Advertisement
Guest User

pablo

a guest
Jun 8th, 2019
505
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 12.00 KB | None | 0 0
  1. Logfile of HiJackThis Fork by Alex Dragokas v.2.9.0.18
  2.  
  3. Platform: x64 Windows 8.1 (Home Single Language), 6.3.9600.19356, Service Pack: 0
  4. Time: 08.06.2019 - 21:31 (UTC-03:00)
  5. Language: OS: Spanish (0xC0A). Display: Spanish (0xC0A). Non-Unicode: Spanish (0x2C0A)
  6. Elevated: Yes
  7. Ran by: Isabel (group: Administrator) on IDEA-PC, FirstRun: no
  8.  
  9. Chrome: 74.0.3729.169
  10. Internet Explorer: 11.0.9600.19036
  11. Default: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)
  12.  
  13. Boot mode: Normal
  14.  
  15. Running processes:
  16. Number | Path
  17. 1 C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe
  18. 1 C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe
  19. 1 C:\Program Files (x86)\AVG\Antivirus\aswidsagent.exe
  20. 1 C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
  21. 1 C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
  22. 1 C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
  23. 1 C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
  24. 1 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
  25. 21 C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  26. 1 C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler.exe
  27. 1 C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler64.exe
  28. 1 C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
  29. 1 C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
  30. 1 C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
  31. 1 C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
  32. 1 C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
  33. 1 C:\Program Files\Intel\iCLS Client\HeciServer.exe
  34. 1 C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
  35. 1 C:\Program Files\Windows Media Player\wmpnetwk.exe
  36. 1 C:\Users\Isabel\Downloads\HiJackThis.exe
  37. 1 C:\WINDOWS\SysWOW64\SASrv.exe
  38. 1 C:\WINDOWS\System32\CxAudMsg64.exe
  39. 1 C:\WINDOWS\System32\SearchFilterHost.exe
  40. 1 C:\WINDOWS\System32\SearchIndexer.exe
  41. 1 C:\WINDOWS\System32\SearchProtocolHost.exe
  42. 1 C:\WINDOWS\System32\SettingSyncHost.exe
  43. 1 C:\WINDOWS\System32\SkyDrive.exe
  44. 1 C:\WINDOWS\System32\WUDFHost.exe
  45. 1 C:\WINDOWS\System32\audiodg.exe
  46. 2 C:\WINDOWS\System32\csrss.exe
  47. 1 C:\WINDOWS\System32\dasHost.exe
  48. 1 C:\WINDOWS\System32\dllhost.exe
  49. 1 C:\WINDOWS\System32\dwm.exe
  50. 1 C:\WINDOWS\System32\lsass.exe
  51. 1 C:\WINDOWS\System32\services.exe
  52. 1 C:\WINDOWS\System32\smss.exe
  53. 1 C:\WINDOWS\System32\spoolsv.exe
  54. 12 C:\WINDOWS\System32\svchost.exe
  55. 2 C:\WINDOWS\System32\taskeng.exe
  56. 1 C:\WINDOWS\System32\taskhost.exe
  57. 1 C:\WINDOWS\System32\taskhostex.exe
  58. 1 C:\WINDOWS\System32\wbem\WmiPrvSE.exe
  59. 1 C:\WINDOWS\System32\wbem\unsecapp.exe
  60. 1 C:\WINDOWS\System32\wininit.exe
  61. 1 C:\WINDOWS\System32\winlogon.exe
  62. 1 C:\WINDOWS\explorer.exe
  63.  
