You are on page 1of 87

SpyHolesList Version:9.1 Build:6.9.7.124-64b 15.12.2013 15:41:37 WinDir=C:\WINDOWS Startup=C:\Users\Paulo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sta rtup\ Common Startup=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ Windows 8.

1 Pro (6.2.9200) Internet Explorer 9.11.9600.16438 [Internet Explorer] [Default Home Page] :HKLM Default_Page_URL=about:blank [Current Home Page] :HKCU Start Page=about:blank [Current Home Page] :HKCU HOMEOldSP="" [All Users Search] :HKLM Default_Search_URL=http://www.microsoft.com/isapi/red ir.dll?prd=ie&ar=iesearch [All Users Search] :HKLM Search Page=http://www.microsoft.com/isapi/redir.dll? prd=ie&ar=iesearch [Current Users Search] :HKCU Search Page=http://go.microsoft.com/fwlink/?LinkI d=54896 [Current Users Search] :HKCU Search Bar="" [IE Local Blank Page] :HKCU Local Page=C:\WINDOWS\system32\blank.htm [IE Local Blank Page] :HKLM Local Page=C:\Windows\SysWOW64\blank.htm [Browser Helper Objects] {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}=C:\PROGRAM FIL ES (X86)\JAVA\JRE7\BIN\SSV.DLL ### Java(TM) Platform SE binary Oracle Corporation Java(TM) Platform SE 7 U45 7.0.450.18 [Browser Helper Objects] {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}=C:\PROGRA~2\MI CROS~1\OFFICE15\GROOVEEX.DLL ### Microsoft SkyDrive Pro Extensions Microsoft Corporation Microsoft Office 2 013 15.0.4551.1005 [Browser Helper Objects] {DBC80044-A445-435b-BC74-9C25C1C588A9}=C:\PROGRAM FIL ES (X86)\JAVA\JRE7\BIN\JP2SSV.DLL ### Java(TM) Platform SE binary Oracle Corporation Java(TM) Platform SE 7 U45 7.0.450.18 [Auto Search URL] :HKCU provider="" [Auto Search URL] :HKCU "Default Value"="" [Search Assistant] :HKCU SearchAssistant="" [Search Assistant] :HKLM SearchAssistant="" [Search Assistant] :HKCU CustomizeSearch="" [Search Assistant] :HKLM CustomizeSearch="" [Default Search Provider] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}=http://www.bi ng.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR ### Bing [Default Search Provider] DefaultScope={33BB0A4E-99AF-4226-BDF6-49120163DE86} [Default Search Provider for All Users] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} =http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC ### Bing [Default Search Provider for All Users] DefaultScope={0633EE93-D776-472f-A0FFE1416B8B2E3A} [CustomizeSearch] :HKLM CustomizeSearch="" [URLSearchHook] :HKCU {CFBFAE00-17A6-11D0-99CB-00C04FD64497}=C:\WINDOWS\SYSWOW 64\IEFRAME.DLL ### Browser Microsoft Corporation Internet Explorer 11.00.9600.16412 [Search URL Template] :HKLM 1="" [Search URL Template] :HKLM 2="" [Search URL Template] :HKLM 3="" [Search URL Template] :HKLM 4="" [Default Prefix] :HKLM "Default Value"=http:// [URL Default Prefixes] :HKLM mosaic=http:// [URL Default Prefixes] :HKLM www=http:// [URL Default Prefixes] :HKLM home=http://

[URL Default Prefixes] :HKLM ftp=ftp:// [AboutURLs] :HKLM blank=res://mshtml.dll/blank.htm [AboutURLs] :HKLM NoAdd-onsInfo=res://ieframe.dll/noaddoninfo.htm [AboutURLs] :HKLM InPrivate=res://ieframe.dll/inprivate.htm [AboutURLs] :HKLM NavigationFailure=res://ieframe.dll/navcancl.htm [AboutURLs] :HKLM NoAdd-ons=res://ieframe.dll/noaddon.htm [AboutURLs] :HKLM Home=270 [AboutURLs] :HKLM PostNotCached=res://ieframe.dll/repost.htm [AboutURLs] :HKLM DesktopItemNavigationFailure=res://ieframe.dll/navcancl.htm [AboutURLs] :HKLM NavigationCanceled=res://ieframe.dll/navcancl.htm [AboutURLs] :HKLM SecurityRisk=res://ieframe.dll/securityatrisk.htm [User Style Sheet] :HKCU User Stylesheet="" [User Style Sheet] :HKUS User Stylesheet="" [User Style Sheet] :HKCU Use My Stylesheet=0 [User Style Sheet] :HKUS Use My Stylesheet=0 [Execute unsigned ActiveX in My Computer Zone] :HKCU 1201=0 [Execute unsigned ActiveX in My Computer Zone] :HKLM 1201=1 [Execute unsigned ActiveX in Local Intranet Zone] :HKCU 1201=0 [Execute unsigned ActiveX in Local Intranet Zone] :HKLM 1201=3 [Execute unsigned ActiveX in Internet Zone] :HKCU 1201=3 [Execute unsigned ActiveX in Internet Zone] :HKLM 1201=3 [Links Toolbar] :HKCU LinksFolderName="" [IE Extensions - All Users] :HKLM {08B0E5C0-4FCB-11CF-AAA5-00401C608501} ### File is deleted or hidden by a rootkit or could not be located. [Context menu items] :HKCU E&xportar para o Microsoft Excel=res://C:\PROGRA~1\ MICROS~1\Office15\EXCEL.EXE/3000 ### File is deleted or hidden by a rootkit or could not be located. [AutoConfigURL] :HKCU AutoConfigURL="" [Protocols Filter] :HKLM application/octet-stream=C:\WINDOWS\SYSWOW64\MSCOREE. DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft Win dows Operating System 6.3.9600.16384 [Protocols Filter] :HKLM application/x-complus=C:\WINDOWS\SYSWOW64\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft Win dows Operating System 6.3.9600.16384 [Protocols Filter] :HKLM application/x-msdownload=C:\WINDOWS\SYSWOW64\MSCOREE. DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft Win dows Operating System 6.3.9600.16384 [Protocols Filter] :HKLM text/xml=C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOF T SHARED\OFFICE15\MSOXMLMF.DLL ### Microsoft Office XML MIME Filter Microsoft Corporation Microsoft Office In foPath 15.0.4420.1017 [Protocols Handler] :HKLM about=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Visualizador de HTML da Microsoft (R) Microsoft Corporation Internet Explo rer 11.00.9600.16410 [Protocols Handler] :HKLM cdl=C:\WINDOWS\SYSWOW64\URLMON.DLL ### Extenses OLE32 para Win32 Microsoft Corporation Internet Explorer 11.00.960 0.16384 [Protocols Handler] :HKLM dvd=C:\WINDOWS\SYSWOW64\MSVIDCTL.DLL ### Controlo ActiveX para transmisso em fluxo de vdeo Microsoft Corporation Dire ctShow 6.05.9600.16384 [Protocols Handler] :HKLM file=C:\WINDOWS\SYSWOW64\URLMON.DLL ### Extenses OLE32 para Win32 Microsoft Corporation Internet Explorer 11.00.960 0.16384 [Protocols Handler] :HKLM ftp=C:\WINDOWS\SYSWOW64\URLMON.DLL ### Extenses OLE32 para Win32 Microsoft Corporation Internet Explorer 11.00.960 0.16384 [Protocols Handler] :HKLM http=C:\WINDOWS\SYSWOW64\URLMON.DLL ### Extenses OLE32 para Win32 Microsoft Corporation Internet Explorer 11.00.960

0.16384 [Protocols Handler] :HKLM https=C:\WINDOWS\SYSWOW64\URLMON.DLL ### Extenses OLE32 para Win32 Microsoft Corporation Internet Explorer 11.00.960 0.16384 [Protocols Handler] :HKLM its=C:\WINDOWS\SYSWOW64\ITSS.DLL ### Microsoft InfoTech Storage System Library Microsoft Corporation Microsoft Wi ndows Operating System 6.3.9600.16384 [Protocols Handler] :HKLM javascript=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Visualizador de HTML da Microsoft (R) Microsoft Corporation Internet Explo rer 11.00.9600.16410 [Protocols Handler] :HKLM local=C:\WINDOWS\SYSWOW64\URLMON.DLL ### Extenses OLE32 para Win32 Microsoft Corporation Internet Explorer 11.00.960 0.16384 [Protocols Handler] :HKLM mailto=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Visualizador de HTML da Microsoft (R) Microsoft Corporation Internet Explo rer 11.00.9600.16410 [Protocols Handler] :HKLM mhtml=C:\WINDOWS\SYSWOW64\INETCOMM.DLL ### Microsoft Internet Messaging API Resources Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Protocols Handler] :HKLM mk=C:\WINDOWS\SYSWOW64\URLMON.DLL ### Extenses OLE32 para Win32 Microsoft Corporation Internet Explorer 11.00.960 0.16384 [Protocols Handler] :HKLM ms-help={314111c7-a502-11d2-bbca-00c04f8ec294} [Protocols Handler] :HKLM ms-its=C:\WINDOWS\SYSWOW64\ITSS.DLL ### Microsoft InfoTech Storage System Library Microsoft Corporation Microsoft Wi ndows Operating System 6.3.9600.16384 [Protocols Handler] :HKLM osf=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE15 \MSOSB.DLL ### Microsoft Office 2013 component Microsoft Corporation Microsoft Office 201 3 15.0.4420.1017 [Protocols Handler] :HKLM res=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Visualizador de HTML da Microsoft (R) Microsoft Corporation Internet Explo rer 11.00.9600.16410 [Protocols Handler] :HKLM skype4com=C:\PROGRA~2\COMMON~1\SKYPE\SKYPE4~1.DLL ### Skype for COM API Skype Technologies Skype4COM 1, 0, 34, 0 [Protocols Handler] :HKLM tv=C:\WINDOWS\SYSWOW64\MSVIDCTL.DLL ### Controlo ActiveX para transmisso em fluxo de vdeo Microsoft Corporation Dire ctShow 6.05.9600.16384 [Protocols Handler] :HKLM vbscript=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Visualizador de HTML da Microsoft (R) Microsoft Corporation Internet Explo rer 11.00.9600.16410 [Proxy] :HKCU ProxyServer="" [Proxy] :HKCU ProxyEnable=0 [Network Settings] [Hosts File Path] :HKLM DataBasePath=%SystemRoot%\System32\drivers\etc [Browsers] [Installed Browsers] FIREFOX.EXE=C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\FIREFO X.EXE ### Default Browser Firefox Mozilla Corporation Firefox 25.0.1 [Installed Browsers] Google Chrome=C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLIC ATION\CHROME.EXE ### Google Chrome Google Inc. Google Chrome 31.0.1650.63 [Installed Browsers] IEXPLORE.EXE=C:\PROGRAM FILES (X86)\INTERNET EXPLORER\IEX PLORE.EXE HTTP://DO-SEARCH.COM/?TYPE=SC&TS=1385462758&FROM=SMT&UID=ST3120026AS_3 JT445YE ### Internet Explorer Microsoft Corporation Internet Explorer 11.00.9600.16384 [FireFox Components and Extensions] cloudpt@suskind=C:\Users\Paulo\AppData\Roa ming\Mozilla\Firefox\Profiles\4uxwa76v.default-1382595353770\extensions\cloudpt@

suskind.xpi ### cloudpt@suskind [FireFox Components and Extensions] jid0-2qiv5fkuGh0lTr6izdBsmkrqs5c@jetpack=C :\Users\Paulo\AppData\Roaming\Mozilla\Firefox\Profiles\4uxwa76v.default-13825953 53770\extensions\jid0-2qiv5fkuGh0lTr6izdBsmkrqs5c@jetpack\ ### jid0-2qiv5fkuGh0lTr6izdBsmkrqs5c@jetpack wareztuga streamer Files bootstra p.js page-mod.js windows.js content-proxy.js test-content-symbiont.js [FireFox Components and Extensions] {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}=C:\ Users\Paulo\AppData\Roaming\Mozilla\Firefox\Profiles\4uxwa76v.default-1382595353 770\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi ### {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [FireFox Settings] :HKLM browser.startup.homepage="" [FireFox Settings] :HKLM browser.startup.homepage_override_url="" [FireFox Settings] :HKLM browser.search.selectedEngine="" [FireFox Settings] :HKLM browser.search.defaultEnginename="" [FireFox Settings] :HKLM browser.search.defaulturl="" [FireFox Settings] :HKLM browser.newtab.url=about:blank [FireFox Settings] :HKLM keyword.URL="" [FireFox Settings] :HKLM network.proxy.autoconfig_url="" [FireFox Settings] :HKLM network.proxy.http="" [FireFox Settings] :HKLM network.proxy.http_port="" [FireFox Settings] :HKLM network.proxy.type=4 [Google Chrome Settings] :HKLM backup.homepage="" [Google Chrome Settings] :HKLM backup.session.urls_to_restore_on_startup="" [Google Chrome Settings] :HKLM default_search_provider.icon_url="http://www.go ogle.com/favicon.ico" [Google Chrome Settings] :HKLM default_search_provider.keyword="google.pt" [Google Chrome Settings] :HKLM default_search_provider.name="google" [Google Chrome Settings] :HKLM default_search_provider.search_url="{google:bas eurl}search?q={searchterms}&{google:rlz}{google:originalqueryforsuggestion}{goog le:assistedquerystats}{google:searchfieldtrialparameter}{google:bookmarkbarpinne d}{google:searchclient}{google:sourceid}{google:instantextendedenabledparameter} {google:omniboxstartmarginparameter}ie={inputencoding}" [Google Chrome Settings] :HKLM default_search_provider.suggest_url="{google:ba sesuggesturl}search?{google:searchfieldtrialparameter}client={google:suggestclie nt}&q={searchterms}&{google:cursorposition}{google:zeroprefixurl}{google:pagecla ssification}sugkey={google:suggestapikeyparameter}" [Google Chrome Settings] :HKLM homepage="" [Google Chrome Settings] :HKLM session.urls_to_restore_on_startup=[ "https://w ww.google.pt/" ] [Google Chrome Addons] aohghmighlieiainnegkcijnfilokake=C:\Users\Paulo\AppData \Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfiloka ke\\0.5_0 ### google docs: criar e editar documentos [Google Chrome Addons] apdfllckaahabafndbhieahigkjlhalf=C:\Users\Paulo\AppData \Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlha lf\\6.3_0 ### google drive: google drive: crie, partilhe e guarde todos os seus conte\u0 0fados num \u00fanico local. [Google Chrome Addons] blpcfgokakmgnkcojhhkbfbldkacnbeo=C:\Users\Paulo\AppData \Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnb eo\\4.2.6_0 ### youtube: a comunidade de v\u00eddeo on-line mais popular do mundo. [Google Chrome Addons] coobgpohoikkiipiblmjeljniedjpjpf=C:\Users\Paulo\AppData \Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpj pf\\0.0.0.20_0 ### pesquisa do google: a maneira mais r\u00e1pida de pesquisar a web. [Google Chrome Addons] gighmmpiobklfepjocnamgkkbiglidom=C:\Users\Paulo\AppData \Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglid om\\2.6.16_0

### adblock: a extens\u00e3o mais popular para o chrome, com mais de 15 milh\u 00f5es de utilizadores! bloqueia an\u00fancios por todo o lado na web. [Google Chrome Addons] hfhhnacclhffhdffklopdkcgdhifgngh=C:\Users\Paulo\AppData \Local\Google\Chrome\User Data\Default\Extensions\hfhhnacclhffhdffklopdkcgdhifgn gh\\3.1.4_0 ### c\u00e2mara: tire fotografias divertidas com a sua c\u00e2mara web. [Google Chrome Addons] jmnkhnkkgadaiomkfofgpnfanoehdmpa=C:\Users\Paulo\AppData \Local\Google\Chrome\User Data\Default\Extensions\jmnkhnkkgadaiomkfofgpnfanoehdm pa\\1.0.0.0_0 ### trace route tool: this tool is used to trace route from server to specific host address [Google Chrome Addons] kpgogfgfingilcbkpahnggpfdabapnol=C:\Users\Paulo\AppData \Local\Google\Chrome\User Data\Default\Extensions\kpgogfgfingilcbkpahnggpfdabapn ol\\1.0.102_1 ### mega: secure boot for mega [Google Chrome Addons] lfmhcpmkbdkbgbmkjoiopeeegenkdikp=C:\Users\Paulo\AppData \Local\Google\Chrome\User Data\Default\Extensions\lfmhcpmkbdkbgbmkjoiopeeegenkdi kp\\5.6.0_0 ### fvd video downloader: most popular video downloader. downloads most popula r media formats. tag and share video. [Google Chrome Addons] limlkeaboocfcfncjkkghclkjidbedem=C:\Users\Paulo\AppData \Local\Google\Chrome\User Data\Default\Extensions\limlkeaboocfcfncjkkghclkjidbed em\\1.0.12060_0 ### wevideo next: wevideo next is a showcase for video creation tools using ht ml5. works with both online and offline content. [Google Chrome Addons] nmmhkkegccagdldgiimedpiccmgmieda=C:\Users\Paulo\AppData \Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmie da\\0.0.5.0_0 ### google wallet: google wallet para conte\u00fados digitais [Google Chrome Addons] omkjapkpkiciphacnalicgmmcelfolon=C:\Users\Paulo\AppData \Local\Google\Chrome\User Data\Default\Extensions\omkjapkpkiciphacnalicgmmcelfol on\\1.0.0.1037_0 ### logmein: logmein, inc. remote access components [Google Chrome Addons] pjkljhegncpnkpknbcohdijeoejaedia=C:\Users\Paulo\AppData \Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaed ia\\7_1 ### gmail: e-mail r\u00e1pido e pesquis\u00e1vel, com menos spam. [Network Settings] [Domain Name] :HKLM Domain="" [Name Server] {B8641465-BE64-4A12-94F6-818E405FA539}=212.55.154.174,212.55.154 .190 ### Network Card:Marvell Yukon 88E8053 PCI-E Gigabit Ethernet Controller Defau ltGateway:192.168.1.254 IPAddress:192.168.1.70 [WinSock2 Components] :HKLM napinsp.dll=C:\WINDOWS\SYSTEM32\NAPINSP.DLL ### Fornecedor de Correes de Compatibilidade de Nomenclatura de Correio Eletrnico Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [WinSock2 Components] :HKLM pnrpnsp.dll=C:\WINDOWS\SYSTEM32\PNRPNSP.DLL ### Fornecedor de Espao de Nomes PNRP Microsoft Corporation Sistema operativo M icrosoft Windows 6.3.9600.16384 [WinSock2 Components] :HKLM NLAapi.dll=C:\WINDOWS\SYSTEM32\NLAAPI.DLL ### Network Location Awareness 2 Microsoft Corporation Microsoft Windows Operati ng System 6.3.9600.16384 [WinSock2 Components] :HKLM mswsock.dll=C:\WINDOWS\SYSTEM32\MSWSOCK.DLL ### Fornecedor de servios de Microsoft Windows Sockets 2.0 Microsoft Corporatio n Sistema operativo Microsoft Windows 6.3.9600.16384 [WinSock2 Components] :HKLM winrnr.dll=C:\WINDOWS\SYSTEM32\WINRNR.DLL ### LDAP RnR Provider DLL Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16384

[WinSock2 Components] :HKLM mdnsNSP.dll=C:\PROGRAM FILES (X86)\BONJOUR\MDNSNSP .DLL ### Bonjour Namespace Provider Apple Inc. Bonjour 3,0,0,10 [Software Components] [Internet Components] :HKLM C:\Program Files (x86)\Creative\Shared Files\Softw are Update\CTPID.ocx=C:\PROGRAM FILES (X86)\CREATIVE\SHARED FILES\SOFTWARE UPDAT E\CTPID.OCX ### CTPID ActiveX Control Module Creative Technology Ltd CTPID ActiveX Control Module 1.0.0.0 [Internet Components] :HKLM C:\Program Files (x86)\Creative\Shared Files\Softw are Update\CTSUEng.ocx=C:\PROGRAM FILES (X86)\CREATIVE\SHARED FILES\SOFTWARE UPD ATE\CTSUENG.OCX ### Creative Software AutoUpdate OCX Module Creative Technology Ltd Creative S oftware AutoUpdate Engine 2.0.0.0 [Internet Components] :HKLM C:\Windows\Downloaded Program Files\CTPIDPDE.ocx=C :\Windows\Downloaded Program Files\CTPIDPDE.ocx ### File is deleted or hidden by a rootkit or could not be located. [Windows Shell] [Display Scrap's Extensions] :HKLM NeverShowExt="" [ScreenSaver] :HKCU SCRNSAVE.EXE="" ### File is deleted or hidden by a rootkit or could not be located. [System.ini] shell=explorer.exe [User Shell] :HKCU shell="" [Main File Extensions] :HKLM .exe="%1" %* [Main File Extensions] :HKLM .com="%1" %* [Main File Extensions] :HKLM .pif="%1" %* [Main File Extensions] :HKLM .bat="%1" %* [Main File Extensions] :HKLM .cmd="%1" %* [Main File Extensions] :HKLM .scr="%1" /S [Main File Extensions] :HKLM .txt=%SystemRoot%\system32\NOTEPAD.EXE %1 [Main File Extensions] :HKLM .reg=regedit.exe "%1" [Main File Extensions] :HKLM .inf=%SystemRoot%\system32\NOTEPAD.EXE %1 [Main File Extensions] :HKLM .ini=%SystemRoot%\system32\NOTEPAD.EXE %1 [Main File Extensions] :HKLM .js=C:\Windows\System32\WScript.exe "%1" %* [Main File Extensions] :HKLM .vbs="%SystemRoot%\System32\WScript.exe" "%1" %* [Main File Extensions] :HKLM .vbe="%SystemRoot%\System32\WScript.exe" "%1" %* [Main File Extensions] :HKLM .msc=%SystemRoot%\system32\mmc.exe "%1" %* [Main File Extensions] :HKLM .jpg=%SystemRoot%\System32\rundll32.exe "%Program Files%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 [Main File Extensions] :HKLM .jpeg=%SystemRoot%\System32\rundll32.exe "%Progra mFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 [UserInit Value] :HKLM UserInit=userinit.exe, [Shell Services DelayLoad] :HKLM WebCheck={E6FB5E20-DE35-11CF-9C87-00AA005127E D} [System Shell Policies ] :HKCU shell="" [System Shell Policies ] :HKLM shell="" [System Shell Policies ] :HKCU run="" [System Shell Policies ] :HKLM run="" [App Paths] :HKLM ccleaner.exe=C:\Program Files\CCleaner\CCleaner64.exe ### ccleaner.exe CCleaner Piriform Ltd CCleaner 4, 08, 00, 4428 [App Paths] :HKLM chrome.exe=C:\Program Files (x86)\Google\Chrome\Application\ chrome.exe ### chrome.exe Google Chrome Google Inc. Google Chrome 31.0.1650.63 [App Paths] :HKLM cmmgr32.exe ### cmmgr32.exe [App Paths] :HKLM CTAESvc.dll=C:\Program Files (x86)\InstallShield Installatio n Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\AudELSvc\CTAESvc.dll ### CTAESvc.dll System Level Service Installer Creative Labs Creative Audio En gine [App Paths] :HKLM CTAudRun.exe=C:\Program Files (x86)\Creative\AudioCS\CTAudRu

n.exe ### CTAudRun.exe Creative Audio Console Launcher Creative Technology Ltd Creat ive Audio Console 1.0.2.0 [App Paths] :HKLM Ctcadi.dll=C:\Program Files (x86)\Creative\ShareDLL\CADI\Ctc adi.dll ### Ctcadi.dll Common Audio Driver Interface Manager Creative Technology Ltd n il 2.30.0.0 [App Paths] :HKLM CTRegSvr.exe=C:\Program Files (x86)\Creative\Shared Files\CT RegSvr.EXE ### CTRegSvr.exe CTRegSvr Creative Technology Ltd CTRegSvr 1.0.0.0 [App Paths] :HKLM dfshim.dll ### dfshim.dll [App Paths] :HKLM excel.exe=C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE ### excel.exe Microsoft Excel Microsoft Corporation Microsoft Office 2013 15.0 .4535.1507 [App Paths] :HKLM firefox.exe=C:\Program Files (x86)\Mozilla Firefox\firefox.e xe ### firefox.exe Firefox Mozilla Corporation Firefox 25.0.1 [App Paths] :HKLM IEDIAG.EXE=C:\Program Files\Internet Explorer\IEDIAGCMD.EXE ### IEDIAG.EXE Diagnostics utility for Internet Explorer Microsoft Corporation Internet Explorer 11.00.9600.16384 [App Paths] :HKLM IEDIAGCMD.EXE=C:\Program Files\Internet Explorer\IEDIAGCMD.E XE ### IEDIAGCMD.EXE Diagnostics utility for Internet Explorer Microsoft Corporat ion Internet Explorer 11.00.9600.16384 [App Paths] :HKLM IEXPLORE.EXE=C:\Program Files\Internet Explorer\IEXPLORE.EXE ### IEXPLORE.EXE Internet Explorer Microsoft Corporation Internet Explorer 11. 00.9600.16384 [App Paths] :HKLM install.exe ### install.exe [App Paths] :HKLM iTunes.exe=C:\Program Files (x86)\iTunes\iTunes.exe ### iTunes.exe iTunes Apple Inc. iTunes 11.1.3.8 [App Paths] :HKLM javaws.exe=C:\WINDOWS\SysWOW64\javaws.exe ### javaws.exe Java(TM) Web Start Launcher Oracle Corporation Java(TM) Platfor m SE 7 U45 7.0.450.18 [App Paths] :HKLM Journal.exe=%ProgramFiles%\Windows Journal\Journal.exe ### Journal.exe [App Paths] :HKLM Lync.exe=C:\Program Files\Microsoft Office\Office15\Lync.exe ### Lync.exe Microsoft Lync Microsoft Corporation Microsoft Office 2013 15.0.4 551.1005 [App Paths] :HKLM mbam.exe=C:\Program Files (x86)\Malwarebytes' Anti-Malware\m bam.exe ### mbam.exe Malwarebytes Anti-Malware Malwarebytes Corporation Malwarebytes A nti-Malware 1.75.0001 [App Paths] :HKLM mip.exe=%CommonProgramFiles%\Microsoft Shared\Ink\mip.exe ### mip.exe [App Paths] :HKLM mmg.exe=C:\Program Files (x86)\MKVToolNix\mmg.exe ### mmg.exe [App Paths] :HKLM mplayer2.exe=%ProgramFiles(x86)%\Windows Media Player\wmplay er.exe ### mplayer2.exe [App Paths] :HKLM MSACCESS.EXE=C:\PROGRA~1\MICROS~1\Office15\MSACCESS.EXE ### MSACCESS.EXE Microsoft Access Microsoft Corporation Microsoft Office 2013 15.0.4535.1507 [App Paths] :HKLM MsoHtmEd.exe ### MsoHtmEd.exe [App Paths] :HKLM msoxmled.exe=C:\Program Files\Common Files\Microsoft Shared\ OFFICE15\MSOXMLED.EXE ### msoxmled.exe Office XML Handler Microsoft Corporation Microsoft Office Inf oPath 15.0.4420.1017

[App Paths] :HKLM MSPUB.EXE=C:\PROGRA~1\MICROS~1\Office15\MSPUB.EXE ### MSPUB.EXE Microsoft Publisher Microsoft Corporation Microsoft Office 2013 15.0.4535.1507 [App Paths] :HKLM OpenSubDownloader.exe=C:\Program Files (x86)\OpenSubDownload er\OpenSubDownloader.exe ### OpenSubDownloader.exe An application to download subtitles for your movies . OpenSubDownloader 2.0.18 [App Paths] :HKLM OUTLOOK.EXE=C:\PROGRA~1\MICROS~1\Office15\OUTLOOK.EXE ### OUTLOOK.EXE Microsoft Outlook Microsoft Corporation Microsoft Outlook 15.0 .4551.1004 [App Paths] :HKLM pbrush.exe=%SystemRoot%\System32\mspaint.exe ### pbrush.exe [App Paths] :HKLM PictureViewer.exe=C:\Program Files (x86)\QuickTime\PictureVi ewer.exe ### PictureViewer.exe PictureViewer Apple Inc. QuickTime QuickTime 7.7.4 (1680 .86) [App Paths] :HKLM powerpnt.exe=C:\PROGRA~1\MICROS~1\Office15\POWERPNT.EXE ### powerpnt.exe Microsoft PowerPoint Microsoft Corporation Microsoft Office 2 013 15.0.4454.1000 [App Paths] :HKLM PowerShell.exe=%SystemRoot%\system32\WindowsPowerShell\v1.0\ PowerShell.exe ### PowerShell.exe [App Paths] :HKLM QuickTimePlayer.exe=C:\Program Files (x86)\QuickTime\QuickTi mePlayer.exe ### QuickTimePlayer.exe QuickTime Player Apple Inc. QuickTime QuickTime 7.7.4 (1680.86) [App Paths] :HKLM recuva.exe=C:\Program Files\Recuva\recuva64.exe ### recuva.exe Recuva Piriform Ltd Recuva 1.47.0.948 [App Paths] :HKLM setup.exe ### setup.exe [App Paths] :HKLM SnippingTool.exe=%SystemRoot%\system32\SnippingTool.exe ### SnippingTool.exe [App Paths] :HKLM table30.exe ### table30.exe [App Paths] :HKLM TabTip.exe=%CommonProgramFiles%\microsoft shared\ink\TabTip. exe ### TabTip.exe [App Paths] :HKLM wab.exe=%ProgramFiles%\Windows Mail\wab.exe ### wab.exe [App Paths] :HKLM wabmig.exe=%ProgramFiles%\Windows Mail\wabmig.exe ### wabmig.exe [App Paths] :HKLM WinRAR.exe=C:\Program Files\WinRAR\WinRAR.exe ### WinRAR.exe WinRAR archiver Alexander Roshal WinRAR 4.20.0 [App Paths] :HKLM Winword.exe=C:\PROGRA~1\MICROS~1\Office15\WINWORD.EXE ### Winword.exe Microsoft Word Microsoft Corporation Microsoft Office 2013 15. 0.4535.1507 [App Paths] :HKLM wmplayer.exe=%ProgramFiles(x86)%\Windows Media Player\wmplay er.exe ### wmplayer.exe [App Paths] :HKLM WORDPAD.EXE=C:\PROGRAM FILES (X86)\WINDOWS NT\ACCESSORIES\WO RDPAD.EXE ### WORDPAD.EXE Aplicao WordPad do Windows Microsoft Corporation Sistema operati vo Microsoft Windows 6.3.9600.16384 [App Paths] :HKLM WRITE.EXE="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE " ### WRITE.EXE [Prevents Display in Control Panel from running.] :HKCU NoDispCpl=0 [Disable Registry Tools] :HKCU DisableRegistryTools =0 [Print Monitors] :HKLM Local Port=C:\WINDOWS\SYSTEM32\LOCALSPL.DLL ### DLL do spooler local Microsoft Corporation Sistema operativo Microsoft Wind

ows 6.3.9600.16384 [Print Monitors] :HKLM LogMeIn Printer Port Monitor=C:\WINDOWS\SYSTEM32\LMIPOR T.DLL ### RemotelyAnywhere Printer Port Monitor LogMeIn, Inc. RemotelyAnywhere 11.0. 3194 [Print Monitors] :HKLM Standard TCP/IP Port=C:\WINDOWS\SYSTEM32\TCPMON.DLL ### DLL do monitor da porta de TCP/IP padro Microsoft Corporation Sistema opera tivo Microsoft Windows 6.3.9600.16384 [Print Monitors] :HKLM USB Monitor=C:\WINDOWS\SYSTEM32\USBMON.DLL ### DLL do Monitor de Portas de Impresso Dinmicas Padro Microsoft Corporation Sis tema operativo Microsoft Windows 6.3.9600.16384 [Print Monitors] :HKLM WSD Port=C:\WINDOWS\SYSTEM32\WSDMON.DLL ### Monitor da Porta de Impresso WSD Microsoft Corporation Sistema operativo Mi crosoft Windows 6.3.9600.16384 [Shell Icon Overlay Handlers] :HKLM SkyDrivePro1 (ErrorConflict)=C:\PROGRA~2\ MICROS~1\OFFICE15\GROOVEEX.DLL ### Microsoft SkyDrive Pro Extensions Microsoft Corporation Microsoft Office 2 013 15.0.4551.1005 [Shell Icon Overlay Handlers] :HKLM SkyDrivePro2 (SyncInProgress)=C:\PROGRA~2 \MICROS~1\OFFICE15\GROOVEEX.DLL ### Microsoft SkyDrive Pro Extensions Microsoft Corporation Microsoft Office 2 013 15.0.4551.1005 [Shell Icon Overlay Handlers] :HKLM SkyDrivePro3 (InSync)=C:\PROGRA~2\MICROS~ 1\OFFICE15\GROOVEEX.DLL ### Microsoft SkyDrive Pro Extensions Microsoft Corporation Microsoft Office 2 013 15.0.4551.1005 [Shell Icon Overlay Handlers] :HKLM StorageProviderError=C:\WINDOWS\SYSWOW64\S HELL32.DLL ### DLL comum da shell do Windows Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Shell Icon Overlay Handlers] :HKLM StorageProviderSyncing=C:\WINDOWS\SYSWOW64 \SHELL32.DLL ### DLL comum da shell do Windows Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Context Menu Handlers] :HKLM BriefcaseMenu=C:\WINDOWS\SYSTEM32\SYNCUI.DLL ### 'Porta-documentos' do Windows Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Context Menu Handlers] :HKLM Open With=C:\WINDOWS\SYSTEM32\SHELL32.DLL ### DLL comum da shell do Windows Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Context Menu Handlers] :HKLM Open With EncryptionMenu=C:\WINDOWS\SYSTEM32\SHE LL32.DLL ### DLL comum da shell do Windows Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Context Menu Handlers] :HKLM PhotoStreamsExt=C:\PROGRAM FILES (X86)\COMMON FI LES\APPLE\INTERNET SERVICES\SHELLSTREAMS.DLL ### Apple Photostreams UI Shell Extension Apple Inc. iCloud Control Panel [Context Menu Handlers] :HKLM Sharing=C:\WINDOWS\SYSTEM32\NTSHRUI.DLL ### Extenses da shell para partilha Microsoft Corporation Sistema operativo Mic rosoft Windows 6.3.9600.16384 [Context Menu Handlers] :HKLM WinRAR={B41DB860-64E4-11D2-9906-E49FADC173CA} [Context Menu Handlers] :HKLM WinRAR32=C:\PROGRAM FILES\WINRAR\RAREXT32.DLL ### WinRAR shell extension Alexander Roshal WinRAR 4.20.0 [Context Menu Handlers] :HKLM WorkFolders={E61BF828-5E63-4287-BEF1-60B1A4FDE0E 3} [Context Menu Handlers] :HKLM {90AA3A4E-1CBA-4233-B8BB-535773D48449}=C:\WINDOW S\SYSTEM32\SHELL32.DLL ### DLL comum da shell do Windows Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Kernel Auto Boot]

[ActiveSetup] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95}=C:\WINDOWS\SYSTEM32\UNRE GMP2.EXE ### Utilitrio de configurao do Microsoft Windows Media Player Microsoft Corporati on Sistema operativo Microsoft Windows 12.0.9600.16384 [Svchost DLLs] :HKLM CertPropSvc=C:\WINDOWS\SYSTEM32\CERTPROP.DLL ### Servio de Propagao de Certificados de Smart Card da Microsoft Microsoft Corpo ration Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM SCPolicySvc=C:\WINDOWS\SYSTEM32\CERTPROP.DLL ### Servio de Propagao de Certificados de Smart Card da Microsoft Microsoft Corpo ration Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM lanmanserver=C:\WINDOWS\SYSTEM32\SRVSVC.DLL ### DLL do Servio de Servidor Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM gpsvc=C:\WINDOWS\SYSTEM32\GPSVC.DLL ### Cliente de Poltica de Grupo Microsoft Corporation Sistema operativo Microso ft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM iphlpsvc=C:\WINDOWS\SYSTEM32\IPHLPSVC.DLL ### Servio que oferece conectividade IPv6 numa rede IPv4. Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM msiscsi=C:\WINDOWS\SYSTEM32\ISCSIEXE.DLL ### Servio de Deteo iSCSI Microsoft Corporation Sistema operativo Microsoft Window s 6.3.9600.16384 [Svchost DLLs] :HKLM schedule=C:\WINDOWS\SYSTEM32\SCHEDSVC.DLL ### Servio Programador de Tarefas Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM winmgmt=C:\WINDOWS\SYSTEM32\WBEM\WMISVC.DLL ### WMI Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM SessionEnv=C:\WINDOWS\SYSTEM32\SESSENV.DLL ### Servio de Configurao do Ambiente de Trabalho Remoto Microsoft Corporation Sis tema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM FastUserSwitchingCompatibility [Svchost DLLs] :HKLM Ias [Svchost DLLs] :HKLM Irmon [Svchost DLLs] :HKLM Nla [Svchost DLLs] :HKLM Ntmssvc [Svchost DLLs] :HKLM NWCWorkstation [Svchost DLLs] :HKLM Nwsapagent [Svchost DLLs] :HKLM Rasauto=C:\WINDOWS\SYSTEM32\RASAUTO.DLL ### Gestor de Marcao Automtica de Acesso Remoto Microsoft Corporation Sistema ope rativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM Rasman=C:\WINDOWS\SYSTEM32\RASMANS.DLL ### Gestor de Ligao de Acesso Remoto Microsoft Corporation Sistema operativo Mic rosoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM Remoteaccess=C:\WINDOWS\SYSTEM32\MPRDIM.DLL ### Gestor de Interfaces Dinmicas Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM SENS=C:\WINDOWS\SYSTEM32\SENS.DLL ### Servio de Notificao de Eventos do Sistema (SENS) Microsoft Corporation Sistem a operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM Sharedaccess=C:\WINDOWS\SYSTEM32\IPNATHLP.DLL ### Componentes do Microsoft NAT Helper Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM SRService [Svchost DLLs] :HKLM Tapisrv=C:\WINDOWS\SYSTEM32\TAPISRV.DLL ### Servidor de telefonia Microsoft Windows(TM) Microsoft Corporation Sistema o perativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM Wmi [Svchost DLLs] :HKLM WmdmPmSp [Svchost DLLs] :HKLM wuauserv=C:\WINDOWS\SYSTEM32\WUAUENG.DLL

### Windows Update Agent Microsoft Corporation Sistema operativo Microsoft Wind ows 7.9.9600.16384 [Svchost DLLs] :HKLM BITS=C:\WINDOWS\SYSTEM32\QMGR.DLL ### Servio de transferncia inteligente em segundo plano Microsoft Corporation Si stema operativo Microsoft Windows 7.7.9600.16384 [Svchost DLLs] :HKLM ShellHWDetection=C:\WINDOWS\SYSTEM32\SHSVCS.DLL ### DLL de servios da shell do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM LogonHours [Svchost DLLs] :HKLM PCAudit [Svchost DLLs] :HKLM helpsvc [Svchost DLLs] :HKLM uploadmgr [Svchost DLLs] :HKLM AppMgmt=C:\WINDOWS\SYSTEM32\APPMGMTS.DLL ### Servio de instalao de software Microsoft Corporation Sistema operativo Micros oft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM ScDeviceEnum=C:\WINDOWS\SYSTEM32\SCDEVICEENUM.DLL ### Servio de Enumerao de Dispositivos Smart Card Microsoft Corporation Sistema O perativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM WiaRpc=C:\WINDOWS\SYSTEM32\WIARPC.DLL ### DLL de Cliente RPC de Aquisio de Imagens do Windows Microsoft Corporation Si stema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM AudioEndpointBuilder=C:\WINDOWS\SYSTEM32\AUDIOENDPOINTBUI LDER.DLL ### Construtor de Ponto Final de udio do Windows Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM dot3svc=C:\WINDOWS\SYSTEM32\DOT3SVC.DLL ### Servio de Configurao Automtica com Fios Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM StorSvc=C:\WINDOWS\SYSTEM32\STORSVC.DLL ### Servios de Armazenamento Microsoft Corporation Sistema Operativo Microsoft W indows 6.3.9600.16384 [Svchost DLLs] :HKLM Netman=C:\WINDOWS\SYSTEM32\NETMAN.DLL ### Gestor de ligaes de rede Microsoft Corporation Sistema operativo Microsoft Wi ndows 6.3.9600.16384 [Svchost DLLs] :HKLM DeviceAssociationService=C:\WINDOWS\SYSTEM32\DAS.DLL ### Servio de Associao de Dispositivos Microsoft Corporation Sistema Operativo Mi crosoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM WPDBusEnum=C:\WINDOWS\SYSTEM32\WPDBUSENUM.DLL ### Enumerador de Dispositivos Portteis Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM wlansvc=C:\WINDOWS\SYSTEM32\WLANSVC.DLL ### DLL do Servio de Configurao Automtica WLAN do Windows Microsoft Corporation Si stema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM WinHttpAutoProxySvc=C:\WINDOWS\SYSTEM32\WINHTTP.DLL ### Servios HTTP do Windows Microsoft Corporation Sistema operativo Microsoft Wi ndows 6.3.9600.16384 [Svchost DLLs] :HKLM netprofm=C:\WINDOWS\SYSTEM32\NETPROFMSVC.DLL ### Gestor de Listas de Redes Microsoft Corporation Sistema Operativo Microsof t Windows 6.3.9600.16384 [Svchost DLLs] :HKLM RemoteRegistry=C:\WINDOWS\SYSTEM32\REGSVC.DLL ### Servio de Registo Remoto Microsoft Corporation Sistema operativo Microsoft W indows 6.3.9600.16384 [Svchost DLLs] :HKLM WebClient=C:\WINDOWS\SYSTEM32\WEBCLNT.DLL ### Web DAV Service DLL Microsoft Corporation Sistema operativo Microsoft Windo ws 6.3.9600.16384 [Svchost DLLs] :HKLM StiSvc=C:\WINDOWS\SYSTEM32\WIASERVC.DLL ### Servio de dispositivos de imagem esttica Microsoft Corporation Sistema opera tivo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM PLA=C:\WINDOWS\SYSTEM32\PLA.DLL ### Alertas e Registos de Desempenho Microsoft Corporation Sistema operativo M

icrosoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM smphost=C:\WINDOWS\SYSTEM32\SMPHOST.DLL ### Storage Management Provider (SMP) host service Microsoft Corporation Micro soft Windows Operating System 6.3.9600.16384 [Svchost DLLs] :HKLM RpcSs=C:\WINDOWS\SYSTEM32\RPCSS.DLL ### Distributed COM Services Microsoft Corporation Microsoft Windows Operating S ystem 6.3.9600.16384 [Svchost DLLs] :HKLM AudioSrv=C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL ### Servio de udio do Windows Microsoft Corporation Sistema operativo Microsoft W indows 6.3.9600.16384 [Svchost DLLs] :HKLM wscsvc=C:\WINDOWS\SYSTEM32\WSCSVC.DLL ### Servio de Centro de Segurana do Windows Microsoft Corporation Sistema operat ivo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM LmHosts=C:\WINDOWS\SYSTEM32\LMHSVC.DLL ### DLL dos Servios de Transporte NetBios de TCPIP Microsoft Corporation Sistem a operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM WPCSvc=C:\WINDOWS\SYSTEM32\WPCSVC.DLL ### Servio de Filtragem WPC Microsoft Corporation Sistema Operativo Microsoft Wi ndows 6.3.9600.16384 [Svchost DLLs] :HKLM WcsPlugInService=C:\WINDOWS\SYSTEM32\WCSPLUGINSERVICE.DLL ### DLL WcsPlugInService Microsoft Corporation Sistema operativo Microsoft Wind ows 6.3.9600.16384 [Svchost DLLs] :HKLM SSDPSRV=C:\WINDOWS\SYSTEM32\SSDPSRV.DLL ### DLL do Servio SSDP Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM upnphost=C:\WINDOWS\SYSTEM32\UPNPHOST.DLL ### Anfitrio de dispositivo UPnP Microsoft Corporation Sistema operativo Micros oft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM SCardSvr=C:\WINDOWS\SYSTEM32\SCARDSVR.DLL ### Servidor de Gesto de Recursos de Smart Card Microsoft Corporation Sistema O perativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM BthHFSrv [Svchost DLLs] :HKLM QWAVE=C:\WINDOWS\SYSTEM32\QWAVE.DLL ### Windows NT Microsoft Corporation Sistema operativo Microsoft Windows 6.3.960 0.16384 [Svchost DLLs] :HKLM wcncsvc=C:\WINDOWS\SYSTEM32\WCNCSVC.DLL ### Servio Windows Connect Now - Registo de Configurao Microsoft Corporation Sist ema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM PlugPlay=C:\WINDOWS\SYSTEM32\UMPNPMGR.DLL ### Servio plug-and-play do modo de utilizador Microsoft Corporation Sistema op erativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM DcomLaunch=C:\WINDOWS\SYSTEM32\RPCSS.DLL ### Distributed COM Services Microsoft Corporation Microsoft Windows Operating S ystem 6.3.9600.16384 [Svchost DLLs] :HKLM DeviceInstall=C:\WINDOWS\SYSTEM32\UMPNPMGR.DLL ### Servio plug-and-play do modo de utilizador Microsoft Corporation Sistema op erativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM CryptSvc=C:\WINDOWS\SYSTEM32\CRYPTSVC.DLL ### Servios de Criptografia Microsoft Corporation Sistema operativo Microsoft Wi ndows 6.3.9600.16384 [Svchost DLLs] :HKLM NapAgent=C:\WINDOWS\SYSTEM32\QAGENTRT.DLL ### Run-Time do Servio Agente de Quarentena Microsoft Corporation Sistema opera tivo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM WinRM=C:\WINDOWS\SYSTEM32\WSMSVC.DLL ### Servio WSMan Microsoft Corporation Sistema operativo Microsoft Windows 6.3.96 00.16384 [Svchost DLLs] :HKLM WECSVC=C:\WINDOWS\SYSTEM32\WECSVC.DLL ### Servio de Colecionador de Eventos Microsoft Corporation Sistema operativo M icrosoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM DHCP=C:\WINDOWS\SYSTEM32\DHCPCORE.DLL

