Logfile of Trend Micro HijackThis v2.0.4<br /> Scan saved at 5:47:11 PM, on 6/17/2016<br /> Platform: Unknown Windows (WinNT 6.02.1008)<br /> MSIE: Internet Explorer v11.0 (11.00.10586.0420)<br /> Boot mode: Normal<br /> <br /> Running processes:<br /> C:Program Files (x86)Microsoft WorksWkCalRem.exe<br /> C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorIcon.exe<br /> C:Program Files (x86)Launch ManagerLManager.exe<br /> C:Program Files (x86)Spybot - Search & Destroy 2SDTray.exe<br /> C:Program Files (x86)Zemana AntiLogger FreeAntiLogger Free.exe<br /> C:Program Files (x86)RealNetworksRealDownloaderdownloader2.exe<br /> C:Program FilesWindowsAppsMicrosoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbweSkypeHost.exe<br /> C:Program Files (x86)Trend MicroHiJackThisHiJackThis.exe<br /> <br /> R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0809&m=aspire_5741&r=27360615b355l04d4z105t45n2j520<br /> R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br /> R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP<br /> R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141<br /> R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896<br /> R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br /> R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141<br /> R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = <br /> R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch = <br /> R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Local Page = C:WindowsSysWOW64blank.htm<br /> R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = <br /> O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:Program Files (x86)RealNetworksRealDownloaderBrowserPluginsIErndlbrowserrecordplugin.dll<br /> O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)<br /> O2 - BHO: Partner BHO Class - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:ProgramDataPartnerPartner.dll<br /> O4 - HKLM..Run: [IAStorIcon] C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorIcon.exe<br /> O4 - HKLM..Run: [LManager] C:Program Files (x86)Launch ManagerLManager.exe<br /> O4 - HKLM..Run: [SDTray] "C:Program Files (x86)Spybot - Search & Destroy 2SDTray.exe"<br /> O4 - HKLM..Run: [TkBellExe] "c:program files (x86)realrealplayerUpdaterealsched.exe" -osboot<br /> O4 - HKLM..Run: [RealDownloader] C:Program Files (x86)RealNetworksRealDownloaderdownloader2.exe<br /> O4 - HKLM..Run: [ZALFree] "C:Program Files (x86)Zemana AntiLogger FreeAntiLogger Free.exe" /MINIMIZED<br /> O4 - HKCU..Run: [CCleaner Monitoring] "C:Program FilesCCleanerCCleaner64.exe" /MONITOR<br /> O4 - HKCU..Run: [OneDrive] "C:UsersSadieAppDataLocalMicrosoftOneDriveOneDrive.exe" /background<br /> O4 - HKCU..Run: [PeerBlock] C:Program FilesPeerBlockpeerblock.exe<br /> O4 - HKCU..Run: [SpybotPostWindows10UpgradeReInstall] "C:Program FilesCommon FilesAVSpybot - Search and DestroyTest.exe"<br /> O4 - Startup: wkcalrem.LNK = C:Program Files (x86)Microsoft WorksWkCalRem.exe<br /> O4 - Global Startup: RealTimes.lnk = C:Program Files (x86)RealRealPlayerRPDSBinrpsystray.exe<br /> O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:Program Files (x86)Microsoft OfficeOffice12EXCEL.EXE/3000<br /> O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:Program Files (x86)Windows LiveWriterWriterBrowserExtension.dll<br /> O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:Program Files (x86)Windows LiveWriterWriterBrowserExtension.dll<br /> O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:PROGRA~2MICROS~1Office12ONBttnIE.dll<br /> O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:PROGRA~2MICROS~1Office12ONBttnIE.dll<br /> O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~2MICROS~1Office12REFIEBAR.DLL<br /> O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics<br /> O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:WindowsSysWOW64tbauth.dll<br /> O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:WindowsSysWOW64tbauth.dll<br /> O20 - AppInit_DLLs: C:PROGRA~2KEYCRY~1KEYCRY~3.DLL<br /> O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)<br /> O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:Program FilesSUPERAntiSpywareSASCORE64.EXE<br /> O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:Program Files (x86)Common FilesAdobeARM1.0armsvc.exe<br /> O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:WindowsSysWOW64MacromedFlashFlashPlayerUpdateService.exe<br /> O23 - Service: @%SystemRoot%system32Alg.exe,-112 (ALG) - Unknown owner - C:WINDOWSSystem32alg.exe (file missing)<br /> O23 - Service: @%SystemRoot%system32DiagSvcsDiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:WINDOWSsystem32DiagSvcsDiagnosticsHub.StandardCollector.Service.exe (file missing)<br /> O23 - Service: DirMngr - Unknown owner - C:Program Files (x86)GNUGnuPGdirmngr.exe<br /> O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:Program Files (x86)Launch Managerdsiwmis.exe<br /> O23 - Service: @%SystemRoot%system32efssvc.dll,-100 (EFS) - Unknown owner - C:WINDOWSSystem32lsass.exe (file missing)<br /> O23 - Service: ESET Service (ekrn) - ESET - C:Program FilesESETESET Smart Securityx86ekrn.exe<br /> O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:Program FilesAcerAcer ePower ManagementePowerSvc.exe<br /> O23 - Service: Energy Server Service WILLAMETTE (ESRV_SVC_WILLAMETTE) - Unknown owner - C:Program FilesIntelSURWILLAMETTEESRVesrv_svc.exe<br /> O23 - Service: @%systemroot%system32fxsresm.dll,-118 (Fax) - Unknown owner - C:WINDOWSsystem32fxssvc.exe (file missing)<br /> O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:Program Files (x86)GoogleUpdateGoogleUpdate.exe<br /> O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:Program Files (x86)GoogleUpdateGoogleUpdate.exe<br /> O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorDataMgrSvc.exe<br /> O23 - Service: @%SystemRoot%system32ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:WINDOWSsystem32IEEtwCollector.exe (file missing)<br /> O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:WINDOWSsystem32lsass.exe (file missing)<br /> O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:Program Files (x86)IntelIntel(R) Management Engine ComponentsLMSLMS.exe<br /> O23 - Service: MBAMScheduler - Malwarebytes - C:Program Files (x86)Malwarebytes Anti-Malwarembamscheduler.exe<br /> O23 - Service: MBAMService - Malwarebytes - C:Program Files (x86)Malwarebytes Anti-Malwarembamservice.exe<br /> O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:Program Files (x86)Mozilla Maintenance Servicemaintenanceservice.exe<br /> O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:WINDOWSSystem32msdtc.exe (file missing)<br /> O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:WINDOWSsystem32mqsvc.exe (file missing)<br /> O23 - Service: @%SystemRoot%System32netlogon.dll,-102 (Netlogon) - Unknown owner - C:WINDOWSsystem32lsass.exe (file missing)<br /> O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerIScheduleSvc.exe<br /> O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:Program Files (x86)NewTech InfosystemsNTI Backup Now 5BackupSvc.exe<br /> O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:Program Files (x86)NewTech InfosystemsNTI Backup Now 5SchedulerSvc.exe<br /> O23 - Service: Partner Service - Google Inc. - C:ProgramDataPartnerPartner.exe<br /> O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) - Unknown owner - C:Program Files (x86)RealUpdateServiceRealPlayerUpdateSvc.exe<br /> O23 - Service: RealTimes Desktop Service - RealNetworks, Inc. - c:program files (x86)realrealplayerRPDSBinrpdsvc.exe<br /> O23 - Service: @%systemroot%system32Locator.exe,-2 (RpcLocator) - Unknown owner - C:WINDOWSsystem32locator.exe (file missing)<br /> O23 - Service: @%SystemRoot%system32samsrv.dll,-1 (SamSs) - Unknown owner - C:WINDOWSsystem32lsass.exe (file missing)<br /> O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) - Samsung Electronics Co., Ltd. - C:Program Files (x86)SamsungAllShareAllShareDMSAllShareDMS.exe<br /> O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:Program Files (x86)Spybot - Search & Destroy 2SDFSSvc.exe<br /> O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:Program Files (x86)Spybot - Search & Destroy 2SDUpdSvc.exe<br /> O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:Program Files (x86)Spybot - Search & Destroy 2SDWSCSvc.exe<br /> O23 - Service: @%SystemRoot%system32SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:WINDOWSSystem32SensorDataService.exe (file missing)<br /> O23 - Service: SimpleSlideShowServer - Samsung Electronics Co., Ltd. - C:Program Files (x86)SamsungAllShareAllShareSlideShowService.exe<br /> O23 - Service: @%SystemRoot%system32snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:WINDOWSSystem32snmptrap.exe (file missing)<br /> O23 - Service: @%systemroot%system32spoolsv.exe,-1 (Spooler) - Unknown owner - C:WINDOWSSystem32spoolsv.exe (file missing)<br /> O23 - Service: Spotflux Connection Manager (SpotfluxConnectionManager) - Spotflux - C:Program Files (x86)SpotfluxservicesSpotfluxConnectionManager.exe<br /> O23 - Service: @%SystemRoot%system32sppsvc.exe,-101 (sppsvc) - Unknown owner - C:WINDOWSsystem32sppsvc.exe (file missing)<br /> O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:Program FilesSynapticsSynTPSynTPEnhService.exe<br /> O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE (SystemUsageReportSvc_WILLAMETTE) - Unknown owner - C:Program Files (x86)Intel Driver Update UtilitySURSurSvc.exe<br /> O23 - Service: @%SystemRoot%system32TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:WINDOWSsystem32TieringEngineService.exe (file missing)<br /> O23 - Service: @%SystemRoot%system32ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:WINDOWSsystem32UI0Detect.exe (file missing)<br /> O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:Program Files (x86)IntelIntel(R) Management Engine ComponentsUNSUNS.exe<br /> O23 - Service: Updater Service - Acer - C:Program FilesAcerAcer UpdaterUpdaterService.exe<br /> O23 - Service: User Energy Server Service WILLAMETTE (USER_ESRV_SVC_WILLAMETTE) - Unknown owner - C:Program FilesIntelSURWILLAMETTEESRVesrv_svc.exe<br /> O23 - Service: @%SystemRoot%system32vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:WINDOWSsystem32lsass.exe (file missing)<br /> O23 - Service: @%SystemRoot%system32vds.exe,-100 (vds) - Unknown owner - C:WINDOWSSystem32vds.exe (file missing)<br /> O23 - Service: @%systemroot%system32vssvc.exe,-102 (VSS) - Unknown owner - C:WINDOWSsystem32vssvc.exe (file missing)<br /> O23 - Service: @%systemroot%system32wbengine.exe,-104 (wbengine) - Unknown owner - C:WINDOWSsystem32wbengine.exe (file missing)<br /> O23 - Service: @%ProgramFiles%Windows DefenderMpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:Program Files (x86)Windows DefenderNisSrv.exe (file missing)<br /> O23 - Service: @%ProgramFiles%Windows DefenderMpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:Program Files (x86)Windows DefenderMsMpEng.exe (file missing)<br /> O23 - Service: @%Systemroot%system32wbemwmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:WINDOWSsystem32wbemWmiApSrv.exe (file missing)<br /> O23 - Service: @%PROGRAMFILES%Windows Media Playerwmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:Program Files (x86)Windows Media Playerwmpnetwk.exe (file missing)<br /> <br /> --<br /> End of file - 12856 bytes