System Information report written at: 02/08/18 06:24:15 System Name: DESKTOP-2V4U062 [System Summary] Item Value OS Name Microsoft Windows 10 Pro Version 10.0.16299 Build 16299 Other OS Description Not Available OS Manufacturer Microsoft Corporation System Name DESKTOP-2V4U062 System Manufacturer MICRO-STAR INTERNATIONAL CO.,LTD System Model MS-7597 System Type x64-based PC System SKU To Be Filled By O.E.M. Processor AMD Athlon(tm) II X2 250 Processor, 3000 Mhz, 2 Core(s), 2 Logical Processor(s) BIOS Version/Date American Megatrends Inc. V2.10, 9/22/2011 SMBIOS Version 2.5 Embedded Controller Version 255.255 BIOS Mode Legacy BaseBoard Manufacturer MICRO-STAR INTERNATIONAL CO.,LTD BaseBoard Model Not Available BaseBoard Name Base Board Platform Role Desktop Secure Boot State Unsupported PCR7 Configuration Binding Not Possible Windows Directory C:\WINDOWS System Directory C:\WINDOWS\system32 Boot Device \Device\HarddiskVolume1 Locale United States Hardware Abstraction Layer Version = "10.0.16299.201" User Name DESKTOP-2V4U062\Windows-PC Time Zone Central Europe Standard Time Installed Physical Memory (RAM) 8.00 GB Total Physical Memory 8.00 GB Available Physical Memory 2.42 GB Total Virtual Memory 11.6 GB Available Virtual Memory 3.11 GB Page File Space 3.58 GB Page File C:\pagefile.sys Virtualization-based security Not enabled Device Encryption Support Reasons for failed automatic device encryption: TPM is not usable, PCR7 binding is not supported, Hardware Security Test Interface failed and device is not InstantGo, Un-allowed DMA capable bus/device(s) detected, TPM is not usable Hyper-V - VM Monitor Mode Extensions Yes Hyper-V - Second Level Address Translation Extensions Yes Hyper-V - Virtualization Enabled in Firmware Yes Hyper-V - Data Execution Protection Yes [Hardware Resources] [Conflicts/Sharing] Resource Device I/O Port 0x00000000-0x0000000F Direct memory access controller I/O Port 0x00000000-0x0000000F PCI Bus IRQ 20 NVIDIA nForce System Management Controller IRQ 20 NVIDIA nForce Serial ATA Controller I/O Port 0x000003C0-0x000003DF AMD Radeon HD 6670 I/O Port 0x000003C0-0x000003DF PCI Express Root Port IRQ 21 NVIDIA nForce Serial ATA Controller IRQ 21 High Definition Audio Controller Memory Address 0xD0000-0xDFFFF PCI Bus Memory Address 0xD0000-0xDFFFF Motherboard resources Memory Address 0xA0000-0xBFFFF AMD Radeon HD 6670 Memory Address 0xA0000-0xBFFFF PCI Bus Memory Address 0xA0000-0xBFFFF PCI Express Root Port Memory Address 0xC0000000-0xCFFFFFFF AMD Radeon HD 6670 Memory Address 0xC0000000-0xCFFFFFFF PCI Bus Memory Address 0xC0000000-0xCFFFFFFF PCI Express Root Port I/O Port 0x000003B0-0x000003BB AMD Radeon HD 6670 I/O Port 0x000003B0-0x000003BB PCI Express Root Port I/O Port 0x0000D000-0x0000D0FF AMD Radeon HD 6670 I/O Port 0x0000D000-0x0000D0FF PCI Express Root Port [DMA] Resource Device Status Channel 4 Direct memory access controller OK [Forced Hardware] Device PNP Device ID [I/O] Resource Device Status 0x00000060-0x00000060 Motherboard resources OK 0x00000064-0x00000064 Motherboard resources OK 0x0000D000-0x0000D0FF AMD Radeon HD 6670 OK 0x0000D000-0x0000D0FF PCI Express Root Port OK 0x000003B0-0x000003BB AMD Radeon HD 6670 OK 0x000003B0-0x000003BB PCI Express Root Port OK 0x000003C0-0x000003DF AMD Radeon HD 6670 OK 0x000003C0-0x000003DF PCI Express Root Port OK 0x000003F8-0x000003FF Communications Port (COM1) OK 0x000002F8-0x000002FF Communications Port (COM2) OK 0x00000070-0x00000071 System CMOS/real time clock OK 0x00000020-0x00000021 Programmable interrupt controller OK 0x000000A0-0x000000A1 Programmable interrupt controller OK 0x00000000-0x0000000F Direct memory access controller OK 0x00000000-0x0000000F PCI Bus OK 0x00000081-0x00000083 Direct memory access controller OK 0x00000087-0x00000087 Direct memory access controller OK 0x00000089-0x0000008B Direct memory access controller OK 0x0000008F-0x0000008F Direct memory access controller OK 0x000000C0-0x000000DF Direct memory access controller OK 0x00000D00-0x0000FFFF PCI Bus OK 0x0000E000-0x0000EFFF PCI Express Root Port OK 0x0000FFA0-0x0000FFAF Standard Dual Channel PCI IDE Controller OK 0x00000378-0x0000037F Printer Port (LPT1) OK 0x00000010-0x0000001F Motherboard resources OK 0x00000022-0x0000003F Motherboard resources OK 0x00000044-0x0000004D Motherboard resources OK 0x00000050-0x0000005F Motherboard resources OK 0x00000062-0x00000063 Motherboard resources OK 0x00000065-0x0000006F Motherboard resources OK 0x00000072-0x0000007F Motherboard resources OK 0x00000080-0x00000080 Motherboard resources OK 0x00000084-0x00000086 Motherboard resources OK 0x00000088-0x00000088 Motherboard resources OK 0x0000008C-0x0000008E Motherboard resources OK 0x00000090-0x0000009F Motherboard resources OK 0x000000A2-0x000000BF Motherboard resources OK 0x000000E0-0x000000EF Motherboard resources OK 0x000004D0-0x000004D1 Motherboard resources OK 0x00000800-0x0000080F Motherboard resources OK 0x00004000-0x0000407F Motherboard resources OK 0x00004080-0x000040FF Motherboard resources OK 0x00004400-0x0000447F Motherboard resources OK 0x00004480-0x000044FF Motherboard resources OK 0x00004800-0x0000487F Motherboard resources OK 0x00004880-0x000048FF Motherboard resources OK 0x00004C00-0x00004C7F Motherboard resources OK 0x00004C80-0x00004CFF Motherboard resources OK 0x00000A00-0x00000ADF Motherboard resources OK 0x00000AE0-0x00000AEF Motherboard resources OK 0x000000F0-0x000000FF Numeric data processor OK 0x0000E800-0x0000E8FF Realtek PCIe GBE Family Controller OK 0x0000C080-0x0000C087 NVIDIA nForce Serial ATA Controller OK 0x0000C000-0x0000C003 NVIDIA nForce Serial ATA Controller OK 0x0000BC00-0x0000BC07 NVIDIA nForce Serial ATA Controller OK 0x0000B880-0x0000B883 NVIDIA nForce Serial ATA Controller OK 0x0000B800-0x0000B80F NVIDIA nForce Serial ATA Controller OK 0x0000B480-0x0000B487 NVIDIA nForce Serial ATA Controller OK 0x0000B400-0x0000B403 NVIDIA nForce Serial ATA Controller OK 0x0000B080-0x0000B087 NVIDIA nForce Serial ATA Controller OK 0x0000B000-0x0000B003 NVIDIA nForce Serial ATA Controller OK 0x0000AC00-0x0000AC0F NVIDIA nForce Serial ATA Controller OK 0x000001F0-0x000001F7 ATA Channel 0 OK 0x000003F6-0x000003F6 ATA Channel 0 OK 0x00000170-0x00000177 ATA Channel 1 OK 0x00000376-0x00000376 ATA Channel 1 OK 0x00000061-0x00000061 System speaker OK 0x00004900-0x0000493F PCI Controller OK 0x00004D00-0x00004D3F PCI Controller OK 0x00004E00-0x00004E3F PCI Controller OK 0x00000040-0x00000043 System timer OK [IRQs] Resource Device Status IRQ 4294967290 AMD Radeon HD 6670 OK IRQ 19 High Definition Audio Bus OK IRQ 4 Communications Port (COM1) OK IRQ 3 Communications Port (COM2) OK IRQ 8 System CMOS/real time clock OK IRQ 4294967292 PCI Express Root Port OK IRQ 4294967294 PCI Express Root Port OK IRQ 20 NVIDIA nForce System Management Controller OK IRQ 20 NVIDIA nForce Serial ATA Controller OK IRQ 54 Microsoft ACPI-Compliant System OK IRQ 55 Microsoft ACPI-Compliant System OK IRQ 56 Microsoft ACPI-Compliant System OK IRQ 57 Microsoft ACPI-Compliant System OK IRQ 58 Microsoft ACPI-Compliant System OK IRQ 59 Microsoft ACPI-Compliant System OK IRQ 60 Microsoft ACPI-Compliant System OK IRQ 61 Microsoft ACPI-Compliant System OK IRQ 62 Microsoft ACPI-Compliant System OK IRQ 63 Microsoft ACPI-Compliant System OK IRQ 64 Microsoft ACPI-Compliant System OK IRQ 65 Microsoft ACPI-Compliant System OK IRQ 66 Microsoft ACPI-Compliant System OK IRQ 67 Microsoft ACPI-Compliant System OK IRQ 68 Microsoft ACPI-Compliant System OK IRQ 69 Microsoft ACPI-Compliant System OK IRQ 70 Microsoft ACPI-Compliant System OK IRQ 71 Microsoft ACPI-Compliant System OK IRQ 72 Microsoft ACPI-Compliant System OK IRQ 73 Microsoft ACPI-Compliant System OK IRQ 74 Microsoft ACPI-Compliant System OK IRQ 75 Microsoft ACPI-Compliant System OK IRQ 76 Microsoft ACPI-Compliant System OK IRQ 77 Microsoft ACPI-Compliant System OK IRQ 78 Microsoft ACPI-Compliant System OK IRQ 79 Microsoft ACPI-Compliant System OK IRQ 80 Microsoft ACPI-Compliant System OK IRQ 81 Microsoft ACPI-Compliant System OK IRQ 82 Microsoft ACPI-Compliant System OK IRQ 83 Microsoft ACPI-Compliant System OK IRQ 84 Microsoft ACPI-Compliant System OK IRQ 85 Microsoft ACPI-Compliant System OK IRQ 86 Microsoft ACPI-Compliant System OK IRQ 87 Microsoft ACPI-Compliant System OK IRQ 88 Microsoft ACPI-Compliant System OK IRQ 89 Microsoft ACPI-Compliant System OK IRQ 90 Microsoft ACPI-Compliant System OK IRQ 91 Microsoft ACPI-Compliant System OK IRQ 92 Microsoft ACPI-Compliant System OK IRQ 93 Microsoft ACPI-Compliant System OK IRQ 94 Microsoft ACPI-Compliant System OK IRQ 95 Microsoft ACPI-Compliant System OK IRQ 96 Microsoft ACPI-Compliant System OK IRQ 97 Microsoft ACPI-Compliant System OK IRQ 98 Microsoft ACPI-Compliant System OK IRQ 99 Microsoft ACPI-Compliant System OK IRQ 100 Microsoft ACPI-Compliant System OK IRQ 101 Microsoft ACPI-Compliant System OK IRQ 102 Microsoft ACPI-Compliant System OK IRQ 103 Microsoft ACPI-Compliant System OK IRQ 104 Microsoft ACPI-Compliant System OK IRQ 105 Microsoft ACPI-Compliant System OK IRQ 106 Microsoft ACPI-Compliant System OK IRQ 107 Microsoft ACPI-Compliant System OK IRQ 108 Microsoft ACPI-Compliant System OK IRQ 109 Microsoft ACPI-Compliant System OK IRQ 110 Microsoft ACPI-Compliant System OK IRQ 111 Microsoft ACPI-Compliant System OK IRQ 112 Microsoft ACPI-Compliant System OK IRQ 113 Microsoft ACPI-Compliant System OK IRQ 114 Microsoft ACPI-Compliant System OK IRQ 115 Microsoft ACPI-Compliant System OK IRQ 116 Microsoft ACPI-Compliant System OK IRQ 117 Microsoft ACPI-Compliant System OK IRQ 118 Microsoft ACPI-Compliant System OK IRQ 119 Microsoft ACPI-Compliant System OK IRQ 120 Microsoft ACPI-Compliant System OK IRQ 121 Microsoft ACPI-Compliant System OK IRQ 122 Microsoft ACPI-Compliant System OK IRQ 123 Microsoft ACPI-Compliant System OK IRQ 124 Microsoft ACPI-Compliant System OK IRQ 125 Microsoft ACPI-Compliant System OK IRQ 126 Microsoft ACPI-Compliant System OK IRQ 127 Microsoft ACPI-Compliant System OK IRQ 128 Microsoft ACPI-Compliant System OK IRQ 129 Microsoft ACPI-Compliant System OK IRQ 130 Microsoft ACPI-Compliant System OK IRQ 131 Microsoft ACPI-Compliant System OK IRQ 132 Microsoft ACPI-Compliant System OK IRQ 133 Microsoft ACPI-Compliant System OK IRQ 134 Microsoft ACPI-Compliant System OK IRQ 135 Microsoft ACPI-Compliant System OK IRQ 136 Microsoft ACPI-Compliant System OK IRQ 137 Microsoft ACPI-Compliant System OK IRQ 138 Microsoft ACPI-Compliant System OK IRQ 139 Microsoft ACPI-Compliant System OK IRQ 140 Microsoft ACPI-Compliant System OK IRQ 141 Microsoft ACPI-Compliant System OK IRQ 142 Microsoft ACPI-Compliant System OK IRQ 143 Microsoft ACPI-Compliant System OK IRQ 144 Microsoft ACPI-Compliant System OK IRQ 145 Microsoft ACPI-Compliant System OK IRQ 146 Microsoft ACPI-Compliant System OK IRQ 147 Microsoft ACPI-Compliant System OK IRQ 148 Microsoft ACPI-Compliant System OK IRQ 149 Microsoft ACPI-Compliant System OK IRQ 150 Microsoft ACPI-Compliant System OK IRQ 151 Microsoft ACPI-Compliant System OK IRQ 152 Microsoft ACPI-Compliant System OK IRQ 153 Microsoft ACPI-Compliant System OK IRQ 154 Microsoft ACPI-Compliant System OK IRQ 155 Microsoft ACPI-Compliant System OK IRQ 156 Microsoft ACPI-Compliant System OK IRQ 157 Microsoft ACPI-Compliant System OK IRQ 158 Microsoft ACPI-Compliant System OK IRQ 159 Microsoft ACPI-Compliant System OK IRQ 160 Microsoft ACPI-Compliant System OK IRQ 161 Microsoft ACPI-Compliant System OK IRQ 162 Microsoft ACPI-Compliant System OK IRQ 163 Microsoft ACPI-Compliant System OK IRQ 164 Microsoft ACPI-Compliant System OK IRQ 165 Microsoft ACPI-Compliant System OK IRQ 166 Microsoft ACPI-Compliant System OK IRQ 167 Microsoft ACPI-Compliant System OK IRQ 168 Microsoft ACPI-Compliant System OK IRQ 169 Microsoft ACPI-Compliant System OK IRQ 170 Microsoft ACPI-Compliant System OK IRQ 171 Microsoft ACPI-Compliant System OK IRQ 172 Microsoft ACPI-Compliant System OK IRQ 173 Microsoft ACPI-Compliant System OK IRQ 174 Microsoft ACPI-Compliant System OK IRQ 175 Microsoft ACPI-Compliant System OK IRQ 176 Microsoft ACPI-Compliant System OK IRQ 177 Microsoft ACPI-Compliant System OK IRQ 178 Microsoft ACPI-Compliant System OK IRQ 179 Microsoft ACPI-Compliant System OK IRQ 180 Microsoft ACPI-Compliant System OK IRQ 181 Microsoft ACPI-Compliant System OK IRQ 182 Microsoft ACPI-Compliant System OK IRQ 183 Microsoft ACPI-Compliant System OK IRQ 184 Microsoft ACPI-Compliant System OK IRQ 185 Microsoft ACPI-Compliant System OK IRQ 186 Microsoft ACPI-Compliant System OK IRQ 187 Microsoft ACPI-Compliant System OK IRQ 188 Microsoft ACPI-Compliant System OK IRQ 189 Microsoft ACPI-Compliant System OK IRQ 190 Microsoft ACPI-Compliant System OK IRQ 191 Microsoft ACPI-Compliant System OK IRQ 192 Microsoft ACPI-Compliant System OK IRQ 193 Microsoft ACPI-Compliant System OK IRQ 194 Microsoft ACPI-Compliant System OK IRQ 195 Microsoft ACPI-Compliant System OK IRQ 196 Microsoft ACPI-Compliant System OK IRQ 197 Microsoft ACPI-Compliant System OK IRQ 198 Microsoft ACPI-Compliant System OK IRQ 199 Microsoft ACPI-Compliant System OK IRQ 200 Microsoft ACPI-Compliant System OK IRQ 201 Microsoft ACPI-Compliant System OK IRQ 202 Microsoft ACPI-Compliant System OK IRQ 203 Microsoft ACPI-Compliant System OK IRQ 204 Microsoft ACPI-Compliant System OK IRQ 256 Microsoft ACPI-Compliant System OK IRQ 257 Microsoft ACPI-Compliant System OK IRQ 258 Microsoft ACPI-Compliant System OK IRQ 259 Microsoft ACPI-Compliant System OK IRQ 260 Microsoft ACPI-Compliant System OK IRQ 261 Microsoft ACPI-Compliant System OK IRQ 262 Microsoft ACPI-Compliant System OK IRQ 263 Microsoft ACPI-Compliant System OK IRQ 264 Microsoft ACPI-Compliant System OK IRQ 265 Microsoft ACPI-Compliant System OK IRQ 266 Microsoft ACPI-Compliant System OK IRQ 267 Microsoft ACPI-Compliant System OK IRQ 268 Microsoft ACPI-Compliant System OK IRQ 269 Microsoft ACPI-Compliant System OK IRQ 270 Microsoft ACPI-Compliant System OK IRQ 271 Microsoft ACPI-Compliant System OK IRQ 272 Microsoft ACPI-Compliant System OK IRQ 273 Microsoft ACPI-Compliant System OK IRQ 274 Microsoft ACPI-Compliant System OK IRQ 275 Microsoft ACPI-Compliant System OK IRQ 276 Microsoft ACPI-Compliant System OK IRQ 277 Microsoft ACPI-Compliant System OK IRQ 278 Microsoft ACPI-Compliant System OK IRQ 279 Microsoft ACPI-Compliant System OK IRQ 280 Microsoft ACPI-Compliant System OK IRQ 281 Microsoft ACPI-Compliant System OK IRQ 282 Microsoft ACPI-Compliant System OK IRQ 283 Microsoft ACPI-Compliant System OK IRQ 284 Microsoft ACPI-Compliant System OK IRQ 285 Microsoft ACPI-Compliant System OK IRQ 286 Microsoft ACPI-Compliant System OK IRQ 287 Microsoft ACPI-Compliant System OK IRQ 288 Microsoft ACPI-Compliant System OK IRQ 289 Microsoft ACPI-Compliant System OK IRQ 290 Microsoft ACPI-Compliant System OK IRQ 291 Microsoft ACPI-Compliant System OK IRQ 292 Microsoft ACPI-Compliant System OK IRQ 293 Microsoft ACPI-Compliant System OK IRQ 294 Microsoft ACPI-Compliant System OK IRQ 295 Microsoft ACPI-Compliant System OK IRQ 296 Microsoft ACPI-Compliant System OK IRQ 297 Microsoft ACPI-Compliant System OK IRQ 298 Microsoft ACPI-Compliant System OK IRQ 299 Microsoft ACPI-Compliant System OK IRQ 300 Microsoft ACPI-Compliant System OK IRQ 301 Microsoft ACPI-Compliant System OK IRQ 302 Microsoft ACPI-Compliant System OK IRQ 303 Microsoft ACPI-Compliant System OK IRQ 304 Microsoft ACPI-Compliant System OK IRQ 305 Microsoft ACPI-Compliant System OK IRQ 306 Microsoft ACPI-Compliant System OK IRQ 307 Microsoft ACPI-Compliant System OK IRQ 308 Microsoft ACPI-Compliant System OK IRQ 309 Microsoft ACPI-Compliant System OK IRQ 310 Microsoft ACPI-Compliant System OK IRQ 311 Microsoft ACPI-Compliant System OK IRQ 312 Microsoft ACPI-Compliant System OK IRQ 313 Microsoft ACPI-Compliant System OK IRQ 314 Microsoft ACPI-Compliant System OK IRQ 315 Microsoft ACPI-Compliant System OK IRQ 316 Microsoft ACPI-Compliant System OK IRQ 317 Microsoft ACPI-Compliant System OK IRQ 318 Microsoft ACPI-Compliant System OK IRQ 319 Microsoft ACPI-Compliant System OK IRQ 320 Microsoft ACPI-Compliant System OK IRQ 321 Microsoft ACPI-Compliant System OK IRQ 322 Microsoft ACPI-Compliant System OK IRQ 323 Microsoft ACPI-Compliant System OK IRQ 324 Microsoft ACPI-Compliant System OK IRQ 325 Microsoft ACPI-Compliant System OK IRQ 326 Microsoft ACPI-Compliant System OK IRQ 327 Microsoft ACPI-Compliant System OK IRQ 328 Microsoft ACPI-Compliant System OK IRQ 329 Microsoft ACPI-Compliant System OK IRQ 330 Microsoft ACPI-Compliant System OK IRQ 331 Microsoft ACPI-Compliant System OK IRQ 332 Microsoft ACPI-Compliant System OK IRQ 333 Microsoft ACPI-Compliant System OK IRQ 334 Microsoft ACPI-Compliant System OK IRQ 335 Microsoft ACPI-Compliant System OK IRQ 336 Microsoft ACPI-Compliant System OK IRQ 337 Microsoft ACPI-Compliant System OK IRQ 338 Microsoft ACPI-Compliant System OK IRQ 339 Microsoft ACPI-Compliant System OK IRQ 340 Microsoft ACPI-Compliant System OK IRQ 341 Microsoft ACPI-Compliant System OK IRQ 342 Microsoft ACPI-Compliant System OK IRQ 343 Microsoft ACPI-Compliant System OK IRQ 344 Microsoft ACPI-Compliant System OK IRQ 345 Microsoft ACPI-Compliant System OK IRQ 346 Microsoft ACPI-Compliant System OK IRQ 347 Microsoft ACPI-Compliant System OK IRQ 348 Microsoft ACPI-Compliant System OK IRQ 349 Microsoft ACPI-Compliant System OK IRQ 350 Microsoft ACPI-Compliant System OK IRQ 351 Microsoft ACPI-Compliant System OK IRQ 352 Microsoft ACPI-Compliant System OK IRQ 353 Microsoft ACPI-Compliant System OK IRQ 354 Microsoft ACPI-Compliant System OK IRQ 355 Microsoft ACPI-Compliant System OK IRQ 356 Microsoft ACPI-Compliant System OK IRQ 357 Microsoft ACPI-Compliant System OK IRQ 358 Microsoft ACPI-Compliant System OK IRQ 359 Microsoft ACPI-Compliant System OK IRQ 360 Microsoft ACPI-Compliant System OK IRQ 361 Microsoft ACPI-Compliant System OK IRQ 362 Microsoft ACPI-Compliant System OK IRQ 363 Microsoft ACPI-Compliant System OK IRQ 364 Microsoft ACPI-Compliant System OK IRQ 365 Microsoft ACPI-Compliant System OK IRQ 366 Microsoft ACPI-Compliant System OK IRQ 367 Microsoft ACPI-Compliant System OK IRQ 368 Microsoft ACPI-Compliant System OK IRQ 369 Microsoft ACPI-Compliant System OK IRQ 370 Microsoft ACPI-Compliant System OK IRQ 371 Microsoft ACPI-Compliant System OK IRQ 372 Microsoft ACPI-Compliant System OK IRQ 373 Microsoft ACPI-Compliant System OK IRQ 374 Microsoft ACPI-Compliant System OK IRQ 375 Microsoft ACPI-Compliant System OK IRQ 376 Microsoft ACPI-Compliant System OK IRQ 377 Microsoft ACPI-Compliant System OK IRQ 378 Microsoft ACPI-Compliant System OK IRQ 379 Microsoft ACPI-Compliant System OK IRQ 380 Microsoft ACPI-Compliant System OK IRQ 381 Microsoft ACPI-Compliant System OK IRQ 382 Microsoft ACPI-Compliant System OK IRQ 383 Microsoft ACPI-Compliant System OK IRQ 384 Microsoft ACPI-Compliant System OK IRQ 385 Microsoft ACPI-Compliant System OK IRQ 386 Microsoft ACPI-Compliant System OK IRQ 387 Microsoft ACPI-Compliant System OK IRQ 388 Microsoft ACPI-Compliant System OK IRQ 389 Microsoft ACPI-Compliant System OK IRQ 390 Microsoft ACPI-Compliant System OK IRQ 391 Microsoft ACPI-Compliant System OK IRQ 392 Microsoft ACPI-Compliant System OK IRQ 393 Microsoft ACPI-Compliant System OK IRQ 394 Microsoft ACPI-Compliant System OK IRQ 395 Microsoft ACPI-Compliant System OK IRQ 396 Microsoft ACPI-Compliant System OK IRQ 397 Microsoft ACPI-Compliant System OK IRQ 398 Microsoft ACPI-Compliant System OK IRQ 399 Microsoft ACPI-Compliant System OK IRQ 400 Microsoft ACPI-Compliant System OK IRQ 401 Microsoft ACPI-Compliant System OK IRQ 402 Microsoft ACPI-Compliant System OK IRQ 403 Microsoft ACPI-Compliant System OK IRQ 404 Microsoft ACPI-Compliant System OK IRQ 405 Microsoft ACPI-Compliant System OK IRQ 406 Microsoft ACPI-Compliant System OK IRQ 407 Microsoft ACPI-Compliant System OK IRQ 408 Microsoft ACPI-Compliant System OK IRQ 409 Microsoft ACPI-Compliant System OK IRQ 410 Microsoft ACPI-Compliant System OK IRQ 411 Microsoft ACPI-Compliant System OK IRQ 412 Microsoft ACPI-Compliant System OK IRQ 413 Microsoft ACPI-Compliant System OK IRQ 414 Microsoft ACPI-Compliant System OK IRQ 415 Microsoft ACPI-Compliant System OK IRQ 416 Microsoft ACPI-Compliant System OK IRQ 417 Microsoft ACPI-Compliant System OK IRQ 418 Microsoft ACPI-Compliant System OK IRQ 419 Microsoft ACPI-Compliant System OK IRQ 420 Microsoft ACPI-Compliant System OK IRQ 421 Microsoft ACPI-Compliant System OK IRQ 422 Microsoft ACPI-Compliant System OK IRQ 423 Microsoft ACPI-Compliant System OK IRQ 424 Microsoft ACPI-Compliant System OK IRQ 425 Microsoft ACPI-Compliant System OK IRQ 426 Microsoft ACPI-Compliant System OK IRQ 427 Microsoft ACPI-Compliant System OK IRQ 428 Microsoft ACPI-Compliant System OK IRQ 429 Microsoft ACPI-Compliant System OK IRQ 430 Microsoft ACPI-Compliant System OK IRQ 431 Microsoft ACPI-Compliant System OK IRQ 432 Microsoft ACPI-Compliant System OK IRQ 433 Microsoft ACPI-Compliant System OK IRQ 434 Microsoft ACPI-Compliant System OK IRQ 435 Microsoft ACPI-Compliant System OK IRQ 436 Microsoft ACPI-Compliant System OK IRQ 437 Microsoft ACPI-Compliant System OK IRQ 438 Microsoft ACPI-Compliant System OK IRQ 439 Microsoft ACPI-Compliant System OK IRQ 440 Microsoft ACPI-Compliant System OK IRQ 441 Microsoft ACPI-Compliant System OK IRQ 442 Microsoft ACPI-Compliant System OK IRQ 443 Microsoft ACPI-Compliant System OK IRQ 444 Microsoft ACPI-Compliant System OK IRQ 445 Microsoft ACPI-Compliant System OK IRQ 446 Microsoft ACPI-Compliant System OK IRQ 447 Microsoft ACPI-Compliant System OK IRQ 448 Microsoft ACPI-Compliant System OK IRQ 449 Microsoft ACPI-Compliant System OK IRQ 450 Microsoft ACPI-Compliant System OK IRQ 451 Microsoft ACPI-Compliant System OK IRQ 452 Microsoft ACPI-Compliant System OK IRQ 453 Microsoft ACPI-Compliant System OK IRQ 454 Microsoft ACPI-Compliant System OK IRQ 455 Microsoft ACPI-Compliant System OK IRQ 456 Microsoft ACPI-Compliant System OK IRQ 457 Microsoft ACPI-Compliant System OK IRQ 458 Microsoft ACPI-Compliant System OK IRQ 459 Microsoft ACPI-Compliant System OK IRQ 460 Microsoft ACPI-Compliant System OK IRQ 461 Microsoft ACPI-Compliant System OK IRQ 462 Microsoft ACPI-Compliant System OK IRQ 463 Microsoft ACPI-Compliant System OK IRQ 464 Microsoft ACPI-Compliant System OK IRQ 465 Microsoft ACPI-Compliant System OK IRQ 466 Microsoft ACPI-Compliant System OK IRQ 467 Microsoft ACPI-Compliant System OK IRQ 468 Microsoft ACPI-Compliant System OK IRQ 469 Microsoft ACPI-Compliant System OK IRQ 470 Microsoft ACPI-Compliant System OK IRQ 471 Microsoft ACPI-Compliant System OK IRQ 472 Microsoft ACPI-Compliant System OK IRQ 473 Microsoft ACPI-Compliant System OK IRQ 474 Microsoft ACPI-Compliant System OK IRQ 475 Microsoft ACPI-Compliant System OK IRQ 476 Microsoft ACPI-Compliant System OK IRQ 477 Microsoft ACPI-Compliant System OK IRQ 478 Microsoft ACPI-Compliant System OK IRQ 479 Microsoft ACPI-Compliant System OK IRQ 480 Microsoft ACPI-Compliant System OK IRQ 481 Microsoft ACPI-Compliant System OK IRQ 482 Microsoft ACPI-Compliant System OK IRQ 483 Microsoft ACPI-Compliant System OK IRQ 484 Microsoft ACPI-Compliant System OK IRQ 485 Microsoft ACPI-Compliant System OK IRQ 486 Microsoft ACPI-Compliant System OK IRQ 487 Microsoft ACPI-Compliant System OK IRQ 488 Microsoft ACPI-Compliant System OK IRQ 489 Microsoft ACPI-Compliant System OK IRQ 490 Microsoft ACPI-Compliant System OK IRQ 491 Microsoft ACPI-Compliant System OK IRQ 492 Microsoft ACPI-Compliant System OK IRQ 493 Microsoft ACPI-Compliant System OK IRQ 494 Microsoft ACPI-Compliant System OK IRQ 495 Microsoft ACPI-Compliant System OK IRQ 496 Microsoft ACPI-Compliant System OK IRQ 497 Microsoft ACPI-Compliant System OK IRQ 498 Microsoft ACPI-Compliant System OK IRQ 499 Microsoft ACPI-Compliant System OK IRQ 500 Microsoft ACPI-Compliant System OK IRQ 501 Microsoft ACPI-Compliant System OK IRQ 502 Microsoft ACPI-Compliant System OK IRQ 503 Microsoft ACPI-Compliant System OK IRQ 504 Microsoft ACPI-Compliant System OK IRQ 505 Microsoft ACPI-Compliant System OK IRQ 506 Microsoft ACPI-Compliant System OK IRQ 507 Microsoft ACPI-Compliant System OK IRQ 508 Microsoft ACPI-Compliant System OK IRQ 509 Microsoft ACPI-Compliant System OK IRQ 510 Microsoft ACPI-Compliant System OK IRQ 511 Microsoft ACPI-Compliant System OK IRQ 22 Standard Enhanced PCI to USB Host Controller OK IRQ 13 Numeric data processor OK IRQ 4294967291 Realtek PCIe GBE Family Controller OK IRQ 21 NVIDIA nForce Serial ATA Controller OK IRQ 21 High Definition Audio Controller OK IRQ 14 ATA Channel 0 OK IRQ 15 ATA Channel 1 OK IRQ 4294967293 PCI Express Root Port OK IRQ 11 PCI Controller OK IRQ 0 System timer OK IRQ 23 Standard OpenHCD USB Host Controller OK [Memory] Resource Device Status 0x0000-0x9FFFF System board OK 0xC0000-0xCFFFF System board OK 0xE0000-0xFFFFF System board OK 0x100000-0xBFFFFFFF System board OK 0xFED45000-0xFFFFFFFF System board OK 0xFEC00000-0xFEC00FFF Motherboard resources OK 0xFEE00000-0xFEE00FFF Motherboard resources OK 0xC0000000-0xCFFFFFFF AMD Radeon HD 6670 OK 0xC0000000-0xCFFFFFFF PCI Bus OK 0xC0000000-0xCFFFFFFF PCI Express Root Port OK 0xDFFC0000-0xDFFDFFFF AMD Radeon HD 6670 OK 0xA0000-0xBFFFF AMD Radeon HD 6670 OK 0xA0000-0xBFFFF PCI Bus OK 0xA0000-0xBFFFF PCI Express Root Port OK 0xDFFF8000-0xDFFFBFFF High Definition Audio Bus OK 0xFEFF0000-0xFEFF0FFF High precision event timer OK 0xD0000-0xDFFFF PCI Bus OK 0xD0000-0xDFFFF Motherboard resources OK 0xF0000000-0xFED44FFF PCI Bus OK 0xDEF00000-0xDEFFFFFF PCI Express Root Port OK 0xFEB80000-0xFEBFFFFF NVIDIA nForce System Management Controller OK 0xDFE7EC00-0xDFE7ECFF Standard Enhanced PCI to USB Host Controller OK 0xD4000-0xD7FFF Motherboard resources OK 0xDE000-0xDFFFF Motherboard resources OK 0xFEC80000-0xFD93FFFF Motherboard resources OK 0xFEFE0000-0xFEFE01FF Motherboard resources OK 0xFEFE1000-0xFEFE1FFF Motherboard resources OK 0xFEE01000-0xFEEFFFFF Motherboard resources OK 0xFFB80000-0xFFFFFFFF Motherboard resources OK 0xE0000000-0xEFFFFFFF Motherboard resources OK 0xDEFFF000-0xDEFFFFFF Realtek PCIe GBE Family Controller OK 0xDEFF8000-0xDEFFBFFF Realtek PCIe GBE Family Controller OK 0xDFE7D000-0xDFE7DFFF NVIDIA nForce Serial ATA Controller OK 0xDFE7C000-0xDFE7CFFF NVIDIA nForce Serial ATA Controller OK 0xDFF00000-0xDFFFFFFF PCI Express Root Port OK 0xDFE7F000-0xDFE7FFFF Standard OpenHCD USB Host Controller OK 0xDFE78000-0xDFE7BFFF High Definition Audio Controller OK [Components] [Multimedia] [Audio Codecs] CODEC Manufacturer Description Status File Version Size Creation Date c:\windows\system32\imaadp32.acm Microsoft Corporation OK C:\WINDOWS\system32\IMAADP32.ACM 10.0.16299.15 34.05 KB (34,864 bytes) 9/29/2017 2:41 PM c:\windows\system32\l3codeca.acm Fraunhofer Institut Integrierte Schaltungen IIS Fraunhofer IIS MPEG Layer-3 Codec OK C:\WINDOWS\system32\L3CODECA.ACM 1.9.0.401 82.50 KB (84,480 bytes) 9/29/2017 2:41 PM c:\windows\system32\msadp32.acm Microsoft Corporation OK C:\WINDOWS\system32\MSADP32.ACM 10.0.16299.15 32.52 KB (33,296 bytes) 9/29/2017 2:41 PM c:\windows\system32\msgsm32.acm Microsoft Corporation OK C:\WINDOWS\system32\MSGSM32.ACM 10.0.16299.15 41.48 KB (42,480 bytes) 9/29/2017 2:41 PM c:\windows\system32\msg711.acm Microsoft Corporation OK C:\WINDOWS\system32\MSG711.ACM 10.0.16299.15 24.80 KB (25,400 bytes) 9/29/2017 2:41 PM [Video Codecs] CODEC Manufacturer Description Status File Version Size Creation Date c:\windows\system32\msrle32.dll Microsoft Corporation OK C:\WINDOWS\system32\MSRLE32.DLL 10.0.16299.15 17.50 KB (17,920 bytes) 9/29/2017 2:41 PM c:\windows\system32\iyuv_32.dll Microsoft Corporation OK C:\WINDOWS\system32\IYUV_32.DLL 10.0.16299.15 52.50 KB (53,760 bytes) 9/29/2017 2:41 PM c:\windows\system32\tsbyuv.dll Microsoft Corporation OK C:\WINDOWS\system32\TSBYUV.DLL 10.0.16299.15 16.50 KB (16,896 bytes) 9/29/2017 2:41 PM c:\windows\system32\msvidc32.dll Microsoft Corporation OK C:\WINDOWS\system32\MSVIDC32.DLL 10.0.16299.15 38.00 KB (38,912 bytes) 9/29/2017 2:41 PM c:\windows\system32\msyuv.dll Microsoft Corporation OK C:\WINDOWS\system32\MSYUV.DLL 10.0.16299.15 28.00 KB (28,672 bytes) 9/29/2017 2:41 PM [CD-ROM] Item Value Drive E: Description CD-ROM Drive Media Loaded No Media Type DVD Writer Name ATAPI iHAS122 SCSI CdRom Device Manufacturer (Standard CD-ROM drives) Status OK Transfer Rate -1.00 kbytes/sec SCSI Target ID 1 PNP Device ID SCSI\CDROM&VEN_ATAPI&PROD_IHAS122\4&1A3DCEA9&0&010100 Driver c:\windows\system32\drivers\cdrom.sys (10.0.16299.15, 156.00 KB (159,744 bytes), 9/29/2017 2:41 PM) [Sound Device] Item Value Name AMD High Definition Audio Device Manufacturer Advanced Micro Devices Status OK PNP Device ID HDAUDIO\FUNC_01&VEN_1002&DEV_AA01&SUBSYS_00AA0100&REV_1002\5&38509BD3&5&0001 Driver c:\windows\system32\drivers\atihdwt6.sys (10.0.0.3, 107.52 KB (110,096 bytes), 8/21/2017 2:58 PM) Name Realtek High Definition Audio Manufacturer Realtek Status OK PNP Device ID HDAUDIO\FUNC_01&VEN_10EC&DEV_0887&SUBSYS_14627597&REV_1003\4&3A2A0FC5&0&0001 Driver c:\windows\system32\drivers\rtkvhd64.sys (6.0.1.8351, 5.85 MB (6,129,096 bytes), 2/2/2018 3:03 PM) Name USB Audio Device Manufacturer (Generic USB Audio) Status OK PNP Device ID USB\VID_0458&PID_708F&MI_02\6&11D1468E&1&0002 Driver c:\windows\system32\drivers\usbaudio.sys (10.0.16299.15, 132.00 KB (135,168 bytes), 9/29/2017 2:40 PM) [Display] Item Value Name AMD Radeon HD 6670 PNP Device ID PCI\VEN_1002&DEV_6758&SUBSYS_E194174B&REV_00\4&210A641E&0&0048 Adapter Type AMD Radeon Graphics Processor (0x6758), Advanced Micro Devices, Inc. compatible Adapter Description AMD Radeon HD 6670 Adapter RAM 1.00 GB (1,073,741,824 bytes) Installed Drivers aticfx64.dll,aticfx64.dll,aticfx64.dll,amdxc64.dll Driver Version 15.301.1901.0 INF File oem31.inf (ati2mtag_NI section) Color Planes Not Available Color Table Entries 4294967296 Resolution 1600 x 900 x 60 hertz Bits/Pixel 32 Memory Address 0xC0000000-0xCFFFFFFF Memory Address 0xDFFC0000-0xDFFDFFFF I/O Port 0x0000D000-0x0000D0FF IRQ Channel IRQ 4294967290 I/O Port 0x000003B0-0x000003BB I/O Port 0x000003C0-0x000003DF Memory Address 0xA0000-0xBFFFF Driver c:\windows\system32\drivers\atikmpag.sys (8.14.1.6489, 659.00 KB (674,816 bytes), 8/21/2017 2:47 PM) [Infrared] Item Value [Input] [Keyboard] Item Value Description HID Keyboard Device Name Enhanced (101- or 102-key) Layout 00000409 PNP Device ID HID\IOVIRTUALKEYBOARD\1&2D595CA7&1&0000 Number of Function Keys 12 Driver c:\windows\system32\drivers\kbdhid.sys (10.0.16299.15, 39.50 KB (40,448 bytes), 9/29/2017 2:41 PM) Description USB Input Device Name Enhanced (101- or 102-key) Layout 00000409 PNP Device ID USB\VID_046D&PID_C312\5&17B5ACB0&0&1 Number of Function Keys 12 Driver c:\windows\system32\drivers\hidusb.sys (10.0.16299.15, 40.00 KB (40,960 bytes), 9/29/2017 2:41 PM) [Pointing Device] Item Value Hardware Type HID-compliant mouse Number of Buttons 0 Status OK PNP Device ID HID\IOVIRTUALMOUSE\1&4784345&1&0000 Power Management Supported No Double Click Threshold Not Available Handedness Not Available Driver c:\windows\system32\drivers\mouhid.sys (10.0.16299.15, 32.00 KB (32,768 bytes), 9/29/2017 2:41 PM) Hardware Type USB Input Device Number of Buttons 0 Status OK PNP Device ID USB\VID_046D&PID_C245&MI_00\6&2AED65A4&1&0000 Power Management Supported No Double Click Threshold Not Available Handedness Not Available Driver c:\windows\system32\drivers\hidusb.sys (10.0.16299.15, 40.00 KB (40,960 bytes), 9/29/2017 2:41 PM) [Modem] Item Value [Network] [Adapter] Item Value Name [00000000] Microsoft Kernel Debug Network Adapter Adapter Type Not Available Product Type Microsoft Kernel Debug Network Adapter Installed Yes PNP Device ID ROOT\KDNIC\0000 Last Reset 2/4/2018 8:38 PM Index 0 Service Name kdnic IP Address Not Available IP Subnet Not Available Default IP Gateway Not Available DHCP Enabled Yes DHCP Server Not Available DHCP Lease Expires Not Available DHCP Lease Obtained Not Available MAC Address Not Available Driver c:\windows\system32\drivers\kdnic.sys (6.1.0.0, 22.50 KB (23,040 bytes), 9/29/2017 2:41 PM) Name [00000001] Realtek PCIe GBE Family Controller Adapter Type Ethernet 802.3 Product Type Realtek PCIe GBE Family Controller Installed Yes PNP Device ID PCI\VEN_10EC&DEV_8168&SUBSYS_75971462&REV_06\01000000684CE00000 Last Reset 2/4/2018 8:38 PM Index 1 Service Name rt640x64 IP Address 192.168.0.17, fe80::5959:8492:9d3e:75eb IP Subnet 255.255.255.0, 64 Default IP Gateway 192.168.0.1 DHCP Enabled Yes DHCP Server 192.168.0.1 DHCP Lease Expires 1/4/1970 11:38 AM DHCP Lease Obtained 1/4/1970 10:38 AM MAC Address ‪6C:62:6D:F0:8C:A6‬ I/O Port 0x0000E800-0x0000E8FF Memory Address 0xDEFFF000-0xDEFFFFFF Memory Address 0xDEFF8000-0xDEFFBFFF IRQ Channel IRQ 4294967291 Driver c:\windows\system32\drivers\rt640x64.sys (10.24.1208.2017, 1,000.83 KB (1,024,848 bytes), 1/25/2018 3:12 PM) Name [00000002] Microsoft Teredo Tunneling Adapter Adapter Type Tunnel Product Type Microsoft Teredo Tunneling Adapter Installed Yes PNP Device ID SWD\IP_TUNNEL_VBUS\TEREDO_TUNNEL_DEVICE Last Reset 2/4/2018 8:38 PM Index 2 Service Name tunnel IP Address Not Available IP Subnet Not Available Default IP Gateway Not Available DHCP Enabled No DHCP Server Not Available DHCP Lease Expires Not Available DHCP Lease Obtained Not Available MAC Address Not Available Driver c:\windows\system32\drivers\tunnel.sys (10.0.16299.15, 104.00 KB (106,496 bytes), 9/29/2017 2:41 PM) Name [00000003] WAN Miniport (SSTP) Adapter Type Not Available Product Type WAN Miniport (SSTP) Installed Yes PNP Device ID SWD\MSRRAS\MS_SSTPMINIPORT Last Reset 2/4/2018 8:38 PM Index 3 Service Name RasSstp IP Address Not Available IP Subnet Not Available Default IP Gateway Not Available DHCP Enabled No DHCP Server Not Available DHCP Lease Expires Not Available DHCP Lease Obtained Not Available MAC Address Not Available Driver c:\windows\system32\drivers\rassstp.sys (10.0.16299.15, 76.50 KB (78,336 bytes), 9/29/2017 2:41 PM) Name [00000004] WAN Miniport (IKEv2) Adapter Type Not Available Product Type WAN Miniport (IKEv2) Installed Yes PNP Device ID SWD\MSRRAS\MS_AGILEVPNMINIPORT Last Reset 2/4/2018 8:38 PM Index 4 Service Name RasAgileVpn IP Address Not Available IP Subnet Not Available Default IP Gateway Not Available DHCP Enabled No DHCP Server Not Available DHCP Lease Expires Not Available DHCP Lease Obtained Not Available MAC Address Not Available Driver c:\windows\system32\drivers\agilevpn.sys (10.0.16299.15, 105.50 KB (108,032 bytes), 9/29/2017 2:41 PM) Name [00000005] WAN Miniport (L2TP) Adapter Type Not Available Product Type WAN Miniport (L2TP) Installed Yes PNP Device ID SWD\MSRRAS\MS_L2TPMINIPORT Last Reset 2/4/2018 8:38 PM Index 5 Service Name Rasl2tp IP Address Not Available IP Subnet Not Available Default IP Gateway Not Available DHCP Enabled No DHCP Server Not Available DHCP Lease Expires Not Available DHCP Lease Obtained Not Available MAC Address Not Available Driver c:\windows\system32\drivers\rasl2tp.sys (10.0.16299.15, 104.00 KB (106,496 bytes), 9/29/2017 2:41 PM) Name [00000006] WAN Miniport (PPTP) Adapter Type Not Available Product Type WAN Miniport (PPTP) Installed Yes PNP Device ID SWD\MSRRAS\MS_PPTPMINIPORT Last Reset 2/4/2018 8:38 PM Index 6 Service Name PptpMiniport IP Address Not Available IP Subnet Not Available Default IP Gateway Not Available DHCP Enabled No DHCP Server Not Available DHCP Lease Expires Not Available DHCP Lease Obtained Not Available MAC Address Not Available Driver c:\windows\system32\drivers\raspptp.sys (10.0.16299.192, 95.00 KB (97,280 bytes), 1/4/2018 9:04 AM) Name [00000007] WAN Miniport (PPPOE) Adapter Type Not Available Product Type WAN Miniport (PPPOE) Installed Yes PNP Device ID SWD\MSRRAS\MS_PPPOEMINIPORT Last Reset 2/4/2018 8:38 PM Index 7 Service Name RasPppoe IP Address Not Available IP Subnet Not Available Default IP Gateway Not Available DHCP Enabled No DHCP Server Not Available DHCP Lease Expires Not Available DHCP Lease Obtained Not Available MAC Address Not Available Driver c:\windows\system32\drivers\raspppoe.sys (10.0.16299.15, 81.00 KB (82,944 bytes), 9/29/2017 2:41 PM) Name [00000008] WAN Miniport (IP) Adapter Type Ethernet 802.3 Product Type WAN Miniport (IP) Installed Yes PNP Device ID SWD\MSRRAS\MS_NDISWANIP Last Reset 2/4/2018 8:38 PM Index 8 Service Name NdisWan IP Address Not Available IP Subnet Not Available Default IP Gateway Not Available DHCP Enabled No DHCP Server Not Available DHCP Lease Expires Not Available DHCP Lease Obtained Not Available MAC Address ‪36:49:20:52:41:53‬ Driver c:\windows\system32\drivers\ndiswan.sys (10.0.16299.15, 187.50 KB (192,000 bytes), 9/29/2017 2:41 PM) Name [00000009] WAN Miniport (IPv6) Adapter Type Ethernet 802.3 Product Type WAN Miniport (IPv6) Installed Yes PNP Device ID SWD\MSRRAS\MS_NDISWANIPV6 Last Reset 2/4/2018 8:38 PM Index 9 Service Name NdisWan IP Address Not Available IP Subnet Not Available Default IP Gateway Not Available DHCP Enabled No DHCP Server Not Available DHCP Lease Expires Not Available DHCP Lease Obtained Not Available MAC Address ‪4E:98:20:52:41:53‬ Driver c:\windows\system32\drivers\ndiswan.sys (10.0.16299.15, 187.50 KB (192,000 bytes), 9/29/2017 2:41 PM) Name [00000010] WAN Miniport (Network Monitor) Adapter Type Ethernet 802.3 Product Type WAN Miniport (Network Monitor) Installed Yes PNP Device ID SWD\MSRRAS\MS_NDISWANBH Last Reset 2/4/2018 8:38 PM Index 10 Service Name NdisWan IP Address Not Available IP Subnet Not Available Default IP Gateway Not Available DHCP Enabled No DHCP Server Not Available DHCP Lease Expires Not Available DHCP Lease Obtained Not Available MAC Address ‪5A:8A:20:52:41:53‬ Driver c:\windows\system32\drivers\ndiswan.sys (10.0.16299.15, 187.50 KB (192,000 bytes), 9/29/2017 2:41 PM) Name [00000011] TAP-Win32 Adapter V9 (Tunngle) Adapter Type Ethernet 802.3 Product Type TAP-Win32 Adapter V9 (Tunngle) Installed Yes PNP Device ID ROOT\NET\0000 Last Reset 2/4/2018 8:38 PM Index 11 Service Name tap0901t IP Address Not Available IP Subnet Not Available Default IP Gateway Not Available DHCP Enabled Yes DHCP Server Not Available DHCP Lease Expires Not Available DHCP Lease Obtained Not Available MAC Address ‪00:FF:30:36:0C:0A‬ Driver c:\windows\system32\drivers\tap0901t.sys (9.0.0.21, 47.68 KB (48,824 bytes), 6/18/2017 9:34 PM) [Protocol] Item Value Name Hyper-V RAW Connectionless Service No Guarantees Delivery Yes Guarantees Sequencing Yes Maximum Address Size 36 bytes Maximum Message Size 0 bytes Message Oriented No Minimum Address Size 36 bytes Pseudo Stream Oriented No Supports Broadcasting No Supports Connect Data No Supports Disconnect Data No Supports Encryption No Supports Expedited Data No Supports Graceful Closing Yes Supports Guaranteed Bandwidth No Supports Multicasting No Name MSAFD Tcpip [TCP/IP] Connectionless Service No Guarantees Delivery Yes Guarantees Sequencing Yes Maximum Address Size 16 bytes Maximum Message Size 0 bytes Message Oriented No Minimum Address Size 16 bytes Pseudo Stream Oriented No Supports Broadcasting No Supports Connect Data No Supports Disconnect Data No Supports Encryption No Supports Expedited Data Yes Supports Graceful Closing Yes Supports Guaranteed Bandwidth No Supports Multicasting No Name MSAFD Tcpip [UDP/IP] Connectionless Service Yes Guarantees Delivery No Guarantees Sequencing No Maximum Address Size 16 bytes Maximum Message Size 63.99 KB (65,527 bytes) Message Oriented Yes Minimum Address Size 16 bytes Pseudo Stream Oriented No Supports Broadcasting Yes Supports Connect Data No Supports Disconnect Data No Supports Encryption No Supports Expedited Data No Supports Graceful Closing No Supports Guaranteed Bandwidth No Supports Multicasting Yes Name MSAFD Tcpip [TCP/IPv6] Connectionless Service No Guarantees Delivery Yes Guarantees Sequencing Yes Maximum Address Size 28 bytes Maximum Message Size 0 bytes Message Oriented No Minimum Address Size 28 bytes Pseudo Stream Oriented No Supports Broadcasting No Supports Connect Data No Supports Disconnect Data No Supports Encryption No Supports Expedited Data Yes Supports Graceful Closing Yes Supports Guaranteed Bandwidth No Supports Multicasting No Name MSAFD Tcpip [UDP/IPv6] Connectionless Service Yes Guarantees Delivery No Guarantees Sequencing No Maximum Address Size 28 bytes Maximum Message Size 63.99 KB (65,527 bytes) Message Oriented Yes Minimum Address Size 28 bytes Pseudo Stream Oriented No Supports Broadcasting Yes Supports Connect Data No Supports Disconnect Data No Supports Encryption No Supports Expedited Data No Supports Graceful Closing No Supports Guaranteed Bandwidth No Supports Multicasting Yes Name RSVP TCPv6 Service Provider Connectionless Service No Guarantees Delivery Yes Guarantees Sequencing Yes Maximum Address Size 28 bytes Maximum Message Size 0 bytes Message Oriented No Minimum Address Size 28 bytes Pseudo Stream Oriented No Supports Broadcasting No Supports Connect Data No Supports Disconnect Data No Supports Encryption Yes Supports Expedited Data Yes Supports Graceful Closing Yes Supports Guaranteed Bandwidth No Supports Multicasting No Name RSVP TCP Service Provider Connectionless Service No Guarantees Delivery Yes Guarantees Sequencing Yes Maximum Address Size 16 bytes Maximum Message Size 0 bytes Message Oriented No Minimum Address Size 16 bytes Pseudo Stream Oriented No Supports Broadcasting No Supports Connect Data No Supports Disconnect Data No Supports Encryption Yes Supports Expedited Data Yes Supports Graceful Closing Yes Supports Guaranteed Bandwidth No Supports Multicasting No Name RSVP UDPv6 Service Provider Connectionless Service Yes Guarantees Delivery No Guarantees Sequencing No Maximum Address Size 28 bytes Maximum Message Size 63.99 KB (65,527 bytes) Message Oriented Yes Minimum Address Size 28 bytes Pseudo Stream Oriented No Supports Broadcasting Yes Supports Connect Data No Supports Disconnect Data No Supports Encryption Yes Supports Expedited Data No Supports Graceful Closing No Supports Guaranteed Bandwidth No Supports Multicasting Yes Name RSVP UDP Service Provider Connectionless Service Yes Guarantees Delivery No Guarantees Sequencing No Maximum Address Size 16 bytes Maximum Message Size 63.99 KB (65,527 bytes) Message Oriented Yes Minimum Address Size 16 bytes Pseudo Stream Oriented No Supports Broadcasting Yes Supports Connect Data No Supports Disconnect Data No Supports Encryption Yes Supports Expedited Data No Supports Graceful Closing No Supports Guaranteed Bandwidth No Supports Multicasting Yes Name MSAFD Irda [IrDA] Connectionless Service No Guarantees Delivery Yes Guarantees Sequencing Yes Maximum Address Size 32 bytes Maximum Message Size 0 bytes Message Oriented No Minimum Address Size 8 bytes Pseudo Stream Oriented No Supports Broadcasting No Supports Connect Data No Supports Disconnect Data No Supports Encryption No Supports Expedited Data No Supports Graceful Closing No Supports Guaranteed Bandwidth No Supports Multicasting No [WinSock] Item Value File c:\windows\syswow64\wsock32.dll Size 16.00 KB (16,384 bytes) Version 10.0.16299.15 File c:\windows\system32\wsock32.dll Size 18.00 KB (18,432 bytes) Version 10.0.16299.15 [Ports] [Serial] Item Value Name Communications Port (COM1) Status OK PNP Device ID ACPI\PNP0501\1 Maximum Input Buffer Size 0 Maximum Output Buffer Size No Settable Baud Rate Yes Settable Data Bits Yes Settable Flow Control Yes Settable Parity Yes Settable Parity Check Yes Settable Stop Bits Yes Settable RLSD Yes Supports RLSD Yes Supports 16 Bit Mode No Supports Special Characters No Baud Rate 9600 Bits/Byte 8 Stop Bits 1 Parity None Busy No Abort Read/Write on Error No Binary Mode Enabled Yes Continue XMit on XOff No CTS Outflow Control No Discard NULL Bytes No DSR Outflow Control 0 DSR Sensitivity 0 DTR Flow Control Type Enable EOF Character 0 Error Replace Character 0 Error Replacement Enabled No Event Character 0 Parity Check Enabled No RTS Flow Control Type Enable XOff Character 19 XOffXMit Threshold 512 XOn Character 17 XOnXMit Threshold 2048 XOnXOff InFlow Control 0 XOnXOff OutFlow Control 0 I/O Port 0x000003F8-0x000003FF IRQ Channel IRQ 4 Driver c:\windows\system32\drivers\serial.sys (10.0.16299.15, 83.00 KB (84,992 bytes), 9/29/2017 2:41 PM) Name Communications Port (COM2) Status OK PNP Device ID ACPI\PNP0501\2 Maximum Input Buffer Size 0 Maximum Output Buffer Size No Settable Baud Rate Yes Settable Data Bits Yes Settable Flow Control Yes Settable Parity Yes Settable Parity Check Yes Settable Stop Bits Yes Settable RLSD Yes Supports RLSD Yes Supports 16 Bit Mode No Supports Special Characters No Baud Rate 9600 Bits/Byte 8 Stop Bits 1 Parity None Busy No Abort Read/Write on Error No Binary Mode Enabled Yes Continue XMit on XOff No CTS Outflow Control No Discard NULL Bytes No DSR Outflow Control 0 DSR Sensitivity 0 DTR Flow Control Type Enable EOF Character 0 Error Replace Character 0 Error Replacement Enabled No Event Character 0 Parity Check Enabled No RTS Flow Control Type Enable XOff Character 19 XOffXMit Threshold 512 XOn Character 17 XOnXMit Threshold 2048 XOnXOff InFlow Control 0 XOnXOff OutFlow Control 0 I/O Port 0x000002F8-0x000002FF IRQ Channel IRQ 3 Driver c:\windows\system32\drivers\serial.sys (10.0.16299.15, 83.00 KB (84,992 bytes), 9/29/2017 2:41 PM) [Parallel] Item Value Name LPT1 PNP Device ID ACPI\PNP0400\4&11F6B075&0 I/O Port 0x00000378-0x0000037F Driver c:\windows\system32\drivers\parport.sys (10.0.16299.15, 96.50 KB (98,816 bytes), 9/29/2017 2:41 PM) [Storage] [Drives] Item Value Drive C: Description Local Fixed Disk Compressed No File System NTFS Size 464.53 GB (498,783,481,856 bytes) Free Space 135.91 GB (145,932,541,952 bytes) Volume Name Volume Serial Number 52D93CF3 Drive D: Description Local Fixed Disk Compressed No File System NTFS Size 465.75 GB (500,096,991,232 bytes) Free Space 66.07 GB (70,940,594,176 bytes) Volume Name Data Volume Serial Number 4438AB0C Drive E: Description CD-ROM Disc [Disks] Item Value Description Disk drive Manufacturer (Standard disk drives) Model Hitachi HDS721010CLA SCSI Disk Device Bytes/Sector 512 Media Loaded Yes Media Type Fixed hard disk Partitions 4 SCSI Bus 1 SCSI Logical Unit 0 SCSI Port 0 SCSI Target ID 1 Sectors/Track 63 Size 931.51 GB (1,000,202,273,280 bytes) Total Cylinders 121,601 Total Sectors 1,953,520,065 Total Tracks 31,008,255 Tracks/Cylinder 255 Partition Disk #0, Partition #0 Partition Size 350.00 MB (367,001,600 bytes) Partition Starting Offset 1,048,576 bytes Partition Disk #0, Partition #1 Partition Size 464.53 GB (498,783,485,952 bytes) Partition Starting Offset 368,050,176 bytes Partition Disk #0, Partition #2 Partition Size 450.00 MB (471,859,200 bytes) Partition Starting Offset 499,151,536,128 bytes Partition Disk #0, Partition #3 Partition Size 465.75 GB (500,097,024,000 bytes) Partition Starting Offset 500,097,024,000 bytes [SCSI] Item Value Name Microsoft Storage Spaces Controller Manufacturer Microsoft Status OK PNP Device ID ROOT\SPACEPORT\0000 Driver c:\windows\system32\drivers\spaceport.sys (10.0.16299.192, 557.90 KB (571,288 bytes), 1/4/2018 9:04 AM) Name NVIDIA nForce Serial ATA Controller Manufacturer NVIDIA Corporation Status OK PNP Device ID PCI\VEN_10DE&DEV_03F6&SUBSYS_75971462&REV_A2\3&267A616A&0&40 I/O Port 0x0000C080-0x0000C087 I/O Port 0x0000C000-0x0000C003 I/O Port 0x0000BC00-0x0000BC07 I/O Port 0x0000B880-0x0000B883 I/O Port 0x0000B800-0x0000B80F Memory Address 0xDFE7D000-0xDFE7DFFF IRQ Channel IRQ 20 Driver c:\windows\system32\drivers\nvstor.sys (10.6.0.23, 162.40 KB (166,296 bytes), 9/29/2017 2:41 PM) Name NVIDIA nForce Serial ATA Controller Manufacturer NVIDIA Corporation Status OK PNP Device ID PCI\VEN_10DE&DEV_03F6&SUBSYS_75971462&REV_A2\3&267A616A&0&41 I/O Port 0x0000B480-0x0000B487 I/O Port 0x0000B400-0x0000B403 I/O Port 0x0000B080-0x0000B087 I/O Port 0x0000B000-0x0000B003 I/O Port 0x0000AC00-0x0000AC0F Memory Address 0xDFE7C000-0xDFE7CFFF IRQ Channel IRQ 21 Driver c:\windows\system32\drivers\nvstor.sys (10.6.0.23, 162.40 KB (166,296 bytes), 9/29/2017 2:41 PM) Name DAEMON Tools Lite Virtual SCSI Bus Manufacturer Disc Soft Ltd Status OK PNP Device ID ROOT\SCSIADAPTER\0000 Driver c:\windows\system32\drivers\dtlitescsibus.sys (5.28.0.0, 29.55 KB (30,264 bytes), 5/28/2016 9:15 PM) [IDE] Item Value Name Standard Dual Channel PCI IDE Controller Manufacturer (Standard IDE ATA/ATAPI controllers) Status OK PNP Device ID PCI\VEN_10DE&DEV_03EC&SUBSYS_75971462&REV_A2\3&267A616A&0&30 I/O Port 0x0000FFA0-0x0000FFAF Driver c:\windows\system32\drivers\pciide.sys (10.0.16299.15, 15.90 KB (16,280 bytes), 9/29/2017 2:41 PM) Name ATA Channel 0 Manufacturer (Standard IDE ATA/ATAPI controllers) Status OK PNP Device ID PCIIDE\IDECHANNEL\4&175D54E6&0&0 I/O Port 0x000001F0-0x000001F7 I/O Port 0x000003F6-0x000003F6 IRQ Channel IRQ 14 Driver c:\windows\system32\drivers\atapi.sys (10.0.16299.15, 27.90 KB (28,568 bytes), 9/29/2017 2:41 PM) Name ATA Channel 1 Manufacturer (Standard IDE ATA/ATAPI controllers) Status OK PNP Device ID PCIIDE\IDECHANNEL\4&175D54E6&0&1 I/O Port 0x00000170-0x00000177 I/O Port 0x00000376-0x00000376 IRQ Channel IRQ 15 Driver c:\windows\system32\drivers\atapi.sys (10.0.16299.15, 27.90 KB (28,568 bytes), 9/29/2017 2:41 PM) [Printing] Name Driver Port Name Server Name Microsoft XPS Document Writer Microsoft XPS Document Writer v4 PORTPROMPT: Not Available Microsoft Print to PDF Microsoft Print To PDF PORTPROMPT: Not Available Fax Microsoft Shared Fax Driver SHRFAX: Not Available [Problem Devices] Device PNP Device ID Error Code [USB] Device PNP Device ID Standard Enhanced PCI to USB Host Controller PCI\VEN_10DE&DEV_03F2&SUBSYS_75971462&REV_A3\3&267A616A&0&11 DAEMON Tools Lite Virtual USB Bus ROOT\USB\0000 Standard OpenHCD USB Host Controller PCI\VEN_10DE&DEV_03F1&SUBSYS_75971462&REV_A3\3&267A616A&0&10 [Software Environment] [System Drivers] Name Description File Type Started Start Mode State Status Error Control Accept Pause Accept Stop 1394ohci 1394 OHCI Compliant Host Controller c:\windows\system32\drivers\1394ohci.sys Kernel Driver No Manual Stopped OK Normal No No 3ware 3ware c:\windows\system32\drivers\3ware.sys Kernel Driver No Manual Stopped OK Normal No No acpi Microsoft ACPI Driver c:\windows\system32\drivers\acpi.sys Kernel Driver Yes Boot Running OK Critical No Yes acpidev ACPI Devices driver c:\windows\system32\drivers\acpidev.sys Kernel Driver No Manual Stopped OK Normal No No acpiex Microsoft ACPIEx Driver c:\windows\system32\drivers\acpiex.sys Kernel Driver Yes Boot Running OK Critical No Yes acpipagr ACPI Processor Aggregator Driver c:\windows\system32\drivers\acpipagr.sys Kernel Driver No Manual Stopped OK Normal No No acpipmi ACPI Power Meter Driver c:\windows\system32\drivers\acpipmi.sys Kernel Driver No Manual Stopped OK Normal No No acpitime ACPI Wake Alarm Driver c:\windows\system32\drivers\acpitime.sys Kernel Driver No Manual Stopped OK Normal No No adp80xx ADP80XX c:\windows\system32\drivers\adp80xx.sys Kernel Driver No Manual Stopped OK Normal No No afd Ancillary Function Driver for Winsock c:\windows\system32\drivers\afd.sys Kernel Driver Yes System Running OK Normal No Yes ahcache Application Compatibility Cache c:\windows\system32\drivers\ahcache.sys Kernel Driver Yes System Running OK Normal No Yes amdk8 AMD K8 Processor Driver c:\windows\system32\drivers\amdk8.sys Kernel Driver No Manual Stopped OK Normal No No amdkmafd AMD Audio Bus Lower Filter c:\windows\system32\drivers\amdkmafd.sys Kernel Driver No Manual Stopped OK Normal No No amdkmdag amdkmdag c:\windows\system32\drivers\atikmdag.sys Kernel Driver Yes Manual Running OK Ignore No Yes amdkmdap amdkmdap c:\windows\system32\drivers\atikmpag.sys Kernel Driver Yes Manual Running OK Ignore No Yes amdppm AMD Processor Driver c:\windows\system32\drivers\amdppm.sys Kernel Driver Yes Manual Running OK Normal No Yes amdsata amdsata c:\windows\system32\drivers\amdsata.sys Kernel Driver No Manual Stopped OK Normal No No amdsbs amdsbs c:\windows\system32\drivers\amdsbs.sys Kernel Driver No Manual Stopped OK Normal No No amdxata amdxata c:\windows\system32\drivers\amdxata.sys Kernel Driver No Manual Stopped OK Normal No No appid AppID Driver c:\windows\system32\drivers\appid.sys Kernel Driver No Manual Stopped OK Normal No No applockerfltr Smartlocker Filter Driver c:\windows\system32\drivers\applockerfltr.sys Kernel Driver No Manual Stopped OK Normal No No appvstrm AppvStrm c:\windows\system32\drivers\appvstrm.sys File System Driver No Manual Stopped OK Normal No No appvvemgr AppvVemgr c:\windows\system32\drivers\appvvemgr.sys File System Driver No Manual Stopped OK Normal No No appvvfs AppvVfs c:\windows\system32\drivers\appvvfs.sys File System Driver No Manual Stopped OK Normal No No arcsas Adaptec SAS/SATA-II RAID Storport's Miniport Driver c:\windows\system32\drivers\arcsas.sys Kernel Driver No Manual Stopped OK Normal No No asyncmac RAS Asynchronous Media Driver c:\windows\system32\drivers\asyncmac.sys Kernel Driver No Manual Stopped OK Normal No No atapi IDE Channel c:\windows\system32\drivers\atapi.sys Kernel Driver Yes Boot Running OK Critical No Yes atihdaudioservice AMD Function Driver for HD Audio Service c:\windows\system32\drivers\atihdwt6.sys Kernel Driver Yes Manual Running OK Normal No Yes b06bdrv QLogic Network Adapter VBD c:\windows\system32\drivers\bxvbda.sys Kernel Driver No Manual Stopped OK Normal No No bam Background Activity Moderator Driver c:\windows\system32\drivers\bam.sys Kernel Driver Yes System Running OK Normal No Yes basicdisplay BasicDisplay c:\windows\system32\drivers\basicdisplay.sys Kernel Driver Yes System Running OK Ignore No Yes basicrender BasicRender c:\windows\system32\drivers\basicrender.sys Kernel Driver Yes System Running OK Ignore No Yes bcmfn2 bcmfn2 Service c:\windows\system32\drivers\bcmfn2.sys Kernel Driver No Manual Stopped OK Normal No No beep Beep c:\windows\system32\drivers\beep.sys Kernel Driver Yes System Running OK Normal No Yes bowser bowser c:\windows\system32\drivers\bowser.sys File System Driver Yes Manual Running OK Normal No Yes bthavrcptg Bluetooth Audio/Video Remote Control HID c:\windows\system32\drivers\bthavrcptg.sys Kernel Driver No Manual Stopped OK Normal No No bthhfenum Bluetooth Hands-Free Audio and Call Control HID Enumerator c:\windows\system32\drivers\bthhfenum.sys Kernel Driver No Manual Stopped OK Normal No No bthhfhid Bluetooth Hands-Free Call Control HID c:\windows\system32\drivers\bthhfhid.sys Kernel Driver No Manual Stopped OK Normal No No bthmodem Bluetooth Modem Communications Driver c:\windows\system32\drivers\bthmodem.sys Kernel Driver No Manual Stopped OK Normal No No bttflt Microsoft Hyper-V VHDPMEM BTT Filter c:\windows\system32\drivers\bttflt.sys Kernel Driver No Manual Stopped OK Normal No No buttonconverter Service for Portable Device Control devices c:\windows\system32\drivers\buttonconverter.sys Kernel Driver No Manual Stopped OK Normal No No cad Charge Arbitration Driver c:\windows\system32\drivers\cad.sys Kernel Driver No Manual Stopped OK Normal No No capimg HID driver for CapImg touch screen c:\windows\system32\drivers\capimg.sys Kernel Driver No Manual Stopped OK Normal No No cdfs CD/DVD File System Reader c:\windows\system32\drivers\cdfs.sys File System Driver No Disabled Stopped OK Normal No No cdrom CD-ROM Driver c:\windows\system32\drivers\cdrom.sys Kernel Driver Yes System Running OK Normal No Yes cht4iscsi cht4iscsi c:\windows\system32\drivers\cht4sx64.sys Kernel Driver No Manual Stopped OK Normal No No cht4vbd Chelsio Virtual Bus Driver c:\windows\system32\drivers\cht4vx64.sys Kernel Driver No Manual Stopped OK Normal No No circlass Consumer IR Devices c:\windows\system32\drivers\circlass.sys Kernel Driver No Manual Stopped OK Normal No No cldflt Windows Cloud Files Filter Driver c:\windows\system32\drivers\cldflt.sys File System Driver Yes Auto Running OK Normal No Yes clfs Common Log (CLFS) c:\windows\system32\drivers\clfs.sys Kernel Driver Yes Boot Running OK Critical No Yes cmbatt Microsoft ACPI Control Method Battery Driver c:\windows\system32\drivers\cmbatt.sys Kernel Driver No Manual Stopped OK Normal No No cng CNG c:\windows\system32\drivers\cng.sys Kernel Driver Yes Boot Running OK Critical No Yes cnghwassist CNG Hardware Assist algorithm provider c:\windows\system32\drivers\cnghwassist.sys Kernel Driver No Disabled Stopped OK Normal No No compositebus Composite Bus Enumerator Driver c:\windows\system32\driverstore\filerepository\compositebus.inf_amd64_9c1fb8f4db31c348\compositebus.sys Kernel Driver Yes Manual Running OK Normal No Yes condrv Console Driver c:\windows\system32\drivers\condrv.sys Kernel Driver Yes Manual Running OK Normal No Yes csc Offline Files Driver c:\windows\system32\drivers\csc.sys Kernel Driver Yes System Running OK Normal No Yes dam Desktop Activity Moderator Driver c:\windows\system32\drivers\dam.sys Kernel Driver No System Stopped OK Normal No No dfsc DFS Namespace Client Driver c:\windows\system32\drivers\dfsc.sys File System Driver Yes System Running OK Normal No Yes disk Disk Driver c:\windows\system32\drivers\disk.sys Kernel Driver Yes Boot Running OK Normal No Yes dmvsc dmvsc c:\windows\system32\drivers\dmvsc.sys Kernel Driver No Manual Stopped OK Normal No No drmkaud Microsoft Trusted Audio Drivers c:\windows\system32\drivers\drmkaud.sys Kernel Driver No Manual Stopped OK Normal No No dtlitescsibus DAEMON Tools Lite Virtual SCSI Bus c:\windows\system32\drivers\dtlitescsibus.sys Kernel Driver Yes Manual Running OK Normal No Yes dtliteusbbus DAEMON Tools Lite Virtual USB Bus c:\windows\system32\drivers\dtliteusbbus.sys Kernel Driver Yes Manual Running OK Normal No Yes dxgkrnl LDDM Graphics Subsystem c:\windows\system32\drivers\dxgkrnl.sys Kernel Driver Yes Manual Running OK Ignore No Yes ebdrv QLogic 10 Gigabit Ethernet Adapter VBD c:\windows\system32\drivers\evbda.sys Kernel Driver No Manual Stopped OK Normal No No ehstorclass Enhanced Storage Filter Driver c:\windows\system32\drivers\ehstorclass.sys Kernel Driver Yes Boot Running OK Normal No Yes ehstortcgdrv Microsoft driver for storage devices supporting IEEE 1667 and TCG protocols c:\windows\system32\drivers\ehstortcgdrv.sys Kernel Driver No Manual Stopped OK Normal No No errdev Microsoft Hardware Error Device Driver c:\windows\system32\drivers\errdev.sys Kernel Driver No Manual Stopped OK Normal No No esprotectiondriver Malwarebytes Anti-Exploit \??\c:\windows\system32\drivers\mbae64.sys Kernel Driver Yes System Running OK Normal No Yes exfat exFAT File System Driver c:\windows\system32\drivers\exfat.sys File System Driver No Manual Stopped OK Normal No No fastfat FAT12/16/32 File System Driver c:\windows\system32\drivers\fastfat.sys File System Driver No Manual Stopped OK Normal No No fdc Floppy Disk Controller Driver c:\windows\system32\drivers\fdc.sys Kernel Driver No Manual Stopped OK Normal No No filecrypt FileCrypt c:\windows\system32\drivers\filecrypt.sys File System Driver Yes System Running OK Critical No Yes fileinfo File Information FS MiniFilter c:\windows\system32\drivers\fileinfo.sys File System Driver Yes Boot Running OK Normal No Yes filetrace Filetrace c:\windows\system32\drivers\filetrace.sys File System Driver No Manual Stopped OK Normal No No flpydisk Floppy Disk Driver c:\windows\system32\drivers\flpydisk.sys Kernel Driver No Manual Stopped OK Normal No No fltmgr FltMgr c:\windows\system32\drivers\fltmgr.sys File System Driver Yes Boot Running OK Critical No Yes fsdepends File System Dependency Minifilter c:\windows\system32\drivers\fsdepends.sys File System Driver No Manual Stopped OK Critical No No fvevol BitLocker Drive Encryption Filter Driver c:\windows\system32\drivers\fvevol.sys Kernel Driver Yes Boot Running OK Critical No Yes gencounter Microsoft Hyper-V Generation Counter c:\windows\system32\drivers\vmgencounter.sys Kernel Driver No Manual Stopped OK Normal No No genericusbfn Generic USB Function Class c:\windows\system32\drivers\genericusbfn.sys Kernel Driver No Manual Stopped OK Normal No No gpioclx0101 Microsoft GPIO Class Extension Driver c:\windows\system32\drivers\msgpioclx.sys Kernel Driver No Manual Stopped OK Critical No No gpuenergydrv GPU Energy Driver c:\windows\system32\drivers\gpuenergydrv.sys Kernel Driver Yes System Running OK Normal No Yes hdaudbus Microsoft UAA Bus Driver for High Definition Audio c:\windows\system32\drivers\hdaudbus.sys Kernel Driver Yes Manual Running OK Normal No Yes hidbatt HID UPS Battery Driver c:\windows\system32\drivers\hidbatt.sys Kernel Driver No Manual Stopped OK Normal No No hidbth Microsoft Bluetooth HID Miniport c:\windows\system32\drivers\hidbth.sys Kernel Driver No Manual Stopped OK Ignore No No hidi2c Microsoft I2C HID Miniport Driver c:\windows\system32\drivers\hidi2c.sys Kernel Driver No Manual Stopped OK Normal No No hidinterrupt Common Driver for HID Buttons implemented with interrupts c:\windows\system32\drivers\hidinterrupt.sys Kernel Driver No Manual Stopped OK Normal No No hidir Microsoft Infrared HID Driver c:\windows\system32\drivers\hidir.sys Kernel Driver No Manual Stopped OK Ignore No No hidusb Microsoft HID Class Driver c:\windows\system32\drivers\hidusb.sys Kernel Driver Yes Manual Running OK Ignore No Yes hpsamd HpSAMD c:\windows\system32\drivers\hpsamd.sys Kernel Driver No Manual Stopped OK Normal No No http HTTP Service c:\windows\system32\drivers\http.sys Kernel Driver Yes Manual Running OK Normal No Yes hvservice Hypervisor/Virtual Machine Support Driver c:\windows\system32\drivers\hvservice.sys Kernel Driver No Manual Stopped OK Normal No No hwinfo32 HWiNFO32/64 Kernel Driver \??\c:\windows\syswow64\drivers\hwinfo64a.sys Kernel Driver Yes System Running OK Normal No Yes hwnclx0101 Microsoft Hardware Notifications Class Extension Driver c:\windows\system32\drivers\mshwnclx.sys Kernel Driver No Manual Stopped OK Normal No No hwpolicy Hardware Policy Driver c:\windows\system32\drivers\hwpolicy.sys Kernel Driver No Boot Stopped OK Ignore No No hyperkbd hyperkbd c:\windows\system32\drivers\hyperkbd.sys Kernel Driver No Manual Stopped OK Ignore No No hypervideo HyperVideo c:\windows\system32\drivers\hypervideo.sys Kernel Driver No Manual Stopped OK Ignore No No i8042prt PS/2 Keyboard and Mouse Port Driver c:\windows\system32\drivers\i8042prt.sys Kernel Driver No Manual Stopped OK Normal No No iagpio Intel Serial IO GPIO Controller Driver c:\windows\system32\drivers\iagpio.sys Kernel Driver No Manual Stopped OK Normal No No iai2c Intel(R) Serial IO I2C Host Controller c:\windows\system32\drivers\iai2c.sys Kernel Driver No Manual Stopped OK Normal No No ialpss2i_gpio2 Intel(R) Serial IO GPIO Driver v2 c:\windows\system32\drivers\ialpss2i_gpio2.sys Kernel Driver No Manual Stopped OK Normal No No ialpss2i_gpio2_bxt_p Intel(R) Serial IO GPIO Driver v2 c:\windows\system32\drivers\ialpss2i_gpio2_bxt_p.sys Kernel Driver No Manual Stopped OK Normal No No ialpss2i_i2c Intel(R) Serial IO I2C Driver v2 c:\windows\system32\drivers\ialpss2i_i2c.sys Kernel Driver No Manual Stopped OK Normal No No ialpss2i_i2c_bxt_p Intel(R) Serial IO I2C Driver v2 c:\windows\system32\drivers\ialpss2i_i2c_bxt_p.sys Kernel Driver No Manual Stopped OK Normal No No ialpssi_gpio Intel(R) Serial IO GPIO Controller Driver c:\windows\system32\drivers\ialpssi_gpio.sys Kernel Driver No Manual Stopped OK Normal No No ialpssi_i2c Intel(R) Serial IO I2C Controller Driver c:\windows\system32\drivers\ialpssi_i2c.sys Kernel Driver No Manual Stopped OK Normal No No iastorav Intel(R) SATA RAID Controller Windows c:\windows\system32\drivers\iastorav.sys Kernel Driver No Manual Stopped OK Normal No No iastorv Intel RAID Controller Windows 7 c:\windows\system32\drivers\iastorv.sys Kernel Driver No Manual Stopped OK Normal No No ibbus Mellanox InfiniBand Bus/AL (Filter Driver) c:\windows\system32\drivers\ibbus.sys Kernel Driver No Manual Stopped OK Normal No No idmwfp IDMWFP c:\windows\system32\drivers\idmwfp.sys Kernel Driver Yes Auto Running OK Ignore No Yes indirectkmd Indirect Displays Kernel-Mode Driver c:\windows\system32\drivers\indirectkmd.sys Kernel Driver No Manual Stopped OK Ignore No No intcazaudaddservice Service for Realtek HD Audio (WDM) c:\windows\system32\drivers\rtkvhd64.sys Kernel Driver Yes Manual Running OK Normal No Yes intelide intelide c:\windows\system32\drivers\intelide.sys Kernel Driver No Manual Stopped OK Critical No No intelpep Intel(R) Power Engine Plug-in Driver c:\windows\system32\drivers\intelpep.sys Kernel Driver Yes Boot Running OK Normal No Yes intelppm Intel Processor Driver c:\windows\system32\drivers\intelppm.sys Kernel Driver No Manual Stopped OK Normal No No invdimm Microsoft iNVDIMM device driver c:\windows\system32\drivers\invdimm.sys Kernel Driver No Manual Stopped OK Normal No No iofakdrv ioVirtual Device c:\windows\system32\drivers\iofakdrv.sys Kernel Driver Yes Manual Running OK Ignore No Yes iofakmap MiniHid Driver Service for ioFakeDrv Interface layer c:\windows\system32\drivers\iofakmap.sys Kernel Driver Yes Manual Running OK Normal No Yes iorate Disk I/O Rate Filter Driver c:\windows\system32\drivers\iorate.sys Kernel Driver Yes Boot Running OK Critical No Yes ipfilterdriver IP Traffic Filter Driver c:\windows\system32\drivers\ipfltdrv.sys Kernel Driver No Manual Stopped OK Normal No No ipmidrv IPMIDRV c:\windows\system32\drivers\ipmidrv.sys Kernel Driver No Manual Stopped OK Normal No No ipnat IP Network Address Translator c:\windows\system32\drivers\ipnat.sys Kernel Driver No Manual Stopped OK Normal No No ipt IPT c:\windows\system32\drivers\ipt.sys Kernel Driver No Manual Stopped OK Ignore No No irda irda c:\windows\system32\drivers\irda.sys Kernel Driver No Manual Stopped OK Normal No No irenum IR Bus Enumerator c:\windows\system32\drivers\irenum.sys Kernel Driver No Manual Stopped OK Ignore No No isapnp isapnp c:\windows\system32\drivers\isapnp.sys Kernel Driver No Manual Stopped OK Critical No No iscsiprt iScsiPort Driver c:\windows\system32\drivers\msiscsi.sys Kernel Driver No Manual Stopped OK Normal No No kbdclass Keyboard Class Driver c:\windows\system32\drivers\kbdclass.sys Kernel Driver Yes Manual Running OK Normal No Yes kbdhid Keyboard HID Driver c:\windows\system32\drivers\kbdhid.sys Kernel Driver Yes Manual Running OK Ignore No Yes kdnic Microsoft Kernel Debug Network Miniport (NDIS 6.20) c:\windows\system32\drivers\kdnic.sys Kernel Driver Yes Manual Running OK Normal No Yes ksecdd KSecDD c:\windows\system32\drivers\ksecdd.sys Kernel Driver Yes Boot Running OK Critical No Yes ksecpkg KSecPkg c:\windows\system32\drivers\ksecpkg.sys Kernel Driver Yes Boot Running OK Critical No Yes ksthunk Kernel Streaming Thunks c:\windows\system32\drivers\ksthunk.sys Kernel Driver Yes Manual Running OK Normal No Yes lgbusenum Logitech Gaming Virtual Bus Enumerator Driver c:\windows\system32\drivers\lgbusenum.sys Kernel Driver No Manual Stopped OK Normal No No lgjoyxlcore Logitech Translation Layer Driver (LGS) c:\windows\system32\drivers\lgjoyxlcore.sys Kernel Driver No Manual Stopped OK Ignore No No lgshidfilt Logitech Gaming KMDF HID Filter Driver c:\windows\system32\drivers\lgshidfilt.sys Kernel Driver Yes Manual Running OK Normal No Yes lltdio Link-Layer Topology Discovery Mapper I/O Driver c:\windows\system32\drivers\lltdio.sys Kernel Driver Yes Auto Running OK Normal No Yes lsi_sas LSI_SAS c:\windows\system32\drivers\lsi_sas.sys Kernel Driver No Manual Stopped OK Normal No No lsi_sas2i LSI_SAS2i c:\windows\system32\drivers\lsi_sas2i.sys Kernel Driver No Manual Stopped OK Normal No No lsi_sas3i LSI_SAS3i c:\windows\system32\drivers\lsi_sas3i.sys Kernel Driver No Manual Stopped OK Normal No No lsi_sss LSI_SSS c:\windows\system32\drivers\lsi_sss.sys Kernel Driver No Manual Stopped OK Normal No No luafv UAC File Virtualization c:\windows\system32\drivers\luafv.sys File System Driver Yes Auto Running OK Normal No Yes mausbhost MA-USB Host Controller Driver c:\windows\system32\drivers\mausbhost.sys Kernel Driver No Manual Stopped OK Normal No No mausbip MA-USB IP Filter Driver c:\windows\system32\drivers\mausbip.sys Kernel Driver No Manual Stopped OK Normal No No mbamchameleon MBAMChameleon c:\windows\system32\drivers\mbamchameleon.sys File System Driver Yes Auto Running OK Normal No Yes megasas megasas c:\windows\system32\drivers\megasas.sys Kernel Driver No Manual Stopped OK Normal No No megasas2i megasas2i c:\windows\system32\drivers\megasas2i.sys Kernel Driver No Manual Stopped OK Normal No No megasr megasr c:\windows\system32\drivers\megasr.sys Kernel Driver No Manual Stopped OK Normal No No mlx4_bus Mellanox ConnectX Bus Enumerator c:\windows\system32\drivers\mlx4_bus.sys Kernel Driver No Manual Stopped OK Normal No No mmcss Multimedia Class Scheduler c:\windows\system32\drivers\mmcss.sys Kernel Driver Yes Auto Running OK Normal No Yes modem Modem c:\windows\system32\drivers\modem.sys Kernel Driver No Manual Stopped OK Ignore No No monitor Microsoft Monitor Class Function Driver Service c:\windows\system32\drivers\monitor.sys Kernel Driver Yes Manual Running OK Normal No Yes mouclass Mouse Class Driver c:\windows\system32\drivers\mouclass.sys Kernel Driver Yes Manual Running OK Normal No Yes mouhid Mouse HID Driver c:\windows\system32\drivers\mouhid.sys Kernel Driver Yes Manual Running OK Ignore No Yes mountmgr Mount Point Manager c:\windows\system32\drivers\mountmgr.sys Kernel Driver Yes Boot Running OK Critical No Yes mpsdrv Windows Defender Firewall Authorization Driver c:\windows\system32\drivers\mpsdrv.sys Kernel Driver Yes Manual Running OK Normal No Yes mracdrv MRAC Driver c:\windows\system32\drivers\mracdrv.sys Kernel Driver No Manual Stopped OK Normal No No mrxdav WebDav Client Redirector Driver c:\windows\system32\drivers\mrxdav.sys File System Driver No Manual Stopped OK Normal No No mrxsmb SMB MiniRedirector Wrapper and Engine c:\windows\system32\drivers\mrxsmb.sys File System Driver Yes Manual Running OK Normal No Yes mrxsmb20 SMB 2.0 MiniRedirector c:\windows\system32\drivers\mrxsmb20.sys File System Driver Yes Manual Running OK Normal No Yes msbridge Microsoft MAC Bridge c:\windows\system32\drivers\bridge.sys Kernel Driver No Manual Stopped OK Normal No No msfs Msfs c:\windows\system32\drivers\msfs.sys File System Driver Yes System Running OK Normal No Yes msgpiowin32 Common Driver for Buttons, DockMode and Laptop/Slate Indicator c:\windows\system32\drivers\msgpiowin32.sys Kernel Driver No Manual Stopped OK Normal No No mshidkmdf Pass-through HID to KMDF Filter Driver c:\windows\system32\drivers\mshidkmdf.sys Kernel Driver No Manual Stopped OK Ignore No No mshidumdf Pass-through HID to UMDF Driver c:\windows\system32\drivers\mshidumdf.sys Kernel Driver No Manual Stopped OK Ignore No No msisadrv msisadrv c:\windows\system32\drivers\msisadrv.sys Kernel Driver Yes Boot Running OK Critical No Yes mskssrv Microsoft Streaming Service Proxy c:\windows\system32\drivers\mskssrv.sys Kernel Driver No Manual Stopped OK Normal No No mspclock Microsoft Streaming Clock Proxy c:\windows\system32\drivers\mspclock.sys Kernel Driver No Manual Stopped OK Normal No No mspqm Microsoft Streaming Quality Manager Proxy c:\windows\system32\drivers\mspqm.sys Kernel Driver No Manual Stopped OK Normal No No msrpc MsRPC c:\windows\system32\drivers\msrpc.sys Kernel Driver No Manual Stopped OK Normal No No mssecflt Microsoft Security Events Component Minifilter c:\windows\system32\drivers\mssecflt.sys Kernel Driver Yes Boot Running OK Normal No Yes mssmbios Microsoft System Management BIOS Driver c:\windows\system32\drivers\mssmbios.sys Kernel Driver Yes System Running OK Normal No Yes mstee Microsoft Streaming Tee/Sink-to-Sink Converter c:\windows\system32\drivers\mstee.sys Kernel Driver No Manual Stopped OK Normal No No mtconfig Microsoft Input Configuration Driver c:\windows\system32\drivers\mtconfig.sys Kernel Driver No Manual Stopped OK Normal No No mup Mup c:\windows\system32\drivers\mup.sys File System Driver Yes Boot Running OK Normal No Yes mvumis mvumis c:\windows\system32\drivers\mvumis.sys Kernel Driver No Manual Stopped OK Normal No No nativewifip NativeWiFi Filter c:\windows\system32\drivers\nwifi.sys Kernel Driver Yes Manual Running OK Normal No Yes ndfltr NetworkDirect Service c:\windows\system32\drivers\ndfltr.sys Kernel Driver No Manual Stopped OK Normal No No ndis NDIS System Driver c:\windows\system32\drivers\ndis.sys Kernel Driver Yes Boot Running OK Critical No Yes ndiscap Microsoft NDIS Capture c:\windows\system32\drivers\ndiscap.sys Kernel Driver No Manual Stopped OK Normal No No ndisimplatform Microsoft Network Adapter Multiplexor Protocol c:\windows\system32\drivers\ndisimplatform.sys Kernel Driver No Manual Stopped OK Normal No No ndistapi Remote Access NDIS TAPI Driver c:\windows\system32\drivers\ndistapi.sys Kernel Driver Yes Manual Running OK Normal No Yes ndisuio NDIS Usermode I/O Protocol c:\windows\system32\drivers\ndisuio.sys Kernel Driver Yes Manual Running OK Normal No Yes ndisvirtualbus Microsoft Virtual Network Adapter Enumerator c:\windows\system32\drivers\ndisvirtualbus.sys Kernel Driver Yes Manual Running OK Normal No Yes ndiswan Remote Access NDIS WAN Driver c:\windows\system32\drivers\ndiswan.sys Kernel Driver Yes Manual Running OK Normal No Yes ndiswanlegacy Remote Access LEGACY NDIS WAN Driver c:\windows\system32\drivers\ndiswan.sys Kernel Driver No Manual Stopped OK Normal No No ndproxy @%SystemRoot%\system32\drivers\todo.sys,-101;NDIS Proxy c:\windows\system32\drivers\ndproxy.sys Kernel Driver Yes Manual Running OK Normal No Yes ndu Windows Network Data Usage Monitoring Driver c:\windows\system32\drivers\ndu.sys Kernel Driver Yes Auto Running OK Normal No Yes netadaptercx Network Adapter Wdf Class Extension Library c:\windows\system32\drivers\netadaptercx.sys Kernel Driver No Manual Stopped OK Normal No No netbios NetBIOS Interface c:\windows\system32\drivers\netbios.sys File System Driver Yes System Running OK Normal No Yes netbt NetBT c:\windows\system32\drivers\netbt.sys Kernel Driver Yes System Running OK Normal No Yes netvsc netvsc c:\windows\system32\drivers\netvsc.sys Kernel Driver No Manual Stopped OK Normal No No npfs Npfs c:\windows\system32\drivers\npfs.sys File System Driver Yes System Running OK Normal No Yes npsvctrig Named pipe service trigger provider c:\windows\system32\drivers\npsvctrig.sys Kernel Driver Yes System Running OK Severe No Yes nsiproxy NSI Proxy Service Driver c:\windows\system32\drivers\nsiproxy.sys Kernel Driver Yes System Running OK Normal No Yes ntfs NTFS c:\windows\system32\drivers\ntfs.sys File System Driver Yes Manual Running OK Normal No Yes null Null c:\windows\system32\drivers\null.sys Kernel Driver Yes System Running OK Normal No Yes nvdimmn Microsoft NVDIMM-N device driver c:\windows\system32\drivers\nvdimmn.sys Kernel Driver No Manual Stopped OK Normal No No nvraid nvraid c:\windows\system32\drivers\nvraid.sys Kernel Driver No Manual Stopped OK Normal No No nvsmu nvsmu c:\windows\system32\drivers\nvsmu.sys Kernel Driver Yes Manual Running OK Ignore No Yes nvstor nvstor c:\windows\system32\drivers\nvstor.sys Kernel Driver Yes Boot Running OK Critical No Yes parport Parallel port driver c:\windows\system32\drivers\parport.sys Kernel Driver Yes Manual Running OK Ignore No Yes partmgr Partition driver c:\windows\system32\drivers\partmgr.sys Kernel Driver Yes Boot Running OK Critical No Yes pci PCI Bus Driver c:\windows\system32\drivers\pci.sys Kernel Driver Yes Boot Running OK Critical No Yes pciide pciide c:\windows\system32\drivers\pciide.sys Kernel Driver Yes Boot Running OK Critical No Yes pcmcia pcmcia c:\windows\system32\drivers\pcmcia.sys Kernel Driver No Manual Stopped OK Normal No No pcouffin VSO Software pcouffin c:\windows\system32\drivers\pcouffin.sys Kernel Driver No Manual Stopped OK Normal No No pcw Performance Counters for Windows Driver c:\windows\system32\drivers\pcw.sys Kernel Driver Yes Boot Running OK Normal No Yes pdc pdc c:\windows\system32\drivers\pdc.sys Kernel Driver Yes Boot Running OK Critical No Yes peauth PEAUTH c:\windows\system32\drivers\peauth.sys Kernel Driver Yes Auto Running OK Normal No Yes percsas2i percsas2i c:\windows\system32\drivers\percsas2i.sys Kernel Driver No Manual Stopped OK Normal No No percsas3i percsas3i c:\windows\system32\drivers\percsas3i.sys Kernel Driver No Manual Stopped OK Normal No No pmem Microsoft persistent memory disk driver c:\windows\system32\drivers\pmem.sys Kernel Driver No Manual Stopped OK Normal No No pnpmem Microsoft Memory Module Driver c:\windows\system32\drivers\pnpmem.sys Kernel Driver No Manual Stopped OK Normal No No pptpminiport WAN Miniport (PPTP) c:\windows\system32\drivers\raspptp.sys Kernel Driver Yes Manual Running OK Normal No Yes processor Processor Driver c:\windows\system32\drivers\processr.sys Kernel Driver No Manual Stopped OK Normal No No psched QoS Packet Scheduler c:\windows\system32\drivers\pacer.sys Kernel Driver Yes System Running OK Normal No Yes qcusbnet Qualcomm USB-NDIS miniport c:\windows\system32\drivers\qcusbnet.sys Kernel Driver No Manual Stopped OK Normal No No qcusbser Qualcomm USB Device for Legacy Serial Communication c:\windows\system32\drivers\qcusbser.sys Kernel Driver No Manual Stopped OK Normal No No qwavedrv QWAVE driver c:\windows\system32\drivers\qwavedrv.sys Kernel Driver Yes Manual Running OK Normal No Yes ramdisk Windows RAM Disk Driver c:\windows\system32\drivers\ramdisk.sys Kernel Driver No Manual Stopped OK Normal No No rasacd Remote Access Auto Connection Driver c:\windows\system32\drivers\rasacd.sys Kernel Driver No Manual Stopped OK Normal No No rasagilevpn WAN Miniport (IKEv2) c:\windows\system32\drivers\agilevpn.sys Kernel Driver Yes Manual Running OK Normal No Yes rasl2tp WAN Miniport (L2TP) c:\windows\system32\drivers\rasl2tp.sys Kernel Driver Yes Manual Running OK Normal No Yes raspppoe Remote Access PPPOE Driver c:\windows\system32\drivers\raspppoe.sys Kernel Driver Yes Manual Running OK Normal No Yes rassstp WAN Miniport (SSTP) c:\windows\system32\drivers\rassstp.sys Kernel Driver Yes Manual Running OK Normal No Yes rdbss Redirected Buffering Sub System c:\windows\system32\drivers\rdbss.sys File System Driver Yes System Running OK Normal No Yes rdpbus Remote Desktop Device Redirector Bus Driver c:\windows\system32\drivers\rdpbus.sys Kernel Driver Yes Manual Running OK Normal No Yes rdpdr Remote Desktop Device Redirector Driver c:\windows\system32\drivers\rdpdr.sys Kernel Driver No Manual Stopped OK Normal No No rdpvideominiport Remote Desktop Video Miniport Driver c:\windows\system32\drivers\rdpvideominiport.sys Kernel Driver No Manual Stopped OK Normal No No rdyboost ReadyBoost c:\windows\system32\drivers\rdyboost.sys Kernel Driver Yes Boot Running OK Critical No Yes refs ReFS c:\windows\system32\drivers\refs.sys File System Driver No Manual Stopped OK Normal No No refsv1 ReFSv1 c:\windows\system32\drivers\refsv1.sys File System Driver No Manual Stopped OK Normal No No rhproxy Resource Hub proxy driver c:\windows\system32\drivers\rhproxy.sys Kernel Driver No Manual Stopped OK Normal No No rspndr Link-Layer Topology Discovery Responder c:\windows\system32\drivers\rspndr.sys Kernel Driver Yes Auto Running OK Normal No Yes rt640x64 Realtek RT640 NT Driver c:\windows\system32\drivers\rt640x64.sys Kernel Driver Yes Manual Running OK Normal No Yes s3cap s3cap c:\windows\system32\drivers\vms3cap.sys Kernel Driver No Manual Stopped OK Normal No No sbp2port SBP-2 Transport/Protocol Bus Driver c:\windows\system32\drivers\sbp2port.sys Kernel Driver No Manual Stopped OK Normal No No scfilter Smart card PnP Class Filter Driver c:\windows\system32\drivers\scfilter.sys Kernel Driver No Manual Stopped OK Normal No No scmbus Microsoft Storage Class Memory Bus Driver c:\windows\system32\drivers\scmbus.sys Kernel Driver No Manual Stopped OK Normal No No scpvbus Scp Virtual Bus Driver c:\windows\system32\drivers\scpvbus.sys Kernel Driver Yes Manual Running OK Normal No Yes sdbus sdbus c:\windows\system32\drivers\sdbus.sys Kernel Driver No Manual Stopped OK Normal No No sdfrd SDF Reflector c:\windows\system32\drivers\sdfrd.sys Kernel Driver No Manual Stopped OK Normal No No sdstor SD Storage Port Driver c:\windows\system32\drivers\sdstor.sys Kernel Driver No Manual Stopped OK Normal No No sercx Serial UART Support Library c:\windows\system32\drivers\sercx.sys Kernel Driver No Manual Stopped OK Normal No No sercx2 Serial UART Support Library c:\windows\system32\drivers\sercx2.sys Kernel Driver No Manual Stopped OK Normal No No serenum Serenum Filter Driver c:\windows\system32\drivers\serenum.sys Kernel Driver Yes Manual Running OK Normal No Yes serial Serial port driver c:\windows\system32\drivers\serial.sys Kernel Driver Yes Manual Running OK Ignore No Yes sermouse Serial Mouse Driver c:\windows\system32\drivers\sermouse.sys Kernel Driver No Manual Stopped OK Normal No No sfloppy High-Capacity Floppy Disk Drive c:\windows\system32\drivers\sfloppy.sys Kernel Driver No Manual Stopped OK Normal No No sisraid2 SiSRaid2 c:\windows\system32\drivers\sisraid2.sys Kernel Driver No Manual Stopped OK Normal No No sisraid4 SiSRaid4 c:\windows\system32\drivers\sisraid4.sys Kernel Driver No Manual Stopped OK Normal No No spaceport Storage Spaces Driver c:\windows\system32\drivers\spaceport.sys Kernel Driver Yes Boot Running OK Critical No Yes spatialgraphfilter Holographic Spatial Graph Filter c:\windows\system32\drivers\spatialgraphfilter.sys Kernel Driver No Manual Stopped OK Normal No No spbcx Simple Peripheral Bus Support Library c:\windows\system32\drivers\spbcx.sys Kernel Driver No Manual Stopped OK Normal No No speedfan speedfan \??