Logfile of HiJackThis Fork by Alex Dragokas v.2.9.0.19 Platform: x64 Windows 10 (Home), 10.0.18363.778 (ReleaseId: 1909), Service Pack: 0 Time: 09.05.2020 - 14:59 (UTC+03:00) Language: OS: Russian (0x419). Display: Russian (0x419). Non-Unicode: Russian (0x419) Elevated: Yes Ran by: MAJIOY (group: Administrator) on DESKTOP-0J74FJ9, FirstRun: yes Chrome: 81.0.4044.138 Edge: 11.0.18362.752 Internet Explorer: 11.0.18362.1 Default: "C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe" -- "%1" (Microsoft Edge Beta) Boot mode: Normal Запущенные процессы: Кол-во | Путь 1 C:\Program Files (x86)\Cheat Engine 6.4\cheatengine-x86_64.exe 1 C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 1 C:\Program Files (x86)\Common Files\Steam\SteamService.exe 1 C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe 1 C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe 1 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 1 C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe 1 C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe 1 C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe 1 C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe 25 C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe 1 C:\Program Files (x86)\Origin\OriginWebHelperService.exe 1 C:\Program Files (x86)\Radmin VPN\RvControlSvc.exe 1 C:\Program Files (x86)\Radmin VPN\RvRvpnGui.exe 7 C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe 1 C:\Program Files (x86)\Steam\steam.exe 1 C:\Program Files (x86)\Wallpaper Engine\bin\wallpaperservice32_c.exe 1 C:\Program Files (x86)\Wallpaper Engine\wallpaper64.exe 1 C:\Program Files (x86)\Windscribe\Windscribe.exe 1 C:\Program Files (x86)\Windscribe\WindscribeService.exe 1 C:\Program Files (x86)\Windscribe\wsappcontrol.exe 1 C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe 1 C:\Program Files\Highresolution Enterprises\X-Mouse Button Control\XMouseButtonControl.exe 4 C:\Program Files\WinRAR\WinRAR.exe 1 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeApp.exe 1 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe 1 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe 1 C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.19111.24110.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 1 C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1910.0.0_x64__8wekyb3d8bbwe\Calculator.exe 1 C:\Program Files\WindowsApps\Microsoft.WindowsStore_12005.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe 1 C:\Program Files\WindowsApps\Microsoft.XboxApp_48.62.6002.0_x64__8wekyb3d8bbwe\XboxApp.exe 1 C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.220.4152.0_x64__8wekyb3d8bbwe\GameBar.exe 1 C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.220.4152.0_x64__8wekyb3d8bbwe\GameBarFT.exe 1 C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.220.4152.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe 1 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20041.88.0_x64__8wekyb3d8bbwe\YourPhone.exe 1 C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2004.6-0\MsMpEng.exe 1 C:\ProgramData\RealtekHD\taskhostw.exe 1 C:\ProgramData\WindowsTask\MicrosoftHost.exe 1 C:\ProgramData\WindowsTask\audiodg.exe 2 C:\ProgramData\Windows\rfusclient.exe 1 C:\ProgramData\Windows\rutserv.exe 6 C:\Users\MAJIOY\AppData\Local\Discord\app-0.0.306\Discord.exe 1 C:\Users\MAJIOY\AppData\Local\Temp\is-FL77S.tmp\Sit.exe 1 C:\Users\MAJIOY\AppData\Local\Temp\is-NJ7FP.tmp\setup_ fix online_coop_2740211858.tmp 1 C:\Users\MAJIOY\AppData\Local\Temp\system.exe 1 C:\Users\MAJIOY\AppData\Roaming\uTorrent\helper\helper.exe 1 C:\Users\MAJIOY\AppData\Roaming\uTorrent\uTorrent.exe 3 C:\Users\MAJIOY\AppData\Roaming\uTorrent\updates\3.5.5_45628\utorrentie.exe 1 C:\Users\MAJIOY\Desktop\AutoLogger\HiJackThis\HiJackThis.exe 1 C:\Windows\System32\ApplicationFrameHost.exe 1 C:\Windows\System32\CompPkgSrv.exe 1 C:\Windows\System32\CredentialEnrollmentManager.exe 2 C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_f5de485bfda7bb25\Display.NvContainer\NVDisplay.Container.exe 1 C:\Windows\System32\MicrosoftEdgeCP.exe 1 C:\Windows\System32\MicrosoftEdgeSH.exe 11 C:\Windows\System32\RuntimeBroker.exe 1 C:\Windows\System32\SearchFilterHost.exe 1 C:\Windows\System32\SearchIndexer.exe 1 C:\Windows\System32\SearchProtocolHost.exe 1 C:\Windows\System32\SecurityHealthHost.exe 1 C:\Windows\System32\SecurityHealthService.exe 1 C:\Windows\System32\SecurityHealthSystray.exe 1 C:\Windows\System32\SettingSyncHost.exe 1 C:\Windows\System32\SgrmBroker.exe 1 C:\Windows\System32\WUDFHost.exe 1 C:\Windows\System32\WWAHost.exe 1 C:\Windows\System32\audiodg.exe 1 C:\Windows\System32\browser_broker.exe 2 C:\Windows\System32\conhost.exe 2 C:\Windows\System32\csrss.exe 1 C:\Windows\System32\ctfmon.exe 1 C:\Windows\System32\dasHost.exe 2 C:\Windows\System32\dllhost.exe 1 C:\Windows\System32\dwm.exe 2 C:\Windows\System32\fontdrvhost.exe 1 C:\Windows\System32\lsass.exe 1 C:\Windows\System32\notepad.exe 1 C:\Windows\System32\services.exe 1 C:\Windows\System32\sihost.exe 1 C:\Windows\System32\smartscreen.exe 1 C:\Windows\System32\smss.exe 1 C:\Windows\System32\spoolsv.exe 87 C:\Windows\System32\svchost.exe 2 C:\Windows\System32\taskhostw.exe 1 C:\Windows\System32\wbem\WmiPrvSE.exe 1 C:\Windows\System32\wininit.exe 1 C:\Windows\System32\winlogon.exe 1 C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe 1 C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe 1 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe 1 C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe 1 C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe 1 C:\Windows\explorer.exe 1 E:\setup_ fix online_coop_2740211858.exe R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8C3078A0-9AAB-4371-85D1-656CA8E46EE8}: [SuggestionsURL_JSON] = https://suggest.yandex.ru/suggest-ff.cgi?srv=ie11&part={searchTerms}&clid=2233627 - Яндекс R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8C3078A0-9AAB-4371-85D1-656CA8E46EE8}: [URL] = https://yandex.ru/search/?text={searchTerms}&clid=2233627 - Яндекс O1 - Hosts: Reset contents to default O1 - Hosts: 127.0.0.1 codeload.github.com O1 - Hosts: 127.0.0.1 support.kaspersky.ru O1 - Hosts: 127.0.0.1 kaspersky.ru O1 - Hosts: 127.0.0.1 virusinfo.info O1 - Hosts: 127.0.0.1 www.360totalsecurity.com O1 - Hosts: 127.0.0.1 cezurity.com O1 - Hosts: 127.0.0.1 www.dropbox.com O1 - Hosts: 127.0.0.1 193.228.54.23 O1 - Hosts: 127.0.0.1 spec-komp.com O1 - Hosts: 127.0.0.1 eset.ua O1 - Hosts: 127.0.0.1 360totalsecurity.com O1 - Hosts: 127.0.0.1 www.esetnod32.ru O1 - Hosts: 127.0.0.1 www.comss.ru O1 - Hosts: 127.0.0.1 blog-pc.ru O1 - Hosts: 127.0.0.1 www.securrity.ru O1 - Hosts: 127.0.0.1 vellisa.ru O1 - Hosts: 127.0.0.1 download-software.ru O1 - Hosts: 127.0.0.1 drweb-cureit.ru O1 - Hosts: 127.0.0.1 softpacket.ru O1 - Hosts: 127.0.0.1 www.kaspersky.com O1 - Hosts: 127.0.0.1 www.avast.ua O1 - Hosts: 127.0.0.1 