;========================================================= ; SysInfoLog v2.11 ; Computer: WIN_7_X86\ATIS-NAS\atis ; Date/Time: 06-04-2015 03:11:59 ;========================================================= [System Information] <--Win32_OperatingSystem BootDevice|\Device\HarddiskVolume1 BuildNumber|7601 BuildType|Multiprocessor Free Caption|Microsoft Windows 7 Professional CodeSet|1252 CountryCode|41 CSDVersion|Service Pack 1 CSName|ATIS-NAS CurrentTimeZone|420 minutes DataExecutionPrevention_32BitApplications|True DataExecutionPrevention_Available|True DataExecutionPrevention_Drivers|True DataExecutionPrevention_SupportPolicy|Opt In Debug|False Distributed|False EncryptionLevel|256 ForegroundApplicationBoost|Maximum FreePhysicalMemory|450.92 MB FreeSpaceInPagingFiles|1.29 GB FreeVirtualMemory|1.63 GB InstallDate|07/08/2014 - 15:15:29 LastBootUpTime|06/04/2015 - 03:09:36 LocalDateTime|06/04/2015 - 03:12:00 Locale|100c Manufacturer|Microsoft Corporation MaxProcessMemorySize|2 GB MUILanguages|en-US Name|Microsoft Windows 7 Professional , C:\Windows, \Device\Harddisk0\Partition2 NumberOfLicensedUsers|0 NumberOfProcesses|60 NumberOfUsers|2 OperatingSystemSKU|48 Organization|Atis Uher S.A. OSArchitecture|32-bit OSLanguage|1033 OSProductSuite|256 OSType|WINNT PAEEnabled|True Primary|True ProductType|Work Station RegisteredUser|VoiceCollect-MDx SerialNumber|00371-OEM-9045604-36041 ServicePackMajorVersion|1 ServicePackMinorVersion|0 SizeStoredInPagingFiles|1.29 GB Status|OK SuiteMask|272 SystemDevice|\Device\HarddiskVolume2 SystemDirectory|C:\Windows\system32 SystemDrive|C: TotalVirtualMemorySize|2.29 GB TotalVisibleMemorySize|1023.49 MB Version|6.1.7601 WindowsDirectory|C:\Windows <--Win32_ComputerSystem AdminPasswordStatus|Enabled AutomaticManagedPagefile|True AutomaticResetBootOption|True AutomaticResetCapability|True BootOptionOnLimit|Do not reboot BootOptionOnWatchDog|Do not reboot BootROMSupported|True BootupState|Normal boot Caption|ATIS-NAS ChassisBootupState|Safe CurrentTimeZone|420 minutes Description|AT/AT COMPATIBLE DNSHostName|Atis-NAS Domain|VCMDX DomainRole|Standalone Workstation EnableDaylightSavingsTime|True InfraredSupported|False Manufacturer|VMware, Inc. Model|VMware Virtual Platform Name|ATIS-NAS NetworkServerModeEnabled|True NumberOfLogicalProcessors|1 NumberOfProcessors|1 OEMStringArray|[MS_VM_CERT/SHA1/27d66596a61c48dd3dc7216fd715126e33f59ae7], Welcome to the Virtual Machine PartOfDomain|False PauseAfterReset|3932100000 milliseconds PCSystemType|Unspecified PowerOnPasswordStatus|Disabled PowerSupplyState|Safe PrimaryOwnerName|VoiceCollect-MDx ResetCapability|Other Roles|LM_Workstation, LM_Server, SQLServer, NT Status|OK SystemType|X86-based PC ThermalState|Safe TotalPhysicalMemory|1023.49 MB UserName|ATIS-NAS\atis WakeUpType|Power Switch Workgroup|VCMDX <--Win32_ComputerSystemProduct IdentifyingNumber|VMware-56 4d 35 75 d6 f0 de 10-3c 63 1e 00 7b e0 ac dd Name|VMware Virtual Platform UUID|75354D56-F0D6-10DE-3C63-1E007BE0ACDD Vendor|VMware, Inc. Version|None <--Win32_SystemEnclosure ChassisTypes|Other LockPresent|False Manufacturer|No Enclosure Name|System Enclosure SecurityStatus|None SerialNumber|None SMBIOSAssetTag|No Asset Tag Tag|System Enclosure 0 Version|N/A <--Win32_BaseBoard HostingBoard|False HotSwappable|False Manufacturer|Intel Corporation Name|Base Board PoweredOn|True Product|440BX Desktop Reference Platform Removable|False Replaceable|False RequiresDaughterBoard|False SerialNumber|None Status|OK Tag|Base Board Version|None <--Win32_BIOS (1) BIOSVersion|INTEL - 6040000, PhoenixBIOS 4.0 Release 6.0 Manufacturer|Phoenix Technologies LTD Name|PhoenixBIOS 4.0 Release 6.0 PrimaryBIOS|True ReleaseDate|05/20/2014 - 00:00:00 SerialNumber|VMware-56 4d 35 75 d6 f0 de 10-3c 63 1e 00 7b e0 ac dd SMBIOSBIOSVersion|6.00 SMBIOSMajorVersion|2 SMBIOSMinorVersion|4 SMBIOSPresent|True SoftwareElementID|PhoenixBIOS 4.0 Release 6.0 SoftwareElementState|Running Status|OK Version|INTEL - 6040000 <--Win32_PhysicalMemory (1) BankLabel|RAM slot #0 Capacity|1 GB DataWidth|32 bits DeviceLocator|RAM slot #0 FormFactor|DIMM MemoryType|DRAM Name|Physical Memory Tag|Physical Memory 0 TotalWidth|32 bits TypeDetail|EDO <--Win32_Processor (1) AddressWidth|32 bits Architecture|x64 Availability|Running/Full Power Caption|x64 Family 6 Model 42 Stepping 7 CpuStatus|CPU Enabled CurrentClockSpeed|3392 megahertz CurrentVoltage|33 tenth-volts DataWidth|64 bits Description|x64 Family 6 Model 42 Stepping 7 DeviceID|CPU0 L2CacheSize|0 KB L3CacheSize|0 KB L3CacheSpeed|0 megahertz Level|6 LoadPercentage|73 percent Manufacturer|GenuineIntel MaxClockSpeed|3392 megahertz Name|Intel(R) Core(TM) i5-2550K CPU @ 3.40GHz NumberOfCores|1 NumberOfLogicalProcessors|1 PowerManagementSupported|False ProcessorId|0FABFBFF000206A7 ProcessorType|Central Processor Revision|10759 Role|CPU SocketDesignation|CPU socket #0 Status|OK StatusInfo|Enabled UpgradeMethod|ZIF Socket VoltageCaps|2 volts <--Win32_VideoController (1) AdapterCompatibility|VMware, Inc. AdapterDACType|n/a AdapterRAM|832 MB Availability|Running/Full Power Caption|VMware SVGA 3D ConfigManagerErrorCode|This device is working properly. ConfigManagerUserConfig|False CurrentBitsPerPixel|32 bits CurrentHorizontalResolution|1280 pixels CurrentNumberOfColors|4294967296 CurrentNumberOfColumns|0 CurrentNumberOfRows|0 CurrentRefreshRate|60 hertz CurrentScanMode|Non Interlaced CurrentVerticalResolution|1024 pixels Description|VMware SVGA 3D DeviceID|VideoController1 DitherType|0 DriverDate|07/29/2014 - 00:00:00 DriverVersion|8.14.1.51 InfFilename|oem10.inf InfSection|VM3D_X86 InstalledDisplayDrivers|vm3dum.dll MaxRefreshRate|60 hertz MinRefreshRate|60 hertz Monochrome|False Name|VMware SVGA 3D PNPDeviceID|PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78 Status|OK VideoArchitecture|VGA VideoModeDescription|1280 x 1024 x 4294967296 colors VideoProcessor|VMware Virtual SVGA 3D Graphics Adapter <--Win32_DesktopMonitor (1) Availability|Running/Full Power ConfigManagerErrorCode|This device is working properly. ConfigManagerUserConfig|False DeviceID|DesktopMonitor1 MonitorManufacturer|(Standard monitor types) MonitorType|Generic Non-PnP Monitor Name|Generic Non-PnP Monitor PixelsPerXLogicalInch|96 pixels per logical inch PixelsPerYLogicalInch|96 pixels per logical inch PNPDeviceID|DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&UID0 ScreenHeight|1024 ScreenWidth|1280 Status|OK <--Win32_DiskDrive (1) CapabilityDescriptions|Random Access, Supports Writing Caption|VMware, VMware Virtual S SCSI Disk Device ConfigManagerErrorCode|This device is working properly. ConfigManagerUserConfig|False Description|Disk drive DeviceID|\\.\PHYSICALDRIVE0 FirmwareRevision|1.0 Index|0 InterfaceType|SCSI Manufacturer|(Standard disk drives) MediaLoaded|True MediaType|Fixed hard disk media Model|VMware, VMware Virtual S SCSI Disk Device Name|\\.\PHYSICALDRIVE0 Partitions|4 PNPDeviceID|SCSI\DISK&VEN_VMWARE_&PROD_VMWARE_VIRTUAL_S\5&22BE343F&0&000000 SCSIBus|0 SCSILogicalUnit|0 SCSIPort|2 SCSITargetId|0 SectorsPerTrack|63 Signature|-2085689034 Size|39.99 GB Status|OK TotalCylinders|5221 TotalHeads|255 TotalSectors|83875365 TotalTracks|1331355 TracksPerCylinder|255 <--Win32_LogicalDisk (1) Caption|C: Compressed|False Description|Local Fixed Disk DeviceID|C: DriveType|Local Disk FileSystem|NTFS FreeSpace|967.64 MB MaximumComponentLength|255 MediaType|Fixed hard disk media Name|C: QuotasDisabled|True QuotasIncomplete|False QuotasRebuilding|False Size|19.43 GB SupportsDiskQuotas|True SupportsFileBasedCompression|True VolumeDirty|False VolumeName|System VolumeSerialNumber|22497FFE (2) Caption|D: Compressed|False Description|Local Fixed Disk DeviceID|D: DriveType|Local Disk FileSystem|NTFS FreeSpace|4.37 GB MaximumComponentLength|255 MediaType|Fixed hard disk media Name|D: QuotasDisabled|True QuotasIncomplete|False QuotasRebuilding|False Size|4.88 GB SupportsDiskQuotas|True SupportsFileBasedCompression|True VolumeDirty|False VolumeName|Database VolumeSerialNumber|7E3F1D3B (3) Caption|E: Compressed|False Description|Local Fixed Disk DeviceID|E: DriveType|Local Disk FileSystem|NTFS FreeSpace|15.5 GB MaximumComponentLength|255 MediaType|Fixed hard disk media Name|E: QuotasDisabled|True QuotasIncomplete|False QuotasRebuilding|False Size|15.58 GB SupportsDiskQuotas|True SupportsFileBasedCompression|True VolumeDirty|False VolumeSerialNumber|303CBBCE (4) Caption|F: Description|CD-ROM Disc DeviceID|F: DriveType|Compact Disc MediaType|Removable media other than floppy Name|F: <--Win32_CDROMDrive (1) CapabilityDescriptions|Random Access, Supports writing, Supports Removable Media Caption|NECVMWar VMware SATA CD01 ATA Device ConfigManagerErrorCode|This device is working properly. ConfigManagerUserConfig|False Description|CD-ROM Drive DeviceID|IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&373888B8&0&1.0.0 Drive|F: Id|F: Manufacturer|(Standard CD-ROM drives) MediaLoaded|False MediaType|DVD Writer MfrAssignedRevisionLevel|1.00 Name|NECVMWar VMware SATA CD01 ATA Device PNPDeviceID|IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&373888B8&0&1.0.0 SCSIBus|1 SCSILogicalUnit|0 SCSIPort|4 SCSITargetId|0 Status|OK <--Win32_NetworkAdapter (1) AdapterType|Ethernet 802.3 AdapterTypeId|Ethernet 802.3 Availability|Running/Full Power Caption|[00000007] Intel(R) PRO/1000 MT Network Connection ConfigManagerErrorCode|This device is working properly. ConfigManagerUserConfig|False DeviceID|7 GUID|{5E63518B-1D97-4979-8D17-5A22F4879E07} Index|7 Installed|True InterfaceIndex|11 MACAddress|00:0C:29:E0:AC:DD Manufacturer|Intel MaxNumberControlled|0 Name|Intel(R) PRO/1000 MT Network Connection NetConnectionID|Local Area Connection NetConnectionStatus|Connected NetEnabled|True PhysicalAdapter|True PNPDeviceID|PCI\VEN_8086&DEV_100F&SUBSYS_075015AD&REV_01\4&3AD87E0A&0&0888 PowerManagementSupported|False ProductName|Intel(R) PRO/1000 MT Network Connection ServiceName|E1G60 Speed|1000000000 bits per second TimeOfLastReset|06/04/2015 - 03:09:36 <--Win32_NetworkAdapterConfiguration (1) Caption|[00000007] Intel(R) PRO/1000 MT Network Connection DatabasePath|%SystemRoot%\System32\drivers\etc DefaultIPGateway|192.168.102.2 Description|Intel(R) PRO/1000 MT Network Connection DHCPEnabled|False DNSEnabledForWINSResolution|False DNSHostName|Atis-NAS DNSServerSearchOrder|192.168.102.99 DomainDNSRegistrationEnabled|False FullDNSRegistrationEnabled|True GatewayCostMetric|256 Index|7 InterfaceIndex|11 IPAddress|192.168.102.5 IPConnectionMetric|10 IPEnabled|True IPFilterSecurityEnabled|False IPSubnet|255.255.255.0 MACAddress|00:0C:29:E0:AC:DD ServiceName|E1G60 SettingID|{5E63518B-1D97-4979-8D17-5A22F4879E07} TcpipNetbiosOptions|EnableNetbiosViaDhcp WINSEnableLMHostsLookup|True <--Win32_SoundDevice (1) Caption|High Definition Audio Device ConfigManagerErrorCode|This device is working properly. ConfigManagerUserConfig|False Description|High Definition Audio Device DeviceID|HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&8A7C455&0&0001 Manufacturer|Microsoft Name|High Definition Audio Device PNPDeviceID|HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&8A7C455&0&0001 PowerManagementSupported|False ProductName|High Definition Audio Device Status|OK StatusInfo|Enabled <--Win32_Keyboard (1) ConfigManagerErrorCode|This device is working properly. ConfigManagerUserConfig|False DeviceID|ACPI\PNP0303\4&205AD762&0 Layout|0000100C Name|Enhanced (101- or 102-key) NumberOfFunctionKeys|12 PNPDeviceID|ACPI\PNP0303\4&205AD762&0 PowerManagementSupported|False Status|OK <--Win32_PointingDevice (1) Caption|USB Input Device ConfigManagerErrorCode|This device is working properly. ConfigManagerUserConfig|False Description|USB Input Device DeviceID|USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000 DeviceInterface|USB HardwareType|USB Input Device InfFileName|input.inf InfSection|HID_Inst Manufacturer|(Standard system devices) Name|USB Input Device NumberOfButtons|0 PNPDeviceID|USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000 PowerManagementSupported|False Status|OK (2) Caption|USB Input Device ConfigManagerErrorCode|This device is working properly. ConfigManagerUserConfig|False Description|USB Input Device DeviceID|USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001 DeviceInterface|USB HardwareType|USB Input Device InfFileName|input.inf InfSection|HID_Inst Manufacturer|(Standard system devices) Name|USB Input Device NumberOfButtons|0 PNPDeviceID|USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001 PowerManagementSupported|False Status|OK (3) Caption|VMware Pointing Device ConfigManagerErrorCode|This device is working properly. ConfigManagerUserConfig|False Description|VMware Pointing Device DeviceID|ACPI\PNP0F13\4&205AD762&0 DeviceInterface|Other HardwareType|VMware Pointing Device InfFileName|oem8.inf InfSection|VMMouse Manufacturer|VMware, Inc. Name|VMware Pointing Device NumberOfButtons|0 PNPDeviceID|ACPI\PNP0F13\4&205AD762&0 PowerManagementSupported|False Status|OK [Common Startups] HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run^110 HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run^110 Sidebar-->C:\Program Files\Windows Sidebar\Sidebar.exe /autoRun|File Not Found|---|---|---^220 HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce^110 mctadmin-->C:\Windows\System32\mctadmin.exe|Microsoft Corporation|6.1.7600.16385|MCTAdmin|07/14/2009^210 HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run^110 Sidebar-->C:\Program Files\Windows Sidebar\Sidebar.exe /autoRun|File Not Found|---|---|---^220 HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce^110 mctadmin-->C:\Windows\System32\mctadmin.exe|Microsoft Corporation|6.1.7600.16385|MCTAdmin|07/14/2009^210 HKEY_USERS\S-1-5-21-3355312943-2388661055-4137282587-1000\Software\Microsoft\Windows\CurrentVersion\Run^110 Jet Screenshot-->C:\Program Files\Jet Screenshot\jetScreenshot.exe|ArcticLine Software|3.0.1.0|Jet Screenshot - share screenshot via the internet in seconds|02/13/2015^210 HKEY_USERS\S-1-5-21-3355312943-2388661055-4137282587-1000\Software\Microsoft\Windows\CurrentVersion\RunOnce^110 HKEY_USERS\S-1-5-21-3355312943-2388661055-4137282587-1002\Software\Microsoft\Windows\CurrentVersion\Run^110 Sidebar-->C:\Program Files\Windows Sidebar\Sidebar.exe /autoRun|File Not Found|---|---|---^220 HKEY_USERS\S-1-5-21-3355312943-2388661055-4137282587-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce^110 mctadmin-->C:\Windows\System32\mctadmin.exe|Microsoft Corporation|6.1.7600.16385|MCTAdmin|07/14/2009^210 HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run^110 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run^110 Jet Screenshot-->C:\Program Files\Jet Screenshot\jetScreenshot.exe|ArcticLine Software|3.0.1.0|Jet Screenshot - share screenshot via the internet in seconds|02/13/2015^210 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce^110 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run^110 SunJavaUpdateSched-->C:\Program Files\Common Files\Java\Java Update\jusched.exe|Sun Microsystems, Inc.|2.0.7.2|Java(TM) Update Scheduler|09/17/2012^210 VMware User Process-->C:\Program Files\VMware\VMware Tools\vmtoolsd.exe -n vmusr|VMware, Inc.