Quantcast
Channel: Tech Support Forum - Virus/Trojan/Spyware Help
Viewing all articles
Browse latest Browse all 2798

Recurring Daily - Windows Refocuses to Desktop at 12:00 (Midnight)

$
0
0
Win 10 Pro - Upgraded from Win 7

Hi guys, I have had an issue ever since I built this computer, but only at this point has it become much more of a nuisance.

Problem:At midnight each day, if I am working/using an application in full screen mode (such as a full-screened game or movie), the system will automatically focus on the desktop. Think "ALT+TAB" but to desktop. The symptom does not sure for things applications in windowed-fullscreen.

Troubleshooting:

  • Enabling & disabling the following showed no difference: "Task Scheduler Library -> Microsoft -> Windows -> Maintenance"
  • I do not have dropbox or similar syncing software that requires some sort of pull from a cloud
  • Full scan performed with Malwarebytes + Adwcleaner and Windows defender
  • Turning off focus assist. Turning on alarms only while turning off summary
  • Windows desktop customization option is not selected for matching my desktop background
  • Task Scheduler shows no items running at midnight

I have essentially followed all advice posted in my Win 10 help thread here: https://www.techsupportforum.com/for...ml#post7695040

There is suspicion that this is due to some malware - also in part from another user experience here: Stop desktop showing at midnight - [Solved] - Components

I do not have a Windows install CD, but I can readily create a Win 10 installation USB key.


Any help or suggestions or where to look is highly appreciated!


DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.17134.1
Run by squis at 19:17:49 on 2018-08-01
Microsoft Windows 10 Pro 10.0.17134.0.1252.1.1033.18.16336.12744 [GMT -4:00]
.
AV: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
c:\windows\system32\svchost.exe -k dcomlaunch -p -s PlugPlay
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
C:\WINDOWS\system32\fontdrvhost.exe
c:\windows\system32\svchost.exe -k rpcss -p
c:\windows\system32\svchost.exe -k dcomlaunch -p -s LSM
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s NcbService
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s TimeBrokerSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s EventLog
c:\windows\system32\svchost.exe -k netsvcs -p -s Schedule
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s hidserv
c:\windows\system32\svchost.exe -k netsvcs -p -s ProfSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s StorSvc
c:\windows\system32\svchost.exe -k localservice -p -s nsi
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s Dhcp
c:\windows\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
c:\windows\system32\svchost.exe -k networkservice -p -s NlaSvc
c:\windows\system32\svchost.exe -k appmodel -p -s StateRepository
C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
c:\windows\system32\svchost.exe -k networkservice -p -s Dnscache
c:\windows\system32\svchost.exe -k localservice -p -s netprofm
c:\windows\system32\svchost.exe -k netsvcs -p -s Themes
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s SysMain
c:\windows\system32\svchost.exe -k localservice -p -s EventSystem
c:\windows\system32\svchost.exe -k netsvcs -p -s SENS
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s WinHttpAutoProxySvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s AudioEndpointBuilder
c:\windows\system32\svchost.exe -k localservice -p -s FontCache
c:\windows\system32\svchost.exe -k netsvcs -p -s Winmgmt
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s DeviceAssociationService
C:\WINDOWS\system32\dashost.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p -s SSDPSRV
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
c:\windows\system32\svchost.exe -k netsvcs -p -s ShellHWDetection
C:\WINDOWS\System32\spoolsv.exe
c:\windows\system32\svchost.exe -k networkservice -p -s LanmanWorkstation
c:\windows\system32\svchost.exe -k localservice -p -s SstpSvc
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
c:\windows\system32\svchost.exe -k localservicenonetwork -p -s DPS
c:\windows\system32\svchost.exe -k networkservice -p -s CryptSvc
C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
c:\windows\system32\svchost.exe -k netsvcs -p -s iphlpsvc
C:\Windows\SysWOW64\PnkBstrB.exe
C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
c:\windows\system32\svchost.exe -k netsvcs -p -s WpnService
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s TrkWks
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
C:\Program Files (x86)\Origin\OriginWebHelperService.exe
c:\windows\system32\svchost.exe -k networkservice -p -s TapiSrv
C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
c:\windows\system32\svchost.exe -k netsvcs -p -s LanmanServer
c:\windows\system32\svchost.exe -k localservice -p -s WdiServiceHost
c:\windows\system32\svchost.exe -k netsvcs
c:\windows\system32\svchost.exe -k netsvcs -p -s Browser
c:\windows\system32\svchost.exe -k networkservicenetworkrestricted -p -s PolicyAgent
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s TabletInputService
c:\windows\system32\svchost.exe -k localservice -p -s CDPSvc
c:\windows\system32\svchost.exe -k netsvcs -p -s TokenBroker
c:\windows\system32\svchost.exe -k localservice -p -s LicenseManager
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\AUDIODG.EXE
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s PcaSvc
c:\windows\system32\svchost.exe -k netsvcs -p -s lfsvc
c:\windows\system32\svchost.exe -k netsvcs -p
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s wscsvc
svchost.exe
c:\windows\system32\svchost.exe -k networkservice -p -s DoSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s Netman
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p -s QWAVE
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wlidsvc
C:\WINDOWS\System32\fontdrvhost.exe
C:\WINDOWS\System32\dwm.exe
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s camsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s DsSvc
C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
c:\windows\system32\sihost.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup -s CDPUserSvc
c:\windows\system32\svchost.exe -k unistacksvcgroup -s WpnUserService
c:\windows\system32\taskhostw.exe
C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\System32\RuntimeBroker.exe
C:\WINDOWS\system32\SettingSyncHost.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.210.0_x64__kzf8qxf38zg5c\SkypeHost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\System32\InputMethod\CHS\ChsIME.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s NcdAutoSetup
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Program Files\Windows Defender\MSASCuiL.exe
C:\Program Files\Nahimic\Nahimic VR\Foundation\NahimicVRSvc32.exe
C:\Program Files\Nahimic\Nahimic VR\Foundation\x64\NahimicVRSvc64.exe
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
C:\Program Files\Logitech Gaming Software\LCore.exe
C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\Send Anywhere\Send Anywhere.exe
C:\Program Files\Logitech Gaming Software\ArxApplets\Discord\logitechg_discord.exe
C:\Program Files (x86)\Send Anywhere\Send Anywhere.exe
C:\Program Files (x86)\Send Anywhere\Send Anywhere.exe
C:\Program Files\ShareX\ShareX.exe
C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18051.18420.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
C:\Windows\System32\RuntimeBroker.exe
C:\WINDOWS\system32\ApplicationFrameHost.exe
C:\Program Files\WindowsApps\Microsoft.WindowsStore_11807.1001.13.0_x64__8wekyb3d8bbwe\WinStore.App.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_1.16.1004.0_x64__8wekyb3d8bbwe\GameBar.exe
C:\Windows\System32\RuntimeBroker.exe
C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService -s BcastDVRUserService
svchost.exe
c:\windows\system32\svchost.exe -k netsvcs -p -s BITS
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\SearchFilterHost.exe
c:\windows\system32\svchost.exe -k netsvcs -p -s Appinfo
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Windows\System32\smartscreen.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
C:\WINDOWS\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uLocal Page = %11%\blank.htm
mWinlogon: Userinit = C:\WINDOWS\System32\userinit.exe
BHO: Skype for Business Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll
uRun: [OneDrive] "C:\Users\squis\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
uRun: [SendAnywhere] C:\Program Files (x86)\Send Anywhere\Send Anywhere.exe --tray
mRun: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
StartupFolder: C:\Users\squis\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ShareX.lnk - C:\Program Files\ShareX\ShareX.exe
mPolicies-System: DSCAutomationHostEnabled = dword:2
mPolicies-System: EnableFullTrustStartupTasks = dword:2
mPolicies-System: EnableUwpStartupTasks = dword:2
mPolicies-System: SupportFullTrustStartupTasks = dword:1
mPolicies-System: SupportUwpStartupTasks = dword:1
IE: E&xport to Microsoft Excel - C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\Program Files (x86)\Microsoft Office\Root\Office16\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIE.dll
IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll
TCP: NameServer = 208.67.222.222 208.67.220.220
TCP: Interfaces\{4819c6a7-3b09-4646-ba9a-43e1354b9935} : DHCPNameServer = 192.168.2.1 207.164.234.129
TCP: Interfaces\{531419f4-0591-40b5-8d4c-449a71d3612c} : NameServer = 208.67.222.222,208.67.220.220
TCP: Interfaces\{531419f4-0591-40b5-8d4c-449a71d3612c} : DHCPNameServer = 208.67.222.222 208.67.220.220
TCP: Interfaces\{580fc6f8-38d2-4c55-a4fa-cf424f8843e1} : DHCPNameServer = 192.168.42.129
TCP: Interfaces\{5dd26fc4-6669-40c1-9e0a-42b96559db66} : DHCPNameServer = 192.168.0.1
TCP: Interfaces\{afdb1cfb-e56a-4afd-939e-a8ca4b92130e} : DHCPNameServer = 192.168.0.1
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\MSOXMLMF.DLL
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
SSODL: WebCheck - <orphaned>
LSA: Security Packages = ""
CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
x64-BHO: ExplorerWnd Helper: {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll
x64-BHO: Skype for Business Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll
x64-Run: [SecurityHealth] C:\Program Files (x86)\Windows Defender\MSASCuiL.exe
x64-Run: [NahimicVRSvc32] C:\Program Files\Nahimic\Nahimic VR\Foundation\NahimicVRSvc32.exe /start all
x64-Run: [NahimicVRSvc64] C:\Program Files\Nahimic\Nahimic VR\Foundation\x64\NahimicVRSvc64.exe /start all
x64-Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
x64-Run: [AdobeGCInvoker-1.0] "C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe"
x64-Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
x64-Run: [Launch LCore] C:\Program Files\Logitech Gaming Software\LCore.exe /minimized
x64-mPolicies-System: DSCAutomationHostEnabled = dword:2
x64-mPolicies-System: EnableFullTrustStartupTasks = dword:2
x64-mPolicies-System: EnableUwpStartupTasks = dword:2
x64-mPolicies-System: SupportFullTrustStartupTasks = dword:1
x64-mPolicies-System: SupportUwpStartupTasks = dword:1
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Office\Office16\ONBttnIE.dll
x64-IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
x64-Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL
x64-Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - <orphaned>
x64-Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - <orphaned>
x64-Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - <orphaned>
x64-Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - <orphaned>
x64-Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
x64-Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
x64-SSODL: WebCheck - <orphaned>
x64-mASetup: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall
x64-mASetup: {89820200-ECBD-11cf-8B85-00AA005B4340} - U
x64-mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
x64-CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
.
============= SERVICES / DRIVERS ===============
.
P2 HiPatchService;Hi-Rez Studios Authenticate and Update Service;C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2017-7-11 9728]
R0 intelpep;Intel(R) Power Engine Plug-in Driver;C:\WINDOWS\System32\drivers\intelpep.sys [2018-4-11 177192]
R0 iorate;Disk I/O Rate Filter Driver;C:\WINDOWS\System32\drivers\iorate.sys [2018-4-11 58272]
R0 MsSecFlt;Microsoft Security Events Component Minifilter;C:\WINDOWS\System32\drivers\mssecflt.sys [2018-4-11 304032]
R0 SgrmAgent;System Guard Runtime Monitor Agent;C:\WINDOWS\System32\drivers\SgrmAgent.sys [2018-4-11 63896]
R0 volume;Volume driver;C:\WINDOWS\System32\drivers\volume.sys [2018-4-11 16288]
R0 WindowsTrustedRT;Windows Trusted Execution Environment Class Extension;C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [2018-7-10 72768]
R0 WindowsTrustedRTProxy;Microsoft Windows Trusted Runtime Secure Service;C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [2018-4-11 18472]
R0 Wof;Windows Overlay File System Filter Driver;C:\WINDOWS\System32\drivers\wof.sys [2018-4-11 209816]
R1 afunix;afunix;C:\WINDOWS\System32\drivers\afunix.sys [2018-4-11 39424]
R1 ahcache;Application Compatibility Cache;C:\WINDOWS\System32\drivers\ahcache.sys [2018-4-11 254464]
R1 amdpsp;AMD PSP Service;C:\WINDOWS\System32\drivers\amdpsp.sys [2017-6-12 239976]
R1 bam;Background Activity Moderator Driver;C:\WINDOWS\System32\drivers\bam.sys [2018-4-11 60320]
R1 ESProtectionDriver;Malwarebytes Anti-Exploit;C:\WINDOWS\System32\drivers\mbae64.sys [2018-5-11 152688]
R1 FileCrypt;FileCrypt;C:\WINDOWS\System32\drivers\filecrypt.sys [2018-4-11 55808]
R1 GpuEnergyDrv;GPU Energy Driver;C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2018-4-11 8192]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver;C:\WINDOWS\System32\drivers\HWiNFO64A.SYS [2017-5-7 27552]
R2 AdobeUpdateService;AdobeUpdateService;C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [2018-6-22 818128]
R2 AGMService;Adobe Genuine Monitor Service;C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2018-5-11 2321384]
R2 AGSService;Adobe Genuine Software Integrity Service;C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2017-2-27 2128872]
R2 CDPSvc;Connected Devices Platform Service;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2018-4-11 51288]
R2 CDPUserSvc_4c36fd3;Connected Devices Platform User Service_4c36fd3;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2018-4-11 51288]
R2 CldFlt;Windows Cloud Files Filter Driver;C:\WINDOWS\System32\drivers\cldflt.sys [2018-4-11 414208]
R2 ClickToRunSvc;Microsoft Office Click-to-Run Service;C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe [2017-5-5 8851496]
R2 CoreMessagingRegistrar;CoreMessaging;C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p [2018-4-11 51288]
R2 DiagTrack;Connected User Experiences and Telemetry;C:\WINDOWS\System32\svchost.exe -k utcsvc -p [2018-4-11 51288]
R2 DusmSvc;Data Usage;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2018-4-11 51288]
R2 IObitUnSvr;IObit Uninstaller Service;C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [2017-7-10 360736]
R2 LGCoreTemp;Logitech CPU Core Tempurature;C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\LgCoreTemp.sys [2015-6-21 14184]
R2 LogiRegistryService;Logitech Gaming Registry Service;C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [2018-5-7 206472]
R2 MBAMChameleon;MBAMChameleon;C:\WINDOWS\System32\drivers\MbamChameleon.sys [2018-7-8 191208]
R2 MBAMService;Malwarebytes Service;C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [2018-5-11 6541008]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container;C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-7-25 764456]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS;C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2018-7-25 764896]
R2 NvTelemetryContainer;NVIDIA Telemetry Container;C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2018-7-25 629800]
R2 OneSyncSvc_4c36fd3;Sync Host_4c36fd3;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2018-4-11 51288]
R2 Origin Web Helper Service;Origin Web Helper Service;C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2017-10-4 3000168]
R2 SecurityHealthService;Windows Defender Security Center Service;C:\WINDOWS\System32\SecurityHealthService.exe [2018-7-10 761440]
R2 SgrmBroker;System Guard Runtime Monitor Broker;C:\WINDOWS\System32\SgrmBroker.exe [2018-4-11 163336]
R2 storqosflt;Storage QoS Filter Driver;C:\WINDOWS\System32\drivers\storqosflt.sys [2018-4-11 82432]
R2 TeamViewer;TeamViewer 13;C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2018-4-14 11293936]
R2 UserManager;User Manager;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
R2 UsoSvc;Update Orchestrator Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
R2 wcifs;Windows Container Isolation;C:\WINDOWS\System32\drivers\wcifs.sys [2018-4-11 151960]
R2 WpnService;Windows Push Notifications System Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
R2 WpnUserService_4c36fd3;Windows Push Notifications User Service_4c36fd3;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2018-4-11 51288]
R3 amdgpio2;AMD GPIO Client Driver;C:\WINDOWS\System32\drivers\amdgpio2.sys [2017-3-2 43400]
R3 amdgpio3;AMD GPIO Client Driver;C:\WINDOWS\System32\drivers\amdgpio3.sys [2016-8-13 24424]
R3 AMDPCIDev;AMD PCI;C:\WINDOWS\System32\drivers\AMDPCIDev.sys [2017-10-10 31592]
R3 AppXSvc;AppX Deployment Service (AppXSVC);C:\WINDOWS\System32\svchost.exe -k wsappx -p [2018-4-11 51288]
R3 BcastDVRUserService_4c36fd3;GameDVR and Broadcast User Service_4c36fd3;C:\WINDOWS\System32\svchost.exe -k BcastDVRUserService [2018-4-11 51288]
R3 camsvc;Capability Access Manager Service;C:\WINDOWS\System32\svchost.exe -k appmodel -p [2018-4-11 51288]
R3 CMUSBDAC;USB Audio Class 1.0 and 2.0 DAC Device Driver;C:\WINDOWS\System32\drivers\CMUSBDAC.sys [2016-11-30 3792904]
R3 DoSvc;Delivery Optimization;C:\WINDOWS\System32\svchost.exe -k NetworkService -p [2018-4-11 51288]
R3 DsSvc;Data Sharing Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2018-4-11 51288]
R3 lfsvc;Geolocation Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
R3 LGBusEnum;Logitech Gaming Virtual Bus Enumerator Driver;C:\WINDOWS\System32\drivers\LGBusEnum.sys [2018-5-7 36496]
R3 LGJoyXlCore;Logitech Translation Layer Driver (LGS);C:\WINDOWS\System32\drivers\LGJoyXlCore.sys [2018-5-7 67736]
R3 LGSHidFilt;Logitech Gaming KMDF HID Filter Driver;C:\WINDOWS\System32\drivers\LGSHidFilt.Sys [2018-5-7 64280]
R3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;C:\WINDOWS\System32\drivers\LGVirHid.sys [2018-5-7 26008]
R3 LicenseManager;Windows License Manager Service;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2018-4-11 51288]
R3 MBAMFarflt;MBAMFarflt;C:\WINDOWS\System32\drivers\farflt.sys [2018-7-8 114920]
R3 MBAMProtection;MBAMProtection;C:\WINDOWS\System32\drivers\mbam.sys [2018-7-8 48360]
R3 MBAMSwissArmy;MBAMSwissArmy;C:\WINDOWS\System32\drivers\mbamswissarmy.sys [2018-6-26 253664]
R3 MBAMWebProtection;MBAMWebProtection;C:\WINDOWS\System32\drivers\mwac.sys [2018-7-26 102632]
R3 NcbService;Network Connection Broker;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2018-4-11 51288]
R3 NdisVirtualBus;Microsoft Virtual Network Adapter Enumerator;C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [2018-4-11 20992]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);C:\WINDOWS\System32\drivers\nvvad64v.sys [2018-7-25 69544]
R3 nvvhci;NVVHCI Enumerator Service;C:\WINDOWS\System32\drivers\nvvhci.sys [2018-7-25 65792]
R3 Phosgene;FaceRig Virtual Camera;C:\WINDOWS\System32\drivers\Phosgene.sys [2017-8-15 34136]
R3 PimIndexMaintenanceSvc_4c36fd3;Contact Data_4c36fd3;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2018-4-11 51288]
R3 rt640x64;Realtek RT640 NT Driver;C:\WINDOWS\System32\drivers\rt640x64.sys [2017-6-23 984032]
R3 RTCore64;RTCore64;C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [2017-8-27 14024]
R3 StateRepository;State Repository Service;C:\WINDOWS\System32\svchost.exe -k appmodel -p [2018-4-11 51288]
R3 TimeBrokerSvc;Time Broker;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2018-4-11 51288]
R3 TokenBroker;Web Account Manager;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
R3 UEFI;Microsoft UEFI Driver;C:\WINDOWS\System32\drivers\uefi.sys [2018-6-13 29600]
R3 UnistoreSvc_4c36fd3;User Data Storage_4c36fd3;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2018-4-11 51288]
R3 UserDataSvc_4c36fd3;User Data Access_4c36fd3;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2018-4-11 51288]
R3 WaaSMedicSvc;Windows Update Medic Service;C:\WINDOWS\System32\svchost.exe -k wusvcs -p [2018-4-11 51288]
R3 WdNisDrv;Windows Defender Antivirus Network Inspection System Driver;C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [2018-7-31 61992]
R3 WdNisSvc;Windows Defender Antivirus Network Inspection Service;C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1807.18075-0\NisSrv.exe [2018-7-31 3905952]
S2 MapsBroker;Downloaded Maps Manager;C:\WINDOWS\System32\svchost.exe -k NetworkService -p [2018-4-11 51288]
S3 AcpiDev;ACPI Devices driver;C:\WINDOWS\System32\drivers\AcpiDev.sys [2018-4-11 20480]
S3 ADP80XX;ADP80XX;C:\WINDOWS\System32\drivers\adp80xx.sys [2018-4-11 1135520]
S3 AJRouter;AllJoyn Router Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2018-4-11 51288]
S3 amdkmcsp;AMD Kernel Mode CSP Service;C:\WINDOWS\System32\drivers\amdkmcsp.sys [2017-6-12 95080]
S3 applockerfltr;Smartlocker Filter Driver;C:\WINDOWS\System32\drivers\applockerfltr.sys [2018-4-11 18432]
S3 AppReadiness;App Readiness;C:\WINDOWS\System32\svchost.exe -k AppReadiness -p [2018-4-11 51288]
S3 AppvStrm;AppvStrm;C:\WINDOWS\System32\drivers\AppVStrm.sys [2018-4-11 127384]
S3 AppvVemgr;AppvVemgr;C:\WINDOWS\System32\drivers\AppvVemgr.sys [2018-4-11 162712]
S3 AppvVfs;AppvVfs;C:\WINDOWS\System32\drivers\AppvVfs.sys [2018-4-11 143768]
S3 AssignedAccessManagerSvc;AssignedAccessManager Service;C:\WINDOWS\System32\svchost.exe -k AssignedAccessManagerSvc [2018-4-11 51288]
S3 bcmfn2;bcmfn2 Service;C:\WINDOWS\System32\drivers\bcmfn2.sys [2018-4-11 9728]
S3 BEService;BattlEye Service;C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2018-6-30 6875688]
S3 bindflt;Windows Bind Filter Driver;C:\WINDOWS\System32\drivers\bindflt.sys [2018-4-11 92056]
S3 BluetoothUserService_4c36fd3;Bluetooth User Support Service_4c36fd3;C:\WINDOWS\System32\svchost.exe -k BthAppGroup [2018-4-11 51288]
S3 BTAGService;Bluetooth Audio Gateway Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2018-4-11 51288]
S3 BthAvctpSvc;AVCTP service;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2018-4-11 51288]
S3 bttflt;Microsoft Hyper-V VHDPMEM BTT Filter;C:\WINDOWS\System32\drivers\bttflt.sys [2018-4-11 38304]
S3 buttonconverter;Service for Portable Device Control devices;C:\WINDOWS\System32\drivers\buttonconverter.sys [2018-4-11 39936]
S3 CAD;Charge Arbitration Driver;C:\WINDOWS\System32\drivers\CAD.sys [2018-4-11 60320]
S3 CapImg;HID driver for CapImg touch screen;C:\WINDOWS\System32\drivers\capimg.sys [2018-4-11 123392]
S3 CaptureService_4c36fd3;CaptureService_4c36fd3;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2018-4-11 51288]
S3 cht4iscsi;cht4iscsi;C:\WINDOWS\System32\drivers\cht4sx64.sys [2018-4-11 321432]
S3 cht4vbd;Chelsio Virtual Bus Driver;C:\WINDOWS\System32\drivers\cht4vx64.sys [2018-4-11 1836952]
S3 ClipSVC;Client License Service (ClipSVC);C:\WINDOWS\System32\svchost.exe -k wsappx -p [2018-4-11 51288]
S3 dc1-controller;Xbox Peripherals Driver;C:\WINDOWS\System32\drivers\dc1-controller.sys [2018-4-11 54272]
S3 DevicePickerUserSvc_4c36fd3;DevicePicker_4c36fd3;C:\WINDOWS\System32\svchost.exe -k DevicesFlow [2018-4-11 51288]
S3 DevicesFlowUserSvc_4c36fd3;DevicesFlow_4c36fd3;C:\WINDOWS\System32\svchost.exe -k DevicesFlow [2018-4-11 51288]
S3 DevQueryBroker;DevQuery Background Discovery Broker;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2018-4-11 51288]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);C:\WINDOWS\System32\drivers\ssudbus.sys [2017-5-18 131984]
S3 diagnosticshub.standardcollector.service;Microsoft (R) Diagnostics Hub Standard Collector Service;C:\WINDOWS\System32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2018-4-11 90624]
S3 diagsvc;Diagnostic Execution Service;C:\WINDOWS\System32\svchost.exe -k diagnostics [2018-4-11 51288]
S3 DmEnrollmentSvc;Device Management Enrollment Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
S3 dmwappushservice;dmwappushsvc;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
S3 EasyAntiCheat;EasyAntiCheat;C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [2018-3-18 774312]
S3 embeddedmode;Embedded Mode;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2018-4-11 51288]
S3 EntAppSvc;Enterprise App Management Service;C:\WINDOWS\System32\svchost.exe -k appmodel -p [2018-4-11 51288]
S3 EQU8_tabg;EQU8_tabg;G:\Steam\steamapps\common\TotallyAccurateBattlegrounds\TotallyAccurateBattlegrounds_Data\Plugins\agent.x64.equ8.exe [2018-7-4 3444216]
S3 FrameServer;Windows Camera Frame Server;C:\WINDOWS\System32\svchost.exe -k Camera [2018-4-11 51288]
S3 genericusbfn;Generic USB Function Class;C:\WINDOWS\System32\drivers\genericusbfn.sys [2018-4-11 20992]
S3 GPU-Z;GPU-Z;C:\Users\squis\AppData\Local\Temp\GPU-Z.sys [2018-7-23 27008]
S3 GraphicsPerfSvc;GraphicsPerfSvc;C:\WINDOWS\System32\svchost.exe -k GraphicsPerfSvcGroup [2018-4-11 51288]
S3 hidinterrupt;Common Driver for HID Buttons implemented with interrupts;C:\WINDOWS\System32\drivers\hidinterrupt.sys [2018-4-11 50592]
S3 HvHost;HV Host Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2018-4-11 51288]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver;C:\WINDOWS\System32\drivers\mshwnclx.sys [2018-4-11 27136]
S3 I2cHkBurn;I2cHkBurn;C:\WINDOWS\System32\drivers\I2cHkBurn.sys [2017-5-8 41760]
