Intel proset wireless internal database error occurred saving updating profile

31 May

2015-09-03 - 2015-09-03 - 00000000 ____D C:\Users\Sharon\App Data\Roaming\Sun2015-09-03 - 2015-09-03 - 00000000 ____D C:\Users\Sharon\.oracle_jre_usage2015-09-03 - 2015-08-19 - 22324656 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll2015-09-03 - 2015-08-19 - 08019296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe2015-09-03 - 2015-08-19 - 00609592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll2015-09-03 - 2015-08-19 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Install Agent.exe2015-09-03 - 2015-08-19 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Enterprise Modern App Mgmt CSP.dll2015-09-03 - 2015-08-19 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\Sys WOW64\shell32.dll2015-09-03 - 2015-08-19 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll2015-09-03 - 2015-08-19 - 00929280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys2015-09-03 - 2015-08-18 - 02498808 _____ C:\WINDOWS\system32\Core UIComponents.dll2015-09-03 - 2015-08-18 - 00373072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI. Testing Framework.dll2015-09-03 - 2015-08-11 - 00293376 _____ C:\WINDOWS\system32\Text Input Framework.dll2015-09-03 - 2015-08-11 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll2015-09-03 - 2015-08-11 - 00893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Mbae Api Public.dll2015-09-03 - 2015-08-11 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Mbae Api.dll2015-09-03 - 2015-08-11 - 01178112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll2015-09-03 - 2015-08-11 - 00593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll2015-09-03 - 2015-08-11 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Mbae Parser Task.exe2015-09-03 - 2015-08-11 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll2015-09-03 - 2015-08-11 - 02662400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows. Logon.dll2015-09-03 - 2015-08-11 - 03527168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll2015-09-03 - 2015-08-11 - 00996352 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll2015-09-03 - 2015-08-11 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Location Geofences.dll2015-09-03 - 2015-08-11 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Location Framework.dll2015-09-03 - 2015-08-11 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Location Permissions.dll2015-09-03 - 2015-08-11 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Location Framework Internal PS.dll2015-09-03 - 2015-08-11 - 02558976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll2015-09-03 - 2015-08-11 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll2015-09-03 - 2015-08-11 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloud AP.dll2015-09-03 - 2015-08-11 - 01334784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomation Core.dll2015-09-03 - 2015-08-11 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search Protocol Host.exe2015-09-03 - 2015-08-11 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll2015-09-03 - 2015-08-11 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll2015-09-03 - 2015-08-11 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll2015-09-03 - 2015-08-11 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll2015-09-03 - 2015-08-11 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\Sys WOW64\tetheringclient.dll2015-09-03 - 2015-08-11 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\Sys WOW64\One Drive Setting Sync Provider.dll2015-09-03 - 2015-08-11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\Sys WOW64\User Mgr Proxy.dll2015-09-03 - 2015-08-11 - 01916928 _____ (Microsoft Corporation) C:\WINDOWS\Sys WOW64\MFMedia Engine.dll2015-09-03 - 2015-08-11 - 01823232 _____ C:\WINDOWS\Sys WOW64\Input Service.dll2015-09-03 - 2015-08-11 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\Sys WOW64\Game Panel.exe2015-09-03 - 2015-08-11 - 00200704 _____ C:\WINDOWS\Sys WOW64\Text Input Framework.dll2015-09-03 - 2015-08-11 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\Sys WOW64\Windows. DAT2015-09-17 - 2015-07-10 - 00262144 ___SH C:\WINDOWS\system32\config\BBI2015-09-17 - 2011-12-02 - 00000926 _____ C:\WINDOWS\Tasks\Google Update Task Machine UA.job2015-09-17 - 2014-03-08 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job2015-09-17 - 2015-07-10 - 00000000 ____D C:\WINDOWS\Cbs Temp2015-09-17 - 2012-10-08 - 00001118 _____ C:\Users\Sharon\Desktop\Cyberlink Power2Go.lnk2015-09-17 - 2015-08-16 - 00000000 ____D C:\Users\Sharon2015-09-17 - 2015-07-10 - 00000000 ____D C:\WINDOWS\rescache2015-09-17 - 2015-08-16 - 00000000 ____D C:\Users\Sharon\App Data\Local\Packages2015-09-17 - 2015-07-10 - 00000000 ____D C:\Program Files\Windows Journal2015-09-17 - 2015-07-10 - 00000000 ____D C:\WINDOWS\system32\appraiser2015-09-17 - 2013-08-14 - 00000000 ____D C:\WINDOWS\system32\MRT2015-09-17 - 2013-02-11 - 134753440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe2015-09-16 - 2015-07-18 - 00000000 ____D C:\Program Files (x86)\Mc Afee2015-09-16 - 2011-12-02 - 00000000 ____D C:\Program Data\Mc Afee2015-09-16 - 2013-02-11 - 00000000 ____D C:\Program Files\Mc Afee2015-09-16 - 2013-02-11 - 00000000 ____D C:\Program Files\Common Files\Mc Afee2015-09-16 - 2011-12-02 - 00000000 ____D C:\Program Files\Google2015-09-16 - 2011-12-02 - 00000000 ____D C:\Program Files (x86)\Google2015-09-16 - 2015-07-18 - 00000570 _____ C:\WINDOWS\wininit.ini2015-09-16 - 2015-07-10 - 00000000 ___HD C:\WINDOWS\ELAMBKUP2015-09-16 - 2015-07-10 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM2015-09-16 - 2009-07-13 - 00000000 ____D C:\Users\Default.migrated2015-09-16 - 2015-08-16 - 00000000 ___DC C:\WINDOWS\Panther2015-09-16 - 2015-07-10 - 00000000 ____D C:\WINDOWS\Live Kernel Reports2015-09-16 - 2012-10-08 - 00000000 ____D C:\Users\Sharon\App Data\Local\Google2015-09-16 - 2011-12-02 - 00000000 ____D C:\Program Data\Google2015-09-16 - 2015-07-10 - 00000000 ___RD C:\WINDOWS\Miracast View2015-09-16 - 2011-12-02 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk2015-09-16 - 2011-12-02 - 00002260 _____ C:\Program Data\Desktop\Google Chrome.lnk2015-09-16 - 2012-12-29 - 00000000 ____D C:\Program Data\Malwarebytes2015-09-16 - 2015-07-10 - 00000000 ____D C:\WINDOWS\system32\NDF2015-09-16 - 2015-07-10 - 00000000 ____D C:\WINDOWS\system32\Win Bio Database2015-09-16 - 2015-08-16 - 00002337 _____ C:\Users\Sharon\App Data\Roaming\Microsoft\Windows\Start Menu\Programs\One Drive.lnk2015-09-16 - 2015-08-16 - 00000000 ___RD C:\Users\Sharon\One Drive2015-09-16 - 2015-07-10 - 00000000 ____D C:\WINDOWS\system32\Win Bio Plug Ins2015-09-16 - 2015-07-10 - 00000000 ____D C:\WINDOWS\system32\oobe2015-09-15 - 2011-12-02 - 00003984 _____ C:\WINDOWS\System32\Tasks\Google Update Task Machine UA2015-09-15 - 2011-12-02 - 00003752 _____ C:\WINDOWS\System32\Tasks\Google Update Task Machine Core2015-09-03 - 2014-10-29 - 00000000 ____D C:\Program Data\Microsoft\Windows\Start Menu\Programs\Java2015-09-03 - 2014-10-29 - 00000000 ____D C:\Program Files (x86)\Java2015-09-03 - 2014-04-27 - 00000000 ____D C:\Program Data\Oracle2015-09-03 - 2014-10-29 - 00097888 _____ (Oracle Corporation) C:\WINDOWS\Sys WOW64\Windows Access Bridge-32.dll2015-09-03 - 2015-07-10 - 00000000 ____D C:\WINDOWS\system32\restore2015-09-03 - 2015-07-10 - 00000000 ____D C:\WINDOWS\appcompat Some files in TEMP:====================C:\Users\Sharon\App Data\Local\Temp\sqlite3.dll==================== Bamital & volsnap =================(There is no automatic fix for files that do not pass verification.)C:\WINDOWS\system32\winlogon.exe[2015-09-17 ] - [2015-09-17 ] - 0578560 ____A (Microsoft Corporation) 84B1FE2E4615A89293F1FD4DE52EE26EC:\WINDOWS\system32\= File is digitally signed C:\WINDOWS\system32\userinit.exe[2015-07-10 ] - [2015-07-10 ] - 0030720 ____A (Microsoft Corporation) 5F6D4F12EA33BFC0F0F8CEEAC332AB2BC:\WINDOWS\Sys WOW64\userinit.exe[2015-07-10 ] - [2015-07-10 ] - 0026112 ____A (Microsoft Corporation) A89C18F5E6D8981D5E937B325290915AC:\WINDOWS\system32\rpcss.dll[2015-07-10 ] - [2015-07-10 ] - 0873984 ____A (Microsoft Corporation) 5E57B9FBB4E9C43EE5B69BEE01A1819FC:\WINDOWS\system32\=Okay... NOTE: It is important that both files, FRST/FRST64 and are in the same location or the fix will not work.

K potentially unwanted application deleted - quarantined C:\Users\Sharon\Downloads\setup (2)Win32/Systweak. Y potentially unwanted application cleaned by deleting - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined C:\Windows.old\windows\Sys WOW64\config\systemprofile\App Data\Local\Microsoft\Windows\Temporary Internet Files\Content. M potentially unsafe application deleted - quarantined I have suggested that John W pop in and help you to make sure that your system is cleaned out fully, I have not seen many with that long a list before of malware and I know that that usually means that something is hiding behind the scenes and may be responsible for at leat some if not most of what got on your machine. Thought I would be nice and check for any simple malware problems...