|9.9.0.41534|VMware Tools Core Service|11/20/2014^210 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce^110 HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Winlogon^110 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows^110 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon^110 Userinit-->C:\Windows\system32\userinit.exe,|Microsoft Corporation|6.1.7601.17514|Userinit Logon Application|11/21/2010^210 Shell-->explorer.exe|Microsoft Corporation|6.1.7601.17514|Windows Explorer|11/21/2010^210 C:\Users\All Users\Start Menu\Programs\Startup^330 CodeMeter Control Center.lnk-->C:\Program Files\CodeMeter\Runtime\bin\CodeMeterCC.exe|WIBU-SYSTEMS AG|5.10.1224.501|CodeMeter Control Center|11/15/2013^440 C:\Users\atis\Start Menu\Programs\Startup^330 CodeMeter Control Center.lnk-->C:\Program Files\CodeMeter\Runtime\bin\CodeMeterCC.exe|WIBU-SYSTEMS AG|5.10.1224.501|CodeMeter Control Center|11/15/2013^440 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup^330 CodeMeter Control Center.lnk-->C:\Program Files\CodeMeter\Runtime\bin\CodeMeterCC.exe|WIBU-SYSTEMS AG|5.10.1224.501|CodeMeter Control Center|11/15/2013^440 C:\Users^330 C:\Users\atis^330 C:\Users\atis\Local Settings\Application Data^330 C:\Users\atis\AppData\Roaming^330 C:\ProgramData^330 C:\Users\atis\AppData\Local\Temp^330 lhhxf4gt.dll-->C:\Users\atis\AppData\Local\Temp\lhhxf4gt.dll|---|---|---|04/15/2015^440 ose00000.exe-->C:\Users\atis\AppData\Local\Temp\ose00000.exe|Microsoft Corporation|12.0.4518.1014|Office Source Engine|10/28/2006^440 C:\Users\atis\Recent^330 C:\Users\atis\Templates^330 C:\Windows\System32\config\systemprofile^330 C:\Windows\Temp^330 [Registry Settings] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options^110 (No Debuggers Found)^000 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects^110 {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} = C:\Program Files\Java\jre6\bin\ssv.dll^210 {DBC80044-A445-435b-BC74-9C25C1C588A9} = C:\Program Files\Java\jre6\bin\jp2ssv.dll^210 HKEY_LOCAL_MACHINE\Software\Classes\.exe^110 (Default) = exefile^210 Content Type = application/x-msdownload^210 HKEY_LOCAL_MACHINE\Software\Classes\.exe\PersistentHandler^110 (Default) = {098f2470-bae0-11cd-b579-08002b30bfeb}^210 HKEY_LOCAL_MACHINE\Software\Classes\exefile^110 (Default) = Application^210 EditFlags = 0x38070000^230 FriendlyTypeName = @%SystemRoot%\System32\shell32.dll,-10156^220 HKEY_LOCAL_MACHINE\Software\Classes\exefile\DefaultIcon^110 (Default) = %1^210 HKEY_LOCAL_MACHINE\Software\Classes\exefile\shell\open\command^110 (Default) = "%1" %*^210 IsolatedCommand = "%1" %*^210 HKEY_LOCAL_MACHINE\Software\Classes\exefile\shell\runas\command^110 (Default) = "%1" %*^210 IsolatedCommand = "%1" %*^210 HKEY_LOCAL_MACHINE\Software\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command^110 (Default) = "C:\Program Files\Mozilla Firefox\firefox.exe"^210 HKEY_LOCAL_MACHINE\Software\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command^110 (Default) = "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode^210 HKEY_LOCAL_MACHINE\Software\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command^110 (Default) = C:\Program Files\Internet Explorer\iexplore.exe^210 HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc^110 (Default) = (value not set)^210 DCOM Protocols = ncacn_ip_tcp^270 UuidSequenceNumber = 3945642678^240 HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc\ClientProtocols^110 (Default) = (value not set)^210 ncacn_http = rpcrt4.dll^210 ncacn_ip_tcp = rpcrt4.dll^210 ncacn_np = rpcrt4.dll^210 ncadg_ip_udp = rpcrt4.dll^210 HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc\SecurityService^110 (Default) = (value not set)^210 10 = secur32.dll^210 14 = schannel.dll^210 16 = secur32.dll^210 25 = p2pcollab.dll^210 68 = netlogon.dll^210 9 = secur32.dll^210 HKEY_LOCAL_MACHINE\Software\Microsoft\Security Center^110 (Default) = (value not set)^210 cval = 0^240 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings^110 (Default) = (value not set)^210 ActiveXCache = C:\Windows\Downloaded Program Files^210 CodeBaseSearchPath = CODEBASE^210 EnablePunycode = 1^240 MinorVersion = 0^210 WarnOnIntranet = 1^240 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop^110 (key does not exist)^000 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Associations^110 (key does not exist)^000 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Attachments^110 (Default) = (value not set)^210 ScanWithAntiVirus = 3^240 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer^110 (Default) = (value not set)^210 HideSCAHealth = 1^240 NoLowDiskSpaceChecks = 1^240 UseDefaultTile = 1^240 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System^110 (Default) = (value not set)^210 ConsentPromptBehaviorAdmin = 5^240 ConsentPromptBehaviorUser = 3^240 dontdisplaylastusername = 0^240 EnableInstallerDetection = 1^240 EnableLUA = 0^240 EnableSecureUIAPaths = 1^240 EnableUIADesktopToggle = 0^240 EnableVirtualization = 1^240 FilterAdministratorToken = 0^240 legalnoticecaption = ^210 legalnoticetext = ^210 PromptOnSecureDesktop = 1^240 scforceoption = 0^240 shutdownwithoutlogon = 1^240 undockwithoutlogon = 1^240 ValidateAdminCodeSignatures = 0^240 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\SystemRestore^110 (Default) = (value not set)^210 FirstRun = 0^240 LastIndex = 29^240 RPSessionInterval = 1^240 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows^110 (Default) = mnmsrvc^210 AppInit_DLLs = ^210 DdeSendTimeout = 0^240 DesktopHeapLogging = 1^240 DeviceNotSelectedTimeout = 15^210 GDIProcessHandleQuota = 20000^240 IconServiceLib = IconCodecService.dll^210 LoadAppInit_DLLs = 0^240 ShutdownWarningDialogTimeout = 4294967295^240 Spooler = yes^210 TransmissionRetryTimeout = 90^210 USERNestedWindowLimit = 50^240 USERPostMessageLimit = 10000^240 USERProcessHandleQuota = 10000^240 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon^110 (Default) = (value not set)^210 AutoAdminLogon = 1^210 AutoRestartShell = 1^240 Background = 0 0 0^210 CachedLogonsCount = 10^210 DebugServerCommand = no^210 DefaultDomainName = ^210 DefaultUserName = atis^210 DisableCAD = 1^240 ForceUnlockLogon = 0^240 LegalNoticeCaption = ^210 LegalNoticeText = ^210 PasswordExpiryWarning = 5^240 PowerdownAfterShutdown = 0^210 PreCreateKnownFolders = {A520A1A4-1780-4FF6-BD18-167343C5AF16}^210 ReportBootOk = 1^210 scremoveoption = 0^210 Shell = explorer.exe^210 ShutdownFlags = 43^240 ShutdownWithoutLogon = 0^210 Userinit = C:\Windows\system32\userinit.exe,^210 VMApplet = SystemPropertiesPerformance.exe /pagefile^210 WinStationsDisabled = 0^210 HKEY_CURRENT_USER\Software\Clients\StartMenuInternet^110 (Default) = FIREFOX.EXE^210 HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download^110 (Default) = (value not set)^210 CheckExeSignatures = yes^210 HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main^110 (Default) = (value not set)^210 Anchor Underline = yes^210 Cache_Update_Frequency = Once_Per_Session^210 CompatibilityFlags = 0^240 Disable Script Debugger = no^210 Display Inline Images = yes^210 Do404Search = 0x01000000^230 Enable Browser Extensions = yes^210 FullScreen = no^210 IE8RunOnceLastShown = 1^240 IE8RunOnceLastShown_TIMESTAMP = 0x69508E7F2741D001^230 Local Page = C:\Windows\system32\blank.htm^210 NoUpdateCheck = 1^240 Play_Animations = yes^210 Play_Background_Sounds = yes^210 Save_Session_History_On_Exit = no^210 Search Page = http://go.microsoft.com/fwlink/?LinkId=54896^210 Show_FullURL = no^210 Show_StatusBar = yes^210 Show_ToolBar = yes^210 Show_URLinStatusBar = yes^210 Show_URLToolBar = yes^210 Start Page = http://go.microsoft.com/fwlink/?LinkId=69157^210 Use_DlgBox_Colors = yes^210 UseClearType = no^210 Window_Placement = 0x2C0000000000000001000000FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF2700000027000000470300007F020000^230 XMLHTTP = 1^240 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced^110 (Default) = (value not set)^210 AlwaysShowMenus = 1^240 AutoCheckSelect = 0^240 DontPrettyPath = 0^240 Filter = 0^240 Hidden = 2^240 HideDrivesWithNoMedia = 0^240 HideFileExt = 0^240 HideIcons = 0^240 IconsOnly = 0^240 ListviewAlphaSelect = 1^240 ListviewShadow = 1^240 MapNetDrvBtn = 0^240 SeparateProcess = 1^240 ServerAdminUI = 0^240 SharingWizardOn = 0^240 ShowCompColor = 1^240 ShowInfoTip = 1^240 ShowSuperHidden = 1^240 ShowTypeOverlay = 1^240 Start_SearchFiles = 2^240 Start_ShowMyGames = 0^240 StartMenuInit = 4^240 SuperHidden = 1^240 TaskbarAnimations = 1^240 WebView = 1^240 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exe^110 (Default) = (value not set)^210 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exe\OpenWithList^110 (Default) = (value not set)^210 a = mstsc.exe^210 MRUList = a^210 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exe\OpenWithProgids^110 (Default) = (value not set)^210 exefile = ^230 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings^110 (Default) = (value not set)^210 AutoConfigProxy = wininet.dll^210 CertificateRevocation = 1^240 DisableCachingOfSSLPages = 0^240 EmailName = User@^210 EnableHttp1_1 = 1^240 EnableNegotiate = 1^240 IE5_UA_Backup_Flag = 5.0^210 MigrateProxy = 1^240 MimeExclusionListForCache = multipart/mixed multipart/x-mixed-replace multipart/x-byteranges ^210 PrivacyAdvanced = 0^240 PrivDiscUiShown = 1^240 ProxyEnable = 0^240 SecureProtocols = 160^240 UrlEncoding = 0^240 User Agent = Mozilla/4.0 (compatible; MSIE 8.0; Win32)^210 UseSchannelDirectly = 0x01000000^230 WarnOnIntranet = 0^240 WarnOnPost = 0x01000000^230 WarnonZoneCrossing = 0^240 ZonesSecurityUpgrade = 0x7C0AD7CD849ACF01^230 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop^110 (key does not exist)^000 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations^110 (key does not exist)^000 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Attachments^110 (key does not exist)^000 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer^110 (Default) = (value not set)^210 NoDriveTypeAutoRun = 145^240 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun^110 (key does not exist)^000 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System^110 (key does not exist)^000 HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows^110 (Default) = (value not set)^210 DebugOptions = 2048^210 Device = PDFCreator,winspool,Ne00:^210 Documents = ^210 DosPrint = no^210 Load = ^210 NetMessage = no^210 NullPort = None^210 Programs = com exe bat pif cmd^210 UserSelectedDefault = 1^240 HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Winlogon^110 (Default) = (value not set)^210 BuildNumber = 7601^240 ExcludeProfileDirs = AppData\Local;AppData\LocalLow;$Recycle.Bin^210 FirstLogon = 0^240 ParseAutoexec = 1^210 [Hosts File] # Copyright (c) 1993-2009 Microsoft Corp. # # This is a sample HOSTS file used by Microsoft TCP/IP for Windows. # # This file contains the mappings of IP addresses to host names. Each # entry should be kept on an individual line. The IP address should # be placed in the first column followed by the corresponding host name. # The IP address and the host name should be separated by at least one # space. # # Additionally, comments (such as these) may be inserted on individual # lines or following the machine name denoted by a '#' symbol. # # For example: # # 102.54.94.97 rhino.acme.com # source server # 38.25.63.10 x.acme.com # x client host # localhost name resolution is handled within DNS itself. # 127.0.0.1 localhost # ::1 localhost [HD_SMART_DATA] Object Error - Line:-1 (0x80020009) Not supported Exception occurred. [Running Programs] C:\atis\ai-root-arms\bin\aiservice.exe|Atis Systems GmbH|1.0.0.1|aiservice|08/29/2014 C:\atis\ai-root-arms\bin\aizipsrv.exe|Atis Systems GmbH|2.0.0.3|aizipsrv|08/29/2014 C:\atis\ai-root-arms\bin\appctlr.exe|Atis Systems GmbH|1.2.0.1|appctlr|08/29/2014 C:\atis\ai-root-arms\bin\cmpctlr.exe|Atis Systems GmbH|1.0.0.1|cmpctlr|08/29/2014 C:\atis\ai-root-arms\bin\hi12alcacsta_arms.exe|---|---|---|08/29/2014 C:\atis\ai-root-arms\bin\hi1emul.exe|---|---|---|08/29/2014 C:\atis\ai-root-arms\bin\hig.exe|---|---|---|08/29/2014 C:\atis\jboss\bin\wrapper.exe|---|---|---|08/29/2014 C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe|WIBU-SYSTEMS AG|5.10.1224.501|CodeMeter Runtime Server|11/15/2013 C:\Program Files\CodeMeter\Runtime\bin\CodeMeterCC.exe|WIBU-SYSTEMS AG|5.10.1224.501|CodeMeter Control Center|11/15/2013 C:\Program Files\Common Files\Java\Java Update\jusched.exe|Sun Microsystems, Inc.|2.0.7.2|Java(TM) Update Scheduler|09/17/2012 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe|Microsoft Corporation|7.10.3077.0|Machine Debug Manager|10/26/2006 C:\Program Files\Java\jdk1.6.0_37\bin\java.exe|Sun Microsystems, Inc.|6.0.370.6|Java(TM) Platform SE binary|08/29/2014 C:\Program Files\Jet Screenshot\jetScreenshot.exe|ArcticLine Software|3.0.1.0|Jet Screenshot - share screenshot via the internet in seconds|02/13/2015 C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe|Microsoft Corporation|2011.110.2100.60|SQL Browser Service EXE|02/11/2012 C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe|Microsoft Corporation|2011.110.3000.0|SQL Server VSS Writer|10/20/2012 C:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\sqlservr.exe|Microsoft Corporation|2011.110.3128.0|SQL Server Windows NT|12/29/2012 C:\Program Files\NTP\bin\ntpd.exe|---|---|---|06/02/2014 C:\Program Files\PostgreSQL\8.2\bin\pg_ctl.exe|PostgreSQL Global Development Group|8.2.17.10134|pg_ctl - starts/stops/restarts the PostgreSQL server|05/14/2010 C:\Program Files\PostgreSQL\8.2\bin\postgres.exe|PostgreSQL Global Development Group|8.2.17.10134|PostgreSQL Server|05/14/2010 C:\Program Files\QNAP\Qfinder\iSCSIAgent.exe|---|1.0.0.1|iSCSIAgent Application|02/02/2015 C:\Program Files\VMware\VMware Tools\vmtoolsd.exe|VMware, Inc.|9.9.0.41534|VMware Tools Core Service|11/20/2014 C:\Users\atis\Desktop\_SysInfoLog_v2.11.exe|---|---|---|06/04/2015 C:\Windows\Explorer.EXE|Microsoft Corporation|6.1.7601.17514|Windows Explorer|11/21/2010 C:\Windows\system32\conhost.exe|Microsoft Corporation|6.1.7601.18229|Console Window Host|08/29/2014 C:\Windows\system32\csrss.exe|Microsoft Corporation|6.1.7600.16385|Client Server Runtime Process|07/14/2009 C:\Windows\system32\dllhost.exe|Microsoft Corporation|6.1.7600.16385|COM Surrogate|07/14/2009 C:\Windows\system32\Dwm.exe|Microsoft Corporation|6.1.7600.16385|Desktop Window Manager|07/14/2009 C:\Windows\system32\lsass.exe|Microsoft Corporation|6.1.7601.18443|Local Security Authority Process|08/29/2014 C:\Windows\system32\lsm.exe|Microsoft Corporation|6.1.7601.17514|Local Session Manager Service|11/21/2010 C:\Windows\system32\msiexec.exe|Microsoft Corporation|5.0.7601.17514|Windows® installer|11/21/2010 C:\Windows\system32\SearchIndexer.exe|Microsoft Corporation|7.0.7600.16385|Microsoft Windows Search Indexer|07/14/2009 C:\Windows\system32\services.exe|Microsoft Corporation|6.1.7600.16385|Services and Controller app|07/14/2009 C:\Windows\System32\spoolsv.exe|Microsoft Corporation|6.1.7601.17514|Spooler SubSystem App|11/21/2010 C:\Windows\system32\svchost.exe|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\taskeng.exe|Microsoft Corporation|6.1.7601.17514|Task Scheduler Engine|11/21/2010 C:\Windows\system32\taskhost.exe|Microsoft Corporation|6.1.7601.17514|Host Process for Windows Tasks|11/21/2010 C:\Windows\system32\vssvc.exe|Microsoft Corporation|6.1.7601.17514|Microsoft® Volume Shadow Copy Service|11/21/2010 C:\Windows\system32\wbem\wmiprvse.exe|Microsoft Corporation|6.1.7601.17514|WMI Provider Host|11/21/2010 C:\Windows\system32\wininit.exe|Microsoft Corporation|6.1.7600.16385|Windows Start-Up Application|07/14/2009 C:\Windows\system32\winlogon.exe|Microsoft Corporation|6.1.7601.18409|Windows Logon Application|08/29/2014 C:\Windows\TEMP\vmware-SYSTEM\0000338c\setup.exe|VMware, Inc.|9.9.2.44151|VMware installation launcher|06/04/2015 C:\Windows\TEMP\vmware-SYSTEM\VMwareToolsUpgrader.exe|VMware, Inc.|9.9.2.44151|VMware Tools Upgrader|02/06/2015 [Loaded Dlls] C:\atis\ai-root-arms\bin\7zlib.dll|Igor Pavlov|2.30.18.0|7-Zip Lib version (Alone DLL)|08/29/2014 C:\atis\ai-root-arms\bin\CSTA32.dll|Alcatel|6.0.1.0|csta32|08/29/2014 C:\atis\ai-root-arms\bin\LIBEAY32.dll|---|---|---|08/29/2014 C:\atis\ai-root-arms\bin\SSLEAY32.dll|---|---|---|08/29/2014 C:\atis\jboss\lib\wrapper.dll|---|---|---|08/29/2014 C:\Program Files\7-Zip\7-zip.dll|Igor Pavlov|9.20.0.0|7-Zip Shell Extension|11/18/2010 C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXEV.DLL|Microsoft Corporation|12.0.4518.1014|XML Editor|10/27/2006 C:\Program Files\Common Files\Microsoft Shared\VS7Debug\csm.dll|Microsoft Corporation|10.0.40219.1|VS7 Causality Stack Manager|02/19/2011 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\msdbg2.dll|Microsoft Corporation|9.0.30729.1|Microsoft Visual Studio 7.0 Debugging Proxy/Stub|08/31/2009 C:\Program Files\Internet Explorer\ieproxy.dll|Microsoft Corporation|8.0.7601.18404|IE ActiveX Interface Marshaling Library|08/29/2014 C:\Program Files\Java\jdk1.6.0_37\jre\bin\client\jvm.dll|Sun Microsystems, Inc.|20.12.0.1|Java HotSpot(TM) Client VM|08/29/2014 C:\Program Files\Java\jdk1.6.0_37\jre\bin\java.dll|Sun Microsystems, Inc.|6.0.370.6|Java(TM) Platform SE binary|08/29/2014 C:\Program Files\Java\jdk1.6.0_37\jre\bin\management.dll|Sun Microsystems, Inc.|6.0.370.6|Java(TM) Platform SE binary|08/29/2014 C:\Program Files\Java\jdk1.6.0_37\jre\bin\msvcr71.dll|Microsoft Corporation|7.10.3052.4|Microsoft® C Runtime Library|08/29/2014 C:\Program Files\Java\jdk1.6.0_37\jre\bin\net.dll|Sun Microsystems, Inc.|6.0.370.6|Java(TM) Platform SE binary|08/29/2014 C:\Program Files\Java\jdk1.6.0_37\jre\bin\nio.dll|Sun Microsystems, Inc.|6.0.370.6|Java(TM) Platform SE binary|08/29/2014 C:\Program Files\Java\jdk1.6.0_37\jre\bin\server\jvm.dll|Sun Microsystems, Inc.|20.12.0.1|Java HotSpot(TM) Server VM|08/29/2014 C:\Program Files\Java\jdk1.6.0_37\jre\bin\verify.dll|Sun Microsystems, Inc.|6.0.370.6|Java(TM) Platform SE binary|08/29/2014 C:\Program Files\Java\jdk1.6.0_37\jre\bin\zip.dll|Sun Microsystems, Inc.|6.0.370.6|Java(TM) Platform SE binary|08/29/2014 C:\Program Files\Microsoft SQL Server\110\Shared\instapi110.dll|Microsoft Corporation|2011.110.2100.60|SQL Server Instance API DLL|02/11/2012 C:\Program Files\Microsoft SQL Server\90\Shared\sqlwvss.dll|Microsoft Corporation|2011.110.2100.60|SQL VSS Writer VSS INTERACTION DLL|02/11/2012 C:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\BatchParser.dll|Microsoft Corporation|2011.110.2100.60|Batch Parser|02/11/2012 C:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\opends60.dll|Microsoft Corporation|2011.110.2100.60|SQL Open Data Services DLL|02/11/2012 C:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\sqldk.dll|Microsoft Corporation|2011.110.3128.0|SQL Server Windows NT|12/29/2012 C:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\sqllang.dll|Microsoft Corporation|2011.110.3128.0|SQL Server Windows NT|12/29/2012 C:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\sqlmin.dll|Microsoft Corporation|2011.110.3128.0|SQL Server Windows NT|12/29/2012 C:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\sqlos.dll|Microsoft Corporation|2011.110.3128.0|SQLOS Hosting DLL|12/29/2012 C:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\sqlTsEs.dll|Microsoft Corporation|2011.110.3128.0|SQL Server Windows NT|12/29/2012 C:\Program Files\NTP\bin\LIBEAY32.dll|The OpenSSL Project, http://www.openssl.org/|1.0.1.7|OpenSSL Shared Library|06/02/2014 C:\Program Files\PostgreSQL\8.2\bin\comerr32.dll|Massachusetts Institute of Technology.|1.3.5.0|COM_ERR - Common Error Handler for MIT Kerberos v5 / GSS distribution|10/12/2005 C:\Program Files\PostgreSQL\8.2\bin\krb5_32.dll|Massachusetts Institute of Technology.|1.3.5.0|Kerberos v5 - MIT GSS / Kerberos v5 distribution|10/12/2005 C:\Program Files\PostgreSQL\8.2\bin\libeay32.dll|The OpenSSL Project, http://www.openssl.org/|0.9.8.1|OpenSSL Shared Library|11/03/2005 C:\Program Files\PostgreSQL\8.2\bin\libiconv-2.dll|---|---|---|01/31/2003 C:\Program Files\PostgreSQL\8.2\bin\libintl-2.dll|---|---|---|02/01/2003 C:\Program Files\PostgreSQL\8.2\bin\libpq.dll|---|8.2.17.10134|PostgreSQL Access Library|05/14/2010 C:\Program Files\PostgreSQL\8.2\bin\ssleay32.dll|The OpenSSL Project, http://www.openssl.org/|0.9.8.1|OpenSSL Shared Library|11/03/2005 C:\Program Files\QNAP\Qfinder\NetworkStorageManagement.dll|QNAP Systems, Inc.|1.0.0.1|Network Storage Management Library|02/02/2015 C:\Program Files\VMware\VMware Tools\deployPkg.dll|VMware, Inc.|7.2.0.2800|VMware Deployment Package Library|11/20/2014 C:\Program Files\VMware\VMware Tools\glib-2.0.dll|The GLib developer community|2.22.4.0|GLib|11/20/2014 C:\Program Files\VMware\VMware Tools\glibmm-2.4.dll|The glibmm development team (see AUTHORS)|2.22.1.3|The official C++ wrapper for glib|11/20/2014 C:\Program Files\VMware\VMware Tools\gmodule-2.0.dll|The GLib developer community|2.22.4.0|GModule|11/20/2014 C:\Program Files\VMware\VMware Tools\gobject-2.0.dll|The GLib developer community|2.22.4.0|GObject|11/20/2014 C:\Program Files\VMware\VMware Tools\gthread-2.0.dll|The GLib developer community|2.22.4.0|GThread|11/20/2014 C:\Program Files\VMware\VMware Tools\hgfs.dll|VMware, Inc.|9.9.0.41534|VMware Tools HGFS Library|11/20/2014 C:\Program Files\VMware\VMware Tools\iconv.dll|Free Software Foundation|1.9.0.1|LGPLed libiconv for Windows NT/2000/XP and Windows 95/98/ME|11/20/2014 C:\Program Files\VMware\VMware Tools\intl.dll|Free Software Foundation|0.14.6.3|LGPLed libintl for Windows NT/2000/XP and Windows 95/98/ME|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\common\hgfsServer.dll|VMware, Inc.|9.9.0.41534|VMware Tools HGFS Server plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\common\hgfsUsability.dll|VMware, Inc.|9.9.0.41534|VMware Tools HGFS Usability plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\common\vix.dll|VMware, Inc.|9.9.0.41534|VMware Tools VIX plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmsvc\autoLogon.dll|VMware, Inc.|9.9.0.41534|VMware Tools Autologon plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmsvc\autoUpgrade.dll|VMware, Inc.|9.9.0.41534|VMware Tools AutoUpgrade plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmsvc\bitMapper.dll|VMware, Inc.|9.9.0.41534|VMware Tools bitMapper plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmsvc\deployPkgPlugin.dll|VMware, Inc.|9.9.0.41534|VMware Tools DeployPkg plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmsvc\diskWiper.dll|VMware, Inc.|9.9.0.41534|VMware Tools diskWiper plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmsvc\guestInfo.dll|VMware, Inc.|9.9.0.41534|VMware Tools guestInfo plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmsvc\hwUpgradeHelper.dll|VMware, Inc.|9.9.0.41534|VMware HW Upgrade Helper plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmsvc\powerOps.dll|VMware, Inc.|9.9.0.41534|VMware Tools powerops plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmsvc\resolutionSet.dll|VMware, Inc.|9.9.0.41534|VMware Tools Resolution Set plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmsvc\timeSync.dll|VMware, Inc.|9.9.0.41534|VMware Tools TimeSync plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmsvc\vmbackup.dll|VMware, Inc.|9.9.0.41534|VMware Tools vmbackup plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmusr\desktopEvents.dll|VMware, Inc.|9.9.0.41534|VMware Tools Desktop Events plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmusr\dndcp.dll|VMware, Inc.|9.9.0.41534|VMware Tools DnD CopyPaste plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmusr\unity.dll|VMware, Inc.|9.9.0.41534|VMware Tools DnD Unity plugin|11/20/2014 C:\Program Files\VMware\VMware Tools\plugins\vmusr\vmtray.dll|VMware, Inc.|9.9.0.41534|VMware Tools tray application|11/20/2014 C:\Program Files\VMware\VMware Tools\sigc-2.0.dll|The libsigc++ development team (see AUTHORS)|2.2.11.1|The Typesafe Callback Framework for C++|11/20/2014 C:\Program Files\VMware\VMware Tools\vmtools.dll|VMware, Inc.|9.9.0.41534|VMware Tools Runtime Library|11/20/2014 C:\Program Files\VMware\VMware Tools\VMToolsHook.dll|VMware, Inc.|9.9.0.41534|VMware Tools Window Hook Library|11/20/2014 C:\Windows\AppPatch\AcGenral.DLL|Microsoft Corporation|6.1.7601.17514|Windows Compatibility DLL|11/21/2010 C:\Windows\AppPatch\AcLayers.DLL|Microsoft Corporation|6.1.7601.17514|Windows Compatibility DLL|11/21/2010 C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\d1265d6159ea876f9d63ea4c1361b587\mscorlib.ni.dll|Microsoft Corporation|4.0.30319.34209|Microsoft Common Language Runtime Class Library|08/29/2014 C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll|Microsoft Corporation|4.0.30319.34209|Microsoft .NET Runtime Common Language Runtime - WorkStation|04/12/2014 C:\Windows\Microsoft.NET\Framework\v4.0.30319\clrjit.dll|Microsoft Corporation|4.0.30319.34209|Microsoft .NET Runtime Just-In-Time Compiler|04/12/2014 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll|Microsoft Corporation|4.0.30319.34209|Microsoft .NET Runtime Execution Engine|04/12/2014 C:\Windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll|Microsoft Corporation|4.0.30319.34209|Microsoft Collation Support|04/12/2014 C:\Windows\System32\Actioncenter.dll|Microsoft Corporation|6.1.7601.17514|Action Center|11/21/2010 C:\Windows\system32\actxprxy.dll|Microsoft Corporation|6.1.7601.17514|ActiveX Interface Marshaling Library|11/21/2010 C:\Windows\system32\ADVAPI32.dll|Microsoft Corporation|6.1.7601.17514|Advanced Windows 32 Base API|11/21/2010 c:\windows\system32\aelupsvc.dll|Microsoft Corporation|6.1.7600.16385|Application Experience Service|07/14/2009 C:\Windows\system32\AEPIC.dll|Microsoft Corporation|6.1.7600.16385|Application Experience Program Cache|07/14/2009 C:\Windows\System32\AltTab.dll|Microsoft Corporation|6.1.7600.16385|Windows Shell Alt Tab|07/14/2009 C:\Windows\system32\apphelp.dll|Microsoft Corporation|6.1.7601.17514|Application Compatibility Client Library|11/21/2010 C:\Windows\SYSTEM32\APPHLPDM.DLL|Microsoft Corporation|6.1.7600.16385|Application Compatibility Help Module|07/14/2009 c:\windows\system32\ATL.DLL|Microsoft Corporation|3.5.2284.0|ATL Module for Windows XP (Unicode)|07/14/2009 C:\Windows\System32\audioses.dll|Microsoft Corporation|6.1.7601.17514|Audio Session|11/21/2010 c:\windows\system32\audiosrv.dll|Microsoft Corporation|6.1.7601.17514|Windows Audio Service|11/21/2010 C:\Windows\system32\authui.dll|Microsoft Corporation|6.1.7601.17514|Windows Authentication UI|11/21/2010 c:\windows\system32\AUTHZ.dll|Microsoft Corporation|6.1.7600.16385|Authorization Framework|07/14/2009 C:\Windows\system32\avifil32.dll|Microsoft Corporation|6.1.7601.17514|Microsoft AVI File support library|11/21/2010 c:\windows\system32\AVRT.dll|Microsoft Corporation|6.1.7600.16385|Multimedia Realtime Runtime|07/14/2009 C:\Windows\system32\basesrv.DLL|Microsoft Corporation|6.1.7601.17514|Windows NT BASE API Server DLL|11/21/2010 C:\Windows\system32\BatMeter.dll|Microsoft Corporation|6.1.7601.17514|Battery Meter Helper DLL|11/21/2010 C:\Windows\system32\bcrypt.dll|Microsoft Corporation|6.1.7600.16385|Windows Cryptographic Primitives Library|07/14/2009 C:\Windows\system32\bcryptprimitives.dll|Microsoft Corporation|6.1.7600.16385|Windows Cryptographic Primitives Library|07/14/2009 c:\windows\system32\bfe.dll|Microsoft Corporation|6.1.7601.17514|Base Filtering Engine|11/21/2010 C:\Windows\system32\BROWCLI.DLL|Microsoft Corporation|6.1.7601.17887|Browser Service Client DLL|08/29/2014 c:\windows\system32\browser.dll|Microsoft Corporation|6.1.7601.17887|Computer Browser Service DLL|08/29/2014 C:\Windows\system32\catsrvut.dll|Microsoft Corporation|2001.12.8530.16385|COM+ Configuration Catalog Server Utilities|07/14/2009 C:\Windows\system32\CFGMGR32.dll|Microsoft Corporation|6.1.7601.17514|Configuration Manager DLL|11/21/2010 C:\Windows\system32\CLBCatQ.DLL|Microsoft Corporation|2001.12.8530.16385|COM+ Configuration Catalog|07/14/2009 C:\Windows\system32\CLUSAPI.dll|Microsoft Corporation|6.1.7601.17514|Cluster API Library|11/21/2010 C:\Windows\system32\cngaudit.dll|Microsoft Corporation|6.1.7600.16385|Windows Cryptographic Next Generation audit library|07/14/2009 C:\Windows\system32\COMDLG32.dll|Microsoft Corporation|6.1.7601.17514|Common Dialogs DLL|11/21/2010 C:\Windows\system32\COMSVCS.DLL|Microsoft Corporation|2001.12.8530.16385|COM+ Services|07/14/2009 C:\Windows\system32\credssp.dll|Microsoft Corporation|6.1.7601.18409|Credential Delegation Security Package|08/29/2014 C:\Windows\system32\CRYPT32.dll|Microsoft Corporation|6.1.7601.18277|Crypto API32|08/29/2014 C:\Windows\System32\CRYPTBASE.dll|Microsoft Corporation|6.1.7600.16385|Base cryptographic API DLL|07/14/2009 C:\Windows\System32\cryptdll.dll|Microsoft Corporation|6.1.7600.16385|Cryptography Manager|07/14/2009 c:\windows\system32\CRYPTNET.dll|Microsoft Corporation|6.1.7601.18205|Crypto Network Related API|08/29/2014 C:\Windows\system32\CRYPTSP.dll|Microsoft Corporation|6.1.7600.16385|Cryptographic Service Provider API|07/14/2009 c:\windows\system32\cryptsvc.dll|Microsoft Corporation|6.1.7601.18205|Cryptographic Services|08/29/2014 C:\Windows\system32\CRYPTUI.dll|Microsoft Corporation|6.1.7601.17514|Microsoft Trust UI Provider|11/21/2010 C:\Windows\system32\CSCAPI.dll|Microsoft Corporation|6.1.7601.17514|Offline Files Win32 API|11/21/2010 C:\Windows\System32\CSCDLL.dll|Microsoft Corporation|6.1.7601.17514|Offline Files Temporary Shim|11/21/2010 C:\Windows\System32\cscobj.dll|Microsoft Corporation|6.1.7601.17514|In-proc COM object used by clients of CSC API|11/21/2010 c:\windows\system32\cscsvc.dll|Microsoft Corporation|6.1.7601.17514|CSC Service DLL|11/21/2010 C:\Windows\System32\cscui.dll|Microsoft Corporation|6.1.7601.17514|Client Side Caching UI|11/21/2010 C:\Windows\system32\CSRSRV.dll|Microsoft Corporation|6.1.7601.18113|Client Server Runtime Process|08/29/2014 C:\Windows\system32\d3d10_1.dll|Microsoft Corporation|6.1.7600.16385|Direct3D 10.1 Runtime|07/14/2009 C:\Windows\system32\d3d10_1core.dll|Microsoft Corporation|6.1.7601.17514|Direct3D 10.1 Runtime|11/21/2010 C:\Windows\System32\davclnt.dll|Microsoft Corporation|6.1.7601.17514|Web DAV Client DLL|11/21/2010 C:\Windows\System32\DAVHLPR.dll|Microsoft Corporation|6.1.7600.16385|DAV Helper DLL|07/14/2009 C:\Windows\system32\DCIMAN32.DLL|Microsoft Corporation|6.1.7601.18177|DCI Manager|08/29/2014 C:\Windows\system32\DEVOBJ.dll|Microsoft Corporation|6.1.7600.16385|Device Information Set DLL|07/14/2009 C:\Windows\system32\devrtl.DLL|Microsoft Corporation|6.1.7600.16385|Device Management Run Time Library|07/14/2009 c:\windows\system32\dhcpcore.dll|Microsoft Corporation|6.1.7601.17514|DHCP Client Service|11/21/2010 C:\Windows\System32\dhcpcore6.dll|Microsoft Corporation|6.1.7600.16385|DHCPv6 Client|07/14/2009 C:\Windows\system32\dhcpcsvc.DLL|Microsoft Corporation|6.1.7600.16385|DHCP Client Service|07/14/2009 C:\Windows\system32\dhcpcsvc6.DLL|Microsoft Corporation|6.1.7600.16385|DHCPv6 Client|07/14/2009 C:\Windows\system32\diagperf.dll|Microsoft Corporation|6.1.7601.17514|Microsoft Performance Diagnostics|11/21/2010 C:\Windows\system32\dimsjob.dll|Microsoft Corporation|6.1.7600.16385|DIMS Job DLL|07/14/2009 C:\Windows\system32\DNSAPI.dll|Microsoft Corporation|6.1.7601.17570|DNS Client API DLL|08/29/2014 C:\Windows\System32\dnsext.dll|Microsoft Corporation|6.1.7600.16385|DNS extension DLL|07/14/2009 c:\windows\system32\dnsrslvr.dll|Microsoft Corporation|6.1.7601.17570|DNS Caching Resolver Service|08/29/2014 c:\windows\system32\dps.dll|Microsoft Corporation|6.1.7601.17514|WDI Diagnostic Policy Service|11/21/2010 C:\Windows\System32\drprov.dll|Microsoft Corporation|6.1.7600.16385|Microsoft Remote Desktop Session Host Server Network Provider|07/14/2009 C:\Windows\System32\dskquota.dll|Microsoft Corporation|6.1.7600.16385|Windows Shell Disk Quota Support DLL|07/14/2009 C:\Windows\system32\DSROLE.DLL|Microsoft Corporation|6.1.7600.16385|DS Role Client DLL|07/14/2009 C:\Windows\system32\dssenh.dll|Microsoft Corporation|6.1.7600.16385|Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider|07/14/2009 C:\Windows\system32\DUI70.dll|Microsoft Corporation|6.1.7600.16385|Windows DirectUI Engine|07/14/2009 C:\Windows\system32\DUser.dll|Microsoft Corporation|6.1.7600.16385|Windows DirectUser Engine|07/14/2009 C:\Windows\system32\dwmapi.dll|Microsoft Corporation|6.1.7600.16385|Microsoft Desktop Window Manager API|07/14/2009 C:\Windows\system32\dwmcore.dll|Microsoft Corporation|6.1.7601.17514|Microsoft DWM Core Library|11/21/2010 C:\Windows\system32\dwmredir.dll|Microsoft Corporation|6.1.7601.17514|Microsoft Desktop Window Manager Redirection Component|11/21/2010 C:\Windows\system32\dxgi.dll|Microsoft Corporation|6.1.7601.17514|DirectX Graphics Infrastructure|11/21/2010 C:\Windows\system32\dxp.dll|Microsoft Corporation|6.1.7601.17514|Device Stage Shell Extension|11/21/2010 C:\Windows\system32\efslsaext.dll|Microsoft Corporation|6.1.7600.16385|LSA extension for EFS|07/14/2009 C:\Windows\system32\EhStorShell.dll|Microsoft Corporation|6.1.7600.16385|Windows Enhanced Storage Shell Extension DLL|07/14/2009 C:\Windows\system32\es.dll|Microsoft Corporation|2001.12.8530.16385|COM+|07/14/2009 C:\Windows\system32\ESENT.dll|Microsoft Corporation|6.1.7601.17514|Extensible Storage Engine for Microsoft(R) Windows(R)|11/21/2010 C:\Windows\system32\EXPLORERFRAME.dll|Microsoft Corporation|6.1.7601.17514|ExplorerFrame|11/21/2010 C:\Windows\system32\fdPnp.dll|Microsoft Corporation|6.1.7600.16385|Pnp Provider Dll|07/14/2009 c:\windows\system32\fdrespub.dll|Microsoft Corporation|6.1.7600.16385|Function Discovery Resource Publication Service|07/14/2009 c:\windows\system32\FirewallAPI.dll|Microsoft Corporation|6.1.7600.16385|Windows Firewall API|07/14/2009 C:\Windows\system32\FLTLIB.DLL|Microsoft Corporation|6.1.7600.16385|Filter Library|07/14/2009 C:\Windows\system32\framedynos.dll|Microsoft Corporation|6.1.7601.17514|WMI SDK Provider Framework|11/21/2010 C:\Windows\system32\FunDisc.dll|Microsoft Corporation|6.1.7600.16385|Function Discovery Dll|07/14/2009 C:\Windows\system32\FVEAPI.dll|Microsoft Corporation|6.1.7601.17514|Windows BitLocker Drive Encryption API|11/21/2010 C:\Windows\system32\FVECERTS.dll|Microsoft Corporation|6.1.7600.16385|BitLocker Certificates Library|07/14/2009 C:\Windows\System32\fwpuclnt.dll|Microsoft Corporation|6.1.7601.18283|FWP/IPsec User-Mode API|08/29/2014 c:\windows\system32\FwRemoteSvr.DLL|Microsoft Corporation|6.1.7600.16385|Windows Firewall Remote APIs Server|07/14/2009 C:\Windows\System32\gameux.dll|Microsoft Corporation|6.1.7601.17514|Games Explorer|11/21/2010 C:\Windows\system32\GDI32.dll|Microsoft Corporation|6.1.7601.18275|GDI Client DLL|08/29/2014 c:\windows\system32\GPAPI.dll|Microsoft Corporation|6.1.7600.16385|Group Policy Client API|07/14/2009 c:\windows\system32\gpsvc.dll|Microsoft Corporation|6.1.7601.17514|Group Policy Client|11/21/2010 C:\Windows\system32\HID.DLL|Microsoft Corporation|6.1.7600.16385|Hid User Library|07/14/2009 C:\Windows\system32\hnetcfg.dll|Microsoft Corporation|6.1.7600.16385|Home Networking Configuration Manager|07/14/2009 C:\Windows\System32\HotStartUserAgent.dll|Microsoft Corporation|6.1.7601.17514|Microsoft Windows HotStart User Agent|11/21/2010 C:\Windows\system32\HTTPAPI.dll|Microsoft Corporation|6.1.7601.17514|HTTP Protocol Stack API|11/21/2010 C:\Windows\system32\IconCodecService.dll|Microsoft Corporation|6.1.7600.16385|Converts a PNG part of the icon to a legacy bmp icon|07/14/2009 C:\Windows\System32\ieframe.dll|Microsoft Corporation|8.0.7601.18404|Internet Browser|08/29/2014 C:\Windows\system32\iertutil.dll|Microsoft Corporation|8.0.7601.18404|Run time utility for Internet Explorer|08/29/2014 c:\windows\system32\ikeext.dll|Microsoft Corporation|6.1.7601.18283|IKE extension|08/29/2014 C:\Windows\system32\imagehlp.dll|Microsoft Corporation|6.1.7601.18288|Windows NT Image Helper|08/29/2014 C:\Windows\system32\imapi2.dll|Microsoft Corporation|6.1.7601.17514|Image Mastering API v2|11/21/2010 C:\Windows\system32\IMM32.DLL|Microsoft Corporation|6.1.7601.17514|Multi-User Windows IMM32 API Client DLL|11/21/2010 C:\Windows\System32\inetpp.dll|Microsoft Corporation|6.1.7601.17514|Internet Print Provider DLL|11/21/2010 C:\Windows\system32\IPHLPAPI.DLL|Microsoft Corporation|6.1.7601.17514|IP Helper API|11/21/2010 c:\windows\system32\iphlpsvc.dll|Microsoft Corporation|6.1.7601.17514|Service that offers IPv6 connectivity over an IPv4 network.|11/21/2010 c:\windows\system32\ipsecsvc.dll|Microsoft Corporation|6.1.7601.17514|Windows IPsec SPD Server DLL|11/21/2010 C:\Windows\system32\iscsidsc.dll|Microsoft Corporation|6.1.7600.16385|iSCSI Discovery api|07/14/2009 C:\Windows\system32\ISCSIUM.dll|Microsoft Corporation|6.1.7601.17514|iSCSI Discovery api|11/21/2010 C:\Windows\system32\kerberos.DLL|Microsoft Corporation|6.1.7601.18409|Kerberos Security Package|08/29/2014 C:\Windows\system32\kernel32.dll|Microsoft Corporation|6.1.7601.18409|Windows NT BASE API Client DLL|08/29/2014 C:\Windows\system32\KERNELBASE.dll|Microsoft Corporation|6.1.7601.18409|Windows NT BASE API Client DLL|08/29/2014 C:\Windows\system32\ksuser.dll|Microsoft Corporation|6.1.7600.16385|User CSA Library|07/14/2009 c:\windows\system32\ktmw32.dll|Microsoft Corporation|6.1.7600.16385|Windows KTM Win32 Client DLL|07/14/2009 C:\Windows\system32\LINKINFO.dll|Microsoft Corporation|6.1.7600.16385|Windows Volume Tracking|07/14/2009 c:\windows\system32\lmhsvc.dll|Microsoft Corporation|6.1.7600.16385|TCPIP NetBios Transport Services DLL|07/14/2009 C:\Windows\System32\localspl.dll|Microsoft Corporation|6.1.7601.17841|Local Spooler DLL|08/29/2014 C:\Windows\system32\logoncli.dll|Microsoft Corporation|6.1.7601.17514|Net Logon Client DLL|11/21/2010 C:\Windows\system32\LPK.dll|Microsoft Corporation|6.1.7601.18177|Language Pack|08/29/2014 C:\Windows\system32\lsasrv.dll|Microsoft Corporation|6.1.7601.18443|LSA Server DLL|08/29/2014 C:\Windows\System32\mdimon.dll|Microsoft Corporation|0.3.4518.1014|Microsoft® Document Imaging|11/24/2014 C:\Windows\system32\MfcSubs.dll|Microsoft Corporation|2001.12.8530.16385|COM+|07/14/2009 C:\Windows\system32\midimap.dll|Microsoft Corporation|6.1.7600.16385|Microsoft MIDI Mapper|07/14/2009 C:\Windows\system32\MLANG.dll|Microsoft Corporation|6.1.7600.16385|Multi Language Support DLL|07/14/2009 c:\windows\system32\mmcss.dll|Microsoft Corporation|6.1.7600.16385|Multimedia Class Scheduler Service|07/14/2009 C:\Windows\System32\MMDevApi.dll|Microsoft Corporation|6.1.7601.17514|MMDevice API|11/21/2010 C:\Windows\system32\MPR.dll|Microsoft Corporation|6.1.7600.16385|Multiple Provider Router DLL|07/14/2009 C:\Windows\System32\MPRAPI.dll|Microsoft Corporation|6.1.7601.17514|Windows NT MP Router Administration DLL|11/21/2010 c:\windows\system32\mpssvc.dll|Microsoft Corporation|6.1.7601.17514|Microsoft Protection Service|11/21/2010 C:\Windows\system32\MSACM32.dll|Microsoft Corporation|6.1.7600.16385|Microsoft ACM Audio Filter|07/14/2009 C:\Windows\system32\MSASN1.dll|Microsoft Corporation|6.1.7601.17514|ASN.1 Runtime APIs|11/21/2010 C:\Windows\system32\MSCOREE.DLL|Microsoft Corporation|4.0.40305.0|Microsoft .NET Runtime Execution Engine|11/21/2010 C:\Windows\system32\MSCTF.dll|Microsoft Corporation|6.1.7600.16385|MSCTF Server DLL|07/14/2009 C:\Windows\system32\MsCtfMonitor.dll|Microsoft Corporation|6.1.7600.16385|MsCtfMonitor DLL|07/14/2009 C:\Windows\system32\MSDTCPRX.DLL|Microsoft Corporation|2001.12.8530.16385|Microsoft Distributed Transaction Coordinator OLE Transactions Interface Proxy DLL|07/14/2009 C:\Windows\system32\MsftEdit.dll|Microsoft Corporation|5.41.21.2510|Rich Text Edit Control, v4.1|11/21/2010 C:\Windows\system32\msi.dll|Microsoft Corporation|5.0.7601.17514|Windows Installer|11/21/2010 C:\Windows\system32\Msidle.dll|Microsoft Corporation|6.1.7600.16385|User Idle Monitor|07/14/2009 C:\Windows\system32\msiltcfg.dll|Microsoft Corporation|5.0.7600.16385|Windows Installer Configuration API Stub|07/14/2009 C:\Windows\system32\MSIMG32.dll|Microsoft Corporation|6.1.7600.16385|GDIEXT Client DLL|07/14/2009 C:\Windows\system32\msls31.dll|Microsoft Corporation|3.10.349.0|Microsoft Line Services library file|07/14/2009 C:\Windows\system32\msprivs.DLL|Microsoft Corporation|6.1.7600.16385|Microsoft Privilege Translations|07/14/2009 C:\Windows\system32\mssprxy.dll|Microsoft Corporation|7.0.7600.16385|Microsoft Search Proxy|07/14/2009 C:\Windows\system32\MSSRCH.DLL|Microsoft Corporation|7.0.7601.17514|mssrch.dll|11/21/2010 C:\Windows\System32\mstask.dll|Microsoft Corporation|6.1.7601.17514|Task Scheduler interface DLL|11/21/2010 C:\Windows\system32\MSUTB.dll|Microsoft Corporation|6.1.7601.17514|MSUTB Server DLL|11/21/2010 C:\Windows\system32\msv1_0.DLL|Microsoft Corporation|6.1.7601.18409|Microsoft Authentication Package v1.0|08/29/2014 C:\Windows\system32\MSVCIRT.dll|Microsoft Corporation|7.0.7600.16385|Windows NT IOStreams DLL|07/14/2009 C:\Windows\system32\MSVCP100.dll|Microsoft Corporation|10.0.40219.325|Microsoft® C Runtime Library|06/11/2011 C:\Windows\system32\MSVCR100.dll|Microsoft Corporation|10.0.40219.325|Microsoft® C Runtime Library|06/11/2011 C:\Windows\system32\MSVCR120_CLR0400.dll|Microsoft Corporation|12.0.51209.34209|Microsoft® C Runtime Library|04/12/2014 C:\Windows\system32\msvcrt.dll|Microsoft Corporation|7.0.7601.17744|Windows NT CRT DLL|08/29/2014 C:\Windows\system32\MSVFW32.dll|Microsoft Corporation|6.1.7601.17514|Microsoft Video for Windows DLL|11/21/2010 C:\Windows\system32\mswsock.dll|Microsoft Corporation|6.1.7601.17514|Microsoft Windows Sockets 2.0 Service Provider|11/21/2010 C:\Windows\System32\msxml6.dll|Microsoft Corporation|6.30.7601.17988|MSXML 6.0 SP3|08/29/2014 C:\Windows\system32\MTXCLU.DLL|Microsoft Corporation|2001.12.8531.17514|Microsoft Distributed Transaction Coordinator Failover Clustering Support DLL|11/21/2010 C:\Windows\system32\napinsp.dll|Microsoft Corporation|6.1.7600.16385|E-mail Naming Shim Provider|07/14/2009 C:\Windows\system32\NCI.dll|Microsoft Corporation|6.1.7601.17514|CoInstaller: NET|11/21/2010 C:\Windows\system32\NCObjAPI.DLL|Microsoft Corporation|6.1.7600.16385|---|07/14/2009 C:\Windows\system32\ncrypt.dll|Microsoft Corporation|6.1.7601.18270|Windows cryptographic library|08/29/2014 c:\windows\system32\ncsi.dll|Microsoft Corporation|6.1.7601.17514|Network Connectivity Status Indicator|11/21/2010 C:\Windows\system32\negoexts.DLL|Microsoft Corporation|6.1.7600.16385|NegoExtender Security Package|07/14/2009 C:\Windows\system32\NETAPI32.DLL|Microsoft Corporation|6.1.7601.17887|Net Win32 API DLL|08/29/2014 C:\Windows\system32\netbios.dll|Microsoft Corporation|6.1.7600.16385|NetBIOS Interface Library|07/14/2009 C:\Windows\system32\netcfgx.dll|Microsoft Corporation|6.1.7601.17514|Network Configuration Objects|11/21/2010 c:\windows\system32\netjoin.dll|Microsoft Corporation|6.1.7601.17514|Domain Join DLL|11/21/2010 C:\Windows\system32\netlogon.DLL|Microsoft Corporation|6.1.7601.17514|Net Logon Services DLL|11/21/2010 c:\windows\system32\netman.dll|Microsoft Corporation|6.1.7600.16385|Network Connections Manager|07/14/2009 C:\Windows\System32\netprofm.dll|Microsoft Corporation|6.1.7600.16385|Network List Manager|07/14/2009 C:\Windows\System32\netshell.dll|Microsoft Corporation|6.1.7601.17514|Network Connections Shell|11/21/2010 C:\Windows\system32\netutils.dll|Microsoft Corporation|6.1.7601.17514|Net Win32 API Helpers DLL|11/21/2010 C:\Windows\system32\NetworkExplorer.dll|Microsoft Corporation|6.1.7601.17514|Network Explorer|11/21/2010 C:\Windows\system32\NLAapi.dll|Microsoft Corporation|6.1.7601.17514|Network Location Awareness 2|11/21/2010 c:\windows\system32\nlasvc.dll|Microsoft Corporation|6.1.7601.17514|Network Location Awareness 2|11/21/2010 C:\Windows\system32\Normaliz.dll|Microsoft Corporation|6.1.7600.16385|Unicode Normalization DLL|07/14/2009 C:\Windows\System32\npmproxy.dll|Microsoft Corporation|6.1.7600.16385|Network List Manager Proxy|07/14/2009 c:\windows\system32\nrpsrv.DLL|Microsoft Corporation|6.1.7601.17514|Name Resolution Proxy (NRP) RPC interface|11/21/2010 C:\Windows\system32\NSI.dll|Microsoft Corporation|6.1.7600.16385|NSI User-mode interface DLL|07/14/2009 c:\windows\system32\nsisvc.dll|Microsoft Corporation|6.1.7600.16385|Network Store Interface RPC server|07/14/2009 C:\Windows\SYSTEM32\ntdll.dll|Microsoft Corporation|6.1.7601.18205|NT Layer DLL|08/29/2014 C:\Windows\system32\NTDSAPI.dll|Microsoft Corporation|6.1.7600.16385|Active Directory Domain Services API|07/14/2009 C:\Windows\System32\ntlanman.dll|Microsoft Corporation|6.1.7601.17514|Microsoft® Lan Manager|11/21/2010 C:\Windows\system32\ntmarta.dll|Microsoft Corporation|6.1.7600.16385|Windows NT MARTA provider|07/14/2009 C:\Windows\system32\ntshrui.dll|Microsoft Corporation|6.1.7601.17514|Shell extensions for sharing|11/21/2010 C:\Windows\system32\ODBC32.dll|Microsoft Corporation|6.1.7601.17514|ODBC Driver Manager|11/21/2010 C:\Windows\system32\odbcint.dll|Microsoft Corporation|6.1.7600.16385|ODBC Resources|07/14/2009 C:\Windows\system32\ole32.dll|Microsoft Corporation|6.1.7601.17514|Microsoft OLE for Windows|11/21/2010 C:\Windows\system32\OLEACC.dll|Microsoft Corporation|7.0.0.0|Active Accessibility Core Component|08/29/2014 C:\Windows\system32\OLEAUT32.dll|Microsoft Corporation|6.1.7601.17676|---|08/29/2014 C:\Windows\system32\osbaseln.dll|Microsoft Corporation|6.1.7600.16385|Service Reporting API|07/14/2009 C:\Windows\System32\pcwum.dll|Microsoft Corporation|6.1.7600.16385|Performance Counters for Windows Native DLL|07/14/2009 C:\Windows\System32\pdfcmon.dll|pdfforge GmbH|0.3.0.0|pdfcmon|08/29/2014 C:\Windows\system32\pdh.dll|Microsoft Corporation|6.1.7601.17514|Windows Performance Data Helper DLL|11/21/2010 C:\Windows\System32\PeerDist.dll|Microsoft Corporation|6.1.7600.16385|BranchCache Client Library|07/14/2009 C:\Windows\System32\perfdisk.dll|Microsoft Corporation|6.1.7600.16385|Windows Disk Performance Objects DLL|07/14/2009 C:\Windows\System32\perfos.dll|Microsoft Corporation|6.1.7600.16385|Windows System Performance Objects DLL|07/14/2009 C:\Windows\System32\perfproc.dll|Microsoft Corporation|6.1.7600.16385|Windows System Process Performance Objects DLL|07/14/2009 C:\Windows\system32\perftrack.dll|Microsoft Corporation|6.1.7600.16385|Microsoft Performance PerfTrack|07/14/2009 C:\Windows\system32\pku2u.DLL|Microsoft Corporation|6.1.7600.16385|Pku2u Security Package|07/14/2009 C:\Windows\System32\PlaySndSrv.dll|Microsoft Corporation|6.1.7600.16385|PlaySound Service|07/14/2009 C:\Windows\System32\pnidui.dll|Microsoft Corporation|6.1.7601.17514|Network System Icon|11/21/2010 C:\Windows\system32\pnpts.dll|Microsoft Corporation|6.1.7600.16385|PlugPlay Troubleshooter|07/14/2009 C:\Windows\system32\pnrpnsp.dll|Microsoft Corporation|6.1.7600.16385|PNRP Name Space Provider|07/14/2009 C:\Windows\system32\PortableDeviceApi.dll|Microsoft Corporation|6.1.7601.17514|Windows Portable Device API Components|11/21/2010 C:\Windows\System32\portabledeviceconnectapi.dll|Microsoft Corporation|6.1.7600.16385|Portable Device Connection API Components|07/14/2009 C:\Windows\system32\PortableDeviceTypes.dll|Microsoft Corporation|6.1.7600.16385|Windows Portable Device (Parameter) Types Component|07/14/2009 C:\Windows\system32\POWRPROF.dll|Microsoft Corporation|6.1.7600.16385|Power Profile Helper DLL|07/14/2009 C:\Windows\System32\PrintIsolationProxy.dll|Microsoft Corporation|6.1.7601.17514|Print Sandbox COM Proxy Stub|11/21/2010 C:\Windows\system32\prnfldr.dll|Microsoft Corporation|6.1.7601.17514|prnfldr dll|11/21/2010 c:\windows\system32\profapi.dll|Microsoft Corporation|6.1.7600.16385|User Profile Basic API|07/14/2009 c:\windows\system32\profsvc.dll|Microsoft Corporation|6.1.7601.17514|ProfSvc|11/21/2010 c:\windows\system32\PROPSYS.dll|Microsoft Corporation|7.0.7601.17514|Microsoft Property System|11/21/2010 C:\Windows\system32\PSAPI.DLL|Microsoft Corporation|6.1.7600.16385|Process Status Helper|07/14/2009 C:\Windows\System32\QUtil.dll|Microsoft Corporation|6.1.7601.17514|Quarantine Utilities|11/21/2010 C:\Windows\system32\radardt.dll|Microsoft Corporation|6.1.7600.16385|Microsoft Windows Resource Exhaustion Detector|07/14/2009 C:\Windows\system32\rasadhlp.dll|Microsoft Corporation|6.1.7600.16385|Remote Access AutoDial Helper|07/14/2009 C:\Windows\System32\RASAPI32.dll|Microsoft Corporation|6.1.7600.16385|Remote Access API|07/14/2009 C:\Windows\System32\RASDLG.dll|Microsoft Corporation|6.1.7600.16385|Remote Access Common Dialog API|07/14/2009 C:\Windows\system32\rasman.dll|Microsoft Corporation|6.1.7600.16385|Remote Access Connection Manager|07/14/2009 C:\Windows\system32\RESUTILS.DLL|Microsoft Corporation|6.1.7601.17514|Microsoft Cluster Resource Utility DLL|11/21/2010 C:\Windows\system32\RICHED20.dll|Microsoft Corporation|5.31.23.1230|Rich Text Edit Control, v3.1|11/21/2010 C:\Windows\system32\RICHED32.DLL|Microsoft Corporation|6.1.7601.17514|Wrapper Dll for Richedit 1.0|11/21/2010 c:\windows\system32\rpcepmap.dll|Microsoft Corporation|6.1.7600.16385|RPC Endpoint Mapper|07/14/2009 C:\Windows\system32\RPCRT4.dll|Microsoft Corporation|6.1.7601.18205|Remote Procedure Call Runtime|08/29/2014 C:\Windows\system32\RpcRtRemote.dll|Microsoft Corporation|6.1.7601.17514|Remote RPC Extension|11/21/2010 c:\windows\system32\rpcss.dll|Microsoft Corporation|6.1.7601.17514|Distributed COM Services|11/21/2010 C:\Windows\system32\rsaenh.dll|Microsoft Corporation|6.1.7600.16385|Microsoft Enhanced Cryptographic Provider|07/14/2009 c:\windows\system32\rtutils.dll|Microsoft Corporation|6.1.7601.17514|Routing Utilities|11/21/2010 C:\Windows\system32\samcli.dll|Microsoft Corporation|6.1.7601.17514|Security Accounts Manager Client DLL|11/21/2010 C:\Windows\system32\SAMLIB.dll|Microsoft Corporation|6.1.7600.16385|SAM Library DLL|07/14/2009 C:\Windows\system32\SAMSRV.dll|Microsoft Corporation|6.1.7601.17514|SAM Server DLL|11/21/2010 C:\Windows\system32\scecli.DLL|Microsoft Corporation|6.1.7601.17514|Windows Security Configuration Editor Client Engine|11/21/2010 C:\Windows\system32\SCESRV.dll|Microsoft Corporation|6.1.7601.17514|Windows Security Configuration Editor Engine|11/21/2010 C:\Windows\system32\scext.dll|Microsoft Corporation|6.1.7600.16385|Service Control Manager Extension DLL for non-minwin|07/14/2009 C:\Windows\system32\schannel.DLL|Microsoft Corporation|6.1.7601.18409|TLS / SSL Security Provider|08/29/2014 C:\Windows\system32\SCHEDCLI.DLL|Microsoft Corporation|6.1.7601.17514|Scheduler Service Client DLL|11/21/2010 c:\windows\system32\schedsvc.dll|Microsoft Corporation|6.1.7601.17514|Task Scheduler Service|11/21/2010 C:\Windows\SYSTEM32\sechost.dll|Microsoft Corporation|6.1.7600.16385|Host for SCM/SDDL/LSA Lookup APIs|07/14/2009 C:\Windows\System32\secur32.dll|Microsoft Corporation|6.1.7601.18443|Security Support Provider Interface|08/29/2014 C:\Windows\system32\security.dll|Microsoft Corporation|6.1.7600.16385|Security Support Provider Interface|07/14/2009 c:\windows\system32\sens.dll|Microsoft Corporation|6.1.7600.16385|System Event Notification Service (SENS)|07/14/2009 C:\Windows\system32\sensapi.dll|Microsoft Corporation|6.1.7600.16385|SENS Connectivity API DLL|07/14/2009 C:\Windows\system32\SETUPAPI.dll|Microsoft Corporation|6.1.7601.17514|Windows Setup API|11/21/2010 C:\Windows\system32\sfc.dll|Microsoft Corporation|6.1.7600.16385|Windows File Protection|07/14/2009 C:\Windows\system32\sfc_os.DLL|Microsoft Corporation|6.1.7600.16385|Windows File Protection|07/14/2009 C:\Windows\System32\shacct.dll|Microsoft Corporation|6.1.7601.17514|Shell Accounts Classes|11/21/2010 C:\Windows\System32\shdocvw.dll|Microsoft Corporation|6.1.7601.17514|Shell Doc Object and Control Library|11/21/2010 C:\Windows\system32\SHELL32.dll|Microsoft Corporation|6.1.7601.18429|Windows Shell Common Dll|08/29/2014 C:\Windows\system32\SHFOLDER.DLL|Microsoft Corporation|6.1.7600.16385|Shell Folder Service|07/14/2009 C:\Windows\system32\SHLWAPI.dll|Microsoft Corporation|6.1.7601.17514|Shell Light-weight Utility Library|11/21/2010 c:\windows\system32\shsvcs.dll|Microsoft Corporation|6.1.7601.17514|Windows Shell Services Dll|11/21/2010 C:\Windows\system32\slc.dll|Microsoft Corporation|6.1.7600.16385|Software Licensing Client Dll|07/14/2009 C:\Windows\system32\SndVolSSO.DLL|Microsoft Corporation|6.1.7601.17514|SCA Volume|11/21/2010 C:\Windows\System32\snmpapi.dll|Microsoft Corporation|6.1.7600.16385|SNMP Utility Library|07/14/2009 c:\windows\system32\SPINF.dll|Microsoft Corporation|6.1.7600.16385|Windows SPINF|07/14/2009 C:\Windows\system32\spool\PRTPROCS\W32X86\mdippr.dll|Microsoft Corporation|0.3.4518.1014|Microsoft® Document Imaging|11/24/2014 C:\Windows\system32\spool\PRTPROCS\W32X86\TPWinPrn.dll|ThinPrint AG|8.6.304.1|ThinPrint print processor|07/08/2014 C:\Windows\system32\spool\PRTPROCS\W32X86\winprint.dll|Microsoft Corporation|6.1.7601.17514|Windows Print Processor DLL|11/21/2010 C:\Windows\System32\SPOOLSS.DLL|Microsoft Corporation|6.1.7600.16385|Spooler SubSystem DLL|07/14/2009 C:\Windows\system32\SPP.dll|Microsoft Corporation|6.1.7601.17514|Microsoft® Windows Shared Protection Point Library|11/21/2010 C:\Windows\system32\sqlncli11.dll|Microsoft Corporation|2011.110.3000.0|Microsoft SQL Server Native Client 11.0|10/20/2012 c:\windows\system32\sqmapi.dll|Microsoft Corporation|6.1.7601.17514|SQM Client|11/21/2010 C:\Windows\System32\srchadmin.dll|Microsoft Corporation|7.0.7601.17514|Indexing Options|11/21/2010 C:\Windows\system32\SRCLIENT.DLL|Microsoft Corporation|6.1.7600.16385|Microsoft® Windows System Restore Client Library|07/14/2009 c:\windows\system32\srvcli.dll|Microsoft Corporation|6.1.7601.17514|Server Service Client DLL|11/21/2010 c:\windows\system32\srvsvc.dll|Microsoft Corporation|6.1.7601.17514|Server Service DLL|11/21/2010 C:\Windows\system32\SSCORE.DLL|Microsoft Corporation|6.1.7601.17514|Server Service Core DLL|11/21/2010 C:\Windows\system32\ssdpapi.dll|Microsoft Corporation|6.1.7600.16385|SSDP Client API DLL|07/14/2009 C:\Windows\system32\SspiCli.dll|Microsoft Corporation|6.1.7601.18443|Security Support Provider Interface|08/29/2014 C:\Windows\system32\SspiSrv.dll|Microsoft Corporation|6.1.7601.18443|LSA SSPI RPC interface DLL|08/29/2014 C:\Windows\system32\stobject.dll|Microsoft Corporation|6.1.7601.17514|Systray shell service object|11/21/2010 c:\windows\system32\swprv.dll|Microsoft Corporation|6.1.7600.16385|Microsoft® Volume Shadow Copy Service software provider|07/14/2009 C:\Windows\system32\SXS.DLL|Microsoft Corporation|6.1.7601.17514|Fusion 2.5|11/21/2010 C:\Windows\system32\sxssrv.DLL|Microsoft Corporation|6.1.7600.16385|Windows SxS Server DLL|07/14/2009 C:\Windows\system32\Syncreg.dll|Microsoft Corporation|2007.94.7600.16385|Microsoft Synchronization Framework Registration|07/14/2009 c:\windows\system32\SYSNTFY.dll|Microsoft Corporation|6.1.7600.16385|Windows Notifications Dynamic Link Library|07/14/2009 C:\Windows\system32\taskcomp.dll|Microsoft Corporation|6.1.7601.17514|Task Scheduler Backward Compatibility Plug-in|11/21/2010 C:\Windows\system32\taskschd.dll|Microsoft Corporation|6.1.7601.17514|Task Scheduler COM API|11/21/2010 C:\Windows\system32\tbs.dll|Microsoft Corporation|6.1.7600.16385|TBS|07/14/2009 C:\Windows\System32\tcpmon.dll|Microsoft Corporation|6.1.7600.16385|Standard TCP/IP Port Monitor DLL|07/14/2009 c:\windows\system32\themeservice.dll|Microsoft Corporation|6.1.7600.16385|Windows Shell Theme Service Dll|07/14/2009 C:\Windows\system32\thumbcache.dll|Microsoft Corporation|6.1.7601.17514|Microsoft Thumbnail Cache|11/21/2010 C:\Windows\System32\TPRDPW32.dll|Cortado AG|9.2.188.1|ThinPrint RDP DLL|11/20/2014 C:\Windows\System32\TPVMMon.dll|Cortado AG|2.5.86.1|ThinPrint for VMware® Print Port Monitor|11/20/2014 C:\Windows\System32\TPVMW32.dll|Cortado AG|9.0.50.1|ThinPrint VMWare VC DLL|11/20/2014 C:\Windows\system32\TQUERY.DLL|Microsoft Corporation|7.0.7601.17514|tquery.dll|11/21/2010 c:\windows\system32\trkwks.dll|Microsoft Corporation|6.1.7600.16385|Distributed Link Tracking Client|07/14/2009 C:\Windows\system32\tschannel.dll|Microsoft Corporation|6.1.7600.16385|Task Scheduler Proxy|07/14/2009 C:\Windows\system32\tspkg.DLL|Microsoft Corporation|6.1.7601.18409|Web Service Security Package|08/29/2014 C:\Windows\system32\txflog.dll|Microsoft Corporation|2001.12.8530.16385|COM+|07/14/2009 C:\Windows\system32\UBPM.dll|Microsoft Corporation|6.1.7600.16385|Unified Background Process Manager DLL|07/14/2009 C:\Windows\System32\UIAnimation.dll|Microsoft Corporation|6.1.7600.16385|Windows Animation Manager|07/14/2009 C:\Windows\system32\umb.dll|Microsoft Corporation|6.1.7601.17514|User Mode Bus Driver Interface Dll|11/21/2010 c:\windows\system32\umpnpmgr.dll|Microsoft Corporation|6.1.7601.17621|User-mode Plug-and-Play Service|08/29/2014 c:\windows\system32\umpo.dll|Microsoft Corporation|6.1.7601.17514|User-mode Power Service|11/21/2010 C:\Windows\system32\url.dll|Microsoft Corporation|8.0.7601.18404|Internet Shortcut Shell Extension DLL|08/29/2014 C:\Windows\system32\urlmon.dll|Microsoft Corporation|8.0.7601.18404|OLE32 Extensions for Win32|08/29/2014 C:\Windows\System32\usbmon.dll|Microsoft Corporation|6.1.7600.16385|Standard Dynamic Printing Port Monitor DLL|07/14/2009 C:\Windows\system32\USER32.dll|Microsoft Corporation|6.1.7601.17514|Multi-User Windows USER API Client DLL|11/21/2010 C:\Windows\System32\USERENV.dll|Microsoft Corporation|6.1.7601.17514|Userenv|11/21/2010 C:\Windows\system32\USP10.dll|Microsoft Corporation|1.626.7601.17514|Uniscribe Unicode script processor|11/21/2010 C:\Windows\system32\UXINIT.dll|Microsoft Corporation|6.1.7600.16385|Windows User Experience Session Initialization Dll|07/14/2009 c:\windows\system32\uxsms.dll|Microsoft Corporation|6.1.7600.16385|Microsoft User Experience Session Management Service|07/14/2009 C:\Windows\system32\UxTheme.dll|Microsoft Corporation|6.1.7600.16385|Microsoft UxTheme Library|07/14/2009 c:\windows\system32\VERSION.dll|Microsoft Corporation|6.1.7600.16385|Version Checking and File Installation Libraries|07/14/2009 C:\Windows\system32\VirtDisk.dll|Microsoft Corporation|6.1.7600.16385|Virtual Disk API DLL|07/14/2009 C:\Windows\System32\vmhgfs.dll|VMware, Inc.|8.3.10.0|VMware HGFS Provider|07/08/2014 C:\Windows\system32\vsocklib.dll|VMware, Inc.|9.6.0.0|VSockets Library|07/08/2014 C:\Windows\system32\vss_ps.dll|Microsoft Corporation|6.1.7600.16385|Microsoft® Volume Shadow Copy Service proxy/stub|07/14/2009 C:\Windows\System32\VSSAPI.DLL|Microsoft Corporation|6.1.7601.17514|Microsoft® Volume Shadow Copy Requestor/Writer Services API DLL|11/21/2010 C:\Windows\system32\VssTrace.DLL|Microsoft Corporation|6.1.7600.16385|Microsoft® Volume Shadow Copy Service Tracing Library|07/14/2009 C:\Windows\system32\wbem\cimwin32.dll|Microsoft Corporation|6.1.7601.17514|WMI Win32 Provider|11/21/2010 C:\Windows\system32\wbem\esscli.dll|Microsoft Corporation|6.1.7600.16385|WMI|07/14/2009 C:\Windows\system32\wbem\FastProx.dll|Microsoft Corporation|6.1.7601.17514|WMI Custom Marshaller|11/21/2010 C:\Windows\system32\wbem\ncprov.dll|Microsoft Corporation|6.1.7600.16385|Non-COM WMI Event Provision APIs|07/14/2009 C:\Windows\system32\wbem\repdrvfs.dll|Microsoft Corporation|6.1.7600.16385|WMI Repository Driver|07/14/2009 C:\Windows\system32\wbem\wbemcore.dll|Microsoft Corporation|6.1.7601.17514|Windows Management Instrumentation|11/21/2010 C:\Windows\system32\wbem\wbemdisp.dll|Microsoft Corporation|6.1.7600.16385|WMI Scripting|07/14/2009 C:\Windows\system32\wbem\wbemess.dll|Microsoft Corporation|6.1.7600.16385|WMI|07/14/2009 C:\Windows\system32\wbem\wbemprox.dll|Microsoft Corporation|6.1.7600.16385|WMI|07/14/2009 C:\Windows\system32\wbem\wbemsvc.dll|Microsoft Corporation|6.1.7600.16385|WMI|07/14/2009 C:\Windows\system32\wbem\wmidcprv.dll|Microsoft Corporation|6.1.7601.17514|WMI|11/21/2010 C:\Windows\system32\wbem\wmiprov.dll|Microsoft Corporation|6.1.7601.17514|WMI|11/21/2010 C:\Windows\system32\wbem\wmiprvsd.dll|Microsoft Corporation|6.1.7601.17514|WMI|11/21/2010 c:\windows\system32\wbem\wmisvc.dll|Microsoft Corporation|6.1.7600.16385|WMI|07/14/2009 C:\Windows\system32\wbem\wmitimep.dll|Microsoft Corporation|6.1.7600.16385|WMI|07/14/2009 C:\Windows\system32\wbem\wmiutils.dll|Microsoft Corporation|6.1.7600.16385|WMI|07/14/2009 C:\Windows\system32\wbemcomn.dll|Microsoft Corporation|6.1.7601.17514|WMI|11/21/2010 c:\windows\system32\wdi.dll|Microsoft Corporation|6.1.7600.16385|Windows Diagnostic Infrastructure|07/14/2009 C:\Windows\system32\wdiasqmmodule.dll|Microsoft Corporation|6.1.7601.17514|Adaptive SQM WDI Plugin|11/21/2010 C:\Windows\system32\wdigest.DLL|Microsoft Corporation|6.1.7601.18409|Microsoft Digest Access|08/29/2014 c:\windows\system32\WDSCORE.dll|Microsoft Corporation|6.1.7601.17514|Panther Engine Module|11/21/2010 C:\Windows\system32\webio.dll|Microsoft Corporation|6.1.7601.17725|Web Transfer Protocols API|08/29/2014 c:\windows\system32\webservices.dll|Microsoft Corporation|6.1.7601.17514|Windows Web Services Runtime|11/21/2010 C:\Windows\system32\wer.dll|Microsoft Corporation|6.1.7601.17514|Windows Error Reporting DLL|11/21/2010 c:\windows\system32\wevtapi.dll|Microsoft Corporation|6.1.7600.16385|Eventing Consumption and Configuration API|07/14/2009 c:\windows\system32\wevtsvc.dll|Microsoft Corporation|6.1.7601.17514|Event Logging Service|11/21/2010 C:\Windows\system32\wfapigp.dll|Microsoft Corporation|6.1.7600.16385|Windows Firewall GPO Helper dll|07/14/2009 C:\Windows\system32\wiarpc.dll|Microsoft Corporation|6.1.7601.17514|Windows Image Acquisition RPC client DLL|11/21/2010 C:\Windows\system32\WIBUCM32.dll|WIBU-SYSTEMS AG|5.10.1224.501|CodeMeter Library|11/15/2013 C:\Windows\System32\win32spl.dll|Microsoft Corporation|6.1.7601.18142|Client Side Rendering Print Provider|08/29/2014 C:\Windows\system32\WINBRAND.dll|Microsoft Corporation|6.1.7600.16385|Windows Branding Resources|07/14/2009 C:\Windows\system32\WindowsCodecs.dll|Microsoft Corporation|6.1.7601.17514|Microsoft Windows Codecs Library|11/21/2010 C:\Windows\system32\WINHTTP.dll|Microsoft Corporation|6.1.7601.17514|Windows HTTP Services|11/21/2010 C:\Windows\system32\WININET.dll|Microsoft Corporation|8.0.7601.18404|Internet Extensions for Win32|08/29/2014 C:\Windows\system32\WINMM.dll|Microsoft Corporation|6.1.7601.17514|MCI API DLL|11/21/2010 C:\Windows\system32\WINNSI.DLL|Microsoft Corporation|6.1.7600.16385|Network Store Information RPC interface|07/14/2009 C:\Windows\System32\winrnr.dll|Microsoft Corporation|6.1.7600.16385|LDAP RnR Provider DLL|07/14/2009 C:\Windows\system32\winsrv.DLL|Microsoft Corporation|6.1.7601.18229|Multi-User Windows Server DLL|08/29/2014 C:\Windows\System32\WINSTA.dll|Microsoft Corporation|6.1.7601.17514|Winstation Library|11/21/2010 C:\Windows\system32\WINTRUST.dll|Microsoft Corporation|6.1.7601.18205|Microsoft Trust Verification APIs|08/29/2014 C:\Windows\system32\wkscli.dll|Microsoft Corporation|6.1.7601.17514|Workstation Service Client DLL|11/21/2010 c:\windows\system32\wkssvc.dll|Microsoft Corporation|6.1.7601.17514|Workstation Service DLL|11/21/2010 C:\Windows\system32\Wlanapi.dll|Microsoft Corporation|6.1.7600.16385|Windows WLAN AutoConfig Client Side API DLL|07/14/2009 C:\Windows\system32\wlanutil.dll|Microsoft Corporation|6.1.7600.16385|Windows Wireless LAN 802.11 Utility DLL|07/14/2009 C:\Windows\system32\WLDAP32.dll|Microsoft Corporation|6.1.7601.17514|Win32 LDAP API DLL|11/21/2010 C:\Windows\system32\wls0wndh.dll|Microsoft Corporation|6.1.7600.16385|Session0 Viewer Window Hook DLL|07/14/2009 C:\Windows\system32\WMI.DLL|Microsoft Corporation|6.1.7601.17787|WMI DC and DP functionality|08/29/2014 C:\Windows\system32\WMsgAPI.dll|Microsoft Corporation|6.1.7600.16385|WinLogon IPC Client|07/14/2009 c:\windows\system32\wpdbusenum.dll|Microsoft Corporation|6.1.7601.17514|Portable Device Enumerator|11/21/2010 C:\Windows\system32\wpdshserviceobj.dll|Microsoft Corporation|6.1.7601.17514|Windows Portable Device Shell Service Object|11/21/2010 C:\Windows\system32\WS2_32.dll|Microsoft Corporation|6.1.7601.17514|Windows Socket 2.0 32-Bit DLL|11/21/2010 C:\Windows\System32\wsdapi.dll|Microsoft Corporation|6.1.7601.17514|Web Services for Devices API DLL|11/21/2010 C:\Windows\System32\WSDMon.dll|Microsoft Corporation|6.1.7600.16385|WSD Printer Port Monitor|07/14/2009 C:\Windows\System32\wship6.dll|Microsoft Corporation|6.1.7600.16385|Winsock2 Helper DLL (TL/IPv6)|07/14/2009 C:\Windows\System32\wshqos.dll|Microsoft Corporation|6.1.7600.16385|QoS Winsock2 Helper DLL|07/14/2009 C:\Windows\System32\wshtcpip.dll|Microsoft Corporation|6.1.7600.16385|Winsock2 Helper DLL (TL/IPv4)|07/14/2009 C:\Windows\System32\wsnmp32.dll|Microsoft Corporation|6.1.7601.17514|Microsoft WinSNMP v2.0 Manager API|11/21/2010 C:\Windows\system32\WSOCK32.dll|Microsoft Corporation|6.1.7600.16385|Windows Socket 32-Bit DLL|07/14/2009 C:\Windows\system32\WTSAPI32.dll|Microsoft Corporation|6.1.7601.17514|Windows Remote Desktop Session Host Server SDK APIs|11/21/2010 c:\windows\system32\WUDFPlatform.dll|Microsoft Corporation|6.1.7601.17514|Windows Driver Foundation - User-mode Platform Library|11/21/2010 c:\windows\system32\wudfsvc.dll|Microsoft Corporation|6.1.7601.17514|Windows Driver Foundation - User-mode Driver Framework Service|11/21/2010 C:\Windows\system32\wwanapi.dll|Microsoft Corporation|6.1.7600.16385|Mbnapi|07/14/2009 C:\Windows\system32\wwapi.dll|Microsoft Corporation|8.1.2.0|WWAN API|07/14/2009 C:\Windows\system32\XmlLite.dll|Microsoft Corporation|1.3.1000.0|Microsoft XmlLite Library|07/14/2009 C:\Windows\system32\XOLEHLP.dll|Microsoft Corporation|2001.12.8530.16385|Microsoft Distributed Transaction Coordinator Helper APIs DLL|07/14/2009 C:\Windows\system32\zipfldr.dll|Microsoft Corporation|6.1.7601.17514|Compressed (zipped) Folders|11/21/2010 C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6229_none_d089f796442de10e\MSVCR80.dll|Microsoft Corporation|8.0.50727.6229|Microsoft® C Runtime Library|10/29/2014 C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4974_none_50940634bcb759cb\MSVCP90.dll|Microsoft Corporation|9.0.30729.4974|Microsoft® C++ Runtime Library|10/29/2014 C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4974_none_50940634bcb759cb\MSVCR90.dll|Microsoft Corporation|9.0.30729.4974|Microsoft® C Runtime Library|10/29/2014 C:\Windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.4974_none_4bf89ae8bf9a48c0\mfc90u.dll|Microsoft Corporation|9.0.30729.4974|MFCDLL Shared Library - Retail Version|10/29/2014 C:\Windows\WinSxS\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.4974_none_497745fb754785d2\MFC90ENU.DLL|Microsoft Corporation|9.0.30729.4974|MFC Language Specific Resources|10/29/2014 C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll|Microsoft Corporation|5.82.7601.18201|User Experience Controls Library|08/29/2014 C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll|Microsoft Corporation|6.10.7601.17514|User Experience Controls Library|11/21/2010 C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll|Microsoft Corporation|6.1.7601.18120|Microsoft GDI+|08/29/2014 [Loaded Misc] C:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\Resources\1033\sqlevn70.rll|Microsoft Corporation|2011.110.3000.0|SQL Event Messages DLL|10/20/2012 C:\Windows\system32\1033\SQLNCLIR11.RLL|Microsoft Corporation|2011.110.2100.60|Microsoft SQL Server Native Client 11.0|02/11/2012 C:\Windows\system32\appwiz.cpl|Microsoft Corporation|6.1.7601.17514|Shell Application Manager|11/21/2010 C:\Windows\System32\bthprops.cpl|Microsoft Corporation|6.1.7601.17514|Bluetooth Control Panel Applet|11/21/2010 C:\Windows\system32\en-us\tQuery.dll.mui|Microsoft Corporation|7.0.7600.16385|tquery.dll|04/12/2011 C:\Windows\system32\HHCtrl.ocx|Microsoft Corporation|6.1.7600.16385|Microsoft® HTML Help Control|07/14/2009 C:\Windows\system32\msacm32.drv|Microsoft Corporation|6.1.7600.16385|Microsoft Sound Mapper|07/14/2009 C:\Windows\system32\timedate.cpl|Microsoft Corporation|6.1.7601.17514|Time Date Control Panel Applet|11/21/2010 C:\Windows\system32\wdmaud.drv|Microsoft Corporation|6.1.7601.17514|Winmm audio system driver|11/21/2010 C:\Windows\system32\winspool.drv|Microsoft Corporation|6.1.7601.17514|Windows Spooler Driver|11/21/2010 [Running Services] C:\atis\ai-root-arms\bin\aiservice.exe|ATIS AI Basic Service|Atis Systems GmbH|1.0.0.1|aiservice|08/29/2014 C:\atis\jboss\bin\wrapper.exe -s C:\atis\jboss\server\arms\wrapper\wrapper.conf|ATIS_ARMS_Alcatel|---|---|---|08/29/2014 C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe|CodeMeter Runtime Server|WIBU-SYSTEMS AG|5.10.1224.501|CodeMeter Runtime Server|11/15/2013 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe|Machine Debug Manager|Microsoft Corporation|7.10.3077.0|Machine Debug Manager|10/26/2006 C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe|SQL Server Browser|Microsoft Corporation|2011.110.2100.60|SQL Browser Service EXE|02/11/2012 C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe|SQL Server VSS Writer|Microsoft Corporation|2011.110.3000.0|SQL Server VSS Writer|10/20/2012 C:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\sqlservr.exe -sSQLEXPRESS|SQL Server (SQLEXPRESS)|Microsoft Corporation|2011.110.3128.0|SQL Server Windows NT|12/29/2012 C:\Program Files\NTP\bin\ntpd.exe -U 3 -M -g -c C:\Program Files\NTP\etc\ntp.conf|Network Time Protocol Daemon|---|---|---|06/02/2014 C:\Program Files\PostgreSQL\8.2\bin\pg_ctl.exe runservice -w -N pgsql-8.2 -D C:\Program Files\PostgreSQL\8.2\data\|PostgreSQL Database Server 8.2|PostgreSQL Global Development Group|8.2.17.10134|pg_ctl - starts/stops/restarts the PostgreSQL server|05/14/2010 C:\Program Files\VMware\VMware Tools\vmtoolsd.exe|VMware Tools|VMware, Inc.|9.9.0.41534|VMware Tools Core Service|11/20/2014 C:\Windows\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}|COM+ System Application|Microsoft Corporation|6.1.7600.16385|COM Surrogate|07/14/2009 C:\Windows\system32\dllhost.exe /Processid:{EC287FAD-4517-4E56-82FA-C140CD2BF8FB}|VMware Snapshot Provider|Microsoft Corporation|6.1.7600.16385|COM Surrogate|07/14/2009 C:\Windows\system32\lsass.exe|Security Accounts Manager|Microsoft Corporation|6.1.7601.18443|Local Security Authority Process|08/29/2014 C:\Windows\System32\msdtc.exe|Distributed Transaction Coordinator|Microsoft Corporation|2001.12.8530.16385|Microsoft Distributed Transaction Coordinator Service|07/14/2009 C:\Windows\system32\msiexec.exe /V|Windows Installer|Microsoft Corporation|5.0.7601.17514|Windows® installer|11/21/2010 C:\Windows\system32\SearchIndexer.exe /Embedding|Windows Search|Microsoft Corporation|7.0.7600.16385|Microsoft Windows Search Indexer|07/14/2009 C:\Windows\System32\spoolsv.exe|Print Spooler|Microsoft Corporation|6.1.7601.17514|Spooler SubSystem App|11/21/2010 C:\Windows\system32\svchost.exe -k DcomLaunch|DCOM Server Process Launcher|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k DcomLaunch|Plug and Play|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k DcomLaunch|Power|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k LocalService|COM+ Event System|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k LocalService|Diagnostic Service Host|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k LocalService|Network List Service|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k LocalService|Network Store Interface Service|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k LocalService|WinHTTP Web Proxy Auto-Discovery Service|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation|Function Discovery Resource Publication|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted|DHCP Client|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted|TCP/IP NetBIOS Helper|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted|Windows Audio|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted|Windows Event Log|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork|Base Filtering Engine|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork|Diagnostic Policy Service|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork|Windows Firewall|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted|Desktop Window Manager Session Manager|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted|Diagnostic System Host|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted|Distributed Link Tracking Client|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted|Network Connections|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted|Offline Files|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted|Portable Device Enumerator Service|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted|Windows Audio Endpoint Builder|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted|Windows Driver Foundation - User-mode Driver Framework|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k netsvcs|Application Experience|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k netsvcs|Group Policy Client|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k netsvcs|IKE and AuthIP IPsec Keying Modules|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k NetSvcs|IP Helper|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k netsvcs|Multimedia Class Scheduler|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k netsvcs|Server|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k netsvcs|Shell Hardware Detection|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k netsvcs|System Event Notification Service|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k netsvcs|Task Scheduler|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k netsvcs|Themes|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k netsvcs|User Profile Service|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k netsvcs|Windows Management Instrumentation|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k NetworkService|Cryptographic Services|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k NetworkService|DNS Client|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k NetworkService|Network Location Awareness|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k NetworkService|Workstation|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted|IPsec Policy Agent|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k rpcss|Remote Procedure Call (RPC)|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\svchost.exe -k RPCSS|RPC Endpoint Mapper|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\System32\svchost.exe -k swprv|Microsoft Software Shadow Copy Provider|Microsoft Corporation|6.1.7600.16385|Host Process for Windows Services|07/14/2009 C:\Windows\system32\vssvc.exe|Volume Shadow Copy|Microsoft Corporation|6.1.7601.17514|Microsoft® Volume Shadow Copy Service|11/21/2010 [Loaded Drivers] C:\Program Files\Common Files\VMware\Drivers\memctl\vmmemctl.sys|Pilote de contrôle de mémoire|VMware, Inc.|7.3.5.0|VMware server memory controller|11/20/2014 C:\Program Files\VMware\VMware Tools\vmrawdsk.sys|VMware Vista Physical Disk Helper|VMware, Inc.|0.9.7.0|VMware Raw Disk Helper Driver|11/20/2014 C:\Windows\system32\CLFS.sys|Common Log (CLFS)|Microsoft Corporation|6.1.7600.16385|Common Log File System Driver|07/14/2009 C:\Windows\system32\drivers\ACPI.sys|Microsoft ACPI Driver|Microsoft Corporation|6.1.7601.17514|ACPI Driver for NT|11/21/2010 C:\Windows\system32\drivers\afd.sys|Ancillary Function Driver for Winsock|Microsoft Corporation|6.1.7601.17603|Ancillary Function Driver for WinSock|08/29/2014 C:\Windows\system32\DRIVERS\AgileVpn.sys|WAN Miniport (IKEv2)|Microsoft Corporation|6.1.7600.16385|RAS Agile Vpn Miniport Call Manager|07/14/2009 C:\Windows\system32\DRIVERS\agp440.sys|Intel AGP Bus Filter|Microsoft Corporation|6.1.7600.16385|440 NT AGP Filter|07/14/2009 C:\Windows\system32\drivers\amdxata.sys|amdxata|Advanced Micro Devices|1.1.2.5|Storage Filter Driver|11/21/2010 C:\Windows\system32\drivers\atapi.sys|IDE Channel|Microsoft Corporation|6.1.7600.16385|ATAPI IDE Miniport Driver|07/14/2009 C:\Windows\system32\DRIVERS\ATISTools.sys|AtisTools|ATIS|7.0.0.1|ATIS tools|02/26/2013 C:\Windows\system32\drivers\Beep.sys|Beep|Microsoft Corporation|6.1.7600.16385|BEEP Driver|07/14/2009 C:\Windows\system32\DRIVERS\blbdrive.sys|blbdrive|Microsoft Corporation|6.1.7600.16385|BLB Drive Driver|07/14/2009 C:\Windows\system32\DRIVERS\bowser.sys|Browser Support Driver|Microsoft Corporation|6.1.7601.17565|NT Lan Manager Datagram Receiver Driver|08/29/2014 C:\Windows\system32\DRIVERS\cdrom.sys|CD-ROM Driver|Microsoft Corporation|6.1.7601.17514|SCSI CD-ROM Driver|11/21/2010 C:\Windows\system32\DRIVERS\CmBatt.sys|Microsoft AC Adapter Driver|Microsoft Corporation|6.1.7600.16385|Control Method Battery Driver|07/14/2009 C:\Windows\system32\Drivers\cng.sys|CNG|Microsoft Corporation|6.1.7601.17919|Kernel Cryptography, Next Generation|08/29/2014 C:\Windows\system32\DRIVERS\compbatt.sys|Microsoft Composite Battery Driver|Microsoft Corporation|6.1.7600.16385|Composite Battery Driver|07/14/2009 C:\Windows\system32\DRIVERS\CompositeBus.sys|Composite Bus Enumerator Driver|Microsoft Corporation|6.1.7601.17514|Multi-Transport Composite Bus Enumerator|11/21/2010 C:\Windows\system32\drivers\csc.sys|Offline Files Driver|Microsoft Corporation|6.1.7601.17514|Windows Client Side Caching Driver|11/21/2010 C:\Windows\system32\Drivers\dfsc.sys|DFS Namespace Client Driver|Microsoft Corporation|6.1.7601.17514|DFS Namespace Client Driver|11/21/2010 C:\Windows\system32\drivers\discache.sys|System Attribute Cache|Microsoft Corporation|6.1.7600.16385|System Indexer/Cache Driver|07/14/2009 C:\Windows\system32\drivers\disk.sys|Disk Driver|Microsoft Corporation|6.1.7600.16385|PnP Disk Driver|07/14/2009 C:\Windows\system32\drivers\dxgkrnl.sys|LDDM Graphics Subsystem|Microsoft Corporation|6.1.7601.18228|DirectX Graphics Kernel|08/29/2014 C:\Windows\system32\DRIVERS\E1G60I32.sys|Intel(R) PRO/1000 NDIS 6 Adapter Driver|Intel Corporation|8.4.1.0|Intel(R) PRO/1000 Adapter NDIS 6 deserialized driver|07/14/2009 C:\Windows\system32\drivers\fileinfo.sys|File Information FS MiniFilter|Microsoft Corporation|6.1.7600.16385|FileInfo Filter Driver|07/14/2009 C:\Windows\system32\drivers\fltmgr.sys|FltMgr|Microsoft Corporation|6.1.7600.16385|Microsoft Filesystem Filter Manager|07/14/2009 C:\Windows\system32\DRIVERS\fvevol.sys|Bitlocker Drive Encryption Filter Driver|Microsoft Corporation|6.1.7601.17514|BitLocker Drive Encryption Driver|11/21/2010 C:\Windows\system32\DRIVERS\HDAudBus.sys|Microsoft UAA Bus Driver for High Definition Audio|Microsoft Corporation|6.1.7601.17514|High Definition Audio Bus Driver|11/21/2010 C:\Windows\system32\drivers\HdAudio.sys|Microsoft 1.1 UAA Function Driver for High Definition Audio Service|Microsoft Corporation|6.1.7601.17514|High Definition Audio Function Driver|11/21/2010 C:\Windows\system32\drivers\hidusb.sys|Microsoft HID Class Driver|Microsoft Corporation|6.1.7601.17514|USB Miniport Driver for Input Devices|11/21/2010 C:\Windows\system32\drivers\HTTP.sys|HTTP|Microsoft Corporation|6.1.7601.17514|HTTP Protocol Stack|11/21/2010 C:\Windows\system32\drivers\hwpolicy.sys|Hardware Policy Driver|Microsoft Corporation|6.1.7601.17514|Hardware Policy Driver|11/21/2010 C:\Windows\system32\DRIVERS\i8042prt.sys|i8042 Keyboard and PS/2 Mouse Port Driver|Microsoft Corporation|6.1.7600.16385|i8042 Port Driver|07/14/2009 C:\Windows\system32\drivers\intelide.sys|intelide|Microsoft Corporation|6.1.7600.16385|Intel PCI IDE Driver|07/14/2009 C:\Windows\system32\DRIVERS\intelppm.sys|Intel Processor Driver|Microsoft Corporation|6.1.7600.16385|Processor Device Driver|07/14/2009 C:\Windows\system32\DRIVERS\kbdclass.sys|Keyboard Class Driver|Microsoft Corporation|6.1.7600.16385|Keyboard Class Driver|07/14/2009 C:\Windows\system32\Drivers\ksecdd.sys|KSecDD|Microsoft Corporation|6.1.7601.18443|Kernel Security Support Provider Interface|08/29/2014 C:\Windows\system32\Drivers\ksecpkg.sys|KSecPkg|Microsoft Corporation|6.1.7601.18443|Kernel Security Support Provider Interface Packages|08/29/2014 C:\Windows\system32\DRIVERS\lltdio.sys|Link-Layer Topology Discovery Mapper I/O Driver|Microsoft Corporation|6.1.7600.16385|Link-Layer Topology Mapper I/O Driver|07/14/2009 C:\Windows\system32\drivers\lsi_sas.sys|LSI_SAS|LSI Corporation|1.28.3.52|LSI Fusion-MPT SAS Driver (StorPort)|07/14/2009 C:\Windows\system32\drivers\luafv.sys|UAC File Virtualization|Microsoft Corporation|6.1.7600.16385|LUA File Virtualization Filter Driver|07/14/2009 C:\Windows\system32\DRIVERS\monitor.sys|Microsoft Monitor Class Function Driver Service|Microsoft Corporation|6.1.7600.16385|Monitor Driver|07/14/2009 C:\Windows\system32\DRIVERS\mouclass.sys|Mouse Class Driver|Microsoft Corporation|6.1.7600.16385|Mouse Class Driver|07/14/2009 C:\Windows\system32\DRIVERS\mouhid.sys|Mouse HID Driver|Microsoft Corporation|6.1.7600.16385|HID Mouse Filter Driver|07/14/2009 C:\Windows\system32\drivers\mountmgr.sys|Mount Point Manager|Microsoft Corporation|6.1.7601.17514|Mount Point Manager|11/21/2010 C:\Windows\system32\drivers\mpsdrv.sys|Windows Firewall Authorization Driver|Microsoft Corporation|6.1.7600.16385|Microsoft Protection Service Driver|07/14/2009 C:\Windows\system32\DRIVERS\mrxsmb.sys|SMB MiniRedirector Wrapper and Engine|Microsoft Corporation|6.1.7601.17605|Windows NT SMB Minirdr|08/29/2014 C:\Windows\system32\DRIVERS\mrxsmb10.sys|SMB 1.x MiniRedirector|Microsoft Corporation|6.1.7601.17647|Longhorn SMB Downlevel SubRdr|08/29/2014 C:\Windows\system32\DRIVERS\mrxsmb20.sys|SMB 2.0 MiniRedirector|Microsoft Corporation|6.1.7601.17605|Longhorn SMB 2.0 Redirector|08/29/2014 C:\Windows\system32\drivers\msahci.sys|msahci|Microsoft Corporation|6.1.7601.17514|MS AHCI 1.0 Standard Driver|11/21/2010 C:\Windows\system32\drivers\Msfs.sys|Msfs|Microsoft Corporation|6.1.7600.16385|Mailslot driver|07/14/2009 C:\Windows\system32\drivers\msisadrv.sys|msisadrv|Microsoft Corporation|6.1.7600.16385|ISA Driver|07/14/2009 C:\Windows\system32\DRIVERS\mssmbios.sys|Microsoft System Management BIOS Driver|Microsoft Corporation|6.1.7600.16385|System Management BIOS Driver|07/14/2009 C:\Windows\system32\Drivers\mup.sys|Mup|Microsoft Corporation|6.1.7600.16385|Multiple UNC Provider Driver|07/14/2009 C:\Windows\system32\drivers\ndis.sys|NDIS System Driver|Microsoft Corporation|6.1.7601.17514|NDIS 6.20 driver|11/21/2010 C:\Windows\system32\DRIVERS\ndistapi.sys|Remote Access NDIS TAPI Driver|Microsoft Corporation|6.1.7600.16385|NDIS 3.0 connection wrapper driver|07/14/2009 C:\Windows\system32\DRIVERS\ndiswan.sys|Remote Access NDIS WAN Driver|Microsoft Corporation|6.1.7601.17514|MS PPP Framing Driver (Strong Encryption)|11/21/2010 C:\Windows\system32\drivers\NDProxy.sys|NDIS Proxy|Microsoft Corporation|6.1.7601.17514|NDIS Proxy|11/21/2010 C:\Windows\system32\DRIVERS\netbios.sys|NetBIOS Interface|Microsoft Corporation|6.1.7600.16385|NetBIOS interface driver|07/14/2009 C:\Windows\system32\DRIVERS\netbt.sys|NetBT|Microsoft Corporation|6.1.7601.17514|MBT Transport driver|11/21/2010 C:\Windows\system32\drivers\npf.sys|NetGroup Packet Filter Driver|CACE Technologies, Inc.|4.1.0.2001|npf.sys (NT5/6 x86) Kernel Driver|06/26/2010 C:\Windows\system32\drivers\Npfs.sys|Npfs|Microsoft Corporation|6.1.7600.16385|NPFS Driver|07/14/2009 C:\Windows\system32\drivers\nsiproxy.sys|NSI proxy service driver.|Microsoft Corporation|6.1.7600.16385|NSI Proxy|07/14/2009 C:\Windows\system32\drivers\Ntfs.sys|Ntfs|Microsoft Corporation|6.1.7601.18127|NT File System Driver|08/29/2014 C:\Windows\system32\drivers\Null.sys|Null|Microsoft Corporation|6.1.7600.16385|NULL Driver|07/14/2009 C:\Windows\system32\DRIVERS\pacer.sys|QoS Packet Scheduler|Microsoft Corporation|6.1.7600.16385|QoS Packet Scheduler|07/14/2009 C:\Windows\system32\DRIVERS\parport.sys|Parallel port driver|Microsoft Corporation|6.1.7600.16385|Parallel Port Driver|07/14/2009 C:\Windows\system32\drivers\partmgr.sys|Partition Manager|Microsoft Corporation|6.1.7601.17796|Partition Management Driver|08/29/2014 C:\Windows\system32\DRIVERS\parvdm.sys|Parvdm|Microsoft Corporation|6.1.7600.16385|VDM Parallel Driver|07/14/2009 C:\Windows\system32\drivers\pci.sys|PCI Bus Driver|Microsoft Corporation|6.1.7601.17514|NT Plug and Play PCI Enumerator|11/21/2010 C:\Windows\system32\drivers\pcw.sys|Performance Counters for Windows Driver|Microsoft Corporation|6.1.7600.16385|Performance Counters for Windows Driver|07/14/2009 C:\Windows\system32\drivers\peauth.sys|PEAUTH|Microsoft Corporation|6.1.7600.16385|Protected Environment Authentication and Authorization Export Driver|07/14/2009 C:\Windows\system32\DRIVERS\pnpmem.sys|Microsoft Memory Module Driver|Microsoft Corporation|6.1.7600.16385|Plug and Play Memory Driver|07/14/2009 C:\Windows\system32\DRIVERS\rasl2tp.sys|WAN Miniport (L2TP)|Microsoft Corporation|6.1.7600.16385|RAS L2TP mini-port/call-manager driver|07/14/2009 C:\Windows\system32\DRIVERS\raspppoe.sys|Remote Access PPPOE Driver|Microsoft Corporation|6.1.7600.16385|RAS PPPoE mini-port/call-manager driver|07/14/2009 C:\Windows\system32\DRIVERS\raspptp.sys|WAN Miniport (PPTP)|Microsoft Corporation|6.1.7600.16385|Peer-to-Peer Tunneling Protocol|07/14/2009 C:\Windows\system32\DRIVERS\rassstp.sys|WAN Miniport (SSTP)|Microsoft Corporation|6.1.7600.16385|RAS SSTP Miniport Call Manager|07/14/2009 C:\Windows\system32\DRIVERS\rdbss.sys|Redirected Buffering Sub Sysytem|Microsoft Corporation|6.1.7601.17514|Redirected Drive Buffering SubSystem Driver|11/21/2010 C:\Windows\system32\DRIVERS\rdpbus.sys|Remote Desktop Device Redirector Bus Driver|Microsoft Corporation|6.1.7600.16385|Microsoft RDP Bus Device driver|07/14/2009 C:\Windows\system32\DRIVERS\RDPCDD.sys|RDPCDD|Microsoft Corporation|6.1.7601.17514|RDP Miniport|11/21/2010 C:\Windows\system32\drivers\rdpencdd.sys|RDP Encoder Mirror Driver|Microsoft Corporation|6.1.7600.16385|RDP Encoder Miniport|07/14/2009 C:\Windows\system32\drivers\rdprefmp.sys|Reflector Display Driver used to gain access to graphics data|Microsoft Corporation|6.1.7600.16385|RDP Reflector Driver Miniport|07/14/2009 C:\Windows\system32\drivers\rdyboost.sys|ReadyBoost|Microsoft Corporation|6.1.7601.17514|ReadyBoost Driver|11/21/2010 C:\Windows\system32\DRIVERS\rspndr.sys|Link-Layer Topology Discovery Responder|Microsoft Corporation|6.1.7600.16385|Link-Layer Topology Responder Driver for NDIS 6|07/14/2009 C:\Windows\system32\drivers\secdrv.sys|Security Driver|Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.|4.3.86.0|Macrovision SECURITY Driver|07/14/2009 C:\Windows\system32\DRIVERS\serenum.sys|Serenum Filter Driver|Microsoft Corporation|6.1.7600.16385|Serial Port Enumerator|07/14/2009 C:\Windows\system32\DRIVERS\serial.sys|Serial port driver|Microsoft Corporation|6.1.7600.16385|Serial Device Driver|07/14/2009 C:\Windows\system32\drivers\spldr.sys|Security Processor Loader Driver|Microsoft Corporation|6.1.7127.0|loader for security processor|07/14/2009 C:\Windows\system32\DRIVERS\srv.sys|Server SMB 1.xxx Driver|Microsoft Corporation|6.1.7601.17608|Server driver|08/29/2014 C:\Windows\system32\DRIVERS\srv2.sys|Server SMB 2.xxx Driver|Microsoft Corporation|6.1.7601.17608|Smb 2.0 Server driver|08/29/2014 C:\Windows\system32\DRIVERS\srvnet.sys|srvnet|Microsoft Corporation|6.1.7601.17608|Server Network driver|08/29/2014 C:\Windows\system32\DRIVERS\swenum.sys|Software Bus Driver|Microsoft Corporation|6.1.7600.16385|Plug and Play Software Device Enumerator|07/14/2009 C:\Windows\system32\drivers\tcpip.sys|TCP/IP Protocol Driver|Microsoft Corporation|6.1.7601.18203|TCP/IP Driver|08/29/2014 C:\Windows\system32\drivers\tcpipreg.sys|TCP/IP Registry Compatibility|Microsoft Corporation|6.1.7601.17514|TCP/IP Registry Compatibility Driver|11/21/2010 C:\Windows\system32\DRIVERS\tdx.sys|NetIO Legacy TDI Support Driver|Microsoft Corporation|6.1.7601.17514|TDI Translation Driver|11/21/2010 C:\Windows\system32\DRIVERS\termdd.sys|Terminal Device Driver|Microsoft Corporation|6.1.7601.17514|Remote Desktop Server Driver|11/21/2010 C:\Windows\system32\DRIVERS\tunnel.sys|Microsoft Tunnel Miniport Adapter Driver|Microsoft Corporation|6.1.7601.17514|Microsoft Tunnel Interface Driver|11/21/2010 C:\Windows\system32\DRIVERS\umbus.sys|UMBus Enumerator Driver|Microsoft Corporation|6.1.7601.17514|User-Mode Bus Enumerator|11/21/2010 C:\Windows\system32\DRIVERS\usbccgp.sys|Microsoft USB Generic Parent Driver|Microsoft Corporation|6.1.7601.18328|USB Common Class Generic Parent Driver|08/29/2014 C:\Windows\system32\DRIVERS\usbehci.sys|Microsoft USB 2.0 Enhanced Host Controller Miniport Driver|Microsoft Corporation|6.1.7601.18328|EHCI eUSB Miniport Driver|08/29/2014 C:\Windows\system32\DRIVERS\usbhub.sys|Microsoft USB Standard Hub Driver|Microsoft Corporation|6.1.7601.18328|Default Hub Driver for USB|08/29/2014 C:\Windows\system32\DRIVERS\usbuhci.sys|Microsoft USB Universal Host Controller Miniport Driver|Microsoft Corporation|6.1.7601.18328|UHCI USB Miniport Driver|08/29/2014 C:\Windows\system32\drivers\vdrvroot.sys|Microsoft Virtual Drive Enumerator Driver|Microsoft Corporation|6.1.7600.16385|Virtual Drive Root Enumerator|07/14/2009 C:\Windows\system32\drivers\vga.sys|VgaSave|Microsoft Corporation|6.1.7600.16385|VGA/Super VGA Video Driver|07/14/2009 C:\Windows\system32\DRIVERS\vm3dmp.sys|vm3dmp|VMware, Inc.|8.14.1.51|VMware SVGA 3D Miniport|11/20/2014 C:\Windows\system32\DRIVERS\vmci.sys|VMware VMCI Bus Driver|VMware, Inc.|9.5.10.0|VMware PCI VMCI Bus Device|10/08/2013 C:\Windows\system32\drivers\vmhgfs.sys|VMware Host Guest Client Redirector|VMware, Inc.|9.2.86.0|VMware HGFS File System Driver|07/08/2014 C:\Windows\system32\DRIVERS\vmmouse.sys|VMware Pointing Device|VMware, Inc.|12.5.2.0|VMware Pointing PS/2 Device Driver|03/21/2014 C:\Windows\system32\drivers\vmstorfl.sys|Disk Virtual Machine Bus Acceleration Filter Driver|Microsoft Corporation|6.1.7601.17514|Virtual Storage Filter Driver|04/12/2011 C:\Windows\system32\DRIVERS\vmusbmouse.sys|VMware USB Pointing Device|VMware, Inc.|12.5.2.0|VMware Pointing USB Device Driver|03/21/2014 C:\Windows\system32\drivers\volmgr.sys|Volume Manager Driver|Microsoft Corporation|6.1.7601.17514|Volume Manager Driver|11/21/2010 C:\Windows\system32\drivers\volmgrx.sys|Dynamic Volume Manager|Microsoft Corporation|6.1.7600.16385|Volume Manager Extension Driver|07/14/2009 C:\Windows\system32\drivers\volsnap.sys|Storage volumes|Microsoft Corporation|6.1.7601.17514|Volume Shadow Copy Driver|11/21/2010 C:\Windows\system32\drivers\vsock.sys|vSockets Driver|VMware, Inc.|9.6.2.0|VMware vSockets Service|07/08/2014 C:\Windows\system32\DRIVERS\wanarp.sys|Remote Access IPv6 ARP Driver|Microsoft Corporation|6.1.7601.17514|MS Remote Access and Routing ARP Driver|11/21/2010 C:\Windows\system32\drivers\Wdf01000.sys|Kernel Mode Driver Frameworks service|Microsoft Corporation|1.11.9200.16648|Kernel Mode Driver Framework Runtime|08/29/2014 C:\Windows\system32\DRIVERS\wfplwf.sys|WFP Lightweight Filter|Microsoft Corporation|6.1.7600.16385|WFP NDIS 6.20 Lightweight Filter Driver|07/14/2009 C:\Windows\system32\drivers\ws2ifsl.sys|Windows Socket 2.0 Non-IFS Service Provider Support Environment|Microsoft Corporation|6.1.7600.16385|Winsock2 IFS Layer|07/14/2009 C:\Windows\system32\drivers\WudfPf.sys|User Mode Driver Frameworks Platform Driver|Microsoft Corporation|6.1.7601.17514|Windows Driver Foundation - User-mode Driver Framework Platform Driver|11/21/2010 [NTLog_Errors] <--[ Application Log ] [ Type: Error ] [ Record #4523 ] [ 06/03/2015 - 20:11:33 UTC ] [ Source: Microsoft-Windows-WMI ] [ EventID: -1073741814 ] [ EventCode: 10 ] [ User: ] Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. <--[ Application Log ] [ Type: Error ] [ Record #4475 ] [ 04/15/2015 - 07:16:29 UTC ] [ Source: VSS ] [ EventID: 8193 ] [ EventCode: 8193 ] [ User: ] Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, A system shutdown is in progress. . Operation: Instantiating VSS server <--[ Application Log ] [ Type: Error ] [ Record #4474 ] [ 04/15/2015 - 07:16:29 UTC ] [ Source: VSS ] [ EventID: 13 ] [ EventCode: 13 ] [ User: ] Volume Shadow Copy Service information: The COM Server with CLSID {e579ab5f-1cc4-44b4-bed9-de0991ff0623} and name IVssCoordinatorEx2 cannot be started. [0x8007045b, A system shutdown is in progress. ] Operation: Instantiating VSS server <--[ Application Log ] [ Type: Error ] [ Record #4473 ] [ 04/15/2015 - 07:16:29 UTC ] [ Source: VSS ] [ EventID: 8193 ] [ EventCode: 8193 ] [ User: ] Volume Shadow Copy Service error: Unexpected error calling routine OpenSCManager(NULL,NULL,SC_MANAGER_CONNECT). hr = 0x8007045b, A system shutdown is in progress. . Operation: Initialize For Backup <--[ Application Log ] [ Type: Error ] [ Record #4472 ] [ 04/15/2015 - 07:16:28 UTC ] [ Source: VSS ] [ EventID: 8193 ] [ EventCode: 8193 ] [ User: ] Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, A system shutdown is in progress. . Operation: Instantiating VSS server <--[ Application Log ] [ Type: Error ] [ Record #4471 ] [ 04/15/2015 - 07:16:28 UTC ] [ Source: VSS ] [ EventID: 13 ] [ EventCode: 13 ] [ User: ] Volume Shadow Copy Service information: The COM Server with CLSID {e579ab5f-1cc4-44b4-bed9-de0991ff0623} and name IVssCoordinatorEx2 cannot be started. [0x8007045b, A system shutdown is in progress. ] Operation: Instantiating VSS server <--[ Application Log ] [ Type: Error ] [ Record #4470 ] [ 04/15/2015 - 07:16:28 UTC ] [ Source: VSS ] [ EventID: 8193 ] [ EventCode: 8193 ] [ User: ] Volume Shadow Copy Service error: Unexpected error calling routine OpenSCManager(NULL,NULL,SC_MANAGER_CONNECT). hr = 0x8007045b, A system shutdown is in progress. . Operation: Initialize For Backup <--[ Application Log ] [ Type: Error ] [ Record #4469 ] [ 04/15/2015 - 07:16:28 UTC ] [ Source: VSS ] [ EventID: 8193 ] [ EventCode: 8193 ] [ User: ] Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, A system shutdown is in progress. . Operation: Instantiating VSS server <--[ Application Log ] [ Type: Error ] [ Record #4468 ] [ 04/15/2015 - 07:16:28 UTC ] [ Source: VSS ] [ EventID: 13 ] [ EventCode: 13 ] [ User: ] Volume Shadow Copy Service information: The COM Server with CLSID {e579ab5f-1cc4-44b4-bed9-de0991ff0623} and name IVssCoordinatorEx2 cannot be started. [0x8007045b, A system shutdown is in progress. ] Operation: Instantiating VSS server <--[ Application Log ] [ Type: Error ] [ Record #4467 ] [ 04/15/2015 - 07:16:28 UTC ] [ Source: VSS ] [ EventID: 8193 ] [ EventCode: 8193 ] [ User: ] Volume Shadow Copy Service error: Unexpected error calling routine OpenSCManager(NULL,NULL,SC_MANAGER_CONNECT). hr = 0x8007045b, A system shutdown is in progress. . Operation: Initialize For Backup <--[ Application Log ] [ Type: Error ] [ Record #4455 ] [ 04/01/2015 - 02:33:40 UTC ] [ Source: NTP ] [ EventID: -1073741823 ] [ EventCode: 1 ] [ User: ] 2 ctr samples exceed +/- 976 PPM range gate <--[ Application Log ] [ Type: Error ] [ Record #4428 ] [ 03/11/2015 - 15:42:25 UTC ] [ Source: SideBySide ] [ EventID: -1056899039 ] [ EventCode: 33 ] [ User: ] Activation context generation failed for "C:\Program Files\Microsoft Visual Studio 10.0\Common7\Packages\Debugger\X64\msvsmon.exe". Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. <--[ Application Log ] [ Type: Error ] [ Record #4425 ] [ 03/11/2015 - 14:50:51 UTC ] [ Source: Application Error ] [ EventID: 1000 ] [ EventCode: 1000 ] [ User: ] Faulting application name: explorer.exe, version: 6.1.7601.17514, time stamp: 0x4ce796f3 Faulting module name: ntdll.dll, version: 6.1.7601.18205, time stamp: 0x51db96c5 Exception code: 0xc0000374 Fault offset: 0x000c385b Faulting process id: 0xbd4 Faulting application start time: 0x01d054f53ebcccc9 Faulting application path: C:\Windows\explorer.exe Faulting module path: C:\Windows\SYSTEM32\ntdll.dll Report Id: 02584dd5-c7fe-11e4-bab6-000c29e0acdd <--[ Application Log ] [ Type: Error ] [ Record #4366 ] [ 03/06/2015 - 11:19:40 UTC ] [ Source: NTP ] [ EventID: -1073741823 ] [ EventCode: 1 ] [ User: ] 3 ctr samples exceed +/- 976 PPM range gate <--[ Application Log ] [ Type: Error ] [ Record #4348 ] [ 03/02/2015 - 10:02:11 UTC ] [ Source: SideBySide ] [ EventID: -1056899039 ] [ EventCode: 33 ] [ User: ] Activation context generation failed for "C:\Program Files\Microsoft Visual Studio 10.0\Common7\Packages\Debugger\X64\msvsmon.exe". Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. <--[ Application Log ] [ Type: Error ] [ Record #4277 ] [ 02/19/2015 - 06:47:59 UTC ] [ Source: NTP ] [ EventID: -1073741823 ] [ EventCode: 1 ] [ User: ] 1 ctr samples exceed +/- 976 PPM range gate <--[ Application Log ] [ Type: Error ] [ Record #4267 ] [ 02/18/2015 - 15:17:48 UTC ] [ Source: Microsoft-Windows-WMI ] [ EventID: -1073741814 ] [ EventCode: 10 ] [ User: ] Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. <--[ Application Log ] [ Type: Error ] [ Record #4205 ] [ 02/18/2015 - 09:00:26 UTC ] [ Source: SideBySide ] [ EventID: -1056899039 ] [ EventCode: 33 ] [ User: ] Activation context generation failed for "C:\Program Files\Microsoft Visual Studio 10.0\Common7\Packages\Debugger\X64\msvsmon.exe". Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. <--[ Application Log ] [ Type: Error ] [ Record #4201 ] [ 02/17/2015 - 07:54:42 UTC ] [ Source: NTP ] [ EventID: -1073741823 ] [ EventCode: 1 ] [ User: ] 3 ctr samples exceed +/- 976 PPM range gate <--[ System Log ] [ Type: Error ] [ Record #6068 ] [ 02/18/2015 - 15:17:05 UTC ] [ Source: Service Control Manager ] [ EventID: -1073734824 ] [ EventCode: 7000 ] [ User: ] The SQL Server (SQLEXPRESS) service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion. <--[ System Log ] [ Type: Error ] [ Record #6067 ] [ 02/18/2015 - 15:17:05 UTC ] [ Source: Service Control Manager ] [ EventID: -1073734815 ] [ EventCode: 7009 ] [ User: ] A timeout was reached (30000 milliseconds) while waiting for the SQL Server (SQLEXPRESS) service to connect. [NTLog_Warnings] <--[ Application Log ] [ Type: Warning ] [ Record #4568 ] [ 06/03/2015 - 20:13:11 UTC ] [ Source: Microsoft-Windows-MSDTC Client 2 ] [ EventID: -2147478769 ] [ EventCode: 4879 ] [ User: ] MSDTC encountered an error (HR=0x80000171) while attempting to establish a secure connection with system ATIS-NAS. <--[ Application Log ] [ Type: Warning ] [ Record #4565 ] [ 06/03/2015 - 20:12:42 UTC ] [ Source: VMware Tools ] [ EventID: 1000 ] [ EventCode: 1000 ] [ User: NT AUTHORITY\SYSTEM ] [ warning] [vmvss:vmvss] CVmSnapshotRequestor::UnregisterProviderImpl():1878: failed to unregister provider, error 0x80042307 (I) <--[ Application Log ] [ Type: Warning ] [ Record #4466 ] [ 04/15/2015 - 07:16:23 UTC ] [ Source: Microsoft-Windows-User Profiles Service ] [ EventID: 1530 ] [ EventCode: 1530 ] [ User: NT AUTHORITY\SYSTEM ] Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 2 user registry handles leaked from \Registry\User\S-1-5-21-3355312943-2388661055-4137282587-1002: Process 2204 (\Device\HarddiskVolume2\Windows\System32\conhost.exe) has opened key \REGISTRY\USER\S-1-5-21-3355312943-2388661055- 4137282587-1002\Control Panel\International Process 2388 (\Device\HarddiskVolume2\Program Files\PostgreSQL\8.2\bin\postgres.exe) has opened key \REGISTRY\USER\S-1-5-21-3355312943- 2388661055-4137282587-1002\Control Panel\International <--[ Application Log ] [ Type: Warning ] [ Record #4463 ] [ 04/15/2015 - 07:16:16 UTC ] [ Source: Microsoft-Windows-User Profiles Service ] [ EventID: 1530 ] [ EventCode: 1530 ] [ User: NT AUTHORITY\SYSTEM ] Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 2 user registry handles leaked from \Registry\User\S-1-5-21-3355312943-2388661055-4137282587-1000: Process 524 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3355312943-2388661055- 4137282587-1000 Process 524 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3355312943-2388661055- 4137282587-1000\Software\Microsoft\SystemCertificates\Root <--[ Application Log ] [ Type: Warning ] [ Record #4458 ] [ 04/15/2015 - 07:16:17 UTC ] [ Source: VMware Tools ] [ EventID: 1000 ] [ EventCode: 1000 ] [ User: NT AUTHORITY\SYSTEM ] [ warning] [vmsvc:autoUpgrade] vmx returned Autoupgrade at shutdown is disabled for guest.initiateUpgradeAtShutdown. <--[ Application Log ] [ Type: Warning ] [ Record #4441 ] [ 03/31/2015 - 07:59:24 UTC ] [ Source: MsiInstaller ] [ EventID: 1032 ] [ EventCode: 1032 ] [ User: ATIS-NAS\atis ] An error occured while refreshing environment variables updated during the installation of ''. Some users logged on to the machine may not see these changes until they log off and then log back on. <--[ Application Log ] [ Type: Warning ] [ Record #4424 ] [ 03/11/2015 - 14:48:26 UTC ] [ Source: Microsoft-Windows-CAPI2 ] [ EventID: 4102 ] [ EventCode: 4102 ] [ User: ] Reached crypt32 threshold of 50 events and will suspend logging for 60 minutes. <--[ Application Log ] [ Type: Warning ] [ Record #4343 ] [ 03/02/2015 - 09:30:41 UTC ] [ Source: Microsoft-Windows-CAPI2 ] [ EventID: 4102 ] [ EventCode: 4102 ] [ User: ] Reached crypt32 threshold of 50 events and will suspend logging for 60 minutes. <--[ Application Log ] [ Type: Warning ] [ Record #4276 ] [ 02/18/2015 - 15:24:11 UTC ] [ Source: VMware Tools ] [ EventID: 1000 ] [ EventCode: 1000 ] [ User: ATIS-NAS\atis ] [ warning] [vmusr:vmusr] pbrpc::AsyncSocketRpcServer::SocketErrorOccurred: An error 4 occurred on Socket 96C338 <--[ Application Log ] [ Type: Warning ] [ Record #4258 ] [ 02/18/2015 - 15:17:39 UTC ] [ Source: Microsoft-Windows-Complus ] [ EventID: -2147348136 ] [ EventCode: 4440 ] [ User: ] The CRM log file was originally created on a computer with a different name. It has been updated with the name of the current computer. If this warning appears when the computer name has been changed then no further action is required. 01803-00001 Server Application ID: {02D4B3F1-FD88-11D1-960D-00805FC79235} Server Application Instance ID: {102664FA-BB0D-4974-A7E0-3C192B53F594} Server Application Name: System Application Comsvcs.dll file version: ENU 2001.12.8530.16385 shp <--[ Application Log ] [ Type: Warning ] [ Record #4215 ] [ 02/18/2015 - 15:15:08 UTC ] [ Source: VMware Tools ] [ EventID: 1000 ] [ EventCode: 1000 ] [ User: NT AUTHORITY\SYSTEM ] [ warning] [vmsvc:autoUpgrade] vmx returned Autoupgrade is not supported for guest.initiateUpgradeAtShutdown. <--[ System Log ] [ Type: Warning ] [ Record #6402 ] [ 06/03/2015 - 20:12:23 UTC ] [ Source: Microsoft-Windows-DNS-Client ] [ EventID: 1014 ] [ EventCode: 1014 ] [ User: NT AUTHORITY\NETWORK SERVICE ] Name resolution for the name www.jetscreenshot.com timed out after none of the configured DNS servers responded. <--[ System Log ] [ Type: Warning ] [ Record #6164 ] [ 03/02/2015 - 09:27:56 UTC ] [ Source: Microsoft-Windows-DNS-Client ] [ EventID: 1014 ] [ EventCode: 1014 ] [ User: NT AUTHORITY\NETWORK SERVICE ] Name resolution for the name dns.msftncsi.com timed out after none of the configured DNS servers responded. <--[ System Log ] [ Type: Warning ] [ Record #5920 ] [ 02/16/2015 - 13:22:52 UTC ] [ Source: Microsoft-Windows-DNS-Client ] [ EventID: 1014 ] [ EventCode: 1014 ] [ User: NT AUTHORITY\NETWORK SERVICE ] Name resolution for the name www.microsoft.com timed out after none of the configured DNS servers responded. <--[ System Log ] [ Type: Warning ] [ Record #5917 ] [ 02/16/2015 - 13:19:17 UTC ] [ Source: Microsoft-Windows-DNS-Client ] [ EventID: 1014 ] [ EventCode: 1014 ] [ User: NT AUTHORITY\NETWORK SERVICE ] Name resolution for the name www.microsoft.com timed out after none of the configured DNS servers responded. [NTLog_ChkDsk] No Records Found [QuickFixEngineering] (1) KB2479943|8/29/2014 (2) KB2503665|8/29/2014 (3) KB2506212|8/29/2014 (4) KB2509553|8/29/2014 (5) KB2510531|8/29/2014 (6) KB2511455|8/29/2014 (7) KB2532531|8/29/2014 (8) KB2534111|7/8/2014 (9) KB2536275|8/29/2014 (10) KB2536276|8/29/2014 (11) KB2544893|8/29/2014 (12) KB2552343|8/29/2014 (13) KB2560656|8/29/2014 (14) KB2564958|8/29/2014 (15) KB2570947|8/29/2014 (16) KB2579686|8/29/2014 (17) KB2584146|8/29/2014 (18) KB2585542|8/29/2014 (19) KB2604115|8/29/2014 (20) KB2619339|8/29/2014 (21) KB2620704|8/29/2014 (22) KB2621440|8/29/2014 (23) KB2631813|8/29/2014 (24) KB2644615|8/29/2014 (25) KB2653956|8/29/2014 (26) KB2654428|8/29/2014 (27) KB2655992|8/29/2014 (28) KB2656356|8/29/2014 (29) KB2667402|8/29/2014 (30) KB2676562|8/29/2014 (31) KB2685939|8/29/2014 (32) KB2690533|8/29/2014 (33) KB2698365|8/29/2014 (34) KB2705219|8/29/2014 (35) KB2712808|8/29/2014 (36) KB2719985|8/29/2014 (37) KB2727528|8/29/2014 (38) KB2729452|8/29/2014 (39) KB2736422|8/29/2014 (40) KB2742599|8/29/2014 (41) KB2743555|8/29/2014 (42) KB2756921|8/29/2014 (43) KB2757638|8/29/2014 (44) KB2758857|8/29/2014 (45) KB2770660|8/29/2014 (46) KB2785220|8/29/2014 (47) KB2789645|8/29/2014 (48) KB2803821|8/29/2014 (49) KB2807986|8/29/2014 (50) KB2813347|8/29/2014 (51) KB2813430|8/29/2014 (52) KB2832414|8/29/2014 (53) KB2834886|8/29/2014 (54) KB2835364|8/29/2014 (55) KB2839894|8/29/2014 (56) KB2840149|8/29/2014 (57) KB2840631|8/29/2014 (58) KB2844286|8/29/2014 (59) KB2847311|8/29/2014 (60) KB2847927|8/29/2014 (61) KB2849470|8/29/2014 (62) KB2855844|8/29/2014 (63) KB2859537|8/29/2014 (64) KB2861191|8/29/2014 (65) KB2861698|8/29/2014 (66) KB2861855|8/29/2014 (67) KB2862152|8/29/2014 (68) KB2862330|8/29/2014 (69) KB2862335|8/29/2014 (70) KB2862966|8/29/2014 (71) KB2862973|8/29/2014 (72) KB2863240|8/29/2014 (73) KB2864058|8/29/2014 (74) KB2864202|8/29/2014 (75) KB2868038|8/29/2014 (76) KB2868623|8/29/2014 (77) KB2868626|8/29/2014 (78) KB2871997|8/29/2014 (79) KB2876284|8/29/2014 (80) KB2876331|8/29/2014 (81) KB2884256|8/29/2014 (82) KB2887069|8/29/2014 (83) KB2892074|8/29/2014 (84) KB2893294|8/29/2014 (85) KB2898857|8/29/2014 (86) KB2900986|8/29/2014 (87) KB2904266|8/29/2014 (88) KB2909210|8/29/2014 (89) KB2911501|8/29/2014 (90) KB2916036|8/29/2014 (91) KB2922229|8/29/2014 (92) KB2926765|8/29/2014 (93) KB2929961|8/29/2014 (94) KB2930275|8/29/2014 (95) KB2931356|8/29/2014 (96) KB2936068|8/29/2014 (97) KB2953522|8/29/2014 (98) KB976902|11/20/2010