Logfile of HiJackThis Fork by Alex Dragokas v.2.10.0.10 Platform: x64 Windows 10 (Pro), 10.0.19043.1586 (ReleaseId: 2009, 21H1), Service Pack: 0 Time: 06.04.2022 - 11:11 (UTC+01:00) Language: OS: English (0x809). Display: English (0x809). Non-Unicode: English (0x809) Elevated: Yes Ran by: Bruce (group: Administrators) on JOYFUL, FirstRun: yes Chrome: 100.0.4896.75 Firefox: 97.0.2.8098 Internet Explorer: 11.0.19041.1566 Default: "C:\Users\Bruce\AppData\Local\Vivaldi\Application\vivaldi.exe" --single-argument %1 (Vivaldi) Boot mode: Normal Running processes: Number | Path 1 C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe 1 C:\Program Files (x86)\Browny02\BrYNSvc.exe 1 C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe 1 C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE 1 C:\Program Files (x86)\Common Files\Sage SData 2.0\Sage.SData.Service.exe 1 C:\Program Files (x86)\Common Files\Sage SData\Sage.SData.Service.exe 1 C:\Program Files (x86)\Common Files\Sage\Central\AutoUpdateClient\Sage.Central.AutoUpdateManager.Service.exe 1 C:\Program Files (x86)\Common Files\Sage\Shared\AutoUpdateManager\v2\Sage.Central.AutoUpdateManager.Service.exe 2 C:\Program Files (x86)\Dropbox\Client\145.4.4921\QtWebEngineProcess.exe 3 C:\Program Files (x86)\Dropbox\Client\Dropbox.exe 1 C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe 1 C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe 1 C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe 1 C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe 1 C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE 1 C:\Program Files (x86)\Sage\Accounts v27\SBDDesktop.exe 1 C:\Program Files (x86)\Sage\Accounts v28\sg50Launcher.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV22\sg50CtrlSvc_v22.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV22\sg50svc_v22.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV23\sg50CtrlSvc_v23.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV23\sg50svc_v23.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV24\sg50CtrlSvc_v24.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV24\sg50svc_v24.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV25\sg50CtrlSvc_v25.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV25\sg50svc_v25.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV26\sg50CtrlSvc_v26.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV26\sg50svc_v26.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV27\Sage.UK.Accounts50.Data.Service.Control_v27.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV27\sg50svc_v27.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV28\Sage.UK.Accounts50.Data.Service.Control_v28.exe 1 C:\Program Files (x86)\Sage\AccountsServiceV28\sg50svc_v28.exe 1 C:\Program Files (x86)\Sage2015\sg50CtrlSvc.exe 1 C:\Program Files (x86)\Sage2015\sg50svc.exe 1 C:\Program Files (x86)\Skyewright\programs\ImportPlus.exe 2 C:\Program Files (x86)\Skyewright\programs\ImportPlusDriver.exe 1 C:\Program Files XP\Alchemy\PhoneManager\PhoneManager.exe 1 C:\Program Files\Bonjour\mDNSResponder.exe 1 C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe 2 C:\Program Files\Google\Drive File Stream\55.0.3.0\crashpad_handler.exe 1 C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe 3 C:\Program Files\Google\Drive File Stream\56.0.9.0\crashpad_handler.exe 6 C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe 4 C:\Program Files\Mozilla Thunderbird\thunderbird.exe 1 C:\Program Files\Notepad++\notepad++.exe 2 C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe 1 C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe 1 C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe 1 C:\Program Files\uvnc bvba\UltraVNC\vncviewer.exe 2 C:\Program Files\uvnc bvba\UltraVNC\winvnc.exe 1 C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2202.10603.0_x64__8wekyb3d8bbwe\Cortana.exe 1 C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2021.21090.10008.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 1 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22022.180.0_x64__8wekyb3d8bbwe\YourPhone.exe 2 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22022.180.0_x64__8wekyb3d8bbwe\YourPhoneAppProxy\YourPhoneAppProxy.exe 1 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22022.180.0_x64__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe 1 C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCopyAccelerator.exe 1 C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe 1 C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\NisSrv.exe 1 C:\Users\Bruce\AppData\Local\Pushbullet\bin\pushbullet_client.exe 30 C:\Users\Bruce\AppData\Local\Vivaldi\Application\vivaldi.exe 1 C:\Windows\explorer.exe 1 C:\Windows\ImmersiveControlPanel\SystemSettings.exe 1 C:\Windows\runSW.exe 1 C:\Windows\splwow64.exe 1 C:\Windows\System32\ApplicationFrameHost.exe 1 C:\Windows\System32\audiodg.exe 1 C:\Windows\System32\CompPkgSrv.exe 2 C:\Windows\System32\csrss.exe 1 C:\Windows\System32\ctfmon.exe 1 C:\Windows\System32\dasHost.exe 1 C:\Windows\System32\DbxSvc.exe 3 C:\Windows\System32\dllhost.exe 1 C:\Windows\System32\dwm.exe 2 C:\Windows\System32\fontdrvhost.exe 1 C:\Windows\System32\lsass.exe 1 C:\Windows\System32\mmc.exe 1 C:\Windows\System32\MoUsoCoreWorker.exe 1 C:\Windows\System32\MusNotifyIcon.exe 1 C:\Windows\System32\oobe\UserOOBEBroker.exe 1 C:\Windows\System32\prevhost.exe 2 C:\Windows\System32\RtkAudUService64.exe 7 C:\Windows\System32\RuntimeBroker.exe 1 C:\Windows\System32\SecurityHealthService.exe 1 C:\Windows\System32\SecurityHealthSystray.exe 1 C:\Windows\System32\services.exe 1 C:\Windows\System32\SettingSyncHost.exe 1 C:\Windows\System32\SgrmBroker.exe 1 C:\Windows\System32\sihost.exe 1 C:\Windows\System32\smartscreen.exe 1 C:\Windows\System32\smss.exe 1 C:\Windows\System32\spoolsv.exe 95 C:\Windows\System32\svchost.exe 1 C:\Windows\System32\SystemSettingsBroker.exe 2 C:\Windows\System32\taskhostw.exe 2 C:\Windows\System32\wbem\WmiPrvSE.exe 1 C:\Windows\System32\wininit.exe 1 C:\Windows\System32\winlogon.exe 1 C:\Windows\System32\WUDFHost.exe 1 C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe 1 C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe 1 C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe 1 C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe 1 F:\Dropbox\Essentials\Applications\autoscreen.exe 1 F:\Dropbox\PortableApps\autoscreen\autoscreen.exe 1 F:\Dropbox\PortableApps\FileZillaPortable\App\filezilla\filezilla.exe 1 F:\Dropbox\PortableApps\FileZillaPortable\FileZillaPortable.exe 1 F:\Dropbox\PortableApps\HijackThisPortable\App\HijackThis\HijackThis.exe 1 F:\Dropbox\PortableApps\HijackThisPortable\HijackThisPortable.exe 1 F:\Dropbox\PortableApps\MicroSIPPortable\App\MicroSIP\microsip.exe 1 F:\Dropbox\PortableApps\MicroSIPPortable\MicroSIPPortable.exe 1 F:\Dropbox\PortableApps\PortableApps.com\PortableAppsPlatform.exe 1 F:\Dropbox\Work Documents\Projects\SageMenu\sagemenu.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Default_Page_URL] = http://oem17win10.msn.com/?pc=NMTE R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Start Page] = http://oem17win10.msn.com/?pc=NMTE R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: [ProxyOverride] = *.local O4 - HKCU\..\Run: [GoogleDriveFS] = C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode O4 - HKCU\..\Run: [Pushbullet] = C:\Program Files (x86)\Pushbullet\pushbullet.exe -show false O4 - HKCU\..\RunOnce: [Delete Cached Standalone Update Binary] = C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\Bruce\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" O4 - HKCU\..\RunOnce: [Delete Cached Update Binary] = C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\Bruce\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" O4 - HKCU\..\RunOnce: [Uninstall 22.033.0213.0002] = C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Bruce\AppData\Local\Microsoft\OneDrive\22.033.0213.0002" O4 - HKCU\..\StartupApproved\Run: [Lync] = C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe /fromrunkey (2022/02/25) O4 - HKCU\..\StartupApproved\Run: [OneDrive] = C:\Users\Bruce\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background (2020/09/11) O4 - HKLM\..\Run: [KeePass 2 PreLoad] = C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe --preload O4 - HKLM\..\Run: [RtkAudUService] = C:\WINDOWS\System32\RtkAudUService64.exe -background O4 - HKU\S-1-5-18\..\Run: [GoogleDriveFS] = C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode (User 'LocalSystem') O4 - HKU\S-1-5-19\..\Run: [GoogleDriveFS] = C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode (User 'Local service') O4 - HKU\S-1-5-20\..\Run: [GoogleDriveFS] = C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode (User 'Network service') O4 - Startup Global: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\autoscreen.exe - Shortcut.lnk -> F:\Dropbox\PortableApps\autoscreen\autoscreen.exe O4 - Startup Global: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\KeePass.exe - Shortcut.lnk -> C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe O4 - Startup Global: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Thunderbird.lnk -> C:\Program Files\Mozilla Thunderbird\thunderbird.exe O4 - Startup Global: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Vivaldi.lnk -> C:\ProgramData\AppData\Local\Vivaldi\Application\vivaldi.exe O4 - Startup Global: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\vncviewer.exe - Shortcut.lnk -> C:\Program Files (x86)\uvnc bvba\UltraVNC\vncviewer.exe -listen -askexit -scale 85/100 O4 - Startup Global: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WhatsApp.lnk -> O4 - Startup Global: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Your Phone.lnk -> O4 - Win9x BAT: C:\AutoExec.bat => SET PATH=C:\PROGRA~1\WI7DB9~1\MI1A5A~1.0_X\Office16 O4-32 - HKLM\..\Run: [BrStsInd00] = C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe /AUTORUN O4-32 - HKLM\..\Run: [BrStsMon00] = C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN O4-32 - HKLM\..\Run: [Dropbox] = C:\Program Files (x86)\Dropbox\Client\Dropbox.exe /systemstartup O5 - Applet: C:\WINDOWS\SysWOW64\ODBCCP32.CPL (not signed) O7 - KnownFolder: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders, {374DE290-123F-4565-9164-39C4925E467B} = F:\Dropbox\Work Documents\Downloads O7 - KnownFolder: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders, My Music = F:\Dropbox\Music O7 - KnownFolder: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders, My Pictures = F:\Dropbox\Camera Uploads O7 - KnownFolder: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders, My Video = V:\ O7 - KnownFolder: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders, Personal = F:\Dropbox\Work Documents O7 - KnownFolder: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders, {374DE290-123F-4565-9164-39C4925E467B} = F:\Dropbox\Work Documents\Downloads O7 - KnownFolder: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders, My Music = F:\Dropbox\Music O7 - KnownFolder: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders, My Pictures = F:\Dropbox\Camera Uploads O7 - KnownFolder: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders, My Video = V: O7 - KnownFolder: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders, Personal = F:\Dropbox\Work Documents O9-32 - Button: HKLM\..\{92780B25-18CC-41C8-B9BE-3C9C571A8263}: Research - C:\FrontPage\OFFICE11\REFIEBAR.DLL O15 - Trusted Zone: *.sage.keysurvey2.com O15 - Trusted Zone: https://makingithappen-files.sharepoint.com O15 - Trusted Zone: https://makingithappen-myfiles.sharepoint.com O17 - DHCP DNS 1: 192.168.1.254 O17 - HKLM\System\CCS\Services\Tcpip\..\{f2dbd051-d88b-40d9-ae22-70bf15ea6fc0}: [NameServer] = 192.168.1.254 O21 - HKLM\..\ShellIconOverlayIdentifiers\ - C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll O21 - HKLM\..\ShellIconOverlayIdentifiers\ - C:\Program Files\Google\Drive File Stream\56.0.9.0\drivefsext.dll O21 - HKLM\..\ShellIconOverlayIdentifiers\ - C:\Program Files\Google\Drive\googledrivesync64.dll O21-32 - HKLM\..\ShellIconOverlayIdentifiers\ - C:\Program Files (x86)\Dropbox\Client\DropboxExt.52.0.dll O22 - BITS Job: (download) {91B01A1D-0BB1-4F21-843E-79AEB2417A35} - https://download-installer.cdn.mozilla.net/pub/firefox/releases/97.0.2/update/win64/en-GB/firefox-97.0.1-97.0.2.partial.mar -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\updates\downloading\update.mar O22 - BITS Job: (download) {DA8CDFBF-DDD7-4783-9BCE-9DFDE27C7CEF} - https://download-installer.cdn.mozilla.net/pub/firefox/releases/97.0.1/update/win64/en-GB/firefox-97.0-97.0.1.partial.mar -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\updates\downloading\update.mar O22 - BITS Job: (download) {DC3F78DB-DACE-4742-B61A-DE2C7FEEEA75} - https://download-installer.cdn.mozilla.net/pub/firefox/releases/96.0.3/update/win64/en-GB/firefox-96.0.2-96.0.3.partial.mar -> C:\ProgramData\Mozilla\updates\308046B0AF4A39CB\updates\downloading\update.mar O22 - BITS Job: (download) {DFD97C5C-616A-4715-B74F-68E5A3B9F7B5} - https://download-installer.cdn.mozilla.net/pub/firefox/releases/96.0.1/update/win64/en-GB/firefox-95.0.2-96.0.1.partial.mar -> C:\ProgramData\Mozilla\updates\308046B0AF4A39CB\updates\downloading\update.mar O22 - BITS Job: Fix all (including legit) O22 - Task (.job): (disabled) (Not scheduled) CreateExplorerShellUnelevatedTask.job - C:\WINDOWS\explorer.exe O22 - Task (.job): (Not scheduled) DropboxUpdateTaskMachineCore.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe O22 - Task (.job): (Not scheduled) DropboxUpdateTaskMachineUA.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe O22 - Task: (damaged) HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Intel (empty) O22 - Task: (disabled) \Agent Activation Runtime\S-1-5-21-2753228728-2316296626-1728950189-1001 - C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe O22 - Task: (disabled) \Backup\deepsleep - F:\Dropbox\Backup\deepsleep.bat O22 - Task: (disabled) \Bruce\Mute - F:\Dropbox\Essentials\Applications\nircmd-x64\nircmd.exe mutesysvolume 1 O22 - Task: (disabled) \Bruce\Unmute - F:\Dropbox\Essentials\Applications\nircmd-x64\nircmd.exe mutesysvolume 0 O22 - Task: (disabled) \Bruce\Update ImportPlus Sheet - C:\Users\bruce\Desktop\ImportPlus\updatesheet.bat O22 - Task: (disabled) \Microsoft\Windows\Management\Provisioning\Retry - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ProvRetryTask (Microsoft) O22 - Task: (disabled) \Microsoft\Windows\Management\Provisioning\RunOnReboot - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ContinueSessionTask (Microsoft) O22 - Task: (disabled) \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask - {D2CBF5F7-5702-440B-8D8F-8203034A6B82},$(Arg0) - (no file) O22 - Task: (disabled) \Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work - C:\WINDOWS\system32\usoclient.exe StartMaintenanceWork (Microsoft) O22 - Task: (disabled) \Microsoft\Windows\UpdateOrchestrator\Schedule Wake To Work - C:\WINDOWS\system32\usoclient.exe StartWork (Microsoft) O22 - Task: (telemetry) \Microsoft\Windows\Application Experience\PcaPatchDbTask - C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\PcaSvc.dll,PcaPatchSdbTask (Microsoft) O22 - Task: \Backup\Daily Backup - F:\Dropbox\Backup\daily_backup.bat O22 - Task: \Bruce\Portable Apps - F:\Dropbox\PortableApps\PortableApps.com\PortableAppsPlatform.exe O22 - Task: \Mozilla\Firefox Background Update 308046B0AF4A39CB - C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate O22 - Task: \Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB - C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" O22 - Task: \MySQL\Installer\ManifestUpdate - C:\Program Files (x86)\MySQL\MySQL Installer for Windows\MySQLInstallerConsole.exe Community Update O22 - Task: DropboxUpdateTaskMachineCore - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c O22 - Task: DropboxUpdateTaskMachineUA - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler O22 - Task: GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c O22 - Task: GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler O22 - Task: OneDrive Reporting Task-S-1-5-21-2753228728-2316296626-1728950189-1001 - C:\Users\Bruce\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting O22 - Task: VivaldiUpdateCheck-9117e18d4d4460d2 - C:\Users\Bruce\AppData\Local\Vivaldi\Application\update_notifier.exe --from-scheduler O23 - Service R2: Bonjour Service - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service R2: DbxSvc - C:\WINDOWS\system32\DbxSvc.exe O23 - Service R2: NVIDIA Display Container LS - (NVDisplay.ContainerLocalSystem) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 O23 - Service R2: Realtek Audio Universal Service - (RtkAudioUniversalService) - C:\WINDOWS\System32\RtkAudUService64.exe O23 - Service R2: RunSwUSB - C:\Windows\runSW.exe O23 - Service R2: Sage 50 Accounts Control - C:\Program Files (x86)\Sage2015\sg50CtrlSvc.exe O23 - Service R2: Sage 50 Accounts Control v22 - C:\Program Files (x86)\Sage\AccountsServiceV22\sg50CtrlSvc_v22.exe O23 - Service R2: Sage 50 Accounts Control v23 - C:\Program Files (x86)\Sage\AccountsServiceV23\sg50CtrlSvc_v23.exe O23 - Service R2: Sage 50 Accounts Control v24 - C:\Program Files (x86)\Sage\AccountsServiceV24\sg50CtrlSvc_v24.exe O23 - Service R2: Sage 50 Accounts Control v25 - C:\Program Files (x86)\Sage\AccountsServiceV25\sg50CtrlSvc_v25.exe O23 - Service R2: Sage 50 Accounts Control v26 - C:\Program Files (x86)\Sage\AccountsServiceV26\sg50CtrlSvc_v26.exe O23 - Service R2: Sage 50 Accounts Control v27 - C:\Program Files (x86)\Sage\AccountsServiceV27\Sage.UK.Accounts50.Data.Service.Control_v27.exe O23 - Service R2: Sage 50 Accounts Control v28 - C:\Program Files (x86)\Sage\AccountsServiceV28\Sage.UK.Accounts50.Data.Service.Control_v28.exe O23 - Service R2: Sage 50 Accounts Service - C:\Program Files (x86)\Sage2015\sg50svc.exe O23 - Service R2: Sage 50 Accounts Service v22 - C:\Program Files (x86)\Sage\AccountsServiceV22\sg50svc_v22.exe O23 - Service R2: Sage 50 Accounts Service v23 - C:\Program Files (x86)\Sage\AccountsServiceV23\sg50svc_v23.exe O23 - Service R2: Sage 50 Accounts Service v24 - C:\Program Files (x86)\Sage\AccountsServiceV24\sg50svc_v24.exe O23 - Service R2: Sage 50 Accounts Service v25 - C:\Program Files (x86)\Sage\AccountsServiceV25\sg50svc_v25.exe O23 - Service R2: Sage 50 Accounts Service v26 - C:\Program Files (x86)\Sage\AccountsServiceV26\sg50svc_v26.exe O23 - Service R2: Sage 50 Accounts Service v27 - C:\Program Files (x86)\Sage\AccountsServiceV27\sg50svc_v27.exe O23 - Service R2: Sage 50 Accounts Service v28 - C:\Program Files (x86)\Sage\AccountsServiceV28\sg50svc_v28.exe O23 - Service R2: Sage AutoUpdate Manager Service - C:\Program Files (x86)\Common Files\Sage\Central\AutoUpdateClient\Sage.Central.AutoUpdateManager.Service.exe O23 - Service R2: Sage AutoUpdate Manager Service v2 - C:\Program Files (x86)\Common Files\Sage\Shared\AutoUpdateManager\v2\Sage.Central.AutoUpdateManager.Service.exe O23 - Service R2: Sage SData Service - C:\Program Files (x86)\Common Files\Sage SData\Sage.SData.Service.exe O23 - Service R2: Sage SData Service 2.0 - C:\Program Files (x86)\Common Files\Sage SData 2.0\Sage.SData.Service.exe O23 - Service R2: SAMSUNG Mobile Connectivity Service - (ss_conn_service) - C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe O23 - Service R2: SAMSUNG Mobile Connectivity Service V2 - (ss_conn_service2) - C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe O23 - Service R2: uvnc_service - C:\Program Files\uvnc bvba\UltraVNC\WinVNC.exe -service O23 - Service R3: BrYNSvc - C:\Program Files (x86)\Browny02\BrYNSvc.exe O23 - Service S2: Dropbox Update Service (dbupdate) - (dbupdate) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /svc O23 - Service S2: Google Update Service (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc O23 - Service S3: Dropbox Update Service (dbupdatem) - (dbupdatem) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /medsvc O23 - Service S3: Google Chrome Elevation Service (GoogleChromeElevationService) - (GoogleChromeElevationService) - C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.75\elevation_service.exe O23 - Service S3: Google Update Service (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc O23 - Service S3: InstallDriver Table Manager - (IDriverT) - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe O23 - Service S3: Intel(R) Optane(TM) Memory Service - (iaStorAfsService) - C:\windows\IAStorAfsService\iaStorAfsService.exe O23 - Service S3: Mozilla Maintenance Service - (MozillaMaintenance) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- End of file - Time spent: 27 sec. - 46048 bytes, CRC32: FFFFFFFF. Sign: ᚛捔