Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

My laptop has become erratic, v. slow and frequently freezes up


  • Please log in to reply

#1
chris271

chris271

    Member

  • Member
  • PipPip
  • 25 posts

This is a Lenovo Thinkpad 430.  In recent weeks it first became very slow on the Internet. I have a Bell Home Hub 2000 (Canada) and the DL speed  now varies between 28mbps and 1.4mbps.

 

Then the programs on the computer became affected starting with Outlook.  Now when I boot up in the morning, I may get a fast response or more likely an extremely slow load in..  The fast response degrades within a very short time.  Rebooting the computer sometimes restores the behaviour but not always.  

 

I use McAfee, Malwarebytes (neither of which show any infection) and REimage which claims to replace corrupted files.  Re-image  nearly always finds errors and corrects them.  The computer will then run correctly for a short time before the freeziing recurs

 

I have run FRST..  They were pasted here but the ppost was too long and  I was requested to shorten:it.  Both FRST logs are atgached.

 

 

 
 
 
Both of the FRST logs has been att[ached following a request to shorten this post
 
 
Attached File  FRST Addition.txt   83.08KB   184 downloads
 
Attached File  FRST first log.txt   197.42KB   185 downloads
 

  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Get Process Explorer

https://live.sysinte...com/procexp.exe

Save it to your desktop then run it (Vista or Win7+ - right click and Run As Administrator).  

View, Select Column, check Verified Signer, OK
Options, Verify Image Signatures


Click twice on the CPU column header  to sort things by CPU usage with the big hitters at the top.  

Wait a full minute then:

File, Save As, Save.  Note the file name.   Open the file  on your desktop and copy and paste the text to a reply.


Copy the next 2 lines:

TASKLIST /SVC  > \junk.txt
notepad \junk.txt

Open an Elevated Command Prompt:
Win 7: Start, All Programs, Accessories then right click on Command Prompt and Run as Administrator
Win 8: http://www.eightforu...indows-8-a.html
win 10: http://www.howtogeek...-in-windows-10/

Right click and Paste (or Edit then Paste) and the copied lines should appear.
Hit Enter if notepad does not open.  Copy and paste the text from notepad into a reply.


Get the free version of Speccy:

http://www.filehippo...ownload_speccy/ 

(Look in the upper right for the Download
Latest Version button  - Do NOT press the large Start Download button on the upper left!)  
Download, Save and Install it.  Tell it you do not need CCLEANER.    Run Speccy.  When it finishes (the little icon in the bottom left will stop moving),
File, Save as Text File,  (to your desktop) note the name it gives. OK.  Open the file in notepad and delete the line that gives the serial number of your Operating System.  
(It will be near the top,  10-20  lines down.) Save the file.  Attach the file to your next post.  Attaching the log is the best option as it is too big for the forum.  Attaching is a multi step process.

First click on More Reply Options
Then scroll down to where you see
Choose File and click on it.  Point it at the file and hit Open.
Now click on Attach this file.



 


  • 0

#3
chris271

chris271

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts
Process CPU Private Bytes Working Set PID Description Company Name Verified Signer
System Idle Process 41.48 56 K 8 K 0
PresentationFontCache.exe 24.07 28,128 K 17,384 K 3208 PresentationFontCache.exe Microsoft Corporation (Verified) Microsoft Corporation
WmiPrvSE.exe 4.55 22,304 K 29,936 K 7736 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows
procexp64.exe 3.83 54,520 K 93,572 K 23396 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
dwm.exe 3.75 90,576 K 94,388 K 1376 Desktop Window Manager Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 2.22 249,940 K 240,172 K 24552 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
System 2.33 216 K 1,480 K 4
NEOPro.exe 1.88 129,280 K 157,204 K 17384 Nelson Email Organizer PRO Caelo Software BV. (Verified) Caelo Software B.V.
SnagitEditor.exe 1.33 106,320 K 107,340 K 18412 Snagit Editor TechSmith Corporation (Verified) TechSmith Corporation
SkypeApp.exe 1.25 351,672 K 360,620 K 14936 SkypeApp Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
Interrupts 0.96 0 K 0 K n/a Hardware Interrupts and DPCs
svchost.exe 0.65 12,748 K 21,884 K 3704 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe 0.54 132,532 K 172,028 K 1404 Google Chrome Google LLC (Verified) Google LLC
CarboniteService.exe 0.41 16,604 K 204,852 K 5668 Carbonite Secure Backup Engine Carbonite, Inc. (www.carbonite.com) (Verified) Carbonite
csrss.exe 0.44 3,432 K 5,732 K 872 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher
robotaskbaricon.exe 0.37 22,056 K 31,436 K 15376 RoboForm TaskBar Icon Siber Systems (Verified) Siber Systems
rf-chrome-nm-host.exe 0.37 13,076 K 23,232 K 18000 rf-chrome-nm-host Siber Systems Inc. (Verified) Siber Systems
chrome.exe 0.36 193,716 K 234,096 K 10228 Google Chrome Google LLC (Verified) Google LLC
NPDFLM.exe 0.32 16,396 K 7,868 K 4392 NPdflm.exe Nuance Communications, Inc. (Verified) Nuance Communications, Inc.
explorer.exe 0.30 202,044 K 174,676 K 4400 Windows Explorer Microsoft Corporation (Verified) Microsoft Windows
chrome.exe 0.24 50,468 K 87,048 K 15224 Google Chrome Google LLC (Verified) Google LLC
dllhost.exe 0.18 3,368 K 8,516 K 17668 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
ReiSystem.exe 0.14 6,052 K 10,764 K 7320 Reimage System Reimage (Verified) Reimage Ltd.
chrome.exe 0.13 36,184 K 54,972 K 4496 Google Chrome Google LLC (Verified) Google LLC
Snagit32.exe 0.13 53,672 K 61,148 K 12804 Snagit TechSmith Corporation (Verified) TechSmith Corporation
MBAMService.exe 0.11 310,304 K 308,280 K 19872 Malwarebytes Service Malwarebytes (Verified) Malwarebytes Inc
ClipMate.exe 0.08 29,352 K 15,420 K 10480 ClipMate 7 Thornsoft Development, Inc. (Verified) Thornsoft Development, Inc.
DSATray.exe 0.08 54,912 K 59,436 K 12280 Intel Driver & Support Assistant Tray Intel (Verified) IDSA Production signing key
chrome.exe 0.06 25,940 K 53,244 K 15100 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 0.06 133,132 K 150,676 K 18172 Google Chrome Google LLC (Verified) Google LLC
servicehost.exe 0.06 14,276 K 25,852 K 5048 McAfee WebAdvisor McAfee, LLC (Verified) McAfee, LLC
svchost.exe 0.05 10,240 K 17,692 K 1240 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 0.05 4,692 K 16,156 K 21408 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
Lenovo.Modern.ImController.exe 0.05 37,644 K 47,600 K 5932 Lenovo.Modern.ImController Lenovo Group Ltd. (Verified) Lenovo
esrv_svc.exe 0.05 107,396 K 33,056 K 21856 Intel® System Usage Report (Verified) Intel® Software Development Products
sqlservr.exe 0.05 494,552 K 291,876 K 6208 SQL Server Windows NT - 64 Bit Microsoft Corporation (Verified) Microsoft Corporation
lsass.exe 0.06 9,788 K 20,332 K 952 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe 0.04 32,144 K 44,760 K 16924 Google Chrome Google LLC (Verified) Google LLC
DSAService.exe 0.04 21,732 K 42,736 K 5904 DSAService Intel (Verified) IDSA Production signing key
mcapexe.exe 0.04 4,024 K 10,024 K 5212 McAfee Access Protection McAfee, LLC (Verified) McAfee, LLC.
GladinetClient.exe 0.04 29,760 K 31,616 K 16032 Gladinet Cloud Suite Gladinet, INC (Verified) Gladinet, Inc.
uihost.exe 0.03 17,612 K 48,008 K 8244 McAfee WebAdvisor McAfee, LLC (Verified) McAfee, LLC
chrome.exe 0.03 19,600 K 32,948 K 14084 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 0.03 108,208 K 145,708 K 4680 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 0.02 36,384 K 59,948 K 19204 Google Chrome Google LLC (Verified) Google LLC
svchost.exe 0.02 4,464 K 9,364 K 6420 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
ProductUpdater.exe 0.02 42,756 K 52,116 K 15080 ProductUpdater (Verified) Mixbyte Inc
FMAPP.exe 0.02 2,000 K 8,940 K 9276 FMAPP Application (Verified) Fortemedia Inc.
GameBar.exe 0.02 26,260 K 61,360 K 2236 (No signature was present in the subject)
svchost.exe < 0.01 3,572 K 9,684 K 2840 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
hamachi-2.exe 0.01 3,696 K 14,932 K 5948 Hamachi Client Tunneling Engine LogMeIn Inc. (Verified) LogMeIn, Inc.
esrv.exe 0.01 56,628 K 64,248 K 24008 Intel® System Usage Report (Verified) Intel® Software Development Products
Lenovo.Modern.ImController.PluginHost.Device.exe 0.01 37,288 K 52,328 K 4284 Lenovo.Modern.ImController.PluginHost Lenovo Group Ltd. (Verified) Lenovo
Act.Server.Host.exe 0.01 38,340 K 37,768 K 5464 Act.Server.Host Microsoft (No signature was present in the subject) Microsoft
MfeAVSvc.exe 0.01 31,964 K 41,384 K 9476 McAfee Cloud AV McAfee, LLC. (Verified) McAfee, LLC.
hamachi-2-ui.exe 0.01 3,712 K 12,576 K 10024 Hamachi Client Application LogMeIn Inc. (Verified) LogMeIn, Inc.
TeamViewer_Service.exe 0.01 5,308 K 17,300 K 6600 TeamViewer 12 TeamViewer GmbH (Verified) TeamViewer GmbH
PDFProFiltSrvPP.exe < 0.01 2,548 K 8,584 K 6428 PDFPro IFilter Service Nuance Communications, Inc. (Verified) Nuance Communications, Inc.
svchost.exe < 0.01 20,896 K 29,244 K 4836 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
conhost.exe < 0.01 6,680 K 7,124 K 5580 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
AppleMobileDeviceService.exe < 0.01 3,840 K 12,524 K 5536 MobileDeviceService Apple Inc. (Verified) Apple Inc.
w3dbsmgr.exe < 0.01 65,312 K 30,992 K 17756 Database Service Manager Actian Corporation (Verified) Actian Corporation
svchost.exe < 0.01 2,828 K 13,244 K 2316 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
EXCEL.EXE < 0.01 153,316 K 118,264 K 17524 Microsoft Excel Microsoft Corporation (Verified) Microsoft Corporation
chrome.exe < 0.01 264,896 K 229,576 K 16876 Google Chrome Google LLC (Verified) Google LLC
SynTPEnh.exe < 0.01 7,176 K 19,584 K 7488 Synaptics TouchPad 64-bit Enhancements Synaptics Incorporated (Verified) Synaptics Incorporated
svchost.exe < 0.01 4,428 K 14,640 K 13392 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,344 K 9,280 K 2764 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 2,296 K 7,272 K 6348 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 5,732 K 15,128 K 9280 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
GladFileMonSvc.exe < 0.01 2,968 K 7,508 K 5924 Gladinet Cloud Suite Gladinet, INC (Verified) Gladinet, Inc.
LMIGuardianSvc.exe < 0.01 2,188 K 8,452 K 6012 LMIGuardianSvc LogMeIn, Inc. (Verified) LogMeIn, Inc.
chrome.exe < 0.01 31,968 K 48,708 K 17200 Google Chrome Google LLC (Verified) Google LLC
svchost.exe < 0.01 3,656 K 12,436 K 6712 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
ReiGuard.exe < 0.01 147,756 K 121,792 K 6364 Reimage Real Time Protection Reimage® (Verified) Reimage Ltd.
csrss.exe < 0.01 2,004 K 5,224 K 788 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher
ZPSTray.exe 22,432 K 27,500 K 16040 Zoner Photo Studio Autoupdate ZONER software (Verified) ZONER software, a.s.
YourPhone.exe Suspended 15,804 K 13,092 K 2776 (No signature was present in the subject)
WUDFHost.exe < 0.01 2,904 K 6,936 K 1060 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation (Verified) Microsoft Windows
WUDFHost.exe 1,540 K 5,408 K 1112 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation (Verified) Microsoft Windows
WOSVSSSvr.exe 1,188 K 4,632 K 6820 (Verified) Gladinet, Inc.
wmpnetwk.exe 8,144 K 7,668 K 10088 Windows Media Player Network Sharing Service Microsoft Corporation (Verified) Microsoft Windows
WmiPrvSE.exe 2,232 K 8,660 K 23920 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows
WINWORD.EXE 143,716 K 152,988 K 11368 Microsoft Word Microsoft Corporation (Verified) Microsoft Corporation
winlogon.exe 2,496 K 10,796 K 404 Windows Logon Application Microsoft Corporation (Verified) Microsoft Windows
wininit.exe 1,456 K 6,300 K 864 Windows Start-Up Application Microsoft Corporation (Verified) Microsoft Windows Publisher
Video.UI.exe Suspended 23,752 K 33,516 K 9384 (No signature was present in the subject)
UploaderService.exe 2,388 K 10,180 K 6584 TechSmith Uploader Service TechSmith Corporation (Verified) TechSmith Corporation
unsecapp.exe 1,528 K 6,800 K 8200 Sink to receive asynchronous callbacks for WMI client application Microsoft Corporation (Verified) Microsoft Windows
unsecapp.exe 1,764 K 6,852 K 1472 Sink to receive asynchronous callbacks for WMI client application Microsoft Corporation (Verified) Microsoft Windows
tposd.exe 2,548 K 12,428 K 10552 On screen display drawer Lenovo Group Limited (Verified) Lenovo
tpnumlkd.exe 2,228 K 7,024 K 10288 NumLock on screen display for ThinkPad Lenovo Group Limited (Verified) Lenovo
tphkload.exe 3,464 K 11,280 K 6576 ThinkPad Message Client Loader Lenovo Group Limited (Verified) Lenovo
taskhostw.exe 19,456 K 30,116 K 3640 Host Process for Windows Tasks Microsoft Corporation (Verified) Microsoft Windows
SynTPLpr.exe 2,012 K 7,252 K 5416 TouchPad Driver Helper Application Synaptics Incorporated (Verified) Synaptics Incorporated
SynTPHelper.exe 1,104 K 4,412 K 10100 Synaptics Pointing Device Helper Synaptics Incorporated (Verified) Synaptics Incorporated
SynTPEnhService.exe 1,724 K 6,204 K 6524 64-bit Synaptics Pointing Enhance Service Synaptics Incorporated (Verified) Synaptics Incorporated
SynLenovoHelper.exe 2,868 K 8,612 K 4672 SynLenovo Helper tool Synaptics (Verified) Synaptics Incorporated
svchost.exe 15,052 K 32,960 K 856 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5,532 K 19,920 K 5104 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,900 K 11,080 K 18200 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 11,424 K 26,784 K 3108 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,144 K 14,772 K 4428 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 17,408 K 27,380 K 5864 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 18,180 K 16,536 K 1848 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5,280 K 14,240 K 4264 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 9,376 K 29,988 K 16432 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,468 K 7,700 K 3984 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7,440 K 15,844 K 2100 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,772 K 10,016 K 19264 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,920 K 10,532 K 2084 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5,068 K 12,776 K 2608 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,408 K 9,060 K 4772 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,652 K 15,616 K 3336 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,088 K 7,884 K 2276 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 8,668 K 47,392 K 3256 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,988 K 7,948 K 1284 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,828 K 6,720 K 1944 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,532 K 10,068 K 10524 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,432 K 8,792 K 3464 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,472 K 7,664 K 2412 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4,460 K 17,964 K 2556 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,804 K 12,988 K 3500 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,112 K 8,672 K 2124 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,548 K 10,680 K 1560 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,828 K 6,532 K 3472 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4,716 K 20,804 K 6812 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,968 K 11,768 K 5012 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7,640 K 11,688 K 1528 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7,548 K 17,668 K 5752 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,068 K 8,304 K 4892 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,992 K 13,932 K 3144 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,752 K 6,824 K 20032 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,416 K 5,788 K 2324 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 20,744 K 36,056 K 5828 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,308 K 11,996 K 8776 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 1,632 K 6,032 K 1612 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,332 K 13,604 K 4220 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,568 K 11,228 K 1456 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,216 K 9,256 K 9964 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,728 K 17,332 K 23988 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 13,888 K 26,264 K 25396 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,864 K 11,608 K 1808 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,632 K 7,660 K 5992 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,640 K 12,120 K 5940 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,668 K 7,328 K 4828 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7,088 K 15,848 K 1720 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 22,460 K 22,996 K 19316 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,128 K 12,152 K 1568 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,148 K 8,484 K 17100 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7,092 K 8,432 K 11492 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,872 K 7,292 K 9284 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,664 K 6,272 K 8116 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,408 K 5,404 K 5484 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,304 K 5,404 K 6608 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,000 K 9,128 K 3780 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,768 K 16,380 K 5072 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,908 K 7,832 K 3876 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,336 K 9,456 K 2484 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,168 K 8,324 K 2696 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,168 K 10,436 K 2708 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,836 K 11,212 K 1488 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,648 K 6,056 K 1788 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,816 K 6,916 K 1892 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 968 K 3,616 K 484 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5,200 K 19,160 K 15372 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,052 K 7,476 K 2648 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,472 K 5,672 K 23504 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,572 K 5,948 K 24144 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
SurSvc.exe 52,892 K 59,484 K 6568 Intel® System Usage Report (Verified) Intel® Software Development Products
sqlwriter.exe 1,744 K 7,452 K 6396 SQL Server VSS Writer - 64 Bit Microsoft Corporation (Verified) Microsoft Corporation
sqlbrowser.exe 1,532 K 3,964 K 6380 SQL Browser Service EXE Microsoft Corporation (Verified) Microsoft Corporation
spoolsv.exe 8,584 K 19,120 K 4616 Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows
splwow64.exe 4,860 K 10,856 K 18380 Print driver host for applications Microsoft Corporation (Verified) Microsoft Windows
SnagPriv.exe 1,732 K 7,148 K 14652 Snagit RPC Helper TechSmith Corporation (Verified) TechSmith Corporation
smss.exe 520 K 1,032 K 444 Windows Session Manager Microsoft Corporation (Verified) Microsoft Windows Publisher
smartscreen.exe 17,296 K 28,396 K 14060 Windows Defender SmartScreen Microsoft Corporation (Verified) Microsoft Windows
SkypeBridge.exe 49,264 K 62,820 K 1552 SkypeBridge Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
SkypeBackgroundHost.exe 2,760 K 14,080 K 12944 Microsoft Skype Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
sihost.exe 7,820 K 31,976 K 3084 Shell Infrastructure Host Microsoft Corporation (Verified) Microsoft Windows
shtctky.exe 2,748 K 8,684 K 10620 ThinkPad Message Receiver for Shortcut Hot Keys Lenovo Group Limited (Verified) Lenovo
ShellExperienceHost.exe Suspended 57,820 K 110,576 K 9336 Windows Shell Experience Host Microsoft Corporation (Verified) Microsoft Windows
SgrmBroker.exe 4,864 K 6,484 K 17920 System Guard Runtime Monitor Broker Service Microsoft Corporation (Verified) Microsoft Windows Publisher
SettingSyncHost.exe 7,108 K 7,756 K 9328 Host Process for Setting Synchronization Microsoft Corporation (Verified) Microsoft Windows
SetPoint.exe 8,152 K 23,012 K 13532 Logitech SetPoint Event Manager (UNICODE) Logitech, Inc. (Verified) Logitech Inc
services.exe 0.03 6,068 K 10,100 K 936 Services and Controller app Microsoft Corporation (Verified) Microsoft Windows Publisher
SecurityHealthSystray.exe 1,852 K 8,412 K 14184 Windows Security notification icon Microsoft Corporation (Verified) Microsoft Windows
SecurityHealthService.exe 4,004 K 13,748 K 14276 Windows Security Health Service Microsoft Corporation (Verified) Microsoft Windows Publisher
SearchUI.exe Suspended 82,996 K 138,504 K 10984 Search and Cortana application Microsoft Corporation (Verified) Microsoft Windows
SearchIndexer.exe 43,408 K 51,752 K 6788 Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 10,356 K 41,192 K 4588 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 2,064 K 8,408 K 20608 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 9,416 K 28,600 K 11148 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 10,204 K 31,004 K 860 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 5,820 K 23,316 K 2828 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 1,620 K 7,360 K 10404 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 7,008 K 26,388 K 11748 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 3,864 K 19,752 K 11544 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RemindersServer.exe Suspended 8,416 K 23,660 K 13988 Reminders WinRT OOP Server Microsoft Corporation (Verified) Microsoft Windows
ReimageApp.exe 1,752 K 6,716 K 15228 Reimage Application reimage (Verified) Reimage Ltd.
Registry 3,252 K 202,284 K 96
RAVCpl64.exe 4,492 K 12,932 K 14016 Realtek HD Audio Manager Realtek Semiconductor (Verified) Realtek Semiconductor Corp
RAVBg64.exe 5,948 K 11,808 K 14952 HD Audio Background Process Realtek Semiconductor (Verified) Realtek Semiconductor Corp
RAVBg64.exe 5,924 K 11,596 K 14704 HD Audio Background Process Realtek Semiconductor (Verified) Realtek Semiconductor Corp
ProtectedModuleHost.exe 4,744 K 14,156 K 8412 McAfee Protected Module Host McAfee, LLC. (Verified) McAfee, LLC.
procexp.exe 4,524 K 10,912 K 23500 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
PowerMgr.exe 4,316 K 3,084 K 6876 Lenovo Power Manager Host Lenovo (Verified) Lenovo
PEFService.exe 1,656 K 7,056 K 6328 McAfee PEF Service McAfee, LLC. (Verified) McAfee, LLC.
OUTLOOK.EXE 251,508 K 249,816 K 3584 Microsoft Outlook Microsoft Corporation (Verified) Microsoft Corporation
ONENOTEM.EXE 2,420 K 2,168 K 8208 Send to OneNote Tool Microsoft Corporation (Verified) Microsoft Corporation
OfficeClickToRun.exe 35,336 K 35,976 K 5764 Microsoft Office Click-to-Run (SxS) Microsoft Corporation (Verified) Microsoft Corporation
nssm-x64.exe 1,924 K 5,704 K 5436 The non-sucking service manager (No signature was present in the subject)
node.exe 48,432 K 11,352 K 5976 Node.js: Server-side JavaScript Node.js (Verified) Node.js Foundation
ModuleCoreService.exe 33,348 K 62,164 K 3684 McAfee Module Core Service McAfee, LLC. (Verified) McAfee, LLC
ModuleCoreService.exe 10,692 K 28,776 K 14368 McAfee Module Core Service McAfee, LLC. (Verified) McAfee, LLC
MicrosoftEdgeSH.exe Suspended 4,284 K 12,872 K 8836 Microsoft Edge Web Platform Microsoft Corporation (Verified) Microsoft Windows
MicrosoftEdgeCP.exe Suspended 68,028 K 51,612 K 3856 Microsoft Edge Content Process Microsoft Corporation (Verified) Microsoft Windows
MicrosoftEdge.exe Suspended 30,148 K 58,152 K 16364 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation
micmute.exe 2,668 K 10,012 K 5960 Microphone Mute Controll Service for ThinkPad Lenovo Group Limited (Verified) Lenovo
mfevtps.exe 7,344 K 12,416 K 8288 McAfee Process Validation Service McAfee, LLC (Verified) McAfee, Inc.
mfemms.exe 4,328 K 11,484 K 5292 McAfee Management Service McAfee, LLC (Verified) McAfee, Inc.
Memory Compression 992 K 398,660 K 2468
mDNSResponder.exe 2,040 K 6,668 K 5628 Bonjour Service Apple Inc. (Verified) Apple Inc.
McUICnt.exe 8,944 K 3,140 K 16124 McAfee McAfee, LLC. (Verified) McAfee, LLC.
mcshield.exe 139,416 K 40,436 K 11548 McAfee Scanner service McAfee LLC. (Verified) McAfee, Inc.
McCSPServiceHost.exe 7,628 K 21,444 K 10500 McAfee CSP Service Host McAfee, LLC. (Verified) McAfee, LLC.
mbamtray.exe 32,816 K 39,252 K 10124 Malwarebytes Tray Application Malwarebytes (Verified) Malwarebytes Inc
LSCNotify.exe 1,548 K 1,840 K 15084 Lenovo Solution Center Notifications Lenovo (Verified) Lenovo
Lenovo.Modern.ImController.PluginHost.Device.exe 27,672 K 43,052 K 5528 Lenovo.Modern.ImController.PluginHost Lenovo Group Ltd. (Verified) Lenovo
KHALMNPR.exe 4,024 K 10,808 K 14252 Logitech KHAL Main Process Logitech, Inc. (Verified) Logitech
jusched.exe 1,548 K 6,452 K 13904 Java Update Scheduler Oracle Corporation (Verified) Oracle America, Inc.
Jing.exe 45,660 K 52,204 K 15724 Jing TechSmith Corporation (Verified) TechSmith Corporation
ISUSPM.exe 18,048 K 19,780 K 15128 Common Software Manager Flexera Software LLC. (Verified) Flexera Software LLC
ISUSPM.exe 2,088 K 9,136 K 6248 Common Software Manager Flexera Software LLC. (Verified) Flexera Software LLC
ISUSPM.exe 2,072 K 9,112 K 1744 Common Software Manager Flexera Software LLC. (Verified) Flexera Software LLC
ISPA.exe 5,260 K 13,212 K 4332 ISPA (No signature was present in the subject)
igfxHK.exe 5,604 K 8,768 K 4160 igfxHK Module Intel Corporation (Verified) Intel® pGFX
igfxEM.exe 6,808 K 11,800 K 4128 igfxEM Module Intel Corporation (Verified) Intel® pGFX
igfxCUIService.exe 1,900 K 8,248 K 2632 igfxCUIService Module Intel Corporation (Verified) Intel® pGFX
ibmpmsvc.exe < 0.01 1,892 K 7,828 K 2168 Lenovo Power Management Service Lenovo. (Verified) Lenovo
GoogleCrashHandler64.exe 1,764 K 1,216 K 3888 Google Crash Handler Google LLC (Verified) Google LLC
GoogleCrashHandler.exe 1,740 K 1,240 K 17512 Google Crash Handler Google LLC (Verified) Google LLC
GameBarFT.exe 3,080 K 17,756 K 24588 (No signature was present in the subject)
FreemakeUtilsService.exe 17,856 K 20,428 K 5916 FreemakeUtilsService Freemake (Verified) Mixbyte Inc
fontdrvhost.exe < 0.01 5,084 K 11,592 K 1176 Usermode Font Driver Host Microsoft Corporation (Verified) Microsoft Windows
fontdrvhost.exe 2,160 K 3,800 K 696 Usermode Font Driver Host Microsoft Corporation (Verified) Microsoft Windows
DSAUpdateService.exe 31,684 K 36,200 K 10804 DSAUpdateService Intel (Verified) IDSA Production signing key
DropboxUpdate.exe 2,180 K 1,104 K 3620 Dropbox Update Dropbox, Inc. (Verified) Dropbox, Inc
dllhost.exe 4,120 K 11,840 K 17712 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
dllhost.exe 2,300 K 12,632 K 8336 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
dllhost.exe 3,588 K 10,140 K 11276 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
dllhost.exe 6,008 K 12,396 K 15236 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
DbxSvc.exe 2,616 K 5,528 K 5796 Dropbox Service Dropbox, Inc. (Verified) Dropbox, Inc
dasHost.exe < 0.01 6,928 K 17,876 K 2204 Device Association Framework Provider Host Microsoft Corporation (Verified) Microsoft Windows
ctfmon.exe 21,560 K 26,828 K 4004 CTF Loader Microsoft Corporation (Verified) Microsoft Windows
conhost.exe 6,532 K 11,136 K 24480 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
conhost.exe 6,948 K 7,268 K 12996 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
conhost.exe 6,984 K 7,300 K 17472 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
conhost.exe 6,524 K 5,572 K 6884 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
conhost.exe 6,568 K 5,328 K 14444 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
cmd.exe 5,496 K 6,668 K 16536 Windows Command Processor Microsoft Corporation (Verified) Microsoft Windows
cmd.exe 5,624 K 6,812 K 14400 Windows Command Processor Microsoft Corporation (Verified) Microsoft Windows
chrome.exe 24,200 K 45,184 K 6040 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 23,188 K 42,496 K 12108 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 6,792 K 12,000 K 14968 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 7,224 K 11,520 K 5488 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 140,736 K 152,916 K 20648 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 39,992 K 66,992 K 11452 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 20,308 K 35,788 K 17360 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 10,164 K 18,680 K 15196 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 13,520 K 24,084 K 24956 Google Chrome Google LLC (Verified) Google LLC
BtwRSupportService.exe 2,172 K 7,652 K 5596 Bluetooth Radio Management Support Broadcom Corporation. (Verified) Broadcom Corporation
browserhost.exe 4,224 K 7,796 K 16568 McAfee WebAdvisor McAfee, LLC (Verified) McAfee, LLC
browser_broker.exe 1,720 K 7,852 K 9676 Browser_Broker Microsoft Corporation (Verified) Microsoft Windows
BmkBuddy.exe 2,988 K 14,008 K 1156 Bookmark Buddy Edward Leigh (No signature was present in the subject) Edward Leigh
audiodg.exe 15,424 K 23,840 K 3544 Windows Audio Device Graph Isolation Microsoft Corporation (Verified) Microsoft Windows
atashost.exe 1,388 K 4,908 K 5588 WebEx Host for Support Center Cisco WebEx LLC (Verified) Cisco WebEx LLC
ApplicationFrameHost.exe 14,840 K 32,992 K 20120 Application Frame Host Microsoft Corporation (Verified) Microsoft Windows
agent.exe 4,864 K 17,692 K 16168 FLEXnet Connect Agent Flexera Software LLC. (Verified) Flexera Software LLC
Act!.Integration.exe 42,448 K 50,144 K 4316 ACT.Integration Swiftpage ACT! LLC (No signature was present in the subject) Swiftpage ACT! LLC