K potentially unwanted application deleted - quarantined C:\Users\Sharon\Downloads\setup (3)Win32/Systweak. Y potentially unwanted application cleaned by deleting - quarantined C:\Windows.old\Users\Sharon\App Data\Local\Temp\jkm653A.tmp\UPDATER. IE5\Ask Toolbar Installer-ORJ-ST-SPE[1].7z a variant of Win32/Bundled. IE5\Ask Toolbar Installer-ORJ-ST-SPE[2].7z a variant of Win32/Bundled. IE5\Ask Toolbar Installer-ORJ-ST-SPE[3].7z a variant of Win32/Bundled. IE5\Ask Toolbar Installer-ORJ-ST-SPE[4].7z a variant of Win32/Bundled. IE5\Ask Toolbar Installer-ORJ-V7C[10].7z a variant of Win32/Bundled. IE5\Ask Toolbar Installer-ORJ-V7C[1].7z a variant of Win32/Bundled. IE5\Ask Toolbar Installer-ORJ-V7C[2].7z a variant of Win32/Bundled. IE5\Ask Toolbar Installer-ORJ-V7C[3].7z a variant of Win32/Bundled. IE5\Ask Toolbar Installer-ORJ-V7C[4].7z a variant of Win32/Bundled. IE5\Ask Toolbar Installer-ORJ-V7C[5].7z a variant of Win32/Bundled. IE5\Ask Toolbar Installer-ORJ-V7C[6].7z a variant of Win32/Bundled. IE5\Ask Toolbar Installer-ORJ-V7C[7].7z a variant of Win32/Bundled. IE5\Ask Toolbar Installer-ORJ-V7C[8].7z a variant of Win32/Bundled. IE5\Ask Toolbar Installer-ORJ-V7C[9].7z a variant of Win32/Bundled. since it seemed slow and had a lot of browser problems. Please Copy & Paste the contents of that logfile with your next answer.

On completion, a log (JRT.txt) is saved onto your Ad WCleaner did not leave a text file that I can find and the file was not opened when windows restarted. If you are not sure which version applies to your system download both of them and try to run them. Also, depending on how badly a system is infected, Combo Fix may take longer to complete its routine than it normally does or fail to run properly. You will then get this next prompt that asks if you want to continue the malware scan, select yes.

I wonder if the same thing that is causing comodo not to open stopped the text file from being created. Only one of them will run on your system, that will be the right version. While that is not normal behavior, it is not unusual"If you think it's frozen, look at the computer clock. If the Microsoft Windows Recovery Console is already installed, Combo Fix will automatically proceed with its scan. If after running Combofix you discover none of your programs will open up, and you recieve the following error: "Illegal operation attempted on a registry key that has been marked for deletion".

C potentially unwanted application deleted - quarantined C:\Users\Sharon\Downloads\PCHealth Win32/Distromatic. It started out with her updating to win10 and then getting locked out of the computer.

C potentially unwanted application deleted - quarantined C:\Users\Sharon\Downloads\setup (1)Win32/Systweak. I was just figuring out why it wouldn't let her in... solved the related email problem and related connectivity problems.

ocid=iehp Search Scopes: HKLM - No Name - - No File Handler: dssrequest - - c:\Program Files (x86)\Mc Afee\Site Advisor\x64\Mc [2015-09-02] (Mc Afee, Inc.)Handler-x32: dssrequest - - c:\Program Files (x86)\Mc Afee\Site Advisor\Mc [2015-09-02] (Mc Afee, Inc.)Handler: sacore - - c:\Program Files (x86)\Mc Afee\Site Advisor\x64\Mc [2015-09-02] (Mc Afee, Inc.)Handler-x32: sacore - - c:\Program Files (x86)\Mc Afee\Site Advisor\Mc [2015-09-02] (Mc Afee, Inc.)Fire Fox:========FF Profile Path: C:\Users\Sharon\App Data\Roaming\Mozilla\Firefox\Profiles\qn9agpva.default FF Homepage: FF Plugin: @Microsoft.com/Np Ctrl,version=1.0 - C:\Program Files (x86)\Google\Update

C potentially unwanted application deleted - quarantined C:\Users\Sharon\Downloads\PCHealth Win32/Distromatic. It started out with her updating to win10 and then getting locked out of the computer.C potentially unwanted application deleted - quarantined C:\Users\Sharon\Downloads\setup (1)Win32/Systweak. I was just figuring out why it wouldn't let her in... solved the related email problem and related connectivity problems.

||

C potentially unwanted application deleted - quarantined C:\Users\Sharon\Downloads\PCHealth Win32/Distromatic. It started out with her updating to win10 and then getting locked out of the computer.

C potentially unwanted application deleted - quarantined C:\Users\Sharon\Downloads\setup (1)Win32/Systweak. I was just figuring out why it wouldn't let her in... solved the related email problem and related connectivity problems.

ocid=iehp Search Scopes: HKLM - No Name - - No File Handler: dssrequest - - c:\Program Files (x86)\Mc Afee\Site Advisor\x64\Mc [2015-09-02] (Mc Afee, Inc.)Handler-x32: dssrequest - - c:\Program Files (x86)\Mc Afee\Site Advisor\Mc [2015-09-02] (Mc Afee, Inc.)Handler: sacore - - c:\Program Files (x86)\Mc Afee\Site Advisor\x64\Mc [2015-09-02] (Mc Afee, Inc.)Handler-x32: sacore - - c:\Program Files (x86)\Mc Afee\Site Advisor\Mc [2015-09-02] (Mc Afee, Inc.)Fire Fox:========FF Profile Path: C:\Users\Sharon\App Data\Roaming\Mozilla\Firefox\Profiles\qn9agpva.default FF Homepage: FF Plugin: @Microsoft.com/Np Ctrl,version=1.0 - C:\Program Files (x86)\Google\Update\1.3.28.15\np Google Update3[2015-09-15] (Google Inc.)FF HKLM\...\Firefox\Extensions: [] - C:\Program Files (x86)\Mc Afee\Site Advisor FF Extension: Mc Afee Web Advisor - C:\Program Files (x86)\Mc Afee\Site Advisor [2015-07-18]FF HKLM-x32\...\Firefox\Extensions: [] - C:\Program Files (x86)\Mc Afee\Site Advisor Chrome: =======CHR Home Page: Default - No File CHR Plugin: (Mc Afee Site Advisor) - C:\Program Files (x86)\Mc Afee\Site Advisor\npmcffplg32(Mc Afee, Inc.)CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\(Microsoft Corporation)CHR Plugin: (Mc Afee Security Center) - c:\progra~2\mcafee\msc\npmcsn~1= No File CHR Profile: C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default CHR Extension: (Online Map Finder) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\ceopoaldcnmhechacafgagdkklcogkgd [2015-09-16]CHR Extension: (Television Fanatic) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\cgdcfojopgjmdijbebdcnnhbnlofoncp [2015-09-16]CHR Extension: (Daily Local Guide) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\ckchkohkbpoijhiebdafjlnlhjpijgoh [2015-09-16]CHR Extension: (Site Advisor) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2015-07-18]CHR Extension: (Inbox Ace) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\fkfcmeoepjhclglafbppmeidjjolcgid [2015-09-16]CHR Extension: (Internet Speed Tracker) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\gcphnjpafgpmilhofjhnigjpldknfpjm [2015-09-16]CHR Extension: (Inbox Ace) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\jbdhaekeogebjjbaldibekfepbhogdng [2015-09-16]CHR Extension: (Maps Galaxy) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\jkhmajblgekhffchpjcbdcanjcelcffi [2015-09-16]CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-04]CHR Extension: (Chrome Web Store Payments) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-22]CHR Extension: (Maps Galaxy) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\oieblhiigdlbmggpfgamghhnmhjiokdf [2015-09-16]CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\Mc Afee\Site Advisor\Mc Ch [2015-09-03]CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\Mc Afee\Site Advisor\Mc Ch [2015-09-03]CHR HKLM-x32\...\Chrome\Extension: [gihfmmedoddijgnhkgfgnkeohkpbipol] - hxxps://clients2.google.com/service/update2/crx==================== Services (Whitelisted) ========================(If an entry is included in the fixlist, it will be removed from the registry.

The file will not be moved unless listed separately.)R2 gpsvc; C:\Windows\System32\[1335296 2015-07-10] (Microsoft Corporation) [File not signed]R2 gpsvc; C:\Windows\System32\[1335296 2015-07-10] (Microsoft Corporation) [File not signed]R2 nsi; C:\Windows\System32\[29184 2015-07-10] (Microsoft Corporation) [File not signed]U3 Win Http Auto Proxy Svc; C:\Windows\system32\[855552 2015-08-16] (Microsoft Corporation) [File not signed]U3 Win Http Auto Proxy Svc; C:\Windows\Sys WOW64\[667136 2015-08-16] (Microsoft Corporation) [File not signed]U3 AJRouter; C:\Windows\System32\[23040 2015-07-10] (Microsoft Corporation) [File not signed]U3 ALG; C:\Windows\System32\[97792 2015-07-10] (Microsoft Corporation) [File not signed]U2 App Host Svc; C:\Windows\system32\inetsrv\[64512 2015-08-16] (Microsoft Corporation) [File not signed]U3 App IDSvc; C:\Windows\System32\[43520 2015-07-10] (Microsoft Corporation) [File not signed]R3 Appinfo; C:\Windows\System32\[93696 2015-07-10] (Microsoft Corporation) [File not signed]U3 App Readiness; C:\Windows\system32\App [621056 2015-07-10] (Microsoft Corporation) [File not signed]U3 App XSvc; C:\Windows\system32\[2178560 2015-08-17] (Microsoft Corporation) [File not signed]U2 Audio Endpoint Builder; C:\Windows\System32\Audio Endpoint [280064 2015-08-16] (Microsoft Corporation) [File not signed]R2 Audiosrv; C:\Windows\System32\[1067520 2015-08-16] (Microsoft Corporation) [File not signed]U3 Ax Inst SV; C:\Windows\System32\Ax Inst [114176 2015-07-10] (Microsoft Corporation) [File not signed]U2 Bcm Bt RSupport; C:\Windows\system32\Btw RSupport [2255064 2013-10-28] (Broadcom Corporation.)U3 BDESVC; C:\Windows\System32\[359936 2015-07-10] (Microsoft Corporation) [File not signed]U2 BFE; C:\Windows\System32\[794112 2015-07-10] (Microsoft Corporation) [File not signed]U2 BITS; C:\Windows\System32\[1168896 2015-07-10] (Microsoft Corporation) [File not signed]U2 Broker Infrastructure; C:\Windows\System32\[526336 2015-07-10] (Microsoft Corporation) [File not signed]U3 Browser; C:\Windows\System32\[133120 2015-07-10] (Microsoft Corporation) [File not signed]U3 Bth HFSrv; C:\Windows\System32\Bth [326144 2015-07-10] (Microsoft Corporation) [File not signed]U3 bthserv; C:\Windows\system32\[85504 2015-07-10] (Microsoft Corporation) [File not signed]U3 CDPSvc; C:\Windows\System32\[134144 2015-07-10] (Microsoft Corporation) [File not signed]U3 Cert Prop Svc; C:\Windows\System32\[192000 2015-07-10] (Microsoft Corporation) [File not signed]U2 Cmd Agent; C:\Program Files\COMODO\COMODO Internet Security\[5542472 2015-09-03] (COMODO)U3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\[2265792 2015-08-05] (COMODO)U2 Core Messaging Registrar; C:\Windows\Sys WOW64\[510976 2015-08-16] (Microsoft Corporation) [File not signed]R2 Crypt Svc; C:\Windows\system32\[77312 2015-07-10] (Microsoft Corporation) [File not signed]R2 Dcom Launch; C:\Windows\system32\[873984 2015-07-10] (Microsoft Corporation) [File not signed]U3 Dcp Svc; C:\Windows\system32\[196096 2015-07-10] (Microsoft Corporation) [File not signed]U3 defragsvc; C:\Windows\System32\[495104 2015-07-10] (Microsoft Corporation) [File not signed]U2 Device Association Service; C:\Windows\system32\[405504 2015-07-10] (Microsoft Corporation) [File not signed]U3 Device Install; C:\Windows\system32\[111616 2015-07-10] (Microsoft Corporation) [File not signed]U3 Dev Query Broker; C:\Windows\system32\Dev Query [33280 2015-07-10] (Microsoft Corporation) [File not signed]U2 Dhcp; C:\Windows\system32\[356352 2015-07-10] (Microsoft Corporation) [File not signed]U2 Dhcp; C:\Windows\Sys WOW64\[292352 2015-07-10] (Microsoft Corporation) [File not signed]U3 diagnosticshub.standardcollector.service; C:\Windows\system32\Diag Svcs\Diagnostics Hub. [27136 2015-07-10] (Microsoft Corporation) [File not signed]U3 Dm Enrollment Svc; C:\Windows\system32\Windows. [267776 2015-07-10] (Microsoft Corporation) [File not signed]U3 Dm Enrollment Svc; C:\Windows\Sys WOW64\Windows. [193024 2015-07-10] (Microsoft Corporation) [File not signed]U2 dmwappushservice; C:\Windows\system32\[63488 2015-07-10] (Microsoft Corporation) [File not signed]U2 Dnscache; C:\Windows\System32\[276992 2015-07-10] (Microsoft Corporation) [File not signed]U2 Do Svc; C:\Windows\system32\[1169408 2015-08-16] (Microsoft Corporation) [File not signed]U3 dot3svc; C:\Windows\System32\dot3[263680 2015-07-10] (Microsoft Corporation) [File not signed]U2 DPS; C:\Windows\system32\[168960 2015-07-10] (Microsoft Corporation) [File not signed]U3 Dsm Svc; C:\Windows\System32\Device Setup [237568 2015-07-10] (Microsoft Corporation) [File not signed]U3 Ds Svc; C:\Windows\System32\Ds [143872 2015-07-10] (Microsoft Corporation) [File not signed]U3 Eaphost; C:\Windows\System32\[106496 2015-07-10] (Microsoft Corporation) [File not signed]U3 EFS; C:\Windows\system32\[55808 2015-07-10] (Microsoft Corporation) [File not signed]U3 embeddedmode; C:\Windows\System32\[87040 2015-07-10] (Microsoft Corporation) [File not signed]U3 Ent App Svc; C:\Windows\system32\Enterprise App Mgmt [275456 2015-07-10] (Microsoft Corporation) [File not signed]U2 Event Log; C:\Windows\System32\[1729024 2015-07-10] (Microsoft Corporation) [File not signed]U2 Event System; C:\Windows\system32\[472576 2015-07-10] (Microsoft Corporation) [File not signed]U2 Event System; C:\Windows\Sys WOW64\[344576 2015-07-10] (Microsoft Corporation) [File not signed]U3 Fax; C:\Windows\system32\[651776 2015-07-10] (Microsoft Corporation) [File not signed]U3 fd PHost; C:\Windows\system32\fd [21504 2015-07-10] (Microsoft Corporation) [File not signed]U2 FDRes Pub; C:\Windows\system32\[35840 2015-07-10] (Microsoft Corporation) [File not signed]U3 fhsvc; C:\Windows\system32\[118784 2015-07-10] (Microsoft Corporation) [File not signed]U2 Font Cache; C:\Windows\system32\Fnt [1679360 2015-08-16] (Microsoft Corporation) [File not signed]U3 hidserv; C:\Windows\system32\[34304 2015-07-10] (Microsoft Corporation) [File not signed]U3 hidserv; C:\Windows\Sys WOW64\[29696 2015-07-10] (Microsoft Corporation) [File not signed]U3 Home Group Listener; C:\Windows\system32\List [273408 2015-07-10] (Microsoft Corporation) [File not signed]U3 Home Group Provider; C:\Windows\system32\[463872 2015-07-10] (Microsoft Corporation) [File not signed]U3 Home Group Provider; C:\Windows\Sys WOW64\[381440 2015-07-10] (Microsoft Corporation) [File not signed]U3 icssvc; C:\Windows\System32\[148992 2015-08-11] (Microsoft Corporation) [File not signed]U3 IEEtw Collector Service; C:\Windows\system32\IEEtw [115200 2015-07-10] (Microsoft Corporation) [File not signed]U2 IKEEXT; C:\Windows\System32\[954368 2015-07-10] (Microsoft Corporation) [File not signed]U2 iphlpsvc; C:\Windows\System32\[954880 2015-07-10] (Microsoft Corporation) [File not signed]U3 Key Iso; C:\Windows\system32\[96256 2015-07-10] (Microsoft Corporation) [File not signed]U3 Key Iso; C:\Windows\Sys WOW64\[69632 2015-07-10] (Microsoft Corporation) [File not signed]U3 Ktm Rm; C:\Windows\system32\[378880 2015-07-10] (Microsoft Corporation) [File not signed]U2 Lanman Server; C:\Windows\system32\[283136 2015-07-10] (Microsoft Corporation) [File not signed]R2 Lanman Workstation; C:\Windows\System32\[279040 2015-07-10] (Microsoft Corporation) [File not signed]U3 lfsvc; C:\Windows\System32\[27136 2015-07-10] (Microsoft Corporation) [File not signed]U3 lfsvc; C:\Windows\Sys WOW64\[22528 2015-07-10] (Microsoft Corporation) [File not signed]U3 License Manager; C:\Windows\system32\License Manager [21504 2015-07-10] (Microsoft Corporation) [File not signed]U3 lltdsvc; C:\Windows\System32\[279040 2015-07-10] (Microsoft Corporation) [File not signed]U3 lmhosts; C:\Windows\System32\[23040 2015-07-10] (Microsoft Corporation) [File not signed]U2 LSM; C:\Windows\System32\[749056 2015-07-10] (Microsoft Corporation) [File not signed]U2 Maps Broker; C:\Windows\System32\[62464 2015-07-10] (Microsoft Corporation) [File not signed]U2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\[1133880 2015-06-18] (Malwarebytes Corporation)U2 Mc Afee Site Advisor Service; c:\Program Files (x86)\Mc Afee\Site Advisor\[157928 2015-09-02] (Mc Afee, Inc.)U2 Mps Svc; C:\Windows\system32\[856576 2015-07-10] (Microsoft Corporation) [File not signed]U3 MSDTC; C:\Windows\System32\[147968 2015-07-10] (Microsoft Corporation) [File not signed]U3 MSi SCSI; C:\Windows\system32\[151040 2015-07-10] (Microsoft Corporation) [File not signed]S3 msiserver; C:\Windows\System32\[65536 2015-08-16] (Microsoft Corporation) [File not signed]S3 msiserver; C:\Windows\Sys WOW64\[58368 2015-08-16] (Microsoft Corporation) [File not signed]U2 MSMQ; C:\Windows\system32\[26112 2015-08-16] (Microsoft Corporation) [File not signed]U3 Nca Svc; C:\Windows\System32\[167424 2015-07-10] (Microsoft Corporation) [File not signed]U3 Ncb Service; C:\Windows\System32\[337408 2015-07-10] (Microsoft Corporation) [File not signed]U3 Ncd Auto Setup; C:\Windows\System32\Ncd Auto [75264 2015-07-10] (Microsoft Corporation) [File not signed]U3 Netlogon; C:\Windows\system32\[836096 2015-07-10] (Microsoft Corporation) [File not signed]U3 Netlogon; C:\Windows\Sys WOW64\[708608 2015-07-10] (Microsoft Corporation) [File not signed]U3 Netman; C:\Windows\System32\[265728 2015-07-10] (Microsoft Corporation) [File not signed]U3 netprofm; C:\Windows\System32\[550400 2015-07-10] (Microsoft Corporation) [File not signed]U3 Net Setup Svc; C:\Windows\System32\Net Setup [187392 2015-08-17] (Microsoft Corporation) [File not signed]U3 Ngc Ctnr Svc; C:\Windows\System32\Ngc Ctnr [268800 2015-07-10] (Microsoft Corporation) [File not signed]U3 Ngc Svc; C:\Windows\system32\[512000 2015-07-10] (Microsoft Corporation) [File not signed]U2 Nla Svc; C:\Windows\System32\[371712 2015-07-10] (Microsoft Corporation) [File not signed]U2 One Sync Svc; C:\Windows\System32\APHost [296960 2015-07-10] (Microsoft Corporation) [File not signed]U3 p2pimsvc; C:\Windows\system32\[351232 2015-07-10] (Microsoft Corporation) [File not signed]U3 p2psvc; C:\Windows\system32\p2[434176 2015-07-10] (Microsoft Corporation) [File not signed]U3 Perf Host; C:\Windows\Sys Wow64\[21504 2015-07-10] (Microsoft Corporation) [File not signed]U3 Pim Index Maintenance Svc; C:\Windows\System32\Pim Index [289280 2015-07-10] (Microsoft Corporation) [File not signed]U3 pla; C:\Windows\system32\[1486848 2015-07-10] (Microsoft Corporation) [File not signed]U3 pla; C:\Windows\Sys WOW64\[1536512 2015-07-10] (Microsoft Corporation) [File not signed]U3 Plug Play; C:\Windows\system32\[111616 2015-07-10] (Microsoft Corporation) [File not signed]U3 PNRPAuto Reg; C:\Windows\system32\[27648 2015-07-10] (Microsoft Corporation) [File not signed]U3 PNRPsvc; C:\Windows\system32\[351232 2015-07-10] (Microsoft Corporation) [File not signed]U3 Policy Agent; C:\Windows\System32\[390656 2015-07-10] (Microsoft Corporation) [File not signed]U2 Power; C:\Windows\system32\[93184 2015-07-10] (Microsoft Corporation) [File not signed]U3 Print Notify; C:\WINDOWS\system32\spool\drivers\x64\3\Print [3337728 2015-07-10] (Microsoft Corporation) [File not signed]U2 Prof Svc; C:\Windows\system32\[324608 2015-07-10] (Microsoft Corporation) [File not signed]U3 QWAVE; C:\Windows\system32\[286720 2015-07-10] (Microsoft Corporation) [File not signed]S3 Ras Auto; C:\Windows\System32\[106496 2015-07-10] (Microsoft Corporation) [File