\c:\windows\syswow64\speedfan.sys Kernel Driver Yes Auto Running OK Normal No Yes srv2 Server SMB 2.xxx Driver c:\windows\system32\drivers\srv2.sys File System Driver Yes Manual Running OK Normal No Yes srvnet srvnet c:\windows\system32\drivers\srvnet.sys File System Driver Yes Manual Running OK Normal No Yes stexstor stexstor c:\windows\system32\drivers\stexstor.sys Kernel Driver No Manual Stopped OK Normal No No storahci Microsoft Standard SATA AHCI Driver c:\windows\system32\drivers\storahci.sys Kernel Driver No Manual Stopped OK Critical No No storflt Microsoft Hyper-V Storage Accelerator c:\windows\system32\drivers\vmstorfl.sys Kernel Driver No Manual Stopped OK Normal No No stornvme Microsoft Standard NVM Express Driver c:\windows\system32\drivers\stornvme.sys Kernel Driver No Manual Stopped OK Critical No No storqosflt Storage QoS Filter Driver c:\windows\system32\drivers\storqosflt.sys File System Driver Yes Auto Running OK Normal No Yes storufs Microsoft Universal Flash Storage (UFS) Driver c:\windows\system32\drivers\storufs.sys Kernel Driver No Manual Stopped OK Normal No No storvsc storvsc c:\windows\system32\drivers\storvsc.sys Kernel Driver No Manual Stopped OK Normal No No swenum Software Bus Driver c:\windows\system32\drivers\swenum.sys Kernel Driver Yes Manual Running OK Normal No Yes synth3dvsc Synth3dVsc c:\windows\system32\drivers\synth3dvsc.sys Kernel Driver No Manual Stopped OK Normal No No tap0901 TAP-Windows Adapter V9 c:\windows\system32\drivers\tap0901.sys Kernel Driver No Manual Stopped OK Normal No No tap0901t TAP-Win32 Adapter V9 (Tunngle) c:\windows\system32\drivers\tap0901t.sys Kernel Driver Yes Manual Running OK Normal No Yes taphss6 Anchorfree HSS VPN Adapter c:\windows\system32\drivers\taphss6.sys Kernel Driver No Manual Stopped OK Normal No No tapwindscribe0901 Windscribe VPN c:\windows\system32\drivers\tapwindscribe0901.sys Kernel Driver No Manual Stopped OK Normal No No tcpip TCP/IP Protocol Driver c:\windows\system32\drivers\tcpip.sys Kernel Driver Yes Boot Running OK Normal No Yes tcpip6 @todo.dll,-100;Microsoft IPv6 Protocol Driver c:\windows\system32\drivers\tcpip.sys Kernel Driver No Manual Stopped OK Normal No No tcpipreg TCP/IP Registry Compatibility c:\windows\system32\drivers\tcpipreg.sys Kernel Driver Yes Auto Running OK Normal No Yes tdx NetIO Legacy TDI Support Driver c:\windows\system32\drivers\tdx.sys Kernel Driver Yes System Running OK Normal No Yes terminpt Microsoft Remote Desktop Input Driver c:\windows\system32\drivers\terminpt.sys Kernel Driver No Manual Stopped OK Normal No No tpm TPM c:\windows\system32\drivers\tpm.sys Kernel Driver No Manual Stopped OK Normal No No tsusbflt Remote Desktop USB Hub Class Filter Driver c:\windows\system32\drivers\tsusbflt.sys Kernel Driver No Manual Stopped OK Normal No No tsusbgd Remote Desktop Generic USB Device c:\windows\system32\drivers\tsusbgd.sys Kernel Driver No Manual Stopped OK Normal No No tsusbhub Remote Desktop USB Hub c:\windows\system32\drivers\tsusbhub.sys Kernel Driver No Manual Stopped OK Normal No No tunnel Microsoft Tunnel Miniport Adapter Driver c:\windows\system32\drivers\tunnel.sys Kernel Driver Yes Manual Running OK Normal No Yes uaspstor USB Attached SCSI (UAS) Driver c:\windows\system32\drivers\uaspstor.sys Kernel Driver No Manual Stopped OK Normal No No ucmcx0101 USB Connector Manager KMDF Class Extension c:\windows\system32\drivers\ucmcx.sys Kernel Driver No Manual Stopped OK Normal No No ucmtcpcicx0101 UCM-TCPCI KMDF Class Extension c:\windows\system32\drivers\ucmtcpcicx.sys Kernel Driver No Manual Stopped OK Normal No No ucmucsi USB Connector Manager UCSI Client c:\windows\system32\drivers\ucmucsi.sys Kernel Driver No Manual Stopped OK Normal No No ucx01000 USB Host Support Library c:\windows\system32\drivers\ucx01000.sys Kernel Driver No Manual Stopped OK Normal No No udecx USB Device Emulation Support Library c:\windows\system32\drivers\udecx.sys Kernel Driver No Manual Stopped OK Normal No No udfs udfs c:\windows\system32\drivers\udfs.sys File System Driver No Disabled Stopped OK Normal No No uefi Microsoft UEFI Driver c:\windows\system32\drivers\uefi.sys Kernel Driver No Manual Stopped OK Normal No No uevagentdriver UevAgentDriver c:\windows\system32\drivers\uevagentdriver.sys File System Driver No Disabled Stopped OK Normal No No ufx01000 USB Function Class Extension c:\windows\system32\drivers\ufx01000.sys Kernel Driver No Manual Stopped OK Normal No No ufxchipidea USB Chipidea Controller c:\windows\system32\drivers\ufxchipidea.sys Kernel Driver No Manual Stopped OK Normal No No ufxsynopsys USB Synopsys Controller c:\windows\system32\drivers\ufxsynopsys.sys Kernel Driver No Manual Stopped OK Normal No No umbus UMBus Enumerator Driver c:\windows\system32\drivers\umbus.sys Kernel Driver Yes Manual Running OK Normal No Yes umpass Microsoft UMPass Driver c:\windows\system32\drivers\umpass.sys Kernel Driver No Manual Stopped OK Normal No No urschipidea Chipidea USB Role-Switch Driver c:\windows\system32\drivers\urschipidea.sys Kernel Driver No Manual Stopped OK Normal No No urscx01000 USB Role-Switch Support Library c:\windows\system32\drivers\urscx01000.sys Kernel Driver No Manual Stopped OK Normal No No urssynopsys Synopsys USB Role-Switch Driver c:\windows\system32\drivers\urssynopsys.sys Kernel Driver No Manual Stopped OK Normal No No usbaudio USB Audio Driver (WDM) c:\windows\system32\drivers\usbaudio.sys Kernel Driver Yes Manual Running OK Normal No Yes usbccgp Microsoft USB Generic Parent Driver c:\windows\system32\drivers\usbccgp.sys Kernel Driver Yes Manual Running OK Normal No Yes usbcir eHome Infrared Receiver (USBCIR) c:\windows\system32\drivers\usbcir.sys Kernel Driver No Manual Stopped OK Normal No No usbehci Microsoft USB 2.0 Enhanced Host Controller Miniport Driver c:\windows\system32\drivers\usbehci.sys Kernel Driver Yes Manual Running OK Normal No Yes usbhub Microsoft USB Standard Hub Driver c:\windows\system32\drivers\usbhub.sys Kernel Driver Yes Manual Running OK Normal No Yes usbhub3 SuperSpeed Hub c:\windows\system32\drivers\usbhub3.sys Kernel Driver No Manual Stopped OK Normal No No usbohci Microsoft USB Open Host Controller Miniport Driver c:\windows\system32\drivers\usbohci.sys Kernel Driver Yes Manual Running OK Normal No Yes usbprint Microsoft USB PRINTER Class c:\windows\system32\drivers\usbprint.sys Kernel Driver No Manual Stopped OK Normal No No usbser Microsoft USB Serial Driver c:\windows\system32\drivers\usbser.sys Kernel Driver No Manual Stopped OK Normal No No usbstor USB Mass Storage Driver c:\windows\system32\drivers\usbstor.sys Kernel Driver No Manual Stopped OK Normal No No usbuhci Microsoft USB Universal Host Controller Miniport Driver c:\windows\system32\drivers\usbuhci.sys Kernel Driver No Manual Stopped OK Normal No No usbvideo USB Video Device (WDM) c:\windows\system32\drivers\usbvideo.sys Kernel Driver Yes Manual Running OK Normal No Yes usbxhci USB xHCI Compliant Host Controller c:\windows\system32\drivers\usbxhci.sys Kernel Driver No Manual Stopped OK Normal No No vdrvroot Microsoft Virtual Drive Enumerator c:\windows\system32\drivers\vdrvroot.sys Kernel Driver Yes Boot Running OK Critical No Yes verifierext VerifierExt c:\windows\system32\drivers\verifierext.sys Kernel Driver No Manual Stopped OK Normal No No vhdmp vhdmp c:\windows\system32\drivers\vhdmp.sys Kernel Driver No Manual Stopped OK Normal No No vhf Virtual HID Framework (VHF) Driver c:\windows\system32\drivers\vhf.sys Kernel Driver No Manual Stopped OK Ignore No No vmbus Virtual Machine Bus c:\windows\system32\drivers\vmbus.sys Kernel Driver No Manual Stopped OK Normal No No vmbushid VMBusHID c:\windows\system32\drivers\vmbushid.sys Kernel Driver No Manual Stopped OK Ignore No No vmgid Microsoft Hyper-V Guest Infrastructure Driver c:\windows\system32\drivers\vmgid.sys Kernel Driver No Manual Stopped OK Normal No No vnvdimm Microsoft virtual NVDIMM device driver c:\windows\system32\drivers\vnvdimm.sys Kernel Driver No Manual Stopped OK Normal No No volmgr Volume Manager Driver c:\windows\system32\drivers\volmgr.sys Kernel Driver Yes Boot Running OK Critical No Yes volmgrx Dynamic Volume Manager c:\windows\system32\drivers\volmgrx.sys Kernel Driver Yes Boot Running OK Critical No Yes volsnap Volume Shadow Copy driver c:\windows\system32\drivers\volsnap.sys Kernel Driver Yes Boot Running OK Critical No Yes volume Volume driver c:\windows\system32\drivers\volume.sys Kernel Driver Yes Boot Running OK Critical No Yes vpci Microsoft Hyper-V Virtual PCI Bus c:\windows\system32\drivers\vpci.sys Kernel Driver No Manual Stopped OK Normal No No vsmraid vsmraid c:\windows\system32\drivers\vsmraid.sys Kernel Driver No Manual Stopped OK Normal No No vstxraid VIA StorX Storage RAID Controller Windows Driver c:\windows\system32\drivers\vstxraid.sys Kernel Driver No Manual Stopped OK Normal No No vwifibus Virtual Wireless Bus Driver c:\windows\system32\drivers\vwifibus.sys Kernel Driver No Manual Stopped OK Normal No No vwififlt Virtual WiFi Filter Driver c:\windows\system32\drivers\vwififlt.sys Kernel Driver Yes System Running OK Normal No Yes wacompen Wacom Serial Pen HID Driver c:\windows\system32\drivers\wacompen.sys Kernel Driver No Manual Stopped OK Normal No No wanarp Remote Access IP ARP Driver c:\windows\system32\drivers\wanarp.sys Kernel Driver Yes Auto Running OK Normal No Yes wanarpv6 Remote Access IPv6 ARP Driver c:\windows\system32\drivers\wanarp.sys Kernel Driver No Manual Stopped OK Normal No No wcifs Windows Container Isolation c:\windows\system32\drivers\wcifs.sys File System Driver Yes Auto Running OK Normal No Yes wcnfs Windows Container Name Virtualization c:\windows\system32\drivers\wcnfs.sys File System Driver No Manual Stopped OK Normal No No wdboot Windows Defender Antivirus Boot Driver c:\windows\system32\drivers\wd\wdboot.sys Kernel Driver No Boot Stopped OK Normal No No wdf01000 Kernel Mode Driver Frameworks service c:\windows\system32\drivers\wdf01000.sys Kernel Driver Yes Boot Running OK Normal No Yes wdfilter Windows Defender Antivirus Mini-Filter Driver c:\windows\system32\drivers\wd\wdfilter.sys File System Driver Yes Boot Running OK Normal No Yes wdiwifi WDI Driver Framework c:\windows\system32\drivers\wdiwifi.sys Kernel Driver No Manual Stopped OK Normal No No wdm_usb wdm_usb c:\windows\system32\drivers\usb2ser.sys Kernel Driver No Manual Stopped OK Normal No No wdnisdrv Windows Defender Antivirus Network Inspection System Driver c:\windows\system32\drivers\wd\wdnisdrv.sys Kernel Driver Yes Manual Running OK Normal No Yes wdnsfltr Windows Defender Network Stream Filter Driver c:\windows\system32\drivers\wdnsfltr.sys Kernel Driver No Manual Stopped OK Normal No No wfplwfs Microsoft Windows Filtering Platform c:\windows\system32\drivers\wfplwfs.sys Kernel Driver Yes Boot Running OK Normal No Yes wimmount WIMMount c:\windows\system32\drivers\wimmount.sys File System Driver No Manual Stopped OK Normal No No windowstrustedrt Windows Trusted Execution Environment Class Extension c:\windows\system32\drivers\windowstrustedrt.sys Kernel Driver Yes Boot Running OK Critical No Yes windowstrustedrtproxy Microsoft Windows Trusted Runtime Secure Service c:\windows\system32\drivers\windowstrustedrtproxy.sys Kernel Driver Yes Boot Running OK Normal No Yes winmad WinMad Service c:\windows\system32\drivers\winmad.sys Kernel Driver No Manual Stopped OK Normal No No winnat Windows NAT Driver c:\windows\system32\drivers\winnat.sys Kernel Driver No Manual Stopped OK Normal No No winring0_1_2_0 WinRing0_1_2_0 \??\c:\program files (x86)\ezgameboosterpro\ezgamebooster.sys Kernel Driver No Manual Stopped OK Normal No No winusb WinUsb Driver c:\windows\system32\drivers\winusb.sys Kernel Driver No Manual Stopped OK Normal No No winverbs WinVerbs Service c:\windows\system32\drivers\winverbs.sys Kernel Driver No Manual Stopped OK Normal No No wmiacpi Microsoft Windows Management Interface for ACPI c:\windows\system32\drivers\wmiacpi.sys Kernel Driver No Manual Stopped OK Normal No No wof Windows Overlay File System Filter Driver c:\windows\system32\drivers\wof.sys File System Driver Yes Boot Running OK Normal No Yes wpdupfltr WPD Upper Class Filter Driver c:\windows\system32\drivers\wpdupfltr.sys Kernel Driver No Manual Stopped OK Normal No No ws2ifsl Winsock IFS Driver c:\windows\system32\drivers\ws2ifsl.sys Kernel Driver No Disabled Stopped OK Normal No No wudfpf User Mode Driver Frameworks Platform Driver c:\windows\system32\drivers\wudfpf.sys Kernel Driver No Manual Stopped OK Normal No No wudfrd Windows Driver Foundation - User-mode Driver Framework Reflector c:\windows\system32\drivers\wudfrd.sys Kernel Driver No Manual Stopped OK Normal No No wudfwpdfs WUDFWpdFs c:\windows\system32\drivers\wudfrd.sys Kernel Driver No Manual Stopped OK Normal No No wudfwpdmtp WUDFWpdMtp c:\windows\system32\drivers\wudfrd.sys Kernel Driver No Manual Stopped OK Normal No No xboxgip Xbox Game Input Protocol Driver c:\windows\system32\drivers\xboxgip.sys Kernel Driver No Manual Stopped OK Normal No No xinputhid XINPUT HID Filter Driver c:\windows\system32\drivers\xinputhid.sys Kernel Driver No Manual Stopped OK Normal No No mbamswissarmy MBAMSwissArmy c:\windows\system32\drivers\mbamswissarmy.sys Kernel Driver Yes Manual Running OK Normal No Yes mbamfarflt MBAMFarflt c:\windows\system32\drivers\farflt.sys Kernel Driver Yes Manual Running OK Normal No Yes mbamprotection MBAMProtection c:\windows\system32\drivers\mbam.sys Kernel Driver Yes Manual Running OK Normal No Yes mpksl7eab7460 MpKsl7eab7460 \??\c:\programdata\microsoft\windows defender\definition updates\{7de4bc1c-542b-41ce-941e-81aacf4de32e}\mpksl7eab7460.sys Kernel Driver Yes System Running OK Ignore No Yes mbamwebprotection MBAMWebProtection c:\windows\system32\drivers\mwac.sys Kernel Driver Yes Manual Running OK Normal No Yes [Environment Variables] Variable Value User Name ComSpec %SystemRoot%\system32\cmd.exe OS Windows_NT PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE AMD64 PSModulePath %ProgramFiles%\WindowsPowerShell\Modules;%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules TEMP %SystemRoot%\TEMP TMP %SystemRoot%\TEMP USERNAME SYSTEM windir %SystemRoot% Path C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\Skype\Phone\;C:\Program Files (x86)\AMD\ATI.ACE\Core-Static;C:\Program Files (x86)\Windows Live\Shared NUMBER_OF_PROCESSORS 2 PROCESSOR_LEVEL 16 PROCESSOR_IDENTIFIER AMD64 Family 16 Model 6 Stepping 3, AuthenticAMD PROCESSOR_REVISION 0603 Path %USERPROFILE%\AppData\Local\Microsoft\WindowsApps; NT AUTHORITY\SYSTEM TEMP %USERPROFILE%\AppData\Local\Temp NT AUTHORITY\SYSTEM TMP %USERPROFILE%\AppData\Local\Temp NT AUTHORITY\SYSTEM Path %USERPROFILE%\AppData\Local\Microsoft\WindowsApps; DESKTOP-2V4U062\Windows-PC TEMP %USERPROFILE%\AppData\Local\Temp DESKTOP-2V4U062\Windows-PC TMP %USERPROFILE%\AppData\Local\Temp DESKTOP-2V4U062\Windows-PC OneDrive C:\Users\stefa\OneDrive DESKTOP-2V4U062\Windows-PC [Print Jobs] Document Size Owner Notify Status Time Submitted Start Time Until Time Elapsed Time Pages Printed Job ID Priority Parameters Driver Print Processor Host Print Queue Data Type Name [Network Connections] Local Name Remote Name Type Status User Name [Running Tasks] Name Path Process ID Priority Min Working Set Max Working Set Start Time Version Size File Date system idle process Not Available 0 0 Not Available Not Available 2/4/2018 8:38 PM Not Available Not Available Not Available system Not Available 4 8 Not Available Not Available 2/4/2018 8:38 PM Not Available Not Available Not Available smss.exe Not Available 348 11 Not Available Not Available 2/4/2018 8:38 PM Not Available Not Available Not Available csrss.exe Not Available 540 13 Not Available Not Available 2/4/2018 8:39 PM Not Available Not Available Not Available wininit.exe Not Available 640 13 Not Available Not Available 2/4/2018 8:39 PM Not Available Not Available Not Available csrss.exe Not Available 656 13 Not Available Not Available 2/4/2018 8:39 PM Not Available Not Available Not Available services.exe Not Available 704 9 Not Available Not Available 2/4/2018 8:39 PM Not Available Not Available Not Available lsass.exe Not Available 712 9 Not Available Not Available 2/4/2018 8:39 PM Not Available Not Available Not Available svchost.exe Not Available 812 8 Not Available Not Available 2/4/2018 8:39 PM Not Available Not Available Not Available fontdrvhost.exe Not Available 820 8 Not Available Not Available 2/4/2018 8:39 PM Not Available Not Available Not Available svchost.exe Not Available 892 8 Not Available Not Available 2/4/2018 8:39 PM Not Available Not Available Not Available winlogon.exe Not Available 900 13 Not Available Not Available 2/4/2018 8:39 PM Not Available Not Available Not Available svchost.exe Not Available 988 8 Not Available Not Available 2/4/2018 8:39 PM Not Available Not Available Not Available svchost.exe Not Available 68 8 Not Available Not Available 2/4/2018 8:39 PM Not Available Not Available Not Available fontdrvhost.exe Not Available 420 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available dwm.exe Not Available 544 13 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1048 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1136 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1148 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1176 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1264 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1328 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1352 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1400 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1484 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1540 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available atiesrxx.exe Not Available 1604 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available atieclxx.exe Not Available 1624 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1644 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1660 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1668 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1752 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available memory compression Not Available 1776 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1864 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1884 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1948 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1956 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 1464 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2068 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2108 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2180 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2340 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2360 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2468 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2596 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2644 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2676 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available spoolsv.exe Not Available 2784 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2844 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2980 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available agsservice.exe Not Available 2988 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2996 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 3004 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 3044 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 3056 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available mbamservice.exe Not Available 2124 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2516 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2504 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 2956 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available securityhealthservice.exe Not Available 2976 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 3076 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 3084 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available msmpeng.exe Not Available 3092 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 3104 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available wsappservice.exe Not Available 3208 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 3572 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 3636 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 4180 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available nissrv.exe Not Available 4828 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available mbamtray.exe c:\program files\malwarebytes\anti-malware\mbamtray.exe 5040 8 200 1380 2/4/2018 8:40 PM 3.0.0.1284 3.35 MB (3,515,856 bytes) 1/28/2018 2:08 PM svchost.exe c:\windows\system32\svchost.exe 5092 8 200 1380 2/4/2018 8:40 PM 10.0.16299.15 47.55 KB (48,688 bytes) 9/29/2017 2:41 PM sihost.exe c:\windows\system32\sihost.exe 3336 8 200 1380 2/4/2018 8:40 PM 10.0.16299.15 76.50 KB (78,336 bytes) 9/29/2017 2:41 PM svchost.exe c:\windows\system32\svchost.exe 2576 8 200 1380 2/4/2018 8:40 PM 10.0.16299.15 47.55 KB (48,688 bytes) 9/29/2017 2:41 PM svchost.exe Not Available 4532 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available svchost.exe Not Available 5140 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available runtimebroker.exe c:\windows\system32\runtimebroker.exe 5996 8 200 1380 2/4/2018 8:40 PM 10.0.16299.15 94.41 KB (96,672 bytes) 9/29/2017 2:41 PM runtimebroker.exe c:\windows\system32\runtimebroker.exe 4720 8 200 1380 2/4/2018 8:40 PM 10.0.16299.15 94.41 KB (96,672 bytes) 9/29/2017 2:41 PM svchost.exe Not Available 5252 8 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available ctfmon.exe Not Available 6220 13 Not Available Not Available 2/4/2018 8:40 PM Not Available Not Available Not Available settingsynchost.exe c:\windows\system32\settingsynchost.exe 6504 6 200 1380 2/4/2018 8:41 PM 10.0.16299.15 943.03 KB (965,664 bytes) 9/29/2017 2:41 PM searchindexer.exe Not Available 6540 8 Not Available Not Available 2/4/2018 8:41 PM Not Available Not Available Not Available msascuil.exe c:\program files\windows defender\msascuil.exe 7836 8 200 1380 2/4/2018 8:41 PM 4.12.16299.15 615.40 KB (630,168 bytes) 9/29/2017 2:41 PM idman.exe c:\program files (x86)\internet download manager\idman.exe 7588 8 200 1380 2/4/2018 8:41 PM 6.30.5.2 3.90 MB (4,091,960 bytes) 1/14/2018 9:36 AM svchost.exe Not Available 6732 8 Not Available Not Available 2/4/2018 8:41 PM Not Available Not Available Not Available onedrive.exe c:\users\stefa\appdata\local\microsoft\onedrive\onedrive.exe 6824 8 200 1380 2/4/2018 8:41 PM 17.3.7294.108 1.48 MB (1,554,080 bytes) 1/27/2018 12:27 AM ccleaner64.exe Not Available 1536 8 Not Available Not Available 2/4/2018 8:41 PM Not Available Not Available Not Available svchost.exe Not Available 3144 8 Not Available Not Available 2/4/2018 8:41 PM Not Available Not Available Not Available jusched.exe c:\program files (x86)\common files\java\java update\jusched.exe 7212 8 200 1380 2/4/2018 8:41 PM 9.0.1.0 631.52 KB (646,680 bytes) 9/27/2017 9:26 PM unsecapp.exe Not Available 7320 8 Not Available Not Available 2/4/2018 8:41 PM Not Available Not Available Not Available wmiprvse.exe Not Available 7448 8 Not Available Not Available 2/4/2018 8:41 PM Not Available Not Available Not Available iemonitor.exe c:\program files (x86)\internet download manager\iemonitor.exe 3132 8 200 1380 2/4/2018 8:41 PM 6.22.1.1 269.05 KB (275,512 bytes) 8/5/2016 4:50 PM svchost.exe c:\windows\system32\svchost.exe 4192 8 200 1380 2/4/2018 8:42 PM 10.0.16299.15 47.55 KB (48,688 bytes) 9/29/2017 2:41 PM svchost.exe Not Available 304 8 Not Available Not Available 2/4/2018 8:42 PM Not Available Not Available Not Available googleupdate.exe Not Available 6796 4 Not Available Not Available 2/4/2018 8:42 PM Not Available Not Available Not Available googlecrashhandler.exe Not Available 7276 4 Not Available Not Available 2/4/2018 8:42 PM Not Available Not Available Not Available googlecrashhandler64.exe Not Available 7084 4 Not Available Not Available 2/4/2018 8:42 PM Not Available Not Available Not Available sppsvc.exe Not Available 7284 8 Not Available Not Available 2/4/2018 8:42 PM Not Available Not Available Not Available svchost.exe Not Available 6156 8 Not Available Not Available 2/4/2018 8:42 PM Not Available Not Available Not Available dtshellhlp.exe c:\program files\daemon tools lite\dtshellhlp.exe 6700 8 200 1380 2/4/2018 8:43 PM 10.7.0.333 3.71 MB (3,888,320 bytes) 12/15/2017 11:12 AM applicationframehost.exe c:\windows\system32\applicationframehost.exe 7240 8 200 1380 2/4/2018 8:43 PM 10.0.16299.15 67.66 KB (69,288 bytes) 9/29/2017 2:41 PM discsoftbusservicelite.exe Not Available 6836 8 Not Available Not Available 2/4/2018 8:44 PM Not Available Not Available Not Available steam.exe c:\program files (x86)\steam\steam.exe 6856 8 200 1380 2/4/2018 8:47 PM 4.28.51.7 2.97 MB (3,111,712 bytes) 12/19/2017 3:58 PM runtimebroker.exe c:\windows\system32\runtimebroker.exe 6288 8 200 1380 2/4/2018 8:47 PM 10.0.16299.15 94.41 KB (96,672 bytes) 9/29/2017 2:41 PM steamwebhelper.exe c:\program files (x86)\steam\bin\cef\cef.win7\steamwebhelper.exe 8400 8 200 1380 2/4/2018 8:47 PM 4.28.51.7 3.50 MB (3,668,256 bytes) 12/19/2017 3:58 PM steamwebhelper.exe c:\program files (x86)\steam\bin\cef\cef.win7\steamwebhelper.exe 8636 8 200 1380 2/4/2018 8:47 PM 4.28.51.7 3.50 MB (3,668,256 bytes) 12/19/2017 3:58 PM steamservice.exe Not Available 8532 8 Not Available Not Available 2/4/2018 8:48 PM Not Available Not Available Not Available skypehost.exe c:\program files\windowsapps\microsoft.skypeapp_12.1803.279.0_x64__kzf8qxf38zg5c\skypehost.exe 2292 8 200 1380 2/4/2018 8:48 PM 12.1803.279.0 84.50 KB (86,528 bytes) 1/29/2018 2:12 AM runtimebroker.exe c:\windows\system32\runtimebroker.exe 7696 8 200 1380 2/4/2018 8:48 PM 10.0.16299.15 94.41 KB (96,672 bytes) 9/29/2017 2:41 PM svchost.exe Not Available 9252 8 Not Available Not Available 2/4/2018 8:50 PM Not Available Not Available Not Available chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 8172 8 152500 153680 2/4/2018 8:50 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 4840 8 200 1380 2/4/2018 8:50 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 9396 8 200 1380 2/4/2018 8:50 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 9704 8 200 1380 2/4/2018 8:50 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 10020 8 200 1380 2/4/2018 8:50 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 10000 8 200 1380 2/4/2018 8:50 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 6784 8 200 1380 2/4/2018 8:50 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 9284 8 200 1380 2/4/2018 8:50 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 8200 8 200 1380 2/4/2018 8:50 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 2492 8 200 1380 2/4/2018 8:50 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 7692 8 200 1380 2/4/2018 8:51 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 8696 4 200 1380 2/4/2018 8:51 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 9496 4 200 1380 2/4/2018 8:51 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 1132 4 200 1380 2/4/2018 8:51 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM pubmonitor.exe Not Available 2740 8 Not Available Not Available 2/4/2018 8:51 PM Not Available Not Available Not Available svchost.exe Not Available 9604 8 Not Available Not Available 2/4/2018 8:53 PM Not Available Not Available Not Available chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 5976 8 200 1380 2/4/2018 9:48 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM svchost.exe Not Available 1940 8 Not Available Not Available 2/4/2018 10:13 PM Not Available Not Available Not Available svchost.exe Not Available 2660 8 Not Available Not Available 2/4/2018 10:13 PM Not Available Not Available Not Available svchost.exe Not Available 2396 8 Not Available Not Available 2/4/2018 10:21 PM Not Available Not Available Not Available microsoft.msn.weather.exe c:\program files\windowsapps\microsoft.bingweather_4.22.3254.0_x64__8wekyb3d8bbwe\microsoft.msn.weather.exe 6932 8 200 1380 2/4/2018 10:22 PM 4.22.1711.21004 17.00 KB (17,408 bytes) 12/15/2017 3:56 PM runtimebroker.exe c:\windows\system32\runtimebroker.exe 4976 8 200 1380 2/4/2018 10:22 PM 10.0.16299.15 94.41 KB (96,672 bytes) 9/29/2017 2:41 PM steamwebhelper.exe c:\program files (x86)\steam\bin\cef\cef.win7\steamwebhelper.exe 12784 8 200 1380 2/5/2018 1:13 AM 4.28.51.7 3.50 MB (3,668,256 bytes) 12/19/2017 3:58 PM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 10508 4 200 1380 2/5/2018 7:56 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 10820 8 200 1380 2/5/2018 7:59 PM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM taskmgr.exe Not Available 12148 8 Not Available Not Available 2/5/2018 9:32 PM Not Available Not Available Not Available svchost.exe Not Available 13232 8 Not Available Not Available 2/6/2018 5:33 PM Not Available Not Available Not Available winstore.app.exe c:\program files\windowsapps\microsoft.windowsstore_11801.1001.4.0_x64__8wekyb3d8bbwe\winstore.app.exe 8608 8 200 1380 2/6/2018 5:55 PM 11801.1001.4.0 16.00 KB (16,384 bytes) 2/2/2018 2:21 PM runtimebroker.exe c:\windows\system32\runtimebroker.exe 13324 8 200 1380 2/6/2018 5:55 PM 10.0.16299.15 94.41 KB (96,672 bytes) 9/29/2017 2:41 PM explorer.exe c:\windows\explorer.exe 12360 8 200 1380 2/7/2018 12:22 PM 10.0.16299.214 3.72 MB (3,904,296 bytes) 1/31/2018 10:42 PM shellexperiencehost.exe c:\windows\systemapps\shellexperiencehost_cw5n1h2txyewy\shellexperiencehost.exe 12632 8 200 1380 2/7/2018 12:22 PM 10.0.16299.15 1.92 MB (2,010,520 bytes) 9/29/2017 2:41 PM searchui.exe c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\searchui.exe 3372 8 200 1380 2/7/2018 12:22 PM 10.0.16299.214 11.81 MB (12,378,528 bytes) 1/31/2018 10:42 PM tabtip.exe Not Available 4024 13 Not Available Not Available 2/7/2018 2:57 PM Not Available Not Available Not Available tabtip32.exe Not Available 8016 8 Not Available Not Available 2/7/2018 2:57 PM Not Available Not Available Not Available windowsinternal.composableshell.experiences.textinput.inputapp.exe c:\windows\systemapps\inputapp_cw5n1h2txyewy\windowsinternal.composableshell.experiences.textinput.inputapp.exe 12220 8 56968 58148 2/7/2018 2:57 PM 10.0.16299.214 614.50 KB (629,248 bytes) 1/31/2018 10:42 PM runtimebroker.exe c:\windows\system32\runtimebroker.exe 13792 8 200 1380 2/7/2018 2:57 PM 10.0.16299.15 94.41 KB (96,672 bytes) 9/29/2017 2:41 PM systemsettingsbroker.exe c:\windows\system32\systemsettingsbroker.exe 8304 10 200 1380 2/7/2018 3:19 PM 10.0.16299.15 202.82 KB (207,688 bytes) 9/29/2017 2:42 PM svchost.exe Not Available 12244 8 Not Available Not Available 2/7/2018 3:23 PM Not Available Not Available Not Available skype.exe c:\program files (x86)\skype\phone\skype.exe 14128 8 200 1380 2/7/2018 3:24 PM 7.40.0.151 26.54 MB (27,832,264 bytes) 10/6/2017 12:38 PM viber.exe c:\users\stefa\appdata\local\viber\viber.exe 14136 8 200 1380 2/7/2018 3:24 PM 8.0.0.4 33.93 MB (35,581,000 bytes) 2/2/2018 12:47 AM cnext.exe c:\program files\amd\cnext\cnext\cnext.exe 8788 8 200 1380 2/7/2018 3:25 PM 10.1.1.1522 4.70 MB (4,926,664 bytes) 2/26/2016 2:55 PM driverbooster.exe Not Available 7368 8 Not Available Not Available 2/7/2018 3:26 PM Not Available Not Available Not Available systemsettings.exe c:\windows\immersivecontrolpanel\systemsettings.exe 13084 8 200 1380 2/7/2018 3:50 PM 10.0.16299.15 93.38 KB (95,616 bytes) 9/29/2017 2:43 PM microsoft.photos.exe c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\microsoft.photos.exe 14124 8 200 1380 2/7/2018 3:50 PM 2017.39101.16720.0 466.00 KB (477,184 bytes) 12/14/2017 4:07 PM runtimebroker.exe c:\windows\system32\runtimebroker.exe 13588 8 200 1380 2/7/2018 3:50 PM 10.0.16299.15 94.41 KB (96,672 bytes) 9/29/2017 2:41 PM hxoutlook.exe c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\hxoutlook.exe 8168 8 200 1380 2/7/2018 7:09 PM 16.0.8827.2185 2.07 MB (2,171,568 bytes) 2/6/2018 8:41 AM hxtsr.exe c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\hxtsr.exe 10968 8 200 1380 2/7/2018 7:09 PM 16.0.8827.2185 96.17 KB (98,480 bytes) 2/6/2018 8:41 AM runtimebroker.exe c:\windows\system32\runtimebroker.exe 1796 8 200 1380 2/7/2018 7:09 PM 10.0.16299.15 94.41 KB (96,672 bytes) 9/29/2017 2:41 PM runtimebroker.exe c:\windows\system32\runtimebroker.exe 11852 8 200 1380 2/7/2018 7:09 PM 10.0.16299.15 94.41 KB (96,672 bytes) 9/29/2017 2:41 PM svchost.exe Not Available 4312 8 Not Available Not Available 2/8/2018 4:47 AM Not Available Not Available Not Available audiodg.exe Not Available 11080 8 Not Available Not Available 2/8/2018 4:47 AM Not Available Not Available Not Available dllhost.exe c:\windows\system32\dllhost.exe 13064 8 200 1380 2/8/2018 4:47 AM 10.0.16299.15 20.40 KB (20,888 bytes) 9/29/2017 2:41 PM skypebrowserhost.exe c:\program files (x86)\skype\browser\skypebrowserhost.exe 13760 8 200 1380 2/8/2018 4:47 AM 6.13.0.265 320.96 KB (328,664 bytes) 7/18/2017 9:27 AM svchost.exe Not Available 2444 8 Not Available Not Available 2/8/2018 6:01 AM Not Available Not Available Not Available chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 5816 4 200 1380 2/8/2018 6:12 AM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 14292 4 200 1380 2/8/2018 6:13 AM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM chrome.exe c:\program files (x86)\google\chrome\application\chrome.exe 4484 8 200 1380 2/8/2018 6:17 AM 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM smartscreen.exe c:\windows\system32\smartscreen.exe 220 8 200 1380 2/8/2018 6:20 AM 10.0.16299.98 2.48 MB (2,596,352 bytes) 12/13/2017 8:52 PM msinfo32.exe c:\windows\system32\msinfo32.exe 11140 8 200 1380 2/8/2018 6:20 AM 10.0.16299.15 361.00 KB (369,664 bytes) 9/29/2017 2:42 PM wmiprvse.exe Not Available 9504 8 Not Available Not Available 2/8/2018 6:20 AM Not Available Not Available Not Available [Loaded Modules] Name Version Size File Date Manufacturer Path mbamtray 3.0.0.1284 3.35 MB (3,515,856 bytes) 1/28/2018 2:08 PM Malwarebytes c:\program files\malwarebytes\anti-malware\mbamtray.exe ntdll 10.0.16299.214 1.86 MB (1,954,560 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\ntdll.dll wow64 10.0.16299.214 312.37 KB (319,864 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\wow64.dll wow64win 10.0.16299.64 468.66 KB (479,912 bytes) 11/25/2017 2:52 PM Microsoft Corporation c:\windows\system32\wow64win.dll wow64cpu 10.0.16299.15 21.87 KB (22,392 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\wow64cpu.dll svchost 10.0.16299.15 47.55 KB (48,688 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\svchost.exe kernel32 10.0.16299.15 686.10 KB (702,568 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\kernel32.dll kernelbase 10.0.16299.15 2.40 MB (2,514,944 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\kernelbase.dll sechost 10.0.16299.15 362.72 KB (371,424 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\sechost.dll rpcrt4 10.0.16299.192 1.12 MB (1,173,576 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\rpcrt4.dll ucrtbase 10.0.16299.214 979.10 KB (1,002,600 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\ucrtbase.dll combase 10.0.16299.15 3.03 MB (3,180,720 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\combase.dll bcryptprimitives 10.0.16299.98 453.52 KB (464,408 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\system32\bcryptprimitives.dll kernel.appcore 10.0.16299.15 53.09 KB (54,368 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\kernel.appcore.dll msvcrt 7.0.16299.125 615.97 KB (630,752 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\msvcrt.dll user32 10.0.16299.125 1.56 MB (1,634,288 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\system32\user32.dll win32u 10.0.16299.15 116.64 KB (119,440 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\win32u.dll gdi32 10.0.16299.15 150.40 KB (154,008 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\gdi32.dll gdi32full 10.0.16299.98 1.56 MB (1,636,376 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\system32\gdi32full.dll msvcp_win 10.0.16299.214 613.90 KB (628,632 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\msvcp_win.dll imm32 10.0.16299.15 169.57 KB (173,640 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\imm32.dll cdpusersvc 10.0.16299.15 473.00 KB (484,352 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\cdpusersvc.dll powrprof 10.0.16299.15 292.66 KB (299,688 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\powrprof.dll cfgmgr32 10.0.16299.15 281.20 KB (287,944 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\cfgmgr32.dll cdp 10.0.16299.15 4.95 MB (5,195,264 bytes) 9/29/2017 2:43 PM Microsoft Corporation c:\windows\system32\cdp.dll ws2_32 10.0.16299.15 418.31 KB (428,352 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ws2_32.dll crypt32 10.0.16299.15 1.79 MB (1,873,944 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\crypt32.dll msasn1 10.0.16299.15 63.65 KB (65,176 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\msasn1.dll advapi32 10.0.16299.192 634.09 KB (649,304 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\advapi32.dll ncrypt 10.0.16299.15 139.33 KB (142,672 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ncrypt.dll iphlpapi 10.0.16299.15 216.50 KB (221,696 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\iphlpapi.dll winhttp 10.0.16299.192 881.27 KB (902,416 bytes) 1/4/2018 9:05 AM Microsoft Corporation c:\windows\system32\winhttp.dll sspicli 10.0.16299.192 180.65 KB (184,984 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\sspicli.dll bcrypt 10.0.16299.125 134.32 KB (137,544 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\bcrypt.dll ntasn1 10.0.16299.15 214.89 KB (220,048 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ntasn1.dll wldp 10.0.16299.15 69.20 KB (70,856 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\wldp.dll wintrust 10.0.16299.15 348.09 KB (356,440 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wintrust.dll iertutil 11.0.16299.214 2.58 MB (2,709,200 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\iertutil.dll shcore 10.0.16299.15 655.30 KB (671,024 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\shcore.dll policymanager 10.0.16299.15 480.28 KB (491,808 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\policymanager.dll msvcp110_win 10.0.16299.15 573.05 KB (586,800 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\msvcp110_win.dll oleaut32 10.0.16299.15 775.35 KB (793,960 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\oleaut32.dll clbcatq 2001.12.10941.16384 611.91 KB (626,592 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\clbcatq.dll onecorecommonproxystub 10.0.16299.214 417.00 KB (427,008 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\onecorecommonproxystub.dll windows.security.authentication.web.core 10.0.16299.214 818.00 KB (837,632 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\windows.security.authentication.web.core.dll wintypes 10.0.16299.15 1.21 MB (1,269,616 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wintypes.dll twinapi.appcore 10.0.16299.19 1.48 MB (1,554,216 bytes) 11/25/2017 2:52 PM Microsoft Corporation c:\windows\system32\twinapi.appcore.dll rmclient 10.0.16299.15 122.62 KB (125,560 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\rmclient.dll ole32 10.0.16299.192 1.27 MB (1,336,344 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\ole32.dll wtsapi32 10.0.16299.15 62.66 KB (64,168 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\wtsapi32.dll winsta 10.0.16299.15 319.88 KB (327,552 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\winsta.dll coml2 10.0.16299.15 440.40 KB (450,968 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\coml2.dll windows.networking.connectivity 10.0.16299.15 664.50 KB (680,448 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.networking.connectivity.dll nsi 10.0.16299.15 23.43 KB (23,992 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\nsi.dll wlanapi 10.0.16299.15 407.65 KB (417,432 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\wlanapi.dll profapi 10.0.16299.15 91.45 KB (93,640 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\profapi.dll wwapi 10.0.16299.15 91.88 KB (94,080 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\wwapi.dll usermgrcli 10.0.16299.15 71.23 KB (72,944 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\usermgrcli.dll userenv 10.0.16299.15 152.44 KB (156,096 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\userenv.dll dpapi 10.0.16299.15 15.50 KB (15,872 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dpapi.dll cryptbase 10.0.16299.15 30.91 KB (31,648 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\cryptbase.dll dhcpcsvc6 10.0.16299.15 65.50 KB (67,072 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dhcpcsvc6.dll dhcpcsvc 10.0.16299.15 83.00 KB (84,992 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dhcpcsvc.dll webio 10.0.16299.214 567.00 KB (580,608 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\webio.dll mswsock 10.0.16299.15 393.55 KB (402,992 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mswsock.dll winnsi 10.0.16299.15 33.88 KB (34,696 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\winnsi.dll dnsapi 10.0.16299.19 722.36 KB (739,696 bytes) 11/25/2017 2:52 PM Microsoft Corporation c:\windows\system32\dnsapi.dll rasadhlp 10.0.16299.15 16.50 KB (16,896 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\rasadhlp.dll ncryptprov 10.0.16299.15 324.50 KB (332,288 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ncryptprov.dll fwpuclnt 10.0.16299.15 431.00 KB (441,344 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\fwpuclnt.dll schannel 10.0.16299.15 466.00 KB (477,184 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\schannel.dll mskeyprotect 10.0.16299.15 59.00 KB (60,416 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mskeyprotect.dll ncryptsslp 10.0.16299.15 115.59 KB (118,360 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ncryptsslp.dll winsqlite3 3.19.3.0 764.50 KB (782,848 bytes) 9/29/2017 2:41 PM SQLite Development Team c:\windows\system32\winsqlite3.dll vaultcli 10.0.16299.15 267.00 KB (273,408 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\vaultcli.dll sihost 10.0.16299.15 76.50 KB (78,336 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\sihost.exe coremessaging 10.0.16299.192 877.16 KB (898,216 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\coremessaging.dll ntmarta 10.0.16299.15 182.68 KB (187,064 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ntmarta.dll desktopshellext 10.0.16299.15 88.00 KB (90,112 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\desktopshellext.dll shlwapi 10.0.16299.15 319.34 KB (327,008 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\shlwapi.dll windows.shell.servicehostbuilder 10.0.16299.15 91.00 KB (93,184 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.shell.servicehostbuilder.dll onecoreuapcommonproxystub 10.0.16299.15 5.99 MB (6,281,768 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\onecoreuapcommonproxystub.dll modernexecserver 10.0.16299.214 979.00 KB (1,002,496 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\modernexecserver.dll resourcepolicyclient 10.0.16299.15 123.19 KB (126,144 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\resourcepolicyclient.dll uxtheme 10.0.16299.15 574.00 KB (587,776 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\uxtheme.dll clipboardserver 10.0.16299.15 200.00 KB (204,800 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\clipboardserver.dll activationmanager 10.0.16299.98 504.00 KB (516,096 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\activationmanager.dll appointmentactivation 10.0.16299.15 138.50 KB (141,824 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\appointmentactivation.dll usermgrproxy 10.0.16299.15 261.00 KB (267,264 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\usermgrproxy.dll coreuicomponents 10.0.16299.15 2.93 MB (3,074,824 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\coreuicomponents.dll execmodelclient 10.0.16299.98 286.00 KB (292,864 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\execmodelclient.dll windowmanagement 10.0.16299.15 876.50 KB (897,536 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windowmanagement.dll notificationplatformcomponent 10.0.16299.15 45.00 KB (46,080 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\notificationplatformcomponent.dll appcontracts 10.0.16299.15 898.50 KB (920,064 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\appcontracts.dll sharehost 10.0.16299.15 1.17 MB (1,224,192 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\sharehost.dll windows.storage 10.0.16299.214 7.32 MB (7,675,792 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\windows.storage.dll wpportinglibrary 10.0.16299.15 14.00 KB (14,336 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wpportinglibrary.dll execmodelproxy 10.0.16299.15 73.50 KB (75,264 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\execmodelproxy.dll windows.system.launcher 10.0.16299.15 603.50 KB (617,984 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.system.launcher.dll dsclient 10.0.16299.15 50.02 KB (51,224 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dsclient.dll windows.staterepositoryps 10.0.16299.214 1.14 MB (1,193,192 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\windows.staterepositoryps.dll twinui.appcore 10.0.16299.15 806.50 KB (825,856 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\twinui.appcore.dll uiamanager 10.0.16299.15 687.50 KB (704,000 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\uiamanager.dll daxexec 10.0.16299.192 512.00 KB (524,288 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\daxexec.dll fltlib 10.0.16299.15 22.00 KB (22,528 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\fltlib.dll container 10.0.16299.192 208.00 KB (212,992 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\container.dll mssrch 7.0.16299.214 2.61 MB (2,741,248 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\mssrch.dll tquery 7.0.16299.214 3.25 MB (3,405,824 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\tquery.dll cryptdll 10.0.16299.15 63.19 KB (64,704 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\cryptdll.dll esent 10.0.16299.15 2.96 MB (3,099,648 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\esent.dll licensemanagerapi 10.0.16299.15 89.50 KB (91,648 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\licensemanagerapi.dll dwmapi 10.0.16299.15 144.40 KB (147,864 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dwmapi.dll capauthz 10.0.16299.15 315.34 KB (322,912 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\capauthz.dll shell32 10.0.16299.214 20.36 MB (21,351,632 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\shell32.dll urlmon 11.0.16299.214 1.74 MB (1,822,208 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\urlmon.dll imagehlp 10.0.16299.15 102.98 KB (105,448 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\imagehlp.dll edputil 10.0.16299.15 248.50 KB (254,464 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\edputil.dll propsys 7.0.16299.15 1.70 MB (1,777,848 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\propsys.dll cldapi 10.0.16299.192 84.50 KB (86,528 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\cldapi.dll aepic 10.0.16299.15 260.90 KB (267,160 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\aepic.dll cryptsp 10.0.16299.15 78.33 KB (80,208 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\cryptsp.dll apphelp 10.0.16299.98 522.00 KB (534,528 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\apphelp.dll photometadatahandler 10.0.16299.15 420.50 KB (430,592 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\photometadatahandler.dll windowscodecs 10.0.16299.15 1.68 MB (1,757,152 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windowscodecs.dll linkinfo 10.0.16299.15 42.50 KB (43,520 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\linkinfo.dll ntshrui 10.0.16299.214 843.50 KB (863,744 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\ntshrui.dll srvcli 10.0.16299.15 108.55 KB (111,152 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\srvcli.dll cscapi 10.0.16299.15 50.00 KB (51,200 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\cscapi.dll notificationobjfactory 10.0.16299.15 313.50 KB (321,024 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\notificationobjfactory.dll tiptsf 10.0.16299.15 659.90 KB (675,736 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\program files\common files\microsoft shared\ink\tiptsf.dll appxdeploymentclient 10.0.16299.214 671.94 KB (688,064 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\appxdeploymentclient.dll staterepository.core 10.0.16299.214 599.77 KB (614,168 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\staterepository.core.dll wpnuserservice 10.0.16299.15 71.00 KB (72,704 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wpnuserservice.dll wpncore 10.0.16299.214 1.68 MB (1,759,744 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\wpncore.dll xmllite 10.0.16299.15 208.35 KB (213,352 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\xmllite.dll notificationcontroller 10.0.16299.15 1,019.50 KB (1,043,968 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\notificationcontroller.dll msctf 10.0.16299.19 1.40 MB (1,463,856 bytes) 11/25/2017 2:52 PM Microsoft Corporation c:\windows\system32\msctf.dll tiledatarepository 10.0.16299.214 557.00 KB (570,368 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\tiledatarepository.dll windows.staterepository 10.0.16299.214 4.28 MB (4,486,912 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\windows.staterepository.dll wcmapi 10.0.16299.15 133.00 KB (136,192 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\wcmapi.dll dusmapi 10.0.16299.15 45.50 KB (46,592 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dusmapi.dll windows.staterepositoryclient 10.0.16299.214 150.91 KB (154,528 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\windows.staterepositoryclient.dll appresolver 10.0.16299.15 550.41 KB (563,624 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\appresolver.dll bcp47langs 10.0.16299.15 415.19 KB (425,152 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\bcp47langs.dll elscore 10.0.16299.15 74.50 KB (76,288 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\elscore.dll slc 10.0.16299.15 134.00 KB (137,216 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\slc.dll sppc 10.0.16299.15 131.50 KB (134,656 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\sppc.dll wpnclient 10.0.16299.15 305.00 KB (312,320 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wpnclient.dll msxml6 6.30.16299.98 2.30 MB (2,412,168 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\system32\msxml6.dll notificationcontrollerps 10.0.16299.15 32.00 KB (32,768 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\notificationcontrollerps.dll mrmcorer 10.0.16299.15 1.08 MB (1,133,768 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mrmcorer.dll dmiso8601utils 10.0.16299.15 14.50 KB (14,848 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dmiso8601utils.dll contactapis 10.0.16299.15 1.09 MB (1,140,224 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\contactapis.dll userdataplatformhelperutil 10.0.16299.15 61.00 KB (62,464 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\userdataplatformhelperutil.dll contactactivation 10.0.16299.15 57.00 KB (58,368 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\contactactivation.dll userdatalanguageutil 10.0.16299.15 42.00 KB (43,008 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\userdatalanguageutil.dll systemeventsbrokerclient 10.0.16299.15 29.50 KB (30,208 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\systemeventsbrokerclient.dll phoneutil 10.0.16299.15 360.00 KB (368,640 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\phoneutil.dll userdatatypehelperutil 10.0.16299.15 45.00 KB (46,080 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\userdatatypehelperutil.dll userdataaccountapis 10.0.16299.15 427.50 KB (437,760 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\userdataaccountapis.dll appointmentapis 10.0.16299.15 742.00 KB (759,808 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\appointmentapis.dll emailapis 10.0.16299.15 1.06 MB (1,112,064 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\emailapis.dll taskapis 10.0.16299.15 391.50 KB (400,896 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\taskapis.dll timebrokerclient 10.0.16299.15 35.00 KB (35,840 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\timebrokerclient.dll eventaggregation 10.0.16299.15 75.50 KB (77,312 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\eventaggregation.dll bitsproxy 7.8.16299.15 57.50 KB (58,880 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\bitsproxy.dll npmproxy 10.0.16299.15 38.50 KB (39,424 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\npmproxy.dll runtimebroker 10.0.16299.15 94.41 KB (96,672 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\runtimebroker.exe windows.services.targetedcontent 10.0.16299.98 988.40 KB (1,012,120 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\windows.services.targetedcontent.dll windows.applicationmodel 10.0.16299.15 653.26 KB (668,936 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.applicationmodel.dll structuredquery 7.0.16299.15 670.94 KB (687,040 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\structuredquery.dll windows.internal.shell.broker 10.0.16299.15 1.06 MB (1,114,136 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.internal.shell.broker.dll veeventdispatcher 10.0.16299.15 313.00 KB (320,512 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\veeventdispatcher.dll wininet 11.0.16299.214 3.18 MB (3,334,144 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\wininet.dll settingsenvironment.desktop 10.0.16299.125 354.50 KB (363,008 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\settingsenvironment.desktop.dll regapi 10.0.16299.15 102.50 KB (104,960 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\regapi.dll devobj 10.0.16299.15 147.00 KB (150,528 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\devobj.dll ethernetmediamanager 10.0.16299.15 177.50 KB (181,760 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ethernetmediamanager.dll wlanmediamanager 10.0.16299.15 655.00 KB (670,720 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wlanmediamanager.dll tetheringstation 10.0.16299.15 219.50 KB (224,768 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\tetheringstation.dll bluetoothapis 10.0.16299.15 179.00 KB (183,296 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\bluetoothapis.dll windows.storage.search 10.0.16299.15 775.50 KB (794,112 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.storage.search.dll comctl32 6.10.16299.214 2.39 MB (2,507,680 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.214_none_15cad1489362ef88\comctl32.dll msiso 11.0.16299.214 421.50 KB (431,616 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\msiso.dll systemsettings.datamodel 10.0.16299.15 366.40 KB (375,192 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\systemsettings.datamodel.dll networkuxbroker 10.0.16299.15 346.00 KB (354,304 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\networkuxbroker.dll netprofm 10.0.16299.15 215.00 KB (220,160 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\netprofm.dll shellcommoncommonproxystub 10.0.16299.15 233.00 KB (238,592 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\shellcommoncommonproxystub.dll ieproxy 11.0.16299.214 796.50 KB (815,616 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\ieproxy.dll locationframeworkps 10.0.16299.15 38.90 KB (39,832 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\locationframeworkps.dll settingsynchost 10.0.16299.15 943.03 KB (965,664 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\settingsynchost.exe settingsynccore 10.0.16299.15 1.08 MB (1,135,616 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\settingsynccore.dll onedrivesettingsyncprovider 10.0.16299.15 635.50 KB (650,752 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\onedrivesettingsyncprovider.dll settingsyncpolicy 10.0.16299.15 88.00 KB (90,112 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\settingsyncpolicy.dll ondemandconnroutehelper 10.0.16299.15 66.00 KB (67,584 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ondemandconnroutehelper.dll rsaenh 10.0.16299.15 199.29 KB (204,072 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\rsaenh.dll winsync 2007.94.16299.15 784.00 KB (802,816 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\winsync.dll cryptnet 10.0.16299.15 167.50 KB (171,520 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\cryptnet.dll mskeyprotcli 10.0.16299.15 177.50 KB (181,760 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mskeyprotcli.dll cabinet 5.0.1.1 136.30 KB (139,568 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\cabinet.dll msascuil 4.12.16299.15 615.40 KB (630,168 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\program files\windows defender\msascuil.exe gdiplus 10.0.16299.214 1.59 MB (1,664,512 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.16299.214_none_46b5c42dedf56956\gdiplus.dll mpclient 4.12.16299.15 1.02 MB (1,072,536 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\program files\windows defender\mpclient.dll version 10.0.16299.15 29.84 KB (30,560 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\version.dll atlthunk 10.0.16299.15 36.00 KB (36,864 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\atlthunk.dll securityhealthsso 10.0.16299.15 788.50 KB (807,424 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\securityhealthsso.dll securityhealthproxystub 4.12.16299.214 73.41 KB (75,168 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\securityhealthproxystub.dll idman 6.30.5.2 3.90 MB (4,091,960 bytes) 1/14/2018 9:36 AM Tonec Inc. c:\program files (x86)\internet download manager\idman.exe onedrive 17.3.7294.108 1.48 MB (1,554,080 bytes) 1/27/2018 12:27 AM Microsoft Corporation c:\users\stefa\appdata\local\microsoft\onedrive\onedrive.exe jusched 9.0.1.0 631.52 KB (646,680 bytes) 9/27/2017 9:26 PM Oracle Corporation c:\program files (x86)\common files\java\java update\jusched.exe iemonitor 6.22.1.1 269.05 KB (275,512 bytes) 8/5/2016 4:50 PM Tonec Inc. c:\program files (x86)\internet download manager\iemonitor.exe aphostservice 10.0.16299.192 361.00 KB (369,664 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\aphostservice.dll mccspal 10.0.16299.15 20.00 KB (20,480 bytes) 9/29/2017 3:41 PM Microsoft Corporation c:\windows\system32\mccspal.dll networkhelper 10.0.16299.15 134.00 KB (137,216 bytes) 9/29/2017 3:41 PM Microsoft Corporation c:\windows\system32\networkhelper.dll syncutil 10.0.16299.15 384.00 KB (393,216 bytes) 9/29/2017 3:41 PM Microsoft Corporation c:\windows\system32\syncutil.dll dmcfgutils 10.0.16299.15 104.50 KB (107,008 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dmcfgutils.dll dmcmnutils 10.0.16299.15 141.33 KB (144,720 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dmcmnutils.dll dmxmlhelputils 10.0.16299.15 60.50 KB (61,952 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dmxmlhelputils.dll inproclogger 10.0.16299.15 57.50 KB (58,880 bytes) 9/29/2017 3:41 PM Microsoft Corporation c:\windows\system32\inproclogger.dll msv1_0 10.0.16299.19 408.90 KB (418,712 bytes) 11/25/2017 2:52 PM Microsoft Corporation c:\windows\system32\msv1_0.dll ntlmshared 10.0.16299.15 37.98 KB (38,888 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ntlmshared.dll synccontroller 10.0.16299.192 609.50 KB (624,128 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\synccontroller.dll aphostclient 10.0.16299.15 69.00 KB (70,656 bytes) 9/29/2017 3:41 PM Microsoft Corporation c:\windows\system32\aphostclient.dll accountaccessor 10.0.16299.15 262.50 KB (268,800 bytes) 9/29/2017 3:41 PM Microsoft Corporation c:\windows\system32\accountaccessor.dll pimstore 10.0.16299.15 1,023.50 KB (1,048,064 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\pimstore.dll mccsengineshared 10.0.16299.15 171.50 KB (175,616 bytes) 9/29/2017 3:41 PM Microsoft Corporation c:\windows\system32\mccsengineshared.dll cemapi 10.0.16299.15 241.50 KB (247,296 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\cemapi.dll unistore 10.0.16299.192 1.19 MB (1,245,184 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\unistore.dll userdataservice 10.0.16299.192 1.50 MB (1,573,376 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\userdataservice.dll pimindexmaintenanceclient 10.0.16299.15 61.50 KB (62,976 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\pimindexmaintenanceclient.dll messagingdatamodel2 10.0.16299.15 885.00 KB (906,240 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\messagingdatamodel2.dll posyncservices 10.0.16299.15 65.00 KB (66,560 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\posyncservices.dll pimindexmaintenance 10.0.16299.192 184.00 KB (188,416 bytes) 1/4/2018 9:03 AM Microsoft Corporation c:\windows\system32\pimindexmaintenance.dll activesyncprovider 10.0.16299.15 1.70 MB (1,777,664 bytes) 9/29/2017 3:41 PM Microsoft Corporation c:\windows\system32\activesyncprovider.dll userdatatimeutil 10.0.16299.15 116.50 KB (119,296 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\userdatatimeutil.dll internetmail 10.0.16299.15 725.50 KB (742,912 bytes) 9/29/2017 3:41 PM Microsoft Corporation c:\windows\system32\internetmail.dll appxalluserstore 10.0.16299.192 244.50 KB (250,368 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\appxalluserstore.dll mlang 10.0.16299.15 236.50 KB (242,176 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mlang.dll windows.networking.sockets.pushenabledapplication 10.0.16299.15 144.00 KB (147,456 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.networking.sockets.pushenabledapplication.dll edgehtml 11.0.16299.214 24.08 MB (25,250,304 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\edgehtml.dll chakra 11.0.16299.192 7.73 MB (8,108,544 bytes) 1/4/2018 9:05 AM Microsoft Corporation c:\windows\system32\chakra.dll srpapi 10.0.16299.15 140.00 KB (143,360 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\srpapi.dll edgeiso 11.0.16299.214 524.00 KB (536,576 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\edgeiso.dll ninput 10.0.16299.15 380.00 KB (389,120 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\ninput.dll d2d1 10.0.16299.15 5.70 MB (5,971,968 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\d2d1.dll dxgi 10.0.16299.98 687.05 KB (703,536 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\dxgi.dll d3d11 10.0.16299.214 2.87 MB (3,010,248 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\d3d11.dll dwrite 10.0.16299.15 3.01 MB (3,159,040 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dwrite.dll accountsrt 10.0.16299.15 424.00 KB (434,176 bytes) 9/29/2017 3:41 PM Microsoft Corporation c:\windows\system32\accountsrt.dll exsmime 10.0.16299.15 251.50 KB (257,536 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\exsmime.dll deviceaccess 10.0.16299.15 343.50 KB (351,744 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\deviceaccess.dll dtshellhlp 10.7.0.333 3.71 MB (3,888,320 bytes) 12/15/2017 11:12 AM Disc Soft Ltd c:\program files\daemon tools lite\dtshellhlp.exe comdlg32 10.0.16299.214 1.01 MB (1,057,792 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\comdlg32.dll msimg32 10.0.16299.15 8.00 KB (8,192 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\msimg32.dll winspool 10.0.16299.15 519.00 KB (531,456 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\winspool.drv oleacc 7.2.16299.15 413.50 KB (423,424 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\oleacc.dll winmm 10.0.16299.15 120.19 KB (123,072 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\winmm.dll mpr 10.0.16299.15 96.44 KB (98,752 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mpr.dll winmmbase 10.0.16299.15 155.94 KB (159,680 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\winmmbase.dll dtcommonres 10.7.0.333 5.19 MB (5,437,632 bytes) 12/15/2017 11:12 AM Disc Soft Ltd c:\program files\daemon tools lite\dtcommonres.dll engine 10.7.0.333 5.01 MB (5,252,288 bytes) 12/15/2017 11:11 AM Disc Soft Ltd c:\program files\daemon tools lite\engine.dll setupapi 10.0.16299.214 4.33 MB (4,537,040 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\setupapi.dll sptdintf 2.10.0.0 54.53 KB (55,840 bytes) 12/14/2017 2:30 PM Duplex Secure Ltd c:\program files\daemon tools lite\sptdintf.dll sxs 10.0.16299.15 609.41 KB (624,032 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\sxs.dll imgengine 1.20.1.0 608.19 KB (622,784 bytes) 12/15/2017 11:10 AM Disc Soft Ltd c:\program files\daemon tools lite\imgengine.dll applicationframehost 10.0.16299.15 67.66 KB (69,288 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\applicationframehost.exe applicationframe 10.0.16299.15 645.00 KB (660,480 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\applicationframe.dll twinapi 10.0.16299.214 495.00 KB (506,880 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\twinapi.dll textinputframework 10.0.16299.192 602.84 KB (617,304 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\textinputframework.dll dcomp 10.0.16299.15 1.25 MB (1,307,280 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dcomp.dll uiautomationcore 7.2.16299.15 1.99 MB (2,087,424 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\uiautomationcore.dll d3d10warp 10.0.16299.192 7.47 MB (7,831,760 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\d3d10warp.dll uianimation 10.0.16299.15 273.00 KB (279,552 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\uianimation.dll steam 4.28.51.7 2.97 MB (3,111,712 bytes) 12/19/2017 3:58 PM Valve Corporation c:\program files (x86)\steam\steam.exe windows.media 10.0.16299.214 6.48 MB (6,791,984 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\windows.media.dll mfsensorgroup 10.0.16299.15 207.89 KB (212,880 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mfsensorgroup.dll rtworkq 10.0.16299.15 168.61 KB (172,656 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\rtworkq.dll mfplat 10.0.16299.125 1.69 MB (1,776,272 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\mfplat.dll secur32 10.0.16299.15 27.00 KB (27,648 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\secur32.dll pcacli 10.0.16299.15 67.50 KB (69,120 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\pcacli.dll sfc_os 10.0.16299.15 52.50 KB (53,760 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\sfc_os.dll shdocvw 10.0.16299.15 240.50 KB (246,272 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\shdocvw.dll msspellcheckingfacility 10.0.16299.15 843.00 KB (863,232 bytes) 9/29/2017 2:43 PM Microsoft Corporation c:\windows\system32\msspellcheckingfacility.dll windows.cortana.onecore 10.0.16299.15 289.00 KB (295,936 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.cortana.onecore.dll windows.cortana.desktop 10.0.16299.15 495.00 KB (506,880 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.cortana.desktop.dll windows.media.import 10.0.16299.15 801.50 KB (820,736 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.media.import.dll ondemandbrokerclient 10.0.16299.15 47.00 KB (48,128 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ondemandbrokerclient.dll lockcontroller 10.0.16299.15 658.50 KB (674,304 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\lockcontroller.dll steamwebhelper 4.28.51.7 3.50 MB (3,668,256 bytes) 12/19/2017 3:58 PM Valve Corporation c:\program files (x86)\steam\bin\cef\cef.win7\steamwebhelper.exe skypehost 12.1803.279.0 84.50 KB (86,528 bytes) 1/29/2018 2:12 AM Microsoft Corporation c:\program files\windowsapps\microsoft.skypeapp_12.1803.279.0_x64__kzf8qxf38zg5c\skypehost.exe vccorlib140_app 14.11.25426.0 370.41 KB (379,304 bytes) 9/8/2017 8:41 PM Microsoft Corporation c:\program files\windowsapps\microsoft.vclibs.140.00_14.0.25426.0_x64__8wekyb3d8bbwe\vccorlib140_app.dll vcruntime140_app 14.11.25426.0 78.38 KB (80,264 bytes) 9/8/2017 8:41 PM Microsoft Corporation c:\program files\windowsapps\microsoft.vclibs.140.00_14.0.25426.0_x64__8wekyb3d8bbwe\vcruntime140_app.dll skypebackgroundtasks 12.1803.279.0 190.50 KB (195,072 bytes) 1/29/2018 2:12 AM Microsoft Corporation c:\program files\windowsapps\microsoft.skypeapp_12.1803.279.0_x64__kzf8qxf38zg5c\skypebackgroundtasks.dll msvcp140_app 14.11.25426.0 603.95 KB (618,440 bytes) 9/8/2017 8:41 PM Microsoft Corporation c:\program files\windowsapps\microsoft.vclibs.140.00_14.0.25426.0_x64__8wekyb3d8bbwe\msvcp140_app.dll windows.storage.applicationdata 10.0.16299.192 358.73 KB (367,336 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\windows.storage.applicationdata.dll biwinrt 10.0.16299.15 340.09 KB (348,248 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\biwinrt.dll skywrap 12.1803.279.0 23.97 MB (25,135,104 bytes) 1/29/2018 2:12 AM Microsoft Corporation c:\program files\windowsapps\microsoft.skypeapp_12.1803.279.0_x64__kzf8qxf38zg5c\skywrap.dll concrt140_app 14.11.25426.0 298.24 KB (305,400 bytes) 9/8/2017 8:41 PM Microsoft Corporation c:\program files\windowsapps\microsoft.vclibs.140.00_14.0.25426.0_x64__8wekyb3d8bbwe\concrt140_app.dll clipc 10.0.16299.15 143.33 KB (146,768 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\clipc.dll skypert 2018.3.1.9 2.42 MB (2,542,592 bytes) 1/29/2018 2:12 AM Not Available c:\program files\windowsapps\microsoft.skypeapp_12.1803.279.0_x64__kzf8qxf38zg5c\skypert.dll windows.networking 10.0.16299.98 866.50 KB (887,296 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\windows.networking.dll windows.networking.hostname 10.0.16299.15 225.50 KB (230,912 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.networking.hostname.dll firewallapi 10.0.16299.192 529.50 KB (542,208 bytes) 1/4/2018 9:05 AM Microsoft Corporation c:\windows\system32\firewallapi.dll fwbase 10.0.16299.15 151.00 KB (154,624 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\fwbase.dll windows.devices.enumeration 10.0.16299.15 516.06 KB (528,448 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.devices.enumeration.dll deviceassociation 10.0.16299.15 59.13 KB (60,544 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\deviceassociation.dll devdispitemprovider 10.0.16299.15 112.59 KB (115,288 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\devdispitemprovider.dll windows.globalization 10.0.16299.15 1.51 MB (1,580,032 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.globalization.dll windows.system.profile.retailinfo 10.0.16299.15 141.00 KB (144,384 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.system.profile.retailinfo.dll threadpoolwinrt 10.0.16299.15 66.00 KB (67,584 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\threadpoolwinrt.dll cryptowinrt 10.0.16299.15 367.00 KB (375,808 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\cryptowinrt.dll windows.system.diagnostics 10.0.16299.15 290.50 KB (297,472 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.system.diagnostics.dll wpnapps 10.0.16299.15 1.19 MB (1,250,304 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wpnapps.dll voiprt 10.0.16299.15 135.50 KB (138,752 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\voiprt.dll rtmmvruap Not Available 651.50 KB (667,136 bytes) 1/29/2018 2:12 AM Not Available c:\program files\windowsapps\microsoft.skypeapp_12.1803.279.0_x64__kzf8qxf38zg5c\rtmmvruap.dll mfreadwrite 10.0.16299.15 1.03 MB (1,084,736 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mfreadwrite.dll mswb7 10.0.16299.15 251.24 KB (257,272 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mswb7.dll chrome 64.0.3282.140 1.51 MB (1,581,912 bytes) 2/2/2018 7:42 AM Google Inc. c:\program files (x86)\google\chrome\application\chrome.exe psapi 10.0.16299.15 18.27 KB (18,712 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\psapi.dll chrome_elf 64.0.3282.140 533.34 KB (546,136 bytes) 2/2/2018 7:42 AM Google Inc. c:\program files (x86)\google\chrome\application\64.0.3282.140\chrome_elf.dll mbae64 1.11.4.254 481.45 KB (493,000 bytes) 1/27/2018 6:55 PM Malwarebytes Corporation c:\program files\malwarebytes\anti-malware\mbae64.dll chrome 64.0.3282.140 48.36 MB (50,707,288 bytes) 2/2/2018 7:42 AM Google Inc. c:\program files (x86)\google\chrome\application\64.0.3282.140\chrome.dll netapi32 10.0.16299.15 78.30 KB (80,184 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\netapi32.dll hid 10.0.16299.15 34.00 KB (34,816 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\hid.dll dbghelp 10.0.16299.15 1.65 MB (1,725,440 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dbghelp.dll usp10 10.0.16299.15 77.50 KB (79,360 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\usp10.dll credui 10.0.16299.15 47.50 KB (48,640 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\credui.dll msi 5.0.16299.15 3.86 MB (4,049,920 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\msi.dll wevtapi 10.0.16299.15 397.08 KB (406,608 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wevtapi.dll netutils 10.0.16299.15 43.98 KB (45,040 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\netutils.dll wkscli 10.0.16299.15 79.80 KB (81,712 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wkscli.dll samcli 10.0.16299.15 75.00 KB (76,800 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\samcli.dll nlaapi 10.0.16299.214 78.00 KB (79,872 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\nlaapi.dll gpapi 10.0.16299.15 124.16 KB (127,136 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\gpapi.dll mscms 10.0.16299.15 582.50 KB (596,480 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mscms.dll audioses 10.0.16299.214 1.12 MB (1,170,008 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\audioses.dll mmdevapi 10.0.16299.15 428.33 KB (438,608 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mmdevapi.dll avrt 10.0.16299.15 29.34 KB (30,048 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\avrt.dll fwpolicyiomgr 10.0.16299.192 210.50 KB (215,552 bytes) 1/4/2018 9:03 AM Microsoft Corporation c:\windows\system32\fwpolicyiomgr.dll dataexchange 10.0.16299.15 295.50 KB (302,592 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dataexchange.dll explorerframe 10.0.16299.214 4.55 MB (4,772,352 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\explorerframe.dll wdmaud 10.0.16299.15 238.50 KB (244,224 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wdmaud.drv ksuser 10.0.16299.15 22.80 KB (23,352 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ksuser.dll msacm32 10.0.16299.15 28.00 KB (28,672 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\msacm32.drv msacm32 10.0.16299.15 103.98 KB (106,472 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\msacm32.dll midimap 10.0.16299.15 24.00 KB (24,576 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\midimap.dll samlib 10.0.16299.15 118.50 KB (121,344 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\samlib.dll sapi 5.3.21328.0 1.45 MB (1,516,032 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\speech\common\sapi.dll msdmo 10.0.16299.15 32.84 KB (33,632 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\msdmo.dll qwave 10.0.16299.15 269.50 KB (275,968 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\qwave.dll traffic 10.0.16299.15 40.50 KB (41,472 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\traffic.dll wmiclnt 10.0.16299.15 45.00 KB (46,080 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wmiclnt.dll psmachine_64 1.3.33.7 242.58 KB (248,400 bytes) 12/24/2017 2:22 AM Google Inc. c:\program files (x86)\google\update\1.3.33.7\psmachine_64.dll dui70 10.0.16299.15 1.65 MB (1,729,024 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dui70.dll duser 10.0.16299.15 559.00 KB (572,416 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\duser.dll thumbcache 10.0.16299.15 356.40 KB (364,952 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\thumbcache.dll iconcodecservice 10.0.16299.15 14.00 KB (14,336 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\iconcodecservice.dll drprov 10.0.16299.15 25.00 KB (25,600 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\drprov.dll ntlanman 10.0.16299.15 67.50 KB (69,120 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ntlanman.dll davclnt 10.0.16299.15 91.50 KB (93,696 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\davclnt.dll davhlpr 10.0.16299.15 26.00 KB (26,624 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\davhlpr.dll filesyncshell64 17.3.7294.108 2.80 MB (2,936,472 bytes) 1/27/2018 12:26 AM Microsoft Corporation c:\users\stefa\appdata\local\microsoft\onedrive\17.3.7294.0108\amd64\filesyncshell64.dll dlnashext 10.0.16299.15 279.50 KB (286,208 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dlnashext.dll idmshellext64 6.23.19.18 25.02 KB (25,624 bytes) 8/5/2016 4:50 PM Tonec Inc. c:\program files (x86)\internet download manager\idmshellext64.dll coresync_x64 2.4.3.114 480.08 KB (491,600 bytes) 9/26/2017 1:52 AM Not Available c:\program files (x86)\common files\adobe\coresyncextension\coresync_x64.dll ehstorshell 10.0.16299.15 201.00 KB (205,824 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ehstorshell.dll cscui 10.0.16299.214 781.50 KB (800,256 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\cscui.dll ieframe 11.0.16299.214 12.24 MB (12,831,744 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\ieframe.dll mpoav 4.12.17007.18011 126.58 KB (129,616 bytes) 1/19/2018 10:26 PM Microsoft Corporation c:\programdata\microsoft\windows defender\platform\4.12.17007.18011-0\mpoav.dll mshtml 11.0.16299.214 22.56 MB (23,657,984 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\mshtml.dll twinui 10.0.16299.214 7.20 MB (7,545,344 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\twinui.dll winusb 10.0.16299.15 27.00 KB (27,648 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\winusb.dll wpdshext 10.0.16299.15 1.85 MB (1,937,920 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wpdshext.dll chrome_watcher 64.0.3282.140 621.84 KB (636,760 bytes) 2/2/2018 7:42 AM Google Inc. c:\program files (x86)\google\chrome\application\64.0.3282.140\chrome_watcher.dll chrome_child 64.0.3282.140 69.50 MB (72,876,888 bytes) 2/2/2018 7:42 AM Google Inc. c:\program files (x86)\google\chrome\application\64.0.3282.140\chrome_child.dll mf 10.0.16299.15 580.13 KB (594,048 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mf.dll msmpeg2vdec 10.0.16299.214 2.29 MB (2,406,456 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\msmpeg2vdec.dll mfperfhelper 10.0.16299.15 1.17 MB (1,228,840 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mfperfhelper.dll dxva2 10.0.16299.15 123.19 KB (126,144 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dxva2.dll msvproc 10.0.16299.98 1.01 MB (1,054,280 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\msvproc.dll comppkgsup 10.0.16299.15 85.80 KB (87,864 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\comppkgsup.dll d3dcompiler_47 10.0.16299.15 4.10 MB (4,296,192 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\d3dcompiler_47.dll libglesv2 2.1.0.0 4.23 MB (4,433,752 bytes) 2/2/2018 7:42 AM Not Available c:\program files (x86)\google\chrome\application\64.0.3282.140\libglesv2.dll d3d9 10.0.16299.98 1.57 MB (1,642,520 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\system32\d3d9.dll libegl 2.1.0.0 97.34 KB (99,672 bytes) 2/2/2018 7:42 AM Not Available c:\program files (x86)\google\chrome\application\64.0.3282.140\libegl.dll aticfx64 8.17.10.1433 1.44 MB (1,506,000 bytes) 8/21/2017 2:47 PM Advanced Micro Devices, Inc. c:\windows\system32\aticfx64.dll atiuxp64 8.14.1.6489 148.49 KB (152,056 bytes) 8/21/2017 2:47 PM Advanced Micro Devices, Inc. c:\windows\system32\atiuxp64.dll atidxx64 8.17.10.648 12.79 MB (13,408,208 bytes) 8/21/2017 2:47 PM Advanced Micro Devices, Inc. c:\windows\system32\atidxx64.dll atiumd6a 8.14.10.533 8.60 MB (9,017,808 bytes) 8/21/2017 2:47 PM Advanced Micro Devices, Inc. c:\windows\system32\atiumd6a.dll mfh264enc 10.0.16299.15 531.00 KB (543,744 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mfh264enc.dll msvp9dec 10.0.16299.15 1.08 MB (1,133,328 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\msvp9dec.dll microsoft.msn.weather 4.22.1711.21004 17.00 KB (17,408 bytes) 12/15/2017 3:56 PM Microsoft Corporation c:\program files\windowsapps\microsoft.bingweather_4.22.3254.0_x64__8wekyb3d8bbwe\microsoft.msn.weather.exe microsoft.msn.weather 4.22.1711.21004 15.17 MB (15,909,376 bytes) 12/15/2017 3:56 PM Microsoft Corporation c:\program files\windowsapps\microsoft.bingweather_4.22.3254.0_x64__8wekyb3d8bbwe\microsoft.msn.weather.dll mrt100_app 1.6.24903.0 354.67 KB (363,184 bytes) 9/29/2017 3:43 PM Microsoft Corporation c:\program files\windowsapps\microsoft.net.native.runtime.1.6_1.6.24903.0_x64__8wekyb3d8bbwe\mrt100_app.dll sharedlibrary 1.6.24903.0 7.09 MB (7,438,160 bytes) 9/29/2017 3:43 PM Microsoft Corporation c:\program files\windowsapps\microsoft.net.native.framework.1.6_1.6.24903.0_x64__8wekyb3d8bbwe\sharedlibrary.dll sqlite3 3.15.1.0 1.44 MB (1,505,792 bytes) 9/29/2017 3:44 PM SQLite Development Team c:\program files\windowsapps\microsoft.bingweather_4.22.3254.0_x64__8wekyb3d8bbwe\sqlite3.dll mrt100 1.6.24911.0 31.16 KB (31,904 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mrt100.dll windows.ui.xaml 10.0.16299.214 16.37 MB (17,160,704 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\windows.ui.xaml.dll windows.ui 10.0.16299.15 1.03 MB (1,077,968 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\windows.ui.dll winrttracing 10.0.16299.15 183.50 KB (187,904 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\winrttracing.dll rometadata 4.7.2556.0 226.53 KB (231,968 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\rometadata.dll windows.ui.core.textinput 10.0.16299.192 585.50 KB (599,552 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\windows.ui.core.textinput.dll windows.ui.immersive 10.0.16299.214 1.66 MB (1,739,264 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\windows.ui.immersive.dll windows.accountscontrol 10.0.16299.15 903.50 KB (925,184 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.accountscontrol.dll windows.web.http 10.0.16299.15 1.27 MB (1,334,272 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.web.http.dll microsoft.advertising 10.0.1712.13001 4.98 MB (5,221,768 bytes) 12/15/2017 3:38 PM Microsoft Corporation c:\program files\windowsapps\microsoft.advertising.xaml_10.1712.5.0_x64__8wekyb3d8bbwe\microsoft.advertising.dll ploptin 10.0.16299.15 61.40 KB (62,872 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\ploptin.dll storeratingpromotion 1.0.1601.20002 284.50 KB (291,328 bytes) 9/29/2017 3:44 PM Microsoft Corporation c:\program files\windowsapps\microsoft.bingweather_4.22.3254.0_x64__8wekyb3d8bbwe\storeratingpromotion.dll directmanipulation 10.0.16299.15 571.09 KB (584,800 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\directmanipulation.dll comctl32 5.82.16299.214 646.41 KB (661,920 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.16299.214_none_8877407e4abd19b9\comctl32.dll windows.ui.xaml.controls 10.0.16299.15 2.25 MB (2,362,368 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.ui.xaml.controls.dll inputhost Not Available 180.11 KB (184,432 bytes) 9/29/2017 2:41 PM Not Available c:\windows\system32\inputhost.dll winstore.app 11801.1001.4.0 16.00 KB (16,384 bytes) 2/2/2018 2:21 PM Not Available c:\program files\windowsapps\microsoft.windowsstore_11801.1001.4.0_x64__8wekyb3d8bbwe\winstore.app.exe winstore.app 11801.1001.4.0 28.37 MB (29,743,616 bytes) 2/2/2018 2:21 PM Not Available c:\program files\windowsapps\microsoft.windowsstore_11801.1001.4.0_x64__8wekyb3d8bbwe\winstore.app.dll dmprocessxmlfiltered 10.0.16299.15 32.50 KB (33,280 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dmprocessxmlfiltered.dll windows.gaming.input 10.0.16299.15 785.50 KB (804,352 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.gaming.input.dll microsoft.ui.xaml 1.17114.1801.5024 2.15 MB (2,250,240 bytes) 2/2/2018 2:21 PM Microsoft Corporation c:\program files\windowsapps\microsoft.windowsstore_11801.1001.4.0_x64__8wekyb3d8bbwe\microsoft.ui.xaml.dll ffbroker 10.0.16299.15 64.50 KB (66,048 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ffbroker.dll editionupgradehelper 10.0.16299.15 173.00 KB (177,152 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\editionupgradehelper.dll tokenbinding 10.0.16299.15 45.50 KB (46,592 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\tokenbinding.dll windows.applicationmodel.store 10.0.16299.125 1.84 MB (1,925,296 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\system32\windows.applicationmodel.store.dll webservices 10.0.16299.15 1.30 MB (1,358,472 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\webservices.dll profext 10.0.16299.15 118.50 KB (121,344 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\profext.dll xblauthtokenbrokerext 10.0.16299.19 84.00 KB (86,016 bytes) 11/25/2017 2:52 PM Microsoft Corporation c:\windows\system32\xblauthtokenbrokerext.dll windows.system.userprofile.diagnosticssettings 10.0.16299.15 61.50 KB (62,976 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.system.userprofile.diagnosticssettings.dll windows.graphics 10.0.16299.15 469.00 KB (480,256 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.graphics.dll windows.system.profile.platformdiagnosticsandusagedatasettings 10.0.16299.15 63.00 KB (64,512 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.system.profile.platformdiagnosticsandusagedatasettings.dll windows.web 10.0.16299.15 717.50 KB (734,720 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.web.dll certenroll 10.0.16299.15 2.98 MB (3,129,344 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\certenroll.dll certca 10.0.16299.15 779.50 KB (798,208 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\certca.dll wldap32 10.0.16299.15 350.50 KB (358,912 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wldap32.dll dsparse 10.0.16299.15 31.00 KB (31,744 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dsparse.dll windows.ui.xaml.phone 10.0.16299.15 1.28 MB (1,341,440 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.ui.xaml.phone.dll winstore.entertainment.mobile Not Available 7.54 MB (7,910,912 bytes) 2/2/2018 2:21 PM Not Available c:\program files\windowsapps\microsoft.windowsstore_11801.1001.4.0_x64__8wekyb3d8bbwe\winstore.entertainment.mobile.dll xblauthmanagerproxy 10.0.16299.15 85.50 KB (87,552 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\xblauthmanagerproxy.dll windows.energy 10.0.16299.15 192.00 KB (196,608 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.energy.dll installservice 10.0.16299.214 1.25 MB (1,313,792 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\installservice.dll msftedit 10.0.16299.15 3.05 MB (3,197,440 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\msftedit.dll globinputhost 10.0.16299.15 170.00 KB (174,080 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\globinputhost.dll rtmediaframe 10.0.16299.15 428.50 KB (438,784 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\rtmediaframe.dll windows.media.devices 10.0.16299.15 238.00 KB (243,712 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.media.devices.dll ddores 10.0.16299.15 14.93 MB (15,650,048 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ddores.dll defaultdevicemanager 10.0.16299.15 20.24 KB (20,728 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\defaultdevicemanager.dll windows.networking.proximity 10.0.16299.15 332.00 KB (339,968 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.networking.proximity.dll proximityrtapipal 10.0.16299.15 17.00 KB (17,408 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\proximityrtapipal.dll proximitycommon 10.0.16299.15 159.50 KB (163,328 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\proximitycommon.dll proximitycommonpal 10.0.16299.15 16.50 KB (16,896 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\proximitycommonpal.dll windows.devices.smartcards.phone 10.0.16299.15 425.50 KB (435,712 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.devices.smartcards.phone.dll mbaeapipublic 10.0.16299.15 1.02 MB (1,066,496 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\mbaeapipublic.dll windows.perception.stub 10.0.16299.98 820.74 KB (840,440 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\system32\windows.perception.stub.dll explorer 10.0.16299.214 3.72 MB (3,904,296 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\explorer.exe starttiledata 10.0.16299.192 5.63 MB (5,905,752 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\starttiledata.dll idstore 10.0.16299.15 141.00 KB (144,384 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\idstore.dll dsreg 10.0.16299.214 675.00 KB (691,200 bytes) 1/31/2018 10:40 PM Microsoft Corporation c:\windows\system32\dsreg.dll sndvolsso 10.0.16299.125 691.50 KB (708,096 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\sndvolsso.dll twinui.pcshell 10.0.16299.214 2.84 MB (2,976,256 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\twinui.pcshell.dll wincorlib 10.0.16299.15 426.00 KB (436,224 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wincorlib.dll windows.immersiveshell.serviceprovider 10.0.16299.214 512.50 KB (524,800 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\windows.immersiveshell.serviceprovider.dll peopleband 10.0.16299.15 214.50 KB (219,648 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\peopleband.dll holographicextensions 10.0.16299.125 526.50 KB (539,136 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\system32\holographicextensions.dll abovelockapphost 10.0.16299.15 305.50 KB (312,832 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\abovelockapphost.dll npsm 10.0.16299.15 189.00 KB (193,536 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\npsm.dll windows.shell.bluelightreduction 10.0.16299.15 332.50 KB (340,480 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.shell.bluelightreduction.dll windows.cloudstore 10.0.16299.98 3.04 MB (3,186,688 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\system32\windows.cloudstore.dll windows.internal.signals 10.0.16299.15 713.00 KB (730,112 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\windows.internal.signals.dll windows.cloudstore.schema.shell 10.0.16299.15 569.50 KB (583,168 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.cloudstore.schema.shell.dll taskflowdataengine 10.0.16299.15 371.00 KB (379,904 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\taskflowdataengine.dll actxprxy 10.0.16299.192 575.00 KB (588,800 bytes) 1/4/2018 9:05 AM Microsoft Corporation c:\windows\system32\actxprxy.dll wlidprov 10.0.16299.15 666.50 KB (682,496 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wlidprov.dll cryptngc 10.0.16299.19 432.50 KB (442,880 bytes) 11/25/2017 2:52 PM Microsoft Corporation c:\windows\system32\cryptngc.dll cflapi 10.0.16299.15 96.00 KB (98,304 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\cflapi.dll idmnetmon64 6.25.22.119 318.70 KB (326,344 bytes) 8/5/2016 4:50 PM Tonec Inc. c:\program files (x86)\internet download manager\idmnetmon64.dll stobject 10.0.16299.214 408.00 KB (417,792 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\stobject.dll batmeter 10.0.16299.125 1.59 MB (1,670,656 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\batmeter.dll inputswitch 10.0.16299.214 411.50 KB (421,376 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\inputswitch.dll es 2001.12.10941.16384 440.00 KB (450,560 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\es.dll prnfldr 10.0.16299.15 470.00 KB (481,280 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\prnfldr.dll windows.ui.shell 10.0.16299.15 50.50 KB (51,712 bytes) 9/29/2017 2:43 PM Microsoft Corporation c:\windows\system32\windows.ui.shell.dll dxp 10.0.16299.15 456.00 KB (466,944 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dxp.dll actioncenter 10.0.16299.15 304.50 KB (311,808 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\actioncenter.dll syncreg 2007.94.16299.15 76.50 KB (78,336 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\syncreg.dll pnidui 10.0.16299.125 2.02 MB (2,117,632 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\pnidui.dll bthprops 10.0.16299.15 245.00 KB (250,880 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\bthprops.cpl wpdshserviceobj 10.0.16299.15 64.00 KB (65,536 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wpdshserviceobj.dll portabledevicetypes 10.0.16299.15 184.00 KB (188,416 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\portabledevicetypes.dll portabledeviceapi 10.0.16299.15 624.00 KB (638,976 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\portabledeviceapi.dll settingmonitor 10.0.16299.214 194.00 KB (198,656 bytes) 1/31/2018 10:40 PM Microsoft Corporation c:\windows\system32\settingmonitor.dll packagestateroaming 10.0.16299.15 217.50 KB (222,720 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\packagestateroaming.dll npsmdesktopprovider 10.0.16299.15 853.50 KB (873,984 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\npsmdesktopprovider.dll cscobj 10.0.16299.15 284.50 KB (291,328 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\cscobj.dll srchadmin 7.0.16299.214 357.00 KB (365,568 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\srchadmin.dll mssprxy 7.0.16299.214 140.50 KB (143,872 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\mssprxy.dll synccenter 10.0.16299.214 3.21 MB (3,367,936 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\synccenter.dll imapi2 10.0.16299.15 501.50 KB (513,536 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\imapi2.dll hgcpl 10.0.16299.214 606.50 KB (621,056 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\hgcpl.dll provsvc 10.0.16299.15 454.50 KB (465,408 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\provsvc.dll uiribbon 10.0.16299.15 3.81 MB (3,994,624 bytes) 9/29/2017 2:43 PM Microsoft Corporation c:\windows\system32\uiribbon.dll uiribbonres 10.0.16299.15 570.50 KB (584,192 bytes) 9/29/2017 2:43 PM Microsoft Corporation c:\windows\system32\uiribbonres.dll networkexplorer 10.0.16299.15 1.14 MB (1,195,008 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\networkexplorer.dll workfoldersshell 10.0.16299.15 219.50 KB (224,768 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\workfoldersshell.dll twext 10.0.16299.214 177.00 KB (181,248 bytes) 1/31/2018 10:40 PM Microsoft Corporation c:\windows\system32\twext.dll mbshlext 3.0.0.26 1.97 MB (2,063,488 bytes) 1/27/2018 6:55 PM Malwarebytes c:\program files\malwarebytes\anti-malware\mbshlext.dll sfc 10.0.16299.15 3.00 KB (3,072 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\sfc.dll dtshl64 10.7.0.333 1.47 MB (1,544,384 bytes) 12/15/2017 11:12 AM Disc Soft Ltd c:\program files\daemon tools lite\dtshl64.dll mfsrcsnk 10.0.16299.64 2.16 MB (2,269,080 bytes) 11/25/2017 2:52 PM Microsoft Corporation c:\windows\system32\mfsrcsnk.dll rarext 5.50.0.0 428.71 KB (439,000 bytes) 11/10/2017 10:22 PM Alexander Roshal c:\program files\winrar\rarext.dll misosh64 5.3.0.198 42.50 KB (43,520 bytes) 7/6/2017 11:34 AM MagicISO, Inc. c:\program files (x86)\magiciso\misosh64.dll shellext 4.12.16299.15 322.90 KB (330,648 bytes) 1/19/2018 10:26 PM Microsoft Corporation c:\programdata\microsoft\windows defender\platform\4.12.17007.18011-0\shellext.dll mpclient 4.12.17007.18011 873.58 KB (894,544 bytes) 1/19/2018 10:26 PM Microsoft Corporation c:\programdata\microsoft\windows defender\platform\4.12.17007.18011-0\mpclient.dll defragglershell64 2.21.0.993 110.21 KB (112,856 bytes) 3/8/2016 4:18 PM Piriform Ltd c:\program files\defraggler\defragglershell64.dll aimp_menu64 4.0.0.0 1.45 MB (1,516,080 bytes) 12/29/2017 4:59 AM AIMP DevTeam c:\program files (x86)\aimp\system\aimp_menu64.dll playtomenu 12.0.16299.15 167.00 KB (171,008 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\playtomenu.dll efswrt 10.0.16299.15 620.00 KB (634,880 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\efswrt.dll feclient 10.0.16299.15 79.00 KB (80,896 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\feclient.dll wscinterop 10.0.16299.15 202.50 KB (207,360 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\wscinterop.dll wscapi 10.0.16299.192 285.52 KB (292,376 bytes) 1/4/2018 9:04 AM Microsoft Corporation c:\windows\system32\wscapi.dll wscui 10.0.16299.15 1.16 MB (1,211,392 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\wscui.cpl werconcpl 10.0.16299.15 1.22 MB (1,281,024 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\werconcpl.dll framedynos 10.0.16299.15 289.50 KB (296,448 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\framedynos.dll wer 10.0.16299.15 740.03 KB (757,792 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wer.dll hcproviders 10.0.16299.15 59.00 KB (60,416 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\hcproviders.dll windowscodecsext 10.0.16299.15 271.50 KB (278,016 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windowscodecsext.dll atiamenu 6.14.10.2001 4.50 KB (4,608 bytes) 2/26/2016 2:29 PM Advanced Micro Devices, Inc. c:\program files\amd\cnext\cnext\atiamenu.dll chartv 10.0.16299.15 125.50 KB (128,512 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\chartv.dll searchfolder 10.0.16299.15 380.00 KB (389,120 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\searchfolder.dll icm32 10.0.16299.15 239.50 KB (245,248 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\icm32.dll smartscreenps 10.0.16299.98 233.50 KB (239,104 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\smartscreenps.dll idmbrbtn64 6.25.19.46 105.65 KB (108,184 bytes) 8/5/2016 4:50 PM Tonec Inc. c:\program files (x86)\internet download manager\idmbrbtn64.dll atiacm64 6.14.10.2001 886.20 KB (907,464 bytes) 2/26/2016 2:59 PM Advanced Micro Devices, Inc. c:\program files\amd\cnext\cnext\atiacm64.dll taskschd 10.0.16299.15 779.88 KB (798,600 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\taskschd.dll browsersettingsync 10.0.16299.15 150.00 KB (153,600 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\browsersettingsync.dll shellexperiencehost 10.0.16299.15 1.92 MB (2,010,520 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\systemapps\shellexperiencehost_cw5n1h2txyewy\shellexperiencehost.exe startui 10.0.16299.98 8.91 MB (9,347,072 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\shellexperiences\startui.dll windows.ui.shell.sharedutilities 10.0.16299.15 163.50 KB (167,424 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\shellexperiences\windows.ui.shell.sharedutilities.dll quickactions 10.0.16299.15 863.00 KB (883,712 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\shellexperiences\quickactions.dll windows.ui.actioncenter 10.0.16299.98 3.76 MB (3,944,448 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\shellexperiences\windows.ui.actioncenter.dll quickactionsdatamodel 10.0.16299.15 257.00 KB (263,168 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\quickactionsdatamodel.dll logoncli 10.0.16299.15 241.67 KB (247,472 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\logoncli.dll windows.globalization.fontgroups 10.0.16299.15 73.50 KB (75,264 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.globalization.fontgroups.dll fontgroupsoverride 10.0.16299.15 19.00 KB (19,456 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\fontgroupsoverride.dll globcollationhost 10.0.16299.15 318.00 KB (325,632 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\globcollationhost.dll mtcuvc 10.0.16299.15 708.00 KB (724,992 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\shellexperiences\mtcuvc.dll searchui 10.0.16299.214 11.81 MB (12,378,528 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\searchui.exe cortanaapi Not Available 10.53 MB (11,044,864 bytes) 1/31/2018 10:42 PM Not Available c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\cortanaapi.dll bingconfigurationclient 10.0.16299.15 93.00 KB (95,232 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\bingconfigurationclient.dll windows.cortana.pal.desktop 10.0.16299.15 136.50 KB (139,776 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.cortana.pal.desktop.dll cortana.core Not Available 1.72 MB (1,804,288 bytes) 1/31/2018 10:42 PM Not Available c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\cortana.core.dll actionmgr 10.0.16299.15 76.00 KB (77,824 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\actionmgr.dll sapi_onecore 5.3.16299.98 5.09 MB (5,333,504 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\system32\speech_onecore\common\sapi_onecore.dll personax 10.0.16299.15 199.00 KB (203,776 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\personax.dll constraintindex.search 10.0.16299.15 1.77 MB (1,856,512 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\constraintindex.search.dll cortana.actions 10.0.16299.214 997.50 KB (1,021,440 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\cortana.actions.dll speechpal 10.0.16299.15 1.54 MB (1,615,360 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\speechpal.dll remindersui 10.0.16299.214 4.44 MB (4,660,224 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\remindersui.dll windows.applicationmodel.background.timebroker 10.0.16299.15 31.00 KB (31,744 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.applicationmodel.background.timebroker.dll windows.applicationmodel.background.systemeventsbroker 10.0.16299.15 112.00 KB (114,688 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.applicationmodel.background.systemeventsbroker.dll edgemanager 11.0.16299.214 197.00 KB (201,728 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\edgemanager.dll windows.internal.securitymitigationsbroker 10.0.16299.15 45.50 KB (46,592 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.internal.securitymitigationsbroker.dll msimtf 10.0.16299.15 44.50 KB (45,568 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\msimtf.dll ieapfltr 11.0.16299.214 1.52 MB (1,597,952 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\ieapfltr.dll cortanaapi.proxystub 10.0.16299.214 329.00 KB (336,896 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\cortanaapi.proxystub.dll cortana.persona 10.0.16299.15 278.50 KB (285,184 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\cortana.persona.dll webplatstorageserver 10.0.16299.15 659.50 KB (675,328 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\webplatstorageserver.dll windowsinternal.composableshell.experiences.textinput.inputapp 10.0.16299.214 614.50 KB (629,248 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\systemapps\inputapp_cw5n1h2txyewy\windowsinternal.composableshell.experiences.textinput.inputapp.exe windowsinternal.composableshell.experiences.textinput 10.0.16299.214 10.41 MB (10,919,424 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\textinput\windowsinternal.composableshell.experiences.textinput.dll xaudio2_9 10.0.16299.15 558.00 KB (571,392 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\xaudio2_9.dll dictationmanager 10.0.0.1 463.00 KB (474,112 bytes) 12/13/2017 8:51 PM Microsoft Corporation c:\windows\system32\dictationmanager.dll windowsinternal.composableshell.experiences.textinput.layoutdata 10.0.16299.214 2.39 MB (2,509,312 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\textinput\windowsinternal.composableshell.experiences.textinput.layoutdata.dll windows.devices.sensors 10.0.16299.15 911.50 KB (933,376 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\windows.devices.sensors.dll windows.media.speech 10.0.16299.64 1.72 MB (1,806,336 bytes) 11/25/2017 2:52 PM Microsoft Corporation c:\windows\system32\windows.media.speech.dll speechservicewinrtapi.proxystub 10.0.16299.15 84.50 KB (86,528 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\speech_onecore\common\speechservicewinrtapi.proxystub.dll windows.media.speech.uxres 10.0.16299.15 555.50 KB (568,832 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.media.speech.uxres.dll winlangdb 10.0.16299.15 415.00 KB (424,960 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\winlangdb.dll windows.ui.input.inking 10.0.16299.125 1.59 MB (1,666,048 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\system32\windows.ui.input.inking.dll inkobjcore 10.0.16299.15 947.50 KB (970,240 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\inkobjcore.dll speechbrokeredapi 10.0.16299.15 118.00 KB (120,832 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\speech_onecore\common\speechbrokeredapi.dll systemsettingsbroker 10.0.16299.15 202.82 KB (207,688 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\systemsettingsbroker.exe settingshandlers_nt 10.0.16299.214 3.92 MB (4,113,408 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\settingshandlers_nt.dll errordetailscore 10.0.16299.15 44.00 KB (45,056 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\errordetailscore.dll datalayer 4.12.16299.15 225.90 KB (231,320 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\program files\windows defender\datalayer.dll settingshandlers_geolocation 10.0.16299.15 192.00 KB (196,608 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\settingshandlers_geolocation.dll skype 7.40.0.151 26.54 MB (27,832,264 bytes) 10/6/2017 12:38 PM Skype Technologies S.A. c:\program files (x86)\skype\phone\skype.exe viber 8.0.0.4 33.93 MB (35,581,000 bytes) 2/2/2018 12:47 AM Viber Media S.à r.l. c:\users\stefa\appdata\local\viber\viber.exe cnext 10.1.1.1522 4.70 MB (4,926,664 bytes) 2/26/2016 2:55 PM Advanced Micro Devices, Inc. c:\program files\amd\cnext\cnext\cnext.exe qt5core 5.5.0.0 5.24 MB (5,496,320 bytes) 7/2/2015 10:58 AM The Qt Company Ltd c:\program files\amd\cnext\cnext\qt5core.dll pdh 10.0.16299.15 289.00 KB (295,936 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\pdh.dll qt5quick 5.5.0.0 2.79 MB (2,924,544 bytes) 6/25/2015 3:28 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\qt5quick.dll qt5widgets 5.5.0.0 5.19 MB (5,444,608 bytes) 6/25/2015 3:08 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\qt5widgets.dll qt5winextras 5.5.0.0 271.00 KB (277,504 bytes) 6/25/2015 3:58 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\qt5winextras.dll qt5gui 5.5.0.0 5.54 MB (5,804,544 bytes) 6/25/2015 3:03 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\qt5gui.dll qt5qml 5.5.0.0 3.04 MB (3,187,712 bytes) 6/25/2015 3:23 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\qt5qml.dll qt5xml 5.5.0.0 188.50 KB (193,024 bytes) 6/25/2015 2:59 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\qt5xml.dll msvcp120 12.0.40664.0 644.16 KB (659,624 bytes) 5/24/2017 10:50 PM Microsoft Corporation c:\windows\system32\msvcp120.dll msvcr120 12.0.40664.0 940.66 KB (963,240 bytes) 5/24/2017 10:50 PM Microsoft Corporation c:\windows\system32\msvcr120.dll qt5network 5.5.0.0 1.01 MB (1,061,376 bytes) 6/25/2015 3:00 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\qt5network.dll atiadlxx 7.16.10.1301 1.21 MB (1,272,832 bytes) 8/21/2017 2:47 PM Advanced Micro Devices, Inc. c:\windows\system32\atiadlxx.dll qwindows 5.5.0.0 1.16 MB (1,212,416 bytes) 6/25/2015 3:14 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\platforms\qwindows.dll qtquick2plugin Not Available 14.00 KB (14,336 bytes) 6/25/2015 3:34 PM Not Available c:\program files\amd\cnext\cnext\qtquick.2\qtquick2plugin.dll qtquickcontrolsplugin Not Available 722.50 KB (739,840 bytes) 6/25/2015 3:37 PM Not Available c:\program files\amd\cnext\cnext\qtquick\controls\qtquickcontrolsplugin.dll windowplugin Not Available 14.00 KB (14,336 bytes) 6/25/2015 3:35 PM Not Available c:\program files\amd\cnext\cnext\qtquick\window.2\windowplugin.dll qquicklayoutsplugin Not Available 69.50 KB (71,168 bytes) 6/25/2015 3:38 PM Not Available c:\program files\amd\cnext\cnext\qtquick\layouts\qquicklayoutsplugin.dll libegl Not Available 11.50 KB (11,776 bytes) 6/25/2015 2:53 PM Not Available c:\program files\amd\cnext\cnext\libegl.dll libglesv2 Not Available 1.92 MB (2,013,696 bytes) 6/25/2015 2:51 PM Not Available c:\program files\amd\cnext\cnext\libglesv2.dll qdds 5.5.0.0 48.50 KB (49,664 bytes) 6/25/2015 3:20 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\imageformats\qdds.dll qgif 5.5.0.0 29.00 KB (29,696 bytes) 6/25/2015 3:15 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\imageformats\qgif.dll qicns 5.5.0.0 36.50 KB (37,376 bytes) 6/25/2015 3:20 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\imageformats\qicns.dll qico 5.5.0.0 29.50 KB (30,208 bytes) 6/25/2015 3:15 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\imageformats\qico.dll qjp2 5.5.0.0 449.00 KB (459,776 bytes) 6/25/2015 3:20 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\imageformats\qjp2.dll qjpeg 5.5.0.0 231.00 KB (236,544 bytes) 6/25/2015 3:15 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\imageformats\qjpeg.dll qmng 5.5.0.0 269.00 KB (275,456 bytes) 6/25/2015 3:20 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\imageformats\qmng.dll qsvg 5.5.0.0 23.00 KB (23,552 bytes) 6/25/2015 3:17 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\imageformats\qsvg.dll qt5svg 5.5.0.0 303.50 KB (310,784 bytes) 6/25/2015 3:16 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\qt5svg.dll qtga 5.5.0.0 22.00 KB (22,528 bytes) 6/25/2015 3:20 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\imageformats\qtga.dll qtiff 5.5.0.0 343.50 KB (351,744 bytes) 6/25/2015 3:20 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\imageformats\qtiff.dll qwbmp 5.5.0.0 21.00 KB (21,504 bytes) 6/25/2015 3:20 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\imageformats\qwbmp.dll qwebp 5.5.0.0 366.00 KB (374,784 bytes) 6/25/2015 3:21 PM The Qt Company Ltd c:\program files\amd\cnext\cnext\imageformats\qwebp.dll perfproc 10.0.16299.15 39.50 KB (40,448 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\perfproc.dll d3dcompiler_47 6.3.9600.16384 3.98 MB (4,173,928 bytes) 3/11/2014 4:54 AM Microsoft Corporation c:\program files\amd\cnext\cnext\d3dcompiler_47.dll systemsettings 10.0.16299.15 93.38 KB (95,616 bytes) 9/29/2017 2:43 PM Microsoft Corporation c:\windows\immersivecontrolpanel\systemsettings.exe systemsettings 10.0.16299.15 5.67 MB (5,950,464 bytes) 9/29/2017 2:43 PM Microsoft Corporation c:\windows\immersivecontrolpanel\systemsettings.dll telemetry.common 10.0.16299.15 52.50 KB (53,760 bytes) 9/29/2017 2:43 PM Microsoft Corporation c:\windows\immersivecontrolpanel\telemetry.common.dll systemsettingsviewmodel.desktop 10.0.16299.15 939.50 KB (962,048 bytes) 9/29/2017 2:43 PM Microsoft Corporation c:\windows\immersivecontrolpanel\systemsettingsviewmodel.desktop.dll credprovhost 10.0.16299.15 255.50 KB (261,632 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\credprovhost.dll miracastreceiver 10.0.16299.15 1.12 MB (1,179,136 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\miracastreceiver.dll wmi 10.0.16299.15 5.50 KB (5,632 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\wmi.dll ncaapi 10.0.16299.15 24.50 KB (25,088 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ncaapi.dll mfcore 10.0.16299.214 4.30 MB (4,506,584 bytes) 1/31/2018 10:42 PM Microsoft Corporation c:\windows\system32\mfcore.dll bcastdvrbroker 10.0.16299.15 531.00 KB (543,744 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\bcastdvrbroker.dll bcastdvrcommon 10.0.16299.15 205.50 KB (210,432 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\bcastdvrcommon.dll onebackuphandler 10.0.16299.15 353.50 KB (361,984 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\onebackuphandler.dll cloudbackupsettings 10.0.16299.15 293.50 KB (300,544 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\cloudbackupsettings.dll fhsettingsprovider 10.0.16299.15 430.00 KB (440,320 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\fhsettingsprovider.dll fhsvcctl 10.0.16299.15 28.50 KB (29,184 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\fhsvcctl.dll fhcfg 10.0.16299.15 428.00 KB (438,272 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\fhcfg.dll efsutil 10.0.16299.15 40.50 KB (41,472 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\efsutil.dll dsrole 10.0.16299.15 27.34 KB (28,000 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dsrole.dll sdengin2 10.0.16299.15 1.13 MB (1,180,672 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\sdengin2.dll bcd 10.0.16299.15 116.62 KB (119,416 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\bcd.dll spp 10.0.16299.15 265.00 KB (271,360 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\spp.dll vssapi 10.0.16299.214 1.58 MB (1,661,440 bytes) 1/31/2018 10:41 PM Microsoft Corporation c:\windows\system32\vssapi.dll vsstrace 10.0.16299.15 67.00 KB (68,608 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\vsstrace.dll microsoft.photos 2017.39101.16720.0 466.00 KB (477,184 bytes) 12/14/2017 4:07 PM Microsoft Corporation c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\microsoft.photos.exe microsoft.photos 2017.39101.16720.0 55.88 MB (58,590,720 bytes) 12/14/2017 4:07 PM Microsoft Corporation c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\microsoft.photos.dll mrt100_app 1.7.25531.0 354.67 KB (363,184 bytes) 12/14/2017 4:06 PM Microsoft Corporation c:\program files\windowsapps\microsoft.net.native.runtime.1.7_1.7.25531.0_x64__8wekyb3d8bbwe\mrt100_app.dll videoplugin Not Available 161.00 KB (164,864 bytes) 11/10/2017 3:03 PM Not Available c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\videoplugin.dll sharedlibrary 1.7.25531.0 7.09 MB (7,431,000 bytes) 12/14/2017 4:06 PM Microsoft Corporation c:\program files\windowsapps\microsoft.net.native.framework.1.7_1.7.25531.0_x64__8wekyb3d8bbwe\sharedlibrary.dll unityenginedelegates Not Available 2.41 MB (2,523,136 bytes) 10/5/2017 6:53 AM Not Available c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\unityenginedelegates.dll clrcompression 1.0.24214.0 64.18 KB (65,720 bytes) 3/19/2017 3:35 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\clrcompression.dll mediaenginecswrapper 1.0.1711.20001 3.55 MB (3,727,360 bytes) 12/14/2017 4:07 PM Microsoft Corporation c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\mediaenginecswrapper.dll ippnativeplugin Not Available 659.50 KB (675,328 bytes) 10/5/2017 6:53 AM Not Available c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\ippnativeplugin.dll vcomp140_app 14.11.25426.0 59.70 KB (61,136 bytes) 9/8/2017 8:41 PM Microsoft Corporation c:\program files\windowsapps\microsoft.vclibs.140.00_14.0.25426.0_x64__8wekyb3d8bbwe\vcomp140_app.dll trackingdlluwp 1.0.1710.30002 2.17 MB (2,270,720 bytes) 12/14/2017 4:07 PM Microsoft Corporation c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\trackingdlluwp.dll photosapp.windows 2017.39101.16720.0 15.64 MB (16,395,264 bytes) 12/14/2017 4:07 PM Microsoft Corporation c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\photosapp.windows.dll mediaengine 1.0.1711.20001 3.41 MB (3,579,904 bytes) 12/14/2017 4:07 PM Microsoft Corporation c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\mediaengine.dll appcore.windows 2017.39101.16720.0 3.06 MB (3,204,096 bytes) 12/14/2017 4:07 PM Microsoft Corporation c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\appcore.windows.dll microsoft.ui.xaml 1.17081.1708.3001 3.39 MB (3,553,704 bytes) 8/29/2017 2:39 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\microsoft.ui.xaml.dll microsoft.photos.edit.services 1.0.1710.9004 42.50 KB (43,520 bytes) 12/14/2017 4:07 PM Microsoft Corporation c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\microsoft.photos.edit.services.dll microsoft.people.peoplepicker 10.3.1711.16002 3.85 MB (4,038,144 bytes) 12/14/2017 4:07 PM Microsoft Corporation c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\microsoft.people.peoplepicker.dll microsoft.richmedia.ink.controls 1.0.1710.9003 1.30 MB (1,367,040 bytes) 12/14/2017 4:07 PM Microsoft Corporation c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\microsoft.richmedia.ink.controls.dll windows.management.workplace 10.0.16299.15 210.40 KB (215,448 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.management.workplace.dll sku 2017.39101.16720.0 209.50 KB (214,528 bytes) 12/14/2017 4:07 PM Microsoft Corporation c:\program files\windowsapps\microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\sku.dll familysafetyext 10.0.16299.15 14.00 KB (14,336 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\familysafetyext.dll hxoutlook 16.0.8827.2185 2.07 MB (2,171,568 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\hxoutlook.exe microsoft.applications.telemetry.windows 2.0.0.0 1.48 MB (1,556,200 bytes) 1/26/2018 10:01 PM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\microsoft.applications.telemetry.windows.dll hxcalendar.app 16.0.8827.2185 30.17 KB (30,896 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\hxcalendar.app.dll msoimm 16.0.8827.2185 10.52 MB (11,032,752 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\msoimm.dll mso40uiimm 16.0.8827.2185 5.59 MB (5,864,624 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\mso40uiimm.dll mso30imm 16.0.8827.2185 5.73 MB (6,012,592 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\mso30imm.dll office.ui.xaml.word Not Available 1.17 MB (1,231,536 bytes) 2/6/2018 8:41 AM Not Available c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\office.ui.xaml.word.dll mso20imm 16.0.8827.2185 4.79 MB (5,019,312 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\mso20imm.dll office.ui.xaml.core 16.0.8827.2185 12.32 MB (12,919,984 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\office.ui.xaml.core.dll mso50imm 16.0.8827.2185 518.67 KB (531,120 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\mso50imm.dll mso98imm 16.0.8827.2185 3.64 MB (3,814,064 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\mso98imm.dll hxoutlook.model 16.0.8827.2185 2.74 MB (2,871,472 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\hxoutlook.model.dll hxcomm 16.0.8827.2185 10.75 MB (11,276,464 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\hxcomm.dll hxcomm.ipc.proxies 16.0.8827.2185 33.17 KB (33,968 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\hxcomm.ipc.proxies.dll hxoutlook.view 16.0.8827.2185 4.05 MB (4,245,168 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\hxoutlook.view.dll office.ui.xaml.hxshared 16.0.8827.2185 7.29 MB (7,646,384 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\office.ui.xaml.hxshared.dll hxoutlook.viewmodel 16.0.8827.2185 3.87 MB (4,059,312 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\hxoutlook.viewmodel.dll hxoutlook.resources 16.0.8827.2185 155.17 KB (158,896 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\hxoutlook.resources.dll office.ui.xaml.hx.mail 16.0.8827.2185 10.07 MB (10,563,248 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\office.ui.xaml.hx.mail.dll windows.system.remotedesktop 10.0.16299.15 23.50 KB (24,064 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\windows.system.remotedesktop.dll office.ui.xaml.hxcalendar 16.0.8827.2185 12.84 MB (13,468,848 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\office.ui.xaml.hxcalendar.dll wlibim 16.0.8827.2185 22.89 MB (23,999,664 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\wlibim.dll oartim 16.0.8827.2185 13.43 MB (14,085,808 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\oartim.dll gfxim 16.0.8827.2185 4.13 MB (4,327,088 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\gfxim.dll textentityextractorproxy 16.0.8827.2185 768.67 KB (787,120 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\textentityextractorproxy.dll msproof7imm 16.0.8827.2185 305.17 KB (312,496 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\msproof7imm.dll hxtsr 16.0.8827.2185 96.17 KB (98,480 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\hxtsr.exe hxoutlookbackground 16.0.8827.2185 1.88 MB (1,975,984 bytes) 2/6/2018 8:41 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\hxoutlookbackground.dll dllhost 10.0.16299.15 20.40 KB (20,888 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\dllhost.exe skypebrowserhost 6.13.0.265 320.96 KB (328,664 bytes) 7/18/2017 9:27 AM Skype Technologies c:\program files (x86)\skype\browser\skypebrowserhost.exe smartscreen 10.0.16299.98 2.48 MB (2,596,352 bytes) 12/13/2017 8:52 PM Microsoft Corporation c:\windows\system32\smartscreen.exe msdelta 5.0.1.1 495.40 KB (507,288 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\msdelta.dll canonurl 10.0.16299.15 33.00 KB (33,792 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\canonurl.dll msinfo32 10.0.16299.15 361.00 KB (369,664 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\msinfo32.exe mfc42u 6.6.8063.0 1.38 MB (1,450,496 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\mfc42u.dll atl 3.5.2284.0 96.00 KB (98,304 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\atl.dll wbemprox 10.0.16299.15 41.00 KB (41,984 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\wbem\wbemprox.dll wbemcomn 10.0.16299.15 464.00 KB (475,136 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\wbemcomn.dll wbemsvc 10.0.16299.15 61.00 KB (62,464 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\wbem\wbemsvc.dll fastprox 10.0.16299.15 941.50 KB (964,096 bytes) 9/29/2017 2:42 PM Microsoft Corporation c:\windows\system32\wbem\fastprox.dll playtodevice 10.0.16299.15 380.00 KB (389,120 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\playtodevice.dll ehstorapi 10.0.16299.15 128.00 KB (131,072 bytes) 9/29/2017 2:41 PM Microsoft Corporation c:\windows\system32\ehstorapi.dll [Services] Display Name Name State Start Mode Service Type Path Error Control Start Name Tag ID Adobe Flash Player Update Service AdobeFlashPlayerUpdateSvc Stopped Manual Own Process c:\windows\syswow64\macromed\flash\flashplayerupdateservice.exe Normal LocalSystem 0 Adobe Genuine Software Integrity Service AGSService Running Auto Own Process "c:\program files (x86)\common files\adobe\adobegcclient\agsservice.exe" Normal LocalSystem 0 AllJoyn Router Service AJRouter Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT AUTHORITY\LocalService 0 Application Layer Gateway Service ALG Stopped Manual Own Process c:\windows\system32\alg.exe Normal NT AUTHORITY\LocalService 0 AMD External Events Utility AMD External Events Utility Running Auto Own Process c:\windows\system32\atiesrxx.exe Normal LocalSystem 0 Application Identity AppIDSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT Authority\LocalService 0 Application Information Appinfo Running Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Application Management AppMgmt Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 App Readiness AppReadiness Stopped Manual Share Process c:\windows\system32\svchost.exe -k appreadiness -p Normal LocalSystem 0 Microsoft App-V Client AppVClient Stopped Manual Own Process c:\windows\system32\appvclient.exe Normal LocalSystem 0 AppX Deployment Service (AppXSVC) AppXSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k wsappx -p Normal LocalSystem 0 AssignedAccessManager Service AssignedAccessManagerSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k assignedaccessmanagersvc Normal LocalSystem 0 Windows Audio Endpoint Builder AudioEndpointBuilder Running Auto Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Windows Audio Audiosrv Running Auto Own Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT AUTHORITY\LocalService 0 ActiveX Installer (AxInstSV) AxInstSV Stopped Manual Share Process c:\windows\system32\svchost.exe -k axinstsvgroup Normal LocalSystem 0 BitLocker Drive Encryption Service BDESVC Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal localSystem 0 BattlEye Service BEService Stopped Manual Own Process "c:\program files (x86)\common files\battleye\beservice.exe" Normal LocalSystem 0 Base Filtering Engine BFE Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenonetwork -p Normal NT AUTHORITY\LocalService 0 Background Intelligent Transfer Service BITS Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Background Tasks Infrastructure Service BrokerInfrastructure Running Auto Share Process c:\windows\system32\svchost.exe -k dcomlaunch -p Normal LocalSystem 0 Bluetooth Handsfree Service BthHFSrv Stopped Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation Normal NT AUTHORITY\LocalService 0 Bluetooth Support Service bthserv Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT AUTHORITY\LocalService 0 Capability Access Manager Service camsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k appmodel -p Normal LocalSystem 0 Connected Devices Platform Service CDPSvc Running Auto Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT AUTHORITY\LocalService 0 Certificate Propagation CertPropSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 Client License Service (ClipSVC) ClipSVC Stopped Manual Share Process c:\windows\system32\svchost.exe -k wsappx -p Normal LocalSystem 0 .NET Runtime Optimization Service v2.0.50727_X86 clr_optimization_v2.0.50727_32 Stopped Manual Own Process c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe Ignore LocalSystem 0 COM+ System Application COMSysApp Stopped Manual Own Process c:\windows\system32\dllhost.exe /processid:{02d4b3f1-fd88-11d1-960d-00805fc79235} Normal LocalSystem 0 CoreMessaging CoreMessagingRegistrar Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenonetwork -p Normal NT AUTHORITY\LocalService 0 Cryptographic Services CryptSvc Running Auto Share Process c:\windows\system32\svchost.exe -k networkservice -p Normal NT Authority\NetworkService 0 Offline Files CscService Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 DCOM Server Process Launcher DcomLaunch Running Auto Share Process c:\windows\system32\svchost.exe -k dcomlaunch -p Normal LocalSystem 0 Optimize drives defragsvc Stopped Manual Own Process c:\windows\system32\svchost.exe -k defragsvc Normal localSystem 0 Device Association Service DeviceAssociationService Running Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Device Install Service DeviceInstall Stopped Manual Share Process c:\windows\system32\svchost.exe -k dcomlaunch -p Normal LocalSystem 0 DevQuery Background Discovery Broker DevQueryBroker Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 DHCP Client Dhcp Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT Authority\LocalService 0 Microsoft (R) Diagnostics Hub Standard Collector Service diagnosticshub.standardcollector.service Stopped Manual Own Process c:\windows\system32\diagsvcs\diagnosticshub.standardcollector.service.exe Normal LocalSystem 0 Diagnostic Execution Service diagsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k diagnostics Normal LocalSystem 0 Connected User Experiences and Telemetry DiagTrack Running Auto Own Process c:\windows\system32\svchost.exe -k utcsvc -p Normal LocalSystem 0 Disc Soft Lite Bus Service Disc Soft Lite Bus Service Running Manual Own Process "c:\program files\daemon tools lite\discsoftbusservicelite.exe" Normal LocalSystem 0 Device Management Enrollment Service DmEnrollmentSvc Stopped Manual Own Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 dmwappushsvc dmwappushservice Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 DNS Client Dnscache Running Auto Share Process c:\windows\system32\svchost.exe -k networkservice -p Normal NT AUTHORITY\NetworkService 0 Delivery Optimization DoSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k networkservice -p Normal NT Authority\NetworkService 0 Wired AutoConfig dot3svc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal localSystem 0 Diagnostic Policy Service DPS Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenonetwork -p Normal NT AUTHORITY\LocalService 0 Device Setup Manager DsmSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Data Sharing Service DsSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Ignore LocalSystem 0 Data Usage DusmSvc Running Auto Own Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT Authority\LocalService 0 Extensible Authentication Protocol Eaphost Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal localSystem 0 EasyAntiCheat EasyAntiCheat Stopped Manual Own Process c:\windows\system32\easyanticheat.exe Normal LocalSystem 0 Encrypting File System (EFS) EFS Running Manual Share Process c:\windows\system32\lsass.exe Normal LocalSystem 0 Embedded Mode embeddedmode Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Enterprise App Management Service EntAppSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k appmodel -p Normal LocalSystem 0 Windows Event Log EventLog Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT AUTHORITY\LocalService 0 COM+ Event System EventSystem Running Auto Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT AUTHORITY\LocalService 0 Fax Fax Stopped Manual Own Process c:\windows\system32\fxssvc.exe Normal NT AUTHORITY\NetworkService 0 Function Discovery Provider Host fdPHost Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT AUTHORITY\LocalService 0 Function Discovery Resource Publication FDResPub Stopped Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p Normal NT AUTHORITY\LocalService 0 File History Service fhsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Windows Font Cache Service FontCache Running Auto Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT AUTHORITY\LocalService 0 Windows Presentation Foundation Font Cache 3.0.0.0 FontCache3.0.0.0 Stopped Manual Own Process c:\windows\microsoft.net\framework64\v3.0\wpf\presentationfontcache.exe Normal NT Authority\LocalService 0 Windows Camera Frame Server FrameServer Stopped Manual Share Process c:\windows\system32\svchost.exe -k camera Normal NT AUTHORITY\LocalService 0 GalaxyClientService GalaxyClientService Stopped Manual Own Process "c:\program files (x86)\gog galaxy\galaxyclientservice.exe" Normal LocalSystem 0 GalaxyCommunication GalaxyCommunication Stopped Manual Own Process "c:\programdata\gog.com\galaxy\redists\galaxycommunication.exe" Normal LocalSystem 0 Group Policy Client gpsvc Stopped Auto Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 GraphicsPerfSvc GraphicsPerfSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k graphicsperfsvcgroup Ignore LocalSystem 0 Google Update Service (gupdate) gupdate Stopped Auto Own Process "c:\program files (x86)\google\update\googleupdate.exe" /svc Normal LocalSystem 0 Google Update Service (gupdatem) gupdatem Stopped Manual Own Process "c:\program files (x86)\google\update\googleupdate.exe" /medsvc Normal LocalSystem 0 Human Interface Device Service hidserv Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 HomeGroup Provider HomeGroupProvider Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT AUTHORITY\LocalService 0 HV Host Service HvHost Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Windows Mobile Hotspot Service icssvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT Authority\LocalService 0 IKE and AuthIP IPsec Keying Modules IKEEXT Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Windows Store Install Service InstallService Stopped Manual Own Process c:\windows\system32\svchost.exe -k netsvcs -p Ignore LocalSystem 0 IP Helper iphlpsvc Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 IP Translation Configuration Service IpxlatCfgSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Infrared monitor service irmon Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 CNG Key Isolation KeyIso Running Manual Share Process c:\windows\system32\lsass.exe Normal LocalSystem 0 KtmRm for Distributed Transaction Coordinator KtmRm Stopped Manual Share Process c:\windows\system32\svchost.exe -k networkserviceandnoimpersonation -p Normal NT AUTHORITY\NetworkService 0 Server LanmanServer Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Workstation LanmanWorkstation Running Auto Share Process c:\windows\system32\svchost.exe -k networkservice -p Normal NT AUTHORITY\NetworkService 0 Geolocation Service lfsvc Running Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Windows License Manager Service LicenseManager Running Manual Share Process c:\windows\system32\svchost.exe -k localservice -p Ignore NT Authority\LocalService 0 Link-Layer Topology Discovery Mapper lltdsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT AUTHORITY\LocalService 0 TCP/IP NetBIOS Helper lmhosts Running Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT AUTHORITY\LocalService 0 LSM LSM Running Unknown Unknown Not Available Unknown Not Available Not Available Downloaded Maps Manager MapsBroker Stopped Auto Own Process c:\windows\system32\svchost.exe -k networkservice -p Normal NT AUTHORITY\NetworkService 0 Malwarebytes Service MBAMService Running Auto Own Process "c:\program files\malwarebytes\anti-malware\mbamservice.exe" Normal LocalSystem 0 Windows Defender Firewall MpsSvc Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenonetwork -p Normal NT Authority\LocalService 0 MRAC Service mracsvc Stopped Manual Own Process c:\windows\system32\mracsvc.exe Normal LocalSystem 0 Distributed Transaction Coordinator MSDTC Stopped Manual Own Process c:\windows\system32\msdtc.exe Normal NT AUTHORITY\NetworkService 0 Microsoft iSCSI Initiator Service MSiSCSI Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Windows Installer msiserver Stopped Manual Own Process c:\windows\system32\msiexec.exe /v Normal LocalSystem 0 Natural Authentication NaturalAuthentication Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Network Connectivity Assistant NcaSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Network Connection Broker NcbService Running Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Network Connected Devices Auto-Setup NcdAutoSetup Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenonetwork -p Normal NT AUTHORITY\LocalService 0 Netlogon Netlogon Stopped Manual Share Process c:\windows\system32\lsass.exe Normal LocalSystem 0 Network Connections Netman Running Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Network List Service netprofm Running Manual Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT AUTHORITY\LocalService 0 NetSetupSvc NetSetupSvc Stopped Unknown Unknown Not Available Unknown Not Available Not Available Net.Tcp Port Sharing Service NetTcpPortSharing Stopped Manual Share Process c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe Normal NT AUTHORITY\LocalService 0 Microsoft Passport Container NgcCtnrSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT AUTHORITY\LocalService 0 Microsoft Passport NgcSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Network Location Awareness NlaSvc Running Auto Share Process c:\windows\system32\svchost.exe -k networkservice -p Normal NT AUTHORITY\NetworkService 0 Network Store Interface Service nsi Running Auto Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT Authority\LocalService 0 Origin Client Service Origin Client Service Stopped Manual Own Process "c:\program files (x86)\origin\originclientservice.exe" Normal LocalSystem 0 Origin Web Helper Service Origin Web Helper Service Stopped Auto Own Process "c:\program files (x86)\origin\originwebhelperservice.exe" Normal NT AUTHORITY\LocalService 0 Peer Networking Identity Manager p2pimsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicepeernet Normal NT AUTHORITY\LocalService 0 Peer Networking Grouping p2psvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicepeernet Normal NT AUTHORITY\LocalService 0 Program Compatibility Assistant Service PcaSvc Running Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 BranchCache PeerDistSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k peerdist Normal NT AUTHORITY\NetworkService 0 Performance Counter DLL Host PerfHost Stopped Manual Own Process c:\windows\syswow64\perfhost.exe Normal NT AUTHORITY\LocalService 0 Phone Service PhoneSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT Authority\LocalService 0 Performance Logs & Alerts pla Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenonetwork -p Normal NT AUTHORITY\LocalService 0 Plug and Play PlugPlay Running Manual Share Process c:\windows\system32\svchost.exe -k dcomlaunch -p Normal LocalSystem 0 PnkBstrA PnkBstrA Stopped Manual Own Process c:\windows\system32\pnkbstra.exe Normal LocalSystem 0 PnkBstrB PnkBstrB Stopped Manual Own Process c:\windows\system32\pnkbstrb.exe Normal LocalSystem 0 PNRP Machine Name Publication Service PNRPAutoReg Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicepeernet Normal NT AUTHORITY\LocalService 0 Peer Name Resolution Protocol PNRPsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicepeernet Normal NT AUTHORITY\LocalService 0 IPsec Policy Agent PolicyAgent Running Manual Share Process c:\windows\system32\svchost.exe -k networkservicenetworkrestricted -p Normal NT Authority\NetworkService 0 Power Power Running Auto Share Process c:\windows\system32\svchost.exe -k dcomlaunch -p Normal LocalSystem 0 Printer Extensions and Notifications PrintNotify Stopped Manual Share Process c:\windows\system32\svchost.exe -k print Normal LocalSystem 0 User Profile Service ProfSvc Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Windows PushToInstall Service PushToInstall Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Ignore LocalSystem 0 Quality Windows Audio Video Experience QWAVE Running Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p Normal NT AUTHORITY\LocalService 0 Remote Access Auto Connection Manager RasAuto Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal localSystem 0 Remote Access Connection Manager RasMan Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Normal localSystem 0 Routing and Remote Access RemoteAccess Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal localSystem 0 Remote Registry RemoteRegistry Stopped Disabled Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT AUTHORITY\LocalService 0 Retail Demo Service RetailDemo Stopped Manual Share Process c:\windows\system32\svchost.exe -k rdxgroup Normal LocalSystem 0 Radio Management Service RmSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Normal NT AUTHORITY\LocalService 0 RPC Endpoint Mapper RpcEptMapper Running Auto Share Process c:\windows\system32\svchost.exe -k rpcss -p Normal NT AUTHORITY\NetworkService 0 Remote Procedure Call (RPC) Locator RpcLocator Stopped Manual Own Process c:\windows\system32\locator.exe Normal NT AUTHORITY\NetworkService 0 Remote Procedure Call (RPC) RpcSs Running Auto Share Process c:\windows\system32\svchost.exe -k rpcss -p Normal NT AUTHORITY\NetworkService 0 Security Accounts Manager SamSs Running Auto Share Process c:\windows\system32\lsass.exe Normal LocalSystem 0 Smart Card SCardSvr Stopped Disabled Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation Normal NT AUTHORITY\LocalService 0 Smart Card Device Enumeration Service ScDeviceEnum Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 Task Scheduler Schedule Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Smart Card Removal Policy SCPolicySvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 Windows Backup SDRSVC Stopped Manual Own Process c:\windows\system32\svchost.exe -k sdrsvc Normal localSystem 0 Secondary Logon seclogon Running Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Windows Defender Security Center Service SecurityHealthService Running Auto Own Process c:\windows\system32\securityhealthservice.exe Normal LocalSystem 0 Payments and NFC/SE Manager SEMgrSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice -p Ignore NT AUTHORITY\LocalService 0 System Event Notification Service SENS Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Windows Defender Advanced Threat Protection Service Sense Stopped Manual Own Process "c:\program files\windows defender advanced threat protection\mssense.exe" Normal LocalSystem 0 Sensor Data Service SensorDataService Stopped Manual Own Process c:\windows\system32\sensordataservice.exe Normal LocalSystem 0 Sensor Service SensorService Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Sensor Monitoring Service SensrSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p Normal NT AUTHORITY\LocalService 0 Remote Desktop Configuration SessionEnv Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal localSystem 0 Internet Connection Sharing (ICS) SharedAccess Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Spatial Data Service SharedRealitySvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT AUTHORITY\LocalService 0 Shell Hardware Detection ShellHWDetection Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs -p Ignore LocalSystem 0 Shared PC Account Manager shpamsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Skype Updater SkypeUpdate Stopped Auto Own Process "c:\program files (x86)\skype\updater\updater.exe" Ignore LocalSystem 0 Microsoft Storage Spaces SMP smphost Stopped Manual Own Process c:\windows\system32\svchost.exe -k smphost Normal NT AUTHORITY\NetworkService 0 Microsoft Windows SMS Router Service. SmsRouter Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal localSystem 0 SNMP Trap SNMPTRAP Stopped Manual Own Process c:\windows\system32\snmptrap.exe Normal NT AUTHORITY\LocalService 0 Windows Perception Service spectrum Stopped Manual Own Process c:\windows\system32\spectrum.exe Normal NT AUTHORITY\LocalService 0 Print Spooler Spooler Running Auto Own Process c:\windows\system32\spoolsv.exe Normal LocalSystem 0 Software Protection sppsvc Running Auto Own Process c:\windows\system32\sppsvc.exe Normal NT AUTHORITY\NetworkService 0 SSDP Discovery SSDPSRV Running Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p Normal NT AUTHORITY\LocalService 0 Secure Socket Tunneling Protocol Service SstpSvc Running Manual Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT Authority\LocalService 0 State Repository Service StateRepository Running Manual Share Process c:\windows\system32\svchost.exe -k appmodel -p Normal LocalSystem 0 Steam Client Service Steam Client Service Running Manual Own Process "c:\program files (x86)\common files\steam\steamservice.exe" /runasservice Normal LocalSystem 0 Windows Image Acquisition (WIA) stisvc Running Auto Own Process c:\windows\system32\svchost.exe -k imgsvc Normal NT Authority\LocalService 0 Storage Service StorSvc Running Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Spot Verifier svsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Microsoft Software Shadow Copy Provider swprv Stopped Manual Own Process c:\windows\system32\svchost.exe -k swprv Normal LocalSystem 0 Superfetch SysMain Running Auto Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Ignore LocalSystem 0 System Events Broker SystemEventsBroker Running Auto Share Process c:\windows\system32\svchost.exe -k dcomlaunch -p Normal LocalSystem 0 Touch Keyboard and Handwriting Panel Service TabletInputService Running Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Telephony TapiSrv Running Manual Share Process c:\windows\system32\svchost.exe -k networkservice -p Normal NT AUTHORITY\NetworkService 0 Remote Desktop Services TermService Stopped Manual Share Process c:\windows\system32\svchost.exe -k networkservice Normal NT Authority\NetworkService 0 Themes Themes Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Storage Tiers Management TieringEngineService Stopped Manual Own Process c:\windows\system32\tieringengineservice.exe Normal localSystem 0 Tile Data model server tiledatamodelsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k appmodel -p Normal LocalSystem 0 Time Broker TimeBrokerSvc Running Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT AUTHORITY\LocalService 0 Web Account Manager TokenBroker Running Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Distributed Link Tracking Client TrkWks Running Auto Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Windows Modules Installer TrustedInstaller Stopped Manual Own Process c:\windows\servicing\trustedinstaller.exe Normal localSystem 0 TunngleService TunngleService Stopped Manual Own Process c:\program files (x86)\tunngle\tnglctrl.exe Normal LocalSystem 0 Auto Time Zone Updater tzautoupdate Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT AUTHORITY\LocalService 0 User Experience Virtualization Service UevAgentService Stopped Manual Own Process c:\windows\system32\agentservice.exe Normal LocalSystem 0 Interactive Services Detection UI0Detect Stopped Manual Own Process c:\windows\system32\ui0detect.exe Normal LocalSystem 0 Remote Desktop Services UserMode Port Redirector UmRdpService Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal localSystem 0 UPnP Device Host upnphost Stopped Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p Normal NT AUTHORITY\LocalService 0 User Manager UserManager Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Update Orchestrator Service UsoSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 Credential Manager VaultSvc Running Manual Share Process c:\windows\system32\lsass.exe Normal LocalSystem 0 Virtual Disk vds Stopped Manual Own Process c:\windows\system32\vds.exe Normal LocalSystem 0 Hyper-V Guest Service Interface vmicguestinterface Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Hyper-V Heartbeat Service vmicheartbeat Stopped Manual Share Process c:\windows\system32\svchost.exe -k icservice -p Normal LocalSystem 0 Hyper-V Data Exchange Service vmickvpexchange Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Hyper-V Remote Desktop Virtualization Service vmicrdv Stopped Manual Share Process c:\windows\system32\svchost.exe -k icservice -p Normal LocalSystem 0 Hyper-V Guest Shutdown Service vmicshutdown Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Hyper-V Time Synchronization Service vmictimesync Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT AUTHORITY\LocalService 0 Hyper-V PowerShell Direct Service vmicvmsession Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Hyper-V Volume Shadow Copy Requestor vmicvss Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Volume Shadow Copy VSS Stopped Manual Own Process c:\windows\system32\vssvc.exe Normal LocalSystem 0 Windows Time W32Time Running Auto Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 WalletService WalletService Stopped Manual Share Process c:\windows\system32\svchost.exe -k appmodel -p Ignore LocalSystem 0 WarpJITSvc WarpJITSvc Stopped Manual Own Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Ignore NT Authority\LocalService 0 Block Level Backup Engine Service wbengine Stopped Manual Own Process "c:\windows\system32\wbengine.exe" Normal localSystem 0 Windows Biometric Service WbioSrvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k wbiosvcgroup Normal LocalSystem 0 Windows Connection Manager Wcmsvc Running Auto Own Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT Authority\LocalService 0 Windows Connect Now - Config Registrar wcncsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p Normal NT AUTHORITY\LocalService 0 Diagnostic Service Host WdiServiceHost Running Manual Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT AUTHORITY\LocalService 0 Diagnostic System Host WdiSystemHost Running Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Windows Defender Antivirus Network Inspection Service WdNisSvc Running Manual Own Process "c:\programdata\microsoft\windows defender\platform\4.12.17007.18011-0\nissrv.exe" Normal NT AUTHORITY\LocalService 0 WebClient WebClient Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT AUTHORITY\LocalService 0 Windows Event Collector Wecsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k networkservice -p Normal NT AUTHORITY\NetworkService 0 Windows Encryption Provider Host Service WEPHOSTSVC Stopped Manual Share Process c:\windows\system32\svchost.exe -k wephostsvcgroup Normal NT AUTHORITY\LocalService 0 Problem Reports and Solutions Control Panel Support wercplsupport Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal localSystem 0 Windows Error Reporting Service WerSvc Stopped Manual Own Process c:\windows\system32\svchost.exe -k wersvcgroup Ignore localSystem 0 Wi-Fi Direct Services Connection Manager Service WFDSConMgrSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT AUTHORITY\LocalService 0 Still Image Acquisition Events WiaRpc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Windows Defender Antivirus Service WinDefend Running Auto Own Process "c:\programdata\microsoft\windows defender\platform\4.12.17007.18011-0\msmpeng.exe" Normal LocalSystem 0 WinHTTP Web Proxy Auto-Discovery Service WinHttpAutoProxySvc Running Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT AUTHORITY\LocalService 0 Windows Management Instrumentation Winmgmt Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs -p Ignore localSystem 0 Windows Remote Management (WS-Management) WinRM Stopped Manual Share Process c:\windows\system32\svchost.exe -k networkservice -p Normal NT AUTHORITY\NetworkService 0 Windows Insider Service wisvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 WLAN AutoConfig WlanSvc Running Auto Own Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Microsoft Account Sign-in Assistant wlidsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Local Profile Assistant Service wlpasvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT Authority\LocalService 0 WMI Performance Adapter wmiApSrv Stopped Manual Own Process c:\windows\system32\wbem\wmiapsrv.exe Normal localSystem 0 Windows Media Player Network Sharing Service WMPNetworkSvc Stopped Manual Own Process "c:\program files\windows media player\wmpnetwk.exe" Normal NT AUTHORITY\NetworkService 0 Work Folders workfolderssvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice -p Normal NT AUTHORITY\LocalService 0 Portable Device Enumerator Service WPDBusEnum Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p Normal LocalSystem 0 Windows Push Notifications System Service WpnService Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Wondershare Application Framework Service WsAppService Running Auto Own Process c:\program files (x86)\wondershare\waf\2.4.3.233\wsappservice.exe Ignore LocalSystem 0 Security Center wscsvc Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p Normal NT AUTHORITY\LocalService 0 Windows Search WSearch Running Auto Own Process c:\windows\system32\searchindexer.exe /embedding Normal LocalSystem 0 Windows Update wuauserv Stopped Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 WWAN AutoConfig WwanSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenonetwork -p Normal NT Authority\LocalService 0 Xbox Game Monitoring xbgm Stopped Manual Own Process c:\windows\system32\xbgmsvc.exe Normal LocalSystem 0 Xbox Live Auth Manager XblAuthManager Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Xbox Live Game Save XblGameSave Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Xbox Accessory Management Service XboxGipSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 Xbox Live Networking Service XboxNetApiSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs -p Normal LocalSystem 0 CDPUserSvc_520ff CDPUserSvc_520ff Running Auto Unknown c:\windows\system32\svchost.exe -k unistacksvcgroup Normal Not Available 0 DevicesFlowUserSvc_520ff DevicesFlowUserSvc_520ff Stopped Manual Unknown c:\windows\system32\svchost.exe -k devicesflow Normal Not Available 0 MessagingService_520ff MessagingService_520ff Stopped Manual Unknown c:\windows\system32\svchost.exe -k unistacksvcgroup Ignore Not Available 0 OneSyncSvc_520ff OneSyncSvc_520ff Running Auto Unknown c:\windows\system32\svchost.exe -k unistacksvcgroup Ignore Not Available 0 PimIndexMaintenanceSvc_520ff PimIndexMaintenanceSvc_520ff Running Manual Unknown c:\windows\system32\svchost.exe -k unistacksvcgroup Ignore Not Available 0 PrintWorkflowUserSvc_520ff PrintWorkflowUserSvc_520ff Stopped Manual Unknown c:\windows\system32\svchost.exe -k printworkflow Normal Not Available 0 UnistoreSvc_520ff UnistoreSvc_520ff Running Manual Unknown c:\windows\system32\svchost.exe -k unistacksvcgroup Ignore Not Available 0 UserDataSvc_520ff UserDataSvc_520ff Running Manual Unknown c:\windows\system32\svchost.exe -k unistacksvcgroup Ignore Not Available 0 WpnUserService_520ff WpnUserService_520ff Running Auto Unknown c:\windows\system32\svchost.exe -k unistacksvcgroup Ignore Not Available 0 BitRaider Mini-Support Service Stub Loader BRSptStub Stopped Manual Own Process "c:\programdata\bitraider\brsptstub.exe" Ignore LocalSystem 0 [Program Groups] Group Name Name User Name Start Menu Default:Start Menu Default Start Menu\Programs Default:Start Menu\Programs Default Start Menu\Programs\Accessibility Default:Start Menu\Programs\Accessibility Default Start Menu\Programs\Accessories Default:Start Menu\Programs\Accessories Default Start Menu\Programs\Maintenance Default:Start Menu\Programs\Maintenance Default Start Menu\Programs\Startup Default:Start Menu\Programs\Startup Default Start Menu\Programs\System Tools Default:Start Menu\Programs\System Tools Default Start Menu\Programs\Windows PowerShell Default:Start Menu\Programs\Windows PowerShell Default Start Menu Public:Start Menu Public Start Menu\Programs Public:Start Menu\Programs Public Start Menu\Programs\ABZU Public:Start Menu\Programs\ABZU Public Start Menu\Programs\Accessibility Public:Start Menu\Programs\Accessibility Public Start Menu\Programs\Accessories Public:Start Menu\Programs\Accessories Public Start Menu\Programs\Accessories\System Tools Public:Start Menu\Programs\Accessories\System Tools Public Start Menu\Programs\Administrative Tools Public:Start Menu\Programs\Administrative Tools Public Start Menu\Programs\AIMP Public:Start Menu\Programs\AIMP Public Start Menu\Programs\AMD Radeon Settings Public:Start Menu\Programs\AMD Radeon Settings Public Start Menu\Programs\Bethesda.net Launcher Public:Start Menu\Programs\Bethesda.net Launcher Public Start Menu\Programs\Blizzard App Public:Start Menu\Programs\Blizzard App Public Start Menu\Programs\CCleaner Public:Start Menu\Programs\CCleaner Public Start Menu\Programs\DAEMON Tools Lite Public:Start Menu\Programs\DAEMON Tools Lite Public Start Menu\Programs\Defraggler Public:Start Menu\Programs\Defraggler Public Start Menu\Programs\Dolphin Public:Start Menu\Programs\Dolphin Public Start Menu\Programs\Driver Booster 5 Public:Start Menu\Programs\Driver Booster 5 Public Start Menu\Programs\Driver Easy Public:Start Menu\Programs\Driver Easy Public Start Menu\Programs\EA Public:Start Menu\Programs\EA Public Start Menu\Programs\EA\BioWare Public:Start Menu\Programs\EA\BioWare Public Start Menu\Programs\EA\BioWare\Star Wars - The Old Republic Public:Start Menu\Programs\EA\BioWare\Star Wars - The Old Republic Public Start Menu\Programs\Games Public:Start Menu\Programs\Games Public Start Menu\Programs\Garena Public:Start Menu\Programs\Garena Public Start Menu\Programs\GOG.com Public:Start Menu\Programs\GOG.com Public Start Menu\Programs\GOG.com\GOG Galaxy Public:Start Menu\Programs\GOG.com\GOG Galaxy Public Start Menu\Programs\GOM Public:Start Menu\Programs\GOM Public Start Menu\Programs\HostsMan Public:Start Menu\Programs\HostsMan Public Start Menu\Programs\Image-Line Public:Start Menu\Programs\Image-Line Public Start Menu\Programs\ImgBurn Public:Start Menu\Programs\ImgBurn Public Start Menu\Programs\Internet Download Manager Public:Start Menu\Programs\Internet Download Manager Public Start Menu\Programs\Java Public:Start Menu\Programs\Java Public Start Menu\Programs\K-Lite Codec Pack Public:Start Menu\Programs\K-Lite Codec Pack Public Start Menu\Programs\K-Lite Codec Pack\Configuration Public:Start Menu\Programs\K-Lite Codec Pack\Configuration Public Start Menu\Programs\K-Lite Codec Pack\Help Public:Start Menu\Programs\K-Lite Codec Pack\Help Public Start Menu\Programs\K-Lite Codec Pack\Tools Public:Start Menu\Programs\K-Lite Codec Pack\Tools Public Start Menu\Programs\K-Lite Codec Pack\Uninstall Public:Start Menu\Programs\K-Lite Codec Pack\Uninstall Public Start Menu\Programs\Maintenance Public:Start Menu\Programs\Maintenance Public Start Menu\Programs\Malwarebytes Public:Start Menu\Programs\Malwarebytes Public Start Menu\Programs\Metal Gear Solid V The Phantom Pain Public:Start Menu\Programs\Metal Gear Solid V The Phantom Pain Public Start Menu\Programs\Microsoft Silverlight Public:Start Menu\Programs\Microsoft Silverlight Public Start Menu\Programs\OBS Studio Public:Start Menu\Programs\OBS Studio Public Start Menu\Programs\Origin Public:Start Menu\Programs\Origin Public Start Menu\Programs\Pesgalaxy.com Patch 2018 Public:Start Menu\Programs\Pesgalaxy.com Patch 2018 Public Start Menu\Programs\Pinball FX3 Public:Start Menu\Programs\Pinball FX3 Public Start Menu\Programs\Pro Evolution Soccer 2018 Public:Start Menu\Programs\Pro Evolution Soccer 2018 Public Start Menu\Programs\Project64 2.3 Public:Start Menu\Programs\Project64 2.3 Public Start Menu\Programs\qBittorrent Public:Start Menu\Programs\qBittorrent Public Start Menu\Programs\R.G. Mechanics Public:Start Menu\Programs\R.G. Mechanics Public Start Menu\Programs\R.G. Mechanics\Call of Duty WWII - MP Public:Start Menu\Programs\R.G. Mechanics\Call of Duty WWII - MP Public Start Menu\Programs\R.G. Mechanics\Injustice - Gods Among Us. Ultimate Edition Public:Start Menu\Programs\R.G. Mechanics\Injustice - Gods Among Us. Ultimate Edition Public Start Menu\Programs\R.G. Mechanics\Sonic Forces Public:Start Menu\Programs\R.G. Mechanics\Sonic Forces Public Start Menu\Programs\R.G. Mechanics\The SIMS 4 Public:Start Menu\Programs\R.G. Mechanics\The SIMS 4 Public Start Menu\Programs\reFX Public:Start Menu\Programs\reFX Public Start Menu\Programs\reFX\Nexus Public:Start Menu\Programs\reFX\Nexus Public Start Menu\Programs\Revo Uninstaller Public:Start Menu\Programs\Revo Uninstaller Public Start Menu\Programs\Skype Public:Start Menu\Programs\Skype Public Start Menu\Programs\Square-Enix Public:Start Menu\Programs\Square-Enix Public Start Menu\Programs\Square-Enix\Final Fantasy XIII Public:Start Menu\Programs\Square-Enix\Final Fantasy XIII Public Start Menu\Programs\StartUp Public:Start Menu\Programs\StartUp Public Start Menu\Programs\Steam Public:Start Menu\Programs\Steam Public Start Menu\Programs\System Tools Public:Start Menu\Programs\System Tools Public Start Menu\Programs\Tunngle Public:Start Menu\Programs\Tunngle Public Start Menu\Programs\VEGAS Public:Start Menu\Programs\VEGAS Public Start Menu\Programs\VEGAS\VEGAS Pro 14.0 Public:Start Menu\Programs\VEGAS\VEGAS Pro 14.0 Public Start Menu\Programs\WinRAR Public:Start Menu\Programs\WinRAR Public Start Menu\Programs\Wondershare Public:Start Menu\Programs\Wondershare Public Start Menu DESKTOP-2V4U062\Windows-PC:Start Menu DESKTOP-2V4U062\Windows-PC Start Menu\Programs DESKTOP-2V4U062\Windows-PC:Start Menu\Programs DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Accessibility DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Accessibility DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Accessories DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Accessories DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Administrative Tools DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Administrative Tools DESKTOP-2V4U062\Windows-PC Start Menu\Programs\ASIO4ALL v2 DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\ASIO4ALL v2 DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Discord Inc DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Discord Inc DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Hammer & Chisel, Inc DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Hammer & Chisel, Inc DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Image-Line DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Image-Line DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Internet Download Manager DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Internet Download Manager DESKTOP-2V4U062\Windows-PC Start Menu\Programs\IrfanView DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\IrfanView DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Maintenance DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Maintenance DESKTOP-2V4U062\Windows-PC Start Menu\Programs\My.Com Games DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\My.Com Games DESKTOP-2V4U062\Windows-PC Start Menu\Programs\My.Com Games\Warface My.Com DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\My.Com Games\Warface My.Com DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Popcorn-Time DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Popcorn-Time DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Startup DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Startup DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Steam DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Steam DESKTOP-2V4U062\Windows-PC Start Menu\Programs\System Tools DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\System Tools DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Ubisoft DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Ubisoft DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Ubisoft\Uplay DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Ubisoft\Uplay DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Viber DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Viber DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Wargaming.net DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Wargaming.net DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Wargaming.net\Total War Arena EU DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Wargaming.net\Total War Arena EU DESKTOP-2V4U062\Windows-PC Start Menu\Programs\WiiU_USB_Helper DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\WiiU_USB_Helper DESKTOP-2V4U062\Windows-PC Start Menu\Programs\Windows PowerShell DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\Windows PowerShell DESKTOP-2V4U062\Windows-PC Start Menu\Programs\WinRAR DESKTOP-2V4U062\Windows-PC:Start Menu\Programs\WinRAR DESKTOP-2V4U062\Windows-PC [Startup Programs] Program Command User Name Location CCleaner Monitoring "c:\program files\ccleaner\ccleaner64.exe" /monitor DESKTOP-2V4U062\Windows-PC HKU\S-1-5-21-1748591284-2878715157-64300779-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run IDMan c:\program files (x86)\internet download manager\idman.exe /onboot DESKTOP-2V4U062\Windows-PC HKU\S-1-5-21-1748591284-2878715157-64300779-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run EADM "c:\program files (x86)\origin\origin.exe" -autostart DESKTOP-2V4U062\Windows-PC HKU\S-1-5-21-1748591284-2878715157-64300779-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run CCleaner "c:\program files\ccleaner\ccleaner64.exe" /auto DESKTOP-2V4U062\Windows-PC HKU\S-1-5-21-1748591284-2878715157-64300779-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run OneDrive "c:\users\stefa\appdata\local\microsoft\onedrive\onedrive.exe" /background DESKTOP-2V4U062\Windows-PC HKU\S-1-5-21-1748591284-2878715157-64300779-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run DAEMON Tools Lite Automount "c:\program files\daemon tools lite\dtagent.exe" -autorun DESKTOP-2V4U062\Windows-PC HKU\S-1-5-21-1748591284-2878715157-64300779-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run MicrosoftRuntime c:\users\stefa\appdata\roaming\libraries\microsoftruntimeupdate.vbe DESKTOP-2V4U062\Windows-PC HKU\S-1-5-21-1748591284-2878715157-64300779-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run GSTray c:\windows\installer\{0d61c3d2-370f-42a8-b6e7-cdc03e7c7224}\gstrayicon.exe nostartupupdate Public Common Startup SecurityHealth %programfiles%\windows defender\msascuil.exe Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run StartCN "c:\program files\amd\cnext\cnext\cnext.exe" atlogon Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run RTHDVCPL "c:\program files\realtek\audio\hda\ravcpl64.exe" -s Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run Logitech Download Assistant c:\windows\system32\rundll32.exe c:\windows\system32\logilda.dll,logifetch Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run AdobeGCInvoker-1.0 "c:\program files (x86)\common files\adobe\adobegcclient\agcinvokerutility.exe" Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [OLE Registration] Object Local Server WordPad Document "%programfiles%\windows nt\accessories\wordpad.exe" Paintbrush Picture %systemroot%\system32\mspaint.exe Drawing Not Available Drawing Not Available Package Not Available Microsoft PenInputPanel Control Not Available [Windows Error Reporting] Time Type Details 2/8/2018 4:01 AM Windows Error Reporting Fault bucket , type 0 Event Name: UTCCaptureV1 Response: Not available Cab Id: 0 Problem signature: P1: {7BEC789C-91A8-4245-BD5D-6A9DEBD6740E} P2: 1 P3: P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\WINDOWS\TEMP\DiagTrack_{7BEC789C-91A8-4245-BD5D-6A9DEBD6740E}_1D3A091698046FD\GetUIFContextFiles\{db4a40a7-997c-4596-9d63-a67e582762f4}\UIF_FeedbackItem.json \\?\C:\WINDOWS\TEMP\DiagTrack_{7BEC789C-91A8-4245-BD5D-6A9DEBD6740E}_1D3A091698046FD\GetUIFContextFiles\{db4a40a7-997c-4596-9d63-a67e582762f4}\UIF_SubmissionId.txt \\?\C:\WINDOWS\TEMP\DiagTrack_{7BEC789C-91A8-4245-BD5D-6A9DEBD6740E}_1D3A091698046FD\scenario_data.xml \\?\C:\WINDOWS\TEMP\DiagTrack_{7BEC789C-91A8-4245-BD5D-6A9DEBD6740E}_1D3A091698046FD\summary.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAD56.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB091.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB120.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_{7BEC789C-91A8-4_d33b90c55ca6487a50d4e48835e03979dc5daa36_00000000_cab_1a83dfaf Analysis symbol: Rechecking for solution: 0 Report Id: 2950B3A0-6F1E-4004-B67E-6C13881006D7 Report Status: 4 Hashed bucket: 2/8/2018 4:01 AM Windows Error Reporting Fault bucket , type 0 Event Name: UTCCaptureV1 Response: Not available Cab Id: 0 Problem signature: P1: {2E4B8531-7F5E-4AC7-8A04-7B88807155A6} P2: 1 P3: P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D3A09168F6B817\GetUIFContextFiles\{e9c4d3a3-c5b3-4500-81d6-73a12d4ce129}\431232.jpg \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D3A09168F6B817\GetUIFContextFiles\{e9c4d3a3-c5b3-4500-81d6-73a12d4ce129}\UIF_FeedbackItem.json \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D3A09168F6B817\GetUIFContextFiles\{e9c4d3a3-c5b3-4500-81d6-73a12d4ce129}\UIF_SubmissionId.txt \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D3A09168F6B817\scenario_data.xml \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D3A09168F6B817\summary.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAD86.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB090.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB10F.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_{2E4B8531-7F5E-4_13702a6ec29b9325499877f444746b19ab2540_00000000_cab_1a83df80 Analysis symbol: Rechecking for solution: 0 Report Id: 952D5C7E-F549-43C5-8690-B86775C91405 Report Status: 4 Hashed bucket: 2/7/2018 2:24 PM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: Skype.exe P2: 7.40.0.151 P3: 59d776d0 P4: 404c P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_Skype.exe_9aed3ac4212f9ef717bc6de2f6f6dbdccd9c74_43515ae7_14a36ff3 Analysis symbol: Rechecking for solution: 0 Report Id: d724317e-13a9-4147-887a-67212a06f744 Report Status: 4 Hashed bucket: 2/7/2018 2:23 PM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: Viber.exe P2: 8.0.0.4 P3: 5a70639a P4: fb3c P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_Viber.exe_aa3e74d32a2f97f64c78af3e3e168bc6c3f85fc_72de37b8_38ab5eae Analysis symbol: Rechecking for solution: 0 Report Id: 3463d599-082b-476e-9539-24d1bd054116 Report Status: 4 Hashed bucket: 2/7/2018 2:20 PM Windows Error Reporting Fault bucket , type 0 Event Name: UTCCaptureV1 Response: Not available Cab Id: 0 Problem signature: P1: {2E4B8531-7F5E-4AC7-8A04-7B88807155A6} P2: 1 P3: P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D3A01ECE76A40D\GetUIFContextFiles\{68a0bd65-5403-4913-aa08-91f728807867}\How-To-Fix-Call-of-Duty-WW2-Error-Code-51.jpg \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D3A01ECE76A40D\GetUIFContextFiles\{68a0bd65-5403-4913-aa08-91f728807867}\UIF_FeedbackItem.json \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D3A01ECE76A40D\GetUIFContextFiles\{68a0bd65-5403-4913-aa08-91f728807867}\UIF_SubmissionId.txt \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D3A01ECE76A40D\scenario_data.xml \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D3A01ECE76A40D\summary.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER373F.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER37CB.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER382A.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_{2E4B8531-7F5E-4_13702a6ec29b9325499877f444746b19ab2540_00000000_cab_05ec3848 Analysis symbol: Rechecking for solution: 0 Report Id: 26F8EF11-9D3B-42D9-AF79-07308A46670F Report Status: 4 Hashed bucket: 2/7/2018 6:47 AM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Corporation.VideoPlaybackDiagnostic.3.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_d6bd701e874fce436b169b5c8b76bb56fcbde7_00000000_21e99fee Analysis symbol: Rechecking for solution: 0 Report Id: 6e16d795-dbca-443d-89b6-b84775051bcd Report Status: 4 Hashed bucket: 2/5/2018 11:42 PM Windows Error Reporting Fault bucket , type 0 Event Name: UTCCaptureV1 Response: Not available Cab Id: 0 Problem signature: P1: {2E4B8531-7F5E-4AC7-8A04-7B88807155A6} P2: 1 P3: P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39EDAF7528B89\GetUIFContextFiles\{68a0bd65-5403-4913-aa08-91f728807867}\Call of Duty_ WWII1.jpg \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39EDAF7528B89\GetUIFContextFiles\{68a0bd65-5403-4913-aa08-91f728807867}\UIF_FeedbackItem.json \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39EDAF7528B89\GetUIFContextFiles\{68a0bd65-5403-4913-aa08-91f728807867}\UIF_SubmissionId.txt \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39EDAF7528B89\scenario_data.xml \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39EDAF7528B89\summary.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCC60.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCE06.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCE55.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_{2E4B8531-7F5E-4_13702a6ec29b9325499877f444746b19ab2540_00000000_cab_0db9d0f4 Analysis symbol: Rechecking for solution: 0 Report Id: 96CBDE82-1311-4FE5-8DFD-37FA1BD77295 Report Status: 4 Hashed bucket: 2/4/2018 9:13 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_0fd76e62 Analysis symbol: Rechecking for solution: 0 Report Id: d46097a9-8189-4e1e-8f1e-246a04b93d2e Report Status: 4 Hashed bucket: 2/4/2018 7:50 PM Windows Error Reporting Fault bucket , type 0 Event Name: LiveKernelEvent Response: Not available Cab Id: 0 Problem signature: P1: 141 P2: ffffcc036aa8d010 P3: fffff80d4f70cf38 P4: 0 P5: 1d1c P6: 10_0_16299 P7: 0_0 P8: 256_1 P9: P10: Attached files: \\?\C:\WINDOWS\LiveKernelReports\WATCHDOG\WATCHDOG-20180204-2049.dmp \\?\C:\WINDOWS\TEMP\WER-679734-0.sysdata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER27F5.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER2823.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER2863.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_141_212e85c9b6c18cf507babc284aa67818dd9acd5_00000000_0c472bdd Analysis symbol: Rechecking for solution: 0 Report Id: d7e9a541-3347-4bc9-8986-e179ccbdee67 Report Status: 4 Hashed bucket: 2/3/2018 6:54 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_3472a3a5 Analysis symbol: Rechecking for solution: 0 Report Id: 8c4597be-b655-4b7f-8af0-7db821ce9d29 Report Status: 4 Hashed bucket: 2/2/2018 11:48 AM Windows Error Reporting Fault bucket , type 0 Event Name: StartupRepairOnline Response: Not available Cab Id: 0 Problem signature: P1: 10.0.16299.15 P2: 10.0.16299.15 P3: MICRO-STAR INTERNATIONAL CO.,LTD P4: 21198128 P5: 0 P6: AutoFailover P7: 2 P8: CorruptVolume P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_10.0.16299.15_4fd44cf59f9dd3631dcaaa8b2b4fe4a10966723_00000000_11ae138e Analysis symbol: Rechecking for solution: 0 Report Id: fd9cf66f-e191-4029-941c-105a34ad082e Report Status: 100 Hashed bucket: 1/31/2018 10:00 PM Windows Error Reporting Fault bucket , type 0 Event Name: UTCCaptureV1 Response: Not available Cab Id: 0 Problem signature: P1: {2E4B8531-7F5E-4AC7-8A04-7B88807155A6} P2: 1 P3: P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39ADED5155C06\GetUIFContextFiles\{d12b9d38-4f92-49be-975e-e61c00524675}\3.jpg \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39ADED5155C06\GetUIFContextFiles\{d12b9d38-4f92-49be-975e-e61c00524675}\UIF_FeedbackItem.json \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39ADED5155C06\GetUIFContextFiles\{d12b9d38-4f92-49be-975e-e61c00524675}\UIF_SubmissionId.txt \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39ADED5155C06\scenario_data.xml \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39ADED5155C06\summary.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB588.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERC1AB.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCE7E.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_{2E4B8531-7F5E-4_13702a6ec29b9325499877f444746b19ab2540_00000000_cab_1f630eb1 Analysis symbol: Rechecking for solution: 0 Report Id: 57DD5C23-DBC7-4AA7-A257-DAB5EDEF093C Report Status: 4 Hashed bucket: 1/31/2018 10:00 PM Windows Error Reporting Fault bucket , type 0 Event Name: UTCCaptureV1 Response: Not available Cab Id: 0 Problem signature: P1: {7BEC789C-91A8-4245-BD5D-6A9DEBD6740E} P2: 1 P3: P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\WINDOWS\TEMP\DiagTrack_{7BEC789C-91A8-4245-BD5D-6A9DEBD6740E}_1D39ADED56A59DB\GetUIFContextFiles\{a15732de-f088-4e0d-a948-dc9a134487ea}\UIF_FeedbackItem.json \\?\C:\WINDOWS\TEMP\DiagTrack_{7BEC789C-91A8-4245-BD5D-6A9DEBD6740E}_1D39ADED56A59DB\GetUIFContextFiles\{a15732de-f088-4e0d-a948-dc9a134487ea}\UIF_SubmissionId.txt \\?\C:\WINDOWS\TEMP\DiagTrack_{7BEC789C-91A8-4245-BD5D-6A9DEBD6740E}_1D39ADED56A59DB\scenario_data.xml \\?\C:\WINDOWS\TEMP\DiagTrack_{7BEC789C-91A8-4245-BD5D-6A9DEBD6740E}_1D39ADED56A59DB\summary.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB19F.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERC15C.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCE6E.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_{7BEC789C-91A8-4_d33b90c55ca6487a50d4e48835e03979dc5daa36_00000000_cab_1f630eb1 Analysis symbol: Rechecking for solution: 0 Report Id: B4562B80-6713-4406-A4E8-99966B96F832 Report Status: 4 Hashed bucket: 1/30/2018 11:17 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Corporation.AppsDiagnostic.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_b1d126975ff3fb3419a7403941a86365abd0812d_00000000_3817a123 Analysis symbol: Rechecking for solution: 0 Report Id: e4d884e1-330b-4cf8-b436-096582c508b3 Report Status: 4 Hashed bucket: 1/30/2018 11:16 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Corporation.AppsDiagnostic.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_b1d126975ff3fb3419a7403941a86365abd0812d_00000000_06b60381 Analysis symbol: Rechecking for solution: 0 Report Id: 5b420df6-8252-4a76-8b9d-c3ad670c1602 Report Status: 4 Hashed bucket: 1/30/2018 11:14 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Corporation.AppsDiagnostic.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_b1d126975ff3fb3419a7403941a86365abd0812d_00000000_242cc6da Analysis symbol: Rechecking for solution: 0 Report Id: 9851ce83-5f00-4a5d-99ad-aba161238b51 Report Status: 4 Hashed bucket: 1/30/2018 11:11 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Corporation.AppsDiagnostic.4.0 P2: RC_WSReset/DefaultInstanceId P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_2486b7538419628f5ac4128c77d2f73f6998f3b8_00000000_18f21f1b Analysis symbol: Rechecking for solution: 0 Report Id: 1c84bd05-65da-48be-a0e4-2f0ae2debac0 Report Status: 4 Hashed bucket: 1/30/2018 2:02 PM Windows Error Reporting Fault bucket , type 0 Event Name: UTCCaptureV1 Response: Not available Cab Id: 0 Problem signature: P1: {2E4B8531-7F5E-4AC7-8A04-7B88807155A6} P2: 1 P3: P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D399D2FCD0C72D\GetUIFContextFiles\{2ccda7b2-95a8-471b-a442-045338fff330}\3.jpg \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D399D2FCD0C72D\GetUIFContextFiles\{2ccda7b2-95a8-471b-a442-045338fff330}\UIF_FeedbackItem.json \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D399D2FCD0C72D\GetUIFContextFiles\{2ccda7b2-95a8-471b-a442-045338fff330}\UIF_SubmissionId.txt \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D399D2FCD0C72D\scenario_data.xml \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D399D2FCD0C72D\summary.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4792.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER484C.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER48AB.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_{2E4B8531-7F5E-4_13702a6ec29b9325499877f444746b19ab2540_00000000_cab_064749a4 Analysis symbol: Rechecking for solution: 0 Report Id: 23A04AD1-36C4-4854-84F4-18ED25ED6489 Report Status: 4 Hashed bucket: 1/30/2018 10:12 AM Windows Error Reporting Fault bucket , type 0 Event Name: UTCCaptureV1 Response: Not available Cab Id: 0 Problem signature: P1: {2E4B8531-7F5E-4AC7-8A04-7B88807155A6} P2: 1 P3: P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D399B2DEF69BB7\GetUIFContextFiles\{2ccda7b2-95a8-471b-a442-045338fff330}\3.jpg \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D399B2DEF69BB7\GetUIFContextFiles\{2ccda7b2-95a8-471b-a442-045338fff330}\UIF_FeedbackItem.json \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D399B2DEF69BB7\GetUIFContextFiles\{2ccda7b2-95a8-471b-a442-045338fff330}\UIF_SubmissionId.txt \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D399B2DEF69BB7\scenario_data.xml \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D399B2DEF69BB7\summary.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCE38.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCF32.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCF71.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_{2E4B8531-7F5E-4_13702a6ec29b9325499877f444746b19ab2540_00000000_cab_07b4d210 Analysis symbol: Rechecking for solution: 0 Report Id: 1301BCA7-B4D4-4819-96C6-7ABAA493E45E Report Status: 4 Hashed bucket: 1/28/2018 10:05 AM Windows Error Reporting Fault bucket 1657292673762361426, type 5 Event Name: BEX Response: Not available Cab Id: 0 Problem signature: P1: AIMP.exe P2: 4.5.0.2058 P3: 5a437e2b P4: aimp_lastfm.dll_unloaded P5: 4.5.0.2058 P6: 5a437e59 P7: 0001235a P8: c0000005 P9: 00000008 P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERE662.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREC7E.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREC9B.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERECEA.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_AIMP.exe_5f8f112b9966e6a6fff891f8fae6dae34111_f9abf6bb_059cff75 Analysis symbol: Rechecking for solution: 0 Report Id: a93fee27-66ac-4e4f-a7bf-7e3056c31f14 Report Status: 268435456 Hashed bucket: 1e52bfd919462acbf6ffe2e7f4768052 1/28/2018 10:05 AM Windows Error Reporting Fault bucket 1748430898361332192, type 1 Event Name: APPCRASH Response: Not available Cab Id: 0 Problem signature: P1: AIMP.exe P2: 4.5.0.2058 P3: 5a437e2b P4: aimp_lastfm.dll_unloaded P5: 4.5.0.2058 P6: 5a437e59 P7: c00001a5 P8: 000124fe P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERBBE7.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERC6C6.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERC6E1.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERC740.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_AIMP.exe_21415f323e2f233e77a483c6d91da8ce363fbf_f9abf6bb_29ccd3c2 Analysis symbol: Rechecking for solution: 0 Report Id: e5cb192d-af7d-49f2-931b-d53e8e50177e Report Status: 268435456 Hashed bucket: 400e1d9a8df5b392f843aca37324f1e0 1/27/2018 7:01 PM Windows Error Reporting Fault bucket 109224830663, type 1 Event Name: APPCRASH Response: Not available Cab Id: 0 Problem signature: P1: mbam.exe P2: 3.0.0.1247 P3: 59f37972 P4: Qt5Core.dll P5: 5.6.2.0 P6: 59a63e00 P7: c0000005 P8: 001aa3b6 P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER18FC.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1CC6.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1D01.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1E1B.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_mbam.exe_fccbe83e2a6114b36f9aaef2cceb1877433bb7_4c579df2_1acd378e Analysis symbol: Rechecking for solution: 0 Report Id: 4d14f7b4-d4fd-4ca1-80ec-6b9f1fd79e35 Report Status: 268435456 Hashed bucket: 57a2b22e565380b74029b5942f106fa7 1/27/2018 6:57 PM Windows Error Reporting Fault bucket , type 0 Event Name: APPCRASH Response: Not available Cab Id: 0 Problem signature: P1: WerFault.exe P2: 10.0.16299.15 P3: f685e7da P4: KERNELBASE.dll P5: 10.0.16299.15 P6: 2cd1ce3d P7: 80070006 P8: 001008b2 P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_WerFault.exe_36459bde184825432de7cbc58bc0a1bfb4cef0_229d414e_1fc550e6 Analysis symbol: Rechecking for solution: 0 Report Id: 2fc00819-d99b-4b2a-81cd-a78699aa148c Report Status: 131076 Hashed bucket: 1/27/2018 5:43 PM Windows Error Reporting Fault bucket , type 0 Event Name: BEX64 Response: Not available Cab Id: 0 Problem signature: P1: mbamservice.exe P2: 3.1.0.595 P3: 59f745cb P4: MwacLib.dll_unloaded P5: 3.0.0.289 P6: 5a1c433c P7: 000000000001588f P8: c0000005 P9: 0000000000000008 P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_mbamservice.exe_8c29e21621b7d9cc97ccba82d391c5980818262_080664ac_0d9f7829 Analysis symbol: Rechecking for solution: 0 Report Id: 9cb12b4d-10be-45d6-aee6-05079b33f694 Report Status: 4 Hashed bucket: 1/27/2018 5:34 PM Windows Error Reporting Fault bucket 1281470859219505412, type 1 Event Name: APPCRASH Response: Not available Cab Id: 0 Problem signature: P1: mbamtray.exe P2: 3.0.0.1284 P3: 5a15a98e P4: Qt5Core.dll P5: 5.6.2.0 P6: 59a63e00 P7: c0000005 P8: 001aa3b6 P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB510.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERBD8D.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERBDC9.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERBDF9.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_mbamtray.exe_f392cf25706e64b39e6ee437e971d7e9e2f2ed_8f9fed09_190ece53 Analysis symbol: Rechecking for solution: 0 Report Id: c6ca5c8c-0bb1-457c-8f99-4ee859ac2253 Report Status: 268435456 Hashed bucket: b23bc6953dd47c0c31c8b2f4f9cb1104 1/27/2018 5:21 PM Windows Error Reporting Fault bucket , type 0 Event Name: BEX64 Response: Not available Cab Id: 0 Problem signature: P1: mbamservice.exe P2: 3.1.0.595 P3: 59f745cb P4: MwacLib.dll_unloaded P5: 3.0.0.289 P6: 5a1c433c P7: 0000000000015854 P8: c0000005 P9: 0000000000000008 P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_mbamservice.exe_97d4b611752996ffea7601dd48512539392162_080664ac_161303f4 Analysis symbol: Rechecking for solution: 0 Report Id: ce22898c-85eb-4707-a0cb-0c8e41f92aad Report Status: 4 Hashed bucket: 1/25/2018 4:49 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_0fbfabad Analysis symbol: Rechecking for solution: 0 Report Id: 56d7a836-2dee-41a8-a2ce-e95121f191f3 Report Status: 4 Hashed bucket: 1/25/2018 4:29 PM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: 2512 P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_CoD_SP.exe_c3babafa6acb2e2f177bd9d78db8180a8d851e_5c2ed3a1_224903bc Analysis symbol: Rechecking for solution: 0 Report Id: ff94f13d-a9b8-49ce-ad3d-b617d64578c2 Report Status: 4 Hashed bucket: 1/25/2018 4:25 PM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: 2512 P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_CoD_SP.exe_c3babafa6acb2e2f177bd9d78db8180a8d851e_5c2ed3a1_1c7a2116 Analysis symbol: Rechecking for solution: 0 Report Id: ad569286-d499-4652-8148-ff5095ad9700 Report Status: 4 Hashed bucket: 1/25/2018 2:37 PM Windows Error Reporting Fault bucket 133551253419, type 5 Event Name: MoAppCrash Response: Not available Cab Id: 0 Problem signature: P1: Facebook.InstagramBeta_10.1096.22724.0_x86__8xx8rvfyw5nnt P2: praid:App P3: 0.0.0.0 P4: 59b966c7 P5: atidxx32.dll P6: 8.17.10.648 P7: 56d0afcb P8: c0000005 P9: 005af79c P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERD2D9.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF6CE.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF6EB.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF71B.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Facebook.Instagr_669f64afceb7863751238afef5a16a842548f531_2206c0db_26fb03fb Analysis symbol: Rechecking for solution: 0 Report Id: c83d84c0-af0e-4d81-a655-7f8828c12d6c Report Status: 268435456 Hashed bucket: e1d7ce2b1335a631d6de36b95a37613e 1/24/2018 12:26 AM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: 2512 P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_CoD_SP.exe_c3babafa6acb2e2f177bd9d78db8180a8d851e_5c2ed3a1_274e15a7 Analysis symbol: Rechecking for solution: 0 Report Id: 7d1618ef-0173-49cc-ac72-9530d5f3d29b Report Status: 4 Hashed bucket: 1/24/2018 12:24 AM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: 2512 P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_CoD_SP.exe_c3babafa6acb2e2f177bd9d78db8180a8d851e_5c2ed3a1_23c06f79 Analysis symbol: Rechecking for solution: 0 Report Id: e3522d59-3eaa-44cc-a6fa-8e08566f32de Report Status: 4 Hashed bucket: 1/24/2018 12:21 AM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: b27a P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_CoD_SP.exe_2f93cc516baa0cbb229ce9a564cfef0da5c60ba_5c2ed3a1_144d15ce Analysis symbol: Rechecking for solution: 0 Report Id: 5793b4a0-e541-4e67-8f4c-6f84431557fc Report Status: 4 Hashed bucket: 1/24/2018 12:15 AM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: 2512 P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_CoD_SP.exe_c3babafa6acb2e2f177bd9d78db8180a8d851e_5c2ed3a1_2f275ecb Analysis symbol: Rechecking for solution: 0 Report Id: 6b3bc6b2-697b-4eba-8f24-e17345aa14bd Report Status: 4 Hashed bucket: 1/24/2018 12:13 AM Windows Error Reporting Fault bucket 120866814262, type 4 Event Name: APPCRASH Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: CoD_SP.exe P5: 1.3.0.15989 P6: 59f8c260 P7: 80000003 P8: 00000000004ba61e P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7A4C.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB96A.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB989.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB9D8.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_CoD_SP.exe_95e2d6389d78259ae48d74cfb181a22a89f6d4f_5c2ed3a1_0a19d107 Analysis symbol: Rechecking for solution: 0 Report Id: a51c296b-1a5b-4634-b243-450ed432e8cc Report Status: 268435456 Hashed bucket: 5847d07735766f7c86b8435bd1979587 1/24/2018 12:12 AM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: 2512 P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_CoD_SP.exe_c3babafa6acb2e2f177bd9d78db8180a8d851e_5c2ed3a1_041cb4e8 Analysis symbol: Rechecking for solution: 0 Report Id: a6592fdf-fa6a-4875-86d0-6020cea8010e Report Status: 4 Hashed bucket: 1/24/2018 12:05 AM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: 2512 P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_CoD_SP.exe_c3babafa6acb2e2f177bd9d78db8180a8d851e_5c2ed3a1_0d7aa853 Analysis symbol: Rechecking for solution: 0 Report Id: 0507fa50-3da5-46f8-9bf5-a10111bdb197 Report Status: 4 Hashed bucket: 1/24/2018 12:02 AM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: 2512 P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_CoD_SP.exe_c3babafa6acb2e2f177bd9d78db8180a8d851e_5c2ed3a1_2abbad33 Analysis symbol: Rechecking for solution: 0 Report Id: c28a675e-06ba-4880-a748-28283ef12115 Report Status: 4 Hashed bucket: 1/23/2018 11:59 PM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: 2512 P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_CoD_SP.exe_c3babafa6acb2e2f177bd9d78db8180a8d851e_5c2ed3a1_0fe523f8 Analysis symbol: Rechecking for solution: 0 Report Id: fe1d3ec2-4415-40b5-a7a7-bb03c11d0022 Report Status: 4 Hashed bucket: 1/23/2018 11:56 PM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: 2512 P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_CoD_SP.exe_c3babafa6acb2e2f177bd9d78db8180a8d851e_5c2ed3a1_160e49fd Analysis symbol: Rechecking for solution: 0 Report Id: f4b8bd37-ccfb-488d-a5ed-400ff02910a2 Report Status: 4 Hashed bucket: 1/23/2018 11:21 PM Windows Error Reporting Fault bucket 73043273733, type 1 Event Name: APPCRASH Response: Not available Cab Id: 0 Problem signature: P1: setup.tmp P2: 51.1052.0.0 P3: 506a75b5 P4: botva2.dll_unloaded P5: 0.9.7.151 P6: 2a425e19 P7: c000041d P8: 00005514 P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER666A.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6FA4.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6FB3.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6FE3.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_setup.tmp_fd88719faaefde27fb1191884ac811396ed13ebc_6931070c_2462784c Analysis symbol: Rechecking for solution: 0 Report Id: 45eef2b2-9fdf-4a62-8733-9e16577bf0dc Report Status: 268435456 Hashed bucket: e1f31ef26865f1649e9ea02808d850b6 1/23/2018 11:21 PM Windows Error Reporting Fault bucket 81635134371, type 5 Event Name: BEX Response: Not available Cab Id: 0 Problem signature: P1: setup.tmp P2: 51.1052.0.0 P3: 506a75b5 P4: botva2.dll_unloaded P5: 0.9.7.151 P6: 2a425e19 P7: 00005514 P8: c0000005 P9: 00000008 P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER41AC.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4DB4.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4DE1.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4E30.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_setup.tmp_9bbc17a9196b45e2251b93a8d9d5e28f8f814f_6931070c_2faa5b7d Analysis symbol: Rechecking for solution: 0 Report Id: 2d56a8ba-a0e4-4fc5-9c41-1cf7ba461533 Report Status: 268435456 Hashed bucket: 30fc8f9f5a4c3c64b0e1e205fbc2df75 1/23/2018 7:53 PM Windows Error Reporting Fault bucket , type 0 Event Name: UTCCaptureV1 Response: Not available Cab Id: 0 Problem signature: P1: {BEF8798F-26DE-46A2-A469-0E0676567947} P2: 1 P3: P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\WINDOWS\TEMP\DiagTrack_{BEF8798F-26DE-46A2-A469-0E0676567947}_1D39483BD5CA386\Get Explorer Registry Settings\regkeyquery.xml \\?\C:\WINDOWS\TEMP\DiagTrack_{BEF8798F-26DE-46A2-A469-0E0676567947}_1D39483BD5CA386\GetExplorerDump\processdump_4848.dmp \\?\C:\WINDOWS\TEMP\DiagTrack_{BEF8798F-26DE-46A2-A469-0E0676567947}_1D39483BD5CA386\GetUIFContextFiles\{d0149378-8121-46d3-9e95-1bc8bd01eee7}\UIF_FeedbackItem.json \\?\C:\WINDOWS\TEMP\DiagTrack_{BEF8798F-26DE-46A2-A469-0E0676567947}_1D39483BD5CA386\GetUIFContextFiles\{d0149378-8121-46d3-9e95-1bc8bd01eee7}\UIF_SubmissionId.txt \\?\C:\WINDOWS\TEMP\DiagTrack_{BEF8798F-26DE-46A2-A469-0E0676567947}_1D39483BD5CA386\scenario_data.xml \\?\C:\WINDOWS\TEMP\DiagTrack_{BEF8798F-26DE-46A2-A469-0E0676567947}_1D39483BD5CA386\summary.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB2F7.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB328.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB367.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_{BEF8798F-26DE-4_68276479c224c093c1a1f47675d76281926fb5c_00000000_cab_0e8bb372 Analysis symbol: Rechecking for solution: 0 Report Id: 98BEE0EB-AF67-41B8-89FE-97F964E60C1E Report Status: 4 Hashed bucket: 1/23/2018 7:53 PM Windows Error Reporting Fault bucket , type 0 Event Name: UTCCaptureV1 Response: Not available Cab Id: 0 Problem signature: P1: {2E4B8531-7F5E-4AC7-8A04-7B88807155A6} P2: 1 P3: P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39483BD33E5CA\GetUIFContextFiles\{04735dcb-b799-45ee-8c5a-f047f575ec47}\3.jpg \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39483BD33E5CA\GetUIFContextFiles\{04735dcb-b799-45ee-8c5a-f047f575ec47}\UIF_FeedbackItem.json \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39483BD33E5CA\GetUIFContextFiles\{04735dcb-b799-45ee-8c5a-f047f575ec47}\UIF_SubmissionId.txt \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39483BD33E5CA\scenario_data.xml \\?\C:\WINDOWS\TEMP\DiagTrack_{2E4B8531-7F5E-4AC7-8A04-7B88807155A6}_1D39483BD33E5CA\summary.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER34FB.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER37AC.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3A7C.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_{2E4B8531-7F5E-4_13702a6ec29b9325499877f444746b19ab2540_00000000_cab_0e8b6d22 Analysis symbol: Rechecking for solution: 0 Report Id: 30281847-B86D-44BD-AA2A-B71C120A2314 Report Status: 4 Hashed bucket: 1/23/2018 7:53 PM Windows Error Reporting Fault bucket , type 0 Event Name: UTCCaptureV1 Response: Not available Cab Id: 0 Problem signature: P1: {7BEC789C-91A8-4245-BD5D-6A9DEBD6740E} P2: 1 P3: P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\WINDOWS\TEMP\DiagTrack_{7BEC789C-91A8-4245-BD5D-6A9DEBD6740E}_1D39483BD78DE0D\GetUIFContextFiles\{8e385447-3ee6-4559-8c17-d1c61bca2807}\UIF_FeedbackItem.json \\?\C:\WINDOWS\TEMP\DiagTrack_{7BEC789C-91A8-4245-BD5D-6A9DEBD6740E}_1D39483BD78DE0D\GetUIFContextFiles\{8e385447-3ee6-4559-8c17-d1c61bca2807}\UIF_SubmissionId.txt \\?\C:\WINDOWS\TEMP\DiagTrack_{7BEC789C-91A8-4245-BD5D-6A9DEBD6740E}_1D39483BD78DE0D\scenario_data.xml \\?\C:\WINDOWS\TEMP\DiagTrack_{7BEC789C-91A8-4245-BD5D-6A9DEBD6740E}_1D39483BD78DE0D\summary.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER34FC.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER378B.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3A6C.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_{7BEC789C-91A8-4_d33b90c55ca6487a50d4e48835e03979dc5daa36_00000000_cab_0e8b6d70 Analysis symbol: Rechecking for solution: 0 Report Id: A4560F72-45B2-40D4-8A85-35BB8BFF1F9C Report Status: 4 Hashed bucket: 1/23/2018 12:01 AM Windows Error Reporting Fault bucket 81635134371, type 5 Event Name: BEX Response: Not available Cab Id: 0 Problem signature: P1: setup.tmp P2: 51.1052.0.0 P3: 506a75b5 P4: botva2.dll_unloaded P5: 0.9.7.151 P6: 2a425e19 P7: 00005514 P8: c0000005 P9: 00000008 P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER24CE.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF119.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF136.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF185.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_setup.tmp_9bbc17a9196b45e2251b93a8d9d5e28f8f814f_6931070c_277c467a Analysis symbol: Rechecking for solution: 0 Report Id: eecf711a-ee52-452b-9a75-aaffc7f20c7f Report Status: 268435456 Hashed bucket: 30fc8f9f5a4c3c64b0e1e205fbc2df75 1/22/2018 10:34 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Corporation.AppsDiagnostic.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_b1d126975ff3fb3419a7403941a86365abd0812d_00000000_273517c9 Analysis symbol: Rechecking for solution: 0 Report Id: 4c4d7bed-0611-4454-8e66-8a3ba49a1f95 Report Status: 4 Hashed bucket: 1/22/2018 10:33 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_077feab3 Analysis symbol: Rechecking for solution: 0 Report Id: 54c0a4b4-c530-49c6-b0fb-a71e99e3dbb0 Report Status: 4 Hashed bucket: 1/22/2018 10:30 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Corporation.AppsDiagnostic.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_b1d126975ff3fb3419a7403941a86365abd0812d_00000000_0d11059c Analysis symbol: Rechecking for solution: 0 Report Id: 7c4c5232-181e-4885-9816-3d24beb2bd1e Report Status: 4 Hashed bucket: 1/22/2018 10:28 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Corporation.AppsDiagnostic.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_b1d126975ff3fb3419a7403941a86365abd0812d_00000000_2073a0dc Analysis symbol: Rechecking for solution: 0 Report Id: 112d6ff4-1f73-402a-a8ea-61355b3991d6 Report Status: 4 Hashed bucket: 1/22/2018 10:26 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Corporation.AppsDiagnostic.4.0 P2: RC_WSReset/DefaultInstanceId P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_2486b7538419628f5ac4128c77d2f73f6998f3b8_00000000_1321a616 Analysis symbol: Rechecking for solution: 0 Report Id: 9fd06ec3-45ec-481a-8f10-5e02f40ea742 Report Status: 4 Hashed bucket: 1/22/2018 10:16 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Corporation.WindowsUpdateDiagnostic.9.3 P2: RC_DataStore/DefaultInstanceId P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_937f9604e7988eea0d1bb4d905110239771ee_00000000_10904276 Analysis symbol: Rechecking for solution: 0 Report Id: 1e07ce8e-cf07-4cd1-9164-fc53171acc63 Report Status: 4 Hashed bucket: 1/22/2018 8:25 PM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: 2512 P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_CoD_SP.exe_c3babafa6acb2e2f177bd9d78db8180a8d851e_5c2ed3a1_0e0af7ad Analysis symbol: Rechecking for solution: 0 Report Id: a771a168-ad3c-458e-a991-163b2209cc23 Report Status: 4 Hashed bucket: 1/22/2018 8:21 PM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: CoD_SP.exe P2: 1.3.0.15989 P3: 59f8c260 P4: 2512 P5: 67246080 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_CoD_SP.exe_c3babafa6acb2e2f177bd9d78db8180a8d851e_5c2ed3a1_05076b0b Analysis symbol: Rechecking for solution: 0 Report Id: eef06523-6241-4376-aec4-bbf57197a81f Report Status: 4 Hashed bucket: 1/22/2018 12:22 PM Windows Error Reporting Fault bucket , type 0 Event Name: MpTelemetry Response: Not available Cab Id: 0 Problem signature: P1: Windows Defender Antivirus (77BDAF73-B396-481F-9042-AD358843EC24) P2: 4.12.17007.18011 P3: TimeOut P4: 1.1.14500.5 P5: fixed P6: 2 / 2049+ P7: 5 / not boot P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Windows Defender_322b7069f8b9418891e7844a92627cba5d5945_00000000_1ea995f6 Analysis symbol: Rechecking for solution: 0 Report Id: 37f9ff9f-bc24-42ac-bbaf-4c3b6dd4547f Report Status: 4 Hashed bucket: 1/21/2018 9:08 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_07e056a2 Analysis symbol: Rechecking for solution: 0 Report Id: 64fa1c99-0593-4ec5-b93b-21da0fca4bea Report Status: 4 Hashed bucket: 1/21/2018 9:05 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: 3679385037 P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_66315be9385613139fb26d07921b5431b977ae8_00000000_01220938 Analysis symbol: Rechecking for solution: 0 Report Id: be2bf099-46b9-440b-9348-b1a5b3e6fbb9 Report Status: 4 Hashed bucket: 1/19/2018 11:03 PM Windows Error Reporting Fault bucket 2220925631307130302, type 5 Event Name: CLR20r3 Response: Not available Cab Id: 0 Problem signature: P1: DriverEasy.exe P2: 5.6.0.0 P3: 5a5c9627 P4: DriverEasy P5: 5.6.0.0 P6: 5a5c9627 P7: b2b P8: 0 P9: System.MissingMethodException P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB1B.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERE0B.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERE19.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERE49.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_DriverEasy.exe_85cfdb46ff8be08883d8c8e338cb6ba33164939_cb4e0a07_2651155a Analysis symbol: Rechecking for solution: 0 Report Id: f6abf474-6fc7-4adf-82e1-e42a7953e833 Report Status: 268435456 Hashed bucket: d7f5070aea0b7d76eed250183e9f25be 1/19/2018 11:03 PM Windows Error Reporting Fault bucket 2220925631307130302, type 5 Event Name: CLR20r3 Response: Not available Cab Id: 0 Problem signature: P1: DriverEasy.exe P2: 5.6.0.0 P3: 5a5c9627 P4: DriverEasy P5: 5.6.0.0 P6: 5a5c9627 P7: b2b P8: 0 P9: System.MissingMethodException P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7FA4.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8AC2.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8ACE.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8AFD.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_DriverEasy.exe_85cfdb46ff8be08883d8c8e338cb6ba33164939_cb4e0a07_065496c4 Analysis symbol: Rechecking for solution: 0 Report Id: a4a68ec1-746d-4c80-903f-b3ba68532e2a Report Status: 268435456 Hashed bucket: d7f5070aea0b7d76eed250183e9f25be 1/19/2018 9:35 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_16d451d1 Analysis symbol: Rechecking for solution: 0 Report Id: 314b7d5e-db97-4429-ab81-e3b50bf5ebd1 Report Status: 4 Hashed bucket: 1/19/2018 9:34 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_27afe0c7 Analysis symbol: Rechecking for solution: 0 Report Id: d7dd9843-5c1c-4b67-810d-079dcd6fcf25 Report Status: 4 Hashed bucket: 1/19/2018 9:28 PM Windows Error Reporting Fault bucket , type 0 Event Name: WindowsUpdateFailure3 Response: Not available Cab Id: 0 Problem signature: P1: 10.0.16299.98 P2: 80070643 P3: 830E00AC-48E9-4FA3-8377-1D2CF14E7D81 P4: Install P5: 200 P6: 0 P7: 800705b4 P8: UpdateOrchestrator P9: {7971F918-A847-4430-9279-4A52D1EFE18D} P10: 0 Attached files: These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: 142b4da6-29db-470e-aef9-0b693e76766d Report Status: 1074003968 Hashed bucket: 1/19/2018 9:28 PM Windows Error Reporting Fault bucket , type 0 Event Name: WindowsUpdateFailure3 Response: Not available Cab Id: 0 Problem signature: P1: 10.0.16299.98 P2: 80070643 P3: 830E00AC-48E9-4FA3-8377-1D2CF14E7D81 P4: Install P5: 200 P6: 0 P7: 800705b4 P8: UpdateOrchestrator P9: {7971F918-A847-4430-9279-4A52D1EFE18D} P10: 0 Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_10.0.16299.98_20a6a39a867f04ed93feb5afb3f71440a8a73b_00000000_115e7757 Analysis symbol: Rechecking for solution: 0 Report Id: 142b4da6-29db-470e-aef9-0b693e76766d Report Status: 4 Hashed bucket: 1/19/2018 9:28 PM Windows Error Reporting Fault bucket 1670685759600464968, type 5 Event Name: MpTelemetry Response: Not available Cab Id: 0 Problem signature: P1: 0x800705b4 P2: ValidateUpdate P3: N/A P4: 1.1.14406.0 P5: mpsigstub.exe P6: 4.12.17007.18011 P7: Microsoft Windows Defender (RS1+) P8: P9: P10: Attached files: \\?\C:\WINDOWS\Temp\MpSigStub.log \\?\C:\WINDOWS\TEMP\MPTelemetrySubmit\client_manifest.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4904.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4B75.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4BC4.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_0x800705b4_8bce252642daf42e3b3dca674d552b173091a273_00000000_20925cda Analysis symbol: Rechecking for solution: 0 Report Id: 6e358358-f52e-4fda-9e79-77cbfca2e92e Report Status: 268435456 Hashed bucket: c57135e631d8121f272f77d8c04a1448 1/19/2018 4:12 PM Windows Error Reporting Fault bucket 2272932470119292591, type 1 Event Name: APPCRASH Response: Not available Cab Id: 0 Problem signature: P1: TanCefHost.exe P2: 1.0.28.488 P3: 5a16ae15 P4: libcef.dll P5: 3.2883.1553.0 P6: 588c3e00 P7: c0000005 P8: 003d5d6d P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8C9F.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER535C.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER53A6.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER53E6.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_TanCefHost.exe_4874b48db93350e9e9162874876fa4f91d4dcfa_503ecf35_1ee65d4b Analysis symbol: Rechecking for solution: 0 Report Id: b44ad893-fd70-41f8-a67d-52721ff778b7 Report Status: 268435456 Hashed bucket: b4d1b20524eabacfff8b1409ffe95eaf 1/18/2018 8:57 PM Windows Error Reporting Fault bucket 116454265874, type 5 Event Name: BEX64 Response: Not available Cab Id: 0 Problem signature: P1: Taskmgr.exe P2: 10.0.16299.15 P3: 635d4324 P4: Taskmgr.exe P5: 10.0.16299.15 P6: 635d4324 P7: 00000000000147d9 P8: c0000409 P9: 0000000000000003 P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER808B.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF37.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB010.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB0EC.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Taskmgr.exe_ec9653b6fca2da0808e5436fc036aeae5466f_3dafa3cd_2e37f96d Analysis symbol: Rechecking for solution: 0 Report Id: e0db596d-e3df-4179-bfc5-7121b91efc41 Report Status: 268435456 Hashed bucket: 7d421381f683a69fedf17595726b5b4b 1/16/2018 11:42 PM Windows Error Reporting Fault bucket , type 0 Event Name: MpTelemetry Response: Not available Cab Id: 0 Problem signature: P1: Windows Defender Antivirus (77BDAF73-B396-481F-9042-AD358843EC24) P2: 4.12.17007.17123 P3: TimeOut P4: 1.1.14405.2 P5: fixed P6: 2 / 2049+ P7: 5 / not boot P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Windows Defender_dbef85476b0d03deaf50b33712ad25334ac4d_00000000_0d95c6e0 Analysis symbol: Rechecking for solution: 0 Report Id: 24046b04-60f9-4617-98d9-62f72737f0d5 Report Status: 4 Hashed bucket: 1/16/2018 11:34 PM Windows Error Reporting Fault bucket , type 0 Event Name: MpTelemetry Response: Not available Cab Id: 0 Problem signature: P1: Windows Defender Antivirus (77BDAF73-B396-481F-9042-AD358843EC24) P2: 4.12.17007.17123 P3: TimeOut P4: 1.1.14405.2 P5: fixed P6: 2 / 2049+ P7: 5 / not boot P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Windows Defender_dbef85476b0d03deaf50b33712ad25334ac4d_00000000_0dae7027 Analysis symbol: Rechecking for solution: 0 Report Id: fb703b5e-8920-4caf-9237-c7922aa8f37e Report Status: 4 Hashed bucket: 1/16/2018 11:26 PM Windows Error Reporting Fault bucket , type 0 Event Name: MpTelemetry Response: Not available Cab Id: 0 Problem signature: P1: Windows Defender Antivirus (77BDAF73-B396-481F-9042-AD358843EC24) P2: 4.12.17007.17123 P3: TimeOut P4: 1.1.14405.2 P5: fixed P6: 2 / 2049+ P7: 5 / not boot P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Windows Defender_dbef85476b0d03deaf50b33712ad25334ac4d_00000000_0da70605 Analysis symbol: Rechecking for solution: 0 Report Id: eefafbce-fe21-47d9-abc8-44fbbed121aa Report Status: 4 Hashed bucket: 1/16/2018 7:06 PM Windows Error Reporting Fault bucket 1325538019314148517, type 5 Event Name: CLR20r3 Response: Not available Cab Id: 0 Problem signature: P1: DriverEasy.exe P2: 5.5.6.0 P3: 5a185f23 P4: DriverEasy P5: 5.5.6.0 P6: 5a185f23 P7: af4 P8: 0 P9: System.MissingMethodException P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5670.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER907E.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9089.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER90B9.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_DriverEasy.exe_36d13b331370838cfb30f41ee1dbd855343d57e_742ffd08_1b159ec2 Analysis symbol: Rechecking for solution: 0 Report Id: abc799e3-6aec-4c73-a077-d181b96b7853 Report Status: 268435456 Hashed bucket: 1204f9441c78238f626541ce397ea4a5 1/11/2018 8:56 AM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: 3679385037 P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_66315be9385613139fb26d07921b5431b977ae8_00000000_13e8cadd Analysis symbol: Rechecking for solution: 0 Report Id: 07193186-0065-45b9-9c6f-bceaab804011 Report Status: 4 Hashed bucket: 1/11/2018 8:56 AM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: 2388248767 P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_4030426254685a4a40e19035308c26e1d1bee90_00000000_28f828b2 Analysis symbol: Rechecking for solution: 0 Report Id: d7e2927c-fb32-4103-96d9-b1ec7db1958a Report Status: 4 Hashed bucket: 1/11/2018 8:55 AM Windows Error Reporting Fault bucket , type 0 Event Name: NetworkDiagnosticsFrameworkV3 Response: Not available Cab Id: 0 Problem signature: P1: Microsoft P2: WinInetHelperClass [1.0] P3: 2 P4: 8008F906 P5: {07D37F7B-FA5E-4443-BDA7-AB107B29AFB9} P6: WinInetHelperClass [1.0] P7: {2CBD7F0D-03C8-47a4-810E-E0EF33D6CD20} P8: N/A P9: N/A P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_eb4a4120bdfb4083acb996e7959df3ff79a89d5c_00000000_110fceca Analysis symbol: Rechecking for solution: 0 Report Id: 17963555-20e6-4761-a1d4-2684f4795a44 Report Status: 4 Hashed bucket: 1/9/2018 8:28 AM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: 3679385037 P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_66315be9385613139fb26d07921b5431b977ae8_00000000_0eb60b5a Analysis symbol: Rechecking for solution: 0 Report Id: 78ede29b-c6a2-4bcb-9b6b-eea020c36823 Report Status: 4 Hashed bucket: 1/6/2018 12:07 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Corporation.AppsDiagnostic.4.0 P2: RC_WSReset/DefaultInstanceId P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_2486b7538419628f5ac4128c77d2f73f6998f3b8_00000000_0d4b4d4d Analysis symbol: Rechecking for solution: 0 Report Id: 0c5f860c-a3c4-40f0-bf7a-e622cab2a9e5 Report Status: 4 Hashed bucket: 1/5/2018 8:47 AM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_25f80bd6 Analysis symbol: Rechecking for solution: 0 Report Id: d68ab530-520d-4ab6-be02-0fe27e1dd22d Report Status: 4 Hashed bucket: 1/4/2018 6:23 AM Windows Error Reporting Fault bucket 1325538019314148517, type 5 Event Name: CLR20r3 Response: Not available Cab Id: 0 Problem signature: P1: DriverEasy.exe P2: 5.5.6.0 P3: 5a185f23 P4: DriverEasy P5: 5.5.6.0 P6: 5a185f23 P7: af4 P8: 0 P9: System.MissingMethodException P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER368E.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4E6E.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4E79.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4EA9.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_DriverEasy.exe_36d13b331370838cfb30f41ee1dbd855343d57e_742ffd08_3e265aed Analysis symbol: Rechecking for solution: 0 Report Id: 7faefe42-3a88-444e-95a1-47de205a249d Report Status: 268435456 Hashed bucket: 1204f9441c78238f626541ce397ea4a5 1/4/2018 5:38 AM Windows Error Reporting Fault bucket 1325538019314148517, type 5 Event Name: CLR20r3 Response: Not available Cab Id: 0 Problem signature: P1: DriverEasy.exe P2: 5.5.6.0 P3: 5a185f23 P4: DriverEasy P5: 5.5.6.0 P6: 5a185f23 P7: af4 P8: 0 P9: System.MissingMethodException P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDC1.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3DCB.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3DD7.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3E07.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_DriverEasy.exe_36d13b331370838cfb30f41ee1dbd855343d57e_742ffd08_21b94970 Analysis symbol: Rechecking for solution: 0 Report Id: 12a54db8-724c-4109-ad43-a82125a83402 Report Status: 268435456 Hashed bucket: 1204f9441c78238f626541ce397ea4a5 1/4/2018 5:35 AM Windows Error Reporting Fault bucket 1325538019314148517, type 5 Event Name: CLR20r3 Response: Not available Cab Id: 0 Problem signature: P1: DriverEasy.exe P2: 5.5.6.0 P3: 5a185f23 P4: DriverEasy P5: 5.5.6.0 P6: 5a185f23 P7: af4 P8: 0 P9: System.MissingMethodException P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERC757.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER545D.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER54D8.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5595.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_DriverEasy.exe_36d13b331370838cfb30f41ee1dbd855343d57e_742ffd08_39de65b1 Analysis symbol: Rechecking for solution: 0 Report Id: d709991e-af9b-47eb-b9de-542b7075e3d2 Report Status: 268435456 Hashed bucket: 1204f9441c78238f626541ce397ea4a5 1/4/2018 5:26 AM Windows Error Reporting Fault bucket 1325538019314148517, type 5 Event Name: CLR20r3 Response: Not available Cab Id: 0 Problem signature: P1: DriverEasy.exe P2: 5.5.6.0 P3: 5a185f23 P4: DriverEasy P5: 5.5.6.0 P6: 5a185f23 P7: af4 P8: 0 P9: System.MissingMethodException P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9B94.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCC1B.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCC27.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCC57.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_DriverEasy.exe_36d13b331370838cfb30f41ee1dbd855343d57e_742ffd08_0091d639 Analysis symbol: Rechecking for solution: 0 Report Id: a7f291e3-4ad8-4d05-ac00-4510d961d34a Report Status: 268435456 Hashed bucket: 1204f9441c78238f626541ce397ea4a5 1/4/2018 5:22 AM Windows Error Reporting Fault bucket 1325538019314148517, type 5 Event Name: CLR20r3 Response: Not available Cab Id: 0 Problem signature: P1: DriverEasy.exe P2: 5.5.6.0 P3: 5a185f23 P4: DriverEasy P5: 5.5.6.0 P6: 5a185f23 P7: af4 P8: 0 P9: System.MissingMethodException P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6CD1.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7DBC.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7DC7.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7DF7.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_DriverEasy.exe_36d13b331370838cfb30f41ee1dbd855343d57e_742ffd08_18728d29 Analysis symbol: Rechecking for solution: 0 Report Id: b8c2b453-4d01-4a46-b5f5-bdc492892060 Report Status: 268435456 Hashed bucket: 1204f9441c78238f626541ce397ea4a5 1/1/2018 5:54 AM Windows Error Reporting Fault bucket 125946542339, type 5 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3A5D.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_1da84ea1 Analysis symbol: Rechecking for solution: 0 Report Id: 284b7f90-c56a-42a5-b6ab-f2075cb33d19 Report Status: 268435456 Hashed bucket: d0ea4f30ddf5d83fad953febaef45cb6 1/1/2018 5:54 AM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_1f7c3608 Analysis symbol: Rechecking for solution: 0 Report Id: 284b7f90-c56a-42a5-b6ab-f2075cb33d19 Report Status: 4 Hashed bucket: 12/30/2017 12:16 AM Windows Error Reporting Fault bucket 1613196643909824620, type 5 Event Name: SkyDriveClientError Response: Not available Cab Id: 0 Problem signature: P1: OneDrive.exe P2: 17.3.7131.1115 P3: OneDrive.exe P4: 17.3.7131.1115 P5: 0x80004005 P6: WatsonFaultCategory::Instrumentation P7: instrumentation.cpp P8: 70 P9: P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Microsoft\OneDrive\logs\Personal\SyncEngine-2017-12-29.1948.6104.2.aodl \\?\C:\Users\stefa\AppData\Local\Microsoft\OneDrive\logs\Personal\TraceCurrent.7131.1115.etl \\?\C:\Users\stefa\AppData\Local\Microsoft\OneDrive\logs\Personal\TraceArchive.7131.1115-67.etl \\?\C:\Users\stefa\AppData\Local\Microsoft\OneDrive\logs\Personal\TraceArchive.7131.1115-66.etl \\?\C:\Users\stefa\AppData\Local\Microsoft\OneDrive\logs\Personal\TraceArchive.7131.1115-65.etl \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER772D.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7901.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER798F.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_OneDrive.exe_32563bc059c61edb1089a8fc212a769f39b80d6_00000000_1bd98d06 Analysis symbol: Rechecking for solution: 0 Report Id: d16e8de8-740c-47f2-84a1-043ffe6d7434 Report Status: 268435456 Hashed bucket: b45064938c09a6fd566339ccf118f06c 12/30/2017 12:16 AM Windows Error Reporting Fault bucket , type 0 Event Name: SkyDriveClientError Response: Not available Cab Id: 0 Problem signature: P1: OneDrive.exe P2: 17.3.7131.1115 P3: OneDrive.exe P4: 17.3.7131.1115 P5: 0x80004005 P6: WatsonFaultCategory::Instrumentation P7: instrumentation.cpp P8: 70 P9: P10: Attached files: These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: d16e8de8-740c-47f2-84a1-043ffe6d7434 Report Status: 1074003968 Hashed bucket: 12/29/2017 4:44 AM Windows Error Reporting Fault bucket 129573061213, type 5 Event Name: RADAR_PRE_LEAK_WOW64 Response: Not available Cab Id: 0 Problem signature: P1: MovieMaker.exe P2: 16.4.3528.331 P3: 10.0.16299.2.0.0 P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Temp\RDR12C8.tmp\empty.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER12C9.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER13CD.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER144B.tmp.txt These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: 9acf492b-f62f-46cc-b9e7-e08ee92d1ccc Report Status: 268435456 Hashed bucket: 9ffb4b0f305add137b24339aad8beb17 12/29/2017 3:44 AM Windows Error Reporting Fault bucket 129572324458, type 5 Event Name: RADAR_PRE_LEAK_64 Response: Not available Cab Id: 0 Problem signature: P1: HandBrake.exe P2: 1.0.7.0 P3: 10.0.16299.2.0.0 P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Temp\RDR17F2.tmp\empty.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1821.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER189B.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER18EB.tmp.txt These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: aa646ae2-1eef-44c3-902a-3ee09b5e79ca Report Status: 268435456 Hashed bucket: 2b0b67d1587a38c7b6cdb7e53f55fac9 12/29/2017 1:49 AM Windows Error Reporting Fault bucket 129573465976, type 5 Event Name: RADAR_PRE_LEAK_64 Response: Not available Cab Id: 0 Problem signature: P1: vegas140.exe P2: 14.0.0.244 P3: 10.0.16299.2.0.0 P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Temp\RDRCDD6.tmp\empty.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCE44.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERD315.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERD5C6.tmp.txt These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: ca064079-08a2-4b85-99b6-c24d59f79f95 Report Status: 268435456 Hashed bucket: 0fa007da85073c99faec0f6c1f753210 12/28/2017 11:57 PM Windows Error Reporting Fault bucket 1642215482180308424, type 5 Event Name: BEX Response: Not available Cab Id: 0 Problem signature: P1: Viber.exe P2: 7.8.0.1 P3: 5a2fd2f2 P4: ucrtbase.dll P5: 10.0.16299.125 P6: 9e3394c7 P7: 000933ab P8: c0000409 P9: 00000007 P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER69BA.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3728.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3743.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3773.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Viber.exe_7143a3ee2ea8bbfef869083c8fa8ce594d3a_dc8584a4_1b3e52ca Analysis symbol: Rechecking for solution: 0 Report Id: 07f40c62-595f-4215-8b39-76e50779fd9c Report Status: 268435456 Hashed bucket: b998ed7916034ed446ca5247bc010dc8 12/28/2017 9:22 PM Windows Error Reporting Fault bucket 2251287005392664627, type 5 Event Name: MpTelemetry Response: Not available Cab Id: 0 Problem signature: P1: Windows Defender Antivirus (77BDAF73-B396-481F-9042-AD358843EC24) P2: 4.12.17007.17123 P3: TimeOut P4: 1.1.14405.2 P5: fixed P6: 2 / 2049+ P7: 5 / not boot P8: P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6BC.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Windows Defender_dbef85476b0d03deaf50b33712ad25334ac4d_00000000_1fbbb12a Analysis symbol: Rechecking for solution: 0 Report Id: 7be88297-5db3-4417-8775-52371e57b437 Report Status: 268435456 Hashed bucket: 66cc8f3a3c7f067e6f3e2d9a83e1f833 12/28/2017 9:21 PM Windows Error Reporting Fault bucket , type 0 Event Name: MpTelemetry Response: Not available Cab Id: 0 Problem signature: P1: Windows Defender Antivirus (77BDAF73-B396-481F-9042-AD358843EC24) P2: 4.12.17007.17123 P3: TimeOut P4: 1.1.14405.2 P5: fixed P6: 2 / 2049+ P7: 5 / not boot P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Windows Defender_dbef85476b0d03deaf50b33712ad25334ac4d_00000000_1fbbb12a Analysis symbol: Rechecking for solution: 0 Report Id: 7be88297-5db3-4417-8775-52371e57b437 Report Status: 4 Hashed bucket: 12/27/2017 11:03 PM Windows Error Reporting Fault bucket 129604129630, type 5 Event Name: RADAR_PRE_LEAK_64 Response: Not available Cab Id: 0 Problem signature: P1: MBAMService.exe P2: 3.1.0.595 P3: 10.0.16299.2.0.0 P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Temp\RDREAED.tmp\empty.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREBE8.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERECB7.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERECE7.tmp.txt These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: 041a216a-e4ba-4357-87e9-149ff9710dab Report Status: 268435456 Hashed bucket: 6f73216bcd2d2fa49ffa31a6b43be2ce 12/27/2017 4:47 PM Windows Error Reporting Fault bucket 1443562299247866005, type 5 Event Name: RADAR_PRE_LEAK_64 Response: Not available Cab Id: 0 Problem signature: P1: chrome.exe P2: 63.0.3239.108 P3: 10.0.16299.2.0.0 P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Temp\RDR5297.tmp\empty.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER52A7.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER52FC.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER533C.tmp.txt These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: 9d16e1ab-36fc-4428-8844-9ddfba4efcf3 Report Status: 268435456 Hashed bucket: 621b9eca8dcf9b9c3408904349d0b095 12/26/2017 9:17 AM Windows Error Reporting Fault bucket 2182424800194278154, type 5 Event Name: RADAR_PRE_LEAK_64 Response: Not available Cab Id: 0 Problem signature: P1: QuakeChampions.exe P2: 0.1.0.39201 P3: 10.0.16299.2.0.0 P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Temp\RDRB0E5.tmp\empty.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB24D.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB8ED.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERB9BA.tmp.txt These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: c6e9c8f5-7b4a-44b8-b96f-80dbdb11b479 Report Status: 268435456 Hashed bucket: 52aa5979241fc4611e4987caf495330a 12/26/2017 9:02 AM Windows Error Reporting Fault bucket 2034664884211337768, type 5 Event Name: RADAR_PRE_LEAK_WOW64 Response: Not available Cab Id: 0 Problem signature: P1: BethesdaNetLauncher.exe P2: 1.27.0.2 P3: 10.0.16299.2.0.0 P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Temp\RDRF13C.tmp\empty.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF1D9.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF406.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF484.tmp.txt These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: 98e78982-898c-460e-9747-cdc708459bc1 Report Status: 268435456 Hashed bucket: 63f93b4ca32a4a997c3c94ee9c60ca28 12/26/2017 8:57 AM Windows Error Reporting Fault bucket 129572385797, type 5 Event Name: RADAR_PRE_LEAK_WOW64 Response: Not available Cab Id: 0 Problem signature: P1: setup.tmp P2: 51.1052.0.0 P3: 10.0.16299.2.0.0 P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Temp\RDR6410.tmp\empty.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6867.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER798A.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7AF3.tmp.txt These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: 79bfe00d-1a04-47ad-ae71-fc1ea1b969ee Report Status: 268435456 Hashed bucket: ed630be60b05f1801c6f667d7867bfed 12/25/2017 10:35 AM Windows Error Reporting Fault bucket 129573711724, type 5 Event Name: RADAR_PRE_LEAK_WOW64 Response: Not available Cab Id: 0 Problem signature: P1: iw4mp.exe P2: 0.0.0.0 P3: 10.0.16299.2.0.0 P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Temp\RDR7493.tmp\empty.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER74B3.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER75BC.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER761A.tmp.txt These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: 56ba200a-bbc2-4d49-8741-4694b4ff0172 Report Status: 268435456 Hashed bucket: 7b81daea2cd7f964ba8d59edc563d260 12/24/2017 11:44 AM Windows Error Reporting Fault bucket 127889932246, type 5 Event Name: WUDFHostProblem Response: Not available Cab Id: 0 Problem signature: P1: HostProblem P2: HostTimeout P3: 2 P4: 2.23.0 P5: 103 P6: 3 P7: 11602 P8: ffffffff P9: USB\VID_1004&PID_633E&REV_0228 P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3793.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_HostProblem_2fa6ad67dfba5da5389a8dfab4269bde8a67d4e_00000000_1f2748f8 Analysis symbol: Rechecking for solution: 0 Report Id: 5cd90a83-04ea-44e1-b01b-a0cadb6bea6d Report Status: 268435456 Hashed bucket: 97909df37219201fddd669d44e39430e 12/24/2017 11:44 AM Windows Error Reporting Fault bucket , type 0 Event Name: WUDFHostProblem Response: Not available Cab Id: 0 Problem signature: P1: HostProblem P2: HostTimeout P3: 2 P4: 2.23.0 P5: 103 P6: 3 P7: 11602 P8: ffffffff P9: USB\VID_1004&PID_633E&REV_0228 P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_HostProblem_2fa6ad67dfba5da5389a8dfab4269bde8a67d4e_00000000_027b364b Analysis symbol: Rechecking for solution: 0 Report Id: 5cd90a83-04ea-44e1-b01b-a0cadb6bea6d Report Status: 4 Hashed bucket: 12/24/2017 8:20 AM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangXProcB1 Response: Not available Cab Id: 0 Problem signature: P1: P2: P3: P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6394.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER63A2.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER63E1.tmp.txt These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: 8bf593ca-a33f-4858-844d-0ef9b1f7bc14 Report Status: 2147491840 Hashed bucket: 12/24/2017 8:12 AM Windows Error Reporting Fault bucket , type 0 Event Name: PnPDriverImportError Response: Not available Cab Id: 0 Problem signature: P1: x86 P2: E0000247 P3: android_winusb.inf P4: 1336b995b13a4b5774473308f831b5ce949de4fc P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERC377.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x86_d4ca693eac124c92548328115120a25e3669691c_00000000_02a1caab Analysis symbol: Rechecking for solution: 0 Report Id: b64d82d8-95a8-4f87-8a68-1deaa5876c04 Report Status: 2147491840 Hashed bucket: 12/24/2017 8:12 AM Windows Error Reporting Fault bucket , type 0 Event Name: PnPDriverImportError Response: Not available Cab Id: 0 Problem signature: P1: x86 P2: E0000247 P3: android_winusb.inf P4: 1336b995b13a4b5774473308f831b5ce949de4fc P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x86_d4ca693eac124c92548328115120a25e3669691c_00000000_091dc29c Analysis symbol: Rechecking for solution: 0 Report Id: b64d82d8-95a8-4f87-8a68-1deaa5876c04 Report Status: 4 Hashed bucket: 12/24/2017 6:55 AM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangTransient Response: Not available Cab Id: 0 Problem signature: P1: chrome.exe P2: 63.0.3239.108 P3: 5a319cc1 P4: unknown P5: unknown P6: unknown P7: unknown P8: P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREF07.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREF43.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF000.tmp.txt These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: 071ffa31-fe2f-4d86-a156-d86491146082 Report Status: 2049 Hashed bucket: 12/24/2017 1:03 AM Windows Error Reporting Fault bucket 129575400892, type 5 Event Name: RADAR_PRE_LEAK_64 Response: Not available Cab Id: 0 Problem signature: P1: MicrosoftEdgeCP.exe P2: 11.0.16299.15 P3: 10.0.16299.2.0.0 P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Temp\RDR17B2.tmp\empty.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER17C2.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER184E.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER188D.tmp.txt These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: 76fbc809-4275-4555-be8f-9bb0af9078f6 Report Status: 268435456 Hashed bucket: b9e4e8d4cc510c42c7f009edb7ae72bb 12/24/2017 12:29 AM Windows Error Reporting Fault bucket 1908781913276536671, type 5 Event Name: MpTelemetry Response: Not available Cab Id: 0 Problem signature: P1: 0x80070652 P2: ValidateUpdate P3: N/A P4: 1.1.14406.0 P5: mpsigstub.exe P6: 4.12.17007.17123 P7: Microsoft Windows Defender (RS1+) P8: P9: P10: Attached files: \\?\C:\WINDOWS\ServiceProfiles\NetworkService\AppData\Local\Temp\MpSigStub.log \\?\C:\WINDOWS\ServiceProfiles\NetworkService\AppData\Local\Temp\MPTelemetrySubmit\client_manifest.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREBB8.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF06A.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF0A9.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_0x80070652_b092893353b3e43756a112b4f2b43fd2a3d1df4_00000000_1eb6fd89 Analysis symbol: Rechecking for solution: 0 Report Id: 5b68c080-547e-4eab-b83f-a1209777be93 Report Status: 268435456 Hashed bucket: 1191b76ac0c420822a7d5b097689d75f 12/23/2017 2:03 PM Windows Error Reporting Fault bucket 1625594757454159715, type 5 Event Name: WindowsUpdateFailure3 Response: Not available Cab Id: 0 Problem signature: P1: 10.0.16299.98 P2: 80244007 P3: 00000000-0000-0000-0000-000000000000 P4: Scan P5: 0 P6: 0 P7: 0 P8: Update;taskhostw P9: {855E8A7C-ECB4-4CA3-B045-1DFA50104289} P10: 0 Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4954.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_10.0.16299.98_9fc3c6aa5d93c0f398ba3e72402b939e111660_00000000_3da54db9 Analysis symbol: Rechecking for solution: 0 Report Id: 54eb44a0-1e73-4da8-80a0-f569dc524760 Report Status: 268435456 Hashed bucket: 299eedc029988ff5a68f45d1b2cadf63 12/23/2017 2:03 PM Windows Error Reporting Fault bucket , type 0 Event Name: WindowsUpdateFailure3 Response: Not available Cab Id: 0 Problem signature: P1: 10.0.16299.98 P2: 80244007 P3: 00000000-0000-0000-0000-000000000000 P4: Scan P5: 0 P6: 0 P7: 0 P8: Update;taskhostw P9: {855E8A7C-ECB4-4CA3-B045-1DFA50104289} P10: 0 Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_10.0.16299.98_9fc3c6aa5d93c0f398ba3e72402b939e111660_00000000_111948c8 Analysis symbol: Rechecking for solution: 0 Report Id: 54eb44a0-1e73-4da8-80a0-f569dc524760 Report Status: 4 Hashed bucket: 12/23/2017 2:03 PM Windows Error Reporting Fault bucket , type 0 Event Name: WindowsUpdateFailure3 Response: Not available Cab Id: 0 Problem signature: P1: 10.0.16299.98 P2: 80244007 P3: 00000000-0000-0000-0000-000000000000 P4: Scan P5: 0 P6: 0 P7: 0 P8: Update;taskhostw P9: {855E8A7C-ECB4-4CA3-B045-1DFA50104289} P10: 0 Attached files: These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: 54eb44a0-1e73-4da8-80a0-f569dc524760 Report Status: 1074003968 Hashed bucket: 12/23/2017 2:03 PM Windows Error Reporting Fault bucket 1995013981566663339, type 5 Event Name: StoreAgentScanForUpdatesFailure0 Response: Not available Cab Id: 0 Problem signature: P1: Update; P2: 80244007 P3: 16299 P4: 125 P5: Windows.Desktop P6: P7: P8: P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3678.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_Update;_6f257443202dc1c69a6493abfdc55bd17d9f67_00000000_14f53ed5 Analysis symbol: Rechecking for solution: 0 Report Id: 17dbc2a7-f9de-4c30-bcb4-be4ec6ca9559 Report Status: 268435456 Hashed bucket: 234443a7f4fa924cdbafb6a56d37faab 12/23/2017 2:03 PM Windows Error Reporting Fault bucket , type 0 Event Name: StoreAgentScanForUpdatesFailure0 Response: Not available Cab Id: 0 Problem signature: P1: Update; P2: 80244007 P3: 16299 P4: 125 P5: Windows.Desktop P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Update;_6f257443202dc1c69a6493abfdc55bd17d9f67_00000000_25c135dc Analysis symbol: Rechecking for solution: 0 Report Id: 17dbc2a7-f9de-4c30-bcb4-be4ec6ca9559 Report Status: 4 Hashed bucket: 12/22/2017 8:40 PM Windows Error Reporting Fault bucket 125946542339, type 5 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8633.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_2ce6998d Analysis symbol: Rechecking for solution: 0 Report Id: 4d3154d7-a8e5-429c-b8c8-06066face8fe Report Status: 268435456 Hashed bucket: d0ea4f30ddf5d83fad953febaef45cb6 12/22/2017 8:40 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: Default P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_2ac26e85 Analysis symbol: Rechecking for solution: 0 Report Id: 4d3154d7-a8e5-429c-b8c8-06066face8fe Report Status: 4 Hashed bucket: 12/22/2017 8:40 PM Windows Error Reporting Fault bucket 126100231911, type 5 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: 180194715 P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERBD75.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_Microsoft Window_99bd1f972f85b6766a1c22a586a119285786c5d7_00000000_057a436e Analysis symbol: Rechecking for solution: 0 Report Id: cfb5c7a5-2ec4-4ca0-91be-95f413965905 Report Status: 268435556 Hashed bucket: 04a296d9afe72536977fdccb3ba42a7c 12/22/2017 8:40 PM Windows Error Reporting Fault bucket , type 0 Event Name: NetworkDiagnosticsFrameworkV3 Response: Not available Cab Id: 0 Problem signature: P1: Microsoft P2: AddressAcquisition [1.0] P3: 2 P4: 8008F906 P5: {07D37F7B-FA5E-4443-BDA7-AB107B29AFB9} P6: AddressAcquisition [1.0] P7: {BAA4467D-8F57-4739-879B-2CF78298177B} P8: rt640x64.sys P9: 10.19.627.2017 21/07/2017 P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF7B.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_Microsoft_e11c3f8ca475d5fd4418ede15d0ca4092488b27_00000000_057a364e Analysis symbol: Rechecking for solution: 0 Report Id: be6fea96-e817-4c94-bc01-9309457b3360 Report Status: 2147491940 Hashed bucket: 12/22/2017 8:39 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: 180194715 P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERBD75.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_99bd1f972f85b6766a1c22a586a119285786c5d7_00000000_212dbbdf Analysis symbol: Rechecking for solution: 0 Report Id: cfb5c7a5-2ec4-4ca0-91be-95f413965905 Report Status: 100 Hashed bucket: 12/22/2017 8:39 PM Windows Error Reporting Fault bucket , type 0 Event Name: NetworkDiagnosticsFrameworkV3 Response: Not available Cab Id: 0 Problem signature: P1: Microsoft P2: AddressAcquisition [1.0] P3: 2 P4: 8008F906 P5: {07D37F7B-FA5E-4443-BDA7-AB107B29AFB9} P6: AddressAcquisition [1.0] P7: {BAA4467D-8F57-4739-879B-2CF78298177B} P8: rt640x64.sys P9: 10.19.627.2017 21/07/2017 P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF7B.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_e11c3f8ca475d5fd4418ede15d0ca4092488b27_00000000_05d5adf4 Analysis symbol: Rechecking for solution: 0 Report Id: be6fea96-e817-4c94-bc01-9309457b3360 Report Status: 100 Hashed bucket: 12/22/2017 8:39 PM Windows Error Reporting Fault bucket , type 0 Event Name: ScriptedDiagFailure Response: Not available Cab Id: 0 Problem signature: P1: Microsoft Windows.NetworkDiagnostics.4.0 P2: 180194715 P3: 1.0.0.0 P4: Default P5: P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_99bd1f972f85b6766a1c22a586a119285786c5d7_00000000_212dbbdf Analysis symbol: Rechecking for solution: 0 Report Id: cfb5c7a5-2ec4-4ca0-91be-95f413965905 Report Status: 4 Hashed bucket: 12/22/2017 8:39 PM Windows Error Reporting Fault bucket , type 0 Event Name: NetworkDiagnosticsFrameworkV3 Response: Not available Cab Id: 0 Problem signature: P1: Microsoft P2: AddressAcquisition [1.0] P3: 2 P4: 8008F906 P5: {07D37F7B-FA5E-4443-BDA7-AB107B29AFB9} P6: AddressAcquisition [1.0] P7: {BAA4467D-8F57-4739-879B-2CF78298177B} P8: rt640x64.sys P9: 10.19.627.2017 21/07/2017 P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF7B.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_e11c3f8ca475d5fd4418ede15d0ca4092488b27_00000000_05d5adf4 Analysis symbol: Rechecking for solution: 0 Report Id: be6fea96-e817-4c94-bc01-9309457b3360 Report Status: 100 Hashed bucket: 12/22/2017 8:39 PM Windows Error Reporting Fault bucket , type 0 Event Name: NetworkDiagnosticsFrameworkV3 Response: Not available Cab Id: 0 Problem signature: P1: Microsoft P2: AddressAcquisition [1.0] P3: 2 P4: 8008F906 P5: {07D37F7B-FA5E-4443-BDA7-AB107B29AFB9} P6: AddressAcquisition [1.0] P7: {BAA4467D-8F57-4739-879B-2CF78298177B} P8: rt640x64.sys P9: 10.19.627.2017 21/07/2017 P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_e11c3f8ca475d5fd4418ede15d0ca4092488b27_00000000_05d5adf4 Analysis symbol: Rechecking for solution: 0 Report Id: be6fea96-e817-4c94-bc01-9309457b3360 Report Status: 4 Hashed bucket: 12/22/2017 7:38 AM Windows Error Reporting Fault bucket 1952548034022273380, type 5 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: explorer.exe P2: 10.0.16299.125 P3: feba44fb P4: c458 P5: 134217729 P6: P7: P8: P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER33C8.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppHang_explorer.exe_905249ab119850ab472759dd25ee2ecf5b33cc4_2a071b9a_1d4e620c Analysis symbol: Rechecking for solution: 0 Report Id: eae7bb1a-e1fd-40db-997b-67c87c5bb79e Report Status: 268435456 Hashed bucket: e8a7b6b80e4951676b18d81786c8f164 12/22/2017 7:37 AM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: explorer.exe P2: 10.0.16299.125 P3: feba44fb P4: c458 P5: 134217729 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppHang_explorer.exe_905249ab119850ab472759dd25ee2ecf5b33cc4_2a071b9a_0f5e31f4 Analysis symbol: Rechecking for solution: 0 Report Id: eae7bb1a-e1fd-40db-997b-67c87c5bb79e Report Status: 4 Hashed bucket: 12/22/2017 6:45 AM Windows Error Reporting Fault bucket 1635239489989294444, type 5 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: explorer.exe P2: 10.0.16299.125 P3: feba44fb P4: fed1 P5: 134217728 P6: P7: P8: P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9947.tmp.WERInternalMetadata.xml These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppHang_explorer.exe_35bad91dbdbfcd49320716185a3fe2c95a13d8_2a071b9a_2e71e43b Analysis symbol: Rechecking for solution: 0 Report Id: b8c89987-fc55-4db7-b6ad-445963ff3d12 Report Status: 268435456 Hashed bucket: ed56411f7631468c76b189a6fb80b96c 12/22/2017 6:44 AM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: explorer.exe P2: 10.0.16299.125 P3: feba44fb P4: fed1 P5: 134217728 P6: P7: P8: P9: P10: Attached files: These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppHang_explorer.exe_35bad91dbdbfcd49320716185a3fe2c95a13d8_2a071b9a_19e99782 Analysis symbol: Rechecking for solution: 0 Report Id: b8c89987-fc55-4db7-b6ad-445963ff3d12 Report Status: 4 Hashed bucket: 12/22/2017 12:33 AM Windows Error Reporting Fault bucket 133561143700, type 5 Event Name: MoAppCrash Response: Not available Cab Id: 0 Problem signature: P1: Microsoft.People_10.2.2791.0_x64__8wekyb3d8bbwe P2: praid:x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x P3: 10.2.1710.6001 P4: 59d7cb4a P5: Microsoft.People.NativeComponents.dll P6: 10.2.1710.6001 P7: 59d7c863 P8: c0000005 P9: 000000000001ea34 P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Packages\Microsoft.People_8wekyb3d8bbwe\LocalState\DiagOutputDir\PeopleAppLog.etl \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDAEC.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7EF1.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7F10.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7F7E.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Microsoft.People_114615909ba7d050f4db87aa4848986c220fb80_21c9abd1_2561848c Analysis symbol: Rechecking for solution: 0 Report Id: 5bbb7273-167b-4d09-aedb-600019eb106e Report Status: 268435456 Hashed bucket: 85add037d725824c27b88832b741fb50 12/22/2017 12:33 AM Windows Error Reporting Fault bucket 133561143700, type 5 Event Name: MoAppCrash Response: Not available Cab Id: 0 Problem signature: P1: Microsoft.People_10.2.2791.0_x64__8wekyb3d8bbwe P2: praid:x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x P3: 10.2.1710.6001 P4: 59d7cb4a P5: Microsoft.People.NativeComponents.dll P6: 10.2.1710.6001 P7: 59d7c863 P8: c0000005 P9: 000000000001ea34 P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Packages\Microsoft.People_8wekyb3d8bbwe\LocalState\DiagOutputDir\PeopleAppLog.etl \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3F77.tmp.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7A0F.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7C01.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7C50.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Microsoft.People_114615909ba7d050f4db87aa4848986c220fb80_21c9abd1_1229820c Analysis symbol: Rechecking for solution: 0 Report Id: 8e48209e-640a-4091-b196-964cb8e57a4f Report Status: 268435456 Hashed bucket: 85add037d725824c27b88832b741fb50 12/22/2017 12:28 AM Windows Error Reporting Fault bucket 1572407411475943606, type 5 Event Name: MoAppHang Response: Not available Cab Id: 0 Problem signature: P1: Microsoft.MicrosoftEdge_41.16299.15.0_neutral__8wekyb3d8bbwe P2: praid:MicrosoftEdge P3: 11.0.16299.125 P4: 5a29bafe P5: 4b54 P6: 2097152 P7: P8: P9: P10: Attached files: triagedump.dmp \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5728.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5959.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER59C8.tmp.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppHang_Microsoft.Micros_62d4f9727bb3cf751e636ada5a146b348f3c1fc_61ccbbe8_0df9633c Analysis symbol: Rechecking for solution: 0 Report Id: 44c69ada-3cd3-4aee-93a5-88d900f98a87 Report Status: 268435456 Hashed bucket: 343fe6e89937895615d25035b33710b6 12/21/2017 5:24 AM Windows Error Reporting Fault bucket , type 0 Event Name: AppHangB1 Response: Not available Cab Id: 0 Problem signature: P1: Taskmgr.exe P2: 10.0.16299.15 P3: 635d4324 P4: f710 P5: 134217728 P6: P7: P8: P9: P10: Attached files: \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1997.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER19D6.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1A63.tmp.txt \\?\C:\Users\stefa\AppData\Local\Temp\WER6A97.tmp.appcompat.txt These files may be available here: C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppHang_Taskmgr.exe_66357ce5d3d6661f2dba1c663b608bee16689976_3dafa3cd_13587bad Analysis symbol: Rechecking for solution: 0 Report Id: a041b98c-ce7e-40aa-b252-74694bf6f9cb Report Status: 97 Hashed bucket: 12/20/2017 12:45 AM Windows Error Reporting Fault bucket 129573174268, type 5 Event Name: RADAR_PRE_LEAK_WOW64 Response: Not available Cab Id: 0 Problem signature: P1: Popcorn-Time.exe P2: 0.0.0.0 P3: 10.0.16299.2.0.0 P4: P5: P6: P7: P8: P9: P10: Attached files: \\?\C:\Users\stefa\AppData\Local\Temp\RDRD6B5.tmp\empty.txt \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERD733.tmp.WERInternalMetadata.xml \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDBA7.tmp.csv \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDC34.tmp.txt These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: 5570beef-200d-4355-91be-ba606cb48576 Report Status: 268435456 Hashed bucket: 1d0403c90ea32c93ecdf15579c6d1782 2/7/2018 2:24 PM Application Hang The program Skype.exe version 7.40.0.151 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel. Process ID: 964 Start Time: 01d39fd4cbee69ef Termination Time: 4294967295 Application Path: C:\Program Files (x86)\Skype\Phone\Skype.exe Report Id: d724317e-13a9-4147-887a-67212a06f744 Faulting package full name: Faulting package-relative application ID: 2/7/2018 2:23 PM Application Hang The program Viber.exe version 8.0.0.4 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel. Process ID: 43c Start Time: 01d39fd4ccf6c7ff Termination Time: 4294967295 Application Path: C:\Users\stefa\AppData\Local\Viber\Viber.exe Report Id: 3463d599-082b-476e-9539-24d1bd054116 Faulting package full name: Faulting package-relative application ID: 2/7/2018 11:18 AM Application Hang The program explorer.exe version 10.0.16299.214 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel. Process ID: 147c Start Time: 01d39df0064257bc Termination Time: 195 Application Path: C:\Windows\explorer.exe Report Id: d8b61167-8144-4880-aa21-df40aff962ff Faulting package full name: Faulting package-relative application ID: