O23 - Service: Device Activation Service (DevActSvc) - Unknown owner - C:\Program Files (x86)\ASUS\ASUS Device Activation\DevActSvc.exe O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82d1eb43cfe912d6\IntelCpHDCPSvc.exe O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82d1eb43cfe912d6\IntelCpHeciSvc.exe O23 - Service: ClientAnalyticsService - Intel Security - C:\Program Files\Common Files\McAfee\ClientAnalytics\Legacy\McClientAnalytics.exe O23 - Service: AvastWscReporter - AVAST Software - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
ZHUHAI KINGSOFT OFFICE SOFTWARE VIRUS WINDOWS
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Qualcomm\Bluetooth Suite\adminservice.exe
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\AVAST Software\Avast\aswidsagent.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. C:\Program Files (x86)\ASUS\ASUS Battery Health Charging\AsBhcSrv.exe
O23 - Service: ASUS Battery Health Charging Service (AsBhcService) - ASUSTek Computer Inc.
O23 - Service: (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O2 - BHO: Lync Click to Call BHO - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = DěkujiĬ:\Program Files (x86)\ASUS\Giftbox\asusgiftbox.exeĬ:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exeĬ:\Program Files (x86)\ASUS\ASUS Battery Health Charging\BhcMgr.exeĬ:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exeĬ:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exeĬ:\Program Files (x86)\ASUS\Splendid\ACMON.exeĬ:\Users\Mamka Blanka\Desktop\HijackThis.exe Jedná se o pár let starý ntb, na kterém krom OS nic jiného není.
ZHUHAI KINGSOFT OFFICE SOFTWARE VIRUS HOW TO
How to remove Win32/KingSoft.Prosím o kontrolu logu. Malware.Heuristic!ET#93% (RDMK:cmRtazqYFg5m+1YCkjzpEJMN2oV+)Ī variant of Win32/KingSoft.D potentially unwanted MIMEType: InternalName: wpsupdate FileVersion: 11,1,0,9440 CompanyName: Zhuhai Kingsoft Office Software Co.,Ltd ProductName: WPS Office ProductVersion: 11,1,0,9440 FileDescription: WPS Office Expansion tool OriginalFilename: wpsupdate.exe Translation: 0x0000 0x04b0 Win32/KingSoft.D potentially unwanted also known as: Rising