  • 0

#4
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

From your Process Explorer log (still waiting on the other two) I can see that

 

PresentationFontCache.exe is using up 1/4 of your CPU time.  Normally this isn't even running.   See if you can stop it:

 

Press Win+R, type in services.msc and press OK;
In services list find Windows Presentation Foundation Font Cache;
Click on the service and press button Stop Services;

 

If you right click on the service and select Properties it should show you that the Startup Type: is Manual.  If it is not manual you can change it to manual and click OK.

 

Run process explorer again and verify that PresentationFontCache.exe is no longer running.  If something is restarts the service or you can't stop it try changing the Startup Type: to Disabled OK then reboot.

 

 

We could try clearing the font cache and see if that helps but let's first see if we can update your system to the latest since that's a Windows system file.

 

You are running

Windows 10 Pro Version 1809

per your FRST log.  You should be at 1909 so you are at least a year behind in updates.

Go to

https://www.microsof...nload/windows10

Click on Update Now.  Download and Save the file then right click and Run As Admin.  Follow the prompts.  You may want to pause your anti-virus while the upgrade is in progress to speed up things.  This will take an hour or more to complete depending on your download speed and CPU speed.  Do not use the PC while the update is in progress.

 

After the final reboot, wait 5 minutes at least and then rerun Process Explorer.  Wait a full minute then create the log and post it.


  • 0

#5
chris271

chris271

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts

Hello RSkinner. Thank you so much for helpng me out here -- and so quickly !!  I assure you GtoG has got a friend  for life here.

 

I couldn't make the junk/text process work but I'll go back to it.

 

I have completed the speccy process but having trouble sending it to you.   When I "save as .txt" out of speccy onto my desktop.the file has 0kb.  Inside speccy, it has 171 KB

 

Still trying to figure that one out.

 

chris


  • 0

#6
chris271

chris271

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts

[finally the light bulb went off.

 

here's speccy

 

 

 

Attached File  speccy from clipboard.txt   170.08KB   280 downloads


  • 0

#7
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Skip the junk file for now.  I just need it when one of the svchost files is using too much CPU.

 

If you can't get the speccy log to save then just give me the link:  File, Publish Snapshot then copy to Clipboard.  Move to a reply and Paste (Ctrl + v)


  • 0

#8
chris271

chris271

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts

oo0ps.. That would be RKinner

 

 

'scusa


  • 0

#9
chris271

chris271

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts

oo0ps.. That would be RKinner

 

 

'scusa


  • 0

#10
chris271

chris271

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts

oo0ps.. That would be RKinner

 

 

'scusa


  • 0

Advertisements


#11
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Speccy says it's a bit warm but that's probably because of the extra CPU load.  Harddrives are OK and Wireless looks OK.  Try win 10 upgrade.  Let's see what it looks like then.


  • 0

#12
chris271

chris271

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts

I completed the Windows 10 upgrade.. My wi-fi is now disabled but I can get online witha wired l,ink.

 

Here is the second run of  procexp.exe

 

Process CPU Private Bytes Working Set PID Description Company Name Verified Signer
System Idle Process 41.48 56 K 8 K 0
PresentationFontCache.exe 24.07 28,128 K 17,384 K 3208 PresentationFontCache.exe Microsoft Corporation (Verified) Microsoft Corporation
WmiPrvSE.exe 4.55 22,304 K 29,936 K 7736 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows
procexp64.exe 3.83 54,520 K 93,572 K 23396 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
dwm.exe 3.75 90,576 K 94,388 K 1376 Desktop Window Manager Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 2.22 249,940 K 240,172 K 24552 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
System 2.33 216 K 1,480 K 4
NEOPro.exe 1.88 129,280 K 157,204 K 17384 Nelson Email Organizer PRO Caelo Software BV. (Verified) Caelo Software B.V.
SnagitEditor.exe 1.33 106,320 K 107,340 K 18412 Snagit Editor TechSmith Corporation (Verified) TechSmith Corporation
SkypeApp.exe 1.25 351,672 K 360,620 K 14936 SkypeApp Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
Interrupts 0.96 0 K 0 K n/a Hardware Interrupts and DPCs
svchost.exe 0.65 12,748 K 21,884 K 3704 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe 0.54 132,532 K 172,028 K 1404 Google Chrome Google LLC (Verified) Google LLC
CarboniteService.exe 0.41 16,604 K 204,852 K 5668 Carbonite Secure Backup Engine Carbonite, Inc. (www.carbonite.com) (Verified) Carbonite
csrss.exe 0.44 3,432 K 5,732 K 872 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher
robotaskbaricon.exe 0.37 22,056 K 31,436 K 15376 RoboForm TaskBar Icon Siber Systems (Verified) Siber Systems
rf-chrome-nm-host.exe 0.37 13,076 K 23,232 K 18000 rf-chrome-nm-host Siber Systems Inc. (Verified) Siber Systems
chrome.exe 0.36 193,716 K 234,096 K 10228 Google Chrome Google LLC (Verified) Google LLC
NPDFLM.exe 0.32 16,396 K 7,868 K 4392 NPdflm.exe Nuance Communications, Inc. (Verified) Nuance Communications, Inc.
explorer.exe 0.30 202,044 K 174,676 K 4400 Windows Explorer Microsoft Corporation (Verified) Microsoft Windows
chrome.exe 0.24 50,468 K 87,048 K 15224 Google Chrome Google LLC (Verified) Google LLC
dllhost.exe 0.18 3,368 K 8,516 K 17668 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
ReiSystem.exe 0.14 6,052 K 10,764 K 7320 Reimage System Reimage (Verified) Reimage Ltd.
chrome.exe 0.13 36,184 K 54,972 K 4496 Google Chrome Google LLC (Verified) Google LLC
Snagit32.exe 0.13 53,672 K 61,148 K 12804 Snagit TechSmith Corporation (Verified) TechSmith Corporation
MBAMService.exe 0.11 310,304 K 308,280 K 19872 Malwarebytes Service Malwarebytes (Verified) Malwarebytes Inc
ClipMate.exe 0.08 29,352 K 15,420 K 10480 ClipMate 7 Thornsoft Development, Inc. (Verified) Thornsoft Development, Inc.
DSATray.exe 0.08 54,912 K 59,436 K 12280 Intel Driver & Support Assistant Tray Intel (Verified) IDSA Production signing key
chrome.exe 0.06 25,940 K 53,244 K 15100 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 0.06 133,132 K 150,676 K 18172 Google Chrome Google LLC (Verified) Google LLC
servicehost.exe 0.06 14,276 K 25,852 K 5048 McAfee WebAdvisor McAfee, LLC (Verified) McAfee, LLC
svchost.exe 0.05 10,240 K 17,692 K 1240 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 0.05 4,692 K 16,156 K 21408 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
Lenovo.Modern.ImController.exe 0.05 37,644 K 47,600 K 5932 Lenovo.Modern.ImController Lenovo Group Ltd. (Verified) Lenovo
esrv_svc.exe 0.05 107,396 K 33,056 K 21856 Intel® System Usage Report (Verified) Intel® Software Development Products
sqlservr.exe 0.05 494,552 K 291,876 K 6208 SQL Server Windows NT - 64 Bit Microsoft Corporation (Verified) Microsoft Corporation
lsass.exe 0.06 9,788 K 20,332 K 952 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe 0.04 32,144 K 44,760 K 16924 Google Chrome Google LLC (Verified) Google LLC
DSAService.exe 0.04 21,732 K 42,736 K 5904 DSAService Intel (Verified) IDSA Production signing key
mcapexe.exe 0.04 4,024 K 10,024 K 5212 McAfee Access Protection McAfee, LLC (Verified) McAfee, LLC.
GladinetClient.exe 0.04 29,760 K 31,616 K 16032 Gladinet Cloud Suite Gladinet, INC (Verified) Gladinet, Inc.
uihost.exe 0.03 17,612 K 48,008 K 8244 McAfee WebAdvisor McAfee, LLC (Verified) McAfee, LLC
chrome.exe 0.03 19,600 K 32,948 K 14084 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 0.03 108,208 K 145,708 K 4680 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 0.02 36,384 K 59,948 K 19204 Google Chrome Google LLC (Verified) Google LLC
svchost.exe 0.02 4,464 K 9,364 K 6420 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
ProductUpdater.exe 0.02 42,756 K 52,116 K 15080 ProductUpdater (Verified) Mixbyte Inc
FMAPP.exe 0.02 2,000 K 8,940 K 9276 FMAPP Application (Verified) Fortemedia Inc.
GameBar.exe 0.02 26,260 K 61,360 K 2236 (No signature was present in the subject)
svchost.exe < 0.01 3,572 K 9,684 K 2840 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
hamachi-2.exe 0.01 3,696 K 14,932 K 5948 Hamachi Client Tunneling Engine LogMeIn Inc. (Verified) LogMeIn, Inc.
esrv.exe 0.01 56,628 K 64,248 K 24008 Intel® System Usage Report (Verified) Intel® Software Development Products
Lenovo.Modern.ImController.PluginHost.Device.exe 0.01 37,288 K 52,328 K 4284 Lenovo.Modern.ImController.PluginHost Lenovo Group Ltd. (Verified) Lenovo
Act.Server.Host.exe 0.01 38,340 K 37,768 K 5464 Act.Server.Host Microsoft (No signature was present in the subject) Microsoft
MfeAVSvc.exe 0.01 31,964 K 41,384 K 9476 McAfee Cloud AV McAfee, LLC. (Verified) McAfee, LLC.
hamachi-2-ui.exe 0.01 3,712 K 12,576 K 10024 Hamachi Client Application LogMeIn Inc. (Verified) LogMeIn, Inc.
TeamViewer_Service.exe 0.01 5,308 K 17,300 K 6600 TeamViewer 12 TeamViewer GmbH (Verified) TeamViewer GmbH
PDFProFiltSrvPP.exe < 0.01 2,548 K 8,584 K 6428 PDFPro IFilter Service Nuance Communications, Inc. (Verified) Nuance Communications, Inc.
svchost.exe < 0.01 20,896 K 29,244 K 4836 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
conhost.exe < 0.01 6,680 K 7,124 K 5580 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
AppleMobileDeviceService.exe < 0.01 3,840 K 12,524 K 5536 MobileDeviceService Apple Inc. (Verified) Apple Inc.
w3dbsmgr.exe < 0.01 65,312 K 30,992 K 17756 Database Service Manager Actian Corporation (Verified) Actian Corporation
svchost.exe < 0.01 2,828 K 13,244 K 2316 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
EXCEL.EXE < 0.01 153,316 K 118,264 K 17524 Microsoft Excel Microsoft Corporation (Verified) Microsoft Corporation
chrome.exe < 0.01 264,896 K 229,576 K 16876 Google Chrome Google LLC (Verified) Google LLC
SynTPEnh.exe < 0.01 7,176 K 19,584 K 7488 Synaptics TouchPad 64-bit Enhancements Synaptics Incorporated (Verified) Synaptics Incorporated
svchost.exe < 0.01 4,428 K 14,640 K 13392 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,344 K 9,280 K 2764 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 2,296 K 7,272 K 6348 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 5,732 K 15,128 K 9280 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
GladFileMonSvc.exe < 0.01 2,968 K 7,508 K 5924 Gladinet Cloud Suite Gladinet, INC (Verified) Gladinet, Inc.
LMIGuardianSvc.exe < 0.01 2,188 K 8,452 K 6012 LMIGuardianSvc LogMeIn, Inc. (Verified) LogMeIn, Inc.
chrome.exe < 0.01 31,968 K 48,708 K 17200 Google Chrome Google LLC (Verified) Google LLC
svchost.exe < 0.01 3,656 K 12,436 K 6712 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
ReiGuard.exe < 0.01 147,756 K 121,792 K 6364 Reimage Real Time Protection Reimage® (Verified) Reimage Ltd.
csrss.exe < 0.01 2,004 K 5,224 K 788 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher
ZPSTray.exe 22,432 K 27,500 K 16040 Zoner Photo Studio Autoupdate ZONER software (Verified) ZONER software, a.s.
YourPhone.exe Suspended 15,804 K 13,092 K 2776 (No signature was present in the subject)
WUDFHost.exe < 0.01 2,904 K 6,936 K 1060 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation (Verified) Microsoft Windows
WUDFHost.exe 1,540 K 5,408 K 1112 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation (Verified) Microsoft Windows
WOSVSSSvr.exe 1,188 K 4,632 K 6820 (Verified) Gladinet, Inc.
wmpnetwk.exe 8,144 K 7,668 K 10088 Windows Media Player Network Sharing Service Microsoft Corporation (Verified) Microsoft Windows
WmiPrvSE.exe 2,232 K 8,660 K 23920 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows
WINWORD.EXE 143,716 K 152,988 K 11368 Microsoft Word Microsoft Corporation (Verified) Microsoft Corporation
winlogon.exe 2,496 K 10,796 K 404 Windows Logon Application Microsoft Corporation (Verified) Microsoft Windows
wininit.exe 1,456 K 6,300 K 864 Windows Start-Up Application Microsoft Corporation (Verified) Microsoft Windows Publisher
Video.UI.exe Suspended 23,752 K 33,516 K 9384 (No signature was present in the subject)
UploaderService.exe 2,388 K 10,180 K 6584 TechSmith Uploader Service TechSmith Corporation (Verified) TechSmith Corporation
unsecapp.exe 1,528 K 6,800 K 8200 Sink to receive asynchronous callbacks for WMI client application Microsoft Corporation (Verified) Microsoft Windows
unsecapp.exe 1,764 K 6,852 K 1472 Sink to receive asynchronous callbacks for WMI client application Microsoft Corporation (Verified) Microsoft Windows
tposd.exe 2,548 K 12,428 K 10552 On screen display drawer Lenovo Group Limited (Verified) Lenovo
tpnumlkd.exe 2,228 K 7,024 K 10288 NumLock on screen display for ThinkPad Lenovo Group Limited (Verified) Lenovo
tphkload.exe 3,464 K 11,280 K 6576 ThinkPad Message Client Loader Lenovo Group Limited (Verified) Lenovo
taskhostw.exe 19,456 K 30,116 K 3640 Host Process for Windows Tasks Microsoft Corporation (Verified) Microsoft Windows
SynTPLpr.exe 2,012 K 7,252 K 5416 TouchPad Driver Helper Application Synaptics Incorporated (Verified) Synaptics Incorporated
SynTPHelper.exe 1,104 K 4,412 K 10100 Synaptics Pointing Device Helper Synaptics Incorporated (Verified) Synaptics Incorporated
SynTPEnhService.exe 1,724 K 6,204 K 6524 64-bit Synaptics Pointing Enhance Service Synaptics Incorporated (Verified) Synaptics Incorporated
SynLenovoHelper.exe 2,868 K 8,612 K 4672 SynLenovo Helper tool Synaptics (Verified) Synaptics Incorporated
svchost.exe 15,052 K 32,960 K 856 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5,532 K 19,920 K 5104 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,900 K 11,080 K 18200 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 11,424 K 26,784 K 3108 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,144 K 14,772 K 4428 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 17,408 K 27,380 K 5864 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 18,180 K 16,536 K 1848 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5,280 K 14,240 K 4264 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 9,376 K 29,988 K 16432 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,468 K 7,700 K 3984 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7,440 K 15,844 K 2100 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,772 K 10,016 K 19264 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,920 K 10,532 K 2084 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5,068 K 12,776 K 2608 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,408 K 9,060 K 4772 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,652 K 15,616 K 3336 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,088 K 7,884 K 2276 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 8,668 K 47,392 K 3256 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,988 K 7,948 K 1284 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,828 K 6,720 K 1944 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,532 K 10,068 K 10524 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,432 K 8,792 K 3464 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,472 K 7,664 K 2412 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4,460 K 17,964 K 2556 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,804 K 12,988 K 3500 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,112 K 8,672 K 2124 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,548 K 10,680 K 1560 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,828 K 6,532 K 3472 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4,716 K 20,804 K 6812 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,968 K 11,768 K 5012 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7,640 K 11,688 K 1528 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7,548 K 17,668 K 5752 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,068 K 8,304 K 4892 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,992 K 13,932 K 3144 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,752 K 6,824 K 20032 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,416 K 5,788 K 2324 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 20,744 K 36,056 K 5828 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,308 K 11,996 K 8776 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 1,632 K 6,032 K 1612 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,332 K 13,604 K 4220 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,568 K 11,228 K 1456 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,216 K 9,256 K 9964 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,728 K 17,332 K 23988 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 13,888 K 26,264 K 25396 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,864 K 11,608 K 1808 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,632 K 7,660 K 5992 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,640 K 12,120 K 5940 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,668 K 7,328 K 4828 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7,088 K 15,848 K 1720 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 22,460 K 22,996 K 19316 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,128 K 12,152 K 1568 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,148 K 8,484 K 17100 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7,092 K 8,432 K 11492 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,872 K 7,292 K 9284 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,664 K 6,272 K 8116 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,408 K 5,404 K 5484 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,304 K 5,404 K 6608 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,000 K 9,128 K 3780 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,768 K 16,380 K 5072 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,908 K 7,832 K 3876 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,336 K 9,456 K 2484 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,168 K 8,324 K 2696 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,168 K 10,436 K 2708 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,836 K 11,212 K 1488 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,648 K 6,056 K 1788 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,816 K 6,916 K 1892 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 968 K 3,616 K 484 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5,200 K 19,160 K 15372 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,052 K 7,476 K 2648 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,472 K 5,672 K 23504 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,572 K 5,948 K 24144 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
SurSvc.exe 52,892 K 59,484 K 6568 Intel® System Usage Report (Verified) Intel® Software Development Products
sqlwriter.exe 1,744 K 7,452 K 6396 SQL Server VSS Writer - 64 Bit Microsoft Corporation (Verified) Microsoft Corporation
sqlbrowser.exe 1,532 K 3,964 K 6380 SQL Browser Service EXE Microsoft Corporation (Verified) Microsoft Corporation
spoolsv.exe 8,584 K 19,120 K 4616 Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows
splwow64.exe 4,860 K 10,856 K 18380 Print driver host for applications Microsoft Corporation (Verified) Microsoft Windows
SnagPriv.exe 1,732 K 7,148 K 14652 Snagit RPC Helper TechSmith Corporation (Verified) TechSmith Corporation
smss.exe 520 K 1,032 K 444 Windows Session Manager Microsoft Corporation (Verified) Microsoft Windows Publisher
smartscreen.exe 17,296 K 28,396 K 14060 Windows Defender SmartScreen Microsoft Corporation (Verified) Microsoft Windows
SkypeBridge.exe 49,264 K 62,820 K 1552 SkypeBridge Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
SkypeBackgroundHost.exe 2,760 K 14,080 K 12944 Microsoft Skype Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
sihost.exe 7,820 K 31,976 K 3084 Shell Infrastructure Host Microsoft Corporation (Verified) Microsoft Windows
shtctky.exe 2,748 K 8,684 K 10620 ThinkPad Message Receiver for Shortcut Hot Keys Lenovo Group Limited (Verified) Lenovo
ShellExperienceHost.exe Suspended 57,820 K 110,576 K 9336 Windows Shell Experience Host Microsoft Corporation (Verified) Microsoft Windows
SgrmBroker.exe 4,864 K 6,484 K 17920 System Guard Runtime Monitor Broker Service Microsoft Corporation (Verified) Microsoft Windows Publisher
SettingSyncHost.exe 7,108 K 7,756 K 9328 Host Process for Setting Synchronization Microsoft Corporation (Verified) Microsoft Windows
SetPoint.exe 8,152 K 23,012 K 13532 Logitech SetPoint Event Manager (UNICODE) Logitech, Inc. (Verified) Logitech Inc
services.exe 0.03 6,068 K 10,100 K 936 Services and Controller app Microsoft Corporation (Verified) Microsoft Windows Publisher
SecurityHealthSystray.exe 1,852 K 8,412 K 14184 Windows Security notification icon Microsoft Corporation (Verified) Microsoft Windows
SecurityHealthService.exe 4,004 K 13,748 K 14276 Windows Security Health Service Microsoft Corporation (Verified) Microsoft Windows Publisher
SearchUI.exe Suspended 82,996 K 138,504 K 10984 Search and Cortana application Microsoft Corporation (Verified) Microsoft Windows
SearchIndexer.exe 43,408 K 51,752 K 6788 Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 10,356 K 41,192 K 4588 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 2,064 K 8,408 K 20608 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 9,416 K 28,600 K 11148 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 10,204 K 31,004 K 860 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 5,820 K 23,316 K 2828 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 1,620 K 7,360 K 10404 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 7,008 K 26,388 K 11748 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 3,864 K 19,752 K 11544 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RemindersServer.exe Suspended 8,416 K 23,660 K 13988 Reminders WinRT OOP Server Microsoft Corporation (Verified) Microsoft Windows
ReimageApp.exe 1,752 K 6,716 K 15228 Reimage Application reimage (Verified) Reimage Ltd.
Registry 3,252 K 202,284 K 96
RAVCpl64.exe 4,492 K 12,932 K 14016 Realtek HD Audio Manager Realtek Semiconductor (Verified) Realtek Semiconductor Corp
RAVBg64.exe 5,948 K 11,808 K 14952 HD Audio Background Process Realtek Semiconductor (Verified) Realtek Semiconductor Corp
RAVBg64.exe 5,924 K 11,596 K 14704 HD Audio Background Process Realtek Semiconductor (Verified) Realtek Semiconductor Corp
ProtectedModuleHost.exe 4,744 K 14,156 K 8412 McAfee Protected Module Host McAfee, LLC. (Verified) McAfee, LLC.
procexp.exe 4,524 K 10,912 K 23500 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
PowerMgr.exe 4,316 K 3,084 K 6876 Lenovo Power Manager Host Lenovo (Verified) Lenovo
PEFService.exe 1,656 K 7,056 K 6328 McAfee PEF Service McAfee, LLC. (Verified) McAfee, LLC.
OUTLOOK.EXE 251,508 K 249,816 K 3584 Microsoft Outlook Microsoft Corporation (Verified) Microsoft Corporation
ONENOTEM.EXE 2,420 K 2,168 K 8208 Send to OneNote Tool Microsoft Corporation (Verified) Microsoft Corporation
OfficeClickToRun.exe 35,336 K 35,976 K 5764 Microsoft Office Click-to-Run (SxS) Microsoft Corporation (Verified) Microsoft Corporation
nssm-x64.exe 1,924 K 5,704 K 5436 The non-sucking service manager (No signature was present in the subject)
node.exe 48,432 K 11,352 K 5976 Node.js: Server-side JavaScript Node.js (Verified) Node.js Foundation
ModuleCoreService.exe 33,348 K 62,164 K 3684 McAfee Module Core Service McAfee, LLC. (Verified) McAfee, LLC
ModuleCoreService.exe 10,692 K 28,776 K 14368 McAfee Module Core Service McAfee, LLC. (Verified) McAfee, LLC
MicrosoftEdgeSH.exe Suspended 4,284 K 12,872 K 8836 Microsoft Edge Web Platform Microsoft Corporation (Verified) Microsoft Windows
MicrosoftEdgeCP.exe Suspended 68,028 K 51,612 K 3856 Microsoft Edge Content Process Microsoft Corporation (Verified) Microsoft Windows
MicrosoftEdge.exe Suspended 30,148 K 58,152 K 16364 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation
micmute.exe 2,668 K 10,012 K 5960 Microphone Mute Controll Service for ThinkPad Lenovo Group Limited (Verified) Lenovo
mfevtps.exe 7,344 K 12,416 K 8288 McAfee Process Validation Service McAfee, LLC (Verified) McAfee, Inc.
mfemms.exe 4,328 K 11,484 K 5292 McAfee Management Service McAfee, LLC (Verified) McAfee, Inc.
Memory Compression 992 K 398,660 K 2468
mDNSResponder.exe 2,040 K 6,668 K 5628 Bonjour Service Apple Inc. (Verified) Apple Inc.
McUICnt.exe 8,944 K 3,140 K 16124 McAfee McAfee, LLC. (Verified) McAfee, LLC.
mcshield.exe 139,416 K 40,436 K 11548 McAfee Scanner service McAfee LLC. (Verified) McAfee, Inc.
McCSPServiceHost.exe 7,628 K 21,444 K 10500 McAfee CSP Service Host McAfee, LLC. (Verified) McAfee, LLC.
mbamtray.exe 32,816 K 39,252 K 10124 Malwarebytes Tray Application Malwarebytes (Verified) Malwarebytes Inc
LSCNotify.exe 1,548 K 1,840 K 15084 Lenovo Solution Center Notifications Lenovo (Verified) Lenovo
Lenovo.Modern.ImController.PluginHost.Device.exe 27,672 K 43,052 K 5528 Lenovo.Modern.ImController.PluginHost Lenovo Group Ltd. (Verified) Lenovo
KHALMNPR.exe 4,024 K 10,808 K 14252 Logitech KHAL Main Process Logitech, Inc. (Verified) Logitech
jusched.exe 1,548 K 6,452 K 13904 Java Update Scheduler Oracle Corporation (Verified) Oracle America, Inc.
Jing.exe 45,660 K 52,204 K 15724 Jing TechSmith Corporation (Verified) TechSmith Corporation
ISUSPM.exe 18,048 K 19,780 K 15128 Common Software Manager Flexera Software LLC. (Verified) Flexera Software LLC
ISUSPM.exe 2,088 K 9,136 K 6248 Common Software Manager Flexera Software LLC. (Verified) Flexera Software LLC
ISUSPM.exe 2,072 K 9,112 K 1744 Common Software Manager Flexera Software LLC. (Verified) Flexera Software LLC
ISPA.exe 5,260 K 13,212 K 4332 ISPA (No signature was present in the subject)
igfxHK.exe 5,604 K 8,768 K 4160 igfxHK Module Intel Corporation (Verified) Intel® pGFX
igfxEM.exe 6,808 K 11,800 K 4128 igfxEM Module Intel Corporation (Verified) Intel® pGFX
igfxCUIService.exe 1,900 K 8,248 K 2632 igfxCUIService Module Intel Corporation (Verified) Intel® pGFX
ibmpmsvc.exe < 0.01 1,892 K 7,828 K 2168 Lenovo Power Management Service Lenovo. (Verified) Lenovo
GoogleCrashHandler64.exe 1,764 K 1,216 K 3888 Google Crash Handler Google LLC (Verified) Google LLC
GoogleCrashHandler.exe 1,740 K 1,240 K 17512 Google Crash Handler Google LLC (Verified) Google LLC
GameBarFT.exe 3,080 K 17,756 K 24588 (No signature was present in the subject)
FreemakeUtilsService.exe 17,856 K 20,428 K 5916 FreemakeUtilsService Freemake (Verified) Mixbyte Inc
fontdrvhost.exe < 0.01 5,084 K 11,592 K 1176 Usermode Font Driver Host Microsoft Corporation (Verified) Microsoft Windows
fontdrvhost.exe 2,160 K 3,800 K 696 Usermode Font Driver Host Microsoft Corporation (Verified) Microsoft Windows
DSAUpdateService.exe 31,684 K 36,200 K 10804 DSAUpdateService Intel (Verified) IDSA Production signing key
DropboxUpdate.exe 2,180 K 1,104 K 3620 Dropbox Update Dropbox, Inc. (Verified) Dropbox, Inc
dllhost.exe 4,120 K 11,840 K 17712 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
dllhost.exe 2,300 K 12,632 K 8336 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
dllhost.exe 3,588 K 10,140 K 11276 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
dllhost.exe 6,008 K 12,396 K 15236 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
DbxSvc.exe 2,616 K 5,528 K 5796 Dropbox Service Dropbox, Inc. (Verified) Dropbox, Inc
dasHost.exe < 0.01 6,928 K 17,876 K 2204 Device Association Framework Provider Host Microsoft Corporation (Verified) Microsoft Windows
ctfmon.exe 21,560 K 26,828 K 4004 CTF Loader Microsoft Corporation (Verified) Microsoft Windows
conhost.exe 6,532 K 11,136 K 24480 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
conhost.exe 6,948 K 7,268 K 12996 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
conhost.exe 6,984 K 7,300 K 17472 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
conhost.exe 6,524 K 5,572 K 6884 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
conhost.exe 6,568 K 5,328 K 14444 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
cmd.exe 5,496 K 6,668 K 16536 Windows Command Processor Microsoft Corporation (Verified) Microsoft Windows
cmd.exe 5,624 K 6,812 K 14400 Windows Command Processor Microsoft Corporation (Verified) Microsoft Windows
chrome.exe 24,200 K 45,184 K 6040 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 23,188 K 42,496 K 12108 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 6,792 K 12,000 K 14968 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 7,224 K 11,520 K 5488 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 140,736 K 152,916 K 20648 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 39,992 K 66,992 K 11452 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 20,308 K 35,788 K 17360 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 10,164 K 18,680 K 15196 Google Chrome Google LLC (Verified) Google LLC
chrome.exe 13,520 K 24,084 K 24956 Google Chrome Google LLC (Verified) Google LLC
BtwRSupportService.exe 2,172 K 7,652 K 5596 Bluetooth Radio Management Support Broadcom Corporation. (Verified) Broadcom Corporation
browserhost.exe 4,224 K 7,796 K 16568 McAfee WebAdvisor McAfee, LLC (Verified) McAfee, LLC
browser_broker.exe 1,720 K 7,852 K 9676 Browser_Broker Microsoft Corporation (Verified) Microsoft Windows
BmkBuddy.exe 2,988 K 14,008 K 1156 Bookmark Buddy Edward Leigh (No signature was present in the subject) Edward Leigh
audiodg.exe 15,424 K 23,840 K 3544 Windows Audio Device Graph Isolation Microsoft Corporation (Verified) Microsoft Windows
atashost.exe 1,388 K 4,908 K 5588 WebEx Host for Support Center Cisco WebEx LLC (Verified) Cisco WebEx LLC
ApplicationFrameHost.exe 14,840 K 32,992 K 20120 Application Frame Host Microsoft Corporation (Verified) Microsoft Windows
agent.exe 4,864 K 17,692 K 16168 FLEXnet Connect Agent Flexera Software LLC. (Verified) Flexera Software LLC
Act!.Integration.exe 42,448 K 50,144 K 4316 ACT.Integration Swiftpage ACT! LLC (No signature was present in the subject) Swiftpage ACT! LLC

  • 0

#13
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Didn't help.  If you are no longer paying for McAfee you should uninstall it then download the McAfee Consumer Product Removal tool

 

http://us.mcafee.com...s/mcpr/mcpr.asp

 

Save and then right click on the file and Run As Admin.  Follow the prompts and then reboot when done.

 

Also you have bot LogMeIn and TeamViewer on your system.  Is that intentional?  If you don't need you should remove.

 

I see WinPcap 4.1.3 is installed.  Not sure why you need it.  It is usually used to examine Ethernet packets and is used by WireShark and other legitimate programs but can also be used by hackers to steal info.  If you do not know why you have it then you might want to remove it.

 

If you don't need Bonjour (Detects Apple products on your local net) you might want to remove it too as it is causing errors.

 

 

 

 

Download the attached fixlist.txt to the same location as FRST

Attached File  fixlist.txt   856bytes   175 downloads

Run FRST and press Fix

This will mostly just run some test and should take about 30 minutes to finish.
A fix log will be generated please post that

Reboot if the fix doesn't reboot it for you

Run FRST again as before.  Make sure Addition.txt is checked and hit Scan.  Post both logs.

 

Also give me a new Process Explorer log.


 


  • 0

#14
chris271

chris271

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts

Don't I need McAffee for virus protection


  • 0

#15
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Not really.  Windows Defender is better and it looks like you have MalwareBytes too.

You only want one active antivirus.  Having too many will slow the PC down.  McAfee & Windows Defender are both disabled anyway:

 

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: McAfee VirusScan (Disabled - Up to date) {F682A51C-4EAD-6A3A-F460-B9C1D4A2DB09}
AV: McAfee VirusScan (Disabled - Up to date) {9D4501E6-72F6-2877-C789-89AF6F535B2C}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: McAfee VirusScan (Disabled - Up to date) {4DE344F8-6897-65B4-CED0-82B3AF2591B4}
AS: McAfee VirusScan (Disabled - Up to date) {2624E002-54CC-27F9-FD39-B2DD14D41191}
AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: McAfee Firewall (Disabled) {A57E80C3-3899-292F-ECD6-209A91801C57}
FW: McAfee Firewall (Disabled) {CEB92439-04C2-6B62-DF3F-10F42A719C72}

 


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP