() [File not signed] C:\Windows\KMS-R@1n.exe () [File not signed] C:\Windows\KMS-R@1nHook.exe IFEO\OSppSvc.exe: [Debugger] KMS-R@1nHook.exe IFEO\SppExtComObj.exe: [Debugger] KMS-R@1nHook.exe Task: {43AA0D95-FEDF-4F2B-8A26-D32E8C729C97} - System32\Tasks\R@1n-KMS\Office15ProPlus => wmic path SoftwareLicensingProduct where (ID="b322da9c-a2e2-4058-9e4e-f59a6970bd69") call Activate R2 KMS-R@1n; C:\Windows\KMS-R@1n.exe [26112 2018-01-30] () [File not signed] Task: {9E3960AE-DFA8-4092-899A-51D107A9EB43} - \6747270c2b20163b034586896136a4bb -> No File <==== ATTENTION Task: {F8C3E903-543B-429F-A9A1-A7E517A4CC10} - \AutoPico Daily Restart -> No File <==== ATTENTION Task: C:\Windows\Tasks\ParetoLogic Registration3.job => rundll32.exe C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\UUS3.dll <==== ATTENTION S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X] U0 Partizan; system32\drivers\Partizan.sys [X] S1 ZAM; \??\C:\Windows\System32\drivers\zam64.sys [X] S1 ZAM_Guard; \??\C:\Windows\System32\drivers\zamguard64.sys [X] S2 ZAMSvc; "C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe" /service [X] Reboot: