Sunteți pe pagina 1din 124

System Information report written at: 05/31/15 19:40:29

System Name: PREFERREDCUSTOM


[System Summary]
Item
Value
OS Name Microsoft Windows 7 Home Premium
Version 6.1.7601 Service Pack 1 Build 7601
Other OS Description
Not Available
OS Manufacturer Microsoft Corporation
System Name
PREFERREDCUSTOM
System Manufacturer
TOSHIBA
System Model
Satellite L675D
System Type
x64-based PC
Processor
AMD Turion(tm) II P540 Dual-Core Processor, 2400 Mhz, 2 Core(s),
2 Logical Processor(s)
BIOS Version/Date
TOSHIBA 1.40, 8/26/2010
SMBIOS Version 2.6
Windows Directory
C:\windows
System Directory
C:\windows\system32
Boot Device
\Device\HarddiskVolume1
Locale United States
Hardware Abstraction Layer
Version = "6.1.7601.17514"
User Name
PreferredCustom\Preferred Customer
Time Zone
Eastern Daylight Time
Installed Physical Memory (RAM) 4.00 GB
Total Physical Memory 3.75 GB
Available Physical Memory
2.47 GB
Total Virtual Memory
7.49 GB
Available Virtual Memory
5.52 GB
Page File Space 3.75 GB
Page File
C:\pagefile.sys
[Hardware Resources]

[Conflicts/Sharing]
Resource
Device
I/O Port 0x000000E0-0x000000EF Motherboard resources
I/O Port 0x000000E0-0x000000EF Motherboard resources
I/O Port 0x00000088-0x00000088 Motherboard resources
I/O Port 0x00000088-0x00000088 Motherboard resources
I/O Port 0x00000072-0x0000007F Motherboard resources
I/O Port 0x00000072-0x0000007F Motherboard resources
I/O Port 0x00000000-0x00000CF7 AMD PCI Express (3GIO) Filter Driver
I/O Port 0x00000000-0x00000CF7 Motherboard resources
I/O Port 0x00000000-0x00000CF7 Direct memory access controller
I/O Port 0x000003C0-0x000003DF ATI Mobility Radeon HD 4200 Series
I/O Port 0x000003C0-0x000003DF PCI standard PCI-to-PCI bridge
Memory Address 0xFF400000-0xFF4FFFFF
Memory Address 0xFF400000-0xFF4FFFFF

ATI Mobility Radeon HD 4200 Series


PCI standard PCI-to-PCI bridge

I/O Port 0x00000065-0x00000065 Motherboard resources


I/O Port 0x00000065-0x00000065 Motherboard resources

I/O Port 0x00000090-0x0000009F Motherboard resources


I/O Port 0x00000090-0x0000009F Motherboard resources
I/O Port 0x00000084-0x00000086 Motherboard resources
I/O Port 0x00000084-0x00000086 Motherboard resources
I/O Port 0x000004D0-0x000004D1 Motherboard resources
I/O Port 0x000004D0-0x000004D1 Motherboard resources
I/O Port 0x0000E000-0x0000E0FF ATI Mobility Radeon HD 4200 Series
I/O Port 0x0000E000-0x0000E0FF PCI standard PCI-to-PCI bridge
Memory Address 0xFED00000-0xFED00FFF
Memory Address 0xFED00000-0xFED00FFF

Motherboard resources
High precision event timer

I/O Port 0x000000A2-0x000000BF Motherboard resources


I/O Port 0x000000A2-0x000000BF Motherboard resources
I/O Port 0x0000008C-0x0000008E Motherboard resources
I/O Port 0x0000008C-0x0000008E Motherboard resources
Memory Address 0xD0100000-0xD01FFFFF
Memory Address 0xD0100000-0xD01FFFFF

PCI standard PCI-to-PCI bridge


Realtek PCIe FE Family Controller

IRQ 17 Standard Enhanced PCI to USB Host Controller


IRQ 17 Standard Enhanced PCI to USB Host Controller
IRQ
IRQ
IRQ
IRQ

18
18
18
18

Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC


Standard OpenHCD USB Host Controller
Standard OpenHCD USB Host Controller
PCI standard PCI-to-PCI bridge

I/O Port 0x00000010-0x0000001F Motherboard resources


I/O Port 0x00000010-0x0000001F Motherboard resources
IRQ
IRQ
IRQ
IRQ

19
19
19
19

PCI standard PCI-to-PCI bridge


AMD SATA Controller
Realtek PCIe FE Family Controller
High Definition Audio Controller

Memory Address 0xA0000-0xBFFFF ATI Mobility Radeon HD 4200 Series


Memory Address 0xA0000-0xBFFFF AMD PCI Express (3GIO) Filter Driver
Memory Address 0xA0000-0xBFFFF PCI standard PCI-to-PCI bridge
Memory Address 0xC0000000-0xCFFFFFFF
Memory Address 0xC0000000-0xCFFFFFFF

ATI Mobility Radeon HD 4200 Series


PCI standard PCI-to-PCI bridge

I/O Port 0x000003B0-0x000003BB ATI Mobility Radeon HD 4200 Series


I/O Port 0x000003B0-0x000003BB PCI standard PCI-to-PCI bridge
I/O Port 0x00000080-0x00000080 Motherboard resources
I/O Port 0x00000080-0x00000080 Motherboard resources
I/O Port 0x00000022-0x0000003F Motherboard resources
I/O Port 0x00000022-0x0000003F Motherboard resources
I/O Port 0x0000C000-0x0000CFFF PCI standard PCI-to-PCI bridge
I/O Port 0x0000C000-0x0000CFFF Realtek PCIe FE Family Controller

Memory Address 0xB0000000-0xFFFFFFFF


Memory Address 0xB0000000-0xFFFFFFFF

AMD PCI Express (3GIO) Filter Driver


Motherboard resources

I/O Port 0x00000062-0x00000063 Motherboard resources


I/O Port 0x00000062-0x00000063 Microsoft ACPI-Compliant Embedded Controller
[DMA]
Resource
Channel 4

Device Status
Direct memory access controller OK

[Forced Hardware]
Device PNP Device ID
[I/O]
Resource
Device
0x00000061-0x00000061
0x0000E000-0x0000E0FF
0x0000E000-0x0000E0FF
0x000003B0-0x000003BB
0x000003B0-0x000003BB
0x000003C0-0x000003DF
0x000003C0-0x000003DF
0x0000C000-0x0000CFFF
0x0000C000-0x0000CFFF
0x00000000-0x00000CF7
0x00000000-0x00000CF7
0x00000000-0x00000CF7
0x00000D00-0x0000FFFF
0x00000070-0x00000071
0x0000F040-0x0000F047
0x0000F030-0x0000F033
0x0000F020-0x0000F027
0x0000F010-0x0000F013
0x0000F000-0x0000F00F
0x00000010-0x0000001F
0x00000010-0x0000001F
0x00000022-0x0000003F
0x00000022-0x0000003F
0x00000044-0x0000005F
0x00000063-0x00000063
0x00000065-0x00000065
0x00000065-0x00000065
0x00000067-0x0000006F
0x00000072-0x0000007F
0x00000072-0x0000007F
0x00000080-0x00000080
0x00000080-0x00000080
0x00000084-0x00000086
0x00000084-0x00000086
0x00000088-0x00000088
0x00000088-0x00000088
0x0000008C-0x0000008E
0x0000008C-0x0000008E
0x00000090-0x0000009F
0x00000090-0x0000009F
0x000000A2-0x000000BF

Status
System speaker OK
ATI Mobility Radeon HD 4200 Series
PCI standard PCI-to-PCI bridge OK
ATI Mobility Radeon HD 4200 Series
PCI standard PCI-to-PCI bridge OK
ATI Mobility Radeon HD 4200 Series
PCI standard PCI-to-PCI bridge OK
PCI standard PCI-to-PCI bridge OK
Realtek PCIe FE Family Controller
AMD PCI Express (3GIO) Filter Driver
Motherboard resources OK
Direct memory access controller OK
AMD PCI Express (3GIO) Filter Driver
System CMOS/real time clock
OK
AMD SATA Controller
OK
AMD SATA Controller
OK
AMD SATA Controller
OK
AMD SATA Controller
OK
AMD SATA Controller
OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK

OK
OK
OK
OK
OK
OK

0x000000A2-0x000000BF
0x000000E0-0x000000EF
0x000000E0-0x000000EF
0x000004D0-0x000004D1
0x000004D0-0x000004D1
0x0000FD60-0x0000FD6F
0x00000062-0x00000063
0x00000062-0x00000063
0x000000B1-0x000000B1
0x0000040B-0x0000040B
0x000004D6-0x000004D6
0x00000C00-0x00000C01
0x00000C14-0x00000C14
0x00000C50-0x00000C51
0x00000C52-0x00000C52
0x00000C6C-0x00000C6C
0x00000C6F-0x00000C6F
0x00000CD0-0x00000CD1
0x00000CD2-0x00000CD3
0x00000CD4-0x00000CD5
0x00000CD6-0x00000CD7
0x00000CD8-0x00000CDF
0x00000800-0x0000089F
0x00000B20-0x00000B3F
0x00000900-0x0000090F
0x00000910-0x0000091F
0x0000FE00-0x0000FEFE
0x0000DF00-0x0000DFFF
OK
0x000000F0-0x000000FF
0x00000066-0x00000066
0x00000020-0x00000021
0x000000A0-0x000000A1
0x00000040-0x00000043
0x00000081-0x00000083
0x00000087-0x00000087
0x00000089-0x0000008B
0x0000008F-0x0000008F
0x000000C0-0x000000DF
0x0000D000-0x0000DFFF
0x00000060-0x00000060
0x00000064-0x00000064

Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Microsoft ACPI-Compliant Embedded Controller
OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Motherboard resources OK
Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
Numeric data processor OK
Microsoft ACPI-Compliant Embedded Controller
Programmable interrupt controller
OK
Programmable interrupt controller
OK
System timer
OK
Direct memory access controller OK
Direct memory access controller OK
Direct memory access controller OK
Direct memory access controller OK
Direct memory access controller OK
PCI standard PCI-to-PCI bridge OK
Standard PS/2 Keyboard OK
Standard PS/2 Keyboard OK

[IRQs]
Resource
Device Status
IRQ 4294967294 ATI Mobility Radeon HD 4200 Series
OK
IRQ 19 PCI standard PCI-to-PCI bridge OK
IRQ 19 AMD SATA Controller
OK
IRQ 19 Realtek PCIe FE Family Controller
OK
IRQ 19 High Definition Audio Controller
OK
IRQ 8 System CMOS/real time clock
OK
IRQ 17 Standard Enhanced PCI to USB Host Controller
OK
IRQ 17 Standard Enhanced PCI to USB Host Controller
OK
IRQ 18 Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
IRQ 18 Standard OpenHCD USB Host Controller
OK
IRQ 18 Standard OpenHCD USB Host Controller
OK
IRQ 18 PCI standard PCI-to-PCI bridge OK
IRQ 13 Numeric data processor OK
IRQ 12 Synaptics PS/2 Port TouchPad
OK

OK

OK

IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ

81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140

Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft
Microsoft

ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant
ACPI-Compliant

System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System
System

OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK
OK

IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ
IRQ

141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
0
16
1

Microsoft ACPI-Compliant System OK


Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
Microsoft ACPI-Compliant System OK
System timer
OK
High Definition Audio Controller
Standard PS/2 Keyboard OK

OK

[Memory]
Resource
Device
0xC0000000-0xCFFFFFFF
0xC0000000-0xCFFFFFFF
0xFF500000-0xFF50FFFF

Status
ATI Mobility Radeon HD 4200 Series
PCI standard PCI-to-PCI bridge OK
ATI Mobility Radeon HD 4200 Series

OK
OK

0xFF400000-0xFF4FFFFF ATI Mobility Radeon HD 4200 Series


OK
0xFF400000-0xFF4FFFFF PCI standard PCI-to-PCI bridge OK
0xA0000-0xBFFFF ATI Mobility Radeon HD 4200 Series
OK
0xA0000-0xBFFFF AMD PCI Express (3GIO) Filter Driver
OK
0xA0000-0xBFFFF PCI standard PCI-to-PCI bridge OK
0xD0100000-0xD01FFFFF PCI standard PCI-to-PCI bridge OK
0xD0100000-0xD01FFFFF Realtek PCIe FE Family Controller
OK
0xC0000-0xFFFFF AMD PCI Express (3GIO) Filter Driver
OK
0xB0000000-0xFFFFFFFF AMD PCI Express (3GIO) Filter Driver
OK
0xB0000000-0xFFFFFFFF Motherboard resources OK
0xAFFFFFFF-0xDFFFFFFF AMD PCI Express (3GIO) Filter Driver
OK
0xF0000000-0xFFFFFFFF AMD PCI Express (3GIO) Filter Driver
OK
0xFF708000-0xFF7083FF AMD SATA Controller
OK
0xD0104000-0xD0104FFF Realtek PCIe FE Family Controller
OK
0xE0000000-0xEFFFFFFF System board
OK
0xFEC00000-0xFEC00FFF Motherboard resources OK
0xFEE00000-0xFEE00FFF Motherboard resources OK
0xFED80000-0xFED8FFFF Motherboard resources OK
0xFED61000-0xFED70FFF Motherboard resources OK
0xFEC10000-0xFEC10FFF Motherboard resources OK
0xFED00000-0xFED00FFF Motherboard resources OK
0xFED00000-0xFED00FFF High precision event timer
OK
0xFF800000-0xFFFFFFFF Motherboard resources OK
0xFF706000-0xFF7060FF Standard Enhanced PCI to USB Host Controller
OK
0xFF3FC000-0xFF3FFFFF Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
OK
0xFF704000-0xFF7040FF Standard Enhanced PCI to USB Host Controller
OK
0xFF707000-0xFF707FFF Standard OpenHCD USB Host Controller
OK
0xFF705000-0xFF705FFF Standard OpenHCD USB Host Controller
OK
0xFF700000-0xFF703FFF High Definition Audio Controller
OK
0xFF510000-0xFF513FFF High Definition Audio Controller
OK
0xFF000000-0xFF3FFFFF PCI standard PCI-to-PCI bridge OK
[Components]

[Multimedia]

[Audio Codecs]
CODEC Manufacturer
Description
Status File
Version Size
Creation
Date
c:\windows\system32\msg711.acm Microsoft Corporation
OK
C:\windo
ws\system32\MSG711.ACM 6.1.7600.16385 14.50 KB (14,848 bytes) 7/13/2009 8:18 P
M
c:\windows\system32\imaadp32.acm
Microsoft Corporation
OK
C:\windows\system32\IMAADP32.ACM
6.1.7600.16385 21.50 KB (22,016 bytes)
7/13/2009 8:18 PM
c:\windows\system32\msgsm32.acm Microsoft Corporation
OK
C:\windo
ws\system32\MSGSM32.ACM 6.1.7600.16385 28.50 KB (29,184 bytes) 7/13/2009 8:18 P
M
c:\windows\system32\msadp32.acm Microsoft Corporation
OK
C:\windo
ws\system32\MSADP32.ACM 6.1.7600.16385 23.50 KB (24,064 bytes) 7/13/2009 8:18 P
M
c:\windows\system32\l3codeca.acm
Fraunhofer Institut Integrierte Schaltun
gen IIS Fraunhofer IIS MPEG Layer-3 Codec
OK
C:\windows\system32\L3CO
DECA.ACM
1.9.0.401
79.50 KB (81,408 bytes) 7/13/2009 8:22 PM

[Video Codecs]
CODEC Manufacturer
Description
Status File
Version Size
Creation
Date
c:\windows\system32\msrle32.dll Microsoft Corporation
OK
C:\windo
ws\system32\MSRLE32.DLL 6.1.7601.17514 16.00 KB (16,384 bytes) 4/15/2015 12:28
PM
c:\windows\system32\msvidc32.dll
Microsoft Corporation
OK
C:\windows\system32\MSVIDC32.DLL
6.1.7601.17514 38.00 KB (38,912 bytes)
4/15/2015 12:28 PM
c:\windows\system32\msyuv.dll Microsoft Corporation
OK
C:\windo
ws\system32\MSYUV.DLL 6.1.7601.17514 25.00 KB (25,600 bytes) 4/15/2015 12:28
PM
c:\windows\system32\iyuv_32.dll Microsoft Corporation
OK
C:\windo
ws\system32\IYUV_32.DLL 6.1.7601.17514 53.00 KB (54,272 bytes) 4/15/2015 12:28
PM
c:\windows\system32\tsbyuv.dll Microsoft Corporation
OK
C:\windo
ws\system32\TSBYUV.DLL 6.1.7601.17514 14.50 KB (14,848 bytes) 4/15/2015 12:28
PM
[CD-ROM]
Item
Value
Drive D:
Description
CD-ROM Drive
Media Loaded
Yes
Media Type
DVD Writer
Name
HL-DT-ST BDDVDRW CT30F SATA CdRom Device
Manufacturer
(Standard CD-ROM drives)
Status OK
Transfer Rate -1.00 kbytes/sec
SCSI Target ID 0
PNP Device ID SCSI\CDROM&VEN_HL-DT-ST&PROD_BDDVDRW_CT30F\4&C068CE8&0&020000
Driver c:\windows\system32\drivers\cdrom.sys (6.1.7601.17514, 144.00 KB (147,45
6 bytes), 4/15/2015 12:29 PM)
[Sound Device]
Item
Value
Name
AMD High Definition Audio Device
Manufacturer
Advanced Micro Devices
Status OK
PNP Device ID HDAUDIO\FUNC_01&VEN_1002&DEV_791A&SUBSYS_00791A00&REV_1000\5&65F
06F7&0&0001
Driver c:\windows\system32\drivers\atihdw76.sys (7.12.0.7708, 94.63 KB (96,896
bytes), 5/14/2012 2:12 AM)
Name
Realtek High Definition Audio
Manufacturer
Realtek
Status OK
PNP Device ID HDAUDIO\FUNC_01&VEN_10EC&DEV_0269&SUBSYS_1179FD02&REV_1001\4&279
0AAAD&0&0001
Driver c:\windows\system32\drivers\rtkvhd64.sys (6.0.1.6069, 2.19 MB (2,298,400
bytes), 4/15/2015 2:40 PM)
[Display]
Item
Name

Value
ATI Mobility Radeon HD 4200 Series

PNP Device ID PCI\VEN_1002&DEV_9712&SUBSYS_FD001179&REV_00\4&E5316C6&0&2808


Adapter Type
ATI display adapter (0x9712), Advanced Micro Devices, Inc. compa
tible
Adapter Description
ATI Mobility Radeon HD 4200 Series
Adapter RAM
256.00 MB (268,435,456 bytes)
Installed Drivers
aticfx64.dll,aticfx64.dll,aticfx32,aticfx32,atiumd64.dll
,atidxx64.dll,atiumdag,atidxx32,atiumdva,atiumd6a.cap,atitmm64.dll
Driver Version 8.970.100.1100
INF File
oem19.inf (ati2mtag_RS880M section)
Color Planes
Not Available
Color Table Entries
4294967296
Resolution
1600 x 900 x 60 hertz
Bits/Pixel
32
Memory Address 0xC0000000-0xCFFFFFFF
I/O Port
0x0000E000-0x0000E0FF
Memory Address 0xFF500000-0xFF50FFFF
Memory Address 0xFF400000-0xFF4FFFFF
IRQ Channel
IRQ 4294967294
I/O Port
0x000003B0-0x000003BB
I/O Port
0x000003C0-0x000003DF
Memory Address 0xA0000-0xBFFFF
Driver c:\windows\system32\drivers\atikmpag.sys (8.14.1.6264, 351.50 KB (359,93
6 bytes), 4/29/2013 10:48 PM)
[Infrared]
Item

Value

[Input]

[Keyboard]
Item
Value
Description
Standard PS/2 Keyboard
Name
Enhanced (101- or 102-key)
Layout 00000409
PNP Device ID ACPI\PNP0303\4&20222292&0
Number of Function Keys 12
I/O Port
0x00000060-0x00000060
I/O Port
0x00000064-0x00000064
IRQ Channel
IRQ 1
Driver c:\windows\system32\drivers\i8042prt.sys (6.1.7600.16385, 103.00 KB (105
,472 bytes), 7/13/2009 7:19 PM)
[Pointing Device]
Item
Value
Hardware Type Synaptics PS/2 Port TouchPad
Number of Buttons
0
Status OK
PNP Device ID ACPI\TOS0100\4&20222292&0
Power Management Supported
No
Double Click Threshold Not Available
Handedness
Not Available
IRQ Channel
IRQ 12
Driver c:\windows\system32\drivers\i8042prt.sys (6.1.7600.16385, 103.00 KB (105
,472 bytes), 7/13/2009 7:19 PM)

[Modem]
Item
Value
Name
HDAUDIO Soft Data Fax Modem with SmartCP
Description
HDAUDIO Soft Data Fax Modem with SmartCP
Device ID
HDAUDIO\FUNC_02&VEN_14F1&DEV_2C06&SUBSYS_14F10000&REV_1000\4&279
0AAAD&0&0102
Device Type
Internal Modem
Attached To
COM3
Answer Mode
Not Available
PNP Device ID HDAUDIO\FUNC_02&VEN_14F1&DEV_2C06&SUBSYS_14F10000&REV_1000\4&279
0AAAD&0&0102
Provider Name CXT
Modem INF Path oem15.inf
Modem INF Section
Modem1
Blind Off
X4
Blind On
X3
Compression Off +DS=0;+DS44=0;
Compression On +DS=3;+DS44=3;
Error Control Forced
+ES=3,2,4;
Error Control Off
+ES=1,0,1;
Error Control On
+ES=3,0,2;
Flow Control Hard
+IFC=2,2;
Flow Control Off
+IFC=0,0;
Flow Control Soft
+IFC=1,1;
DCB

Default <
Inactivity Timeout
0
Modulation Bell Not Available
Modulation CCITT
Not Available
Prefix AT
Pulse P
Reset ATZ<cr>
Responses Key Name
HDAUDIO Soft Data Fax Modem with SmartCP::CXT::CXT
Speaker Mode Dial
M1
Speaker Mode Off
M0
Speaker Mode On M2
Speaker Mode Setup
M3
Speaker Volume High
L3
Speaker Volume Low
L1
Speaker Volume Med
L2
String Format Not Available
Terminator
<cr>
Tone
T
Driver c:\windows\system32\drivers\modem.sys (6.1.7600.16385, 39.50 KB (40,448
bytes), 7/13/2009 8:10 PM)
[Network]

[Adapter]
Item
Value
Name
[00000000] WAN Miniport (SSTP)
Adapter Type
Not Available
Product Type
WAN Miniport (SSTP)
Installed
Yes
PNP Device ID ROOT\MS_SSTPMINIPORT\0000
Last Reset
5/30/2015 10:08 PM

Index 0
Service Name
RasSstp
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\rassstp.sys (6.1.7600.16385, 82.00 KB (83,96
8 bytes), 7/13/2009 8:10 PM)
Name
[00000001] WAN Miniport (IKEv2)
Adapter Type
Not Available
Product Type
WAN Miniport (IKEv2)
Installed
Yes
PNP Device ID ROOT\MS_AGILEVPNMINIPORT\0000
Last Reset
5/30/2015 10:08 PM
Index 1
Service Name
RasAgileVpn
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\agilevpn.sys (6.1.7600.16385, 59.00 KB (60,4
16 bytes), 7/13/2009 8:10 PM)
Name
[00000002] WAN Miniport (L2TP)
Adapter Type
Not Available
Product Type
WAN Miniport (L2TP)
Installed
Yes
PNP Device ID ROOT\MS_L2TPMINIPORT\0000
Last Reset
5/30/2015 10:08 PM
Index 2
Service Name
Rasl2tp
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\rasl2tp.sys (6.1.7601.17514, 126.50 KB (129,
536 bytes), 4/15/2015 12:28 PM)
Name
[00000003] WAN Miniport (PPTP)
Adapter Type
Not Available
Product Type
WAN Miniport (PPTP)
Installed
Yes
PNP Device ID ROOT\MS_PPTPMINIPORT\0000
Last Reset
5/30/2015 10:08 PM
Index 3
Service Name
PptpMiniport
IP Address
Not Available

IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\raspptp.sys (6.1.7601.17514, 108.50 KB (111,
104 bytes), 4/15/2015 12:28 PM)
Name
[00000004] WAN Miniport (PPPOE)
Adapter Type
Not Available
Product Type
WAN Miniport (PPPOE)
Installed
Yes
PNP Device ID ROOT\MS_PPPOEMINIPORT\0000
Last Reset
5/30/2015 10:08 PM
Index 4
Service Name
RasPppoe
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\raspppoe.sys (6.1.7600.16385, 90.50 KB (92,6
72 bytes), 7/13/2009 8:10 PM)
Name
[00000005] WAN Miniport (IPv6)
Adapter Type
Not Available
Product Type
WAN Miniport (IPv6)
Installed
Yes
PNP Device ID ROOT\MS_NDISWANIPV6\0000
Last Reset
5/30/2015 10:08 PM
Index 5
Service Name
NdisWan
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\ndiswan.sys (6.1.7601.17514, 160.50 KB (164,
352 bytes), 4/15/2015 12:28 PM)
Name
[00000006] WAN Miniport (Network Monitor)
Adapter Type
Not Available
Product Type
WAN Miniport (Network Monitor)
Installed
Yes
PNP Device ID ROOT\MS_NDISWANBH\0000
Last Reset
5/30/2015 10:08 PM
Index 6
Service Name
NdisWan
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No

DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\ndiswan.sys (6.1.7601.17514, 160.50 KB (164,
352 bytes), 4/15/2015 12:28 PM)
Name
[00000007] Realtek PCIe FE Family Controller
Adapter Type
Ethernet 802.3
Product Type
Realtek PCIe FE Family Controller
Installed
Yes
PNP Device ID PCI\VEN_10EC&DEV_8136&SUBSYS_FD001179&REV_05\4&29E155A0&0&0038
Last Reset
5/30/2015 10:08 PM
Index 7
Service Name
RTL8167
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
Yes
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
88:AE:1D:FA:D3:F8
I/O Port
0x0000C000-0x0000CFFF
Memory Address 0xD0104000-0xD0104FFF
Memory Address 0xD0100000-0xD01FFFFF
IRQ Channel
IRQ 19
Driver c:\windows\system32\drivers\rt64win7.sys (7.13.112.2010, 317.53 KB (325,
152 bytes), 4/15/2015 2:41 PM)
Name
[00000008] WAN Miniport (IP)
Adapter Type
Not Available
Product Type
WAN Miniport (IP)
Installed
Yes
PNP Device ID ROOT\MS_NDISWANIP\0000
Last Reset
5/30/2015 10:08 PM
Index 8
Service Name
NdisWan
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\ndiswan.sys (6.1.7601.17514, 160.50 KB (164,
352 bytes), 4/15/2015 12:28 PM)
Name
[00000009] Microsoft ISATAP Adapter
Adapter Type
Tunnel
Product Type
Microsoft ISATAP Adapter
Installed
Yes
PNP Device ID ROOT\*ISATAP\0000
Last Reset
5/30/2015 10:08 PM
Index 9
Service Name
tunnel
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available

DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\tunnel.sys (6.1.7601.17514, 122.50 KB (125,4
40 bytes), 4/15/2015 12:28 PM)
Name
[00000010] RAS Async Adapter
Adapter Type
Not Available
Product Type
RAS Async Adapter
Installed
Yes
PNP Device ID Not Available
Last Reset
5/30/2015 10:08 PM
Index 10
Service Name
AsyncMac
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Name
[00000011] Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
Adapter Type
Ethernet 802.3
Product Type
Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
Installed
Yes
PNP Device ID PCI\VEN_10EC&DEV_8176&SUBSYS_818410EC&REV_01\4&2CDF5449&0&0030
Last Reset
5/30/2015 10:08 PM
Index 11
Service Name
RTL8192Ce
IP Address
10.0.0.6, fe80::a092:15bd:f683:1028, 2601:6:2d80:367:5cef:fe54:2
655:eebb, 2601:6:2d80:367:a092:15bd:f683:1028
IP Subnet
255.255.255.0, 64, 128, 64
Default IP Gateway
10.0.0.1, fe80::ea3e:fcff:fe8a:5361
DHCP Enabled
Yes
DHCP Server
10.0.0.1
DHCP Lease Expires
6/6/2015 10:09 PM
DHCP Lease Obtained
5/30/2015 10:09 PM
MAC Address
88:25:2C:AE:1A:32
I/O Port
0x0000DF00-0x0000DFFF
Memory Address 0xFF3FC000-0xFF3FFFFF
IRQ Channel
IRQ 18
Driver c:\windows\system32\drivers\rtl8192ce.sys (1002.2.428.2010, 910.53 KB (9
32,384 bytes), 4/15/2015 2:43 PM)
Name
[00000012] Microsoft ISATAP Adapter
Adapter Type
Tunnel
Product Type
Microsoft ISATAP Adapter
Installed
Yes
PNP Device ID ROOT\*ISATAP\0001
Last Reset
5/30/2015 10:08 PM
Index 12
Service Name
tunnel
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No

DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\tunnel.sys (6.1.7601.17514, 122.50 KB (125,4
40 bytes), 4/15/2015 12:28 PM)
Name
[00000013] Microsoft Teredo Tunneling Adapter
Adapter Type
Tunnel
Product Type
Microsoft Teredo Tunneling Adapter
Installed
Yes
PNP Device ID ROOT\*TEREDO\0000
Last Reset
5/30/2015 10:08 PM
Index 13
Service Name
tunnel
IP Address
Not Available
IP Subnet
Not Available
Default IP Gateway
Not Available
DHCP Enabled
No
DHCP Server
Not Available
DHCP Lease Expires
Not Available
DHCP Lease Obtained
Not Available
MAC Address
Not Available
Driver c:\windows\system32\drivers\tunnel.sys (6.1.7601.17514, 122.50 KB (125,4
40 bytes), 4/15/2015 12:28 PM)
[Protocol]
Item
Value
Name
MSAFD Tcpip [TCP/IP]
Connectionless Service No
Guarantees Delivery
Yes
Guarantees Sequencing Yes
Maximum Address Size
16 bytes
Maximum Message Size
0 bytes
Message Oriented
No
Minimum Address Size
16 bytes
Pseudo Stream Oriented No
Supports Broadcasting No
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
No
Supports Expedited Data Yes
Supports Graceful Closing
Yes
Supports Guaranteed Bandwidth No
Supports Multicasting No
Name
MSAFD Tcpip [UDP/IP]
Connectionless Service Yes
Guarantees Delivery
No
Guarantees Sequencing No
Maximum Address Size
16 bytes
Maximum Message Size
63.99 KB (65,527 bytes)
Message Oriented
Yes
Minimum Address Size
16 bytes
Pseudo Stream Oriented No
Supports Broadcasting Yes
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
No

Supports
Supports
Supports
Supports

Expedited Data No
Graceful Closing
Guaranteed Bandwidth
Multicasting Yes

No
No

Name
MSAFD Tcpip [TCP/IPv6]
Connectionless Service No
Guarantees Delivery
Yes
Guarantees Sequencing Yes
Maximum Address Size
28 bytes
Maximum Message Size
0 bytes
Message Oriented
No
Minimum Address Size
28 bytes
Pseudo Stream Oriented No
Supports Broadcasting No
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
No
Supports Expedited Data Yes
Supports Graceful Closing
Yes
Supports Guaranteed Bandwidth No
Supports Multicasting No
Name
MSAFD Tcpip [UDP/IPv6]
Connectionless Service Yes
Guarantees Delivery
No
Guarantees Sequencing No
Maximum Address Size
28 bytes
Maximum Message Size
63.99 KB (65,527 bytes)
Message Oriented
Yes
Minimum Address Size
28 bytes
Pseudo Stream Oriented No
Supports Broadcasting Yes
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
No
Supports Expedited Data No
Supports Graceful Closing
No
Supports Guaranteed Bandwidth No
Supports Multicasting Yes
Name
RSVP TCPv6 Service Provider
Connectionless Service No
Guarantees Delivery
Yes
Guarantees Sequencing Yes
Maximum Address Size
28 bytes
Maximum Message Size
0 bytes
Message Oriented
No
Minimum Address Size
28 bytes
Pseudo Stream Oriented No
Supports Broadcasting No
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
Yes
Supports Expedited Data Yes
Supports Graceful Closing
Yes
Supports Guaranteed Bandwidth No
Supports Multicasting No
Name

RSVP TCP Service Provider

Connectionless Service No
Guarantees Delivery
Yes
Guarantees Sequencing Yes
Maximum Address Size
16 bytes
Maximum Message Size
0 bytes
Message Oriented
No
Minimum Address Size
16 bytes
Pseudo Stream Oriented No
Supports Broadcasting No
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
Yes
Supports Expedited Data Yes
Supports Graceful Closing
Yes
Supports Guaranteed Bandwidth No
Supports Multicasting No
Name
RSVP UDPv6 Service Provider
Connectionless Service Yes
Guarantees Delivery
No
Guarantees Sequencing No
Maximum Address Size
28 bytes
Maximum Message Size
63.99 KB (65,527 bytes)
Message Oriented
Yes
Minimum Address Size
28 bytes
Pseudo Stream Oriented No
Supports Broadcasting Yes
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
Yes
Supports Expedited Data No
Supports Graceful Closing
No
Supports Guaranteed Bandwidth No
Supports Multicasting Yes
Name
RSVP UDP Service Provider
Connectionless Service Yes
Guarantees Delivery
No
Guarantees Sequencing No
Maximum Address Size
16 bytes
Maximum Message Size
63.99 KB (65,527 bytes)
Message Oriented
Yes
Minimum Address Size
16 bytes
Pseudo Stream Oriented No
Supports Broadcasting Yes
Supports Connect Data No
Supports Disconnect Data
No
Supports Encryption
Yes
Supports Expedited Data No
Supports Graceful Closing
No
Supports Guaranteed Bandwidth No
Supports Multicasting Yes
[WinSock]
Item
File
Size
Version

Value
c:\windows\syswow64\wsock32.dll
15.00 KB (15,360 bytes)
6.1.7600.16385

File
c:\windows\system32\wsock32.dll
Size
18.00 KB (18,432 bytes)
Version 6.1.7600.16385
[Ports]

[Serial]
Item
Value
Name
HDAUDIO Soft Data Fax Modem with SmartCP
Status OK
PNP Device ID HDAUDIO\FUNC_02&VEN_14F1&DEV_2C06&SUBSYS_14F10000&REV_1000\4&279
0AAAD&0&0102
Maximum Input Buffer Size
0
Maximum Output Buffer Size
No
Settable Baud Rate
Yes
Settable Data Bits
Yes
Settable Flow Control Yes
Settable Parity Yes
Settable Parity Check Yes
Settable Stop Bits
Yes
Settable RLSD Yes
Supports RLSD Yes
Supports 16 Bit Mode
No
Supports Special Characters
No
Baud Rate
9600
Bits/Byte
8
Stop Bits
1
Parity None
Busy
No
Abort Read/Write on Error
No
Binary Mode Enabled
Yes
Continue XMit on XOff No
CTS Outflow Control
No
Discard NULL Bytes
No
DSR Outflow Control
0
DSR Sensitivity 0
DTR Flow Control Type Disable
EOF Character 0
Error Replace Character 0
Error Replacement Enabled
No
Event Character 0
Parity Check Enabled
No
RTS Flow Control Type Disable
XOff Character 0
XOffXMit Threshold
0
XOn Character 0
XOnXMit Threshold
0
XOnXOff InFlow Control 0
XOnXOff OutFlow Control 0
Driver c:\windows\system32\drivers\modem.sys (6.1.7600.16385, 39.50 KB (40,448
bytes), 7/13/2009 8:10 PM)
[Parallel]
Item

Value

[Storage]

[Drives]
Item
Value
Drive C:
Description
Local Fixed Disk
Compressed
No
File System
NTFS
Size
285.75 GB (306,823,819,264 bytes)
Free Space
189.95 GB (203,961,950,208 bytes)
Volume Name
TI105955W0C
Volume Serial Number
621CEF99
Drive D:
Description

CD-ROM Disc

[Disks]
Item
Value
Description
Disk drive
Manufacturer
(Standard disk drives)
Model TOSHIBA MK3265GSXN SATA Disk Device
Bytes/Sector
512
Media Loaded
Yes
Media Type
Fixed hard disk
Partitions
3
SCSI Bus
1
SCSI Logical Unit
0
SCSI Port
0
SCSI Target ID 0
Sectors/Track 63
Size
298.09 GB (320,070,320,640 bytes)
Total Cylinders 38,913
Total Sectors 625,137,345
Total Tracks
9,922,815
Tracks/Cylinder 255
Partition
Disk #0, Partition #0
Partition Size 1.46 GB (1,572,864,000 bytes)
Partition Starting Offset
1,048,576 bytes
Partition
Disk #0, Partition #1
Partition Size 285.75 GB (306,823,823,360 bytes)
Partition Starting Offset
1,573,912,576 bytes
Partition
Disk #0, Partition #2
Partition Size 10.87 GB (11,674,845,184 bytes)
Partition Starting Offset
308,397,735,936 bytes
[SCSI]
Item

Value

[IDE]
Item
Value
Name
AMD SATA Controller
Manufacturer
AMD
Status OK
PNP Device ID PCI\VEN_1002&DEV_4391&SUBSYS_FD001179&REV_00\3&267A616A&0&88
I/O Port
0x0000F040-0x0000F047

I/O Port
0x0000F030-0x0000F033
I/O Port
0x0000F020-0x0000F027
I/O Port
0x0000F010-0x0000F013
I/O Port
0x0000F000-0x0000F00F
Memory Address 0xFF708000-0xFF7083FF
IRQ Channel
IRQ 19
Driver c:\windows\system32\drivers\amdsata.sys (1.2.0.164, 68.55 KB (70,200 byt
es), 4/15/2015 2:40 PM)
[Printing]
Name
Driver Port Name
Server Name
Microsoft XPS Document Writer Microsoft XPS Document Writer
Not Available
Fax
Microsoft Shared Fax Driver
SHRFAX: Not Available

XPSPort:

[Problem Devices]
Device PNP Device ID

Error Code

[USB]
Device PNP Device ID
Standard Enhanced PCI to USB Host Controller
PCI\VEN_1002&DEV_4396&SUBSYS_FD0
01179&REV_00\3&267A616A&0&92
Standard Enhanced PCI to USB Host Controller
PCI\VEN_1002&DEV_4396&SUBSYS_FD0
01179&REV_00\3&267A616A&0&9A
Standard OpenHCD USB Host Controller
PCI\VEN_1002&DEV_4397&SUBSYS_FD001179&RE
V_00\3&267A616A&0&90
Standard OpenHCD USB Host Controller
PCI\VEN_1002&DEV_4397&SUBSYS_FD001179&RE
V_00\3&267A616A&0&98
[Software Environment]

[System Drivers]
Name
Description
File
Type
Started Start Mode
State Status
Error Control Accept Pause
Accept Stop
1394ohci
1394 OHCI Compliant Host Controller
c:\windows\system32\driv
ers\1394ohci.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
acpi
Microsoft ACPI Driver c:\windows\system32\drivers\acpi.sys
Kernel D
river Yes
Boot
Running OK
Critical
No
Yes
acpipmi ACPI Power Meter Driver c:\windows\system32\drivers\acpipmi.sys Kernel D
river No
Manual Stopped OK
Normal No
No
adp94xx adp94xx c:\windows\system32\drivers\adp94xx.sys Kernel Driver No
Manual Stopped OK
Normal No
No
adpahci adpahci c:\windows\system32\drivers\adpahci.sys Kernel Driver No
Manual Stopped OK
Normal No
No
adpu320 adpu320 c:\windows\system32\drivers\adpu320.sys Kernel Driver No
Manual Stopped OK
Normal No
No
afd
Ancillary Function Driver for Winsock c:\windows\system32\drivers\afd.
sys
Kernel Driver Yes
System Running OK
Normal No
Yes
ageresoftmodem Agere Systems Soft Modem
c:\windows\system32\drivers\agrs
m64.sys Kernel Driver No
Manual Stopped OK
Normal No
No
agp440 Intel AGP Bus Filter
c:\windows\system32\drivers\agp440.sys Kernel D
river No
Manual Stopped OK
Normal No
No
aliide aliide c:\windows\system32\drivers\aliide.sys Kernel Driver No

Manual Stopped OK
Critical
No
No
amdide amdide c:\windows\system32\drivers\amdide.sys Kernel Driver No
Manual Stopped OK
Critical
No
No
amdiox64
AMD IO Driver c:\windows\system32\drivers\amdiox64.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
amdk8 AMD K8 Processor Driver c:\windows\system32\drivers\amdk8.sys Kernel D
river No
Manual Stopped OK
Normal No
No
amdkmdag
amdkmdag
c:\windows\system32\drivers\atikmdag.sys
Kernel Driver Yes
Manual Running OK
Ignore No
Yes
amdkmdap
amdkmdap
c:\windows\system32\drivers\atikmpag.sys
Kernel Driver Yes
Manual Running OK
Ignore No
Yes
amdppm AMD Processor Driver
c:\windows\system32\drivers\amdppm.sys Kernel D
river Yes
Manual Running OK
Normal No
Yes
amdsata amdsata c:\windows\system32\drivers\amdsata.sys Kernel Driver Yes
Boot
Running OK
Normal No
Yes
amdsbs amdsbs c:\windows\system32\drivers\amdsbs.sys Kernel Driver No
Manual Stopped OK
Normal No
No
amdxata amdxata c:\windows\system32\drivers\amdxata.sys Kernel Driver Yes
Boot
Running OK
Normal No
Yes
aoddriver4.1
AODDriver4.1
\??\c:\program files\ati technologies\ati.ace\fu
el\amd64\aoddriver2.sys Kernel Driver Yes
Auto
Running OK
Normal
No
Yes
appid AppID Driver
c:\windows\system32\drivers\appid.sys Kernel Driver
No
Manual Stopped OK
Normal No
No
arc
arc
c:\windows\system32\drivers\arc.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
arcsas arcsas c:\windows\system32\drivers\arcsas.sys Kernel Driver No
Manual Stopped OK
Normal No
No
asyncmac
RAS Asynchronous Media Driver c:\windows\system32\drivers\asyn
cmac.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
atapi IDE Channel
c:\windows\system32\drivers\atapi.sys Kernel Driver
Yes
Boot
Running OK
Critical
No
Yes
atihdaudioservice
AMD Function Driver for HD Audio Service
c:\windo
ws\system32\drivers\atihdw76.sys
Kernel Driver Yes
Manual Running
OK
Normal No
Yes
atipcie AMD PCI Express (3GIO) Filter c:\windows\system32\drivers\atipcie.sys
Kernel Driver Yes
Boot
Running OK
Normal No
Yes
b06bdrv Broadcom NetXtreme II VBD
c:\windows\system32\drivers\bxvbda.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
b57nd60a
Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 c:\windows\syste
m32\drivers\b57nd60a.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
beep
Beep
c:\windows\system32\drivers\beep.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
bhdrvx64
BHDrvx64
\??\c:\programdata\norton\{0c55c096-0f1d-4f28-aa
a2-85ef591126e7}\nis_18.0.0.128\definitions\bashdefs\20150506.001\bhdrvx64.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
blbdrive
blbdrive
c:\windows\system32\drivers\blbdrive.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
bowser Browser Support Driver c:\windows\system32\drivers\bowser.sys File Sys
tem Driver
Yes
Manual Running OK
Normal No
Yes
brfiltlo
Brother USB Mass-Storage Lower Filter Driver
c:\windows\syste
m32\drivers\brfiltlo.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
brfiltup
Brother USB Mass-Storage Upper Filter Driver
c:\windows\syste
m32\drivers\brfiltup.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
brserid Brother MFC Serial Port Interface Driver (WDM) c:\windows\system32\driv
ers\brserid.sys Kernel Driver No
Manual Stopped OK
Normal No

No
brserwdm
Brother WDM Serial driver
c:\windows\system32\drivers\brse
rwdm.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
brusbmdm
Brother MFC USB Fax Only Modem c:\windows\system32\drivers\brus
bmdm.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
brusbser
Brother MFC USB Serial WDM Driver
c:\windows\system32\driv
ers\brusbser.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
bthmodem
Bluetooth Serial Communications Driver c:\windows\system32\driv
ers\bthmodem.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
caxhwazl
CAXHWAZL
c:\windows\system32\drivers\caxhwazl.sys
Kernel Driver Yes
Manual Running OK
Ignore No
Yes
cdfs
CD/DVD File System Reader
c:\windows\system32\drivers\cdfs.sys
File System Driver
Yes
Disabled
Running OK
Normal No
Yes
cdrom CD-ROM Driver c:\windows\system32\drivers\cdrom.sys Kernel Driver
Yes
System Running OK
Normal No
Yes
circlass
Consumer IR Devices
c:\windows\system32\drivers\circlass.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
clfs
Common Log (CLFS)
c:\windows\system32\clfs.sys
Kernel Driver
Yes
Boot
Running OK
Critical
No
Yes
cmbatt Microsoft ACPI Control Method Battery Driver
c:\windows\system32\driv
ers\cmbatt.sys Kernel Driver Yes
Manual Running OK
Normal No
Yes
cmdide cmdide c:\windows\system32\drivers\cmdide.sys Kernel Driver No
Manual Stopped OK
Critical
No
No
cng
CNG
c:\windows\system32\drivers\cng.sys
Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
compbatt
Microsoft Composite Battery Driver
c:\windows\system32\driv
ers\compbatt.sys
Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
compositebus
Composite Bus Enumerator Driver c:\windows\system32\drivers\comp
ositebus.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
crcdisk Crcdisk Filter Driver c:\windows\system32\drivers\crcdisk.sys Kernel D
river No
Disabled
Stopped OK
Normal No
No
dfsc
DFS Namespace Client Driver
c:\windows\system32\drivers\dfsc.sys
File System Driver
Yes
System Running OK
Normal No
Yes
discache
System Attribute Cache c:\windows\system32\drivers\discache.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
disk
Disk Driver
c:\windows\system32\drivers\disk.sys
Kernel Driver
Yes
Boot
Running OK
Normal No
Yes
drmkaud Microsoft Trusted Audio Drivers c:\windows\system32\drivers\drmkaud.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
dxgkrnl LDDM Graphics Subsystem c:\windows\system32\drivers\dxgkrnl.sys Kernel D
river Yes
Manual Running OK
Ignore No
Yes
ebdrv Broadcom NetXtreme II 10 GigE VBD
c:\windows\system32\drivers\evbd
a.sys Kernel Driver No
Manual Stopped OK
Normal No
No
eectrl Symantec Eraser Control driver \??\c:\program files (x86)\common files\
symantec shared\eengine\eectrl64.sys
Kernel Driver Yes
System Running
OK
Normal No
Yes
elxstor elxstor c:\windows\system32\drivers\elxstor.sys Kernel Driver No
Manual Stopped OK
Normal No
No
eraserutilrebootdrv
EraserUtilRebootDrv
\??\c:\program files (x86)\commo
n files\symantec shared\eengine\eraserutilrebootdrv.sys Kernel Driver Yes
Manual Running OK
Normal No
Yes
errdev Microsoft Hardware Error Device Driver c:\windows\system32\drivers\errd

ev.sys Kernel Driver No


Manual Stopped OK
Normal No
No
exfat exFAT File System Driver
c:\windows\system32\drivers\exfat.sys
File System Driver
No
Manual Stopped OK
Normal No
No
fastfat FAT12/16/32 File System Driver c:\windows\system32\drivers\fastfat.sys
File System Driver
No
Manual Stopped OK
Normal No
No
fdc
Floppy Disk Controller Driver c:\windows\system32\drivers\fdc.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
fileinfo
File Information FS MiniFilter c:\windows\system32\drivers\file
info.sys
File System Driver
Yes
Boot
Running OK
Normal
No
Yes
filetrace
Filetrace
c:\windows\system32\drivers\filetrace.sys
File System Driver
No
Manual Stopped OK
Normal No
No
flpydisk
Floppy Disk Driver
c:\windows\system32\drivers\flpydisk.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
fltmgr FltMgr c:\windows\system32\drivers\fltmgr.sys File System Driver
Yes
Boot
Running OK
Critical
No
Yes
fsdepends
File System Dependency Minifilter
c:\windows\system32\driv
ers\fsdepends.sys
File System Driver
No
Manual Stopped OK
Critical
No
No
fvevol Bitlocker Drive Encryption Filter Driver
c:\windows\system32\driv
ers\fvevol.sys Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
gagp30kx
Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms
c:\windows\system32\drivers\gagp30kx.sys
Kernel Driver No
Manual
Stopped OK
Normal No
No
hcw85cir
Hauppauge Consumer Infrared Receiver
c:\windows\system32\driv
ers\hcw85cir.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
hdaudaddservice Microsoft 1.1 UAA Function Driver for High Definition Audio Serv
ice
c:\windows\system32\drivers\hdaudio.sys Kernel Driver No
Manual
Stopped OK
Normal No
No
hdaudbus
Microsoft UAA Bus Driver for High Definition Audio
c:\windo
ws\system32\drivers\hdaudbus.sys
Kernel Driver Yes
Manual Running
OK
Normal No
Yes
hidbatt HID UPS Battery Driver c:\windows\system32\drivers\hidbatt.sys Kernel D
river No
Manual Stopped OK
Normal No
No
hidbth Microsoft Bluetooth HID Miniport
c:\windows\system32\drivers\hidb
th.sys Kernel Driver No
Manual Stopped OK
Ignore No
No
hidir Microsoft Infrared HID Driver c:\windows\system32\drivers\hidir.sys
Kernel Driver No
Manual Stopped OK
Ignore No
No
hidusb Microsoft HID Class Driver
c:\windows\system32\drivers\hidusb.sys
Kernel Driver No
Manual Stopped OK
Ignore No
No
hpsamd HpSAMD c:\windows\system32\drivers\hpsamd.sys Kernel Driver No
Manual Stopped OK
Normal No
No
hsf_dpv HSF_DPV c:\windows\system32\drivers\cax_dpv.sys Kernel Driver Yes
Manual Running OK
Ignore No
Yes
http
HTTP
c:\windows\system32\drivers\http.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
hwpolicy
Hardware Policy Driver c:\windows\system32\drivers\hwpolicy.sys
Kernel Driver Yes
Boot
Running OK
Normal No
Yes
i8042prt
i8042 Keyboard and PS/2 Mouse Port Driver
c:\windows\syste
m32\drivers\i8042prt.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
iastorv Intel RAID Controller Windows 7 c:\windows\system32\drivers\iastorv.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
idsvia64
IDSVia64
\??\c:\programdata\norton\{0c55c096-0f1d-4f28-aa
a2-85ef591126e7}\nis_18.0.0.128\definitions\ipsdefs\20150515.001\idsvia64.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
iirsp iirsp c:\windows\system32\drivers\iirsp.sys Kernel Driver No
Manual Stopped OK
Normal No
No

intcazaudaddservice
Service for Realtek HD Audio (WDM)
c:\windows\syste
m32\drivers\rtkvhd64.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
intelide
intelide
c:\windows\system32\drivers\intelide.sys
Kernel Driver No
Manual Stopped OK
Critical
No
No
intelppm
Intel Processor Driver c:\windows\system32\drivers\intelppm.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
ipfilterdriver IP Traffic Filter Driver
c:\windows\system32\drivers\ipfl
tdrv.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
ipmidrv IPMIDRV c:\windows\system32\drivers\ipmidrv.sys Kernel Driver No
Manual Stopped OK
Normal No
No
ipnat IP Network Address Translator c:\windows\system32\drivers\ipnat.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
irenum IR Bus Enumerator
c:\windows\system32\drivers\irenum.sys Kernel D
river No
Manual Stopped OK
Ignore No
No
isapnp isapnp c:\windows\system32\drivers\isapnp.sys Kernel Driver No
Manual Stopped OK
Critical
No
No
iscsiprt
iScsiPort Driver
c:\windows\system32\drivers\msiscsi.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
kbdclass
Keyboard Class Driver c:\windows\system32\drivers\kbdclass.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
kbdhid Keyboard HID Driver
c:\windows\system32\drivers\kbdhid.sys Kernel D
river No
Manual Stopped OK
Ignore No
No
ksecdd KSecDD c:\windows\system32\drivers\ksecdd.sys Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
ksecpkg KSecPkg c:\windows\system32\drivers\ksecpkg.sys Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
ksthunk Kernel Streaming Thunks c:\windows\system32\drivers\ksthunk.sys Kernel D
river Yes
Manual Running OK
Normal No
Yes
lltdio Link-Layer Topology Discovery Mapper I/O Driver c:\windows\system32\driv
ers\lltdio.sys Kernel Driver Yes
Auto
Running OK
Normal No
Yes
lpcfilter
LPC Lower Filter Driver c:\windows\system32\drivers\lpcfilter.sy
s
Kernel Driver Yes
Boot
Running OK
Ignore No
Yes
lsi_fc LSI_FC c:\windows\system32\drivers\lsi_fc.sys Kernel Driver No
Manual Stopped OK
Normal No
No
lsi_sas LSI_SAS c:\windows\system32\drivers\lsi_sas.sys Kernel Driver No
Manual Stopped OK
Normal No
No
lsi_sas2
LSI_SAS2
c:\windows\system32\drivers\lsi_sas2.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
lsi_scsi
LSI_SCSI
c:\windows\system32\drivers\lsi_scsi.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
luafv UAC File Virtualization c:\windows\system32\drivers\luafv.sys File Sys
tem Driver
Yes
Auto
Running OK
Normal No
Yes
mdmxsdk mdmxsdk c:\windows\system32\drivers\mdmxsdk.sys Kernel Driver Yes
Auto
Running OK
Ignore No
Yes
megasas megasas c:\windows\system32\drivers\megasas.sys Kernel Driver No
Manual Stopped OK
Normal No
No
megasr MegaSR c:\windows\system32\drivers\megasr.sys Kernel Driver No
Manual Stopped OK
Normal No
No
modem Modem c:\windows\system32\drivers\modem.sys Kernel Driver Yes
Manual Running OK
Ignore No
Yes
monitor Microsoft Monitor Class Function Driver Service c:\windows\system32\driv
ers\monitor.sys Kernel Driver Yes
Manual Running OK
Normal No
Yes
mouclass
Mouse Class Driver
c:\windows\system32\drivers\mouclass.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
mouhid Mouse HID Driver
c:\windows\system32\drivers\mouhid.sys Kernel D
river No
Manual Stopped OK
Ignore No
No

mountmgr
Mount Point Manager
c:\windows\system32\drivers\mountmgr.sys
Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
mpio
Microsoft Multi-Path Bus Driver c:\windows\system32\drivers\mpio.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
mpsdrv Windows Firewall Authorization Driver c:\windows\system32\drivers\mpsd
rv.sys Kernel Driver Yes
Manual Running OK
Normal No
Yes
mrxdav WebDav Client Redirector Driver c:\windows\system32\drivers\mrxdav.sys
File System Driver
No
Manual Stopped OK
Normal No
No
mrxsmb SMB MiniRedirector Wrapper and Engine c:\windows\system32\drivers\mrxs
mb.sys File System Driver
Yes
Manual Running OK
Normal No
Yes
mrxsmb10
SMB 1.x MiniRedirector c:\windows\system32\drivers\mrxsmb10.sys
File System Driver
Yes
Manual Running OK
Normal No
Yes
mrxsmb20
SMB 2.0 MiniRedirector c:\windows\system32\drivers\mrxsmb20.sys
File System Driver
Yes
Manual Running OK
Normal No
Yes
msahci msahci c:\windows\system32\drivers\msahci.sys Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
msdsm Microsoft Multi-Path Device Specific Module
c:\windows\system32\driv
ers\msdsm.sys Kernel Driver No
Manual Stopped OK
Normal No
No
msfs
Msfs
c:\windows\system32\drivers\msfs.sys
File System Driver
Yes
System Running OK
Normal No
Yes
mshidkmdf
Pass-through HID to KMDF Filter Driver c:\windows\system32\driv
ers\mshidkmdf.sys
Kernel Driver No
Manual Stopped OK
Ignore
No
No
msisadrv
msisadrv
c:\windows\system32\drivers\msisadrv.sys
Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
mskssrv Microsoft Streaming Service Proxy
c:\windows\system32\drivers\msks
srv.sys Kernel Driver No
Manual Stopped OK
Normal No
No
mspclock
Microsoft Streaming Clock Proxy c:\windows\system32\drivers\mspc
lock.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
mspqm Microsoft Streaming Quality Manager Proxy
c:\windows\system32\driv
ers\mspqm.sys Kernel Driver No
Manual Stopped OK
Normal No
No
msrpc MsRPC c:\windows\system32\drivers\msrpc.sys Kernel Driver No
Manual Stopped OK
Normal No
No
mssmbios
Microsoft System Management BIOS Driver c:\windows\system32\driv
ers\mssmbios.sys
Kernel Driver Yes
System Running OK
Normal
No
Yes
mstee Microsoft Streaming Tee/Sink-to-Sink Converter c:\windows\system32\driv
ers\mstee.sys Kernel Driver No
Manual Stopped OK
Normal No
No
mtconfig
Microsoft Input Configuration Driver
c:\windows\system32\driv
ers\mtconfig.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
mup
Mup
c:\windows\system32\drivers\mup.sys
File System Driver
Yes
Boot
Running OK
Normal No
Yes
nativewifip
NativeWiFi Filter
c:\windows\system32\drivers\nwifi.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
naveng NAVENG \??\c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}
\nis_18.0.0.128\definitions\virusdefs\20150517.021\eng64.sys
Kernel Driver
No
Manual Stopped OK
Normal No
No
navex15 NAVEX15 \??\c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}
\nis_18.0.0.128\definitions\virusdefs\20150517.021\ex64.sys
Kernel Driver
No
Manual Stopped OK
Normal No
No
ndis
NDIS System Driver
c:\windows\system32\drivers\ndis.sys
Kernel D
river Yes
Boot
Running OK
Critical
No
Yes
ndiscap NDIS Capture LightWeight Filter c:\windows\system32\drivers\ndiscap.sys
Kernel Driver No
Manual Stopped OK
Normal No
No

ndistapi
Remote Access NDIS TAPI Driver c:\windows\system32\drivers\ndis
tapi.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
ndisuio NDIS Usermode I/O Protocol
c:\windows\system32\drivers\ndisuio.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
ndiswan Remote Access NDIS WAN Driver c:\windows\system32\drivers\ndiswan.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
ndproxy NDIS Proxy
c:\windows\system32\drivers\ndproxy.sys Kernel Driver
Yes
Manual Running OK
Normal No
Yes
netbios NetBIOS Interface
c:\windows\system32\drivers\netbios.sys File Sys
tem Driver
Yes
System Running OK
Normal No
Yes
netbt NetBT c:\windows\system32\drivers\netbt.sys Kernel Driver Yes
System Running OK
Normal No
Yes
nfrd960 nfrd960 c:\windows\system32\drivers\nfrd960.sys Kernel Driver No
Manual Stopped OK
Normal No
No
npfs
Npfs
c:\windows\system32\drivers\npfs.sys
File System Driver
Yes
System Running OK
Normal No
Yes
nsiproxy
NSI proxy service driver.
c:\windows\system32\drivers\nsip
roxy.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
ntfs
Ntfs
c:\windows\system32\drivers\ntfs.sys
File System Driver
Yes
Manual Running OK
Normal No
Yes
null
Null
c:\windows\system32\drivers\null.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
nvraid nvraid c:\windows\system32\drivers\nvraid.sys Kernel Driver No
Manual Stopped OK
Normal No
No
nvstor nvstor c:\windows\system32\drivers\nvstor.sys Kernel Driver No
Manual Stopped OK
Critical
No
No
nv_agp NVIDIA nForce AGP Bus Filter
c:\windows\system32\drivers\nv_agp.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
ohci1394
1394 OHCI Compliant Host Controller (Legacy)
c:\windows\syste
m32\drivers\ohci1394.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
parport Parallel port driver
c:\windows\system32\drivers\parport.sys Kernel D
river No
Manual Stopped OK
Ignore No
No
partmgr Partition Manager
c:\windows\system32\drivers\partmgr.sys Kernel D
river Yes
Boot
Running OK
Critical
No
Yes
pci
PCI Bus Driver c:\windows\system32\drivers\pci.sys
Kernel Driver
Yes
Boot
Running OK
Critical
No
Yes
pciide pciide c:\windows\system32\drivers\pciide.sys Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
pcmcia pcmcia c:\windows\system32\drivers\pcmcia.sys Kernel Driver No
Manual Stopped OK
Normal No
No
pcw
Performance Counters for Windows Driver c:\windows\system32\drivers\pcw.
sys
Kernel Driver Yes
Boot
Running OK
Normal No
Yes
peauth PEAUTH c:\windows\system32\drivers\peauth.sys Kernel Driver Yes
Auto
Running OK
Normal No
Yes
pgeffect
Pangu effect driver
c:\windows\system32\drivers\pgeffect.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
pptpminiport
WAN Miniport (PPTP)
c:\windows\system32\drivers\raspptp.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
processor
Processor Driver
c:\windows\system32\drivers\processr.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
psched QoS Packet Scheduler
c:\windows\system32\drivers\pacer.sys Kernel D
river Yes
System Running OK
Normal No
Yes
ql2300 ql2300 c:\windows\system32\drivers\ql2300.sys Kernel Driver No
Manual Stopped OK
Normal No
No
ql40xx ql40xx c:\windows\system32\drivers\ql40xx.sys Kernel Driver No
Manual Stopped OK
Normal No
No
qwavedrv
QWAVE driver
c:\windows\system32\drivers\qwavedrv.sys

Kernel Driver No
Manual Stopped OK
Normal No
No
rasacd Remote Access Auto Connection Driver
c:\windows\system32\drivers\rasa
cd.sys Kernel Driver No
Manual Stopped OK
Normal No
No
rasagilevpn
WAN Miniport (IKEv2)
c:\windows\system32\drivers\agilevpn.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
rasl2tp WAN Miniport (L2TP)
c:\windows\system32\drivers\rasl2tp.sys Kernel D
river Yes
Manual Running OK
Normal No
Yes
raspppoe
Remote Access PPPOE Driver
c:\windows\system32\drivers\rasp
ppoe.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
rassstp WAN Miniport (SSTP)
c:\windows\system32\drivers\rassstp.sys Kernel D
river Yes
Manual Running OK
Normal No
Yes
rdbss Redirected Buffering Sub Sysytem
c:\windows\system32\drivers\rdbs
s.sys File System Driver
Yes
System Running OK
Normal No
Yes
rdpbus Remote Desktop Device Redirector Bus Driver
c:\windows\system32\driv
ers\rdpbus.sys Kernel Driver No
Manual Stopped OK
Normal No
No
rdpcdd RDPCDD c:\windows\system32\drivers\rdpcdd.sys Kernel Driver Yes
System Running OK
Ignore No
Yes
rdpencdd
RDP Encoder Mirror Driver
c:\windows\system32\drivers\rdpe
ncdd.sys
Kernel Driver Yes
System Running OK
Ignore No
Yes
rdprefmp
Reflector Display Driver used to gain access to graphics data
c:\windows\system32\drivers\rdprefmp.sys
Kernel Driver Yes
System
Running OK
Ignore No
Yes
rdpvideominiport
Remote Desktop Video Miniport Driver
c:\windows\syste
m32\drivers\rdpvideominiport.sys
Kernel Driver No
Manual Stopped
OK
Normal No
No
rdpwd RDP Winstation Driver c:\windows\system32\drivers\rdpwd.sys Kernel D
river No
Manual Stopped OK
Ignore No
No
rdyboost
ReadyBoost
c:\windows\system32\drivers\rdyboost.sys
Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
regi
regi
\??\c:\windows\system32\drivers\regi.sys
Kernel Driver
Yes
Auto
Running OK
Normal No
Yes
rspndr Link-Layer Topology Discovery Responder c:\windows\system32\drivers\rspn
dr.sys Kernel Driver Yes
Auto
Running OK
Normal No
Yes
rsusbstor
RtsUStor.Sys Realtek USB Card Reader
c:\windows\system32\driv
ers\rtsustor.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
rthdmiazaudservice
Service for HDMI
c:\windows\system32\drivers\rthd
mivx.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
rtl8167 Realtek 8167 NT Driver c:\windows\system32\drivers\rt64win7.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
rtl8192ce
Realtek Wireless LAN 802.11n PCI-E NIC Driver c:\windows\syste
m32\drivers\rtl8192ce.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
sbp2port
SBP-2 Transport/Protocol Bus Driver
c:\windows\system32\driv
ers\sbp2port.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
scfilter
Smart card PnP Class Filter Driver
c:\windows\system32\driv
ers\scfilter.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
secdrv Security Driver c:\windows\system32\drivers\secdrv.sys Kernel Driver
Yes
Auto
Running OK
Normal No
Yes
serenum Serenum Filter Driver c:\windows\system32\drivers\serenum.sys Kernel D
river No
Manual Stopped OK
Normal No
No
serial Serial c:\windows\system32\drivers\serial.sys Kernel Driver No
Manual Stopped OK
Ignore No
No

sermouse
Serial Mouse Driver
c:\windows\system32\drivers\sermouse.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
sffdisk SFF Storage Class Driver
c:\windows\system32\drivers\sffdisk.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
sffp_mmc
SFF Storage Protocol Driver for MMC
c:\windows\system32\driv
ers\sffp_mmc.sys
Kernel Driver No
Manual Stopped OK
Normal
No
No
sffp_sd SFF Storage Protocol Driver for SDBus c:\windows\system32\drivers\sffp
_sd.sys Kernel Driver No
Manual Stopped OK
Normal No
No
sfloppy High-Capacity Floppy Disk Drive c:\windows\system32\drivers\sfloppy.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
sisraid2
SiSRaid2
c:\windows\system32\drivers\sisraid2.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
sisraid4
SiSRaid4
c:\windows\system32\drivers\sisraid4.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
smb
Message-oriented TCP/IP and TCP/IPv6 Protocol (SMB session)
c:\windo
ws\system32\drivers\smb.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
spldr Security Processor Loader Driver
c:\windows\system32\drivers\spld
r.sys Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
srtsp Symantec Real Time Storage Protection x64
c:\windows\system32\driv
ers\nisx64\1207020.003\srtsp64.sys
File System Driver
No
Manual
Stopped OK
Normal No
No
srtspx Symantec Real Time Storage Protection (PEL) x64 c:\windows\system32\driv
ers\nisx64\1207020.003\srtspx64.sys
Kernel Driver Yes
System Running
OK
Normal No
Yes
srv
Server SMB 1.xxx Driver c:\windows\system32\drivers\srv.sys
File Sys
tem Driver
Yes
Manual Running OK
Normal No
Yes
srv2
Server SMB 2.xxx Driver c:\windows\system32\drivers\srv2.sys
File Sys
tem Driver
Yes
Manual Running OK
Normal No
Yes
srvhsfhda
SrvHsfHDA
c:\windows\system32\drivers\vstazl6.sys Kernel D
river No
Manual Stopped OK
Ignore No
No
srvhsfv92
SrvHsfV92
c:\windows\system32\drivers\vstdpv6.sys Kernel D
river No
Manual Stopped OK
Ignore No
No
srvhsfwinac
SrvHsfWinac
c:\windows\system32\drivers\vstcnxt6.sys
Kernel Driver No
Manual Stopped OK
Ignore No
No
srvnet srvnet c:\windows\system32\drivers\srvnet.sys File System Driver
Yes
Manual Running OK
Normal No
Yes
stexstor
stexstor
c:\windows\system32\drivers\stexstor.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
swdumon SWDUMon c:\windows\system32\drivers\swdumon.sys Kernel Driver No
Manual Stopped OK
Normal No
No
swenum Software Bus Driver
c:\windows\system32\drivers\swenum.sys Kernel D
river Yes
Manual Running OK
Normal No
Yes
symds Symantec Data Store
c:\windows\system32\drivers\nisx64\1207020.003\s
ymds64.sys
Kernel Driver Yes
Boot
Running OK
Normal No
Yes
symefa Symantec Extended File Attributes
c:\windows\system32\drivers\nisx
64\1207020.003\symefa64.sys
File System Driver
Yes
Boot
Running
OK
Normal No
Yes
symevent
SymEvent
\??\c:\windows\system32\drivers\symevent64x86.sy
s
Kernel Driver Yes
Manual Running OK
Normal No
Yes
symiron Symantec Iron Driver
c:\windows\system32\drivers\nisx64\1207020.003\i
ronx64.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
symnets Symantec Network Security WFP Driver
c:\windows\system32\drivers\nisx
64\1207020.003\symnets.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
syntp Synaptics TouchPad Driver
c:\windows\system32\drivers\syntp.sys

Kernel Driver Yes


Manual Running OK
Normal No
Yes
tcpip TCP/IP Protocol Driver c:\windows\system32\drivers\tcpip.sys Kernel D
river Yes
Boot
Running OK
Normal No
Yes
tcpip6 Microsoft IPv6 Protocol Driver c:\windows\system32\drivers\tcpip.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
tcpipreg
TCP/IP Registry Compatibility c:\windows\system32\drivers\tcpi
preg.sys
Kernel Driver Yes
Auto
Running OK
Normal No
Yes
tdcmdpst
TOSHIBA Writing Engine Filter Driver
c:\windows\system32\driv
ers\tdcmdpst.sys
Kernel Driver Yes
Manual Running OK
Ignore
No
Yes
tdpipe TDPIPE c:\windows\system32\drivers\tdpipe.sys Kernel Driver No
Manual Stopped OK
Normal No
No
tdtcp TDTCP c:\windows\system32\drivers\tdtcp.sys Kernel Driver No
Manual Stopped OK
Normal No
No
tdx
NetIO Legacy TDI Support Driver c:\windows\system32\drivers\tdx.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
termdd Terminal Device Driver c:\windows\system32\drivers\termdd.sys Kernel D
river Yes
System Running OK
Normal No
Yes
tssecsrv
Remote Desktop Services Security Filter Driver c:\windows\syste
m32\drivers\tssecsrv.sys
Kernel Driver No
Manual Stopped OK
Ignore No
No
tsusbflt
TsUsbFlt
c:\windows\system32\drivers\tsusbflt.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
tunnel Microsoft Tunnel Miniport Adapter Driver
c:\windows\system32\driv
ers\tunnel.sys Kernel Driver Yes
Manual Running OK
Normal No
Yes
tvalz TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver
c:\windows\system32\drivers\tvalz_o.sys Kernel Driver Yes
Boot
Running
OK
Normal No
Yes
tvalzfl TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter
Driver c:\windows\system32\drivers\tvalzfl.sys Kernel Driver Yes
Auto
Running OK
Normal No
Yes
uagp35 Microsoft AGPv3.5 Filter
c:\windows\system32\drivers\uagp35.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
udfs
udfs
c:\windows\system32\drivers\udfs.sys
File System Driver
Yes
Disabled
Running OK
Normal No
Yes
uliagpkx
Uli AGP Bus Filter
c:\windows\system32\drivers\uliagpkx.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
umbus UMBus Enumerator Driver c:\windows\system32\drivers\umbus.sys Kernel D
river Yes
Manual Running OK
Normal No
Yes
umpass Microsoft UMPass Driver c:\windows\system32\drivers\umpass.sys Kernel D
river No
Manual Stopped OK
Normal No
No
usbccgp Microsoft USB Generic Parent Driver
c:\windows\system32\drivers\usbc
cgp.sys Kernel Driver Yes
Manual Running OK
Normal No
Yes
usbcir eHome Infrared Receiver (USBCIR)
c:\windows\system32\drivers\usbc
ir.sys Kernel Driver No
Manual Stopped OK
Normal No
No
usbehci Microsoft USB 2.0 Enhanced Host Controller Miniport Driver
c:\windo
ws\system32\drivers\usbehci.sys Kernel Driver Yes
Manual Running OK
Normal No
Yes
usbhub Microsoft USB Standard Hub Driver
c:\windows\system32\drivers\usbh
ub.sys Kernel Driver Yes
Manual Running OK
Normal No
Yes
usbohci Microsoft USB Open Host Controller Miniport Driver
c:\windows\syste
m32\drivers\usbohci.sys Kernel Driver Yes
Manual Running OK
Normal
No
Yes
usbprint
Microsoft USB PRINTER Class
c:\windows\system32\drivers\usbp
rint.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
usbstor USB Mass Storage Driver c:\windows\system32\drivers\usbstor.sys Kernel D
river No
Manual Stopped OK
Normal No
No

usbuhci Microsoft USB Universal Host Controller Miniport Driver c:\windows\syste


m32\drivers\usbuhci.sys Kernel Driver No
Manual Stopped OK
Normal
No
No
usbvideo
USB Video Device (WDM) c:\windows\system32\drivers\usbvideo.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
vdrvroot
Microsoft Virtual Drive Enumerator Driver
c:\windows\syste
m32\drivers\vdrvroot.sys
Kernel Driver Yes
Boot
Running OK
Critical
No
Yes
vga
vga
c:\windows\system32\drivers\vgapnp.sys Kernel Driver No
Manual Stopped OK
Ignore No
No
vgasave VgaSave c:\windows\system32\drivers\vga.sys
Kernel Driver Yes
System Running OK
Ignore No
Yes
vhdmp vhdmp c:\windows\system32\drivers\vhdmp.sys Kernel Driver No
Manual Stopped OK
Normal No
No
viaide viaide c:\windows\system32\drivers\viaide.sys Kernel Driver No
Manual Stopped OK
Critical
No
No
volmgr Volume Manager Driver c:\windows\system32\drivers\volmgr.sys Kernel D
river Yes
Boot
Running OK
Critical
No
Yes
volmgrx Dynamic Volume Manager c:\windows\system32\drivers\volmgrx.sys Kernel D
river Yes
Boot
Running OK
Critical
No
Yes
volsnap Storage volumes c:\windows\system32\drivers\volsnap.sys Kernel Driver
Yes
Boot
Running OK
Critical
No
Yes
vsmraid vsmraid c:\windows\system32\drivers\vsmraid.sys Kernel Driver No
Manual Stopped OK
Normal No
No
vwifibus
Virtual WiFi Bus Driver c:\windows\system32\drivers\vwifibus.sys
Kernel Driver Yes
Manual Running OK
Normal No
Yes
vwififlt
Virtual WiFi Filter Driver
c:\windows\system32\drivers\vwif
iflt.sys
Kernel Driver Yes
System Running OK
Normal No
Yes
wacompen
Wacom Serial Pen HID Driver
c:\windows\system32\drivers\waco
mpen.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
wanarp Remote Access IP ARP Driver
c:\windows\system32\drivers\wanarp.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
wanarpv6
Remote Access IPv6 ARP Driver c:\windows\system32\drivers\wana
rp.sys Kernel Driver Yes
System Running OK
Normal No
Yes
wd
Wd
c:\windows\system32\drivers\wd.sys
Kernel Driver No
Manual Stopped OK
Normal No
No
wdf01000
Kernel Mode Driver Frameworks service c:\windows\system32\driv
ers\wdf01000.sys
Kernel Driver Yes
Boot
Running OK
Normal
No
Yes
wfplwf WFP Lightweight Filter c:\windows\system32\drivers\wfplwf.sys Kernel D
river Yes
System Running OK
Normal No
Yes
wimmount
WIMMount
c:\windows\system32\drivers\wimmount.sys
File System Driver
No
Manual Stopped OK
Normal No
No
winachsf
winachsf
c:\windows\system32\drivers\cax_cnxt.sys
Kernel Driver Yes
Manual Running OK
Ignore No
Yes
wmiacpi Microsoft Windows Management Interface for ACPI c:\windows\system32\driv
ers\wmiacpi.sys Kernel Driver No
Manual Stopped OK
Normal No
No
ws2ifsl Winsock IFS Driver
c:\windows\system32\drivers\ws2ifsl.sys Kernel D
river No
Disabled
Stopped OK
Normal No
No
wudfpf User Mode Driver Frameworks Platform Driver
c:\windows\system32\driv
ers\wudfpf.sys Kernel Driver Yes
Manual Running OK
Normal No
Yes
wudfrd WUDFRd c:\windows\system32\drivers\wudfrd.sys Kernel Driver No
Manual Stopped OK
Normal No
No
xaudio XAudio c:\windows\system32\drivers\xaudio64.sys
Kernel Driver
Yes
Auto
Running OK
Ignore No
Yes

[Environment Variables]
Variable
Value User Name
ComSpec %SystemRoot%\system32\cmd.exe <SYSTEM>
FP_NO_HOST_CHECK
NO
<SYSTEM>
OS
Windows_NT
<SYSTEM>
Path
C:\Program Files (x86)\AMD APP\bin\x86_64;C:\Program Files (x86)\AMD APP
\bin\x86;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMRO
OT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI
.ACE\Core-Static
<SYSTEM>
PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC <SYSTEM>
PROCESSOR_ARCHITECTURE AMD64 <SYSTEM>
TEMP
%SystemRoot%\TEMP
<SYSTEM>
TMP
%SystemRoot%\TEMP
<SYSTEM>
USERNAME
SYSTEM <SYSTEM>
windir %SystemRoot%
<SYSTEM>
PSModulePath
%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\ <SYSTEM>
NUMBER_OF_PROCESSORS
2
<SYSTEM>
PROCESSOR_LEVEL 16
<SYSTEM>
PROCESSOR_IDENTIFIER
AMD64 Family 16 Model 6 Stepping 3, AuthenticAMD
<SYSTEM>
PROCESSOR_REVISION
0603
<SYSTEM>
AMDAPPSDKROOT C:\Program Files (x86)\AMD APP\ <SYSTEM>
TEMP
%USERPROFILE%\AppData\Local\Temp
NT AUTHORITY\SYSTEM
TMP
%USERPROFILE%\AppData\Local\Temp
NT AUTHORITY\SYSTEM
TEMP
%USERPROFILE%\AppData\Local\Temp
NT AUTHORITY\LOCAL SERVICE
TMP
%USERPROFILE%\AppData\Local\Temp
NT AUTHORITY\LOCAL SERVICE
TEMP
%USERPROFILE%\AppData\Local\Temp
NT AUTHORITY\NETWORK SERVICE
TMP
%USERPROFILE%\AppData\Local\Temp
NT AUTHORITY\NETWORK SERVICE
TEMP
%USERPROFILE%\AppData\Local\Temp
PreferredCustom\Preferred Custom
er
TMP
%USERPROFILE%\AppData\Local\Temp
PreferredCustom\Preferred Custom
er
[Print Jobs]
Document
Size
Owner Notify Status Time Submitted Start Time
Until Time
Elapsed Time
Pages Printed Job ID Priority
Paramete
rs
Driver Print Processor Host Print Queue
Data Type
Name
[Network Connections]
Local Name

Remote Name

Type

Status User Name

[Running Tasks]
Name
Path
Process ID
Priority
Min Working Set Max Working Set
Start Time
Version Size
File Date
system idle process
Not Available 0
0
Not Available Not Avai
lable 5/30/2015 10:08 PM
Not Available Not Available Not Available
system Not Available 4
8
Not Available Not Available 5/30/201
5 10:08 PM
Not Available Not Available Not Available
smss.exe
Not Available 280
11
200
1380
5/30/2015 10:08
PM
Not Available Not Available Not Available
csrss.exe
c:\windows\system32\csrss.exe 412
13
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 7.50 KB (7,680 bytes) 7/13/2009 7:19 P
M
wininit.exe
c:\windows\system32\wininit.exe 496
13
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 126.00 KB (129,024 bytes)
7/13/200
9 7:52 PM

csrss.exe
c:\windows\system32\csrss.exe 532
13
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 7.50 KB (7,680 bytes) 7/13/2009 7:19 P
M
services.exe
c:\windows\system32\services.exe
556
9
200
1380
5/30/2015 10:08 PM
6.1.7601.18829 321.00 KB (328,704 bytes)
5/13/2015 3:42 AM
lsass.exe
c:\windows\system32\lsass.exe 580
9
200
1380
5/30/2015 10:08 PM
6.1.7601.18839 30.50 KB (31,232 bytes) 5/13/2015 3:39 A
M
lsm.exe c:\windows\system32\lsm.exe
588
8
200
1380
5/30/201
5 10:08 PM
6.1.7601.17514 335.00 KB (343,040 bytes)
4/15/2015 12:28
PM
svchost.exe
c:\windows\system32\svchost.exe 708
8
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
winlogon.exe
c:\windows\system32\winlogon.exe
748
13
200
1380
5/30/2015 10:08 PM
6.1.7601.18540 444.50 KB (455,168 bytes)
4/15/2015 3:35 PM
svchost.exe
c:\windows\system32\svchost.exe 820
8
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
atiesrxx.exe
c:\windows\system32\atiesrxx.exe
936
8
200
1380
5/30/2015 10:08 PM
6.14.11.1122
232.50 KB (238,080 bytes)
4/29/2013 11:52 PM
svchost.exe
c:\windows\system32\svchost.exe 980
8
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
svchost.exe
c:\windows\system32\svchost.exe 1012
8
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
svchost.exe
c:\windows\system32\svchost.exe 300
8
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
svchost.exe
c:\windows\system32\svchost.exe 288
8
200
1380
5/30/2015 10:08 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
svchost.exe
c:\windows\system32\svchost.exe 816
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
svchost.exe
c:\windows\system32\svchost.exe 1088
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
atieclxx.exe
c:\windows\system32\atieclxx.exe
1268
8
200
1380
5/30/2015 10:09 PM
6.14.11.1122
502.00 KB (514,048 bytes)
4/29/2013 11:53 PM
spoolsv.exe
c:\windows\system32\spoolsv.exe 1316
8
200
1380
5/30/2015 10:09 PM
6.1.7601.17777 546.00 KB (559,104 bytes)
4/18/201
5 5:52 PM
svchost.exe
c:\windows\system32\svchost.exe 1368
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
fuel.service.exe
c:\program files\ati technologies\ati.ace\fuel\fuel.serv
ice.exe 1476
8
200
1380
5/30/2015 10:09 PM
1.0.0.0 353.50 K
B (361,984 bytes)
4/29/2013 11:25 PM
svchost.exe
c:\windows\system32\svchost.exe 1516
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
svchost.exe
c:\windows\system32\svchost.exe 1552
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M

ccsvchst.exe
c:\program files (x86)\norton internet security\engine\18.7.2.3\
ccsvchst.exe
1580
8
1024
10240 5/30/2015 10:09 PM
10.1.1.1
6
126.96 KB (130,008 bytes)
4/29/2015 2:18 PM
taskhost.exe
c:\windows\system32\taskhost.exe
1784
8
200
1380
5/30/2015 10:09 PM
6.1.7601.18010 67.00 KB (68,608 bytes) 4/15/201
5 1:28 PM
dwm.exe c:\windows\system32\dwm.exe
1844
13
51200 2097152 5/30/201
5 10:09 PM
6.1.7600.16385 117.50 KB (120,320 bytes)
7/13/2009 7:37 P
M
explorer.exe
c:\windows\explorer.exe 1872
8
200
1380
5/30/201
5 10:09 PM
6.1.7601.17567 2.74 MB (2,871,808 bytes)
4/18/2015 5:52 P
M
taskeng.exe
c:\windows\system32\taskeng.exe 1968
8
200
1380
5/30/2015 10:09 PM
6.1.7601.17514 453.50 KB (464,384 bytes)
4/15/201
5 12:28 PM
driverupdate.exe
c:\program files (x86)\driverupdate\driverupdate.exe
2032
8
200
1380
5/30/2015 10:09 PM
2.3.1.0 24.96 MB (26,167
,576 bytes)
4/2/2015 9:07 AM
symcpcculaunchsvc.exe c:\program files (x86)\norton pc checkup\engine\2.0.3.19
8\symcpcculaunchsvc.exe 1504
8
200
1380
5/30/2015 10:09 PM
1.0.0.137
101.36 KB (103,792 bytes)
4/15/2015 3:04 PM
ccsvchst.exe
c:\program files (x86)\norton pc checkup\engine\2.0.3.198\ccsvch
st.exe 1060
8
200
1380
5/30/2015 10:09 PM
109.0.0.107
123.43 KB (126,392 bytes)
4/15/2015 3:04 PM
psiservice_2.exe
c:\program files (x86)\common files\protexis\license ser
vice\psiservice_2.exe 2068
8
200
1380
5/30/2015 10:09 PM
2.0.1.124
181.28 KB (185,632 bytes)
7/24/2007 2:15 PM
slimservicefactory.exe c:\program files\slimservice\slimservicefactory.exe
2092
8
200
1380
5/30/2015 10:09 PM
1.1.0.0 238.77 KB (244,5
04 bytes)
5/8/2015 12:21 PM
toddsrv.exe
c:\windows\system32\toddsrv.exe 2256
8
200
1380
5/30/2015 10:09 PM
1.0.0.7 137.34 KB (140,632 bytes)
7/22/2010 8:51 P
M
toscosrv.exe
c:\program files\toshiba\power saver\toscosrv.exe
2284
8
200
1380
5/30/2015 10:09 PM
1.0.0.4 477.84 KB (489,312 bytes
)
11/6/2009 12:05 AM
tecoservice.exe c:\program files\toshiba\teco\tecoservice.exe 2368
8
200
1380
5/30/2015 10:09 PM
1.1.9.0 252.86 KB (258,928 bytes)
4/6/2010 5:53 PM
searchindexer.exe
c:\windows\system32\searchindexer.exe 2412
8
200
1380
5/30/2015 10:09 PM
7.0.7601.17610 578.00 KB (591,872 bytes
)
4/17/2015 9:53 AM
slimcleanerplus.exe
c:\program files\slimcleaner plus\slimcleanerplus.exe
2748
8
200
1380
5/30/2015 10:09 PM
1.4.0.0 24.95 MB (26,166
,552 bytes)
5/8/2015 12:21 PM
ccsvchst.exe
c:\program files (x86)\norton pc checkup\engine\2.0.3.198\ccsvch
st.exe 2900
8
200
1380
5/30/2015 10:09 PM
109.0.0.107
123.43 KB (126,392 bytes)
4/15/2015 3:04 PM
ccsvchst.exe
c:\program files (x86)\norton internet security\engine\18.7.2.3\
ccsvchst.exe
3000
8
1024
10240 5/30/2015 10:09 PM
10.1.1.1
6
126.96 KB (130,008 bytes)
4/29/2015 2:18 PM
slimservice.exe c:\program files\slimservice\slimservice.exe
3440
8
200
1380
5/30/2015 10:09 PM
1.2.0.0 4.45 MB (4,669,208 bytes)
5/8/2015 12:21 PM
mom.exe c:\program files (x86)\ati technologies\ati.ace\core-static\mom.exe
3500
8
200
1380
5/30/2015 10:09 PM
2.0.0.0 292.00 KB (299,0
08 bytes)
1/25/2012 2:32 PM
svchost.exe
c:\windows\system32\svchost.exe 3720
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M

svchost.exe
c:\windows\system32\svchost.exe 3920
8
200
1380
5/30/2015 10:09 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
ccc.exe c:\program files (x86)\ati technologies\ati.ace\core-static\ccc.exe
4076
8
200
1380
5/30/2015 10:09 PM
3.5.0.0 292.00 KB (299,0
08 bytes)
1/25/2012 2:32 PM
wmpnetwk.exe
c:\program files\windows media player\wmpnetwk.exe
3124
8
200
1380
5/30/2015 10:09 PM
12.0.7601.17514 1.45 MB (1,525,2
48 bytes)
4/15/2015 12:28 PM
trustedinstaller.exe
c:\windows\servicing\trustedinstaller.exe
4532
8
200
1380
5/30/2015 10:10 PM
6.1.7601.17514 189.50 KB (194,0
48 bytes)
4/15/2015 12:28 PM
presentationfontcache.exe
c:\windows\microsoft.net\framework64\v3.0\wpf\pr
esentationfontcache.exe 4960
8
200
1380
5/30/2015 10:11 PM
3.0.6920.5011 41.85 KB (42,856 bytes) 4/15/2015 12:29 PM
iviregmgr.exe c:\program files (x86)\common files\intervideo\regmgr\iviregmgr.
exe
3648
8
200
1380
5/30/2015 10:11 PM
1.0.4.0 109.52 K
B (112,152 bytes)
1/4/2007 9:48 PM
svchost.exe
c:\windows\system32\svchost.exe 4432
8
200
1380
5/30/2015 10:11 PM
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 P
M
audiodg.exe
Not Available 5060
8
Not Available Not Available
5/31/2015 8:53 AM
Not Available Not Available Not Available
bfggameservices.exe
c:\program files (x86)\bfgclient\bfggameservices.exe
3732
8
200
1380
5/31/2015 8:53 AM
2.0.0.8 239.81 KB (245,5
68 bytes)
9/28/2010 1:32 PM
hiddenexpedition_thecrownofsolomonce.exe
c:\program files (x86)\hidden ex
pedition - the crown of solomon collectors edition\hiddenexpedition_thecrownofso
lomonce.exe
3540
8
200
1380
5/31/2015 8:53 AM
Not Avai
lable 4.51 MB (4,729,120 bytes)
9/19/2014 12:50 PM
hiddenexpedition_thecrownofsolomonce.exe
c:\program files (x86)\hidden ex
pedition - the crown of solomon collectors edition\hiddenexpedition_thecrownofso
lomonce.exe
4540
8
200
1380
5/31/2015 8:53 AM
Not Avai
lable 4.51 MB (4,729,120 bytes)
9/19/2014 12:50 PM
iexplore.exe
c:\program files\internet explorer\iexplore.exe 4324
8
200
1380
5/31/2015 7:30 PM
11.0.9600.17801 794.70 KB (813,776 bytes
)
5/13/2015 3:43 AM
iexplore.exe
c:\program files (x86)\internet explorer\iexplore.exe 1104
8
200
1380
5/31/2015 7:30 PM
11.0.9600.17801 796.20 KB (815,3
04 bytes)
5/13/2015 3:43 AM
msinfo32.exe
c:\windows\system32\msinfo32.exe
4952
8
200
1380
5/31/2015 7:36 PM
6.1.7601.17514 370.00 KB (378,880 bytes)
4/15/2015 12:28 PM
wmiprvse.exe
c:\windows\system32\wbem\wmiprvse.exe 4904
8
200
1380
5/31/2015 7:36 PM
6.1.7601.17514 364.00 KB (372,736 bytes)
4/15/2015 12:28 PM
wmiprvse.exe
c:\windows\system32\wbem\wmiprvse.exe 4572
8
200
1380
5/31/2015 7:39 PM
6.1.7601.17514 364.00 KB (372,736 bytes)
4/15/2015 12:28 PM
[Loaded Modules]
Name
Version Size
File Date
Manufacturer
Path
csrss 6.1.7600.16385 7.50 KB (7,680 bytes) 7/13/2009 7:19 PM
Microsof
t Corporation c:\windows\system32\csrss.exe
ntdll 6.1.7601.18839 1.65 MB (1,728,960 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\ntdll.dll
csrsrv 6.1.7601.18839 42.50 KB (43,520 bytes) 5/13/2015 3:39 AM
Microsof
t Corporation c:\windows\system32\csrsrv.dll
basesrv 6.1.7600.16385 51.50 KB (52,736 bytes) 7/13/2009 7:18 PM
Microsof

t Corporation c:\windows\system32\basesrv.dll
winsrv 6.1.7601.18839 210.00 KB (215,040 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\winsrv.dll
user32 6.1.7601.17514 984.50 KB (1,008,128 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\user32.dll
gdi32 6.1.7601.18778 395.00 KB (404,480 bytes)
4/17/2015 9:52 AM
Microsoft Corporation c:\windows\system32\gdi32.dll
kernel32
6.1.7601.18839 1.11 MB (1,162,752 bytes)
5/13/2015 3:39 A
M
Microsoft Corporation c:\windows\system32\kernel32.dll
kernelbase
6.1.7601.18839 414.50 KB (424,448 bytes)
5/13/2015 3:39 A
M
Microsoft Corporation c:\windows\system32\kernelbase.dll
lpk
6.1.7601.18768 41.00 KB (41,984 bytes) 4/17/2015 9:56 AM
Microsof
t Corporation c:\windows\system32\lpk.dll
usp10 1.626.7601.18454
782.50 KB (801,280 bytes)
4/15/2015 2:14 P
M
Microsoft Corporation c:\windows\system32\usp10.dll
msvcrt 7.0.7601.17744 620.00 KB (634,880 bytes)
4/15/2015 3:21 PM
Microsoft Corporation c:\windows\system32\msvcrt.dll
sxssrv 6.1.7600.16385 31.00 KB (31,744 bytes) 7/13/2009 7:26 PM
Microsof
t Corporation c:\windows\system32\sxssrv.dll
sxs
6.1.7601.17514 569.00 KB (582,656 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\sxs.dll
rpcrt4 6.1.7601.18532 1.16 MB (1,216,000 bytes)
4/15/2015 2:33 PM
Microsoft Corporation c:\windows\system32\rpcrt4.dll
cryptbase
6.1.7600.16385 43.00 KB (44,032 bytes) 7/13/2009 7:20 PM
Microsoft Corporation c:\windows\system32\cryptbase.dll
advapi32
6.1.7601.18839 858.50 KB (879,104 bytes)
5/13/2015 3:39 A
M
Microsoft Corporation c:\windows\system32\advapi32.dll
sechost 6.1.7601.18839 111.00 KB (113,664 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\sechost.dll
wininit 6.1.7600.16385 126.00 KB (129,024 bytes)
7/13/2009 7:52 PM
Microsoft Corporation c:\windows\system32\wininit.exe
profapi 6.1.7600.16385 43.00 KB (44,032 bytes) 7/13/2009 7:20 PM
Microsof
t Corporation c:\windows\system32\profapi.dll
imm32 6.1.7600.16385 163.50 KB (167,424 bytes)
7/13/2009 7:38 PM
Microsoft Corporation c:\windows\system32\imm32.dll
msctf 6.1.7601.18731 1.02 MB (1,067,520 bytes)
4/17/2015 9:54 AM
Microsoft Corporation c:\windows\system32\msctf.dll
rpcrtremote
6.1.7601.17514 64.00 KB (65,536 bytes) 4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\rpcrtremote.dll
apphelp 6.1.7601.18777 334.00 KB (342,016 bytes)
5/13/2015 3:38 AM
Microsoft Corporation c:\windows\system32\apphelp.dll
ws2_32 6.1.7601.17514 291.00 KB (297,984 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\ws2_32.dll
nsi
6.1.7600.16385 13.50 KB (13,824 bytes) 7/13/2009 7:21 PM
Microsof
t Corporation c:\windows\system32\nsi.dll
mswsock 6.1.7601.18254 319.50 KB (327,168 bytes)
4/15/2015 1:30 PM
Microsoft Corporation c:\windows\system32\mswsock.dll
wshtcpip
6.1.7600.16385 13.00 KB (13,312 bytes) 7/13/2009 7:21 PM
Microsoft Corporation c:\windows\system32\wshtcpip.dll
wship6 6.1.7600.16385 13.50 KB (13,824 bytes) 7/13/2009 7:21 PM
Microsof
t Corporation c:\windows\system32\wship6.dll
secur32 6.1.7601.18839 27.50 KB (28,160 bytes) 5/13/2015 3:39 AM
Microsof
t Corporation c:\windows\system32\secur32.dll
sspicli 6.1.7601.18839 133.00 KB (136,192 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\sspicli.dll
credssp 6.1.7601.18839 21.50 KB (22,016 bytes) 5/13/2015 3:39 AM
Microsof
t Corporation c:\windows\system32\credssp.dll
services
6.1.7601.18829 321.00 KB (328,704 bytes)
5/13/2015 3:42 A
M
Microsoft Corporation c:\windows\system32\services.exe
scext 6.1.7600.16385 87.00 KB (89,088 bytes) 7/13/2009 7:31 PM
Microsof

t Corporation c:\windows\system32\scext.dll
scesrv 6.1.7601.18686 397.00 KB (406,528 bytes)
4/17/2015 9:53 AM
Microsoft Corporation c:\windows\system32\scesrv.dll
srvcli 6.1.7601.17514 125.00 KB (128,000 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\srvcli.dll
authz 6.1.7600.16385 173.50 KB (177,664 bytes)
7/13/2009 7:50 PM
Microsoft Corporation c:\windows\system32\authz.dll
ubpm
6.1.7601.18741 210.50 KB (215,552 bytes)
4/17/2015 9:53 AM
Microsoft Corporation c:\windows\system32\ubpm.dll
wtsapi32
6.1.7600.16385 53.00 KB (54,272 bytes) 7/13/2009 8:17 PM
Microsoft Corporation c:\windows\system32\wtsapi32.dll
winsta 6.1.7601.18540 230.00 KB (235,520 bytes)
4/15/2015 3:35 PM
Microsoft Corporation c:\windows\system32\winsta.dll
lsass 6.1.7601.18839 30.50 KB (31,232 bytes) 5/13/2015 3:39 AM
Microsof
t Corporation c:\windows\system32\lsass.exe
sspisrv 6.1.7601.18839 28.50 KB (29,184 bytes) 5/13/2015 3:39 AM
Microsof
t Corporation c:\windows\system32\sspisrv.dll
lsasrv 6.1.7601.18839 1.39 MB (1,461,760 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\lsasrv.dll
samsrv 6.1.7601.17514 741.00 KB (758,784 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\samsrv.dll
cryptdll
6.1.7600.16385 64.50 KB (66,048 bytes) 7/13/2009 7:49 PM
Microsoft Corporation c:\windows\system32\cryptdll.dll
msasn1 6.1.7601.17514 45.50 KB (46,592 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\msasn1.dll
wevtapi 6.1.7600.16385 418.00 KB (428,032 bytes)
7/13/2009 7:46 PM
Microsoft Corporation c:\windows\system32\wevtapi.dll
cngaudit
6.1.7600.16385 18.50 KB (18,944 bytes) 7/13/2009 7:49 PM
Microsoft Corporation c:\windows\system32\cngaudit.dll
ncrypt 6.1.7601.18839 302.50 KB (309,760 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\ncrypt.dll
bcrypt 6.1.7600.16385 121.00 KB (123,904 bytes)
7/13/2009 7:49 PM
Microsoft Corporation c:\windows\system32\bcrypt.dll
msprivs 6.1.7600.16385 2.00 KB (2,048 bytes) 7/13/2009 7:50 PM
Microsof
t Corporation c:\windows\system32\msprivs.dll
netjoin 6.1.7601.17514 184.50 KB (188,928 bytes)
4/15/2015 12:29 PM
Microsoft Corporation c:\windows\system32\netjoin.dll
negoexts
6.1.7600.16385 114.50 KB (117,248 bytes)
7/13/2009 7:50 P
M
Microsoft Corporation c:\windows\system32\negoexts.dll
kerberos
6.1.7601.18839 711.00 KB (728,064 bytes)
5/13/2015 3:39 A
M
Microsoft Corporation c:\windows\system32\kerberos.dll
cryptsp 6.1.7601.18741 80.50 KB (82,432 bytes) 4/17/2015 9:57 AM
Microsof
t Corporation c:\windows\system32\cryptsp.dll
msv1_0 6.1.7601.18839 307.50 KB (314,880 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\msv1_0.dll
netlogon
6.1.7601.17514 679.50 KB (695,808 bytes)
4/15/2015 12:29
PM
Microsoft Corporation c:\windows\system32\netlogon.dll
dnsapi 6.1.7601.17570 349.50 KB (357,888 bytes)
4/15/2015 2:50 PM
Microsoft Corporation c:\windows\system32\dnsapi.dll
logoncli
6.1.7601.17514 182.50 KB (186,880 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\logoncli.dll
schannel
6.1.7601.18843 334.00 KB (342,016 bytes)
5/13/2015 3:42 A
M
Microsoft Corporation c:\windows\system32\schannel.dll
crypt32 6.1.7601.18741 1.41 MB (1,480,192 bytes)
4/17/2015 9:57 AM
Microsoft Corporation c:\windows\system32\crypt32.dll
wdigest 6.1.7601.18839 206.00 KB (210,944 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\wdigest.dll
rsaenh 6.1.7600.16385 274.66 KB (281,256 bytes)
7/13/2009 7:53 PM
Microsoft Corporation c:\windows\system32\rsaenh.dll
tspkg 6.1.7601.18839 84.50 KB (86,528 bytes) 5/13/2015 3:39 AM
Microsof

t Corporation c:\windows\system32\tspkg.dll
pku2u 6.1.7601.18658 235.50 KB (241,152 bytes)
4/15/2015 3:56 PM
Microsoft Corporation c:\windows\system32\pku2u.dll
bcryptprimitives
6.1.7601.17514 291.12 KB (298,104 bytes)
4/15/201
5 12:28 PM
Microsoft Corporation c:\windows\system32\bcryptprimitives.dll
efslsaext
6.1.7600.16385 55.50 KB (56,832 bytes) 7/13/2009 7:50 PM
Microsoft Corporation c:\windows\system32\efslsaext.dll
scecli 6.1.7601.17514 227.50 KB (232,960 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\scecli.dll
keyiso 6.1.7600.16385 28.50 KB (29,184 bytes) 7/13/2009 7:49 PM
Microsof
t Corporation c:\windows\system32\keyiso.dll
iphlpapi
6.1.7601.17514 142.50 KB (145,920 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\iphlpapi.dll
winnsi 6.1.7600.16385 25.50 KB (26,112 bytes) 7/13/2009 7:21 PM
Microsof
t Corporation c:\windows\system32\winnsi.dll
netutils
6.1.7601.17514 28.50 KB (29,184 bytes) 4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\netutils.dll
wkscli 6.1.7601.17514 70.00 KB (71,680 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\wkscli.dll
userenv 6.1.7601.17514 106.50 KB (109,056 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\userenv.dll
dssenh 6.1.7600.16385 186.41 KB (190,880 bytes)
7/13/2009 7:53 PM
Microsoft Corporation c:\windows\system32\dssenh.dll
gpapi 6.1.7600.16385 94.50 KB (96,768 bytes) 7/13/2009 7:54 PM
Microsof
t Corporation c:\windows\system32\gpapi.dll
cryptnet
6.1.7601.18741 137.00 KB (140,288 bytes)
4/17/2015 9:57 A
M
Microsoft Corporation c:\windows\system32\cryptnet.dll
wldap32 6.1.7601.17514 305.50 KB (312,832 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\wldap32.dll
lsm
6.1.7601.17514 335.00 KB (343,040 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\lsm.exe
sysntfy 6.1.7600.16385 22.50 KB (23,040 bytes) 7/13/2009 7:52 PM
Microsof
t Corporation c:\windows\system32\sysntfy.dll
wmsgapi 6.1.7600.16385 14.50 KB (14,848 bytes) 7/13/2009 7:52 PM
Microsof
t Corporation c:\windows\system32\wmsgapi.dll
pcwum 6.1.7600.16385 36.00 KB (36,864 bytes) 7/13/2009 7:19 PM
Microsof
t Corporation c:\windows\system32\pcwum.dll
svchost 6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:31 PM
Microsof
t Corporation c:\windows\system32\svchost.exe
umpnpmgr
6.1.7601.17621 395.00 KB (404,480 bytes)
4/17/2015 9:53 A
M
Microsoft Corporation c:\windows\system32\umpnpmgr.dll
spinf 6.1.7600.16385 103.00 KB (105,472 bytes)
7/13/2009 7:26 PM
Microsoft Corporation c:\windows\system32\spinf.dll
devrtl 6.1.7600.16385 57.00 KB (58,368 bytes) 7/13/2009 7:26 PM
Microsof
t Corporation c:\windows\system32\devrtl.dll
umpo
6.1.7600.16385 160.00 KB (163,840 bytes)
7/13/2009 7:27 PM
Microsoft Corporation c:\windows\system32\umpo.dll
setupapi
6.1.7601.17514 1.81 MB (1,900,544 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\setupapi.dll
cfgmgr32
6.1.7601.17514 203.00 KB (207,872 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\cfgmgr32.dll
oleaut32
6.1.7601.18679 841.50 KB (861,696 bytes)
4/17/2015 9:52 A
M
Microsoft Corporation c:\windows\system32\oleaut32.dll
ole32 6.1.7601.17514 1.99 MB (2,086,912 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\ole32.dll
devobj 6.1.7600.16385 91.00 KB (93,184 bytes) 7/13/2009 7:26 PM
Microsof
t Corporation c:\windows\system32\devobj.dll
rpcss 6.1.7601.17514 500.00 KB (512,000 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\rpcss.dll
clbcatq 2001.12.8530.16385
593.50 KB (607,744 bytes)
7/13/2009 8:00 P

M
Microsoft Corporation c:\windows\system32\clbcatq.dll
ntmarta 6.1.7600.16385 158.50 KB (162,304 bytes)
7/13/2009 7:50 PM
Microsoft Corporation c:\windows\system32\ntmarta.dll
wmidcprv
6.1.7601.17514 187.00 KB (191,488 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\wbem\wmidcprv.dll
fastprox
6.1.7600.16385 888.00 KB (909,312 bytes)
7/13/2009 7:47 P
M
Microsoft Corporation c:\windows\system32\wbem\fastprox.dll
wbemcomn
6.1.7601.17514 517.00 KB (529,408 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\wbemcomn.dll
ntdsapi 6.1.7600.16385 148.50 KB (152,064 bytes)
7/13/2009 7:54 PM
Microsoft Corporation c:\windows\system32\ntdsapi.dll
wbemprox
6.1.7600.16385 42.50 KB (43,520 bytes) 7/13/2009 7:46 PM
Microsoft Corporation c:\windows\system32\wbem\wbemprox.dll
wbemsvc 6.1.7600.16385 63.00 KB (64,512 bytes) 7/13/2009 7:46 PM
Microsof
t Corporation c:\windows\system32\wbem\wbemsvc.dll
wmiutils
6.1.7600.16385 134.00 KB (137,216 bytes)
7/13/2009 7:47 P
M
Microsoft Corporation c:\windows\system32\wbem\wmiutils.dll
wintrust
6.1.7601.18741 224.00 KB (229,376 bytes)
4/17/2015 9:57 A
M
Microsoft Corporation c:\windows\system32\wintrust.dll
winlogon
6.1.7601.18540 444.50 KB (455,168 bytes)
4/15/2015 3:35 P
M
Microsoft Corporation c:\windows\system32\winlogon.exe
uxinit 6.1.7600.16385 24.50 KB (25,088 bytes) 7/13/2009 7:54 PM
Microsof
t Corporation c:\windows\system32\uxinit.dll
uxtheme 6.1.7600.16385 324.50 KB (332,288 bytes)
7/13/2009 7:55 PM
Microsoft Corporation c:\windows\system32\uxtheme.dll
windowscodecs 6.2.9200.17251 1.36 MB (1,424,896 bytes)
4/17/2015 9:54 A
M
Microsoft Corporation c:\windows\system32\windowscodecs.dll
slc
6.1.7600.16385 30.00 KB (30,720 bytes) 7/13/2009 7:51 PM
Microsof
t Corporation c:\windows\system32\slc.dll
mpr
6.1.7600.16385 79.00 KB (80,896 bytes) 7/13/2009 8:10 PM
Microsof
t Corporation c:\windows\system32\mpr.dll
rpcepmap
6.1.7600.16385 65.50 KB (67,072 bytes) 7/13/2009 7:21 PM
Microsoft Corporation c:\windows\system32\rpcepmap.dll
firewallapi
6.1.7600.16385 730.50 KB (748,032 bytes)
7/13/2009 8:08 P
M
Microsoft Corporation c:\windows\system32\firewallapi.dll
version 6.1.7600.16385 28.50 KB (29,184 bytes) 7/13/2009 7:57 PM
Microsof
t Corporation c:\windows\system32\version.dll
fwpuclnt
6.1.7601.18283 316.50 KB (324,096 bytes)
4/15/2015 2:08 P
M
Microsoft Corporation c:\windows\system32\fwpuclnt.dll
msi
5.0.7601.18637 3.09 MB (3,241,984 bytes)
4/17/2015 9:55 AM
Microsoft Corporation c:\windows\system32\msi.dll
shell32 6.1.7601.18762 13.52 MB (14,177,280 bytes)
4/17/2015 9:54 AM
Microsoft Corporation c:\windows\system32\shell32.dll
shlwapi 6.1.7601.17514 438.00 KB (448,512 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\shlwapi.dll
msiltcfg
5.0.7600.16385 19.50 KB (19,968 bytes) 7/13/2009 7:48 PM
Microsoft Corporation c:\windows\system32\msiltcfg.dll
atiesrxx
6.14.11.1122
232.50 KB (238,080 bytes)
4/29/2013 11:52
PM
AMD
c:\windows\system32\atiesrxx.exe
psapi 6.1.7600.16385 9.00 KB (9,216 bytes) 7/13/2009 7:26 PM
Microsof
t Corporation c:\windows\system32\psapi.dll
powrprof
6.1.7600.16385 163.50 KB (167,424 bytes)
7/13/2009 7:27 P
M
Microsoft Corporation c:\windows\system32\powrprof.dll
wevtsvc 6.1.7601.17514 1.57 MB (1,646,080 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\wevtsvc.dll
audiosrv
6.1.7601.18741 665.00 KB (680,960 bytes)
4/17/2015 9:57 A
M
Microsoft Corporation c:\windows\system32\audiosrv.dll
mmdevapi
6.1.7600.16385 277.50 KB (284,160 bytes)
7/13/2009 8:18 P
M
Microsoft Corporation c:\windows\system32\mmdevapi.dll
propsys 7.0.7601.17514 1.16 MB (1,212,416 bytes)
4/15/2015 12:28 PM

Microsoft Corporation c:\windows\system32\propsys.dll


avrt
6.1.7600.16385 18.00 KB (18,432 bytes) 7/13/2009 8:22 PM
Microsof
t Corporation c:\windows\system32\avrt.dll
lmhsvc 6.1.7600.16385 23.00 KB (23,552 bytes) 7/13/2009 8:09 PM
Microsof
t Corporation c:\windows\system32\lmhsvc.dll
nrpsrv 6.1.7601.17514 15.00 KB (15,360 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\nrpsrv.dll
dhcpcore
6.1.7601.17514 310.50 KB (317,952 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\dhcpcore.dll
dhcpcore6
6.1.7601.17970 221.50 KB (226,816 bytes)
4/17/2015 9:54 A
M
Microsoft Corporation c:\windows\system32\dhcpcore6.dll
dhcpcsvc
6.1.7600.16385 85.00 KB (87,040 bytes) 7/13/2009 7:21 PM
Microsoft Corporation c:\windows\system32\dhcpcsvc.dll
dhcpcsvc6
6.1.7601.17970 54.00 KB (55,296 bytes) 4/17/2015 9:54 AM
Microsoft Corporation c:\windows\system32\dhcpcsvc6.dll
audioses
6.1.7601.18741 289.50 KB (296,448 bytes)
4/17/2015 9:57 A
M
Microsoft Corporation c:\windows\system32\audioses.dll
provsvc 6.1.7601.17514 183.50 KB (187,904 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\provsvc.dll
npmproxy
6.1.7600.16385 31.00 KB (31,744 bytes) 7/13/2009 8:12 PM
Microsoft Corporation c:\windows\system32\npmproxy.dll
fundisc 6.1.7600.16385 190.00 KB (194,560 bytes)
7/13/2009 7:35 PM
Microsoft Corporation c:\windows\system32\fundisc.dll
atl
3.5.2284.0
88.50 KB (90,624 bytes) 7/13/2009 8:34 PM
Microsof
t Corporation c:\windows\system32\atl.dll
msxml6 6.30.7601.18431 1.91 MB (2,002,432 bytes)
4/15/2015 2:15 PM
Microsoft Corporation c:\windows\system32\msxml6.dll
fdproxy 6.1.7601.17514 72.50 KB (74,240 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\fdproxy.dll
p2p
6.1.7600.16385 258.50 KB (264,704 bytes)
7/13/2009 8:11 PM
Microsoft Corporation c:\windows\system32\p2p.dll
p2pcollab
6.1.7600.16385 567.50 KB (581,120 bytes)
7/13/2009 8:11 P
M
Microsoft Corporation c:\windows\system32\p2pcollab.dll
actxprxy
6.1.7601.17514 936.00 KB (958,464 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\actxprxy.dll
ieproxy 11.0.9600.17801 726.00 KB (743,424 bytes)
5/13/2015 3:43 AM
Microsoft Corporation c:\program files\internet explorer\ieproxy.dll
api-ms-win-downlevel-shlwapi-l1-1-0
6.2.9200.16492 9.50 KB (9,728 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-shlwapi-l1-1-0.dll
api-ms-win-downlevel-shlwapi-l2-1-0
6.2.9200.16492 5.50 KB (5,632 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-shlwapi-l2-1-0.dll
api-ms-win-downlevel-advapi32-l1-1-0
6.2.9200.16492 10.50 KB (10,752 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-advapi32-l1-1-0.dll
pnrpnsp 6.1.7600.16385 84.00 KB (86,016 bytes) 7/13/2009 8:11 PM
Microsof
t Corporation c:\windows\system32\pnrpnsp.dll
xmllite 1.3.1001.0
195.00 KB (199,680 bytes)
4/17/2015 9:53 AM
Microsoft Corporation c:\windows\system32\xmllite.dll
wscsvc 6.1.7600.16385 95.00 KB (97,280 bytes) 7/13/2009 7:48 PM
Microsof
t Corporation c:\windows\system32\wscsvc.dll
dbghelp 6.1.7601.17514 1.04 MB (1,087,488 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\dbghelp.dll
imagehlp
6.1.7601.18288 79.50 KB (81,408 bytes) 4/15/2015 2:08 PM
Microsoft Corporation c:\windows\system32\imagehlp.dll
wuapi 7.6.7601.18804 680.00 KB (696,320 bytes)
4/17/2015 9:58 AM
Microsoft Corporation c:\windows\system32\wuapi.dll
cabinet 6.1.7601.17514 92.50 KB (94,720 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\cabinet.dll

rtkapo64
11.0.6000.144 1.58 MB (1,660,448 bytes)
4/15/2015 2:40 P
M
Realtek Semiconductor Corp.
c:\windows\system32\rtkapo64.dll
rteel64a
6.1.6001.33
96.70 KB (99,016 bytes) 4/15/2015 2:40 PM
Dolby Laboratories, Inc.
c:\windows\system32\rteel64a.dll
rteed64a
6.1.6001.33
197.20 KB (201,928 bytes)
4/15/2015 2:40 P
M
Dolby Laboratories, Inc.
c:\windows\system32\rteed64a.dll
uxsms 6.1.7600.16385 38.00 KB (38,912 bytes) 7/13/2009 7:37 PM
Microsof
t Corporation c:\windows\system32\uxsms.dll
wudfsvc 6.2.9200.16384 83.00 KB (84,992 bytes) 4/17/2015 10:11 AM
Microsof
t Corporation c:\windows\system32\wudfsvc.dll
wudfplatform
6.2.9200.16384 189.50 KB (194,048 bytes)
4/17/2015 10:11
AM
Microsoft Corporation c:\windows\system32\wudfplatform.dll
wlansvc 6.1.7600.16385 866.00 KB (886,784 bytes)
7/13/2009 8:07 PM
Microsoft Corporation c:\windows\system32\wlansvc.dll
dsrole 6.1.7600.16385 32.00 KB (32,768 bytes) 7/13/2009 7:50 PM
Microsof
t Corporation c:\windows\system32\dsrole.dll
wlanmsm 6.1.7601.17514 405.00 KB (414,720 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\wlanmsm.dll
wlansec 6.1.7600.16385 437.50 KB (448,000 bytes)
7/13/2009 8:07 PM
Microsoft Corporation c:\windows\system32\wlansec.dll
onex
6.1.7601.17514 230.00 KB (235,520 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\onex.dll
eappprxy
6.1.7600.16385 63.00 KB (64,512 bytes) 7/13/2009 8:12 PM
Microsoft Corporation c:\windows\system32\eappprxy.dll
eappcfg 6.1.7600.16385 257.50 KB (263,680 bytes)
7/13/2009 8:12 PM
Microsoft Corporation c:\windows\system32\eappcfg.dll
wlgpclnt
6.1.7600.16385 106.00 KB (108,544 bytes)
7/13/2009 8:07 P
M
Microsoft Corporation c:\windows\system32\wlgpclnt.dll
l2gpstore
6.1.7600.16385 69.50 KB (71,168 bytes) 7/13/2009 8:07 PM
Microsoft Corporation c:\windows\system32\l2gpstore.dll
wlanutil
6.1.7600.16385 10.50 KB (10,752 bytes) 7/13/2009 8:07 PM
Microsoft Corporation c:\windows\system32\wlanutil.dll
winscard
6.1.7601.17514 212.50 KB (217,600 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\winscard.dll
netcfgx 6.1.7601.17514 507.50 KB (519,680 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\netcfgx.dll
pcasvc 6.1.7601.18741 184.00 KB (188,416 bytes)
4/17/2015 9:57 AM
Microsoft Corporation c:\windows\system32\pcasvc.dll
aepic 10.0.9896.0
187.50 KB (192,000 bytes)
4/17/2015 9:53 AM
Microsoft Corporation c:\windows\system32\aepic.dll
sfc_os 6.1.7600.16385 44.00 KB (45,056 bytes) 7/13/2009 7:26 PM
Microsof
t Corporation c:\windows\system32\sfc_os.dll
sfc
6.1.7600.16385 3.00 KB (3,072 bytes) 7/13/2009 7:25 PM
Microsof
t Corporation c:\windows\system32\sfc.dll
sysmain 6.1.7601.17514 1.66 MB (1,743,360 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\sysmain.dll
trkwks 6.1.7600.16385 117.00 KB (119,808 bytes)
7/13/2009 7:59 PM
Microsoft Corporation c:\windows\system32\trkwks.dll
portabledeviceapi
6.1.7601.17514 740.50 KB (758,272 bytes)
4/15/201
5 12:28 PM
Microsoft Corporation c:\windows\system32\portabledeviceapi.dl
l
portabledeviceconnectapi
6.1.7600.16385 76.00 KB (77,824 bytes) 7/13/200
9 8:21 PM
Microsoft Corporation c:\windows\system32\portabledeviceconnec
tapi.dll
netman 6.1.7600.16385 352.00 KB (360,448 bytes)
7/13/2009 8:08 PM
Microsoft Corporation c:\windows\system32\netman.dll
netshell
6.1.7601.17514 2.53 MB (2,652,160 bytes)
4/15/2015 12:29
PM
Microsoft Corporation c:\windows\system32\netshell.dll
nlaapi 6.1.7601.17964 69.00 KB (70,656 bytes) 4/15/2015 4:07 PM
Microsof
t Corporation c:\windows\system32\nlaapi.dll

listsvc 6.1.7601.17514 227.00 KB (232,448 bytes)


4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\listsvc.dll
idlisten
6.1.7600.16385 209.00 KB (214,016 bytes)
7/13/2009 7:52 P
M
Microsoft Corporation c:\windows\system32\idlisten.dll
netapi32
6.1.7601.17887 71.50 KB (73,216 bytes) 4/15/2015 2:38 PM
Microsoft Corporation c:\windows\system32\netapi32.dll
samcli 6.1.7601.17514 66.00 KB (67,584 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\samcli.dll
hgprint 6.1.7601.17514 229.50 KB (235,008 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\hgprint.dll
winspool
6.1.7601.17514 432.00 KB (442,368 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\winspool.drv
rasdlg 6.1.7600.16385 840.50 KB (860,672 bytes)
7/13/2009 8:10 PM
Microsoft Corporation c:\windows\system32\rasdlg.dll
mprapi 6.1.7601.17514 216.00 KB (221,184 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\mprapi.dll
rasapi32
6.1.7600.16385 375.50 KB (384,512 bytes)
7/13/2009 8:10 P
M
Microsoft Corporation c:\windows\system32\rasapi32.dll
rasman 6.1.7600.16385 98.00 KB (100,352 bytes)
7/13/2009 8:10 PM
Microsoft Corporation c:\windows\system32\rasman.dll
rtutils 6.1.7601.17514 51.00 KB (52,224 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\rtutils.dll
hnetcfg 6.1.7600.16385 414.50 KB (424,448 bytes)
7/13/2009 8:08 PM
Microsoft Corporation c:\windows\system32\hnetcfg.dll
samlib 6.1.7600.16385 104.50 KB (107,008 bytes)
7/13/2009 7:53 PM
Microsoft Corporation c:\windows\system32\samlib.dll
shacct 6.1.7601.17514 132.00 KB (135,168 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\shacct.dll
comctl32
5.82.7601.18201 619.00 KB (633,856 bytes)
4/15/2015 2:05 P
M
Microsoft Corporation c:\windows\winsxs\amd64_microsoft.windows.common
-controls_6595b64144ccf1df_5.82.7601.18201_none_a4d3b9377117c3df\comctl32.dll
cscapi 6.1.7601.17514 45.00 KB (46,080 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\cscapi.dll
comctl32
6.10.7601.18807 1.94 MB (2,030,592 bytes)
5/13/2015 3:38 A
M
Microsoft Corporation c:\windows\winsxs\amd64_microsoft.windows.common
-controls_6595b64144ccf1df_6.0.7601.18807_none_fa381d5f175bfb52\comctl32.dll
fntcache
6.2.9200.17292 1.12 MB (1,179,136 bytes)
5/13/2015 3:38 A
M
Microsoft Corporation c:\windows\system32\fntcache.dll
es
2001.12.8530.16385
393.50 KB (402,944 bytes)
7/13/2009 8:00 P
M
Microsoft Corporation c:\windows\system32\es.dll
nsisvc 6.1.7600.16385 25.00 KB (25,600 bytes) 7/13/2009 7:21 PM
Microsof
t Corporation c:\windows\system32\nsisvc.dll
winhttp 6.1.7601.17514 434.00 KB (444,416 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\winhttp.dll
webio 6.1.7601.17725 386.50 KB (395,776 bytes)
4/15/2015 3:06 PM
Microsoft Corporation c:\windows\system32\webio.dll
netprofm
6.1.7600.16385 449.00 KB (459,776 bytes)
7/13/2009 8:12 P
M
Microsoft Corporation c:\windows\system32\netprofm.dll
wdi
6.1.7601.18713 89.00 KB (91,136 bytes) 4/17/2015 10:00 AM
Microsof
t Corporation c:\windows\system32\wdi.dll
perftrack
6.1.7601.18713 928.00 KB (950,272 bytes)
4/17/2015 10:00
AM
Microsoft Corporation c:\windows\system32\perftrack.dll
wer
6.1.7601.18381 473.50 KB (484,864 bytes)
4/17/2015 9:54 AM
Microsoft Corporation c:\windows\system32\wer.dll
dwmapi 6.1.7600.16385 80.50 KB (82,432 bytes) 7/13/2009 7:37 PM
Microsof
t Corporation c:\windows\system32\dwmapi.dll
napinsp 6.1.7600.16385 66.50 KB (68,096 bytes) 7/13/2009 8:10 PM
Microsof
t Corporation c:\windows\system32\napinsp.dll
winrnr 6.1.7600.16385 28.00 KB (28,672 bytes) 7/13/2009 7:53 PM
Microsof
t Corporation c:\windows\system32\winrnr.dll

rasadhlp
6.1.7600.16385 16.00 KB (16,384 bytes) 7/13/2009 8:10 PM
Microsoft Corporation c:\windows\system32\rasadhlp.dll
powertracker
6.1.7601.18713 29.00 KB (29,696 bytes) 4/17/2015 10:00 AM
Microsoft Corporation c:\windows\system32\powertracker.dll
fdphost 6.1.7600.16385 16.00 KB (16,384 bytes) 7/13/2009 7:35 PM
Microsof
t Corporation c:\windows\system32\fdphost.dll
fdwsd 6.1.7600.16385 129.00 KB (132,096 bytes)
7/13/2009 7:35 PM
Microsoft Corporation c:\windows\system32\fdwsd.dll
mlang 6.1.7600.16385 221.50 KB (226,816 bytes)
7/13/2009 7:55 PM
Microsoft Corporation c:\windows\system32\mlang.dll
wsdapi 6.1.7601.17514 564.00 KB (577,536 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\wsdapi.dll
webservices
6.1.7601.17514 1.10 MB (1,158,656 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\webservices.dll
fdssdp 6.1.7600.16385 91.50 KB (93,696 bytes) 7/13/2009 7:35 PM
Microsof
t Corporation c:\windows\system32\fdssdp.dll
ssdpapi 6.1.7600.16385 50.00 KB (51,200 bytes) 7/13/2009 8:10 PM
Microsof
t Corporation c:\windows\system32\ssdpapi.dll
w32time 6.1.7600.16385 373.00 KB (381,952 bytes)
7/13/2009 7:49 PM
Microsoft Corporation c:\windows\system32\w32time.dll
profsvc 6.1.7601.18706 205.50 KB (210,432 bytes)
4/15/2015 4:11 PM
Microsoft Corporation c:\windows\system32\profsvc.dll
themeservice
6.1.7600.16385 43.50 KB (44,544 bytes) 7/13/2009 7:54 PM
Microsoft Corporation c:\windows\system32\themeservice.dll
sens
6.1.7600.16385 63.00 KB (64,512 bytes) 7/13/2009 7:34 PM
Microsof
t Corporation c:\windows\system32\sens.dll
eapsvc 6.1.7600.16385 108.50 KB (111,104 bytes)
7/13/2009 8:12 PM
Microsoft Corporation c:\windows\system32\eapsvc.dll
eapphost
6.1.7601.17514 296.50 KB (303,616 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\eapphost.dll
umb
6.1.7601.17514 58.50 KB (59,904 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\umb.dll
shsvcs 6.1.7601.17514 362.00 KB (370,688 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\shsvcs.dll
schedsvc
6.1.7601.17514 1.06 MB (1,110,016 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\schedsvc.dll
ktmw32 6.1.7600.16385 22.50 KB (23,040 bytes) 7/13/2009 7:19 PM
Microsof
t Corporation c:\windows\system32\ktmw32.dll
taskcomp
6.1.7601.17514 462.50 KB (473,600 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\taskcomp.dll
ikeext 6.1.7601.18283 839.50 KB (859,648 bytes)
4/15/2015 2:08 PM
Microsoft Corporation c:\windows\system32\ikeext.dll
fveapi 6.1.7601.17514 337.50 KB (345,600 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\fveapi.dll
tbs
6.1.7600.16385 19.50 KB (19,968 bytes) 7/13/2009 7:21 PM
Microsof
t Corporation c:\windows\system32\tbs.dll
fvecerts
6.1.7600.16385 20.00 KB (20,480 bytes) 7/13/2009 7:21 PM
Microsoft Corporation c:\windows\system32\fvecerts.dll
wiarpc 6.1.7600.16385 42.50 KB (43,520 bytes) 7/13/2009 8:35 PM
Microsof
t Corporation c:\windows\system32\wiarpc.dll
tschannel
6.1.7600.16385 17.00 KB (17,408 bytes) 7/13/2009 7:46 PM
Microsoft Corporation c:\windows\system32\tschannel.dll
wmisvc 6.1.7600.16385 237.00 KB (242,688 bytes)
7/13/2009 7:47 PM
Microsoft Corporation c:\windows\system32\wbem\wmisvc.dll
iphlpsvc
6.1.7601.17964 556.00 KB (569,344 bytes)
4/17/2015 9:55 A
M
Microsoft Corporation c:\windows\system32\iphlpsvc.dll
sqmapi 6.1.7601.17514 239.00 KB (244,736 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\sqmapi.dll
wdscore 6.1.7600.16385 265.00 KB (271,360 bytes)
7/13/2009 7:28 PM
Microsoft Corporation c:\windows\system32\wdscore.dll

vssapi 6.1.7601.17514 1.67 MB (1,753,088 bytes)


4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\vssapi.dll
vsstrace
6.1.7600.16385 75.00 KB (76,800 bytes) 7/13/2009 7:36 PM
Microsoft Corporation c:\windows\system32\vsstrace.dll
srvsvc 6.1.7601.17514 230.50 KB (236,032 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\srvsvc.dll
browser 6.1.7601.17887 133.50 KB (136,704 bytes)
4/15/2015 2:38 PM
Microsoft Corporation c:\windows\system32\browser.dll
wbemcore
6.1.7601.17514 1.17 MB (1,225,216 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\wbem\wbemcore.dll
esscli 6.1.7600.16385 430.00 KB (440,320 bytes)
7/13/2009 7:47 PM
Microsoft Corporation c:\windows\system32\wbem\esscli.dll
sscore 6.1.7601.17514 13.00 KB (13,312 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\sscore.dll
clusapi 6.1.7601.17514 307.00 KB (314,368 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\clusapi.dll
resutils
6.1.7600.16385 84.00 KB (86,016 bytes) 7/13/2009 7:34 PM
Microsoft Corporation c:\windows\system32\resutils.dll
nci
6.1.7601.17514 88.00 KB (90,112 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\nci.dll
repdrvfs
6.1.7600.16385 441.00 KB (451,584 bytes)
7/13/2009 7:47 P
M
Microsoft Corporation c:\windows\system32\wbem\repdrvfs.dll
wmiprvsd
6.1.7601.17514 736.50 KB (754,176 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\wbem\wmiprvsd.dll
ncobjapi
6.1.7600.16385 67.50 KB (69,120 bytes) 7/13/2009 7:47 PM
Microsoft Corporation c:\windows\system32\ncobjapi.dll
wbemess 6.1.7600.16385 494.00 KB (505,856 bytes)
7/13/2009 7:47 PM
Microsoft Corporation c:\windows\system32\wbem\wbemess.dll
wuaueng 7.6.7601.18804 2.44 MB (2,553,856 bytes)
4/17/2015 9:58 AM
Microsoft Corporation c:\windows\system32\wuaueng.dll
esent 6.1.7601.17577 2.45 MB (2,565,632 bytes)
4/18/2015 5:52 PM
Microsoft Corporation c:\windows\system32\esent.dll
mspatcha
6.1.7600.16385 45.50 KB (46,592 bytes) 7/13/2009 7:21 PM
Microsoft Corporation c:\windows\system32\mspatcha.dll
msxml3 8.110.7601.18782
1.80 MB (1,882,624 bytes)
4/17/2015 9:53 A
M
Microsoft Corporation c:\windows\system32\msxml3.dll
sppc
6.1.7601.17514 142.50 KB (145,920 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\sppc.dll
sensapi 6.1.7600.16385 15.50 KB (15,872 bytes) 7/13/2009 7:34 PM
Microsof
t Corporation c:\windows\system32\sensapi.dll
ncprov 6.1.7600.16385 76.50 KB (78,336 bytes) 7/13/2009 7:47 PM
Microsof
t Corporation c:\windows\system32\wbem\ncprov.dll
advpack 8.0.7600.16385 156.50 KB (160,256 bytes)
7/13/2009 7:58 PM
Microsoft Corporation c:\windows\system32\advpack.dll
mmcss 6.1.7600.16385 66.00 KB (67,584 bytes) 7/13/2009 8:22 PM
Microsof
t Corporation c:\windows\system32\mmcss.dll
qmgr
7.5.7601.17514 830.00 KB (849,920 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\qmgr.dll
bitsperf
7.5.7601.17514 24.00 KB (24,576 bytes) 4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\bitsperf.dll
bitsigd 7.5.7600.16385 55.50 KB (56,832 bytes) 7/13/2009 7:46 PM
Microsof
t Corporation c:\windows\system32\bitsigd.dll
aelupsvc
6.1.7601.18777 70.50 KB (72,192 bytes) 5/13/2015 3:38 AM
Microsoft Corporation c:\windows\system32\aelupsvc.dll
gpsvc 6.1.7601.17514 759.50 KB (777,728 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\gpsvc.dll
dnsrslvr
6.1.7601.17570 179.00 KB (183,296 bytes)
4/15/2015 2:50 P
M
Microsoft Corporation c:\windows\system32\dnsrslvr.dll
dnsext 6.1.7600.16385 8.00 KB (8,192 bytes) 7/13/2009 8:12 PM
Microsof
t Corporation c:\windows\system32\dnsext.dll

wkssvc 6.1.7601.17514 116.00 KB (118,784 bytes)


4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\wkssvc.dll
cryptsvc
6.1.7601.18741 183.50 KB (187,904 bytes)
4/17/2015 9:57 A
M
Microsoft Corporation c:\windows\system32\cryptsvc.dll
nlasvc 6.1.7601.18685 296.50 KB (303,616 bytes)
4/15/2015 4:07 PM
Microsoft Corporation c:\windows\system32\nlasvc.dll
ncsi
6.1.7601.17964 211.50 KB (216,576 bytes)
4/15/2015 4:07 PM
Microsoft Corporation c:\windows\system32\ncsi.dll
tapisrv 6.1.7601.17514 309.50 KB (316,928 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\tapisrv.dll
atieclxx
6.14.11.1122
502.00 KB (514,048 bytes)
4/29/2013 11:53
PM
AMD
c:\windows\system32\atieclxx.exe
atiadlxx
6.14.10.1104
523.00 KB (535,552 bytes)
4/29/2013 10:49
PM
Advanced Micro Devices, Inc.
c:\windows\system32\atiadlxx.dll
wsock32 6.1.7600.16385 18.00 KB (18,432 bytes) 7/13/2009 8:10 PM
Microsof
t Corporation c:\windows\system32\wsock32.dll
spoolsv 6.1.7601.17777 546.00 KB (559,104 bytes)
4/18/2015 5:52 PM
Microsoft Corporation c:\windows\system32\spoolsv.exe
localspl
6.1.7601.17841 934.50 KB (956,928 bytes)
4/15/2015 3:04 P
M
Microsoft Corporation c:\windows\system32\localspl.dll
spoolss 6.1.7600.16385 56.50 KB (57,856 bytes) 7/13/2009 8:39 PM
Microsof
t Corporation c:\windows\system32\spoolss.dll
printisolationproxy
6.1.7601.17514 47.00 KB (48,128 bytes) 4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\printisolationproxy.dll
fxsmon 6.1.7601.17514 41.00 KB (41,984 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\fxsmon.dll
tcpmon 6.1.7600.16385 190.50 KB (195,072 bytes)
7/13/2009 8:39 PM
Microsoft Corporation c:\windows\system32\tcpmon.dll
snmpapi 6.1.7600.16385 27.00 KB (27,648 bytes) 7/13/2009 8:10 PM
Microsof
t Corporation c:\windows\system32\snmpapi.dll
wsnmp32 6.1.7601.17514 65.50 KB (67,072 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\wsnmp32.dll
usbmon 6.1.7600.16385 44.00 KB (45,056 bytes) 7/13/2009 8:39 PM
Microsof
t Corporation c:\windows\system32\usbmon.dll
wls0wndh
6.1.7600.16385 10.50 KB (10,752 bytes) 7/13/2009 7:52 PM
Microsoft Corporation c:\windows\system32\wls0wndh.dll
wsdmon 6.1.7600.16385 219.50 KB (224,768 bytes)
7/13/2009 8:39 PM
Microsoft Corporation c:\windows\system32\wsdmon.dll
fdpnp 6.1.7600.16385 50.00 KB (51,200 bytes) 7/13/2009 7:35 PM
Microsof
t Corporation c:\windows\system32\fdpnp.dll
winprint
6.1.7601.17514 38.50 KB (39,424 bytes) 4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\spool\prtprocs\x64\winprint.dll
win32spl
6.1.7601.18142 733.50 KB (751,104 bytes)
4/15/2015 2:01 P
M
Microsoft Corporation c:\windows\system32\win32spl.dll
inetpp 6.1.7601.17514 163.00 KB (166,912 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\inetpp.dll
bfe
6.1.7601.17514 688.50 KB (705,024 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\bfe.dll
mpssvc 6.1.7601.17514 809.00 KB (828,416 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\mpssvc.dll
wfapigp 6.1.7600.16385 22.00 KB (22,528 bytes) 7/13/2009 8:08 PM
Microsof
t Corporation c:\windows\system32\wfapigp.dll
dps
6.1.7601.17514 159.00 KB (162,816 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\dps.dll
taskschd
6.1.7601.17514 1.14 MB (1,197,056 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\taskschd.dll
wdiasqmmodule 6.1.7601.17514 35.50 KB (36,352 bytes) 4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\wdiasqmmodule.dll
radardt 6.1.7600.16385 95.50 KB (97,792 bytes) 7/13/2009 7:32 PM
Microsof
t Corporation c:\windows\system32\radardt.dll

Fuel.Service
1.0.0.0 353.50 KB (361,984 bytes)
4/29/2013 11:25 PM
Advanced Micro Devices, Inc.
c:\program files\ati technologies\ati.ace\fuel\f
uel.service.exe
msvcp100
10.0.40219.1
593.83 KB (608,080 bytes)
2/19/2011 9:51 P
M
Microsoft Corporation c:\windows\system32\msvcp100.dll
msvcr100
10.0.40219.1
809.83 KB (829,264 bytes)
2/18/2011 11:52
PM
Microsoft Corporation c:\windows\system32\msvcr100.dll
Fuel.Container.Wlan
1.0.0.0 72.00 KB (73,728 bytes) 4/29/2013 11:25 PM
Not Available c:\program files\ati technologies\ati.ace\fuel\fuel.container.wl
an.dll
wlanapi 6.1.7600.16385 111.50 KB (114,176 bytes)
7/13/2009 8:07 PM
Microsoft Corporation c:\windows\system32\wlanapi.dll
diagtrack
10.0.10033.0
1.20 MB (1,254,400 bytes)
5/13/2015 3:39 A
M
Microsoft Corporation c:\windows\system32\diagtrack.dll
xaudio64
1.0.23.0
426.50 KB (436,736 bytes)
4/29/2009 2:21 P
M
Conexant Systems, Inc. c:\windows\syswow64\xaudio64.dll
ccsvchst
10.1.1.16
126.96 KB (130,008 bytes)
4/29/2015 2:18 P
M
Symantec Corporation
c:\program files (x86)\norton internet security\
engine\18.7.2.3\ccsvchst.exe
wow64 6.1.7601.18839 238.00 KB (243,712 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\wow64.dll
wow64win
6.1.7601.18839 354.00 KB (362,496 bytes)
5/13/2015 3:39 A
M
Microsoft Corporation c:\windows\system32\wow64win.dll
wow64cpu
6.1.7601.18839 13.00 KB (13,312 bytes) 5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\wow64cpu.dll
taskhost
6.1.7601.18010 67.00 KB (68,608 bytes) 4/15/2015 1:28 PM
Microsoft Corporation c:\windows\system32\taskhost.exe
playsndsrv
6.1.7600.16385 83.00 KB (84,992 bytes) 7/13/2009 8:18 PM
Microsoft Corporation c:\windows\system32\playsndsrv.dll
winmm 6.1.7600.16385 212.50 KB (217,600 bytes)
7/13/2009 8:18 PM
Microsoft Corporation c:\windows\system32\winmm.dll
msctfmonitor
6.1.7600.16385 27.50 KB (28,160 bytes) 7/13/2009 7:39 PM
Microsoft Corporation c:\windows\system32\msctfmonitor.dll
msutb 6.1.7600.16385 230.00 KB (235,520 bytes)
7/13/2009 7:39 PM
Microsoft Corporation c:\windows\system32\msutb.dll
hotstartuseragent
6.1.7601.17514 26.50 KB (27,136 bytes) 4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\hotstartuseragent.dll
wininet 11.0.9600.17801 2.24 MB (2,352,128 bytes)
5/13/2015 3:42 AM
Microsoft Corporation c:\windows\system32\wininet.dll
api-ms-win-downlevel-user32-l1-1-0
6.2.9200.16492 4.00 KB (4,096 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-user32-l1-1-0.dll
api-ms-win-downlevel-version-l1-1-0
6.2.9200.16492 3.00 KB (3,072 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-version-l1-1-0.dll
api-ms-win-downlevel-normaliz-l1-1-0
6.2.9200.16492 2.50 KB (2,560 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-normaliz-l1-1-0.dll
normaliz
6.1.7600.16385 2.50 KB (2,560 bytes) 7/13/2009 7:26 PM
Microsoft Corporation c:\windows\system32\normaliz.dll
iertutil
11.0.9600.17801 2.75 MB (2,885,120 bytes)
5/13/2015 3:43 A
M
Microsoft Corporation c:\windows\system32\iertutil.dll
api-ms-win-downlevel-ole32-l1-1-0
6.2.9200.16492 5.50 KB (5,632 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-ole32-l1-1-0.dll
api-ms-win-downlevel-advapi32-l2-1-0
6.2.9200.16492 3.50 KB (3,584 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-advapi32-l2-1-0.dll
dimsjob 6.1.7600.16385 39.50 KB (40,448 bytes) 7/13/2009 7:53 PM
Microsof
t Corporation c:\windows\system32\dimsjob.dll

sqmapi 6.2.9200.16384 286.20 KB (293,072 bytes)


5/13/2015 3:42 AM
Microsoft Corporation c:\program files\internet explorer\sqmapi.dll
gameux 6.1.7601.18020 2.62 MB (2,746,368 bytes)
4/17/2015 9:59 AM
Microsoft Corporation c:\windows\system32\gameux.dll
gdiplus 6.1.7601.18834 2.07 MB (2,166,272 bytes)
5/13/2015 3:38 AM
Microsoft Corporation c:\windows\winsxs\amd64_microsoft.windows.gdiplus_6595b6
4144ccf1df_1.1.7601.18834_none_2b26557a71eb7442\gdiplus.dll
wdmaud 6.1.7601.17514 212.00 KB (217,088 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\wdmaud.drv
ksuser 6.1.7600.16385 5.00 KB (5,120 bytes) 7/13/2009 8:18 PM
Microsof
t Corporation c:\windows\system32\ksuser.dll
msacm32 6.1.7600.16385 25.00 KB (25,600 bytes) 7/13/2009 8:18 PM
Microsof
t Corporation c:\windows\system32\msacm32.drv
msacm32 6.1.7600.16385 81.50 KB (83,456 bytes) 7/13/2009 8:18 PM
Microsof
t Corporation c:\windows\system32\msacm32.dll
midimap 6.1.7600.16385 20.00 KB (20,480 bytes) 7/13/2009 8:18 PM
Microsof
t Corporation c:\windows\system32\midimap.dll
dwm
6.1.7600.16385 117.50 KB (120,320 bytes)
7/13/2009 7:37 PM
Microsoft Corporation c:\windows\system32\dwm.exe
dwmredir
6.1.7601.17514 125.50 KB (128,512 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\dwmredir.dll
dwmcore 6.1.7601.17514 1.56 MB (1,632,256 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\dwmcore.dll
d3d10_1 6.2.9200.16492 190.00 KB (194,560 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\d3d10_1.dll
d3d10_1core
6.2.9200.16492 325.50 KB (333,312 bytes)
4/15/2015 1:23 P
M
Microsoft Corporation c:\windows\system32\d3d10_1core.dll
dxgi
6.2.9200.16492 354.50 KB (363,008 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\dxgi.dll
d3d11 6.2.9200.16570 1.80 MB (1,887,232 bytes)
4/15/2015 1:29 PM
Microsoft Corporation c:\windows\system32\d3d11.dll
atiuxp64
8.14.1.6264
60.02 KB (61,464 bytes) 4/15/2015 2:36 PM
Advanced Micro Devices, Inc.
c:\windows\system32\atiuxp64.dll
aticfx64
8.17.10.1129
1.04 MB (1,094,024 bytes)
4/15/2015 2:36 P
M
Advanced Micro Devices, Inc.
c:\windows\system32\aticfx64.dll
atidxx64
8.17.10.436
7.21 MB (7,560,424 bytes)
4/15/2015 2:36 P
M
Advanced Micro Devices, Inc.
c:\windows\system32\atidxx64.dll
udwm
6.1.7600.16385 321.00 KB (328,704 bytes)
7/13/2009 7:37 PM
Microsoft Corporation c:\windows\system32\udwm.dll
explorer
6.1.7601.17567 2.74 MB (2,871,808 bytes)
4/18/2015 5:52 P
M
Microsoft Corporation c:\windows\explorer.exe
explorerframe 6.1.7601.17514 1.78 MB (1,866,240 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\explorerframe.dll
duser 6.1.7600.16385 254.50 KB (260,608 bytes)
7/13/2009 7:39 PM
Microsoft Corporation c:\windows\system32\duser.dll
dui70 6.1.7600.16385 954.00 KB (976,896 bytes)
7/13/2009 7:41 PM
Microsoft Corporation c:\windows\system32\dui70.dll
ehstorshell
6.1.7600.16385 198.50 KB (203,264 bytes)
7/13/2009 8:00 P
M
Microsoft Corporation c:\windows\system32\ehstorshell.dll
ntshrui 6.1.7601.17755 498.00 KB (509,952 bytes)
4/17/2015 9:55 AM
Microsoft Corporation c:\windows\system32\ntshrui.dll
iconcodecservice
6.1.7600.16385 14.00 KB (14,336 bytes) 7/13/2009 7:37 P
M
Microsoft Corporation c:\windows\system32\iconcodecservice.dll
sndvolsso
6.1.7601.17514 220.00 KB (225,280 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\sndvolsso.dll
hid
6.1.7600.16385 29.50 KB (30,208 bytes) 7/13/2009 8:06 PM
Microsof
t Corporation c:\windows\system32\hid.dll
timedate
6.1.7601.17753 503.50 KB (515,584 bytes)
4/17/2015 9:53 A
M
Microsoft Corporation c:\windows\system32\timedate.cpl
shdocvw 6.1.7601.18222 192.50 KB (197,120 bytes)
4/17/2015 9:55 AM

Microsoft Corporation c:\windows\system32\shdocvw.dll


linkinfo
6.1.7600.16385 29.00 KB (29,696 bytes) 7/13/2009 7:55 PM
Microsoft Corporation c:\windows\system32\linkinfo.dll
msls31 3.10.349.0
242.00 KB (247,808 bytes)
4/15/2015 1:38 PM
Microsoft Corporation c:\windows\system32\msls31.dll
tiptsf 6.1.7601.18512 491.50 KB (503,296 bytes)
4/15/2015 2:20 PM
Microsoft Corporation c:\program files\common files\microsoft shared\ink\tipts
f.dll
authui 6.1.7601.18493 1.85 MB (1,941,504 bytes)
4/15/2015 2:31 PM
Microsoft Corporation c:\windows\system32\authui.dll
cryptui 6.1.7601.18741 1.02 MB (1,069,056 bytes)
4/17/2015 9:57 AM
Microsoft Corporation c:\windows\system32\cryptui.dll
urlmon 11.0.9600.17801 1.48 MB (1,547,264 bytes)
5/13/2015 3:43 AM
Microsoft Corporation c:\windows\system32\urlmon.dll
ieframe 11.0.9600.17801 13.73 MB (14,401,536 bytes)
5/13/2015 3:43 AM
Microsoft Corporation c:\windows\system32\ieframe.dll
api-ms-win-downlevel-shell32-l1-1-0
6.2.9200.16492 3.00 KB (3,072 bytes)
4/15/2015 1:23 PM
Microsoft Corporation c:\windows\system32\api-ms-win-d
ownlevel-shell32-l1-1-0.dll
stobject
6.1.7601.17514 251.00 KB (257,024 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\stobject.dll
batmeter
6.1.7601.17514 732.00 KB (749,568 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\batmeter.dll
uianimation
6.2.9200.16492 216.00 KB (221,184 bytes)
4/15/2015 1:24 P
M
Microsoft Corporation c:\windows\system32\uianimation.dll
prnfldr 6.1.7601.17514 406.50 KB (416,256 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\prnfldr.dll
dxp
6.1.7601.17514 449.00 KB (459,776 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\dxp.dll
syncreg 2007.94.7600.16385
72.00 KB (73,728 bytes) 7/13/2009 8:22 PM
Microsoft Corporation c:\windows\system32\syncreg.dll
ehsso 6.1.7600.16385 25.50 KB (26,112 bytes) 7/13/2009 8:24 PM
Microsof
t Corporation c:\windows\ehome\ehsso.dll
alttab 6.1.7600.16385 52.00 KB (53,248 bytes) 7/13/2009 7:55 PM
Microsof
t Corporation c:\windows\system32\alttab.dll
wpdshserviceobj 6.1.7601.17514 112.50 KB (115,200 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\wpdshserviceobj.dll
portabledevicetypes
6.1.7600.16385 214.50 KB (219,648 bytes)
7/13/200
9 8:21 PM
Microsoft Corporation c:\windows\system32\portabledevicetypes.
dll
mssprxy 7.0.7600.16385 98.00 KB (100,352 bytes)
7/13/2009 8:29 PM
Microsoft Corporation c:\windows\system32\mssprxy.dll
pnidui 6.1.7601.17514 1.72 MB (1,808,384 bytes)
4/15/2015 12:29 PM
Microsoft Corporation c:\windows\system32\pnidui.dll
qutil 6.1.7601.17514 105.00 KB (107,520 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\qutil.dll
srchadmin
7.0.7601.17514 333.00 KB (340,992 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\srchadmin.dll
synccenter
6.1.7601.17514 2.16 MB (2,262,528 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\synccenter.dll
actioncenter
6.1.7601.17514 762.50 KB (780,800 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\actioncenter.dll
imapi2 6.1.7601.17514 491.50 KB (503,296 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\imapi2.dll
hgcpl 6.1.7601.17514 324.50 KB (332,288 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\hgcpl.dll
fxsst 6.1.7600.16385 843.50 KB (863,744 bytes)
7/13/2009 8:35 PM
Microsoft Corporation c:\windows\system32\fxsst.dll
fxsapi 6.1.7601.17514 608.50 KB (623,104 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\fxsapi.dll

fxsresm 6.1.7600.16385 903.50 KB (925,184 bytes)


7/13/2009 8:36 PM
Microsoft Corporation c:\windows\system32\fxsresm.dll
wwanapi 6.1.7600.16385 360.00 KB (368,640 bytes)
7/13/2009 8:12 PM
Microsoft Corporation c:\windows\system32\wwanapi.dll
wwapi 8.1.2.0 35.50 KB (36,352 bytes) 7/13/2009 8:12 PM
Microsoft Corpor
ation c:\windows\system32\wwapi.dll
qagent 6.1.7601.17514 260.00 KB (266,240 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\qagent.dll
bthprops
6.1.7601.17514 704.50 KB (721,408 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\bthprops.cpl
wscinterop
6.1.7600.16385 143.00 KB (146,432 bytes)
7/13/2009 7:48 P
M
Microsoft Corporation c:\windows\system32\wscinterop.dll
wscapi 6.1.7601.17514 62.00 KB (63,488 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\wscapi.dll
wscui 6.1.7600.16385 1.11 MB (1,162,240 bytes)
7/13/2009 7:48 PM
Microsoft Corporation c:\windows\system32\wscui.cpl
werconcpl
6.1.7601.17514 1.22 MB (1,281,024 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\werconcpl.dll
framedynos
6.1.7601.17514 289.00 KB (295,936 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\framedynos.dll
wercplsupport 6.1.7600.16385 82.50 KB (84,480 bytes) 7/13/2009 7:40 PM
Microsoft Corporation c:\windows\system32\wercplsupport.dll
hcproviders
6.1.7600.16385 30.50 KB (31,232 bytes) 7/13/2009 7:56 PM
Microsoft Corporation c:\windows\system32\hcproviders.dll
drprov 6.1.7600.16385 24.00 KB (24,576 bytes) 7/13/2009 8:17 PM
Microsof
t Corporation c:\windows\system32\drprov.dll
ntlanman
6.1.7601.17514 126.50 KB (129,536 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\ntlanman.dll
davclnt 6.1.7601.18201 100.00 KB (102,400 bytes)
4/17/2015 9:56 AM
Microsoft Corporation c:\windows\system32\davclnt.dll
davhlpr 6.1.7600.16385 25.00 KB (25,600 bytes) 7/13/2009 7:23 PM
Microsof
t Corporation c:\windows\system32\davhlpr.dll
msftedit
5.41.21.2510
781.00 KB (799,744 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\msftedit.dll
networkexplorer 6.1.7601.17514 1.60 MB (1,672,704 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\networkexplorer.dll
structuredquery 7.0.7601.17514 472.50 KB (483,840 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\structuredquery.dll
searchfolder
6.1.7601.17514 847.50 KB (867,840 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\searchfolder.dll
taskeng 6.1.7601.17514 453.50 KB (464,384 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\taskeng.exe
DriverUpdate
2.3.1.0 24.96 MB (26,167,576 bytes)
4/2/2015 9:07 AM
SlimWare Utilities, Inc.
c:\program files (x86)\driverupdate\driverupdate
.exe
SymcPCCULaunchSvc
1.0.0.137
101.36 KB (103,792 bytes)
4/15/201
5 3:04 PM
Symantec Corporation
c:\program files (x86)\norton pc checkup
\engine\2.0.3.198\symcpcculaunchsvc.exe
ccsvchst
109.0.0.107
123.43 KB (126,392 bytes)
4/15/2015 3:04 P
M
Symantec Corporation
c:\program files (x86)\norton pc checkup\engine\
2.0.3.198\ccsvchst.exe
PsiService_2
2.0.1.124
181.28 KB (185,632 bytes)
7/24/2007 2:15 P
M
Protexis Inc. c:\program files (x86)\common files\protexis\license ser
vice\psiservice_2.exe
SlimServiceFactory
1.1.0.0 238.77 KB (244,504 bytes)
5/8/2015 12:21 P
M
SlimWare Utilities, Inc.
c:\program files\slimservice\slimservice
factory.exe
toddsrv 1.0.0.7 137.34 KB (140,632 bytes)
7/22/2010 8:51 PM
TOSHIBA
Corporation
c:\windows\system32\toddsrv.exe
toscosrv
1.0.0.4 477.84 KB (489,312 bytes)
11/6/2009 12:05 AM

TOSHIBA Corporation
c:\program files\toshiba\power saver\toscosrv.exe
tpwrreg 1.0.0.8 117.00 KB (119,808 bytes)
11/6/2009 12:08 AM
TOSHIBA
Corporation
c:\program files\toshiba\power saver\tpwrreg.dll
tpwrfunc
1.0.0.5 120.00 KB (122,880 bytes)
11/6/2009 12:08 AM
TOSHIBA Corporation
c:\program files\toshiba\power saver\tpwrfunc.dll
TecoService
1.1.9.0 252.86 KB (258,928 bytes)
4/6/2010 5:53 PM
TOSHIBA Corporation
c:\program files\toshiba\teco\tecoservice.exe
tecohci 1.1.5.0 86.86 KB (88,944 bytes) 4/6/2010 5:53 PM
TOSHIBA Corporat
ion
c:\program files\toshiba\teco\tecohci.dll
TecoPower
1.1.8.0 565.37 KB (578,936 bytes)
4/6/2010 5:53 PM
TOSHIBA Corporation
c:\program files\toshiba\teco\tecopower.dll
searchindexer 7.0.7601.17610 578.00 KB (591,872 bytes)
4/17/2015 9:53 A
M
Microsoft Corporation c:\windows\system32\searchindexer.exe
tquery 7.0.7601.17610 2.21 MB (2,315,776 bytes)
4/17/2015 9:53 AM
Microsoft Corporation c:\windows\system32\tquery.dll
mssrch 7.0.7601.17610 2.12 MB (2,223,616 bytes)
4/17/2015 9:53 AM
Microsoft Corporation c:\windows\system32\mssrch.dll
msidle 6.1.7600.16385 11.00 KB (11,264 bytes) 7/13/2009 7:55 PM
Microsof
t Corporation c:\windows\system32\msidle.dll
tquery.dll
7.0.7600.16385 190.50 KB (195,072 bytes)
7/14/2009 1:35 A
M
Microsoft Corporation c:\windows\system32\en-us\tquery.dll.mui
naturallanguage6
6.1.7601.17514 1.26 MB (1,326,080 bytes)
4/15/201
5 12:28 PM
Microsoft Corporation c:\windows\system32\naturallanguage6.dll
elscore 6.1.7600.16385 44.50 KB (45,568 bytes) 7/13/2009 7:26 PM
Microsof
t Corporation c:\windows\system32\elscore.dll
elslad 6.1.7600.16385 632.50 KB (647,680 bytes)
7/13/2009 7:26 PM
Microsoft Corporation c:\windows\system32\elslad.dll
nlsdata0009
6.1.7600.16385 5.98 MB (6,270,976 bytes)
7/13/2009 8:31 P
M
Microsoft Corporation c:\windows\system32\nlsdata0009.dll
nlslexicons0009 6.1.7600.16385 2.51 MB (2,628,608 bytes)
7/13/2009 8:33 P
M
Microsoft Corporation c:\windows\system32\nlslexicons0009.dll
SlimCleanerPlus 1.4.0.0 24.95 MB (26,166,552 bytes)
5/8/2015 12:21 PM
SlimWare Utilities, Inc.
c:\program files\slimcleaner plus\slimcleanerplu
s.exe
SlimService
1.2.0.0 4.45 MB (4,669,208 bytes)
5/8/2015 12:21 PM
SlimWare Utilities, Inc.
c:\program files\slimservice\slimservice.exe
MyDefragDll
Not Available 738.27 KB (755,992 bytes)
5/8/2015 12:21 P
M
Not Available c:\program files\slimservice\mydefragdll.dll
msimg32 6.1.7600.16385 8.00 KB (8,192 bytes) 7/13/2009 7:38 PM
Microsof
t Corporation c:\windows\system32\msimg32.dll
wups
7.6.7601.18804 34.50 KB (35,328 bytes) 4/17/2015 9:58 AM
Microsof
t Corporation c:\windows\system32\wups.dll
mom
2.0.0.0 292.00 KB (299,008 bytes)
1/25/2012 2:32 PM
Not Avai
lable c:\program files (x86)\ati technologies\ati.ace\core-static\mom.exe
mscoree 4.0.40305.0
434.33 KB (444,752 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\mscoree.dll
mscoreei
4.0.30319.237 565.33 KB (578,896 bytes)
5/17/2011 10:08
AM
Microsoft Corporation c:\windows\microsoft.net\framework64\v4.0.30319\
mscoreei.dll
mscorwks
2.0.50727.5485 9.53 MB (9,996,432 bytes)
4/15/2015 3:22 P
M
Microsoft Corporation c:\windows\microsoft.net\framework64\v2.0.50727\
mscorwks.dll
msvcr80 8.0.50727.4940 783.83 KB (802,640 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18
e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcr80.dll
mscorlib.ni
2.0.50727.5485 14.86 MB (15,578,112 bytes)
4/21/2015 4:06 A
M
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50727_64\m
scorlib\fe6ac93181b40a571892e14bfb9d65f2\mscorlib.ni.dll
mscorjit
2.0.50727.5467 1.50 MB (1,574,496 bytes)
4/15/2015 2:00 P
M
Microsoft Corporation c:\windows\microsoft.net\framework64\v2.0.50727\

mscorjit.dll
System.ni
2.0.50727.5485 10.17 MB (10,661,376 bytes)
4/21/2015 4:11 A
M
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50727_64\s
ystem\c7fb84e825f6604d7f4684ab96cbd148\system.ni.dll
System.Drawing.ni
2.0.50727.5491 2.21 MB (2,320,384 bytes)
5/16/201
5 4:12 PM
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50
727_64\system.drawing\573f67082334b032270d6cbb535db5f2\system.drawing.ni.dll
System.Windows.Forms.ni 2.0.50727.5491 16.58 MB (17,385,472 bytes)
5/16/201
5 4:12 PM
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50
727_64\system.windows.forms\73bcdffde8c64d240a6155fb4c716ecd\system.windows.form
s.ni.dll
MOM.Implementation
3.5.4867.39780 95.00 KB (97,280 bytes) 4/29/2013 11:06
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\mom.implementation.dll
LOG.Foundation 3.5.4867.39732 31.00 KB (31,744 bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\log.
foundation.dll
LOG.Foundation.Private 3.5.4867.39742 24.50 KB (25,088 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\log.foundation.private.dll
LOG.Foundation.Implementation 3.5.4867.39766 46.50 KB (47,616 bytes) 4/29/201
3 11:05 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\log.foundation.implementation.dll
MOM.Foundation 3.5.4867.39743 5.50 KB (5,632 bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\mom.
foundation.dll
LOG.Foundation.Implementation.Private 3.5.4867.39743 20.00 KB (20,480 bytes)
4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\log.foundation.implementation.private.dll
System.Runtime.Remoting.ni
2.0.50727.5488 1,001.50 KB (1,025,536 bytes)
4/21/2015 4:16 AM
Microsoft Corporation c:\windows\assembly\nativeimages
_v2.0.50727_64\system.runtime.remo#\d514c68a67b7414bfcb93185288f9500\system.runt
ime.remoting.ni.dll
shfolder
6.1.7600.16385 10.00 KB (10,240 bytes) 7/13/2009 7:55 PM
Microsoft Corporation c:\windows\system32\shfolder.dll
System.Web.ni 2.0.50727.5491 14.66 MB (15,374,336 bytes)
5/16/2015 4:14 P
M
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50727_64\s
ystem.web\2ae4efe5ce2a43c367a4a84eadacf2be\system.web.ni.dll
CCC.Implementation
3.5.4867.39779 21.50 KB (22,016 bytes) 4/29/2013 11:06
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\ccc.implementation.dll
NEWAEM.Foundation
3.5.4867.39740 15.00 KB (15,360 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\newaem.foundation.dll
fdrespub
6.1.7600.16385 34.00 KB (34,816 bytes) 7/13/2009 7:35 PM
Microsoft Corporation c:\windows\system32\fdrespub.dll
httpapi 6.1.7601.17514 44.00 KB (45,056 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\httpapi.dll
ssdpsrv 6.1.7600.16385 188.50 KB (193,024 bytes)
7/13/2009 8:10 PM
Microsoft Corporation c:\windows\system32\ssdpsrv.dll
upnphost
6.1.7600.16385 345.50 KB (353,792 bytes)
7/13/2009 8:11 P
M
Microsoft Corporation c:\windows\system32\upnphost.dll
udhisapi
6.1.7600.16385 52.00 KB (53,248 bytes) 7/13/2009 8:10 PM
Microsoft Corporation c:\windows\system32\udhisapi.dll
pnrpsvc 6.1.7600.16385 319.50 KB (327,168 bytes)
7/13/2009 8:11 PM
Microsoft Corporation c:\windows\system32\pnrpsvc.dll
p2psvc 6.1.7600.16385 428.50 KB (438,784 bytes)
7/13/2009 8:11 PM
Microsoft Corporation c:\windows\system32\p2psvc.dll
p2pgraph
6.1.7600.16385 398.50 KB (408,064 bytes)
7/13/2009 8:11 P
M
Microsoft Corporation c:\windows\system32\p2pgraph.dll

drttransport
6.1.7600.16385 52.00 KB (53,248 bytes) 7/13/2009 8:11 PM
Microsoft Corporation c:\windows\system32\drttransport.dll
drt
6.1.7600.16385 287.00 KB (293,888 bytes)
7/13/2009 8:11 PM
Microsoft Corporation c:\windows\system32\drt.dll
ccc
3.5.0.0 292.00 KB (299,008 bytes)
1/25/2012 2:32 PM
Not Avai
lable c:\program files (x86)\ati technologies\ati.ace\core-static\ccc.exe
CLI.Foundation 3.5.4867.39740 60.00 KB (61,440 bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\cli.
foundation.dll
CLI.Foundation.XManifest
3.5.4867.39779 18.00 KB (18,432 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.foundation.xmanifest.dll
System.Xml.ni 2.0.50727.5485 6.65 MB (6,968,320 bytes)
4/21/2015 4:11 A
M
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50727_64\s
ystem.xml\d09a5530f1283b469957bf146e2f4d65\system.xml.ni.dll
CLI.Component.Runtime 3.5.4867.39747 60.00 KB (61,440 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\cli.component.runtime.dll
CLI.Component.Runtime.Shared.Private
3.5.4867.39744 37.50 KB (38,400 bytes)
4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.component.runtime.shared.private.dll
CLI.Foundation.Private 3.5.4867.39744 28.50 KB (29,184 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\cli.foundation.private.dll
CLI.Component.Runtime.Shared
3.5.4867.39744 5.50 KB (5,632 bytes) 4/29/201
3 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.component.runtime.shared.dll
aticccom
2.0.0.0 32.00 KB (32,768 bytes) 4/29/2013 11:04 PM
Not Avai
lable c:\program files (x86)\ati technologies\ati.ace\core-static\aticccom.dll
ADL.Foundation 2.0.3299.28586 135.50 KB (138,752 bytes)
4/2/2012 5:38 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\adl.
foundation.dll
AEM.Server
3.5.4867.39746 34.00 KB (34,816 bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\aem.
server.dll
AEM.Server.Shared
3.5.4867.39745 6.00 KB (6,144 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\aem.server.shared.dll
AEM.Plugin.Source.Kit.Server
3.5.4867.39786 44.50 KB (45,568 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\aem.plugin.source.kit.server.dll
CLI.Foundation.CoreAudioAPI
3.5.0.0 19.50 KB (19,968 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\cli.foundation.coreaudioapi.dll
AEM.Plugin.DPPE.Shared 3.5.4867.39780 6.50 KB (6,656 bytes) 4/29/2013 11:06
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\aem.plugin.dppe.shared.dll
AEM.Plugin.Hotkeys.Shared
3.5.4867.39740 7.00 KB (7,168 bytes) 4/29/201
3 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\aem.plugin.hotkeys.shared.dll
AEM.Plugin.WinMessages.Shared 3.5.4867.39745 6.50 KB (6,656 bytes) 4/29/201
3 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\aem.plugin.winmessages.shared.dll
DEM.Graphics.I0601
2.0.2573.17685 44.00 KB (45,056 bytes) 4/22/2009 12:13
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\dem.graphics.i0601.dll
DEM.Foundation 2.0.2573.17684 16.00 KB (16,384 bytes) 3/4/2010 12:27 AM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\dem.
foundation.dll
DEM.Graphics
3.5.4867.39747 6.50 KB (6,656 bytes) 4/29/2013 11:04 PM

Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\dem.


graphics.dll
atidemgx
2.0.4867.41203 432.00 KB (442,368 bytes)
4/29/2013 11:53
PM
Not Available c:\windows\system32\atidemgx.dll
DEM.Graphics.I1010
2.0.3932.21814 20.00 KB (20,480 bytes) 10/7/2010 1:07 P
M
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\dem.graphics.i1010.dll
System.Configuration.ni 2.0.50727.5483 1.26 MB (1,320,448 bytes)
5/16/201
5 4:11 PM
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50
727_64\system.configuration\601906ab23313d6f229101b907ab542c\system.configuratio
n.ni.dll
AEM.Plugin.REG.Shared 3.5.4867.39747 5.50 KB (5,632 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\aem.plugin.reg.shared.dll
CLI.Caste.Graphics.Runtime
3.5.4867.39751 304.00 KB (311,296 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.caste.graphics.runtime.dll
CLI.Caste.Graphics.Shared
3.5.4867.39742 188.00 KB (192,512 bytes)
4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.caste.graphics.shared.dll
DEM.Graphics.I0709
2.0.2743.23304 16.00 KB (16,384 bytes) 6/17/2009 5:27 A
M
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\dem.graphics.i0709.dll
AEM.Plugin.GD.Shared
3.5.4867.39748 5.50 KB (5,632 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\aem.plugin.gd.shared.dll
AEM.Actions.CCAA.Shared 3.5.4867.39744 8.50 KB (8,704 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\aem.actions.ccaa.shared.dll
ResourceManagement.Foundation.Private 3.5.4867.39748 8.50 KB (8,704 bytes)
4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\resourcemanagement.foundation.private.dll
DEM.Graphics.I0804
2.0.3015.27871 20.00 KB (20,480 bytes) 4/3/2008 4:29 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\dem.
graphics.i0804.dll
WindowsBase.ni 3.0.6920.5466 4.73 MB (4,962,816 bytes)
5/16/2015 4:11 P
M
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50727_64\w
indowsbase\adf8ca17fd2b748c7b4a6979f9a2b2f9\windowsbase.ni.dll
CLI.Aspect.DisplaysColour2.Graphics.Runtime
3.5.4867.37155 25.00 KB (25,600
bytes) 4/29/2013 9:38 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.displayscolour2.graphics.runtime.dll
CLI.Aspect.DisplaysOptions.Graphics.Runtime
3.5.4867.39771 28.00 KB (28,672
bytes) 4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.displaysoptions.graphics.runtime.dll
CLI.Caste.Graphics.Runtime.Shared.Private
3.5.4867.39767 8.50 KB (8,704 b
ytes) 4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.caste.graphics.runtime.shared.private.dll
CLI.Aspect.DisplaysOptions.Graphics.Shared
3.5.4867.39771 20.00 KB (20,480
bytes) 4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.displaysoptions.graphics.shared.dll
CLI.Aspect.DeviceCRT.Graphics.Runtime 3.5.4867.39770 44.00 KB (45,056 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicecrt.graphics.runtime.dll
CLI.Aspect.DeviceCRT.Graphics.Shared
3.5.4867.39761 52.00 KB (53,248 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicecrt.graphics.shared.dll
DEM.Graphics.I0912
2.0.2743.23304 16.00 KB (16,384 bytes) 12/8/2009 6:49 A
M
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\dem.graphics.i0912.dll
DEM.Graphics.I0706
2.0.2743.23304 16.00 KB (16,384 bytes) 8/9/2007 4:58 PM

Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\dem.


graphics.i0706.dll
DEM.Graphics.I0712
2.0.3455.26939 16.00 KB (16,384 bytes) 6/17/2009 10:24
AM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\dem.graphics.i0712.dll
CLI.Aspect.DeviceProperty.Graphics.Shared
3.5.4867.39758 48.00 KB (49,152
bytes) 4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.deviceproperty.graphics.shared.dll
CLI.Aspect.DeviceProperty.Graphics.Runtime
3.5.4867.39769 42.50 KB (43,520
bytes) 4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.deviceproperty.graphics.runtime.dll
CLI.Aspect.DeviceLCD.Graphics.Runtime 3.5.4867.39773 36.00 KB (36,864 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicelcd.graphics.runtime.dll
CLI.Aspect.DeviceLCD.Graphics.Shared
3.5.4867.39761 32.00 KB (32,768 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicelcd.graphics.shared.dll
CLI.Aspect.DeviceDFP.Graphics.Runtime 3.5.4867.39770 64.00 KB (65,536 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicedfp.graphics.runtime.dll
CLI.Aspect.DeviceDFP.Graphics.Shared
3.5.4867.39758 52.00 KB (53,248 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicedfp.graphics.shared.dll
CLI.Aspect.CustomFormats.Graphics.Shared
3.5.4867.39758 28.00 KB (28,672
bytes) 4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.customformats.graphics.shared.dll
DEM.Graphics.I0812
2.0.3286.19924 16.00 KB (16,384 bytes) 12/30/2008 11:04
AM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\dem.graphics.i0812.dll
DEM.Graphics.I0805
2.0.3057.24943 16.00 KB (16,384 bytes) 4/22/2009 12:13
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\dem.graphics.i0805.dll
CLI.Aspect.Radeon3D.Graphics.Runtime
3.5.4867.39774 108.00 KB (110,592 bytes
)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.radeon3d.graphics.runtime.dll
CLI.Aspect.Radeon3D.Graphics.Shared
3.5.4867.39773 80.00 KB (81,920 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.radeon3d.graphics.shared.dll
DEM.Graphics.I1011
2.0.3961.23947 16.00 KB (16,384 bytes) 11/5/2010 2:18 P
M
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\dem.graphics.i1011.dll
CLI.Aspect.MMVideo.Graphics.Runtime
3.5.4867.37157 108.00 KB (110,592 bytes
)
4/29/2013 9:38 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.mmvideo.graphics.runtime.dll
CLI.Aspect.PowerPlayDPPE.Graphics.Runtime
3.5.4867.39780 35.50 KB (36,352
bytes) 4/29/2013 11:06 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.powerplaydppe.graphics.runtime.dll
CLI.Aspect.PowerPlayDPPE.Graphics.Shared
3.5.4867.39775 18.00 KB (18,432
bytes) 4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.powerplaydppe.graphics.shared.dll
CLI.Aspect.TransCode.Graphics.Runtime 3.5.4867.39799 13.50 KB (13,824 bytes)
4/29/2013 11:06 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.transcode.graphics.runtime.dll
CLI.Aspect.TransCode.Graphics.Shared
3.5.4867.39781 44.00 KB (45,056 bytes)
4/29/2013 11:06 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.transcode.graphics.shared.dll
atixclib
1.0.0.0 7.00 KB (7,168 bytes) 1/20/2009 1:51 PM
Not Avai
lable c:\program files (x86)\ati technologies\ati.ace\core-static\atixclib.dll
CLI.Aspect.AMDHome.Graphics.Runtime
3.5.4867.39852 14.00 KB (14,336 bytes)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati technologies\

ati.ace\core-static\cli.aspect.amdhome.graphics.runtime.dll
CLI.Aspect.AMDHome.Graphics.Shared
3.5.4867.39851 8.00 KB (8,192 bytes)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.amdhome.graphics.shared.dll
CLI.Aspect.DeviceCV.Graphics.Runtime
3.5.4867.39773 68.00 KB (69,632 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicecv.graphics.runtime.dll
CLI.Aspect.DeviceCV.Graphics.Shared
3.5.4867.39759 40.00 KB (40,960 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicecv.graphics.shared.dll
CLI.Aspect.DeviceTV.Graphics.Runtime
3.5.4867.39776 76.00 KB (77,824 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicetv.graphics.runtime.dll
CLI.Aspect.DeviceTV.Graphics.Shared
3.5.4867.39760 64.00 KB (65,536 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.devicetv.graphics.shared.dll
CLI.Aspect.HotkeysHandling.Graphics.Runtime
3.5.4867.39764 20.00 KB (20,480
bytes) 4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.hotkeyshandling.graphics.runtime.dll
CLI.Aspect.HotkeysHandling.Graphics.Shared
3.5.4867.39748 20.00 KB (20,480
bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.hotkeyshandling.graphics.shared.dll
CLI.Aspect.UpdateNotification.Graphics.Runtime 3.5.4867.39850 16.00 KB (16,384
bytes) 4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.updatenotification.graphics.runtime.dll
CLI.Aspect.UpdateNotification.Graphics.Shared 3.5.4867.39849 12.00 KB (12,288
bytes) 4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.updatenotification.graphics.shared.dll
CLI.Foundation.Client 3.5.4867.39754 296.00 KB (303,104 bytes)
4/29/201
3 11:05 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.foundation.client.dll
PresentationCore.ni
3.0.6920.5466 15.79 MB (16,559,616 bytes)
5/16/201
5 4:12 PM
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50
727_64\presentationcore\bdb5fec9a6a9277fc5699c3b16130df4\presentationcore.ni.dll
PresentationFramework.ni
3.0.6920.5466 18.31 MB (19,198,464 bytes)
5/16/2015 4:13 PM
Microsoft Corporation c:\windows\assembly\nativeimages
_v2.0.50727_64\presentationframewo#\135659fb800614be82f4af1beeb68923\presentatio
nframework.ni.dll
wpfgfx_v0300
3.0.6920.5466 2.15 MB (2,256,032 bytes)
5/16/2015 3:16 P
M
Microsoft Corporation c:\windows\microsoft.net\framework64\v3.0\wpf\wp
fgfx_v0300.dll
CLI.Caste.Fuel.Runtime 3.5.4867.39801 20.00 KB (20,480 bytes) 4/29/2013 11:06
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\cli.caste.fuel.runtime.dll
CLI.Caste.Fuel.Shared 3.5.4867.39800 10.50 KB (10,752 bytes) 4/29/2013 11:06
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\cli.caste.fuel.shared.dll
Fuel.Foundation 3.5.0.0 13.00 KB (13,312 bytes) 4/29/2013 11:06 PM
Not Avai
lable c:\program files (x86)\ati technologies\ati.ace\core-static\fuel.foundat
ion.dll
Fuel.Implementation
1.0.0.0 36.50 KB (37,376 bytes) 4/29/2013 11:25 PM
Not Available c:\program files\ati technologies\ati.ace\fuel\fuel.implementati
on.dll
Fuel.Proxy.Native
1.0.0.0 101.00 KB (103,424 bytes)
4/29/2013 11:25
PM
Not Available c:\program files\ati technologies\ati.ace\fuel\fuel.prox
y.native.dll
LOCALIZATION.Foundation.Private 3.5.4867.39733 480.00 KB (491,520 bytes)
4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\localization.foundation.private.dll
Localization.Foundation.Implementation.default_Localization
3.5.0.0 316.00 K

B (323,584 bytes)
4/29/2013 11:04 PM
Not Available c:\program files
(x86)\ati technologies\ati.ace\core-static\localization.foundation.implementati
on.default_localization.dll
CLI.Aspect.DPPE.Fuel.Runtime
3.5.4867.39803 36.00 KB (36,864 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.dppe.fuel.runtime.dll
CLI.Aspect.DPPE.Fuel.Shared
3.5.4867.39803 13.00 KB (13,312 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.dppe.fuel.shared.dll
CLI.Aspect.Fets.Fuel.Runtime
3.5.4867.39802 15.50 KB (15,872 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.fets.fuel.runtime.dll
CLI.Aspect.Fets.Fuel.Shared
3.5.4867.39802 11.50 KB (11,776 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.fets.fuel.shared.dll
CLI.Aspect.WiFi.Fuel.Runtime
3.5.4867.39802 12.50 KB (12,800 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.wifi.fuel.runtime.dll
CLI.Aspect.WiFi.Fuel.Shared
3.5.4867.39802 7.50 KB (7,680 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.wifi.fuel.shared.dll
CLI.Aspect.CPUPStates.Fuel.Runtime
3.5.4867.39803 31.50 KB (32,256 bytes)
4/29/2013 11:06 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.cpupstates.fuel.runtime.dll
CLI.Aspect.CPUPStates.Fuel.Shared
3.5.4867.39803 13.50 KB (13,824 bytes)
4/29/2013 11:06 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.cpupstates.fuel.shared.dll
CLI.Aspect.CPUOverDrive.Fuel.Runtime
3.5.4867.39854 19.00 KB (19,456 bytes)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.cpuoverdrive.fuel.runtime.dll
CLI.Aspect.CPUOverDrive.Fuel.Shared
3.5.4867.39853 19.00 KB (19,456 bytes)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.cpuoverdrive.fuel.shared.dll
CLI.Caste.Platform.Runtime
3.5.4867.39856 11.00 KB (11,264 bytes) 4/29/201
3 11:08 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.platform.runtime.dll
CLI.Caste.Platform.Shared
3.5.4867.39854 9.00 KB (9,216 bytes) 4/29/201
3 11:08 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.platform.shared.dll
CLI.Aspect.AMDOverDrive.Platform.Runtime
3.5.4867.39856 15.00 KB (15,360
bytes) 4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.amdoverdrive.platform.runtime.dll
CLI.Aspect.AMDOverDrive.Platform.Shared 3.5.4867.39788 12.50 KB (12,800 bytes)
4/29/2013 11:06 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.amdoverdrive.platform.shared.dll
CLI.Aspect.OverDrive5.Graphics.Shared 3.5.4867.39788 49.50 KB (50,688 bytes)
4/29/2013 11:06 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.overdrive5.graphics.shared.dll
CLI.Caste.HydraVision.Runtime 3.5.4867.39789 11.50 KB (11,776 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.hydravision.runtime.dll
CLI.Caste.HydraVision.Shared
3.5.4867.39789 8.50 KB (8,704 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.hydravision.shared.dll
APM.Server
3.5.4867.39746 64.50 KB (66,048 bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\apm.
server.dll
APM.Foundation 3.5.4867.39741 24.00 KB (24,576 bytes) 4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-static\apm.
foundation.dll

CLI.Component.Runtime.Extension.EEU
3.5.4867.39745 7.00 KB (7,168 bytes)
4/29/2013 11:04 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.component.runtime.extension.eeu.dll
AEM.Plugin.EEU.Shared 3.5.4867.39745 5.50 KB (5,632 bytes) 4/29/2013 11:04
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\aem.plugin.eeu.shared.dll
CLI.Component.Dashboard 3.5.0.0 372.00 KB (380,928 bytes)
4/29/2013 11:05
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\cli.component.dashboard.dll
CLI.Component.Client.Shared.Private
3.5.4867.39751 36.00 KB (36,864 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.component.client.shared.private.dll
CLI.Component.Client.Shared
3.5.4867.39741 8.00 KB (8,192 bytes) 4/29/201
3 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.component.client.shared.dll
CLI.Component.Dashboard.Shared 3.5.4867.39741 32.00 KB (32,768 bytes) 4/29/201
3 11:04 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.component.dashboard.shared.dll
CLI.Component.Dashboard.Shared.Private 3.5.4867.39755 1.33 MB (1,395,200 bytes
)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.component.dashboard.shared.private.dll
CLI.Caste.Graphics.Dashboard
3.5.4867.39763 168.00 KB (172,032 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.caste.graphics.dashboard.dll
CLI.Caste.Graphics.Dashboard.Shared
3.5.4867.39760 984.00 KB (1,007,616 byt
es)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.caste.graphics.dashboard.shared.dll
CLI.Aspect.AMDHome.Graphics.Dashboard 3.5.4867.39852 27.50 KB (28,160 bytes)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.amdhome.graphics.dashboard.dll
CLI.Aspect.InfoCentre.Graphics.Dashboard
3.5.4867.39767 56.00 KB (57,344
bytes) 4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.infocentre.graphics.dashboard.dll
CLI.Aspect.DisplaysManager2.Graphics.Dashboard 3.5.4867.39824 237.00 KB (242,6
88 bytes)
4/29/2013 11:07 PM
Not Available c:\program files (x86)\a
ti technologies\ati.ace\core-static\cli.aspect.displaysmanager2.graphics.dashboa
rd.dll
CLI.Aspect.DisplaysManager.Graphics.Dashboard 3.5.0.0 431.50 KB (441,856 bytes
)
4/29/2013 11:07 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.displaysmanager.graphics.dashboard.dll
CLI.Aspect.CrossDisplay.Graphics.Dashboard
1.0.0.0 360.50 KB (369,152 bytes
)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.crossdisplay.graphics.dashboard.dll
CLI.Aspect.DisplaysOptions.Graphics.Dashboard 3.5.0.0 36.00 KB (36,864 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.displaysoptions.graphics.dashboard.dll
CLI.Aspect.DeviceCRT.Graphics.Dashboard 3.5.4867.39823 372.00 KB (380,928 bytes
)
4/29/2013 11:07 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.devicecrt.graphics.dashboard.dll
CLI.Aspect.DeviceLCD.Graphics.Dashboard 3.5.4867.39844 292.00 KB (299,008 bytes
)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.devicelcd.graphics.dashboard.dll
CLI.Aspect.DeviceDFP.Graphics.Dashboard 3.5.4867.39847 384.00 KB (393,216 bytes
)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.devicedfp.graphics.dashboard.dll
CLI.Aspect.Radeon3D.Graphics.Dashboard 3.5.4867.39813 2.29 MB (2,400,256 bytes
)
4/29/2013 11:07 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.radeon3d.graphics.dashboard.dll
CLI.Aspect.MultiVPU2.Graphics.Shared
3.5.4867.39770 24.00 KB (24,576 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\

ati.ace\core-static\cli.aspect.multivpu2.graphics.shared.dll
CLI.Aspect.TransCode.Graphics.Dashboard 3.5.4867.39805 156.50 KB (160,256 bytes
)
4/29/2013 11:06 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.transcode.graphics.dashboard.dll
CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard
3.5.4867.39822 51.50 KB (52,736
bytes) 4/29/2013 11:07 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.powerplaydppe.graphics.dashboard.dll
CLI.Aspect.UpdateNotification.Graphics.Dashboard
3.5.0.0 21.00 KB (21,504
bytes) 4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati techn
ologies\ati.ace\core-static\cli.aspect.updatenotification.graphics.dashboard.dll
CLI.Aspect.Audio.Graphics.Dashboard
3.5.0.0 43.50 KB (44,544 bytes) 4/29/201
3 11:08 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.audio.graphics.dashboard.dll
CLI.Caste.Fuel.Dashboard
3.5.4867.39801 8.50 KB (8,704 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.fuel.dashboard.dll
CLI.Aspect.User.Fuel.Dashboard 3.5.4867.39831 1.20 MB (1,260,032 bytes)
4/29/2013 11:07 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.user.fuel.dashboard.dll
CLI.Aspect.Fets.Fuel.Dashboard 3.5.4867.39840 25.50 KB (26,112 bytes) 4/29/201
3 11:08 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.fets.fuel.dashboard.dll
CLI.Aspect.WiFi.Fuel.Dashboard 3.5.4867.39810 21.00 KB (21,504 bytes) 4/29/201
3 11:07 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.wifi.fuel.dashboard.dll
CLI.Aspect.DPPE.Fuel.Dashboard 3.5.4867.39826 47.50 KB (48,640 bytes) 4/29/201
3 11:07 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.dppe.fuel.dashboard.dll
CLI.Aspect.CPUPStates.Fuel.Dashboard
3.5.4867.39836 29.00 KB (29,696 bytes)
4/29/2013 11:07 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.cpupstates.fuel.dashboard.dll
CLI.Aspect.CPUOverDrive.Fuel.Dashboard 3.5.0.0 36.50 KB (37,376 bytes) 4/29/201
3 11:08 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.aspect.cpuoverdrive.fuel.dashboard.dll
CLI.Caste.Platform.Dashboard
3.5.4867.39856 8.00 KB (8,192 bytes) 4/29/201
3 11:08 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.platform.dashboard.dll
CLI.Aspect.AMDOverDrive.Platform.Dashboard
3.5.0.0 39.50 KB (40,448 bytes)
4/29/2013 11:08 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.amdoverdrive.platform.dashboard.dll
CLI.Caste.HydraVision.Dashboard 3.5.4867.39790 8.50 KB (8,704 bytes) 4/29/201
3 11:06 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\
core-static\cli.caste.hydravision.dashboard.dll
d3d9
6.1.7601.17514 1.97 MB (2,067,456 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\d3d9.dll
d3d8thk 6.1.7600.16385 12.00 KB (12,288 bytes) 7/13/2009 7:41 PM
Microsof
t Corporation c:\windows\system32\d3d8thk.dll
atiu9p64
8.14.1.6264
49.95 KB (51,152 bytes) 4/30/2013 12:19 AM
Advanced Micro Devices, Inc.
c:\windows\system32\atiu9p64.dll
atiumd64
7.14.10.911
7.18 MB (7,528,440 bytes)
4/30/2013 12:19
AM
Advanced Micro Devices, Inc.
c:\windows\system32\atiumd64.dll
atiumd6a
8.14.10.359
4.09 MB (4,292,192 bytes)
4/30/2013 12:19
AM
Advanced Micro Devices, Inc.
c:\windows\system32\atiumd6a.dll
PresentationFramework.Aero.ni 3.0.6920.4902 452.50 KB (463,360 bytes)
5/16/2015 4:15 PM
Microsoft Corporation c:\windows\assembly\nativeimages
_v2.0.50727_64\presentationframewo#\e8e04dd78b1dfc19367d6e01d22454df\presentatio
nframework.aero.ni.dll
branding
2.0.2477.16262 16.00 KB (16,384 bytes) 6/18/2013 3:49 PM
Not Available c:\program files (x86)\ati technologies\ati.ace\branding\brandin
g.dll

CLI.Component.Dashboard.ProfileManager2 3.5.4867.39815 60.00 KB (61,440 bytes)


4/29/2013 11:07 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.component.dashboard.profilemanager2.dll
System.Core.ni 3.5.30729.5420 3.16 MB (3,315,200 bytes)
5/16/2015 4:19 P
M
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50727_64\s
ystem.core\13f9d3477bd54c5913d7040ec4f86fa6\system.core.ni.dll
ResourceManagement.Foundation.Implementation
3.5.4867.39798 171.00 KB (175,1
04 bytes)
4/29/2013 11:06 PM
Not Available c:\program files (x86)\a
ti technologies\ati.ace\core-static\resourcemanagement.foundation.implementation
.dll
Microsoft.WindowsAPICodePack.Shell
1.0.0.0 478.50 KB (489,984 bytes)
4/29/2013 11:03 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\microsoft.windowsapicodepack.shell.dll
Microsoft.WindowsAPICodePack
1.0.0.0 81.00 KB (82,944 bytes) 4/29/2013 11:03
PM
Not Available c:\program files (x86)\ati technologies\ati.ace\core-sta
tic\microsoft.windowsapicodepack.dll
presentationnative_v0300
3.0.6920.4902 1.11 MB (1,165,664 bytes)
7/13/2009 9:01 PM
Microsoft Corporation c:\windows\system32\presentation
native_v0300.dll
WindowsFormsIntegration.ni
3.0.6920.4902 321.50 KB (329,216 bytes)
5/16/2015 4:21 PM
Microsoft Corporation c:\windows\assembly\nativeimages
_v2.0.50727_64\windowsformsintegra#\a3268348598487bedf029ad98b581f6f\windowsform
sintegration.ni.dll
mshtml 11.0.9600.17801 23.81 MB (24,971,776 bytes)
5/13/2015 3:42 AM
Microsoft Corporation c:\windows\system32\mshtml.dll
UIAutomationProvider.ni 3.0.6920.4902 118.00 KB (120,832 bytes)
5/16/201
5 4:12 PM
Microsoft Corporation c:\windows\assembly\nativeimages_v2.0.50
727_64\uiautomationprovider\a99804d6009c9fc869ae539f3a83e468\uiautomationprovide
r.ni.dll
msctfui 6.1.7600.16385 111.50 KB (114,176 bytes)
7/13/2009 7:39 PM
Microsoft Corporation c:\windows\system32\msctfui.dll
CLI.Aspect.MMVideo.Graphics.Shared
3.5.4867.39769 80.00 KB (81,920 bytes)
4/29/2013 11:05 PM
Not Available c:\program files (x86)\ati technologies\
ati.ace\core-static\cli.aspect.mmvideo.graphics.shared.dll
CLI.Aspect.DeviceProperty.Graphics.Dashboard.Shared
3.5.4867.39807 516.00 K
B (528,384 bytes)
4/29/2013 11:06 PM
Not Available c:\program files
(x86)\ati technologies\ati.ace\core-static\cli.aspect.deviceproperty.graphics.d
ashboard.shared.dll
CLI.Aspect.CustomFormatSelection.Graphics.Dashboard.Shared.Private
3.5.4867
.39781 20.00 KB (20,480 bytes) 4/29/2013 11:06 PM
Not Available c:\progr
am files (x86)\ati technologies\ati.ace\core-static\cli.aspect.customformatselec
tion.graphics.dashboard.shared.private.dll
wmpnetwk
12.0.7601.17514 1.45 MB (1,525,248 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\program files\windows media player\wmpnetwk.e
xe
wmdrmdev
12.0.7601.17514 621.50 KB (636,416 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\wmdrmdev.dll
drmv2clt
11.0.7601.18741 1.15 MB (1,202,176 bytes)
4/17/2015 9:57 A
M
Microsoft Corporation c:\windows\system32\drmv2clt.dll
mfplat 12.0.7601.18741 422.00 KB (432,128 bytes)
4/17/2015 9:57 AM
Microsoft Corporation c:\windows\system32\mfplat.dll
upnp
6.1.7601.17514 258.00 KB (264,192 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\upnp.dll
wmp
12.0.7601.18741 13.96 MB (14,632,960 bytes)
4/17/2015 9:57 AM
Microsoft Corporation c:\windows\system32\wmp.dll
wmploc 12.0.7601.18741 12.04 MB (12,625,920 bytes)
4/17/2015 9:57 AM
Microsoft Corporation c:\windows\system32\wmploc.dll
wmpps 12.0.7601.17514 470.00 KB (481,280 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\wmpps.dll
wmpmde 12.0.7601.17514 1,000.50 KB (1,024,512 bytes) 4/15/2015 12:28 PM

Microsoft Corporation c:\windows\system32\wmpmde.dll


blackbox
11.0.7601.18741 822.50 KB (842,240 bytes)
4/17/2015 9:57 A
M
Microsoft Corporation c:\windows\system32\blackbox.dll
winsatapi
6.1.7601.17514 489.50 KB (501,248 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\winsatapi.dll
msmpeg2enc
6.1.7601.17514 1.11 MB (1,160,192 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\msmpeg2enc.dll
devenum 6.6.7600.16385 74.00 KB (75,776 bytes) 7/13/2009 8:18 PM
Microsof
t Corporation c:\windows\system32\devenum.dll
msdmo 6.6.7601.17514 35.00 KB (35,840 bytes) 4/15/2015 12:28 PM
Microsof
t Corporation c:\windows\system32\msdmo.dll
trustedinstaller
6.1.7601.17514 189.50 KB (194,048 bytes)
4/15/201
5 12:28 PM
Microsoft Corporation c:\windows\servicing\trustedinstaller.ex
e
cbscore 6.1.7601.18766 953.50 KB (976,384 bytes)
5/13/2015 3:38 AM
Microsoft Corporation c:\windows\winsxs\amd64_microsoft-windows-servicingstack
_31bf3856ad364e35_6.1.7601.18766_none_675144b3de10d6f7\cbscore.dll
dpx
6.1.7601.17514 390.50 KB (399,872 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\dpx.dll
wcp
6.1.7601.18766 2.63 MB (2,760,704 bytes)
5/13/2015 3:38 AM
Microsoft Corporation c:\windows\winsxs\amd64_microsoft-windows-servicingstack
_31bf3856ad364e35_6.1.7601.18766_none_675144b3de10d6f7\wcp.dll
drupdate
6.1.7601.18766 199.00 KB (203,776 bytes)
5/13/2015 3:38 A
M
Microsoft Corporation c:\windows\winsxs\amd64_microsoft-windows-servic
ingstack_31bf3856ad364e35_6.1.7601.18766_none_675144b3de10d6f7\drupdate.dll
srclient
6.1.7601.18839 49.00 KB (50,176 bytes) 5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\srclient.dll
spp
6.1.7601.17514 238.50 KB (244,224 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\spp.dll
wrpint 6.1.7601.18766 59.50 KB (60,928 bytes) 5/13/2015 3:38 AM
Microsof
t Corporation c:\windows\winsxs\amd64_microsoft-windows-servicingstack_31bf385
6ad364e35_6.1.7601.18766_none_675144b3de10d6f7\wrpint.dll
sxsstore
6.1.7600.16385 26.50 KB (27,136 bytes) 7/13/2009 7:26 PM
Microsoft Corporation c:\windows\system32\sxsstore.dll
cbsapi 6.1.7600.16385 19.00 KB (19,456 bytes) 7/13/2009 7:35 PM
Microsof
t Corporation c:\windows\servicing\cbsapi.dll
presentationfontcache 3.0.6920.5011 41.85 KB (42,856 bytes) 4/15/2015 12:29
PM
Microsoft Corporation c:\windows\microsoft.net\framework64\v3.0\wpf\pr
esentationfontcache.exe
System.ServiceProcess.ni
2.0.50727.5483 288.50 KB (295,424 bytes)
5/16/2015 4:15 PM
Microsoft Corporation c:\windows\assembly\nativeimages
_v2.0.50727_64\system.serviceproce#\ce4daf934dbba7597ecf5e4d33ef8a7b\system.serv
iceprocess.ni.dll
iviRegMgr
1.0.4.0 109.52 KB (112,152 bytes)
1/4/2007 9:48 PM
InterVideo
c:\program files (x86)\common files\intervideo\regmgr\iviregmgr.
exe
mpsvc 6.1.7601.18170 988.00 KB (1,011,712 bytes)
4/15/2015 2:02 PM
Microsoft Corporation c:\program files\windows defender\mpsvc.dll
mpclient
6.1.7601.18170 558.50 KB (571,904 bytes)
4/15/2015 2:02 P
M
Microsoft Corporation c:\program files\windows defender\mpclient.dll
mprtp 6.1.7600.16385 195.50 KB (200,192 bytes)
7/13/2009 7:53 PM
Microsoft Corporation c:\program files\windows defender\mprtp.dll
tdh
6.1.7601.18839 858.50 KB (879,104 bytes)
5/13/2015 3:39 AM
Microsoft Corporation c:\windows\system32\tdh.dll
mpengine
1.1.11701.0
11.65 MB (12,214,312 bytes)
5/29/2015 7:52 P
M
Microsoft Corporation c:\programdata\microsoft\windows defender\defini
tion updates\{6b8ff641-2f2b-4d09-a8c2-63faeea9a191}\mpengine.dll
offreg.4432
6.3.9600.16384 74.11 KB (75,888 bytes) 5/31/2015 4:20 AM
Microsoft Corporation c:\programdata\microsoft\windows defender\definition upd
ates\{6b8ff641-2f2b-4d09-a8c2-63faeea9a191}\offreg.4432.dll

bfggameservices 2.0.0.8 239.81 KB (245,568 bytes)


9/28/2010 1:32 PM
Not Available c:\program files (x86)\bfgclient\bfggameservices.exe
HiddenExpedition_TheCrownOfSolomonCE
Not Available 4.51 MB (4,729,120 bytes
)
9/19/2014 12:50 PM
Not Available c:\program files (x86)\hidden ex
pedition - the crown of solomon collectors edition\hiddenexpedition_thecrownofso
lomonce.exe
iexplore
11.0.9600.17801 794.70 KB (813,776 bytes)
5/13/2015 3:43 A
M
Microsoft Corporation c:\program files\internet explorer\iexplore.exe
ieshims 11.0.9600.17801 374.00 KB (382,976 bytes)
5/13/2015 3:42 AM
Microsoft Corporation c:\program files\internet explorer\ieshims.dll
comdlg32
6.1.7601.17514 580.50 KB (594,432 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\comdlg32.dll
ieui
11.0.9600.17801 619.00 KB (633,856 bytes)
5/13/2015 3:43 AM
Microsoft Corporation c:\windows\system32\ieui.dll
oleacc 7.0.0.0 324.00 KB (331,776 bytes)
4/15/2015 3:09 PM
Microsof
t Corporation c:\windows\system32\oleacc.dll
wpc
1.0.0.1 431.50 KB (441,856 bytes)
4/17/2015 9:59 AM
Microsof
t Corporation c:\windows\system32\wpc.dll
iexplore
11.0.9600.17801 796.20 KB (815,304 bytes)
5/13/2015 3:43 A
M
Microsoft Corporation c:\program files (x86)\internet explorer\iexplor
e.exe
msinfo32
6.1.7601.17514 370.00 KB (378,880 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\msinfo32.exe
mfc42u 6.6.8064.0
1.30 MB (1,359,872 bytes)
4/15/2015 2:57 PM
Microsoft Corporation c:\windows\system32\mfc42u.dll
odbc32 6.1.7601.17514 704.00 KB (720,896 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\odbc32.dll
odbcint 6.1.7600.16385 224.00 KB (229,376 bytes)
7/13/2009 8:28 PM
Microsoft Corporation c:\windows\system32\odbcint.dll
thumbcache
6.1.7601.17514 110.00 KB (112,640 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\thumbcache.dll
ehstorapi
6.1.7601.17514 141.50 KB (144,896 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\ehstorapi.dll
wmiprvse
6.1.7601.17514 364.00 KB (372,736 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\wbem\wmiprvse.exe
wmiperfclass
6.1.7600.16385 133.00 KB (136,192 bytes)
7/13/2009 7:31 P
M
Microsoft Corporation c:\windows\system32\wbem\wmiperfclass.dll
pdh
6.1.7601.17514 293.00 KB (300,032 bytes)
4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\pdh.dll
cimwin32
6.1.7601.17514 1.96 MB (2,058,240 bytes)
4/15/2015 12:28
PM
Microsoft Corporation c:\windows\system32\wbem\cimwin32.dll
winbrand
6.1.7600.16385 16.00 KB (16,384 bytes) 7/13/2009 7:30 PM
Microsoft Corporation c:\windows\system32\winbrand.dll
security
6.1.7600.16385 5.00 KB (5,120 bytes) 7/13/2009 7:50 PM
Microsoft Corporation c:\windows\system32\security.dll
browcli 6.1.7601.17887 58.00 KB (59,392 bytes) 4/15/2015 2:38 PM
Microsof
t Corporation c:\windows\system32\browcli.dll
schedcli
6.1.7601.17514 23.50 KB (24,064 bytes) 4/15/2015 12:28 PM
Microsoft Corporation c:\windows\system32\schedcli.dll
wmi
6.1.7601.17787 5.00 KB (5,120 bytes) 4/15/2015 2:08 PM
Microsof
t Corporation c:\windows\system32\wmi.dll
ntevt 6.1.7601.17514 259.50 KB (265,728 bytes)
4/15/2015 12:29 PM
Microsoft Corporation c:\windows\system32\wbem\ntevt.dll
provthrd
6.1.7600.16385 300.00 KB (307,200 bytes)
7/13/2009 7:47 P
M
Microsoft Corporation c:\windows\system32\provthrd.dll
msvcirt 7.0.7600.16385 76.50 KB (78,336 bytes) 7/13/2009 7:18 PM
Microsof
t Corporation c:\windows\system32\msvcirt.dll
tapi32 6.1.7600.16385 243.00 KB (248,832 bytes)
7/13/2009 8:41 PM
Microsoft Corporation c:\windows\system32\tapi32.dll
unidrvui
0.3.7601.17514 863.50 KB (884,224 bytes)
7/13/2009 9:18 P

M
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\unidrvui
.dll
mxdwdui 0.3.7601.17514 216.00 KB (221,184 bytes)
7/13/2009 9:19 PM
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\mxdwdui.dll
fxsui 6.1.7601.17514 156.50 KB (160,256 bytes)
7/13/2009 8:36 PM
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\fxsui.dll
fxswzrd 6.1.7601.17514 153.00 KB (156,672 bytes)
7/13/2009 8:36 PM
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\fxswzrd.dll
fxstiff 6.1.7601.17514 424.50 KB (434,688 bytes)
7/13/2009 8:35 PM
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\fxstiff.dll
fxsres 6.1.7601.17514 6.26 MB (6,566,400 bytes)
7/13/2009 9:19 PM
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\fxsres.dll
fxsapi 6.1.7601.17514 608.50 KB (623,104 bytes)
7/13/2009 8:35 PM
Microsoft Corporation c:\windows\system32\spool\drivers\x64\3\fxsapi.dll
[Services]
Display Name
Name
State Start Mode
Service Type
Path
Error Co
ntrol Start Name
Tag ID
Adobe Flash Player Update Service
AdobeFlashPlayerUpdateSvc
Stopped
Manual Own Process
c:\windows\syswow64\macromed\flash\flashplayerupdateserv
ice.exe Normal LocalSystem
0
Application Experience AeLookupSvc
Running Manual Share Process c:\windo
ws\system32\svchost.exe -k netsvcs
Normal localSystem
0
Application Layer Gateway Service
ALG
Stopped Manual Own Process
c:\windows\system32\alg.exe
Normal NT AUTHORITY\LocalService
0
AMD External Events Utility
AMD External Events Utility
Running Auto
Own Process
c:\windows\system32\atiesrxx.exe
Normal LocalSystem
0
AMD FUEL Service
AMD FUEL Service
Running Auto
Own Process
c:\program files\ati technologies\ati.ace\fuel\fuel.service.exe /launchservice
Normal LocalSystem
0
Application Identity
AppIDSvc
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k localserviceandnoimpersonation
Normal NT Autho
rity\LocalService
0
Application Information Appinfo Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k netsvcs
Normal LocalSystem
0
Windows Audio Endpoint Builder AudioEndpointBuilder
Running Auto
Share Pr
ocess c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal
LocalSystem
0
Windows Audio AudioSrv
Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k localservicenetworkrestricted
Normal NT AUTHORITY\Loc
alService
0
ActiveX Installer (AxInstSV)
AxInstSV
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k axinstsvgroup
Normal LocalSystem
0
BitLocker Drive Encryption Service
BDESVC Stopped Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal localSystem
0
Base Filtering Engine BFE
Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k localservicenonetwork
Normal NT AUTHORITY\LocalServic
e
0
Background Intelligent Transfer Service BITS
Running Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal LocalSystem
0
Computer Browser
Browser Running Manual Share Process c:\windows\syste
m32\svchost.exe -k netsvcs
Normal LocalSystem
0
Bluetooth Support Service
bthserv Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k bthsvcs
Normal NT AUTHORITY\LocalService
0
Certificate Propagation CertPropSvc
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k netsvcs
Normal LocalSystem
0

Microsoft .NET Framework NGEN v2.0.50727_X86


clr_optimization_v2.0.50727_32
Stopped Disabled
Own Process
c:\windows\microsoft.net\framework\v2.0.
50727\mscorsvw.exe
Ignore LocalSystem
0
Microsoft .NET Framework NGEN v2.0.50727_X64
clr_optimization_v2.0.50727_64
Stopped Disabled
Own Process
c:\windows\microsoft.net\framework64\v2.
0.50727\mscorsvw.exe
Ignore LocalSystem
0
Microsoft .NET Framework NGEN v4.0.30319_X86
clr_optimization_v4.0.30319_32
Stopped Auto
Own Process
c:\windows\microsoft.net\framework\v4.0.30319\ms
corsvw.exe
Ignore LocalSystem
0
Microsoft .NET Framework NGEN v4.0.30319_X64
clr_optimization_v4.0.30319_64
Stopped Auto
Own Process
c:\windows\microsoft.net\framework64\v4.0.30319\
mscorsvw.exe
Ignore LocalSystem
0
COM+ System Application COMSysApp
Stopped Manual Own Process
c:\windo
ws\system32\dllhost.exe /processid:{02d4b3f1-fd88-11d1-960d-00805fc79235}
Normal LocalSystem
0
Cryptographic Services CryptSvc
Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k networkservice
Normal NT Authority\NetworkServ
ice
0
DCOM Server Process Launcher
DcomLaunch
Running Auto
Share Process
c:\windows\system32\svchost.exe -k dcomlaunch Normal LocalSystem
0
Disk Defragmenter
defragsvc
Stopped Manual Own Process
c:\windo
ws\system32\svchost.exe -k defragsvc
Normal localSystem
0
DHCP Client
Dhcp
Running Auto
Share Process c:\windows\system32\svch
ost.exe -k localservicenetworkrestricted
Normal NT Authority\LocalServic
e
0
Diagnostics Tracking Service
DiagTrack
Running Auto
Own Process
c:\windows\system32\svchost.exe -k utcsvc
Normal LocalSystem
0
DNS Client
Dnscache
Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k networkservice
Normal NT AUTHORITY\NetworkService
0
Wired AutoConfig
dot3svc Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k localsystemnetworkrestricted Normal localSystem
0
Diagnostic Policy Service
DPS
Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k localservicenonetwork
Normal NT AUTHORITY\Loc
alService
0
Extensible Authentication Protocol
EapHost Running Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal localSystem
0
Encrypting File System (EFS)
EFS
Stopped Manual Share Process c:\windo
ws\system32\lsass.exe Normal LocalSystem
0
Windows Media Center Receiver Service ehRecvr Stopped Manual Own Process
c:\windows\ehome\ehrecvr.exe
Ignore NT AUTHORITY\networkService
0
Windows Media Center Scheduler Service ehSched Stopped Manual Own Process
c:\windows\ehome\ehsched.exe
Ignore NT AUTHORITY\networkService
0
Windows Event Log
eventlog
Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k localservicenetworkrestricted
Normal NT AUTHO
RITY\LocalService
0
COM+ Event System
EventSystem
Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService
0
Fax
Fax
Stopped Manual Own Process
c:\windows\system32\fxssvc.exe
Normal NT AUTHORITY\NetworkService
0
Function Discovery Provider Host
fdPHost Running Manual Share Process
c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalServic
e
0
Function Discovery Resource Publication FDResPub
Running Manual Share Pr
ocess c:\windows\system32\svchost.exe -k localserviceandnoimpersonation
Normal NT AUTHORITY\LocalService
0
Windows Font Cache Service
FontCache
Running Auto
Share Process
c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalServic
e
0

Windows Presentation Foundation Font Cache 3.0.0.0


FontCache3.0.0.0
Running Manual Own Process
c:\windows\microsoft.net\framework64\v3.0\wpf\pr
esentationfontcache.exe Normal NT Authority\LocalService
0
GameConsoleService
GameConsoleService
Stopped Manual Own Process
"c:\program files (x86)\toshiba games\toshiba game console\gameconsoleservice.ex
e"
Normal LocalSystem
0
Group Policy Client
gpsvc Running Auto
Own Process
c:\windows\syste
m32\svchost.exe -k gpsvcgroup Normal LocalSystem
0
Google Update Service (gupdate) gupdate Stopped Auto
Own Process
"c:\prog
ram files (x86)\google\update\googleupdate.exe" /svc
Normal LocalSystem
0
Google Update Service (gupdatem)
gupdatem
Stopped Manual Own Proc
ess
"c:\program files (x86)\google\update\googleupdate.exe" /medsvc Normal
LocalSystem
0
Google Software Updater gusvc Stopped Manual Own Process
"c:\program file
s (x86)\google\common\google updater\googleupdaterservice.exe" Ignore LocalSys
tem
0
Human Interface Device Access hidserv Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem
0
Health Key and Certificate Management hkmsvc Stopped Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal localSystem
0
HomeGroup Listener
HomeGroupListener
Running Manual Share Process
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSys
tem
0
HomeGroup Provider
HomeGroupProvider
Running Manual Share Process
c:\windows\system32\svchost.exe -k localservicenetworkrestricted
Normal
NT AUTHORITY\LocalService
0
HsfXAudioService
HsfXAudioService
Running Auto
Own Process
c:\windows\system32\svchost.exe -k hsfxaudioservice
Normal NT AUTHORITY\Loc
alService
0
Windows CardSpace
idsvc Stopped Manual Share Process "c:\windows\micr
osoft.net\framework64\v3.0\windows communication foundation\infocard.exe"
Normal LocalSystem
0
Internet Explorer ETW Collector Service IEEtwCollectorService Stopped Manual
Own Process
c:\windows\system32\ieetwcollector.exe /v
Normal LocalSys
tem
0
IKE and AuthIP IPsec Keying Modules
IKEEXT Running Auto
Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal LocalSystem
0
PnP-X IP Bus Enumerator IPBusEnum
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem
0
IP Helper
iphlpsvc
Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k netsvcs
Normal LocalSystem
0
IviRegMgr
IviRegMgr
Running Auto
Own Process
"c:\program file
s (x86)\common files\intervideo\regmgr\iviregmgr.exe" Normal LocalSystem
0
CNG Key Isolation
KeyIso Running Manual Share Process c:\windows\syste
m32\lsass.exe Normal LocalSystem
0
KtmRm for Distributed Transaction Coordinator KtmRm Stopped Manual Share Pr
ocess c:\windows\system32\svchost.exe -k networkserviceandnoimpersonation
Normal NT AUTHORITY\NetworkService
0
Server LanmanServer
Running Auto
Share Process c:\windows\system32\svch
ost.exe -k netsvcs
Normal LocalSystem
0
Workstation
LanmanWorkstation
Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k networkservice
Normal NT AUTHORITY\NetworkServ
ice
0
Link-Layer Topology Discovery Mapper
lltdsvc Stopped Manual Share Process
c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalServic
e
0

TCP/IP NetBIOS Helper lmhosts Running Auto


Share Process c:\windows\syste
m32\svchost.exe -k localservicenetworkrestricted
Normal NT AUTHORITY\Loc
alService
0
Media Center Extender Service Mcx2Svc Stopped Disabled
Share Process
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation
Normal
NT Authority\LocalService
0
Multimedia Class Scheduler
MMCSS Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k netsvcs
Normal LocalSystem
0
Windows Firewall
MpsSvc Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k localservicenonetwork
Normal NT Authority\LocalServic
e
0
Distributed Transaction Coordinator
MSDTC Stopped Manual Own Process
c:\windows\system32\msdtc.exe Normal NT AUTHORITY\NetworkService
0
Microsoft iSCSI Initiator Service
MSiSCSI Stopped Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal LocalSystem
0
Windows Installer
msiserver
Stopped Manual Own Process
c:\windo
ws\system32\msiexec.exe /v
Normal LocalSystem
0
Network Access Protection Agent napagent
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k networkservice
Normal NT AUTHORITY\Net
workService
0
Netlogon
Netlogon
Stopped Manual Share Process c:\windows\syste
m32\lsass.exe Normal LocalSystem
0
Network Connections
Netman Running Manual Share Process c:\windows\syste
m32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem
0
Network List Service
netprofm
Running Manual Share Process c:\windo
ws\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService
0
Net.Tcp Port Sharing Service
NetTcpPortSharing
Stopped Disabled
Share Process "c:\windows\microsoft.net\framework64\v3.0\windows communication
foundation\smsvchost.exe"
Normal NT AUTHORITY\LocalService
0
Norton Internet Security
NIS
Running Auto
Own Process
"c:\prog
ram files (x86)\norton internet security\engine\18.7.2.3\ccsvchst.exe" /s "nis"
/m "c:\program files (x86)\norton internet security\engine\18.7.2.3\dimaster.dll
" /prefetch:1 Normal LocalSystem
0
Network Location Awareness
NlaSvc Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k networkservice
Normal NT AUTHORITY\NetworkServ
ice
0
Toshiba Laptop Checkup Application Launcher
Norton PC Checkup Application La
uncher Running Auto
Own Process
c:\program files (x86)\norton pc checkup
\engine\2.0.3.198\symcpcculaunchsvc.exe /s
Normal LocalSystem
0
Network Store Interface Service nsi
Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k localservice Normal NT Authority\LocalService
0
Origin Client Service Origin Client Service Stopped Manual Own Process
"c:\program files (x86)\origin\originclientservice.exe" Normal LocalSystem
0
Peer Networking Identity Manager
p2pimsvc
Running Manual Share Pr
ocess c:\windows\system32\svchost.exe -k localservicepeernet Normal NT AUTHO
RITY\LocalService
0
Peer Networking Grouping
p2psvc Running Manual Share Process c:\windo
ws\system32\svchost.exe -k localservicepeernet Normal NT AUTHORITY\LocalServic
e
0
Partner Service Partner Service Stopped Manual Own Process
"c:\programdata\
partner\partner.exe"
Normal LocalSystem
0
Program Compatibility Assistant Service PcaSvc Running Auto
Share Process
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSys
tem
0
Common Client Job Manager Service
PCCUJobMgr
Running Auto
Own Proc
ess
"c:\program files (x86)\norton pc checkup\engine\2.0.3.198\ccsvchst.exe"
/s "pccujobmgr" /m "c:\program files (x86)\norton pc checkup\engine\2.0.3.198\d

imaster.dll" /prefetch:1
Normal LocalSystem
0
Performance Counter DLL Host
PerfHost
Stopped Manual Own Process
c:\windows\syswow64\perfhost.exe
Normal NT AUTHORITY\LocalService
0
Performance Logs & Alerts
pla
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k localservicenonetwork
Normal NT AUTHORITY\Loc
alService
0
Plug and Play PlugPlay
Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k dcomlaunch Normal LocalSystem
0
PNRP Machine Name Publication Service PNRPAutoReg
Stopped Manual Share Pr
ocess c:\windows\system32\svchost.exe -k localservicepeernet Normal NT AUTHO
RITY\LocalService
0
Peer Name Resolution Protocol PNRPsvc Running Manual Share Process c:\windo
ws\system32\svchost.exe -k localservicepeernet Normal NT AUTHORITY\LocalServic
e
0
IPsec Policy Agent
PolicyAgent
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k networkservicenetworkrestricted
Normal NT Autho
rity\NetworkService
0
Power Power Running Auto
Share Process c:\windows\system32\svchost.exe
-k dcomlaunch Normal LocalSystem
0
User Profile Service
ProfSvc Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k netsvcs
Normal LocalSystem
0
Protected Storage
ProtectedStorage
Stopped Manual Share Process
c:\windows\system32\lsass.exe Normal LocalSystem
0
Protexis Licensing V2 PSI_SVC_2
Running Auto
Own Process
"c:\prog
ram files (x86)\common files\protexis\license service\psiservice_2.exe" Normal
LocalSystem
0
Quality Windows Audio Video Experience QWAVE Stopped Manual Share Process
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation
Normal
NT AUTHORITY\LocalService
0
Remote Access Auto Connection Manager RasAuto Stopped Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal localSystem
0
Remote Access Connection Manager
RasMan Stopped Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal localSystem
0
Routing and Remote Access
RemoteAccess
Stopped Disabled
Share Pr
ocess c:\windows\system32\svchost.exe -k netsvcs
Normal localSystem
0
Remote Registry RemoteRegistry Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k regsvc
Normal NT AUTHORITY\LocalService
0
RPC Endpoint Mapper
RpcEptMapper
Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k rpcss
Normal NT AUTHORITY\NetworkService
0
Remote Procedure Call (RPC) Locator
RpcLocator
Stopped Manual Own Proc
ess
c:\windows\system32\locator.exe Normal NT AUTHORITY\NetworkService
0
Remote Procedure Call (RPC)
RpcSs Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k rpcss
Normal NT AUTHORITY\NetworkService
0
Security Accounts Manager
SamSs Running Auto
Share Process c:\windo
ws\system32\lsass.exe Normal LocalSystem
0
Smart Card
SCardSvr
Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k localserviceandnoimpersonation
Normal NT AUTHORITY\Loc
alService
0
Task Scheduler Schedule
Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k netsvcs
Normal LocalSystem
0
Smart Card Removal Policy
SCPolicySvc
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal LocalSystem
0
Windows Backup SDRSVC Stopped Manual Own Process
c:\windows\system32\svch
ost.exe -k sdrsvc
Normal localSystem
0
Secondary Logon seclogon
Stopped Manual Share Process c:\windows\syste

m32\svchost.exe -k netsvcs
Normal LocalSystem
0
System Event Notification Service
SENS
Running Auto
Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal LocalSystem
0
Adaptive Brightness
SensrSvc
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k localserviceandnoimpersonation
Normal NT AUTHO
RITY\LocalService
0
Remote Desktop Configuration
SessionEnv
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k netsvcs
Normal localSystem
0
Internet Connection Sharing (ICS)
SharedAccess
Stopped Disabled
Share Process c:\windows\system32\svchost.exe -k netsvcs
Normal LocalSys
tem
0
Shell Hardware Detection
ShellHWDetection
Running Auto
Share Pr
ocess c:\windows\system32\svchost.exe -k netsvcs
Ignore LocalSystem
0
SlimWare Utility Service Launcher
SlimService
Running Auto
Own Proc
ess
"c:\program files\slimservice\slimservicefactory.exe" Normal LocalSys
tem
0
SNMP Trap
SNMPTRAP
Stopped Manual Own Process
c:\windows\syste
m32\snmptrap.exe
Normal NT AUTHORITY\LocalService
0
Print Spooler Spooler Running Auto
Own Process
c:\windows\system32\spoo
lsv.exe Normal LocalSystem
0
Software Protection
sppsvc Stopped Auto
Own Process
c:\windows\syste
m32\sppsvc.exe Normal NT AUTHORITY\NetworkService
0
SPP Notification Service
sppuinotify
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalServic
e
0
SSDP Discovery SSDPSRV Running Manual Share Process c:\windows\system32\svch
ost.exe -k localserviceandnoimpersonation
Normal NT AUTHORITY\LocalServic
e
0
Secure Socket Tunneling Protocol Service
SstpSvc Stopped Manual Share Pr
ocess c:\windows\system32\svchost.exe -k localservice Normal NT Authority\Loc
alService
0
Steam Client Service
Steam Client Service
Stopped Manual Own Process
"c:\program files (x86)\common files\steam\steamservice.exe" /runasservice
Normal LocalSystem
0
Windows Image Acquisition (WIA) stisvc Stopped Manual Own Process
c:\windo
ws\system32\svchost.exe -k imgsvc
Normal NT Authority\LocalService
0
Microsoft Software Shadow Copy Provider swprv Stopped Manual Own Process
c:\windows\system32\svchost.exe -k swprv
Normal LocalSystem
0
Superfetch
SysMain Running Auto
Share Process c:\windows\system32\svch
ost.exe -k localsystemnetworkrestricted Ignore LocalSystem
0
Tablet PC Input Service TabletInputService
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSys
tem
0
Telephony
TapiSrv Running Manual Share Process c:\windows\system32\svch
ost.exe -k networkservice
Normal NT AUTHORITY\NetworkService
0
TPM Base Services
TBS
Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k localserviceandnoimpersonation
Normal NT AUTHORITY\Loc
alService
0
Remote Desktop Services TermService
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k networkservice
Normal NT Authority\NetworkServ
ice
0
Themes Themes Running Auto
Share Process c:\windows\system32\svchost.exe
-k netsvcs
Normal LocalSystem
0
Thread Ordering Server THREADORDER
Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService
0
TMachInfo
TMachInfo
Stopped Manual Own Process
c:\program files
(x86)\toshiba\toshiba service station\tmachinfo.exe
Ignore LocalSystem

0
TOSHIBA Optical Disc Drive Service
TODDSrv Running Auto
Own Process
c:\windows\system32\toddsrv.exe Normal LocalSystem
0
TOSHIBA Power Saver
TosCoSrv
Running Auto
Own Process
"c:\prog
ram files\toshiba\power saver\toscosrv.exe"
Normal LocalSystem
0
TOSHIBA eco Utility Service
TOSHIBA eco Utility Service
Running Auto
Own Process
"c:\program files\toshiba\teco\tecoservice.exe" Normal LocalSys
tem
0
TOSHIBA HDD SSD Alert Service TOSHIBA HDD SSD Alert Service Stopped Manual
Own Process
"c:\program files\toshiba\toshiba hdd ssd alert\tossmartsrv.exe"
Normal LocalSystem
0
TPCH Service
TPCHSrv Stopped Manual Own Process
"c:\program files\toshib
a\tphm\tpchsrv.exe"
Normal LocalSystem
0
Distributed Link Tracking Client
TrkWks Running Auto
Share Process
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSys
tem
0
Windows Modules Installer
TrustedInstaller
Running Manual Own Proc
ess
c:\windows\servicing\trustedinstaller.exe
Normal localSystem
0
Interactive Services Detection UI0Detect
Stopped Manual Own Process
c:\windows\system32\ui0detect.exe
Normal LocalSystem
0
UPnP Device Host
upnphost
Running Manual Share Process c:\windo
ws\system32\svchost.exe -k localserviceandnoimpersonation
Normal NT AUTHO
RITY\LocalService
0
Desktop Window Manager Session Manager UxSms Running Auto
Share Process
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal localSys
tem
0
Credential Manager
VaultSvc
Stopped Manual Share Process c:\windo
ws\system32\lsass.exe Normal LocalSystem
0
Virtual Disk
vds
Stopped Manual Own Process
c:\windows\system32\vds.
exe
Normal LocalSystem
0
Volume Shadow Copy
VSS
Stopped Manual Own Process
c:\windows\syste
m32\vssvc.exe Normal LocalSystem
0
Windows Time
W32Time Running Manual Share Process c:\windows\system32\svch
ost.exe -k localservice Normal NT AUTHORITY\LocalService
0
Windows Activation Technologies Service WatAdminSvc
Stopped Manual Own Proc
ess
c:\windows\system32\wat\watadminsvc.exe Normal LocalSystem
0
Block Level Backup Engine Service
wbengine
Stopped Manual Own Proc
ess
"c:\windows\system32\wbengine.exe"
Normal localSystem
0
Windows Biometric Service
WbioSrvc
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k wbiosvcgroup Normal LocalSystem
0
Windows Connect Now - Config Registrar wcncsvc Stopped Manual Share Process
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation
Normal
NT AUTHORITY\LocalService
0
Windows Color System
WcsPlugInService
Stopped Manual Share Process
c:\windows\system32\svchost.exe -k wcssvc
Normal NT AUTHORITY\LocalServic
e
0
Diagnostic Service Host WdiServiceHost Running Manual Share Process c:\windo
ws\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService
0
Diagnostic System Host WdiSystemHost Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem
0
WebClient
WebClient
Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService
0
Windows Event Collector Wecsvc Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k networkservice
Normal NT AUTHORITY\NetworkService
0
Problem Reports and Solutions Control Panel Support
wercplsupport Stopped
Manual Share Process c:\windows\system32\svchost.exe -k netsvcs
Normal

localSystem
0
Windows Error Reporting Service WerSvc Stopped Manual Share Process c:\windo
ws\system32\svchost.exe -k wersvcgroup Ignore localSystem
0
Windows Defender
WinDefend
Running Auto
Share Process c:\windo
ws\system32\svchost.exe -k secsvcs
Normal LocalSystem
0
WinHTTP Web Proxy Auto-Discovery Service
WinHttpAutoProxySvc
Running
Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal
NT AUTHORITY\LocalService
0
Windows Management Instrumentation
Winmgmt Running Auto
Share Process
c:\windows\system32\svchost.exe -k netsvcs
Ignore localSystem
0
Windows Remote Management (WS-Management)
WinRM Stopped Manual Share Pr
ocess c:\windows\system32\svchost.exe -k networkservice
Normal NT AUTHO
RITY\NetworkService
0
WLAN AutoConfig Wlansvc Running Auto
Share Process c:\windows\system32\svch
ost.exe -k localsystemnetworkrestricted Normal LocalSystem
0
WMI Performance Adapter wmiApSrv
Stopped Manual Own Process
c:\windo
ws\system32\wbem\wmiapsrv.exe Normal localSystem
0
Windows Media Player Network Sharing Service
WMPNetworkSvc Running Auto
Own Process
"c:\program files\windows media player\wmpnetwk.exe"
Normal
NT AUTHORITY\NetworkService
0
Parental Controls
WPCSvc Stopped Manual Share Process c:\windows\syste
m32\svchost.exe -k localservicenetworkrestricted
Normal NT Authority\Loc
alService
0
Portable Device Enumerator Service
WPDBusEnum
Stopped Manual Share Pr
ocess c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal
LocalSystem
0
Security Center wscsvc Running Auto
Share Process c:\windows\system32\svch
ost.exe -k localservicenetworkrestricted
Normal NT AUTHORITY\LocalServic
e
0
Windows Search WSearch Running Auto
Own Process
c:\windows\system32\sear
chindexer.exe /embedding
Normal LocalSystem
0
Windows Update wuauserv
Running Auto
Share Process c:\windows\syste
m32\svchost.exe -k netsvcs
Normal LocalSystem
0
Windows Driver Foundation - User-mode Driver Framework wudfsvc Running Auto
Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted
Normal LocalSystem
0
WWAN AutoConfig WwanSvc Stopped Manual Share Process c:\windows\system32\svch
ost.exe -k localservicenonetwork
Normal NT Authority\LocalService
0
[Program Groups]
Group Name
Name
User Name
Start Menu
Default:Start Menu
Default
Start Menu\Programs
Default:Start Menu\Programs
Default
Start Menu\Programs\Accessories Default:Start Menu\Programs\Accessories Default
Start Menu\Programs\Accessories\Accessibility Default:Start Menu\Programs\Acce
ssories\Accessibility Default
Start Menu\Programs\Accessories\System Tools
Default:Start Menu\Programs\Acce
ssories\System Tools
Default
Start Menu\Programs\Maintenance Default:Start Menu\Programs\Maintenance Default
Start Menu
Public:Start Menu
Public
Start Menu\Programs
Public:Start Menu\Programs
Public
Start Menu\Programs\Accessories Public:Start Menu\Programs\Accessories Public
Start Menu\Programs\Accessories\Accessibility Public:Start Menu\Programs\Acces
sories\Accessibility
Public
Start Menu\Programs\Accessories\System Tools
Public:Start Menu\Programs\Acces
sories\System Tools
Public
Start Menu\Programs\Accessories\Tablet PC
Public:Start Menu\Programs\Acces
sories\Tablet PC
Public

Start Menu\Programs\Accessories\Windows PowerShell


Public:Start Menu\Progra
ms\Accessories\Windows PowerShell
Public
Start Menu\Programs\Administrative Tools
Public:Start Menu\Programs\Admin
istrative Tools Public
Start Menu\Programs\Amazon.com Public:Start Menu\Programs\Amazon.com Public
Start Menu\Programs\AMD VISION Engine Control Center
Public:Start Menu\Progra
ms\AMD VISION Engine Control Center
Public
Start Menu\Programs\Corel
Public:Start Menu\Programs\Corel
Public
Start Menu\Programs\Corel Label@Once
Public:Start Menu\Programs\Corel Label@O
nce
Public
Start Menu\Programs\DriverUpdate
Public:Start Menu\Programs\DriverUpdate
Public
Start Menu\Programs\Games
Public:Start Menu\Programs\Games
Public
Start Menu\Programs\Google Chrome
Public:Start Menu\Programs\Google Chrome
Public
Start Menu\Programs\Hidden Expedition - The Crown of Solomon Collectors Edition
Public:Start Menu\Programs\Hidden Expedition - The Crown of Solomon Collectors E
dition Public
Start Menu\Programs\Legacy Games
Public:Start Menu\Programs\Legacy Games
Public
Start Menu\Programs\Maintenance Public:Start Menu\Programs\Maintenance Public
Start Menu\Programs\Microsoft Silverlight
Public:Start Menu\Programs\Micro
soft Silverlight
Public
Start Menu\Programs\My Toshiba Public:Start Menu\Programs\My Toshiba Public
Start Menu\Programs\mySongBook Player Public:Start Menu\Programs\mySongBook Pl
ayer
Public
Start Menu\Programs\NetZero
Public:Start Menu\Programs\NetZero
Public
Start Menu\Programs\Norton Internet Security
Public:Start Menu\Programs\Norto
n Internet Security
Public
Start Menu\Programs\Origin
Public:Start Menu\Programs\Origin
Public
Start Menu\Programs\Skype
Public:Start Menu\Programs\Skype
Public
Start Menu\Programs\SlimCleaner Plus
Public:Start Menu\Programs\SlimCleaner P
lus
Public
Start Menu\Programs\Startup
Public:Start Menu\Programs\Startup
Public
Start Menu\Programs\Steam
Public:Start Menu\Programs\Steam
Public
Start Menu\Programs\Tablet PC Public:Start Menu\Programs\Tablet PC
Public
Start Menu\Programs\The Sims 4 Public:Start Menu\Programs\The Sims 4 Public
Start Menu\Programs\TOSHIBA
Public:Start Menu\Programs\TOSHIBA
Public
Start Menu\Programs\TOSHIBA\CD&DVD Applications Public:Start Menu\Programs\TOSHI
BA\CD&DVD Applications Public
Start Menu\Programs\TOSHIBA\Networking Public:Start Menu\Programs\TOSHIBA\Netwo
rking Public
Start Menu\Programs\TOSHIBA\TOSHIBA Media Controller
Public:Start Menu\Progra
ms\TOSHIBA\TOSHIBA Media Controller
Public
Start Menu\Programs\TOSHIBA\Utilities Public:Start Menu\Programs\TOSHIBA\Utili
ties
Public
Start Menu\Programs\Toshiba Laptop Checkup
Public:Start Menu\Programs\Toshi
ba Laptop Checkup
Public
Start Menu\Programs\Toshiba Online Backup
Public:Start Menu\Programs\Toshi
ba Online Backup
Public
Start Menu\Programs\Windows Live
Public:Start Menu\Programs\Windows Live
Public
Start Menu
PreferredCustom\Preferred Customer:Start Menu PreferredCustom\
Preferred Customer
Start Menu\Programs
PreferredCustom\Preferred Customer:Start Menu\Programs
PreferredCustom\Preferred Customer
Start Menu\Programs\Accessories PreferredCustom\Preferred Customer:Start Menu\Pr
ograms\Accessories
PreferredCustom\Preferred Customer
Start Menu\Programs\Accessories\Accessibility PreferredCustom\Preferred Custom
er:Start Menu\Programs\Accessories\Accessibility
PreferredCustom\Preferre

d Customer
Start Menu\Programs\Accessories\System Tools
PreferredCustom\Preferred Custom
er:Start Menu\Programs\Accessories\System Tools PreferredCustom\Preferred Custom
er
Start Menu\Programs\Administrative Tools
PreferredCustom\Preferred Custom
er:Start Menu\Programs\Administrative Tools
PreferredCustom\Preferred Custom
er
Start Menu\Programs\Hidden Expedition - The Crown of Solomon Collectors Edition
PreferredCustom\Preferred Customer:Start Menu\Programs\Hidden Expedition - The C
rown of Solomon Collectors Edition
PreferredCustom\Preferred Customer
Start Menu\Programs\Maintenance PreferredCustom\Preferred Customer:Start Menu\Pr
ograms\Maintenance
PreferredCustom\Preferred Customer
Start Menu\Programs\Startup
PreferredCustom\Preferred Customer:Start Menu\Pr
ograms\Startup PreferredCustom\Preferred Customer
Start Menu\Programs\Steam
PreferredCustom\Preferred Customer:Start Menu\Pr
ograms\Steam
PreferredCustom\Preferred Customer
[Startup Programs]
Program Command User Name
Location
Sidebar %programfiles%\windows sidebar\sidebar.exe /autorun
NT AUTHORITY\LOC
AL SERVICE
Startup
Sidebar %programfiles%\windows sidebar\sidebar.exe /autorun
NT AUTHORITY\NET
WORK SERVICE
Startup
SlimCleaner Plus
"c:\program files\slimcleaner plus\slimcleanerplus.exe"
/minimize /boot PreferredCustom\Preferred Customer
Startup
Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
[OLE Registration]
Object Local Server
WordPad Document
"%programfiles%\windows nt\accessories\wordpad.exe"
Paintbrush Picture
%systemroot%\system32\mspaint.exe
Drawing Not Available
Package Not Available
Microsoft PenInputPanel Control Not Available
[Windows Error Reporting]
Time
Type
Details
5/26/2015 12:23 AM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x9ac&#x000d;&#x000a;Faulting application start
time: 0x01d0974a2cc82b70&#x000d;&#x000a;Faulting application path: C:\Program Fi
les (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fau
lting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\e
vilwithin.exe&#x000d;&#x000a;Report Id: 75ee28d8-033d-11e5-8c10-88ae1dfad3f8
5/26/2015 12:17 AM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x124c&#x000d;&#x000a;Faulting application start
time: 0x01d097493e357ce5&#x000d;&#x000a;Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: 87ed15fa-033c-11e5-8c10-88ae1dfad3f8
5/26/2015 12:12 AM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu

le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a


;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x2e0&#x000d;&#x000a;Faulting application start
time: 0x01d0974897579c78&#x000d;&#x000a;Faulting application path: C:\Program Fi
les (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fau
lting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\e
vilwithin.exe&#x000d;&#x000a;Report Id: e373995e-033b-11e5-8c10-88ae1dfad3f8
5/25/2015 11:51 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x39c&#x000d;&#x000a;Faulting application start
time: 0x01d097459f0211f2&#x000d;&#x000a;Faulting application path: C:\Program Fi
les (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fau
lting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\e
vilwithin.exe&#x000d;&#x000a;Report Id: eae819ee-0338-11e5-8bad-88ae1dfad3f8
5/25/2015 11:09 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x17f8&#x000d;&#x000a;Faulting application start
time: 0x01d0973fcfc549af&#x000d;&#x000a;Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: 193aba05-0333-11e5-b6d2-88ae1dfad3f8
5/25/2015 11:08 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x11ec&#x000d;&#x000a;Faulting application start
time: 0x01d0973faece3cae&#x000d;&#x000a;Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: f85e6157-0332-11e5-b6d2-88ae1dfad3f8
5/25/2015 10:57 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x15ac&#x000d;&#x000a;Faulting application start
time: 0x01d0973e16fa87a6&#x000d;&#x000a;Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: 6064ad31-0331-11e5-b6d2-88ae1dfad3f8
5/25/2015 10:49 PM
Application Error
Faulting application name: Drive
rUpdate.exe, version: 2.3.1.0, time stamp: 0x551d4cfe&#x000d;&#x000a;Faulting mo
dule name: UnifiedLogger.dll_unloaded, version: 0.0.0.0, time stamp: 0x5511b23f&
#x000d;&#x000a;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x72376f7
8&#x000d;&#x000a;Faulting process id: 0x2a4&#x000d;&#x000a;Faulting application
start time: 0x01d0973d109be84c&#x000d;&#x000a;Faulting application path: C:\Prog
ram Files (x86)\DriverUpdate\DriverUpdate.exe&#x000d;&#x000a;Faulting module pat
h: UnifiedLogger.dll&#x000d;&#x000a;Report Id: 5509bc67-0330-11e5-b6d2-88ae1dfad
3f8
5/25/2015 10:49 PM
Application Error
Faulting application name: Drive
rUpdate.exe, version: 2.3.1.0, time stamp: 0x551d4cfe&#x000d;&#x000a;Faulting mo
dule name: UnifiedLogger.dll_unloaded, version: 0.0.0.0, time stamp: 0x5511b23f&
#x000d;&#x000a;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x72389e5
8&#x000d;&#x000a;Faulting process id: 0x2a4&#x000d;&#x000a;Faulting application
start time: 0x01d0973d109be84c&#x000d;&#x000a;Faulting application path: C:\Prog
ram Files (x86)\DriverUpdate\DriverUpdate.exe&#x000d;&#x000a;Faulting module pat
h: UnifiedLogger.dll&#x000d;&#x000a;Report Id: 50b5e26e-0330-11e5-b6d2-88ae1dfad

3f8
5/25/2015 10:44 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x104c&#x000d;&#x000a;Faulting application start
time: 0x01d0973c4bf6968e&#x000d;&#x000a;Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: 98c3a2db-032f-11e5-b6d2-88ae1dfad3f8
5/25/2015 10:33 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x490&#x000d;&#x000a;Faulting application start
time: 0x01d0973acf63679c&#x000d;&#x000a;Faulting application path: C:\Program Fi
les (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fau
lting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\e
vilwithin.exe&#x000d;&#x000a;Report Id: 1a342748-032e-11e5-9ba9-88ae1dfad3f8
5/25/2015 10:33 PM
Application Error
Faulting application name: Drive
rUpdate.exe, version: 2.3.1.0, time stamp: 0x551d4cfe&#x000d;&#x000a;Faulting mo
dule name: UnifiedLogger.dll_unloaded, version: 0.0.0.0, time stamp: 0x5511b23f&
#x000d;&#x000a;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x60546f7
8&#x000d;&#x000a;Faulting process id: 0xf8&#x000d;&#x000a;Faulting application s
tart time: 0x01d0973ac9bf8918&#x000d;&#x000a;Faulting application path: C:\Progr
am Files (x86)\DriverUpdate\DriverUpdate.exe&#x000d;&#x000a;Faulting module path
: UnifiedLogger.dll&#x000d;&#x000a;Report Id: 0bf0d251-032e-11e5-9ba9-88ae1dfad3
f8
5/25/2015 10:33 PM
Application Error
Faulting application name: Drive
rUpdate.exe, version: 2.3.1.0, time stamp: 0x551d4cfe&#x000d;&#x000a;Faulting mo
dule name: UnifiedLogger.dll_unloaded, version: 0.0.0.0, time stamp: 0x5511b23f&
#x000d;&#x000a;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x60559e5
8&#x000d;&#x000a;Faulting process id: 0xf8&#x000d;&#x000a;Faulting application s
tart time: 0x01d0973ac9bf8918&#x000d;&#x000a;Faulting application path: C:\Progr
am Files (x86)\DriverUpdate\DriverUpdate.exe&#x000d;&#x000a;Faulting module path
: UnifiedLogger.dll&#x000d;&#x000a;Report Id: 08a607ca-032e-11e5-9ba9-88ae1dfad3
f8
5/25/2015 10:33 PM
Application Error
Faulting application name: Drive
rUpdate.exe, version: 2.3.1.0, time stamp: 0x551d4cfe&#x000d;&#x000a;Faulting mo
dule name: DriverUpdate.exe, version: 2.3.1.0, time stamp: 0x551d4cfe&#x000d;&#x
000a;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00030564&#x000d;&
#x000a;Faulting process id: 0x1e08&#x000d;&#x000a;Faulting application start tim
e: 0x01d0973a8d52d0f9&#x000d;&#x000a;Faulting application path: C:\Program Files
(x86)\DriverUpdate\DriverUpdate.exe&#x000d;&#x000a;Faulting module path: C:\Pro
gram Files (x86)\DriverUpdate\DriverUpdate.exe&#x000d;&#x000a;Report Id: fff7eb2
0-032d-11e5-9ba9-88ae1dfad3f8
5/25/2015 10:19 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x1d28&#x000d;&#x000a;Faulting application start
time: 0x01d09738dd5c03a7&#x000d;&#x000a;Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: 285d70f9-032c-11e5-9ba9-88ae1dfad3f8
5/25/2015 10:11 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x1470&#x000d;&#x000a;Faulting application start

time: 0x01d09737b5f0d32b&#x000d;&#x000a;Faulting application path: C:\Program F


iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: 02d697f4-032b-11e5-9ba9-88ae1dfad3f8
5/25/2015 4:27 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x1670&#x000d;&#x000a;Faulting application start
time: 0x01d09707ab14f0e1&#x000d;&#x000a;Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: f4be1c29-02fa-11e5-9ba9-88ae1dfad3f8
5/25/2015 4:26 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x19ec&#x000d;&#x000a;Faulting application start
time: 0x01d0970775dfb57f&#x000d;&#x000a;Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: bf6ad106-02fa-11e5-9ba9-88ae1dfad3f8
5/25/2015 4:25 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x1e9c&#x000d;&#x000a;Faulting application start
time: 0x01d097074e0c4566&#x000d;&#x000a;Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: 9845a4da-02fa-11e5-9ba9-88ae1dfad3f8
5/25/2015 4:23 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x1e3c&#x000d;&#x000a;Faulting application start
time: 0x01d097071e0122df&#x000d;&#x000a;Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: 682db0e3-02fa-11e5-9ba9-88ae1dfad3f8
5/25/2015 4:21 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x1f1c&#x000d;&#x000a;Faulting application start
time: 0x01d09706bef8f666&#x000d;&#x000a;Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: 0a59ea3e-02fa-11e5-9ba9-88ae1dfad3f8
5/25/2015 4:12 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x1878&#x000d;&#x000a;Faulting application start
time: 0x01d09705939d4316&#x000d;&#x000a;Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: deed46be-02f8-11e5-9ba9-88ae1dfad3f8
5/25/2015 4:07 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu

le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a


;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e4fef&#x00
0d;&#x000a;Faulting process id: 0x86c&#x000d;&#x000a;Faulting application start
time: 0x01d09704d041661b&#x000d;&#x000a;Faulting application path: C:\Program Fi
les (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fau
lting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\e
vilwithin.exe&#x000d;&#x000a;Report Id: 1c2dac0d-02f8-11e5-9ba9-88ae1dfad3f8
5/25/2015 4:04 PM
Application Error
Faulting application name: evilw
ithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a;Faulting modu
le name: evilwithin.exe, version: 1.0.0.0, time stamp: 0x5555aeba&#x000d;&#x000a
;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00000000001e52d5&#x00
0d;&#x000a;Faulting process id: 0x1eb0&#x000d;&#x000a;Faulting application start
time: 0x01d097047b085ae7&#x000d;&#x000a;Faulting application path: C:\Program F
iles (x86)\Steam\steamapps\common\TheEvilWithin\evilwithin.exe&#x000d;&#x000a;Fa
ulting module path: C:\Program Files (x86)\Steam\steamapps\common\TheEvilWithin\
evilwithin.exe&#x000d;&#x000a;Report Id: c8af0184-02f7-11e5-9ba9-88ae1dfad3f8
5/25/2015 1:56 PM
Application Error
Faulting application name: TS4.e
xe, version: 1.7.65.1020, time stamp: 0x555636ec&#x000d;&#x000a;Faulting module
name: TS4.exe, version: 1.7.65.1020, time stamp: 0x555636ec&#x000d;&#x000a;Excep
tion code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x00d31f1b&#x000d;&#x000a;Fau
lting process id: 0xf30&#x000d;&#x000a;Faulting application start time: 0x01d096
f188b876e6&#x000d;&#x000a;Faulting application path: C:\Program Files (x86)\Orig
in Games\The Sims 4\Game\Bin\TS4.exe&#x000d;&#x000a;Faulting module path: C:\Pro
gram Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe&#x000d;&#x000a;Report
Id: d0da0bac-02e5-11e5-9ba9-88ae1dfad3f8
5/25/2015 2:10 AM
Application Error
Faulting application name: The_F
all_Of_The_New_Age.exe, version: 4.1.5.1944, time stamp: 0x51b0ce73&#x000d;&#x00
0a;Faulting module name: ntdll.dll, version: 6.1.7601.18839, time stamp: 0x553e8
808&#x000d;&#x000a;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x000
22322&#x000d;&#x000a;Faulting process id: 0x1724&#x000d;&#x000a;Faulting applica
tion start time: 0x01d09690021f100b&#x000d;&#x000a;Faulting application path: C:
\Program Files (x86)\Legacy Games\Fall of the New Age\The_Fall_Of_The_New_Age.ex
e&#x000d;&#x000a;Faulting module path: C:\windows\SysWOW64\ntdll.dll&#x000d;&#x0
00a;Report Id: 42333db7-0283-11e5-9ba9-88ae1dfad3f8
5/16/2015 8:07 PM
Application Error
Faulting application name: ccSvc
Hst.exe, version: 10.1.1.16, time stamp: 0x4daa1893&#x000d;&#x000a;Faulting modu
le name: KERNEL32.DLL_unloaded, version: 0.0.0.0, time stamp: 0x553e88aa&#x000d;
&#x000a;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x73ef76f7&#x000
d;&#x000a;Faulting process id: 0x5a4&#x000d;&#x000a;Faulting application start t
ime: 0x01d08ab960aee04d&#x000d;&#x000a;Faulting application path: C:\Program Fil
es (x86)\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe&#x000d;&#x000a;Fa
ulting module path: KERNEL32.DLL&#x000d;&#x000a;Report Id: 2790451e-fc07-11e4-92
7b-88ae1dfad3f8
4/15/2015 5:14 PM
Application Error
Faulting application name: iviRe
gMgr.exe, version: 1.0.4.0, time stamp: 0x459cd531&#x000d;&#x000a;Faulting modul
e name: unknown, version: 0.0.0.0, time stamp: 0x00000000&#x000d;&#x000a;Excepti
on code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x75436cc4&#x000d;&#x000a;Fault
ing process id: 0x694&#x000d;&#x000a;Faulting application start time: 0x01d07798
b180719b&#x000d;&#x000a;Faulting application path: C:\Program Files (x86)\Common
Files\InterVideo\RegMgr\iviRegMgr.exe&#x000d;&#x000a;Faulting module path: unkn
own&#x000d;&#x000a;Report Id: dfcce75e-e392-11e4-b412-88ae1dfad3f8
4/15/2015 5:14 PM
Application Error
Faulting application name: PsiSe
rvice_2.exe, version: 2.0.1.124, time stamp: 0x46a641af&#x000d;&#x000a;Faulting
module name: unknown, version: 0.0.0.0, time stamp: 0x00000000&#x000d;&#x000a;Ex
ception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x75436cc4&#x000d;&#x000a;
Faulting process id: 0x76c&#x000d;&#x000a;Faulting application start time: 0x01d
0779863bf5f15&#x000d;&#x000a;Faulting application path: C:\Program Files (x86)\C
ommon Files\Protexis\License Service\PsiService_2.exe&#x000d;&#x000a;Faulting mo
dule path: unknown&#x000d;&#x000a;Report Id: df93c657-e392-11e4-b412-88ae1dfad3f
8

4/15/2015 5:14 PM
Application Error
Faulting application name: ccSvc
Hst.exe, version: 109.0.0.107, time stamp: 0x4a92f9d9&#x000d;&#x000a;Faulting mo
dule name: unknown, version: 0.0.0.0, time stamp: 0x00000000&#x000d;&#x000a;Exce
ption code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x75436cc4&#x000d;&#x000a;Fa
ulting process id: 0x72c&#x000d;&#x000a;Faulting application start time: 0x01d07
7986377f5cd&#x000d;&#x000a;Faulting application path: C:\Program Files (x86)\Nor
ton PC Checkup\Engine\2.0.3.198\ccSvcHst.exe&#x000d;&#x000a;Faulting module path
: unknown&#x000d;&#x000a;Report Id: deaa7f7d-e392-11e4-b412-88ae1dfad3f8
4/15/2015 5:14 PM
Application Error
Faulting application name: ccSvc
Hst.exe, version: 10.0.0.61, time stamp: 0x4bf83e7f&#x000d;&#x000a;Faulting modu
le name: unknown, version: 0.0.0.0, time stamp: 0x00000000&#x000d;&#x000a;Except
ion code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x75436cc4&#x000d;&#x000a;Faul
ting process id: 0x628&#x000d;&#x000a;Faulting application start time: 0x01d0779
86129a08a&#x000d;&#x000a;Faulting application path: C:\Program Files (x86)\Norto
n Internet Security\Engine\18.0.0.128\ccSvcHst.exe&#x000d;&#x000a;Faulting modul
e path: unknown&#x000d;&#x000a;Report Id: de5e5374-e392-11e4-b412-88ae1dfad3f8
4/15/2015 5:14 PM
Application Error
Faulting application name: SymcP
CCULaunchSvc.exe, version: 1.0.0.137, time stamp: 0x4b6221bb&#x000d;&#x000a;Faul
ting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000&#x000d;&#x00
0a;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x75436cc4&#x000d;&#x
000a;Faulting process id: 0x6d0&#x000d;&#x000a;Faulting application start time:
0x01d0779862ca3159&#x000d;&#x000a;Faulting application path: C:\Program Files (x
86)\Norton PC Checkup\Engine\2.0.3.198\SymcPCCULaunchSvc.exe&#x000d;&#x000a;Faul
ting module path: unknown&#x000d;&#x000a;Report Id: dcc9a986-e392-11e4-b412-88ae
1dfad3f8
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1223.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57507615-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8141.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ea98141&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 680d7e3b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1212.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56847996-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R73C9.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ce373d9&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: dedccbc0-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1226.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57653835-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBB06.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may

be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1bc7bb06&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bf35dd8f-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1224.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57588159-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBA89.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1b22ba89&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 980e676b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1819.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-78875525-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8D2A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_189b8d2a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 28507878-032c-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1220.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57350210-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1AA3.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_18471aa3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 0a3bda7e-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1227.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57743582-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1A64.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_16e91a64&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: f4b409e3-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000

a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000


a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1909.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-2013536-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER
BA2A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_136aba2a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 18ed3522-0333-11
e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1207.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56521018-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8FE1.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_12a68fe1&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1bfeac1d-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1951.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-372171-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERB
DF1.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_11b5be01&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: eae8680f-0338-11e
5-8bad-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1857.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-1273982-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER
7158.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_10977158&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 601cf4c5-0331-11
e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-2023.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-898971-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERB
846.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0f95b856&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 7595f56e-033d-11e

5-8c10-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-2012.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-224204-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER7
CCD.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0eb77cdc&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: e362a92f-033b-11e
5-8c10-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1844.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-510092-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERE
0FB.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0a5be10b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 98bfd23d-032f-11e
5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1811.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-78383092-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RC09.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_09e00c19&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 02cd21f1-032b-11
e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1908.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-1958483-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER
E30E.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_0585e30e&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: f81c002f-0332-11
e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-2016.dmp&#x000d;&#x0

00a;C:\Windows\Temp\WER-500186-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERA
36F.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0543a36f&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 87e5e9ef-033c-11e
5-8c10-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/31/2015 2:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1833.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-79710754-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R4B6A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_02e04b6a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1a27a3f9-032e-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/30/2015 3:49 AM
Windows Error Reporting Fault bucket 1346076112, type 21
&#x000d;&#x000a;Event Name: PDUWICA&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: 3&#x000d;&#x000a;P2: 2.1&#x000d;&#x000a;P3: 6.1.1.0&#x000d;&#x000a;P4:
1033&#x000d;&#x000a;P5: 55&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000
a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;A
ttached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:
&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a
;Rechecking for solution: 0&#x000d;&#x000a;Report Id: dfeb2439-067e-11e5-8c10-88
ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/28/2015 1:46 AM
Windows Error Reporting Fault bucket 68036429, type 22&#
x000d;&#x000a;Event Name: RADAR_PRE_LEAK_WOW64&#x000d;&#x000a;Response: Not avai
lable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:
&#x000d;&#x000a;P1: HiddenExpedition_TheCrownOfSolomonCE.exe&#x000d;&#x000a;P2:
0.0.0.0&#x000d;&#x000a;P3: 6.1.7601.2.1.0&#x000d;&#x000a;P4: &#x000d;&#x000a;P5:
&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9:
&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x
000a;C:\Users\Preferred Customer\AppData\Local\Temp\RDREFF1.tmp\empty.txt&#x000d
;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x00
0d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solut
ion: 0&#x000d;&#x000a;Report Id: 4fb0fbf9-04db-11e5-8c10-88ae1dfad3f8&#x000d;&#x
000a;Report Status: 0
5/26/2015 12:46 AM
Windows Error Reporting Fault bucket 995231174, type 21&
#x000d;&#x000a;Event Name: CompatEntityAnalysis_1&#x000d;&#x000a;Response: Not a
vailable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signatu
re:&#x000d;&#x000a;P1: 3&#x000d;&#x000a;P2: 2&#x000d;&#x000a;P3: 6.1.1.0&#x000d;
&#x000a;P4: 1033&#x000d;&#x000a;P5: 55&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#
x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x00
0d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\appcompat\Programs\AEINV_AM
I_WER_{6A5CD319-21AA-4C24-8723-E11AEE16122F}_20150526_004138_TEL.xml&#x000d;&#x0
00a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Program
Data\Microsoft\Windows\WER\ReportArchive\NonCritical_3_f17a1453a203756a44f49c989
7635f63f1728b6_010aee64&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;
&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: aeb3da66-0340-11e58c10-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:24 AM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&

#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&


#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERBC8A.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_08021b4d&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: 75ee28d8-033d-11e5-8c10-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:23 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-2023.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-898971-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERB
846.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0f95b856&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 7595f56e-033d-11e
5-8c10-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1223.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57507615-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8141.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ea98141&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 680d7e3b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1212.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56847996-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R73C9.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ce373d9&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: dedccbc0-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1226.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57653835-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBB06.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1bc7bb06&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bf35dd8f-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0

5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1224.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57588159-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBA89.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1b22ba89&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 980e676b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1819.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-78875525-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8D2A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_189b8d2a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 28507878-032c-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1220.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57350210-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1AA3.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_18471aa3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 0a3bda7e-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1227.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57743582-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1A64.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_16e91a64&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: f4b409e3-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1909.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-2013536-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER

BA2A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may


be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_136aba2a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 18ed3522-0333-11
e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1207.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56521018-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8FE1.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_12a68fe1&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1bfeac1d-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1951.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-372171-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERB
DF1.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_11b5be01&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: eae8680f-0338-11e
5-8bad-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1857.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-1273982-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER
7158.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_10977158&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 601cf4c5-0331-11
e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-2012.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-224204-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER7
CCD.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0eb77cdc&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: e362a92f-033b-11e
5-8c10-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000

a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000


a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1844.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-510092-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERE
0FB.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0a5be10b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 98bfd23d-032f-11e
5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1811.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-78383092-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RC09.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_09e00c19&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 02cd21f1-032b-11
e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1908.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-1958483-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER
E30E.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_0585e30e&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: f81c002f-0332-11
e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-2016.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-500186-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERA
36F.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0543a36f&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 87e5e9ef-033c-11e
5-8c10-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:22 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1833.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-79710754-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R4B6A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_02e04b6a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0

00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1a27a3f9-032e-1


1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:17 AM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERA469.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_05404597&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: 87ed15fa-033c-11e5-8c10-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:17 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-2016.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-500186-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERA
36F.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0543a36f&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 87e5e9ef-033c-11e
5-8c10-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/26/2015 12:12 AM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WER71E4.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_101b9dc4&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: e373995e-033b-11e5-8c10-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/26/2015 12:12 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-2012.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-224204-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER7
CCD.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0eb77cdc&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: e362a92f-033b-11e
5-8c10-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000

a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000


a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1223.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57507615-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8141.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ea98141&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 680d7e3b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1212.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56847996-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R73C9.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ce373d9&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: dedccbc0-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1226.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57653835-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBB06.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1bc7bb06&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bf35dd8f-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1224.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57588159-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBA89.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1b22ba89&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 980e676b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1819.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-78875525-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8D2A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_189b8d2a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 28507878-032c-1

1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1220.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57350210-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1AA3.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_18471aa3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 0a3bda7e-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1227.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57743582-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1A64.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_16e91a64&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: f4b409e3-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1909.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-2013536-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER
BA2A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_136aba2a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 18ed3522-0333-11
e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1207.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56521018-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8FE1.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_12a68fe1&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1bfeac1d-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1951.dmp&#x000d;&#x0

00a;C:\Windows\Temp\WER-372171-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERB
DF1.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_11b5be01&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: eae8680f-0338-11e
5-8bad-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1857.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-1273982-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER
7158.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_10977158&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 601cf4c5-0331-11
e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1844.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-510092-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERE
0FB.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0a5be10b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 98bfd23d-032f-11e
5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1811.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-78383092-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RC09.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_09e00c19&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 02cd21f1-032b-11
e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1908.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-1958483-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER
E30E.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_0585e30e&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: f81c002f-0332-11
e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:59 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&

#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000


a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1833.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-79710754-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R4B6A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_02e04b6a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1a27a3f9-032e-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:52 PM
Windows Error Reporting Fault bucket 1269245841, type 21
&#x000d;&#x000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not a
vailable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signatu
re:&#x000d;&#x000a;P1: 7.6.7601.18804&#x000d;&#x000a;P2: 80240055&#x000d;&#x000a
;P3: 74256EC4-CE5C-46AE-B60F-7BB99C5B0C7D&#x000d;&#x000a;P4: Download&#x000d;&#x
000a;P5: 200&#x000d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: Automa
ticUpdates&#x000d;&#x000a;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x0
00a;P10: 0&#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d
;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Micros
oft\Windows\WER\ReportArchive\NonCritical_7.6.7601.18804_a793991257bb69fe5c0c1cc
e2d46b364f6fcca0_11e28304&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 0838b517-0339-11e
5-8bad-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:52 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not available&#x
000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;
&#x000a;P1: 7.6.7601.18804&#x000d;&#x000a;P2: 80240055&#x000d;&#x000a;P3: 74256E
C4-CE5C-46AE-B60F-7BB99C5B0C7D&#x000d;&#x000a;P4: Download&#x000d;&#x000a;P5: 20
0&#x000d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: AutomaticUpdates&
#x000d;&#x000a;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x000a;P10: 0&
#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;Th
ese files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows
\WER\ReportQueue\NonCritical_7.6.7601.18804_a793991257bb69fe5c0c1cce2d46b364f6fc
ca0_cab_11e66e7b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a
;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 0838b517-0339-11e5-8bad-88
ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 11:52 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not available&#x
000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;
&#x000a;P1: 7.6.7601.18804&#x000d;&#x000a;P2: 80240055&#x000d;&#x000a;P3: 74256E
C4-CE5C-46AE-B60F-7BB99C5B0C7D&#x000d;&#x000a;P4: Download&#x000d;&#x000a;P5: 20
0&#x000d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: AutomaticUpdates&
#x000d;&#x000a;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x000a;P10: 0&
#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;Th
ese files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;
Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Repor
t Id: 0838b517-0339-11e5-8bad-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:51 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERB347.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_11bdeaea&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec

king for solution: 0&#x000d;&#x000a;Report Id: eae819ee-0338-11e5-8bad-88ae1dfad


3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:51 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1951.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-372171-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERB
DF1.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_11b5be01&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: eae8680f-0338-11e
5-8bad-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 11:10 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERBE30.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_167fe704&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: 193aba05-0333-11e5-b6d2-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:09 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1909.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-2013536-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER
BA2A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_136aba2a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 18ed3522-0333-11
e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 11:08 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;
Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: e
vilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#x000d;&#x0
00a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5555aeba&#x
000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&#x000a;P9:
&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x
000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERE723.tmp.WERInternalMetad
ata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d
;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\WER\ReportA
rchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9_151df833&
#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for s
olution: 0&#x000d;&#x000a;Report Id: f85e6157-0332-11e5-b6d2-88ae1dfad3f8&#x000d
;&#x000a;Report Status: 65
5/25/2015 11:08 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: AppHangTransient&#x000d;&#x000a;Response: Not available&#x000d;
&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x00
0a;P1: EvilWithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#x0

00d;&#x000a;P4: unknown&#x000d;&#x000a;P5: unknown&#x000d;&#x000a;P6: unknown&#x


000d;&#x000a;P7: unknown&#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;
P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x0
00a;These files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#
x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a
;Report Id: f317bf62-0332-11e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 1
5/25/2015 11:08 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1908.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-1958483-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER
E30E.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_0585e30e&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: f81c002f-0332-11
e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 11:05 PM
Windows Error Reporting Fault bucket 1267652878, type 21
&#x000d;&#x000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not a
vailable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signatu
re:&#x000d;&#x000a;P1: 7.6.7601.18804&#x000d;&#x000a;P2: 80072ee2&#x000d;&#x000a
;P3: 00000000-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a
;P5: 0&#x000d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: ChkWuDrv&#x0
00d;&#x000a;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x000a;P10: 0&#x0
00d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These
files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WE
R\ReportArchive\NonCritical_7.6.7601.18804_74e5c0bacc739bac49e1c737555278d8e976a
6e6_16cf341a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rec
hecking for solution: 0&#x000d;&#x000a;Report Id: 8c3dcfb8-0332-11e5-b6d2-88ae1d
fad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:05 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not available&#x
000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;
&#x000a;P1: 7.6.7601.18804&#x000d;&#x000a;P2: 80072ee2&#x000d;&#x000a;P3: 000000
00-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 0&#x00
0d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: ChkWuDrv&#x000d;&#x000a
;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x000a;P10: 0&#x000d;&#x000a
;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\NonCritical_7.6.7601.18804_74e5c0bacc739bac49e1c737555278d8e976a6e6_cab_14db1
fa0&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking f
or solution: 0&#x000d;&#x000a;Report Id: 8c3dcfb8-0332-11e5-b6d2-88ae1dfad3f8&#x
000d;&#x000a;Report Status: 4
5/25/2015 11:05 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not available&#x
000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;
&#x000a;P1: 7.6.7601.18804&#x000d;&#x000a;P2: 80072ee2&#x000d;&#x000a;P3: 000000
00-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 0&#x00
0d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: ChkWuDrv&#x000d;&#x000a
;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x000a;P10: 0&#x000d;&#x000a
;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbo
l: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 8c3dcfb8
-0332-11e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:03 PM
Windows Error Reporting Fault bucket 1272035361, type 21
&#x000d;&#x000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not a
vailable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signatu
re:&#x000d;&#x000a;P1: 7.6.7601.18804&#x000d;&#x000a;P2: 80072efe&#x000d;&#x000a

;P3: 00000000-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a


;P5: 0&#x000d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: ChkWuDrv&#x0
00d;&#x000a;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x000a;P10: 0&#x0
00d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These
files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WE
R\ReportArchive\NonCritical_7.6.7601.18804_3a6beb683f59bb4f49196e124810db8df8ab1
2ab_06654bde&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rec
hecking for solution: 0&#x000d;&#x000a;Report Id: 41ba0368-0332-11e5-b6d2-88ae1d
fad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 11:03 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not available&#x
000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;
&#x000a;P1: 7.6.7601.18804&#x000d;&#x000a;P2: 80072efe&#x000d;&#x000a;P3: 000000
00-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 0&#x00
0d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: ChkWuDrv&#x000d;&#x000a
;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x000a;P10: 0&#x000d;&#x000a
;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\NonCritical_7.6.7601.18804_3a6beb683f59bb4f49196e124810db8df8ab12ab_cab_09113
736&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking f
or solution: 0&#x000d;&#x000a;Report Id: 41ba0368-0332-11e5-b6d2-88ae1dfad3f8&#x
000d;&#x000a;Report Status: 4
5/25/2015 11:03 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not available&#x
000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;
&#x000a;P1: 7.6.7601.18804&#x000d;&#x000a;P2: 80072efe&#x000d;&#x000a;P3: 000000
00-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 0&#x00
0d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: ChkWuDrv&#x000d;&#x000a
;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x000a;P10: 0&#x000d;&#x000a
;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbo
l: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 41ba0368
-0332-11e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:58 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WER7510.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_11d8926f&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: 6064ad31-0331-11e5-b6d2-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:57 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1857.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-1273982-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WER
7158.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_10977158&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 601cf4c5-0331-11
e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4

5/25/2015 10:53 PM
Windows Error Reporting Fault bucket 1302921571, type 21
&#x000d;&#x000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not a
vailable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signatu
re:&#x000d;&#x000a;P1: 7.6.7601.18804&#x000d;&#x000a;P2: 80072ee2&#x000d;&#x000a
;P3: 00000000-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a
;P5: 0&#x000d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: <<PROCESS>>:
sdiagnhost.exe&#x000d;&#x000a;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d
;&#x000a;P10: 0&#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#
x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\M
icrosoft\Windows\WER\ReportArchive\NonCritical_7.6.7601.18804_5593e43c2eb7b9bd6f
0db8bd6e48d5b9cb76f44_0673cfcc&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &
#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: cefe8bdc-033
0-11e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:53 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not available&#x
000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;
&#x000a;P1: 7.6.7601.18804&#x000d;&#x000a;P2: 80072ee2&#x000d;&#x000a;P3: 000000
00-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 0&#x00
0d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: <<PROCESS>>: sdiagnhost
.exe&#x000d;&#x000a;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x000a;P1
0: 0&#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x00
0a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Wi
ndows\WER\ReportQueue\NonCritical_7.6.7601.18804_5593e43c2eb7b9bd6f0db8bd6e48d5b
9cb76f44_cab_1497b9dc&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#
x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: cefe8bdc-0330-11e5-b6
d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 10:53 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not available&#x
000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;
&#x000a;P1: 7.6.7601.18804&#x000d;&#x000a;P2: 80072ee2&#x000d;&#x000a;P3: 000000
00-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 0&#x00
0d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: <<PROCESS>>: sdiagnhost
.exe&#x000d;&#x000a;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x000a;P1
0: 0&#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x00
0a;These files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x
000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;
Report Id: cefe8bdc-0330-11e5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:51 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1223.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57507615-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8141.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ea98141&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 680d7e3b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:51 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1212.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56847996-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R73C9.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu

eue\Kernel_0_0_cab_1ce373d9&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0


00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: dedccbc0-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:51 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1226.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57653835-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBB06.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1bc7bb06&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bf35dd8f-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:51 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1224.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57588159-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBA89.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1b22ba89&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 980e676b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:51 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1819.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-78875525-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8D2A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_189b8d2a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 28507878-032c-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:51 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1220.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57350210-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1AA3.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_18471aa3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 0a3bda7e-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:51 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000

a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000


d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1227.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57743582-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1A64.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_16e91a64&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: f4b409e3-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:51 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1207.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56521018-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8FE1.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_12a68fe1&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1bfeac1d-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:51 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1844.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-510092-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERE
0FB.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0a5be10b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 98bfd23d-032f-11e
5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:51 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1811.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-78383092-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RC09.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_09e00c19&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 02cd21f1-032b-11
e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:51 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1833.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-79710754-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R4B6A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_02e04b6a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1a27a3f9-032e-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0

5/25/2015 10:49 PM
Windows Error Reporting Fault bucket 248211877, type 19&
#x000d;&#x000a;Event Name: BEX&#x000d;&#x000a;Response: Not available&#x000d;&#x
000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;
P1: DriverUpdate.exe&#x000d;&#x000a;P2: 2.3.1.0&#x000d;&#x000a;P3: 551d4cfe&#x00
0d;&#x000a;P4: UnifiedLogger.dll_unloaded&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x0
00a;P6: 5511b23f&#x000d;&#x000a;P7: 72376f78&#x000d;&#x000a;P8: c0000005&#x000d;
&#x000a;P9: 00000008&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attache
d files:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WER9A7A.t
mp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be ava
ilable here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\A
ppCrash_DriverUpdate.exe_2712c533d61685a4e1a55ff76ab30b822f85086_05d8aef4&#x000d
;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solutio
n: 0&#x000d;&#x000a;Report Id: 5509bc67-0330-11e5-b6d2-88ae1dfad3f8&#x000d;&#x00
0a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket 247872832, type 19&
#x000d;&#x000a;Event Name: BEX&#x000d;&#x000a;Response: Not available&#x000d;&#x
000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;
P1: DriverUpdate.exe&#x000d;&#x000a;P2: 2.3.1.0&#x000d;&#x000a;P3: 551d4cfe&#x00
0d;&#x000a;P4: UnifiedLogger.dll_unloaded&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x0
00a;P6: 5511b23f&#x000d;&#x000a;P7: 72389e58&#x000d;&#x000a;P8: c0000005&#x000d;
&#x000a;P9: 00000008&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attache
d files:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WER7FAA.t
mp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be ava
ilable here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\A
ppCrash_DriverUpdate.exe_178b319c9be0d4dedaeacde99c132a111bdf992_05f89452&#x000d
;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solutio
n: 0&#x000d;&#x000a;Report Id: 50b5e26e-0330-11e5-b6d2-88ae1dfad3f8&#x000d;&#x00
0a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1223.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57507615-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8141.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ea98141&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 680d7e3b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1212.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56847996-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R73C9.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ce373d9&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: dedccbc0-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000

d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1226.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57653835-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBB06.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1bc7bb06&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bf35dd8f-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1224.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57588159-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBA89.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1b22ba89&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 980e676b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1819.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-78875525-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8D2A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_189b8d2a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 28507878-032c-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1220.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57350210-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1AA3.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_18471aa3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 0a3bda7e-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1227.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57743582-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1A64.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_16e91a64&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: f4b409e3-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x

000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&


#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1207.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56521018-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8FE1.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_12a68fe1&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1bfeac1d-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1844.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-510092-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERE
0FB.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0a5be10b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 98bfd23d-032f-11e
5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1811.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-78383092-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RC09.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_09e00c19&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 02cd21f1-032b-11
e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:49 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1833.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-79710754-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R4B6A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_02e04b6a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1a27a3f9-032e-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:44 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERCE94.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he

re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_06c0001f&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: 98c3a2db-032f-11e5-b6d2-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:44 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1844.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-510092-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WERE
0FB.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may b
e available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueu
e\Kernel_0_0_cab_0a5be10b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000
d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 98bfd23d-032f-11e
5-b6d2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 10:33 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WER4DCA.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_1a8070e4&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: 1a342748-032e-11e5-9ba9-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:33 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1833.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-79710754-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R4B6A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_02e04b6a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1a27a3f9-032e-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 10:33 PM
Windows Error Reporting Fault bucket 246441335, type 19&
#x000d;&#x000a;Event Name: BEX&#x000d;&#x000a;Response: Not available&#x000d;&#x
000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;
P1: DriverUpdate.exe&#x000d;&#x000a;P2: 2.3.1.0&#x000d;&#x000a;P3: 551d4cfe&#x00
0d;&#x000a;P4: UnifiedLogger.dll_unloaded&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x0
00a;P6: 5511b23f&#x000d;&#x000a;P7: 60546f78&#x000d;&#x000a;P8: c0000005&#x000d;
&#x000a;P9: 00000008&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attache
d files:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERED63.t
mp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be ava
ilable here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\A
ppCrash_DriverUpdate.exe_e86aa66961421b52d73775183b332383565776_173c01ad&#x000d;
&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution
: 0&#x000d;&#x000a;Report Id: 0bf0d251-032e-11e5-9ba9-88ae1dfad3f8&#x000d;&#x000
a;Report Status: 0
5/25/2015 10:33 PM
Windows Error Reporting Fault bucket 246441314, type 19&

#x000d;&#x000a;Event Name: BEX&#x000d;&#x000a;Response: Not available&#x000d;&#x


000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;
P1: DriverUpdate.exe&#x000d;&#x000a;P2: 2.3.1.0&#x000d;&#x000a;P3: 551d4cfe&#x00
0d;&#x000a;P4: UnifiedLogger.dll_unloaded&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x0
00a;P6: 5511b23f&#x000d;&#x000a;P7: 60559e58&#x000d;&#x000a;P8: c0000005&#x000d;
&#x000a;P9: 00000008&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attache
d files:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERD7E0.t
mp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be ava
ilable here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\A
ppCrash_DriverUpdate.exe_de2f589969042572b36ea2730862ea593961376_018bec69&#x000d
;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solutio
n: 0&#x000d;&#x000a;Report Id: 08a607ca-032e-11e5-9ba9-88ae1dfad3f8&#x000d;&#x00
0a;Report Status: 0
5/25/2015 10:33 PM
Windows Error Reporting Fault bucket 1094431605, type 17
&#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: DriverUpdate.exe&#x000d;&#x000a;P2: 2.3.1.0&#x000d;&#x000a;P3: 551d4cf
e&#x000d;&#x000a;P4: DriverUpdate.exe&#x000d;&#x000a;P5: 2.3.1.0&#x000d;&#x000a;
P6: 551d4cfe&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00030564&#x000d;&#x0
00a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x0
00d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERAE41.tmp.WERIntern
alMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:
&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Driv
erUpdate.exe_e0e3994ec742c1a5565fdd4310af7841d3ada6a9_0dd7cf58&#x000d;&#x000a;&#
x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d
;&#x000a;Report Id: fff7eb20-032d-11e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report S
tatus: 0
5/25/2015 10:20 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WER9045.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_1ed7b10e&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: 285d70f9-032c-11e5-9ba9-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1819.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-78875525-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8D2A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_189b8d2a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 28507878-032c-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000

d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1223.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57507615-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8141.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ea98141&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 680d7e3b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1212.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56847996-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R73C9.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ce373d9&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: dedccbc0-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1226.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57653835-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBB06.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1bc7bb06&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bf35dd8f-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1224.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57588159-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBA89.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1b22ba89&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 980e676b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1220.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57350210-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1AA3.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_18471aa3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 0a3bda7e-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x

000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&


#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1227.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57743582-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1A64.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_16e91a64&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: f4b409e3-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1207.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56521018-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8FE1.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_12a68fe1&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1bfeac1d-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1811.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-78383092-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RC09.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_09e00c19&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 02cd21f1-032b-11
e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:19 PM
Windows Error Reporting Fault bucket 1202674854, type 17
&#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: The_Fall_Of_The_New_Age.exe&#x000d;&#x000a;P2: 4.1.5.1944&#x000d;&#x00
0a;P3: 51b0ce73&#x000d;&#x000a;P4: ntdll.dll&#x000d;&#x000a;P5: 6.1.7601.18839&#
x000d;&#x000a;P6: 553e8808&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 000223
22&#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attac
hed files:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERA18D
.tmp.appcompat.txt&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp
\WERA5C3.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\Users\Preferred Customer\
AppData\Local\Temp\WERA5D3.tmp.hdmp&#x000d;&#x000a;C:\Users\Preferred Customer\A
ppData\Local\Temp\WERB35C.tmp.mdmp&#x000d;&#x000a;&#x000d;&#x000a;These files ma
y be available here:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Mi
crosoft\Windows\WER\ReportArchive\AppCrash_The_Fall_Of_The__635bac6011aabe961c5b
48def1d1c7cba495c239_106ad6b7&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#
x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 42333db7-0283
-11e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:16 PM
Windows Error Reporting Fault bucket 10, type 5&#x000d;&
#x000a;Event Name: PCA2&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Ca
b Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: dxw
ebsetup-feb2010.exe&#x000d;&#x000a;P2: 6.0.2600.0&#x000d;&#x000a;P3: DirectX 9.0
Web setup&#x000d;&#x000a;P4: Microsoft Windows Operating System&#x000d;&#x000a;P5

: Microsoft Corporation&#x000d;&#x000a;P6: 1&#x000d;&#x000a;P7: 201&#x000d;&#x00


0a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;
Attached files:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\{0
5f8880b-0647-4252-88c6-1ae81c56d6a4}\appcompat.txt&#x000d;&#x000a;&#x000d;&#x000
a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Win
dows\WER\ReportArchive\NonCritical_dxwebsetup-feb20_a649d47263484a8db62450925981
a6c8190c9_0a1c0a83&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x00
0a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 9c4ebaba-032b-11e5-9ba988ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:12 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERA06.tmp.WERInte
rnalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available her
e:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\WE
R\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9_
1c8499d6&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Recheck
ing for solution: 0&#x000d;&#x000a;Report Id: 02d697f4-032b-11e5-9ba9-88ae1dfad3
f8&#x000d;&#x000a;Report Status: 0
5/25/2015 10:11 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1811.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-78383092-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RC09.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQue
ue\Kernel_0_0_cab_09e00c19&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x00
0d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 02cd21f1-032b-11
e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 4:27 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;
Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: e
vilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#x000d;&#x0
00a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5555aeba&#x
000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&#x000a;P9:
&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x
000a;C:\Users\Preferred Customer\AppData\Local\Temp\WER1BEA.tmp.WERInternalMetad
ata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d
;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\WER\ReportA
rchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9_16c529a0&
#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for s
olution: 0&#x000d;&#x000a;Report Id: f4be1c29-02fa-11e5-9ba9-88ae1dfad3f8&#x000d
;&#x000a;Report Status: 65
5/25/2015 4:27 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1227.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57743582-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1A64.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu

eue\Kernel_0_0_cab_16e91a64&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0


00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: f4b409e3-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 4:26 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERBE60.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_159ff519&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: bf6ad106-02fa-11e5-9ba9-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 4:26 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1226.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57653835-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBB06.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1bc7bb06&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bf35dd8f-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 4:25 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERBDB5.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_138720da&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: 9845a4da-02fa-11e5-9ba9-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 4:25 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1224.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57588159-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
RBA89.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1b22ba89&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 980e676b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 4:24 PM
Windows Error Reporting Fault bucket 50, type 5&#x000d;&
#x000a;Event Name: AppHangB1&#x000d;&#x000a;Response: Not available&#x000d;&#x00
0a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1

: The_Fall_Of_The_New_Age.exe&#x000d;&#x000a;P2: 4.1.5.1944&#x000d;&#x000a;P3: 5
1b0ce73&#x000d;&#x000a;P4: 382a&#x000d;&#x000a;P5: 2048&#x000d;&#x000a;P6: &#x00
0d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x0
00d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Preferred Cu
stomer\AppData\Local\Temp\WER3978.tmp.appcompat.txt&#x000d;&#x000a;C:\Users\Pref
erred Customer\AppData\Local\Temp\WER3CB4.tmp.WERInternalMetadata.xml&#x000d;&#x
000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Users\
Preferred Customer\AppData\Local\Microsoft\Windows\WER\ReportArchive\Critical_Th
e_Fall_Of_The__1289cf2c91759f9967cc06f7715920ab59ddea_1776536e&#x000d;&#x000a;&#
x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d
;&#x000a;Report Id: 84146efa-02fa-11e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report S
tatus: 0
5/25/2015 4:24 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: AppHangB1&#x000d;&#x000a;Response: Not available&#x000d;&#x000a
;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1:
TS4.exe&#x000d;&#x000a;P2: 1.7.65.1020&#x000d;&#x000a;P3: 555636ec&#x000d;&#x000
a;P4: 369c&#x000d;&#x000a;P5: 6144&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000
d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&
#x000a;Attached files:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\
Temp\WER406B.tmp.appcompat.txt&#x000d;&#x000a;C:\Users\Preferred Customer\AppDat
a\Local\Temp\WER44A0.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;
These files may be available here:&#x000d;&#x000a;C:\Users\Preferred Customer\Ap
pData\Local\Microsoft\Windows\WER\ReportArchive\Critical_TS4.exe_7fc5be2c8140853
8aff1f555ffbb0d576c987ed_1ede4be0&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol
: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 8564256502fa-11e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 1
5/25/2015 4:23 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WER820C.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_04b9becd&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: 682db0e3-02fa-11e5-9ba9-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 4:23 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1223.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57507615-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8141.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ea98141&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 680d7e3b-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 4:21 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&

#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WER1B7D.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_1de397dd&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: 0a59ea3e-02fa-11e5-9ba9-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 4:21 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1220.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-57350210-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R1AA3.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_18471aa3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 0a3bda7e-02fa-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 4:12 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WER731E.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_1eb7a841&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: deed46be-02f8-11e5-9ba9-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 4:12 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1212.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56847996-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R73C9.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_1ce373d9&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: dedccbc0-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 4:07 PM
Windows Error Reporting Fault bucket 185946336, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e4fef&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WER7C03.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_2d3f840207bd2bc8ef24e48c3ce153753dba4b9
_0846aaff&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: 1c2dac0d-02f8-11e5-9ba9-88ae1dfad

3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 4:07 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: LiveKernelEvent&#x000d;&#x000a;Response: Not available&#x000d;&
#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000
a;P1: &#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000
a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000
a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000
d;&#x000a;C:\Windows\LiveKernelReports\WATCHDOG\WD-20150525-1207.dmp&#x000d;&#x0
00a;C:\Windows\Temp\WER-56521018-0.sysdata.xml&#x000d;&#x000a;C:\Windows\Temp\WE
R8FE1.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may
be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQu
eue\Kernel_0_0_cab_12a68fe1&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1bfeac1d-02f8-1
1e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 4:05 PM
Windows Error Reporting Fault bucket 186224898, type 20&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: evilwithin.exe&#x000d;&#x000a;P2: 1.0.0.0&#x000d;&#x000a;P3: 5555aeba&#
x000d;&#x000a;P4: evilwithin.exe&#x000d;&#x000a;P5: 1.0.0.0&#x000d;&#x000a;P6: 5
555aeba&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00000000001e52d5&#x000d;&
#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&
#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WER5300.tmp.WERInt
ernalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportArchive\AppCrash_evilwithin.exe_defb484cf7d7250b996cf12102a9551d6b09f19
_1c387a6e&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechec
king for solution: 0&#x000d;&#x000a;Report Id: c8af0184-02f7-11e5-9ba9-88ae1dfad
3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 1:58 PM
Windows Error Reporting Fault bucket 1215553763, type 17
&#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: TS4.exe&#x000d;&#x000a;P2: 1.7.65.1020&#x000d;&#x000a;P3: 555636ec&#x0
00d;&#x000a;P4: TS4.exe&#x000d;&#x000a;P5: 1.7.65.1020&#x000d;&#x000a;P6: 555636
ec&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00d31f1b&#x000d;&#x000a;P9: &#
x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000
a;C:\Users\Preferred Customer\AppData\Local\Temp\WER8F71.tmp.WERInternalMetadata
.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#
x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\WER\ReportArch
ive\AppCrash_TS4.exe_5f6f1eb3076d41c3a2589e4a4b5ff21297c527_0ff8700f&#x000d;&#x0
00a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&
#x000d;&#x000a;Report Id: d0da0bac-02e5-11e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Re
port Status: 0
5/25/2015 2:14 AM
Windows Error Reporting Fault bucket 3866807218, type 5&
#x000d;&#x000a;Event Name: RADAR_PRE_LEAK_WOW64&#x000d;&#x000a;Response: Not ava
ilable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature
:&#x000d;&#x000a;P1: The_Fall_Of_The_New_Age.exe&#x000d;&#x000a;P2: 4.1.5.1944&#
x000d;&#x000a;P3: 6.1.7601.2.1.0&#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;
&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;
&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\U
sers\Preferred Customer\AppData\Local\Temp\RDRBEFC.tmp\empty.txt&#x000d;&#x000a;
&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x000d;&#x000
a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x
000d;&#x000a;Report Id: bc210833-0283-11e5-9ba9-88ae1dfad3f8&#x000d;&#x000a;Repo
rt Status: 0
5/25/2015 2:10 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;
Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: T
he_Fall_Of_The_New_Age.exe&#x000d;&#x000a;P2: 4.1.5.1944&#x000d;&#x000a;P3: 51b0
ce73&#x000d;&#x000a;P4: ntdll.dll&#x000d;&#x000a;P5: 6.1.7601.18839&#x000d;&#x00
0a;P6: 553e8808&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 00022322&#x000d;&

#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&


#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERA18D.tmp.appcom
pat.txt&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\WERA5C3.tm
p.WERInternalMetadata.xml&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Loc
al\Temp\WERA5D3.tmp.hdmp&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Loca
l\Temp\WERB35C.tmp.mdmp&#x000d;&#x000a;&#x000d;&#x000a;These files may be availa
ble here:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Win
dows\WER\ReportQueue\AppCrash_The_Fall_Of_The__635bac6011aabe961c5b48def1d1c7cba
495c239_cab_0994b3c6&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x
000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 42333db7-0283-11e5-9ba
9-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 12:39 AM
Windows Error Reporting Fault bucket 452704182, type 5&#
x000d;&#x000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not avail
able&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&
#x000d;&#x000a;P1: Microsoft Windows.NetworkDiagnostics.1.0&#x000d;&#x000a;P2: D
efault&#x000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#x000a;P5:
&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9:
&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x0
00a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Users\P
referred Customer\AppData\Local\Microsoft\Windows\WER\ReportArchive\NonCritical_
Microsoft Window_bd5996727e9ea1acda90841fa2c99a88df4fb9d6_0df8cb2a&#x000d;&#x000
a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x
000d;&#x000a;Report Id: 21020c5e-0272-11e5-a551-88ae1dfad3f8&#x000d;&#x000a;Repo
rt Status: 0
5/25/2015 12:39 AM
Windows Error Reporting Fault bucket 394270863, type 5&#
x000d;&#x000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not avail
able&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&
#x000d;&#x000a;P1: Microsoft Corporation.NetworkDiagnosticsNetworkAdapter.1.0&#x
000d;&#x000a;P2: Default&#x000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#
x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#
x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached
files:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\msdt\_ECB00
8BE-3E00-43CF-B737-4948CD0C82D1_\Pkg4028.cab&#x000d;&#x000a;&#x000d;&#x000a;Thes
e files may be available here:&#x000d;&#x000a;C:\Users\Preferred Customer\AppDat
a\Local\Microsoft\Windows\WER\ReportArchive\NonCritical_Microsoft Corpor_eb4ecb9
214aefe59b8e5b6e6bb7908b547779aa_0df8b818&#x000d;&#x000a;&#x000d;&#x000a;Analysi
s symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 3
ac63094-0272-11e5-a551-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 12:39 AM
Windows Error Reporting Fault bucket 496945475, type 5&#
x000d;&#x000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not avail
able&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&
#x000d;&#x000a;P1: Microsoft Corporation.NetworkDiagnosticsWeb.1.0&#x000d;&#x000
a;P2: 1531239093&#x000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#
x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#
x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#
x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\msdt\_6437C70D-B487
-4262-A2AB-9B36EA150C63_\Pkg9AE4.cab&#x000d;&#x000a;&#x000d;&#x000a;These files
may be available here:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\
Microsoft\Windows\WER\ReportArchive\NonCritical_Microsoft Corpor_1e8d65a6a85ed26
a311c7046f751196cb42bb771_0df8a4c6&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbo
l: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 489dba2e
-0272-11e5-a551-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 12:09 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: Microsoft Corporation.NetworkDiagnosticsWeb.1.0&#x000d;&#x000a;P2: 153
1239093&#x000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#x000a;P5:
&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9:
&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x
000a;C:\Users\Preferred Customer\AppData\Local\Temp\msdt\_6437C70D-B487-4262-A2A

B-9B36EA150C63_\Pkg9AE4.cab&#x000d;&#x000a;&#x000d;&#x000a;These files may be av


ailable here:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft
\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_1e8d65a6a85ed26a311c7046f7
51196cb42bb771_cab_23cf9c6a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 489dba2e-0272-1
1e5-a551-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 12:09 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: Microsoft Corporation.NetworkDiagnosticsWeb.1.0&#x000d;&#x000a;P2: 153
1239093&#x000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#x000a;P5:
&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9:
&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x
000a;C:\Users\Preferred Customer\AppData\Local\Temp\msdt\_6437C70D-B487-4262-A2A
B-9B36EA150C63_\Pkg9AE4.cab&#x000d;&#x000a;&#x000d;&#x000a;These files may be av
ailable here:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft
\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_1e8d65a6a85ed26a311c7046f7
51196cb42bb771_cab_23cf9c6a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x0
00d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 489dba2e-0272-1
1e5-a551-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 12:08 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: Microsoft Corporation.NetworkDiagnosticsNetworkAdapter.1.0&#x000d;&#x0
00a;P2: Default&#x000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#x
000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x
000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x
000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\msdt\_ECB008BE-3E0043CF-B737-4948CD0C82D1_\Pkg4028.cab&#x000d;&#x000a;&#x000d;&#x000a;These files m
ay be available here:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\M
icrosoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_eb4ecb9214aefe59b8
e5b6e6bb7908b547779aa_cab_3ec7417f&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbo
l: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 3ac63094
-0272-11e5-a551-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 12:08 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: Microsoft Corporation.NetworkDiagnosticsNetworkAdapter.1.0&#x000d;&#x0
00a;P2: Default&#x000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#x
000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x
000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x
000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\msdt\_ECB008BE-3E0043CF-B737-4948CD0C82D1_\Pkg4028.cab&#x000d;&#x000a;&#x000d;&#x000a;These files m
ay be available here:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\M
icrosoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_eb4ecb9214aefe59b8
e5b6e6bb7908b547779aa_cab_3ec7417f&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbo
l: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 3ac63094
-0272-11e5-a551-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 12:08 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: Microsoft Windows.NetworkDiagnostics.1.0&#x000d;&#x000a;P2: Default&#x
000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#x000a;P5: &#x000d;&
#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&
#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Us
ers\Preferred Customer\AppData\Local\Temp\msdt\_ED58DA94-D113-4A59-AE4D-A4A449DA
F393_\Pkg5138.cab&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportQueue\NonCritical_Microsoft Window_bd5996727e9ea1acda90841fa2c99a88df4f
b9d6_cab_3f2d532b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000

a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: ef3f4858-0271-11e5-a551-8


8ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 12:08 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: Microsoft Windows.NetworkDiagnostics.1.0&#x000d;&#x000a;P2: Default&#x
000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#x000a;P5: &#x000d;&
#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&
#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x00
0d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Users\Preferred
Customer\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft W
indow_bd5996727e9ea1acda90841fa2c99a88df4fb9d6_3f429884&#x000d;&#x000a;&#x000d;&
#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000
a;Report Id: 21020c5e-0272-11e5-a551-88ae1dfad3f8&#x000d;&#x000a;Report Status:
0
5/25/2015 12:08 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: Microsoft Windows.NetworkDiagnostics.1.0&#x000d;&#x000a;P2: Default&#x
000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#x000a;P5: &#x000d;&
#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&
#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x00
0d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Users\Preferred
Customer\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft W
indow_bd5996727e9ea1acda90841fa2c99a88df4fb9d6_3f429884&#x000d;&#x000a;&#x000d;&
#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000
a;Report Id: 21020c5e-0272-11e5-a551-88ae1dfad3f8&#x000d;&#x000a;Report Status:
0
5/25/2015 12:08 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: Microsoft Windows.NetworkDiagnostics.1.0&#x000d;&#x000a;P2: Default&#x
000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#x000a;P5: &#x000d;&
#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&
#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x00
0d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Users\Preferred
Customer\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft W
indow_bd5996727e9ea1acda90841fa2c99a88df4fb9d6_3f429884&#x000d;&#x000a;&#x000d;&
#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000
a;Report Id: 21020c5e-0272-11e5-a551-88ae1dfad3f8&#x000d;&#x000a;Report Status:
4
5/25/2015 12:06 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: Microsoft Windows.NetworkDiagnostics.1.0&#x000d;&#x000a;P2: Default&#x
000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#x000a;P5: &#x000d;&
#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&
#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Us
ers\Preferred Customer\AppData\Local\Temp\msdt\_ED58DA94-D113-4A59-AE4D-A4A449DA
F393_\Pkg5138.cab&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportQueue\NonCritical_Microsoft Window_bd5996727e9ea1acda90841fa2c99a88df4f
b9d6_cab_3f2d532b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000
a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: ef3f4858-0271-11e5-a551-8
8ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/25/2015 12:06 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: Microsoft Windows.NetworkDiagnostics.1.0&#x000d;&#x000a;P2: Default&#x
000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#x000a;P5: &#x000d;&

#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&


#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Us
ers\Preferred Customer\AppData\Local\Temp\msdt\_ED58DA94-D113-4A59-AE4D-A4A449DA
F393_\Pkg5138.cab&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he
re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportQueue\NonCritical_Microsoft Window_bd5996727e9ea1acda90841fa2c99a88df4f
b9d6_cab_3f2d532b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000
a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: ef3f4858-0271-11e5-a551-8
8ae1dfad3f8&#x000d;&#x000a;Report Status: 4
5/25/2015 12:03 AM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: PDUWICA&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;C
ab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 3&
#x000d;&#x000a;P2: 2.1&#x000d;&#x000a;P3: 6.1.1.0&#x000d;&#x000a;P4: 1033&#x000d
;&#x000a;P5: 55&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x00
0d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached fil
es:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x
000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking
for solution: 0&#x000d;&#x000a;Report Id: 840b4cb8-0271-11e5-a551-88ae1dfad3f8&
#x000d;&#x000a;Report Status: 0
5/19/2015 7:05 AM
Windows Error Reporting Fault bucket 1346076112, type 21
&#x000d;&#x000a;Event Name: PDUWICA&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: 3&#x000d;&#x000a;P2: 2.1&#x000d;&#x000a;P3: 6.1.1.0&#x000d;&#x000a;P4:
1033&#x000d;&#x000a;P5: 55&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000
a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;A
ttached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:
&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a
;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 740feda0-fdf5-11e4-a551-88
ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/18/2015 12:27 AM
Windows Error Reporting Fault bucket 3370317714, type 5&
#x000d;&#x000a;Event Name: RADAR_PRE_LEAK_WOW64&#x000d;&#x000a;Response: Not ava
ilable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature
:&#x000d;&#x000a;P1: FairlyTwistedTales_ThePriceOfARose.exe&#x000d;&#x000a;P2: 3
.5.6.44817&#x000d;&#x000a;P3: 6.1.7601.2.1.0&#x000d;&#x000a;P4: &#x000d;&#x000a;
P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;
P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;
&#x000a;C:\Users\Preferred Customer\AppData\Local\Temp\RDRE5AC.tmp\empty.txt&#x0
00d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#
x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for so
lution: 0&#x000d;&#x000a;Report Id: b3e40ad1-fcf4-11e4-a551-88ae1dfad3f8&#x000d;
&#x000a;Report Status: 0
5/16/2015 8:23 PM
Windows Error Reporting Fault bucket 10, type 5&#x000d;&
#x000a;Event Name: NetworkDiagnosticsFrameworkV3&#x000d;&#x000a;Response: Not av
ailable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signatur
e:&#x000d;&#x000a;P1: Microsoft&#x000d;&#x000a;P2: WinInetHelperClass [1.0]&#x00
0d;&#x000a;P3: 2&#x000d;&#x000a;P4: 8008F906&#x000d;&#x000a;P5: {07D37F7B-FA5E-4
443-BDA7-AB107B29AFB9}&#x000d;&#x000a;P6: WinInetHelperClass [1.0]&#x000d;&#x000
a;P7: {CE558189-1E5F-4d72-B83B-038A13F987D2}&#x000d;&#x000a;P8: N/A&#x000d;&#x00
0a;P9: N/A&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#
x000d;&#x000a;C:\Windows\System32\NDF\{C5D95ED6-06C2-43D7-8B47-56D18239D899}-WER
-04262015-1115.etl&#x000d;&#x000a;&#x000d;&#x000a;These files may be available h
ere:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritic
al_Microsoft_b4f0b049e260a3b4fdabf65814306952748aede_007e2d27&#x000d;&#x000a;&#x
000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;
&#x000a;Report Id: 02103658-ec27-11e4-a717-88ae1dfad3f8&#x000d;&#x000a;Report St
atus: 0
5/13/2015 8:59 AM
Windows Error Reporting Fault bucket 1346076112, type 21
&#x000d;&#x000a;Event Name: PDUWICA&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: 3&#x000d;&#x000a;P2: 2.1&#x000d;&#x000a;P3: 6.1.1.0&#x000d;&#x000a;P4:

1033&#x000d;&#x000a;P5: 55&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000


a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;A
ttached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:
&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a
;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 62773d3b-f94e-11e4-927b-88
ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/11/2015 4:05 PM
Windows Error Reporting Fault bucket 239475581, type 22&
#x000d;&#x000a;Event Name: RADAR_PRE_LEAK_WOW64&#x000d;&#x000a;Response: Not ava
ilable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature
:&#x000d;&#x000a;P1: chrome.exe&#x000d;&#x000a;P2: 42.0.2311.135&#x000d;&#x000a;
P3: 6.1.7601.2.1.0&#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#
x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &
#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Preferred
Customer\AppData\Local\Temp\RDR5481.tmp\empty.txt&#x000d;&#x000a;&#x000d;&#x000
a;These files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x0
00a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;R
eport Id: 96ec8319-f7f7-11e4-927b-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/7/2015 12:58 PM
Windows Error Reporting Fault bucket 1346076112, type 21
&#x000d;&#x000a;Event Name: PDUWICA&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: 3&#x000d;&#x000a;P2: 2.1&#x000d;&#x000a;P3: 6.1.1.0&#x000d;&#x000a;P4:
1033&#x000d;&#x000a;P5: 55&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000
a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;A
ttached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:
&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a
;Rechecking for solution: 0&#x000d;&#x000a;Report Id: b169f6b0-f4b8-11e4-8e9e-88
ae1dfad3f8&#x000d;&#x000a;Report Status: 0
5/2/2015 12:15 AM
Windows Error Reporting Fault bucket 1346076112, type 21
&#x000d;&#x000a;Event Name: PDUWICA&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: 3&#x000d;&#x000a;P2: 2.1&#x000d;&#x000a;P3: 6.1.1.0&#x000d;&#x000a;P4:
1033&#x000d;&#x000a;P5: 55&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000
a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;A
ttached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:
&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a
;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 5b5eaf0a-f060-11e4-97b1-88
ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/26/2015 3:40 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: RADAR_PRE_LEAK_WOW64&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: IEXPLORE.EXE&#x000d;&#x000a;P2: 11.0.9600.17728&#x000d;&#x000a;P3: 6.
1.7601.2.1.0&#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;
&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d
;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Preferred Custo
mer\AppData\Local\Temp\RDR1E2E.tmp\empty.txt&#x000d;&#x000a;&#x000d;&#x000a;Thes
e files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;An
alysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report
Id: 853940a7-ec2a-11e4-a717-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/26/2015 3:15 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: NetworkDiagnosticsFrameworkV3&#x000d;&#x000a;Response: Not avai
lable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:
&#x000d;&#x000a;P1: Microsoft&#x000d;&#x000a;P2: WinInetHelperClass [1.0]&#x000d
;&#x000a;P3: 2&#x000d;&#x000a;P4: 8008F906&#x000d;&#x000a;P5: {07D37F7B-FA5E-444
3-BDA7-AB107B29AFB9}&#x000d;&#x000a;P6: WinInetHelperClass [1.0]&#x000d;&#x000a;
P7: {CE558189-1E5F-4d72-B83B-038A13F987D2}&#x000d;&#x000a;P8: N/A&#x000d;&#x000a
;P9: N/A&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x0
00d;&#x000a;C:\Windows\System32\NDF\{C5D95ED6-06C2-43D7-8B47-56D18239D899}-WER-0
4262015-1115.etl&#x000d;&#x000a;&#x000d;&#x000a;These files may be available her
e:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_M
icrosoft_b4f0b049e260a3b4fdabf65814306952748aede_cab_21b9197c&#x000d;&#x000a;&#x

000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;


