Hi
This is my first post in the forum and my PC has started to run really slow. I have run Ad-aware anti virus and spy-bot S&D and CCleaner, but the problem is still there, so much so that last Thursday Windows 7 triggered a recommendation to change my graphic settings to the basic settings due to the computer slow running. This problem is a bit beyond my computer savvy and I was advised to seek help from you guys. dds follows-
Thanks in anticipation and kind regards
Hissy1
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.18315
Run by Peter at 12:23:28 on 2016-06-14
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.16327.10635 [GMT 1:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {768124D7-F5F7-6D2F-DDC2-94DFA4017C95}
SP: Microsoft Security Essentials *Enabled/Updated* {CDE0C533-D3CD-62A1-E772-AFADDF863628}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Spybot - Search and Destroy *Enabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
C:\Windows\System32\svchost.exe -k utcsvc
C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.11.898.9090\AdAwareService.exe
C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.11.898.9090\AdAwareTray.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Windows\System32\WUDFHost.exe
C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Program Files\CCleaner\CCleaner64.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uDefault_Page_URL = C:\Program Files\Internet Explorer\pcspecialist.html
mWinlogon: Userinit = userinit.exe
uRun: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
mRun: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
Trusted Zone: square-enix.com
Trusted Zone: square-enix.com
TCP: NameServer = 192.168.0.1
TCP: Interfaces\{47DE1C02-8429-442B-A30F-C61E85BAA717} : DHCPNameServer = 192.168.0.1
Notify: SDWinLogon - SDWinLogon.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.84\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
x64-Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
x64-Run: [NvBackend] "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
x64-Run: [ShadowPlay] "C:\Windows\System32\rundll32.exe" C:\Windows\System32\nvspcap64.dll,ShadowPlayOnSystemStart
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R0 iaStorA;iaStorA;C:\Windows\System32\drivers\iaStorA.sys [2015-12-15 672104]
R0 iaStorF;iaStorF;C:\Windows\System32\drivers\iaStorF.sys [2015-12-15 28008]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver;C:\Windows\System32\drivers\iusb3hcs.sys [2015-4-22 20464]
R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2015-11-13 289120]
R2 asComSvc;ASUS Com Service;C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2015-12-16 936728]
R2 DiagTrack;Diagnostics Tracking Service;C:\Windows\System32\svchost.exe -k utcsvc [2009-7-14 27136]
R2 GfExperienceService;NVIDIA GeForce Experience Service;C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-5-26 1165368]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service;C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2015-12-20 28552]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-4-30 154584]
R2 LavasoftAdAwareService11;Ad-Aware Service 11;C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.11.898.9090\AdAwareService.exe [2016-6-10 730496]
R2 NvNetworkService;NVIDIA Network Service;C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-5-26 1881144]
R2 NvStreamSvc;NVIDIA Streamer Service;C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-5-26 2522680]
R2 SDScannerService;Spybot-S&D 2 Scanner Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2016-6-11 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2016-6-11 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2016-6-11 171928]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe [2016-5-26 426040]
R3 AFXfilt;AFXfilt;C:\Windows\System32\drivers\afxfilt.sys [2015-12-15 25088]
R3 cthdb;Sound Blaster Audio Controller Driver;C:\Windows\System32\drivers\cthdb.sys [2015-12-15 25088]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver;C:\Windows\System32\drivers\iusb3hub.sys [2015-4-22 383984]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;C:\Windows\System32\drivers\iusb3xhc.sys [2015-12-15 795120]
R3 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2015-3-4 133816]
R3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2016-1-29 374344]
R3 NvStreamKms;NvStreamKms;C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-5-26 28216]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service;C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2016-5-26 3634232]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);C:\Windows\System32\drivers\nvvad64v.sys [2016-5-26 56384]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2015-12-15 940760]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-4-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-4-11 124088]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2016-5-11 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-2-1 887232]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-8-23 19456]
S3 terminpt;Microsoft Remote Desktop Input Driver;C:\Windows\System32\drivers\terminpt.sys [2013-8-23 29696]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-8-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2013-8-23 30208]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2015-12-19 1255736]
.
