[Logon] [HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell] [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell] [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] + "CCleaner Monitoring" "CCleaner" "(Verified) Piriform Ltd" "C:\Program Files\CCleaner\CCleaner64.exe" "Wed Jul 13 13:40:28 2016" " + "ProtonVPN" "Proton VPN" "(Verified) Proton Technologies AG" "C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.exe" "Wed Jul 5 05:04:01 2023" " + "SUPERAntiSpyware" "SUPERAntiSpyware Application" "(Verified) Support.com, Inc." "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" "Sat Feb 25 23:51:51 2023" " [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx] [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run] [HKCU\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] [HKCU\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce] [HKCU\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnceEx] [HKCU\Environment\UserInitMprLogonScript] [HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Load] [HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Run] [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\RunOnce] [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\RunOnceEx] [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\Run] [HKLM\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\StartupPrograms] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\AppSetup] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] + "AmIcoSinglun64" "Single LUN Icon Utility for VID 058F PID 6366" "(Not Verified) Alcor Micro Corp." "C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" "Mon Mar 21 01:07:02 2011" " + "HotKeysCmds" "hkcmd Module" "(Verified) Intel Corporation" "C:\Windows\system32\hkcmd.exe" "Thu Nov 3 03:09:32 2011" " + "IgfxTray" "igfxTray Module" "(Verified) Intel Corporation" "C:\Windows\system32\igfxtray.exe" "Thu Nov 3 03:09:34 2011" " + "MSC" "Microsoft Security Client User Interface" "(Verified) Microsoft Corporation" "C:\Program Files\Microsoft Security Client\msseces.exe" "Mon Nov 14 20:57:26 2016" " + "RtHDVBg" "HD Audio Background Process" "(Verified) Realtek Semiconductor Corp." "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" "Thu Dec 15 16:56:02 2016" " + "SynAsusAcpi" "Asus Custom Acpi Monitor Application" "(Verified) Synaptics Incorporated" "C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe" "Thu May 5 05:30:56 2011" " + "SynTPEnh" "Synaptics TouchPad Enhancements" "(Verified) Synaptics Incorporated" "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" "Thu May 5 05:30:28 2011" " [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx] [HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell] + "explorer.exe" "Windows Explorer" "(Verified) Microsoft Windows" "C:\Windows\explorer.exe" "Mon Aug 29 08:04:37 2016" " [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\AlternateShell] + "cmd.exe" "Windows Command Processor" "(Verified) Microsoft Windows" "C:\Windows\system32\cmd.exe" "Sat Nov 20 05:24:34 2010" " [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\TaskMan] [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\UserInit] + "C:\Windows\system32\userinit.exe" "Userinit Logon Application" "(Verified) Microsoft Windows" "C:\Windows\system32\userinit.exe" "Sat Nov 20 05:25:26 2010" " [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\VmApplet] + "SystemPropertiesPerformance.exe /pagefile" "Change Computer Performance Settings" "(Verified) Microsoft Windows" "C:\Windows\system32\SystemPropertiesPerformance.exe" "Mon Jul 13 18:39:47 2009" " [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AlternateShells\AvailableShells] [HKLM\Environment\UserInitMprLogonScript] [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components] + "Disable SSL3" "IE Per-User Initialization Utility" "(Verified) Microsoft Windows" "C:\Windows\System32\ie4uinit.exe" "Mon Dec 16 16:16:41 2019" " + "Enable TLS1.1 and 1.2" "IE Per-User Initialization Utility" "(Verified) Microsoft Windows" "C:\Windows\System32\ie4uinit.exe" "Mon Dec 16 16:16:41 2019" " + "Internet Explorer" "Windows Command Processor" "(Verified) Microsoft Windows" "C:\Windows\system32\cmd.exe" "Sat Nov 20 05:24:34 2010" " + "Microsoft Windows" "Windows Mail" "(Verified) Microsoft Windows" "C:\Program Files (x86)\Windows Mail\WinMail.exe" "Mon Jul 13 18:14:45 2009" " + "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "(Verified) Microsoft Windows" "C:\Windows\system32\unregmp2.exe" "Mon Jul 13 18:39:48 2009" " + "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "(Verified) Microsoft Windows" "C:\Windows\system32\unregmp2.exe" "Mon Jul 13 18:39:48 2009" " + "n/a" "Microsoft .NET IE SECURITY REGISTRATION" "(Verified) Microsoft Corporation" "C:\Windows\system32\mscories.dll" "Wed Jun 18 15:23:33 2014" " + "Themes Setup" "Microsoft(C) Register Server" "(Verified) Microsoft Windows" "C:\Windows\system32\regsvr32.exe" "Mon Jul 13 18:39:29 2009" " + "Web Platform Customizations" "IE Per-User Initialization Utility" "(Verified) Microsoft Windows" "C:\Windows\System32\ie4uinit.exe" "Mon Dec 16 16:16:41 2019" " + "Windows Desktop Update" "Microsoft(C) Register Server" "(Verified) Microsoft Windows" "C:\Windows\system32\regsvr32.exe" "Mon Jul 13 18:39:29 2009" " [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\IconServiceLib] + "IconCodecService.dll" "Converts a PNG part of the icon to a legacy bmp icon" "(Verified) Microsoft Windows" "C:\Windows\system32\IconCodecService.dll" "Mon Jul 13 18:41:05 2009" " [HKLM\SOFTWARE\Microsoft\Windows CE Services\AutoStartOnConnect] [HKLM\SOFTWARE\Microsoft\Windows CE Services\AutoStartDisconnect] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] + "ACMON" "ACMON " "(Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\Splendid\ACMON.exe" "Tue Feb 21 14:49:04 2012" " + "Adobe Reader Speed Launcher" "" "" "File not found: "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"" "" " + "ASUSPRP" "ASUS Product Register Program" "(Not Verified) ASUSTek Computer Inc." "C:\Program Files (x86)\ASUS\APRP\APRP.EXE" "Fri Feb 17 23:46:03 2012" " + "ATKMEDIA" "ATK Media" "(Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" "Mon Oct 24 17:20:38 2011" " + "ATKOSD2" "ATKOSD2" "(Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" "Thu Dec 22 18:58:42 2011" " + "BCSSync" "Microsoft Office 2010 component" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" "Mon Nov 5 14:27:46 2012" " + "BrMfcWnd" "Brother Status Monitor Application" "(Not Verified) Brother Industries, Ltd." "C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe" "Tue May 26 16:46:10 2009" " + "ControlCenter3" "ControlCenter Program" "(Not Verified) Brother Industries, Ltd." "C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe" "Wed Dec 24 09:26:54 2008" " + "HControlUser" "HControlUser" "(Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" "Fri Jun 19 10:29:42 2009" " + "IndexSearch" "PaperPort IndexSearch" "(Not Verified) ScanSoft, Inc." "C:\Program Files (x86)\ScanSoft\PaperPort\IndexSearch.exe" "Wed Apr 14 15:04:12 2004" " + "mcui_exe" "" "" "File not found: "C:\Program Files\McAfee.com\Agent\mcagent.exe"" "" " + "PaperPort PTD" "PaperPort Print to Desktop for NT" "(Not Verified) ScanSoft, Inc." "C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe" "Wed Apr 14 14:46:50 2004" " + "SonicMasterTray" "ASUS_MATray.exe" "(Verified) Sonic Focus, Inc." "C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe" "Fri Jul 9 22:45:00 2010" " + "SSBkgdUpdate" "SSBkgdUpdate" "(Not Verified) Scansoft, Inc." "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" "Tue Oct 14 10:22:30 2003" " [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce] [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnceEx] [HKLM\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components] + "Internet Explorer" "Windows Command Processor" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\cmd.exe" "Sat Nov 20 04:17:02 2010" " + "Microsoft Windows" "Windows Mail" "(Not Verified) Microsoft Corporation" "C:\Program Files\Windows Mail\WinMail.exe" "Mon Jul 13 18:39:53 2009" " + "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\unregmp2.exe" "Mon Jul 13 18:14:43 2009" " + "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\unregmp2.exe" "Mon Jul 13 18:14:43 2009" " + "n/a" "Microsoft .NET IE SECURITY REGISTRATION" "(Verified) Microsoft Corporation" "C:\Windows\System32\mscories.dll" "Wed Jun 18 15:23:32 2014" " + "Themes Setup" "Microsoft(C) Register Server" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\regsvr32.exe" "Mon Jul 13 18:14:30 2009" " + "Windows Desktop Update" "Microsoft(C) Register Server" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\regsvr32.exe" "Mon Jul 13 18:14:30 2009" " [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows CE Services\AutoStartOnConnect] [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows CE Services\AutoStartOnDisconnect] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\RunOnce] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\RunOnceEx] [HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\InitialProgram] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] [C:\Users\Tom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup] + "ft3vxlfokpp.lnk" "" "(Not Verified) " "C:\Users\Tom\i1sh3ichlby.ngca5ooryd1" "Fri Jan 27 20:44:11 2023" " + "k5vy1tmqhto.lnk" "" "(Not Verified) " "C:\Users\Tom\ecnlyjzhn0q.oo23k1fdnr4" "Fri Jan 27 20:44:36 2023" " + "OneNote 2010 Screen Clipper and Launcher.lnk" "Microsoft OneNote Quick Launcher" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" "Tue Oct 13 12:12:44 2015" " [C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup] + "AsusVibeLauncher.lnk" "AsusVibe Application" "(Not Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe" "Thu Jan 12 15:04:36 2012" " + "Device Detector 4.lnk" "Device Detector 4" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\OLYMPUS\DeviceDetector\DeviceDetector4.exe" "Fri Feb 10 12:13:42 2012" " + "Directrec Configuration Tool.lnk" "Directrec Configuration Tool" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\OLYMPUS\DirectrecConfig\DirectrecConfigurationTool.exe" "Fri Feb 10 12:13:36 2012" " + "FancyStart daemon.lnk" "" "(Not Verified) " "C:\Windows\Installer\{C944B4C5-1C4D-4D95-8AC0-7CEF13914131}\_77B5857C27147149171BE7.exe" "Tue May 29 22:34:19 2012" " [%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup] [HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logon] [HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logoff] [HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup] [HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Logon] [HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Logoff] [HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Shutdown] [HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Startup] [HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logon] [HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logoff] [HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Shutdown] [HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Shutdown] [HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Logoff] [HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Logon] [HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup] [Explorer] [HKCU\SOFTWARE\Classes\Protocols\Filter] [HKCU\SOFTWARE\Classes\Protocols\Handler] [HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components] [HKCU\Software\Classes\*\ShellEx\ContextMenuHandlers] [HKCU\Software\Classes\Drive\ShellEx\ContextMenuHandlers] [HKCU\Software\Classes\*\ShellEx\PropertySheetHandlers] [HKCU\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers] [HKCU\Software\Classes\AllFileSystemObjects\ShellEx\DragDropHandlers] [HKCU\Software\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers] [HKCU\Software\Classes\Directory\ShellEx\ContextMenuHandlers] [HKCU\Software\Classes\Directory\ShellEx\DragDropHandlers] [HKCU\Software\Classes\Directory\ShellEx\PropertySheetHandlers] [HKCU\Software\Classes\Directory\ShellEx\CopyHookHandlers] [HKCU\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers] [HKCU\Software\Classes\Folder\ShellEx\ContextMenuHandlers] [HKCU\Software\Classes\Folder\ShellEx\DragDropHandlers] [HKCU\Software\Classes\Folder\ShellEx\PropertySheetHandlers] [HKCU\Software\Classes\Folder\ShellEx\ColumnHandlers] [HKCU\Software\Classes\Folder\ShellEx\ExtShellFolderViews] [HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers] [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] [HKCU\Software\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\InProcServer32] [HKCU\Software\Microsoft\Ctf\LangBarAddin] [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler] [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] + "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}" "Microsoft SharePoint Workspace" "(Verified) Microsoft Corporation" "C:\PROGRA~2\MICROS~1\Office14\GROOVE.EXE" "Wed Dec 18 23:41:02 2013" " [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects] + "Published Items Shell Service Object" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " + "Microsoft VolumeControlService Class" "SCA Volume" "(Verified) Microsoft Windows" "C:\Windows\System32\SndVolSSO.dll" "Sat Nov 20 05:27:28 2010" " + "Device Stage Shell Extension" "Device Stage Shell Extension" "(Verified) Microsoft Windows" "C:\Windows\system32\dxp.dll" "Sat Nov 20 05:26:10 2010" " + "UnexpectedShutdownReason" "Systray shell service object" "(Verified) Microsoft Windows" "C:\Windows\system32\stobject.dll" "Sat Nov 20 05:27:28 2010" " + "MediaCenterSSO Class" "Windows Media Center Shell Service Object" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehSSO.dll" "Mon Jul 13 18:40:36 2009" " + "Network Connections Tray" "Network Connections Shell" "(Verified) Microsoft Windows" "C:\Windows\System32\netshell.dll" "Sat Nov 20 05:27:24 2010" " + "PostBootReminder object" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " + "User Account Control Check Service" "Action Center Providers" "(Verified) Microsoft Windows" "C:\Windows\System32\hcproviders.dll" "Mon Jul 13 18:40:59 2009" " + "AltTab" "Windows Shell Alt Tab" "(Verified) Microsoft Windows" "C:\Windows\System32\AltTab.dll" "Mon Jul 13 18:40:01 2009" " + "WPDShServiceObj Class" "Windows Portable Device Shell Service Object" "(Verified) Microsoft Windows" "C:\Windows\system32\wpdshserviceobj.dll" "Sat Nov 20 05:27:30 2010" " + "Network Tray SSO" "Network System Icon" "(Verified) Microsoft Windows" "C:\Windows\System32\pnidui.dll" "Sat Nov 20 05:27:24 2010" " + "Windows Search Shell Service Object" "Indexing Options" "(Verified) Microsoft Windows" "C:\Windows\System32\srchadmin.dll" "Sat Nov 20 05:27:28 2010" " + "WebCheck" "Shell Doc Object and Control Library" "(Verified) Microsoft Windows" "C:\Windows\system32\shdocvw.dll" "Sat Aug 19 08:28:46 2017" " + "Bluetooth Authentication Agent SSO" "Bluetooth Control Panel Applet" "(Verified) Microsoft Windows" "C:\Windows\System32\bthprops.cpl" "Sat Nov 20 05:24:24 2010" " + "Sync Center Shell Service Object (Internal)" "Microsoft Sync Center" "(Verified) Microsoft Windows" "C:\Windows\System32\SyncCenter.dll" "Sat Nov 20 05:27:28 2010" " + "Action Center Shell Service Object" "Action Center" "(Verified) Microsoft Windows" "C:\Windows\System32\Actioncenter.dll" "Sat Nov 20 05:25:40 2010" " + "ShellFolder for CD Burning" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " + "HomeGroup SSO" "HomeGroup Control Panel" "(Verified) Microsoft Windows" "C:\Windows\System32\hgcpl.dll" "Sat Nov 20 05:26:30 2010" " [HKLM\SOFTWARE\Classes\Protocols\Filter] + "application/octet-stream" "Microsoft .NET Runtime Execution Engine" "(Verified) Microsoft Corporation" "mscoree.dll" "Thu Nov 4 18:58:20 2010" " + "application/x-complus" "Microsoft .NET Runtime Execution Engine" "(Verified) Microsoft Corporation" "mscoree.dll" "Thu Nov 4 18:58:20 2010" " + "application/x-msdownload" "Microsoft .NET Runtime Execution Engine" "(Verified) Microsoft Corporation" "mscoree.dll" "Thu Nov 4 18:58:20 2010" " + "text/xml" "Microsoft Office XML MIME Filter" "(Verified) Microsoft Corporation" "C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL" "Sun Feb 28 02:24:28 2010" " [HKLM\SOFTWARE\Classes\Protocols\Handler] + "about" "Microsoft (R) HTML Viewer" "(Verified) Microsoft Windows" "C:\Windows\System32\mshtml.dll" "Mon Dec 16 18:39:39 2019" " + "cdl" "OLE32 Extensions for Win32" "(Verified) Microsoft Windows" "C:\Windows\system32\urlmon.dll" "Mon Dec 16 15:52:03 2019" " + "dssrequest" "SiteAdvisor" "(Verified) McAfee, Inc." "c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll" "Thu Apr 24 12:12:06 2014" " + "dvd" "ActiveX control for streaming video" "(Verified) Microsoft Windows" "C:\Windows\System32\msvidctl.dll" "Sat Feb 10 10:11:14 2018" " + "file" "OLE32 Extensions for Win32" "(Verified) Microsoft Windows" "C:\Windows\system32\urlmon.dll" "Mon Dec 16 15:52:03 2019" " + "ftp" "OLE32 Extensions for Win32" "(Verified) Microsoft Windows" "C:\Windows\system32\urlmon.dll" "Mon Dec 16 15:52:03 2019" " + "http" "OLE32 Extensions for Win32" "(Verified) Microsoft Windows" "C:\Windows\system32\urlmon.dll" "Mon Dec 16 15:52:03 2019" " + "https" "OLE32 Extensions for Win32" "(Verified) Microsoft Windows" "C:\Windows\system32\urlmon.dll" "Mon Dec 16 15:52:03 2019" " + "its" "Microsoft® InfoTech Storage System Library" "(Verified) Microsoft Windows" "C:\Windows\System32\itss.dll" "Wed Apr 11 09:38:46 2018" " + "javascript" "Microsoft (R) HTML Viewer" "(Verified) Microsoft Windows" "C:\Windows\System32\mshtml.dll" "Mon Dec 16 18:39:39 2019" " + "local" "OLE32 Extensions for Win32" "(Verified) Microsoft Windows" "C:\Windows\system32\urlmon.dll" "Mon Dec 16 15:52:03 2019" " + "mailto" "Microsoft (R) HTML Viewer" "(Verified) Microsoft Windows" "C:\Windows\System32\mshtml.dll" "Mon Dec 16 18:39:39 2019" " + "mhtml" "Microsoft Internet Messaging API Resources" "(Verified) Microsoft Windows" "C:\Windows\system32\inetcomm.dll" "Sun Dec 31 18:18:21 2017" " + "mk" "OLE32 Extensions for Win32" "(Verified) Microsoft Windows" "C:\Windows\system32\urlmon.dll" "Mon Dec 16 15:52:03 2019" " + "ms-its" "Microsoft® InfoTech Storage System Library" "(Verified) Microsoft Windows" "C:\Windows\System32\itss.dll" "Wed Apr 11 09:38:46 2018" " + "res" "Microsoft (R) HTML Viewer" "(Verified) Microsoft Windows" "C:\Windows\System32\mshtml.dll" "Mon Dec 16 18:39:39 2019" " + "sacore" "SiteAdvisor" "(Verified) McAfee, Inc." "c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll" "Thu Apr 24 12:12:06 2014" " + "tv" "ActiveX control for streaming video" "(Verified) Microsoft Windows" "C:\Windows\System32\msvidctl.dll" "Sat Feb 10 10:11:14 2018" " + "vbscript" "Microsoft (R) HTML Viewer" "(Verified) Microsoft Windows" "C:\Windows\System32\mshtml.dll" "Mon Dec 16 18:39:39 2019" " [HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers] + "BriefcaseMenu" "Windows Briefcase" "(Verified) Microsoft Windows" "C:\Windows\system32\syncui.dll" "Sat Nov 20 05:27:28 2010" " + "EPP" "Microsoft Security Client Shell Extension" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~3\shellext.dll" "Mon Nov 14 20:55:28 2016" " + "Open With" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " + "Open With EncryptionMenu" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " + "Sharing" "Shell extensions for sharing" "(Verified) Microsoft Windows" "C:\Windows\system32\ntshrui.dll" "Wed Jan 4 02:44:20 2012" " + "SimpleShlExt" "EaseUS Todo Backup Application" "(Not Verified) CHENGDU YIWO Tech Development Co.,Ltd" "C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll" "Mon Sep 4 18:47:58 2017" " + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "Taskband Pin" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " + "Start Menu Pin" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " + "SUPERAntiSpyware Context Menu" "SUPERAntiSpyware Context Menu Extension" "(Verified) SUPERAntiSpyware.com" "C:\Program Files\SUPERAntiSpyware\SASCTXMN64.DLL" "Fri Jun 6 11:40:33 2014" " [HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers] + "EnhancedStorageShell" "Windows Enhanced Storage Shell Extension DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\EhStorShell.dll" "Mon Jul 13 18:40:36 2009" " + "EPP" "Microsoft Security Client Shell Extension" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~3\shellext.dll" "Mon Nov 14 20:55:28 2016" " + "Sharing" "Shell extensions for sharing" "(Verified) Microsoft Windows" "C:\Windows\system32\ntshrui.dll" "Wed Jan 4 02:44:20 2012" " + "SimpleShlExt" "EaseUS Todo Backup Application" "(Not Verified) CHENGDU YIWO Tech Development Co.,Ltd" "C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll" "Mon Sep 4 18:47:58 2017" " + "Disk Copy Extension" "Windows DiskCopy" "(Verified) Microsoft Windows" "C:\Windows\system32\diskcopy.dll" "Mon Jul 13 18:40:31 2009" " + "Previous Versions Property Page" "Previous Versions property page" "(Verified) Microsoft Windows" "C:\Windows\system32\twext.dll" "Sat Nov 20 05:27:28 2010" " + "Portable Devices Menu" "Portable Devices Shell Extension" "(Verified) Microsoft Windows" "C:\Windows\system32\wpdshext.dll" "Sat Nov 20 05:27:30 2010" " + "ShellFolder for CD Burning" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " [HKLM\Software\Classes\*\ShellEx\PropertySheetHandlers] + "BriefcasePage" "Windows Briefcase" "(Verified) Microsoft Windows" "C:\Windows\system32\syncui.dll" "Sat Nov 20 05:27:28 2010" " + "CryptoSignMenu" "Crypto Shell Extensions" "(Verified) Microsoft Windows" "C:\Windows\system32\cryptext.dll" "Mon Jul 13 18:40:24 2009" " + "Security Shell Extension" "Security Shell Extension" "(Verified) Microsoft Windows" "C:\Windows\system32\rshx32.dll" "Mon Jul 13 18:41:53 2009" " + "OLE DocFile Property Page" "OLE DocFile Property Page" "(Verified) Microsoft Windows" "C:\Windows\system32\docprop.dll" "Mon Jul 13 18:40:32 2009" " + "Summary Properties Page" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " [HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers] + "CopyAsPathMenu" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " + "SendTo" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "Previous Versions Property Page" "Previous Versions property page" "(Verified) Microsoft Windows" "C:\Windows\system32\twext.dll" "Sat Nov 20 05:27:28 2010" " + "SUPERAntiSpyware Context Menu" "SUPERAntiSpyware Context Menu Extension" "(Verified) SUPERAntiSpyware.com" "C:\Program Files\SUPERAntiSpyware\SASCTXMN64.DLL" "Fri Jun 6 11:40:33 2014" " [HKLM\Software\Classes\AllFileSystemObjects\ShellEx\DragDropHandlers] [HKLM\Software\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers] + "Previous Versions Property Page" "Previous Versions property page" "(Verified) Microsoft Windows" "C:\Windows\system32\twext.dll" "Sat Nov 20 05:27:28 2010" " [HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers] + "EncryptionMenu" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " + "EPP" "Microsoft Security Client Shell Extension" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~3\shellext.dll" "Mon Nov 14 20:55:28 2016" " + "Sharing" "Shell extensions for sharing" "(Verified) Microsoft Windows" "C:\Windows\system32\ntshrui.dll" "Wed Jan 4 02:44:20 2012" " + "SimpleShlExt" "EaseUS Todo Backup Application" "(Not Verified) CHENGDU YIWO Tech Development Co.,Ltd" "C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll" "Mon Sep 4 18:47:58 2017" " + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "Previous Versions Property Page" "Previous Versions property page" "(Verified) Microsoft Windows" "C:\Windows\system32\twext.dll" "Sat Nov 20 05:27:28 2010" " + "SUPERAntiSpyware Context Menu" "SUPERAntiSpyware Context Menu Extension" "(Verified) SUPERAntiSpyware.com" "C:\Program Files\SUPERAntiSpyware\SASCTXMN64.DLL" "Fri Jun 6 11:40:33 2014" " [HKLM\Software\Classes\Directory\ShellEx\DragDropHandlers] [HKLM\Software\Classes\Directory\ShellEx\PropertySheetHandlers] + "Sharing" "Shell extensions for sharing" "(Verified) Microsoft Windows" "C:\Windows\system32\ntshrui.dll" "Wed Jan 4 02:44:20 2012" " + "Security Shell Extension" "Security Shell Extension" "(Verified) Microsoft Windows" "C:\Windows\system32\rshx32.dll" "Mon Jul 13 18:41:53 2009" " + "MyFolder menu and properties" "My Documents Folder UI" "(Verified) Microsoft Windows" "C:\Windows\system32\mydocs.dll" "Sat Nov 20 05:27:24 2010" " + "Previous Versions Property Page" "Previous Versions property page" "(Verified) Microsoft Windows" "C:\Windows\system32\twext.dll" "Sat Nov 20 05:27:28 2010" " + "DfsShell Class" "Distributed File System shell extension" "(Verified) Microsoft Windows" "C:\Windows\system32\DfsShlEx.dll" "Mon Jul 13 18:40:28 2009" " + "Folder Customization Tab" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " [HKLM\Software\Classes\Directory\ShellEx\CopyHookHandlers] + "FileSystem" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " + "Sharing" "Shell extensions for sharing" "(Verified) Microsoft Windows" "C:\Windows\system32\ntshrui.dll" "Wed Jan 4 02:44:20 2012" " [HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers] + "Gadgets" "Sidebar droptarget" "(Verified) Microsoft Windows" "C:\Program Files (x86)\Windows Sidebar\sbdrop.dll" "Mon Jul 13 18:16:13 2009" " + "igfxcui" "igfxpph Module" "(Verified) Microsoft Windows Hardware Compatibility Publisher" "C:\Windows\system32\igfxpph.dll" "Thu Nov 3 03:09:26 2011" " + "New" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " + "Sharing" "Shell extensions for sharing" "(Verified) Microsoft Windows" "C:\Windows\system32\ntshrui.dll" "Wed Jan 4 02:44:20 2012" " + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " [HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers] + "BriefcaseMenu" "Windows Briefcase" "(Verified) Microsoft Windows" "C:\Windows\system32\syncui.dll" "Sat Nov 20 05:27:28 2010" " + "Library Location" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\shell32.dll" "Fri May 24 17:04:16 2019" " + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " [HKLM\Software\Classes\Folder\ShellEx\DragDropHandlers] + "Compressed (zipped) Folder Right Drag Handler" "Compressed (zipped) Folders" "(Verified) Microsoft Windows" "C:\Windows\system32\zipfldr.dll" "Fri Jun 8 09:21:06 2018" " [HKLM\Software\Classes\Folder\ShellEx\PropertySheetHandlers] + "BriefcasePage" "Windows Briefcase" "(Verified) Microsoft Windows" "C:\Windows\system32\syncui.dll" "Sat Nov 20 05:27:28 2010" " [HKLM\Software\Classes\Folder\ShellEx\ColumnHandlers] [HKLM\Software\Classes\Folder\ShellEx\ExtShellFolderViews] [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers] + "EnhancedStorageShell" "Windows Enhanced Storage Shell Extension DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\EhStorShell.dll" "Mon Jul 13 18:40:36 2009" " + "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "SharingPrivate" "Shell extensions for sharing" "(Verified) Microsoft Windows" "C:\Windows\system32\ntshrui.dll" "Wed Jan 4 02:44:20 2012" " [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] [HKLM\Software\Microsoft\Ctf\LangBarAddin] [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler] [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] + "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}" "Microsoft SharePoint Workspace" "(Verified) Microsoft Corporation" "C:\PROGRA~2\MICROS~1\Office14\GROOVE.EXE" "Wed Dec 18 23:41:02 2013" " [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects] + "Published Items Shell Service Object" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\shell32.dll" "Fri May 24 16:59:03 2019" " + "Microsoft VolumeControlService Class" "SCA Volume" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\SndVolSSO.dll" "Sat Nov 20 04:21:24 2010" " + "UnexpectedShutdownReason" "Systray shell service object" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\stobject.dll" "Sat Nov 20 04:21:28 2010" " + "Network Connections Tray" "Network Connections Shell" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\netshell.dll" "Sat Nov 20 04:20:30 2010" " + "PostBootReminder object" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\shell32.dll" "Fri May 24 16:59:03 2019" " + "User Account Control Check Service" "Action Center Providers" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\hcproviders.dll" "Mon Jul 13 18:15:24 2009" " + "AltTab" "Windows Shell Alt Tab" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\AltTab.dll" "Mon Jul 13 18:14:53 2009" " + "WPDShServiceObj Class" "Windows Portable Device Shell Service Object" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\wpdshserviceobj.dll" "Sat Nov 20 04:21:40 2010" " + "Network Tray SSO" "Network System Icon" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\pnidui.dll" "Sat Nov 20 04:20:56 2010" " + "Windows Search Shell Service Object" "Indexing Options" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\srchadmin.dll" "Sat Nov 20 04:21:26 2010" " + "WebCheck" "Shell Doc Object and Control Library" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\shdocvw.dll" "Sat Aug 19 08:10:53 2017" " + "Bluetooth Authentication Agent SSO" "Bluetooth Control Panel Applet" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\bthprops.cpl" "Sat Nov 20 04:16:52 2010" " + "Sync Center Shell Service Object (Internal)" "Microsoft Sync Center" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\SyncCenter.dll" "Sat Nov 20 04:21:28 2010" " + "Action Center Shell Service Object" "Action Center" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\Actioncenter.dll" "Sat Nov 20 04:18:02 2010" " + "ShellFolder for CD Burning" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\shell32.dll" "Fri May 24 16:59:03 2019" " + "HomeGroup SSO" "HomeGroup Control Panel" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\hgcpl.dll" "Sat Nov 20 04:19:12 2010" " [HKLM\Software\Wow6432Node\Classes\*\ShellEx\ContextMenuHandlers] [HKLM\Software\Wow6432Node\Classes\Drive\ShellEx\ContextMenuHandlers] [HKLM\Software\Wow6432Node\Classes\*\ShellEx\PropertySheetHandlers] [HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers] [HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\DragDropHandlers] [HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers] [HKLM\Software\Wow6432Node\Classes\Directory\ShellEx\ContextMenuHandlers] [HKLM\Software\Wow6432Node\Classes\Directory\ShellEx\DragDropHandlers] [HKLM\Software\Wow6432Node\Classes\Directory\ShellEx\PropertySheetHandlers] [HKLM\Software\Wow6432Node\Classes\Directory\ShellEx\CopyHookHandlers] [HKLM\Software\Wow6432Node\Classes\Directory\Background\ShellEx\ContextMenuHandlers] [HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\ContextMenuHandlers] [HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\DragDropHandlers] [HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\PropertySheetHandlers] [HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\ColumnHandlers] [HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\ExtShellFolderViews] [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers] + "EnhancedStorageShell" "Windows Enhanced Storage Shell Extension DLL" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\EhStorShell.dll" "Mon Jul 13 18:15:14 2009" " + "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "SharingPrivate" "Shell extensions for sharing" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\ntshrui.dll" "Wed Jan 4 00:58:41 2012" " [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] [HKLM\Software\Wow6432Node\Microsoft\Ctf\LangBarAddin] [Internet Explorer] [HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks] + "Microsoft Url Search Hook" "Internet Browser" "(Verified) Microsoft Windows" "C:\Windows\System32\ieframe.dll" "Mon Dec 16 16:14:21 2019" " [HKCU\Software\Microsoft\Internet Explorer\Explorer Bars] [HKCU\Software\Microsoft\Internet Explorer\Extensions] [HKCU\Software\Wow6432Node\Microsoft\Internet Explorer\Explorer Bars] [HKCU\Software\Wow6432Node\Microsoft\Internet Explorer\Extensions] [HKLM\Software\Microsoft\Internet Explorer\Toolbar] [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects] + "Groove GFS Browser Helper" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "Windows Live ID Sign-in Helper" "Microsoft® Windows Live ID Login Helper" "(Verified) Microsoft Corporation" "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll" "Mon Mar 28 22:14:36 2011" " + "Google Toolbar Helper" "Google Toolbar" "(Verified) Google Inc" "C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll" "Mon Apr 25 19:31:52 2016" " + "McAfee SiteAdvisor BHO" "SiteAdvisor" "(Verified) McAfee, Inc." "c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll" "Thu Apr 24 12:12:06 2014" " + "Office Document Cache Handler" "Microsoft Office Document Cache Handler" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL" "Wed Mar 6 06:39:00 2013" " [HKLM\Software\Microsoft\Internet Explorer\Explorer Bars] [HKLM\Software\Microsoft\Internet Explorer\Extensions] + "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "(Verified) Microsoft Corporation" "C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll" "Tue Oct 27 20:33:06 2015" " + "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "(Verified) Microsoft Corporation" "C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll" "Tue Oct 27 20:33:06 2015" " [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar] [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects] + "Groove GFS Browser Helper" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" "Wed Dec 18 23:41:02 2013" " + "Windows Live ID Sign-in Helper" "Microsoft® Windows Live ID Login Helper" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll" "Mon Mar 28 21:35:06 2011" " + "Google Toolbar Helper" "Google Toolbar" "(Verified) Google Inc" "C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll" "Mon Apr 25 19:31:44 2016" " + "McAfee SiteAdvisor BHO" "SiteAdvisor" "(Verified) McAfee, Inc." "c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll" "Thu Apr 24 12:12:02 2014" " + "Office Document Cache Handler" "Microsoft Office Document Cache Handler" "(Verified) Microsoft Corporation" "C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL" "Wed Mar 6 06:37:48 2013" " [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Explorer Bars] [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Extensions] + "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll" "Tue Oct 27 20:30:50 2015" " + "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll" "Tue Oct 27 20:30:50 2015" " [Scheduled Tasks] [Task Scheduler] + "\Adobe Acrobat Update Task" "This task keeps your Adobe Reader and Acrobat applications up to date with the latest enhancements and security fixes" "(Verified) Adobe Systems, Incorporated" "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "Wed Sep 27 12:27:08 2017" " + "\ATKOSD2" "ATKOSD2" "(Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" "Thu Dec 22 18:58:42 2011" " + "\CCleanerSkipUAC" "CCleaner" "(Verified) Piriform Ltd" "C:\Program Files\CCleaner\CCleaner.exe" "Wed Jul 13 13:40:28 2016" " + "\RtHDVBg" "HD Audio Background Process" "(Verified) Realtek Semiconductor Corp." "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" "Thu Dec 15 16:56:02 2016" " + "\RtHDVBg_ListenToDevice" "HD Audio Background Process" "(Verified) Realtek Semiconductor Corp." "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" "Thu Dec 15 16:56:02 2016" " + "\RTKCPL" "Realtek HD Audio Manager" "(Verified) Realtek Semiconductor Corp." "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" "Thu Dec 15 16:56:02 2016" " + "\SidebarExecute" "Windows Desktop Gadgets" "(Not Verified) Microsoft Corporation" "C:\Program Files\Windows Sidebar\sidebar.exe" "Sat Nov 20 05:25:18 2010" " + "\{0A849199-D0DD-4A87-926F-BB23C6B84134}" "Adobe Reader " "(Verified) Adobe Systems, Incorporated" "C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe" "Wed Nov 1 07:27:22 2017" " + "\{0E9B91E8-DE67-4E99-9C78-D0AD35229558}" "" "" "File not found: C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVH.EXE" "" " + "\{13C2E584-470C-4E76-BB87-22702169AC3C}" "" "" "File not found: C:\Program Files\Outlook Express\msimn.exe" "" " + "\{1402DF21-B6F3-4578-BCF8-7AB4E4284D1B}" "ASUS Live Update" "(Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe" "Wed Jun 20 18:21:46 2012" " + "\{157D3128-9C7E-4344-8FD2-29B8B1A3742D}" "Malwarebytes" "(Verified) Malwarebytes Inc." "C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe" "Mon Mar 25 22:06:16 2024" " + "\{18F79774-8C6C-4BCD-ABB6-1AF11014C51B}" "" "" "File not found: C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVH.EXE" "" " + "\{1B8D06A9-542D-4EF3-B0CE-86346F7D6E81}" "Antimalware Service Executable" "(Verified) Microsoft Corporation" "C:\Program Files\Microsoft Security Client\MsMpEng.exe" "Mon Nov 14 21:14:42 2016" " + "\{1CEEC110-E4AC-4E4F-8803-6CC2618F7E4D}" "Program Compatibility Assistant" "(Verified) Microsoft Windows" "C:\Windows\system32\pcalua.exe" "Thu May 9 07:37:07 2019" " + "\{2286158A-3E0B-4BB1-B575-354DC02599FC}" "Zb Module" "(Not Verified) " "C:\Program Files (x86)\Canon\ZoomBrowser EX\Program\ZoomBrowser.exe" "Wed Jun 29 15:50:10 2011" " + "\{22A2788F-953D-472C-938C-7B4FDB660E19}" "" "" "File not found: C:\Program Files\Brother\Driver Deployment Wizard\PDWIZARD.EXE" "" " + "\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task" "Windows Live Social Object Extractor Engine" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Windows Live\SOXE\wlsoxe.dll" "Fri May 13 16:21:16 2011" " + X "\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated)" "Windows Rights Management client" "(Verified) Microsoft Windows" "C:\Windows\system32\msdrm.dll" "Tue Dec 3 18:26:32 2013" " + "\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual)" "Windows Rights Management client" "(Verified) Microsoft Windows" "C:\Windows\system32\msdrm.dll" "Tue Dec 3 18:26:32 2013" " + "\Microsoft\Windows\Autochk\Proxy" "This task collects and uploads autochk SQM data if opted-in to the Microsoft Customer Experience Improvement Program." "(Verified) Microsoft Windows" "C:\Windows\system32\acproxy.dll" "Mon Jul 13 18:40:00 2009" " + "\Microsoft\Windows\CertificateServicesClient\UserTask" "DIMS Job DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\dimsjob.dll" "Mon Jul 13 18:40:30 2009" " + X "\Microsoft\Windows\CertificateServicesClient\UserTask-Roam" "DIMS Job DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\dimsjob.dll" "Mon Jul 13 18:40:30 2009" " + "\Microsoft\Windows\Customer Experience Improvement Program\Consolidator" "If the user has consented to participate in the Windows Customer Experience Improvement Program, this job collects and sends usage data to Microsoft." "(Verified) Microsoft Windows" "C:\Windows\System32\wsqmcons.exe" "Sat Nov 20 05:25:36 2010" " + "\Microsoft\Windows\Customer Experience Improvement Program\KernelCeipTask" "Kernel Ceip Task" "(Verified) Microsoft Windows" "C:\Windows\System32\kernelceip.dll" "Mon Jul 13 18:41:13 2009" " + "\Microsoft\Windows\Customer Experience Improvement Program\UsbCeip" "USBCEIP Task" "(Verified) Microsoft Windows" "C:\Windows\System32\usbceip.dll" "Mon Jul 13 18:41:56 2009" " + "\Microsoft\Windows\Defrag\ScheduledDefrag" "This task defragments the computers hard disk drives." "(Verified) Microsoft Windows" "C:\Windows\system32\defrag.exe" "Mon Jul 13 18:39:02 2009" " + "\Microsoft\Windows\Diagnosis\Scheduled" "Scripted Diagnostics Scheduled Task" "(Verified) Microsoft Windows" "C:\Windows\System32\sdiagschd.dll" "Mon Jul 13 18:41:53 2009" " + X "\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector" "The Windows Disk Diagnostic reports general disk and system information to Microsoft for users participating in the Customer Experience Program." "(Verified) Microsoft Windows" "C:\Windows\system32\dfdts.dll" "Mon Jul 13 18:40:28 2009" " + X "\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver" "The Microsoft-Windows-DiskDiagnosticResolver warns users about faults reported by hard disks that support the Self Monitoring and Reporting Technology (S.M.A.R.T.) standard. This task is triggered automatically by the Diagnostic Policy Service when a S.M.A.R.T. fault is detected." "(Verified) Microsoft Windows" "C:\Windows\system32\DFDWiz.exe" "Mon Jul 13 18:39:03 2009" " + "\Microsoft\Windows\Location\Notifications" "Location Activity" "(Verified) Microsoft Windows" "C:\Windows\System32\LocationNotifications.exe" "Mon Jul 13 18:39:15 2009" " + "\Microsoft\Windows\Maintenance\WinSAT" "Windows System Assessment Tool API" "(Verified) Microsoft Windows" "C:\Windows\system32\WinSATAPI.dll" "Sat Nov 20 05:27:30 2010" " + "\Microsoft\Windows\Media Center\ActivateWindowsSearch" "Privileged Media Center Search Reindexing job" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehPrivJob.exe" "Sat Nov 20 05:24:44 2010" " + "\Microsoft\Windows\Media Center\ConfigureInternetTimeService" "Privileged Media Center Time Update Service setting job" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehPrivJob.exe" "Sat Nov 20 05:24:44 2010" " + "\Microsoft\Windows\Media Center\DispatchRecoveryTasks" "Privileged Media Center Recovery Task Dispatcher job" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehPrivJob.exe" "Sat Nov 20 05:24:44 2010" " + "\Microsoft\Windows\Media Center\ehDRMInit" "Privileged Media Center DRM initialization job" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehPrivJob.exe" "Sat Nov 20 05:24:44 2010" " + "\Microsoft\Windows\Media Center\InstallPlayReady" "Privileged Media Center PlayReady install job" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehPrivJob.exe" "Sat Nov 20 05:24:44 2010" " + "\Microsoft\Windows\Media Center\mcupdate" "Check for Media Center updates." "(Verified) Microsoft Windows" "C:\Windows\ehome\mcupdate.exe" "Sun Dec 31 18:21:54 2017" " + "\Microsoft\Windows\Media Center\MediaCenterRecoveryTask" "Perform Media Center Recovery activities" "(Verified) Microsoft Windows" "C:\Windows\ehome\mcupdate.exe" "Sun Dec 31 18:21:54 2017" " + "\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask" "Perform Object Store Recovery activities" "(Verified) Microsoft Windows" "C:\Windows\ehome\mcupdate.exe" "Sun Dec 31 18:21:54 2017" " + "\Microsoft\Windows\Media Center\OCURActivate" "Privileged Media Center OCUR activation job" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehPrivJob.exe" "Sat Nov 20 05:24:44 2010" " + "\Microsoft\Windows\Media Center\OCURDiscovery" "Privileged Media Center OCUR discovery job" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehPrivJob.exe" "Sat Nov 20 05:24:44 2010" " + "\Microsoft\Windows\Media Center\PBDADiscovery" "Privileged Media Center OCUR discovery job" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehPrivJob.exe" "Sat Nov 20 05:24:44 2010" " + "\Microsoft\Windows\Media Center\PBDADiscoveryW1" "Privileged Media Center OCUR discovery job" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehPrivJob.exe" "Sat Nov 20 05:24:44 2010" " + "\Microsoft\Windows\Media Center\PBDADiscoveryW2" "Privileged Media Center OCUR discovery job" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehPrivJob.exe" "Sat Nov 20 05:24:44 2010" " + X "\Microsoft\Windows\Media Center\PeriodicScanRetry" "Background periodic scanner - PeriodicScanRetry" "(Verified) Microsoft Windows" "C:\Windows\ehome\MCUpdate.exe" "Sun Dec 31 18:21:54 2017" " + "\Microsoft\Windows\Media Center\PvrRecoveryTask" "Media Center Event Trace Module" "(Verified) Microsoft Windows" "C:\Windows\eHome\ehTrace.dll" "Mon Jul 13 18:40:36 2009" " + "\Microsoft\Windows\Media Center\PvrRecoveryTask" "Perform Pvr Recovery activities" "(Verified) Microsoft Windows" "C:\Windows\ehome\mcupdate.exe" "Sun Dec 31 18:21:54 2017" " + "\Microsoft\Windows\Media Center\PvrScheduleTask" "Perform PVR Scheduling activities" "(Verified) Microsoft Windows" "C:\Windows\ehome\mcupdate.exe" "Sun Dec 31 18:21:54 2017" " + X "\Microsoft\Windows\Media Center\RecordingRestart" "Restarts recordings after a power failure." "(Verified) Microsoft Windows" "C:\Windows\ehome\ehrec.exe" "Mon Jul 13 18:39:08 2009" " + "\Microsoft\Windows\Media Center\RegisterSearch" "Privileged Media Center Search registration job" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehPrivJob.exe" "Sat Nov 20 05:24:44 2010" " + "\Microsoft\Windows\Media Center\ReindexSearchRoot" "Privileged Media Center Search Reindexing job" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehPrivJob.exe" "Sat Nov 20 05:24:44 2010" " + "\Microsoft\Windows\Media Center\SqlLiteRecoveryTask" "Perform Data Recovery activities" "(Verified) Microsoft Windows" "C:\Windows\ehome\mcupdate.exe" "Sun Dec 31 18:21:54 2017" " + "\Microsoft\Windows\Media Center\StartRecording" "Windows Media Center Host Module" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehrec.exe" "Mon Jul 13 18:39:08 2009" " + "\Microsoft\Windows\Media Center\UpdateRecordPath" "Privileged Media Center Recorder Permission setting job" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehPrivJob.exe" "Sat Nov 20 05:24:44 2010" " + "\Microsoft\Windows\MemoryDiagnostic\CorruptionDetector" "Memory Tester Enhancement" "(Verified) Microsoft Windows" "C:\Windows\System32\memdiag.dll" "Mon Jul 13 18:41:22 2009" " + "\Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector" "Memory Tester Enhancement" "(Verified) Microsoft Windows" "C:\Windows\System32\memdiag.dll" "Mon Jul 13 18:41:22 2009" " + "\Microsoft\Windows\MobilePC\HotStart" "Microsoft Windows HotStart User Agent" "(Verified) Microsoft Windows" "C:\Windows\System32\HotStartUserAgent.dll" "Sat Nov 20 05:26:30 2010" " + "\Microsoft\Windows\MUI\Lpksetup" "Language Pack Installer" "(Verified) Microsoft Windows" "C:\Windows\System32\lpksetup.exe" "Sat Nov 20 05:24:54 2010" " + "\Microsoft\Windows\MUI\LPRemove" "Launch language cleanup tool" "(Verified) Microsoft Windows" "C:\Windows\system32\lpremove.exe" "Mon Jul 13 18:39:16 2009" " + "\Microsoft\Windows\MUI\Mcbuilder" "Resource cache builder tool" "(Verified) Microsoft Windows" "C:\Windows\System32\mcbuilder.exe" "Sat Nov 20 05:24:54 2010" " + "\Microsoft\Windows\Multimedia\SystemSoundsService" "PlaySound Service" "(Verified) Microsoft Windows" "C:\Windows\System32\PlaySndSrv.dll" "Mon Jul 13 18:41:53 2009" " + "\Microsoft\Windows\NetTrace\GatherNetworkInfo" "Network information collector" "(Verified) Microsoft Windows" "C:\Windows\system32\gatherNetworkInfo.vbs" "Wed Jun 10 13:36:24 2009" " + "\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem" "This job analyzes the system looking for conditions that may cause high energy use." "(Verified) Microsoft Windows" "C:\Windows\System32\powercfg.exe" "Mon Jul 13 18:39:27 2009" " + "\Microsoft\Windows\RAC\RacTask" "Reliability analysis metrics calculation engine" "(Verified) Microsoft Windows" "C:\Windows\system32\RacEngn.dll" "Sat Nov 20 05:27:26 2010" " + "\Microsoft\Windows\Registry\RegIdleBackup" "RegIdle Backup Task" "(Verified) Microsoft Windows" "C:\Windows\System32\regidle.dll" "Mon Jul 13 18:41:53 2009" " + X "\Microsoft\Windows\Shell\WindowsParentalControls" "Windows Parental Controls Notifications" "(Verified) Microsoft Windows" "C:\Windows\System32\wpcumi.dll" "Mon Jul 13 18:41:57 2009" " + X "\Microsoft\Windows\Shell\WindowsParentalControlsMigration" "Windows Parental Controls Migration" "(Verified) Microsoft Windows" "C:\Windows\System32\wpcmig.dll" "Mon Jul 13 18:41:57 2009" " + X "\Microsoft\Windows\SideShow\AutoWake" "Microsoft Windows SideShow services" "(Verified) Microsoft Windows" "C:\Windows\System32\AuxiliaryDisplayServices.dll" "Sat Nov 20 05:25:46 2010" " + "\Microsoft\Windows\SideShow\GadgetManager" "Microsoft Windows SideShow services" "(Verified) Microsoft Windows" "C:\Windows\System32\AuxiliaryDisplayServices.dll" "Sat Nov 20 05:25:46 2010" " + X "\Microsoft\Windows\SideShow\SessionAgent" "Microsoft Windows SideShow services" "(Verified) Microsoft Windows" "C:\Windows\System32\AuxiliaryDisplayServices.dll" "Sat Nov 20 05:25:46 2010" " + X "\Microsoft\Windows\SideShow\SystemDataProviders" "Microsoft Windows SideShow services" "(Verified) Microsoft Windows" "C:\Windows\System32\AuxiliaryDisplayServices.dll" "Sat Nov 20 05:25:46 2010" " + "\Microsoft\Windows\SystemRestore\SR" "This task creates regular system protection points." "(Verified) Microsoft Windows" "C:\Windows\system32\srrstr.dll" "Sat Nov 20 05:27:28 2010" " + "\Microsoft\Windows\Task Manager\Interactive" "Performance Monitor" "(Verified) Microsoft Windows" "C:\Windows\system32\wdc.dll" "Mon Jun 12 15:49:24 2017" " + "\Microsoft\Windows\Tcpip\IpAddressConflict1" "This event is triggered when an IP address conflict is detected." "(Verified) Microsoft Windows" "C:\Windows\system32\ndfapi.dll" "Mon Jul 13 18:41:52 2009" " + "\Microsoft\Windows\Tcpip\IpAddressConflict2" "This event is triggered when an IP address conflict is detected." "(Verified) Microsoft Windows" "C:\Windows\system32\ndfapi.dll" "Mon Jul 13 18:41:52 2009" " + "\Microsoft\Windows\TextServicesFramework\MsCtfMonitor" "MsCtfMonitor DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\MsCtfMonitor.dll" "Mon Jul 13 18:41:28 2009" " + "\Microsoft\Windows\Time Synchronization\SynchronizeTime" "Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\sc.exe" "Mon Jul 13 18:39:35 2009" " + "\Microsoft\Windows\WDI\ResolutionHost" "Windows Diagnostic Infrastructure" "(Verified) Microsoft Windows" "C:\Windows\System32\wdi.dll" "Mon Jul 13 18:41:56 2009" " + "\Microsoft\Windows\Windows Error Reporting\QueueReporting" "Windows Error Reporting task to process queued reports." "(Verified) Microsoft Windows" "C:\Windows\system32\wermgr.exe" "Mon Sep 9 18:53:29 2019" " + "\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange" "This task adjusts the start type for firewall-triggered services when the start type of the Base Filtering Engine (BFE) is disabled." "(Verified) Microsoft Windows" "C:\Windows\system32\bfe.dll" "Sun Dec 31 18:18:17 2017" " + "\Microsoft\Windows\Windows Media Sharing\UpdateLibrary" "This task updates the cached list of folders and the security permissions on any new files in a user s shared media library." "(Not Verified) Microsoft Corporation" "C:\Program Files\Windows Media Player\wmpnscfg.exe" "Mon Jul 13 18:39:56 2009" " + X "\Microsoft\Windows\WindowsBackup\AutomaticBackup" "This scheduled task runs automatic backup on a regular basis." "(Verified) Microsoft Windows" "C:\Windows\system32\sdengin2.dll" "Sat Nov 20 05:27:26 2010" " + X "\Microsoft\Windows\WindowsBackup\ConfigNotification" "This scheduled task notifies the user that Windows Backup has not been configured." "(Verified) Microsoft Windows" "C:\Windows\System32\sdclt.exe" "Sat Nov 20 05:25:14 2010" " + X "\Microsoft\Windows\WindowsBackup\Windows Backup Monitor" "This scheduled task displays a notification if one or more scheduled backups have been skipped." "(Verified) Microsoft Windows" "C:\Windows\system32\sdclt.exe" "Sat Nov 20 05:25:14 2010" " + "\Microsoft\Windows\WindowsColorSystem\Calibration Loader" "Microsoft Color Matching System DLL" "(Verified) Microsoft Windows" "C:\Windows\System32\mscms.dll" "Tue Dec 5 09:36:41 2017" " + "\Microsoft\Windows\Wininet\CacheTask" "Internet Extensions for Win32" "(Verified) Microsoft Windows" "C:\Windows\system32\wininet.dll" "Mon Dec 16 16:04:23 2019" " + "\Mozilla\Firefox Default Browser Agent D80ACA206ADA634C" "The Default Browser Agent task checks when the default changes from Firefox to another browser. If the change happens under suspicious circumstances, it will prompt users to change back to Firefox no more than two times. This task is installed automatically by Firefox, and is reinstalled when Firefox updates. To disable this task, update the  default-browser-agent.enabled preference on the about:config page or the Firefox enterprise policy setting  DisableDefaultBrowserAgent ." "(Verified) Mozilla Corporation" "C:\Users\Tom\AppData\Local\Mozilla Firefox\default-browser-agent.exe" "Thu May 2 23:34:07 2024" " + "\WPD\SqmUpload_S-1-5-21-2866637959-2952889206-406066778-1000" "This task uploads Customer Experience Improvement Program (CEIP) data for Portable Devices" "(Verified) Microsoft Windows" "C:\Windows\system32\portabledeviceapi.dll" "Sat Nov 20 05:27:24 2010" " + "\{4517FD05-7FD3-48DE-B430-B9CEECEBD0D4}" "" "" "File not found: C:\Program Files\Brother\Driver Deployment Wizard\PDWIZARD.EXE" "" " + "\{4872668D-05DA-4B6F-8769-22742A03FA9C}" "PageViewer" "(Not Verified) ScanSoft, Inc." "C:\Program Files (x86)\ScanSoft\PaperPort\pppagevw.exe" "Wed Apr 14 14:50:56 2004" " + "\{4A2AABB4-3B1C-4F32-9FA9-F46A87EAF9AD}" "Zb Module" "(Not Verified) " "C:\Program Files (x86)\Canon\ZoomBrowser EX\Program\ZoomBrowser.exe" "Wed Jun 29 15:50:10 2011" " + "\{79A1510B-289D-43C4-9A2E-A3AFFA8B7F63}" "" "" "File not found: C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVH.EXE" "" " + "\{7F9525B4-A574-4BD6-B168-CFF3EEC88FA7}" "Zb Module" "(Not Verified) " "C:\Program Files (x86)\Canon\ZoomBrowser EX\Program\ZoomBrowser.exe" "Wed Jun 29 15:50:10 2011" " + "\{7FC20198-4CCB-4145-9D31-85145ED3F64F}" "Zb Module" "(Not Verified) " "C:\Program Files (x86)\Canon\ZoomBrowser EX\Program\ZoomBrowser.exe" "Wed Jun 29 15:50:10 2011" " + "\{8B2A827D-8307-44FF-8F86-77EAFF2227D3}" "" "" "File not found: C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVH.EXE" "" " + "\{942DA1F8-F6E8-41CA-B33D-CBE3FF858404}" "Malwarebytes" "(Verified) Malwarebytes Inc." "C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe" "Mon Mar 25 22:06:16 2024" " + "\{99DA54A6-BE60-48FC-B84B-5D8289E2AEF1}" "" "" "File not found: C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVH.EXE" "" " + "\{ADBDFD53-1694-4D2A-A0F4-B012DDB64A1C}" "" "" "File not found: C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVH.EXE" "" " + "\{AE520288-47BE-4A35-8EB4-2C4D27F5B7FC}" "" "" "File not found: C:\Program Files\Outlook Express\msimn.exe" "" " + "\{CE1B727D-07C0-4AD8-90F5-23EE77B80848}" "Firefox" "(Verified) Mozilla Corporation" "C:\Users\Tom\AppData\Local\Mozilla Firefox\firefox.exe" "Thu May 2 23:34:05 2024" " + "\{D6460C92-0F03-4C0D-BCF4-CD505AEFE997}" "Program Compatibility Assistant" "(Verified) Microsoft Windows" "C:\Windows\system32\pcalua.exe" "Thu May 9 07:37:07 2019" " + "\{D8717193-6627-489A-B418-A1164C1E4C32}" "ASUS Live Update" "(Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe" "Wed Jun 20 18:21:46 2012" " + "\{DE96E226-9D77-4275-830C-84ABDCEDDF1E}" "Adobe Reader " "(Verified) Adobe Systems, Incorporated" "C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe" "Wed Nov 1 07:27:22 2017" " + "\{E23F687F-1BDB-4376-8C4E-3E90A3E43596}" "" "" "File not found: C:\Program Files\Microsoft Office\Options14\MSOO.EXE" "" " + "\{E6F0B5AB-3429-4ECE-B240-6B3170A16BBC}" "" "" "File not found: C:\Program Files\Microsoft Office\Options14\MSOO.EXE" "" " + "\{F6CA301D-8C69-4739-9AD8-97E2ADF0AB30}" "Antimalware Service Executable" "(Verified) Microsoft Corporation" "C:\Program Files\Microsoft Security Client\MsMpEng.exe" "Mon Nov 14 21:14:42 2016" " [Services] [HKLM\System\CurrentControlSet\Services] + "!SASCORE" "SAS Core Service: SUPERAntiSpyware Core Service" "(Verified) SUPERAntiSpyware.com" "C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE" "Sat Feb 25 23:51:51 2023" " + "AdobeARMservice" "Adobe Acrobat Update Service: Adobe Acrobat Updater keeps your Adobe software up to date." "(Verified) Adobe Systems, Incorporated" "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" "Wed Sep 27 12:27:08 2017" " + "AeLookupSvc" "Application Experience: Processes application compatibility cache requests for applications as they are launched" "(Verified) Microsoft Windows" "C:\Windows\System32\aelupsvc.dll" "Thu Oct 29 10:50:29 2015" " + "AFBAgent" "AFBAgent: ASUS FastBoot" "(Verified) ASUSTeK Computer Inc." "C:\Windows\system32\FBAgent.exe" "Thu Mar 3 15:57:58 2011" " + "ALG" "Application Layer Gateway Service: Provides support for 3rd party protocol plug-ins for Internet Connection Sharing" "(Verified) Microsoft Windows" "C:\Windows\System32\alg.exe" "Mon Jul 13 18:38:55 2009" " + "AppHostSvc" "Application Host Helper Service: Provides administrative services for IIS, for example configuration history and Application Pool account mapping. If this service is stopped, configuration history and locking down files or directories with Application Pool specific Access Control Entries will not work." "(Verified) Microsoft Windows" "C:\Windows\system32\inetsrv\apphostsvc.dll" "Sat Nov 20 05:25:42 2010" " + "AppIDSvc" "Application Identity: Determines and verifies the identity of an application. Disabling this service will prevent AppLocker from being enforced." "(Verified) Microsoft Windows" "C:\Windows\System32\appidsvc.dll" "Tue Nov 5 13:19:55 2019" " + "Appinfo" "Application Information: Facilitates the running of interactive applications with additional administrative privileges. If this service is stopped, users will be unable to launch applications with the additional administrative privileges they may require to perform desired user tasks." "(Verified) Microsoft Windows" "C:\Windows\System32\appinfo.dll" "Tue Nov 5 13:19:55 2019" " + "ASLDRService" "ASLDR Service: ASLDR Service" "(Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe" "Mon Nov 21 13:22:08 2011" " + "aspnet_state" "ASP.NET State Service: Provides support for out-of-process session states for ASP.NET. If this service is stopped, out-of-process requests will not be processed. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Corporation" "C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe" "Mon Mar 26 16:17:28 2018" " + "ASUS InstantOn" "ASUS InstantOn Service: ASUS InstantOn Program" "(Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe" "Thu Feb 16 17:04:18 2012" " + "ATKGFNEXSrv" "ATKGFNEX Service: GFNEXSrv" "(Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe" "Mon Nov 21 13:19:50 2011" " + "AudioEndpointBuilder" "Windows Audio Endpoint Builder: Manages audio devices for the Windows Audio service. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start" "(Verified) Microsoft Windows" "C:\Windows\System32\Audiosrv.dll" "Thu May 16 08:06:09 2019" " + "AudioSrv" "Windows Audio: Manages audio for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start" "(Verified) Microsoft Windows" "C:\Windows\System32\Audiosrv.dll" "Thu May 16 08:06:09 2019" " + "AxInstSV" "ActiveX Installer (AxInstSV): Provides User Account Control validation for the installation of ActiveX controls from the Internet and enables management of ActiveX control installation based on Group Policy settings. This service is started on demand and if disabled the installation of ActiveX controls will behave according to default browser settings." "(Verified) Microsoft Windows" "C:\Windows\System32\AxInstSV.dll" "Tue Nov 5 13:19:56 2019" " + "BDESVC" "BitLocker Drive Encryption Service: BDESVC hosts the BitLocker Drive Encryption service. BitLocker Drive Encryption provides secure startup for the operating system, as well as full volume encryption for OS, fixed or removable volumes. This service allows BitLocker to prompt users for various actions related to their volumes when mounted, and unlocks volumes automatically without user interaction. Additionally, it stores recovery information to Active Directory, if available, and, if necessary, ensures the most recent recovery certificates are used. Stopping or disabling the service would prevent users from leveraging this functionality." "(Verified) Microsoft Windows" "C:\Windows\System32\bdesvc.dll" "Mon Jul 13 18:40:10 2009" " + "BFE" "Base Filtering Engine: The Base Filtering Engine (BFE) is a service that manages firewall and Internet Protocol security (IPsec) policies and implements user mode filtering. Stopping or disabling the BFE service will significantly reduce the security of the system. It will also result in unpredictable behavior in IPsec management and firewall applications." "(Verified) Microsoft Windows" "C:\Windows\System32\bfe.dll" "Sun Dec 31 18:18:17 2017" " + "BITS" "Background Intelligent Transfer Service: Transfers files in the background using idle network bandwidth. If the service is disabled, then any applications that depend on BITS, such as Windows Update or MSN Explorer, will be unable to automatically download programs and other information." "(Verified) Microsoft Windows" "C:\Windows\System32\qmgr.dll" "Sat Nov 20 05:27:24 2010" " + "Browser" "Computer Browser: Maintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\System32\browser.dll" "Wed Jul 4 15:13:27 2012" " + X "bthserv" "Bluetooth Support Service: The Bluetooth service supports discovery and association of remote Bluetooth devices. Stopping or disabling this service may cause already installed Bluetooth devices to fail to operate properly and prevent new devices from being discovered or associated." "(Verified) Microsoft Windows" "C:\Windows\system32\bthserv.dll" "Mon Jul 13 18:40:13 2009" " + "CertPropSvc" "Certificate Propagation: Copies user certificates and root certificates from smart cards into the current user's certificate store, detects when a smart card is inserted into a smart card reader, and, if needed, installs the smart card Plug and Play minidriver." "(Verified) Microsoft Windows" "C:\Windows\System32\certprop.dll" "Sat Nov 20 05:25:50 2010" " + "CISVC" "Indexing Service: Indexes contents and properties of files on local and remote computers; provides rapid access to files through flexible querying language." "(Verified) Microsoft Windows" "C:\Windows\system32\CISVC.EXE" "Thu May 9 07:51:09 2019" " + X "clr_optimization_v2.0.50727_32" "Microsoft .NET Framework NGEN v2.0.50727_X86: Microsoft .NET Framework NGEN" "(Verified) Microsoft Corporation" "C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe" "Thu Mar 20 15:49:18 2014" " + X "clr_optimization_v2.0.50727_64" "Microsoft .NET Framework NGEN v2.0.50727_X64: Microsoft .NET Framework NGEN" "(Verified) Microsoft Corporation" "C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe" "Thu Mar 20 15:50:31 2014" " + "clr_optimization_v4.0.30319_32" "Microsoft .NET Framework NGEN v4.0.30319_X86: Microsoft .NET Framework NGEN" "(Verified) Microsoft Dynamic Code Publisher" "C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe" "Mon Mar 26 16:24:54 2018" " + "clr_optimization_v4.0.30319_64" "Microsoft .NET Framework NGEN v4.0.30319_X64: Microsoft .NET Framework NGEN" "(Verified) Microsoft Dynamic Code Publisher" "C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe" "Mon Mar 26 16:17:28 2018" " + "COMSysApp" "COM+ System Application: Manages the configuration and tracking of Component Object Model (COM)+-based components. If the service is stopped, most COM+-based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\dllhost.exe" "Mon Jul 13 18:39:06 2009" " + "CryptSvc" "Cryptographic Services: Provides four management services: Catalog Database Service, which confirms the signatures of Windows files and allows new programs to be installed; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; Automatic Root Certificate Update Service, which retrieves root certificates from Windows Update and enable scenarios such as SSL; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\cryptsvc.dll" "Thu May 9 08:06:49 2019" " + "DcomLaunch" "DCOM Server Process Launcher: The DCOMLAUNCH service launches COM and DCOM servers in response to object activation requests. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the DCOMLAUNCH service running." "(Verified) Microsoft Windows" "C:\Windows\system32\rpcss.dll" "Mon Jul 29 19:20:13 2019" " + "defragsvc" "Disk Defragmenter: Provides Disk Defragmentation Capabilities." "(Verified) Microsoft Windows" "C:\Windows\System32\defragsvc.dll" "Mon Jul 13 18:40:28 2009" " + "Dhcp" "DHCP Client: Registers and updates IP addresses and DNS records for this computer. If this service is stopped, this computer will not receive dynamic IP addresses and DNS updates. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\dhcpcore.dll" "Sat Jul 13 01:31:57 2019" " + "Dnscache" "DNS Client: The DNS Client service (dnscache) caches Domain Name System (DNS) names and registers the full computer name for this computer. If the service is stopped, DNS names will continue to be resolved. However, the results of DNS name queries will not be cached and the computer's name will not be registered. If the service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\System32\dnsrslvr.dll" "Fri Jun 8 09:19:36 2018" " + "dot3svc" "Wired AutoConfig: The Wired AutoConfig (DOT3SVC) service is responsible for performing IEEE 802.1X authentication on Ethernet interfaces. If your current wired network deployment enforces 802.1X authentication, the DOT3SVC service should be configured to run for establishing Layer 2 connectivity and/or providing access to network resources. Wired networks that do not enforce 802.1X authentication are unaffected by the DOT3SVC service." "(Verified) Microsoft Windows" "C:\Windows\System32\dot3svc.dll" "Sat Nov 20 05:26:08 2010" " + "DPS" "Diagnostic Policy Service: The Diagnostic Policy Service enables problem detection, troubleshooting and resolution for Windows components. If this service is stopped, diagnostics will no longer function." "(Verified) Microsoft Windows" "C:\Windows\system32\dps.dll" "Sat Nov 20 05:26:08 2010" " + "EapHost" "Extensible Authentication Protocol: The Extensible Authentication Protocol (EAP) service provides network authentication in such scenarios as 802.1x wired and wireless, VPN, and Network Access Protection (NAP). EAP also provides application programming interfaces (APIs) that are used by network access clients, including wireless and VPN clients, during the authentication process. If you disable this service, this computer is prevented from accessing networks that require EAP authentication." "(Verified) Microsoft Windows" "C:\Windows\System32\eapsvc.dll" "Mon Jul 13 18:40:35 2009" " + "EaseUS Agent" "EaseUS Agent Service: Provides service to backup files and image disks." "(Not Verified) CHENGDU YIWO Tech Development Co., Ltd" "C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe" "Wed Aug 30 13:28:42 2017" " + "edgeupdate" "Microsoft Edge Update Service (edgeupdate): Keeps your Microsoft software up to date. If this service is disabled or stopped, your Microsoft software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Microsoft software using it." "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" "Sat Feb 12 23:49:56 2022" " + "edgeupdatem" "Microsoft Edge Update Service (edgeupdatem): Keeps your Microsoft software up to date. If this service is disabled or stopped, your Microsoft software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Microsoft software using it." "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" "Sat Feb 12 23:49:56 2022" " + "EFS" "Encrypting File System (EFS): Provides the core file encryption technology used to store encrypted files on NTFS file system volumes. If this service is stopped or disabled, applications will be unable to access encrypted files." "(Verified) Microsoft Windows" "C:\Windows\System32\lsass.exe" "Tue Nov 5 12:42:53 2019" " + "ehRecvr" "Windows Media Center Receiver Service: Windows Media Center Service for TV and FM broadcast reception" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehRecvr.exe" "Sat Nov 20 05:24:44 2010" " + "ehSched" "Windows Media Center Scheduler Service: Starts and stops recording of TV programs within Windows Media Center" "(Verified) Microsoft Windows" "C:\Windows\ehome\ehsched.exe" "Mon Jul 13 18:39:09 2009" " + "eventlog" "Windows Event Log: This service manages events and event logs. It supports logging events, querying events, subscribing to events, archiving event logs, and managing event metadata. It can display events in both XML and plain text format. Stopping this service may compromise security and reliability of the system." "(Verified) Microsoft Windows" "C:\Windows\System32\wevtsvc.dll" "Sat Nov 20 05:27:30 2010" " + "EventSystem" "COM+ Event System: Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\es.dll" "Mon Jul 13 18:40:50 2009" " + X "Fax" "Fax: Enables you to send and receive faxes, utilizing fax resources available on this computer or on the network." "(Verified) Microsoft Windows" "C:\Windows\system32\fxssvc.exe" "Sat Nov 20 05:24:48 2010" " + "fdPHost" "Function Discovery Provider Host: The FDPHOST service hosts the Function Discovery (FD) network discovery providers. These FD providers supply network discovery services for the Simple Services Discovery Protocol (SSDP) and Web Services  Discovery (WS-D) protocol. Stopping or disabling the FDPHOST service will disable network discovery for these protocols when using FD. When this service is unavailable, network services using FD and relying on these discovery protocols will be unable to find network devices or resources." "(Verified) Microsoft Windows" "C:\Windows\system32\fdPHost.dll" "Mon Jul 13 18:40:52 2009" " + "FDResPub" "Function Discovery Resource Publication: Publishes this computer and resources attached to this computer so they can be discovered over the network. If this service is stopped, network resources will no longer be published and they will not be discovered by other computers on the network." "(Verified) Microsoft Windows" "C:\Windows\system32\fdrespub.dll" "Mon Jul 13 18:40:52 2009" " + "FontCache" "Windows Font Cache Service: Optimizes performance of applications by caching commonly used font data. Applications will start this service if it is not already running. It can be disabled, though doing so will degrade application performance." "(Verified) Microsoft Windows" "C:\Windows\system32\FntCache.dll" "Mon Oct 14 16:58:43 2019" " + "FontCache3.0.0.0" "Windows Presentation Foundation Font Cache 3.0.0.0: Optimizes performance of Windows Presentation Foundation (WPF) applications by caching commonly used font data. WPF applications will start this service if it is not already running. It can be disabled, though doing so will degrade the performance of WPF applications." "(Verified) Microsoft Corporation" "C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe" "Thu Nov 4 18:53:04 2010" " + X "fsssvc" "Windows Live Family Safety Service: This service enables Family Safety on the computer. If this service is not running, Family Safety will not work." "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe" "Fri May 13 16:27:02 2011" " + "gpsvc" "Group Policy Client: The service is responsible for applying settings configured by administrators for the computer and users through the Group Policy component. If the service is stopped or disabled, the settings will not be applied and applications and components will not be manageable through Group Policy. Any components or applications that depend on the Group Policy component might not be functional if the service is stopped or disabled." "(Verified) Microsoft Windows" "C:\Windows\System32\gpsvc.dll" "Thu May 12 10:14:46 2016" " + "gupdate" "Google Update Service (gupdate): Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "(Verified) Google Inc" "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" "Fri Aug 28 07:59:32 2015" " + "gupdatem" "Google Update Service (gupdatem): Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "(Verified) Google Inc" "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" "Fri Aug 28 07:59:32 2015" " + X "gusvc" "Google Software Updater: Google Updater keeps your Google software up to date. If Google Updater Service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work." "(Verified) Google Inc" "C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe" "Sun Mar 2 22:30:12 2014" " + "hidserv" "Human Interface Device Access: Enables generic input access to Human Interface Devices (HID), which activates and maintains the use of predefined hot buttons on keyboards, remote controls, and other multimedia devices. If this service is stopped, hot buttons controlled by this service will no longer function. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\hidserv.dll" "Mon Jul 13 18:41:00 2009" " + "hkmsvc" "Health Key and Certificate Management: Provides X.509 certificate and key management services for the Network Access Protection Agent (NAPAgent). Enforcement technologies that use X.509 certificates may not function properly without this service" "(Verified) Microsoft Windows" "C:\Windows\system32\kmsvc.dll" "Sat Nov 20 05:26:44 2010" " + "HomeGroupListener" "Windows HomeGroup" "(Verified) Microsoft Windows" "C:\Windows\system32\ListSvc.dll" "Sat Nov 20 05:26:48 2010" " + "HomeGroupProvider" "HomeGroup Provider: Performs networking tasks associated with configuration and maintenance of homegroups. If this service is stopped or disabled, your computer will be unable to detect other homegroups and your homegroup might not work properly. It is recommended that you keep this service running." "(Verified) Microsoft Windows" "C:\Windows\system32\provsvc.dll" "Sat Nov 20 05:27:24 2010" " + "idsvc" "Windows CardSpace: Securely enables the creation, management, and disclosure of digital identities." "(Verified) Microsoft Corporation" "C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe" "Mon Jun 30 15:24:49 2014" " + "IEEtwCollectorService" "Internet Explorer ETW Collector Service: ETW Collector Service for Internet Explorer. When running, this service collects real time ETW events and processes them." "(Verified) Microsoft Windows" "C:\Windows\system32\IEEtwCollector.exe" "Mon Dec 16 16:52:57 2019" " + "IKEEXT" "IKE and AuthIP IPsec Keying Modules: The IKEEXT service hosts the Internet Key Exchange (IKE) and Authenticated Internet Protocol (AuthIP) keying modules. These keying modules are used for authentication and key exchange in Internet Protocol security (IPsec). Stopping or disabling the IKEEXT service will disable IKE and AuthIP key exchange with peer computers. IPsec is typically configured to use IKE or AuthIP; therefore, stopping or disabling the IKEEXT service might result in an IPsec failure and might compromise the security of the system. It is strongly recommended that you have the IKEEXT service running." "(Verified) Microsoft Windows" "C:\Windows\System32\ikeext.dll" "Sun Dec 31 18:18:21 2017" " + "IPBusEnum" "PnP-X IP Bus Enumerator: The PnP-X bus enumerator service manages the virtual network bus. It discovers network connected devices using the SSDP/WS discovery protocols and gives them presence in PnP. If this service is stopped or disabled, presence of NCD devices will not be maintained in PnP. All pnpx based scenarios will stop functioning." "(Verified) Microsoft Windows" "C:\Windows\system32\ipbusenum.dll" "Mon Jul 13 18:41:09 2009" " + "iphlpsvc" "IP Helper: Provides tunnel connectivity using IPv6 transition technologies (6to4, ISATAP, Port Proxy, and Teredo), and IP-HTTPS. If this service is stopped, the computer will not have the enhanced connectivity benefits that these technologies offer." "(Verified) Microsoft Windows" "C:\Windows\System32\iphlpsvc.dll" "Tue Nov 5 13:20:10 2019" " + "KeyIso" "CNG Key Isolation: The CNG key isolation service is hosted in the LSA process. The service provides key process isolation to private keys and associated cryptographic operations as required by the Common Criteria. The service stores and uses long-lived keys in a secure process complying with Common Criteria requirements." "(Verified) Microsoft Windows" "C:\Windows\system32\lsass.exe" "Tue Nov 5 12:42:53 2019" " + "KtmRm" "KtmRm for Distributed Transaction Coordinator: Coordinates transactions between the Distributed Transaction Coordinator (MSDTC) and the Kernel Transaction Manager (KTM). If it is not needed, it is recommended that this service remain stopped. If it is needed, both MSDTC and KTM will start this service automatically. If this service is disabled, any MSDTC transaction interacting with a Kernel Resource Manager will fail and any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\msdtckrm.dll" "Mon Jul 13 18:41:28 2009" " + "LanmanServer" "Server: Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\srvsvc.dll" "Tue Nov 5 13:20:27 2019" " + "LanmanWorkstation" "Workstation: Creates and maintains client network connections to remote servers using the SMB protocol. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\System32\wkssvc.dll" "Sat Nov 20 05:27:30 2010" " + "lltdsvc" "Link-Layer Topology Discovery Mapper: Creates a Network Map, consisting of PC and device topology (connectivity) information, and metadata describing each PC and device. If this service is disabled, the Network Map will not function properly." "(Verified) Microsoft Windows" "C:\Windows\System32\lltdsvc.dll" "Mon Jul 13 18:41:18 2009" " + "lmhosts" "TCP/IP NetBIOS Helper: Provides support for the NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution for clients on the network, therefore enabling users to share files, print, and log on to the network. If this service is stopped, these functions might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\svchost.exe" "Mon Jul 13 18:39:46 2009" " + "LMS" "Intel(R) Management and Security Application Local Management Service: Allows applications to access the local Intel(R) Management and Security Application using its locally-available selected network interfaces." "(Verified) Intel Corporation" "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe" "Mon Dec 20 17:24:36 2010" " + "LPDSVC" "LPD Service: Enables client computers to print to the Line Printer Daemon (LPD) service on this server using TCP/IP and the Line Printer Remote (LPR) protocol." "(Verified) Microsoft Windows" "C:\Windows\system32\lpdsvc.dll" "Mon Jul 13 18:41:19 2009" " + "MBAMService" "Malwarebytes Service: Malwarebytes Service" "(Verified) Malwarebytes Inc." "C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe" "Mon Mar 25 22:06:16 2024" " + X "Mcx2Svc" "Media Center Extender Service: Allows Media Center Extenders to locate and connect to the computer." "(Verified) Microsoft Windows" "C:\Windows\system32\Mcx2Svc.dll" "Sat Nov 20 05:26:52 2010" " + "Microsoft SharePoint Workspace Audit Service" "Microsoft SharePoint Workspace Audit Service: Microsoft SharePoint Workspace" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE" "Wed Dec 18 23:41:02 2013" " + "MMCSS" "Multimedia Class Scheduler: Enables relative prioritization of work based on system-wide task priorities. This is intended mainly for multimedia applications. If this service is stopped, individual tasks resort to their default priority." "(Verified) Microsoft Windows" "C:\Windows\system32\mmcss.dll" "Mon Jul 13 18:41:26 2009" " + "MozillaMaintenance" "Mozilla Maintenance Service: The Mozilla Maintenance Service ensures that you have the latest and most secure version of Mozilla Firefox on your computer. Keeping Firefox up to date is very important for your online security, and Mozilla strongly recommends that you keep this service enabled." "(Verified) Mozilla Corporation" "C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe" "Tue Apr 23 18:31:56 2024" " + "MpsSvc" "Windows Firewall: Windows Firewall helps protect your computer by preventing unauthorized users from gaining access to your computer through the Internet or a network." "(Verified) Microsoft Windows" "C:\Windows\system32\mpssvc.dll" "Fri Aug 10 08:54:38 2018" " + "MSDTC" "Distributed Transaction Coordinator: Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will fail. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\System32\msdtc.exe" "Mon Jul 13 18:39:21 2009" " + "MSiSCSI" "Microsoft iSCSI Initiator Service: Manages Internet SCSI (iSCSI) sessions from this computer to remote iSCSI target devices. If this service is stopped, this computer will not be able to login or access iSCSI targets. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\iscsiexe.dll" "Mon Jul 13 18:41:11 2009" " + "msiserver" "Windows Installer: Adds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\msiexec.exe" "Tue Nov 5 12:50:30 2019" " + "MsMpSvc" "Microsoft Antimalware Service: Helps protect users from malware and other potentially unwanted software" "(Verified) Microsoft Corporation" "C:\Program Files\Microsoft Security Client\MsMpEng.exe" "Mon Nov 14 21:14:42 2016" " + "napagent" "Network Access Protection Agent: The Network Access Protection (NAP) agent service collects and manages health information for client computers on a network. Information collected by NAP agent is used to make sure that the client computer has the required software and settings. If a client computer is not compliant with health policy, it can be provided with restricted network access until its configuration is updated. Depending on the configuration of health policy, client computers might be automatically updated so that users quickly regain full network access without having to manually update their computer." "(Verified) Microsoft Windows" "C:\Windows\system32\qagentRT.dll" "Sat Nov 20 05:27:24 2010" " + "Netlogon" "Netlogon: Maintains a secure channel between this computer and the domain controller for authenticating users and services. If this service is stopped, the computer may not authenticate users and services and the domain controller cannot register DNS records. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\lsass.exe" "Tue Nov 5 12:42:53 2019" " + "Netman" "Network Connections: Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections." "(Verified) Microsoft Windows" "C:\Windows\System32\netman.dll" "Mon Jul 13 18:41:52 2009" " + X "NetMsmqActivator" "Net.Msmq Listener Adapter: Receives activation requests over the net.msmq and msmq.formatname protocols and passes them to the Windows Process Activation Service." "(Verified) Microsoft Corporation" "C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" "Tue Oct 1 14:46:04 2019" " + "NetPipeActivator" "Net.Pipe Listener Adapter: Receives activation requests over the net.pipe protocol and passes them to the Windows Process Activation Service." "(Verified) Microsoft Corporation" "C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" "Tue Oct 1 14:46:04 2019" " + "netprofm" "Network List Service: Identifies the networks to which the computer has connected, collects and stores properties for these networks, and notifies applications when these properties change." "(Verified) Microsoft Windows" "C:\Windows\System32\netprofm.dll" "Mon Jul 13 18:41:52 2009" " + "NetTcpActivator" "Net.Tcp Listener Adapter: Receives activation requests over the net.tcp protocol and passes them to the Windows Process Activation Service." "(Verified) Microsoft Corporation" "C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" "Tue Oct 1 14:46:04 2019" " + "NetTcpPortSharing" "Net.Tcp Port Sharing Service: Provides ability to share TCP ports over the net.tcp protocol." "(Verified) Microsoft Corporation" "C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" "Tue Oct 1 14:46:04 2019" " + "NisSrv" "Microsoft Network Inspection: Helps guard against intrusion attempts targeting known and newly discovered vulnerabilities in network protocols" "(Verified) Microsoft Corporation" "C:\Program Files\Microsoft Security Client\NisSrv.exe" "Mon Nov 14 21:14:42 2016" " + "NlaSvc" "Network Location Awareness: Collects and stores configuration information for the network and notifies programs when this information is modified. If this service is stopped, configuration information might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\System32\nlasvc.dll" "Sun Dec 31 18:18:24 2017" " + "nsi" "Network Store Interface Service: This service delivers network notifications (e.g. interface addition/deleting etc) to user mode clients. Stopping this service will cause loss of network connectivity. If this service is disabled, any other services that explicitly depend on this service will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\svchost.exe" "Mon Jul 13 18:39:46 2009" " + "Olympus DVR Service" "Olympus DVR Service: Olympus DVR Service" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\DeviceManager\olydvrsv.exe" "Fri Feb 10 12:08:44 2012" " + "ose" "Office Source Engine: Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports." "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE" "Thu Jun 14 20:39:54 2018" " + "osppsvc" "Office Software Protection Platform: Office Software Protection Platform Service (unlocalized description)" "(Verified) Microsoft Corporation" "C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE" "Sat Jan 9 21:34:24 2010" " + "p2pimsvc" "Peer Networking Identity Manager: Provides identity services for the Peer Name Resolution Protocol (PNRP) and Peer-to-Peer Grouping services. If disabled, the Peer Name Resolution Protocol (PNRP) and Peer-to-Peer Grouping services may not function, and some applications, such as HomeGroup and Remote Assistance, may not function correctly." "(Verified) Microsoft Windows" "C:\Windows\system32\pnrpsvc.dll" "Sat Jul 13 01:32:12 2019" " + "p2psvc" "Peer Networking Grouping: Enables multi-party communication using Peer-to-Peer Grouping. If disabled, some applications, such as HomeGroup, may not function." "(Verified) Microsoft Windows" "C:\Windows\system32\p2psvc.dll" "Sun Dec 31 18:18:27 2017" " + "PcaSvc" "Program Compatibility Assistant Service: This service provides support for the Program Compatibility Assistant (PCA). PCA monitors programs installed and run by the user and detects known compatibility problems. If this service is stopped, PCA will not function properly." "(Verified) Microsoft Windows" "C:\Windows\System32\pcasvc.dll" "Thu May 9 08:07:31 2019" " + "PerfHost" "Performance Counter DLL Host: Enables remote users and 64-bit processes to query performance counters provided by 32-bit DLLs. If this service is stopped, only local users and 32-bit processes will be able to query performance counters provided by 32-bit DLLs." "(Verified) Microsoft Windows" "C:\Windows\SysWow64\perfhost.exe" "Mon Jul 13 18:14:28 2009" " + "pla" "Performance Logs & Alerts: Performance Logs and Alerts Collects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\pla.dll" "Fri Mar 10 08:32:03 2017" " + "PlugPlay" "Plug and Play: Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability." "(Verified) Microsoft Windows" "C:\Windows\system32\umpnpmgr.dll" "Fri Feb 17 22:57:41 2012" " + "PNRPAutoReg" "PNRP Machine Name Publication Service: This service publishes a machine name using the Peer Name Resolution Protocol. Configuration is managed via the netsh context 'p2p pnrp peer' " "(Verified) Microsoft Windows" "C:\Windows\system32\pnrpauto.dll" "Mon Jul 13 18:41:53 2009" " + "PNRPsvc" "Peer Name Resolution Protocol: Enables serverless peer name resolution over the Internet using the Peer Name Resolution Protocol (PNRP). If disabled, some peer-to-peer and collaborative applications, such as Remote Assistance, may not function." "(Verified) Microsoft Windows" "C:\Windows\system32\pnrpsvc.dll" "Sat Jul 13 01:32:12 2019" " + "PolicyAgent" "IPsec Policy Agent: Internet Protocol security (IPsec) supports network-level peer authentication, data origin authentication, data integrity, data confidentiality (encryption), and replay protection. This service enforces IPsec policies created through the IP Security Policies snap-in or the command-line tool "netsh ipsec". If you stop this service, you may experience network connectivity issues if your policy requires that connections use IPsec. Also,remote management of Windows Firewall is not available when this service is stopped." "(Verified) Microsoft Windows" "C:\Windows\System32\ipsecsvc.dll" "Thu May 12 10:14:48 2016" " + "Power" "Power: Manages power policy and power policy notification delivery." "(Verified) Microsoft Windows" "C:\Windows\system32\umpo.dll" "Wed Sep 18 21:27:55 2019" " + "ProfSvc" "User Profile Service: This service is responsible for loading and unloading user profiles. If this service is stopped or disabled, users will no longer be able to successfully logon or logoff, applications may have problems getting to users' data, and components registered to receive profile event notifications will not receive them." "(Verified) Microsoft Windows" "C:\Windows\system32\profsvc.dll" "Thu Dec 18 19:06:55 2014" " + "ProtectedStorage" "Protected Storage: Provides protected storage for sensitive data, such as passwords, to prevent access by unauthorized services, processes, or users." "(Verified) Microsoft Windows" "C:\Windows\system32\lsass.exe" "Tue Nov 5 12:42:53 2019" " + "ProtonVPN Service" "ProtonVPN Service: Proton VPN" "(Verified) Proton Technologies AG" "C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe" "Wed Jul 5 05:04:20 2023" " + "QWAVE" "Quality Windows Audio Video Experience: Quality Windows Audio Video Experience (qWave) is a networking platform for Audio Video (AV) streaming applications on IP home networks. qWave enhances AV streaming performance and reliability by ensuring network quality-of-service (QoS) for AV applications. It provides mechanisms for admission control, run time monitoring and enforcement, application feedback, and traffic prioritization." "(Verified) Microsoft Windows" "C:\Windows\system32\qwave.dll" "Mon Jul 13 18:41:53 2009" " + "RasAuto" "Remote Access Auto Connection Manager: Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address." "(Verified) Microsoft Windows" "C:\Windows\System32\rasauto.dll" "Mon Jul 13 18:41:53 2009" " + "RasMan" "Remote Access Connection Manager: Manages dial-up and virtual private network (VPN) connections from this computer to the Internet or other remote networks. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\System32\rasmans.dll" "Sat Nov 20 05:27:26 2010" " + X "RemoteAccess" "Routing and Remote Access: Offers routing services to businesses in local area and wide area network environments." "(Verified) Microsoft Windows" "C:\Windows\System32\mprdim.dll" "Thu Nov 2 09:55:36 2017" " + "RemoteRegistry" "Remote Registry: Enables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\regsvc.dll" "Mon Jul 13 18:41:53 2009" " + "RpcEptMapper" "RPC Endpoint Mapper: Resolves RPC interfaces identifiers to transport endpoints. If this service is stopped or disabled, programs using Remote Procedure Call (RPC) services will not function properly." "(Verified) Microsoft Windows" "C:\Windows\System32\RpcEpMap.dll" "Mon Jul 13 18:41:53 2009" " + "RpcLocator" "Remote Procedure Call (RPC) Locator: In Windows 2003 and earlier versions of Windows, the Remote Procedure Call (RPC) Locator service manages the RPC name service database. In Windows Vista and later versions of Windows, this service does not provide any functionality and is present for application compatibility." "(Verified) Microsoft Windows" "C:\Windows\system32\locator.exe" "Mon Jul 13 18:39:15 2009" " + "RpcSs" "Remote Procedure Call (RPC): The RPCSS service is the Service Control Manager for COM and DCOM servers. It performs object activations requests, object exporter resolutions and distributed garbage collection for COM and DCOM servers. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the RPCSS service running" "(Verified) Microsoft Windows" "C:\Windows\system32\rpcss.dll" "Mon Jul 29 19:20:13 2019" " + "SamSs" "Security Accounts Manager: The startup of this service signals other services that the Security Accounts Manager (SAM) is ready to accept requests. Disabling this service will prevent other services in the system from being notified when the SAM is ready, which may in turn cause those services to fail to start correctly. This service should not be disabled." "(Verified) Microsoft Windows" "C:\Windows\system32\lsass.exe" "Tue Nov 5 12:42:53 2019" " + "SCardSvr" "Smart Card: Manages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\System32\SCardSvr.dll" "Mon Jul 13 18:41:53 2009" " + "Schedule" "Task Scheduler: Enables a user to configure and schedule automated tasks on this computer. The service also hosts multiple Windows system-critical tasks. If this service is stopped or disabled, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\schedsvc.dll" "Mon Jun 3 16:11:57 2019" " + "SCPolicySvc" "Smart Card Removal Policy: Allows the system to be configured to lock the user desktop upon smart card removal." "(Verified) Microsoft Windows" "C:\Windows\System32\certprop.dll" "Sat Nov 20 05:25:50 2010" " + "SDRSVC" "Windows Backup: Provides Windows Backup and Restore capabilities." "(Verified) Microsoft Windows" "C:\Windows\System32\SDRSVC.dll" "Sat Nov 20 05:27:26 2010" " + "seclogon" "Secondary Logon: Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\seclogon.dll" "Tue Feb 9 01:55:34 2016" " + "SENS" "System Event Notification Service: Monitors system events and notifies subscribers to COM+ Event System of these events." "(Verified) Microsoft Windows" "C:\Windows\System32\sens.dll" "Mon Jul 13 18:41:53 2009" " + "SensrSvc" "Adaptive Brightness: Monitors ambient light sensors to detect changes in ambient light and adjust the display brightness. If this service is stopped or disabled, the display brightness will not adapt to lighting conditions." "(Verified) Microsoft Windows" "C:\Windows\system32\sensrsvc.dll" "Mon Jul 13 18:41:54 2009" " + "SessionEnv" "Remote Desktop Configuration: Remote Desktop Configuration service (RDCS) is responsible for all Remote Desktop Services and Remote Desktop related configuration and session maintenance activities that require SYSTEM context. These include per-session temporary folders, RD themes, and RD certificates." "(Verified) Microsoft Windows" "C:\Windows\system32\sessenv.dll" "Sat Nov 20 05:27:26 2010" " + "sftlist" "Application Virtualization Client: Streams and manages applications." "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe" "Wed Jun 26 20:21:46 2013" " + "sftvsa" "Application Virtualization Service Agent: Monitors global service events and launches virtual services." "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe" "Wed Jun 26 20:21:50 2013" " + X "SharedAccess" "Internet Connection Sharing (ICS): Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network." "(Verified) Microsoft Windows" "C:\Windows\System32\ipnathlp.dll" "Mon Jul 13 18:41:10 2009" " + "ShellHWDetection" "Shell Hardware Detection: Provides notifications for AutoPlay hardware events." "(Verified) Microsoft Windows" "C:\Windows\System32\shsvcs.dll" "Sat Nov 20 05:27:26 2010" " + "simptcp" "Simple TCP/IP Services: Supports the following TCP/IP services: Character Generator, Daytime, Discard, Echo, and Quote of the Day." "(Verified) Microsoft Windows" "C:\Windows\System32\tcpsvcs.exe" "Mon Jul 13 18:39:47 2009" " + "SNMP" "SNMP Service: Enables Simple Network Management Protocol (SNMP) requests to be processed by this computer. If this service is stopped, the computer will be unable to process SNMP requests. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\System32\snmp.exe" "Sat Nov 20 05:25:20 2010" " + "SNMPTRAP" "SNMP Trap: Receives trap messages generated by local or remote Simple Network Management Protocol (SNMP) agents and forwards the messages to SNMP management programs running on this computer. If this service is stopped, SNMP-based programs on this computer will not receive SNMP trap messages. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\System32\snmptrap.exe" "Mon Jul 13 18:39:41 2009" " + "Spooler" "Print Spooler: Loads files to memory for later printing" "(Verified) Microsoft Windows" "C:\Windows\System32\spoolsv.exe" "Sun Dec 31 18:04:05 2017" " + "sppsvc" "Software Protection: Enables the download, installation and enforcement of digital licenses for Windows and Windows applications. If the service is disabled, the operating system and licensed applications may run in a notification mode. It is strongly recommended that you not disable the Software Protection service." "(Verified) Microsoft Windows" "C:\Windows\system32\sppsvc.exe" "Sat Nov 20 05:25:06 2010" " + "sppuinotify" "SPP Notification Service: Provides Software Licensing activation and notification" "(Verified) Microsoft Windows" "C:\Windows\system32\sppuinotify.dll" "Mon Jul 13 18:41:54 2009" " + "SSDPSRV" "SSDP Discovery: Discovers networked devices and services that use the SSDP discovery protocol, such as UPnP devices. Also announces SSDP devices and services running on the local computer. If this service is stopped, SSDP-based devices will not be discovered. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\System32\ssdpsrv.dll" "Sat Jul 13 01:32:15 2019" " + "SstpSvc" "Secure Socket Tunneling Protocol Service: Provides support for the Secure Socket Tunneling Protocol (SSTP) to connect to remote computers using VPN. If this service is disabled, users will not be able to use SSTP to access remote servers." "(Verified) Microsoft Windows" "C:\Windows\system32\sstpsvc.dll" "Mon Jul 13 18:41:54 2009" " + "stisvc" "Windows Image Acquisition (WIA): Provides image acquisition services for scanners and cameras" "(Verified) Microsoft Windows" "C:\Windows\System32\wiaservc.dll" "Sat Nov 20 05:27:30 2010" " + "swprv" "Microsoft Software Shadow Copy Provider: Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\System32\swprv.dll" "Mon Jul 13 18:41:54 2009" " + "SysMain" "Superfetch: Maintains and improves system performance over time." "(Verified) Microsoft Windows" "C:\Windows\system32\sysmain.dll" "Sun Dec 31 18:18:31 2017" " + "TabletInputService" "Tablet PC Input Service: Enables Tablet PC pen and ink functionality" "(Verified) Microsoft Windows" "C:\Windows\System32\TabSvc.dll" "Sat Nov 20 05:27:28 2010" " + "TapiSrv" "Telephony: Provides Telephony API (TAPI) support for programs that control telephony devices on the local computer and, through the LAN, on servers that are also running the service." "(Verified) Microsoft Windows" "C:\Windows\System32\tapisrv.dll" "Sat Nov 20 05:27:28 2010" " + "TBS" "TPM Base Services: Enables access to the Trusted Platform Module (TPM), which provides hardware-based cryptographic services to system components and applications. If this service is stopped or disabled, applications will be unable to use keys protected by the TPM." "(Verified) Microsoft Windows" "C:\Windows\System32\tbssvc.dll" "Mon Jul 13 18:41:55 2009" " + "TermService" "Remote Desktop Services: Allows users to connect interactively to a remote computer. Remote Desktop and Remote Desktop Session Host Server depend on this service. To prevent remote use of this computer, clear the checkboxes on the Remote tab of the System properties control panel item." "(Verified) Microsoft Windows" "C:\Windows\System32\termsrv.dll" "Mon Mar 11 14:41:39 2019" " + "Themes" "Themes: Provides user experience theme management." "(Verified) Microsoft Windows" "C:\Windows\system32\themeservice.dll" "Mon Jul 13 18:41:55 2009" " + "THREADORDER" "Thread Ordering Server: Provides ordered execution for a group of threads within a specific period of time." "(Verified) Microsoft Windows" "C:\Windows\system32\mmcss.dll" "Mon Jul 13 18:41:26 2009" " + "TrkWks" "Distributed Link Tracking Client: Maintains links between NTFS files within a computer or across computers in a network." "(Verified) Microsoft Windows" "C:\Windows\System32\trkwks.dll" "Mon Jul 13 18:41:55 2009" " + "TrustedInstaller" "Windows Modules Installer: Enables installation, modification, and removal of Windows updates and optional components. If this service is disabled, install or uninstall of Windows updates might fail for this computer." "(Verified) Microsoft Windows" "C:\Windows\servicing\TrustedInstaller.exe" "Sat Nov 20 05:25:24 2010" " + "UI0Detect" "Interactive Services Detection: Enables user notification of user input for interactive services, which enables access to dialogs created by interactive services when they appear. If this service is stopped, notifications of new interactive service dialogs will no longer function and there might not be access to interactive service dialogs. If this service is disabled, both notifications of and access to new interactive service dialogs will no longer function." "(Verified) Microsoft Windows" "C:\Windows\system32\UI0Detect.exe" "Mon Jul 13 18:39:48 2009" " + "UNS" "Intel(R) Management and Security Application User Notification Service: Intel(R) Management and Security Application User Notification Service - Updates the Windows Event Log with notifications of pre defined events received from the local Intel(R) Management and Security Application Device." "(Verified) Intel Corporation" "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe" "Mon Dec 20 17:24:38 2010" " + "upnphost" "UPnP Device Host: Allows UPnP devices to be hosted on this computer. If this service is stopped, any hosted UPnP devices will stop functioning and no additional hosted devices can be added. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\System32\upnphost.dll" "Tue Nov 5 13:20:28 2019" " + "UxSms" "Desktop Window Manager Session Manager: Provides Desktop Window Manager startup and maintenance services" "(Verified) Microsoft Windows" "C:\Windows\System32\uxsms.dll" "Mon Jul 13 18:41:56 2009" " + "VaultSvc" "Credential Manager: Provides secure storage and retrieval of credentials to users, applications and security service packages." "(Verified) Microsoft Windows" "C:\Windows\system32\lsass.exe" "Tue Nov 5 12:42:53 2019" " + "vds" "Virtual Disk: Provides management services for disks, volumes, file systems, and storage arrays." "(Verified) Microsoft Windows" "C:\Windows\System32\vds.exe" "Sat Nov 20 05:25:26 2010" " + "VSS" "Volume Shadow Copy: Manages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\vssvc.exe" "Sat Nov 20 05:25:28 2010" " + "W32Time" "Windows Time: Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\w32time.dll" "Mon Jul 13 18:41:56 2009" " + "W3SVC" "World Wide Web Publishing Service: Provides Web connectivity and administration through the Internet Information Services Manager" "(Verified) Microsoft Windows" "C:\Windows\system32\inetsrv\iisw3adm.dll" "Sat Nov 20 05:26:38 2010" " + "WAS" "Windows Process Activation Service: The Windows Process Activation Service (WAS) provides process activation, resource management and health management services for message-activated applications." "(Verified) Microsoft Windows" "C:\Windows\system32\inetsrv\iisw3adm.dll" "Sat Nov 20 05:26:38 2010" " + "wbengine" "Block Level Backup Engine Service: The WBENGINE service is used by Windows Backup to perform backup and recovery operations. If this service is stopped by a user, it may cause the currently running backup or recovery operation to fail. Disabling this service may disable backup and recovery operations using Windows Backup on this computer." "(Verified) Microsoft Windows" "C:\Windows\system32\wbengine.exe" "Sat Nov 20 05:25:30 2010" " + "WbioSrvc" "Windows Biometric Service: The Windows biometric service gives client applications the ability to capture, compare, manipulate, and store biometric data without gaining direct access to any biometric hardware or samples. The service is hosted in a privileged SVCHOST process." "(Verified) Microsoft Windows" "C:\Windows\System32\wbiosrvc.dll" "Mon Jul 13 18:41:56 2009" " + "wcncsvc" "Windows Connect Now - Config Registrar: WCNCSVC hosts the Windows Connect Now Configuration which is Microsoft's Implementation of Wi-Fi Protected Setup (WPS) protocol. This is used to configure Wireless LAN settings for an Access Point (AP) or a Wi-Fi Device. The service is started programmatically as needed." "(Verified) Microsoft Windows" "C:\Windows\System32\wcncsvc.dll" "Sun Dec 31 18:18:31 2017" " + "WcsPlugInService" "Windows Color System: The WcsPlugInService service hosts third-party Windows Color System color device model and gamut map model plug-in modules. These plug-in modules are vendor-specific extensions to the Windows Color System baseline color device and gamut map models. Stopping or disabling the WcsPlugInService service will disable this extensibility feature, and the Windows Color System will use its baseline model processing rather than the vendor's desired processing. This might result in inaccurate color rendering." "(Verified) Microsoft Windows" "C:\Windows\System32\WcsPlugInService.dll" "Tue Dec 5 09:36:51 2017" " + "WdiServiceHost" "Diagnostic Service Host: The Diagnostic Service Host is used by the Diagnostic Policy Service to host diagnostics that need to run in a Local Service context. If this service is stopped, any diagnostics that depend on it will no longer function." "(Verified) Microsoft Windows" "C:\Windows\system32\wdi.dll" "Mon Jul 13 18:41:56 2009" " + "WdiSystemHost" "Diagnostic System Host: The Diagnostic System Host is used by the Diagnostic Policy Service to host diagnostics that need to run in a Local System context. If this service is stopped, any diagnostics that depend on it will no longer function." "(Verified) Microsoft Windows" "C:\Windows\system32\wdi.dll" "Mon Jul 13 18:41:56 2009" " + "WebClient" "WebClient: Enables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\System32\webclnt.dll" "Thu Sep 8 13:34:27 2016" " + "Wecsvc" "Windows Event Collector: This service manages persistent subscriptions to events from remote sources that support WS-Management protocol. This includes Windows Vista event logs, hardware and IPMI-enabled event sources. The service stores forwarded events in a local Event Log. If this service is stopped or disabled event subscriptions cannot be created and forwarded events cannot be accepted." "(Verified) Microsoft Windows" "C:\Windows\system32\wecsvc.dll" "Mon Jul 13 18:41:56 2009" " + "wercplsupport" "Problem Reports and Solutions Control Panel Support: This service provides support for viewing, sending and deletion of system-level problem reports for the Problem Reports and Solutions control panel." "(Verified) Microsoft Windows" "C:\Windows\System32\wercplsupport.dll" "Mon Sep 9 19:24:46 2019" " + "WerSvc" "Windows Error Reporting Service: Allows errors to be reported when programs stop working or responding and allows existing solutions to be delivered. Also allows logs to be generated for diagnostic and repair services. If this service is stopped, error reporting might not work correctly and results of diagnostic services and repairs might not be displayed." "(Verified) Microsoft Windows" "C:\Windows\System32\WerSvc.dll" "Mon Jul 13 18:41:56 2009" " + "WinDefend" "Windows Defender: Protection against spyware and potentially unwanted software" "(Not Verified) Microsoft Corporation" "C:\Program Files\Windows Defender\mpsvc.dll" "Sun May 26 22:50:47 2013" " + "WinHttpAutoProxySvc" "WinHTTP Web Proxy Auto-Discovery Service: WinHTTP implements the client HTTP stack and provides developers with a Win32 API and COM Automation component for sending HTTP requests and receiving responses. In addition, WinHTTP provides support for auto-discovering a proxy configuration via its implementation of the Web Proxy Auto-Discovery (WPAD) protocol." "(Verified) Microsoft Windows" "winhttp.dll" "Sun Dec 31 18:00:14 2017" " + "Winmgmt" "Windows Management Instrumentation: Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\wbem\WMIsvc.dll" "Mon Jul 13 18:41:56 2009" " + "WinRM" "Windows Remote Management (WS-Management): Windows Remote Management (WinRM) service implements the WS-Management protocol for remote management. WS-Management is a standard web services protocol used for remote software and hardware management. The WinRM service listens on the network for WS-Management requests and processes them. The WinRM Service needs to be configured with a listener using winrm.cmd command line tool or through Group Policy in order for it to listen over the network. The WinRM service provides access to WMI data and enables event collection. Event collection and subscription to events require that the service is running. WinRM messages use HTTP and HTTPS as transports. The WinRM service does not depend on IIS but is preconfigured to share a port with IIS on the same machine. The WinRM service reserves the /wsman URL prefix. To prevent conflicts with IIS, administrators should ensure that any websites hosted on IIS do not use the /wsman URL prefix." "(Verified) Microsoft Windows" "C:\Windows\system32\WsmSvc.dll" "Sat Aug 6 08:31:32 2016" " + "Wlansvc" "WLAN AutoConfig: The WLANSVC service provides the logic required to configure, discover, connect to, and disconnect from a wireless local area network (WLAN) as defined by IEEE 802.11 standards. It also contains the logic to turn your computer into a software access point so that other devices or computers can connect to your computer wirelessly using a WLAN adapter that can support this. Stopping or disabling the WLANSVC service will make all WLAN adapters on your computer inaccessible from the Windows networking UI. It is strongly recommended that you have the WLANSVC service running if your computer has a WLAN adapter." "(Verified) Microsoft Windows" "C:\Windows\System32\wlansvc.dll" "Wed Sep 13 08:28:12 2017" " + X "wlidsvc" "Windows Live ID Sign-in Assistant: Enables Windows Live ID authentication." "(Verified) Microsoft Corporation" "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" "Mon Mar 28 22:11:06 2011" " + "wmiApSrv" "WMI Performance Adapter: Provides performance library information from Windows Management Instrumentation (WMI) providers to clients on the network. This service only runs when Performance Data Helper is activated." "(Verified) Microsoft Windows" "C:\Windows\system32\wbem\WmiApSrv.exe" "Mon Jul 13 18:39:55 2009" " + X "WMPNetworkSvc" "Windows Media Player Network Sharing Service: Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play" "(Not Verified) Microsoft Corporation" "C:\Program Files\Windows Media Player\wmpnetwk.exe" "Sat Nov 20 05:25:34 2010" " + "WPCSvc" "Parental Controls: This service is a stub for Windows Parental Control functionality that existed in Vista. It is provided for backward compatibility only." "(Verified) Microsoft Windows" "C:\Windows\System32\wpcsvc.dll" "Mon Jul 13 18:41:57 2009" " + "WPDBusEnum" "Portable Device Enumerator Service: Enforces group policy for removable mass-storage devices. Enables applications such as Windows Media Player and Image Import Wizard to transfer and synchronize content using removable mass-storage devices." "(Verified) Microsoft Windows" "C:\Windows\system32\wpdbusenum.dll" "Sat Nov 20 05:27:30 2010" " + "wscsvc" "Security Center: The WSCSVC (Windows Security Center) service monitors and reports security health settings on the computer. The health settings include firewall (on/off), antivirus (on/off/out of date), antispyware (on/off/out of date), Windows Update (automatically/manually download and install updates), User Account Control (on/off), and Internet settings (recommended/not recommended). The service provides COM APIs for independent software vendors to register and record the state of their products to the Security Center service. The Action Center (AC) UI uses the service to provide systray alerts and a graphical view of the security health states in the AC control panel. Network Access Protection (NAP) uses the service to report the security health states of clients to the NAP Network Policy Server to make network quarantine decisions. The service also has a public API that allows external consumers to programmatically retrieve the aggregated security health state of the system." "(Verified) Microsoft Windows" "C:\Windows\System32\wscsvc.dll" "Mon Jul 13 18:41:58 2009" " + "WSearch" "Windows Search: Provides content indexing, property caching, and search results for files, e-mail, and other content." "(Verified) Microsoft Windows" "C:\Windows\system32\SearchIndexer.exe" "Sat Sep 22 19:34:32 2018" " + "wuauserv" "Windows Update: Enables the detection, download, and installation of updates for Windows and other programs. If this service is disabled, users of this computer will not be able to use Windows Update or its automatic updating feature, and programs will not be able to use the Windows Update Agent (WUA) API." "(Verified) Microsoft Windows" "C:\Windows\system32\wuaueng.dll" "Wed May 10 08:14:53 2017" " + "wudfsvc" "Windows Driver Foundation - User-mode Driver Framework: Creates and manages user-mode driver processes. This service cannot be stopped." "(Verified) Microsoft Windows" "C:\Windows\System32\WUDFSvc.dll" "Wed Jul 25 20:08:14 2012" " + "WwanSvc" "WWAN AutoConfig: This service manages mobile broadband (GSM & CDMA) data card/embedded module adapters and connections by auto-configuring the networks. It is strongly recommended that this service be kept running for best user experience of mobile broadband devices." "(Verified) Microsoft Windows" "C:\Windows\System32\wwansvc.dll" "Mon Jan 27 18:32:46 2014" " [Drivers] [HKLM\System\CurrentControlSet\Services] + "1394ohci" "1394 OHCI Compliant Host Controller: 1394 OpenHCI Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\1394ohci.sys" "Sat Nov 20 02:44:58 2010" " + "ACPI" "Microsoft ACPI Driver: ACPI Driver for NT" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\ACPI.sys" "Sat Feb 10 10:35:38 2018" " + "AcpiPmi" "ACPI Power Meter Driver: ACPI Power Metering Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\acpipmi.sys" "Sat Nov 20 01:30:44 2010" " + "adp94xx" "adp94xx: Adaptec Windows SAS/SATA Storport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\adp94xx.sys" "Mon Jul 13 18:52:21 2009" " + "adpahci" "adpahci: Adaptec Windows SATA Storport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\adpahci.sys" "Mon Jul 13 18:52:21 2009" " + "adpu320" "adpu320: Adaptec StorPort Ultra320 SCSI Driver (X64)" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\adpu320.sys" "Mon Jul 13 18:52:21 2009" " + "AFD" "Ancillary Function Driver for Winsock: Ancillary Function Driver for Winsock" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\afd.sys" "Tue Apr 4 07:53:18 2017" " + "AgereSoftModem" "Agere Systems Soft Modem: SoftModem Device Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\agrsm64.sys" "Wed Jun 10 14:01:06 2009" " + "agp440" "Intel AGP Bus Filter: 440 NT AGP Filter" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\agp440.sys" "Thu Apr 18 19:43:45 2019" " + "aliide" "aliide: ALi mini IDE Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\aliide.sys" "Mon Jul 13 18:52:21 2009" " + "amdide" "amdide: AMD IDE Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\amdide.sys" "Mon Jul 13 18:52:21 2009" " + "AmdK8" "AMD K8 Processor Driver: Processor Device Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\amdk8.sys" "Tue Nov 5 12:42:46 2019" " + "AmdPPM" "AMD Processor Driver: Processor Device Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\amdppm.sys" "Tue Nov 5 12:42:46 2019" " + "amdsata" "amdsata: AHCI 1.2 Device Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\amdsata.sys" "Fri Feb 17 22:50:33 2012" " + "amdsbs" "amdsbs: AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\amdsbs.sys" "Mon Jul 13 18:52:20 2009" " + "amdxata" "amdxata: Storage Filter Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\amdxata.sys" "Fri Feb 17 22:50:33 2012" " + "ampa" "ampa: " "(Verified) CHENGDU AOMEI Tech Co., Ltd." "C:\Windows\system32\ampa.sys" "Tue Feb 28 13:20:18 2017" " + "AmUStor" "AM USB Stroage Driver: Alocr Micro USB Mass Storage Driver" "(Verified) AlcorMicro, Corp." "C:\Windows\system32\drivers\AmUStor.SYS" "Thu Mar 17 22:36:18 2011" " + "AppID" "AppID Driver: Identifies an application and enforces software restriction policies." "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\appid.sys" "Tue Nov 5 12:51:52 2019" " + "arc" "arc: Adaptec RAID Storport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\arc.sys" "Mon Jul 13 18:52:21 2009" " + "arcsas" "arcsas: Adaptec SAS RAID WS03 Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\arcsas.sys" "Mon Jul 13 18:52:21 2009" " + "ASMMAP64" "ASMMAP64: Memory mapping Driver" "(Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys" "Thu Jul 2 17:36:14 2009" " + "asmthub3" "ASMedia USB3 Hub Service: ASMedia USB3 Hub Driver" "(Not Verified) ASMedia Technology Inc" "C:\Windows\system32\DRIVERS\asmthub3.sys" "Tue Nov 22 14:21:46 2011" " + "asmtxhci" "ASMEDIA XHCI Service: ASMEDIA XHCI Host Controller Driver" "(Not Verified) ASMedia Technology Inc" "C:\Windows\system32\DRIVERS\asmtxhci.sys" "Tue Nov 22 14:21:46 2011" " + "AsyncMac" "RAS Asynchronous Media Driver: RAS Asynchronous Media Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\asyncmac.sys" "Mon Jul 13 17:10:13 2009" " + "atapi" "IDE Channel: ATAPI IDE Miniport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\atapi.sys" "Mon Jul 13 18:52:21 2009" " + "athr" "Atheros Extensible Wireless LAN device driver: Atheros Extensible Wireless LAN device driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\athrx.sys" "Fri Jun 19 19:09:57 2009" " + "ATKWMIACPIIO" "ATKWMIACPI Driver: ATK WMIACPI Utility" "(Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys" "Wed Sep 7 09:55:04 2011" " + "b06bdrv" "Broadcom NetXtreme II VBD: Broadcom NetXtreme II GigE VBD" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\bxvbda.sys" "Wed Jun 10 13:34:28 2009" " + "b57nd60a" "Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0: Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver." "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\b57nd60a.sys" "Wed Jun 10 13:34:23 2009" " + "Beep" "Beep: BEEP Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\Beep.sys" "Mon Jul 13 17:00:13 2009" " + "blbdrive" "blbdrive: BLB Drive Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\blbdrive.sys" "Mon Jul 13 16:35:59 2009" " + "bowser" "Browser Support Driver: Implements the kernel datagram receiver for the computer browser browser service." "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\bowser.sys" "Wed Jul 18 08:18:04 2018" " + "BrFiltLo" "Brother USB Mass-Storage Lower Filter Driver: Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\BrFiltLo.sys" "Wed Jun 10 13:41:06 2009" " + "BrFiltUp" "Brother USB Mass-Storage Upper Filter Driver: Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\BrFiltUp.sys" "Wed Jun 10 13:41:06 2009" " + "BrSerIb" "Brother Serial Interface Driver(WDM): Brother MFC Serial Interface Driver(WDM)" "(Verified) Brother Industries, Ltd." "C:\Windows\system32\DRIVERS\BrSerIb.sys" "Mon Dec 3 06:42:26 2012" " + "Brserid" "Brother MFC Serial Port Interface Driver (WDM): Brotehr Serial I/F Driver (WDM)" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\BrSerId.sys" "Mon Jul 13 18:19:07 2009" " + "BrSerWdm" "Brother WDM Serial driver: Brother Serial driver (WDM version)" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\BrSerWdm.sys" "Wed Jun 10 13:41:10 2009" " + "BrUsbMdm" "Brother MFC USB Fax Only Modem: Brother USB MDM Driver " "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\BrUsbMdm.sys" "Wed Jun 10 13:41:10 2009" " + "BrUsbSer" "Brother MFC USB Serial WDM Driver: Brother USB Serial Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\BrUsbSer.sys" "Wed Jun 10 13:41:10 2009" " + "BrUsbSIb" "Brother Serial USB Driver(WDM): Brother MFC Serial USB Driver(WDM)" "(Verified) Brother Industries, Ltd." "C:\Windows\system32\DRIVERS\BrUsbSIb.sys" "Mon Dec 3 06:42:26 2012" " + "BthEnum" "Bluetooth Request Block Driver: Bluetooth Bus Extender" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\BthEnum.sys" "Mon Jul 29 18:56:12 2019" " + "BTHMODEM" "Bluetooth Serial Communications Driver: Bluetooth Communications Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\bthmodem.sys" "Mon Jul 13 17:06:52 2009" " + "BthPan" "Bluetooth Device (Personal Area Network): Bluetooth Device (Personal Area Network)" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\bthpan.sys" "Wed Jul 5 21:56:32 2017" " + "BTHPORT" "Bluetooth Port Driver: Bluetooth Bus Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\BTHport.sys" "Mon Jul 29 18:56:14 2019" " + "BTHUSB" "Bluetooth Radio USB Driver: Bluetooth Miniport Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\BTHUSB.sys" "Mon Jul 29 18:56:11 2019" " + X "cdfs" "CD/DVD File System Reader: ISO9660/Joliet File System Reader for CD/DVDs. (Core) (All pieces)" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\cdfs.sys" "Sun Feb 10 07:35:32 2019" " + "cdrom" "CD-ROM Driver: SCSI CD-ROM Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\cdrom.sys" "Sat Nov 20 01:19:22 2010" " + "circlass" "Consumer IR Devices: Consumer IR Class Driver for eHome" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\circlass.sys" "Mon Jul 13 17:06:34 2009" " + "CLFS" "Common Log (CLFS): General-purpose logging service" "(Verified) Microsoft Windows" "C:\Windows\System32\CLFS.sys" "Fri May 17 11:21:49 2019" " + "CmBatt" "Microsoft ACPI Control Method Battery Driver: Control Method Battery Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\CmBatt.sys" "Mon Jul 13 16:31:03 2009" " + "cmdide" "cmdide: CMD PCI IDE Bus Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\cmdide.sys" "Mon Jul 13 18:52:31 2009" " + "CNG" "CNG: Kernel Cryptography, Next Generation" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\cng.sys" "Mon May 14 18:20:06 2018" " + "Compbatt" "Microsoft Composite Battery Driver: Composite Battery Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\compbatt.sys" "Mon Jul 13 18:52:31 2009" " + "CompositeBus" "Composite Bus Enumerator Driver: Multi-Transport Composite Bus Enumerator" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\CompositeBus.sys" "Sat Nov 20 02:33:18 2010" " + X "crcdisk" "Crcdisk Filter Driver: Disk Block Verification Filter Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\crcdisk.sys" "Mon Jul 13 18:47:48 2009" " + "ddmdrv" "ddmdrv: " "(Verified) CHENGDU AOMEI Tech Co., Ltd." "C:\Windows\system32\ddmdrv.sys" "Tue Dec 27 17:45:52 2016" " + "DfsC" "DFS Namespace Client Driver: Client driver for access to DFS Namespaces" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\dfsc.sys" "Sun Dec 31 17:41:55 2017" " + "discache" "System Attribute Cache: Attribute Cache Indexer" "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\discache.sys" "Mon Jul 13 16:37:18 2009" " + "Disk" "Disk Driver: PnP Disk Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\disk.sys" "Mon Jul 13 18:47:48 2009" " + "drmkaud" "Microsoft Trusted Audio Drivers: Microsoft Trusted Audio Drivers" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\drmkaud.sys" "Tue Dec 8 10:11:53 2015" " + "DXGKrnl" "LDDM Graphics Subsystem: Controls the underlying video driver stacks to provide fully-featured display capabilities." "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\dxgkrnl.sys" "Sat Sep 8 18:02:22 2018" " + "ebdrv" "Broadcom NetXtreme II 10 GigE VBD: Broadcom NetXtreme II 10 GigE VBD" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\evbda.sys" "Wed Jun 10 13:34:33 2009" " + "ElRawDisk" "ElRawDisk: RawDisk Driver. Allows write access to files and raw disk sectors for user mode applications in Windows 2000, XP, 2003, Vista, 2008." "(Verified) EldoS Corporation" "C:\Windows\system32\drivers\rsdrvx64.sys" "Thu Feb 12 15:11:26 2009" " + "elxstor" "elxstor: Storport Miniport Driver for LightPulse HBAs" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\elxstor.sys" "Mon Jul 13 18:47:48 2009" " + "epmntdrv" "epmntdrv: " "(Not Verified) " "C:\Windows\system32\epmntdrv.sys" "Thu Jan 14 10:05:18 2016" " + "ErrDev" "Microsoft Hardware Error Device Driver: Error Device Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\errdev.sys" "Sat Feb 10 09:25:26 2018" " + "EUBAKUP" "EUBAKUP: Disk Backup Driver" "(Not Verified) CHENGDU YIWO Tech Development Co., Ltd" "C:\Windows\system32\drivers\eubakup.sys" "Tue Dec 6 01:45:56 2016" " + "EUBAKUP0" "EUBAKUP0: " "" "File not found: C:\Windows\system32\drivers\EUBAKUP0.sys" "Tue Aug 15 23:05:44 2017" " + "EUBKMON" "EUBKMON: " "(Not Verified) " "C:\Windows\system32\drivers\EUBKMON.sys" "Tue Dec 6 01:45:56 2016" " + "EUBKMON0" "EUBKMON0: " "" "File not found: C:\Windows\system32\drivers\EUBKMON0.sys" "Tue Aug 15 23:05:43 2017" " + "EUDSKACS" "EUDSKACS: Disk Access Driver" "(Not Verified) CHENGDU YIWO Tech Development Co., Ltd" "C:\Windows\system32\drivers\eudskacs.sys" "Tue Dec 6 01:45:56 2016" " + "EUFDDISK" "EUFDDISK: Disk Backup Image Preview Driver" "(Not Verified) CHENGDU YIWO Tech Development Co., Ltd" "C:\Windows\system32\drivers\EuFdDisk.sys" "Tue Dec 6 01:45:58 2016" " + "EUFDDISK0" "EUFDDISK0: " "" "File not found: C:\Windows\system32\drivers\EUFDDISK0.sys" "Fri May 3 07:36:34 2024" " + "EuGdiDrv" "EuGdiDrv: " "(Not Verified) " "C:\Windows\system32\EuGdiDrv.sys" "Mon Jul 11 11:01:24 2016" " + "exfat" "exFAT File System Driver: exFAT File System Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\exfat.sys" "Sun Feb 10 07:36:06 2019" " + "fastfat" "FAT12/16/32 File System Driver: Note - dependance on CDROM.SYS only if required to read/write DVD-RAM media (which appears as CD class device). (Core) (All pieces)" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\fastfat.sys" "Sun Feb 10 07:36:06 2019" " + "fdc" "Floppy Disk Controller Driver: Floppy Disk Controller Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\fdc.sys" "Mon Jul 13 17:00:54 2009" " + "FileInfo" "File Information FS MiniFilter: Collects information about files in memory to be consumed by other system services." "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\fileinfo.sys" "Mon Jul 13 18:47:48 2009" " + "Filetrace" "Filetrace: ETW File Trace Filter" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\filetrace.sys" "Mon Jul 13 16:25:40 2009" " + "flpydisk" "Floppy Disk Driver: Floppy Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\flpydisk.sys" "Mon Jul 13 17:00:54 2009" " + "FltMgr" "FltMgr: File System Filter Manager Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\fltmgr.sys" "Sun Dec 31 18:21:11 2017" " + "FsDepends" "File System Dependency Minifilter: This minifilter tracks the dependencies associated with the various nested volumes/filesystems" "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\FsDepends.sys" "Mon Jul 13 18:47:49 2009" " + "fssfltr" "fssfltr: Family Safety Filter Driver (WFP Callout)" "(Verified) Microsoft Corporation" "C:\Windows\system32\DRIVERS\fssfltr.sys" "Fri May 13 16:37:54 2011" " + "fvevol" "Bitlocker Drive Encryption Filter Driver: Bitlocker Drive Encryption Filter Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\DRIVERS\fvevol.sys" "Wed Jan 23 22:01:01 2013" " + "gagp30kx" "Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms: MS Generic AGPv3.0 Filter for K8/9 Processor Platforms" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\gagp30kx.sys" "Mon Jul 13 18:47:48 2009" " + "hcw85cir" "Hauppauge Consumer Infrared Receiver: Hauppauge WinTV 885 Consumer IR Driver for eHome" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\hcw85cir.sys" "Wed Jun 10 13:31:59 2009" " + "HdAudAddService" "Microsoft 1.1 UAA Function Driver for High Definition Audio Service: High Definition Audio Function Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\HdAudio.sys" "Sat Nov 20 02:44:24 2010" " + "HDAudBus" "Microsoft UAA Bus Driver for High Definition Audio: High Definition Audio Bus Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\HDAudBus.sys" "Sat Nov 20 02:43:44 2010" " + "HidBatt" "HID UPS Battery Driver: Hid Battery Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\HidBatt.sys" "Mon Jul 13 16:31:06 2009" " + "HidBth" "Microsoft Bluetooth HID Miniport: Bluetooth Miniport Driver for HID Devices" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\hidbth.sys" "Mon Jul 13 17:06:52 2009" " + "HidIr" "Microsoft Infrared HID Driver: Infrared Miniport Driver for Input Devices" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\hidir.sys" "Mon Jul 13 17:06:23 2009" " + "HidUsb" "Microsoft HID Class Driver: USB Miniport Driver for Input Devices" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\hidusb.sys" "Mon Mar 4 18:44:59 2019" " + "HpSAMD" "HpSAMD: Smart Array SAS/SATA Controller Media Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\HpSAMD.sys" "Sat Nov 20 05:33:36 2010" " + "HTTP" "HTTP: This service implements the hypertext transfer protocol (HTTP). If this service is disabled, any services that explicitly depend on it will fail to start." "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\HTTP.sys" "Sun Dec 31 17:41:41 2017" " + "hwpolicy" "Hardware Policy Driver: Contains Processor and other policies" "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\hwpolicy.sys" "Sat Nov 20 05:33:38 2010" " + "i8042prt" "i8042 Keyboard and PS/2 Mouse Port Driver: i8042 Port Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\i8042prt.sys" "Mon Jul 13 16:19:57 2009" " + "iaStor" "Intel AHCI Controller: Intel Rapid Storage Technology driver - x64" "(Verified) Intel Corporation" "C:\Windows\system32\DRIVERS\iaStor.sys" "Mon Apr 25 20:07:36 2011" " + "iaStorV" "iaStorV: Intel Matrix Storage Manager driver - x64" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\iaStorV.sys" "Fri Feb 17 22:50:33 2012" " + "igfx" "igfx: Intel Graphics Kernel Mode Driver" "(Verified) Microsoft Windows Hardware Compatibility Publisher" "C:\Windows\system32\DRIVERS\igdkmd64.sys" "Thu Nov 3 03:09:22 2011" " + "iirsp" "iirsp: Intel/ICP Raid Storport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\iirsp.sys" "Mon Jul 13 18:48:04 2009" " + "IntcAzAudAddService" "Service for Realtek HD Audio (WDM): Realtek(r) High Definition Audio Function Driver" "(Verified) Realtek Semiconductor Corp." "C:\Windows\system32\drivers\RTKVHD64.sys" "Thu Dec 15 16:56:16 2016" " + "IntcDAud" "Intel(R) Display Audio: Intel(R) Display Audio Driver" "(Verified) Microsoft Windows Hardware Compatibility Publisher" "C:\Windows\system32\DRIVERS\IntcDAud.sys" "Thu Nov 3 03:09:48 2011" " + "intelide" "intelide: Intel PCI IDE Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\intelide.sys" "Mon Jul 13 18:48:04 2009" " + "intelppm" "Intel Processor Driver: Processor Device Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\intelppm.sys" "Tue Nov 5 12:42:46 2019" " + X "IObitUnlocker" "IObitUnlocker: File driver for IObitUnlocker" "" "File not found: C:\Program Files (x86)\Outlook Express\IO\IObitUnlocker.sys" "Fri May 3 07:36:34 2024" " + "IpFilterDriver" "IP Traffic Filter Driver: IP Traffic Filter Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\ipfltdrv.sys" "Sat Nov 20 02:52:20 2010" " + "IPMIDRV" "IPMIDRV: WMI IPMI DRIVER" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\IPMIDrv.sys" "Sat Nov 20 02:04:54 2010" " + "IPNAT" "IP Network Address Translator: IP Network Address Translator" "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\ipnat.sys" "Mon Jul 13 17:10:03 2009" " + "IRENUM" "IR Bus Enumerator: IR Bus Enumerator" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\irenum.sys" "Mon Jul 13 17:08:59 2009" " + "isapnp" "isapnp: PNP ISA Bus Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\isapnp.sys" "Thu Apr 18 19:43:21 2019" " + "iScsiPrt" "iScsiPort Driver: Microsoft iSCSI Initiator Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\msiscsi.sys" "Mon Feb 3 18:35:49 2014" " + "kbdclass" "Keyboard Class Driver: Keyboard Class Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\kbdclass.sys" "Mon Jul 13 18:48:04 2009" " + "kbdhid" "Keyboard HID Driver: HID Keyboard Filter Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\kbdhid.sys" "Sat Nov 20 02:33:26 2010" " + "kbfiltr" "Keyboard Filter: Keyboard Filter Driver" "(Verified) ASUSTeK Computer Inc." "C:\Windows\system32\DRIVERS\kbfiltr.sys" "Mon Jul 20 02:29:40 2009" " + "KSecDD" "KSecDD: Kernel Security Support Provider Interface" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\ksecdd.sys" "Tue Nov 5 13:23:24 2019" " + "KSecPkg" "KSecPkg: Kernel Security Support Provider Interface Packages" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\ksecpkg.sys" "Tue Nov 5 13:23:03 2019" " + "ksthunk" "Kernel Streaming Thunks: Kernel Streaming WOW Thunk Service" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\ksthunk.sys" "Mon Jul 13 17:00:19 2009" " + "L1C" "NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller: Atheros L1c PCI-E Gigabit Ethernet Controller" "(Verified) Atheros Communications Inc." "C:\Windows\system32\DRIVERS\L1C62x64.sys" "Tue Aug 24 02:55:44 2010" " + "lltdio" "Link-Layer Topology Discovery Mapper I/O Driver: Link-Layer Topology Mapper I/O Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\lltdio.sys" "Mon Jul 13 17:08:51 2009" " + "LSI_FC" "LSI_FC: LSI Fusion-MPT FC Driver (StorPort)" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\lsi_fc.sys" "Mon Jul 13 18:48:04 2009" " + "LSI_SAS" "LSI_SAS: LSI Fusion-MPT SAS Driver (StorPort)" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\lsi_sas.sys" "Mon Jul 13 18:48:04 2009" " + "LSI_SAS2" "LSI_SAS2: LSI SAS Gen2 Driver (StorPort)" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\lsi_sas2.sys" "Mon Jul 13 18:48:04 2009" " + "LSI_SCSI" "LSI_SCSI: LSI Fusion-MPT SCSI Driver (StorPort)" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\lsi_scsi.sys" "Mon Jul 13 18:48:04 2009" " + "luafv" "UAC File Virtualization: Virtualizes file write failures to per-user locations." "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\luafv.sys" "Thu Mar 28 18:36:55 2019" " + "MBAMSwissArmy" "MBAMSwissArmy: Malwarebytes Anti-Malware Swiss Army" "(Verified) Microsoft Windows Hardware Compatibility Publisher" "C:\Windows\System32\Drivers\mbamswissarmy.sys" "Mon Mar 25 22:07:40 2024" " + "megasas" "megasas: MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for x64" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\megasas.sys" "Mon Jul 13 18:48:04 2009" " + "MegaSR" "MegaSR: LSI MegaRAID Software RAID Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\MegaSR.sys" "Mon Jul 13 18:48:04 2009" " + "MEIx64" "Intel(R) Management Engine Interface: Intel(R) Management Engine Interface" "(Verified) Intel Corporation" "C:\Windows\system32\DRIVERS\HECIx64.sys" "Tue Oct 19 16:34:26 2010" " + "Modem" "Modem: Modem Device Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\modem.sys" "Mon Jul 13 17:10:48 2009" " + "monitor" "Microsoft Monitor Class Function Driver Service: Monitor Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\monitor.sys" "Mon Sep 9 18:52:59 2019" " + "mouclass" "Mouse Class Driver: Mouse Class Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\mouclass.sys" "Mon Jul 13 18:48:27 2009" " + "mouhid" "Mouse HID Driver: HID Mouse Filter Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\mouhid.sys" "Mon Jul 13 17:00:20 2009" " + "mountmgr" "Mount Point Manager: Driver responsible with maintaining persistent drive letters and names for volumes" "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\mountmgr.sys" "Thu May 9 08:10:02 2019" " + "MpFilter" "Microsoft Malware Protection Driver: Microsoft On-Access Malware Protection Mini-Filter Driver" "(Verified) Microsoft Corporation" "C:\Windows\system32\DRIVERS\MpFilter.sys" "Thu Aug 25 10:46:12 2016" " + "mpio" "mpio: MultiPath Support Bus-Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\mpio.sys" "Sat Nov 20 05:33:46 2010" " + "MpKsl733773f5" "MpKsl733773f5: " "" "File not found: C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{15CF0AEB-7894-4F4F-9CF6-B0B1676C6104}\MpKslDrv.sys" "Fri May 3 07:36:34 2024" " + "mpsdrv" "Windows Firewall Authorization Driver: Windows Firewall Authorization Driver is a kernel mode driver that provides deep inspection services on inbound and outbound network traffic." "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\mpsdrv.sys" "Fri Aug 10 08:27:40 2018" " + "MRxDAV" "WebDav Client Redirector Driver: Network Redirector that provides WebDAV file access for the WebClient service" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\mrxdav.sys" "Thu Sep 8 07:55:15 2016" " + "mrxsmb" "SMB MiniRedirector Wrapper and Engine: Implements the framework for the SMB filesystem redirector" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\mrxsmb.sys" "Tue Nov 5 12:44:14 2019" " + "mrxsmb10" "SMB 1.x MiniRedirector: Implements the SMB 1.x (CIFS) protocol. This protocol provides connectivity to network resources on pre-Windows Vista servers" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\mrxsmb10.sys" "Tue Nov 5 12:43:53 2019" " + "mrxsmb20" "SMB 2.0 MiniRedirector: Implements the SMB 2.0 protocol, which provides connectivity to network resources on Windows Vista and later servers" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\mrxsmb20.sys" "Tue Nov 5 12:43:51 2019" " + "msahci" "msahci: MS AHCI 1.0 Standard Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\msahci.sys" "Sat Nov 20 05:33:46 2010" " + "msdsm" "msdsm: Microsoft Device Specific Module" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\msdsm.sys" "Sat Nov 20 05:33:46 2010" " + "Msfs" "Msfs: Mailslot driver" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\Msfs.sys" "Sun Feb 3 07:36:04 2019" " + "mshidkmdf" "Pass-through HID to KMDF Filter Driver: Device Filter to provide pass-through interface between HIDCLASS and KMDF" "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\mshidkmdf.sys" "Mon Jul 13 17:06:24 2009" " + "msisadrv" "msisadrv: ISA Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\msisadrv.sys" "Thu Apr 18 19:42:25 2019" " + "MSKSSRV" "Microsoft Streaming Service Proxy: MS KS Server" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\MSKSSRV.sys" "Mon Jul 13 17:00:18 2009" " + "MSPCLOCK" "Microsoft Streaming Clock Proxy: MS Proxy Clock" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\MSPCLOCK.sys" "Mon Jul 13 17:00:17 2009" " + "MSPQM" "Microsoft Streaming Quality Manager Proxy: MS Proxy Quality Manager" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\MSPQM.sys" "Mon Jul 13 17:00:17 2009" " + "MsRPC" "MsRPC: Kernel Remote Procedure Call Provider" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\MsRPC.sys" "Tue Nov 5 13:23:14 2019" " + "mssmbios" "Microsoft System Management BIOS Driver: System Management BIOS Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\mssmbios.sys" "Thu Apr 18 19:43:43 2019" " + "MSTEE" "Microsoft Streaming Tee/Sink-to-Sink Converter: WDM Tee/Communication Transform Filter " "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\MSTEE.sys" "Mon Jul 13 17:00:17 2009" " + "MTConfig" "Microsoft Input Configuration Driver: Microsoft Multi-Touch HID Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\MTConfig.sys" "Mon Jul 13 17:02:08 2009" " + "Mup" "Mup: Multiple UNC Provider Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\mup.sys" "Mon Jul 13 18:48:27 2009" " + "NativeWifiP" "NativeWiFi Filter: NativeWiFi Miniport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\nwifi.sys" "Wed Sep 13 08:05:20 2017" " + "NDIS" "NDIS System Driver: NDIS System Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\ndis.sys" "Fri Jul 6 09:09:54 2018" " + "NdisCap" "NDIS Capture LightWeight Filter: NDIS Capture LightWeight Filter" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\ndiscap.sys" "Mon Jul 13 17:08:13 2009" " + "NdisTapi" "Remote Access NDIS TAPI Driver: Remote Access NDIS TAPI Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\ndistapi.sys" "Fri Dec 7 18:47:13 2018" " + "Ndisuio" "NDIS Usermode I/O Protocol: NDIS User mode I/O driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\ndisuio.sys" "Sat Nov 20 02:50:10 2010" " + "NdisWan" "Remote Access NDIS WAN Driver: Remote Access NDIS WAN Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\ndiswan.sys" "Sat Nov 20 02:52:36 2010" " + "NDProxy" "NDIS Proxy: NDIS Proxy" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\NDProxy.sys" "Fri Dec 7 18:47:15 2018" " + "NetBIOS" "NetBIOS Interface: NetBIOS Interface" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\netbios.sys" "Sun Dec 31 17:55:00 2017" " + "NetBT" "NetBT: This service implements NetBios over TCP/IP." "(Verified) Microsoft Windows" "C:\Windows\System32\DRIVERS\netbt.sys" "Thu Feb 21 07:37:54 2019" " + "netr28x" "Ralink 802.11n Extensible Wireless Driver: Ralink 802.11 Wireless Adapter Driver" "(Verified) Ralink Technology Corporation" "C:\Windows\system32\DRIVERS\netr28x.sys" "Fri Feb 3 20:57:58 2012" " + "nfrd960" "nfrd960: IBM ServeRAID Controller Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\nfrd960.sys" "Mon Jul 13 18:48:26 2009" " + "NisDrv" "Microsoft Network Inspection System: NIS helps guard against intrusion attempts targeting known and newly discovered vulnerabilities in network protocols" "(Verified) Microsoft Corporation" "C:\Windows\system32\DRIVERS\NisDrvWFP.sys" "Thu Aug 25 10:46:12 2016" " + "Npfs" "Npfs: NPFS Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\Npfs.sys" "Tue Nov 5 12:42:54 2019" " + "nsiproxy" "NSI proxy service driver.: NSI proxy service." "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\nsiproxy.sys" "Thu Aug 10 22:58:55 2017" " + "Ntfs" "Ntfs: NT File System Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\Ntfs.sys" "Sun Feb 10 08:10:47 2019" " + "Null" "Null: NULL Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\Null.sys" "Mon Jul 13 16:19:38 2009" " + "nvraid" "nvraid: NVIDIA® nForce(TM) RAID Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\nvraid.sys" "Fri Feb 17 22:50:33 2012" " + "nvstor" "nvstor: NVIDIA® nForce(TM) Sata Performance Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\nvstor.sys" "Fri Feb 17 22:50:33 2012" " + "nv_agp" "NVIDIA nForce AGP Bus Filter: NForce NT AGP Filter" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\nv_agp.sys" "Thu Apr 18 19:42:37 2019" " + "ohci1394" "1394 OHCI Compliant Host Controller (Legacy): 1394 OpenHCI Port Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\ohci1394.sys" "Mon Jul 13 17:06:45 2009" " + "Parport" "Parallel port driver: Parallel Port Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\parport.sys" "Mon Jul 13 17:00:41 2009" " + "partmgr" "Partition Manager: Disk class filter driver that auctions out partitions to volume managers" "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\partmgr.sys" "Sat Mar 17 00:58:57 2012" " + "pci" "PCI Bus Driver: NT Plug and Play PCI Enumerator" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\pci.sys" "Thu Apr 18 19:44:22 2019" " + "pciide" "pciide: Generic PCI IDE Bus Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\pciide.sys" "Mon Jul 13 18:45:45 2009" " + "pcmcia" "pcmcia: PCMCIA Bus Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\pcmcia.sys" "Mon Jul 13 18:45:45 2009" " + "pcw" "Performance Counters for Windows Driver: Performance Counters for Windows Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\pcw.sys" "Mon Jul 13 18:45:45 2009" " + "PEAUTH" "PEAUTH: Protected Environment Authentication and Authorization Export Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\peauth.sys" "Thu May 9 08:01:25 2019" " + "PptpMiniport" "WAN Miniport (PPTP): WAN Miniport (PPTP)" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\raspptp.sys" "Sat Nov 20 02:52:34 2010" " + "Processor" "Processor Driver: Processor Device Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\processr.sys" "Tue Nov 5 12:42:46 2019" " + "ProtonVPNCallout" "ProtonVPN Callout: ProtonVPN Split Tunnel Driver" "(Verified) Proton Technologies AG" "C:\Program Files (x86)\Proton Technologies\ProtonVPN\x64\Win7\ProtonVPN.CalloutDriver.sys" "Wed Jul 5 01:07:44 2023" " + "Psched" "QoS Packet Scheduler: QoS Packet Scheduler" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\pacer.sys" "Sun Dec 31 17:55:05 2017" " + "ql2300" "ql2300: QLogic Fibre Channel Stor Miniport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\ql2300.sys" "Mon Jul 13 18:45:46 2009" " + "ql40xx" "ql40xx: QLogic iSCSI Storport Miniport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\ql40xx.sys" "Mon Jul 13 18:45:45 2009" " + "QWAVEdrv" "QWAVE driver: Quality Windows Audio/Video Experience component driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\qwavedrv.sys" "Mon Jul 13 17:09:48 2009" " + "RasAcd" "Remote Access Auto Connection Driver: Remote Access Auto Connection Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\DRIVERS\rasacd.sys" "Mon Jul 13 17:10:09 2009" " + "RasAgileVpn" "WAN Miniport (IKEv2): WAN Miniport (IKEv2)" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\AgileVpn.sys" "Mon Jul 13 17:10:24 2009" " + "Rasl2tp" "WAN Miniport (L2TP): WAN Miniport (L2TP)" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\rasl2tp.sys" "Sat Nov 20 02:52:36 2010" " + "RasPppoe" "Remote Access PPPOE Driver: Remote Access PPPOE Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\raspppoe.sys" "Mon Jul 13 17:10:17 2009" " + "RasSstp" "WAN Miniport (SSTP): WAN Miniport (SSTP)" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\rassstp.sys" "Mon Jul 13 17:10:25 2009" " + "rdbss" "Redirected Buffering Sub Sysytem: Provides the framework for network mini-redirectors" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\rdbss.sys" "Mon Sep 9 18:49:51 2019" " + "rdpbus" "Remote Desktop Device Redirector Bus Driver: Microsoft RDP Bus Device driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\rdpbus.sys" "Mon Jul 13 17:17:46 2009" " + "RDPCDD" "RDPCDD: RDPDD Chained DD" "(Verified) Microsoft Windows" "C:\Windows\System32\DRIVERS\RDPCDD.sys" "Mon Jul 13 17:16:34 2009" " + "RDPENCDD" "RDP Encoder Mirror Driver: RDP Encoder Mirror Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\rdpencdd.sys" "Mon Jul 13 17:16:34 2009" " + "RDPREFMP" "Reflector Display Driver used to gain access to graphics data: RDP Reflector Driver Miniport" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\rdprefmp.sys" "Mon Jul 13 17:16:35 2009" " + "RdpVideoMiniport" "Remote Desktop Video Miniport Driver: Microsoft RDP Video Miniport driver" "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\rdpvideominiport.sys" "Thu Aug 23 07:10:20 2012" " + "RDPWD" "RDP Winstation Driver: RDP Terminal Stack Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\RDPWD.sys" "Wed Jul 16 18:21:54 2014" " + "rdyboost" "ReadyBoost: ReadyBoost" "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\rdyboost.sys" "Sun Dec 31 18:21:11 2017" " + "RFCOMM" "Bluetooth Device (RFCOMM Protocol TDI): Bluetooth Device (RFCOMM Protocol TDI)" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\rfcomm.sys" "Mon Jul 13 17:06:56 2009" " + "rspndr" "Link-Layer Topology Discovery Responder: Link-Layer Topology Responder Driver for NDIS 6" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\rspndr.sys" "Mon Jul 13 17:08:51 2009" " + "SASDIFSV" "SASDIFSV: SASDIFSV64.SYS" "(Verified) Support.com, Inc." "C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS" "Fri Jul 22 09:26:56 2011" " + "SASKUTIL" "SASKUTIL: SASKUTIL64.SYS" "(Verified) Support.com, Inc." "C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS" "Tue Jul 12 14:55:18 2011" " + "sbp2port" "sbp2port: SBP-2 Protocol Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\sbp2port.sys" "Sat Nov 20 05:33:56 2010" " + "scfilter" "Smart card PnP Class Filter Driver: Smart card reader filter driver enabling smart card PnP." "(Verified) Microsoft Windows" "C:\Windows\System32\DRIVERS\scfilter.sys" "Sat Nov 20 02:10:00 2010" " + X "secdrv" "Security Driver: Macrovision SECURITY Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\secdrv.sys" "Wed Jun 10 13:37:19 2009" " + "Serenum" "Serenum Filter Driver: Serial Port Enumerator" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\serenum.sys" "Mon Jul 13 17:00:33 2009" " + "Serial" "Serial: Serial Device Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\serial.sys" "Mon Jul 13 17:00:40 2009" " + "sermouse" "Serial Mouse Driver: Serial Mouse Filter Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\sermouse.sys" "Mon Jul 13 17:00:20 2009" " + "sffdisk" "SFF Storage Class Driver: Small Form Factor Disk Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\sffdisk.sys" "Mon Jul 13 17:01:01 2009" " + "sffp_mmc" "SFF Storage Protocol Driver for MMC: Small Form Factor MMC Protocol Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\sffp_mmc.sys" "Mon Jul 13 17:01:03 2009" " + "sffp_sd" "SFF Storage Protocol Driver for SDBus: Small Form Factor SD Protocol Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\sffp_sd.sys" "Sat Nov 20 02:34:02 2010" " + "sfloppy" "High-Capacity Floppy Disk Drive: SCSI Floppy Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\sfloppy.sys" "Mon Jul 13 17:01:02 2009" " + "Sftfs" "Sftfs: Sftfs Driver" "(Verified) Microsoft Corporation" "C:\Windows\system32\DRIVERS\Sftfslh.sys" "Wed Jun 26 20:21:44 2013" " + "Sftplay" "Sftplay: Sftplay Driver" "(Verified) Microsoft Corporation" "C:\Windows\system32\DRIVERS\Sftplaylh.sys" "Wed Jun 26 20:21:46 2013" " + "Sftredir" "Sftredir: Sftredir Mini-Filter Driver" "(Verified) Microsoft Corporation" "C:\Windows\system32\DRIVERS\Sftredirlh.sys" "Wed Jun 26 20:21:48 2013" " + "Sftvol" "Sftvol: Sftvol Driver" "(Verified) Microsoft Corporation" "C:\Windows\system32\DRIVERS\Sftvollh.sys" "Wed Jun 26 20:21:50 2013" " + "SiSGbeLH" "SiS191/SiS190 Ethernet Device NDIS 6.0 Driver: NDIS 6.0 Miniport Driver for SiS191/SiS190 Ethernet Device" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\SiSG664.sys" "Wed Jun 10 13:35:57 2009" " + "SiSRaid2" "SiSRaid2: SiS RAID Stor Miniport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\SiSRaid2.sys" "Mon Jul 13 18:45:45 2009" " + "SiSRaid4" "SiSRaid4: SiS AHCI Stor-Miniport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\sisraid4.sys" "Mon Jul 13 18:45:46 2009" " + "SIUSBXP" "SIUSBXP: SiUSBXp.sys" "(Verified) Microsoft Windows Hardware Compatibility Publisher" "C:\Windows\system32\drivers\SiUSBXp.sys" "Mon Nov 8 13:45:00 2010" " + "Smb" "Message-oriented TCP/IP and TCP/IPv6 Protocol (SMB session): Microsoft NetbiosSmb Device Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\smb.sys" "Mon Jul 13 17:09:09 2009" " + "spldr" "Security Processor Loader Driver: loader for security processor" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\spldr.sys" "Mon Jul 13 18:45:55 2009" " + "srv" "Server SMB 1.xxx Driver: Enables connectivity from Windows XP and earlier clients" "(Verified) Microsoft Windows" "C:\Windows\System32\DRIVERS\srv.sys" "Tue Nov 5 12:44:14 2019" " + "srv2" "Server SMB 2.xxx Driver: Enables connectivity from Windows Vista and later clients" "(Verified) Microsoft Windows" "C:\Windows\System32\DRIVERS\srv2.sys" "Tue Nov 5 12:44:01 2019" " + "srvnet" "srvnet: Server Network driver" "(Verified) Microsoft Windows" "C:\Windows\System32\DRIVERS\srvnet.sys" "Tue Nov 5 12:43:52 2019" " + "stexstor" "stexstor: Promise SuperTrak EX Series Driver for Windows " "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\stexstor.sys" "Mon Jul 13 18:45:55 2009" " + "swenum" "Software Bus Driver: Plug and Play Software Device Enumerator" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\swenum.sys" "Thu Apr 18 19:42:25 2019" " + "SynTP" "Synaptics TouchPad Driver: Synaptics Touchpad Driver" "(Verified) Synaptics Incorporated" "C:\Windows\system32\DRIVERS\SynTP.sys" "Thu May 5 05:32:56 2011" " + "tapprotonvpn" "TAP-ProtonVPN Windows Adapter V9: TAP-Windows Virtual Network Driver (NDIS 6.0)" "(Verified) Proton Technologies AG" "C:\Windows\system32\DRIVERS\tapprotonvpn.sys" "Wed Dec 30 02:27:18 2020" " + "Tcpip" "TCP/IP Protocol Driver: TCP/IP Protocol Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\tcpip.sys" "Sat Jul 13 01:35:09 2019" " + "TCPIP6" "Microsoft IPv6 Protocol Driver: Microsoft IPv6 Protocol Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\tcpip.sys" "Sat Jul 13 01:35:09 2019" " + "tcpipreg" "TCP/IP Registry Compatibility: Provides compatibility for legacy applications which interact with TCP/IP through the registry. If this service is stopped, certain applications may have impaired functionality." "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\tcpipreg.sys" "Wed Oct 3 09:07:26 2012" " + "TDPIPE" "TDPIPE: Named Pipe Transport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\tdpipe.sys" "Mon Jul 13 17:16:32 2009" " + "TDTCP" "TDTCP: TCP Transport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\tdtcp.sys" "Thu Feb 16 20:57:32 2012" " + "tdx" "NetIO Legacy TDI Support Driver: NetIO Legacy TDI Support Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\tdx.sys" "Sat Jul 29 07:56:30 2017" " + "TermDD" "Terminal Device Driver: Remote Desktop Server Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\termdd.sys" "Thu Apr 18 19:43:21 2019" " + "TPM" "TPM: TPM Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\tpm.sys" "Mon Jul 13 16:21:48 2009" " + "tssecsrv" "Remote Desktop Services Security Filter Driver: Remote Desktop Services Security Filter Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\DRIVERS\tssecsrv.sys" "Wed Jul 16 18:21:27 2014" " + "TsUsbFlt" "TsUsbFlt: Remote Desktop USB Hub Class Filter Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\tsusbflt.sys" "Tue Oct 1 19:22:20 2013" " + "TsUsbGD" "Remote Desktop Generic USB Device: Remote Desktop Generic USB Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\TsUsbGD.sys" "Thu Aug 23 07:08:26 2012" " + "tunnel" "Microsoft Tunnel Miniport Adapter Driver: Microsoft Tunnel Interface Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\tunnel.sys" "Sat Nov 20 02:51:52 2010" " + "uagp35" "Microsoft AGPv3.5 Filter: MS AGPv3.5 Filter" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\uagp35.sys" "Mon Jul 13 18:45:55 2009" " + X "udfs" "udfs: Reads/Writes UDF 1.02,1.5,2.0x,2.5 disc formats, usually found on C/DVD discs. (Core) (All pieces)" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\udfs.sys" "Sun Feb 10 07:36:11 2019" " + "uliagpkx" "Uli AGP Bus Filter: ULi AGPv3.0 Filter for K8/9 Processor Platforms" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\uliagpkx.sys" "Thu Apr 18 19:43:59 2019" " + "umbus" "UMBus Enumerator Driver: User-Mode Bus Enumerator" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\umbus.sys" "Sat Nov 20 02:44:38 2010" " + "UmPass" "Microsoft UMPass Driver: Generic pass-through driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\umpass.sys" "Mon Jul 13 17:06:52 2009" " + "usbaudio" "USB Audio Driver (WDM): USB Audio Class Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\usbaudio.sys" "Fri Jul 12 03:40:58 2013" " + "usbccgp" "Microsoft USB Generic Parent Driver: USB Common Class Generic Parent Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\usbccgp.sys" "Tue Nov 26 17:41:15 2013" " + "usbcir" "eHome Infrared Receiver (USBCIR): USB Consumer IR Driver for eHome" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\usbcir.sys" "Fri Jul 12 03:41:12 2013" " + "usbehci" "Microsoft USB 2.0 Enhanced Host Controller Miniport Driver: EHCI eUSB Miniport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\usbehci.sys" "Tue Nov 26 17:41:11 2013" " + "usbhub" "Microsoft USB Standard Hub Driver: Default Hub Driver for USB" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\usbhub.sys" "Tue Nov 26 17:41:37 2013" " + "usbohci" "Microsoft USB Open Host Controller Miniport Driver: OHCI USB Miniport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\usbohci.sys" "Tue Nov 26 17:41:09 2013" " + "usbprint" "Microsoft USB PRINTER Class: USB Printer driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\usbprint.sys" "Mon Jul 13 17:38:18 2009" " + "usbscan" "USB Scanner Driver: USB Scanner Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\usbscan.sys" "Tue Jul 2 21:40:12 2013" " + "USBSTOR" "USB Mass Storage Driver: USB Mass Storage Class Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\USBSTOR.SYS" "Wed Feb 3 10:07:06 2016" " + "usbuhci" "Microsoft USB Universal Host Controller Miniport Driver: UHCI USB Miniport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\usbuhci.sys" "Tue Nov 26 17:41:06 2013" " + "usbvideo" "USB Video Device (WDM): USB Video Class Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\Drivers\usbvideo.sys" "Fri Jul 12 03:41:35 2013" " + "vdrvroot" "Microsoft Virtual Drive Enumerator Driver: Virtual Drive Root Enumerator" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\vdrvroot.sys" "Thu Apr 18 19:42:46 2019" " + "vga" "vga: VGA/Super VGA Video Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\vgapnp.sys" "Mon Jul 13 16:38:47 2009" " + "VgaSave" "VgaSave: VGA/Super VGA Video Driver" "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\vga.sys" "Mon Jul 13 16:38:47 2009" " + "vhdmp" "vhdmp: VHD Miniport Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\vhdmp.sys" "Sat Nov 20 05:34:02 2010" " + "viaide" "viaide: VIA Generic PCI IDE Bus Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\viaide.sys" "Mon Jul 13 18:45:55 2009" " + "volmgr" "Volume Manager Driver: Volume Manager Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\volmgr.sys" "Thu Apr 18 19:42:25 2019" " + "volmgrx" "Dynamic Volume Manager: Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks" "(Verified) Microsoft Windows" "C:\Windows\System32\drivers\volmgrx.sys" "Fri Jul 7 08:33:36 2017" " + "volsnap" "Storage volumes: Volume Shadow Copy Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\volsnap.sys" "Fri Feb 17 22:37:37 2012" " + "vsmraid" "vsmraid: VIA RAID DRIVER FOR AMD-X86-64" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\vsmraid.sys" "Mon Jul 13 18:45:55 2009" " + "vwifibus" "Virtual WiFi Bus Driver: Virtual WiFi Bus Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\vwifibus.sys" "Mon Jul 13 17:07:21 2009" " + "vwififlt" "Virtual WiFi Filter Driver: Virtual WiFi Filter Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\vwififlt.sys" "Mon Jul 13 17:07:22 2009" " + "WacomPen" "Wacom Serial Pen HID Driver: Wacom Serial Pen Tablet HID Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\wacompen.sys" "Mon Jul 13 17:02:07 2009" " + "WANARP" "Remote Access IP ARP Driver: Remote Access IP ARP Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\wanarp.sys" "Fri Dec 7 18:47:22 2018" " + "Wanarpv6" "Remote Access IPv6 ARP Driver: Remote Access IPv6 ARP Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\wanarp.sys" "Fri Dec 7 18:47:22 2018" " + "Wd" "Wd: Microsoft Watchdog Timer Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\wd.sys" "Mon Jul 13 18:45:55 2009" " + "Wdf01000" "Kernel Mode Driver Frameworks service: Kernel Mode Driver Framework Runtime" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\Wdf01000.sys" "Tue Jun 25 15:55:52 2013" " + "WfpLwf" "WFP Lightweight Filter: WFP Lightweight Filter" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\wfplwf.sys" "Mon Jul 13 17:09:26 2009" " + "WimFltr" "WimFltr: Windows Image Mini-Filter Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\wimfltr.sys" "Fri May 23 17:27:28 2008" " + "WIMMount" "WIMMount: WIM Image mount service driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\wimmount.sys" "Mon Jul 13 18:45:56 2009" " + "wintun" "wintun: Wintun Userspace Tunnel" "(Verified) Microsoft Windows Hardware Compatibility Publisher" "C:\Windows\system32\DRIVERS\wintun.sys" "Wed Jul 26 10:28:02 2023" " + "WinUsb" "WinUSB Driver: Windows USB Class Driver BETA" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\WinUsb.sys" "Sat Nov 20 02:43:58 2010" " + "WireGuard" "WireGuard: WireGuard Tunnel" "(Verified) Microsoft Windows Hardware Compatibility Publisher" "C:\Windows\system32\DRIVERS\wireguard.sys" "Sat Feb 12 23:55:55 2022" " + "WmiAcpi" "Microsoft Windows Management Interface for ACPI: Windows Management Interface for ACPI" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\wmiacpi.sys" "Sat Feb 10 09:25:26 2018" " + X "ws2ifsl" "Winsock IFS Driver: Winsock IFS Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\ws2ifsl.sys" "Mon Jul 13 17:10:33 2009" " + "WudfPf" "User Mode Driver Frameworks Platform Driver: Windows Driver Foundation - User-mode Driver Framework Platform Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\drivers\WudfPf.sys" "Wed Jul 25 19:26:45 2012" " + "WUDFRd" "WUDFRd: Windows Driver Foundation - User-mode Driver Framework Reflector" "(Verified) Microsoft Windows" "C:\Windows\system32\DRIVERS\WUDFRd.sys" "Wed Jul 25 19:26:06 2012" " [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Font Drivers] + "Adobe Type Manager" "Windows NT OpenType/Type 1 Font Driver" "(Verified) Microsoft Windows" "C:\Windows\system32\atmfd.dll" "Tue Nov 5 13:29:08 2019" " [Codecs] [HKCU\Software\Microsoft\Windows NT\CurrentVersion\Drivers32] [HKCU\Software\Classes\Filter] [HKCU\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance] [HKCU\Software\Classes\CLSID\{AC757296-3522-4E11-9862-C17BE5A1767E}\Instance] [HKCU\Software\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance] [HKCU\Software\Classes\CLSID\{ABE3B9A4-257D-4B97-BD1A-294AF496222E}\Instance] [HKCU\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32] [HKCU\Software\Wow6432Node\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance] [HKCU\Software\Wow6432Node\Classes\CLSID\{AC757296-3522-4E11-9862-C17BE5A1767E}\Instance] [HKCU\Software\Wow6432Node\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance] [HKCU\Software\Wow6432Node\Classes\CLSID\{ABE3B9A4-257D-4B97-BD1A-294AF496222E}\Instance] [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32] + "aux" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "aux1" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "aux2" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "aux3" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "midi" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "midi1" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "midi2" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "midi3" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "midimapper" "Microsoft MIDI Mapper" "(Verified) Microsoft Windows" "C:\Windows\system32\midimap.dll" "Mon Jul 13 18:41:23 2009" " + "mixer" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "mixer1" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "mixer2" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "mixer3" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "msacm.imaadpcm" "IMA ADPCM CODEC for MSACM" "(Verified) Microsoft Windows" "C:\Windows\system32\imaadp32.acm" "Mon Jul 13 18:38:53 2009" " + "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "(Verified) Microsoft Windows" "C:\Windows\System32\l3codeca.acm" "Mon Jul 13 18:38:53 2009" " + "msacm.msadpcm" "Microsoft ADPCM CODEC for MSACM" "(Verified) Microsoft Windows" "C:\Windows\system32\msadp32.acm" "Mon Jul 13 18:38:53 2009" " + "msacm.msg711" "Microsoft CCITT G.711 (A-Law and u-Law) CODEC for MSACM" "(Verified) Microsoft Windows" "C:\Windows\system32\msg711.acm" "Mon Jul 13 18:38:53 2009" " + "msacm.msgsm610" "Microsoft GSM 6.10 Audio CODEC for MSACM" "(Verified) Microsoft Windows" "C:\Windows\system32\msgsm32.acm" "Mon Jul 13 18:38:53 2009" " + "MSVideo8" "VfW MM Driver for WDM Video Capture Devices" "(Verified) Microsoft Windows" "C:\Windows\system32\VfWWDM32.dll" "Sat Nov 20 05:27:28 2010" " + "vidc.i420" "Intel Indeo(R) Video YUV Codec" "(Verified) Microsoft Windows" "C:\Windows\system32\iyuv_32.dll" "Sat Nov 20 05:26:42 2010" " + "VIDC.IYUV" "Intel Indeo(R) Video YUV Codec" "(Verified) Microsoft Windows" "C:\Windows\system32\iyuv_32.dll" "Sat Nov 20 05:26:42 2010" " + "vidc.mrle" "Microsoft RLE Compressor" "(Verified) Microsoft Windows" "C:\Windows\system32\msrle32.dll" "Sat Nov 20 05:27:08 2010" " + "vidc.msvc" "Microsoft Video 1 Compressor" "(Verified) Microsoft Windows" "C:\Windows\system32\msvidc32.dll" "Sat Nov 20 05:27:10 2010" " + "VIDC.UYVY" "Microsoft UYVY Video Decompressor" "(Verified) Microsoft Windows" "C:\Windows\system32\msyuv.dll" "Sat Nov 20 05:27:12 2010" " + "VIDC.YUY2" "Microsoft UYVY Video Decompressor" "(Verified) Microsoft Windows" "C:\Windows\system32\msyuv.dll" "Sat Nov 20 05:27:12 2010" " + "VIDC.YVU9" "Toshiba Video Codec" "(Verified) Microsoft Windows" "C:\Windows\system32\tsbyuv.dll" "Sat Nov 20 05:27:28 2010" " + "VIDC.YVYU" "Microsoft UYVY Video Decompressor" "(Verified) Microsoft Windows" "C:\Windows\system32\msyuv.dll" "Sat Nov 20 05:27:12 2010" " + "wave" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "wave1" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "wave2" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "wave3" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\system32\wdmaud.drv" "Sat Nov 20 05:24:22 2010" " + "wavemapper" "Microsoft Sound Mapper" "(Verified) Microsoft Windows" "C:\Windows\system32\msacm32.drv" "Mon Jul 13 18:38:50 2009" " [HKLM\Software\Classes\Filter] [HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance] + "AC3 Parser Filter" "DirectShow MPEG-2 Splitter." "(Verified) Microsoft Windows" "C:\Windows\System32\mpg2splt.ax" "Fri Feb 17 22:42:17 2012" " + "ACM Wrapper" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "ASUS Color Preview Filter" "ASUS Color Preview Filter" "(Not Verified) ASUSTek" "C:\Program Files (x86)\ASUS\Splendid\RGBTran.ax" "Tue Feb 21 14:49:00 2012" " + "AVI Decompressor" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "AVI mux" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\qcap.dll" "Sat Nov 20 05:27:24 2010" " + "AVI Splitter" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "AVI/WAV File Source" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "BDA MPEG2 Transport Information Filter" "Microsoft Transport Information Filter for MPEG2 based networks." "(Verified) Microsoft Windows" "C:\Windows\System32\psisrndr.ax" "Fri Feb 17 23:05:27 2012" " + "CBVA DMO wrapper filter" "Windows Media Center Content Analysis Filter Module" "(Verified) Microsoft Windows" "C:\Windows\ehome\cbva.dll" "Sat Nov 20 05:27:24 2010" " + "Closed Captions Analysis Filter" "CCA DirectShow Filter." "(Verified) Microsoft Windows" "C:\Windows\System32\cca.dll" "Sat Nov 20 05:25:50 2010" " + "Color Convert" "ASUS Color Preview Filter" "(Not Verified) ASUSTek" "C:\Program Files (x86)\ASUS\Splendid\RGBTran.ax" "Tue Feb 21 14:49:00 2012" " + "Color Space Converter" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "Default Video Renderer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "DirectVobSub" "VobSub & TextSub filter for DirectShow/VirtualDub/Avisynth" "(Not Verified) xy-VSFilter Team" "C:\Program Files (x86)\K-Lite Codec Pack\Filters\DirectVobSub64\vsfilter.dll" "Wed Dec 9 02:00:00 2020" " + "DirectVobSub (auto-loading version)" "VobSub & TextSub filter for DirectShow/VirtualDub/Avisynth" "(Not Verified) xy-VSFilter Team" "C:\Program Files (x86)\K-Lite Codec Pack\Filters\DirectVobSub64\vsfilter.dll" "Wed Dec 9 02:00:00 2020" " + "DV Muxer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\qdv.dll" "Sat Nov 20 05:27:24 2010" " + "DV Splitter" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\qdv.dll" "Sat Nov 20 05:27:24 2010" " + "DV Video Decoder" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\qdv.dll" "Sat Nov 20 05:27:24 2010" " + "DVD Navigator" "DirectShow DVD PlayBack Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\qdvd.dll" "Thu May 9 08:07:31 2019" " + "Enhanced Video Renderer" "Enhanced Video Renderer DLL" "(Verified) Microsoft Windows" "C:\Windows\System32\evr.dll" "Thu May 9 08:07:10 2019" " + "File Source (Async.)" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "File Source (URL)" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "File stream renderer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "File Writer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\qcap.dll" "Sat Nov 20 05:27:24 2010" " + "Infinite Pin Tee Filter" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\qcap.dll" "Sat Nov 20 05:27:24 2010" " + "Internal Text Renderer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "iTV Data Capture filter" "iTV Data Filters." "(Verified) Microsoft Windows" "C:\Windows\System32\itvdata.dll" "Sat Nov 20 05:26:42 2010" " + "iTV Data Sink" "iTV Data Filters." "(Verified) Microsoft Windows" "C:\Windows\System32\itvdata.dll" "Sat Nov 20 05:26:42 2010" " + "LAV Audio Decoder" "LAV Audio Decoder - DirectShow Audio Decoder" "(Not Verified) 1f0.de - Hendrik Leppkes" "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\LAVAudio.ax" "Thu Feb 25 02:00:00 2021" " + "LAV Splitter" "LAV Splitter - DirectShow Media Splitter" "(Not Verified) 1f0.de - Hendrik Leppkes" "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\LAVSplitter.ax" "Thu Feb 25 02:00:00 2021" " + "LAV Splitter Source" "LAV Splitter - DirectShow Media Splitter" "(Not Verified) 1f0.de - Hendrik Leppkes" "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\LAVSplitter.ax" "Thu Feb 25 02:00:00 2021" " + "LAV Video Decoder" "LAV Video Decoder - DirectShow Video Decoder" "(Not Verified) 1f0.de - Hendrik Leppkes" "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\LAVVideo.ax" "Thu Feb 25 02:00:00 2021" " + "Line 21 Decoder 2" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "Media Center Extender Encryption Filter" "Media Center Extender Filter" "(Verified) Microsoft Windows" "C:\Windows\ehome\Mcx2Filter.dll" "Sat Nov 20 05:26:52 2010" " + "Microsoft AC3 Encoder" "Microsoft AC-3 Encoder" "(Verified) Microsoft Windows" "C:\Windows\System32\msac3enc.dll" "Sat Nov 20 05:27:02 2010" " + "Microsoft DTV-DVD Audio Decoder" "Microsoft DTV-DVD Audio Decoder" "(Verified) Microsoft Windows" "C:\Windows\System32\msmpeg2adec.dll" "Tue Dec 8 11:07:33 2015" " + "Microsoft DTV-DVD Video Decoder" "Microsoft DTV-DVD Video Decoder" "(Verified) Microsoft Windows" "C:\Windows\System32\msmpeg2vdec.dll" "Tue Dec 8 11:07:46 2015" " + "Microsoft MPEG-2 Audio Encoder" "Microsoft MPEG-2 Encoder" "(Verified) Microsoft Windows" "C:\Windows\System32\msmpeg2enc.dll" "Tue Dec 8 11:07:33 2015" " + "Microsoft MPEG-2 Encoder" "Microsoft MPEG-2 Encoder" "(Verified) Microsoft Windows" "C:\Windows\System32\msmpeg2enc.dll" "Tue Dec 8 11:07:33 2015" " + "Microsoft MPEG-2 Video Encoder" "Microsoft MPEG-2 Encoder" "(Verified) Microsoft Windows" "C:\Windows\System32\msmpeg2enc.dll" "Tue Dec 8 11:07:33 2015" " + "Microsoft TV Captions Decoder" "Media Center Captioning Module" "(Verified) Microsoft Windows" "C:\Windows\ehome\MSTVCapn.dll" "Fri Feb 17 23:13:20 2012" " + "Microsoft TV Subtitles Decoder" "Media Center Captioning Module" "(Verified) Microsoft Windows" "C:\Windows\ehome\MSTVCapn.dll" "Fri Feb 17 23:13:20 2012" " + "MIDI Parser" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "MJPEG Decompressor" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "MPEG Audio Codec" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "MPEG Video Codec" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "MPEG-2 Demultiplexer" "DirectShow MPEG-2 Splitter." "(Verified) Microsoft Windows" "C:\Windows\System32\mpg2splt.ax" "Fri Feb 17 22:42:17 2012" " + "MPEG-2 Sections and Tables" "Microsoft MPEG-2 Section and Table Acquisition Module" "(Verified) Microsoft Windows" "C:\Windows\System32\Mpeg2Data.ax" "Sat Nov 20 05:24:26 2010" " + "MPEG-2 Splitter" "DirectShow MPEG-2 Splitter." "(Verified) Microsoft Windows" "C:\Windows\System32\mpg2splt.ax" "Fri Feb 17 22:42:17 2012" " + "Mpeg-2 Video Stream Analysis" "DirectShow Stream Buffer Filter." "(Verified) Microsoft Windows" "C:\Windows\System32\sbe.dll" "Fri Feb 17 22:42:17 2012" " + "MPEG-I Stream Splitter" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "Multi-file Parser" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "NetBridge" "Media Center NetBridge" "(Verified) Microsoft Windows" "C:\Windows\ehome\netbridge.dll" "Sat Nov 20 05:27:24 2010" " + "Null Renderer" "DirectShow Editing." "(Verified) Microsoft Windows" "C:\Windows\System32\qedit.dll" "Tue Dec 8 11:07:36 2015" " + "RDP DShow Video Renderer" "RDP Renderer Filter (redirector)" "(Verified) Microsoft Windows" "C:\Windows\system32\DShowRdpFilter.dll" "Sat Nov 20 05:26:10 2010" " + "SAMI (CC) Reader" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "Sample Grabber" "DirectShow Editing." "(Verified) Microsoft Windows" "C:\Windows\System32\qedit.dll" "Tue Dec 8 11:07:36 2015" " + "SBE2 Sink" "DirectShow Stream Buffer Filter." "(Verified) Microsoft Windows" "C:\Windows\System32\sbe.dll" "Fri Feb 17 22:42:17 2012" " + "SBE2FileScan" "DirectShow Stream Buffer Filter." "(Verified) Microsoft Windows" "C:\Windows\System32\sbe.dll" "Fri Feb 17 22:42:17 2012" " + "SBE2MediaTypeProfile" "DirectShow Stream Buffer Filter." "(Verified) Microsoft Windows" "C:\Windows\System32\sbe.dll" "Fri Feb 17 22:42:17 2012" " + "Smart Tee Filter" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\qcap.dll" "Sat Nov 20 05:27:24 2010" " + "SoundRecorder Null Renderer" "Windows Sound Recorder" "(Verified) Microsoft Windows" "C:\Windows\system32\WavDest.dll" "Sat Nov 20 05:27:28 2010" " + "SoundRecorder Volume Watch" "Windows Sound Recorder" "(Verified) Microsoft Windows" "C:\Windows\system32\WavDest.dll" "Sat Nov 20 05:27:28 2010" " + "SoundRecorder WAV Dest" "Windows Sound Recorder" "(Verified) Microsoft Windows" "C:\Windows\system32\WavDest.dll" "Sat Nov 20 05:27:28 2010" " + "StreamBufferSink" "DirectShow Stream Buffer Filter." "(Verified) Microsoft Windows" "C:\Windows\System32\sbe.dll" "Fri Feb 17 22:42:17 2012" " + "StreamBufferSource" "DirectShow Stream Buffer Filter." "(Verified) Microsoft Windows" "C:\Windows\System32\sbe.dll" "Fri Feb 17 22:42:17 2012" " + "VBI Codec" "Microsoft VBI Codec" "(Verified) Microsoft Windows" "C:\Windows\System32\VBICodec.ax" "Sat Nov 20 05:24:26 2010" " + "VBI Surface Allocator" "VBI Surface Allocator Filter" "(Verified) Microsoft Windows" "C:\Windows\System32\vbisurf.ax" "Sat Nov 20 05:24:26 2010" " + "VGA 16 color ditherer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "Video Mixing Renderer 9" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "Video Port Manager" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "Video Renderer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "VPS Decoder" "Microsoft Teletext Server" "(Verified) Microsoft Windows" "C:\Windows\System32\WSTPager.ax" "Sat Nov 20 05:24:26 2010" " + "Wave Parser" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\system32\quartz.dll" "Thu May 9 08:07:31 2019" " + "WM ASF Reader" "DirectShow ASF Support" "(Verified) Microsoft Windows" "C:\Windows\system32\qasf.dll" "Tue Dec 8 11:07:36 2015" " + "WM ASF Writer" "DirectShow ASF Support" "(Verified) Microsoft Windows" "C:\Windows\system32\qasf.dll" "Tue Dec 8 11:07:36 2015" " + "WMEnc Screen Capture Filter" "WMPSrcWp Module" "(Verified) Microsoft Windows" "C:\Windows\System32\wmpsrcwp.dll" "Sat Nov 20 05:27:30 2010" " + "WST Pager" "Microsoft Teletext Server" "(Verified) Microsoft Windows" "C:\Windows\System32\WSTPager.ax" "Sat Nov 20 05:24:26 2010" " [HKLM\Software\Classes\CLSID\{AC757296-3522-4E11-9862-C17BE5A1767E}\Instance] [HKLM\Software\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance] [HKLM\Software\Classes\CLSID\{ABE3B9A4-257D-4B97-BD1A-294AF496222E}\Instance] [HKLM\Software\Wow6432Node\Classes\Filter] [HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32] + "aux" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "aux1" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "aux2" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "aux3" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "midi" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "midi1" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "midi2" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "midi3" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "midimapper" "Microsoft MIDI Mapper" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\midimap.dll" "Mon Jul 13 18:15:40 2009" " + "mixer" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "mixer1" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "mixer2" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "mixer3" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "msacm.imaadpcm" "IMA ADPCM CODEC for MSACM" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\imaadp32.acm" "Mon Jul 13 18:14:10 2009" " + "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\l3codeca.acm" "Mon Jul 13 18:14:10 2009" " + "msacm.msadpcm" "Microsoft ADPCM CODEC for MSACM" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msadp32.acm" "Mon Jul 13 18:14:10 2009" " + "msacm.msg711" "Microsoft CCITT G.711 (A-Law and u-Law) CODEC for MSACM" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msg711.acm" "Mon Jul 13 18:14:10 2009" " + "msacm.msgsm610" "Microsoft GSM 6.10 Audio CODEC for MSACM" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msgsm32.acm" "Mon Jul 13 18:14:10 2009" " + "vidc.cvid" "Cinepak® Codec" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\iccvid.dll" "Sat Nov 20 04:19:18 2010" " + "vidc.i420" "Intel Indeo(R) Video YUV Codec" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\iyuv_32.dll" "Sat Nov 20 04:19:26 2010" " + "vidc.iyuv" "Intel Indeo(R) Video YUV Codec" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\iyuv_32.dll" "Sat Nov 20 04:19:26 2010" " + "vidc.mrle" "Microsoft RLE Compressor" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msrle32.dll" "Sat Nov 20 04:19:54 2010" " + "vidc.msvc" "Microsoft Video 1 Compressor" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msvidc32.dll" "Sat Nov 20 04:19:56 2010" " + "vidc.uyvy" "Microsoft UYVY Video Decompressor" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msyuv.dll" "Sat Nov 20 04:19:58 2010" " + "vidc.yuy2" "Microsoft UYVY Video Decompressor" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msyuv.dll" "Sat Nov 20 04:19:58 2010" " + "vidc.yvu9" "Toshiba Video Codec" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\tsbyuv.dll" "Sat Nov 20 04:21:32 2010" " + "vidc.yvyu" "Microsoft UYVY Video Decompressor" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msyuv.dll" "Sat Nov 20 04:19:58 2010" " + "wave" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "wave1" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "wave2" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "wave3" "Winmm audio system driver" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wdmaud.drv" "Sat Nov 20 04:16:52 2010" " + "wavemapper" "Microsoft Sound Mapper" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msacm32.drv" "Mon Jul 13 18:14:08 2009" " [HKLM\Software\Wow6432Node\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance] + "AC3 Parser Filter" "DirectShow MPEG-2 Splitter." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\mpg2splt.ax" "Fri Feb 17 22:42:17 2012" " + "ACM Wrapper" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "ASUS Color Convert" "ASUS Color Preview Filter" "(Not Verified) ASUSTek" "C:\Program Files (x86)\ASUS\Splendid\RGBTran.ax" "Tue Feb 21 14:49:00 2012" " + "ASUS Color Preview Filter" "ASUS Color Preview Filter" "(Not Verified) ASUSTek" "C:\Program Files (x86)\ASUS\Splendid\RGBTran.ax" "Tue Feb 21 14:49:00 2012" " + "ASUS SplitVCam Pump" "" "(Not Verified) " "C:\Program Files (x86)\ASUS\VirtualCamera\virtualCamera.ax" "Thu Jan 12 16:17:14 2012" " + "ASUS SplitVCam Relayer" "" "(Not Verified) " "C:\Program Files (x86)\ASUS\VirtualCamera\virtualCamera.ax" "Thu Jan 12 16:17:14 2012" " + "ASUS SplitVCam Renderer" "" "(Not Verified) " "C:\Program Files (x86)\ASUS\VirtualCamera\splitvcamrenderer.ax" "Thu Jan 12 16:17:20 2012" " + "ASUS Virtual Camera" "" "(Not Verified) " "C:\Program Files (x86)\ASUS\VirtualCamera\virtualCamera.ax" "Thu Jan 12 16:17:14 2012" " + "AVI Decompressor" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "AVI Draw Filter" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "AVI mux" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qcap.dll" "Sat Nov 20 04:20:58 2010" " + "AVI Splitter" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "AVI/WAV File Source" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "BDA MPEG2 Transport Information Filter" "Microsoft Transport Information Filter for MPEG2 based networks." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\psisrndr.ax" "Fri Feb 17 23:05:27 2012" " + "Canon DES Resizer SaveMode" "CanonDESResizer" "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\MDL30\CanonDESResizer.ax" "Thu Oct 16 14:34:00 2008" " + "Canon G.726 Decoder" "Canon G.726 Decoder" "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\G726Decoder\CanonG726Decoder.ax" "Fri Jan 28 13:18:58 2005" " + "Canon H.264 Decode Filter" "Canon H.264 Mov Filter" "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\Canon MOV Decoder\190\CanonH264Filter.ax" "Thu Apr 21 16:35:10 2011" " + "Canon H.264 Encoder 1.8.0" "Canon H264 Encoder Filter" "(Not Verified) CANON INC." "C:\Program Files (x86)\Canon\Canon MOV Encoder\CanonH264Encoder.ax" "Fri Feb 25 13:17:00 2011" " + "Canon Image Rotation Filter" "Canon Image Rotation Filter " "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\MDP\CanonRotateFilter.dll" "Tue Mar 29 10:40:14 2011" " + "Canon MDP Motion-JPEG Decoder" "Canon MDP Motion-JPEG Decoder Filter" "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\MDP\CanonMDPMJPEGDecoder.ax" "Thu Jun 4 15:19:26 2009" " + "Canon Motion-JPEG Decoder" "Canon Motion-JPEG Decoder Filter" "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\MDL30\CanonMJPEGDecoder.ax" "Fri Sep 26 10:53:00 2008" " + "Canon Motion-JPEG Encoder" "Motion-JPEG Encoder Filter" "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\MDL30\CanonMJPEGEncoder.ax" "Thu Sep 4 13:51:00 2008" " + "Canon Mov File Parser Filter" "Canon H.264 Mov Filter" "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\Canon MOV Decoder\190\CanonH264Filter.ax" "Thu Apr 21 16:35:10 2011" " + "Canon Mov File Parser Filter2" "Canon H.264 Mov Filter" "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\Canon MOV Decoder\190\CanonH264Filter.ax" "Thu Apr 21 16:35:10 2011" " + "Canon Resizer" "CanonResizer" "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\MDL30\CanonResizer.ax" "Thu Sep 4 14:29:00 2008" " + "Canon Text Source Filter" "Canon Text Source Filter" "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\MDL30\CanonTextSourceFilter.ax" "Mon Sep 8 11:01:00 2008" " + "Canon WAV Dest" "CanonWavDest" "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\MDL30\CanonWavDest.ax" "Thu Sep 4 14:48:00 2008" " + "Canon-Actual-Data-Length-Setter" "CanonActualDataLengthSetter" "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\MDL30\CanonActualDataLengthSetter.ax" "Thu Sep 4 15:21:00 2008" " + "Capture File Writer" "Windows Live Video Acquisition Filters" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVAFilt.dll" "Fri May 13 16:42:24 2011" " + "Closed Captions Analysis Filter" "CCA DirectShow Filter." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\cca.dll" "Sat Nov 20 04:18:12 2010" " + "Color Space Converter" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "CyberLink Audio Noise Reduction" "CLAuNR" "(Verified) CyberLink" "C:\Program Files (x86)\CyberLink\Power2Go\P2GAuNRWrapper.ax" "Fri Aug 20 09:57:00 2010" " + "CyberLink Audio Resampler" "CLAuRsmpl.ax" "(Verified) CyberLink" "C:\Program Files (x86)\CyberLink\Power2Go\P2GAuRsmpl.ax" "Fri Aug 20 09:57:00 2010" " + "CyberLink Audio VolumeBooster" "CyberLink Audio Volume Booster Filter" "(Verified) CyberLink" "C:\Program Files (x86)\CyberLink\Power2Go\P2GVB.ax" "Fri Aug 20 09:57:00 2010" " + "CyberLink AudioCD Filter" "CyberLink AudioCD Filter" "(Verified) CyberLink" "C:\Program Files (x86)\CyberLink\Power2Go\P2GAudioCD.ax" "Fri Aug 20 09:57:00 2010" " + "Cyberlink File Reader (Async.)" "Cyberlink MPEG File Reader" "(Verified) CyberLink" "C:\Program Files (x86)\CyberLink\Power2Go\P2GReader.ax" "Fri Aug 20 09:57:00 2010" " + "CyberLink MP3/WAV Wrapper" "CyberLink MP3 Wrapper" "(Verified) CyberLink" "C:\Program Files (x86)\CyberLink\Power2Go\P2GMP3Wrap.ax" "Fri Aug 20 09:57:00 2010" " + "CyberLink PCM Wrapper" "CyberLink PCM Wrapper" "(Verified) CyberLink" "C:\Program Files (x86)\CyberLink\Power2Go\P2GPCMEnc.ax" "Fri Aug 20 09:57:00 2010" " + "CyberLink Video Regulator" "CLRGL" "(Verified) CyberLink" "C:\Program Files (x86)\CyberLink\Power2Go\P2GRGL.ax" "Fri Aug 20 09:57:00 2010" " + "Default Video Renderer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "DirectVobSub" "VobSub & TextSub filter for DirectShow/VirtualDub/Avisynth" "(Not Verified) xy-VSFilter Team" "C:\Program Files (x86)\K-Lite Codec Pack\Filters\DirectVobSub\vsfilter.dll" "Wed Dec 9 02:00:00 2020" " + "DirectVobSub (auto-loading version)" "VobSub & TextSub filter for DirectShow/VirtualDub/Avisynth" "(Not Verified) xy-VSFilter Team" "C:\Program Files (x86)\K-Lite Codec Pack\Filters\DirectVobSub\vsfilter.dll" "Wed Dec 9 02:00:00 2020" " + "DV Muxer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qdv.dll" "Sat Nov 20 04:20:58 2010" " + "DV Splitter" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qdv.dll" "Sat Nov 20 04:20:58 2010" " + "DV Video Decoder" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qdv.dll" "Sat Nov 20 04:20:58 2010" " + "DVD Navigator" "DirectShow DVD PlayBack Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qdvd.dll" "Thu May 9 08:18:21 2019" " + "Enhanced Video Renderer" "Enhanced Video Renderer DLL" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\evr.dll" "Thu May 9 08:17:37 2019" " + "File Source (Async.)" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "File Source (URL)" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "File stream renderer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "File Writer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qcap.dll" "Sat Nov 20 04:20:58 2010" " + "Gargle" "Gargle Filter (Sample)" "(Not Verified) Microsoft Corporation" "C:\Program Files (x86)\ASUS\ASUS LifeFrame3\LifeFrameAudio.ax" "Tue Jan 17 17:43:16 2012" " + "Infinite Pin Tee Filter" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qcap.dll" "Sat Nov 20 04:20:58 2010" " + "Internal Text Renderer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "iTV Data Capture filter" "iTV Data Filters." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\itvdata.dll" "Sat Nov 20 04:19:26 2010" " + "iTV Data Sink" "iTV Data Filters." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\itvdata.dll" "Sat Nov 20 04:19:26 2010" " + "LAV Audio Decoder" "LAV Audio Decoder - DirectShow Audio Decoder" "(Not Verified) 1f0.de - Hendrik Leppkes" "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\LAVAudio.ax" "Thu Feb 25 02:00:00 2021" " + "LAV Splitter" "LAV Splitter - DirectShow Media Splitter" "(Not Verified) 1f0.de - Hendrik Leppkes" "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\LAVSplitter.ax" "Thu Feb 25 02:00:00 2021" " + "LAV Splitter Source" "LAV Splitter - DirectShow Media Splitter" "(Not Verified) 1f0.de - Hendrik Leppkes" "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\LAVSplitter.ax" "Thu Feb 25 02:00:00 2021" " + "LAV Video Decoder" "LAV Video Decoder - DirectShow Video Decoder" "(Not Verified) 1f0.de - Hendrik Leppkes" "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\LAVVideo.ax" "Thu Feb 25 02:00:00 2021" " + "LifeFrame Image Effects" "Camera Filter" "(Verified) ASUSTeK Computer Inc." "C:\Program Files (x86)\ASUS\ASUS LifeFrame3\camera_effect.ax" "Tue Jan 17 17:43:16 2012" " + "Line 21 Decoder" "DirectShow DVD PlayBack Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qdvd.dll" "Thu May 9 08:18:21 2019" " + "Line 21 Decoder 2" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "Logon Effects" "SmartLogon Filter" "(Not Verified) ASUS" "C:\Program Files (x86)\ASUS\FaceLogon\face_filter.ax" "Tue Jun 17 21:23:42 2008" " + "Microsoft AC3 Encoder" "Microsoft AC-3 Encoder" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msac3enc.dll" "Sat Nov 20 04:19:46 2010" " + "Microsoft DTV-DVD Audio Decoder" "Microsoft DTV-DVD Audio Decoder" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msmpeg2adec.dll" "Tue Dec 8 13:53:50 2015" " + "Microsoft DTV-DVD Video Decoder" "Microsoft DTV-DVD Video Decoder" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msmpeg2vdec.dll" "Tue Dec 8 13:54:04 2015" " + "Microsoft MPEG-2 Audio Encoder" "Microsoft MPEG-2 Encoder" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msmpeg2enc.dll" "Tue Dec 8 13:53:50 2015" " + "Microsoft MPEG-2 Encoder" "Microsoft MPEG-2 Encoder" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msmpeg2enc.dll" "Tue Dec 8 13:53:50 2015" " + "Microsoft MPEG-2 Video Encoder" "Microsoft MPEG-2 Encoder" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\msmpeg2enc.dll" "Tue Dec 8 13:53:50 2015" " + "MIDI Parser" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "MJPEG Decompressor" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "MotionDetect" "" "(Not Verified) " "C:\Program Files (x86)\ASUS\ASUS LifeFrame3\motiondetect.ax" "Tue Jan 17 17:43:20 2012" " + "MPEG Audio Codec" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "MPEG Video Codec" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "MPEG-2 Demultiplexer" "DirectShow MPEG-2 Splitter." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\mpg2splt.ax" "Fri Feb 17 22:42:17 2012" " + "MPEG-2 Sections and Tables" "Microsoft MPEG-2 Section and Table Acquisition Module" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\Mpeg2Data.ax" "Sat Nov 20 04:16:54 2010" " + "MPEG-2 Splitter" "DirectShow MPEG-2 Splitter." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\mpg2splt.ax" "Fri Feb 17 22:42:17 2012" " + "Mpeg-2 Video Stream Analysis" "DirectShow Stream Buffer Filter." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\sbe.dll" "Fri Feb 17 22:42:17 2012" " + "MPEG-I Stream Splitter" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "Multi-file Parser" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "Null Renderer" "DirectShow Editing." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qedit.dll" "Tue Dec 8 13:53:54 2015" " + "Olympus ChannelSeparator" "Olympus DirectX Audio Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\ChannelSeparator.dll" "Wed May 11 17:44:16 2011" " + "Olympus DSS Decoder" "Olympus DirectX Audio Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\DssDecoder.dll" "Tue Aug 23 16:48:26 2011" " + "Olympus DSS Encoder" "Olympus DirectX Audio Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\DssEncoder.dll" "Tue Aug 23 16:48:26 2011" " + "Olympus DSS Parser" "Olympus DirectX Audio Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\DssParser.dll" "Tue Aug 23 16:48:06 2011" " + "Olympus DSS Raw Writer" "Olympus DirectX Audio Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\DssRawWriter.dll" "Tue Aug 23 16:48:54 2011" " + "Olympus DSS Raw Writer2" "Olympus DirectX Audio Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\DssRawWriter.dll" "Tue Aug 23 16:48:54 2011" " + "Olympus DSS Writer" "Olympus DirectX Audio Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\DssWriter.dll" "Tue Aug 23 16:48:06 2011" " + "Olympus DSS Writer2" "Olympus DirectX Audio Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\DssWriter.dll" "Tue Aug 23 16:48:06 2011" " + "Olympus File Source" "Olympus File Source Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\OlyFileSource.dll" "Fri Feb 10 12:12:14 2012" " + "Olympus NoiseCanceller" "Olympus DirectX Audio Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\NoiseCanceller.dll" "Wed May 11 17:44:16 2011" " + "Olympus SE Resampler" "DigiOn Resampling Filter" "(Not Verified) DigiOn, Inc" "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\SeRsm.dll" "Tue Aug 23 16:47:48 2011" " + "Olympus SpeedController" "Olympus DirectX Audio Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\SpeedController.dll" "Wed May 11 17:44:16 2011" " + "Olympus Stream Cut" "Olympus Stream Cut Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\OlyStreamCut.dll" "Fri Feb 10 12:12:36 2012" " + "Olympus ToneController" "Olympus DirectX Audio Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\ToneController.dll" "Wed May 11 17:44:16 2011" " + "Olympus TS-DS Source" "DigiOn TS Insert Source Filter" "(Not Verified) DigiOn, Inc" "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\TSInsSrc.dll" "Tue Aug 23 16:48:00 2011" " + "Olympus TSSink" "DigiOn TS Sink Filter" "(Not Verified) DigiOn, Inc" "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\TSSink.dll" "Tue Aug 23 16:48:58 2011" " + "Olympus VCVA Filter" "Olympus DirectX Audio Filter" "(Not Verified) OLYMPUS IMAGING CORP." "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\VCVA.dll" "Tue Aug 23 16:48:04 2011" " + "Olympus WAV Dest" "WAVEDest Filter" "(Not Verified) Microsoft Corporation" "C:\Program Files (x86)\Common Files\Olympus Shared\Filter\WaveDest.dll" "Tue Aug 23 16:47:46 2011" " + "Overlay Mixer" "DirectShow DVD PlayBack Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qdvd.dll" "Thu May 9 08:18:21 2019" " + "Overlay Mixer2" "DirectShow DVD PlayBack Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qdvd.dll" "Thu May 9 08:18:21 2019" " + "P2G Audio Encoder" "CyberLink Audio Encoder Filter" "(Verified) CyberLink" "C:\Program Files (x86)\CyberLink\Power2Go\P2GAudEnc.ax" "Fri Aug 20 09:57:00 2010" " + "psWav Dest" "Canon Utilities Support Library" "(Not Verified) Canon Inc." "C:\Program Files (x86)\Canon\ZoomBrowser EX MCU\psWavDes.ax" "Wed Aug 4 12:21:50 2010" " + "RDP DShow Video Renderer" "RDP Renderer Filter (redirector)" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\DShowRdpFilter.dll" "Sat Nov 20 04:18:36 2010" " + "Record Queue" "Windows Live Video Acquisition Filters" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVAFilt.dll" "Fri May 13 16:42:24 2011" " + "SAMI (CC) Reader" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "Sample Grabber" "DirectShow Editing." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qedit.dll" "Tue Dec 8 13:53:54 2015" " + "SBE2 Sink" "DirectShow Stream Buffer Filter." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\sbe.dll" "Fri Feb 17 22:42:17 2012" " + "SBE2FileScan" "DirectShow Stream Buffer Filter." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\sbe.dll" "Fri Feb 17 22:42:17 2012" " + "SBE2MediaTypeProfile" "DirectShow Stream Buffer Filter." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\sbe.dll" "Fri Feb 17 22:42:17 2012" " + "Smart Tee Filter" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qcap.dll" "Sat Nov 20 04:20:58 2010" " + "StreamBufferSink" "DirectShow Stream Buffer Filter." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\sbe.dll" "Fri Feb 17 22:42:17 2012" " + "StreamBufferSource" "DirectShow Stream Buffer Filter." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\sbe.dll" "Fri Feb 17 22:42:17 2012" " + "VBI Codec" "Microsoft VBI Codec" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\VBICodec.ax" "Sat Nov 20 04:16:54 2010" " + "VBI Surface Allocator" "VBI Surface Allocator Filter" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\vbisurf.ax" "Sat Nov 20 04:16:54 2010" " + "VGA 16 color ditherer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "Video Mixing Renderer 9" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "Video Port Manager" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "Video Renderer" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "VPS Decoder" "Microsoft Teletext Server" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\WSTPager.ax" "Sat Nov 20 04:16:54 2010" " + "Wave Parser" "DirectShow Runtime." "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\quartz.dll" "Thu May 9 08:18:21 2019" " + "WM ASF Reader" "DirectShow ASF Support" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qasf.dll" "Tue Dec 8 13:53:54 2015" " + "WM ASF Writer" "DirectShow ASF Support" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\qasf.dll" "Tue Dec 8 13:53:54 2015" " + "WM VIH2 Fix" "Windows Live Video Acquisition Filters" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVAFilt.dll" "Fri May 13 16:42:24 2011" " + "WMEnc Screen Capture Filter" "WMPSrcWp Module" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\wmpsrcwp.dll" "Sat Nov 20 04:21:38 2010" " + "WMT DV Extract Filter" "Windows Live Video Acquisition Filters" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVAFilt.dll" "Fri May 13 16:42:24 2011" " + "WMT Sample Info Filter" "Windows Live Video Acquisition Filters" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVAFilt.dll" "Fri May 13 16:42:24 2011" " + "WMT Switch Filter" "Windows Live Video Acquisition Filters" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVAFilt.dll" "Fri May 13 16:42:24 2011" " + "WMT Virtual Renderer" "Windows Live Video Acquisition Filters" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVAFilt.dll" "Fri May 13 16:42:24 2011" " + "WMT Virtual Source" "Windows Live Video Acquisition Filters" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVAFilt.dll" "Fri May 13 16:42:24 2011" " + "WST Pager" "Microsoft Teletext Server" "(Verified) Microsoft Windows" "C:\Windows\SysWOW64\WSTPager.ax" "Sat Nov 20 04:16:54 2010" " [HKLM\Software\Wow6432Node\Classes\CLSID\{AC757296-3522-4E11-9862-C17BE5A1767E}\Instance] [HKLM\Software\Wow6432Node\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance] [HKLM\Software\Wow6432Node\Classes\CLSID\{ABE3B9A4-257D-4B97-BD1A-294AF496222E}\Instance] [Boot Execute] [HKLM\System\CurrentControlSet\Control\Session Manager\BootExecute] + "autocheck autochk *" "Auto Check Utility" "(Verified) Microsoft Windows" "C:\Windows\System32\autochk.exe" "Sat Nov 20 05:24:28 2010" " [HKLM\System\CurrentControlSet\Control\Session Manager\SetupExecute] [HKLM\System\CurrentControlSet\Control\Session Manager\Execute] [HKLM\System\CurrentControlSet\Control\Session Manager\S0InitialCommand] [Image Hijacks] [HKCU\Software\Microsoft\Command Processor\Autorun] [HKCU\SOFTWARE\Classes\Exefile\Shell\Open\Command\(Default)] [HKCU\SOFTWARE\Classes\Htmlfile\Shell\Open\Command\(Default)] [HKCU\Software\Classes\.exe] [HKCU\Software\Classes\.cmd] [HKLM\Software\Microsoft\Command Processor\Autorun] [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options] [HKLM\SOFTWARE\Classes\Exefile\Shell\Open\Command\(Default)] [HKLM\SOFTWARE\Classes\Htmlfile\Shell\Open\Command\(Default)] + "C:\Program Files\Internet Explorer\IEXPLORE.EXE" "Internet Explorer" "(Verified) Microsoft Corporation" "C:\Program Files\Internet Explorer\IEXPLORE.EXE" "Wed Dec 18 09:45:57 2019" " [HKLM\Software\Classes\.exe] [HKLM\Software\Classes\.cmd] [HKLM\Software\Wow6432Node\Microsoft\Command Processor\Autorun] [HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options] [AppInit] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\Appinit_Dlls] [HKLM\System\CurrentControlSet\Control\Session Manager\AppCertDlls] [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Windows\Appinit_Dlls] [Known DLLs] [HKLM\System\CurrentControlSet\Control\Session Manager\KnownDlls] + "advapi32" "Advanced Windows 32 Base API" "(Verified) Microsoft Windows" "C:\Windows\system32\advapi32.dll" "Tue Nov 5 13:19:54 2019" " + "advapi32" "Advanced Windows 32 Base API" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\advapi32.dll" "Tue Nov 5 13:24:43 2019" " + "clbcatq" "COM+ Configuration Catalog" "(Verified) Microsoft Windows" "C:\Windows\system32\clbcatq.dll" "Mon Jul 13 18:40:15 2009" " + "clbcatq" "COM+ Configuration Catalog" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\clbcatq.dll" "Mon Jul 13 18:15:03 2009" " + "COMDLG32" "Common Dialogs DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\COMDLG32.dll" "Sat Nov 20 05:26:00 2010" " + "COMDLG32" "Common Dialogs DLL" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\COMDLG32.dll" "Sat Nov 20 04:18:24 2010" " + "DifxApi" "Driver Install Frameworks for API library module" "(Verified) Microsoft Windows" "C:\Windows\system32\difxapi.dll" "Mon Jul 13 18:40:30 2009" " + "DifxApi" "Driver Install Frameworks for API library module" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\difxapi.dll" "Mon Jul 13 18:15:11 2009" " + "gdi32" "GDI Client DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\gdi32.dll" "Tue Nov 5 13:20:07 2019" " + "gdi32" "GDI Client DLL" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\gdi32.dll" "Tue Nov 5 13:25:45 2019" " + "IERTUTIL" "Run time utility for Internet Explorer" "(Verified) Microsoft Windows" "C:\Windows\system32\IERTUTIL.dll" "Mon Dec 16 17:06:10 2019" " + "IERTUTIL" "Run time utility for Internet Explorer" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\IERTUTIL.dll" "Mon Dec 16 16:33:53 2019" " + "IMAGEHLP" "Windows NT Image Helper" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\IMAGEHLP.dll" "Fri Oct 18 18:36:59 2013" " + "IMAGEHLP" "Windows NT Image Helper" "(Verified) Microsoft Windows" "C:\Windows\system32\IMAGEHLP.dll" "Fri Oct 18 19:18:57 2013" " + "IMM32" "Multi-User Windows IMM32 API Client DLL" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\IMM32.dll" "Sat Nov 20 04:08:52 2010" " + "IMM32" "Multi-User Windows IMM32 API Client DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\IMM32.dll" "Mon Jul 13 18:41:09 2009" " + "kernel32" "Windows NT BASE API Client DLL" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\kernel32.dll" "Tue Nov 5 13:25:47 2019" " + "kernel32" "Windows NT BASE API Client DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\kernel32.dll" "Tue Nov 5 13:20:10 2019" " + "LPK" "Language Pack" "(Verified) Microsoft Windows" "C:\Windows\system32\LPK.dll" "Tue Nov 5 13:20:10 2019" " + "LPK" "Language Pack" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\LPK.dll" "Tue Nov 5 13:25:47 2019" " + "MSCTF" "MSCTF Server DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\MSCTF.dll" "Sat Jul 13 01:32:07 2019" " + "MSCTF" "MSCTF Server DLL" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\MSCTF.dll" "Sat Jul 13 01:34:04 2019" " + "MSVCRT" "Windows NT CRT DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\MSVCRT.dll" "Fri Dec 16 00:46:06 2011" " + "MSVCRT" "Windows NT CRT DLL" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\MSVCRT.dll" "Thu Dec 15 23:52:58 2011" " + "NORMALIZ" "Unicode Normalization DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\NORMALIZ.dll" "Mon Jul 13 18:31:40 2009" " + "NORMALIZ" "Unicode Normalization DLL" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\NORMALIZ.dll" "Mon Jul 13 18:09:00 2009" " + "NSI" "NSI User-mode interface DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\NSI.dll" "Thu Aug 10 23:35:01 2017" " + "NSI" "NSI User-mode interface DLL" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\NSI.dll" "Thu Aug 10 23:19:39 2017" " + "ole32" "Microsoft OLE for Windows" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\ole32.dll" "Mon Jul 29 19:16:07 2019" " + "ole32" "Microsoft OLE for Windows" "(Verified) Microsoft Windows" "C:\Windows\system32\ole32.dll" "Mon Jul 29 19:20:12 2019" " + "OLEAUT32" "" "(Verified) Microsoft Windows" "C:\Windows\system32\OLEAUT32.dll" "Thu Aug 15 00:59:02 2019" " + "OLEAUT32" "" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\OLEAUT32.dll" "Thu Aug 15 00:59:16 2019" " + "PSAPI" "Process Status Helper" "(Verified) Microsoft Windows" "C:\Windows\system32\PSAPI.DLL" "Mon Jul 13 18:41:53 2009" " + "PSAPI" "Process Status Helper" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\PSAPI.DLL" "Mon Jul 13 18:16:12 2009" " + "rpcrt4" "Remote Procedure Call Runtime" "(Verified) Microsoft Windows" "C:\Windows\system32\rpcrt4.dll" "Tue Nov 5 13:20:25 2019" " + "rpcrt4" "Remote Procedure Call Runtime" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\rpcrt4.dll" "Tue Nov 5 13:25:47 2019" " + "sechost" "Host for SCM/SDDL/LSA Lookup APIs" "(Verified) Microsoft Windows" "C:\Windows\system32\sechost.dll" "Mon Jul 13 18:41:53 2009" " + "sechost" "Host for SCM/SDDL/LSA Lookup APIs" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\sechost.dll" "Mon Jul 13 18:16:13 2009" " + "Setupapi" "Windows Setup API" "(Verified) Microsoft Windows" "C:\Windows\system32\Setupapi.dll" "Sat Nov 20 05:27:26 2010" " + "Setupapi" "Windows Setup API" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\Setupapi.dll" "Sat Nov 20 04:21:16 2010" " + "SHELL32" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\system32\SHELL32.dll" "Fri May 24 17:04:16 2019" " + "SHELL32" "Windows Shell Common Dll" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\SHELL32.dll" "Fri May 24 16:59:03 2019" " + "SHLWAPI" "Shell Light-weight Utility Library" "(Verified) Microsoft Windows" "C:\Windows\system32\SHLWAPI.dll" "Sat Nov 20 05:27:26 2010" " + "SHLWAPI" "Shell Light-weight Utility Library" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\SHLWAPI.dll" "Sat Nov 20 04:21:20 2010" " + "URLMON" "OLE32 Extensions for Win32" "(Verified) Microsoft Windows" "C:\Windows\system32\URLMON.dll" "Mon Dec 16 15:52:03 2019" " + "URLMON" "OLE32 Extensions for Win32" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\URLMON.dll" "Mon Dec 16 15:39:32 2019" " + "user32" "Multi-User Windows USER API Client DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\user32.dll" "Tue Nov 5 13:20:28 2019" " + "user32" "Multi-User Windows USER API Client DLL" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\user32.dll" "Tue Nov 5 13:25:47 2019" " + "USP10" "Uniscribe Unicode script processor" "(Verified) Microsoft Windows" "C:\Windows\system32\USP10.dll" "Tue Nov 5 13:20:28 2019" " + "USP10" "Uniscribe Unicode script processor" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\USP10.dll" "Tue Nov 5 13:25:42 2019" " + "WININET" "Internet Extensions for Win32" "(Verified) Microsoft Windows" "C:\Windows\system32\WININET.dll" "Mon Dec 16 16:04:23 2019" " + "WININET" "Internet Extensions for Win32" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\WININET.dll" "Mon Dec 16 15:43:02 2019" " + "WLDAP32" "Win32 LDAP API DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\WLDAP32.dll" "Thu Aug 10 23:35:06 2017" " + "WLDAP32" "Win32 LDAP API DLL" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\WLDAP32.dll" "Thu Aug 10 23:19:44 2017" " + "WS2_32" "Windows Socket 2.0 32-Bit DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\WS2_32.dll" "Wed May 11 10:02:50 2016" " + "WS2_32" "Windows Socket 2.0 32-Bit DLL" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\WS2_32.dll" "Wed May 11 08:19:26 2016" " [Winlogon] [HKCU\SOFTWARE\Policies\Microsoft\Windows\Control Panel\Desktop\Scrnsave.exe] [HKCU\Control Panel\Desktop\Scrnsave.exe] + "C:\Windows\system32\ASUS_S~1.SCR" "ScreenTime Screensaver Engine" "(Not Verified) ScreenTime Media" "C:\Windows\Syswow64\ASUS_S~1.SCR" "Tue Mar 18 09:48:56 2014" " [HKLM\SYSTEM\Setup\CmdLine] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Taskman] [HKLM\System\CurrentControlSet\Control\BootVerificationProgram\ImagePath] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers] + "CCertProvider" "Cert Credential Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\certCredProvider.dll" "Mon Jul 13 18:40:13 2009" " + "GenericProvider" "Windows Authentication UI" "(Verified) Microsoft Windows" "C:\Windows\system32\authui.dll" "Tue Nov 5 13:19:56 2019" " + "NPProvider" "Windows Authentication UI" "(Verified) Microsoft Windows" "C:\Windows\system32\authui.dll" "Tue Nov 5 13:19:56 2019" " + "PasswordProvider" "Windows Authentication UI" "(Verified) Microsoft Windows" "C:\Windows\system32\authui.dll" "Tue Nov 5 13:19:56 2019" " + "Smartcard Credential Provider" "Windows Smartcard Credential Provider" "(Verified) Microsoft Windows" "SmartcardCredentialProvider.dll" "Thu Oct 3 18:58:50 2013" " + "Smartcard Pin Provider" "Windows Smartcard Credential Provider" "(Verified) Microsoft Windows" "SmartcardCredentialProvider.dll" "Thu Oct 3 18:58:50 2013" " + "VaultCredProvider" "Vault Credential Provider" "(Verified) Microsoft Windows" "C:\Windows\System32\VaultCredProvider.dll" "Mon Jul 13 18:41:56 2009" " + "WinBio Credential Provider" "WinBio Credential Provider" "(Verified) Microsoft Windows" "C:\Windows\System32\BioCredProv.dll" "Mon Jul 13 18:40:11 2009" " + "WLIDCredentialProvider" "Microsoft® Windows Live ID Credential Provider" "(Verified) Microsoft Corporation" "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL" "Mon Mar 28 22:11:06 2011" " [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Provider Filters] + "GenericFilter" "Windows Authentication UI" "(Verified) Microsoft Windows" "C:\Windows\system32\authui.dll" "Tue Nov 5 13:19:56 2019" " [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\PLAP Providers] + "CRasProvider" "RAS PLAP Credential Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\rasplap.dll" "Mon Jul 13 18:41:53 2009" " [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GpExtensions] + "@wlgpclnt.dll,-100" "802.11 Group Policy Client" "(Verified) Microsoft Windows" "C:\Windows\system32\wlgpclnt.dll" "Mon Jul 13 18:41:56 2009" " + "Folder Redirection" "Folder Redirection Group Policy Extension" "(Verified) Microsoft Windows" "C:\Windows\system32\fdeploy.dll" "Sat Nov 20 05:26:22 2010" " + "Microsoft Disk Quota" "Windows Shell Disk Quota Support DLL" "(Verified) Microsoft Windows" "C:\Windows\System32\dskquota.dll" "Mon Jul 13 18:40:33 2009" " + "QoS Packet Scheduler" "GPTExt" "(Verified) Microsoft Windows" "C:\Windows\system32\gptext.dll" "Mon Jul 13 18:40:59 2009" " + "Remote Desktop USB Redirection" "Remote Desktop USB Redirection GP Extension" "(Verified) Microsoft Windows" "C:\Windows\System32\TsUsbRedirectionGroupPolicyExtension.dll" "Tue Oct 1 19:08:53 2013" " + "@C:\Windows\System32\iedkcs32.dll,-3051" "IEAK branding" "(Verified) Microsoft Corporation" "C:\Windows\System32\iedkcs32.dll" "Wed Dec 18 09:45:57 2019" " + "Remote Desktop Protocol Extenstion" "Remote Desktop Protocol Group Policy Extension" "(Verified) Microsoft Windows" "C:\Windows\System32\RdpGroupPolicyExtension.dll" "Wed Mar 23 15:40:09 2016" " + "Windows Search Group Policy Extension" "Indexing Options" "(Verified) Microsoft Windows" "C:\Windows\System32\srchadmin.dll" "Sat Nov 20 05:27:28 2010" " + "@C:\Windows\System32\iedkcs32.dll,-3051" "IEAK branding" "(Verified) Microsoft Corporation" "C:\Windows\System32\iedkcs32.dll" "Wed Dec 18 09:45:57 2019" " + "@(runtime.system32)\scecli.dll,-7650" "Windows Security Configuration Editor Client Engine" "(Verified) Microsoft Windows" "C:\Windows\system32\scecli.dll" "Sat Nov 20 05:27:26 2010" " + "Deployed Printer Connections" "Group Policy Printer Extension" "(Verified) Microsoft Windows" "C:\Windows\system32\gpprnext.dll" "Mon Jul 13 18:40:59 2009" " + "@dot3gpclnt.dll,-100" "802.3 Group Policy Client" "(Verified) Microsoft Windows" "C:\Windows\system32\dot3gpclnt.dll" "Mon Jul 13 18:40:32 2009" " + "TCPIP" "GPTExt" "(Verified) Microsoft Windows" "C:\Windows\system32\gptext.dll" "Mon Jul 13 18:40:59 2009" " + "@C:\Windows\System32\iedkcs32.dll,-3051" "IEAK branding" "(Verified) Microsoft Corporation" "C:\Windows\System32\iedkcs32.dll" "Wed Dec 18 09:45:57 2019" " + "Internet Protocol Security Policies" "Policy Storage dll" "(Verified) Microsoft Windows" "C:\Windows\System32\polstore.dll" "Thu May 12 10:14:58 2016" " + "Audit Policy Configuration" "Windows Audit Settings CSE" "(Verified) Microsoft Windows" "C:\Windows\system32\auditcse.dll" "Mon Jul 13 18:40:04 2009" " + "Policy-based QoS" "GPTExt" "(Verified) Microsoft Windows" "C:\Windows\system32\gptext.dll" "Mon Jul 13 18:40:59 2009" " + "Connectivity Platform" "GPTExt" "(Verified) Microsoft Windows" "C:\Windows\system32\gptext.dll" "Mon Jul 13 18:40:59 2009" " [Winsock Providers] [HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries] + "MSAFD RfComm [Bluetooth]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 08:19:16 2016" " + "MSAFD Tcpip [RAW/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 08:19:16 2016" " + "MSAFD Tcpip [RAW/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 08:19:16 2016" " + "MSAFD Tcpip [TCP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 08:19:16 2016" " + "MSAFD Tcpip [TCP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 08:19:16 2016" " + "MSAFD Tcpip [UDP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 08:19:16 2016" " + "MSAFD Tcpip [UDP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 08:19:16 2016" " + "RSVP TCP Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 08:19:16 2016" " + "RSVP TCPv6 Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 08:19:16 2016" " + "RSVP UDP Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 08:19:16 2016" " + "RSVP UDPv6 Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 08:19:16 2016" " [HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries] + "@%SystemRoot%\system32\nlasvc.dll,-1000" "Network Location Awareness 2" "(Verified) Microsoft Windows" "C:\Windows\system32\NLAapi.dll" "Sun Dec 31 18:00:07 2017" " + "Bluetooth Namespace" "Windows Sockets Helper DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\wshbth.dll" "Sat Nov 20 04:21:40 2010" " + "E-mail Naming Shim Provider" "E-mail Naming Shim Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\napinsp.dll" "Mon Jul 13 18:16:02 2009" " + "NTDS" "LDAP RnR Provider DLL" "(Verified) Microsoft Windows" "C:\Windows\System32\winrnr.dll" "Mon Jul 13 18:16:19 2009" " + "PNRP Cloud Namespace Provider" "PNRP Name Space Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\pnrpnsp.dll" "Mon Jul 13 18:16:12 2009" " + "PNRP Name Namespace Provider" "PNRP Name Space Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\pnrpnsp.dll" "Mon Jul 13 18:16:12 2009" " + "Tcpip" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\System32\mswsock.dll" "Wed May 11 08:19:16 2016" " + "WindowsLive Local NSP" "Microsoft® Windows Live ID Namespace Provider" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL" "Mon Mar 28 21:31:14 2011" " + "WindowsLive NSP" "Microsoft® Windows Live ID Namespace Provider" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL" "Mon Mar 28 21:31:14 2011" " [HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64] + "MSAFD RfComm [Bluetooth]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 10:02:42 2016" " + "MSAFD Tcpip [RAW/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 10:02:42 2016" " + "MSAFD Tcpip [RAW/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 10:02:42 2016" " + "MSAFD Tcpip [TCP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 10:02:42 2016" " + "MSAFD Tcpip [TCP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 10:02:42 2016" " + "MSAFD Tcpip [UDP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 10:02:42 2016" " + "MSAFD Tcpip [UDP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 10:02:42 2016" " + "RSVP TCP Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 10:02:42 2016" " + "RSVP TCPv6 Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 10:02:42 2016" " + "RSVP UDP Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 10:02:42 2016" " + "RSVP UDPv6 Service Provider" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\mswsock.dll" "Wed May 11 10:02:42 2016" " [HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64] + "Bluetooth Namespace" "Windows Sockets Helper DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\wshbth.dll" "Sat Nov 20 05:27:30 2010" " + "E-mail Naming Shim Provider" "E-mail Naming Shim Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\napinsp.dll" "Mon Jul 13 18:41:52 2009" " + "Network Location Awareness Legacy (NLAv1) Namespace" "Network Location Awareness 2" "(Verified) Microsoft Windows" "C:\Windows\system32\NLAapi.dll" "Sun Dec 31 18:18:24 2017" " + "NTDS" "LDAP RnR Provider DLL" "(Verified) Microsoft Windows" "C:\Windows\System32\winrnr.dll" "Mon Jul 13 18:41:56 2009" " + "PNRP Cloud Namespace Provider" "PNRP Name Space Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\pnrpnsp.dll" "Mon Jul 13 18:41:53 2009" " + "PNRP Name Namespace Provider" "PNRP Name Space Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\pnrpnsp.dll" "Mon Jul 13 18:41:53 2009" " + "Tcpip" "Microsoft Windows Sockets 2.0 Service Provider" "(Verified) Microsoft Windows" "C:\Windows\System32\mswsock.dll" "Wed May 11 10:02:42 2016" " + "WindowsLive Local NSP" "Microsoft® Windows Live ID Namespace Provider" "(Verified) Microsoft Corporation" "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL" "Mon Mar 28 22:11:06 2011" " + "WindowsLive NSP" "Microsoft® Windows Live ID Namespace Provider" "(Verified) Microsoft Corporation" "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL" "Mon Mar 28 22:11:06 2011" " [Print Monitors] [HKLM\System\CurrentControlSet\Control\Print\Monitors] + "Local Port" "Local Spooler DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\localspl.dll" "Fri Feb 15 22:02:02 2019" " + "LPR Port" "LPR Print Monitor" "(Verified) Microsoft Windows" "C:\Windows\system32\LPRMon.dll" "Mon Jul 13 18:41:19 2009" " + "Microsoft Shared Fax Monitor" "Microsoft Fax Print Monitor" "(Verified) Microsoft Windows" "C:\Windows\system32\FXSMON.DLL" "Sat Nov 20 05:26:26 2010" " + "Standard TCP/IP Port" "Standard TCP/IP Port Monitor DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\tcpmon.dll" "Mon Jul 13 18:41:55 2009" " + "USB Monitor" "Standard Dynamic Printing Port Monitor DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\usbmon.dll" "Mon Jul 13 18:41:56 2009" " + "WSD Port" "WSD Printer Port Monitor" "(Verified) Microsoft Windows" "C:\Windows\system32\WSDMon.dll" "Mon Jul 13 18:41:58 2009" " [HKLM\System\CurrentControlSet\Control\Print\Providers] + "HTTP Print Services" "Internet Print Provider DLL" "(Verified) Microsoft Windows" "C:\Windows\system32\inetpp.dll" "Thu Aug 10 23:34:55 2017" " + "LanMan Print Services" "Client Side Rendering Print Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\win32spl.dll" "Thu Aug 10 23:35:06 2017" " [LSA Providers] [HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders] + "credssp.dll" "Credential Delegation Security Package" "(Verified) Microsoft Windows" "C:\Windows\system32\credssp.dll" "Tue Nov 5 13:20:01 2019" " [HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Authentication Packages] + "msv1_0" "Microsoft Authentication Package v1.0" "(Verified) Microsoft Windows" "C:\Windows\system32\msv1_0.dll" "Tue Nov 5 13:20:16 2019" " [HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Notification Packages] + "scecli" "Windows Security Configuration Editor Client Engine" "(Verified) Microsoft Windows" "C:\Windows\system32\scecli.dll" "Sat Nov 20 05:27:26 2010" " [HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Security Packages] + "kerberos" "Kerberos Security Package" "(Verified) Microsoft Windows" "C:\Windows\system32\kerberos.dll" "Tue Nov 5 13:20:10 2019" " + "livessp" "LiveSSP" "(Verified) Microsoft Corporation" "C:\Windows\system32\livessp.dll" "Mon Mar 28 22:11:06 2011" " + "msv1_0" "Microsoft Authentication Package v1.0" "(Verified) Microsoft Windows" "C:\Windows\system32\msv1_0.dll" "Tue Nov 5 13:20:16 2019" " + "pku2u" "Pku2u Security Package" "(Verified) Microsoft Windows" "C:\Windows\system32\pku2u.dll" "Mon Nov 10 19:08:52 2014" " + "schannel" "TLS / SSL Security Provider" "(Verified) Microsoft Windows" "C:\Windows\system32\schannel.dll" "Tue Nov 5 13:20:25 2019" " + "tspkg" "Web Service Security Package" "(Verified) Microsoft Windows" "C:\Windows\system32\tspkg.dll" "Tue Nov 5 13:20:28 2019" " + "wdigest" "Microsoft Digest Access" "(Verified) Microsoft Windows" "C:\Windows\system32\wdigest.dll" "Tue Nov 5 13:20:28 2019" " [HKLM\SYSTEM\CurrentControlSet\Control\Lsa\OSConfig\Security Packages] [Network Providers] [HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order] + "LanmanWorkstation" "Microsoft Windows Network" "(Verified) Microsoft Windows" "C:\Windows\System32\ntlanman.dll" "Sat Nov 20 05:27:24 2010" " + "RDPNP" "Microsoft Terminal Services" "(Verified) Microsoft Windows" "C:\Windows\System32\drprov.dll" "Mon Jul 13 18:40:33 2009" " + "webclient" "Web Client Network" "(Verified) Microsoft Windows" "C:\Windows\System32\davclnt.dll" "Thu Sep 8 13:34:15 2016" " [WMI] [WMI Database Entries - run as Administrator for complete scan] [Office] [HKCU\Software\Microsoft\Office\Outlook\Addins] [HKCU\Software\Microsoft\Office\Excel\Addins] [HKCU\Software\Microsoft\Office\PowerPoint\Addins] [HKCU\Software\Microsoft\Office\Word\Addins] [HKCU\Software\Microsoft\Office\Access\Addins] [HKCU\Software\Microsoft\Office\OneNote\Addins] [HKCU\SOFTWARE\Microsoft\Office test\Special\Perf\(Default)] [HKCU\Software\Wow6432Node\Microsoft\Office\Outlook\Addins] [HKCU\Software\Wow6432Node\Microsoft\Office\Excel\Addins] [HKCU\Software\Wow6432Node\Microsoft\Office\PowerPoint\Addins] [HKCU\Software\Wow6432Node\Microsoft\Office\Word\Addins] [HKCU\Software\Wow6432Node\Microsoft\Office\Access\Addins] [HKCU\Software\Wow6432Node\Microsoft\Office\OneNote\Addins] [HKCU\SOFTWARE\Wow6432Node\Microsoft\Office test\Special\Perf\(Default)] [HKLM\Software\Microsoft\Office\Outlook\Addins] + "Microsoft SharePoint Workspace Proxy for Outlook Add-in" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL" "Wed Dec 18 23:44:34 2013" " + "Windows Search Email Indexer" "Outlook MSSearch Connector" "(Verified) Microsoft Windows" "C:\Windows\system32\mssphtb.dll" "Sat Sep 22 19:54:53 2018" " [HKLM\Software\Microsoft\Office\Excel\Addins] [HKLM\Software\Microsoft\Office\PowerPoint\Addins] [HKLM\Software\Microsoft\Office\Word\Addins] [HKLM\Software\Microsoft\Office\Access\Addins] [HKLM\Software\Microsoft\Office\OneNote\Addins] [HKLM\SOFTWARE\Microsoft\Office test\Special\Perf\(Default)] [HKLM\Software\Wow6432Node\Microsoft\Office\Outlook\Addins] + "Business Connectivity Services Add-In" "Microsoft Office 2010 component" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Microsoft Office\Office14\ADDINS\BCSAddin.dll" "Mon Nov 5 14:27:46 2012" " + "Microsoft Exchange Add-in" "" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll" "Wed Nov 11 02:42:42 2015" " + "Microsoft Outlook Social Connector" "Microsoft Outlook Social Connector" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Microsoft Office\Office14\SOCIALCONNECTOR.DLL" "Fri Mar 8 23:02:40 2013" " + "Microsoft SharePoint Workspace Proxy for Outlook Add-in" "Microsoft SharePoint Workspace Extensions" "(Verified) Microsoft Corporation" "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" "Wed Dec 18 23:41:02 2013" " + "Microsoft VBA for Outlook Addin" "Outlook VBA Integration Add-In" "(Verified) Microsoft Corporation" "C:\PROGRA~2\MICROS~1\Office14\ADDINS\OUTLVBA.DLL" "Thu Mar 11 05:27:38 2021" " + "OneNote Notes about Outlook Items" "Microsoft OneNote Outlook Add-in" "(Verified) Microsoft Corporation" "C:\Program Files (x86)\Microsoft Office\Office14\ONBttnOL.dll" "Sat Oct 31 05:24:44 2015" " + "Windows Search Email Indexer" "Outlook MSSearch Connector" "(Verified) Microsoft Windows" "C:\Windows\Syswow64\mssphtb.dll" "Sat Sep 22 19:37:36 2018" " [HKLM\Software\Wow6432Node\Microsoft\Office\Excel\Addins] [HKLM\Software\Wow6432Node\Microsoft\Office\PowerPoint\Addins] [HKLM\Software\Wow6432Node\Microsoft\Office\Word\Addins] [HKLM\Software\Wow6432Node\Microsoft\Office\Access\Addins] [HKLM\Software\Wow6432Node\Microsoft\Office\OneNote\Addins] [HKLM\SOFTWARE\Wow6432Node\Microsoft\Office test\Special\Perf\(Default)]