"HKLM\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\StartupPrograms" "" "" "" "06/02/2016 14:48" "" + "rdpclip" "RDP Clipboard Monitor" "Microsoft Corporation" "c:\windows\system32\rdpclip.exe" "30/10/2015 03:10" "" "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit" "" "" "" "16/04/2016 11:03" "" + "C:\Windows\system32\userinit.exe" "Userinit Log-on Application" "Microsoft Corporation" "c:\windows\system32\userinit.exe" "30/10/2015 03:37" "" "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\VmApplet" "" "" "" "16/04/2016 11:03" "" + "SystemPropertiesPerformance.exe" "Change Computer Performance Settings" "Microsoft Corporation" "c:\windows\system32\systempropertiesperformance.exe" "30/10/2015 03:38" "" "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell" "" "" "" "16/04/2016 11:03" "" + "explorer.exe" "Windows Explorer" "Microsoft Corporation" "c:\windows\explorer.exe" "29/01/2016 06:58" "" "HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\AlternateShell" "" "" "" "14/04/2016 18:05" "" + "cmd.exe" "Windows Command Processor" "Microsoft Corporation" "c:\windows\system32\cmd.exe" "30/10/2015 03:34" "" "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "" "" "" "07/04/2016 15:09" "" + "AdobeAAMUpdater-1.0" "Adobe Updater Startup Utility" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\oobe\pdapp\uwa\updaterstartuputility.exe" "19/09/2014 10:06" "" + "iTunesHelper" "iTunesHelper" "Apple Inc." "c:\program files\itunes\ituneshelper.exe" "18/12/2015 06:24" "" + "OPBHOBroker" "HP SimplePass BHO Broker" "Hewlett-Packard" "c:\program files\hewlett-packard\simplepass\opbhobroker.exe" "14/10/2013 17:25" "" + "OPBHOBrokerDesktop" "HP SimplePass BHO Broker" "Hewlett-Packard" "c:\program files\hewlett-packard\simplepass\opbhobrokerdsktop.exe" "14/10/2013 17:34" "" + "RTHDVCPL" "Realtek HD Audio Manager" "Realtek Semiconductor" "c:\program files\realtek\audio\hda\rtkngui64.exe" "26/06/2015 07:50" "" + "SimplePass" "HP SimplePass Application" "Hewlett-Packard" "c:\program files\hewlett-packard\simplepass\hpsmplpass.exe" "14/10/2013 17:30" "" + "SynTPEnh" "Synaptics TouchPad 64-bit Enhancements" "Synaptics Incorporated" "c:\program files\synaptics\syntp\syntpenh.exe" "06/07/2015 12:34" "" "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "" "" "" "08/04/2016 13:01" "" + "AccelerometerSysTrayApplet" "Hp Accelerometer System Tray" "Hewlett-Packard Company" "c:\program files (x86)\hewlett-packard\hp 3d driveguard\accelerometerst.exe" "08/07/2015 21:03" "" + "HPMessageService" "HP Message Service" "Hewlett-Packard Development Company, L.P." "c:\program files (x86)\hewlett-packard\hp system event\hpmsgsvc.exe" "09/10/2014 09:15" "" + "RealDownloader" "RealDownloader" "" "c:\program files (x86)\realnetworks\realdownloader\downloader2.exe" "25/02/2016 01:21" "" + "SunJavaUpdateSched" "Java Update Scheduler" "Oracle Corporation" "c:\program files (x86)\common files\java\java update\jusched.exe" "21/03/2016 06:57" "" + "TkBellExe" "RealNetworks Scheduler" "RealNetworks, Inc." "c:\program files (x86)\real\realplayer\update\realsched.exe" "28/07/2015 05:02" "" "HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce" "" "" "" "06/02/2016 16:23" "" + "Uninstall C:\Users\ryanstockham\AppData\Local\Microsoft\OneDrive\17.3.5930.0814_1" "" "" "File not found: rmdir" "" "" + "Uninstall C:\Users\ryanstockham\AppData\Local\Microsoft\OneDrive\17.3.5930.0814_1\amd64" "" "" "File not found: rmdir" "" "" "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup" "" "" "" "30/03/2016 18:40" "" + "RealTimes.lnk" "RealTimes Service UI" "RealNetworks, Inc." "c:\program files (x86)\real\realplayer\rpds\bin\rpsystray.exe" "28/07/2015 03:44" "" "HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" "" "" "" "12/04/2016 14:37" "" + "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files\windows mail\winmail.exe" "30/10/2015 03:37" "" + "Microsoft Windows Media Player" "" "" "File not found: C:\WINDOWS\inf\unregmp2.exe /ShowWMP.exe" "" "" + "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "Microsoft Corporation" "c:\windows\system32\unregmp2.exe" "30/10/2015 03:35" "" + "n/a" "Microsoft .NET IE SECURITY REGISTRATION" "Microsoft Corporation" "c:\windows\system32\mscories.dll" "25/09/2015 00:59" "" + "Themes Setup" "Windows Theme API" "Microsoft Corporation" "c:\windows\system32\themeui.dll" "30/10/2015 03:19" "" + "Web Platform Customizations" "IE Per-User Initialisation Utility" "Microsoft Corporation" "c:\windows\system32\ie4uinit.exe" "16/01/2016 06:36" "" + "Windows Desktop Update" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" "HKLM\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components" "" "" "" "28/03/2016 20:47" "" + "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files (x86)\windows mail\winmail.exe" "30/10/2015 03:36" "" + "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "Microsoft Corporation" "c:\windows\syswow64\unregmp2.exe" "30/10/2015 03:33" "" + "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "Microsoft Corporation" "c:\windows\syswow64\unregmp2.exe" "30/10/2015 03:33" "" + "n/a" "Microsoft .NET IE SECURITY REGISTRATION" "Microsoft Corporation" "c:\windows\syswow64\mscories.dll" "25/09/2015 01:12" "" "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\IconServiceLib" "" "" "" "06/02/2016 14:48" "" + "IconCodecService.dll" "Converts a PNG part of the icon to a legacy bmp icon" "Microsoft Corporation" "c:\windows\system32\iconcodecservice.dll" "30/10/2015 03:40" "" "HKLM\SOFTWARE\Classes\Protocols\Filter" "" "" "" "30/03/2016 18:01" "" + "application/octet-stream" "Microsoft .NET Runtime Execution Engine" "Microsoft Corporation" "c:\windows\system32\mscoree.dll" "30/10/2015 03:31" "" + "application/x-complus" "Microsoft .NET Runtime Execution Engine" "Microsoft Corporation" "c:\windows\system32\mscoree.dll" "30/10/2015 03:31" "" + "application/x-msdownload" "Microsoft .NET Runtime Execution Engine" "Microsoft Corporation" "c:\windows\system32\mscoree.dll" "30/10/2015 03:31" "" "HKLM\SOFTWARE\Classes\Protocols\Handler" "" "" "" "30/03/2016 18:12" "" + "about" "Microsoft (R) HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll" "29/03/2016 06:41" "" + "cdl" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll" "29/03/2016 07:32" "" + "dvd" "ActiveX control for streaming video" "Microsoft Corporation" "c:\windows\system32\msvidctl.dll" "30/10/2015 03:11" "" + "file" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll" "29/03/2016 07:32" "" + "ftp" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll" "29/03/2016 07:32" "" + "http" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll" "29/03/2016 07:32" "" + "https" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll" "29/03/2016 07:32" "" + "its" "Microsoft® InfoTech Storage System Library" "Microsoft Corporation" "c:\windows\system32\itss.dll" "30/10/2015 03:39" "" + "javascript" "Microsoft (R) HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll" "29/03/2016 06:41" "" + "local" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll" "29/03/2016 07:32" "" + "mailto" "Microsoft (R) HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll" "29/03/2016 06:41" "" + "mhtml" "Microsoft Internet Messaging API Resources" "Microsoft Corporation" "c:\windows\system32\inetcomm.dll" "30/10/2015 03:25" "" + "mk" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll" "29/03/2016 07:32" "" + "ms-its" "Microsoft® InfoTech Storage System Library" "Microsoft Corporation" "c:\windows\system32\itss.dll" "30/10/2015 03:39" "" + "res" "Microsoft (R) HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll" "29/03/2016 06:41" "" + "tbauth" "TBAuth protocol handler" "Microsoft Corporation" "c:\windows\system32\tbauth.dll" "29/03/2016 08:55" "" + "tv" "ActiveX control for streaming video" "Microsoft Corporation" "c:\windows\system32\msvidctl.dll" "30/10/2015 03:11" "" + "vbscript" "Microsoft (R) HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll" "29/03/2016 06:41" "" + "windows.tbauth" "TBAuth protocol handler" "Microsoft Corporation" "c:\windows\system32\tbauth.dll" "29/03/2016 08:55" "" "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects" "" "" "" "06/02/2016 14:48" "" + "Access Page Setting SSO" "Windows Authentication UI" "Microsoft Corporation" "c:\windows\system32\authui.dll" "24/11/2015 08:29" "" + "Bluetooth Authentication Agent SSO" "Bluetooth Control Panel Applet" "Microsoft Corporation" "c:\windows\system32\bthprops.cpl" "30/10/2015 03:32" "" + "HomeGroup SSO" "HomeGroup Control Panel" "Microsoft Corporation" "c:\windows\system32\hgcpl.dll" "30/10/2015 03:21" "" + "Library Group Policy Shell Service Object" "Microsoft WinRT Storage API" "Microsoft Corporation" "c:\windows\system32\windows.storage.dll" "24/02/2016 06:06" "" + "Microsoft VolumeControlService Class" "SCA Volume" "Microsoft Corporation" "c:\windows\system32\sndvolsso.dll" "30/10/2015 03:10" "" + "Network Tray SSO" "Network System Icon" "Microsoft Corporation" "c:\windows\system32\pnidui.dll" "22/11/2015 10:41" "" + "OneDrive network states cache SSO" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "PostBootReminder object" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "Published Items Shell Service Object" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "Security and Maintenance Shell Service Object" "Security and Maintenance" "Microsoft Corporation" "c:\windows\system32\actioncenter.dll" "30/10/2015 03:23" "" + "Setting Sync Monitor Shell Service Object" "Setting Synchronization Change Monitor" "Microsoft Corporation" "c:\windows\system32\settingmonitor.dll" "30/10/2015 03:26" "" + "Setting Sync WLS Notifier Shell Service Object" "Setting Synchronization Change Monitor" "Microsoft Corporation" "c:\windows\system32\settingmonitor.dll" "30/10/2015 03:26" "" + "ShellFolder for CD Burning" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "Sync Center Shell Service Object (Internal)" "Microsoft Sync Centre" "Microsoft Corporation" "c:\windows\system32\synccenter.dll" "30/10/2015 03:20" "" + "UnexpectedShutdownReason" "Systray shell service object" "Microsoft Corporation" "c:\windows\system32\stobject.dll" "30/10/2015 03:19" "" + "User Account Control Check Service" "Security and Maintenance Providers" "Microsoft Corporation" "c:\windows\system32\hcproviders.dll" "30/10/2015 03:33" "" + "WebCheck" "Shell Doc Object and Control Library" "Microsoft Corporation" "c:\windows\system32\shdocvw.dll" "30/10/2015 03:13" "" + "Windows Search Shell Service Object" "Indexing Options" "Microsoft Corporation" "c:\windows\system32\srchadmin.dll" "30/10/2015 03:31" "" + "Windows System Reset SSO" "Windows System Reset Platform SSO" "Microsoft Corporation" "c:\windows\system32\systemresetplatform\systemresetsso.dll" "13/11/2015 07:03" "" + "Windows To Go Shell Service Object" "Windows To Go Shell Service Object" "Microsoft Corporation" "c:\windows\system32\pwsso.dll" "30/10/2015 03:39" "" + "WPDShServiceObj Class" "Windows Portable Device Shell Service Object" "Microsoft Corporation" "c:\windows\system32\wpdshserviceobj.dll" "30/10/2015 03:35" "" + "{566296fe-e0e8-475f-ba9c-a31ad31620b1}" "Device Stage Shell Extension" "Microsoft Corporation" "c:\windows\system32\dxp.dll" "30/10/2015 03:10" "" "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects" "" "" "" "06/02/2016 14:48" "" + "Access Page Setting SSO" "Windows Authentication UI" "Microsoft Corporation" "c:\windows\syswow64\authui.dll" "24/11/2015 08:04" "" + "Bluetooth Authentication Agent SSO" "Bluetooth Control Panel Applet" "Microsoft Corporation" "c:\windows\syswow64\bthprops.cpl" "30/10/2015 03:30" "" + "HomeGroup SSO" "HomeGroup Control Panel" "Microsoft Corporation" "c:\windows\syswow64\hgcpl.dll" "30/10/2015 03:14" "" + "Library Group Policy Shell Service Object" "Microsoft WinRT Storage API" "Microsoft Corporation" "c:\windows\syswow64\windows.storage.dll" "24/02/2016 06:05" "" + "Microsoft VolumeControlService Class" "SCA Volume" "Microsoft Corporation" "c:\windows\syswow64\sndvolsso.dll" "30/10/2015 03:08" "" + "OneDrive network states cache SSO" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "PostBootReminder object" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "Published Items Shell Service Object" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "Security and Maintenance Shell Service Object" "Security and Maintenance" "Microsoft Corporation" "c:\windows\syswow64\actioncenter.dll" "30/10/2015 03:14" "" + "Setting Sync Monitor Shell Service Object" "Setting Synchronization Change Monitor" "Microsoft Corporation" "c:\windows\syswow64\settingmonitor.dll" "30/10/2015 03:24" "" + "Setting Sync WLS Notifier Shell Service Object" "Setting Synchronization Change Monitor" "Microsoft Corporation" "c:\windows\syswow64\settingmonitor.dll" "30/10/2015 03:24" "" + "ShellFolder for CD Burning" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "Sync Center Shell Service Object (Internal)" "Microsoft Sync Centre" "Microsoft Corporation" "c:\windows\syswow64\synccenter.dll" "30/10/2015 03:22" "" + "UnexpectedShutdownReason" "Systray shell service object" "Microsoft Corporation" "c:\windows\syswow64\stobject.dll" "30/10/2015 03:13" "" + "User Account Control Check Service" "Security and Maintenance Providers" "Microsoft Corporation" "c:\windows\syswow64\hcproviders.dll" "30/10/2015 03:31" "" + "WebCheck" "Shell Doc Object and Control Library" "Microsoft Corporation" "c:\windows\syswow64\shdocvw.dll" "30/10/2015 03:12" "" + "Windows Search Shell Service Object" "Indexing Options" "Microsoft Corporation" "c:\windows\syswow64\srchadmin.dll" "30/10/2015 03:28" "" + "WPDShServiceObj Class" "Windows Portable Device Shell Service Object" "Microsoft Corporation" "c:\windows\syswow64\wpdshserviceobj.dll" "30/10/2015 03:33" "" "HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" "" "30/03/2016 18:26" "" + "7-Zip" "7-Zip Shell Extension" "Igor Pavlov" "c:\program files\7-zip\7-zip.dll" "18/11/2010 17:08" "" + "BriefcaseMenu" "Windows Briefcase" "Microsoft Corporation" "c:\windows\system32\syncui.dll" "30/10/2015 03:13" "" + "BUContextMenu" "Backup Shell" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine64\22.6.0.142\bushell.dll" "18/02/2016 16:27" "" + "CLVDShellExt" "Cyberlink Shell Extension dynamic link library" "Cyberlink" "c:\program files (x86)\common files\cyberlink\shellextcomponent\clvdshellext.dll" "06/05/2013 12:22" "" + "EPP" "Microsoft Security Client Shell Extension" "Microsoft Corporation" "c:\program files\windows defender\shellext.dll" "30/10/2015 03:32" "" + "Open With" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "Open With EncryptionMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "PhotoStreamsExt" "ShellStreams" "Apple Inc." "c:\program files\common files\apple\internet services\shellstreams64.dll" "13/10/2015 17:13" "" + "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll" "30/10/2015 03:21" "" + "Start Menu Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "Symantec.Norton.Antivirus.IEContextMenu" "Norton Security Shell Extension Module" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine64\22.6.0.142\navshext.dll" "26/02/2016 05:05" "" + "Taskband Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "WorkFolders" "Microsoft (C) Work Folders Shell Extension" "Microsoft Corporation" "c:\windows\system32\workfoldersshell.dll" "30/10/2015 03:32" "" "HKLM\Software\Wow6432Node\Classes\*\ShellEx\ContextMenuHandlers" "" "" "" "30/03/2016 18:26" "" + "BriefcaseMenu" "Windows Briefcase" "Microsoft Corporation" "c:\windows\syswow64\syncui.dll" "30/10/2015 03:12" "" + "Open With" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "Open With EncryptionMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "PhotoStreamsExt" "ShellStreams" "Apple Inc." "c:\program files (x86)\common files\apple\internet services\shellstreams.dll" "16/10/2015 01:48" "" + "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll" "30/10/2015 03:15" "" + "Start Menu Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "Taskband Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" "HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers" "" "" "" "30/03/2016 18:26" "" + "CLVDShellExt" "Cyberlink Shell Extension dynamic link library" "Cyberlink" "c:\program files (x86)\common files\cyberlink\shellextcomponent\clvdshellext.dll" "06/05/2013 12:22" "" + "EnhancedStorageShell" "Windows Enhanced Storage Shell Extension DLL" "Microsoft Corporation" "c:\windows\system32\ehstorshell.dll" "30/10/2015 03:36" "" + "EPP" "Microsoft Security Client Shell Extension" "Microsoft Corporation" "c:\program files\windows defender\shellext.dll" "30/10/2015 03:32" "" + "Portable Devices Menu" "Portable Devices Shell Extension" "Microsoft Corporation" "c:\windows\system32\wpdshext.dll" "30/10/2015 03:10" "" + "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\system32\twext.dll" "30/10/2015 03:33" "" + "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll" "30/10/2015 03:21" "" + "ShellFolder for CD Burning" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "Symantec.Norton.Antivirus.IEContextMenu" "Norton Security Shell Extension Module" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine64\22.6.0.142\navshext.dll" "26/02/2016 05:05" "" "HKLM\Software\Wow6432Node\Classes\Drive\ShellEx\ContextMenuHandlers" "" "" "" "30/03/2016 18:26" "" + "Portable Devices Menu" "Portable Devices Shell Extension" "Microsoft Corporation" "c:\windows\syswow64\wpdshext.dll" "30/10/2015 03:08" "" + "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\syswow64\twext.dll" "30/10/2015 03:31" "" + "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll" "30/10/2015 03:15" "" + "ShellFolder for CD Burning" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" "HKLM\Software\Classes\*\ShellEx\PropertySheetHandlers" "" "" "" "30/03/2016 18:26" "" + "BriefcasePage" "Windows Briefcase" "Microsoft Corporation" "c:\windows\system32\syncui.dll" "30/10/2015 03:13" "" + "BuPropertySheet" "Backup Shell" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine64\22.6.0.142\bushell.dll" "18/02/2016 16:27" "" + "CryptoSignMenu" "Crypto Shell Extensions" "Microsoft Corporation" "c:\windows\system32\cryptext.dll" "30/10/2015 03:37" "" + "OLE Docfile Property Page" "OLE DocFile Property Page" "Microsoft Corporation" "c:\windows\system32\docprop.dll" "30/10/2015 03:37" "" + "Security Shell Extension" "Security Shell Extension" "Microsoft Corporation" "c:\windows\system32\rshx32.dll" "30/10/2015 03:16" "" + "Summary Properties Page" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" "HKLM\Software\Wow6432Node\Classes\*\ShellEx\PropertySheetHandlers" "" "" "" "30/03/2016 18:26" "" + "BriefcasePage" "Windows Briefcase" "Microsoft Corporation" "c:\windows\syswow64\syncui.dll" "30/10/2015 03:12" "" + "CryptoSignMenu" "Crypto Shell Extensions" "Microsoft Corporation" "c:\windows\syswow64\cryptext.dll" "30/10/2015 03:35" "" + "OLE Docfile Property Page" "OLE DocFile Property Page" "Microsoft Corporation" "c:\windows\syswow64\docprop.dll" "30/10/2015 03:35" "" + "Security Shell Extension" "Security Shell Extension" "Microsoft Corporation" "c:\windows\syswow64\rshx32.dll" "30/10/2015 03:14" "" + "Summary Properties Page" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" "HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" "" "06/02/2016 15:02" "" + "CopyAsPathMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\system32\twext.dll" "30/10/2015 03:33" "" + "RealTimes" "RealTimes Menu" "RealNetworks, Inc." "c:\program files (x86)\real\realplayer\rpds\bin64\rpcontextmenu.dll" "28/07/2015 03:44" "" + "SendTo" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "Start Menu Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" "HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" "" "06/02/2016 15:02" "" + "CopyAsPathMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\syswow64\twext.dll" "30/10/2015 03:31" "" + "SendTo" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "Start Menu Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" "HKLM\Software\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers" "" "" "" "06/02/2016 14:48" "" + "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\system32\twext.dll" "30/10/2015 03:33" "" "HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers" "" "" "" "06/02/2016 14:48" "" + "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\syswow64\twext.dll" "30/10/2015 03:31" "" "HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" "" "06/02/2016 15:02" "" + "7-Zip" "7-Zip Shell Extension" "Igor Pavlov" "c:\program files\7-zip\7-zip.dll" "18/11/2010 17:08" "" + "EncryptionMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "EPP" "Microsoft Security Client Shell Extension" "Microsoft Corporation" "c:\program files\windows defender\shellext.dll" "30/10/2015 03:32" "" + "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\system32\twext.dll" "30/10/2015 03:33" "" + "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll" "30/10/2015 03:21" "" + "WorkFolders" "Microsoft (C) Work Folders Shell Extension" "Microsoft Corporation" "c:\windows\system32\workfoldersshell.dll" "30/10/2015 03:32" "" "HKLM\Software\Wow6432Node\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" "" "06/02/2016 15:02" "" + "EncryptionMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\syswow64\twext.dll" "30/10/2015 03:31" "" + "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll" "30/10/2015 03:15" "" "HKLM\Software\Classes\Directory\Shellex\DragDropHandlers" "" "" "" "06/02/2016 15:02" "" + "7-Zip" "7-Zip Shell Extension" "Igor Pavlov" "c:\program files\7-zip\7-zip.dll" "18/11/2010 17:08" "" "HKLM\Software\Classes\Directory\Shellex\PropertySheetHandlers" "" "" "" "06/02/2016 14:48" "" + "DfsShell Class" "Distributed File System shell extension" "Microsoft Corporation" "c:\windows\system32\dfsshlex.dll" "30/10/2015 03:37" "" + "Folder Customization Tab" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "MyFolder menu and properties" "My Documents Folder UI" "Microsoft Corporation" "c:\windows\system32\mydocs.dll" "30/10/2015 03:36" "" + "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\system32\twext.dll" "30/10/2015 03:33" "" + "Security Shell Extension" "Security Shell Extension" "Microsoft Corporation" "c:\windows\system32\rshx32.dll" "30/10/2015 03:16" "" + "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll" "30/10/2015 03:21" "" "HKLM\Software\Wow6432Node\Classes\Directory\Shellex\PropertySheetHandlers" "" "" "" "06/02/2016 14:48" "" + "DfsShell Class" "Distributed File System shell extension" "Microsoft Corporation" "c:\windows\syswow64\dfsshlex.dll" "30/10/2015 03:35" "" + "Folder Customization Tab" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "MyFolder menu and properties" "My Documents Folder UI" "Microsoft Corporation" "c:\windows\syswow64\mydocs.dll" "30/10/2015 03:34" "" + "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\syswow64\twext.dll" "30/10/2015 03:31" "" + "Security Shell Extension" "Security Shell Extension" "Microsoft Corporation" "c:\windows\syswow64\rshx32.dll" "30/10/2015 03:14" "" + "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll" "30/10/2015 03:15" "" "HKLM\Software\Classes\Directory\Shellex\CopyHookHandlers" "" "" "" "06/02/2016 14:48" "" + "FileSystem" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll" "30/10/2015 03:21" "" "HKLM\Software\Wow6432Node\Classes\Directory\Shellex\CopyHookHandlers" "" "" "" "06/02/2016 14:48" "" + "FileSystem" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll" "30/10/2015 03:15" "" "HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" "" "06/02/2016 14:48" "" + "New" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll" "30/10/2015 03:21" "" + "WorkFolders" "Microsoft (C) Work Folders Shell Extension" "Microsoft Corporation" "c:\windows\system32\workfoldersshell.dll" "30/10/2015 03:32" "" "HKLM\Software\Wow6432Node\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" "" "06/02/2016 14:48" "" + "New" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll" "30/10/2015 03:15" "" "HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" "" "30/03/2016 18:26" "" + "BriefcaseMenu" "Windows Briefcase" "Microsoft Corporation" "c:\windows\system32\syncui.dll" "30/10/2015 03:13" "" + "BUContextMenu" "Backup Shell" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine64\22.6.0.142\bushell.dll" "18/02/2016 16:27" "" + "Library Location" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "PintoStartScreen" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "Start Menu Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "Symantec.Norton.Antivirus.IEContextMenu" "Norton Security Shell Extension Module" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine64\22.6.0.142\navshext.dll" "26/02/2016 05:05" "" "HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" "" "30/03/2016 18:26" "" + "BriefcaseMenu" "Windows Briefcase" "Microsoft Corporation" "c:\windows\syswow64\syncui.dll" "30/10/2015 03:12" "" + "Library Location" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "PintoStartScreen" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "Start Menu Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" "HKLM\Software\Classes\Folder\ShellEx\DragDropHandlers" "" "" "" "06/02/2016 14:48" "" + "Compressed (zipped) Folder Right Drag Handler" "Compressed (zipped) Folders" "Microsoft Corporation" "c:\windows\system32\zipfldr.dll" "30/10/2015 03:31" "" "HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\DragDropHandlers" "" "" "" "06/02/2016 14:48" "" + "Compressed (zipped) Folder Right Drag Handler" "Compressed (zipped) Folders" "Microsoft Corporation" "c:\windows\syswow64\zipfldr.dll" "30/10/2015 03:29" "" "HKLM\Software\Classes\Folder\ShellEx\PropertySheetHandlers" "" "" "" "06/02/2016 14:48" "" + "BriefcasePage" "Windows Briefcase" "Microsoft Corporation" "c:\windows\system32\syncui.dll" "30/10/2015 03:13" "" "HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\PropertySheetHandlers" "" "" "" "06/02/2016 14:48" "" + "BriefcasePage" "Windows Briefcase" "Microsoft Corporation" "c:\windows\syswow64\syncui.dll" "30/10/2015 03:12" "" "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" "" "30/03/2016 18:26" "" + " OverlayExcluded" "Backup Shell" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine64\22.6.0.142\bushell.dll" "18/02/2016 16:27" "" + " OverlayPending" "Backup Shell" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine64\22.6.0.142\bushell.dll" "18/02/2016 16:27" "" + " OverlayProtected" "Backup Shell" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine64\22.6.0.142\bushell.dll" "18/02/2016 16:27" "" + " SkyDrivePro1 (ErrorConflict)" "Microsoft OneDrive for Business Extensions" "Microsoft Corporation" "c:\program files\microsoft office 15\root\vfs\programfilesx64\microsoft office\office15\grooveex.dll" "09/02/2016 09:49" "" + " SkyDrivePro2 (SyncInProgress)" "Microsoft OneDrive for Business Extensions" "Microsoft Corporation" "c:\program files\microsoft office 15\root\vfs\programfilesx64\microsoft office\office15\grooveex.dll" "09/02/2016 09:49" "" + " SkyDrivePro3 (InSync)" "Microsoft OneDrive for Business Extensions" "Microsoft Corporation" "c:\program files\microsoft office 15\root\vfs\programfilesx64\microsoft office\office15\grooveex.dll" "09/02/2016 09:49" "" + "EnhancedStorageShell" "Windows Enhanced Storage Shell Extension DLL" "Microsoft Corporation" "c:\windows\system32\ehstorshell.dll" "30/10/2015 03:36" "" "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" "" "30/03/2016 18:40" "" + "Microsoft SkyDrive Pro Browser Helper" "Microsoft OneDrive for Business Extensions" "Microsoft Corporation" "c:\program files\microsoft office 15\root\vfs\programfilesx64\microsoft office\office15\grooveex.dll" "09/02/2016 09:49" "" + "Norton Identity Protection" "coIEPlugIn" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine64\22.6.0.142\coieplg.dll" "21/02/2016 08:05" "" + "RealNetworks Download and Record Plugin for Internet Explorer" "RealTimes Video Downloader" "RealDownloader" "c:\program files (x86)\realnetworks\realdownloader\browserplugins\ie\rndlbrowserrecordplugin64.dll" "28/07/2015 00:33" "" + "Skype for Business Browser Helper" "Skype for Business" "Microsoft Corporation" "c:\program files\microsoft office 15\root\vfs\programfilesx64\microsoft office\office15\ochelper.dll" "09/02/2016 09:44" "" "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" "" "08/04/2016 13:01" "" + "HP Network Check Helper" "HP Network Check IE Plug-in" "HP" "c:\program files (x86)\hewlett-packard\hp support framework\resources\hpnetworkcheck\hpnetworkcheckplugin.dll" "25/02/2016 04:31" "" + "Java(tm) Plug-In 2 SSV Helper" "Java(TM) Platform SE binary" "Oracle Corporation" "c:\program files (x86)\java\jre1.8.0_77\bin\jp2ssv.dll" "21/03/2016 06:38" "" + "Java(tm) Plug-In SSV Helper" "Java(TM) Platform SE binary" "Oracle Corporation" "c:\program files (x86)\java\jre1.8.0_77\bin\ssv.dll" "21/03/2016 06:38" "" + "Norton Identity Protection" "coIEPlugIn" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine\22.6.0.142\coieplg.dll" "21/02/2016 08:05" "" + "RealNetworks Download and Record Plugin for Internet Explorer" "RealTimes Video Downloader" "RealDownloader" "c:\program files (x86)\realnetworks\realdownloader\browserplugins\ie\rndlbrowserrecordplugin.dll" "28/07/2015 04:08" "" "HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks" "" "" "" "06/02/2016 14:56" "" + "Microsoft Url Search Hook" "Internet Browser" "Microsoft Corporation" "c:\windows\system32\ieframe.dll" "29/03/2016 06:39" "" "HKLM\Software\Microsoft\Internet Explorer\Toolbar" "" "" "" "30/03/2016 18:40" "" + "Norton Toolbar" "coIEPlugIn" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine64\22.6.0.142\coieplg.dll" "21/02/2016 08:05" "" "HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar" "" "" "" "30/03/2016 18:40" "" + "Norton Toolbar" "coIEPlugIn" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine\22.6.0.142\coieplg.dll" "21/02/2016 08:05" "" "HKLM\Software\Microsoft\Internet Explorer\Extensions" "" "" "" "30/03/2016 18:40" "" + "HP Network Check" "NCLauncherFromIE" "Hewlett-Packard Company" "c:\program files (x86)\hewlett-packard\hp support framework\resources\hpnetworkcheck\nclauncherfromie.exe" "29/01/2016 07:39" "" + "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office 15\root\vfs\programfilesx64\microsoft office\office15\onbttnielinkednotes.dll" "09/02/2016 09:47" "" + "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office 15\root\vfs\programfilesx64\microsoft office\office15\onbttnie.dll" "09/02/2016 09:41" "" + "Skype for Business Click to Call" "Skype for Business" "Microsoft Corporation" "c:\program files\microsoft office 15\root\vfs\programfilesx64\microsoft office\office15\ochelper.dll" "09/02/2016 09:44" "" "HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Extensions" "" "" "" "01/04/2016 16:21" "" + "HP Network Check" "NCLauncherFromIE" "Hewlett-Packard Company" "c:\program files (x86)\hewlett-packard\hp support framework\resources\hpnetworkcheck\nclauncherfromie.exe" "29/01/2016 07:39" "" + "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office 15\root\office15\onbttnielinkednotes.dll" "09/02/2016 08:54" "" + "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office 15\root\office15\onbttnie.dll" "09/02/2016 09:02" "" "Task Scheduler" "" "" "" "" "" + "\Apple\AppleSoftwareUpdate" "Apple Software Update" "Apple Inc." "c:\program files (x86)\apple software update\softwareupdate.exe" "24/02/2016 00:31" "" + "\CreateChoiceProcessTask" "" "" "File not found: C:\Windows\BrowserChoice\browserchoice.exe" "" "" + "\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon" "HP CoolSense" "Hewlett-Packard Development Company, L.P." "c:\program files (x86)\hewlett-packard\hp coolsense\coolsense.exe" "16/08/2013 08:53" "" + "\HPCeeScheduleForryanstockham" "HP Ceement" "Hewlett-Packard" "c:\program files (x86)\hewlett-packard\hp ceement\hpcee.exe" "16/06/2015 15:49" "" + "\Microsoft\Office\Office Automatic Updates" "Microsoft Office Click-to-Run Client" "Microsoft Corporation" "c:\program files\microsoft office 15\clientx64\officec2rclient.exe" "09/02/2016 09:47" "" + "\Microsoft\Office\Office ClickToRun Service Monitor" "Microsoft Office Click-to-Run Client" "Microsoft Corporation" "c:\program files\microsoft office 15\clientx64\officec2rclient.exe" "09/02/2016 09:47" "" + "\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task" "Windows Live Social Object Extractor Engine" "Microsoft Corporation" "c:\program files (x86)\windows live\soxe\wlsoxe.dll" "06/02/2013 07:43" "" + "\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319" "Microsoft .NET Runtime Execution Engine" "Microsoft Corporation" "c:\windows\system32\mscoree.dll" "30/10/2015 03:31" "" + "\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64" "Microsoft .NET Runtime Execution Engine" "Microsoft Corporation" "c:\windows\system32\mscoree.dll" "30/10/2015 03:31" "" + "\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical" "Microsoft .NET Runtime Execution Engine" "Microsoft Corporation" "c:\windows\system32\mscoree.dll" "30/10/2015 03:31" "" + "\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical" "Microsoft .NET Runtime Execution Engine" "Microsoft Corporation" "c:\windows\system32\mscoree.dll" "30/10/2015 03:31" "" X "\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated)" "Windows Rights Management client" "Microsoft Corporation" "c:\windows\system32\msdrm.dll" "30/10/2015 03:31" "" + "\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual)" "Windows Rights Management client" "Microsoft Corporation" "c:\windows\system32\msdrm.dll" "30/10/2015 03:31" "" X "\Microsoft\Windows\AppID\PolicyConverter" "AppID Policy Converter Task" "Microsoft Corporation" "c:\windows\system32\appidpolicyconverter.exe" "30/10/2015 03:34" "" + "\Microsoft\Windows\AppID\SmartScreenSpecific" "AppRepSync Task" "Microsoft Corporation" "c:\windows\system32\apprepsync.dll" "30/10/2015 03:33" "" X "\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck" "AppID Certificate Store Verification Task" "Microsoft Corporation" "c:\windows\system32\appidcertstorecheck.exe" "30/10/2015 03:39" "" + "\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser" "Microsoft Compatibility Telemetry" "Microsoft Corporation" "c:\windows\system32\compattelrunner.exe" "30/10/2015 03:38" "" + "\Microsoft\Windows\Application Experience\ProgramDataUpdater" "Microsoft Compatibility Telemetry" "Microsoft Corporation" "c:\windows\system32\compattelrunner.exe" "30/10/2015 03:38" "" + "\Microsoft\Windows\Application Experience\StartupAppTask" "Startup scan task DLL" "Microsoft Corporation" "c:\windows\system32\startupscan.dll" "30/10/2015 03:38" "" + "\Microsoft\Windows\ApplicationData\CleanupTemporaryState" "Windows Application Data API Server" "Microsoft Corporation" "c:\windows\system32\windows.storage.applicationdata.dll" "30/10/2015 03:29" "" + "\Microsoft\Windows\ApplicationData\DsSvcCleanup" "Data Sharing Service Maintenance Driver" "Microsoft Corporation" "c:\windows\system32\dstokenclean.exe" "30/10/2015 03:42" "" X "\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup" "AppX Deployment Client DLL" "Microsoft Corporation" "c:\windows\system32\appxdeploymentclient.dll" "24/02/2016 07:41" "" + "\Microsoft\Windows\Autochk\Proxy" "Autochk Proxy DLL" "Microsoft Corporation" "c:\windows\system32\acproxy.dll" "30/10/2015 03:40" "" + "\Microsoft\Windows\Bluetooth\UninstallDeviceTask" "Bluetooth Uninstall Device Task" "Microsoft Corporation" "c:\windows\system32\bthudtask.exe" "30/10/2015 03:39" "" + "\Microsoft\Windows\CertificateServicesClient\UserTask" "DIMS Job DLL" "Microsoft Corporation" "c:\windows\system32\dimsjob.dll" "30/10/2015 03:36" "" + "\Microsoft\Windows\CertificateServicesClient\UserTask-Roam" "DIMS Job DLL" "Microsoft Corporation" "c:\windows\system32\dimsjob.dll" "30/10/2015 03:36" "" + "\Microsoft\Windows\Chkdsk\ProactiveScan" "pstask Task" "Microsoft Corporation" "c:\windows\system32\pstask.dll" "30/10/2015 03:40" "" + "\Microsoft\Windows\CloudExperienceHost\CreateObjectTask" "CloudExperienceHost Broker" "Microsoft Corporation" "c:\windows\system32\cloudexperiencehostbroker.exe" "30/10/2015 03:40" "" + "\Microsoft\Windows\Customer Experience Improvement Program\BthSQM" "Bluetooth Telemetry Agent" "Microsoft Corporation" "c:\windows\system32\bthtelemetry.dll" "30/10/2015 03:41" "" + "\Microsoft\Windows\Customer Experience Improvement Program\Consolidator" "Windows SQM Consolidator" "Microsoft Corporation" "c:\windows\system32\wsqmcons.exe" "24/02/2016 07:54" "" + "\Microsoft\Windows\Customer Experience Improvement Program\KernelCeipTask" "Kernel Ceip Task" "Microsoft Corporation" "c:\windows\system32\kernelceip.dll" "30/10/2015 03:39" "" + "\Microsoft\Windows\Customer Experience Improvement Program\UsbCeip" "USBCEIP Task" "Microsoft Corporation" "c:\windows\system32\usbceip.dll" "30/10/2015 03:36" "" X "\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan" "Data Integrity Scan Task" "Microsoft Corporation" "c:\windows\system32\discan.dll" "30/10/2015 03:34" "" + "\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery" "Data Integrity Scan Task" "Microsoft Corporation" "c:\windows\system32\discan.dll" "30/10/2015 03:34" "" X "\Microsoft\Windows\Defrag\ScheduledDefrag" "Disk Defragmenter Module" "Microsoft Corp." "c:\windows\system32\defrag.exe" "30/10/2015 03:38" "" + "\Microsoft\Windows\Diagnosis\Scheduled" "Scripted Diagnostics Scheduled Task" "Microsoft Corporation" "c:\windows\system32\sdiagschd.dll" "30/10/2015 03:39" "" + "\Microsoft\Windows\DiskCleanup\SilentCleanup" "Disk Space Clean-up Manager for Windows" "Microsoft Corporation" "c:\windows\system32\cleanmgr.exe" "30/10/2015 03:38" "" X "\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector" "Windows Disk Failure Diagnostic Module" "Microsoft Corporation" "c:\windows\system32\dfdts.dll" "30/10/2015 03:37" "" X "\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver" "Windows Disk Diagnostic User Resolver" "Microsoft Corporation" "c:\windows\system32\dfdwiz.exe" "30/10/2015 03:37" "" + "\Microsoft\Windows\DiskFootprint\Diagnostics" "DiskSnapshot.exe" "Microsoft Corporation" "c:\windows\system32\disksnapshot.exe" "30/10/2015 03:41" "" + "\Microsoft\Windows\DiskFootprint\StorageSense" "Storage Usage" "Microsoft Corporation" "c:\windows\system32\storageusage.dll" "07/12/2015 05:09" "" + "\Microsoft\Windows\DUSM\dusmtask" "DUSM Task" "Microsoft Corporation" "c:\windows\system32\dusmtask.exe" "30/10/2015 03:42" "" + "\Microsoft\Windows\ErrorDetails\EnableErrorDetailsUpdate" "Error Details Update Task" "Microsoft Corporation" "c:\windows\system32\errordetailsupdate.dll" "30/10/2015 03:47" "" X "\Microsoft\Windows\ErrorDetails\ErrorDetailsUpdate" "Error Details Update Task" "Microsoft Corporation" "c:\windows\system32\errordetailsupdate.dll" "30/10/2015 03:47" "" + "\Microsoft\Windows\Feedback\Siuf\DmClient" "Microsoft Feedback SIUF Deployment Manager Client" "Microsoft Corporation" "c:\windows\system32\dmclient.exe" "30/10/2015 03:37" "" + "\Microsoft\Windows\FileHistory\File History (maintenance mode)" "File History Task Handler" "Microsoft Corporation" "c:\windows\system32\fhtask.dll" "30/10/2015 03:37" "" X "\Microsoft\Windows\IME\SQM data sender" "Microsoft IME" "Microsoft Corporation" "c:\windows\system32\ime\shared\imecfm.dll" "30/10/2015 03:33" "" + "\Microsoft\Windows\LanguageComponentsInstaller\Installation" "LanguageComponentsInstaller Task" "Microsoft Corporation" "c:\windows\system32\languagecomponentsinstaller.dll" "30/10/2015 03:34" "" + "\Microsoft\Windows\Location\Notifications" "Location Notification" "Microsoft Corporation" "c:\windows\system32\locationnotificationwindows.exe" "30/10/2015 03:37" "" + "\Microsoft\Windows\Location\WindowsActionDialog" "Windows Action Dialogue Broker" "Microsoft Corporation" "c:\windows\system32\windowsactiondialog.exe" "30/10/2015 03:38" "" + "\Microsoft\Windows\Maintenance\WinSAT" "Windows System Assessment Tool API" "Microsoft Corporation" "c:\windows\system32\winsatapi.dll" "30/10/2015 03:31" "" + "\Microsoft\Windows\Management\Provisioning\Logon" "Provisioning package runtime processing tool" "Microsoft Corporation" "c:\windows\system32\provtool.exe" "07/12/2015 05:04" "" + "\Microsoft\Windows\Maps\MapsToastTask" "MapsToastTask Task" "Microsoft Corporation" "c:\windows\system32\mapstoasttask.dll" "22/11/2015 10:51" "" + "\Microsoft\Windows\Maps\MapsUpdateTask" "MapsUpdateTask Task" "Microsoft Corporation" "c:\windows\system32\mapsupdatetask.dll" "29/03/2016 09:00" "" + "\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents" "Microsoft Windows Memory Diagnostic Task Handler" "Microsoft Corporation" "c:\windows\system32\memorydiagnostic.dll" "30/10/2015 03:39" "" + "\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic" "Microsoft Windows Memory Diagnostic Task Handler" "Microsoft Corporation" "c:\windows\system32\memorydiagnostic.dll" "30/10/2015 03:39" "" + "\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" "Mobile Broadband Account Experience Parser Task" "Microsoft Corporation" "c:\windows\system32\mbaeparsertask.exe" "30/10/2015 03:36" "" + "\Microsoft\Windows\MUI\LPRemove" "MUI Language pack clean-up" "Microsoft Corporation" "c:\windows\system32\lpremove.exe" "30/10/2015 03:37" "" + "\Microsoft\Windows\Multimedia\SystemSoundsService" "PlaySound Service" "Microsoft Corporation" "c:\windows\system32\playsndsrv.dll" "30/10/2015 03:36" "" + "\Microsoft\Windows\NetTrace\GatherNetworkInfo" "" "" "c:\windows\system32\gathernetworkinfo.vbs" "30/10/2015 08:17" "" + "\Microsoft\Windows\NlaSvc\WiFiTask" "Wireless Background Task" "Microsoft Corporation" "c:\windows\system32\wifitask.exe" "07/12/2015 05:00" "" + "\Microsoft\Windows\Plug and Play\Device Install Group Policy" "pnppolicy Task" "Microsoft Corporation" "c:\windows\system32\pnppolicy.dll" "30/10/2015 03:36" "" + "\Microsoft\Windows\Plug and Play\Device Install Reboot Required" "Plug and Play User Interface DLL" "Microsoft Corporation" "c:\windows\system32\pnpui.dll" "30/10/2015 03:38" "" + "\Microsoft\Windows\Plug and Play\Plug and Play Cleanup" "Plug and Play Maintenance Task Library" "Microsoft Corporation" "c:\windows\system32\pnpclean.dll" "30/10/2015 03:37" "" + "\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers" "Driver Installation Module" "Microsoft Corporation" "c:\windows\system32\drvinst.exe" "30/10/2015 03:36" "" + "\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem" "Power Efficiency Diagnostics Task" "Microsoft Corporation" "c:\windows\system32\energytask.dll" "30/10/2015 03:38" "" X "\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE" "Microsoft Windows Recovery Agent Task Handler" "Microsoft Corporation" "c:\windows\system32\reagenttask.dll" "30/10/2015 03:39" "" + "\Microsoft\Windows\Registry\RegIdleBackup" "RegIdle Backup Task" "Microsoft Corporation" "c:\windows\system32\regidle.dll" "30/10/2015 03:39" "" + "\Microsoft\Windows\RemovalTools\MRT_HB" "Microsoft Windows Malicious Software Removal Tool" "Microsoft Corporation" "c:\windows\system32\mrt.exe" "03/04/2016 10:22" "" + "\Microsoft\Windows\SettingSync\BackgroundUploadTask" "Setting Synchronization Core" "Microsoft Corporation" "c:\windows\system32\settingsynccore.dll" "23/02/2016 08:14" "" + "\Microsoft\Windows\SettingSync\NetworkStateChangeTask" "Setting Synchronization Core" "Microsoft Corporation" "c:\windows\system32\settingsynccore.dll" "23/02/2016 08:14" "" + "\Microsoft\Windows\Shell\CreateObjectTask" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "\Microsoft\Windows\Shell\FamilySafetyMonitor" "Family Safety Monitor" "Microsoft Corporation" "c:\windows\system32\wpcmon.exe" "16/01/2016 06:17" "" + "\Microsoft\Windows\Shell\FamilySafetyRefresh" "Family Safety Web Synchronisation Library" "Microsoft Corporation" "c:\windows\system32\wpcwebsync.dll" "30/10/2015 03:23" "" X "\Microsoft\Windows\Shell\FamilySafetyUpload" "Family Safety Web Synchronisation Library" "Microsoft Corporation" "c:\windows\system32\wpcwebsync.dll" "30/10/2015 03:23" "" + "\Microsoft\Windows\Shell\IndexerAutomaticMaintenance" "Indexing Options" "Microsoft Corporation" "c:\windows\system32\srchadmin.dll" "30/10/2015 03:31" "" X "\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon" "Software Protection Platform Client Extension Dll" "Microsoft Corporation" "c:\windows\system32\sppcext.dll" "30/10/2015 03:28" "" + "\Microsoft\Windows\SpacePort\SpaceAgentTask" "Storage Spaces Settings" "Microsoft Corporation" "c:\windows\system32\spaceagent.exe" "30/10/2015 03:37" "" + "\Microsoft\Windows\SpacePort\SpaceManagerTask" "Storage Spaces Manager" "Microsoft Corporation" "c:\windows\system32\spaceman.exe" "30/10/2015 03:39" "" + "\Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization" "Storage Tiers Management" "Microsoft Corporation" "c:\windows\system32\tieringengineservice.exe" "30/10/2015 03:34" "" X "\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization" "Disk Defragmenter Module" "Microsoft Corp." "c:\windows\system32\defrag.exe" "30/10/2015 03:38" "" X "\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate" "Superfetch Service Host" "Microsoft Corporation" "c:\windows\system32\sysmain.dll" "30/10/2015 03:26" "" X "\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance" "Superfetch Service Host" "Microsoft Corporation" "c:\windows\system32\sysmain.dll" "30/10/2015 03:26" "" + "\Microsoft\Windows\Sysmain\ResPriStaticDbSync" "Superfetch Service Host" "Microsoft Corporation" "c:\windows\system32\sysmain.dll" "30/10/2015 03:26" "" + "\Microsoft\Windows\Sysmain\WsSwapAssessmentTask" "Superfetch Service Host" "Microsoft Corporation" "c:\windows\system32\sysmain.dll" "30/10/2015 03:26" "" + "\Microsoft\Windows\SystemRestore\SR" "Microsoft® Windows System Protection background tasks." "Microsoft Corporation" "c:\windows\system32\srtasks.exe" "30/10/2015 03:38" "" + "\Microsoft\Windows\Task Manager\Interactive" "Performance Monitor" "Microsoft Corporation" "c:\windows\system32\wdc.dll" "30/10/2015 03:24" "" + "\Microsoft\Windows\TextServicesFramework\MsCtfMonitor" "MsCtfMonitor DLL" "Microsoft Corporation" "c:\windows\system32\msctfmonitor.dll" "30/10/2015 03:36" "" + "\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime" "Time Synchronization Task" "Microsoft Corporation" "c:\windows\system32\timesynctask.dll" "30/10/2015 03:39" "" + "\Microsoft\Windows\Time Synchronization\SynchronizeTime" "Service Control Manager Configuration Tool" "Microsoft Corporation" "c:\windows\system32\sc.exe" "30/10/2015 03:36" "" + "\Microsoft\Windows\Time Zone\SynchronizeTimeZone" "TimeZone Sync Task" "Microsoft Corporation" "c:\windows\system32\tzsync.exe" "30/10/2015 02:37" "" X "\Microsoft\Windows\UpdateOrchestrator\Maintenance Install" "UsoClient" "Microsoft Corporation" "c:\windows\system32\usoclient.exe" "30/10/2015 03:43" "" X "\Microsoft\Windows\UpdateOrchestrator\Policy Install" "UsoClient" "Microsoft Corporation" "c:\windows\system32\usoclient.exe" "30/10/2015 03:43" "" + "\Microsoft\Windows\UpdateOrchestrator\Reboot" "MusNotificationBroker" "Microsoft Corporation" "c:\windows\system32\musnotification.exe" "16/01/2016 06:44" "" X "\Microsoft\Windows\UpdateOrchestrator\Resume On Boot" "UsoClient" "Microsoft Corporation" "c:\windows\system32\usoclient.exe" "30/10/2015 03:43" "" + "\Microsoft\Windows\UpdateOrchestrator\Schedule Scan" "UsoClient" "Microsoft Corporation" "c:\windows\system32\usoclient.exe" "30/10/2015 03:43" "" + "\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display" "MusNotificationBroker" "Microsoft Corporation" "c:\windows\system32\musnotification.exe" "16/01/2016 06:44" "" + "\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot" "MusNotificationBroker" "Microsoft Corporation" "c:\windows\system32\musnotification.exe" "16/01/2016 06:44" "" + "\Microsoft\Windows\UPnP\UPnPHostConfig" "Service Control Manager Configuration Tool" "Microsoft Corporation" "c:\windows\system32\sc.exe" "30/10/2015 03:36" "" + "\Microsoft\Windows\WCM\WiFiTask" "Wireless Background Task" "Microsoft Corporation" "c:\windows\system32\wifitask.exe" "07/12/2015 05:00" "" + "\Microsoft\Windows\WDI\ResolutionHost" "Windows Diagnostic Infrastructure" "Microsoft Corporation" "c:\windows\system32\wdi.dll" "30/10/2015 03:36" "" + "\Microsoft\Windows\Windows Error Reporting\QueueReporting" "Windows Problem Reporting" "Microsoft Corporation" "c:\windows\system32\wermgr.exe" "24/02/2016 08:21" "" + "\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange" "Base Filtering Engine" "Microsoft Corporation" "c:\windows\system32\bfe.dll" "29/03/2016 06:27" "" + "\Microsoft\Windows\Windows Media Sharing\UpdateLibrary" "Windows Media Player Network Sharing Service Configuration Application" "Microsoft Corporation" "c:\program files\windows media player\wmpnscfg.exe" "30/10/2015 03:10" "" X "\Microsoft\Windows\WindowsColorSystem\Calibration Loader" "Microsoft Colour Matching System DLL" "Microsoft Corporation" "c:\windows\system32\mscms.dll" "30/10/2015 03:28" "" + "\Microsoft\Windows\WindowsUpdate\Automatic App Update" "wuautoappupdate" "Microsoft Corporation" "c:\windows\system32\wuautoappupdate.dll" "29/03/2016 08:50" "" + "\Microsoft\Windows\WindowsUpdate\Scheduled Start" "Service Control Manager Configuration Tool" "Microsoft Corporation" "c:\windows\system32\sc.exe" "30/10/2015 03:36" "" + "\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network" "Service Control Manager Configuration Tool" "Microsoft Corporation" "c:\windows\system32\sc.exe" "30/10/2015 03:36" "" + "\Microsoft\Windows\WindowsUpdate\sih" "SIH Client" "Microsoft Corporation" "c:\windows\system32\sihclient.exe" "30/10/2015 03:33" "" + "\Microsoft\Windows\WindowsUpdate\sihboot" "SIH Client" "Microsoft Corporation" "c:\windows\system32\sihclient.exe" "30/10/2015 03:33" "" + "\Microsoft\Windows\Wininet\CacheTask" "Internet Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\wininet.dll" "29/03/2016 07:26" "" + "\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization" "Microsoft (C) Work Folders Shell Extension" "Microsoft Corporation" "c:\windows\system32\workfoldersshell.dll" "30/10/2015 03:32" "" + "\Microsoft\Windows\Work Folders\Work Folders Maintenance Work" "Microsoft (C) Work Folders Shell Extension" "Microsoft Corporation" "c:\windows\system32\workfoldersshell.dll" "30/10/2015 03:32" "" X "\Microsoft\Windows\Workplace Join\Automatic-Device-Join" "DSREG commandline tool" "Microsoft Corporation" "c:\windows\system32\dsregcmd.exe" "30/10/2015 03:31" "" X "\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join" " " "Microsoft Corporation" "c:\windows\system32\autoworkplace.exe" "30/10/2015 02:38" "" + "\Microsoft\Windows\WS\WSRefreshBannedAppsListTask" "Windows Store Licensing Client" "Microsoft Corporation" "c:\windows\system32\wsclient.dll" "30/10/2015 03:32" "" + "\Microsoft\Windows\WS\WSTask" "Windows Store Service" "Microsoft Corporation" "c:\windows\system32\wsservice.dll" "24/02/2016 06:13" "" + "\Norton Internet Security\Norton Autofix" "Symantec Error Reporting" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine\22.6.0.142\symerr.exe" "10/02/2016 20:16" "" + "\Norton Internet Security\Norton Error Analyzer" "Symantec Error Reporting" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine\22.6.0.142\symerr.exe" "10/02/2016 20:16" "" + "\Optimize Start Menu Cache Files-S-1-5-21-3637880556-865379904-740243096-1002" "twinapi" "Microsoft Corporation" "c:\windows\system32\twinapi.dll" "30/10/2015 03:17" "" + "\RealDownloader Update Check" "RealDownloader" "" "c:\program files (x86)\realnetworks\realdownloader\downloader2.exe" "25/02/2016 01:21" "" + "\RealDownloaderRealUpgradeLogonTaskS-1-5-21-3637880556-865379904-740243096-1002" "RealUpgrade Launcher" "RealNetworks, Inc." "c:\program files (x86)\realnetworks\realdownloader\realupgrade.exe" "28/07/2015 04:08" "" + "\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-3637880556-865379904-740243096-1002" "RealUpgrade Launcher" "RealNetworks, Inc." "c:\program files (x86)\realnetworks\realdownloader\realupgrade.exe" "28/07/2015 04:08" "" + "\RealPlayerRealUpgradeLogonTaskS-1-5-21-3637880556-865379904-740243096-1002" "RealUpgrade Launcher" "RealNetworks, Inc." "c:\program files (x86)\real\realupgrade\realupgrade.exe" "28/07/2015 05:25" "" + "\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3637880556-865379904-740243096-1002" "RealUpgrade Launcher" "RealNetworks, Inc." "c:\program files (x86)\real\realupgrade\realupgrade.exe" "28/07/2015 05:25" "" + "\ReimageUpdater" "Reimage Real Time Protection" "Reimage®" "c:\program files\reimage\reimage protector\reiguard.exe" "19/08/2015 09:57" "" + "\Remediation\AntimalwareMigrationTask" "WSCStub" "Symantec Corporation" "c:\program files\common files\av\norton internet security\upgrade.exe" "26/02/2016 04:56" "" + "\Synaptics TouchPad Enhancements" "Synaptics TouchPad 64-bit Enhancements" "Synaptics Incorporated" "c:\program files\synaptics\syntp\syntpenh.exe" "06/07/2015 12:34" "" + "\User_Feed_Synchronization-{E52C999F-342A-44C9-9451-C0013AC6180D}" "Microsoft Feeds Synchronization" "Microsoft Corporation" "c:\windows\system32\msfeedssync.exe" "30/10/2015 03:40" "" + "\WPD\SqmUpload_S-1-5-21-3637880556-865379904-740243096-1002" "Windows Portable Device API Components" "Microsoft Corporation" "c:\windows\system32\portabledeviceapi.dll" "30/10/2015 03:10" "" + "\YCMServiceAgent" "CyberLink YouCam Service" "CyberLink Corp." "c:\program files (x86)\cyberlink\youcam\youcamservice.exe" "18/03/2015 03:36" "" + "\{B0A395E0-051C-4993-9B37-D7DEE81FAFBC}" "Program Compatibility Assistant" "Microsoft Corporation" "c:\windows\system32\pcalua.exe" "30/10/2015 03:38" "" "HKLM\System\CurrentControlSet\Services" "" "" "" "15/04/2016 22:26" "" + "AJRouter" "Routes AllJoyn messages for the local AllJoyn clients. If this service is stopped the AllJoyn clients that do not have their own bundled routers will be unable to run." "Microsoft Corporation" "c:\windows\system32\ajrouter.dll" "30/10/2015 03:37" "" + "ALG" "Provides support for 3rd party protocol plug-ins for Internet Connection Sharing" "Microsoft Corporation" "c:\windows\system32\alg.exe" "30/10/2015 03:36" "" + "AMD External Events Utility" "AMD External Events Service Module" "AMD" "c:\windows\system32\atiesrxx.exe" "07/07/2015 02:15" "" + "AMD FUEL Service" "Provides FUEL Functionality" "Advanced Micro Devices, Inc." "c:\program files\ati technologies\ati.ace\fuel\fuel.service.exe" "25/09/2013 11:48" "" + "AppHostSvc" "Provides administrative services for IIS, for example configuration history and Application Pool account mapping. If this service is stopped, configuration history and locking down files or directories with Application Pool specific Access Control Entries will not work." "Microsoft Corporation" "c:\windows\system32\inetsrv\apphostsvc.dll" "30/10/2015 03:40" "" + "AppIDSvc" "Determines and verifies the identity of an application. Disabling this service will prevent AppLocker from being enforced." "Microsoft Corporation" "c:\windows\system32\appidsvc.dll" "30/10/2015 03:37" "" + "Appinfo" "Facilitates the running of interactive applications with additional administrative privileges. If this service is stopped, users will be unable to launch applications with the additional administrative privileges they may require to perform desired user tasks." "Microsoft Corporation" "c:\windows\system32\appinfo.dll" "30/10/2015 03:36" "" + "Apple Mobile Device Service" "Provides the interface to Apple mobile devices." "Apple Inc." "c:\program files\common files\apple\mobile device support\applemobiledeviceservice.exe" "13/02/2015 04:18" "" + "AppReadiness" "Gets apps ready for use the first time a user signs in to this PC and when adding new apps." "Microsoft Corporation" "c:\windows\system32\appreadiness.dll" "30/10/2015 03:28" "" + "AppXSvc" "Provides infrastructure support for deploying Store applications. This service is started on demand and if disabled Store applications will not be deployed to the system, and may not function properly." "Microsoft Corporation" "c:\windows\system32\appxdeploymentserver.dll" "02/04/2016 04:07" "" + "aspnet_state" "Provides support for out-of-process session states for ASP.NET. If this service is stopped, out-of-process requests will not be processed. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\microsoft.net\framework64\v4.0.30319\aspnet_state.exe" "08/10/2015 03:29" "" + "AudioEndpointBuilder" "Manages audio devices for the Windows Audio service. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start" "Microsoft Corporation" "c:\windows\system32\audioendpointbuilder.dll" "23/02/2016 09:28" "" + "Audiosrv" "Manages audio for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start" "Microsoft Corporation" "c:\windows\system32\audiosrv.dll" "02/04/2016 04:18" "" + "AxInstSV" "Provides User Account Control validation for the installation of ActiveX controls from the Internet and enables management of ActiveX control installation based on Group Policy settings. This service is started on demand and if disabled the installation of ActiveX controls will behave according to default browser settings." "Microsoft Corporation" "c:\windows\system32\axinstsv.dll" "30/10/2015 03:33" "" + "BDESVC" "BDESVC hosts the BitLocker Drive Encryption service. BitLocker Drive Encryption provides secure startup for the operating system, as well as full volume encryption for OS, fixed or removable volumes. This service allows BitLocker to prompt users for various actions related to their volumes when mounted, and unlocks volumes automatically without user interaction. Additionally, it stores recovery information to Active Directory, if available, and, if necessary, ensures the most recent recovery certificates are used. Stopping or disabling the service would prevent users from leveraging this functionality." "Microsoft Corporation" "c:\windows\system32\bdesvc.dll" "29/03/2016 07:05" "" + "BFE" "The Base Filtering Engine (BFE) is a service that manages firewall and Internet Protocol security (IPsec) policies and implements user mode filtering. Stopping or disabling the BFE service will significantly reduce the security of the system. It will also result in unpredictable behavior in IPsec management and firewall applications." "Microsoft Corporation" "c:\windows\system32\bfe.dll" "29/03/2016 06:27" "" + "BITS" "Transfers files in the background using idle network bandwidth. If the service is disabled, then any applications that depend on BITS, such as Windows Update or MSN Explorer, will be unable to automatically download programs and other information." "Microsoft Corporation" "c:\windows\system32\qmgr.dll" "30/10/2015 03:28" "" + "Bonjour Service" "Enables hardware devices and software services to automatically configure themselves on the network and advertise their presence." "Apple Inc." "c:\program files\bonjour\mdnsresponder.exe" "12/08/2015 23:47" "" + "BrokerInfrastructure" "Windows infrastructure service that controls which background tasks can run on the system." "Microsoft Corporation" "c:\windows\system32\bisrv.dll" "29/03/2016 08:13" "" + "Browser" "Maintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\browser.dll" "29/03/2016 08:46" "" + "BthHFSrv" "Enables wireless Bluetooth headsets to run on this computer. If this service is stopped or disabled, then Bluetooth headsets will not function properly with this machine." "Microsoft Corporation" "c:\windows\system32\bthhfsrv.dll" "30/10/2015 03:34" "" + "bthserv" "The Bluetooth service supports discovery and association of remote Bluetooth devices. Stopping or disabling this service may cause already installed Bluetooth devices to fail to operate properly and prevent new devices from being discovered or associated." "Microsoft Corporation" "c:\windows\system32\bthserv.dll" "30/10/2015 03:37" "" + "Cachedrv server" "Service for HP SimplePass Cachedrv" "Softex Inc." "c:\program files\hewlett-packard\simplepass\cachesrvr.exe" "14/10/2013 17:23" "" + "CertPropSvc" "Copies user certificates and root certificates from smart cards into the current user's certificate store, detects when a smart card is inserted into a smart card reader, and, if needed, installs the smart card Plug and Play minidriver." "Microsoft Corporation" "c:\windows\system32\certprop.dll" "30/10/2015 03:34" "" + "ClickToRunSvc" "Manages resource coordination, background streaming, and system integration of Microsoft Office products and their related updates. This service is required to run during the use of any Microsoft Office program, during initial streaming installation and all subsequent updates." "Microsoft Corporation" "c:\program files\microsoft office 15\clientx64\officeclicktorun.exe" "09/02/2016 09:32" "" + "ClipSVC" "Provides infrastructure support for the Microsoft Store. This service is started on demand and if disabled applications bought using Windows Store will not behave correctly." "Microsoft Corporation" "c:\windows\system32\clipsvc.dll" "24/02/2016 07:45" "" + "COMSysApp" "Manages the configuration and tracking of Component Object Model (COM)+-based components. If the service is stopped, most COM+-based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\dllhost.exe" "30/10/2015 03:41" "" + "CoreMessagingRegistrar" "Manages communication between system components." "Microsoft Corporation" "c:\windows\system32\coremessaging.dll" "30/10/2015 02:57" "" + "CryptSvc" "Provides three management services: Catalog Database Service, which confirms the signatures of Windows files and allows new programs to be installed; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; and Automatic Root Certificate Update Service, which retrieves root certificates from Windows Update and enable scenarios such as SSL. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\cryptsvc.dll" "30/10/2015 03:35" "" + "DACoreService" "Dragon Notes Core Recognition Service" "Nuance Communications, Inc." "c:\program files (x86)\nuance\dragon notes\core\dacore.exe" "01/02/2013 17:15" "" + "DcomLaunch" "The DCOMLAUNCH service launches COM and DCOM servers in response to object activation requests. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the DCOMLAUNCH service running." "Microsoft Corporation" "c:\windows\system32\rpcss.dll" "30/10/2015 03:27" "" + "DcpSvc" "The DCP (Data Collection and Publishing) service supports first party apps to upload data to cloud." "Microsoft Corporation" "c:\windows\system32\dcpsvc.dll" "30/10/2015 03:39" "" + "defragsvc" "Helps the computer run more efficiently by optimising files on storage drives." "Microsoft Corporation" "c:\windows\system32\defragsvc.dll" "30/10/2015 03:28" "" + "DeviceAssociationService" "Enables pairing between the system and wired or wireless devices." "Microsoft Corporation" "c:\windows\system32\das.dll" "30/10/2015 03:29" "" + "DeviceInstall" "Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability." "Microsoft Corporation" "c:\windows\system32\umpnpmgr.dll" "30/10/2015 03:34" "" + "DevQueryBroker" "Enables apps to discover devices with a backgroud task" "Microsoft Corporation" "c:\windows\system32\devquerybroker.dll" "30/10/2015 03:39" "" + "Dhcp" "Registers and updates IP addresses and DNS records for this computer. If this service is stopped, this computer will not receive dynamic IP addresses and DNS updates. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\dhcpcore.dll" "30/10/2015 03:32" "" + "diagnosticshub.standardcollector.service" "Diagnostics Hub Standard Collector Service. When running, this service collects real time ETW events and processes them." "Microsoft Corporation" "c:\windows\system32\diagsvcs\diagnosticshub.standardcollector.service.exe" "30/10/2015 03:41" "" + "DiagTrack" "The Connected User Experiences and Telemetry service enables features that support in-application and connected user experiences. Additionally, this service manages the event driven collection and transmission of diagnostic and usage information (used to improve the experience and quality of the Windows Platform) when the diagnostics and usage privacy option settings are enabled under Feedback and Diagnostics." "Microsoft Corporation" "c:\windows\system32\diagtrack.dll" "24/02/2016 07:11" "" + "DmEnrollmentSvc" "Performs Device Enrollment Activities for Device Management" "Microsoft Corporation" "c:\windows\system32\windows.internal.management.dll" "30/10/2015 03:31" "" + "dmwappushservice" "WAP Push Message Routing Service" "Microsoft Corporation" "c:\windows\system32\dmwappushsvc.dll" "30/10/2015 03:36" "" + "Dnscache" "The DNS Client service (dnscache) caches Domain Name System (DNS) names and registers the full computer name for this computer. If the service is stopped, DNS names will continue to be resolved. However, the results of DNS name queries will not be cached and the computer's name will not be registered. If the service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\dnsrslvr.dll" "29/03/2016 08:34" "" + "DoSvc" "Performs content delivery optimization tasks" "Microsoft Corporation" "c:\windows\system32\dosvc.dll" "29/03/2016 07:32" "" + "dot3svc" "The Wired AutoConfig (DOT3SVC) service is responsible for performing IEEE 802.1X authentication on Ethernet interfaces. If your current wired network deployment enforces 802.1X authentication, the DOT3SVC service should be configured to run for establishing Layer 2 connectivity and/or providing access to network resources. Wired networks that do not enforce 802.1X authentication are unaffected by the DOT3SVC service." "Microsoft Corporation" "c:\windows\system32\dot3svc.dll" "30/10/2015 03:32" "" + "DPS" "The Diagnostic Policy Service enables problem detection, troubleshooting and resolution for Windows components. If this service is stopped, diagnostics will no longer function." "Microsoft Corporation" "c:\windows\system32\dps.dll" "30/10/2015 03:35" "" + "DsmSvc" "Enables the detection, download and installation of device-related software. If this service is disabled, devices may be configured with outdated software, and may not work correctly." "Microsoft Corporation" "c:\windows\system32\devicesetupmanager.dll" "30/10/2015 03:35" "" + "DsSvc" "Provides data brokering between applications." "Microsoft Corporation" "c:\windows\system32\dssvc.dll" "24/02/2016 08:19" "" + "Eaphost" "The Extensible Authentication Protocol (EAP) service provides network authentication in such scenarios as 802.1x wired and wireless, VPN, and Network Access Protection (NAP). EAP also provides application programming interfaces (APIs) that are used by network access clients, including wireless and VPN clients, during the authentication process. If you disable this service, this computer is prevented from accessing networks that require EAP authentication." "Microsoft Corporation" "c:\windows\system32\eapsvc.dll" "30/10/2015 03:33" "" + "EFS" "Provides the core file encryption technology used to store encrypted files on NTFS file system volumes. If this service is stopped or disabled, applications will be unable to access encrypted files." "Microsoft Corporation" "c:\windows\system32\efssvc.dll" "30/10/2015 03:39" "" + "embeddedmode" "Embedded Mode" "Microsoft Corporation" "c:\windows\system32\embeddedmodesvc.dll" "30/10/2015 03:36" "" + "EntAppSvc" "Enables enterprise application management." "Microsoft Corporation" "c:\windows\system32\enterpriseappmgmtsvc.dll" "30/10/2015 03:33" "" + "EventLog" "This service manages events and event logs. It supports logging events, querying events, subscribing to events, archiving event logs, and managing event metadata. It can display events in both XML and plain text format. Stopping this service may compromise security and reliability of the system." "Microsoft Corporation" "c:\windows\system32\wevtsvc.dll" "30/10/2015 03:24" "" + "EventSystem" "Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\es.dll" "30/10/2015 03:34" "" + "Fax" "Enables you to send and receive faxes, using fax resources available on this computer or on the network." "Microsoft Corporation" "c:\windows\system32\fxssvc.exe" "30/10/2015 03:31" "" + "fdPHost" "The FDPHOST service hosts the Function Discovery (FD) network discovery providers. These FD providers supply network discovery services for the Simple Services Discovery Protocol (SSDP) and Web Services – Discovery (WS-D) protocol. Stopping or disabling the FDPHOST service will disable network discovery for these protocols when using FD. When this service is unavailable, network services using FD and relying on these discovery protocols will be unable to find network devices or resources." "Microsoft Corporation" "c:\windows\system32\fdphost.dll" "30/10/2015 03:39" "" + "FDResPub" "Publishes this computer and resources attached to this computer so they can be discovered over the network. If this service is stopped, network resources will no longer be published and they will not be discovered by other computers on the network." "Microsoft Corporation" "c:\windows\system32\fdrespub.dll" "30/10/2015 03:38" "" + "fhsvc" "Protects user files from accidental loss by copying them to a backup location" "Microsoft Corporation" "c:\windows\system32\fhsvc.dll" "30/10/2015 03:33" "" + "FontCache" "Optimizes performance of applications by caching commonly used font data. Applications will start this service if it is not already running. It can be disabled, though doing so will degrade application performance." "Microsoft Corporation" "c:\windows\system32\fntcache.dll" "30/10/2015 03:25" "" + "FontCache3.0.0.0" "Optimizes performance of Windows Presentation Foundation (WPF) applications by caching commonly used font data. WPF applications will start this service if it is not already running. It can be disabled, though doing so will degrade the performance of WPF applications." "Microsoft Corporation" "c:\windows\microsoft.net\framework64\v3.0\wpf\presentationfontcache.exe" "08/10/2015 06:27" "" + "GamesAppService" "WT Games App Services" "WildTangent, Inc." "c:\program files (x86)\wildtangent games\app\gamesappservice.exe" "04/10/2010 23:15" "" + "gpsvc" "The service is responsible for applying settings configured by administrators for the computer and users through the Group Policy component. If the service is disabled, the settings will not be applied and applications and components will not be manageable through Group Policy. Any components or applications that depend on the Group Policy component might not be functional if the service is disabled." "Microsoft Corporation" "c:\windows\system32\gpsvc.dll" "30/10/2015 03:23" "" + "hidserv" "Activates and maintains the use of hot buttons on keyboards, remote controls and other multimedia devices. It is recommended that you keep this service running." "Microsoft Corporation" "c:\windows\system32\hidserv.dll" "30/10/2015 03:38" "" + "HomeGroupListener" "@%SystemRoot%\System32\ListSvc.dll,-101" "Microsoft Corporation" "c:\windows\system32\listsvc.dll" "30/10/2015 03:32" "" + "HomeGroupProvider" "Performs networking tasks associated with configuration and maintenance of homegroups. If this service is stopped or disabled, your computer will be unable to detect other homegroups and your homegroup might not work properly. It is recommended that you keep this service running." "Microsoft Corporation" "c:\windows\system32\provsvc.dll" "30/10/2015 03:19" "" + "hpqwmiex" "HP Software Framework WMI Service" "Hewlett-Packard Company" "c:\program files (x86)\hewlett-packard\shared\hpqwmiex.exe" "28/04/2015 21:15" "" + "hpsrv" "HpService" "Hewlett-Packard Company" "c:\windows\system32\hpservice.exe" "05/06/2015 18:59" "" + "HPSupportSolutionsFrameworkService" "This service allows for the detection of HP products and enables identification of support solutions for detected products." "Hewlett-Packard Company" "c:\program files (x86)\hewlett-packard\hp support solutions\hpsupportsolutionsframeworkservice.exe" "17/02/2016 20:00" "" + "HPWMISVC" "HP WMI Service" "Hewlett-Packard Development Company, L.P." "c:\program files (x86)\hewlett-packard\hp system event\hpwmisvc.exe" "09/10/2014 09:15" "" + "icssvc" "Provides the ability to share a mobile data connection with another device." "Microsoft Corporation" "c:\windows\system32\tetheringservice.dll" "13/11/2015 06:58" "" + "IEEtwCollectorService" "ETW Collector Service for Internet Explorer. When running, this service collects real time ETW events and processes them." "Microsoft Corporation" "c:\windows\system32\ieetwcollector.exe" "30/10/2015 03:38" "" + "IKEEXT" "The IKEEXT service hosts the Internet Key Exchange (IKE) and Authenticated Internet Protocol (AuthIP) keying modules. These keying modules are used for authentication and key exchange in Internet Protocol security (IPsec). Stopping or disabling the IKEEXT service will disable IKE and AuthIP key exchange with peer computers. IPsec is typically configured to use IKE or AuthIP; therefore, stopping or disabling the IKEEXT service might result in an IPsec failure and might compromise the security of the system. It is strongly recommended that you have the IKEEXT service running." "Microsoft Corporation" "c:\windows\system32\ikeext.dll" "29/03/2016 07:01" "" + "iphlpsvc" "Provides tunnel connectivity using IPv6 transition technologies (6to4, ISATAP, Port Proxy, and Teredo), and IP-HTTPS. If this service is stopped, the computer will not have the enhanced connectivity benefits that these technologies offer." "Microsoft Corporation" "c:\windows\system32\iphlpsvc.dll" "30/10/2015 03:31" "" + "iPod Service" "iPod hardware management services" "Apple Inc." "c:\program files\ipod\bin\ipodservice.exe" "18/12/2015 06:24" "" + "KeyIso" "The CNG key isolation service is hosted in the LSA process. The service provides key process isolation to private keys and associated cryptographic operations as required by the Common Criteria. The service stores and uses long-lived keys in a secure process complying with Common Criteria requirements." "Microsoft Corporation" "c:\windows\system32\keyiso.dll" "30/10/2015 03:36" "" + "KtmRm" "Coordinates transactions between the Distributed Transaction Coordinator (MSDTC) and the Kernel Transaction Manager (KTM). If it is not needed, it is recommended that this service remain stopped. If it is needed, both MSDTC and KTM will start this service automatically. If this service is disabled, any MSDTC transaction interacting with a Kernel Resource Manager will fail and any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\msdtckrm.dll" "30/10/2015 03:37" "" + "LanmanServer" "Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\srvsvc.dll" "30/10/2015 03:21" "" + "LanmanWorkstation" "Creates and maintains client network connections to remote servers using the SMB protocol. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\wkssvc.dll" "30/10/2015 03:22" "" + "lfsvc" "This service monitors the current location of the system and manages geofences (a geographical location with associated events). If you turn off this service, applications will be unable to use or receive notifications for geolocation or geofences." "Microsoft Corporation" "c:\windows\system32\lfsvc.dll" "30/10/2015 03:38" "" + "LicenseManager" "Provides infrastructure support for the Windows Store. This service is started on demand and if disabled then content acquired through the Windows Store will not function properly." "Microsoft Corporation" "c:\windows\system32\licensemanagersvc.dll" "30/10/2015 03:38" "" + "lltdsvc" "Creates a Network Map, consisting of PC and device topology (connectivity) information, and metadata describing each PC and device. If this service is disabled, the Network Map will not function properly." "Microsoft Corporation" "c:\windows\system32\lltdsvc.dll" "30/10/2015 03:35" "" + "lmhosts" "Provides support for the NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution for clients on the network, therefore enabling users to share files, print, and log on to the network. If this service is stopped, these functions might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "LSM" "Core Windows Service that manages local user sessions. Stopping or disabling this service will result in system instability." "Microsoft Corporation" "c:\windows\system32\lsm.dll" "30/10/2015 03:46" "" + "MapsBroker" "Windows service for application access to downloaded maps. This service is started on-demand by applications accessing downloaded maps. Disabling this service will prevent apps from accessing maps." "Microsoft Corporation" "c:\windows\system32\moshost.dll" "29/03/2016 08:50" "" + "MessagingService" "Service supporting text messaging and related functionality." "Microsoft Corporation" "c:\windows\system32\messagingservice.dll" "30/10/2015 03:47" "" + "MessagingService_155118a" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "MessagingService_4aaf9c8" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "MessagingService_5192dd7" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "MpsSvc" "Windows Firewall helps protect your computer by preventing unauthorised users from gaining access to your computer through the Internet or a network." "Microsoft Corporation" "c:\windows\system32\mpssvc.dll" "24/02/2016 07:28" "" + "MSDTC" "Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will fail. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\msdtc.exe" "30/10/2015 03:37" "" + "MSiSCSI" "Manages Internet SCSI (iSCSI) sessions from this computer to remote iSCSI target devices. If this service is stopped, this computer will not be able to login or access iSCSI targets. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\iscsiexe.dll" "30/10/2015 03:37" "" + "msiserver" "Adds, modifies and removes applications provided as a Windows Installer or APPX package (*.msi, *.msp, *.appx). If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\msiexec.exe" "30/10/2015 03:37" "" + "NcaSvc" "Provides DirectAccess status notification for UI components" "Microsoft Corporation" "c:\windows\system32\ncasvc.dll" "30/10/2015 03:41" "" + "NcbService" "Brokers connections that allow Windows Store Apps to receive notifications from the internet." "Microsoft Corporation" "c:\windows\system32\ncbservice.dll" "29/03/2016 06:45" "" + "NcdAutoSetup" "Network Connected Devices Auto-Setup service monitors and installs qualified devices that connect to a qualified network. Stopping or disabling this service will prevent Windows from discovering and installing qualified network connected devices automatically. Users can still manually add network connected devices to a PC through the user interface." "Microsoft Corporation" "c:\windows\system32\ncdautosetup.dll" "30/10/2015 03:39" "" + "Netlogon" "Maintains a secure channel between this computer and the domain controller for authenticating users and services. If this service is stopped, the computer may not authenticate users and services and the domain controller cannot register DNS records. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\netlogon.dll" "23/02/2016 09:20" "" + "Netman" "Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections." "Microsoft Corporation" "c:\windows\system32\netman.dll" "30/10/2015 03:31" "" + "netprofm" "Identifies the networks the computer has connected to, collects and stores properties for these networks, and notifies applications when these properties change." "Microsoft Corporation" "c:\windows\system32\netprofmsvc.dll" "30/10/2015 03:29" "" + "NetSetupSvc" "The Network Setup Service manages the installation of network drivers and permits the configuration of low-level network settings. If this service is stopped, any driver installations that are in progress may be cancelled." "Microsoft Corporation" "c:\windows\system32\netsetupsvc.dll" "29/03/2016 08:38" "" + "NgcCtnrSvc" "Manages local user identity keys used to authenticate the user to identity providers, as well as TPM virtual smart cards. If this service is disabled, local user identity keys and TPM virtual smart cards will not be accessible. It is recommended that you do not reconfigure this service." "Microsoft Corporation" "c:\windows\system32\ngcctnrsvc.dll" "30/10/2015 03:32" "" + "NgcSvc" "Provides process isolation for cryptographic keys used to provide authentication to a user’s associated identity providers. If this service is disabled, all uses and management of these keys will not be available, which includes machine log-on and single sign-on for apps and websites. This service starts and stops automatically. It is recommended that you do not reconfigure this service." "Microsoft Corporation" "c:\windows\system32\ngcsvc.dll" "23/02/2016 10:17" "" + "NIS" "Norton Internet Security" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine\22.6.0.142\nis.exe" "10/02/2016 03:08" "" + "NlaSvc" "Collects and stores configuration information for the network and notifies programs when this information is modified. If this service is stopped, configuration information might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\nlasvc.dll" "30/10/2015 03:25" "" + "nsi" "This service delivers network notifications (e.g. interface addition/deleting etc) to user mode clients. Stopping this service will cause loss of network connectivity. If this service is disabled, any other services that explicitly depend on this service will fail to start." "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "omniserv" " HP SimplePass Service" "Softex Inc." "c:\program files\hewlett-packard\simplepass\omniserv.exe" "14/10/2013 17:29" "" + "OneSyncSvc" "This service synchronizes mail, contacts, calendar and various other user data. Mail and other applications dependent on this functionality will not work properly when this service is not running." "Microsoft Corporation" "c:\windows\system32\aphostservice.dll" "30/10/2015 03:32" "" + "OneSyncSvc_155118a" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "OneSyncSvc_4aaf9c8" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "OneSyncSvc_5192dd7" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "ose" "Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports." "Microsoft Corporation" "c:\program files (x86)\common files\microsoft shared\source engine\ose.exe" "07/11/2012 11:37" "" + "p2pimsvc" "Provides identity services for the Peer Name Resolution Protocol (PNRP) and Peer-to-Peer Grouping services. If disabled, the Peer Name Resolution Protocol (PNRP) and Peer-to-Peer Grouping services may not function, and some applications, such as HomeGroup and Remote Assistance, may not function correctly." "Microsoft Corporation" "c:\windows\system32\pnrpsvc.dll" "30/10/2015 03:29" "" + "p2psvc" "Enables multi-party communication using Peer-to-Peer Grouping. If disabled, some applications, such as HomeGroup, may not function." "Microsoft Corporation" "c:\windows\system32\p2psvc.dll" "30/10/2015 03:30" "" + "PcaSvc" "This service provides support for the Program Compatibility Assistant (PCA). PCA monitors programs installed and run by the user and detects known compatibility problems. If this service is stopped, PCA will not function properly." "Microsoft Corporation" "c:\windows\system32\pcasvc.dll" "30/10/2015 03:28" "" + "PerfHost" "Enables remote users and 64-bit processes to query performance counters provided by 32-bit DLLs. If this service is stopped, only local users and 32-bit processes will be able to query performance counters provided by 32-bit DLLs." "Microsoft Corporation" "c:\windows\syswow64\perfhost.exe" "30/10/2015 03:08" "" + "PhoneSvc" "Manages the telephony state on the device" "Microsoft Corporation" "c:\windows\system32\phoneservice.dll" "05/01/2016 02:49" "" + "PimIndexMaintenanceSvc" "Indexes contact data for fast contact searching. If you stop or disable this service, contacts might be missing from your search results." "Microsoft Corporation" "c:\windows\system32\pimindexmaintenance.dll" "24/02/2016 08:07" "" + "PimIndexMaintenanceSvc_155118a" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "PimIndexMaintenanceSvc_4aaf9c8" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "PimIndexMaintenanceSvc_5192dd7" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "pla" "Performance Logs and Alerts Collects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\pla.dll" "30/10/2015 03:27" "" + "PlugPlay" "Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability." "Microsoft Corporation" "c:\windows\system32\umpnpmgr.dll" "30/10/2015 03:34" "" + "PNRPAutoReg" "This service publishes a machine name using the Peer Name Resolution Protocol. Configuration is managed via the netsh context 'p2p pnrp peer' " "Microsoft Corporation" "c:\windows\system32\pnrpauto.dll" "30/10/2015 03:38" "" + "PNRPsvc" "Enables serverless peer name resolution over the Internet using the Peer Name Resolution Protocol (PNRP). If disabled, some peer-to-peer and collaborative applications, such as Remote Assistance, may not function." "Microsoft Corporation" "c:\windows\system32\pnrpsvc.dll" "30/10/2015 03:29" "" + "PolicyAgent" "Internet Protocol security (IPsec) supports network-level peer authentication, data origin authentication, data integrity, data confidentiality (encryption), and replay protection. This service enforces IPsec policies created through the IP Security Policies snap-in or the command-line tool "netsh ipsec". If you stop this service, you may experience network connectivity issues if your policy requires that connections use IPsec. Also,remote management of Windows Firewall is not available when this service is stopped." "Microsoft Corporation" "c:\windows\system32\ipsecsvc.dll" "30/10/2015 03:31" "" + "Power" "Manages power policy and power policy notification delivery." "Microsoft Corporation" "c:\windows\system32\umpo.dll" "30/10/2015 03:36" "" + "PrintNotify" "This service opens custom printer dialogue boxes and handles notifications from a remote print server or a printer. If you turn this service off, you won’t be able to see printer extensions or notifications." "Microsoft Corporation" "c:\windows\system32\spool\drivers\x64\3\printconfig.dll" "30/10/2015 03:17" "" + "ProfSvc" "This service is responsible for loading and unloading user profiles. If this service is stopped or disabled, users will no longer be able to successfully sign in or sign out, apps might have problems getting to users' data, and components registered to receive profile event notifications won't receive them." "Microsoft Corporation" "c:\windows\system32\profsvc.dll" "29/03/2016 08:30" "" + "QWAVE" "Quality Windows Audio Video Experience (qWave) is a networking platform for Audio Video (AV) streaming applications on IP home networks. qWave enhances AV streaming performance and reliability by ensuring network quality-of-service (QoS) for AV applications. It provides mechanisms for admission control, run time monitoring and enforcement, application feedback, and traffic prioritization." "Microsoft Corporation" "c:\windows\system32\qwave.dll" "30/10/2015 03:21" "" + "RasAuto" "Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address." "Microsoft Corporation" "c:\windows\system32\rasauto.dll" "16/01/2016 06:40" "" + "RasMan" "Manages dial-up and virtual private network (VPN) connections from this computer to the Internet or other remote networks. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\rasmans.dll" "30/10/2015 03:28" "" + "RealPlayer Cloud Service" "Enables the RealPlayer Cloud service for RealPlayer and provides media streaming to other RealPlayer devices." "RealNetworks, Inc." "c:\program files (x86)\real\realplayer\rpds\bin\rpdsvc.exe" "28/07/2015 03:46" "" + "RealPlayerUpdateSvc" "Keep all products of RealNetworks up to date." "" "c:\program files (x86)\real\updateservice\realplayerupdatesvc.exe" "28/07/2015 05:28" "" + "RealTimes Desktop Service" "Enables RealCloud service for RealTimes and provides media streaming to other RealTimes devices." "RealNetworks, Inc." "c:\program files (x86)\real\realplayer\rpds\bin\rpdsvc.exe" "28/07/2015 03:46" "" + "ReimageRealTimeProtector" "Reimage Real Time Protection" "Reimage®" "c:\program files\reimage\reimage protector\reiguard.exe" "19/08/2015 09:57" "" + "RetailDemo" "The Retail Demo service controls device activity while the device is in retail demo mode." "Microsoft Corporation" "c:\windows\system32\rdxservice.dll" "02/04/2016 04:15" "" + "RpcEptMapper" "Resolves RPC interfaces identifiers to transport endpoints. If this service is stopped or disabled, programs using Remote Procedure Call (RPC) services will not function properly." "Microsoft Corporation" "c:\windows\system32\rpcepmap.dll" "30/10/2015 03:35" "" + "RpcLocator" "In Windows 2003 and earlier versions of Windows, the Remote Procedure Call (RPC) Locator service manages the RPC name service database. In Windows Vista and later versions of Windows, this service does not provide any functionality and is present for application compatibility." "Microsoft Corporation" "c:\windows\system32\locator.exe" "30/10/2015 03:39" "" + "RpcSs" "The RPCSS service is the Service Control Manager for COM and DCOM servers. It performs object activations requests, object exporter resolutions and distributed garbage collection for COM and DCOM servers. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the RPCSS service running." "Microsoft Corporation" "c:\windows\system32\rpcss.dll" "30/10/2015 03:27" "" + "RtkAudioService" "For cooperation with Realtek audio driver." "Realtek Semiconductor" "c:\program files\realtek\audio\hda\rtkaudioservice64.exe" "22/05/2015 07:16" "" + "SamSs" "The startup of this service signals other services that the Security Accounts Manager (SAM) is ready to accept requests. Disabling this service will prevent other services in the system from being notified when the SAM is ready, which may in turn cause those services to fail to start correctly. This service should not be disabled." "Microsoft Corporation" "c:\windows\system32\lsass.exe" "30/10/2015 03:36" "" + "ScDeviceEnum" "Creates software device nodes for all smart card readers accessible to a given session. If this service is disabled, WinRT APIs will not be able to enumerate smart card readers." "Microsoft Corporation" "c:\windows\system32\scdeviceenum.dll" "30/10/2015 03:36" "" + "Schedule" "Enables a user to configure and schedule automated tasks on this computer. The service also hosts multiple Windows system-critical tasks. If this service is stopped or disabled, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\schedsvc.dll" "23/02/2016 09:10" "" + "SCPolicySvc" "Allows the system to be configured to lock the user desktop upon smart card removal." "Microsoft Corporation" "c:\windows\system32\certprop.dll" "30/10/2015 03:34" "" + "SDRSVC" "Provides Windows Backup and Restore capabilities." "Microsoft Corporation" "c:\windows\system32\sdrsvc.dll" "30/10/2015 03:35" "" + "seclogon" "Enables starting processes under alternate credentials. If this service is stopped, this type of log-on access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\seclogon.dll" "24/02/2016 08:19" "" + "SENS" "Monitors system events and notifies subscribers to COM+ Event System of these events." "Microsoft Corporation" "c:\windows\system32\sens.dll" "30/10/2015 03:36" "" + "SensorDataService" "Delivers data from a variety of sensors" "Microsoft Corporation" "c:\windows\system32\sensordataservice.exe" "30/10/2015 03:19" "" + "SensorService" "A service for sensors that manages different sensors' functionality. Manages Simple Device Orientation (SDO) and History for sensors. Loads the SDO sensor that reports device orientation changes. If this service is stopped or disabled, the SDO sensor will not be loaded and so auto-rotation will not occur. History collection from Sensors will also be stopped." "Microsoft Corporation" "c:\windows\system32\sensorservice.dll" "29/03/2016 08:27" "" + "SensrSvc" "Monitors various sensors in order to expose data and adapt to system and user state. If this service is stopped or disabled, the display brightness will not adapt to lighting conditions. Stopping this service may affect other system functionality and features as well." "Microsoft Corporation" "c:\windows\system32\sensrsvc.dll" "30/10/2015 03:35" "" + "SessionEnv" "Remote Desktop Configuration service (RDCS) is responsible for all Remote Desktop Services and Remote Desktop related configuration and session maintenance activities that require SYSTEM context. These include per-session temporary folders, RD themes, and RD certificates." "Microsoft Corporation" "c:\windows\system32\sessenv.dll" "30/10/2015 03:10" "" + "SharedAccess" "Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network." "Microsoft Corporation" "c:\windows\system32\ipnathlp.dll" "23/02/2016 08:52" "" + "ShellHWDetection" "Provides notifications for AutoPlay hardware events." "Microsoft Corporation" "c:\windows\system32\shsvcs.dll" "30/10/2015 03:15" "" + "smphost" "Host service for the Microsoft Storage Spaces management provider. If this service is stopped or disabled, Storage Spaces cannot be managed." "Microsoft Corporation" "c:\windows\system32\smphost.dll" "30/10/2015 03:38" "" + "SmsRouter" "Routes messages based on rules to appropriate clients." "Microsoft Corporation" "c:\windows\system32\smsroutersvc.dll" "23/02/2016 09:29" "" + "SNMPTRAP" "Receives trap messages generated by local or remote Simple Network Management Protocol (SNMP) agents and forwards the messages to SNMP management programs running on this computer. If this service is stopped, SNMP-based programs on this computer will not receive SNMP trap messages. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\snmptrap.exe" "30/10/2015 03:39" "" + "Spooler" "This service spools print jobs and handles interaction with the printer. If you turn off this service, you won’t be able to print or see your printers." "Microsoft Corporation" "c:\windows\system32\spoolsv.exe" "23/02/2016 09:02" "" + "sppsvc" "Enables the download, installation and enforcement of digital licenses for Windows and Windows applications. If the service is disabled, the operating system and licensed applications may run in a notification mode. It is strongly recommended that you not disable the Software Protection service." "Microsoft Corporation" "c:\windows\system32\sppsvc.exe" "30/10/2015 03:41" "" + "SSDPSRV" "Discovers networked devices and services that use the SSDP discovery protocol, such as UPnP devices. Also announces SSDP devices and services running on the local computer. If this service is stopped, SSDP-based devices will not be discovered. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\ssdpsrv.dll" "30/10/2015 03:30" "" + "SstpSvc" "Provides support for the Secure Socket Tunneling Protocol (SSTP) to connect to remote computers using VPN. If this service is disabled, users will not be able to use SSTP to access remote servers." "Microsoft Corporation" "c:\windows\system32\sstpsvc.dll" "30/10/2015 03:33" "" + "StateRepository" "Provides required infrastructure support for the application model." "Microsoft Corporation" "c:\windows\system32\windows.staterepository.dll" "30/10/2015 03:14" "" + "stisvc" "Provides image acquisition services for scanners and cameras" "Microsoft Corporation" "c:\windows\system32\wiaservc.dll" "30/10/2015 03:29" "" + "StorSvc" "Provides enabling services for storage settings and external storage expansion" "Microsoft Corporation" "c:\windows\system32\storsvc.dll" "29/03/2016 08:37" "" + "svsvc" "Verifies potential file system corruptions." "Microsoft Corporation" "c:\windows\system32\svsvc.dll" "30/10/2015 03:39" "" + "swprv" "Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\swprv.dll" "30/10/2015 03:32" "" + "SynTPEnhService" "64-bit Synaptics Pointing Enhance Service" "Synaptics Incorporated" "c:\program files\synaptics\syntp\syntpenhservice.exe" "06/07/2015 13:49" "" + "SysMain" "Maintains and improves system performance over time." "Microsoft Corporation" "c:\windows\system32\sysmain.dll" "30/10/2015 03:26" "" + "SystemEventsBroker" "Coordinates execution of background work for WinRT application. If this service is stopped or disabled, then background work might not be triggered." "Microsoft Corporation" "c:\windows\system32\systemeventsbrokerserver.dll" "30/10/2015 03:32" "" + "TabletInputService" "Enables Touch Keyboard and Handwriting Panel pen and ink functionality" "Microsoft Corporation" "c:\windows\system32\tabsvc.dll" "30/10/2015 03:19" "" + "TapiSrv" "Provides Telephony API (TAPI) support for programs that control telephony devices on the local computer and, through the LAN, on servers that are also running the service." "Microsoft Corporation" "c:\windows\system32\tapisrv.dll" "30/10/2015 03:35" "" + "TermService" "Allows users to connect interactively to a remote computer. Remote Desktop and Remote Desktop Session Host Server depend on this service. To prevent remote use of this computer, clear the checkboxes on the Remote tab of the System properties control panel item." "Microsoft Corporation" "c:\windows\system32\termsrv.dll" "30/10/2015 03:52" "" + "Themes" "Provides user experience theme management." "Microsoft Corporation" "c:\windows\system32\themeservice.dll" "30/10/2015 03:35" "" + "TieringEngineService" "Optimizes the placement of data in storage tiers on all tiered storage spaces in the system." "Microsoft Corporation" "c:\windows\system32\tieringengineservice.exe" "30/10/2015 03:34" "" + "tiledatamodelsvc" "Tile Server for tile updates." "Microsoft Corporation" "c:\windows\system32\tileobjserver.dll" "02/04/2016 04:21" "" + "TimeBroker" "Coordinates execution of background work for WinRT application. If this service is stopped or disabled, then background work might not be triggered." "Microsoft Corporation" "c:\windows\system32\timebrokerserver.dll" "23/02/2016 08:58" "" + "TrkWks" "Maintains links between NTFS files within a computer or across computers in a network." "Microsoft Corporation" "c:\windows\system32\trkwks.dll" "30/10/2015 03:34" "" + "TrustedInstaller" "Enables installation, modification, and removal of Windows updates and optional components. If this service is disabled, install or uninstall of Windows updates might fail for this computer." "Microsoft Corporation" "c:\windows\servicing\trustedinstaller.exe" "30/10/2015 03:38" "" + "UI0Detect" "Enables user notification of user input for interactive services, which enables access to dialogs created by interactive services when they appear. If this service is stopped, notifications of new interactive service dialogs will no longer function and there might not be access to interactive service dialogs. If this service is disabled, both notifications of and access to new interactive service dialogs will no longer function." "Microsoft Corporation" "c:\windows\system32\ui0detect.exe" "30/10/2015 03:36" "" + "UmRdpService" "Allows the redirection of Printers/Drives/Ports for RDP connections" "Microsoft Corporation" "c:\windows\system32\umrdp.dll" "30/10/2015 03:12" "" + "UnistoreSvc" "Handles storage of structured user data, including contact info, calendars, messages and other content. If you stop or disable this service, apps that use this data might not work correctly." "Microsoft Corporation" "c:\windows\system32\unistore.dll" "24/02/2016 07:40" "" + "UnistoreSvc_155118a" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "UnistoreSvc_4aaf9c8" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "UnistoreSvc_5192dd7" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "upnphost" "Allows UPnP devices to be hosted on this computer. If this service is stopped, any hosted UPnP devices will stop functioning and no additional hosted devices can be added. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\upnphost.dll" "30/10/2015 03:28" "" + "UserDataSvc" "Provides apps with access to structured user data, including contact info, calendars, messages and other content. If you stop or disable this service, apps that use this data might not work correctly." "Microsoft Corporation" "c:\windows\system32\userdataservice.dll" "24/02/2016 07:18" "" + "UserDataSvc_155118a" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "UserDataSvc_4aaf9c8" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "UserDataSvc_5192dd7" "Host Process for Windows Services" "Microsoft Corporation" "c:\windows\system32\svchost.exe" "30/10/2015 03:36" "" + "UserManager" "User Manager provides the runtime components required for multi-user interaction. If this service is stopped, some applications may not operate correctly." "Microsoft Corporation" "c:\windows\system32\usermgr.dll" "05/01/2016 02:43" "" + "UsoSvc" "UsoSvc" "Microsoft Corporation" "c:\windows\system32\usocore.dll" "30/10/2015 03:35" "" + "VaultSvc" "Provides secure storage and retrieval of credentials to users, applications and security service packages." "Microsoft Corporation" "c:\windows\system32\vaultsvc.dll" "24/02/2016 07:59" "" + "vds" "Provides management services for disks, volumes, file systems, and storage arrays." "Microsoft Corporation" "c:\windows\system32\vds.exe" "30/10/2015 03:31" "" + "vmicguestinterface" "Provides an interface for the Hyper-V host to interact with specific services running inside the virtual machine." "Microsoft Corporation" "c:\windows\system32\icsvc.dll" "30/10/2015 03:28" "" + "vmicheartbeat" "Monitors the state of this virtual machine by reporting a heartbeat at regular intervals. This service helps you identify running virtual machines that have stopped responding." "Microsoft Corporation" "c:\windows\system32\icsvc.dll" "30/10/2015 03:28" "" + "vmickvpexchange" "Provides a mechanism to exchange data between the virtual machine and the operating system running on the physical computer." "Microsoft Corporation" "c:\windows\system32\icsvc.dll" "30/10/2015 03:28" "" + "vmicrdv" "Provides a platform for communication between the virtual machine and the operating system running on the physical computer." "Microsoft Corporation" "c:\windows\system32\icsvc.dll" "30/10/2015 03:28" "" + "vmicshutdown" "Provides a mechanism to shut down the operating system of this virtual machine from the management interfaces on the physical computer." "Microsoft Corporation" "c:\windows\system32\icsvc.dll" "30/10/2015 03:28" "" + "vmictimesync" "Synchronizes the system time of this virtual machine with the system time of the physical computer." "Microsoft Corporation" "c:\windows\system32\icsvc.dll" "30/10/2015 03:28" "" + "vmicvmsession" "Provides a mechanism to manage virtual machine with PowerShell via VM session without a virtual network." "Microsoft Corporation" "c:\windows\system32\icsvc.dll" "30/10/2015 03:28" "" + "vmicvss" "Coordinates the communications that are required to use Volume Shadow Copy Service to back up applications and data on this virtual machine from the operating system on the physical computer." "Microsoft Corporation" "c:\windows\system32\icsvc.dll" "30/10/2015 03:28" "" + "VSS" "Manages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\vssvc.exe" "30/10/2015 03:26" "" + "W32Time" "Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\w32time.dll" "30/10/2015 03:20" "" + "w3logsvc" "Provides W3C logging for Internet Information Services (IIS). If this service is stopped, W3C logging configured by IIS will not work." "Microsoft Corporation" "c:\windows\system32\inetsrv\w3logsvc.dll" "30/10/2015 03:38" "" + "WalletService" "Hosts objects used by clients of the wallet" "Microsoft Corporation" "c:\windows\system32\walletservice.dll" "30/10/2015 03:31" "" + "WAS" "The Windows Process Activation Service (WAS) provides process activation, resource management and health management services for message-activated applications." "Microsoft Corporation" "c:\windows\system32\inetsrv\iisw3adm.dll" "30/10/2015 03:34" "" + "wbengine" "The WBENGINE service is used by Windows Backup to perform backup and recovery operations. If this service is stopped by a user, it may cause the currently running backup or recovery operation to fail. Disabling this service may disable backup and recovery operations using Windows Backup on this computer." "Microsoft Corporation" "c:\windows\system32\wbengine.exe" "30/10/2015 03:23" "" + "WbioSrvc" "The Windows biometric service gives client applications the ability to capture, compare, manipulate, and store biometric data without gaining direct access to any biometric hardware or samples. The service is hosted in a privileged SVCHOST process." "Microsoft Corporation" "c:\windows\system32\wbiosrvc.dll" "16/01/2016 06:32" "" + "Wcmsvc" "Makes automatic connect/disconnect decisions based on the network connectivity options currently available to the PC and enables management of network connectivity based on Group Policy settings." "Microsoft Corporation" "c:\windows\system32\wcmsvc.dll" "23/02/2016 09:20" "" + "wcncsvc" "WCNCSVC hosts the Windows Connect Now Configuration, which is Microsoft's Implementation of the Wireless Protected Setup (WPS) protocol. This is used to configure Wireless LAN settings for an Access Point (AP) or a Wireless Device. The service is started programmatically as needed." "Microsoft Corporation" "c:\windows\system32\wcncsvc.dll" "30/10/2015 03:30" "" + "WcsPlugInService" "The WcsPlugInService service hosts third-party Windows Colour System colour device model and gamut map model plug-in modules. These plug-in modules are vendor-specific extensions to the Windows Colour System baseline colour device and gamut map models. Stopping or disabling the WcsPlugInService service will disable this extensibility feature and the Windows Colour System will use its baseline model processing rather than the vendor's desired processing. This might result in inaccurate colour rendering." "Microsoft Corporation" "c:\windows\system32\wcspluginservice.dll" "30/10/2015 03:38" "" + "WdiServiceHost" "The Diagnostic Service Host is used by the Diagnostic Policy Service to host diagnostics that need to run in a Local Service context. If this service is stopped, any diagnostics that depend on it will no longer function." "Microsoft Corporation" "c:\windows\system32\wdi.dll" "30/10/2015 03:36" "" + "WdiSystemHost" "The Diagnostic System Host is used by the Diagnostic Policy Service to host diagnostics that need to run in a Local System context. If this service is stopped, any diagnostics that depend on it will no longer function." "Microsoft Corporation" "c:\windows\system32\wdi.dll" "30/10/2015 03:36" "" + "WdNisSvc" "Helps guard against intrusion attempts targeting known and newly discovered vulnerabilities in network protocols" "Microsoft Corporation" "c:\program files\windows defender\nissrv.exe" "30/10/2015 03:32" "" + "WebClient" "Enables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\webclnt.dll" "30/10/2015 03:32" "" + "Wecsvc" "This service manages persistent subscriptions to events from remote sources that support WS-Management protocol. This includes Windows Vista event logs, hardware and IPMI-enabled event sources. The service stores forwarded events in a local Event Log. If this service is stopped or disabled event subscriptions cannot be created and forwarded events cannot be accepted." "Microsoft Corporation" "c:\windows\system32\wecsvc.dll" "30/10/2015 03:35" "" + "WEPHOSTSVC" "Windows Encryption Provider Host Service brokers encryption related functionalities from 3rd Party Encryption Providers to processes that need to evaluate and apply EAS policies. Stopping this will compromise EAS compliancy checks that have been established by the connected Mail Accounts" "Microsoft Corporation" "c:\windows\system32\wephostsvc.dll" "30/10/2015 03:37" "" + "wercplsupport" "This service provides support for viewing, sending and deletion of system-level problem reports for the Problem Reports and Solutions control panel." "Microsoft Corporation" "c:\windows\system32\wercplsupport.dll" "30/10/2015 03:34" "" + "WerSvc" "Allows errors to be reported when programs stop working or responding and allows existing solutions to be delivered. Also allows logs to be generated for diagnostic and repair services. If this service is stopped, error reporting might not work correctly and results of diagnostic services and repairs might not be displayed." "Microsoft Corporation" "c:\windows\system32\wersvc.dll" "30/10/2015 03:35" "" + "WiaRpc" "Launches applications associated with still image acquisition events." "Microsoft Corporation" "c:\windows\system32\wiarpc.dll" "30/10/2015 03:35" "" + "WinDefend" "Helps protect users from malware and other potentially unwanted software" "Microsoft Corporation" "c:\program files\windows defender\msmpeng.exe" "30/10/2015 03:42" "" + "WinHttpAutoProxySvc" "WinHTTP implements the client HTTP stack and provides developers with a Win32 API and COM Automation component for sending HTTP requests and receiving responses. In addition, WinHTTP provides support for auto-discovering a proxy configuration via its implementation of the Web Proxy Auto-Discovery (WPAD) protocol." "Microsoft Corporation" "c:\windows\system32\winhttp.dll" "16/01/2016 06:31" "" + "Winmgmt" "Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\wbem\wmisvc.dll" "30/10/2015 03:17" "" + "WinRM" "Windows Remote Management (WinRM) service implements the WS-Management protocol for remote management. WS-Management is a standard web services protocol used for remote software and hardware management. The WinRM service listens on the network for WS-Management requests and processes them. The WinRM Service needs to be configured with a listener using winrm.cmd command line tool or through Group Policy in order for it to listen over the network. The WinRM service provides access to WMI data and enables event collection. Event collection and subscription to events require that the service is running. WinRM messages use HTTP and HTTPS as transports. The WinRM service does not depend on IIS but is preconfigured to share a port with IIS on the same machine. The WinRM service reserves the /wsman URL prefix. To prevent conflicts with IIS, administrators should ensure that any websites hosted on IIS do not use the /wsman URL prefix." "Microsoft Corporation" "c:\windows\system32\wsmsvc.dll" "30/10/2015 03:15" "" + "WlanSvc" "The WLANSVC service provides the logic required to configure, discover, connect to and disconnect from a wireless local area network (WLAN) as defined by IEEE 802.11 standards. It also contains the logic to turn your computer into a software access point so that other devices or computers can connect to your computer wirelessly using a WLAN adapter that can support this. Stopping or disabling the WLANSVC service will make all WLAN adapters on your computer inaccessible from the Windows networking UI. It is strongly recommended that you have the WLANSVC service running if your computer has a WLAN adapter." "Microsoft Corporation" "c:\windows\system32\wlansvc.dll" "23/02/2016 08:01" "" + "wlidsvc" "Enables user sign-in through Microsoft account identity services. If this service is stopped, users will not be able to logon to the computer with their Microsoft account." "Microsoft Corporation" "c:\windows\system32\wlidsvc.dll" "16/01/2016 06:24" "" + "wmiApSrv" "Provides performance library information from Windows Management Instrumentation (WMI) providers to clients on the network. This service only runs when Performance Data Helper is activated." "Microsoft Corporation" "c:\windows\system32\wbem\wmiapsrv.exe" "30/10/2015 03:34" "" + "WMPNetworkSvc" "Shares Windows Media Player libraries with other networked players and media devices using Universal Plug and Play" "Microsoft Corporation" "c:\program files\windows media player\wmpnetwk.exe" "24/02/2016 07:02" "" + "workfolderssvc" "This service syncs files with the Work Folders server, enabling you to use the files on any of the PCs and devices on which you've set up Work Folders." "Microsoft Corporation" "c:\windows\system32\workfolderssvc.dll" "30/10/2015 03:25" "" + "WPDBusEnum" "Enforces group policy for removable mass-storage devices. Enables applications such as Windows Media Player and Image Import Wizard to transfer and synchronize content using removable mass-storage devices." "Microsoft Corporation" "c:\windows\system32\wpdbusenum.dll" "30/10/2015 03:09" "" + "WpnService" "This service is used for Windows Push Notifications." "Microsoft Corporation" "c:\windows\system32\wpnservice.dll" "30/10/2015 03:39" "" + "wscsvc" "The WSCSVC (Windows Security Center) service monitors and reports security health settings on the computer. The health settings include firewall (on/off), antivirus (on/off/out of date), antispyware (on/off/out of date), Windows Update (automatically/manually download and install updates), User Account Control (on/off), and Internet settings (recommended/not recommended). The service provides COM APIs for independent software vendors to register and record the state of their products to the Security Center service. The Security and Maintenance UI uses the service to provide systray alerts and a graphical view of the security health states in the Security and Maintenance control panel. Network Access Protection (NAP) uses the service to report the security health states of clients to the NAP Network Policy Server to make network quarantine decisions. The service also has a public API that allows external consumers to programmatically retrieve the aggregated security health state of the system." "Microsoft Corporation" "c:\windows\system32\wscsvc.dll" "16/01/2016 06:37" "" + "WSearch" "Provides content indexing, property caching, and search results for files, e-mail, and other content." "Microsoft Corporation" "c:\windows\system32\searchindexer.exe" "30/10/2015 03:26" "" + "WSService" "Provides infrastructure support for Windows Store.This service is started on demand and if disabled applications bought using Windows Store will not behave correctly." "Microsoft Corporation" "c:\windows\system32\wsservice.dll" "24/02/2016 06:13" "" + "wuauserv" "Enables the detection, download and installation of updates for Windows and other programs. If this service is disabled, users of this computer will not be able to use Windows Update or its automatic updating feature, and programs will not be able to use the Windows Update Agent (WUA) API." "Microsoft Corporation" "c:\windows\system32\wuaueng.dll" "29/03/2016 07:31" "" + "wudfsvc" "Creates and manages user-mode driver processes. This service cannot be stopped." "Microsoft Corporation" "c:\windows\system32\wudfsvc.dll" "30/10/2015 03:09" "" + "WwanSvc" "This service manages mobile broadband (GSM & CDMA) data card/embedded module adapters and connections by auto-configuring the networks. It is strongly recommended that this service be kept running for best user experience of mobile broadband devices." "Microsoft Corporation" "c:\windows\system32\wwansvc.dll" "29/03/2016 08:07" "" + "XblAuthManager" "Provides authentication and authorisation services for interacting with Xbox Live. If this service is stopped, some applications may not operate correctly." "Microsoft Corporation" "c:\windows\system32\xblauthmanager.dll" "29/03/2016 08:20" "" + "XblGameSave" "This service syncs save data for Xbox Live save enabled games. If this service is stopped, game save data will not upload to or download from Xbox Live." "Microsoft Corporation" "c:\windows\system32\xblgamesave.dll" "23/02/2016 10:20" "" + "XboxNetApiSvc" "This service supports the Windows.Networking.XboxLive application programming interface." "Microsoft Corporation" "c:\windows\system32\xboxnetapisvc.dll" "07/12/2015 05:15" "" "HKLM\System\CurrentControlSet\Services" "" "" "" "15/04/2016 22:26" "" + "1394ohci" "1394 OpenHCI Driver" "Microsoft Corporation" "c:\windows\system32\drivers\1394ohci.sys" "30/10/2015 03:36" "" + "3ware" "LSI 3ware SCSI Storport Driver" "LSI" "c:\windows\system32\drivers\3ware.sys" "18/05/2015 23:28" "" + "Accelerometer" "HP Accelerometer" "Hewlett-Packard" "c:\windows\system32\drivers\accelerometer.sys" "05/06/2015 18:59" "" + "ACPI" "ACPI Driver for NT" "Microsoft Corporation" "c:\windows\system32\drivers\acpi.sys" "23/02/2016 07:18" "" + "acpiex" "ACPIEx Driver" "Microsoft Corporation" "c:\windows\system32\drivers\acpiex.sys" "30/10/2015 03:39" "" + "acpipagr" "ACPI Processor Aggregator Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\acpipagr.sys" "30/10/2015 03:42" "" + "AcpiPmi" "ACPI Power Metering Driver" "Microsoft Corporation" "c:\windows\system32\drivers\acpipmi.sys" "30/10/2015 03:42" "" + "acpitime" "ACPI Wake Alarm" "Microsoft Corporation" "c:\windows\system32\drivers\acpitime.sys" "30/10/2015 03:42" "" + "ADP80XX" "PMC-Sierra Storport Driver For SPC8x6G SAS/SATA controller" "PMC-Sierra" "c:\windows\system32\drivers\adp80xx.sys" "09/04/2015 21:49" "" + "AFD" "Ancillary Function Driver for Winsock" "Microsoft Corporation" "c:\windows\system32\drivers\afd.sys" "05/11/2015 10:28" "" + "agp440" "440 NT AGP Filter" "Microsoft Corporation" "c:\windows\system32\drivers\agp440.sys" "30/10/2015 03:39" "" + "ahcache" "Cache Compatibility Data and Attributes for Individual PE File" "Microsoft Corporation" "c:\windows\system32\drivers\ahcache.sys" "30/10/2015 03:09" "" + "AmdK8" "Processor Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\amdk8.sys" "30/10/2015 03:09" "" + "amdkmdag" "ATI Radeon Kernel Mode Driver" "Advanced Micro Devices, Inc." "c:\windows\system32\drivers\atikmdag.sys" "07/07/2015 02:35" "" + "amdkmdap" "AMD multi-vendor Miniport Driver" "Advanced Micro Devices, Inc." "c:\windows\system32\drivers\atikmpag.sys" "07/07/2015 02:12" "" + "AmdPPM" "Processor Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\amdppm.sys" "30/10/2015 03:09" "" + "amdsata" "AHCI 1.3 Device Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdsata.sys" "14/05/2015 13:14" "" + "amdsbs" "AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform" "AMD Technologies Inc." "c:\windows\system32\drivers\amdsbs.sys" "11/12/2012 22:21" "" + "amdxata" "Storage Filter Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdxata.sys" "01/05/2015 01:55" "" + "AODDriver4.2" "AMD OverDrive Service Driver" "Advanced Micro Devices" "c:\program files\ati technologies\ati.ace\fuel\amd64\aoddriver2.sys" "21/11/2012 08:44" "" + "AppID" "Identifies an application and enforces software restriction policies." "Microsoft Corporation" "c:\windows\system32\drivers\appid.sys" "23/02/2016 10:01" "" + "arcsas" "Adaptec SAS RAID WS03 Driver" "PMC-Sierra, Inc." "c:\windows\system32\drivers\arcsas.sys" "09/04/2015 20:12" "" + "AsyncMac" "RAS Asynchronous Media Driver" "Microsoft Corporation" "c:\windows\system32\drivers\asyncmac.sys" "30/10/2015 03:42" "" + "atapi" "ATAPI IDE Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\atapi.sys" "30/10/2015 03:09" "" + "AtiHDAudioService" "AMD High Definition Audio Function Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\atihdwt6.sys" "26/05/2015 02:21" "" + "b06bdrv" "Broadcom NetXtreme II GigE VBD" "Broadcom Corporation" "c:\windows\system32\drivers\bxvbda.sys" "04/02/2013 20:47" "" + "BasicDisplay" "Microsoft Basic Display Driver" "Microsoft Corporation" "c:\windows\system32\drivers\basicdisplay.sys" "30/10/2015 03:40" "" + "BasicRender" "Microsoft Basic Render Driver" "Microsoft Corporation" "c:\windows\system32\drivers\basicrender.sys" "30/10/2015 03:41" "" + "bcmfn" "BCM Function 2 Device Driver" "Windows (R) Win 7 DDK provider" "c:\windows\system32\drivers\bcmfn.sys" "08/06/2015 09:32" "" + "bcmfn2" "BCM Function 2 Device Driver" "Windows (R) Win 7 DDK provider" "c:\windows\system32\drivers\bcmfn2.sys" "16/03/2014 11:07" "" + "Beep" "BEEP Driver" "Microsoft Corporation" "c:\windows\system32\drivers\beep.sys" "30/10/2015 03:41" "" + "BHDrvx64" "SONAR Engine Driver" "Symantec Corporation" "c:\program files (x86)\norton internet security\nortondata\22.6.0.142\definitions\bashdefs\20160414.001\bhdrvx64.sys" "23/02/2016 00:42" "" + "bowser" "Implements the kernel datagram receiver for the computer browser browser service." "Microsoft Corporation" "c:\windows\system32\drivers\bowser.sys" "30/10/2015 03:40" "" + "BthAvrcpTg" "Bluetooth Audio/Video Remote Control HID" "Microsoft Corporation" "c:\windows\system32\drivers\bthavrcptg.sys" "30/10/2015 03:39" "" + "BthHFEnum" "Bluetooth Hands-Free Audio and Call Control HID Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\bthhfenum.sys" "30/10/2015 03:38" "" + "bthhfhid" "Bluetooth Hands-free HID Minidriver" "Microsoft Corporation" "c:\windows\system32\drivers\bthhfhid.sys" "30/10/2015 03:38" "" + "BTHMODEM" "Bluetooth Communications Driver" "Microsoft Corporation" "c:\windows\system32\drivers\bthmodem.sys" "30/10/2015 03:41" "" + "buttonconverter" "Button Converter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\buttonconverter.sys" "30/10/2015 03:42" "" + "CapImg" "CapImg HID Driver" "Microsoft Corporation" "c:\windows\system32\drivers\capimg.sys" "22/11/2015 10:54" "" + "ccSet_NIS" "Common Client Settings Driver" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1606000.08e\ccsetx64.sys" "18/08/2014 20:33" "" + "cdrom" "SCSI CD-ROM Driver" "Microsoft Corporation" "c:\windows\system32\drivers\cdrom.sys" "30/10/2015 03:09" "" + "circlass" "Consumer IR Class Driver for eHome" "Microsoft Corporation" "c:\windows\system32\drivers\circlass.sys" "30/10/2015 03:42" "" + "CLFS" "General-purpose logging service" "Microsoft Corporation" "c:\windows\system32\drivers\clfs.sys" "30/10/2015 03:09" "" + "CLVirtualDrive" "CyberLink CLVirtualDrive Driver" "CyberLink" "c:\windows\system32\drivers\clvirtualdrive.sys" "12/11/2013 04:31" "" + "clwvd" "CyberLink WebCam Virtual Driver" "CyberLink Corporation" "c:\windows\system32\drivers\clwvd.sys" "28/01/2014 04:58" "" + "CmBatt" "Control Method Battery Driver" "Microsoft Corporation" "c:\windows\system32\drivers\cmbatt.sys" "30/10/2015 03:41" "" + "CNG" "Kernel Cryptography, Next Generation" "Microsoft Corporation" "c:\windows\system32\drivers\cng.sys" "29/03/2016 08:19" "" + "CompositeBus" "Multi-Transport Composite Bus Enumerator" "Microsoft Corporation" "c:\windows\system32\driverstore\filerepository\compositebus.inf_amd64_912dfdedc3d2f520\compositebus.sys" "30/10/2015 03:41" "" + "condrv" "Console Driver" "Microsoft Corporation" "c:\windows\system32\drivers\condrv.sys" "30/10/2015 03:09" "" + "dam" "Controls activity of desktop applications" "Microsoft Corporation" "c:\windows\system32\drivers\dam.sys" "30/10/2015 03:38" "" + "Dfsc" "Client driver for access to DFS Namespaces" "Microsoft Corporation" "c:\windows\system32\drivers\dfsc.sys" "29/03/2016 08:03" "" + "disk" "PnP Disk Driver" "Microsoft Corporation" "c:\windows\system32\drivers\disk.sys" "30/10/2015 03:09" "" + "dmvsc" "Dynamic Memory" "Microsoft Corporation" "c:\windows\system32\drivers\dmvsc.sys" "30/10/2015 03:39" "" + "drmkaud" "Microsoft Trusted Audio Drivers" "Microsoft Corporation" "c:\windows\system32\drivers\drmkaud.sys" "30/10/2015 03:42" "" + "DXGKrnl" "Controls the underlying video driver stacks to provide fully-featured display capabilities." "Microsoft Corporation" "c:\windows\system32\drivers\dxgkrnl.sys" "24/02/2016 07:03" "" + "ebdrv" "QLogic 10 GigE VBD" "QLogic Corporation" "c:\windows\system32\drivers\evbda.sys" "12/01/2015 11:29" "" + "eeCtrl" "Symantec Eraser Control Driver" "Symantec Corporation" "c:\program files (x86)\common files\symantec shared\eengine\eectrl64.sys" "07/11/2015 03:29" "" + "EhStorClass" "Enhanced Storage Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ehstorclass.sys" "30/10/2015 03:31" "" + "EhStorTcgDrv" "Microsoft driver for storage devices supporting IEEE 1667 and TCG protocols" "Microsoft Corporation" "c:\windows\system32\drivers\ehstortcgdrv.sys" "30/10/2015 03:39" "" + "EraserUtilRebootDrv" "Symantec Eraser Utility Driver" "Symantec Corporation" "c:\program files (x86)\common files\symantec shared\eengine\eraserutilrebootdrv.sys" "07/11/2015 03:29" "" + "ErrDev" "Error Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\errdev.sys" "30/10/2015 03:42" "" + "exfat" "exFAT File System Driver" "Microsoft Corporation" "c:\windows\system32\drivers\exfat.sys" "30/10/2015 03:36" "" + "fastfat" "Note - dependance on CDROM.SYS only if required to read/write DVD-RAM media (which appears as CD class device). (Core) (All pieces)" "Microsoft Corporation" "c:\windows\system32\drivers\fastfat.sys" "30/10/2015 03:33" "" + "fdc" "Floppy Disk Controller Driver" "Microsoft Corporation" "c:\windows\system32\drivers\fdc.sys" "30/10/2015 03:42" "" + "FileCrypt" "Windows sandboxing and encryption filter." "Microsoft Corporation" "c:\windows\system32\drivers\filecrypt.sys" "30/10/2015 03:37" "" + "FileInfo" "Collects information about files in memory to be consumed by other system services." "Microsoft Corporation" "c:\windows\system32\drivers\fileinfo.sys" "30/10/2015 03:37" "" + "Filetrace" "ETW File Trace Filter" "Microsoft Corporation" "c:\windows\system32\drivers\filetrace.sys" "30/10/2015 03:39" "" + "flpydisk" "Floppy Driver" "Microsoft Corporation" "c:\windows\system32\drivers\flpydisk.sys" "30/10/2015 03:42" "" + "FltMgr" "File System Filter Manager Driver" "Microsoft Corporation" "c:\windows\system32\drivers\fltmgr.sys" "30/10/2015 03:09" "" + "FsDepends" "This minifilter tracks the dependencies associated with the various nested volumes/filesystems" "Microsoft Corporation" "c:\windows\system32\drivers\fsdepends.sys" "30/10/2015 03:39" "" + "fvevol" "BitLocker Drive Encryption Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\fvevol.sys" "30/10/2015 03:31" "" + "gagp30kx" "MS Generic AGPv3.0 Filter for K8/9 Processor Platforms" "Microsoft Corporation" "c:\windows\system32\drivers\gagp30kx.sys" "30/10/2015 03:39" "" + "GEARAspiWDM" "CD DVD Filter" "GEAR Software Inc." "c:\windows\system32\drivers\gearaspiwdm.sys" "03/05/2012 20:56" "" + "gencounter" "Virtual Machine Generation Counter" "Microsoft Corporation" "c:\windows\system32\drivers\vmgencounter.sys" "30/10/2015 03:42" "" + "genericusbfn" "Generic USB Function Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\genericusbfn.sys" "30/10/2015 03:42" "" + "GPIOClx0101" "GPIO Class Extension Driver" "Microsoft Corporation" "c:\windows\system32\drivers\msgpioclx.sys" "30/10/2015 03:34" "" + "GpuEnergyDrv" "Computes energy consumed by GPU" "Microsoft Corporation" "c:\windows\system32\drivers\gpuenergydrv.sys" "30/10/2015 03:39" "" + "HDAudBus" "High Definition Audio Bus Driver" "Microsoft Corporation" "c:\windows\system32\drivers\hdaudbus.sys" "30/10/2015 03:37" "" + "HidBatt" "Hid Battery Driver" "Microsoft Corporation" "c:\windows\system32\drivers\hidbatt.sys" "30/10/2015 03:42" "" + "HidBth" "Bluetooth Miniport Driver for HID Devices" "Microsoft Corporation" "c:\windows\system32\drivers\hidbth.sys" "30/10/2015 03:39" "" + "hidi2c" "I2C HID Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\hidi2c.sys" "30/10/2015 03:35" "" + "hidinterrupt" "HID Button over Interrupt Driver" "Microsoft Corporation" "c:\windows\system32\drivers\hidinterrupt.sys" "30/10/2015 03:42" "" + "HidIr" "Infrared Miniport Driver for Input Devices" "Microsoft Corporation" "c:\windows\system32\drivers\hidir.sys" "30/10/2015 03:42" "" + "HidUsb" "USB Miniport Driver for Input Devices" "Microsoft Corporation" "c:\windows\system32\drivers\hidusb.sys" "30/10/2015 03:41" "" + "hpdskflt" "HP Disk Filter - SATA/RAID" "Hewlett-Packard" "c:\windows\system32\drivers\hpdskflt.sys" "05/06/2015 18:59" "" + "HPMoA407" "USB HID Upper Filter Driver" "Hewlett-Packard." "c:\windows\system32\drivers\hpmoa407.sys" "31/10/2011 10:12" "" + "HpSAMD" "Smart Array SAS/SATA Controller Media Driver" "Hewlett-Packard Company" "c:\windows\system32\drivers\hpsamd.sys" "26/03/2013 22:36" "" + "HPubA407" "USB HID Filter Driver " "Hewlett-Packard." "c:\windows\system32\drivers\hpuba407.sys" "14/06/2012 02:37" "" + "HTTP" "HTTP Service" "Microsoft Corporation" "c:\windows\system32\drivers\http.sys" "29/03/2016 08:18" "" + "hwpolicy" "Contains Processor and other policies" "Microsoft Corporation" "c:\windows\system32\drivers\hwpolicy.sys" "30/10/2015 03:09" "" + "hyperkbd" "Microsoft VMBus Synthetic Keyboard Driver" "Microsoft Corporation" "c:\windows\system32\drivers\hyperkbd.sys" "30/10/2015 03:42" "" + "i8042prt" "i8042 Port Driver" "Microsoft Corporation" "c:\windows\system32\drivers\i8042prt.sys" "30/10/2015 03:37" "" + "iai2c" "Intel(R) Serial IO I2C Driver" "Intel(R) Corporation" "c:\windows\system32\drivers\iai2c.sys" "22/09/2015 07:53" "" + "iaLPSS2i_I2C" "Intel(R) Serial IO I2C Driver v2" "Intel Corporation" "c:\windows\system32\drivers\ialpss2i_i2c.sys" "21/09/2015 04:08" "" + "iaLPSSi_GPIO" "Intel(R) Serial IO GPIO Controller Driver" "Intel Corporation" "c:\windows\system32\drivers\ialpssi_gpio.sys" "02/02/2015 10:00" "" + "iaLPSSi_I2C" "Intel(R) Serial IO I2C Controller Driver" "Intel Corporation" "c:\windows\system32\drivers\ialpssi_i2c.sys" "24/02/2015 16:52" "" + "iaStorAV" "Intel(R) Rapid Storage Technology driver (inbox) - x64" "Intel Corporation" "c:\windows\system32\drivers\iastorav.sys" "19/02/2015 13:08" "" + "iaStorV" "Intel Matrix Storage Manager driver - x64" "Intel Corporation" "c:\windows\system32\drivers\iastorv.sys" "11/04/2011 19:48" "" + "ibbus" "InfiniBand Fabric Bus Driver" "Mellanox" "c:\windows\system32\drivers\ibbus.sys" "27/07/2015 21:59" "" + "IDSVia64" "Symantec Intrusion Prevention Driver" "Symantec Corporation" "c:\program files (x86)\norton internet security\nortondata\22.6.0.142\definitions\ipsdefs\20160414.001\idsvia64.sys" "13/10/2015 03:00" "" + "IntcAzAudAddService" "Realtek(r) High Definition Audio Function Driver" "Realtek Semiconductor Corp." "c:\windows\system32\drivers\rtkvhd64.sys" "30/06/2015 14:33" "" + "intelide" "Intel PCI IDE Driver" "Microsoft Corporation" "c:\windows\system32\drivers\intelide.sys" "30/10/2015 03:09" "" + "intelpep" "Intel Power Engine Plugin" "Microsoft Corporation" "c:\windows\system32\drivers\intelpep.sys" "30/10/2015 03:42" "" + "intelppm" "Processor Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\intelppm.sys" "30/10/2015 03:09" "" + "IoQos" "Disk I/O QoS Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ioqos.sys" "30/10/2015 03:09" "" + "IpFilterDriver" "IP Traffic Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ipfltdrv.sys" "30/10/2015 03:39" "" + "IPMIDRV" "WMI IPMI DRIVER" "Microsoft Corporation" "c:\windows\system32\drivers\ipmidrv.sys" "30/10/2015 03:39" "" + "IPNAT" "IP Network Address Translator" "Microsoft Corporation" "c:\windows\system32\drivers\ipnat.sys" "30/10/2015 03:36" "" + "IRENUM" "IR Bus Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\irenum.sys" "30/10/2015 03:39" "" + "isapnp" "PNP ISA Bus Driver" "Microsoft Corporation" "c:\windows\system32\drivers\isapnp.sys" "30/10/2015 03:39" "" + "iScsiPrt" "Microsoft iSCSI Initiator Driver" "Microsoft Corporation" "c:\windows\system32\drivers\msiscsi.sys" "30/10/2015 03:39" "" + "kbdclass" "Keyboard Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\kbdclass.sys" "30/10/2015 03:38" "" + "kbdhid" "HID Keyboard Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\kbdhid.sys" "30/10/2015 03:39" "" + "kdnic" "Microsoft Kernel Debugger Network Miniport" "Microsoft Corporation" "c:\windows\system32\drivers\kdnic.sys" "30/10/2015 03:41" "" + "KSecDD" "Kernel Security Support Provider Interface" "Microsoft Corporation" "c:\windows\system32\drivers\ksecdd.sys" "30/10/2015 03:38" "" + "KSecPkg" "Kernel Security Support Provider Interface Packages" "Microsoft Corporation" "c:\windows\system32\drivers\ksecpkg.sys" "22/11/2015 10:50" "" + "ksthunk" "Kernel Streaming WOW Thunk Service" "Microsoft Corporation" "c:\windows\system32\drivers\ksthunk.sys" "30/10/2015 03:42" "" + "lltdio" "Link-Layer Topology Discovery Mapper I/O Driver" "Microsoft Corporation" "c:\windows\system32\drivers\lltdio.sys" "30/10/2015 03:40" "" + "LSI_SAS" "LSI Fusion-MPT SAS Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_sas.sys" "25/03/2015 20:36" "" + "LSI_SAS2i" "LSI SAS Gen2 Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_sas2i.sys" "08/04/2015 21:58" "" + "LSI_SAS3i" "Avago SAS Gen3 Driver (StorPort)" "Avago Technologies" "c:\windows\system32\drivers\lsi_sas3i.sys" "09/04/2015 19:07" "" + "LSI_SSS" "LSI SSS PCIe/Flash Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_sss.sys" "16/03/2013 00:39" "" + "luafv" "Virtualizes file write failures to per-user locations." "Microsoft Corporation" "c:\windows\system32\drivers\luafv.sys" "30/10/2015 03:34" "" + "megasas" "MEGASAS RAID Controller Driver for Windows" "Avago Technologies" "c:\windows\system32\drivers\megasas.sys" "05/03/2015 03:36" "" + "megasr" "LSI MegaRAID Software RAID Driver" "LSI Corporation, Inc." "c:\windows\system32\drivers\megasr.sys" "03/06/2013 23:02" "" + "mfeelamk" "McAfee ELAM Driver" "McAfee, Inc." "c:\windows\system32\drivers\mfeelamk.sys" "18/11/2015 17:29" "" + "mlx4_bus" "MLX4 Bus Driver" "Mellanox" "c:\windows\system32\drivers\mlx4_bus.sys" "27/07/2015 22:03" "" + "MMCSS" "@%systemroot%\system32\drivers\mmcss.sys,-101" "Microsoft Corporation" "c:\windows\system32\drivers\mmcss.sys" "30/10/2015 03:38" "" + "Modem" "Modem Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\modem.sys" "30/10/2015 03:39" "" + "monitor" "Monitor Driver" "Microsoft Corporation" "c:\windows\system32\drivers\monitor.sys" "30/10/2015 03:40" "" + "mouclass" "Mouse Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mouclass.sys" "30/10/2015 03:37" "" + "mouhid" "HID Mouse Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mouhid.sys" "30/10/2015 03:39" "" + "mountmgr" "Driver responsible with maintaining persistent drive letters and names for volumes" "Microsoft Corporation" "c:\windows\system32\drivers\mountmgr.sys" "30/10/2015 03:09" "" + "mpsdrv" "@%SystemRoot%\system32\drivers\mpsdrv.sys,-23093" "Microsoft Corporation" "c:\windows\system32\drivers\mpsdrv.sys" "30/10/2015 03:37" "" + "MRxDAV" "Network Redirector that provides WebDAV file access for the WebClient service" "Microsoft Corporation" "c:\windows\system32\drivers\mrxdav.sys" "27/01/2016 05:50" "" + "mrxsmb" "Implements the framework for the SMB filesystem redirector" "Microsoft Corporation" "c:\windows\system32\drivers\mrxsmb.sys" "23/02/2016 09:02" "" + "mrxsmb10" "Implements the SMB 1.x (CIFS) protocol. This protocol provides connectivity to network resources on pre-Windows Vista servers" "Microsoft Corporation" "c:\windows\system32\drivers\mrxsmb10.sys" "23/02/2016 09:02" "" + "mrxsmb20" "Implements the SMB 2.0 protocol, which provides connectivity to network resources on Windows Vista and later servers" "Microsoft Corporation" "c:\windows\system32\drivers\mrxsmb20.sys" "30/10/2015 03:27" "" + "MsBridge" "Microsoft MAC Bridge" "Microsoft Corporation" "c:\windows\system32\drivers\bridge.sys" "23/02/2016 09:55" "" + "Msfs" "Mailslot driver" "Microsoft Corporation" "c:\windows\system32\drivers\msfs.sys" "30/10/2015 03:09" "" + "msgpiowin32" "GPIO Button Driver" "Microsoft Corporation" "c:\windows\system32\drivers\msgpiowin32.sys" "30/10/2015 03:36" "" + "mshidkmdf" "Device Filter to provide pass-through interface between HIDCLASS and KMDF" "Microsoft Corporation" "c:\windows\system32\drivers\mshidkmdf.sys" "30/10/2015 03:40" "" + "mshidumdf" "Device Driver to provide pass-through interface between HIDCLASS and UMDF" "Microsoft Corporation" "c:\windows\system32\drivers\mshidumdf.sys" "30/10/2015 03:39" "" + "msisadrv" "ISA Driver" "Microsoft Corporation" "c:\windows\system32\drivers\msisadrv.sys" "30/10/2015 03:41" "" + "MSKSSRV" "MS KS Server" "Microsoft Corporation" "c:\windows\system32\drivers\mskssrv.sys" "30/10/2015 03:43" "" + "MsLldp" "Microsoft Link-Layer Discovery Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mslldp.sys" "30/10/2015 03:37" "" + "MSPCLOCK" "MS Proxy Clock" "Microsoft Corporation" "c:\windows\system32\drivers\mspclock.sys" "30/10/2015 03:42" "" + "MSPQM" "MS Proxy Quality Manager" "Microsoft Corporation" "c:\windows\system32\drivers\mspqm.sys" "30/10/2015 03:42" "" + "MsRPC" "Kernel Remote Procedure Call Provider" "Microsoft Corporation" "c:\windows\system32\drivers\msrpc.sys" "30/10/2015 03:34" "" + "mssmbios" "System Management BIOS Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mssmbios.sys" "30/10/2015 03:38" "" + "MSTEE" "WDM Tee/Communication Transform Filter " "Microsoft Corporation" "c:\windows\system32\drivers\mstee.sys" "30/10/2015 03:42" "" + "MTConfig" "Microsoft Multi-Touch HID Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mtconfig.sys" "30/10/2015 03:39" "" + "Mup" "Multiple UNC Provider Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mup.sys" "30/10/2015 03:24" "" + "mvumis" "Marvell Flash Controller Driver" "Marvell Semiconductor, Inc." "c:\windows\system32\drivers\mvumis.sys" "23/05/2014 21:39" "" + "NativeWifiP" "NativeWiFi Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\nwifi.sys" "29/03/2016 08:36" "" + "NAVENG" "AV Engine" "Symantec Corporation" "c:\program files (x86)\norton internet security\nortondata\22.6.0.142\definitions\virusdefs\20160413.037\eng64.sys" "14/10/2015 03:06" "" + "NAVEX15" "AV Engine" "Symantec Corporation" "c:\program files (x86)\norton internet security\nortondata\22.6.0.142\definitions\virusdefs\20160413.037\ex64.sys" "14/10/2015 03:01" "" + "ndfltr" "NetworkDirect Support Filter Driver" "Mellanox" "c:\windows\system32\drivers\ndfltr.sys" "27/07/2015 21:59" "" + "NDIS" "NDIS System Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ndis.sys" "29/03/2016 08:14" "" + "NdisCap" "Microsoft NDIS Capture" "Microsoft Corporation" "c:\windows\system32\drivers\ndiscap.sys" "30/10/2015 03:39" "" + "NdisImPlatform" "Microsoft Network Adapter Multiplexor Protocol" "Microsoft Corporation" "c:\windows\system32\drivers\ndisimplatform.sys" "30/10/2015 03:38" "" + "NdisTapi" "Remote Access NDIS TAPI Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ndistapi.sys" "30/10/2015 03:42" "" + "Ndisuio" "NDIS User mode I/O driver" "Microsoft Corporation" "c:\windows\system32\drivers\ndisuio.sys" "30/10/2015 03:39" "" + "NdisVirtualBus" "Microsoft Virtual Network Adapter Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\ndisvirtualbus.sys" "30/10/2015 03:38" "" + "NdisWan" "Remote Access NDIS WAN Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ndiswan.sys" "30/10/2015 03:36" "" + "ndiswanlegacy" "Remote Access LEGACY NDIS WAN Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ndiswan.sys" "30/10/2015 03:36" "" + "ndproxy" "@%SystemRoot%\system32\drivers\todo.sys,-101" "Microsoft Corporation" "c:\windows\system32\drivers\ndproxy.sys" "30/10/2015 03:41" "" + "Ndu" "This service provides network data usage monitoring functionality" "Microsoft Corporation" "c:\windows\system32\drivers\ndu.sys" "30/10/2015 03:37" "" + "NetBIOS" "NetBIOS Interface" "Microsoft Corporation" "c:\windows\system32\drivers\netbios.sys" "30/10/2015 03:37" "" + "NetBT" "This service implements NetBios over TCP/IP." "Microsoft Corporation" "c:\windows\system32\drivers\netbt.sys" "30/10/2015 03:35" "" + "Npfs" "NPFS Driver" "Microsoft Corporation" "c:\windows\system32\drivers\npfs.sys" "30/10/2015 03:09" "" + "npsvctrig" "Named pipe service triggers" "Microsoft Corporation" "c:\windows\system32\drivers\npsvctrig.sys" "30/10/2015 03:40" "" + "nsiproxy" "NSI Proxy Service" "Microsoft Corporation" "c:\windows\system32\drivers\nsiproxy.sys" "30/10/2015 03:38" "" + "NTFS" "NT File System Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ntfs.sys" "29/03/2016 07:15" "" + "Null" "NULL Driver" "Microsoft Corporation" "c:\windows\system32\drivers\null.sys" "30/10/2015 03:09" "" + "nv_agp" "NForce NT AGP Filter" "Microsoft Corporation" "c:\windows\system32\drivers\nv_agp.sys" "30/10/2015 03:39" "" + "nvraid" "NVIDIA® nForce(TM) RAID Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvraid.sys" "21/04/2014 19:28" "" + "nvstor" "NVIDIA® nForce(TM) Sata Performance Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvstor.sys" "21/04/2014 19:34" "" + "Parport" "Parallel Port Driver" "Microsoft Corporation" "c:\windows\system32\drivers\parport.sys" "30/10/2015 03:38" "" + "partmgr" "Disk class filter driver that auctions out partitions to volume managers" "Microsoft Corporation" "c:\windows\system32\drivers\partmgr.sys" "30/10/2015 03:09" "" + "pci" "NT Plug and Play PCI Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\pci.sys" "30/10/2015 03:29" "" + "pciide" "Generic PCI IDE Bus Driver" "Microsoft Corporation" "c:\windows\system32\drivers\pciide.sys" "30/10/2015 03:09" "" + "pcmcia" "PCMCIA Bus Driver" "Microsoft Corporation" "c:\windows\system32\drivers\pcmcia.sys" "30/10/2015 03:38" "" + "pcw" "Performance Counters for Windows Driver" "Microsoft Corporation" "c:\windows\system32\drivers\pcw.sys" "30/10/2015 03:09" "" + "pdc" "Power Dependency Coordinator Driver" "Microsoft Corporation" "c:\windows\system32\drivers\pdc.sys" "30/10/2015 03:09" "" + "PEAUTH" "Protected Environment Authentication and Authorization Export Driver" "Microsoft Corporation" "c:\windows\system32\drivers\peauth.sys" "30/10/2015 03:32" "" + "percsas2i" "MEGASAS RAID Controller Driver for Windows" "LSI Corporation" "c:\windows\system32\drivers\percsas2i.sys" "05/02/2015 23:51" "" + "percsas3i" "MEGASAS RAID Controller Driver for Windows" "Avago Technologies" "c:\windows\system32\drivers\percsas3i.sys" "04/02/2015 23:52" "" + "PptpMiniport" "WAN Miniport (PPTP)" "Microsoft Corporation" "c:\windows\system32\drivers\raspptp.sys" "30/10/2015 03:39" "" + "Processor" "Processor Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\processr.sys" "30/10/2015 03:09" "" + "Psched" "QoS Packet Scheduler" "Microsoft Corporation" "c:\windows\system32\drivers\pacer.sys" "30/10/2015 03:36" "" + "QWAVEdrv" "Quality Windows Audio/Video Experience component driver" "Microsoft Corporation" "c:\windows\system32\drivers\qwavedrv.sys" "30/10/2015 03:38" "" + "RasAcd" "Remote Access Auto Connection Driver" "Microsoft Corporation" "c:\windows\system32\drivers\rasacd.sys" "30/10/2015 03:42" "" + "RasAgileVpn" "@netavpna.inf,%Svc-Mp-AgileVpn-DispName%;WAN Miniport (IKEv2)" "Microsoft Corporation" "c:\windows\system32\drivers\agilevpn.sys" "30/10/2015 03:37" "" + "Rasl2tp" "WAN Miniport (L2TP)" "Microsoft Corporation" "c:\windows\system32\drivers\rasl2tp.sys" "23/02/2016 10:01" "" + "RasPppoe" "Remote Access PPPOE Driver" "Microsoft Corporation" "c:\windows\system32\drivers\raspppoe.sys" "30/10/2015 03:41" "" + "RasSstp" "WAN Miniport (SSTP)" "Microsoft Corporation" "c:\windows\system32\drivers\rassstp.sys" "30/10/2015 03:39" "" + "rdbss" "Provides the framework for network mini-redirectors" "Microsoft Corporation" "c:\windows\system32\drivers\rdbss.sys" "30/10/2015 03:25" "" + "rdpbus" "Microsoft RDP Bus Device driver" "Microsoft Corporation" "c:\windows\system32\drivers\rdpbus.sys" "30/10/2015 03:10" "" + "RDPDR" "Remote Desktop Device Redirector Driver" "Microsoft Corporation" "c:\windows\system32\drivers\rdpdr.sys" "30/10/2015 03:10" "" + "RdpVideoMiniport" "Microsoft RDP Video Miniport driver" "Microsoft Corporation" "c:\windows\system32\drivers\rdpvideominiport.sys" "30/10/2015 03:10" "" + "rdyboost" "ReadyBoost" "Microsoft Corporation" "c:\windows\system32\drivers\rdyboost.sys" "30/10/2015 03:35" "" + "ReFSv1" "NT ReFS FS Driver" "Microsoft Corporation" "c:\windows\system32\drivers\refsv1.sys" "30/10/2015 03:10" "" + "RSP2STOR" "Realtek Pcie CardReader Driver for 2K/XP/Vista/Win7/Win8" "Realtek Semiconductor Corp." "c:\windows\system32\drivers\rtsp2stor.sys" "15/05/2015 08:44" "" + "rspndr" "Link-Layer Topology Discovery Responder" "Microsoft Corporation" "c:\windows\system32\drivers\rspndr.sys" "30/10/2015 03:39" "" + "RTL8168" "Realtek 8101E/8168/8169 NDIS 6.30 64-bit Driver " "Realtek " "c:\windows\system32\drivers\rt630x64.sys" "15/08/2013 07:23" "" + "RTWlanE" "Realtek PCIE NDIS Driver 37581" "Realtek Semiconductor Corporation " "c:\windows\system32\drivers\rtwlane.sys" "21/07/2015 14:28" "" + "s3cap" "Microsoft S3 Emulated Device Cap Driver" "Microsoft Corporation" "c:\windows\system32\drivers\vms3cap.sys" "30/10/2015 03:42" "" + "sbp2port" "SBP-2 Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sbp2port.sys" "30/10/2015 03:09" "" + "scfilter" "Smart card reader filter driver enabling smart card PnP." "Microsoft Corporation" "c:\windows\system32\drivers\scfilter.sys" "30/10/2015 03:39" "" + "sdbus" "SecureDigital Bus Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sdbus.sys" "29/03/2016 08:35" "" + "sdstor" "SD Storage Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sdstor.sys" "22/11/2015 10:50" "" + "SerCx" "Serial Class Extension" "Microsoft Corporation" "c:\windows\system32\drivers\sercx.sys" "30/10/2015 03:37" "" + "SerCx2" "Serial Class Extension V2" "Microsoft Corporation" "c:\windows\system32\drivers\sercx2.sys" "30/10/2015 03:38" "" + "Serenum" "Serial Port Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\serenum.sys" "30/10/2015 03:42" "" + "Serial" "Serial Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\serial.sys" "29/03/2016 08:55" "" + "sermouse" "Serial Mouse Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sermouse.sys" "30/10/2015 03:39" "" + "sfloppy" "SCSI Floppy Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sfloppy.sys" "30/10/2015 03:38" "" + "SiSRaid2" "SiS RAID Stor Miniport Driver" "Silicon Integrated Systems Corp." "c:\windows\system32\drivers\sisraid2.sys" "24/09/2008 19:28" "" + "SiSRaid4" "SiS AHCI Stor-Miniport Driver" "Silicon Integrated Systems" "c:\windows\system32\drivers\sisraid4.sys" "01/10/2008 22:56" "" + "SmbDrv" "Synaptics SMBus Driver" "Synaptics Incorporated" "c:\windows\system32\drivers\smb_driver_amdasf.sys" "26/07/2013 19:48" "" + "SmbDrvI" "Synaptics SMBus Driver" "Synaptics Incorporated" "c:\windows\system32\drivers\smb_driver_intel.sys" "26/07/2013 19:49" "" + "spaceport" "Storage Spaces Driver" "Microsoft Corporation" "c:\windows\system32\drivers\spaceport.sys" "30/10/2015 03:34" "" + "SpbCx" "SPB Class Extension" "Microsoft Corporation" "c:\windows\system32\drivers\spbcx.sys" "30/10/2015 03:33" "" + "SRTSP" "Symantec AutoProtect" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1606000.08e\srtsp64.sys" "05/02/2016 01:57" "" + "SRTSPX" "Symantec AutoProtect" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1606000.08e\srtspx64.sys" "26/08/2014 07:36" "" + "srv" "Enables connectivity from Windows XP and earlier clients" "Microsoft Corporation" "c:\windows\system32\drivers\srv.sys" "30/10/2015 03:30" "" + "srv2" "Enables connectivity from Windows Vista and later clients" "Microsoft Corporation" "c:\windows\system32\drivers\srv2.sys" "30/10/2015 03:30" "" + "srvnet" "Server Network driver" "Microsoft Corporation" "c:\windows\system32\drivers\srvnet.sys" "30/10/2015 03:29" "" + "stexstor" "Promise SuperTrak EX Series Driver for Windows x64" "Promise Technology, Inc." "c:\windows\system32\drivers\stexstor.sys" "27/11/2012 01:02" "" + "storahci" "MS AHCI Storport Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\storahci.sys" "30/10/2015 03:35" "" + "storflt" "Virtual Storage Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\vmstorfl.sys" "30/10/2015 03:40" "" + "stornvme" "Microsoft NVM Express Storport Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\stornvme.sys" "30/10/2015 03:41" "" + "storqosflt" "Provides Quality of Service for storage I/O traffic." "Microsoft Corporation" "c:\windows\system32\drivers\storqosflt.sys" "30/10/2015 03:37" "" + "storufs" "MS UFS Storport Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\storufs.sys" "30/10/2015 03:37" "" + "storvsc" "Storage VSC Driver" "Microsoft Corporation" "c:\windows\system32\drivers\storvsc.sys" "30/10/2015 03:41" "" + "swenum" "Plug and Play Software Device Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\swenum.sys" "30/10/2015 03:42" "" + "SymEFASI" "Symantec Extended File Attributes" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1606000.08e\symefasi64.sys" "20/10/2015 00:48" "" + "SymELAM" "Symantec ELAM" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1606000.08e\symelam.sys" "05/06/2012 02:04" "" + "SymEvent" "Symantec Event Library" "Symantec Corporation" "c:\windows\system32\drivers\symevent64x86.sys" "19/01/2015 23:43" "" + "SymIRON" "Iron Driver" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1606000.08e\ironx64.sys" "26/10/2015 23:01" "" + "SymNetS" "Network Security Driver" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1606000.08e\symnets.sys" "24/08/2015 21:15" "" + "Synth3dVsc" "Microsoft RemoteFX Synth3D Video VSC" "Microsoft Corporation" "c:\windows\system32\drivers\synth3dvsc.sys" "30/10/2015 03:37" "" + "SynTP" "Synaptics Touchpad Win64 Driver" "Synaptics Incorporated" "c:\windows\system32\drivers\syntp.sys" "06/07/2015 12:12" "" + "Tcpip" "TCP/IP Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tcpip.sys" "29/03/2016 08:07" "" + "Tcpip6" "@todo.dll,-100;Microsoft IPv6 Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tcpip.sys" "29/03/2016 08:07" "" + "tcpipreg" "Provides compatibility for legacy applications which interact with TCP/IP through the registry. If this service is stopped, certain applications may have impaired functionality." "Microsoft Corporation" "c:\windows\system32\drivers\tcpipreg.sys" "30/10/2015 03:38" "" + "tdx" "NetIO Legacy TDI Support Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tdx.sys" "05/11/2015 10:56" "" + "terminpt" "Terminal Server Input Driver" "Microsoft Corporation" "c:\windows\system32\drivers\terminpt.sys" "30/10/2015 03:10" "" + "TPM" "@tpm.inf,%TPMDesc%;TPM Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tpm.sys" "30/10/2015 03:34" "" + "tsusbflt" "Remote Desktop USB Hub Class Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tsusbflt.sys" "30/10/2015 03:10" "" + "TsUsbGD" "Remote Desktop Generic USB Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tsusbgd.sys" "30/10/2015 03:10" "" + "tunnel" "Microsoft Tunnel Interface Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tunnel.sys" "30/10/2015 03:36" "" + "uagp35" "MS AGPv3.5 Filter" "Microsoft Corporation" "c:\windows\system32\drivers\uagp35.sys" "30/10/2015 03:39" "" + "UASPStor" "Microsoft Uasp Driver" "Microsoft Corporation" "c:\windows\system32\drivers\uaspstor.sys" "30/10/2015 03:41" "" + "UcmCx0101" "USB Connector Manager KMDF Class Extension" "Microsoft Corporation" "c:\windows\system32\drivers\ucmcx.sys" "30/10/2015 03:41" "" + "UcmUcsi" "USB Connector Manager UCSI Client" "Microsoft Corporation" "c:\windows\system32\drivers\ucmucsi.sys" "30/10/2015 03:41" "" + "Ucx01000" "USB Controller Extension" "Microsoft Corporation" "c:\windows\system32\drivers\ucx01000.sys" "30/10/2015 03:34" "" + "UdeCx" "udecx.DRIVER" "Microsoft Corporation" "c:\windows\system32\drivers\udecx.sys" "30/10/2015 03:42" "" + "UEFI" "UEFI Driver for NT" "Microsoft Corporation" "c:\windows\system32\drivers\uefi.sys" "30/10/2015 03:09" "" + "Ufx01000" "USB Function Driver Class Extension" "Microsoft Corporation" "c:\windows\system32\drivers\ufx01000.sys" "29/03/2016 08:52" "" + "UfxChipidea" "UFX Chipidea Client Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ufxchipidea.sys" "30/10/2015 03:41" "" + "ufxsynopsys" "UFX Synopsys Client Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ufxsynopsys.sys" "30/10/2015 03:41" "" + "uliagpkx" "ULi AGPv3.0 Filter for K8/9 Processor Platforms" "Microsoft Corporation" "c:\windows\system32\drivers\uliagpkx.sys" "30/10/2015 03:38" "" + "umbus" "User-Mode Bus Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\umbus.sys" "30/10/2015 03:37" "" + "UmPass" "Generic pass-through driver" "Microsoft Corporation" "c:\windows\system32\drivers\umpass.sys" "30/10/2015 03:42" "" + "UrsChipidea" "USB Role-Switch Driver for Chipidea Core" "Microsoft Corporation" "c:\windows\system32\drivers\urschipidea.sys" "30/10/2015 03:42" "" + "UrsCx01000" "USB Role-Switch Class Extension" "Microsoft Corporation" "c:\windows\system32\drivers\urscx01000.sys" "30/10/2015 03:42" "" + "UrsSynopsys" "USB Role-Switch Driver for Synopsys Core" "Microsoft Corporation" "c:\windows\system32\drivers\urssynopsys.sys" "30/10/2015 03:42" "" + "USBAAPL64" "Apple Mobile Device USB Driver" "Apple, Inc." "c:\windows\system32\drivers\usbaapl64.sys" "11/06/2015 07:08" "" + "usbccgp" "USB Common Class Generic Parent Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbccgp.sys" "30/10/2015 03:39" "" + "usbcir" "USB Consumer IR Driver for eHome" "Microsoft Corporation" "c:\windows\system32\drivers\usbcir.sys" "30/10/2015 03:41" "" + "usbehci" "EHCI eUSB Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbehci.sys" "30/10/2015 03:27" "" + "usbfilter" "AMD USB Filter Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\usbfilter.sys" "29/08/2012 02:27" "" + "usbhub" "Default Hub Driver for USB" "Microsoft Corporation" "c:\windows\system32\drivers\usbhub.sys" "30/10/2015 03:30" "" + "USBHUB3" "USB3 HUB Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbhub3.sys" "23/02/2016 09:23" "" + "usbohci" "OHCI USB Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbohci.sys" "30/10/2015 03:42" "" + "usbprint" "USB Printer driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbprint.sys" "30/10/2015 03:42" "" + "usbscan" "USB Scanner Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbscan.sys" "30/10/2015 03:41" "" + "usbser" "USB Serial Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbser.sys" "16/01/2016 06:46" "" + "USBSTOR" "USB Mass Storage Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbstor.sys" "24/02/2016 08:24" "" + "usbuhci" "UHCI USB Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbuhci.sys" "30/10/2015 03:41" "" + "usbvideo" "USB Video Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbvideo.sys" "30/10/2015 03:37" "" + "USBXHCI" "USB XHCI Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbxhci.sys" "29/03/2016 08:29" "" + "vdrvroot" "Virtual Drive Root Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\vdrvroot.sys" "30/10/2015 03:39" "" + "VerifierExt" "Driver Verifier Extension" "Microsoft Corporation" "c:\windows\system32\drivers\verifierext.sys" "30/10/2015 03:09" "" + "vhdmp" "VHD Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\vhdmp.sys" "30/10/2015 03:29" "" + "vhf" "Kernel mode driver that implements the Virtual HID Framework (VHF)" "Microsoft Corporation" "c:\windows\system32\drivers\vhf.sys" "30/10/2015 03:39" "" + "vmbus" "Microsoft Hyper-V Virtual Machine Bus Child Driver" "Microsoft Corporation" "c:\windows\system32\drivers\vmbus.sys" "30/10/2015 03:36" "" + "VMBusHID" "Microsoft VMBus HID Miniport" "Microsoft Corporation" "c:\windows\system32\drivers\vmbushid.sys" "30/10/2015 03:41" "" + "volmgr" "Volume Manager Driver" "Microsoft Corporation" "c:\windows\system32\drivers\volmgr.sys" "30/10/2015 03:09" "" + "volmgrx" "Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks" "Microsoft Corporation" "c:\windows\system32\drivers\volmgrx.sys" "30/10/2015 03:09" "" + "volsnap" "Volume Shadow Copy Driver" "Microsoft Corporation" "c:\windows\system32\drivers\volsnap.sys" "30/10/2015 03:09" "" + "vpci" "Virtual PCI Bus" "Microsoft Corporation" "c:\windows\system32\drivers\vpci.sys" "30/10/2015 03:40" "" + "vsmraid" "VIA RAID DRIVER FOR AMD-X86-64" "VIA Technologies Inc.,Ltd" "c:\windows\system32\drivers\vsmraid.sys" "22/04/2014 20:21" "" + "VSTXRAID" "VIA StorX RAID Controller Driver" "VIA Corporation" "c:\windows\system32\drivers\vstxraid.sys" "21/01/2013 20:00" "" + "vwifibus" "Implements bus functionality for Virtual Wi-Fi" "Microsoft Corporation" "c:\windows\system32\drivers\vwifibus.sys" "30/10/2015 03:39" "" + "vwififlt" "Virtual WiFi Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\vwififlt.sys" "30/10/2015 03:37" "" + "vwifimp" "Virtual WiFi Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\vwifimp.sys" "30/10/2015 03:39" "" + "WacomPen" "Wacom Serial Pen Tablet HID Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wacompen.sys" "30/10/2015 03:39" "" + "wanarp" "Remote Access IP ARP Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wanarp.sys" "30/10/2015 03:39" "" + "wanarpv6" "Remote Access IPv6 ARP Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wanarp.sys" "30/10/2015 03:39" "" + "WdBoot" "Windows Defender Boot Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wdboot.sys" "30/10/2015 03:42" "" + "Wdf01000" "Kernel Mode Driver Framework Runtime" "Microsoft Corporation" "c:\windows\system32\drivers\wdf01000.sys" "30/10/2015 03:24" "" + "WdFilter" "Windows Defender On-Access Malware Protection Mini-Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wdfilter.sys" "30/10/2015 03:34" "" + "wdiwifi" "WDI Driver Framework Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wdiwifi.sys" "29/03/2016 08:23" "" + "WdNisDrv" "Helps guard against intrusion attempts targeting known and newly discovered vulnerabilities in network protocols" "Microsoft Corporation" "c:\windows\system32\drivers\wdnisdrv.sys" "30/10/2015 03:36" "" + "WFPLWFS" "Microsoft Windows Filtering Platform" "Microsoft Corporation" "c:\windows\system32\drivers\wfplwfs.sys" "30/10/2015 03:36" "" + "WIMMount" "WIM Image mount service driver" "Microsoft Corporation" "c:\windows\system32\drivers\wimmount.sys" "13/11/2015 06:52" "" + "WindowsTrustedRT" "Windows Trusted Runtime Interface Driver" "Microsoft Corporation" "c:\windows\system32\drivers\windowstrustedrt.sys" "30/10/2015 03:38" "" + "WindowsTrustedRTProxy" "Windows Trusted Runtime Service Proxy Driver" "Microsoft Corporation" "c:\windows\system32\drivers\windowstrustedrtproxy.sys" "30/10/2015 03:38" "" + "WinMad" "Kernel WinMad" "Mellanox" "c:\windows\system32\drivers\winmad.sys" "27/07/2015 21:59" "" + "WINUSB" "Windows WinUSB Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\winusb.sys" "30/10/2015 03:40" "" + "WinVerbs" "Kernel WinVerbs" "Mellanox" "c:\windows\system32\drivers\winverbs.sys" "27/07/2015 21:59" "" + "WirelessButtonDriver" "HP Wireless Button Driver" "Hewlett-Packard Development Company, L.P." "c:\windows\system32\drivers\wirelessbuttondriver64.sys" "30/08/2012 04:11" "" + "WmiAcpi" "Windows Management Interface for ACPI" "Microsoft Corporation" "c:\windows\system32\drivers\wmiacpi.sys" "30/10/2015 03:37" "" + "Wof" "Windows Overlay Filter" "Microsoft Corporation" "c:\windows\system32\drivers\wof.sys" "30/10/2015 03:38" "" + "wpcfltr" "Family Safety Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wpcfltr.sys" "30/10/2015 03:42" "" + "WpdUpFltr" "WPD Upper Class Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wpdupfltr.sys" "30/10/2015 03:40" "" + "WudfPf" "Windows Driver Foundation - User-mode Driver Framework Platform Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wudfpf.sys" "30/10/2015 03:09" "" + "WUDFRd" "Windows Driver Foundation - User-mode Driver Framework Reflector" "Microsoft Corporation" "c:\windows\system32\drivers\wudfrd.sys" "30/10/2015 03:09" "" + "WUDFWpdFs" "Windows Driver Foundation - User-mode Driver Framework Reflector" "Microsoft Corporation" "c:\windows\system32\drivers\wudfrd.sys" "30/10/2015 03:09" "" + "xboxgip" "@xboxgip.inf,%XBOXGIP_Desc%;Xbox Game Input Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\xboxgip.sys" "23/02/2016 10:20" "" + "xinputhid" "XINPUT filter driver for HID" "Microsoft Corporation" "c:\windows\system32\drivers\xinputhid.sys" "29/03/2016 09:16" "" "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Font Drivers" "" "" "" "06/02/2016 14:48" "" + "Adobe Type Manager" "Windows NT OpenType/Type 1 Font Driver" "Adobe Systems Incorporated" "c:\windows\system32\atmfd.dll" "29/03/2016 08:46" "" "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" "" "06/02/2016 14:52" "" + "aux" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv" "30/10/2015 03:33" "" + "aux1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv" "30/10/2015 03:33" "" + "midi" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv" "30/10/2015 03:33" "" + "midi1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv" "30/10/2015 03:33" "" + "midimapper" "Microsoft MIDI Mapper" "Microsoft Corporation" "c:\windows\system32\midimap.dll" "30/10/2015 03:37" "" + "mixer" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv" "30/10/2015 03:33" "" + "mixer1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv" "30/10/2015 03:33" "" + "msacm.imaadpcm" "IMA ADPCM CODEC for MSACM" "Microsoft Corporation" "c:\windows\system32\imaadp32.acm" "30/10/2015 03:38" "" + "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\system32\l3codeca.acm" "30/10/2015 03:36" "" + "msacm.msadpcm" "Microsoft ADPCM CODEC for MSACM" "Microsoft Corporation" "c:\windows\system32\msadp32.acm" "30/10/2015 03:39" "" + "msacm.msg711" "Microsoft CCITT G.711 (A-Law and u-Law) CODEC for MSACM" "Microsoft Corporation" "c:\windows\system32\msg711.acm" "30/10/2015 03:39" "" + "msacm.msgsm610" "Microsoft GSM 6.10 Audio CODEC for MSACM" "Microsoft Corporation" "c:\windows\system32\msgsm32.acm" "30/10/2015 03:38" "" + "MSVideo8" "VfW MM Driver for WDM Video Capture Devices" "Microsoft Corporation" "c:\windows\system32\vfwwdm32.dll" "30/10/2015 03:38" "" + "vidc.i420" "Intel Indeo(R) Video YUV Codec" "Microsoft Corporation" "c:\windows\system32\iyuv_32.dll" "30/10/2015 03:39" "" + "vidc.iyuv" "Intel Indeo(R) Video YUV Codec" "Microsoft Corporation" "c:\windows\system32\iyuv_32.dll" "30/10/2015 03:39" "" + "vidc.mrle" "Microsoft RLE Compressor" "Microsoft Corporation" "c:\windows\system32\msrle32.dll" "30/10/2015 03:39" "" + "vidc.msvc" "Microsoft Video 1 Compressor" "Microsoft Corporation" "c:\windows\system32\msvidc32.dll" "30/10/2015 03:39" "" + "vidc.uyvy" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\system32\msyuv.dll" "30/10/2015 03:42" "" + "vidc.yuy2" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\system32\msyuv.dll" "30/10/2015 03:42" "" + "vidc.yvu9" "Toshiba Video Codec" "Microsoft Corporation" "c:\windows\system32\tsbyuv.dll" "30/10/2015 03:40" "" + "vidc.yvyu" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\system32\msyuv.dll" "30/10/2015 03:42" "" + "wave" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv" "30/10/2015 03:33" "" + "wave1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv" "30/10/2015 03:33" "" + "wavemapper" "Microsoft Sound Mapper" "Microsoft Corporation" "c:\windows\system32\msacm32.drv" "30/10/2015 03:39" "" "HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" "" "06/02/2016 14:52" "" + "aux" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv" "30/10/2015 03:30" "" + "aux1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv" "30/10/2015 03:30" "" + "midi" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv" "30/10/2015 03:30" "" + "midi1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv" "30/10/2015 03:30" "" + "midimapper" "Microsoft MIDI Mapper" "Microsoft Corporation" "c:\windows\syswow64\midimap.dll" "30/10/2015 03:35" "" + "mixer" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv" "30/10/2015 03:30" "" + "mixer1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv" "30/10/2015 03:30" "" + "msacm.imaadpcm" "IMA ADPCM CODEC for MSACM" "Microsoft Corporation" "c:\windows\syswow64\imaadp32.acm" "30/10/2015 03:36" "" + "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\syswow64\l3codeca.acm" "30/10/2015 03:34" "" + "msacm.msadpcm" "Microsoft ADPCM CODEC for MSACM" "Microsoft Corporation" "c:\windows\syswow64\msadp32.acm" "30/10/2015 03:38" "" + "msacm.msg711" "Microsoft CCITT G.711 (A-Law and u-Law) CODEC for MSACM" "Microsoft Corporation" "c:\windows\syswow64\msg711.acm" "30/10/2015 03:38" "" + "msacm.msgsm610" "Microsoft GSM 6.10 Audio CODEC for MSACM" "Microsoft Corporation" "c:\windows\syswow64\msgsm32.acm" "30/10/2015 03:36" "" + "vidc.cvid" "Cinepak® Codec" "Radius Inc." "c:\windows\syswow64\iccvid.dll" "30/10/2015 03:46" "" + "vidc.i420" "Intel Indeo(R) Video YUV Codec" "Microsoft Corporation" "c:\windows\syswow64\iyuv_32.dll" "30/10/2015 03:37" "" + "vidc.iyuv" "Intel Indeo(R) Video YUV Codec" "Microsoft Corporation" "c:\windows\syswow64\iyuv_32.dll" "30/10/2015 03:37" "" + "vidc.mrle" "Microsoft RLE Compressor" "Microsoft Corporation" "c:\windows\syswow64\msrle32.dll" "30/10/2015 03:38" "" + "vidc.msvc" "Microsoft Video 1 Compressor" "Microsoft Corporation" "c:\windows\syswow64\msvidc32.dll" "30/10/2015 03:37" "" + "vidc.uyvy" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\syswow64\msyuv.dll" "30/10/2015 03:40" "" + "vidc.yuy2" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\syswow64\msyuv.dll" "30/10/2015 03:40" "" + "vidc.yvu9" "Toshiba Video Codec" "Microsoft Corporation" "c:\windows\syswow64\tsbyuv.dll" "30/10/2015 03:38" "" + "vidc.yvyu" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\syswow64\msyuv.dll" "30/10/2015 03:40" "" + "wave" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv" "30/10/2015 03:30" "" + "wave1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv" "30/10/2015 03:30" "" + "wavemapper" "Microsoft Sound Mapper" "Microsoft Corporation" "c:\windows\syswow64\msacm32.drv" "30/10/2015 03:37" "" "HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" "" "06/02/2016 15:02" "" + "AC3 Parser Filter" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\system32\mpg2splt.ax" "30/10/2015 03:09" "" + "ACM Wrapper" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "AMD MJPEG Decoder" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files\common files\ati technologies\multimedia\atimpenc64.dll" "25/09/2013 12:00" "" + "ATI MPEG Audio Encoder" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files\common files\ati technologies\multimedia\atimpenc64.dll" "25/09/2013 12:00" "" + "ATI MPEG File Writer" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files\common files\ati technologies\multimedia\atimpenc64.dll" "25/09/2013 12:00" "" + "ATI MPEG Multiplexer" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files\common files\ati technologies\multimedia\atimpenc64.dll" "25/09/2013 12:00" "" + "ATI MPEG Video Decoder" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files\common files\ati technologies\multimedia\atimpenc64.dll" "25/09/2013 12:00" "" + "ATI MPEG Video Encoder" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files\common files\ati technologies\multimedia\atimpenc64.dll" "25/09/2013 12:00" "" + "ATI Video Rotation Filter" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files\common files\ati technologies\multimedia\atimpenc64.dll" "25/09/2013 12:00" "" + "ATI Video Scaler Filter" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files\common files\ati technologies\multimedia\atimpenc64.dll" "25/09/2013 12:00" "" + "AVI Decompressor" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "AVI mux" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qcap.dll" "30/10/2015 03:34" "" + "AVI Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "AVI/WAV File Source" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "BDA MPEG2 Transport Information Filter" "Microsoft Transport Information Filter for MPEG2 based networks." "Microsoft Corporation" "c:\windows\system32\psisrndr.ax" "30/10/2015 03:35" "" + "Closed Captions Analysis Filter" "CCA DirectShow Filter." "Microsoft Corporation" "c:\windows\system32\cca.dll" "30/10/2015 03:40" "" + "Color Space Converter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "Default Video Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "DV Muxer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qdv.dll" "30/10/2015 03:36" "" + "DV Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qdv.dll" "30/10/2015 03:36" "" + "DV Video Decoder" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qdv.dll" "30/10/2015 03:36" "" + "DVD Navigator" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\system32\qdvd.dll" "05/01/2016 02:48" "" + "Enhanced Video Renderer" "Enhanced Video Renderer DLL" "Microsoft Corporation" "c:\windows\system32\evr.dll" "16/01/2016 06:18" "" + "File Source (Async.)" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "File Source (URL)" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "File stream renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "File Writer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qcap.dll" "30/10/2015 03:34" "" + "Infinite Pin Tee Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qcap.dll" "30/10/2015 03:34" "" + "Internal Text Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "Line 21 Decoder 2" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "Microsoft AC3 Encoder" "Microsoft AC-3 Encoder" "Microsoft Corporation" "c:\windows\system32\msac3enc.dll" "30/10/2015 03:19" "" + "Microsoft DTV-DVD Audio Decoder" "Microsoft DTV-DVD Audio Decoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2adec.dll" "15/09/2015 23:10" "" + "Microsoft DTV-DVD Video Decoder" "Microsoft DTV-DVD Video Decoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2vdec.dll" "15/09/2015 23:08" "" + "Microsoft MPEG-2 Audio Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2enc.dll" "07/12/2015 04:43" "" + "Microsoft MPEG-2 Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2enc.dll" "07/12/2015 04:43" "" + "Microsoft MPEG-2 Video Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2enc.dll" "07/12/2015 04:43" "" + "MIDI Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "MJPEG Decompressor" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "MPEG Audio Codec" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "MPEG Video Codec" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "MPEG-2 Demultiplexer" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\system32\mpg2splt.ax" "30/10/2015 03:09" "" + "MPEG-2 Sections and Tables" "Microsoft MPEG-2 Section and Table Acquisition Module" "Microsoft Corporation" "c:\windows\system32\mpeg2data.ax" "30/10/2015 03:38" "" + "MPEG-2 Splitter" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\system32\mpg2splt.ax" "30/10/2015 03:09" "" + "Mpeg-2 Video Stream Analysis" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll" "30/10/2015 03:10" "" + "MPEG-I Stream Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "Multi-file Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "Null Renderer" "DirectShow editing." "Microsoft Corporation" "c:\windows\system32\qedit.dll" "05/01/2016 02:45" "" + "SAMI (CC) Reader" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "Sample Grabber" "DirectShow editing." "Microsoft Corporation" "c:\windows\system32\qedit.dll" "05/01/2016 02:45" "" + "SBE2 Sink" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll" "30/10/2015 03:10" "" + "SBE2FileScan" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll" "30/10/2015 03:10" "" + "SBE2MediaTypeProfile" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll" "30/10/2015 03:10" "" + "Smart Tee Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qcap.dll" "30/10/2015 03:34" "" + "StreamBufferSink" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll" "30/10/2015 03:10" "" + "StreamBufferSource" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll" "30/10/2015 03:10" "" + "VBI Codec" "Microsoft VBI Codec" "Microsoft Corporation" "c:\windows\system32\vbicodec.ax" "30/10/2015 03:35" "" + "VBI Surface Allocator" "VBI Surface Allocator Filter" "Microsoft Corporation" "c:\windows\system32\vbisurf.ax" "30/10/2015 03:40" "" + "VGA 16 color ditherer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "Video Mixing Renderer 9" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "Video Port Manager" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "Video Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "VPS Decoder" "Microsoft Teletext Server" "Microsoft Corporation" "c:\windows\system32\wstpager.ax" "30/10/2015 03:38" "" + "Wave Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll" "16/01/2016 06:18" "" + "WM ASF Reader" "DirectShow ASF Support" "Microsoft Corporation" "c:\windows\system32\qasf.dll" "30/10/2015 03:10" "" + "WM ASF Writer" "DirectShow ASF Support" "Microsoft Corporation" "c:\windows\system32\qasf.dll" "30/10/2015 03:10" "" + "WST Pager" "Microsoft Teletext Server" "Microsoft Corporation" "c:\windows\system32\wstpager.ax" "30/10/2015 03:38" "" "HKLM\Software\Wow6432Node\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" "" "06/02/2016 15:03" "" + "AC3 Parser Filter" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\syswow64\mpg2splt.ax" "30/10/2015 03:32" "" + "ACM Wrapper" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "AMD MJPEG Decoder" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files (x86)\common files\ati technologies\multimedia\atimpenc.dll" "25/09/2013 11:55" "" + "ATI MPEG Audio Encoder" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files (x86)\common files\ati technologies\multimedia\atimpenc.dll" "25/09/2013 11:55" "" + "ATI MPEG File Writer" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files (x86)\common files\ati technologies\multimedia\atimpenc.dll" "25/09/2013 11:55" "" + "ATI MPEG Multiplexer" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files (x86)\common files\ati technologies\multimedia\atimpenc.dll" "25/09/2013 11:55" "" + "ATI MPEG Video Decoder" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files (x86)\common files\ati technologies\multimedia\atimpenc.dll" "25/09/2013 11:55" "" + "ATI MPEG Video Encoder" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files (x86)\common files\ati technologies\multimedia\atimpenc.dll" "25/09/2013 11:55" "" + "ATI Ticker" "" "" "c:\program files (x86)\ati technologies\ati.ace\graphics-previews-common\ticker.ax" "25/09/2013 11:38" "" + "ATI Video Rotation Filter" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files (x86)\common files\ati technologies\multimedia\atimpenc.dll" "25/09/2013 11:55" "" + "ATI Video Scaler Filter" "ATI MPEG Encoder" "Advanced Micro Devices Inc." "c:\program files (x86)\common files\ati technologies\multimedia\atimpenc.dll" "25/09/2013 11:55" "" + "AVI Decompressor" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "AVI Draw Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "AVI mux" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qcap.dll" "30/10/2015 03:32" "" + "AVI Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "AVI/WAV File Source" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "BDA MPEG2 Transport Information Filter" "Microsoft Transport Information Filter for MPEG2 based networks." "Microsoft Corporation" "c:\windows\syswow64\psisrndr.ax" "30/10/2015 03:33" "" + "Capture File Writer" "Photo Gallery Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "06/02/2013 07:40" "" + "Closed Captions Analysis Filter" "CCA DirectShow Filter." "Microsoft Corporation" "c:\windows\syswow64\cca.dll" "30/10/2015 03:38" "" + "Color Space Converter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "Default Video Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "DV Muxer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdv.dll" "30/10/2015 03:34" "" + "DV Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdv.dll" "30/10/2015 03:34" "" + "DV Video Decoder" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdv.dll" "30/10/2015 03:34" "" + "DVD Navigator" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdvd.dll" "05/01/2016 02:39" "" + "Enhanced Video Renderer" "Enhanced Video Renderer DLL" "Microsoft Corporation" "c:\windows\syswow64\evr.dll" "16/01/2016 06:11" "" + "File Source (Async.)" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "File Source (URL)" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "File stream renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "File Writer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qcap.dll" "30/10/2015 03:32" "" + "Infinite Pin Tee Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qcap.dll" "30/10/2015 03:32" "" + "Internal Text Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "Line 21 Decoder" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdvd.dll" "05/01/2016 02:39" "" + "Line 21 Decoder 2" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "Microsoft AC3 Encoder" "Microsoft AC-3 Encoder" "Microsoft Corporation" "c:\windows\syswow64\msac3enc.dll" "30/10/2015 03:13" "" + "Microsoft DTV-DVD Audio Decoder" "Microsoft DTV-DVD Audio Decoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2adec.dll" "15/09/2015 22:50" "" + "Microsoft DTV-DVD Video Decoder" "Microsoft DTV-DVD Video Decoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2vdec.dll" "15/09/2015 22:50" "" + "Microsoft MPEG-2 Audio Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2enc.dll" "07/12/2015 04:38" "" + "Microsoft MPEG-2 Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2enc.dll" "07/12/2015 04:38" "" + "Microsoft MPEG-2 Video Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2enc.dll" "07/12/2015 04:38" "" + "MIDI Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "MJPEG Decompressor" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "MMACE Deinterlace" "" "" "c:\program files (x86)\ati technologies\ati.ace\graphics-previews-common\mmacefilters.dll" "25/09/2013 11:38" "" + "MMACE ProcAmp" "" "" "c:\program files (x86)\ati technologies\ati.ace\graphics-previews-common\mmacefilters.dll" "25/09/2013 11:38" "" + "MMACE SoftEmu" "" "" "c:\program files (x86)\ati technologies\ati.ace\graphics-previews-common\mmacefilters.dll" "25/09/2013 11:38" "" + "MPEG Audio Codec" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "MPEG Video Codec" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "MPEG-2 Demultiplexer" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\syswow64\mpg2splt.ax" "30/10/2015 03:32" "" + "MPEG-2 Sections and Tables" "Microsoft MPEG-2 Section and Table Acquisition Module" "Microsoft Corporation" "c:\windows\syswow64\mpeg2data.ax" "30/10/2015 03:36" "" + "MPEG-2 Splitter" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\syswow64\mpg2splt.ax" "30/10/2015 03:32" "" + "Mpeg-2 Video Stream Analysis" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll" "30/10/2015 03:27" "" + "MPEG-I Stream Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "Multi-file Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "Null Renderer" "DirectShow editing." "Microsoft Corporation" "c:\windows\syswow64\qedit.dll" "05/01/2016 02:36" "" + "Overlay Mixer" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdvd.dll" "05/01/2016 02:39" "" + "Overlay Mixer2" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdvd.dll" "05/01/2016 02:39" "" + "RealPlayer Audio Filter" "Audio Filter Plugin" "RealNetworks, Inc." "c:\program files (x86)\real\realplayer\rdsf3260.dll" "28/07/2015 05:13" "" + "RealPlayer DirectShow Trim Filter" "Audio Filter Plugin" "RealNetworks, Inc." "c:\program files (x86)\real\realplayer\rdsf3260.dll" "28/07/2015 05:13" "" + "RealPlayer Mp3 Transform Filter" "Audio Filter Plugin" "RealNetworks, Inc." "c:\program files (x86)\real\realplayer\rdsf3260.dll" "28/07/2015 05:13" "" + "RealPlayer MPEG4 Transform Filter" "Audio Filter Plugin" "RealNetworks, Inc." "c:\program files (x86)\real\realplayer\rdsf3260.dll" "28/07/2015 05:13" "" + "RealPlayer Transcode Filter" "Audio Filter Plugin" "RealNetworks, Inc." "c:\program files (x86)\real\realplayer\rdsf3260.dll" "28/07/2015 05:13" "" + "RealPlayer Video Filter" "Audio Filter Plugin" "RealNetworks, Inc." "c:\program files (x86)\real\realplayer\rdsf3260.dll" "28/07/2015 05:13" "" + "RealPlayer Volume Boost Filter" "Audio Filter Plugin" "RealNetworks, Inc." "c:\program files (x86)\real\realplayer\rdsf3260.dll" "28/07/2015 05:13" "" + "Record Queue" "Photo Gallery Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "06/02/2013 07:40" "" + "RPDS Audio Service DS API" "RPDS DirectShow API" "RealNetworks" "c:\program files (x86)\real\realplayer\rpds\tools\plugins\realdecodefilters.dll" "23/07/2013 16:26" "" + "RPDS DirectShow Sink" "DirectShow Decoder Plugin" "RealNetworks" "c:\program files (x86)\real\realplayer\rpds\tools\plugins\directshowdec.dll" "26/02/2014 18:12" "" + "RPDS DirectShow Source" "DirectShow Decoder Plugin" "RealNetworks" "c:\program files (x86)\real\realplayer\rpds\tools\plugins\directshowdec.dll" "26/02/2014 18:12" "" + "RPDS Video Service DS API" "RPDS DirectShow API" "RealNetworks" "c:\program files (x86)\real\realplayer\rpds\tools\plugins\realdecodefilters.dll" "23/07/2013 16:26" "" + "SAMI (CC) Reader" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "Sample Grabber" "DirectShow editing." "Microsoft Corporation" "c:\windows\syswow64\qedit.dll" "05/01/2016 02:36" "" + "SBE2 Sink" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll" "30/10/2015 03:27" "" + "SBE2FileScan" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll" "30/10/2015 03:27" "" + "SBE2MediaTypeProfile" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll" "30/10/2015 03:27" "" + "Smart Tee Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qcap.dll" "30/10/2015 03:32" "" + "StreamBufferSink" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll" "30/10/2015 03:27" "" + "StreamBufferSource" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll" "30/10/2015 03:27" "" + "VBI Codec" "Microsoft VBI Codec" "Microsoft Corporation" "c:\windows\syswow64\vbicodec.ax" "30/10/2015 03:33" "" + "VBI Surface Allocator" "VBI Surface Allocator Filter" "Microsoft Corporation" "c:\windows\syswow64\vbisurf.ax" "30/10/2015 03:38" "" + "VGA 16 color ditherer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "Video Mixing Renderer 9" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "Video Port Manager" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "Video Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "VPS Decoder" "Microsoft Teletext Server" "Microsoft Corporation" "c:\windows\syswow64\wstpager.ax" "30/10/2015 03:37" "" + "Wave Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll" "16/01/2016 06:16" "" + "WM ASF Reader" "DirectShow ASF Support" "Microsoft Corporation" "c:\windows\syswow64\qasf.dll" "30/10/2015 03:31" "" + "WM ASF Writer" "DirectShow ASF Support" "Microsoft Corporation" "c:\windows\syswow64\qasf.dll" "30/10/2015 03:31" "" + "WM VIH2 Fix" "Photo Gallery Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "06/02/2013 07:40" "" + "WMT DV Extract Filter" "Photo Gallery Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "06/02/2013 07:40" "" + "WMT Sample Info Filter" "Photo Gallery Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "06/02/2013 07:40" "" + "WMT Switch Filter" "Photo Gallery Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "06/02/2013 07:40" "" + "WMT Virtual Renderer" "Photo Gallery Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "06/02/2013 07:40" "" + "WMT Virtual Source" "Photo Gallery Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "06/02/2013 07:40" "" + "WST Pager" "Microsoft Teletext Server" "Microsoft Corporation" "c:\windows\syswow64\wstpager.ax" "30/10/2015 03:37" "" "HKLM\Software\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance" "" "" "" "06/02/2016 14:48" "" + "{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}" "Microsoft Camera Codec Pack" "Microsoft Corporation" "c:\windows\system32\windowscodecsraw.dll" "30/10/2015 03:23" "" "HKLM\Software\Wow6432Node\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance" "" "" "" "06/02/2016 14:48" "" + "{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}" "Microsoft Camera Codec Pack" "Microsoft Corporation" "c:\windows\syswow64\windowscodecsraw.dll" "30/10/2015 03:13" "" "HKLM\System\CurrentControlSet\Control\Session Manager\BootExecute" "" "" "" "15/04/2016 21:51" "" + "autocheck autochk *" "Auto Check Utility" "Microsoft Corporation" "c:\windows\system32\autochk.exe" "30/10/2015 03:31" "" "HKLM\SOFTWARE\Classes\Htmlfile\Shell\Open\Command\(Default)" "" "" "" "06/02/2016 15:18" "" + "C:\Program Files\Internet Explorer\IEXPLORE.EXE" "Internet Explorer" "Microsoft Corporation" "c:\program files\internet explorer\iexplore.exe" "24/11/2015 10:14" "" "HKLM\System\CurrentControlSet\Control\Session Manager\KnownDlls" "" "" "" "30/10/2015 08:25" "" + "_Wow64" "" "" "File not found: C:\WINDOWS\SysWOW64\Wow64.dll" "" "" + "_Wow64" "Win32 Emulation on NT64" "Microsoft Corporation" "c:\windows\system32\wow64.dll" "30/10/2015 03:35" "" + "_Wow64cpu" "" "" "File not found: C:\WINDOWS\SysWOW64\Wow64cpu.dll" "" "" + "_Wow64cpu" "AMD64 Wow64 CPU " "Microsoft Corporation" "c:\windows\system32\wow64cpu.dll" "30/10/2015 03:41" "" + "_Wow64win" "" "" "File not found: C:\WINDOWS\SysWOW64\Wow64win.dll" "" "" + "_Wow64win" "Wow64 Console and Win32 API Logging" "Microsoft Corporation" "c:\windows\system32\wow64win.dll" "30/10/2015 03:35" "" + "advapi32" "Advanced Windows 32 Base API" "Microsoft Corporation" "c:\windows\syswow64\advapi32.dll" "05/01/2016 02:36" "" + "advapi32" "Advanced Windows 32 Base API" "Microsoft Corporation" "c:\windows\system32\advapi32.dll" "05/01/2016 02:43" "" + "clbcatq" "COM+ Configuration Catalog" "Microsoft Corporation" "c:\windows\syswow64\clbcatq.dll" "30/10/2015 03:27" "" + "clbcatq" "COM+ Configuration Catalog" "Microsoft Corporation" "c:\windows\system32\clbcatq.dll" "30/10/2015 03:29" "" + "combase" "Microsoft COM for Windows" "Microsoft Corporation" "c:\windows\syswow64\combase.dll" "27/01/2016 05:51" "" + "combase" "Microsoft COM for Windows" "Microsoft Corporation" "c:\windows\system32\combase.dll" "27/01/2016 05:38" "" + "COMDLG32" "Common Dialogues DLL" "Microsoft Corporation" "c:\windows\syswow64\comdlg32.dll" "30/10/2015 03:22" "" + "COMDLG32" "Common Dialogues DLL" "Microsoft Corporation" "c:\windows\system32\comdlg32.dll" "30/10/2015 03:23" "" + "coml2" "Microsoft COM for Windows" "Microsoft Corporation" "c:\windows\syswow64\coml2.dll" "30/10/2015 03:29" "" + "coml2" "Microsoft COM for Windows" "Microsoft Corporation" "c:\windows\system32\coml2.dll" "30/10/2015 03:31" "" + "DifxApi" "Driver Install Frameworks for API library module" "Microsoft Corporation" "c:\windows\syswow64\difxapi.dll" "30/10/2015 03:31" "" + "DifxApi" "Driver Install Frameworks for API library module" "Microsoft Corporation" "c:\windows\system32\difxapi.dll" "30/10/2015 03:33" "" + "gdi32" "GDI Client DLL" "Microsoft Corporation" "c:\windows\syswow64\gdi32.dll" "05/01/2016 02:56" "" + "gdi32" "GDI Client DLL" "Microsoft Corporation" "c:\windows\system32\gdi32.dll" "05/01/2016 02:45" "" + "gdiplus" "Microsoft GDI+" "Microsoft Corporation" "c:\windows\syswow64\gdiplus.dll" "24/11/2015 08:59" "" + "gdiplus" "Microsoft GDI+" "Microsoft Corporation" "c:\windows\system32\gdiplus.dll" "24/11/2015 09:52" "" + "IMAGEHLP" "Windows NT Image Helper" "Microsoft Corporation" "c:\windows\syswow64\imagehlp.dll" "30/10/2015 03:35" "" + "IMAGEHLP" "Windows NT Image Helper" "Microsoft Corporation" "c:\windows\system32\imagehlp.dll" "30/10/2015 03:37" "" + "IMM32" "Multi-User Windows IMM32 API Client DLL" "Microsoft Corporation" "c:\windows\syswow64\imm32.dll" "30/10/2015 03:46" "" + "IMM32" "Multi-User Windows IMM32 API Client DLL" "Microsoft Corporation" "c:\windows\system32\imm32.dll" "30/10/2015 03:23" "" + "kernel32" "Windows NT BASE API Client DLL" "Microsoft Corporation" "c:\windows\syswow64\kernel32.dll" "30/10/2015 03:46" "" + "kernel32" "Windows NT BASE API Client DLL" "Microsoft Corporation" "c:\windows\system32\kernel32.dll" "30/10/2015 03:27" "" + "LPK" "Language Pack" "Microsoft Corporation" "c:\windows\syswow64\lpk.dll" "05/11/2015 10:03" "" + "LPK" "Language Pack" "Microsoft Corporation" "c:\windows\system32\lpk.dll" "05/11/2015 11:08" "" + "MSCTF" "MSCTF Server DLL" "Microsoft Corporation" "c:\windows\syswow64\msctf.dll" "16/01/2016 06:19" "" + "MSCTF" "MSCTF Server DLL" "Microsoft Corporation" "c:\windows\system32\msctf.dll" "16/01/2016 06:25" "" + "MSVCRT" "Windows NT CRT DLL" "Microsoft Corporation" "c:\windows\syswow64\msvcrt.dll" "30/10/2015 03:34" "" + "MSVCRT" "Windows NT CRT DLL" "Microsoft Corporation" "c:\windows\system32\msvcrt.dll" "30/10/2015 03:36" "" + "NORMALIZ" "Unicode Normalization DLL" "Microsoft Corporation" "c:\windows\syswow64\normaliz.dll" "30/10/2015 03:41" "" + "NORMALIZ" "Unicode Normalization DLL" "Microsoft Corporation" "c:\windows\system32\normaliz.dll" "30/10/2015 03:43" "" + "NSI" "NSI User-mode interface DLL" "Microsoft Corporation" "c:\windows\syswow64\nsi.dll" "30/10/2015 03:40" "" + "NSI" "NSI User-mode interface DLL" "Microsoft Corporation" "c:\windows\system32\nsi.dll" "30/10/2015 03:41" "" + "ole32" "Microsoft OLE for Windows" "Microsoft Corporation" "c:\windows\syswow64\ole32.dll" "24/02/2016 06:55" "" + "ole32" "Microsoft OLE for Windows" "Microsoft Corporation" "c:\windows\system32\ole32.dll" "24/02/2016 07:23" "" + "OLEAUT32" "" "Microsoft Corporation" "c:\windows\syswow64\oleaut32.dll" "30/10/2015 03:29" "" + "OLEAUT32" "" "Microsoft Corporation" "c:\windows\system32\oleaut32.dll" "30/10/2015 03:31" "" + "PSAPI" "Process Status Helper" "Microsoft Corporation" "c:\windows\syswow64\psapi.dll" "30/10/2015 03:40" "" + "PSAPI" "Process Status Helper" "Microsoft Corporation" "c:\windows\system32\psapi.dll" "30/10/2015 03:41" "" + "rpcrt4" "Remote Procedure Call Runtime" "Microsoft Corporation" "c:\windows\syswow64\rpcrt4.dll" "30/10/2015 03:46" "" + "rpcrt4" "Remote Procedure Call Runtime" "Microsoft Corporation" "c:\windows\system32\rpcrt4.dll" "30/10/2015 03:25" "" + "sechost" "Host for SCM/SDDL/LSA Lookup APIs" "Microsoft Corporation" "c:\windows\syswow64\sechost.dll" "30/10/2015 03:30" "" + "sechost" "Host for SCM/SDDL/LSA Lookup APIs" "Microsoft Corporation" "c:\windows\system32\sechost.dll" "30/10/2015 03:32" "" + "Setupapi" "Windows Setup API" "Microsoft Corporation" "c:\windows\syswow64\setupapi.dll" "30/10/2015 03:24" "" + "Setupapi" "Windows Setup API" "Microsoft Corporation" "c:\windows\system32\setupapi.dll" "30/10/2015 03:26" "" + "SHELL32" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll" "23/02/2016 07:40" "" + "SHELL32" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll" "23/02/2016 07:42" "" + "SHLWAPI" "Shell Light-weight Utility Library" "Microsoft Corporation" "c:\windows\syswow64\shlwapi.dll" "30/10/2015 03:26" "" + "SHLWAPI" "Shell Light-weight Utility Library" "Microsoft Corporation" "c:\windows\system32\shlwapi.dll" "30/10/2015 03:28" "" + "user32" "Multi-User Windows USER API Client DLL" "Microsoft Corporation" "c:\windows\syswow64\user32.dll" "24/11/2015 09:56" "" + "user32" "Multi-User Windows USER API Client DLL" "Microsoft Corporation" "c:\windows\system32\user32.dll" "24/11/2015 09:46" "" + "WLDAP32" "Win32 LDAP API DLL" "Microsoft Corporation" "c:\windows\syswow64\wldap32.dll" "30/10/2015 03:30" "" + "WLDAP32" "Win32 LDAP API DLL" "Microsoft Corporation" "c:\windows\system32\wldap32.dll" "30/10/2015 03:32" "" + "WS2_32" "Windows Socket 2.0 32-Bit DLL" "Microsoft Corporation" "c:\windows\syswow64\ws2_32.dll" "30/10/2015 03:30" "" + "WS2_32" "Windows Socket 2.0 32-Bit DLL" "Microsoft Corporation" "c:\windows\system32\ws2_32.dll" "30/10/2015 03:32" "" "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers" "" "" "" "06/02/2016 15:04" "" + "CCertProvider" "Cert Credential Provider" "Microsoft Corporation" "c:\windows\system32\certcredprovider.dll" "30/10/2015 03:34" "" + "CLCredProv" "CyberLink Credential Provider" "CyberLink" "c:\program files (x86)\cyberlink\youcam\clcredprov\x64\clcredprov.dll" "10/06/2013 05:19" "" + "CngCredUICredentialProvider" "Microsoft CNG CredUI Provider" "Microsoft Corporation" "c:\windows\system32\cngcredui.dll" "30/10/2015 03:38" "" + "FaceCredentialProvider" "Face Credential Provider" "Microsoft Corporation" "c:\windows\system32\facecredentialprovider.dll" "05/01/2016 02:45" "" + "GenericProvider" "Credential Providers" "Microsoft Corporation" "c:\windows\system32\credprovs.dll" "30/10/2015 03:32" "" + "IrisCredentialProvider" "Face Credential Provider" "Microsoft Corporation" "c:\windows\system32\facecredentialprovider.dll" "05/01/2016 02:45" "" + "NGC Credential Provider" "Microsoft Passport Credential Provider" "Microsoft Corporation" "c:\windows\system32\ngccredprov.dll" "30/10/2015 03:28" "" + "NPProvider" "Credential Providers" "Microsoft Corporation" "c:\windows\system32\credprovs.dll" "30/10/2015 03:32" "" + "OmniPassCredProv" "Credential Provider." "Softex Inc.." "c:\program files\hewlett-packard\simplepass\omnipasscredprov.dll" "14/10/2013 17:28" "" + "PasswordProvider" "Credential Providers" "Microsoft Corporation" "c:\windows\system32\credprovs.dll" "30/10/2015 03:32" "" + "PicturePasswordLogonProvider" "Credential Providers" "Microsoft Corporation" "c:\windows\system32\credprovs.dll" "30/10/2015 03:32" "" + "PINLogonProvider" "Credential Providers" "Microsoft Corporation" "c:\windows\system32\credprovs.dll" "30/10/2015 03:32" "" + "Remote NGC Credential Provider" "Microsoft Passport Credential Provider" "Microsoft Corporation" "c:\windows\system32\ngccredprov.dll" "30/10/2015 03:28" "" + "Smartcard Credential Provider" "Windows Smartcard Credential Provider" "Microsoft Corporation" "c:\windows\system32\smartcardcredentialprovider.dll" "30/10/2015 03:28" "" + "Smartcard Pin Provider" "Windows Smartcard Credential Provider" "Microsoft Corporation" "c:\windows\system32\smartcardcredentialprovider.dll" "30/10/2015 03:28" "" + "Smartcard Reader Selection Provider" "Windows Smartcard Credential Provider" "Microsoft Corporation" "c:\windows\system32\smartcardcredentialprovider.dll" "30/10/2015 03:28" "" + "Smartcard WinRT Provider" "Windows Smartcard Credential Provider" "Microsoft Corporation" "c:\windows\system32\smartcardcredentialprovider.dll" "30/10/2015 03:28" "" + "WinBio Credential Provider" "WinBio Credential Provider" "Microsoft Corporation" "c:\windows\system32\biocredprov.dll" "30/10/2015 03:30" "" + "WLIDCredentialProvider" "Microsoft® Account Credential Provider" "Microsoft Corporation" "c:\windows\system32\wlidcredprov.dll" "30/10/2015 03:32" "" "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Provider Filters" "" "" "" "06/02/2016 15:04" "" + "GenericFilter" "Credential Providers" "Microsoft Corporation" "c:\windows\system32\credprovs.dll" "30/10/2015 03:32" "" + "OmniPassCredProv" "Credential Provider." "Softex Inc.." "c:\program files\hewlett-packard\simplepass\omnipasscredprov.dll" "14/10/2013 17:28" "" "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\PLAP Providers" "" "" "" "06/02/2016 14:48" "" + "CRasProvider" "RAS PLAP Credential Provider" "Microsoft Corporation" "c:\windows\system32\rasplap.dll" "30/10/2015 03:33" "" "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GpExtensions" "" "" "" "06/02/2016 14:48" "" + "{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63}" "802.11 Group Policy Client" "Microsoft Corporation" "c:\windows\system32\wlgpclnt.dll" "30/10/2015 03:34" "" + "{16be69fa-4209-4250-88cb-716cf41954e0}" "Windows Audit Settings CSE" "Microsoft Corporation" "c:\windows\system32\auditcse.dll" "30/10/2015 03:32" "" + "{25537BA6-77A8-11D2-9B6C-0000F8080861}" "Folder Redirection Group Policy Extension" "Microsoft Corporation" "c:\windows\system32\fdeploy.dll" "30/10/2015 03:35" "" + "{3610eda5-77ef-11d2-8dc5-00c04fa31a66}" "Windows Shell Disk Quota Support DLL" "Microsoft Corporation" "c:\windows\system32\dskquota.dll" "30/10/2015 03:36" "" + "{426031c0-0b47-4852-b0ca-ac3d37bfcb39}" "GPTExt" "Microsoft Corporation" "c:\windows\system32\gptext.dll" "30/10/2015 03:37" "" + "{4bcd6cde-777b-48b6-9804-43568e23545d}" "Remote Desktop USB Redirection GP Extension" "Microsoft Corporation" "c:\windows\system32\tsusbredirectiongrouppolicyextension.dll" "30/10/2015 03:10" "" + "{4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3}" "IEAK branding" "Microsoft Corporation" "c:\windows\system32\iedkcs32.dll" "16/01/2016 06:35" "" + "{4D2F9B6F-1E52-4711-A382-6A8B1A003DE6}" "RemoteApp and Desktop Connection Component" "Microsoft Corporation" "c:\windows\system32\tsworkspace.dll" "30/10/2015 03:10" "" + "{4d968b55-cac2-4ff5-983f-0a54603781a3}" "Microsoft (C) Work Folders Group Policy Client Extension" "Microsoft Corporation" "c:\windows\system32\workfoldersgpext.dll" "30/10/2015 03:36" "" + "{7933F41E-56F8-41d6-A31C-4148A711EE93}" "Indexing Options" "Microsoft Corporation" "c:\windows\system32\srchadmin.dll" "30/10/2015 03:31" "" + "{7B849a69-220F-451E-B3FE-2CB811AF94AE}" "IEAK branding" "Microsoft Corporation" "c:\windows\system32\iedkcs32.dll" "16/01/2016 06:35" "" + "{827D319E-6EAC-11D2-A4EA-00C04F79F83A}" "Windows Security Configuration Editor Client Engine" "Microsoft Corporation" "c:\windows\system32\scecli.dll" "30/10/2015 03:33" "" + "{8A28E2C5-8D06-49A4-A08C-632DAA493E17}" "Group Policy Printer Extension" "Microsoft Corporation" "c:\windows\system32\gpprnext.dll" "30/10/2015 03:38" "" + "{B587E2B1-4D59-4e7e-AED9-22B9DF11D053}" "802.3 Group Policy Client" "Microsoft Corporation" "c:\windows\system32\dot3gpclnt.dll" "30/10/2015 03:35" "" + "{BA649533-0AAC-4E04-B9BC-4DBAE0325B12}" "Windows To Go Launcher" "Microsoft Corporation" "c:\windows\system32\pwlauncher.dll" "30/10/2015 03:35" "" + "{C34B2751-1CF4-44F5-9262-C3FC39666591}" "Windows To Go Launcher" "Microsoft Corporation" "c:\windows\system32\pwlauncher.dll" "30/10/2015 03:35" "" + "{cdeafc3d-948d-49dd-ab12-e578ba4af7aa}" "GPTExt" "Microsoft Corporation" "c:\windows\system32\gptext.dll" "30/10/2015 03:37" "" + "{CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D}" "IEAK branding" "Microsoft Corporation" "c:\windows\system32\iedkcs32.dll" "16/01/2016 06:35" "" + "{e437bc1c-aa7d-11d2-a382-00c04f991e27}" "Policy Storage dll" "Microsoft Corporation" "c:\windows\system32\polstore.dll" "30/10/2015 03:33" "" + "{f3ccc681-b74c-4060-9f26-cd84525dca2a}" "Windows Audit Settings CSE" "Microsoft Corporation" "c:\windows\system32\auditcse.dll" "30/10/2015 03:32" "" + "{FB2CA36D-0B40-4307-821B-A13B252DE56C}" "GPTExt" "Microsoft Corporation" "c:\windows\system32\gptext.dll" "30/10/2015 03:37" "" + "{fbf687e6-f063-4d9f-9f4f-fd9a26acdd5f}" "GPTExt" "Microsoft Corporation" "c:\windows\system32\gptext.dll" "30/10/2015 03:37" "" "HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries" "" "" "" "06/02/2016 14:48" "" + "Hyper-V RAW" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "MSAFD Tcpip [RAW/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "MSAFD Tcpip [RAW/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "MSAFD Tcpip [TCP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "MSAFD Tcpip [TCP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "MSAFD Tcpip [UDP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "MSAFD Tcpip [UDP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "RSVP TCP Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "RSVP TCPv6 Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "RSVP UDP Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "RSVP UDPv6 Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" "HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries" "" "" "" "06/02/2016 15:08" "" + "E-mail Naming Shim Provider" "E-mail Naming Shim Provider" "Microsoft Corporation" "c:\windows\system32\napinsp.dll" "30/10/2015 03:36" "" + "mdnsNSP" "Bonjour Namespace Provider" "Apple Inc." "c:\program files (x86)\bonjour\mdnsnsp.dll" "12/08/2015 23:48" "" + "Network Location Awareness Legacy (NLAv1) Namespace" "Network Location Awareness 2" "Microsoft Corporation" "c:\windows\system32\nlaapi.dll" "30/10/2015 03:37" "" + "NTDS" "LDAP RnR Provider DLL" "Microsoft Corporation" "c:\windows\system32\winrnr.dll" "30/10/2015 03:37" "" + "PNRP Cloud Namespace Provider" "PNRP Name Space Provider" "Microsoft Corporation" "c:\windows\system32\pnrpnsp.dll" "30/10/2015 03:36" "" + "PNRP Name Namespace Provider" "PNRP Name Space Provider" "Microsoft Corporation" "c:\windows\system32\pnrpnsp.dll" "30/10/2015 03:36" "" + "Tcpip" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" "HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64" "" "" "" "06/02/2016 14:48" "" + "Hyper-V RAW" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "MSAFD Tcpip [RAW/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "MSAFD Tcpip [RAW/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "MSAFD Tcpip [TCP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "MSAFD Tcpip [TCP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "MSAFD Tcpip [UDP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "MSAFD Tcpip [UDP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "RSVP TCP Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "RSVP TCPv6 Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "RSVP UDP Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" + "RSVP UDPv6 Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" "HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64" "" "" "" "06/02/2016 15:08" "" + "E-mail Naming Shim Provider" "E-mail Naming Shim Provider" "Microsoft Corporation" "c:\windows\system32\napinsp.dll" "30/10/2015 03:36" "" + "mdnsNSP" "Bonjour Namespace Provider" "Apple Inc." "c:\program files\bonjour\mdnsnsp.dll" "12/08/2015 23:47" "" + "Network Location Awareness Legacy (NLAv1) Namespace" "Network Location Awareness 2" "Microsoft Corporation" "c:\windows\system32\nlaapi.dll" "30/10/2015 03:37" "" + "NTDS" "LDAP RnR Provider DLL" "Microsoft Corporation" "c:\windows\system32\winrnr.dll" "30/10/2015 03:37" "" + "PNRP Cloud Namespace Provider" "PNRP Name Space Provider" "Microsoft Corporation" "c:\windows\system32\pnrpnsp.dll" "30/10/2015 03:36" "" + "PNRP Name Namespace Provider" "PNRP Name Space Provider" "Microsoft Corporation" "c:\windows\system32\pnrpnsp.dll" "30/10/2015 03:36" "" + "Tcpip" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll" "30/10/2015 03:31" "" "HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors" "" "" "" "06/02/2016 15:07" "" + "EPSON Stylus DX4800 Series 64MonitorBE" "EPSON Bi-directional Monitor" "SEIKO EPSON CORPORATION" "c:\windows\system32\e_ilmade.dll" "09/06/2005 06:33" "" + "HP Universal Port Monitor" "Port Monitor Server DLL" "Hewlett-Packard" "c:\windows\system32\hpbprtmon.dll" "09/08/2013 16:42" "" + "Local Port" "Local Spooler DLL" "Microsoft Corporation" "c:\windows\system32\localspl.dll" "23/02/2016 08:37" "" + "Microsoft Shared Fax Monitor" "Microsoft Fax Print Monitor" "Microsoft Corporation" "c:\windows\system32\fxsmon.dll" "30/10/2015 03:38" "" + "Standard TCP/IP Port" "Standard TCP/IP Port Monitor DLL" "Microsoft Corporation" "c:\windows\system32\tcpmon.dll" "30/10/2015 03:29" "" + "USB Monitor" "Standard Dynamic Printing Port Monitor DLL" "Microsoft Corporation" "c:\windows\system32\usbmon.dll" "23/02/2016 09:27" "" + "WSD Port" "WSD Printer Port Monitor" "Microsoft Corporation" "c:\windows\system32\wsdmon.dll" "30/10/2015 03:29" "" "HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders" "" "" "" "06/02/2016 14:48" "" + "credssp.dll" "Credential Delegation Security Package" "Microsoft Corporation" "c:\windows\system32\credssp.dll" "30/10/2015 03:41" "" "HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Authentication Packages" "" "" "" "15/04/2016 21:51" "" + "msv1_0" "Microsoft Authentication Package v1.0" "Microsoft Corporation" "c:\windows\system32\msv1_0.dll" "29/03/2016 08:26" "" "HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Notification Packages" "" "" "" "15/04/2016 21:51" "" + "scecli" "Windows Security Configuration Editor Client Engine" "Microsoft Corporation" "c:\windows\system32\scecli.dll" "30/10/2015 03:33" "" "HKLM\SYSTEM\CurrentControlSet\Control\Lsa\OSConfig\Security Packages" "" "" "" "30/10/2015 08:25" "" + "cloudAP" "Cloud AP Security Package" "Microsoft Corporation" "c:\windows\system32\cloudap.dll" "30/10/2015 03:38" "" + "kerberos" "Kerberos Security Package" "Microsoft Corporation" "c:\windows\system32\kerberos.dll" "29/03/2016 08:15" "" + "msv1_0" "Microsoft Authentication Package v1.0" "Microsoft Corporation" "c:\windows\system32\msv1_0.dll" "29/03/2016 08:26" "" + "pku2u" "Pku2u Security Package" "Microsoft Corporation" "c:\windows\system32\pku2u.dll" "30/10/2015 03:34" "" + "schannel" "TLS / SSL Security Provider" "Microsoft Corporation" "c:\windows\system32\schannel.dll" "05/01/2016 02:47" "" + "tspkg" "Web Service Security Package" "Microsoft Corporation" "c:\windows\system32\tspkg.dll" "30/10/2015 03:37" "" + "wdigest" "Microsoft Digest Access" "Microsoft Corporation" "c:\windows\system32\wdigest.dll" "30/10/2015 03:36" "" "HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order" "" "" "" "06/02/2016 14:48" "" + "LanmanWorkstation" "Microsoft Windows Network" "Microsoft Corporation" "c:\windows\system32\ntlanman.dll" "30/10/2015 03:36" "" + "RDPNP" "Microsoft Terminal Services" "Microsoft Corporation" "c:\windows\system32\drprov.dll" "30/10/2015 03:10" "" + "webclient" "Web Client Network" "Microsoft Corporation" "c:\windows\system32\davclnt.dll" "30/10/2015 03:37" "" "HKLM\Software\Microsoft\Office\Outlook\Addins" "" "" "" "30/03/2016 17:58" "" + "Apple DAV Outlook Addin" "" "" "" "06/02/2016 15:04" "" + "Connect Class" "OutlookChangeNotifier" "Apple Inc." "c:\program files\common files\apple\mobile device support\outlookchangenotifieraddin.dll" "04/08/2015 22:54" "" + "Windows_Search_OutlookToolbar" "Outlook MSSearch Connector" "Microsoft Corporation" "c:\windows\system32\mssphtb.dll" "30/10/2015 03:30" "" "HKLM\Software\Wow6432Node\Microsoft\Office\Outlook\Addins" "" "" "" "30/03/2016 17:58" "" X "Windows_Search_OutlookToolbar" "Outlook MSSearch Connector" "Microsoft Corporation" "c:\windows\syswow64\mssphtb.dll" "30/10/2015 03:28" ""