=============== Created Last 30 ================
.
2016-06-13 09:39:23 11895896 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F124CD36-6A3F-401D-AD48-417E9E076E4D}\mpengine.dll
2016-06-13 09:39:11 11895896 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2016-06-11 15:36:27 -------- d-----w- C:\Program Files\CCleaner
2016-06-11 15:12:16 -------- d-----w- C:\Program Files\Common Files\AV
2016-06-11 15:10:37 21040 ----a-w- C:\Windows\System32\sdnclean64.exe
2016-06-11 15:10:36 -------- d-----w- C:\ProgramData\Spybot - Search & Destroy
2016-06-11 15:10:33 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy 2
2016-06-11 15:09:50 -------- d-----w- C:\Users\Peter\AppData\Local\Programs
2016-06-11 08:05:03 -------- d-----w- C:\Program Files\Common Files\Lavasoft
2016-06-10 11:51:09 -------- d-----w- C:\Users\Peter\AppData\Roaming\WinPatrol
2016-06-10 08:46:58 -------- d-----w- C:\Users\Peter\AppData\Roaming\LavasoftStatistics
2016-06-10 08:46:22 -------- d-----w- C:\Program Files\Lavasoft
2016-05-27 17:43:50 -------- d-----w- C:\Program Files (x86)\Microsoft ASP.NET
2016-05-26 12:33:13 -------- d-----w- C:\Users\Peter\AppData\Local\NVIDIA Corporation
2016-05-26 12:32:09 1767944 ----a-w- C:\Windows\System32\nvspcap64.dll
2016-05-26 12:32:09 1756608 ----a-w- C:\Windows\System32\nvspbridge64.dll
2016-05-26 12:32:09 1377800 ----a-w- C:\Windows\SysWow64\nvspcap.dll
2016-05-26 12:32:09 1316184 ----a-w- C:\Windows\SysWow64\nvspbridge.dll
2016-05-26 12:32:09 112032 ----a-w- C:\Windows\System32\NvRtmpStreamer64.dll
2016-05-26 12:31:45 113208 ----a-w- C:\Windows\SysWow64\nvStreaming.exe
2016-05-26 12:31:03 83512 ----a-w- C:\Windows\System32\nv3dappshextr.dll
2016-05-26 12:31:03 531904 ----a-w- C:\Windows\System32\nv3dappshext.dll
2016-05-26 12:19:45 -------- d-----w- C:\Users\Peter\AppData\Local\NVIDIA
2016-05-26 11:32:36 121488 ----a-w- C:\Windows\System32\OpenCL.dll
2016-05-26 11:32:36 113808 ----a-w- C:\Windows\SysWow64\OpenCL.dll
2016-05-26 11:24:37 -------- d-----w- C:\Windows\SysWow64\GWX
2016-05-26 11:24:37 -------- d-----w- C:\Windows\System32\GWX
2016-05-22 08:58:13 1167568 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E082D2FA-12BA-45CE-99C0-8C350B1921B3}\gapaengine.dll
.
==================== Find3M ====================
.
2016-05-21 21:10:34 46024 ----a-w- C:\Windows\System32\nvhdap64.dll
2016-05-21 21:10:34 1581624 ----a-w- C:\Windows\System32\nvhdagenco64.dll
2016-05-21 21:10:34 141256 ----a-w- C:\Windows\System32\drivers\nvhda64v.sys
2016-05-20 02:11:23 6346688 ----a-w- C:\Windows\System32\nvcpl.dll
2016-05-20 02:11:23 2454976 ----a-w- C:\Windows\System32\nvsvc64.dll
2016-05-20 02:11:21 69568 ----a-w- C:\Windows\System32\nvshext.dll
2016-05-20 02:11:21 393784 ----a-w- C:\Windows\System32\nvmctray.dll
2016-05-20 02:11:21 1762752 ----a-w- C:\Windows\System32\nvsvcr.dll
2016-05-20 02:11:21 1352760 ----a-w- C:\Windows\System32\nvvsvc.exe
2016-05-18 23:25:24 6448223 ----a-w- C:\Windows\System32\nvcoproc.bin
2016-04-28 16:20:32 485512 ----a-w- C:\Windows\System32\drivers\Trufos.sys
2016-04-23 05:16:10 2724864 ----a-w- C:\Windows\System32\mshtml.tlb
2016-04-23 05:16:00 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll
2016-04-23 05:01:23 66560 ----a-w- C:\Windows\System32\iesetup.dll
2016-04-23 05:00:39 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll
2016-04-23 05:00:32 417792 ----a-w- C:\Windows\System32\html.iec
2016-04-23 05:00:10 571904 ----a-w- C:\Windows\System32\vbscript.dll
2016-04-23 05:00:01 88064 ----a-w- C:\Windows\System32\MshtmlDac.dll
2016-04-23 04:47:35 114688 ----a-w- C:\Windows\System32\ieetwcollector.exe
2016-04-23 04:47:34 144384 ----a-w- C:\Windows\System32\ieUnatt.exe
2016-04-23 04:47:20 814080 ----a-w- C:\Windows\System32\jscript9diag.dll
2016-04-23 04:46:47 6052352 ----a-w- C:\Windows\System32\jscript9.dll
2016-04-23 04:40:13 968704 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe
2016-04-23 04:29:15 77824 ----a-w- C:\Windows\System32\JavaScriptCollectionAgent.dll
2016-04-23 04:20:51 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2016-04-23 04:08:47 62464 ----a-w- C:\Windows\SysWow64\iesetup.dll
2016-04-23 04:08:47 497152 ----a-w- C:\Windows\SysWow64\vbscript.dll
2016-04-23 04:08:09 47616 ----a-w- C:\Windows\SysWow64\ieetwproxystub.dll
2016-04-23 04:07:58 341504 ----a-w- C:\Windows\SysWow64\html.iec
2016-04-23 04:07:05 64000 ----a-w- C:\Windows\SysWow64\MshtmlDac.dll
2016-04-23 04:06:09 1359360 ----a-w- C:\Windows\System32\mshtmlmedia.dll
2016-04-23 04:05:05 2131968 ----a-w- C:\Windows\System32\inetcpl.cpl
2016-04-23 03:58:33 115712 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2016-04-23 03:58:14 620032 ----a-w- C:\Windows\SysWow64\jscript9diag.dll
2016-04-23 03:51:54 2596864 ----a-w- C:\Windows\System32\wininet.dll
2016-04-23 03:45:54 60416 ----a-w- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
2016-04-23 03:36:58 4611072 ----a-w- C:\Windows\SysWow64\jscript9.dll
2016-04-23 03:30:55 2056192 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2016-04-23 03:30:34 1155072 ----a-w- C:\Windows\SysWow64\mshtmlmedia.dll
2016-04-23 03:12:38 2121216 ----a-w- C:\Windows\SysWow64\wininet.dll
2016-04-22 07:57:45 453288 ------w- C:\Windows\System32\MpSigStub.exe
2016-04-14 13:49:13 603648 ----a-w- C:\Windows\SysWow64\d3d10level9.dll
2016-04-14 13:21:17 647680 ----a-w- C:\Windows\System32\d3d10level9.dll
2016-04-14 05:38:19 56384 ----a-w- C:\Windows\System32\drivers\nvvad64v.sys
2016-04-14 05:38:11 113216 ----a-w- C:\Windows\System32\nvaudcap64v.dll
2016-04-14 05:38:09 102976 ----a-w- C:\Windows\SysWow64\nvaudcap32v.dll
2016-04-09 07:02:34 631176 ----a-w- C:\Windows\System32\winresume.efi
2016-04-09 07:01:44 706280 ----a-w- C:\Windows\System32\winload.efi
2016-04-09 07:01:43 5546216 ----a-w- C:\Windows\System32\ntoskrnl.exe
2016-04-09 07:01:42 95464 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
2016-04-09 07:01:42 154344 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2016-04-09 07:01:41 986344 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2016-04-09 07:01:41 264936 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
2016-04-09 06:59:48 3998952 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2016-04-09 06:59:48 3943144 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2016-04-09 06:59:27 1732864 ----a-w- C:\Windows\System32\ntdll.dll
2016-04-09 06:57:59 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2016-04-09 06:54:54 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll
2016-04-09 05:52:09 148480 ----a-w- C:\Windows\System32\appidpolicyconverter.exe
2016-04-09 05:52:04 62464 ----a-w- C:\Windows\System32\drivers\appid.sys
2016-04-09 05:52:04 17920 ----a-w- C:\Windows\System32\appidcertstorecheck.exe
2016-04-09 05:51:21 64000 ----a-w- C:\Windows\System32\auditpol.exe
2016-04-09 05:49:33 3217408 ----a-w- C:\Windows\System32\win32k.sys
2016-04-09 05:48:16 338432 ----a-w- C:\Windows\System32\conhost.exe
2016-04-09 05:47:23 296960 ----a-w- C:\Windows\System32\rstrui.exe
2016-04-09 05:44:39 159744 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys
2016-04-09 05:44:06 291328 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2016-04-09 05:44:03 129536 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys
2016-04-09 05:43:20 30720 ----a-w- C:\Windows\System32\lsass.exe
2016-04-09 05:43:17 112640 ----a-w- C:\Windows\System32\smss.exe
2016-04-09 05:42:19 50176 ----a-w- C:\Windows\SysWow64\auditpol.exe
2016-04-09 05:38:26 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2016-04-09 05:38:24 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2016-04-09 05:38:24 2048 ----a-w- C:\Windows\SysWow64\user.exe
2016-04-09 05:38:24 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2016-04-09 05:37:37 36352 ----a-w- C:\Windows\SysWow64\cryptbase.dll
2016-04-09 05:37:29 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2016-04-09 05:37:29 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2016-04-09 05:37:29 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2016-04-09 05:37:29 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2016-04-09 04:20:04 1230848 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll
2016-04-09 03:52:25 1424896 ----a-w- C:\Windows\System32\WindowsCodecs.dll
2016-04-06 15:27:53 24576 ----a-w- C:\Windows\System32\jnwmon.dll
2016-04-04 18:14:06 38120 ----a-w- C:\Windows\System32\CompatTelRunner.exe
2016-04-04 18:02:17 1169408 ----a-w- C:\Windows\System32\aeinv.dll
2016-04-02 13:08:13 1386496 ----a-w- C:\Windows\System32\appraiser.dll
2016-03-23 14:02:01 215040 ----a-w- C:\Windows\System32\aepic.dll
2016-03-17 22:56:24 2084864 ----a-w- C:\Windows\System32\ole32.dll
2016-03-17 22:28:21 1414144 ----a-w- C:\Windows\SysWow64\ole32.dll
2016-03-17 18:04:39 698368 ----a-w- C:\Windows\System32\generaltel.dll
2016-03-17 18:04:39 499200 ----a-w- C:\Windows\System32\devinv.dll
2016-03-17 18:04:39 279040 ----a-w- C:\Windows\System32\invagent.dll
2016-03-17 18:04:38 76800 ----a-w- C:\Windows\System32\acmigration.dll
2016-03-16 18:50:06 156672 ----a-w- C:\Windows\System32\mtxoci.dll
2016-03-16 18:28:15 111616 ----a-w- C:\Windows\SysWow64\mtxoci.dll
2016-03-16 18:28:12 176128 ----a-w- C:\Windows\SysWow64\msorcl32.dll
.
============= FINISH: 12:23:33.82 ===============
This is my first post in the forum and my PC has started to run really slow. I have run Ad-aware anti virus and spy-bot S&D and CCleaner, but the problem is still there, so much so that last Thursday Windows 7 triggered a recommendation to change my graphic settings to the basic settings due to the computer slow running. This problem is a bit beyond my computer savvy and I was advised to seek help from you guys. dds follows-
Thanks in anticipation and kind regards
Hissy1
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.18315
Run by Peter at 12:23:28 on 2016-06-14
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.16327.10635 [GMT 1:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {768124D7-F5F7-6D2F-DDC2-94DFA4017C95}
SP: Microsoft Security Essentials *Enabled/Updated* {CDE0C533-D3CD-62A1-E772-AFADDF863628}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Spybot - Search and Destroy *Enabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
C:\Windows\System32\svchost.exe -k utcsvc
C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.11.898.9090\AdAwareService.exe
C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.11.898.9090\AdAwareTray.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Windows\System32\WUDFHost.exe
C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Program Files\CCleaner\CCleaner64.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uDefault_Page_URL = C:\Program Files\Internet Explorer\pcspecialist.html
mWinlogon: Userinit = userinit.exe
uRun: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
mRun: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
Trusted Zone: square-enix.com
Trusted Zone: square-enix.com
TCP: NameServer = 192.168.0.1
TCP: Interfaces\{47DE1C02-8429-442B-A30F-C61E85BAA717} : DHCPNameServer = 192.168.0.1
Notify: SDWinLogon - SDWinLogon.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.84\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
x64-Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
x64-Run: [NvBackend] "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
x64-Run: [ShadowPlay] "C:\Windows\System32\rundll32.exe" C:\Windows\System32\nvspcap64.dll,ShadowPlayOnSystemStart
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R0 iaStorA;iaStorA;C:\Windows\System32\drivers\iaStorA.sys [2015-12-15 672104]
R0 iaStorF;iaStorF;C:\Windows\System32\drivers\iaStorF.sys [2015-12-15 28008]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver;C:\Windows\System32\drivers\iusb3hcs.sys [2015-4-22 20464]
R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2015-11-13 289120]
R2 asComSvc;ASUS Com Service;C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2015-12-16 936728]
R2 DiagTrack;Diagnostics Tracking Service;C:\Windows\System32\svchost.exe -k utcsvc [2009-7-14 27136]
R2 GfExperienceService;NVIDIA GeForce Experience Service;C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-5-26 1165368]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service;C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2015-12-20 28552]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-4-30 154584]
R2 LavasoftAdAwareService11;Ad-Aware Service 11;C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.11.898.9090\AdAwareService.exe [2016-6-10 730496]
R2 NvNetworkService;NVIDIA Network Service;C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-5-26 1881144]
R2 NvStreamSvc;NVIDIA Streamer Service;C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-5-26 2522680]
R2 SDScannerService;Spybot-S&D 2 Scanner Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2016-6-11 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2016-6-11 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2016-6-11 171928]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe [2016-5-26 426040]
R3 AFXfilt;AFXfilt;C:\Windows\System32\drivers\afxfilt.sys [2015-12-15 25088]
R3 cthdb;Sound Blaster Audio Controller Driver;C:\Windows\System32\drivers\cthdb.sys [2015-12-15 25088]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver;C:\Windows\System32\drivers\iusb3hub.sys [2015-4-22 383984]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;C:\Windows\System32\drivers\iusb3xhc.sys [2015-12-15 795120]
R3 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2015-3-4 133816]
R3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2016-1-29 374344]
R3 NvStreamKms;NvStreamKms;C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-5-26 28216]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service;C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2016-5-26 3634232]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);C:\Windows\System32\drivers\nvvad64v.sys [2016-5-26 56384]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2015-12-15 940760]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-4-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-4-11 124088]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2016-5-11 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-2-1 887232]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-8-23 19456]
S3 terminpt;Microsoft Remote Desktop Input Driver;C:\Windows\System32\drivers\terminpt.sys [2013-8-23 29696]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-8-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2013-8-23 30208]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2015-12-19 1255736]
.
=============== Created Last 30 ================
.
2016-06-13 09:39:23 11895896 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F124CD36-6A3F-401D-AD48-417E9E076E4D}\mpengine.dll
2016-06-13 09:39:11 11895896 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2016-06-11 15:36:27 -------- d-----w- C:\Program Files\CCleaner
2016-06-11 15:12:16 -------- d-----w- C:\Program Files\Common Files\AV
2016-06-11 15:10:37 21040 ----a-w- C:\Windows\System32\sdnclean64.exe
2016-06-11 15:10:36 -------- d-----w- C:\ProgramData\Spybot - Search & Destroy
2016-06-11 15:10:33 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy 2
2016-06-11 15:09:50 -------- d-----w- C:\Users\Peter\AppData\Local\Programs
2016-06-11 08:05:03 -------- d-----w- C:\Program Files\Common Files\Lavasoft
2016-06-10 11:51:09 -------- d-----w- C:\Users\Peter\AppData\Roaming\WinPatrol
2016-06-10 08:46:58 -------- d-----w- C:\Users\Peter\AppData\Roaming\LavasoftStatistics
2016-06-10 08:46:22 -------- d-----w- C:\Program Files\Lavasoft
2016-05-27 17:43:50 -------- d-----w- C:\Program Files (x86)\Microsoft ASP.NET
2016-05-26 12:33:13 -------- d-----w- C:\Users\Peter\AppData\Local\NVIDIA Corporation
2016-05-26 12:32:09 1767944 ----a-w- C:\Windows\System32\nvspcap64.dll
2016-05-26 12:32:09 1756608 ----a-w- C:\Windows\System32\nvspbridge64.dll
2016-05-26 12:32:09 1377800 ----a-w- C:\Windows\SysWow64\nvspcap.dll
2016-05-26 12:32:09 1316184 ----a-w- C:\Windows\SysWow64\nvspbridge.dll
2016-05-26 12:32:09 112032 ----a-w- C:\Windows\System32\NvRtmpStreamer64.dll
2016-05-26 12:31:45 113208 ----a-w- C:\Windows\SysWow64\nvStreaming.exe
2016-05-26 12:31:03 83512 ----a-w- C:\Windows\System32\nv3dappshextr.dll
2016-05-26 12:31:03 531904 ----a-w- C:\Windows\System32\nv3dappshext.dll
2016-05-26 12:19:45 -------- d-----w- C:\Users\Peter\AppData\Local\NVIDIA
2016-05-26 11:32:36 121488 ----a-w- C:\Windows\System32\OpenCL.dll
2016-05-26 11:32:36 113808 ----a-w- C:\Windows\SysWow64\OpenCL.dll
2016-05-26 11:24:37 -------- d-----w- C:\Windows\SysWow64\GWX
2016-05-26 11:24:37 -------- d-----w- C:\Windows\System32\GWX
2016-05-22 08:58:13 1167568 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E082D2FA-12BA-45CE-99C0-8C350B1921B3}\gapaengine.dll
.
==================== Find3M ====================
.
2016-05-21 21:10:34 46024 ----a-w- C:\Windows\System32\nvhdap64.dll
2016-05-21 21:10:34 1581624 ----a-w- C:\Windows\System32\nvhdagenco64.dll
2016-05-21 21:10:34 141256 ----a-w- C:\Windows\System32\drivers\nvhda64v.sys
2016-05-20 02:11:23 6346688 ----a-w- C:\Windows\System32\nvcpl.dll
2016-05-20 02:11:23 2454976 ----a-w- C:\Windows\System32\nvsvc64.dll
2016-05-20 02:11:21 69568 ----a-w- C:\Windows\System32\nvshext.dll
2016-05-20 02:11:21 393784 ----a-w- C:\Windows\System32\nvmctray.dll
2016-05-20 02:11:21 1762752 ----a-w- C:\Windows\System32\nvsvcr.dll
2016-05-20 02:11:21 1352760 ----a-w- C:\Windows\System32\nvvsvc.exe
2016-05-18 23:25:24 6448223 ----a-w- C:\Windows\System32\nvcoproc.bin
2016-04-28 16:20:32 485512 ----a-w- C:\Windows\System32\drivers\Trufos.sys
2016-04-23 05:16:10 2724864 ----a-w- C:\Windows\System32\mshtml.tlb
2016-04-23 05:16:00 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll
2016-04-23 05:01:23 66560 ----a-w- C:\Windows\System32\iesetup.dll
2016-04-23 05:00:39 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll
2016-04-23 05:00:32 417792 ----a-w- C:\Windows\System32\html.iec
2016-04-23 05:00:10 571904 ----a-w- C:\Windows\System32\vbscript.dll
2016-04-23 05:00:01 88064 ----a-w- C:\Windows\System32\MshtmlDac.dll
2016-04-23 04:47:35 114688 ----a-w- C:\Windows\System32\ieetwcollector.exe
2016-04-23 04:47:34 144384 ----a-w- C:\Windows\System32\ieUnatt.exe
2016-04-23 04:47:20 814080 ----a-w- C:\Windows\System32\jscript9diag.dll
2016-04-23 04:46:47 6052352 ----a-w- C:\Windows\System32\jscript9.dll
2016-04-23 04:40:13 968704 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe
2016-04-23 04:29:15 77824 ----a-w- C:\Windows\System32\JavaScriptCollectionAgent.dll
2016-04-23 04:20:51 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2016-04-23 04:08:47 62464 ----a-w- C:\Windows\SysWow64\iesetup.dll
2016-04-23 04:08:47 497152 ----a-w- C:\Windows\SysWow64\vbscript.dll
2016-04-23 04:08:09 47616 ----a-w- C:\Windows\SysWow64\ieetwproxystub.dll
2016-04-23 04:07:58 341504 ----a-w- C:\Windows\SysWow64\html.iec
2016-04-23 04:07:05 64000 ----a-w- C:\Windows\SysWow64\MshtmlDac.dll
2016-04-23 04:06:09 1359360 ----a-w- C:\Windows\System32\mshtmlmedia.dll
2016-04-23 04:05:05 2131968 ----a-w- C:\Windows\System32\inetcpl.cpl
2016-04-23 03:58:33 115712 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2016-04-23 03:58:14 620032 ----a-w- C:\Windows\SysWow64\jscript9diag.dll
2016-04-23 03:51:54 2596864 ----a-w- C:\Windows\System32\wininet.dll
2016-04-23 03:45:54 60416 ----a-w- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
2016-04-23 03:36:58 4611072 ----a-w- C:\Windows\SysWow64\jscript9.dll
2016-04-23 03:30:55 2056192 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2016-04-23 03:30:34 1155072 ----a-w- C:\Windows\SysWow64\mshtmlmedia.dll
2016-04-23 03:12:38 2121216 ----a-w- C:\Windows\SysWow64\wininet.dll
2016-04-22 07:57:45 453288 ------w- C:\Windows\System32\MpSigStub.exe
2016-04-14 13:49:13 603648 ----a-w- C:\Windows\SysWow64\d3d10level9.dll
2016-04-14 13:21:17 647680 ----a-w- C:\Windows\System32\d3d10level9.dll
2016-04-14 05:38:19 56384 ----a-w- C:\Windows\System32\drivers\nvvad64v.sys
2016-04-14 05:38:11 113216 ----a-w- C:\Windows\System32\nvaudcap64v.dll
2016-04-14 05:38:09 102976 ----a-w- C:\Windows\SysWow64\nvaudcap32v.dll
2016-04-09 07:02:34 631176 ----a-w- C:\Windows\System32\winresume.efi
2016-04-09 07:01:44 706280 ----a-w- C:\Windows\System32\winload.efi
2016-04-09 07:01:43 5546216 ----a-w- C:\Windows\System32\ntoskrnl.exe
2016-04-09 07:01:42 95464 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
2016-04-09 07:01:42 154344 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2016-04-09 07:01:41 986344 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2016-04-09 07:01:41 264936 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
2016-04-09 06:59:48 3998952 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2016-04-09 06:59:48 3943144 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2016-04-09 06:59:27 1732864 ----a-w- C:\Windows\System32\ntdll.dll
2016-04-09 06:57:59 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2016-04-09 06:54:54 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll
2016-04-09 05:52:09 148480 ----a-w- C:\Windows\System32\appidpolicyconverter.exe
2016-04-09 05:52:04 62464 ----a-w- C:\Windows\System32\drivers\appid.sys
2016-04-09 05:52:04 17920 ----a-w- C:\Windows\System32\appidcertstorecheck.exe
2016-04-09 05:51:21 64000 ----a-w- C:\Windows\System32\auditpol.exe
2016-04-09 05:49:33 3217408 ----a-w- C:\Windows\System32\win32k.sys
2016-04-09 05:48:16 338432 ----a-w- C:\Windows\System32\conhost.exe
2016-04-09 05:47:23 296960 ----a-w- C:\Windows\System32\rstrui.exe
2016-04-09 05:44:39 159744 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys
2016-04-09 05:44:06 291328 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2016-04-09 05:44:03 129536 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys
2016-04-09 05:43:20 30720 ----a-w- C:\Windows\System32\lsass.exe
2016-04-09 05:43:17 112640 ----a-w- C:\Windows\System32\smss.exe
2016-04-09 05:42:19 50176 ----a-w- C:\Windows\SysWow64\auditpol.exe
2016-04-09 05:38:26 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2016-04-09 05:38:24 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2016-04-09 05:38:24 2048 ----a-w- C:\Windows\SysWow64\user.exe
2016-04-09 05:38:24 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2016-04-09 05:37:37 36352 ----a-w- C:\Windows\SysWow64\cryptbase.dll
2016-04-09 05:37:29 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2016-04-09 05:37:29 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2016-04-09 05:37:29 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2016-04-09 05:37:29 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2016-04-09 04:20:04 1230848 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll
2016-04-09 03:52:25 1424896 ----a-w- C:\Windows\System32\WindowsCodecs.dll
2016-04-06 15:27:53 24576 ----a-w- C:\Windows\System32\jnwmon.dll
2016-04-04 18:14:06 38120 ----a-w- C:\Windows\System32\CompatTelRunner.exe
2016-04-04 18:02:17 1169408 ----a-w- C:\Windows\System32\aeinv.dll
2016-04-02 13:08:13 1386496 ----a-w- C:\Windows\System32\appraiser.dll
2016-03-23 14:02:01 215040 ----a-w- C:\Windows\System32\aepic.dll
2016-03-17 22:56:24 2084864 ----a-w- C:\Windows\System32\ole32.dll
2016-03-17 22:28:21 1414144 ----a-w- C:\Windows\SysWow64\ole32.dll
2016-03-17 18:04:39 698368 ----a-w- C:\Windows\System32\generaltel.dll
2016-03-17 18:04:39 499200 ----a-w- C:\Windows\System32\devinv.dll
2016-03-17 18:04:39 279040 ----a-w- C:\Windows\System32\invagent.dll
2016-03-17 18:04:38 76800 ----a-w- C:\Windows\System32\acmigration.dll
2016-03-16 18:50:06 156672 ----a-w- C:\Windows\System32\mtxoci.dll
2016-03-16 18:28:15 111616 ----a-w- C:\Windows\SysWow64\mtxoci.dll
2016-03-16 18:28:12 176128 ----a-w- C:\Windows\SysWow64\msorcl32.dll
.
============= FINISH: 12:23:33.82 ===============