  64. R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E5954CCF-1AC3-4C9F-ADEE-139F5BFE5F2A}: [URL] = http://www.ant.com/search?s=browser&q={searchTerms} - Ant.com
  65. O1 - Hosts: is empty
  66. O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] = C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_113_pepper.exe -update pepperplugin
  67. O4 - HKCU\..\StartupApproved\Run: [ares] = C:\Program Files (x86)\Ares\Ares.exe -h (2019/05/20)
  68. O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] = C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
  69. O4 - HKLM\..\Run: [AVGUI.exe] = C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe /gui
  70. O4 - HKLM\..\Run: [SmartAudio] = C:\Program Files\CONEXANT\SAII\SACpl.exe /t
  71. O4 - HKLM\..\Run: [cAudioFilterAgent] = C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
  72. O4 - HKLM\..\StartupApproved\Run32: [331BigDog] = C:\Program Files (x86)\USB Camera\VM331STI.EXE (2017/05/15)
  73. O4 - HKLM\..\StartupApproved\Run32: [BrStsMon00] = C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN (2017/05/15)
  74. O4 - HKLM\..\StartupApproved\Run32: [ControlCenter4] = C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun (2017/05/15)
  75. O4 - HKLM\..\StartupApproved\Run32: [RemoteControl10] = C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe (2017/05/15)
  76. O4 - HKLM\..\StartupApproved\Run32: [YouCam Mirage] = C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe (2019/05/17)
  77. O4 - HKLM\..\StartupApproved\Run32: [YouCam Tray] = C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe /s (2019/05/20)
  78. O4 - HKLM\..\StartupApproved\Run32: [mcui_exe] = C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey (file missing) (2019/05/17)
  79. O4 - HKLM\..\StartupApproved\Run: [ETDCtrl] = C:\Program Files\Elantech\ETDCtrl.exe (2017/05/15)
  80. O4 - HKLM\..\StartupApproved\Run: [Energy Management] = C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe (2017/05/15)
  81. O4 - HKLM\..\StartupApproved\Run: [EnergyUtility] = C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe (2017/05/15)
  82. O4 - HKLM\..\StartupApproved\Run: [HotKeysCmds] = C:\WINDOWS\system32\hkcmd.exe (2019/05/24)
  83. O4 - HKLM\..\StartupApproved\Run: [IgfxTray] = C:\WINDOWS\system32\igfxtray.exe (2019/05/24)
  84. O4 - HKLM\..\StartupApproved\Run: [Persistence] = C:\WINDOWS\system32\igfxpers.exe (2019/05/24)
  85. O4 - HKLM\..\StartupApproved\StartupFolder: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Nex-Serv.lnk -> C:\Nex\NexServ.exe (2019/05/17)
  86. O4-32 - HKLM\..\Run: [AvgUi] = C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe /lps=fmw (file missing)
  87. O4-32 - HKLM\..\Run: [Dolby Advanced Audio v2] = C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe -autostart
  88. O4-32 - HKLM\..\Run: [Intel AppUp(SM) center] = C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
  89. O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\Call this number using SideSync: (default) = C:\Program Files (x86)\Samsung\SideSync4\SideSyncContextMenu.dll (file missing)
  90. O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\E&xport to Microsoft Excel: (default) = C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (file missing)
  91. O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\Se&nd to OneNote: (default) = C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (file missing)
  92. O17 - DHCP DNS 1: 8.8.8.8 (Well-known DNS: Google)
  93. O17 - DHCP DNS 2: 8.8.4.4 (Well-known DNS: Google)
  94. O17 - HKLM\System\CCS\Services\Tcpip\..\{E92BB233-B03F-4EFB-9F41-D6DB41F94919}: [NameServer] = 8.8.4.4 (Well-known DNS: Google)
  95. O17 - HKLM\System\CCS\Services\Tcpip\..\{E92BB233-B03F-4EFB-9F41-D6DB41F94919}: [NameServer] = 8.8.8.8 (Well-known DNS: Google)
  96. O21 - HKLM\..\ShellIconOverlayIdentifiers\ SkyDrive1: UpToDateOverlayHandler Class - {F241C880-6982-4CE5-8CF7-7085BA96DA5A} - C:\Users\Isabel\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll
  97. O21 - HKLM\..\ShellIconOverlayIdentifiers\ SkyDrive2: SyncingOverlayHandler Class - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} - C:\Users\Isabel\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll
  98. O21 - HKLM\..\ShellIconOverlayIdentifiers\ SkyDrive3: ErrorOverlayHandler Class - {BBACC218-34EA-4666-9D7A-C78F2274A524} - C:\Users\Isabel\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll
  99. O21 - HKLM\..\ShellIconOverlayIdentifiers\00avast: (no name) - {472083B0-C522-11CF-8763-00608CC02F24} - (no file)
  100. O21 - HKLM\..\ShellIconOverlayIdentifiers\00avg: (no name) - {472083B0-C522-11CF-8763-00608CC02F24} - (no file)
  101. O21 - HKLM\..\ShellIconOverlayIdentifiers\SugarSyncBackedUp: BackedUpOverlay Class - {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} - C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (file missing)
  102. O21 - HKLM\..\ShellIconOverlayIdentifiers\SugarSyncPending: PendingOverlay Class - {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} - C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (file missing)
  103. O21 - HKLM\..\ShellIconOverlayIdentifiers\SugarSyncRoot: RootFolderOverlay Class - {A759AFF6-5851-457D-A540-F4ECED148351} - C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (file missing)
  104. O21 - HKLM\..\ShellIconOverlayIdentifiers\SugarSyncShared: SharedOverlay Class - {1574C9EF-7D58-488F-B358-8B78C1538F51} - C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (file missing)
  105. O21-32 - HKLM\..\ShellIconOverlayIdentifiers\ SkyDrive1: UpToDateOverlayHandler Class - {F241C880-6982-4CE5-8CF7-7085BA96DA5A} - C:\Users\Isabel\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll
  106. O21-32 - HKLM\..\ShellIconOverlayIdentifiers\ SkyDrive2: SyncingOverlayHandler Class - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} - C:\Users\Isabel\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll
  107. O21-32 - HKLM\..\ShellIconOverlayIdentifiers\ SkyDrive3: ErrorOverlayHandler Class - {BBACC218-34EA-4666-9D7A-C78F2274A524} - C:\Users\Isabel\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll
  108. O22 - Task: \Microsoft\Windows\ApplicationData\CleanupTemporaryState - C:\WINDOWS\system32 (file missing)
  109. O23 - Service R2: AVG Antivirus - C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe
  110. O23 - Service R2: Adobe Acrobat Update Service - (AdobeARMservice) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
  111. O23 - Service R2: AtherosSvc - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
  112. O23 - Service R2: Conexant Audio Message Service - (CxAudMsg) - C:\WINDOWS\system32\CxAudMsg64.exe
  113. O23 - Service R2: Conexant SmartAudio service - (SAService) - C:\WINDOWS\SysWOW64\SAsrv.exe
  114. O23 - Service R2: Diagnostics Tracking Service - (DiagTrack) - C:\WINDOWS\System32\svchost.exe -k utcsvc; "ServiceDll" = C:\WINDOWS\system32\diagtrack.dll
  115. O23 - Service R2: Intel(R) Capability Licensing Service Interface - C:\Program Files\Intel\iCLS Client\HeciServer.exe
  116. O23 - Service R2: Intel(R) Dynamic Application Loader Host Interface Service - (jhi_service) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
  117. O23 - Service R2: Intel(R) Management and Security Application Local Management Service - (LMS) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
  118. O23 - Service R2: Intel(R) Management and Security Application User Notification Service - (UNS) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
  119. O23 - Service R2: SAMSUNG Mobile Connectivity Service - (ss_conn_service) - C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
  120. O23 - Service R2: ZAtheros Bt and Wlan Coex Agent - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
  121. O23 - Service R3: avgbIDSAgent - C:\Program Files (x86)\AVG\Antivirus\aswidsagent.exe
  122. O23 - Service S2: %1!s! Update Servicio (avg) - (avg) - C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe /svc (file missing)
  123. O23 - Service S2: Google Update Servicio (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc
  124. O23 - Service S2: Malwarebytes Service - (MBAMService) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
  125. O23 - Service S2: Servicio Hacer clic y ejecutar de Microsoft Office - (ClickToRunSvc) - C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe /service
  126. O23 - Service S3: %1!s! Update Servicio (avgm) - (avgm) - C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe /medsvc (file missing)
  127. O23 - Service S3: BrYNSvc - C:\Program Files (x86)\Browny02\BrYNSvc.exe
  128. O23 - Service S3: Google Chrome Elevation Service - (GoogleChromeElevationService) - C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.169\elevation_service.exe
  129. O23 - Service S3: Google Update Servicio (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc
  130. O23 - Service S3: Intel(R) Content Protection HECI Service - (cphs) - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
  131.  
  132.  
  133.  
  134. Debug information:
  135.  
  136. - 08.06.2019 21:31:10 - CryptCATAdminCalcHashFromFileHandle - #0 LastDllError = 193 (%1 no es una aplicación Win32 válida.) TRUST_E_NOSIGNATURE: Not signed File: C:\WINDOWS\system32
  137.  
  138. --
  139. End of file - Time spent: 17 sec. - 24568 bytes, CRC32: FFFFFFFF. Sign: 秔劯
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement