My computer has been starting up with lots of "application errors" and it seems like a lot of applications are not starting up. Also, Avast won't start for some reason when I'm not in safe-mode. It says the GUI is missing. Here is my DDS.txt and I've attached the Attach.txt.
Please help!
----------------------------------------
DDS (Ver_2012-11-20.01) - NTFS_AMD64 NETWORK
Internet Explorer: 11.0.14393.0
Run by KaelGK at 21:46:26 on 2017-02-20
Microsoft Windows 10 Home 10.0.14393.0.1252.1.1033.18.8104.5823 [GMT -6:00]
.
AV: COMODO Antivirus *Enabled/Updated* {D0CC7563-ABD2-DEBE-138E-FDD553335AF2}
AV: Avast Antivirus *Enabled/Updated* {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes *Disabled/Updated* {23007AD3-69FE-687C-2629-D584AFFAF72B}
SP: Spybot - Search and Destroy *Enabled/Updated* {A16C3F68-9280-E053-1818-342707FECF4D}
SP: Comodo Defense+ *Enabled/Updated* {6BAD9487-8DE8-D130-293E-C6A728B4104F}
SP: Malwarebytes *Disabled/Updated* {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Avast Antivirus *Enabled/Updated* {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
FW: COMODO Firewall *Enabled* {E8F7F446-E1BD-DFE6-38D1-54E0ADE01D89}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\dwm.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\helppane.exe
C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\WINDOWS\system32\ApplicationFrameHost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page =
Google
BHO: Lync Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
BHO: Microsoft OneDrive for Business Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\GROOVEEX.DLL
uRun: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
uRun: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
uRun: [Spotify] "C:\Users\Kael\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized
uRun: [OneDrive] "C:\Users\Kael\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
uRun: [f.lux] "C:\Users\Kael\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
uRun: [iCloudServices] "C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe"
uRun: [GUDelayStartup] "C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe" -delayrun
uRun: [SpybotPostWindows10UpgradeReInstall] "C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe"
mRun: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe -scheduler
mRun: [Yoga Picks] C:\Program Files (x86)\Lenovo\Yoga Picks\Yoga Picks.exe -s
mRun: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvLaunch.exe" /gui
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [Cisco AnyConnect Secure Mobility Agent for Windows] "C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe" -minimized
mRun: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
mRunOnce: [Malwarebytes Anti-Rootkit (cleanup)] "C:\ProgramData\Malwarebytes' Anti-Malware (portable)\mbamdor.exe" "C:\ProgramData\Malwarebytes' Anti-Malware (portable)"
StartupFolder: C:\Users\Kael\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\SENDTO~1.LNK - C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\StartUp\ISCTSY~1.LNK - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
mPolicies-System: DSCAutomationHostEnabled = dword:2
IE: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Root\Office16\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\Program Files\Microsoft Office\Root\Office16\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
TCP: NameServer = 10.169.169.1 8.8.8.8
TCP: Interfaces\{208fb71f-1dba-4a91-977a-b047d70c0463} : DHCPNameServer = 150.201.1.3
TCP: Interfaces\{409936e6-e490-440f-a3f5-cebcabc2fe28} : DHCPNameServer = 209.222.18.222 209.222.18.218
TCP: Interfaces\{6c715c09-10b6-4252-b845-17b2d64c0590} : DHCPNameServer = 10.169.169.1 8.8.8.8
TCP: Interfaces\{6c715c09-10b6-4252-b845-17b2d64c0590}\14454533057335438343 : DHCPNameServer = 192.168.1.254
TCP: Interfaces\{6c715c09-10b6-4252-b845-17b2d64c0590}\2556E61696373716E63656F534F4E464542554E43454 : DHCPNameServer = 4.2.2.1
TCP: Interfaces\{6c715c09-10b6-4252-b845-17b2d64c0590}\2556E61696373716E63656F57455543545 : DHCPNameServer = 4.2.2.1
TCP: Interfaces\{6c715c09-10b6-4252-b845-17b2d64c0590}\2556E61696373716E63656F5C4F4242495 : DHCPNameServer = 4.2.2.1
TCP: Interfaces\{6c715c09-10b6-4252-b845-17b2d64c0590}\3484946494D223E243 : DHCPNameServer = 75.75.75.75 75.75.76.76 75.75.75.75 75.75.76.76
TCP: Interfaces\{6c715c09-10b6-4252-b845-17b2d64c0590}\348696058696D25376 : DHCPNameServer = 10.169.169.1 8.8.8.8
TCP: Interfaces\{6c715c09-10b6-4252-b845-17b2d64c0590}\5514D275051423 : DHCPNameServer = 10.40.73.200 10.40.8.88
TCP: Interfaces\{6c715c09-10b6-4252-b845-17b2d64c0590}\5574F4F5C4C434D253 : DHCPNameServer = 75.75.75.75 75.75.76.76 75.75.75.75 75.75.76.76
TCP: Interfaces\{6c715c09-10b6-4252-b845-17b2d64c0590}\C496E6B63797371343339373 : DHCPNameServer = 12.127.16.67 10.130.0.1
TCP: Interfaces\{6c715c09-10b6-4252-b845-17b2d64c0590}\E45445745414250373 : DHCPNameServer = 209.18.47.62 209.18.47.61
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
Notify: SDWinLogon - SDWinLogon.dll
SSODL: WebCheck - <orphaned>
LSA: Security Packages = ""
CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
x64-mStart Page = about
:blank
x64-BHO: Lync Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll
x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll
x64-BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-BHO: Microsoft OneDrive for Business Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll
x64-Run: [DptfPolicyLpmServiceHelper] C:\WINDOWS\System32\DptfPolicyLpmServiceHelper.exe
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [RtHDVBg_Dolby] "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
x64-Run: [RtsFT] RTFTrack.exe
x64-Run: [IgfxTray] "C:\WINDOWS\System32\igfxtray.exe"
x64-Run: [IAStorIcon] "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
x64-Run: [Yoga PhoneCompanion] C:\Program Files\Lenovo Yoga PhoneCompanion\Yoga Phone Companion.exe
x64-Run: [Energy Manager] C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe
x64-Run: [Lenovo Utility] C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe
x64-Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
x64-Run: [BTMTrayAgent] rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-Run: [COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}] C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
x64-Run: [Malwarebytes TrayApp] C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe
x64-Run: [WindowsDefender] "C:\Program Files (x86)\Windows Defender\MSASCuiL.exe"
x64-mPolicies-System: DSCAutomationHostEnabled = dword:2
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\root\Office16\ONBttnIE.dll
x64-IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll
x64-Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL
x64-Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL
x64-Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL
x64-Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL
x64-Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
x64-Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
x64-mASetup: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall
x64-mASetup: {89820200-ECBD-11cf-8B85-00AA005B4340} - U
x64-mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
x64-CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
.
============= SERVICES / DRIVERS ===============
.
R0 iaStorA;iaStorA;C:\WINDOWS\System32\drivers\iaStorA.sys [2013-8-7 644968]
R0 intelpep;Intel(R) Power Engine Plug-in Driver;C:\WINDOWS\System32\drivers\intelpep.sys [2016-7-16 48152]
R0 iorate;iorate;C:\WINDOWS\System32\drivers\iorate.sys [2016-11-11 48992]
R0 MBAMSwissArmy;MBAMSwissArmy;C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [2017-2-18 251848]
R0 volume;Volume driver;C:\WINDOWS\System32\drivers\volume.sys [2016-7-16 16224]
R0 WindowsTrustedRT;Windows Trusted Execution Environment Class Extension;C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [2016-7-16 107032]
R0 WindowsTrustedRTProxy;Microsoft Windows Trusted Runtime Secure Service;C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [2016-7-16 17944]
R0 Wof;Windows Overlay File System Filter Driver;C:\WINDOWS\System32\drivers\wof.sys [2016-11-11 199008]
R1 ahcache;Application Compatibility Cache;C:\WINDOWS\System32\drivers\ahcache.sys [2016-11-11 227328]
R1 aswKbd;aswKbd;C:\WINDOWS\System32\drivers\aswKbd.sys [2016-7-30 32088]
R1 cmderd;COMODO Internet Security Eradication Driver;C:\WINDOWS\System32\drivers\cmderd.sys [2016-9-8 40960]
R1 cmdhlp;COMODO Internet Security Helper Driver;C:\WINDOWS\System32\drivers\cmdhlp.sys [2016-9-8 54336]
R2 CoreMessagingRegistrar;CoreMessaging;C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork [2016-7-16 44496]
R2 MBAMChameleon;MBAMChameleon;C:\WINDOWS\System32\drivers\MBAMChameleon.sys [2017-2-18 176584]
R2 MBAMService;Malwarebytes Service;C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [2017-2-18 4355024]
R2 tiledatamodelsvc;Tile Data model server;C:\WINDOWS\System32\svchost.exe -k appmodel [2016-7-16 44496]
R2 UserManager;User Manager;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver;C:\WINDOWS\System32\drivers\AcpiVpc.sys [2013-2-17 35600]
R3 ADP80XX;ADP80XX;C:\WINDOWS\System32\drivers\adp80xx.sys [2016-7-16 1135456]
R3 iaStorAV;Intel(R) SATA RAID Controller Windows;C:\WINDOWS\System32\drivers\iaStorAV.sys [2016-7-16 673120]
R3 ikbevent;Intel Upper keyboard Class Filter Driver;C:\WINDOWS\System32\drivers\ikbevent.sys [2013-8-1 21408]
R3 imsevent;Intel Upper Mouse Class Filter Driver;C:\WINDOWS\System32\drivers\imsevent.sys [2013-8-1 21920]
R3 ISCT;Intel(R) Smart Connect Technology Device Driver;C:\WINDOWS\System32\drivers\ISCTD64.sys [2013-8-1 46568]
R3 iwdbus;IWD Bus Enumerator;C:\WINDOWS\System32\drivers\iwdbus.sys [2013-8-22 26008]
R3 LSI_SAS2i;LSI_SAS2i;C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2016-7-16 105824]
R3 LSI_SAS3i;LSI_SAS3i;C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2016-7-16 101216]
R3 megasas2i;megasas2i;C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-11-11 64352]
R3 NdisVirtualBus;Microsoft Virtual Network Adapter Enumerator;C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [2016-7-16 20480]
R3 NETwNb64;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit;C:\WINDOWS\System32\drivers\Netwbw02.sys [2016-7-16 3485696]
R3 percsas2i;percsas2i;C:\WINDOWS\System32\drivers\percsas2i.sys [2016-7-16 58720]
R3 percsas3i;percsas3i;C:\WINDOWS\System32\drivers\percsas3i.sys [2016-7-16 61792]
R3 scmbus;Microsoft Storage Class Memory Bus Driver;C:\WINDOWS\System32\drivers\scmbus.sys [2016-7-16 88416]
R3 SmbDrvI;SmbDrvI;C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2015-6-3 42696]
R3 StateRepository;State Repository Service;C:\WINDOWS\System32\svchost.exe -k appmodel [2016-7-16 44496]
R3 stornvme;Microsoft Standard NVM Express Driver;C:\WINDOWS\System32\drivers\stornvme.sys [2016-11-11 81760]
R3 storufs;Microsoft Universal Flash Storage (UFS) Driver;C:\WINDOWS\System32\drivers\storufs.sys [2016-7-16 32096]
S1 aswbidsdriver;aswbidsdriver;C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [2017-2-17 309784]
S1 aswSnx;aswSnx;C:\WINDOWS\System32\drivers\aswSnx.sys [2016-7-30 991496]
S1 aswSP;aswSP;C:\WINDOWS\System32\drivers\aswSP.sys [2016-7-30 547904]
S1 cmdGuard;COMODO Internet Security Sandbox Driver;C:\WINDOWS\System32\drivers\cmdguard.sys [2016-9-8 862648]
S1 ESProtectionDriver;Malwarebytes Anti-Exploit;C:\WINDOWS\System32\drivers\mbae64.sys [2017-2-18 77416]
S1 FileCrypt;FileCrypt;C:\WINDOWS\System32\drivers\filecrypt.sys [2016-7-16 88576]
S1 GpuEnergyDrv;GPU Energy Driver;C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2016-7-16 8192]
S1 GUBootStartup;GUBootStartup;C:\WINDOWS\System32\drivers\GUBootStartup.sys [2016-12-5 20160]
S2 Apple Mobile Device Service;Apple Mobile Device Service;C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2016-3-2 83768]
S2 aswMonFlt;aswMonFlt;C:\WINDOWS\System32\drivers\aswMonFlt.sys [2016-7-30 126088]
S2 aswStm;aswStm;C:\WINDOWS\System32\drivers\aswStm.sys [2016-7-30 162528]
S2 avast! Antivirus;Avast Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-2-17 262736]
S2 Bluetooth Device Monitor;Bluetooth Device Monitor;C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2014-3-26 1206648]
S2 Bluetooth OBEX Service;Bluetooth OBEX Service;C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2014-3-26 1165688]
S2 CDPSvc;Connected Devices Platform Service;C:\WINDOWS\System32\svchost.exe -k LocalService [2016-7-16 44496]
S2 CDPUserSvc_32813;CDPUserSvc_32813;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
S2 ClickToRunSvc;Microsoft Office Click-to-Run Service;C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe [2016-8-10 2946304]
S2 clreg;Virtual Registry for Containers;C:\WINDOWS\System32\drivers\registry.sys [2016-7-16 70144]
S2 DAMSvc;DragonAssistant3 Maintenance Service;C:\Program Files (x86)\Nuance\DragonAssistant3\DragonAssistantMaintenance.exe [2014-1-27 4279056]
S2 DiagTrack;Connected User Experiences and Telemetry;C:\WINDOWS\System32\svchost.exe -k utcsvc [2016-7-16 44496]
S2 DoSvc;Delivery Optimization;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S2 DptfParticipantProcessorService;Intel(R) Dynamic Platform and Thermal Framework Processor Participant Service Application;C:\WINDOWS\System32\DptfParticipantProcessorService.exe [2014-6-2 115632]
S2 DptfPolicyConfigTDPService;Intel(R) Dynamic Platform and Thermal Framework Config TDP Service Application;C:\WINDOWS\System32\DptfPolicyConfigTDPService.exe [2014-6-2 116656]
S2 DptfPolicyCriticalService;Intel(R) Dynamic Platform and Thermal Framework Critical Service Application;C:\WINDOWS\System32\DptfPolicyCriticalService.exe [2014-6-2 148688]
S2 DptfPolicyLpmService;Intel(R) Dynamic Platform and Thermal Framework Low Power Mode Service Application;C:\WINDOWS\System32\DptfPolicyLpmService.exe [2014-6-2 124880]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-8-7 15720]
S2 ibtsiva;Intel Bluetooth Service;C:\WINDOWS\System32\ibtsiva --> C:\WINDOWS\System32\ibtsiva [?]
S2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service;C:\WINDOWS\System32\igfxCUIService.exe [2016-11-1 373744]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-5-11 733696]
S2 ISCTAgent;Intel(R) Smart Connect Technology Agent;C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [2013-8-1 198120]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-6-3 169432]
S2 LenovoWiFiHotspotSvr;Lenovo WiFiHotspot Service;C:\WINDOWS\System32\LenovoWiFiHotspotSvr.exe [2014-6-3 198192]
S2 LsvUIService;LsvUIService;C:\Program Files (x86)\Lenovo\Lenovo Smart Voice\LsvUIService.exe [2014-6-3 70416]
S2 MapsBroker;Downloaded Maps Manager;C:\WINDOWS\System32\svchost.exe -k NetworkService [2016-7-16 44496]
S2 MSSQL$SQLSERVER1;SQL Server (SQLSERVER1);C:\Program Files\Microsoft SQL Server\MSSQL13.SQLSERVER1\MSSQL\Binn\sqlservr.exe [2016-11-19 392896]
S2 MSSQLLaunchpad;SQL Server Launchpad (MSSQLSERVER);C:\Program Files\Microsoft SQL Server\MSSQL13.MSSQLSERVER\MSSQL\Binn\Launchpad.exe [2016-10-29 1015496]
S2 NitroDriverReadSpool9;NitroPDFDriverCreatorReadSpool9;C:\Program Files\Common Files\Nitro\Pro\9.0\NitroPDFDriverService9x64.exe [2013-12-12 230920]
S2 nlsX86cc;Nalpeiron Licensing Service;C:\Windows\SysWOW64\NLSSRV32.EXE [2013-12-12 69640]
S2 OneSyncSvc_32813;Sync Host_32813;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
S2 PG_Service_Launcher;PG_Service_Launcher;C:\Program Files (x86)\Lenovo\Motion Control\PG_Service_Launcher.exe [2014-2-24 512776]
S2 PGService;PGService;C:\Program Files (x86)\Lenovo\Motion Control\PGService.exe [2014-2-24 167176]
S2 PhoneCompanionPusher;Lenovo PhoneCompanionPusher Service;C:\Program Files\Lenovo Yoga PhoneCompanion\PhoneCompanionPusher.exe [2014-6-3 249872]
S2 ReportServer$SQLEXPRESS;SQL Server Reporting Services (SQLEXPRESS);C:\Program Files\Microsoft SQL Server\MSRS13.SQLEXPRESS\Reporting Services\ReportServer\bin\ReportingServicesService.exe [2016-4-30 2571976]
S2 ReportServer$SQLSERVER1;SQL Server Reporting Services (SQLSERVER1);C:\Program Files\Microsoft SQL Server\MSRS13.SQLSERVER1\Reporting Services\ReportServer\bin\ReportingServicesService.exe [2016-4-30 2571976]
S2 ReportServer;SQL Server Reporting Services (MSSQLSERVER);C:\Program Files\Microsoft SQL Server\MSRS13.MSSQLSERVER\Reporting Services\ReportServer\bin\ReportingServicesService.exe [2016-4-30 2571976]
S2 RichVideo64;Cyberlink RichVideo64 Service(CRVS);C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2014-6-3 390632]
S2 RtkAudioService;Realtek Audio Service;C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2014-6-3 288472]
S2 SDScannerService;Spybot-S&D 2 Scanner Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2017-2-18 1738168]
S2 SDUpdateService;Spybot-S&D 2 Updating Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2017-2-18 4088608]
S2 SDWSCService;Spybot-S&D 2 Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2017-2-18 235984]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2017-1-16 317400]
S2 SQLTELEMETRY$SQLSERVER1;SQL Server CEIP service (SQLSERVER1);C:\Program Files\Microsoft SQL Server\MSSQL13.SQLSERVER1\MSSQL\Binn\sqlceip.exe [2016-10-29 249032]
S2 SQLTELEMETRY;SQL Server CEIP service (MSSQLSERVER);C:\Program Files\Microsoft SQL Server\MSSQL13.MSSQLSERVER\MSSQL\Binn\sqlceip.exe [2016-10-29 249032]
S2 storqosflt;Storage QoS Filter Driver;C:\WINDOWS\System32\drivers\storqosflt.sys [2016-7-16 78336]
S2 SynTPEnhService;SynTPEnh Caller Service;C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-6-3 249032]
S2 VeriFaceSrv;VeriFaceSrv;C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [2014-6-3 68368]
S2 vpnagent;Cisco AnyConnect Secure Mobility Agent;C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe [2015-9-9 576400]
S2 wcifs;Windows Container Isolation;C:\WINDOWS\System32\drivers\wcifs.sys [2016-11-11 119648]
S2 wcnfs;Windows Container Name Virtualization;C:\WINDOWS\System32\drivers\wcnfs.sys [2016-7-16 66560]
S2 WpnService;Windows Push Notifications System Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S2 ymc;ymc;C:\ProgramData\LenovoTransition\Server\x64\ymc.exe [2014-6-3 34576]
S2 YogaPicks.AppService;YogaPicks.AppService;C:\Program Files (x86)\Lenovo\Yoga Picks\Service\x64\YogaPicks.AppService.exe [2014-6-3 19440]
S2 ZeroConfigService;Intel(R) PROSet/Wireless Zero Configuration Service;C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2014-1-17 3816176]
S3 AcpiDev;ACPI Devices driver;C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-7-16 18432]
S3 acsock;acsock;C:\WINDOWS\System32\drivers\acsock64.sys [2017-1-30 129520]
S3 AJRouter;AllJoyn Router Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2016-7-16 44496]
S3 applockerfltr;Smartlocker Filter Driver;C:\WINDOWS\System32\drivers\applockerfltr.sys [2016-7-16 15360]
S3 AppReadiness;App Readiness;C:\WINDOWS\System32\svchost.exe -k AppReadiness [2016-7-16 44496]
S3 AppXSvc;AppX Deployment Service (AppXSVC);C:\WINDOWS\System32\svchost.exe -k wsappx [2016-7-16 44496]
S3 aswbIDSAgent;aswbIDSAgent;C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-2-17 7142136]
S3 aswHwid;aswHwid;C:\WINDOWS\System32\drivers\aswHwid.sys [2016-7-30 38296]
S3 bcmfn;bcmfn Service;C:\WINDOWS\System32\drivers\bcmfn.sys [2016-7-16 9728]
S3 bcmfn2;bcmfn2 Service;C:\WINDOWS\System32\drivers\bcmfn2.sys [2016-7-16 9728]
S3 BthA2DP;Bluetooth Stereo;C:\WINDOWS\System32\drivers\BthA2DP.sys [2016-11-11 168448]
S3 BthHFAud;Bluetooth Hands-Free;C:\WINDOWS\System32\drivers\BthHfAud.sys [2016-7-16 37376]
S3 BthHFSrv;Bluetooth Handsfree Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceAndNoImpersonation [2016-7-16 44496]
S3 BthLEEnum;Bluetooth Low Energy Driver;C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-11-11 249856]
S3 btmaux;Intel Bluetooth Auxiliary Service;C:\WINDOWS\System32\drivers\btmaux.sys [2014-3-26 140600]
S3 buttonconverter;Service for Portable Device Control devices;C:\WINDOWS\System32\drivers\buttonconverter.sys [2016-7-16 38912]
S3 CapImg;HID driver for CapImg touch screen;C:\WINDOWS\System32\drivers\capimg.sys [2016-11-11 118272]
S3 cht4iscsi;cht4iscsi;C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-7-16 346976]
S3 cht4vbd;Chelsio Virtual Bus Driver;C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-7-16 2104160]
S3 ClipSVC;Client License Service (ClipSVC);C:\WINDOWS\System32\svchost.exe -k wsappx [2016-7-16 44496]
S3 cmdvirth;COMODO Virtual Service Manager;C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2016-9-14 2271928]
S3 DcpSvc;DataCollectionPublishingService;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S3 DevQueryBroker;DevQuery Background Discovery Broker;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
S3 diagnosticshub.standardcollector.service;Microsoft (R) Diagnostics Hub Standard Collector Service;C:\WINDOWS\System32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2016-7-16 93184]
S3 DmEnrollmentSvc;Device Management Enrollment Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S3 dmwappushservice;dmwappushsvc;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S3 DptfDevPch;DptfDevPch;C:\WINDOWS\System32\drivers\DptfDevPch.sys [2014-6-2 114680]
S3 DptfDevProc;DptfDevProc;C:\WINDOWS\System32\drivers\DptfDevProc.sys [2014-6-2 287160]
S3 DptfManager;DptfManager;C:\WINDOWS\System32\drivers\DptfManager.sys [2014-6-2 494272]
S3 DsSvc;Data Sharing Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
S3 embeddedmode;Embedded Mode;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
S3 EntAppSvc;Enterprise App Management Service;C:\WINDOWS\System32\svchost.exe -k appmodel [2016-7-16 44496]
S3 FrameServer;Windows Camera Frame Server;C:\WINDOWS\System32\svchost.exe -k Camera [2016-7-16 44496]
S3 genericusbfn;Generic USB Function Class;C:\WINDOWS\System32\drivers\genericusbfn.sys [2016-7-16 20480]
S3 hidinterrupt;Common Driver for HID Buttons implemented with interrupts;C:\WINDOWS\System32\drivers\hidinterrupt.sys [2016-7-16 50016]
S3 HvHost;HV Host Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
S3 iagpio;Intel Serial IO GPIO Controller Driver;C:\WINDOWS\System32\drivers\iagpio.sys [2016-7-16 33280]
S3 iai2c;Intel(R) Serial IO I2C Host Controller;C:\WINDOWS\System32\drivers\iai2c.sys [2016-7-16 81408]
S3 iaLPSS2i_GPIO2;Intel(R) Serial IO GPIO Driver v2;C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-7-16 64512]
S3 iaLPSS2i_I2C;Intel(R) Serial IO I2C Driver v2;C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2016-7-16 176384]
S3 iaLPSSi_GPIO;Intel(R) Serial IO GPIO Controller Driver;C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [2016-7-16 38128]
S3 iaLPSSi_I2C;Intel(R) Serial IO I2C Controller Driver;C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [2016-7-16 113152]
S3 ibbus;Mellanox InfiniBand Bus/AL (Filter Driver);C:\WINDOWS\System32\drivers\ibbus.sys [2016-7-16 526176]
S3 ibtusb;Intel(R) Wireless Bluetooth(R);C:\WINDOWS\System32\drivers\ibtusb.sys [2016-11-11 230656]
S3 icssvc;Windows Mobile Hotspot Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2016-7-16 44496]
S3 IndirectKmd;Indirect Displays Kernel-Mode Driver;C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-7-16 35840]
S3 INETMON;INETMON;C:\WINDOWS\System32\drivers\INETMON.sys [2014-6-3 29088]
S3 intaud_WaveExtensible;Intel WiDi Audio Device;C:\WINDOWS\System32\drivers\intelaud.sys [2013-8-22 39320]
S3 IntcDAud;Intel(R) Display Audio;C:\WINDOWS\System32\drivers\IntcDAud.sys [2016-5-12 481768]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-5-11 822232]
S3 lfsvc;Geolocation Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S3 LicenseManager;Windows License Manager Service;C:\WINDOWS\System32\svchost.exe -k LocalService [2016-7-16 44496]
S3 MBAMFarflt;MBAMFarflt;C:\WINDOWS\System32\drivers\farflt.sys [2017-2-18 110536]
S3 MBAMProtection;MBAMProtection;C:\WINDOWS\System32\drivers\mbam.sys [2017-2-18 43968]
S3 MessagingService_32813;MessagingService_32813;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
S3 mlx4_bus;Mellanox ConnectX Bus Enumerator;C:\WINDOWS\System32\drivers\mlx4_bus.sys [2016-7-16 842584]
S3 MsMpiLaunchSvc;MS-MPI Launch Service;C:\Program Files\Microsoft MPI\Bin\msmpilaunchsvc.exe [2016-3-4 23040]
S3 MSSQLFDLauncher$SQLEXPRESS;SQL Full-text Filter Daemon Launcher (SQLEXPRESS);C:\Program Files\Microsoft SQL Server\MSSQL13.SQLEXPRESS\MSSQL\Binn\fdlauncher.exe [2016-4-30 51392]
S3 MSSQLFDLauncher$SQLSERVER1;SQL Full-text Filter Daemon Launcher (SQLSERVER1);C:\Program Files\Microsoft SQL Server\MSSQL13.SQLSERVER1\MSSQL\Binn\fdlauncher.exe [2016-4-30 51392]
S3 MSSQLFDLauncher;SQL Full-text Filter Daemon Launcher (MSSQLSERVER);C:\Program Files\Microsoft SQL Server\MSSQL13.MSSQLSERVER\MSSQL\Binn\fdlauncher.exe [2016-4-30 51392]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-1-17 284912]
S3 NcbService;Network Connection Broker;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
S3 ndfltr;NetworkDirect Service;C:\WINDOWS\System32\drivers\ndfltr.sys [2016-7-16 108896]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library;C:\WINDOWS\System32\drivers\NetAdapterCx.sys [2016-7-16 90624]
S3 NetSetupSvc;Network Setup Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S3 NgcCtnrSvc;Microsoft Passport Container;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2016-7-16 44496]
S3 NgcSvc;Microsoft Passport;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\microsoft shared\Source Engine\OSE.EXE [2016-12-25 251096]
S3 PhoneCompanionVap;Lenovo PhoneCompanionVap Service;C:\Program Files\Lenovo Yoga PhoneCompanion\PhoneCompanionVap.exe [2014-6-3 328720]
S3 PhoneSvc;Phone Service;C:\WINDOWS\System32\svchost.exe -k LocalService [2016-7-16 44496]
S3 PimIndexMaintenanceSvc_32813;Contact Data_32813;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
S3 ReFSv1;ReFSv1;C:\WINDOWS\System32\drivers\refsv1.sys [2016-7-16 928608]
S3 RetailDemo;Retail Demo Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S3 rtsuvc;Lenovo EasyCamera;C:\WINDOWS\System32\drivers\rtsuvc.sys [2014-6-3 8247640]
S3 ScDeviceEnum;Smart Card Device Enumeration Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
S3 scmdisk0101;Microsoft NVDIMM-N disk driver;C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-7-16 123904]
S3 scvad_simple;SplitCam Virtual Microphone (WDM);C:\WINDOWS\System32\drivers\SplitCamAudio.sys [2016-2-8 23552]
S3 SensorDataService;Sensor Data Service;C:\WINDOWS\System32\SensorDataService.exe [2016-11-11 1312768]
S3 SensorService;Sensor Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
S3 SensorsHIDClassDriver;UMDF Reflector service for Sensors HID Class Driver;C:\WINDOWS\System32\drivers\WUDFRd.sys [2016-7-16 216064]
S3 SerCx2;Serial UART Support Library;C:\WINDOWS\System32\drivers\SerCx2.sys [2016-7-16 151904]
S3 smphost;Microsoft Storage Spaces SMP;C:\WINDOWS\System32\svchost.exe -k smphost [2016-7-16 44496]
S3 SmsRouter;Microsoft Windows SMS Router Service.;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
S3 splitcam_hd_driver;SplitCam Virtual Video Driver;C:\WINDOWS\System32\drivers\splitcam_hd_driver.sys [2016-2-8 37600]
S3 SWDUMon;SWDUMon;C:\WINDOWS\System32\drivers\SWDUMon.sys [2016-9-26 13920]
S3 TieringEngineService;Storage Tiers Management;C:\WINDOWS\System32\TieringEngineService.exe [2016-7-16 287744]
S3 TimeBrokerSvc;Time Broker;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2016-7-16 44496]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension;C:\WINDOWS\System32\drivers\UcmCx.sys [2016-7-16 95744]
S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension;C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [2016-7-16 108544]
S3 UcmUcsi;USB Connector Manager UCSI Client;C:\WINDOWS\System32\drivers\UcmUcsi.sys [2016-7-16 50688]
S3 UdeCx;USB Device Emulation Support Library;C:\WINDOWS\System32\drivers\Udecx.sys [2016-7-16 45568]
S3 UEFI;Microsoft UEFI Driver;C:\WINDOWS\System32\drivers\uefi.sys [2016-7-16 28512]
S3 Ufx01000;USB Function Class Extension;C:\WINDOWS\System32\drivers\ufx01000.sys [2016-7-16 263008]
S3 UfxChipidea;USB Chipidea Controller;C:\WINDOWS\System32\drivers\UfxChipidea.sys [2016-7-16 96608]
S3 ufxsynopsys;USB Synopsys Controller;C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2016-7-16 137056]
S3 UnistoreSvc_32813;User Data Storage_32813;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
S3 UrsChipidea;Chipidea USB Role-Switch Driver;C:\WINDOWS\System32\drivers\urschipidea.sys [2016-7-16 28512]
S3 UrsCx01000;USB Role-Switch Support Library;C:\WINDOWS\System32\drivers\urscx01000.sys [2016-7-16 57696]
S3 UrsSynopsys;Synopsys USB Role-Switch Driver;C:\WINDOWS\System32\drivers\urssynopsys.sys [2016-7-16 27488]
S3 USBAAPL64;Apple Mobile USB Driver;C:\WINDOWS\System32\drivers\usbaapl64.sys [2015-11-5 54784]
S3 UserDataSvc_32813;User Data Access_32813;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
S3 UsoSvc;Update Orchestrator Service for Windows Update;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S3 vhf;Virtual HID Framework (VHF) Driver;C:\WINDOWS\System32\drivers\vhf.sys [2016-7-16 32256]
S3 vmgid;Microsoft Hyper-V Guest Infrastructure Driver;C:\WINDOWS\System32\drivers\vmgid.sys [2016-7-16 10240]
S3 vmicguestinterface;Hyper-V Guest Service Interface;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
S3 vmicvmsession;Hyper-V PowerShell Direct Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2016-7-16 44496]
S3 VSStandardCollectorService140;Visual Studio Standard Collector Service;C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [2016-9-6 108776]
S3 WalletService;WalletService;C:\WINDOWS\System32\svchost.exe -k appmodel [2016-7-16 44496]
S3 wdiwifi;WDI Driver Framework;C:\WINDOWS\System32\drivers\WdiWiFi.sys [2016-11-11 719360]
S3 WdNisDrv;Windows Defender Network Inspection System Driver;C:\WINDOWS\System32\drivers\WdNisDrv.sys [2016-7-16 123232]
S3 WdNisSvc;Windows Defender Network Inspection Service;C:\Program Files\Windows Defender\NisSrv.exe [2016-7-16 347328]
S3 WEPHOSTSVC;Windows Encryption Provider Host Service;C:\WINDOWS\System32\svchost.exe -k WepHostSvcGroup [2016-7-16 44496]
S3 WinMad;WinMad Service;C:\WINDOWS\System32\drivers\winmad.sys [2016-7-16 32096]
S3 WinVerbs;WinVerbs Service;C:\WINDOWS\System32\drivers\winverbs.sys [2016-7-16 64864]
S3 wisvc;Windows Insider Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S3 workfolderssvc;Work Folders;C:\WINDOWS\System32\svchost.exe -k LocalService [2016-7-16 44496]
S3 WpnUserService_32813;Windows Push Notifications User Service_32813;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2016-7-16 44496]
S3 wsvd;wsvd;C:\WINDOWS\System32\drivers\wsvd.sys [2014-6-3 102376]
S3 WUDFWpdMtp;WUDFWpdMtp;C:\WINDOWS\System32\drivers\WUDFRd.sys [2016-7-16 216064]
S3 XblAuthManager;Xbox Live Auth Manager;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S3 XblGameSave;Xbox Live Game Save;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S3 xboxgip;Xbox Game Input Protocol Driver;C:\WINDOWS\System32\drivers\xboxgip.sys [2016-12-9 258560]
S3 XboxNetApiSvc;Xbox Live Networking Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S3 xinputhid;XINPUT HID Filter Driver;C:\WINDOWS\System32\drivers\xinputhid.sys [2016-11-11 43520]
S4 RsFx0410;RsFx0410 Driver;C:\WINDOWS\System32\drivers\RsFx0410.sys [2016-10-20 261840]
S4 shpamsvc;Shared PC Account Manager;C:\WINDOWS\System32\svchost.exe -k netsvcs [2016-7-16 44496]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);C:\Program Files\Microsoft SQL Server\MSSQL13.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2016-11-19 565952]
S4 SQLAgent$SQLSERVER1;SQL Server Agent (SQLSERVER1);C:\Program Files\Microsoft SQL Server\MSSQL13.SQLSERVER1\MSSQL\Binn\SQLAGENT.EXE [2016-11-19 565952]
S4 tzautoupdate;Auto Time Zone Updater;C:\WINDOWS\System32\svchost.exe -k LocalService [2016-7-16 44496]
.
=============== File Associations ===============
.
ShellExec: SZBrowser.exe: open="C:\Program Files\AVAST Software\SZBrowser\Launcher.exe" "%1"
.
=============== Created Last 30 ================
.
2017-02-21 04:50:58 -------- d-----w- C:\$WINDOWS.~BT
2017-02-21 04:49:51 -------- d--h--w- C:\$SysReset
2017-02-21 01:28:49 -------- d-----w- C:\Users\Kael\AppData\Local\Programs
2017-02-21 01:21:12 -------- d-----w- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2017-02-20 18:13:28 12229912 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{76C53FB8-A974-44C7-B439-FA360A95C30D}\mpengine.dll
2017-02-20 18:13:17 485032 ------w- C:\WINDOWS\System32\MpSigStub.exe
2017-02-20 18:12:17 1167568 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\NISBackup\gapaengine.dll
2017-02-20 18:12:16 1167568 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{47679874-B5A5-47D7-8547-048EAD4A1D48}\gapaengine.dll
2017-02-20 07:19:55 -------- d-----w- C:\Users\Kael\AppData\Local\ElevatedDiagnostics
2017-02-19 07:26:20 -------- d-----w- C:\Users\Kael\AppData\Local\VirtualStore
2017-02-19 07:25:06 -------- d-----w- C:\Users\Kael\AppData\Roaming\Intel
2017-02-19 04:39:15 91584 ----a-w- C:\WINDOWS\System32\drivers\mwac.sys
2017-02-19 04:39:15 176584 ----a-w- C:\WINDOWS\System32\drivers\MBAMChameleon.sys
2017-02-19 04:39:15 110536 ----a-w- C:\WINDOWS\System32\drivers\farflt.sys
2017-02-19 04:39:10 43968 ----a-w- C:\WINDOWS\System32\drivers\mbam.sys
2017-02-19 04:39:07 251848 ----a-w- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys
2017-02-19 04:39:01 77416 ----a-w- C:\WINDOWS\System32\drivers\mbae64.sys
2017-02-19 04:38:56 -------- d-----w- C:\ProgramData\Malwarebytes
2017-02-19 04:38:56 -------- d-----w- C:\Program Files\Malwarebytes
2017-02-19 03:58:52 21040 ----a-w- C:\WINDOWS\System32\sdnclean64.exe
2017-02-19 03:58:50 -------- d-----w- C:\ProgramData\Spybot - Search & Destroy
2017-02-19 03:58:46 -------- d---a-w- C:\Program Files (x86)\Spybot - Search & Destroy 2
2017-02-17 09:12:12 48528 ----a-w- C:\WINDOWS\System32\drivers\aswbuniva.sys
2017-02-17 09:12:12 334600 ----a-w- C:\WINDOWS\System32\drivers\aswbloga.sys
2017-02-17 09:12:12 309784 ----a-w- C:\WINDOWS\System32\drivers\aswbidsdrivera.sys
2017-02-17 09:12:12 189768 ----a-w- C:\WINDOWS\System32\drivers\aswbidsha.sys
2017-02-16 17:57:20 84992 ----a-w- C:\WINDOWS\SysWow64\atl70.dll
2017-02-16 17:57:20 24064 ----a-w- C:\WINDOWS\SysWow64\msxml3a.dll
2017-02-16 17:57:20 -------- d-----w- C:\Program Files (x86)\Jabber
2017-02-16 12:29:37 -------- d-----w- C:\WINDOWS\Panther
2017-02-16 08:43:10 -------- d-----w- C:\Users\Kael\AppData\Local\Power BI
2017-02-16 08:34:14 -------- d-----w- C:\Program Files\Microsoft Power BI Desktop
2017-02-14 05:13:23 58560 ----a-w- C:\WINDOWS\System32\perf-ReportServer$SQLSERVER1-rsctr13.1.4001.0.dll
2017-02-14 05:13:23 51400 ----a-w- C:\WINDOWS\SysWow64\perf-ReportServer$SQLSERVER1-rsctr13.1.4001.0.dll
2017-02-14 05:12:30 51912 ----a-w- C:\WINDOWS\System32\perf-MSSQL13.SQLSERVER1-sqlagtctr.dll
2017-02-14 05:12:30 44232 ----a-w- C:\WINDOWS\SysWow64\perf-MSSQL13.SQLSERVER1-sqlagtctr.dll
2017-02-14 05:12:18 118472 ----a-w- C:\WINDOWS\System32\perf-MSSQL$SQLSERVER1-sqlctr13.1.4001.0.dll
2017-02-14 05:12:18 103624 ----a-w- C:\WINDOWS\SysWow64\perf-MSSQL$SQLSERVER1-sqlctr13.1.4001.0.dll
2017-02-14 04:52:54 -------- d-----w- C:\Program Files\Microsoft Visual Studio 10.0
2017-02-14 04:52:54 -------- d-----w- C:\Program Files (x86)\Microsoft Visual Studio 10.0
2017-02-14 04:35:12 58560 ----a-w- C:\WINDOWS\System32\perf-ReportServer$SQLEXPRESS-rsctr13.1.4001.0.dll
2017-02-14 04:35:12 51400 ----a-w- C:\WINDOWS\SysWow64\perf-ReportServer$SQLEXPRESS-rsctr13.1.4001.0.dll
2017-02-14 04:33:14 44232 ----a-w- C:\WINDOWS\SysWow64\perf-MSSQL13.SQLEXPRESS-sqlagtctr.dll
2017-02-14 04:33:13 51912 ----a-w- C:\WINDOWS\System32\perf-MSSQL13.SQLEXPRESS-sqlagtctr.dll
2017-02-14 04:33:00 118472 ----a-w- C:\WINDOWS\System32\perf-MSSQL$SQLEXPRESS-sqlctr13.1.4001.0.dll
2017-02-14 04:33:00 103624 ----a-w- C:\WINDOWS\SysWow64\perf-MSSQL$SQLEXPRESS-sqlctr13.1.4001.0.dll
2017-02-07 20:43:31 -------- d-----w- C:\Users\Kael\AppData\Roaming\WhatsApp
2017-02-07 20:43:22 -------- d-----w- C:\Users\Kael\AppData\Local\WhatsApp
2017-02-07 20:43:19 -------- d-----w- C:\Users\Kael\AppData\Local\SquirrelTemp
2017-02-05 06:38:42 251072 ----a-w- C:\WINDOWS\System32\SQSRVRES.DLL
2017-02-02 17:59:06 58560 ----a-w- C:\WINDOWS\System32\perf-ReportServer-rsctr13.1.4001.0.dll
2017-02-02 17:59:06 51400 ----a-w- C:\WINDOWS\SysWow64\perf-ReportServer-rsctr13.1.4001.0.dll
2017-02-02 17:56:42 44232 ----a-w- C:\WINDOWS\SysWow64\perf-MSSQL13.MSSQLSERVER-sqlagtctr.dll
2017-02-02 17:56:41 51912 ----a-w- C:\WINDOWS\System32\perf-MSSQL13.MSSQLSERVER-sqlagtctr.dll
2017-02-02 17:56:30 118472 ----a-w- C:\WINDOWS\System32\perf-MSSQLSERVER-sqlctr13.1.4001.0.dll
2017-02-02 17:56:30 103624 ----a-w- C:\WINDOWS\SysWow64\perf-MSSQLSERVER-sqlctr13.1.4001.0.dll
2017-02-02 17:56:24 81600 ----a-w- C:\WINDOWS\System32\fssres.dll
2017-02-02 17:56:23 177856 ----a-w- C:\WINDOWS\System32\hadrres.dll
2017-02-02 17:53:26 -------- d-----w- C:\WINDOWS\System32\RsFx
2017-02-02 17:50:16 -------- d-----w- C:\Program Files\Microsoft Analysis Services
2017-02-02 17:50:16 -------- d-----w- C:\Program Files (x86)\Microsoft Analysis Services
2017-02-02 17:49:52 -------- d-----w- C:\Program Files\Microsoft Help Viewer
2017-02-02 17:49:45 -------- d---a-w- C:\Program Files\Microsoft MPI
2017-02-02 17:09:26 -------- d-----w- C:\SQLServer2016Media
2017-01-30 20:31:26 129520 ----a-r- C:\WINDOWS\System32\drivers\acsock64.sys
2017-01-29 05:35:09 -------- d-----w- C:\Program Files\Common Files\AV
2017-01-25 07:01:35 142848 ----a-w- C:\WINDOWS\System32\poqexec.exe
2017-01-25 07:01:35 120320 ----a-w- C:\WINDOWS\SysWow64\poqexec.exe
2017-01-24 05:38:45 -------- d-----w- C:\TFS
2017-01-24 05:38:17 -------- d-----w- C:\ProgramData\Microsoft Team Foundation Local Workspaces
2017-01-24 05:31:43 -------- d-----w- C:\Users\Kael\.cisco
2017-01-24 05:31:42 -------- d-----w- C:\Program Files\Cisco
2017-01-24 05:31:27 -------- d-----w- C:\Users\Kael\AppData\Local\Cisco
2017-01-24 05:31:27 -------- d-----w- C:\ProgramData\Cisco
2017-01-24 05:31:20 -------- d-----w- C:\anyconnectInstall
2017-01-24 05:31:19 -------- d-----w- C:\ProgramData\Symantec
2017-01-24 05:30:08 -------- d--h--w- C:\VTRoot
2017-01-24 05:16:53 -------- d-----w- C:\Users\Kael\AppData\Local\Microsoft_Corporation
2017-01-24 01:08:19 82432 ----a-w- C:\WINDOWS\System32\VSD3DWARP12Debug.dll
2017-01-24 01:08:19 6583296 ----a-w- C:\WINDOWS\System32\d3d12warp.dll
2017-01-24 01:08:19 61952 ----a-w- C:\WINDOWS\System32\VSD3DWARPDebug.dll
2017-01-24 01:08:19 5850624 ----a-w- C:\WINDOWS\System32\VsGraphicsDesktopEngine.exe
2017-01-24 01:08:19 4978176 ----a-w- C:\WINDOWS\SysWow64\d3d12warp.dll
2017-01-24 01:08:19 4596224 ----a-w- C:\WINDOWS\SysWow64\VsGraphicsDesktopEngine.exe
2017-01-24 01:08:19 2795520 ----a-w- C:\WINDOWS\System32\d3d12SDKLayers.dll
2017-01-24 01:08:19 2220032 ----a-w- C:\WINDOWS\SysWow64\d3d12SDKLayers.dll
2017-01-24 01:08:18 64000 ----a-w- C:\WINDOWS\SysWow64\VSD3DWARP12Debug.dll
2017-01-24 01:08:18 60928 ----a-w- C:\WINDOWS\SysWow64\VSD3DWARPDebug.dll
2017-01-24 01:08:18 384000 ----a-w- C:\WINDOWS\System32\DXCpl.exe
2017-01-24 01:08:18 362496 ----a-w- C:\WINDOWS\SysWow64\DXCpl.exe
2017-01-23 21:34:56 -------- d-----w- C:\Program Files (x86)\AppInsights
2017-01-23 21:33:57 2572832 ----a-w- C:\ProgramData\Microsoft\VisualStudioSecondaryInstaller\14.0\installers\MicroUpdate3.5\en\0\vs14-kb3165756.exe
2017-01-23 21:33:52 6283264 ----a-w- C:\ProgramData\Microsoft\VisualStudioSecondaryInstaller\14.0\installers\AppInsightsToolsVisualStudio_HiddenVSU3RTMV1_7.0.20620.1\en\0\AppInsights_VisualStudio.msi
2017-01-23 21:33:47 1908736 ----a-w- C:\ProgramData\Microsoft\VisualStudioSecondaryInstaller\14.0\installers\JavaScriptProjectSystem_Hidden_14.0.25527\en\0\JavaScript_ProjectSystem.msi
2017-01-23 21:33:42 3985408 ----a-w- C:\ProgramData\Microsoft\VisualStudioSecondaryInstaller\14.0\installers\JavaScriptLanguageService_Hidden_14.0.25527\en\0\JavaScript_LanguageService.msi
2017-01-23 21:25:21 -------- d-----w- C:\ProgramData\PreEmptive Solutions
2017-01-23 21:24:47 -------- d-----w- C:\Program Files (x86)\Microsoft ASP.NET
2017-01-23 21:03:46 -------- d---a-w- C:\Program Files\IIS Express
2017-01-23 21:03:46 -------- d---a-w- C:\Program Files (x86)\IIS Express
2017-01-23 21:02:57 -------- d-----w- C:\Program Files (x86)\Microsoft Office365 Tools
2017-01-23 21:02:56 -------- d-----w- C:\Users\Kael\AppData\Local\VSIXInstaller
2017-01-23 21:02:17 -------- d-----w- C:\ProgramData\NuGet
2017-01-23 21:02:17 -------- d-----w- C:\Program Files (x86)\NuGet
2017-01-23 20:58:23 -------- d-----w- C:\Program Files\Microsoft Visual Studio 12.0
2017-01-23 20:58:22 -------- d-----w- C:\Program Files (x86)\Microsoft Visual Studio 12.0
.
==================== Find3M ====================
.
2017-02-21 01:38:40 180 ----a-w- C:\WINDOWS\System32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-02-17 09:12:20 337080 ----a-w- C:\WINDOWS\System32\drivers\aswvmm.sys
2017-02-17 09:12:02 162528 ----a-w- C:\WINDOWS\System32\drivers\aswStm.sys
2017-02-17 09:12:01 74680 ----a-w- C:\WINDOWS\System32\drivers\aswRvrt.sys
2017-02-17 09:12:01 38296 ----a-w- C:\WINDOWS\System32\drivers\aswHwid.sys
2017-02-17 09:12:01 126088 ----a-w- C:\WINDOWS\System32\drivers\aswMonFlt.sys
2017-02-17 09:12:01 100640 ----a-w- C:\WINDOWS\System32\drivers\aswRdr2.sys
2017-02-17 09:11:49 991496 ----a-w- C:\WINDOWS\System32\drivers\aswSnx.sys
2017-02-17 09:11:49 32088 ----a-w- C:\WINDOWS\System32\drivers\aswKbd.sys
2017-02-02 02:20:28 379136 ----a-w- C:\WINDOWS\System32\ibtproppage.dll
2017-02-02 02:20:28 230656 ----a-w- C:\WINDOWS\System32\drivers\ibtusb.sys
2017-02-02 02:20:28 184064 ----a-w- C:\WINDOWS\System32\ibtsiva.exe
2017-01-24 05:31:37 52592 ----a-w- C:\WINDOWS\System32\drivers\vpnva64-6.sys
2017-01-23 22:46:12 135488 ----a-w- C:\WINDOWS\System32\mfcm140ud.dll
2017-01-23 22:46:12 131920 ----a-w- C:\WINDOWS\System32\vcruntime140d.dll
2017-01-19 17:01:15 320696 ----a-w- C:\WINDOWS\SysWow64\vsjitdebugger.exe
2017-01-19 16:24:12 165352 ----a-w- C:\WINDOWS\System32\drivers\UMDF\SensorsSimulatorDriver.dll
2017-01-19 16:24:11 372920 ----a-w- C:\WINDOWS\System32\vsjitdebugger.exe
2017-01-11 18:25:45 835576 ----a-w- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
2017-01-11 18:25:45 177656 ----a-w- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
2017-01-11 10:12:59 947712 ----a-w- C:\WINDOWS\System32\MSVP9DEC.dll
2016-12-09 20:00:11 180224 ----a-w- C:\WINDOWS\System32\enrollmentapi.dll
2016-12-09 10:42:15 1637728 ----a-w- C:\WINDOWS\System32\appraiser.dll
2016-12-09 10:42:14 137568 ----a-w- C:\WINDOWS\System32\acmigration.dll
2016-12-09 10:34:34 894096 ----a-w- C:\WINDOWS\System32\winresume.exe
2016-12-09 10:34:34 1051112 ----a-w- C:\WINDOWS\System32\winresume.efi
2016-12-09 10:33:26 1354320 ----a-w- C:\WINDOWS\System32\winload.efi
2016-12-09 10:33:26 1173496 ----a-w- C:\WINDOWS\System32\winload.exe
2016-12-09 10:30:39 377184 ----a-w- C:\WINDOWS\System32\drivers\clfs.sys
2016-12-09 10:29:23 2681200 ----a-w- C:\WINDOWS\System32\CoreUIComponents.dll
2016-12-09 10:28:24 764392 ----a-w- C:\WINDOWS\System32\CoreMessaging.dll
2016-12-09 10:27:38 172528 ----a-w- C:\WINDOWS\System32\sspicli.dll
2016-12-09 10:20:21 2677544 ----a-w- C:\WINDOWS\System32\d3d10warp.dll
2016-12-09 10:20:20 2189664 ----a-w- C:\WINDOWS\System32\drivers\dxgkrnl.sys
2016-12-09 10:20:16 658784 ----a-w- C:\WINDOWS\System32\drivers\dxgmms2.sys
2016-12-09 10:20:13 402272 ----a-w- C:\WINDOWS\System32\drivers\dxgmms1.sys
2016-12-09 10:20:12 1738560 ----a-w- C:\WINDOWS\System32\WindowsCodecs.dll
2016-12-09 10:19:35 1293152 ----a-w- C:\WINDOWS\System32\LicenseManager.dll
2016-12-09 10:19:21 168424 ----a-w- C:\WINDOWS\System32\bcrypt.dll
2016-12-09 10:18:21 2913144 ----a-w- C:\WINDOWS\System32\combase.dll
2016-12-09 10:18:16 1100128 ----a-w- C:\WINDOWS\System32\hvix64.exe
2016-12-09 10:18:15 1267512 ----a-w- C:\WINDOWS\System32\WinTypes.dll
2016-12-09 10:18:14 811872 ----a-w- C:\WINDOWS\System32\hvloader.exe
2016-12-09 10:18:12 947552 ----a-w- C:\WINDOWS\System32\hvloader.efi
2016-12-09 10:18:09 989024 ----a-w- C:\WINDOWS\System32\hvax64.exe
2016-12-09 10:15:26 8168000 ----a-w- C:\WINDOWS\System32\Windows.Media.Protection.PlayReady.dll
2016-12-09 10:14:50 1274712 ----a-w- C:\WINDOWS\System32\ole32.dll
2016-12-09 10:11:15 2048496 ----a-w- C:\WINDOWS\SysWow64\CoreUIComponents.dll
2016-12-09 10:10:58 1461200 ----a-w- C:\WINDOWS\System32\user32.dll
2016-12-09 10:10:40 1572768 ----a-w- C:\WINDOWS\System32\gdi32full.dll
2016-12-09 10:01:59 2323728 ----a-w- C:\WINDOWS\SysWow64\d3d10warp.dll
2016-12-09 10:01:43 1503544 ----a-w- C:\WINDOWS\SysWow64\WindowsCodecs.dll
2016-12-09 10:01:08 861024 ----a-w- C:\WINDOWS\SysWow64\LicenseManager.dll
2016-12-09 10:00:58 106896 ----a-w- C:\WINDOWS\SysWow64\bcrypt.dll
2016-12-09 09:59:25 846560 ----a-w- C:\WINDOWS\SysWow64\WinTypes.dll
2016-12-09 09:59:24 2166752 ----a-w- C:\WINDOWS\SysWow64\combase.dll
2016-12-09 09:57:00 6668040 ----a-w- C:\WINDOWS\SysWow64\Windows.Media.Protection.PlayReady.dll
2016-12-09 09:56:15 959112 ----a-w- C:\WINDOWS\SysWow64\ole32.dll
2016-12-09 09:52:21 1435896 ----a-w- C:\WINDOWS\SysWow64\user32.dll
2016-12-09 09:52:21 1415752 ----a-w- C:\WINDOWS\SysWow64\gdi32full.dll
2016-12-09 09:51:08 117240 ----a-w- C:\WINDOWS\SysWow64\sspicli.dll
2016-12-09 09:45:47 40448 ----a-w- C:\WINDOWS\System32\WordBreakers.dll
2016-12-09 09:42:29 227328 ----a-w- C:\WINDOWS\System32\cdd.dll
2016-12-09 09:41:22 380928 ----a-w- C:\WINDOWS\System32\wincorlib.dll
2016-12-09 09:41:06 32768 ----a-w- C:\WINDOWS\SysWow64\WordBreakers.dll
2016-12-09 09:37:10 411136 ----a-w- C:\WINDOWS\System32\facecredentialprovider.dll
2016-12-09 09:36:32 410112 ----a-w- C:\WINDOWS\System32\AppXDeploymentClient.dll
2016-12-09 09:36:09 3059200 ----a-w- C:\WINDOWS\System32\msi.dll
2016-12-09 09:34:31 288768 ----a-w- C:\WINDOWS\SysWow64\wincorlib.dll
2016-12-09 09:33:42 3777536 ----a-w- C:\WINDOWS\System32\MFMediaEngine.dll
2016-12-09 09:33:37 1589760 ----a-w- C:\WINDOWS\System32\msdtctm.dll
2016-12-09 09:32:18 635904 ----a-w- C:\WINDOWS\SysWow64\jscript9diag.dll
2016-12-09 09:31:22 3689984 ----a-w- C:\WINDOWS\SysWow64\msi.dll
2016-12-09 09:31:11 313856 ----a-w- C:\WINDOWS\SysWow64\AppXDeploymentClient.dll
2016-12-09 09:28:55 1004544 ----a-w- C:\WINDOWS\System32\enterprisecsps.dll
2016-12-09 09:28:12 3306496 ----a-w- C:\WINDOWS\SysWow64\MFMediaEngine.dll
2016-12-09 09:27:55 5114368 ----a-w- C:\WINDOWS\System32\cdp.dll
2016-12-09 09:27:36 981504 ----a-w- C:\WINDOWS\System32\Windows.Security.Authentication.OnlineId.dll
2016-12-09 09:25:28 376832 ----a-w- C:\WINDOWS\System32\CryptoWinRT.dll
2016-12-09 09:22:06 2820096 ----a-w- C:\WINDOWS\System32\InputService.dll
2016-12-09 09:21:48 4746752 ----a-w- C:\WINDOWS\System32\jscript9.dll
2016-12-09 09:21:04 716800 ----a-w- C:\WINDOWS\System32\ShareHost.dll
2016-12-09 09:20:36 730624 ----a-w- C:\WINDOWS\System32\fveapi.dll
2016-12-09 09:20:35 3198464 ----a-w- C:\WINDOWS\SysWow64\cdp.dll
2016-12-09 09:20:32 172544 ----a-w- C:\WINDOWS\System32\DeviceEnroller.exe
2016-12-09 09:20:05 187392 ----a-w- C:\WINDOWS\System32\mdmregistration.dll
2016-12-09 09:19:46 433664 ----a-w- C:\WINDOWS\System32\TextInputFramework.dll
2016-12-09 09:19:43 261120 ----a-w- C:\WINDOWS\System32\Windows.UI.Core.TextInput.dll
2016-12-09 09:19:32 85504 ----a-w- C:\WINDOWS\System32\EditBufferTestHook.dll
2016-12-09 09:19:32 119296 ----a-w- C:\WINDOWS\System32\InputLocaleManager.dll
2016-12-09 09:18:38 3666432 ----a-w- C:\WINDOWS\SysWow64\jscript9.dll
2016-12-09 09:18:36 2138112 ----a-w- C:\WINDOWS\SysWow64\InputService.dll
2016-12-09 09:18:23 165376 ----a-w- C:\WINDOWS\SysWow64\mdmregistration.dll
2016-12-09 09:17:08 566784 ----a-w- C:\WINDOWS\SysWow64\ShareHost.dll
2016-12-09 09:16:03 353280 ----a-w- C:\WINDOWS\SysWow64\TextInputFramework.dll
2016-12-09 09:15:59 206848 ----a-w- C:\WINDOWS\SysWow64\Windows.UI.Core.TextInput.dll
2016-12-09 09:15:51 68096 ----a-w- C:\WINDOWS\SysWow64\EditBufferTestHook.dll
2016-12-09 09:15:49 92672 ----a-w- C:\WINDOWS\SysWow64\InputLocaleManager.dll
2016-12-09 08:54:48 483840 ----a-w- C:\WINDOWS\SysWow64\CoreMessaging.dll
2016-12-05 07:50:03 20160 ----a-w- C:\WINDOWS\System32\drivers\GUBootStartup.sys
.
============= FINISH: 21:46:43.60 ===============