### Servio de Cliente DHCP Microsoft Corporation Sistema Operativo Microsoft Win dows 6.3.9600.16384 [Svchost DLLs] :HKLM TermService=C:\WINDOWS\SYSTEM32\TERMSRV.DLL ### Gestor de Ligaes Remotas do Servidor de Anfitrio de Sesses de Ambiente de Trab alho Remoto Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.163 84 [Svchost DLLs] :HKLM DNSCache=C:\WINDOWS\SYSTEM32\DNSRSLVR.DLL ### Servio de resoluo de cache DNS Microsoft Corporation Sistema operativo Micros oft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM AeLookupSvc=C:\WINDOWS\SYSTEM32\AELUPSVC.DLL ### Servio Experincia de Aplicao Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM AppIDSvc=C:\WINDOWS\SYSTEM32\APPIDSVC.DLL ### Servio de Identidade de Aplicao Microsoft Corporation Sistema Operativo Micro soft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM Appinfo=C:\WINDOWS\SYSTEM32\APPINFO.DLL ### Servio de Informaes sobre Aplicaes Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM AppReadiness=C:\WINDOWS\SYSTEM32\APPREADINESS.DLL ### AppReadiness Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9 600.16384 [Svchost DLLs] :HKLM AxInstSV=C:\WINDOWS\SYSTEM32\AXINSTSV.DLL ### Servio ActiveX Installer Microsoft Corporation Sistema operativo Microsoft W indows 6.3.9600.16384 [Svchost DLLs] :HKLM BDESVC=C:\WINDOWS\SYSTEM32\BDESVC.DLL ### Servio BDE Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600 .16384 [Svchost DLLs] :HKLM BFE=C:\WINDOWS\SYSTEM32\BFE.DLL ### Motor de Filtragem Base Microsoft Corporation Sistema operativo Microsoft W indows 6.3.9600.16384 [Svchost DLLs] :HKLM BrokerInfrastructure=C:\WINDOWS\SYSTEM32\BISRV.DLL ### Servio de Infraestrutura de Tarefas em Segundo Plano Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM Browser=C:\WINDOWS\SYSTEM32\BROWSER.DLL ### DLL do Browser de Computador Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM bthserv=C:\WINDOWS\SYSTEM32\BTHSERV.DLL ### Suporte Tcnico de Bluetooth Microsoft Corporation Sistema operativo Microso ft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM CscService=C:\WINDOWS\SYSTEM32\CSCSVC.DLL ### DLL do Servio CSC Microsoft Corporation Sistema operativo Microsoft Windows 6 .3.9600.16384 [Svchost DLLs] :HKLM defragsvc=C:\WINDOWS\SYSTEM32\DEFRAGSVC.DLL ### Microsoft\Otimizador de Unidades Microsoft Corporation Sistema Operativo M icrosoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM DPS=C:\WINDOWS\SYSTEM32\DPS.DLL ### Servio de Polticas de Diagnstico de WDI Microsoft Corporation Sistema operati vo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM DsmSvc=C:\WINDOWS\SYSTEM32\DEVICESETUPMANAGER.DLL ### Gestor de Configurao de Dispositivos Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM Eaphost=C:\WINDOWS\SYSTEM32\EAPSVC.DLL ### Servio EAPHost da Microsoft Microsoft Corporation Sistema operativo Microso ft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM EFS=C:\WINDOWS\SYSTEM32\EFSSVC.DLL ### Servio EFS Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600 .16384 [Svchost DLLs] :HKLM EventSystem=C:\WINDOWS\SYSTEM32\ES.DLL ### COM+ Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384

[Svchost DLLs] :HKLM fdPHost=C:\WINDOWS\SYSTEM32\FDPHOST.DLL ### Servio de anfitrio de Fornecedor de Deteo de Funes Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM FDResPub=C:\WINDOWS\SYSTEM32\FDRESPUB.DLL ### Servio de Publicao de Recursos de Deteo de Funes Microsoft Corporation Sistema o erativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM fhsvc=C:\WINDOWS\SYSTEM32\FHSVC.DLL ### Servio de Histrico de Ficheiros Microsoft Corporation Sistema Operativo Micr osoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM FontCache=C:\WINDOWS\SYSTEM32\FNTCACHE.DLL ### Servio de Cache de Tipos de Letra do Windows Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM hidserv=C:\WINDOWS\SYSTEM32\HIDSERV.DLL ### Servio do Dispositivo de Interface Humana Microsoft Corporation Sistema ope rativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM hkmsvc=C:\WINDOWS\SYSTEM32\KMSVC.DLL ### Key Management Service Microsoft Corporation Sistema operativo Microsoft Wi ndows 6.3.9600.16384 [Svchost DLLs] :HKLM HomeGroupListener=C:\WINDOWS\SYSTEM32\LISTSVC.DLL ### Grupo Domstico do Windows Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM HomeGroupProvider=C:\WINDOWS\SYSTEM32\PROVSVC.DLL ### Grupo Domstico do Windows Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM IKEEXT=C:\WINDOWS\SYSTEM32\IKEEXT.DLL ### Extenso IKE Microsoft Corporation Sistema operativo Microsoft Windows 6.3.960 0.16384 [Svchost DLLs] :HKLM KeyIso=C:\WINDOWS\SYSTEM32\KEYISO.DLL ### Servio de Isolamento da Chave CNG Microsoft Corporation Sistema operativo M icrosoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM KtmRm=C:\WINDOWS\SYSTEM32\MSDTCKRM.DLL ### Microsoft Distributed Transaction Coordinator OLE Transactions KTM Resourc e Manager DLL Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16 384 [Svchost DLLs] :HKLM LanmanWorkstation=C:\WINDOWS\SYSTEM32\WKSSVC.DLL ### DLL do Servio de Estao de Trabalho Microsoft Corporation Sistema operativo Mi crosoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM lfsvc=C:\WINDOWS\SYSTEM32\GEOFENCEMONITORSERVICE.DLL ### Servio de Arquitetura de Localizao do Windows Microsoft Corporation Sistema O perativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM lltdsvc=C:\WINDOWS\SYSTEM32\LLTDSVC.DLL ### Link-Layer Topology Mapper Service Microsoft Corporation Microsoft Windows O perating System 6.3.9600.16384 [Svchost DLLs] :HKLM LSM=C:\WINDOWS\SYSTEM32\LSM.DLL ### Servio do Gestor de Sesses Locais Microsoft Corporation Sistema operativo Mi crosoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM MMCSS=C:\WINDOWS\SYSTEM32\MMCSS.DLL ### Servio do Programador de Classes de Multimdia Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM MpsSvc=C:\WINDOWS\SYSTEM32\MPSSVC.DLL ### Servio de Proteo da Microsoft Microsoft Corporation Sistema Operativo Microso ft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM MsKeyboardFilter=C:\WINDOWS\SYSTEM32\KEYBOARDFILTERSVC.DL L ### SvcHost Service for Microsoft Keyboard Filter Microsoft Corporation Micros oft Windows Operating System 6.3.9600.16384 [Svchost DLLs] :HKLM NcaSvc=C:\WINDOWS\SYSTEM32\NCASVC.DLL ### Servio do Assistente de Conectividade da Rede da Microsoft Microsoft Corpor ation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM NcbService=C:\WINDOWS\SYSTEM32\NCBSERVICE.DLL

### Mediador de Ligaes de Rede Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM NcdAutoSetup=C:\WINDOWS\SYSTEM32\NCDAUTOSETUP.DLL ### DLL do servio Configurao Automtica de Dispositivos Ligados Rede Microsoft Corp oration Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM Netlogon=C:\WINDOWS\SYSTEM32\NETLOGON.DLL ### DLL de servio de incio de sesso de rede Microsoft Corporation Sistema operati vo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM NlaSvc=C:\WINDOWS\SYSTEM32\NLASVC.DLL ### Deteo Automtica da Localizao na Rede 2 Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM nsi=C:\WINDOWS\SYSTEM32\NSISVC.DLL ### Servidor RPC da Interface de Arquivo de Rede Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM p2pimsvc=C:\WINDOWS\SYSTEM32\PNRPSVC.DLL ### DLL do Servio PNRP Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM p2psvc=C:\WINDOWS\SYSTEM32\P2PSVC.DLL ### Servios Ponto a Ponto Microsoft Corporation Sistema operativo Microsoft Wind ows 6.3.9600.16384 [Svchost DLLs] :HKLM PcaSvc=C:\WINDOWS\SYSTEM32\PCASVC.DLL ### Servio Auxiliar de Compatibilidade de Programas Microsoft Corporation Siste ma operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM PolicyAgent=C:\WINDOWS\SYSTEM32\IPSECSVC.DLL ### DLL do Servidor SPD IPsec do Windows Microsoft Corporation Sistema operati vo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM Power=C:\WINDOWS\SYSTEM32\UMPO.DLL ### Servio de Energia de Modo do Utilizador Microsoft Corporation Sistema Opera tivo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM PrintNotify=C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\X64\3\PRINT CONFIG.DLL ### Interface de Utilizador PrintConfig Microsoft Corporation Sistema Operativ o Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM ProfSvc=C:\WINDOWS\SYSTEM32\PROFSVC.DLL ### ProfSvc Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.1 6384 [Svchost DLLs] :HKLM RpcEptMapper=C:\WINDOWS\SYSTEM32\RPCEPMAP.DLL ### Mapeador de Pontos Finais RPC Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM seclogon=C:\WINDOWS\SYSTEM32\SECLOGON.DLL ### DLL secundria de servio de incio de sesso Microsoft Corporation Sistema Operat ivo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM SensrSvc=C:\WINDOWS\SYSTEM32\SENSRSVC.DLL ### Servio de Monitorizao de Sensores do Microsoft Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM SstpSvc=C:\WINDOWS\SYSTEM32\SSTPSVC.DLL ### Fornece a capacidade de utilizar o protocolo SSTP (Secure Socket Tunneling Protocol) para ligar a computadores remotos (atravs de VPN). Microsoft Corporati on Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM svsvc=C:\WINDOWS\SYSTEM32\SVSVC.DLL ### Microsoft\Verificador de Pontos Microsoft Corporation Sistema Operativo Mi crosoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM swprv=C:\WINDOWS\SYSTEM32\SWPRV.DLL ### Fornecedor de software do servio de cpia sombra de volumes da Microsoft Micro soft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM SysMain=C:\WINDOWS\SYSTEM32\SYSMAIN.DLL ### Anfitrio do Servio Super Fetch Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM SystemEventsBroker=C:\WINDOWS\SYSTEM32\SYSTEMEVENTSBROKER SERVER.DLL

### Mediador de Eventos de Sistema Microsoft Corporation Sistema Operativo Mic rosoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM TabletInputService=C:\WINDOWS\SYSTEM32\TABSVC.DLL ### Servio do Painel de Escrita Manual e do Teclado Ttil da Microsoft Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM Themes=C:\WINDOWS\SYSTEM32\THEMESERVICE.DLL ### DLL de Servios de Tema da Shell do Windows Microsoft Corporation Sistema op erativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM THREADORDER=C:\WINDOWS\SYSTEM32\MMCSS.DLL ### Servio do Programador de Classes de Multimdia Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM TimeBroker=C:\WINDOWS\SYSTEM32\TIMEBROKERSERVER.DLL ### Mediador de Eventos de Tempo Microsoft Corporation Sistema Operativo Micro soft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM TrkWks=C:\WINDOWS\SYSTEM32\TRKWKS.DLL ### Cliente de Distributed Link Tracking Microsoft Corporation Sistema operati vo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM UmRdpService=C:\WINDOWS\SYSTEM32\UMRDP.DLL ### Servio Redirector de Dispositivos dos Servios de Ambiente de Trabalho Remoto Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM VaultSvc=C:\WINDOWS\SYSTEM32\VAULTSVC.DLL ### Servio Gestor de Credenciais Microsoft Corporation Sistema Operativo Micros oft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM vmicguestinterface=C:\WINDOWS\SYSTEM32\ICSVC.DLL ### Virtual Machine Integration Component Service Microsoft Corporation Micros oft Windows Operating System 6.3.9600.16384 [Svchost DLLs] :HKLM vmicheartbeat=C:\WINDOWS\SYSTEM32\ICSVC.DLL ### Virtual Machine Integration Component Service Microsoft Corporation Micros oft Windows Operating System 6.3.9600.16384 [Svchost DLLs] :HKLM vmickvpexchange=C:\WINDOWS\SYSTEM32\ICSVC.DLL ### Virtual Machine Integration Component Service Microsoft Corporation Micros oft Windows Operating System 6.3.9600.16384 [Svchost DLLs] :HKLM vmicrdv=C:\WINDOWS\SYSTEM32\ICSVC.DLL ### Virtual Machine Integration Component Service Microsoft Corporation Micros oft Windows Operating System 6.3.9600.16384 [Svchost DLLs] :HKLM vmicshutdown=C:\WINDOWS\SYSTEM32\ICSVC.DLL ### Virtual Machine Integration Component Service Microsoft Corporation Micros oft Windows Operating System 6.3.9600.16384 [Svchost DLLs] :HKLM vmictimesync=C:\WINDOWS\SYSTEM32\ICSVC.DLL ### Virtual Machine Integration Component Service Microsoft Corporation Micros oft Windows Operating System 6.3.9600.16384 [Svchost DLLs] :HKLM vmicvss=C:\WINDOWS\SYSTEM32\ICSVC.DLL ### Virtual Machine Integration Component Service Microsoft Corporation Micros oft Windows Operating System 6.3.9600.16384 [Svchost DLLs] :HKLM W32Time=C:\WINDOWS\SYSTEM32\W32TIME.DLL ### Windows Time Service Microsoft Corporation Microsoft Windows Operating Syste m 6.3.9600.16384 [Svchost DLLs] :HKLM WbioSrvc=C:\WINDOWS\SYSTEM32\WBIOSRVC.DLL ### Servio de Biometria do Windows Microsoft Corporation Sistema Operativo Micr osoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM Wcmsvc=C:\WINDOWS\SYSTEM32\WCMSVC.DLL ### DLL do Servio Gestor de Ligaes do Windows Microsoft Corporation Sistema Opera tivo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM WdiServiceHost=C:\WINDOWS\SYSTEM32\WDI.DLL ### Infraestrutura de Diagnstico do Windows Microsoft Corporation Sistema opera tivo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM WdiSystemHost=C:\WINDOWS\SYSTEM32\WDI.DLL ### Infraestrutura de Diagnstico do Windows Microsoft Corporation Sistema opera tivo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM WEPHOSTSVC=C:\WINDOWS\SYSTEM32\WEPHOSTSVC.DLL

### Servio Anfitrio de WEP Microsoft Corporation Sistema Operativo Microsoft Wind ows 6.3.9600.16384 [Svchost DLLs] :HKLM wercplsupport=C:\WINDOWS\SYSTEM32\WERCPLSUPPORT.DLL ### Relatrios e Solues de Problemas Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM WerSvc=C:\WINDOWS\SYSTEM32\WERSVC.DLL ### Servio Relatrio de Erros do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM wlidsvc=C:\WINDOWS\SYSTEM32\WLIDSVC.DLL ### Servio Conta Microsoft Microsoft Corporation Sistema Operativo Microsoft Wind ows 6.3.9600.16384 [Svchost DLLs] :HKLM workfolderssvc=C:\WINDOWS\SYSTEM32\WORKFOLDERSSVC.DLL ### Servio de Pastas de Trabalho da Microsoft (C) Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM WSService=C:\WINDOWS\SYSTEM32\WSSERVICE.DLL ### Servio de Loja Windows Microsoft Corporation Sistema Operativo Microsoft Win dows 6.3.9600.16384 [Svchost DLLs] :HKLM wudfsvc=C:\WINDOWS\SYSTEM32\WUDFSVC.DLL ### Windows Driver Foundation - Servio do User Mode Driver Framework Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Svchost DLLs] :HKLM WwanSvc=C:\WINDOWS\SYSTEM32\WWANSVC.DLL ### Servio de Configurao Automtica WWAN Microsoft Corporation Sistema Operativo Mi crosoft Windows 08.01.9600.16384 [Bootexecute] :HKLM BootExecute=autocheck autochk * Partizan [Winlogon System] :HKLM system="" ### File is deleted or hidden by a rootkit or could not be located. [Winlogon System] :HKLM taskman="" ### File is deleted or hidden by a rootkit or could not be located. [Winlogon System] :HKLM UIHost="" ### File is deleted or hidden by a rootkit or could not be located. [Winlogon Autostart] :HKLM VmApplet=SystemPropertiesPerformance.exe /pagefile [Winlogon Autostart] :HKLM AppSetup="" [Environment - Path] :HKLM Path=C:\Program Files (x86)\NVIDIA Corporation\Phys X\Common;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\Syst em32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\QuickTime\QTSystem\ [List of Injected DLLs] :HKLM AppInit_DLLs="" [LSA Notification Packages] :HKLM scecli=C:\WINDOWS\SYSTEM32\SCECLI.DLL ### scecli Motor cliente do editor de configurao de proteo do Windows Microsoft Co rporation Sistema operativo Microsoft Windows 6.3.9600.16384 [LSA Security Packages] :HKLM kerberos=C:\WINDOWS\SYSTEM32\KERBEROS.DLL ### kerberos Pacote de segurana Kerberos Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384 [LSA Security Packages] :HKLM msv1_0=C:\WINDOWS\SYSTEM32\MSV1_0.DLL ### msv1_0 Microsoft Authentication Package v1.0 Microsoft Corporation Microso ft Windows Operating System 6.3.9600.16384 [LSA Security Packages] :HKLM schannel=C:\WINDOWS\SYSTEM32\SCHANNEL.DLL ### schannel Fornecedor de Segurana TLS/SSL Microsoft Corporation Sistema Opera tivo Microsoft Windows 6.3.9600.16384 [LSA Security Packages] :HKLM wdigest=C:\WINDOWS\SYSTEM32\WDIGEST.DLL ### wdigest Microsoft Digest Access Microsoft Corporation Microsoft Windows Oper ating System 6.3.9600.16384 [LSA Security Packages] :HKLM tspkg=C:\WINDOWS\SYSTEM32\TSPKG.DLL ### tspkg Web Service Security Package Microsoft Corporation Microsoft Windows O perating System 6.3.9600.16384 [LSA Security Packages] :HKLM pku2u=C:\WINDOWS\SYSTEM32\PKU2U.DLL ### pku2u Pku2u Security Package Microsoft Corporation Microsoft Windows Operati ng System 6.3.9600.16384 [LSA Security Packages] :HKLM livessp=C:\WINDOWS\SYSTEM32\LIVESSP.DLL ### livessp Live Security Package Microsoft Corporation Microsoft Windows Operat

ing System 6.3.9600.16408 [Auto Services] Apple Mobile Device ### Internal Name: Apple Mobile Device. Status: service is running. Actual Fil e: "C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileD eviceService.exe" * Provides the interface to Apple mobile devices. MobileDevice Service Apple Inc. 3.3.0.0 [Auto Services] AudioEndpointBuilder ### Internal Name: AudioEndpointBuilder. Status: service is running. Actual Fi le: C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted * Efetua a g esto de dispositivos de udio para o servio udio do Windows. Se este servio for parado , os dispositivos e efeitos de udio no funcionaro corretamente. Se este servio for d esativado, quaisquer servios que dependam explicitamente do mesmo no sero iniciados Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] Audiosrv ### Internal Name: Audiosrv. Status: service is running. Actual File: C:\WINDO WS\System32\svchost.exe -k LocalServiceNetworkRestricted * Efetua a gesto de udio para programas baseados no Windows. Se este servio for parado, os dispositivos d e udio e efeitos no vo funcionar corretamente. Se este servio for desativado, quais quer servios que dependam explicitamente do mesmo no vo conseguir arrancar Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] BFE ### Internal Name: BFE. Status: service is running. Actual File: C:\WINDOWS\sy stem32\svchost.exe -k LocalServiceNoNetwork * O Motor de Filtragem Base (BFE) um servio que gere as polticas da firewall e do protocolo IPsec e implementa a filtr agem do modo de utilizador. Parar ou desativar o servio BFE ir reduzir significati vamente a segurana do sistema, resultando igualmente na imprevisibilidade do comp ortamento de aplicaes de gesto de IPsec e de firewall. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.1638 4 [Auto Services] BITS ### Internal Name: BITS. Status: service is running. Actual File: C:\WINDOWS\S ystem32\svchost.exe -k netsvcs * Transfere ficheiros em segundo plano utilizando largura de banda de rede inativa. Se o servio estiver desativado, as funes que dep enderem do servio BITS, como o Windows Update ou o MSN Explorer, no conseguiro tran sferir automaticamente programas e outras informaes. Processo Anfitrio dos Servios d o Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384

[Auto Services] Bonjour Service ### Internal Name: Bonjour Service. Status: service is running. Actual File: " C:\Program Files\Bonjour\mDNSResponder.exe" * Permite a configurao na rede e deteco automtica de dispositivos e servios. Bonjour Service Apple Inc. Bonjour 3,0,0,10 [Auto Services] BrokerInfrastructure ### Internal Name: Bonjour Service. Status: service is running. Actual File: " C:\Program Files\Bonjour\mDNSResponder.exe" * Permite a configurao na rede e deteco automtica de dispositivos e servios. Bonjour Service Apple Inc. Bonjour 3,0,0,10 [Auto Services] CryptSvc ### Internal Name: CryptSvc. Status: service is running. Actual File: C:\WINDO WS\system32\svchost.exe -k NetworkService * Fornece trs servios de gesto: o Servio d e Catlogo de Bases de Dados, que confirma as assinaturas de ficheiros do Windows e permite a instalao de novos programas; o Servio de Proteo de Raiz, que adiciona e r emove certificados de Autoridade de Certificao de Raiz Fidedigna deste computador e o Servio de Atualizao de Certificados de Raiz Automtico, que obtm certificados de r aiz do Windows Update e permite cenrios como SSL. Se este servio for parado, estes servios de gesto no funcionaro corretamente. Se este servio for desativado, no ser po svel iniciar nenhum dos servios que dele dependam explicitamente. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6 .3.9600.16384 [Auto Services] CscService

### Internal Name: CscService. Status: service is running. Actual File: C:\WIN DOWS\System32\svchost.exe -k LocalSystemNetworkRestricted * O servio de Ficheiros Offline executa atividades de manuteno na cache de Ficheiros Offline, responda a eventos de incio de sesso e de fim de sesso do utilizador, implementa servios intern os da API pblica e distribui eventos interessantes aos que esto interessados nas a tividades dos Ficheiros Offline e alteraes no estado da cache. Processo Anfitrio do s Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3. 9600.16384 [Auto Services] CTAudSvcService ### Internal Name: CTAudSvcService. Status: service is running. Actual File: C :\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe * Creative Audio Servi ce Creative Technology Ltd Creative Audio Service 1.0.0.0 [Auto Services] DcomLaunch ### Internal Name: CTAudSvcService. Status: service is running. Actual File: C :\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe * Creative Audio Servi ce Creative Technology Ltd Creative Audio Service 1.0.0.0 [Auto Services] DeviceAssociationService ### Internal Name: DeviceAssociationService. Status: service is running. Actua l File: C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted * Permit e o emparelhamento entre o sistema e dispositivos com ou sem fios. Processo Anfi trio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windo ws 6.3.9600.16384 [Auto Services] Dhcp ### Internal Name: Dhcp. Status: service is running. Actual File: C:\WINDOWS\s ystem32\svchost.exe -k LocalServiceNetworkRestricted * Regista e atualiza endereo s IP e registos de DNS para este computador. Se este servio for parado, este comp utador no receber endereos IP dinmicos e atualizaes de DNS. Se este servio for desativ do, quaisquer servios que dependam explicitamente do mesmo no vo conseguir iniciar. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] Dnscache ### Internal Name: Dnscache. Status: service is running. Actual File: C:\WINDO WS\system32\svchost.exe -k NetworkService * O servio Cliente DNS (dnscache) coloc a em cache os nomes DNS (Sistema de Nomes de Domnio) e regista o nome de computad or completo para este computador. Se o servio estiver parado, os nomes DNS contin uam a ser resolvidos. No entanto, os resultados das consultas de nomes DNS no so c olocados em cache e o nome do computador no registado. Se o servio estiver desativ ado, quaisquer servios que dependam explicitamente dele no sero iniciados. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] DPS ### Internal Name: Dnscache. Status: service is running. Actual File: C:\WINDO WS\system32\svchost.exe -k NetworkService * O servio Cliente DNS (dnscache) coloc a em cache os nomes DNS (Sistema de Nomes de Domnio) e regista o nome de computad or completo para este computador. Se o servio estiver parado, os nomes DNS contin uam a ser resolvidos. No entanto, os resultados das consultas de nomes DNS no so c olocados em cache e o nome do computador no registado. Se o servio estiver desativ ado, quaisquer servios que dependam explicitamente dele no sero iniciados. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] EFS ### Internal Name: Dnscache. Status: service is running. Actual File: C:\WINDO WS\system32\svchost.exe -k NetworkService * O servio Cliente DNS (dnscache) coloc a em cache os nomes DNS (Sistema de Nomes de Domnio) e regista o nome de computad or completo para este computador. Se o servio estiver parado, os nomes DNS contin uam a ser resolvidos. No entanto, os resultados das consultas de nomes DNS no so c olocados em cache e o nome do computador no registado. Se o servio estiver desativ ado, quaisquer servios que dependam explicitamente dele no sero iniciados. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384

[Auto Services] EventLog ### Internal Name: EventLog. Status: service is running. Actual File: C:\WINDO WS\System32\svchost.exe -k LocalServiceNetworkRestricted * Este servio gere event os e registos de eventos. Suporta registo, consulta e subscrio de eventos, arquivo de registos de eventos e gesto de metadados de eventos. Pode apresentar eventos no formato XML e texto simples. A interrupo deste servio poder comprometer a segurana e fiabilidade do sistema. Processo Anfitrio dos Servios do Windows Microsoft Corp oration Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] EventSystem ### Internal Name: EventSystem. Status: service is running. Actual File: C:\WI NDOWS\system32\svchost.exe -k LocalService * Suporta o servio de notificao de event os do sistema (SENS), que fornece a distribuio automtica de eventos para subscrever componentes Component Object Model (COM). Se o servio for parado, o SENS ser ence rrado e no poder fornecer notificaes de incio e de fim de sesso. Se este servio for de ativado, quaisquer servios que dependam explicitamente do mesmo no conseguiro ser i nicializados. Processo Anfitrio dos Servios do Windows Microsoft Corporation Siste ma operativo Microsoft Windows 6.3.9600.16384 [Auto Services] FontCache ### Internal Name: FontCache. Status: service is running. Actual File: C:\WIND OWS\system32\svchost.exe -k LocalService * Otimiza o desempenho das aplicaes, colo cando em cache dados de tipos de letra mais frequentemente utilizados. Se este s ervio ainda no estiver em execuo, as aplicaes iro inici-lo. possvel desativ-lo, m degradar o desempenho das aplicaes. Processo Anfitrio dos Servios do Windows Microso ft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] gpsvc ### Internal Name: FontCache. Status: service is running. Actual File: C:\WIND OWS\system32\svchost.exe -k LocalService * Otimiza o desempenho das aplicaes, colo cando em cache dados de tipos de letra mais frequentemente utilizados. Se este s ervio ainda no estiver em execuo, as aplicaes iro inici-lo. possvel desativ-lo, m degradar o desempenho das aplicaes. Processo Anfitrio dos Servios do Windows Microso ft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] gupdate ### Internal Name: gupdate. Status: service stopped. Actual File: "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc * Mantm o software Google atuali zado. Se este servio for desactivado ou interrompido, o software Google no ficar at ualizado, o que significa que no ser possvel corrigir eventuais vulnerabilidades de segurana e as funcionalidades podero no funcionar. Esta tarefa desinstala-se quand o no est a ser utilizada por nenhum software Google. Instalador do Google Google I nc. Google Update 1.3.21.103 [Auto Services] IKEEXT ### Internal Name: IKEEXT. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k netsvcs * O servio IKEEXT aloja os mdulos de criao de chave s IKE (Internet Key Exchange) e AuthIP (Authenticated Internet Protocol). Estes mdulos de criao de chaves so utilizados para autenticao e troca de chaves no protocolo IPsec. Parar ou desativar o servio IKEEXT desativar a troca de chaves IKE e AuthI P com outros computadores numa rede ponto a ponto. O IPsec normalmente configura do para utilizar IKE ou AuthIP, pelo que a paragem ou desativao do servio IKEEXT po der resultar numa falha do IPsec e comprometer a segurana do sistema. Recomendamos vivamente que tenha o servio IKEEXT em execuo. Processo Anfitrio dos Servios do Wind ows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] iphlpsvc ### Internal Name: iphlpsvc. Status: service is running. Actual File: C:\WINDO WS\System32\svchost.exe -k NetSvcs * Fornece conectividade de tnel utilizando tec nologias de transio IPv6 (6to4, ISATAP, Proxy de Porta e Teredo) e IP-HTTPS. Se es te servio estiver parado, o computador no usufruir das vantagens de conectividade a vanada oferecidas por estas tecnologias. Processo Anfitrio dos Servios do Windows M icrosoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] LanmanServer ### Internal Name: LanmanServer. Status: service is running. Actual File: C:\W INDOWS\system32\svchost.exe -k netsvcs * Suporta a partilha de ficheiros, de imp

resso e de pipes com nome sobre a rede para este computador. Se este servio estive r parado, estas funes no estaro disponveis. Se este servio estiver desativado, quaisqu er servios que dependam dele explicitamente no sero iniciados. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9 600.16384 [Auto Services] LanmanWorkstation ### Internal Name: LanmanWorkstation. Status: service is running. Actual File: C:\WINDOWS\System32\svchost.exe -k NetworkService * Cria e mantm ligaes de rede cl iente aos servidores remotos atravs do protocolo SMB. Se este servio for parado, e stas ligaes no estaro disponveis. Se este servio for desativado, no ser possvel inic enhum dos servios que dele dependam explicitamente. Processo Anfitrio dos Servios d o Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384

[Auto Services] lmhosts ### Internal Name: lmhosts. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k LocalServiceNetworkRestricted * Fornece suporte para o servio NetBIOS por TCP/IP (NetBT) e a resoluo de nomes NetBIOS para clientes na re de, permitindo assim aos utilizadores partilhar ficheiros, imprimir e iniciar se sso na rede. Se este servio for parado, estas funes podero no estar disponveis. Se est servio for desativado, quaisquer servios que dependam explicitamente do mesmo no vo conseguir iniciar. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] LMIGuardianSvc ### Internal Name: LMIGuardianSvc. Status: service is running. Actual File: "C :\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe" * Support LogMeIn processe s with quality assurance feedback LMIGuardianSvc LogMeIn, Inc. LMIGuardianSvc 10 .1.1622 [Auto Services] LMIMaint ### Internal Name: LMIMaint. Status: service is running. Actual File: "C:\Prog ram Files (x86)\LogMeIn\x64\RaMaint.exe" * LogMeIn Maintenance Service LogMeIn, Inc. LogMeIn 4.1.3430 [Auto Services] LogMeIn ### Internal Name: LogMeIn. Status: service is running. Actual File: "C:\Progr am Files (x86)\LogMeIn\x64\LogMeIn.exe" * LogMeIn LogMeIn, Inc. LogMeIn 4.1.156 0 [Auto Services] LSM ### Internal Name: LogMeIn. Status: service is running. Actual File: "C:\Progr am Files (x86)\LogMeIn\x64\LogMeIn.exe" * LogMeIn LogMeIn, Inc. LogMeIn 4.1.156 0 [Auto Services] MBAMScheduler ### Internal Name: MBAMScheduler. Status: service is running. Actual File: "C: \Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe" * Malwarebyte s Anti-Malware scheduler Malwarebytes Anti-Malware Malwarebytes Corporation Malw arebytes Anti-Malware 1.70.0.0000 [Auto Services] MBAMService ### Internal Name: MBAMService. Status: service is running. Actual File: "C:\P rogram Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe" * Malwarebytes An ti-Malware service Malwarebytes Anti-Malware Malwarebytes Corporation Malwarebyt es Anti-Malware 1.70.0.0000 [Auto Services] MMCSS ### Internal Name: MMCSS. Status: service is running. Actual File: C:\WINDOWS\ system32\svchost.exe -k netsvcs * Permite a definio de prioridades relativas do tr abalho com base nas prioridades de tarefas em todo o sistema. Destina-se princip almente a aplicaes de multimdia. Se este servio for parado, as tarefas individuais recorrem respetiva prioridade predefinida. Processo Anfitrio dos Servios do Window s Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] MpsSvc ### Internal Name: MpsSvc. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k LocalServiceNoNetwork * A Firewall do Windows ajuda a p roteger o computador impedindo os utilizadores no autorizados de obterem acesso a

o computador atravs de uma rede ou da Internet. Processo Anfitrio dos Servios do Wi ndows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] NlaSvc ### Internal Name: NlaSvc. Status: service is running. Actual File: C:\WINDOWS \System32\svchost.exe -k NetworkService * Recolhe e armazena informaes de configur ao para a rede e notifica programas quando estas informaes so modificadas. Se este se rvio for parado, as informaes de configurao podero ficar indisponveis. Se este servio r desativado, quaisquer servios que dependam explicitamente dele no iro iniciar. Pr ocesso Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Mic rosoft Windows 6.3.9600.16384 [Auto Services] nsi ### Internal Name: nsi. Status: service is running. Actual File: C:\WINDOWS\sy stem32\svchost.exe -k LocalService * Este servio fornece notificaes de rede (por ex .: adio/eliminao de interfaces, etc.) aos clientes de modo de utilizador. A paragem deste servio ir causar perda de conectividade de rede. Se este servio for desativad o, quaisquer servios que dependam explicitamente dele no iro arrancar. Processo Anf itrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Wind ows 6.3.9600.16384 [Auto Services] NvNetworkService ### Internal Name: NvNetworkService. Status: service is running. Actual File: "C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe" * NV IDIA Network Service NVIDIA Network Service NVIDIA Corporation NVIDIA Network Se rvice 1"."0"."0"."1 [Auto Services] NvStreamSvc ### Internal Name: NvStreamSvc. Status: service is running. Actual File: "C:\P rogram Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" * Service for SHIEL D Streaming NVIDIA Streamer Service NVIDIA Corporation NVIDIA Streamer 1.6.75.0 [Auto Services] nvsvc ### Internal Name: nvsvc. Status: service is running. Actual File: "C:\WINDOWS \system32\nvvsvc.exe" * Provides system and desktop level support to the NVIDIA display driver NVIDIA Driver Helper Service, Version 331.82 NVIDIA Corporation N VIDIA Driver Helper Service, Version 331.82 8.17.13.3182 [Auto Services] PcaSvc ### Internal Name: PcaSvc. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k LocalSystemNetworkRestricted * Este servio fornece supor te para o PCA (Program Compatibility Assistant). O PCA monitoriza os programas i nstalados e executados pelo utilizador e deteta problemas de compatibilidade con hecidos. Se este servio for parado, o PCA no funcionar corretamente. Processo Anfit rio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Window s 6.3.9600.16384 [Auto Services] Power ### Internal Name: Power. Status: service is running. Actual File: C:\WINDOWS\ system32\svchost.exe -k DcomLaunch * Gere polticas de energia e a entrega de noti ficaes de poltica de energia. Processo Anfitrio dos Servios do Windows Microsoft Corp oration Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] ProfSvc ### Internal Name: ProfSvc. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k netsvcs * Este servio responsvel pelo carregamento e des carregamento de perfis de utilizador. Se este servio for parado ou desativado, os utilizadores deixaro de conseguir iniciar ou terminar sesso com xito, as aplicaes po dero ter problemas na obteno de dados dos utilizadores e os componentes registados para receber notificaes de eventos de perfil no as recebero. Processo Anfitrio dos Se rvios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600 .16384 [Auto Services] RpcEptMapper ### Internal Name: ProfSvc. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k netsvcs * Este servio responsvel pelo carregamento e des carregamento de perfis de utilizador. Se este servio for parado ou desativado, os utilizadores deixaro de conseguir iniciar ou terminar sesso com xito, as aplicaes po dero ter problemas na obteno de dados dos utilizadores e os componentes registados

para receber notificaes de eventos de perfil no as recebero. Processo Anfitrio dos Se rvios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600 .16384 [Auto Services] RpcSs ### Internal Name: ProfSvc. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k netsvcs * Este servio responsvel pelo carregamento e des carregamento de perfis de utilizador. Se este servio for parado ou desativado, os utilizadores deixaro de conseguir iniciar ou terminar sesso com xito, as aplicaes po dero ter problemas na obteno de dados dos utilizadores e os componentes registados para receber notificaes de eventos de perfil no as recebero. Processo Anfitrio dos Se rvios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600 .16384 [Auto Services] SamSs ### Internal Name: SamSs. Status: service is running. Actual File: C:\WINDOWS\ system32\lsass.exe * O arranque deste servio indica aos restantes servios que o Ge stor de Contas de Segurana (SAM) est pronto para aceitar pedidos. Se desativar est e servio, impedir que os outros servios do sistema sejam notificados quando o SAM e stiver pronto, o que poder impedir que esses servios sejam iniciados corretamente. Este servio no deve ser desativado. Local Security Authority Process Microsoft Co rporation Microsoft Windows Operating System 6.3.9600.16384 [Auto Services] Schedule ### Internal Name: SamSs. Status: service is running. Actual File: C:\WINDOWS\ system32\lsass.exe * O arranque deste servio indica aos restantes servios que o Ge stor de Contas de Segurana (SAM) est pronto para aceitar pedidos. Se desativar est e servio, impedir que os outros servios do sistema sejam notificados quando o SAM e stiver pronto, o que poder impedir que esses servios sejam iniciados corretamente. Este servio no deve ser desativado. Local Security Authority Process Microsoft Co rporation Microsoft Windows Operating System 6.3.9600.16384 [Auto Services] SENS ### Internal Name: SENS. Status: service is running. Actual File: C:\WINDOWS\s ystem32\svchost.exe -k netsvcs * Monitoriza eventos do sistema e notifica os sub scritores do Sistema de Eventos do COM+ acerca destes eventos. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6. 3.9600.16384 [Auto Services] ShellHWDetection ### Internal Name: ShellHWDetection. Status: service is running. Actual File: C:\WINDOWS\System32\svchost.exe -k netsvcs * Fornece notificaes para eventos de ha rdware de reproduo automtica. Processo Anfitrio dos Servios do Windows Microsoft Cor poration Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] simptcp ### Internal Name: simptcp. Status: service is running. Actual File: C:\WINDOW S\System32\tcpsvcs.exe * Suporta os seguintes servios TCP/IP: Gerador de Caratere s, Hora, Rejeitar, Eco e Citao do Dia. TCP/IP Services Application Microsoft Corpo ration Microsoft Windows Operating System 6.3.9600.16384 [Auto Services] Spooler ### Internal Name: Spooler. Status: service is running. Actual File: C:\WINDOW S\System32\spoolsv.exe * Este servio efetua spool das tarefas de impresso e proces sa a interao com a impressora. Se desativar este servio, no poder imprimir ou ver as impressoras. Spooler SubSystem App Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Auto Services] sppsvc ### Internal Name: Spooler. Status: service is running. Actual File: C:\WINDOW S\System32\spoolsv.exe * Este servio efetua spool das tarefas de impresso e proces sa a interao com a impressora. Se desativar este servio, no poder imprimir ou ver as impressoras. Spooler SubSystem App Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Auto Services] Stereo Service ### Internal Name: Stereo Service. Status: service is running. Actual File: "C :\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" * Provides s ystem support for NVIDIA Stereoscopic 3D driver Stereo Vision Control Panel API