not signed]S3 Ras Man; C:\Windows\System32\[679936 2015-07-10] (Microsoft Corporation) [File not signed]S4 Remote Access; C:\Windows\System32\[497152 2015-07-10] (Microsoft Corporation) [File not signed]S4 Remote Access; C:\Windows\Sys WOW64\[410112 2015-07-10] (Microsoft Corporation) [File not signed]U4 Remote Registry; C:\Windows\system32\[154112 2015-07-10] (Microsoft Corporation) [File not signed]U3 Retail Demo; C:\Windows\system32\[996352 2015-08-11] (Microsoft Corporation) [File not signed]R2 Rpc Ept Mapper; C:\Windows\System32\Rpc Ep [79360 2015-07-10] (Microsoft Corporation) [File not signed]U3 Rpc Locator; C:\Windows\system32\[10752 2015-07-10] (Microsoft Corporation) [File not signed]R2 Rpc Ss; C:\Windows\system32\[873984 2015-07-10] (Microsoft Corporation) [File not signed]U2 Rt Led Service; C:\Program Files\Realtek\Rt LED\Rt [311296 2010-09-30] (Realtek Semiconductor Corp.) [File not signed]U4 SCard Svr; C:\Windows\System32\SCard [232448 2015-07-10] (Microsoft Corporation) [File not signed]U3 Sc Device Enum; C:\Windows\System32\Sc Device [181760 2015-07-10] (Microsoft Corporation) [File not signed]U2 Schedule; C:\Windows\system32\[1008640 2015-09-17] (Microsoft Corporation) [File not signed]U3 SCPolicy Svc; C:\Windows\System32\[192000 2015-07-10] (Microsoft Corporation) [File not signed]U3 SDRSVC; C:\Windows\System32\[150528 2015-07-10] (Microsoft Corporation) [File not signed]U3 seclogon; C:\Windows\system32\[31232 2015-07-10] (Microsoft Corporation) [File not signed]R2 SENS; C:\Windows\System32\[72192 2015-07-10] (Microsoft Corporation) [File not signed]U3 Sensor Data Service; C:\Windows\System32\Sensor Data [1031680 2015-08-16] (Microsoft Corporation) [File not signed]U3 Sensor Service; C:\Windows\system32\Sensor [229376 2015-08-16] (Microsoft Corporation) [File not signed]U3 Sensr Svc; C:\Windows\system32\[177152 2015-07-10] (Microsoft Corporation) [File not signed]U3 Session Env; C:\Windows\system32\[371200 2015-07-10] (Microsoft Corporation) [File not signed]U3 Session Env; C:\Windows\Sys WOW64\[312320 2015-07-10] (Microsoft Corporation) [File not signed]U4 Shared Access; C:\Windows\System32\[452608 2015-07-10] (Microsoft Corporation) [File not signed]U2 Shell HWDetection; C:\Windows\System32\[593920 2015-07-10] (Microsoft Corporation) [File not signed]U2 Shell HWDetection; C:\Windows\Sys WOW64\[544768 2015-07-10] (Microsoft Corporation) [File not signed]U3 smphost; C:\Windows\System32\[19968 2015-07-10] (Microsoft Corporation) [File not signed]U3 smphost; C:\Windows\Sys WOW64\[17920 2015-07-10] (Microsoft Corporation) [File not signed]U3 Sms Router; C:\Windows\system32\Sms Router [583680 2015-07-10] (Microsoft Corporation) [File not signed]U3 SNMPTRAP; C:\Windows\System32\[15872 2015-07-10] (Microsoft Corporation) [File not signed]R2 Spooler; C:\Windows\System32\[781824 2015-07-10] (Microsoft Corporation) [File not signed]U3 SSDPSRV; C:\Windows\System32\[243712 2015-07-10] (Microsoft Corporation) [File not signed]U3 Sstp Svc; C:\Windows\system32\[210944 2015-07-10] (Microsoft Corporation) [File not signed]U3 State Repository; C:\Windows\system32\windows.[2674176 2015-07-10] (Microsoft Corporation) [File not signed]U3 State Repository; C:\Windows\Sys WOW64\windows.[2049024 2015-07-10] (Microsoft Corporation) [File not signed]U3 stisvc; C:\Windows\System32\[637440 2015-07-10] (Microsoft Corporation) [File not signed]U3 Stor Svc; C:\Windows\system32\[394240 2015-07-10] (Microsoft Corporation) [File not signed]U3 svsvc; C:\Windows\system32\[13824 2015-07-10] (Microsoft Corporation) [File not signed]U3 swprv; C:\Windows\System32\[464896 2015-07-10] (Microsoft Corporation) [File not signed]U2 Syn TPEnh Service; C:\Program Files\Synaptics\Syn TP\Syn TPEnh [249032 2015-06-03] (Synaptics Incorporated)U2 Sys Main; C:\Windows\system32\[1106432 2015-08-11] (Microsoft Corporation) [File not signed]U2 System Events Broker; C:\Windows\System32\System Events Broker [379904 2015-07-10] (Microsoft Corporation) [File not signed]U3 Tablet Input Service; C:\Windows\System32\Tab [151040 2015-08-16] (Microsoft Corporation) [File not signed]U3 Tapi Srv; C:\Windows\System32\[311808 2015-07-10] (Microsoft Corporation) [File not signed]U3 Tapi Srv; C:\Windows\Sys WOW64\[254976 2015-07-10] (Microsoft Corporation) [File not signed]U2 Team Viewer; C:\Program Files (x86)\Team Viewer\Team Viewer_[5702416 2015-09-11] (Team Viewer Gmb H)S3 Term Service; C:\Windows\System32\[1032192 2015-07-10] (Microsoft Corporation) [File not signed]R2 Themes; C:\Windows\system32\[58368 2015-07-10] (Microsoft Corporation) [File not signed]U2 tiledatamodelsvc; C:\Windows\system32\[503808 2015-08-16] (Microsoft Corporation) [File not signed]U3 Time Broker; C:\Windows\System32\Time Broker [167936 2015-07-10] (Microsoft Corporation) [File not signed]U2 Trk Wks; C:\Windows\System32\[114176 2015-07-10] (Microsoft Corporation) [File not signed]S3 Trusted Installer; C:\Windows\servicing\Trusted [120832 2015-07-10] (Microsoft Corporation) [File not signed]U3 UI0Detect; C:\Windows\system32\UI0[43008 2015-07-10] (Microsoft Corporation) [File not signed]U3 Um Rdp Service; C:\Windows\System32\[276992 2015-07-10] (Microsoft Corporation) [File not signed]U3 Unistore Svc; C:\Windows\System32\[1203200 2015-08-16] (Microsoft Corporation) [File not signed]U3 Unistore Svc; C:\Windows\Sys WOW64\[925696 2015-08-16] (Microsoft Corporation) [File not signed]U3 upnphost; C:\Windows\System32\[452096 2015-07-10] (Microsoft Corporation) [File not signed]U3 upnphost; C:\Windows\Sys WOW64\[329216 2015-07-10] (Microsoft Corporation) [File not signed]U3 User Data Svc; C:\Windows\System32\[1420288 2015-08-16] (Microsoft Corporation) [File not signed]U2 User Manager; C:\Windows\System32\[717312 2015-07-10] (Microsoft Corporation) [File not signed]U3 Uso Svc; C:\Windows\system32\[343040 2015-08-16] (Microsoft Corporation) [File not signed]U3 Vault Svc; C:\Windows\System32\[322048 2015-08-17] (Microsoft Corporation) [File not signed]U3 vds; C:\Windows\System32\[665088 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmicguestinterface; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmicheartbeat; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmickvpexchange; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmicrdv; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmicshutdown; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmictimesync; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmicvmsession; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmicvss; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 VSS; C:\Windows\system32\[1370112 2015-07-10] (Microsoft Corporation) [File not signed]U3 W32Time; C:\Windows\system32\w32[518656 2015-07-10] (Microsoft Corporation) [File not signed]U3 w3logsvc; C:\Windows\system32\inetsrv\w3[84480 2015-08-16] (Microsoft Corporation) [File not signed]U2 W3SVC; C:\Windows\system32\inetsrv\iisw3[578560 2015-08-16] (Microsoft Corporation) [File not signed]U3 Wallet Service; C:\Windows\system32\Wallet [504320 2015-07-10] (Microsoft Corporation) [File not signed]U3 WAS; C:\Windows\system32\inetsrv\iisw3[578560 2015-08-16] (Microsoft Corporation) [File not signed]U3 wbengine; C:\Windows\system32\[1570816 2015-07-10] (Microsoft Corporation) [File not signed]U2 Wbio Srvc; C:\Windows\System32\[605184 2015-07-10] (Microsoft Corporation) [File not signed]U2 Wcmsvc; C:\Windows\System32\[593920 2015-08-11] (Microsoft Corporation) [File not signed]U3 wcncsvc; C:\Windows\System32\[471040 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wcs Plug In Service; C:\Windows\System32\Wcs Plug In [43008 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wcs Plug In Service; C:\Windows\Sys WOW64\Wcs Plug In [33792 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wdi Service Host; C:\Windows\system32\[98304 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wdi Service Host; C:\Windows\Sys WOW64\[89600 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wdi System Host; C:\Windows\system32\[98304 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wdi System Host; C:\Windows\Sys WOW64\[89600 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wd Nis Svc; C:\Program Files\Windows Defender\Nis [362928 2015-07-10] (Microsoft Corporation)U3 Web Client; C:\Windows\System32\[228864 2015-07-10] (Microsoft Corporation) [File not signed]U3 Web Client; C:\Windows\Sys WOW64\[199680 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wecsvc; C:\Windows\system32\[211456 2015-07-10] (Microsoft Corporation) [File not signed]U3 WEPHOSTSVC; C:\Windows\system32\[27648 2015-07-10] (Microsoft Corporation) [File not signed]U3 wercplsupport; C:\Windows\System32\[95744 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wer Svc; C:\Windows\System32\Wer [133120 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wia Rpc; C:\Windows\System32\[74752 2015-07-10] (Microsoft Corporation) [File not signed]U3 Win Defend; C:\Program Files\Windows Defender\Ms Mp [24864 2015-07-10] (Microsoft Corporation)U2 Winmgmt; C:\Windows\system32\wbem\[226304 2015-07-10] (Microsoft Corporation) [File not signed]U3 Win RM; C:\Windows\system32\Wsm [2556928 2015-07-10] (Microsoft Corporation) [File not signed]U3 Win RM; C:\Windows\Sys WOW64\Wsm [2181120 2015-07-10] (Microsoft Corporation) [File not signed]U2 Wlan Svc; C:\Windows\System32\[2226688 2015-08-18] (Microsoft Corporation) [File not signed]U3 wlidsvc; C:\Windows\system32\[2093056 2015-08-12] (Microsoft Corporation) [File not signed]U3 wmi Ap Srv; C:\Windows\system32\wbem\Wmi Ap [202752 2015-07-10] (Microsoft Corporation) [File not signed]U3 WMPNetwork Svc; C:\Program Files\Windows Media Player\[1473536 2015-07-10] (Microsoft Corporation) [File not signed]U3 workfolderssvc; C:\Windows\system32\[1844736 2015-07-10] (Microsoft Corporation) [File not signed]U3 WPDBus Enum; C:\Windows\system32\[86016 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wpn Service; C:\Windows\system32\Wpn [49152 2015-07-10] (Microsoft Corporation) [File not signed]U2 wscsvc; C:\Windows\System32\[179200 2015-07-10] (Microsoft Corporation) [File not signed]U2 WSearch; C:\Windows\system32\Search [902656 2015-08-16] (Microsoft Corporation) [File not signed]U2 WSearch; C:\Windows\Sys WOW64\Search [712192 2015-08-16] (Microsoft Corporation) [File not signed]U3 wuauserv; C:\Windows\system32\[2235904 2015-08-19] (Microsoft Corporation) [File not signed]U3 wudfsvc; C:\Windows\System32\[96256 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wwan Svc; C:\Windows\System32\[1178112 2015-08-11] (Microsoft Corporation) [File not signed]U3 Xbl Auth Manager; C:\Windows\System32\Xbl Auth [918016 2015-07-10] (Microsoft Corporation) [File not signed]U3 Xbl Game Save; C:\Windows\System32\Xbl Game [1149440 2015-07-10] (Microsoft Corporation) [File not signed]U3 Xbox Net Api Svc; C:\Windows\system32\Xbox Net Api [1019392 2015-07-10] (Microsoft Corporation) [File not signed]U2 Rtk Audio Service; "C:\Program Files\Realtek\Audio\HDA\Rtk Audio Service64.exe" [X]===================== Drivers (Whitelisted) ==========================Forget trying to run Combofix, just remembered it is W10. If Rogue Killer won't run, open IE & turn off Smart Screen Filter. Please disconnect any USB or external drives from the computer before you run this scan!

C potentially unwanted application deleted - quarantined C:\Users\Sharon\Downloads\PCHealth Boost-Setup (2)Win32/Distromatic.

C potentially unwanted application deleted - quarantined C:\Users\Sharon\Downloads\PCHealth Boost-Setup (3)Win32/Distromatic.

In fact, when Combo Fix is running, do not touch your computer at all. Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)Microsoft Office Starter 2010 - English (HKLM-x32\...\) (Version: 14.0.4763.1000 - Microsoft Corporation)Microsoft Silverlight (HKLM\...\) (Version: 5.1.40728.0 - Microsoft Corporation)Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\) (Version: 3.1.0000 - Microsoft Corporation)Microsoft Visual C 2005 Redistributable (HKLM-x32\...\) (Version: 8.0.61001 - Microsoft Corporation)Microsoft Visual C 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\) (Version: 9.0.30729 - Microsoft Corporation)Microsoft Visual C 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\) (Version: 9.0.30729.6161 - Microsoft Corporation)Microsoft Visual C 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\) (Version: 9.0.30729 - Microsoft Corporation)Microsoft Visual C 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\) (Version: 9.0.30729.6161 - Microsoft Corporation)Microsoft Visual C 2010 x64 Redistributable - 10.0.40219 (HKLM\...\) (Version: 10.0.40219 - Microsoft Corporation)Microsoft Visual C 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\) (Version: 10.0.40219 - Microsoft Corporation)Onekey Theater (HKLM-x32\...\Install Shield_) (Version: 2.0.2.7 - Lenovo)Onekey Theater (x32 Version: 2.0.2.7 - Lenovo) Hiddenoo Voo (HKLM-x32\...\) (Version: 2.2.4.25 - oo Voo LLC.)Power2Go (HKLM-x32\...\) (Version: 5.6.0.7303 - Cyber Link Corp.)Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\) (Version: 7.21.531.2010 - Realtek)Realtek High Definition Audio Driver (HKLM-x32\...\) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)Realtek USB 2.0 Reader Driver (HKLM-x32\...\) (Version: 6.1.7600.10008 - Realtek Semiconductor Corp.)Rt LED (HKLM\...\) (Version: 1.0.3 - Realtek Semiconductor Corp.)Shared C Run-time for x64 (HKLM\...\) (Version: 10.0.0 - Mc Afee)SRS Premium Sound Control Panel (HKLM\...\) (Version: 1.10.18.0 - SRS Labs, Inc.)Synaptics Pointing Device Driver (HKLM\...\Syn TPDeinst Key) (Version: 19.0.9.5 - Synaptics Incorporated)Team Viewer 10 (HKLM-x32\...\Team Viewer) (Version: 10.0.47484 - Team Viewer)Ultra Search V2.0.3 (64 bit) (HKLM\...\Ultra Search_is1) (Version: 2.0.3 - JAM Software)User Guide (HKLM-x32\...\Install Shield_) (Version: 1.0.0.6 - Lenovo)User Guide (x32 Version: 1.0.0.6 - Lenovo) Hidden Veri Face (HKLM-x32\...\Veri Face) (Version: 4.0.0.1206 - Lenovo)Visual Studio 2010 x64 Redistributables (HKLM\...\) (Version: 13.0.0.1 - AVG Technologies)Waterfox 40.0.3 (x64 en-US) (HKLM\...\Waterfox 40.0.3 (x64 en-US)) (Version: 40.0.3 - Mozilla)Windows Driver Package - Lenovo (ACPIVPC) System (12/02/2010 6.1.0.1) (HKLM\...\EA12B1FB53CE4E387C31A85236C41EF559B5E392) (Version: 12/02/2010 6.1.0.1 - Lenovo)Windows Live Essentials (HKLM-x32\...\Win Live Suite) (Version: 15.4.3508.1109 - Microsoft Corporation)Windows Live Mesh Active X Control for Remote Connections (HKLM-x32\...\) (Version: 15.4.5722.2 - Microsoft Corporation)Wise Disk Cleaner 8.82 (HKLM-x32\...\Wise Disk Cleaner_is1) (Version: 8.82 - Wise Cleaner.com, Inc.)==================== Custom CLSID (Whitelisted): ==========================(If an entry is included in the fixlist, it will be removed from the registry. Background Task.dll2015-08-16 - 2015-08-16 - 02274816 _____ () C:\Windows\System Apps\Microsoft. Cortana_cw5n1h2txyewy\Reminders UI.dll2015-06-01 - 2015-06-01 - 00102912 _____ () C:\Windows\System32\Icc Lib Dll_x64.dll2011-12-02 - 2011-12-02 - 00100256 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\Onekey Support.exe2015-09-03 - 2015-08-11 - 00293376 _____ () C:\WINDOWS\SYSTEM32\textinputframework.dll2015-09-16 - 2015-09-16 - 08241152 _____ () C:\Program Files\Windows Apps\Microsoft. Mobile.dll2015-09-16 - 2015-09-16 - 02238976 _____ () C:\Program Files\Windows Apps\Microsoft. The file will not be moved unless listed separately.)Firewall Rules: [vm-monitoring-nb-session] = (Allow) C:\Program Files (x86)\Team Viewer\Team Viewer_Service.exe==================== Faulty Device Manager Devices =============Could not list Devices.

.3.28.15\np Google Update3[2015-09-15] (Google Inc.)FF HKLM\...\Firefox\Extensions: [] - C:\Program Files (x86)\Mc Afee\Site Advisor FF Extension: Mc Afee Web Advisor - C:\Program Files (x86)\Mc Afee\Site Advisor [2015-07-18]FF HKLM-x32\...\Firefox\Extensions: [] - C:\Program Files (x86)\Mc Afee\Site Advisor Chrome: =======CHR Home Page: Default - No File CHR Plugin: (Mc Afee Site Advisor) - C:\Program Files (x86)\Mc Afee\Site Advisor\npmcffplg32(Mc Afee, Inc.)CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\(Microsoft Corporation)CHR Plugin: (Mc Afee Security Center) - c:\progra~2\mcafee\msc\npmcsn~1= No File CHR Profile: C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default CHR Extension: (Online Map Finder) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\ceopoaldcnmhechacafgagdkklcogkgd [2015-09-16]CHR Extension: (Television Fanatic) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\cgdcfojopgjmdijbebdcnnhbnlofoncp [2015-09-16]CHR Extension: (Daily Local Guide) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\ckchkohkbpoijhiebdafjlnlhjpijgoh [2015-09-16]CHR Extension: (Site Advisor) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2015-07-18]CHR Extension: (Inbox Ace) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\fkfcmeoepjhclglafbppmeidjjolcgid [2015-09-16]CHR Extension: (Internet Speed Tracker) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\gcphnjpafgpmilhofjhnigjpldknfpjm [2015-09-16]CHR Extension: (Inbox Ace) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\jbdhaekeogebjjbaldibekfepbhogdng [2015-09-16]CHR Extension: (Maps Galaxy) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\jkhmajblgekhffchpjcbdcanjcelcffi [2015-09-16]CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-04]CHR Extension: (Chrome Web Store Payments) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-22]CHR Extension: (Maps Galaxy) - C:\Users\Sharon\App Data\Local\Google\Chrome\User Data\Default\Extensions\oieblhiigdlbmggpfgamghhnmhjiokdf [2015-09-16]CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\Mc Afee\Site Advisor\Mc Ch [2015-09-03]CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\Mc Afee\Site Advisor\Mc Ch [2015-09-03]CHR HKLM-x32\...\Chrome\Extension: [gihfmmedoddijgnhkgfgnkeohkpbipol] - hxxps://clients2.google.com/service/update2/crx==================== Services (Whitelisted) ========================(If an entry is included in the fixlist, it will be removed from the registry.

The file will not be moved unless listed separately.)R2 gpsvc; C:\Windows\System32\[1335296 2015-07-10] (Microsoft Corporation) [File not signed]R2 gpsvc; C:\Windows\System32\[1335296 2015-07-10] (Microsoft Corporation) [File not signed]R2 nsi; C:\Windows\System32\[29184 2015-07-10] (Microsoft Corporation) [File not signed]U3 Win Http Auto Proxy Svc; C:\Windows\system32\[855552 2015-08-16] (Microsoft Corporation) [File not signed]U3 Win Http Auto Proxy Svc; C:\Windows\Sys WOW64\[667136 2015-08-16] (Microsoft Corporation) [File not signed]U3 AJRouter; C:\Windows\System32\[23040 2015-07-10] (Microsoft Corporation) [File not signed]U3 ALG; C:\Windows\System32\[97792 2015-07-10] (Microsoft Corporation) [File not signed]U2 App Host Svc; C:\Windows\system32\inetsrv\[64512 2015-08-16] (Microsoft Corporation) [File not signed]U3 App IDSvc; C:\Windows\System32\[43520 2015-07-10] (Microsoft Corporation) [File not signed]R3 Appinfo; C:\Windows\System32\[93696 2015-07-10] (Microsoft Corporation) [File not signed]U3 App Readiness; C:\Windows\system32\App [621056 2015-07-10] (Microsoft Corporation) [File not signed]U3 App XSvc; C:\Windows\system32\[2178560 2015-08-17] (Microsoft Corporation) [File not signed]U2 Audio Endpoint Builder; C:\Windows\System32\Audio Endpoint [280064 2015-08-16] (Microsoft Corporation) [File not signed]R2 Audiosrv; C:\Windows\System32\[1067520 2015-08-16] (Microsoft Corporation) [File not signed]U3 Ax Inst SV; C:\Windows\System32\Ax Inst [114176 2015-07-10] (Microsoft Corporation) [File not signed]U2 Bcm Bt RSupport; C:\Windows\system32\Btw RSupport [2255064 2013-10-28] (Broadcom Corporation.)U3 BDESVC; C:\Windows\System32\[359936 2015-07-10] (Microsoft Corporation) [File not signed]U2 BFE; C:\Windows\System32\[794112 2015-07-10] (Microsoft Corporation) [File not signed]U2 BITS; C:\Windows\System32\[1168896 2015-07-10] (Microsoft Corporation) [File not signed]U2 Broker Infrastructure; C:\Windows\System32\[526336 2015-07-10] (Microsoft Corporation) [File not signed]U3 Browser; C:\Windows\System32\[133120 2015-07-10] (Microsoft Corporation) [File not signed]U3 Bth HFSrv; C:\Windows\System32\Bth [326144 2015-07-10] (Microsoft Corporation) [File not signed]U3 bthserv; C:\Windows\system32\[85504 2015-07-10] (Microsoft Corporation) [File not signed]U3 CDPSvc; C:\Windows\System32\[134144 2015-07-10] (Microsoft Corporation) [File not signed]U3 Cert Prop Svc; C:\Windows\System32\[192000 2015-07-10] (Microsoft Corporation) [File not signed]U2 Cmd Agent; C:\Program Files\COMODO\COMODO Internet Security\[5542472 2015-09-03] (COMODO)U3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\[2265792 2015-08-05] (COMODO)U2 Core Messaging Registrar; C:\Windows\Sys WOW64\[510976 2015-08-16] (Microsoft Corporation) [File not signed]R2 Crypt Svc; C:\Windows\system32\[77312 2015-07-10] (Microsoft Corporation) [File not signed]R2 Dcom Launch; C:\Windows\system32\[873984 2015-07-10] (Microsoft Corporation) [File not signed]U3 Dcp Svc; C:\Windows\system32\[196096 2015-07-10] (Microsoft Corporation) [File not signed]U3 defragsvc; C:\Windows\System32\[495104 2015-07-10] (Microsoft Corporation) [File not signed]U2 Device Association Service; C:\Windows\system32\[405504 2015-07-10] (Microsoft Corporation) [File not signed]U3 Device Install; C:\Windows\system32\[111616 2015-07-10] (Microsoft Corporation) [File not signed]U3 Dev Query Broker; C:\Windows\system32\Dev Query [33280 2015-07-10] (Microsoft Corporation) [File not signed]U2 Dhcp; C:\Windows\system32\[356352 2015-07-10] (Microsoft Corporation) [File not signed]U2 Dhcp; C:\Windows\Sys WOW64\[292352 2015-07-10] (Microsoft Corporation) [File not signed]U3 diagnosticshub.standardcollector.service; C:\Windows\system32\Diag Svcs\Diagnostics Hub. [27136 2015-07-10] (Microsoft Corporation) [File not signed]U3 Dm Enrollment Svc; C:\Windows\system32\Windows. [267776 2015-07-10] (Microsoft Corporation) [File not signed]U3 Dm Enrollment Svc; C:\Windows\Sys WOW64\Windows. [193024 2015-07-10] (Microsoft Corporation) [File not signed]U2 dmwappushservice; C:\Windows\system32\[63488 2015-07-10] (Microsoft Corporation) [File not signed]U2 Dnscache; C:\Windows\System32\[276992 2015-07-10] (Microsoft Corporation) [File not signed]U2 Do Svc; C:\Windows\system32\[1169408 2015-08-16] (Microsoft Corporation) [File not signed]U3 dot3svc; C:\Windows\System32\dot3[263680 2015-07-10] (Microsoft Corporation) [File not signed]U2 DPS; C:\Windows\system32\[168960 2015-07-10] (Microsoft Corporation) [File not signed]U3 Dsm Svc; C:\Windows\System32\Device Setup [237568 2015-07-10] (Microsoft Corporation) [File not signed]U3 Ds Svc; C:\Windows\System32\Ds [143872 2015-07-10] (Microsoft Corporation) [File not signed]U3 Eaphost; C:\Windows\System32\[106496 2015-07-10] (Microsoft Corporation) [File not signed]U3 EFS; C:\Windows\system32\[55808 2015-07-10] (Microsoft Corporation) [File not signed]U3 embeddedmode; C:\Windows\System32\[87040 2015-07-10] (Microsoft Corporation) [File not signed]U3 Ent App Svc; C:\Windows\system32\Enterprise App Mgmt [275456 2015-07-10] (Microsoft Corporation) [File not signed]U2 Event Log; C:\Windows\System32\[1729024 2015-07-10] (Microsoft Corporation) [File not signed]U2 Event System; C:\Windows\system32\[472576 2015-07-10] (Microsoft Corporation) [File not signed]U2 Event System; C:\Windows\Sys WOW64\[344576 2015-07-10] (Microsoft Corporation) [File not signed]U3 Fax; C:\Windows\system32\[651776 2015-07-10] (Microsoft Corporation) [File not signed]U3 fd PHost; C:\Windows\system32\fd [21504 2015-07-10] (Microsoft Corporation) [File not signed]U2 FDRes Pub; C:\Windows\system32\[35840 2015-07-10] (Microsoft Corporation) [File not signed]U3 fhsvc; C:\Windows\system32\[118784 2015-07-10] (Microsoft Corporation) [File not signed]U2 Font Cache; C:\Windows\system32\Fnt [1679360 2015-08-16] (Microsoft Corporation) [File not signed]U3 hidserv; C:\Windows\system32\[34304 2015-07-10] (Microsoft Corporation) [File not signed]U3 hidserv; C:\Windows\Sys WOW64\[29696 2015-07-10] (Microsoft Corporation) [File not signed]U3 Home Group Listener; C:\Windows\system32\List [273408 2015-07-10] (Microsoft Corporation) [File not signed]U3 Home Group Provider; C:\Windows\system32\[463872 2015-07-10] (Microsoft Corporation) [File not signed]U3 Home Group Provider; C:\Windows\Sys WOW64\[381440 2015-07-10] (Microsoft Corporation) [File not signed]U3 icssvc; C:\Windows\System32\[148992 2015-08-11] (Microsoft Corporation) [File not signed]U3 IEEtw Collector Service; C:\Windows\system32\IEEtw [115200 2015-07-10] (Microsoft Corporation) [File not signed]U2 IKEEXT; C:\Windows\System32\[954368 2015-07-10] (Microsoft Corporation) [File not signed]U2 iphlpsvc; C:\Windows\System32\[954880 2015-07-10] (Microsoft Corporation) [File not signed]U3 Key Iso; C:\Windows\system32\[96256 2015-07-10] (Microsoft Corporation) [File not signed]U3 Key Iso; C:\Windows\Sys WOW64\[69632 2015-07-10] (Microsoft Corporation) [File not signed]U3 Ktm Rm; C:\Windows\system32\[378880 2015-07-10] (Microsoft Corporation) [File not signed]U2 Lanman Server; C:\Windows\system32\[283136 2015-07-10] (Microsoft Corporation) [File not signed]R2 Lanman Workstation; C:\Windows\System32\[279040 2015-07-10] (Microsoft Corporation) [File not signed]U3 lfsvc; C:\Windows\System32\[27136 2015-07-10] (Microsoft Corporation) [File not signed]U3 lfsvc; C:\Windows\Sys WOW64\[22528 2015-07-10] (Microsoft Corporation) [File not signed]U3 License Manager; C:\Windows\system32\License Manager [21504 2015-07-10] (Microsoft Corporation) [File not signed]U3 lltdsvc; C:\Windows\System32\[279040 2015-07-10] (Microsoft Corporation) [File not signed]U3 lmhosts; C:\Windows\System32\[23040 2015-07-10] (Microsoft Corporation) [File not signed]U2 LSM; C:\Windows\System32\[749056 2015-07-10] (Microsoft Corporation) [File not signed]U2 Maps Broker; C:\Windows\System32\[62464 2015-07-10] (Microsoft Corporation) [File not signed]U2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\[1133880 2015-06-18] (Malwarebytes Corporation)U2 Mc Afee Site Advisor Service; c:\Program Files (x86)\Mc Afee\Site Advisor\[157928 2015-09-02] (Mc Afee, Inc.)U2 Mps Svc; C:\Windows\system32\[856576 2015-07-10] (Microsoft Corporation) [File not signed]U3 MSDTC; C:\Windows\System32\[147968 2015-07-10] (Microsoft Corporation) [File not signed]U3 MSi SCSI; C:\Windows\system32\[151040 2015-07-10] (Microsoft Corporation) [File not signed]S3 msiserver; C:\Windows\System32\[65536 2015-08-16] (Microsoft Corporation) [File not signed]S3 msiserver; C:\Windows\Sys WOW64\[58368 2015-08-16] (Microsoft Corporation) [File not signed]U2 MSMQ; C:\Windows\system32\[26112 2015-08-16] (Microsoft Corporation) [File not signed]U3 Nca Svc; C:\Windows\System32\[167424 2015-07-10] (Microsoft Corporation) [File not signed]U3 Ncb Service; C:\Windows\System32\[337408 2015-07-10] (Microsoft Corporation) [File not signed]U3 Ncd Auto Setup; C:\Windows\System32\Ncd Auto [75264 2015-07-10] (Microsoft Corporation) [File not signed]U3 Netlogon; C:\Windows\system32\[836096 2015-07-10] (Microsoft Corporation) [File not signed]U3 Netlogon; C:\Windows\Sys WOW64\[708608 2015-07-10] (Microsoft Corporation) [File not signed]U3 Netman; C:\Windows\System32\[265728 2015-07-10] (Microsoft Corporation) [File not signed]U3 netprofm; C:\Windows\System32\[550400 2015-07-10] (Microsoft Corporation) [File not signed]U3 Net Setup Svc; C:\Windows\System32\Net Setup [187392 2015-08-17] (Microsoft Corporation) [File not signed]U3 Ngc Ctnr Svc; C:\Windows\System32\Ngc Ctnr [268800 2015-07-10] (Microsoft Corporation) [File not signed]U3 Ngc Svc; C:\Windows\system32\[512000 2015-07-10] (Microsoft Corporation) [File not signed]U2 Nla Svc; C:\Windows\System32\[371712 2015-07-10] (Microsoft Corporation) [File not signed]U2 One Sync Svc; C:\Windows\System32\APHost [296960 2015-07-10] (Microsoft Corporation) [File not signed]U3 p2pimsvc; C:\Windows\system32\[351232 2015-07-10] (Microsoft Corporation) [File not signed]U3 p2psvc; C:\Windows\system32\p2[434176 2015-07-10] (Microsoft Corporation) [File not signed]U3 Perf Host; C:\Windows\Sys Wow64\[21504 2015-07-10] (Microsoft Corporation) [File not signed]U3 Pim Index Maintenance Svc; C:\Windows\System32\Pim Index [289280 2015-07-10] (Microsoft Corporation) [File not signed]U3 pla; C:\Windows\system32\[1486848 2015-07-10] (Microsoft Corporation) [File not signed]U3 pla; C:\Windows\Sys WOW64\[1536512 2015-07-10] (Microsoft Corporation) [File not signed]U3 Plug Play; C:\Windows\system32\[111616 2015-07-10] (Microsoft Corporation) [File not signed]U3 PNRPAuto Reg; C:\Windows\system32\[27648 2015-07-10] (Microsoft Corporation) [File not signed]U3 PNRPsvc; C:\Windows\system32\[351232 2015-07-10] (Microsoft Corporation) [File not signed]U3 Policy Agent; C:\Windows\System32\[390656 2015-07-10] (Microsoft Corporation) [File not signed]U2 Power; C:\Windows\system32\[93184 2015-07-10] (Microsoft Corporation) [File not signed]U3 Print Notify; C:\WINDOWS\system32\spool\drivers\x64\Print [3337728 2015-07-10] (Microsoft Corporation) [File not signed]U2 Prof Svc; C:\Windows\system32\[324608 2015-07-10] (Microsoft Corporation) [File not signed]U3 QWAVE; C:\Windows\system32\[286720 2015-07-10] (Microsoft Corporation) [File not signed]S3 Ras Auto; C:\Windows\System32\[106496 2015-07-10] (Microsoft Corporation) [File not signed]S3 Ras Man; C:\Windows\System32\[679936 2015-07-10] (Microsoft Corporation) [File not signed]S4 Remote Access; C:\Windows\System32\[497152 2015-07-10] (Microsoft Corporation) [File not signed]S4 Remote Access; C:\Windows\Sys WOW64\[410112 2015-07-10] (Microsoft Corporation) [File not signed]U4 Remote Registry; C:\Windows\system32\[154112 2015-07-10] (Microsoft Corporation) [File not signed]U3 Retail Demo; C:\Windows\system32\[996352 2015-08-11] (Microsoft Corporation) [File not signed]R2 Rpc Ept Mapper; C:\Windows\System32\Rpc Ep [79360 2015-07-10] (Microsoft Corporation) [File not signed]U3 Rpc Locator; C:\Windows\system32\[10752 2015-07-10] (Microsoft Corporation) [File not signed]R2 Rpc Ss; C:\Windows\system32\[873984 2015-07-10] (Microsoft Corporation) [File not signed]U2 Rt Led Service; C:\Program Files\Realtek\Rt LED\Rt [311296 2010-09-30] (Realtek Semiconductor Corp.) [File not signed]U4 SCard Svr; C:\Windows\System32\SCard [232448 2015-07-10] (Microsoft Corporation) [File not signed]U3 Sc Device Enum; C:\Windows\System32\Sc Device [181760 2015-07-10] (Microsoft Corporation) [File not signed]U2 Schedule; C:\Windows\system32\[1008640 2015-09-17] (Microsoft Corporation) [File not signed]U3 SCPolicy Svc; C:\Windows\System32\[192000 2015-07-10] (Microsoft Corporation) [File not signed]U3 SDRSVC; C:\Windows\System32\[150528 2015-07-10] (Microsoft Corporation) [File not signed]U3 seclogon; C:\Windows\system32\[31232 2015-07-10] (Microsoft Corporation) [File not signed]R2 SENS; C:\Windows\System32\[72192 2015-07-10] (Microsoft Corporation) [File not signed]U3 Sensor Data Service; C:\Windows\System32\Sensor Data [1031680 2015-08-16] (Microsoft Corporation) [File not signed]U3 Sensor Service; C:\Windows\system32\Sensor [229376 2015-08-16] (Microsoft Corporation) [File not signed]U3 Sensr Svc; C:\Windows\system32\[177152 2015-07-10] (Microsoft Corporation) [File not signed]U3 Session Env; C:\Windows\system32\[371200 2015-07-10] (Microsoft Corporation) [File not signed]U3 Session Env; C:\Windows\Sys WOW64\[312320 2015-07-10] (Microsoft Corporation) [File not signed]U4 Shared Access; C:\Windows\System32\[452608 2015-07-10] (Microsoft Corporation) [File not signed]U2 Shell HWDetection; C:\Windows\System32\[593920 2015-07-10] (Microsoft Corporation) [File not signed]U2 Shell HWDetection; C:\Windows\Sys WOW64\[544768 2015-07-10] (Microsoft Corporation) [File not signed]U3 smphost; C:\Windows\System32\[19968 2015-07-10] (Microsoft Corporation) [File not signed]U3 smphost; C:\Windows\Sys WOW64\[17920 2015-07-10] (Microsoft Corporation) [File not signed]U3 Sms Router; C:\Windows\system32\Sms Router [583680 2015-07-10] (Microsoft Corporation) [File not signed]U3 SNMPTRAP; C:\Windows\System32\[15872 2015-07-10] (Microsoft Corporation) [File not signed]R2 Spooler; C:\Windows\System32\[781824 2015-07-10] (Microsoft Corporation) [File not signed]U3 SSDPSRV; C:\Windows\System32\[243712 2015-07-10] (Microsoft Corporation) [File not signed]U3 Sstp Svc; C:\Windows\system32\[210944 2015-07-10] (Microsoft Corporation) [File not signed]U3 State Repository; C:\Windows\system32\windows.[2674176 2015-07-10] (Microsoft Corporation) [File not signed]U3 State Repository; C:\Windows\Sys WOW64\windows.[2049024 2015-07-10] (Microsoft Corporation) [File not signed]U3 stisvc; C:\Windows\System32\[637440 2015-07-10] (Microsoft Corporation) [File not signed]U3 Stor Svc; C:\Windows\system32\[394240 2015-07-10] (Microsoft Corporation) [File not signed]U3 svsvc; C:\Windows\system32\[13824 2015-07-10] (Microsoft Corporation) [File not signed]U3 swprv; C:\Windows\System32\[464896 2015-07-10] (Microsoft Corporation) [File not signed]U2 Syn TPEnh Service; C:\Program Files\Synaptics\Syn TP\Syn TPEnh [249032 2015-06-03] (Synaptics Incorporated)U2 Sys Main; C:\Windows\system32\[1106432 2015-08-11] (Microsoft Corporation) [File not signed]U2 System Events Broker; C:\Windows\System32\System Events Broker [379904 2015-07-10] (Microsoft Corporation) [File not signed]U3 Tablet Input Service; C:\Windows\System32\Tab [151040 2015-08-16] (Microsoft Corporation) [File not signed]U3 Tapi Srv; C:\Windows\System32\[311808 2015-07-10] (Microsoft Corporation) [File not signed]U3 Tapi Srv; C:\Windows\Sys WOW64\[254976 2015-07-10] (Microsoft Corporation) [File not signed]U2 Team Viewer; C:\Program Files (x86)\Team Viewer\Team Viewer_[5702416 2015-09-11] (Team Viewer Gmb H)S3 Term Service; C:\Windows\System32\[1032192 2015-07-10] (Microsoft Corporation) [File not signed]R2 Themes; C:\Windows\system32\[58368 2015-07-10] (Microsoft Corporation) [File not signed]U2 tiledatamodelsvc; C:\Windows\system32\[503808 2015-08-16] (Microsoft Corporation) [File not signed]U3 Time Broker; C:\Windows\System32\Time Broker [167936 2015-07-10] (Microsoft Corporation) [File not signed]U2 Trk Wks; C:\Windows\System32\[114176 2015-07-10] (Microsoft Corporation) [File not signed]S3 Trusted Installer; C:\Windows\servicing\Trusted [120832 2015-07-10] (Microsoft Corporation) [File not signed]U3 UI0Detect; C:\Windows\system32\UI0[43008 2015-07-10] (Microsoft Corporation) [File not signed]U3 Um Rdp Service; C:\Windows\System32\[276992 2015-07-10] (Microsoft Corporation) [File not signed]U3 Unistore Svc; C:\Windows\System32\[1203200 2015-08-16] (Microsoft Corporation) [File not signed]U3 Unistore Svc; C:\Windows\Sys WOW64\[925696 2015-08-16] (Microsoft Corporation) [File not signed]U3 upnphost; C:\Windows\System32\[452096 2015-07-10] (Microsoft Corporation) [File not signed]U3 upnphost; C:\Windows\Sys WOW64\[329216 2015-07-10] (Microsoft Corporation) [File not signed]U3 User Data Svc; C:\Windows\System32\[1420288 2015-08-16] (Microsoft Corporation) [File not signed]U2 User Manager; C:\Windows\System32\[717312 2015-07-10] (Microsoft Corporation) [File not signed]U3 Uso Svc; C:\Windows\system32\[343040 2015-08-16] (Microsoft Corporation) [File not signed]U3 Vault Svc; C:\Windows\System32\[322048 2015-08-17] (Microsoft Corporation) [File not signed]U3 vds; C:\Windows\System32\[665088 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmicguestinterface; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmicheartbeat; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmickvpexchange; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmicrdv; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmicshutdown; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmictimesync; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmicvmsession; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 vmicvss; C:\Windows\System32\[506880 2015-07-10] (Microsoft Corporation) [File not signed]U3 VSS; C:\Windows\system32\[1370112 2015-07-10] (Microsoft Corporation) [File not signed]U3 W32Time; C:\Windows\system32\w32[518656 2015-07-10] (Microsoft Corporation) [File not signed]U3 w3logsvc; C:\Windows\system32\inetsrv\w3[84480 2015-08-16] (Microsoft Corporation) [File not signed]U2 W3SVC; C:\Windows\system32\inetsrv\iisw3[578560 2015-08-16] (Microsoft Corporation) [File not signed]U3 Wallet Service; C:\Windows\system32\Wallet [504320 2015-07-10] (Microsoft Corporation) [File not signed]U3 WAS; C:\Windows\system32\inetsrv\iisw3[578560 2015-08-16] (Microsoft Corporation) [File not signed]U3 wbengine; C:\Windows\system32\[1570816 2015-07-10] (Microsoft Corporation) [File not signed]U2 Wbio Srvc; C:\Windows\System32\[605184 2015-07-10] (Microsoft Corporation) [File not signed]U2 Wcmsvc; C:\Windows\System32\[593920 2015-08-11] (Microsoft Corporation) [File not signed]U3 wcncsvc; C:\Windows\System32\[471040 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wcs Plug In Service; C:\Windows\System32\Wcs Plug In [43008 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wcs Plug In Service; C:\Windows\Sys WOW64\Wcs Plug In [33792 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wdi Service Host; C:\Windows\system32\[98304 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wdi Service Host; C:\Windows\Sys WOW64\[89600 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wdi System Host; C:\Windows\system32\[98304 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wdi System Host; C:\Windows\Sys WOW64\[89600 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wd Nis Svc; C:\Program Files\Windows Defender\Nis [362928 2015-07-10] (Microsoft Corporation)U3 Web Client; C:\Windows\System32\[228864 2015-07-10] (Microsoft Corporation) [File not signed]U3 Web Client; C:\Windows\Sys WOW64\[199680 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wecsvc; C:\Windows\system32\[211456 2015-07-10] (Microsoft Corporation) [File not signed]U3 WEPHOSTSVC; C:\Windows\system32\[27648 2015-07-10] (Microsoft Corporation) [File not signed]U3 wercplsupport; C:\Windows\System32\[95744 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wer Svc; C:\Windows\System32\Wer [133120 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wia Rpc; C:\Windows\System32\[74752 2015-07-10] (Microsoft Corporation) [File not signed]U3 Win Defend; C:\Program Files\Windows Defender\Ms Mp [24864 2015-07-10] (Microsoft Corporation)U2 Winmgmt; C:\Windows\system32\wbem\[226304 2015-07-10] (Microsoft Corporation) [File not signed]U3 Win RM; C:\Windows\system32\Wsm [2556928 2015-07-10] (Microsoft Corporation) [File not signed]U3 Win RM; C:\Windows\Sys WOW64\Wsm [2181120 2015-07-10] (Microsoft Corporation) [File not signed]U2 Wlan Svc; C:\Windows\System32\[2226688 2015-08-18] (Microsoft Corporation) [File not signed]U3 wlidsvc; C:\Windows\system32\[2093056 2015-08-12] (Microsoft Corporation) [File not signed]U3 wmi Ap Srv; C:\Windows\system32\wbem\Wmi Ap [202752 2015-07-10] (Microsoft Corporation) [File not signed]U3 WMPNetwork Svc; C:\Program Files\Windows Media Player\[1473536 2015-07-10] (Microsoft Corporation) [File not signed]U3 workfolderssvc; C:\Windows\system32\[1844736 2015-07-10] (Microsoft Corporation) [File not signed]U3 WPDBus Enum; C:\Windows\system32\[86016 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wpn Service; C:\Windows\system32\Wpn [49152 2015-07-10] (Microsoft Corporation) [File not signed]U2 wscsvc; C:\Windows\System32\[179200 2015-07-10] (Microsoft Corporation) [File not signed]U2 WSearch; C:\Windows\system32\Search [902656 2015-08-16] (Microsoft Corporation) [File not signed]U2 WSearch; C:\Windows\Sys WOW64\Search [712192 2015-08-16] (Microsoft Corporation) [File not signed]U3 wuauserv; C:\Windows\system32\[2235904 2015-08-19] (Microsoft Corporation) [File not signed]U3 wudfsvc; C:\Windows\System32\[96256 2015-07-10] (Microsoft Corporation) [File not signed]U3 Wwan Svc; C:\Windows\System32\[1178112 2015-08-11] (Microsoft Corporation) [File not signed]U3 Xbl Auth Manager; C:\Windows\System32\Xbl Auth [918016 2015-07-10] (Microsoft Corporation) [File not signed]U3 Xbl Game Save; C:\Windows\System32\Xbl Game [1149440 2015-07-10] (Microsoft Corporation) [File not signed]U3 Xbox Net Api Svc; C:\Windows\system32\Xbox Net Api [1019392 2015-07-10] (Microsoft Corporation) [File not signed]U2 Rtk Audio Service; "C:\Program Files\Realtek\Audio\HDA\Rtk Audio Service64.exe" [X]===================== Drivers (Whitelisted) ==========================Forget trying to run Combofix, just remembered it is W10. If Rogue Killer won't run, open IE & turn off Smart Screen Filter. Please disconnect any USB or external drives from the computer before you run this scan!

C potentially unwanted application deleted - quarantined C:\Users\Sharon\Downloads\PCHealth Boost-Setup (2)Win32/Distromatic.

C potentially unwanted application deleted - quarantined C:\Users\Sharon\Downloads\PCHealth Boost-Setup (3)Win32/Distromatic.

In fact, when Combo Fix is running, do not touch your computer at all. Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)Microsoft Office Starter 2010 - English (HKLM-x32\...\) (Version: 14.0.4763.1000 - Microsoft Corporation)Microsoft Silverlight (HKLM\...\) (Version: 5.1.40728.0 - Microsoft Corporation)Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\) (Version: 3.1.0000 - Microsoft Corporation)Microsoft Visual C 2005 Redistributable (HKLM-x32\...\) (Version: 8.0.61001 - Microsoft Corporation)Microsoft Visual C 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\) (Version: 9.0.30729 - Microsoft Corporation)Microsoft Visual C 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\) (Version: 9.0.30729.6161 - Microsoft Corporation)Microsoft Visual C 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\) (Version: 9.0.30729 - Microsoft Corporation)Microsoft Visual C 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\) (Version: 9.0.30729.6161 - Microsoft Corporation)Microsoft Visual C 2010 x64 Redistributable - 10.0.40219 (HKLM\...\) (Version: 10.0.40219 - Microsoft Corporation)Microsoft Visual C 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\) (Version: 10.0.40219 - Microsoft Corporation)Onekey Theater (HKLM-x32\...\Install Shield_) (Version: 2.0.2.7 - Lenovo)Onekey Theater (x32 Version: 2.0.2.7 - Lenovo) Hiddenoo Voo (HKLM-x32\...\) (Version: 2.2.4.25 - oo Voo LLC.)Power2Go (HKLM-x32\...\) (Version: 5.6.0.7303 - Cyber Link Corp.)Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\) (Version: 7.21.531.2010 - Realtek)Realtek High Definition Audio Driver (HKLM-x32\...\) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)Realtek USB 2.0 Reader Driver (HKLM-x32\...\) (Version: 6.1.7600.10008 - Realtek Semiconductor Corp.)Rt LED (HKLM\...\) (Version: 1.0.3 - Realtek Semiconductor Corp.)Shared C Run-time for x64 (HKLM\...\) (Version: 10.0.0 - Mc Afee)SRS Premium Sound Control Panel (HKLM\...\) (Version: 1.10.18.0 - SRS Labs, Inc.)Synaptics Pointing Device Driver (HKLM\...\Syn TPDeinst Key) (Version: 19.0.9.5 - Synaptics Incorporated)Team Viewer 10 (HKLM-x32\...\Team Viewer) (Version: 10.0.47484 - Team Viewer)Ultra Search V2.0.3 (64 bit) (HKLM\...\Ultra Search_is1) (Version: 2.0.3 - JAM Software)User Guide (HKLM-x32\...\Install Shield_) (Version: 1.0.0.6 - Lenovo)User Guide (x32 Version: 1.0.0.6 - Lenovo) Hidden Veri Face (HKLM-x32\...\Veri Face) (Version: 4.0.0.1206 - Lenovo)Visual Studio 2010 x64 Redistributables (HKLM\...\) (Version: 13.0.0.1 - AVG Technologies)Waterfox 40.0.3 (x64 en-US) (HKLM\...\Waterfox 40.0.3 (x64 en-US)) (Version: 40.0.3 - Mozilla)Windows Driver Package - Lenovo (ACPIVPC) System (12/02/2010 6.1.0.1) (HKLM\...\EA12B1FB53CE4E387C31A85236C41EF559B5E392) (Version: 12/02/2010 6.1.0.1 - Lenovo)Windows Live Essentials (HKLM-x32\...\Win Live Suite) (Version: 15.4.3508.1109 - Microsoft Corporation)Windows Live Mesh Active X Control for Remote Connections (HKLM-x32\...\) (Version: 15.4.5722.2 - Microsoft Corporation)Wise Disk Cleaner 8.82 (HKLM-x32\...\Wise Disk Cleaner_is1) (Version: 8.82 - Wise Cleaner.com, Inc.)==================== Custom CLSID (Whitelisted): ==========================(If an entry is included in the fixlist, it will be removed from the registry. Background Task.dll2015-08-16 - 2015-08-16 - 02274816 _____ () C:\Windows\System Apps\Microsoft. Cortana_cw5n1h2txyewy\Reminders UI.dll2015-06-01 - 2015-06-01 - 00102912 _____ () C:\Windows\System32\Icc Lib Dll_x64.dll2011-12-02 - 2011-12-02 - 00100256 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\Onekey Support.exe2015-09-03 - 2015-08-11 - 00293376 _____ () C:\WINDOWS\SYSTEM32\textinputframework.dll2015-09-16 - 2015-09-16 - 08241152 _____ () C:\Program Files\Windows Apps\Microsoft. Mobile.dll2015-09-16 - 2015-09-16 - 02238976 _____ () C:\Program Files\Windows Apps\Microsoft. The file will not be moved unless listed separately.)Firewall Rules: [vm-monitoring-nb-session] = (Allow) C:\Program Files (x86)\Team Viewer\Team Viewer_Service.exe==================== Faulty Device Manager Devices =============Could not list Devices.