Professional Documents
Culture Documents
[Conflicts/Sharing]
Resource
Device
I/O Port 0x000000E0-0x000000EF Motherboard resources
I/O Port 0x000000E0-0x000000EF Motherboard resources
I/O Port 0x00000088-0x00000088 Motherboard resources
I/O Port 0x00000088-0x00000088 Motherboard resources
I/O Port 0x00000072-0x0000007F Motherboard resources
I/O Port 0x00000072-0x0000007F Motherboard resources
I/O Port 0x00000000-0x00000CF7 AMD PCI Express (3GIO) Filter Driver
I/O Port 0x00000000-0x00000CF7 Motherboard resources
I/O Port 0x00000000-0x00000CF7 Direct memory access controller
I/O Port 0x000003C0-0x000003DF ATI Mobility Radeon HD 4200 Series
I/O Port 0x000003C0-0x000003DF PCI standard PCI-to-PCI bridge
Memory Address 0xFF400000-0xFF4FFFFF
Memory Address 0xFF400000-0xFF4FFFFF
Motherboard resources
High precision event timer
18
18
18
18
19
19
19
19
Device Status
Direct memory access controller OK
[Forced Hardware]
Device PNP Device ID
[I/O]
Resource
Device
0x00000061-0x00000061
0x0000E000-0x0000E0FF
0x0000E000-0x0000E0FF
0x000003B0-0x000003BB
0x000003B0-0x000003BB
0x000003C0-0x000003DF
0x000003C0-0x000003DF
0x0000C000-0x0000CFFF
0x0000C000-0x0000CFFF
0x00000000-0x00000CF7
0x00000000-0x00000CF7
0x00000000-0x00000CF7
0x00000D00-0x0000FFFF
0x00000070-0x00000071
0x0000F040-0x0000F047
0x0000F030-0x0000F033
0x0000F020-0x0000F027
0x0000F010-0x0000F013
0x0000F000-0x0000F00F
0x00000010-0x0000001F
0x00000010-0x0000001F
0x00000022-0x0000003F
0x00000022-0x0000003F
0x00000044-0x0000005F
0x00000063-0x00000063
0x00000065-0x00000065
0x00000065-0x00000065
0x00000067-0x0000006F
0x00000072-0x0000007F
0x00000072-0x0000007F
0x00000080-0x00000080
0x00000080-0x00000080
0x00000084-0x00000086
0x00000084-0x00000086
0x00000088-0x00000088
0x00000088-0x00000088
0x0000008C-0x0000008E
0x0000008C-0x0000008E
0x00000090-0x0000009F
0x00000090-0x0000009F
0x000000A2-0x000000BF
Status
System speaker OK
ATI Mobility Radeon HD 4200 Series
PCI standard PCI-to-PCI bridge OK
ATI Mobility Radeon HD 4200 Series
PCI standard PCI-to-PCI bridge OK
ATI Mobility Radeon HD 4200 Series
PCI standard PCI-to-PCI bridge OK
PCI standard PCI-to-PCI bridge OK
Realtek PCIe FE Family Controller
AMD PCI Express (3GIO) Filter Driver
Motherboard resources OK
Direct memory access controller OK
AMD PCI Express (3GIO) Filter Driver
System CMOS/real time clock
OK
AMD SATA Controller
OK
AMD SATA Controller
OK
AMD SATA Controller
OK
AMD SATA Controller
OK
AMD SATA Controller
OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
OK
OK
OK
OK
OK
OK
0x000000A2-0x000000BF
0x000000E0-0x000000EF
0x000000E0-0x000000EF
0x000004D0-0x000004D1
0x000004D0-0x000004D1
0x0000FD60-0x0000FD6F
0x00000062-0x00000063
0x00000062-0x00000063
0x000000B1-0x000000B1
0x0000040B-0x0000040B
0x000004D6-0x000004D6
0x00000C00-0x00000C01
0x00000C14-0x00000C14
0x00000C50-0x00000C51
0x00000C52-0x00000C52
0x00000C6C-0x00000C6C
0x00000C6F-0x00000C6F
0x00000CD0-0x00000CD1
0x00000CD2-0x00000CD3
0x00000CD4-0x00000CD5
0x00000CD6-0x00000CD7
0x00000CD8-0x00000CDF
0x00000800-0x0000089F
0x00000B20-0x00000B3F
0x00000900-0x0000090F
0x00000910-0x0000091F
0x0000FE00-0x0000FEFE
0x0000DF00-0x0000DFFF
OK
0x000000F0-0x000000FF
0x00000066-0x00000066
0x00000020-0x00000021
0x000000A0-0x000000A1
0x00000040-0x00000043
0x00000081-0x00000083
0x00000087-0x00000087
0x00000089-0x0000008B
0x0000008F-0x0000008F
0x000000C0-0x000000DF
0x0000D000-0x0000DFFF
0x00000060-0x00000060
0x00000064-0x00000064
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Microsoft ACPI-Compliant Embedded Controller
OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
Numeric data processor OK
Microsoft ACPI-Compliant Embedded Controller
Programmable interrupt controller
OK
Programmable interrupt controller
OK
System timer
OK
Direct memory access controller OK
Direct memory access controller OK
Direct memory access controller OK
Direct memory access controller OK
Direct memory access controller OK
PCI standard PCI-to-PCI bridge OK
Standard PS/2 Keyboard OK
Standard PS/2 Keyboard OK
[IRQs]
Resource
Device Status
IRQ 4294967294 ATI Mobility Radeon HD 4200 Series
OK
IRQ 19 PCI standard PCI-to-PCI bridge OK
IRQ 19 AMD SATA Controller
OK
IRQ 19 Realtek PCIe FE Family Controller
OK
IRQ 19 High Definition Audio Controller
OK
IRQ 8 System CMOS/real time clock
OK
IRQ 17 Standard Enhanced PCI to USB Host Controller
OK
IRQ 17 Standard Enhanced PCI to USB Host Controller
OK
IRQ 18 Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
IRQ 18 Standard OpenHCD USB Host Controller
OK
IRQ 18 Standard OpenHCD USB Host Controller
OK
IRQ 18 PCI standard PCI-to-PCI bridge OK
IRQ 13 Numeric data processor OK
IRQ 12 Synaptics PS/2 Port TouchPad
OK
OK
OK
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
0
16
1
OK
[Memory]
Resource
Device
0xC0000000-0xCFFFFFFF
0xC0000000-0xCFFFFFFF
0xFF500000-0xFF50FFFF
Status
ATI Mobility Radeon HD 4200 Series
PCI standard PCI-to-PCI bridge OK
ATI Mobility Radeon HD 4200 Series
OK
OK
[Multimedia]
[Audio Codecs]
CODEC Manufacturer
Description
Status File
Version Size
Creation
Date
c:\windows\system32\msg711.acm Microsoft Corporation
OK
C:\windo
ws\system32\MSG711.ACM 6.1.7600.16385 14.50 KB (14,848 bytes) 7/13/2009 8:18 P
M
c:\windows\system32\imaadp32.acm
Microsoft Corporation
OK
C:\windows\system32\IMAADP32.ACM
6.1.7600.16385 21.50 KB (22,016 bytes)
7/13/2009 8:18 PM
c:\windows\system32\msgsm32.acm Microsoft Corporation
OK
C:\windo
ws\system32\MSGSM32.ACM 6.1.7600.16385 28.50 KB (29,184 bytes) 7/13/2009 8:18 P
M
c:\windows\system32\msadp32.acm Microsoft Corporation
OK
C:\windo
ws\system32\MSADP32.ACM 6.1.7600.16385 23.50 KB (24,064 bytes) 7/13/2009 8:18 P
M
c:\windows\system32\l3codeca.acm
Fraunhofer Institut Integrierte Schaltun
gen IIS Fraunhofer IIS MPEG Layer-3 Codec
OK
C:\windows\system32\L3CO
DECA.ACM
1.9.0.401
79.50 KB (81,408 bytes) 7/13/2009 8:22 PM
[Video Codecs]
CODEC Manufacturer
Description
Status File
Version Size
Creation
Date
c:\windows\system32\msrle32.dll Microsoft Corporation
OK
C:\windo
ws\system32\MSRLE32.DLL 6.1.7601.17514 16.00 KB (16,384 bytes) 4/15/2015 12:28
PM
c:\windows\system32\msvidc32.dll
Microsoft Corporation
OK
C:\windows\system32\MSVIDC32.DLL
6.1.7601.17514 38.00 KB (38,912 bytes)
4/15/2015 12:28 PM
c:\windows\system32\msyuv.dll Microsoft Corporation
OK
C:\windo
ws\system32\MSYUV.DLL 6.1.7601.17514 25.00 KB (25,600 bytes) 4/15/2015 12:28
PM
c:\windows\system32\iyuv_32.dll Microsoft Corporation
OK
C:\windo
ws\system32\IYUV_32.DLL 6.1.7601.17514 53.00 KB (54,272 bytes) 4/15/2015 12:28
PM
c:\windows\system32\tsbyuv.dll Microsoft Corporation
OK
C:\windo
ws\system32\TSBYUV.DLL 6.1.7601.17514 14.50 KB (14,848 bytes) 4/15/2015 12:28
PM
[CD-ROM]
Item
Value
Drive D:
Description
CD-ROM Drive
Media Loaded
Yes
Media Type
DVD Writer
Name
HL-DT-ST BDDVDRW CT30F SATA CdRom Device
Manufacturer
(Standard CD-ROM drives)
Status OK
Transfer Rate -1.00 kbytes/sec
SCSI Target ID 0
PNP Device ID SCSI\CDROM&VEN_HL-DT-ST&PROD_BDDVDRW_CT30F\4&C068CE8&0&020000
Driver c:\windows\system32\drivers\cdrom.sys (6.1.7601.17514, 144.00 KB (147,45
6 bytes), 4/15/2015 12:29 PM)
[Sound Device]
Item
Value
Name
AMD High Definition Audio Device
Manufacturer
Advanced Micro Devices
Status OK
PNP Device ID HDAUDIO\FUNC_01&VEN_1002&DEV_791A&SUBSYS_00791A00&REV_1000\5&65F
06F7&0&0001
Driver c:\windows\system32\drivers\atihdw76.sys (7.12.0.7708, 94.63 KB (96,896
bytes), 5/14/2012 2:12 AM)
Name
Realtek High Definition Audio
Manufacturer
Realtek
Status OK
PNP Device ID HDAUDIO\FUNC_01&VEN_10EC&DEV_0269&SUBSYS_1179FD02&REV_1001\4&279
0AAAD&0&0001
Driver c:\windows\system32\drivers\rtkvhd64.sys (6.0.1.6069, 2.19 MB (2,298,400
bytes), 4/15/2015 2:40 PM)
[Display]
Item
Name
Value
ATI Mobility Radeon HD 4200 Series
Value
[Input]
[Keyboard]
Item
Value
Description
Standard PS/2 Keyboard
Name
Enhanced (101- or 102-key)
Layout 00000409
PNP Device ID ACPI\PNP0303\4&20222292&0
Number of Function Keys 12
I/O Port
0x00000060-0x00000060
I/O Port
0x00000064-0x00000064
IRQ Channel
IRQ 1
Driver c:\windows\system32\drivers\i8042prt.sys (6.1.7600.16385, 103.00 KB (105
,472 bytes), 7/13/2009 7:19 PM)
[Pointing Device]
Item
Value
Hardware Type Synaptics PS/2 Port TouchPad
Number of Buttons
0
Status OK
PNP Device ID ACPI\TOS0100\4&20222292&0
Power Management Supported
No
Double Click Threshold Not Available
Handedness
Not Available
IRQ Channel
IRQ 12
Driver c:\windows\system32\drivers\i8042prt.sys (6.1.7600.16385, 103.00 KB (105
,472 bytes), 7/13/2009 7:19 PM)
[Modem]
Item
Value
Name
HDAUDIO Soft Data Fax Modem with SmartCP
Description
HDAUDIO Soft Data Fax Modem with SmartCP
Device ID
HDAUDIO\FUNC_02&VEN_14F1&DEV_2C06&SUBSYS_14F10000&REV_1000\4&279
0AAAD&0&0102
Device Type
Internal Modem
Attached To
COM3
Answer Mode
Not Available
PNP Device ID HDAUDIO\FUNC_02&VEN_14F1&DEV_2C06&SUBSYS_14F10000&REV_1000\4&279
0AAAD&0&0102
Provider Name CXT
Modem INF Path oem15.inf
Modem INF Section
Modem1
Blind Off
X4
Blind On
X3
Compression Off +DS=0;+DS44=0;
Compression On +DS=3;+DS44=3;
Error Control Forced
+ES=3,2,4;
Error Control Off
+ES=1,0,1;
Error Control On
+ES=3,0,2;
Flow Control Hard
+IFC=2,2;
Flow Control Off
+IFC=0,0;
Flow Control Soft
+IFC=1,1;
DCB

Default <
Inactivity Timeout
0
Modulation Bell Not Available
Modulation CCITT
Not Available
Prefix AT
Pulse P
Reset ATZ<cr>
Responses Key Name
HDAUDIO Soft Data Fax Modem with SmartCP::CXT::CXT
Speaker Mode Dial
M1
Speaker Mode Off
M0
Speaker Mode On M2
Speaker Mode Setup
M3
Speaker Volume High
L3
Speaker Volume Low
L1
Speaker Volume Med
L2
String Format Not Available
Terminator
<cr>
Tone
T
Driver c:\windows\system32\drivers\modem.sys (6.1.7600.16385, 39.50 KB (40,448
bytes), 7/13/2009 8:10 PM)
[Network]
[Adapter]
Item
Value
Name
[00000000] WAN Miniport (SSTP)
Adapter Type
Not Available
Product Type
WAN Miniport (SSTP)
Installed
Yes
PNP Device ID ROOT\MS_SSTPMINIPORT\0000
Last Reset
5/30/2015 10:08 PM
Index 0
Service Name
RasSstp
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\rassstp.sys (6.1.7600.16385, 82.00 KB (83,96
8 bytes), 7/13/2009 8:10 PM)
Name
[00000001] WAN Miniport (IKEv2)
Adapter Type
Not Available
Product Type
WAN Miniport (IKEv2)
Installed
Yes
PNP Device ID ROOT\MS_AGILEVPNMINIPORT\0000
Last Reset
5/30/2015 10:08 PM
Index 1
Service Name
RasAgileVpn
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\agilevpn.sys (6.1.7600.16385, 59.00 KB (60,4
16 bytes), 7/13/2009 8:10 PM)
Name
[00000002] WAN Miniport (L2TP)
Adapter Type
Not Available
Product Type
WAN Miniport (L2TP)
Installed
Yes
PNP Device ID ROOT\MS_L2TPMINIPORT\0000
Last Reset
5/30/2015 10:08 PM
Index 2
Service Name
Rasl2tp
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\rasl2tp.sys (6.1.7601.17514, 126.50 KB (129,
536 bytes), 4/15/2015 12:28 PM)
Name
[00000003] WAN Miniport (PPTP)
Adapter Type
Not Available
Product Type
WAN Miniport (PPTP)
Installed
Yes
PNP Device ID ROOT\MS_PPTPMINIPORT\0000
Last Reset
5/30/2015 10:08 PM
Index 3
Service Name
PptpMiniport
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\raspptp.sys (6.1.7601.17514, 108.50 KB (111,
104 bytes), 4/15/2015 12:28 PM)
Name
[00000004] WAN Miniport (PPPOE)
Adapter Type
Not Available
Product Type
WAN Miniport (PPPOE)
Installed
Yes
PNP Device ID ROOT\MS_PPPOEMINIPORT\0000
Last Reset
5/30/2015 10:08 PM
Index 4
Service Name
RasPppoe
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\raspppoe.sys (6.1.7600.16385, 90.50 KB (92,6
72 bytes), 7/13/2009 8:10 PM)
Name
[00000005] WAN Miniport (IPv6)
Adapter Type
Not Available
Product Type
WAN Miniport (IPv6)
Installed
Yes
PNP Device ID ROOT\MS_NDISWANIPV6\0000
Last Reset
5/30/2015 10:08 PM
Index 5
Service Name
NdisWan
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\ndiswan.sys (6.1.7601.17514, 160.50 KB (164,
352 bytes), 4/15/2015 12:28 PM)
Name
[00000006] WAN Miniport (Network Monitor)
Adapter Type
Not Available
Product Type
WAN Miniport (Network Monitor)
Installed
Yes
PNP Device ID ROOT\MS_NDISWANBH\0000
Last Reset
5/30/2015 10:08 PM
Index 6
Service Name
NdisWan
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\ndiswan.sys (6.1.7601.17514, 160.50 KB (164,
352 bytes), 4/15/2015 12:28 PM)
Name
[00000007] Realtek PCIe FE Family Controller
Adapter Type
Ethernet 802.3
Product Type
Realtek PCIe FE Family Controller
Installed
Yes
PNP Device ID PCI\VEN_10EC&DEV_8136&SUBSYS_FD001179&REV_05\4&29E155A0&0&0038
Last Reset
5/30/2015 10:08 PM
Index 7
Service Name
RTL8167
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
Yes
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
88:AE:1D:FA:D3:F8
I/O Port
0x0000C000-0x0000CFFF
Memory Address 0xD0104000-0xD0104FFF
Memory Address 0xD0100000-0xD01FFFFF
IRQ Channel
IRQ 19
Driver c:\windows\system32\drivers\rt64win7.sys (7.13.112.2010, 317.53 KB (325,
152 bytes), 4/15/2015 2:41 PM)
Name
[00000008] WAN Miniport (IP)
Adapter Type
Not Available
Product Type
WAN Miniport (IP)
Installed
Yes
PNP Device ID ROOT\MS_NDISWANIP\0000
Last Reset
5/30/2015 10:08 PM
Index 8
Service Name
NdisWan
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\ndiswan.sys (6.1.7601.17514, 160.50 KB (164,
352 bytes), 4/15/2015 12:28 PM)
Name
[00000009] Microsoft ISATAP Adapter
Adapter Type
Tunnel
Product Type
Microsoft ISATAP Adapter
Installed
Yes
PNP Device ID ROOT\*ISATAP\0000
Last Reset
5/30/2015 10:08 PM
Index 9
Service Name
tunnel
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\tunnel.sys (6.1.7601.17514, 122.50 KB (125,4
40 bytes), 4/15/2015 12:28 PM)
Name
[00000010] RAS Async Adapter
Adapter Type
Not Available
Product Type
RAS Async Adapter
Installed
Yes
PNP Device ID Not Available
Last Reset
5/30/2015 10:08 PM
Index 10
Service Name
AsyncMac
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Name
[00000011] Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
Adapter Type
Ethernet 802.3
Product Type
Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
Installed
Yes
PNP Device ID PCI\VEN_10EC&DEV_8176&SUBSYS_818410EC&REV_01\4&2CDF5449&0&0030
Last Reset
5/30/2015 10:08 PM
Index 11
Service Name
RTL8192Ce
IP Address
10.0.0.6, fe80::a092:15bd:f683:1028, 2601:6:2d80:367:5cef:fe54:2
655:eebb, 2601:6:2d80:367:a092:15bd:f683:1028
IP Subnet
255.255.255.0, 64, 128, 64
Default IP Gateway
10.0.0.1, fe80::ea3e:fcff:fe8a:5361
DHCP Enabled
Yes
DHCP Server
10.0.0.1
DHCP Lease Expires
6/6/2015 10:09 PM
DHCP Lease Obtained
5/30/2015 10:09 PM
MAC Address
88:25:2C:AE:1A:32
I/O Port
0x0000DF00-0x0000DFFF
Memory Address 0xFF3FC000-0xFF3FFFFF
IRQ Channel
IRQ 18
Driver c:\windows\system32\drivers\rtl8192ce.sys (1002.2.428.2010, 910.53 KB (9
32,384 bytes), 4/15/2015 2:43 PM)
Name
[00000012] Microsoft ISATAP Adapter
Adapter Type
Tunnel
Product Type
Microsoft ISATAP Adapter
Installed
Yes
PNP Device ID ROOT\*ISATAP\0001
Last Reset
5/30/2015 10:08 PM
Index 12
Service Name
tunnel
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\tunnel.sys (6.1.7601.17514, 122.50 KB (125,4
40 bytes), 4/15/2015 12:28 PM)
Name
[00000013] Microsoft Teredo Tunneling Adapter
Adapter Type
Tunnel
Product Type
Microsoft Teredo Tunneling Adapter
Installed
Yes
PNP Device ID ROOT\*TEREDO\0000
Last Reset
5/30/2015 10:08 PM
Index 13
Service Name
tunnel
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\tunnel.sys (6.1.7601.17514, 122.50 KB (125,4
40 bytes), 4/15/2015 12:28 PM)
[Protocol]
Item
Value
Name
MSAFD Tcpip [TCP/IP]
Connectionless Service No
Guarantees Delivery
Yes
Guarantees Sequencing Yes
Maximum Address Size
16 bytes
Maximum Message Size
0 bytes
Message Oriented
No
Minimum Address Size
16 bytes
Pseudo Stream Oriented No
Supports Broadcasting No
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
No
Supports Expedited Data Yes
Supports Graceful Closing
Yes
Supports Guaranteed Bandwidth No
Supports Multicasting No
Name
MSAFD Tcpip [UDP/IP]
Connectionless Service Yes
Guarantees Delivery
No
Guarantees Sequencing No
Maximum Address Size
16 bytes
Maximum Message Size
63.99 KB (65,527 bytes)
Message Oriented
Yes
Minimum Address Size
16 bytes
Pseudo Stream Oriented No
Supports Broadcasting Yes
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
No
Supports
Supports
Supports
Supports
Expedited Data No
Graceful Closing
Guaranteed Bandwidth
Multicasting Yes
No
No
Name
MSAFD Tcpip [TCP/IPv6]
Connectionless Service No
Guarantees Delivery
Yes
Guarantees Sequencing Yes
Maximum Address Size
28 bytes
Maximum Message Size
0 bytes
Message Oriented
No
Minimum Address Size
28 bytes
Pseudo Stream Oriented No
Supports Broadcasting No
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
No
Supports Expedited Data Yes
Supports Graceful Closing
Yes
Supports Guaranteed Bandwidth No
Supports Multicasting No
Name
MSAFD Tcpip [UDP/IPv6]
Connectionless Service Yes
Guarantees Delivery
No
Guarantees Sequencing No
Maximum Address Size
28 bytes
Maximum Message Size
63.99 KB (65,527 bytes)
Message Oriented
Yes
Minimum Address Size
28 bytes
Pseudo Stream Oriented No
Supports Broadcasting Yes
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
No
Supports Expedited Data No
Supports Graceful Closing
No
Supports Guaranteed Bandwidth No
Supports Multicasting Yes
Name
RSVP TCPv6 Service Provider
Connectionless Service No
Guarantees Delivery
Yes
Guarantees Sequencing Yes
Maximum Address Size
28 bytes
Maximum Message Size
0 bytes
Message Oriented
No
Minimum Address Size
28 bytes
Pseudo Stream Oriented No
Supports Broadcasting No
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
Yes
Supports Expedited Data Yes
Supports Graceful Closing
Yes
Supports Guaranteed Bandwidth No
Supports Multicasting No
Name
Connectionless Service No
Guarantees Delivery
Yes
Guarantees Sequencing Yes
Maximum Address Size
16 bytes
Maximum Message Size
0 bytes
Message Oriented
No
Minimum Address Size
16 bytes
Pseudo Stream Oriented No
Supports Broadcasting No
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
Yes
Supports Expedited Data Yes
Supports Graceful Closing
Yes
Supports Guaranteed Bandwidth No
Supports Multicasting No
Name
RSVP UDPv6 Service Provider
Connectionless Service Yes
Guarantees Delivery
No
Guarantees Sequencing No
Maximum Address Size
28 bytes
Maximum Message Size
63.99 KB (65,527 bytes)
Message Oriented
Yes
Minimum Address Size
28 bytes
Pseudo Stream Oriented No
Supports Broadcasting Yes
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
Yes
Supports Expedited Data No
Supports Graceful Closing
No
Supports Guaranteed Bandwidth No
Supports Multicasting Yes
Name
RSVP UDP Service Provider
Connectionless Service Yes
Guarantees Delivery
No
Guarantees Sequencing No
Maximum Address Size
16 bytes
Maximum Message Size
63.99 KB (65,527 bytes)
Message Oriented
Yes
Minimum Address Size
16 bytes
Pseudo Stream Oriented No
Supports Broadcasting Yes
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
Yes
Supports Expedited Data No
Supports Graceful Closing
No
Supports Guaranteed Bandwidth No
Supports Multicasting Yes
[WinSock]
Item
File
Size
Version
Value
c:\windows\syswow64\wsock32.dll
15.00 KB (15,360 bytes)
6.1.7600.16385
File
c:\windows\system32\wsock32.dll
Size
18.00 KB (18,432 bytes)
Version 6.1.7600.16385
[Ports]
[Serial]
Item
Value
Name
HDAUDIO Soft Data Fax Modem with SmartCP
Status OK
PNP Device ID HDAUDIO\FUNC_02&VEN_14F1&DEV_2C06&SUBSYS_14F10000&REV_1000\4&279
0AAAD&0&0102
Maximum Input Buffer Size
0
Maximum Output Buffer Size
No
Settable Baud Rate
Yes
Settable Data Bits
Yes
Settable Flow Control Yes
Settable Parity Yes
Settable Parity Check Yes
Settable Stop Bits
Yes
Settable RLSD Yes
Supports RLSD Yes
Supports 16 Bit Mode
No
Supports Special Characters
No
Baud Rate
9600
Bits/Byte
8
Stop Bits
1
Parity None
Busy
No
Abort Read/Write on Error
No
Binary Mode Enabled
Yes
Continue XMit on XOff No
CTS Outflow Control
No
Discard NULL Bytes
No
DSR Outflow Control
0
DSR Sensitivity 0
DTR Flow Control Type Disable
EOF Character 0
Error Replace Character 0
Error Replacement Enabled
No
Event Character 0
Parity Check Enabled
No
RTS Flow Control Type Disable
XOff Character 0
XOffXMit Threshold
0
XOn Character 0
XOnXMit Threshold
0
XOnXOff InFlow Control 0
XOnXOff OutFlow Control 0
Driver c:\windows\system32\drivers\modem.sys (6.1.7600.16385, 39.50 KB (40,448
bytes), 7/13/2009 8:10 PM)
[Parallel]
Item
Value
[Storage]
[Drives]
Item
Value
Drive C:
Description
Local Fixed Disk
Compressed
No
File System
NTFS
Size
285.75 GB (306,823,819,264 bytes)
Free Space
189.95 GB (203,961,950,208 bytes)
Volume Name
TI105955W0C
Volume Serial Number
621CEF99
Drive D:
Description
CD-ROM Disc
[Disks]
Item
Value
Description
Disk drive
Manufacturer
(Standard disk drives)
Model TOSHIBA MK3265GSXN SATA Disk Device
Bytes/Sector
512
Media Loaded
Yes
Media Type
Fixed hard disk
Partitions
3
SCSI Bus
1
SCSI Logical Unit
0
SCSI Port
0
SCSI Target ID 0
Sectors/Track 63
Size
298.09 GB (320,070,320,640 bytes)
Total Cylinders 38,913
Total Sectors 625,137,345
Total Tracks
9,922,815
Tracks/Cylinder 255
Partition
Disk #0, Partition #0
Partition Size 1.46 GB (1,572,864,000 bytes)
Partition Starting Offset
1,048,576 bytes
Partition
Disk #0, Partition #1
Partition Size 285.75 GB (306,823,823,360 bytes)
Partition Starting Offset
1,573,912,576 bytes
Partition
Disk #0, Partition #2
Partition Size 10.87 GB (11,674,845,184 bytes)
Partition Starting Offset
308,397,735,936 bytes
[SCSI]
Item
Value
[IDE]
Item
Value
Name
AMD SATA Controller
Manufacturer
AMD
Status OK
PNP Device ID PCI\VEN_1002&DEV_4391&SUBSYS_FD001179&REV_00\3&267A616A&0&88
I/O Port
0x0000F040-0x0000F047
I/O Port
0x0000F030-0x0000F033
I/O Port
0x0000F020-0x0000F027
I/O Port
0x0000F010-0x0000F013
I/O Port
0x0000F000-0x0000F00F
Memory Address 0xFF708000-0xFF7083FF
IRQ Channel
IRQ 19
Driver c:\windows\system32\drivers\amdsata.sys (1.2.0.164, 68.55 KB (70,200 byt
es), 4/15/2015 2:40 PM)
[Printing]
Name
Driver Port Name
Server Name
Microsoft XPS Document Writer Microsoft XPS Document Writer
Not Available
Fax
Microsoft Shared Fax Driver
SHRFAX: Not Available
XPSPort:
[Problem Devices]
Device PNP Device ID
Error Code
[USB]
Device PNP Device ID
Standard Enhanced PCI to USB Host Controller
PCI\VEN_1002&DEV_4396&SUBSYS_FD0
01179&REV_00\3&267A616A&0&92
Standard Enhanced PCI to USB Host Controller
PCI\VEN_1002&DEV_4396&SUBSYS_FD0
01179&REV_00\3&267A616A&0&9A
Standard OpenHCD USB Host Controller
PCI\VEN_1002&DEV_4397&SUBSYS_FD001179&RE
V_00\3&267A616A&0&90
Standard OpenHCD USB Host Controller
PCI\VEN_1002&DEV_4397&SUBSYS_FD001179&RE
V_00\3&267A616A&0&98
[Software Environment]
[System Drivers]
Name
Description
File
Type
Started Start Mode
State Status
Error Control Accept Pause
Accept Stop
1394ohci
1394 OHCI Compliant Host Controller
c:\windows\system32\driv
ers\1394ohci.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
acpi
Microsoft ACPI Driver c:\windows\system32\drivers\acpi.sys
Kernel D
river Yes
Boot
Running OK
Critical
No
Yes
acpipmi ACPI Power Meter Driver c:\windows\system32\drivers\acpipmi.sys Kernel D
river No
Manual Stopped OK
Normal No
No
adp94xx adp94xx c:\windows\system32\drivers\adp94xx.sys Kernel Driver No
Manual Stopped OK
Normal No
No
adpahci adpahci c:\windows\system32\drivers\adpahci.sys Kernel Driver No
Manual Stopped OK
Normal No
No
adpu320 adpu320 c:\windows\system32\drivers\adpu320.sys Kernel Driver No
Manual Stopped OK
Normal No
No
afd
Ancillary Function Driver for Winsock c:\windows\system32\drivers\afd.
sys
Kernel Driver Yes
System Running OK
Normal No
Yes
ageresoftmodem Agere Systems Soft Modem
c:\windows\system32\drivers\agrs
m64.sys Kernel Driver No
Manual Stopped OK
Normal No
No
agp440 Intel AGP Bus Filter
c:\windows\system32\drivers\agp440.sys Kernel D
river No
Manual Stopped OK
Normal No
No
aliide aliide c:\windows\system32\drivers\aliide.sys Kernel Driver No
Manual Stopped OK
Critical
No
No
amdide amdide c:\windows\system32\drivers\amdide.sys Kernel Driver No
Manual Stopped OK
Critical
No
No
amdiox64
AMD IO Driver c:\windows\system32\drivers\amdiox64.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
amdk8 AMD K8 Processor Driver c:\windows\system32\drivers\amdk8.sys Kernel D
river No
Manual Stopped OK
Normal No
No
amdkmdag
amdkmdag
c:\windows\system32\drivers\atikmdag.sys
Kernel Driver Yes
Manual Running OK
Ignore No
Yes
amdkmdap
amdkmdap
c:\windows\system32\drivers\atikmpag.sys
Kernel Driver Yes
Manual Running OK
Ignore No
Yes
amdppm AMD Processor Driver
c:\windows\system32\drivers\amdppm.sys Kernel D
river Yes
Manual Running OK
Normal No
Yes
amdsata amdsata c:\windows\system32\drivers\amdsata.sys Kernel Driver Yes
Boot
Running OK
Normal No
Yes
amdsbs amdsbs c:\windows\system32\drivers\amdsbs.sys Kernel Driver No
Manual Stopped OK
Normal No
No
amdxata amdxata c:\windows\system32\drivers\amdxata.sys Kernel Driver Yes
Boot
Running OK
Normal No
Yes
aoddriver4.1
AODDriver4.1
\??\c:\program files\ati technologies\ati.ace\fu
el\amd64\aoddriver2.sys Kernel Driver Yes
Auto
Running OK
Normal
No
Yes
appid AppID Driver
c:\windows\system32\drivers\appid.sys Kernel Driver
No
Manual Stopped OK
Normal No
No
arc
arc
c:\windows\system32\drivers\arc.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
arcsas arcsas c:\windows\system32\drivers\arcsas.sys Kernel Driver No
Manual Stopped OK
Normal No
No
asyncmac
RAS Asynchronous Media Driver c:\windows\system32\drivers\asyn
cmac.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
atapi IDE Channel
c:\windows\system32\drivers\atapi.sys Kernel Driver
Yes
Boot
Running OK
Critical
No
Yes
atihdaudioservice
AMD Function Driver for HD Audio Service
c:\windo
ws\system32\drivers\atihdw76.sys
Kernel Driver Yes
Manual Running
OK
Normal No
Yes
atipcie AMD PCI Express (3GIO) Filter c:\windows\system32\drivers\atipcie.sys
Kernel Driver Yes
Boot
Running OK
Normal No
Yes
b06bdrv Broadcom NetXtreme II VBD
c:\windows\system32\drivers\bxvbda.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
b57nd60a
Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 c:\windows\syste
m32\drivers\b57nd60a.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
beep
Beep
c:\windows\system32\drivers\beep.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
bhdrvx64
BHDrvx64
\??\c:\programdata\norton\{0c55c096-0f1d-4f28-aa
a2-85ef591126e7}\nis_18.0.0.128\definitions\bashdefs\20150506.001\bhdrvx64.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
blbdrive
blbdrive
c:\windows\system32\drivers\blbdrive.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
bowser Browser Support Driver c:\windows\system32\drivers\bowser.sys File Sys
tem Driver
Yes
Manual Running OK
Normal No
Yes
brfiltlo
Brother USB Mass-Storage Lower Filter Driver
c:\windows\syste
m32\drivers\brfiltlo.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
brfiltup
Brother USB Mass-Storage Upper Filter Driver
c:\windows\syste
m32\drivers\brfiltup.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
brserid Brother MFC Serial Port Interface Driver (WDM) c:\windows\system32\driv
ers\brserid.sys Kernel Driver No
Manual Stopped OK
Normal No
No
brserwdm
Brother WDM Serial driver
c:\windows\system32\drivers\brse
rwdm.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
brusbmdm
Brother MFC USB Fax Only Modem c:\windows\system32\drivers\brus
bmdm.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
brusbser
Brother MFC USB Serial WDM Driver
c:\windows\system32\driv
ers\brusbser.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
bthmodem
Bluetooth Serial Communications Driver c:\windows\system32\driv
ers\bthmodem.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
caxhwazl
CAXHWAZL
c:\windows\system32\drivers\caxhwazl.sys
Kernel Driver Yes
Manual Running OK
Ignore No
Yes
cdfs
CD/DVD File System Reader
c:\windows\system32\drivers\cdfs.sys
File System Driver
Yes
Disabled
Running OK
Normal No
Yes
cdrom CD-ROM Driver c:\windows\system32\drivers\cdrom.sys Kernel Driver
Yes
System Running OK
Normal No
Yes
circlass
Consumer IR Devices
c:\windows\system32\drivers\circlass.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
clfs
Common Log (CLFS)
c:\windows\system32\clfs.sys
Kernel Driver
Yes
Boot
Running OK
Critical
No
Yes
cmbatt Microsoft ACPI Control Method Battery Driver
c:\windows\system32\driv
ers\cmbatt.sys Kernel Driver Yes
Manual Running OK
Normal No
Yes
cmdide cmdide c:\windows\system32\drivers\cmdide.sys Kernel Driver No
Manual Stopped OK
Critical
No
No
cng
CNG
c:\windows\system32\drivers\cng.sys
Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
compbatt
Microsoft Composite Battery Driver
c:\windows\system32\driv
ers\compbatt.sys
Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
compositebus
Composite Bus Enumerator Driver c:\windows\system32\drivers\comp
ositebus.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
crcdisk Crcdisk Filter Driver c:\windows\system32\drivers\crcdisk.sys Kernel D
river No
Disabled
Stopped OK
Normal No
No
dfsc
DFS Namespace Client Driver
c:\windows\system32\drivers\dfsc.sys
File System Driver
Yes
System Running OK
Normal No
Yes
discache
System Attribute Cache c:\windows\system32\drivers\discache.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
disk
Disk Driver
c:\windows\system32\drivers\disk.sys
Kernel Driver
Yes
Boot
Running OK
Normal No
Yes
drmkaud Microsoft Trusted Audio Drivers c:\windows\system32\drivers\drmkaud.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
dxgkrnl LDDM Graphics Subsystem c:\windows\system32\drivers\dxgkrnl.sys Kernel D
river Yes
Manual Running OK
Ignore No
Yes
ebdrv Broadcom NetXtreme II 10 GigE VBD
c:\windows\system32\drivers\evbd
a.sys Kernel Driver No
Manual Stopped OK
Normal No
No
eectrl Symantec Eraser Control driver \??\c:\program files (x86)\common files\
symantec shared\eengine\eectrl64.sys
Kernel Driver Yes
System Running
OK
Normal No
Yes
elxstor elxstor c:\windows\system32\drivers\elxstor.sys Kernel Driver No
Manual Stopped OK
Normal No
No
eraserutilrebootdrv
EraserUtilRebootDrv
\??\c:\program files (x86)\commo
n files\symantec shared\eengine\eraserutilrebootdrv.sys Kernel Driver Yes
Manual Running OK
Normal No
Yes
errdev Microsoft Hardware Error Device Driver c:\windows\system32\drivers\errd
intcazaudaddservice
Service for Realtek HD Audio (WDM)
c:\windows\syste
m32\drivers\rtkvhd64.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
intelide
intelide
c:\windows\system32\drivers\intelide.sys
Kernel Driver No
Manual Stopped OK
Critical
No
No
intelppm
Intel Processor Driver c:\windows\system32\drivers\intelppm.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
ipfilterdriver IP Traffic Filter Driver
c:\windows\system32\drivers\ipfl
tdrv.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
ipmidrv IPMIDRV c:\windows\system32\drivers\ipmidrv.sys Kernel Driver No
Manual Stopped OK
Normal No
No
ipnat IP Network Address Translator c:\windows\system32\drivers\ipnat.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
irenum IR Bus Enumerator
c:\windows\system32\drivers\irenum.sys Kernel D
river No
Manual Stopped OK
Ignore No
No
isapnp isapnp c:\windows\system32\drivers\isapnp.sys Kernel Driver No
Manual Stopped OK
Critical
No
No
iscsiprt
iScsiPort Driver
c:\windows\system32\drivers\msiscsi.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
kbdclass
Keyboard Class Driver c:\windows\system32\drivers\kbdclass.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
kbdhid Keyboard HID Driver
c:\windows\system32\drivers\kbdhid.sys Kernel D
river No
Manual Stopped OK
Ignore No
No
ksecdd KSecDD c:\windows\system32\drivers\ksecdd.sys Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
ksecpkg KSecPkg c:\windows\system32\drivers\ksecpkg.sys Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
ksthunk Kernel Streaming Thunks c:\windows\system32\drivers\ksthunk.sys Kernel D
river Yes
Manual Running OK
Normal No
Yes
lltdio Link-Layer Topology Discovery Mapper I/O Driver c:\windows\system32\driv
ers\lltdio.sys Kernel Driver Yes
Auto
Running OK
Normal No
Yes
lpcfilter
LPC Lower Filter Driver c:\windows\system32\drivers\lpcfilter.sy
s
Kernel Driver Yes
Boot
Running OK
Ignore No
Yes
lsi_fc LSI_FC c:\windows\system32\drivers\lsi_fc.sys Kernel Driver No
Manual Stopped OK
Normal No
No
lsi_sas LSI_SAS c:\windows\system32\drivers\lsi_sas.sys Kernel Driver No
Manual Stopped OK
Normal No
No
lsi_sas2
LSI_SAS2
c:\windows\system32\drivers\lsi_sas2.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
lsi_scsi
LSI_SCSI
c:\windows\system32\drivers\lsi_scsi.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
luafv UAC File Virtualization c:\windows\system32\drivers\luafv.sys File Sys
tem Driver
Yes
Auto
Running OK
Normal No
Yes
mdmxsdk mdmxsdk c:\windows\system32\drivers\mdmxsdk.sys Kernel Driver Yes
Auto
Running OK
Ignore No
Yes
megasas megasas c:\windows\system32\drivers\megasas.sys Kernel Driver No
Manual Stopped OK
Normal No
No
megasr MegaSR c:\windows\system32\drivers\megasr.sys Kernel Driver No
Manual Stopped OK
Normal No
No
modem Modem c:\windows\system32\drivers\modem.sys Kernel Driver Yes
Manual Running OK
Ignore No
Yes
monitor Microsoft Monitor Class Function Driver Service c:\windows\system32\driv
ers\monitor.sys Kernel Driver Yes
Manual Running OK
Normal No
Yes
mouclass
Mouse Class Driver
c:\windows\system32\drivers\mouclass.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
mouhid Mouse HID Driver
c:\windows\system32\drivers\mouhid.sys Kernel D
river No
Manual Stopped OK
Ignore No
No
mountmgr
Mount Point Manager
c:\windows\system32\drivers\mountmgr.sys
Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
mpio
Microsoft Multi-Path Bus Driver c:\windows\system32\drivers\mpio.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
mpsdrv Windows Firewall Authorization Driver c:\windows\system32\drivers\mpsd
rv.sys Kernel Driver Yes
Manual Running OK
Normal No
Yes
mrxdav WebDav Client Redirector Driver c:\windows\system32\drivers\mrxdav.sys
File System Driver
No
Manual Stopped OK
Normal No
No
mrxsmb SMB MiniRedirector Wrapper and Engine c:\windows\system32\drivers\mrxs
mb.sys File System Driver
Yes
Manual Running OK
Normal No
Yes
mrxsmb10
SMB 1.x MiniRedirector c:\windows\system32\drivers\mrxsmb10.sys
File System Driver
Yes
Manual Running OK
Normal No
Yes
mrxsmb20
SMB 2.0 MiniRedirector c:\windows\system32\drivers\mrxsmb20.sys
File System Driver
Yes
Manual Running OK
Normal No
Yes
msahci msahci c:\windows\system32\drivers\msahci.sys Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
msdsm Microsoft Multi-Path Device Specific Module
c:\windows\system32\driv
ers\msdsm.sys Kernel Driver No
Manual Stopped OK
Normal No
No
msfs
Msfs
c:\windows\system32\drivers\msfs.sys
File System Driver
Yes
System Running OK
Normal No
Yes
mshidkmdf
Pass-through HID to KMDF Filter Driver c:\windows\system32\driv
ers\mshidkmdf.sys
Kernel Driver No
Manual Stopped OK
Ignore
No
No
msisadrv
msisadrv
c:\windows\system32\drivers\msisadrv.sys
Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
mskssrv Microsoft Streaming Service Proxy
c:\windows\system32\drivers\msks
srv.sys Kernel Driver No
Manual Stopped OK
Normal No
No
mspclock
Microsoft Streaming Clock Proxy c:\windows\system32\drivers\mspc
lock.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
mspqm Microsoft Streaming Quality Manager Proxy
c:\windows\system32\driv
ers\mspqm.sys Kernel Driver No
Manual Stopped OK
Normal No
No
msrpc MsRPC c:\windows\system32\drivers\msrpc.sys Kernel Driver No
Manual Stopped OK
Normal No
No
mssmbios
Microsoft System Management BIOS Driver c:\windows\system32\driv
ers\mssmbios.sys
Kernel Driver Yes
System Running OK
Normal
No
Yes
mstee Microsoft Streaming Tee/Sink-to-Sink Converter c:\windows\system32\driv
ers\mstee.sys Kernel Driver No
Manual Stopped OK
Normal No
No
mtconfig
Microsoft Input Configuration Driver
c:\windows\system32\driv
ers\mtconfig.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
mup
Mup
c:\windows\system32\drivers\mup.sys
File System Driver
Yes
Boot
Running OK
Normal No
Yes
nativewifip
NativeWiFi Filter
c:\windows\system32\drivers\nwifi.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
naveng NAVENG \??\c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}
\nis_18.0.0.128\definitions\virusdefs\20150517.021\eng64.sys
Kernel Driver
No
Manual Stopped OK
Normal No
No
navex15 NAVEX15 \??\c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}
\nis_18.0.0.128\definitions\virusdefs\20150517.021\ex64.sys
Kernel Driver
No
Manual Stopped OK
Normal No
No
ndis
NDIS System Driver
c:\windows\system32\drivers\ndis.sys
Kernel D
river Yes
Boot
Running OK
Critical
No
Yes
ndiscap NDIS Capture LightWeight Filter c:\windows\system32\drivers\ndiscap.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
ndistapi
Remote Access NDIS TAPI Driver c:\windows\system32\drivers\ndis
tapi.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
ndisuio NDIS Usermode I/O Protocol
c:\windows\system32\drivers\ndisuio.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
ndiswan Remote Access NDIS WAN Driver c:\windows\system32\drivers\ndiswan.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
ndproxy NDIS Proxy
c:\windows\system32\drivers\ndproxy.sys Kernel Driver
Yes
Manual Running OK
Normal No
Yes
netbios NetBIOS Interface
c:\windows\system32\drivers\netbios.sys File Sys
tem Driver
Yes
System Running OK
Normal No
Yes
netbt NetBT c:\windows\system32\drivers\netbt.sys Kernel Driver Yes
System Running OK
Normal No
Yes
nfrd960 nfrd960 c:\windows\system32\drivers\nfrd960.sys Kernel Driver No
Manual Stopped OK
Normal No
No
npfs
Npfs
c:\windows\system32\drivers\npfs.sys
File System Driver
Yes
System Running OK
Normal No
Yes
nsiproxy
NSI proxy service driver.
c:\windows\system32\drivers\nsip
roxy.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
ntfs
Ntfs
c:\windows\system32\drivers\ntfs.sys
File System Driver
Yes
Manual Running OK
Normal No
Yes
null
Null
c:\windows\system32\drivers\null.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
nvraid nvraid c:\windows\system32\drivers\nvraid.sys Kernel Driver No
Manual Stopped OK
Normal No
No
nvstor nvstor c:\windows\system32\drivers\nvstor.sys Kernel Driver No
Manual Stopped OK
Critical
No
No
nv_agp NVIDIA nForce AGP Bus Filter
c:\windows\system32\drivers\nv_agp.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
ohci1394
1394 OHCI Compliant Host Controller (Legacy)
c:\windows\syste
m32\drivers\ohci1394.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
parport Parallel port driver
c:\windows\system32\drivers\parport.sys Kernel D
river No
Manual Stopped OK
Ignore No
No
partmgr Partition Manager
c:\windows\system32\drivers\partmgr.sys Kernel D
river Yes
Boot
Running OK
Critical
No
Yes
pci
PCI Bus Driver c:\windows\system32\drivers\pci.sys
Kernel Driver
Yes
Boot
Running OK
Critical
No
Yes
pciide pciide c:\windows\system32\drivers\pciide.sys Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
pcmcia pcmcia c:\windows\system32\drivers\pcmcia.sys Kernel Driver No
Manual Stopped OK
Normal No
No
pcw
Performance Counters for Windows Driver c:\windows\system32\drivers\pcw.
sys
Kernel Driver Yes
Boot
Running OK
Normal No
Yes
peauth PEAUTH c:\windows\system32\drivers\peauth.sys Kernel Driver Yes
Auto
Running OK
Normal No
Yes
pgeffect
Pangu effect driver
c:\windows\system32\drivers\pgeffect.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
pptpminiport
WAN Miniport (PPTP)
c:\windows\system32\drivers\raspptp.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
processor
Processor Driver
c:\windows\system32\drivers\processr.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
psched QoS Packet Scheduler
c:\windows\system32\drivers\pacer.sys Kernel D
river Yes
System Running OK
Normal No
Yes
ql2300 ql2300 c:\windows\system32\drivers\ql2300.sys Kernel Driver No
Manual Stopped OK
Normal No
No
ql40xx ql40xx c:\windows\system32\drivers\ql40xx.sys Kernel Driver No
Manual Stopped OK
Normal No
No
qwavedrv
QWAVE driver
c:\windows\system32\drivers\qwavedrv.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
rasacd Remote Access Auto Connection Driver
c:\windows\system32\drivers\rasa
cd.sys Kernel Driver No
Manual Stopped OK
Normal No
No
rasagilevpn
WAN Miniport (IKEv2)
c:\windows\system32\drivers\agilevpn.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
rasl2tp WAN Miniport (L2TP)
c:\windows\system32\drivers\rasl2tp.sys Kernel D
river Yes
Manual Running OK
Normal No
Yes
raspppoe
Remote Access PPPOE Driver
c:\windows\system32\drivers\rasp
ppoe.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
rassstp WAN Miniport (SSTP)
c:\windows\system32\drivers\rassstp.sys Kernel D
river Yes
Manual Running OK
Normal No
Yes
rdbss Redirected Buffering Sub Sysytem
c:\windows\system32\drivers\rdbs
s.sys File System Driver
Yes
System Running OK
Normal No
Yes
rdpbus Remote Desktop Device Redirector Bus Driver
c:\windows\system32\driv
ers\rdpbus.sys Kernel Driver No
Manual Stopped OK
Normal No
No
rdpcdd RDPCDD c:\windows\system32\drivers\rdpcdd.sys Kernel Driver Yes
System Running OK
Ignore No
Yes
rdpencdd
RDP Encoder Mirror Driver
c:\windows\system32\drivers\rdpe
ncdd.sys
Kernel Driver Yes
System Running OK
Ignore No
Yes
rdprefmp
Reflector Display Driver used to gain access to graphics data
c:\windows\system32\drivers\rdprefmp.sys
Kernel Driver Yes
System
Running OK
Ignore No
Yes
rdpvideominiport
Remote Desktop Video Miniport Driver
c:\windows\syste
m32\drivers\rdpvideominiport.sys
Kernel Driver No
Manual Stopped
OK
Normal No
No
rdpwd RDP Winstation Driver c:\windows\system32\drivers\rdpwd.sys Kernel D
river No
Manual Stopped OK
Ignore No
No
rdyboost
ReadyBoost
c:\windows\system32\drivers\rdyboost.sys
Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
regi
regi
\??\c:\windows\system32\drivers\regi.sys
Kernel Driver
Yes
Auto
Running OK
Normal No
Yes
rspndr Link-Layer Topology Discovery Responder c:\windows\system32\drivers\rspn
dr.sys Kernel Driver Yes
Auto
Running OK
Normal No
Yes
rsusbstor
RtsUStor.Sys Realtek USB Card Reader
c:\windows\system32\driv
ers\rtsustor.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
rthdmiazaudservice
Service for HDMI
c:\windows\system32\drivers\rthd
mivx.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
rtl8167 Realtek 8167 NT Driver c:\windows\system32\drivers\rt64win7.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
rtl8192ce
Realtek Wireless LAN 802.11n PCI-E NIC Driver c:\windows\syste
m32\drivers\rtl8192ce.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
sbp2port
SBP-2 Transport/Protocol Bus Driver
c:\windows\system32\driv
ers\sbp2port.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
scfilter
Smart card PnP Class Filter Driver
c:\windows\system32\driv
ers\scfilter.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
secdrv Security Driver c:\windows\system32\drivers\secdrv.sys Kernel Driver
Yes
Auto
Running OK
Normal No
Yes
serenum Serenum Filter Driver c:\windows\system32\drivers\serenum.sys Kernel D
river No
Manual Stopped OK
Normal No
No
serial Serial c:\windows\system32\drivers\serial.sys Kernel Driver No
Manual Stopped OK
Ignore No
No
sermouse
Serial Mouse Driver
c:\windows\system32\drivers\sermouse.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
sffdisk SFF Storage Class Driver
c:\windows\system32\drivers\sffdisk.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
sffp_mmc
SFF Storage Protocol Driver for MMC
c:\windows\system32\driv
ers\sffp_mmc.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
sffp_sd SFF Storage Protocol Driver for SDBus c:\windows\system32\drivers\sffp
_sd.sys Kernel Driver No
Manual Stopped OK
Normal No
No
sfloppy High-Capacity Floppy Disk Drive c:\windows\system32\drivers\sfloppy.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
sisraid2
SiSRaid2
c:\windows\system32\drivers\sisraid2.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
sisraid4
SiSRaid4
c:\windows\system32\drivers\sisraid4.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
smb
Message-oriented TCP/IP and TCP/IPv6 Protocol (SMB session)
c:\windo
ws\system32\drivers\smb.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
spldr Security Processor Loader Driver
c:\windows\system32\drivers\spld
r.sys Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
srtsp Symantec Real Time Storage Protection x64
c:\windows\system32\driv
ers\nisx64\1207020.003\srtsp64.sys
File System Driver
No
Manual
Stopped OK
Normal No
No
srtspx Symantec Real Time Storage Protection (PEL) x64 c:\windows\system32\driv
ers\nisx64\1207020.003\srtspx64.sys
Kernel Driver Yes
System Running
OK
Normal No
Yes
srv
Server SMB 1.xxx Driver c:\windows\system32\drivers\srv.sys
File Sys
tem Driver
Yes
Manual Running OK
Normal No
Yes
srv2
Server SMB 2.xxx Driver c:\windows\system32\drivers\srv2.sys
File Sys
tem Driver
Yes
Manual Running OK
Normal No
Yes
srvhsfhda
SrvHsfHDA
c:\windows\system32\drivers\vstazl6.sys Kernel D
river No
Manual Stopped OK
Ignore No
No
srvhsfv92
SrvHsfV92
c:\windows\system32\drivers\vstdpv6.sys Kernel D
river No
Manual Stopped OK
Ignore No
No
srvhsfwinac
SrvHsfWinac
c:\windows\system32\drivers\vstcnxt6.sys
Kernel Driver No
Manual Stopped OK
Ignore No
No
srvnet srvnet c:\windows\system32\drivers\srvnet.sys File System Driver
Yes
Manual Running OK
Normal No
Yes
stexstor
stexstor
c:\windows\system32\drivers\stexstor.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
swdumon SWDUMon c:\windows\system32\drivers\swdumon.sys Kernel Driver No
Manual Stopped OK
Normal No
No
swenum Software Bus Driver
c:\windows\system32\drivers\swenum.sys Kernel D
river Yes
Manual Running OK
Normal No
Yes
symds Symantec Data Store
c:\windows\system32\drivers\nisx64\1207020.003\s
ymds64.sys
Kernel Driver Yes
Boot
Running OK
Normal No
Yes
symefa Symantec Extended File Attributes
c:\windows\system32\drivers\nisx
64\1207020.003\symefa64.sys
File System Driver
Yes
Boot
Running
OK
Normal No
Yes
symevent
SymEvent
\??\c:\windows\system32\drivers\symevent64x86.sy
s
Kernel Driver Yes
Manual Running OK
Normal No
Yes
symiron Symantec Iron Driver
c:\windows\system32\drivers\nisx64\1207020.003\i
ronx64.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
symnets Symantec Network Security WFP Driver
c:\windows\system32\drivers\nisx
64\1207020.003\symnets.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
syntp Synaptics TouchPad Driver
c:\windows\system32\drivers\syntp.sys
[Environment Variables]
Variable
Value User Name
ComSpec %SystemRoot%\system32\cmd.exe <SYSTEM>
FP_NO_HOST_CHECK
NO
<SYSTEM>
OS
Windows_NT
<SYSTEM>
Path
C:\Program Files (x86)\AMD APP\bin\x86_64;C:\Program Files (x86)\AMD APP
\bin\x86;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMRO
OT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI
.ACE\Core-Static
<SYSTEM>
PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC <SYSTEM>
PROCESSOR_ARCHITECTURE AMD64 <SYSTEM>
TEMP
%SystemRoot%\TEMP
<SYSTEM>
TMP
%SystemRoot%\TEMP
<SYSTEM>
USERNAME
SYSTEM <SYSTEM>
windir %SystemRoot%
<SYSTEM>
PSModulePath
%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\ <SYSTEM>
NUMBER_OF_PROCESSORS
2
<SYSTEM>
PROCESSOR_LEVEL 16
<SYSTEM>
PROCESSOR_IDENTIFIER
AMD64 Family 16 Model 6 Stepping 3, AuthenticAMD
<SYSTEM>
PROCESSOR_REVISION
0603
<SYSTEM>
AMDAPPSDKROOT C:\Program Files (x86)\AMD APP\ <SYSTEM>
TEMP
%USERPROFILE%\AppData\Local\Temp
NT AUTHORITY\SYSTEM
TMP
%USERPROFILE%\AppData\Local\Temp
NT AUTHORITY\SYSTEM
TEMP
%USERPROFILE%\AppData\Local\Temp
NT AUTHORITY\LOCAL SERVICE
TMP
%USERPROFILE%\AppData\Local\Temp
NT AUTHORITY\LOCAL SERVICE
TEMP
%USERPROFILE%\AppData\Local\Temp
NT AUTHORITY\NETWORK SERVICE
TMP
%USERPROFILE%\AppData\Local\Temp
NT AUTHORITY\NETWORK SERVICE
TEMP
%USERPROFILE%\AppData\Local\Temp
PreferredCustom\Preferred Custom
er
TMP
%USERPROFILE%\AppData\Local\Temp
PreferredCustom\Preferred Custom
er
[Print Jobs]
Document
Size
Owner Notify Status Time Submitted Start Time
Until Time
Elapsed Time
Pages Printed Job ID Priority
Paramete
rs
Driver Print Processor Host Print Queue
Data Type
Name
[Network Connections]
Local Name
Remote Name
Type
[Running Tasks]
Name
Path
Process ID
Priority
Min Working Set Max Working Set
Start Time
Version Size
File Date
system idle process
Not Available 0
0
Not Available Not Avai
lable 5/30/2015 10:08 PM
Not Available Not Available Not Available
system Not Available 4
8
Not Available Not Available 5/30/201
5 10:08 PM
Not Available Not Available Not Available
smss.exe
Not Available 280
11
200
1380
5/30/2015 10:08
PM
Not Available Not Available Not Available
csrss.exe
c:\windows\system32\csrss.exe 412
13
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 7.50 KB (7,680 bytes) 7/13/2009 7:19 P
M
wininit.exe
c:\windows\system32\wininit.exe 496
13
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 126.00 KB (129,024 bytes)
7/13/200
9 7:52 PM
csrss.exe
c:\windows\system32\csrss.exe 532
13
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 7.50 KB (7,680 bytes) 7/13/2009 7:19 P
M
services.exe
c:\windows\system32\services.exe
556
9
200
1380
5/30/2015 10:08 PM
6.1.7601.18829 321.00 KB (328,704 bytes)
5/13/2015 3:42 AM
lsass.exe
c:\windows\system32\lsass.exe 580
9
200
1380
5/30/2015 10:08 PM
6.1.7601.18839 30.50 KB (31,232 bytes) 5/13/2015 3:39 A
M
lsm.exe c:\windows\system32\lsm.exe
588
8
200
1380
5/30/201
5 10:08 PM
6.1.7601.17514 335.00 KB (343,040 bytes)
4/15/2015 12:28
PM
svchost.exe
c:\windows\system32\svchost.exe 708
8
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
winlogon.exe
c:\windows\system32\winlogon.exe
748
13
200
1380
5/30/2015 10:08 PM
6.1.7601.18540 444.50 KB (455,168 bytes)
4/15/2015 3:35 PM
svchost.exe
c:\windows\system32\svchost.exe 820
8
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
atiesrxx.exe
c:\windows\system32\atiesrxx.exe
936
8
200
1380
5/30/2015 10:08 PM
6.14.11.1122
232.50 KB (238,080 bytes)
4/29/2013 11:52 PM
svchost.exe
c:\windows\system32\svchost.exe 980
8
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
svchost.exe
c:\windows\system32\svchost.exe 1012
8
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
svchost.exe
c:\windows\system32\svchost.exe 300
8
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
svchost.exe
c:\windows\system32\svchost.exe 288
8
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
svchost.exe
c:\windows\system32\svchost.exe 816
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
svchost.exe
c:\windows\system32\svchost.exe 1088
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
atieclxx.exe
c:\windows\system32\atieclxx.exe
1268
8
200
1380
5/30/2015 10:09 PM
6.14.11.1122
502.00 KB (514,048 bytes)
4/29/2013 11:53 PM
spoolsv.exe
c:\windows\system32\spoolsv.exe 1316
8
200
1380
5/30/2015 10:09 PM
6.1.7601.17777 546.00 KB (559,104 bytes)
4/18/201
5 5:52 PM
svchost.exe
c:\windows\system32\svchost.exe 1368
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
fuel.service.exe
c:\program files\ati technologies\ati.ace\fuel\fuel.serv
ice.exe 1476
8
200
1380
5/30/2015 10:09 PM
1.0.0.0 353.50 K
B (361,984 bytes)
4/29/2013 11:25 PM
svchost.exe
c:\windows\system32\svchost.exe 1516
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
svchost.exe
c:\windows\system32\svchost.exe 1552
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
ccsvchst.exe
c:\program files (x86)\norton internet security\engine\18.7.2.3\
ccsvchst.exe
1580
8
1024
10240 5/30/2015 10:09 PM
10.1.1.1
6
126.96 KB (130,008 bytes)
4/29/2015 2:18 PM
taskhost.exe
c:\windows\system32\taskhost.exe
1784
8
200
1380
5/30/2015 10:09 PM
6.1.7601.18010 67.00 KB (68,608 bytes) 4/15/201
5 1:28 PM
dwm.exe c:\windows\system32\dwm.exe
1844
13
51200 2097152 5/30/201
5 10:09 PM
6.1.7600.16385 117.50 KB (120,320 bytes)
7/13/2009 7:37 P
M
explorer.exe
c:\windows\explorer.exe 1872
8
200
1380
5/30/201
5 10:09 PM
6.1.7601.17567 2.74 MB (2,871,808 bytes)
4/18/2015 5:52 P
M
taskeng.exe
c:\windows\system32\taskeng.exe 1968
8
200
1380
5/30/2015 10:09 PM
6.1.7601.17514 453.50 KB (464,384 bytes)
4/15/201
5 12:28 PM
driverupdate.exe
c:\program files (x86)\driverupdate\driverupdate.exe
2032
8
200
1380
5/30/2015 10:09 PM
2.3.1.0 24.96 MB (26,167
,576 bytes)
4/2/2015 9:07 AM
symcpcculaunchsvc.exe c:\program files (x86)\norton pc checkup\engine\2.0.3.19
8\symcpcculaunchsvc.exe 1504
8
200
1380
5/30/2015 10:09 PM
1.0.0.137
101.36 KB (103,792 bytes)
4/15/2015 3:04 PM
ccsvchst.exe
c:\program files (x86)\norton pc checkup\engine\2.0.3.198\ccsvch
st.exe 1060
8
200
1380
5/30/2015 10:09 PM
109.0.0.107
123.43 KB (126,392 bytes)
4/15/2015 3:04 PM
psiservice_2.exe
c:\program files (x86)\common files\protexis\license ser
vice\psiservice_2.exe 2068
8
200
1380
5/30/2015 10:09 PM
2.0.1.124
181.28 KB (185,632 bytes)
7/24/2007 2:15 PM
slimservicefactory.exe c:\program files\slimservice\slimservicefactory.exe
2092
8
200
1380
5/30/2015 10:09 PM
1.1.0.0 238.77 KB (244,5
04 bytes)
5/8/2015 12:21 PM
toddsrv.exe
c:\windows\system32\toddsrv.exe 2256
8
200
1380
5/30/2015 10:09 PM
1.0.0.7 137.34 KB (140,632 bytes)
7/22/2010 8:51 P
M
toscosrv.exe
c:\program files\toshiba\power saver\toscosrv.exe
2284
8
200
1380
5/30/2015 10:09 PM
1.0.0.4 477.84 KB (489,312 bytes
)
11/6/2009 12:05 AM
tecoservice.exe c:\program files\toshiba\teco\tecoservice.exe 2368
8
200
1380
5/30/2015 10:09 PM
1.1.9.0 252.86 KB (258,928 bytes)
4/6/2010 5:53 PM
searchindexer.exe
c:\windows\system32\searchindexer.exe 2412
8
200
1380
5/30/2015 10:09 PM
7.0.7601.17610 578.00 KB (591,872 bytes
)
4/17/2015 9:53 AM
slimcleanerplus.exe
c:\program files\slimcleaner plus\slimcleanerplus.exe
2748
8
200
1380
5/30/2015 10:09 PM
1.4.0.0 24.95 MB (26,166
,552 bytes)
5/8/2015 12:21 PM
ccsvchst.exe
c:\program files (x86)\norton pc checkup\engine\2.0.3.198\ccsvch
st.exe 2900
8
200
1380
5/30/2015 10:09 PM
109.0.0.107
123.43 KB (126,392 bytes)
4/15/2015 3:04 PM
ccsvchst.exe
c:\program files (x86)\norton internet security\engine\18.7.2.3\
ccsvchst.exe
3000
8
1024
10240 5/30/2015 10:09 PM
10.1.1.1
6
126.96 KB (130,008 bytes)
4/29/2015 2:18 PM
slimservice.exe c:\program files\slimservice\slimservice.exe
3440
8
200
1380
5/30/2015 10:09 PM
1.2.0.0 4.45 MB (4,669,208 bytes)
5/8/2015 12:21 PM
mom.exe c:\program files (x86)\ati technologies\ati.ace\core-static\mom.exe
3500
8
200
1380
5/30/2015 10:09 PM
2.0.0.0 292.00 KB (299,0
08 bytes)
1/25/2012 2:32 PM
svchost.exe
c:\windows\system32\svchost.exe 3720
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
svchost.exe
c:\windows\system32\svchost.exe 3920
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
ccc.exe c:\program files (x86)\ati technologies\ati.ace\core-static\ccc.exe
4076
8
200
1380
5/30/2015 10:09 PM
3.5.0.0 292.00 KB (299,0
08 bytes)
1/25/2012 2:32 PM
wmpnetwk.exe
c:\program files\windows media player\wmpnetwk.exe
3124
8
200
1380
5/30/2015 10:09 PM
12.0.7601.17514 1.45 MB (1,525,2
48 bytes)
4/15/2015 12:28 PM
trustedinstaller.exe
c:\windows\servicing\trustedinstaller.exe
4532
8
200
1380
5/30/2015 10:10 PM
6.1.7601.17514 189.50 KB (194,0
48 bytes)
4/15/2015 12:28 PM
presentationfontcache.exe
c:\windows\microsoft.net\framework64\v3.0\wpf\pr
esentationfontcache.exe 4960
8
200
1380
5/30/2015 10:11 PM
3.0.6920.5011 41.85 KB (42,856 bytes) 4/15/2015 12:29 PM
iviregmgr.exe c:\program files (x86)\common files\intervideo\regmgr\iviregmgr.
exe
3648
8
200
1380
5/30/2015 10:11 PM
1.0.4.0 109.52 K
B (112,152 bytes)
1/4/2007 9:48 PM
svchost.exe
c:\windows\system32\svchost.exe 4432
8
200
1380
5/30/2015 10:11 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
audiodg.exe
Not Available 5060
8
Not Available Not Available
5/31/2015 8:53 AM
Not Available Not Available Not Available
bfggameservices.exe
c:\program files (x86)\bfgclient\bfggameservices.exe
3732
8
200
1380
5/31/2015 8:53 AM
2.0.0.8 239.81 KB (245,5
68 bytes)
9/28/2010 1:32 PM
hiddenexpedition_thecrownofsolomonce.exe
c:\program files (x86)\hidden ex
pedition - the crown of solomon collectors edition\hiddenexpedition_thecrownofso
lomonce.exe
3540
8
200
1380
5/31/2015 8:53 AM
Not Avai
lable 4.51 MB (4,729,120 bytes)
9/19/2014 12:50 PM
hiddenexpedition_thecrownofsolomonce.exe
c:\program files (x86)\hidden ex
pedition - the crown of solomon collectors edition\hiddenexpedition_thecrownofso
lomonce.exe
4540
8
200
1380
5/31/2015 8:53 AM
Not Avai
lable 4.51 MB (4,729,120 bytes)
9/19/2014 12:50 PM
iexplore.exe
c:\program files\internet explorer\iexplore.exe 4324
8
200
1380
5/31/2015 7:30 PM
11.0.9600.17801 794.70 KB (813,776 bytes
)
5/13/2015 3:43 AM
iexplore.exe
c:\program files (x86)\internet explorer\iexplore.exe 1104
8
200
1380
5/31/2015 7:30 PM
11.0.9600.17801 796.20 KB (815,3
04 bytes)
5/13/2015 3:43 AM
msinfo32.exe
c:\windows\system32\msinfo32.exe
4952
8
200
1380
5/31/2015 7:36 PM
6.1.7601.17514 370.00 KB (378,880 bytes)
4/15/2015 12:28 PM
wmiprvse.exe
c:\windows\system32\wbem\wmiprvse.exe 4904
8
200
1380
5/31/2015 7:36 PM
6.1.7601.17514 364.00 KB (372,736 bytes)
4/15/2015 12:28 PM
wmiprvse.exe
c:\windows\system32\wbem\wmiprvse.exe 4572
8
200
1380
5/31/2015 7:39 PM
6.1.7601.17514 364.00 KB (372,736 bytes)
4/15/2015 12:28 PM
[Loaded Modules]
Name
Version Size
File Date
Manufacturer
Path
csrss 6.1.7600.16385 7.50 KB (7,680 bytes) 7/13/2009 7:19 PM
Microsof
t Corporation c:\windows\system32\csrss.exe
ntdll 6.1.7601.18839 1.65 MB (1,728,960 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\ntdll.dll
csrsrv 6.1.7601.18839 42.50 KB (43,520 bytes) 5/13/2015 3:39 AM
Microsof
t Corporation c:\windows\system32\csrsrv.dll
basesrv 6.1.7600.16385 51.50 KB (52,736 bytes) 7/13/2009 7:18 PM
Microsof
t Corporation c:\windows\system32\basesrv.dll
winsrv 6.1.7601.18839 210.00 KB (215,040 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\winsrv.dll
user32 6.1.7601.17514 984.50 KB (1,008,128 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\user32.dll
gdi32 6.1.7601.18778 395.00 KB (404,480 bytes)
4/17/2015 9:52 AM
Microsoft Corporation c:\windows\system32\gdi32.dll
kernel32
6.1.7601.18839 1.11 MB (1,162,752 bytes)
5/13/2015 3:39 A
M
Microsoft Corporation c:\windows\system32\kernel32.dll
kernelbase
6.1.7601.18839 414.50 KB (424,448 bytes)
5/13/2015 3:39 A
M
Microsoft Corporation c:\windows\system32\kernelbase.dll
lpk
6.1.7601.18768 41.00 KB (41,984 bytes) 4/17/2015 9:56 AM
Microsof
t Corporation c:\windows\system32\lpk.dll
usp10 1.626.7601.18454
782.50 KB (801,280 bytes)
4/15/2015 2:14 P
M
Microsoft Corporation c:\windows\system32\usp10.dll
msvcrt 7.0.7601.17744 620.00 KB (634,880 bytes)
4/15/2015 3:21 PM
Microsoft Corporation c:\windows\system32\msvcrt.dll
sxssrv 6.1.7600.16385 31.00 KB (31,744 bytes) 7/13/2009 7:26 PM
Microsof
t Corporation c:\windows\system32\sxssrv.dll
sxs
6.1.7601.17514 569.00 KB (582,656 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\sxs.dll
rpcrt4 6.1.7601.18532 1.16 MB (1,216,000 bytes)
4/15/2015 2:33 PM
Microsoft Corporation c:\windows\system32\rpcrt4.dll
cryptbase
6.1.7600.16385 43.00 KB (44,032 bytes) 7/13/2009 7:20 PM
Microsoft Corporation c:\windows\system32\cryptbase.dll
advapi32
6.1.7601.18839 858.50 KB (879,104 bytes)
5/13/2015 3:39 A
M
Microsoft Corporation c:\windows\system32\advapi32.dll
sechost 6.1.7601.18839 111.00 KB (113,664 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\sechost.dll
wininit 6.1.7600.16385 126.00 KB (129,024 bytes)
7/13/2009 7:52 PM
Microsoft Corporation c:\windows\system32\wininit.exe
profapi 6.1.7600.16385 43.00 KB (44,032 bytes) 7/13/2009 7:20 PM
Microsof
t Corporation c:\windows\system32\profapi.dll
imm32 6.1.7600.16385 163.50 KB (167,424 bytes)
7/13/2009 7:38 PM
Microsoft Corporation c:\windows\system32\imm32.dll
msctf 6.1.7601.18731 1.02 MB (1,067,520 bytes)
4/17/2015 9:54 AM
Microsoft Corporation c:\windows\system32\msctf.dll
rpcrtremote
6.1.7601.17514 64.00 KB (65,536 bytes) 4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\rpcrtremote.dll
apphelp 6.1.7601.18777 334.00 KB (342,016 bytes)
5/13/2015 3:38 AM
Microsoft Corporation c:\windows\system32\apphelp.dll
ws2_32 6.1.7601.17514 291.00 KB (297,984 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\ws2_32.dll
nsi
6.1.7600.16385 13.50 KB (13,824 bytes) 7/13/2009 7:21 PM
Microsof
t Corporation c:\windows\system32\nsi.dll
mswsock 6.1.7601.18254 319.50 KB (327,168 bytes)
4/15/2015 1:30 PM
Microsoft Corporation c:\windows\system32\mswsock.dll
wshtcpip
6.1.7600.16385 13.00 KB (13,312 bytes) 7/13/2009 7:21 PM
Microsoft Corporation c:\windows\system32\wshtcpip.dll
wship6 6.1.7600.16385 13.50 KB (13,824 bytes) 7/13/2009 7:21 PM
Microsof
t Corporation c:\windows\system32\wship6.dll
secur32 6.1.7601.18839 27.50 KB (28,160 bytes) 5/13/2015 3:39 AM
Microsof
t Corporation c:\windows\system32\secur32.dll
sspicli 6.1.7601.18839 133.00 KB (136,192 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\sspicli.dll
credssp 6.1.7601.18839 21.50 KB (22,016 bytes) 5/13/2015 3:39 AM
Microsof
t Corporation c:\windows\system32\credssp.dll
services
6.1.7601.18829 321.00 KB (328,704 bytes)
5/13/2015 3:42 A
M
Microsoft Corporation c:\windows\system32\services.exe
scext 6.1.7600.16385 87.00 KB (89,088 bytes) 7/13/2009 7:31 PM
Microsof
t Corporation c:\windows\system32\scext.dll
scesrv 6.1.7601.18686 397.00 KB (406,528 bytes)
4/17/2015 9:53 AM
Microsoft Corporation c:\windows\system32\scesrv.dll
srvcli 6.1.7601.17514 125.00 KB (128,000 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\srvcli.dll
authz 6.1.7600.16385 173.50 KB (177,664 bytes)
7/13/2009 7:50 PM
Microsoft Corporation c:\windows\system32\authz.dll
ubpm
6.1.7601.18741 210.50 KB (215,552 bytes)
4/17/2015 9:53 AM
Microsoft Corporation c:\windows\system32\ubpm.dll
wtsapi32
6.1.7600.16385 53.00 KB (54,272 bytes) 7/13/2009 8:17 PM
Microsoft Corporation c:\windows\system32\wtsapi32.dll
winsta 6.1.7601.18540 230.00 KB (235,520 bytes)
4/15/2015 3:35 PM
Microsoft Corporation c:\windows\system32\winsta.dll
lsass 6.1.7601.18839 30.50 KB (31,232 bytes) 5/13/2015 3:39 AM
Microsof
t Corporation c:\windows\system32\lsass.exe
sspisrv 6.1.7601.18839 28.50 KB (29,184 bytes) 5/13/2015 3:39 AM
Microsof
t Corporation c:\windows\system32\sspisrv.dll
lsasrv 6.1.7601.18839 1.39 MB (1,461,760 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\lsasrv.dll
samsrv 6.1.7601.17514 741.00 KB (758,784 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\samsrv.dll
cryptdll
6.1.7600.16385 64.50 KB (66,048 bytes) 7/13/2009 7:49 PM
Microsoft Corporation c:\windows\system32\cryptdll.dll
msasn1 6.1.7601.17514 45.50 KB (46,592 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\msasn1.dll
wevtapi 6.1.7600.16385 418.00 KB (428,032 bytes)
7/13/2009 7:46 PM
Microsoft Corporation c:\windows\system32\wevtapi.dll
cngaudit
6.1.7600.16385 18.50 KB (18,944 bytes) 7/13/2009 7:49 PM
Microsoft Corporation c:\windows\system32\cngaudit.dll
ncrypt 6.1.7601.18839 302.50 KB (309,760 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\ncrypt.dll
bcrypt 6.1.7600.16385 121.00 KB (123,904 bytes)
7/13/2009 7:49 PM
Microsoft Corporation c:\windows\system32\bcrypt.dll
msprivs 6.1.7600.16385 2.00 KB (2,048 bytes) 7/13/2009 7:50 PM
Microsof
t Corporation c:\windows\system32\msprivs.dll
netjoin 6.1.7601.17514 184.50 KB (188,928 bytes)
4/15/2015 12:29 PM
Microsoft Corporation c:\windows\system32\netjoin.dll
negoexts
6.1.7600.16385 114.50 KB (117,248 bytes)
7/13/2009 7:50 P
M
Microsoft Corporation c:\windows\system32\negoexts.dll
kerberos
6.1.7601.18839 711.00 KB (728,064 bytes)
5/13/2015 3:39 A
M
Microsoft Corporation c:\windows\system32\kerberos.dll
cryptsp 6.1.7601.18741 80.50 KB (82,432 bytes) 4/17/2015 9:57 AM
Microsof
t Corporation c:\windows\system32\cryptsp.dll
msv1_0 6.1.7601.18839 307.50 KB (314,880 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\msv1_0.dll
netlogon
6.1.7601.17514 679.50 KB (695,808 bytes)
4/15/2015 12:29
PM
Microsoft Corporation c:\windows\system32\netlogon.dll
dnsapi 6.1.7601.17570 349.50 KB (357,888 bytes)
4/15/2015 2:50 PM
Microsoft Corporation c:\windows\system32\dnsapi.dll
logoncli
6.1.7601.17514 182.50 KB (186,880 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\logoncli.dll
schannel
6.1.7601.18843 334.00 KB (342,016 bytes)
5/13/2015 3:42 A
M
Microsoft Corporation c:\windows\system32\schannel.dll
crypt32 6.1.7601.18741 1.41 MB (1,480,192 bytes)
4/17/2015 9:57 AM
Microsoft Corporation c:\windows\system32\crypt32.dll
wdigest 6.1.7601.18839 206.00 KB (210,944 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\wdigest.dll
rsaenh 6.1.7600.16385 274.66 KB (281,256 bytes)
7/13/2009 7:53 PM
Microsoft Corporation c:\windows\system32\rsaenh.dll
tspkg 6.1.7601.18839 84.50 KB (86,528 bytes) 5/13/2015 3:39 AM
Microsof
t Corporation c:\windows\system32\tspkg.dll
pku2u 6.1.7601.18658 235.50 KB (241,152 bytes)
4/15/2015 3:56 PM
Microsoft Corporation c:\windows\system32\pku2u.dll
bcryptprimitives
6.1.7601.17514 291.12 KB (298,104 bytes)
4/15/201
5 12:28 PM
Microsoft Corporation c:\windows\system32\bcryptprimitives.dll
efslsaext
6.1.7600.16385 55.50 KB (56,832 bytes) 7/13/2009 7:50 PM
Microsoft Corporation c:\windows\system32\efslsaext.dll
scecli 6.1.7601.17514 227.50 KB (232,960 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\scecli.dll
keyiso 6.1.7600.16385 28.50 KB (29,184 bytes) 7/13/2009 7:49 PM
Microsof
t Corporation c:\windows\system32\keyiso.dll
iphlpapi
6.1.7601.17514 142.50 KB (145,920 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\iphlpapi.dll
winnsi 6.1.7600.16385 25.50 KB (26,112 bytes) 7/13/2009 7:21 PM
Microsof
t Corporation c:\windows\system32\winnsi.dll
netutils
6.1.7601.17514 28.50 KB (29,184 bytes) 4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\netutils.dll
wkscli 6.1.7601.17514 70.00 KB (71,680 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\wkscli.dll
userenv 6.1.7601.17514 106.50 KB (109,056 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\userenv.dll
dssenh 6.1.7600.16385 186.41 KB (190,880 bytes)
7/13/2009 7:53 PM
Microsoft Corporation c:\windows\system32\dssenh.dll
gpapi 6.1.7600.16385 94.50 KB (96,768 bytes) 7/13/2009 7:54 PM
Microsof
t Corporation c:\windows\system32\gpapi.dll
cryptnet
6.1.7601.18741 137.00 KB (140,288 bytes)
4/17/2015 9:57 A
M
Microsoft Corporation c:\windows\system32\cryptnet.dll
wldap32 6.1.7601.17514 305.50 KB (312,832 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\wldap32.dll
lsm
6.1.7601.17514 335.00 KB (343,040 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\lsm.exe
sysntfy 6.1.7600.16385 22.50 KB (23,040 bytes) 7/13/2009 7:52 PM
Microsof
t Corporation c:\windows\system32\sysntfy.dll
wmsgapi 6.1.7600.16385 14.50 KB (14,848 bytes) 7/13/2009 7:52 PM
Microsof
t Corporation c:\windows\system32\wmsgapi.dll
pcwum 6.1.7600.16385 36.00 KB (36,864 bytes) 7/13/2009 7:19 PM
Microsof
t Corporation c:\windows\system32\pcwum.dll
svchost 6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 PM
Microsof
t Corporation c:\windows\system32\svchost.exe
umpnpmgr
6.1.7601.17621 395.00 KB (404,480 bytes)
4/17/2015 9:53 A
M
Microsoft Corporation c:\windows\system32\umpnpmgr.dll
spinf 6.1.7600.16385 103.00 KB (105,472 bytes)
7/13/2009 7:26 PM
Microsoft Corporation c:\windows\system32\spinf.dll
devrtl 6.1.7600.16385 57.00 KB (58,368 bytes) 7/13/2009 7:26 PM
Microsof
t Corporation c:\windows\system32\devrtl.dll
umpo
6.1.7600.16385 160.00 KB (163,840 bytes)
7/13/2009 7:27 PM
Microsoft Corporation c:\windows\system32\umpo.dll
setupapi
6.1.7601.17514 1.81 MB (1,900,544 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\setupapi.dll
cfgmgr32
6.1.7601.17514 203.00 KB (207,872 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\cfgmgr32.dll
oleaut32
6.1.7601.18679 841.50 KB (861,696 bytes)
4/17/2015 9:52 A
M
Microsoft Corporation c:\windows\system32\oleaut32.dll
ole32 6.1.7601.17514 1.99 MB (2,086,912 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\ole32.dll
devobj 6.1.7600.16385 91.00 KB (93,184 bytes) 7/13/2009 7:26 PM
Microsof
t Corporation c:\windows\system32\devobj.dll
rpcss 6.1.7601.17514 500.00 KB (512,000 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\rpcss.dll
clbcatq 2001.12.8530.16385
593.50 KB (607,744 bytes)
7/13/2009 8:00 P
M
Microsoft Corporation c:\windows\system32\clbcatq.dll
ntmarta 6.1.7600.16385 158.50 KB (162,304 bytes)
7/13/2009 7:50 PM
Microsoft Corporation c:\windows\system32\ntmarta.dll
wmidcprv
6.1.7601.17514 187.00 KB (191,488 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\wbem\wmidcprv.dll
fastprox
6.1.7600.16385 888.00 KB (909,312 bytes)
7/13/2009 7:47 P
M
Microsoft Corporation c:\windows\system32\wbem\fastprox.dll
wbemcomn
6.1.7601.17514 517.00 KB (529,408 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\wbemcomn.dll
ntdsapi 6.1.7600.16385 148.50 KB (152,064 bytes)
7/13/2009 7:54 PM
Microsoft Corporation c:\windows\system32\ntdsapi.dll
wbemprox
6.1.7600.16385 42.50 KB (43,520 bytes) 7/13/2009 7:46 PM
Microsoft Corporation c:\windows\system32\wbem\wbemprox.dll
wbemsvc 6.1.7600.16385 63.00 KB (64,512 bytes) 7/13/2009 7:46 PM
Microsof
t Corporation c:\windows\system32\wbem\wbemsvc.dll
wmiutils
6.1.7600.16385 134.00 KB (137,216 bytes)
7/13/2009 7:47 P
M
Microsoft Corporation c:\windows\system32\wbem\wmiutils.dll
wintrust
6.1.7601.18741 224.00 KB (229,376 bytes)
4/17/2015 9:57 A
M
Microsoft Corporation c:\windows\system32\wintrust.dll
winlogon
6.1.7601.18540 444.50 KB (455,168 bytes)
4/15/2015 3:35 P
M
Microsoft Corporation c:\windows\system32\winlogon.exe
uxinit 6.1.7600.16385 24.50 KB (25,088 bytes) 7/13/2009 7:54 PM
Microsof
t Corporation c:\windows\system32\uxinit.dll
uxtheme 6.1.7600.16385 324.50 KB (332,288 bytes)
7/13/2009 7:55 PM
Microsoft Corporation c:\windows\system32\uxtheme.dll
windowscodecs 6.2.9200.17251 1.36 MB (1,424,896 bytes)
4/17/2015 9:54 A
M
Microsoft Corporation c:\windows\system32\windowscodecs.dll
slc
6.1.7600.16385 30.00 KB (30,720 bytes) 7/13/2009 7:51 PM
Microsof
t Corporation c:\windows\system32\slc.dll
mpr
6.1.7600.16385 79.00 KB (80,896 bytes) 7/13/2009 8:10 PM
Microsof
t Corporation c:\windows\system32\mpr.dll
rpcepmap
6.1.7600.16385 65.50 KB (67,072 bytes) 7/13/2009 7:21 PM
Microsoft Corporation c:\windows\system32\rpcepmap.dll
firewallapi
6.1.7600.16385 730.50 KB (748,032 bytes)
7/13/2009 8:08 P
M
Microsoft Corporation c:\windows\system32\firewallapi.dll
version 6.1.7600.16385 28.50 KB (29,184 bytes) 7/13/2009 7:57 PM
Microsof
t Corporation c:\windows\system32\version.dll
fwpuclnt
6.1.7601.18283 316.50 KB (324,096 bytes)
4/15/2015 2:08 P
M
Microsoft Corporation c:\windows\system32\fwpuclnt.dll
msi
5.0.7601.18637 3.09 MB (3,241,984 bytes)
4/17/2015 9:55 AM
Microsoft Corporation c:\windows\system32\msi.dll
shell32 6.1.7601.18762 13.52 MB (14,177,280 bytes)
4/17/2015 9:54 AM
Microsoft Corporation c:\windows\system32\shell32.dll
shlwapi 6.1.7601.17514 438.00 KB (448,512 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\shlwapi.dll
msiltcfg
5.0.7600.16385 19.50 KB (19,968 bytes) 7/13/2009 7:48 PM
Microsoft Corporation c:\windows\system32\msiltcfg.dll
atiesrxx
6.14.11.1122
232.50 KB (238,080 bytes)
4/29/2013 11:52
PM
AMD
c:\windows\system32\atiesrxx.exe
psapi 6.1.7600.16385 9.00 KB (9,216 bytes) 7/13/2009 7:26 PM
Microsof
t Corporation c:\windows\system32\psapi.dll
powrprof
6.1.7600.16385 163.50 KB (167,424 bytes)
7/13/2009 7:27 P
M
Microsoft Corporation c:\windows\system32\powrprof.dll
wevtsvc 6.1.7601.17514 1.57 MB (1,646,080 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\wevtsvc.dll
audiosrv
6.1.7601.18741 665.00 KB (680,960 bytes)
4/17/2015 9:57 A
M
Microsoft Corporation c:\windows\system32\audiosrv.dll
mmdevapi
6.1.7600.16385 277.50 KB (284,160 bytes)
7/13/2009 8:18 P
M
Microsoft Corporation c:\windows\system32\mmdevapi.dll
propsys 7.0.7601.17514 1.16 MB (1,212,416 bytes)
4/15/2015 12:28 PM
rtkapo64
11.0.6000.144 1.58 MB (1,660,448 bytes)
4/15/2015 2:40 P
M
Realtek Semiconductor Corp.
c:\windows\system32\rtkapo64.dll
rteel64a
6.1.6001.33
96.70 KB (99,016 bytes) 4/15/2015 2:40 PM
Dolby Laboratories, Inc.
c:\windows\system32\rteel64a.dll
rteed64a
6.1.6001.33
197.20 KB (201,928 bytes)
4/15/2015 2:40 P
M
Dolby Laboratories, Inc.
c:\windows\system32\rteed64a.dll
uxsms 6.1.7600.16385 38.00 KB (38,912 bytes) 7/13/2009 7:37 PM
Microsof
t Corporation c:\windows\system32\uxsms.dll
wudfsvc 6.2.9200.16384 83.00 KB (84,992 bytes) 4/17/2015 10:11 AM
Microsof
t Corporation c:\windows\system32\wudfsvc.dll
wudfplatform
6.2.9200.16384 189.50 KB (194,048 bytes)
4/17/2015 10:11
AM
Microsoft Corporation c:\windows\system32\wudfplatform.dll
wlansvc 6.1.7600.16385 866.00 KB (886,784 bytes)
7/13/2009 8:07 PM
Microsoft Corporation c:\windows\system32\wlansvc.dll
dsrole 6.1.7600.16385 32.00 KB (32,768 bytes) 7/13/2009 7:50 PM
Microsof
t Corporation c:\windows\system32\dsrole.dll
wlanmsm 6.1.7601.17514 405.00 KB (414,720 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\wlanmsm.dll
wlansec 6.1.7600.16385 437.50 KB (448,000 bytes)
7/13/2009 8:07 PM
Microsoft Corporation c:\windows\system32\wlansec.dll
onex
6.1.7601.17514 230.00 KB (235,520 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\onex.dll
eappprxy
6.1.7600.16385 63.00 KB (64,512 bytes) 7/13/2009 8:12 PM
Microsoft Corporation c:\windows\system32\eappprxy.dll
eappcfg 6.1.7600.16385 257.50 KB (263,680 bytes)
7/13/2009 8:12 PM
Microsoft Corporation c:\windows\system32\eappcfg.dll
wlgpclnt
6.1.7600.16385 106.00 KB (108,544 bytes)
7/13/2009 8:07 P
M
Microsoft Corporation c:\windows\system32\wlgpclnt.dll
l2gpstore
6.1.7600.16385 69.50 KB (71,168 bytes) 7/13/2009 8:07 PM
Microsoft Corporation c:\windows\system32\l2gpstore.dll
wlanutil
6.1.7600.16385 10.50 KB (10,752 bytes) 7/13/2009 8:07 PM
Microsoft Corporation c:\windows\system32\wlanutil.dll
winscard
6.1.7601.17514 212.50 KB (217,600 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\winscard.dll
netcfgx 6.1.7601.17514 507.50 KB (519,680 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\netcfgx.dll
pcasvc 6.1.7601.18741 184.00 KB (188,416 bytes)
4/17/2015 9:57 AM
Microsoft Corporation c:\windows\system32\pcasvc.dll
aepic 10.0.9896.0
187.50 KB (192,000 bytes)
4/17/2015 9:53 AM
Microsoft Corporation c:\windows\system32\aepic.dll
sfc_os 6.1.7600.16385 44.00 KB (45,056 bytes) 7/13/2009 7:26 PM
Microsof
t Corporation c:\windows\system32\sfc_os.dll
sfc
6.1.7600.16385 3.00 KB (3,072 bytes) 7/13/2009 7:25 PM
Microsof
t Corporation c:\windows\system32\sfc.dll
sysmain 6.1.7601.17514 1.66 MB (1,743,360 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\sysmain.dll
trkwks 6.1.7600.16385 117.00 KB (119,808 bytes)
7/13/2009 7:59 PM
Microsoft Corporation c:\windows\system32\trkwks.dll
portabledeviceapi
6.1.7601.17514 740.50 KB (758,272 bytes)
4/15/201
5 12:28 PM
Microsoft Corporation c:\windows\system32\portabledeviceapi.dl
l
portabledeviceconnectapi
6.1.7600.16385 76.00 KB (77,824 bytes) 7/13/200
9 8:21 PM
Microsoft Corporation c:\windows\system32\portabledeviceconnec
tapi.dll
netman 6.1.7600.16385 352.00 KB (360,448 bytes)
7/13/2009 8:08 PM
Microsoft Corporation c:\windows\system32\netman.dll
netshell
6.1.7601.17514 2.53 MB (2,652,160 bytes)
4/15/2015 12:29
PM
Microsoft Corporation c:\windows\system32\netshell.dll
nlaapi 6.1.7601.17964 69.00 KB (70,656 bytes) 4/15/2015 4:07 PM
Microsof
t Corporation c:\windows\system32\nlaapi.dll
rasadhlp
6.1.7600.16385 16.00 KB (16,384 bytes) 7/13/2009 8:10 PM
Microsoft Corporation c:\windows\system32\rasadhlp.dll
powertracker
6.1.7601.18713 29.00 KB (29,696 bytes) 4/17/2015 10:00 AM
Microsoft Corporation c:\windows\system32\powertracker.dll
fdphost 6.1.7600.16385 16.00 KB (16,384 bytes) 7/13/2009 7:35 PM
Microsof
t Corporation c:\windows\system32\fdphost.dll
fdwsd 6.1.7600.16385 129.00 KB (132,096 bytes)
7/13/2009 7:35 PM
Microsoft Corporation c:\windows\system32\fdwsd.dll
mlang 6.1.7600.16385 221.50 KB (226,816 bytes)
7/13/2009 7:55 PM
Microsoft Corporation c:\windows\system32\mlang.dll
wsdapi 6.1.7601.17514 564.00 KB (577,536 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\wsdapi.dll
webservices
6.1.7601.17514 1.10 MB (1,158,656 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\webservices.dll
fdssdp 6.1.7600.16385 91.50 KB (93,696 bytes) 7/13/2009 7:35 PM
Microsof
t Corporation c:\windows\system32\fdssdp.dll
ssdpapi 6.1.7600.16385 50.00 KB (51,200 bytes) 7/13/2009 8:10 PM
Microsof
t Corporation c:\windows\system32\ssdpapi.dll
w32time 6.1.7600.16385 373.00 KB (381,952 bytes)
7/13/2009 7:49 PM
Microsoft Corporation c:\windows\system32\w32time.dll
profsvc 6.1.7601.18706 205.50 KB (210,432 bytes)
4/15/2015 4:11 PM
Microsoft Corporation c:\windows\system32\profsvc.dll
themeservice
6.1.7600.16385 43.50 KB (44,544 bytes) 7/13/2009 7:54 PM
Microsoft Corporation c:\windows\system32\themeservice.dll
sens
6.1.7600.16385 63.00 KB (64,512 bytes) 7/13/2009 7:34 PM
Microsof
t Corporation c:\windows\system32\sens.dll
eapsvc 6.1.7600.16385 108.50 KB (111,104 bytes)
7/13/2009 8:12 PM
Microsoft Corporation c:\windows\system32\eapsvc.dll
eapphost
6.1.7601.17514 296.50 KB (303,616 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\eapphost.dll
umb
6.1.7601.17514 58.50 KB (59,904 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\umb.dll
shsvcs 6.1.7601.17514 362.00 KB (370,688 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\shsvcs.dll
schedsvc
6.1.7601.17514 1.06 MB (1,110,016 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\schedsvc.dll
ktmw32 6.1.7600.16385 22.50 KB (23,040 bytes) 7/13/2009 7:19 PM
Microsof
t Corporation c:\windows\system32\ktmw32.dll
taskcomp
6.1.7601.17514 462.50 KB (473,600 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\taskcomp.dll
ikeext 6.1.7601.18283 839.50 KB (859,648 bytes)
4/15/2015 2:08 PM
Microsoft Corporation c:\windows\system32\ikeext.dll
fveapi 6.1.7601.17514 337.50 KB (345,600 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\fveapi.dll
tbs
6.1.7600.16385 19.50 KB (19,968 bytes) 7/13/2009 7:21 PM
Microsof
t Corporation c:\windows\system32\tbs.dll
fvecerts
6.1.7600.16385 20.00 KB (20,480 bytes) 7/13/2009 7:21 PM
Microsoft Corporation c:\windows\system32\fvecerts.dll
wiarpc 6.1.7600.16385 42.50 KB (43,520 bytes) 7/13/2009 8:35 PM
Microsof
t Corporation c:\windows\system32\wiarpc.dll
tschannel
6.1.7600.16385 17.00 KB (17,408 bytes) 7/13/2009 7:46 PM
Microsoft Corporation c:\windows\system32\tschannel.dll
wmisvc 6.1.7600.16385 237.00 KB (242,688 bytes)
7/13/2009 7:47 PM
Microsoft Corporation c:\windows\system32\wbem\wmisvc.dll
iphlpsvc
6.1.7601.17964 556.00 KB (569,344 bytes)
4/17/2015 9:55 A
M
Microsoft Corporation c:\windows\system32\iphlpsvc.dll
sqmapi 6.1.7601.17514 239.00 KB (244,736 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\sqmapi.dll
wdscore 6.1.7600.16385 265.00 KB (271,360 bytes)
7/13/2009 7:28 PM
Microsoft Corporation c:\windows\system32\wdscore.dll
Fuel.Service
1.0.0.0 353.50 KB (361,984 bytes)
4/29/2013 11:25 PM
Advanced Micro Devices, Inc.
c:\program files\ati technologies\ati.ace\fuel\f
uel.service.exe
msvcp100
10.0.40219.1
593.83 KB (608,080 bytes)
2/19/2011 9:51 P
M
Microsoft Corporation c:\windows\system32\msvcp100.dll
msvcr100
10.0.40219.1
809.83 KB (829,264 bytes)
2/18/2011 11:52
PM
Microsoft Corporation c:\windows\system32\msvcr100.dll
Fuel.Container.Wlan
1.0.0.0 72.00 KB (73,728 bytes) 4/29/2013 11:25 PM
Not Available c:\program files\ati technologies\ati.ace\fuel\fuel.container.wl
an.dll
wlanapi 6.1.7600.16385 111.50 KB (114,176 bytes)
7/13/2009 8:07 PM
Microsoft Corporation c:\windows\system32\wlanapi.dll
diagtrack
10.0.10033.0
1.20 MB (1,254,400 bytes)
5/13/2015 3:39 A
M
Microsoft Corporation c:\windows\system32\diagtrack.dll
xaudio64
1.0.23.0
426.50 KB (436,736 bytes)
4/29/2009 2:21 P
M
Conexant Systems, Inc. c:\windows\syswow64\xaudio64.dll
ccsvchst
10.1.1.16
126.96 KB (130,008 bytes)
4/29/2015 2:18 P
M
Symantec Corporation
c:\program files (x86)\norton internet security\
engine\18.7.2.3\ccsvchst.exe
wow64 6.1.7601.18839 238.00 KB (243,712 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\wow64.dll
wow64win
6.1.7601.18839 354.00 KB (362,496 bytes)
5/13/2015 3:39 A
M
Microsoft Corporation c:\windows\system32\wow64win.dll
wow64cpu
6.1.7601.18839 13.00 KB (13,312 bytes) 5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\wow64cpu.dll
taskhost
6.1.7601.18010 67.00 KB (68,608 bytes) 4/15/2015 1:28 PM
Microsoft Corporation c:\windows\system32\taskhost.exe
playsndsrv
6.1.7600.16385 83.00 KB (84,992 bytes) 7/13/2009 8:18 PM
Microsoft Corporation c:\windows\system32\playsndsrv.dll
winmm 6.1.7600.16385 212.50 KB (217,600 bytes)
7/13/2009 8:18 PM
Microsoft Corporation c:\windows\system32\winmm.dll
msctfmonitor
6.1.7600.16385 27.50 KB (28,160 bytes) 7/13/2009 7:39 PM
Microsoft Corporation c:\windows\system32\msctfmonitor.dll
msutb 6.1.7600.16385 230.00 KB (235,520 bytes)
7/13/2009 7:39 PM
Microsoft Corporation c:\windows\system32\msutb.dll
hotstartuseragent
6.1.7601.17514 26.50 KB (27,136 bytes) 4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\hotstartuseragent.dll
wininet 11.0.9600.17801 2.24 MB (2,352,128 bytes)
5/13/2015 3:42 AM
Microsoft Corporation c:\windows\system32\wininet.dll
api-ms-win-downlevel-user32-l1-1-0
6.2.9200.16492 4.00 KB (4,096 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-user32-l1-1-0.dll
api-ms-win-downlevel-version-l1-1-0
6.2.9200.16492 3.00 KB (3,072 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-version-l1-1-0.dll
api-ms-win-downlevel-normaliz-l1-1-0
6.2.9200.16492 2.50 KB (2,560 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-normaliz-l1-1-0.dll
normaliz
6.1.7600.16385 2.50 KB (2,560 bytes) 7/13/2009 7:26 PM
Microsoft Corporation c:\windows\system32\normaliz.dll
iertutil
11.0.9600.17801 2.75 MB (2,885,120 bytes)
5/13/2015 3:43 A
M
Microsoft Corporation c:\windows\system32\iertutil.dll
api-ms-win-downlevel-ole32-l1-1-0
6.2.9200.16492 5.50 KB (5,632 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-ole32-l1-1-0.dll
api-ms-win-downlevel-advapi32-l2-1-0
6.2.9200.16492 3.50 KB (3,584 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-advapi32-l2-1-0.dll
dimsjob 6.1.7600.16385 39.50 KB (40,448 bytes) 7/13/2009 7:53 PM
Microsof
t Corporation c:\windows\system32\dimsjob.dll
TOSHIBA Corporation
c:\program files\toshiba\power saver\toscosrv.exe
tpwrreg 1.0.0.8 117.00 KB (119,808 bytes)
11/6/2009 12:08 AM
TOSHIBA
Corporation
c:\program files\toshiba\power saver\tpwrreg.dll
tpwrfunc
1.0.0.5 120.00 KB (122,880 bytes)
11/6/2009 12:08 AM
TOSHIBA Corporation
c:\program files\toshiba\power saver\tpwrfunc.dll
TecoService
1.1.9.0 252.86 KB (258,928 bytes)
4/6/2010 5:53 PM
TOSHIBA Corporation
c:\program files\toshiba\teco\tecoservice.exe
tecohci 1.1.5.0 86.86 KB (88,944 bytes) 4/6/2010 5:53 PM
TOSHIBA Corporat
ion
c:\program files\toshiba\teco\tecohci.dll
TecoPower
1.1.8.0 565.37 KB (578,936 bytes)
4/6/2010 5:53 PM
TOSHIBA Corporation
c:\program files\toshiba\teco\tecopower.dll
searchindexer 7.0.7601.17610 578.00 KB (591,872 bytes)
4/17/2015 9:53 A
M
Microsoft Corporation c:\windows\system32\searchindexer.exe
tquery 7.0.7601.17610 2.21 MB (2,315,776 bytes)
4/17/2015 9:53 AM
Microsoft Corporation c:\windows\system32\tquery.dll
mssrch 7.0.7601.17610 2.12 MB (2,223,616 bytes)
4/17/2015 9:53 AM
Microsoft Corporation c:\windows\system32\mssrch.dll
msidle 6.1.7600.16385 11.00 KB (11,264 bytes) 7/13/2009 7:55 PM
Microsof
t Corporation c:\windows\system32\msidle.dll
tquery.dll
7.0.7600.16385 190.50 KB (195,072 bytes)
7/14/2009 1:35 A
M
Microsoft Corporation c:\windows\system32\en-us\tquery.dll.mui
naturallanguage6
6.1.7601.17514 1.26 MB (1,326,080 bytes)
4/15/201
5 12:28 PM
Microsoft Corporation c:\windows\system32\naturallanguage6.dll
elscore 6.1.7600.16385 44.50 KB (45,568 bytes) 7/13/2009 7:26 PM
Microsof
t Corporation c:\windows\system32\elscore.dll
elslad 6.1.7600.16385 632.50 KB (647,680 bytes)
7/13/2009 7:26 PM
Microsoft Corporation c:\windows\system32\elslad.dll
nlsdata0009
6.1.7600.16385 5.98 MB (6,270,976 bytes)
7/13/2009 8:31 P
M
Microsoft Corporation c:\windows\system32\nlsdata0009.dll
nlslexicons0009 6.1.7600.16385 2.51 MB (2,628,608 bytes)
7/13/2009 8:33 P
M
Microsoft Corporation c:\windows\system32\nlslexicons0009.dll
SlimCleanerPlus 1.4.0.0 24.95 MB (26,166,552 bytes)
5/8/2015 12:21 PM
SlimWare Utilities, Inc.
c:\program files\slimcleaner plus\slimcleanerplu
s.exe
SlimService
1.2.0.0 4.45 MB (4,669,208 bytes)
5/8/2015 12:21 PM
SlimWare Utilities, Inc.
c:\program files\slimservice\slimservice.exe
MyDefragDll
Not Available 738.27 KB (755,992 bytes)
5/8/2015 12:21 P
M
Not Available c:\program files\slimservice\mydefragdll.dll
msimg32 6.1.7600.16385 8.00 KB (8,192 bytes) 7/13/2009 7:38 PM
Microsof
t Corporation c:\windows\system32\msimg32.dll
wups
7.6.7601.18804 34.50 KB (35,328 bytes) 4/17/2015 9:58 AM
Microsof
t Corporation c:\windows\system32\wups.dll
mom
2.0.0.0 292.00 KB (299,008 bytes)
1/25/2012 2:32 PM
Not Avai
lable c:\program files (x86)\ati technologies\ati.ace\core-static\mom.exe
mscoree 4.0.40305.0
434.33 KB (444,752 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\mscoree.dll
mscoreei
4.0.30319.237 565.33 KB (578,896 bytes)
5/17/2011 10:08
AM
Microsoft Corporation c:\windows\microsoft.net\framework64\v4.0.30319\
mscoreei.dll
mscorwks
2.0.50727.5485 9.53 MB (9,996,432 bytes)
4/15/2015 3:22 P
M
Microsoft Corporation c:\windows\microsoft.net\framework64\v2.0.50727\
mscorwks.dll
msvcr80 8.0.50727.4940 783.83 KB (802,640 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18
e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcr80.dll
mscorlib.ni
2.0.50727.5485 14.86 MB (15,578,112 bytes)
4/21/2015 4:06 A
M
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50727_64\m
scorlib\fe6ac93181b40a571892e14bfb9d65f2\mscorlib.ni.dll
mscorjit
2.0.50727.5467 1.50 MB (1,574,496 bytes)
4/15/2015 2:00 P
M
Microsoft Corporation c:\windows\microsoft.net\framework64\v2.0.50727\
mscorjit.dll
System.ni
2.0.50727.5485 10.17 MB (10,661,376 bytes)
4/21/2015 4:11 A
M
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50727_64\s
ystem\c7fb84e825f6604d7f4684ab96cbd148\system.ni.dll
System.Drawing.ni
2.0.50727.5491 2.21 MB (2,320,384 bytes)
5/16/201
5 4:12 PM
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50
727_64\system.drawing\573f67082334b032270d6cbb535db5f2\system.drawing.ni.dll
System.Windows.Forms.ni 2.0.50727.5491 16.58 MB (17,385,472 bytes)
5/16/201
5 4:12 PM
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50
727_64\system.windows.forms\73bcdffde8c64d240a6155fb4c716ecd\system.windows.form
s.ni.dll
MOM.Implementation
3.5.4867.39780 95.00 KB (97,280 bytes) 4/29/2013 11:06
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\mom.implementation.dll
LOG.Foundation 3.5.4867.39732 31.00 KB (31,744 bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\log.
foundation.dll
LOG.Foundation.Private 3.5.4867.39742 24.50 KB (25,088 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\log.foundation.private.dll
LOG.Foundation.Implementation 3.5.4867.39766 46.50 KB (47,616 bytes) 4/29/201
3 11:05 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\log.foundation.implementation.dll
MOM.Foundation 3.5.4867.39743 5.50 KB (5,632 bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\mom.
foundation.dll
LOG.Foundation.Implementation.Private 3.5.4867.39743 20.00 KB (20,480 bytes)
4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\log.foundation.implementation.private.dll
System.Runtime.Remoting.ni
2.0.50727.5488 1,001.50 KB (1,025,536 bytes)
4/21/2015 4:16 AM
Microsoft Corporation c:\windows\assembly\nativeimages
_v2.0.50727_64\system.runtime.remo#\d514c68a67b7414bfcb93185288f9500\system.runt
ime.remoting.ni.dll
shfolder
6.1.7600.16385 10.00 KB (10,240 bytes) 7/13/2009 7:55 PM
Microsoft Corporation c:\windows\system32\shfolder.dll
System.Web.ni 2.0.50727.5491 14.66 MB (15,374,336 bytes)
5/16/2015 4:14 P
M
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50727_64\s
ystem.web\2ae4efe5ce2a43c367a4a84eadacf2be\system.web.ni.dll
CCC.Implementation
3.5.4867.39779 21.50 KB (22,016 bytes) 4/29/2013 11:06
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\ccc.implementation.dll
NEWAEM.Foundation
3.5.4867.39740 15.00 KB (15,360 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\newaem.foundation.dll
fdrespub
6.1.7600.16385 34.00 KB (34,816 bytes) 7/13/2009 7:35 PM
Microsoft Corporation c:\windows\system32\fdrespub.dll
httpapi 6.1.7601.17514 44.00 KB (45,056 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\httpapi.dll
ssdpsrv 6.1.7600.16385 188.50 KB (193,024 bytes)
7/13/2009 8:10 PM
Microsoft Corporation c:\windows\system32\ssdpsrv.dll
upnphost
6.1.7600.16385 345.50 KB (353,792 bytes)
7/13/2009 8:11 P
M
Microsoft Corporation c:\windows\system32\upnphost.dll
udhisapi
6.1.7600.16385 52.00 KB (53,248 bytes) 7/13/2009 8:10 PM
Microsoft Corporation c:\windows\system32\udhisapi.dll
pnrpsvc 6.1.7600.16385 319.50 KB (327,168 bytes)
7/13/2009 8:11 PM
Microsoft Corporation c:\windows\system32\pnrpsvc.dll
p2psvc 6.1.7600.16385 428.50 KB (438,784 bytes)
7/13/2009 8:11 PM
Microsoft Corporation c:\windows\system32\p2psvc.dll
p2pgraph
6.1.7600.16385 398.50 KB (408,064 bytes)
7/13/2009 8:11 P
M
Microsoft Corporation c:\windows\system32\p2pgraph.dll
drttransport
6.1.7600.16385 52.00 KB (53,248 bytes) 7/13/2009 8:11 PM
Microsoft Corporation c:\windows\system32\drttransport.dll
drt
6.1.7600.16385 287.00 KB (293,888 bytes)
7/13/2009 8:11 PM
Microsoft Corporation c:\windows\system32\drt.dll
ccc
3.5.0.0 292.00 KB (299,008 bytes)
1/25/2012 2:32 PM
Not Avai
lable c:\program files (x86)\ati technologies\ati.ace\core-static\ccc.exe
CLI.Foundation 3.5.4867.39740 60.00 KB (61,440 bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\cli.
foundation.dll
CLI.Foundation.XManifest
3.5.4867.39779 18.00 KB (18,432 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.foundation.xmanifest.dll
System.Xml.ni 2.0.50727.5485 6.65 MB (6,968,320 bytes)
4/21/2015 4:11 A
M
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50727_64\s
ystem.xml\d09a5530f1283b469957bf146e2f4d65\system.xml.ni.dll
CLI.Component.Runtime 3.5.4867.39747 60.00 KB (61,440 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\cli.component.runtime.dll
CLI.Component.Runtime.Shared.Private
3.5.4867.39744 37.50 KB (38,400 bytes)
4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.component.runtime.shared.private.dll
CLI.Foundation.Private 3.5.4867.39744 28.50 KB (29,184 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\cli.foundation.private.dll
CLI.Component.Runtime.Shared
3.5.4867.39744 5.50 KB (5,632 bytes) 4/29/201
3 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.component.runtime.shared.dll
aticccom
2.0.0.0 32.00 KB (32,768 bytes) 4/29/2013 11:04 PM
Not Avai
lable c:\program files (x86)\ati technologies\ati.ace\core-static\aticccom.dll
ADL.Foundation 2.0.3299.28586 135.50 KB (138,752 bytes)
4/2/2012 5:38 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\adl.
foundation.dll
AEM.Server
3.5.4867.39746 34.00 KB (34,816 bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\aem.
server.dll
AEM.Server.Shared
3.5.4867.39745 6.00 KB (6,144 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\aem.server.shared.dll
AEM.Plugin.Source.Kit.Server
3.5.4867.39786 44.50 KB (45,568 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\aem.plugin.source.kit.server.dll
CLI.Foundation.CoreAudioAPI
3.5.0.0 19.50 KB (19,968 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\cli.foundation.coreaudioapi.dll
AEM.Plugin.DPPE.Shared 3.5.4867.39780 6.50 KB (6,656 bytes) 4/29/2013 11:06
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\aem.plugin.dppe.shared.dll
AEM.Plugin.Hotkeys.Shared
3.5.4867.39740 7.00 KB (7,168 bytes) 4/29/201
3 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\aem.plugin.hotkeys.shared.dll
AEM.Plugin.WinMessages.Shared 3.5.4867.39745 6.50 KB (6,656 bytes) 4/29/201
3 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\aem.plugin.winmessages.shared.dll
DEM.Graphics.I0601
2.0.2573.17685 44.00 KB (45,056 bytes) 4/22/2009 12:13
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\dem.graphics.i0601.dll
DEM.Foundation 2.0.2573.17684 16.00 KB (16,384 bytes) 3/4/2010 12:27 AM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\dem.
foundation.dll
DEM.Graphics
3.5.4867.39747 6.50 KB (6,656 bytes) 4/29/2013 11:04 PM
ati.ace\core-static\cli.aspect.amdhome.graphics.runtime.dll
CLI.Aspect.AMDHome.Graphics.Shared
3.5.4867.39851 8.00 KB (8,192 bytes)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.amdhome.graphics.shared.dll
CLI.Aspect.DeviceCV.Graphics.Runtime
3.5.4867.39773 68.00 KB (69,632 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicecv.graphics.runtime.dll
CLI.Aspect.DeviceCV.Graphics.Shared
3.5.4867.39759 40.00 KB (40,960 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicecv.graphics.shared.dll
CLI.Aspect.DeviceTV.Graphics.Runtime
3.5.4867.39776 76.00 KB (77,824 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicetv.graphics.runtime.dll
CLI.Aspect.DeviceTV.Graphics.Shared
3.5.4867.39760 64.00 KB (65,536 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicetv.graphics.shared.dll
CLI.Aspect.HotkeysHandling.Graphics.Runtime
3.5.4867.39764 20.00 KB (20,480
bytes) 4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.hotkeyshandling.graphics.runtime.dll
CLI.Aspect.HotkeysHandling.Graphics.Shared
3.5.4867.39748 20.00 KB (20,480
bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.hotkeyshandling.graphics.shared.dll
CLI.Aspect.UpdateNotification.Graphics.Runtime 3.5.4867.39850 16.00 KB (16,384
bytes) 4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.updatenotification.graphics.runtime.dll
CLI.Aspect.UpdateNotification.Graphics.Shared 3.5.4867.39849 12.00 KB (12,288
bytes) 4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.updatenotification.graphics.shared.dll
CLI.Foundation.Client 3.5.4867.39754 296.00 KB (303,104 bytes)
4/29/201
3 11:05 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.foundation.client.dll
PresentationCore.ni
3.0.6920.5466 15.79 MB (16,559,616 bytes)
5/16/201
5 4:12 PM
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50
727_64\presentationcore\bdb5fec9a6a9277fc5699c3b16130df4\presentationcore.ni.dll
PresentationFramework.ni
3.0.6920.5466 18.31 MB (19,198,464 bytes)
5/16/2015 4:13 PM
Microsoft Corporation c:\windows\assembly\nativeimages
_v2.0.50727_64\presentationframewo#\135659fb800614be82f4af1beeb68923\presentatio
nframework.ni.dll
wpfgfx_v0300
3.0.6920.5466 2.15 MB (2,256,032 bytes)
5/16/2015 3:16 P
M
Microsoft Corporation c:\windows\microsoft.net\framework64\v3.0\wpf\wp
fgfx_v0300.dll
CLI.Caste.Fuel.Runtime 3.5.4867.39801 20.00 KB (20,480 bytes) 4/29/2013 11:06
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\cli.caste.fuel.runtime.dll
CLI.Caste.Fuel.Shared 3.5.4867.39800 10.50 KB (10,752 bytes) 4/29/2013 11:06
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\cli.caste.fuel.shared.dll
Fuel.Foundation 3.5.0.0 13.00 KB (13,312 bytes) 4/29/2013 11:06 PM
Not Avai
lable c:\program files (x86)\ati technologies\ati.ace\core-static\fuel.foundat
ion.dll
Fuel.Implementation
1.0.0.0 36.50 KB (37,376 bytes) 4/29/2013 11:25 PM
Not Available c:\program files\ati technologies\ati.ace\fuel\fuel.implementati
on.dll
Fuel.Proxy.Native
1.0.0.0 101.00 KB (103,424 bytes)
4/29/2013 11:25
PM
Not Available c:\program files\ati technologies\ati.ace\fuel\fuel.prox
y.native.dll
LOCALIZATION.Foundation.Private 3.5.4867.39733 480.00 KB (491,520 bytes)
4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\localization.foundation.private.dll
Localization.Foundation.Implementation.default_Localization
3.5.0.0 316.00 K
B (323,584 bytes)
4/29/2013 11:04 PM
Not Available c:\program files
(x86)\ati technologies\ati.ace\core-static\localization.foundation.implementati
on.default_localization.dll
CLI.Aspect.DPPE.Fuel.Runtime
3.5.4867.39803 36.00 KB (36,864 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.dppe.fuel.runtime.dll
CLI.Aspect.DPPE.Fuel.Shared
3.5.4867.39803 13.00 KB (13,312 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.dppe.fuel.shared.dll
CLI.Aspect.Fets.Fuel.Runtime
3.5.4867.39802 15.50 KB (15,872 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.fets.fuel.runtime.dll
CLI.Aspect.Fets.Fuel.Shared
3.5.4867.39802 11.50 KB (11,776 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.fets.fuel.shared.dll
CLI.Aspect.WiFi.Fuel.Runtime
3.5.4867.39802 12.50 KB (12,800 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.wifi.fuel.runtime.dll
CLI.Aspect.WiFi.Fuel.Shared
3.5.4867.39802 7.50 KB (7,680 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.wifi.fuel.shared.dll
CLI.Aspect.CPUPStates.Fuel.Runtime
3.5.4867.39803 31.50 KB (32,256 bytes)
4/29/2013 11:06 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.cpupstates.fuel.runtime.dll
CLI.Aspect.CPUPStates.Fuel.Shared
3.5.4867.39803 13.50 KB (13,824 bytes)
4/29/2013 11:06 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.cpupstates.fuel.shared.dll
CLI.Aspect.CPUOverDrive.Fuel.Runtime
3.5.4867.39854 19.00 KB (19,456 bytes)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.cpuoverdrive.fuel.runtime.dll
CLI.Aspect.CPUOverDrive.Fuel.Shared
3.5.4867.39853 19.00 KB (19,456 bytes)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.cpuoverdrive.fuel.shared.dll
CLI.Caste.Platform.Runtime
3.5.4867.39856 11.00 KB (11,264 bytes) 4/29/201
3 11:08 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.platform.runtime.dll
CLI.Caste.Platform.Shared
3.5.4867.39854 9.00 KB (9,216 bytes) 4/29/201
3 11:08 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.platform.shared.dll
CLI.Aspect.AMDOverDrive.Platform.Runtime
3.5.4867.39856 15.00 KB (15,360
bytes) 4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.amdoverdrive.platform.runtime.dll
CLI.Aspect.AMDOverDrive.Platform.Shared 3.5.4867.39788 12.50 KB (12,800 bytes)
4/29/2013 11:06 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.amdoverdrive.platform.shared.dll
CLI.Aspect.OverDrive5.Graphics.Shared 3.5.4867.39788 49.50 KB (50,688 bytes)
4/29/2013 11:06 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.overdrive5.graphics.shared.dll
CLI.Caste.HydraVision.Runtime 3.5.4867.39789 11.50 KB (11,776 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.hydravision.runtime.dll
CLI.Caste.HydraVision.Shared
3.5.4867.39789 8.50 KB (8,704 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.hydravision.shared.dll
APM.Server
3.5.4867.39746 64.50 KB (66,048 bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\apm.
server.dll
APM.Foundation 3.5.4867.39741 24.00 KB (24,576 bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\apm.
foundation.dll
CLI.Component.Runtime.Extension.EEU
3.5.4867.39745 7.00 KB (7,168 bytes)
4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.component.runtime.extension.eeu.dll
AEM.Plugin.EEU.Shared 3.5.4867.39745 5.50 KB (5,632 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\aem.plugin.eeu.shared.dll
CLI.Component.Dashboard 3.5.0.0 372.00 KB (380,928 bytes)
4/29/2013 11:05
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\cli.component.dashboard.dll
CLI.Component.Client.Shared.Private
3.5.4867.39751 36.00 KB (36,864 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.component.client.shared.private.dll
CLI.Component.Client.Shared
3.5.4867.39741 8.00 KB (8,192 bytes) 4/29/201
3 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.component.client.shared.dll
CLI.Component.Dashboard.Shared 3.5.4867.39741 32.00 KB (32,768 bytes) 4/29/201
3 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.component.dashboard.shared.dll
CLI.Component.Dashboard.Shared.Private 3.5.4867.39755 1.33 MB (1,395,200 bytes
)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.component.dashboard.shared.private.dll
CLI.Caste.Graphics.Dashboard
3.5.4867.39763 168.00 KB (172,032 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.caste.graphics.dashboard.dll
CLI.Caste.Graphics.Dashboard.Shared
3.5.4867.39760 984.00 KB (1,007,616 byt
es)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.caste.graphics.dashboard.shared.dll
CLI.Aspect.AMDHome.Graphics.Dashboard 3.5.4867.39852 27.50 KB (28,160 bytes)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.amdhome.graphics.dashboard.dll
CLI.Aspect.InfoCentre.Graphics.Dashboard
3.5.4867.39767 56.00 KB (57,344
bytes) 4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.infocentre.graphics.dashboard.dll
CLI.Aspect.DisplaysManager2.Graphics.Dashboard 3.5.4867.39824 237.00 KB (242,6
88 bytes)
4/29/2013 11:07 PM
Not Available c:\program files (x86)\a
ti technologies\ati.ace\core-static\cli.aspect.displaysmanager2.graphics.dashboa
rd.dll
CLI.Aspect.DisplaysManager.Graphics.Dashboard 3.5.0.0 431.50 KB (441,856 bytes
)
4/29/2013 11:07 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.displaysmanager.graphics.dashboard.dll
CLI.Aspect.CrossDisplay.Graphics.Dashboard
1.0.0.0 360.50 KB (369,152 bytes
)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.crossdisplay.graphics.dashboard.dll
CLI.Aspect.DisplaysOptions.Graphics.Dashboard 3.5.0.0 36.00 KB (36,864 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.displaysoptions.graphics.dashboard.dll
CLI.Aspect.DeviceCRT.Graphics.Dashboard 3.5.4867.39823 372.00 KB (380,928 bytes
)
4/29/2013 11:07 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.devicecrt.graphics.dashboard.dll
CLI.Aspect.DeviceLCD.Graphics.Dashboard 3.5.4867.39844 292.00 KB (299,008 bytes
)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.devicelcd.graphics.dashboard.dll
CLI.Aspect.DeviceDFP.Graphics.Dashboard 3.5.4867.39847 384.00 KB (393,216 bytes
)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.devicedfp.graphics.dashboard.dll
CLI.Aspect.Radeon3D.Graphics.Dashboard 3.5.4867.39813 2.29 MB (2,400,256 bytes
)
4/29/2013 11:07 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.radeon3d.graphics.dashboard.dll
CLI.Aspect.MultiVPU2.Graphics.Shared
3.5.4867.39770 24.00 KB (24,576 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.multivpu2.graphics.shared.dll
CLI.Aspect.TransCode.Graphics.Dashboard 3.5.4867.39805 156.50 KB (160,256 bytes
)
4/29/2013 11:06 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.transcode.graphics.dashboard.dll
CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard
3.5.4867.39822 51.50 KB (52,736
bytes) 4/29/2013 11:07 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.powerplaydppe.graphics.dashboard.dll
CLI.Aspect.UpdateNotification.Graphics.Dashboard
3.5.0.0 21.00 KB (21,504
bytes) 4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.updatenotification.graphics.dashboard.dll
CLI.Aspect.Audio.Graphics.Dashboard
3.5.0.0 43.50 KB (44,544 bytes) 4/29/201
3 11:08 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.audio.graphics.dashboard.dll
CLI.Caste.Fuel.Dashboard
3.5.4867.39801 8.50 KB (8,704 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.fuel.dashboard.dll
CLI.Aspect.User.Fuel.Dashboard 3.5.4867.39831 1.20 MB (1,260,032 bytes)
4/29/2013 11:07 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.user.fuel.dashboard.dll
CLI.Aspect.Fets.Fuel.Dashboard 3.5.4867.39840 25.50 KB (26,112 bytes) 4/29/201
3 11:08 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.fets.fuel.dashboard.dll
CLI.Aspect.WiFi.Fuel.Dashboard 3.5.4867.39810 21.00 KB (21,504 bytes) 4/29/201
3 11:07 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.wifi.fuel.dashboard.dll
CLI.Aspect.DPPE.Fuel.Dashboard 3.5.4867.39826 47.50 KB (48,640 bytes) 4/29/201
3 11:07 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.dppe.fuel.dashboard.dll
CLI.Aspect.CPUPStates.Fuel.Dashboard
3.5.4867.39836 29.00 KB (29,696 bytes)
4/29/2013 11:07 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.cpupstates.fuel.dashboard.dll
CLI.Aspect.CPUOverDrive.Fuel.Dashboard 3.5.0.0 36.50 KB (37,376 bytes) 4/29/201
3 11:08 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.cpuoverdrive.fuel.dashboard.dll
CLI.Caste.Platform.Dashboard
3.5.4867.39856 8.00 KB (8,192 bytes) 4/29/201
3 11:08 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.platform.dashboard.dll
CLI.Aspect.AMDOverDrive.Platform.Dashboard
3.5.0.0 39.50 KB (40,448 bytes)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.amdoverdrive.platform.dashboard.dll
CLI.Caste.HydraVision.Dashboard 3.5.4867.39790 8.50 KB (8,704 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.hydravision.dashboard.dll
d3d9
6.1.7601.17514 1.97 MB (2,067,456 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\d3d9.dll
d3d8thk 6.1.7600.16385 12.00 KB (12,288 bytes) 7/13/2009 7:41 PM
Microsof
t Corporation c:\windows\system32\d3d8thk.dll
atiu9p64
8.14.1.6264
49.95 KB (51,152 bytes) 4/30/2013 12:19 AM
Advanced Micro Devices, Inc.
c:\windows\system32\atiu9p64.dll
atiumd64
7.14.10.911
7.18 MB (7,528,440 bytes)
4/30/2013 12:19
AM
Advanced Micro Devices, Inc.
c:\windows\system32\atiumd64.dll
atiumd6a
8.14.10.359
4.09 MB (4,292,192 bytes)
4/30/2013 12:19
AM
Advanced Micro Devices, Inc.
c:\windows\system32\atiumd6a.dll
PresentationFramework.Aero.ni 3.0.6920.4902 452.50 KB (463,360 bytes)
5/16/2015 4:15 PM
Microsoft Corporation c:\windows\assembly\nativeimages
_v2.0.50727_64\presentationframewo#\e8e04dd78b1dfc19367d6e01d22454df\presentatio
nframework.aero.ni.dll
branding
2.0.2477.16262 16.00 KB (16,384 bytes) 6/18/2013 3:49 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\branding\brandin
g.dll
M
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\unidrvui
.dll
mxdwdui 0.3.7601.17514 216.00 KB (221,184 bytes)
7/13/2009 9:19 PM
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\mxdwdui.dll
fxsui 6.1.7601.17514 156.50 KB (160,256 bytes)
7/13/2009 8:36 PM
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\fxsui.dll
fxswzrd 6.1.7601.17514 153.00 KB (156,672 bytes)
7/13/2009 8:36 PM
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\fxswzrd.dll
fxstiff 6.1.7601.17514 424.50 KB (434,688 bytes)
7/13/2009 8:35 PM
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\fxstiff.dll
fxsres 6.1.7601.17514 6.26 MB (6,566,400 bytes)
7/13/2009 9:19 PM
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\fxsres.dll
fxsapi 6.1.7601.17514 608.50 KB (623,104 bytes)
7/13/2009 8:35 PM
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\fxsapi.dll
[Services]
Display Name
Name
State Start Mode
Service Type
Path
Error Co
ntrol Start Name
Tag ID
Adobe Flash Player Update Service
AdobeFlashPlayerUpdateSvc
Stopped
Manual Own Process
c:\windows\syswow64\macromed\flash\flashplayerupdateserv
ice.exe Normal LocalSystem
0
Application Experience AeLookupSvc
Running Manual Share Process c:\windo
ws\system32\svchost.exe -k netsvcs
Normal localSystem
0
Application Layer Gateway Service
ALG
Stopped Manual Own Process
c:\windows\system32\alg.exe
Normal NT AUTHORITY\LocalService
0
AMD External Events Utility
AMD External Events Utility
Running Auto
Own Process
c:\windows\system32\atiesrxx.exe
Normal LocalSystem
0
AMD FUEL Service
AMD FUEL Service
Running Auto
Own Process
c:\program files\ati technologies\ati.ace\fuel\fuel.service.exe /launchservice
Normal LocalSystem
0
Application Identity
AppIDSvc
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k localserviceandnoimpersonation
Normal NT Autho
rity\LocalService
0
Application Information Appinfo Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k netsvcs
Normal LocalSystem
0
Windows Audio Endpoint Builder AudioEndpointBuilder
Running Auto
Share Pr
ocess c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal
LocalSystem
0
Windows Audio AudioSrv
Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k localservicenetworkrestricted
Normal NT AUTHORITY\Loc
alService
0
ActiveX Installer (AxInstSV)
AxInstSV
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k axinstsvgroup
Normal LocalSystem
0
BitLocker Drive Encryption Service
BDESVC Stopped Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal localSystem
0
Base Filtering Engine BFE
Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k localservicenonetwork
Normal NT AUTHORITY\LocalServic
e
0
Background Intelligent Transfer Service BITS
Running Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal LocalSystem
0
Computer Browser
Browser Running Manual Share Process c:\windows\syste
m32\svchost.exe -k netsvcs
Normal LocalSystem
0
Bluetooth Support Service
bthserv Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k bthsvcs
Normal NT AUTHORITY\LocalService
0
Certificate Propagation CertPropSvc
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k netsvcs
Normal LocalSystem
0
imaster.dll" /prefetch:1
Normal LocalSystem
0
Performance Counter DLL Host
PerfHost
Stopped Manual Own Process
c:\windows\syswow64\perfhost.exe
Normal NT AUTHORITY\LocalService
0
Performance Logs & Alerts
pla
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k localservicenonetwork
Normal NT AUTHORITY\Loc
alService
0
Plug and Play PlugPlay
Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k dcomlaunch Normal LocalSystem
0
PNRP Machine Name Publication Service PNRPAutoReg
Stopped Manual Share Pr
ocess c:\windows\system32\svchost.exe -k localservicepeernet Normal NT AUTHO
RITY\LocalService
0
Peer Name Resolution Protocol PNRPsvc Running Manual Share Process c:\windo
ws\system32\svchost.exe -k localservicepeernet Normal NT AUTHORITY\LocalServic
e
0
IPsec Policy Agent
PolicyAgent
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k networkservicenetworkrestricted
Normal NT Autho
rity\NetworkService
0
Power Power Running Auto
Share Process c:\windows\system32\svchost.exe
-k dcomlaunch Normal LocalSystem
0
User Profile Service
ProfSvc Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k netsvcs
Normal LocalSystem
0
Protected Storage
ProtectedStorage
Stopped Manual Share Process
c:\windows\system32\lsass.exe Normal LocalSystem
0
Protexis Licensing V2 PSI_SVC_2
Running Auto
Own Process
"c:\prog
ram files (x86)\common files\protexis\license service\psiservice_2.exe" Normal
LocalSystem
0
Quality Windows Audio Video Experience QWAVE Stopped Manual Share Process
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation
Normal
NT AUTHORITY\LocalService
0
Remote Access Auto Connection Manager RasAuto Stopped Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal localSystem
0
Remote Access Connection Manager
RasMan Stopped Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal localSystem
0
Routing and Remote Access
RemoteAccess
Stopped Disabled
Share Pr
ocess c:\windows\system32\svchost.exe -k netsvcs
Normal localSystem
0
Remote Registry RemoteRegistry Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k regsvc
Normal NT AUTHORITY\LocalService
0
RPC Endpoint Mapper
RpcEptMapper
Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k rpcss
Normal NT AUTHORITY\NetworkService
0
Remote Procedure Call (RPC) Locator
RpcLocator
Stopped Manual Own Proc
ess
c:\windows\system32\locator.exe Normal NT AUTHORITY\NetworkService
0
Remote Procedure Call (RPC)
RpcSs Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k rpcss
Normal NT AUTHORITY\NetworkService
0
Security Accounts Manager
SamSs Running Auto
Share Process c:\windo
ws\system32\lsass.exe Normal LocalSystem
0
Smart Card
SCardSvr
Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k localserviceandnoimpersonation
Normal NT AUTHORITY\Loc
alService
0
Task Scheduler Schedule
Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k netsvcs
Normal LocalSystem
0
Smart Card Removal Policy
SCPolicySvc
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal LocalSystem
0
Windows Backup SDRSVC Stopped Manual Own Process
c:\windows\system32\svch
ost.exe -k sdrsvc
Normal localSystem
0
Secondary Logon seclogon
Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k netsvcs
Normal LocalSystem
0
System Event Notification Service
SENS
Running Auto
Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal LocalSystem
0
Adaptive Brightness
SensrSvc
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k localserviceandnoimpersonation
Normal NT AUTHO
RITY\LocalService
0
Remote Desktop Configuration
SessionEnv
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal localSystem
0
Internet Connection Sharing (ICS)
SharedAccess
Stopped Disabled
Share Process c:\windows\system32\svchost.exe -k netsvcs
Normal LocalSys
tem
0
Shell Hardware Detection
ShellHWDetection
Running Auto
Share Pr
ocess c:\windows\system32\svchost.exe -k netsvcs
Ignore LocalSystem
0
SlimWare Utility Service Launcher
SlimService
Running Auto
Own Proc
ess
"c:\program files\slimservice\slimservicefactory.exe" Normal LocalSys
tem
0
SNMP Trap
SNMPTRAP
Stopped Manual Own Process
c:\windows\syste
m32\snmptrap.exe
Normal NT AUTHORITY\LocalService
0
Print Spooler Spooler Running Auto
Own Process
c:\windows\system32\spoo
lsv.exe Normal LocalSystem
0
Software Protection
sppsvc Stopped Auto
Own Process
c:\windows\syste
m32\sppsvc.exe Normal NT AUTHORITY\NetworkService
0
SPP Notification Service
sppuinotify
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalServic
e
0
SSDP Discovery SSDPSRV Running Manual Share Process c:\windows\system32\svch
ost.exe -k localserviceandnoimpersonation
Normal NT AUTHORITY\LocalServic
e
0
Secure Socket Tunneling Protocol Service
SstpSvc Stopped Manual Share Pr
ocess c:\windows\system32\svchost.exe -k localservice Normal NT Authority\Loc
alService
0
Steam Client Service
Steam Client Service
Stopped Manual Own Process
"c:\program files (x86)\common files\steam\steamservice.exe" /runasservice
Normal LocalSystem
0
Windows Image Acquisition (WIA) stisvc Stopped Manual Own Process
c:\windo
ws\system32\svchost.exe -k imgsvc
Normal NT Authority\LocalService
0
Microsoft Software Shadow Copy Provider swprv Stopped Manual Own Process
c:\windows\system32\svchost.exe -k swprv
Normal LocalSystem
0
Superfetch
SysMain Running Auto
Share Process c:\windows\system32\svch
ost.exe -k localsystemnetworkrestricted Ignore LocalSystem
0
Tablet PC Input Service TabletInputService
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSys
tem
0
Telephony
TapiSrv Running Manual Share Process c:\windows\system32\svch
ost.exe -k networkservice
Normal NT AUTHORITY\NetworkService
0
TPM Base Services
TBS
Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k localserviceandnoimpersonation
Normal NT AUTHORITY\Loc
alService
0
Remote Desktop Services TermService
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k networkservice
Normal NT Authority\NetworkServ
ice
0
Themes Themes Running Auto
Share Process c:\windows\system32\svchost.exe
-k netsvcs
Normal LocalSystem
0
Thread Ordering Server THREADORDER
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService
0
TMachInfo
TMachInfo
Stopped Manual Own Process
c:\program files
(x86)\toshiba\toshiba service station\tmachinfo.exe
Ignore LocalSystem
0
TOSHIBA Optical Disc Drive Service
TODDSrv Running Auto
Own Process
c:\windows\system32\toddsrv.exe Normal LocalSystem
0
TOSHIBA Power Saver
TosCoSrv
Running Auto
Own Process
"c:\prog
ram files\toshiba\power saver\toscosrv.exe"
Normal LocalSystem
0
TOSHIBA eco Utility Service
TOSHIBA eco Utility Service
Running Auto
Own Process
"c:\program files\toshiba\teco\tecoservice.exe" Normal LocalSys
tem
0
TOSHIBA HDD SSD Alert Service TOSHIBA HDD SSD Alert Service Stopped Manual
Own Process
"c:\program files\toshiba\toshiba hdd ssd alert\tossmartsrv.exe"
Normal LocalSystem
0
TPCH Service
TPCHSrv Stopped Manual Own Process
"c:\program files\toshib
a\tphm\tpchsrv.exe"
Normal LocalSystem
0
Distributed Link Tracking Client
TrkWks Running Auto
Share Process
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSys
tem
0
Windows Modules Installer
TrustedInstaller
Running Manual Own Proc
ess
c:\windows\servicing\trustedinstaller.exe
Normal localSystem
0
Interactive Services Detection UI0Detect
Stopped Manual Own Process
c:\windows\system32\ui0detect.exe
Normal LocalSystem
0
UPnP Device Host
upnphost
Running Manual Share Process c:\windo
ws\system32\svchost.exe -k localserviceandnoimpersonation
Normal NT AUTHO
RITY\LocalService
0
Desktop Window Manager Session Manager UxSms Running Auto
Share Process
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal localSys
tem
0
Credential Manager
VaultSvc
Stopped Manual Share Process c:\windo
ws\system32\lsass.exe Normal LocalSystem
0
Virtual Disk
vds
Stopped Manual Own Process
c:\windows\system32\vds.
exe
Normal LocalSystem
0
Volume Shadow Copy
VSS
Stopped Manual Own Process
c:\windows\syste
m32\vssvc.exe Normal LocalSystem
0
Windows Time
W32Time Running Manual Share Process c:\windows\system32\svch
ost.exe -k localservice Normal NT AUTHORITY\LocalService
0
Windows Activation Technologies Service WatAdminSvc
Stopped Manual Own Proc
ess
c:\windows\system32\wat\watadminsvc.exe Normal LocalSystem
0
Block Level Backup Engine Service
wbengine
Stopped Manual Own Proc
ess
"c:\windows\system32\wbengine.exe"
Normal localSystem
0
Windows Biometric Service
WbioSrvc
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k wbiosvcgroup Normal LocalSystem
0
Windows Connect Now - Config Registrar wcncsvc Stopped Manual Share Process
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation
Normal
NT AUTHORITY\LocalService
0
Windows Color System
WcsPlugInService
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k wcssvc
Normal NT AUTHORITY\LocalServic
e
0
Diagnostic Service Host WdiServiceHost Running Manual Share Process c:\windo
ws\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService
0
Diagnostic System Host WdiSystemHost Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem
0
WebClient
WebClient
Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService
0
Windows Event Collector Wecsvc Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k networkservice
Normal NT AUTHORITY\NetworkService
0
Problem Reports and Solutions Control Panel Support
wercplsupport Stopped
Manual Share Process c:\windows\system32\svchost.exe -k netsvcs
Normal
localSystem
0
Windows Error Reporting Service WerSvc Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k wersvcgroup Ignore localSystem
0
Windows Defender
WinDefend
Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k secsvcs
Normal LocalSystem
0
WinHTTP Web Proxy Auto-Discovery Service
WinHttpAutoProxySvc
Running
Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal
NT AUTHORITY\LocalService
0
Windows Management Instrumentation
Winmgmt Running Auto
Share Process
c:\windows\system32\svchost.exe -k netsvcs
Ignore localSystem
0
Windows Remote Management (WS-Management)
WinRM Stopped Manual Share Pr
ocess c:\windows\system32\svchost.exe -k networkservice
Normal NT AUTHO
RITY\NetworkService
0
WLAN AutoConfig Wlansvc Running Auto
Share Process c:\windows\system32\svch
ost.exe -k localsystemnetworkrestricted Normal LocalSystem
0
WMI Performance Adapter wmiApSrv
Stopped Manual Own Process
c:\windo
ws\system32\wbem\wmiapsrv.exe Normal localSystem
0
Windows Media Player Network Sharing Service
WMPNetworkSvc Running Auto
Own Process
"c:\program files\windows media player\wmpnetwk.exe"
Normal
NT AUTHORITY\NetworkService
0
Parental Controls
WPCSvc Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k localservicenetworkrestricted
Normal NT Authority\Loc
alService
0
Portable Device Enumerator Service
WPDBusEnum
Stopped Manual Share Pr
ocess c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal
LocalSystem
0
Security Center wscsvc Running Auto
Share Process c:\windows\system32\svch
ost.exe -k localservicenetworkrestricted
Normal NT AUTHORITY\LocalServic
e
0
Windows Search WSearch Running Auto
Own Process
c:\windows\system32\sear
chindexer.exe /embedding
Normal LocalSystem
0
Windows Update wuauserv
Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k netsvcs
Normal LocalSystem
0
Windows Driver Foundation - User-mode Driver Framework wudfsvc Running Auto
Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted
Normal LocalSystem
0
WWAN AutoConfig WwanSvc Stopped Manual Share Process c:\windows\system32\svch
ost.exe -k localservicenonetwork
Normal NT Authority\LocalService
0
[Program Groups]
Group Name
Name
User Name
Start Menu
Default:Start Menu
Default
Start Menu\Programs
Default:Start Menu\Programs
Default
Start Menu\Programs\Accessories Default:Start Menu\Programs\Accessories Default
Start Menu\Programs\Accessories\Accessibility Default:Start Menu\Programs\Acce
ssories\Accessibility Default
Start Menu\Programs\Accessories\System Tools
Default:Start Menu\Programs\Acce
ssories\System Tools
Default
Start Menu\Programs\Maintenance Default:Start Menu\Programs\Maintenance Default
Start Menu
Public:Start Menu
Public
Start Menu\Programs
Public:Start Menu\Programs
Public
Start Menu\Programs\Accessories Public:Start Menu\Programs\Accessories Public
Start Menu\Programs\Accessories\Accessibility Public:Start Menu\Programs\Acces
sories\Accessibility
Public
Start Menu\Programs\Accessories\System Tools
Public:Start Menu\Programs\Acces
sories\System Tools
Public
Start Menu\Programs\Accessories\Tablet PC
Public:Start Menu\Programs\Acces
sories\Tablet PC
Public
d Customer
Start Menu\Programs\Accessories\System Tools
PreferredCustom\Preferred Custom
er:Start Menu\Programs\Accessories\System Tools PreferredCustom\Preferred Custom
er
Start Menu\Programs\Administrative Tools
PreferredCustom\Preferred Custom
er:Start Menu\Programs\Administrative Tools
PreferredCustom\Preferred Custom
er
Start Menu\Programs\Hidden Expedition - The Crown of Solomon Collectors Edition
PreferredCustom\Preferred Customer:Start Menu\Programs\Hidden Expedition - The C
rown of Solomon Collectors Edition
PreferredCustom\Preferred Customer
Start Menu\Programs\Maintenance PreferredCustom\Preferred Customer:Start Menu\Pr
ograms\Maintenance
PreferredCustom\Preferred Customer
Start Menu\Programs\Startup
PreferredCustom\Preferred Customer:Start Menu\Pr
ograms\Startup PreferredCustom\Preferred Customer
Start Menu\Programs\Steam
PreferredCustom\Preferred Customer:Start Menu\Pr
ograms\Steam
PreferredCustom\Preferred Customer
[Startup Programs]
Program Command User Name
Location
Sidebar %programfiles%\windows sidebar\sidebar.exe /autorun
NT AUTHORITY\LOC
AL SERVICE
Startup
Sidebar %programfiles%\windows sidebar\sidebar.exe /autorun
NT AUTHORITY\NET
WORK SERVICE
Startup
SlimCleaner Plus
"c:\program files\slimcleaner plus\slimcleanerplus.exe"
/minimize /boot PreferredCustom\Preferred Customer
Startup
Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
[OLE Registration]
Object Local Server
WordPad Document
"%programfiles%\windows nt\accessories\wordpad.exe"
Paintbrush Picture
%systemroot%\system32\mspaint.exe
Drawing Not Available
Package Not Available
Microsoft PenInputPanel Control Not Available
[Windows Error Reporting]
Time
Type
Details
5/26/2015 12:23 AM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba
Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba

;Exception code: 0xc0000005
Fault offset: 0x00000000001e4fef�
0d;
Faulting process id: 0x9ac
Faulting application start
time: 0x01d0974a2cc82b70
Faulting application path: C:\Program Fi
les (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe
Fau
lting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\e
vilwithin.exe
Report Id: 75ee28d8-033d-11e5-8c10-88ae1dfad3f8
5/26/2015 12:17 AM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba
Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba

;Exception code: 0xc0000005
Fault offset: 0x00000000001e4fef�
0d;
Faulting process id: 0x124c
Faulting application start
time: 0x01d097493e357ce5
Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe
Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe
Report Id: 87ed15fa-033c-11e5-8c10-88ae1dfad3f8
5/26/2015 12:12 AM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba
Faulting modu
3f8
5/25/2015 10:44 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba
Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba

;Exception code: 0xc0000005
Fault offset: 0x00000000001e4fef�
0d;
Faulting process id: 0x104c
Faulting application start
time: 0x01d0973c4bf6968e
Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe
Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe
Report Id: 98c3a2db-032f-11e5-b6d2-88ae1dfad3f8
5/25/2015 10:33 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba
Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba

;Exception code: 0xc0000005
Fault offset: 0x00000000001e4fef�
0d;
Faulting process id: 0x490
Faulting application start
time: 0x01d0973acf63679c
Faulting application path: C:\Program Fi
les (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe
Fau
lting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\e
vilwithin.exe
Report Id: 1a342748-032e-11e5-9ba9-88ae1dfad3f8
5/25/2015 10:33 PM
Application Error
Faulting application name: Drive
rUpdate.exe, version: 2.3.1.0, time stamp: 0x551d4cfe
Faulting mo
dule name: UnifiedLogger.dll_unloaded, version: 0.0.0.0, time stamp: 0x5511b23f&
#x000d;
Exception code: 0xc0000005
Fault offset: 0x60546f7
8
Faulting process id: 0xf8
Faulting application s
tart time: 0x01d0973ac9bf8918
Faulting application path: C:\Progr
am Files (x86)\DriverUpdate\DriverUpdate.exe
Faulting module path
: UnifiedLogger.dll
Report Id: 0bf0d251-032e-11e5-9ba9-88ae1dfad3
f8
5/25/2015 10:33 PM
Application Error
Faulting application name: Drive
rUpdate.exe, version: 2.3.1.0, time stamp: 0x551d4cfe
Faulting mo
dule name: UnifiedLogger.dll_unloaded, version: 0.0.0.0, time stamp: 0x5511b23f&
#x000d;
Exception code: 0xc0000005
Fault offset: 0x60559e5
8
Faulting process id: 0xf8
Faulting application s
tart time: 0x01d0973ac9bf8918
Faulting application path: C:\Progr
am Files (x86)\DriverUpdate\DriverUpdate.exe
Faulting module path
: UnifiedLogger.dll
Report Id: 08a607ca-032e-11e5-9ba9-88ae1dfad3
f8
5/25/2015 10:33 PM
Application Error
Faulting application name: Drive
rUpdate.exe, version: 2.3.1.0, time stamp: 0x551d4cfe
Faulting mo
dule name: DriverUpdate.exe, version: 2.3.1.0, time stamp: 0x551d4cfe
&#x
000a;Exception code: 0xc0000005
Fault offset: 0x00030564
&
#x000a;Faulting process id: 0x1e08
Faulting application start tim
e: 0x01d0973a8d52d0f9
Faulting application path: C:\Program Files
(x86)\DriverUpdate\DriverUpdate.exe
Faulting module path: C:\Pro
gram Files (x86)\DriverUpdate\DriverUpdate.exe
Report Id: fff7eb2
0-032d-11e5-9ba9-88ae1dfad3f8
5/25/2015 10:19 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba
Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba

;Exception code: 0xc0000005
Fault offset: 0x00000000001e4fef�
0d;
Faulting process id: 0x1d28
Faulting application start
time: 0x01d09738dd5c03a7
Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe
Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe
Report Id: 285d70f9-032c-11e5-9ba9-88ae1dfad3f8
5/25/2015 10:11 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba
Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba

;Exception code: 0xc0000005
Fault offset: 0x00000000001e4fef�
0d;
Faulting process id: 0x1470
Faulting application start
4/15/2015 5:14 PM
Application Error
Faulting application name: ccSvc
Hst.exe, version: 109.0.0.107, time stamp: 0x4a92f9d9
Faulting mo
dule name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exce
ption code: 0xc0000005
Fault offset: 0x75436cc4
Fa
ulting process id: 0x72c
Faulting application start time: 0x01d07
7986377f5cd
Faulting application path: C:\Program Files (x86)\Nor
ton PC Checkup\Engine\2.0.3.198\ccSvcHst.exe
Faulting module path
: unknown
Report Id: deaa7f7d-e392-11e4-b412-88ae1dfad3f8
4/15/2015 5:14 PM
Application Error
Faulting application name: ccSvc
Hst.exe, version: 10.0.0.61, time stamp: 0x4bf83e7f
Faulting modu
le name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Except
ion code: 0xc0000005
Fault offset: 0x75436cc4
Faul
ting process id: 0x628
Faulting application start time: 0x01d0779
86129a08a
Faulting application path: C:\Program Files (x86)\Norto
n Internet Security\Engine\18.0.0.128\ccSvcHst.exe
Faulting modul
e path: unknown
Report Id: de5e5374-e392-11e4-b412-88ae1dfad3f8
4/15/2015 5:14 PM
Application Error
Faulting application name: SymcP
CCULaunchSvc.exe, version: 1.0.0.137, time stamp: 0x4b6221bb
Faul
ting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
�
0a;Exception code: 0xc0000005
Fault offset: 0x75436cc4
&#x
000a;Faulting process id: 0x6d0
Faulting application start time:
0x01d0779862ca3159
Faulting application path: C:\Program Files (x
86)\Norton PC Checkup\Engine\2.0.3.198\SymcPCCULaunchSvc.exe
Faul
ting module path: unknown
Report Id: dcc9a986-e392-11e4-b412-88ae
1dfad3f8
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1223.dmp
�
00a;C:\Windows\Temp\WER-57507615-0.sysdata.xml
C:\Windows\Temp\WE
R8141.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ea98141

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 680d7e3b-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1212.dmp
�
00a;C:\Windows\Temp\WER-56847996-0.sysdata.xml
C:\Windows\Temp\WE
R73C9.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ce373d9

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: dedccbc0-02f8-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1226.dmp
�
00a;C:\Windows\Temp\WER-57653835-0.sysdata.xml
C:\Windows\Temp\WE
RBB06.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1bc7bb06

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: bf35dd8f-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1224.dmp
�
00a;C:\Windows\Temp\WER-57588159-0.sysdata.xml
C:\Windows\Temp\WE
RBA89.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1b22ba89

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 980e676b-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1819.dmp
�
00a;C:\Windows\Temp\WER-78875525-0.sysdata.xml
C:\Windows\Temp\WE
R8D2A.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_189b8d2a

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 28507878-032c-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1220.dmp
�
00a;C:\Windows\Temp\WER-57350210-0.sysdata.xml
C:\Windows\Temp\WE
R1AA3.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_18471aa3

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 0a3bda7e-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1227.dmp
�
00a;C:\Windows\Temp\WER-57743582-0.sysdata.xml
C:\Windows\Temp\WE
R1A64.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_16e91a64

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: f4b409e3-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
5-8c10-88ae1dfad3f8
Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-2012.dmp
�
00a;C:\Windows\Temp\WER-224204-0.sysdata.xml
C:\Windows\Temp\WER7
CCD.tmp.WERInternalMetadata.xml

These files may b
e available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0eb77cdc

Analysis symbol: �
d;
Rechecking for solution: 0
Report Id: e362a92f-033b-11e
5-8c10-88ae1dfad3f8
Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1844.dmp
�
00a;C:\Windows\Temp\WER-510092-0.sysdata.xml
C:\Windows\Temp\WERE
0FB.tmp.WERInternalMetadata.xml

These files may b
e available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0a5be10b

Analysis symbol: �
d;
Rechecking for solution: 0
Report Id: 98bfd23d-032f-11e
5-b6d2-88ae1dfad3f8
Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1811.dmp
�
00a;C:\Windows\Temp\WER-78383092-0.sysdata.xml
C:\Windows\Temp\WE
RC09.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_09e00c19

Analysis symbol: �
0d;
Rechecking for solution: 0
Report Id: 02cd21f1-032b-11
e5-9ba9-88ae1dfad3f8
Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1908.dmp
�
00a;C:\Windows\Temp\WER-1958483-0.sysdata.xml
C:\Windows\Temp\WER
E30E.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_0585e30e

Analysis symbol: �
0d;
Rechecking for solution: 0
Report Id: f81c002f-0332-11
e5-b6d2-88ae1dfad3f8
Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-2016.dmp
�
00a;C:\Windows\Temp\WER-500186-0.sysdata.xml
C:\Windows\Temp\WERA
36F.tmp.WERInternalMetadata.xml

These files may b
e available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0543a36f

Analysis symbol: �
d;
Rechecking for solution: 0
Report Id: 87e5e9ef-033c-11e
5-8c10-88ae1dfad3f8
Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1833.dmp
�
00a;C:\Windows\Temp\WER-79710754-0.sysdata.xml
C:\Windows\Temp\WE
R4B6A.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_02e04b6a

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 1a27a3f9-032e-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/30/2015 3:49 AM
Windows Error Reporting Fault bucket 1346076112, type 21

Event Name: PDUWICA
Response: Not available�
d;
Cab Id: 0

Problem signature:
&#x
000a;P1: 3
P2: 2.1
P3: 6.1.1.0
P4:
1033
P5: 55
P6: 
P7: 
�
a;P8: 
P9: 
P10: 

A
ttached files:

These files may be available here:



Analysis symbol: 

;Rechecking for solution: 0
Report Id: dfeb2439-067e-11e5-8c10-88
ae1dfad3f8
Report Status: 0
5/28/2015 1:46 AM
Windows Error Reporting Fault bucket 68036429, type 22&#
x000d;
Event Name: RADAR_PRE_LEAK_WOW64
Response: Not avai
lable
Cab Id: 0

Problem signature:

P1: HiddenExpedition_TheCrownOfSolomonCE.exe
P2:
0.0.0.0
P3: 6.1.7601.2.1.0
P4: 
P5:

P6: 
P7: 
P8: 
P9:

P10: 

Attached files:
&#x
000a;C:\Users\Preferred Customer\AppData\Local\Temp\RDREFF1.tmp\empty.txt
;

These files may be available here:
�
0d;

Analysis symbol: 
Rechecking for solut
ion: 0
Report Id: 4fb0fbf9-04db-11e5-8c10-88ae1dfad3f8
&#x
000a;Report Status: 0
5/26/2015 12:46 AM
Windows Error Reporting Fault bucket 995231174, type 21&
#x000d;
Event Name: CompatEntityAnalysis_1
Response: Not a
vailable
Cab Id: 0

Problem signatu
re:
P1: 3
P2: 2
P3: 6.1.1.0

P4: 1033
P5: 55
P6: 
P7: &#
x000d;
P8: 
P9: 
P10: 
�
0d;
Attached files:
C:\Windows\appcompat\Programs\AEINV_AM
I_WER_{6A5CD319-21AA-4C24-8723-E11AEE16122F}_20150526_004138_TEL.xml
�
00a;
These files may be available here:
C:\Program
Data\Microsoft\Windows\WER\ReportArchive\NonCritical_3_f17a1453a203756a44f49c989
7635f63f1728b6_010aee64

Analysis symbol: 

Rechecking for solution: 0
Report Id: aeb3da66-0340-11e58c10-88ae1dfad3f8
Report Status: 0
5/26/2015 12:24 AM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;
Event Name: APPCRASH
Response: Not available�
d;
Cab Id: 0

Problem signature:
&#x
000a;P1: evilwithin.exe
P2: 1.0.0.0
P3: 5555aeba&#
x000d;
P4: evilwithin.exe
P5: 1.0.0.0
P6: 5
555aeba
P7: c0000005
P8: 00000000001e4fef
&
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1224.dmp
�
00a;C:\Windows\Temp\WER-57588159-0.sysdata.xml
C:\Windows\Temp\WE
RBA89.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1b22ba89

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 980e676b-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1819.dmp
�
00a;C:\Windows\Temp\WER-78875525-0.sysdata.xml
C:\Windows\Temp\WE
R8D2A.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_189b8d2a

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 28507878-032c-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1220.dmp
�
00a;C:\Windows\Temp\WER-57350210-0.sysdata.xml
C:\Windows\Temp\WE
R1AA3.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_18471aa3

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 0a3bda7e-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1227.dmp
�
00a;C:\Windows\Temp\WER-57743582-0.sysdata.xml
C:\Windows\Temp\WE
R1A64.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_16e91a64

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: f4b409e3-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1909.dmp
�
00a;C:\Windows\Temp\WER-2013536-0.sysdata.xml
C:\Windows\Temp\WER
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1220.dmp
�
00a;C:\Windows\Temp\WER-57350210-0.sysdata.xml
C:\Windows\Temp\WE
R1AA3.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_18471aa3

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 0a3bda7e-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1227.dmp
�
00a;C:\Windows\Temp\WER-57743582-0.sysdata.xml
C:\Windows\Temp\WE
R1A64.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_16e91a64

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: f4b409e3-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1909.dmp
�
00a;C:\Windows\Temp\WER-2013536-0.sysdata.xml
C:\Windows\Temp\WER
BA2A.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_136aba2a

Analysis symbol: �
0d;
Rechecking for solution: 0
Report Id: 18ed3522-0333-11
e5-b6d2-88ae1dfad3f8
Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1207.dmp
�
00a;C:\Windows\Temp\WER-56521018-0.sysdata.xml
C:\Windows\Temp\WE
R8FE1.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_12a68fe1

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 1bfeac1d-02f8-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1951.dmp
�
00a;C:\Windows\Temp\WER-372171-0.sysdata.xml
C:\Windows\Temp\WERB
DF1.tmp.WERInternalMetadata.xml

These files may b
e available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_11b5be01

Analysis symbol: �
d;
Rechecking for solution: 0
Report Id: eae8680f-0338-11e
5-8bad-88ae1dfad3f8
Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1857.dmp
�
00a;C:\Windows\Temp\WER-1273982-0.sysdata.xml
C:\Windows\Temp\WER
7158.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_10977158

Analysis symbol: �
0d;
Rechecking for solution: 0
Report Id: 601cf4c5-0331-11
e5-b6d2-88ae1dfad3f8
Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1844.dmp
�
00a;C:\Windows\Temp\WER-510092-0.sysdata.xml
C:\Windows\Temp\WERE
0FB.tmp.WERInternalMetadata.xml

These files may b
e available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0a5be10b

Analysis symbol: �
d;
Rechecking for solution: 0
Report Id: 98bfd23d-032f-11e
5-b6d2-88ae1dfad3f8
Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1811.dmp
�
00a;C:\Windows\Temp\WER-78383092-0.sysdata.xml
C:\Windows\Temp\WE
RC09.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_09e00c19

Analysis symbol: �
0d;
Rechecking for solution: 0
Report Id: 02cd21f1-032b-11
e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1908.dmp
�
00a;C:\Windows\Temp\WER-1958483-0.sysdata.xml
C:\Windows\Temp\WER
E30E.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_0585e30e

Analysis symbol: �
0d;
Rechecking for solution: 0
Report Id: f81c002f-0332-11
e5-b6d2-88ae1dfad3f8
Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
5/25/2015 10:53 PM
Windows Error Reporting Fault bucket 1302921571, type 21

Event Name: WindowsUpdateFailure3
Response: Not a
vailable
Cab Id: 0

Problem signatu
re:
P1: 7.6.7601.18804
P2: 80072ee2

;P3: 00000000-0000-0000-0000-000000000000
P4: Scan

;P5: 0
P6: 0
P7: 0
P8: <<PROCESS>>:
sdiagnhost.exe
P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}
;
P10: 0

Attached files:
&#
x000d;
These files may be available here:
C:\ProgramData\M
icrosoft\Windows\WER\ReportArchive\NonCritical_7.6.7601.18804_5593e43c2eb7b9bd6f
0db8bd6e48d5b9cb76f44_0673cfcc

Analysis symbol: &
#x000d;
Rechecking for solution: 0
Report Id: cefe8bdc-033
0-11e5-b6d2-88ae1dfad3f8
Report Status: 0
5/25/2015 10:53 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: WindowsUpdateFailure3
Response: Not available&#x
000d;
Cab Id: 0

Problem signature:

P1: 7.6.7601.18804
P2: 80072ee2
P3: 000000
00-0000-0000-0000-000000000000
P4: Scan
P5: 0�
0d;
P6: 0
P7: 0
P8: <<PROCESS>>: sdiagnhost
.exe
P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}
P1
0: 0

Attached files:

�
0a;These files may be available here:
C:\ProgramData\Microsoft\Wi
ndows\WER\ReportQueue\NonCritical_7.6.7601.18804_5593e43c2eb7b9bd6f0db8bd6e48d5b
9cb76f44_cab_1497b9dc

Analysis symbol: 
&#
x000a;Rechecking for solution: 0
Report Id: cefe8bdc-0330-11e5-b6
d2-88ae1dfad3f8
Report Status: 4
5/25/2015 10:53 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: WindowsUpdateFailure3
Response: Not available&#x
000d;
Cab Id: 0

Problem signature:

P1: 7.6.7601.18804
P2: 80072ee2
P3: 000000
00-0000-0000-0000-000000000000
P4: Scan
P5: 0�
0d;
P6: 0
P7: 0
P8: <<PROCESS>>: sdiagnhost
.exe
P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}
P1
0: 0

Attached files:

�
0a;These files may be available here:


&#x
000a;Analysis symbol: 
Rechecking for solution: 0

Report Id: cefe8bdc-0330-11e5-b6d2-88ae1dfad3f8
Report Status: 0
5/25/2015 10:51 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1223.dmp
�
00a;C:\Windows\Temp\WER-57507615-0.sysdata.xml
C:\Windows\Temp\WE
R8141.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ea98141

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 680d7e3b-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 10:51 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1212.dmp
�
00a;C:\Windows\Temp\WER-56847996-0.sysdata.xml
C:\Windows\Temp\WE
R73C9.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket 248211877, type 19&
#x000d;
Event Name: BEX
Response: Not available
&#x
000a;Cab Id: 0

Problem signature:

P1: DriverUpdate.exe
P2: 2.3.1.0
P3: 551d4cfe�
0d;
P4: UnifiedLogger.dll_unloaded
P5: 0.0.0.0
�
00a;P6: 5511b23f
P7: 72376f78
P8: c0000005

P9: 00000008
P10: 

Attache
d files:
C:\Users\Preferred Customer\AppData\Local\Temp\WER9A7A.t
mp.WERInternalMetadata.xml

These files may be ava
ilable here:
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\A
ppCrash_DriverUpdate.exe_2712c533d61685a4e1a55ff76ab30b822f85086_05d8aef4
;

Analysis symbol: 
Rechecking for solutio
n: 0
Report Id: 5509bc67-0330-11e5-b6d2-88ae1dfad3f8
�
0a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket 247872832, type 19&
#x000d;
Event Name: BEX
Response: Not available
&#x
000a;Cab Id: 0

Problem signature:

P1: DriverUpdate.exe
P2: 2.3.1.0
P3: 551d4cfe�
0d;
P4: UnifiedLogger.dll_unloaded
P5: 0.0.0.0
�
00a;P6: 5511b23f
P7: 72389e58
P8: c0000005

P9: 00000008
P10: 

Attache
d files:
C:\Users\Preferred Customer\AppData\Local\Temp\WER7FAA.t
mp.WERInternalMetadata.xml

These files may be ava
ilable here:
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\A
ppCrash_DriverUpdate.exe_178b319c9be0d4dedaeacde99c132a111bdf992_05f89452
;

Analysis symbol: 
Rechecking for solutio
n: 0
Report Id: 50b5e26e-0330-11e5-b6d2-88ae1dfad3f8
�
0a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1223.dmp
�
00a;C:\Windows\Temp\WER-57507615-0.sysdata.xml
C:\Windows\Temp\WE
R8141.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ea98141

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 680d7e3b-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1212.dmp
�
00a;C:\Windows\Temp\WER-56847996-0.sysdata.xml
C:\Windows\Temp\WE
R73C9.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ce373d9

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: dedccbc0-02f8-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1226.dmp
�
00a;C:\Windows\Temp\WER-57653835-0.sysdata.xml
C:\Windows\Temp\WE
RBB06.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1bc7bb06

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: bf35dd8f-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1224.dmp
�
00a;C:\Windows\Temp\WER-57588159-0.sysdata.xml
C:\Windows\Temp\WE
RBA89.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1b22ba89

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 980e676b-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1819.dmp
�
00a;C:\Windows\Temp\WER-78875525-0.sysdata.xml
C:\Windows\Temp\WE
R8D2A.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_189b8d2a

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 28507878-032c-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1220.dmp
�
00a;C:\Windows\Temp\WER-57350210-0.sysdata.xml
C:\Windows\Temp\WE
R1AA3.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_18471aa3

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 0a3bda7e-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1227.dmp
�
00a;C:\Windows\Temp\WER-57743582-0.sysdata.xml
C:\Windows\Temp\WE
R1A64.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_16e91a64

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: f4b409e3-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0
&#x
re:
C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_06c0001f

Analysis symbol: 
Rechec
king for solution: 0
Report Id: 98c3a2db-032f-11e5-b6d2-88ae1dfad
3f8
Report Status: 0
5/25/2015 10:44 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1844.dmp
�
00a;C:\Windows\Temp\WER-510092-0.sysdata.xml
C:\Windows\Temp\WERE
0FB.tmp.WERInternalMetadata.xml

These files may b
e available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0a5be10b

Analysis symbol: �
d;
Rechecking for solution: 0
Report Id: 98bfd23d-032f-11e
5-b6d2-88ae1dfad3f8
Report Status: 4
5/25/2015 10:33 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;
Event Name: APPCRASH
Response: Not available�
d;
Cab Id: 0

Problem signature:
&#x
000a;P1: evilwithin.exe
P2: 1.0.0.0
P3: 5555aeba&#
x000d;
P4: evilwithin.exe
P5: 1.0.0.0
P6: 5
555aeba
P7: c0000005
P8: 00000000001e4fef
&
#x000a;P9: 
P10: 

Attached files:&
#x000d;
C:\Users\Preferred Customer\AppData\Local\Temp\WER4DCA.tmp.WERInt
ernalMetadata.xml

These files may be available he
re:
C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_1a8070e4

Analysis symbol: 
Rechec
king for solution: 0
Report Id: 1a342748-032e-11e5-9ba9-88ae1dfad
3f8
Report Status: 0
5/25/2015 10:33 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1833.dmp
�
00a;C:\Windows\Temp\WER-79710754-0.sysdata.xml
C:\Windows\Temp\WE
R4B6A.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_02e04b6a

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 1a27a3f9-032e-1
1e5-9ba9-88ae1dfad3f8
Report Status: 4
5/25/2015 10:33 PM
Windows Error Reporting Fault bucket 246441335, type 19&
#x000d;
Event Name: BEX
Response: Not available
&#x
000a;Cab Id: 0

Problem signature:

P1: DriverUpdate.exe
P2: 2.3.1.0
P3: 551d4cfe�
0d;
P4: UnifiedLogger.dll_unloaded
P5: 0.0.0.0
�
00a;P6: 5511b23f
P7: 60546f78
P8: c0000005

P9: 00000008
P10: 

Attache
d files:
C:\Users\Preferred Customer\AppData\Local\Temp\WERED63.t
mp.WERInternalMetadata.xml

These files may be ava
ilable here:
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\A
ppCrash_DriverUpdate.exe_e86aa66961421b52d73775183b332383565776_173c01ad


Analysis symbol: 
Rechecking for solution
: 0
Report Id: 0bf0d251-032e-11e5-9ba9-88ae1dfad3f8
�
a;Report Status: 0
5/25/2015 10:33 PM
Windows Error Reporting Fault bucket 246441314, type 19&
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1223.dmp
�
00a;C:\Windows\Temp\WER-57507615-0.sysdata.xml
C:\Windows\Temp\WE
R8141.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ea98141

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 680d7e3b-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1212.dmp
�
00a;C:\Windows\Temp\WER-56847996-0.sysdata.xml
C:\Windows\Temp\WE
R73C9.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ce373d9

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: dedccbc0-02f8-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1226.dmp
�
00a;C:\Windows\Temp\WER-57653835-0.sysdata.xml
C:\Windows\Temp\WE
RBB06.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1bc7bb06

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: bf35dd8f-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1224.dmp
�
00a;C:\Windows\Temp\WER-57588159-0.sysdata.xml
C:\Windows\Temp\WE
RBA89.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1b22ba89

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 980e676b-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1220.dmp
�
00a;C:\Windows\Temp\WER-57350210-0.sysdata.xml
C:\Windows\Temp\WE
R1AA3.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_18471aa3

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 0a3bda7e-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0
&#x
: The_Fall_Of_The_New_Age.exe
P2: 4.1.5.1944
P3: 5
1b0ce73
P4: 382a
P5: 2048
P6: �
0d;
P7: 
P8: 
P9: 
P10: �
00d;

Attached files:
C:\Users\Preferred Cu
stomer\AppData\Local\Temp\WER3978.tmp.appcompat.txt
C:\Users\Pref
erred Customer\AppData\Local\Temp\WER3CB4.tmp.WERInternalMetadata.xml
&#x
000a;
These files may be available here:
C:\Users\
Preferred Customer\AppData\Local\Microsoft\Windows\WER\ReportArchive\Critical_Th
e_Fall_Of_The__1289cf2c91759f9967cc06f7715920ab59ddea_1776536e
&#
x000d;
Analysis symbol: 
Rechecking for solution: 0
;
Report Id: 84146efa-02fa-11e5-9ba9-88ae1dfad3f8
Report S
tatus: 0
5/25/2015 4:24 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: AppHangB1
Response: Not available

;Cab Id: 0

Problem signature:
P1:
TS4.exe
P2: 1.7.65.1020
P3: 555636ec
�
a;P4: 369c
P5: 6144
P6: 
P7: �
d;
P8: 
P9: 
P10: 

&
#x000a;Attached files:
C:\Users\Preferred Customer\AppData\Local\
Temp\WER406B.tmp.appcompat.txt
C:\Users\Preferred Customer\AppDat
a\Local\Temp\WER44A0.tmp.WERInternalMetadata.xml


These files may be available here:
C:\Users\Preferred Customer\Ap
pData\Local\Microsoft\Windows\WER\ReportArchive\Critical_TS4.exe_7fc5be2c8140853
8aff1f555ffbb0d576c987ed_1ede4be0

Analysis symbol
: 
Rechecking for solution: 0
Report Id: 8564256502fa-11e5-9ba9-88ae1dfad3f8
Report Status: 1
5/25/2015 4:23 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;
Event Name: APPCRASH
Response: Not available�
d;
Cab Id: 0

Problem signature:
&#x
000a;P1: evilwithin.exe
P2: 1.0.0.0
P3: 5555aeba&#
x000d;
P4: evilwithin.exe
P5: 1.0.0.0
P6: 5
555aeba
P7: c0000005
P8: 00000000001e4fef
&
#x000a;P9: 
P10: 

Attached files:&
#x000d;
C:\Users\Preferred Customer\AppData\Local\Temp\WER820C.tmp.WERInt
ernalMetadata.xml

These files may be available he
re:
C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_04b9becd

Analysis symbol: 
Rechec
king for solution: 0
Report Id: 682db0e3-02fa-11e5-9ba9-88ae1dfad
3f8
Report Status: 0
5/25/2015 4:23 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1223.dmp
�
00a;C:\Windows\Temp\WER-57507615-0.sysdata.xml
C:\Windows\Temp\WE
R8141.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ea98141

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 680d7e3b-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 4
5/25/2015 4:21 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;
Event Name: APPCRASH
Response: Not available�
d;
Cab Id: 0

Problem signature:
&#x
000a;P1: evilwithin.exe
P2: 1.0.0.0
P3: 5555aeba&#
x000d;
P4: evilwithin.exe
P5: 1.0.0.0
P6: 5
555aeba
P7: c0000005
P8: 00000000001e4fef
&
#x000a;P9: 
P10: 

Attached files:&
#x000d;
C:\Users\Preferred Customer\AppData\Local\Temp\WER1B7D.tmp.WERInt
ernalMetadata.xml

These files may be available he
re:
C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_1de397dd

Analysis symbol: 
Rechec
king for solution: 0
Report Id: 0a59ea3e-02fa-11e5-9ba9-88ae1dfad
3f8
Report Status: 0
5/25/2015 4:21 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1220.dmp
�
00a;C:\Windows\Temp\WER-57350210-0.sysdata.xml
C:\Windows\Temp\WE
R1AA3.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_18471aa3

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 0a3bda7e-02fa-1
1e5-9ba9-88ae1dfad3f8
Report Status: 4
5/25/2015 4:12 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;
Event Name: APPCRASH
Response: Not available�
d;
Cab Id: 0

Problem signature:
&#x
000a;P1: evilwithin.exe
P2: 1.0.0.0
P3: 5555aeba&#
x000d;
P4: evilwithin.exe
P5: 1.0.0.0
P6: 5
555aeba
P7: c0000005
P8: 00000000001e4fef
&
#x000a;P9: 
P10: 

Attached files:&
#x000d;
C:\Users\Preferred Customer\AppData\Local\Temp\WER731E.tmp.WERInt
ernalMetadata.xml

These files may be available he
re:
C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_1eb7a841

Analysis symbol: 
Rechec
king for solution: 0
Report Id: deed46be-02f8-11e5-9ba9-88ae1dfad
3f8
Report Status: 0
5/25/2015 4:12 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1212.dmp
�
00a;C:\Windows\Temp\WER-56847996-0.sysdata.xml
C:\Windows\Temp\WE
R73C9.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ce373d9

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: dedccbc0-02f8-1
1e5-9ba9-88ae1dfad3f8
Report Status: 4
5/25/2015 4:07 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;
Event Name: APPCRASH
Response: Not available�
d;
Cab Id: 0

Problem signature:
&#x
000a;P1: evilwithin.exe
P2: 1.0.0.0
P3: 5555aeba&#
x000d;
P4: evilwithin.exe
P5: 1.0.0.0
P6: 5
555aeba
P7: c0000005
P8: 00000000001e4fef
&
#x000a;P9: 
P10: 

Attached files:&
#x000d;
C:\Users\Preferred Customer\AppData\Local\Temp\WER7C03.tmp.WERInt
ernalMetadata.xml

These files may be available he
re:
C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_0846aaff

Analysis symbol: 
Rechec
king for solution: 0
Report Id: 1c2dac0d-02f8-11e5-9ba9-88ae1dfad
3f8
Report Status: 0
5/25/2015 4:07 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: LiveKernelEvent
Response: Not available
&
#x000a;Cab Id: 0

Problem signature:
�
a;P1: 
P2: 
P3: 
P4: 
�
a;P5: 
P6: 
P7: 
P8: 
�
a;P9: 
P10: 

Attached files:�
d;
C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1207.dmp
�
00a;C:\Windows\Temp\WER-56521018-0.sysdata.xml
C:\Windows\Temp\WE
R8FE1.tmp.WERInternalMetadata.xml

These files may
be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_12a68fe1

Analysis symbol: �
00d;
Rechecking for solution: 0
Report Id: 1bfeac1d-02f8-1
1e5-9ba9-88ae1dfad3f8
Report Status: 4
5/25/2015 4:05 PM
Windows Error Reporting Fault bucket 186224898, type 20&
#x000d;
Event Name: APPCRASH
Response: Not available�
d;
Cab Id: 0

Problem signature:
&#x
000a;P1: evilwithin.exe
P2: 1.0.0.0
P3: 5555aeba&#
x000d;
P4: evilwithin.exe
P5: 1.0.0.0
P6: 5
555aeba
P7: c0000005
P8: 00000000001e52d5
&
#x000a;P9: 
P10: 

Attached files:&
#x000d;
C:\Users\Preferred Customer\AppData\Local\Temp\WER5300.tmp.WERInt
ernalMetadata.xml

These files may be available he
re:
C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_defb484cf7d7250b996cf12102a9551d6b09f19
_1c387a6e

Analysis symbol: 
Rechec
king for solution: 0
Report Id: c8af0184-02f7-11e5-9ba9-88ae1dfad
3f8
Report Status: 0
5/25/2015 1:58 PM
Windows Error Reporting Fault bucket 1215553763, type 17

Event Name: APPCRASH
Response: Not available�
0d;
Cab Id: 0

Problem signature:
&#
x000a;P1: TS4.exe
P2: 1.7.65.1020
P3: 555636ec�
00d;
P4: TS4.exe
P5: 1.7.65.1020
P6: 555636
ec
P7: c0000005
P8: 00d31f1b
P9: &#
x000d;
P10: 

Attached files:
�
a;C:\Users\Preferred Customer\AppData\Local\Temp\WER8F71.tmp.WERInternalMetadata
.xml

These files may be available here:
&#
x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\WER\ReportArch
ive\AppCrash_TS4.exe_5f6f1eb3076d41c3a2589e4a4b5ff21297c527_0ff8700f
�
00a;
Analysis symbol: 
Rechecking for solution: 0&
#x000d;
Report Id: d0da0bac-02e5-11e5-9ba9-88ae1dfad3f8
Re
port Status: 0
5/25/2015 2:14 AM
Windows Error Reporting Fault bucket 3866807218, type 5&
#x000d;
Event Name: RADAR_PRE_LEAK_WOW64
Response: Not ava
ilable
Cab Id: 0

Problem signature
:
P1: The_Fall_Of_The_New_Age.exe
P2: 4.1.5.1944&#
x000d;
P3: 6.1.7601.2.1.0
P4: 
P5: 

P6: 
P7: 
P8: 
P9: 

P10: 

Attached files:
C:\U
sers\Preferred Customer\AppData\Local\Temp\RDRBEFC.tmp\empty.txt


These files may be available here:

�
a;
Analysis symbol: 
Rechecking for solution: 0&#x
000d;
Report Id: bc210833-0283-11e5-9ba9-88ae1dfad3f8
Repo
rt Status: 0
5/25/2015 2:10 AM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: APPCRASH
Response: Not available

Cab Id: 0

Problem signature:
P1: T
he_Fall_Of_The_New_Age.exe
P2: 4.1.5.1944
P3: 51b0
ce73
P4: ntdll.dll
P5: 6.1.7601.18839
�
0a;P6: 553e8808
P7: c0000005
P8: 00022322
&
0d;
C:\Windows\Temp\WER341B.tmp.appcompat.txt
C:\Windows\T
emp\WER34B8.tmp.WERInternalMetadata.xml
C:\Windows\Temp\WER34B9.t
mp.hdmp
C:\Windows\Temp\WER3508.tmp.mdmp

&
#x000a;These files may be available here:
C:\ProgramData\Microsof
t\Windows\WER\ReportArchive\AppCrash_PsiService_2.exe_a949e814631867420df1369a8c
bae53ac2c1c6_03d0bc1e

Analysis symbol: 
&#
x000a;Rechecking for solution: 0
Report Id: df93c657-e392-11e4-b4
12-88ae1dfad3f8
Report Status: 0
4/17/2015 8:31 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: APPCRASH
Response: Not available

Cab Id: 0

Problem signature:
P1: i
viRegMgr.exe
P2: 1.0.4.0
P3: 459cd531
�
0a;P4: StackHash_0a9e
P5: 0.0.0.0
P6: 00000000�
00d;
P7: c0000005
P8: 75436cc4
P9: 

P10: 

Attached files:
C:\W
indows\Temp\WER35A1.tmp.appcompat.txt
C:\Windows\Temp\WER35E0.tmp
.WERInternalMetadata.xml
C:\Windows\Temp\WER35E1.tmp.hdmp

C:\Windows\Temp\WER3601.tmp.mdmp

These fi
les may be available here:
C:\ProgramData\Microsoft\Windows\WER\R
eportQueue\AppCrash_iviRegMgr.exe_8532e557a3d7d813d5a4845dd3ff0188b199a47_cab_0b
c8361d

Analysis symbol: 
Recheckin
g for solution: 0
Report Id: dfcce75e-e392-11e4-b412-88ae1dfad3f8

Report Status: 64
4/17/2015 8:31 PM
Windows Error Reporting Fault bucket 2563075263, type 5&
#x000d;
Event Name: BEX
Response: Not available
&#x
000a;Cab Id: 0

Problem signature:

P1: ccSvcHst.exe
P2: 109.0.0.107
P3: 4a92f9d9�
0d;
P4: StackHash_0a9e
P5: 0.0.0.0
P6: 0000
0000
P7: 75436cc4
P8: c0000005
P9:
00000008
P10: 

Attached files:�
00d;
C:\Windows\Temp\WER2E41.tmp.appcompat.txt
C:\Windows\
Temp\WER2E80.tmp.WERInternalMetadata.xml
C:\Windows\Temp\WER2E81.
tmp.hdmp
C:\Windows\Temp\WER30A4.tmp.mdmp


These files may be available here:
C:\ProgramData\Microso
ft\Windows\WER\ReportArchive\AppCrash_ccSvcHst.exe_8e9f5b1556632b2d3f4d3a2123cc2
a12771e4d3d_03d05ca0

Analysis symbol: 
&#x
000a;Rechecking for solution: 0
Report Id: deaa7f7d-e392-11e4-b41
2-88ae1dfad3f8
Report Status: 0
4/17/2015 8:31 PM
Windows Error Reporting Fault bucket 452704182, type 5&#
x000d;
Event Name: ScriptedDiagFailure
Response: Not avail
able
Cab Id: 0

Problem signature:&
#x000d;
P1: Microsoft Windows.NetworkDiagnostics.1.0
P2: D
efault
P3: 1.0.0.0
P4: Default
P5:

P6: 
P7: 
P8: 
P9:

P10: 

Attached files:
�
00a;C:\Users\Preferred Customer\AppData\Local\Temp\msdt\_27DA369A-9E68-49B7-91DE
-316787E9CEFD_\Pkg1E88.cab

These files may be ava
ilable here:
C:\Users\Preferred Customer\AppData\Local\Microsoft\
Windows\WER\ReportArchive\NonCritical_Microsoft Window_bd5996727e9ea1acda90841fa
2c99a88df4fb9d6_0fac3581

Analysis symbol: 
;
Rechecking for solution: 0
Report Id: b5173cfd-e540-11e4
-8b71-88ae1dfad3f8
Report Status: 0
4/17/2015 8:31 PM
Windows Error Reporting Fault bucket , type 0
&#x
000a;Event Name: ScriptedDiagFailure
Response: Not available�
0d;
Cab Id: 0

Problem signature:
&#
x000a;P1: Microsoft Windows.NetworkDiagnostics.1.0
P2: Default&#x
000d;
P3: 1.0.0.0
P4: Default
P5: 
&
#x000a;P6: 
P7: 
P8: 
P9: 
&
#x000a;P10: 

Attached files:
C:\Us
ers\Preferred Customer\AppData\Local\Temp\msdt\_27DA369A-9E68-49B7-91DE-316787E9
Age.exe version 4.1.5.1944 stopped interacting with Windows and was closed. To s
ee if more information about the problem is available, check the problem history
in the Action Center control panel.
 Process ID: 170c
&#x
000a; Start Time: 01d0968ffb770427
 Termination Time: 349

 Application Path: C:\Program Files (x86)\Legacy Games\Fall of the New A
ge\The_Fall_Of_The_New_Age.exe
 Report Id: 

5/25/2015 4:24 PM
Application Hang
The program TS4.exe version 1.7.
65.1020 stopped interacting with Windows and was closed. To see if more informat
ion about the problem is available, check the problem history in the Action Cent
er control panel.
 Process ID: 1728
 Start Time: 0
1d096f2e0582474
 Termination Time: 347
 Applicatio
n Path: C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe
&
#x000a; Report Id: