0% found this document useful (0 votes)
1K views189 pages

Regrunlog

Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
1K views189 pages

Regrunlog

Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
You are on page 1/ 189

SpyHolesList Version:17.8 Build:11.99.0.

999-64b
09.10.2020 09:26:23 Geo: BR-Portuguese
WinDir=C:\Windows
Startup=C:\Users\Luis Fernando\AppData\Roaming\Microsoft\Windows\Start
Menu\Programs\Startup\
Common Startup=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
Windows 10 Home (10.0.18362)
Internet Explorer 9.11.18362.0
DBS Version: 2.1033
[EDGE CHROMIUM:Default:C:\Users\Luis Fernando\AppData\Local\Microsoft\Edge\User
Data\Default\]
[Google Chrome Settings] :HKLM backup.homepage=""
[Google Chrome Settings] :HKLM backup.session.urls_to_restore_on_startup=""
[Google Chrome Settings] :HKLM session.startup_urls=""
[Google Chrome Settings] :HKLM default_search_provider_data.favicon_url=""
[Google Chrome Settings] :HKLM default_search_provider_data.keyword=""
[Google Chrome Settings] :HKLM default_search_provider_data.short_name=""
[Google Chrome Settings] :HKLM default_search_provider_data.url=""
[Google Chrome Settings] :HKLM default_search_provider_data.suggestions_url=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.alternate_urls=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.favicon_url=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.keyword=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.short_name=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.url=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.suggest_url=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.new_tab_url=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.instant_url=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.image_url=""
[Google Chrome Settings] :HKLM homepage=""
[Google Chrome Settings] :HKLM session.urls_to_restore_on_startup=""
[Chrome Protected Settings] session.startup_urls=[]
[Google Chrome Addons] ihmafllikibpmigkcoadcmckbfhibefp=C:\Program Files
(x86)\Microsoft\Edge\Application\85.0.564.41\resources\edge_feedback
### Edge Feedback: User feedback extension
[Google Chrome Addons] ncbjelpjchkpbikbpkcchkhkblodoama=C:\Program Files
(x86)\Microsoft\Edge\Application\85.0.564.41\resources\webrtc_internals
### WebRTC Internals Extension:
[Google Chrome Addons] kmendfapggjehodndflmmgagdbamhnfd=C:\Program Files
(x86)\Microsoft\Edge\Application\85.0.564.41\resources\cryptotoken
### CryptoTokenExtension: CryptoToken Component Extension
[Google Chrome Addons] iglcjdemknebjbklcgkfaebgojjphkec=C:\Program Files
(x86)\Microsoft\Edge\Application\85.0.564.41\resources\microsoft_web_store
### Microsoft Store: Descubra as extens�es do Microsoft Edge.
[Google Chrome Addons] mhjfbmdgcfjbbpaeojofohoefgiehjai=C:\Program Files
(x86)\Microsoft\Edge\Application\85.0.564.41\resources\edge_pdf
### Microsoft Edge PDF Viewer:
[Google Chrome Addons] fikbjbembnmfhppjfnmfkahdhfohhjmg=C:\Program Files
(x86)\Microsoft\Edge\Application\85.0.564.41\resources\media_internals_services
### Media Internals Services Extension:
[Google Chrome Addons] jdiccldimpdaibmpdkjnbmckianbfold=C:\Program Files
(x86)\Microsoft\Edge\Application\85.0.564.41\resources\microsoft_voices
### Microsoft Voices: Provides access to Microsoft's online text-to-speech voices

[Google Chrome Addons] dgiklkfkllikcanfonkcabmbdfmgleag=C:\Program Files


(x86)\Microsoft\Edge\Application\85.0.564.41\resources\edge_clipboard
### Microsoft Clipboard Extension: This extension grants Microsoft web sites
permission to read and write from the clipboard.
[Google Chrome Addons] nkeimhogjdpnpccoofpliimaahmaaome=C:\Program Files
(x86)\Microsoft\Edge\Application\85.0.564.41\resources\hangout_services
### Google Hangouts:
[Google Chrome Addons] fogppepbgmgkpdkinbojbibkhoffpief=C:\Program Files
(x86)\Microsoft\Edge\Application\85.0.564.41\resources\edge_collections
### Edge Collections: Collections extension
[Internet Explorer]
[Default Home Page] :HKLM Default_Page_URL=http://go.microsoft.com/fwlink/p/?
LinkId=255141
[Current Home Page] :HKCU Start Page=http://dell17win10.msn.com/?pc=DCTE
[Current Home Page] :HKCU HOMEOldSP=""
[Current Home Page] :HKCU Default_Page_URL=http://dell17win10.msn.com/?pc=DCTE
[Current Home Page] :HKLM Start Page=http://go.microsoft.com/fwlink/p/?
LinkId=255141
[Current Home Page] :HKLM HOMEOldSP=""
[All Users Search] :HKLM Default_Search_URL=http://go.microsoft.com/fwlink/?
LinkId=54896
[All Users Search] :HKLM Search Page=http://go.microsoft.com/fwlink/?LinkId=54896
[Current Home Page(x64)] :HKLM Start Page=http://go.microsoft.com/fwlink/p/?
LinkId=255141
[Current Home Page(x64)] :HKLM HOMEOldSP=""
[All Users Search(x64)] :HKLM Default_Search_URL=http://go.microsoft.com/fwlink/?
LinkId=54896
[All Users Search(x64)] :HKLM Search Page=http://go.microsoft.com/fwlink/?
LinkId=54896
[Current Users Search] :HKCU Default_Search_URL=""
[Current Users Search] :HKCU Search Page=http://go.microsoft.com/fwlink/?
LinkId=54896
[Current Users Search] :HKCU Search Bar=""
[IE Local Blank Page] :HKCU Local Page=%11%\blank.htm
[IE Local Blank Page] :HKLM Local Page=C:\Windows\SysWOW64\blank.htm
[Browser Helper Objects] {1FD49718-1D00-4B19-AF5F-070AF6D5D54C}=C:\PROGRAM FILES
(X86)\MICROSOFT\EDGE\APPLICATION\85.0.564.70\BHO\IE_TO_EDGE_BHO.DLL
### IEToEdge BHO Microsoft Corporation IEToEdge BHO 85.0.564.70
->IE_TO_EDGE_BHO_DLL !$*C:\Program Files
(x86)\Microsoft\Edge\Application\85.0.564.70\BHO\ie_to_edge_bho.dll
[Browser Helper Objects] {8EE21263-8146-484A-A6ED-9C6E3ECCB96A}'
[Browser Helper Objects] {B164E929-A1B6-4A06-B104-2CD0E90A88FF}=C:\PROGRAM
FILES\MCAFEE\WEBADVISOR\WIN32\IEPLUGIN.DLL
### McAfee WebAdvisor McAfee, LLC McAfee WebAdvisor 4,1,1,0 ->MS INTERNET
EXPLORER PLUGIN DLL !$*C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll
[Browser Helper Objects(x64)] {1FD49718-1D00-4B19-AF5F-070AF6D5D54C}=C:\PROGRAM
FILES (X86)\MICROSOFT\EDGE\APPLICATION\85.0.564.70\BHO\IE_TO_EDGE_BHO_64.DLL
### IEToEdge BHO Microsoft Corporation IEToEdge BHO 85.0.564.70
->IE_TO_EDGE_BHO_64_DLL !$*C:\Program Files
(x86)\Microsoft\Edge\Application\85.0.564.70\BHO\ie_to_edge_bho_64.dll
[Browser Helper Objects(x64)] {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}=C:\PROGRAM
FILES\JAVA\JRE1.8.0_261\BIN\SSV.DLL
### Java(TM) Platform SE binary Oracle Corporation Java(TM) Platform SE 8 U261
8.0.2610.12 !$*C:\Program Files\Java\jre1.8.0_261\bin\ssv.dll
[Browser Helper Objects(x64)] {8EE21263-8146-484A-A6ED-9C6E3ECCB96A}'
[Browser Helper Objects(x64)] {B164E929-A1B6-4A06-B104-2CD0E90A88FF}=C:\PROGRAM
FILES\MCAFEE\WEBADVISOR\X64\IEPLUGIN.DLL
### McAfee WebAdvisor McAfee, LLC McAfee WebAdvisor 4,1,1,0 ->MS INTERNET
EXPLORER PLUGIN DLL !$*C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll
[Browser Helper Objects(x64)] {DBC80044-A445-435b-BC74-9C25C1C588A9}=C:\PROGRAM
FILES\JAVA\JRE1.8.0_261\BIN\JP2SSV.DLL
### Java(TM) Platform SE binary Oracle Corporation Java(TM) Platform SE 8 U261
8.0.2610.12 !$*C:\Program Files\Java\jre1.8.0_261\bin\jp2ssv.dll
[Auto Search URL] :HKCU provider=""
[Auto Search URL] :HKCU "Default Value"=""
[Search Assistant] :HKCU SearchAssistant=""
[Search Assistant] :HKLM SearchAssistant=""
[Search Assistant] :HKCU CustomizeSearch=""
[Search Assistant] :HKLM CustomizeSearch=""
[Search Provider] {9AA0E194-8A6A-46C6-ACBA-D3E87ADD2547}=""
[Search Provider] DefaultScope={9AA0E194-8A6A-46C6-ACBA-D3E87ADD2547}
[Search Provider for All Users] {9AA0E194-8A6A-46C6-ACBA-
D3E87ADD2547}=http://www.bing.com/search?
q={searchTerms}&form=PRDLR1&src=IE11TR&pc=DCTE
### Bing
[Search Provider for All Users] DefaultScope={9AA0E194-8A6A-46C6-ACBA-
D3E87ADD2547}
[Search Provider for All Users(x64)] {9AA0E194-8A6A-46C6-ACBA-
D3E87ADD2547}=http://www.bing.com/search?
q={searchTerms}&form=PRDLR1&src=IE11TR&pc=DCTE
### Bing
[Search Provider for All Users(x64)] DefaultScope={9AA0E194-8A6A-46C6-ACBA-
D3E87ADD2547}
[Search Provider(x64)] {9AA0E194-8A6A-46C6-ACBA-D3E87ADD2547}=""
[Search Provider(x64)] DefaultScope={9AA0E194-8A6A-46C6-ACBA-D3E87ADD2547}
[CustomizeSearch] :HKLM CustomizeSearch=""
[URLSearchHook] :HKCU {CFBFAE00-17A6-11D0-99CB-00C04FD64497}=""
[Search URL Template] :HKLM 1=""
[Search URL Template] :HKLM 2=""
[Search URL Template] :HKLM 3=""
[Search URL Template] :HKLM 4=""
[Default Prefix] :HKLM "Default Value"=http://
[URL Default Prefixes] :HKLM ftp=ftp://
[URL Default Prefixes] :HKLM home=http://
[URL Default Prefixes] :HKLM mosaic=http://
[URL Default Prefixes] :HKLM www=http://
[AboutURLs] :HKLM blank=res://mshtml.dll/blank.htm
[AboutURLs] :HKLM DesktopItemNavigationFailure=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM Home=270
[AboutURLs] :HKLM InPrivate=res://ieframe.dll/inprivate.htm
[AboutURLs] :HKLM NavigationCanceled=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM NavigationFailure=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM NoAdd-ons=res://ieframe.dll/noaddon.htm
[AboutURLs] :HKLM NoAdd-onsInfo=res://ieframe.dll/noaddoninfo.htm
[AboutURLs] :HKLM PostNotCached=res://ieframe.dll/repost.htm
[AboutURLs] :HKLM SecurityRisk=res://ieframe.dll/securityatrisk.htm
[User Style Sheet] :HKCU User Stylesheet=""
[User Style Sheet] :HKCU Use My Stylesheet=0
[Execute unsigned ActiveX in My Computer Zone] :HKCU 1201=0
[Execute unsigned ActiveX in My Computer Zone] :HKLM 1201=1
[Execute unsigned ActiveX in Local Intranet Zone] :HKCU 1201=0
[Execute unsigned ActiveX in Local Intranet Zone] :HKLM 1201=3
[Execute unsigned ActiveX in Internet Zone] :HKCU 1201=0
[Execute unsigned ActiveX in Internet Zone] :HKLM 1201=3
[Links Toolbar] :HKCU LinksFolderName=""
[Toolbars] :HKLM Locked=0
[Toolbars(x64)] :HKLM Locked=0
[IE Extensions - All Users] :HKLM {48A61126-9A19-4C50-A214-FF08CB94995C}
### Button=McAfee WebAdvisor Tools Menu Item=McAfee WebAdvisor CLSID={32CFFBE7-
8BB7-4BC3-83D8-8197671920D6}
[IE Extensions - All Users] :HKLM {92780B25-18CC-41C8-B9BE-
3C9C571A8263}=C:\PROGRA~2\MICROS~1\OFFICE12\REFIEBAR.DLL
### Allows you to use the Research Library and its collection of information
services from Microsoft Internet Explorer Microsoft Corporation Research Library
Explorer Bar 12.0.4518.1014 !$*C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
[Context menu items] :HKCU E&xportar para o Microsoft
Excel=res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
### File is missing. res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 Activated
when right clicked on: Default !
$*res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
[AutoConfigURL] :HKCU AutoConfigURL=""
[Protocols Filter] :HKLM application/octet-stream={1E66F26B-79EE-11D2-8710-
00C04F79ED0D}
[Protocols Filter] :HKLM application/x-complus={1E66F26B-79EE-11D2-8710-
00C04F79ED0D}
[Protocols Filter] :HKLM application/x-msdownload={1E66F26B-79EE-11D2-8710-
00C04F79ED0D}
[Protocols Filter] :HKLM
text/xml=C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
### Microsoft Office XML MIME Filter Microsoft Corporation Microsoft Office
InfoPath 12.0.4518.1014 !$*C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
[Protocols Handler] :HKLM about
[Protocols Handler] :HKLM cdl={3dd53d40-7b8b-11D0-b013-00aa0059ce02}
[Protocols Handler] :HKLM dvd={3dd53d40-7b8b-11D0-b013-00aa0059ce02}
[Protocols Handler] :HKLM file={79eac9e7-baf9-11ce-8c82-00aa004ba90b}
[Protocols Handler] :HKLM ftp={79eac9e3-baf9-11ce-8c82-00aa004ba90b}
[Protocols Handler] :HKLM http={79eac9e2-baf9-11ce-8c82-00aa004ba90b}
[Protocols Handler] :HKLM https={79eac9e5-baf9-11ce-8c82-00aa004ba90b}
[Protocols Handler] :HKLM its={79eac9e5-baf9-11ce-8c82-00aa004ba90b}
[Protocols Handler] :HKLM javascript={3050F3B2-98B5-11CF-BB82-00AA00BDCE0B}
[Protocols Handler] :HKLM local={79eac9e7-baf9-11ce-8c82-00aa004ba90b}
[Protocols Handler] :HKLM mailto={3050f3DA-98B5-11CF-BB82-00AA00BDCE0B}
[Protocols Handler] :HKLM mhtml={3050f3DA-98B5-11CF-BB82-00AA00BDCE0B}
[Protocols Handler] :HKLM mk={79eac9e6-baf9-11ce-8c82-00aa004ba90b}
[Protocols Handler] :HKLM ms-help=C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT
SHARED\HELP\HXDS.DLL
### Microsoft� Help Data Services Module Microsoft Corporation Microsoft� Help
2.7 2.07.61224.00 !$*c:\Program Files (x86)\Common Files\Microsoft
Shared\Help\hxds.dll
[Protocols Handler] :HKLM ms-its=C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT
SHARED\HELP\HXDS.DLL
### Microsoft� Help Data Services Module Microsoft Corporation Microsoft� Help
2.7 2.07.61224.00 !$*c:\Program Files (x86)\Common Files\Microsoft
Shared\Help\hxds.dll
[Protocols Handler] :HKLM res={3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}
[Protocols Handler] :HKLM tbauth={3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}
[Protocols Handler] :HKLM tv={3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}
[Protocols Handler] :HKLM vbscript={3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}
[Protocols Handler] :HKLM windows.tbauth={3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}
[Proxy] :HKCU ProxyServer=""
[Proxy] :HKCU ProxyEnable=0
[Network Settings]
[Name Server] {8871d096-fad8-4e45-bd50-90e402c335bd}=192.168.43.1
### DHCPNameServer:192.168.43.1 DhcpDefaultGateway:192.168.43.1
DhcpServer:192.168.43.1
[Name Server] {c203a461-afdb-4a31-8a1b-eeb06806ef5d}=172.16.1.1
### DHCPNameServer:172.16.1.1 DhcpDefaultGateway:172.16.1.250
DhcpServer:172.16.1.250
[Hosts File Path] :HKLM DataBasePath=%SystemRoot%\System32\drivers\etc
[Hosts File Contents] :HKLM 127.0.0.1 localhost
[Hosts File Contents] :HKLM ::1 localhost
[Hosts File Contents] :HKLM 127.0.0.1 ultramediaburner.com
[Hosts File Contents] :HKLM 127.0.0.1 pro-zipper.com
[Hosts File Contents] :HKLM 127.0.0.1 productsdetails.online
[Hosts File Contents] :HKLM 127.0.0.1 post-back-url.com
[Hosts File Contents] :HKLM 127.0.0.1 rothsideadome.pw
[Hosts File Contents] :HKLM 127.0.0.1 room1.360dev.info
[Hosts File Contents] :HKLM 127.0.0.1 telechargini.com
[Browsers]
[Installed Browsers] Firefox-308046B0AF4A39CB=C:\PROGRAM FILES\MOZILLA
FIREFOX\FIREFOX.EXE
### Firefox Mozilla Corporation Firefox 76.0.1 !$*C:\PROGRAM FILES\MOZILLA
FIREFOX\FIREFOX.EXE
[Installed Browsers] Google Chrome=C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
[Installed Browsers] IEXPLORE.EXE=C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
### Default Browser
Internet Explorer Microsoft Corporation Internet Explorer 11.00.18362.1 !
$*C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
[Installed Browsers] Microsoft Edge=C:\PROGRAM FILES
(X86)\MICROSOFT\EDGE\APPLICATION\MSEDGE.EXE
### Microsoft Edge Microsoft Corporation Microsoft Edge 85.0.564.70
->MSEDGE_EXE !$*C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\MSEDGE.EXE
[FireFox Browser Features] [email protected]=C:\PROGRAM FILES\MOZILLA
FIREFOX\browser\features\[email protected]
### =>Active:1 Sign:0?^:DoH Roll-Out: Mozilla add-on that supports the roll-out
of DoH
[FireFox Browser Features] [email protected]=C:\PROGRAM FILES\MOZILLA
FIREFOX\browser\features\[email protected]
### =>Active:1 Sign:0?^:Form Autofill
[FireFox Browser Features] [email protected]=C:\PROGRAM FILES\MOZILLA
FIREFOX\browser\features\[email protected]
### =>Active:1 Sign:0?^:Firefox Screenshots: Take clips and screenshots from the
Web and save them temporarily or permanently.
[FireFox Browser Features] [email protected]=C:\PROGRAM
FILES\MOZILLA FIREFOX\browser\features\[email protected]
### =>Active:0 Sign:0?^:WebCompat Reporter: Report site compatibility issues on
webcompat.com
[FireFox Browser Features] [email protected]=C:\PROGRAM FILES\MOZILLA
FIREFOX\browser\features\[email protected]
### =>Active:1 Sign:0?^:Web Compat: Urgent post-release fixes for web
compatibility.
[FireFox Settings] :HKLM browser.startup.homepage=""
[FireFox Settings] :HKLM browser.startup.homepage_override_url=""
[FireFox Settings] :HKLM browser.search.selectedEngine=""
[FireFox Settings] :HKLM browser.search.selectedEngine,S=""
[FireFox Settings] :HKLM browser.search.defaultEnginename=""
[FireFox Settings] :HKLM browser.search.defaultEnginename,S=""
[FireFox Settings] :HKLM browser.search.order.1=""
[FireFox Settings] :HKLM browser.search.order.1,S=""
[FireFox Settings] :HKLM browser.search.defaulturl=""
[FireFox Settings] :HKLM browser.newtab.url=""
[FireFox Settings] :HKLM keyword.URL=""
[FireFox Settings] :HKLM network.proxy.autoconfig_url=""
[FireFox Settings] :HKLM network.proxy.type=""
[FireFox Settings] :HKLM network.proxy.http=""
[FireFox Settings] :HKLM network.proxy.http_port=""
[FireFox Settings] :HKLM browser.search.searchengine.hp=""
[FireFox Settings] :HKLM browser.search.searchengine.sp=""
[FireFox Settings] :HKLM browser.search.searchengine.url=""
[FireFox Settings] :HKLM browser.search.selectedEngine=""
[Firefox Search Engine (search-metadata)] :HKLM [global].searchdefault=""
[Firefox Search Engine (search-metadata)] :HKLM [global].current=""
[Firefox SearchDefault (mozlz4)] :HKLM metaData.searchDefault=""
[Firefox SearchDefault (mozlz4)] :HKLM metaData.current=""
[Google Chrome Settings] :HKLM backup.homepage=""
[Google Chrome Settings] :HKLM backup.session.urls_to_restore_on_startup=""
[Google Chrome Settings] :HKLM session.startup_urls=""
[Google Chrome Settings] :HKLM default_search_provider_data.favicon_url=""
[Google Chrome Settings] :HKLM default_search_provider_data.keyword=""
[Google Chrome Settings] :HKLM default_search_provider_data.short_name=""
[Google Chrome Settings] :HKLM default_search_provider_data.url=""
[Google Chrome Settings] :HKLM default_search_provider_data.suggestions_url=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.alternate_urls=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.favicon_url=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.keyword=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.short_name=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.url=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.suggest_url=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.new_tab_url=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.instant_url=""
[Google Chrome Settings] :HKLM
default_search_provider_data.template_url_data.image_url=""
[Google Chrome Settings] :HKLM homepage=""
[Google Chrome Settings] :HKLM session.urls_to_restore_on_startup=""
[Chrome Protected Settings] search_web_data.url={google:baseURL}search?
q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}
{google:assistedQueryStats}{google:searchFieldtrialParameter}
{google:iOSSearchLanguage}{google:searchClient}{google:sourceId}
{google:contextualSearchVersion}ie={inputEncoding}
[Chrome Protected Settings] search_web_data.created_by_policy=0
[Chrome Protected Settings]
search_web_data.suggest_url={google:baseSuggestURL}search?
{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:sugge
stRid}&xssi=t&q={searchTerms}&{google:inputType}{google:omniboxFocusType}
{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}
{google:searchVersion}{google:sessionToken}
{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
[Chrome Protected Settings] session.startup_urls=["https:\/\/fanyv88.com:443\/http\/webmail.creci-
rs.gov.br\/","https:\/\/fanyv88.com:443\/http\/93.188.163.158\/phpmyadmin\/index.php","https:\/\/fanyv88.com:443\/http\/93.188.163.
158\/administrador\/","https:\/\/fanyv88.com:443\/http\/93.188.163.158\/dotproject\/index.php"]
[Chrome Protected Settings]
default_search_provider_data.template_url_data.alternate_urls=["{google:baseURL}#q=
{searchTerms}","{google:baseURL}search#q={searchTerms}","{google:baseURL}webhp#q={s
earchTerms}","{google:baseURL}s#q={searchTerms}","{google:baseURL}s?
q={searchTerms}"]
[Chrome Protected Settings]
default_search_provider_data.template_url_data.favicon_url=https://www.google.com/f
avicon.ico
[Chrome Protected Settings]
default_search_provider_data.template_url_data.image_url={google:baseURL}searchbyim
age/upload
[Chrome Protected Settings]
default_search_provider_data.template_url_data.suggestions_url={google:baseSuggestU
RL}search?
{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:sugge
stRid}&xssi=t&q={searchTerms}&{google:inputType}{google:omniboxFocusType}
{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}
{google:searchVersion}{google:sessionToken}
{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
[Chrome Protected Settings]
default_search_provider_data.template_url_data.url={google:baseURL}search?
q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}
{google:assistedQueryStats}{google:searchFieldtrialParameter}
{google:iOSSearchLanguage}{google:searchClient}{google:sourceId}
{google:contextualSearchVersion}ie={inputEncoding}
[Chrome Protected Settings]
default_search_provider_data.template_url_data.keyword=google.com
[Chrome Protected Settings]
default_search_provider_data.template_url_data.short_name=Google
[Chrome Protected Settings] homepage=https://www.google.com/
[Google Chrome Addons] felcaaldnbdncclmgdcncolpebgiejap=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap
### Planilhas: Crie e edite planilhas update_url:
https://clients2.google.com/service/update2/crx
[Google Chrome Addons] pjkljhegncpnkpknbcohdijeoejaedia=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
### Gmail: E-mail r�pido e pesquis�vel com menos spam. update_url:
https://clients2.google.com/service/update2/crx
[Google Chrome Addons] ahfgeienlihckogmohjhadlkjgocpleb=C:\Program Files
(x86)\Google\Chrome\Application\83.0.4103.61\resources\web_store
### Web Store: Descubra �timos aplicativos, jogos, extens�es e temas para o
Google Chrome.
[Google Chrome Addons] aapocclcgogkmnckokdopfmhonfmgoek=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek
### Apresenta��es: Crie e edite apresenta��es update_url:
https://clients2.google.com/service/update2/crx
[Google Chrome Addons] aohghmighlieiainnegkcijnfilokake=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
### Documentos: Crie e edite documentos update_url:
https://clients2.google.com/service/update2/crx
[Google Chrome Addons] mcbpblocgmgfnpjjppndjkmgjaogfceg=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\mcbpblocgmgfnpjjppndjkmgjaogfceg
### Capturar imagem da p�gina inteira - FireShot: Capture imagens completas da
p�gina da web. Capture, edite e salve-as em PDF/JPEG/GIF/PNG, envie, imprima,
encaminhe para OneNote, �rea de transfer�ncia ou e-mail. update_url:
https://clients2.google.com/service/update2/crx
[Google Chrome Addons] kmendfapggjehodndflmmgagdbamhnfd=C:\Program Files
(x86)\Google\Chrome\Application\83.0.4103.61\resources\cryptotoken
### CryptoTokenExtension: CryptoToken Component Extension
[Google Chrome Addons] fheoggkfdfchfphceeifdbepaooicaho=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho
### McAfee� WebAdvisor: McAfee� WebAdvisor update_url:
https://clients2.google.com/service/update2/crx
[Google Chrome Addons] mhjfbmdgcfjbbpaeojofohoefgiehjai=C:\Program Files
(x86)\Google\Chrome\Application\83.0.4103.61\resources\pdf
### Chrome PDF Viewer:
[Google Chrome Addons] apdfllckaahabafndbhieahigkjlhalf=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
### Google Drive: Google Drive: crie, compartilhe e guarde tudo em um s� lugar.
update_url: https://clients2.google.com/service/update2/crx
[Google Chrome Addons] neajdppkdcdipfabeoofebfddakdcjhd=C:\Program Files
(x86)\Google\Chrome\Application\83.0.4103.61\resources\network_speech_synthesis
### Google Network Speech: Component extension providing speech via the Google
network text-to-speech service.
[Google Chrome Addons] nkeimhogjdpnpccoofpliimaahmaaome=C:\Program Files
(x86)\Google\Chrome\Application\83.0.4103.61\resources\hangout_services
### Google Hangouts:
[Google Chrome Addons] ghbmnnjooekpmoecnnnilnnbdlolhkhi=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi
### Documentos Google off-line: Edite, crie e veja seus documentos, planilhas e
apresenta��es sem precisar de acesso � Internet. update_url:
https://clients2.google.com/service/update2/crx
[Google Chrome Addons] gfdkimpbcpahaombhbimeihdjnejgicl=C:\Program Files
(x86)\Google\Chrome\Application\83.0.4103.61\resources\feedback
### Feedback: User feedback extension
[Google Chrome Addons] mfehgcgbbipciphmccgaenjidiccnmng=C:\Program Files
(x86)\Google\Chrome\Application\83.0.4103.61\resources\cloud_print
### Cloud Print: Cloud Print
[Google Chrome Addons] pkedcjkdefgpdelpbcmbmeomcjbeemfm=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
### Chrome Media Router: Provider for discovery and services for mirroring of
Chrome Media Router update_url: https://clients2.google.com/service/update2/crx
[Google Chrome Addons] nmmhkkegccagdldgiimedpiccmgmieda=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
### Pagamentos da Chrome Web Store: Pagamentos da Chrome Web Store update_url:
https://clients2.google.com/service/update2/crx
[Google Chrome Addons] blpcfgokakmgnkcojhhkbfbldkacnbeo=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
### YouTube: update_url: http://clients2.google.com/service/update2/crx
[Google Chrome Addons] aegnopegbbhjeeiganiajffnalhlkkjb=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb\1.1.5.13_0
### Safe Torrent Scanner: Disabled
update_url: https://clients2.google.com/service/update2/crx
[Google Chrome Addons] aicmkgpgakddgnaphhhpliifpcfhicfo=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\aicmkgpgakddgnaphhhpliifpcfhicfo\1.1.1_0
### Postman Interceptor: Disabled
update_url: https://clients2.google.com/service/update2/crx
[Google Chrome Addons] cfhdojbkjhnklbpkdaibdccddilifddb=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\3.9.5_0
### Adblock Plus: Disabled
update_url: https://clients2.google.com/service/update2/crx
[Google Chrome Addons] clgenfnodoocmhnlnpknojdbjjnmecff=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\clgenfnodoocmhnlnpknojdbjjnmecff\5.30_0
### : Disabled
update_url: https://clients2.google.com/service/update2/crx
[Google Chrome Addons] fdpohaocaechififmbbbbbknoalclacl=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl\7.1_0
### GoFullPage - Full Page Screen Capture: Disabled
update_url: https://clients2.google.com/service/update2/crx
[Google Chrome Addons] hbdpomandigafcibbmofojjchbcdagbl=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\hbdpomandigafcibbmofojjchbcdagbl\3.10_0
### TweetDeck by Twitter: Disabled
update_url: https://clients2.google.com/service/update2/crx
[Google Chrome Addons] hefhgifhniepbbembjlmgmnmdhhclmai=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\hefhgifhniepbbembjlmgmnmdhhclmai\1.4.3_0
### Safeweb sDoc: Disabled
update_url: https://clients2.google.com/service/update2/crx
[Google Chrome Addons] jafmfknfnkoekkdocjiaipcnmkklaajd=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\jafmfknfnkoekkdocjiaipcnmkklaajd\3.1.5_0
### JavaScript Errors Notifier: Disabled
update_url: https://clients2.google.com/service/update2/crx
[Google Chrome Addons] jmjbgcjbgmcfgbgikmbdioggjlhjegpp=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\jmjbgcjbgmcfgbgikmbdioggjlhjegpp\10.8.29.2046_0
### Clipular! Research, save & share screenshot: Disabled
update_url: https://clients2.google.com/service/update2/crx
[Google Chrome Addons] lgllffgicojgllpmdbemgglaponefajn=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\lgllffgicojgllpmdbemgglaponefajn\1.5.0.7_0
### : Disabled
update_url: https://clients2.google.com/service/update2/crx
[Google Chrome Addons] mgapcljibnhkigclmbmdhgehflhljbdd=C:\Users\Luis
Fernando\AppData\Local\Google\Chrome\User
Data\Default\Extensions\mgapcljibnhkigclmbmdhgehflhljbdd\1.0.23_0
### Banrisul Internet Banking: Disabled
update_url: https://clients2.google.com/service/update2/crx
[Google Chrome Notifications] 0=https://www42p.normabass.pro:443,*
### https://www42p.normabass.pro/pushredirect/?
network=2&site=adfly&ppi=20577971&pci=6575319225&t=1602213882&dest=https%3A%2F
%2Fatharori.net%2Fredirecting
%2FaHR0cDovL3d3dy5tZWRpYWZpcmUuY29tL2ZpbGUvcjgzdndpdGF0MHhlb2oxL1RlY2huaWNfMi5leGUv
ZmlsZQ%3D%3D%2Feca2960a
[Google Chrome Notifications] 1=https://meet.google.com:443,*
### http://meet.google.com/cef-tvnp-rqq
[Google Chrome Notifications] 2=http://localhost:80,*
### http://localhost/administrador/
[Pre-installed extensions] :HKLM
aegnopegbbhjeeiganiajffnalhlkkjb=https://clients2.google.com/service/update2/crx
### update_url: https://clients2.google.com/service/update2/crx
[Pre-installed extensions] :HKLM
fheoggkfdfchfphceeifdbepaooicaho=http://clients2.google.com/service/update2/crx
### update_url: http://clients2.google.com/service/update2/crx
[Microsoft Edge Home Page] :HKCU ProtectedHomepages=about:start
[Network Settings]
[Domain Name] :HKLM Domain=""
[WinSock2 Components] napinsp.dll=C:\Windows\SYSWOW64\NAPINSP.DLL
### Provedor de Corre��o de Nomea��o de Emails Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\SYSWOW64\napinsp.dll
[WinSock2 Components] pnrpnsp.dll=C:\Windows\SYSWOW64\PNRPNSP.DLL
### PNRP Name Space Provider Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\SYSWOW64\pnrpnsp.dll
[WinSock2 Components] mswsock.dll=C:\Windows\SYSWOW64\MSWSOCK.DLL
### Provedor de servi�os do Microsoft Windows Sockets 2.0 Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\SYSWOW64\mswsock.dll
[WinSock2 Components] winrnr.dll=C:\Windows\SYSWOW64\WINRNR.DLL
### LDAP RnR Provider DLL Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*%SystemRoot%\SYSWOW64\winrnr.dll
[WinSock2 Components] NLAapi.dll=C:\Windows\SYSWOW64\NLAAPI.DLL
### Network Location Awareness 2 Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*%SystemRoot%\SYSWOW64\NLAapi.dll
[WinSock2 Components] wshbth.dll=C:\Windows\SYSWOW64\WSHBTH.DLL
### Windows Sockets Helper DLL Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*%SystemRoot%\SYSWOW64\wshbth.dll
[WinSock2 Components (x64)] napinsp.dll=C:\Windows\SYSNATIVE\NAPINSP.DLL
### Provedor de Corre��o de Nomea��o de Emails Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1 !$*%SystemRoot%\SYSNATIVE\napinsp.dll
[WinSock2 Components (x64)] pnrpnsp.dll=C:\Windows\SYSNATIVE\PNRPNSP.DLL
### PNRP Name Space Provider Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1 !$*%SystemRoot%\SYSNATIVE\pnrpnsp.dll
[WinSock2 Components (x64)] mswsock.dll=C:\Windows\SYSNATIVE\MSWSOCK.DLL
### Provedor de servi�os do Microsoft Windows Sockets 2.0 Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1 !$*%SystemRoot
%\SYSNATIVE\mswsock.dll
[WinSock2 Components (x64)] winrnr.dll=C:\Windows\SYSNATIVE\WINRNR.DLL
### LDAP RnR Provider DLL Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*%SystemRoot%\SYSNATIVE\winrnr.dll
[WinSock2 Components (x64)] NLAapi.dll=C:\Windows\SYSNATIVE\NLAAPI.DLL
### Network Location Awareness 2 Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.959 !$*%SystemRoot%\SYSNATIVE\NLAapi.dll
[WinSock2 Components (x64)] wshbth.dll=C:\Windows\SYSNATIVE\WSHBTH.DLL
### Windows Sockets Helper DLL Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*%SystemRoot%\SYSNATIVE\wshbth.dll
[Windows Shell]
[Display Scrap's Extensions] :HKLM NeverShowExt=""
[ScreenSaver] :HKCU SCRNSAVE.EXE=""
[System.ini] shell=explorer.exe
### Windows Explorer Microsoft Corporation Sistema operacional Microsoft�
Windows� 10.0.18362.1074 !$*explorer.exe
[User Shell] :HKCU shell=""
[User Shortcuts] :HKLM C:\Users\Luis Fernando\Desktop\HeidiSQL.lnk=C:\PROGRAM
FILES\HEIDISQL\HEIDISQL.EXE
### HeidiSQL 11.0.0.5919 64 Bit HeidiSQL !$*C:\Program
Files\HeidiSQL\heidisql.exe!$*C:\Users\LUISFE~1\Desktop\HeidiSQL.lnk
[User Shortcuts] :HKLM C:\Users\Luis Fernando\Desktop\Microsoft Office Excel
2007.lnk=C:\WINDOWS\INSTALLER\{90120000-0030-0000-0000-0000000FF1CE}\XLICONS.EXE
### !$*C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe!
$*C:\Users\LUISFE~1\Desktop\MICROS~2.LNK
[User Shortcuts] :HKLM C:\Users\Luis Fernando\Desktop\Microsoft Office Word
2007.lnk=C:\WINDOWS\INSTALLER\{90120000-0030-0000-0000-0000000FF1CE}\WORDICON.EXE
### !$*C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe!
$*C:\Users\LUISFE~1\Desktop\MICROS~3.LNK
[User Shortcuts] :HKLM C:\Users\Luis Fernando\Desktop\MySQL
Workbench.lnk=C:\PROGRAM FILES\MYSQL\MYSQL WORKBENCH 8.0 CE\MYSQLWORKBENCH.EXE
### MySQL Workbench Oracle Corporation MySQL Workbench 8.0.20 !$*C:\Program
Files\MySQL\MySQL Workbench 8.0 CE\MySQLWorkbench.exe!
$*C:\Users\LUISFE~1\Desktop\MYSQLW~1.LNK
[User Shortcuts] :HKLM C:\Users\Luis Fernando\Desktop\Postman.lnk=C:\USERS\LUIS
FERNANDO\APPDATA\LOCAL\POSTMAN\POSTMAN.EXE
### Postman Postman Postman 7.30.1 !$*C:\Users\Luis
Fernando\AppData\Local\Postman\Postman.exe!$*C:\Users\LUISFE~1\Desktop\Postman.lnk
[User Shortcuts] :HKLM C:\Users\Luis Fernando\Desktop\Visual Studio
Code.lnk=D:\MICROSOFT VS CODE\CODE.EXE
### Visual Studio Code Microsoft Corporatio Visual Studio Code 1.48.2
->ELECTRON.EXE !$*D:\Microsoft VS Code\Code.exe!
$*C:\Users\LUISFE~1\Desktop\VISUAL~1.LNK
[User Shortcuts] :HKLM C:\Users\Luis Fernando\Desktop\�Torrent.lnk=C:\USERS\LUIS
FERNANDO\APPDATA\ROAMING\UTORRENT\UTORRENT.EXE
### �Torrent BitTorrent Inc. �Torrent 3.5.5.45798 !$*C:\Users\Luis
Fernando\AppData\Roaming\uTorrent\uTorrent.exe!
$*C:\Users\LUISFE~1\Desktop\TORREN~1.LNK
[User Shortcuts] :HKLM C:\Users\Public\Desktop\EditPad Lite 8.lnk=C:\PROGRAM
FILES\JUST GREAT SOFTWARE\EDITPAD LITE 8\EDITPADLITE8.EXE
### EditPad Lite Just Great Software EditPad Lite 8.1.1 =>EDITPAD.EXE !
$*C:\Program Files\Just Great Software\EditPad Lite 8\EditPadLite8.exe!
$*C:\Users\Public\Desktop\EDITPA~1.LNK
[User Shortcuts] :HKLM C:\Users\Public\Desktop\FileZilla Client.lnk=C:\PROGRAM
FILES\FILEZILLA FTP CLIENT\FILEZILLA.EXE
### FileZilla FTP Client FileZilla Project FileZilla 3, 48, 1, 0 ->FILEZILLA 3 !
$*C:\Program Files\FileZilla FTP Client\filezilla.exe!
$*C:\Users\Public\Desktop\FILEZI~1.LNK
[User Shortcuts] :HKLM C:\Users\Public\Desktop\Firefox.lnk=C:\PROGRAM
FILES\MOZILLA FIREFOX\FIREFOX.EXE
### Firefox Mozilla Corporation Firefox 76.0.1 !$*C:\Program Files\Mozilla
Firefox\firefox.exe!$*C:\Users\Public\Desktop\Firefox.lnk
[User Shortcuts] :HKLM C:\Users\Public\Desktop\Garmin Express.lnk=C:\PROGRAM
FILES (X86)\GARMIN\EXPRESS\EXPRESS.EXE
### Garmin Express Garmin Ltd. or its subsidiaries Garmin Express
7.1.0.0.d8327929 !$*C:\Program Files (x86)\Garmin\Express\express.exe!
$*C:\Users\Public\Desktop\GARMIN~1.LNK
[User Shortcuts] :HKLM C:\Users\Public\Desktop\Google Chrome.lnk=C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*C:\Program Files (x86)\Google\Chrome\Application\chrome.exe!
$*C:\Users\Public\Desktop\GOOGLE~1.LNK
[User Shortcuts] :HKLM C:\Users\Public\Desktop\Oracle VM
VirtualBox.lnk=C:\PROGRAM FILES\ORACLE\VIRTUALBOX\VIRTUALBOX.EXE
### VirtualBox Manager Oracle Corporation Oracle VM VirtualBox 6.1.10.138449 !
$*C:\Program Files\Oracle\VirtualBox\VirtualBox.exe!
$*C:\Users\Public\Desktop\ORACLE~1.LNK
[User Shortcuts] :HKLM C:\Users\Public\Desktop\PuTTY (64-bit).lnk=C:\PROGRAM
FILES\PUTTY\PUTTY.EXE
### SSH, Telnet and Rlogin client Simon Tatham PuTTY suite Release 0.73 !
$*C:\Program Files\PuTTY\putty.exe!$*C:\Users\Public\Desktop\PUTTY(~1.LNK
[User Shortcuts] :HKLM C:\Users\Public\Desktop\VLC media player.lnk=C:\PROGRAM
FILES\VIDEOLAN\VLC\VLC.EXE
### VLC media player VideoLAN VLC media player 3,0,11,0 !$*C:\Program
Files\VideoLAN\VLC\vlc.exe!$*C:\Users\Public\Desktop\VLCMED~1.LNK
[User Shortcuts] :HKLM
C:\Users\Public\Desktop\Wampserver64.lnk=C:\WAMP64\WAMPMANAGER.EXE
### Aestan Tray Menu Aestan Software 1.0.0.0 ->TRAY MENU !
$*C:\wamp64\wampmanager.exe!$*C:\Users\Public\Desktop\WAMPSE~1.LNK
[User Shortcuts] :HKLM C:\Users\Luis Fernando\AppData\Roaming\Microsoft\Internet
Explorer\Quick Launch\Free Download Manager.lnk=C:\PROGRAM FILES\SOFTDELUXE\FREE
DOWNLOAD MANAGER\FDM.EXE
### Free Download Manager Softdeluxe Free Download Manager 6.9.1.2947 !
$*C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe!
$*C:\Users\LUISFE~1\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\FREEDO~1.LNK
[User Shortcuts] :HKLM C:\Users\Luis Fernando\AppData\Roaming\Microsoft\Internet
Explorer\Quick Launch\Google Chrome.lnk=C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*C:\Program Files (x86)\Google\Chrome\Application\chrome.exe!
$*C:\Users\LUISFE~1\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\GOOGLE~1.LNK
[User Shortcuts] :HKLM C:\Users\Luis Fernando\AppData\Roaming\Microsoft\Internet
Explorer\Quick Launch\Microsoft Edge.lnk=C:\PROGRAM FILES
(X86)\MICROSOFT\EDGE\APPLICATION\MSEDGE.EXE
### Microsoft Edge Microsoft Corporation Microsoft Edge 85.0.564.70
->MSEDGE_EXE !$*C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe!
$*C:\Users\LUISFE~1\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\MICROS~1.LNK
[User Shortcuts] :HKLM C:\Users\Luis Fernando\AppData\Roaming\Microsoft\Internet
Explorer\Quick Launch\�Torrent.lnk=C:\USERS\LUIS
FERNANDO\APPDATA\ROAMING\UTORRENT\UTORRENT.EXE
### �Torrent BitTorrent Inc. �Torrent 3.5.5.45798 !$*C:\Users\Luis
Fernando\AppData\Roaming\uTorrent\uTorrent.exe!
$*C:\Users\LUISFE~1\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\TORREN~1.LNK
[User Shortcuts] :HKLM C:\ProgramData\Microsoft\Windows\Start
Menu\Programs\Firefox.lnk=C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE
### Firefox Mozilla Corporation Firefox 76.0.1 !$*C:\Program Files\Mozilla
Firefox\firefox.exe!$*C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Firefox.lnk
[User Shortcuts] :HKLM C:\ProgramData\Microsoft\Windows\Start
Menu\Programs\Google Chrome.lnk=C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*C:\Program Files (x86)\Google\Chrome\Application\chrome.exe!
$*C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\GOOGLE~1.LNK
[User Shortcuts] :HKLM C:\ProgramData\Microsoft\Windows\Start
Menu\Programs\Software Thunderbolt�\Software Thunderbolt�.lnk=C:\PROGRAM FILES
(X86)\INTEL\THUNDERBOLT SOFTWARE\THUNDERBOLT.EXE
### Thunderbolt(TM) Software Intel Corporation Thunderbolt(TM) Software
17.4.79.16 !$*C:\Program Files (x86)\Intel\Thunderbolt Software\Thunderbolt.exe!
$*C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\SOFTWA~1\SOFTWA~1.LNK
[User Shortcuts] :HKLM C:\Users\Luis
Fernando\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet
Explorer.lnk=C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
### Internet Explorer Microsoft Corporation Internet Explorer 11.00.18362.1 !
$*C:\Program Files\Internet Explorer\iexplore.exe!
$*C:\Users\LUISFE~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\ACCESS~1\INT
ERN~1.LNK
[Main File Extensions] :HKLM .exe=""
[Main File Extensions] :HKLM .com=""
[Main File Extensions] :HKLM .pif=""
[Main File Extensions] :HKLM .bat=""
[Main File Extensions] :HKLM .cmd=""
[Main File Extensions] :HKLM .scr=""
[Main File Extensions] :HKLM .txt="C:\Program Files\Just Great Software\EditPad
Lite 8\EditPadLite8.exe" "%1"
[Main File Extensions] :HKLM .reg=""
[Main File Extensions] :HKLM .inf=""
[Main File Extensions] :HKLM .ini=""
[Main File Extensions] :HKLM .js=""
[Main File Extensions] :HKLM .vbs=""
[Main File Extensions] :HKLM .vbe=""
[Main File Extensions] :HKLM .msc=""
[Main File Extensions] :HKLM .jpg=""
[Main File Extensions] :HKLM .jpeg=""
[Main File Extensions] :HKLM .gif=""
[Main File Extensions] :HKLM .png=""
[UserInit Value] UserInit=""
[UserInit Value(x64)] UserInit=C:\Windows\system32\userinit.exe,
### Aplicativo de logon Userinit Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\userinit.exe
[Shell Services DelayLoad] :HKLM WebCheck={E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[Shell Services DelayLoad] :HKLM WDFSMountNotificator-
wdfsconnect2017=C:\WINDOWS\SYSWOW64\WDFSCONNECTMNTNTF2017.DLL
### WDFS Mount Notifier Western Digital Technologies, Inc. WDFS Connect 2017, 0,
2, 0 ->VSMNTNTF !$*C:\Windows\SysWOW64\wdfsconnectMntNtf2017.dll
[System Shell Policies] :HKCU shell=""
[System Shell Policies] :HKLM shell=""
[System Shell Policies] :HKCU run=""
[System Shell Policies] :HKLM run=""
[Prevents Display in Control Panel from running.] :HKCU NoDispCpl=0
[Disable Registry Tools] :HKCU DisableRegistryTools =0
[SharedTaskScheduler] :HKLM {8EE21263-8146-484A-A6ED-
9C6E3ECCB96A}=C:\WINDOWS\SYSWOW64\WDFSCONNECTMNTNTF2017.DLL
### WDFS Mount Notifier Western Digital Technologies, Inc. WDFS Connect 2017, 0,
2, 0 ->VSMNTNTF !$*C:\Windows\SysWOW64\wdfsconnectMntNtf2017.dll
[Print Monitors] :HKLM Appmon=C:\Windows\SYSTEM32\APPMON.DLL
### App Printer Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*AppMon.dll
[Print Monitors] :HKLM Local Port=C:\Windows\SYSTEM32\LOCALSPL.DLL
### DLL do spooler local Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*localspl.dll
[Print Monitors] :HKLM Microsoft Shared Fax
Monitor=C:\Windows\SYSTEM32\FXSMON.DLL
### Microsoft Fax Print Monitor Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*FXSMON.DLL
[Print Monitors] :HKLM rica1llm=C:\Windows\SYSTEM32\RICA1LLM.DLL
### RICOH BIDI Language Monitor RICOH CO.,Ltd. RC4MON 4, 0, 5, 9 !$*rica1llm.dll
[Print Monitors] :HKLM Standard TCP/IP Port=C:\Windows\SYSTEM32\TCPMON.DLL
### DLL da interface de usu�rio do monitor de porta TCP/IP padr�o Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*tcpmon.dll
[Print Monitors] :HKLM USB Monitor=C:\Windows\SYSTEM32\USBMON.DLL
### DLL do Monitor Padr�o Din�mico de Portas de Impress�o Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 ->DYNAMON.DLL
=>DYNAMON.DLL.MUI !$*usbmon.dll
[Print Monitors] :HKLM WSD Port=C:\Windows\SYSTEM32\APMON.DLL
### Monitor de Porta Adapt�vel Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*APMon.dll
[Shell Icon Overlay Handlers] :HKLM Tortoise1Normal=C:\PROGRAM FILES
(X86)\COMMON FILES\TORTOISEOVERLAYS\TORTOISEOVERLAYS.DLL
### Tortoise overlay handler shim http://tortoisesvn.net TortoiseOverlays 1, 1,
4, 26626 !$*C:\Program Files (x86)\Common
Files\TortoiseOverlays\TortoiseOverlays.dll
[Shell Icon Overlay Handlers] :HKLM Tortoise2Modified=C:\PROGRAM FILES
(X86)\COMMON FILES\TORTOISEOVERLAYS\TORTOISEOVERLAYS.DLL
### Tortoise overlay handler shim http://tortoisesvn.net TortoiseOverlays 1, 1,
4, 26626 !$*C:\Program Files (x86)\Common
Files\TortoiseOverlays\TortoiseOverlays.dll
[Shell Icon Overlay Handlers] :HKLM Tortoise3Conflict=C:\PROGRAM FILES
(X86)\COMMON FILES\TORTOISEOVERLAYS\TORTOISEOVERLAYS.DLL
### Tortoise overlay handler shim http://tortoisesvn.net TortoiseOverlays 1, 1,
4, 26626 !$*C:\Program Files (x86)\Common
Files\TortoiseOverlays\TortoiseOverlays.dll
[Shell Icon Overlay Handlers] :HKLM Tortoise4Locked=C:\PROGRAM FILES
(X86)\COMMON FILES\TORTOISEOVERLAYS\TORTOISEOVERLAYS.DLL
### Tortoise overlay handler shim http://tortoisesvn.net TortoiseOverlays 1, 1,
4, 26626 !$*C:\Program Files (x86)\Common
Files\TortoiseOverlays\TortoiseOverlays.dll
[Shell Icon Overlay Handlers] :HKLM Tortoise5ReadOnly=C:\PROGRAM FILES
(X86)\COMMON FILES\TORTOISEOVERLAYS\TORTOISEOVERLAYS.DLL
### Tortoise overlay handler shim http://tortoisesvn.net TortoiseOverlays 1, 1,
4, 26626 !$*C:\Program Files (x86)\Common
Files\TortoiseOverlays\TortoiseOverlays.dll
[Shell Icon Overlay Handlers] :HKLM Tortoise6Deleted=C:\PROGRAM FILES
(X86)\COMMON FILES\TORTOISEOVERLAYS\TORTOISEOVERLAYS.DLL
### Tortoise overlay handler shim http://tortoisesvn.net TortoiseOverlays 1, 1,
4, 26626 !$*C:\Program Files (x86)\Common
Files\TortoiseOverlays\TortoiseOverlays.dll
[Shell Icon Overlay Handlers] :HKLM Tortoise7Added=C:\PROGRAM FILES
(X86)\COMMON FILES\TORTOISEOVERLAYS\TORTOISEOVERLAYS.DLL
### Tortoise overlay handler shim http://tortoisesvn.net TortoiseOverlays 1, 1,
4, 26626 !$*C:\Program Files (x86)\Common
Files\TortoiseOverlays\TortoiseOverlays.dll
[Shell Icon Overlay Handlers] :HKLM Tortoise8Ignored=C:\PROGRAM FILES
(X86)\COMMON FILES\TORTOISEOVERLAYS\TORTOISEOVERLAYS.DLL
### Tortoise overlay handler shim http://tortoisesvn.net TortoiseOverlays 1, 1,
4, 26626 !$*C:\Program Files (x86)\Common
Files\TortoiseOverlays\TortoiseOverlays.dll
[Shell Icon Overlay Handlers] :HKLM Tortoise9Unversioned=C:\PROGRAM FILES
(X86)\COMMON FILES\TORTOISEOVERLAYS\TORTOISEOVERLAYS.DLL
### Tortoise overlay handler shim http://tortoisesvn.net TortoiseOverlays 1, 1,
4, 26626 !$*C:\Program Files (x86)\Common
Files\TortoiseOverlays\TortoiseOverlays.dll
[Shell Icon Overlay Handlers] :HKLM OneDrive1={BBACC218-34EA-4666-9D7A-
C78F2274A524}
[Shell Icon Overlay Handlers] :HKLM OneDrive2={5AB7172C-9C11-405C-8DD5-
AF20F3606282}
[Shell Icon Overlay Handlers] :HKLM OneDrive3={A78ED123-AB77-406B-9962-
2A5D9D2F7F30}
[Shell Icon Overlay Handlers] :HKLM OneDrive4={F241C880-6982-4CE5-8CF7-
7085BA96DA5A}
[Shell Icon Overlay Handlers] :HKLM OneDrive5={A0396A93-DC06-4AEF-BEE9-
95FFCCAEF20E}
[Shell Icon Overlay Handlers] :HKLM OneDrive6={9AA2F32D-362A-42D9-9328-
24A483E2CCC3}
[Shell Icon Overlay Handlers] :HKLM OneDrive7={C5FF006E-2AE9-408C-B85B-
2DFDD5449D9C}
[Context Menu Handlers] :HKLM EPP={09A47860-11B0-4DA5-AFA5-26D86198A780}
[Context Menu Handlers] :HKLM ModernSharing={e2bf9676-5f8f-435c-97eb-
11607a5bedf7}
[Context Menu Handlers] :HKLM Open With={09799AFB-AD67-11d1-ABCD-00C04FC30936}
[Context Menu Handlers] :HKLM Open With EncryptionMenu={A470F8CF-A1E8-4f65-8335-
227475AA5C46}
[Context Menu Handlers] :HKLM Sharing={f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}
[Context Menu Handlers] :HKLM TortoiseSVN=C:\PROGRAM
FILES\TORTOISESVN\BIN\TORTOISESTUB32.DLL
### TortoiseSVN shell extension client https://tortoisesvn.net TortoiseSVN
1.10.5.28651 ->TORTOISESTUB.DLL !$*C:\Program
Files\TortoiseSVN\bin\TortoiseStub32.dll
[Context Menu Handlers] :HKLM WDDesktopContextMenu={fa00ba41-b6f6-3cfa-a300-
f25ce175fe7e}
[Context Menu Handlers] :HKLM WinRAR={B41DB860-64E4-11D2-9906-E49FADC173CA}
[Context Menu Handlers] :HKLM WinRAR32=C:\PROGRAM FILES\WINRAR\RAREXT32.DLL
### WinRAR shell extension Alexander Roshal WinRAR 5.90.0 ->WINRAR SHELL
EXTENSION =>RAREXT.DLL !$*C:\Program Files\WinRAR\rarext32.dll
[Context Menu Handlers] :HKLM WorkFolders=C:\PROGRAM FILES\WINRAR\RAREXT32.DLL
### WinRAR shell extension Alexander Roshal WinRAR 5.90.0 ->WINRAR SHELL
EXTENSION =>RAREXT.DLL !$*C:\Program Files\WinRAR\rarext32.dll
[Context Menu Handlers] :HKLM {90AA3A4E-1CBA-4233-B8BB-535773D48449}={90AA3A4E-
1CBA-4233-B8BB-535773D48449}
[Context Menu Handlers] :HKLM {a2a9545d-a0c2-42b4-9708-a0b2badd77c8}={a2a9545d-
a0c2-42b4-9708-a0b2badd77c8}
[App Paths] :HKLM CAPTURE.EXE=c:\Program Files (x86)\Corel\CorelDRAW Graphics
Suite X6\Programs\CAPTURE.EXE
### CAPTURE.EXE Corel CAPTURE X6 Corel Corporation Corel Graphics Applications
16.0.0.707
[App Paths] :HKLM chrome.exe=C:\Program Files
(x86)\Google\Chrome\Application\chrome.exe
### chrome.exe Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE
[App Paths] :HKLM cmmgr32.exe
### cmmgr32.exe
[App Paths] :HKLM CorelDrw.exe=c:\Program Files (x86)\Corel\CorelDRAW Graphics
Suite X6\Programs\CorelDrw.exe
### CorelDrw.exe CorelDRAW X6 Corel Corporation Corel Graphics Applications
16.0.0.707
[App Paths] :HKLM CorelPP.exe=c:\Program Files (x86)\Corel\CorelDRAW Graphics
Suite X6\Programs\CorelPP.exe
### CorelPP.exe Corel PHOTO-PAINT X6 Corel Corporation Corel Graphics
Applications 16.0.0.707
[App Paths] :HKLM dexplore.exe="c:\Program Files (x86)\Common Files\Microsoft
Shared\Help 9\dexplore.exe"
### dexplore.exe Microsoft Document Explorer Microsoft Corporation Microsoft�
Visual Studio� 2008 9.0.30729.1
[App Paths] :HKLM dfshim.dll
### dfshim.dll
[App Paths] :HKLM EditPadLite8.exe=C:\Program Files\Just Great Software\EditPad
Lite 8\EditPadLite8.exe
### EditPadLite8.exe EditPad Lite Just Great Software EditPad Lite 8.1.1
=>EDITPAD.EXE
[App Paths] :HKLM excel.exe=C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE
### excel.exe Microsoft Office Excel Microsoft Corporation 2007 Microsoft Office
system 12.0.4518.1014
[App Paths] :HKLM filezilla.exe=C:\Program Files\FileZilla FTP
Client\filezilla.exe
### filezilla.exe FileZilla FTP Client FileZilla Project FileZilla 3, 48, 1, 0
->FILEZILLA 3
[App Paths] :HKLM firefox.exe=C:\Program Files\Mozilla Firefox\firefox.exe
### firefox.exe Firefox Mozilla Corporation Firefox 76.0.1
[App Paths] :HKLM fsquirt.exe
### fsquirt.exe
[App Paths] :HKLM IEDIAG.EXE=C:\Program Files\Internet Explorer\IEDIAGCMD.EXE
### IEDIAG.EXE Diagnostics utility for Internet Explorer Microsoft Corporation
Internet Explorer 11.00.18362.1049
[App Paths] :HKLM IEDIAGCMD.EXE=C:\Program Files\Internet Explorer\IEDIAGCMD.EXE
### IEDIAGCMD.EXE Diagnostics utility for Internet Explorer Microsoft Corporation
Internet Explorer 11.00.18362.1049
[App Paths] :HKLM IEXPLORE.EXE=C:\Program Files\Internet Explorer\IEXPLORE.EXE
### IEXPLORE.EXE Internet Explorer Microsoft Corporation Internet Explorer
11.00.18362.1
[App Paths] :HKLM install.exe
### install.exe
[App Paths] :HKLM iTunes.exe=C:\Program
Files\WindowsApps\AppleInc.iTunes_12109.3.52015.0_x64__nzyj5cx40ttqa\iTunes.exe
### iTunes.exe iTunes Apple Inc. iTunes 12.10.9.3
[App Paths] :HKLM javaws.exe=C:\Program Files\Java\jre1.8.0_261\bin\javaws.exe
### javaws.exe Java(TM) Web Start Launcher Oracle Corporation Java(TM) Platform
SE 8 U261 8.0.2610.12 ->JAVA(TM) WEB START LAUNCHER
[App Paths] :HKLM LogiLDA.dll=C:\Windows\system32\
### LogiLDA.dll
[App Paths] :HKLM mplayer2.exe=%ProgramFiles(x86)%\Windows Media
Player\wmplayer.exe
### mplayer2.exe
[App Paths] :HKLM msedge.exe=C:\Program Files
(x86)\Microsoft\Edge\Application\msedge.exe
### msedge.exe Microsoft Edge Microsoft Corporation Microsoft Edge 85.0.564.70
->MSEDGE_EXE
[App Paths] :HKLM MsoHtmEd.exe
### MsoHtmEd.exe
[App Paths] :HKLM msoxmled.exe=C:\Program Files (x86)\Common Files\Microsoft
Shared\OFFICE12\MSOXMLED.EXE
### msoxmled.exe XML Editor Microsoft Corporation Microsoft Office InfoPath
12.0.4518.1014
[App Paths] :HKLM ois.exe=C:\PROGRA~2\MICROS~1\Office12\OIS.EXE
### ois.exe Microsoft Office Picture Manager Microsoft Corporation Microsoft
Office Picture Manager 12.0.4518.1014
[App Paths] :HKLM pbrush.exe=%SystemRoot%\System32\mspaint.exe
### pbrush.exe
[App Paths] :HKLM powerpnt.exe=C:\PROGRA~2\MICROS~1\Office12\POWERPNT.EXE
### powerpnt.exe Microsoft Office PowerPoint Microsoft Corporation 2007 Microsoft
Office system 12.0.4518.1014
[App Paths] :HKLM PowerShell.exe=%SystemRoot
%\system32\WindowsPowerShell\v1.0\PowerShell.exe
### PowerShell.exe
[App Paths] :HKLM setup.exe
### setup.exe
[App Paths] :HKLM Skype.exe=C:\Program
Files\WindowsApps\Microsoft.SkypeApp_15.64.80.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
### Skype.exe Skype Skype Technologies S.A. Skype 8.64
[App Paths] :HKLM SubWCRev.exe=C:\Program Files\TortoiseSVN\bin\SubWCRev.exe
### SubWCRev.exe SubWCRev http://tortoisesvn.net SubWCRev 1.10.5.28651
[App Paths] :HKLM table30.exe
### table30.exe
[App Paths] :HKLM vlc.exe=C:\Program Files\VideoLAN\VLC\vlc.exe
### vlc.exe VLC media player VideoLAN VLC media player 3,0,11,0
[App Paths] :HKLM vsta.exe=c:\Program Files (x86)\Microsoft Visual Studio
9.0\Common7\IDE\vsta.exe
### vsta.exe Microsoft Visual Studio Tools for Applications 2.0 Microsoft
Corporation Microsoft� Visual Studio� 2008 9.0.30729.1
[App Paths] :HKLM wab.exe=%ProgramFiles%\Windows Mail\wab.exe
### wab.exe
[App Paths] :HKLM wabmig.exe=%ProgramFiles%\Windows Mail\wabmig.exe
### wabmig.exe
[App Paths] :HKLM WinRAR.exe=C:\Program Files\WinRAR\WinRAR.exe
### WinRAR.exe WinRAR archiver Alexander Roshal WinRAR 5.90.0
[App Paths] :HKLM Winword.exe=C:\PROGRA~2\MICROS~1\Office12\WINWORD.EXE
### Winword.exe Microsoft Office Word Microsoft Corporation 2007 Microsoft Office
system 12.0.4518.1014
[App Paths] :HKLM wmplayer.exe=%ProgramFiles(x86)%\Windows Media
Player\wmplayer.exe
### wmplayer.exe
[App Paths] :HKLM WORDPAD.EXE=C:\Program Files\WINDOWS NT\ACCESSORIES\WORDPAD.EXE
### WORDPAD.EXE Aplicativo Wordpad do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1 !$*"%ProgramFiles%\Windows
NT\Accessories\WORDPAD.EXE"
[App Paths] :HKLM WRITE.EXE="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE"
### WRITE.EXE
[Kernel Auto Boot]
[ActiveSetup] >{22d6f312-b0f6-11d0-94ab-
0080c74c7e95}=C:\Windows\SYSTEM32\UNREGMP2.EXE
### Utilit�rio de Instala��o do Microsoft Windows Media Player Microsoft
Corporation Sistema Operacional Microsoft� Windows� 12.0.18362.1074 !$*%SystemRoot
%\system32\unregmp2.exe /ShowWMP
[Auto Services] :HKLM AarSvc
### Service: Agent Activation Runtime Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Runtime for activating
conversational agent applications Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K AARSVCGROUP -P
[Auto Services] :HKLM AarSvc_8b54b
### Service: Agent Activation Runtime_8b54b Status: Start Type: loaded manually
on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Runtime for activating
conversational agent applications Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K AARSVCGROUP -P
[Auto Services] :HKLM AESMService
### Service: Intel� SGX AESM Status: Start Type: loaded automatically by Server
Manager Actual File:
C:\WINDOWS\System32\DRIVERSTORE\FILEREPOSITORY\SGX_PSW.INF_AMD64_4A7A369B84FFF822\A
ESM_SERVICE.EXE * The system services management agent for Intel� Software Guard
Extensions enabled applications. Intel� SGX Application Enclave Services Manager
Intel Corporation Intel� Software Guard Extensions 2.7.101.2 ->AESM !$*%SYSTEMROOT
%\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\SGX_PSW.INF_AMD64_4A7A369B84FFF822\AESM_SERVI
CE.EXE
[Auto Services] :HKLM AJRouter
### Service: Servi�o de Roteador AllJoyn Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Roteia mensagens AllJoyn para
os clientes AllJoyn locais. Se esse servi�o for interrompido, os clientes AllJoyn
que n�o t�m seus pr�prios roteadores agrupados n�o poder�o ser executados. Processo
de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM ALG
### Service: Servi�o Gateway de Camada de Aplicativo Status: Start Type: loaded
manually on demand Actual File: C:\WINDOWS\System32\ALG.EXE * Fornece suporte para
plug-ins de protocolo de terceiros para o Compartilhamento de Conex�o com a
Internet Servi�o Gateway de Camada de Aplicativo Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\ALG.EXE
[Auto Services] :HKLM AppIDSvc
### Service: Identidade do Aplicativo Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Determina e verifica a
identidade de um aplicativo. A desabilita��o desse servi�o impedir� que o AppLocker
seja imposto. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM Appinfo
### Service: Informa��es sobre Aplicativos Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Facilita a execu��o de
aplicativos interativos com privil�gios administrativos adicionais. Se esse servi�o
for interrompido, os usu�rios n�o poder�o iniciar aplicativos com privil�gios
administrativos adicionais necess�rios para executar as tarefas de usu�rio
desejadas. Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM AppReadiness
### Service: Prepara��o de Aplicativos Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Prepara aplicativos para o
uso na primeira vez que um usu�rio entra no computador e ao adicionar novos
aplicativos. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K APPREADINESS -P
[Auto Services] :HKLM AppXSvc
### Service: Servi�o de Implanta��o AppX (AppXSVC) Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece suporte
de infraestrutura para a implanta��o de aplicativos da Store. Este servi�o �
iniciado sob demanda e, se desabilitado, os aplicativos da Store n�o ser�o
implantados no sistema e poder�o n�o funcionar corretamente. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K WSAPPX -P
[Auto Services] :HKLM AtherosSvc
### Service: AtherosSvc Status: Start Type: loaded automatically by Server
Manager Actual File: C:\WINDOWS\System32\DRIVERS\ADMINSERVICE.EXE * Windows Setup
API Windows (R) Win 7 DDK provider Windows (R) Win 7 DDK driver 10.0.10011.16384
->SETUPAPI.DLL !$*%SYSTEMROOT%\SYSTEM32\DRIVERS\ADMINSERVICE.EXE
[Auto Services] :HKLM AudioEndpointBuilder
### Service: Construtor de Pontos de Extremidade de �udio do Windows Status:
Start Type: loaded automatically by Server Manager Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Gerencia dispositivos de �udio para o servi�o
�udio do Windows. Se esse servi�o for interrompido, os dispositivos e os efeitos de
�udio n�o funcionar�o corretamente. Se esse servi�o estiver desabilitado, qualquer
servi�o que dependa explicitamente dele n�o ser� iniciado Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM Audiosrv
### Service: �udio do Windows Status: Start Type: loaded automatically by Server
Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Gerencia �udio para
programas baseados no Windows. Se esse servi�o for interrompido, os dispositivos e
efeitos de �udio n�o funcionar�o corretamente. Se for desabilitado, qualquer
servi�o que dependa dele explicitamente n�o poder� ser iniciado Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM autotimesvc
### Service: Hora da Rede Celular Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Este servi�o define a hora com base
nas mensagens do NITZ de uma rede m�vel Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K AUTOTIMESVC
[Auto Services] :HKLM AxInstSV
### Service: Instalador do ActiveX (AxInstSV) Status: Start Type: loaded manually
on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece valida��o do
Controle de Conta de Usu�rio para a instala��o dos controles ActiveX da Internet e
permite o gerenciamento da instala��o dos controles ActiveX com base nas
configura��es da Pol�tica de Grupo. Esse servi�o � iniciado sob demanda e, caso
esteja desabilitado, a instala��o dos controles ActiveX e comportar� de acordo com
as configura��es padr�o do navegador. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K AXINSTSVGROUP
[Auto Services] :HKLM BcastDVRUserService
### Service: Servi�o de Usu�rio do GameDVR e Transmiss�o Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Este
servi�o de usu�rio � usado para Grava��es de Jogos e Transmiss�es Ao Vivo Processo
de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
BCASTDVRUSERSERVICE
[Auto Services] :HKLM BcastDVRUserService_8b54b
### Service: Servi�o de Usu�rio do GameDVR e Transmiss�o_8b54b Status: Start
Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Este
servi�o de usu�rio � usado para Grava��es de Jogos e Transmiss�es Ao Vivo Processo
de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K
BCASTDVRUSERSERVICE
[Auto Services] :HKLM BDESVC
### Service: Servi�o de Criptografia de Unidade de Disco BitLocker Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O
BDESVC hospeda o servi�o de Criptografia de Unidade de Disco BitLocker. A
Criptografia de Unidade de Disco BitLocker permite uma inicializa��o segura do
sistema operacional e fornece uma criptografia completa para volumes do SO, fixos
ou remov�veis. Esse servi�o permite que o BitLocker solicite a participa��o dos
usu�rios durante a realiza��o de v�rias a��es relacionadas aos volumes quando s�o
montados, e desbloqueia os volumes automaticamente, sem intera��o com o usu�rio.
Al�m disso, ele armazena as informa��es de recupera��o no Active Directory, se
dispon�veis, e, se necess�rio, garante que os cerificados de recupera��o mais
recentes sejam usados. Se o servi�o for interrompido ou desabilitado, os usu�rios
n�o poder�o aproveitar essa funcionalidade. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM BFE
### Service: Mecanismo de Filtragem B�sica Status: Start Type: loaded
automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O
Mecanismo de Filtragem B�sica (BFE) � um servi�o que administra pol�ticas de
Seguran�a de IP e de firewall (IPsec) e implementa a filtragem do modo de usu�rio.
Interromper ou desabilitar o servi�o BFE reduz a seguran�a do sistema
significativamente. Isso tamb�m resulta em um comportamento imprevis�vel na
administra��o de IPsec e aplica��es de firewall. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENONETWORKFIREWALL -P
[Auto Services] :HKLM BITS
### Service: Servi�o de transfer�ncia inteligente de tela de fundo Status: Start
Type: loaded automatically by Server Manager Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Transfere arquivos em segundo plano usando
largura de banda de rede ociosa. Se o servi�o estiver desabilitado, qualquer
aplicativo que dependa do BITS, como o Windows Update ou o MSN Explorer, n�o poder�
baixar programas e outras informa��es automaticamente. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM BluetoothUserService
### Service: Servi�o de Suporte a Usu�rios de Bluetooth Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O servi�o
de usu�rio de Bluetooth d� suporte � funcionalidade adequada dos recursos Bluetooth
relevantes para cada sess�o de usu�rio. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K BTHAPPGROUP -P
[Auto Services] :HKLM BluetoothUserService_8b54b
### Service: Servi�o de Suporte a Usu�rios de Bluetooth_8b54b Status: Start Type:
loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * O servi�o
de usu�rio de Bluetooth d� suporte � funcionalidade adequada dos recursos Bluetooth
relevantes para cada sess�o de usu�rio. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K BTHAPPGROUP -P
[Auto Services] :HKLM BrokerInfrastructure
### Service: Servi�o de Infraestrutura de Tarefas de Segundo Plano Status: Start
Type: loaded automatically by Server Manager Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Servi�o de infraestrutura do Windows que controla
quais tarefas de segundo plano podem ser executadas no sistema. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DCOMLAUNCH -P
[Auto Services] :HKLM BTAGService
### Service: Servi�o de Gateway Bluetooth de �udio Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Servi�o que
oferece suporte � fun��o de gateway de �udio do Perfil M�os Livres Bluetooth.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED
[Auto Services] :HKLM BthAvctpSvc
### Service: Servi�o AVCTP Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Este � o servi�o Protocolo de Transporte de
Controle de �udio e V�deo Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM bthserv
### Service: Servi�o de Suporte a Bluetooth Status: Start Type: loaded manually
on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O servi�o Bluetooth d�
suporte � descoberta e � associa��o de dispositivos Bluetooth remotos. A
interrup��o ou a desabilita��o desse servi�o pode fazer com que os dispositivos
Bluetooth instalados n�o funcionem corretamente ou impedir a descoberta e a
associa��o de novos dispositivos. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM camsvc
### Service: Servi�o do Gerenciador de Acesso de Recurso Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece
recursos para o gerenciamento do acesso dos aplicativos UWP aos recursos de
aplicativos, bem como a verifica��o de acesso do aplicativo aos recursos
espec�ficos dos aplicativos Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K APPMODEL -P
[Auto Services] :HKLM CaptureService
### Service: CaptureService Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Habilita a funcionalidade de captura de
tela opcional para aplicativos que chamam a API Windows.Graphics.Capture. Processo
de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICE -P
[Auto Services] :HKLM CaptureService_8b54b
### Service: CaptureService_8b54b Status: Start Type: loaded manually on demand
Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Habilita a funcionalidade de captura
de tela opcional para aplicativos que chamam a API Windows.Graphics.Capture.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICE -P
[Auto Services] :HKLM cbdhsvc
### Service: Servi�o de Usu�rio da �rea de Transfer�ncia Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Este
servi�o de usu�rio � usado para cen�rios de �rea de transfer�ncia Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K CLIPBOARDSVCGROUP
-P
[Auto Services] :HKLM cbdhsvc_8b54b
### Service: Servi�o de Usu�rio da �rea de Transfer�ncia_8b54b Status: Start
Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Este
servi�o de usu�rio � usado para cen�rios de �rea de transfer�ncia Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K CLIPBOARDSVCGROUP -P
[Auto Services] :HKLM cdfs
### Driver: CD/DVD File System Reader Status: Start Type: disabled Actual File:
C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS * ISO9660/Joliet File System Reader for
CD/DVDs. (Core) (All pieces) CD-ROM File System Driver Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.535 !
$*C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS
[Auto Services] :HKLM CDPSvc
### Service: Servi�o de Plataforma de Dispositivos Conectados Status: Start Type:
loaded automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE
* Este servi�o � usado para cen�rios de Plataforma de Dispositivos Conectados
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICE -P
[Auto Services] :HKLM CDPUserSvc
### Service: Servi�o de Usu�rio da Plataforma de Dispositivos Conectados Status:
Start Type: loaded automatically by Server Manager Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Este servi�o de usu�rio � usado para cen�rios de
Plataforma de Dispositivos Conectados Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM CDPUserSvc_8b54b
### Service: Servi�o de Usu�rio da Plataforma de Dispositivos Conectados_8b54b
Status: Start Type: loaded automatically by Server Manager Actual File:
C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Este servi�o de usu�rio � usado para cen�rios de
Plataforma de Dispositivos Conectados Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM CertPropSvc
### Service: Propaga��o de Certificado Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Copia certificados de usu�rio
e certificados raiz de cart�es inteligentes para o reposit�rio de certificados do
usu�rio, detecta quando um cart�o inteligente � inserido em um leitor de cart�o de
inteligente e, se necess�rio, instala o minidriver Plug and Play. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
[Auto Services] :HKLM ClipSVC
### Service: Servi�o de Licen�as de Cliente (ClipSVC) Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece suporte
de infraestrutura para a Microsoft Store. Esse servi�o � iniciado por demanda e, se
desabilitado, os aplicativos comprados na Windows Store n�o ter�o um comportamento
correto. Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K WSAPPX -P
[Auto Services] :HKLM cnghwassist
### Driver: CNG Hardware Assist algorithm provider Status: Start Type: disabled
Actual File: C:\WINDOWS\SYSTEM32\DRIVERS\CNGHWASSIST.SYS * CNG Hardware Assist
algorithm provider CNG Hardware Assist algorithm provider Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1 !
$*C:\WINDOWS\SYSTEM32\DRIVERS\CNGHWASSIST.SYS
[Auto Services] :HKLM COMSysApp
### Service: COM+ System Application Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\DLLHOST.EXE * Gerencia a configura��o e o
rastreamento de componentes baseados no Modelo de Objeto de Componente (COM)+. Se o
servi�o for interrompido, a maioria dos componentes baseados no COM+ n�o funcionar�
corretamente. Se esse servi�o for desabilitado, os servi�os que dependerem
explicitamente dele n�o ser�o iniciados. COM Surrogate Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1 !$*%SYSTEMROOT
%\SYSTEM32\DLLHOST.EXE /PROCESSID:{02D4B3F1-FD88-11D1-960D-00805FC79235}
[Auto Services] :HKLM ConsentUxUserSvc
### Service: ConsentUX Status: Start Type: loaded manually on demand Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Permite Configura��es de ConnectUX e PC para
Conectar e Emparelhar com telas WiFi e dispositivos Bluetooth. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DEVICESFLOW
[Auto Services] :HKLM ConsentUxUserSvc_8b54b
### Service: ConsentUX_8b54b Status: Start Type: loaded manually on demand Actual
File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permite Configura��es de ConnectUX e PC
para Conectar e Emparelhar com telas WiFi e dispositivos Bluetooth. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K DEVICESFLOW
[Auto Services] :HKLM CoreMessagingRegistrar
### Service: CoreMessaging Status: Start Type: loaded automatically by Server
Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Manages communication
between system components. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENONETWORK -P
[Auto Services] :HKLM cphs
### Service: Intel(R) Content Protection HECI Service Status: Start Type: loaded
manually on demand Actual File:
C:\WINDOWS\System32\DRIVERSTORE\FILEREPOSITORY\IIGD_DCH.INF_AMD64_783E12A6215F487B\
INTELCPHECISVC.EXE * Intel(R) Content Protection HECI Service - enables
communication with the Content Protection FW IntelCpHeciSvc Executable Intel
Corporation IntelCpHeciSvc Executable 9.1.1.0320 !$*%SYSTEMROOT
%\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\IIGD_DCH.INF_AMD64_783E12A6215F487B\INTELCPHE
CISVC.EXE
[Auto Services] :HKLM cplspcon
### Service: Intel(R) Content Protection HDCP Service Status: Start Type: loaded
automatically by Server Manager Actual File:
C:\WINDOWS\System32\DRIVERSTORE\FILEREPOSITORY\IIGD_DCH.INF_AMD64_783E12A6215F487B\
INTELCPHDCPSVC.EXE * Intel(R) Content Protection HDCP Service - enables
communication with Content Protection HDCP HW Intel HD Graphics Drivers for
Windows(R) Intel Corporation Intel HD Graphics Drivers for Windows(R)
25.20.100.8141 !$*%SYSTEMROOT
%\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\IIGD_DCH.INF_AMD64_783E12A6215F487B\INTELCPHD
CPSVC.EXE
[Auto Services] :HKLM CredentialEnrollmentManagerUserSvc
### Service: CredentialEnrollmentManagerUserSvc Status: Start Type: loaded
manually on demand Actual File: C:\WINDOWS\System32\CREDENTIALENROLLMENTMANAGER.EXE
* Gerenciador de Registros de Credenciais Gerenciador de Registros de Credenciais
Microsoft Corporation Sistema operacional Microsoft� Windows� 10.0.18362.1074
->CREDENTIAL ENROLLMENT MANAGER !$*%SYSTEMROOT
%\SYSTEM32\CREDENTIALENROLLMENTMANAGER.EXE
[Auto Services] :HKLM CredentialEnrollmentManagerUserSvc_8b54b
### Service: CredentialEnrollmentManagerUserSvc_8b54b Status: Start Type: loaded
manually on demand Actual File: C:\WINDOWS\SYSTEM32\CREDENTIALENROLLMENTMANAGER.EXE
* Gerenciador de Registros de Credenciais Gerenciador de Registros de Credenciais
Microsoft Corporation Sistema operacional Microsoft� Windows� 10.0.18362.1074
->CREDENTIAL ENROLLMENT MANAGER !
$*C:\WINDOWS\SYSTEM32\CREDENTIALENROLLMENTMANAGER.EXE
[Auto Services] :HKLM CryptSvc
### Service: Servi�os de criptografia Status: Start Type: loaded automatically by
Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece tr�s servi�os
de gerenciamento: Servi�o de Banco de Dados de Cat�logo, que confirma as
assinaturas dos arquivos do Windows e permite que novos programas sejam instalados;
Servi�o de Raiz Protegida, que adiciona e remove Certificados de Autoridades de
Certifica��o Raiz deste computador; e Servi�o de Atualiza��o Autom�tica de
Certificado Raiz, que recupera certificados raiz do Windows Update e habilita
cen�rios como o SSL. Se este servi�o for interrompido, os servi�os de gerenciamento
n�o funcionar�o adequadamente. Se este servi�o for desabilitado, todos os servi�os
que dele dependam diretamente deixar�o de ser iniciados. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P
[Auto Services] :HKLM dcpm-notify
### Service: Dell Command | Power Manager Notify Status: Start Type: loaded
manually on demand Actual File: C:\PROGRAM
FILES\DELL\COMMANDPOWERMANAGER\NOTIFYSERVICE.EXE * NotifyService Dell Inc. Dell
Command | Power Manager 3.4.0.58 !$*"C:\PROGRAM
FILES\DELL\COMMANDPOWERMANAGER\NOTIFYSERVICE.EXE"
[Auto Services] :HKLM DDVCollectorSvcApi
### Service: Dell Data Vault Service API Status: Start Type: loaded automatically
by Server Manager Actual File: C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DDVCOLLECTORSVCAPI.EXE * Dell Data Vault Service API
exposes a COM API for working with the DDV services Dell Data Vault Data Collector
Service API Dell Technologies Inc. Dell Data Vault 5.5.5.959 !$*"C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DDVCOLLECTORSVCAPI.EXE"
[Auto Services] :HKLM DDVDataCollector
### Service: Dell Data Vault Collector Status: Start Type: loaded automatically
by Server Manager Actual File: C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DDVDATACOLLECTOR.EXE * DDV Collector service gathers
system information and stores it for later use Dell Data Vault Data Collector
Service Dell Technologies Inc. Dell Data Vault 5.5.5.959 !$*"C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DDVDATACOLLECTOR.EXE"
[Auto Services] :HKLM DDVRulesProcessor
### Service: Dell Data Vault Processor Status: Start Type: loaded automatically
by Server Manager Actual File: C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DDVRULESPROCESSOR.EXE * DDV Rules Processor generates
alerts based on data collected by DDV Collector service Dell Data Vault Rules
Processor Dell Technologies Inc. Dell Data Vault 5.5.5.959 ->DELLRULESPROCESSOR.EXE
!$*"C:\PROGRAM FILES\DELL\DELLDATAVAULT\DDVRULESPROCESSOR.EXE"
[Auto Services] :HKLM defragsvc
### Service: Otimizador de unidade Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Ajuda o computador a ser executado
com mais efici�ncia, otimizando arquivos em unidades de armazenamento. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DEFRAGSVC
[Auto Services] :HKLM Dell Digital Delivery Services
### Service: Dell Digital Delivery Services Status: Start Type: loaded
automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\DELL DIGITAL
DELIVERY SERVICES\DELL.D3.WINSVC.EXE * Downloads and installs the applications that
you purchased with your computer Dell.D3.WinSvc Dell.D3.WinSvc 4.0.52.0 !
$*"C:\PROGRAM FILES (X86)\DELL DIGITAL DELIVERY SERVICES\DELL.D3.WINSVC.EXE"
[Auto Services] :HKLM Dell Hardware Support
### Service: Status: Start Type: loaded automatically by Server Manager Actual
File: C:\PROGRAM
FILES\DELL\SUPPORTASSISTAGENT\PCDR\SUPPORTASSIST\6.0.7193.611\DSAPI.EXE * Dell
Hardware Support continuously monitors PC component health to identify and help
resolve possible hardware issues. PC-Doctor Dell SupportAssist API PC-Doctor, Inc.
PC-Doctor for Windows 6.0.7193.611 !$*"C:\PROGRAM
FILES\DELL\SUPPORTASSISTAGENT\PCDR\SUPPORTASSIST\6.0.7193.611\DSAPI.EXE"
[Auto Services] :HKLM Dell SupportAssist Remediation
### Service: Dell SupportAssist Remediation Status: Start Type: loaded
automatically by Server Manager Actual File: C:\PROGRAM
FILES\DELL\SAREMEDIATION\AGENT\DELLSUPPORTASSISTREMEDATIONSERVICE.EXE * Dell
SupportAssist Remediation Service Dell SupportAssist Remediation Dell Inc. Dell
SupportAssist Remediation 4.4.1.9851 !$*"C:\PROGRAM
FILES\DELL\SAREMEDIATION\AGENT\DELLSUPPORTASSISTREMEDATIONSERVICE.EXE"
[Auto Services] :HKLM Dell.CommandPowerManager.Service
### Service: Dell.CommandPowerManager.Service Status: Start Type: loaded manually
on demand Actual File: C:\WINDOWS\SYSTEM32\DLLHOST.EXE * COM Surrogate Microsoft
Corporation Microsoft� Windows� Operating System 10.0.18362.1 !
$*C:\WINDOWS\SYSTEM32\DLLHOST.EXE /PROCESSID:{B41E94D6-96D1-4628-8170-86A7060EEAF7}
[Auto Services] :HKLM DellClientManagementService
### Service: Dell Client Management Service Status: Start Type: loaded
automatically by Server Manager Actual File: C:\PROGRAM FILES
(X86)\DELL\UPDATESERVICE\SERVICESHELL.EXE * Enables Dell applications to manage
Dell specific features of the system. If this service is stopped, any services that
explicitly depend on it will cause this service to be restarted. If this service is
disabled, any services that explicitly depend on it will fail to function.
ServiceShell ServiceShell 1.6.0.6 !$*"C:\PROGRAM FILES
(X86)\DELL\UPDATESERVICE\SERVICESHELL.EXE"
[Auto Services] :HKLM DeviceAssociationBrokerSvc
### Service: DeviceAssociationBroker Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Enables apps to pair devices
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
DEVICESFLOW -P
[Auto Services] :HKLM DeviceAssociationBrokerSvc_8b54b
### Service: DeviceAssociationBroker_8b54b Status: Start Type: loaded manually on
demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Enables apps to pair devices
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K
DEVICESFLOW -P
[Auto Services] :HKLM DeviceAssociationService
### Service: Servi�o de Associa��o de Dispositivo Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite o
emparelhamento entre o sistema e dispositivos com ou sem fio. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM DeviceInstall
### Service: Servi�o de Instala��o de Dispositivo Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite que um
computador reconhe�a e se adapte a altera��es de hardware com pouca ou nenhuma
interven��o do usu�rio. Se este servi�o for parado ou desativado, o sistema se
tornar� inst�vel. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K DCOMLAUNCH -P
[Auto Services] :HKLM DevicePickerUserSvc
### Service: DevicePicker Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Este servi�o de usu�rio � usado para
gerenciar a interface do usu�rio do Miracast, DLNA e DIAL Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DEVICESFLOW
[Auto Services] :HKLM DevicePickerUserSvc_8b54b
### Service: DevicePicker_8b54b Status: Start Type: loaded manually on demand
Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Este servi�o de usu�rio � usado para
gerenciar a interface do usu�rio do Miracast, DLNA e DIAL Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K DEVICESFLOW
[Auto Services] :HKLM DevicesFlowUserSvc
### Service: DevicesFlow Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite configura��es de ConnectUX e PC
para conectar e emparelhar com monitores WiFi e dispositivos Bluetooth. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DEVICESFLOW
[Auto Services] :HKLM DevicesFlowUserSvc_8b54b
### Service: DevicesFlow_8b54b Status: Start Type: loaded manually on demand
Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permite configura��es de ConnectUX e
PC para conectar e emparelhar com monitores WiFi e dispositivos Bluetooth. Processo
de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K
DEVICESFLOW
[Auto Services] :HKLM DevQueryBroker
### Service: Agente de Descoberta em Segundo Plano de DevQuery Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Permite que os aplicativos descubram dispositivos com uma tarefa em segundo plano
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM Dhcp
### Service: Cliente DHCP Status: Start Type: loaded automatically by Server
Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Registra e atualiza
endere�os IP e registros DNS para este computador. Se o servi�o for interrompido, o
computador n�o receber� endere�os IP din�micos e atualiza��es de DNS. Se o servi�o
for desabilitado, qualquer servi�o que dependa dele explicitamente n�o ser�
iniciado. Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM diagnosticshub.standardcollector.service
### Service: Servi�o Coletor de Padr�es de Hub de Diagn�stico da Microsoft (R)
Status: Start Type: loaded manually on demand Actual File:
C:\WINDOWS\System32\DIAGSVCS\DIAGNOSTICSHUB.STANDARDCOLLECTOR.SERVICE.EXE * Servi�o
Coletor de Padr�es de Hub de Diagn�stico. Quando executado, esse servi�o coleta
eventos ETW em tempo real e os processa. Microsoft (R) Diagnostics Hub Standard
Collector Microsoft Corporation Internet Explorer 11.00.18362.1082 !$*%SYSTEMROOT
%\SYSTEM32\DIAGSVCS\DIAGNOSTICSHUB.STANDARDCOLLECTOR.SERVICE.EXE
[Auto Services] :HKLM diagsvc
### Service: Diagnostic Execution Service Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Executes diagnostic actions
for troubleshooting support Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K DIAGNOSTICS
[Auto Services] :HKLM DiagTrack
### Service: Experi�ncias do Usu�rio Conectado e Telemetria Status: Start Type:
loaded automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE
* O servi�o Experi�ncias do Usu�rio Conectado e Telemetria habilita recursos que
d�o suporte a experi�ncias de usu�rios conectados e no aplicativo. Al�m disso, esse
servi�o gerencia a cole��o de dados controlada por eventos e a transmiss�o de
informa��es de uso e diagn�stico (usadas para melhorar a experi�ncia e a qualidade
da Plataforma Windows) quando as configura��es da op��o de privacidade de uso e
diagn�stico estiverem habilitadas em Coment�rios e Diagn�stico. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UTCSVC -P
[Auto Services] :HKLM DispBrokerDesktopSvc
### Service: Exibir Servi�o de Pol�tica Status: Start Type: loaded automatically
by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Gerencia a conex�o
e a configura��o de telas locais e remotas Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM DisplayEnhancementService
### Service: Servi�o de Aprimoramento de Exibi��o Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Um servi�o para
gerenciar o aprimoramento da tela, como controle de brilho. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM DmEnrollmentSvc
### Service: Servi�o de Registro de Gerenciamento de Dispositivos Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Executa Atividades de Registro de Dispositivos para o Gerenciamento de Dispositivo
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
-P
[Auto Services] :HKLM dmwappushservice
### Service: Servi�o de Roteamento de mensagens de envio por Push WAP do
Gerenciamento de Dispositivos Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Roteia as mensagens de envio por Push WAP
recebidas pelo dispositivo e sincroniza as sess�es de Gerenciamento de Dispositivos
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
-P
[Auto Services] :HKLM Dnscache
### Service: Cliente DNS Status: Start Type: loaded automatically by Server
Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O servi�o Cliente DNS
(dnscache) armazena em cache os nomes do Sistema de Nome de Dom�nio (DNS) e
registra o nome completo deste computador. Se o servi�o for interrompido, os nomes
DNS continuar�o a ser resolvidos. Contudo, os resultados de consultas de nomes DNS
n�o ser�o armazenados em cache e o nome do computador n�o ser� registrado. Se o
servi�o for desabilitado, todos os servi�os que dependam diretamente dele n�o ser�o
inicializados. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P
[Auto Services] :HKLM DoSvc
### Service: Otimiza��o de Entrega Status: Start Type: loaded automatically by
Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Executa tarefas de
otimiza��o de entrega de conte�do Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P
[Auto Services] :HKLM dot3svc
### Service: Configura��o Autom�tica com Fio Status: Start Type: loaded manually
on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O Servi�o de Configura��o
Autom�tica de Rede com Fio (DOT3SVC) � respons�vel pela autentica��o IEEE 802.1X em
interfaces Ethernet. Se a sua implanta��o atual de rede com fio exige autentica��o
802.1X, o servi�o DOT3SVC deve ser configurado para ser executado a fim de
estabelecer conectividade de Camada 2 e/ou fornecer acesso aos recursos de rede. As
redes com fio que n�o exigem autentica��o 802.1X n�o s�o afetadas pelo servi�o
DOT3SVC. Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM DsmSvc
### Service: Gerenciador de Instala��o de Dispositivo Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Habilita a
detec��o, o download e a instala��o de software relacionado a dispositivos. Se este
servi�o for desabilitado, os dispositivos poder�o ser configurados com software
desatualizado e talvez n�o funcionem corretamente. Processo de Host para Servi�os
do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM DsSvc
### Service: Servi�o de Compartilhamento de Dados Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece troca de
dados entre aplicativos. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM DusmSvc
### Service: Uso de Dados Status: Start Type: loaded automatically by Server
Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Uso de dados da rede, limite
de dados, restringir dados em segundo plano, redes limitadas. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM Eaphost
### Service: Protocolo de Autentica��o Extens�vel Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O servi�o EAP
(Protocolo de Autentica��o Extens�vel) oferece autentica��o de rede em situa��es
como 802.1x com e sem fio, VPN e NAP (Prote��o de Acesso a Rede). O EAP tamb�m
fornece APIs usadas por clientes de acesso � rede, incluindo clientes sem fio e
VPN, durante o processo de autentica��o. Se voc� desabilitar esse servi�o, este
computador ser� impedido de acessar redes que requeiram autentica��o EAP. Processo
de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
-P
[Auto Services] :HKLM edgeupdate
### Service: Servi�o Microsoft Edge Update (edgeupdate) Status: Start Type:
loaded automatically by Server Manager Actual File: C:\PROGRAM FILES
(X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE * Mant�m o software do Microsoft
atualizado. Se esse servi�o for desabilitado ou interrompido, o software do
Microsoft n�o ser� mantido atualizado, o que significa que as vulnerabilidades de
seguran�a que podem surgir n�o poder�o ser corrigidas e os recursos podem n�o
funcionar. Esse servi�o � desinstalado automaticamente quando n�o h� software do
Microsoft usando-o. Microsoft Edge Update Microsoft Corporation Microsoft Edge
Update 1.3.127.15 ->MICROSOFT EDGE UPDATE =>MSEDGEUPDATE.DLL !$*"C:\PROGRAM FILES
(X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE" /SVC
[Auto Services] :HKLM edgeupdatem
### Service: Servi�o Microsoft Edge Update (edgeupdatem) Status: Start Type:
loaded manually on demand Actual File: C:\PROGRAM FILES
(X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE * Mant�m o software do Microsoft
atualizado. Se esse servi�o for desabilitado ou interrompido, o software do
Microsoft n�o ser� mantido atualizado, o que significa que as vulnerabilidades de
seguran�a que podem surgir n�o poder�o ser corrigidas e os recursos podem n�o
funcionar. Esse servi�o � desinstalado automaticamente quando n�o h� software do
Microsoft usando-o. Microsoft Edge Update Microsoft Corporation Microsoft Edge
Update 1.3.127.15 ->MICROSOFT EDGE UPDATE =>MSEDGEUPDATE.DLL !$*"C:\PROGRAM FILES
(X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE" /MEDSVC
[Auto Services] :HKLM EFS
### Service: EFS (Encrypting File System) Status: Start Type: loaded manually on
demand Actual File: C:\WINDOWS\System32\LSASS.EXE * Fornece a tecnologia b�sica de
criptografia de arquivos usada para armazenar arquivos criptografados em volumes do
sistema de arquivos NTFS. Se esse servi�o for interrompido ou desabilitado, os
aplicativos n�o poder�o acessar arquivos criptografados. Local Security Authority
Process Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1049 !$*%SYSTEMROOT%\SYSTEM32\LSASS.EXE
[Auto Services] :HKLM embeddedmode
### Service: Modo inserido Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * O servi�o Modo Incorporado permite cen�rios
relacionados a Aplicativos em Segundo Plano. Desabilitar esse servi�o impedir� que
Aplicativos em Segundo Plano sejam ativados. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM EntAppSvc
### Service: Servi�o de Gerenciamento de Aplicativos Empresariais Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Permite o gerenciamento de aplicativos empresariais. Processo de Host para Servi�os
do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K APPMODEL -P
[Auto Services] :HKLM esifsvc
### Service: @oem49.inf,%ServiceDisplayName%;Intel(R) Dynamic Platform and
Thermal Framework service Status: Start Type: loaded automatically by Server
Manager Actual File: C:\WINDOWS\System32\INTEL\DPTF\ESIF_UF.EXE * @oem49.inf,
%ServiceDescription%;Intel(R) Dynamic Platform and Thermal Framework service
Intel(R) Dynamic Platform and Thermal Framework Intel Corporation Intel(R) Dynamic
Platform and Thermal Framework 8.4.10501.6067 !$*%SYSTEMROOT
%\SYSTEM32\INTEL\DPTF\ESIF_UF.EXE
[Auto Services] :HKLM EventLog
### Service: Log de Eventos do Windows Status: Start Type: loaded automatically
by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Esse servi�o
gerencia eventos e logs de eventos. Oferece suporte ao log de eventos, � consulta
de eventos, a assinaturas de eventos, ao arquivamento de logs de eventos e ao
gerenciamento de metadados de eventos. Ele pode exibir eventos em XML e em formato
de texto n�o criptografado. Interromper esse servi�o pode comprometer a seguran�a e
confiabilidade do sistema. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM EventSystem
### Service: COM+ evento do sistema Status: Start Type: loaded automatically by
Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Oferece suporte ao
Servi�o de Notifica��o de Eventos do Sistema (SENS), que fornece a distribui��o
autom�tica de eventos para inscri��o de componentes do Modelo de Objeto de
Componente (COM). Se o servi�o for interrompido, o SENS fechar� e n�o poder�
fornecer notifica��es de logon e logoff. Se este servi�o for desabilitado, os
servi�os que dependerem explicitamente dele n�o ser�o inicializados. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM Fax
### Service: Fax Status: Start Type: loaded manually on demand Actual File:
C:\WINDOWS\System32\FXSSVC.EXE * Permite enviar e receber fax, usando recursos de
fax dispon�veis no computador ou na rede. Fax Service Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1 !$*%SYSTEMROOT
%\SYSTEM32\FXSSVC.EXE
[Auto Services] :HKLM fdPHost
### Service: Host de Provedor da Descoberta de Fun��o Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O servi�o FDPHOST
hospeda os provedores de descoberta de rede de FD (Function Discovery, Descoberta
de Fun��o). Esses provedores de FD fornecem servi�os de descoberta de rede para o
protocolo SSDP e o protocolo WS-D. A interrup��o ou desativa��o do servi�o FDPHOST
desabilitar� a descoberta de rede para esses protocolos ao usar FD. Quando esse
servi�o n�o estiver dispon�vel, os servi�os de rede usando o FD e que dependem
desses protocolos de descoberta n�o conseguir�o localizar os recursos ou
dispositivos de rede. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM FDResPub
### Service: Publica��o de Recursos de Descoberta de Fun��o Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Publica
este computador e os recursos associados a ele, de modo que possam ser descobertos
na rede. Se este servi�o for interrompido, os recursos de rede n�o ser�o mais
publicados e eles n�o ser�o descobertos por outros computadores da rede. Processo
de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICEANDNOIMPERSONATION -P
[Auto Services] :HKLM fhsvc
### Service: Servi�o de Hist�rico de Arquivos Status: Start Type: loaded manually
on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Protege arquivos de
usu�rio contra perdas acidentais copiando-os para um local de backup Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM FontCache
### Service: Servi�o de Cache de Fontes do Windows Status: Start Type: loaded
automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Otimiza o desempenho de aplicativos, armazenando em cache os dados de fonte usados
com frequ�ncia. Os aplicativos iniciar�o esse servi�o caso ele ainda n�o esteja
sendo executado. Ele pode ser desabilitado, embora isso prejudique o desempenho dos
aplicativos. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM FontCache3.0.0.0
### Service: Windows Presentation Foundation Font Cache 3.0.0.0 Status: Start
Type: loaded manually on demand Actual File:
C:\Windows\MICROSOFT.NET\FRAMEWORK64\V3.0\WPF\PRESENTATIONFONTCACHE.EXE * Otimiza o
desempenho dos aplicativos do Windows Presentation Foundation (WPF) colocando em
cache os dados de fontes usadas com freq��ncia. Os aplicativos do WPF iniciar�o
esse servi�o caso ele ainda n�o esteja sendo executado. Ele pode ser desativado,
ainda que isso diminuir� o desempenho dos aplicativos do WPF.
PresentationFontCache.exe Microsoft Corporation Microsoft� .NET Framework
3.0.6920.9135 !$*%SYSTEMROOT
%\MICROSOFT.NET\FRAMEWORK64\V3.0\WPF\PRESENTATIONFONTCACHE.EXE
[Auto Services] :HKLM FrameServer
### Service: Servidor de Quadros de C�mera do Windows Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite que
v�rios clientes acessem os quadros de v�deo de dispositivos com c�mera. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K CAMERA
[Auto Services] :HKLM GoogleChromeElevationService
### Service: Google Chrome Elevation Service (GoogleChromeElevationService)
Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\85.0.4183.83\ELEVATION_SERVICE.EXE * Google Chrome
Google LLC Google Chrome 85.0.4183.83 ->ELEVATION_SERVICE_EXE !$*"C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\85.0.4183.83\ELEVATION_SERVICE.EXE"
[Auto Services] :HKLM GraphicsPerfSvc
### Service: GraphicsPerfSvc Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Graphics performance monitor service
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
GRAPHICSPERFSVCGROUP
[Auto Services] :HKLM HfcDisableService
### Service: @oem63.inf,%HfcDisableService.DisplayName%;Intel(R) RST HFC Disable
Service Status: Start Type: disabled Actual File:
C:\WINDOWS\System32\DRIVERSTORE\FILEREPOSITORY\IASTORAC.INF_AMD64_F881C4BE237CE854\
HFCDISABLESERVICE.EXE * @oem63.inf,%HfcDisableService.Desc%;Turns off hiberfile
caching in Intel(R) RST driver. Intel(R) RST HFC disable Service Intel Corporation
Intel(R) RST HFC disable Service 17.5.9.1040 !$*%SYSTEMROOT
%\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\IASTORAC.INF_AMD64_F881C4BE237CE854\HFCDISABL
ESERVICE.EXE
[Auto Services] :HKLM hidserv
### Service: Servi�o de Dispositivos de Interface Humana Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Ativa e
mant�m o uso de bot�es de atalho em teclados, controles remotos e outros
dispositivos multim�dia. Recomendamos manter este servi�o em execu��o. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM hvcrash
### Driver: Status: Start Type: disabled Actual File:
C:\WINDOWS\SYSTEM32\DRIVERS\HVCRASH.SYS * Hyper-V Crashdump Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1 !
$*C:\WINDOWS\SYSTEM32\DRIVERS\HVCRASH.SYS
[Auto Services] :HKLM HvHost
### Service: Servi�o de Host HV Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Oferece uma interface com o
hipervisor Hyper-V para fornecer contadores de desempenho por parti��o para o
sistema operacional do host. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM iaStorAfsService
### Service: @oem63.inf,%iaStorAfsWindowsService.Name%;Intel(R) Optane(TM) Memory
Service Status: Start Type: loaded manually on demand Actual File:
C:\WINDOWS\System32\IASTORAFSSERVICE.EXE * @oem63.inf,
%iaStorAfsWindowsService.Description%;Enables amazing system performance and
responsiveness by accelerating frequently used files Intel(R) Optane(TM) Memory
Service Intel Corporation Intel(R) Optane(TM) Memory Service 17.5.9.1040 !$*
%SYSTEMROOT%\SYSTEM32\IASTORAFSSERVICE.EXE
[Auto Services] :HKLM IAStorDataMgrSvc
### Service: Intel(R) Rapid Storage Technology Status: Start Type: loaded
automatically by Server Manager Actual File: C:\PROGRAM FILES\INTEL\INTEL(R) RAPID
STORAGE TECHNOLOGY\IASTORDATAMGRSVC.EXE * Provides storage event notification and
manages communication between the storage driver and user space applications.
IAStorDataSvc Intel Corporation IAStorDataSvc 17.2.4.1011 !$*"C:\PROGRAM
FILES\INTEL\INTEL(R) RAPID STORAGE TECHNOLOGY\IASTORDATAMGRSVC.EXE"
[Auto Services] :HKLM icssvc
### Service: Servi�o de Hotspot M�vel do Windows Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite
compartilhar uma conex�o de dados da rede celular com outro dispositivo. Processo
de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM igccservice
### Service: Intel(R) Graphics Command Center Service Status: Start Type: loaded
automatically by Server Manager Actual File:
C:\WINDOWS\System32\DRIVERSTORE\FILEREPOSITORY\IGCC_DCH.INF_AMD64_5B19DFE7970A7139\
ONEAPP.IGCC.WINSERVICE.EXE * Service for Intel(R) Graphics Command Center
OneApp.IGCC.WinService OneApp.IGCC.WinService 1.0.0.0 !$*%SYSTEMROOT
%\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\IGCC_DCH.INF_AMD64_5B19DFE7970A7139\ONEAPP.IG
CC.WINSERVICE.EXE
[Auto Services] :HKLM igfxCUIService2.0.0.0
### Service: Intel(R) HD Graphics Control Panel Service Status: Start Type:
loaded automatically by Server Manager Actual File:
C:\WINDOWS\System32\DRIVERSTORE\FILEREPOSITORY\CUI_DCH.INF_AMD64_CB5B3AC4D6A4F65A\I
GFXCUISERVICE.EXE * Service for Intel(R) HD Graphics Control Panel igfxCUIService
Module Intel Corporation Intel(R) Common User Interface 6.15.100.8141 !$*
%SYSTEMROOT
%\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\CUI_DCH.INF_AMD64_CB5B3AC4D6A4F65A\IGFXCUISER
VICE.EXE
[Auto Services] :HKLM IKEEXT
### Service: M�dulos de Cria��o de Chaves IKE e AuthIP do IPSec Status: Start
Type: loaded automatically by Server Manager Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * O servi�o IKEEXT hospeda os m�dulos de cria��o de
chaves IKE e AuthIP. Esses m�dulos s�o usados para autentica��o e troca de chaves
no protocolo IPSec. Ao interromper ou desabilitar o servi�o IKEEXT, a troca de
chaves IKE e AuthIP ser� desabilitada nos computadores pares. O protocolo IPSec
geralmente � configurado para usar IKE ou AuthIP e, portanto, a interrup��o ou
desabilita��o do servi�o IKEEXT poder� resultar em falha no IPSec e comprometer a
seguran�a do sistema. � altamente recomend�vel manter o servi�o IKEEXT em execu��o.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
-P
[Auto Services] :HKLM InstallService
### Service: Servi�o de Instala��o da Microsoft Store Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece suporte
de infraestrutura para a Microsoft Store. Este servi�o � iniciado sob demanda e, se
desabilitado, as instala��es n�o funcionar�o adequadamente. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM Intel(R) Capability Licensing Service TCP IP Interface
### Service: @oem89.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing
Service TCP IP Interface Status: Start Type: loaded manually on demand Actual File:
C:\WINDOWS\System32\DRIVERSTORE\FILEREPOSITORY\ICLSCLIENT.INF_AMD64_75FFCA5EEC865B4
B\LIB\SOCKETHECISERVER.EXE * Version: 1.61.251.0 Intel(R) Capability Licensing
Service TCP IP Interface Intel(R) Corporation Intel(R) Capability Licensing Service
TCP IP Interface 1.61.251.0 !$*%SYSTEMROOT
%\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\ICLSCLIENT.INF_AMD64_75FFCA5EEC865B4B\LIB\SOC
KETHECISERVER.EXE
[Auto Services] :HKLM Intel(R) TPM Provisioning Service
### Service: @oem89.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning
Service Status: Start Type: loaded automatically by Server Manager Actual File:
C:\WINDOWS\System32\DRIVERSTORE\FILEREPOSITORY\ICLSCLIENT.INF_AMD64_75FFCA5EEC865B4
B\LIB\TPMPROVISIONINGSERVICE.EXE * Version: 1.61.251.0 Intel(R) TPM Provisioning
Service Intel(R) Corporation Intel(R) TPM Provisioning Service 1.61.251.0
->INTELTPMPROVISIONINGSERVICE !$*%SYSTEMROOT
%\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\ICLSCLIENT.INF_AMD64_75FFCA5EEC865B4B\LIB\TPM
PROVISIONINGSERVICE.EXE
[Auto Services] :HKLM IntelAudioService
### Service: Intel(R) Audio Service Status: Start Type: loaded automatically by
Server Manager Actual File: C:\WINDOWS\System32\CAVS\INTEL(R) AUDIO
SERVICE\INTELAUDIOSERVICE.EXE * IntelAudioService Intel IntelAudioService
01.00.965.00 !$*%SYSTEMROOT%\SYSTEM32\CAVS\INTEL(R) AUDIO
SERVICE\INTELAUDIOSERVICE.EXE
[Auto Services] :HKLM iphlpsvc
### Service: Auxiliar de IP Status: Start Type: loaded automatically by Server
Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece conectividade em
t�nel usando tecnologias de transi��o do IPv6 (6to4, ISATAP, Port Proxy e Teredo) e
IP-HTTPS. Se esse servi�o for parado, o computador n�o ter� os benef�cios de
conectividade aprimorada que essas tecnologias oferecem. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM IpxlatCfgSvc
### Service: Servi�o de Configura��o de Convers�o de IP Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Configura
e habilita a convers�o de v4 em v6 e vice-versa Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM jhi_service
### Service: Intel(R) Dynamic Application Loader Host Interface Service Status:
Start Type: loaded automatically by Server Manager Actual File:
C:\WINDOWS\System32\DRIVERSTORE\FILEREPOSITORY\DAL.INF_AMD64_31A8DBBF39DCDC3B\JHI_S
ERVICE.EXE * Intel(R) Dynamic Application Loader Host Interface Service - Allows
applications to access the local Intel (R) DAL Intel(R) Dynamic Application Loader
Host Interface Intel Corporation Intel(R) Dynamic Application Loader Host Interface
1.32.20190403 !$*%SYSTEMROOT
%\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\DAL.INF_AMD64_31A8DBBF39DCDC3B\JHI_SERVICE.EX
E
[Auto Services] :HKLM KeyIso
### Service: Isolamento de Chave CNG Status: Start Type: loaded manually on
demand Actual File: C:\WINDOWS\System32\LSASS.EXE * O servi�o de isolamento de
chave CNG � hospedado pelo processo LSA e isola o processamento de chaves privadas
e opera��es criptogr�ficas associadas, conforme exigido pelos Crit�rios Comuns. O
servi�o armazena e usa chaves de longa dura��o em um processo seguro segundo os
Crit�rios Comuns. Local Security Authority Process Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1049 !$*%SYSTEMROOT%\SYSTEM32\LSASS.EXE
[Auto Services] :HKLM Killer Network Service
### Service: @oem3.inf,%Killer_Service%;Killer Network Service Status: Start
Type: loaded automatically by Server Manager Actual File:
C:\WINDOWS\System32\DRIVERS\RIVETNETWORKS\KILLER\KILLERNETWORKSERVICE.EXE *
@oem3.inf,%KillerServiceDesc%;Killer Network Service Killer Network Service Rivet
Networks Killer Network Service 2.0.2369 !$*%SYSTEMROOT
%\SYSTEM32\DRIVERS\RIVETNETWORKS\KILLER\KILLERNETWORKSERVICE.EXE
[Auto Services] :HKLM KNDBWM
### Service: @oem3.inf,%KNDBWMService%;KNDBWM Status: Start Type: loaded manually
on demand Actual File:
C:\WINDOWS\System32\DRIVERS\RIVETNETWORKS\KILLER\KNDBWMSERVICE.EXE * @oem3.inf,
%KNDBWMServiceDesc%;Killer Dynamic Bandwidth Service Windows Service Wrapper
CloudBees, Inc. Windows Service Wrapper 1.18.0.0 ->WINSW.EXE !$*%SYSTEMROOT
%\SYSTEM32\DRIVERS\RIVETNETWORKS\KILLER\KNDBWMSERVICE.EXE
[Auto Services] :HKLM KtmRm
### Service: KtmRm para Coordenador de Transa��es Distribu�das Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Coordena transa��es entre o MSDTC (Coordenador de Transa��es Distribu�das) e o KTM
(Gerenciador de Transa��es do Kernel). Se n�o for necess�rio, recomendamos que esse
servi�o permane�a desativado. Se for necess�rio, o MSDTC e o KTM iniciar�o esse
servi�o automaticamente. Se esse servi�o for desabilitado, qualquer transa��o do
MSDTC que interaja com um Gerenciador de Recursos do Kernel falhar� e todos os
servi�os que dependerem explicitamente dele n�o ser�o inicializados. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
NETWORKSERVICEANDNOIMPERSONATION -P
[Auto Services] :HKLM LanmanServer
### Service: Server Status: Start Type: loaded automatically by Server Manager
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Oferece suporte a compartilhamento
na rede de arquivo, impress�o e pipes nomeados para este computador. Se este
servi�o for interrompido, quaisquer servi�os que dele dependam diretamente n�o
ser�o inicializados. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM LanmanWorkstation
### Service: Esta��o de trabalho Status: Start Type: loaded automatically by
Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Cria e mant�m
conex�es de rede cliente com servidores remotos usando o protocolo SMB. Se o
servi�o for interrompido, as conex�es ficar�o indispon�veis. Se for desabilitado,
todos os servi�os que dependem diretamente dele n�o ser�o inicializados. Processo
de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
NETWORKSERVICE -P
[Auto Services] :HKLM lfsvc
### Service: Servi�o de Geolocaliza��o Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Esse servi�o monitora a
localiza��o atual do sistema e gerencia as cercas geogr�ficas (uma localiza��o
geogr�fica com eventos associados). Se esse servi�o for desativado, os aplicativos
n�o poder�o usar ou receber notifica��es de geolocaliza��o ou cercas geogr�ficas.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
-P
[Auto Services] :HKLM LicenseManager
### Service: Servi�o de Gerenciador de Licen�a do Windows Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece
suporte de infraestrutura para a Microsoft Store. Este servi�o � iniciado sob
demanda e, se desabilitado, o conte�do adquirido por meio da Microsoft Store n�o
funcionar� corretamente. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM lltdsvc
### Service: Mapeador da Descoberta de Topologia da Camada de Link Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Cria
um Mapa de Rede, que consiste em informa��es sobre o computador e a topologia do
dispositivo (conectividade), e metadados que descrevem cada computador e
dispositivo. Se esse servi�o for desabilitado, o Mapa de Rede n�o funcionar�
apropriadamente. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM lmhosts
### Service: Auxiliar NetBIOS TCP/IP Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Oferece suporte ao servi�o
NetBIOS sobre TCP/IP (NetBT) e � resolu��o de nomes NetBIOS para clientes na rede,
permitindo que os usu�rios compartilhem arquivos, imprimam e fa�am logon na rede.
Se este servi�o for interrompido, essas fun��es poder�o ficar indispon�veis. Se
este servi�o for desabilitado, nenhum servi�o que dependa explicitamente dele ser�
iniciado. Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM LMS
### Service: Intel(R) Management and Security Application Local Management
Service Status: Start Type: loaded automatically by Server Manager Actual File:
C:\PROGRAM FILES (X86)\INTEL\INTEL(R) MANAGEMENT ENGINE COMPONENTS\LMS\LMS.EXE *
Intel(R) Management and Security Application Local Management Service - Provides
OS-related Intel(R) ME functionality. Intel(R) Local Management Service Intel
Corporation Intel(R) Management and Security Application Local Management Service
1846.12.0.1173 !$*"C:\PROGRAM FILES (X86)\INTEL\INTEL(R) MANAGEMENT ENGINE
COMPONENTS\LMS\LMS.EXE"
[Auto Services] :HKLM LSM
### Service: Gerenciador de Sess�o Local Status: Start Type: loaded automatically
by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Servi�o central do
Windows que gerencia sess�es de usu�rio local. Se esse servi�o for interrompido ou
desabilitado, o sistema ficar� inst�vel. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DCOMLAUNCH -P
[Auto Services] :HKLM LxpSvc
### Service: Servi�o de Experi�ncia em Idiomas Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece suporte
de infraestrutura para implantar e configurar recursos localizados do Windows. Este
servi�o � iniciado por demanda e, se desabilitado, idiomas adicionais do Windows
n�o ser�o implantados no sistema, e o Windows poder� n�o funcionar corretamente.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
[Auto Services] :HKLM MapsBroker
### Service: Gerenciador de Mapas Baixados Status: Start Type: loaded
automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Servi�o Windows para acessar mapas baixados usando um aplicativo. Este servi�o �
iniciado sob demanda pelo aplicativo que acessa os mapas baixados. Desabilitar este
servi�o impedir� que os aplicativos acessem os mapas. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P
[Auto Services] :HKLM McAfee WebAdvisor
### Service: McAfee WebAdvisor Status: Start Type: loaded automatically by Server
Manager Actual File: C:\PROGRAM FILES\MCAFEE\WEBADVISOR\SERVICEHOST.EXE * McAfee
WebAdvisor Service McAfee WebAdvisor McAfee, LLC McAfee WebAdvisor 4,1,1,0
->SERVICEHOST MODULE !$*"C:\PROGRAM FILES\MCAFEE\WEBADVISOR\SERVICEHOST.EXE"
[Auto Services] :HKLM MessagingService
### Service: MessagingService Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Servi�o de suporte a mensagens de
texto e funcionalidade relacionada. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM MessagingService_8b54b
### Service: MessagingService_8b54b Status: Start Type: loaded manually on demand
Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Servi�o de suporte a mensagens de
texto e funcionalidade relacionada. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM MicrosoftEdgeElevationService
### Service: Microsoft Edge Elevation Service Status: Start Type: loaded manually
on demand Actual File: C:\PROGRAM FILES
(X86)\MICROSOFT\EDGE\APPLICATION\85.0.564.70\ELEVATION_SERVICE.EXE * Keeps
Microsoft Edge up to update. If this service is disabled, the application will not
be kept up to date. Microsoft Edge Microsoft Corporation Microsoft Edge 85.0.564.70
->ELEVATION_SERVICE_EXE !$*"C:\PROGRAM FILES
(X86)\MICROSOFT\EDGE\APPLICATION\85.0.564.70\ELEVATION_SERVICE.EXE"
[Auto Services] :HKLM MixedRealityOpenXRSvc
### Service: Windows Mixed Reality OpenXR Service Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Enables Mixed
Reality OpenXR runtime functionality Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM MozillaMaintenance
### Service: Mozilla Maintenance Service Status: Start Type: loaded manually on
demand Actual File: C:\PROGRAM FILES (X86)\MOZILLA MAINTENANCE
SERVICE\MAINTENANCESERVICE.EXE * O servi�o de manuten��o da Mozilla assegura que
voc� tenha a vers�o mais nova e segura do Mozilla Firefox no seu computador. Manter
o Firefox atualizado � muito importante para sua seguran�a online. A Mozilla
recomenda enfaticamente que voc� mantenha este servi�o ativado. Mozilla Foundation
Firefox 76.0.1 !$*"C:\PROGRAM FILES (X86)\MOZILLA MAINTENANCE
SERVICE\MAINTENANCESERVICE.EXE"
[Auto Services] :HKLM mpssvc
### Service: Windows Defender Firewall Status: Start Type: loaded automatically
by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O Windows Defender
Firewall ajuda a proteger seu computador, impedindo que usu�rios n�o autorizados
obtenham acesso ao seu computador ou pela Internet por uma rede. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENONETWORKFIREWALL -P
[Auto Services] :HKLM MSDTC
### Service: Coordenador de transa��es distribu�das Status: Start Type: loaded
manually on demand Actual File: C:\WINDOWS\System32\MSDTC.EXE * Coordena as
transa��es que incluem v�rios gerenciadores de recursos, como bancos de dados,
filas de mensagens e sistemas de arquivos. Se esse servi�o for interrompido, essas
transa��es falhar�o. Se o servi�o for desabilitado, os servi�os que dependerem
explicitamente dele n�o ser�o inicializados. Servi�o de Coordenador de Transa��es
Distribu�das da Microsoft Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*%SYSTEMROOT%\SYSTEM32\MSDTC.EXE
[Auto Services] :HKLM MSiSCSI
### Service: Servi�o Iniciador Microsoft iSCSI Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Gerencia as
sess�es de Internet SCSI (iSCSI) deste computador para dispositivos de destino
iSCSI remotos. Se este servi�o for interrompido, o computador n�o poder� fazer
logon ou acessar destinos iSCSI. Se este servi�o estiver desabilitado, qualquer
servi�o que dependa explicitamente dele falhar� ao iniciar. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM msiserver
### Service: Windows Installer Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\MSIEXEC.EXE * Adiciona, modifica e remove os
aplicativos fornecidos como um pacote do Windows Installer (*.msi, *.msp). Se este
servi�o for desabilitado, todos os servi�os que dependerem dele explicitamente n�o
ser�o iniciados. Windows� installer Microsoft Corporation Windows Installer -
Unicode 5.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\MSIEXEC.EXE /V
[Auto Services] :HKLM NaturalAuthentication
### Service: Autentica��o Natural Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Servi�o de agregador de sinal, que
avalia sinais com base em fatores de hora, rede, geolocaliza��o, Bluetooth e cdf.
Os recursos compat�veis s�o Desbloqueio de Dispositivo, Bloqueio Din�mico e
pol�ticas MDM Dynamo. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM NcaSvc
### Service: Assistente de Conectividade de Rede Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece
notifica��o de status do DirectAccess para componentes da interface de usu�rio
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
-P
[Auto Services] :HKLM NcbService
### Service: Agente de Conex�o de Rede Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Conex�es de agentes que
permitem que Aplicativos da Windows Store recebam notifica��es da Internet.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM NcdAutoSetup
### Service: Instala��o Autom�tica de Dispositivos Conectados � Rede Status:
Start Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE
* O servi�o de Instala��o Autom�tica de Dispositivos Conectados � Rede monitora e
instala dispositivos qualificados conectados a uma rede qualificada. Se esse
servi�o for interrompido ou desabilitado, isso impedir� que o Windows descubra e
instale dispositivos conectados � rede qualificados automaticamente. Os usu�rios
ainda poder�o adicionar manualmente dispositivos conectados � rede a um PC atrav�s
da interface do usu�rio. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENONETWORK -P
[Auto Services] :HKLM Netlogon
### Service: Logon de rede Status: Start Type: loaded manually on demand Actual
File: C:\WINDOWS\System32\LSASS.EXE * Mant�m um canal seguro entre este computador
e o controlador de dom�nio para autenticar usu�rios e servi�os. Se este servi�o for
interrompido, o computador talvez n�o possa autenticar usu�rios e servi�os e o
controlador de dom�nio talvez n�o possa registrar registros DNS. Se o servi�o for
desabilitado, os servi�os que dependerem dele explicitamente n�o ser�o iniciados.
Local Security Authority Process Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1049 !$*%SYSTEMROOT%\SYSTEM32\LSASS.EXE
[Auto Services] :HKLM Netman
### Service: Conex�es de Rede Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Gerencia objetos da pasta de
Conex�es de Rede e Discadas, na qual voc� pode exibir conex�es remotas e de rede
local. Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM netprofm
### Service: Servi�o da Lista de Redes Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Identifica as redes �s quais
o computador est� conectado, coleta e armazena as propriedades dessas redes e
notifica os aplicativos quando as propriedades s�o alteradas. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM NetSetupSvc
### Service: Servi�o de Configura��o de Rede Status: Start Type: loaded manually
on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O Servi�o de Configura��o
de Rede gerencia a instala��o dos drivers de rede e permite a configura��o de
defini��es de rede de baixo n�vel. Se o servi�o for interrompido, todas as
instala��es de drivers em andamento podem ser canceladas. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM NetTcpPortSharing
### Service: Servi�o de Compartilhamento de Porta Net.Tcp Status: Start Type:
disabled Actual File: C:\Windows\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SMSVCHOST.EXE
* Fornece a capacidade de compartilhar portas TCP no protocolo net.tcp.
SMSvcHost.exe Microsoft Corporation Microsoft� .NET Framework 4.8.4121.0 !$*
%SYSTEMROOT%\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SMSVCHOST.EXE
[Auto Services] :HKLM NgcCtnrSvc
### Service: Cont�iner do Microsoft Passport Status: Start Type: loaded manually
on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Gerencia as chaves de
identidade do usu�rio local usadas para a autentica��o em provedores de identidade,
al�m de cart�es inteligentes virtuais do TPM. Se esse servi�o estiver desabilitado,
as chaves de identidade do usu�rio local e os cart�es inteligentes virtuais n�o
estar�o acess�veis. � recomend�vel n�o reconfigurar esse servi�o. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM NgcSvc
### Service: Microsoft Passport Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece o isolamento de processos
para chaves de criptografia usadas para autenticar provedores de identidade
associados de usu�rios. Se esse servi�o for desabilitado, nenhum tipo de uso e de
gerenciamento dessas chaves estar� dispon�vel, o que inclui logon em computadores e
sign-on �nico em aplicativos e sites. Esse servi�o � iniciado e interrompido
automaticamente. Recomendamos n�o reconfigurar esse servi�o. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM NlaSvc
### Service: Reconhecimento de Locais de Rede Status: Start Type: loaded
automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Coleta e armazena informa��es de configura��o para a rede e notifica os programas
quando as informa��es s�o modificadas. Se esse servi�o for parado, as informa��es
de configura��o poder�o se tornar indispon�veis. Se for desabilitado, os servi�os
que dependerem dele explicitamente n�o ser�o iniciados. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P
[Auto Services] :HKLM nsi
### Service: Servi�o de Interface de Reposit�rio de Rede Status: Start Type:
loaded automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE
* Esse servi�o fornece notifica��es de rede (por exemplo, adi��o/exclus�o de
interface etc.) a clientes de modo de usu�rio. Se esse servi�o for parado, causar�
perda de conectividade de rede. Se for desabilitado, os servi�os que dependerem
dele explicitamente n�o ser�o iniciados. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM NvContainerLocalSystem
### Service: NVIDIA LocalSystem Container Status: Start Type: loaded
automatically by Server Manager Actual File: C:\PROGRAM FILES\NVIDIA
CORPORATION\NVCONTAINER\NVCONTAINER.EXE * Container service for NVIDIA root
features NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 28049213 !
$*"C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINER.EXE" -S
NVCONTAINERLOCALSYSTEM -F "C:\PROGRAMDATA\NVIDIA\NVCONTAINERLOCALSYSTEM.LOG" -L 3
-D "C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\PLUGINS\LOCALSYSTEM" -R -P
30000 -ST "C:\PROGRAM FILES\NVIDIA
CORPORATION\NVCONTAINER\NVCONTAINERTELEMETRYAPI.DLL"
[Auto Services] :HKLM NvContainerNetworkService
### Service: NVIDIA NetworkService Container Status: Start Type: loaded manually
on demand Actual File: C:\PROGRAM FILES\NVIDIA
CORPORATION\NVCONTAINER\NVCONTAINER.EXE * Container service for NVIDIA network
features NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 28049213 !
$*"C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINER.EXE" -S
NVCONTAINERNETWORKSERVICE -F "C:\PROGRAMDATA\NVIDIA\NVCONTAINERNETWORKSERVICE.LOG"
-L 3 -D "C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\PLUGINS\NETWORKSERVICE" -R
-P 30000 -ST "C:\PROGRAM FILES\NVIDIA
CORPORATION\NVCONTAINER\NVCONTAINERTELEMETRYAPI.DLL"
[Auto Services] :HKLM NVDisplay.ContainerLocalSystem
### Service: NVIDIA Display Container LS Status: Start Type: loaded automatically
by Server Manager Actual File:
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NVDMI.INF_AMD64_1CB2F96FD365EFCE\DIS
PLAY.NVCONTAINER\NVDISPLAY.CONTAINER.EXE -S NVDISPLAY.CONTAINERLOCALSYSTEM -F
%PROGRAMDATA%\NVIDIA\NVDISPLAY.CONTAINERLOCALSYSTEM.LOG -L 3 -D
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NVDMI.INF_AMD64_1CB2F96FD365EFCE\DIS
PLAY.NVCONTAINER\PLUGINS\LOCALSYSTEM -R -P 30000 -CFG
NVDISPLAY.CONTAINERLOCALSYSTEM\LOCALSYSTEM * Container service for NVIDIA root
features NVIDIA Display Container LS!
$*C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NVDMI.INF_AMD64_1CB2F96FD365EFCE\D
ISPLAY.NVCONTAINER\NVDISPLAY.CONTAINER.EXE -S NVDISPLAY.CONTAINERLOCALSYSTEM -F
%PROGRAMDATA%\NVIDIA\NVDISPLAY.CONTAINERLOCALSYSTEM.LOG -L 3 -D
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NVDMI.INF_AMD64_1CB2F96FD365EFCE\DIS
PLAY.NVCONTAINER\PLUGINS\LOCALSYSTEM -R -P 30000 -CFG
NVDISPLAY.CONTAINERLOCALSYSTEM\LOCALSYSTEM
[Auto Services] :HKLM NvTelemetryContainer
### Service: NVIDIA Telemetry Container Status: Start Type: loaded automatically
by Server Manager Actual File: C:\PROGRAM FILES\NVIDIA
CORPORATION\NVTELEMETRY\NVTELEMETRYCONTAINER.EXE * Container service for NVIDIA
Telemetry NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_dev 25641478
->NVCONTAINER =>NVCONTAINER.EXE !$*"C:\PROGRAM FILES\NVIDIA
CORPORATION\NVTELEMETRY\NVTELEMETRYCONTAINER.EXE" -S NVTELEMETRYCONTAINER -F
"C:\PROGRAMDATA\NVIDIA\NVTELEMETRYCONTAINER.LOG" -L 3 -D "C:\PROGRAM FILES\NVIDIA
CORPORATION\NVTELEMETRY\PLUGINS" -R
[Auto Services] :HKLM odserv
### Service: Microsoft Office Diagnostics Service Status: Start Type: loaded
manually on demand Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT
SHARED\OFFICE12\ODSERV.EXE * Executar partes do Diagn�stico do Microsoft Office.
Microsoft Office Diagnostics Microsoft Corporation Office Diagnostics Service
12.0.4518.1014 !$*"C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT
SHARED\OFFICE12\ODSERV.EXE"
[Auto Services] :HKLM OneSyncSvc
### Service: Host de Sincroniza��o Status: Start Type: loaded automatically by
Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Este servi�o
sincroniza emails, contatos, calend�rios e v�rios outros dados do usu�rio. Emails e
outros aplicativos dependentes dessa funcionalidade n�o funcionar�o adequadamente
quando este servi�o n�o estiver em execu��o. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM OneSyncSvc_8b54b
### Service: Host de Sincroniza��o_8b54b Status: Start Type: loaded automatically
by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Este servi�o
sincroniza emails, contatos, calend�rios e v�rios outros dados do usu�rio. Emails e
outros aplicativos dependentes dessa funcionalidade n�o funcionar�o adequadamente
quando este servi�o n�o estiver em execu��o. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM ose
### Service: Office Source Engine Status: Start Type: loaded manually on demand
Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\SOURCE
ENGINE\OSE.EXE * Salva os arquivos de instala��o utilizados em atualiza��es e
reparos. � necess�rio para o download das atualiza��es de instala��o e dos
relat�rios de erro do Watson. Office Source Engine Microsoft Corporation Office
Source Engine 12.0.4518.1014 !$*"C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT
SHARED\SOURCE ENGINE\OSE.EXE"
[Auto Services] :HKLM p2pimsvc
### Service: Gerenciador de Identidades de Rede de Par Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece servi�os
de identidade para os servi�os Protocolo PNRP e Agrupamento Ponto a Ponto. Se forem
desabilitados, esses servi�os poder�o n�o funcionar e alguns aplicativos, como
HomeGroup e Remote Assistance, poder�o n�o funcionar corretamente. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICEPEERNET
[Auto Services] :HKLM p2psvc
### Service: Agrupamento de Rede de Par Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Habilita a comunica��o com
v�rios participantes usando o Agrupamento Ponto a Ponto. Se estiver desabilitada,
aplicativos como o HomeGroup n�o funcionar�o. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICEPEERNET
[Auto Services] :HKLM PcaSvc
### Service: Servi�o Auxiliar de Compatibilidade de Programas Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Este
servi�o d� suporte ao PCA (Auxiliar de Compatibilidade de Programa). O PCA
monitora programas instalados e executados pelo usu�rio e detecta problemas de
compatibilidade conhecidos. Se esse servi�o for interrompido, o PCA n�o funcionar�
corretamente. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM perceptionsimulation
### Service: Servi�o de Simula��o de Percep��o do Windows Status: Start Type:
loaded manually on demand Actual File:
C:\WINDOWS\System32\PERCEPTIONSIMULATION\PERCEPTIONSIMULATIONSERVICE.EXE * Habilita
a simula��o de percep��o espacial, o gerenciamento de c�meras virtuais e a
simula��o de entrada espacial. Servi�o de Simula��o de Percep��o do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\PERCEPTIONSIMULATION\PERCEPTIONSIMULATIONSERVICE.EXE
[Auto Services] :HKLM PerfHost
### Service: Host de DLL de Contador de Desempenho Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSWOW64\PERFHOST.EXE * Permite que
usu�rios remotos e processos de 64 bits consultem contadores de desempenho
fornecidos por DLLs de 32 bits. Se esse servi�o for parado, apenas usu�rios locais
e processos de 32 bits poder�o consultar contadores de desempenho fornecidos por
DLLs de 32 bits. Host de Contador de Desempenho x86 Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1 !$*%SYSTEMROOT%\SYSWOW64\PERFHOST.EXE
[Auto Services] :HKLM PhoneSvc
### Service: Servi�o de Telefonia Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Gerencia o estado de telefonia no
dispositivo Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM PimIndexMaintenanceSvc
### Service: Dados de Contato Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Indexa dados de contato para
pesquisas r�pidas de contatos. Se voc� interromper ou desabilitar este servi�o, os
contatos poder�o n�o aparecer nos resultados da pesquisa. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM PimIndexMaintenanceSvc_8b54b
### Service: Dados de Contato_8b54b Status: Start Type: loaded manually on demand
Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Indexa dados de contato para
pesquisas r�pidas de contatos. Se voc� interromper ou desabilitar este servi�o, os
contatos poder�o n�o aparecer nos resultados da pesquisa. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM pla
### Service: Logs e alertas de desempenho Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Os Logs e Alertas de
Desempenho coletam dados de desempenho de computadores locais ou remotos baseados
nos par�metros da agenda pr�-configurada. Em seguida, gravam os dados em um log ou
disparam um alerta. Se este servi�o for interrompido, as informa��es de desempenho
n�o ser�o coletadas. Se for desabilitado, todos os servi�os que dependem
explicitamente dele n�o conseguir�o iniciar. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENONETWORK -P
[Auto Services] :HKLM PlugPlay
### Service: Plug and Play Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite que um computador reconhe�a e se
adapte a altera��es de hardware com pouca ou nenhuma interven��o do usu�rio. Se
este servi�o for parado ou desativado, o sistema se tornar� inst�vel. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DCOMLAUNCH -P
[Auto Services] :HKLM PNRPAutoReg
### Service: Servi�o de Publica��o de Nome de Computador do PNRP Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Este
servi�o publica um nome de computador usando o protocolo PNRP (Peer Name Resolution
Protocol). A configura��o � gerenciada atrav�s do contexto netsh 'p2p pnrp peer'
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICEPEERNET
[Auto Services] :HKLM PNRPsvc
### Service: Protocolo PNRP Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Habilita a resolu��o de nomes de par sem
servidor na Internet usando o protocolo PNRP. Se for desabilitado, alguns
aplicativos de colabora��o e ponto a ponto, como o Remote Assistance, poder�o n�o
funcionar. Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICEPEERNET
[Auto Services] :HKLM PolicyAgent
### Service: Agente de Pol�tica IPsec Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O IPsec oferece suporte �
autentica��o par no n�vel da rede, autentica��o de origem de dados, integridade dos
dados, confidencialidade de dados (criptografia) e prote��o contra repeti��o. Esse
servi�o imp�e pol�ticas IPsec criadas por meio do snap-in Pol�ticas de Seguran�a IP
ou a ferramenta de linha de comando "netsh ipsec". Se voc� interromper esse
servi�o, poder� ter problemas de conectividade de rede se a pol�tica exigir que as
conex�es usem IPsec. Al�m disso, o gerenciamento remoto do Windows Defender
Firewall n�o fica dispon�vel quando esse servi�o � interrompido. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
NETWORKSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM Power
### Service: Ligar/Desligar Status: Start Type: loaded automatically by Server
Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Gerencia a pol�tica de
energia e a entrega de notifica��o de pol�tica de energia. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DCOMLAUNCH -P
[Auto Services] :HKLM PrintNotify
### Service: Extens�es e Notifica��es da Impressora Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Este servi�o abre
caixas de di�logos personalizadas da impressora e identifica as notifica��es de um
servidor de impress�o ou de uma impressora remota. Se voc� desligar este servi�o,
n�o ser� capaz de ver as extens�es ou notifica��es da impressora. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K PRINT
[Auto Services] :HKLM PrintWorkflowUserSvc
### Service: PrintWorkflow Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fluxo de Trabalho de Impress�o Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K PRINTWORKFLOW
[Auto Services] :HKLM PrintWorkflowUserSvc_8b54b
### Service: PrintWorkflow_8b54b Status: Start Type: loaded manually on demand
Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fluxo de Trabalho de Impress�o
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K
PRINTWORKFLOW
[Auto Services] :HKLM ProfSvc
### Service: Servi�o de Perfil de Usu�rio Status: Start Type: loaded
automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Este
servi�o � respons�vel por carregar e descarregar perfis de usu�rios. Sua
interrup��o ou desabilita��o pode impedir que os usu�rios entrem ou saiam,
prejudicar o acesso dos aplicativos aos dados dos usu�rios e dificultar o
recebimento de notifica��es de eventos de perfis por componentes registrados.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
-P
[Auto Services] :HKLM PSI_SVC_2
### Service: Protexis Licensing V2 Status: Start Type: loaded automatically by
Server Manager Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\PROTEXIS\LICENSE
SERVICE\PSISERVICE_2.EXE * This service provides Protexis licensing functionalty.
PsiService PsiService Protexis Inc. PsiService System Service 03.00.02.15
->PSISERVICE =>PSISERVICE.EXE !$*"C:\PROGRAM FILES (X86)\COMMON
FILES\PROTEXIS\LICENSE SERVICE\PSISERVICE_2.EXE"
[Auto Services] :HKLM PSI_SVC_2_x64
### Service: Corel License Validation Service V2 x64, Powered by arvato Status:
Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM
FILES\COMMON FILES\PROTEXIS\LICENSE SERVICE\PSISERVICE_2.EXE * This service
provides license-validation functionality for Corel Corporation. It is powered by
Protexis from arvato digital
services. PsiService PsiService arvato digital services llc PsiService System
Service 3.2.0.62 ->PSISERVICE =>PSISERVICE.EXE !$*"C:\PROGRAM FILES\COMMON
FILES\PROTEXIS\LICENSE SERVICE\PSISERVICE_2.EXE"
[Auto Services] :HKLM PushToInstall
### Service: Servi�o Windows PushToInstall Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece suporte de
infraestrutura para a Microsoft Store. Este servi�o � iniciado automaticamente e,
se desabilitado, as instala��es remotas n�o funcionar�o corretamente. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM QWAVE
### Service: Quality Windows Audio Video Experience Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O Quality Windows
Audio Video Experience (qWave) � uma plataforma de rede para aplicativos de
streaming de �udio e v�deo (AV) em redes IP dom�sticas. O qWave melhora o
desempenho e a confiabilidade do streaming de AV, garantindo a qualidade do servi�o
(QoS) dos aplicativos de AV. Ele oferece mecanismos de controle de admiss�o,
monitoramento e imposi��o em tempo de execu��o, coment�rio de aplicativo e
prioriza��o de tr�fego. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%WINDIR
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICEANDNOIMPERSONATION -P
[Auto Services] :HKLM RasAuto
### Service: Gerenciador de conex�o de acesso remoto autom�tico Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Cria
uma conex�o com uma rede remota sempre que um programa faz refer�ncia a um endere�o
ou nome DNS ou NetBIOS remoto. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM RasMan
### Service: Gerenciador de conex�o de acesso remoto Status: Start Type: loaded
automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Gerencia conex�es de rede dial-up e virtual privada (VPN) a partir deste computador
com a Internet ou outras redes remotas. Se este servi�o estiver desabilitado, todos
os servi�os que dependerem explicitamente dele n�o ser�o iniciados. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
[Auto Services] :HKLM RemoteAccess
### Service: Roteamento e Acesso Remoto Status: Start Type: disabled Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Oferece servi�os de roteamento a empresas em
ambientes de rede local e de longa dist�ncia. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
[Auto Services] :HKLM RemoteRegistry
### Service: Registro remoto Status: Start Type: disabled Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Permite que usu�rios remotos modifiquem
configura��es do Registro neste computador. Se este servi�o for parado, o Registro
s� poder� ser modificado por usu�rios deste computador. Se este servi�o for
desativado, os servi�os que dependerem dele explicitamente n�o ser�o iniciados.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICE -P
[Auto Services] :HKLM RetailDemo
### Service: Servi�o de Demonstra��o de Revenda Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O servi�o de
Demonstra��o de Revenda controlar� a atividade do dispositivo enquanto ele estiver
no modo de demonstra��o de revenda. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K RDXGROUP
[Auto Services] :HKLM RmSvc
### Service: Servi�o de Gerenciamento de R�dio Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Servi�o de
Gerenciamento de R�dio e Modo Avi�o Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED
[Auto Services] :HKLM RNDBWM
### Service: Rivet Dynamic Bandwidth Management Status: Start Type: loaded
automatically by Server Manager Actual File: C:\PROGRAM FILES\RIVET
NETWORKS\SMARTBYTE\RNDBWMSERVICE.EXE * This service dynamically manages bandwidth
settings based on detection of internet traffic congestion. Windows Service Wrapper
CloudBees, Inc. Windows Service Wrapper 1.18.0.0 ->WINSW.EXE !$*"C:\PROGRAM
FILES\RIVET NETWORKS\SMARTBYTE\RNDBWMSERVICE.EXE"
[Auto Services] :HKLM RpcEptMapper
### Service: Mapeador de Ponto de Extremidade RPC Status: Start Type: loaded
automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Resolve identificadores de interfaces RPC para transportar pontos de extremidade.
Se este servi�o estiver parado ou desativado, os programas que estiverem usando os
servi�os da Chamada de Procedimento Remoto (RPC) n�o funcionar�o corretamente.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K RPCSS
-P
[Auto Services] :HKLM RpcLocator
### Service: Alocador Remote Procedure Call (RPC) Status: Start Type: loaded
manually on demand Actual File: C:\WINDOWS\System32\LOCATOR.EXE * No Windows 2003 e
em vers�es anteriores do Windows, o servi�o Localizador RPC (Chamada de
Procedimento Remoto) gerencia o banco de dados de servi�o de nomes RPC. No Windows
Vista e em vers�es posteriores do Windows, esse servi�o n�o fornece nenhuma
funcionalidade e est� presente para compatibilidade do aplicativo. Localizador RPC
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\LOCATOR.EXE
[Auto Services] :HKLM RstMwService
### Service: @oem63.inf,%RstMwService.Name%;Intel(R) Storage Middleware Service
Status: Start Type: loaded automatically by Server Manager Actual File:
C:\WINDOWS\System32\DRIVERSTORE\FILEREPOSITORY\IASTORAC.INF_AMD64_F881C4BE237CE854\
RSTMWSERVICE.EXE * @oem63.inf,%RstMwService.Description%;RPC endpoint service which
allows communication between driver and Windows Store Application Intel(R) Rapid
Storage Technology Management Service Intel Corporation Intel(R) Rapid Storage
Technology Management Service 17.5.9.1040 ->RSTMGMTSERVICE.EXE !$*%SYSTEMROOT
%\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\IASTORAC.INF_AMD64_F881C4BE237CE854\RSTMWSERV
ICE.EXE
[Auto Services] :HKLM RtkAudioUniversalService
### Service: Realtek Audio Universal Service Status: Start Type: loaded
automatically by Server Manager Actual File:
C:\WINDOWS\System32\RTKAUDUSERVICE64.EXE * Realtek Audio Universal Service Realtek
HD Audio Universal Service Realtek Semiconductor Realtek HD Audio Universal Service
1.0.0.176 ->RTKAUDUSERVICE.EXE !$*"%SYSTEMROOT%\SYSTEM32\RTKAUDUSERVICE64.EXE"
[Auto Services] :HKLM SCardSvr
### Service: Cart�o inteligente Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Gerencia o acesso a cart�es
inteligentes lidos por este computador. Se inserido em um leitor de cart�o
inteligente conectado ao computador. Se este servi�o for interrompido, o computador
n�o poder� ler cart�es inteligentes. Se este servi�o for desativado, quaisquer
servi�os que dele dependam diretamente n�o ser�o inicializados. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICEANDNOIMPERSONATION
[Auto Services] :HKLM ScDeviceEnum
### Service: Servi�o de Enumera��o de Dispositivo de Cart�o Inteligente Status:
Start Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE
* Cria n�s de dispositivo de software para todos os leitores de cart�o inteligente
acess�veis em determinada sess�o. Se esse servi�o estiver desabilitado, as APIs do
WinRT n�o poder�o enumerar os leitores de cart�o inteligente. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED
[Auto Services] :HKLM Schedule
### Service: Agendador de Tarefas Status: Start Type: loaded automatically by
Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite que um
usu�rio configure e agende tarefas automatizadas no computador. O servi�o tamb�m
hospeda v�rias tarefas cr�ticas de sistema do Windows. Se este servi�o for
interrompido ou desativado, essas tarefas n�o ser�o executadas nos hor�rios
agendados. Se este servi�o for desativado, quaisquer servi�os que dele dependam
diretamente n�o ser�o iniciados. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM SCPolicySvc
### Service: Pol�tica de Remo��o de Cart�o Inteligente Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite
configurar o sistema para bloquear a �rea de trabalho do usu�rio quando o cart�o
inteligente for removido. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETSVCS
[Auto Services] :HKLM SDRSVC
### Service: Backup do Windows Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece recursos de Backup e
Restaura��o do Windows. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K SDRSVC
[Auto Services] :HKLM seclogon
### Service: Logon secund�rio Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Ativa a inicializa��o de processos
sob credenciais alternativas. Se o servi�o for interrompido, esse tipo de acesso
por logon n�o estar� dispon�vel. Se o servi�o for desativado, quaisquer servi�os
que dele dependam diretamente n�o ser�o inicializados. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%WINDIR%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM SecurityHealthService
### Service: Servi�o de Seguran�a do Windows Status: Start Type: loaded manually
on demand Actual File: C:\WINDOWS\System32\SECURITYHEALTHSERVICE.EXE * O Servi�o de
Seguran�a do Windows lida com a prote��o do dispositivo e informa��es de
integridade unificadas Windows Security Health Service Microsoft Corporation
Microsoft� Windows� Operating System 4.18.1901.16384 !$*%SYSTEMROOT
%\SYSTEM32\SECURITYHEALTHSERVICE.EXE
[Auto Services] :HKLM SEMgrSvc
### Service: Gerenciador de NFC/SE e Pagamentos Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Gerencia
pagamentos e elementos seguros baseados em comunica��o a curta dist�ncia (NFC).
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICE -P
[Auto Services] :HKLM SENS
### Service: Servi�o de Notifica��o de Eventos do Sistema Status: Start Type:
loaded automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE
* Monitora os eventos do sistema e notifica os assinantes do Sistema de Eventos
COM+ sobre esses eventos. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM SensorDataService
### Service: Servi�o de Dados de Sensor Status: Start Type: loaded manually on
demand Actual File: C:\WINDOWS\System32\SENSORDATASERVICE.EXE * Fornece dados de
diversos sensores Servi�o Sensor de Dados Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SENSORDATASERVICE.EXE
[Auto Services] :HKLM SensorService
### Service: Servi�o de Sensor Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Um servi�o para sensores que
gerencia as diferentes funcionalidades dos sensores. Gerencia a SDO (Orienta��o de
Dispositivo Simples) e o Hist�rico de sensores. Carrega o sensor de SDO que relata
altera��es de orienta��o de dispositivo. Se esse servi�o for parado ou
desabilitado, o sensor de SDO n�o ser� carregado e, portanto, a rota��o autom�tica
n�o ocorrer�. A coleta de hist�rico dos Sensores tamb�m ser� interrompida. Processo
de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM SensrSvc
### Service: Servi�o de Monitoramento de Sensor Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Monitora v�rios
sensores para expor dados e adaptar-se ao estado do sistema e do usu�rio. Se esse
servi�o for interrompido ou desabilitado, o brilho do monitor n�o ir� se adaptar �s
condi��es de ilumina��o. A parada desse servi�o tamb�m pode afetar outras
funcionalidades e recursos do sistema. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICEANDNOIMPERSONATION -P
[Auto Services] :HKLM SessionEnv
### Service: Configura��o da �rea de Trabalho Remota Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O servi�o RDCS
(servi�o de Configura��o da �rea de Trabalho Remota) � respons�vel por todos os
Servi�os da �rea de Trabalho Remota e atividades de manuten��o de sess�o e
configura��o relacionadas � �rea de Trabalho Remota que exigem contexto SYSTEM.
Isso inclui pastas tempor�rias por sess�o, temas de RD e certificados de RD.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
-P
[Auto Services] :HKLM SgrmBroker
### Service: System Guard Runtime Monitor Broker Status: Start Type: loaded
automatically by Server Manager Actual File: C:\WINDOWS\System32\SGRMBROKER.EXE *
Monitora e atesta a integridade da plataforma Windows. Servi�o System Guard Runtime
Monitor Broker Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SGRMBROKER.EXE
[Auto Services] :HKLM SharedAccess
### Service: ICS (Compartilhamento de Conex�o com a Internet) Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece
servi�os de convers�o de endere�o de rede, endere�amento, resolu��o de nomes e/ou
preven��o contra invas�o para redes dom�sticas ou de pequena empresa. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM SharedRealitySvc
### Service: Servi�o de Dados Espaciais Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Esse servi�o � usado para
cen�rios de Percep��o Espacial Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM ShellHWDetection
### Service: Detec��o do hardware do shell Status: Start Type: loaded
automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Fornece notifica��es de eventos de hardware de Reprodu��o Autom�tica. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM shpamsvc
### Service: Shared PC Account Manager Status: Start Type: disabled Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Manages profiles and accounts on a SharedPC
configured device Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM SmartByte Network Service x64
### Service: SmartByte Network Service Status: Start Type: loaded automatically
by Server Manager Actual File: C:\PROGRAM FILES\RIVET
NETWORKS\SMARTBYTE\SMARTBYTENETWORKSERVICE.EXE * SmartByte Network Service Rivet
Networks SmartByte Network Service 2.5.713 !$*"C:\PROGRAM FILES\RIVET
NETWORKS\SMARTBYTE\SMARTBYTENETWORKSERVICE.EXE"
[Auto Services] :HKLM smphost
### Service: SMP de Espa�os de Armazenamento da Microsoft Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O servi�o
de host do provedor de gerenciamento de Espa�os de Armazenamento da Microsoft. Se
esse servi�o � interrompido ou desabilitado, os Espa�os de Armazenamento n�o podem
ser gerenciados. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K SMPHOST
[Auto Services] :HKLM SmsRouter
### Service: Servi�o de Roteador SMS do Microsoft Windows Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Encaminha
mensagens com base em regras aos clientes adequados. Processo de Host para Servi�os
do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM SNMPTRAP
### Service: Intercepta��o SNMP Status: Start Type: loaded manually on demand
Actual File: C:\WINDOWS\System32\SNMPTRAP.EXE * Recebe mensagens de intercepta��o
geradas por agentes Simple Network Management Protocol (SNMP) locais ou remotos e
encaminha as mensagens aos programas de gerenciamento SNMP em execu��o no
computador. Se este servi�o for parado, os programas baseados em SNMP presentes no
computador n�o receber�o mensagens de intercepta��o SNMP. Se este servi�o for
desabilitado, os servi�os que dependerem dele explicitamente n�o ser�o iniciados.
Intercepta��o SNMP Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SNMPTRAP.EXE
[Auto Services] :HKLM spectrum
### Service: Servi�o de Percep��o do Windows Status: Start Type: loaded manually
on demand Actual File: C:\WINDOWS\System32\SPECTRUM.EXE * Habilita a percep��o
espacial, a entrada espacial e a renderiza��o hologr�fica. Servi�o de Percep��o do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SPECTRUM.EXE
[Auto Services] :HKLM SplashtopRemoteService
### Service: Splashtop� Remote Service Status: Start Type: loaded automatically
by Server Manager Actual File: C:\PROGRAM FILES (X86)\SPLASHTOP\SPLASHTOP
REMOTE\SERVER\SRSERVICE.EXE * Splashtop Remote Streamer Splashtop� Streamer Service
Splashtop Inc. Splashtop� Streamer 3.4.0.0 !$*"C:\PROGRAM FILES
(X86)\SPLASHTOP\SPLASHTOP REMOTE\SERVER\SRSERVICE.EXE"
[Auto Services] :HKLM Spooler
### Service: Spooler de Impress�o Status: Start Type: loaded automatically by
Server Manager Actual File: C:\WINDOWS\System32\SPOOLSV.EXE * Este servi�o processa
trabalhos de impress�o e faz a intera��o com a impressora. Se ele for interrompido,
voc� n�o poder� mais imprimir ou ver suas impressoras. Aplicativo de subsistema de
spooler Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SPOOLSV.EXE
[Auto Services] :HKLM sppsvc
### Service: Prote��o de Software Status: Start Type: loaded automatically by
Server Manager Actual File: C:\WINDOWS\System32\SPPSVC.EXE * Permite o download, a
instala��o e a aplica��o de licen�as digitais do Windows e seus aplicativos. Se o
servi�o for desabilitado, o sistema operacional e os aplicativos licenciados
poder�o ser executados no modo de notifica��o. � altamente recomend�vel desabilitar
o servi�o Prote��o de Software. Servi�o da Plataforma de Prote��o de Software da
Microsoft Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SPPSVC.EXE
[Auto Services] :HKLM SSDPSRV
### Service: Descoberta SSDP Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Descobre dispositivos e servi�os de rede
que usam o protocolo de descoberta SSDP, como dispositivos UPnP. Tamb�m anuncia
dispositivos e servi�os SSDP em execu��o no computador local. Se esse servi�o for
interrompido, os dispositivos baseados em SSDP n�o ser�o descobertos. Se esse
servi�o for desabilitado, os servi�os que dependerem dele explicitamente n�o ser�o
iniciados. Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICEANDNOIMPERSONATION -P
[Auto Services] :HKLM ssh-agent
### Service: OpenSSH Authentication Agent Status: Start Type: disabled Actual
File: C:\WINDOWS\System32\OPENSSH\SSH-AGENT.EXE * Agent to hold private keys used
for public key authentication. OpenSSH for Windows OpenSSH_7.7p1 for Windows !$*
%SYSTEMROOT%\SYSTEM32\OPENSSH\SSH-AGENT.EXE
[Auto Services] :HKLM SstpSvc
### Service: Servi�o SSTP Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Oferece suporte ao SSTP para conectar-se a
computadores remotos usando VPN. Se este servi�o estiver desabilitado, os usu�rios
n�o conseguir�o usar o SSTP para acessar servidores remotos. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM StateRepository
### Service: Servi�o de Reposit�rio de Estado Status: Start Type: loaded manually
on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece o suporte
necess�rio � infraestrutura para o modelo do aplicativo. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K APPMODEL -P
[Auto Services] :HKLM stisvc
### Service: Assistente de aquisi��o de imagens do Windows (WIA) Status: Start
Type: loaded automatically by Server Manager Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece servi�os de aquisi��o de imagem a
scanners e c�meras Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K IMGSVC
[Auto Services] :HKLM StorSvc
### Service: Servi�o de Armazenamento Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece servi�os de
habilita��o para configura��o de armazenamento e expans�o de armazenamento externo
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM SupportAssistAgent
### Service: Dell SupportAssist Status: Start Type: loaded automatically by
Server Manager Actual File: C:\PROGRAM
FILES\DELL\SUPPORTASSISTAGENT\BIN\SUPPORTASSISTAGENT.EXE * Dell SupportAssist keeps
your PC up to date and running at its best with recommended software and driver
updates. It also helps resolve issues quickly by detecting common problems and
sending issue details to Dell Technical Support agents on your behalf. Service Dell
Inc. Service 3.7.0.148 !$*"C:\PROGRAM
FILES\DELL\SUPPORTASSISTAGENT\BIN\SUPPORTASSISTAGENT.EXE"
[Auto Services] :HKLM svsvc
### Service: Verificador de Ponto Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Verifica poss�veis corrup��es do
sistema de arquivos. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM swprv
### Service: Provedor de C�pia de Sombra de Software da Microsoft Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Gerencia c�pias de sombra de volume baseadas em software obtidas pelo servi�o de
c�pias de sombra de volume. Se o servi�o for interrompido, as c�pias de sombra de
volume baseadas em software n�o poder�o ser gerenciadas. Se o servi�o for
desativado, os servi�os que dependerem dele explicitamente n�o ser�o iniciados.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K SWPRV
[Auto Services] :HKLM SysMain
### Service: SysMain Status: Start Type: loaded automatically by Server Manager
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Mant�m e aprimora o desempenho do
sistema com o passar do tempo. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM SystemEventsBroker
### Service: Agente de Eventos do Sistema Status: Start Type: loaded
automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Coordena a execu��o do trabalho em segundo plano para o aplicativo WinRT. Se este
servi�o for parado ou desabilitado, o trabalho em segundo plano pode n�o ser
disparado. Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K DCOMLAUNCH -P
[Auto Services] :HKLM TabletInputService
### Service: Servi�o de Teclado Virtual e Painel de Manuscrito Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Habilita a funcionalidade de caneta e tinta do Teclado Virtual e Painel de
Manuscrito Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM TapiSrv
### Service: Telefonia Status: Start Type: loaded manually on demand Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece suporte � API de Telefonia (TAPI) para
programas que controlam dispositivos de telefonia no computador local e, via LAN,
em servidores que tamb�m estiverem executando o servi�o. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P
[Auto Services] :HKLM TermService
### Service: Servi�os de �rea de Trabalho Remota Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite que os
usu�rios se conectem de forma interativa a um computador remoto. A �rea de Trabalho
Remota e o Servidor Host da Sess�o da �rea de Trabalho Remota dependem desse
servi�o. Para evitar a utiliza��o remota desse computador, desmarque as caixas de
sele��o na guia Remoto do item Propriedades do sistema do painel de controle.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
NETWORKSERVICE
[Auto Services] :HKLM Themes
### Service: Temas Status: Start Type: loaded automatically by Server Manager
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece gerenciamento de temas para
experi�ncia do usu�rio. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM ThunderboltService
### Service: Thunderbolt(TM) Service Status: Start Type: loaded manually on
demand Actual File: C:\PROGRAM FILES (X86)\INTEL\THUNDERBOLT SOFTWARE\TBTSVC.EXE *
Connects and manages Thunderbolt� devices Thunderbolt(TM) Service Intel Corporation
Thunderbolt(TM) Software 17.4.79.13 !$*"C:\PROGRAM FILES (X86)\INTEL\THUNDERBOLT
SOFTWARE\TBTSVC.EXE"
[Auto Services] :HKLM TieringEngineService
### Service: Gerenciamento de Camadas de Armazenamento Status: Start Type: loaded
manually on demand Actual File: C:\WINDOWS\System32\TIERINGENGINESERVICE.EXE *
Otimiza o posicionamento dos dados nas camadas de armazenamento em todos os espa�os
de armazenamento em camadas do sistema. Gerenciamento de Camadas de Armazenamento
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\TIERINGENGINESERVICE.EXE
[Auto Services] :HKLM TimeBrokerSvc
### Service: Agente de Tempo Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Coordena a execu��o do trabalho em segundo
plano para o aplicativo WinRT. Se este servi�o for parado ou desabilitado, o
trabalho em segundo plano pode n�o ser disparado. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM TokenBroker
### Service: Gerenciador de Conta da Web Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Este servi�o � usado pelo
Gerenciador de Conta da Web para fornecer logon �nico a apps e servi�os. Processo
de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
-P
[Auto Services] :HKLM TroubleshootingSvc
### Service: Servi�o de solu��o de problemas recomendado Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite a
atenua��o autom�tica de problemas conhecidos aplicando a solu��o de problemas
recomendada. Se interrompido, seu dispositivo n�o obter� a solu��o de problemas
recomendada. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM tzautoupdate
### Service: Atualizador de Fuso Hor�rio Autom�tico Status: Start Type: disabled
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Define automaticamente o fuso
hor�rio do sistema. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM udfs
### Driver: udfs Status: Start Type: disabled Actual File:
C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS * Reads/Writes UDF 1.02,1.5,2.0x,2.5 disc
formats, usually found on C/DVD discs. (Core) (All pieces) UDF File System Driver
Microsoft Corporation Microsoft� Windows� Operating System 10.0.18362.535 !
$*C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS
[Auto Services] :HKLM uhssvc
### Service: Microsoft Update Health Service Status: Start Type: disabled Actual
File: C:\PROGRAM FILES\MICROSOFT UPDATE HEALTH TOOLS\UHSSVC.EXE * Maintains Update
Health uhssvc Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1131 !$*"C:\PROGRAM FILES\MICROSOFT UPDATE HEALTH TOOLS\UHSSVC.EXE"
[Auto Services] :HKLM UmRdpService
### Service: Redirecionador de Portas do Modo do Usu�rio dos Servi�os de �rea de
Trabalho Status: Start Type: loaded manually on demand Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Permite o redirecionamento de
Impressoras/Unidades/Portas de conex�es de RDP Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM UnistoreSvc
### Service: Armazenamento de Dados de Usu�rio Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Controla o
armazenamento de dados estruturados de usu�rio, incluindo informa��es de contato,
calend�rios, mensagens e outros tipos de conte�do. Se voc� interromper ou
desabilitar este servi�o, os aplicativos que usam esses dados poder�o n�o funcionar
corretamente. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM UnistoreSvc_8b54b
### Service: Armazenamento de Dados de Usu�rio_8b54b Status: Start Type: loaded
manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Controla o
armazenamento de dados estruturados de usu�rio, incluindo informa��es de contato,
calend�rios, mensagens e outros tipos de conte�do. Se voc� interromper ou
desabilitar este servi�o, os aplicativos que usam esses dados poder�o n�o funcionar
corretamente. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM upnphost
### Service: Host de dispositivo UPnP Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite a hospedagem de
dispositivos UPnP neste computador. Se este servi�o for interrompido, os
dispositivos UPnP hospedados deixar�o de funcionar e n�o ser� poss�vel adicionar
nenhum outro dispositivo hospedado. Se esse servi�o for desabilitado, os servi�os
que dependerem dele explicitamente n�o ser�o iniciados. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICEANDNOIMPERSONATION -P
[Auto Services] :HKLM UserDataSvc
### Service: Acesso a Dados de Usu�rio Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece aos aplicativos
acesso a dados estruturados de usu�rio, incluindo informa��es de contato,
calend�rios, mensagens e outros tipos de conte�do. Se voc� interromper ou
desabilitar este servi�o, os aplicativos que usam esses dados poder�o n�o funcionar
corretamente. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM UserDataSvc_8b54b
### Service: Acesso a Dados de Usu�rio_8b54b Status: Start Type: loaded manually
on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fornece aos aplicativos
acesso a dados estruturados de usu�rio, incluindo informa��es de contato,
calend�rios, mensagens e outros tipos de conte�do. Se voc� interromper ou
desabilitar este servi�o, os aplicativos que usam esses dados poder�o n�o funcionar
corretamente. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM UserManager
### Service: Gerenciador de Usu�rios Status: Start Type: loaded automatically by
Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O Gerenciador de
Usu�rios fornece componentes de tempo de execu��o necess�rios para a intera��o
entre v�rios usu�rios. Se esse servi�o for interrompido, � poss�vel que alguns
aplicativos n�o funcionem corretamente. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM UsoSvc
### Service: Atualizar o Servi�o Orchestrator Status: Start Type: loaded
automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Gerencia as Atualiza��es do Windows. Se interrompido, seus dispositivos n�o poder�o
baixar e instalar as atualiza��es mais recentes. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM VacSvc
### Service: Servi�o Compositor de �udio Volum�trico Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Hospeda an�lise
espacial para simula��o de �udio de Realidade Misturada. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM VaultSvc
### Service: Gerenciador de Credenciais Status: Start Type: loaded manually on
demand Actual File: C:\WINDOWS\System32\LSASS.EXE * Fornece armazenamento de
seguran�a e recupera��o de credenciais a usu�rios, aplicativos e pacotes de servi�o
de seguran�a. Local Security Authority Process Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1049 !$*%SYSTEMROOT%\SYSTEM32\LSASS.EXE
[Auto Services] :HKLM VBoxSDS
### Service: VirtualBox system service Status: Start Type: loaded manually on
demand Actual File: C:\PROGRAM FILES\ORACLE\VIRTUALBOX\VBOXSDS.EXE * Used as a COM
server for VirtualBox API. VirtualBox Global Interface Oracle Corporation Oracle VM
VirtualBox 6.1.10.138449 !$*"C:\PROGRAM FILES\ORACLE\VIRTUALBOX\VBOXSDS.EXE"
[Auto Services] :HKLM vds
### Service: Disco Virtual Status: Start Type: loaded manually on demand Actual
File: C:\WINDOWS\System32\VDS.EXE * Fornece servi�os de gerenciamento para discos,
volumes, sistemas de arquivos e matrizes de armazenamento. Servi�o de disco virtual
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\VDS.EXE
[Auto Services] :HKLM VerifierExt
### Driver: Extens�o do Verificador de Driver Status: Start Type: disabled Actual
File: C:\WINDOWS\SYSTEM32\DRIVERS\VERIFIEREXT.SYS * Componente do Verificador de
Driver para ajudar a encontrar erros em drivers de dispositivos. Extens�o do
Verificador de Driver Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\DRIVERS\VERIFIEREXT.SYS
[Auto Services] :HKLM vmicguestinterface
### Service: Interface de Servi�o de Convidado do Hyper-V Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Apresenta
uma interface para o host Hyper-V interagir com os servi�os espec�ficos executados
na m�quina virtual. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM vmicheartbeat
### Service: Servi�o de Pulsa��o do Hyper-V Status: Start Type: loaded manually
on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Monitora o estado desta
m�quina virtual reportando uma pulsa��o em intervalos regulares. Este servi�o ajuda
o usu�rio a identificar as m�quinas virtuais em execu��o que pararam de responder.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
ICSERVICE -P
[Auto Services] :HKLM vmickvpexchange
### Service: Servi�o de Troca de Dados do Hyper-V Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece um
mecanismo de troca de dados entre a m�quina virtual e o sistema operacional em
execu��o no computador f�sico. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM vmicrdv
### Service: Servi�o de Virtualiza��o de �rea de Trabalho Remota do Hyper-V
Status: Start Type: loaded manually on demand Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Apresenta uma plataforma para comunica��o entre a
m�quina virtual e o sistema operacional em execu��o no computador f�sico. Processo
de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
ICSERVICE -P
[Auto Services] :HKLM vmicshutdown
### Service: Servi�o de Desligamento de Convidado do Hyper-V Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece um
mecanismo de desligamento do sistema operacional desta m�quina virtual por meio das
interfaces de gerenciamento no computador f�sico. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM vmictimesync
### Service: Servi�o de Sincroniza��o de Data/Hora do Hyper-V Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Sincroniza
a hora do sistema desta m�quina virtual com a hora do sistema do computador f�sico.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM vmicvmsession
### Service: Servi�o Direto do Hyper-V PowerShell Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece um
mecanismo para gerenciar m�quinas virtuais com o PowerShell por meio de sess�o VM
sem uma rede virtual. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM vmicvss
### Service: Solicitante de C�pia de Sombra de Volume do Hyper-V Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Coordena as comunica��es necess�rias para usar o Servi�o de C�pia de Sombra de
Volume para fazer backup de aplicativos e dados desta m�quina virtual por meio do
sistema operacional no computador f�sico. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM VSS
### Service: C�pia de Sombra de Volume Status: Start Type: loaded manually on
demand Actual File: C:\WINDOWS\System32\VSSVC.EXE * Gerencia e implementa C�pias de
Sombra de Volume usadas para backups e outros fins. Se esse servi�o for
interrompido, as c�pias de sombra n�o estar�o dispon�veis para o backup, que poder�
falhar. Se esse servi�o for desabilitado, qualquer servi�o que dependa dele de
forma expl�cita n�o poder� ser iniciado. Servi�o de c�pias de sombra de volume da
Microsoft� Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\VSSVC.EXE
[Auto Services] :HKLM W32Time
### Service: Hor�rio do Windows Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Mant�m sincroniza��o de data e hora
em todos os clientes e servidores da rede. Se este servi�o for interrompido, a
sincroniza��o n�o ficar� dispon�vel. Se este servi�o for desativado, os servi�os
que dele dependem explicitamente n�o ser�o iniciados. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE
[Auto Services] :HKLM WaaSMedicSvc
### Service: Windows Update Medic Service Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Enables remediation and
protection of Windows Update components. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K WUSVCS -P
[Auto Services] :HKLM WalletService
### Service: WalletService Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Objetos de hosts usados pelos clientes da
carteira Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K APPMODEL -P
[Auto Services] :HKLM wampapache64
### Service: wampapache64 Status: Start Type: loaded manually on demand Actual
File: C:\WAMP64\BIN\APACHE\APACHE2.4.39\BIN\HTTPD.EXE * Apache/2.4.39 (Win64)
PHP/5.6.40 Apache HTTP Server Apache Software Foundation Apache HTTP Server
2.4.39 !$*"C:\WAMP64\BIN\APACHE\APACHE2.4.39\BIN\HTTPD.EXE" -K RUNSERVICE
[Auto Services] :HKLM wampmariadb64
### Service: wampmariadb64 Status: Start Type: loaded manually on demand Actual
File: C:\WAMP64\BIN\MARIADB\MARIADB10.3.14\BIN\MYSQLD.EXE * 10.3.14.0 !
$*C:\WAMP64\BIN\MARIADB\MARIADB10.3.14\BIN\MYSQLD.EXE WAMPMARIADB64
[Auto Services] :HKLM wampmysqld64
### Service: wampmysqld64 Status: Start Type: loaded manually on demand Actual
File: C:\WAMP64\BIN\MYSQL\MYSQL5.7.26\BIN\MYSQLD.EXE * 5.7.26.0 !
$*C:\WAMP64\BIN\MYSQL\MYSQL5.7.26\BIN\MYSQLD.EXE WAMPMYSQLD64
[Auto Services] :HKLM WarpJITSvc
### Service: WarpJITSvc Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Provides a JIT out of process service for
WARP when running with ACG enabled. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED
[Auto Services] :HKLM WavesSysSvc
### Service: Waves Audio Services Status: Start Type: loaded automatically by
Server Manager Actual File:
C:\WINDOWS\System32\DRIVERSTORE\FILEREPOSITORY\WAVESAPO75DE.INF_AMD64_5FF36F834A6D4
61A\WAVESSYSSVC64.EXE * Waves Audio global services WavesSysSvc Service Application
Waves Audio Ltd. Waves MaxxAudio 1.9.30.0 ->WAVESSYSSVC.EXE !$*%SYSTEMROOT
%\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\WAVESAPO75DE.INF_AMD64_5FF36F834A6D461A\WAVES
SYSSVC64.EXE
[Auto Services] :HKLM wbengine
### Service: Servi�o de Mecanismo de Backup em N�vel de Bloco Status: Start Type:
loaded manually on demand Actual File: C:\WINDOWS\System32\WBENGINE.EXE * O servi�o
WBENGINE � usado pelo Backup do Windows para executar o backup e as opera��es de
recupera��o. Se o servi�o foi interrompido pelo usu�rio, isso poder� causar falha
no backup ou na opera��o de recupera��o em execu��o no momento. A desabilita��o
desse servi�o pode desabilitar as opera��es de backup e recupera��o que usam o
backup do Windows nesta m�quina. EXE de Servi�o do Mecanismo de Backup em N�vel de
Bloco da Microsoft� Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*"%SYSTEMROOT%\SYSTEM32\WBENGINE.EXE"
[Auto Services] :HKLM WbioSrvc
### Service: Servi�o de Biometria do Windows Status: Start Type: loaded manually
on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O servi�o de biometria do
Windows permite que os aplicativos cliente capturem, comparem, manipulem e
armazenem dados biom�tricos sem obter acesso direto a nenhum exemplo ou hardware de
biometria. Esse servi�o � hospedado em um processo SVCHOST privilegiado. Processo
de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
WBIOSVCGROUP
[Auto Services] :HKLM Wcmsvc
### Service: Gerenciador de Conex�es do Windows Status: Start Type: loaded
automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Toma
decis�es de conex�o/desconex�o autom�tica com base nas op��es de conectividade
dispon�veis no momento para o PC e permite o gerenciamento da conectividade de rede
com base nas configura��es da Pol�tica de Grupo. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM wcncsvc
### Service: Conex�o F�cil do Windows - Registrador de Configura��o Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O
WCNCSVC hospeda a configura��o da Conex�o F�cil do Windows, que � a implementa��o
da Microsoft para protocolo WPS. Ele � usado para definir configura��es de LAN sem
fio para um ponto de acesso ou dispositivo Wi-Fi. O servi�o � iniciado
programaticamente quando necess�rio. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICEANDNOIMPERSONATION -P
[Auto Services] :HKLM WdNisSvc
### Service: Servi�o de Inspe��o de Rede do Windows Defender Antivirus Status:
Start Type: loaded manually on demand Actual File: C:\ProgramData\MICROSOFT\WINDOWS
DEFENDER\PLATFORM\4.18.2009.7-0\NISSRV.EXE * Ajuda a proteger contra tentativas de
intrus�o, abordando vulnerabilidades conhecidas e recentemente descobertas em
protocolos de rede Microsoft Network Realtime Inspection Service Microsoft
Corporation Microsoft� Windows� Operating System 4.18.2009.7 !$*"%PROGRAMDATA
%\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.2009.7-0\NISSRV.EXE"
[Auto Services] :HKLM WebClient
### Service: Cliente da Web Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite que programas baseados em Windows
criem, acessem e modifiquem arquivos baseados na Internet. Se este servi�o for
interrompido, essas fun��es n�o estar�o dispon�veis. Se este servi�o for
desativado, quaisquer servi�os que dele dependam diretamente n�o ser�o iniciados.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICE -P
[Auto Services] :HKLM Wecsvc
### Service: Coletor de Eventos do Windows Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Esse servi�o gerencia
assinaturas persistentes em eventos de origens remotas que oferecem suporte ao
protocolo WS-Management. Isso inclui logs de eventos do Windows Vista, origens de
eventos de hardware e com IPMI habilitado. O servi�o armazena eventos enviados em
um Log de Eventos local. Se esse servi�o for interrompido ou desabilitado,
assinaturas de eventos n�o poder�o ser criadas e os eventos enviados n�o poder�o
ser aceitos. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P
[Auto Services] :HKLM WEPHOSTSVC
### Service: Servi�o de Host do Provedor de Criptografia do Windows Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * A
criptografia dos agentes do Servi�o de Host do Provedor de Criptografia do Windows
relatou funcionalidades de Provedores de Criptografia de Terceiros em processos que
precisam avaliar e aplicar pol�ticas EAS. Se for interrompida, poder� comprometer
as verifica��es de conformidade de EAS estabelecidas pelas Contas de Email
conectadas Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K WEPHOSTSVCGROUP
[Auto Services] :HKLM wercplsupport
### Service: Suporte do Painel de Controle Relat�rios de Problemas e Solu��es
Status: Start Type: loaded manually on demand Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Este servi�o oferece suporte para a exibi��o, o
envio e a exclus�o de relat�rios de problemas relacionados ao sistema do painel de
controle Relat�rios de Problemas e Solu��es. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM WerSvc
### Service: Servi�o de Relat�rios de Erro do Windows Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite que os
erros sejam relatados quando os programas param de funcionar ou de responder e
possibilita que solu��es existentes sejam oferecidas. Tamb�m permite que logs sejam
gerados para os servi�os de diagn�stico e reparo. Se esse servi�o for interrompido,
o relat�rio de erros pode n�o funcionar corretamente e os resultados dos servi�os
de diagn�sticos e reparos podem n�o ser exibidos. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K WERSVCGROUP
[Auto Services] :HKLM WFDSConMgrSvc
### Service: Servi�o do Gerenciador de Conex�es de Servi�os do Wi-Fi Direct
Status: Start Type: loaded manually on demand Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Gerencia as conex�es com servi�os sem fio,
incluindo v�deo sem fio e encaixe. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM WiaRpc
### Service: Eventos de Aquisi��o de Imagens Est�ticas Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Inicia
aplicativos associados a eventos de aquisi��o de imagens est�ticas. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM WinDefend
### Service: Servi�o Windows Defender Antivirus Status: Start Type: loaded
automatically by Server Manager Actual File: C:\PROGRAMDATA\MICROSOFT\WINDOWS
DEFENDER\PLATFORM\4.18.2009.7-0\MSMPENG.EXE * Ajudar a proteger os usu�rios contra
malware e outros softwares potencialmente indesejados Antimalware Service
Executable Microsoft Corporation Microsoft� Windows� Operating System 4.18.2009.7 !
$*"C:\PROGRAMDATA\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.2009.7-0\MSMPENG.EXE"
[Auto Services] :HKLM WinHttpAutoProxySvc
### Service: Servi�o de Descoberta Autom�tica de Proxy da Web do WinHTTP Status:
Start Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE
* O WinHTTP implementa a pilha de HTTP de cliente e fornece aos desenvolvedores uma
API do Win32 e um componente de Automa��o COM para enviar solicita��es HTTP e
receber respostas. Al�m disso, o WinHTTP d� suporte � descoberta autom�tica de
configura��o de proxy via implementa��o do protocolo WPAD. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM Winmgmt
### Service: Testador de instrumenta��o de gerenciam. do Windows Status: Start
Type: loaded automatically by Server Manager Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece uma interface comum e um modelo de objeto
para o acesso a informa��es de gerenciamento sobre o sistema operacional,
dispositivos, aplicativos e servi�os. Se esse servi�o for parado, a maioria dos
itens de software baseados no Windows n�o funcionar� corretamente. Se este servi�o
for desativado, os servi�os que dependerem explicitamente dele n�o ser�o iniciados.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS
-P
[Auto Services] :HKLM WinRM
### Service: Windows Remote Management (WS-Management) Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O servi�o Windows
Remote Management (WinRM) implementa o protocolo WS-Management para permitir
gerenciamento remoto. O WS-Management � um protocolo de servi�os Web padr�o usado
para gerenciamento de software e hardware remoto. O servi�o WinRM escuta na rede as
solicita��es de WS-Management e as processa. O servi�o WinRM precisa estar
configurado com uma escuta que usa a ferramenta de linha de comando winrm.cmd ou
por meio da Pol�tica de Grupo para escutar via rede. O servi�o WinRM oferece acesso
a dados WMI e habilita a coleta de eventos. A coleta e assinatura de eventos
requerem que o servi�o esteja em execu��o. As mensagens WinRM usam HTTP e HTTPS
como transportes. O servi�o WinRM n�o depende do IIS, mas � pr�-configurado para
compartilhar uma porta com o IIS no mesmo computador. O servi�o WinRM reserva o
prefixo de URL /wsman. Para evitar conflitos com o IIS, os administradores devem
garantir que qualquer site hospedado no IIS n�o use o prefixo de URL /wsman.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
NETWORKSERVICE -P
[Auto Services] :HKLM wisvc
### Service: Servi�o do Participante do Programa Windows Insider Status: Start
Type: loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE *
Fornece suporte de infraestrutura para o Programa Windows Insider. Este servi�o
deve permanecer habilitado para o Programa Windows Insider funcionar. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM WlanSvc
### Service: Configura��o Autom�tica de WLAN Status: Start Type: loaded
automatically by Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O
servi�o WLANSVC fornece a l�gica necess�ria para configurar, descobrir, se conectar
e desconectar de uma WLAN (rede local sem fio), conforme definido pelos padr�es
IEEE 802.11. Ele tamb�m cont�m a l�gica para transformar seu computador em um ponto
de acesso de software, assim outros dispositivos ou computadores poder�o se
conectar ao seu computador sem fios usando um adaptador WLAN que suporte isso.
Interromper ou desabilitar o servi�o WLANSVC tornar� todos os adaptadores WLAN em
seu computador inacess�veis da IU da rede do Windows. Recomenda-se com veem�ncia
que o servi�o WLANSVC seja executado se o seu computador tiver um adaptador WLAN.
Processo de Host para Servi�os do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM wlidsvc
### Service: Assistente de Conex�o de Conta da Microsoft Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Permite
que o usu�rio entre nos servi�os de identidade da conta da Microsoft. Se este
servi�o for interrompido, os usu�rios n�o poder�o fazer logon no computador com a
respectiva conta da Microsoft. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM wlpasvc
### Service: Servi�o Assistente de Perfil Local Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Este servi�o
fornece gerenciamento de perfil para m�dulos de identidade do assinante Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM WManSvc
### Service: Servi�o de gerenciamento do Windows Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Executa
gerenciamento, incluindo atividades de provisionamento e registro Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM wmiApSrv
### Service: Adaptador de Desempenho WMI Status: Start Type: loaded manually on
demand Actual File: C:\WINDOWS\System32\WBEM\WMIAPSRV.EXE * Fornece informa��es
sobre bibliotecas de desempenho de provedores WMI (Instrumenta��o de Gerenciamento
do Windows) a clientes na rede. Este servi�o � executado apenas quando o Auxiliar
de Dados de Desempenho est� ativado. Adaptador Reverso de Desempenho WMI Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\WBEM\WMIAPSRV.EXE
[Auto Services] :HKLM WMPNetworkSvc
### Service: Servi�o de Compartilhamento de Rede do Windows Media Player Status:
Start Type: loaded manually on demand Actual File: C:\Program Files\WINDOWS MEDIA
PLAYER\WMPNETWK.EXE * Compartilha bibliotecas do Windows Media Player com outros
players e dispositivos de m�dia da rede por meio de Universal Plug and Play Servi�o
de Compartilhamento de Rede do Windows Media Player Microsoft Corporation Sistema
Operacional Microsoft� Windows� 12.0.18362.1 ->WINDOWS MEDIA PLAYER NETWORK SHARING
SERVICE !$*"%PROGRAMFILES%\WINDOWS MEDIA PLAYER\WMPNETWK.EXE"
[Auto Services] :HKLM workfolderssvc
### Service: Pastas de Trabalho Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Esse servi�o sincroniza arquivos com
o servidor de Pastas de Trabalho, permitindo que voc� use os arquivos em qualquer
um dos PCs e dispositivos em que configurar Pastas de Trabalho. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P
[Auto Services] :HKLM WpcMonSvc
### Service: Controles dos Pais Status: Start Type: loaded manually on demand
Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Imp�e controles dos pais para contas
de crian�a no Windows. Se este servi�o for interrompido ou desabilitado, os
controles dos pais n�o poder�o ser impostos. Processo de Host para Servi�os do
Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE
[Auto Services] :HKLM WPDBusEnum
### Service: Servi�o Enumerador de Dispositivos Port�teis Status: Start Type:
loaded manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Imp�e a
pol�tica de grupo a dispositivos de armazenamento em massa remov�veis. Permite que
aplicativos, como o Windows Media Player e o Assistente de Importa��o de Imagens,
transfiram e sincronizem conte�do usando dispositivos de armazenamento em massa
remov�veis. Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED
[Auto Services] :HKLM WpnService
### Service: Servi�o do Sistema de Notifica��es por Push do Windows Status: Start
Type: loaded automatically by Server Manager Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Este servi�o � executado na sess�o 0 e hospeda a
plataforma de notifica��o e o provedor conex�o que manipula a conex�o entre o
dispositivo e o servidor WNS. Processo de Host para Servi�os do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM WpnUserService
### Service: Servi�o de Usu�rio de Notifica��es por Push do Windows Status: Start
Type: loaded automatically by Server Manager Actual File:
C:\Windows\SYSTEM32\SVCHOST.EXE * Este servi�o hospeda a plataforma de notifica��o
do Windows que d� suporte a notifica��es locais e por push. Notifica��es com
suporte s�o bloco, notifica��o do sistema e notifica��o bruta. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM WpnUserService_8b54b
### Service: Servi�o de Usu�rio de Notifica��es por Push do Windows_8b54b Status:
Start Type: loaded automatically by Server Manager Actual File:
C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Este servi�o hospeda a plataforma de notifica��o
do Windows que d� suporte a notifica��es locais e por push. Notifica��es com
suporte s�o bloco, notifica��o do sistema e notifica��o bruta. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP
[Auto Services] :HKLM ws2ifsl
### Driver: Winsock IFS Driver Status: Start Type: disabled Actual File:
C:\WINDOWS\SYSTEM32\DRIVERS\WS2IFSL.SYS * Winsock IFS Driver Winsock2 IFS Layer
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\WINDOWS\SYSTEM32\DRIVERS\WS2IFSL.SYS
[Auto Services] :HKLM wscsvc
### Service: Central de Seguran�a Status: Start Type: loaded automatically by
Server Manager Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * O servi�o WSCSVC
(Central de Seguran�a do Windows) monitora e relata as configura��es de integridade
de seguran�a no computador. As configura��es de integridade incluem firewall
(ligado/desligado) antiv�rus (ligado/desligado/desatualizado), antispyware
(ligado/desligado/desatualizado), Windows Update (baixar e instalar atualiza��es
automaticamente/manualmente), Controle de Conta de Usu�rio (ligado/desligado) e
Configura��es da Internet (recomendado/n�o recomendado). O servi�o fornece APIs COM
para que os fornecedores independentes de software registrem e gravem o estado de
seus produtos no servi�o Central de Seguran�a. A interface do usu�rio Seguran�a e
Manuten��o usa o servi�o para fornecer alertas systray e uma exibi��o gr�fica dos
estados de integridade de seguran�a no painel de controle Seguran�a e Manuten��o. A
Prote��o de Acesso � Rede (NAP) usa o servi�o para relatar os estados de
integridade de seguran�a dos clientes para o Servidor de Pol�ticas de Rede do NAP a
fim de tomar decis�es sobre quarentena na rede. O servi�o tamb�m tem uma API
p�blica que permite que os clientes externos recuperem de forma program�tica o
estado de integridade de seguran�a agregado do sistema. Processo de Host para
Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K
LOCALSERVICENETWORKRESTRICTED -P
[Auto Services] :HKLM WSearch
### Service: Windows Search Status: Start Type: loaded automatically by Server
Manager Actual File: C:\Windows\SYSTEM32\SEARCHINDEXER.EXE * Fornece indexa��o de
conte�do, cache de propriedade e resultados de pesquisa para arquivos, email e
outros conte�dos. Indexador do Microsoft Windows Search Microsoft Corporation
Pesquisa do Windows� 7.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SEARCHINDEXER.EXE
/EMBEDDING
[Auto Services] :HKLM wuauserv
### Service: Windows Update Status: Start Type: loaded manually on demand Actual
File: C:\Windows\SYSTEM32\SVCHOST.EXE * Ativa a detec��o, download e instala��o de
atualiza��es do Windows e de outros programas. Se o servi�o for desativado, os
usu�rios do computador n�o poder�o usar o Windows Update ou o recurso de
atualiza��o autom�tica, e os programas n�o poder�o usar a API do Windows Update
Agent (WUA). Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM WwanSvc
### Service: Configura��o Autom�tica de WWAN Status: Start Type: loaded manually
on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Esse servi�o gerencia
placas de dados/adaptadores de m�dulo inseridos de banda larga m�vel (GSM & CDMA)
por meio da configura��o autom�tica das redes. � altamente recomendado que o
servi�o seja mantido ativado para uma melhor experi�ncia dos usu�rios de
dispositivos de banda larga m�veis. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P
[Auto Services] :HKLM XblAuthManager
### Service: Gerenciador de Autentica��o Xbox Live Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Fornece servi�os
de autentica��o e autoriza��o para interagir com o Xbox Live. Algumas aplica��es
podem n�o funcionar corretamente se esse servi�o for interrompido. Processo de Host
para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM XblGameSave
### Service: Salvar Jogos no Xbox Live Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Esse servi�o sincroniza dados
salvos para a op��o salvar jogos habilitados no Xbox Live. Se o servi�o for
interrompido, os dados de jogo salvos n�o ser�o carregados ou baixados diretamente
do Xbox Live. Processo de Host para Servi�os do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SYSTEMROOT
%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM XboxGipSvc
### Service: Xbox Accessory Management Service Status: Start Type: loaded
manually on demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * This service
manages connected Xbox Accessories. Processo de Host para Servi�os do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM XboxNetApiSvc
### Service: Servi�o de Rede Xbox Live Status: Start Type: loaded manually on
demand Actual File: C:\Windows\SYSTEM32\SVCHOST.EXE * Esse servi�o oferece suporte
a interface de programa��o de aplicativo Windows.Networking.XboxLive. Processo de
Host para Servi�os do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P
[Auto Services] :HKLM xTendSoftAPService
### Service: @oem3.inf,%xTendSoftAPService%;xTendSoftAPService Status: Start
Type: loaded automatically by Server Manager Actual File:
C:\WINDOWS\System32\DRIVERS\RIVETNETWORKS\KILLER\XTENDSOFTAPSERVICE.EXE *
@oem3.inf,%xTendSoftAPServiceDesc%;Killer WiFi xTend Service Windows Service
Wrapper CloudBees, Inc. Windows Service Wrapper 1.18.0.0 ->WINSW.EXE !$*%SYSTEMROOT
%\SYSTEM32\DRIVERS\RIVETNETWORKS\KILLER\XTENDSOFTAPSERVICE.EXE
[Auto Services] :HKLM xTendUtilityService
### Service: @oem3.inf,%xTendUtilityService%;xTendUtilityService Status: Start
Type: loaded automatically by Server Manager Actual File:
C:\WINDOWS\System32\DRIVERS\RIVETNETWORKS\KILLER\XTENDUTILITYSERVICE.EXE *
@oem3.inf,%xTendUtilityServiceDesc%;Killer xTend Utility Service Windows Service
Wrapper CloudBees, Inc. Windows Service Wrapper 1.18.0.0 ->WINSW.EXE !$*%SYSTEMROOT
%\SYSTEM32\DRIVERS\RIVETNETWORKS\KILLER\XTENDUTILITYSERVICE.EXE
[Auto Services] :HKLM DCOMLAUNCH
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE
-K DCOMLAUNCH -P Service registry key doesn't exist or hidden. Actual File:
C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!!
[Auto Services] :HKLM DPS
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE
-K LOCALSERVICENONETWORK -P Service registry key doesn't exist or hidden. Actual
File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!!
[Auto Services] :HKLM GPSVC
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE
-K NETSVCS -P Service registry key doesn't exist or hidden. Actual File:
C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!!
[Auto Services] :HKLM RPCSS
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE
-K RPCSS -P Service registry key doesn't exist or hidden. Actual File:
C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!!
[Auto Services] :HKLM SAMSS
### Local Security Authority Process Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1049 !$*C:\WINDOWS\SYSTEM32\LSASS.EXE Service registry
key doesn't exist or hidden. Actual File: C:\WINDOWS\SYSTEM32\LSASS.EXE WMI!!!
[Auto Services] :HKLM TRKWKS
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE
-K LOCALSYSTEMNETWORKRESTRICTED -P Service registry key doesn't exist or hidden.
Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!!
[Auto Services] :HKLM TRUSTEDINSTALLER
### Instalador de M�dulos do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\WINDOWS\SERVICING\TRUSTEDINSTALLER.EXE
Service registry key doesn't exist or hidden. Actual File:
C:\WINDOWS\SERVICING\TRUSTEDINSTALLER.EXE WMI!!!
[Auto Services] :HKLM WDISERVICEHOST
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE
-K LOCALSERVICE -P Service registry key doesn't exist or hidden. Actual File:
C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!!
[Auto Services] :HKLM WDISYSTEMHOST
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE
-K LOCALSYSTEMNETWORKRESTRICTED -P Service registry key doesn't exist or hidden.
Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!!
[Svchost DLLs] :HKLM CertPropSvc=C:\WINDOWS\System32\CERTPROP.DLL
### Servi�o de Propaga��o de Certificado de Cart�o Inteligente da Microsoft
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SystemRoot%\System32\certprop.dll
[Svchost DLLs] :HKLM SCPolicySvc=C:\WINDOWS\System32\CERTPROP.DLL
### Servi�o de Propaga��o de Certificado de Cart�o Inteligente da Microsoft
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SystemRoot%\System32\certprop.dll
[Svchost DLLs] :HKLM lanmanserver=C:\WINDOWS\System32\SRVSVC.DLL
### DLL de Servi�o do Servidor Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\srvsvc.dll
[Svchost DLLs] :HKLM gpsvc=C:\WINDOWS\System32\GPSVC.DLL
### Cliente da Pol�tica de Grupo Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\gpsvc.dll
[Svchost DLLs] :HKLM iphlpsvc=C:\WINDOWS\System32\IPHLPSVC.DLL
### Servi�o que oferece conectividade IPv6 em uma rede IPv4. Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\iphlpsvc.dll
[Svchost DLLs] :HKLM msiscsi=C:\WINDOWS\System32\ISCSIEXE.DLL
### Servi�o de Descoberta iSCSI Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 =>ISCSIEXE.EXE.MUI !$*%systemroot
%\system32\iscsiexe.dll
[Svchost DLLs] :HKLM schedule=C:\WINDOWS\System32\SCHEDSVC.DLL
### Servi�o Agendador de Tarefas Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 ->SCHEDULE !$*%systemroot
%\system32\schedsvc.dll
[Svchost DLLs] :HKLM winmgmt=C:\WINDOWS\System32\WBEM\WMISVC.DLL
### WMI Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\system32\wbem\WMIsvc.dll
[Svchost DLLs] :HKLM SessionEnv=C:\WINDOWS\System32\SESSENV.DLL
### Servi�o de Configura��o da �rea de Trabalho Remota Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\sessenv.dll
[Svchost DLLs] :HKLM UserManager=C:\WINDOWS\System32\USERMGR.DLL
### UserMgr Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\usermgr.dll
[Svchost DLLs] :HKLM FastUserSwitchingCompatibility
[Svchost DLLs] :HKLM Ias
[Svchost DLLs] :HKLM Irmon
[Svchost DLLs] :HKLM Nla
[Svchost DLLs] :HKLM Ntmssvc
[Svchost DLLs] :HKLM NWCWorkstation
[Svchost DLLs] :HKLM Nwsapagent
[Svchost DLLs] :HKLM Rasauto=C:\WINDOWS\System32\RASAUTO.DLL
### Gerenciador de Discagem Autom�tica de Acesso Remoto Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\rasauto.dll
[Svchost DLLs] :HKLM Rasman=C:\WINDOWS\System32\RASMANS.DLL
### Gerenciador de conex�o de acesso remoto Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\rasmans.dll
[Svchost DLLs] :HKLM Remoteaccess=C:\WINDOWS\System32\MPRDIM.DLL
### Gerenciador de Interface Din�mica Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\mprdim.dll
[Svchost DLLs] :HKLM SENS=C:\WINDOWS\System32\SENS.DLL
### Servi�o de Notifica��o de Eventos do Sistema (SENS) Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\sens.dll
[Svchost DLLs] :HKLM Sharedaccess=C:\WINDOWS\System32\IPNATHLP.DLL
### Componentes do Microsoft NAT Helper Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\ipnathlp.dll
[Svchost DLLs] :HKLM SRService
[Svchost DLLs] :HKLM Tapisrv=C:\WINDOWS\System32\TAPISRV.DLL
### Servidor de telefonia do Microsoft� Windows(TM) Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 ->TELEPHONY SERVICE
=>TAPISRV.EXE.MUI !$*%SystemRoot%\System32\tapisrv.dll
[Svchost DLLs] :HKLM Wmi
[Svchost DLLs] :HKLM WmdmPmSp
[Svchost DLLs] :HKLM wuauserv=C:\WINDOWS\System32\WUAUENG.DLL
### Windows Update Agent Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%systemroot%\system32\wuaueng.dll
[Svchost DLLs] :HKLM BITS=C:\WINDOWS\System32\QMGR.DLL
### Servi�o de transfer�ncia inteligente de tela de fundo Microsoft Corporation
Sistema Operacional Microsoft� Windows� 7.8.18362.1074 !$*%SystemRoot
%\System32\qmgr.dll
[Svchost DLLs] :HKLM ShellHWDetection=C:\WINDOWS\System32\SHSVCS.DLL
### DLL de servi�os do Shell do Windows Microsoft Corporation Sistema operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\shsvcs.dll
[Svchost DLLs] :HKLM LogonHours
[Svchost DLLs] :HKLM PCAudit
[Svchost DLLs] :HKLM helpsvc
[Svchost DLLs] :HKLM uploadmgr
[Svchost DLLs] :HKLM TokenBroker=C:\WINDOWS\System32\TOKENBROKER.DLL
### Agente de Token Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 ->TOKEN BROKER !$*%SystemRoot%\System32\TokenBroker.dll
[Svchost DLLs] :HKLM ScDeviceEnum=C:\WINDOWS\System32\SCDEVICEENUM.DLL
### Servi�o de Enumera��o de Dispositivo de Cart�o Inteligente Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\ScDeviceEnum.dll
[Svchost DLLs] :HKLM WiaRpc=C:\WINDOWS\System32\WIARPC.DLL
### DLL cliente de RPC do Assistente de Aquisi��o de Imagens do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\wiarpc.dll
[Svchost DLLs] :HKLM
AudioEndpointBuilder=C:\WINDOWS\System32\AUDIOENDPOINTBUILDER.DLL
### Construtor de Pontos de Extremidade de �udio do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 ->AUDIOEPB.DLL
=>AUDIOEPB.DLL.MUI !$*%SystemRoot%\System32\AudioEndpointBuilder.dll
[Svchost DLLs] :HKLM dot3svc=C:\WINDOWS\System32\DOT3SVC.DLL
### Servi�o de Configura��o Autom�tica com Fio Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\dot3svc.dll
[Svchost DLLs] :HKLM DeviceAssociationService=C:\WINDOWS\System32\DAS.DLL
### Servi�o de Associa��o de Dispositivo Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\das.dll
[Svchost DLLs] :HKLM wlansvc=C:\WINDOWS\System32\WLANSVC.DLL
### DLL do Servi�o de Configura��o Autom�tica de WLAN do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\wlansvc.dll
[Svchost DLLs] :HKLM Netman=C:\WINDOWS\System32\NETMAN.DLL
### Gerenciador de conex�es de rede Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\netman.dll
[Svchost DLLs] :HKLM NcbService=C:\WINDOWS\System32\NCBSERVICE.DLL
### Agente de Conex�o de Rede Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\ncbservice.dll
[Svchost DLLs] :HKLM WPDBusEnum=C:\WINDOWS\System32\WPDBUSENUM.DLL
### Enumerador de Dispositivos Port�teis Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\wpdbusenum.dll
[Svchost DLLs] :HKLM
MixedRealityOpenXRSvc=C:\WINDOWS\System32\MIXEDREALITYRUNTIME.DLL
### MixedRealityRuntime DLL Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.815 ->MIXEDREALITYRUNTIME DLL !$*%SystemRoot
%\System32\MixedRealityRuntime.dll
[Svchost DLLs] :HKLM netprofm=C:\WINDOWS\System32\NETPROFMSVC.DLL
### Gerenciador de Listas de Redes Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*%SystemRoot%\System32\netprofmsvc.dll
[Svchost DLLs] :HKLM WebClient=C:\WINDOWS\System32\WEBCLNT.DLL
### DLL do Servi�o WebDAV Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 ->DAVSVC.DLL =>DAVSVC.DLL.MUI !$*%SystemRoot
%\System32\webclnt.dll
[Svchost DLLs] :HKLM WinHttpAutoProxySvc=C:\WINDOWS\System32\WINHTTP.DLL
### Windows HTTP Services Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\winhttp.dll
[Svchost DLLs] :HKLM StiSvc=C:\WINDOWS\System32\WIASERVC.DLL
### Servi�o dos dispositivos de imagem fixa Microsoft Corporation Sistema
operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\wiaservc.dll
[Svchost DLLs] :HKLM PLA=C:\WINDOWS\System32\PLA.DLL
### Logs e Alertas de Desempenho Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%systemroot%\system32\pla.dll
[Svchost DLLs] :HKLM smphost=C:\WINDOWS\System32\SMPHOST.DLL
### Storage Management Provider (SMP) host service Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1074 !$*%Systemroot
%\System32\smphost.dll
[Svchost DLLs] :HKLM RpcSs=C:\WINDOWS\System32\RPCSS.DLL
### Distributed COM Services Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.752 !$*%SystemRoot%\system32\rpcss.dll
[Svchost DLLs] :HKLM AudioSrv=C:\WINDOWS\System32\AUDIOSRV.DLL
### Servi�o de �udio do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\Audiosrv.dll
[Svchost DLLs] :HKLM wscsvc=C:\WINDOWS\System32\WSCSVC.DLL
### Servi�o Central de Seguran�a do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\wscsvc.dll
[Svchost DLLs] :HKLM LmHosts=C:\WINDOWS\System32\LMHSVC.DLL
### DLL de Servi�os de Transporte NetBios TCP/IP Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\lmhsvc.dll
[Svchost DLLs] :HKLM DHCP=C:\WINDOWS\System32\DHCPCORE.DLL
### Servi�o do Cliente DHCP Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\dhcpcore.dll
[Svchost DLLs] :HKLM PNRPSvc=C:\WINDOWS\System32\PNRPSVC.DLL
### Dll de servi�o PNRP Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\pnrpsvc.dll
[Svchost DLLs] :HKLM p2pimsvc=C:\WINDOWS\System32\PNRPSVC.DLL
### Dll de servi�o PNRP Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\pnrpsvc.dll
[Svchost DLLs] :HKLM p2psvc=C:\WINDOWS\System32\P2PSVC.DLL
### Servi�os Ponto a Ponto Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\p2psvc.dll
[Svchost DLLs] :HKLM PnrpAutoReg
[Svchost DLLs] :HKLM
StateRepository=C:\WINDOWS\System32\WINDOWS.STATEREPOSITORY.DLL
### Servidor da API de StateRepository do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 ->WINDOWS STATEREPOSITORY API
SERVER !$*%SystemRoot%\system32\windows.staterepository.dll
[Svchost DLLs] :HKLM camsvc=C:\WINDOWS\System32\CAPABILITYACCESSMANAGER.DLL
### Servi�o do Gerenciador de Acesso de Recurso Microsoft Corporation Sistema
operacional Microsoft� Windows� 10.0.18362.1074 ->CAPABILITY ACCESS MANAGER SERVICE
!$*%SystemRoot%\system32\CapabilityAccessManager.dll
[Svchost DLLs] :HKLM SSDPSRV=C:\WINDOWS\System32\SSDPSRV.DLL
### DLL do Servi�o SSDP Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\ssdpsrv.dll
[Svchost DLLs] :HKLM upnphost=C:\WINDOWS\System32\UPNPHOST.DLL
### Host de dispositivo UPnP Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 ->UNPNHOST.DLL =>UNPNHOST.DLL.MUI !$*%SystemRoot
%\System32\upnphost.dll
[Svchost DLLs] :HKLM SCardSvr=C:\WINDOWS\System32\SCARDSVR.DLL
### Servidor de gerenciamento de recursos do cart�o inteligente Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 ->SCARDSVR.EXE
=>SCARDSVR.EXE.MUI !$*%SystemRoot%\System32\SCardSvr.dll
[Svchost DLLs] :HKLM BthHFSrv
[Svchost DLLs] :HKLM QWAVE=C:\Windows\SYSTEM32\QWAVE.DLL
### Windows NT Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 ->QWAVEDLL !$*%windir%\system32\qwave.dll
[Svchost DLLs] :HKLM wcncsvc=C:\WINDOWS\System32\WCNCSVC.DLL
### Conex�o F�cil do Windows - Servi�o Registrador de Configura��o Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\wcncsvc.dll
[Svchost DLLs] :HKLM DcomLaunch=C:\WINDOWS\System32\RPCSS.DLL
### Distributed COM Services Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.752 !$*%SystemRoot%\system32\rpcss.dll
[Svchost DLLs] :HKLM DeviceInstall=C:\WINDOWS\System32\UMPNPMGR.DLL
### Servi�o plug-and-play modo usu�rio Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\umpnpmgr.dll
[Svchost DLLs] :HKLM
PrintWorkflowUserSvc=C:\WINDOWS\System32\PRINTWORKFLOWSERVICE.DLL
### Servi�o de Fluxo de Trabalho de Impress�o Interno do Microsoft Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074
->WINDOWS.GRAPHICS.INTERNAL.PRINTING.WORKFLOWSERVICE
=>WINDOWS.GRAPHICS.INTERNAL.PRINTING.WORKFLOWSERVICE.DLL.MUI !$*%SystemRoot
%\System32\PrintWorkflowService.dll
[Svchost DLLs] :HKLM
DeviceAssociationBrokerSvc=C:\WINDOWS\System32\DEVICEACCESS.DLL
### Device Broker And Policy COM Server Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.836 !$*%SystemRoot%\System32\deviceaccess.dll
[Svchost DLLs] :HKLM CryptSvc=C:\WINDOWS\System32\CRYPTSVC.DLL
### Servi�os de criptografia Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\cryptsvc.dll
[Svchost DLLs] :HKLM WinRM=C:\WINDOWS\System32\WSMSVC.DLL
### Servi�o WSMan Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\system32\WsmSvc.dll
[Svchost DLLs] :HKLM WECSVC=C:\WINDOWS\System32\WECSVC.DLL
### Servi�o Coletor de Eventos Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\wecsvc.dll
[Svchost DLLs] :HKLM DNSCache=C:\WINDOWS\System32\DNSRSLVR.DLL
### Servi�o de resolu��o de cache do DNS Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\dnsrslvr.dll
[Svchost DLLs] :HKLM TermService=C:\WINDOWS\System32\TERMSRV.DLL
### Gerenciador de Conex�es Remotas do Servidor Host da Sess�o da �rea de
Trabalho Remota Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\termsrv.dll
[Svchost DLLs] :HKLM AarSvc=C:\WINDOWS\System32\AARSVC.DLL
### Agent Activation Runtime Service Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.959 !$*%SystemRoot%\System32\AarSvc.dll
[Svchost DLLs] :HKLM AJRouter=C:\WINDOWS\System32\AJROUTER.DLL
### DLL do Servi�o de Roteador AllJoyn Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\AJRouter.dll
[Svchost DLLs] :HKLM AppIDSvc=C:\WINDOWS\System32\APPIDSVC.DLL
### Servi�o de Identidade de Aplicativo Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\appidsvc.dll
[Svchost DLLs] :HKLM Appinfo=C:\WINDOWS\System32\APPINFO.DLL
### Servi�o de Informa��es de Aplicativos Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\appinfo.dll
[Svchost DLLs] :HKLM AppReadiness=C:\WINDOWS\System32\APPREADINESS.DLL
### AppReadiness Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\system32\AppReadiness.dll
[Svchost DLLs] :HKLM autotimesvc=C:\WINDOWS\System32\AUTOTIMESVC.DLL
### Servi�o AutoTime Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 ->AUTOTIME SERVICE !$*%SystemRoot
%\System32\autotimesvc.dll
[Svchost DLLs] :HKLM AxInstSV=C:\WINDOWS\System32\AXINSTSV.DLL
### Servi�o Instalador do ActiveX Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\AxInstSV.dll
[Svchost DLLs] :HKLM
BcastDVRUserService=C:\WINDOWS\System32\BCASTDVRUSERSERVICE.DLL
### Servi�o de Usu�rio de DVR de Transmiss�o Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 ->BROADCAST DVR USER SERVICE
=>BCASTDVRUSERSVC.DLL.MUI !$*%SystemRoot%\System32\BcastDVRUserService.dll
[Svchost DLLs] :HKLM BDESVC=C:\WINDOWS\System32\BDESVC.DLL
### Servi�o BDE Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\bdesvc.dll
[Svchost DLLs] :HKLM BFE=C:\WINDOWS\System32\BFE.DLL
### Mecanismo de Filtragem B�sica Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\bfe.dll
[Svchost DLLs] :HKLM
BluetoothUserService=C:\WINDOWS\System32\MICROSOFT.BLUETOOTH.USERSERVICE.DLL
### Servi�o de Suporte a Usu�rios de Bluetooth Microsoft Corporation Sistema
operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\Microsoft.Bluetooth.UserService.dll
[Svchost DLLs] :HKLM BrokerInfrastructure=C:\WINDOWS\System32\PSMSRV.DLL
### Process State Manager (PSM) Service Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*%SystemRoot%\System32\psmsrv.dll
[Svchost DLLs] :HKLM BTAGService=C:\WINDOWS\System32\BTAGSERVICE.DLL
### Servi�o de Gateway Bluetooth de �udio Microsoft Corporation Sistema
operacional Microsoft� Windows� 10.0.18362.1074 ->BLUETOOTH AUDIO GATEWAY SERVICE !
$*%SystemRoot%\System32\BTAGService.dll
[Svchost DLLs] :HKLM BthAvctpSvc=C:\WINDOWS\System32\BTHAVCTPSVC.DLL
### DLL do Servi�o AVCTP Bluetooth Microsoft Corporation Sistema operacional
Microsoft� Windows� 10.0.18362.1074 ->BLUETOOTH AVCTP SERVICE DLL !$*%SystemRoot
%\System32\BthAvctpSvc.dll
[Svchost DLLs] :HKLM bthserv=C:\WINDOWS\System32\BTHSERV.DLL
### Servi�o de Suporte a Bluetooth Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\bthserv.dll
[Svchost DLLs] :HKLM CaptureService=C:\WINDOWS\System32\CAPTURESERVICE.DLL
### Servi�o de Usu�rio de Captura do Microsoft Windows Microsoft Corporation
Sistema operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\CaptureService.dll
[Svchost DLLs] :HKLM cbdhsvc=C:\WINDOWS\System32\CBDHSVC.DLL
### Hist�rico da �rea de Transfer�ncia de Microsoft (R) Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\cbdhsvc.dll
[Svchost DLLs] :HKLM CDPSvc=C:\WINDOWS\System32\CDPSVC.DLL
### Servi�o Microsoft (R) CDP Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\CDPSvc.dll
[Svchost DLLs] :HKLM CDPUserSvc=C:\WINDOWS\System32\CDPUSERSVC.DLL
### Componentes de Usu�rio CDP da Microsoft (R) Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\CDPUserSvc.dll
[Svchost DLLs] :HKLM ClipSVC=C:\WINDOWS\System32\CLIPSVC.DLL
### Servi�o de Licen�as de Cliente Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\ClipSVC.dll
[Svchost DLLs] :HKLM ConsentUxUserSvc=C:\WINDOWS\System32\CONSENTUXCLIENT.DLL
### Implementa��o de API de Experi�ncia do Usu�rio para Consentimento do lado do
cliente Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\ConsentUxClient.dll
[Svchost DLLs] :HKLM CoreMessagingRegistrar=C:\WINDOWS\System32\COREMESSAGING.DLL
### Microsoft CoreMessaging Dll Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1049 !$*%SystemRoot%\system32\coremessaging.dll
[Svchost DLLs] :HKLM defragsvc=C:\WINDOWS\System32\DEFRAGSVC.DLL
### Microsoft\Otimizador de Unidade Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%Systemroot%\System32\defragsvc.dll
[Svchost DLLs] :HKLM
DevicePickerUserSvc=C:\WINDOWS\System32\WINDOWS.DEVICES.PICKER.DLL
### Seletor de Dispositivos Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\Windows.Devices.Picker.dll
[Svchost DLLs] :HKLM DevicesFlowUserSvc=C:\WINDOWS\System32\DEVICESFLOWBROKER.DLL
### Agente DevicesFlow Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 ->DEVICESFLOW BROKER !$*%SystemRoot
%\System32\DevicesFlowBroker.dll
[Svchost DLLs] :HKLM DevQueryBroker=C:\WINDOWS\System32\DEVQUERYBROKER.DLL
### Agente de Descoberta em Segundo Plano de DevQuery Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\DevQueryBroker.dll
[Svchost DLLs] :HKLM diagsvc=C:\WINDOWS\System32\DIAGSVC.DLL
### Microsoft Windows operating system Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.959 ->DIAGNOSTIC EXECUTION SERVICE DLL !$*%systemroot
%\system32\DiagSvc.dll
[Svchost DLLs] :HKLM DiagTrack=C:\WINDOWS\System32\DIAGTRACK.DLL
### Rastreamento de Diagn�stico do Microsoft Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\diagtrack.dll
[Svchost DLLs] :HKLM
DispBrokerDesktopSvc=C:\WINDOWS\System32\DISPBROKER.DESKTOP.DLL
### Agente de Exibi��o da �rea de Trabalho Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\DispBroker.Desktop.dll
[Svchost DLLs] :HKLM
DisplayEnhancementService=C:\WINDOWS\System32\MICROSOFT.GRAPHICS.DISPLAY.DISPLAYENH
ANCEMENTSERVICE.DLL
### Microsoft.Graphics.Display.DisplayEnhancementService DLL Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
[Svchost DLLs] :HKLM
DmEnrollmentSvc=C:\WINDOWS\System32\WINDOWS.INTERNAL.MANAGEMENT.DLL
### DLL do Servi�o de Gerenciamento do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%systemroot
%\system32\Windows.Internal.Management.dll
[Svchost DLLs] :HKLM dmwappushservice=C:\WINDOWS\System32\DMWAPPUSHSVC.DLL
### dmwappushsvc Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\system32\dmwappushsvc.dll
[Svchost DLLs] :HKLM DPS=C:\WINDOWS\System32\DPS.DLL
### Servi�o de Pol�tica de Diagn�stico WDI Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\dps.dll
[Svchost DLLs] :HKLM DsmSvc=C:\WINDOWS\System32\DEVICESETUPMANAGER.DLL
### Gerenciador de Instala��o de Dispositivo Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\DeviceSetupManager.dll
[Svchost DLLs] :HKLM DsSvc=C:\WINDOWS\System32\DSSVC.DLL
### DLL do Servi�o de Compartilhamento de Dados NT Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 ->DATA SHARING SERVICE NT SERVICE
DLL !$*%SystemRoot%\System32\DsSvc.dll
[Svchost DLLs] :HKLM DusmSvc=C:\WINDOWS\System32\DUSMSVC.DLL
### Servi�o de Uso de Dados Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\dusmsvc.dll
[Svchost DLLs] :HKLM Eaphost=C:\WINDOWS\System32\EAPSVC.DLL
### Servi�o Microsoft EAPHost Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\eapsvc.dll
[Svchost DLLs] :HKLM EFS=C:\WINDOWS\System32\EFSSVC.DLL
### Servi�o EFS Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\system32\efssvc.dll
[Svchost DLLs] :HKLM embeddedmode=C:\WINDOWS\System32\EMBEDDEDMODESVC.DLL
### Servi�o de Registro de Depura��o Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 ->DEBUG REGISTER SERVICE
=>EMBEDDEDMODESVC.EXE.MUI !$*%SystemRoot%\System32\embeddedmodesvc.dll
[Svchost DLLs] :HKLM EventLog=C:\WINDOWS\System32\WEVTSVC.DLL
### Servi�o de log de eventos Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\wevtsvc.dll
[Svchost DLLs] :HKLM EventSystem=C:\WINDOWS\System32\ES.DLL
### COM+ Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.752 !$*%systemroot%\system32\es.dll
[Svchost DLLs] :HKLM fdPHost=C:\WINDOWS\System32\FDPHOST.DLL
### Servi�o de Host de Provedor da Descoberta de Fun��o Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\fdPHost.dll
[Svchost DLLs] :HKLM FDResPub=C:\WINDOWS\System32\FDRESPUB.DLL
### Servi�o de Publica��o de Recursos de Descoberta de Fun��o Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\fdrespub.dll
[Svchost DLLs] :HKLM fhsvc=C:\WINDOWS\System32\FHSVC.DLL
### Servi�o de Hist�rico de Arquivos Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\fhsvc.dll
[Svchost DLLs] :HKLM FontCache=C:\WINDOWS\System32\FNTCACHE.DLL
### Servi�o de Cache de Fontes do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 ->FONTCACHESERVICE !$*%SystemRoot
%\system32\FntCache.dll
[Svchost DLLs] :HKLM GraphicsPerfSvc=C:\WINDOWS\System32\GRAPHICSPERFSVC.DLL
### GraphicsPerfSvc Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*%SystemRoot%\System32\GraphicsPerfSvc.dll
[Svchost DLLs] :HKLM hidserv=C:\WINDOWS\System32\HIDSERV.DLL
### Servi�o de Dispositivos de Interface Humana Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\hidserv.dll
[Svchost DLLs] :HKLM HomeGroupListener=C:\WINDOWS\System32\LISTSVC.DLL
### Windows HomeGroup Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\ListSvc.dll
[Svchost DLLs] :HKLM HomeGroupProvider=C:\WINDOWS\System32\PROVSVC.DLL
### Windows HomeGroup Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\provsvc.dll
[Svchost DLLs] :HKLM HvHost=C:\WINDOWS\System32\HVHOSTSVC.DLL
### Servi�o de Host de Hipervisor da Microsoft Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\hvhostsvc.dll
[Svchost DLLs] :HKLM icssvc=C:\WINDOWS\System32\TETHERINGSERVICE.DLL
### Servi�o de Compartilhamento de Internet Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\tetheringservice.dll
[Svchost DLLs] :HKLM IKEEXT=C:\WINDOWS\System32\IKEEXT.DLL
### Extens�o IKE Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\ikeext.dll
[Svchost DLLs] :HKLM InstallService=C:\WINDOWS\System32\INSTALLSERVICE.DLL
### InstallService Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\system32\InstallService.dll
[Svchost DLLs] :HKLM IpxlatCfgSvc=C:\WINDOWS\System32\IPXLATCFG.DLL
### Servi�o de Configura��o de Convers�o de IP Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\IpxlatCfg.dll
[Svchost DLLs] :HKLM KeyIso=C:\WINDOWS\System32\KEYISO.DLL
### Servi�o de Isolamento de Chave CNG Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\keyiso.dll
[Svchost DLLs] :HKLM KtmRm=C:\WINDOWS\System32\MSDTCKRM.DLL
### Microsoft Distributed Transaction Coordinator OLE Transactions KTM Resource
Manager DLL Microsoft Corporation Microsoft� Windows� Operating System 10.0.18362.1
!$*%systemroot%\system32\msdtckrm.dll
[Svchost DLLs] :HKLM LanmanWorkstation=C:\WINDOWS\System32\WKSSVC.DLL
### DLL do Servi�o de Esta��o de Trabalho Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\wkssvc.dll
[Svchost DLLs] :HKLM lfsvc=C:\WINDOWS\System32\LFSVC.DLL
### Servi�o de Geolocaliza��o Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 ->GEOLOCATION SERVICE !$*%SystemRoot
%\System32\lfsvc.dll
[Svchost DLLs] :HKLM LicenseManager=C:\WINDOWS\System32\LICENSEMANAGERSVC.DLL
### LicenseManagerSvc Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\LicenseManagerSvc.dll
[Svchost DLLs] :HKLM lltdsvc=C:\WINDOWS\System32\LLTDSVC.DLL
### Link-Layer Topology Mapper Service Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*%SystemRoot%\System32\lltdsvc.dll
[Svchost DLLs] :HKLM LSM=C:\WINDOWS\System32\LSM.DLL
### Servi�o do Gerenciador de Sess�o Local Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\lsm.dll
[Svchost DLLs] :HKLM LxpSvc=C:\WINDOWS\System32\LANGUAGEOVERLAYSERVER.DLL
### Fornece suporte de infraestrutura para implantar e configurar recursos
localizados do Windows. Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\LanguageOverlayServer.dll
[Svchost DLLs] :HKLM MapsBroker=C:\WINDOWS\System32\MOSHOST.DLL
### Gerenciador de Mapas Baixados Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\moshost.dll
[Svchost DLLs] :HKLM MessagingService=C:\WINDOWS\System32\MESSAGINGSERVICE.DLL
### Servi�o de Mensagens Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\MessagingService.dll
[Svchost DLLs] :HKLM mpssvc=C:\WINDOWS\System32\MPSSVC.DLL
### Servi�o de Prote��o Microsoft Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\mpssvc.dll
[Svchost DLLs] :HKLM NaturalAuthentication=C:\WINDOWS\System32\NATURALAUTH.DLL
### Servi�o de Autentica��o Natural Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\NaturalAuth.dll
[Svchost DLLs] :HKLM NcaSvc=C:\WINDOWS\System32\NCASVC.DLL
### Servi�o Assistente de Conectividade de Rede da Microsoft Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\ncasvc.dll
[Svchost DLLs] :HKLM NcdAutoSetup=C:\WINDOWS\System32\NCDAUTOSETUP.DLL
### DLL de servi�o de Instala��o Autom�tica de Dispositivos Conectados � Rede
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SystemRoot%\System32\NcdAutoSetup.dll
[Svchost DLLs] :HKLM Netlogon=C:\WINDOWS\System32\NETLOGON.DLL
### DLL de servi�os de logon de rede Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\netlogon.dll
[Svchost DLLs] :HKLM NetSetupSvc=C:\WINDOWS\System32\NETSETUPSVC.DLL
### Servi�o de Configura��o de Rede Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\NetSetupSvc.dll
[Svchost DLLs] :HKLM NgcCtnrSvc=C:\WINDOWS\System32\NGCCTNRSVC.DLL
### Servi�o de Cont�iner do Microsoft Passport Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\NgcCtnrSvc.dll
[Svchost DLLs] :HKLM NgcSvc=C:\WINDOWS\System32\NGCSVC.DLL
### Servi�o Microsoft Passport Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\ngcsvc.dll
[Svchost DLLs] :HKLM NlaSvc=C:\WINDOWS\System32\NLASVC.DLL
### Reconhecimento de Locais de Rede 2 Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\nlasvc.dll
[Svchost DLLs] :HKLM nsi=C:\WINDOWS\System32\NSISVC.DLL
### Servidor RPC de Interface de Reposit�rio de Rede Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%systemroot
%\system32\nsisvc.dll
[Svchost DLLs] :HKLM OneSyncSvc=C:\WINDOWS\System32\APHOSTSERVICE.DLL
### Accounts Host Service Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.959 !$*%SystemRoot%\System32\APHostService.dll
[Svchost DLLs] :HKLM PcaSvc=C:\WINDOWS\System32\PCASVC.DLL
### Servi�o Auxiliar de Compatibilidade de Programas Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\pcasvc.dll
[Svchost DLLs] :HKLM PhoneSvc=C:\WINDOWS\System32\PHONESERVICE.DLL
### The service used to manage phone calls and other telephony related
functionality Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.836 !$*%SystemRoot%\System32\PhoneService.dll
[Svchost DLLs] :HKLM
PimIndexMaintenanceSvc=C:\WINDOWS\System32\PIMINDEXMAINTENANCE.DLL
### Servi�o respons�vel pela indexa��o de contatos e outras tarefas relacionadas
a dados de usu�rio Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\PimIndexMaintenance.dll
[Svchost DLLs] :HKLM PlugPlay=C:\WINDOWS\System32\UMPNPMGR.DLL
### Servi�o plug-and-play modo usu�rio Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\umpnpmgr.dll
[Svchost DLLs] :HKLM PolicyAgent=C:\WINDOWS\System32\IPSECSVC.DLL
### DLL do servidor SPD IPSEC do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\ipsecsvc.dll
[Svchost DLLs] :HKLM Power=C:\WINDOWS\System32\UMPO.DLL
### Servi�o de Energia no Modo de Usu�rio Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\umpo.dll
[Svchost DLLs] :HKLM
PrintNotify=C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\X64\3\PRINTCONFIG.DLL
### Interface do Usu�rio de PrintConfig Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1082 !
$*C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
[Svchost DLLs] :HKLM ProfSvc=C:\WINDOWS\System32\PROFSVC.DLL
### ProfSvc Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%systemroot%\system32\profsvc.dll
[Svchost DLLs] :HKLM PushToInstall=C:\WINDOWS\System32\PUSHTOINSTALL.DLL
### PushToInstall Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\system32\PushToInstall.dll
[Svchost DLLs] :HKLM RemoteRegistry=C:\WINDOWS\System32\REGSVC.DLL
### Servi�o Registro Remoto Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\regsvc.dll
[Svchost DLLs] :HKLM RetailDemo=C:\WINDOWS\System32\RDXSERVICE.DLL
### RDXService Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\system32\RDXService.dll
[Svchost DLLs] :HKLM RmSvc=C:\WINDOWS\System32\RMAPI.DLL
### Radio Manager API Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\RMapi.dll
[Svchost DLLs] :HKLM RpcEptMapper=C:\WINDOWS\System32\RPCEPMAP.DLL
### Mapeador de Ponto de Extremidade RPC Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\RpcEpMap.dll
[Svchost DLLs] :HKLM SDRSVC=C:\WINDOWS\System32\SDRSVC.DLL
### Servi�o de Backup do Microsoft� Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%Systemroot%\System32\SDRSVC.dll
[Svchost DLLs] :HKLM seclogon=C:\Windows\SYSTEM32\SECLOGON.DLL
### DLL de servi�o de logon secund�rio Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 ->SECLOGON.EXE =>SECLOGON.EXE.MUI !$*%windir
%\system32\seclogon.dll
[Svchost DLLs] :HKLM SEMgrSvc=C:\WINDOWS\System32\SEMGRSVC.DLL
### DLL de Servi�o de Gerenciamento NFC SE Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\SEMgrSvc.dll
[Svchost DLLs] :HKLM SensorService=C:\WINDOWS\System32\SENSORSERVICE.DLL
### Servi�o de Sensor Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\SensorService.dll
[Svchost DLLs] :HKLM SensrSvc=C:\WINDOWS\System32\SENSRSVC.DLL
### Servi�o de Monitoramento de Sensor do Microsoft Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 ->MICROSOFT WINDOWS SENSOR
MONITORING SERVICE !$*%SystemRoot%\system32\sensrsvc.dll
[Svchost DLLs] :HKLM SharedRealitySvc=C:\WINDOWS\System32\SHAREDREALITYSVC.DLL
### Servi�o de Dados Espaciais da Microsoft (R) Microsoft Corporation Sistema
operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\SharedRealitySvc.dll
[Svchost DLLs] :HKLM
shpamsvc=C:\WINDOWS\System32\WINDOWS.SHAREDPC.ACCOUNTMANAGER.DLL
### SharedPC.AccountManager Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 ->SHAREDPC.ACCOUNTMANAGER =>SHAREDPC.ACCOUNTMANAGER.DLL !$*
%systemroot%\system32\Windows.SharedPC.AccountManager.dll
[Svchost DLLs] :HKLM SmsRouter=C:\WINDOWS\System32\SMSROUTERSVC.DLL
### Servi�o de Roteador SMS do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\SmsRouterSvc.dll
[Svchost DLLs] :HKLM SstpSvc=C:\WINDOWS\System32\SSTPSVC.DLL
### Oferece a facilidade de usar o SSTP para estabelecer conex�o com computadores
remotos (usando VPN). Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\system32\sstpsvc.dll
[Svchost DLLs] :HKLM StorSvc=C:\WINDOWS\System32\STORSVC.DLL
### Servi�os de Armazenamento Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\storsvc.dll
[Svchost DLLs] :HKLM svsvc=C:\WINDOWS\System32\SVSVC.DLL
### Microsoft\Verificador de Ponto Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\svsvc.dll
[Svchost DLLs] :HKLM swprv=C:\WINDOWS\System32\SWPRV.DLL
### Provedor de software de servi�o de c�pias de sombra de volume da Microsoft�
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%Systemroot%\System32\swprv.dll
[Svchost DLLs] :HKLM SysMain=C:\WINDOWS\System32\SYSMAIN.DLL
### Host do Servi�o SysMain Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%systemroot%\system32\sysmain.dll
[Svchost DLLs] :HKLM
SystemEventsBroker=C:\WINDOWS\System32\SYSTEMEVENTSBROKERSERVER.DLL
### Agente de Eventos do Sistema Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\SystemEventsBrokerServer.dll
[Svchost DLLs] :HKLM TabletInputService=C:\WINDOWS\System32\TABSVC.DLL
### Teclado Virtual da Microsoft e Servi�o de Painel de Manuscrito Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\TabSvc.dll
[Svchost DLLs] :HKLM Themes=C:\WINDOWS\System32\THEMESERVICE.DLL
### DLL do Servi�o de Tema do Shell do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\themeservice.dll
[Svchost DLLs] :HKLM TimeBrokerSvc=C:\WINDOWS\System32\TIMEBROKERSERVER.DLL
### Agente de Evento de Tempo Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\TimeBrokerServer.dll
[Svchost DLLs] :HKLM TrkWks=C:\WINDOWS\System32\TRKWKS.DLL
### Cliente de rastreamento de link distribu�do Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\trkwks.dll
[Svchost DLLs] :HKLM TroubleshootingSvc=C:\WINDOWS\System32\MITIGATIONCLIENT.DLL
### MitigationClient Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%systemroot%\system32\MitigationClient.dll
[Svchost DLLs] :HKLM tzautoupdate=C:\WINDOWS\System32\TZAUTOUPDATE.DLL
### Atualizador de Fuso Hor�rio Autom�tico Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\tzautoupdate.dll
[Svchost DLLs] :HKLM UmRdpService=C:\WINDOWS\System32\UMRDP.DLL
### Servi�o do Redirecionador de Dispositivo dos Servi�os de �rea de Trabalho
Remota Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\umrdp.dll
[Svchost DLLs] :HKLM UnistoreSvc=C:\WINDOWS\System32\UNISTORE.DLL
### Reposit�rio Unificado Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\unistore.dll
[Svchost DLLs] :HKLM UserDataSvc=C:\WINDOWS\System32\USERDATASERVICE.DLL
### O ponto de extremidade para APIs de terceiros para ler/gravar dados do
usu�rio Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\userdataservice.dll
[Svchost DLLs] :HKLM UsoSvc=C:\WINDOWS\System32\USOSVC.DLL
### Atualizar Session Orchestrator Service Microsoft Corporation Sistema
operacional Microsoft� Windows� 10.0.18362.1074 ->UPDATE SESSION ORCHESTRATOR
SERVICE !$*%systemroot%\system32\usosvc.dll
[Svchost DLLs] :HKLM VacSvc=C:\WINDOWS\System32\VAC.DLL
### Servi�o Compositor de �udio Volum�trico Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\vac.dll
[Svchost DLLs] :HKLM VaultSvc=C:\WINDOWS\SYSTEM32\VAULTSVC.DLL
### Servi�o de Gerenciamento de Credenciais Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\vaultsvc.dll
[Svchost DLLs] :HKLM vmicguestinterface=C:\WINDOWS\System32\ICSVC.DLL
### Servi�o de Componente de Integra��o de M�quina Virtual Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\icsvc.dll
[Svchost DLLs] :HKLM vmicheartbeat=C:\WINDOWS\System32\ICSVC.DLL
### Servi�o de Componente de Integra��o de M�quina Virtual Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\icsvc.dll
[Svchost DLLs] :HKLM vmickvpexchange=C:\WINDOWS\System32\ICSVC.DLL
### Servi�o de Componente de Integra��o de M�quina Virtual Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\icsvc.dll
[Svchost DLLs] :HKLM vmicrdv=C:\WINDOWS\System32\ICSVCEXT.DLL
### Servi�o de Componente de Integra��o de M�quina Virtual Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\icsvcext.dll
[Svchost DLLs] :HKLM vmicshutdown=C:\WINDOWS\System32\ICSVC.DLL
### Servi�o de Componente de Integra��o de M�quina Virtual Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\icsvc.dll
[Svchost DLLs] :HKLM vmictimesync=C:\WINDOWS\System32\ICSVC.DLL
### Servi�o de Componente de Integra��o de M�quina Virtual Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\icsvc.dll
[Svchost DLLs] :HKLM vmicvmsession=C:\WINDOWS\System32\ICSVC.DLL
### Servi�o de Componente de Integra��o de M�quina Virtual Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\icsvc.dll
[Svchost DLLs] :HKLM vmicvss=C:\WINDOWS\System32\ICSVCEXT.DLL
### Servi�o de Componente de Integra��o de M�quina Virtual Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\icsvcext.dll
[Svchost DLLs] :HKLM W32Time=C:\WINDOWS\System32\W32TIME.DLL
### Servi�o de Tempo do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%systemroot%\system32\w32time.dll
[Svchost DLLs] :HKLM WaaSMedicSvc=C:\WINDOWS\System32\WAASMEDICSVC.DLL
### WaasMedic Service Dll Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1016 !$*%SystemRoot%\System32\WaaSMedicSvc.dll
[Svchost DLLs] :HKLM WalletService=C:\WINDOWS\System32\WALLETSERVICE.DLL
### Servi�o de Carteira Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 ->WALLET SERVICE !$*%SystemRoot
%\system32\WalletService.dll
[Svchost DLLs] :HKLM WarpJITSvc=C:\WINDOWS\System32\WINDOWS.WARP.JITSERVICE.DLL
### WARP.JITService Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 ->WARP.JITSERVICE =>WARP.JITSERVICE.DLL !$*%SystemRoot
%\System32\Windows.WARP.JITService.dll
[Svchost DLLs] :HKLM WbioSrvc=C:\WINDOWS\System32\WBIOSRVC.DLL
### Servi�o de Biometria do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\wbiosrvc.dll
[Svchost DLLs] :HKLM Wcmsvc=C:\WINDOWS\System32\WCMSVC.DLL
### DLL do Servi�o do Gerenciador de Conex�es do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\wcmsvc.dll
[Svchost DLLs] :HKLM WdiServiceHost=C:\WINDOWS\System32\WDI.DLL
### Infraestrutura de Diagn�stico do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\wdi.dll
[Svchost DLLs] :HKLM WdiSystemHost=C:\WINDOWS\System32\WDI.DLL
### Infraestrutura de Diagn�stico do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\wdi.dll
[Svchost DLLs] :HKLM WEPHOSTSVC=C:\WINDOWS\System32\WEPHOSTSVC.DLL
### Servi�o de Host do Provedor de Criptografia do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%systemroot
%\system32\wephostsvc.dll
[Svchost DLLs] :HKLM wercplsupport=C:\WINDOWS\System32\WERCPLSUPPORT.DLL
### Relat�rios de Problemas e Solu��es Microsoft Corporation Sistema operacional
Microsoft� Windows� 10.0.18362.1074 ->ERC !$*%SystemRoot
%\System32\wercplsupport.dll
[Svchost DLLs] :HKLM WerSvc=C:\WINDOWS\System32\WERSVC.DLL
### Servi�o de Relat�rios de Erro do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\WerSvc.dll
[Svchost DLLs] :HKLM WFDSConMgrSvc=C:\WINDOWS\System32\WFDSCONMGRSVC.DLL
### Servi�o do Gerenciador de Conex�es de Servi�os do Wi-Fi Direct Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\wfdsconmgrsvc.dll
[Svchost DLLs] :HKLM wisvc=C:\WINDOWS\System32\FLIGHTSETTINGS.DLL
### Configura��es da Nova Vers�o Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%systemroot%\system32\flightsettings.dll
[Svchost DLLs] :HKLM wlidsvc=C:\WINDOWS\System32\WLIDSVC.DLL
### Servi�o Conta da Microsoft� Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\wlidsvc.dll
[Svchost DLLs] :HKLM wlpasvc=C:\WINDOWS\System32\LPASVC.DLL
### Servi�o Assistente de Perfil Local Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\lpasvc.dll
[Svchost DLLs] :HKLM WManSvc=C:\WINDOWS\System32\WINDOWS.MANAGEMENT.SERVICE.DLL
### DLL do servi�o de gerenciamento do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%systemroot
%\system32\Windows.Management.Service.dll
[Svchost DLLs] :HKLM workfolderssvc=C:\WINDOWS\System32\WORKFOLDERSSVC.DLL
### Servi�o Pastas de Trabalho da Microsoft (C) Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%systemroot
%\system32\workfolderssvc.dll
[Svchost DLLs] :HKLM WpcMonSvc=C:\WINDOWS\System32\WPCDESKTOPMONSVC.DLL
### WpcMonSvc.dll Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.997 ->WPCMONSVC.DLL !$*%SystemRoot%\System32\WpcDesktopMonSvc.dll
[Svchost DLLs] :HKLM WpnUserService=C:\WINDOWS\System32\WPNUSERSERVICE.DLL
### Servi�o de Usu�rio de Notifica��o por Push do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\WpnUserService.dll
[Svchost DLLs] :HKLM WwanSvc=C:\WINDOWS\System32\WWANSVC.DLL
### Servi�o de Configura��o Autom�tica de WWAN Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\wwansvc.dll
[Svchost DLLs] :HKLM XblAuthManager=C:\WINDOWS\System32\XBLAUTHMANAGER.DLL
### Xbox Live Auth Manager Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*%SystemRoot%\System32\XblAuthManager.dll
[Svchost DLLs] :HKLM XblGameSave=C:\WINDOWS\System32\XBLGAMESAVE.DLL
### Xbox Live Game Save Service Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 ->XBOX LIVE GAME SAVE SERVICE !$*%SystemRoot
%\System32\XblGameSave.dll
[Svchost DLLs] :HKLM XboxGipSvc=C:\WINDOWS\System32\XBOXGIPSVC.DLL
### Xbox Gip Management Service Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 ->XBOX GIP MANAGEMENT SERVICE !$*%SystemRoot
%\System32\XboxGipSvc.dll
[Svchost DLLs] :HKLM XboxNetApiSvc=C:\WINDOWS\System32\XBOXNETAPISVC.DLL
### Xbox Live Networking Service Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 ->XBOX LIVE NETWORKING SERVICE !$*%SystemRoot
%\system32\XboxNetApiSvc.dll
[Bootexecute] :HKLM BootExecute=autocheck autochk *

[Winlogon System] :HKLM system=""


[Winlogon System] :HKLM taskman=""
[Winlogon System] :HKLM UIHost=""
[Winlogon Autostart] :HKLM VmApplet=""
[Winlogon Autostart] :HKLM AppSetup=""
[Environment - Path] :HKLM Path=C:\Program Files (x86)\Common
Files\Oracle\Java\javapath;
%C_EM64T_REDIST11%bin\Intel64;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wb
em;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Prog
ram Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program
Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\NVIDIA
Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA
NvDLISR;C:\Program Files\TortoiseSVN\bin;C:\Program Files\PuTTY\
[List of Injected DLLs] :HKLM AppInit_DLLs=""
[List of Injected DLLs(x64)] :HKLM AppInit_DLLs=""
[LSA Notification Packages] :HKLM scecli=C:\Windows\SYSTEM32\SCECLI.DLL
### scecli Mecanismo Cliente do Editor de configura��o de Seguran�a do Windows
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*scecli.dll
[Print Providers] :HKLM Internet Print Provider=C:\Windows\SYSTEM32\INETPP.DLL
### Display Name: HTTP Print Services * DLL do provedor de impress�o da Internet
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*inetpp.dll
[Print Providers] :HKLM LanMan Print Services=C:\Windows\SYSTEM32\WIN32SPL.DLL
### Display Name: LanMan Print Services * Provedor de Impress�o do Processo do
Cliente Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*win32spl.dll
[Eventlog Application DLL] :HKLM Apache Service=C:\WINDOWS\System32\NETMSG.DLL
### DLL de mensagens de rede Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1016 !$*%SystemRoot%\System32\netmsg.dll
[Eventlog Application DLL] :HKLM Application Error=C:\WINDOWS\System32\WER.DLL
### DLL do Relat�rio de Erros do Windows Microsoft Corporation Sistema
operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\wer.dll
[Eventlog Application DLL] :HKLM Application Hang=C:\WINDOWS\System32\WERSVC.DLL
### Servi�o de Relat�rios de Erro do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\wersvc.dll
[Eventlog Application DLL] :HKLM Application-Addon-Event-
Provider=C:\WINDOWS\System32\IEFRAME.DLL
### Navegador da Internet Microsoft Corporation Internet Explorer
11.00.18362.1074 !$*%SystemRoot%\system32\ieframe.dll
[Eventlog Application DLL] :HKLM ASP.NET
2.0.50727.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V2.0.50727\PT-BR\ASPNET_RC.DLL
### aspnet_rc.dll Microsoft Corporation Microsoft� .NET Framework
2.0.50727.9136 !$*C:\Windows\Microsoft.NET\Framework64\v2.0.50727\pt-
BR\aspnet_rc.dll
[Eventlog Application DLL] :HKLM CardSpace
4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL
### Descri��es de evento relacionadas a ServiceModel Microsoft Corporation
Microsoft� .NET Framework 4.8.3752.0 !
$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll
[Eventlog Application DLL] :HKLM CardSpace
4.0.0.0=C:\Windows\System32\icardres.dll
### File is missing. !$*C:\Windows\System32\icardres.dll
[Eventlog Application DLL] :HKLM Chkdsk=C:\WINDOWS\System32\ULIB.DLL
### DLL de suporte a utilit�rios de arquivos Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\ulib.dll
[Eventlog Application DLL] :HKLM Chrome=C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\85.0.4183.83\EVENTLOG_PROVIDER.DLL
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->EVENTLOG_PROVIDER_DLL !
$*C:\Program Files
(x86)\Google\Chrome\Application\85.0.4183.83\eventlog_provider.dll
[Eventlog Application DLL] :HKLM Dell Digital Delivery
Services=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll
[Eventlog Application DLL] :HKLM Dell Hardware
Support=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll
[Eventlog Application DLL] :HKLM Dell SupportAssist
Remediation=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll
[Eventlog Application DLL] :HKLM Dell System
Detect=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll
[Eventlog Application DLL] :HKLM
DellClientManagementService=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLO
GMESSAGES.DLL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll
[Eventlog Application DLL] :HKLM
DellCommandPowerManager=C:\Windows\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMES
SAGES.DLL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*%SystemRoot
%\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll
[Eventlog Application DLL] :HKLM DellDataVault=C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DCSAEVENTS.DLL
### DDV Message DLL Dell Technologies Inc. Dell Data Vault 5.5.5.959
->DDVEVENTS.DLL !$*C:\Program Files\Dell\DellDataVault\DCSAEvents.dll
[Eventlog Application DLL] :HKLM DellDataVaultProv=C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DCSAEVENTS.DLL
### DDV Message DLL Dell Technologies Inc. Dell Data Vault 5.5.5.959
->DDVEVENTS.DLL !$*C:\Program Files\Dell\DellDataVault\DCSAEvents.dll
[Eventlog Application DLL] :HKLM Desktop Window
Manager=C:\WINDOWS\System32\DWM.EXE
### Gerenciador de Janelas da �rea de Trabalho Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\dwm.exe
[Eventlog Application DLL] :HKLM DiskQuota=C:\WINDOWS\System32\DSKQUOTA.DLL
### DLL de suporte a cotas de disco do Shell do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\dskquota.dll
[Eventlog Application DLL] :HKLM Dwminit=C:\WINDOWS\System32\DWMINIT.DLL
### DWMInit Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\system32\dwminit.dll
[Eventlog Application DLL] :HKLM Edge=C:\PROGRAM FILES
(X86)\MICROSOFT\EDGE\APPLICATION\85.0.564.70\EVENTLOG_PROVIDER.DLL
### Microsoft Edge Microsoft Corporation Microsoft Edge 85.0.564.70
->EVENTLOG_PROVIDER_DLL !$*C:\Program Files
(x86)\Microsoft\Edge\Application\85.0.564.70\eventlog_provider.dll
[Eventlog Application DLL] :HKLM edgeupdate=C:\PROGRAM FILES
(X86)\MICROSOFT\EDGEUPDATE\1.3.135.41\MSEDGEUPDATE.DLL
### Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.135.41
->MICROSOFT EDGE UPDATE !$*C:\Program Files
(x86)\Microsoft\EdgeUpdate\1.3.135.41\msedgeupdate.dll
[Eventlog Application DLL] :HKLM edgeupdatem=C:\PROGRAM FILES
(X86)\MICROSOFT\EDGEUPDATE\1.3.135.41\MSEDGEUPDATE.DLL
### Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.135.41
->MICROSOFT EDGE UPDATE !$*C:\Program Files
(x86)\Microsoft\EdgeUpdate\1.3.135.41\msedgeupdate.dll
[Eventlog Application DLL] :HKLM Error Instrument=C:\WINDOWS\System32\USER32.DLL
### DLL de cliente API de usu�rio Windows para multiusu�rios Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\user32.dll
[Eventlog Application DLL] :HKLM ESENT=C:\WINDOWS\System32\ESENT.DLL
### Mecanismo de Armazenamento Extens�vel do Microsoft(R) Windows(R) Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1 !$*%systemroot
%\system32\esent.dll
[Eventlog Application DLL] :HKLM Folder
Redirection=C:\WINDOWS\System32\FDEPLOY.DLL
### Extens�o de Pol�tica de Grupo de redirecionamento de pasta Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\fdeploy.dll
[Eventlog Application DLL] :HKLM
HfcDisableService=C:\WINDOWS\System32\DRIVERSTORE\FILEREPOSITORY\IASTORAC.INF_AMD64
_F881C4BE237CE854\HFCDISABLESERVICE.EXE
### Intel(R) RST HFC disable Service Intel Corporation Intel(R) RST HFC disable
Service 17.5.9.1040 !$*%SystemRoot
%\System32\DriverStore\FileRepository\iastorac.inf_amd64_f881c4be237ce854\HfcDisabl
eService.exe
[Eventlog Application DLL] :HKLM
IAStorDataMgrSvc=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.D
LL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll
[Eventlog Application DLL] :HKLM
igccservice=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll
[Eventlog Application DLL] :HKLM Intel(R) Capability Licensing Service
Interface=C:\WINDOWS\SysWOW64\IUSEVENTLOG.DLL
### Intel(R) TCS Event Log messages definitions Intel(R) Corporation Intel(R) TCS
Event Log (C) Copyright Intel(R) Corporation ->EVENTLOG.DLL !$*%SystemRoot
%\System32\IusEventLog.dll
[Eventlog Application DLL] :HKLM IntelCPEventProvider=C:\Windows\..\PROGRAM
FILES\INTEL\MEDIA RESOURCE\IGD11DXVA32.DLL
### User Mode Driver for Intel(R) Graphics Technology Intel Corporation Intel HD
Graphics Drivers for Windows(R) 24.20.100.6287 !$*%Systemroot%\..\Program
Files\Intel\Media Resource\igd11dxva32.dll
[Eventlog Application DLL] :HKLM IntelDalJhi=%SystemRoot
%\System32\jhi_service.exe
### File is missing. !$*%SystemRoot%\System32\jhi_service.exe
[Eventlog Application DLL] :HKLM LMS=C:\PROGRAM FILES (X86)\INTEL\INTEL(R)
MANAGEMENT ENGINE COMPONENTS\LMS\LMS.EXE
### Intel(R) Local Management Service Intel Corporation Intel(R) Management and
Security Application Local Management Service 1846.12.0.1173 !$*C:\Program Files
(x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
[Eventlog Application DLL] :HKLM
MariaDB=c:\wamp64\bin\mariadb\mariadb10.4.10\bin\mysqld.exe
### File is missing. !$*c:\wamp64\bin\mariadb\mariadb10.4.10\bin\mysqld.exe
[Eventlog Application DLL] :HKLM
MEProv=C:\PROGRA~2\INTEL\INTEL(~1\MEWMIP~1\MEPROV.DLL
### Intel(R) Management Engine Provider Dynamic Link Library Intel Corporation
Intel(R) Management Engine Provider Dynamic Link Library 1846.12.0.1177 !
$*C:\PROGRA~2\Intel\INTEL(~1\MEWMIP~1\MEProv.dll
[Eventlog Application DLL] :HKLM Microsoft (R) Visual Basic Compiler=C:\PROGRAM
FILES (X86)\COMMON FILES\MICROSOFT SHARED\DW\DW20.EXE
### Microsoft Application Error Reporting Microsoft Corporation Microsoft
Application Error Reporting 12.0.4518.1014 !$*c:\Program Files (x86)\Common
Files\Microsoft Shared\DW\DW20.EXE
[Eventlog Application DLL] :HKLM Microsoft Document Explorer=C:\PROGRAM FILES
(X86)\COMMON FILES\MICROSOFT SHARED\DW\DW20.EXE
### Microsoft Application Error Reporting Microsoft Corporation Microsoft
Application Error Reporting 12.0.4518.1014 !$*c:\Program Files (x86)\Common
Files\Microsoft Shared\DW\DW20.EXE
[Eventlog Application DLL] :HKLM Microsoft Fax=C:\WINDOWS\SYSTEM32\FXSEVENT.DLL
### DLL de suporte a log de eventos do servi�o de fax Microsoft Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\Windows\System32\fxsevent.dll
[Eventlog Application DLL] :HKLM Microsoft Office
12=C:\PROGRA~2\COMMON~1\MICROS~1\DW\DW20.EXE
### Microsoft Application Error Reporting Microsoft Corporation Microsoft
Application Error Reporting 12.0.4518.1014 !
$*C:\PROGRA~2\COMMON~1\MICROS~1\DW\DW20.EXE
[Eventlog Application DLL] :HKLM Microsoft Visual Studio Tools for
Applications=c:\Program Files (x86)\Common Files\Microsoft Shared\DW\DW.EXE
### File is missing. !$*c:\Program Files (x86)\Common Files\Microsoft
Shared\DW\DW.EXE
[Eventlog Application DLL] :HKLM Microsoft-Windows-
ApplicationExperienceInfrastructure=C:\WINDOWS\System32\APPHELP.DLL
### Biblioteca de cliente de compatibilidade de aplicativos Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\apphelp.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-AppModel-
Runtime=C:\WINDOWS\System32\MICROSOFT-WINDOWS-SYSTEM-EVENTS.DLL
### Recursos Microsoft-Windows-System-Events Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\Microsoft-
Windows-System-Events.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-AppModel-
State=C:\WINDOWS\System32\MICROSOFT-WINDOWS-SYSTEM-EVENTS.DLL
### Recursos Microsoft-Windows-System-Events Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\Microsoft-
Windows-System-Events.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
Audio=C:\WINDOWS\System32\AUDIOSES.DLL
### Sess�o de �udio Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 ->AUDIOSESSION !$*%SystemRoot%\System32\audioses.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-Audit-
CVE=C:\WINDOWS\System32\MICROSOFT-WINDOWS-SYSTEM-EVENTS.DLL
### Recursos Microsoft-Windows-System-Events Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\Microsoft-
Windows-System-Events.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
AxInstallService=C:\WINDOWS\System32\AXINSTSV.DLL
### Servi�o Instalador do ActiveX Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\AxInstSv.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
Backup=C:\Windows\SYSTEM32\BLBEVENTS.DLL
### Blb Publisher Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%windir%\system32\BlbEvents.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
CAPI2=C:\WINDOWS\System32\CRYPT32.DLL
### Crypto API32 Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\crypt32.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
CertificateServicesClient=C:\WINDOWS\System32\DIMSJOB.DLL
### DLL de Trabalho do DIMS Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\dimsjob.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-CertificateServicesClient-
AutoEnrollment=C:\WINDOWS\System32\PAUTOENR.DLL
### DLL de registro autom�tico Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 ->AUTO ENROLLMENT DLL !$*%SystemRoot
%\system32\pautoenr.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-CertificateServicesClient-
CertEnroll=C:\WINDOWS\System32\CERTENROLL.DLL
### Cliente de registro de Servi�os de Certificado do Microsoft� Active Directory
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%SystemRoot%\system32\certenroll.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-CertificateServicesClient-
CredentialRoaming=C:\WINDOWS\System32\DIMSROAM.DLL
### DLL do Provedor de DIMS da Chave M�vel Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\dimsroam.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-CertificationAuthorityClient-
CertCli=C:\WINDOWS\System32\CERTCLI.DLL
### Cliente dos Servi�os de Certificados do Active Directory Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\certcli.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
COMRuntime=C:\WINDOWS\System32\COMBASE.DLL
### Microsoft COM para Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%systemroot%\system32\combase.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
DeliveryOptimization=C:\WINDOWS\System32\DOSVC.DLL
### Otimiza��o de Entrega Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1074 !$*%SystemRoot%\System32\dosvc.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-DirectShow-
Core=C:\WINDOWS\System32\QUARTZ.DLL
### Tempo de execu��o do DirectShow. Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\quartz.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-DirectShow-
KernelSupport=C:\WINDOWS\System32\KSPROXY.AX
### WDM Streaming ActiveMovie Proxy Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*%SystemRoot%\System32\ksproxy.ax
[Eventlog Application DLL] :HKLM Microsoft-Windows-
EapHost=C:\WINDOWS\System32\EAPSVC.DLL
### Servi�o Microsoft EAPHost Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%systemroot%\system32\eapsvc.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
EFS=C:\WINDOWS\System32\EFSCORE.DLL
### Biblioteca Principal do EFS Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\efscore.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
EventCollector=C:\WINDOWS\System32\WECSVC.DLL
### Servi�o Coletor de Eventos Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\wecsvc.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-Folder
Redirection=C:\WINDOWS\System32\FDEPLOY.DLL
### Extens�o de Pol�tica de Grupo de redirecionamento de pasta Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\fdeploy.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-Immersive-
Shell=C:\WINDOWS\System32\TWINUI.APPCORE.DLL
### TWINUI.APPCORE Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\system32\twinui.appcore.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
PerfCtrs=C:\WINDOWS\System32\PERFCTRS.DLL
### Contadores de Desempenho Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\perfctrs.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
PerfDisk=C:\WINDOWS\System32\PERFDISK.DLL
### DLL de objetos de desempenho de disco do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\perfdisk.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
Perflib=C:\WINDOWS\System32\PRFLBMSG.DLL
### Mensagens de Eventos Perflib Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\prflbmsg.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
PerfNet=C:\WINDOWS\System32\PERFNET.DLL
### DLL de objetos de desempenho de servi�os de rede do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\perfnet.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
PerfOS=C:\WINDOWS\System32\PERFOS.DLL
### DLL de objetos de desempenho de sistema do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\perfos.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
PerfProc=C:\WINDOWS\System32\PERFPROC.DLL
### DLL de objetos de desempenho de processo do sistema Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\perfproc.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-RemoteApp and Desktop
Connections=C:\WINDOWS\System32\TSWORKSPACE.DLL
### Componente da Conex�o de RemoteApp e da �rea de Trabalho Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\TSWorkspace.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
RemoteAssistance=C:\WINDOWS\System32\MSRA.EXE
### Assist�ncia Remota do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%systemroot%\system32\msra.exe
[Eventlog Application DLL] :HKLM Microsoft-Windows-
RestartManager=C:\WINDOWS\System32\RSTRTMGR.DLL
### Gerenciador de Reinicializa��o Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\RstrtMgr.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-RPC-
Events=C:\WINDOWS\System32\RPCRT4.DLL
### Tempo de Execu��o da Chamada de Procedimento Remoto Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\rpcrt4.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
Search=C:\WINDOWS\System32\TQUERY.DLL
### Consulta do Microsoft Tripoli Microsoft Corporation Pesquisa do Windows�
7.0.18362.1074 !$*%SystemRoot%\system32\tquery.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-Security-EnterpriseData-
FileRevocationManager=C:\WINDOWS\System32\EFSWRT.DLL
### Storage Protection Windows Runtime DLL Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.959 !$*%SystemRoot%\system32\efswrt.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-Security-
SPP=C:\Windows\SYSTEM32\SPPSVC.EXE
### Servi�o da Plataforma de Prote��o de Software da Microsoft Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%windir
%\system32\sppsvc.exe
[Eventlog Application DLL] :HKLM Microsoft-Windows-
SoftwareRestrictionPolicies=C:\WINDOWS\System32\MICROSOFT-WINDOWS-SYSTEM-EVENTS.DLL
### Recursos Microsoft-Windows-System-Events Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\Microsoft-
Windows-System-Events.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-Spell-
Checking=C:\WINDOWS\System32\MSSPELLCHECKINGFACILITY.DLL
### Recurso de Verifica��o Ortogr�fica da Microsoft Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%systemroot
%\System32\MsSpellCheckingFacility.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
SpellChecker=C:\WINDOWS\System32\MSSPELLCHECKINGFACILITY.DLL
### Recurso de Verifica��o Ortogr�fica da Microsoft Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%systemroot
%\System32\MsSpellCheckingFacility.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-Spellchecking-
Host=C:\WINDOWS\System32\MSSPELLCHECKINGHOST.EXE
### Microsoft Spell Checking Host Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*%systemroot%\System32\MsSpellCheckingHost.exe
[Eventlog Application DLL] :HKLM Microsoft-Windows-System-
Restore=C:\Windows\SYSTEM32\SREVENTS.DLL
### SrEvents Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*%windir%\system32\SrEvents.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-TerminalServices-
ClientActiveXCore=C:\WINDOWS\System32\MSTSCAX.DLL
### Cliente ActiveX dos Servi�os de �rea de Trabalho Remota Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\mstscax.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-User Profiles
General=C:\WINDOWS\System32\USERENV.DLL
### Userenv Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\userenv.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-User Profiles
Service=C:\WINDOWS\System32\PROFSVC.DLL
### ProfSvc Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\profsvc.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-User-
Loader=C:\WINDOWS\System32\MICROSOFT-WINDOWS-SYSTEM-EVENTS.DLL
### Recursos Microsoft-Windows-System-Events Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\Microsoft-
Windows-System-Events.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-Video-For-
Windows=C:\WINDOWS\System32\MCIAVI32.DLL
### Driver MCI do V�deo para Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\mciavi32.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
WindowsSystemAssessmentTool=C:\WINDOWS\System32\WINSAT.EXE
### Ferramenta de Avalia��o de Sistema do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\WINSAT.EXE
[Eventlog Application DLL] :HKLM Microsoft-Windows-
Winsrv=C:\WINDOWS\System32\WINSRV.DLL
### DLL do Windows Server para multiusu�rios Microsoft Corporation Sistema
operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\winsrv.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
WMI=C:\WINDOWS\System32\WBEM\WINMGMTR.DLL
### WMI Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\system32\wbem\WinMgmtR.dll
[Eventlog Application DLL] :HKLM Microsoft-Windows-
XWizards=C:\Windows\SYSTEM32\XWIZARDS.DLL
### M�dulo Gerenciador de Assistentes Extens�vel Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%windir%\system32\xwizards.dll
[Eventlog Application DLL] :HKLM Microsoft.Transactions.Bridge
3.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION
FOUNDATION\SERVICEMODELEVENTS.DLL
### Descri��es de evento relacionadas a ServiceModel Microsoft Corporation
Microsoft� .NET Framework 3.0.4506.9135 !
$*C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication
Foundation\ServiceModelEvents.dll
[Eventlog Application DLL] :HKLM Microsoft.Transactions.Bridge
4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL
### Descri��es de evento relacionadas a ServiceModel Microsoft Corporation
Microsoft� .NET Framework 4.8.3752.0 !
$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll
[Eventlog Application DLL] :HKLM MSDMine=C:\PROGRA~2\COMMON~1\SYSTEM\OLE
DB\MSDMINE.DLL
### Microsoft OLE DB Provider for Data Mining Services Microsoft Corporation
Microsoft SQL Server Analysis Services 8.00.2039 !$*C:\PROGRA~2\COMMON~1\SYSTEM\OLE
DB\MSDMINE.DLL
[Eventlog Application DLL] :HKLM MSSOAP=C:\PROGRAM FILES (X86)\COMMON
FILES\MICROSOFT SHARED\OFFICE12\MSSOAP30.DLL
### Microsoft Office Soap SDK Microsoft Corporation Microsoft Office Soap SDK
12.0.4518.1014 ->MSOSOAP30 =>MSOSOAP30.DLL !$*C:\Program Files (x86)\Common
Files\Microsoft Shared\OFFICE12\MSSOAP30.DLL
[Eventlog Application DLL] :HKLM
MySQL=C:\WAMP64\BIN\MARIADB\MARIADB10.3.14\BIN\MYSQLD.EXE
### 10.3.14.0 !$*c:\wamp64\bin\mariadb\mariadb10.3.14\bin\mysqld.exe
[Eventlog Application DLL] :HKLM MySQLD
Service=c:\wamp64\bin\mysql\mysql8.0.18\bin\mysqld.exe
### File is missing. !$*c:\wamp64\bin\mysql\mysql8.0.18\bin\mysqld.exe
[Eventlog Application DLL] :HKLM NVIDIA OpenGL
Driver=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NVDMI.INF_AMD64_1CB2F96FD365E
FCE\NVOGLV32.DLL
### NVIDIA Compatible OpenGL ICD NVIDIA Corporation NVIDIA Compatible OpenGL ICD
27.21.14.5148 !
$*C:\Windows\System32\DriverStore\FileRepository\nvdmi.inf_amd64_1cb2f96fd365efce\n
voglv32.dll
[Eventlog Application DLL] :HKLM NVMUP=C:\WINDOWS\SYSTEM32\NVMUPEVENTMSG.DLL
### NVMUPEventMsg Dynamic Link Library NVIDIA Corporation NVIDIA Install
Application 2.1002.78.480 !$*C:\Windows\system32\NVMUPEventMsg.dll
[Eventlog Application DLL] :HKLM Profsvc=C:\WINDOWS\System32\PROFSVC.DLL
### ProfSvc Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\profsvc.dll
[Eventlog Application DLL] :HKLM Protexis Licensing Service=C:\PROGRAM FILES
(X86)\COMMON FILES\PROTEXIS\LICENSE SERVICE\PSISERVICE_2.EXE
### PsiService PsiService Protexis Inc. PsiService System Service 03.00.02.15
->PSISERVICE =>PSISERVICE.EXE !$*c:\Program Files (x86)\Common
Files\Protexis\License Service\PsiService_2.exe
[Eventlog Application DLL] :HKLM
RNDBWM=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll
[Eventlog Application DLL] :HKLM SceCli=C:\WINDOWS\System32\SCECLI.DLL
### Mecanismo Cliente do Editor de configura��o de Seguran�a do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\scecli.dll
[Eventlog Application DLL] :HKLM SceSrv=C:\WINDOWS\System32\SCESRV.DLL
### Mecanismo do editor de configura��o de seguran�a do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\scesrv.dll
[Eventlog Application DLL] :HKLM SecurityCenter=C:\WINDOWS\System32\WSCSVC.DLL
### Servi�o Central de Seguran�a do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\wscsvc.dll
[Eventlog Application DLL] :HKLM ServiceModel Audit
3.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION
FOUNDATION\SERVICEMODELEVENTS.DLL
### Descri��es de evento relacionadas a ServiceModel Microsoft Corporation
Microsoft� .NET Framework 3.0.4506.9135 !
$*C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication
Foundation\ServiceModelEvents.dll
[Eventlog Application DLL] :HKLM ServiceModel Audit
4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL
### Descri��es de evento relacionadas a ServiceModel Microsoft Corporation
Microsoft� .NET Framework 4.8.3752.0 !
$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll
[Eventlog Application DLL] :HKLM SideBySide=C:\WINDOWS\System32\SXS.DLL
### Fusion 2.5 Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\sxs.dll
[Eventlog Application DLL] :HKLM Software Protection Platform
Service=C:\WINDOWS\System32\SPPSVC.EXE
### Servi�o da Plataforma de Prote��o de Software da Microsoft Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\system32\sppsvc.exe
[Eventlog Application DLL] :HKLM
SpeechRuntime=C:\WINDOWS\SYSTEM32\SPEECH_ONECORE\COMMON\SAPI_ONECORE.DLL
### Speech API Microsoft Corporation Microsoft� Speech Recognizer 11.1
5.3.18362.997 ->SAPI.DLL !
$*C:\Windows\System32\Speech_OneCore\Common\sapi_onecore.dll
[Eventlog Application DLL] :HKLM
SupportAssistAgent=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\EVENTLOGMESSAGES.D
LL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*C:\Windows\Microsoft.NET\Framework\v4.0.30319\EventLogMessages.dll
[Eventlog Application DLL] :HKLM
SupportAssistClient=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGE
S.DLL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll
[Eventlog Application DLL] :HKLM System.IdentityModel
3.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION
FOUNDATION\SERVICEMODELEVENTS.DLL
### Descri��es de evento relacionadas a ServiceModel Microsoft Corporation
Microsoft� .NET Framework 3.0.4506.9135 !
$*C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication
Foundation\ServiceModelEvents.dll
[Eventlog Application DLL] :HKLM System.IdentityModel
4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL
### Descri��es de evento relacionadas a ServiceModel Microsoft Corporation
Microsoft� .NET Framework 4.8.3752.0 !
$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll
[Eventlog Application DLL] :HKLM System.IO.Log
3.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION
FOUNDATION\SERVICEMODELEVENTS.DLL
### Descri��es de evento relacionadas a ServiceModel Microsoft Corporation
Microsoft� .NET Framework 3.0.4506.9135 !
$*C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication
Foundation\ServiceModelEvents.dll
[Eventlog Application DLL] :HKLM System.IO.Log
4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL
### Descri��es de evento relacionadas a ServiceModel Microsoft Corporation
Microsoft� .NET Framework 4.8.3752.0 !
$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll
[Eventlog Application DLL] :HKLM System.Runtime.Serialization
3.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION
FOUNDATION\SERVICEMODELEVENTS.DLL
### Descri��es de evento relacionadas a ServiceModel Microsoft Corporation
Microsoft� .NET Framework 3.0.4506.9135 !
$*C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication
Foundation\ServiceModelEvents.dll
[Eventlog Application DLL] :HKLM System.Runtime.Serialization
4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL
### Descri��es de evento relacionadas a ServiceModel Microsoft Corporation
Microsoft� .NET Framework 4.8.3752.0 !
$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll
[Eventlog Application DLL] :HKLM System.ServiceModel
3.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION
FOUNDATION\SERVICEMODELEVENTS.DLL
### Descri��es de evento relacionadas a ServiceModel Microsoft Corporation
Microsoft� .NET Framework 3.0.4506.9135 !
$*C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication
Foundation\ServiceModelEvents.dll
[Eventlog Application DLL] :HKLM System.ServiceModel
4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL
### Descri��es de evento relacionadas a ServiceModel Microsoft Corporation
Microsoft� .NET Framework 4.8.3752.0 !
$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll
[Eventlog Application DLL] :HKLM usbperf=C:\WINDOWS\System32\USBPERF.DLL
### DLL de Objetos de Desempenho USB Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\system32\usbperf.dll
[Eventlog Application DLL] :HKLM Userenv=C:\WINDOWS\System32\USERENV.DLL
### Userenv Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*%SystemRoot%\System32\userenv.dll
[Eventlog Application DLL] :HKLM VBRuntime=C:\WINDOWS\SYSWOW64\MSVBVM60.DLL
### Visual Basic Virtual Machine Microsoft Corporation Visual Basic 6.00.9815 !
$*C:\Windows\SysWOW64\msvbvm60.dll
[Eventlog Application DLL] :HKLM Visual Studio - VsTemplate=C:\PROGRAM FILES
(X86)\MICROSOFT VISUAL STUDIO 9.0\COMMON7\IDE\MSENV.DLL
### Development Environment DLL Microsoft Corporation Microsoft� Visual Studio�
2008 9.0.30729.1 !$*c:\Program Files (x86)\Microsoft Visual Studio
9.0\Common7\IDE\msenv.dll
[Eventlog Application DLL] :HKLM
VSSetup=C:\PROGRA~2\COMMON~1\MICROS~1\DW\DW20.EXE
### Microsoft Application Error Reporting Microsoft Corporation Microsoft
Application Error Reporting 12.0.4518.1014 !
$*C:\PROGRA~2\COMMON~1\MICROS~1\DW\DW20.EXE
[Eventlog Application DLL] :HKLM vsta=C:\PROGRAM FILES (X86)\MICROSOFT VISUAL
STUDIO 9.0\COMMON7\IDE\VSTA.EXE
### Microsoft Visual Studio Tools for Applications 2.0 Microsoft Corporation
Microsoft� Visual Studio� 2008 9.0.30729.1 !$*c:\Program Files (x86)\Microsoft
Visual Studio 9.0\Common7\IDE\vsta.exe
[Eventlog Application DLL] :HKLM
wdfsconnect2017=C:\WINDOWS\System32\WDFSCONNECTEVTMSG.DLL
### Message definitions for event logging (no code) Western Digital Technologies,
Inc. Common DLL used in WDFS Connect 1, 0, 0, 1 ->EVENTLOGMSG =>EVENTLOGMSG.DLL !$*
%SystemRoot%\System32\wdfsconnectevtmsg.dll
[Eventlog Application DLL] :HKLM Windows Error
Reporting=C:\WINDOWS\System32\WER.DLL
### DLL do Relat�rio de Erros do Windows Microsoft Corporation Sistema
operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\wer.dll
[Eventlog Application DLL] :HKLM Wininit=C:\WINDOWS\System32\WININIT.EXE
### Aplicativo de Inicializa��o do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\wininit.exe
[Eventlog Application DLL] :HKLM Winlogon=C:\WINDOWS\System32\WINLOGON.EXE
### Aplicativo de Logon do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\winlogon.exe
[Eventlog Application DLL] :HKLM Wlclntfy=C:\WINDOWS\System32\WINLOGON.EXE
### Aplicativo de Logon do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\winlogon.exe
[Eventlog Application DLL] :HKLM WMI.NET Provider
Extension=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll
[Eventlog Application DLL] :HKLM Wow64 Emulation
Layer=C:\WINDOWS\System32\NTVDM64.DLL
### Emula��o de 16 bits em NT64 Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\ntvdm64.dll
[Eventlog Application DLL] :HKLM WSH=C:\WINDOWS\System32\WSHEXT.DLL
### Microsoft � Shell Extension for Windows Script Host Microsoft Corporation
Microsoft � Windows Script Host 5.812.10240.16384 !$*%SystemRoot
%\System32\wshext.dll
[Eventlog Application DLL] :HKLM
xTendSoftAPService=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES
.DLL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll
[Eventlog Application DLL] :HKLM
xTendUtilityService=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGE
S.DLL
### EventLogMessages.dll Microsoft Corporation Microsoft� .NET Framework
4.8.3752.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll
[Drivers] :HKLM 1394ohci=C:\WINDOWS\SYSTEM32\DRIVERS\1394OHCI.SYS
### 1394 OpenHCI Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\1394ohci.sys
[Drivers] :HKLM 3ware=C:\WINDOWS\SYSTEM32\DRIVERS\3WARE.SYS
### LSI 3ware SCSI Storport Driver LSI LSI 3ware RAID Controller WindowsBlue !
$*C:\Windows\System32\drivers\3ware.sys
[Drivers] :HKLM ACPI=C:\WINDOWS\SYSTEM32\DRIVERS\ACPI.SYS
### ACPI Driver for NT Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1 !$*C:\Windows\System32\drivers\ACPI.sys
[Drivers] :HKLM AcpiDev=C:\WINDOWS\SYSTEM32\DRIVERS\ACPIDEV.SYS
### ACPI Devices Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\AcpiDev.sys
[Drivers] :HKLM acpiex=C:\WINDOWS\SYSTEM32\DRIVERS\ACPIEX.SYS
### ACPIEx Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\Drivers\acpiex.sys
[Drivers] :HKLM acpipagr=C:\WINDOWS\SYSTEM32\DRIVERS\ACPIPAGR.SYS
### ACPI Processor Aggregator Device Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\acpipagr.sys
[Drivers] :HKLM AcpiPmi=C:\WINDOWS\SYSTEM32\DRIVERS\ACPIPMI.SYS
### ACPI Power Metering Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\acpipmi.sys
[Drivers] :HKLM acpitime=C:\WINDOWS\SYSTEM32\DRIVERS\ACPITIME.SYS
### ACPI Wake Alarm Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*\SystemRoot\System32\drivers\acpitime.sys
[Drivers] :HKLM Acx01000=C:\WINDOWS\SYSTEM32\DRIVERS\ACX01000.SYS
### Audio KMDF Class Extension Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.693 !$*C:\Windows\system32\drivers\Acx01000.sys
[Drivers] :HKLM ADP80XX=C:\WINDOWS\SYSTEM32\DRIVERS\ADP80XX.SYS
### PMC-Sierra Storport Driver For SPC8x6G SAS/SATA controller PMC-Sierra PMC-
Sierra HBA Controller 1.3.0.10769 !$*C:\Windows\System32\drivers\ADP80XX.SYS
[Drivers] :HKLM AFD=C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS
### Ancillary Function Driver for WinSock Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !
$*\SystemRoot\system32\drivers\afd.sys
[Drivers] :HKLM afunix=C:\WINDOWS\SYSTEM32\DRIVERS\AFUNIX.SYS
### AF_UNIX socket provider Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.997 !$*\SystemRoot\system32\drivers\afunix.sys
[Drivers] :HKLM ahcache=C:\WINDOWS\SYSTEM32\DRIVERS\AHCACHE.SYS
### Application Compatibility Cache Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1049 !$*C:\Windows\system32\DRIVERS\ahcache.sys
[Drivers] :HKLM amdgpio2=C:\WINDOWS\SYSTEM32\DRIVERS\AMDGPIO2.SYS
### AMD GPIO Controller Driver Advanced Micro Devices, Inc AMD GPIO Controller
Driver 2.2.0.71 !$*\SystemRoot\System32\drivers\amdgpio2.sys
[Drivers] :HKLM amdi2c=C:\WINDOWS\SYSTEM32\DRIVERS\AMDI2C.SYS
### AMD I2C Controller Driver Advanced Micro Devices, Inc AMD I2C Controller
Driver 1.2.0.94 !$*\SystemRoot\System32\drivers\amdi2c.sys
[Drivers] :HKLM AmdK8=C:\WINDOWS\SYSTEM32\DRIVERS\AMDK8.SYS
### Processor Device Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1049 !$*\SystemRoot\System32\drivers\amdk8.sys
[Drivers] :HKLM AmdPPM=C:\WINDOWS\SYSTEM32\DRIVERS\AMDPPM.SYS
### Processor Device Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1049 !$*\SystemRoot\System32\drivers\amdppm.sys
[Drivers] :HKLM amdsata=C:\WINDOWS\SYSTEM32\DRIVERS\AMDSATA.SYS
### AHCI 1.3 Device Driver Advanced Micro Devices AHCI 1.3 Device Driver
1.1.3.277 !$*C:\Windows\System32\drivers\amdsata.sys
[Drivers] :HKLM amdsbs=C:\WINDOWS\SYSTEM32\DRIVERS\AMDSBS.SYS
### AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform
AMD Technologies Inc. AMD Technology AHCI Compatible Controller 3.7.1540.43 !
$*C:\Windows\System32\drivers\amdsbs.sys
[Drivers] :HKLM amdxata=C:\WINDOWS\SYSTEM32\DRIVERS\AMDXATA.SYS
### Storage Filter Driver Advanced Micro Devices Storage Filter Driver
1.1.3.277 !$*C:\Windows\System32\drivers\amdxata.sys
[Drivers] :HKLM AppID=C:\WINDOWS\SYSTEM32\DRIVERS\APPID.SYS
### AppID Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1049 !$*C:\Windows\system32\drivers\appid.sys
[Drivers] :HKLM AppleKmdfFilter=C:\WINDOWS\SYSTEM32\DRIVERS\APPLEKMDFFILTER.SYS
### Apple Mobile Device USB Device Apple Inc. Windows (R) Win 7 DDK driver 423.36
->GENERIC.SYS: !$*\SystemRoot\System32\drivers\AppleKmdfFilter.sys
[Drivers] :HKLM AppleLowerFilter=C:\WINDOWS\SYSTEM32\DRIVERS\APPLELOWERFILTER.SYS
### Apple Mobile Device USB Device Apple Inc. Windows (R) Win 7 DDK driver 423.36
->APPLELOWERFILTER.SYS: !$*\SystemRoot\System32\drivers\AppleLowerFilter.sys
[Drivers] :HKLM applockerfltr=C:\WINDOWS\SYSTEM32\DRIVERS\APPLOCKERFLTR.SYS
### Applocker Filter Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1049 !$*C:\Windows\system32\drivers\applockerfltr.sys
[Drivers] :HKLM arcsas=C:\WINDOWS\SYSTEM32\DRIVERS\ARCSAS.SYS
### Adaptec SAS RAID WS03 Driver PMC-Sierra, Inc. Adaptec RAID Controller
7.5.0.32048 ->ARCSAS.SYS.B32048.MCB !$*C:\Windows\System32\drivers\arcsas.sys
[Drivers] :HKLM AsyncMac=C:\WINDOWS\SYSTEM32\DRIVERS\ASYNCMAC.SYS
### MS Remote Access serial network driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\asyncmac.sys
[Drivers] :HKLM atapi=C:\WINDOWS\SYSTEM32\DRIVERS\ATAPI.SYS
### ATAPI IDE Miniport Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.693 !$*C:\Windows\System32\drivers\atapi.sys
[Drivers] :HKLM b06bdrv=C:\WINDOWS\SYSTEM32\DRIVERS\BXVBDA.SYS
### QLogic Gigabit Ethernet VBD QLogic Corporation QLogic Gigabit Ethernet
7.12.31.105 !$*C:\Windows\System32\drivers\bxvbda.sys
[Drivers] :HKLM bam=C:\WINDOWS\SYSTEM32\DRIVERS\BAM.SYS
### BAM Kernel Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\system32\drivers\bam.sys
[Drivers] :HKLM
BasicDisplay=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\BASICDISPLAY.INF_AMD64_
307898C750BA9E44\BASICDISPLAY.SYS
### Microsoft Basic Display Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.329 !
$*\SystemRoot\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_307898c750
ba9e44\BasicDisplay.sys
[Drivers] :HKLM
BasicRender=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\BASICRENDER.INF_AMD64_BA
2A8DE08EA0D469\BASICRENDER.SYS
### Microsoft Basic Render Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.329 !
$*\SystemRoot\System32\DriverStore\FileRepository\basicrender.inf_amd64_ba2a8de08ea
0d469\BasicRender.sys
[Drivers] :HKLM bcmfn2=C:\WINDOWS\SYSTEM32\DRIVERS\BCMFN2.SYS
### BCM Function 2 Device Driver Windows (R) Win 7 DDK provider Windows (R) Win
7 DDK driver 6.3.9600.17336 !$*\SystemRoot\System32\drivers\bcmfn2.sys
[Drivers] :HKLM bindflt=C:\WINDOWS\SYSTEM32\DRIVERS\BINDFLT.SYS
### Windows Bind Filter Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.628 !$*\SystemRoot\system32\drivers\bindflt.sys
[Drivers] :HKLM bowser=C:\WINDOWS\SYSTEM32\DRIVERS\BOWSER.SYS
### NT Lan Manager Datagram Receiver Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 ->BROWSER.SYS !
$*C:\Windows\system32\DRIVERS\bowser.sys
[Drivers] :HKLM BtFilter=C:\WINDOWS\SYSTEM32\DRIVERS\BTFILTER.SYS
### BT Filter Qualcomm BT Driver 10.0.0.916 !
$*\SystemRoot\System32\drivers\btfilter.sys
[Drivers] :HKLM BthA2dp=C:\WINDOWS\SYSTEM32\DRIVERS\BTHA2DP.SYS
### Bluetooth A2DP Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.693 !$*\SystemRoot\System32\drivers\BthA2dp.sys
[Drivers] :HKLM BthEnum=C:\WINDOWS\SYSTEM32\DRIVERS\BTHENUM.SYS
### Extensor de Barramento Bluetooth Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\BthEnum.sys
[Drivers] :HKLM BthHFAud=C:\WINDOWS\SYSTEM32\DRIVERS\BTHHFAUD.SYS
### Bluetooth Hands-free Audio Device Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\BthHfAud.sys
[Drivers] :HKLM BthHFEnum=C:\WINDOWS\SYSTEM32\DRIVERS\BTHHFENUM.SYS
### Bluetooth Hands-Free Audio and Call Control HID Enumerator Microsoft
Corporation Microsoft� Windows� Operating System 10.0.18362.1 !
$*\SystemRoot\System32\drivers\bthhfenum.sys
[Drivers] :HKLM
BthLEEnum=C:\WINDOWS\SYSTEM32\DRIVERS\MICROSOFT.BLUETOOTH.LEGACY.LEENUMERATOR.SYS
### Legacy Bluetooth LE Bus Enumerator Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !
$*\SystemRoot\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys
[Drivers] :HKLM BthMini=C:\WINDOWS\SYSTEM32\DRIVERS\BTHMINI.SYS
### Bluetooth Transport Extensibility Miniport Driver Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.693 !
$*\SystemRoot\System32\drivers\BTHMINI.sys
[Drivers] :HKLM BTHMODEM=C:\WINDOWS\SYSTEM32\DRIVERS\BTHMODEM.SYS
### Bluetooth Communications Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\bthmodem.sys
[Drivers] :HKLM BthPan=C:\WINDOWS\SYSTEM32\DRIVERS\BTHPAN.SYS
### Bluetooth Personal Area Networking Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\bthpan.sys
[Drivers] :HKLM BTHPORT=C:\WINDOWS\SYSTEM32\DRIVERS\BTHPORT.SYS
### Driver de Barramento Bluetooth Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.295 !$*\SystemRoot\System32\drivers\BTHport.sys
[Drivers] :HKLM BTHUSB=C:\WINDOWS\SYSTEM32\DRIVERS\BTHUSB.SYS
### Driver de Miniporta Bluetooth Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\BTHUSB.sys
[Drivers] :HKLM bttflt=C:\WINDOWS\SYSTEM32\DRIVERS\BTTFLT.SYS
### VHD BTT Filter Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*C:\Windows\System32\drivers\bttflt.sys
[Drivers] :HKLM buttonconverter=C:\WINDOWS\SYSTEM32\DRIVERS\BUTTONCONVERTER.SYS
### Button Converter Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 ->BTNCONV.SYS !
$*\SystemRoot\System32\drivers\buttonconverter.sys
[Drivers] :HKLM CAD=C:\WINDOWS\SYSTEM32\DRIVERS\CAD.SYS
### Charge Arbiration Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\CAD.sys
[Drivers] :HKLM cdfs=C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS
### CD-ROM File System Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.535 !$*C:\Windows\system32\DRIVERS\cdfs.sys
[Drivers] :HKLM cdrom=C:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS
### SCSI CD-ROM Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*\SystemRoot\System32\drivers\cdrom.sys
[Drivers] :HKLM cht4iscsi=C:\WINDOWS\SYSTEM32\DRIVERS\CHT4SX64.SYS
### Chelsio iSCSI VMiniport Driver Chelsio Communications Chelsio Communications
iSCSI Controller 10.0.10011.16384 ->CHT4ISCSI.SYS !
$*C:\Windows\System32\drivers\cht4sx64.sys
[Drivers] :HKLM cht4vbd=C:\WINDOWS\SYSTEM32\DRIVERS\CHT4VX64.SYS
### Virtual Bus Driver for Chelsio � T5/T6 Chipset Chelsio Communications Chelsio
Communications Unified Network I/O Controller 10.0.10011.16384 ->CHT4VBD.SYS !
$*\SystemRoot\System32\drivers\cht4vx64.sys
[Drivers] :HKLM circlass=C:\WINDOWS\SYSTEM32\DRIVERS\CIRCLASS.SYS
### Consumer IR Class Driver for eHome Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\circlass.sys
[Drivers] :HKLM CldFlt=C:\WINDOWS\SYSTEM32\DRIVERS\CLDFLT.SYS
### Cloud Files Mini Filter Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.815 !$*C:\Windows\system32\drivers\cldflt.sys
[Drivers] :HKLM CLFS=C:\WINDOWS\SYSTEM32\DRIVERS\CLFS.SYS
### Common Log File System Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1082 !$*C:\Windows\System32\drivers\CLFS.sys
[Drivers] :HKLM CmBatt=C:\WINDOWS\SYSTEM32\DRIVERS\CMBATT.SYS
### Control Method Battery Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\CmBatt.sys
[Drivers] :HKLM CNG=C:\WINDOWS\SYSTEM32\DRIVERS\CNG.SYS
### Kernel Cryptography, Next Generation Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.836 !$*C:\Windows\System32\Drivers\cng.sys
[Drivers] :HKLM cnghwassist=C:\WINDOWS\SYSTEM32\DRIVERS\CNGHWASSIST.SYS
### CNG Hardware Assist algorithm provider Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !
$*C:\Windows\System32\DRIVERS\cnghwassist.sys
[Drivers] :HKLM
CompositeBus=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\COMPOSITEBUS.INF_AMD64_
43AC632006E874BB\COMPOSITEBUS.SYS
### Multi-Transport Composite Bus Enumerator Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.329 !
$*\SystemRoot\System32\DriverStore\FileRepository\compositebus.inf_amd64_43ac632006
e874bb\CompositeBus.sys
[Drivers] :HKLM condrv=C:\WINDOWS\SYSTEM32\DRIVERS\CONDRV.SYS
### Console Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\drivers\condrv.sys
[Drivers] :HKLM dam=C:\WINDOWS\SYSTEM32\DRIVERS\DAM.SYS
### DAM Kernel Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\system32\drivers\dam.sys
[Drivers] :HKLM DDDriver=C:\WINDOWS\SYSTEM32\DRIVERS\DDDRIVER64DCSA.SYS
### Dell Data Vault Control Device Driver Dell Inc. Dell Data Vault Control
Device Driver 2.0.5.0 ->DDDRIVERU !
$*\SystemRoot\System32\drivers\dddriver64Dcsa.sys
[Drivers] :HKLM Dfsc=C:\WINDOWS\SYSTEM32\DRIVERS\DFSC.SYS
### DFS Namespace Client Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 ->DFSCLIENT.SYS !
$*C:\Windows\System32\Drivers\dfsc.sys
[Drivers] :HKLM dg_ssudbus=C:\WINDOWS\SYSTEM32\DRIVERS\SSUDBUS.SYS
### SAMSUNG USB Composite Device Driver Samsung Electronics Co., Ltd. SAMSUNG USB
Composite Device Driver 2.16.14.0 !$*\SystemRoot\system32\DRIVERS\ssudbus.sys
[Drivers] :HKLM disk=C:\WINDOWS\SYSTEM32\DRIVERS\DISK.SYS
### PnP Disk Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\drivers\disk.sys
[Drivers] :HKLM dmvsc=C:\WINDOWS\SYSTEM32\DRIVERS\DMVSC.SYS
### Mem�ria Din�mica Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\dmvsc.sys
[Drivers] :HKLM dptf_acpi=C:\WINDOWS\SYSTEM32\DRIVERS\DPTF_ACPI.SYS
### DPTF ACPI Device (64-Bit) Intel Corporation Dynamic Platform Thermal
Framework 8.4.10501.6067 !$*\SystemRoot\System32\drivers\dptf_acpi.sys
[Drivers] :HKLM dptf_cpu=C:\WINDOWS\SYSTEM32\DRIVERS\DPTF_CPU.SYS
### DPTF CPU Device (64-Bit) Intel Corporation Dynamic Platform Thermal Framework
8.4.10501.6067 !$*\SystemRoot\System32\drivers\dptf_cpu.sys
[Drivers] :HKLM drmkaud=C:\WINDOWS\SYSTEM32\DRIVERS\DRMKAUD.SYS
### Microsoft Trusted Audio Drivers Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\drmkaud.sys
[Drivers] :HKLM DXGKrnl=C:\WINDOWS\SYSTEM32\DRIVERS\DXGKRNL.SYS
### DirectX Graphics Kernel Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1082 !$*\SystemRoot\System32\drivers\dxgkrnl.sys
[Drivers] :HKLM e2xw10x64=C:\WINDOWS\SYSTEM32\DRIVERS\E2XW10X64.SYS
### Killer e2400 PCI-E Gigabit Ethernet Controller Qualcomm Atheros, Inc. Killer
e2400 PCI-E Gigabit Ethernet Controller 9.0.0.49 ->A2400.SYS !
$*\SystemRoot\System32\drivers\e2xw10x64.sys
[Drivers] :HKLM ebdrv=C:\WINDOWS\SYSTEM32\DRIVERS\EVBDA.SYS
### QLogic 10 GigE VBD QLogic Corporation QLogic 10 GigE 7.13.65.105 ->EVBDA.SYS"
FW VER:7.13.1.0
FW COMPILE:1 !$*C:\Windows\System32\drivers\evbda.sys
[Drivers] :HKLM EhStorClass=C:\WINDOWS\SYSTEM32\DRIVERS\EHSTORCLASS.SYS
### Enhanced Storage Class driver for IEEE 1667 devices Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1 !
$*C:\Windows\System32\drivers\EhStorClass.sys
[Drivers] :HKLM EhStorTcgDrv=C:\WINDOWS\SYSTEM32\DRIVERS\EHSTORTCGDRV.SYS
### Microsoft driver for storage devices supporting IEEE 1667 and TCG protocols
Microsoft Corporation Microsoft� Windows� Operating System 10.0.18362.1 !
$*C:\Windows\System32\drivers\EhStorTcgDrv.sys
[Drivers] :HKLM ErrDev=C:\WINDOWS\SYSTEM32\DRIVERS\ERRDEV.SYS
### Error Device Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\errdev.sys
[Drivers] :HKLM esif_lf=C:\WINDOWS\SYSTEM32\DRIVERS\ESIF_LF.SYS
### DPTF Zone (64-Bit) Intel Corporation Dynamic Platform Thermal Framework
8.4.10501.6067 !$*\SystemRoot\System32\drivers\esif_lf.sys
[Drivers] :HKLM fdc=C:\WINDOWS\SYSTEM32\DRIVERS\FDC.SYS
### Floppy Disk Controller Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\fdc.sys
[Drivers] :HKLM FileCrypt=C:\WINDOWS\SYSTEM32\DRIVERS\FILECRYPT.SYS
### Windows sandboxing and encryption filter Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*C:\Windows\system32\drivers\filecrypt.sys
[Drivers] :HKLM FileInfo=C:\WINDOWS\SYSTEM32\DRIVERS\FILEINFO.SYS
### FileInfo Filter Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*C:\Windows\System32\drivers\fileinfo.sys
[Drivers] :HKLM Filetrace=C:\WINDOWS\SYSTEM32\DRIVERS\FILETRACE.SYS
### File Trace Filter Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*C:\Windows\system32\drivers\filetrace.sys
[Drivers] :HKLM flpydisk=C:\WINDOWS\SYSTEM32\DRIVERS\FLPYDISK.SYS
### Floppy Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.752 ->FLOPPY.SYS !$*\SystemRoot\System32\drivers\flpydisk.sys
[Drivers] :HKLM FltMgr=C:\WINDOWS\SYSTEM32\DRIVERS\FLTMGR.SYS
### Gerenciador de Filtro do Filesystem Microsoft Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\Windows\system32\drivers\fltmgr.sys
[Drivers] :HKLM FsDepends=C:\WINDOWS\SYSTEM32\DRIVERS\FSDEPENDS.SYS
### File System Dependency Manager Mini Filter Driver Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1 !
$*C:\Windows\System32\drivers\FsDepends.sys
[Drivers] :HKLM fvevol=C:\WINDOWS\SYSTEM32\DRIVERS\FVEVOL.SYS
### BitLocker Drive Encryption Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1074 !$*C:\Windows\System32\DRIVERS\fvevol.sys
[Drivers] :HKLM gencounter=C:\WINDOWS\SYSTEM32\DRIVERS\VMGENCOUNTER.SYS
### Virtual Machine Generation Counter Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\vmgencounter.sys
[Drivers] :HKLM
genericusbfn=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\GENERICUSBFN.INF_AMD64_
B9C53B80E63AF230\GENERICUSBFN.SYS
### Generic USB Function Class Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.329 !
$*\SystemRoot\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_b9c53b80e6
3af230\genericusbfn.sys
[Drivers] :HKLM GPIOClx0101=C:\WINDOWS\SYSTEM32\DRIVERS\MSGPIOCLX.SYS
### GPIO Class Extension Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.329 !$*C:\Windows\System32\Drivers\msgpioclx.sys
[Drivers] :HKLM gpsvc=C:\WINDOWS\SYSTEM32\DRIVERS\MSGPIOCLX.SYS
### GPIO Class Extension Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.329 !$*C:\Windows\System32\Drivers\msgpioclx.sys
[Drivers] :HKLM GpuEnergyDrv=C:\WINDOWS\SYSTEM32\DRIVERS\GPUENERGYDRV.SYS
### GPU Energy Kernel Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*C:\Windows\System32\drivers\gpuenergydrv.sys
[Drivers] :HKLM HdAudAddService=C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDIO.SYS
### High Definition Audio Function Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.356 !
$*\SystemRoot\System32\drivers\HdAudio.sys
[Drivers] :HKLM HDAudBus=C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDBUS.SYS
### High Definition Audio Bus Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.693 !$*\SystemRoot\System32\drivers\HDAudBus.sys
[Drivers] :HKLM HfAudio=C:\WINDOWS\SYSTEM32\DRIVERS\HFAUDIO.SYS
### Phone Call Audio Device Screenovate Technologies Ltd. HfAudio 2.0.7.0 !
$*\SystemRoot\System32\drivers\HfAudio.sys
[Drivers] :HKLM HidBatt=C:\WINDOWS\SYSTEM32\DRIVERS\HIDBATT.SYS
### Hid Battery Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*\SystemRoot\System32\drivers\HidBatt.sys
[Drivers] :HKLM HidBth=C:\WINDOWS\SYSTEM32\DRIVERS\HIDBTH.SYS
### Driver de Miniporta Bluetooth para Dispositivos HID Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1 !
$*\SystemRoot\System32\drivers\hidbth.sys
[Drivers] :HKLM HidEventFilter=C:\WINDOWS\SYSTEM32\DRIVERS\HIDEVENTFILTER.SYS
### Intel(R) HID Event Filter Intel Corporation Intel(R) HID Event Filter
2.2.1.372 !$*\SystemRoot\System32\drivers\HidEventFilter.sys
[Drivers] :HKLM hidi2c=C:\WINDOWS\SYSTEM32\DRIVERS\HIDI2C.SYS
### I2C HID Miniport Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\hidi2c.sys
[Drivers] :HKLM hidinterrupt=C:\WINDOWS\SYSTEM32\DRIVERS\HIDINTERRUPT.SYS
### HID Button over Interrupt Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\hidinterrupt.sys
[Drivers] :HKLM HidIr=C:\WINDOWS\SYSTEM32\DRIVERS\HIDIR.SYS
### Infrared Miniport Driver for Input Devices Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\hidir.sys
[Drivers] :HKLM hidspi=C:\WINDOWS\SYSTEM32\DRIVERS\HIDSPI.SYS
### SPI HID Miniport Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.387 !$*\SystemRoot\System32\drivers\hidspi.sys
[Drivers] :HKLM HidUsb=C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS
### USB Miniport Driver for Input Devices Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.175 !$*\SystemRoot\System32\drivers\hidusb.sys
[Drivers] :HKLM HpSAMD=C:\WINDOWS\SYSTEM32\DRIVERS\HPSAMD.SYS
### Smart Array SAS/SATA Controller Media Driver Hewlett-Packard Company Smart
Array SAS/SATA Controller Media Driver 8.0.4.0 Build 1 Media Driver (x86-64) !
$*C:\Windows\System32\drivers\HpSAMD.sys
[Drivers] :HKLM HTTP=C:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS
### Pilha do protocolo HTTP Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*C:\Windows\system32\drivers\HTTP.sys
[Drivers] :HKLM hvcrash=C:\WINDOWS\SYSTEM32\DRIVERS\HVCRASH.SYS
### Hyper-V Crashdump Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*\SystemRoot\System32\drivers\hvcrash.sys
[Drivers] :HKLM hvservice=C:\WINDOWS\SYSTEM32\DRIVERS\HVSERVICE.SYS
### Hypervisor Boot Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*C:\Windows\system32\drivers\hvservice.sys
[Drivers] :HKLM HwNClx0101=C:\WINDOWS\SYSTEM32\DRIVERS\MSHWNCLX.SYS
### Hardware Notification Class Extension Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*C:\Windows\System32\Drivers\mshwnclx.sys
[Drivers] :HKLM hwpolicy=C:\WINDOWS\SYSTEM32\DRIVERS\HWPOLICY.SYS
### Hardware Policy Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.752 !$*C:\Windows\System32\drivers\hwpolicy.sys
[Drivers] :HKLM hyperkbd=C:\WINDOWS\SYSTEM32\DRIVERS\HYPERKBD.SYS
### Microsoft VMBus Synthetic Keyboard Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\hyperkbd.sys
[Drivers] :HKLM HyperVideo=C:\WINDOWS\SYSTEM32\DRIVERS\HYPERVIDEO.SYS
### Microsoft VMBus Video Device Miniport Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !
$*\SystemRoot\System32\drivers\HyperVideo.sys
[Drivers] :HKLM i8042prt=C:\WINDOWS\SYSTEM32\DRIVERS\I8042PRT.SYS
### Driver de porta i8042 Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\i8042prt.sys
[Drivers] :HKLM iagpio=C:\WINDOWS\SYSTEM32\DRIVERS\IAGPIO.SYS
### Intel(R) Serial IO GPIO Controller Driver Intel(R) Corporation Intel(R)
Serial IO GPIO Controller Driver 1.1.1.0 !$*\SystemRoot\System32\drivers\iagpio.sys
[Drivers] :HKLM iai2c=C:\WINDOWS\SYSTEM32\DRIVERS\IAI2C.SYS
### Intel(R) Serial IO I2C Driver Intel(R) Corporation Intel(R) Serial IO I2C
Driver 1.1.1.0 !$*\SystemRoot\System32\drivers\iai2c.sys
[Drivers] :HKLM iaLPSS2i_GPIO2=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_GPIO2.SYS
### Intel(R) Serial IO GPIO Driver v2 Intel Corporation Intel(R) Serial IO Driver
30.100.1816.3 !$*\SystemRoot\System32\drivers\iaLPSS2i_GPIO2.sys
[Drivers] :HKLM
iaLPSS2i_GPIO2_BXT_P=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_GPIO2_BXT_P.SYS
### Intel(R) Serial IO GPIO Driver v2 Intel Corporation Intel(R) Serial IO Driver
30.100.1816.1 !$*\SystemRoot\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys
[Drivers] :HKLM
iaLPSS2i_GPIO2_CNL=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_GPIO2_CNL.SYS
### Intel(R) Serial IO GPIO Driver v2 Intel Corporation Intel(R) Serial IO Driver
30.100.1816.3 !$*\SystemRoot\System32\drivers\iaLPSS2i_GPIO2_CNL.sys
[Drivers] :HKLM
iaLPSS2i_GPIO2_GLK=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_GPIO2_GLK.SYS
### Intel(R) Serial IO GPIO Driver v2 Intel Corporation Intel(R) Serial IO Driver
30.100.1820.1 !$*\SystemRoot\System32\drivers\iaLPSS2i_GPIO2_GLK.sys
[Drivers] :HKLM iaLPSS2i_I2C=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_I2C.SYS
### Intel(R) Serial IO I2C Driver v2 Intel Corporation Intel(R) Serial IO Driver
30.100.1816.3 !$*\SystemRoot\System32\drivers\iaLPSS2i_I2C.sys
[Drivers] :HKLM
iaLPSS2i_I2C_BXT_P=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_I2C_BXT_P.SYS
### Intel(R) Serial IO I2C Driver v2 Intel Corporation Intel(R) Serial IO Driver
30.100.1816.1 !$*\SystemRoot\System32\drivers\iaLPSS2i_I2C_BXT_P.sys
[Drivers] :HKLM iaLPSS2i_I2C_CNL=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_I2C_CNL.SYS
### Intel(R) Serial IO I2C Driver v2 Intel Corporation Intel(R) Serial IO Driver
30.100.1816.3 !$*\SystemRoot\System32\drivers\iaLPSS2i_I2C_CNL.sys
[Drivers] :HKLM iaLPSS2i_I2C_GLK=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_I2C_GLK.SYS
### Intel(R) Serial IO I2C Driver v2 Intel Corporation Intel(R) Serial IO Driver
30.100.1820.1 !$*\SystemRoot\System32\drivers\iaLPSS2i_I2C_GLK.sys
[Drivers] :HKLM iaLPSS2_GPIO2=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2_GPIO2.SYS
### Intel(R) Serial IO GPIO Driver v2 Intel Corporation Intel(R) Serial IO Driver
30.100.1727.1 !$*\SystemRoot\System32\drivers\iaLPSS2_GPIO2.sys
[Drivers] :HKLM iaLPSS2_I2C=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2_I2C.SYS
### Intel(R) Serial IO I2C Driver v2 Intel Corporation Intel(R) Serial IO Driver
30.100.1727.1 !$*\SystemRoot\System32\drivers\iaLPSS2_I2C.sys
[Drivers] :HKLM iaLPSS2_SPI=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2_SPI.SYS
### Intel(R) Serial IO SPI Driver v2 Intel Corporation Intel(R) Serial IO Driver
30.100.1727.1 !$*\SystemRoot\System32\drivers\iaLPSS2_SPI.sys
[Drivers] :HKLM iaLPSS2_UART2=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2_UART2.SYS
### Intel(R) Serial IO UART Driver Intel Corporation Intel(R) Serial IO Driver
30.100.1727.1 !$*\SystemRoot\System32\drivers\iaLPSS2_UART2.sys
[Drivers] :HKLM iaLPSSi_GPIO=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSSI_GPIO.SYS
### Intel(R) Serial IO GPIO Controller Driver Intel Corporation Intel(R) Serial
IO Driver 1.1.250.0 !$*\SystemRoot\System32\drivers\iaLPSSi_GPIO.sys
[Drivers] :HKLM iaLPSSi_I2C=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSSI_I2C.SYS
### Intel(R) Serial IO I2C Controller Driver Intel Corporation Intel(R) Serial IO
Driver 1.1.253.0 !$*\SystemRoot\System32\drivers\iaLPSSi_I2C.sys
[Drivers] :HKLM iaStorAC=C:\WINDOWS\SYSTEM32\DRIVERS\IASTORAC.SYS
### Intel(R) Rapid Storage Technology driver - x64 Intel Corporation Intel(R)
Rapid Storage Technology driver 17.5.9.1040 !
$*C:\Windows\System32\drivers\iaStorAC.sys
[Drivers] :HKLM iaStorAfs=C:\WINDOWS\SYSTEM32\DRIVERS\IASTORAFS.SYS
### Intel(R) Optane(TM) Memory Minifilter Driver Intel Corporation Intel(R)
Optane(TM) Memory Minifilter Driver 17.5.9.1040 !
$*C:\Windows\System32\drivers\iaStorAfs.sys
[Drivers] :HKLM iaStorAVC=C:\WINDOWS\SYSTEM32\DRIVERS\IASTORAVC.SYS
### Intel(R) Rapid Storage Technology driver (inbox) - x64 Intel Corporation
Intel(R) Rapid Storage Technology driver (inbox) 15.44.0.1010 !
$*C:\Windows\System32\drivers\iaStorAVC.sys
[Drivers] :HKLM iaStorV=C:\WINDOWS\SYSTEM32\DRIVERS\IASTORV.SYS
### Intel Matrix Storage Manager driver - x64 Intel Corporation Intel Matrix
Storage Manager driver 8.6.2.1019 ->IASTOR.SYS !
$*C:\Windows\System32\drivers\iaStorV.sys
[Drivers] :HKLM ibbus=C:\WINDOWS\SYSTEM32\DRIVERS\IBBUS.SYS
### InfiniBand Fabric Bus Driver Mellanox OpenFabrics Windows 10.0.10011.16384 !
$*\SystemRoot\System32\drivers\ibbus.sys
[Drivers] :HKLM
igfx=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\IIGD_DCH.INF_AMD64_783E12A6215F
487B\IGDKMD64.SYS
### Intel Graphics Kernel Mode Driver Intel Corporation Intel HD Graphics Drivers
for Windows(R) 26.20.100.8141 !
$*\SystemRoot\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_783e12a6215f48
7b\igdkmd64.sys
[Drivers] :HKLM IndirectKmd=C:\WINDOWS\SYSTEM32\DRIVERS\INDIRECTKMD.SYS
### Indirect displays kernel-mode filter driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1074 !
$*\SystemRoot\System32\drivers\IndirectKmd.sys
[Drivers] :HKLM IntcAudioBus=C:\WINDOWS\SYSTEM32\DRIVERS\INTCAUDIOBUS.SYS
### Intel� Smart Sound Technology (Intel� SST) Bus Intel(R) Corporation Intel�
Smart Sound Technology (Intel� SST) Bus 10.23.00.2427 !
$*\SystemRoot\System32\drivers\IntcAudioBus.sys
[Drivers] :HKLM IntcAzAudAddService=C:\WINDOWS\SYSTEM32\DRIVERS\RTKVHD64.SYS
### Realtek(r) High Definition Audio Function Driver Realtek Semiconductor Corp.
Realtek(r) High Definition Audio Function Driver 6.0.1.8642 ->RTKVHD64.SYS 8642 !
$*\SystemRoot\system32\drivers\RTKVHD64.sys
[Drivers] :HKLM
IntcDAud=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\INTCDAUD.INF_AMD64_1B570D7B
9A790B1A\INTCDAUD.SYS
### Intel(R) Display Audio Driver Intel(R) Corporation Intel(R) Display Audio
10.27.0.9 !
$*\SystemRoot\System32\DriverStore\FileRepository\intcdaud.inf_amd64_1b570d7b9a790b
1a\IntcDAud.sys
[Drivers] :HKLM IntcOED=C:\WINDOWS\SYSTEM32\DRIVERS\INTCOED.SYS
### Intel� Smart Sound Technology (Intel� SST) OED Intel(R) Corporation Intel�
Smart Sound Technology (Intel� SST) OED 10.23.00.2427 !
$*\SystemRoot\System32\drivers\IntcOED.sys
[Drivers] :HKLM intelide=C:\WINDOWS\SYSTEM32\DRIVERS\INTELIDE.SYS
### Intel PCI IDE Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.693 !$*C:\Windows\System32\drivers\intelide.sys
[Drivers] :HKLM intelpep=C:\WINDOWS\SYSTEM32\DRIVERS\INTELPEP.SYS
### Intel Power Engine Plugin Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.693 !$*C:\Windows\System32\drivers\intelpep.sys
[Drivers] :HKLM intelpmax=C:\WINDOWS\SYSTEM32\DRIVERS\INTELPMAX.SYS
### Intel Power Limit Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\intelpmax.sys
[Drivers] :HKLM intelppm=C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS
### Processor Device Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1049 !$*\SystemRoot\System32\drivers\intelppm.sys
[Drivers] :HKLM iorate=C:\WINDOWS\SYSTEM32\DRIVERS\IORATE.SYS
### Filtro de controle de taxa de E/S Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\drivers\iorate.sys
[Drivers] :HKLM IpFilterDriver=C:\WINDOWS\SYSTEM32\DRIVERS\IPFLTDRV.SYS
### IP FILTER DRIVER Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\system32\DRIVERS\ipfltdrv.sys
[Drivers] :HKLM IPMIDRV=C:\WINDOWS\SYSTEM32\DRIVERS\IPMIDRV.SYS
### DRIVER WMI IPMI Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1 !$*\SystemRoot\System32\drivers\IPMIDrv.sys
[Drivers] :HKLM IPNAT=C:\WINDOWS\SYSTEM32\DRIVERS\IPNAT.SYS
### IP Network Address Translator Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*C:\Windows\System32\drivers\ipnat.sys
[Drivers] :HKLM IPT=C:\WINDOWS\SYSTEM32\DRIVERS\IPT.SYS
### IPT Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*\SystemRoot\System32\drivers\ipt.sys
[Drivers] :HKLM isapnp=C:\WINDOWS\SYSTEM32\DRIVERS\ISAPNP.SYS
### PNP ISA Bus Driver Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1 !$*C:\Windows\System32\drivers\isapnp.sys
[Drivers] :HKLM iScsiPrt=C:\WINDOWS\SYSTEM32\DRIVERS\MSISCSI.SYS
### Microsoft iSCSI Initiator Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.449 ->ISCSI VERSION : MIN - 0, MAX - 0 !
$*\SystemRoot\System32\drivers\msiscsi.sys
[Drivers] :HKLM ItSas35i=C:\WINDOWS\SYSTEM32\DRIVERS\ITSAS35I.SYS
### Avago SAS Gen3.5 Driver (StorPort) Avago Technologies Windows (R) Win 7 DDK
driver 10.0.10011.16384 ->ITSAS35I-2.60.59.80 (WINDOWS 10 X64) !
$*C:\Windows\System32\drivers\ItSas35i.sys
[Drivers] :HKLM kbdclass=C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS
### Driver de Classe de Teclado Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\kbdclass.sys
[Drivers] :HKLM kbdhid=C:\WINDOWS\SYSTEM32\DRIVERS\KBDHID.SYS
### HID Mouse Filter Driver Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\kbdhid.sys
[Drivers] :HKLM kdnic=C:\WINDOWS\SYSTEM32\DRIVERS\KDNIC.SYS
### Microsoft Kernel Debugger Network Miniport Microsoft Corporation Microsoft
Kernel Debugger Network Adapter (NDIS 6.20 Miniport) 6.01.00.0000 !
$*\SystemRoot\System32\drivers\kdnic.sys
[Drivers] :HKLM
KfeCoSvc=C:\WINDOWS\SYSTEM32\DRIVERS\RIVETNETWORKS\KILLER\KFECO10X64.SYS
### Killer Traffic Control Callout Driver Rivet Networks, LLC. Killer Traffic
Control 9.2.3.51 ->KFECODRV.SYS !
$*\SystemRoot\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys
[Drivers] :HKLM KSecDD=C:\WINDOWS\SYSTEM32\DRIVERS\KSECDD.SYS
### Kernel Security Support Provider Interface Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1049 !$*C:\Windows\System32\Drivers\ksecdd.sys
[Drivers] :HKLM KSecPkg=C:\WINDOWS\SYSTEM32\DRIVERS\KSECPKG.SYS
### Kernel Security Support Provider Interface Packages Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1082 !
$*C:\Windows\System32\Drivers\ksecpkg.sys
[Drivers] :HKLM ksthunk=C:\WINDOWS\SYSTEM32\DRIVERS\KSTHUNK.SYS
### Kernel Streaming WOW Thunk Service Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\system32\drivers\ksthunk.sys
[Drivers] :HKLM lltdio=C:\WINDOWS\SYSTEM32\DRIVERS\LLTDIO.SYS
### Link-Layer Topology Mapper I/O Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*C:\Windows\system32\drivers\lltdio.sys
[Drivers] :HKLM LSI_SAS=C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS.SYS
### LSI Fusion-MPT SAS Driver (StorPort) LSI Corporation LSI Fusion-MPT SAS
Driver (StorPort) 1.34.03.83 ->LSI_SAS-1.34.03.83 (NT4) !
$*C:\Windows\System32\drivers\lsi_sas.sys
[Drivers] :HKLM LSI_SAS2i=C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS2I.SYS
### LSI SAS Gen2 Driver (StorPort) LSI Corporation Windows (R) Win 7 DDK driver
10.0.10011.16384 ->LSI_SAS2I-2.00.79.82 (NT4) !
$*C:\Windows\System32\drivers\lsi_sas2i.sys
[Drivers] :HKLM LSI_SAS3i=C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS3I.SYS
### Avago SAS Gen3 Driver (StorPort) Avago Technologies Windows (R) Win 7 DDK
driver 10.0.10011.16384 ->LSI_SAS3I-2.51.24.80 (NT4) !
$*C:\Windows\System32\drivers\lsi_sas3i.sys
[Drivers] :HKLM LSI_SSS=C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SSS.SYS
### LSI SSS PCIe/Flash Driver (StorPort) LSI Corporation LSI SSS PCIe/Flash
Driver (StorPort) 2.10.61.81 ->LSI_SSS-2.10.61.81 (NT4) !
$*C:\Windows\System32\drivers\lsi_sss.sys
[Drivers] :HKLM luafv=C:\WINDOWS\SYSTEM32\DRIVERS\LUAFV.SYS
### Driver do Filtro de Virtualiza��o do Arquivo LUA Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*\SystemRoot\system32\drivers\luafv.sys
[Drivers] :HKLM mausbhost=C:\WINDOWS\SYSTEM32\DRIVERS\MAUSBHOST.SYS
### MA-USB Host Controller Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\mausbhost.sys
[Drivers] :HKLM mausbip=C:\WINDOWS\SYSTEM32\DRIVERS\MAUSBIP.SYS
### MA-USB IP Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 =>MAUSHIP.SYS !$*\SystemRoot\System32\drivers\mausbip.sys
[Drivers] :HKLM MbbCx=C:\WINDOWS\SYSTEM32\DRIVERS\MBBCX.SYS
### Windows Mobile Broadband Class Extension Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.449 !$*C:\Windows\system32\drivers\MbbCx.sys
[Drivers] :HKLM megasas=C:\WINDOWS\SYSTEM32\DRIVERS\MEGASAS.SYS
### MEGASAS RAID Controller Driver for Windows Avago Technologies MEGASAS RAID
Controller Driver for Windows 6.706.06.00 ->MEGASAS2.SYS !
$*C:\Windows\System32\drivers\megasas.sys
[Drivers] :HKLM megasas2i=C:\WINDOWS\SYSTEM32\DRIVERS\MEGASAS2I.SYS
### MEGASAS RAID Controller Driver for Windows Avago Technologies MEGASAS RAID
Controller Driver for Windows 6.714.05.00 !
$*C:\Windows\System32\drivers\MegaSas2i.sys
[Drivers] :HKLM megasas35i=C:\WINDOWS\SYSTEM32\DRIVERS\MEGASAS35I.SYS
### MEGASAS RAID Controller Driver for Windows Avago Technologies MEGASAS RAID
Controller Driver for Windows 7.708.13.00 ->MEGASAS35.SYS !
$*C:\Windows\System32\drivers\megasas35i.sys
[Drivers] :HKLM megasr=C:\WINDOWS\SYSTEM32\DRIVERS\MEGASR.SYS
### LSI MegaRAID Software RAID Driver LSI Corporation, Inc. MegaRAID Software
RAID 15.02.2013.0129 !$*C:\Windows\System32\drivers\megasr.sys
[Drivers] :HKLM
MEIx64=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\HECI.INF_AMD64_D01E7C2E2B4C1B
72\X64\TEEDRIVERW10X64.SYS
### Intel(R) Management Engine Interface Intel Corporation Intel(R) Management
Engine Interface 1952.14.0.1470 ->TEEDRIVERX64.SYS !
$*\SystemRoot\System32\DriverStore\FileRepository\heci.inf_amd64_d01e7c2e2b4c1b72\x
64\TeeDriverW10x64.sys
[Drivers] :HKLM
Microsoft_Bluetooth_AvrcpTransport=C:\WINDOWS\SYSTEM32\DRIVERS\MICROSOFT.BLUETOOTH.
AVRCPTRANSPORT.SYS
### Driver de Transporte Avrcp Bluetooth da Microsoft Microsoft Corporation
Sistema operacional Microsoft� Windows� 10.0.18362.1 !
$*\SystemRoot\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys
[Drivers] :HKLM mlx4_bus=C:\WINDOWS\SYSTEM32\DRIVERS\MLX4_BUS.SYS
### MLX4 Bus Driver Mellanox OpenFabrics Windows 10.0.10011.16384 !
$*\SystemRoot\System32\drivers\mlx4_bus.sys
[Drivers] :HKLM MMCSS=C:\WINDOWS\SYSTEM32\DRIVERS\MMCSS.SYS
### MMCSS Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*\SystemRoot\system32\drivers\mmcss.sys
[Drivers] :HKLM Modem=C:\WINDOWS\SYSTEM32\DRIVERS\MODEM.SYS
### Driver de dispositivo de modem Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\drivers\modem.sys
[Drivers] :HKLM monitor=C:\WINDOWS\SYSTEM32\DRIVERS\MONITOR.SYS
### Monitor Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.693 !$*\SystemRoot\System32\drivers\monitor.sys
[Drivers] :HKLM mouclass=C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS
### Driver de classe modem Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\mouclass.sys
[Drivers] :HKLM mouhid=C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS
### HID Mouse Filter Driver Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\mouhid.sys
[Drivers] :HKLM mountmgr=C:\WINDOWS\SYSTEM32\DRIVERS\MOUNTMGR.SYS
### Gerenciador de Pontos de Montagem Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\drivers\mountmgr.sys
[Drivers] :HKLM MpKslDrv=C:\PROGRAMDATA\MICROSOFT\WINDOWS DEFENDER\DEFINITION
UPDATES\{6DC8B7AF-55B0-4063-85F6-BCDC4DEC89E0}\MPKSLDRV.SYS
### KSLDriver Microsoft Corporation Microsoft Malware Protection 1.1.17440.0
->KSLDRIVER =>KSLDRIVER.SYS !$*\??\C:\ProgramData\Microsoft\Windows
Defender\Definition Updates\{6DC8B7AF-55B0-4063-85F6-BCDC4DEC89E0}\MpKslDrv.sys
[Drivers] :HKLM mpsdrv=C:\WINDOWS\SYSTEM32\DRIVERS\MPSDRV.SYS
### Microsoft Protection Service Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*C:\Windows\System32\drivers\mpsdrv.sys
[Drivers] :HKLM MRxDAV=C:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS
### Windows NT WebDav Minirdr Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.387 !$*\SystemRoot\system32\drivers\mrxdav.sys
[Drivers] :HKLM mrxsmb=C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS
### Minirdr SMB do Windows NT Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\DRIVERS\mrxsmb.sys
[Drivers] :HKLM mrxsmb20=C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB20.SYS
### Longhorn SMB 2.0 Redirector Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1049 !$*C:\Windows\system32\DRIVERS\mrxsmb20.sys
[Drivers] :HKLM MsBridge=C:\WINDOWS\SYSTEM32\DRIVERS\BRIDGE.SYS
### MAC Bridge Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\drivers\bridge.sys
[Drivers] :HKLM msgpiowin32=C:\WINDOWS\SYSTEM32\DRIVERS\MSGPIOWIN32.SYS
### GPIO Button Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*\SystemRoot\System32\drivers\msgpiowin32.sys
[Drivers] :HKLM mshidkmdf=C:\WINDOWS\SYSTEM32\DRIVERS\MSHIDKMDF.SYS
### Pass-through HID to KMDF Filter Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !
$*\SystemRoot\System32\drivers\mshidkmdf.sys
[Drivers] :HKLM mshidumdf=C:\WINDOWS\SYSTEM32\DRIVERS\MSHIDUMDF.SYS
### Driver pass-through para Interface HID-UMDF Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !
$*\SystemRoot\System32\drivers\mshidumdf.sys
[Drivers] :HKLM msisadrv=C:\WINDOWS\SYSTEM32\DRIVERS\MSISADRV.SYS
### ISA Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.267 !$*C:\Windows\System32\drivers\msisadrv.sys
[Drivers] :HKLM MSKSSRV=C:\WINDOWS\SYSTEM32\DRIVERS\MSKSSRV.SYS
### MS KS Server Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.207 !$*\SystemRoot\System32\drivers\MSKSSRV.sys
[Drivers] :HKLM MsLldp=C:\WINDOWS\SYSTEM32\DRIVERS\MSLLDP.SYS
### Driver do Protocolo Microsoft LLDP Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\drivers\mslldp.sys
[Drivers] :HKLM MSPCLOCK=C:\WINDOWS\SYSTEM32\DRIVERS\MSPCLOCK.SYS
### MS Proxy Clock Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*\SystemRoot\System32\drivers\MSPCLOCK.sys
[Drivers] :HKLM MSPQM=C:\WINDOWS\SYSTEM32\DRIVERS\MSPQM.SYS
### MS Proxy Quality Manager Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\MSPQM.sys
[Drivers] :HKLM mssmbios=C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS
### System Management BIOS Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 ->SMBIOS.SYS =>SMBIOS.SYS.MUI !
$*\SystemRoot\System32\drivers\mssmbios.sys
[Drivers] :HKLM MSTEE=C:\WINDOWS\SYSTEM32\DRIVERS\MSTEE.SYS
### WDM Tee/Communication Transform Filter Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\MSTEE.sys
[Drivers] :HKLM MTConfig=C:\WINDOWS\SYSTEM32\DRIVERS\MTCONFIG.SYS
### Driver HID Multitoque Microsoft Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\MTConfig.sys
[Drivers] :HKLM Mup=C:\WINDOWS\SYSTEM32\DRIVERS\MUP.SYS
### Driver de Provedor UNC M�ltiplo Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\Drivers\mup.sys
[Drivers] :HKLM mvumis=C:\WINDOWS\SYSTEM32\DRIVERS\MVUMIS.SYS
### Marvell Flash Controller Driver Marvell Semiconductor, Inc. Marvell Flash
Controller 1.0.5.1016 ->SPEEDYST.SYS !$*C:\Windows\System32\drivers\mvumis.sys
[Drivers] :HKLM NativeWifiP=C:\WINDOWS\SYSTEM32\DRIVERS\NWIFI.SYS
### Driver da Miniporta NativeWiFi Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\DRIVERS\nwifi.sys
[Drivers] :HKLM ndfltr=C:\WINDOWS\SYSTEM32\DRIVERS\NDFLTR.SYS
### NetworkDirect Support Filter Driver Mellanox OpenFabrics Windows
10.0.10011.16384 !$*\SystemRoot\System32\drivers\ndfltr.sys
[Drivers] :HKLM NDIS=C:\WINDOWS\SYSTEM32\DRIVERS\NDIS.SYS
### NDIS (Especifica��o de Interface de Driver de Rede) Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\Windows\system32\drivers\ndis.sys
[Drivers] :HKLM NdisCap=C:\WINDOWS\SYSTEM32\DRIVERS\NDISCAP.SYS
### Microsoft NDIS Packet Capture Filter Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1074 !
$*C:\Windows\System32\drivers\ndiscap.sys
[Drivers] :HKLM NdisImPlatform=C:\WINDOWS\SYSTEM32\DRIVERS\NDISIMPLATFORM.SYS
### Microsoft Network Adapter Multiplexor Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1074 !
$*C:\Windows\System32\drivers\NdisImPlatform.sys
[Drivers] :HKLM NdisTapi=C:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS
### NDIS 3.0 connection wrapper driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1049 !$*C:\Windows\System32\DRIVERS\ndistapi.sys
[Drivers] :HKLM Ndisuio=C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS
### Driver de E/S do modo de usu�rio NDIS Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\Windows\system32\drivers\ndisuio.sys
[Drivers] :HKLM NdisVirtualBus=C:\WINDOWS\SYSTEM32\DRIVERS\NDISVIRTUALBUS.SYS
### Enumerador de Adaptador de Rede Virtual Microsoft Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*\SystemRoot\System32\drivers\NdisVirtualBus.sys
[Drivers] :HKLM NdisWan=C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS
### MS PPP Framing Driver (Strong Encryption) Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.719 !
$*\SystemRoot\System32\drivers\ndiswan.sys
[Drivers] :HKLM ndiswanlegacy=C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS
### MS PPP Framing Driver (Strong Encryption) Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.719 !$*C:\Windows\System32\DRIVERS\ndiswan.sys
[Drivers] :HKLM NDKPing=C:\WINDOWS\SYSTEM32\DRIVERS\NDKPING.SYS
### RDMA Sample Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 ->RDMASAMPLE.SYS !$*C:\Windows\system32\drivers\NDKPing.sys
[Drivers] :HKLM ndproxy=C:\WINDOWS\SYSTEM32\DRIVERS\NDPROXY.SYS
### NDIS Proxy Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1049 !$*C:\Windows\System32\DRIVERS\NDProxy.sys
[Drivers] :HKLM Ndu=C:\WINDOWS\SYSTEM32\DRIVERS\NDU.SYS
### Windows Network Data Usage Monitoring Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*C:\Windows\system32\drivers\Ndu.sys
[Drivers] :HKLM NetAdapterCx=C:\WINDOWS\SYSTEM32\DRIVERS\NETADAPTERCX.SYS
### Network Adapter Class Extension for WDF Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !
$*C:\Windows\system32\drivers\NetAdapterCx.sys
[Drivers] :HKLM NetBIOS=C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS
### NetBIOS interface driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*C:\Windows\system32\drivers\netbios.sys
[Drivers] :HKLM NetBT=C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS
### MBT Transport driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.145 !$*C:\Windows\System32\DRIVERS\netbt.sys
[Drivers] :HKLM netvsc=C:\WINDOWS\SYSTEM32\DRIVERS\NETVSC.SYS
### Miniporta NDIS Virtual Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\netvsc.sys
[Drivers] :HKLM npsvctrig=C:\WINDOWS\SYSTEM32\DRIVERS\NPSVCTRIG.SYS
### Named pipe service triggers Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\npsvctrig.sys
[Drivers] :HKLM nsiproxy=C:\WINDOWS\SYSTEM32\DRIVERS\NSIPROXY.SYS
### NSI Proxy Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.449 !$*C:\Windows\system32\drivers\nsiproxy.sys
[Drivers] :HKLM nvdimm=C:\WINDOWS\SYSTEM32\DRIVERS\NVDIMM.SYS
### Driver de dispositivo NVDIMM Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\nvdimm.sys
[Drivers] :HKLM NVHDA=C:\WINDOWS\SYSTEM32\DRIVERS\NVHDA64V.SYS
### NVIDIA HDMI Audio Driver NVIDIA Corporation NVIDIA HDMI Audio Driver
1.3.38.34 ->NVHDA.SYS !$*\SystemRoot\system32\drivers\nvhda64v.sys
[Drivers] :HKLM
nvlddmkm=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NVDMI.INF_AMD64_1CB2F96FD36
5EFCE\NVLDDMKM.SYS
### NVIDIA Windows Kernel Mode Driver, Version 451.48 NVIDIA Corporation NVIDIA
Windows Kernel Mode Driver, Version 451.48 27.21.14.5148 ->NVLDDMKM.SYS,
NV_LDDM:10011, NV_LDDM_DDK_BUILD:UNUSED !
$*\SystemRoot\System32\DriverStore\FileRepository\nvdmi.inf_amd64_1cb2f96fd365efce\
nvlddmkm.sys
[Drivers] :HKLM nvraid=C:\WINDOWS\SYSTEM32\DRIVERS\NVRAID.SYS
### NVIDIA� nForce(TM) RAID Driver NVIDIA Corporation NVIDIA nForce(TM) RAID
Driver 10.6.0.23 ->NVIDIA NFORCE(TM) RAID DRIVER !
$*C:\Windows\System32\drivers\nvraid.sys
[Drivers] :HKLM nvstor=C:\WINDOWS\SYSTEM32\DRIVERS\NVSTOR.SYS
### NVIDIA� nForce(TM) Sata Performance Driver NVIDIA Corporation NVIDIA
nForce(TM) SATA Driver 10.6.0.23 ->NVIDIA NFORCE(TM) SATA DRIVER !
$*C:\Windows\System32\drivers\nvstor.sys
[Drivers] :HKLM NvStreamKms=C:\PROGRAM FILES\NVIDIA
CORPORATION\NVSTREAMSRV\NVSTREAMKMS.SYS
### Nvidia Streaming Kernel Service NVIDIA Corporation Nvidia Streaming Kernel
Service gcomp_dev 24406864 !$*\??\C:\Program Files\NVIDIA
Corporation\NvStreamSrv\NvStreamKms.sys
[Drivers] :HKLM nvvad_WaveExtensible=C:\WINDOWS\SYSTEM32\DRIVERS\NVVAD64V.SYS
### NVIDIA Virtual Audio Driver NVIDIA Corporation NVIDIA Virtual Audio Driver
4.13.0.0 ->NVVAD.SYS !$*\SystemRoot\system32\drivers\nvvad64v.sys
[Drivers] :HKLM nvvhci=C:\WINDOWS\SYSTEM32\DRIVERS\NVVHCI.SYS
### Virtual USB Host Controller driver NVIDIA Corporation Virtual USB Host
Controller driver 3.04.0.1 !$*\SystemRoot\System32\drivers\nvvhci.sys
[Drivers] :HKLM Parport=C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS
### Driver de porta paralela Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\parport.sys
[Drivers] :HKLM partmgr=C:\WINDOWS\SYSTEM32\DRIVERS\PARTMGR.SYS
### Partition driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1074 !$*C:\Windows\System32\drivers\partmgr.sys
[Drivers] :HKLM pci=C:\WINDOWS\SYSTEM32\DRIVERS\PCI.SYS
### Enumerador NT Plug and Play PCI Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*C:\Windows\System32\drivers\pci.sys
[Drivers] :HKLM pciide=C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDE.SYS
### Generic PCI IDE Bus Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.693 !$*C:\Windows\System32\drivers\pciide.sys
[Drivers] :HKLM pcmcia=C:\WINDOWS\SYSTEM32\DRIVERS\PCMCIA.SYS
### Driver de barramento PCMCIA Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*C:\Windows\System32\drivers\pcmcia.sys
[Drivers] :HKLM pcw=C:\WINDOWS\SYSTEM32\DRIVERS\PCW.SYS
### Performance Counters for Windows Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*C:\Windows\System32\drivers\pcw.sys
[Drivers] :HKLM pdc=C:\WINDOWS\SYSTEM32\DRIVERS\PDC.SYS
### Power Dependency Coordinator Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1074 !$*C:\Windows\system32\drivers\pdc.sys
[Drivers] :HKLM PEAUTH=C:\WINDOWS\SYSTEM32\DRIVERS\PEAUTH.SYS
### Protected Environment Authentication and Authorization Export Driver
Microsoft Corporation Microsoft� Windows� Operating System 10.0.18362.1049 !
$*C:\Windows\system32\drivers\peauth.sys
[Drivers] :HKLM percsas2i=C:\WINDOWS\SYSTEM32\DRIVERS\PERCSAS2I.SYS
### MEGASAS RAID Controller Driver for Windows Avago Technologies MEGASAS RAID
Controller Driver for Windows 6.805.03.00 !
$*C:\Windows\System32\drivers\percsas2i.sys
[Drivers] :HKLM percsas3i=C:\WINDOWS\SYSTEM32\DRIVERS\PERCSAS3I.SYS
### MEGASAS RAID Controller Driver for Windows Avago Technologies MEGASAS RAID
Controller Driver for Windows 6.604.06.00 ->PERCSAS3.SYS !
$*C:\Windows\System32\drivers\percsas3i.sys
[Drivers] :HKLM PktMon=C:\WINDOWS\SYSTEM32\DRIVERS\PKTMON.SYS
### Driver do Monitor de Pacotes Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\drivers\PktMon.sys
[Drivers] :HKLM pmem=C:\WINDOWS\SYSTEM32\DRIVERS\PMEM.SYS
### Driver de mem�ria persistente Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\pmem.sys
[Drivers] :HKLM PNPMEM=C:\WINDOWS\SYSTEM32\DRIVERS\PNPMEM.SYS
### Plug and Play Memory Driver Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\pnpmem.sys
[Drivers] :HKLM portcfg=C:\WINDOWS\SYSTEM32\DRIVERS\PORTCFG.SYS
### Port Device Class Configuration Filter Driver Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1 !
$*\SystemRoot\System32\drivers\portcfg.sys
[Drivers] :HKLM PptpMiniport=C:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS
### Peer-to-Peer Tunneling Protocol Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\raspptp.sys
[Drivers] :HKLM Processor=C:\WINDOWS\SYSTEM32\DRIVERS\PROCESSR.SYS
### Processor Device Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\processr.sys
[Drivers] :HKLM Psched=C:\WINDOWS\SYSTEM32\DRIVERS\PACER.SYS
### Agendador de pacotes de servi�o Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\drivers\pacer.sys
[Drivers] :HKLM Qcamain10x64=C:\WINDOWS\SYSTEM32\DRIVERS\QCAMAIN10X64.SYS
### Qualcomm Atheros Extensible Wireless LAN device driver Qualcomm Atheros, Inc.
Driver for Qualcomm Atheros QCA61x4/QCA9377 Network Adapter 12.0.0.709 ->ATHR.SYS !
$*\SystemRoot\System32\drivers\Qcamain10x64.sys
[Drivers] :HKLM QWAVEdrv=C:\WINDOWS\SYSTEM32\DRIVERS\QWAVEDRV.SYS
### Driver de Suporte do Microsoft Quality Windows Audio Video Experience (qWave)
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*\SystemRoot\system32\drivers\qwavedrv.sys
[Drivers] :HKLM Ramdisk=C:\WINDOWS\SYSTEM32\DRIVERS\RAMDISK.SYS
### RAM Disk Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\system32\DRIVERS\ramdisk.sys
[Drivers] :HKLM RasAcd=C:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS
### RAS Automatic Connection Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*C:\Windows\System32\DRIVERS\rasacd.sys
[Drivers] :HKLM RasAgileVpn=C:\WINDOWS\SYSTEM32\DRIVERS\AGILEVPN.SYS
### Gerenciador de Chamadas de Miniporta VPN RAS Agile Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*\SystemRoot\System32\drivers\AgileVpn.sys
[Drivers] :HKLM Rasl2tp=C:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS
### RAS L2TP mini-port/call-manager driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\rasl2tp.sys
[Drivers] :HKLM RasPppoe=C:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS
### RAS PPPoE mini-port/call-manager driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*C:\Windows\System32\DRIVERS\raspppoe.sys
[Drivers] :HKLM RasSstp=C:\WINDOWS\SYSTEM32\DRIVERS\RASSSTP.SYS
### RAS SSTP Miniport Call Manager Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\rassstp.sys
[Drivers] :HKLM rdbss=C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS
### Driver do Subsistema de Buffer da Unidade Redirecionado Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\Windows\system32\DRIVERS\rdbss.sys
[Drivers] :HKLM rdpbus=C:\WINDOWS\SYSTEM32\DRIVERS\RDPBUS.SYS
### Microsoft RDP Bus Device driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\rdpbus.sys
[Drivers] :HKLM RDPDR=C:\WINDOWS\SYSTEM32\DRIVERS\RDPDR.SYS
### Redirecionador do Dispositivo RDP da Microsoft Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\Windows\System32\drivers\rdpdr.sys
[Drivers] :HKLM RdpVideoMiniport=C:\WINDOWS\SYSTEM32\DRIVERS\RDPVIDEOMINIPORT.SYS
### Microsoft RDP Video Miniport driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.693 !$*C:\Windows\System32\drivers\rdpvideominiport.sys
[Drivers] :HKLM rdyboost=C:\WINDOWS\SYSTEM32\DRIVERS\RDYBOOST.SYS
### ReadyBoost Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\drivers\rdyboost.sys
[Drivers] :HKLM RFCOMM=C:\WINDOWS\SYSTEM32\DRIVERS\RFCOMM.SYS
### Bluetooth RFCOMM Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\rfcomm.sys
[Drivers] :HKLM rhproxy=C:\WINDOWS\SYSTEM32\DRIVERS\RHPROXY.SYS
### ResourceHub Proxy Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\rhproxy.sys
[Drivers] :HKLM rspndr=C:\WINDOWS\SYSTEM32\DRIVERS\RSPNDR.SYS
### Link-Layer Topology Responder Driver for NDIS 6 Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1 !
$*C:\Windows\system32\drivers\rspndr.sys
[Drivers] :HKLM RTSUER=C:\WINDOWS\SYSTEM32\DRIVERS\RTSUER.SYS
### RTS USB READER Driver Realsil Semiconductor Corporation Windows (R) Win 7 DDK
driver 10.0.10011.16384 ->RTS_USB10.0.16299.31241 (WINDOWS 8 X64) !
$*\SystemRoot\system32\Drivers\RtsUer.sys
[Drivers] :HKLM s3cap=C:\WINDOWS\SYSTEM32\DRIVERS\VMS3CAP.SYS
### Microsoft S3 Emulated Device Cap Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\vms3cap.sys
[Drivers] :HKLM SamSs=C:\WINDOWS\SYSTEM32\DRIVERS\VMS3CAP.SYS
### Microsoft S3 Emulated Device Cap Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\vms3cap.sys
[Drivers] :HKLM sbp2port=C:\WINDOWS\SYSTEM32\DRIVERS\SBP2PORT.SYS
### SBP-2 Protocol Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*C:\Windows\System32\drivers\sbp2port.sys
[Drivers] :HKLM scfilter=C:\WINDOWS\SYSTEM32\DRIVERS\SCFILTER.SYS
### Driver de Filtro de Leitura de Cart�o Inteligente da Microsoft Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\Windows\System32\DRIVERS\scfilter.sys
[Drivers] :HKLM scmbus=C:\WINDOWS\SYSTEM32\DRIVERS\SCMBUS.SYS
### Driver de Barramento de Mem�ria de Classe de Armazenamento Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1 !
$*C:\Windows\System32\drivers\scmbus.sys
[Drivers] :HKLM ScrHIDDriver2=C:\WINDOWS\SYSTEM32\DRIVERS\SCRHIDDRIVER2.SYS
### Phone Input Device Screenovate Technologies Ltd. ScrHIDDriver2 2.0.7.1 !
$*\SystemRoot\System32\drivers\ScrHIDDriver2.sys
[Drivers] :HKLM sdbus=C:\WINDOWS\SYSTEM32\DRIVERS\SDBUS.SYS
### SecureDigital Bus Driver Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.449 !$*\SystemRoot\System32\drivers\sdbus.sys
[Drivers] :HKLM SDFRd=C:\WINDOWS\SYSTEM32\DRIVERS\SDFRD.SYS
### SDF Reflector Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*\SystemRoot\System32\drivers\SDFRd.sys
[Drivers] :HKLM sdstor=C:\WINDOWS\SYSTEM32\DRIVERS\SDSTOR.SYS
### Driver de Classe para Armazenamento SD Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1 !
$*\SystemRoot\System32\drivers\sdstor.sys
[Drivers] :HKLM SerCx=C:\WINDOWS\SYSTEM32\DRIVERS\SERCX.SYS
### Serial Class Extension Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*C:\Windows\system32\drivers\SerCx.sys
[Drivers] :HKLM SerCx2=C:\WINDOWS\SYSTEM32\DRIVERS\SERCX2.SYS
### Serial Class Extension V2 Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*C:\Windows\system32\drivers\SerCx2.sys
[Drivers] :HKLM Serenum=C:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS
### Serial Port Enumerator Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\serenum.sys
[Drivers] :HKLM Serial=C:\WINDOWS\SYSTEM32\DRIVERS\SERIAL.SYS
### Driver de dispositivo serial Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\serial.sys
[Drivers] :HKLM sermouse=C:\WINDOWS\SYSTEM32\DRIVERS\SERMOUSE.SYS
### Driver de porta de mouse serial Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\sermouse.sys
[Drivers] :HKLM sfloppy=C:\WINDOWS\SYSTEM32\DRIVERS\SFLOPPY.SYS
### SCSI Floppy Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.752 !$*\SystemRoot\System32\drivers\sfloppy.sys
[Drivers] :HKLM SgrmAgent=C:\WINDOWS\SYSTEM32\DRIVERS\SGRMAGENT.SYS
### System Guard Runtime Monitor Agent Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*C:\Windows\system32\drivers\SgrmAgent.sys
[Drivers] :HKLM SiSRaid2=C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID2.SYS
### SiS RAID Stor Miniport Driver Silicon Integrated Systems Corp. Microsoft�
Windows� Operating System 2.60.01 ->SISRAID2.SYS 2.60.01 !
$*C:\Windows\System32\drivers\SiSRaid2.sys
[Drivers] :HKLM SiSRaid4=C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID4.SYS
### SiS AHCI Stor-Miniport Driver Silicon Integrated Systems Microsoft� Windows�
Operating System 6.1.6918.0 !$*C:\Windows\System32\drivers\sisraid4.sys
[Drivers] :HKLM SmartSAMD=C:\WINDOWS\SYSTEM32\DRIVERS\SMARTSAMD.SYS
### Storport Miniport Driver for SmartRAID/SmartHBA Controllers Microsemi
Corportation SmartRAID, SmartHBA PQI Storport Driver 1.50.0.0 !
$*C:\Windows\System32\drivers\SmartSAMD.sys
[Drivers] :HKLM SmbCoSvc=C:\WINDOWS\SYSTEM32\DRIVERS\SMBCO10X64.SYS
### SmartByte Traffic Control Callout Driver Rivet Networks, LLC. SmartByte
Traffic Control 9.2.3.53 ->SMBCODRV.SYS !
$*\SystemRoot\system32\DRIVERS\SmbCo10X64.sys
[Drivers] :HKLM spaceport=C:\WINDOWS\SYSTEM32\DRIVERS\SPACEPORT.SYS
### Storage Spaces Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*C:\Windows\System32\drivers\spaceport.sys
[Drivers] :HKLM
SpatialGraphFilter=C:\WINDOWS\SYSTEM32\DRIVERS\SPATIALGRAPHFILTER.SYS
### Holographic Spatial Graph Filter Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*C:\Windows\System32\drivers\SpatialGraphFilter.sys
[Drivers] :HKLM SpbCx=C:\WINDOWS\SYSTEM32\DRIVERS\SPBCX.SYS
### SPB Class Extension Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*C:\Windows\system32\drivers\SpbCx.sys
[Drivers] :HKLM srv2=C:\WINDOWS\SYSTEM32\DRIVERS\SRV2.SYS
### Driver de Servidor Smb 2.0 Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\DRIVERS\srv2.sys
[Drivers] :HKLM srvnet=C:\WINDOWS\SYSTEM32\DRIVERS\SRVNET.SYS
### Server Network driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.900 !$*C:\Windows\System32\DRIVERS\srvnet.sys
[Drivers] :HKLM ssudmdm=C:\WINDOWS\SYSTEM32\DRIVERS\SSUDMDM.SYS
### SAMSUNG Android Modem Device Driver Samsung Electronics Co., Ltd. SAMSUNG
Android Modem Device Driver 2.16.14.0 !$*\SystemRoot\system32\DRIVERS\ssudmdm.sys
[Drivers] :HKLM stexstor=C:\WINDOWS\SYSTEM32\DRIVERS\STEXSTOR.SYS
### Promise SuperTrak EX Series Driver for Windows x64 Promise Technology, Inc.
Promise� SuperTrak EX Series 5.1.0000.10 !
$*C:\Windows\System32\drivers\stexstor.sys
[Drivers] :HKLM storahci=C:\WINDOWS\SYSTEM32\DRIVERS\STORAHCI.SYS
### MS AHCI Storport Miniport Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.693 !$*C:\Windows\System32\drivers\storahci.sys
[Drivers] :HKLM storflt=C:\WINDOWS\SYSTEM32\DRIVERS\VMSTORFL.SYS
### Driver do Filtro de Armazenamento Virtual Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1 !
$*C:\Windows\System32\drivers\vmstorfl.sys
[Drivers] :HKLM stornvme=C:\WINDOWS\SYSTEM32\DRIVERS\STORNVME.SYS
### Microsoft NVM Express Storport Miniport Driver Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1049 !
$*C:\Windows\System32\drivers\stornvme.sys
[Drivers] :HKLM storqosflt=C:\WINDOWS\SYSTEM32\DRIVERS\STORQOSFLT.SYS
### Filtro QoS de Armazenamento Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\drivers\storqosflt.sys
[Drivers] :HKLM storufs=C:\WINDOWS\SYSTEM32\DRIVERS\STORUFS.SYS
### MS UFS Storport Miniport Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1049 !$*C:\Windows\System32\drivers\storufs.sys
[Drivers] :HKLM storvsc=C:\WINDOWS\SYSTEM32\DRIVERS\STORVSC.SYS
### Storage VSC Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.387 !$*C:\Windows\System32\drivers\storvsc.sys
[Drivers] :HKLM
swenum=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\SWENUM.INF_AMD64_1C567926E5B2
9133\SWENUM.SYS
### Plug and Play Software Device Enumerator Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.329 !
$*\SystemRoot\System32\DriverStore\FileRepository\swenum.inf_amd64_1c567926e5b29133
\swenum.sys
[Drivers] :HKLM Synth3dVsc=C:\WINDOWS\SYSTEM32\DRIVERS\SYNTH3DVSC.SYS
### Microsoft RemoteFX Synth3D Video VSC Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1 !
$*\SystemRoot\System32\drivers\Synth3dVsc.sys
[Drivers] :HKLM Tcpip=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS
### Driver TCP/IP Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*C:\Windows\System32\drivers\tcpip.sys
[Drivers] :HKLM Tcpip6=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS
### Driver TCP/IP Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*C:\Windows\System32\drivers\tcpip.sys
[Drivers] :HKLM tcpipreg=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIPREG.SYS
### TCP/IP Registry Compatibility Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*C:\Windows\System32\drivers\tcpipreg.sys
[Drivers] :HKLM tdx=C:\WINDOWS\SYSTEM32\DRIVERS\TDX.SYS
### TDI Translation Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\system32\DRIVERS\tdx.sys
[Drivers] :HKLM terminpt=C:\WINDOWS\SYSTEM32\DRIVERS\TERMINPT.SYS
### Terminal Server Input Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\terminpt.sys
[Drivers] :HKLM TPM=C:\WINDOWS\SYSTEM32\DRIVERS\TPM.SYS
### Driver de Dispositivo TPM Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\tpm.sys
[Drivers] :HKLM TrkWks=C:\WINDOWS\SYSTEM32\DRIVERS\TPM.SYS
### Driver de Dispositivo TPM Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\tpm.sys
[Drivers] :HKLM TsUsbFlt=C:\WINDOWS\SYSTEM32\DRIVERS\TSUSBFLT.SYS
### Driver do Filtro de Hub USB da �rea de Trabalho Remota Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\Windows\system32\drivers\tsusbflt.sys
[Drivers] :HKLM TsUsbGD=C:\WINDOWS\SYSTEM32\DRIVERS\TSUSBGD.SYS
### Remote Desktop Generic USB Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.836 !$*\SystemRoot\System32\drivers\TsUsbGD.sys
[Drivers] :HKLM tunnel=C:\WINDOWS\SYSTEM32\DRIVERS\TUNNEL.SYS
### Driver de Interface de T�nel Microsoft Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\Windows\System32\drivers\tunnel.sys
[Drivers] :HKLM UASPStor=C:\WINDOWS\SYSTEM32\DRIVERS\UASPSTOR.SYS
### Microsoft Uasp Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.387 ->UASP VERSION : MIN - 0, MAX - 0 =>UASP.SYS !
$*\SystemRoot\System32\drivers\uaspstor.sys
[Drivers] :HKLM UcmCx0101=C:\WINDOWS\SYSTEM32\DRIVERS\UCMCX.SYS
### USB Connector Manager KMDF Class Extension Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*C:\Windows\System32\Drivers\UcmCx.sys
[Drivers] :HKLM UcmTcpciCx0101=C:\WINDOWS\SYSTEM32\DRIVERS\UCMTCPCICX.SYS
### UCM-TCPCI KMDF Class Extension Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*C:\Windows\System32\Drivers\UcmTcpciCx.sys
[Drivers] :HKLM
UcmUcsiAcpiClient=C:\WINDOWS\SYSTEM32\DRIVERS\UCMUCSIACPICLIENT.SYS
### UCM-UCSI ACPI Client Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\UcmUcsiAcpiClient.sys
[Drivers] :HKLM UcmUcsiCx0101=C:\WINDOWS\SYSTEM32\DRIVERS\UCMUCSICX.SYS
### UCM-UCSI KMDF Class Extension Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*C:\Windows\System32\Drivers\UcmUcsiCx.sys
[Drivers] :HKLM Ucx01000=C:\WINDOWS\SYSTEM32\DRIVERS\UCX01000.SYS
### USB Controller Extension Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*C:\Windows\system32\drivers\ucx01000.sys
[Drivers] :HKLM UdeCx=C:\WINDOWS\SYSTEM32\DRIVERS\UDECX.SYS
### "udecx.DRIVER" Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 ->"UDECX.DRIVER" !$*C:\Windows\system32\drivers\udecx.sys
[Drivers] :HKLM udfs=C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS
### UDF File System Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.535 !$*C:\Windows\system32\DRIVERS\udfs.sys
[Drivers] :HKLM
UEFI=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\UEFI.INF_AMD64_4FCAF0FC6EAF7533
\UEFI.SYS
### UEFI Driver for NT Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.329 !
$*\SystemRoot\System32\DriverStore\FileRepository\uefi.inf_amd64_4fcaf0fc6eaf7533\U
EFI.sys
[Drivers] :HKLM Ufx01000=C:\WINDOWS\SYSTEM32\DRIVERS\UFX01000.SYS
### USB Function Driver Class Extension Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*C:\Windows\system32\drivers\ufx01000.sys
[Drivers] :HKLM
UfxChipidea=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\UFXCHIPIDEA.INF_AMD64_62
4EEF84FAF426D6\UFXCHIPIDEA.SYS
### UFX Chipidea Client Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.329 !
$*\SystemRoot\System32\DriverStore\FileRepository\ufxchipidea.inf_amd64_624eef84faf
426d6\UfxChipidea.sys
[Drivers] :HKLM ufxsynopsys=C:\WINDOWS\SYSTEM32\DRIVERS\UFXSYNOPSYS.SYS
### UFX Synopsys Client Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\ufxsynopsys.sys
[Drivers] :HKLM
umbus=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\UMBUS.INF_AMD64_E566AF5DD9858A
0E\UMBUS.SYS
### User-Mode Bus Enumerator Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.329 !
$*\SystemRoot\System32\DriverStore\FileRepository\umbus.inf_amd64_e566af5dd9858a0e\
umbus.sys
[Drivers] :HKLM UmPass=C:\WINDOWS\SYSTEM32\DRIVERS\UMPASS.SYS
### Generic pass-through driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 =>FUMPASS.SYS !
$*\SystemRoot\System32\drivers\umpass.sys
[Drivers] :HKLM
UrsChipidea=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\URSCHIPIDEA.INF_AMD64_86
DA23C455846F41\URSCHIPIDEA.SYS
### USB Role-Switch Driver for Chipidea Core Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.329 !
$*\SystemRoot\System32\DriverStore\FileRepository\urschipidea.inf_amd64_86da23c4558
46f41\urschipidea.sys
[Drivers] :HKLM UrsCx01000=C:\WINDOWS\SYSTEM32\DRIVERS\URSCX01000.SYS
### USB Role-Switch Class Extension Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*C:\Windows\system32\drivers\urscx01000.sys
[Drivers] :HKLM
UrsSynopsys=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\URSSYNOPSYS.INF_AMD64_73
02CE5D1420ED71\URSSYNOPSYS.SYS
### USB Role-Switch Driver for Synopsys Core Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.329 !
$*\SystemRoot\System32\DriverStore\FileRepository\urssynopsys.inf_amd64_7302ce5d142
0ed71\urssynopsys.sys
[Drivers] :HKLM usbaudio=C:\WINDOWS\SYSTEM32\DRIVERS\USBAUDIO.SYS
### USB Audio Class Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.997 !$*\SystemRoot\system32\drivers\usbaudio.sys
[Drivers] :HKLM usbaudio2=C:\WINDOWS\SYSTEM32\DRIVERS\USBAUDIO2.SYS
### Microsoft USB Audio Class 2.0 Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.207 !
$*\SystemRoot\System32\drivers\usbaudio2.sys
[Drivers] :HKLM usbccgp=C:\WINDOWS\SYSTEM32\DRIVERS\USBCCGP.SYS
### USB Common Class Generic Parent Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.693 !
$*\SystemRoot\System32\drivers\usbccgp.sys
[Drivers] :HKLM usbcir=C:\WINDOWS\SYSTEM32\DRIVERS\USBCIR.SYS
### USB Consumer IR Driver for eHome Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\usbcir.sys
[Drivers] :HKLM usbehci=C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS
### EHCI eUSB Miniport Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\usbehci.sys
[Drivers] :HKLM usbhub=C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS
### Driver de Hub Padr�o para USB Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*\SystemRoot\System32\drivers\usbhub.sys
[Drivers] :HKLM USBHUB3=C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB3.SYS
### Driver de HUB USB3 Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.815 !$*\SystemRoot\System32\drivers\UsbHub3.sys
[Drivers] :HKLM usbohci=C:\WINDOWS\SYSTEM32\DRIVERS\USBOHCI.SYS
### OHCI USB Miniport Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\usbohci.sys
[Drivers] :HKLM usbprint=C:\WINDOWS\SYSTEM32\DRIVERS\USBPRINT.SYS
### USB Printer driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*\SystemRoot\System32\drivers\usbprint.sys
[Drivers] :HKLM usbser=C:\WINDOWS\SYSTEM32\DRIVERS\USBSER.SYS
### USB Serial Driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*\SystemRoot\System32\drivers\usbser.sys
[Drivers] :HKLM USBSTOR=C:\WINDOWS\SYSTEM32\DRIVERS\USBSTOR.SYS
### Driver de Classe de Armazenamento em Massa USB Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1 !
$*\SystemRoot\System32\drivers\USBSTOR.SYS
[Drivers] :HKLM usbuhci=C:\WINDOWS\SYSTEM32\DRIVERS\USBUHCI.SYS
### UHCI USB Miniport Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\usbuhci.sys
[Drivers] :HKLM usbvideo=C:\WINDOWS\SYSTEM32\DRIVERS\USBVIDEO.SYS
### USB Video Class Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.815 !$*\SystemRoot\System32\Drivers\usbvideo.sys
[Drivers] :HKLM USBXHCI=C:\WINDOWS\SYSTEM32\DRIVERS\USBXHCI.SYS
### Driver USB XHCI Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1 !$*\SystemRoot\System32\drivers\USBXHCI.SYS
[Drivers] :HKLM VBoxDrv=C:\WINDOWS\SYSTEM32\DRIVERS\VBOXDRV.SYS
### VirtualBox Support Driver Oracle Corporation Oracle VM VirtualBox
6.1.10.138449 !$*\SystemRoot\system32\DRIVERS\VBoxDrv.sys
[Drivers] :HKLM VBoxNetAdp=C:\WINDOWS\SYSTEM32\DRIVERS\VBOXNETADP6.SYS
### VirtualBox NDIS 6.0 Host-Only Network Adapter Driver Oracle Corporation
Oracle VM VirtualBox 6.1.10.138449 !$*\SystemRoot\system32\DRIVERS\VBoxNetAdp6.sys
[Drivers] :HKLM VBoxNetLwf=C:\WINDOWS\SYSTEM32\DRIVERS\VBOXNETLWF.SYS
### VirtualBox NDIS 6.0 Lightweight Filter Driver Oracle Corporation Oracle VM
VirtualBox 6.1.10.138449 !$*\SystemRoot\system32\DRIVERS\VBoxNetLwf.sys
[Drivers] :HKLM VBoxUSB=C:\WINDOWS\SYSTEM32\DRIVERS\VBOXUSB.SYS
### VirtualBox USB Driver Oracle Corporation Oracle VM VirtualBox 6.1.10.138449 !
$*\SystemRoot\System32\Drivers\VBoxUSB.sys
[Drivers] :HKLM VBoxUSBMon=C:\WINDOWS\SYSTEM32\DRIVERS\VBOXUSBMON.SYS
### VirtualBox USB Monitor Driver Oracle Corporation Oracle VM VirtualBox
6.1.10.138449 !$*\SystemRoot\system32\DRIVERS\VBoxUSBMon.sys
[Drivers] :HKLM vdrvroot=C:\WINDOWS\SYSTEM32\DRIVERS\VDRVROOT.SYS
### Virtual Drive Root Enumerator Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*C:\Windows\System32\drivers\vdrvroot.sys
[Drivers] :HKLM VerifierExt=C:\WINDOWS\SYSTEM32\DRIVERS\VERIFIEREXT.SYS
### Extens�o do Verificador de Driver Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\drivers\VerifierExt.sys
[Drivers] :HKLM vhdmp=C:\WINDOWS\SYSTEM32\DRIVERS\VHDMP.SYS
### VHD Miniport Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*\SystemRoot\System32\drivers\vhdmp.sys
[Drivers] :HKLM vhf=C:\WINDOWS\SYSTEM32\DRIVERS\VHF.SYS
### Virtual HID Framework (VHF) Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\vhf.sys
[Drivers] :HKLM Vid=C:\WINDOWS\SYSTEM32\DRIVERS\VID.SYS
### Microsoft Hyper-V Virtualization Infrastructure Driver Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1049 !
$*\SystemRoot\System32\drivers\Vid.sys
[Drivers] :HKLM vmbus=C:\WINDOWS\SYSTEM32\DRIVERS\VMBUS.SYS
### Driver Filho do Barramento VMBus do Microsoft Hyper-V Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1 !
$*C:\Windows\System32\drivers\vmbus.sys
[Drivers] :HKLM VMBusHID=C:\WINDOWS\SYSTEM32\DRIVERS\VMBUSHID.SYS
### Microsoft VMBus HID Miniport Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\VMBusHID.sys
[Drivers] :HKLM vmgid=C:\WINDOWS\SYSTEM32\DRIVERS\VMGID.SYS
### Virtual Machine Guest Infrastructure Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\vmgid.sys
[Drivers] :HKLM volmgr=C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGR.SYS
### Driver de Gerenciador de Volumes Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1 !$*C:\Windows\System32\drivers\volmgr.sys
[Drivers] :HKLM volmgrx=C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGRX.SYS
### Driver de Extens�o do Gerenciador de Volumes Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\Windows\System32\drivers\volmgrx.sys
[Drivers] :HKLM volsnap=C:\WINDOWS\SYSTEM32\DRIVERS\VOLSNAP.SYS
### Driver de C�pia de Sombra de Volume Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\drivers\volsnap.sys
[Drivers] :HKLM volume=C:\WINDOWS\SYSTEM32\DRIVERS\VOLUME.SYS
### Volume driver Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\drivers\volume.sys
[Drivers] :HKLM vpci=C:\WINDOWS\SYSTEM32\DRIVERS\VPCI.SYS
### Virtual PCI Bus Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*\SystemRoot\System32\drivers\vpci.sys
[Drivers] :HKLM vsmraid=C:\WINDOWS\SYSTEM32\DRIVERS\VSMRAID.SYS
### VIA RAID DRIVER FOR AMD-X86-64 VIA Technologies Inc.,Ltd VIA RAID driver
7.0.9600,6352 !$*C:\Windows\System32\drivers\vsmraid.sys
[Drivers] :HKLM VSTXRAID=C:\WINDOWS\SYSTEM32\DRIVERS\VSTXRAID.SYS
### VIA StorX RAID Controller Driver VIA Corporation VIA StorX RAID Controller
Driver 8.0.9200.8110 !$*C:\Windows\System32\drivers\vstxraid.sys
[Drivers] :HKLM vwifibus=C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIBUS.SYS
### Virtual Wireless Bus Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\vwifibus.sys
[Drivers] :HKLM vwififlt=C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIFLT.SYS
### Virtual WiFi Filter Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*C:\Windows\System32\drivers\vwififlt.sys
[Drivers] :HKLM vwifimp=C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIMP.SYS
### Virtual WiFi Miniport Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\vwifimp.sys
[Drivers] :HKLM WacomPen=C:\WINDOWS\SYSTEM32\DRIVERS\WACOMPEN.SYS
### Driver HID do Tablet com Caneta Serial Wacom Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1 !
$*\SystemRoot\System32\drivers\wacompen.sys
[Drivers] :HKLM wanarp=C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS
### MS Remote Access and Routing ARP Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1049 !$*C:\Windows\System32\DRIVERS\wanarp.sys
[Drivers] :HKLM wanarpv6=C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS
### MS Remote Access and Routing ARP Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1049 !$*C:\Windows\System32\DRIVERS\wanarp.sys
[Drivers] :HKLM wcifs=C:\WINDOWS\SYSTEM32\DRIVERS\WCIFS.SYS
### Windows Container Isolation FS Filter Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.693 !$*\SystemRoot\system32\drivers\wcifs.sys
[Drivers] :HKLM wcnfs=C:\WINDOWS\SYSTEM32\DRIVERS\WCNFS.SYS
### Windows Container Name Virtualization FS Filter Driver Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1 !
$*\SystemRoot\system32\drivers\wcnfs.sys
[Drivers] :HKLM WdBoot=C:\WINDOWS\SYSTEM32\DRIVERS\WD\WDBOOT.SYS
### Microsoft antimalware boot driver Microsoft Corporation Microsoft� Windows�
Operating System 4.18.2009.7 !$*C:\Windows\system32\drivers\wd\WdBoot.sys
[Drivers] :HKLM WDC_SAM=C:\WINDOWS\SYSTEM32\DRIVERS\WDCSAM64.SYS
### Western Digital SCSI Architecture Model (SAM) driver Western Digital
Technologies, Inc. Western Digital SAM driver 1.1.0.0 ->SAM DRIVER =>WDCSAM.SYS !
$*\SystemRoot\System32\drivers\wdcsam64.sys
[Drivers] :HKLM Wdf01000=C:\WINDOWS\SYSTEM32\DRIVERS\WDF01000.SYS
### Tempo de Execu��o da Estrutura de Driver em Modo Kernel Microsoft Corporation
Sistema Operacional Microsoft� Windows� 1.29.18362.1074 !
$*C:\Windows\system32\drivers\Wdf01000.sys
[Drivers] :HKLM WdFilter=C:\WINDOWS\SYSTEM32\DRIVERS\WD\WDFILTER.SYS
### Microsoft antimalware file system filter driver Microsoft Corporation
Microsoft� Windows� Operating System 4.18.2009.7 !
$*C:\Windows\system32\drivers\wd\WdFilter.sys
[Drivers] :HKLM wdfsconnect2017=C:\WINDOWS\SYSTEM32\DRIVERS\WDFSCONNECT2017.SYS
### Western Digital VFS Driver Western Digital Technologies, Inc. WDFS Connect
2017, 0, 2, 0 ->WDFSCONNECT.SYS !
$*\??\C:\Windows\system32\drivers\wdfsconnect2017.sys
[Drivers] :HKLM WdiServiceHost=C:\WINDOWS\SYSTEM32\DRIVERS\WDFSCONNECT2017.SYS
### Western Digital VFS Driver Western Digital Technologies, Inc. WDFS Connect
2017, 0, 2, 0 ->WDFSCONNECT.SYS !
$*\??\C:\Windows\system32\drivers\wdfsconnect2017.sys
[Drivers] :HKLM WdiSystemHost=C:\WINDOWS\SYSTEM32\DRIVERS\WDFSCONNECT2017.SYS
### Western Digital VFS Driver Western Digital Technologies, Inc. WDFS Connect
2017, 0, 2, 0 ->WDFSCONNECT.SYS !
$*\??\C:\Windows\system32\drivers\wdfsconnect2017.sys
[Drivers] :HKLM wdiwifi=C:\WINDOWS\SYSTEM32\DRIVERS\WDIWIFI.SYS
### WDI Driver Framework Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.387 !$*C:\Windows\system32\DRIVERS\wdiwifi.sys
[Drivers] :HKLM
WdmCompanionFilter=C:\WINDOWS\SYSTEM32\DRIVERS\WDMCOMPANIONFILTER.SYS
### WDM Companion Filter Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*C:\Windows\system32\drivers\WdmCompanionFilter.sys
[Drivers] :HKLM WdNisDrv=C:\WINDOWS\SYSTEM32\DRIVERS\WD\WDNISDRV.SYS
### Windows Defender Network Stream Filter Microsoft Corporation Microsoft�
Windows� Operating System 4.18.2009.7 !
$*C:\Windows\system32\drivers\wd\WdNisDrv.sys
[Drivers] :HKLM wdvpnpbus=C:\WINDOWS\SYSTEM32\DRIVERS\WDVPNPBUS.SYS
### Virtual PnP Bus Driver Western Digital Technologies, Inc. Western Digital
Virtual PnP Bus Driver 1, 0, 0, 1 !$*\SystemRoot\System32\drivers\wdvpnpbus.sys
[Drivers] :HKLM WFPLWFS=C:\WINDOWS\SYSTEM32\DRIVERS\WFPLWFS.SYS
### WFP NDIS 6.30 Lightweight Filter Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1074 !
$*C:\Windows\System32\drivers\wfplwfs.sys
[Drivers] :HKLM WIMMount=C:\WINDOWS\SYSTEM32\DRIVERS\WIMMOUNT.SYS
### Wim file system Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.657 ->WIMFLTR.SYS !$*C:\Windows\system32\drivers\wimmount.sys
[Drivers] :HKLM WindowsTrustedRT=C:\WINDOWS\SYSTEM32\DRIVERS\WINDOWSTRUSTEDRT.SYS
### Windows Trusted Runtime Interface Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !
$*C:\Windows\system32\drivers\WindowsTrustedRT.sys
[Drivers] :HKLM
WindowsTrustedRTProxy=C:\WINDOWS\SYSTEM32\DRIVERS\WINDOWSTRUSTEDRTPROXY.SYS
### Windows Trusted Runtime Service Proxy Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !
$*C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys
[Drivers] :HKLM WinMad=C:\WINDOWS\SYSTEM32\DRIVERS\WINMAD.SYS
### Kernel WinMad Mellanox OpenFabrics Windows 10.0.10011.16384 !
$*\SystemRoot\System32\drivers\winmad.sys
[Drivers] :HKLM WinNat=C:\WINDOWS\SYSTEM32\DRIVERS\WINNAT.SYS
### Driver NAT do Windows Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*C:\Windows\system32\drivers\winnat.sys
[Drivers] :HKLM WinQuic=C:\WINDOWS\SYSTEM32\DRIVERS\WINQUIC.SYS
### Windows QUIC Driver Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.145 !$*C:\Windows\system32\drivers\winquic.sys
[Drivers] :HKLM WinRing0_1_2_0=C:\LIXO\CPUTHERMOMETER\CPUTHERMOMETERLIB.SYS
### WinRing0 OpenLibSys.org WinRing0 1.2.0.5 ->WINRING0.SYS !
$*\??\C:\lixo\CPUThermometer\CPUThermometerLib.sys
[Drivers] :HKLM WINUSB=C:\WINDOWS\SYSTEM32\DRIVERS\WINUSB.SYS
### Windows WinUSB Class Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\WinUSB.SYS
[Drivers] :HKLM WinVerbs=C:\WINDOWS\SYSTEM32\DRIVERS\WINVERBS.SYS
### Kernel WinVerbs Mellanox OpenFabrics Windows 10.0.10011.16384 !
$*\SystemRoot\System32\drivers\winverbs.sys
[Drivers] :HKLM WmiAcpi=C:\WINDOWS\SYSTEM32\DRIVERS\WMIACPI.SYS
### Windows Management Interface for ACPI Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\wmiacpi.sys
[Drivers] :HKLM WpdUpFltr=C:\WINDOWS\SYSTEM32\DRIVERS\WPDUPFLTR.SYS
### Windows Portable Device Upper Class Filter Driver Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1 !
$*C:\Windows\System32\drivers\WpdUpFltr.sys
[Drivers] :HKLM ws2ifsl=C:\WINDOWS\SYSTEM32\DRIVERS\WS2IFSL.SYS
### Winsock2 IFS Layer Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*\SystemRoot\system32\drivers\ws2ifsl.sys
[Drivers] :HKLM WudfPf=C:\WINDOWS\SYSTEM32\DRIVERS\WUDFPF.SYS
### Windows Driver Foundation - User-mode Driver Framework Platform Driver
Microsoft Corporation Microsoft� Windows� Operating System 10.0.18362.1 !
$*C:\Windows\system32\drivers\WudfPf.sys
[Drivers] :HKLM WUDFRd=C:\WINDOWS\SYSTEM32\DRIVERS\WUDFRD.SYS
### Windows Driver Foundation - User-mode Driver Framework Reflector Microsoft
Corporation Microsoft� Windows� Operating System 10.0.18362.1 !
$*\SystemRoot\System32\drivers\WUDFRd.sys
[Drivers] :HKLM WUDFWpdFs=C:\WINDOWS\SYSTEM32\DRIVERS\WUDFRD.SYS
### Windows Driver Foundation - User-mode Driver Framework Reflector Microsoft
Corporation Microsoft� Windows� Operating System 10.0.18362.1 !
$*\SystemRoot\system32\DRIVERS\WUDFRd.sys
[Drivers] :HKLM WUDFWpdMtp=C:\WINDOWS\SYSTEM32\DRIVERS\WUDFRD.SYS
### Windows Driver Foundation - User-mode Driver Framework Reflector Microsoft
Corporation Microsoft� Windows� Operating System 10.0.18362.1 !
$*\SystemRoot\system32\DRIVERS\WUDFRd.sys
[Drivers] :HKLM xboxgip=C:\WINDOWS\SYSTEM32\DRIVERS\XBOXGIP.SYS
### Game Input Protocol Driver Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.267 !$*\SystemRoot\System32\drivers\xboxgip.sys
[Drivers] :HKLM xinputhid=C:\WINDOWS\SYSTEM32\DRIVERS\XINPUTHID.SYS
### XINPUT filter driver for HID Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*\SystemRoot\System32\drivers\xinputhid.sys
[Codecs] :HKLM aux=C:\Windows\SYSTEM32\WDMAUD.DRV
### Driver de sistema de �udio Winmm Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*wdmaud.drv
[Codecs] :HKLM midi=C:\Windows\SYSTEM32\WDMAUD.DRV
### Driver de sistema de �udio Winmm Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*wdmaud.drv
[Codecs] :HKLM midimapper=C:\Windows\SYSTEM32\MIDIMAP.DLL
### Microsoft MIDI Mapper Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*midimap.dll
[Codecs] :HKLM mixer=C:\Windows\SYSTEM32\WDMAUD.DRV
### Driver de sistema de �udio Winmm Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*wdmaud.drv
[Codecs] :HKLM msacm.imaadpcm=C:\Windows\SYSTEM32\IMAADP32.ACM
### CODEC IMA ADPCM para MSACM Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 ->IMA ADPCM CODEC FOR MSACM !$*imaadp32.acm
[Codecs] :HKLM msacm.msadpcm=C:\Windows\SYSTEM32\MSADP32.ACM
### CODEC Microsoft ADPCM para MSACM Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 ->MICROSOFT ADPCM CODEC FOR MSACM !
$*msadp32.acm
[Codecs] :HKLM msacm.msg711=C:\Windows\SYSTEM32\MSG711.ACM
### CODEC Microsoft CCITT G.711 (A-Law e u-Law) para MSACM Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 ->MICROSOFT CCITT G.711 (A-
LAW AND U-LAW) CODEC FOR MSACM !$*msg711.acm
[Codecs] :HKLM msacm.msgsm610=C:\Windows\SYSTEM32\MSGSM32.ACM
### CODEC de �udio Microsoft GSM 6.10 para MSACM Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 ->MICROSOFT GSM 6.10 AUDIO CODEC
FOR MSACM !$*msgsm32.acm
[Codecs] :HKLM vidc.cvid=C:\WINDOWS\Syswow64\ICCVID.DLL
### Cinepak� Codec Radius Inc. Cinepak para Windows 32 1.10.0.0
=>ICCVID.DRV.MUI !$*iccvid.dll
[Codecs] :HKLM vidc.i420=C:\Windows\SYSTEM32\IYUV_32.DLL
### Intel Indeo(R) Video YUV Codec Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*iyuv_32.dll
[Codecs] :HKLM vidc.iyuv=C:\Windows\SYSTEM32\IYUV_32.DLL
### Intel Indeo(R) Video YUV Codec Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*iyuv_32.dll
[Codecs] :HKLM vidc.mrle=C:\Windows\SYSTEM32\MSRLE32.DLL
### Microsoft RLE Compressor Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*msrle32.dll
[Codecs] :HKLM vidc.msvc=C:\Windows\SYSTEM32\MSVIDC32.DLL
### Compactador Microsoft V�deo 1 Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*msvidc32.dll
[Codecs] :HKLM vidc.uyvy=C:\Windows\SYSTEM32\MSYUV.DLL
### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*msyuv.dll
[Codecs] :HKLM vidc.yuy2=C:\Windows\SYSTEM32\MSYUV.DLL
### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*msyuv.dll
[Codecs] :HKLM vidc.yvu9=C:\Windows\SYSTEM32\TSBYUV.DLL
### Toshiba Video Codec Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*tsbyuv.dll
[Codecs] :HKLM vidc.yvyu=C:\Windows\SYSTEM32\MSYUV.DLL
### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*msyuv.dll
[Codecs] :HKLM wave=C:\Windows\SYSTEM32\WDMAUD.DRV
### Driver de sistema de �udio Winmm Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*wdmaud.drv
[Codecs] :HKLM wavemapper=C:\Windows\SYSTEM32\MSACM32.DRV
### Mapeador de som da Microsoft Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 ->MICROSOFT SOUND MAPPER =>MSACM32.ACM.MUI !
$*msacm32.drv
[Codecs] :HKLM msacm.l3acm=C:\WINDOWS\SYSWOW64\L3CODECA.ACM
### MPEG Layer-3 Audio Codec for MSACM Fraunhofer Institut Integrierte
Schaltungen IIS Codec de �udio MPEG Layer-3 para MSACM 1, 0, 0, 0 ->L3CODEC.ACM
=>L3CODEC.ACM.MUI !$*C:\Windows\SysWOW64\l3codeca.acm
[DCOM Components] :HKLM {F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}=""
[DCOM Components] :HKLM {5839FCA9-774D-42A1-ACDA-D6A79037F57F}=""
[DCOM Components] :HKLM {42AEDC87-2188-41FD-B9A3-0C966FEABEC1}=""
[DCOM User Components] :HKCU {F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}=""
[DCOM User Components] :HKCU {FBEB8A05-BEEE-4442-804E-409D6C4515E9}=""
[DCOM User Components] :HKCU {42AEDC87-2188-41FD-B9A3-0C966FEABEC1}=""
[Auto Start Apps]
[Registry Run] :HKCU OneDrive=C:\USERS\LUIS
FERNANDO\APPDATA\LOCAL\MICROSOFT\ONEDRIVE\ONEDRIVE.EXE
### Microsoft OneDrive Microsoft Corporation Microsoft OneDrive 20.143.0716.0003
->CLIENT APPLICATION !$*"C:\Users\Luis
Fernando\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
[Registry Run] :HKCU Free Download Manager=C:\PROGRAM FILES\SOFTDELUXE\FREE
DOWNLOAD MANAGER\FDM.EXE
### Free Download Manager Softdeluxe Free Download Manager 6.9.1.2947 !
$*"C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe" --hidden
[Registry Run] :HKCU GarminExpress=C:\PROGRAM FILES
(X86)\GARMIN\EXPRESS\EXPRESS.EXE
### Garmin Express Garmin Ltd. or its subsidiaries Garmin Express
7.1.0.0.d8327929 !$*"C:\Program Files (x86)\Garmin\Express\express.exe" /minimized
[Registry Run] :HKCU uTorrent=C:\USERS\LUIS
FERNANDO\APPDATA\ROAMING\UTORRENT\UTORRENT.EXE
### �Torrent BitTorrent Inc. �Torrent 3.5.5.45798 !$*"C:\Users\Luis
Fernando\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
[Registry Run] :HKLM kissq=C:\Users\LUISFE~1\AppData\Local\Temp\kissq.exe
### File is missing. !$*C:\Users\LUISFE~1\AppData\Local\Temp\kissq.exe
[Registry Run] :HKLM DiskFixer=C:\PROGRAM FILES (X86)\DISKFIXER\DISKFIXER.EXE
### DiskPower DiskPower 1.0.0.0 !$*"C:\Program Files
(x86)\DiskFixer\DiskFixer.exe"
[Registry Run] :HKLM WDDiscovery=C:\PROGRAM FILES (X86)\WESTERN
DIGITAL\DISCOVERY\CURRENT\WD DISCOVERY.EXE
### WD Discovery Western Digital Corporation WD Discovery 4.1.270 !$*C:\Program
Files (x86)\Western Digital\Discovery\Current\WD Discovery.exe --autolaunch
[Registry Run] :HKLM SunJavaUpdateSched=C:\PROGRAM FILES (X86)\COMMON
FILES\JAVA\JAVA UPDATE\JUSCHED.EXE
### Java Update Scheduler Oracle Corporation Java Platform SE Auto Updater
2.8.261.12 ->JAVA UPDATE SCHEDULER !$*"C:\Program Files (x86)\Common
Files\Java\Java Update\jusched.exe"
[Registry Run(x64)] :HKLM
SecurityHealth=C:\Windows\SYSTEM32\SECURITYHEALTHSYSTRAY.EXE
### Windows Security notification icon Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.628 !$*%windir%\system32\SecurityHealthSystray.exe
[Registry Run(x64)] :HKLM IAStorIcon=C:\PROGRAM FILES\INTEL\INTEL(R) RAPID
STORAGE TECHNOLOGY\IASTORICONLAUNCH.EXE
### Delayed launcher Intel Corporation Delayed launcher 1, 0, 0, 1 ->LAUNCHDELAY
=>LAUNCHDELAY.EXE !$*"C:\Program Files\Intel\Intel(R) Rapid Storage
Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage
Technology\IAStorIcon.exe" 60
[Registry Run(x64)] :HKLM RtkAudUService=C:\WINDOWS\SYSTEM32\RTKAUDUSERVICE64.EXE
### Realtek HD Audio Universal Service Realtek Semiconductor Realtek HD Audio
Universal Service 1.0.0.176 ->RTKAUDUSERVICE.EXE !
$*"C:\Windows\System32\RtkAudUService64.exe" -background
[Registry Run(x64)] :HKLM
WavesSvc=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\WAVESAPO75DE.INF_AMD64_5FF3
6F834A6D461A\WAVESSVC64.EXE
### Waves MaxxAudio Service Application Waves Audio Ltd. Waves MaxxAudio
1.17.23.0 ->WAVESSVC.EXE !
$*"C:\Windows\System32\DriverStore\FileRepository\wavesapo75de.inf_amd64_5ff36f834a
6d461a\WavesSvc64.exe" -Jack
[Registry Run(x64)] :HKLM DellMobileConnectWelcome=C:\PROGRAM
FILES\DELL\DELLMOBILECONNECTDRIVERS\DELLMOBILECONNECTWELCOME.EXE
### Dell Mobile Connect Welcome Screenovate Technologies Ltd. Dell Mobile Connect
2.0.0.8401 !$*"C:\Program
Files\Dell\DellMobileConnectDrivers\DellMobileConnectWelcome.exe"
[Registry Run(x64)] :HKLM Logitech Download
Assistant=C:\Windows\system32\rundll32.exe
C:\Windows\System32\LogiLDA.dll,LogiFetch
### File is missing. !$*C:\Windows\system32\rundll32.exe
C:\Windows\System32\LogiLDA.dll,LogiFetch
[Win.ini] :HKCU load=""
[Win.ini] :HKCU run=""
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Dell SupportAssistAgent
AutoUpdate=C:\PROGRAM FILES\DELL\SUPPORTASSISTAGENT\BIN\SUPPORTASSISTINSTALLER.EXE
### SupportAssistInstaller Dell Inc. SupportAssistInstaller 3.7.0.148 !
$*C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistInstaller.exe
Description: Dell SupportAssistAgent Auto Update Task Scheduler Parameters:
AutoUpdate
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\FreeDownloadManagerHelperService=C:\PROGRAM
FILES\SOFTDELUXE\FREE DOWNLOAD MANAGER\HELPERSERVICE.EXE
### Free Download Manager Softdeluxe Free Download Manager 6.9.1.2947 !
$*"C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe"
Description: 0 Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\GarminUpdaterTask=C:\PROGRAM FILES
(X86)\GARMIN\EXPRESS SELFUPDATER\EXPRESSSELFUPDATER.EXE
### Garmin.Omt.Express.SelfUpdater Garmin.Omt.Express.SelfUpdater 1.0.0.0 !
$*C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe
Description: Keeps your Garmin Software up to date Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Intel\Thunderbolt\Start
Thunderbolt application on login if service is up=ConditionalAppStarter.exe
### File is missing. !$*ConditionalAppStarter.exe Description: Start Thunderbolt
application on login if service Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Intel\Thunderbolt\Start
Thunderbolt application on switch user if service is up=ConditionalAppStarter.exe
### File is missing. !$*ConditionalAppStarter.exe Description: Start Thunderbolt
application on switch user if se Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Intel\Thunderbolt\Start
Thunderbolt application when hardware is detected=ConditionalAppStarter.exe
### File is missing. !$*ConditionalAppStarter.exe Description: Start Thunderbolt
application when hardware is det Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Intel\Thunderbolt\Start
Thunderbolt service on boot if driver is up=tbtsvc.exe
### File is missing. !$*tbtsvc.exe Description: Start Thunderbolt service on
boot if driver is up Parameters: ConditionalServiceStart
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Intel\Thunderbolt\Start
Thunderbolt service when hardware is detected=C:\Windows\SYSTEM32\SC.EXE
### Ferramenta de Configura��o do Gerenciador de Controle de Servi�o Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*sc.exe
Description: Start Thunderbolt service when hardware is detecte Parameters: start
ThunderboltService
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\AppID\PolicyConverter=C:\Windows\SYSTE
M32\APPIDPOLICYCONVERTER.EXE
### AppID Policy Converter Task Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1049 !$*%windir%\system32\appidpolicyconverter.exe
Status: Disabled Description: $(@%systemroot%\system32\appidsvc.dll,-302)
Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck=
C:\Windows\SYSTEM32\APPIDCERTSTORECHECK.EXE
### AppID Certificate Store Verification Task Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1049 !$*%windir
%\system32\appidcertstorecheck.exe Status: Disabled Description: $(@%systemroot
%\system32\appidsvc.dll,-202) Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Application
Experience\Microsoft Compatibility
Appraiser=C:\Windows\SYSTEM32\COMPATTELRUNNER.EXE
### Microsoft Compatibility Telemetry Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1035 !$*%windir%\system32\compattelrunner.exe
Description: $(@%SystemRoot%\system32\appraiser.dll,-502) Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Application
Experience\ProgramDataUpdater=C:\Windows\SYSTEM32\COMPATTELRUNNER.EXE
### Microsoft Compatibility Telemetry Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1035 !$*%windir%\system32\compattelrunner.exe
Description: $(@%SystemRoot%\system32\invagent.dll,-702) Parameters: -maintenance
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Application
Experience\StartupAppTask=C:\Windows\SYSTEM32\STARTUPSCAN.DLL
### DLL da tarefa de exame de inicializa��o Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%windir%\system32\rundll32.exe
Startupscan.dll,SusRunTask Description: $(@%SystemRoot%\system32\Startupscan.dll,-
702) Parameters: Startupscan.dll,SusRunTask
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\applicationdata\appuriverifierdaily=C:
\Windows\SYSTEM32\APPHOSTREGISTRATIONVERIFIER.EXE
### Verificador de Registro de Manipuladores de Uri de Aplicativo Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 ->APP URI
HANDLERS REGISTRATION VERIFIER =>APPHOSTNAMEREGISTRATIONVERIFIER.EXE.MUI !$*%windir
%\system32\AppHostRegistrationVerifier.exe Description: $(@%systemroot
%\system32\AppHostRegistrationVerifi Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\applicationdata\appuriverifierinstall=
C:\Windows\SYSTEM32\APPHOSTREGISTRATIONVERIFIER.EXE
### Verificador de Registro de Manipuladores de Uri de Aplicativo Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 ->APP URI
HANDLERS REGISTRATION VERIFIER =>APPHOSTNAMEREGISTRATIONVERIFIER.EXE.MUI !$*%windir
%\system32\AppHostRegistrationVerifier.exe Description: $(@%systemroot
%\system32\AppHostRegistrationVerifi Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\applicationdata\CleanupTemporaryState=
C:\Windows\SYSTEM32\WINDOWS.STORAGE.APPLICATIONDATA.DLL
### Windows Application Data API Server Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 ->WINDOWS APPLICATION DATA API SERVER !$*%windir
%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Description: $(@%systemroot%\system32\Windows.Storage.Applicati Parameters:
Windows.Storage.ApplicationData.dll,CleanupTemporaryState
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\applicationdata\DsSvcCleanup=C:\Window
s\SYSTEM32\DSTOKENCLEAN.EXE
### Data Sharing Service Maintenance Driver Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.657 ->DATA SHARING SERVICE MAINTENANCE
DRIVER !$*%windir%\system32\dstokenclean.exe Description: $(@%systemroot
%\system32\dssvc.dll,-10006) Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\AppxDeploymentClient\Pre-staged app
cleanup=C:\WINDOWS\SYSTEM32\APPXDEPLOYMENTCLIENT.DLL
### DLL do Cliente de Implanta��o AppX Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%windir%\system32\rundll32.exe %windir
%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Status: Disabled
Description: 0 Parameters: %windir
%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Autochk\Proxy=C:\Windows\SYSTEM32\ACPR
OXY.DLL
### DLL Proxy de Autochk Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%windir%\system32\rundll32.exe /d
acproxy.dll,PerformAutochkOperations Description: $(@%systemroot
%\system32\acproxy.dll,-102) Parameters: /d acproxy.dll,PerformAutochkOperations
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Bluetooth\UninstallDeviceTask=C:\Windo
ws\SYSTEM32\BTHUDTASK.EXE
### Tarefa de Dispositivo de Desinstala��o de Bluetooth Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*BthUdTask.exe
Description: $(@%SystemRoot%\system32\BthUdTask.exe,-1001) Parameters: $(Arg0)
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Chkdsk\SyspartRepair=C:\Windows\SYSTEM
32\BCDBOOT.EXE
### Utilit�rio bcdboot Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%windir%\system32\bcdboot.exe Description: 0
Parameters: %windir% /sysrepair
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Clip\License
Validation=C:\WINDOWS\System32\CLIPUP.EXE
### Client License Platform migration tool Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1049 ->CLIENT LICENSE PLATFORM MIGRATION
TOOL !$*%SystemRoot%\system32\ClipUp.exe Status: Disabled Description: $(@
%SystemRoot%\system32\ClipUp.exe,-101) Parameters: -p -s -o
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Customer
Experience Improvement Program\Consolidator=C:\WINDOWS\System32\WSQMCONS.EXE
### Windows SQM Consolidator Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\wsqmcons.exe Description: $(@
%systemRoot%\system32\wsqmcons.exe,-107) Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Defrag\ScheduledDefrag=C:\Windows\SYST
EM32\DEFRAG.EXE
### Desfragmentador de disco do Windows Microsoft Corp. Otimizador de Unidade do
Windows 10.0.18362.1074 !$*%windir%\system32\defrag.exe Description: $(@
%systemroot%\system32\defragsvc.dll,-802) Parameters: -c -h -o -$
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Device
Information\Device=C:\Windows\SYSTEM32\DEVICECENSUS.EXE
### Device Census Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1035 !$*%windir%\system32\devicecensus.exe Description: 0 Parameters:
0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Diagnosis\RecommendedTroubleshootingSc
anner=C:\Windows\SYSTEM32\MITIGATIONSCANNER.EXE
### Verificador de Solu��o de Problemas recomendado pela Microsoft Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%windir
%\system32\mitigationscanner.exe Description: $(@%systemRoot
%\system32\mitigationscanner.exe,-20 Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DirectX\DirectXDatabaseUpdater=C:\Wind
ows\SYSTEM32\DIRECTXDATABASEUPDATER.EXE
### DirectX Database Updater Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.387 !$*%windir%\system32\directxdatabaseupdater.exe Description:
0 Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DirectX\DXGIAdapterCache=C:\Windows\SY
STEM32\DXGIADAPTERCACHE.EXE
### DXGI Adapter Cache Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.387 !$*%windir%\system32\dxgiadaptercache.exe Description: 0
Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DiskCleanup\SilentCleanup=C:\Windows\S
YSTEM32\CLEANMGR.EXE
### Gerenciador de Limpeza de Espa�o em Disco para Windows Microsoft Corporation
Sistema operacional Microsoft� Windows� 10.0.18362.1074 =>CLEANMGR.DLL.MUI !$*
%windir%\system32\cleanmgr.exe Description: $(@%systemroot
%\system32\cleanmgr.exe,-1301) Parameters: /autoclean /d %systemdrive%
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-
DiskDiagnosticDataCollector=C:\Windows\SYSTEM32\DFDTS.DLL
### M�dulo Diagn�stico de Falhas de Discos do Windows Microsoft Corporation
Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%windir
%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART Status: Disabled
Description: $(@%SystemRoot%\System32\DFDTS.dll,-119) Parameters:
dfdts.dll,DfdGetDefaultPolicyAndSMART
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-
DiskDiagnosticResolver=C:\Windows\SYSTEM32\DFDWIZ.EXE
### Resolvedor do Usu�rio de Diagn�stico de Disco do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%windir
%\system32\DFDWiz.exe Status: Disabled Description: $(@%SystemRoot
%\System32\DFDTS.dll,-118) Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DiskFootprint\Diagnostics=C:\Windows\S
YSTEM32\DISKSNAPSHOT.EXE
### DiskSnapshot.exe Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*%windir%\system32\disksnapshot.exe Description: 0 Parameters: -z
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DUSM\dusmtask=C:\WINDOWS\System32\DUSM
TASK.EXE
### DUSM Task Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.693 !$*%SystemRoot%\System32\dusmtask.exe Description: 0 Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Feedback\Siuf\DmClient=C:\Windows\SYST
EM32\DMCLIENT.EXE
### Microsoft Feedback SIUF Deployment Manager Client Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1 !$*%windir%\system32\dmclient.exe
Description: $(@%systemRoot%\system32\dmclient.exe,-202) Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownlo
ad=C:\Windows\SYSTEM32\DMCLIENT.EXE
### Microsoft Feedback SIUF Deployment Manager Client Microsoft Corporation
Microsoft� Windows� Operating System 10.0.18362.1 !$*%windir%\system32\dmclient.exe
Description: $(@%systemRoot%\system32\dmclient.exe,-202) Parameters: utcwnf
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\HelloFace\FODCleanupTask=C:\Windows\SY
STEM32\WINBIOPLUGINS\FACEFODUNINSTALLER.EXE
### !$*%WinDir%\System32\WinBioPlugIns\FaceFodUninstaller.exe Description: 0
Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Location\Notifications=C:\Windows\SYST
EM32\LOCATIONNOTIFICATIONWINDOWS.EXE
### Notifica��o do Local Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 ->LOCATIONNOTIFICATION !$*%windir
%\System32\LocationNotificationWindows.exe Description: $(@%systemRoot
%\system32\LocationNotificationWindo Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Location\WindowsActionDialog=C:\Window
s\SYSTEM32\WINDOWSACTIONDIALOG.EXE
### Agente de Di�logo de A��o do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%windir
%\System32\WindowsActionDialog.exe Description: $(@%systemRoot
%\System32\WindowsActionDialog.exe,- Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Management\Provisioning\Cellular=C:\Wi
ndows\SYSTEM32\PROVTOOL.EXE
### Provisioning package runtime processing tool Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1082 !$*%windir%\system32\ProvTool.exe
Description: $(@%systemRoot%\system32\ProvTool.exe,-102) Parameters: /turn 7
/source CellStateChangeTask
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Management\Provisioning\Logon=C:\Windo
ws\SYSTEM32\PROVTOOL.EXE
### Provisioning package runtime processing tool Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.1082 !$*%windir%\system32\ProvTool.exe
Description: $(@%systemRoot%\system32\ProvTool.exe,-102) Parameters: /turn 5
/source LogonIdleTask
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Mobile Broadband
Accounts\MNO Metadata Parser=C:\WINDOWS\System32\MBAEPARSERTASK.EXE
### Tarefa de Analisador de Experi�ncia de Conta de Banda Larga M�vel Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 ->MBAE PARSER
TASK !$*%SystemRoot%\System32\MbaeParserTask.exe Description: $(@%SystemRoot
%\system32\MbaeParserTask.exe,-1903) Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\MUI\LPRemove=C:\Windows\SYSTEM32\LPREM
OVE.EXE
### Limpeza do pacote do Idioma MUI Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%windir%\system32\lpremove.exe Description:
$(@%systemRoot%\System32\lpremove.exe,-101) Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\NetTrace\GatherNetworkInfo=C:\Windows\
SYSTEM32\GATHERNETWORKINFO.VBS
### !$*%windir%\system32\gatherNetworkInfo.vbs Description: $(@%SystemRoot
%\system32\nettrace.dll,-6912) Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\NlaSvc\WiFiTask=C:\WINDOWS\System32\WI
FITASK.EXE
### Tarefa em Segundo Plano Sem Fio Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\WiFiTask.exe
Description: $(@%SystemRoot%\system32\wifitask.exe,-2) Parameters: nla
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Plug and
Play\Sysprep Generalize Drivers=C:\WINDOWS\System32\DRVINST.EXE
### M�dulo de Instala��o de Driver Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\drvinst.exe
Description: $(@%SystemRoot%\System32\sppnp.dll,-2001) Parameters: 6
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Printing\EduPrintProv=C:\Windows\SYSTE
M32\EDUPRINTPROV.EXE
### Printer Provision Utility for EDU Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 !$*%windir%\system32\eduprintprov.exe Description: 0
Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\PushToInstall\LoginCheck=C:\Windows\SY
STEM32\SC.EXE
### Ferramenta de Configura��o do Gerenciador de Controle de Servi�o Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%windir
%\system32\sc.exe Status: Disabled Description: 0 Parameters: start pushtoinstall
login
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\PushToInstall\Registration=C:\Windows\
SYSTEM32\SC.EXE
### Ferramenta de Configura��o do Gerenciador de Controle de Servi�o Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%windir
%\system32\sc.exe Description: 0 Parameters: start pushtoinstall registration
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask=
C:\Windows\SYSTEM32\RASERVER.EXE
### Servidor COM de Assist�ncia Remota do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%windir%\system32\RAServer.exe
Description: $(@%systemroot%\system32\msra.exe,-688) Parameters: /offerraupdate
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\SharedPC\Account
Cleanup=C:\WINDOWS\SYSTEM32\WINDOWS.SHAREDPC.ACCOUNTMANAGER.DLL
### SharedPC.AccountManager Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 ->SHAREDPC.ACCOUNTMANAGER =>SHAREDPC.ACCOUNTMANAGER.DLL !$*
%windir%\System32\rundll32.exe %windir
%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance Status: Disabled
Description: 0 Parameters: %windir
%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Shell\FamilySafetyMonitor=C:\Windows\S
YSTEM32\WPCMON.EXE
### Monitor de Prote��o para a Fam�lia Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%windir%\System32\wpcmon.exe Description: $
(@%SystemRoot%\System32\wpcmon.exe,-32015) Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\SpacePort\SpaceAgentTask=C:\Windows\SY
STEM32\SPACEAGENT.EXE
### Configura��es de Espa�os de Armazenamento Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%windir%\system32\SpaceAgent.exe
Description: $(@%SystemRoot%\system32\SpaceAgent.exe,-3) Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\SpacePort\SpaceManagerTask=C:\Windows\
SYSTEM32\SPACEMAN.EXE
### Storage Spaces Manager Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1074 !$*%windir%\system32\spaceman.exe Description: $(@
%SystemRoot%\system32\spaceman.exe,-3) Parameters: /Work
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Speech\HeadsetButtonPress=C:\Windows\S
YSTEM32\SPEECH_ONECORE\COMMON\SPEECHRUNTIME.EXE
### Speech Runtime Executable Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1016 ->SPEECH RUNTIME EXECUTABLE !$*%windir
%\system32\speech_onecore\common\SpeechRuntime.exe Description: 0 Parameters:
StartedFromTask
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Speech\SpeechModelDownloadTask=C:\Wind
ows\SYSTEM32\SPEECH_ONECORE\COMMON\SPEECHMODELDOWNLOAD.EXE
### Speech Model Download Executable Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.997 ->SPEECH MODEL DOWNLOAD EXECUTABLE !$*%windir
%\system32\speech_onecore\common\SpeechModelDownload.exe Description: 0
Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\StateRepository\MaintenanceTasks=C:\WI
NDOWS\SYSTEM32\WINDOWS.STATEREPOSITORYCLIENT.DLL
### Windows StateRepository Client API Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1082 ->WINDOWS STATEREPOSITORY CLIENT API !$*%windir
%\system32\rundll32.exe %windir
%\system32\Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks
Description: $(@%SystemRoot%\system32\Windows.StateRepositoryCl Parameters:
%windir
%\system32\Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Storage Tiers
Management\Storage Tiers Optimization=C:\Windows\SYSTEM32\DEFRAG.EXE
### Desfragmentador de disco do Windows Microsoft Corp. Otimizador de Unidade do
Windows 10.0.18362.1074 !$*%windir%\system32\defrag.exe Status: Disabled
Description: $(@%systemroot%\system32\TieringEngineService.exe, Parameters: -c -h
-g -# -m 8 -i 13500
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Subscription\EnableLicenseAcquisition=
C:\WINDOWS\System32\CLIPRENEW.EXE
### Acquire License From Store Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 ->ACQUIRE LICENSE FROM STORE !$*%SystemRoot
%\system32\ClipRenew.exe Description: $(@%SystemRoot%\system32\ClipRenew.exe,-101)
Parameters: -e
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Subscription\LicenseAcquisition=C:\WIN
DOWS\System32\CLIPRENEW.EXE
### Acquire License From Store Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 ->ACQUIRE LICENSE FROM STORE !$*%SystemRoot
%\system32\ClipRenew.exe Status: Disabled Description: $(@%SystemRoot
%\system32\ClipRenew.exe,-102) Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Sysmain\WsSwapAssessmentTask=C:\Window
s\SYSTEM32\SYSMAIN.DLL
### Host do Servi�o SysMain Microsoft Corporation Sistema Operacional Microsoft�
Windows� 10.0.18362.1074 !$*%windir%\system32\rundll32.exe
sysmain.dll,PfSvWsSwapAssessmentTask Description: $(@%systemRoot
%\System32\sysmain.dll,-3001) Parameters: sysmain.dll,PfSvWsSwapAssessmentTask
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\SystemRestore\SR=C:\Windows\SYSTEM32\S
RTASKS.EXE
### Tarefas de tela de fundo da Prote��o de Sistema do Microsoft� Windows.
Microsoft Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*
%windir%\system32\srtasks.exe Description: $(@%systemroot%\system32\srrstr.dll,-
322) Parameters: ExecuteScheduledSPPCreation
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Time
Synchronization\SynchronizeTime=C:\Windows\SYSTEM32\SC.EXE
### Ferramenta de Configura��o do Gerenciador de Controle de Servi�o Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*%windir
%\system32\sc.exe Description: $(@%systemroot%\system32\w32time.dll,-201)
Parameters: start w32time task_started
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Time
Zone\SynchronizeTimeZone=C:\Windows\SYSTEM32\TZSYNC.EXE
### TimeZone Sync Task Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*%windir%\system32\tzsync.exe Description: $(@%SystemRoot
%\system32\tzsyncres.dll,-102) Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UNP\RunUpdateNotificationMgr=C:\Window
s\SYSTEM32\UNP\UPDATENOTIFICATIONMGR.EXE
### Update Notification Pipeline Manager Microsoft Corporation Microsoft�
Windows� Operating System 10.0.18362.592 !$*%windir
%\System32\UNP\UpdateNotificationMgr.exe Description: 0 Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\Backup
Scan=C:\WINDOWS\System32\USOCLIENT.EXE
### UsoClient Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.628 !$*%systemroot%\system32\usoclient.exe Description: 0 Parameters:
StartScan
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\Maintenance
Install=C:\WINDOWS\System32\USOCLIENT.EXE
### UsoClient Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.628 !$*%systemroot%\system32\usoclient.exe Status: Disabled
Description: 0 Parameters: StartInstall
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\Reboot_AC=C:\WINDOW
S\System32\MUSNOTIFICATION.EXE
### MusNotificationBroker Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1082 ->MUSNOTIFICATIONBROKER !$*%systemroot
%\system32\MusNotification.exe Status: Disabled Description: 0 Parameters:
/RunOnAC RebootDialog
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery=C:\W
INDOWS\System32\MUSNOTIFICATION.EXE
### MusNotificationBroker Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1082 ->MUSNOTIFICATIONBROKER !$*%systemroot
%\system32\MusNotification.exe Status: Disabled Description: 0 Parameters:
/RunOnBattery RebootDialog
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\Schedule
Scan=C:\WINDOWS\System32\USOCLIENT.EXE
### UsoClient Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.628 !$*%systemroot%\system32\usoclient.exe Description: 0 Parameters:
StartScan
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\Schedule Scan
Static Task=C:\WINDOWS\System32\USOCLIENT.EXE
### UsoClient Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.628 !$*%systemroot%\system32\usoclient.exe Description: $(@%systemRoot
%\system32\usosvc.dll,-105) Parameters: StartScan
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\UpdateModelTask=C:\
WINDOWS\System32\USOCLIENT.EXE
### UsoClient Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.628 !$*%systemroot%\system32\usoclient.exe Description: $(@%systemRoot
%\system32\usocore.dll,-108) Parameters: StartModelUpdates
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker=C:\WIN
DOWS\System32\MUSNOTIFICATION.EXE
### MusNotificationBroker Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1082 ->MUSNOTIFICATIONBROKER !$*%systemroot
%\system32\MusNotification.exe Description: $(@%systemRoot%\system32\usosvc.dll,-
106) Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UPnP\UPnPHostConfig=C:\Windows\SYSTEM3
2\SC.EXE
### Ferramenta de Configura��o do Gerenciador de Controle de Servi�o Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !$*sc.exe
Description: $(@%systemroot%\system32\upnphost.dll,-216) Parameters: config
upnphost start= auto
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\WCM\WiFiTask=C:\WINDOWS\System32\WIFIT
ASK.EXE
### Tarefa em Segundo Plano Sem Fio Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\WiFiTask.exe
Description: $(@%SystemRoot%\system32\wifitask.exe,-2) Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Windows
Defender\Windows Defender Cache Maintenance=C:\PROGRAMDATA\MICROSOFT\WINDOWS
DEFENDER\PLATFORM\4.18.2009.7-0\MPCMDRUN.EXE
### Microsoft Malware Protection Command Line Utility Microsoft Corporation
Microsoft� Windows� Operating System 4.18.2009.7 !
$*C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe
Description: Tarefa de manuten��o peri�dica. Parameters: -IdleTask -TaskName
WdCacheMaintenance
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Windows
Defender\Windows Defender Cleanup=C:\PROGRAMDATA\MICROSOFT\WINDOWS
DEFENDER\PLATFORM\4.18.2009.7-0\MPCMDRUN.EXE
### Microsoft Malware Protection Command Line Utility Microsoft Corporation
Microsoft� Windows� Operating System 4.18.2009.7 !
$*C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe
Description: Tarefa de limpeza peri�dica. Parameters: -IdleTask -TaskName
WdCleanup
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Windows
Defender\Windows Defender Scheduled Scan=C:\PROGRAMDATA\MICROSOFT\WINDOWS
DEFENDER\PLATFORM\4.18.2009.7-0\MPCMDRUN.EXE
### Microsoft Malware Protection Command Line Utility Microsoft Corporation
Microsoft� Windows� Operating System 4.18.2009.7 !
$*C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe
Description: Tarefa de varredura peri�dica. Parameters: Scan -ScheduleJob
-ScanTrigger 55 -IdleScheduledJob
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Windows
Defender\Windows Defender Verification=C:\PROGRAMDATA\MICROSOFT\WINDOWS
DEFENDER\PLATFORM\4.18.2009.7-0\MPCMDRUN.EXE
### Microsoft Malware Protection Command Line Utility Microsoft Corporation
Microsoft� Windows� Operating System 4.18.2009.7 !
$*C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe
Description: Tarefa de verifica��o peri�dica. Parameters: -IdleTask -TaskName
WdVerification
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Windows Error
Reporting\QueueReporting=C:\Windows\SYSTEM32\WERMGR.EXE
### Windows Problem Reporting Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.997 !$*%windir%\system32\wermgr.exe Description: $(@%SystemRoot
%\system32\wer.dll,-294) Parameters: -upload
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Windows
Filtering Platform\BfeOnServiceStartTypeChange=C:\Windows\SYSTEM32\BFE.DLL
### Mecanismo de Filtragem B�sica Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%windir%\system32\rundll32.exe
bfe.dll,BfeOnServiceStartTypeChange Description: $(@%SystemRoot
%\system32\bfe.dll,-2002) Parameters: bfe.dll,BfeOnServiceStartTypeChange
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Windows Media
Sharing\UpdateLibrary=C:\Program Files\WINDOWS MEDIA PLAYER\WMPNSCFG.EXE
### Aplicativo de Configura��o do Servi�o de compartilhamento de rede do Windows
Media Player Microsoft Corporation Sistema Operacional Microsoft� Windows�
12.0.18362.1 !$*"%ProgramFiles%\Windows Media Player\wmpnscfg.exe" Description: $
(@%ProgramFiles%\Windows Media Player\wmpnscfg.ex Parameters: 0
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\WindowsUpdate\Scheduled
Start=C:\WINDOWS\SYSTEM32\SC.EXE
### Ferramenta de Configura��o do Gerenciador de Controle de Servi�o Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\Windows\system32\sc.exe Description: Esta tarefa � usada para iniciar o
servi�o Windows Parameters: start wuauserv
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\WindowsUpdate\sihpostreboot=C:\WINDOWS
\System32\SIHCLIENT.EXE
### Cliente SIH Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 ->SIH CLIENT !$*%systemroot%\system32\sihclient.exe Description: 0
Parameters: /PostReboot
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Workplace
Join\Automatic-Device-Join=C:\WINDOWS\System32\DSREGCMD.EXE
### Ferramenta de linha de comando DSREG Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\dsregcmd.exe Status: Disabled Description: $(@%SystemRoot
%\system32\dsregcmd.exe,-101) Parameters: $(Arg0) $(Arg1) $(Arg2)
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Workplace
Join\Recovery-Check=C:\WINDOWS\System32\DSREGCMD.EXE
### Ferramenta de linha de comando DSREG Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot
%\System32\dsregcmd.exe Status: Disabled Description: $(@%SystemRoot
%\system32\dsregcmd.exe,-102) Parameters: /checkrecovery
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\WwanSvc\NotificationTask=C:\WINDOWS\Sy
stem32\WIFITASK.EXE
### Tarefa em Segundo Plano Sem Fio Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*%SystemRoot%\System32\WiFiTask.exe
Description: $(@%SystemRoot%\system32\wifitask.exe,-2) Parameters: wwan
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\XblGameSave\XblGameSaveTask=C:\Windows\SYSTEM3
2\XBLGAMESAVETASK.EXE
### XblGameSave Standby Task Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.836 ->XBLGAMESAVE STANDBY TASK !$*%windir
%\System32\XblGameSaveTask.exe Description: XblGameSave Standby Task Parameters:
standby
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\MicrosoftEdgeUpdateTaskMachineCore=C:\PROGRAM FILES
(X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE
### Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.127.15
->MICROSOFT EDGE UPDATE =>MSEDGEUPDATE.DLL !$*C:\Program Files
(x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Description: Mant�m o software
do Microsoft atualizado. Se essa Parameters: /c
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\MicrosoftEdgeUpdateTaskMachineUA=C:\PROGRAM FILES
(X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE
### Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.127.15
->MICROSOFT EDGE UPDATE =>MSEDGEUPDATE.DLL !$*C:\Program Files
(x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Description: Mant�m o software
do Microsoft atualizado. Se essa Parameters: /ua /installsource scheduler
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Mozilla\Firefox Default Browser
Agent 308046B0AF4A39CB=C:\PROGRAM FILES\MOZILLA FIREFOX\DEFAULT-BROWSER-AGENT.EXE
### Firefox Default Browser Agent Mozilla Foundation Firefox 76.0.1 !$*C:\Program
Files\Mozilla Firefox\default-browser-agent.exe Description: 0 Parameters: do-
task
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINER.EXE
### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 28049213 !
$*C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe Description:
Enables BatteryBoost on supported systems before G Parameters: -d "C:\Program
Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f
C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
[Scheduled Tasks 2]
C:\WINDOWS\SYSNATIVE\TASKS\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINER.EXE
### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 28049213 !
$*C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe Description:
Checks for NVIDIA driver updates before GeForce Ex Parameters: -d "C:\Program
Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f
C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NVIDIA GeForce Experience
SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA
CORPORATION\NVIDIA GEFORCE EXPERIENCE\NVIDIA GEFORCE EXPERIENCE.EXE
### NVIDIA GeForce Experience NVIDIA Corporation NVIDIA GeForce Experience
rel_03_20/14a9b93 !$*"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce
Experience\NVIDIA GeForce Experience.exe" Description: 0 Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvNodeLauncher_{B2FE1952-0186-
46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES (X86)\NVIDIA
CORPORATION\NVNODE\NVNODEJSLAUNCHER.EXE
### NVIDIA nodejs launcher NVIDIA Corporation NVIDIA GeForce Experience 3.20.3.63
->NVIDIA NODEJS LAUNCHER !$*C:\Program Files (x86)\NVIDIA
Corporation\NvNode\nvnodejslauncher.exe Description: NVIDIA NvNode Launcher
Parameters: --launcher=TaskScheduler
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvProfileUpdaterDaily_{B2FE1952-
0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\UPDATE
CORE\NVPROFILEUPDATER64.EXE
### NVIDIA driver profile updater NVIDIA Corporation NVIDIA driver profile
updater 38.0.5.0 ->NVIDIA DRIVER PROFILE UPDATER =>NVPROFILEUPDATER.EXE !
$*C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
Description: NVIDIA Profile Updater Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvProfileUpdaterOnLogon_{B2FE1952-
0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\UPDATE
CORE\NVPROFILEUPDATER64.EXE
### NVIDIA driver profile updater NVIDIA Corporation NVIDIA driver profile
updater 38.0.5.0 ->NVIDIA DRIVER PROFILE UPDATER =>NVPROFILEUPDATER.EXE !
$*C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
Description: NVIDIA Profile Updater Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvTmRep_CrashReport1_{B2FE1952-
0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA
CORPORATION\NVBACKEND\NVTMREP.EXE
### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and
telemetry reporter 38.0.5.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program
Files\NVIDIA Corporation\NvBackend\NvTmRep.exe Description: NVIDIA crash reporter
Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvTmRep_CrashReport2_{B2FE1952-
0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA
CORPORATION\NVBACKEND\NVTMREP.EXE
### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and
telemetry reporter 38.0.5.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program
Files\NVIDIA Corporation\NvBackend\NvTmRep.exe Description: NVIDIA crash reporter
Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvTmRep_CrashReport3_{B2FE1952-
0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA
CORPORATION\NVBACKEND\NVTMREP.EXE
### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and
telemetry reporter 38.0.5.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program
Files\NVIDIA Corporation\NvBackend\NvTmRep.exe Description: NVIDIA crash reporter
Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvTmRep_CrashReport4_{B2FE1952-
0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA
CORPORATION\NVBACKEND\NVTMREP.EXE
### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and
telemetry reporter 38.0.5.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program
Files\NVIDIA Corporation\NvBackend\NvTmRep.exe Description: NVIDIA crash reporter
Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\OneDrive Standalone Update Task-S-
1-5-21-4159664292-2881118431-3989827443-1002=C:\Users\Luis
Fernando\AppData\Local\MICROSOFT\ONEDRIVE\ONEDRIVESTANDALONEUPDATER.EXE
### Standalone Updater Microsoft Corporation Microsoft OneDrive
20.143.0716.0003 !$*%localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Description: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\OneDrive Standalone Update Task-S-
1-5-21-4159664292-2881118431-3989827443-500=C:\Users\Luis
Fernando\AppData\Local\MICROSOFT\ONEDRIVE\ONEDRIVESTANDALONEUPDATER.EXE
### Standalone Updater Microsoft Corporation Microsoft OneDrive
20.143.0716.0003 !$*%localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Description: 0 Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\S-1-5-21-4159664292-2881118431-
3989827443-1002\DataSenseLiveTileTask=C:\WINDOWS\System32\DATAUSAGELIVETILETASK.EXE
### Data Sense Live Tile Task Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 ->DATASENSELIVETILETASK.EXE !$*%SystemRoot
%\System32\DataUsageLiveTileTask.exe Status: Disabled Description: 0 Parameters:
0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\UnHackMe Task Scheduler=C:\PROGRAM
FILES (X86)\UNHACKME\HACKMON.EXE
### UnHackMe Greatis Software UnHackMe 11.98 !$*C:\Program Files
(x86)\UnHackMe\hackmon.exe Description: Part of RegRun Suite/UnHackMe software.
http://www Parameters: $(Arg0)
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\WD Device Agent Task luis
fernando=C:\PROGRAM FILES (X86)\WESTERN DIGITAL\DISCOVERY\CURRENT\WD DEVICE
AGENT.EXE
### WD Device Agent Western Digital Technologies, Inc. WD Device Agent.exe
1.2.0.109 !$*C:\Program Files (x86)\Western Digital\Discovery\Current\WD Device
Agent.exe Description: Process Device Agent Parameters: 0
[Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\WD Discovery Service Task luis
fernando=C:\PROGRAM FILES (X86)\WESTERN
DIGITAL\DISCOVERY\CURRENT\SERVICE\WDDISCOVERYSERVICE.EXE
### WDDiscoveryService WDDiscoveryService 1.0.3.0 !$*C:\Program Files
(x86)\Western Digital\Discovery\Current\Service\WDDiscoveryService.exe
Description: Process that communicates with disks Parameters: 0
[Scheduled Tasks 2.0 Cached] :HKLM Dell SupportAssistAgent AutoUpdate=C:\PROGRAM
FILES\DELL\SUPPORTASSISTAGENT\BIN\SUPPORTASSISTINSTALLER.EXE
### SupportAssistInstaller Dell Inc. SupportAssistInstaller 3.7.0.148 !
$*C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistInstaller.exe Dell
SupportAssistAgent Auto Update Task Scheduler Parameters: AutoUpdate
[Scheduled Tasks 2.0 Cached] :HKLM FreeDownloadManagerHelperService=C:\PROGRAM
FILES\SOFTDELUXE\FREE DOWNLOAD MANAGER\HELPERSERVICE.EXE
### Free Download Manager Softdeluxe Free Download Manager 6.9.1.2947 !
$*"C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe"
[Scheduled Tasks 2.0 Cached] :HKLM GarminUpdaterTask=C:\PROGRAM FILES
(X86)\GARMIN\EXPRESS SELFUPDATER\EXPRESSSELFUPDATER.EXE
### Garmin.Omt.Express.SelfUpdater Garmin.Omt.Express.SelfUpdater 1.0.0.0 !
$*C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe Keeps
your Garmin Software up to date
[Scheduled Tasks 2.0 Cached] :HKLM MicrosoftEdgeUpdateTaskMachineCore=C:\PROGRAM
FILES (X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE
### Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.127.15
->MICROSOFT EDGE UPDATE =>MSEDGEUPDATE.DLL !$*C:\Program Files
(x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Mant�m o software do Microsoft
atualizado. Se essa tarefa for desabilitada ou interrompida, o software do
Microsoft n�o ser� mantido atualizado, o que significa que as vulnerabilidades de
seguran�a que podem surgir n�o poder�o ser corrigidas e os recursos podem n�o
funcionar. Essa tarefa � desinstalada automaticamente quando n�o h� software do
Microsoft usando-o. Parameters: /c
[Scheduled Tasks 2.0 Cached] :HKLM MicrosoftEdgeUpdateTaskMachineUA=C:\PROGRAM
FILES (X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE
### Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.127.15
->MICROSOFT EDGE UPDATE =>MSEDGEUPDATE.DLL !$*C:\Program Files
(x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Mant�m o software do Microsoft
atualizado. Se essa tarefa for desabilitada ou interrompida, o software do
Microsoft n�o ser� mantido atualizado, o que significa que as vulnerabilidades de
seguran�a que podem surgir n�o poder�o ser corrigidas e os recursos podem n�o
funcionar. Essa tarefa � desinstalada automaticamente quando n�o h� software do
Microsoft usando-o. Parameters: /ua /installsource scheduler
[Scheduled Tasks 2.0 Cached] :HKLM NvBatteryBoostCheckOnLogon_{B2FE1952-0186-
46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA
CORPORATION\NVCONTAINER\NVCONTAINER.EXE
### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 28049213 !
$*C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe Enables
BatteryBoost on supported systems before GeForce Experience is first launched
Parameters: -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck"
-l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
[Scheduled Tasks 2.0 Cached] :HKLM NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-
BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINER.EXE
### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 28049213 !
$*C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe Checks for NVIDIA
driver updates before GeForce Experience is first launched Parameters: -d
"C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f
C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
[Scheduled Tasks 2.0 Cached] :HKLM NVIDIA GeForce Experience
SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA
CORPORATION\NVIDIA GEFORCE EXPERIENCE\NVIDIA GEFORCE EXPERIENCE.EXE
### NVIDIA GeForce Experience NVIDIA Corporation NVIDIA GeForce Experience
rel_03_20/14a9b93 !$*"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce
Experience\NVIDIA GeForce Experience.exe"
[Scheduled Tasks 2.0 Cached] :HKLM NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}=C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\NVNODE\NVNODEJSLAUNCHER.EXE
### NVIDIA nodejs launcher NVIDIA Corporation NVIDIA GeForce Experience 3.20.3.63
->NVIDIA NODEJS LAUNCHER !$*C:\Program Files (x86)\NVIDIA
Corporation\NvNode\nvnodejslauncher.exe NVIDIA NvNode Launcher Parameters:
--launcher=TaskScheduler
[Scheduled Tasks 2.0 Cached] :HKLM NvProfileUpdaterDaily_{B2FE1952-0186-46C3-
BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\UPDATE
CORE\NVPROFILEUPDATER64.EXE
### NVIDIA driver profile updater NVIDIA Corporation NVIDIA driver profile
updater 38.0.5.0 ->NVIDIA DRIVER PROFILE UPDATER =>NVPROFILEUPDATER.EXE !
$*C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe NVIDIA
Profile Updater
[Scheduled Tasks 2.0 Cached] :HKLM NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-
BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\UPDATE
CORE\NVPROFILEUPDATER64.EXE
### NVIDIA driver profile updater NVIDIA Corporation NVIDIA driver profile
updater 38.0.5.0 ->NVIDIA DRIVER PROFILE UPDATER =>NVPROFILEUPDATER.EXE !
$*C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe NVIDIA
Profile Updater
[Scheduled Tasks 2.0 Cached] :HKLM NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVBACKEND\NVTMREP.EXE
### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and
telemetry reporter 38.0.5.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program
Files\NVIDIA Corporation\NvBackend\NvTmRep.exe NVIDIA crash reporter
[Scheduled Tasks 2.0 Cached] :HKLM NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVBACKEND\NVTMREP.EXE
### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and
telemetry reporter 38.0.5.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program
Files\NVIDIA Corporation\NvBackend\NvTmRep.exe NVIDIA crash reporter
[Scheduled Tasks 2.0 Cached] :HKLM NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVBACKEND\NVTMREP.EXE
### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and
telemetry reporter 38.0.5.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program
Files\NVIDIA Corporation\NvBackend\NvTmRep.exe NVIDIA crash reporter
[Scheduled Tasks 2.0 Cached] :HKLM NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVBACKEND\NVTMREP.EXE
### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and
telemetry reporter 38.0.5.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program
Files\NVIDIA Corporation\NvBackend\NvTmRep.exe NVIDIA crash reporter
[Scheduled Tasks 2.0 Cached] :HKLM OneDrive Standalone Update Task-S-1-5-21-
4159664292-2881118431-3989827443-1002=C:\Users\Luis
Fernando\AppData\Local\MICROSOFT\ONEDRIVE\ONEDRIVESTANDALONEUPDATER.EXE
### Standalone Updater Microsoft Corporation Microsoft OneDrive
20.143.0716.0003 !$*%localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe

[Scheduled Tasks 2.0 Cached] :HKLM OneDrive Standalone Update Task-S-1-5-21-


4159664292-2881118431-3989827443-500=C:\Users\Luis
Fernando\AppData\Local\MICROSOFT\ONEDRIVE\ONEDRIVESTANDALONEUPDATER.EXE
### Standalone Updater Microsoft Corporation Microsoft OneDrive
20.143.0716.0003 !$*%localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe

[Scheduled Tasks 2.0 Cached] :HKLM UnHackMe Task Scheduler=C:\PROGRAM FILES


(X86)\UNHACKME\HACKMON.EXE
### UnHackMe Greatis Software UnHackMe 11.98 !$*C:\Program Files
(x86)\UnHackMe\hackmon.exe Part of RegRun Suite/UnHackMe software.
http://www.greatis.com Parameters: $(Arg0)
[Scheduled Tasks 2.0 Cached] :HKLM WD Device Agent Task luis fernando=C:\PROGRAM
FILES (X86)\WESTERN DIGITAL\DISCOVERY\CURRENT\WD DEVICE AGENT.EXE
### WD Device Agent Western Digital Technologies, Inc. WD Device Agent.exe
1.2.0.109 !$*C:\Program Files (x86)\Western Digital\Discovery\Current\WD Device
Agent.exe Process Device Agent
[Scheduled Tasks 2.0 Cached] :HKLM WD Discovery Service Task luis
fernando=C:\PROGRAM FILES (X86)\WESTERN
DIGITAL\DISCOVERY\CURRENT\SERVICE\WDDISCOVERYSERVICE.EXE
### WDDiscoveryService WDDiscoveryService 1.0.3.0 !$*C:\Program Files
(x86)\Western Digital\Discovery\Current\Service\WDDiscoveryService.exe Process that
communicates with disks
[WMI Subscriptions] :HKLM
DellCommandPowerManagerAlertEventConsumer=ActiveScriptEventConsumer
### VBScript: CONST EVENT_USER_MESSAGE = &H12 FUNCTION ZEROPADDEDHEX(NUMBER,
PADDING) ZEROPADDEDHEX = "" IF PADDING > 0 THEN FOR I = PADDING-1 TO 0 STEP -1 IF
NUMBER < 16^I THEN ZEROPADDEDHEX = ZEROPADDEDHEX & "0"
[Unwanted Software Files] :HKLM
C:\ProgramData\FLEXGRIDSERVICE\=C:\ProgramData\FLEXGRIDSERVICE\
[Unwanted Software Files] :HKLM DiskFixer=C:\PROGRAM FILES (X86)\DISKFIXER\
[Detected using Heuristic Algorithm] :HKLM COMMON FILES=C:\PROGRAM FILES
(X86)\COMMON FILES\
### "ATHEROS\" "DESIGNER\" "INTEL\" "JAVA\" "MICROSOFT SHARED\" "ORACLE\"
"POSTUREAGENT\" "PROTEXIS\" "QUALCOMM\" "QUALCOMM ATHEROS\" "SERVICES\"
[Detected using Heuristic Algorithm] :HKLM JAVA=C:\PROGRAM FILES (X86)\COMMON
FILES\JAVA\
### "JAVA UPDATE\" "Java Update: JAUREG.EXE" "JUCHECK.EXE" "JUSCHED.EXE"
[Detected using Heuristic Algorithm] :HKLM ORACLE=C:\PROGRAM FILES (X86)\COMMON
FILES\ORACLE\
### "JAVA\" "Java\javapath: JAVA.EXE" "JAVAW.EXE" "JAVAWS.EXE"
"Java\javapath_target_81405828: JAVA.EXE" "JAVAW.EXE" "JAVAWS.EXE"
[Detected using Heuristic Algorithm] :HKLM DELL DIGITAL DELIVERY
SERVICES=C:\PROGRAM FILES (X86)\DELL DIGITAL DELIVERY SERVICES\
### "ADDAPPXPROVISIONEDPACKAGE.PS1" "ADDAPPXPROVISIONEDPACKAGE.PSD1"
"ALIENWAREDIGITALDELIVERY_X64.XML" "ALIENWAREDIGITALDELIVERY_X64_MSS.APPXBUNDLE"
"AR\" "AUTOMAPPER.DLL" "CLIENTCONTRACTS.DLL" "CS\" "DA\" "DE\" "DEFAULT.PNG"
[Detected using Heuristic Algorithm] :HKLM GOYAL SOFTECH=C:\PROGRAM FILES
(X86)\GOYAL SOFTECH\
### "WEBSITE 2 APK BUILDER PRO\" "Website 2 APK Builder Pro: UNINS000.DAT"
"UNINS000.EXE" "UNINS000.MSG" "WEBSITE 2 APK BUILDER PRO V4.1.EXE" "WEBSITE 2 APK
BUILDER PRO V4.1.EXE.CONFIG"
[Detected using Heuristic Algorithm] :HKLM UNHACKME=C:\PROGRAM FILES
(X86)\UNHACKME\
### "DATABASE.RDB" "DBS.DB" "DBS.INI" "DBS.ZIP" "DBSWWW.INI" "G7Z.EXE"
"HACKMON.EXE" "JSONFAST.DLL" "LANG\" "LICENSE.TXT" "MOZLZ4D.EXE"
[Detected using Heuristic Algorithm] :HKLM JAVA=C:\PROGRAM FILES\JAVA\
### "JRE1.8.0_261\" "jre1.8.0_261: COPYRIGHT" "LICENSE" "README.TXT" "RELEASE"
"THIRDPARTYLICENSEREADME-JAVAFX.TXT" "THIRDPARTYLICENSEREADME.TXT" "WELCOME.HTML"
"jre1.8.0_261\bin: API-MS-WIN-CORE-CONSOLE-L1-1-0.DLL" "API-MS-WIN-CORE-CONSOLE-L1-
2-0.DLL" "API-M
[Detected using Heuristic Algorithm] :HKLM MICROSOFT UPDATE HEALTH
TOOLS=C:\PROGRAM FILES\MICROSOFT UPDATE HEALTH TOOLS\
### "EXPEDITEUPDATER.EXE" "LOGS\" "QUALITYUPDATEASSISTANT.DLL" "SEDPLUGINS.DLL"
"UHSSVC.EXE" "UNIFIEDINSTALLER.DLL"
[Detected using Heuristic Algorithm] :HKLM WINDOWSAPPS=C:\PROGRAM
FILES\WINDOWSAPPS\
### "4DF9E0F8.NETFLIX_6.97.752.0_NEUTRAL_~_MCM4NJQHNHSS8\"
"4DF9E0F8.NETFLIX_6.97.752.0_X64__MCM4NJQHNHSS8\"
"5A894077.MCAFEESECURITY_2.1.39.0_NEUTRAL_SPLIT.LANGUAGE-PT_WAFK5ATNKZCWY\"
"5A894077.MCAFEESECURITY_2.1.39.0_NEUTRAL_SPLIT.SCALE-100_WAFK5ATNKZCWY\"
[Detected using Heuristic Algorithm] :HKLM NVIDIA=C:\PROGRAMDATA\NVIDIA\
### "DISPLAYSESSIONCONTAINER1.LOG" "DISPLAYSESSIONCONTAINER1.LOG_BACKUP1"
"DISPLAYSESSIONCONTAINER2.LOG" "MESSAGEBUSBROADCAST.LOG"
"MESSAGEBUSBROADCAST.LOG_BACKUP" "MESSAGEBUS_10108_0X57C9688.LOG"
"MESSAGEBUS_10108_0X57C9AC0.LOG" "MESSAGEBUS_10108_0X57C9C28.L
[Detected using Heuristic Algorithm] :HKLM ORACLE=C:\PROGRAMDATA\ORACLE\
### "JAVA\" "Java\.oracle_jre_usage: 17DFC292991C8042.TIMESTAMP"
"Java\installcache_x64: BASEIMAGEFAM8"
[Detected using Heuristic Algorithm] :HKLM REGID.1991-
06.COM.MICROSOFT=C:\PROGRAMDATA\REGID.1991-06.COM.MICROSOFT\
### "REGID.1991-06.COM.MICROSOFT_WINDOWS-10-HOME-SINGLE-LANGUAGE.SWIDTAG"
[Detected using Heuristic Algorithm] :HKLM .WDC=C:\USERS\LUIS FERNANDO\.WDC\
### "15156.PID.JSON" "DB\" "LOGS\" "LOGS_UPLOAD\" "SETTINGS.JSON" "SYSTEM-
DATA.JSON" "UPDATE-INFO.JSON" "db: APPS-CACHE.TINGO" "APPS.TINGO" "BANNERS.TINGO"
"DEVICES-CACHE.TINGO" "logs: 2020-10-08_23_PIPE.LOG" "2020-10-08_23_PLUGIN.LOG"
"2020-10-09_05_ALL.LOG
[Detected using Heuristic Algorithm] :HKLM BITTORRENTHELPER=C:\USERS\LUIS
FERNANDO\APPDATA\LOCAL\BITTORRENTHELPER\
### "CRASHDUMPS\" "LEDGER.BT.CO.BTDB" "LEDGER.BT.CO.BTDB.KEY"
"LEDGER.BT.CO.BTDB.PASSWD" "LEDGER.BT.CO.LOCK" "PORT" "WALLET.LOG"
[Detected using Heuristic Algorithm] :HKLM DIAGNOSTICS=C:\USERS\LUIS
FERNANDO\APPDATA\LOCAL\DIAGNOSTICS\
[Detected using Heuristic Algorithm] :HKLM GOYAL_SOFTECH_PVT._LTD=C:\USERS\LUIS
FERNANDO\APPDATA\LOCAL\GOYAL_SOFTECH_PVT._LTD\
### "WEBSITE_2_APK_BUILDER_PRO_STRONGNAME_5JJOA4ZKGVAPWTY3FYDVLFC4RXXR5Q4X\"
"Website_2_APK_Builder_Pro_StrongName_5jjoa4zkgvapwty3fydvlfc4rxxr5q4x\4.1.0.0:
USER.CONFIG"
[Detected using Heuristic Algorithm] :HKLM MICROSOFT HELP=C:\USERS\LUIS
FERNANDO\APPDATA\LOCAL\MICROSOFT HELP\
### "MS.EXCEL.12.1046_1046_MKWD_F.HXW" "MS.EXCEL.12.1046_1046_MKWD_K.HXW"
"MS.EXCEL.12.1046_1046_MTOC_EXCEL_COL.HXH" "MS.EXCEL.12.1046_1046_MVALIDATOR.HXD"
"MS.EXCEL.12.1046_1046_MVALIDATOR.LCK" "MS.POWERPNT.12.1046_1046_MKWD_F.HXW"
"MS.POWERPNT.12.1046_1046_
[Detected using Heuristic Algorithm] :HKLM NVIDIA=C:\USERS\LUIS
FERNANDO\APPDATA\LOCAL\NVIDIA\
### "ACCOUNTS" "GLCACHE\" "NVBACKEND\"
"GLCache\c80cf477412e83de97c6992076a2a2e8\d6f75f563e6119b9: 82BD674AC494837F.BIN"
"82BD674AC494837F.TOC" "NvBackend: BACKEND.LOG" "BACKEND.LOG.BAK" "CONFIG.XML"
"DRIVERRECOMMENDATIONS.DAT" "FEATUREWHITELIST.JSON" "FEATUR
[Detected using Heuristic Algorithm] :HKLM TEMP=C:\USERS\LUIS
FERNANDO\APPDATA\LOCAL\TEMP\
### ".SES" "006A05A4-A9E5-46BD-B80D-795A1C03166A.TMP.ICO" "0129DCDB-ADEB-4EF5-
BA0F-F355F2EF2556.TMP" "016ABBC2-A2EC-4EDD-AD5F-1E968F7794B5.TMP" "04B245ED-68F8-
4AC4-A4AF-68DF71C4109A.TMP" "04E95BFE-0FDE-4170-8694-C6AA71BD9DAD.TMP" "05A62A0A-
514C-4F78-94B2-E901
[Detected using Heuristic Algorithm] :HKLM SUN=C:\USERS\LUIS
FERNANDO\APPDATA\LOCALLOW\SUN\
### "JAVA\" "Java\Deployment: DEPLOYMENT.PROPERTIES" "Java\jre1.8.0_261:
JDS81387890.TMP"
[Detected using Heuristic Algorithm] :HKLM UTORRENT=C:\USERS\LUIS
FERNANDO\APPDATA\LOCALLOW\UTORRENT\
[Detected using Heuristic Algorithm] :HKLM .TECHNIC=C:\USERS\LUIS
FERNANDO\APPDATA\ROAMING\.TECHNIC\
### "ASSETS\" "CACHE\" "INSTALLEDPACKS" "LOGS\" "MODPACKS\" "SETTINGS.JSON"
"USERS.JSON" "assets\avatars: GUIMONTEIRO.PNG" "GUSTAVOLINDI07.PNG"
"assets\avatars\gravitar: CANVOX.PNG" "GEARKILL.PNG" "assets\indexes: 1.12.JSON"
"assets\launcher: OPENSANS+CYBERB
[Detected using Heuristic Algorithm] :HKLM CODE=C:\USERS\LUIS
FERNANDO\APPDATA\ROAMING\CODE\
### "BACKUPS\" "BLOB_STORAGE\" "CACHE\" "CACHEDDATA\" "CACHEDEXTENSIONS\" "CODE
CACHE\" "COOKIES" "COOKIES-JOURNAL" "DICTIONARIES\" "GPUCACHE\"
"LANGUAGEPACKS.JSON"
[Detected using Heuristic Algorithm] :HKLM FILEZILLA=C:\USERS\LUIS
FERNANDO\APPDATA\ROAMING\FILEZILLA\
### "FILEZILLA.XML" "LAYOUT.XML" "QUEUE.SQLITE3" "SEARCH.XML" "SITEMANAGER.XML"
"TRUSTEDCERTS.XML"
[Detected using Heuristic Algorithm] :HKLM GOYAL SOFTECH=C:\USERS\LUIS
FERNANDO\APPDATA\ROAMING\GOYAL SOFTECH\
### "WEBSITE 2 APK BUILDER PRO\" "Website 2 APK Builder Pro: 7ZA.EXE"
"APKSIGNER.JAR" "BUILD.WEBAPP" "SIGNAPK.JAR" "TESTKEY.PK8" "TESTKEY.X509.PEM"
"ZIPALIGN.EXE"
[Detected using Heuristic Algorithm] :HKLM SUN=C:\USERS\LUIS
FERNANDO\APPDATA\ROAMING\SUN\
### "JAVA\"
[Detected using Heuristic Algorithm] :HKLM UTORRENT=C:\USERS\LUIS
FERNANDO\APPDATA\ROAMING\UTORRENT\
### "APPS\" "CHROME_NATIVE.JSON" "DHT.DAT" "DHT.DAT.OLD" "DHT_FEED.DAT"
"DHT_FEED.DAT.OLD" "DLIMAGECACHE\" "HELPER\" "HELPER_WEB_UI.BTINSTALL"
"MAINDOC.ICO" "RESUME.DAT"
[Detected using Heuristic Algorithm] :HKLM VLC=C:\USERS\LUIS
FERNANDO\APPDATA\ROAMING\VLC\
### "ART\" "CRASHDUMP\" "ML.XSPF" "VLC-QT-INTERFACE.INI" "VLCRC"
"art\arturl\128ca4187092b23bf69cab2c98c0fe09: ART.JPG"
"art\arturl\3feb3e599768cf5973e17db212ee3dae: ART.JPG"
"art\arturl\552a32527aff89358eb75e9dadb6c9e6: ART.JPG" "art\arturl\773a22f4b17ed07
[Detected using Heuristic Algorithm] :HKLM WD DISCOVERY=C:\USERS\LUIS
FERNANDO\APPDATA\ROAMING\WD DISCOVERY\
### "BLOB_STORAGE\" "GPUCACHE\" "LOCAL STORAGE\" "LOCKFILE" "LOGS\" "NETWORK
PERSISTENT STATE" "PLUGINS\" "SERVICE\" "GPUCache: DATA_0" "DATA_1" "DATA_2"
"DATA_3" "Local Storage\leveldb: 000003.LOG" "CURRENT" "LOCK" "LOG"
"plugins\com.wdc.plugin.catalog\curre
[Detected using Heuristic Algorithm] :HKLM DESKTOP=C:\USERS\LUIS
FERNANDO\DESKTOP\
### "DESKTOP.INI" "HEIDISQL.LNK" "MICROSOFT OFFICE EXCEL 2007.LNK" "MICROSOFT
OFFICE WORD 2007.LNK" "MYSQL WORKBENCH.LNK" "POSTMAN.LNK" "RBXFPSUNLOCKER.EXE"
"SETTINGS" "TECHNIC_2.EXE" "VERSOES SISTEMA.LNK" "VISUAL STUDIO CODE.LNK"
[Detected using Heuristic Algorithm] :HKLM DOCUMENTS=C:\USERS\LUIS
FERNANDO\DOCUMENTS\
### "COMPARATIVO_NOT_AR.XLSX" "COREL\" "DEFAULT.RDP" "DESKTOP.INI" "HEIDISQL\"
"MEUS V�DEOS\" "MINHAS FONTES DE DADOS\" "MINHAS IMAGENS\" "MINHAS M�SICAS\"
"MINHAS PALETAS\" "MY PALETTES\"
[Detected using Heuristic Algorithm] :HKLM DOWNLOADS=C:\USERS\LUIS
FERNANDO\DOWNLOADS\
### "10070863512.PDF" "104164_REQ_CADRAST_EST.PDF" "18919.2020.40.31.05172
(1).PDF" "18919.2020.40.31.05172 (2).PDF" "18919.2020.40.31.05172 (3).PDF"
"18919.2020.40.31.05172.PDF" "5A2A3B83EDD591.6108380115127171879742.PNG"
"60035.2019.40.31.08467.PDF" "7 LINH
[Detected using Heuristic Algorithm] :HKLM INTELGRAPHICSPROFILES=C:\USERS\LUIS
FERNANDO\INTELGRAPHICSPROFILES\
### "BRIGHTEN VIDEO.MAN.IGPI" "DARKEN VIDEO.MAN.IGPI" "ENHANCE VIDEO
COLORS.MAN.IGPI"
[Detected using Heuristic Algorithm] :HKLM 1b5b2e8c-e739-4df9-9930-
0ada1382393d.tmp.exe=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\1B5B2E8C-E739-4DF9-9930-
0ADA1382393D.TMP.EXE
### !$*C:\Users\LUISFE~1\AppData\Local\Temp\1b5b2e8c-e739-4df9-9930-
0ada1382393d.tmp.exe
[Detected using Heuristic Algorithm] :HKLM 25ebf58e-56f4-4cc0-8edc-
b405e978ec20.tmp.exe=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\25EBF58E-56F4-4CC0-8EDC-
B405E978EC20.TMP.EXE
### !$*C:\Users\LUISFE~1\AppData\Local\Temp\25ebf58e-56f4-4cc0-8edc-
b405e978ec20.tmp.exe
[Detected using Heuristic Algorithm] :HKLM 293958f6-8fd8-40ad-8c2b-
b384dfc0391a.tmp.exe=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\293958F6-8FD8-40AD-8C2B-
B384DFC0391A.TMP.EXE
### !$*C:\Users\LUISFE~1\AppData\Local\Temp\293958f6-8fd8-40ad-8c2b-
b384dfc0391a.tmp.exe
[Detected using Heuristic Algorithm] :HKLM 370544c2-90cf-4a6b-b35d-
13d22d6d571b.tmp.exe=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\370544C2-90CF-4A6B-B35D-
13D22D6D571B.TMP.EXE
### !$*C:\Users\LUISFE~1\AppData\Local\Temp\370544c2-90cf-4a6b-b35d-
13d22d6d571b.tmp.exe
[Detected using Heuristic Algorithm] :HKLM 50e73fe0-32a4-436b-8dfc-
7758bedcdcbf.tmp.exe=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\50E73FE0-32A4-436B-8DFC-
7758BEDCDCBF.TMP.EXE
### !$*C:\Users\LUISFE~1\AppData\Local\Temp\50e73fe0-32a4-436b-8dfc-
7758bedcdcbf.tmp.exe
[Detected using Heuristic Algorithm] :HKLM 52955f6c-6712-475b-b243-
1cbfc6e0b373.tmp.exe=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\52955F6C-6712-475B-B243-
1CBFC6E0B373.TMP.EXE
### !$*C:\Users\LUISFE~1\AppData\Local\Temp\52955f6c-6712-475b-b243-
1cbfc6e0b373.tmp.exe
[Detected using Heuristic Algorithm] :HKLM 5514a148-4ac8-480d-b0ba-
8206c3be76b0.tmp.exe=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\5514A148-4AC8-480D-B0BA-
8206C3BE76B0.TMP.EXE
### !$*C:\Users\LUISFE~1\AppData\Local\Temp\5514a148-4ac8-480d-b0ba-
8206c3be76b0.tmp.exe
[Detected using Heuristic Algorithm] :HKLM 556da73d-71ee-4d67-8f1f-
85c9450261ee.tmp.exe=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\556DA73D-71EE-4D67-8F1F-
85C9450261EE.TMP.EXE
### !$*C:\Users\LUISFE~1\AppData\Local\Temp\556da73d-71ee-4d67-8f1f-
85c9450261ee.tmp.exe
[Detected using Heuristic Algorithm] :HKLM 5f1c0ce7-0544-49b1-9337-
69644f72ea18.tmp.exe=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\5F1C0CE7-0544-49B1-9337-
69644F72EA18.TMP.EXE
### !$*C:\Users\LUISFE~1\AppData\Local\Temp\5f1c0ce7-0544-49b1-9337-
69644f72ea18.tmp.exe
[Detected using Heuristic Algorithm] :HKLM 807cb1c9-85b8-4f52-89ca-
977b1414ce4f.tmp.exe=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\807CB1C9-85B8-4F52-89CA-
977B1414CE4F.TMP.EXE
### !$*C:\Users\LUISFE~1\AppData\Local\Temp\807cb1c9-85b8-4f52-89ca-
977b1414ce4f.tmp.exe
[Detected using Heuristic Algorithm] :HKLM bcc285e7-33db-4fdf-bc4e-
6e58138b4767.tmp.exe=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\BCC285E7-33DB-4FDF-BC4E-
6E58138B4767.TMP.EXE
### !$*C:\Users\LUISFE~1\AppData\Local\Temp\bcc285e7-33db-4fdf-bc4e-
6e58138b4767.tmp.exe
[Detected using Heuristic Algorithm] :HKLM d1237d4f-0379-46e1-b110-
a7306c1ea413.tmp.exe=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\D1237D4F-0379-46E1-B110-
A7306C1EA413.TMP.EXE
### !$*C:\Users\LUISFE~1\AppData\Local\Temp\d1237d4f-0379-46e1-b110-
a7306c1ea413.tmp.exe
[Detected using Heuristic Algorithm] :HKLM eb947e90-9d05-47d8-aa49-
f7514f03b914.tmp.exe=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\EB947E90-9D05-47D8-AA49-
F7514F03B914.TMP.EXE
### !$*C:\Users\LUISFE~1\AppData\Local\Temp\eb947e90-9d05-47d8-aa49-
f7514f03b914.tmp.exe
[Detected using Heuristic Algorithm] :HKLM RBX-
BA8AEF93.tmp=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\RBX-BA8AEF93.TMP
### Roblox Roblox Corporation Roblox Bootstrapper 1, 6, 0, 411923 =>ROBLOX.EXE !
$*C:\Users\LUISFE~1\AppData\Local\Temp\RBX-BA8AEF93.tmp
[Detected using Heuristic Algorithm] :HKLM RBX-
BC8DD8D9.tmp=C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\RBX-BC8DD8D9.TMP
### Roblox Roblox Corporation Roblox Bootstrapper 1, 6, 0, 412446 =>ROBLOX.EXE !
$*C:\Users\LUISFE~1\AppData\Local\Temp\RBX-BC8DD8D9.tmp
[In memory]
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\LSASS.EXE
### Local Security Authority Process Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1049 !$*C:\Windows\system32\lsass.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k DcomLaunch -p -s PlugPlay
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k DcomLaunch -p
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\FONTDRVHOST.EXE
### Usermode Font Driver Host Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1082 !$*"fontdrvhost.exe"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\WUDFHOST.EXE
### Windows Driver Foundation - Processo de Host da Estrutura de Driver de Modo
de Usu�rio Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-
4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-
b160fde2-2b61-44e2-8b17-1537e4f7dd26
-SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-8014915f-7d62-42fe-
8491-b9616b0dda07 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-
d7f760a4-c686-48d1-ad24-8f44ee2c6d6c
-NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-1d3b2c1d-
ba15-442e-b473-3e0168126d8f -LifetimeId:634a071b-0891-4de3-b4b5-50543ccd8a9a
-DeviceGroupId: -HostArg:0
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k RPCSS -p
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k DcomLaunch -p -s LSM
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\WINLOGON.EXE
### Aplicativo de Logon do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*winlogon.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\FONTDRVHOST.EXE
### Usermode Font Driver Host Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1082 !$*"fontdrvhost.exe"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\DWM.EXE
### Gerenciador de Janelas da �rea de Trabalho Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*"dwm.exe"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNetworkRestricted -s BTAGService
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p -s BthAvctpSvc
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p -s bthserv
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p -s NcbService
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p -s Schedule
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalSystemNetworkRestricted -p -s DisplayEnhancementService
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalSystemNetworkRestricted -p -s hidserv
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p -s ProfSvc
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalServiceNetworkRestricted -p -s EventLog
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p -s UserManager
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNoNetwork -p
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p -s nsi
[Running Processes] :HKLM C:\PROGRAM FILES\SOFTDELUXE\FREE DOWNLOAD
MANAGER\HELPERSERVICE.EXE
### Free Download Manager Softdeluxe Free Download Manager 6.9.1.2947 !
$*"C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe"
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NVDMI.INF_AMD64_1CB2F96FD365EFCE\DIS
PLAY.NVCONTAINER\NVDISPLAY.CONTAINER.EXE
### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_dev 28029499
->NVCONTAINER =>NVCONTAINER.EXE !
$*C:\Windows\System32\DriverStore\FileRepository\nvdmi.inf_amd64_1cb2f96fd365efce\D
isplay.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f
C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d
C:\Windows\System32\DriverStore\FileRepository\nvdmi.inf_amd64_1cb2f96fd365efce\Dis
play.NvContainer\plugins\LocalSystem -r -p 30000 -cfg
NVDisplay.ContainerLocalSystem\LocalSystem
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalSystemNetworkRestricted -p -s DeviceAssociationService
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNetworkRestricted -p -s Dhcp
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k appmodel -p -s StateRepository
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k netsvcs -p -s Themes
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalSystemNetworkRestricted -p -s SysMain
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p -s EventSystem
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k NetworkService -p -s NlaSvc
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k NetworkService -p -s Dnscache
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p -s DispBrokerDesktopSvc
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p -s SENS
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\CUI_DCH.INF_AMD64_CB5B3AC4D6A4F65A\I
GFXCUISERVICE.EXE
### igfxCUIService Module Intel Corporation Intel(R) Common User Interface
6.15.100.8141 !
$*C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cb5b3ac4d6a4f65a
\igfxCUIService.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalService -p -s netprofm
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p -s FontCache
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NVDMI.INF_AMD64_1CB2F96FD365EFCE\DIS
PLAY.NVCONTAINER\NVDISPLAY.CONTAINER.EXE
### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_dev 28029499
->NVCONTAINER =>NVCONTAINER.EXE !
$*"C:\Windows\System32\DriverStore\FileRepository\nvdmi.inf_amd64_1cb2f96fd365efce\
Display.NvContainer\NVDisplay.Container.exe" -f %ProgramData
%\NVIDIA\DisplaySessionContainer%d.log -d
C:\Windows\System32\DriverStore\FileRepository\nvdmi.inf_amd64_1cb2f96fd365efce\Dis
play.NvContainer\plugins\Session -r -l 3 -p 30000 -cfg
NVDisplay.ContainerLocalSystem\Session -c
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalServiceNetworkRestricted -p
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNetworkRestricted -p
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalServiceNetworkRestricted -p
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalSystemNetworkRestricted -p
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k netsvcs -p -s ShellHWDetection
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE
### Host da Janela do Console Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*\??\C:\Windows\system32\conhost.exe 0x4
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
### Aplicativo de subsistema de spooler Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\spoolsv.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNoNetworkFirewall -p
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p -s Winmgmt
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k NetworkService -p -s LanmanWorkstation
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\DRIVERS\ADMINSERVICE.EXE
### Windows Setup API Windows (R) Win 7 DDK provider Windows (R) Win 7 DDK driver
10.0.10011.16384 ->SETUPAPI.DLL !$*C:\Windows\System32\drivers\AdminService.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k utcsvc -p
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalServiceNoNetwork -p -s DPS
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k NetworkService -p -s CryptSvc
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\INTEL\DPTF\ESIF_UF.EXE
### Intel(R) Dynamic Platform and Thermal Framework Intel Corporation Intel(R)
Dynamic Platform and Thermal Framework 8.4.10501.6067 !
$*C:\Windows\System32\Intel\DPTF\esif_uf.exe
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\IIGD_DCH.INF_AMD64_783E12A6215F487B\
INTELCPHDCPSVC.EXE
### Intel HD Graphics Drivers for Windows(R) Intel Corporation Intel HD Graphics
Drivers for Windows(R) 25.20.100.8141 !
$*C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_783e12a6215f487
b\IntelCpHDCPSvc.exe
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\IGCC_DCH.INF_AMD64_5B19DFE7970A7139\
ONEAPP.IGCC.WINSERVICE.EXE
### OneApp.IGCC.WinService OneApp.IGCC.WinService 1.0.0.0 !
$*C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_5b19dfe7970a713
9\OneApp.IGCC.WinService.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p -s Netman
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p -s TrkWks
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\WAVESAPO75DE.INF_AMD64_5FF36F834A6D4
61A\WAVESSYSSVC64.EXE
### WavesSysSvc Service Application Waves Audio Ltd. Waves MaxxAudio 1.9.30.0
->WAVESSYSSVC.EXE !
$*C:\Windows\System32\DriverStore\FileRepository\wavesapo75de.inf_amd64_5ff36f834a6
d461a\WavesSysSvc64.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k imgsvc
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\COMMON FILES\PROTEXIS\LICENSE
SERVICE\PSISERVICE_2.EXE
### PsiService PsiService Protexis Inc. PsiService System Service 03.00.02.15
->PSISERVICE =>PSISERVICE.EXE !$*"c:\Program Files (x86)\Common
Files\Protexis\License Service\PsiService_2.exe"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p -s WpnService
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\IASTORAC.INF_AMD64_F881C4BE237CE854\
RSTMWSERVICE.EXE
### Intel(R) Rapid Storage Technology Management Service Intel Corporation
Intel(R) Rapid Storage Technology Management Service 17.5.9.1040
->RSTMGMTSERVICE.EXE !
$*C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_f881c4be237ce85
4\RstMwService.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RTKAUDUSERVICE64.EXE
### Realtek HD Audio Universal Service Realtek Semiconductor Realtek HD Audio
Universal Service 1.0.0.176 ->RTKAUDUSERVICE.EXE !
$*"C:\Windows\System32\RtkAudUService64.exe"
[Running Processes] :HKLM C:\PROGRAM FILES\RIVET
NETWORKS\SMARTBYTE\SMARTBYTENETWORKSERVICE.EXE
### SmartByte Network Service Rivet Networks SmartByte Network Service 2.5.713 !
$*"C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe"
[Running Processes] :HKLM C:\PROGRAM FILES\NVIDIA
CORPORATION\NVCONTAINER\NVCONTAINER.EXE
### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 28049213 !
$*"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s
NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3
-d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p
30000 -st "C:\Program Files\NVIDIA
Corporation\NvContainer\NvContainerTelemetryApi.dll"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p -s IKEEXT
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k NetSvcs -p -s iphlpsvc
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\SPLASHTOP\SPLASHTOP
REMOTE\SERVER\SRSERVICE.EXE
### Splashtop� Streamer Service Splashtop Inc. Splashtop� Streamer 3.4.0.0 !
$*"C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRService.exe"
[Running Processes] :HKLM C:\PROGRAM FILES\MCAFEE\WEBADVISOR\SERVICEHOST.EXE
### McAfee WebAdvisor McAfee, LLC McAfee WebAdvisor 4,1,1,0 ->SERVICEHOST
MODULE !$*"C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe"
[Running Processes] :HKLM C:\PROGRAM FILES\COMMON FILES\PROTEXIS\LICENSE
SERVICE\PSISERVICE_2.EXE
### PsiService PsiService arvato digital services llc PsiService System Service
3.2.0.62 ->PSISERVICE =>PSISERVICE.EXE !$*"c:\Program Files\Common
Files\Protexis\License Service\PsiService_2.exe"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p -s SstpSvc
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k NetworkService -p -s TapiSrv
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p -s LanmanServer
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalService -p -s WdiServiceHost
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\IIGD_DCH.INF_AMD64_783E12A6215F487B\
INTELCPHECISVC.EXE
### IntelCpHeciSvc Executable Intel Corporation IntelCpHeciSvc Executable
9.1.1.0320 !
$*C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_783e12a6215f487
b\IntelCpHeciSvc.exe
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERS\RIVETNETWORKS\KILLER\KILLERNETWORKSERVICE.EXE
### Killer Network Service Rivet Networks Killer Network Service 2.0.2369 !
$*C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERS\RIVETNETWORKS\KILLER\XTENDUTILITYSERVICE.EXE
### Windows Service Wrapper CloudBees, Inc. Windows Service Wrapper 1.18.0.0
->WINSW.EXE !
$*C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k netsvcs
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERS\RIVETNETWORKS\KILLER\XTENDUTILITY.EXE
### Killer xTend Utility Service Rivet Networks LLC Killer (R) xTend 2.0.2369 !
$*"xTendUtility.exe"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE
### Host da Janela do Console Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*\??\C:\Windows\system32\conhost.exe 0x4
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RUNDLL32.EXE
### Processo de host do Windows (Rundll32) Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 ->RUNDLL !$*rundll32.exe
"c:\program files\nvidia corporation\nvstreamsrv\rxdiag.dll"
RxDiagSetRuntimeMessagePump
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE
### WMI Provider Host Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\system32\wbem\wmiprvse.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE
### WMI Provider Host Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\system32\wbem\wmiprvse.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalSystemNetworkRestricted -p -s PcaSvc
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RTKAUDUSERVICE64.EXE
### Realtek HD Audio Universal Service Realtek Semiconductor Realtek HD Audio
Universal Service 1.0.0.176 ->RTKAUDUSERVICE.EXE !
$*"C:\Windows\System32\RtkAudUService64.exe" -admin
[Running Processes] :HKLM C:\PROGRAM FILES\MCAFEE\WEBADVISOR\UIHOST.EXE
### McAfee WebAdvisor McAfee, LLC McAfee WebAdvisor 4,1,1,0 ->UIHOST MODULE !
$*"C:\Program Files\McAfee\WebAdvisor\UIHost.exe"
[Running Processes] :HKLM C:\PROGRAM FILES\NVIDIA
CORPORATION\NVCONTAINER\NVCONTAINER.EXE
### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 28049213 !
$*"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f
"C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files\NVIDIA
Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA
Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SIHOST.EXE
### Shell Infrastructure Host Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 !$*sihost.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k BthAppGroup -p -s BluetoothUserService
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k UnistackSvcGroup -s CDPUserSvc
[Running Processes] :HKLM
C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WPF\PRESENTATIONFONTCACHE.EXE
### PresentationFontCache.exe Microsoft Corporation Microsoft� .NET Framework
3.0.6920.9135 !
$*C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k UnistackSvcGroup -s WpnUserService
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p -s TokenBroker
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\TASKHOSTW.EXE
### Processo de Host para Tarefas do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*taskhostw.exe {222A245B-E637-
4AE9-A93F-A59CA119A75E}
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p -s TabletInputService
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CTFMON.EXE
### Carregador CTF Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*"ctfmon.exe"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p -s CDPSvc
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\CUI_DCH.INF_AMD64_CB5B3AC4D6A4F65A\I
GFXEM.EXE
### igfxEM Module Intel Corporation Intel(R) Common User Interface
6.15.100.8141 !
$*"C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cb5b3ac4d6a4f65
a\igfxEM.exe"
[Running Processes] :HKLM C:\WINDOWS\EXPLORER.EXE
### Windows Explorer Microsoft Corporation Sistema operacional Microsoft�
Windows� 10.0.18362.1074 !$*C:\Windows\Explorer.EXE
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\NVNODE\NVIDIA
WEB HELPER.EXE
### NVIDIA Web Helper Service Node.js Node.js 11.13.0 ->NODE =>NODE.EXE !
$*"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE
### Host da Janela do Console Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*\??\C:\Windows\system32\conhost.exe 0x4
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k ClipboardSvcGroup -p -s cbdhsvc
[Running Processes] :HKLM
C:\WINDOWS\SYSTEMAPPS\MICROSOFT.WINDOWS.STARTMENUEXPERIENCEHOST_CW5N1H2TXYEWY\START
MENUEXPERIENCEHOST.EXE
### !
$*"C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\St
artMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
[Running Processes] :HKLM C:\PROGRAM FILES\TORTOISESVN\BIN\TSVNCACHE.EXE
### TortoiseSVN status cache http://tortoisesvn.net TortoiseSVN 1.10.5.28651 !
$*"C:\Program Files\TortoiseSVN\bin\TSVNCache.exe"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RUNTIMEBROKER.EXE
### Runtime Broker Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\RuntimeBroker.exe -Embedding
[Running Processes] :HKLM
C:\WINDOWS\SYSTEMAPPS\MICROSOFT.WINDOWS.CORTANA_CW5N1H2TXYEWY\SEARCHUI.EXE
### Search and Cortana application Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1049 !
$*"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe"
-ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SEARCHINDEXER.EXE
### Indexador do Microsoft Windows Search Microsoft Corporation Pesquisa do
Windows� 7.0.18362.1074 !$*C:\Windows\system32\SearchIndexer.exe /Embedding
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RUNTIMEBROKER.EXE
### Runtime Broker Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\RuntimeBroker.exe -Embedding
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalService -p -s LicenseManager
[Running Processes] :HKLM C:\PROGRAM
FILES\WINDOWSAPPS\MICROSOFT.YOURPHONE_1.20092.108.0_X64__8WEKYB3D8BBWE\YOURPHONE.EX
E
### YourPhone Microsoft Corporation Microsoft Your Phone 1.20092.108.0 !
$*"C:\Program
Files\WindowsApps\Microsoft.YourPhone_1.20092.108.0_x64__8wekyb3d8bbwe\YourPhone.ex
e" -ServerName:App.AppX9yct9q388jvt4h7y0gn06smzkxcsnt8m.mca
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RUNTIMEBROKER.EXE
### Runtime Broker Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\RuntimeBroker.exe -Embedding
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p -s lfsvc
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RUNTIMEBROKER.EXE
### Runtime Broker Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\RuntimeBroker.exe -Embedding
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SECURITYHEALTHSYSTRAY.EXE
### Windows Security notification icon Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.628 !$*"C:\Windows\System32\SecurityHealthSystray.exe"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RTKAUDUSERVICE64.EXE
### Realtek HD Audio Universal Service Realtek Semiconductor Realtek HD Audio
Universal Service 1.0.0.176 ->RTKAUDUSERVICE.EXE !
$*"C:\Windows\System32\RtkAudUService64.exe" -background
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\WAVESAPO75DE.INF_AMD64_5FF36F834A6D4
61A\WAVESSVC64.EXE
### Waves MaxxAudio Service Application Waves Audio Ltd. Waves MaxxAudio
1.17.23.0 ->WAVESSVC.EXE !
$*"C:\Windows\System32\DriverStore\FileRepository\wavesapo75de.inf_amd64_5ff36f834a
6d461a\WavesSvc64.exe" -Jack
[Running Processes] :HKLM C:\USERS\LUIS
FERNANDO\APPDATA\LOCAL\MICROSOFT\ONEDRIVE\ONEDRIVE.EXE
### Microsoft OneDrive Microsoft Corporation Microsoft OneDrive 20.143.0716.0003
->CLIENT APPLICATION !$*"C:\Users\Luis
Fernando\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\APPLICATIONFRAMEHOST.EXE
### Application Frame Host Microsoft Corporation Microsoft� Windows� Operating
System 10.0.18362.1 ->APPLICATION FRAME HOST !
$*C:\Windows\system32\ApplicationFrameHost.exe -Embedding
[Running Processes] :HKLM C:\PROGRAM
FILES\WINDOWSAPPS\MICROSOFT.WINDOWSSTORE_12009.1001.1.0_X64__8WEKYB3D8BBWE\WINSTORE
.APP.EXE
### Store Microsoft Corporation Windows Store 12009.1001.1.0 !$*"C:\Program
Files\WindowsApps\Microsoft.WindowsStore_12009.1001.1.0_x64__8wekyb3d8bbwe\WinStore
.App.exe" -ServerName:App.AppXc75wvwned5vhz4xyxxecvgdjhdkgsdza.mca
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RUNTIMEBROKER.EXE
### Runtime Broker Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\RuntimeBroker.exe -Embedding
[Running Processes] :HKLM C:\PROGRAM FILES\SOFTDELUXE\FREE DOWNLOAD
MANAGER\FDM.EXE
### Free Download Manager Softdeluxe Free Download Manager 6.9.1.2947 !
$*"C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe" --hidden
[Running Processes] :HKLM D:\MICROSOFT VS CODE\CODE.EXE
### Visual Studio Code Microsoft Corporatio Visual Studio Code 1.48.2
->ELECTRON.EXE !$*"D:\Microsoft VS Code\Code.exe"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k netsvcs -p
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\GARMIN\EXPRESS\EXPRESS.EXE
### Garmin Express Garmin Ltd. or its subsidiaries Garmin Express
7.1.0.0.d8327929 !$*"C:\Program Files (x86)\Garmin\Express\express.exe" /minimized
[Running Processes] :HKLM D:\MICROSOFT VS CODE\CODE.EXE
### Visual Studio Code Microsoft Corporatio Visual Studio Code 1.48.2
->ELECTRON.EXE !$*"D:\Microsoft VS Code\Code.exe" --type=gpu-process --field-trial-
handle=1700,1115494334156594970,1025842503483864193,131072 --disable-
features=LayoutNG,PictureInPicture,SpareRendererForSitePerProcess --disable-color-
correct-rendering --gpu-
preferences=KAAAAAAAAADgAAAwAAAAAAAAYAAAAAAAEAAAAAAAAAAAAAAAAAAAACgAAAAEAAAAIAAAAAA
AAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAA
AAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --service-request-channel-
token=7742298872309849176 --mojo-platform-channel-handle=1732 --ignored="
--type=renderer " /prefetch:2
[Running Processes] :HKLM D:\MICROSOFT VS CODE\CODE.EXE
### Visual Studio Code Microsoft Corporatio Visual Studio Code 1.48.2
->ELECTRON.EXE !$*"D:\Microsoft VS Code\Code.exe" --type=utility --field-trial-
handle=1700,1115494334156594970,1025842503483864193,131072 --disable-
features=LayoutNG,PictureInPicture,SpareRendererForSitePerProcess --lang=pt-BR
--service-sandbox-type=network --standard-schemes=vscode-webview,vscode-webview-
resource --secure-schemes=vscode-webview,vscode-webview-resource --bypasscsp-
schemes --cors-schemes=vscode-webview,vscode-webview-resource --fetch-
schemes=vscode-webview,vscode-webview-resource --service-worker-schemes --service-
request-channel-token=2622129838587037393 --mojo-platform-channel-handle=2116
/prefetch:8
[Running Processes] :HKLM D:\MICROSOFT VS CODE\CODE.EXE
### Visual Studio Code Microsoft Corporatio Visual Studio Code 1.48.2
->ELECTRON.EXE !$*"D:\Microsoft VS Code\Code.exe" --type=renderer --disable-color-
correct-rendering --field-trial-
handle=1700,1115494334156594970,1025842503483864193,131072 --disable-
features=LayoutNG,PictureInPicture,SpareRendererForSitePerProcess --lang=pt-BR
--standard-schemes=vscode-webview,vscode-webview-resource --secure-schemes=vscode-
webview,vscode-webview-resource --bypasscsp-schemes --cors-schemes=vscode-
webview,vscode-webview-resource --fetch-schemes=vscode-webview,vscode-webview-
resource --service-worker-schemes --app-user-model-id=Microsoft.VisualStudioCode
--app-path="D:\Microsoft VS Code\resources\app" --node-integration --webview-tag
--no-sandbox --no-zygote --native-window-open --preload="d:\Microsoft VS
Code\resources\app\out\vs\base\parts\sandbox\electron-browser\preload.js"
--disable-remote-module --background-color=#1e1e1e --device-scale-factor=1.25
--num-raster-threads=4 --enable-main-frame-before-activation --service-request-
channel-token=13635665290628103985 --renderer-client-id=5 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=2440 /prefetch:1
[Running Processes] :HKLM D:\MICROSOFT VS CODE\CODE.EXE
### Visual Studio Code Microsoft Corporatio Visual Studio Code 1.48.2
->ELECTRON.EXE !$*"D:\Microsoft VS Code\Code.exe" --type=renderer --disable-color-
correct-rendering --field-trial-
handle=1700,1115494334156594970,1025842503483864193,131072 --disable-
features=LayoutNG,PictureInPicture,SpareRendererForSitePerProcess --lang=pt-BR
--standard-schemes=vscode-webview,vscode-webview-resource --secure-schemes=vscode-
webview,vscode-webview-resource --bypasscsp-schemes --cors-schemes=vscode-
webview,vscode-webview-resource --fetch-schemes=vscode-webview,vscode-webview-
resource --service-worker-schemes --app-user-model-id=Microsoft.VisualStudioCode
--app-path="D:\Microsoft VS Code\resources\app" --node-integration --webview-tag
--no-sandbox --no-zygote --native-window-open --preload="d:\Microsoft VS
Code\resources\app\out\vs\base\parts\sandbox\electron-browser\preload.js"
--disable-remote-module --background-color=#1e1e1e --device-scale-factor=1.25
--num-raster-threads=4 --enable-main-frame-before-activation --service-request-
channel-token=12284961302677143027 --renderer-client-id=7 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=2544 /prefetch:1
[Running Processes] :HKLM D:\MICROSOFT VS CODE\CODE.EXE
### Visual Studio Code Microsoft Corporatio Visual Studio Code 1.48.2
->ELECTRON.EXE !$*"D:\Microsoft VS Code\Code.exe" --type=renderer --disable-color-
correct-rendering --field-trial-
handle=1700,1115494334156594970,1025842503483864193,131072 --disable-
features=LayoutNG,PictureInPicture,SpareRendererForSitePerProcess --lang=pt-BR
--standard-schemes=vscode-webview,vscode-webview-resource --secure-schemes=vscode-
webview,vscode-webview-resource --bypasscsp-schemes --cors-schemes=vscode-
webview,vscode-webview-resource --fetch-schemes=vscode-webview,vscode-webview-
resource --service-worker-schemes --app-user-model-id=Microsoft.VisualStudioCode
--app-path="D:\Microsoft VS Code\resources\app" --node-integration --webview-tag
--no-sandbox --no-zygote --native-window-open --preload="d:\Microsoft VS
Code\resources\app\out\vs\base\parts\sandbox\electron-browser\preload.js"
--disable-remote-module --background-color=#1e1e1e --device-scale-factor=1.25
--num-raster-threads=4 --enable-main-frame-before-activation --service-request-
channel-token=14449521606621396956 --renderer-client-id=9 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=2612 /prefetch:1
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\DLLHOST.EXE
### COM Surrogate Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-
B70B-5A0F49CCDF3F}
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p -s Appinfo
[Running Processes] :HKLM D:\MICROSOFT VS CODE\CODE.EXE
### Visual Studio Code Microsoft Corporatio Visual Studio Code 1.48.2
->ELECTRON.EXE !$*"D:\Microsoft VS Code\Code.exe" --type=renderer --disable-color-
correct-rendering --field-trial-
handle=1700,1115494334156594970,1025842503483864193,131072 --disable-
features=LayoutNG,PictureInPicture,SpareRendererForSitePerProcess --lang=pt-BR
--standard-schemes=vscode-webview,vscode-webview-resource --secure-schemes=vscode-
webview,vscode-webview-resource --bypasscsp-schemes --cors-schemes=vscode-
webview,vscode-webview-resource --fetch-schemes=vscode-webview,vscode-webview-
resource --service-worker-schemes --app-user-model-id=Microsoft.VisualStudioCode
--app-path="D:\Microsoft VS Code\resources\app" --node-integration --no-sandbox
--no-zygote --native-window-open --preload="d:\Microsoft VS
Code\resources\app\out\vs\base\parts\sandbox\electron-browser\preload.js"
--disable-remote-module --background-color=#1e1e1e --disable-blink-
features=Auxclick --device-scale-factor=1.25 --num-raster-threads=4 --enable-main-
frame-before-activation --service-request-channel-token=7175445717481429317
--renderer-client-id=11 --no-v8-untrusted-code-mitigations --mojo-platform-channel-
handle=2608 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM
FILES\WINDOWSAPPS\RIVETNETWORKS.KILLERCONTROLCENTER_2.0.2369.0_X64__RH07TY8M5NKAG\K
ILLERCONTROLCENTER_V1\KILLERCONTROLCENTER.EXE
### Killer Control Center Rivet Networks Killer Control Center 1.7.2369 !
$*"C:\Program
Files\WindowsApps\RivetNetworks.KillerControlCenter_2.0.2369.0_x64__rh07ty8m5nkag\K
illerControlCenter_v1\KillerControlCenter.exe" -minimized
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k WbioSvcGroup -s WbioSrvc
[Running Processes] :HKLM D:\MICROSOFT VS CODE\CODE.EXE
### Visual Studio Code Microsoft Corporatio Visual Studio Code 1.48.2
->ELECTRON.EXE !$*"D:\Microsoft VS Code\Code.exe" --inspect-port=0 "d:\Microsoft VS
Code\resources\app\out\bootstrap-fork" --type=extensionHost
[Running Processes] :HKLM D:\MICROSOFT VS CODE\CODE.EXE
### Visual Studio Code Microsoft Corporatio Visual Studio Code 1.48.2
->ELECTRON.EXE !$*"D:\Microsoft VS Code\Code.exe" --no-rate-limit --no-upload-gzip
--type=crash-handler "--crashes-
directory=C:\Users\LUISFE~1\AppData\Local\Temp\VSCode Crashes" "--
database=C:\Users\LUISFE~1\AppData\Local\Temp\VSCode Crashes" "--metrics-
dir=C:\Users\LUISFE~1\AppData\Local\Temp\VSCode Crashes" --url=appcenter://code?
aid=a4e3233c-699c-46ec-b4f4-9c2a77254662&uid=a201e668-1274-4cb3-ae57-
fab71c7aaecb&iid=a201e668-1274-4cb3-ae57-fab71c7aaecb&sid=d8452f49-8c3e-401e-b303-
d912b32329291602199494033 --initial-client-
data=0xc98,0xc94,0xc8c,0xc70,0xc80,0x7ff6cced5750,0x7ff6cced5760,0x7ff6cced5770
[Running Processes] :HKLM D:\MICROSOFT VS CODE\CODE.EXE
### Visual Studio Code Microsoft Corporatio Visual Studio Code 1.48.2
->ELECTRON.EXE !$*"D:\Microsoft VS Code\Code.exe" --inspect-port=0 "d:\Microsoft VS
Code\resources\app\out\bootstrap-fork" --type=extensionHost
[Running Processes] :HKLM D:\MICROSOFT VS CODE\CODE.EXE
### Visual Studio Code Microsoft Corporatio Visual Studio Code 1.48.2
->ELECTRON.EXE !$*"D:\Microsoft VS Code\Code.exe" --inspect-port=0 "d:\Microsoft VS
Code\resources\app\out\bootstrap-fork" --type=extensionHost
[Running Processes] :HKLM C:\PROGRAM
FILES\WINDOWSAPPS\APPLEINC.ITUNES_12109.3.52015.0_X64__NZYJ5CX40TTQA\AMDS64\APPLEMO
BILEDEVICEPROCESS.EXE
### MobileDeviceProcess Apple Inc. !$*"C:\Program
Files\WindowsApps\AppleInc.iTunes_12109.3.52015.0_x64__nzyj5cx40ttqa\AMDS64\AppleMo
bileDeviceProcess.exe"
[Running Processes] :HKLM D:\MICROSOFT VS
CODE\RESOURCES\APP\OUT\VS\PLATFORM\FILES\NODE\WATCHER\WIN32\CODEHELPER.EXE
### CodeHelper Microsoft Corporation CodeHelper 1.0.0.0 !$*"d:\Microsoft VS
Code\resources\app\out\vs\platform\files\node\watcher\win32\CodeHelper.exe"
c:\wamp64\www\migracao
[Running Processes] :HKLM D:\MICROSOFT VS
CODE\RESOURCES\APP\OUT\VS\PLATFORM\FILES\NODE\WATCHER\WIN32\CODEHELPER.EXE
### CodeHelper Microsoft Corporation CodeHelper 1.0.0.0 !$*"d:\Microsoft VS
Code\resources\app\out\vs\platform\files\node\watcher\win32\CodeHelper.exe"
c:\Fernando\SistemasWeb\crecinet
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE
### Host da Janela do Console Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*\??\C:\Windows\system32\conhost.exe 0x4
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE
### Host da Janela do Console Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*\??\C:\Windows\system32\conhost.exe 0x4
[Running Processes] :HKLM D:\MICROSOFT VS
CODE\RESOURCES\APP\OUT\VS\PLATFORM\FILES\NODE\WATCHER\WIN32\CODEHELPER.EXE
### CodeHelper Microsoft Corporation CodeHelper 1.0.0.0 !$*"d:\Microsoft VS
Code\resources\app\out\vs\platform\files\node\watcher\win32\CodeHelper.exe"
c:\wamp64\www\administrador
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE
### Host da Janela do Console Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*\??\C:\Windows\system32\conhost.exe 0x4
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\WESTERN
DIGITAL\DISCOVERY\CURRENT\WD DISCOVERY.EXE
### WD Discovery Western Digital Corporation WD Discovery 4.1.270 !$*"C:\Program
Files (x86)\Western Digital\Discovery\Current\WD Discovery.exe" --autolaunch
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\WESTERN
DIGITAL\DISCOVERY\CURRENT\WD DISCOVERY.EXE
### WD Discovery Western Digital Corporation WD Discovery 4.1.270 !$*"C:\Program
Files (x86)\Western Digital\Discovery\Current\WD Discovery.exe" --type=gpu-process
--enable-features=SharedArrayBuffer --no-sandbox --gpu-
preferences=KAAAAAAAAACAAwBAAQAAAAAAAAAAAGAAAAAAAAAAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAA
AAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAKAAAAEAAAAAAAAAAAAAAACwAAABAAAA
AAAAAAAQAAAAoAAAAQAAAAAAAAAAEAAAALAAAA --use-gl=swiftshader-webgl --service-
request-channel-token=16357010363738707632 --mojo-platform-channel-handle=1692
/prefetch:2
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\WESTERN
DIGITAL\DISCOVERY\CURRENT\WD DISCOVERY.EXE
### WD Discovery Western Digital Corporation WD Discovery 4.1.270 !$*"C:\Program
Files (x86)\Western Digital\Discovery\Current\WD Discovery.exe" --reporter-
url=https://logdump.mycloud.com/post?validate=false&portalType=WD
%20Discovery&portalVersion=4.1.270&platform=windows&platformVersion=10.0.18362&port
alId=dbe309fb-284f-44e7-8295-e62f122e455b "--application-name=WD Discovery" "--
crashes-directory=C:\Users\LUISFE~1\AppData\Local\Temp\WD Discovery Crashes" --v=1
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\WESTERN
DIGITAL\DISCOVERY\CURRENT\WDDISCOVERYMONITOR.EXE
### WD Discovery Monitor Western Digital Corporation WD Discovery Monitor 1.0.0.0
!$*"C:\Program Files (x86)\Western
Digital\Discovery\Current\WDDiscoveryMonitor.exe" 15156 "C:\Users\Luis
Fernando\.wdc\15156.pid.json" "C:\Program Files (x86)\Western
Digital\Discovery\Current" "C:\Program Files (x86)\Western
Digital\Discovery\Current\WD Discovery.exe" "WD Device Agent Task luis fernando"
"--autolaunch"
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\WESTERN
DIGITAL\DISCOVERY\CURRENT\WD DISCOVERY.EXE
### WD Discovery Western Digital Corporation WD Discovery 4.1.270 !$*"C:\Program
Files (x86)\Western Digital\Discovery\Current\WD Discovery.exe" --type=renderer
--no-sandbox --enable-features=SharedArrayBuffer --service-pipe-
token=65456452958791305 --lang=pt-BR --app-path="C:\Program Files (x86)\Western
Digital\Discovery\Current\resources\app.asar" --node-integration=true --webview-
tag=true --no-sandbox --background-color=#fff --device-scale-factor=1.25 --num-
raster-threads=4 --enable-main-frame-before-activation --service-request-channel-
token=65456452958791305 --renderer-client-id=4 --mojo-platform-channel-
handle=2328 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\COMMON FILES\JAVA\JAVA
UPDATE\JUSCHED.EXE
### Java Update Scheduler Oracle Corporation Java Platform SE Auto Updater
2.8.261.12 ->JAVA UPDATE SCHEDULER !$*"C:\Program Files (x86)\Common
Files\Java\Java Update\jusched.exe"
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\WESTERN
DIGITAL\DISCOVERY\CURRENT\WD DEVICE AGENT.EXE
### WD Device Agent Western Digital Technologies, Inc. WD Device Agent.exe
1.2.0.109 !$*"C:\Program Files (x86)\Western Digital\Discovery\Current\WD Device
Agent.exe"
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\WESTERN
DIGITAL\DISCOVERY\CURRENT\SERVICE\WDDISCOVERYSERVICE.EXE
### WDDiscoveryService WDDiscoveryService 1.0.3.0 !$*"C:\Program Files
(x86)\Western Digital\Discovery\Current\Service\WDDiscoveryService.exe"
[Running Processes] :HKLM C:\WINDOWS\SYSWOW64\CMD.EXE
### Processador de comandos do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\cmd.exe /d /s /c "start
"" /w "C:\Program Files\WD Desktop App\kdd.exe""
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE
### Host da Janela do Console Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*\??\C:\Windows\system32\conhost.exe 0x4
[Running Processes] :HKLM C:\PROGRAM FILES\WD DESKTOP APP\KDD.EXE
### WD Desktop App Western Digital Corporation WD Desktop App 2.1.0.313 !
$*"C:\Program Files\WD Desktop App\kdd.exe"
[Running Processes] :HKLM C:\PROGRAM FILES\WD DESKTOP APP\KDD
### !$*"C:\Program Files\WD Desktop App\kdd" -dataDir "C:\Users\Luis
Fernando\AppData\Roaming\WDDesktop\Data" -env prod -logging wdlog -locale pt-BR
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE
### Host da Janela do Console Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*\??\C:\Windows\system32\conhost.exe 0x4
[Running Processes] :HKLM C:\PROGRAM FILES\WD DESKTOP APP\WDSYNC.EXE
### !$*"C:\Program Files\WD Desktop App\wdsync.exe" -dataDir "C:\Users\Luis
Fernando\AppData\Roaming\WDDesktop\Data\Sync" -env prod -logging wdlog
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE
### Host da Janela do Console Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*\??\C:\Windows\system32\conhost.exe 0x4
[Running Processes] :HKLM C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\VSCODE-UPDATE-
USER-X64\CODESETUP-STABLE-93C2F0FBF16C5A4B10E4D5F89737D9C2C25488A3.EXE
### Visual Studio Code Setup Microsoft
Corporation Visual Studio Code
1.50.0 => !
$*C:\Users\LUISFE~1\AppData\Local\Temp\vscode-update-user-x64\CodeSetup-stable-
93c2f0fbf16c5a4b10e4d5f89737d9c2c25488a3.exe /verysilent
/update="C:\Users\LUISFE~1\AppData\Local\Temp\vscode-update-user-x64\CodeSetup-
stable-93c2f0fbf16c5a4b10e4d5f89737d9c2c25488a3.flag" /nocloseapplications
/mergetasks=runcode,!desktopicon,!quicklaunchicon
[Running Processes] :HKLM C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\IS-
GB990.TMP\CODESETUP-STABLE-93C2F0FBF16C5A4B10E4D5F89737D9C2C25488A3.TMP
### Setup/Uninstall Microsoft Corporation
Visual Studio Code 1.50.0
=> !$*"C:\Users\LUISFE~1\AppData\Local\Temp\is-GB990.tmp\CodeSetup-stable-
93c2f0fbf16c5a4b10e4d5f89737d9c2c25488a3.tmp"
/SL5="$205F0,63026591,828416,C:\Users\LUISFE~1\AppData\Local\Temp\vscode-update-
user-x64\CodeSetup-stable-93c2f0fbf16c5a4b10e4d5f89737d9c2c25488a3.exe" /verysilent
/update="C:\Users\LUISFE~1\AppData\Local\Temp\vscode-update-user-x64\CodeSetup-
stable-93c2f0fbf16c5a4b10e4d5f89737d9c2c25488a3.flag" /nocloseapplications
/mergetasks=runcode,!desktopicon,!quicklaunchicon
[Running Processes] :HKLM
C:\WINDOWS\SYSTEMAPPS\SHELLEXPERIENCEHOST_CW5N1H2TXYEWY\SHELLEXPERIENCEHOST.EXE
### Windows Shell Experience Host Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.997 !
$*"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe"
-ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RUNTIMEBROKER.EXE
### Runtime Broker Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\RuntimeBroker.exe -Embedding
[Running Processes] :HKLM C:\PROGRAM FILES\INTEL\INTEL(R) RAPID STORAGE
TECHNOLOGY\IASTORICON.EXE
### IAStorIcon Intel Corporation IAStorIcon 17.2.4.1011 !$*"C:\Program
Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\SGX_PSW.INF_AMD64_4A7A369B84FFF822\A
ESM_SERVICE.EXE
### Intel� SGX Application Enclave Services Manager Intel Corporation Intel�
Software Guard Extensions 2.7.101.2 ->AESM !
$*C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_4a7a369b84fff822
\aesm_service.exe
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\DAL.INF_AMD64_31A8DBBF39DCDC3B\JHI_S
ERVICE.EXE
### Intel(R) Dynamic Application Loader Host Interface Intel Corporation Intel(R)
Dynamic Application Loader Host Interface 1.32.20190403 !
$*C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_31a8dbbf39dcdc3b\jhi
_service.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k netsvcs -p -s BITS
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceAndNoImpersonation -p -s SSDPSRV
[Running Processes] :HKLM C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DDVRULESPROCESSOR.EXE
### Dell Data Vault Rules Processor Dell Technologies Inc. Dell Data Vault
5.5.5.959 ->DELLRULESPROCESSOR.EXE !$*"C:\Program
Files\Dell\DellDataVault\DDVRulesProcessor.exe"
[Running Processes] :HKLM
C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\ICLSCLIENT.INF_AMD64_75FFCA5EEC865B4
B\LIB\SOCKETHECISERVER.EXE
### Intel(R) Capability Licensing Service TCP IP Interface Intel(R) Corporation
Intel(R) Capability Licensing Service TCP IP Interface 1.61.251.0 !
$*C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865
b4b\lib\SocketHeciServer.exe
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\DELL DIGITAL DELIVERY
SERVICES\DELL.D3.WINSVC.EXE
### Dell.D3.WinSvc Dell.D3.WinSvc 4.0.52.0 !$*"C:\Program Files (x86)\Dell
Digital Delivery Services\Dell.D3.WinSvc.exe"
[Running Processes] :HKLM C:\PROGRAM
FILES\DELL\SUPPORTASSISTAGENT\PCDR\SUPPORTASSIST\6.0.7193.611\DSAPI.EXE
### PC-Doctor Dell SupportAssist API PC-Doctor, Inc. PC-Doctor for Windows
6.0.7193.611 !$*"C:\Program
Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7193.611\DSAPI.exe"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RUNTIMEBROKER.EXE
### Runtime Broker Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\RuntimeBroker.exe -Embedding
[Running Processes] :HKLM C:\PROGRAM
FILES\WINDOWSAPPS\SCREENOVATETECHNOLOGIES.DELLMOBILECONNECT_3.1.9518.0_X64__0VHBC3N
G4WBP0\APP\DELLMOBILECONNECTCLIENT.EXE
### DellMobileConnectClient Screenovate Technologies Ltd. Dell Mobile Connect
3.1.0.9518 ->BLUEPHONECLIENT.EXE !$*"C:\Program
Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.1.9518.0_x64__0vhbc3n
g4wbp0\app\DellMobileConnectClient.exe" /InvokerPRAID: DellMobileConnectClient
/startup
[Running Processes] :HKLM C:\PROGRAM
FILES\DELL\SAREMEDIATION\AGENT\DELLSUPPORTASSISTREMEDATIONSERVICE.EXE
### Dell SupportAssist Remediation Dell Inc. Dell SupportAssist Remediation
4.4.1.9851 !$*"C:\Program
Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe"
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\DELL\UPDATESERVICE\SERVICESHELL.EXE
### ServiceShell ServiceShell 1.6.0.6 !$*"C:\Program Files
(x86)\Dell\UpdateService\ServiceShell.exe"
[Running Processes] :HKLM C:\PROGRAM
FILES\WINDOWSAPPS\SCREENOVATETECHNOLOGIES.DELLMOBILECONNECT_3.1.9518.0_X64__0VHBC3N
G4WBP0\DELLMOBILECONNECTUNIVERSALCLIENT.EXE
### DellMobileConnectUniversalClient Screenovate Technologies Ltd. Dell Mobile
Connect 3.1.0.9518 !$*"C:\Program
Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.1.9518.0_x64__0vhbc3n
g4wbp0\DellMobileConnectUniversalClient.exe"
-ServerName:DellMobileConnectClient.AppXvysfkx4a0ftncbed5k8wjtf00nrarwtx.mca
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p -s StorSvc
[Running Processes] :HKLM C:\PROGRAM FILES\INTEL\INTEL(R) RAPID STORAGE
TECHNOLOGY\IASTORDATAMGRSVC.EXE
### IAStorDataSvc Intel Corporation IAStorDataSvc 17.2.4.1011 !$*"C:\Program
Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\INTEL\INTEL(R) MANAGEMENT ENGINE
COMPONENTS\LMS\LMS.EXE
### Intel(R) Local Management Service Intel Corporation Intel(R) Management and
Security Application Local Management Service 1846.12.0.1173 !$*"C:\Program Files
(x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
[Running Processes] :HKLM C:\PROGRAM
FILES\DELL\SUPPORTASSISTAGENT\BIN\SUPPORTASSISTAGENT.EXE
### Service Dell Inc. Service 3.7.0.148 !$*"C:\Program
Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p -s UsoSvc
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k UnistackSvcGroup
[Running Processes] :HKLM C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DDVDATACOLLECTOR.EXE
### Dell Data Vault Data Collector Service Dell Technologies Inc. Dell Data Vault
5.5.5.959 !$*"C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe"
[Running Processes] :HKLM C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DDVCOLLECTORSVCAPI.EXE
### Dell Data Vault Data Collector Service API Dell Technologies Inc. Dell Data
Vault 5.5.5.959 !$*"C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe"
[Running Processes] :HKLM C:\WAMP64\WAMPMANAGER.EXE
### Aestan Tray Menu Aestan Software 1.0.0.0 ->TRAY MENU !
$*"C:\wamp64\wampmanager.exe"
[Running Processes] :HKLM C:\WAMP64\BIN\APACHE\APACHE2.4.39\BIN\HTTPD.EXE
### Apache HTTP Server Apache Software Foundation Apache HTTP Server 2.4.39 !
$*"c:\wamp64\bin\apache\apache2.4.39\bin\httpd.exe" -k runservice
[Running Processes] :HKLM C:\WAMP64\BIN\MYSQL\MYSQL5.7.26\BIN\MYSQLD.EXE
### 5.7.26.0 !$*c:\wamp64\bin\mysql\mysql5.7.26\bin\mysqld.exe wampmysqld64
[Running Processes] :HKLM C:\WAMP64\BIN\MARIADB\MARIADB10.3.14\BIN\MYSQLD.EXE
### 10.3.14.0 !$*c:\wamp64\bin\mariadb\mariadb10.3.14\bin\mysqld.exe
wampmariadb64
[Running Processes] :HKLM C:\WAMP64\BIN\APACHE\APACHE2.4.39\BIN\HTTPD.EXE
### Apache HTTP Server Apache Software Foundation Apache HTTP Server 2.4.39 !
$*C:\wamp64\bin\apache\apache2.4.39\bin\httpd.exe -d
C:/wamp64/bin/apache/apache2.4.39
[Running Processes] :HKLM C:\PROGRAM FILES\DELL\DELLDATAVAULT\NVAPIW.EXE
### DDV Nvidia Graphics Worker Dell Technologies Inc. Dell Data Vault 5.5.5.959 !
$*"C:\Program Files\Dell\DellDataVault\nvapiw.exe" -p 2 -continuous
[Running Processes] :HKLM C:\PROGRAM
FILES\WINDOWSAPPS\MICROSOFT.WINDOWSCALCULATOR_10.2008.2.0_X64__8WEKYB3D8BBWE\CALCUL
ATOR.EXE
### !$*"C:\Program
Files\WindowsApps\Microsoft.WindowsCalculator_10.2008.2.0_x64__8wekyb3d8bbwe\Calcul
ator.exe" -ServerName:App.AppXsm3pg4n7er43kdh1qp4e79f1j7am68r8.mca
[Running Processes] :HKLM
C:\WINDOWS\SYSTEMAPPS\INPUTAPP_CW5N1H2TXYEWY\WINDOWSINTERNAL.COMPOSABLESHELL.EXPERI
ENCES.TEXTINPUT.INPUTAPP.EXE
### WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe Microsoft
Corporation Microsoft� Windows� Operating System 10.0.18362.1049 !
$*"C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Exp
eriences.TextInput.InputApp.exe"
-ServerName:App.AppXagta193n5rpf7mheremt3yyfa1g555vc.mca
[Running Processes] :HKLM C:\WINDOWS\EXPLORER.EXE
### Windows Explorer Microsoft Corporation Sistema operacional Microsoft�
Windows� 10.0.18362.1074 !$*C:\Windows\explorer.exe /factory,{ceff45ee-c862-41de-
aee2-a022c81eda92} -Embedding
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k appmodel -p -s camsvc
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k DevicesFlow -s DevicesFlowUserSvc
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RUNDLL32.EXE
### Processo de host do Windows (Rundll32) Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 ->RUNDLL !
$*"C:\Windows\system32\rundll32.exe" -localserver 22d8c27b-47a1-48d1-ad08-
7da7abd79617
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\COMPPKGSRV.EXE
### Component Package Support Server Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1 ->COMPONENT PACKAGE SUPPORT SERVER !
$*C:\Windows\System32\CompPkgSrv.exe -Embedding
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p -s wuauserv
[Running Processes] :HKLM C:\WINDOWS\IMMERSIVECONTROLPANEL\SYSTEMSETTINGS.EXE
### Configura��es Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 ->SETTINGS !$*"C:\Windows\ImmersiveControlPanel\SystemSettings.exe"
-ServerName:microsoft.windows.immersivecontrolpanel
[Running Processes] :HKLM
C:\WINDOWS\SYSTEMAPPS\MICROSOFT.LOCKAPP_CW5N1H2TXYEWY\LOCKAPP.EXE
### LockApp.exe Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.997 !
$*"C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe"
-ServerName:WindowsDefaultLockScreen.AppX7y4nbzq37zn4ks9k7amqjywdat7d3j2z.mca
[Running Processes] :HKLM C:\PROGRAM
FILES\WINDOWSAPPS\MICROSOFT.WINDOWS.PHOTOS_2020.20090.1002.0_X64__8WEKYB3D8BBWE\MIC
ROSOFT.PHOTOS.EXE
### !$*"C:\Program
Files\WindowsApps\Microsoft.Windows.Photos_2020.20090.1002.0_x64__8wekyb3d8bbwe\Mic
rosoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RUNTIMEBROKER.EXE
### Runtime Broker Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\RuntimeBroker.exe -Embedding
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalServiceNetworkRestricted -p -s lmhosts
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RUNTIMEBROKER.EXE
### Runtime Broker Microsoft Corporation Microsoft� Windows� Operating System
10.0.18362.1 !$*C:\Windows\System32\RuntimeBroker.exe -Embedding
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-
handler "--user-data-dir=C:\Users\Luis Fernando\AppData\Local\Google\Chrome\User
Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--
database=C:\Users\Luis Fernando\AppData\Local\Google\Chrome\User Data\Crashpad" "--
metrics-dir=C:\Users\Luis Fernando\AppData\Local\Google\Chrome\User Data"
--url=https://clients2.google.com/cr/report --annotation=channel=
--annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=85.0.4183.83
--initial-client-
data=0xe8,0xec,0xf0,0xc4,0xf4,0x7ffa74873e00,0x7ffa74873e10,0x7ffa74873e20
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --gpu-
preferences=MAAAAAAAAADgAAAwAAAAAAAAAAAAAAAAAABgAAAAAAAQAAAAAAAAAAAAAAAAAAAAKAAAAAQ
AAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAAAAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAA
AGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAA= --mojo-platform-channel-
handle=1676 /prefetch:2
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility
--utility-sub-type=network.mojom.NetworkService --field-trial-
handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-BR --service-
sandbox-type=network --enable-audio-service-sandbox --mojo-platform-channel-
handle=1952 /prefetch:8
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=8 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=3016 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=7 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=3064 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=9 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=3360 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=10 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=3384 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --extension-process --enable-auto-reload --device-scale-factor=1.25 --num-
raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=4 --no-
v8-untrusted-code-mitigations --mojo-platform-channel-handle=2644 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --extension-process --enable-auto-reload --device-scale-factor=1.25 --num-
raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=5 --no-
v8-untrusted-code-mitigations --mojo-platform-channel-handle=4168 /prefetch:1
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CMD.EXE
### Processador de comandos do Windows Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\cmd.exe /d /c
"C:\Program Files\McAfee\WebAdvisor\BrowserHost.exe" chrome-
extension://fheoggkfdfchfphceeifdbepaooicaho/ --parent-window=0 <
\\.\pipe\chrome.nativeMessaging.in.563cd2ef2e61000b >
\\.\pipe\chrome.nativeMessaging.out.563cd2ef2e61000b
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE
### Host da Janela do Console Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*\??\C:\Windows\system32\conhost.exe 0x4
[Running Processes] :HKLM C:\PROGRAM FILES\MCAFEE\WEBADVISOR\BROWSERHOST.EXE
### McAfee WebAdvisor McAfee, LLC McAfee WebAdvisor 4,1,1,0 ->BROWSERHOST
MODULE !$*"C:\Program Files\McAfee\WebAdvisor\BrowserHost.exe" chrome-
extension://fheoggkfdfchfphceeifdbepaooicaho/ --parent-window=0
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --extension-process --enable-auto-reload --device-scale-factor=1.25 --num-
raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=15
--no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=7284 /prefetch:1
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\WBEM\WMIAPSRV.EXE
### Adaptador Reverso de Desempenho WMI Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\wbem\WmiApSrv.exe
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\AUDIODG.EXE
### Isolamento de Gr�fico de Dispositivo de �udio do Windows Microsoft
Corporation Sistema Operacional Microsoft� Windows� 10.0.18362.1074 ->AUDIOADG.EXE
=>AUDIOADG.EXE.MUI !$*C:\Windows\system32\AUDIODG.EXE 0x6b8
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\WUDFHOST.EXE
### Windows Driver Foundation - Processo de Host da Estrutura de Driver de Modo
de Usu�rio Microsoft Corporation Sistema Operacional Microsoft� Windows�
10.0.18362.1074 !$*"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-
4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-
d2a886f7-7c86-4445-99f8-ea4f6201468a
-SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-278db7fb-c76d-4c2f-
9cbe-9108a4a0ef42 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-
6e3b802a-846c-4cb5-be5f-58df565792f2
-NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-2600bd16-
9af5-4375-8fa0-cadcdc4c6716 -LifetimeId:674f1d39-9d19-45fc-9b0b-fc9f0df8290d
-DeviceGroupId:WudfDefaultDevicePool -HostArg:0
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=48 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=5228 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=49 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=2672 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=52 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=7920 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=53 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=2800 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=54 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=5232 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=55 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=5012 /prefetch:1
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k SDRSVC
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SMARTSCREEN.EXE
### Windows Defender SmartScreen Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\smartscreen.exe
-Embedding
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=58 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=8636 /prefetch:1
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SEARCHPROTOCOLHOST.EXE
### Microsoft Windows Search Protocol Host Microsoft Corporation Windows� Search
7.0.18362.1049 !$*"C:\Windows\system32\SearchProtocolHost.exe"
Global\UsGthrFltPipeMssGthrPipe46_ Global\UsGthrCtrlFltPipeMssGthrPipe46 1
-2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0;
Windows NT; MS Search 4.0 Robot)"
"C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=66 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=6068 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=67 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=8840 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES\WINRAR\WINRAR.EXE
### WinRAR archiver Alexander Roshal WinRAR 5.90.0 !$*"C:\Program
Files\WinRAR\WinRAR.exe" "C:\Users\Luis Fernando\Downloads\unhackme.zip"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SEARCHPROTOCOLHOST.EXE
### Microsoft Windows Search Protocol Host Microsoft Corporation Windows� Search
7.0.18362.1049 !$*"C:\Windows\system32\SearchProtocolHost.exe"
Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-4159664292-2881118431-3989827443-100247_
Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-4159664292-2881118431-3989827443-
100247 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible;
MSIE 6.0; Windows NT; MS Search 4.0 Robot)"
"C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p -s WdiSystemHost
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility
--utility-sub-type=audio.mojom.AudioService --field-trial-
handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-BR --service-
sandbox-type=audio --enable-audio-service-sandbox --mojo-platform-channel-
handle=6744 /prefetch:8
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\UNHACKME\UNHACKME.EXE
### Detects and removes rootkits Greatis Software UnHackMe 11.99 !$*"C:\Program
Files (x86)\UnHackMe\Unhackme.exe"
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\UNHACKME\HACKMON.EXE
### UnHackMe Greatis Software UnHackMe 11.98 !$*"C:\Program Files
(x86)\UnHackMe\hackmon.exe"
[Running Processes] :HKLM C:\PROGRAM FILES (X86)\UNHACKME\REANIMATOR.EXE
### RegRun Start Control Greatis Software RegRun Security Suite 11.99
->REGRUN2.EXE !$*"C:\Program Files (x86)\UnHackMe\reanimator.exe" /wiz /full /malw
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SEARCHFILTERHOST.EXE
### Microsoft Windows Search Filter Host Microsoft Corporation Windows� Search
7.0.18362.1049 !$*"C:\Windows\system32\SearchFilterHost.exe" 0 784 788 796 8192 792

[Running Processes] :HKLM C:\PROGRAM FILES


(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer
--field-trial-handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-
BR --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=73 --no-v8-untrusted-code-
mitigations --mojo-platform-channel-handle=6820 /prefetch:1
[Running Processes] :HKLM C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE
### Google Chrome Google LLC Google Chrome 85.0.4183.83 ->CHROME_EXE !
$*"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility
--utility-sub-type=video_capture.mojom.VideoCaptureService --field-trial-
handle=1620,1114255320293734246,8676310687308681477,131072 --lang=pt-BR --service-
sandbox-type=video_capture --enable-audio-service-sandbox --mojo-platform-channel-
handle=6680 /prefetch:8
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k Camera -s FrameServer
[Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceAndNoImpersonation -p -s QWAVE
[Running Services] AESMService
### Intel� SGX Application Enclave Services Manager Intel Corporation Intel�
Software Guard Extensions 2.7.101.2 ->AESM !
$*C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_4a7a369b84fff822
\aesm_service.exe Service registry key doesn't exist or hidden.
[Running Services] Appinfo
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] AppXSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k wsappx -p Service registry key doesn't exist or hidden.
[Running Services] AtherosSvc
### Windows Setup API Windows (R) Win 7 DDK provider Windows (R) Win 7 DDK driver
10.0.10011.16384 ->SETUPAPI.DLL !$*C:\Windows\System32\drivers\AdminService.exe
Service registry key doesn't exist or hidden.
[Running Services] AudioEndpointBuilder
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] Audiosrv
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] BFE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNoNetworkFirewall -p Service registry key doesn't exist or hidden.
[Running Services] BITS
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] BrokerInfrastructure
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k DcomLaunch -p Service registry key doesn't exist or hidden.
[Running Services] BTAGService
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNetworkRestricted Service registry key doesn't exist or hidden.
[Running Services] BthAvctpSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p Service registry key doesn't exist or hidden.
[Running Services] bthserv
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p Service registry key doesn't exist or hidden.
[Running Services] camsvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k appmodel -p Service registry key doesn't exist or hidden.
[Running Services] CDPSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p Service registry key doesn't exist or hidden.
[Running Services] CoreMessagingRegistrar
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNoNetwork -p Service registry key doesn't exist or hidden.
[Running Services] cphs
### IntelCpHeciSvc Executable Intel Corporation IntelCpHeciSvc Executable
9.1.1.0320 !
$*C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_783e12a6215f487
b\IntelCpHeciSvc.exe Service registry key doesn't exist or hidden.
[Running Services] cplspcon
### Intel HD Graphics Drivers for Windows(R) Intel Corporation Intel HD Graphics
Drivers for Windows(R) 25.20.100.8141 !
$*C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_783e12a6215f487
b\IntelCpHDCPSvc.exe Service registry key doesn't exist or hidden.
[Running Services] CryptSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k NetworkService -p Service registry key doesn't exist or hidden.
[Running Services] DcomLaunch
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k DcomLaunch -p Service registry key doesn't exist or hidden.
[Running Services] DDVCollectorSvcApi
### Dell Data Vault Data Collector Service API Dell Technologies Inc. Dell Data
Vault 5.5.5.959 !$*"C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe"
Service registry key doesn't exist or hidden.
[Running Services] DDVDataCollector
### Dell Data Vault Data Collector Service Dell Technologies Inc. Dell Data Vault
5.5.5.959 !$*"C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe" Service
registry key doesn't exist or hidden.
[Running Services] DDVRulesProcessor
### Dell Data Vault Rules Processor Dell Technologies Inc. Dell Data Vault
5.5.5.959 ->DELLRULESPROCESSOR.EXE !$*"C:\Program
Files\Dell\DellDataVault\DDVRulesProcessor.exe" Service registry key doesn't exist
or hidden.
[Running Services] Dell Digital Delivery Services
### Dell.D3.WinSvc Dell.D3.WinSvc 4.0.52.0 !$*"C:\Program Files (x86)\Dell
Digital Delivery Services\Dell.D3.WinSvc.exe" Service registry key doesn't exist or
hidden.
[Running Services] Dell Hardware Support
### PC-Doctor Dell SupportAssist API PC-Doctor, Inc. PC-Doctor for Windows
6.0.7193.611 !$*"C:\Program
Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7193.611\DSAPI.exe" Service
registry key doesn't exist or hidden.
[Running Services] Dell SupportAssist Remediation
### Dell SupportAssist Remediation Dell Inc. Dell SupportAssist Remediation
4.4.1.9851 !$*"C:\Program
Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe" Service
registry key doesn't exist or hidden.
[Running Services] DellClientManagementService
### ServiceShell ServiceShell 1.6.0.6 !$*"C:\Program Files
(x86)\Dell\UpdateService\ServiceShell.exe" Service registry key doesn't exist or
hidden.
[Running Services] DeviceAssociationService
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] Dhcp
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] DiagTrack
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k utcsvc -p Service registry key doesn't exist or hidden.
[Running Services] DispBrokerDesktopSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p Service registry key doesn't exist or hidden.
[Running Services] DisplayEnhancementService
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] Dnscache
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k NetworkService -p Service registry key doesn't exist or hidden.
[Running Services] DoSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k NetworkService -p Service registry key doesn't exist or hidden.
[Running Services] DPS
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalServiceNoNetwork -p Service registry key doesn't exist or hidden.
[Running Services] DusmSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] esifsvc
### Intel(R) Dynamic Platform and Thermal Framework Intel Corporation Intel(R)
Dynamic Platform and Thermal Framework 8.4.10501.6067 !
$*C:\Windows\System32\Intel\DPTF\esif_uf.exe Service registry key doesn't exist or
hidden.
[Running Services] EventLog
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] EventSystem
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p Service registry key doesn't exist or hidden.
[Running Services] FontCache
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p Service registry key doesn't exist or hidden.
[Running Services] FontCache3.0.0.0
### PresentationFontCache.exe Microsoft Corporation Microsoft� .NET Framework
3.0.6920.9135 !
$*C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe Service
registry key doesn't exist or hidden.
[Running Services] FrameServer
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k Camera Service registry key doesn't exist or hidden.
[Running Services] hidserv
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] IAStorDataMgrSvc
### IAStorDataSvc Intel Corporation IAStorDataSvc 17.2.4.1011 !$*"C:\Program
Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe" Service
registry key doesn't exist or hidden.
[Running Services] igccservice
### OneApp.IGCC.WinService OneApp.IGCC.WinService 1.0.0.0 !
$*C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_5b19dfe7970a713
9\OneApp.IGCC.WinService.exe Service registry key doesn't exist or hidden.
[Running Services] igfxCUIService2.0.0.0
### igfxCUIService Module Intel Corporation Intel(R) Common User Interface
6.15.100.8141 !
$*C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cb5b3ac4d6a4f65a
\igfxCUIService.exe Service registry key doesn't exist or hidden.
[Running Services] IKEEXT
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] InstallService
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] Intel(R) Capability Licensing Service TCP IP Interface
### Intel(R) Capability Licensing Service TCP IP Interface Intel(R) Corporation
Intel(R) Capability Licensing Service TCP IP Interface 1.61.251.0 !
$*C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865
b4b\lib\SocketHeciServer.exe Service registry key doesn't exist or hidden.
[Running Services] iphlpsvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k NetSvcs -p Service registry key doesn't exist or hidden.
[Running Services] jhi_service
### Intel(R) Dynamic Application Loader Host Interface Intel Corporation Intel(R)
Dynamic Application Loader Host Interface 1.32.20190403 !
$*C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_31a8dbbf39dcdc3b\jhi
_service.exe Service registry key doesn't exist or hidden.
[Running Services] KeyIso
### Local Security Authority Process Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1049 !$*C:\Windows\system32\lsass.exe Service registry
key doesn't exist or hidden.
[Running Services] Killer Network Service
### Killer Network Service Rivet Networks Killer Network Service 2.0.2369 !
$*C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe Service
registry key doesn't exist or hidden.
[Running Services] LanmanServer
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] LanmanWorkstation
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k NetworkService -p Service registry key doesn't exist or hidden.
[Running Services] lfsvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] LicenseManager
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalService -p Service registry key doesn't exist or hidden.
[Running Services] lmhosts
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] LMS
### Intel(R) Local Management Service Intel Corporation Intel(R) Management and
Security Application Local Management Service 1846.12.0.1173 !$*"C:\Program Files
(x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe" Service registry key
doesn't exist or hidden.
[Running Services] LSM
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k DcomLaunch -p Service registry key doesn't exist or hidden.
[Running Services] McAfee WebAdvisor
### McAfee WebAdvisor McAfee, LLC McAfee WebAdvisor 4,1,1,0 ->SERVICEHOST
MODULE !$*"C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe" Service registry key
doesn't exist or hidden.
[Running Services] mpssvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNoNetworkFirewall -p Service registry key doesn't exist or hidden.
[Running Services] NcbService
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] Netman
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] netprofm
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalService -p Service registry key doesn't exist or hidden.
[Running Services] NlaSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k NetworkService -p Service registry key doesn't exist or hidden.
[Running Services] nsi
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p Service registry key doesn't exist or hidden.
[Running Services] NvContainerLocalSystem
### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 28049213 !
$*"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s
NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3
-d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p
30000 -st "C:\Program Files\NVIDIA
Corporation\NvContainer\NvContainerTelemetryApi.dll" Service registry key doesn't
exist or hidden.
[Running Services] NVDisplay.ContainerLocalSystem
### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_dev 28029499
->NVCONTAINER =>NVCONTAINER.EXE !
$*C:\Windows\System32\DriverStore\FileRepository\nvdmi.inf_amd64_1cb2f96fd365efce\D
isplay.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f
C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d
C:\Windows\System32\DriverStore\FileRepository\nvdmi.inf_amd64_1cb2f96fd365efce\Dis
play.NvContainer\plugins\LocalSystem -r -p 30000 -cfg
NVDisplay.ContainerLocalSystem\LocalSystem Service registry key doesn't exist or
hidden.
[Running Services] PcaSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] PlugPlay
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k DcomLaunch -p Service registry key doesn't exist or hidden.
[Running Services] Power
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k DcomLaunch -p Service registry key doesn't exist or hidden.
[Running Services] ProfSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] PSI_SVC_2
### PsiService PsiService Protexis Inc. PsiService System Service 03.00.02.15
->PSISERVICE =>PSISERVICE.EXE !$*"c:\Program Files (x86)\Common
Files\Protexis\License Service\PsiService_2.exe" Service registry key doesn't exist
or hidden.
[Running Services] PSI_SVC_2_x64
### PsiService PsiService arvato digital services llc PsiService System Service
3.2.0.62 ->PSISERVICE =>PSISERVICE.EXE !$*"c:\Program Files\Common
Files\Protexis\License Service\PsiService_2.exe" Service registry key doesn't exist
or hidden.
[Running Services] QWAVE
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceAndNoImpersonation -p Service registry key doesn't exist or hidden.
[Running Services] RasMan
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k netsvcs Service registry key doesn't exist or hidden.
[Running Services] RpcEptMapper
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k RPCSS -p Service registry key doesn't exist or hidden.
[Running Services] RpcSs
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k rpcss -p Service registry key doesn't exist or hidden.
[Running Services] RstMwService
### Intel(R) Rapid Storage Technology Management Service Intel Corporation
Intel(R) Rapid Storage Technology Management Service 17.5.9.1040
->RSTMGMTSERVICE.EXE !
$*C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_f881c4be237ce85
4\RstMwService.exe Service registry key doesn't exist or hidden.
[Running Services] RtkAudioUniversalService
### Realtek HD Audio Universal Service Realtek Semiconductor Realtek HD Audio
Universal Service 1.0.0.176 ->RTKAUDUSERVICE.EXE !
$*"C:\Windows\System32\RtkAudUService64.exe" Service registry key doesn't exist or
hidden.
[Running Services] SamSs
### Local Security Authority Process Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1049 !$*C:\Windows\system32\lsass.exe Service registry
key doesn't exist or hidden.
[Running Services] Schedule
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] SDRSVC
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k SDRSVC Service registry key doesn't exist or hidden.
[Running Services] SecurityHealthService
### Windows Security Health Service Microsoft Corporation Microsoft� Windows�
Operating System 4.18.1901.16384 !$*C:\Windows\system32\SecurityHealthService.exe
Service registry key doesn't exist or hidden.
[Running Services] SEMgrSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p Service registry key doesn't exist or hidden.
[Running Services] SENS
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] SgrmBroker
### Servi�o System Guard Runtime Monitor Broker Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !
$*C:\Windows\system32\SgrmBroker.exe Service registry key doesn't exist or hidden.
[Running Services] ShellHWDetection
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] SmartByte Network Service x64
### SmartByte Network Service Rivet Networks SmartByte Network Service 2.5.713 !
$*"C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe" Service
registry key doesn't exist or hidden.
[Running Services] SplashtopRemoteService
### Splashtop� Streamer Service Splashtop Inc. Splashtop� Streamer 3.4.0.0 !
$*"C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRService.exe" Service
registry key doesn't exist or hidden.
[Running Services] Spooler
### Aplicativo de subsistema de spooler Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\spoolsv.exe Service
registry key doesn't exist or hidden.
[Running Services] SSDPSRV
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceAndNoImpersonation -p Service registry key doesn't exist or hidden.
[Running Services] SstpSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalService -p Service registry key doesn't exist or hidden.
[Running Services] StateRepository
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k appmodel -p Service registry key doesn't exist or hidden.
[Running Services] stisvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k imgsvc Service registry key doesn't exist or hidden.
[Running Services] StorSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] SupportAssistAgent
### Service Dell Inc. Service 3.7.0.148 !$*"C:\Program
Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe" Service registry key
doesn't exist or hidden.
[Running Services] SysMain
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] SystemEventsBroker
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k DcomLaunch -p Service registry key doesn't exist or hidden.
[Running Services] TabletInputService
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] TapiSrv
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k NetworkService -p Service registry key doesn't exist or hidden.
[Running Services] Themes
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] TimeBrokerSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] TokenBroker
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] TrkWks
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] UserManager
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] UsoSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] VaultSvc
### Local Security Authority Process Microsoft Corporation Microsoft� Windows�
Operating System 10.0.18362.1049 !$*C:\Windows\system32\lsass.exe Service registry
key doesn't exist or hidden.
[Running Services] wampapache64
### Apache HTTP Server Apache Software Foundation Apache HTTP Server 2.4.39 !
$*"c:\wamp64\bin\apache\apache2.4.39\bin\httpd.exe" -k runservice Service registry
key doesn't exist or hidden.
[Running Services] wampmariadb64
### 10.3.14.0 !$*c:\wamp64\bin\mariadb\mariadb10.3.14\bin\mysqld.exe
wampmariadb64 Service registry key doesn't exist or hidden.
[Running Services] wampmysqld64
### 5.7.26.0 !$*c:\wamp64\bin\mysql\mysql5.7.26\bin\mysqld.exe wampmysqld64
Service registry key doesn't exist or hidden.
[Running Services] WavesSysSvc
### WavesSysSvc Service Application Waves Audio Ltd. Waves MaxxAudio 1.9.30.0
->WAVESSYSSVC.EXE !
$*C:\Windows\System32\DriverStore\FileRepository\wavesapo75de.inf_amd64_5ff36f834a6
d461a\WavesSysSvc64.exe Service registry key doesn't exist or hidden.
[Running Services] WbioSrvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k WbioSvcGroup Service registry key doesn't exist or hidden.
[Running Services] Wcmsvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] WdiServiceHost
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalService -p Service registry key doesn't exist or hidden.
[Running Services] WdiSystemHost
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] WdNisSvc
### Microsoft Network Realtime Inspection Service Microsoft Corporation
Microsoft� Windows� Operating System 4.18.2009.7 !
$*"C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\NisSrv.exe"
Service registry key doesn't exist or hidden.
[Running Services] WinDefend
### Antimalware Service Executable Microsoft Corporation Microsoft� Windows�
Operating System 4.18.2009.7 !$*"C:\ProgramData\Microsoft\Windows
Defender\platform\4.18.2009.7-0\MsMpEng.exe" Service registry key doesn't exist or
hidden.
[Running Services] WinHttpAutoProxySvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] Winmgmt
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] WlanSvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] wmiApSrv
### Adaptador Reverso de Desempenho WMI Microsoft Corporation Sistema Operacional
Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\wbem\WmiApSrv.exe
Service registry key doesn't exist or hidden.
[Running Services] WpnService
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] wscsvc
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\System32\svchost.exe
-k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden.
[Running Services] WSearch
### Indexador do Microsoft Windows Search Microsoft Corporation Pesquisa do
Windows� 7.0.18362.1074 !$*C:\Windows\system32\SearchIndexer.exe /Embedding Service
registry key doesn't exist or hidden.
[Running Services] wuauserv
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k netsvcs -p Service registry key doesn't exist or hidden.
[Running Services] xTendUtilityService
### Windows Service Wrapper CloudBees, Inc. Windows Service Wrapper 1.18.0.0
->WINSW.EXE !
$*C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe Service
registry key doesn't exist or hidden.
[Running Services] BluetoothUserService_8b54b
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k BthAppGroup -p Service registry key doesn't exist or hidden.
[Running Services] cbdhsvc_8b54b
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k ClipboardSvcGroup -p Service registry key doesn't exist or hidden.
[Running Services] CDPUserSvc_8b54b
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k UnistackSvcGroup Service registry key doesn't exist or hidden.
[Running Services] DevicesFlowUserSvc_8b54b
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k DevicesFlow Service registry key doesn't exist or hidden.
[Running Services] OneSyncSvc_8b54b
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k UnistackSvcGroup Service registry key doesn't exist or hidden.
[Running Services] WpnUserService_8b54b
### Processo de Host para Servi�os do Windows Microsoft Corporation Sistema
Operacional Microsoft� Windows� 10.0.18362.1074 !$*C:\Windows\system32\svchost.exe
-k UnistackSvcGroup Service registry key doesn't exist or hidden.
[Uninstall]
[Applications] :HKLM UnHackMe_is1="C:\Program Files
(x86)\UnHackMe\unins000.exe" /SILENT
### UnHackMe 11.99 - (09) 10-2020
[Applications] :HKLM Microsoft Edge Update
### Microsoft Edge Update - (09) 10-2020
[Applications] :HKLM roblox-player-admin="C:\Program Files
(x86)\Roblox\Versions\version-aa66315930d14906\RobloxPlayerLauncher.exe" -uninstall
-alluser
### Roblox Player - (09) 10-2020
[Applications] :HKCU {771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1="D:\Microsoft VS
Code\unins000.exe" /SILENT
### Microsoft Visual Studio Code (User) - (08) 10-2020
[Applications] :HKLM Microsoft Edge="C:\Program Files
(x86)\Microsoft\Edge\Application\85.0.564.70\Installer\setup.exe" --uninstall
--system-level --verbose-logging
### Microsoft Edge - (08) 10-2020
[Applications] :HKLM {35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}=C:\Program
Files\McAfee\WebAdvisor\Uninstaller.exe
### WebAdvisor da McAfee - (05) 10-2020
[Applications] :HKLM {97238E8A-4919-4A1E-965A-C6C36938F4CE}=MsiExec.exe
/X{97238E8A-4919-4A1E-965A-C6C36938F4CE}
### Microsoft Update Health Tools - (03) 10-2020
[Applications] :HKLM {4A03706F-666A-4037-7777-5F2748764D10}
### Java Auto Updater - (02) 10-2020
[Applications] :HKLM {26A24AE4-039D-4CA4-87B4-2F64180261F0}=MsiExec.exe
/X{26A24AE4-039D-4CA4-87B4-2F64180261F0}
### Java 8 Update 261 (64-bit) - (02) 10-2020
[Applications] :HKLM {C1F5BFA5-3A41-44B0-AA9E-42DE4F6F1630}_is1="C:\Program Files
(x86)\Goyal Softech\Website 2 APK Builder Pro\unins000.exe" /SILENT
### Website 2 APK Builder Pro - (02) 10-2020
[Applications] :HKLM WDDiscovery=C:\Program Files (x86)\Western
Digital\Discovery\Current\WD Discovery.exe --uninstall
### WD Discovery - (28) 09-2020
[Applications] :HKLM {924A274D-38B6-4930-8859-F3F51CFA8DDD}=MsiExec.exe
/I{924A274D-38B6-4930-8859-F3F51CFA8DDD}
### WD SES Driver Setup - (28) 09-2020
[Applications] :HKLM {756e70ec-1fb0-41c8-896b-
df0302d17bff}="C:\ProgramData\Package Cache\{756e70ec-1fb0-41c8-896b-
df0302d17bff}\WD_KDA_Setup.exe" /uninstall /quiet
### WD Desktop App 2.1.0.313 - (28) 09-2020
[Applications] :HKLM {CA7F7232-526E-41BD-971A-47BE28C18516}=MsiExec.exe
/I{CA7F7232-526E-41BD-971A-47BE28C18516}
### WD Desktop App 2.1.0.313 (x64) - (28) 09-2020
[Applications] :HKCU uTorrent="C:\Users\Luis
Fernando\AppData\Roaming\uTorrent\uTorrent.exe" /UNINSTALL
### �Torrent - (25) 09-2020
[Applications] :HKLM {CC611DE8-38C7-4650-968E-B973B254E98C}=C:\Program
Files\Dell\SupportAssistAgent\bin\SupportAssistUninstaller.exe
### Dell SupportAssist - (22) 09-2020
[Applications] :HKLM {57CBE96A-3AA5-4421-A87C-6C6C3B6C5ECA}
### - (22) 09-2020
[Applications] :HKLM {AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}=MsiExec.exe
/X{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}
### Microsoft Visual Studio Tools for Applications 2.0 - ENU - (04) 09-2020
[Applications] :HKLM {AA4A4B2C-0465-3CF8-BA76-
27A027D8ACAB}.KB946344=c:\Windows\SysWOW64\msiexec.exe /package {AA4A4B2C-0465-
3CF8-BA76-27A027D8ACAB} /uninstall /qb+ REBOOTPROMPT=""
### Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU
(KB946344) - (04) 09-2020
[Applications] :HKLM {AA4A4B2C-0465-3CF8-BA76-
27A027D8ACAB}.KB947540=c:\Windows\SysWOW64\msiexec.exe /package {AA4A4B2C-0465-
3CF8-BA76-27A027D8ACAB} /uninstall /qb+ REBOOTPROMPT=""
### Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU
(KB947540) - (04) 09-2020
[Applications] :HKLM {AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}.KB951708
### - (04) 09-2020
[Applications] :HKLM {AA4A4B2C-0465-3CF8-BA76-
27A027D8ACAB}.KB947789=c:\Windows\SysWOW64\msiexec.exe /package {AA4A4B2C-0465-
3CF8-BA76-27A027D8ACAB} /uninstall /qb+ REBOOTPROMPT=""
### Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU
(KB947789) - (04) 09-2020
[Applications] :HKLM {AA4A4B2C-0465-3CF8-BA76-
27A027D8ACAB}.KB946040=c:\Windows\SysWOW64\msiexec.exe /package {AA4A4B2C-0465-
3CF8-BA76-27A027D8ACAB} /uninstall /qb+ REBOOTPROMPT=""
### Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU
(KB946040) - (04) 09-2020
[Applications] :HKLM {AA4A4B2C-0465-3CF8-BA76-
27A027D8ACAB}.KB946308=c:\Windows\SysWOW64\msiexec.exe /package {AA4A4B2C-0465-
3CF8-BA76-27A027D8ACAB} /uninstall /qb+ REBOOTPROMPT=""
### Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU
(KB946308) - (04) 09-2020
[Applications] :HKLM {AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}.KB945282
### - (04) 09-2020
[Applications] :HKLM {299C0434-4F4E-341F-A916-4E07AEB35E79}=MsiExec.exe
/X{299C0434-4F4E-341F-A916-4E07AEB35E79}
### Microsoft Visual Studio Tools for Applications 2.0 Runtime - (04) 09-2020
[Applications] :HKLM {511DE7EA-AA68-4D7A-A2E3-0E7B5186B822}
### CorelDRAW Graphics Suite X6 - Setup Files - (04) 09-2020
[Applications] :HKLM _{511DE7EA-AA68-4D7A-A2E3-0E7B5186B822}=c:\Program Files
(x86)\Corel\CorelDRAW Graphics Suite X6\Setup\SetupARP.exe /arp
### CorelDRAW Graphics Suite X6 - (04) 09-2020
[Applications] :HKLM {BAB89D31-4C55-472B-8909-6CBE2CC276B1}=MsiExec.exe
/I{BAB89D31-4C55-472B-8909-6CBE2CC276B1}
### Microsoft Visual Basic for Applications 7.1 (x86) English - (04) 09-2020
[Applications] :HKLM {90120000-0070-0000-0000-4000000FF1CE}=MsiExec.exe
/I{90120000-0070-0000-0000-4000000FF1CE}
### Microsoft Visual Basic for Applications 7.1 (x86) - (04) 09-2020
[Applications] :HKLM {7CCD75BD-5528-4FE1-90D2-392D661A2BF1}
### CorelDRAW Graphics Suite X6 - VSTA - (04) 09-2020
[Applications] :HKLM {879E2460-18F9-48F2-B736-4E814A699504}
### CorelDRAW Graphics Suite X6 - VBA - (04) 09-2020
[Applications] :HKLM {579CA850-B2C3-43F3-A3F6-3A0AE42E8225}
### CorelDRAW Graphics Suite X6 - FontNav - (04) 09-2020
[Applications] :HKLM {318FF3D7-0C40-483B-AF92-AF36416B0AC6}=MsiExec.exe
/I{318FF3D7-0C40-483B-AF92-AF36416B0AC6}
### CorelDRAW Graphics Suite X6 - Writing Tools - (04) 09-2020
[Applications] :HKLM {0084B0C3-F376-42E3-804A-885D249282BD}=MsiExec.exe
/I{0084B0C3-F376-42E3-804A-885D249282BD}
### CorelDRAW Graphics Suite X6 - IPM - (04) 09-2020
[Applications] :HKLM {1C93D216-E9C1-4089-807F-D2E10ED1630E}
### CorelDRAW Graphics Suite X6 - EN - (04) 09-2020
[Applications] :HKLM {D4A17D31-2F7B-4682-AD57-467021452909}
### CorelDRAW Graphics Suite X6 - Photozoom Plugin - (04) 09-2020
[Applications] :HKLM {7A2FF332-E4F6-4D87-9EBD-EDFF1216490F}
### CorelDRAW Graphics Suite X6 - Filters - (04) 09-2020
[Applications] :HKLM {603C6570-2BA1-4FC6-8735-7EFA6D1F6F61}
### CorelDRAW Graphics Suite X6 - Custom Data - (04) 09-2020
[Applications] :HKLM {DDFEB503-D662-4224-82C9-37A5698FDC25}
### CorelDRAW Graphics Suite X6 - VideoBrowser - (04) 09-2020
[Applications] :HKLM {D4EFC6B7-3DA5-400D-9682-9BE287A5440E}
### CorelDRAW Graphics Suite X6 - Connect - (04) 09-2020
[Applications] :HKLM {74FA94F1-9566-4252-9372-E7EAFFEFE209}
### CorelDRAW Graphics Suite X6 - Capture - (04) 09-2020
[Applications] :HKLM {6F53FB68-6620-423E-B7CD-B8205655B421}
### CorelDRAW Graphics Suite X6 - PHOTO-PAINT - (04) 09-2020
[Applications] :HKLM {C5262276-0075-498B-B80F-7D997482E4DB}
### CorelDRAW Graphics Suite X6 - Draw - (04) 09-2020
[Applications] :HKLM {25D69CEE-3EE2-47FD-9A0E-5013240EC953}
### CorelDRAW Graphics Suite X6 - Common - (04) 09-2020
[Applications] :HKLM {62BEC144-7029-4BF4-B3F2-FA231FB9F84B}
### CorelDRAW Graphics Suite X6 - Redist - (04) 09-2020
[Applications] :HKLM {7F9F6864-8CAB-440C-AF44-030D0135666D}
### CorelDRAW Graphics Suite X6 - (04) 09-2020
[Applications] :HKLM {D2437C5C-2D8C-40D2-8059-689AD7239FA3}=MsiExec.exe
/X{D2437C5C-2D8C-40D2-8059-689AD7239FA3}
### Intel(R) C++ Redistributables for Windows* on Intel(R) 64 - (04) 09-2020
[Applications] :HKLM _{5CB73140-806C-42C6-A05A-1AFD0E92DEB5}=c:\Program
Files\Corel\CorelDRAW Graphics Suite X7\Setup\SetupARP.exe /arp
### CorelDRAW Graphics Suite X7 (64-Bit) - (04) 09-2020
[Applications] :HKLM {5CB73140-806C-42C6-A05A-1AFD0E92DEB5}
### CorelDRAW Graphics Suite X7 - Setup Files (x64) - (04) 09-2020
[Applications] :HKLM {90F60409-7000-11D3-8CFE-0150048383C9}=MsiExec.exe
/I{90F60409-7000-11D3-8CFE-0150048383C9}
### Microsoft Visual Basic for Applications 7.1 (x64) English - (04) 09-2020
[Applications] :HKLM {90120064-0070-0000-0000-4000000FF1CE}=MsiExec.exe
/I{90120064-0070-0000-0000-4000000FF1CE}
### Microsoft Visual Basic for Applications 7.1 (x64) - (04) 09-2020
[Applications] :HKLM {FD4A43CE-ABAE-4161-83AC-314A3C804F42}=MsiExec.exe
/I{FD4A43CE-ABAE-4161-83AC-314A3C804F42}
### Corel Graphics - Windows Shell Extension 32 Bit - (04) 09-2020
[Applications] :HKLM {4AB916EE-ABA8-4079-9889-745798B6D809}=MsiExec.exe
/X{4AB916EE-ABA8-4079-9889-745798B6D809}
### Corel Graphics - Windows Shell Extension - (04) 09-2020
[Applications] :HKLM _{4AB916EE-ABA8-4079-9889-745798B6D809}=c:\Program
Files\Common Files\Corel\Shared\Shell Extension\x64\ShellUninst.exe -ProductCode
{4AB916EE-ABA8-4079-9889-745798B6D809} -arp
### Corel Graphics - Windows Shell Extension - (04) 09-2020
[Applications] :HKLM {5672E0DC-7489-4EAC-8CFD-E01B3868FCB5}
### CorelDRAW Graphics Suite X7 - VBA (x64) - (04) 09-2020
[Applications] :HKLM {5406029B-67AD-4F8E-9F2D-F1959CD9CD86}
### CorelDRAW Graphics Suite X7 - FontNav (x64) - (04) 09-2020
[Applications] :HKLM {D63404AC-C2F1-4B3D-96EA-9727AC9D994C}=MsiExec.exe
/I{D63404AC-C2F1-4B3D-96EA-9727AC9D994C}
### CorelDRAW Graphics Suite X7 - Writing Tools (x64) - (04) 09-2020
[Applications] :HKLM {EF44BCCD-13F9-4974-862C-CCFAF43EE082}=MsiExec.exe
/I{EF44BCCD-13F9-4974-862C-CCFAF43EE082}
### CorelDRAW Graphics Suite X7 - IPM Content (x64) - (04) 09-2020
[Applications] :HKLM {13179AB2-69FD-459B-800F-81865A501AD4}=MsiExec.exe
/I{13179AB2-69FD-459B-800F-81865A501AD4}
### CorelDRAW Graphics Suite X7 - IPM T (x64) - (04) 09-2020
[Applications] :HKLM {3BB8EB77-737B-4B32-BAB9-08C7110C46BD}
### CorelDRAW Graphics Suite X7 - EN (x64) - (04) 09-2020
[Applications] :HKLM {1A73168F-5983-46A6-AAAB-FD83BC231E02}
### CorelDRAW Graphics Suite X7 - Photozoom Plugin (x64) - (04) 09-2020
[Applications] :HKLM {5162E418-BB43-4C8F-ACD6-069645EF98C3}
### CorelDRAW Graphics Suite X7 - Custom Data (x64) - (04) 09-2020
[Applications] :HKLM {BD036E95-A9CD-4DED-B744-95AB1DCAFF0C}
### CorelDRAW Graphics Suite X7 - Connect (x64) - (04) 09-2020
[Applications] :HKLM {966996DC-D67C-40E3-8BD4-31FA0F093571}
### CorelDRAW Graphics Suite X7 - VideoBrowser (x64) - (04) 09-2020
[Applications] :HKLM {2C91CB9D-323D-43E5-A433-229B71CFB773}
### CorelDRAW Graphics Suite X7 - Capture (x64) - (04) 09-2020
[Applications] :HKLM {D10A5CFA-FE33-4F06-AE37-554604F00A52}
### CorelDRAW Graphics Suite X7 - Filters (x64) - (04) 09-2020
[Applications] :HKLM {C922F325-DD52-4E22-B204-431A06E63E51}
### CorelDRAW Graphics Suite X7 - PHOTO-PAINT (x64) - (04) 09-2020
[Applications] :HKLM {C57EDB5A-AC8E-4E03-9F1A-DC013A2BB9B2}
### CorelDRAW Graphics Suite X7 - Redist (x64) - (04) 09-2020
[Applications] :HKLM {2C0DDC74-5234-43DD-BB5A-0645B8FE5289}
### CorelDRAW Graphics Suite X7 - Draw (x64) - (04) 09-2020
[Applications] :HKLM {9178F0A8-B6F6-4DA7-AD63-317CC4875F4B}
### CorelDRAW Graphics Suite X7 - Common (x64) - (04) 09-2020
[Applications] :HKLM {83646B67-A878-4E95-BB4B-AF4A6E61F28C}
### CGS17_Setup_x64 - (04) 09-2020
[Applications] :HKLM DiskFixer_is1="C:\Program Files
(x86)\DiskFixer\unins000.exe" /SILENT
### DiskFixer version 1.0 - (03) 09-2020
[Applications] :HKLM MP3 Splitter_is1="C:\Program Files (x86)\Direct WAV MP3
Splitter\unins000.exe" /SILENT
### Splitter 8.26.0.6 - (03) 09-2020
[Applications] :HKLM {25FB53C5-BE4C-3B6C-A0C9-D49A39227E1E}=MsiExec.exe
/X{25FB53C5-BE4C-3B6C-A0C9-D49A39227E1E}
### ???????? ????? ??? ????????? ?????????? ?????? ??????? Microsoft Visual
Studio Tools ??? ?????? ? ???????????? 2012 (x64) - RUS - (03) 09-2020
[Applications] :HKLM {89ca2a32-2b52-4595-8dfd-
6fe4757958d0}="C:\ProgramData\Package Cache\{89ca2a32-2b52-4595-8dfd-
6fe4757958d0}\vsta_setup.exe" /uninstall /quiet
### Microsoft Visual Studio Tools for Applications 2012 - (03) 09-2020
[Applications] :HKLM {5950473A-825B-3019-AF86-55F2F9A95FCB}=MsiExec.exe
/I{5950473A-825B-3019-AF86-55F2F9A95FCB}
### Microsoft Visual Studio Tools for Applications 2012 Finalizer - (03) 09-2020
[Applications] :HKLM {73A64813-E631-3807-8E78-BA679EDA09A8}=MsiExec.exe
/X{73A64813-E631-3807-8E78-BA679EDA09A8}
### Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support - ???
Language Pack - (03) 09-2020
[Applications] :HKLM {E237254B-36A1-3D27-815E-B37C13BE0796}=MsiExec.exe
/X{E237254B-36A1-3D27-815E-B37C13BE0796}
### Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x64
Hosting Support - PTB - (03) 09-2020
[Applications] :HKLM {2F884A17-E051-3DB7-B093-6274C98740F6}=MsiExec.exe
/X{2F884A17-E051-3DB7-B093-6274C98740F6}
### Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support - ???
?? ? - (03) 09-2020
[Applications] :HKLM {BA14C6F7-A633-3E88-831B-FCC197A5A17D}=MsiExec.exe
/X{BA14C6F7-A633-3E88-831B-FCC197A5A17D}
### Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support -
Module linguistique Fran�ais - (03) 09-2020
[Applications] :HKLM {DDDF762A-2D1D-36A3-9B70-70BD62B4EDCF}=MsiExec.exe
/X{DDDF762A-2D1D-36A3-9B70-70BD62B4EDCF}
### Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support -
Paquete de idioma ESN - (03) 09-2020
[Applications] :HKLM {73A36613-1F8F-3D94-B28A-4CC0E3CAECB5}=MsiExec.exe
/X{73A36613-1F8F-3D94-B28A-4CC0E3CAECB5}
### Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support -
Language Pack ITA - (03) 09-2020
[Applications] :HKLM {CD56C9B9-FB98-372B-8BC7-FDA312CD2511}=MsiExec.exe
/X{CD56C9B9-FB98-372B-8BC7-FDA312CD2511}
### Microsoft Visual Studio Tools for Applications 2012 x64 ???? - ??????? - (03)
09-2020
[Applications] :HKLM {36B98E65-CA52-348C-9ED7-77B926A16C2D}=MsiExec.exe
/X{36B98E65-CA52-348C-9ED7-77B926A16C2D}
### Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support -
DEU-Sprachpaket - (03) 09-2020
[Applications] :HKLM {FB501A6E-CA6D-36DA-8860-17F0E6D89155}=MsiExec.exe
/X{FB501A6E-CA6D-36DA-8860-17F0E6D89155}
### Microsoft Visual Studio Tools for Applications 2012 x64 ???? - ???????? -
(03) 09-2020
[Applications] :HKLM {5707EC26-AA9F-32C6-B7C1-347A3482CEC0}=MsiExec.exe
/X{5707EC26-AA9F-32C6-B7C1-347A3482CEC0}
### Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support -
(03) 09-2020
[Applications] :HKLM {03077B58-6ACF-32CA-B42A-EAA458C295A1}=MsiExec.exe
/X{03077B58-6ACF-32CA-B42A-EAA458C295A1}
### Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x86
Hosting Support - PTB - (03) 09-2020
[Applications] :HKLM {68DC347D-C1C0-3DE2-A53E-CCC71DA53E57}=MsiExec.exe
/X{68DC347D-C1C0-3DE2-A53E-CCC71DA53E57}
### ???????? ????? ??? ????????? ?????????? ?????? ??????? Microsoft Visual
Studio Tools ??? ?????? ? ???????????? 2012 (x86) - RUS - (03) 09-2020
[Applications] :HKLM {B8FD8F53-7E58-3DE5-A8FC-CB2B5CCF38CE}=MsiExec.exe
/X{B8FD8F53-7E58-3DE5-A8FC-CB2B5CCF38CE}
### Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support -
Language Pack ITA - (03) 09-2020
[Applications] :HKLM {955E1388-E1F1-320A-A018-24616ED60F95}=MsiExec.exe
/X{955E1388-E1F1-320A-A018-24616ED60F95}
### Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support - ???
?? ? - (03) 09-2020
[Applications] :HKLM {859C7535-6862-3867-B97E-816795E8AB65}=MsiExec.exe
/X{859C7535-6862-3867-B97E-816795E8AB65}
### Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support - ???
Language Pack - (03) 09-2020
[Applications] :HKLM {A3EB1DE3-9D3F-34C2-BDE6-5A8A4B98CC37}=MsiExec.exe
/X{A3EB1DE3-9D3F-34C2-BDE6-5A8A4B98CC37}
### Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support -
Paquete de idioma ESN - (03) 09-2020
[Applications] :HKLM {3371699A-C1EF-3AC3-B094-D338191FA6E9}=MsiExec.exe
/X{3371699A-C1EF-3AC3-B094-D338191FA6E9}
### Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support -
Module linguistique Fran�ais - (03) 09-2020
[Applications] :HKLM {CAAC553D-EE02-32D2-9F7E-FBC5C22E4C08}=MsiExec.exe
/X{CAAC553D-EE02-32D2-9F7E-FBC5C22E4C08}
### Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support -
DEU-Sprachpaket - (03) 09-2020
[Applications] :HKLM {CF06B8C4-F6FC-3A4B-ADD0-04A1CAC3DD86}=MsiExec.exe
/X{CF06B8C4-F6FC-3A4B-ADD0-04A1CAC3DD86}
### Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support -
(03) 09-2020
[Applications] :HKLM {0FE6DE07-8CBA-3F73-86B4-51B91E506D24}=MsiExec.exe
/X{0FE6DE07-8CBA-3F73-86B4-51B91E506D24}
### Microsoft Visual Studio Tools for Applications 2012 x86 ???? - ???????? -
(03) 09-2020
[Applications] :HKLM {7259BDDA-D888-309D-ADE1-84AA0CB24FE9}=MsiExec.exe
/X{7259BDDA-D888-309D-ADE1-84AA0CB24FE9}
### Microsoft Visual Studio Tools for Applications 2012 x86 ???? - ??????? - (03)
09-2020
[Applications] :HKCU OneDriveSetup.exe=C:\Users\Luis
Fernando\AppData\Local\Microsoft\OneDrive\20.143.0716.0003\OneDriveSetup.exe
/uninstall
### Microsoft OneDrive - (03) 09-2020
[Applications] :HKLM {dd8b09df-3ef8-49f1-bd1a-
65278435860b}="C:\ProgramData\Package Cache\{dd8b09df-3ef8-49f1-bd1a-
65278435860b}\vsta_setup.exe" /uninstall /quiet
### Microsoft Visual Studio Tools for Applications 2015 - (03) 09-2020
[Applications] :HKLM {20D2A362-23EB-3BDB-BAD3-F4510B2B32A5}=MsiExec.exe
/I{20D2A362-23EB-3BDB-BAD3-F4510B2B32A5}
### Microsoft Visual Studio Tools for Applications 2015 Finalizer - (03) 09-2020
[Applications] :HKLM {6D0ED930-AE5C-3289-ADA3-E6C3B13050DE}=MsiExec.exe
/X{6D0ED930-AE5C-3289-ADA3-E6C3B13050DE}
### Microsoft Visual Studio Tools for Applications 2015 x64 Hosting Support -
(03) 09-2020
[Applications] :HKLM {84DD3A17-A979-39BC-8816-8226CB7DF8A7}=MsiExec.exe
/X{84DD3A17-A979-39BC-8816-8226CB7DF8A7}
### Microsoft Visual Studio Tools for Applications 2015 x86 Hosting Support -
(03) 09-2020
[Applications] :HKLM PaintToolSAI=C:\PaintToolSAI\uninst.exe
### PaintTool SAI Ver.1 - (25) 08-2020
[Applications] :HKLM {B7C5EA94-B96A-41F5-BE95-25D78B486678}=MsiExec.exe
/X{B7C5EA94-B96A-41F5-BE95-25D78B486678}
### Splashtop Streamer - (25) 08-2020
[Applications] :HKLM Google Chrome="C:\Program Files
(x86)\Google\Chrome\Application\85.0.4183.83\Installer\setup.exe" --uninstall
--system-level --verbose-logging
### Google Chrome - (25) 08-2020
[Applications] :HKLM {02C95D2B-6CF6-4770-8E57-09088899A84E}=MsiExec.exe
/I{02C95D2B-6CF6-4770-8E57-09088899A84E}
### ANT Drivers Installer x64 - (15) 08-2020
[Applications] :HKLM {1250d7d8-bba9-44b6-b203-
77c222eb6aa8}="C:\ProgramData\Package Cache\{1250d7d8-bba9-44b6-b203-
77c222eb6aa8}\GarminExpressInstaller.exe" /uninstall /quiet
### Garmin Express - (15) 08-2020
[Applications] :HKLM F9D2A789F9CFF8CEC36B544F53877C80F1F73C46=rundll32.exe
C:\PROGRA~1\DIFX\4CBAA680AB78144E\DIFxAppA.dll, DIFxARPUninstallDriverPackage
C:\Windows\System32\DriverStore\FileRepository\ant_libusb.inf_amd64_54173307afc5581
5\ant_libusb.inf
### Pacote de Driver do Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers
(04/11/2012 1.2.40.201) - (15) 08-2020
[Applications] :HKLM D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2=rundll32.exe
C:\PROGRA~1\DIFX\4CBAA680AB78144E\DIFxAppA.dll, DIFxARPUninstallDriverPackage
C:\Windows\System32\DriverStore\FileRepository\usb_ant_siusbxp_3_1.inf_amd64_a786cf
555bc1afd4\usb_ant_siusbxp_3_1.inf
### Pacote de Driver do Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB
(02/06/2007 3.1) - (15) 08-2020
[Applications] :HKLM {D2173A79-000C-4B87-975C-F15C72E4E8E5}=MsiExec.exe
/I{D2173A79-000C-4B87-975C-F15C72E4E8E5}
### Garmin Express - (15) 08-2020
[Applications] :HKLM {5B9FBF50-C272-4919-BB13-1F38D1FFE5A3}=MsiExec.exe
/I{5B9FBF50-C272-4919-BB13-1F38D1FFE5A3}
### Elevated Installer - (15) 08-2020
[Applications] :HKCU Postman="C:\Users\Luis
Fernando\AppData\Local\Postman\Update.exe" --uninstall -s
### Postman-win64-7.30.1 - (14) 08-2020
[Applications] :HKLM {CC5730C7-C867-43BD-94DA-00BB3836906F}=MsiExec.exe
/X{CC5730C7-C867-43BD-94DA-00BB3836906F}
### Dell Digital Delivery Services - (31) 07-2020
[Applications] :HKLM {6D2933E3-DC42-44E5-B80E-DACDD64ADFF5}
### - (18) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC
### Nvidia Share - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay
### NVIDIA ShadowPlay 3.20.3.63 - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_Display.GFExperience="C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program
Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage
Display.GFExperience
### NVIDIA GeForce Experience 3.20.3.63 - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update
### Atualiza��es da NVIDIA 38.0.5.0 - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvVHCI
### NVIDIA Virtual Host Controller - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_ShieldWirelessController
### NVIDIA SHIELD Wireless Controller Driver - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs
### NVIDIA NodeJS - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend
### NVIDIA Backend - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_GFExperience.NvStreamSrv
### NVIDIA SHIELD Streaming - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session
### NVIDIA Session Container - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_NvContainer.ServiceUser
### NVIDIA NetworkService Container - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvAbHub
### NVIDIA ABHub - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User
### NVIDIA User Container - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_NvContainer.LocalSystem
### NVIDIA LocalSystem Container - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_NvContainer.MessageBus
### NVIDIA Message Bus for NvContainer - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_NvContainer.ContainerTelemetryApiHelper
### NVIDIA TelemetryApi helper for NvContainer - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog
### NVIDIA Watchdog Plugin for NvContainer - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus
### NVIDIA Optimus Update 38.0.5.0 - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_NvContainer.NvapiMonitor
### NVAPI Monitor plugin for NvContainer - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer
### NVIDIA Container - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core
### NVIDIA Update Core - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_HDAudio.Driver="C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program
Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage
HDAudio.Driver
### NVIDIA Driver de �udio HD 1.3.38.34 - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver
### NVIDIA Virtual Audio 4.13.0.0 - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry
### NVIDIA Telemetry Client - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer
### NVIDIA Install Application - (05) 07-2020
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_Display.Driver="C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program
Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage
Display.Driver
### NVIDIA Driver de gr�ficos 451.48 - (05) 07-2020
[Applications] :HKLM roblox-player="C:\Program Files
(x86)\Roblox\Versions\version-f44a4c3c254d47db\RobloxPlayerLauncher.exe" -uninstall
-alluser
### Roblox Player - (03) 07-2020
[Applications] :HKCU roblox-player="C:\Users\Luis
Fernando\AppData\Local\Roblox\Versions\version-
f44a4c3c254d47db\RobloxPlayerLauncher.exe" -uninstall
### Roblox Player for Luis Fernando - (03) 07-2020
[Applications] :HKLM VLC media player="C:\Program
Files\VideoLAN\VLC\uninstall.exe"
### VLC media player - (23) 06-2020
[Applications] :HKLM {0359AF05-E674-4ED4-B9FB-B77918617667}=MsiExec.exe
/I{0359AF05-E674-4ED4-B9FB-B77918617667}
### Oracle VM VirtualBox 6.1.10 - (07) 06-2020
[Applications] :HKLM HeidiSQL_is1="C:\Program Files\HeidiSQL\unins000.exe"
/SILENT
### HeidiSQL 11.0.0.5919 - (02) 06-2020
[Applications] :HKLM {F52124A9-E27F-4E6A-940E-1623C2042FF5}=MsiExec.exe
/I{F52124A9-E27F-4E6A-940E-1623C2042FF5}
### MySQL Workbench 8.0 CE - (02) 06-2020
[Applications] :HKLM {0C1D4CF2-5575-4786-834C-B0FC977E9714}}_is1="C:\Program
Files\Softdeluxe\Free Download Manager\unins000.exe" /SILENT
### Free Download Manager - (02) 06-2020
[Applications] :HKLM {44F7642C-AB7E-4468-B028-E8D08A0CBB0E}=MsiExec.exe
/X{44F7642C-AB7E-4468-B028-E8D08A0CBB0E}
### PuTTY release 0.73 (64-bit) - (02) 06-2020
[Applications] :HKLM {07191C68-840E-42A0-9A54-06AE8A7B1E38}=MsiExec.exe
/I{07191C68-840E-42A0-9A54-06AE8A7B1E38}
### TortoiseSVN 1.10.5.28651 (64 bit) - (02) 06-2020
[Applications] :HKCU ZoomUMX=C:\Users\Luis
Fernando\AppData\Roaming\Zoom\uninstall\Installer.exe /uninstall
### Zoom - (29) 05-2020
[Applications] :HKLM EditPad Lite 8=C:\Program Files\Just Great Software\EditPad
Lite 8\UnDeploy64.exe "C:\Program Files\Just Great Software\EditPad Lite
8\Deploy.log"
### EditPad Lite 8 v.8.1.1 - (28) 05-2020
[Applications] :HKLM FileZilla Client="C:\Program Files\FileZilla FTP
Client\uninstall.exe"
### FileZilla Client 3.48.1 - (28) 05-2020
[Applications] :HKLM {wampserver64}_is1="c:\wamp64\unins000.exe" /SILENT
### Wampserver64 3.1.9 - (27) 05-2020
[Applications] :HKLM {2F69FB2B-2C48-491C-B249-22C1BDCE1117}=MsiExec.exe
/I{2F69FB2B-2C48-491C-B249-22C1BDCE1117}
### Microsoft Visual C++ 2019 X86 Additional Runtime - 14.26.28720 - (27) 05-2020
[Applications] :HKLM {86380aef-fd23-4fc3-8723-
a98ccad8f2c6}="C:\ProgramData\Package Cache\{86380aef-fd23-4fc3-8723-
a98ccad8f2c6}\VC_redist.x86.exe" /uninstall /quiet
### Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.26.28720 - (27) 05-
2020
[Applications] :HKLM {31C9EB3A-5F0C-49E7-8E6C-D404E48F433D}=MsiExec.exe
/I{31C9EB3A-5F0C-49E7-8E6C-D404E48F433D}
### Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.26.28720 - (27) 05-2020
[Applications] :HKLM {7d607fb4-7e28-4c7a-a92f-
3fcdaf555faf}="C:\ProgramData\Package Cache\{7d607fb4-7e28-4c7a-a92f-
3fcdaf555faf}\VC_redist.x64.exe" /uninstall /quiet
### Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.26.28720 - (27) 05-
2020
[Applications] :HKLM {CB4A0FDE-1126-4AE2-97C6-A243692C3D95}=MsiExec.exe
/I{CB4A0FDE-1126-4AE2-97C6-A243692C3D95}
### Microsoft Visual C++ 2019 X64 Additional Runtime - 14.26.28720 - (27) 05-2020
[Applications] :HKLM {DD1EC0FD-3F0A-4740-A05E-1DCD14A6B0D1}=MsiExec.exe
/I{DD1EC0FD-3F0A-4740-A05E-1DCD14A6B0D1}
### Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.26.28720 - (27) 05-2020
[Applications] :HKLM {F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}=MsiExec.exe
/X{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}
### Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 - (27) 05-2020
[Applications] :HKLM {13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}=MsiExec.exe
/X{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}
### Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 - (27) 05-2020
[Applications] :HKLM {ce085a78-074e-4823-8dc1-
8a721b94b76d}="C:\ProgramData\Package Cache\{ce085a78-074e-4823-8dc1-
8a721b94b76d}\vcredist_x86.exe" /uninstall /quiet
### Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 - (27) 05-2020
[Applications] :HKLM {929FBD26-9020-399B-9A7A-751D61F0B942}=MsiExec.exe
/X{929FBD26-9020-399B-9A7A-751D61F0B942}
### Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 - (27) 05-2020
[Applications] :HKLM {7f51bdb9-ee21-49ee-94d6-
90afc321780e}="C:\ProgramData\Package Cache\{7f51bdb9-ee21-49ee-94d6-
90afc321780e}\vcredist_x64.exe" /uninstall /quiet
### Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 - (27) 05-2020
[Applications] :HKLM {A749D8E6-B613-3BE3-8F5F-045C84EBA29B}=MsiExec.exe
/X{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}
### Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 - (27) 05-2020
[Applications] :HKLM {3D6AD258-61EA-35F5-812C-B7A02152996E}=MsiExec.exe
/X{3D6AD258-61EA-35F5-812C-B7A02152996E}
### Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 - (27) 05-2020
[Applications] :HKLM {E7D4E834-93EB-351F-B8FB-82CDAE623003}=MsiExec.exe
/X{E7D4E834-93EB-351F-B8FB-82CDAE623003}
### Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 - (27) 05-2020
[Applications] :HKLM {95716cce-fc71-413f-8ad5-
56c2892d4b3a}="C:\ProgramData\Package Cache\{95716cce-fc71-413f-8ad5-
56c2892d4b3a}\vcredist_x86.exe" /uninstall /quiet
### Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 - (27) 05-2020
[Applications] :HKLM {764384C5-BCA9-307C-9AAC-FD443662686A}=MsiExec.exe
/X{764384C5-BCA9-307C-9AAC-FD443662686A}
### Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 - (27) 05-2020
[Applications] :HKLM {a1909659-0a08-4554-8af1-
2175904903a1}="C:\ProgramData\Package Cache\{a1909659-0a08-4554-8af1-
2175904903a1}\vcredist_x64.exe" /uninstall /quiet
### Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 - (27) 05-2020
[Applications] :HKLM {2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}=MsiExec.exe
/X{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}
### Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 - (27) 05-2020
[Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}.KB2151757
### - (27) 05-2020
[Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}.KB982573
### - (27) 05-2020
[Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}.KB2467173
### - (27) 05-2020
[Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}=MsiExec.exe
/X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
### Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (27) 05-2020
[Applications] :HKLM {1D8E6291-B0D5-35EC-8441-6616F567A0F7}.KB2467173
### - (27) 05-2020
[Applications] :HKLM {1D8E6291-B0D5-35EC-8441-6616F567A0F7}.KB2151757
### - (27) 05-2020
[Applications] :HKLM {1D8E6291-B0D5-35EC-8441-6616F567A0F7}.KB982573
### - (27) 05-2020
[Applications] :HKLM {1D8E6291-B0D5-35EC-8441-6616F567A0F7}=MsiExec.exe
/X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
### Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (27) 05-2020
[Applications] :HKLM {350AA351-21FA-3270-8B7A-835434E766AD}=MsiExec.exe
/X{350AA351-21FA-3270-8B7A-835434E766AD}
### Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 - (27) 05-2020
[Applications] :HKLM {A49F249F-0C91-497F-86DF-B2585E8E76B7}=MsiExec.exe
/X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
### Microsoft Visual C++ 2005 Redistributable - (27) 05-2020
[Applications] :HKLM {6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}=MsiExec.exe
/X{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}
### Microsoft Visual C++ 2005 Redistributable (x64) - (27) 05-2020
[Applications] :HKLM {90120000-0030-0000-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-0030-0000-0000-0000000FF1CE}
### Microsoft Office Enterprise 2007 - (27) 05-2020
[Applications] :HKLM ENTERPRISE="C:\Program Files (x86)\Common Files\Microsoft
Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll
OSETUP.DLL
### Microsoft Office Enterprise 2007 - (27) 05-2020
[Applications] :HKLM {90120000-002A-0000-1000-0000000FF1CE}=MsiExec.exe
/X{90120000-002A-0000-1000-0000000FF1CE}
### Microsoft Office Office 64-bit Components 2007 - (27) 05-2020
[Applications] :HKLM {90120000-00A1-0416-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-00A1-0416-0000-0000000FF1CE}
### Microsoft Office OneNote MUI (Portuguese (Brazil)) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-0015-0416-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-0015-0416-0000-0000000FF1CE}
### Microsoft Office Access MUI (Portuguese (Brazil)) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-001B-0416-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-001B-0416-0000-0000000FF1CE}
### Microsoft Office Word MUI (Portuguese (Brazil)) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-0019-0416-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-0019-0416-0000-0000000FF1CE}
### Microsoft Office Publisher MUI (Portuguese (Brazil)) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-002C-0416-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-002C-0416-0000-0000000FF1CE}
### Microsoft Office Proofing (Portuguese (Brazil)) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-001F-0409-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-001F-0409-0000-0000000FF1CE}
### Microsoft Office Proof (English) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-001F-0C0A-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-001F-0C0A-0000-0000000FF1CE}
### Microsoft Office Proof (Spanish) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-001F-0416-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-001F-0416-0000-0000000FF1CE}
### Microsoft Office Proof (Portuguese (Brazil)) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-002A-0416-1000-0000000FF1CE}=MsiExec.exe
/X{90120000-002A-0416-1000-0000000FF1CE}
### Microsoft Office Shared 64-bit MUI (Portuguese (Brazil)) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-0044-0416-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-0044-0416-0000-0000000FF1CE}
### Microsoft Office InfoPath MUI (Portuguese (Brazil)) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-00BA-0416-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-00BA-0416-0000-0000000FF1CE}
### Microsoft Office Groove MUI (Portuguese (Brazil)) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-0018-0416-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-0018-0416-0000-0000000FF1CE}
### Microsoft Office PowerPoint MUI (Portuguese (Brazil)) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-001A-0416-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-001A-0416-0000-0000000FF1CE}
### Microsoft Office Outlook MUI (Portuguese (Brazil)) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-0016-0416-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-0016-0416-0000-0000000FF1CE}
### Microsoft Office Excel MUI (Portuguese (Brazil)) 2007 - (27) 05-2020
[Applications] :HKLM {90120000-006E-0416-0000-0000000FF1CE}=MsiExec.exe
/X{90120000-006E-0416-0000-0000000FF1CE}
### Microsoft Office Shared MUI (Portuguese (Brazil)) 2007 - (27) 05-2020
[Applications] :HKLM WinRAR archiver=C:\Program Files\WinRAR\uninstall.exe
### WinRAR 5.90 (64-bit) - (27) 05-2020
[Applications] :HKLM {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}=MsiExec.exe
/I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
### Google Update Helper - (27) 05-2020
[Applications] :HKLM MozillaMaintenanceService="C:\Program Files (x86)\Mozilla
Maintenance Service\uninstall.exe"
### Mozilla Maintenance Service - (27) 05-2020
[Applications] :HKLM Mozilla Firefox 76.0.1 (x64 pt-BR)="C:\Program Files\Mozilla
Firefox\uninstall\helper.exe"
### Mozilla Firefox 76.0.1 (x64 pt-BR) - (27) 05-2020
[Applications] :HKLM {70E9F8CC-A23E-4C25-B292-C86C1821587C}=MsiExec.exe
/X{70E9F8CC-A23E-4C25-B292-C86C1821587C}
### Dell Update for Windows 10 - (11) 10-2019
[Applications] :HKLM {18469ED8-8C36-4CF7-BD43-0FC9B1931AF8}=MsiExec.exe
/X{18469ED8-8C36-4CF7-BD43-0FC9B1931AF8}
### Dell Power Manager Service - (11) 10-2019
[Applications] :HKLM {4674F112-9AB7-4701-AEC0-C1FD1FE7CD4E}=MsiExec.exe
/X{4674F112-9AB7-4701-AEC0-C1FD1FE7CD4E}
### Dell Mobile Connect Drivers - (11) 10-2019
[Applications] :HKLM {87FE5B09-5248-47A7-916B-65A0F4B9868E}=MsiExec.exe
/I{87FE5B09-5248-47A7-916B-65A0F4B9868E}
### SmartByte Drivers and Services - (11) 10-2019
[Applications] :HKLM {5f9ca6e9-c7d9-49c9-88fa-
196d35d8eb82}="C:\ProgramData\Package Cache\{5f9ca6e9-c7d9-49c9-88fa-
196d35d8eb82}\DellSupportAssistRemediationServiceInstaller.exe" /uninstall /quiet
### Dell SupportAssist Remediation - (11) 10-2019
[Applications] :HKLM {8FA6BC9C-CF6A-45E7-92BD-1585DFAFB32C}=MsiExec.exe
/I{8FA6BC9C-CF6A-45E7-92BD-1585DFAFB32C}
### Dell SupportAssist Remediation - (11) 10-2019
[Applications] :HKLM {31581d2d-a9e8-4f15-aa85-
d6f9473b619e}="C:\ProgramData\Package Cache\{31581d2d-a9e8-4f15-aa85-
d6f9473b619e}\DellUpdateSupportAssistPlugin.exe" /uninstall /quiet
### Dell Update - SupportAssist Update Plugin - (11) 10-2019
[Applications] :HKLM {AADBB088-81DE-4EC8-B176-D98669BE09D4}=MsiExec.exe
/I{AADBB088-81DE-4EC8-B176-D98669BE09D4}
### Dell Update - SupportAssist Update Plugin - (11) 10-2019
[Applications] :HKLM {654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}=C:\Program
Files\Intel\Intel(R) Dynamic Platform and Thermal Framework\Uninstall\setup.exe
-uninstall
### Intel(R) Dynamic Platform and Thermal Framework - (11) 10-2019
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetryContainer
### NVIDIA Telemetry Container - (11) 10-2019
[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}_Display.PhysX="C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program
Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage
Display.PhysX
### NVIDIA Software do sistema PhysX 9.19.0218 - (11) 10-2019
[Applications] :HKLM {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}="C:\Program Files
(x86)\Intel\Intel(R) Processor Graphics\Uninstall\igxpin.exe" -uninstall
### Intel(R) Processor Graphics - (11) 10-2019
[Applications] :HKLM {2CE8F0BB-6866-467B-9843-F5623103B680}=MsiExec.exe
/X{2CE8F0BB-6866-467B-9843-F5623103B680}
### Killer Ethernet Performance Driver Suite UWD - (11) 10-2019
[Applications] :HKLM {E7086B15-806E-4519-A876-DBA9FDDE9A13}="C:\Program Files
(x86)\InstallShield Installation Information\{E7086B15-806E-4519-A876-
DBA9FDDE9A13}\Setup.exe" -runfromtemp -l0x0416 -removeonly
### Qualcomm 11ac Wireless LAN&Bluetooth Installer - (11) 10-2019
[Applications] :HKLM {E7086B15-806E-4519-A876-DBA9FDDE9A13}
### - (11) 10-2019
[Applications] :HKLM {1CEAC85D-2590-4760-800F-
8DE5E91F3700}="C:\ProgramData\Intel\Package Cache\{1CEAC85D-2590-4760-800F-
8DE5E91F3700}\Setup.exe" -uninstall
### Intel(R) Management Engine Components - (11) 10-2019
[Applications] :HKLM {99ee3c29-c7cd-450f-8db9-
d43cc49de1c7}="C:\ProgramData\Package Cache\{99ee3c29-c7cd-450f-8db9-
d43cc49de1c7}\iclsClientInstaller.exe" /uninstall /quiet
### Intel(R) Trusted Connect Services Client - (11) 10-2019
[Applications] :HKLM {C9552825-7BF2-4344-BA91-D3CD46F4C442}=MsiExec.exe
/I{C9552825-7BF2-4344-BA91-D3CD46F4C442}
### Intel(R) Trusted Connect Service Client x64 - (11) 10-2019
[Applications] :HKLM {C9552825-7BF2-4344-BA91-D3CD46F4C441}=MsiExec.exe
/I{C9552825-7BF2-4344-BA91-D3CD46F4C441}
### Intel(R) Trusted Connect Service Client x86 - (11) 10-2019
[Applications] :HKLM {B557A9A1-D64B-43D7-B598-F7BAAE897CF3}=MsiExec.exe
/I{B557A9A1-D64B-43D7-B598-F7BAAE897CF3}
### Intel(R) Management Engine Components - (11) 10-2019
[Applications] :HKLM {B81577B2-3AD0-4AFD-A19C-87F673C09D0C}=MsiExec.exe
/I{B81577B2-3AD0-4AFD-A19C-87F673C09D0C}
### Microsoft VC++ redistributables repacked. - (11) 10-2019
[Applications] :HKLM {3479FCE3-F7D2-4980-819A-767941440932}=MsiExec.exe
/I{3479FCE3-F7D2-4980-819A-767941440932}
### Intel(R) Management Engine Driver - (11) 10-2019
[Applications] :HKLM {09DAB6B6-FBEF-4AC5-AE93-BFF01A0B796D}=MsiExec.exe
/I{09DAB6B6-FBEF-4AC5-AE93-BFF01A0B796D}
### Intel(R) Management Engine Components - (11) 10-2019
[Applications] :HKLM {62678770-F459-4903-83E3-A2968F6CC242}=MsiExec.exe
/I{62678770-F459-4903-83E3-A2968F6CC242}
### Microsoft VC++ redistributables repacked. - (11) 10-2019
[Applications] :HKLM {30F0067F-DD79-431B-BA5F-6CB4897785A5}=MsiExec.exe
/X{30F0067F-DD79-431B-BA5F-6CB4897785A5}
### Software Thunderbolt� - (11) 10-2019
[Applications] :HKLM {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}="C:\Program Files
(x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-
958108FE7DBC}\Setup.exe" -runfromtemp -removeonly
### Realtek High Definition Audio Driver - (11) 10-2019
[Applications] :HKLM {C844CC39-BC28-46CA-8239-3F37D8FE2A59}=MsiExec.exe
/I{C844CC39-BC28-46CA-8239-3F37D8FE2A59}
### Intel(R) Chipset Device Software - (11) 10-2019
[Applications] :HKLM {55d73ea7-6354-42db-8831-
02d048ae57f8}="C:\ProgramData\Package Cache\{55d73ea7-6354-42db-8831-
02d048ae57f8}\SetupChipset.exe" /uninstall /quiet
### Software de dispositivo do Chipset Intel� - (11) 10-2019
[Applications] :HKLM {409CB30E-E457-4008-9B1A-ED1B9EA21140}="C:\Program Files
(x86)\Intel\Package Cache\{409CB30E-E457-4008-9B1A-ED1B9EA21140}\Setup.exe"
-uninstall
### Intel(R) Rapid Storage Technology - (11) 10-2019
[Applications] :HKLM {05B14383-780D-407E-99CD-F64406E45BB2}=MsiExec.exe
/I{05B14383-780D-407E-99CD-F64406E45BB2}
### Intel(R) Rapid Storage Technology - (11) 10-2019
[Applications] :HKLM {C81FD018-F151-460F-B4F9-0D58039503E2}=MsiExec.exe
/I{C81FD018-F151-460F-B4F9-0D58039503E2}
### Intel� Optane� Pinning Explorer Extensions - (11) 10-2019
[Applications] :HKLM MPlayer2
### - (19) 03-2019
[Applications] :HKLM DXM_Runtime
### - (19) 03-2019
[Applications] :HKLM MPlayer2
### - (19) 03-2019
[Applications] :HKLM DXM_Runtime
### - (19) 03-2019
[Applications] :HKLM AddressBook
### - (19) 03-2019
[Applications] :HKLM IE40
### - (19) 03-2019
[Applications] :HKLM IE4Data
### - (19) 03-2019
[Applications] :HKLM DirectDrawEx
### - (19) 03-2019
[Applications] :HKLM Connection Manager
### - (19) 03-2019
[Applications] :HKLM Fontcore
### - (19) 03-2019
[Applications] :HKLM IE5BAKEX
### - (19) 03-2019
[Applications] :HKLM MobileOptionPack
### - (19) 03-2019
[Applications] :HKLM IEData
### - (19) 03-2019
[Applications] :HKLM WIC
### - (19) 03-2019
[Applications] :HKLM SchedulingAgent
### - (19) 03-2019
[Applications] :HKLM WIC
### - (19) 03-2019
[Applications] :HKLM DirectDrawEx
### - (19) 03-2019
[Applications] :HKLM Connection Manager
### - (19) 03-2019
[Applications] :HKLM SchedulingAgent
### - (19) 03-2019
[Applications] :HKLM AddressBook
### - (19) 03-2019
[Applications] :HKLM IE5BAKEX
### - (19) 03-2019
[Applications] :HKLM IE40
### - (19) 03-2019
[Applications] :HKLM Fontcore
### - (19) 03-2019
[Applications] :HKLM MobileOptionPack
### - (19) 03-2019
[Applications] :HKLM IEData
### - (19) 03-2019
[Applications] :HKLM IE4Data
### - (19) 03-2019
[FI20]
FI2=-1,,,0,,

FI2=14544,11BD2C9F9E2397C9A16E0990E4ED2CF0679498FE0FD418A3DFDAC60B5C160EE5,0C0195C4
8B6B8582FA6F6373032118DA,1,"Noriyuki
MIYAZAKI",C:\LIXO\CPUTHERMOMETER\CPUTHERMOMETERLIB.SYS

FI2=813384,2435E1E50C097608E6157EFB1036946CFDD02D86728E8E00A02B207BEE36E60D,C6D0721
E9156EB2A40A04BB38BE0B2A5,1,"Microsoft
Corporation",C:\PROGRA~2\COMMON~1\MICROS~1\DW\DW20.EXE

FI2=44344,DF890242AC7CB651B4D17EA653C495761B9DCD0BF5BD3CBDFBA656DFB3CDA642,1264F787
E46DC572FA274CA09B446E01,1,"Microsoft
Corporation",C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL

FI2=1411816,932432DAF3DF3155AE79042A506E40867E1B91032AFB12CFF2557A9A2AC5EE81,FE8228
49FF03A3A25F8A691E57210BCB,1,"Microsoft
Corporation",C:\PROGRA~2\COMMON~1\SYSTEM\OLE DB\MSDMINE.DLL

FI2=3797080,50470B59E60D5F979ED87CB55ACDCEB8646D84C25325159187CD2517952CD15E,BE492F
783B72E6018C91EB3D47FFC44B,1,"Intel(R) Embedded Subsystems and IP Blocks
Group",C:\PROGRA~2\INTEL\INTEL(~1\MEWMIP~1\MEPROV.DLL

FI2=40424,F050A694B8090D58E150663F1F04D2DB87566AE86993FF86C9ED01E8734483B3,7FC19DA1
DC70C78D2FBD7A1D10942051,1,"Microsoft
Corporation",C:\PROGRA~2\MICROS~1\OFFICE12\REFIEBAR.DLL

FI2=92976,BB045DBD75AF66394C58D7800ADA4771B5879346BC3F2FB238415505F759F7A8,0CD5C0E6
BF2B84C3E13B5DCFE423DF68,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\COMMON
FILES\DESIGNER\MSADDNDR.DLL

FI2=710776,06D0B436D252A6913CF444C968F4D8575818EDC9EA4B03D949E1E09BE47BAACB,B0DE85A
29C0C43921883F2572F24042E,1,"Oracle America, Inc.",C:\PROGRAM FILES (X86)\COMMON
FILES\JAVA\JAVA UPDATE\JUSCHED.EXE
FI2=-1,,,0,,C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\DW\DW.EXE

FI2=813384,2435E1E50C097608E6157EFB1036946CFDD02D86728E8E00A02B207BEE36E60D,C6D0721
E9156EB2A40A04BB38BE0B2A5,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\COMMON
FILES\MICROSOFT SHARED\DW\DW20.EXE

FI2=991736,60D03B5408984BAE96AC81FAB603DD2E0F23132C031034D0CF973487AC3524B1,3555F26
1FD7D692CD5A1323C81744475,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\COMMON
FILES\MICROSOFT SHARED\HELP\HXDS.DLL

FI2=505136,DA499F2743478D85E6145F50F9E8C9DBE087980097BC307E9D0A0264862B974F,60FCD9E
1287FB74AF4436986FB97BABF,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\COMMON
FILES\MICROSOFT SHARED\OFFICE12\MSSOAP30.DLL

FI2=441136,4B9D1E4EF83ECED6C77F23D9879C124534F7053D7423E3A2D0F67A4A720CEA94,84DE1DD
996B48B05ACE31AD015FA108A,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\COMMON
FILES\MICROSOFT SHARED\OFFICE12\ODSERV.EXE
FI2=145184,6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71,5A432A0
42DAE460ABE7199B758E8606C,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\COMMON
FILES\MICROSOFT SHARED\SOURCE ENGINE\OSE.EXE

FI2=189728,9CC82C5221F11850419A796D48D5452B3DEE0C8E8E85A818F4AAA869673F9740,543A4EF
0923BF70D126625B034EF25AF,1,"Protexis Inc.",C:\PROGRAM FILES (X86)\COMMON
FILES\PROTEXIS\LICENSE SERVICE\PSISERVICE_2.EXE

FI2=744448,861DA8BDA41DE59618E2DAEBA35F196680D6FD8E01F84BB6F716D0CDB7602F7E,08CB400
8D47BE2A9C139A9787CDD049C,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\COMMON
FILES\SYSTEM\WAB32.DLL

FI2=964096,B40DDD26841FB101CB00125EC5117EF6853F8A92B88C17BD5EB0F2C869C6AA13,0456433
696B4D26387D1531CA23501C4,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\COMMON
FILES\SYSTEM\WAB32RES.DLL

FI2=95616,47DA4DCAF78D3EAE450F03C81DFFDC3C433EF72237ADFAD2ABBAB7BA021C53D3,A3391C38
C25034A09DE9FA9F28BDB368,1,"Open Source Developer, Stefan KUENG",C:\PROGRAM FILES
(X86)\COMMON FILES\TORTOISEOVERLAYS\TORTOISEOVERLAYS.DLL

FI2=324312,1CA980B5DD3284E95A7D0F6E80015A39F47ACA681B03816F094B1195642E31CA,9DC06AB
114EA0A1CE557A1D8528E7669,1,"Dell Inc",C:\PROGRAM FILES (X86)\DELL DIGITAL DELIVERY
SERVICES\AUTOMAPPER.DLL

FI2=26320,240560F87AD9DC9007D979C46057A912BEE4AA88FFBAE19082260F35846B25DC,D77C5F9D
2C278483F294FA01AD21E6D0,1,"Dell Inc",C:\PROGRAM FILES (X86)\DELL DIGITAL DELIVERY
SERVICES\CLIENTCONTRACTS.DLL

FI2=40656,AEBFB6B8C1515E93FCAB5E164CFDDF364F5397C04BF625CF5A5A4C906AF272DB,80559CA1
0BB972AD95297BF91CEEB074,1,"Dell Inc",C:\PROGRAM FILES (X86)\DELL DIGITAL DELIVERY
SERVICES\DELL.D3.WINSVC.EXE

FI2=37056,51E96956773164DDE8D7FD558B8386F27E9268612F58A50252A6FB9D19C6B83A,6CA7806C
3CFE3327A2F3EA1C08B9250C,1,"Dell Inc",C:\PROGRAM FILES
(X86)\DELL\UPDATESERVICE\SERVICESHELL.EXE

FI2=7722142,C33E8C805B79E8344EF1D98187D6D8ABA4A7287B0AE612F431EA7FFD3FC4BA33,EF437E
E119CC845B7684552A248499D9,2,,C:\PROGRAM FILES (X86)\DIRECT WAV MP3
SPLITTER\BASS.DLL

FI2=1099264,B7FABEF3DF7B126F051E170FC4BCC801F73BAE4B7341121EBDE262495B4A6C7D,4E2C64
1A3D34EDA15AFC81A91A3DA3FE,2,,C:\PROGRAM FILES (X86)\DIRECT WAV MP3
SPLITTER\BASS_FX.DLL

FI2=1030309,67A3F60690FA5D6EDECF87E54A193EC42E3C862B3571CBBA486CFA43C033AE4A,49C3E1
E36D6DC3761AA15E53F20D3B23,2,,C:\PROGRAM FILES (X86)\DIRECT WAV MP3
SPLITTER\UNINS000.EXE

FI2=247808,FF6751BBE4C13247610B9E68E406D75F07D93B8001BE849044DCF2E001D278E5,FB7AE08
6A094BA62708827F758A3977C,2,,C:\PROGRAM FILES (X86)\DISKFIXER\DISKFIXER.EXE

FI2=40432,9B4FA93CD92C81F4556175CB213B2D4F6616C0095DDBF579130C8DE1194DDB97,412EA447
7DF2ED4B91D874FFBF356AB5,1,"Garmin International, Inc.",C:\PROGRAM FILES
(X86)\GARMIN\EXPRESS SELFUPDATER\EXPRESSSELFUPDATER.EXE

FI2=31045616,2F8B728AFD593F66BBBA97382718AA741B678333BF9ED3BB1DA5649B039731C6,FB599
427BD0528876B7E21C29D620EBD,1,"Garmin International, Inc.",C:\PROGRAM FILES
(X86)\GARMIN\EXPRESS\EXPRESS.EXE
FI2=1322992,241A9C249468E151D97D9768AB2C2F90D78A9070965F87B0713D6F53408A461D,26A91C
2F2C4F10345CD5B7E4BCF1928A,1,"Google LLC",C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\85.0.4183.83\ELEVATION_SERVICE.EXE

FI2=12784,8ED382E96E3B147E73BA4C629A14B460C1861173B696F90476536836118AB283,089E014F
B538FF2BD63D12D1896339A3,1,"Google LLC",C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\85.0.4183.83\EVENTLOG_PROVIDER.DLL

FI2=2150896,67EB9077AB29C8A45578C6636D68014E60AEB0F77FBFA5C48FB93EE5E0D85E41,9586D6
F3312D6A78A743DC51C67C3A7F,1,"Google LLC",C:\PROGRAM FILES
(X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE

FI2=625240,F2BEA6063D4E8300A119C0227CD59B7A3E744E56B41800F753711830C0511EC4,BF67431
601DA23BD1B5E3B6D5327AC06,1,"Intel(R) Embedded Subsystems and IP Blocks
Group",C:\PROGRAM FILES (X86)\INTEL\INTEL(R) MANAGEMENT ENGINE
COMPONENTS\LMS\LMS.EXE

FI2=2302168,715079CD7BA7DD7E7BB403E56D5604FF2CA79DE6C7457725DD156D16730F6B3D,5B88F4
2CD16A4E5ECFD40982B6F57A0E,1,"Intel(R) Client Connectivity Division SW",C:\PROGRAM
FILES (X86)\INTEL\THUNDERBOLT SOFTWARE\TBTSVC.EXE

FI2=441560,1B34E63C93870817D4547F15FE5A2F764765B4C525A217A42D6A46054F777C60,31F7D8B
DA3F480D705892AADD1616B83,1,"Intel(R) Client Connectivity Division SW",C:\PROGRAM
FILES (X86)\INTEL\THUNDERBOLT SOFTWARE\THUNDERBOLT.EXE

FI2=45056,EBD8BDC8433A0296FFAD103A05FBBAED3AE6C0F8AA2993B4633B81C77AEE491A,12CE491E
105415B3D3D7A3B9D4253B92,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\INTERNET
EXPLORER\EXTEXPORT.EXE

FI2=50176,89B3A06D1B22FA71D49AA40CA2D801B3FACF5F25C7FBEA31DA5BC9098CAA7E62,D6A97214
2A39CF9E77FAF2A91A84AFE6,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\INTERNET
EXPLORER\HMMAPI.DLL

FI2=480768,F5988C2F3F209FBD4915EEDFAF77A5F6E7CD8E608943538A600232B3BF66793C,8CDFC7F
17126F50F7499E420F7B71B02,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\INTERNET
EXPLORER\IEINSTAL.EXE

FI2=221696,0FD62BA0DD6720A0DF117A06CEF0321288F6946B0E2920FE047582FABF907050,E3D8D38
CBDC2751F3A0BEA654AA959EB,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\INTERNET
EXPLORER\IELOWUTIL.EXE

FI2=315392,AC1ABD33454CBCEE7CDBD60BDD7681094E9195EC67286349D51756302D4AC448,D1889CB
571A75DCA4C8E7CDFC2E52A77,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\INTERNET
EXPLORER\IESHIMS.DLL

FI2=816280,A389977229B2114FCC7B6EA80FC480D9EE06840EEC994A3EE31A5ECF946F0A43,2EE1C17
BA0344E6E58C572F52660D1F3,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\INTERNET
EXPLORER\IEXPLORE.EXE

FI2=9357304,BC5E2A75D424267F1DB195B19C02BD288A25F08E291479A7DF949BA836D26098,247A31
5492BB1F8D328BD681B24F423B,1,"Microsoft Corporation",C:\PROGRAM FILES
(X86)\MICROSOFT VISUAL STUDIO 9.0\COMMON7\IDE\MSENV.DLL

FI2=442872,4152653857A8B15FC18AE8D1F9DF747C9C020F27A8BFEDCFF4C809D4E9F1E8B2,12DB38A
3689FAF8E90DECE22DD166082,1,"Microsoft Corporation",C:\PROGRAM FILES
(X86)\MICROSOFT VISUAL STUDIO 9.0\COMMON7\IDE\VSTA.EXE

FI2=63064,9762F46E77194CAE08C5485A1C3264C948CF4A80B92B0148E818937823FFFD3D,3B69FEAE
FE2C543C107EE90A32746507,1,"LEAD Technologies, Inc",C:\PROGRAM FILES
(X86)\MICROSOFT WORKS\LFBMP13N.DLL

FI2=407128,37B86C7BAD3F49B5301457414D74B9ACFE0D7264B0D7D27AB906D73EE415F3E0,E7DADE1
A95B2143479B01CFB4B0FCE5D,1,"LEAD Technologies, Inc",C:\PROGRAM FILES
(X86)\MICROSOFT WORKS\LFCMP13N.DLL

FI2=75352,008ADD01819AE7D3F4DD0810EE453E762BDA492B3B291A3701AE330407F5EEBC,9D4D8D60
D50179E58C95A1CDB933C1F8,1,"LEAD Technologies, Inc",C:\PROGRAM FILES
(X86)\MICROSOFT WORKS\LFGIF13N.DLL

FI2=202328,A753A855DC0BD401F50CFAC0C31970DF6C4C857944F2E3C6EC0772100DD20314,CE14C82
0A59A4FB07FDAD8FF9AD6E613,1,"LEAD Technologies, Inc",C:\PROGRAM FILES
(X86)\MICROSOFT WORKS\LFPNG13N.DLL

FI2=67160,A08D3B335B5B1CDBD7C1B91CC693BE258841B02388EFF62233270C1DD3E2E53F,EA63CD14
EC59108E6D32E2E0AA41DD83,1,"LEAD Technologies, Inc",C:\PROGRAM FILES
(X86)\MICROSOFT WORKS\LFWMF13N.DLL

FI2=304728,E6AC35BCBEF5633FAA7DCB9FA844BCA6840357C3020F862F124FB0B5A6493E64,6986C76
EE9A2679F570E7EBAFB0E6B89,1,"LEAD Technologies, Inc",C:\PROGRAM FILES
(X86)\MICROSOFT WORKS\LTDIS13N.DLL

FI2=169560,7C5C1E6132066C3118CBEEF71D1ABC4D1B82FFA1A5114DC9F436B5DA7BA3079F,99F345B
31F6B84F450CC717013E1BB23,1,"LEAD Technologies, Inc",C:\PROGRAM FILES
(X86)\MICROSOFT WORKS\LTFIL13N.DLL

FI2=456280,BDD5C0C5FC4211E6755752F184276FE34378E115FA3894EA203CE414ECFA59D3,1E41889
28AFA46A106066B48B74F2C63,1,"LEAD Technologies, Inc",C:\PROGRAM FILES
(X86)\MICROSOFT WORKS\LTIMG13N.DLL

FI2=468568,4CC111230D103BE9082154FA170918D6C0A160ECFF61690F549968F8DAAAB543,9F55BFD
2C68DDD94F261B4E7A177042B,1,"LEAD Technologies, Inc",C:\PROGRAM FILES
(X86)\MICROSOFT WORKS\LTKRN13N.DLL

FI2=133896,A8C0A366E22C2A5B31ED694080ED52DF845B5A739D3E4FDE26662DC4F5BC2187,36901D5
B280AF326FD519CE27C5930D5,1,"Microsoft Corporation",C:\PROGRAM FILES
(X86)\MICROSOFT WORKS\WKIMG90.DLL

FI2=399248,CE04B73176096D1BA0CF4BF093D5654D0853C9F886874961A6BFE973892BDCA1,2DEB058
1CB2990281E34B30B128F57CC,1,"Microsoft Corporation",C:\PROGRAM FILES
(X86)\MICROSOFT\EDGE\APPLICATION\85.0.564.70\BHO\IE_TO_EDGE_BHO.DLL

FI2=514960,DF8C481F9E3B511589FDB94165F3F265EDEB85EFFDD6D060EFACD77C45CBABE7,185906E
A90B80DBA836A6BBFD5842CEA,1,"Microsoft Corporation",C:\PROGRAM FILES
(X86)\MICROSOFT\EDGE\APPLICATION\85.0.564.70\BHO\IE_TO_EDGE_BHO_64.DLL

FI2=1537424,D1BE52A78174837E9FEFA4091780C8A6BCF18853D8DC9BCC1DFBD1CE4D8E0DC7,063BCF
558C0118E667C4D159FB4D042F,1,"Microsoft Corporation",C:\PROGRAM FILES
(X86)\MICROSOFT\EDGE\APPLICATION\85.0.564.70\ELEVATION_SERVICE.EXE

FI2=14736,643A8F30D8F3E512F249475B9325392ED46E1BF0D096A3F54D83F408FD7BF5FF,61DA8274
6FB60FBF59098B1058467311,1,"Microsoft Corporation",C:\PROGRAM FILES
(X86)\MICROSOFT\EDGE\APPLICATION\85.0.564.70\EVENTLOG_PROVIDER.DLL

FI2=2882440,0CC996750A0DA9FD734980C75E8A5EA487A5D111689F6C512AB40DE63EDA2743,85E98A
336AA437D912437149017A9C90,1,"Microsoft Corporation",C:\PROGRAM FILES
(X86)\MICROSOFT\EDGE\APPLICATION\MSEDGE.EXE

FI2=2912672,C59410D9DEC7BD4C923DA035915386EAE92B469124BC845E0F03299751AA7094,DF8E3E
361C0430C4FD1D00AF836213AB,1,"Microsoft Corporation",C:\PROGRAM FILES
(X86)\MICROSOFT\EDGEUPDATE\1.3.135.41\MSEDGEUPDATE.DLL

FI2=224160,9C256D462F0640855E1AB3D2C658CB4EDD7E061EB2782FD03481196D5ED93DB5,D21437C
262283650E8349AFA573AC03A,1,"Microsoft Corporation",C:\PROGRAM FILES
(X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE

FI2=244424,7DC42507C79F7D3DC2AD5EF2851C4960EC003329DA601F2BF7CFF5F1FC9E2727,AE54E75
A32B411F10B2A8C30937E42D0,1,"Mozilla Corporation",C:\PROGRAM FILES (X86)\MOZILLA
MAINTENANCE SERVICE\MAINTENANCESERVICE.EXE

FI2=90944,47C16EEE05B603F8E4DC34AD6E1C0458D7146081F4B71DAEF6475B8198D9233A,BC58FF41
C22DD3DD1538DFE2FBD9A968,2,,C:\PROGRAM FILES (X86)\MOZILLA MAINTENANCE
SERVICE\UNINSTALL.EXE

FI2=29775856,B03E14DCD76BB7F7C7651A69CFDEDCFE558C30475E8CC63C591C4F919AAE3151,E688E
9E18DD181862DAB72D940F68011,1,"NVIDIA Corporation",C:\PROGRAM FILES (X86)\NVIDIA
CORPORATION\NVNODE\NVIDIA WEB HELPER.EXE

FI2=646456,1EA438FA987B1AE452CFC5278E5ECC6ADE82F894A2C41533FF89540CD7704CC7,C32280B
0B8A9B09F3FDEB9102811B111,1,"NVIDIA Corporation",C:\PROGRAM FILES (X86)\NVIDIA
CORPORATION\NVNODE\NVNODEJSLAUNCHER.EXE

FI2=755424,2DCEE970EDA095467302B652EB2F355F647657384375C4B6EF3B436FEE559B46,6A8B99A
0327D502128B857BE189D4851,1,"Splashtop Inc.",C:\PROGRAM FILES
(X86)\SPLASHTOP\SPLASHTOP REMOTE\SERVER\SRSERVICE.EXE

FI2=918088,A629C61D8E2E03D39D089190D4444C189A10CB509E3CC6E33B09FABACF75603D,D59AE08
3FE483A9CE512A3FF5B6497FA,1,"Greatis Software LLC",C:\PROGRAM FILES
(X86)\UNHACKME\G7Z.EXE

FI2=4596296,F3B517E3F044125C10E1F2C4C8324BB38A73702A287F0D4C413C708EB47E0816,11EE37
A8CF065FE3F61C662E886B5FBE,1,"Greatis Software LLC",C:\PROGRAM FILES
(X86)\UNHACKME\HACKMON.EXE

FI2=771584,376DB4C6D46D9354E15583F38D3D2C8974FD2BE129F134DDB35DAF59CABB6A41,E8B72E9
6AA9B4ECAD7C2C76EF73B64C5,2,,C:\PROGRAM FILES (X86)\UNHACKME\JSONFAST.DLL

FI2=217016,07AF010C20DA303F1F9802F50CAA20C0CC091290858770B713AD4E664CCFB044,FD7732E
B1925A06AE2B38A1C3D05CBD5,1,"Greatis Software LLC",C:\PROGRAM FILES
(X86)\UNHACKME\MOZLZ4D.EXE

FI2=14704712,FF002AE86C7B165773E523122EF7A10604D6BD20F4D5A98962E45F4E1D11EE22,A0637
5DED4EAA618E98E54B883182EB8,1,"Greatis Software LLC",C:\PROGRAM FILES
(X86)\UNHACKME\REANIMATOR.EXE

FI2=7087176,F4CB56E7EED2607A4A2BD556B863D1807E124A06379D95D339F594B49B3619A7,2AD471
0385DC9DD19ABA8A9BA9709C10,1,"Greatis Software LLC",C:\PROGRAM FILES
(X86)\UNHACKME\UNHACKME.EXE

FI2=72704,1BD8756A9E77A2318ADC5A284DD885EDD6D95D7451F418FF77C553180C515C1C,77ECD683
45AA2AF951576150A7875FE3,1,"Western Digital Technologies, Inc.",C:\PROGRAM FILES
(X86)\WESTERN DIGITAL\DISCOVERY\CURRENT\SERVICE\WDDISCOVERYSERVICE.EXE

FI2=717824,27B855057B2535D89C1136489F4D05E30090775B8C878530B44884AD613257E4,4BCD584
80714F824A920EC4800E938EE,1,"Western Digital Technologies, Inc.",C:\PROGRAM FILES
(X86)\WESTERN DIGITAL\DISCOVERY\CURRENT\WD DEVICE AGENT.EXE

FI2=81373696,2E213CFA39647D4DA055B50B473A9EBF7C12B47781178FEA671BD71A2076A0E6,9BDD3
083606472AC4062B08D00C3E248,1,"Western Digital Technologies, Inc.",C:\PROGRAM FILES
(X86)\WESTERN DIGITAL\DISCOVERY\CURRENT\WD DISCOVERY.EXE

FI2=23552,FD9E53DC110CD32B3740C34D083A0C3A5C9026B03E169844A0457EC16C1F60FA,1974444B
D918CA8B94A217769487458F,1,"Western Digital Technologies, Inc.",C:\PROGRAM FILES
(X86)\WESTERN DIGITAL\DISCOVERY\CURRENT\WDDISCOVERYMONITOR.EXE

FI2=732984,1323A433F60A9F5777BEBBE3F2955322D8432A8EC440658E9111B85134016FA7,9F5A0D4
5998F3F96FD3086BF421A49C4,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
DEFENDER\EPPMANIFEST.DLL

FI2=95032,9FDE3131B189A6A2E94F6CDC442639E8339A4B83CD32A1C03C45C344933CA119,BF298D17
C0848AD5006815561CB599EB,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
DEFENDER\MPASDESC.DLL

FI2=723424,F711CFC057D849AB3C4B35C57338EECCFF5EE3E66E3F4018DE51F9A45E1903B3,145AB66
225DF8DA5FCC44F7EC1C918D5,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
DEFENDER\MPCLIENT.DLL

FI2=104928,81513A9130832390F6F42A3A2EF1A6EC5782AAAB44311B67077E62639860146D,75E9620
784A6DAFD45ACC1F41ADB3582,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
DEFENDER\MPOAV.DLL

FI2=19936,90BD30AB689198BA32C9623B409193146D2EDFF5D365F3493593286F1FB960C2,57BE6383
B20EAAC269A54DD060648F15,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
DEFENDER\MSMPLICS.DLL

FI2=516608,0C9BF8CEBC258D746A74A3A5AB318814984192E271B7A92993B6ACBF4C539E8B,04794C8
4CDD4D0CC40EA3F99514056D4,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
MAIL\WAB.EXE

FI2=43008,525D7D2984EE3B60DF8CA038DF13BFF7A6EC9FC35E9CA7C0C8322874D3870095,9A68B45E
6B76380CDCF1A92CC64BDCD5,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
MAIL\WABIMP.DLL

FI2=66048,86B224B8F97F9665A5BCB902A7F584B163FA7F4350C2520011C5155EC3393D56,C7738C3B
E4488C050237E651C5CFA735,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
MAIL\WABMIG.EXE

FI2=163328,9F901F1C458D2372D7953395A4370B5841118F3CCAA040FC96456DD3F78B7AC6,BC3901B
1BE65EDF09464D06764D2789C,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
MEDIA PLAYER\MPVIS.DLL

FI2=1802240,6C332A156CF615CF2C46925D752D66415B88B5902C421C0D68E44B38AA17E17A,E5CE3A
E95938C09260E89D27A58E85A9,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
MEDIA PLAYER\SETUP_WM.EXE

FI2=71680,263D708BCBE759CCEF2D1868672BF67981A8ACF8B5FE1311B4C73DFFFF82BE43,93CAC9A1
8C041CA4AEF31D338EBAFEDE,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS MEDIA
PLAYER\WMLAUNCH.EXE

FI2=102400,5B4D88E43DBD63F1F3FDF6D70586147767CF2DB2593A2F3244556A9D33F2AF1E,854EBCE
BE6DB70B07DED344FB33BAB49,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
MEDIA PLAYER\WMPCONFIG.EXE

FI2=166912,EE2CD68F5734CBD9EC00BADA4724D53C8751EFEDF934EDEE28E6CB181FD7599C,4BB8384
EE066D842D90793183282ABA5,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
MEDIA PLAYER\WMPLAYER.EXE
FI2=39720,9D1EB3790354B5B7697A8EE4B4B3645AA98323763CA4EFC4F38AEB77DDFF8CB3,5E8E95A8
A7E0A72BEDFEF35A96433CA5,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
MULTIMEDIA PLATFORM\SQMAPI.DLL

FI2=96200,CF3D31527FDAA64A6AA710E98860E27C4E901459A4998F0B5B53217EB354E078,9AF7A76F
8C97F6DEDD03907F61751B50,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS PHOTO
VIEWER\IMAGINGDEVICES.EXE

FI2=1909248,3F43D403517A4889856CFFAC7AB579545E9FFE0F022F3BF0262890EC4EC269EF,A89420
2A22C64B66FAEAD66C945C6B21,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
PHOTO VIEWER\IMAGINGENGINE.DLL

FI2=1638912,16A8B7CD75527C4EDE5063BD1ABA963EBEB643B71448C6EFB65B62AD06956DC6,E0DA11
20D99C2D33B02F22E1ECFB73F9,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
PHOTO VIEWER\PHOTOACQ.DLL

FI2=37888,A85486C6789A5EC22D3545FE221733F1BC75D34206B5CC023152C3C063CC0BD3,AFA45C18
44190E5B262144EA689248EF,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS PHOTO
VIEWER\PHOTOBASE.DLL

FI2=1545216,C68E0BCD383D53F3B08A934C370733E1CF5D6AB8D9A5A8BBF8A6CE6DEEEC5FBE,722C27
7C53DBD9E78A0EE0E866343F1B,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
PHOTO VIEWER\PHOTOVIEWER.DLL

FI2=39720,90FA3AC18621F0BB6C476AC1EAF7319A34AFEDA155373F8A67890F6C1FD6621F,6B46B7F8
8A85B0464154C9F9AA63EF82,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS
PORTABLE DEVICES\SQMAPI.DLL

FI2=124060,81A0BF6F6485D6E239B044A1B57E773C8C10C5D67352D4642EE25A8BFF241515,490860A
36091E637375A2289EA8A21A3,2,,C:\PROGRAM FILES (X86)\WINYL\BASS.DLL

FI2=34392,4824A06B819CBE49C485D68A9802D9DAE3E3C54D4C2D8B706C8A87B56CEEFBF3,EA245B00
B9D27EF2BD96548A50A9CC2C,2,,C:\PROGRAM FILES (X86)\WINYL\BASS_FX.DLL

FI2=16213,E8FC36CD7B84B0DDC928CCF8CC65DE9069BAB6A0A501D94B9D4A44CD7AC095E5,E9CFD7D0
E81B766D9FC1034CCC6DA222,2,,C:\PROGRAM FILES (X86)\WINYL\BASSASIO.DLL

FI2=20700,441CA8E10DE3624916ACA5E962BE3900955C14E2ADE98B63C1ED246EB07034D7,B47858D3
D3147F64756E6CC8F187683B,2,,C:\PROGRAM FILES (X86)\WINYL\BASSMIX.DLL

FI2=13754,6E769F3A69106D72B06B3A8DA9E9CFEC527D49DA52A01F85D515C3CB0E7F107C,B08E3F3F
3E5BFDAB75C5C3C945110321,2,,C:\PROGRAM FILES (X86)\WINYL\BASSWASAPI.DLL

FI2=337776,1F81D3B756EC1430F476A5AE7AF7B360B4ACD923D4BACEB91BE49AB6515459FC,02EB027
7D29B172F27BFB392422C1F05,1,"Arvato Digital Services Canada Inc",C:\PROGRAM
FILES\COMMON FILES\PROTEXIS\LICENSE SERVICE\PSISERVICE_2.EXE

FI2=872960,F0F44B527C311110D16E715FB80EB3D55F8A255E60877C25A7FE44A4C3B0D784,BBE1746
0D2545105EA9BECCAA8274424,1,"Microsoft Windows",C:\PROGRAM FILES\COMMON
FILES\SISTEMA\WAB32.DLL

FI2=964096,4C2081A999B669A691D159DDF3D123FB89ED132C1A5E44390DD5AFB965272F14,6A5B066
472970AA3D5055AEAAB36181A,1,"Microsoft Windows",C:\PROGRAM FILES\COMMON
FILES\SISTEMA\WAB32RES.DLL

FI2=872960,F0F44B527C311110D16E715FB80EB3D55F8A255E60877C25A7FE44A4C3B0D784,BBE1746
0D2545105EA9BECCAA8274424,1,"Microsoft Windows",C:\PROGRAM FILES\COMMON
FILES\SYSTEM\WAB32.DLL
FI2=964096,4C2081A999B669A691D159DDF3D123FB89ED132C1A5E44390DD5AFB965272F14,6A5B066
472970AA3D5055AEAAB36181A,1,"Microsoft Windows",C:\PROGRAM FILES\COMMON
FILES\SYSTEM\WAB32RES.DLL

FI2=115072,BE658AA56360BB4AEEBDAC5B0FC10C736AACE8363CA91EC1DD8BD946BD40EBE1,34C81F5
370F0A6140CC6A861935C66FF,1,"Open Source Developer, Stefan KUENG",C:\PROGRAM
FILES\COMMON FILES\TORTOISEOVERLAYS\TORTOISEOVERLAYS.DLL

FI2=313488,20DE5C542F346803A30A236F4C0BE93FD19D3F76759DA8D80C41C4AB06DA2A0C,1A1642B
E709D640ECC04566099D39B10,1,"Dell Inc",C:\PROGRAM
FILES\DELL\COMMANDPOWERMANAGER\NOTIFYSERVICE.EXE

FI2=10800,2EB1780E267A825C0B5ED049B485EF9E96344E90760E60E3F43BFC4EAF3B185C,20B92044
80B7382C58CFAD883A6276C3,1,"Dell Technologies Inc.",C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DCSAEVENTS.DLL

FI2=284720,EB2874F6D8187C5E2E7EF8EC5CF5886CA27CEC16BA5DA1D99FE0A08046FB2DE3,A5D714D
E852AE1DA358985D8E5FC4A99,1,"Dell Technologies Inc.",C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DDVCOLLECTORSVCAPI.EXE

FI2=3563568,577A797140EE8CF1347A8E4AEB59E8C10A3AAE46348A173AB024A9EAF1E4B1D3,55D717
88E7A7E78CA5170CE8CDAC11B5,1,"Dell Technologies Inc.",C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DDVDATACOLLECTOR.EXE

FI2=490032,719CF676B2B60E99B88F10B30484A213D9014F4D615948FF89D5FFF2D505C4BF,2E46774
16530566BD512735EBA7794A2,1,"Dell Technologies Inc.",C:\PROGRAM
FILES\DELL\DELLDATAVAULT\DDVRULESPROCESSOR.EXE

FI2=475184,B0AA4B628EF2FC6109BE430C9665A46570D5E1D85C9FF121584859EFC734D864,64F0CC4
B7D40C892916532082EE1EF40,1,"Dell Technologies Inc.",C:\PROGRAM
FILES\DELL\DELLDATAVAULT\NVAPIW.EXE

FI2=345848,1CDADDE3C7C7E1D18BCFAE1545B0DB67B75D6EE23A56643D1A370A6CC953A18C,80C44A8
AC8E2CB071E54DF7AD54A57A8,1,"SCREENOVATE TECHNOLOGIES LTD.",C:\PROGRAM
FILES\DELL\DELLMOBILECONNECTDRIVERS\DELLMOBILECONNECTWELCOME.EXE

FI2=301768,882B71F98627A0CDFD8BE27B32301AA8395E22324BDE6C5EFC17C48DD7D317E9,B4B5878
7F4F34B3A4B0EC6EE13B4125A,1,"Dell Inc",C:\PROGRAM
FILES\DELL\SAREMEDIATION\AGENT\DELLSUPPORTASSISTREMEDATIONSERVICE.EXE

FI2=31704,A1DED20286CAA3F3B4AC2526AA886036F2AF8E7AC32C9ABD78DEC7D74AF2DFB1,72349CE1
6CF0996DBA449F49D3C9A5E2,1,"Dell Inc.",C:\PROGRAM
FILES\DELL\SUPPORTASSISTAGENT\BIN\SUPPORTASSISTAGENT.EXE

FI2=1045976,7D724F4E5A2D0D685BEEDBF5AB5CB5ABD7CA45111552098BBC77E5309F3A0FBB,FACEFA
A4361969A77A70CD31C2C2AF4F,1,"Dell Inc.",C:\PROGRAM
FILES\DELL\SUPPORTASSISTAGENT\BIN\SUPPORTASSISTINSTALLER.EXE

FI2=987632,1519BC056553B0CF87C6115E389C613EA171CB368E014B8C2D1DBC361B41638E,2177E97
4108C2B7187D96236D5E36F04,1,"PC-Doctor, Inc.",C:\PROGRAM
FILES\DELL\SUPPORTASSISTAGENT\PCDR\SUPPORTASSIST\6.0.7193.611\DSAPI.EXE

FI2=9624840,C37BE9A48AD5F17012AA28E2703C03A1DD85469966809E0032BEFD8784C83BE3,1EAFBE
3B34CE2DB323EF26C04CEA620B,1,"Tim Kosse",C:\PROGRAM FILES\FILEZILLA FTP
CLIENT\FILEZILLA.EXE

FI2=380680,2426717653FFBE85DBEA3DC8173F8A14D1469269CA6D026DA36C3E671CEB1731,CC02DF9
137B7314E8281058CC70B71A1,1,"Tim Kosse",C:\PROGRAM FILES\FILEZILLA FTP
CLIENT\FZPUTTYGEN.EXE
FI2=661768,55C65605A9BF0486D019D5FD60ED385F925EBB0ABE771376FF70D68594683F77,5AA604C
E4A08E9B83A70E0FA9BAB5C64,1,"Tim Kosse",C:\PROGRAM FILES\FILEZILLA FTP
CLIENT\FZSFTP.EXE

FI2=46344,E09584E1B5E1EB47EFD0BBF927E22B222B6194CA9DC50D4774787C63E6556E92,6A61D5D6
A93F2C1BDA6D362869A94513,1,"Tim Kosse",C:\PROGRAM FILES\FILEZILLA FTP
CLIENT\FZSHELLEXT.DLL

FI2=50440,B9F781904333A5A8B0A9598E7F5E4BADD36185CFF45B828BFE82BAD63DDAE7F2,DFE43369
DCAD977E6465F82DF52BDCC8,1,"Tim Kosse",C:\PROGRAM FILES\FILEZILLA FTP
CLIENT\FZSHELLEXT_64.DLL

FI2=702216,A19FE72EEE1D5F4DB878F304BBC8CA424EEC107FF83069778F7D75A21A03616C,8D20E95
AE362D3A8262F73222DF36DC1,1,"Tim Kosse",C:\PROGRAM FILES\FILEZILLA FTP
CLIENT\FZSTORJ.EXE

FI2=438536,16CE7B5D2608382012920AC63AD2EE10080A595702C1CE088B30DB3FB1352ABA,C1E9363
4314BDC8CC8CD71B87DD0237D,1,"Tim Kosse",C:\PROGRAM FILES\FILEZILLA FTP
CLIENT\LIBFILEZILLA-7.DLL

FI2=92936,AED438D8C56C3761F2CBA01976789FAAF5684236EF2F47982C1BEDC5274A4C17,72AFFE8E
650A4F44BBBE510B8E5CCF23,1,"Tim Kosse",C:\PROGRAM FILES\FILEZILLA FTP
CLIENT\LIBGCC_S_SEH-1.DLL

FI2=19971639,51E007185CE5FF2CACC047A17056ABCB8E4E4A5E7F342919CAD07AE7CD08EDA8,4CAE9
6D39C989CB88C1120D748D40DBF,2,,C:\PROGRAM FILES\HEIDISQL\HEIDISQL.EXE

FI2=2702336,A79657F51CF3EFDB49E6585C3F96F7DC3A080AF96338209FBBF547471648E6C5,58130D
2770FF2FB55FB0E46AE3770571,2,,C:\PROGRAM FILES\HEIDISQL\LIBCRYPTO-1_1-X64.DLL

FI2=1690490,10E5035D193416D2B53DF188EC19AF88A67FCD5CC9A568B0E58F607CBBB902EA,7667BD
D9805E9FF4330BBDBB5F7235C5,2,,C:\PROGRAM FILES\HEIDISQL\LIBICONV-2.DLL

FI2=685747,28D1DD0587C213F490C15A69935D648C8E1AAFB73AD0985A05CFDFD1744D5B23,68917AD
96337015CFA352FEBE5989C94,2,,C:\PROGRAM FILES\HEIDISQL\LIBINTL-8.DLL

FI2=1074432,8E1ED7E8C8614C57683E130A212898712495E500DA8B8A32A8D563C7BDA627E2,CC65ED
559C7F897FA762371939785E3A,1,"MariaDB Corporation Ab",C:\PROGRAM
FILES\HEIDISQL\LIBMARIADB.DLL

FI2=4747776,AFDF4976351DD147419DBD3E00206B17A776714261F025D7542F4AE3C4497901,8AD4DA
6DD06F1DEA86EFF2129B2A2B38,2,,C:\PROGRAM FILES\HEIDISQL\LIBMYSQL.DLL

FI2=4879360,51B8EA3E4A09A43B5BB59BD4A0D15B1B75E6EA694FFADE644631A19AA20A587F,327F4D
56C31A3B16415093ADED5A848E,2,,C:\PROGRAM FILES\HEIDISQL\LIBMYSQL-6.1.DLL

FI2=284160,BC5C5F908914121C2B42864126A75C5A365264A538DEA3F401E13E3D302CAE94,3E5E608
E583DE6213D1086160A850E51,2,,C:\PROGRAM FILES\HEIDISQL\LIBPQ-10.DLL

FI2=293888,B4538604F3FC0AFC5940AA1DDEB339466EA1B1786512738AF88E2ECFC3C329D9,5453287
9BBB05971645D7B6AAA7E6909,2,,C:\PROGRAM FILES\HEIDISQL\LIBPQ-12.DLL

FI2=642560,F1F6655D03A4DF04D709A8F090B315722D26A559F3B38FC136B74E4781414437,36D8259
1FD0B71DE2F503768C9F933B5,2,,C:\PROGRAM FILES\HEIDISQL\LIBSSL-1_1-X64.DLL

FI2=17976,D1A114868B551F8178EFE998DC8E2230EC35608F4D222B6DBD0EA3A099A3B0FC,58C9448D
30E9AF02EB1E854EE0CDE4D1,1,"Intel(R) Rapid Storage Technology",C:\PROGRAM
FILES\INTEL\INTEL(R) RAPID STORAGE TECHNOLOGY\IASTORDATAMGRSVC.EXE
FI2=320056,A85817BE2C4564A82A4862873AAE7F2741E455D7267DCFB751D48AF519A90B72,C2B39FF
A5F465F3F1252436A83970042,1,"Intel(R) Rapid Storage Technology",C:\PROGRAM
FILES\INTEL\INTEL(R) RAPID STORAGE TECHNOLOGY\IASTORICON.EXE

FI2=89544,83E6A7971AB36DDE7B0C3C574409F21196003134F1FA69AC249495EA5F3F6CC8,C8844D98
7C4769EB3618DBE75BC121BC,1,"Intel(R) Rapid Storage Technology",C:\PROGRAM
FILES\INTEL\INTEL(R) RAPID STORAGE TECHNOLOGY\IASTORICONLAUNCH.EXE

FI2=54272,443CDE6AC39CD7F3E55B074B4B458A4B5346BB5399A95C9A2A6084C1DF3564EA,F73FEF43
F8422165DCDCC606B7CBABA0,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET
EXPLORER\EXTEXPORT.EXE

FI2=53760,88288E785315A0F7CDD6922A7B41088666EC250CFF2A34AF88F04D4DC0C3208B,432991F7
363130397FAED272387FFAFD,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET
EXPLORER\HMMAPI.DLL

FI2=515072,85BC7BFB6CA93CE864A112849AFBB090B2B4A47E1FD66CAA332FECFDAF145073,33DF44B
A98CB2909E5883C82DAE55251,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET
EXPLORER\IEDIAGCMD.EXE

FI2=501248,A965188C56C86F8450F0F090CE0529297CD82780AD395DFAB8377A7FAD8B48A7,7D19541
8A3BC1EC21AB9F9E3905BEC28,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET
EXPLORER\IEINSTAL.EXE

FI2=224768,3C9443F37DF8BCD01E34A97083BA1EB8851ED82AD149DA7FC6DE4ACA1AD79127,662A053
EDE78D03BE0777A5652AB325C,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET
EXPLORER\IELOWUTIL.EXE

FI2=413184,620767A2D4CC58C5C80E98C7C780A84F6585D54EA7F1E424FE641FBA95DEE6A7,CD7B1C6
C9ABFBC1F78BD4C4AAF4B3691,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET
EXPLORER\IESHIMS.DLL

FI2=817816,826D59B40D332B10C06C4ACB34E41C60E5213E3A5049D14A250868D2075CFC65,C50EEB2
16AB9F7E9B375270426C4DFD6,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET
EXPLORER\IEXPLORE.EXE

FI2=350888,9E7C9AD1A5956BFDE86A3CFE929A2B6366F6A04F65611A244B116BB7E08532A2,0992C32
5E4D89564F0387734E7DA21A4,1,"Oracle America, Inc.",C:\PROGRAM
FILES\JAVA\JRE1.8.0_261\BIN\JP2SSV.DLL

FI2=736424,95D40274A480ED3A4D7A9DBC2057FC0B9F5AEAEDE2E9243BA10457CDF2620DF7,70B8877
7CBBC0AA7F34B2D7ADE478140,1,"Oracle America, Inc.",C:\PROGRAM
FILES\JAVA\JRE1.8.0_261\BIN\SSV.DLL

FI2=19551912,3BC2E7B1B4BD0DC9BE6E7F305C34AB08DA0FC6707483F90FF7E36098E59EEBF1,DC5F5
66AB25CFB759BB609BEA08CC152,1,"Just Great Software company Ltd.",C:\PROGRAM
FILES\JUST GREAT SOFTWARE\EDITPAD LITE 8\EDITPADLITE8.EXE

FI2=3667416,8E572C4DC38FBD3840A13EA1F500B02CF8E377D0336F1191D897DEA8BAD5C8A8,2599F2
9BF1E301F1754C247E32030B09,1,"McAfee, LLC",C:\PROGRAM
FILES\MCAFEE\WEBADVISOR\BROWSERHOST.EXE

FI2=953544,AD069EE5A2B84CC0D3CA3DE99E53D17694284B5EDF589B632928E9967E523580,8A3E5A1
B4BDB651798AB1847207FBBB0,1,"McAfee, LLC",C:\PROGRAM
FILES\MCAFEE\WEBADVISOR\SERVICEHOST.EXE

FI2=952008,4095F33C25DF51C0F98B24D6B0D5D38D7688FA38D408DA06857DEEEA4D3EEF49,B4D330B
08674950B0DA792963B58A722,1,"McAfee, LLC",C:\PROGRAM
FILES\MCAFEE\WEBADVISOR\UIHOST.EXE

FI2=1099008,3398D3A3B6E171017CC77B99B1447624D0971721A66135FA4B94F5990BEE8E54,676FE0
B038E7D75D1D5EE06050384C22,1,"McAfee, LLC",C:\PROGRAM
FILES\MCAFEE\WEBADVISOR\WIN32\IEPLUGIN.DLL

FI2=1401944,5F54AF3FD4169469AC0BDBE503933963BC221E536BAB951EC2B50313B8D52EAE,EEF91D
D38D60D2C8FF88DF76A5A007B2,1,"McAfee, LLC",C:\PROGRAM
FILES\MCAFEE\WEBADVISOR\X64\IEPLUGIN.DLL

FI2=489776,EF7983386AD7CB8306729299C4DDD935F39470173B84263D34DC546F28B09C06,EC7F301
ECB959D1B5B46AE9C8A87297A,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT UPDATE
HEALTH TOOLS\EXPEDITEUPDATER.EXE

FI2=436536,A4C42A67828E61984020CBAF2CD9471425B9548240C9A66AC97CFAB20BCF32DC,339DFDF
FC7BB76C6E3ABC2ED58FA0299,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT UPDATE
HEALTH TOOLS\QUALITYUPDATEASSISTANT.DLL

FI2=905528,733BC41E0340449D7B20CA596AE94F07FB0949000F26608421A4B4A39E3E1A34,645FD85
5BD7DE94310796A591B92A179,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT UPDATE
HEALTH TOOLS\SEDPLUGINS.DLL

FI2=310576,501F7E3D7A8D72698BE237CE9EE3A28A52DEBF098082B6D66D5F462464C1D0F7,6192802
1F28B458A94BD02DD1412F3ED,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT UPDATE
HEALTH TOOLS\UHSSVC.EXE

FI2=194352,084063AAC45A7CAF251B72F2F3E82C1A0F464B2BC91FD4BD00892BACF57B7E05,9BC8BB9
B8AD9CAA4D4DAC4E9891470B2,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT UPDATE
HEALTH TOOLS\UNIFIEDINSTALLER.DLL

FI2=169672,C862DA5B77FBE896E6CF99144D01F9A64096339293440F70A52D4CAE952D9B44,F4D59B0
B5BCF831DF5697A10E901C14D,1,"Mozilla Corporation",C:\PROGRAM FILES\MOZILLA
FIREFOX\ACCESSIBLEHANDLER.DLL

FI2=29384,D0342F8F18A25266796CA211D63761B2BF0C9B6AA5307DD7908B5DA095A754A7,622996C4
CEEA85ACFD66B1A468794835,1,"Mozilla Corporation",C:\PROGRAM FILES\MOZILLA
FIREFOX\ACCESSIBLEMARSHAL.DLL

FI2=18696,322D963D2A2AEFD784E99697C59D494853D69BED8EFD4B445F59292930A6B165,49C3FFD4
7257DBCB67A6BE9EE112BA7F,1,"Microsoft Corporation",C:\PROGRAM FILES\MOZILLA
FIREFOX\API-MS-WIN-CORE-FILE-L1-2-0.DLL

FI2=18696,1EA267A2E6284F17DD548C6F2285E19F7EDB15D6E737A55391140CE5CB95225E,BFFFA711
7FD9B1622C66D949BAC3F1D7,1,"Microsoft Corporation",C:\PROGRAM FILES\MOZILLA
FIREFOX\API-MS-WIN-CORE-FILE-L2-1-0.DLL

FI2=21256,A07CC878AB5595AACD4AB229A6794513F897BD7AD14BCEC353793379146B2094,588BD2A8
E0152E0918742C1A69038F1D,1,"Microsoft Corporation",C:\PROGRAM FILES\MOZILLA
FIREFOX\API-MS-WIN-CORE-LOCALIZATION-L1-2-0.DLL

FI2=19208,FE760614903E6D46A1BE508DCCB65CF6929D792A1DB2C365FC937F2A8A240504,D6993336
37DB92D319661286DF7CC39E,1,"Microsoft Corporation",C:\PROGRAM FILES\MOZILLA
FIREFOX\API-MS-WIN-CORE-PROCESSTHREADS-L1-1-1.DLL

FI2=19208,59C14541107F5F2B94BBF8686EFEE862D20114BCC9828D279DE7BF664D721132,47388F39
66E732706054FE3D530ED0DC,1,"Microsoft Corporation",C:\PROGRAM FILES\MOZILLA
FIREFOX\API-MS-WIN-CORE-SYNCH-L1-2-0.DLL

FI2=19208,48EB5B52227B6FB5BE70CB34009C8DA68356B62F3E707DB56AF957338BA82720,F62B66F4
51F2DAA8410AD62D453FA0A2,1,"Microsoft Corporation",C:\PROGRAM FILES\MOZILLA
FIREFOX\API-MS-WIN-CORE-TIMEZONE-L1-1-0.DLL

FI2=19720,D5960C7356E8AB97D0AD77738E18C80433DA277671A6E89A943C7F7257FF3663,6C88D000
6CF852F2D8462DFA4E9CA8D1,1,"Microsoft Corporation",C:\PROGRAM FILES\MOZILLA
FIREFOX\API-MS-WIN-CRT-CONIO-L1-1-0.DLL

FI2=22792,83678F181F46FE77F8AFE08BFC48AEBB0B4154AD45B2EFE9BFADC907313F6087,D53637EA
B49FE1FE1BD45D12F8E69C1F,1,"Microsoft Corporation",C:\PROGRAM FILES\MOZILLA
FIREFOX\API-MS-WIN-CRT-CONVERT-L1-1-0.DLL

FI2=127176,9EC324E4F522C30ED75835BE281C0037B1D98C51DA95EA587574A9E5944EA8A8,DC39871
FC388C84092D15A0F25A43839,1,"Mozilla Corporation",C:\PROGRAM FILES\MOZILLA
FIREFOX\DEFAULT-BROWSER-AGENT.EXE

FI2=574664,AA0E9F2CF52F6898223A74CF305490C22536A006415439A6296AC12B294E5291,9B1799B
6CF754DA518F42A94427095D4,1,"Mozilla Corporation",C:\PROGRAM FILES\MOZILLA
FIREFOX\FIREFOX.EXE

FI2=511488,F5D91D068C3F6AF84EA35E6CAC9A4F71E3FEBFF6D0B082A5733C614FB4730957,D0A1F87
7152A5BF272BCE8E94EFA4CAB,2,,C:\PROGRAM FILES\MYSQL\MYSQL WORKBENCH 8.0
CE\MYSQLWORKBENCH.EXE

FI2=1126888,7CC15872F4736BF6818912F0C9D74B5B343600A565A073C59182DB4BB82F9A26,1955BE
73D5AFB68A7B740940BFBEB3D6,1,"NVIDIA Corporation",C:\PROGRAM FILES\NVIDIA
CORPORATION\NVBACKEND\NVTMREP.EXE

FI2=850928,91A4876D731D42B2B1C8D43ED14EA5F8707F29EFF77E920333C0608330BD94C7,0275AE9
9405E3B6878CE7A50D70878DE,1,"NVIDIA Corporation",C:\PROGRAM FILES\NVIDIA
CORPORATION\NVCONTAINER\NVCONTAINER.EXE

FI2=3293168,C0A988E39AF924E874BA90428DDA10DAD9374D668553428CB6379B82D3B5982A,789EDB
6CE44F34EFCEDBF7322572A5DC,1,"NVIDIA Corporation",C:\PROGRAM FILES\NVIDIA
CORPORATION\NVIDIA GEFORCE EXPERIENCE\NVIDIA GEFORCE EXPERIENCE.EXE

FI2=30336,6BF4A8955DE28B920D6CE4DC075D60CE8A3FC99A8327D60B38230B09D369FD1B,1A86FC8A
D50913B2DDA78964858D5E90,1,"NVIDIA Corporation",C:\PROGRAM FILES\NVIDIA
CORPORATION\NVSTREAMSRV\NVSTREAMKMS.SYS

FI2=791352,815F80BC948F18F7BF7F45D569FCAD7FDBE562334C6F86887A9FA35A876734C7,24CA39F
18B3604BA65CCAAD72B3912F5,1,"NVIDIA Corporation",C:\PROGRAM FILES\NVIDIA
CORPORATION\NVTELEMETRY\NVTELEMETRYCONTAINER.EXE

FI2=907240,75DA6713473F5E1E4F0D6800065429AEEC9EF11C5C0E6B335228E20D39D754ED,0537AAE
AB95C5DAFDF64AC122476962C,1,"NVIDIA Corporation",C:\PROGRAM FILES\NVIDIA
CORPORATION\UPDATE CORE\NVPROFILEUPDATER64.EXE

FI2=744968,22F32627414B0F8FAF4D087FE31F996752BEB3A5205C7621EC296234E9162681,44A4BD4
A8425671AF54A55018AFFB2D7,1,"Oracle Corporation",C:\PROGRAM
FILES\ORACLE\VIRTUALBOX\VBOXSDS.EXE

FI2=2399512,9AF877149D55086ED17D1ED74C3BDF6759A59A4D6E55A011F6F60B96E36179F8,FDD0A6
6590657159C0194C7641D79AB5,1,"Oracle Corporation",C:\PROGRAM
FILES\ORACLE\VIRTUALBOX\VIRTUALBOX.EXE

FI2=324496,E96C705A6071E6ECFEA6D2CCFEBDF438AF24BE22D157AE0BB34D4AC44EFF1753,E523603
A8117311AEFC49EA3925A0A6C,1,"Simon Tatham",C:\PROGRAM FILES\PUTTY\PAGEANT.EXE

FI2=678312,38C7CFDD4CBF710A747CAFFC87A7C789D4735F04DCA388F810813C75674CCE5C,7DEBF43
26011A40706336870F9A8A1C9,1,"Simon Tatham",C:\PROGRAM FILES\PUTTY\PLINK.EXE

FI2=685448,47F110964D1E045C16F68DC0507131101F007C191707996D7BE372885EC22F7E,1BF3C42
5E28ABE5441A74AC96D81172A,1,"Simon Tatham",C:\PROGRAM FILES\PUTTY\PSCP.EXE

FI2=701848,8AE72D63BBAFC54F6903F3CAA48466FE69CEAF6D01A03CD27904B11F6736D50D,62EAE61
903BA5A2938C647FCDA175B22,1,"Simon Tatham",C:\PROGRAM FILES\PUTTY\PSFTP.EXE

FI2=883600,B73D6F26808B85C67CC0714D0BD1EAD6C0DDE47B21DDCF1F76962725D8E3311D,239C6A3
8DE34B2CC26AFBC41ADF3A11D,1,"Simon Tatham",C:\PROGRAM FILES\PUTTY\PUTTY.EXE

FI2=401808,3B1BA53A31879E90AB4C6CC22182E3C730209F0381A56E4043E0C917B97AE87B,F39DD23
FF274817E7984945B0B321D25,1,"Simon Tatham",C:\PROGRAM FILES\PUTTY\PUTTYGEN.EXE

FI2=64184,811A6B6247B2382720D24CF6D0B8001C5FBDEE7213625CE51212D70AA65914E0,D831196B
903F154C25D52BAE129716DC,1,"Microsoft Windows",C:\PROGRAM FILES\RIVET
NETWORKS\SMARTBYTE\RNDBWMSERVICE.EXE

FI2=2351304,62BDE94AF0E68455FB357E116E9700192C68220DE44F49E7177779693E189C67,5010C8
646BB3F31B80F0DD2D7A9C60C5,1,"Rivet Networks LLC",C:\PROGRAM FILES\RIVET
NETWORKS\SMARTBYTE\SMARTBYTENETWORKSERVICE.EXE

FI2=4155392,A4C6018A2BFFCC3C6D6EE20CD7B26EAF25C42A2D407710C873F64687B877EC1A,F0E97C
C2C0A5494E0133A247578BB619,2,,C:\PROGRAM FILES\SOFTDELUXE\FREE DOWNLOAD
MANAGER\FDM.EXE

FI2=144896,DC48F84D14C6CE01C25F2712AED83C2349E2514A78109083F5F19355D59EF167,432C254
65931D382765A888ED425FF9A,2,,C:\PROGRAM FILES\SOFTDELUXE\FREE DOWNLOAD
MANAGER\HELPERSERVICE.EXE

FI2=83704,3F53758678B4ABE0129D49CA970D0777AA750CAD56EA3FA1460D8C3D5DF63EBE,A2E65402
CEC367A06F5430E0A4CE69E6,1,"Open Source Developer, Stefan KUENG",C:\PROGRAM
FILES\TORTOISESVN\BIN\TORTOISESTUB32.DLL

FI2=322296,E5FA1C8FD301CDBA94966F3A262A1B8CE89F60B0A1EBB767298AD366A3EBC124,AEE0C89
A63DC0A452ADA9E6AF63065A5,1,"Open Source Developer, Stefan KUENG",C:\PROGRAM
FILES\TORTOISESVN\BIN\TSVNCACHE.EXE

FI2=985800,4A6DEA6A201472896281201006DFD65DE7FF325E9DE02AE0B0C5C45A647D5F99,3FB9705
0A420F75BC2FFA7AFE0457448,1,"VideoLAN",C:\PROGRAM FILES\VIDEOLAN\VLC\VLC.EXE

FI2=38400,0939EC82790DF8526C9C2F3B454DB4B347A29E4A223E176C40134515BFCD897E,62538BFB
5CA61916C2B65327845237EA,2,,C:\PROGRAM FILES\WD DESKTOP APP\INTEROP.SHELL32.DLL

FI2=10278096,9690C7EF3C0BF33879C9F0FB37FD596508814435E672ACD3CA77D1A88A7CEBAA,F635E
9616524C5E03D28809DC03AC8EC,1,"Western Digital Technologies, Inc.",C:\PROGRAM
FILES\WD DESKTOP APP\KDA.DLL

FI2=17405056,528F082E73DF22806DBBB121186F036FF1DFD13335DBBA58BEA336F325823F27,04403
4A05FF67A634AA4962241B942C2,1,"Western Digital Technologies, Inc.",C:\PROGRAM
FILES\WD DESKTOP APP\KDD

FI2=1512144,E7A2A87D0B682650E0729B7FEA16EE13556092B20F17850412EAC33104E90217,BB0F6D
82650754A820CD9AE6549CA049,1,"Western Digital Technologies, Inc.",C:\PROGRAM
FILES\WD DESKTOP APP\KDD.EXE

FI2=2637985,1CE19F30C548F27F864487E5BF18FF1A262598A154B98986B8BC76ACF859CABE,B89291
ABFDB054EA623760D97446CACB,2,,C:\PROGRAM FILES\WD DESKTOP APP\LIBFUSEWDFS.DLL
FI2=26320,AFE6622AA8DB678A6C9E5C2D1B58EC0E06717C9A7933B74163C538AE22D7128B,D0044669
25C6B37E0464789F8F5CD4EA,1,"Western Digital Technologies, Inc.",C:\PROGRAM FILES\WD
DESKTOP APP\MSGBOX.EXE

FI2=700336,7F912B28A07C226E0BE3ACFB2F57F050538ABA0100FA1F0BF2C39F1A1F1DA814,6815034
209687816D8CF401877EC8133,1,"Microsoft Windows",C:\PROGRAM FILES\WD DESKTOP
APP\NEWTONSOFT.JSON.DLL

FI2=21981904,AE1490D2057AAC530079894EEFF29ECB9934879FE3C8989014DC07F2F82DEF1F,78ED8
F5B82702F8BD9EAF3BD5416C55C,1,"Western Digital Technologies, Inc.",C:\PROGRAM
FILES\WD DESKTOP APP\WDSYNC.EXE

FI2=198160,E7D1BE6F8BDF5198D6D98319E3291AA72A70ECC5B6B372E7EF712A6A7113F434,3677601
C8DD64C03443C432A87809EAD,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS
DEFENDER\AMMONITORINGPROVIDER.DLL

FI2=309776,4B90C5EAE610B164216398B9C28F00BF2DD7E46DB558C66C99090EA0C047C133,F5C7871
AE44E7EFF31C44EBEBDF60A5D,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS
DEFENDER\CONFIGSECURITYPOLICY.EXE

FI2=125752,0021BA7CEF95E1BF5DD2CCCF086E3A86F7C1CB883375775EACBB9765C9D8A68B,253DDB7
007125D00EAD53673861F8E1D,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS
DEFENDER\DEFENDERCSP.DLL

FI2=732984,10D3DE5073FCBD38B8D9A8324DF93B656F132AC5988789A43241A6BAFE4CC1C9,9723454
1643CE23982BCA9D8578E9F65,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS
DEFENDER\EPPMANIFEST.DLL

FI2=95032,932532CFDBBD86CBCDC80A5BCAFE37275AD77D34DFB0FCD2A53589FD4E0A10FE,56245EE6
0DBBD8C7B099003E3D9F63E4,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS
DEFENDER\MPASDESC.DLL

FI2=2617312,2C043682EE3FF1F1D6389054AB27A301BF258ED77CA874965C4447C262871006,B8B5AC
306DAEA7FA217346122AD9613B,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS
DEFENDER\MPAZSUBMIT.DLL

FI2=1004000,BEF221D9980AEB841562F4D195F6B3A6058D4A9745035D7E42DE3DEBB0D9A531,255D13
A3518672A178020736D3AD9FCC,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS
DEFENDER\MPCLIENT.DLL

FI2=518656,98D11E4F60E1E8B5F9EE5DEB423A6D93F03DDD4267F3FC144FEDA49DF7781DDE,85469E9
F6704F6BD6F45F56AB392324C,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS
MAIL\WAB.EXE

FI2=48640,0B23B167797A03634AC818B019A9BBCC42885CABE045851F8F8A86B780704E3B,D36886D5
9EA8E780F796B7D2D24BB202,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS
MAIL\WABIMP.DLL

FI2=69120,3AE90703A434BA1746175D9CF9264A24F49502D9B0DF4442C3B6A0A03C011B94,76582FE2
B02372C85186ABA34B958EEE,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS
MAIL\WABMIG.EXE

FI2=186368,67B5A4D77BF108DF0C277363278370A7578B99E5973E1226DC281F3E6E52E41F,C17627F
6CC612EC8AF97B436DF1BD09B,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MEDIA
PLAYER\MPVIS.DLL

FI2=1835008,9D3AE3D3F49A05B3F79EE700BEFE06F40D1035C88DBD33A7B9EF802233CD49E7,826512
7374254597CFEFE4A27EC6FE03,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MEDIA
PLAYER\SETUP_WM.EXE
FI2=93184,7625AEA27DDA4FFBA08723CD6855B4F18D78306326A1C333F035B73D1D4F9C97,B31C14D6
E3FC4ED1C8F68C3B8B13B48E,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MEDIA
PLAYER\WMLAUNCH.EXE

FI2=103936,6A3144C089050634AF4E543A1721F9197DC9A1CA5B05438863AC557F8DF5DD5A,ED59EC3
6F75C306FF63A51DFCE5BE0C1,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MEDIA
PLAYER\WMPCONFIG.EXE

FI2=170496,45A565ADC2535484070BA596C9E106243A58D6DFC3BD470A88774DFFFA900369,3312F1A
7F51226B91CD09F73BC168E79,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MEDIA
PLAYER\WMPLAYER.EXE

FI2=1105408,76D8CD4FF923D8137FA2A334431BE169B8A737B47BF61F767D3AC9E6CF56B130,52F06B
0E088B46C223F0D7B8B46BCB94,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MEDIA
PLAYER\WMPNETWK.EXE

FI2=70144,855EE2468776411E86D4DD283FEB24641E2F87E50866702D60F130C1218C23EB,CA25C6AC
8E053E7523B941BE7180D461,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MEDIA
PLAYER\WMPNSCFG.EXE

FI2=47720,54C13173BF800ABE3DFD72A8F2D0B74123056EDEFE0E87A509FB2C1952C33476,E0539FC4
791D814830577C959B01B8BF,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MULTIMEDIA
PLATFORM\SQMAPI.DLL

FI2=4556800,C0E1EB8B49D84A91144FF2110F87F53A8CD0E1D7E7A9A25D4A0861DE2F0AF36F,AAF1C8
A7DDE824C2924E84308012BDF1,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS
NT\ACCESSORIES\WORDPAD.EXE

FI2=97944,97AA0139B9AD9C3C30687392D6764C14F7160361C8814509F7683BE708830A8E,6C2E8D0A
7B58CCA6668A8D8653910F8B,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS PHOTO
VIEWER\IMAGINGDEVICES.EXE

FI2=2232320,A532AE68CCC53DFDC190BB447AE9175A86C072DD99A374151F1D23EDABFCC1A2,0269DE
64EA5ADDDA8936DE89A74A4C7C,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS PHOTO
VIEWER\IMAGINGENGINE.DLL

FI2=1937408,3A9445A7A5026012A2E9D38673014DDA45ECB239F4B06E31894BAD7BBAF6E6BB,9535CE
693890EE1DA0B9FF53C5847A4B,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS PHOTO
VIEWER\PHOTOACQ.DLL

FI2=47104,C5FF8F547565DACC248066F1BC014EA998C38E3E1364436B8F003448A5E696D9,60B2AF6C
5D970F9B2F1A096E514A7F96,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS PHOTO
VIEWER\PHOTOBASE.DLL

FI2=1732096,042F3026B78E7D225A3D4D83BAEF0ED9BF097097FE878AF2D9D510365B689672,7EAA29
BE77B2D363663614AE24EB547D,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS PHOTO
VIEWER\PHOTOVIEWER.DLL

FI2=47720,0D60F5E3621182553734BA7B4DB7CA7557FC217182E4F70013338DA3F48347F0,7B2CCD09
686297CEFAE685773EFBA84E,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS PORTABLE
DEVICES\SQMAPI.DLL

FI2=96056,7EC42DBF0213D04FB3B4ADEC760E08E05045FE646D8EC16C39CC76A39AF3C82A,1C42F467
BD9DDBA31DA198665BF0FB34,1,"Apple Inc.",C:\PROGRAM
FILES\WINDOWSAPPS\APPLEINC.ITUNES_12109.3.52015.0_X64__NZYJ5CX40TTQA\AMDS64\APPLEMO
BILEDEVICEPROCESS.EXE

FI2=484352,3C8302DBD9A7B6AF1B84FFF9F684AB1300227A424F243B99D7E2362EBAEF7C14,7AA4F54
16B41A6DFDCAC9D69933A1653,2,,C:\PROGRAM
FILES\WINDOWSAPPS\MICROSOFT.WINDOWS.PHOTOS_2020.20090.1002.0_X64__8WEKYB3D8BBWE\MIC
ROSOFT.PHOTOS.EXE

FI2=4724736,06033F4B545583D88E1F6924776124D9AAD4E0304DE803B33355FB41BAC8E48E,04318D
5F758DBC698741AC62BD8A88D0,2,,C:\PROGRAM
FILES\WINDOWSAPPS\MICROSOFT.WINDOWSCALCULATOR_10.2008.2.0_X64__8WEKYB3D8BBWE\CALCUL
ATOR.EXE

FI2=19456,53673689C0CF3741C631B984A980F1EE06F4473EE89AE5B32A9F92EF3B485FE2,717ECAA0
2F0EBDA5FB7138E91004D608,2,,C:\PROGRAM
FILES\WINDOWSAPPS\MICROSOFT.WINDOWSSTORE_12009.1001.1.0_X64__8WEKYB3D8BBWE\WINSTORE
.APP.EXE

FI2=22528,ACCC1B09FD9179CA50B3757B973E0D6500C52BEED838CD38A22170F3D112E59A,A826A51B
8C8A9D7489D4A946D1FC0649,2,,C:\PROGRAM
FILES\WINDOWSAPPS\MICROSOFT.YOURPHONE_1.20092.108.0_X64__8WEKYB3D8BBWE\YOURPHONE.EX
E

FI2=1573376,62311AFC4E6951B44FBC248F4882BFFF16C0BA3EB3A9DF3AD2E6A64A12B4F5E7,22F255
909AFB8748CAEEBC814892EF10,2,,C:\PROGRAM
FILES\WINDOWSAPPS\RIVETNETWORKS.KILLERCONTROLCENTER_2.0.2369.0_X64__RH07TY8M5NKAG\K
ILLERCONTROLCENTER_V1\KILLERCONTROLCENTER.EXE

FI2=4288784,8918093F445758CD53DB2FD6DFDBB28CDC23EA44268A174B091919ECA8B05A78,6E7274
5F2AC3976E38E41F3332358F4B,1,"SCREENOVATE TECHNOLOGIES LTD.",C:\PROGRAM
FILES\WINDOWSAPPS\SCREENOVATETECHNOLOGIES.DELLMOBILECONNECT_3.1.9518.0_X64__0VHBC3N
G4WBP0\APP\DELLMOBILECONNECTCLIENT.EXE

FI2=19968,A6C30BE6C9EF4E7A24EEF1E8CFDE6F54659A8BE4732F907940832794CE14A06E,958BE1CF
1F2F609D2300DAD862829581,2,,C:\PROGRAM
FILES\WINDOWSAPPS\SCREENOVATETECHNOLOGIES.DELLMOBILECONNECT_3.1.9518.0_X64__0VHBC3N
G4WBP0\DELLMOBILECONNECTUNIVERSALCLIENT.EXE

FI2=209408,FC831C36755602B29B042E7E8079CEA4639489BD72FBACA0835CDE93AFF7885E,275114D
5C4EE6285991160671424E162,2,,C:\PROGRAM FILES\WINRAR\7ZXA.DLL

FI2=312320,6A82EC8722A0EB79ADCF0D0CD276AC2D7B1738B1FEA3FF8313B36AFB6E94896E,3BB583C
5ABBB692D018FBDF9B7539FEE,2,,C:\PROGRAM FILES\WINRAR\DEFAULT.SFX

FI2=362496,104E0BFA3DF9F6E6837BF968BD151C181FB7ACFC14ABDEE351D8A2361A15F68A,5326B17
22E9B6B23612ACA1CD027E26F,2,,C:\PROGRAM FILES\WINRAR\DEFAULT64.SFX

FI2=622296,7DF4D8CCC6779BF00771E807CDF2357D0E9750C7415D9C18A654E0C00DEEC1FB,3F9412D
5A9566E9F1EC92F5E09A2912B,1,"win.rar GmbH",C:\PROGRAM FILES\WINRAR\RAR.EXE

FI2=550104,D67C1333873379D41C3FD2C870EDECF88C256DDD1308C9FADCC5110709DC0122,F4ED469
A51DB18F6505DB544D7AC3288,1,"win.rar GmbH",C:\PROGRAM FILES\WINRAR\RAREXT.DLL

FI2=473816,63BB7669444D14F855CA563F9EBD646B600B1F8CCD0B6FA3924EF4EDFFF492F7,27ED9DD
BAE2066EED5B84B32F33CAE71,1,"win.rar GmbH",C:\PROGRAM FILES\WINRAR\RAREXT32.DLL

FI2=2386376,CD2F93B740A405C381BB1897AABEBFE8A5C379FE3C8BFF2BE5559E1D0B468C8F,BD330D
569410F1482A50EA1DA3887204,1,"win.rar GmbH",C:\PROGRAM FILES\WINRAR\WINRAR.EXE

FI2=47328,3094FA8B05082B9A8F0F258782E5280172D7627F820D58E801348D7332F47A61,397E07F0
3BD3FA92DDC2AA478D8F413F,1,"Microsoft Windows",C:\PROGRAMDATA\MICROSOFT\WINDOWS
DEFENDER\DEFINITION UPDATES\{6DC8B7AF-55B0-4063-85F6-BCDC4DEC89E0}\MPKSLDRV.SYS
FI2=533312,AEC93378D5B4441FA8B813D62175575C056B6B88154E073F417A960CF844590A,6A50F45
2AE086B197AB5DCDB36C93774,1,"Microsoft Windows
Publisher",C:\PROGRAMDATA\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.2009.7-
0\MPCMDRUN.EXE

FI2=128376,03D99B46FFF022D7B8BDCDF52D25AB21B30F2346E3B388E22804EF5D6E1AE08F,F54E7E5
84C472FFF2B741C05F8CDC766,1,"Microsoft Windows
Publisher",C:\PROGRAMDATA\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.2009.7-
0\MSMPENG.EXE

FI2=2372048,5B33BB9040F40E2D5022E37F725471F39F14DD4A63EE945537BC0B899B583CE5,5260C8
3AD82BC4499D47706DCD0FE0CE,1,"Microsoft Windows
Publisher",C:\PROGRAMDATA\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.2009.7-
0\NISSRV.EXE

FI2=1915752,78708C6DDEDD0511293019870A4694A11DAAFB83764755A2F148FB329F33AC07,4E0CB6
8CF10AF0A113D64D47E3B645C1,1,"Microsoft Corporation",C:\USERS\LUIS
FERNANDO\APPDATA\LOCAL\MICROSOFT\ONEDRIVE\ONEDRIVE.EXE

FI2=2751856,18D9012AAB254EC3C187FC5D9C204F96397F510F646191AFDFE78CEB7F973FF3,A5A665
15DF1E245022ACEA9ADD213D44,1,"Microsoft Corporation",C:\USERS\LUIS
FERNANDO\APPDATA\LOCAL\MICROSOFT\ONEDRIVE\ONEDRIVESTANDALONEUPDATER.EXE

FI2=392800,3D676FCC70B348D37CBB3137070A60E17F8BF10051522909E6178F13C0536E91,9FC12A1
2AB249E1554253F53BA128153,1,"Postman, Inc.",C:\USERS\LUIS
FERNANDO\APPDATA\LOCAL\POSTMAN\POSTMAN.EXE

FI2=1966688,927017516472FEC1AB80CDA9CBECA00B4B6119CA4C2F0FFD1F2835154148E2D0,45B4D6
DD5C811C4A75BC3122335D7AD6,1,"Postman, Inc.",C:\USERS\LUIS
FERNANDO\APPDATA\LOCAL\POSTMAN\UPDATE.EXE

FI2=4419936,58B3DA246C20A481523208C7A257551D530856D95F56E106625D66226C43B87D,321483
39BE8C1E4D8060FEC90EB79BEF,1,"BitTorrent Inc",C:\USERS\LUIS
FERNANDO\APPDATA\ROAMING\UTORRENT\HELPER_WEB_UI.BTINSTALL

FI2=2117080,AF0C22D96CFF813B30432F5FBDE98D7653BC9165D8F90F0E9B9D9361697F7CD9,29F200
7F7E9E5C5D214ED6E205746DCA,1,"BitTorrent Inc",C:\USERS\LUIS
FERNANDO\APPDATA\ROAMING\UTORRENT\UTORRENT.EXE

FI2=495616,53F7AC6563BB2F627AB5FE9F7FC3F4585EE7DC76040AF615A90551DBC857CDEC,FC87279
78CB3CB42601E4A3F2BAF75FB,2,,C:\USERS\LUIS FERNANDO\DESKTOP\RBXFPSUNLOCKER.EXE

FI2=5278899,C1FB990D5A0C041B2D956A1C2BC3B65177C67236F81DCEBFA8F005F26242DAFA,B61994
09168051904D7EECFCB594C5A8,2,,C:\USERS\LUIS FERNANDO\DESKTOP\TECHNIC_2.EXE

FI2=10752,134AE1D0C90A068CB4CA7D422D1097A007F72E3A26E4BA67B8516902753663B7,AA650FFE
F689036B9F9359791C867027,2,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\1B5B2E8C-E739-
4DF9-9930-0ADA1382393D.TMP.EXE

FI2=10752,134AE1D0C90A068CB4CA7D422D1097A007F72E3A26E4BA67B8516902753663B7,AA650FFE
F689036B9F9359791C867027,2,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\25EBF58E-56F4-
4CC0-8EDC-B405E978EC20.TMP.EXE

FI2=10752,134AE1D0C90A068CB4CA7D422D1097A007F72E3A26E4BA67B8516902753663B7,AA650FFE
F689036B9F9359791C867027,2,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\293958F6-8FD8-
40AD-8C2B-B384DFC0391A.TMP.EXE

FI2=10752,134AE1D0C90A068CB4CA7D422D1097A007F72E3A26E4BA67B8516902753663B7,AA650FFE
F689036B9F9359791C867027,2,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\370544C2-90CF-
4A6B-B35D-13D22D6D571B.TMP.EXE

FI2=10752,134AE1D0C90A068CB4CA7D422D1097A007F72E3A26E4BA67B8516902753663B7,AA650FFE
F689036B9F9359791C867027,2,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\50E73FE0-32A4-
436B-8DFC-7758BEDCDCBF.TMP.EXE

FI2=10752,134AE1D0C90A068CB4CA7D422D1097A007F72E3A26E4BA67B8516902753663B7,AA650FFE
F689036B9F9359791C867027,2,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\52955F6C-6712-
475B-B243-1CBFC6E0B373.TMP.EXE

FI2=10752,134AE1D0C90A068CB4CA7D422D1097A007F72E3A26E4BA67B8516902753663B7,AA650FFE
F689036B9F9359791C867027,2,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\5514A148-4AC8-
480D-B0BA-8206C3BE76B0.TMP.EXE

FI2=10752,134AE1D0C90A068CB4CA7D422D1097A007F72E3A26E4BA67B8516902753663B7,AA650FFE
F689036B9F9359791C867027,2,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\556DA73D-71EE-
4D67-8F1F-85C9450261EE.TMP.EXE

FI2=10752,134AE1D0C90A068CB4CA7D422D1097A007F72E3A26E4BA67B8516902753663B7,AA650FFE
F689036B9F9359791C867027,2,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\5F1C0CE7-0544-
49B1-9337-69644F72EA18.TMP.EXE

FI2=10752,134AE1D0C90A068CB4CA7D422D1097A007F72E3A26E4BA67B8516902753663B7,AA650FFE
F689036B9F9359791C867027,2,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\807CB1C9-85B8-
4F52-89CA-977B1414CE4F.TMP.EXE

FI2=10752,134AE1D0C90A068CB4CA7D422D1097A007F72E3A26E4BA67B8516902753663B7,AA650FFE
F689036B9F9359791C867027,2,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\BCC285E7-33DB-
4FDF-BC4E-6E58138B4767.TMP.EXE

FI2=10752,134AE1D0C90A068CB4CA7D422D1097A007F72E3A26E4BA67B8516902753663B7,AA650FFE
F689036B9F9359791C867027,2,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\D1237D4F-0379-
46E1-B110-A7306C1EA413.TMP.EXE

FI2=10752,134AE1D0C90A068CB4CA7D422D1097A007F72E3A26E4BA67B8516902753663B7,AA650FFE
F689036B9F9359791C867027,2,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\EB947E90-9D05-
47D8-AA49-F7514F03B914.TMP.EXE

FI2=2627968,7704FE111AFE02FD4CDE2D42BD60489880E1717DA040358D9076371101FE0468,C98A99
E0F0B6E2D6ADFC8DFDE48FC45E,1,"Microsoft
Corporation",C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\IS-GB990.TMP\CODESETUP-STABLE-
93C2F0FBF16C5A4B10E4D5F89737D9C2C25488A3.TMP
FI2=-1,,,0,,C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\KISSQ.EXE

FI2=2282040,3758AF2C5ED2899FFC662D65C8EDFE52F39C0504619261F621C01C15C1BC1E0A,0DE5AA
A273059A9C4CD803B1BE9C289A,1,"Roblox
Corporation",C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\RBX-BA8AEF93.TMP

FI2=2282040,AAC7C72B28A46054E0AE100D536BE14918A6D991A4E09AC25D071DEC9FD75378,E5D963
B07763D5F29A74114F79C6C961,1,"Roblox
Corporation",C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\RBX-BC8DD8D9.TMP

FI2=64067496,20FFE431960E4C3C4D4EFAD7235824EC1D4C7571212A902ACE97F8976152DAF7,0AF3E
CB45D7AF3ACEC4EB534FE04CE98,1,"Microsoft
Corporation",C:\USERS\LUISFE~1\APPDATA\LOCAL\TEMP\VSCODE-UPDATE-USER-X64\CODESETUP-
STABLE-93C2F0FBF16C5A4B10E4D5F89737D9C2C25488A3.EXE

FI2=29696,A333CACA9DA0582D1E039B1B65A224C5A05C6C03BE05D3BACAD294645A22F9AA,B604D5D1
64B487AEC8A94F5487BF2602,2,,C:\WAMP64\BIN\APACHE\APACHE2.4.39\BIN\HTTPD.EXE
FI2=15813032,FF4B330C3C0AFA009971A946348022C2DA8AC0AD761414FE70DC92E5ABD93294,C07FB
C663D67DED2C7BC645C8938B7DD,1,"MariaDB Corporation
Ab",C:\WAMP64\BIN\MARIADB\MARIADB10.3.14\BIN\MYSQLD.EXE
FI2=-1,,,0,,C:\WAMP64\BIN\MARIADB\MARIADB10.4.10\BIN\MYSQLD.EXE

FI2=39644480,8F66DEC79289BE9F9EEDB4CC24607DAB57C6E32CC5AA3A6B5829F36451DD11A3,99C83
C78488D81EB2E404ABDD54511FE,1,"Oracle America,
Inc.",C:\WAMP64\BIN\MYSQL\MYSQL5.7.26\BIN\MYSQLD.EXE
===
[MBR]
[MD5=6F5C728704818D7DC62499B0E441E6D3]
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAA=
===
[PT]
0xee Unknown, 1, -1
===
[VBR]
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAA
===
[STAT]u\\VVRSSUFMLTMw
===

You might also like