Server NVIDIA Corporation Stereo Vision Control Panel API Server 7.17.13.3182 [Auto Services] stisvc ### Internal Name: stisvc. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k imgsvc * Fornece servios de aquisio de imagem para scanner s e cmaras Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema o perativo Microsoft Windows 6.3.9600.16384 [Auto Services] SysMain ### Internal Name: SysMain. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k LocalSystemNetworkRestricted * Mantm e melhora o desemp enho do sistema ao longo do tempo. Processo Anfitrio dos Servios do Windows Micros oft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] SystemEventsBroker ### Internal Name: SysMain. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k LocalSystemNetworkRestricted * Mantm e melhora o desemp enho do sistema ao longo do tempo. Processo Anfitrio dos Servios do Windows Micros oft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] Themes ### Internal Name: Themes. Status: service is running. Actual File: C:\WINDOWS \System32\svchost.exe -k netsvcs * Fornece a gesto de temas por parte dos utiliza dores. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema oper ativo Microsoft Windows 6.3.9600.16384 [Auto Services] TrkWks ### Internal Name: TrkWks. Status: service is running. Actual File: C:\WINDOWS \System32\svchost.exe -k LocalSystemNetworkRestricted * Mantm as ligaes entre fiche iros NTFS num computador ou entre computadores numa rede. Processo Anfitrio dos S ervios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.960 0.16384 [Auto Services] Wcmsvc ### Internal Name: Wcmsvc. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k LocalServiceNetworkRestricted * Toma decises relativas a operaes de ligar/desligar automticas baseadas nas opes de conectividade de rede disp onveis atualmente para o PC e permite a gesto da conectividade de rede baseada nas definies da Poltica de Grupo. Processo Anfitrio dos Servios do Windows Microsoft Cor poration Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] WinDefend ### Internal Name: Wcmsvc. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k LocalServiceNetworkRestricted * Toma decises relativas a operaes de ligar/desligar automticas baseadas nas opes de conectividade de rede disp onveis atualmente para o PC e permite a gesto da conectividade de rede baseada nas definies da Poltica de Grupo. Processo Anfitrio dos Servios do Windows Microsoft Cor poration Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] Winmgmt ### Internal Name: Winmgmt. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k netsvcs * Fornece uma interface comum e modelo de obje to para aceder a informao de gesto de acesso acerca do sistema operativo, dispositi vos, aplicaes e servios. Se este servio for parado, a maioria do software baseado em Windows no ir funcionar corretamente. Se este servio estiver desativado, quaisquer servios que dependam explicitamente dele no conseguiro iniciar. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6. 3.9600.16384 [Auto Services] WlanSvc ### Internal Name: WlanSvc. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k LocalSystemNetworkRestricted * O servio WLANSVC fornece a lgica necessria para configurar, detetar, ligar a e desligar de uma rede local sem fios (WLAN), tal como definido pelas normas IEEE 802.11. Contm tambm uma lgica que torna o seu computador num ponto de acesso de software, para que outros comp utadores ou dispositivos possam estabelecer ligao com o seu computador sem fios ut ilizando uma placa WLAN que consegue suportar este tipo de ligao. Se parar ou des ativar o servio WLANSVC far com que todas as placas WLAN do seu computador fiquem inacessveis a partir da IU de rede do Windows. Recomendamos vivamente que tenha o

servio WLANSVC em execuo se o seu computador tiver uma placa WLAN. Processo Anfitr io dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] WMPNetworkSvc ### Internal Name: WMPNetworkSvc. Status: service stopped. Actual File: "C:\Pr ogram Files\Windows Media Player\wmpnetwk.exe" * Partilha bibliotecas do Windows Media Player com outros leitores da rede e com dispositivos multimdia que utiliz em Universal Plug and Play Servio de Partilha de Rede do Windows Media Player Mic rosoft Corporation Sistema operativo Microsoft Windows 12.0.9600.16384 [Auto Services] wscsvc ### Internal Name: wscsvc. Status: service is running. Actual File: C:\WINDOWS \System32\svchost.exe -k LocalServiceNetworkRestricted * O servio WSCSVC (Centro de Segurana do Windows) monitoriza e reporta definies de estado de funcionamento da segurana do computador. As definies de estado de funcionamento incluem a firewall (ligada/desligada), antivrus (ativado/desativado/desatualizado), anti-spyware (at ivado/desativado/desatualizado), Windows Update (transferir e instalar atualizaes automaticamente/manualmente), Controlo de Conta de Utilizador (ativado/desativad o) e definies da Internet (recomendadas/no recomendadas). O servio fornece APIs COM para que os fabricantes independentes de software (ISV) registem o estado dos se us produtos no servio Centro de Segurana. A IU do Centro de Ao (AC) utiliza o servio para proporcionar alertas no systray e uma vista grfica dos estados de funcioname nto da segurana no painel de controlo do AC. A Proteo de Acesso Rede (NAP) utiliza o servio para reportar os estados de funcionamento da segurana de clientes ao Serv idor de Polticas de Rede NAP para tomada de decises relativas a quarentena de rede . O servio tambm tem uma API pblica que permite aos consumidores externos obter o e stado de funcionamento da segurana agregado do sistema atravs de programao. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Auto Services] wuauserv ### Internal Name: wuauserv. Status: service is running. Actual File: C:\WINDO WS\system32\svchost.exe -k netsvcs * Ativa a deteo, transferncia e instalao de atuali zaes para o Windows e outros programas. Se este servio estiver desativado, os utili zadores deste computador no podero utilizar o Windows Update ou a respetiva funcio nalidade de atualizao automtica e os programas no podero utilizar a API Windows Updat e Agent (WUA). Processo Anfitrio dos Servios do Windows Microsoft Corporation Sist ema operativo Microsoft Windows 6.3.9600.16384 [Drivers] ntoskrnl.exe=C:\WINDOWS\SYSTEM32\NTOSKRNL.EXE ### NT Kernel & System Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16422 [Drivers] hal.dll=C:\WINDOWS\SYSTEM32\HAL.DLL ### Hardware Abstraction Layer DLL Microsoft Corporation Microsoft Windows Opera ting System 6.3.9600.16408 [Drivers] kd.dll=C:\WINDOWS\SYSTEM32\KD.DLL ### Local Kernel Debugger Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16384 [Drivers] mcupdate_GenuineIntel.dll=C:\WINDOWS\SYSTEM32\MCUPDATE_GENUINEINTEL. DLL ### Intel Microcode Update Library Microsoft Corporation Microsoft Windows Opera ting System 6.3.9600.16384 [Drivers] werkernel.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WERKERNEL.SYS ### Windows Error Reporting Kernel Driver Microsoft Corporation Microsoft Windo ws Operating System 6.3.9600.16384 [Drivers] CLFS.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\CLFS.SYS ### Common Log File System Driver Microsoft Corporation Microsoft Windows Operat ing System 6.3.9600.16384 [Drivers] tm.sys=C:\WINDOWS\SYSTEM32\DRIVERS\TM.SYS ### Kernel Transaction Manager Driver Microsoft Corporation Microsoft Windows Op erating System 6.3.9600.16384 [Drivers] PSHED.dll=C:\WINDOWS\SYSTEM32\PSHED.DLL ### Controlador de Erros de Hardware Especficos da Plataforma Microsoft Corpora

tion Sistema operativo Microsoft Windows 6.3.9600.16384 [Drivers] BOOTVID.dll=C:\WINDOWS\SYSTEM32\BOOTVID.DLL ### VGA Boot Driver Microsoft Corporation Microsoft Windows Operating System 6.3 .9600.16384 [Drivers] CI.dll=C:\WINDOWS\SYSTEM32\CI.DLL ### Code Integrity Module (Test) Microsoft Corporation Microsoft Windows Operati ng System 6.3.9600.16384 [Drivers] msrpc.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MSRPC.SYS ### Kernel Remote Procedure Call Provider Microsoft Corporation Microsoft Windo ws Operating System 6.3.9600.16384 [Drivers] Wdf01000.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WDF01000.SYS ### RunTime da Estrutura de Controladores de Modo de Kernel Microsoft Corporat ion Sistema operativo Microsoft Windows 1.13.9600.16384 [Drivers] WDFLDR.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\WDFLDR.SYS ### Kernel Mode Driver Framework Loader Microsoft Corporation Microsoft Windows Operating System 1.13.9600.16384 [Drivers] acpiex.sys=C:\WINDOWS\SYSTEM32\DRIVERS\ACPIEX.SYS ### ACPIEx Driver Microsoft Corporation Microsoft Windows Operating System 6.3.9 600.16384 [Drivers] WppRecorder.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WPPRECORDER.SYS ### WPP Trace Recorder Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] ACPI.sys=C:\WINDOWS\SYSTEM32\DRIVERS\ACPI.SYS ### Controlador ACPI para NT Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Drivers] WMILIB.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\WMILIB.SYS ### WMILIB WMI support library Dll Microsoft Corporation Microsoft Windows Opera ting System 6.3.9600.16384 [Drivers] cng.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CNG.SYS ### Kernel Cryptography, Next Generation Microsoft Corporation Microsoft Window s Operating System 6.3.9600.16384 [Drivers] msisadrv.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MSISADRV.SYS ### ISA Driver Microsoft Corporation Microsoft Windows Operating System 6.3.9600 .16384 [Drivers] pci.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PCI.SYS ### Enumerador de NT Plug and Play PCI Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Drivers] vdrvroot.sys=C:\WINDOWS\SYSTEM32\DRIVERS\VDRVROOT.SYS ### Virtual Drive Root Enumerator Microsoft Corporation Microsoft Windows Operat ing System 6.3.9600.16384 [Drivers] pdc.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PDC.SYS ### Power Dependency Coordinator Driver Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] partmgr.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PARTMGR.SYS ### Partition Management Driver Microsoft Corporation Microsoft Windows Operatin g System 6.3.9600.16384 [Drivers] spaceport.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SPACEPORT.SYS ### Storage Spaces Driver Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16384 [Drivers] volmgr.sys=C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGR.SYS ### Volume Manager Driver Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16384 [Drivers] volmgrx.sys=C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGRX.SYS ### Controlador de Extenso do Gestor de Volumes Microsoft Corporation Sistema O perativo Microsoft Windows 6.3.9600.16384 [Drivers] intelide.sys=C:\WINDOWS\SYSTEM32\DRIVERS\INTELIDE.SYS ### Intel PCI IDE Driver Microsoft Corporation Microsoft Windows Operating Syste m 6.3.9600.16384 [Drivers] PCIIDEX.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDEX.SYS ### PCI IDE Bus Driver Extension Microsoft Corporation Microsoft Windows Operati

ng System 6.3.9600.16384 [Drivers] mountmgr.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MOUNTMGR.SYS ### Gestor de Ponto de Montagem Microsoft Corporation Sistema Operativo Micros oft Windows 6.3.9600.16384 [Drivers] atapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\ATAPI.SYS ### ATAPI IDE Miniport Driver Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] ataport.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\ATAPORT.SYS ### ATAPI Driver Extension Microsoft Corporation Microsoft Windows Operating Sys tem 6.3.9600.16384 [Drivers] storahci.sys=C:\WINDOWS\SYSTEM32\DRIVERS\STORAHCI.SYS ### MS AHCI Storport Miniport Driver Microsoft Corporation Microsoft Windows Ope rating System 6.3.9600.16384 [Drivers] storport.sys=C:\WINDOWS\SYSTEM32\DRIVERS\STORPORT.SYS ### Microsoft Storage Port Driver Microsoft Corporation Microsoft Windows Operat ing System 6.3.9600.16384 [Drivers] fltmgr.sys=C:\WINDOWS\SYSTEM32\DRIVERS\FLTMGR.SYS ### Gestor de Filtros de Sistema de Ficheiros da Microsoft Microsoft Corporati on Sistema operativo Microsoft Windows 6.3.9600.16384 [Drivers] fileinfo.sys=C:\WINDOWS\SYSTEM32\DRIVERS\FILEINFO.SYS ### FileInfo Filter Driver Microsoft Corporation Microsoft Windows Operating Sys tem 6.3.9600.16384 [Drivers] WdFilter.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WDFILTER.SYS ### Microsoft antimalware file system filter driver Microsoft Corporation Micr osoft Windows Operating System 4.3.9600.16384 [Drivers] Ntfs.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NTFS.SYS ### Controlador de Sistema de Ficheiros NT Microsoft Corporation Sistema opera tivo Microsoft Windows 6.3.9600.16384 [Drivers] ksecdd.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KSECDD.SYS ### Kernel Security Support Provider Interface Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16408 [Drivers] pcw.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PCW.SYS ### Performance Counters for Windows Driver Microsoft Corporation Microsoft Win dows Operating System 6.3.9600.16384 [Drivers] Fs_Rec.sys=C:\WINDOWS\SYSTEM32\DRIVERS\FS_REC.SYS ### File System Recognizer Driver Microsoft Corporation Microsoft Windows Operat ing System 6.3.9600.16384 [Drivers] ndis.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDIS.SYS ### NDIS (Network Driver Interface Specification) Microsoft Corporation Sistem a Operativo Microsoft Windows 6.3.9600.16384 [Drivers] NETIO.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\NETIO.SYS ### Network I/O Subsystem Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16384 [Drivers] ksecpkg.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KSECPKG.SYS ### Kernel Security Support Provider Interface Packages Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] tcpip.sys=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS ### Controlador TCP/IP Microsoft Corporation Sistema Operativo Microsoft Window s 6.3.9600.16384 [Drivers] fwpkclnt.sys=C:\WINDOWS\SYSTEM32\DRIVERS\FWPKCLNT.SYS ### FWP/IPsec Kernel-Mode API Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] wfplwfs.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WFPLWFS.SYS ### WFP NDIS 6.30 Lightweight Filter Driver Microsoft Corporation Microsoft Win dows Operating System 6.3.9600.16384 [Drivers] fvevol.sys=C:\WINDOWS\SYSTEM32\DRIVERS\FVEVOL.SYS ### BitLocker Drive Encryption Driver Microsoft Corporation Microsoft Windows Op erating System 6.3.9600.16384 [Drivers] volsnap.sys=C:\WINDOWS\SYSTEM32\DRIVERS\VOLSNAP.SYS ### Controlador de cpia sombra do volume Microsoft Corporation Sistema operativ

o Microsoft Windows 6.3.9600.16384 [Drivers] rdyboost.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RDYBOOST.SYS ### ReadyBoost Driver Microsoft Corporation Microsoft Windows Operating System 6 .3.9600.16427 [Drivers] mup.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MUP.SYS ### Multiple UNC Provider Driver Microsoft Corporation Microsoft Windows Operati ng System 6.3.9600.16384 [Drivers] intelpep.sys=C:\WINDOWS\SYSTEM32\DRIVERS\INTELPEP.SYS ### Intel Power Engine Plugin Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16423 [Drivers] disk.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DISK.SYS ### PnP Disk Driver Microsoft Corporation Microsoft Windows Operating System 6.3 .9600.16384 [Drivers] CLASSPNP.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\CLASSPNP.SYS ### SCSI Class System Dll Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16384 [Drivers] crashdmp.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CRASHDMP.SYS ### Crash Dump Driver Microsoft Corporation Microsoft Windows Operating System 6 .3.9600.16384 [Drivers] Null.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\NULL.SYS ### NULL Driver Microsoft Corporation Microsoft Windows Operating System 6.3.960 0.16384 [Drivers] Beep.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\BEEP.SYS ### BEEP Driver Microsoft Corporation Microsoft Windows Operating System 6.3.960 0.16384 [Drivers] BasicRender.sys=C:\WINDOWS\SYSTEM32\DRIVERS\BASICRENDER.SYS ### Microsoft Basic Render Driver Microsoft Corporation Microsoft Windows Operat ing System 6.3.9600.16384 [Drivers] dxgkrnl.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DXGKRNL.SYS ### DirectX Graphics Kernel Microsoft Corporation Microsoft Windows Operating Sy stem 6.3.9600.16438 [Drivers] watchdog.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WATCHDOG.SYS ### Watchdog Driver Microsoft Corporation Microsoft Windows Operating System 6.3 .9600.16384 [Drivers] dxgmms1.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DXGMMS1.SYS ### DirectX Graphics MMS Microsoft Corporation Microsoft Windows Operating Syste m 6.3.9600.16419 [Drivers] BasicDisplay.sys=C:\WINDOWS\SYSTEM32\DRIVERS\BASICDISPLAY.SYS ### Microsoft Basic Display Driver Microsoft Corporation Microsoft Windows Opera ting System 6.3.9600.16384 [Drivers] lmimirr.sys=C:\WINDOWS\SYSTEM32\DRIVERS\LMIMIRR.SYS ### LogMeIn Mirror Miniport Driver LogMeIn, Inc. LogMeIn 2.50.596 [Drivers] VIDEOPRT.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\VIDEOPRT.SYS ### Video Port Driver Microsoft Corporation Microsoft Windows Operating System 6 .3.9600.16384 [Drivers] Npfs.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\NPFS.SYS ### NPFS Driver Microsoft Corporation Microsoft Windows Operating System 6.3.960 0.16384 [Drivers] Msfs.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\MSFS.SYS ### Mailslot driver Microsoft Corporation Microsoft Windows Operating System 6.3 .9600.16384 [Drivers] tdx.sys=C:\WINDOWS\SYSTEM32\DRIVERS\TDX.SYS ### TDI Translation Driver Microsoft Corporation Microsoft Windows Operating Sys tem 6.3.9600.16384 [Drivers] TDI.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\TDI.SYS ### TDI Wrapper Microsoft Corporation Microsoft Windows Operating System 6.3.960 0.16384 [Drivers] netbt.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS ### MBT Transport driver Microsoft Corporation Microsoft Windows Operating Syste m 6.3.9600.16384

[Drivers] afd.sys=C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS ### Controlador de Funo Auxiliar para Winsock Microsoft Corporation Sistema oper ativo Microsoft Windows 6.3.9600.16384 [Drivers] pacer.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PACER.SYS ### Agendador de pacotes QoS Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Drivers] vwififlt.sys=C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIFLT.SYS ### Virtual WiFi Filter Driver Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] netbios.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS ### NetBIOS interface driver Microsoft Corporation Microsoft Windows Operating S ystem 6.3.9600.16384 [Drivers] rdbss.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS ### Controlador de Subsistema de Colocao em Memria Intermdia de Unidades Redirecio nadas Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Drivers] csc.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CSC.SYS ### Windows Client Side Caching Driver Microsoft Corporation Microsoft Windows O perating System 6.3.9600.16384 [Drivers] nsiproxy.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NSIPROXY.SYS ### NSI Proxy Microsoft Corporation Microsoft Windows Operating System 6.3.9600. 16384 [Drivers] npsvctrig.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NPSVCTRIG.SYS ### Named pipe service triggers Microsoft Corporation Microsoft Windows Operatin g System 6.3.9600.16384 [Drivers] mssmbios.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS ### System Management BIOS Driver Microsoft Corporation Microsoft Windows Operat ing System 6.3.9600.16384 [Drivers] rsdrvx64.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RSDRVX64.SYS ### RawDisk Driver. Allows write access to files and raw disk sectors for user mode applications in Windows 2000, XP, 2003, Vista, 2008. EldoS Corporation Raw Disk 2, 1, 26, 0 [Drivers] dfsc.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DFSC.SYS ### DFS Namespace Client Driver Microsoft Corporation Microsoft Windows Operatin g System 6.3.9600.16384 [Drivers] ahcache.sys=C:\WINDOWS\SYSTEM32\DRIVERS\AHCACHE.SYS ### Application Compatibility Cache Microsoft Corporation Microsoft Windows Oper ating System 6.3.9600.16384 [Drivers] CompositeBus.sys=C:\WINDOWS\SYSTEM32\DRIVERS\COMPOSITEBUS.SYS ### Multi-Transport Composite Bus Enumerator Microsoft Corporation Microsoft Wi ndows Operating System 6.3.9600.16384 [Drivers] kdnic.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KDNIC.SYS ### Microsoft Kernel Debugger Network Miniport Microsoft Corporation Microsoft Kernel Debugger Network Adapter (NDIS 6.20 Miniport) 6.01.00.0000 [Drivers] umbus.sys=C:\WINDOWS\SYSTEM32\DRIVERS\UMBUS.SYS ### User-Mode Bus Enumerator Microsoft Corporation Microsoft Windows Operating S ystem 6.3.9600.16384 [Drivers] intelppm.sys=C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS ### Processor Device Driver Microsoft Corporation Microsoft Windows Operating Sy stem 6.3.9600.16384 [Drivers] nvlddmkm.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NVLDDMKM.SYS ### NVIDIA Windows Kernel Mode Driver, Version 331.82 NVIDIA Corporation NVID IA Windows Kernel Mode Driver, Version 331.82 9.18.13.3182 [Drivers] usbuhci.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBUHCI.SYS ### UHCI USB Miniport Driver Microsoft Corporation Microsoft Windows Operating S ystem 6.3.9600.16384 [Drivers] USBPORT.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\USBPORT.SYS ### Controlador de Portas USB 1.1 e 2.0 Microsoft Corporation Sistema Operativ o Microsoft Windows 6.3.9600.16384 [Drivers] usbehci.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS ### EHCI eUSB Miniport Driver Microsoft Corporation Microsoft Windows Operating

System 6.3.9600.16384 [Drivers] HDAudBus.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDBUS.SYS ### High Definition Audio Bus Driver Microsoft Corporation Microsoft Windows Ope rating System 6.3.9600.16384 [Drivers] yk63x64.sys=C:\WINDOWS\SYSTEM32\DRIVERS\YK63X64.SYS ### NDIS6.30 Miniport Driver for Marvell Yukon Ethernet Controller Marvell Mar vell Yukon Ethernet Controller 12.10.10.3 [Drivers] ctaud2k.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CTAUD2K.SYS ### Creative WDM Audio Device Driver Creative Technology Ltd Creative Audio Pr oduct 2.18.00.0017 [Drivers] portcls.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PORTCLS.SYS ### Port Class (Class Driver for Port/Miniport Devices) Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] drmk.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DRMK.SYS ### Microsoft Trusted Audio Drivers Microsoft Corporation Microsoft Windows Oper ating System 6.3.9600.16384 [Drivers] ks.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KS.SYS ### Kernel CSA Library Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] ctoss2k.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CTOSS2K.SYS ### Creative OS Services Driver (WDM) Creative Technology Ltd. Creative Audio Product 2.18.00.0017 [Drivers] ctprxy2k.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CTPRXY2K.SYS ### Creative Proxy Device Driver (WDM) Creative Technology Ltd Creative Audio Product 2.18.00.0017 [Drivers] ksthunk.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KSTHUNK.SYS ### Kernel Streaming WOW Thunk Service Microsoft Corporation Microsoft Windows O perating System 6.3.9600.16384 [Drivers] ctgame.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CTGAME.SYS ### Creative Game Port Enumerator Creative Technology Ltd. Creative Audio Prod uct 5.12.02.100 [Drivers] 1394ohci.sys=C:\WINDOWS\SYSTEM32\DRIVERS\1394OHCI.SYS ### 1394 OpenHCI Driver Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] serial.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SERIAL.SYS ### Controlador de dispositivo srie Microsoft Corporation Sistema operativo Mic rosoft Windows 6.3.9600.16384 [Drivers] serenum.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS ### Serial Port Enumerator Microsoft Corporation Microsoft Windows Operating Sys tem 6.3.9600.16384 [Drivers] parport.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS ### Controlador de porta paralela Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Drivers] i8042prt.sys=C:\WINDOWS\SYSTEM32\DRIVERS\I8042PRT.SYS ### Controlador de porta i8042 Microsoft Corporation Sistema operativo Microso ft Windows 6.3.9600.16384 [Drivers] kbdclass.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS ### Controlador de classe de teclado Microsoft Corporation Sistema operativo M icrosoft Windows 6.3.9600.16384 [Drivers] nvvad64v.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NVVAD64V.SYS ### NVIDIA Virtual Audio Driver NVIDIA Corporation NVIDIA Virtual Audio Driver 1.2.12 [Drivers] NdisVirtualBus.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDISVIRTUALBUS.SYS ### Enumerador de Adaptador de Rede Virtual da Microsoft Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Drivers] swenum.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SWENUM.SYS ### Plug and Play Software Device Enumerator Microsoft Corporation Microsoft Wi ndows Operating System 6.3.9600.16384 [Drivers] circlass.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CIRCLASS.SYS ### Consumer IR Class Driver for eHome Microsoft Corporation Microsoft Windows O

perating System 6.3.9600.16384 [Drivers] rdpbus.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RDPBUS.SYS ### Microsoft RDP Bus Device driver Microsoft Corporation Microsoft Windows Oper ating System 6.3.9600.16384 [Drivers] clwvd.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CLWVD.SYS ### CyberLink WebCam Virtual Driver CyberLink Corporation CyberLink WebCam Vir tual Driver 1.0.4403 [Drivers] mcvidrv.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MCVIDRV.SYS ### ManyCam Virtual Webcam Driver Visicom Media Inc. ManyCam Virtual Webcam 4. 1.0.0 [Drivers] STREAM.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\STREAM.SYS ### WDM CODEC Class Device Driver 2.0 Microsoft Corporation Microsoft Windows Op erating System 6.3.9600.16384 [Drivers] mcaudrv_x64.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MCAUDRV_X64.SYS ### ManyCam Virtual Microphone Visicom Media Inc. ManyCam 4.0.0.0 [Drivers] usbhub.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS ### Default Hub Driver for USB Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] USBD.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\USBD.SYS ### Universal Serial Bus Driver Microsoft Corporation Microsoft Windows Operatin g System 6.3.9600.16384 [Drivers] HdAudio.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDIO.SYS ### High Definition Audio Function Driver Microsoft Corporation Microsoft Windo ws Operating System 6.3.9600.16384 [Drivers] hap16v2k.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HAP16V2K.SYS ### Creative EMU10KX-P16v HAL (WDM) Creative Technology Ltd Creative Audio Pro duct 2.18.00.0017 [Drivers] ha10kx2k.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HA10KX2K.SYS ### Creative EMU10KX HAL (WDM) Creative Technology Ltd Creative Audio Product 2.18.00.0017 [Drivers] emupia2k.sys=C:\WINDOWS\SYSTEM32\DRIVERS\EMUPIA2K.SYS ### E-mu Plug-in Architecture Driver (WDM) Creative Technology Ltd E-mu Plug-I n Architecture 2.18.00.0017 [Drivers] ctsfm2k.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CTSFM2K.SYS ### SoundFont(R) Manager (WDM) Creative Technology Ltd Creative Audio Product 2.18.00.0017 [Drivers] ctac32k.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CTAC32K.SYS ### Creative AC3 SW Decoder Device Driver (WDM) Creative Technology Ltd Creati ve Audio Product 2.18.00.0011 [Drivers] COMMONFX.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\COMMONFX.SYS ### Creative Common FX Plug-in Creative Technology Ltd Creative Audio Product 2.18.00.0017 [Drivers] CTAUDFX.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\CTAUDFX.SYS ### Creative SB FX Plug-in Creative Technology Ltd Creative Audio Product 2.18 .00.0017 [Drivers] CTSBLFX.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\CTSBLFX.SYS ### Creative SB FX Plug-in Creative Technology Ltd Creative Audio Product 2.18 .00.0017 [Drivers] dumpata.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DUMP_DUMPATA.SYS [Drivers] win32k.sys=C:\WINDOWS\SYSTEM32\WIN32K.SYS ### Controlador Win32 para vrios utilizadores Microsoft Corporation Sistema ope rativo Microsoft Windows 6.3.9600.16384 [Drivers] HIDPARSE.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\HIDPARSE.SYS ### Hid Parsing Library Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] atapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DUMP_ATAPI.SYS [Drivers] dumpfve.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DUMP_DUMPFVE.SYS [Drivers] USBSTOR.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\USBSTOR.SYS ### Controlador de Classe de Armazenamento em Massa USB Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384

[Drivers] TSDDD.dll=C:\WINDOWS\SYSTEM32\TSDDD.DLL ### Framebuffer Display Driver Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] cdd.dll=C:\WINDOWS\SYSTEM32\CDD.DLL ### Canonical Display Driver Microsoft Corporation Microsoft Windows Operating S ystem 6.3.9600.16384 [Drivers] luafv.sys=C:\WINDOWS\SYSTEM32\DRIVERS\LUAFV.SYS ### Controlador de Filtro de Virtualizao de Ficheiros LUA Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Drivers] mbam.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MBAM.SYS ### Malwarebytes Anti-Malware Malwarebytes Corporation Malwarebytes Anti-Malwa re 1.60.2.0000 [Drivers] radpms.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RADPMS.SYS ### RemotelyAnywhereDpmsSecure Device Driver LogMeIn, Inc. RemotelyAnywhere 9. 0.1023 [Drivers] usbccgp.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBCCGP.SYS ### USB Common Class Generic Parent Driver Microsoft Corporation Microsoft Wind ows Operating System 6.3.9600.16442 [Drivers] hidusb.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS ### USB Miniport Driver for Input Devices Microsoft Corporation Microsoft Windo ws Operating System 6.3.9600.16384 [Drivers] HIDCLASS.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\HIDCLASS.SYS ### Biblioteca de Classes HID Microsoft Corporation Sistema Operativo Microsof t Windows 6.3.9600.16384 [Drivers] mouhid.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS ### Controlador de filtro de rato HID Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Drivers] mouclass.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS ### Controlador de classe de rato Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Drivers] lltdio.sys=C:\WINDOWS\SYSTEM32\DRIVERS\LLTDIO.SYS ### Link-Layer Topology Mapper I/O Driver Microsoft Corporation Microsoft Windo ws Operating System 6.3.9600.16384 [Drivers] nwifi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NWIFI.SYS ### Controlador de Miniporta NativeWiFi Microsoft Corporation Sistema Operativ o Microsoft Windows 6.3.9600.16384 [Drivers] ndisuio.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS ### Controlador E/S NDIS de modo do Utilizador Microsoft Corporation Sistema O perativo Microsoft Windows 6.3.9600.16384 [Drivers] rspndr.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RSPNDR.SYS ### Link-Layer Topology Responder Driver for NDIS 6 Microsoft Corporation Micr osoft Windows Operating System 6.3.9600.16384 [Drivers] HTTP.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS ### Pilha de protocolo HTTP Microsoft Corporation Sistema operativo Microsoft W indows 6.3.9600.16384 [Drivers] bowser.sys=C:\WINDOWS\SYSTEM32\DRIVERS\BOWSER.SYS ### NT Lan Manager Datagram Receiver Driver Microsoft Corporation Microsoft Win dows Operating System 6.3.9600.16384 [Drivers] mpsdrv.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MPSDRV.SYS ### Microsoft Protection Service Driver Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] mrxsmb.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS ### Windows NT SMB Minirdr Microsoft Corporation Sistema operativo Microsoft Wi ndows 6.3.9600.16384 [Drivers] mrxsmb20.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB20.SYS ### Longhorn SMB 2.0 Redirector Microsoft Corporation Microsoft Windows Operatin g System 6.3.9600.16408 [Drivers] RaInfo.sys=C:\PROGRAM FILES (X86)\LOGMEIN\X64\RAINFO.SYS ### RemotelyAnywhere Kernel Information Provider LogMeIn, Inc. RemotelyAnywher e 11.0.2643

[Drivers] LMIRfsDriver.sys=C:\WINDOWS\SYSTEM32\DRIVERS\LMIRFSDRIVER.SYS ### LogMeIn Rfs Drivemap Driver LogMeIn, Inc. LogMeIn 2.5.3.0 [Drivers] mrxsmb10.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB10.SYS ### Longhorn SMB Downlevel SubRdr Microsoft Corporation Microsoft Windows Operat ing System 6.3.9600.16384 [Drivers] Ndu.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDU.SYS ### Windows Network Data Usage Monitoring Driver Microsoft Corporation Microso ft Windows Operating System 6.3.9600.16384 [Drivers] peauth.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PEAUTH.SYS ### Protected Environment Authentication and Authorization Export Driver Micro soft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] secdrv.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\SECDRV.SYS ### Macrovision SECURITY Driver Macrovision Corporation, Macrovision Europe Li mited, and Macrovision Japan and Asia K.K. Macrovision SECURITY Driver SECURITY Driver 4.03.086 2006/09/13 [Drivers] srvnet.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SRVNET.SYS ### Server Network driver Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16401 [Drivers] tcpipreg.sys=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIPREG.SYS ### TCP/IP Registry Compatibility Driver Microsoft Corporation Microsoft Window s Operating System 6.3.9600.16384 [Drivers] srv2.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SRV2.SYS ### Controlador do Servidor Smb 2.0 Microsoft Corporation Sistema Operativo Mi crosoft Windows 6.3.9600.16384 [Drivers] srv.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SRV.SYS ### Server driver Microsoft Corporation Microsoft Windows Operating System 6.3.9 600.16384 [Drivers] condrv.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CONDRV.SYS ### Console Driver Microsoft Corporation Microsoft Windows Operating System 6.3. 9600.16384 [Drivers] tunnel.sys=C:\WINDOWS\SYSTEM32\DRIVERS\TUNNEL.SYS ### Controlador de Interface de Tnel da Microsoft Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Drivers] WdNisDrv.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WDNISDRV.SYS ### Microsoft Network Realtime Inspection Driver Microsoft Corporation Microso ft Windows Operating System 4.3.9600.16384 [Drivers] mslldp.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MSLLDP.SYS ### Controlador LLDP da Microsoft Microsoft Corporation Sistema Operativo Micr osoft Windows 6.3.9600.16384 [Drivers] rdpvideominiport.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RDPVIDEOMINIPORT.SY S ### Microsoft RDP Video Miniport driver Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Drivers] rdpdr.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RDPDR.SYS ### Microsoft RDP Device redirector Microsoft Corporation Microsoft Windows Oper ating System 6.3.9600.16384 [Drivers] ATMFD.DLL=C:\WINDOWS\SYSTEM32\ATMFD.DLL ### Windows NT OpenType/Type 1 Font Driver Adobe Systems Incorporated Adobe Ty pe Manager 5.1 Build 238 [Drivers] usbvideo.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBVIDEO.SYS ### USB Video Class Driver Microsoft Corporation Microsoft Windows Operating Sys tem 6.3.9600.16384 [Drivers] usbaudio.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBAUDIO.SYS ### USB Audio Class Driver Microsoft Corporation Microsoft Windows Operating Sys tem 6.3.9600.16384 [Drivers] MSPQM.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MSPQM.SYS ### MS Proxy Quality Manager Microsoft Corporation Microsoft Windows Operating S ystem 6.3.9600.16384 [Drivers] MSPCLOCK.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MSPCLOCK.SYS ### MS Proxy Clock Microsoft Corporation Microsoft Windows Operating System 6.3.

9600.16384 [Codecs] :HKLM msacm.msgsm610=C:\WINDOWS\SYSTEM32\MSGSM32.ACM ### Microsoft GSM 6.10 Audio CODEC para MSACM Microsoft Corporation Sistema op erativo Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM msacm.msg711=C:\WINDOWS\SYSTEM32\MSG711.ACM ### Microsoft CCITT G.711 (A-Law e u-Law) CODEC para MSACM Microsoft Corporati on Sistema operativo Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM msacm.l3acm=C:\WINDOWS\SYSWOW64\L3CODECA.ACM ### MPEG Layer-3 Audio Codec for MSACM Fraunhofer Institut Integrierte Schaltu ngen IIS MPEG Layer-3 Audio Codec for MSACM 1, 0, 0, 0 [Codecs] :HKLM vidc.yuy2=C:\WINDOWS\SYSTEM32\MSYUV.DLL ### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft Windows Op erating System 6.3.9600.16384 [Codecs] :HKLM vidc.i420=C:\WINDOWS\SYSTEM32\IYUV_32.DLL ### Codec Vdeo YUV Intel Indeo(R) Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Codecs] :HKLM vidc.cvid=C:\WINDOWS\Syswow64\ICCVID.DLL ### Codec Cinepak Radius Inc. Cinepak para o Windows 32 1.10.0.0 [Codecs] :HKLM vidc.yvyu=C:\WINDOWS\SYSTEM32\MSYUV.DLL ### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft Windows Op erating System 6.3.9600.16384 [Codecs] :HKLM vidc.yvu9=C:\WINDOWS\SYSTEM32\TSBYUV.DLL ### Toshiba Video Codec Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Codecs] :HKLM wavemapper=C:\WINDOWS\SYSTEM32\MSACM32.DRV ### Mapeador de sons da Microsoft Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Codecs] :HKLM midimapper=C:\WINDOWS\SYSTEM32\MIDIMAP.DLL ### Microsoft MIDI Mapper Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16384 [Codecs] :HKLM vidc.uyvy=C:\WINDOWS\SYSTEM32\MSYUV.DLL ### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft Windows Op erating System 6.3.9600.16384 [Codecs] :HKLM msacm.imaadpcm=C:\WINDOWS\SYSTEM32\IMAADP32.ACM ### IMA ADPCM CODEC para MSACM Microsoft Corporation Sistema operativo Microso ft Windows 6.3.9600.16384 [Codecs] :HKLM msacm.msadpcm=C:\WINDOWS\SYSTEM32\MSADP32.ACM ### Microsoft ADPCM CODEC para MSACM Microsoft Corporation Sistema operativo M icrosoft Windows 6.3.9600.16384 [Codecs] :HKLM vidc.iyuv=C:\WINDOWS\SYSTEM32\IYUV_32.DLL ### Codec Vdeo YUV Intel Indeo(R) Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Codecs] :HKLM vidc.mrle=C:\WINDOWS\SYSTEM32\MSRLE32.DLL ### Microsoft RLE Compressor Microsoft Corporation Microsoft Windows Operating S ystem 6.3.9600.16384 [Codecs] :HKLM vidc.msvc=C:\WINDOWS\SYSTEM32\MSVIDC32.DLL ### Microsoft Video 1 Compressor Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Codecs] :HKLM wave=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM midi=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM mixer=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM wave3=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384

o o o o o o o o o o o o o o o o o o o o

[Codecs] :HKLM midi3=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM mixer3=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM aux2=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM wave2=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM midi2=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM mixer2=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM aux=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM wave4=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM midi4=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM mixer4=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM aux1=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM wave5=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM midi5=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM mixer5=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM aux3=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM wave1=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM midi1=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM mixer1=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM wave6=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM midi6=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Microsoft Windows 6.3.9600.16384

Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ Sistema operativ

[Codecs] :HKLM mixer6=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM wave7=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM midi7=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM mixer7=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384 [Codecs] :HKLM aux4=C:\WINDOWS\SYSTEM32\WDMAUD.DRV ### Controlador do sistema de udio Winmm Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384 [DCOM Components] :HKLM {F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}="" [DCOM Components] :HKLM {5839FCA9-774D-42A1-ACDA-D6A79037F57F}=C:\WINDOWS\SYST EM32\WBEM\FASTPROX.DLL ### WMI Custom Marshaller Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16384 [DCOM Components] :HKLM {42AEDC87-2188-41FD-B9A3-0C966FEABEC1}=C:\WINDOWS\SYST EM32\SHELL32.DLL ### DLL comum da shell do Windows Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [DCOM User Components] :HKCU {F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}="" [DCOM User Components] :HKCU {FBEB8A05-BEEE-4442-804E-409D6C4515E9}="" [DCOM User Components] :HKCU {42AEDC87-2188-41FD-B9A3-0C966FEABEC1}="" [Auto Start Apps] [Registry Run] :HKCU uTorrent=C:\USERS\PAULO\APPDATA\ROAMING\UTORRENT\UTORRENT .EXE ### Torrent BitTorrent Inc. Torrent 3.3.1.30017 [Registry Run] :HKCU iCloudServices=C:\PROGRAM FILES (X86)\COMMON FILES\APPLE\ INTERNET SERVICES\ICLOUDSERVICES.EXE ### iCloud Apple Inc. iCloud [Registry Run] :HKCU Skype=C:\PROGRAM FILES (X86)\SKYPE\PHONE\SKYPE.EXE ### Skype Skype Technologies S.A. Skype 4.2 [Registry Run] :HKCU ThreadManager.exe=C:\PROGRAM FILES (X86)\THREAD MANAGER\T HREADMANAGER.EXE ### ThreadManager Digital Generation Inc. ThreadManager 3.1.0.0 [Registry Run] :HKCU ManyCam=C:\PROGRAM FILES (X86)\MANYCAM\MANYCAM.EXE ### ManyCam Virtual Webcam Visicom Media Inc. ManyCam Virtual Webcam 4.0.44.54 32 [Registry Run] :HKLM AsioThk32Reg=C:\WINDOWS\SYSTEM32\REGSVR32.EXE ### Microsoft(C) Register Server Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Registry Run] :HKLM APSDaemon=C:\PROGRAM FILES (X86)\COMMON FILES\APPLE\APPLE APPLICATION SUPPORT\APSDAEMON.EXE ### Apple Push Apple Inc. Apple Push [Registry Run] :HKLM iTunesHelper=C:\PROGRAM FILES (X86)\ITUNES\ITUNESHELPER.E XE ### iTunesHelper Apple Inc. iTunes 11.1.3.8 [Registry Run] :HKLM SunJavaUpdateSched=C:\PROGRAM FILES (X86)\COMMON FILES\JA VA\JAVA UPDATE\JUSCHED.EXE ### Java(TM) Update Scheduler Oracle Corporation Java(TM) Platform SE Auto Upd ater 2.1.9.8 [Registry Run(x64)] :HKLM Nvtmru=C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\NVI DIA UPDATE CORE\NVTMRU.EXE ### NVIDIA NvTmru Application NVIDIA Corporation NVIDIA GeForce Experience 9.3 .21.0 [Registry Run(x64)] :HKLM LogMeIn GUI=C:\PROGRAM FILES (X86)\LOGMEIN\X64\LOGME

INSYSTRAY.EXE ### LogMeIn Desktop Application LogMeIn, Inc. LogMeIn 3.0.596 [Registry Run(x64)] :HKLM ShadowPlay=C:\WINDOWS\SYSTEM32\NVSPCAP64.DLL ### NVIDIA Capture Server Proxy NVIDIA Corporation NVIDIA GeForce Experience 1 0.10.5.1 [Registry Run(x64)] :HKLM NvBackend=C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\ UPDATE CORE\NVBACKEND.EXE ### NVIDIA GeForce Experience Backend NVIDIA Corporation NVIDIA GeForce Experi ence 10.10.5.1 [Win.ini] load="" [Win.ini] run="" [Startup Folder] MEGAsync.lnk=C:\USERS\PAULO\APPDATA\LOCAL\MEGASYNC\BIN\MEGASY NC.EXE ### MEGAsync Mega Limited MEGAsync 0, 22, 0, 0 [Startup Folder] MEO Cloud.lnk=C:\Program Files (x86)\MEOCloud\MEOCloud.exe ### File is deleted or hidden by a rootkit or could not be located. [Scheduled Tasks] GoogleUpdateTaskMachineUA=C:\PROGRAM FILES (X86)\GOOGLE\UPDA TE\GOOGLEUPDATE.EXE ### Instalador do Google Google Inc. Google Update 1.3.21.103 [Scheduled Tasks] GoogleUpdateTaskMachineCore=C:\PROGRAM FILES (X86)\GOOGLE\UP DATE\GOOGLEUPDATE.EXE ### Instalador do Google Google Inc. Google Update 1.3.21.103 [Scheduled Tasks] Adobe Flash Player Updater=C:\WINDOWS\SYSWOW64\MACROMED\FLAS H\FLASHPLAYERUPDATESERVICE.EXE ### Adobe Flash Player Update Service 11.9 r900 Adobe Systems Incorporated Adobe Flash Player Update Service 11,9,900,170 [In memory] [Running Processes] C:\PROGRAM FILES (X86)\MALWAREBYTES' ANTI-MALWARE\MBAMGUI. EXE ### Malwarebytes Anti-Malware Malwarebytes Corporation Malwarebytes Anti-Malwa re 1.70.0.0000 [Running Processes] C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\UPDATE CORE\NVBA CKEND.EXE ### NVIDIA GeForce Experience Backend NVIDIA Corporation NVIDIA GeForce Experi ence 10.10.5.1 [Running Processes] C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\NVIDIA UPDATE CO RE\NVTMRU.EXE ### NVIDIA NvTmru Application NVIDIA Corporation NVIDIA GeForce Experience 9.3 .21.0 [Running Processes] C:\PROGRAM FILES (X86)\COMMON FILES\APPLE\INTERNET SERVICE S\ICLOUDSERVICES.EXE ### iCloud Apple Inc. iCloud [Running Processes] C:\PROGRAM FILES (X86)\MANYCAM\MANYCAM.EXE ### ManyCam Virtual Webcam Visicom Media Inc. ManyCam Virtual Webcam 4.0.44.54 32 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EX E ### Google Chrome Google Inc. Google Chrome 31.0.1650.63 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EX E ### Google Chrome Google Inc. Google Chrome 31.0.1650.63 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EX E ### Google Chrome Google Inc. Google Chrome 31.0.1650.63 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EX E ### Google Chrome Google Inc. Google Chrome 31.0.1650.63 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EX E ### Google Chrome Google Inc. Google Chrome 31.0.1650.63

[Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EX E ### Google Chrome Google Inc. Google Chrome 31.0.1650.63 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EX E ### Google Chrome Google Inc. Google Chrome 31.0.1650.63 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EX E ### Google Chrome Google Inc. Google Chrome 31.0.1650.63 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EX E ### Google Chrome Google Inc. Google Chrome 31.0.1650.63 [Running Processes] C:\PROGRAM FILES (X86)\SKYPE\PHONE\SKYPE.EXE ### Skype Skype Technologies S.A. Skype 4.2 [Running Processes] C:\PROGRAM FILES (X86)\UNHACKME\UNHACKME.EXE ### Detects and removes rootkits Greatis Software UnHackMe 5.99 [Running Processes] C:\PROGRAM FILES (X86)\UNHACKME\HACKMON.EXE ### Detects Rootkits in background Greatis Software UnHackMe 5.9 [Running Processes] C:\PROGRAM FILES (X86)\UNHACKME\REANIMATOR.EXE ### RegRun Start Control Greatis Software RegRun Security Suite 6.99 release [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EX E ### Google Chrome Google Inc. Google Chrome 31.0.1650.63 [Loaded DLLs] C:\WINDOWS\system32\sxproxy.dll ### Biblioteca Proxy de Proteo do Sistema do Microsoft Windows Microsoft Corporat ion Sistema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\bcd.dll ### BCD DLL Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16 384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\DSROLE.dll ### DS Setup Client DLL Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\VssTrace.DLL ### Biblioteca de Rastreio do Servio Cpia Sombra de Volumes da Microsoft Microsof t Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\VSSAPI.DLL ### Microsoft Volume Shadow Copy Requestor/Writer Services API DLL Microsoft Co rporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\SPP.dll ### Biblioteca Partilhada de Pontos de Proteo do Microsoft Windows Microsoft Corp oration Sistema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\srclient.dll ### Microsoft Windows System Restore Client Library Microsoft Corporation Micro soft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\System32\mstask.dll ### DLL da interface do Programador de Tarefas Microsoft Corporation Sistema o perativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\DEVRTL.dll ### Device Management Run Time Library Microsoft Corporation Microsoft Windows O perating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\pcacli.dll ### Program Compatibility Assistant Client Module Microsoft Corporation Micros oft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\globinputhost.dll ### Windows Globalization Extension API for Input Microsoft Corporation Micros oft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\Windows\System32\Windows.Globalization.dll ### Windows Globalization Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\RICHED32.DLL

### Wrapper Dll for Richedit 1.0 Microsoft Corporation Microsoft Windows Operati ng System 6.3.9600.16384 [Loaded DLLs] C:\Windows\SYSTEM32\FirewallAPI.dll ### API da Firewall do Windows Microsoft Corporation Sistema operativo Microso ft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\msls31.dll ### Microsoft Line Services library file Microsoft Corporation Microsoft Line S ervices 3.10 [Loaded DLLs] C:\WINDOWS\SYSTEM32\RICHED20.DLL ### Rich Text Edit Control, v3.1 Microsoft Corporation Microsoft RichEdit Cont rol, version 3.1 3.1 [Loaded DLLs] C:\WINDOWS\system32\winbrand.dll ### Windows Branding Resources Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\Bcp47Langs.dll ### BCP47 Language Classes Microsoft Corporation Microsoft Windows Operating Sys tem 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\twinapi.dll ### twinapi Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.1 6411 [Loaded DLLs] C:\Windows\SYSTEM32\d3d11.dll ### Direct3D 11 Runtime Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16419 [Loaded DLLs] C:\Windows\SYSTEM32\dxdiagn.dll ### Ferramenta de diagnstico do DirectX da Microsoft Microsoft Corporation Sist ema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\wlanapi.dll ### DLL da API do Lado do Cliente de Configurao Automtica de WLAN do Windows Micr osoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\mapi32.dll ### Extended MAPI 1.0 para Windows NT Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\cryptui.dll ### Fornecedor Microsoft Trust UI Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\olepro32.dll [Loaded DLLs] C:\WINDOWS\SYSTEM32\pdh.dll ### Windows Performance Data Helper DLL Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\SHFolder.dll ### Shell Folder Service Microsoft Corporation Microsoft Windows Operating Syste m 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\sfc_os.DLL ### Windows File Protection Microsoft Corporation Microsoft Windows Operating Sy stem 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\sfc.dll ### Windows File Protection Microsoft Corporation Microsoft Windows Operating Sy stem 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\AppPatch\AcLayers.DLL ### Windows Compatibility DLL Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\Pe pperFlash\pepflashplayer.dll [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ff mpegsumo.dll [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\li bpeerconnection.dll ### Google Chrome Google Inc. Google Chrome 31.0.1650.63 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pp GoogleNaClPluginChrome.dll

[Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pd f.dll ### Chrome PDF Viewer Chrome PDF Viewer 1, 0, 0, 1 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\li begl.dll ### ANGLE libEGL Dynamic Link Library ANGLE libEGL Dynamic Link Library 1.2.0. 2446 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\li bglesv2.dll ### ANGLE libGLESv2 Dynamic Link Library ANGLE libGLESv2 Dynamic Link Library 1.2.0.2446 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\D3 DCompiler_46.dll ### Direct3D HLSL Compiler Microsoft Corporation Microsoft DirectX for Windows 9 .30.9200.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\msmpeg2vdec.dll ### Microsoft DTV-DVD Video Decoder Microsoft Corporation Microsoft Windows Oper ating System 12.0.9477.0 [Loaded DLLs] C:\WINDOWS\SYSTEM32\RTWorkQ.DLL ### Realtime WorkQueue DLL Microsoft Corporation Microsoft Windows Operating Sys tem 12.0.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\mfplat.dll ### Media Foundation Platform DLL Microsoft Corporation Microsoft Windows Operat ing System 12.0.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\mf.dll ### DLL do Media Foundation Microsoft Corporation Sistema Operativo Microsoft W indows 12.0.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\dxva2.dll ### DirectX Video Acceleration 2.0 DLL Microsoft Corporation Microsoft Windows O perating System 6.3.9600.16384 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ch rome_child.dll ### Google Chrome Google Inc. Google Chrome 31.0.1650.63 [Loaded DLLs] C:\Program Files (x86)\Windows Defender\mpclient.dll ### Client Interface Microsoft Corporation Microsoft Windows Operating System 4. 3.9600.16404 [Loaded DLLs] C:\Program Files (x86)\Windows Defender\MpOav.dll ### IOfficeAntiVirus Module Microsoft Corporation Microsoft Windows Operating Sy stem 4.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\ondemandconnroutehelper.dll ### On Demand Connctiond Route Helper Microsoft Corporation Microsoft Windows Op erating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\shdocvw.dll ### Objeto Doc da Shell e Biblioteca de Controlos Microsoft Corporation Sistem a operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\Windows\SYSTEM32\thumbcache.dll ### Microsoft Thumbnail Cache Microsoft Corporation Sistema operativo Microsof t Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\DUI70.dll ### Motor DirectUI do Windows Microsoft Corporation Sistema operativo Microsof t Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\DUser.dll ### Windows DirectUser Engine Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\explorerframe.dll ### ExplorerFrame Microsoft Corporation Sistema operativo Microsoft Windows 6.3. 9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\WindowsCodecs.dll ### Microsoft Windows Codecs Library Microsoft Corporation Microsoft Windows Ope rating System 6.3.9600.16384

[Loaded DLLs] C:\WINDOWS\SYSTEM32\imagehlp.dll ### Windows NT Image Helper Microsoft Corporation Microsoft Windows Operating Sy stem 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\cscapi.dll ### Offline Files Win32 API Microsoft Corporation Microsoft Windows Operating Sy stem 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\ntshrui.dll ### Extenses da shell para partilha Microsoft Corporation Sistema operativo Mic rosoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\LINKINFO.dll ### Windows Volume Tracking Microsoft Corporation Microsoft Windows Operating Sy stem 6.3.9600.16384 [Loaded DLLs] C:\Windows\SYSTEM32\cryptnet.dll ### Crypto Network Related API Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\nvd3dum.dll [Loaded DLLs] C:\WINDOWS\SYSTEM32\mscms.dll ### DLL de Sistema de Correspondncia de Cores da Microsoft Microsoft Corporatio n Sistema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\MSIMG32.dll ### GDIEXT Client DLL Microsoft Corporation Microsoft Windows Operating System 6 .3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\msftedit.dll ### Controlo de Edio de Texto Formatado, v7.5 Microsoft Corporation Sistema Oper ativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\WINSTA.dll ### Winstation Library Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\System32\wevtapi.dll ### API de Configurao e Consumo de Eventos Microsoft Corporation Sistema Operati vo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\System32\Wpc.dll ### Biblioteca de Definies WPC Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\DPAPI.dll ### Data Protection API Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\dhcpcsvc.DLL ### Servio de cliente DHCP Microsoft Corporation Sistema operativo Microsoft Win dows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\dhcpcsvc6.DLL ### Cliente DHCPv6 Microsoft Corporation Sistema operativo Microsoft Windows 6.3 .9600.16384 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ic udt.dll ### ICU Data DLL The ICU Project International Components for Unicode 4, 6, 0, 0 [Loaded DLLs] C:\WINDOWS\SYSTEM32\dbghelp.dll ### Windows Image Helper Microsoft Corporation Microsoft Windows Operating Syste m 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\OLEACC.dll ### Active Accessibility Core Component Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\USP10.dll ### Uniscribe Unicode script processor Microsoft Corporation Microsoft Windows O perating System 6.3.9600.16384 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ch rome.dll ### Google Chrome Google Inc. Google Chrome 31.0.1650.63 [Loaded DLLs] C:\WINDOWS\SYSTEM32\MPR.dll

### DLL de router de fornecedor mltiplo Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\USERENV.dll ### Userenv Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.1 6384 [Loaded DLLs] C:\WINDOWS\AppPatch\AcGenral.DLL ### Windows Compatibility DLL Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16441 [Loaded DLLs] C:\WINDOWS\SYSTEM32\MLANG.dll ### DLL de Suporte a Mltiplos Idiomas Microsoft Corporation Sistema operativo M icrosoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\urlmon.dll ### Extenses OLE32 para Win32 Microsoft Corporation Internet Explorer 11.00.960 0.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\apphelp.dll ### Biblioteca cliente de compatibilidade de aplicaes Microsoft Corporation Sist ema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\PROPSYS.dll ### Sistema de Propriedades da Microsoft Microsoft Corporation Windows Search 7 .00.9600.16384 [Loaded DLLs] C:\Program Files (x86)\ManyCam\plugins\vp8\vp8decoder.dll ### WebM VP8 Decoder Filter Google WebM VP8 Decoder Filter 0, 9, 12, 0 [Loaded DLLs] C:\Program Files (x86)\ManyCam\plugins\vp8\YUVxfm.dll ### YUV-RGB Converter GDCL (http://www.gdcl.co.uk) 2, 0, 0, 4 [Loaded DLLs] C:\Program Files (x86)\ManyCam\plugins\vp8\vp8encoder.dll ### WebM VP8 Encoder Filter Google WebM VP8 Encoder Filter 0, 9, 12, 0 [Loaded DLLs] C:\WINDOWS\system32\dxgi.dll ### DirectX Graphics Infrastructure Microsoft Corporation Microsoft Windows Oper ating System 6.3.9600.16419 [Loaded DLLs] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPI.dll ### NVIDIA 3D Vision Control Panel API NVIDIA Corporation NVIDIA GeForce 3D Vi sion 7.17.13.3182 [Loaded DLLs] C:\WINDOWS\SYSTEM32\PSAPI.DLL ### Process Status Helper Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\D3DIM700.DLL [Loaded DLLs] C:\WINDOWS\system32\nvspcap.dll [Loaded DLLs] C:\Windows\SYSTEM32\DCIMAN32.dll ### DCI Manager Microsoft Corporation Microsoft Windows Operating System 6.3.960 0.16384 [Loaded DLLs] C:\Windows\SYSTEM32\DDRAW.dll ### Microsoft DirectDraw Microsoft Corporation Sistema operativo Microsoft Wind ows 6.3.9600.16384 [Loaded DLLs] C:\Windows\SYSTEM32\qedit.dll ### Edio com DirectShow. Microsoft Corporation Sistema operativo Microsoft Window s 6.6.9600.16384 [Loaded DLLs] C:\Windows\SYSTEM32\ODBC32.dll ### ODBC Driver Manager Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\Windows\SYSTEM32\MFC42.dll ### Biblioteca Partilhada MFCDLL - Verso de Revenda Microsoft Corporation Micro soft (R) Visual C++ 6.06.400 [Loaded DLLs] C:\Windows\SYSTEM32\kswdmcap.ax ### Captura de Vdeo de Transmisso em Fluxo WDM Microsoft Corporation Sistema ope rativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\Windows\SYSTEM32\vidcap.ax ### Video Capture Interface Server Microsoft Corporation Microsoft Windows Opera ting System 6.3.9600.16384 [Loaded DLLs] C:\Windows\SYSTEM32\d3d9.dll ### Direct3D 9 Runtime Microsoft Corporation Microsoft Windows Operating System

6.3.9600.16404 [Loaded DLLs] C:\Windows\SYSTEM32\ksproxy.ax ### WDM Streaming ActiveMovie Proxy Microsoft Corporation Microsoft Windows Oper ating System 6.3.9600.16384 [Loaded DLLs] C:\Windows\SYSTEM32\colorcnv.dll ### Windows Media Color Conversion Microsoft Corporation Microsoft Windows Opera ting System 6.3.9600.16384 [Loaded DLLs] C:\Windows\SYSTEM32\qasf.dll ### DirectShow ASF Support Microsoft Corporation Microsoft Windows Operating Sys tem 12.0.9600.16384 [Loaded DLLs] C:\Windows\SYSTEM32\qcap.dll ### DirectShow Runtime. Microsoft Corporation Sistema operativo Microsoft Windo ws 6.6.9600.16384 [Loaded DLLs] C:\Windows\SYSTEM32\quartz.dll ### DirectShow Runtime. Microsoft Corporation Sistema operativo Microsoft Windo ws 6.6.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\midimap.dll ### Microsoft MIDI Mapper Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\msacm32.drv ### Mapeador de sons da Microsoft Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\AUDIOSES.DLL ### Sesso de udio Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.96 00.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\AVRT.dll ### Multimedia Realtime Runtime Microsoft Corporation Microsoft Windows Operatin g System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\ksuser.dll ### User CSA Library Microsoft Corporation Microsoft Windows Operating System 6. 3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\wdmaud.drv ### Controlador do sistema de udio Winmm Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\MMDevAPI.DLL ### API de MMDevice Microsoft Corporation Sistema Operativo Microsoft Windows 6. 3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\msdmo.dll ### DMO Runtime Microsoft Corporation Microsoft Windows Operating System 6.6.960 0.16384 [Loaded DLLs] C:\Windows\SYSTEM32\devenum.dll ### Enumerao de dispositivos. Microsoft Corporation Sistema operativo Microsoft W indows 6.6.9600.16384 [Loaded DLLs] C:\Program Files (x86)\ManyCam\plugins\imageformats\qtiff4.dll ### C++ application development framework. Digia Plc and/or its subsidiary(-ie s) Qt4 [Loaded DLLs] C:\Program Files (x86)\ManyCam\plugins\imageformats\qjpeg4.dll ### C++ application development framework. Digia Plc and/or its subsidiary(-ie s) Qt4 [Loaded DLLs] C:\Program Files (x86)\ManyCam\plugins\imageformats\qico4.dll ### C++ application development framework. Digia Plc and/or its subsidiary(-ie s) Qt4 [Loaded DLLs] C:\Program Files (x86)\ManyCam\plugins\imageformats\qgif4.dll ### C++ application development framework. Digia Plc and/or its subsidiary(-ie s) Qt4 [Loaded DLLs] C:\Program Files (x86)\ManyCam\opencv_video220.dll [Loaded DLLs] C:\WINDOWS\SYSTEM32\MSACM32.dll ### Filtro de udio ACM da Microsoft Microsoft Corporation Sistema operativo Mic rosoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\AVICAP32.dll

### DLL de captura de AVI Microsoft Corporation Sistema operativo Microsoft Win dows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\MSVFW32.dll ### DLL do Microsoft Video para Windows Microsoft Corporation Sistema operativ o Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\AVIFIL32.dll ### Biblioteca Microsoft de suporte a ficheiros AVI Microsoft Corporation Sist ema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\Program Files (x86)\ManyCam\opencv_highgui220.dll [Loaded DLLs] C:\Program Files (x86)\ManyCam\opencv_objdetect220.dll [Loaded DLLs] C:\Program Files (x86)\ManyCam\QtMultimedia4.dll ### C++ application development framework. Digia Plc and/or its subsidiary(-ie s) Qt4 [Loaded DLLs] C:\WINDOWS\SYSTEM32\POWRPROF.dll ### Power Profile Helper DLL Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\DSOUND.dll ### DirectSound Microsoft Corporation Sistema operativo Microsoft Windows 6.3.96 00.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\WLDAP32.dll ### Win32 LDAP API DLL Microsoft Corporation Sistema operativo Microsoft Window s 6.3.9600.16384 [Loaded DLLs] C:\Program Files (x86)\ManyCam\opencv_imgproc220.dll [Loaded DLLs] C:\Program Files (x86)\ManyCam\MSVCR100.dll ### Microsoft C Runtime Library Microsoft Corporation Microsoft Visual Studio 201 0 10.00.40219.325 [Loaded DLLs] C:\Program Files (x86)\ManyCam\MSVCP100.dll ### Microsoft C Runtime Library Microsoft Corporation Microsoft Visual Studio 201 0 10.00.40219.325 [Loaded DLLs] C:\Program Files (x86)\ManyCam\opencv_core220.dll [Loaded DLLs] C:\Program Files (x86)\ManyCam\QtSvg4.dll ### C++ application development framework. Digia Plc and/or its subsidiary(-ie s) Qt4 [Loaded DLLs] C:\WINDOWS\SYSTEM32\WINSPOOL.DRV ### Controlador de spooler do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\COMDLG32.dll ### Biblioteca (DLL) de caixas de dilogo comuns Microsoft Corporation Sistema o perativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\Program Files (x86)\ManyCam\QtGui4.dll ### C++ application development framework. Digia Plc and/or its subsidiary(-ie s) Qt4 [Loaded DLLs] C:\Program Files (x86)\ManyCam\MSVCR110.dll ### Microsoft C Runtime Library Microsoft Corporation Microsoft Visual Studio 201 2 11.00.51106.1 [Loaded DLLs] C:\Program Files (x86)\ManyCam\MSVCP110.dll ### Microsoft C Runtime Library Microsoft Corporation Microsoft Visual Studio 201 2 11.00.51106.1 [Loaded DLLs] C:\Program Files (x86)\ManyCam\QtCore4.dll ### C++ application development framework. Digia Plc and/or its subsidiary(-ie s) Qt4 [Loaded DLLs] C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b641 44ccf1df_5.82.9600.16384_none_7c55c866aa0c3ff0\comctl32.dll ### Biblioteca de Controlos Comuns Microsoft Corporation Sistema Operativo Mic rosoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\SAMCLI.DLL ### Security Accounts Manager Client DLL Microsoft Corporation Microsoft Window s Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\wkscli.dll ### Workstation Service Client DLL Microsoft Corporation Microsoft Windows Opera

ting System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\srvcli.dll ### Server Service Client DLL Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\netutils.dll ### Net Win32 API Helpers DLL Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\libt idy.dll ### libtidy.dll Apple Inc. [Loaded DLLs] C:\WINDOWS\SYSTEM32\NETAPI32.dll ### Net Win32 API DLL Microsoft Corporation Microsoft Windows Operating System 6 .3.9600.16384 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\libx ml2.dll ### libxml2 libxml2.dll 21.13 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\zlib 1.dll ### zlib data compression library zlib 1.2.5 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\SQLi te3.dll ### SQLite3 Dynamic Link Library Apple Inc. SQLite3 3.7.5 (111) [Loaded DLLs] C:\WINDOWS\SYSTEM32\iertutil.dll ### Utilitrio de tempo de execuo para o Internet Explorer Microsoft Corporation I nternet Explorer 11.00.9600.16384 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\Foun dation.dll ### Foundation Apple Inc. Foundation 1,830,11,0 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\CFNe twork.dll ### CFNetwork Apple, Inc. CFNetwork 1, 520, 3, 4 [Loaded DLLs] C:\WINDOWS\SYSTEM32\Secur32.dll ### Security Support Provider Interface Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df _1.1.9600.16384_none_dadf89385bc5c7d7\gdiplus.dll ### Microsoft GDI+ Microsoft Corporation Microsoft Windows Operating System 6.3. 9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\WININET.dll ### Extenses da Internet para Win32 Microsoft Corporation Internet Explorer 11. 00.9600.16384 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\AOSK it.dll ### AOSKit Dynamic Link Library Apple Inc. AOSKit Dynamic Link Library [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\iClo udServices_main.dll ### iCloud Services Apple Inc. iCloud [Loaded DLLs] C:\WINDOWS\SYSTEM32\DEVOBJ.dll ### Device Information Set DLL Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\WINMMBASE.dll ### Base Multimedia Extension API DLL Microsoft Corporation Microsoft Windows Op erating System 6.3.9600.16384 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\icud t46.dll ### ICU Data DLL The ICU Project International Components for Unicode 4, 6, 1, 1200 [Loaded DLLs] C:\WINDOWS\SYSTEM32\WINMM.dll ### MCI API DLL Microsoft Corporation Sistema operativo Microsoft Windows 6.3.96 00.16384

[Loaded DLLs] C:\WINDOWS\SYSTEM32\WSOCK32.dll ### Windows Socket 32-Bit DLL Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\libi cuuc.dll ### ICU Common DLL The ICU Project International Components for Unicode 4, 6, 1, 0 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\libi cuin.dll ### ICU I18N DLL The ICU Project International Components for Unicode 4, 6, 1, 0 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\libd ispatch.dll ### Dispatch Runtime Library Apple Inc. libdispatch 1,109,8,19 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\objc .dll ### Objective-C Runtime Library Apple Inc. objc4 1,435,16,14 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\pthr eadVC2.dll ### POSIX Threads for Windows32 Library Open Source Software community project 2, 7, 0, 11200 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\ASL. dll ### ASL.dll Apple Inc. [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\Core Foundation.dll ### CoreFoundation Apple Inc. CoreFoundation 1,630,18,0 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\YSCr ashDump.DLL ### YSCrashDump.dll Apple Inc. [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\Appl eVersions.dll ### Apple Software Support Version Check Dynamic Link Library Apple Inc. Apple Software Support Version Check 1, 0, 2, 1 [Loaded DLLs] C:\WINDOWS\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50 727.8428_none_d08a11e2442dc25d\MSVCR80.dll ### Microsoft C Runtime Library Microsoft Corporation Microsoft Visual Studio 200 5 8.00.50727.8428 [Loaded DLLs] C:\WINDOWS\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50 727.8428_none_d08a11e2442dc25d\MSVCP80.dll ### Microsoft C++ Runtime Library Microsoft Corporation Microsoft Visual Studio 2 005 8.00.50727.8428 [Loaded DLLs] C:\WINDOWS\SYSTEM32\nvapi.dll [Loaded DLLs] C:\WINDOWS\system32\wbem\fastprox.dll ### WMI Custom Marshaller Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\wbem\wbemsvc.dll ### WMI Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\wbemcomn.dll ### WMI Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\wbem\wbemprox.dll ### WMI Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\Users\Paulo\AppData\Local\NVIDIA\NvBackend\ApplicationOntolog y\Ontology.dll ### Application Ontology library NVIDIA Corporation NVIDIA GeForce Experience Application Ontology 15.3.0.0 [Loaded DLLs] C:\WINDOWS\system32\ncryptsslp.dll ### Microsoft SChannel Provider Microsoft Corporation Microsoft Windows Operatin g System 6.3.9600.16425 [Loaded DLLs] C:\WINDOWS\SYSTEM32\NTASN1.dll

### Microsoft ASN.1 API Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\ncrypt.dll ### Windows NCrypt Router Microsoft Corporation Sistema Operativo Microsoft Win dows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\gpapi.dll ### API do Cliente de Poltica de Grupo Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\schannel.dll ### Fornecedor de Segurana TLS/SSL Microsoft Corporation Sistema Operativo Micr osoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\sxs.dll ### Fusion 2.5 Microsoft Corporation Sistema operativo Microsoft Windows 6.3.960 0.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\webio.dll ### API de Protocolos de Transferncia Web Microsoft Corporation Sistema Operati vo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\Windows\System32\rasadhlp.dll ### Remote Access AutoDial Helper Microsoft Corporation Microsoft Windows Operat ing System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\System32\fwpuclnt.dll ### FWP/IPsec User-Mode API Microsoft Corporation Sistema operativo Microsoft W indows 6.3.9600.16384 [Loaded DLLs] C:\Program Files (x86)\Bonjour\mdnsNSP.dll ### Bonjour Namespace Provider Apple Inc. Bonjour 3,0,0,10 [Loaded DLLs] C:\WINDOWS\System32\winrnr.dll ### LDAP RnR Provider DLL Microsoft Corporation Microsoft Windows Operating Syst em 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\DNSAPI.dll ### DLL da API de cliente de DNS Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\NLAapi.dll ### Network Location Awareness 2 Microsoft Corporation Microsoft Windows Operati ng System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\pnrpnsp.dll ### Fornecedor de Espao de Nomes PNRP Microsoft Corporation Sistema operativo M icrosoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\napinsp.dll ### Fornecedor de Correes de Compatibilidade de Nomenclatura de Correio Eletrnico Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\mswsock.dll ### Fornecedor de servios de Microsoft Windows Sockets 2.0 Microsoft Corporatio n Sistema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\ntmarta.dll ### Fornecedor de Windows NT MARTA Microsoft Corporation Sistema operativo Mic rosoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\CFGMGR32.dll ### Configuration Manager DLL Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\ole32.dll ### Microsoft OLE para Windows Microsoft Corporation Sistema Operativo Microso ft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\WINHTTP.dll ### Servios HTTP do Windows Microsoft Corporation Sistema operativo Microsoft Wi ndows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\SETUPAPI.dll ### API do programa de configurao do Windows Microsoft Corporation Sistema opera tivo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\WINTRUST.dll ### Microsoft Trust Verification APIs Microsoft Corporation Microsoft Windows Op

erating System 6.3.9600.16425 [Loaded DLLs] C:\Windows\SYSTEM32\actxprxy.dll ### ActiveX Interface Marshaling Library Microsoft Corporation Microsoft Window s Operating System 6.3.9600.16425 [Loaded DLLs] C:\WINDOWS\SYSTEM32\OLEAUT32.dll ### Microsoft Corporation 6.3.9600.16384 [Loaded DLLs] C:\Windows\System32\msxml6.dll ### MSXML 6.0 Microsoft Corporation Microsoft XML Core Services 6.30.9600.1638 4 [Loaded DLLs] C:\Windows\System32\wpnapps.dll ### Aplicaes de Notificaes Push do Windows Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\clbcatq.dll ### COM+ Configuration Catalog Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\kernel.appcore.dll ### AppModel API Host Microsoft Corporation Microsoft Windows Operating System 6 .3.9600.16384 [Loaded DLLs] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamtoast.dll ### Malwarebytes Anti-Malware Malwarebytes Corporation Malwarebytes Anti-Malwa re 1.70.0.0000 [Loaded DLLs] C:\WINDOWS\system32\dwmapi.dll ### API do Gestor de Janelas do Ambiente de Trabalho da Microsoft Microsoft Co rporation Sistema Operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\uxtheme.dll ### Biblioteca UxTheme da Microsoft Microsoft Corporation Sistema operativo Mi crosoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\bcrypt.dll ### Biblioteca de Primitivas Criptogrficas do Windows Microsoft Corporation Sis tema Operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\rsaenh.dll ### Microsoft Enhanced Cryptographic Provider Microsoft Corporation Microsoft W indows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\CRYPTSP.dll ### Cryptographic Service Provider API Microsoft Corporation Microsoft Windows O perating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\profapi.dll ### User Profile Basic API Microsoft Corporation Microsoft Windows Operating Sys tem 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\SHCORE.dll ### SHCORE Microsoft Corporation Sistema Operativo Microsoft Windows 6.3.9600.16 384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\MSCTF.dll ### MSCTF Server DLL Microsoft Corporation Sistema operativo Microsoft Windows 6 .3.9600.16384 [Loaded DLLs] C:\WINDOWS\system32\IMM32.DLL ### Multi-User Windows IMM32 API Client DLL Microsoft Corporation Microsoft Win dows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\bcryptPrimitives.dll ### Windows Cryptographic Primitives Library Microsoft Corporation Microsoft Wi ndows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\CRYPTBASE.dll ### Base cryptographic API DLL Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\SspiCli.dll ### Security Support Provider Interface Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16408 [Loaded DLLs] C:\WINDOWS\SYSTEM32\WINNSI.DLL ### Network Store Information RPC interface Microsoft Corporation Microsoft Win dows Operating System 6.3.9600.16384

[Loaded DLLs] C:\WINDOWS\SYSTEM32\NSI.dll ### NSI User-mode interface DLL Microsoft Corporation Microsoft Windows Operatin g System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\MSASN1.dll ### ASN.1 Runtime APIs Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\RPCRT4.dll ### Runtime de Chamada de Procedimento Remoto Microsoft Corporation Sistema op erativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\sechost.dll ### Host for SCM/SDDL/LSA Lookup APIs Microsoft Corporation Microsoft Windows Op erating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\combase.dll ### Microsoft COM para Windows Microsoft Corporation Sistema operativo Microso ft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\WTSAPI32.dll ### Windows Remote Desktop Session Host Server SDK APIs Microsoft Corporation Microsoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\WS2_32.dll ### DLL Windows Socket 2.0 32 Bits Microsoft Corporation Sistema operativo Mic rosoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\IPHLPAPI.DLL ### IP Helper API Microsoft Corporation Microsoft Windows Operating System 6.3.9 600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\CRYPT32.dll ### Crypto API32 Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9 600.16431 [Loaded DLLs] C:\WINDOWS\SYSTEM32\SHLWAPI.dll ### Biblioteca de pequenos utilitrios da shell Microsoft Corporation Sistema op erativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\msvcrt.dll ### Windows NT CRT DLL Microsoft Corporation Microsoft Windows Operating System 7.0.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\VERSION.dll ### Version Checking and File Installation Libraries Microsoft Corporation Mic rosoft Windows Operating System 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\ADVAPI32.dll ### API avanada com base em Windows 32 Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\SHELL32.dll ### DLL comum da shell do Windows Microsoft Corporation Sistema operativo Micr osoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\GDI32.dll ### GDI Client DLL Microsoft Corporation Microsoft Windows Operating System 6.3. 9600.16421 [Loaded DLLs] C:\WINDOWS\SYSTEM32\USER32.dll ### DLL de Cliente de API de UTILIZADOR do Windows Multiutilizador Microsoft C orporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamnet.dll ### Malwarebytes Anti-Malware Malwarebytes Corporation Malwarebytes Anti-Malwa re 1.70.0.0000 [Loaded DLLs] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.dll ### Malwarebytes Anti-Malware Malwarebytes Corporation Malwarebytes Anti-Malwa re 1.70.0.0000 [Loaded DLLs] C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b641 44ccf1df_6.0.9600.16384_none_a9f4965301334e09\COMCTL32.dll ### Biblioteca de Controlos de Experincia de Utilizador Microsoft Corporation S istema Operativo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\KERNELBASE.dll ### DLL cliente da API BASE do Windows NT Microsoft Corporation Sistema operat

ivo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\KERNEL32.DLL ### DLL cliente da API BASE do Windows NT Microsoft Corporation Sistema operat ivo Microsoft Windows 6.3.9600.16384 [Loaded DLLs] C:\WINDOWS\SYSTEM32\ntdll.dll ### DLL de camada do NT Microsoft Corporation Sistema operativo Microsoft Windo ws 6.3.9600.16384 [Running Services] Appinfo ### Internal Name: Appinfo. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k netsvcs * Facilita a execuo de aplicaes interativas com pr ivilgios administrativos adicionais. Se este servio for parado, os utilizadores no conseguiro iniciar as aplicaes com os privilgios administrativos adicionais de que p odem necessitar para executar as tarefas de utilizador pretendidas. Processo Anf itrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Wind ows 6.3.9600.16384 [Running Services] Apple Mobile Device ### Internal Name: Apple Mobile Device. Status: service is running. Actual Fil e: "C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileD eviceService.exe" * Provides the interface to Apple mobile devices. MobileDevice Service Apple Inc. 3.3.0.0 [Running Services] AudioEndpointBuilder ### Internal Name: AudioEndpointBuilder. Status: service is running. Actual Fi le: C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted * Efetua a g esto de dispositivos de udio para o servio udio do Windows. Se este servio for parado , os dispositivos e efeitos de udio no funcionaro corretamente. Se este servio for d esativado, quaisquer servios que dependam explicitamente do mesmo no sero iniciados Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] Audiosrv ### Internal Name: Audiosrv. Status: service is running. Actual File: C:\WINDO WS\System32\svchost.exe -k LocalServiceNetworkRestricted * Efetua a gesto de udio para programas baseados no Windows. Se este servio for parado, os dispositivos d e udio e efeitos no vo funcionar corretamente. Se este servio for desativado, quais quer servios que dependam explicitamente do mesmo no vo conseguir arrancar Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] BFE ### Internal Name: BFE. Status: service is running. Actual File: C:\WINDOWS\sy stem32\svchost.exe -k LocalServiceNoNetwork * O Motor de Filtragem Base (BFE) um servio que gere as polticas da firewall e do protocolo IPsec e implementa a filtr agem do modo de utilizador. Parar ou desativar o servio BFE ir reduzir significati vamente a segurana do sistema, resultando igualmente na imprevisibilidade do comp ortamento de aplicaes de gesto de IPsec e de firewall. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.1638 4 [Running Services] BITS ### Internal Name: BITS. Status: service is running. Actual File: C:\WINDOWS\S ystem32\svchost.exe -k netsvcs * Transfere ficheiros em segundo plano utilizando largura de banda de rede inativa. Se o servio estiver desativado, as funes que dep enderem do servio BITS, como o Windows Update ou o MSN Explorer, no conseguiro tran sferir automaticamente programas e outras informaes. Processo Anfitrio dos Servios d o Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] Bonjour Service ### Internal Name: Bonjour Service. Status: service is running. Actual File: " C:\Program Files\Bonjour\mDNSResponder.exe" * Permite a configurao na rede e deteco automtica de dispositivos e servios. Bonjour Service Apple Inc. Bonjour 3,0,0,10 [Running Services] BrokerInfrastructure ### Internal Name: Bonjour Service. Status: service is running. Actual File: " C:\Program Files\Bonjour\mDNSResponder.exe" * Permite a configurao na rede e deteco

automtica de dispositivos e servios. Bonjour Service Apple Inc. Bonjour 3,0,0,10 [Running Services] Browser ### Internal Name: Browser. Status: service is running. Actual File: C:\WINDOW S\System32\svchost.exe -k netsvcs * Mantm uma lista atualizada de computadores na rede e fornece-a aos computadores designados por browsers. Se este servio estive r parado, esta lista no ser atualizada ou mantida. Se este servio estiver desativad o, quaisquer servios que dependam dele explicitamente no sero iniciados. Processo A nfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Wi ndows 6.3.9600.16384 [Running Services] CertPropSvc ### Internal Name: Browser. Status: service is running. Actual File: C:\WINDOW S\System32\svchost.exe -k netsvcs * Mantm uma lista atualizada de computadores na rede e fornece-a aos computadores designados por browsers. Se este servio estive r parado, esta lista no ser atualizada ou mantida. Se este servio estiver desativad o, quaisquer servios que dependam dele explicitamente no sero iniciados. Processo A nfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Wi ndows 6.3.9600.16384 [Running Services] CryptSvc ### Internal Name: CryptSvc. Status: service is running. Actual File: C:\WINDO WS\system32\svchost.exe -k NetworkService * Fornece trs servios de gesto: o Servio d e Catlogo de Bases de Dados, que confirma as assinaturas de ficheiros do Windows e permite a instalao de novos programas; o Servio de Proteo de Raiz, que adiciona e r emove certificados de Autoridade de Certificao de Raiz Fidedigna deste computador e o Servio de Atualizao de Certificados de Raiz Automtico, que obtm certificados de r aiz do Windows Update e permite cenrios como SSL. Se este servio for parado, estes servios de gesto no funcionaro corretamente. Se este servio for desativado, no ser po svel iniciar nenhum dos servios que dele dependam explicitamente. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6 .3.9600.16384 [Running Services] CscService ### Internal Name: CscService. Status: service is running. Actual File: C:\WIN DOWS\System32\svchost.exe -k LocalSystemNetworkRestricted * O servio de Ficheiros Offline executa atividades de manuteno na cache de Ficheiros Offline, responda a eventos de incio de sesso e de fim de sesso do utilizador, implementa servios intern os da API pblica e distribui eventos interessantes aos que esto interessados nas a tividades dos Ficheiros Offline e alteraes no estado da cache. Processo Anfitrio do s Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3. 9600.16384 [Running Services] CTAudSvcService ### Internal Name: CTAudSvcService. Status: service is running. Actual File: C :\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe * Creative Audio Servi ce Creative Technology Ltd Creative Audio Service 1.0.0.0 [Running Services] DcomLaunch ### Internal Name: CTAudSvcService. Status: service is running. Actual File: C :\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe * Creative Audio Servi ce Creative Technology Ltd Creative Audio Service 1.0.0.0 [Running Services] DeviceAssociationService ### Internal Name: DeviceAssociationService. Status: service is running. Actua l File: C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted * Permit e o emparelhamento entre o sistema e dispositivos com ou sem fios. Processo Anfi trio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windo ws 6.3.9600.16384 [Running Services] Dhcp ### Internal Name: Dhcp. Status: service is running. Actual File: C:\WINDOWS\s ystem32\svchost.exe -k LocalServiceNetworkRestricted * Regista e atualiza endereo s IP e registos de DNS para este computador. Se este servio for parado, este comp utador no receber endereos IP dinmicos e atualizaes de DNS. Se este servio for desativ do, quaisquer servios que dependam explicitamente do mesmo no vo conseguir iniciar. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384

[Running Services] Dnscache ### Internal Name: Dnscache. Status: service is running. Actual File: C:\WINDO WS\system32\svchost.exe -k NetworkService * O servio Cliente DNS (dnscache) coloc a em cache os nomes DNS (Sistema de Nomes de Domnio) e regista o nome de computad or completo para este computador. Se o servio estiver parado, os nomes DNS contin uam a ser resolvidos. No entanto, os resultados das consultas de nomes DNS no so c olocados em cache e o nome do computador no registado. Se o servio estiver desativ ado, quaisquer servios que dependam explicitamente dele no sero iniciados. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] DPS ### Internal Name: Dnscache. Status: service is running. Actual File: C:\WINDO WS\system32\svchost.exe -k NetworkService * O servio Cliente DNS (dnscache) coloc a em cache os nomes DNS (Sistema de Nomes de Domnio) e regista o nome de computad or completo para este computador. Se o servio estiver parado, os nomes DNS contin uam a ser resolvidos. No entanto, os resultados das consultas de nomes DNS no so c olocados em cache e o nome do computador no registado. Se o servio estiver desativ ado, quaisquer servios que dependam explicitamente dele no sero iniciados. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] EFS ### Internal Name: Dnscache. Status: service is running. Actual File: C:\WINDO WS\system32\svchost.exe -k NetworkService * O servio Cliente DNS (dnscache) coloc a em cache os nomes DNS (Sistema de Nomes de Domnio) e regista o nome de computad or completo para este computador. Se o servio estiver parado, os nomes DNS contin uam a ser resolvidos. No entanto, os resultados das consultas de nomes DNS no so c olocados em cache e o nome do computador no registado. Se o servio estiver desativ ado, quaisquer servios que dependam explicitamente dele no sero iniciados. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] EventLog ### Internal Name: EventLog. Status: service is running. Actual File: C:\WINDO WS\System32\svchost.exe -k LocalServiceNetworkRestricted * Este servio gere event os e registos de eventos. Suporta registo, consulta e subscrio de eventos, arquivo de registos de eventos e gesto de metadados de eventos. Pode apresentar eventos no formato XML e texto simples. A interrupo deste servio poder comprometer a segurana e fiabilidade do sistema. Processo Anfitrio dos Servios do Windows Microsoft Corp oration Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] EventSystem ### Internal Name: EventSystem. Status: service is running. Actual File: C:\WI NDOWS\system32\svchost.exe -k LocalService * Suporta o servio de notificao de event os do sistema (SENS), que fornece a distribuio automtica de eventos para subscrever componentes Component Object Model (COM). Se o servio for parado, o SENS ser ence rrado e no poder fornecer notificaes de incio e de fim de sesso. Se este servio for de ativado, quaisquer servios que dependam explicitamente do mesmo no conseguiro ser i nicializados. Processo Anfitrio dos Servios do Windows Microsoft Corporation Siste ma operativo Microsoft Windows 6.3.9600.16384 [Running Services] fdPHost ### Internal Name: fdPHost. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k LocalService * O servio FDPHOST aloja os fornecedores d e deteo de rede FD (Function Discovery). Estes fornecedores FD fornecem servios de deteo de rede para os protocolos SSDP (Simple Services Discovery Protocol) e WS-D (Web Services Discovery). Parar ou desativar o servio FDPHOST ir desativar a deteo d e rede nestes protocolos durante a utilizao de FD. Quando este servio est indisponvel , os servios de rede que utilizarem FD e dependam destes protocolos de deteo no cons eguiro localizar dispositivos ou recursos de rede. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] FDResPub ### Internal Name: FDResPub. Status: service is running. Actual File: C:\WINDO WS\system32\svchost.exe -k LocalServiceAndNoImpersonation * Publica este computa

dor e recursos anexados a este computador para que possam ser detetados na rede. Se este servio for parado, os recursos de rede deixaro de ser publicados e no sero detetados por outros computadores na rede. Processo Anfitrio dos Servios do Window s Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] FontCache ### Internal Name: FontCache. Status: service is running. Actual File: C:\WIND OWS\system32\svchost.exe -k LocalService * Otimiza o desempenho das aplicaes, colo cando em cache dados de tipos de letra mais frequentemente utilizados. Se este s ervio ainda no estiver em execuo, as aplicaes iro inici-lo. possvel desativ-lo, m degradar o desempenho das aplicaes. Processo Anfitrio dos Servios do Windows Microso ft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] gpsvc ### Internal Name: FontCache. Status: service is running. Actual File: C:\WIND OWS\system32\svchost.exe -k LocalService * Otimiza o desempenho das aplicaes, colo cando em cache dados de tipos de letra mais frequentemente utilizados. Se este s ervio ainda no estiver em execuo, as aplicaes iro inici-lo. possvel desativ-lo, m degradar o desempenho das aplicaes. Processo Anfitrio dos Servios do Windows Microso ft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] hidserv ### Internal Name: hidserv. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k LocalSystemNetworkRestricted * Ativa e mantm a utilizao d e botes de acesso direto em teclados, controlos remotos e outros dispositivos de multimdia. Recomenda-se que este servio seja mantido em execuo. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9 600.16384 [Running Services] HomeGroupListener ### Internal Name: HomeGroupListener. Status: service is running. Actual File: C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted * Leva a cabo a lteraes no computador local associadas configurao e manuteno do computador com adeso grupo domstico. Se este servio for parado ou desativado, o computador no funcionar corretamente num grupo domstico e o seu grupo domstico poder no funcionar corretamen te. Recomenda-se que mantenha este servio em execuo. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] HomeGroupProvider ### Internal Name: HomeGroupProvider. Status: service is running. Actual File: C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted * Executa tare fas de rede associadas configurao e manuteno de grupos domsticos. Se este servio for arado ou desativado, o computador no conseguir detetar outros grupos domsticos e o seu grupo domstico poder no funcionar corretamente. Recomenda-se que mantenha este servio em execuo. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sist ema operativo Microsoft Windows 6.3.9600.16384 [Running Services] IKEEXT ### Internal Name: IKEEXT. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k netsvcs * O servio IKEEXT aloja os mdulos de criao de chave s IKE (Internet Key Exchange) e AuthIP (Authenticated Internet Protocol). Estes mdulos de criao de chaves so utilizados para autenticao e troca de chaves no protocolo IPsec. Parar ou desativar o servio IKEEXT desativar a troca de chaves IKE e AuthI P com outros computadores numa rede ponto a ponto. O IPsec normalmente configura do para utilizar IKE ou AuthIP, pelo que a paragem ou desativao do servio IKEEXT po der resultar numa falha do IPsec e comprometer a segurana do sistema. Recomendamos vivamente que tenha o servio IKEEXT em execuo. Processo Anfitrio dos Servios do Wind ows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] iphlpsvc ### Internal Name: iphlpsvc. Status: service is running. Actual File: C:\WINDO WS\System32\svchost.exe -k NetSvcs * Fornece conectividade de tnel utilizando tec nologias de transio IPv6 (6to4, ISATAP, Proxy de Porta e Teredo) e IP-HTTPS. Se es te servio estiver parado, o computador no usufruir das vantagens de conectividade a vanada oferecidas por estas tecnologias. Processo Anfitrio dos Servios do Windows M icrosoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] LanmanServer

### Internal Name: LanmanServer. Status: service is running. Actual File: C:\W INDOWS\system32\svchost.exe -k netsvcs * Suporta a partilha de ficheiros, de imp resso e de pipes com nome sobre a rede para este computador. Se este servio estive r parado, estas funes no estaro disponveis. Se este servio estiver desativado, quaisqu er servios que dependam dele explicitamente no sero iniciados. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9 600.16384 [Running Services] LanmanWorkstation ### Internal Name: LanmanWorkstation. Status: service is running. Actual File: C:\WINDOWS\System32\svchost.exe -k NetworkService * Cria e mantm ligaes de rede cl iente aos servidores remotos atravs do protocolo SMB. Se este servio for parado, e stas ligaes no estaro disponveis. Se este servio for desativado, no ser possvel inic enhum dos servios que dele dependam explicitamente. Processo Anfitrio dos Servios d o Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384

[Running Services] lmhosts ### Internal Name: lmhosts. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k LocalServiceNetworkRestricted * Fornece suporte para o servio NetBIOS por TCP/IP (NetBT) e a resoluo de nomes NetBIOS para clientes na re de, permitindo assim aos utilizadores partilhar ficheiros, imprimir e iniciar se sso na rede. Se este servio for parado, estas funes podero no estar disponveis. Se est servio for desativado, quaisquer servios que dependam explicitamente do mesmo no vo conseguir iniciar. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] LMIGuardianSvc ### Internal Name: LMIGuardianSvc. Status: service is running. Actual File: "C :\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe" * Support LogMeIn processe s with quality assurance feedback LMIGuardianSvc LogMeIn, Inc. LMIGuardianSvc 10 .1.1622 [Running Services] LMIMaint ### Internal Name: LMIMaint. Status: service is running. Actual File: "C:\Prog ram Files (x86)\LogMeIn\x64\RaMaint.exe" * LogMeIn Maintenance Service LogMeIn, Inc. LogMeIn 4.1.3430 [Running Services] LogMeIn ### Internal Name: LogMeIn. Status: service is running. Actual File: "C:\Progr am Files (x86)\LogMeIn\x64\LogMeIn.exe" * LogMeIn LogMeIn, Inc. LogMeIn 4.1.156 0 [Running Services] LSM ### Internal Name: LogMeIn. Status: service is running. Actual File: "C:\Progr am Files (x86)\LogMeIn\x64\LogMeIn.exe" * LogMeIn LogMeIn, Inc. LogMeIn 4.1.156 0 [Running Services] MBAMScheduler ### Internal Name: MBAMScheduler. Status: service is running. Actual File: "C: \Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe" * Malwarebyte s Anti-Malware scheduler Malwarebytes Anti-Malware Malwarebytes Corporation Malw arebytes Anti-Malware 1.70.0.0000 [Running Services] MBAMService ### Internal Name: MBAMService. Status: service is running. Actual File: "C:\P rogram Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe" * Malwarebytes An ti-Malware service Malwarebytes Anti-Malware Malwarebytes Corporation Malwarebyt es Anti-Malware 1.70.0.0000 [Running Services] MMCSS ### Internal Name: MMCSS. Status: service is running. Actual File: C:\WINDOWS\ system32\svchost.exe -k netsvcs * Permite a definio de prioridades relativas do tr abalho com base nas prioridades de tarefas em todo o sistema. Destina-se princip almente a aplicaes de multimdia. Se este servio for parado, as tarefas individuais recorrem respetiva prioridade predefinida. Processo Anfitrio dos Servios do Window s Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] MpsSvc ### Internal Name: MpsSvc. Status: service is running. Actual File: C:\WINDOWS

\system32\svchost.exe -k LocalServiceNoNetwork * A Firewall do Windows ajuda a p roteger o computador impedindo os utilizadores no autorizados de obterem acesso a o computador atravs de uma rede ou da Internet. Processo Anfitrio dos Servios do Wi ndows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] NcbService ### Internal Name: NcbService. Status: service is running. Actual File: C:\WIN DOWS\System32\svchost.exe -k LocalSystemNetworkRestricted * Ligaes aos mediadores que permitem s Aplicaes da Loja Windows receber notificaes da Internet. Processo Anfi trio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windo ws 6.3.9600.16384 [Running Services] NcdAutoSetup ### Internal Name: NcdAutoSetup. Status: service is running. Actual File: C:\W INDOWS\System32\svchost.exe -k LocalServiceNoNetwork * O servio Configurao Automtica de Dispositivos Ligados Rede monitoriza e instala dispositivos qualificados que ligam a uma rede qualificada. Parar ou desativar este servio ir impedir o Windows de detetar e instalar automaticamente dispositivos qualificados ligados rede. C ontudo, os utilizadores continuam a poder adicionar manualmente dispositivos lig ados rede a um PC atravs da interface de utilizador. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.1638 4 [Running Services] netprofm ### Internal Name: netprofm. Status: service is running. Actual File: C:\WINDO WS\System32\svchost.exe -k LocalService * Identifica as redes s quais o computado r se ligou, recolhe e armazena propriedades para as mesmas e notifica aplicaes qua ndo estas propriedades se alteram. Processo Anfitrio dos Servios do Windows Micros oft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] NlaSvc ### Internal Name: NlaSvc. Status: service is running. Actual File: C:\WINDOWS \System32\svchost.exe -k NetworkService * Recolhe e armazena informaes de configur ao para a rede e notifica programas quando estas informaes so modificadas. Se este se rvio for parado, as informaes de configurao podero ficar indisponveis. Se este servio r desativado, quaisquer servios que dependam explicitamente dele no iro iniciar. Pr ocesso Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Mic rosoft Windows 6.3.9600.16384 [Running Services] nsi ### Internal Name: nsi. Status: service is running. Actual File: C:\WINDOWS\sy stem32\svchost.exe -k LocalService * Este servio fornece notificaes de rede (por ex .: adio/eliminao de interfaces, etc.) aos clientes de modo de utilizador. A paragem deste servio ir causar perda de conectividade de rede. Se este servio for desativad o, quaisquer servios que dependam explicitamente dele no iro arrancar. Processo Anf itrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Wind ows 6.3.9600.16384 [Running Services] NvNetworkService ### Internal Name: NvNetworkService. Status: service is running. Actual File: "C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe" * NV IDIA Network Service NVIDIA Network Service NVIDIA Corporation NVIDIA Network Se rvice 1"."0"."0"."1 [Running Services] NvStreamSvc ### Internal Name: NvStreamSvc. Status: service is running. Actual File: "C:\P rogram Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" * Service for SHIEL D Streaming NVIDIA Streamer Service NVIDIA Corporation NVIDIA Streamer 1.6.75.0 [Running Services] nvsvc ### Internal Name: nvsvc. Status: service is running. Actual File: "C:\WINDOWS \system32\nvvsvc.exe" * Provides system and desktop level support to the NVIDIA display driver NVIDIA Driver Helper Service, Version 331.82 NVIDIA Corporation N VIDIA Driver Helper Service, Version 331.82 8.17.13.3182 [Running Services] p2pimsvc ### Internal Name: p2pimsvc. Status: service is running. Actual File: C:\WINDO WS\System32\svchost.exe -k LocalServicePeerNet * Fornece servios de identidade pa ra o protocolo PNRP (Peer Name Resolution Protocol) e servios de agrupamento Pont

o a Ponto. Se desativado, o protocolo PNRP (Peer Name Resolution Protocol) e os servios de Agrupamento Ponto a Ponto podero no funcionar, sendo que algumas aplicaes, tais como Grupo Domstico e Assistncia Remota podero no funcionar corretamente. Proc esso Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Running Services] p2psvc ### Internal Name: p2psvc. Status: service is running. Actual File: C:\WINDOWS \System32\svchost.exe -k LocalServicePeerNet * Permite comunicao entre vrios interl ocutores utilizando Agrupamento Ponto a Ponto. Se estiver desativado, algumas ap licaes, tais como o Grupo Domstico, podero no funcionar. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.1638 4 [Running Services] PcaSvc ### Internal Name: PcaSvc. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k LocalSystemNetworkRestricted * Este servio fornece supor te para o PCA (Program Compatibility Assistant). O PCA monitoriza os programas i nstalados e executados pelo utilizador e deteta problemas de compatibilidade con hecidos. Se este servio for parado, o PCA no funcionar corretamente. Processo Anfit rio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Window s 6.3.9600.16384 [Running Services] PlugPlay ### Internal Name: PlugPlay. Status: service is running. Actual File: C:\WINDO WS\system32\svchost.exe -k DcomLaunch * Permite que um computador identifique e se adapte a alteraes de hardware com pouca ou nenhuma interatividade do utilizador . A paragem ou desativao deste servio resultar na instabilidade do sistema. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] PNRPsvc ### Internal Name: PNRPsvc. Status: service is running. Actual File: C:\WINDOW S\System32\svchost.exe -k LocalServicePeerNet * Permite a resoluo sem servidor de nomes de elementos de rede atravs da Internet utilizando o protocolo PNRP (Peer N ame Resolution Protocol). Se desativado, algumas aplicaes ponto a ponto e de colab orao, tais como a Assistncia Remota, podero no funcionar. Processo Anfitrio dos Servio do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.163 84 [Running Services] PolicyAgent ### Internal Name: PolicyAgent. Status: service is running. Actual File: C:\WI NDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted * O IPsec (Interne t Protocol security) suporta a autenticao de elementos ao nvel da rede, a autenticao de origem de dados, integridade de dados, confidencialidade de dados (encriptao) e proteo de repetio. Este servio impe polticas IPsec criadas atravs do snap-in de Pol de Segurana de IP ou a ferramenta da linha de comandos "netsh ipsec". Se parar e ste servio, podem ocorrer problemas de conectividade de rede se a poltica requerer que as ligaes utilizem o IPsec. Alm disso, a gesto remota da Firewall do Windows no est disponvel quando este servio est parado. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] Power ### Internal Name: Power. Status: service is running. Actual File: C:\WINDOWS\ system32\svchost.exe -k DcomLaunch * Gere polticas de energia e a entrega de noti ficaes de poltica de energia. Processo Anfitrio dos Servios do Windows Microsoft Corp oration Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] ProfSvc ### Internal Name: ProfSvc. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k netsvcs * Este servio responsvel pelo carregamento e des carregamento de perfis de utilizador. Se este servio for parado ou desativado, os utilizadores deixaro de conseguir iniciar ou terminar sesso com xito, as aplicaes po dero ter problemas na obteno de dados dos utilizadores e os componentes registados para receber notificaes de eventos de perfil no as recebero. Processo Anfitrio dos Se rvios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600 .16384

[Running Services] RpcEptMapper ### Internal Name: ProfSvc. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k netsvcs * Este servio responsvel pelo carregamento e des carregamento de perfis de utilizador. Se este servio for parado ou desativado, os utilizadores deixaro de conseguir iniciar ou terminar sesso com xito, as aplicaes po dero ter problemas na obteno de dados dos utilizadores e os componentes registados para receber notificaes de eventos de perfil no as recebero. Processo Anfitrio dos Se rvios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600 .16384 [Running Services] RpcSs ### Internal Name: ProfSvc. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k netsvcs * Este servio responsvel pelo carregamento e des carregamento de perfis de utilizador. Se este servio for parado ou desativado, os utilizadores deixaro de conseguir iniciar ou terminar sesso com xito, as aplicaes po dero ter problemas na obteno de dados dos utilizadores e os componentes registados para receber notificaes de eventos de perfil no as recebero. Processo Anfitrio dos Se rvios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600 .16384 [Running Services] SamSs ### Internal Name: SamSs. Status: service is running. Actual File: C:\WINDOWS\ system32\lsass.exe * O arranque deste servio indica aos restantes servios que o Ge stor de Contas de Segurana (SAM) est pronto para aceitar pedidos. Se desativar est e servio, impedir que os outros servios do sistema sejam notificados quando o SAM e stiver pronto, o que poder impedir que esses servios sejam iniciados corretamente. Este servio no deve ser desativado. Local Security Authority Process Microsoft Co rporation Microsoft Windows Operating System 6.3.9600.16384 [Running Services] Schedule ### Internal Name: SamSs. Status: service is running. Actual File: C:\WINDOWS\ system32\lsass.exe * O arranque deste servio indica aos restantes servios que o Ge stor de Contas de Segurana (SAM) est pronto para aceitar pedidos. Se desativar est e servio, impedir que os outros servios do sistema sejam notificados quando o SAM e stiver pronto, o que poder impedir que esses servios sejam iniciados corretamente. Este servio no deve ser desativado. Local Security Authority Process Microsoft Co rporation Microsoft Windows Operating System 6.3.9600.16384 [Running Services] SENS ### Internal Name: SENS. Status: service is running. Actual File: C:\WINDOWS\s ystem32\svchost.exe -k netsvcs * Monitoriza eventos do sistema e notifica os sub scritores do Sistema de Eventos do COM+ acerca destes eventos. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6. 3.9600.16384 [Running Services] SessionEnv ### Internal Name: SessionEnv. Status: service is running. Actual File: C:\WIN DOWS\System32\svchost.exe -k netsvcs * O Servio de Configurao do Ambiente de Trabal ho Remoto (RDCS) responsvel por todas as atividades de configurao e manuteno de sesse relacionadas com o Ambiente de Trabalho Remoto e com os Servios de Ambiente de T rabalho Remoto que requerem o contexto SYSTEM. Estas incluem pastas temporrias po r sesso, temas de RD e certificados de RD. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] ShellHWDetection ### Internal Name: ShellHWDetection. Status: service is running. Actual File: C:\WINDOWS\System32\svchost.exe -k netsvcs * Fornece notificaes para eventos de ha rdware de reproduo automtica. Processo Anfitrio dos Servios do Windows Microsoft Cor poration Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] simptcp ### Internal Name: simptcp. Status: service is running. Actual File: C:\WINDOW S\System32\tcpsvcs.exe * Suporta os seguintes servios TCP/IP: Gerador de Caratere s, Hora, Rejeitar, Eco e Citao do Dia. TCP/IP Services Application Microsoft Corpo ration Microsoft Windows Operating System 6.3.9600.16384 [Running Services] Spooler ### Internal Name: Spooler. Status: service is running. Actual File: C:\WINDOW

S\System32\spoolsv.exe * Este servio efetua spool das tarefas de impresso e proces sa a interao com a impressora. Se desativar este servio, no poder imprimir ou ver as impressoras. Spooler SubSystem App Microsoft Corporation Sistema operativo Micro soft Windows 6.3.9600.16384 [Running Services] SSDPSRV ### Internal Name: SSDPSRV. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k LocalServiceAndNoImpersonation * Identifica dispositiv os e servios de rede que utilizam o protocolo de identificao SSDP, tais como dispos itivos UPnP. Tambm anuncia dispositivos e servios SSDP em execuo no computador local . Se este servio for parado, os dispositivos baseados em SSDP no sero identificados . Se este servio for desativado, quaisquer servios que dependam explicitamente del e no sero iniciados. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] Stereo Service ### Internal Name: Stereo Service. Status: service is running. Actual File: "C :\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" * Provides s ystem support for NVIDIA Stereoscopic 3D driver Stereo Vision Control Panel API Server NVIDIA Corporation Stereo Vision Control Panel API Server 7.17.13.3182 [Running Services] stisvc ### Internal Name: stisvc. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k imgsvc * Fornece servios de aquisio de imagem para scanner s e cmaras Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema o perativo Microsoft Windows 6.3.9600.16384 [Running Services] SysMain ### Internal Name: SysMain. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k LocalSystemNetworkRestricted * Mantm e melhora o desemp enho do sistema ao longo do tempo. Processo Anfitrio dos Servios do Windows Micros oft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] SystemEventsBroker ### Internal Name: SysMain. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k LocalSystemNetworkRestricted * Mantm e melhora o desemp enho do sistema ao longo do tempo. Processo Anfitrio dos Servios do Windows Micros oft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] TermService ### Internal Name: TermService. Status: service is running. Actual File: C:\WI NDOWS\System32\svchost.exe -k NetworkService * Permite que os utilizadores estab eleam ligao interativa a um computador remoto. O Ambiente de Trabalho Remoto e o Se rvidor de Anfitrio de Sesses de Ambiente de Trabalho Remoto dependem deste servio. Para impedir a utilizao remota deste computador, desmarque as caixas de verificao do separador Remoto do item Propriedades do Sistema no Painel de Controlo. Process o Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsof t Windows 6.3.9600.16384 [Running Services] Themes ### Internal Name: Themes. Status: service is running. Actual File: C:\WINDOWS \System32\svchost.exe -k netsvcs * Fornece a gesto de temas por parte dos utiliza dores. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema oper ativo Microsoft Windows 6.3.9600.16384 [Running Services] TimeBroker ### Internal Name: Themes. Status: service is running. Actual File: C:\WINDOWS \System32\svchost.exe -k netsvcs * Fornece a gesto de temas por parte dos utiliza dores. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema oper ativo Microsoft Windows 6.3.9600.16384 [Running Services] TrkWks ### Internal Name: TrkWks. Status: service is running. Actual File: C:\WINDOWS \System32\svchost.exe -k LocalSystemNetworkRestricted * Mantm as ligaes entre fiche iros NTFS num computador ou entre computadores numa rede. Processo Anfitrio dos S ervios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.960 0.16384 [Running Services] UmRdpService ### Internal Name: UmRdpService. Status: service is running. Actual File: C:\W

INDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted * Permite o redirecc ionamento de Impressoras/Unidades/Portas para ligaes RDP Processo Anfitrio dos Serv ios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.1 6384 [Running Services] VaultSvc ### Internal Name: VaultSvc. Status: service is running. Actual File: C:\WINDO WS\system32\lsass.exe * Fornece armazenamento seguro e obteno segura de credenciai s para utilizadores, aplicaes e pacotes de servios de segurana. Local Security Autho rity Process Microsoft Corporation Microsoft Windows Operating System 6.3.9600.163 84 [Running Services] W32Time ### Internal Name: W32Time. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k LocalService * Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any serv ices that explicitly depend on it will fail to start. Processo Anfitrio dos Servio s do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16 384 [Running Services] Wcmsvc ### Internal Name: Wcmsvc. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k LocalServiceNetworkRestricted * Toma decises relativas a operaes de ligar/desligar automticas baseadas nas opes de conectividade de rede disp onveis atualmente para o PC e permite a gesto da conectividade de rede baseada nas definies da Poltica de Grupo. Processo Anfitrio dos Servios do Windows Microsoft Cor poration Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] WdiServiceHost ### Internal Name: Wcmsvc. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k LocalServiceNetworkRestricted * Toma decises relativas a operaes de ligar/desligar automticas baseadas nas opes de conectividade de rede disp onveis atualmente para o PC e permite a gesto da conectividade de rede baseada nas definies da Poltica de Grupo. Processo Anfitrio dos Servios do Windows Microsoft Cor poration Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] WdiSystemHost ### Internal Name: Wcmsvc. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k LocalServiceNetworkRestricted * Toma decises relativas a operaes de ligar/desligar automticas baseadas nas opes de conectividade de rede disp onveis atualmente para o PC e permite a gesto da conectividade de rede baseada nas definies da Poltica de Grupo. Processo Anfitrio dos Servios do Windows Microsoft Cor poration Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] WdNisSvc ### Internal Name: Wcmsvc. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k LocalServiceNetworkRestricted * Toma decises relativas a operaes de ligar/desligar automticas baseadas nas opes de conectividade de rede disp onveis atualmente para o PC e permite a gesto da conectividade de rede baseada nas definies da Poltica de Grupo. Processo Anfitrio dos Servios do Windows Microsoft Cor poration Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] WinDefend ### Internal Name: Wcmsvc. Status: service is running. Actual File: C:\WINDOWS \system32\svchost.exe -k LocalServiceNetworkRestricted * Toma decises relativas a operaes de ligar/desligar automticas baseadas nas opes de conectividade de rede disp onveis atualmente para o PC e permite a gesto da conectividade de rede baseada nas definies da Poltica de Grupo. Processo Anfitrio dos Servios do Windows Microsoft Cor poration Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] WinHttpAutoProxySvc ### Internal Name: WinHttpAutoProxySvc. Status: service is running. Actual Fil e: C:\WINDOWS\system32\svchost.exe -k LocalService * WinHTTP implementa a pilha HTTP cliente e fornece aos programadores uma API Win32 e um componente de Automa tizao COM para enviar pedidos de HTTP e receber respostas. Para alm disso, WinHTTP fornece suporte para a identificao automtica de uma configurao proxy atravs da respeti va implementao do protocolo de Identificao Automtica do Proxy Web (WPAD). Processo An

fitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Win dows 6.3.9600.16384 [Running Services] Winmgmt ### Internal Name: Winmgmt. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k netsvcs * Fornece uma interface comum e modelo de obje to para aceder a informao de gesto de acesso acerca do sistema operativo, dispositi vos, aplicaes e servios. Se este servio for parado, a maioria do software baseado em Windows no ir funcionar corretamente. Se este servio estiver desativado, quaisquer servios que dependam explicitamente dele no conseguiro iniciar. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6. 3.9600.16384 [Running Services] WlanSvc ### Internal Name: WlanSvc. Status: service is running. Actual File: C:\WINDOW S\system32\svchost.exe -k LocalSystemNetworkRestricted * O servio WLANSVC fornece a lgica necessria para configurar, detetar, ligar a e desligar de uma rede local sem fios (WLAN), tal como definido pelas normas IEEE 802.11. Contm tambm uma lgica que torna o seu computador num ponto de acesso de software, para que outros comp utadores ou dispositivos possam estabelecer ligao com o seu computador sem fios ut ilizando uma placa WLAN que consegue suportar este tipo de ligao. Se parar ou des ativar o servio WLANSVC far com que todas as placas WLAN do seu computador fiquem inacessveis a partir da IU de rede do Windows. Recomendamos vivamente que tenha o servio WLANSVC em execuo se o seu computador tiver uma placa WLAN. Processo Anfitr io dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] wscsvc ### Internal Name: wscsvc. Status: service is running. Actual File: C:\WINDOWS \System32\svchost.exe -k LocalServiceNetworkRestricted * O servio WSCSVC (Centro de Segurana do Windows) monitoriza e reporta definies de estado de funcionamento da segurana do computador. As definies de estado de funcionamento incluem a firewall (ligada/desligada), antivrus (ativado/desativado/desatualizado), anti-spyware (at ivado/desativado/desatualizado), Windows Update (transferir e instalar atualizaes automaticamente/manualmente), Controlo de Conta de Utilizador (ativado/desativad o) e definies da Internet (recomendadas/no recomendadas). O servio fornece APIs COM para que os fabricantes independentes de software (ISV) registem o estado dos se us produtos no servio Centro de Segurana. A IU do Centro de Ao (AC) utiliza o servio para proporcionar alertas no systray e uma vista grfica dos estados de funcioname nto da segurana no painel de controlo do AC. A Proteo de Acesso Rede (NAP) utiliza o servio para reportar os estados de funcionamento da segurana de clientes ao Serv idor de Polticas de Rede NAP para tomada de decises relativas a quarentena de rede . O servio tambm tem uma API pblica que permite aos consumidores externos obter o e stado de funcionamento da segurana agregado do sistema atravs de programao. Processo Anfitrio dos Servios do Windows Microsoft Corporation Sistema operativo Microsoft Windows 6.3.9600.16384 [Running Services] wuauserv ### Internal Name: wuauserv. Status: service is running. Actual File: C:\WINDO WS\system32\svchost.exe -k netsvcs * Ativa a deteo, transferncia e instalao de atuali zaes para o Windows e outros programas. Se este servio estiver desativado, os utili zadores deste computador no podero utilizar o Windows Update ou a respetiva funcio nalidade de atualizao automtica e os programas no podero utilizar a API Windows Updat e Agent (WUA). Processo Anfitrio dos Servios do Windows Microsoft Corporation Sist ema operativo Microsoft Windows 6.3.9600.16384 [Running Services] KMSServerService ### Internal Name: KMSServerService. Status: service is running. Actual File: C:\WINDOWS\System32\KMSServer.exe * [Uninstall] [Applications] :HKLM Adobe Flash Player Plugin=C:\WINDOWS\SysWOW64\Macromed\Fl ash\FlashUtil32_11_9_900_170_Plugin.exe -maintain plugin ### Adobe Flash Player 11 Plugin [Applications] :HKLM AudELSvc=RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\ RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield

Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x 9 /remove [Applications] :HKLM AudioCS=RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\R unTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x9 /remove ### Creative Audio Console [Applications] :HKLM BSPlayerp="C:\Program Files (x86)\Webteh\BSplayerPro\unin stall.exe" ### BS.Player PRO [Applications] :HKLM CADI=RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunT ime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Ins tallation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x9 / remove [Applications] :HKLM Connection Manager [Applications] :HKLM Creative Software AutoUpdate=RunDll32 C:\PROGRA~2\COMMON~ 1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807 A9C}\setup.exe" -l0x9 /remove ### Creative Software AutoUpdate [Applications] :HKLM DirectDrawEx [Applications] :HKLM Fontcore [Applications] :HKLM Google Chrome="C:\Program Files (x86)\Google\Chrome\Appli cation\31.0.1650.63\Installer\setup.exe" --uninstall --multi-install --chrome -system-level ### Google Chrome [Applications] :HKLM IE40 [Applications] :HKLM IE4Data [Applications] :HKLM IE5BAKEX [Applications] :HKLM IEData [Applications] :HKLM Malwarebytes' Anti-Malware_is1="C:\Program Files (x86)\Ma lwarebytes' Anti-Malware\unins000.exe" ### Malwarebytes Anti-Malware verso 1.75.0.1300 [Applications] :HKLM ManyCam="C:\Program Files (x86)\ManyCam\uninstall.exe" ### ManyCam 4.0.44 [Applications] :HKLM MiniTool Power Data Recovery_is1="C:\Program Files (x86)\ PowerDataRecovery\unins000.exe" ### MiniTool Power Data Recovery [Applications] :HKLM MKVToolNix=C:\Program Files (x86)\MKVToolNix\uninst.exe ### MKVToolNix 6.3.0 [Applications] :HKLM MobileOptionPack [Applications] :HKLM Mozilla Firefox 25.0.1 (x86 pt-PT)="C:\Program Files (x86 )\Mozilla Firefox\uninstall\helper.exe" ### Mozilla Firefox 25.0.1 (x86 pt-PT) [Applications] :HKLM NVIDIAStereo="C:\Program Files (x86)\NVIDIA Corporation\3 D Vision\nvStInst.exe" /uninstall /ask ### NVIDIA Stereoscopic 3D Driver [Applications] :HKLM OpenAL="C:\Program Files (x86)\OpenAL\OALInst.exe" /U ### OpenAL [Applications] :HKLM OpenSubDownloader=C:\Program Files (x86)\OpenSubDownloade r\uninst.exe ### OpenSubDownloader 2.0.18 [Applications] :HKLM SchedulingAgent [Applications] :HKLM UnHackMe_is1="C:\Program Files (x86)\UnHackMe\unins000.ex e" ### UnHackMe 5.99 release [Applications] :HKLM VLC media player=C:\Program Files (x86)\VideoLAN\VLC\unin stall.exe ### VLC media player 2.0.8 [Applications] :HKLM WIC

[Applications] :HKLM {0659E943-DDF4-44FC-9FEE-A13B09F8BB08}=MsiExec.exe /I{065 9E943-DDF4-44FC-9FEE-A13B09F8BB08} ### Adobe Flash Media Live Encoder 3.2 [Applications] :HKLM {0D9D8D21-47AB-4ECB-862F-6728EE3DC7D4}_is1="C:\Users\Paul o\AppData\Local\MEGAsync\bin\unins000.exe" ### MEGAsync version 0.22 [Applications] :HKLM {17E96A7F-AFE3-4171-87B1-583E376319E8}=RunDll32 C:\PROGRA ~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Pro gram Files (x86)\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1 -583E376319E8}\setup.exe" -l0x9 [Applications] :HKLM {26A24AE4-039D-4CA4-87B4-2F83217045FF}=MsiExec.exe /X{26A 24AE4-039D-4CA4-87B4-2F83217045FF} ### Java 7 Update 45 [Applications] :HKLM {3282FBE1-35FC-48D8-98CA-115A5EF1F9B4} [Applications] :HKLM {3E4077AD-1E37-467A-BD48-D19F14D8257A}=MsiExec.exe /I{3E4 077AD-1E37-467A-BD48-D19F14D8257A} ### Wave Spy [Applications] :HKLM {43AC7CBC-1D6A-3B5B-81B1-A0C166FE48F4}=MsiExec.exe /I{43A C7CBC-1D6A-3B5B-81B1-A0C166FE48F4} ### Google Talk Plugin [Applications] :HKLM {46F044A5-CE8B-4196-984E-5BD6525E361D}=MsiExec.exe /I{46F 044A5-CE8B-4196-984E-5BD6525E361D} ### Suporte para Aplicaes Apple [Applications] :HKLM {4A03706F-666A-4037-7777-5F2748764D10} ### Java Auto Updater [Applications] :HKLM {56582EEA-3AEF-4D84-8B9D-C87A3CD9250F}="C:\Program Files (x86)\Runtime Software\GetDataBack for NTFS\Uninstall.exe" "C:\Program Files (x8 6)\Runtime Software\GetDataBack for NTFS\install.log" -u ### GetDataBack for NTFS [Applications] :HKLM {582876EC-A178-44D4-9823-C10D6C62EAFF}=MsiExec /X{3282FBE 1-35FC-48D8-98CA-115A5EF1F9B4} [Applications] :HKLM {612C34C7-5E90-47D8-9B5C-0F717DD82726}=MsiExec.exe /I{612 C34C7-5E90-47D8-9B5C-0F717DD82726} ### swMSM [Applications] :HKLM {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}=MsiExec.exe /I{6D3 245B1-8DB8-4A23-9CD2-2C90F40ABAF6} ### MSVC80_x86_v2 [Applications] :HKLM {700932B3-A964-4878-82A2-96054622A1F7}=RunDll32 C:\PROGRA ~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Pro gram Files (x86)\InstallShield Installation Information\{700932B3-A964-4878-82A2 -96054622A1F7}\setup.exe" -l0x9 [Applications] :HKLM {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}=MsiExec.exe /X{710 f4c1c-cc18-4c49-8cbf-51240c89a1a2} ### Microsoft Visual C++ 2005 Redistributable [Applications] :HKLM {7299052b-02a4-4627-81f2-1818da5d550d}=MsiExec.exe /X{729 9052b-02a4-4627-81f2-1818da5d550d} ### Microsoft Visual C++ 2005 Redistributable [Applications] :HKLM {7596C248-4816-4C6F-8AAC-D8C81F2B4B49}=MsiExec.exe /I{759 6C248-4816-4C6F-8AAC-D8C81F2B4B49} ### HD View [Applications] :HKLM {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}=MsiExec.exe /I{789 A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} ### Apple Software Update [Applications] :HKLM {78F4E027-355C-45C0-90DC-F89DFC618761}_is1="C:\Program Fi les (x86)\Thread Manager\unins000.exe" ### Thread Manager 3.1.0.0 [Applications] :HKLM {7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}=MsiExec.exe /I{7B5 AA67E-FEA0-40BB-BAB5-CA56645A589C} ### NVIDIA PhysX [Applications] :HKLM {837b34e3-7c30-493c-8f6a-2b0f04e2912c}=MsiExec.exe /X{837

b34e3-7c30-493c-8f6a-2b0f04e2912c} ### Microsoft Visual C++ 2005 Redistributable [Applications] :HKLM {88B1984E-36F0-47B8-B8DC-728966807A9C}=RunDll32 C:\PROGRA ~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Pro gram Files (x86)\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC -728966807A9C}\setup.exe" -l0x9 [Applications] :HKLM {A201D9FF-8054-4B23-A071-01998CC5433C}=MsiExec.exe /I{A20 1D9FF-8054-4B23-A071-01998CC5433C} ### Abelhas.pt Box [Applications] :HKLM {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}=MsiExec.exe /I{A92 DAB39-4E2C-4304-9AB6-BC44E68B55E2} ### Google Update Helper [Applications] :HKLM {AF111648-99A1-453E-81DD-80DBBF6DAD0D}=MsiExec.exe /I{AF1 11648-99A1-453E-81DD-80DBBF6DAD0D} ### MSVC90_x86 [Applications] :HKLM {B67BAFBA-4C9F-48FA-9496-933E3B255044}=MsiExec.exe /I{B67 BAFBA-4C9F-48FA-9496-933E3B255044} ### QuickTime [Applications] :HKLM {BDCEB6A6-5966-4291-861A-058F49A2195A}_is1="C:\Program Fi les (x86)\MiniTool Partition Recovery 5.0\unins000.exe" ### MiniTool Partition Recovery 5.0 [Applications] :HKLM {CB7AF84A-1B7F-4C6B-8A58-EB7CDE48C23A}=MsiExec.exe /I{CB7 AF84A-1B7F-4C6B-8A58-EB7CDE48C23A} ### LogMeIn [Applications] :HKLM {CC3D3A93-C433-4329-AC3A-7EFC52A332C2}=RunDll32 C:\PROGRA ~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Pro gram Files (x86)\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A -7EFC52A332C2}\setup.exe" -l0x9 [Applications] :HKLM {D103C4BA-F905-437A-8049-DB24763BBE36}=MsiExec.exe /X{D10 3C4BA-F905-437A-8049-DB24763BBE36} ### Skype 4.2 [Applications] :HKLM {E3B64CC5-C011-40C0-92BC-7316CD5E5688}=MsiExec.exe /I{E3B 64CC5-C011-40C0-92BC-7316CD5E5688} ### Microsoft_VC100_CRT_SP1_x86 [Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}=MsiExec.exe /X{F0C 3E5D1-1ADE-321E-8167-68EF0DE699A5} ### Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 [Applications] :HKCU UnityWebPlayer=C:\Users\Paulo\AppData\Local\Unity\WebPlay er\Uninstall.exe /CurrentUser ### Unity Web Player [Applications] :HKCU uTorrent="C:\Users\Paulo\AppData\Roaming\uTorrent\uTorren t.exe" /UNINSTALL ### Torrent [MD5] [028FF74DAFDC7BB45C956A5EC8926CEE][1 2135336 ]C:\PROGRA~2\COMMON~1\SKYPE\SKYPE4~1.DLL [F689C06F2C986E0D57BB8A8A9C37AE4E][1 1725640 ]C:\PROGRA~2\MICROS~1\OFFICE15\GROOVEEX.DLL [40947436A70E0034E41123DF5A0A7702][1 121704 ]C:\PROGRAM FILES (X86)\BONJOUR\MDNSNSP.DLL [61E4289E91E88C90478D7F4BEB10DCF7][1 59720 ]C:\PROGRAM FILES (X86)\COMMON FILES\APPLE\APPLE APPLICATION SU PPORT\APSDAEMON.EXE [23C2FCAA50C4F80F7D1B8A0771D45328][1 59720 E3D795CBB8B90AE5F93B198CC0D 68941D6C88273 ]C:\PROGRAM FILES (X86)\COMMON FILES\APPLE\INTERNET SERVICES\IC LOUDSERVICES.EXE [A7DCBB111DCAF752591337A27951BEB8][1 600392 65E44B950F2B476156170DA9E6D 3B2B4E90F83BC ]C:\PROGRAM FILES (X86)\COMMON FILES\APPLE\INTERNET SERVICES\SH ELLSTREAMS.DLL [30E3850F303EAE5C364782EA78579CC9][1 55624 113BAF5B8EE3E790F1608D7A67E

41AFB9A3B7BE8 ]C:\PROGRAM FILES (X86)\COMMON FILES\APPLE\MOBILE DEVICE SUPPOR T\APPLEMOBILEDEVICESERVICE.EXE [C0EAD9F8AB83D41FF07303C75589C2B8][2 79360 ]C:\PROGRAM FILES (X86)\COMMON FILES\CREATIVE LABS SHARED\SERVI CE\CTAELICENSING.EXE [5B6E8E09BE6401A7E022F52FDFCB2FF8][1 254336 F41E2888787F764D48C7EEEF09F 3F047A9F3C352 ]C:\PROGRAM FILES (X86)\COMMON FILES\JAVA\JAVA UPDATE\JUSCHED.E XE [DCBE32AE2E460CDFC667BD8E2DFE76BE][1 45712 ]C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\OFFICE15\ MSOXMLMF.DLL [5CE3D0E1D1B3832EE052CFC442EEE0FA][2 286720 ]C:\PROGRAM FILES (X86)\CREATIVE\SHARED FILES\CTAUDSVC.EXE [BD86CA2051C4DD391D05A661B8E643B7][1 39552 7DF7F526A759284F47F8434C00C B8230DCA5F356 ]C:\PROGRAM FILES (X86)\CREATIVE\SHARED FILES\SOFTWARE UPDATE\C TPID.OCX [A8D6E5D3ADD906AED5647E15C93E8D13][1 632992 ]C:\PROGRAM FILES (X86)\CREATIVE\SHARED FILES\SOFTWARE UPDATE\C TSUENG.OCX [376A9B411BF8B77D5BF84B24D0C7DACD][1 863184 B0749E2D4906D195F5469F2F235 AD808C9CA481D ]C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE [506708142BC63DABA64F2D3AD1DCD5BF][1 116648 ]C:\PROGRAM FILES (X86)\GOOGLE\UPDATE\GOOGLEUPDATE.EXE [ -2][0 -1 ]C:\PROGRAM FILES (X86)\INTERNET EXPLORER\IEXPLORE.EXE HTTP://D O-SEARCH.COM/?TYPE=SC&TS=1385462758&FROM=SMT&UID=ST3120026AS_3JT445YE [BAF535F843A3E790E04A7613811B55BC][1 152392 4D96BC82C3A447D7D374AF3492F 9A034F8394313 ]C:\PROGRAM FILES (X86)\ITUNES\ITUNESHELPER.EXE [78964B1DD1264B8D66FBE08F5944868F][1 171944 4AF9901172E0C2A4A22E0E34853 891BDB52A16AE ]C:\PROGRAM FILES (X86)\JAVA\JRE7\BIN\JP2SSV.DLL [9DB03D7693C4A9F9336F4FE746F8885A][1 462760 D256295FF41F7E9C4AD9D7606D4 CCD885176BF38 ]C:\PROGRAM FILES (X86)\JAVA\JRE7\BIN\SSV.DLL [3FB354BA0817DEE1BD57281E2AD25862][1 376144 43A51A272183362C9B3EBD107F1 3E4F31FB002AF ]C:\PROGRAM FILES (X86)\LOGMEIN\X64\LMIGUARDIANSVC.EXE [D3760BC17E1755091B7120CF32DBF56B][1 407424 ]C:\PROGRAM FILES (X86)\LOGMEIN\X64\LOGMEIN.EXE [223A96BAC91792E1A954BFEB49FBE02C][1 57928 ]C:\PROGRAM FILES (X86)\LOGMEIN\X64\LOGMEINSYSTRAY.EXE [0F28935ECF1FBDEC22BAF720A5A94564][1 16056 ]C:\PROGRAM FILES (X86)\LOGMEIN\X64\RAINFO.SYS [7C57F333A413609055BDD64BB209C5D1][1 226640 979B6B6F7D2DAB664F2E44DD4D0 3460C037DFD05 ]C:\PROGRAM FILES (X86)\LOGMEIN\X64\RAMAINT.EXE [D1D5DAB39DCB4BE0359943738D87409B][1 532040 ]C:\PROGRAM FILES (X86)\MALWAREBYTES' ANTI-MALWARE\MBAMGUI.EXE [65085456FD9A74D7F1A999520C299ECB][1 418376 ]C:\PROGRAM FILES (X86)\MALWAREBYTES' ANTI-MALWARE\MBAMSCHEDULE R.EXE [E0D7732F2D2E24B2DB3F67B6750295B8][1 701512 ]C:\PROGRAM FILES (X86)\MALWAREBYTES' ANTI-MALWARE\MBAMSERVICE. EXE [07D84D839128A45F4F072952DAC266CA][1 5679200 7056FB252CF89CCE4297175A64B DAB39FA467C22 ]C:\PROGRAM FILES (X86)\MANYCAM\MANYCAM.EXE [ -2][0 -1 ]C:\PROGRAM FILES (X86)\MEOCLOUD\MEOCLOUD.EXE [C6472164E8467E73857E6FA4EB31D4EF][1 57992 ]C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE15\MSOSB.DLL [077D59BA0FD4007E841B6C670862B065][1 275568 588F64711149169F2C346F52FF7 F0CCB44503107 ]C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\FIREFOX.EXE [49D9C17FDDFAC66F27FA735E94923216][1 414496 56E267FA652532E7E29D4B7B8A3 11C0C2052D67C ]C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\3D VISION\NVSCPAPISV

R.EXE [1D3878E5722F0AB3C22D04E88AC4AC55][1 1370912 F2D9689615858A7A110EB0EB3B5 5E2F7B71AB66D ]C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\NETSERVICE\NVNETWORK SERVICE.EXE [588BEEE7B106E6520F550A45897D00B2][1 1028384 EAB2DDB868B1529B7635F22765B 2CF7ECFE7B75E ]C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\NVIDIA UPDATE CORE\N VTMRU.EXE [B644A9A9A8ADDEC20E7956373130AC2D][1 2273056 CFDB88728F3E2C60228C38117AE BC466941494CF ]C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\UPDATE CORE\NVBACKEN D.EXE [6FBBB73BE9FB38389AB73F38828A9CAC][1 13351304 ]C:\PROGRAM FILES (X86)\SKYPE\PHONE\SKYPE.EXE [6A72827CB4161339C40C6FEBE76C0B6C][2 10914904 CDC0C4B70EEA238CD83257BF457 5046E7EA24C6B ]C:\PROGRAM FILES (X86)\THREAD MANAGER\THREADMANAGER.EXE [F77F016F079812B34D723254B8AA892F][1 595216 C58A20B5CD70B639A4C20A23A84 FEE51A3B9DB53 ]C:\PROGRAM FILES (X86)\UNHACKME\HACKMON.EXE [C594A0E98BA80499EAD33C6128C5BA48][1 9878840 3EAA7687DF78323BD22388489FF 4D6CC37989592 ]C:\PROGRAM FILES (X86)\UNHACKME\REANIMATOR.EXE [240BB18A6BA7FB05CD239E2B33567CD6][1 1901840 B02274262DF166169350219A7D7 10103B9191CDA ]C:\PROGRAM FILES (X86)\UNHACKME\UNHACKME.EXE [90B85FFBDEEAD1BE861D59134EA985B0][1 23840 55E9859AA7DBA87678E7C529B57 1FDF6B7181339 ]C:\PROGRAM FILES (X86)\WINDOWS DEFENDER\MSMPENG.EXE [78ABEA36C5228E99D849D478A7F3C814][1 346872 61360D03BF042E6B114FA756AEA EDF06FCC00C14 ]C:\PROGRAM FILES (X86)\WINDOWS DEFENDER\NISSRV.EXE [9CE95E2A32023CE9D9B38EE2295688A9][1 1402368 157416AD31D4D9482E1CA38959A 99E0D267EA606 ]C:\PROGRAM FILES (X86)\WINDOWS MEDIA PLAYER\WMPNETWK.EXE [5D6FE48A40FF6E76C362CFA584C65801][1 4277760 445C2197A93A29381254415CE4A 7C3C1F3CD84F2 ]C:\PROGRAM FILES (X86)\WINDOWS NT\ACCESSORIES\WORDPAD.EXE [EBBCD5DFBB1DE70E8F4AF8FA59E401FD][1 462184 ]C:\PROGRAM FILES\BONJOUR\MDNSRESPONDER.EXE [FDFBFDF3239CEA4C26E3F9F5EC448723][1 178776 43FC8E8A82CDABAED60AD538648 1CC6389239FA2 ]C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\SOURCE ENGINE\O SE.EXE [1C39C41D50FF7113748D825F4327D406][1 804464 9656291BD0401BA6BB93DAC67D1 7CD4FC30B041B ]C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE [33B286326BD2B1A7748C43391058FB19][1 641352 6EF358D791125EE412F94F17856 A34BACD1968FA ]C:\PROGRAM FILES\IPOD\BIN\IPODSERVICE.EXE [34F09EE6871318C287E65949A683B198][1 15128352 33313FF291FD0FAE4AB3C1F5488 322E57B61E902 ]C:\PROGRAM FILES\NVIDIA CORPORATION\NVSTREAMSRV\NVSTREAMSVC.EX E [9CE95E2A32023CE9D9B38EE2295688A9][1 1402368 157416AD31D4D9482E1CA38959A 99E0D267EA606 ]C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\WMPNETWK.EXE [B2764E34DD2D5DAB113C2AF3F7315FA9][2 167936 ]C:\PROGRAM FILES\WINRAR\RAREXT32.DLL [FA2CEA20535C5D804CE230E951FAF120][2 2265088 83A931A81AD4219AF8CD75C17AE 199E947D30779 ]C:\USERS\PAULO\APPDATA\LOCAL\MEGASYNC\BIN\MEGASYNC.EXE [03BCF1D196E7A6B6A00A0C84EE183D60][1 1130576 6DC035BB1612861D335391A42C7 170BE5D77CA13 ]C:\USERS\PAULO\APPDATA\ROAMING\UTORRENT\UTORRENT.EXE [ -2][0 -1 ]C:\WINDOWS\DOWNLOADED PROGRAM FILES\CTPIDPDE.OCX [63DC38C3E4564B2405D562855643ABA2][1 2328872 CDF235FA4A238D5F82CFE7E0DC4 7AF97ED562543 ]C:\WINDOWS\EXPLORER.EXE [500059CAF5B8A6C47D2E46B7BC2B27AE][1 117400 4C4C71DC50E0CD57A6FB86CAE6B 48D6AF93BA2BF ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATIO N FOUNDATION\SMSVCHOST.EXE [1C52387BF5A127F5F3BFB31288F30D93][1 43696 330C03213E983A5E25C82AAA528 A78F0EDECCCA9 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WPF\PRESENTATIONFONT CACHE.EXE [AA2E8C6B8D7EA7BAF04C988801927F48][1 50784 085305D308B15DBB37163F05504 B9BEA9670C5D8 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\ASPNET_STATE.E

XE [DA56FFA46030E6FEB215E3D5DAA65B11][1 98816 0DE5DF021187D42B65053DAA7F4 550F22C2DBCBF ]C:\WINDOWS\SERVICING\TRUSTEDINSTALLER.EXE [14DBDB09390AE586C92EC44A679E41DE][1 3584 8DE3B655B047AE88D213E1FC47D 22092D5E0A959 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-ATOMS-L1-1-0.DLL [8142ABC99470EEDCBA0ADFC2FB92A616][1 2560 5D6C16143770FBA1133C4AAFE82 6EB4C5F055CFB ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-DEBUG-L1-1-1.DLL [64AD9DE1B99E43FD4060D0EC07F9882A][1 2560 F6EC4DDAC501D2398381B7DEC4C FDA44310946CE ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-DELAYLOAD-L1-1-1.DLL [EFE89440A16CB4DB8A78ED1122CF27CF][1 3072 AECC5436473F9D366C85594A195 CCDC6E33F6B64 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-ERRORHANDLING-L1-1-1.DLL [26CA5C02D433BE6AC14874D9845CCE53][1 4608 E533DA9702E1203BC8C3CF7721B 7B65ABCE34B1D ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-FILE-L1-2-1.DLL [D525807D6A2D16BD9B8B22FFE99B7C26][1 2560 2F78DF1D946A2DE936C3F9B6CC8 8FE401AA74B72 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-HANDLE-L1-1-0.DLL [371DE9CF8B4B2520AB224038F0E6B9A5][1 3072 6D2054702BDAE51685229810800 51E39DA3291E1 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-HEAP-L1-2-0.DLL [6A9C18B833E88030BE0030830CC7B224][1 3584 D539B6FFCAB200E5741DBD0C5D0 FD6E8D15EC595 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-HEAP-OBSOLETE-L1-1-0.DLL [529CC1E2D5F340E17054262183EC608E][1 5120 E1FE4994691E0F780F570DFF9DF A61E63FC050F8 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-KERNEL32-LEGACY-L1-1-1.DL L [3E2E69C2B2C3E15305019345C390707A][1 3584 612D2EEC74C7BA31E655A3B1191 3050B9C76FC20 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-LIBRARYLOADER-L1-2-0.DLL [4125971DB3F8A7BF71642123C32F670B][1 4096 FDFB19F1006C21D1DFB151B73D8 30EBDA3AAF29D ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-LOCALIZATION-L1-2-1.DLL [4B26645ACB94104A9EC0374E9E49C100][1 3072 0896FBA065ED5E14324250D5DA9 DFA786552F301 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-LOCALIZATION-OBSOLETE-L12-0.DLL [0AB60035FCED5B9821D5ED7C79A2775E][1 3584 B47B567D62F9CDC4863C51D963C 159E14F19FFD4 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-MEMORY-L1-1-2.DLL [A3A797309E4CF93F13E7E65A59178C4E][1 3584 20E3D438D80690AD4A1F89F1A0F E7BB5AC87EE29 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-PROCESSENVIRONMENT-L1-2-0 .DLL [B632E37694413786DB2193E716D917AF][1 4608 67DFF15009FFC709FEDE5C3FF6E DBB4A2D382741 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-PROCESSTHREADS-L1-1-2.DLL [0B786FA5D778E0EA9A2175263320EE8C][1 2560 83553AC046847AB0C852403E512 E748B73BE5DEC ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-PROFILE-L1-1-0.DLL [B19C4C3DB419A153A2070A93A28825F5][1 3072 B23C2C64FB064E19C8A03BEC793 383F65C86463A ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-PSAPI-L1-1-0.DLL [739AED77F75858DAD3C491B16576F9C1][1 3584 95545C47E4BFC2B5787828B0E91 CA967F823DF9A ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-REGISTRY-L1-1-0.DLL [C9F461EEDF45C7A653D227FA63EEB05C][1 3584 0E572EA3ABA8066D96C92B596B3 A96F1AE842885 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-SHLWAPI-OBSOLETE-L1-1-0.D LL [261DF937D148BCB2E6AC7089C0F37FD2][1 3072 2BE90DE55D0A44626D5AF365444 974F5BC835761 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-SIDEBYSIDE-L1-1-0.DLL [C8196CD707F4A41C4A763B8E6D2EDE7A][1 2560 371BE162F04E7742246C0D9C9B2 AD31A25043978 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-STRING-L1-1-0.DLL [B192683F7AE96BDAFA404F821A6A6618][1 2560 BD0607B3947B546B43044D0A14B 64CE211DFF1B8 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-STRING-L2-1-0.DLL [98A184FC719449FF0F0687B0F7B4D8DD][1 3072 95D875E754F8C7248481BFA09DF 2B1A2A3DDE4F7 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-STRING-OBSOLETE-L1-1-0.DL L [BC03011A527274767EFFD05F90D26011][1 4096 56659C88000FF70422E818AD827 FDCB01F036DE2 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-SYNCH-L1-2-0.DLL [63A691CB047A5546E3007788C1C6570C][1 3584 F43696A98F029591359E6A92AAC 42D257C7652B7 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-SYSINFO-L1-2-1.DLL [4F8053E0C592B7EBBCCC25C6CB379A3E][1 4096 3BC20886E090280BB12E8536D47 94CD61FC30D1E ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-THREADPOOL-L1-2-0.DLL

[A84F802749AE5A0AA522F203ECE20B7F][1 3072 3C631CE4107B2FFC9A4A06C16D4 1D7D0EA0A9B2F ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-TIMEZONE-L1-1-0.DLL [2D8249636011CF1467BE41C8BDF7C765][1 2560 C7EDAF6444690DB617F58B0506D D979E1F2314A4 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-UTIL-L1-1-0.DLL [84FF6B37592A6D4F3EC38B1C54DF052E][1 3584 729C9E0180D50B7B72E20C97F7D 0D6321F612F5A ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-CORE-WINRT-ERROR-L1-1-1.DLL [AF46EAD04C320A3CEE80F3A550D73410][1 2560 70F602AAC185F4C6C55C3ADD4E5 634149E0236F7 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-EVENTING-CLASSICPROVIDER-L1-10.DLL [35FD8DF8BA991FB3744DEA93ECB98D90][1 2560 52EAD3A508583456B5A83176C9D A00B04B1D49EA ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-EVENTING-PROVIDER-L1-1-0.DLL [8EFA314411001C7DAEC3B87B9DCE729C][1 5632 65BFD1EB8BB178908E00D463320 F97FDF38DC4F8 ]C:\WINDOWS\SYSNATIVE\API-MS-WIN-SECURITY-BASE-L1-2-0.DLL [8176FBA685178FB0F52D46693474FA50][1 183296 AF9ADDCC9B7BB808A897004B13C BB74F784E45D4 ]C:\WINDOWS\SYSNATIVE\APPMGMTS.DLL [BE5A38071760E223CEEE9C8D9A0BFF9F][1 1297408 C509C3429C53D8ED27E290DDCB9 F3FAA0EBC7B01 ]C:\WINDOWS\SYSNATIVE\COMRES.DLL [552BF16E6398EDD8E320D70FE1DF8DF4][1 13312 7A0EBEBB87E9881B7445D004F41 95D95889434F1 ]C:\WINDOWS\SYSNATIVE\D3D8THK.DLL [854DA94B8CB68D74CB7480B2F426CA2A][1 580096 6717F8A65ABDFEB4820217075C0 52045AB0A13BA ]C:\WINDOWS\SYSNATIVE\DDRAW.DLL [5F540AD6674AEFD64C1051648FF87DE3][1 532480 4A08E199128E047644ED72A00F8 E18DE1F808B18 ]C:\WINDOWS\SYSNATIVE\DSOUND.DLL [C49981A2AD6B2793891075FD514F5728][1 1341288 D8A3C67B3FCA8F8B2633C157B42 89DC172175DB4 ]C:\WINDOWS\SYSNATIVE\GDI32.DLL [448D8F8B51F785EAB56947D94EBDFC66][1 506880 568F72B71CDE37174C808CC56B5 E7610C7A0ED3D ]C:\WINDOWS\SYSNATIVE\HNETCFG.DLL [F3A96882598EA84470646C6501917A98][1 209168 F105D26F11F786AEAB23E0386EE EA9BB8155AE88 ]C:\WINDOWS\SYSNATIVE\IMM32.DLL [0D12F606DE18A5739AF27F12A32C6A6E][1 160128 931146818FAEA8F51D541032F95 7AF0114DEC986 ]C:\WINDOWS\SYSNATIVE\IPHLPAPI.DLL [8420491FFA891600A88FD12F5059A54C][1 22240 3B8D7F3F0AB3E5C767F3594592F 23BF5EA24C604 ]C:\WINDOWS\SYSNATIVE\KSUSER.DLL [74B258D5896FC8F8256E8D03459AC2A2][1 3072 990BD903EC572F37AAD9AFAA9DB 7CA92CE65F8A7 ]C:\WINDOWS\SYSNATIVE\LPK.DLL [D72877D08AC821E3983C185D12034B19][1 23552 8A366E9624C008000F98EB7C6F8 6D22E71C8F1A1 ]C:\WINDOWS\SYSNATIVE\MIDIMAP.DLL [BBB22E224FC242E80DF2179A07066C82][1 9728 DF0DB37D97B7A4C299E0E77AF1D EA695264F233C ]C:\WINDOWS\SYSNATIVE\MSCTFIME.IME [F87169781690F9E1E9AD463DAA4473B6][1 23212544 EB508B9A91E6E9C4317482B85ED 60E4BF1AF5A76 ]C:\WINDOWS\SYSNATIVE\MSHTML.DLL [6A5C1EA6E0B31B168FDE21A1FDC078C2][1 7168 FDFE55550AAEEE8E0150A0A1195 86DACC0896C4C ]C:\WINDOWS\SYSNATIVE\MSIMG32.DLL [7CE4D5AB5626A26A6E6DFC7397179841][1 674616 A4B1D986C61C55905C84008C41E 5CBE42886D59C ]C:\WINDOWS\SYSNATIVE\MSVCRT.DLL [D81C3AAEE50F952A20C3548809CB5CE7][1 1720552 7E2C62FD12F0C82FCF1BE36DC78 81FD56B0752B4 ]C:\WINDOWS\SYSNATIVE\NTDLL.DLL [E372BBF897005442ECEB7843CEB394D2][1 17408 5391EBBF4910D0641795278428D 2683061D589D8 ]C:\WINDOWS\SYSNATIVE\RASADHLP.DLL [4D8F3CEF04AFF366972ED6411DB2E0E0][1 690176 8F0C226535C5D5DD1791AF091C0 2A8610DD0FE91 ]C:\WINDOWS\SYSNATIVE\RASAPI32.DLL [3FD5AE42EC87C6F532A931F96BE731DD][1 761344 552E7FBE743678C834703F5F1D3 A6C57AEE3D310 ]C:\WINDOWS\SYSNATIVE\RPCSS.DLL [1F1B8D07708E40E54C55B392C78ECCE2][1 271360 AFA0852EEB7C707B49C49072AD2 3C8B5EE07A1E4 ]C:\WINDOWS\SYSNATIVE\SCECLI.DLL [B4B610BBCB002EC478C6FD80CF915697][1 405488 1F2FFED045CBC439B7CD710C495 D2C5017FDD832 ]C:\WINDOWS\SYSNATIVE\SERVICES.EXE [2750EEB7440726085036BC746A095540][1 1207024 B366DBF68129BCB2FFCE56C1100 0C3473FA13572 ]C:\WINDOWS\SYSNATIVE\TASKMGR.EXE [1A811BAFA2114C2FC878507F9F86566C][1 1517984 1C74F2EC3D5B0408024002D6AE0

1E62FEFD96CC6 ]C:\WINDOWS\SYSNATIVE\USER32.DLL [3BE05B2695179F8F3CF1136544E46A14][1 1165824 C24847EDB1528F5B526A5AC9EA2 1766A050EF1DF ]C:\WINDOWS\SYSNATIVE\UXTHEME.DLL [7C94FDA3809015B8F2208D2E1C221F17][1 564736 2E2F86C0FBB19E7DB1B7C6CD9F4 5934A567134E9 ]C:\WINDOWS\SYSNATIVE\WINLOGON.EXE [420070BF9D3967F4AF15FDEDDFF64C45][1 4608 843C22F2D5834327BADE8AA62A9 E3174E0CD21B7 ]C:\WINDOWS\SYSNATIVE\WS2HELP.DLL [B19CA8E441D35AA2B1EE51C10B27DA1B][1 207360 B8911FA7C9AE402AE548AA71202 1F26FE99DCB72 ]C:\WINDOWS\SYSTEM32\AELUPSVC.DLL [A91D8E1E433EFB32551BCE69037E1CE7][1 92672 24A9FAC362526940924DD910527 AE0F9C67A0AF2 ]C:\WINDOWS\SYSTEM32\ALG.EXE [C0DC3F58214A227980AEB091CFD2F973][1 37888 6D2A5CA0DB8855234DC08501B19 2BA664809BD83 ]C:\WINDOWS\SYSTEM32\APPIDSVC.DLL [7E790DE2487CEDB349D1750B9E47F090][1 109568 1328411EFA9ABC934E42C082A91 197798F1B3E67 ]C:\WINDOWS\SYSTEM32\APPINFO.DLL [8176FBA685178FB0F52D46693474FA50][1 183296 AF9ADDCC9B7BB808A897004B13C BB74F784E45D4 ]C:\WINDOWS\SYSTEM32\APPMGMTS.DLL [4B964AE0DF433A3BFA7BD24713BC2E9B][1 533504 6D913D0263496C048B14A8325E1 7BDF15F77947E ]C:\WINDOWS\SYSTEM32\APPREADINESS.DLL [F4DAE6CBE6EF5992934EFEE3A1AAC6D1][1 355840 AD4199290E44DA12F207CFA03DD BF3AD0B81C85C ]C:\WINDOWS\SYSTEM32\ATMFD.DLL [4903CBC14742B5AB4DCF7A92F7DEC483][1 198656 38FAF59F54A1BC12266B573B195 1FE59BF4E6DC5 ]C:\WINDOWS\SYSTEM32\AUDIOENDPOINTBUILDER.DLL [86DD7884124D363A63CCE7A11FDEBBED][1 835072 966A66ED04811A0EF4858385535 0F600735BE904 ]C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL [96E8CAF20FC4B6C31CAD7816A801EB78][1 109568 E2391704C226421035073B6C5A1 4407E0EF53979 ]C:\WINDOWS\SYSTEM32\AXINSTSV.DLL [BBE61A40665B83488901E41082A6097D][1 336896 A75D4A987AC59E69450C09922B6 FDF9033F5ED9F ]C:\WINDOWS\SYSTEM32\BDESVC.DLL [6468B696C65775D51A06615830E0E79D][1 828416 AAA2E894413ECFB3965739F683F FA15100A31532 ]C:\WINDOWS\SYSTEM32\BFE.DLL [748141CC03DF40C38F17D3F96BB15C80][1 261120 B7964A12B7D11B54D2B9F304237 E11D5A48A4716 ]C:\WINDOWS\SYSTEM32\BISRV.DLL [1CBE3E2895229E928970642CE299F29C][1 25440 F9A1F93955D949E0DE56C49FD5C 0CB4C0B38A27B ]C:\WINDOWS\SYSTEM32\BOOTVID.DLL [D528D6A92D187777691993DD757AF19A][1 134144 E21C7291C07FB8314D62970F37E 52FDD625825A9 ]C:\WINDOWS\SYSTEM32\BROWSER.DLL [E5E48FEED73D463175EAB1542495191C][1 92160 FF77FDF5A0655ABC171E300CCC7 34856B0B7F5C3 ]C:\WINDOWS\SYSTEM32\BTHSERV.DLL [5EC5EC3A6118227CA3FFD1353BC61344][1 212992 67BE3C4DAC0DBFA268AD14E9560 179FBFD2E3FAC ]C:\WINDOWS\SYSTEM32\CDD.DLL [AB285CE3431FF3D2ACE669245874C1C7][1 155136 402570CF9DFA7F6EA169C7CF74C C5B4376AEA56E ]C:\WINDOWS\SYSTEM32\CERTPROP.DLL [0F007AC76DE0854719A54CAEA4952621][1 528048 B55C44C23E24354C736929E5202 3FA2C7AD6AC62 ]C:\WINDOWS\SYSTEM32\CI.DLL [0EFE4B5884A8032617826A4D76F80969][1 129536 094FE9307512619167D63F5E6C2 68CD115884863 ]C:\WINDOWS\SYSTEM32\CRYPTSVC.DLL [936D9E2871CEEFF6A33695D98374367B][1 778240 698058A581D33214505036C1880 6ADD39B069F4B ]C:\WINDOWS\SYSTEM32\CSCSVC.DLL [01BBD5CB85423B12E445209D243A49A9][1 252712 C99D0CA5D98FFE75C57DB1192AC 0B6685F2B34E7 ]C:\WINDOWS\SYSTEM32\CT20XUT.DLL [06300545BEDF49B6A51FDFE1861F9CAF][1 219432 22D2E11E60C617D6D17D6667937 35A86EFCD3B2A ]C:\WINDOWS\SYSTEM32\CTEAPSFX.DLL [2D902F8EC247F0ED0D458CDCAF786544][1 321832 5E9EC83CDA35FD2461F3C70F8E7 2BE8D91340B14 ]C:\WINDOWS\SYSTEM32\CTEDSPFX.DLL [0D3F99CDA2BEA14E4911A698441F1A29][1 190248 9CFEA2DBCF0524FB42A7970E322 3F3BCB16B68E1 ]C:\WINDOWS\SYSTEM32\CTEDSPIO.DLL [9D26AA450AC1CAADDE25F1621BA89842][1 363304 91C30E48806E3B3C839951DF160 791258C7303E8 ]C:\WINDOWS\SYSTEM32\CTEDSPSY.DLL [FA6DCA331835997D2F7C83B9AAABC4BB][1 1571112 BEDA946D4850AD67CD0182628D5

5D82E380BBC5D ]C:\WINDOWS\SYSTEM32\CTEXFIFX.DLL [9E6A0A3CA3825BB568D42F5F3CB09453][1 123688 AB6B8D1EB9FA984D93972E00043 00E779EF29F56 ]C:\WINDOWS\SYSTEM32\CTHWIUT.DLL [0BC71D4D3B5883903C37BF4E13B0F0C5][1 398848 4DB2709F35B33DDCCAF3D032CA5 CB3CF58786A9D ]C:\WINDOWS\SYSTEM32\DAS.DLL [F4CCAADC2C78F57E4F16B24C9201CE22][1 449536 2F0ED99B08450A6E71318DA61C5 36FE8E10CC902 ]C:\WINDOWS\SYSTEM32\DEFRAGSVC.DLL [5B074F14F5DD6418F46EE4CA2DEB7EA8][1 201728 DD5B9F4FBD675F879286629375F 7B23F06952E58 ]C:\WINDOWS\SYSTEM32\DEVICESETUPMANAGER.DLL [8B107F55FD61654A6C9F1B819AEC5FC4][1 353792 4AB125E2D20B5EBF803AAF8E2E4 4B692DA0E4B6E ]C:\WINDOWS\SYSTEM32\DHCPCORE.DLL [0934499394EB3D8027B8AB78C07D56CB][1 19296 42EE69EA7A75800DA5B2104F2B3 0907D9FF0B50F ]C:\WINDOWS\SYSTEM32\DLLHOST.EXE [5BAF7714E68F93515A937A3FA8587EF9][1 255488 C56AD70A19C5BFAFEA8BB9ECD59 A845C18FEA543 ]C:\WINDOWS\SYSTEM32\DNSRSLVR.DLL [50288EA079BB520C2B8C8A154202D518][1 258560 5EF2A8C42131976ABD42FA8B37D 456C205A07BA0 ]C:\WINDOWS\SYSTEM32\DOT3SVC.DLL [281BEE07BA97E3E98D12A822D923D0D8][1 170496 E778202EDF69A224C0118779DB6 7E827B43AEE5E ]C:\WINDOWS\SYSTEM32\DPS.DLL [E1832BD9FD7E0FC2DC9FA5935DE3E8C1][1 231424 F000843AE742B251F0F3B2DD362 9FD4803D1609B ]C:\WINDOWS\SYSTEM32\DRIVERS\1394OHCI.SYS [AD508A1A46EC21B740AB31C28EFDFDB1][1 108896 4BB657F7755F2B1F995B23243DF 1449611ED583D ]C:\WINDOWS\SYSTEM32\DRIVERS\3WARE.SYS [3D30878A269D934100FA5F972E53AF39][1 523096 D3B51B9F74F18C33520D7F6B9E7 315A7E4CBDC7F ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPI.SYS [AC8279D229398BCF05C3154ADCA86813][1 79712 64C8C397ED4C99BD36644619D1E 87D354CF433AE ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPIEX.SYS [A8970D9BF23CD309E0403978A1B58F3F][1 10240 5CFA487096C2EC4BB8258FAB92D E303F0E81EC3A ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPIPAGR.SYS [111A89C99C5B4F1A7BCE5F643DD86F65][1 12288 D7A8B2820F73204738166304442 AB4ACB30775B9 ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPIPMI.SYS [5758387D68A20AE7D3245011B07E36E7][1 10752 E49416D9422844EB55D1AB39D5B 3DC98EF0D320B ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPITIME.SYS [7C1FDF1B48298CBA7CE4BDD4978951AD][1 782176 BB0F7C345279F942B33FF925BEE CAE56CA74E0CA ]C:\WINDOWS\SYSTEM32\DRIVERS\ADP80XX.SYS [239268BAB58EAE9A3FF4E08334C00451][1 567296 F5EB025EE5ECC6E63245EC08188 4B1613A4747D7 ]C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS [7DFAEBA9AD62D20102B576D5CAC45EC8][1 62304 040C01CCD2FC7FC3E038F7C4034 4B638D4FD5B36 ]C:\WINDOWS\SYSTEM32\DRIVERS\AGP440.SYS [8E8E34B7BA059050EED827410D0697A2][1 76800 7A1C35959FF9D8DEBC57CBB0C05 5E4AFCB44B311 ]C:\WINDOWS\SYSTEM32\DRIVERS\AHCACHE.SYS [7589DE749DB6F71A68489DCE04158729][1 95744 EA96CBD2BA12CCE3D9A724E39C2 70FB1A21495EE ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDK8.SYS [B46D2D89AFF8A9490FA8C98C7A5616E3][1 98816 469D55BC5301A1099ED993F01A2 4E1A2833FD223 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDPPM.SYS [D2BF2F94A47D332814910FD47C6BBCD2][1 79200 D5A62299BBC9FB463AEB401A1D0 A26B41C98794C ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDSATA.SYS [A8E04943C7BBA7219AA50400272C3C6E][1 259424 58C2B82BA50A54873C490D5B696 A37B0721997C0 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDSBS.SYS [CEA5F4F27CFC08E3A44D576811B35F50][1 25952 4C9854991548D5BCF55D16DDFC2 CCB589BA0C610 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDXATA.SYS [04951A9A937CBE28A2D3FEEA360B6D1F][1 83456 16265026C23F587F3653AB3B977 7CEB981C75084 ]C:\WINDOWS\SYSTEM32\DRIVERS\APPID.SYS [65045784366F7EC5FB4E71BCF923187B][1 114016 FB7F985967ADBCBAC103D2E7738 C6A209CDD5F7F ]C:\WINDOWS\SYSTEM32\DRIVERS\ARCSAS.SYS [74B14192CF79A72F7536B27CB8814FBD][1 26464 682D6D307311C01734AEBA17DF3 DEBEC272D67B0 ]C:\WINDOWS\SYSTEM32\DRIVERS\ATAPI.SYS [38E1F4E0148A24C65D215F14D57B0711][1 199520 77E29E86970E728FD32A2BF82BE 07231D8920FB2 ]C:\WINDOWS\SYSTEM32\DRIVERS\ATAPORT.SYS [8CC7F7E4AFCBA605921B137ED7992C68][1 50688 0C273DF0D9E3CC2CEE70B2813AE

E18F67FE415F1 ]C:\WINDOWS\SYSTEM32\DRIVERS\BASICDISPLAY.SYS [2748E116F8621A4DB0D39FCDD7318C01][1 33792 11D22BB7287B1128AB33808208E 8B062F25D1589 ]C:\WINDOWS\SYSTEM32\DRIVERS\BASICRENDER.SYS [C1ABB0F7E3BEA48A0417BDF6FF14AB21][1 17624 18DB97DA04AA5DCA920D9172C77 421684085687B ]C:\WINDOWS\SYSTEM32\DRIVERS\BCMFN2.SYS [EC19013E4CF87609534165DF897274D6][1 7680 9AD79A75F61727C3080D6B31C3F 7486E7150B058 ]C:\WINDOWS\SYSTEM32\DRIVERS\BEEP.SYS [6B4FFFDDC618FCF64473CAA86E305697][1 102912 23787DBA29786E8ED86D66439F6 E982932398409 ]C:\WINDOWS\SYSTEM32\DRIVERS\BOWSER.SYS [4E888019078AC363076A5433E89AA4F8][1 115712 79B41AFB9E502DD0AEE4A3C73FF D11E8C6C67024 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRIDGE.SYS [A8F23D453A424FF4DE04989C4727ECC7][1 36992 401980931893CFFF3147E2BA341 5EFE3574F9460 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHAVRCPTG.SYS [746B9F94214915AECDE4B7FEA5FF9664][1 57856 6F35A41979E10E58577BA4E5438 32A5DD0BBEC72 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHHFENUM.SYS [71FE2A48E4C93DDB9798C024880B6C07][1 30720 97AEBC44719CC42E78879186E7B 8400F6D630925 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHHFHID.SYS [07E33226AD218A2A162662A05CAFB52F][1 63488 410D2A4D8AC498443FC41E7762C 5AD24B361CE52 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHMODEM.SYS [A4A73F631FE2AA2826FBE4A399B04DEF][1 531296 DBA936D042F66A1777E3C0C2C5E 3DF75D80C4EB4 ]C:\WINDOWS\SYSTEM32\DRIVERS\BXVBDA.SYS [2FA6510E33F7DEFEC03658B74101A9B9][1 88576 A8573F4DB81C53C1D9A5BBE7DDE E8B2C2639FA4D ]C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS [C6796EA22B513E3457514D92DCDB1A3D][1 164352 EF4DB5D940538E3B26F033F7A21 E1104CCCFFCB4 ]C:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS [BE9936EDD3267FAAFF94A7835867F00B][1 44032 8B87DBB8AB9DB5F47C67E472A24 C0C8885D56BBA ]C:\WINDOWS\SYSTEM32\DRIVERS\CIRCLASS.SYS [E18B615257E80E4A1EC6148943CED42B][1 337760 D8A93680807FC3001ED9B43F834 F66A0476BE753 ]C:\WINDOWS\SYSTEM32\DRIVERS\CLASSPNP.SYS [7F006813C2AFE622C13D7AF94F56CD07][1 377696 44BC40F099487BF0693681D2192 36DE9B8825CB0 ]C:\WINDOWS\SYSTEM32\DRIVERS\CLFS.SYS [39F71BF21E7F8EBE9B4810BC95EE26D6][1 41408 7E8F73F88FBA47E510CD02721FF A369D490FD265 ]C:\WINDOWS\SYSTEM32\DRIVERS\CLWVD.SYS [EF6EF85DADC3184A10D8F2F7159973CB][1 25472 2AC6B2A58822712A245FE7A76BA 583F84A0A42AC ]C:\WINDOWS\SYSTEM32\DRIVERS\CMBATT.SYS [825BE21E6395E00698D8A23955A87972][1 564520 1B8D2EA95535389C5BF9A01B2C9 FE59DD24579B4 ]C:\WINDOWS\SYSTEM32\DRIVERS\CNG.SYS [F38ACFF40E9EDC2B3476EDD724CEA4A0][1 158808 C874CF48F44906E4D394522CB26 DADFD1DC33ABD ]C:\WINDOWS\SYSTEM32\DRIVERS\COMMONFX.SYS [03AAED827C36F35D70900558B8274905][1 36352 2D7AFEDBF1D67E43688225B60EE 66BD75041F8D2 ]C:\WINDOWS\SYSTEM32\DRIVERS\COMPOSITEBUS.SYS [A1FF7DFBFBE164CF92603C651D304DD2][1 43008 0B83B62BEA60A9B9DA410AA2022 4F71C6E40A3DF ]C:\WINDOWS\SYSTEM32\DRIVERS\CONDRV.SYS [FA47B0AA255B7CF4519E995C6404AE22][1 68960 273EB4B091A3E3D2F237F28DD2C 963199D2D35BF ]C:\WINDOWS\SYSTEM32\DRIVERS\CRASHDMP.SYS [EE2F3C0D6ADBC975D6B621EC15ACF4E2][1 559616 071701F3EFB34D80C2168BA9553 072E6ED0C6C26 ]C:\WINDOWS\SYSTEM32\DRIVERS\CSC.SYS [095C566746217CD1482EDE40A70D87D2][1 580696 4DB23EC6CB3A7608E0157064BDE 2F97D275D9681 ]C:\WINDOWS\SYSTEM32\DRIVERS\CTAC32K.SYS [157E2196FCCD002A2EDF3B06DF7B0C9A][1 866264 746771CD1539B85D40ACD3D9ABB DE5C4B9B3A6E6 ]C:\WINDOWS\SYSTEM32\DRIVERS\CTAUD2K.SYS [17979EE857E930CBFDF24A12E89D77A1][1 706648 2F705A1D25B634ADFD9D3DBBB4D A4CB7D285EFF6 ]C:\WINDOWS\SYSTEM32\DRIVERS\CTAUDFX.SYS [FE3EAE37536C02D087E5C5D339663779][1 141912 C9053133E46C42EE0E00F8CA69F 632AE350FE9A5 ]C:\WINDOWS\SYSTEM32\DRIVERS\CTERFXFX.SYS [51882DEB6E27BD59717CDE2038271930][1 26328 8E35A7C89E8296E3C130BB6E7D7 B907E973EDCCD ]C:\WINDOWS\SYSTEM32\DRIVERS\CTGAME.SYS [85EA378116E2C4385993BA5124536FFC][1 221272 CE6F4261C8AFDA164B305CC2A13 9E89C9F87FDEB ]C:\WINDOWS\SYSTEM32\DRIVERS\CTOSS2K.SYS [4E4FDAB4A7CF5AF56E3FA1FE35E8AD3C][1 16984 97BD16FBDE7BD7BC1D2DBCFAB74

3A35FA2724374 ]C:\WINDOWS\SYSTEM32\DRIVERS\CTPRXY2K.SYS [4A7DE2E30B2B9253933A157401EC76D5][1 681048 C0913C363695B23B016065506C1 33F6EAB740BF6 ]C:\WINDOWS\SYSTEM32\DRIVERS\CTSBLFX.SYS [065ADE032A044D518AB1407D3586B7D5][1 290392 1C9D1627520B6F7B56A81592413 E9F3F5E6E10F8 ]C:\WINDOWS\SYSTEM32\DRIVERS\CTSFM2K.SYS [315BA4BC19316D72B2E037534E048B93][1 57696 436F9559795CFF28149D54D9894 935FC3862C738 ]C:\WINDOWS\SYSTEM32\DRIVERS\DAM.SYS [5DB26D7E0216D0BF364A81D3829AD7B9][1 134656 2C8A06D8F8A2519FE8CE71A8251 A8304A13B2E06 ]C:\WINDOWS\SYSTEM32\DRIVERS\DFSC.SYS [4D40C9B33F738797CF50E77CB7C53E85][1 100192 CD6DB645924A6B8BB1C3C5E8454 6331E0C28F0B7 ]C:\WINDOWS\SYSTEM32\DRIVERS\DISK.SYS [EB70A894708D1BC176AFD690FF06085F][1 29696 ABF15872B4601B658CE1A930954 81626D102125E ]C:\WINDOWS\SYSTEM32\DRIVERS\DMVSC.SYS [3103BBAB41F0C75BE6FA302439C9B9D6][1 88576 6448E2938E9919DFADE27A0EC07 FE7C7446BC9BB ]C:\WINDOWS\SYSTEM32\DRIVERS\DRMK.SYS [DDC11A202207C0400CBE07315B8FDE5E][1 14560 468EC4DFBF7F68209ADA4F5BA84 9A4E9EB9E6B37 ]C:\WINDOWS\SYSTEM32\DRIVERS\DRMKAUD.SYS [1ED08A6264C5C92099D6D1DAE5E8F530][1 21712 ]C:\WINDOWS\SYSTEM32\DRIVERS\DrvAgent64.SYS [DA8E85F1BE0C9B7D2EE2949248A389D8][1 1530200 155CC40D3A6F3B4079D431586AB 768630C4657E1 ]C:\WINDOWS\SYSTEM32\DRIVERS\DXGKRNL.SYS [E6EF19470936A12524B61DBE7CB44B07][1 382808 0C40D7C8FF79F55B88A7B4E6C8F 9D7F46D3BD418 ]C:\WINDOWS\SYSTEM32\DRIVERS\DXGMMS1.SYS [43531A5993380CC5113242C29D265FD9][1 82784 9E34314DDD1749CA819E16B8B93 FC20A1DDF6CB6 ]C:\WINDOWS\SYSTEM32\DRIVERS\EHSTORCLASS.SYS [6F8E738A9505A388B1157FDDE7B3101B][1 114016 50BD4226269D806303316923388 27DE40738DECA ]C:\WINDOWS\SYSTEM32\DRIVERS\EHSTORTCGDRV.SYS [F380FF5D6D80CECC6DBBC15569757613][1 147544 8DEF8C6D2C269F53A4B7A02FCCC 014EBF3EF091B ]C:\WINDOWS\SYSTEM32\DRIVERS\EMUPIA2K.SYS [DFFFAE1442BA4076E18EED5E406FA0D3][1 10240 D0567EBE2AE38E78F4580AE9F4F 14A352D4D65DC ]C:\WINDOWS\SYSTEM32\DRIVERS\ERRDEV.SYS [114BCFDF367FF37C3F1B0A96AF542E4D][1 3357024 4475929DF4349C8471A80CD918F 11E60A10F79F3 ]C:\WINDOWS\SYSTEM32\DRIVERS\EVBDA.SYS [5D8402613E778B3BD45E687A8372710B][1 30720 ECCA4263021DAA25AD10CCFFD90 E4DE51CD24A94 ]C:\WINDOWS\SYSTEM32\DRIVERS\FDC.SYS [957A7A8F5ACCAF23DD9DFF6DAA393CE5][1 79200 C2D52F4BFC99B34EF0545463508 53B546FD1706B ]C:\WINDOWS\SYSTEM32\DRIVERS\FILEINFO.SYS [A1A66C4FDAFD6B0289523232AFB7D8AF][1 34816 D1E432BB9ADFC8DF17451539960 B597EFD3A02B1 ]C:\WINDOWS\SYSTEM32\DRIVERS\FILETRACE.SYS [BE743083CF7063C486A4398E3AEFE59A][1 25088 EC6AEC3E85348608F48D00BA1D2 C8B05BB04BCBB ]C:\WINDOWS\SYSTEM32\DRIVERS\FLPYDISK.SYS [60D5067FCE6D9433D35E04C01D8538B3][1 358752 6C727B0936060C59843817D21B6 02D2E1B02ECB2 ]C:\WINDOWS\SYSTEM32\DRIVERS\FLTMGR.SYS [09F460AFEDCA03F3BF6E07D1CCC9AC42][1 30048 7A58A936E836B51BB47860550AD E52C36D7F199C ]C:\WINDOWS\SYSTEM32\DRIVERS\FS_REC.SYS [35005534E600E993A90B036E4E599F2B][1 56672 7AA7AC2AEB6CB56A3E161607C25 6D0A21BEC0D51 ]C:\WINDOWS\SYSTEM32\DRIVERS\FSDEPENDS.SYS [83E1F0983B02A6F8EC764D18E24ECF10][1 579416 449F0B40138B443A6F5F69800C2 4A59BF9127791 ]C:\WINDOWS\SYSTEM32\DRIVERS\FVEVOL.SYS [9ED04A7137B4451303407DFBAB15457A][1 428896 4064961C2664584F210C0094904 EEC59B6CD0ECC ]C:\WINDOWS\SYSTEM32\DRIVERS\FWPKCLNT.SYS [9591D0B9351ED489EAFD9D1CE52A8015][1 27136 9EFCA33D59CEB491035EA124D4D AC2BF179CC850 ]C:\WINDOWS\SYSTEM32\DRIVERS\FXPPM.SYS [FC3EF65EE20D39F8749C2218DBA681CA][1 65888 E009F3D5EAC199EA198C6E3D5F6 62F27603F9850 ]C:\WINDOWS\SYSTEM32\DRIVERS\GAGP30KX.SYS [8E98D21EE06192492A5671A6144D092F][1 33240 ]C:\WINDOWS\SYSTEM32\DRIVERS\GEARASPIWDM.SYS [82B68F585110AE8500A6D23623AE1F74][1 1360984 2F32B54EA938F587BB7A113782A 274CB2159E5F2 ]C:\WINDOWS\SYSTEM32\DRIVERS\HA10KX2K.SYS [83F647F9ACE9192556F758E528024F68][1 259672 59CD233C10473071F82AE1D9678

E8A6CF047A0B6 ]C:\WINDOWS\SYSTEM32\DRIVERS\HAP16V2K.SYS [E815D29361DE89D24C8DBE3E5A7006C9][1 295000 05D3CD260993490DC4D4080996C 0733875FE519A ]C:\WINDOWS\SYSTEM32\DRIVERS\HAP17V2K.SYS [03909BDBFF0DCACCABF2B2D4ADEE44DC][1 78336 190539291F6E54FEF372CC8E7FE 5D5766920B0B5 ]C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDBUS.SYS [56F69F7C25FB67C970997D7066DBC593][1 395776 EE1BC051720837FAD66B108638F 1702ED6FB15D8 ]C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDIO.SYS [10A70BC1871CD955D85CD88372724906][1 26624 C8EC717A79ABDE781FE89A67005 6F20504EFDEBC ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDBATT.SYS [1EA1B4FABB8CC348E73CA90DBA22E104][1 96768 AAE1B7294F8F6EDB1A1A97F8613 EC7DAF0CAB6B8 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDBTH.SYS [ADB26481D4D247C1D6986EC45FFDAB53][1 111616 687350019EAADC6365F71C33D8B 191E56120F319 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDCLASS.SYS [C241A8BAFBBFC90176EA0F5240EACC17][1 41472 A06F7BD78F2C8CCC8E9BF8E5090 EA3D4BC8E0464 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDI2C.SYS [9BDDEE26255421017E161CCB9D5EDA95][1 45568 107D166EA04BEECAB0939E903D9 CF4E8800F4DEA ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDIR.SYS [7FFB24B4A54B1ACD46CF6899D879CC9F][1 32512 630EC5C24FCD6B7D9905D0DBCB5 35544EFA243A6 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDPARSE.SYS [F31397220D9687E11EB448649AA6E038][1 33792 F3A3B75557971BFA448F5E70F9A F36D75D8874A5 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS [A6AACEA4C785789BDA5912AD1FEDA80D][1 64352 BC959DD4A6AA458B0A302DCB8D0 E99BD6DD1FEB8 ]C:\WINDOWS\SYSTEM32\DRIVERS\HPSAMD.SYS [3502776E366C913D49C0DA928AE3E6CB][1 994144 56F115EDCDC878ED1FADCC74462 D45AC9982A62B ]C:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS [90656C0B3864804B090434EFC582404F][1 24416 4615C294E23794A9A3635A72A77 345470003B472 ]C:\WINDOWS\SYSTEM32\DRIVERS\HWPOLICY.SYS [6D6F9E3BF0484967E52F7E846BFF1CA1][1 13824 1DBD41894FBB24193E398AA8168 EC255AE0B592D ]C:\WINDOWS\SYSTEM32\DRIVERS\HYPERKBD.SYS [907C870F8C31F8DDD6F090857B46AB25][1 22016 D447FCA82177C5443C1CDACD0E2 65F929706C0D4 ]C:\WINDOWS\SYSTEM32\DRIVERS\HYPERVIDEO.SYS [84CFC5EFA97D0C965EDE1D56F116A541][1 107520 ED5C383E2CDBA85F86D788BAB4E 5482439AC3EA4 ]C:\WINDOWS\SYSTEM32\DRIVERS\I8042PRT.SYS [5D90E32E36CE5D4C535D17CE08AEAF05][1 24568 CBE717FF0CD86AB261B2550D070 4A5BDF1AD68CB ]C:\WINDOWS\SYSTEM32\DRIVERS\IALPSSI_GPIO.SYS [DD05E7E80F52ADE9AEB292819920F32C][1 99320 96D277047BB2A89C92BADDFEB69 6827F30C6F56D ]C:\WINDOWS\SYSTEM32\DRIVERS\IALPSSI_I2C.SYS [08BFE413B0B4AA8DFA4B5684CE06D3DC][1 651248 6069DAC26B6E074083BA8082A3C F870E081F175F ]C:\WINDOWS\SYSTEM32\DRIVERS\IASTORAV.SYS [A2200C3033FA4EF249FC096A7A7D02A2][1 412000 D2D4BE136B49434055E33C20D0E 0FE6A78B714B8 ]C:\WINDOWS\SYSTEM32\DRIVERS\IASTORV.SYS [4E448FCFFD00E8D657CD9E48D3E47157][1 18272 A2845F79C6C2922D57C9BC86B6B DBD637AB0C1E7 ]C:\WINDOWS\SYSTEM32\DRIVERS\INTELIDE.SYS [C1A9592EE57C6FF0A0904B9DFD55942D][1 39768 3B7586386717D7117C2389C6151 F23CEB7F78E70 ]C:\WINDOWS\SYSTEM32\DRIVERS\INTELPEP.SYS [47E74A8E53C7C24DCE38311E1451C1D9][1 98816 B88851766195F79D903F674D541 587EF157223BA ]C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS [9DB76D7F9E4E53EFE5DD8C53DE837514][1 84992 A7CCFB2AAECDC9F5D9D2BA9EE28 140C7E9E9F89E ]C:\WINDOWS\SYSTEM32\DRIVERS\IPFLTDRV.SYS [9949A3C7590B8C536C05312205079A82][1 79360 3DF1D46C70DE2EC606221C50C38 AA0684AC87347 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPMIDRV.SYS [E23D32BAF152FBE35F18C6A2AB8EF271][1 141824 AED42793CD8BA35A922FAD9A7D2 C5D1BF4B6B254 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPNAT.SYS [AE44C526AB5F8A487D941CEB57B10C97][1 17920 FE81AF3E81BDB86D2E0B2C4FC96 4052DDB6CBE01 ]C:\WINDOWS\SYSTEM32\DRIVERS\IRENUM.SYS [8AFEEA3955AA43616A60F133B1D25F21][1 21856 3F25FDEA054BFFEEEB1D6DD2DAD D89F0E9F333C2 ]C:\WINDOWS\SYSTEM32\DRIVERS\ISAPNP.SYS [8BE92376799B6B44D543E8D07CDCF885][1 58208 FC84D1F317B7FE104699E0DF5D3 DBF96BFC1AC80 ]C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS [FB6E47E569D4872ABEB506BE03A45FBA][1 32256 840EE5D3B5BB72979DE95DCD9B8

8E4180705EBA3 ]C:\WINDOWS\SYSTEM32\DRIVERS\KBDHID.SYS [DB7A09BC90DF20F44F16F8B0F9ED3491][1 22272 554C175C7B8A8D6CDD1891996C5 C9D2784FBCFAE ]C:\WINDOWS\SYSTEM32\DRIVERS\KBLDFLTR.SYS [813871C7D402A05F2E3A7075F9584A05][1 19456 9DA98ACB4D09792AA832CA2E487 91F01BF4C723D ]C:\WINDOWS\SYSTEM32\DRIVERS\KDNIC.SYS [65EBBB459B66C818E809DD8135DCFFA2][1 285696 F556643953DC91579ECB862D12B EF2F0D249F770 ]C:\WINDOWS\SYSTEM32\DRIVERS\KS.SYS [ADDECBCC777665BD113BED437E602AB0][1 101208 E1DB449704602083824B125A14D F5F564BAA3EC6 ]C:\WINDOWS\SYSTEM32\DRIVERS\KSECDD.SYS [7296EA420134EAC390798B3232D066A4][1 192864 CE6C917DAE6A0D7BA4BA6B7A766 CF1CEAF538F94 ]C:\WINDOWS\SYSTEM32\DRIVERS\KSECPKG.SYS [11AFB527AA370B1DAFD5C36F35F6D45F][1 21248 F77D0EA8A7F0026F71D2977A4B5 4A61FF14A3DAD ]C:\WINDOWS\SYSTEM32\DRIVERS\KSTHUNK.SYS [C09010B3680860131631F53E8FE7BAD8][1 59392 CBD4F06F8AF4B42B342F51A16D3 80DA923B38485 ]C:\WINDOWS\SYSTEM32\DRIVERS\LLTDIO.SYS [413ECDCFAD9A82804D3674C8D7EEC24E][1 11552 ]C:\WINDOWS\SYSTEM32\DRIVERS\LMIMIRR.SYS [C57D3FAA50E6F395759FFB7C709BD944][1 72216 ]C:\WINDOWS\SYSTEM32\DRIVERS\LMIRFSDRIVER.SYS [C755AE4635457AA2A11F79C0DF857ABC][1 109408 91921505F14F1EACC454D339469 27E5B57B54F7F ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS.SYS [ADAC09CBE7A2040B7F68B5E5C9A75141][1 93536 ECA3F558AED4D64F7FB03F95F40 872AE63FEBCD2 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS2.SYS [04D1274BB9BBCCF12BD12374002AA191][1 81760 ABB46221138401A0F2B107F4668 9DF4A8FD6F11B ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS3.SYS [327469EEF3833D0C584B7E88A76AEC0C][1 82784 B3BEEB27EEFBB217DCB279829F4 68AF69D2F0259 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SSS.SYS [5EF604B0698F4FA962778285E8C5F1F2][1 123904 0F924955D95E48B1D2E96C42DCC 596E09EF481BE ]C:\WINDOWS\SYSTEM32\DRIVERS\LUAFV.SYS [0BB97D43299910CBFBA59C461B99B910][1 25928 ]C:\WINDOWS\SYSTEM32\DRIVERS\MBAM.SYS [F1CE49C11A9833A5D2EC32443A142064][1 35232 66F42FB9163F3189A83A3396ABF 64EB0175EA4F1 ]C:\WINDOWS\SYSTEM32\DRIVERS\MCAUDRV_X64.SYS [D8AD76AB13299C52D1D3C58FD3ADAF59][1 52128 D7412BBBF844F6C38FCCC73CA10 702095058A9C9 ]C:\WINDOWS\SYSTEM32\DRIVERS\MCVIDRV.SYS [EB5C03A070F30D64A6DF80E53B22F53F][1 56672 54275040AA551BA2B752ED8C290 3943C53F776D0 ]C:\WINDOWS\SYSTEM32\DRIVERS\MEGASAS.SYS [F6F13533196DE7A582D422B0241E4363][1 575840 881F2A00D2FD992A37F479E6054 1BB5B29BCFB57 ]C:\WINDOWS\SYSTEM32\DRIVERS\MEGASR.SYS [8B38C44F69259987C95135C9627E2378][1 40960 A0361AE4689465DFA077F4CFD67 4BA5CAEAD2D10 ]C:\WINDOWS\SYSTEM32\DRIVERS\MODEM.SYS [601589000CC90F0DF8DA2CC254A3CCC9][1 30208 DE00A3A10A0B416620EF09359D3 6EEAAE65F3C97 ]C:\WINDOWS\SYSTEM32\DRIVERS\MONITOR.SYS [CEAC6D40FE887CE8406C2393CF97DE06][1 51040 376D3A4553222FC6F5C479F7E92 C557A484AD730 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS [02D98BF804084E9A0D69D1C69B02CCA9][1 30208 9AD8735BF8900817747606F5AF7 0C7C49C148EA1 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS [515549560D481138E6E21AF7C6998E56][1 101728 612AF57FE312E474C7A823B78A8 B90EBC1C541F0 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUNTMGR.SYS [F170510BE94CF45E3C6274578F6204B2][1 74240 F78134701FFE71CD814DCF177D5 8CEC8A37F4157 ]C:\WINDOWS\SYSTEM32\DRIVERS\MPSDRV.SYS [59DCEC7499095DE5AED741358037AE2D][1 140288 BA94E494971C7EC2B80BF2B8AD4 06E7EAF219BFD ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS [6129EDB793A4255B1E2FB41773AC9D9A][1 404992 E6CA9F3E9B5D81D199C23F35C13 0B75B6A360559 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS [295771B092D4F7FCF2B62F80CCD14320][1 283648 66BB97DB38B226E2815EF54852F 27DB0E2FBA36D ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB10.SYS [AAF56E4E84D35411B4E446C445732DFE][1 207360 8703FEFEF6B352752D67BDB68A6 B1FBE2D58A6C0 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB20.SYS [D13329FBF8345B28AB30F44CC247DC08][1 30208 6F241D78C09387758D0B8901E31

9F56B061AAC18 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSFS.SYS [FDA72810CA2F8409D9B31E833C448E34][1 146272 A74C9E42AAAEAC8CF9D5FAF628F 0A49C625522DD ]C:\WINDOWS\SYSTEM32\DRIVERS\MSGPIOCLX.SYS [C6B474E46F9E543B875981ED3FFE6ADD][1 41824 E9D4F7DD6D8117CA2E5F581E285 D25095CA650DE ]C:\WINDOWS\SYSTEM32\DRIVERS\MSGPIOWIN32.SYS [ -2][0 -1 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSGPLUSDRIVER.SYS [65C92EB9D08DB5C69F28C7FFD4E84E31][1 8192 7496BB8BF427C539C38B7C18CD0 D3B5375F16435 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSHIDKMDF.SYS [52299F086AC2DAFD100DD5DC4A8614BA][1 9728 323430335C535856E831D783EA7 853F6BB74CB24 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSHIDUMDF.SYS [36D92AF3343C3A3E57FEF11C449AEA4C][1 17248 5314213E34D02A5596B5B58E42F 753CE1305DDC5 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSISADRV.SYS [034D4BD9DC67C64F3A4C8A049B5173BF][1 274784 70E6B7669EA89D5DC2454DC87AF 7AA419BE232C9 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSISCSI.SYS [A9BBBD2BAE6142253B9195E949AC2E8D][1 10624 7E7E43EDE55642D291F09544D4A 3A8452F8D6148 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSKSSRV.SYS [375E44168F2DFB91A68B8A3F619C5A7C][1 66560 E0FF92862E9D4E1E1CC2590EA50 08D976C257615 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSLLDP.SYS [7B2128EB875DCBC006E6A913211006D6][1 7040 EC202901EC27253CE90069DA9B9 7526BD0DF3E94 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSPCLOCK.SYS [1E88171579B218115C7A772F8DE04BD8][1 6784 7D79B50B99FDC88BF6A370C36EC 608A6C34405D2 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSPQM.SYS [BBE2A455053E63BECBF42C2F9B21FAE0][1 366432 30014BA1598F11E4748F037E74F 05A06DC7CF1A8 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSRPC.SYS [8D6B7D515C5CBCDB75B928A0B73C3C5E][1 37728 3E882EDE1EBB0320772C2D09158 834DEE4AFA15A ]C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS [115019AE01E0EB9C048530D2928AB4A2][1 7936 62EC335E4074394E6BF59BF187F D55E594D96029 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSTEE.SYS [96D604A35070360F0DD4A7A8AF410B5E][1 13312 A566BE0D8A17DCB2B9C99420755 B42CE8A5F7F7E ]C:\WINDOWS\SYSTEM32\DRIVERS\MTCONFIG.SYS [619CA29326B82372621DB2C0964D8365][1 78688 D75CD61F70394A52C27C2807389 6DA4AAF112880 ]C:\WINDOWS\SYSTEM32\DRIVERS\MUP.SYS [B8C35C94DCB2DFEAF03BB42131F2F77F][1 63840 369C839C0B28866C5BF03E3F2CE BE44F5ED3E7F7 ]C:\WINDOWS\SYSTEM32\DRIVERS\MVUMIS.SYS [AD9086052A5E5153AF43FE74138A4B27][1 1119576 BB22320A04F27A5CF0A8F168A5E BEE06536B9AF1 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDIS.SYS [C6BB12BC35D1637CA17AE16D3A4725EB][1 43008 4C606566536539AD88461DA738A 5FDBF82CF9234 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISCAP.SYS [9F1DA20E943BE7AA4ED5F3E1EBA78B37][1 124928 789605FAC5EDFBF2BFE64FBC355 491969B46078E ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISIMPLATFORM.SYS [9423421E735BD5394351E0C47C76BB92][1 24576 A61A9D328FAD363B09E77A236CE 1826D88E06685 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS [B832B35055BA2B7B4181861FF94D8E59][1 60416 BD68E48A3A3A7B193EA0EB1E0D8 12907A5858680 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS [1F58E48EF75F34C35D8E93A0DC535CFE][1 16384 463CB4E181B81C530358BF3784D 076FF0927DEE7 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISVIRTUALBUS.SYS [DEC29080202D4F9F17F55E18BCFCC41A][1 220672 184BDBD789543AB7D4E31C54957 B9CD972ABC9DB ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS [5A072F0B90C29C5233D78BE33EF5ED78][1 103424 BA3773A62C2E67533E1C75E48DB 6E62D8A92A1AA ]C:\WINDOWS\SYSTEM32\DRIVERS\NDU.SYS [A83D67D347A684F10B7D3019C8A6380C][1 48128 791FF84FE079B9ABC43B76B5A7F D2299F617B7D7 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS [0217532E19A748F0E5D569307363D5FD][1 282624 D55C02C1EBF17FEBBAAAC3AA70D A00F6AE10F488 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS [9E900970FEDF9AF53687940F44E05227][1 478048 2C216B854DAD723B9B9CD02DB34 0E14E262E71BE ]C:\WINDOWS\SYSTEM32\DRIVERS\NETIO.SYS [91307C4F3AA4E42404BC4F513CCD5430][1 2408208 2CEB7791B96190051A49F34B338 0C4AE9468C99A ]C:\WINDOWS\SYSTEM32\DRIVERS\NETR28UX.SYS [70414DB660BFBB7BD58FCE8EA4364E1B][1 87040 370F970F307B70FCE806CDD78F0

8F604BBA98250 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETVSC63.SYS [8F44A2F57C9F1A19AC9C6288C10FB351][1 58880 A8FA57000E4B02ECCD63774F0E5 998C77C60F18C ]C:\WINDOWS\SYSTEM32\DRIVERS\NPFS.SYS [CBDB4F0871C88DF930FC0E8588CA67FC][1 23040 3EC27128F71A894E641C2A0DDD0 09F6EBF62618D ]C:\WINDOWS\SYSTEM32\DRIVERS\NPSVCTRIG.SYS [E490B459978CB87779E84C761D22B827][1 39936 8E741AE2427F6854433BCB44507 3F6D05364B1F6 ]C:\WINDOWS\SYSTEM32\DRIVERS\NSIPROXY.SYS [4412D565C0278C401575E11072C7DCE3][1 2011488 D6A533A6068DAD1A3EB07F861D3 C28E8C683CB5E ]C:\WINDOWS\SYSTEM32\DRIVERS\NTFS.SYS [EF1B290FC9F0E47CC0B537292BEE5904][1 5632 F7F9B3BC0FEA3FB79D6930E9151 DD7F1FBC4295F ]C:\WINDOWS\SYSTEM32\DRIVERS\NULL.SYS [6934A936A7369DFE37B7DBA93F5E5E49][1 124768 3FFA013FD538CEDEA15E8BF82F7 E6F893FDBEF9E ]C:\WINDOWS\SYSTEM32\DRIVERS\NV_AGP.SYS [F554291C0A11F5B713B54C5886D4AA31][1 12613408 14BC1882DB41E3F2D41F404396E AA352D28F8A61 ]C:\WINDOWS\SYSTEM32\DRIVERS\NVLDDMKM.SYS [BC6B5942AFF25EBAF62DE43C3807EDF8][1 150368 4C3459CB0CCA29D015CFA3FE529 068CA6C963D05 ]C:\WINDOWS\SYSTEM32\DRIVERS\NVRAID.SYS [1F43ABFFAC3D6CA356851D517392966E][1 168288 F613A374FF46F3F44A74C217159 893F0D8EC06AB ]C:\WINDOWS\SYSTEM32\DRIVERS\NVSTOR.SYS [E54A699931F73E52C6DA2DA2776BA98D][1 39200 0C4FDECCD454DCCAE42858A090C EFFF7B17D0C63 ]C:\WINDOWS\SYSTEM32\DRIVERS\NVVAD64V.SYS [CF8B989D89D6807B887690F2CF24EFD9][1 442368 FE4C24BB219631C0C969F80A265 367DA7EF91649 ]C:\WINDOWS\SYSTEM32\DRIVERS\NWIFI.SYS [8528BB05E4D4E25945F78B00B2555FB7][1 151552 36D99A267544D3FEC4399B4CDFF 848754E8D2742 ]C:\WINDOWS\SYSTEM32\DRIVERS\PACER.SYS [764B1121867B2D9B31C491668AC72B2B][1 94208 F2CB6D1189134B08899CC7DD330 696B06E8C4B07 ]C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS [6DDCF3F801EC15FE698F6A215CF30A1F][1 35816 ]C:\WINDOWS\SYSTEM32\DRIVERS\Partizan.sys [EF0C1749C9A8CEE9A457473D433CC00F][1 88928 4FC29D0D7E57B59EBD94F41CB9D 7CA00B4C80B21 ]C:\WINDOWS\SYSTEM32\DRIVERS\PARTMGR.SYS [C0D3F3BC1C84B4BA746D9847314C1164][1 285536 3987EA9CC89A1CD4494DC4AA71A A0F9A87AB6342 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCI.SYS [346E38FCC6859A727DD28AFAD1F0AFF4][1 14688 800D09CBE126A71322F982254CD A9E883DF535AB ]C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDE.SYS [5D4D6146346B82EB3CA4EE0C5573193C][1 48992 28295069AE9B9BAD5017CA71D12 68D07AAA84C66 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDEX.SYS [4D3BDCC1C7B40C9D7B6AD990E6DEC397][1 114528 D0018CADAF70C734F5B5D699D05 3BDBCAA12CB42 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCMCIA.SYS [BF28771D1436C88BE1D297D3098B0F7D][1 50016 6E9382C27B4CD199B0D3CE9853B 18685742B3278 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCW.SYS [E170103E68329E9154A5EC383CD253ED][1 86872 FC9A9376013EA089432E9176FBC 1B6DD91A6B612 ]C:\WINDOWS\SYSTEM32\DRIVERS\PDC.SYS [BA50CC0BD19004AAB88BE37338B6FA0D][1 663040 A38172EE6B5D86E128A044E8247 CB51B07ADB44D ]C:\WINDOWS\SYSTEM32\DRIVERS\PEAUTH.SYS [486F21443BD82029284AE82F238DA44C][1 270848 FFED4466BD8C7B671F7F8A7B020 D40527BC398E8 ]C:\WINDOWS\SYSTEM32\DRIVERS\PORTCLS.SYS [ECD373F9571C745894367CC2635EA44F][1 92160 8ECAAC7B35C105F59F0022D7616 38172C90FF7C1 ]C:\WINDOWS\SYSTEM32\DRIVERS\PROCESSR.SYS [3FB466684609A4329858CF2EBD62E0FD][1 47104 00E13B616C39F46C123E0AA24A5 43AA14872260A ]C:\WINDOWS\SYSTEM32\DRIVERS\QWAVEDRV.SYS [58435613C2537715A9423597EC6635CC][1 14944 ]C:\WINDOWS\SYSTEM32\DRIVERS\RADPMS.SYS [2C56F0EE27E4EF70CA4B4983D3638905][1 17408 D68437DECEF826C64968AA68613 6C4B169032E27 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS [5247F308C4103CDC4FE12AE1D235800A][1 84992 6F4D006345AC04019138D9FE57A C6C46F937ABC5 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS [B939A2A0F9D6C6C186721E268EB6FA93][1 408576 414AC34A4A0AC9B3BB15A3F1C10 6F6AD659780DD ]C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS [6B21EBF892CD8CACB71669B35AB5DE32][1 22528 F47E758CFF58E8D1F7BE036413C

A71246F4D4786 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPBUS.SYS [680C1DAE268B6FB67FA21B389A8B79EF][1 195584 11D8B3DAD8E407B25E0A811661C 8671B2505D820 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPDR.SYS [858776908AF838E3790F3261B799CDA6][1 27488 3D421A51971110D820B799451A1 58E32393C89C8 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPVIDEOMINIPORT.SYS [847C6A08912C3515807049C93E526D65][1 258904 9F064B40A02984E73A2E9C75382 C02DA7D9E8C4B ]C:\WINDOWS\SYSTEM32\DRIVERS\RDYBOOST.SYS [627350A11295D82BF78D155B12FFD0EF][1 30752 ]C:\WINDOWS\SYSTEM32\DRIVERS\RSDRVX64.SYS [2D05A5508F4685412F2B89E8C2189ABC][1 80384 97354D3530267345A926FADD7E4 DE289E0DDC358 ]C:\WINDOWS\SYSTEM32\DRIVERS\RSPNDR.SYS [C624A1B32211C3166EDB3F4AB02A30B7][1 107872 84F9802253CFEF8B6C8929DF091 3E9363219995B ]C:\WINDOWS\SYSTEM32\DRIVERS\SBP2PORT.SYS [ABD0237B15DBD2B4695F4B7D734A58F7][1 40960 94B2F8C341DE7863A7121762DE7 73B79762E21B3 ]C:\WINDOWS\SYSTEM32\DRIVERS\SCFILTER.SYS [2F9A3380B8C0380E5608E29C7AA66899][1 236376 B666266AE9EC029BFDE69B59D42 55A4A12D668AE ]C:\WINDOWS\SYSTEM32\DRIVERS\SDBUS.SYS [4EAF4DCF9DBD9A56952A58F56D61C005][1 78688 B2EEE61F7EBEECEBA87DC53AFE7 C1484EA9A399B ]C:\WINDOWS\SYSTEM32\DRIVERS\SDSTOR.SYS [3EA8A16169C26AFBEB544E0E48421186][1 23040 ]C:\WINDOWS\SYSTEM32\DRIVERS\SECDRV.SYS [DB2FF24CE0BDD15FE75870AFE312BA89][1 69472 B2CF5403C04CC30E726A1B70682 09A3B6370B337 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERCX.SYS [53BDBF04ECAF943CBF6359E3BCB2445E][1 146272 B14B2A9AE99D0DA99DB1E6863D8 7AAAC5EA32B2C ]C:\WINDOWS\SYSTEM32\DRIVERS\SERCX2.SYS [3CD600C089C1251BEEB4CD4CD5164F9E][1 23040 B601DC9282552A88A5CC9A7005C C886DDBC78030 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS [D864381BC9C725FAB01D94C060660166][1 83456 806C5D52BE09DF056878A5C93C7 3667C47315A79 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERIAL.SYS [0BD2B65DCE756FDE95A2E5CCCBF7705D][1 26112 763FE8598E4CA6E493EA45A9EA6 6CAC5CC7A1802 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERMOUSE.SYS [472B7A5AC181C050888DB454663DD764][1 17408 0DA253C5F2053D3E69F6273CA5A EDA6C406B1263 ]C:\WINDOWS\SYSTEM32\DRIVERS\SFLOPPY.SYS [2F518D13DD6F3053837FE606F1A2EA1F][1 44896 0D78C2F84DD05528A5829D68FF7 3472E9F693B0C ]C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID2.SYS [1AC9A200A9C49C4508F04AAFFCA34A3F][1 81760 306AFC94BAC4A8D10AF50EDFC01 3CDF037F0B5F0 ]C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID4.SYS [8A2F723010B77C79898836784032BFF7][1 371032 A5B9D34B894913A52A7834FB5A7 EFCF9C2D8BA81 ]C:\WINDOWS\SYSTEM32\DRIVERS\SPACEPORT.SYS [F337BE11071818FC3F5DC2940B6BDE34][1 72032 7B65DC45BF2A299FC522ADCE47A 2513C98208875 ]C:\WINDOWS\SYSTEM32\DRIVERS\SPBCX.SYS [2B78788A1485F9B99A578A299DF42C02][1 454656 2D91133DBD17E29A46FDD61E155 26F110CF44EBD ]C:\WINDOWS\SYSTEM32\DRIVERS\SRV.SYS [C1AE59C0B0817236EC083A91C396005A][1 675328 1175D9DC6828F63ECA753FA5707 0184192361AE4 ]C:\WINDOWS\SYSTEM32\DRIVERS\SRV2.SYS [77195C32175FC63D6054EBA5A066D727][1 244224 D086E36B5C8E7865E7AC77C9138 2A26BEF6215EA ]C:\WINDOWS\SYSTEM32\DRIVERS\SRVNET.SYS [366DEA74BBA65B362BCCFC6FC2ADFD8B][1 31072 1926A1CAFA6AEF313B29E657315 23B5B3EECDC95 ]C:\WINDOWS\SYSTEM32\DRIVERS\STEXSTOR.SYS [0ED2E318ABB68C1A35A8B8038BDB4C90][1 107872 6F78B5591F5F102110ABE9D0E64 886A5A732DFCE ]C:\WINDOWS\SYSTEM32\DRIVERS\STORAHCI.SYS [6B06E2D11E604BE2B1A406C4CB3B90DE][1 57176 0DC35F356952CB485F2EA8074F4 BDABE626B29FC ]C:\WINDOWS\SYSTEM32\DRIVERS\STORNVME.SYS [A5764EE0625ACD6F010460B5200FE687][1 374112 4F961EC43853813272237425BB5 324DED1A38ABD ]C:\WINDOWS\SYSTEM32\DRIVERS\STORPORT.SYS [548759755BC73DAD663250239D7E0B9F][1 45888 AE9DB525006FF49730140D25BAC 821F94D146C69 ]C:\WINDOWS\SYSTEM32\DRIVERS\STORVSC.SYS [03618F935379614837F915D04C45FC0E][1 68608 6EDCB9FA02ABA290A41D4B7316E B06B1EF7FD065 ]C:\WINDOWS\SYSTEM32\DRIVERS\STORVSP.SYS [FF184501F8F556147BBBDE571315C137][1 67584 3F3407514819AC7FC81AFF147E5

A4B67BD59E84A ]C:\WINDOWS\SYSTEM32\DRIVERS\STREAM.SYS [84E0F5D41C138C5CC975137A2A98F6D3][1 14176 C6CA1B69FF873D5CEF10D9EE3CF 3D4FA88C6BBFE ]C:\WINDOWS\SYSTEM32\DRIVERS\SWENUM.SYS [3C32FF010F869BC184DF71290477384E][1 40664 9DEC39CA0D13CD4AADF4120DE29 665C426BE9F2B ]C:\WINDOWS\SYSTEM32\DRIVERS\TAP0901.SYS [6617F44D2432C529B2249A0498B6B40A][1 2551640 1D3AAF9DC994671B1FABA6541D5 77BF5EA78906B ]C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS [33A7D83EEB15431773A6E186CFAABA21][1 48640 3F82FE325D258F45553F2B76D82 267A9B783F674 ]C:\WINDOWS\SYSTEM32\DRIVERS\TCPIPREG.SYS [3C7361E0A5A6966DB957B94ECF924A9E][1 30208 E190D1CD742445A0F0AF8ADC410 7E463C942A167 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDI.SYS [FFF28F9F6823EB1756C60F1649560BBF][1 107520 5114F7C576370B592CBB30E441A F172321E4240C ]C:\WINDOWS\SYSTEM32\DRIVERS\TDX.SYS [232D185D2337F141311D0CF1983E1431][1 37216 E8A7E78FD3F72B7DF216D40E223 DD90787C19695 ]C:\WINDOWS\SYSTEM32\DRIVERS\TERMINPT.SYS [E8D2721972B8A2C3A4F6DE5C43D163E5][1 121184 564DE7386D3172C62459EA0001E BA00093F2B276 ]C:\WINDOWS\SYSTEM32\DRIVERS\TM.SYS [82F909359600D3603FE852DB7F135626][1 159584 5EF064084E2D178B4DB75E85D4B 496477FCE1CC8 ]C:\WINDOWS\SYSTEM32\DRIVERS\TPM.SYS [BF8F54CA37E9C9D6582C31C5761F8C93][1 56320 1832563C6B5DE3157BBD74E8EB2 E37F93F4832B5 ]C:\WINDOWS\SYSTEM32\DRIVERS\TSUSBFLT.SYS [E0088068DCE2EE82897027DDB8E05254][1 29696 17B28B48EFEDBEADD8918993247 53BC77B912801 ]C:\WINDOWS\SYSTEM32\DRIVERS\TSUSBGD.SYS [C8E0E78B5D284C2FF59BDFFDAF997242][1 154112 B420B7846C9986497763008B096 4ED8733ED2615 ]C:\WINDOWS\SYSTEM32\DRIVERS\TUNNEL.SYS [ -2][0 -1 ]C:\WINDOWS\SYSTEM32\DRIVERS\TVICHW32.SYS [1A006963644C7FDE5BE60036F3A43E68][1 21200 ]C:\WINDOWS\SYSTEM32\DRIVERS\TVICHW64.SYS [F6EEAD052943B5A3104C1405BB856C54][1 64864 22C886367869BE4EDF0024C2AE9 0315455D9438A ]C:\WINDOWS\SYSTEM32\DRIVERS\UAGP35.SYS [FE6067B1FD4E63650C667B33D080565B][1 74080 8BFA641AC127B1EBF7A19EB7E6E 1B387336BF21E ]C:\WINDOWS\SYSTEM32\DRIVERS\UASPSTOR.SYS [5D1B430EA11064C56E7C8F84B90DEB6A][1 189792 B4CDDFEFF62333E89E030C6E91D E98149D7E7065 ]C:\WINDOWS\SYSTEM32\DRIVERS\UCX01000.SYS [1EC649F112896FAE33250F0B97AC5D0B][1 316928 6883CFA15A49C2C4EDCC7522F29 5FE13F6B1A437 ]C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS [9578691F297E1B1F519970FE6D47CB21][1 26976 DF7806EA94CE43DC90DD619829B 249E44A68762F ]C:\WINDOWS\SYSTEM32\DRIVERS\UEFI.SYS [5EAB5117DDB24FC4D39E6FFFCF1837B9][1 65888 B8652741CF01C11EED8A195C707 7759087DFDD91 ]C:\WINDOWS\SYSTEM32\DRIVERS\ULIAGPKX.SYS [DA34C39A18E60E7C3FA0630566408034][1 46080 8535F943DA6A69F2B0986D235EB 4E51C1053F2A7 ]C:\WINDOWS\SYSTEM32\DRIVERS\UMBUS.SYS [AE8294875E5446E359B1E8035D40C05E][1 11776 ABFB4090C69A3C806CA5E697A7B 1B105211B2F9E ]C:\WINDOWS\SYSTEM32\DRIVERS\UMPASS.SYS [922D364098683EFED6A01D47526A9371][1 12800 DA6853C21A5ABF086C9AABF7741 E7CB1C14FCD5C ]C:\WINDOWS\SYSTEM32\DRIVERS\UnHackMeDrv.sys [C9E9D59C0099A9FF51697E9306A44240][1 54784 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBAAPL64.SYS [755A90F1C949B8260D7670AEF6DB4912][1 121088 FFB5EDC496833C7CDD20078AB0C 8AA5CE235FA19 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBAUDIO.SYS [433ECDE01A52691FA7ACA51C10C09B70][1 155480 4B1B9E9BB5C6686E7C66AC54B94 C0C9C5FFB6ECB ]C:\WINDOWS\SYSTEM32\DRIVERS\USBCCGP.SYS [B3D6457D841A0CAEF4C52D88621715F2][1 98304 A07FF269FC4BD24DBA25F8FF625 5ADB19EE6D40A ]C:\WINDOWS\SYSTEM32\DRIVERS\USBCIR.SYS [882222A9961418A75A08CB68671679D5][1 28000 A02090FC73168547450E8A2B10E 146045C620D06 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBD.SYS [5477D6E27C7D266EF8C152B9A25ADE5E][1 89952 CDA1684A08CB004E8F9A8E3A69E 9F3F7461181C0 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS [DF56C2C04EFA328D7A66B69007130266][1 422240 17FB0A487E0732D2B9031D4B518

D204ACC740EB7 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS [C0E33820326199CE3CFD3B9F27F81D99][1 467800 9F93464F4FFD449B143AFD35002 3240B0792A381 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB3.SYS [3019097FB6C985EF24C058090FF3BDBD][1 30208 5B30E99B9970455C4DA7B9ACB09 9A5A87867BDCB ]C:\WINDOWS\SYSTEM32\DRIVERS\USBOHCI.SYS [32F2E6BAD9FA8E14B55E97280661801E][1 439136 6E6B83C4F488699CA61B955BD3D 001BEA1687C37 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBPORT.SYS [4D655E3B684BE9B0F7FFD8A2935C348C][1 26112 036A878F634BEB9A713C3D07E28 3E8181FE9E508 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBPRINT.SYS [029DFB6E5B38ADD45561A8CE0F60B331][1 33280 A71D2EC2BA1DA9C091A6F0B051D 74C3A51B3144A ]C:\WINDOWS\SYSTEM32\DRIVERS\USBSER.SYS [B1230E9813B5C7E762DF27756AA23917][1 142688 00CD2B1866B4C7983D75D19E185 C0F7950FC41F1 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBSTOR.SYS [BA4FA655E0FC577DB7436FC963932CE4][1 34816 72FB9AF20BA3D02BB7C838B3B29 33250849652DD ]C:\WINDOWS\SYSTEM32\DRIVERS\USBUHCI.SYS [18F744E8CCEB2670040EBAF7AD77B8C6][1 212224 4E966E1B43AB4B34C2037052722 4CC0E77121B56 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBVIDEO.SYS [53AA1CD1740BDE110EB22CD8C05F615F][1 325464 D3677D87D42FD90127042E9E8D0 4607D99847704 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBXHCI.SYS [7BA06676AC91AF2EEAB05BCC70F14003][1 131856 4A450B94A3A1FDD83389D2E4289 99537302C0BA4 ]C:\WINDOWS\SYSTEM32\DRIVERS\VBOXNETADP.SYS [ -2][0 -1 ]C:\WINDOWS\SYSTEM32\DRIVERS\VBOXNETFLT.SYS [9D0B977894F8744CE2495568B16AE3D1][1 106256 D2EE6D899ACE44B275D44FC7D94 E02C6056B5D9F ]C:\WINDOWS\SYSTEM32\DRIVERS\VBOXUSB.SYS [FEB26E3B8345A7E8D62F945C4AE86562][1 37728 BA13B7E2988037A8E044CE1B15C A196E7E078760 ]C:\WINDOWS\SYSTEM32\DRIVERS\VDRVROOT.SYS [A026EDEAA5EECAE0B08E2748B616D4BD][1 175960 3A174D543EB01CBF6B330A8C3DE 45B4A1E8FBCFE ]C:\WINDOWS\SYSTEM32\DRIVERS\VERIFIEREXT.SYS [041D3EF364E624DBB2703A64A5AADF89][1 551776 CE8237C7206BB12D04ED07A397A 2C2DD6BF98BC7 ]C:\WINDOWS\SYSTEM32\DRIVERS\VHDMP.SYS [06D38968028E9AB19DE9B618C7B6D199][1 19808 BF272BAE3F70F5A315047B3FC43 6EDDA3399E60E ]C:\WINDOWS\SYSTEM32\DRIVERS\VIAIDE.SYS [3CE922E34DB12D9F3C0EA856BC09687C][1 220672 F890B9D6DBABA7833AEDF64792D AE23C132A816E ]C:\WINDOWS\SYSTEM32\DRIVERS\VID.SYS [608BD5400EFD2307A5F8DDDC87775734][1 49152 BF36B670737468843E77D624795 52B91B748C9B0 ]C:\WINDOWS\SYSTEM32\DRIVERS\VIDEOPRT.SYS [C6305BDFC4F7CE51F72BB072C03D4ACE][1 97088 8457649A59E1D7D45B9F7CE2722 BBD0CD1749FE0 ]C:\WINDOWS\SYSTEM32\DRIVERS\VMBUS.SYS [DA40BEA0A863CE768C940CA9723BF81F][1 21760 9B7AD933FE239BB25DE03E1CBC5 8AE705EF4AAD5 ]C:\WINDOWS\SYSTEM32\DRIVERS\VMBUSHID.SYS [68F8C26DEA2D42E8DEC0778943433C80][1 129536 92497BBF47E91208530F01ED30A 22DD36290CDE4 ]C:\WINDOWS\SYSTEM32\DRIVERS\VMBUSR.SYS [0BF5CAD281E25F1418E5B8875DC5ADD1][1 11264 87105F7C47C00B002C0D62E6DA0 925C73D13B18D ]C:\WINDOWS\SYSTEM32\DRIVERS\VMGENCOUNTER.SYS [1A063730F221B2746FF00457AE17E4F0][1 7168 3097192CAB59F853FFA34E59F04 551B8233F4566 ]C:\WINDOWS\SYSTEM32\DRIVERS\VMS3CAP.SYS [7A08CEE1535F5A448215634C5EA74E50][1 49984 BD1B1F31C27719320E8012A41BC 9433EDEA5A9CC ]C:\WINDOWS\SYSTEM32\DRIVERS\VMSTORFL.SYS [55D7D963DE85162F1C49721E502F9744][1 73568 1BD3DC6A7753187D5B1E8516AB1 A24285261CBB3 ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGR.SYS [CCB9E901F7254BF96D28EB1B0E5329B7][1 377696 D1E02B9069243989CE4F37A0C67 838819BA1CC85 ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGRX.SYS [9F9CE33B50611A1C61A46B8911E0B30B][1 312160 A35B2D3B509581AFCF9B1742564 D41A026B86E28 ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLSNAP.SYS [01355C98B5C3ED1EC446743CDA848FCE][1 69472 3E4860A12100FABCA1882BE8651 76FF0D43D60F4 ]C:\WINDOWS\SYSTEM32\DRIVERS\VPCI.SYS [ADBE96C33D1A5BB1BBAF90B4BC84F523][1 65536 D2BDB24DDE9AB4C6301C14281EE 6C956A2175D62 ]C:\WINDOWS\SYSTEM32\DRIVERS\VPCIVSP.SYS [ -2][0 -1

]C:\WINDOWS\SYSTEM32\DRIVERS\VSERIAL.SYS [4539F45F9F4C9757A86A56C949421E07][1 168800 2A8E4DA181EC5FDC243FD5B7EC5 AF055D7FBFCE0 ]C:\WINDOWS\SYSTEM32\DRIVERS\VSMRAID.SYS [0849B7260F26FE05EA56DED0672E2F4B][1 305504 8159A804A005D8728BB585272A3 D51815DF01E9E ]C:\WINDOWS\SYSTEM32\DRIVERS\VSTXRAID.SYS [BE970C369E43B509C1EDA2B8FA7CECB0][1 24576 11BD6E7F93660E7046714C8D025 E28E5CB540984 ]C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIBUS.SYS [6B26AD573CCDD5209DF4397438B76354][1 71680 2D7CB565F72E02E66F5036DD53A AD681CB6A7705 ]C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIFLT.SYS [0910AB9ED404C1434E2D0376C2AD5D8B][1 26752 5DEB8028C5E37365693FD6EC614 FC7AD21E445F5 ]C:\WINDOWS\SYSTEM32\DRIVERS\WACOMPEN.SYS [602811E8AAE68030C151345C84A0CDAF][1 54272 E6E008A7BD676F62FF18E9BE30E 5C7C8F19FEB29 ]C:\WINDOWS\SYSTEM32\DRIVERS\WATCHDOG.SYS [694B28DE12AD47031FFB4B052662131A][1 34760 E7E779E482FB790435AB792445B 90CE497602988 ]C:\WINDOWS\SYSTEM32\DRIVERS\WDBOOT.SYS [CB6C63FF8342B467E2EF76E98D5B934D][1 839488 C5610284FDD5035848935396F66 1FA0BBBFFCBDD ]C:\WINDOWS\SYSTEM32\DRIVERS\WDF01000.SYS [0B99529A3BECC3528D865DDECB62503B][1 265056 82A269EA1096C8F06BE7F0F4DC6 FBE427D730BB3 ]C:\WINDOWS\SYSTEM32\DRIVERS\WDFILTER.SYS [42C23552FC0BF2BAB9053BE6E4DC3D13][1 60224 1B7E05B8B19B5B3E8124CEEB16E 5EAC50CA1A839 ]C:\WINDOWS\SYSTEM32\DRIVERS\WDFLDR.SYS [282E7D46310338FF4A6B7680440EB0DA][1 124256 9F469B3BA78F83D1F8B73B4F6EF D365F92A89786 ]C:\WINDOWS\SYSTEM32\DRIVERS\WDNISDRV.SYS [2E0AF5B354ED1BB10314353B6A625B68][1 38240 9900C6D877B140C0CAD983C34D4 F2D988C5B416D ]C:\WINDOWS\SYSTEM32\DRIVERS\WERKERNEL.SYS [2E3E82D7B1076B90F4E228A8EF17B261][1 136536 80B5B0923273663AAE3C245EBD6 371D917EC9525 ]C:\WINDOWS\SYSTEM32\DRIVERS\WFPLWFS.SYS [867BCC69ED9C31C501465EB0E8BA9DFA][1 33632 DE18E32033C0A949E81AF4E02A8 4CF1407525B0C ]C:\WINDOWS\SYSTEM32\DRIVERS\WIMMOUNT.SYS [AC263C2F66405589528995AA41040599][1 78848 00CC199C12BECEE994CE62AF647 9BC85B400D285 ]C:\WINDOWS\SYSTEM32\DRIVERS\WINUSB.SYS [2834D9D3B4F554A39C72F00EA3F0E128][1 16384 284F6A73E293AF389FEB4553E31 8DE5B649FD55F ]C:\WINDOWS\SYSTEM32\DRIVERS\WMIACPI.SYS [1FE5DDC32243469E6FA4440C02775A34][1 18272 BB438D2DEEE363EAF949A0AE9AC 71C7847A81F35 ]C:\WINDOWS\SYSTEM32\DRIVERS\WMILIB.SYS [E746BCDBA2E02CF6B8D6B26FB167FBE0][1 54304 AF599C048542F9535C470D8F988 B06EE3CFA1101 ]C:\WINDOWS\SYSTEM32\DRIVERS\WPCFLTR.SYS [9F2904B55F6CECCD1A8D986B5CE2609A][1 26976 E7F042C4222B99B62BD19EADABA 0FD1C65733EA9 ]C:\WINDOWS\SYSTEM32\DRIVERS\WPDUPFLTR.SYS [38CAE0D33091C6F3B542F230E70ED44B][1 23392 5C1A575A2AA41BFE3AEC7D224C9 E045B10A5472C ]C:\WINDOWS\SYSTEM32\DRIVERS\WPPRECORDER.SYS [AE072B0339D0A18E455DC21666CAD572][1 21504 BDBE95F60ADEFAE77F34930C58C FCB34D1632CCC ]C:\WINDOWS\SYSTEM32\DRIVERS\WS2IFSL.SYS [2FEAE33E9B2B56104596E1BA444405A9][1 117760 B3EF2CE4D77457ACDC7E0922E08 8EE0D72A698F1 ]C:\WINDOWS\SYSTEM32\DRIVERS\WUDFPF.SYS [19240C13F526125554B5370566F21A0A][1 230912 0E2DD15D66057A9A85778660118 A7D1614CB2490 ]C:\WINDOWS\SYSTEM32\DRIVERS\WUDFRD.SYS [537319A784278409FF5353515A39DE38][1 295792 EDDE0D81C209DDE80711AA19285 902CBEB12F8EA ]C:\WINDOWS\SYSTEM32\DRIVERS\YK63X64.SYS [6073537F250B45E1CB2A02E97F0FE1B2][1 107008 EC803AA6AB3CA50AB116F241BBB 0EAFA78C23428 ]C:\WINDOWS\SYSTEM32\EAPSVC.DLL [6A5914B21D33A1CC4D294A696ADDB3E2][1 40448 5608A43797F7403EDBA46F29033 283DABA84A348 ]C:\WINDOWS\SYSTEM32\EFSSVC.DLL [030CE75B7D8F75FAA7BA1EC6FD0EB5A3][1 468992 9D2131735BCCBA615EEED3A34A2 AC0EB02191764 ]C:\WINDOWS\SYSTEM32\ES.DLL [DC1A78BCCCB7EE53D6FD3BD615A8E222][1 21504 DD395F01425695E629D59E43B55 535874934CA13 ]C:\WINDOWS\SYSTEM32\FDPHOST.DLL [E5AD448F2DC84B1CF387FA7F2A3D1936][1 33280 B43794F70238921E6CF287AC28D 4732B731E8F41 ]C:\WINDOWS\SYSTEM32\FDRESPUB.DLL [0046E0BD031213D37123876B0D0FA61C][1 118272 F6BBC5DCC6348C8196D668C9F45

A19656BAEB650 ]C:\WINDOWS\SYSTEM32\FHSVC.DLL [183CA7699474FDE235853967D1DA4D9B][1 1348608 34610774994719EB7DF32E61F67 E769D8660E297 ]C:\WINDOWS\SYSTEM32\FNTCACHE.DLL [EE289BD147FDFF95EF1B9BD65D3B974A][1 491520 6D9998EF6BA3BC2BF105CDE2F2D 791BAF89C9972 ]C:\WINDOWS\SYSTEM32\GEOFENCEMONITORSERVICE.DLL [0BDE0FCF597E9B65600121EF54FF8340][1 1311744 7999C615C23FBB6B1E282F05EF4 432A61735D2DF ]C:\WINDOWS\SYSTEM32\GPSVC.DLL [7DEA8CDADD23BBFFC8C47EFE6AF11328][1 419160 637848FD3839B419DD4BB7F4C38 FE256FA41A295 ]C:\WINDOWS\SYSTEM32\HAL.DLL [449A20A674AA3FAA7F0DD4E33EE2DC20][1 32256 18B2BABC4207F213920EA779A0E E493074D4372E ]C:\WINDOWS\SYSTEM32\HIDSERV.DLL [9067880BBB1C18703DBFF27D731D7ECA][1 517120 3283178531EC0B431E3D1187B75 621EB88A94A43 ]C:\WINDOWS\SYSTEM32\ICSVC.DLL [F48C144251B36850B67AB8E6D9E20E92][1 111616 980DC11AE5C2A3A9CA4A4656926 BFBC4C69FA037 ]C:\WINDOWS\SYSTEM32\IEETWCOLLECTOR.EXE [B82255670D270B75D2D2F0F8747D1443][1 1104384 379B4A4A6C9F29249B9B9EB0576 DDA98CB6E34A2 ]C:\WINDOWS\SYSTEM32\IKEEXT.DLL [DDD5B1A303EA579EFE2D5A4DE801E9AE][1 34120 2422D150AED2951819AD6BD81FB E74EB46FD1705 ]C:\WINDOWS\SYSTEM32\IMAADP32.ACM [DFC4050D58565ADBEE793A8D4AEBDAE6][1 903168 0BB00C9E84FD870AABFF947E41E D94C63DAD2996 ]C:\WINDOWS\SYSTEM32\IPHLPSVC.DLL [F4414F57DF2CECB8FC969AA43A6B0D50][1 433664 87C541F3D104FA4B8C7707271B9 FF39637BA6767 ]C:\WINDOWS\SYSTEM32\IPNATHLP.DLL [C16097D77A232A288D65F299E2E01105][1 403456 EE3B7A49D7A133EE97675964EDC D5B542DB22912 ]C:\WINDOWS\SYSTEM32\IPSECSVC.DLL [810F8A0A0680662BB0CE44D0E2CEF90C][1 150528 FC8287F09F66AB6E17F7CD8347D 4686F8B40BEE8 ]C:\WINDOWS\SYSTEM32\ISCSIEXE.DLL [6932138B1E9C1D9601F262EC696E419D][1 52736 F17F411AA3864B55B524AE119EB 6EB697DB06FBD ]C:\WINDOWS\SYSTEM32\IYUV_32.DLL [1CEB3BAFEA2D511A449C6942BBB7F75C][1 14176 D265B6D59DD500E0E3BD26BA123 5A3889A5D585C ]C:\WINDOWS\SYSTEM32\KD.DLL [4D1E2DC40048C2E07CE4B2ADEFF6A020][1 940544 1E412B48ACC9DF62506416C0466 14B4F4BDDBF35 ]C:\WINDOWS\SYSTEM32\KERBEROS.DLL [D22AE5313F6B7EFDDD8C117B5501F4A3][1 90464 A6411D035BF28FB786EDEF75A03 FDBB71A251D41 ]C:\WINDOWS\SYSTEM32\KEYBOARDFILTERSVC.DLL [ECCE051BB49773BEE210B515669AFC6E][1 59392 F5AC33046D1A05191E57D8A065A 43EF554D14646 ]C:\WINDOWS\SYSTEM32\KEYISO.DLL [7F97B1A47C0B77487A08BA69C2DF74FE][2 38454 C0BA85DFA1A2A734C58A67AFDAA 69731D5ED3FBE ]C:\WINDOWS\SYSTEM32\KMSSERVER.EXE [7BF3ADCBD021D4F4A84CF40EB49C71B5][1 97792 8710D3252BB538671587C258DCB 438F148AEE8F5 ]C:\WINDOWS\SYSTEM32\KMSVC.DLL [6CD9C3819BE8C0A3DACC82AE5D3C4F18][1 261632 8A97986C12EEF9EC62BFD611227 4D53345DBFCF0 ]C:\WINDOWS\SYSTEM32\LISTSVC.DLL [D617071B11C99CFE5C4BD0FD82C0609C][1 363520 3818E7E18A4F98808E2FF2C1307 8EF780EC35819 ]C:\WINDOWS\SYSTEM32\LIVESSP.DLL [00E070FC0C673311AFD4B068D1242780][1 269824 DFDAB6A3D4CFF37976F64DC9D8B 0DE5D858F313E ]C:\WINDOWS\SYSTEM32\LLTDSVC.DLL [D113FAD71A5E67AA94B32A0F8828D265][1 24576 9C2C895797D73E99DE45EEF2F6B 3B15171EBAF39 ]C:\WINDOWS\SYSTEM32\LMHSVC.DLL [F09EF772AB88632546D72E4B16EA0978][1 35656 DB96C8A6B7F704984B235011091 7B9AD0FFFB460 ]C:\WINDOWS\SYSTEM32\LMIPORT.DLL [E58B2EA7B004184E229854A3D1C00CBB][1 1044480 F41A7473026A283CD5B0F6670A6 28C69124295B2 ]C:\WINDOWS\SYSTEM32\LOCALSPL.DLL [5CAE8F47B31D5CFC322B5B898C19E0FE][1 10240 9F8095F07A0A2C407E9D2298C9B 13ACB07BC45E5 ]C:\WINDOWS\SYSTEM32\LOCATOR.EXE [F6F209DDB94959BA104FC8FC87C53759][1 45008 BCBCE61852DF6CC59F897C78471 C222E564B32B3 ]C:\WINDOWS\SYSTEM32\LSASS.EXE [B6B69FF200F68888A7FAFDF204D00C91][1 716288 70339AAE32DFC76430678248DEF 4661F75E39FAA ]C:\WINDOWS\SYSTEM32\LSM.DLL [67BBF600A4F2A858DC6892F920C70455][1 381792 43DE38CBA7FFF48D545112160BD

D8FCDCE2977EB ]C:\WINDOWS\SYSTEM32\MCUPDATE_GENUINEINTEL.DLL [D72877D08AC821E3983C185D12034B19][1 23552 8A366E9624C008000F98EB7C6F8 6D22E71C8F1A1 ]C:\WINDOWS\SYSTEM32\MIDIMAP.DLL [FD788C2D96EA91469A3C1D13E80D7473][1 70656 39A091DFCC1AB8A28864580BB50 6E4E7B27FE62A ]C:\WINDOWS\SYSTEM32\MMCSS.DLL [BFFB40FBE6D2C3469F8D06EE5E4934AB][1 223744 88B2A31822937E10446796F232A E7A2723E367AE ]C:\WINDOWS\SYSTEM32\MPRDIM.DLL [D186C5844393252147BE934F3871DB7A][1 878080 AF641A81611C45B047B6D01D639 B369E92583D72 ]C:\WINDOWS\SYSTEM32\MPSSVC.DLL [ADB4E145B99352A3058A6AB502BB99A1][1 25088 253F4DB2E5B0D56498B0C10E3BD 49C1EF06D9302 ]C:\WINDOWS\SYSTEM32\MSACM32.DRV [865F786E086BD42E73A218B62E6C5D88][1 34120 3E5186359C53A50E617D8EC18CE 4B022F4E312CD ]C:\WINDOWS\SYSTEM32\MSADP32.ACM [A082C17D14D0790E27D064EA4B138AE1][1 142848 FD10A0730F100B7E8DE5AC840C0 E2397A0B10426 ]C:\WINDOWS\SYSTEM32\MSDTC.EXE [32B1A8351160F307A8C66BCB0F94A9C2][1 357888 FEF3CD03390EAFF8B6709C2B219 CC8BC6AF38452 ]C:\WINDOWS\SYSTEM32\MSDTCKRM.DLL [4F3A00DC17C0B02DD69A7F2C079EE967][1 24832 7AD2009307394D03E0C7AD756DD D5B43D9695ED4 ]C:\WINDOWS\SYSTEM32\MSG711.ACM [E81D2F5C9CEC6DFBEFDA510CF4C70DA4][1 40816 9A164700B8DCF844F9D9215D78F 9442553C7AA18 ]C:\WINDOWS\SYSTEM32\MSGSM32.ACM [50DAB9E7E976BD7FF5F25B83440606AA][1 62464 30F5643F3B223607AF20D9859EC 565855B7FE551 ]C:\WINDOWS\SYSTEM32\MSIEXEC.EXE [86B5C163A3A0E1A9841ED04012E2C109][1 16896 476625007B587C02295A7A7B96E 9A0783946C7C5 ]C:\WINDOWS\SYSTEM32\MSRLE32.DLL [53DC027553EB54B3F84B07122DEEE0CC][1 419168 A4FA5BB211143E426967F36A707 2647A9FCACB35 ]C:\WINDOWS\SYSTEM32\MSV1_0.DLL [A230BE9C954935719EFF45DFBF86E3EA][1 37376 E6EA1EE43C3B18E4E631B2164C1 2E860C86B73EB ]C:\WINDOWS\SYSTEM32\MSVIDC32.DLL [896B307E803430F67EC772807F9CC023][1 338432 7B01E59936CF5A17F4E89EE1359 CAF0A9B36CED6 ]C:\WINDOWS\SYSTEM32\MSWSOCK.DLL [923FB63EAA4CAE2EEE8AFA409CBA1D06][1 26112 8EFB6D38CE8522F2DD85FF7C637 5CD2BC2B7A4A3 ]C:\WINDOWS\SYSTEM32\MSYUV.DLL [4CD5B246B2DB81DC403B7C9041456B0E][1 67584 470623DB1113FA777A8881476E4 FBC90C84DF369 ]C:\WINDOWS\SYSTEM32\NAPINSP.DLL [71E3C0100AA19D11373CCEB2F51A6008][1 164352 184FECAC3978453E0EAE3E853D2 7A5A2A8C18F5B ]C:\WINDOWS\SYSTEM32\NCASVC.DLL [51DF09CAB2CAC64FEE3E371D9028ED01][1 151040 CFEB12F4C8D6EBA15D5ECA071B7 FD49E0CA1423F ]C:\WINDOWS\SYSTEM32\NCBSERVICE.DLL [2586C4C167499210DCBF3ECFD8CCE210][1 73728 E743617476792A056386C375FB8 0D060E507265D ]C:\WINDOWS\SYSTEM32\NCDAUTOSETUP.DLL [E01B8CE6646E055D2B806AE4DD5A1202][1 832512 8E98DF421D84278C2FF00C649D2 FAA888D5B40D8 ]C:\WINDOWS\SYSTEM32\NETLOGON.DLL [B7AD851A21FEBA3BA214972627614207][1 254976 E7419D10B1BD3923FF0619DCCF6 FB50EFF901F2B ]C:\WINDOWS\SYSTEM32\NETMAN.DLL [F0F0A372C2EF6358399C4936F91B6131][1 525312 6789ABB86D42ACC23904C13B1F2 3F30465F673BD ]C:\WINDOWS\SYSTEM32\NETPROFMSVC.DLL [E5DFD54D2DAA70738F581D1AC74C09CD][1 84480 C3F57B5CAC998FDAB6D0F541F3D 4C3F03548DA7E ]C:\WINDOWS\SYSTEM32\NLAAPI.DLL [3A280F3B3C7A46E29C404ACD46ECBF5E][1 387584 7E774F152661D01AFB538BD9046 EFFE0CC009A4E ]C:\WINDOWS\SYSTEM32\NLASVC.DLL [6E2271ED0C3E95B8E29F3752B91B9E84][1 29184 935464202CF77DBAA02A2049004 A33C490BF66FB ]C:\WINDOWS\SYSTEM32\NSISVC.DLL [031FDCB504035477EB4371B93A3CB8B5][1 7399256 AD4E756CA695B1AC61C8EB02164 AB2F48D534855 ]C:\WINDOWS\SYSTEM32\NTOSKRNL.EXE [F611E6125B86F2CFB6D2C6A4F98E487A][1 715776 C59C9DEB5E58E9B76F9ED5F7CE8 C1B8864733364 ]C:\WINDOWS\SYSTEM32\NTSHRUI.DLL [D57BD30FE0E186DDCF592E7C15ED9C62][1 1096480 BF285B32F0C4F64DE80D11DE0A2 C1656F61762AA ]C:\WINDOWS\SYSTEM32\NVSPCAP64.DLL [8E99BF264C1F20934A67E91BC9F4FB20][1 922912 485BA6FF41647DA1893BF53CA7E

27D5665F381B7 ]C:\WINDOWS\SYSTEM32\NVVSVC.EXE [2A57A937BC5B1B2D6AFE6A8C5925F50B][1 433664 BB8EFD648BB856DE7A00991C3B9 06FA465048DCC ]C:\WINDOWS\SYSTEM32\P2PSVC.DLL [9A5309EF92F39346CFD5A4C2C3D1BFAD][1 471552 E30E5EEF8F1A1BF5C4DE45B0212 53C8DE81ECA7F ]C:\WINDOWS\SYSTEM32\PCASVC.DLL [C51CF4D9DA57EA894967752090F6E2CF][1 254464 61AE7999E4D816E1F1262475080 45B1680B7D2D1 ]C:\WINDOWS\SYSTEM32\PKU2U.DLL [928061178CD9856CA6B67FFFCE6BA766][1 1443840 BF6EFE17C945470CCB5ADBDC046 84C302321131E ]C:\WINDOWS\SYSTEM32\PLA.DLL [F916298AF3C6AC9887427E545C7E3A69][1 87040 B54B586A9BE1F04EBEA6E86CEF4 6B9D7EBD5E5BD ]C:\WINDOWS\SYSTEM32\PNRPNSP.DLL [3B510F20806B94E389784ED09DBD2111][1 419328 DA4C65D81770E0F07437730ED4F FDDF8211CEE14 ]C:\WINDOWS\SYSTEM32\PNRPSVC.DLL [8513A1E7AE4B9DC82C4B4F432C648A58][1 221184 555B993EDB69188FC3311EF619D 189FB03B134BC ]C:\WINDOWS\SYSTEM32\PROFSVC.DLL [BE5F89BAFBD4272D5A0C0A37B97865ED][1 405504 311524B1D3540E4B227AFE7D259 261E73C1621C6 ]C:\WINDOWS\SYSTEM32\PROVSVC.DLL [879E608D61DB8187590CC8152435F117][1 66904 72C7707F7425378D81E1C3D5E50 B77DA2649C456 ]C:\WINDOWS\SYSTEM32\PSHED.DLL [9E97E62098FA1238D189181AAB13C402][1 19936 ]C:\WINDOWS\SYSTEM32\PWDRVIO.SYS [1A8011B9BD9B5CB53783E7F91109B946][1 13280 ]C:\WINDOWS\SYSTEM32\PWDSPIO.SYS [41A45D2A75494EABF2806EA051E00376][1 435200 8D07B8F9A92038138ED3DF27A6B F0CBCD9C41BE6 ]C:\WINDOWS\SYSTEM32\QAGENTRT.DLL [15225081966C785A9192782401643FD4][1 1017856 5633222EC0A851C89A082612A3E FD4F106909AB3 ]C:\WINDOWS\SYSTEM32\QMGR.DLL [AF90BB44C99D6820BE52C9BBAA523283][1 297472 403F22CD738C21675FD7577463F F436601CEFA7B ]C:\WINDOWS\SYSTEM32\QWAVE.DLL [5F061AC45266841A2860C1858ED863B8][1 101376 B5A356D0530A3A3267D0A9A7A64 C76FAE2DCB1C8 ]C:\WINDOWS\SYSTEM32\RASAUTO.DLL [BF3B17016764F20F9D28CF1A8DC210C0][1 534016 FDBCCC3C30937BED9D26DA28AB6 18CAF87B924B0 ]C:\WINDOWS\SYSTEM32\RASMANS.DLL [4DCCABE03D06955ED61BABBD8EF9F30F][1 164864 5603AFE7A1B71DB82C198875986 B5D07E2DF0F82 ]C:\WINDOWS\SYSTEM32\REGSVC.DLL [B220B68B2C18F0CA4BF629F870FFCDFD][1 19968 2C5E960ACD481B975CDD83ECFC6 089FC6E9A8291 ]C:\WINDOWS\SYSTEM32\REGSVR32.EXE [D894CBD7DA753C881EE8D5E33B583225][1 79872 0478A801168D7DB0A30D7A88396 3D3039F19E1E7 ]C:\WINDOWS\SYSTEM32\RPCEPMAP.DLL [3FD5AE42EC87C6F532A931F96BE731DD][1 761344 552E7FBE743678C834703F5F1D3 A6C57AEE3D310 ]C:\WINDOWS\SYSTEM32\RPCSS.DLL [47C497FA4DDEA908633CAA60CEBE6805][1 188416 6E0A024BA69C10C3B529F03D9AC 017459D60B3D4 ]C:\WINDOWS\SYSTEM32\SCARDSVR.DLL [E76C4E98302AE39CC6FA5D20FC8B5438][1 130560 C44812DB6C960ED202044DEB12F ED1682A9F5ED7 ]C:\WINDOWS\SYSTEM32\SCDEVICEENUM.DLL [1F1B8D07708E40E54C55B392C78ECCE2][1 271360 AFA0852EEB7C707B49C49072AD2 3C8B5EE07A1E4 ]C:\WINDOWS\SYSTEM32\SCECLI.DLL [9D27BB60487764A781FE453F9DED8F1F][1 429056 A685BEB3F8487CE993B8A373EC7 A96DCB6F14125 ]C:\WINDOWS\SYSTEM32\SCHANNEL.DLL [888A30EAB651502352C18745367FD179][1 1212416 3D3BC6207921DA3EC052868B66C 70F12F87F2286 ]C:\WINDOWS\SYSTEM32\SCHEDSVC.DLL [79227C1E2225DE455F365B607A6D46FB][1 844800 FE38614E9E45476EB592478B4DD FCFECC041628D ]C:\WINDOWS\SYSTEM32\SEARCHINDEXER.EXE [C49009F897BA4F2F4F31043663AA1485][1 30720 AC6A0BF9BB7595C3F9A827EA216 0BE300CDFF7CF ]C:\WINDOWS\SYSTEM32\SECLOGON.DLL [A88882E64BDC1D8E8D6E727B71CCCC53][1 71680 9DFFED4FDDDF931CEFE9DEBCA28 EE91CC66780AE ]C:\WINDOWS\SYSTEM32\SENS.DLL [E66A7C8CE7ED22DED6DF1CA479FB4790][1 220672 59896CA313B7D16CE375D8312C6 3F1ED6B4B35DF ]C:\WINDOWS\SYSTEM32\SENSRSVC.DLL [441E6FF1F34D7A942946DB42A15FB519][1 326656 E01F92EE663AF6507C6DC8D3393

18481CD9C31B2 ]C:\WINDOWS\SYSTEM32\SESSENV.DLL [4115E21B08D3E9E824742C70D28AF578][1 21196664 F861F7A1EFAE7E3BEC97DCC0B28 1426DBD7DB5AC ]C:\WINDOWS\SYSTEM32\SHELL32.DLL [0D190D8B4B20446BE6299AC734DFADF1][1 629760 EF7C491AAB8840DA1DD7055F837 C026B6A90FEC9 ]C:\WINDOWS\SYSTEM32\SHSVCS.DLL [587ACA15210D1B01FBF272E07A08F91A][1 13312 B28266A806CF33D0669BBC4B776 775D3B49532DB ]C:\WINDOWS\SYSTEM32\SMPHOST.DLL [49EEB92DE930B8566EF615D600781DB4][1 14848 B4CB9C8583BD5C2887CA793633E 780CD00E72CC0 ]C:\WINDOWS\SYSTEM32\SNMPTRAP.EXE [B7DB57A000D46D4DE75BC0C563E58072][1 2899968 9B97AFDE5F7A9281993BEACDF5E 81CEF95B57868 ]C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\X64\3\PRINTCONFIG.DLL [FE0CB40F36D3FCDD3A1B312EF72C38D5][1 798208 5D4369E52000A580019995761CA A568216626313 ]C:\WINDOWS\SYSTEM32\SPOOLSV.EXE [E6DEC72A2A23FAA53EB9FEC3C7E29D66][1 6353952 98464403267C402B1A74D4B8E38 00D631867F0D1 ]C:\WINDOWS\SYSTEM32\SPPSVC.EXE [27B58E16CF895AC1F1A97C04814C2239][1 324608 91B434E8CDC4FC9603A10ECBBC6 218C25D21F38D ]C:\WINDOWS\SYSTEM32\SRVSVC.DLL [BB9ED3EDD8E85008215A7250D325A72E][1 239616 348F71F5982FB5A253B0C89C31F 7831347D7BB89 ]C:\WINDOWS\SYSTEM32\SSDPSRV.DLL [3911418AFDE10EA6823B7799E4815524][1 144384 4A60161BB0EFD1DA6427DE3BB0B 01E2E9686EBAB ]C:\WINDOWS\SYSTEM32\SSTPSVC.DLL [3118058E3D07021A55324A943C6D722B][1 19968 7EB7AD6F75A32ADB0B3971411AB 8B7F43AF63E69 ]C:\WINDOWS\SYSTEM32\STORSVC.DLL [E4CA434F251681590D0538BC21C32D2F][1 37768 4EEA9BDFE0EB41759D96EC9BD22 4C4519314A8FA ]C:\WINDOWS\SYSTEM32\SVCHOST.EXE [D8E1AE075AB3E8AD56F69C44AA978596][1 13312 B190FCED17823B338C3C9AA1809 1FEDB607C0293 ]C:\WINDOWS\SYSTEM32\SVSVC.DLL [A5DC2E63F5E5D3C0B843307374998479][1 716288 B2BB09EEBBB5969728EEBD58F61 D1B18267BBA27 ]C:\WINDOWS\SYSTEM32\SWPRV.DLL [A6DB9DCC34A9EFF0EAECF1978B84C5A2][1 173568 13446CD646460FB2AA2B1D203D7 86E91DE888B37 ]C:\WINDOWS\SYSTEM32\SYNCUI.DLL [E45DA7CBBA34510C8B9473AD7D4FFD0B][1 1245696 BD3ABD5C7F7970271D53A09B2AB E5B6FB7B93E80 ]C:\WINDOWS\SYSTEM32\SYSMAIN.DLL [373382005ACB27CB16ED16722FBE946A][1 280576 75C19EDB4E31E7B1F8CB58B657B ED67DE22B639C ]C:\WINDOWS\SYSTEM32\SYSTEMEVENTSBROKERSERVER.DLL [0F00B4C00F8F0674892EB31D5D24F8F1][1 82944 A638C79C14BD948A6B908234A44 BF06D8E2BA68D ]C:\WINDOWS\SYSTEM32\SYSTEMPROPERTIESPERFORMANCE.EXE [BA6DD39266A5E15515C8C14DA2DA3E5C][1 147456 D127622071DA303D32F227E4989 ACBBB18BC22F8 ]C:\WINDOWS\SYSTEM32\TABSVC.DLL [B517410F157693043DACA21B19B258A6][1 306688 1C1BED4F0EE8B6066784E3F9142 79A4CE3D9AA63 ]C:\WINDOWS\SYSTEM32\TAPISRV.DLL [70179FFB5487A8A2BB4A1AB1B22219E6][1 205824 E9A8CE1F822D29D70A2C8AA2923 ED255DDCCAA23 ]C:\WINDOWS\SYSTEM32\TCPMON.DLL [3A1172AF9F927473D60CE3315318307A][1 11264 E0E07E6D87325C8000D11E0503B B802D06B36998 ]C:\WINDOWS\SYSTEM32\TCPSVCS.EXE [7B5AEBC26A58E5C063881790DE1C8564][2 1032704 0C57C3D7843FAA72EAA281EE81C 8BF2B0DAEB5C4 ]C:\WINDOWS\SYSTEM32\TERMSRV.DLL [05FBE1F7C13E87AF7A414CDF288B1F62][1 50688 019BCEC47584AA0F8D846DE808B 871DF2C78D4B6 ]C:\WINDOWS\SYSTEM32\THEMESERVICE.DLL [347A3E49CE18402305B8119A6EC7CFEB][1 245760 E6F797E61016A38C1BE90C99B62 A137A96B238D0 ]C:\WINDOWS\SYSTEM32\TIMEBROKERSERVER.DLL [C97E14BB6A196B0554D6EB67D8818175][1 122368 019D9FE7DE54033AC3E04693999 52540CB0F506E ]C:\WINDOWS\SYSTEM32\TRKWKS.DLL [0BAF086D41F4AE011EB14EDE92A3D00E][1 15872 2BB262B0CB6F5D50999C77DE686 6ED8CA37ACF2F ]C:\WINDOWS\SYSTEM32\TSBYUV.DLL [8D3421127B05432B743719C239ABF80F][1 14336 3068682E0A2C86367D0EE0EB1BF 6812BEB5864EF ]C:\WINDOWS\SYSTEM32\TSDDD.DLL [40B10EAB69F4087C60DC21B5C92A4702][1 100864 422C0D2633509D6117484D353CA 1C752C47D2959 ]C:\WINDOWS\SYSTEM32\TSPKG.DLL [320878AFECDBBD61BBE98624A6CAAC08][1 40960 D72BCA9397D8EE453D789C79D49

730C6FEE5294C ]C:\WINDOWS\SYSTEM32\UI0DETECT.EXE [752A457320A946E03C3AA86C3ACD735E][1 124928 FF972C0C6D4DFAD8C7032EED678 FC72FBCA4DA22 ]C:\WINDOWS\SYSTEM32\UMPNPMGR.DLL [00E08B30E7F7C13ECE2CDF4F46A77311][1 79360 8B4D68A432CB8BBDA59AB650D3B 39956E4350C2E ]C:\WINDOWS\SYSTEM32\UMPO.DLL [E3DDF7D43E05784FAA5E042605EEE528][1 289280 88405BB526E5E37BFA1A15EDF45 B62C9D6F1E80E ]C:\WINDOWS\SYSTEM32\UMRDP.DLL [E234DBE3B155D5F7CFD77B814D592E79][1 235008 1A89A2BB192AA2EE7C0B1EB7293 D5B1FB21BDDC1 ]C:\WINDOWS\SYSTEM32\UNREGMP2.EXE [4A2FFDAC45F317E17DF642C7160EB633][1 436224 CEC1A3807C978CD97EA830B6C7E F983449D23277 ]C:\WINDOWS\SYSTEM32\UPNPHOST.DLL [9BE4639FD1A3F8A9FECFE958D7B04F9A][1 289280 1BAD44941D448F85D19E07E1D16 348647E87A0F6 ]C:\WINDOWS\SYSTEM32\USBMON.DLL [08C191B2917862BE90C33E31CB6B6D79][1 25088 EA8746F00C514552532B4A6A50B D425392024A13 ]C:\WINDOWS\SYSTEM32\USERINIT.EXE [81DAC9F3309A51C041545AF760CFDF06][1 248832 FCB82ADC51CEE028494F34C6449 3CBF705319166 ]C:\WINDOWS\SYSTEM32\VAULTSVC.DLL [CFBAD6B48EDFAA0828A52646B7C4C08D][1 1283584 EEBA385AB9AA2B70CA9A5975050 0C67CF33ABA7A ]C:\WINDOWS\SYSTEM32\VDS.EXE [D51D7EF1EA5ED2BB01E9D07E6E0533BC][1 1436160 A73360F9F2B913DC08804DC18D0 9B2BEF87D8AEB ]C:\WINDOWS\SYSTEM32\VSSVC.EXE [7599E582CA3A6AAA95A18FFE1172D339][1 404480 30E8A136E54FF0219A136951A32 3BA3E51F6CB76 ]C:\WINDOWS\SYSTEM32\W32TIME.DLL [C510810D292782189F8BE12A1B0E366E][1 921088 3E728140920DFF1BAB322B51BC8 616AE80DC09C8 ]C:\WINDOWS\SYSTEM32\WBEM\FASTPROX.DLL [7AFAC828F52D62F304A911EC32F42EEE][1 195072 1EA2C3871A77368FD61DFA8D8C3 2B455048043E5 ]C:\WINDOWS\SYSTEM32\WBEM\WMIAPSRV.EXE [9DB490F3E823C5C3C070644B96CB9D59][1 220672 810F6FF9B0BE1766DC50D6A6D4E 108487E804E38 ]C:\WINDOWS\SYSTEM32\WBEM\WMISVC.DLL [92BF4B3EBD6F163B94B7A20C65E7B698][1 1542144 5162B13DF8D8DF1DB8DD2BDDCEB 6FA37E0DDF72E ]C:\WINDOWS\SYSTEM32\WBENGINE.EXE [58F28103889817C93E5B5AFABC87E709][1 453632 92AEB0C3F5B0A24B1F72A8E7AF4 927EAD33D33E7 ]C:\WINDOWS\SYSTEM32\WBIOSRVC.DLL [772365894F14652D376B2E5030179DC9][1 365568 55DFA41DFC053843290BB6B45F1 A13E52F7B1C71 ]C:\WINDOWS\SYSTEM32\WCMSVC.DLL [D2726823DF7E19F213F4805A9D6D145F][1 459776 8B9FADB95B4A6640C3E3FB9E847 923609ECB195B ]C:\WINDOWS\SYSTEM32\WCNCSVC.DLL [846C02A8B48CBD921A3D6AB521AA0DC4][1 41984 43268758C5DD7000B62F4256364 59A1B842CAC54 ]C:\WINDOWS\SYSTEM32\WCSPLUGINSERVICE.DLL [40C67D1A4891120874767F6E6604D6C5][1 91136 B2511E20673D25BD21F1F820B14 736499AAD5D9B ]C:\WINDOWS\SYSTEM32\WDI.DLL [45E4A2FADA3579F6DC68F2A0998C3419][1 220160 A5B52265C880EA24A9482EB2F3A EA1FEB299B973 ]C:\WINDOWS\SYSTEM32\WDIGEST.DLL [D199A538404FB72FC0AB036595D20E1F][1 217600 EB9670B0FD8292281936D6ADE32 71FFAE7A8788F ]C:\WINDOWS\SYSTEM32\WDMAUD.DRV [6588A957873326361AB1CAC4E76F8394][1 226816 F4858A07F4BD663B91B2D39C588 45AF3052E47B8 ]C:\WINDOWS\SYSTEM32\WEBCLNT.DLL [3274312F263882B51B964329FAF49734][1 215040 8CCB0232576812BA234B433ACF7 8DF8095206540 ]C:\WINDOWS\SYSTEM32\WECSVC.DLL [7CDD84E0023A0C5C230B06A7965EC65E][1 24576 CAE9DA2A9680182643AD523189C 01BFB82B472E3 ]C:\WINDOWS\SYSTEM32\WEPHOSTSVC.DLL [AA1315B87D9B2E39584165318A59F15D][1 81408 47660D8EDFF9B10E08E46B0AA99 94E2A835FA844 ]C:\WINDOWS\SYSTEM32\WERCPLSUPPORT.DLL [22B4C24AB921BFF7827FFBCA1F4E1BB3][1 100864 B4F52AB3047F3C249865466070F 48667DFC3408A ]C:\WINDOWS\SYSTEM32\WERSVC.DLL [E06AFE2F94BA7CFA2FE4FD2A449E60E2][1 66048 FF46AE6CAC830A75924039B7E17 BA00B7BDB0B73 ]C:\WINDOWS\SYSTEM32\WIARPC.DLL [D638904FE86A5FE542A1BA13A9D68E5C][1 634368 210742CB312E208E864BBE4CD6D A0E41E6E1E99D ]C:\WINDOWS\SYSTEM32\WIASERVC.DLL [DD907AAF2D836FBD2EA385BFE09E649C][1 4190720 AA2C1CF7A1C1725C175906C32DF

20EE984DA5AE5 ]C:\WINDOWS\SYSTEM32\WIN32K.SYS [DD079EC8F44DCA3A176B345C6ADEFB66][1 786432 F0A60C7B0AEC369289A9D8B7113 94A369A022169 ]C:\WINDOWS\SYSTEM32\WINHTTP.DLL [218F874A78CB670172280A39A58B8F8A][1 30208 96AB7CF79F6D703651708FAD1EF 0C2155369719A ]C:\WINDOWS\SYSTEM32\WINRNR.DLL [D0D9C2ECA4D03A8F06DCD91236B90C98][1 284160 7205CACA06711FADB018C5926DB 23B5059DC2A6F ]C:\WINDOWS\SYSTEM32\WKSSVC.DLL [9378B4E7E4E3EAE2F05823CFFF2C6EF4][1 1503232 CDDD407658C9273BBBFC30DC44A 45A77533C2C47 ]C:\WINDOWS\SYSTEM32\WLANSVC.DLL [C2838466CCC44FAEF2C3D4C1E5971ECB][1 1555456 637E9F5A193627E3EA67F81D88C 99DEDCE9220DD ]C:\WINDOWS\SYSTEM32\WLIDSVC.DLL [E178371E493BF17EB90FE71ABA8BE643][1 1584128 F8048BBFB06F94784D0EB577BC1 4F72D44BFC2D3 ]C:\WINDOWS\SYSTEM32\WORKFOLDERSSVC.DLL [4E6A0F60DA7EF050D3D26417CD4D24E9][1 12288 E3F55814DA3778138605E428C94 1D4145BC50B3A ]C:\WINDOWS\SYSTEM32\WPCSVC.DLL [D27491CFCE452C154CECFA155AD0EBC8][1 84480 F21E7499EEBF81B4CFC9346FD90 B91E08E1DE1CA ]C:\WINDOWS\SYSTEM32\WPDBUSENUM.DLL [C15B3FE9B7AB65A984B7BFD1382DE43E][1 161280 7DDE0549D3078EE472D150D07C9 ACA120A65B61C ]C:\WINDOWS\SYSTEM32\WSCRIPT.EXE [5CFA46C4ACB2FD70572017052378DAE5][1 133632 B0BDF2972499AE4ED7656760B4D BDD832881048D ]C:\WINDOWS\SYSTEM32\WSCSVC.DLL [48B5A62750FC3E3E8733106FB7E2DF0F][1 297984 99E382475EB74C68F8D5A0FE556 D7830331730C3 ]C:\WINDOWS\SYSTEM32\WSDMON.DLL [690C3FC5C9DBD6B9AEDF8341EC720E41][1 2479616 A025C22AB58F9D2C1A99F93E1CD 6D2B800F68484 ]C:\WINDOWS\SYSTEM32\WSMSVC.DLL [3671C668670626DAB0D47B44F65F0489][1 3395920 1C08FAFEA9644175DD957C774B4 E729D45F12336 ]C:\WINDOWS\SYSTEM32\WSSERVICE.DLL [86D0BF4F792053A50D6EE43DFA5837A5][1 3532288 179930E835D602E130621D3FAC3 6021B93A1B6A8 ]C:\WINDOWS\SYSTEM32\WUAUENG.DLL [BB73CBC65AABC4EA0A5C6A1474A0A743][1 100352 43EBC76DC239680DB0DB9DD53E2 1A6A8954D6FFD ]C:\WINDOWS\SYSTEM32\WUDFSVC.DLL [2FA9794CA36147756F3FDFD6CA29B46F][1 510464 D51D597F08241A49702F8AB8EBE 406200E528980 ]C:\WINDOWS\SYSTEM32\WWANSVC.DLL [92344F65475C53E7075EA7FE3BCEF957][2 11776 276957E538985AA59012532F384 C55105279FA2E ]C:\WINDOWS\SYSWOW64\COMHELPER.EXE [6E21307B8E6C88C12E4DD11A62C8EBFE][1 1007104 FFBC1270B35FA2951732814073A A6EF2D1A1D775 ]C:\WINDOWS\SYSWOW64\D3D8.DLL [1ED08A6264C5C92099D6D1DAE5E8F530][1 21712 ]C:\WINDOWS\SYSWOW64\DRIVERS\DRVAGENT64.SYS [1A006963644C7FDE5BE60036F3A43E68][1 21200 ]C:\WINDOWS\SYSWOW64\DRIVERS\TVICHW64.SYS [3FEEBF51CFDBFB4CD30093609888DCEB][1 84992 07924649908B34C5B55E612B767 CB634B12C9E03 ]C:\WINDOWS\SYSWOW64\ICCVID.DLL [1BF4D63F64A93C92D93626861B40A893][1 11220992 87A56A931B0417813ACE3DF45EC 9BEF24BE5BEB9 ]C:\WINDOWS\SYSWOW64\IEFRAME.DLL [04EE1AD7E9277EC632C390DFEECF4C11][1 740864 1859585CBA1CBDBAC159A480DB2 159DE250BD1C2 ]C:\WINDOWS\SYSWOW64\INETCOMM.DLL [28853B76503048E818E3B143B8C2860B][1 139776 B2637D77ACE05BF5E9242A9849B 590BF89F5E0F5 ]C:\WINDOWS\SYSWOW64\ITSS.DLL [6109EEADA1F9D2B971C7EA668A58D768][1 68096 B598D57723849B59A91EA7B44C9 D183099C6CA7D ]C:\WINDOWS\SYSWOW64\L3CODECA.ACM [1BA1AB4141A92EB34DA99F1249CA2D4D][1 257416 DF1AE3E64698D3ECCD506CE2FBA 8528A3F2B79C6 ]C:\WINDOWS\SYSWOW64\MACROMED\FLASH\FLASHPLAYERUPDATESERVICE.EX E [84F20198CAE435DE32ABDB4511550BD7][1 330240 CCB2B5D875E9D0E78BF6140D190 51362663545FD ]C:\WINDOWS\SYSWOW64\MSCOREE.DLL [549C0229BF2DFB5F894F7CFF2D11D39E][1 17142784 90738CD2170B8D5B2A9E2A9068F 5D973E5C170A3 ]C:\WINDOWS\SYSWOW64\MSHTML.DLL [7EEC1F2A4F4D651BCB7263F69E15E5DA][1 2284544 FA0B3B3272DA8B9E4AFDCD19FCD 1983504951226 ]C:\WINDOWS\SYSWOW64\MSVIDCTL.DLL

[0FC9B04C7F729498B41A19FA55C33573][1 80384 F52EDF0FD9DCA84C00BF85D8B78 0DEEA38D21BDE ]C:\WINDOWS\SYSWOW64\OLEPRO32.DLL [8E3C640FFF5A963F570233AE99C0FFF3][1 21504 56DE20C5CD524C6B0BD01BDC2AE B5936D24C44B9 ]C:\WINDOWS\SYSWOW64\PERFHOST.EXE [B2A9C7DE96E7325950197C55A25752BA][1 18642504 3A78BD1E2644D8B7EAE73FC463E 44E4D65B949F4 ]C:\WINDOWS\SYSWOW64\SHELL32.DLL [C4B881E55ECB7D488BE31BFFD9E09163][1 1156608 5ED437FCBA433C0F94F781B7BA8 15173E568F341 ]C:\WINDOWS\SYSWOW64\URLMON.DLL === [MBR] [MD5=004BC502E8A0AB7DDDB5C2C67E1CDFEE] M8CO0LwAfI7Ajti+AHy/AAa5AAL886RQaBwGy/u5BAC9vgeAfgAAfAsPhQ4Bg8UQ4vHNGIhW AFXGRhEFxkYQALRBu6pVzRNdcg+B+1WqdQn3wQEAdAP+RhBmYIB+EAB0JmZoAAAAAGb/dgho AABoAHxoAQBoEAC0QopWAIv0zROfg8QQnusUuAECuwB8ilYAinYBik4Cim4DzRNmYXMc/k4R dQyAfgCAD4SKALKA64RVMuSKVgDNE13rnoE+/n1VqnVu/3YA6I0AdRf6sNHmZOiDALDf5mDo fACw/+Zk6HUA+7gAu80aZiPAdTtmgftUQ1BBdTKB+QIBcixmaAe7AABmaAACAABmaAgAAABm U2ZTZlVmaAAAAABmaAB8AABmYWgAAAfNGloy9uoAfAAAzRigtwfrCKC2B+sDoLUHMuQFAAeL 8Kw8AHQJuwcAtA7NEOvy9Ov9K8nkZOsAJALg+CQCw0ludmFsaWQgcGFydGl0aW9uIHRhYmxl AEVycm9yIGxvYWRpbmcgb3BlcmF0aW5nIHN5c3RlbQBNaXNzaW5nIG9wZXJhdGluZyBzeXN0 ZW0AAABje5o= === [PT] A 0x7 NTFS, 2048, 716800 0x7 NTFS, 718848, 233717760 === [VBR] 61KQTlRGUyAgICAAAggAAAAAAAAA+AAAPwDwAAAIAAAAAAAAgACAAP/vCgAAAAAAqnQAAAAA AAACAAAAAAAAAPYAAAABAAAA9/1wSCJxSJoAAAAA+jPAjtC8AHz7aMAHHx5oZgDLiBYOAGaB PgMATlRGU3UVtEG7qlXNE3IMgftVqnUG98EBAHUD6d0AHoPsGGgaALRIihYOAIv0Fh/NE5+D xBieWB9y4TsGCwB126MPAMEuDwAEHloz27kAICvIZv8GEQADFg8AjsL/BhYA6EsAK8h377gA u80aZiPAdS1mgftUQ1BBdSSB+QIBch4WaAe7FmhSERZoCQBmU2ZTZlUWFhZouAFmYQ4HzRoz wL8KE7n2DPzzqun+AZCQZmAeBmahEQBmAwYcAB5maAAAAABmUAZTaAEAaBAAtEKKFg4AFh+L 9M0TZllbWmZZZlkfD4IWAGb/BhEAAxYPAI7C/w4WAHW8Bx9mYcOh9gHoCQCh+gHoAwD06/2L 8Kw8AHQJtA67BwDNEOvyww0KQSBkaXNrIHJlYWQgZXJyb3Igb2NjdXJyZWQADQpCT09UTUdS IGlzIGNvbXByZXNzZWQADQpQcmVzcyBDdHJsK0FsdCtEZWwgdG8gcmVzdGFydA0KAAAAAAAA AAAAAAAAAAAAAAAAAAAAAIoBpwG/AQAAVaoHAEIATwBPAFQATQBHAFIABAAkAEkAMwAwAADU AAAAJAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAOnAAJAFAE4AVABMAEQAUgAHAEIATwBPAFQAVABHAFQABwBCAE8ATwBUAE4AWABUAAAA AAAAAAAAAAAAAAAAAAAAAAAADQpBbiBvcGVyYXRpbmcgc3lzdGVtIHdhc24ndCBmb3VuZC4g VHJ5IGRpc2Nvbm5lY3RpbmcgYW55IGRyaXZlcyB0aGF0IGRvbid0DQpjb250YWluIGFuIG9w ZXJhdGluZyBzeXN0ZW0uAAAAAAAAAAAAAAAAAAAAAAAAAACaAmYPtwYLAGYPth4NAGb342aj UgJmiw5AAID5AA+PDgD22Wa4AQAAAGbT4OsIkGahUgJm9+Fmo4YCZg+3HgsAZjPSZvfzZqNW AuiiBGaLDk4CZokOJgJmAw6GAmaJDioCZgMOhgJmiQ4uAmYDDoYCZokOPgJmAw6GAmaJDkYC ZriQAAAAZosOJgLokAlmC8APhL/9ZqMyAma4oAAAAGaLDioC6HcJZqM2Ama4sAAAAGaLDi4C 6GUJZqM6AmahMgJmC8APhIz9Z4B4CAAPhYP9Z2aNUBBnA0IEZ2YPtkgMZokOkgJnZotICGaJ Do4CZqGOAmYPtw4LAGYz0mb38WajlgJmoUYCZgMGjgJmo0oCZoM+NgIAD4QdAGaDPjoCAA+E MP1mix46Ah4HZos+SgJmoS4C6O0B6CwNZgvAD4QDAOhCDmYPtw4AAma4AgIAAOgiCGYLwA+F FgBmD7cOWgJmuFwCAADoDAhmC8APhHgOZ2aLAB4HZos+PgLoPwZmoT4CZrsgAAAAZrkAAAAA ZroAAAAA6OQAZoXAD4UjAGahPgJmu4AAAABmuQAAAABmugAAAADoxABmC8APhUQA6ScOZjPS ZrmAAAAAZqE+AujKCGYLwA+EEA4eB2aLPj4C6NsFZqE+Ama7gAAAAGa5AAAAAGa6AAAAAOiA AGYLwA+E5g1nZg+3WAxmgeP/AAAAD4XbDWaL2GgAIAdmK/9moT4C6AABaAAgB2Yr/2ahPgLo rAqKFg4AuOgDjsCNNgsAK8BoACBQywYeZmBmi9pmD7YODQBm9+FmoxEAZovDZvfhoxYAi9+D 4w+MwGbB7wQDx1AH6JL7ZmGQHwfDZwNAFGdmgzj/D4RMAGdmORgPhTMAZgvJD4UKAGeAeAkA D4UjAMNnOkgJD4UaAGaL8GcDcArolwZmUR4HZov686dmWQ+FAQDDZ2aDeAQAD4QHAGdmA0AE 66tmK8DDZovz6GwGZ2YDAGf3QAwCAA+FNABnZo1QEGc6SkAPhRgAZ2aNckLoSQZmUR4HZov7 86dmWQ+FAQDDZ4N4CAAPhAYAZwNACOvCZjPAw2eAewgAD4UcAAYeZmBnZo1TEGdmiwpmi/Nn A3IE86RmYZAfB8NmUGdmjVMQZoXAD4UKAGdmi0oIZkHrEZBnZotCGGYz0mb3NlICZovIZivA Zl7oAQDDBh5mYGeAewgBD4QDAOnK+maD+QAPhQYAZmGQHwfDZlNmUGZRZlZmVwbokQRmi9EH Zl9mXmZZZoXAD4Q0AGY7yg+NAwBmi9Hogv5mK8pmi9pmi8JmD7YWDQBm9+JmD7cWCwBm9+Jm A/hmWGYDw2Zb659mhfYPhGL6ZlFmVwZnZg+2QwlmhcAPhCAAZtHgZivgZov8ZlRmVmdmD7dz

CmYD82aLyPOkZl7rA5BmUGZQZ2aLA2ZQZ2aLQxhmUGdmi1YgZoXSD4QLAGaL/h4HZovC6HED ZovGZlpmWWZCZlFmVug/BmaFwA+E8flmXmZZZov+HgfoTgNmi8Zmi9lmWWZaZlFmVmbR6ej4 /WaFwA+EyvlmXmZZZgPhB2ZfZllmi9BmWGZbZova6fX+Bh5mYCZnZg+3XwQmZ2YPt08GZgvJ D4SY+WYD32aDwwJmgcf+AQAAZklmC8kPhBcAJmeLAyZniQdmg8MCZoHHAAIAAGZJ6+JmYZAf B8MGHmZgZrgBAAAAZqMiAmahHgJmAwaGAmajigJmAwaGAmajTgJmoTAAZg+2Hg0AZvfjZose TgJmiQdmoxEAg8MEZqFWAmaJB6MWAIPDBGaJHk4CZoseHgIeB+i7+GaL++hR/2ahHgJmuyAA AABmuQAAAABmugAAAADoEP1mC8APhBkBZovYHgdmiz4aAmYzwOii/WaLHhoCZoE/gAAAAA+E 6wADXwTr8GZTZotHEGb3JlYCZlBmM9JmD7YeDQBm9/NmUujcAGYLwA+EmPhmiw5WAmYPth4N AGb342ZaZgPCZoseTgJmiQeDwwRmD7YGDQBmK8JmO8EPhgMAZovBZokHZivIZloPhHUAZgPC ZlBmM9JmD7YeDQBm9/NmUeiCAGZZZgvAD4Q8+GYPth4NAGb342aLHk4CZosXg8MEZgMXZjvQ D4UVAGYPtgYNAGY7wQ+GAwBmi8FmAQfrpYPDBGaJHk4CZokHg8MEZg+2Bg0AZjvBD4YDAGaL wWaJB+uCg8MEZv8GIgJmiR5OAmZbA18EZoE/gAAAAA+EDP9mYZAfB8Nmi9Bmiw4iAmaLNooC ZgM2hgJmUmZRZlJmix6KAmaLPlYCZosEZqMRAIPGBGaLBKMWAIPGBB4H6Dz3Ziv4D4QIAPcm CwAD2OvZZos+igIeB+i//WahigJmu4AAAABmuQAAAABmi9HogftmC8APhFP3ZovYZlhmVugs AWZeZgvAD4QFAGZbZlvDZllmWuKEZjPAwwYeZmBmUGZRZjPSZg+2Hg0AZvfzZlJmV+hT/2Zf ZgvAD4QN92YPth4NAGb342ZaZgPCZqMRAGZZZg+2Hg0AZjvLD44TAIkeFgBmK8tmWGYDw2ZQ ZlHrFJBmWGYDwWZQiQ4WAGa5AAAAAGZRBmZXi9+D4w+MwGbB7wQDx1AH6GT2Zl8HZgM+UgJm WWZYZoP5AA+PcP9mYZAfB8MGHmZgZvcmVgJmiw5WAuhV/+jS/GZhkB8HwwYeZmBm9yaSAmaL HjYCZosOkgJmizYqAh4HZos+RgLogfvop/xmYZAfB8NmUGZTZlFmix5KAmaLyGbB6ANmg+EH ZgPYZrgBAAAAZtPgZ4QDD4QEAPjrApD5ZllmW2ZYw2eAewgBD4QEAGYrwMNnZo1zEGdmi1YI ZjvCD4cLAGdmixZmO8IPgwQAZivAw2cDXhBmK/ZngDsAD4Q+AOiBAGYD8eg5AGYDymY7wQ+M IQBmi9FmUGdmD7YLZovBZoPgD2bB6QRmA9lmA9hmQ2ZY68RmK8hmK8JmA8bDZivAw2YryWeK C4DhD2aD+QAPhQQAZivJw2ZTZlJmA9lnZg++E2ZJZktmg/kAD4QNAGbB4ghnihNmS2ZJ6+tm i8pmWmZbw2ZTZlJmK9JnihNmg+IPZivJZ4oLwOkEZoP5AA+FCABmK8lmWmZbw2YD2mYD2Wdm D74TZklmS2aD+QAPhA0AZsHiCGeKE2ZLZknr62aLymZaZlvDZgvJD4UBAMNmUWZWZ4M+YQ+M DABngz56D48EAGeDLiBmg8YC4uZmXmZZw2ZQZlFmi9BmoTICZ2aNWBBnA0MEZ2aNQBBmi9ro RPlmC8APhAUAZllmWcNmoTYCZgvAD4UIAGZZZllmM8DDZosWNgJnZo1SEGdmi0IYZjPSZvc2 jgJmM/ZmUGZWZlhmXmY7xg+EOgBmVmZAZlBmSOgb/nLo6Ov9ZlpmXmZZZltmU2ZRZlZmUmah RgJnZo1AGOjQ+GYLwHTEZllmWWZZZlnDZllmWWYzwMNmUWZQZrgFAAAAHgdmi/nojf1mi8Fm uyAAAABmuQAAAABmugAAAADoM/hmW2ZZZoXAD4UVAGaLwWYPtw4QAma6EgIAAOgW+OszkGYz 0maLwWaLy2ZQZlPoIwBmW2ZfZgvAD4QXAB4H6DX9ZovHZg+3DhACZroSAgAA6OH3w2ZSZlFm uyAAAABmuQAAAABmugAAAADox/dmC8APhGMAZovYHgdmiz4aAmYzwOhZ+B4HZoseGgJmWWZa JmY5Dw+FDAAmZjlXCA+EMQDrE5AmZoM//w+ELwAmg38EAA+EJgAmZg+3RwQD2IvDJQCAdMuM wAUACI7AgeP/f+u+JmaLRxDDZllmWmYzwMNmUGZRZovHZsHoBAZZA8hRB2aD5w9mWWZYw2AG vmkOvwAgHge5DQCQ86UHYcMBI0VniavN7/7cuph2VDIQ8OHSwwAAAAAgIGCLNhggJooFiARH Rmb/BhQggf5gIHUG6FsAviAg4uaJNhggYcNmYIs2GCCwgIgERjLAgf5gIHUG6DoAviAggf5Y IHXpZjPAZqNYIGahFCBmweADZg/IZqNcIOgYALsAIGaLB2YPyGaJB4PDBIH7NCB17mZhw2Zg uyAgZosHZg/IZokHg8MEgftgIHXuuwAgZosPZotXBGaLdwhmi38MZotvELsgIMcGGiDcD8YG HCAUkFOLHhog/xdmA0cCW2YD6GYDL2aLwWbBwAVmA8Vmi+9mi/5mi/JmwcYeZovRZovIZosH ZjNHCGYzRyBmM0c0ZtHAZolHQIPDBP4OHCB1soMGGiAGgT4aIPQPdZ+7ACBmAQ9mAVcEZgF3 CGYBfwxmAW8QZmHDZovGZjPHZiPCZjPHw2aLwmYzxmYzx8NmU2aLwmYjxmaL2mYj32YLw2aL 3mYj32YLw2Zbw6gPmXmCWrUPoevZbr8P3Lwbj7UP1sFiygYeZmBmM9u4ALvNGmYjwA+FuwBm gftUQ1BBD4WwAIH5AgEPgqgAZmGQHwcGHmZgZ4B7CAAPhQwAZ2aNUxBnZosK6yWQZ2aNUxBn ZotKKGaB+QAACAAPgwwAZ2aLQixmI8APhAMAZjPJDh/o9f1mI8kPhDIAZroAgAAAZjvKD4Yf AGYrygZmUWZXZlJmi8rot/3o+/1mWmZfZlkHZgP669ropf3o6f3oC/4OB2a7VENQQWa/ACAA AGa5FAAAAGa4B7sAAGa6CgAAAGYz9s0aZmGQHwfDBh5mYGYz27gAu80aZiPAD4V0AGaB+1RD UEEPhWkAgfkCAQ+CYQBmuAe7AABmu1RDUEFmubgBAABmugQAAABmM/Zmvk1CUkNoAAAHZr8A fAAAzRpmuAe7AABmu1RDUEFmuUIAAABmugUAAABmM/Zmvk1CUkRoAAAHZr8AfAAAZoHHvgEA AM0aZmGQHwfDZlJmM8BngHsIAA+FDABnZo1TEGdmiwLrC5BnZo1TEGdmi0IoZlrDBh5mYGYP tw5mAma4aAIAAOj8+mYLwA+E+gBmD7cOdgJmuHgCAADo5vpmC8APhOQAZ2aLAB4HZos+PgLo GflmoT4CZrsgAAAAZrkAAAAAZroAAAAA6L7zZoXAD4UjAGahPgJmu4AAAABmuQAAAABmugAA AADonvNmC8APhUQA6ZMAZjPS ===

You might also like