S3 iagpio;Intel Serial IO GPIO Controller Driver;C:\WINDOWS\System32\drivers\iagpio.sys [2018-4-11 36864]
S3 iai2c;Intel(R) Serial IO I2C Host Controller;C:\WINDOWS\System32\drivers\iai2c.sys [2018-4-11 91648]
S3 iaLPSS2i_GPIO2;Intel(R) Serial IO GPIO Driver v2;C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2018-4-11 79360]
S3 iaLPSS2i_GPIO2_BXT_P;Intel(R) Serial IO GPIO Driver v2;C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2018-4-11 88576]
S3 iaLPSS2i_I2C;Intel(R) Serial IO I2C Driver v2;C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2018-4-11 171520]
S3 iaLPSS2i_I2C_BXT_P;Intel(R) Serial IO I2C Driver v2;C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2018-4-11 174592]
S3 iaLPSSi_GPIO;Intel(R) Serial IO GPIO Controller Driver;C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [2018-4-11 38128]
S3 iaLPSSi_I2C;Intel(R) Serial IO I2C Controller Driver;C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [2018-4-11 113152]
S3 iaStorAVC;Intel Chipset SATA RAID Controller;C:\WINDOWS\System32\drivers\iaStorAVC.sys [2018-4-11 885144]
S3 ibbus;Mellanox InfiniBand Bus/AL (Filter Driver);C:\WINDOWS\System32\drivers\ibbus.sys [2018-4-11 526232]
S3 icssvc;Windows Mobile Hotspot Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2018-4-11 51288]
S3 IndirectKmd;Indirect Displays Kernel-Mode Driver;C:\WINDOWS\System32\drivers\IndirectKmd.sys [2018-4-11 38912]
S3 InstallService;Microsoft Store Install Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
S3 IPT;IPT;C:\WINDOWS\System32\drivers\ipt.sys [2018-4-11 32256]
S3 IpxlatCfgSvc;IP Translation Configuration Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2018-4-11 51288]
S3 ItSas35i;ItSas35i;C:\WINDOWS\System32\drivers\ItSas35i.sys [2018-4-11 145816]
S3 LSI_SAS2i;LSI_SAS2i;C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2018-4-11 124312]
S3 LSI_SAS3i;LSI_SAS3i;C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2018-4-11 128408]
S3 lvrs64;Logitech RightSound Filter Driver;C:\WINDOWS\System32\drivers\lvrs64.sys [2012-10-26 351520]
S3 LVUVC64;@oem49.inf,%PID_082D_DD%(UVC);Logitech HD Pro Webcam C920(UVC);C:\WINDOWS\System32\drivers\lvuvc64.sys [2012-10-26 4758176]
S3 LxpSvc;Language Experience Service;C:\WINDOWS\System32\svchost.exe -k netsvcs [2018-4-11 51288]
S3 mausbhost;MA-USB Host Controller Driver;C:\WINDOWS\System32\drivers\mausbhost.sys [2018-4-11 505240]
S3 mausbip;MA-USB IP Filter Driver;C:\WINDOWS\System32\drivers\mausbip.sys [2018-4-11 56736]
S3 megasas2i;megasas2i;C:\WINDOWS\System32\drivers\MegaSas2i.sys [2018-4-11 75160]
S3 megasas35i;megasas35i;C:\WINDOWS\System32\drivers\megasas35i.sys [2018-4-11 82328]
S3 MessagingService_4c36fd3;MessagingService_4c36fd3;C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup [2018-4-11 51288]
S3 mlx4_bus;Mellanox ConnectX Bus Enumerator;C:\WINDOWS\System32\drivers\mlx4_bus.sys [2018-4-11 842648]
S3 NaturalAuthentication;Natural Authentication;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
S3 ndfltr;NetworkDirect Service;C:\WINDOWS\System32\drivers\ndfltr.sys [2018-4-11 108952]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library;C:\WINDOWS\System32\drivers\NetAdapterCx.sys [2018-4-11 175104]
S3 NetSetupSvc;Network Setup Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
S3 netvsc;netvsc;C:\WINDOWS\System32\drivers\netvsc.sys [2018-4-11 197632]
S3 NgcCtnrSvc;Microsoft Passport Container;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2018-4-11 51288]
S3 NgcSvc;Microsoft Passport;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2018-4-11 51288]
S3 NvContainerNetworkService;NVIDIA NetworkService Container;C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-7-25 764456]
S3 nvdimm;Microsoft NVDIMM device driver;C:\WINDOWS\System32\drivers\nvdimm.sys [2018-4-11 104448]
S3 NvStreamKms;NVIDIA KMS;C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2018-7-29 30656]
S3 Origin Client Service;Origin Client Service;C:\Program Files (x86)\Origin\OriginClientService.exe [2017-10-4 2120032]
S3 percsas2i;percsas2i;C:\WINDOWS\System32\drivers\percsas2i.sys [2018-4-11 58776]
S3 percsas3i;percsas3i;C:\WINDOWS\System32\drivers\percsas3i.sys [2018-4-11 61848]
S3 PhoneSvc;Phone Service;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2018-4-11 51288]
S3 PNPMEM;Microsoft Memory Module Driver;C:\WINDOWS\System32\drivers\pnpmem.sys [2018-4-11 16896]
S3 PrintWorkflowUserSvc_4c36fd3;PrintWorkflow_4c36fd3;C:\WINDOWS\System32\svchost.exe -k PrintWorkflow [2018-4-11 51288]
S3 PushToInstall;Windows PushToInstall Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
S3 Ramdisk;Windows RAM Disk Driver;C:\WINDOWS\System32\drivers\ramdisk.sys [2018-4-11 39840]
S3 ReFS;ReFS;C:\WINDOWS\System32\drivers\refs.sys [2018-7-10 1921944]
S3 ReFSv1;ReFSv1;C:\WINDOWS\System32\drivers\refsv1.sys [2018-7-10 945568]
S3 RetailDemo;Retail Demo Service;C:\WINDOWS\System32\svchost.exe -k rdxgroup [2018-4-11 51288]
S3 rhproxy;Resource Hub proxy driver;C:\WINDOWS\System32\drivers\rhproxy.sys [2018-4-11 104448]
S3 ScDeviceEnum;Smart Card Device Enumeration Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted [2018-4-11 51288]
S3 scmbus;Microsoft Storage Class Memory Bus Driver;C:\WINDOWS\System32\drivers\scmbus.sys [2018-4-11 128416]
S3 SDFRd;SDF Reflector;C:\WINDOWS\System32\drivers\SDFRd.sys [2018-4-11 33176]
S3 SEMgrSvc;Payments and NFC/SE Manager;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2018-4-11 51288]
S3 Sense;Windows Defender Advanced Threat Protection Service;C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2018-4-11 4737448]
S3 SensorDataService;Sensor Data Service;C:\WINDOWS\System32\SensorDataService.exe [2018-4-11 1273344]
S3 SensorService;Sensor Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2018-4-11 51288]
S3 SerCx2;Serial UART Support Library;C:\WINDOWS\System32\drivers\SerCx2.sys [2018-4-11 154528]
S3 SharedRealitySvc;Spatial Data Service;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2018-4-11 51288]
S3 smphost;Microsoft Storage Spaces SMP;C:\WINDOWS\System32\svchost.exe -k smphost [2018-4-11 51288]
S3 SmsRouter;Microsoft Windows SMS Router Service.;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2018-4-11 51288]
S3 SpatialGraphFilter;Holographic Spatial Graph Filter;C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [2018-4-11 57752]
S3 spectrum;Windows Perception Service;C:\WINDOWS\System32\Spectrum.exe [2018-6-13 976384]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);C:\WINDOWS\System32\drivers\ssudmdm.sys [2017-5-18 166288]
S3 stornvme;Microsoft Standard NVM Express Driver;C:\WINDOWS\System32\drivers\stornvme.sys [2018-6-10 105368]
S3 storufs;Microsoft Universal Flash Storage (UFS) Driver;C:\WINDOWS\System32\drivers\storufs.sys [2018-7-10 48544]
S3 TieringEngineService;Storage Tiers Management;C:\WINDOWS\System32\TieringEngineService.exe [2018-4-11 303616]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension;C:\WINDOWS\System32\drivers\UcmCx.sys [2018-4-11 128512]
S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension;C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [2018-4-11 152576]
S3 UcmUcsi;USB Connector Manager UCSI Client;C:\WINDOWS\System32\drivers\UcmUcsi.sys [2018-4-11 57856]
S3 UdeCx;USB Device Emulation Support Library;C:\WINDOWS\System32\drivers\Udecx.sys [2018-4-11 45056]
S3 Ufx01000;USB Function Class Extension;C:\WINDOWS\System32\drivers\ufx01000.sys [2018-4-11 282008]
S3 UfxChipidea;USB Chipidea Controller;C:\WINDOWS\System32\drivers\UfxChipidea.sys [2018-4-11 98200]
S3 ufxsynopsys;USB Synopsys Controller;C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2018-4-11 144288]
S3 UrsChipidea;Chipidea USB Role-Switch Driver;C:\WINDOWS\System32\drivers\urschipidea.sys [2018-4-11 29088]
S3 UrsCx01000;USB Role-Switch Support Library;C:\WINDOWS\System32\drivers\urscx01000.sys [2018-4-11 67992]
S3 UrsSynopsys;Synopsys USB Role-Switch Driver;C:\WINDOWS\System32\drivers\urssynopsys.sys [2018-4-11 28064]
S3 VacSvc;Volumetric Audio Compositor Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2018-4-11 51288]
S3 vhf;Virtual HID Framework (VHF) Driver;C:\WINDOWS\System32\drivers\vhf.sys [2018-4-11 35328]
S3 vmgid;Microsoft Hyper-V Guest Infrastructure Driver;C:\WINDOWS\System32\drivers\vmgid.sys [2018-4-11 10240]
S3 vmicguestinterface;Hyper-V Guest Service Interface;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2018-4-11 51288]
S3 vmicvmsession;Hyper-V PowerShell Direct Service;C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p [2018-4-11 51288]
S3 WalletService;WalletService;C:\WINDOWS\System32\svchost.exe -k appmodel -p [2018-4-11 51288]
S3 WarpJITSvc;WarpJITSvc;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted [2018-4-11 51288]
S3 wcnfs;Windows Container Name Virtualization;C:\WINDOWS\System32\drivers\wcnfs.sys [2018-4-11 82944]
S3 wdiwifi;WDI Driver Framework;C:\WINDOWS\System32\drivers\WdiWiFi.sys [2018-6-13 781824]
S3 WdmCompanionFilter;WdmCompanionFilter;C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [2018-4-11 21408]
S3 WEPHOSTSVC;Windows Encryption Provider Host Service;C:\WINDOWS\System32\svchost.exe -k WepHostSvcGroup [2018-4-11 51288]
S3 WFDSConMgrSvc;Wi-Fi Direct Services Connection Manager Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2018-4-11 51288]
S3 WinMad;WinMad Service;C:\WINDOWS\System32\drivers\winmad.sys [2018-4-11 32152]
S3 WinNat;Windows NAT Driver;C:\WINDOWS\System32\drivers\winnat.sys [2018-4-11 227840]
S3 WinVerbs;WinVerbs Service;C:\WINDOWS\System32\drivers\winverbs.sys [2018-4-11 64920]
S3 wisvc;Windows Insider Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
S3 wlpasvc;Local Profile Assistant Service;C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [2018-4-11 51288]
S3 workfolderssvc;Work Folders;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2018-4-11 51288]
S3 WpcMonSvc;Parental Controls;C:\WINDOWS\System32\svchost.exe -k LocalService [2018-4-11 51288]
S3 WUDFWpdMtp;WUDFWpdMtp;C:\WINDOWS\System32\drivers\WUDFRd.sys [2018-4-11 264192]
S3 xbgm;Xbox Game Monitoring;C:\WINDOWS\System32\xbgmsvc.exe [2018-4-11 59512]
S3 XblAuthManager;Xbox Live Auth Manager;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
S3 XblGameSave;Xbox Live Game Save;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
S3 xboxgip;Xbox Game Input Protocol Driver;C:\WINDOWS\System32\drivers\xboxgip.sys [2018-7-10 295424]
S3 XboxGipSvc;Xbox Accessory Management Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
S3 XboxNetApiSvc;Xbox Live Networking Service;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
S3 xinputhid;XINPUT HID Filter Driver;C:\WINDOWS\System32\drivers\xinputhid.sys [2018-4-11 46592]
S4 AppVClient;Microsoft App-V Client;C:\WINDOWS\System32\AppVClient.exe [2018-6-10 826776]
S4 hvcrash;hvcrash;C:\WINDOWS\System32\drivers\hvcrash.sys [2018-4-11 33184]
S4 shpamsvc;Shared PC Account Manager;C:\WINDOWS\System32\svchost.exe -k netsvcs -p [2018-4-11 51288]
S4 ssh-agent;OpenSSH Authentication Agent;C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [2018-4-12 495616]
S4 tzautoupdate;Auto Time Zone Updater;C:\WINDOWS\System32\svchost.exe -k LocalService -p [2018-4-11 51288]
S4 UevAgentDriver;UevAgentDriver;C:\WINDOWS\System32\drivers\UevAgentDriver.sys [2018-4-11 40344]
S4 UevAgentService;User Experience Virtualization Service;C:\WINDOWS\System32\AgentService.exe [2018-4-11 1189376]
.
=============== File Associations ===============
.
FileExt: .txt: Applications\WINWORD.EXE="C:\Program Files (x86)\Microsoft Office\root\Office16\Winword.exe" /n "%1" [UserChoice] [default=edit - 'Open' doesn't exist]
ShellExec: MuseScore2.exe: open="C:\Program Files (x86)\MuseScore 2\bin\MuseScore.exe" "%1"
.
=============== Created Last 30 ================
.
2018-08-01 21:46:24 14834152 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{08CB0D6E-D16D-414E-8C2A-A876FD1D4396}\mpengine.dll
2018-07-31 22:13:01 14834152 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2018-07-29 05:40:56 -------- d-----w- C:\Users\squis\AppData\Roaming\NVIDIA
2018-07-29 03:28:06 -------- d-----w- C:\Users\squis\AppData\Local\NVIDIA
2018-07-28 06:31:01 -------- d-----w- C:\AdwCleaner
2018-07-27 00:12:39 102632 ----a-w- C:\WINDOWS\System32\drivers\mwac.sys
2018-07-26 02:58:08 -------- d-----w- C:\WINDOWS\Microsoft Antimalware
2018-07-26 00:21:11 -------- d-----w- C:\Users\squis\AppData\Local\NVIDIA Corporation
2018-07-26 00:17:26 2340392 ----a-w- C:\WINDOWS\System32\nvspcap64.dll
2018-07-26 00:17:26 1936424 ----a-w- C:\WINDOWS\SysWow64\nvspcap.dll
2018-07-26 00:17:26 1311784 ----a-w- C:\WINDOWS\System32\NvRtmpStreamer64.dll
2018-07-26 00:16:48 132392 ----a-w- C:\WINDOWS\SysWow64\nvStreaming.exe
2018-07-26 00:16:43 206760 ----a-w- C:\WINDOWS\System32\nvaudcap64v.dll
2018-07-26 00:16:43 185256 ----a-w- C:\WINDOWS\SysWow64\nvaudcap32v.dll
2018-07-26 00:16:42 1951 ----a-w- C:\WINDOWS\NvTelemetryContainerRecovery.bat
2018-07-26 00:16:41 -------- d-----w- C:\Program Files (x86)\VulkanRT
2018-07-26 00:16:16 -------- d-----w- C:\WINDOWS\System32\drivers\NVIDIA Corporation\Drs
2018-07-26 00:16:16 -------- d-----w- C:\WINDOWS\System32\drivers\NVIDIA Corporation
2018-07-26 00:10:45 83240 ----a-w- C:\WINDOWS\System32\nv3dappshextr.dll
2018-07-26 00:10:45 8186102 ----a-w- C:\WINDOWS\System32\nvcoproc.bin
2018-07-26 00:10:45 633984 ----a-w- C:\WINDOWS\System32\nv3dappshext.dll
2018-07-26 00:10:45 5947328 ----a-w- C:\WINDOWS\System32\nvcpl.dll
2018-07-26 00:10:45 450960 ----a-w- C:\WINDOWS\System32\nvmctray.dll
2018-07-26 00:10:45 2612520 ----a-w- C:\WINDOWS\System32\nvsvc64.dll
2018-07-26 00:10:45 1767360 ----a-w- C:\WINDOWS\System32\nvsvcr.dll
2018-07-26 00:10:45 124200 ----a-w- C:\WINDOWS\System32\nvshext.dll
2018-07-26 00:10:35 1951 ----a-w- C:\WINDOWS\NvContainerRecovery.bat
2018-07-26 00:10:33 552480 ----a-w- C:\WINDOWS\System32\OpenCL.dll
2018-07-26 00:10:33 456608 ----a-w- C:\WINDOWS\SysWow64\OpenCL.dll
2018-07-26 00:10:18 -------- d-----w- C:\Program Files (x86)\NVIDIA Corporation
2018-07-25 23:20:26 -------- d-----w- C:\Users\squis\AppData\Local\PackageStaging
2018-07-25 23:10:30 -------- d-----w- C:\Program Files\Speccy
2018-07-25 22:57:04 95136 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Offline Scanner\MsMpCom.dll
2018-07-25 22:57:04 95128 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Offline Scanner\MpAsDesc.dll
2018-07-25 22:57:04 468888 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Offline Scanner\OfflineScannerShell.exe
2018-07-25 22:57:04 455656 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Offline Scanner\MpCmdRun.exe
2018-07-25 22:57:04 444832 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Offline Scanner\MsMpRes.dll
2018-07-25 22:57:04 391576 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Offline Scanner\MpCommu.dll
2018-07-25 22:57:04 3284888 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Offline Scanner\MpSvc.dll
2018-07-25 22:57:04 156056 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Offline Scanner\EppManifest.dll
2018-07-25 22:57:04 14232 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Offline Scanner\MsMpLics.dll
2018-07-25 22:57:04 1283480 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Offline Scanner\MsAsCui.exe
2018-07-25 22:57:04 105344 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Offline Scanner\MsMpEng.exe
2018-07-25 22:57:04 1034648 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Offline Scanner\MpClient.dll
2018-07-24 04:46:30 -------- d-----w- C:\Users\squis\AppData\Local\Sex_Simulator
2018-07-22 18:51:04 471120 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE16\LICLUA.EXE
2018-07-22 18:50:04 31312 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE16\Office Setup Controller\pkeyconfig.companion.dll
2018-07-22 18:36:58 213584 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
2018-07-22 16:14:54 84736 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\HostSideAdapters\Microsoft.VisualStudio.Tools.Office.Word.HostAdapter.v10.0.dll
2018-07-22 16:14:54 78592 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\HostSideAdapters\Microsoft.VisualStudio.Tools.Office.Excel.HostAdapter.v10.0.dll
2018-07-22 16:14:54 64240 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\HostSideAdapters\Microsoft.VisualStudio.Tools.Office.HostAdapter.v10.0.dll
2018-07-22 16:14:54 42248 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\HostSideAdapters\Microsoft.VisualStudio.Tools.Office.Outlook.HostAdapter.v10.0.dll
2018-07-22 16:14:54 42240 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\AddInSideAdapters\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v10.0.dll
2018-07-22 16:14:54 36096 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\HostSideAdapters\Microsoft.VisualStudio.Tools.Applications.HostAdapter.v10.0.dll
2018-07-22 16:14:54 36088 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\AddInViews\Microsoft.VisualStudio.Tools.Applications.Runtime.v10.0.dll
2018-07-22 16:14:54 25336 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\Contracts\Microsoft.VisualStudio.Tools.Applications.Contract.v10.0.dll
2018-07-22 16:14:54 24816 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\Contracts\Microsoft.VisualStudio.Tools.Office.Contract.v10.0.dll
2018-07-22 13:38:48 82592 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\VSTOInstaller.exe
2018-07-22 13:38:48 49832 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\VSTOMessageProvider.dll
2018-07-22 13:38:48 269976 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
2018-07-22 13:38:48 19104 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
2018-07-22 13:38:48 117904 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\vstoee.dll
2018-07-22 13:38:48 10912 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOInstallerUI.dll
2018-07-19 06:11:32 -------- d-----w- C:\Users\squis\AppData\Local\Logitech
2018-07-19 06:09:51 18960 ----a-w- C:\WINDOWS\System32\drivers\LNonPnP.sys
2018-07-19 06:09:13 -------- d-----w- C:\Program Files\Logitech Gaming Software
2018-07-19 06:08:32 -------- d-----w- C:\Users\squis\AppData\Roaming\Logishrd
2018-07-18 02:02:40 -------- d-----w- C:\Users\squis\AppData\Local\MEGAsync
2018-07-14 19:49:47 -------- d-----w- C:\Users\squis\AppData\Roaming\mkxp
2018-07-14 19:49:47 -------- d-----w- C:\Users\squis\AppData\Roaming\dingaling
2018-07-08 07:06:30 48360 ----a-w- C:\WINDOWS\System32\drivers\mbam.sys
2018-07-08 07:06:27 191208 ----a-w- C:\WINDOWS\System32\drivers\MbamChameleon.sys
2018-07-08 07:06:27 114920 ----a-w- C:\WINDOWS\System32\drivers\farflt.sys
.
==================== Find3M ====================
.
2018-07-31 22:02:53 253664 ----a-w- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
2018-07-31 04:47:44 61992 ----a-w- C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys
2018-07-31 04:47:44 46584 ----a-w- C:\WINDOWS\System32\drivers\wd\WdBoot.sys
2018-07-31 04:47:44 340008 ----a-w- C:\WINDOWS\System32\drivers\wd\WdFilter.sys
2018-07-17 08:17:46 152688 ----a-w- C:\WINDOWS\System32\drivers\mbae64.sys
2018-07-16 23:15:46 563832 ------w- C:\WINDOWS\System32\MpSigStub.exe
2018-07-06 14:20:55 792472 ----a-w- C:\WINDOWS\System32\generaltel.dll
2018-07-06 14:20:50 1610648 ----a-w- C:\WINDOWS\System32\appraiser.dll
2018-07-06 14:20:49 2868640 ----a-w- C:\WINDOWS\System32\aitstatic.exe
2018-07-06 14:20:45 689560 ----a-w- C:\WINDOWS\System32\aeinv.dll
2018-07-06 14:20:45 451992 ----a-w- C:\WINDOWS\System32\invagent.dll
2018-07-06 14:20:44 612248 ----a-w- C:\WINDOWS\System32\devinv.dll
2018-07-06 14:20:44 309664 ----a-w- C:\WINDOWS\System32\acmigration.dll
2018-07-06 14:20:43 70040 ----a-w- C:\WINDOWS\System32\win32appinventorycsp.dll
2018-07-06 14:20:43 144792 ----a-w- C:\WINDOWS\System32\CompatTelRunner.exe
2018-07-06 14:17:10 3932672 ----a-w- C:\WINDOWS\explorer.exe
2018-07-06 14:15:25 2266520 ----a-w- C:\WINDOWS\System32\AppVEntSubsystems64.dll
2018-07-06 14:14:29 541592 ----a-w- C:\WINDOWS\System32\pcasvc.dll
2018-07-06 13:56:43 4708864 ----a-w- C:\WINDOWS\System32\twinui.pcshell.dll
2018-07-06 13:53:56 386048 ----a-w- C:\WINDOWS\System32\zipfldr.dll
2018-07-06 13:53:52 409088 ----a-w- C:\WINDOWS\System32\SettingsEnvironment.Desktop.dll
2018-07-06 13:53:16 340992 ----a-w- C:\WINDOWS\System32\AcGenral.dll
2018-07-06 13:53:00 672768 ----a-w- C:\WINDOWS\System32\gpprefcl.dll
2018-07-06 13:52:59 677376 ----a-w- C:\WINDOWS\System32\winlogon.exe
2018-07-06 13:52:15 1787392 ----a-w- C:\WINDOWS\System32\wsp_health.dll
2018-07-06 13:51:57 2051584 ----a-w- C:\WINDOWS\System32\wsp_fs.dll
2018-07-06 13:51:35 3652608 ----a-w- C:\WINDOWS\System32\win32kfull.sys
2018-07-06 13:51:20 1364992 ----a-w- C:\WINDOWS\System32\bcastdvruserservice.dll
2018-07-06 13:51:10 1004032 ----a-w- C:\WINDOWS\System32\clusapi.dll
2018-07-06 13:50:59 615424 ----a-w- C:\WINDOWS\System32\resutils.dll
2018-07-06 13:49:37 91136 ----a-w- C:\WINDOWS\System32\mcbuilder.exe
2018-07-06 12:12:31 1539000 ----a-w- C:\WINDOWS\SysWow64\AppVEntSubsystems32.dll
2018-07-06 12:06:44 3611368 ----a-w- C:\WINDOWS\SysWow64\explorer.exe
2018-07-06 11:54:36 485376 ----a-w- C:\WINDOWS\SysWow64\resutils.dll
2018-07-06 11:53:54 565248 ----a-w- C:\WINDOWS\SysWow64\gpprefcl.dll
2018-07-06 11:53:40 775168 ----a-w- C:\WINDOWS\SysWow64\clusapi.dll
2018-07-06 11:53:11 347136 ----a-w- C:\WINDOWS\SysWow64\zipfldr.dll
2018-07-06 11:52:47 1308160 ----a-w- C:\WINDOWS\SysWow64\wsp_health.dll
2018-07-06 11:52:34 1452544 ----a-w- C:\WINDOWS\SysWow64\wsp_fs.dll
2018-07-06 11:52:25 2895360 ----a-w- C:\WINDOWS\SysWow64\win32kfull.sys
2018-07-06 11:51:26 2401280 ----a-w- C:\WINDOWS\SysWow64\AcGenral.dll
2018-07-06 11:51:10 80384 ----a-w- C:\WINDOWS\SysWow64\mcbuilder.exe
2018-07-06 11:26:02 19525120 ----a-w- C:\WINDOWS\System32\HologramCompositor.dll
2018-07-06 11:25:19 23863296 ----a-w- C:\WINDOWS\System32\Hydrogen.dll
2018-07-06 11:01:54 1008640 ----a-w- C:\WINDOWS\System32\Windows.Media.MixedRealityCapture.dll
2018-07-06 07:32:09 480672 ----a-w- C:\WINDOWS\System32\dcntel.dll
2018-07-06 07:31:58 462752 ----a-w- C:\WINDOWS\System32\aepic.dll
2018-07-06 07:31:57 35232 ----a-w- C:\WINDOWS\System32\DeviceCensus.exe
2018-07-06 07:29:56 272296 ----a-w- C:\WINDOWS\System32\SgrmEnclave.dll
2018-07-06 07:29:55 269224 ----a-w- C:\WINDOWS\System32\SgrmEnclave_secure.dll
2018-07-06 07:27:29 1174432 ----a-w- C:\WINDOWS\System32\hvix64.exe
2018-07-06 07:27:27 567176 ----a-w- C:\WINDOWS\System32\tcblaunch.exe
2018-07-06 07:27:27 1063320 ----a-w- C:\WINDOWS\System32\SecConfig.efi
2018-07-06 07:27:27 1012632 ----a-w- C:\WINDOWS\System32\hvax64.exe
2018-07-06 07:27:19 57440 ----a-w- C:\WINDOWS\System32\Windows.Internal.ShellCommon.Broker.dll
2018-07-06 07:27:15 134552 ----a-w- C:\WINDOWS\System32\hvloader.dll
2018-07-06 07:27:00 709824 ----a-w- C:\WINDOWS\System32\drivers\cng.sys
2018-07-06 07:26:26 2712992 ----a-w- C:\WINDOWS\System32\drivers\tcpip.sys
2018-07-06 07:26:19 930720 ----a-w- C:\WINDOWS\System32\WWAHost.exe
2018-07-06 07:26:15 170912 ----a-w- C:\WINDOWS\System32\drivers\ksecpkg.sys
2018-07-06 07:26:01 1148800 ----a-w- C:\WINDOWS\System32\mfsvr.dll
2018-07-06 07:25:59 2420632 ----a-w- C:\WINDOWS\System32\drivers\ntfs.sys
2018-07-06 07:25:54 2571728 ----a-w- C:\WINDOWS\System32\KernelBase.dll
2018-07-06 07:25:51 1945784 ----a-w- C:\WINDOWS\System32\ntdll.dll
2018-07-06 07:25:50 267680 ----a-w- C:\WINDOWS\System32\browserbroker.dll
2018-07-06 07:25:48 335776 ----a-w- C:\WINDOWS\System32\moshostcore.dll
2018-07-06 07:25:47 885856 ----a-w- C:\WINDOWS\System32\CoreMessaging.dll
2018-07-06 07:25:45 9147808 ----a-w- C:\WINDOWS\System32\ntoskrnl.exe
2018-07-06 07:25:38 483048 ----a-w- C:\WINDOWS\System32\ucrtbase_enclave.dll
2018-07-06 07:25:38 1018616 ----a-w- C:\WINDOWS\System32\ucrtbase.dll
2018-07-06 07:25:37 139672 ----a-w- C:\WINDOWS\System32\drivers\ksecdd.sys
2018-07-06 07:25:33 1026464 ----a-w- C:\WINDOWS\System32\drivers\http.sys
2018-07-06 07:24:39 380824 ----a-w- C:\WINDOWS\SysWow64\aepic.dll
2018-07-06 07:16:47 567144 ----a-w- C:\WINDOWS\SysWow64\CoreMessaging.dll
2018-07-06 07:14:28 1981896 ----a-w- C:\WINDOWS\SysWow64\KernelBase.dll
2018-07-06 07:14:19 829856 ----a-w- C:\WINDOWS\SysWow64\WWAHost.exe
2018-07-06 07:14:09 988640 ----a-w- C:\WINDOWS\SysWow64\mfsvr.dll
2018-07-06 07:14:09 1175568 ----a-w- C:\WINDOWS\SysWow64\ucrtbase.dll
2018-07-06 07:13:57 1620872 ----a-w- C:\WINDOWS\SysWow64\ntdll.dll
2018-07-06 07:10:15 25845760 ----a-w- C:\WINDOWS\System32\edgehtml.dll
2018-07-06 07:07:07 22006272 ----a-w- C:\WINDOWS\SysWow64\edgehtml.dll
2018-07-06 07:03:04 4371456 ----a-w- C:\WINDOWS\System32\EdgeContent.dll
2018-07-06 07:02:46 9084928 ----a-w- C:\WINDOWS\System32\BingMaps.dll
2018-07-06 07:01:56 7057408 ----a-w- C:\WINDOWS\System32\mos.dll
2018-07-06 07:01:23 5883904 ----a-w- C:\WINDOWS\SysWow64\mos.dll
2018-07-06 07:01:13 14848 ----a-w- C:\WINDOWS\System32\MapsBtSvcProxy.dll
2018-07-06 07:01:01 104448 ----a-w- C:\WINDOWS\System32\NotificationControllerPS.dll
2018-07-06 07:00:53 94720 ----a-w- C:\WINDOWS\System32\MapsCSP.dll
2018-07-06 07:00:41 29696 ----a-w- C:\WINDOWS\System32\MapsTelemetry.dll
2018-07-06 07:00:32 92672 ----a-w- C:\WINDOWS\System32\MosHostClient.dll
2018-07-06 07:00:22 18944 ----a-w- C:\WINDOWS\System32\nativemap.dll
2018-07-06 07:00:04 151040 ----a-w- C:\WINDOWS\System32\MapsBtSvc.dll
2018-07-06 07:00:03 53248 ----a-w- C:\WINDOWS\System32\mapstoasttask.dll
2018-07-06 06:59:58 41984 ----a-w- C:\WINDOWS\System32\mapsupdatetask.dll
2018-07-06 06:59:57 86528 ----a-w- C:\WINDOWS\System32\MosStorage.dll
2018-07-06 06:59:46 3381248 ----a-w- C:\WINDOWS\System32\MapRouter.dll
2018-07-06 06:59:39 453632 ----a-w- C:\WINDOWS\System32\cloudAP.dll
2018-07-06 06:59:35 48128 ----a-w- C:\WINDOWS\System32\tokenbinding.dll
2018-07-06 06:59:23 200192 ----a-w- C:\WINDOWS\System32\SettingsHandlers_Geolocation.dll
2018-07-06 06:59:22 334336 ----a-w- C:\WINDOWS\System32\NmaDirect.dll
.
============= FINISH: 19:18:10.73 ===============

Attached Files
File Type: txt attach.txt (18.7 KB)

Viewing all articles
Browse latest Browse all 2798

Trending Articles