BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll O2 - HKLM\..\BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll O2 - HKLM\..\BHO: TmBpIeBHO - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe64.dll O2 - HKLM\..\BHO: Trend Micro NSC BHO - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg.dll O2 - HKLM\..\BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2-32 - HKLM\..\BHO: Aplicación auxiliar de inicio de sesión de Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2-32 - HKLM\..\BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll O2-32 - HKLM\..\BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll O2-32 - HKLM\..\BHO: TmBpIeBHO - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe32.dll O2-32 - HKLM\..\BHO: Trend Micro NSC BHO - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll O3 - HKLM\..\Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll O3-32 - HKLM\..\Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O4 - Global User Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Client Utility.lnk -> C:\Program Files (x86)\TP-LINK\COMMON\TWCU.exe -s O4 - HKCU\..\Run: [ISUSPM] = C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler O4 - HKCU\..\Run: [f.lux] = C:\Users\Juanvi Maciá\AppData\Local\FluxSoftware\Flux\flux.exe /noshow O4 - HKLM\..\Run: [HotKeysCmds] = C:\Windows\system32\hkcmd.exe O4 - HKLM\..\Run: [IgfxTray] = C:\Windows\system32\igfxtray.exe O4 - HKLM\..\Run: [IntelPAN] = C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe /tf Intel PAN Tray O4 - HKLM\..\Run: [PAC7302_Monitor] = C:\Windows\PixArt\PAC7302\Monitor.exe O4 - HKLM\..\Run: [Persistence] = C:\Windows\system32\igfxpers.exe O4 - HKLM\..\Run: [Trend Micro Client Framework] = C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe O4 - HKLM\..\Session Manager: [BootExecute] = C:\Windows\system32\autochk.exe * O4 - HKU\.DEFAULT\..\Run: [KSS] = C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan\kss.exe autorun (file missing) O4 - MSConfig\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^AsusVibeLauncher.lnk [backup] => C:\Program Files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe /start (2014/04/07) (file missing) O4 - MSConfig\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk [backup] => C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe -d (2015/07/07) O4 - MSConfig\startupfolder: C:^Users^Juanvi Maciá^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^DesktopEarth AutoStart.lnk [backup] => C:\Users\Juanvi Maciá\AppData\Roaming\Microsoft\Installer\{DBA5E973-660D-4CBE-A469-F5C37FBF0CE4}\_C1A9BF9D98647632ED5172.exe (2015/07/07) (file missing) O4 - MSConfig\startupreg: APSDaemon [command] = C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (HKLM) (2014/04/07) O4 - MSConfig\startupreg: ASUS Screen Saver Protector [command] = C:\Windows\AsScrPro.exe (HKLM) (2011/08/29) O4 - MSConfig\startupreg: Autodesk Sync [command] = C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe (HKLM) (2018/03/27) (file missing) O4 - MSConfig\startupreg: BrStsInd00 [command] = C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe /AUTORUN (HKLM) (2015/07/07) O4 - MSConfig\startupreg: BrStsMon00 [command] = C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN (HKLM) (2015/07/07) O4 - MSConfig\startupreg: CCleaner Monitoring [command] = C:\Program Files\CCleaner\CCleaner64.exe /MONITOR (HKCU) (2018/03/27) O4 - MSConfig\startupreg: GUDelayStartup [command] = C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe -delayrun (HKCU) (2019/05/23) O4 - MSConfig\startupreg: HP Deskjet 3050A J611 series (NET) [command] = C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\ScanToPCActivationApp.exe -deviceID "CN37N1CGMZ05WK:NW" -scfn "HP Deskjet 3050A J611 series (NET)" -AutoStart 1 (HKCU) (2014/04/07) (file missing) O4 - MSConfig\startupreg: QuickTime Task [command] = C:\Program Files (x86)\QuickTime\QTTask.exe -atboottime (HKLM) (2014/04/07) O4 - MSConfig\startupreg: RtHDVBg [command] = C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /SF3 (HKLM) (2017/08/13) O4 - MSConfig\startupreg: RtHDVCpl [command] = C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s (HKLM) (2017/08/12) O4 - MSConfig\startupreg: Setwallpaper [command] = c:\programdata\SetWallpaper.cmd (HKLM) (2014/04/07) (file missing) O4 - MSConfig\startupreg: SonicMasterTray [command] = C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe (HKLM) (2014/04/07) O4 - MSConfig\startupreg: Spotify Web Helper [command] = C:\Users\Juanvi Maciá\AppData\Roaming\Spotify\SpotifyWebHelper.exe --autostart (HKCU) (2018/06/18) O4 - MSConfig\startupreg: Spotify [command] = C:\Users\Juanvi Maciá\AppData\Roaming\Spotify\Spotify.exe --autostart --minimized (HKCU) (2019/05/03) O4 - MSConfig\startupreg: SunJavaUpdateSched [command] = C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (HKLM) (2015/07/07) (file missing) O4 - MSConfig\startupreg: Syncables [command] = C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe (HKCU) (2014/04/07) O4 - MSConfig\startupreg: TkBellExe [command] = c:\program files (x86)\real\realplayer\Update\realsched.exe -osboot (HKLM) (2014/04/07) O4 - MSConfig\startupreg: Trend Micro Titanium [command] = C:\Program Files\Trend Micro\Titanium\VizorShortCut.exe -ReFlush "none" "none" (HKLM) (2014/04/07) O4 - MSConfig\startupreg: VizorHtmlDialog.exe [command] = C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe "DEF" "EULA" "C:\Program Files\Trend Micro\Titanium\UI\Installer.cmpt\resources\preinstall_01_welcome_trial.html" "DEF" "DEF" "DEF" (HKLM) (2014/04/07) O4 - MSConfig\startupreg: Windows Mobile-based device management [command] = C:\Windows\WindowsMobile\wmdcBase.exe (HKLM) (2014/04/07) O4 - MSConfig\startupreg: vidnotifier.exe [command] = C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe (HKCU) (2018/03/27) (file missing) O4 - MSConfig\startupreg: vmware-tray [command] = C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe (HKLM) (2014/04/07) (file missing) O4 - User Startup: C:\Users\Juanvi Maciá\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DesktopEarth AutoStart.lnk -> C:\Program Files (x86)\DesktopEarth\DesktopEarth.exe O4-32 - HKLM\..\Run: [ATKMEDIA] = C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe O4-32 - HKLM\..\Run: [ATKOSD2] = C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe O4-32 - HKLM\..\Run: [HControlUser] = C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe O4-32 - HKLM\..\Run: [Wireless Console 3] = C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe O4-32 - HKLM\..\Run: [Wondershare Helper Compact.exe] = C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (file missing) O9-32 - Button: HKLM\..\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}: Agregar entrada - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9-32 - Button: HKLM\..\{22CC3EBD-C286-43aa-B8E6-06B115F74162}: HP Smart Print - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe O9-32 - Tools menu item: HKLM\..\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}: &Agregar entrada en Windows Live Writer - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9-32 - Tools menu item: HKLM\..\{22CC3EBD-C286-43aa-B8E6-06B115F74162}: HP Smart Print - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe O10 - Unknown file in Winsock LSP: C:\Program Files (x86)\Bonjour\mdnsNSP.dll O15 - Trusted Zone: *.line6.net O17 - DHCP DNS 1: 192.168.1.1 O18 - HKLM\Software\Classes\Protocols\Handler\tmbp: [CLSID] = {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe64.dll O18 - HKLM\Software\Classes\Protocols\Handler\tmpx: [CLSID] = {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg.dll O18 - HKLM\Software\Classes\Protocols\Handler\wlpg: [CLSID] = {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O20 - HKLM\..\Windows: [AppInit_DLLs] = C:\Windows\system32\nvinitx.dll O20-32 - HKLM\..\Windows: [AppInit_DLLs] = C:\Windows\SysWOW64\nvinit.dll O21 - HKLM\..\ShellIconOverlayIdentifiers\AsusWSShellExt_B: (no name) - {6D4133E5-0742-4ADC-8A8C-9303440F7190} - (no file) O21 - HKLM\..\ShellIconOverlayIdentifiers\AsusWSShellExt_O: AsusWSShellExt_O64 Class - {64174815-8D98-4CE6-8646-4C039977D808} - C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll O21 - HKLM\..\ShellIconOverlayIdentifiers\AutoCAD Digital Signatures Icon Overlay Handler: AcSignIcon - {36A21736-36C2-4C11-8ACB-D4136F2B57BD} - C:\Windows\system32\AcSignIcon.dll O23 - Service R2: AFBAgent - C:\Windows\system32\FBAgent.exe O23 - Service R2: ASLDR Service - (ASLDRService) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe O23 - Service R2: ATKGFNEX Service - (ATKGFNEXSrv) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe O23 - Service R2: Adobe Acrobat Update Service - (AdobeARMservice) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service R2: Diagnostics Tracking Service - (DiagTrack) - C:\Windows\System32\svchost.exe -k utcsvc; "ServiceDll" = C:\Windows\system32\diagtrack.dll O23 - Service R2: Intel(R) PROSet/Wireless Event Log - (EvtEng) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe O23 - Service R2: Intel(R) PROSet/Wireless Registry Service - (RegSrvc) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe O23 - Service R2: Intel(R) Turbo Boost Technology Monitor - (TurboBoost) - C:\Program Files\Intel\TurboBoost\TurboBoost.exe O23 - Service R2: Malwarebytes Service - (MBAMService) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe O23 - Service R2: NIHardwareService - C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe O23 - Service R2: NVIDIA Display Container LS - (NVDisplay.ContainerLocalSystem) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 O23 - Service R2: NVIDIA Display Driver Service - (nvsvc) - C:\Windows\system32\nvvsvc.exe O23 - Service R2: NVIDIA LocalSystem Container - (NvContainerLocalSystem) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -s NvContainerLocalSystem -a -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" O23 - Service R2: NVIDIA Telemetry Container - (NvTelemetryContainer) - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r O23 - Service R2: Ralink Registry Writer - (RalinkRegistryWriter) - C:\Program Files (x86)\TP-LINK\COMMON\RaRegistry.exe O23 - Service R2: Ralink Registry Writer 64 - (RalinkRegistryWriter64) - C:\Program Files (x86)\TP-LINK\COMMON\RaRegistry64.exe O23 - Service R2: RealNetworks Downloader Resolver Service - C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe O23 - Service R2: S7DOS Help Service - (s7oiehsx64) - C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe O23 - Service R2: SIMATIC PnDiscovery Service - C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oPNDiscoveryx64.exe O23 - Service R2: SIMATIC Trace Service - (S7TraceServiceX) - C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64X.exe O23 - Service R2: Servicio Bonjour - (Bonjour Service) - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service R2: apmwinsrv - C:\Program Files (x86)\Paragon Software\HFS+ for Windows\apmwinsrv.exe O23 - Service R3: TiMiniService - C:\Program Files\Trend Micro\Titanium\TiMiniService.exe O23 - Service S2: Google Update Service (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc O23 - Service S2: HP Network Devices Support - (HPSLPSVC) - C:\Windows\system32\svchost.exe -k HPService; "ServiceDll" = C:\Users\JUANVI~1\AppData\Local\Temp\7zS062E\hpslpsvc64.dll (file missing) O23 - Service S3: Adobe Flash Player Update Service - (AdobeFlashPlayerUpdateSvc) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service S3: BrYNSvc - C:\Program Files (x86)\Browny02\BrYNSvc.exe O23 - Service S3: FLEXnet Licensing Service - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service S3: Intel(R) Content Protection HECI Service - (cphs) - C:\Windows\SysWow64\IntelCpHeciSvc.exe O23 - Service S3: NVIDIA NetworkService Container - (NvContainerNetworkService) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -s NvContainerNetworkService -f "C:\ProgramData\NVIDIA\NvContainerNetworkService.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\NetworkService" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" O23 - Service S3: Servicio de Google Update (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc O23 - Service S3: TpMediaServer - C:\Program Files (x86)\TP-LINK\COMMON\RaMediaServer.exe O23 - Service S3: Trend Micro Solution Platform - (Amsp) - C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe coreFrameworkHost.exe -m=rb -dt=60000 O23 - Service S3: Windows Live Family Safety Service - (fsssvc) - C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe O23 - Service S3: Wireless PAN DHCP Server - (MyWiFiDHCPDNS) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe O23 - Service S3: Wondershare Driver Install Service - (WsDrvInst) - C:\Program Files (x86)\Wondershare\Video Converter Ultimate (Desktop)\Transfer\DriverInstall.exe (file missing) -- End of file - Time spent: 19,2 sec. - 45134 bytes, CRC32: FFFFFFFF. Sign: 鯤魉