www.avast.ru O1 - Hosts: 127.0.0.1 zillya.ua O1 - Hosts: 127.0.0.1 safezone.ua O1 - Hosts: 127.0.0.1 vms.drweb.ru O1 - Hosts: 127.0.0.1 www.drweb.ua O1 - Hosts: 127.0.0.1 free.drweb.ru O1 - Hosts: 127.0.0.1 biblprog.org.ua O1 - Hosts: 127.0.0.1 free-software.com.ua O1 - Hosts: 127.0.0.1 free.dataprotection.com.ua O1 - Hosts: 127.0.0.1 www.drweb.com O1 - Hosts: 127.0.0.1 www.softportal.com O1 - Hosts: 127.0.0.1 www.nashnet.ua O1 - Hosts: 127.0.0.1 softlist.com.ua O1 - Hosts: 127.0.0.1 it-doc.info O1 - Hosts: 127.0.0.1 esetnod32.ru O1 - Hosts: 127.0.0.1 blog-bridge.ru O1 - Hosts: 127.0.0.1 remontka.pro O1 - Hosts: 127.0.0.1 securos.org.ua O1 - Hosts: 127.0.0.1 pc-helpp.com O1 - Hosts: 127.0.0.1 softdroid.net O1 - Hosts: 127.0.0.1 malwarebytes.com O1 - Hosts: 127.0.0.1 ru.vessoft.com O1 - Hosts: 127.0.0.1 AlpineFile.ru O1 - Hosts: 127.0.0.1 malwarebytes-anti-malware.ru.uptodown.com O1 - Hosts: 127.0.0.1 ProgramDownloadFree.com O1 - Hosts: 127.0.0.1 download.cnet.com O1 - Hosts: 127.0.0.1 soft.mydiv.net O1 - Hosts: 127.0.0.1 spyware-ru.com O1 - Hosts: 127.0.0.1 remontcompa.ru O1 - Hosts: 127.0.0.1 www.hitmanpro.com O1 - Hosts: 127.0.0.1 hitman-pro.ru.uptodown.com O1 - Hosts: 127.0.0.1 www.bleepingcomputer.com O1 - Hosts: 127.0.0.1 soft.oszone.net O1 - Hosts: 127.0.0.1 krutor.org O1 - Hosts: 127.0.0.1 RuTracker.org O1 - Hosts: 127.0.0.1 www.greatis.com O1 - Hosts: 127.0.0.1 unhackme.ru.uptodown.com O1 - Hosts: 127.0.0.1 programy.com.ua O1 - Hosts: 127.0.0.1 rsload.net O1 - Hosts: 127.0.0.1 softobase.com O1 - Hosts: 127.0.0.1 www.besplatnoprogrammy.ru O1 - Hosts: 127.0.0.1 unhackme.en.softonic.com O1 - Hosts: 127.0.0.1 unhackme.com O1 - Hosts: 127.0.0.1 unhackme.ru O1 - Hosts: 127.0.0.1 nnm-club.name O1 - Hosts: 127.0.0.1 vgrom.com O1 - Hosts: 127.0.0.1 moneropool.com O1 - Hosts: 127.0.0.1 mine.moneropool.com O1 - Hosts: 127.0.0.1 xmr.cryptopool.org O1 - Hosts: 127.0.0.1 pool.monero.org O1 - Hosts: 127.0.0.1 minexmr.com O1 - Hosts: 127.0.0.1 monero.crypto-pool.fr O1 - Hosts: 127.0.0.1 dwarfpool.com O1 - Hosts: 127.0.0.1 disk-space.ru O1 - Hosts: 127.0.0.1 file7.ru O1 - Hosts: 127.0.0.1 ufille.ru O1 - Hosts: 127.0.0.1 rgho.st O1 - Hosts: 127.0.0.1 yadi.su O1 - Hosts: 127.0.0.1 catcut.net O1 - Hosts: 127.0.0.1 fsdisk.ru O1 - Hosts: 127.0.0.1 rpfile.ru O1 - Hosts: 127.0.0.1 cheats.file-a.ru O1 - Hosts: 127.0.0.1 file-space.org O1 - Hosts: 127.0.0.1 sfailo.ru O1 - Hosts: 127.0.0.1 sendspace.com O1 - Hosts: 127.0.0.1 www.sendspace.com O1 - Hosts: 127.0.0.1 fille-7.ru O1 - Hosts: 127.0.0.1 loufile.ru O1 - Hosts: 127.0.0.1 file-seven.com O1 - Hosts: 127.0.0.1 file-a.ru O1 - Hosts: 127.0.0.1 fail-7.ru O1 - Hosts: 127.0.0.1 1-kk.ru O1 - Hosts: 127.0.0.1 rufile.net O1 - Hosts: 127.0.0.1 filexpwx.space O1 - Hosts: 127.0.0.1 sfile.net O1 - Hosts: 127.0.0.1 mdiskfile.com O1 - Hosts: 127.0.0.1 mega.nz O1 - Hosts: 127.0.0.1 dfile.su O1 - Hosts: 127.0.0.1 rgfail.ru O1 - Hosts: 127.0.0.1 rudwnl.ru O1 - Hosts: 127.0.0.1 dfile.info O1 - Hosts: 127.0.0.1 flles.ru O1 - Hosts: 127.0.0.1 pool.minexmr.to O1 - Hosts: 127.0.0.1 ska4ay.pl O1 - Hosts: 127.0.0.1 ska4ay.ru O1 - Hosts: 127.0.0.1 ska4ay.club O1 - Hosts: 127.0.0.1 ska4ay.net O1 - Hosts: 127.0.0.1 ska4ay.org O1 - Hosts: 127.0.0.1 ska4ay.com O1 - Hosts: 127.0.0.1 ska4ay.pro O1 - Hosts: 127.0.0.1 ska4ay.pw O1 - Hosts: 127.0.0.1 ska4ay.online O1 - Hosts: 127.0.0.1 skachaty.pl O1 - Hosts: 127.0.0.1 skachaty.ru O1 - Hosts: 127.0.0.1 skachaty.club O1 - Hosts: 127.0.0.1 skachaty.net O1 - Hosts: 127.0.0.1 skachaty.org O1 - Hosts: 127.0.0.1 skachaty.com O1 - Hosts: 127.0.0.1 skachaty.pro O1 - Hosts: 127.0.0.1 skachaty.pw O1 - Hosts: 127.0.0.1 skachaty.online O1 - Hosts: 127.0.0.1 skachay.pl O1 - Hosts: 127.0.0.1 skachay.ru O1 - Hosts: 127.0.0.1 skachay.club O1 - Hosts: 127.0.0.1 skachay.net O1 - Hosts: 127.0.0.1 skachay.org O1 - Hosts: 127.0.0.1 skachay.com O1 - Hosts: 127.0.0.1 skachay.pro O1 - Hosts: 127.0.0.1 skachay.pw O1 - Hosts: 127.0.0.1 skachay.website O1 - Hosts: 127.0.0.1 skachay.online O1 - Hosts: 127.0.0.1 ska4aty.pl O1 - Hosts: 127.0.0.1 ska4aty.ru O1 - Hosts: 127.0.0.1 ska4aty.club O1 - Hosts: 127.0.0.1 ska4aty.net O1 - Hosts: 127.0.0.1 ska4aty.org O1 - Hosts: 127.0.0.1 ska4aty.com O1 - Hosts: 127.0.0.1 ska4aty.pro O1 - Hosts: 127.0.0.1 ska4aty.pw O1 - Hosts: 127.0.0.1 ska4aty.online O2 - HKLM\..\BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_201\bin\jp2ssv.dll O2 - HKLM\..\BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_201\bin\ssv.dll O2-32 - HKLM\..\BHO: ArcPluginIEBHO - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\Program Files (x86)\Arc\Plugins\ArcPluginIE.dll (file missing) O4 - HKCU\..\Run: [Discord] = C:\Users\MAJIOY\AppData\Local\Discord\app-0.0.306\Discord.exe O4 - HKCU\..\Run: [Steam] = C:\Program Files (x86)\Steam\steam.exe -silent O4 - HKCU\..\Run: [uTorrent] = C:\Users\MAJIOY\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED O4 - HKCU\..\RunOnce: [Oracle Corporation] = C:\Users\MAJIOY\AppData\Local\Temp\system.exe O4 - HKCU\..\StartupApproved\Run: [EADM] = C:\Program Files (x86)\Origin\Origin.exe -AutoStart (2020/03/27) O4 - HKCU\..\StartupApproved\Run: [EpicGamesLauncher] = C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe -silent (2020/03/27) O4 - HKCU\..\StartupApproved\Run: [Gaijin.Net Updater] = C:\Users\MAJIOY\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe (2020/03/27) O4 - HKCU\..\StartupApproved\Run: [GameCenter] = C:\Users\MAJIOY\AppData\Local\GameCenter\GameCenter.exe -autostart (2020/03/27) O4 - HKCU\..\StartupApproved\Run: [OneDrive] = C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe /background (2020/05/09) O4 - HKCU\..\StartupApproved\Run: [Wargaming.net Game Center] = C:\ProgramData\Wargaming.net\GameCenter\wgc.exe --background (2020/03/27) O4 - HKCU\..\StartupApproved\Run: [Windscribe] = C:\Program Files (x86)\Windscribe\Windscribe.exe -os_restart (2020/05/09) O4 - HKLM\..\Run: [Realtek HD Audio] = C:\ProgramData\RealtekHD\taskhostw.exe O4 - HKLM\..\Run: [SecurityHealth] = C:\Windows\system32\SecurityHealthSystray.exe O4 - HKLM\..\StartupApproved\Run32: [RadminVPN] = C:\Program Files (x86)\Radmin VPN\RvRvpnGui.exe /minimized (2020/05/09) O4 - HKLM\..\StartupApproved\Run32: [SunJavaUpdateSched] = C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (2020/05/09) O4 - HKLM\..\StartupApproved\Run: [XMouseButtonControl] = C:\Program Files\Highresolution Enterprises\X-Mouse Button Control\XMouseButtonControl.exe /notportable /delay (2020/05/09) O4-32 - HKLM\..\Run: [LogMeIn Hamachi Ui] = C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe --auto-start O7 - Taskbar policy: HKCU\..\Policies\Explorer: [DisallowRun] = 1 O17 - DHCP DNS 1: 192.168.1.1 O17 - DHCP DNS 2: 192.168.0.1 O22 - Task: (disabled) \Microsoft\Windows\InstallService\WakeUpAndContinueUpdates - {0DC331EE-8438-49D5-A721-E10B937CE459} - C:\Windows\System32\InstallServiceTasks.dll (Microsoft) O22 - Task: (disabled) \Microsoft\Windows\InstallService\WakeUpAndScanForUpdates - {D5A04D91-6FE6-4FE4-A98A-FEB4500C5AF7} - C:\Windows\System32\InstallServiceTasks.dll (Microsoft) O22 - Task: (disabled) \Microsoft\Windows\UpdateOrchestrator\Reboot_AC - C:\Windows\system32\MusNotification.exe /RunOnAC RebootDialog (Microsoft) O22 - Task: (disabled) \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery - C:\Windows\system32\MusNotification.exe /RunOnBattery RebootDialog (Microsoft) O22 - Task: (disabled) \Microsoft\Windows\Workplace Join\Automatic-Device-Join - C:\Windows\System32\dsregcmd.exe $(Arg0) $(Arg1) $(Arg2) (Microsoft) O22 - Task: (disabled) \Microsoft\Windows\Workplace Join\Device-Sync - {C662D912-E4D6-44A3-89A0-20550514951D},DeviceUpdate - C:\Windows\System32\dsregtask.dll (Microsoft) O22 - Task: (telemetry) \Microsoft\Office\OfficeTelemetryAgentFallBack2016 - C:\Program Files\Microsoft Office\root\Office16\msoia.exe scan upload mininterval:2880 (Microsoft) O22 - Task: (telemetry) \Microsoft\Office\OfficeTelemetryAgentLogOn2016 - C:\Program Files\Microsoft Office\root\Office16\msoia.exe scan upload (Microsoft) O22 - Task: MicrosoftEdgeUpdateTaskMachineCore - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /c O22 - Task: MicrosoftEdgeUpdateTaskMachineUA - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /ua /installsource scheduler O22 - Task: \Microsoft\Office\Office Automatic Updates 2.0 - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe /frequentupdate SCHEDULEDTASK displaylevel=False (Microsoft) O22 - Task: \Microsoft\Office\Office ClickToRun Service Monitor - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe /WatchService (Microsoft) O22 - Task: \Microsoft\Office\Office Feature Updates - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\sdxhelper.exe (Microsoft) O22 - Task: \Microsoft\Office\OfficeBackgroundTaskHandlerLogon - C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe (Microsoft) O22 - Task: \Microsoft\Office\OfficeBackgroundTaskHandlerRegistration - C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe (Microsoft) O22 - Task: \Microsoft\Windows\BitLocker\BitLocker Encrypt All Drives - {61BCD1B9-340C-40EC-9D41-D7F1C0632F05},BitLockerEncryptAllDrives - C:\Windows\System32\edptask.dll (Microsoft) O22 - Task: \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange - {AE31B729-D5FD-401E-AF42-784074835AFE},-RegisterDevice -SettingChange - C:\Windows\system32\DeviceDirectoryClient.dll (Microsoft) O22 - Task: \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback - {AE31B729-D5FD-401E-AF42-784074835AFE},-RegisterDevice -Periodic - C:\Windows\system32\DeviceDirectoryClient.dll (Microsoft) O22 - Task: \Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner - C:\Windows\system32\mitigationscanner.exe (Microsoft) O22 - Task: \Microsoft\Windows\DirectX\DirectXDatabaseUpdater - C:\Windows\system32\directxdatabaseupdater.exe (Microsoft) O22 - Task: \Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures - {59EECBFE-C2F5-4419-9B99-13FE05FF2675} - C:\Windows\System32\fcon.dll (Microsoft) O22 - Task: \Microsoft\Windows\Flighting\OneSettings\RefreshCache - {E07647F7-AED2-48D9-9720-939BC24A8A3C} - C:\Windows\System32\wosc.dll (Microsoft) O22 - Task: \Microsoft\Windows\HelloFace\FODCleanupTask - C:\Windows\System32\WinBioPlugIns\FaceFodUninstaller.exe (Microsoft) O22 - Task: \Microsoft\Windows\StateRepository\MaintenanceTasks - C:\Windows\system32\rundll32.exe C:\Windows\system32\Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks O22 - Task: \Microsoft\Windows\UpdateOrchestrator\Backup Scan - C:\Windows\system32\usoclient.exe StartScan (Microsoft) O22 - Task: \Microsoft\Windows\UpdateOrchestrator\Schedule Scan Static Task - C:\Windows\system32\usoclient.exe StartScan (Microsoft) O22 - Task: \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker - C:\Windows\system32\MusNotification.exe (Microsoft) O22 - Task: \Microsoft\Windows\UpdateOrchestrator\UpdateModelTask - C:\Windows\system32\usoclient.exe StartModelUpdates (Microsoft) O22 - Task: \Microsoft\Windows\WindowsUpdate\sihpostreboot - C:\Windows\system32\sihclient.exe /PostReboot (Microsoft) O22 - Task: \Microsoft\Windows\Wininet\Cleaner - C:\Programdata\WindowsTask\winlogon.exe O22 - Task: \Microsoft\Windows\Wininet\SystemC - C:\Programdata\RealtekHD\taskhostw.exe O22 - Task: \Microsoft\Windows\WlanSvc\CDSSync - {B0D2B535-12E1-439F-86B3-BADA289510F0},$(Arg0) - C:\Windows\System32\WiFiCloudStore.dll (Microsoft) O23 - Service R2: LMIGuardianSvc - C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe O23 - Service R2: LogMeIn Hamachi Tunneling Engine - (Hamachi2Svc) - C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe -s O23 - Service R2: NVIDIA Display Container LS - (NVDisplay.ContainerLocalSystem) - C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_f5de485bfda7bb25\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f C:\ProgramData\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_f5de485bfda7bb25\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem O23 - Service R2: Radmin VPN Control Service - (RvControlSvc) - C:\Program Files (x86)\Radmin VPN\RvControlSvc.exe /service O23 - Service R2: Wallpaper Engine Service - C:\Program Files (x86)\Wallpaper Engine\bin\wallpaperservice32_c.exe -x64 O23 - Service R2: Служба Microsoft Office "Нажми и работай" - (ClickToRunSvc) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe /service O23 - Service R3: Steam Client Service - C:\Program Files (x86)\Common Files\Steam\SteamService.exe /RunAsService O23 - Service R3: Службы удаленных рабочих столов - (TermService) - C:\Windows\System32\svchost.exe -k NetworkService; "ServiceDll" = C:\Program Files\RDP Wrapper\rdpwrap.dll O23 - Service S2: Служба "Обновление Microsoft Edge" (edgeupdate) - (edgeupdate) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /svc O23 - Service S3: EasyAntiCheat - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe O23 - Service S3: FileSyncHelper - C:\Program Files (x86)\Microsoft OneDrive\FileSyncHelper.exe O23 - Service S3: Microsoft Edge Beta Elevation Service - (MicrosoftEdgeBetaElevationService) - C:\Program Files (x86)\Microsoft\Edge Beta\Application\83.0.478.28\elevation_service.exe O23 - Service S3: Office 64 Source Engine - (ose64) - c:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE O23 - Service S3: OneDrive Updater Service - C:\Program Files (x86)\Microsoft OneDrive\OneDriveUpdaterService.exe O23 - Service S3: Origin Client Service - C:\Program Files (x86)\Origin\OriginClientService.exe (file missing) O23 - Service S3: Rockstar Game Library Service - (Rockstar Service) - D:\Launcher\RockstarService.exe O23 - Service S3: Служба "Обновление Microsoft Edge" (edgeupdatem) - (edgeupdatem) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /medsvc -- End of file - Time spent: 11,4 sec. - 44854 bytes, CRC32: FFFFFFFF. Sign: ᰆ䐫