Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Intercorporate spying suspicion (hijackthis report)


  • This topic is locked This topic is locked
7 replies to this topic

#1 aaaaron

aaaaron

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:06:26 AM

Posted 06 December 2013 - 10:53 AM

Hi All,

 

I am working in a very competetive selling environment. The market is though and full of unethical behaviour. I had this suspicion if someone spying on my computer via a backdoor or something else. Today strangest thing happened and one of my competitors added my father on skype :) The thing is he is added only on my skype account because he only uses it to contact me when i am abroad. We dont share the same surname and for some reason when he was registering for the skype account he selected another country. There is nearly 0 chance he might show up on casual skype search because his skype name has no relation or similarity to any other. (just some random words). I have heard some companies use trojans and etc to extract customer contacts from other companies. So there is a pattern this guy added him up thinking that he is one of my customers on skye.

 

Additional information : My skype password is a combination of lots of strange symbols, points , dashes so I dont think they could hack into it directly. I am a very discreet person never leave computer unattended, even people who are supposed to know some of my passowrds (this includes management) dont know any of it.

 

ps. I have confronted this person and asked where did he find a skype address that only I know about. His reply was "It is coincidence, i was searching for "brand name" related skype addresses and it showed up" . I call this bull***.

 

Please check the following hijack this report and help me with this. It is eating me alive.

 

I am using win8

 

THANKS IN ADVANCE!!

 

 

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 5:08:16 PM, on 12/6/2013
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.16384)

FIREFOX: 25.0.1 (en-US)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Intel\irstrt\RapidStartConfig.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE
C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Aaron \AppData\Local\AOL\AIM\aim.exe
C:\Users\Aaron \Desktop\OneStock\OneStock.exe
C:\WINDOWS\sysWow64\SearchProtocolHost.exe
C:\Users\Aaron \Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT13/1
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPNOT13/1
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (file missing)
O4 - HKLM\..\Run: [BtTray] "C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
O4 - HKLM\..\Run: [HP CoolSense] C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe -byrunkey
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [AIM for Windows] "C:\Users\Aaron \AppData\Local\AOL\AIM\aim.exe"
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_11_9_900_117_Plugin.exe -update plugin
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (file missing)
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem16.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel® Capability Licensing Service Interface - Intel® Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel® ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel® Rapid Start Technology Service (irstrtsv) - Intel Corporation - C:\Windows\SysWOW64\irstrtsv.exe
O23 - Service: Intel® Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12458 bytes
 



BC AdBot (Login to Remove)

 


#2 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,660 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:26 AM

Posted 11 December 2013 - 10:55 AM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

step1.gif In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/516594 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

step2.gifIf you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new DDS log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download DDS by sUBs from the following link if you no longer have it available and save it to your destop.

    DDS.com Download Link
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explanation about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control can be found HERE.

As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#3 Elise

Elise

    Bleepin' Blonde


  • Malware Study Hall Admin
  • 61,076 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Romania
  • Local time:07:26 AM

Posted 16 December 2013 - 10:25 AM

Hello,

If you still need help, please post the requested logs.


regards, Elise


"Now faith is the substance of things hoped for, the evidence of things not seen."

 

Follow BleepingComputer on: Facebook | Twitter | Google+ | lockerdome

 

Malware analyst @ Emsisoft


#4 aaaaron

aaaaron
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:06:26 AM

Posted 16 December 2013 - 02:54 PM

DDS does not run. It says it isnt meant to operate in compatibility mode. Win8. 



#5 Elise

Elise

    Bleepin' Blonde


  • Malware Study Hall Admin
  • 61,076 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Romania
  • Local time:07:26 AM

Posted 16 December 2013 - 04:17 PM

I'd like you to run an alternative tool which is currently under development. The tool is perfectly safe and is non-invasive, but as it is not yet officially released, please only run this if you are comfortable with it (the worst thing that could happen is the tool crashes and tells you it encountered an error).

 

If you would like to go ahead with this, please download Instalog and save it to your desktop. Right click the file and select  Run as Administrator (important, if you don't do that the tool will not run correctly.

 

When it is finished press a key to exit and post me the log you will find on your desktop (instalog.txt)


regards, Elise


"Now faith is the substance of things hoped for, the evidence of things not seen."

 

Follow BleepingComputer on: Facebook | Twitter | Google+ | lockerdome

 

Malware analyst @ Emsisoft


#6 aaaaron

aaaaron
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:06:26 AM

Posted 16 December 2013 - 07:49 PM

Elise, thanks here's the log;

 

IE: 11.0.9600.16476 Java: Not Installed Flash: 11.9.900.170
Windows 8.1 UNKNOWN EDITION (GetProductInfo -> 0x00000064) x64 6.3.9600.0 2521/4096 MB Free
 
================ Running Processes ===============
 
C:\Windows\System32\Smss.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\Windows\System32\Nvvsvc.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Program files\Idt\Wdm\Stacsv64.exe
C:\Windows\System32\Hpservice.exe
C:\Windows\System32\Spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program files (x86)\Common files\Adobe\Arm\1.0\Armsvc.exe
C:\WINDOWS\system32\svchost.exe -k apphost
C:\Program files\Bonjour\Mdnsresponder.exe
C:\Program files\Comodo\Comodo internet security\Cmdagent.exe
C:\Program files\Intel\Icls client\Heciserver.exe
C:\Windows\Syswow64\Irstrtsv.exe
C:\Program files (x86)\Intel\Intel® management engine components\Dal\Jhi_service.exe
C:\Program files (x86)\Nvidia corporation\Netservice\Nvnetworkservice.exe
C:\Program files\Nvidia corporation\Nvstreamsrv\Nvstreamsvc.exe
C:\Program files (x86)\Ralink corporation\Ralink bluetooth stack\Bshelpcs.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program files (x86)\Realtek\Realtek pcie card reader\Riconman.exe
C:\Program files (x86)\Intel\Intel® management engine components\Fwservice\Intelmefwservice.exe
C:\Program files (x86)\Intel\Intel® management engine components\Lms\Lms.exe
C:\Windows\System32\Searchindexer.exe
C:\Program files (x86)\Intel\Intel® management engine components\Uns\Uns.exe
C:\Program files\Common files\Microsoft shared\Officesoftwareprotectionplatform\Osppsvc.exe
C:\Windows\System32\Winlogon.exe
C:\Windows\System32\Dwm.exe
C:\Program files\Nvidia corporation\Display\Nvxdsync.exe
C:\Windows\System32\Nvvsvc.exe
C:\Program files\Nvidia corporation\Nvstreamsrv\Nvstreamsvc.exe
C:\Windows\System32\Conhost.exe
C:\Windows\System32\Taskhostex.exe
C:\Program files\Synaptics\Syntp\Syntpenh.exe
C:\Program files (x86)\Intel\Irstrt\Rapidstartconfig.exe
C:\Windows\System32\Inputmethod\Chs\Chsime.exe
C:\Windows\Explorer.exe
C:\Program files (x86)\Nvidia corporation\Update core\Nvbackend.exe
C:\Windows\System32\Skydrive.exe
C:\Program files\Nvidia corporation\Display\Nvtray.exe
C:\Program files\Synaptics\Syntp\Syntphelper.exe
C:\Windows\System32\Igfxtray.exe
C:\Windows\System32\Igfxsrvc.exe
C:\Windows\System32\Hkcmd.exe
C:\Windows\System32\Igfxpers.exe
C:\Program files\Idt\Wdm\Sttray64.exe
C:\Program files (x86)\Nvidia corporation\Nvidia update core\Nvtmru.exe
C:\Windows\System32\Settingsynchost.exe
C:\Program files\Comodo\Comodo internet security\Cavwp.exe
C:\Windows\System32\Wwahost.exe
C:\Windows\System32\Runtimebroker.exe
C:\Program files\Comodo\Comodo internet security\Cistray.exe
C:\Program files\Comodo\Comodo internet security\Cis.exe
C:\Windows\System32\Searchprotocolhost.exe
C:\Windows\System32\Searchfilterhost.exe
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
C:\Windows\System32\Wbem\Wmiprvse.exe
C:\Windows\System32\Audiodg.exe
C:\Windows\System32\Dllhost.exe
C:\Windows\System32\Dllhost.exe
C:\Users\Aaron fareast\Downloads\Instalog_0.0.6.0_x64.exe
C:\Windows\System32\Conhost.exe
 
=================== Load Points ==================
 
AV: [{D68DDC3A-831F-4fae-9E44-DA132C1ACF46}] DU Windows Defender
AV: [{B74CC7D2-B407-E1DC-1033-DD315BCDC8C8}] EU COMODO Antivirus
FW: [{8F7746F7-FE68-E084-3B6C-7404A51E8FB3}] EO COMODO Firewall
AS: [{D68DDC3A-831F-4fae-9E44-DA132C1ACF46}] DU Windows Defender
AS: [{0C2D2636-923D-EE52-2A83-E643204A8275}] EU COMODO Antivirus
DefaultPageUrl64: htt#p://g.msn.com/HPNOT13/1
DefaultPageUrl: htt#p://g.msn.com/HPNOT13/1
DefaultSearchUrl64: htt#p://go.microsoft.com/fwlink/?LinkId=54896
DefaultSearchUrl: htt#p://go.microsoft.com/fwlink/?LinkId=54896
LocalPage64: C:\Windows\System32\blank.htm
LocalPage: C:\Windows\System32\blank.htm
StartPage64: htt#p://g.msn.com/HPNOT13/1
StartPage: htt#p://g.msn.com/HPNOT13/1
SearchPage64: htt#p://go.microsoft.com/fwlink/?LinkId=54896
SearchPage: htt#p://go.microsoft.com/fwlink/?LinkId=54896
SecurityPage64: about:SecurityRisk
SecurityPage: about:SecurityRisk
Shell: C:\Windows\Explorer.exe [2328328 2013-09-30 04:05:17]
Userinit: C:\Windows\System32\Userinit.exe [25088 2013-08-22 10:03:16]
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E}=C:\Program files (x86)\Microsoft office\Office14\Grooveex.dll [4222864 2010-01-21 15:51:12]
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF}=C:\Program files (x86)\Microsoft office\Office14\Urlredir.dll [561552 2010-01-16 06:59:00]
BHO: HP Network Check Helper: {E76FD755-C1BA-4DCB-9F13-99BD91223ADE}=C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [x]
BHO64: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E}=C:\Program files\Microsoft office\Office14\Grooveex.dll [6723984 2010-01-21 16:13:58]
BHO64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF}=C:\Program files\Microsoft office\Office14\Urlredir.dll [688528 2010-01-16 06:59:40]
Run64: [HotKeysCmds] C:\Windows\System32\Hkcmd.exe [771032 2013-10-03 21:42:30 Intel Corporation]
Run64: [IgfxTray] C:\Windows\System32\Igfxtray.exe [391128 2013-10-03 21:43:00 Intel Corporation]
Run64: [NvBackend] C:\Program files (x86)\Nvidia corporation\Update core\Nvbackend.exe [2273056 2013-12-02 16:16:01]
Run64: [Nvtmru] C:\Program files (x86)\Nvidia corporation\Nvidia update core\Nvtmru.exe [1028384 2013-11-20 15:40:07 NVIDIA Corporation]
Run64: [Persistence] C:\Windows\System32\Igfxpers.exe [769496 2013-10-03 21:42:54 Intel Corporation]
Run64: [ShadowPlay] C:\Windows\System32\Nvspcap64.dll [1096480 2013-11-20 15:40:54 NVIDIA Corporation]
Run64: [SynTPEnh] C:\Program files\Synaptics\Syntp\Syntpenh.exe [2916152 2012-10-25 22:30:19 Synaptics Incorporated]
Run64: [SysTrayApp] C:\Program files\Idt\Wdm\Sttray64.exe [1425408 2012-10-25 11:39:07 IDT, Inc.]
Run: [Adobe ARM] C:\Program files (x86)\Common files\Adobe\Arm\1.0\Adobearm.exe [958576 2013-09-05 14:03:58]
Run: [BCSSync] C:\Program files (x86)\Microsoft office\Office14\Bcssync.exe [91520 2010-01-21 15:22:24]
Run: [BtTray] C:\Program files (x86)\Ralink corporation\Ralink bluetooth stack\Bttray.exe [363520 2012-08-02 15:12:50]
Run: [HP CoolSense] C:\Program files (x86)\Hewlett-packard\Hp coolsense\Coolsense.exe [1342008 2011-08-26 11:37:18 Hewlett-Packard Development Company, L.P.]
PoliciesExplorer64: [ForceActiveDesktopOn] dword:00000000
PoliciesExplorer64: [NoActiveDesktop] dword:00000001
PoliciesExplorer64: [NoActiveDesktopChanges] dword:00000001
PoliciesExplorer: [ForceActiveDesktopOn] dword:00000000
PoliciesExplorer: [NoActiveDesktop] dword:00000001
PoliciesExplorer: [NoActiveDesktopChanges] dword:00000001
PoliciesSystem64: [ConsentPromptBehaviorAdmin] dword:00000005
PoliciesSystem64: [ConsentPromptBehaviorUser] dword:00000003
PoliciesSystem64: [EnableCursorSuppression] dword:00000001
PoliciesSystem64: [EnableInstallerDetection] dword:00000001
PoliciesSystem64: [EnableLUA] dword:00000001
PoliciesSystem64: [EnableSecureUIAPaths] dword:00000001
PoliciesSystem64: [EnableUIADesktopToggle] dword:00000000
PoliciesSystem64: [EnableVirtualization] dword:00000001
PoliciesSystem64: [FilterAdministratorToken] dword:00000000
PoliciesSystem64: [PromptOnSecureDesktop] dword:00000001
PoliciesSystem64: [ValidateAdminCodeSignatures] dword:00000000
PoliciesSystem64: [dontdisplaylastusername] dword:00000000
PoliciesSystem64: [legalnoticecaption] 
PoliciesSystem64: [legalnoticetext] #0
PoliciesSystem64: [scforceoption] dword:00000000
PoliciesSystem64: [shutdownwithoutlogon] dword:00000001
PoliciesSystem64: [undockwithoutlogon] dword:00000001
PoliciesSystem: [ConsentPromptBehaviorAdmin] dword:00000005
PoliciesSystem: [ConsentPromptBehaviorUser] dword:00000003
PoliciesSystem: [EnableCursorSuppression] dword:00000001
PoliciesSystem: [EnableInstallerDetection] dword:00000001
PoliciesSystem: [EnableLUA] dword:00000001
PoliciesSystem: [EnableSecureUIAPaths] dword:00000001
PoliciesSystem: [EnableUIADesktopToggle] dword:00000000
PoliciesSystem: [EnableVirtualization] dword:00000001
PoliciesSystem: [FilterAdministratorToken] dword:00000000
PoliciesSystem: [PromptOnSecureDesktop] dword:00000001
PoliciesSystem: [ValidateAdminCodeSignatures] dword:00000000
PoliciesSystem: [dontdisplaylastusername] dword:00000000
PoliciesSystem: [legalnoticecaption] 
PoliciesSystem: [legalnoticetext] #0
PoliciesSystem: [scforceoption] dword:00000000
PoliciesSystem: [shutdownwithoutlogon] dword:00000001
PoliciesSystem: [undockwithoutlogon] dword:00000001
IeCom64: [{2670000A-7350-4f3c-8081-5663EE0C6C49} {48E73304-E1D6-4330-914C-F5F514E3486C}] C:\Program files\Microsoft office\Office14\Onbttnie.dll [803728 2010-01-19 00:23:00]
IeCom64: [{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} {FFFDC614-B694-4AE6-AB38-5D6374584B52}] C:\Program files\Microsoft office\Office14\Onbttnielinkednotes.dll [594832 2010-01-19 00:23:02]
IeCom: [{219C3416-8CB2-491a-A3C7-D9FCDDC9D600} {5F7B1267-94A9-47F5-98DB-E99415F33AEC}] C:\Program files (x86)\Windows live\Writer\Writerbrowserextension.dll [188256 2012-03-08 15:19:04 Microsoft Corporation]
IeCom: [{2670000A-7350-4f3c-8081-5663EE0C6C49} {48E73304-E1D6-4330-914C-F5F514E3486C}] C:\Program files (x86)\Microsoft office\Office14\Onbttnie.dll [643472 2010-01-19 00:23:04]
IeCom: [{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} {FFFDC614-B694-4AE6-AB38-5D6374584B52}] C:\Program files (x86)\Microsoft office\Office14\Onbttnielinkednotes.dll [496528 2010-01-19 00:23:04]
LSP: %SystemRoot%\system32\mswsock.dll
LSP64: %SystemRoot%\system32\mswsock.dll
NSP: %SystemRoot%\System32\mswsock.dll
NSP: %SystemRoot%\System32\winrnr.dll
NSP: %SystemRoot%\system32\NLAapi.dll
NSP: %SystemRoot%\system32\napinsp.dll
NSP: %SystemRoot%\system32\pnrpnsp.dll
NSP: %SystemRoot%\system32\wshbth.dll
NSP: C:\Program Files (x86)\Bonjour\mdnsNSP.dll
NSP64: %SystemRoot%\System32\mswsock.dll
NSP64: %SystemRoot%\System32\winrnr.dll
NSP64: %SystemRoot%\system32\NLAapi.dll
NSP64: %SystemRoot%\system32\napinsp.dll
NSP64: %SystemRoot%\system32\pnrpnsp.dll
NSP64: %SystemRoot%\system32\wshbth.dll
NSP64: C:\Program Files\Bonjour\mdnsNSP.dll
TcpDHCPNameServer: 195.175.39.40 195.175.39.39 192.168.1.1
TcpDHCPNameServer: [{02D7AFD3-EDBF-459A-9293-61137AEAFD05}] 40.24.1.201 40.24.1.202
TcpDHCPNameServer: [{1CECB5E4-0BBD-4220-9E9E-4A2D5539F31E}] 195.175.39.40 195.175.39.39 192.168.1.1
IeFilter: [application/octet#-stream->{1E66F26B-79EE-11D2-8710-00C04F79ED0D}] C:\Windows\System32\Mscoree.dll [382976 2013-08-22 11:04:01 Microsoft Corporation]
IeFilter: [application/x#-complus->{1E66F26B-79EE-11D2-8710-00C04F79ED0D}] C:\Windows\System32\Mscoree.dll [382976 2013-08-22 11:04:01 Microsoft Corporation]
IeFilter: [application/x#-msdownload->{1E66F26B-79EE-11D2-8710-00C04F79ED0D}] C:\Windows\System32\Mscoree.dll [382976 2013-08-22 11:04:01 Microsoft Corporation]
IeFilter: [text/xml->{807573E5-5146-11D5-A672-00B0D022E945}] C:\Program files\Common files\Microsoft shared\Office14\Msoxmlmf.dll [56192 2010-01-09 22:31:02]
IeHandler: [about->{3050F406-98B5-11CF-BB82-00AA00BDCE0B}] C:\Windows\System32\Mshtml.dll [23183360 2013-12-13 10:18:31]
IeHandler: [cdl->{3dd53d40-7b8b-11D0-b013-00aa0059ce02}] C:\Windows\System32\Urlmon.dll [1395200 2013-12-13 10:18:27]
IeHandler: [dvd->{12D51199-0DB5-46FE-A120-47A3D7D937CC}] C:\Windows\System32\Msvidctl.dll [3571200 2013-08-22 10:33:22 Microsoft Corporation]
IeHandler: [file->{79eac9e7-baf9-11ce-8c82-00aa004ba90b}] C:\Windows\System32\Urlmon.dll [1395200 2013-12-13 10:18:27]
IeHandler: [ftp->{79eac9e3-baf9-11ce-8c82-00aa004ba90b}] C:\Windows\System32\Urlmon.dll [1395200 2013-12-13 10:18:27]
IeHandler: [http->{79eac9e2-baf9-11ce-8c82-00aa004ba90b}] C:\Windows\System32\Urlmon.dll [1395200 2013-12-13 10:18:27]
IeHandler: [https->{79eac9e5-baf9-11ce-8c82-00aa004ba90b}] C:\Windows\System32\Urlmon.dll [1395200 2013-12-13 10:18:27]
IeHandler: [its->{9D148291-B9C8-11D0-A4CC-0000F80149F6}] C:\Windows\System32\Itss.dll [166400 2013-08-22 10:35:45 Microsoft Corporation]
IeHandler: [javascript->{3050F3B2-98B5-11CF-BB82-00AA00BDCE0B}] C:\Windows\System32\Mshtml.dll [23183360 2013-12-13 10:18:31]
IeHandler: [local->{79eac9e7-baf9-11ce-8c82-00aa004ba90b}] C:\Windows\System32\Urlmon.dll [1395200 2013-12-13 10:18:27]
IeHandler: [mailto->{3050f3DA-98B5-11CF-BB82-00AA00BDCE0B}] C:\Windows\System32\Mshtml.dll [23183360 2013-12-13 10:18:31]
IeHandler: [mhtml->{05300401-BCBC-11d0-85E3-00C04FD85AB4}] C:\Windows\System32\Inetcomm.dll [926720 2013-08-22 10:19:49 Microsoft Corporation]
IeHandler: [mk->{79eac9e6-baf9-11ce-8c82-00aa004ba90b}] C:\Windows\System32\Urlmon.dll [1395200 2013-12-13 10:18:27]
IeHandler: [ms#-its->{9D148291-B9C8-11D0-A4CC-0000F80149F6}] C:\Windows\System32\Itss.dll [166400 2013-08-22 10:35:45 Microsoft Corporation]
IeHandler: [res->{3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}] C:\Windows\System32\Mshtml.dll [23183360 2013-12-13 10:18:31]
IeHandler: [tv->{CBD30858-AF45-11D2-B6D6-00C04FBBDE6E}] C:\Windows\System32\Msvidctl.dll [3571200 2013-08-22 10:33:22 Microsoft Corporation]
IeHandler: [vbscript->{3050F3B2-98B5-11CF-BB82-00AA00BDCE0B}] C:\Windows\System32\Mshtml.dll [23183360 2013-12-13 10:18:31]
IeNamespace: [*.mk->{9D148291-B9C8-11D0-A4CC-0000F80149F6}] C:\Windows\System32\Itss.dll [166400 2013-08-22 10:35:45 Microsoft Corporation]
Notify: [igfxcui] C:\Windows\System32\Igfxdev.dll [623616 2013-10-03 21:42:52 Intel Corporation]
AppinitDll: C:\Windows\Syswow64\Nvinit.dll [141336 2013-11-20 15:33:39]
AppinitDll64: C:\Windows\System32\Nvinitx.dll [168616 2013-11-20 15:33:39]
AppinitDll64: C:\Windows\System32\Nvinitx.dll [168616 2013-11-20 15:33:39]
Ssodl: WebCheck: {E6FB5E20-DE35-11CF-9C87-00AA005127ED}= [x]
Ssodl64: WebCheck: {E6FB5E20-DE35-11CF-9C87-00AA005127ED}= [x]
Seh: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD}=C:\Program files (x86)\Microsoft office\Office14\Grooveex.dll [4222864 2010-01-21 15:51:12]
Seh64: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD}=C:\Program files\Microsoft office\Office14\Grooveex.dll [6723984 2010-01-21 16:13:58]
SecurityProviders: C:\Windows\System32\Credssp.dll [21504 2013-08-22 10:01:38 Microsoft Corporation]
AuthenticationPackage: C:\Windows\System32\Msv1_0.dll [419168 2013-08-22 09:57:51 Microsoft Corporation]
NotificationPackage: C:\Windows\System32\Scecli.dll [271360 2013-08-22 09:55:46 Microsoft Corporation]
SecurityPackage: C:\Windows\System32\Kerberos.dll [940544 2013-09-30 04:05:16 Microsoft Corporation]
SecurityPackage: C:\Windows\System32\Livessp.dll [363520 2013-09-30 04:05:16 Microsoft Corporation]
SecurityPackage: C:\Windows\System32\Msv1_0.dll [419168 2013-08-22 09:57:51 Microsoft Corporation]
SecurityPackage: C:\Windows\System32\Pku2u.dll [254464 2013-08-22 09:56:28 Microsoft Corporation]
SecurityPackage: C:\Windows\System32\Schannel.dll [429056 2013-08-22 09:57:11 Microsoft Corporation]
SecurityPackage: C:\Windows\System32\Tspkg.dll [100864 2013-08-22 09:59:04 Microsoft Corporation]
SecurityPackage: C:\Windows\System32\Wdigest.dll [220160 2013-08-22 10:04:04 Microsoft Corporation]
 
================== User Settings =================
 
Identity: [AARON\Aaron Fareast] S-1-5-21-3546272230-2403614579-1975254687-1002
DefaultPageUrl64: htt#p://g.msn.com/HPNOT13/1
DefaultPageUrl: htt#p://g.msn.com/HPNOT13/1
LocalPage64: C:\WINDOWS\system32\blank.htm
LocalPage: C:\WINDOWS\system32\blank.htm
StartPage64: htt#p://g.msn.com/HPNOT13/1
StartPage: htt#p://g.msn.com/HPNOT13/1
SearchPage64: htt#p://go.microsoft.com/fwlink/?LinkId=54896
SearchPage: htt#p://go.microsoft.com/fwlink/?LinkId=54896
UrlSearchHook64: Microsoft Url Search Hook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497}=C:\Windows\System32\Ieframe.dll [12996608 2013-12-13 10:18:28]
TB64: dword#:00000001: Locked= [x]
TB64: Yes: ShowDiscussionButton= [x]
TB64: dword#:00000015: ITBar7Height= [x]
TB64: hex#:13,00,00,00,00,00,00,00,00,00,00,00,20,00,00,00,10,00,00,00,15,00,00,00,01,00,00,00,00,07,00,00,5E,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00: ITBar7Layout= [x]
Run64: [AIM for Windows] C:\Users\Aaron fareast\Appdata\Local\Aol\Aim\Aim.exe [1074216 2013-09-09 21:39:10 AOL Inc.]
Run64: [Skype] C:\Program files (x86)\Skype\Phone\Skype.exe [20472992 2013-10-02 09:08:56]
ESC Trusted Zone64: htt#p://*.update.microsoft.com
ESC Trusted Zone64: htt#ps://*.update.microsoft.com
 
================ Services/Drivers ================
 
R0 ACPI;Microsoft ACPI Driver;C:\Windows\System32\Drivers\Acpi.sys [522592 2013-08-22 11:39:38 Microsoft Corporation]
R0 acpiex;Microsoft ACPIEx Driver;C:\Windows\System32\Drivers\Acpiex.sys [79712 2013-08-22 11:37:48 Microsoft Corporation]
R0 CLFS;Common Log (CLFS);C:\Windows\System32\Drivers\Clfs.sys [377696 2013-08-22 11:40:22]
R0 CNG;CNG;C:\Windows\System32\Drivers\Cng.sys [564520 2013-08-22 11:38:13 Microsoft Corporation]
R0 disk;Disk Driver;C:\Windows\System32\Drivers\Disk.sys [100192 2013-08-22 11:39:48]
R0 EhStorClass;Enhanced Storage Filter Driver;C:\Windows\System32\Drivers\Ehstorclass.sys [82784 2013-08-22 11:38:16 Microsoft Corporation]
R0 FileInfo;File Information FS MiniFilter;C:\Windows\System32\Drivers\Fileinfo.sys [79200 2013-08-22 11:38:46 Microsoft Corporation]
R0 FltMgr;FltMgr;C:\Windows\System32\Drivers\Fltmgr.sys [358752 2013-08-22 13:25:41 Microsoft Corporation]
R0 fvevol;BitLocker Drive Encryption Filter Driver;C:\Windows\System32\Drivers\Fvevol.sys [579416 2013-09-30 04:05:23]
R0 hpdskflt;HP Filter;C:\Windows\System32\Drivers\Hpdskflt.sys [29600 2012-08-23 06:45:42 Hewlett-Packard Company]
R0 iaStorAV;Intel® SATA RAID Controller Windows;C:\Windows\System32\Drivers\Iastorav.sys [651248 2013-08-22 07:01:07 Intel Corporation]
R0 intelpep;Intel® Power Engine Plug-in Driver;C:\Windows\System32\Drivers\Intelpep.sys [39768 2013-12-13 10:19:08 Microsoft Corporation]
R0 KSecDD;KSecDD;C:\Windows\System32\Drivers\Ksecdd.sys [101208 2013-09-30 04:05:15 Microsoft Corporation]
R0 KSecPkg;KSecPkg;C:\Windows\System32\Drivers\Ksecpkg.sys [192864 2013-08-22 11:37:33 Microsoft Corporation]
R0 mountmgr;Mount Point Manager;C:\Windows\System32\Drivers\Mountmgr.sys [101728 2013-08-22 13:25:40 Microsoft Corporation]
R0 msisadrv;msisadrv;C:\Windows\System32\Drivers\Msisadrv.sys [17248 2013-08-22 11:39:03 Microsoft Corporation]
R0 Mup;Mup;C:\Windows\System32\Drivers\Mup.sys [78688 2013-08-22 11:40:28 Microsoft Corporation]
R0 NDIS;NDIS System Driver;C:\Windows\System32\Drivers\Ndis.sys [1119576 2013-09-30 04:05:15 Microsoft Corporation]
R0 nvpciflt;nvpciflt;C:\Windows\System32\Drivers\Nvpciflt.sys [32544 2013-11-20 15:33:40 NVIDIA Corporation]
R0 partmgr;Partition Manager;C:\Windows\System32\Drivers\Partmgr.sys [88928 2013-08-22 13:25:40]
R0 pci;PCI Bus Driver;C:\Windows\System32\Drivers\Pci.sys [285536 2013-08-22 11:38:33 Microsoft Corporation]
R0 pcw;Performance Counters for Windows Driver;C:\Windows\System32\Drivers\Pcw.sys [50016 2013-08-22 08:46:48 Microsoft Corporation]
R0 pdc;pdc;C:\Windows\System32\Drivers\Pdc.sys [86872 2013-12-13 10:19:04]
R0 rdyboost;ReadyBoost;C:\Windows\System32\Drivers\Rdyboost.sys [258904 2013-09-30 04:05:16]
R0 spaceport;Storage Spaces Driver;C:\Windows\System32\Drivers\Spaceport.sys [372568 2013-12-13 10:19:08]
R0 Tcpip;TCP/IP Protocol Driver;C:\Windows\System32\Drivers\Tcpip.sys [2555224 2013-09-30 04:05:15]
R0 vdrvroot;Microsoft Virtual Drive Enumerator;C:\Windows\System32\Drivers\Vdrvroot.sys [37728 2013-08-22 11:38:49 Microsoft Corporation]
R0 volmgr;Volume Manager Driver;C:\Windows\System32\Drivers\Volmgr.sys [73568 2013-08-22 11:39:53 Microsoft Corporation]
R0 volmgrx;Dynamic Volume Manager;C:\Windows\System32\Drivers\Volmgrx.sys [377696 2013-08-22 11:40:25 Microsoft Corporation]
R0 volsnap;Storage volumes;C:\Windows\System32\Drivers\Volsnap.sys [312160 2013-08-22 11:40:47 Microsoft Corporation]
R0 Wdf01000;Kernel Mode Driver Frameworks service;C:\Windows\System32\Drivers\Wdf01000.sys [839488 2013-08-22 13:25:41 Microsoft Corporation]
R0 WFPLWFS;Microsoft Windows Filtering Platform;C:\Windows\System32\Drivers\Wfplwfs.sys [136536 2013-11-24 17:54:51]
R1 AFD;Ancillary Function Driver for Winsock;C:\Windows\System32\Drivers\Afd.sys [567296 2013-08-22 13:25:35 Microsoft Corporation]
R1 ahcache;Application Compatibility Cache;C:\Windows\System32\Drivers\Ahcache.sys [76800 2013-08-22 11:40:00 Microsoft Corporation]
R1 BasicDisplay;BasicDisplay;C:\Windows\System32\Drivers\Basicdisplay.sys [50688 2013-08-22 11:39:36]
R1 BasicRender;BasicRender;C:\Windows\System32\Drivers\Basicrender.sys [33792 2013-08-22 11:39:28]
R1 Beep;Beep;C:\Windows\System32\Drivers\Beep.sys [7680 2013-08-22 11:40:37 Microsoft Corporation]
R1 cmderd;COMODO Internet Security Eradication Driver;C:\Windows\System32\Drivers\Cmderd.sys [23168 2013-09-24 09:54:16 COMODO]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;C:\Windows\System32\Drivers\Cmdguard.sys [715824 2013-09-24 09:54:18 COMODO]
R1 cmdhlp;COMODO Internet Security Helper Driver;C:\Windows\System32\Drivers\Cmdhlp.sys [38072 2013-09-24 09:54:18 COMODO]
R1 Dfsc;DFS Namespace Client Driver;C:\Windows\System32\Drivers\Dfsc.sys [134656 2013-08-22 11:38:01 Microsoft Corporation]
R1 inspect;COMODO Internet Security Firewall Driver;C:\Windows\System32\Drivers\Inspect.sys [118400 2013-09-24 09:54:20 COMODO]
R1 Msfs;Msfs;C:\Windows\System32\Drivers\Msfs.sys [30208 2013-08-22 13:25:41 Microsoft Corporation]
R1 mssmbios;Microsoft System Management BIOS Driver;C:\Windows\System32\Drivers\Mssmbios.sys [37728 2013-08-22 11:39:51 Microsoft Corporation]
R1 NetBIOS;NetBIOS Interface;C:\Windows\System32\Drivers\Netbios.sys [48128 2013-08-22 11:38:58 Microsoft Corporation]
R1 NetBT;NetBT;C:\Windows\System32\Drivers\Netbt.sys [282624 2013-08-22 11:37:03 Microsoft Corporation]
R1 Npfs;Npfs;C:\Windows\System32\Drivers\Npfs.sys [58880 2013-08-22 13:25:41 Microsoft Corporation]
R1 npsvctrig;Named pipe service trigger provider;C:\Windows\System32\Drivers\Npsvctrig.sys [23040 2013-08-22 11:38:36 Microsoft Corporation]
R1 nsiproxy;NSI Proxy Service Driver;C:\Windows\System32\Drivers\Nsiproxy.sys [39936 2013-08-22 13:25:35 Microsoft Corporation]
R1 Null;Null;C:\Windows\System32\Drivers\Null.sys [5632 2013-08-22 13:25:41 Microsoft Corporation]
R1 Psched;QoS Packet Scheduler;C:\Windows\System32\Drivers\Pacer.sys [151552 2013-08-22 11:36:07 Microsoft Corporation]
R1 rdbss;Redirected Buffering Sub System;C:\Windows\System32\Drivers\Rdbss.sys [408576 2013-08-22 11:37:51 Microsoft Corporation]
R1 tdx;NetIO Legacy TDI Support Driver;C:\Windows\System32\Drivers\Tdx.sys [107520 2013-08-22 13:25:35 Microsoft Corporation]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\Drivers\Vwififlt.sys [71680 2013-08-22 11:38:10]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program files (x86)\Common files\Adobe\Arm\1.0\Armsvc.exe [65640 2013-09-05 14:04:00 Adobe Systems Incorporated]
R2 AppHostSvc;Application Host Helper Service;apphost->C:\Windows\System32\Inetsrv\Apphostsvc.dll [66048 2013-11-08 21:02:44]C:\Windows\System32\Inetsrv\Apphostsvc.dll [66048 2013-11-08 21:02:44]
R2 AudioEndpointBuilder;Windows Audio Endpoint Builder;LocalSystemNetworkRestricted->C:\Windows\System32\Audioendpointbuilder.dll [198656 2013-08-22 09:39:37 Microsoft Corporation]C:\Windows\System32\Audioendpointbuilder.dll [198656 2013-08-22 09:39:37 Microsoft Corporation]
R2 Audiosrv;Windows Audio;LocalServiceNetworkRestricted->C:\Windows\System32\Audiosrv.dll [835072 2013-08-22 09:23:09 Microsoft Corporation]C:\Windows\System32\Audiosrv.dll [835072 2013-08-22 09:23:09 Microsoft Corporation]
R2 BFE;Base Filtering Engine;LocalServiceNoNetwork->C:\Windows\System32\Bfe.dll [828416 2013-11-24 17:54:51 Microsoft Corporation]C:\Windows\System32\Bfe.dll [828416 2013-11-24 17:54:51 Microsoft Corporation]
R2 BITS;Background Intelligent Transfer Service;netsvcs->C:\Windows\System32\Qmgr.dll [1017856 2013-08-22 10:19:15 Microsoft Corporation]C:\Windows\System32\Qmgr.dll [1017856 2013-08-22 10:19:15 Microsoft Corporation]
R2 Bonjour Service;Bonjour Service;C:\Program files\Bonjour\Mdnsresponder.exe [462184 2011-08-30 20:05:32 Apple Inc.]
R2 BrokerInfrastructure;Background Tasks Infrastructure Service;DcomLaunch->C:\Windows\System32\Bisrv.dll [261120 2013-09-30 04:05:16 Microsoft Corporation]C:\Windows\System32\Bisrv.dll [261120 2013-09-30 04:05:16 Microsoft Corporation]
R2 cmdAgent;COMODO Internet Security Helper Service;C:\Program files\Comodo\Comodo internet security\Cmdagent.exe [6254152 2013-09-24 09:53:56]
R2 CryptSvc;Cryptographic Services;NetworkService->C:\Windows\System32\Cryptsvc.dll [129536 2013-08-22 10:01:40 Microsoft Corporation]C:\Windows\System32\Cryptsvc.dll [129536 2013-08-22 10:01:40 Microsoft Corporation]
R2 DcomLaunch;DCOM Server Process Launcher;DcomLaunch->C:\Windows\System32\Rpcss.dll [761344 2013-08-22 09:50:01 Microsoft Corporation]C:\Windows\System32\Rpcss.dll [761344 2013-08-22 09:50:01 Microsoft Corporation]
R2 Dhcp;DHCP Client;LocalServiceNetworkRestricted->C:\Windows\System32\Dhcpcore.dll [353792 2013-09-30 04:05:15 Microsoft Corporation]C:\Windows\System32\Dhcpcore.dll [353792 2013-09-30 04:05:15 Microsoft Corporation]
R2 Dnscache;DNS Client;NetworkService->C:\Windows\System32\Dnsrslvr.dll [255488 2013-08-22 10:05:11 Microsoft Corporation]C:\Windows\System32\Dnsrslvr.dll [255488 2013-08-22 10:05:11 Microsoft Corporation]
R2 DPS;Diagnostic Policy Service;LocalServiceNoNetwork->C:\Windows\System32\Dps.dll [170496 2013-08-22 09:53:34 Microsoft Corporation]C:\Windows\System32\Dps.dll [170496 2013-08-22 09:53:34 Microsoft Corporation]
R2 EventLog;Windows Event Log;LocalServiceNetworkRestricted->C:\Windows\System32\Wevtsvc.dll [1669632 2013-08-22 09:44:27 Microsoft Corporation]C:\Windows\System32\Wevtsvc.dll [1669632 2013-08-22 09:44:27 Microsoft Corporation]
R2 EventSystem;COM+ Event System;LocalService->C:\Windows\System32\Es.dll [468992 2013-08-22 09:40:30 Microsoft Corporation]C:\Windows\System32\Es.dll [468992 2013-08-22 09:40:30 Microsoft Corporation]
R2 FontCache;Windows Font Cache Service;LocalService->C:\Windows\System32\Fntcache.dll [1348608 2013-08-22 10:07:18 Microsoft Corporation]C:\Windows\System32\Fntcache.dll [1348608 2013-08-22 10:07:18 Microsoft Corporation]
R2 gpsvc;Group Policy Client;netsvcs->C:\Windows\System32\Gpsvc.dll [1311744 2013-08-22 09:41:14]C:\Windows\System32\Gpsvc.dll [1311744 2013-08-22 09:41:14]
R2 hpsrv;HP Service;C:\Windows\System32\Hpservice.exe [29600 2012-08-23 06:45:42 Hewlett-Packard Company]
R2 IconMan_R;IconMan_R;C:\Program files (x86)\Realtek\Realtek pcie card reader\Riconman.exe [2451456 2012-10-25 11:38:25]
R2 Intel® Capability Licensing Service Interface;Intel® Capability Licensing Service Interface;C:\Program files\Intel\Icls client\Heciserver.exe [635104 2012-04-20 11:16:12]
R2 Intel® ME Service;Intel® ME Service;C:\Program files (x86)\Intel\Intel® management engine components\Fwservice\Intelmefwservice.exe [128896 2012-10-25 11:38:04 Intel Corporation]
R2 iphlpsvc;IP Helper;NetSvcs->C:\Windows\System32\Iphlpsvc.dll [903168 2013-08-22 09:18:19]C:\Windows\System32\Iphlpsvc.dll [903168 2013-08-22 09:18:19]
R2 irstrtsv;Intel® Rapid Start Technology Service;C:\Windows\Syswow64\Irstrtsv.exe [193576 2012-10-25 11:38:18 Intel Corporation]
R2 jhi_service;Intel® Dynamic Application Loader Host Interface Service;C:\Program files (x86)\Intel\Intel® management engine components\Dal\Jhi_service.exe [165760 2012-10-25 11:38:02 Intel Corporation]
R2 LanmanServer;Server;netsvcs->C:\Windows\System32\Srvsvc.dll [324608 2013-08-22 09:48:09 Microsoft Corporation]C:\Windows\System32\Srvsvc.dll [324608 2013-08-22 09:48:09 Microsoft Corporation]
R2 LanmanWorkstation;Workstation;NetworkService->C:\Windows\System32\Wkssvc.dll [284160 2013-08-22 09:54:22 Microsoft Corporation]C:\Windows\System32\Wkssvc.dll [284160 2013-08-22 09:54:22 Microsoft Corporation]
R2 lltdio;Link-Layer Topology Discovery Mapper I/O Driver;C:\Windows\System32\Drivers\Lltdio.sys [59392 2013-08-22 11:36:28 Microsoft Corporation]
R2 lmhosts;TCP/IP NetBIOS Helper;LocalServiceNetworkRestricted->C:\Windows\System32\Lmhsvc.dll [24576 2013-08-22 11:40:41 Microsoft Corporation]C:\Windows\System32\Lmhsvc.dll [24576 2013-08-22 11:40:41 Microsoft Corporation]
R2 LMS;Intel® Management and Security Application Local Management Service;C:\Program files (x86)\Intel\Intel® management engine components\Lms\Lms.exe [276864 2012-10-25 11:36:38 Intel Corporation]
R2 LSM;Local Session Manager;DcomLaunch->C:\Windows\System32\Lsm.dll [716288 2013-08-22 10:04:56 Microsoft Corporation]C:\Windows\System32\Lsm.dll [716288 2013-08-22 10:04:56 Microsoft Corporation]
R2 luafv;UAC File Virtualization;C:\Windows\System32\Drivers\Luafv.sys [123904 2013-08-22 11:39:37 Microsoft Corporation]
R2 MMCSS;Multimedia Class Scheduler;netsvcs->C:\Windows\System32\Mmcss.dll [70656 2013-08-22 09:54:28 Microsoft Corporation]C:\Windows\System32\Mmcss.dll [70656 2013-08-22 09:54:28 Microsoft Corporation]
R2 MpsSvc;Windows Firewall;LocalServiceNoNetwork->C:\Windows\System32\Mpssvc.dll [878080 2013-08-22 09:24:02]C:\Windows\System32\Mpssvc.dll [878080 2013-08-22 09:24:02]
R2 mrxsmb10;SMB 1.x MiniRedirector;C:\Windows\System32\Drivers\Mrxsmb10.sys [283648 2013-08-22 11:35:42 Microsoft Corporation]
R2 NativeWifiP;NativeWiFi Filter;C:\Windows\System32\Drivers\Nwifi.sys [442368 2013-09-30 04:05:17 Microsoft Corporation]
R2 Ndu;Windows Network Data Usage Monitoring Driver;C:\Windows\System32\Drivers\Ndu.sys [103424 2013-08-22 11:35:47 Microsoft Corporation]
R2 NlaSvc;Network Location Awareness;NetworkService->C:\Windows\System32\Nlasvc.dll [387584 2013-08-22 09:35:49 Microsoft Corporation]C:\Windows\System32\Nlasvc.dll [387584 2013-08-22 09:35:49 Microsoft Corporation]
R2 nsi;Network Store Interface Service;LocalService->C:\Windows\System32\Nsisvc.dll [29184 2013-08-22 13:25:35 Microsoft Corporation]C:\Windows\System32\Nsisvc.dll [29184 2013-08-22 13:25:35 Microsoft Corporation]
R2 NvNetworkService;NVIDIA Network Service;C:\Program files (x86)\Nvidia corporation\Netservice\Nvnetworkservice.exe [1370912 2013-12-02 16:15:52 NVIDIA Corporation]
R2 NvStreamSvc;NVIDIA Streamer Service;C:\Program files\Nvidia corporation\Nvstreamsrv\Nvstreamsvc.exe [15128352 2013-11-20 15:40:03]
R2 nvsvc;NVIDIA Display Driver Service;C:\Windows\System32\Nvvsvc.exe [922912 2013-11-20 15:39:20]
R2 PcaSvc;Program Compatibility Assistant Service;LocalSystemNetworkRestricted->C:\Windows\System32\Pcasvc.dll [471552 2013-09-30 04:05:16 Microsoft Corporation]C:\Windows\System32\Pcasvc.dll [471552 2013-09-30 04:05:16 Microsoft Corporation]
R2 PEAUTH;PEAUTH;C:\Windows\System32\Drivers\Peauth.sys [663040 2013-08-22 11:36:07 Microsoft Corporation]
R2 Power;Power;DcomLaunch->C:\Windows\System32\Umpo.dll [79360 2013-08-22 10:02:31 Microsoft Corporation]C:\Windows\System32\Umpo.dll [79360 2013-08-22 10:02:31 Microsoft Corporation]
R2 ProfSvc;User Profile Service;netsvcs->C:\Windows\System32\Profsvc.dll [220672 2013-08-22 09:47:43 Microsoft Corporation]C:\Windows\System32\Profsvc.dll [220672 2013-08-22 09:47:43 Microsoft Corporation]
R2 RpcEptMapper;RPC Endpoint Mapper;RPCSS->C:\Windows\System32\Rpcepmap.dll [79872 2013-08-22 13:25:35 Microsoft Corporation]C:\Windows\System32\Rpcepmap.dll [79872 2013-08-22 13:25:35 Microsoft Corporation]
R2 RpcSs;Remote Procedure Call (RPC);rpcss->C:\Windows\System32\Rpcss.dll [761344 2013-08-22 09:50:01 Microsoft Corporation]C:\Windows\System32\Rpcss.dll [761344 2013-08-22 09:50:01 Microsoft Corporation]
R2 rspndr;Link-Layer Topology Discovery Responder;C:\Windows\System32\Drivers\Rspndr.sys [80384 2013-08-22 11:36:35 Microsoft Corporation]
R2 SamSs;Security Accounts Manager;C:\Windows\System32\Lsass.exe [45008 2013-08-22 13:25:35 Microsoft Corporation]
R2 Schedule;Task Scheduler;netsvcs->C:\Windows\System32\Schedsvc.dll [1212416 2013-08-22 09:07:32]C:\Windows\System32\Schedsvc.dll [1212416 2013-08-22 09:07:32]
R2 secdrv;Security Driver;C:\Windows\System32\Drivers\Secdrv.sys [23040 2013-08-22 15:36:40]
R2 SENS;System Event Notification Service;netsvcs->C:\Windows\System32\Sens.dll [71680 2013-08-22 09:53:06 Microsoft Corporation]C:\Windows\System32\Sens.dll [71680 2013-08-22 09:53:06 Microsoft Corporation]
R2 ShellHWDetection;Shell Hardware Detection;netsvcs->C:\Windows\System32\Shsvcs.dll [629760 2013-08-22 09:24:31]C:\Windows\System32\Shsvcs.dll [629760 2013-08-22 09:24:31]
R2 Spooler;Print Spooler;C:\Windows\System32\Spoolsv.exe [798208 2013-08-22 09:10:12 Microsoft Corporation]
R2 srv;Server SMB 1.xxx Driver;C:\Windows\System32\Drivers\Srv.sys [454656 2013-08-22 11:37:16 Microsoft Corporation]
R2 STacSV;Audio Service;C:\Program files\Idt\Wdm\Stacsv64.exe [321536 2012-10-25 11:39:06 IDT, Inc.]
R2 SysMain;Superfetch;LocalSystemNetworkRestricted->C:\Windows\System32\Sysmain.dll [1245696 2013-09-30 04:05:16]C:\Windows\System32\Sysmain.dll [1245696 2013-09-30 04:05:16]
R2 SystemEventsBroker;System Events Broker;DcomLaunch->C:\Windows\System32\Systemeventsbrokerserver.dll [280576 2013-08-22 09:58:42 Microsoft Corporation]C:\Windows\System32\Systemeventsbrokerserver.dll [280576 2013-08-22 09:58:42 Microsoft Corporation]
R2 tcpipreg;TCP/IP Registry Compatibility;C:\Windows\System32\Drivers\Tcpipreg.sys [48640 2013-08-22 11:36:03 Microsoft Corporation]
R2 Themes;Themes;netsvcs->C:\Windows\System32\Themeservice.dll [50688 2013-08-22 10:00:19 Microsoft Corporation]C:\Windows\System32\Themeservice.dll [50688 2013-08-22 10:00:19 Microsoft Corporation]
R2 TrkWks;Distributed Link Tracking Client;LocalSystemNetworkRestricted->C:\Windows\System32\Trkwks.dll [122368 2013-08-22 09:53:53 Microsoft Corporation]C:\Windows\System32\Trkwks.dll [122368 2013-08-22 09:53:53 Microsoft Corporation]
R2 UNS;Intel® Management and Security Application User Notification Service;C:\Program files (x86)\Intel\Intel® management engine components\Uns\Uns.exe [364416 2012-10-25 11:37:24]
R2 Wcmsvc;Windows Connection Manager;LocalServiceNetworkRestricted->C:\Windows\System32\Wcmsvc.dll [365568 2013-09-30 04:05:17 Microsoft Corporation]C:\Windows\System32\Wcmsvc.dll [365568 2013-09-30 04:05:17 Microsoft Corporation]
R2 Winmgmt;Windows Management Instrumentation;netsvcs->C:\Windows\System32\Wbem\Wmisvc.dll [220672 2013-08-22 09:48:04 Microsoft Corporation]C:\Windows\System32\Wbem\Wmisvc.dll [220672 2013-08-22 09:48:04 Microsoft Corporation]
R2 WlanSvc;WLAN AutoConfig;LocalSystemNetworkRestricted->C:\Windows\System32\Wlansvc.dll [1503232 2013-09-30 04:05:17]C:\Windows\System32\Wlansvc.dll [1503232 2013-09-30 04:05:17]
R2 wscsvc;Security Center;LocalServiceNetworkRestricted->C:\Windows\System32\Wscsvc.dll [133632 2013-08-22 09:13:03]C:\Windows\System32\Wscsvc.dll [133632 2013-08-22 09:13:03]
R2 WSearch;Windows Search;C:\Windows\System32\Searchindexer.exe [844800 2013-08-22 09:07:22]
R3 Accelerometer;HP Mobile Data Protection Sensor;C:\Windows\System32\Drivers\Accelerometer.sys [42400 2012-08-23 06:45:42 Hewlett-Packard Company]
R3 AeLookupSvc;Application Experience;netsvcs->C:\Windows\System32\Aelupsvc.dll [207360 2013-08-22 11:31:58 Microsoft Corporation]C:\Windows\System32\Aelupsvc.dll [207360 2013-08-22 11:31:58 Microsoft Corporation]
R3 Appinfo;Application Information;netsvcs->C:\Windows\System32\Appinfo.dll [109568 2013-08-22 11:34:22 Microsoft Corporation]C:\Windows\System32\Appinfo.dll [109568 2013-08-22 11:34:22 Microsoft Corporation]
R3 bowser;Browser Support Driver;C:\Windows\System32\Drivers\Bowser.sys [102912 2013-08-22 11:38:38 Microsoft Corporation]
R3 Browser;Computer Browser;netsvcs->C:\Windows\System32\Browser.dll [134144 2013-08-22 10:01:06 Microsoft Corporation]C:\Windows\System32\Browser.dll [134144 2013-08-22 10:01:06 Microsoft Corporation]
R3 BsHelpCS;BsHelpCS;C:\Program files (x86)\Ralink corporation\Ralink bluetooth stack\Bshelpcs.exe [138752 2012-07-10 15:11:20]
R3 BtAudioBusSrv;IVT Bluetooth Audio Bus Service;C:\Windows\System32\Drivers\Btaudiobus.sys [23136 2012-06-15 08:22:02 IVT Corporation]
R3 BthLEEnum;Bluetooth Low Energy Driver;C:\Windows\System32\Drivers\Bthleenum.sys [224768 2013-08-22 11:36:52 Microsoft Corporation]
R3 bthserv;Bluetooth Support Service;LocalService->C:\Windows\System32\Bthserv.dll [92160 2013-08-22 09:48:11 Microsoft Corporation]C:\Windows\System32\Bthserv.dll [92160 2013-08-22 09:48:11 Microsoft Corporation]
R3 BTHUSB;Bluetooth Radio USB Driver;C:\Windows\System32\Drivers\Bthusb.sys [77312 2013-08-22 11:37:44]
R3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service;C:\Windows\System32\Drivers\Ivturbbtflt.sys [48736 2012-08-08 18:46:34 Ralink Corporation]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver;C:\Windows\System32\Drivers\Cmbatt.sys [25472 2013-08-22 11:39:47 Microsoft Corporation]
R3 CompositeBus;Composite Bus Enumerator Driver;C:\Windows\System32\Drivers\Compositebus.sys [36352 2013-08-22 11:39:01 Microsoft Corporation]
R3 condrv;Console Driver;C:\Windows\System32\Drivers\Condrv.sys [43008 2013-08-22 13:25:40 Microsoft Corporation]
R3 DXGKrnl;LDDM Graphics Subsystem;C:\Windows\System32\Drivers\Dxgkrnl.sys [1530200 2013-12-13 10:19:08 Microsoft Corporation]
R3 fastfat;FAT12/16/32 File System Driver;C:\Windows\System32\Drivers\Fastfat.sys [217952 2013-08-22 11:40:25 Microsoft Corporation]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio;C:\Windows\System32\Drivers\Hdaudbus.sys [78336 2013-08-22 11:38:38 Microsoft Corporation]
R3 hidserv;Human Interface Device Service;LocalSystemNetworkRestricted->C:\Windows\System32\Hidserv.dll [32256 2013-08-22 11:34:20]C:\Windows\System32\Hidserv.dll [32256 2013-08-22 11:34:20]
R3 HTTP;HTTP Service;C:\Windows\System32\Drivers\Http.sys [994144 2013-08-22 11:37:13 Microsoft Corporation]
R3 i8042prt;PS/2 Keyboard and Mouse Port Driver;C:\Windows\System32\Drivers\I8042prt.sys [107520 2013-08-22 11:39:16 Microsoft Corporation]
R3 igfx;igfx;C:\Windows\System32\Drivers\Igdkmd64.sys [4185600 2013-10-03 21:42:44 Intel Corporation]
R3 IntcDAud;Intel® Display Audio;C:\Windows\System32\Drivers\Intcdaud.sys [342528 2012-06-19 15:40:50 Intel® Corporation]
R3 intelppm;Intel Processor Driver;C:\Windows\System32\Drivers\Intelppm.sys [98816 2013-08-22 08:46:35 Microsoft Corporation]
R3 irstrtdv;Intel® Rapid Start Technology Driver;C:\Windows\System32\Drivers\Irstrtdv.sys [43800 2012-10-25 11:38:16 Intel Corporation]
R3 iwdbus;IWD Bus Enumerator;C:\Windows\System32\Drivers\Iwdbus.sys [27032 2013-09-30 16:16:41 Intel Corporation]
R3 kbdclass;Keyboard Class Driver;C:\Windows\System32\Drivers\Kbdclass.sys [58208 2013-08-22 11:39:23 Microsoft Corporation]
R3 kdnic;Microsoft Kernel Debug Network Miniport (NDIS 6.20);C:\Windows\System32\Drivers\Kdnic.sys [19456 2013-08-22 11:38:34]
R3 ksthunk;Kernel Streaming Thunks;C:\Windows\System32\Drivers\Ksthunk.sys [21248 2013-08-22 11:39:35 Microsoft Corporation]
R3 MEIx64;Intel® Management Engine Interface ;C:\Windows\System32\Drivers\Hecix64.sys [62784 2012-07-02 23:16:02 Intel Corporation]
R3 monitor;Microsoft Monitor Class Function Driver Service;C:\Windows\System32\Drivers\Monitor.sys [30208 2013-08-22 11:36:50 Microsoft Corporation]
R3 mouclass;Mouse Class Driver;C:\Windows\System32\Drivers\Mouclass.sys [51040 2013-08-22 11:39:22 Microsoft Corporation]
R3 mpsdrv;Windows Firewall Authorisation Driver;C:\Windows\System32\Drivers\Mpsdrv.sys [74240 2013-08-22 11:36:07 Microsoft Corporation]
R3 mrxsmb20;SMB 2.0 MiniRedirector;C:\Windows\System32\Drivers\Mrxsmb20.sys [207360 2013-09-30 04:05:15 Microsoft Corporation]
R3 mrxsmb;SMB MiniRedirector Wrapper and Engine;C:\Windows\System32\Drivers\Mrxsmb.sys [404992 2013-09-30 04:05:15 Microsoft Corporation]
R3 NcbService;Network Connection Broker;LocalSystemNetworkRestricted->C:\Windows\System32\Ncbservice.dll [151040 2013-08-22 09:45:59 Microsoft Corporation]C:\Windows\System32\Ncbservice.dll [151040 2013-08-22 09:45:59 Microsoft Corporation]
R3 Ndisuio;NDIS Usermode I/O Protocol;C:\Windows\System32\Drivers\Ndisuio.sys [60416 2013-08-22 11:37:45 Microsoft Corporation]
R3 NdisVirtualBus;Microsoft Virtual Network Adapter Enumerator;C:\Windows\System32\Drivers\Ndisvirtualbus.sys [16384 2013-08-22 11:36:30 Microsoft Corporation]
R3 Netman;Network Connections;LocalSystemNetworkRestricted->C:\Windows\System32\Netman.dll [254976 2013-08-22 09:05:51]C:\Windows\System32\Netman.dll [254976 2013-08-22 09:05:51]
R3 netprofm;Network List Service;LocalService->C:\Windows\System32\Netprofmsvc.dll [525312 2013-08-22 09:50:02]C:\Windows\System32\Netprofmsvc.dll [525312 2013-08-22 09:50:02]
R3 netr28x;Ralink 802.11n Extensible Wireless Driver;C:\Windows\System32\Drivers\Netr28x.sys [2588848 2013-09-26 14:42:16 Ralink Technology, Corp.]
R3 Ntfs;Ntfs;C:\Windows\System32\Drivers\Ntfs.sys [2011488 2013-08-22 13:25:41 Microsoft Corporation]
R3 nvlddmkm;nvlddmkm;C:\Windows\System32\Drivers\Nvlddmkm.sys [12613408 2013-11-20 15:33:39 NVIDIA Corporation]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);C:\Windows\System32\Drivers\Nvvad64v.sys [39200 2013-12-02 16:15:26 NVIDIA Corporation]
R3 osppsvc;Office Software Protection Platform;C:\Program files\Common files\Microsoft shared\Officesoftwareprotectionplatform\Osppsvc.exe [4925184 2010-01-09 18:34:24 Microsoft Corporation]
R3 PlugPlay;Plug and Play;DcomLaunch->C:\Windows\System32\Umpnpmgr.dll [124928 2013-08-22 11:35:43 Microsoft Corporation]C:\Windows\System32\Umpnpmgr.dll [124928 2013-08-22 11:35:43 Microsoft Corporation]
R3 PolicyAgent;IPsec Policy Agent;NetworkServiceNetworkRestricted->C:\Windows\System32\Ipsecsvc.dll [403456 2013-08-22 09:35:28 Microsoft Corporation]C:\Windows\System32\Ipsecsvc.dll [403456 2013-08-22 09:35:28 Microsoft Corporation]
R3 rdpbus;Remote Desktop Device Redirector Bus Driver;C:\Windows\System32\Drivers\Rdpbus.sys [22528 2013-08-22 11:39:01 Microsoft Corporation]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\Drivers\Rdpvideominiport.sys [27488 2013-09-30 03:58:06 Microsoft Corporation]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI);C:\Windows\System32\Drivers\Rfcomm.sys [167424 2013-09-30 04:05:15 Microsoft Corporation]
R3 rtbth;RTBTH Bluetooth Device Driver;C:\Windows\System32\Drivers\Rtbth.sys [695392 2012-08-09 11:48:18 Ralink Technology, Corp.]
R3 RTL8168;Realtek 8168 NT Driver;C:\Windows\System32\Drivers\Rt630x64.sys [591360 2013-08-22 06:57:54]
R3 SmbDrvI;SmbDrvI;C:\Windows\System32\Drivers\Smb_driver_intel.sys [43832 2012-10-25 22:30:18 Synaptics Incorporated]
R3 srv2;Server SMB 2.xxx Driver;C:\Windows\System32\Drivers\Srv2.sys [675328 2013-09-30 04:05:15 Microsoft Corporation]
R3 srvnet;srvnet;C:\Windows\System32\Drivers\Srvnet.sys [244224 2013-09-30 04:05:15 Microsoft Corporation]
R3 SSDPSRV;SSDP Discovery;LocalServiceAndNoImpersonation->C:\Windows\System32\Ssdpsrv.dll [239616 2013-08-22 09:36:56 Microsoft Corporation]C:\Windows\System32\Ssdpsrv.dll [239616 2013-08-22 09:36:56 Microsoft Corporation]
R3 STHDA;IDT High Definition Audio CODEC;C:\Windows\System32\Drivers\Stwrt64.sys [540160 2012-10-25 11:39:07 IDT, Inc.]
R3 swenum;Software Bus Driver;C:\Windows\System32\Drivers\Swenum.sys [14176 2013-08-22 11:39:33]
R3 SynTP;Synaptics TouchPad Driver;C:\Windows\System32\Drivers\Syntp.sys [448312 2012-10-25 22:30:19 Synaptics Incorporated]
R3 TapiSrv;Telephony;NetworkService->C:\Windows\System32\Tapisrv.dll [306688 2013-08-22 10:55:45]C:\Windows\System32\Tapisrv.dll [306688 2013-08-22 10:55:45]
R3 TimeBroker;Time Broker;LocalServiceAndNoImpersonation->C:\Windows\System32\Timebrokerserver.dll [245760 2013-08-22 09:50:59 Microsoft Corporation]C:\Windows\System32\Timebrokerserver.dll [245760 2013-08-22 09:50:59 Microsoft Corporation]
R3 tunnel;Microsoft Tunnel Miniport Adapter Driver;C:\Windows\System32\Drivers\Tunnel.sys [154112 2013-08-22 11:35:45 Microsoft Corporation]
R3 UCX01000;USB Controller Extension;C:\Windows\System32\Drivers\Ucx01000.sys [189792 2013-08-22 11:37:48 Microsoft Corporation]
R3 umbus;UMBus Enumerator Driver;C:\Windows\System32\Drivers\Umbus.sys [46080 2013-08-22 11:39:03 Microsoft Corporation]
R3 usbccgp;Microsoft USB Generic Parent Driver;C:\Windows\System32\Drivers\Usbccgp.sys [155488 2013-08-22 11:38:06 Microsoft Corporation]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver;C:\Windows\System32\Drivers\Usbehci.sys [89952 2013-08-22 11:39:16 Microsoft Corporation]
R3 USBHUB3;SuperSpeed Hub;C:\Windows\System32\Drivers\Usbhub3.sys [467800 2013-09-30 04:05:15 Microsoft Corporation]
R3 usbhub;Microsoft USB Standard Hub Driver;C:\Windows\System32\Drivers\Usbhub.sys [422240 2013-08-22 11:38:34 Microsoft Corporation]
R3 usbvideo;USB Video Device (WDM);C:\Windows\System32\Drivers\Usbvideo.sys [212224 2013-08-22 11:38:12 Microsoft Corporation]
R3 USBXHCI;USB xHCI Compliant Host Controller;C:\Windows\System32\Drivers\Usbxhci.sys [325464 2013-12-13 10:19:04 Microsoft Corporation]
R3 VaultSvc;Credential Manager;C:\Windows\System32\Lsass.exe [45008 2013-08-22 13:25:35 Microsoft Corporation]
R3 vwifibus;Virtual WiFi Bus Driver;C:\Windows\System32\Drivers\Vwifibus.sys [24576 2013-08-22 11:39:04 Microsoft Corporation]
R3 vwifimp;Virtual WiFi Miniport Service;C:\Windows\System32\Drivers\Vwifimp.sys [36864 2013-08-22 11:36:29]
R3 WdiServiceHost;Diagnostic Service Host;LocalService->C:\Windows\System32\Wdi.dll [91136 2013-08-22 09:53:50 Microsoft Corporation]C:\Windows\System32\Wdi.dll [91136 2013-08-22 09:53:50 Microsoft Corporation]
R3 WdiSystemHost;Diagnostic System Host;LocalSystemNetworkRestricted->C:\Windows\System32\Wdi.dll [91136 2013-08-22 09:53:50 Microsoft Corporation]C:\Windows\System32\Wdi.dll [91136 2013-08-22 09:53:50 Microsoft Corporation]
R3 WerSvc;Windows Error Reporting Service;WerSvcGroup->C:\Windows\System32\Wersvc.dll [100864 2013-08-22 09:52:38 Microsoft Corporation]C:\Windows\System32\Wersvc.dll [100864 2013-08-22 09:52:38 Microsoft Corporation]
R3 WinHttpAutoProxySvc;WinHTTP Web Proxy Auto-Discovery Service;LocalService->C:\Windows\System32\Winhttp.dll [786432 2013-08-22 09:41:55 Microsoft Corporation]C:\Windows\System32\Winhttp.dll [786432 2013-08-22 09:41:55 Microsoft Corporation]
R3 wlidsvc;Microsoft Account Sign-in Assistant;netsvcs->C:\Windows\System32\Wlidsvc.dll [1555456 2013-09-30 04:05:16 Microsoft Corporation]C:\Windows\System32\Wlidsvc.dll [1555456 2013-09-30 04:05:16 Microsoft Corporation]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI;C:\Windows\System32\Drivers\Wmiacpi.sys [16384 2013-08-22 11:40:13 Microsoft Corporation]
S0 hwpolicy;Hardware Policy Driver;C:\Windows\System32\Drivers\Hwpolicy.sys [24416 2013-08-22 11:40:22 Microsoft Corporation]
S1 cdrom;CD-ROM Driver;C:\Windows\System32\Drivers\Cdrom.sys [164352 2013-08-22 08:46:35]
S1 dam;Desktop Activity Moderator Driver;C:\Windows\System32\Drivers\Dam.sys [57696 2013-08-22 11:39:51 Microsoft Corporation]
S2 BlueSoleilCS;BlueSoleilCS;C:\Program files (x86)\Ralink corporation\Ralink bluetooth stack\Bluesoleilcs.exe [1544192 2012-08-02 08:56:46]
S2 gupdate;Google Update Service (gupdate);C:\Program files (x86)\Google\Update\Googleupdate.exe [116648 2013-11-19 10:12:31]
S2 SkypeUpdate;Skype Updater;C:\Program files (x86)\Skype\Updater\Updater.exe [171680 2013-09-05 08:34:30 Skype Technologies]
S2 sppsvc;Software Protection;C:\Windows\System32\Sppsvc.exe [6353952 2013-09-30 04:05:16 Microsoft Corporation]
S3 1394ohci;1394 OHCI Compliant Host Controller;C:\Windows\System32\Drivers\1394ohci.sys [231424 2013-08-22 11:38:16 Microsoft Corporation]
S3 3ware;3ware;C:\Windows\System32\Drivers\3ware.sys [108896 2013-08-22 06:57:45 LSI]
S3 acpipagr;ACPI Processor Aggregator Driver;C:\Windows\System32\Drivers\Acpipagr.sys [10240 2013-08-22 11:39:01 Microsoft Corporation]
S3 AcpiPmi;ACPI Power Meter Driver;C:\Windows\System32\Drivers\Acpipmi.sys [12288 2013-08-22 11:39:02 Microsoft Corporation]
S3 acpitime;ACPI Wake Alarm Driver;C:\Windows\System32\Drivers\Acpitime.sys [10752 2013-08-22 11:39:01 Microsoft Corporation]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\Syswow64\Macromed\Flash\Flashplayerupdateservice.exe [257416 2013-11-08 20:05:12 Adobe Systems Incorporated]
S3 ADP80XX;ADP80XX;C:\Windows\System32\Drivers\Adp80xx.sys [782176 2013-08-22 07:01:07 PMC-Sierra]
S3 agp440;Intel AGP Bus Filter;C:\Windows\System32\Drivers\Agp440.sys [62304 2013-08-22 11:39:49 Microsoft Corporation]
S3 ALG;Application Layer Gateway Service;C:\Windows\System32\Alg.exe [92672 2013-08-22 09:53:25 Microsoft Corporation]
S3 AmdK8;AMD K8 Processor Driver;C:\Windows\System32\Drivers\Amdk8.sys [95744 2013-08-22 08:46:48 Microsoft Corporation]
S3 AmdPPM;AMD Processor Driver;C:\Windows\System32\Drivers\Amdppm.sys [98816 2013-08-22 08:46:35 Microsoft Corporation]
S3 amdsata;amdsata;C:\Windows\System32\Drivers\Amdsata.sys [79200 2013-08-22 07:01:07]
S3 amdsbs;amdsbs;C:\Windows\System32\Drivers\Amdsbs.sys [259424 2013-08-22 06:57:45 AMD Technologies Inc.]
S3 amdxata;amdxata;C:\Windows\System32\Drivers\Amdxata.sys [25952 2013-08-22 07:01:07]
S3 AppID;AppID Driver;C:\Windows\System32\Drivers\Appid.sys [83456 2013-09-30 04:05:16 Microsoft Corporation]
S3 AppIDSvc;Application Identity;LocalServiceNetworkRestricted->C:\Windows\System32\Appidsvc.dll [37888 2013-08-22 11:01:14 Microsoft Corporation]C:\Windows\System32\Appidsvc.dll [37888 2013-08-22 11:01:14 Microsoft Corporation]
S3 AppReadiness;App Readiness;AppReadiness->C:\Windows\System32\Appreadiness.dll [533504 2013-09-30 04:05:17 Microsoft Corporation]C:\Windows\System32\Appreadiness.dll [533504 2013-09-30 04:05:17 Microsoft Corporation]
S3 AppXSvc;AppX Deployment Service (AppXSVC);wsappx->C:\Windows\System32\Appxdeploymentserver.dll [1302528 2013-12-13 10:19:06 Microsoft Corporation]C:\Windows\System32\Appxdeploymentserver.dll [1302528 2013-12-13 10:19:06 Microsoft Corporation]
S3 arcsas;Adaptec SAS/SATA-II RAID Storport's Miniport Driver;C:\Windows\System32\Drivers\Arcsas.sys [114016 2013-08-22 07:01:07 PMC-Sierra, Inc.]
S3 aspnet_state;ASP.NET State Service;C:\Windows\Microsoft.net\Framework64\V4.0.30319\Aspnet_state.exe [50784 2013-08-22 06:41:47 Microsoft Corporation]
S3 atapi;IDE Channel;C:\Windows\System32\Drivers\Atapi.sys [26464 2013-08-22 12:22:57 Microsoft Corporation]
S3 AxInstSV;ActiveX Installer (AxInstSV);AxInstSVGroup->C:\Windows\System32\Axinstsv.dll [109568 2013-09-30 04:05:16 Microsoft Corporation]C:\Windows\System32\Axinstsv.dll [109568 2013-09-30 04:05:16 Microsoft Corporation]
S3 b06bdrv;Broadcom NetXtreme II VBD;C:\Windows\System32\Drivers\Bxvbda.sys [531296 2013-08-22 06:57:55 Broadcom Corporation]
S3 bcmfn2;bcmfn2 Service;C:\Windows\System32\Drivers\Bcmfn2.sys [17624 2013-08-22 06:57:48 Windows ® Win 7 DDK provider]
S3 BDESVC;BitLocker Drive Encryption Service;netsvcs->C:\Windows\System32\Bdesvc.dll [336896 2013-08-22 09:41:37 Microsoft Corporation]C:\Windows\System32\Bdesvc.dll [336896 2013-08-22 09:41:37 Microsoft Corporation]
S3 BthEnum;Bluetooth Enumerator Service;C:\Windows\System32\Drivers\Bthenum.sys [53248 2013-08-22 11:36:51]
S3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service;C:\Windows\System32\Drivers\Btl2cascoif.sys [56904 2012-07-19 14:47:40 Ralink Corporation]
S3 BTHMODEM;Bluetooth Serial Communications Driver;C:\Windows\System32\Drivers\Bthmodem.sys [63488 2013-08-22 11:36:54 Microsoft Corporation]
S3 BthPan;Bluetooth Device (Personal Area Network);C:\Windows\System32\Drivers\Bthpan.sys [118272 2013-08-22 11:36:00 Microsoft Corporation]
S3 BTHPORT;Bluetooth Port Driver;C:\Windows\System32\Drivers\Bthport.sys [1200128 2013-08-22 11:36:21]
S3 CertPropSvc;Certificate Propagation;netsvcs->C:\Windows\System32\Certprop.dll [155136 2013-08-22 11:06:00]C:\Windows\System32\Certprop.dll [155136 2013-08-22 11:06:00]
S3 circlass;Consumer IR Devices;C:\Windows\System32\Drivers\Circlass.sys [44032 2013-08-22 11:38:34 Microsoft Corporation]
S3 cmdvirth;COMODO Virtual Service Manager;C:\Program files\Comodo\Comodo internet security\Cmdvirth.exe [164056 2013-09-24 09:53:32]
S3 COMSysApp;COM+ System Application;C:\Windows\System32\Dllhost.exe [19296 2013-08-22 09:54:14 Microsoft Corporation]
S3 cphs;Intel® Content Protection HECI Service;C:\Windows\Syswow64\Intelcphecisvc.exe [279000 2013-10-03 21:43:02 Intel Corporation]
S3 defragsvc;Optimise drives;defragsvc->C:\Windows\System32\Defragsvc.dll [449536 2013-08-22 09:38:57]C:\Windows\System32\Defragsvc.dll [449536 2013-08-22 09:38:57]
S3 DeviceAssociationService;Device Association Service;LocalSystemNetworkRestricted->C:\Windows\System32\Das.dll [398848 2013-08-22 09:40:14 Microsoft Corporation]C:\Windows\System32\Das.dll [398848 2013-08-22 09:40:14 Microsoft Corporation]
S3 DeviceInstall;Device Install Service;DcomLaunch->C:\Windows\System32\Umpnpmgr.dll [124928 2013-08-22 11:35:43 Microsoft Corporation]C:\Windows\System32\Umpnpmgr.dll [124928 2013-08-22 11:35:43 Microsoft Corporation]
S3 dmvsc;dmvsc;C:\Windows\System32\Drivers\Dmvsc.sys [29696 2013-08-22 11:37:23 Microsoft Corporation]
S3 dot3svc;Wired AutoConfig;LocalSystemNetworkRestricted->C:\Windows\System32\Dot3svc.dll [258560 2013-08-22 10:30:46]C:\Windows\System32\Dot3svc.dll [258560 2013-08-22 10:30:46]
S3 drmkaud;Microsoft Trusted Audio Drivers;C:\Windows\System32\Drivers\Drmkaud.sys [14560 2013-08-22 11:39:28 Microsoft Corporation]
S3 DsmSvc;Device Setup Manager;netsvcs->C:\Windows\System32\Devicesetupmanager.dll [201728 2013-08-22 09:31:41 Microsoft Corporation]C:\Windows\System32\Devicesetupmanager.dll [201728 2013-08-22 09:31:41 Microsoft Corporation]
S3 Eaphost;Extensible Authentication Protocol;netsvcs->C:\Windows\System32\Eapsvc.dll [107008 2013-08-22 09:44:35 Microsoft Corporation]C:\Windows\System32\Eapsvc.dll [107008 2013-08-22 09:44:35 Microsoft Corporation]
S3 ebdrv;Broadcom NetXtreme II 10 GigE VBD;C:\Windows\System32\Drivers\Evbda.sys [3357024 2013-08-22 06:57:55 Broadcom Corporation]
S3 EFS;Encrypting File System (EFS);C:\Windows\System32\Lsass.exe [45008 2013-08-22 13:25:35 Microsoft Corporation]
S3 EhStorTcgDrv;Microsoft driver for storage devices supporting IEEE 1667 and TCG protocols;C:\Windows\System32\Drivers\Ehstortcgdrv.sys [114016 2013-08-22 11:37:45 Microsoft Corporation]
S3 ErrDev;Microsoft Hardware Error Device Driver;C:\Windows\System32\Drivers\Errdev.sys [10240 2013-08-22 11:38:57 Microsoft Corporation]
S3 exfat;exFAT File System Driver;C:\Windows\System32\Drivers\Exfat.sys [200704 2013-08-22 11:40:25 Microsoft Corporation]
S3 Fax;Fax;C:\Windows\System32\Fxssvc.exe [655360 2013-08-22 10:21:44 Microsoft Corporation]
S3 fdc;Floppy Disk Controller Driver;C:\Windows\System32\Drivers\Fdc.sys [30720 2013-08-22 11:40:22]
S3 fdPHost;Function Discovery Provider Host;LocalService->C:\Windows\System32\Fdphost.dll [21504 2013-08-22 09:17:21 Microsoft Corporation]C:\Windows\System32\Fdphost.dll [21504 2013-08-22 09:17:21 Microsoft Corporation]
S3 FDResPub;Function Discovery Resource Publication;LocalServiceAndNoImpersonation->C:\Windows\System32\Fdrespub.dll [33280 2013-08-22 09:45:30 Microsoft Corporation]C:\Windows\System32\Fdrespub.dll [33280 2013-08-22 09:45:30 Microsoft Corporation]
S3 fhsvc;File History Service;LocalSystemNetworkRestricted->C:\Windows\System32\Fhsvc.dll [118272 2013-08-22 11:17:13]C:\Windows\System32\Fhsvc.dll [118272 2013-08-22 11:17:13]
S3 Filetrace;Filetrace;C:\Windows\System32\Drivers\Filetrace.sys [34816 2013-08-22 11:39:50 Microsoft Corporation]
S3 flpydisk;Floppy Disk Driver;C:\Windows\System32\Drivers\Flpydisk.sys [25088 2013-08-22 11:40:22]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0;C:\Windows\Microsoft.net\Framework64\V3.0\Wpf\Presentationfontcache.exe [43696 2013-11-08 21:02:28 Microsoft Corporation]
S3 FsDepends;File System Dependency Minifilter;C:\Windows\System32\Drivers\Fsdepends.sys [56672 2013-08-22 11:39:46 Microsoft Corporation]
S3 FxPPM;Power Framework Processor Driver;C:\Windows\System32\Drivers\Fxppm.sys [27136 2013-08-22 08:46:47 Microsoft Corporation]
S3 gagp30kx;Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms;C:\Windows\System32\Drivers\Gagp30kx.sys [65888 2013-08-22 11:39:50 Microsoft Corporation]
S3 gencounter;Microsoft Hyper-V Generation Counter;C:\Windows\System32\Drivers\Vmgencounter.sys [11264 2013-08-22 11:38:37 Microsoft Corporation]
S3 GPIOClx0101;Microsoft GPIO Class Extension Driver;C:\Windows\System32\Drivers\Msgpioclx.sys [146272 2013-08-22 11:38:08 Microsoft Corporation]
S3 gupdatem;Google Update Service (gupdatem);C:\Program files (x86)\Google\Update\Googleupdate.exe [116648 2013-11-19 10:12:31]
S3 HidBatt;HID UPS Battery Driver;C:\Windows\System32\Drivers\Hidbatt.sys [26624 2013-08-22 11:39:05 Microsoft Corporation]
S3 HidBth;Microsoft Bluetooth HID Miniport;C:\Windows\System32\Drivers\Hidbth.sys [96768 2013-08-22 11:38:45]
S3 hidi2c;Microsoft I2C HID Miniport Driver;C:\Windows\System32\Drivers\Hidi2c.sys [41472 2013-08-22 11:37:32 Microsoft Corporation]
S3 HidIr;Microsoft Infrared HID Driver;C:\Windows\System32\Drivers\Hidir.sys [45568 2013-08-22 11:39:24 Microsoft Corporation]
S3 HidUsb;Microsoft HID Class Driver;C:\Windows\System32\Drivers\Hidusb.sys [33792 2013-08-22 11:38:59 Microsoft Corporation]
S3 hkmsvc;Health Key and Certificate Management;netsvcs->C:\Windows\System32\Kmsvc.dll [97792 2013-08-22 11:21:11 Microsoft Corporation]C:\Windows\System32\Kmsvc.dll [97792 2013-08-22 11:21:11 Microsoft Corporation]
S3 HomeGroupListener;HomeGroup Listener;LocalSystemNetworkRestricted->C:\Windows\System32\Listsvc.dll [261632 2013-08-22 09:11:36 Microsoft Corporation]C:\Windows\System32\Listsvc.dll [261632 2013-08-22 09:11:36 Microsoft Corporation]
S3 HomeGroupProvider;HomeGroup Provider;LocalServiceNetworkRestricted->C:\Windows\System32\Provsvc.dll [405504 2013-08-22 09:06:06 Microsoft Corporation]C:\Windows\System32\Provsvc.dll [405504 2013-08-22 09:06:06 Microsoft Corporation]
S3 HpSAMD;HpSAMD;C:\Windows\System32\Drivers\Hpsamd.sys [64352 2013-08-22 06:57:45 Hewlett-Packard Company]
S3 hyperkbd;hyperkbd;C:\Windows\System32\Drivers\Hyperkbd.sys [13824 2013-08-22 11:37:53 Microsoft Corporation]
S3 HyperVideo;HyperVideo;C:\Windows\System32\Drivers\Hypervideo.sys [22016 2013-08-22 11:39:24 Microsoft Corporation]
S3 iaLPSSi_GPIO;Intel® Serial IO GPIO Controller Driver;C:\Windows\System32\Drivers\Ialpssi_gpio.sys [24568 2013-08-22 06:57:49 Intel Corporation]
S3 iaLPSSi_I2C;Intel® Serial IO I2C Controller Driver;C:\Windows\System32\Drivers\Ialpssi_i2c.sys [99320 2013-08-22 06:57:49 Intel Corporation]
S3 iaStorA;iaStorA;C:\Windows\System32\Drivers\Iastora.sys [645952 2012-07-31 19:22:00 Intel Corporation]
S3 iaStorV;Intel RAID Controller Windows 7;C:\Windows\System32\Drivers\Iastorv.sys [412000 2013-08-22 07:01:07 Intel Corporation]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\Ieetwcollector.exe [111616 2013-11-24 17:56:41 Microsoft Corporation]
S3 IKEEXT;IKE and AuthIP IPsec Keying Modules;netsvcs->C:\Windows\System32\Ikeext.dll [1104384 2013-11-24 17:54:51 Microsoft Corporation]C:\Windows\System32\Ikeext.dll [1104384 2013-11-24 17:54:51 Microsoft Corporation]
S3 intaud_WaveExtensible;Intel WiDi Audio Device;C:\Windows\System32\Drivers\Intelaud.sys [39320 2013-09-30 16:16:40 Intel Corporation]
S3 intelide;intelide;C:\Windows\System32\Drivers\Intelide.sys [18272 2013-08-22 12:22:58 Microsoft Corporation]
S3 IpFilterDriver;IP Traffic Filter Driver;C:\Windows\System32\Drivers\Ipfltdrv.sys [84992 2013-08-22 11:35:51 Microsoft Corporation]
S3 IPMIDRV;IPMIDRV;C:\Windows\System32\Drivers\Ipmidrv.sys [79360 2013-08-22 11:39:00 Microsoft Corporation]
S3 IPNAT;IP Network Address Translator;C:\Windows\System32\Drivers\Ipnat.sys [141824 2013-09-30 04:05:17 Microsoft Corporation]
S3 IRENUM;IR Bus Enumerator;C:\Windows\System32\Drivers\Irenum.sys [17920 2013-08-22 11:38:34 Microsoft Corporation]
S3 isapnp;isapnp;C:\Windows\System32\Drivers\Isapnp.sys [21856 2013-08-22 11:40:24 Microsoft Corporation]
S3 iScsiPrt;iScsiPort Driver;C:\Windows\System32\Drivers\Msiscsi.sys [274784 2013-08-22 11:35:47]
S3 kbdhid;Keyboard HID Driver;C:\Windows\System32\Drivers\Kbdhid.sys [32256 2013-08-22 11:39:21 Microsoft Corporation]
S3 KeyIso;CNG Key Isolation;C:\Windows\System32\Lsass.exe [45008 2013-08-22 13:25:35 Microsoft Corporation]
S3 KtmRm;KtmRm for Distributed Transaction Coordinator;NetworkServiceAndNoImpersonation->C:\Windows\System32\Msdtckrm.dll [357888 2013-08-22 09:39:57 Microsoft Corporation]C:\Windows\System32\Msdtckrm.dll [357888 2013-08-22 09:39:57 Microsoft Corporation]
S3 lfsvc;Windows Location Framework Service;netsvcs->C:\Windows\System32\Geofencemonitorservice.dll [491520 2013-09-30 04:05:16 Microsoft Corporation]C:\Windows\System32\Geofencemonitorservice.dll [491520 2013-09-30 04:05:16 Microsoft Corporation]
S3 lltdsvc;Link-Layer Topology Discovery Mapper;LocalService->C:\Windows\System32\Lltdsvc.dll [269824 2013-08-22 10:52:34 Microsoft Corporation]C:\Windows\System32\Lltdsvc.dll [269824 2013-08-22 10:52:34 Microsoft Corporation]
S3 LSI_SAS2;LSI_SAS2;C:\Windows\System32\Drivers\Lsi_sas2.sys [93536 2013-08-22 06:57:45 LSI Corporation]
S3 LSI_SAS3;LSI_SAS3;C:\Windows\System32\Drivers\Lsi_sas3.sys [81760 2013-08-22 06:57:45 LSI Corporation]
S3 LSI_SAS;LSI_SAS;C:\Windows\System32\Drivers\Lsi_sas.sys [109408 2013-08-22 06:57:45 LSI Corporation]
S3 LSI_SSS;LSI_SSS;C:\Windows\System32\Drivers\Lsi_sss.sys [82784 2013-08-22 06:57:45 LSI Corporation]
S3 megasas;megasas;C:\Windows\System32\Drivers\Megasas.sys [56672 2013-08-22 06:57:45 LSI Corporation]
S3 megasr;megasr;C:\Windows\System32\Drivers\Megasr.sys [575840 2013-08-22 06:57:45 LSI Corporation, Inc.]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;C:\Program files (x86)\Microsoft office\Office14\Groove.exe [30963576 2010-01-21 15:51:12]
S3 Modem;Modem;C:\Windows\System32\Drivers\Modem.sys [40960 2013-08-22 11:40:20 Microsoft Corporation]
S3 mouhid;Mouse HID Driver;C:\Windows\System32\Drivers\Mouhid.sys [30208 2013-08-22 11:39:22 Microsoft Corporation]
S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program files (x86)\Mozilla maintenance service\Maintenanceservice.exe [119408 2013-11-08 19:48:20]
S3 MRxDAV;WebDav Client Redirector Driver;C:\Windows\System32\Drivers\Mrxdav.sys [140288 2013-08-22 11:37:25 Microsoft Corporation]
S3 MsBridge;Microsoft MAC Bridge;C:\Windows\System32\Drivers\Bridge.sys [115712 2013-08-22 11:35:50 Microsoft Corporation]
S3 MSDTC;Distributed Transaction Coordinator;C:\Windows\System32\Msdtc.exe [142848 2013-08-22 09:40:53 Microsoft Corporation]
S3 msgpiowin32;Common Driver for Buttons, DockMode and Laptop/Slate Indicator;C:\Windows\System32\Drivers\Msgpiowin32.sys [41824 2013-08-22 11:38:14 Microsoft Corporation]
S3 mshidkmdf;Pass-through HID to KMDF Filter Driver;C:\Windows\System32\Drivers\Mshidkmdf.sys [8192 2013-08-22 11:39:10 Microsoft Corporation]
S3 mshidumdf;Pass-through HID to UMDF Driver;C:\Windows\System32\Drivers\Mshidumdf.sys [9728 2013-08-22 11:39:10 Microsoft Corporation]
S3 MSiSCSI;Microsoft iSCSI Initiator Service;netsvcs->C:\Windows\System32\Iscsiexe.dll [150528 2013-08-22 11:13:21 Microsoft Corporation]C:\Windows\System32\Iscsiexe.dll [150528 2013-08-22 11:13:21 Microsoft Corporation]
S3 msiserver;Windows Installer;C:\Windows\System32\Msiexec.exe [62464 2013-08-22 11:23:27]
S3 MSKSSRV;Microsoft Streaming Service Proxy;C:\Windows\System32\Drivers\Mskssrv.sys [10624 2013-08-22 11:39:35]
S3 MsLldp;Microsoft Link-Layer Discovery Protocol;C:\Windows\System32\Drivers\Mslldp.sys [66560 2013-08-22 11:36:11]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy;C:\Windows\System32\Drivers\Mspclock.sys [7040 2013-08-22 11:39:34]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy;C:\Windows\System32\Drivers\Mspqm.sys [6784 2013-08-22 11:39:34]
S3 MsRPC;MsRPC;C:\Windows\System32\Drivers\Msrpc.sys [366432 2013-08-22 13:25:35 Microsoft Corporation]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter;C:\Windows\System32\Drivers\Mstee.sys [7936 2013-08-22 11:38:42]
S3 MTConfig;Microsoft Input Configuration Driver;C:\Windows\System32\Drivers\Mtconfig.sys [13312 2013-08-22 11:37:45 Microsoft Corporation]
S3 mvumis;mvumis;C:\Windows\System32\Drivers\Mvumis.sys [63840 2013-08-22 06:57:45 Marvell Semiconductor, Inc.]
S3 napagent;Network Access Protection Agent;NetworkService->C:\Windows\System32\Qagentrt.dll [435200 2013-08-22 11:05:58 Microsoft Corporation]C:\Windows\System32\Qagentrt.dll [435200 2013-08-22 11:05:58 Microsoft Corporation]
S3 NcaSvc;Network Connectivity Assistant;NetSvcs->C:\Windows\System32\Ncasvc.dll [164352 2013-08-22 10:25:36 Microsoft Corporation]C:\Windows\System32\Ncasvc.dll [164352 2013-08-22 10:25:36 Microsoft Corporation]
S3 NcdAutoSetup;Network Connected Devices Auto-Setup;LocalServiceNoNetwork->C:\Windows\System32\Ncdautosetup.dll [73728 2013-08-22 09:16:10 Microsoft Corporation]C:\Windows\System32\Ncdautosetup.dll [73728 2013-08-22 09:16:10 Microsoft Corporation]
S3 NdisCap;Microsoft NDIS Capture;C:\Windows\System32\Drivers\Ndiscap.sys [43008 2013-08-22 11:38:12]
S3 NdisImPlatform;Microsoft Network Adapter Multiplexor Protocol;C:\Windows\System32\Drivers\Ndisimplatform.sys [124928 2013-08-22 11:36:27]
S3 NdisTapi;Remote Access NDIS TAPI Driver;C:\Windows\System32\Drivers\Ndistapi.sys [24576 2013-08-22 11:39:24 Microsoft Corporation]
S3 NdisWan;Remote Access NDIS WAN Driver;C:\Windows\System32\Drivers\Ndiswan.sys [220672 2013-08-22 11:35:56 Microsoft Corporation]
S3 NdisWanLegacy;Remote Access LEGACY NDIS WAN Driver;C:\Windows\System32\Drivers\Ndiswan.sys [220672 2013-08-22 11:35:56 Microsoft Corporation]
S3 NDProxy;NDIS Proxy;C:\Windows\System32\Drivers\Ndproxy.sys [72192 2013-08-22 11:38:16 Microsoft Corporation]
S3 Netlogon;Netlogon;C:\Windows\System32\Lsass.exe [45008 2013-08-22 13:25:35 Microsoft Corporation]
S3 netvsc;netvsc;C:\Windows\System32\Drivers\Netvsc63.sys [87040 2013-08-22 11:36:44 Microsoft Corporation]
S3 nvraid;nvraid;C:\Windows\System32\Drivers\Nvraid.sys [150368 2013-08-22 07:01:09]
S3 nvstor;nvstor;C:\Windows\System32\Drivers\Nvstor.sys [168288 2013-08-22 07:01:09 NVIDIA Corporation]
S3 nv_agp;NVIDIA nForce AGP Bus Filter;C:\Windows\System32\Drivers\Nv_agp.sys [124768 2013-08-22 11:39:47 Microsoft Corporation]
S3 ose;Office  Source Engine;C:\Program files (x86)\Common files\Microsoft shared\Source engine\Ose.exe [149352 2010-01-09 18:18:00]
S3 p2pimsvc;Peer Networking Identity Manager;LocalServicePeerNet->C:\Windows\System32\Pnrpsvc.dll [419328 2013-08-22 09:33:15 Microsoft Corporation]C:\Windows\System32\Pnrpsvc.dll [419328 2013-08-22 09:33:15 Microsoft Corporation]
S3 p2psvc;Peer Networking Grouping;LocalServicePeerNet->C:\Windows\System32\P2psvc.dll [433664 2013-08-22 09:08:49 Microsoft Corporation]C:\Windows\System32\P2psvc.dll [433664 2013-08-22 09:08:49 Microsoft Corporation]
S3 Parport;Parallel port driver;C:\Windows\System32\Drivers\Parport.sys [94208 2013-08-22 11:40:03 Microsoft Corporation]
S3 pciide;pciide;C:\Windows\System32\Drivers\Pciide.sys [14688 2013-08-22 12:22:58 Microsoft Corporation]
S3 pcmcia;pcmcia;C:\Windows\System32\Drivers\Pcmcia.sys [114528 2013-08-22 11:40:15 Microsoft Corporation]
S3 PerfHost;Performance Counter DLL Host;C:\Windows\Syswow64\Perfhost.exe [21504 2013-08-22 04:12:15 Microsoft Corporation]
S3 pla;Performance Logs & Alerts;LocalServiceNoNetwork->C:\Windows\System32\Pla.dll [1443840 2013-08-22 10:34:14 Microsoft Corporation]C:\Windows\System32\Pla.dll [1443840 2013-08-22 10:34:14 Microsoft Corporation]
S3 PNRPAutoReg;PNRP Machine Name Publication Service;LocalServicePeerNet->C:\Windows\System32\Pnrpauto.dll [25600 2013-08-22 09:49:18 Microsoft Corporation]C:\Windows\System32\Pnrpauto.dll [25600 2013-08-22 09:49:18 Microsoft Corporation]
S3 PNRPsvc;Peer Name Resolution Protocol;LocalServicePeerNet->C:\Windows\System32\Pnrpsvc.dll [419328 2013-08-22 09:33:15 Microsoft Corporation]C:\Windows\System32\Pnrpsvc.dll [419328 2013-08-22 09:33:15 Microsoft Corporation]
S3 PrintNotify;Printer Extensions and Notifications;print->C:\Windows\System32\Spool\Drivers\X64\3\Printconfig.dll [2899968 2013-08-22 12:31:55]C:\Windows\System32\Spool\Drivers\X64\3\Printconfig.dll [2899968 2013-08-22 12:31:55]
S3 Processor;Processor Driver;C:\Windows\System32\Drivers\Processr.sys [92160 2013-08-22 08:46:48 Microsoft Corporation]
S3 QWAVE;Quality Windows Audio Video Experience;LocalServiceAndNoImpersonation->C:\Windows\System32\Qwave.dll [297472 2013-08-22 09:47:13 Microsoft Corporation]C:\Windows\System32\Qwave.dll [297472 2013-08-22 09:47:13 Microsoft Corporation]
S3 QWAVEdrv;QWAVE driver;C:\Windows\System32\Drivers\Qwavedrv.sys [47104 2013-08-22 11:39:31 Microsoft Corporation]
S3 RasAcd;Remote Access Auto Connection Driver;C:\Windows\System32\Drivers\Rasacd.sys [17408 2013-08-22 11:40:16 Microsoft Corporation]
S3 RasAuto;Remote Access Auto Connection Manager;netsvcs->C:\Windows\System32\Rasauto.dll [101376 2013-08-22 11:22:35 Microsoft Corporation]C:\Windows\System32\Rasauto.dll [101376 2013-08-22 11:22:35 Microsoft Corporation]
S3 RasMan;Remote Access Connection Manager;netsvcs->C:\Windows\System32\Rasmans.dll [534016 2013-08-22 09:19:41 Microsoft Corporation]C:\Windows\System32\Rasmans.dll [534016 2013-08-22 09:19:41 Microsoft Corporation]
S3 RasPppoe;Remote Access PPPOE Driver;C:\Windows\System32\Drivers\Raspppoe.sys [84992 2013-08-22 11:36:38 Microsoft Corporation]
S3 RDPDR;Remote Desktop Device Redirector Driver;C:\Windows\System32\Drivers\Rdpdr.sys [195584 2013-09-30 03:58:06 Microsoft Corporation]
S3 ReFS;ReFS;C:\Windows\System32\Drivers\Refs.sys [924512 2013-08-22 08:46:54 Microsoft Corporation]
S3 RpcLocator;Remote Procedure Call (RPC) Locator;C:\Windows\System32\Locator.exe [10240 2013-08-22 11:40:38 Microsoft Corporation]
S3 RSP2STOR;Realtek PCIE CardReader Driver - P2;C:\Windows\System32\Drivers\Rtsp2stor.sys [269968 2012-10-25 11:38:25 Realtek Semiconductor Corp.]
S3 s3cap;s3cap;C:\Windows\System32\Drivers\Vms3cap.sys [7168 2013-08-22 11:38:41 Microsoft Corporation]
S3 sbp2port;SBP-2 Transport/Protocol Bus Driver;C:\Windows\System32\Drivers\Sbp2port.sys [107872 2013-08-22 08:46:48]
S3 ScDeviceEnum;Smart Card Device Enumeration Service;LocalSystemNetworkRestricted->C:\Windows\System32\Scdeviceenum.dll [130560 2013-08-22 09:57:32]C:\Windows\System32\Scdeviceenum.dll [130560 2013-08-22 09:57:32]
S3 scfilter;Smart card PnP Class Filter Driver;C:\Windows\System32\Drivers\Scfilter.sys [40960 2013-08-22 11:38:12]
S3 SCPolicySvc;Smart Card Removal Policy;netsvcs->C:\Windows\System32\Certprop.dll [155136 2013-08-22 11:06:00]C:\Windows\System32\Certprop.dll [155136 2013-08-22 11:06:00]
S3 sdbus;sdbus;C:\Windows\System32\Drivers\Sdbus.sys [236376 2013-09-30 04:05:15 Microsoft Corporation]
S3 sdstor;SD Storage Port Driver;C:\Windows\System32\Drivers\Sdstor.sys [78688 2013-08-22 11:39:46 Microsoft Corporation]
S3 seclogon;Secondary Log-on;netsvcs->C:\Windows\System32\Seclogon.dll [30720 2013-08-22 11:32:17]C:\Windows\System32\Seclogon.dll [30720 2013-08-22 11:32:17]
S3 SensrSvc;Sensor Monitoring Service;LocalServiceAndNoImpersonation->C:\Windows\System32\Sensrsvc.dll [220672 2013-09-30 03:58:07 Microsoft Corporation]C:\Windows\System32\Sensrsvc.dll [220672 2013-09-30 03:58:07 Microsoft Corporation]
S3 SerCx2;Serial UART Support Library;C:\Windows\System32\Drivers\Sercx2.sys [146776 2013-12-13 10:19:04 Microsoft Corporation]
S3 SerCx;Serial UART Support Library;C:\Windows\System32\Drivers\Sercx.sys [69472 2013-08-22 11:38:12 Microsoft Corporation]
S3 Serenum;Serenum Filter Driver;C:\Windows\System32\Drivers\Serenum.sys [23040 2013-08-22 11:40:22 Microsoft Corporation]
S3 Serial;Serial port driver;C:\Windows\System32\Drivers\Serial.sys [83456 2013-08-22 11:40:18 Microsoft Corporation]
S3 sermouse;Serial Mouse Driver;C:\Windows\System32\Drivers\Sermouse.sys [26112 2013-08-22 11:40:16 Microsoft Corporation]
S3 SessionEnv;Remote Desktop Configuration;netsvcs->C:\Windows\System32\Sessenv.dll [326656 2013-09-30 04:05:18 Microsoft Corporation]C:\Windows\System32\Sessenv.dll [326656 2013-09-30 04:05:18 Microsoft Corporation]
S3 sfloppy;High-Capacity Floppy Disk Drive;C:\Windows\System32\Drivers\Sfloppy.sys [17408 2013-08-22 11:40:14]
S3 SiSRaid2;SiSRaid2;C:\Windows\System32\Drivers\Sisraid2.sys [44896 2013-08-22 07:01:09 Silicon Integrated Systems Corp.]
S3 SiSRaid4;SiSRaid4;C:\Windows\System32\Drivers\Sisraid4.sys [81760 2013-08-22 07:01:09 Silicon Integrated Systems]
S3 SmbDrv;SmbDrv;C:\Windows\System32\Drivers\Smb_driver_amdasf.sys [41272 2012-10-25 22:30:18 Synaptics Incorporated]
S3 smphost;Microsoft Storage Spaces SMP;smphost->C:\Windows\System32\Smphost.dll [13312 2013-08-22 10:02:51]C:\Windows\System32\Smphost.dll [13312 2013-08-22 10:02:51]
S3 SNMPTRAP;SNMP Trap;C:\Windows\System32\Snmptrap.exe [14848 2013-08-22 11:32:40 Microsoft Corporation]
S3 SpbCx;Simple Peripheral Bus Support Library;C:\Windows\System32\Drivers\Spbcx.sys [72032 2013-08-22 11:38:09 Microsoft Corporation]
S3 SstpSvc;Secure Socket Tunneling Protocol Service;LocalService->C:\Windows\System32\Sstpsvc.dll [144384 2013-08-22 09:51:15 Microsoft Corporation]C:\Windows\System32\Sstpsvc.dll [144384 2013-08-22 09:51:15 Microsoft Corporation]
S3 stexstor;stexstor;C:\Windows\System32\Drivers\Stexstor.sys [31072 2013-08-22 06:57:45 Promise Technology, Inc.]
S3 stisvc;Windows Image Acquisition (WIA);imgsvc->C:\Windows\System32\Wiaservc.dll [634368 2013-08-22 10:39:25]C:\Windows\System32\Wiaservc.dll [634368 2013-08-22 10:39:25]
S3 storahci;Microsoft Standard SATA AHCI Driver;C:\Windows\System32\Drivers\Storahci.sys [107872 2013-08-22 11:40:44 Microsoft Corporation]
S3 storflt;Hyper-V Storage Accelerator;C:\Windows\System32\Drivers\Vmstorfl.sys [49984 2013-08-22 11:37:07 Microsoft Corporation]
S3 stornvme;Microsoft Standard NVM Express Driver;C:\Windows\System32\Drivers\Stornvme.sys [56672 2013-08-22 11:40:43 Microsoft Corporation]
S3 StorSvc;Storage Service;LocalSystemNetworkRestricted->C:\Windows\System32\Storsvc.dll [19968 2013-08-22 11:22:13 Microsoft Corporation]C:\Windows\System32\Storsvc.dll [19968 2013-08-22 11:22:13 Microsoft Corporation]
S3 storvsc;storvsc;C:\Windows\System32\Drivers\Storvsc.sys [45888 2013-08-22 11:37:34 Microsoft Corporation]
S3 svsvc;Spot Verifier;LocalSystemNetworkRestricted->C:\Windows\System32\Svsvc.dll [13312 2013-08-22 11:21:24 Microsoft Corporation]C:\Windows\System32\Svsvc.dll [13312 2013-08-22 11:21:24 Microsoft Corporation]
S3 swprv;Microsoft Software Shadow Copy Provider;swprv->C:\Windows\System32\Swprv.dll [716288 2013-08-22 09:23:50 Microsoft Corporation]C:\Windows\System32\Swprv.dll [716288 2013-08-22 09:23:50 Microsoft Corporation]
S3 TabletInputService;Touch Keyboard and Handwriting Panel Service;LocalSystemNetworkRestricted->C:\Windows\System32\Tabsvc.dll [147456 2013-08-22 11:28:03 Microsoft Corporation]C:\Windows\System32\Tabsvc.dll [147456 2013-08-22 11:28:03 Microsoft Corporation]
S3 TCPIP6;Microsoft IPv6 Protocol Driver;C:\Windows\System32\Drivers\Tcpip.sys [2555224 2013-09-30 04:05:15]
S3 terminpt;Microsoft Remote Desktop Input Driver;C:\Windows\System32\Drivers\Terminpt.sys [37216 2013-09-30 03:58:02 Microsoft Corporation]
S3 TermService;Remote Desktop Services;NetworkService->C:\Windows\System32\Termsrv.dll [1032704 2013-08-22 09:38:21 Microsoft Corporation]C:\Windows\System32\Termsrv.dll [1032704 2013-08-22 09:38:21 Microsoft Corporation]
S3 THREADORDER;Thread Ordering Server;LocalService->C:\Windows\System32\Mmcss.dll [70656 2013-08-22 09:54:28 Microsoft Corporation]C:\Windows\System32\Mmcss.dll [70656 2013-08-22 09:54:28 Microsoft Corporation]
S3 TPM;TPM;C:\Windows\System32\Drivers\Tpm.sys [159584 2013-08-22 11:37:21 Microsoft Corporation]
S3 TrustedInstaller;Windows Modules Installer;C:\Windows\Servicing\Trustedinstaller.exe [98816 2013-08-22 13:25:36 Microsoft Corporation]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\Drivers\Tsusbflt.sys [56320 2013-08-22 11:37:44 Microsoft Corporation]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\Drivers\Tsusbgd.sys [29696 2013-08-22 11:37:50 Microsoft Corporation]
S3 uagp35;Microsoft AGPv3.5 Filter;C:\Windows\System32\Drivers\Uagp35.sys [64864 2013-08-22 11:39:47 Microsoft Corporation]
S3 UASPStor;USB Attached SCSI (UAS) Driver;C:\Windows\System32\Drivers\Uaspstor.sys [74080 2013-08-22 11:37:59]
S3 UEFI;Microsoft UEFI Driver;C:\Windows\System32\Drivers\Uefi.sys [26976 2013-08-22 11:40:17 Microsoft Corporation]
S3 UI0Detect;Interactive Services Detection;C:\Windows\System32\Ui0detect.exe [40960 2013-08-22 11:21:48 Microsoft Corporation]
S3 uliagpkx;Uli AGP Bus Filter;C:\Windows\System32\Drivers\Uliagpkx.sys [65888 2013-08-22 11:39:47 Microsoft Corporation]
S3 UmPass;Microsoft UMPass Driver;C:\Windows\System32\Drivers\Umpass.sys [11776 2013-08-22 11:39:02 Microsoft Corporation]
S3 UmRdpService;Remote Desktop Services UserMode Port Redirector;LocalSystemNetworkRestricted->C:\Windows\System32\Umrdp.dll [289280 2013-09-30 03:58:09]C:\Windows\System32\Umrdp.dll [289280 2013-09-30 03:58:09]
S3 upnphost;UPnP Device Host;LocalServiceAndNoImpersonation->C:\Windows\System32\Upnphost.dll [436224 2013-08-22 09:05:29 Microsoft Corporation]C:\Windows\System32\Upnphost.dll [436224 2013-08-22 09:05:29 Microsoft Corporation]
S3 usbcir;eHome Infrared Receiver (USBCIR);C:\Windows\System32\Drivers\Usbcir.sys [98304 2013-08-22 11:38:36 Microsoft Corporation]
S3 usbohci;Microsoft USB Open Host Controller Miniport Driver;C:\Windows\System32\Drivers\Usbohci.sys [30208 2013-08-22 11:39:27 Microsoft Corporation]
S3 usbprint;Microsoft USB PRINTER Class;C:\Windows\System32\Drivers\Usbprint.sys [26112 2013-08-22 11:36:36 Microsoft Corporation]
S3 USBSTOR;USB Mass Storage Driver;C:\Windows\System32\Drivers\Usbstor.sys [142688 2013-08-22 11:38:16 Microsoft Corporation]
S3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver;C:\Windows\System32\Drivers\Usbuhci.sys [34816 2013-08-22 11:39:28 Microsoft Corporation]
S3 vds;Virtual Disk;C:\Windows\System32\Vds.exe [1283584 2013-08-22 10:48:53 Microsoft Corporation]
S3 VerifierExt;VerifierExt;C:\Windows\System32\Drivers\Verifierext.sys [175960 2013-09-30 04:05:15 Microsoft Corporation]
S3 vhdmp;vhdmp;C:\Windows\System32\Drivers\Vhdmp.sys [551776 2013-08-22 11:37:06]
S3 viaide;viaide;C:\Windows\System32\Drivers\Viaide.sys [19808 2013-08-22 12:22:58 VIA Technologies, Inc.]
S3 vmbus;Virtual Machine Bus;C:\Windows\System32\Drivers\Vmbus.sys [97088 2013-08-22 11:36:39 Microsoft Corporation]
S3 VMBusHID;VMBusHID;C:\Windows\System32\Drivers\Vmbushid.sys [21760 2013-08-22 11:37:54 Microsoft Corporation]
S3 vmicguestinterface;Hyper-V Guest Service Interface;LocalSystemNetworkRestricted->C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]
S3 vmicheartbeat;Hyper-V Heartbeat Service;ICService->C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]
S3 vmickvpexchange;Hyper-V Data Exchange Service;LocalSystemNetworkRestricted->C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]
S3 vmicrdv;Hyper-V Remote Desktop Virtualization Service;ICService->C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]
S3 vmicshutdown;Hyper-V Guest Shutdown Service;LocalSystemNetworkRestricted->C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]
S3 vmictimesync;Hyper-V Time Synchronization Service;LocalServiceNetworkRestricted->C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]
S3 vmicvss;Hyper-V Volume Shadow Copy Requestor;LocalSystemNetworkRestricted->C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]C:\Windows\System32\Icsvc.dll [517120 2013-08-22 10:19:51 Microsoft Corporation]
S3 vpci;Microsoft Hyper-V Virtual PCI Bus;C:\Windows\System32\Drivers\Vpci.sys [69472 2013-08-22 11:37:04 Microsoft Corporation]
S3 vsmraid;vsmraid;C:\Windows\System32\Drivers\Vsmraid.sys [168800 2013-08-22 07:01:09 VIA Technologies Inc.,Ltd]
S3 VSS;Volume Shadow Copy;C:\Windows\System32\Vssvc.exe [1436160 2013-08-22 09:19:21 Microsoft Corporation]
S3 VSTXRAID;VIA StorX Storage RAID Controller Windows Driver;C:\Windows\System32\Drivers\Vstxraid.sys [305504 2013-08-22 07:01:10 VIA Corporation]
S3 W32Time;Windows Time;LocalService->C:\Windows\System32\W32time.dll [404480 2013-08-22 09:59:35 Microsoft Corporation]C:\Windows\System32\W32time.dll [404480 2013-08-22 09:59:35 Microsoft Corporation]
S3 w3logsvc;W3C Logging Service;apphost->C:\Windows\System32\Inetsrv\W3logsvc.dll [76800 2013-11-08 21:02:44]C:\Windows\System32\Inetsrv\W3logsvc.dll [76800 2013-11-08 21:02:44]
S3 WacomPen;Wacom Serial Pen HID Driver;C:\Windows\System32\Drivers\Wacompen.sys [26752 2013-08-22 11:39:23 Microsoft Corporation]
S3 WAS;Windows Process Activation Service;iissvcs->C:\Windows\System32\Inetsrv\Iisw3adm.dll [546304 2013-11-08 21:02:47]C:\Windows\System32\Inetsrv\Iisw3adm.dll [546304 2013-11-08 21:02:47]
S3 wbengine;Block Level Backup Engine Service;C:\Windows\System32\Wbengine.exe [1542144 2013-08-22 10:18:25 Microsoft Corporation]
S3 WbioSrvc;Windows Biometric Service;WbioSvcGroup->C:\Windows\System32\Wbiosrvc.dll [453632 2013-09-30 04:05:16 Microsoft Corporation]C:\Windows\System32\Wbiosrvc.dll [453632 2013-09-30 04:05:16 Microsoft Corporation]
S3 wcncsvc;Windows Connect Now - Config Registrar;LocalServiceAndNoImpersonation->C:\Windows\System32\Wcncsvc.dll [459776 2013-09-30 04:05:17]C:\Windows\System32\Wcncsvc.dll [459776 2013-09-30 04:05:17]
S3 WcsPlugInService;Windows Colour System;wcssvc->C:\Windows\System32\Wcspluginservice.dll [41984 2013-08-22 11:01:15]C:\Windows\System32\Wcspluginservice.dll [41984 2013-08-22 11:01:15]
S3 WdBoot;Windows Defender Boot Driver;C:\Windows\System32\Drivers\Wdboot.sys [34760 2013-08-22 11:38:33 Microsoft Corporation]
S3 WdFilter;Windows Defender Mini-Filter Driver;C:\Windows\System32\Drivers\Wdfilter.sys [265056 2013-08-22 11:39:35 Microsoft Corporation]
S3 WdNisDrv;Windows Defender Network Inspection System Driver;C:\Windows\System32\Drivers\Wdnisdrv.sys [124256 2013-08-22 11:35:38 Microsoft Corporation]
S3 WdNisSvc;Windows Defender Network Inspection Service;C:\Program files\Windows defender\Nissrv.exe [346872 2013-08-22 10:27:29 Microsoft Corporation]
S3 WebClient;WebClient;LocalService->C:\Windows\System32\Webclnt.dll [226816 2013-08-22 11:13:15 Microsoft Corporation]C:\Windows\System32\Webclnt.dll [226816 2013-08-22 11:13:15 Microsoft Corporation]
S3 Wecsvc;Windows Event Collector;NetworkService->C:\Windows\System32\Wecsvc.dll [215040 2013-08-22 09:35:45 Microsoft Corporation]C:\Windows\System32\Wecsvc.dll [215040 2013-08-22 09:35:45 Microsoft Corporation]
S3 WEPHOSTSVC;Windows Encryption Provider Host Service;WepHostSvcGroup->C:\Windows\System32\Wephostsvc.dll [24576 2013-08-22 11:32:17 Microsoft Corporation]C:\Windows\System32\Wephostsvc.dll [24576 2013-08-22 11:32:17 Microsoft Corporation]
S3 wercplsupport;Problem Reports and Solutions Control Panel Support;netsvcs->C:\Windows\System32\Wercplsupport.dll [81408 2013-08-22 10:54:55]C:\Windows\System32\Wercplsupport.dll [81408 2013-08-22 10:54:55]
S3 WiaRpc;Still Image Acquisition Events;LocalSystemNetworkRestricted->C:\Windows\System32\Wiarpc.dll [66048 2013-08-22 11:23:01]C:\Windows\System32\Wiarpc.dll [66048 2013-08-22 11:23:01]
S3 WIMMount;WIMMount;C:\Windows\System32\Drivers\Wimmount.sys [33632 2013-08-22 11:39:47 Microsoft Corporation]
S3 WinDefend;Windows Defender Service;C:\Program files\Windows defender\Msmpeng.exe [23840 2013-08-22 11:30:34 Microsoft Corporation]
S3 WinRM;Windows Remote Management (WS-Management);NetworkService->C:\Windows\System32\Wsmsvc.dll [2479616 2013-08-22 09:36:39 Microsoft Corporation]C:\Windows\System32\Wsmsvc.dll [2479616 2013-08-22 09:36:39 Microsoft Corporation]
S3 WirelessButtonDriver;HP Wireless Button Driver Service;C:\Windows\System32\Drivers\Wirelessbuttondriver64.sys [20288 2012-08-03 11:07:30 Hewlett-Packard Development Company, L.P.]
S3 wmiApSrv;WMI Performance Adapter;C:\Windows\System32\Wbem\Wmiapsrv.exe [195072 2013-08-22 09:48:22 Microsoft Corporation]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service;C:\Program files\Windows media player\Wmpnetwk.exe [1402368 2013-08-22 10:10:51]
S3 workfolderssvc;Work Folders;LocalService->C:\Windows\System32\Workfolderssvc.dll [1581568 2013-09-30 04:05:22]C:\Windows\System32\Workfolderssvc.dll [1581568 2013-09-30 04:05:22]
S3 wpcfltr;Family Safety Filter Driver;C:\Windows\System32\Drivers\Wpcfltr.sys [54304 2013-08-22 11:36:52 Microsoft Corporation]
S3 WPCSvc;Family Safety;LocalServiceNetworkRestricted->C:\Windows\System32\Wpcsvc.dll [12288 2013-08-22 10:01:28 Microsoft Corporation]C:\Windows\System32\Wpcsvc.dll [12288 2013-08-22 10:01:28 Microsoft Corporation]
S3 WPDBusEnum;Portable Device Enumerator Service;LocalSystemNetworkRestricted->C:\Windows\System32\Wpdbusenum.dll [84480 2013-08-22 09:08:20 Microsoft Corporation]C:\Windows\System32\Wpdbusenum.dll [84480 2013-08-22 09:08:20 Microsoft Corporation]
S3 WpdUpFltr;WPD Upper Class Filter Driver;C:\Windows\System32\Drivers\Wpdupfltr.sys [26976 2013-08-22 11:38:58 Microsoft Corporation]
S3 WSService;Windows Store Service (WSService);wsappx->C:\Windows\System32\Wsservice.dll [3395928 2013-08-22 09:32:33 Microsoft Corporation]C:\Windows\System32\Wsservice.dll [3395928 2013-08-22 09:32:33 Microsoft Corporation]
S3 wuauserv;Windows Update;netsvcs->C:\Windows\System32\Wuaueng.dll [3524096 2013-09-30 04:05:16]C:\Windows\System32\Wuaueng.dll [3524096 2013-09-30 04:05:16]
S3 WudfPf;User Mode Driver Frameworks Platform Driver;C:\Windows\System32\Drivers\Wudfpf.sys [117760 2013-08-22 11:37:23]
S3 WUDFRd;Windows Driver Foundation - User-mode Driver Framework Reflector;C:\Windows\System32\Drivers\Wudfrd.sys [230912 2013-08-22 11:36:50 Microsoft Corporation]
S3 wudfsvc;Windows Driver Foundation - User-mode Driver Framework;LocalSystemNetworkRestricted->C:\Windows\System32\Wudfsvc.dll [100352 2013-08-22 09:54:05]C:\Windows\System32\Wudfsvc.dll [100352 2013-08-22 09:54:05]
S3 WUDFWpdFs;WUDFWpdFs;C:\Windows\System32\Drivers\Wudfrd.sys [230912 2013-08-22 11:36:50 Microsoft Corporation]
S3 WwanSvc;WWAN AutoConfig;LocalServiceNoNetwork->C:\Windows\System32\Wwansvc.dll [510464 2013-08-22 09:25:33 Microsoft Corporation]C:\Windows\System32\Wwansvc.dll [510464 2013-08-22 09:25:33 Microsoft Corporation]
S4 cdfs;CD/DVD File System Reader;C:\Windows\System32\Drivers\Cdfs.sys [88576 2013-08-22 11:40:20 Microsoft Corporation]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service;C:\Windows\Microsoft.net\Framework64\V4.0.30319\Smsvchost.exe [139856 2013-08-22 06:42:19 Microsoft Corporation]
S4 RemoteAccess;Routing and Remote Access;netsvcs->C:\Windows\System32\Mprdim.dll [223744 2013-08-22 11:13:09 Microsoft Corporation]C:\Windows\System32\Mprdim.dll [223744 2013-08-22 11:13:09 Microsoft Corporation]
S4 RemoteRegistry;Remote Registry;localService->C:\Windows\System32\Regsvc.dll [164864 2013-08-22 10:02:37 Microsoft Corporation]C:\Windows\System32\Regsvc.dll [164864 2013-08-22 10:02:37 Microsoft Corporation]
S4 SCardSvr;Smart Card;LocalServiceAndNoImpersonation->C:\Windows\System32\Scardsvr.dll [188416 2013-08-22 11:20:10]C:\Windows\System32\Scardsvr.dll [188416 2013-08-22 11:20:10]
S4 SharedAccess;Internet Connection Sharing (ICS);netsvcs->C:\Windows\System32\Ipnathlp.dll [433152 2013-08-22 09:35:04 Microsoft Corporation]C:\Windows\System32\Ipnathlp.dll [433152 2013-08-22 09:35:04 Microsoft Corporation]
S4 udfs;udfs;C:\Windows\System32\Drivers\Udfs.sys [316928 2013-08-22 11:40:26 Microsoft Corporation]
S4 ws2ifsl;Winsock IFS Driver;C:\Windows\System32\Drivers\Ws2ifsl.sys [21504 2013-08-22 11:40:12 Microsoft Corporation]
 
================= Created Last 30 ================
 
2013-12-13 17:43:58 . 2013-12-13 17:43:58          0 d-----w- C:\Program Files (x86)\Common Files\Skype
2013-12-13 17:43:58 . 2013-12-13 17:43:58          0 d-----r- C:\Program Files (x86)\Skype
2013-12-13 10:19:10 . 2013-11-11 23:41:31     189952 ----a-w- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-13 10:19:10 . 2013-11-04 01:30:33    1765376 ----a-w- C:\WINDOWS\SysWow64\dwmcore.dll
2013-12-13 10:19:10 . 2013-11-11 23:27:10     701440 ----a-w- C:\WINDOWS\SysWow64\WSShared.dll
2013-12-13 10:19:10 . 2013-11-08 04:26:19   11674624 ----a-w- C:\WINDOWS\SysWow64\twinui.dll
2013-12-13 10:19:10 . 2013-11-04 11:50:18    2143744 ----a-w- C:\WINDOWS\System32\dwmcore.dll
2013-12-13 10:19:10 . 2013-11-04 10:32:53    2570240 ----a-w- C:\WINDOWS\System32\SettingsHandlers.dll
2013-12-13 10:19:09 . 2013-11-11 23:24:12     840704 ----a-w- C:\WINDOWS\System32\WSShared.dll
2013-12-13 10:19:09 . 2013-11-08 04:28:40   13177344 ----a-w- C:\WINDOWS\System32\twinui.dll
2013-12-13 10:19:08 . 2013-11-04 17:13:19    1530200 ----a-w- C:\WINDOWS\System32\drivers\dxgkrnl.sys
2013-12-13 10:19:08 . 2013-11-11 02:48:41      39768 ----a-w- C:\WINDOWS\System32\drivers\intelpep.sys
2013-12-13 10:19:08 . 2013-10-31 00:58:59     372568 ----a-w- C:\WINDOWS\System32\drivers\spaceport.sys
2013-12-13 10:19:08 . 2013-10-31 00:42:16    7399256 ----a-w- C:\WINDOWS\System32\ntoskrnl.exe
2013-12-13 10:19:06 . 2013-10-10 11:21:32     139776 ----a-w- C:\WINDOWS\SysWow64\AppxAllUserStore.dll
2013-12-13 10:18:31 . 2013-11-26 11:54:49   23183360 ----a-w- C:\WINDOWS\System32\mshtml.dll
2013-12-13 10:18:30 . 2013-11-26 10:11:50   17112576 ----a-w- C:\WINDOWS\SysWow64\mshtml.dll
2013-12-13 10:18:29 . 2013-11-26 08:35:02    5769216 ----a-w- C:\WINDOWS\System32\jscript9.dll
2013-12-13 10:18:14 . 2013-10-19 08:53:14      75360 ----a-w- C:\WINDOWS\System32\imagehlp.dll
2013-12-13 10:18:14 . 2013-10-19 07:14:14      70680 ----a-w- C:\WINDOWS\SysWow64\imagehlp.dll
2013-12-13 10:18:13 . 2013-10-15 08:54:42     197120 ----a-w- C:\WINDOWS\System32\scrrun.dll
2013-12-13 10:18:13 . 2013-10-15 08:03:28     156672 ----a-w- C:\WINDOWS\SysWow64\scrrun.dll
2013-12-13 10:18:13 . 2013-11-23 04:13:51     348160 ----a-w- C:\WINDOWS\SysWow64\WMPhoto.dll
2013-12-13 10:18:13 . 2013-11-23 04:34:43     393216 ----a-w- C:\WINDOWS\System32\WMPhoto.dll
2013-12-13 10:17:21 . 2013-11-23 03:32:09    4105728 ----a-w- C:\WINDOWS\System32\SyncEngine.dll
2013-12-13 10:17:21 . 2013-11-23 03:10:49     568832 ----a-w- C:\WINDOWS\System32\SkyDrive.exe
2013-12-13 10:17:04 . 2013-10-11 13:03:50     621056 ----a-w- C:\WINDOWS\SysWow64\MrmCoreR.dll
2013-12-13 10:17:04 . 2013-10-11 13:24:25     909312 ----a-w- C:\WINDOWS\System32\MrmCoreR.dll
2013-12-13 10:16:58 . 2013-11-09 06:34:01     287744 ----a-w- C:\WINDOWS\System32\mdmregistration.dll
2013-12-13 10:16:58 . 2013-11-09 06:34:14     615936 ----a-w- C:\WINDOWS\System32\MDMAgent.exe
2013-12-13 10:16:58 . 2013-11-09 04:56:32     414720 ----a-w- C:\WINDOWS\System32\wbem\MDMSettingsProv.dll
2013-12-13 10:16:58 . 2013-11-09 05:52:04     240128 ----a-w- C:\WINDOWS\SysWow64\mdmregistration.dll
2013-12-13 10:16:58 . 2013-11-09 05:09:32     156672 ----a-w- C:\WINDOWS\System32\wbem\MDMAppProv.dll
2013-12-13 10:16:58 . 2013-11-09 00:41:38      17164 ----a-w- C:\WINDOWS\System32\wbem\MDMSettingsProv.mof
2013-12-13 10:16:58 . 2013-11-09 00:41:38       3112 ----a-w- C:\WINDOWS\System32\wbem\MDMSettingsProv_Uninstall.mof
2013-12-13 10:16:58 . 2013-11-09 00:41:37       5456 ----a-w- C:\WINDOWS\System32\wbem\MDMAppProv.mof
2013-12-13 10:16:58 . 2013-11-09 00:41:37       1774 ----a-w- C:\WINDOWS\System32\wbem\MDMAppProv_Uninstall.mof
2013-12-13 10:16:57 . 2013-11-08 07:21:59    4191744 ----a-w- C:\WINDOWS\System32\win32k.sys
2013-12-10 19:27:13 . 2013-12-16 19:37:28          0 d-----w- C:\Users\Aaron Fareast\AppData\Roaming\Dropbox
2013-12-10 18:51:00 . 2013-12-10 18:51:27          0 d-----w- C:\Users\Aaron Fareast\AppData\Roaming\Comodo
2013-12-02 16:15:26 . 2013-10-30 17:03:12      39200 ----a-w- C:\WINDOWS\System32\drivers\nvvad64v.sys
2013-12-02 16:15:26 . 2013-10-30 17:02:56      32544 ----a-w- C:\WINDOWS\SysWow64\nvaudcap32v.dll
2013-11-28 19:22:15 . 2013-11-28 19:22:15          0 d-----w- C:\WINDOWS\Minidump
2013-11-28 19:22:13 . 2013-11-28 19:22:13  634454191 ----a-w- C:\WINDOWS\MEMORY.DMP
2013-11-28 19:05:39 . 2013-11-28 19:05:39          0 d-----w- C:\ProgramData\Orbit
2013-11-28 18:26:59 . 2013-11-28 18:26:59          0 d-----w- C:\Program Files (x86)\Ubisoft
2013-11-28 17:15:59 . 2013-11-28 19:05:28          0 d-----w- C:\Program Files (x86)\Assassins Creed IV Black Flag
2013-11-26 11:53:06 . 2013-11-26 12:28:13          0 d-----w- C:\Program Files (x86)\ENSLAVED Odyssey to the West Premium Edition
2013-11-25 09:04:45 . 2013-11-26 13:06:07          0 d-----w- C:\Program Files (x86)\Call of Duty Ghosts
2013-11-24 23:31:57 . 2013-11-24 23:31:57          0 d-----w- C:\Users\Aaron Fareast\AppData\Roaming\NVIDIA
2013-11-24 23:30:31 . 2013-11-24 23:30:31          0 d-----w- C:\ProgramData\Steam
2013-11-24 23:24:21 . 2009-09-04 15:44:40     515416 ----a-w- C:\WINDOWS\SysWow64\XAudio2_5.dll
2013-11-24 23:24:19 . 2009-09-04 15:29:34     453456 ----a-w- C:\WINDOWS\SysWow64\d3dx10_42.dll
2013-11-24 23:24:19 . 2009-09-04 15:29:24     523088 ----a-w- C:\WINDOWS\System32\d3dx10_42.dll
2013-11-24 23:24:15 . 2009-09-04 15:44:40      69464 ----a-w- C:\WINDOWS\SysWow64\XAPOFX1_3.dll
2013-11-24 23:24:13 . 2008-10-15 04:22:52    2605920 ----a-w- C:\WINDOWS\System32\D3DCompiler_40.dll
2013-11-24 23:24:13 . 2008-10-15 04:22:52    2036576 ----a-w- C:\WINDOWS\SysWow64\D3DCompiler_40.dll
2013-11-24 23:24:13 . 2008-10-15 04:22:52     519000 ----a-w- C:\WINDOWS\System32\d3dx10_40.dll
2013-11-24 23:24:13 . 2008-10-15 04:22:52     452440 ----a-w- C:\WINDOWS\SysWow64\d3dx10_40.dll
2013-11-24 23:24:12 . 2008-10-15 04:22:52    5631312 ----a-w- C:\WINDOWS\System32\D3DX9_40.dll
2013-11-24 23:24:12 . 2008-10-15 04:22:52    4379984 ----a-w- C:\WINDOWS\SysWow64\D3DX9_40.dll
2013-11-24 23:23:51 . 2006-11-29 11:06:18    4398360 ----a-w- C:\WINDOWS\System32\d3dx9_32.dll
2013-11-24 23:23:51 . 2006-11-29 11:06:18    3426072 ----a-w- C:\WINDOWS\SysWow64\d3dx9_32.dll
2013-11-24 22:27:20 . 2013-11-24 22:41:47          0 d-----w- C:\Program Files (x86)\Batman Arkham Origins
2013-11-24 22:25:14 . 2013-11-24 22:25:14          0 d-----w- C:\Program Files (x86)\Microsoft XNA
2013-11-24 22:07:20 . 2010-06-02 02:55:30      77656 ----a-w- C:\WINDOWS\System32\XAPOFX1_5.dll
2013-11-24 22:07:16 . 2010-02-04 08:01:14      78680 ----a-w- C:\WINDOWS\System32\XAPOFX1_4.dll
2013-11-24 22:07:16 . 2010-02-04 08:01:14      74072 ----a-w- C:\WINDOWS\SysWow64\XAPOFX1_4.dll
2013-11-24 22:07:16 . 2010-02-04 08:01:14     530776 ----a-w- C:\WINDOWS\System32\XAudio2_6.dll
2013-11-24 22:07:16 . 2010-02-04 08:01:14     528216 ----a-w- C:\WINDOWS\SysWow64\XAudio2_6.dll
2013-11-24 22:07:15 . 2010-02-04 08:01:14     238936 ----a-w- C:\WINDOWS\SysWow64\xactengine3_6.dll
2013-11-24 22:07:15 . 2010-02-04 08:01:14     176984 ----a-w- C:\WINDOWS\System32\xactengine3_6.dll
2013-11-24 22:07:15 . 2010-02-04 08:01:14      24920 ----a-w- C:\WINDOWS\System32\X3DAudio1_7.dll
2013-11-24 22:07:15 . 2010-02-04 08:01:14      22360 ----a-w- C:\WINDOWS\SysWow64\X3DAudio1_7.dll
2013-11-24 22:07:14 . 2009-09-04 15:44:40     517960 ----a-w- C:\WINDOWS\System32\XAudio2_5.dll
2013-11-24 22:07:09 . 2009-09-04 15:44:42      73544 ----a-w- C:\WINDOWS\System32\XAPOFX1_3.dll
2013-11-24 22:07:09 . 2009-03-16 12:18:32     521560 ----a-w- C:\WINDOWS\System32\XAudio2_4.dll
2013-11-24 22:07:09 . 2009-03-16 12:18:32     517448 ----a-w- C:\WINDOWS\SysWow64\XAudio2_4.dll
2013-11-24 22:07:09 . 2009-03-16 12:18:32     235352 ----a-w- C:\WINDOWS\SysWow64\xactengine3_4.dll
2013-11-24 22:07:09 . 2009-03-16 12:18:32     174936 ----a-w- C:\WINDOWS\System32\xactengine3_4.dll
2013-11-24 22:07:08 . 2009-03-16 12:18:32      24920 ----a-w- C:\WINDOWS\System32\X3DAudio1_6.dll
2013-11-24 22:07:08 . 2009-03-16 12:18:32      22360 ----a-w- C:\WINDOWS\SysWow64\X3DAudio1_6.dll
2013-11-24 22:07:07 . 2008-10-27 08:04:16      74576 ----a-w- C:\WINDOWS\System32\XAPOFX1_2.dll
2013-11-24 22:07:07 . 2008-10-27 08:04:14      70992 ----a-w- C:\WINDOWS\SysWow64\XAPOFX1_2.dll
2013-11-24 22:07:07 . 2008-10-27 08:04:18     518480 ----a-w- C:\WINDOWS\System32\XAudio2_3.dll
2013-11-24 22:07:07 . 2008-10-27 08:04:18     514384 ----a-w- C:\WINDOWS\SysWow64\XAudio2_3.dll
2013-11-24 22:07:06 . 2008-10-27 08:04:16     235856 ----a-w- C:\WINDOWS\SysWow64\xactengine3_3.dll
2013-11-24 22:07:06 . 2008-10-27 08:04:16     175440 ----a-w- C:\WINDOWS\System32\xactengine3_3.dll
2013-11-24 22:07:05 . 2008-10-27 08:04:16      25936 ----a-w- C:\WINDOWS\System32\X3DAudio1_5.dll
2013-11-24 22:07:05 . 2008-10-27 08:04:16      23376 ----a-w- C:\WINDOWS\SysWow64\X3DAudio1_5.dll
2013-11-24 22:07:04 . 2008-07-31 08:41:52      72200 ----a-w- C:\WINDOWS\System32\XAPOFX1_1.dll
2013-11-24 22:06:59 . 2008-03-05 14:03:20     238088 ----a-w- C:\WINDOWS\SysWow64\xactengine3_0.dll
2013-11-24 22:06:59 . 2008-03-05 14:03:04     177672 ----a-w- C:\WINDOWS\System32\xactengine3_0.dll
2013-11-24 22:06:58 . 2008-03-05 14:00:06      28168 ----a-w- C:\WINDOWS\System32\X3DAudio1_3.dll
2013-11-24 22:06:58 . 2008-03-05 14:00:06      25608 ----a-w- C:\WINDOWS\SysWow64\X3DAudio1_3.dll
2013-11-24 22:06:58 . 2008-03-05 13:56:58    1860120 ----a-w- C:\WINDOWS\System32\D3DCompiler_37.dll
2013-11-24 22:06:58 . 2008-03-05 13:56:58    1420824 ----a-w- C:\WINDOWS\SysWow64\D3DCompiler_37.dll
2013-11-24 22:06:58 . 2008-02-05 21:07:36     462864 ----a-w- C:\WINDOWS\SysWow64\d3dx10_37.dll
2013-11-24 22:06:58 . 2008-02-05 21:07:32     529424 ----a-w- C:\WINDOWS\System32\d3dx10_37.dll
2013-11-24 22:06:57 . 2008-03-05 13:56:58    4910088 ----a-w- C:\WINDOWS\System32\D3DX9_37.dll
 
Too many files to show.  Most recent 100 files shown above.
 
===================== Find3M =====================
 
2013-12-13 10:19:53 . 2013-12-13 10:19:53      17284 ----a-w- C:\WINDOWS\System32\Wbem\AutoRecover\2572593894B364FF5F52C71028D4F15D.mof
2013-12-13 10:19:53 . 2013-12-13 10:19:53       5566 ----a-w- C:\WINDOWS\System32\Wbem\AutoRecover\D25265C6C0C1FDB772A072DF622B5BD8.mof
2013-12-13 10:19:11 . 2013-10-12 22:24:27      41472 ----a-w- C:\WINDOWS\apppatch\apppatch64\acspecfc.dll
2013-12-13 10:19:11 . 2013-11-09 06:55:17     303104 ----a-w- C:\WINDOWS\apppatch\apppatch64\AcGenral.dll
2013-12-13 10:19:11 . 2013-11-09 06:05:53    2415104 ----a-w- C:\WINDOWS\apppatch\AcGenral.dll
2013-12-13 10:19:10 . 2013-11-09 06:13:07     442880 ----a-w- C:\WINDOWS\apppatch\AcSpecfc.dll
2013-12-13 10:19:10 . 2013-11-11 23:41:31     189952 ----a-w- C:\WINDOWS\Syswow64\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-13 10:19:10 . 2013-11-04 01:30:33    1765376 ----a-w- C:\WINDOWS\Syswow64\dwmcore.dll
2013-12-13 10:19:10 . 2013-11-11 23:27:10     701440 ----a-w- C:\WINDOWS\Syswow64\WSShared.dll
2013-12-13 10:19:10 . 2013-11-08 04:26:19   11674624 ----a-w- C:\WINDOWS\Syswow64\twinui.dll
2013-12-13 10:19:10 . 2013-11-04 11:50:18    2143744 ----a-w- C:\WINDOWS\system32\dwmcore.dll
2013-12-13 10:19:10 . 2013-11-04 10:32:53    2570240 ----a-w- C:\WINDOWS\system32\SettingsHandlers.dll
2013-12-13 10:19:09 . 2013-11-11 23:24:12     840704 ----a-w- C:\WINDOWS\system32\WSShared.dll
2013-12-13 10:19:09 . 2013-11-08 04:28:40   13177344 ----a-w- C:\WINDOWS\system32\twinui.dll
2013-12-13 10:19:08 . 2013-10-31 00:42:16    7399256 ----a-w- C:\WINDOWS\system32\ntoskrnl.exe
2013-12-13 10:18:31 . 2013-11-26 11:54:49   23183360 ----a-w- C:\WINDOWS\system32\mshtml.dll
2013-12-13 10:18:30 . 2013-11-26 10:11:50   17112576 ----a-w- C:\WINDOWS\Syswow64\mshtml.dll
2013-12-13 10:18:29 . 2013-11-26 08:35:02    5769216 ----a-w- C:\WINDOWS\system32\jscript9.dll
2013-12-13 10:18:14 . 2013-10-19 08:53:14      75360 ----a-w- C:\WINDOWS\system32\imagehlp.dll
2013-12-13 10:18:14 . 2013-10-19 07:14:14      70680 ----a-w- C:\WINDOWS\Syswow64\imagehlp.dll
2013-12-13 10:18:13 . 2013-10-15 08:54:42     197120 ----a-w- C:\WINDOWS\system32\scrrun.dll
2013-12-13 10:18:13 . 2013-10-15 08:03:28     156672 ----a-w- C:\WINDOWS\Syswow64\scrrun.dll
2013-12-13 10:18:13 . 2013-11-23 04:13:51     348160 ----a-w- C:\WINDOWS\Syswow64\WMPhoto.dll
2013-12-13 10:18:13 . 2013-11-23 04:34:43     393216 ----a-w- C:\WINDOWS\system32\WMPhoto.dll
2013-12-13 10:17:21 . 2013-11-23 03:32:09    4105728 ----a-w- C:\WINDOWS\system32\SyncEngine.dll
2013-12-13 10:17:21 . 2013-11-23 03:10:49     568832 ----a-w- C:\WINDOWS\system32\SkyDrive.exe
2013-12-13 10:17:04 . 2013-10-11 13:03:50     621056 ----a-w- C:\WINDOWS\Syswow64\MrmCoreR.dll
2013-12-13 10:17:04 . 2013-10-11 13:24:25     909312 ----a-w- C:\WINDOWS\system32\MrmCoreR.dll
2013-12-13 10:16:58 . 2013-11-09 06:34:01     287744 ----a-w- C:\WINDOWS\system32\mdmregistration.dll
2013-12-13 10:16:58 . 2013-11-09 06:34:14     615936 ----a-w- C:\WINDOWS\system32\MDMAgent.exe
2013-12-13 10:16:58 . 2013-11-09 04:56:32     414720 ----a-w- C:\WINDOWS\System32\Wbem\MDMSettingsProv.dll
2013-12-13 10:16:58 . 2013-11-09 05:52:04     240128 ----a-w- C:\WINDOWS\Syswow64\mdmregistration.dll
2013-12-13 10:16:58 . 2013-11-09 05:09:32     156672 ----a-w- C:\WINDOWS\System32\Wbem\MDMAppProv.dll
2013-12-13 10:16:58 . 2013-11-09 00:41:38      17164 ----a-w- C:\WINDOWS\System32\Wbem\MDMSettingsProv.mof
2013-12-13 10:16:58 . 2013-11-09 00:41:38       3112 ----a-w- C:\WINDOWS\System32\Wbem\MDMSettingsProv_Uninstall.mof
2013-12-13 10:16:58 . 2013-11-09 00:41:37       5456 ----a-w- C:\WINDOWS\System32\Wbem\MDMAppProv.mof
2013-12-13 10:16:58 . 2013-11-09 00:41:37       1774 ----a-w- C:\WINDOWS\System32\Wbem\MDMAppProv_Uninstall.mof
2013-12-13 10:16:57 . 2013-11-08 07:21:59    4191744 ----a-w- C:\WINDOWS\system32\win32k.sys
2013-12-02 16:15:26 . 2013-10-30 17:02:56      32544 ----a-w- C:\WINDOWS\Syswow64\nvaudcap32v.dll
2013-11-24 23:24:21 . 2009-09-04 15:44:40     515416 ----a-w- C:\WINDOWS\Syswow64\XAudio2_5.dll
2013-11-24 23:24:19 . 2009-09-04 15:29:34     453456 ----a-w- C:\WINDOWS\Syswow64\d3dx10_42.dll
2013-11-24 23:24:19 . 2009-09-04 15:29:24     523088 ----a-w- C:\WINDOWS\system32\d3dx10_42.dll
2013-11-24 23:24:15 . 2009-09-04 15:44:40      69464 ----a-w- C:\WINDOWS\Syswow64\XAPOFX1_3.dll
2013-11-24 23:24:13 . 2008-10-15 04:22:52    2605920 ----a-w- C:\WINDOWS\system32\D3DCompiler_40.dll
2013-11-24 23:24:13 . 2008-10-15 04:22:52    2036576 ----a-w- C:\WINDOWS\Syswow64\D3DCompiler_40.dll
2013-11-24 23:24:13 . 2008-10-15 04:22:52     519000 ----a-w- C:\WINDOWS\system32\d3dx10_40.dll
2013-11-24 23:24:13 . 2008-10-15 04:22:52     452440 ----a-w- C:\WINDOWS\Syswow64\d3dx10_40.dll
2013-11-24 23:24:12 . 2008-10-15 04:22:52    5631312 ----a-w- C:\WINDOWS\system32\D3DX9_40.dll
2013-11-24 23:24:12 . 2008-10-15 04:22:52    4379984 ----a-w- C:\WINDOWS\Syswow64\D3DX9_40.dll
2013-11-24 23:23:51 . 2006-11-29 11:06:18    4398360 ----a-w- C:\WINDOWS\system32\d3dx9_32.dll
2013-11-24 23:23:51 . 2006-11-29 11:06:18    3426072 ----a-w- C:\WINDOWS\Syswow64\d3dx9_32.dll
2013-11-24 22:07:20 . 2010-06-02 02:55:30      77656 ----a-w- C:\WINDOWS\system32\XAPOFX1_5.dll
2013-11-24 22:07:16 . 2010-02-04 08:01:14      78680 ----a-w- C:\WINDOWS\system32\XAPOFX1_4.dll
2013-11-24 22:07:16 . 2010-02-04 08:01:14      74072 ----a-w- C:\WINDOWS\Syswow64\XAPOFX1_4.dll
2013-11-24 22:07:16 . 2010-02-04 08:01:14     530776 ----a-w- C:\WINDOWS\system32\XAudio2_6.dll
2013-11-24 22:07:16 . 2010-02-04 08:01:14     528216 ----a-w- C:\WINDOWS\Syswow64\XAudio2_6.dll
2013-11-24 22:07:15 . 2010-02-04 08:01:14     238936 ----a-w- C:\WINDOWS\Syswow64\xactengine3_6.dll
2013-11-24 22:07:15 . 2010-02-04 08:01:14     176984 ----a-w- C:\WINDOWS\system32\xactengine3_6.dll
2013-11-24 22:07:15 . 2010-02-04 08:01:14      24920 ----a-w- C:\WINDOWS\system32\X3DAudio1_7.dll
2013-11-24 22:07:15 . 2010-02-04 08:01:14      22360 ----a-w- C:\WINDOWS\Syswow64\X3DAudio1_7.dll
2013-11-24 22:07:14 . 2009-09-04 15:44:40     517960 ----a-w- C:\WINDOWS\system32\XAudio2_5.dll
2013-11-24 22:07:09 . 2009-09-04 15:44:42      73544 ----a-w- C:\WINDOWS\system32\XAPOFX1_3.dll
2013-11-24 22:07:09 . 2009-03-16 12:18:32     521560 ----a-w- C:\WINDOWS\system32\XAudio2_4.dll
2013-11-24 22:07:09 . 2009-03-16 12:18:32     517448 ----a-w- C:\WINDOWS\Syswow64\XAudio2_4.dll
2013-11-24 22:07:09 . 2009-03-16 12:18:32     235352 ----a-w- C:\WINDOWS\Syswow64\xactengine3_4.dll
2013-11-24 22:07:09 . 2009-03-16 12:18:32     174936 ----a-w- C:\WINDOWS\system32\xactengine3_4.dll
2013-11-24 22:07:08 . 2009-03-16 12:18:32      24920 ----a-w- C:\WINDOWS\system32\X3DAudio1_6.dll
2013-11-24 22:07:08 . 2009-03-16 12:18:32      22360 ----a-w- C:\WINDOWS\Syswow64\X3DAudio1_6.dll
2013-11-24 22:07:07 . 2008-10-27 08:04:16      74576 ----a-w- C:\WINDOWS\system32\XAPOFX1_2.dll
2013-11-24 22:07:07 . 2008-10-27 08:04:14      70992 ----a-w- C:\WINDOWS\Syswow64\XAPOFX1_2.dll
2013-11-24 22:07:07 . 2008-10-27 08:04:18     518480 ----a-w- C:\WINDOWS\system32\XAudio2_3.dll
2013-11-24 22:07:07 . 2008-10-27 08:04:18     514384 ----a-w- C:\WINDOWS\Syswow64\XAudio2_3.dll
2013-11-24 22:07:06 . 2008-10-27 08:04:16     235856 ----a-w- C:\WINDOWS\Syswow64\xactengine3_3.dll
2013-11-24 22:07:06 . 2008-10-27 08:04:16     175440 ----a-w- C:\WINDOWS\system32\xactengine3_3.dll
2013-11-24 22:07:05 . 2008-10-27 08:04:16      25936 ----a-w- C:\WINDOWS\system32\X3DAudio1_5.dll
2013-11-24 22:07:05 . 2008-10-27 08:04:16      23376 ----a-w- C:\WINDOWS\Syswow64\X3DAudio1_5.dll
2013-11-24 22:07:04 . 2008-07-31 08:41:52      72200 ----a-w- C:\WINDOWS\system32\XAPOFX1_1.dll
2013-11-24 22:06:59 . 2008-03-05 14:03:20     238088 ----a-w- C:\WINDOWS\Syswow64\xactengine3_0.dll
2013-11-24 22:06:59 . 2008-03-05 14:03:04     177672 ----a-w- C:\WINDOWS\system32\xactengine3_0.dll
2013-11-24 22:06:58 . 2008-03-05 14:00:06      28168 ----a-w- C:\WINDOWS\system32\X3DAudio1_3.dll
2013-11-24 22:06:58 . 2008-03-05 14:00:06      25608 ----a-w- C:\WINDOWS\Syswow64\X3DAudio1_3.dll
2013-11-24 22:06:58 . 2008-03-05 13:56:58    1860120 ----a-w- C:\WINDOWS\system32\D3DCompiler_37.dll
2013-11-24 22:06:58 . 2008-03-05 13:56:58    1420824 ----a-w- C:\WINDOWS\Syswow64\D3DCompiler_37.dll
2013-11-24 22:06:58 . 2008-02-05 21:07:36     462864 ----a-w- C:\WINDOWS\Syswow64\d3dx10_37.dll
2013-11-24 22:06:58 . 2008-02-05 21:07:32     529424 ----a-w- C:\WINDOWS\system32\d3dx10_37.dll
2013-11-24 22:06:57 . 2008-03-05 13:56:58    4910088 ----a-w- C:\WINDOWS\system32\D3DX9_37.dll
2013-11-24 22:06:57 . 2008-03-05 13:56:58    3786760 ----a-w- C:\WINDOWS\Syswow64\D3DX9_37.dll
2013-11-24 22:06:56 . 2007-10-22 01:40:16     411656 ----a-w- C:\WINDOWS\system32\xactengine2_10.dll
2013-11-24 22:06:56 . 2007-10-22 01:39:54     267272 ----a-w- C:\WINDOWS\Syswow64\xactengine2_10.dll
2013-11-24 22:06:55 . 2007-10-02 07:56:34     444776 ----a-w- C:\WINDOWS\Syswow64\d3dx10_36.dll
2013-11-24 22:06:55 . 2007-10-02 07:56:30     508264 ----a-w- C:\WINDOWS\system32\d3dx10_36.dll
2013-11-24 22:06:55 . 2007-10-12 13:14:00    2006552 ----a-w- C:\WINDOWS\system32\D3DCompiler_36.dll
2013-11-24 22:06:55 . 2007-10-12 13:14:00    1374232 ----a-w- C:\WINDOWS\Syswow64\D3DCompiler_36.dll
2013-11-24 22:06:55 . 2007-10-12 13:14:00    5081608 ----a-w- C:\WINDOWS\system32\d3dx9_36.dll
2013-11-24 22:06:55 . 2007-10-12 13:14:00    3734536 ----a-w- C:\WINDOWS\Syswow64\d3dx9_36.dll
2013-11-24 22:06:54 . 2007-07-19 22:57:44     411496 ----a-w- C:\WINDOWS\system32\xactengine2_9.dll
2013-11-24 22:06:45 . 2006-03-31 10:40:06     352464 ----a-w- C:\WINDOWS\system32\xactengine2_1.dll
2013-11-24 22:06:45 . 2006-03-31 10:39:48     229584 ----a-w- C:\WINDOWS\Syswow64\xactengine2_1.dll
2013-11-24 22:06:43 . 2006-03-31 10:41:02    3927248 ----a-w- C:\WINDOWS\system32\d3dx9_30.dll
2013-11-24 22:06:39 . 2005-02-05 17:45:56    3544272 ----a-w- C:\WINDOWS\system32\d3dx9_24.dll
 
Too many files to show.  Most recent 100 files shown above.
 
================== Event Viewer ==================
 
2013-12-10 08:00:00, Error: DistributedCOM [10016] The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID #r#n{C2F03A33-21F5-47FA-B4BB-156362A2F239}#r#n and APPID #r#n{316CDED5-E4AE-4B15-9113-7055D84DCC97}#r#n to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
2013-12-11 08:00:00, Error: DistributedCOM [10016] The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID #r#n{C2F03A33-21F5-47FA-B4BB-156362A2F239}#r#n and APPID #r#n{316CDED5-E4AE-4B15-9113-7055D84DCC97}#r#n to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
2013-12-12 08:00:00, Error: DistributedCOM [10016] The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID #r#n{C2F03A33-21F5-47FA-B4BB-156362A2F239}#r#n and APPID #r#n{316CDED5-E4AE-4B15-9113-7055D84DCC97}#r#n to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
2013-12-13 03:17:00, Error: DistributedCOM [10016] The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID #r#n{D63B10C5-BB46-4990-A94F-E40B9D520160}#r#n and APPID #r#n{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}#r#n to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
2013-12-13 09:21:40, Error: DistributedCOM [10016] The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID #r#n{C2F03A33-21F5-47FA-B4BB-156362A2F239}#r#n and APPID #r#n{316CDED5-E4AE-4B15-9113-7055D84DCC97}#r#n to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
2013-12-13 10:07:32, Error: DistributedCOM [10016] The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID #r#n{C2F03A33-21F5-47FA-B4BB-156362A2F239}#r#n and APPID #r#n{316CDED5-E4AE-4B15-9113-7055D84DCC97}#r#n to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
2013-12-14 09:59:37, Error: DistributedCOM [10016] The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID #r#n{C2F03A33-21F5-47FA-B4BB-156362A2F239}#r#n and APPID #r#n{316CDED5-E4AE-4B15-9113-7055D84DCC97}#r#n to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
2013-12-16 08:31:58, Error: DistributedCOM [10016] The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID #r#n{C2F03A33-21F5-47FA-B4BB-156362A2F239}#r#n and APPID #r#n{316CDED5-E4AE-4B15-9113-7055D84DCC97}#r#n to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
2013-12-16 19:46:31, Error: Service Control Manager [3221232506] The BlueSoleilCS service terminated unexpectedly. It has done this 1 time(s).
2013-12-16 19:46:55, Error: Service Control Manager [3221232506] The BlueSoleilCS service terminated unexpectedly. It has done this 2 time(s).
2013-12-16 19:47:07, Error: Service Control Manager [3221232506] The BlueSoleilCS service terminated unexpectedly. It has done this 3 time(s).
2013-12-16 19:47:49, Error: Service Control Manager [3221232506] The BlueSoleilCS service terminated unexpectedly. It has done this 4 time(s).
2013-12-16 19:48:48, Error: Service Control Manager [3221232506] The BlueSoleilCS service terminated unexpectedly. It has done this 5 time(s).
2013-12-16 19:49:13, Error: Service Control Manager [3221232506] The BlueSoleilCS service terminated unexpectedly. It has done this 6 time(s).
2013-12-16 19:49:48, Error: Service Control Manager [3221232506] The BlueSoleilCS service terminated unexpectedly. It has done this 7 time(s).
2013-12-16 19:50:45, Error: Service Control Manager [3221232506] The BlueSoleilCS service terminated unexpectedly. It has done this 8 time(s).
2013-12-16 21:35:35, Error: Service Control Manager [3221232506] The BlueSoleilCS service terminated unexpectedly. It has done this 9 time(s).
2013-12-16 22:10:01, Error: Service Control Manager [3221232506] The BlueSoleilCS service terminated unexpectedly. It has done this 10 time(s).
 
============= Machine Specifications =============
 
Boot Device: C:
Install Date: 2013-11-08 21:36:26.0000
Booted at: 2013-12-13 13:34:06 (Up 3 Days 11 Hours 36 Minutes)
Motherboard: Hewlett-Packard 18FD
Processor: Intel® Core™ i5-3317U CPU @ 1.70GHz
C: is LOCAL - 226 GiB total, 113 GiB free
D: is LOCAL - 222 GiB total, 28 GiB free
E: is LOCAL - 16 GiB total, 2 GiB free
 
================= Restore Points =================
 
7 2013-11-28 18:02:59.0840 Installed DirectX
8 2013-12-04 15:52:34.0279 Wunderlist
9 2013-12-07 00:35:18.0416 Wunderlist
10 2013-12-13 10:14:15.0050 Removed Skype Click to Call
 
=============== Installed Programs ===============
 
Bonjour (version 3.0)
COMODO Internet Security Premium (version 6.3)
Energy Star (version 1.0)
HP 3D DriveGuard (version 4.2)
Microsoft Silverlight (version 5.1)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (version 9.0)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (version 9.0)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (version 9.0)
Microsoft Visual C++ 2010 # x64 Redistributable - 10.0.40219 (version 10.0)
NVIDIA GeForce Experience 1.8 (version 10.10)
NVIDIA Graphics Driver 331.82 (version 331.82)
NVIDIA PhysX System Software 9.13.0725 (version 9.13)
NVIDIA Virtual Audio 1.2.12 (version 1.2)
Ralink Bluetooth Stack64 (version 9.0)
Synaptics Pointing Device Driver (version 16.2)
WinRAR 5.00 (64-bit) (version 5.0)
Adobe Flash Player 11 Plugin (version 11.9)
Adobe Reader XI (11.0.05) (version 11.0)
Adobe Shockwave Player 11.6 (version 11.1)
Download Updater (AOL Inc.) (version 1.2)
Google Chrome (version 1650.63)
HP CoolSense (version 2.10)
IDT Audio
Intel® Management Engine Components (version 8.1)
Intel® Processor Graphics (version 10.18)
Intel® Rapid Start Technology (version 2.1)
Intel® SDK for OpenCL - CPU Only Runtime Package (version 2.0)
Microsoft Office Professional Plus 2010
Microsoft SQL Server 2005 Compact Edition [ENU] (version 3.1)
Microsoft Visual C++ 2005 Redistributable (version 8.0)
Microsoft Visual C++ 2005 Redistributable (version 8.0)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (version 9.0)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (version 9.0)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (version 9.0)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (version 9.0)
Microsoft Visual C++ 2010 # x86 Redistributable - 10.0.40219 (version 10.0)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
Microsoft XNA Framework Redistributable 4.0 (version 4.0)
Mozilla Firefox 25.0.1 (x86 en-US)
Mozilla Maintenance Service
Ralink RT3290 802.11bgn Wi-Fi Adapter (version 5.0)
Realtek Ethernet Controller Driver
Realtek PCIE Card Reader
Skype#xE2#x84#xA2 6.9 (version 6.9)
Windows Live Essentials
Wunderlist
 
Instalog 0.0.6.0 finished at 2013-12-17 00:10:55.0872 (Generation took 44.0918 seconds)


#7 Elise

Elise

    Bleepin' Blonde


  • Malware Study Hall Admin
  • 61,076 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Romania
  • Local time:07:26 AM

Posted 17 December 2013 - 02:15 AM

Hi, that looks pretty good, just to be sure lets also do an additional scan for malware.

Download Emsisoft Emergency Kit and save it to your desktop. Right-click on EmsisoftEmergencyKit.zip and select Extract All.... Leave all settings as they are and click Extract. You will now have a folder named EmsisoftEmergencyKit on your desktop.
  • Open the EmsisoftEmergencyKit folder and double-click Start.exe.
  • A new window will open. Under "Run Directly:" click Emergency Kit Scanner.
  • When asked to run an online update, click Yes.
  • When the update is finished, click the Back to Security Status link in the left corner. On the main screen click the Scan Now button.
  • Select the Smart Scan option and click the SCAN button.
  • When the scan is finished click the Quarantine selected objects button. Note, this option is only available if malicious objects were detected during the scan.
  • Click the View Report button and in the Reports window double-click on the most recent log. Note, logs are named as follows: a2scan_<date>-<time>.txt.
  • Copy/paste the report contents in your next reply.

regards, Elise


"Now faith is the substance of things hoped for, the evidence of things not seen."

 

Follow BleepingComputer on: Facebook | Twitter | Google+ | lockerdome

 

Malware analyst @ Emsisoft


#8 Elise

Elise

    Bleepin' Blonde


  • Malware Study Hall Admin
  • 61,076 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Romania
  • Local time:07:26 AM

Posted 19 January 2014 - 04:40 PM

Due to the lack of feedback, this topic is now closed.

In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days.

Please include a link to your topic in the Private Message. Thank you.

regards, Elise


"Now faith is the substance of things hoped for, the evidence of things not seen."

 

Follow BleepingComputer on: Facebook | Twitter | Google+ | lockerdome

 

Malware analyst @ Emsisoft





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users