&#x000a;Report Id: 02103658-ec27-11e4-a717-88ae1dfad3f8&#x000d;&#x000a;Report St
atus: 0
4/26/2015 3:15 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: NetworkDiagnosticsFrameworkV3&#x000d;&#x000a;Response: Not avai
lable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:
&#x000d;&#x000a;P1: Microsoft&#x000d;&#x000a;P2: WinInetHelperClass [1.0]&#x000d
;&#x000a;P3: 2&#x000d;&#x000a;P4: 8008F906&#x000d;&#x000a;P5: {07D37F7B-FA5E-444
3-BDA7-AB107B29AFB9}&#x000d;&#x000a;P6: WinInetHelperClass [1.0]&#x000d;&#x000a;
P7: {CE558189-1E5F-4d72-B83B-038A13F987D2}&#x000d;&#x000a;P8: N/A&#x000d;&#x000a
;P9: N/A&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x0
00d;&#x000a;C:\Windows\System32\NDF\{C5D95ED6-06C2-43D7-8B47-56D18239D899}-WER-0
4262015-1115.etl&#x000d;&#x000a;&#x000d;&#x000a;These files may be available her
e:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_M
icrosoft_b4f0b049e260a3b4fdabf65814306952748aede_cab_21b9197c&#x000d;&#x000a;&#x
000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;
&#x000a;Report Id: 02103658-ec27-11e4-a717-88ae1dfad3f8&#x000d;&#x000a;Report St
atus: 4
4/26/2015 8:52 AM
Windows Error Reporting Fault bucket 1346076112, type 21
&#x000d;&#x000a;Event Name: PDUWICA&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: 3&#x000d;&#x000a;P2: 2.1&#x000d;&#x000a;P3: 6.1.1.0&#x000d;&#x000a;P4:
1033&#x000d;&#x000a;P5: 55&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000
a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;A
ttached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:
&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a
;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 846cc38f-ebf1-11e4-a717-88
ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/21/2015 8:20 AM
Windows Error Reporting Fault bucket 1346076112, type 21
&#x000d;&#x000a;Event Name: PDUWICA&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 1&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: 3&#x000d;&#x000a;P2: 2.1&#x000d;&#x000a;P3: 6.1.1.0&#x000d;&#x000a;P4:
1033&#x000d;&#x000a;P5: 55&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000
a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;A
ttached files:&#x000d;&#x000a;C:\Windows\appcompat\Programs\FullCompatReport.xml
&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000
a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_3_757427b6d44f9
451bf22e8eed9c86adab07575_cab_2f65f164&#x000d;&#x000a;&#x000d;&#x000a;Analysis s
ymbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 4343
2c69-e7ff-11e4-a717-88ae1dfad3f8&#x000d;&#x000a;Report Status: 8
4/21/2015 8:06 AM
Windows Error Reporting Fault bucket 1346076112, type 21
&#x000d;&#x000a;Event Name: PDUWICA&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: 3&#x000d;&#x000a;P2: 2.1&#x000d;&#x000a;P3: 6.1.1.0&#x000d;&#x000a;P4:
1033&#x000d;&#x000a;P5: 55&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000
a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;A
ttached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:
&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a
;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 4f818eda-e7fd-11e4-a717-88
ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/19/2015 11:21 PM
Windows Error Reporting Fault bucket 1903376407, type 5&
#x000d;&#x000a;Event Name: RADAR_PRE_LEAK_WOW64&#x000d;&#x000a;Response: Not ava
ilable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature
:&#x000d;&#x000a;P1: ccSvcHst.exe&#x000d;&#x000a;P2: 10.1.1.16&#x000d;&#x000a;P3
: 6.1.7601.2.1.0&#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x0
00d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x
000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Preferred C
ustomer\AppData\Local\Temp\RDR1235.tmp\empty.txt&#x000d;&#x000a;&#x000d;&#x000a;
These files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000
a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Rep

ort Id: c3096d04-e6ea-11e4-a73a-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0


4/18/2015 9:36 PM
Windows Error Reporting Fault bucket 1346076112, type 21
&#x000d;&#x000a;Event Name: PDUWICA&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: 3&#x000d;&#x000a;P2: 2.1&#x000d;&#x000a;P3: 6.1.1.0&#x000d;&#x000a;P4:
1033&#x000d;&#x000a;P5: 55&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000
a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;A
ttached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:
&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a
;Rechecking for solution: 0&#x000d;&#x000a;Report Id: ff5ab6ac-e612-11e4-b513-88
ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/18/2015 2:14 AM
Windows Error Reporting Fault bucket 229916374, type 22&
#x000d;&#x000a;Event Name: RADAR_PRE_LEAK_WOW64&#x000d;&#x000a;Response: Not ava
ilable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature
:&#x000d;&#x000a;P1: TS4.exe&#x000d;&#x000a;P2: 1.5.149.1020&#x000d;&#x000a;P3:
6.1.7601.2.1.0&#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000
d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x00
0d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Preferred Cus
tomer\AppData\Local\Temp\RDR9E0.tmp\empty.txt&#x000d;&#x000a;&#x000d;&#x000a;The
se files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;A
nalysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report
Id: a7356a5b-e570-11e4-b513-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:34 PM
Windows Error Reporting Fault bucket 1483144123, type 1&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: iviRegMgr.exe&#x000d;&#x000a;P2: 1.0.4.0&#x000d;&#x000a;P3: 459cd531&#x
000d;&#x000a;P4: StackHash_0a9e&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P6: 00
000000&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 75436cc4&#x000d;&#x000a;P9
: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#
x000a;C:\Windows\Temp\WER35A1.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\Temp\W
ER35E0.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\Windows\Temp\WER35E1.tmp.hd
mp&#x000d;&#x000a;C:\Windows\Temp\WER3601.tmp.mdmp&#x000d;&#x000a;&#x000d;&#x000
a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Win
dows\WER\ReportArchive\AppCrash_iviRegMgr.exe_8532e557a3d7d813d5a4845dd3ff0188b1
99a47_03d30972&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;R
echecking for solution: 0&#x000d;&#x000a;Report Id: dfcce75e-e392-11e4-b412-88ae
1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:33 PM
Windows Error Reporting Fault bucket 647934910, type 5&#
x000d;&#x000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 8024001f&#x000d;&#x000a;P2: EndSearch&#x000d;&#x000a;P3: Search&#x000
d;&#x000a;P4: 6.1.7600.16385&#x000d;&#x000a;P5: MpSigDwn.dll&#x000d;&#x000a;P6:
6.1.7600.16385&#x000d;&#x000a;P7: Windows Defender&#x000d;&#x000a;P8: &#x000d;&#
x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#
x000d;&#x000a;C:\Windows\Temp\MPTelemetrySubmit\client_manifest.txt&#x000d;&#x00
0a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramD
ata\Microsoft\Windows\WER\ReportArchive\NonCritical_8024001f_604fafac6edea57220a
2b55e1e395e45960debc_03d1ce47&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#
x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1831cdcc-e38e
-11e4-b412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:33 PM
Windows Error Reporting Fault bucket 647934910, type 5&#
x000d;&#x000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 8024001f&#x000d;&#x000a;P2: EndSearch&#x000d;&#x000a;P3: Search&#x000
d;&#x000a;P4: 6.1.7600.16385&#x000d;&#x000a;P5: MpSigDwn.dll&#x000d;&#x000a;P6:
6.1.7600.16385&#x000d;&#x000a;P7: Windows Defender&#x000d;&#x000a;P8: &#x000d;&#
x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#
x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_8024001f_604fafac
6edea57220a2b55e1e395e45960debc_03d1bb24&#x000d;&#x000a;&#x000d;&#x000a;Analysis

symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 52


ad39f8-e399-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:33 PM
Windows Error Reporting Fault bucket 647934910, type 5&#
x000d;&#x000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 8024001f&#x000d;&#x000a;P2: EndSearch&#x000d;&#x000a;P3: Search&#x000
d;&#x000a;P4: 6.1.7600.16385&#x000d;&#x000a;P5: MpSigDwn.dll&#x000d;&#x000a;P6:
6.1.7600.16385&#x000d;&#x000a;P7: Windows Defender&#x000d;&#x000a;P8: &#x000d;&#
x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#
x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_8024001f_604fafac
6edea57220a2b55e1e395e45960debc_03d1a7f2&#x000d;&#x000a;&#x000d;&#x000a;Analysis
symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 14
eda54b-e39a-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:32 PM
Windows Error Reporting Fault bucket 647934910, type 5&#
x000d;&#x000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 8024001f&#x000d;&#x000a;P2: EndSearch&#x000d;&#x000a;P3: Search&#x000
d;&#x000a;P4: 6.1.7600.16385&#x000d;&#x000a;P5: MpSigDwn.dll&#x000d;&#x000a;P6:
6.1.7600.16385&#x000d;&#x000a;P7: Windows Defender&#x000d;&#x000a;P8: &#x000d;&#
x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#
x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_8024001f_604fafac
6edea57220a2b55e1e395e45960debc_03d194c0&#x000d;&#x000a;&#x000d;&#x000a;Analysis
symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 47
5ec411-e39e-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:32 PM
Windows Error Reporting Fault bucket 647934910, type 5&#
x000d;&#x000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 8024001f&#x000d;&#x000a;P2: EndSearch&#x000d;&#x000a;P3: Search&#x000
d;&#x000a;P4: 6.1.7600.16385&#x000d;&#x000a;P5: MpSigDwn.dll&#x000d;&#x000a;P6:
6.1.7600.16385&#x000d;&#x000a;P7: Windows Defender&#x000d;&#x000a;P8: &#x000d;&#
x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#
x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_8024001f_604fafac
6edea57220a2b55e1e395e45960debc_03d1695d&#x000d;&#x000a;&#x000d;&#x000a;Analysis
symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: cc
383fbe-e38e-11e4-b412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:32 PM
Windows Error Reporting Fault bucket 124726384, type 21&
#x000d;&#x000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not ava
ilable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature
:&#x000d;&#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3:
00000000-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5:
101&#x000d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d
;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files
:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x00
0a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_7.6.7600.320_2
f6834f5ad080777588737322b1dbccbd6bccdd_03d1563a&#x000d;&#x000a;&#x000d;&#x000a;A
nalysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report
Id: 55a490ef-e399-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:32 PM
Windows Error Reporting Fault bucket 124726384, type 21&
#x000d;&#x000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not ava
ilable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature
:&#x000d;&#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3:
00000000-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5:
101&#x000d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d
;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files
:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x00
0a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_7.6.7600.320_2
f6834f5ad080777588737322b1dbccbd6bccdd_03d14366&#x000d;&#x000a;&#x000d;&#x000a;A

nalysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report


Id: 4a4a3426-e39e-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:32 PM
Windows Error Reporting Fault bucket 124726384, type 21&
#x000d;&#x000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not ava
ilable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature
:&#x000d;&#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3:
00000000-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5:
101&#x000d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d
;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files
:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x00
0a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_7.6.7600.320_2
f6834f5ad080777588737322b1dbccbd6bccdd_03d10d59&#x000d;&#x000a;&#x000d;&#x000a;A
nalysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report
Id: 17e75da2-e39a-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:32 PM
Windows Error Reporting Fault bucket 645796037, type 5&#
x000d;&#x000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not avai
lable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:
&#x000d;&#x000a;P1: 7.3.7600.16385&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3
: 00000000-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5
: 101&#x000d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000
d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached file
s:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x0
00a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_7.3.7600.1638
5_1874fcef6224e42694c8b30caacce43071e7c1_03d0f9c9&#x000d;&#x000a;&#x000d;&#x000a
;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Repo
rt Id: 1afe4bfe-e38e-11e4-b412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:32 PM
Windows Error Reporting Fault bucket 645796037, type 5&#
x000d;&#x000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not avai
lable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:
&#x000d;&#x000a;P1: 7.3.7600.16385&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3
: 00000000-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5
: 101&#x000d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000
d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached file
s:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x0
00a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_7.3.7600.1638
5_1874fcef6224e42694c8b30caacce43071e7c1_03d0e5fb&#x000d;&#x000a;&#x000d;&#x000a
;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Repo
rt Id: cf345976-e38e-11e4-b412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:32 PM
Windows Error Reporting Fault bucket 2563083099, type 5&
#x000d;&#x000a;Event Name: BEX&#x000d;&#x000a;Response: Not available&#x000d;&#x
000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;
P1: SymcPCCULaunchSvc.exe&#x000d;&#x000a;P2: 1.0.0.137&#x000d;&#x000a;P3: 4b6221
bb&#x000d;&#x000a;P4: StackHash_0a9e&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P
6: 00000000&#x000d;&#x000a;P7: 75436cc4&#x000d;&#x000a;P8: c0000005&#x000d;&#x00
0a;P9: 00000008&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached fil
es:&#x000d;&#x000a;C:\Windows\Temp\WER2221.tmp.appcompat.txt&#x000d;&#x000a;C:\W
indows\Temp\WER2AC9.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\Windows\Temp\W
ER2ACA.tmp.hdmp&#x000d;&#x000a;C:\Windows\Temp\WER2DC7.tmp.mdmp&#x000d;&#x000a;&
#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\
Microsoft\Windows\WER\ReportArchive\AppCrash_SymcPCCULaunchSv_aef91f32a658342d68
70c7d360be82a379cc462_03d0d22d&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &
#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: dcc9a986-e39
2-11e4-b412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:32 PM
Windows Error Reporting Fault bucket 1207566016, type 1&
#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000
d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x
000a;P1: PsiService_2.exe&#x000d;&#x000a;P2: 2.0.1.124&#x000d;&#x000a;P3: 46a641
af&#x000d;&#x000a;P4: StackHash_0a9e&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P
6: 00000000&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 75436cc4&#x000d;&#x00
0a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x00

0d;&#x000a;C:\Windows\Temp\WER341B.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\T
emp\WER34B8.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\Windows\Temp\WER34B9.t
mp.hdmp&#x000d;&#x000a;C:\Windows\Temp\WER3508.tmp.mdmp&#x000d;&#x000a;&#x000d;&
#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsof
t\Windows\WER\ReportArchive\AppCrash_PsiService_2.exe_a949e814631867420df1369a8c
bae53ac2c1c6_03d0bc1e&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#
x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: df93c657-e392-11e4-b4
12-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:31 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;
Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: i
viRegMgr.exe&#x000d;&#x000a;P2: 1.0.4.0&#x000d;&#x000a;P3: 459cd531&#x000d;&#x00
0a;P4: StackHash_0a9e&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P6: 00000000&#x0
00d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 75436cc4&#x000d;&#x000a;P9: &#x000d;
&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\W
indows\Temp\WER35A1.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\Temp\WER35E0.tmp
.WERInternalMetadata.xml&#x000d;&#x000a;C:\Windows\Temp\WER35E1.tmp.hdmp&#x000d;
&#x000a;C:\Windows\Temp\WER3601.tmp.mdmp&#x000d;&#x000a;&#x000d;&#x000a;These fi
les may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\R
eportQueue\AppCrash_iviRegMgr.exe_8532e557a3d7d813d5a4845dd3ff0188b199a47_cab_0b
c8361d&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Recheckin
g for solution: 0&#x000d;&#x000a;Report Id: dfcce75e-e392-11e4-b412-88ae1dfad3f8
&#x000d;&#x000a;Report Status: 64
4/17/2015 8:31 PM
Windows Error Reporting Fault bucket 2563075263, type 5&
#x000d;&#x000a;Event Name: BEX&#x000d;&#x000a;Response: Not available&#x000d;&#x
000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;
P1: ccSvcHst.exe&#x000d;&#x000a;P2: 109.0.0.107&#x000d;&#x000a;P3: 4a92f9d9&#x00
0d;&#x000a;P4: StackHash_0a9e&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P6: 0000
0000&#x000d;&#x000a;P7: 75436cc4&#x000d;&#x000a;P8: c0000005&#x000d;&#x000a;P9:
00000008&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x0
00d;&#x000a;C:\Windows\Temp\WER2E41.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\
Temp\WER2E80.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\Windows\Temp\WER2E81.
tmp.hdmp&#x000d;&#x000a;C:\Windows\Temp\WER30A4.tmp.mdmp&#x000d;&#x000a;&#x000d;
&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microso
ft\Windows\WER\ReportArchive\AppCrash_ccSvcHst.exe_8e9f5b1556632b2d3f4d3a2123cc2
a12771e4d3d_03d05ca0&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x
000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: deaa7f7d-e392-11e4-b41
2-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:31 PM
Windows Error Reporting Fault bucket 452704182, type 5&#
x000d;&#x000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not avail
able&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&
#x000d;&#x000a;P1: Microsoft Windows.NetworkDiagnostics.1.0&#x000d;&#x000a;P2: D
efault&#x000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#x000a;P5:
&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9:
&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x0
00a;C:\Users\Preferred Customer\AppData\Local\Temp\msdt\_27DA369A-9E68-49B7-91DE
-316787E9CEFD_\Pkg1E88.cab&#x000d;&#x000a;&#x000d;&#x000a;These files may be ava
ilable here:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\
Windows\WER\ReportArchive\NonCritical_Microsoft Window_bd5996727e9ea1acda90841fa
2c99a88df4fb9d6_0fac3581&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d
;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: b5173cfd-e540-11e4
-8b71-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 8:31 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: ScriptedDiagFailure&#x000d;&#x000a;Response: Not available&#x00
0d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#
x000a;P1: Microsoft Windows.NetworkDiagnostics.1.0&#x000d;&#x000a;P2: Default&#x
000d;&#x000a;P3: 1.0.0.0&#x000d;&#x000a;P4: Default&#x000d;&#x000a;P5: &#x000d;&
#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&
#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Us
ers\Preferred Customer\AppData\Local\Temp\msdt\_27DA369A-9E68-49B7-91DE-316787E9

CEFD_\Pkg1E88.cab&#x000d;&#x000a;&#x000d;&#x000a;These files may be available he


re:&#x000d;&#x000a;C:\Users\Preferred Customer\AppData\Local\Microsoft\Windows\W
ER\ReportQueue\NonCritical_Microsoft Window_bd5996727e9ea1acda90841fa2c99a88df4f
b9d6_cab_03c8209a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000
a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: b5173cfd-e540-11e4-8b71-8
8ae1dfad3f8&#x000d;&#x000a;Report Status: 4
4/17/2015 1:25 PM
Windows Error Reporting Fault bucket 124803338, type 21&
#x000d;&#x000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not ava
ilable&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature
:&#x000d;&#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: c80001fe&#x000d;&#x000a;P3:
00000000-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5:
101&#x000d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d
;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files
:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x00
0a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_7.6.7600.320_1
720b0c98dcb3235cc818ad4a93df747ce64f6a_11299a99&#x000d;&#x000a;&#x000d;&#x000a;A
nalysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report
Id: 2777c1cb-e505-11e4-9237-88ae1dfad3f8&#x000d;&#x000a;Report Status: 0
4/17/2015 1:25 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: c80001fe&#x000d;&#x000a;P3: 000000000000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x000
d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P
9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&
#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Prog
ramData\Microsoft\Windows\WER\ReportQueue\NonCritical_7.6.7600.320_1720b0c98dcb3
235cc818ad4a93df747ce64f6a_cab_0e2d8333&#x000d;&#x000a;&#x000d;&#x000a;Analysis
symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 277
7c1cb-e505-11e4-9237-88ae1dfad3f8&#x000d;&#x000a;Report Status: 4
4/17/2015 1:25 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: c80001fe&#x000d;&#x000a;P3: 000000000000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x000
d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P
9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&
#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x000d
;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solutio
n: 0&#x000d;&#x000a;Report Id: 2777c1cb-e505-11e4-9237-88ae1dfad3f8&#x000d;&#x00
0a;Report Status: 0
4/15/2015 6:36 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 000000000000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x000
d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P
9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&
#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Prog
ramData\Microsoft\Windows\WER\ReportQueue\NonCritical_7.6.7600.320_2f6834f5ad080
777588737322b1dbccbd6bccdd_10c546a1&#x000d;&#x000a;&#x000d;&#x000a;Analysis symb
ol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 4a4a342
6-e39e-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 2
4/15/2015 6:36 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 000000000000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x000
d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P
9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&

#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Prog


ramData\Microsoft\Windows\WER\ReportQueue\NonCritical_7.6.7600.320_2f6834f5ad080
777588737322b1dbccbd6bccdd_10c546a1&#x000d;&#x000a;&#x000d;&#x000a;Analysis symb
ol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 4a4a342
6-e39e-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 6
4/15/2015 6:36 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 000000000000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x000
d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P
9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&
#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x000d
;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solutio
n: 0&#x000d;&#x000a;Report Id: 4a4a3426-e39e-11e4-a285-88ae1dfad3f8&#x000d;&#x00
0a;Report Status: 0
4/15/2015 6:36 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x000d;&#x00
0a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1
: 8024001f&#x000d;&#x000a;P2: EndSearch&#x000d;&#x000a;P3: Search&#x000d;&#x000a
;P4: 6.1.7600.16385&#x000d;&#x000a;P5: MpSigDwn.dll&#x000d;&#x000a;P6: 6.1.7600.
16385&#x000d;&#x000a;P7: Windows Defender&#x000d;&#x000a;P8: &#x000d;&#x000a;P9:
&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x
000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Progra
mData\Microsoft\Windows\WER\ReportQueue\NonCritical_8024001f_604fafac6edea57220a
2b55e1e395e45960debc_12e93311&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#
x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 475ec411-e39e
-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 6
4/15/2015 6:06 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 000000000000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x000
d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P
9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&
#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Prog
ramData\Microsoft\Windows\WER\ReportQueue\NonCritical_7.6.7600.320_2f6834f5ad080
777588737322b1dbccbd6bccdd_08c9c4f3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symb
ol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 17e75da
2-e39a-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 2
4/15/2015 6:06 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 000000000000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x000
d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P
9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&
#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Prog
ramData\Microsoft\Windows\WER\ReportQueue\NonCritical_7.6.7600.320_2f6834f5ad080
777588737322b1dbccbd6bccdd_08c9c4f3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symb
ol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 17e75da
2-e39a-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 6
4/15/2015 6:06 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 000000000000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x000
d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P
9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&
#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x000d

;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solutio


n: 0&#x000d;&#x000a;Report Id: 17e75da2-e39a-11e4-a285-88ae1dfad3f8&#x000d;&#x00
0a;Report Status: 0
4/15/2015 6:06 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x000d;&#x00
0a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1
: 8024001f&#x000d;&#x000a;P2: EndSearch&#x000d;&#x000a;P3: Search&#x000d;&#x000a
;P4: 6.1.7600.16385&#x000d;&#x000a;P5: MpSigDwn.dll&#x000d;&#x000a;P6: 6.1.7600.
16385&#x000d;&#x000a;P7: Windows Defender&#x000d;&#x000a;P8: &#x000d;&#x000a;P9:
&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x
000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Progra
mData\Microsoft\Windows\WER\ReportQueue\NonCritical_8024001f_604fafac6edea57220a
2b55e1e395e45960debc_13a5b164&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#
x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 14eda54b-e39a
-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 6
4/15/2015 6:00 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 000000000000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x000
d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P
9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&
#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Prog
ramData\Microsoft\Windows\WER\ReportQueue\NonCritical_7.6.7600.320_2f6834f5ad080
777588737322b1dbccbd6bccdd_cab_0d1ccbc7&#x000d;&#x000a;&#x000d;&#x000a;Analysis
symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 55a
490ef-e399-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 2
4/15/2015 6:00 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 000000000000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x000
d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P
9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&
#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Prog
ramData\Microsoft\Windows\WER\ReportQueue\NonCritical_7.6.7600.320_2f6834f5ad080
777588737322b1dbccbd6bccdd_cab_0d1ccbc7&#x000d;&#x000a;&#x000d;&#x000a;Analysis
symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 55a
490ef-e399-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 6
4/15/2015 6:00 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.6.7600.320&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 000000000000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x000
d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P
9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&
#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x000d
;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solutio
n: 0&#x000d;&#x000a;Report Id: 55a490ef-e399-11e4-a285-88ae1dfad3f8&#x000d;&#x00
0a;Report Status: 0
4/15/2015 6:00 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x000d;&#x00
0a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1
: 8024001f&#x000d;&#x000a;P2: EndSearch&#x000d;&#x000a;P3: Search&#x000d;&#x000a
;P4: 6.1.7600.16385&#x000d;&#x000a;P5: MpSigDwn.dll&#x000d;&#x000a;P6: 6.1.7600.
16385&#x000d;&#x000a;P7: Windows Defender&#x000d;&#x000a;P8: &#x000d;&#x000a;P9:
&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x
000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Progra
mData\Microsoft\Windows\WER\ReportQueue\NonCritical_8024001f_604fafac6edea57220a
2b55e1e395e45960debc_13bcb847&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#

x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 52ad39f8-e399


-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 6
4/15/2015 5:58 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: RADAR_PRE_LEAK_64&#x000d;&#x000a;Response: Not available&#x000d
;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x0
00a;P1: svchost.exe_netsvcs&#x000d;&#x000a;P2: 6.1.7600.16385&#x000d;&#x000a;P3:
6.1.7601.2.1.0&#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x00
0d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x0
00d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\WOUTempAdmin
\AppData\Local\Temp\RDR8600.tmp\empty.txt&#x000d;&#x000a;&#x000d;&#x000a;These f
iles may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analy
sis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id:
fce1810b-e398-11e4-a285-88ae1dfad3f8&#x000d;&#x000a;Report Status: 2
4/15/2015 5:14 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;
Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: i
viRegMgr.exe&#x000d;&#x000a;P2: 1.0.4.0&#x000d;&#x000a;P3: 459cd531&#x000d;&#x00
0a;P4: StackHash_0a9e&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P6: 00000000&#x0
00d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 75436cc4&#x000d;&#x000a;P9: &#x000d;
&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\W
indows\Temp\WER35A1.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\Temp\WER35E0.tmp
.WERInternalMetadata.xml&#x000d;&#x000a;C:\Windows\Temp\WER35E1.tmp.hdmp&#x000d;
&#x000a;C:\Windows\Temp\WER3601.tmp.mdmp&#x000d;&#x000a;&#x000d;&#x000a;These fi
les may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\R
eportQueue\AppCrash_iviRegMgr.exe_8532e557a3d7d813d5a4845dd3ff0188b199a47_cab_0b
c8361d&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Recheckin
g for solution: 0&#x000d;&#x000a;Report Id: dfcce75e-e392-11e4-b412-88ae1dfad3f8
&#x000d;&#x000a;Report Status: 2
4/15/2015 5:14 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;
Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: i
viRegMgr.exe&#x000d;&#x000a;P2: 1.0.4.0&#x000d;&#x000a;P3: 459cd531&#x000d;&#x00
0a;P4: StackHash_0a9e&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P6: 00000000&#x0
00d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 75436cc4&#x000d;&#x000a;P9: &#x000d;
&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\W
indows\Temp\WER35A1.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\Temp\WER35E0.tmp
.WERInternalMetadata.xml&#x000d;&#x000a;C:\Windows\Temp\WER35E1.tmp.hdmp&#x000d;
&#x000a;C:\Windows\Temp\WER3601.tmp.mdmp&#x000d;&#x000a;&#x000d;&#x000a;These fi
les may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\R
eportQueue\AppCrash_iviRegMgr.exe_8532e557a3d7d813d5a4845dd3ff0188b199a47_cab_0b
c8361d&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Recheckin
g for solution: 0&#x000d;&#x000a;Report Id: dfcce75e-e392-11e4-b412-88ae1dfad3f8
&#x000d;&#x000a;Report Status: 6
4/15/2015 5:14 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;
Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: P
siService_2.exe&#x000d;&#x000a;P2: 2.0.1.124&#x000d;&#x000a;P3: 46a641af&#x000d;
&#x000a;P4: StackHash_0a9e&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P6: 0000000
0&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 75436cc4&#x000d;&#x000a;P9: &#x
000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a
;C:\Windows\Temp\WER341B.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\Temp\WER34B
8.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\Windows\Temp\WER34B9.tmp.hdmp&#x
000d;&#x000a;C:\Windows\Temp\WER3508.tmp.mdmp&#x000d;&#x000a;&#x000d;&#x000a;The
se files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\
WER\ReportQueue\AppCrash_PsiService_2.exe_a949e814631867420df1369a8cbae53ac2c1c6
_cab_0c683514&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Re
checking for solution: 0&#x000d;&#x000a;Report Id: df93c657-e392-11e4-b412-88ae1
dfad3f8&#x000d;&#x000a;Report Status: 2
4/15/2015 5:14 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;

Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: P


siService_2.exe&#x000d;&#x000a;P2: 2.0.1.124&#x000d;&#x000a;P3: 46a641af&#x000d;
&#x000a;P4: StackHash_0a9e&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P6: 0000000
0&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 75436cc4&#x000d;&#x000a;P9: &#x
000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a
;C:\Windows\Temp\WER341B.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\Temp\WER34B
8.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\Windows\Temp\WER34B9.tmp.hdmp&#x
000d;&#x000a;C:\Windows\Temp\WER3508.tmp.mdmp&#x000d;&#x000a;&#x000d;&#x000a;The
se files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\
WER\ReportQueue\AppCrash_PsiService_2.exe_a949e814631867420df1369a8cbae53ac2c1c6
_cab_0c683514&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Re
checking for solution: 0&#x000d;&#x000a;Report Id: df93c657-e392-11e4-b412-88ae1
dfad3f8&#x000d;&#x000a;Report Status: 6
4/15/2015 5:14 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: BEX&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab I
d: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: ccSvcH
st.exe&#x000d;&#x000a;P2: 109.0.0.107&#x000d;&#x000a;P3: 4a92f9d9&#x000d;&#x000a
;P4: StackHash_0a9e&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P6: 00000000&#x000
d;&#x000a;P7: 75436cc4&#x000d;&#x000a;P8: c0000005&#x000d;&#x000a;P9: 00000008&#
x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000
a;C:\Windows\Temp\WER2E41.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\Temp\WER2E
80.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\Windows\Temp\WER2E81.tmp.hdmp&#
x000d;&#x000a;C:\Windows\Temp\WER30A4.tmp.mdmp&#x000d;&#x000a;&#x000d;&#x000a;Th
ese files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows
\WER\ReportQueue\AppCrash_ccSvcHst.exe_8e9f5b1556632b2d3f4d3a2123cc2a12771e4d3d_
cab_063830e0&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rec
hecking for solution: 0&#x000d;&#x000a;Report Id: deaa7f7d-e392-11e4-b412-88ae1d
fad3f8&#x000d;&#x000a;Report Status: 2
4/15/2015 5:14 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: BEX&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab I
d: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: ccSvcH
st.exe&#x000d;&#x000a;P2: 109.0.0.107&#x000d;&#x000a;P3: 4a92f9d9&#x000d;&#x000a
;P4: StackHash_0a9e&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P6: 00000000&#x000
d;&#x000a;P7: 75436cc4&#x000d;&#x000a;P8: c0000005&#x000d;&#x000a;P9: 00000008&#
x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000
a;C:\Windows\Temp\WER2E41.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\Temp\WER2E
80.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\Windows\Temp\WER2E81.tmp.hdmp&#
x000d;&#x000a;C:\Windows\Temp\WER30A4.tmp.mdmp&#x000d;&#x000a;&#x000d;&#x000a;Th
ese files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows
\WER\ReportQueue\AppCrash_ccSvcHst.exe_8e9f5b1556632b2d3f4d3a2123cc2a12771e4d3d_
cab_063830e0&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rec
hecking for solution: 0&#x000d;&#x000a;Report Id: deaa7f7d-e392-11e4-b412-88ae1d
fad3f8&#x000d;&#x000a;Report Status: 6
4/15/2015 5:14 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: BEX&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab I
d: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: SymcPC
CULaunchSvc.exe&#x000d;&#x000a;P2: 1.0.0.137&#x000d;&#x000a;P3: 4b6221bb&#x000d;
&#x000a;P4: StackHash_0a9e&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P6: 0000000
0&#x000d;&#x000a;P7: 75436cc4&#x000d;&#x000a;P8: c0000005&#x000d;&#x000a;P9: 000
00008&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d
;&#x000a;C:\Windows\Temp\WER2221.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\Tem
p\WER2AC9.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\Windows\Temp\WER2ACA.tmp
.hdmp&#x000d;&#x000a;C:\Windows\Temp\WER2DC7.tmp.mdmp&#x000d;&#x000a;&#x000d;&#x
000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\
Windows\WER\ReportQueue\AppCrash_SymcPCCULaunchSv_aef91f32a658342d6870c7d360be82
a379cc462_cab_0e882df3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&
#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: dcc9a986-e392-11e4-b
412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 2
4/15/2015 5:14 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: BEX&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab I

d: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: SymcPC


CULaunchSvc.exe&#x000d;&#x000a;P2: 1.0.0.137&#x000d;&#x000a;P3: 4b6221bb&#x000d;
&#x000a;P4: StackHash_0a9e&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P6: 0000000
0&#x000d;&#x000a;P7: 75436cc4&#x000d;&#x000a;P8: c0000005&#x000d;&#x000a;P9: 000
00008&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d
;&#x000a;C:\Windows\Temp\WER2221.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\Tem
p\WER2AC9.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\Windows\Temp\WER2ACA.tmp
.hdmp&#x000d;&#x000a;C:\Windows\Temp\WER2DC7.tmp.mdmp&#x000d;&#x000a;&#x000d;&#x
000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\
Windows\WER\ReportQueue\AppCrash_SymcPCCULaunchSv_aef91f32a658342d6870c7d360be82
a379cc462_cab_0e882df3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&
#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: dcc9a986-e392-11e4-b
412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 6
4/15/2015 4:57 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: RADAR_PRE_LEAK_64&#x000d;&#x000a;Response: Not available&#x000d
;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x0
00a;P1: TrustedInstaller.exe&#x000d;&#x000a;P2: 6.1.7600.16385&#x000d;&#x000a;P3
: 6.1.7600.2.0.0&#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x0
00d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x
000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\WOUTempAdmi
n\AppData\Local\Temp\RDRAE58.tmp\empty.txt&#x000d;&#x000a;&#x000d;&#x000a;These
files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Anal
ysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id
: 813de2ae-e390-11e4-b412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 2
4/15/2015 4:45 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.3.7600.16385&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 0000000
0-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x0
00d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a
;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d
;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Pr
ogramData\Microsoft\Windows\WER\ReportQueue\NonCritical_7.3.7600.16385_1874fcef6
224e42694c8b30caacce43071e7c1_0e559349&#x000d;&#x000a;&#x000d;&#x000a;Analysis s
ymbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: cf34
5976-e38e-11e4-b412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 2
4/15/2015 4:45 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.3.7600.16385&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 0000000
0-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x0
00d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a
;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d
;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Pr
ogramData\Microsoft\Windows\WER\ReportQueue\NonCritical_7.3.7600.16385_1874fcef6
224e42694c8b30caacce43071e7c1_0e559349&#x000d;&#x000a;&#x000d;&#x000a;Analysis s
ymbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: cf34
5976-e38e-11e4-b412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 6
4/15/2015 4:45 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.3.7600.16385&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 0000000
0-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x0
00d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a
;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d
;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x00
0d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solut
ion: 0&#x000d;&#x000a;Report Id: cf345976-e38e-11e4-b412-88ae1dfad3f8&#x000d;&#x
000a;Report Status: 0
4/15/2015 4:45 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x

000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x000d;&#x00


0a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1
: 8024001f&#x000d;&#x000a;P2: EndSearch&#x000d;&#x000a;P3: Search&#x000d;&#x000a
;P4: 6.1.7600.16385&#x000d;&#x000a;P5: MpSigDwn.dll&#x000d;&#x000a;P6: 6.1.7600.
16385&#x000d;&#x000a;P7: Windows Defender&#x000d;&#x000a;P8: &#x000d;&#x000a;P9:
&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x
000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Progra
mData\Microsoft\Windows\WER\ReportQueue\NonCritical_8024001f_604fafac6edea57220a
2b55e1e395e45960debc_08797e53&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#
x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: cc383fbe-e38e
-11e4-b412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 6
4/15/2015 4:40 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.3.7600.16385&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 0000000
0-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x0
00d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a
;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d
;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Pr
ogramData\Microsoft\Windows\WER\ReportQueue\NonCritical_7.3.7600.16385_1874fcef6
224e42694c8b30caacce43071e7c1_cab_0844f611&#x000d;&#x000a;&#x000d;&#x000a;Analys
is symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id:
1afe4bfe-e38e-11e4-b412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 2
4/15/2015 4:40 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.3.7600.16385&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 0000000
0-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x0
00d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a
;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d
;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\Pr
ogramData\Microsoft\Windows\WER\ReportQueue\NonCritical_7.3.7600.16385_1874fcef6
224e42694c8b30caacce43071e7c1_cab_0844f611&#x000d;&#x000a;&#x000d;&#x000a;Analys
is symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id:
1afe4bfe-e38e-11e4-b412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 6
4/15/2015 4:40 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: WindowsUpdateFailure&#x000d;&#x000a;Response: Not available&#x0
00d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&
#x000a;P1: 7.3.7600.16385&#x000d;&#x000a;P2: 8024001f&#x000d;&#x000a;P3: 0000000
0-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 101&#x0
00d;&#x000a;P6: Unmanaged&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a
;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d
;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x00
0d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solut
ion: 0&#x000d;&#x000a;Report Id: 1afe4bfe-e38e-11e4-b412-88ae1dfad3f8&#x000d;&#x
000a;Report Status: 0
4/15/2015 4:40 PM
Windows Error Reporting Fault bucket , type 0&#x000d;&#x
000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x000d;&#x00
0a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1
: 8024001f&#x000d;&#x000a;P2: EndSearch&#x000d;&#x000a;P3: Search&#x000d;&#x000a
;P4: 6.1.7600.16385&#x000d;&#x000a;P5: MpSigDwn.dll&#x000d;&#x000a;P6: 6.1.7600.
16385&#x000d;&#x000a;P7: Windows Defender&#x000d;&#x000a;P8: &#x000d;&#x000a;P9:
&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x
000a;C:\Windows\Temp\MPTelemetrySubmit\client_manifest.txt&#x000d;&#x000a;&#x000
d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Micro
soft\Windows\WER\ReportQueue\NonCritical_8024001f_604fafac6edea57220a2b55e1e395e
45960debc_cab_0ac8e2b0&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&
#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1831cdcc-e38e-11e4-b
412-88ae1dfad3f8&#x000d;&#x000a;Report Status: 6
5/25/2015 4:24 PM
Application Hang
The program The_Fall_Of_The_New_

Age.exe version 4.1.5.1944 stopped interacting with Windows and was closed. To s
ee if more information about the problem is available, check the problem history
in the Action Center control panel.&#x000d;&#x000a; Process ID: 170c&#x000d;&#x
000a; Start Time: 01d0968ffb770427&#x000d;&#x000a; Termination Time: 349&#x000d;
&#x000a; Application Path: C:\Program Files (x86)\Legacy Games\Fall of the New A
ge\The_Fall_Of_The_New_Age.exe&#x000d;&#x000a; Report Id: &#x000d;&#x000a;
5/25/2015 4:24 PM
Application Hang
The program TS4.exe version 1.7.
65.1020 stopped interacting with Windows and was closed. To see if more informat
ion about the problem is available, check the problem history in the Action Cent
er control panel.&#x000d;&#x000a; Process ID: 1728&#x000d;&#x000a; Start Time: 0
1d096f2e0582474&#x000d;&#x000a; Termination Time: 347&#x000d;&#x000a; Applicatio
n Path: C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe&#x000d;&
#x000a; Report Id: &#x000d;&#x000a;

S-ar putea să vă placă și

  • Ms
    Ms
    Document413 pagini
    Ms
    michael
    Încă nu există evaluări
  • MSInfo
    MSInfo
    Document165 pagini
    MSInfo
    Gluten Free Ween
    Încă nu există evaluări
  • Text File
    Text File
    Document104 pagini
    Text File
    Victor Tanasescu
    Încă nu există evaluări
  • Sys Info
    Sys Info
    Document232 pagini
    Sys Info
    Иван Стоянов
    Încă nu există evaluări
  • Msinfo 32
    Msinfo 32
    Document64 pagini
    Msinfo 32
    Michael Neal
    Încă nu există evaluări
  • ToughBook 2 System Info Dump
    ToughBook 2 System Info Dump
    Document106 pagini
    ToughBook 2 System Info Dump
    powersonic
    Încă nu există evaluări
  • Ms Info
    Ms Info
    Document76 pagini
    Ms Info
    mfrankel5219
    Încă nu există evaluări
  • Launch Log
    Launch Log
    Document302 pagini
    Launch Log
    kingesbrawlstars
    Încă nu există evaluări
  • Ms Info
    Ms Info
    Document359 pagini
    Ms Info
    Abhinandan Nithyanandan
    Încă nu există evaluări
  • Msinfolog
    Msinfolog
    Document274 pagini
    Msinfolog
    Lep Lep
    Încă nu există evaluări
  • Msinfoubi
    Msinfoubi
    Document257 pagini
    Msinfoubi
    shin asuka
    Încă nu există evaluări
  • System Information
    System Information
    Document64 pagini
    System Information
    tunghtd
    Încă nu există evaluări
  • MSINFO
    MSINFO
    Document122 pagini
    MSINFO
    Arturo Rojas
    Încă nu există evaluări
  • Msinfo
    Msinfo
    Document72 pagini
    Msinfo
    yxia4037
    Încă nu există evaluări
  • Msinfolog
    Msinfolog
    Document109 pagini
    Msinfolog
    David Gjorgjievski
    Încă nu există evaluări
  • Msinfo 32
    Msinfo 32
    Document1.238 pagini
    Msinfo 32
    Jason Jones
    Încă nu există evaluări
  • Vostro 430
    Vostro 430
    Document112 pagini
    Vostro 430
    kaes101
    Încă nu există evaluări
  • My Sysinfo
    My Sysinfo
    Document1.001 pagini
    My Sysinfo
    Đạt Phạm
    Încă nu există evaluări
  • MSInfo
    MSInfo
    Document130 pagini
    MSInfo
    Alex Farcas
    Încă nu există evaluări
  • My Desktop
    My Desktop
    Document129 pagini
    My Desktop
    Stojan Manojlovic
    Încă nu există evaluări
  • My System Info
    My System Info
    Document240 pagini
    My System Info
    matteo_zuliani8380
    Încă nu există evaluări
  • Msinfo
    Msinfo
    Document90 pagini
    Msinfo
    tamerlin
    Încă nu există evaluări
  • MSinfo 32
    MSinfo 32
    Document81 pagini
    MSinfo 32
    stevetorpey
    Încă nu există evaluări
  • Private
    Private
    Document2.281 pagini
    Private
    markymindset
    Încă nu există evaluări
  • System Summary
    System Summary
    Document226 pagini
    System Summary
    dimais_es
    Încă nu există evaluări
  • Report
    Report
    Document221 pagini
    Report
    deepu.gujju
    Încă nu există evaluări
  • System 3
    System 3
    Document86 pagini
    System 3
    Rejhan Sulic
    Încă nu există evaluări
  • Msinfo
    Msinfo
    Document83 pagini
    Msinfo
    madsk1ilsrus
    Încă nu există evaluări
  • Msinfo32 Saleen
    Msinfo32 Saleen
    Document181 pagini
    Msinfo32 Saleen
    johnnie_carson4993
    Încă nu există evaluări
  • Msinfo
    Msinfo
    Document89 pagini
    Msinfo
    David Jones
    Încă nu există evaluări
  • Msinfo 32
    Msinfo 32
    Document292 pagini
    Msinfo 32
    ryanhocking
    Încă nu există evaluări
  • System Summary
    System Summary
    Document207 pagini
    System Summary
    mendia1
    Încă nu există evaluări
  • Test
    Test
    Document73 pagini
    Test
    Stacy Edwards
    Încă nu există evaluări
  • Inf3AB5 - Notepad
    Inf3AB5 - Notepad
    Document253 pagini
    Inf3AB5 - Notepad
    kareyo47
    Încă nu există evaluări
  • System Information Report
    System Information Report
    Document95 pagini
    System Information Report
    Günter Verheugen
    Încă nu există evaluări
  • System Report Summary
    System Report Summary
    Document119 pagini
    System Report Summary
    Kefka
    Încă nu există evaluări
  • Untitled
    Untitled
    Document77 pagini
    Untitled
    pbento_24
    Încă nu există evaluări
  • Msinfo
    Msinfo
    Document261 pagini
    Msinfo
    terraconstruction
    Încă nu există evaluări
  • Msinfo
    Msinfo
    Document177 pagini
    Msinfo
    george
    Încă nu există evaluări
  • Msinfo 32
    Msinfo 32
    Document1.644 pagini
    Msinfo 32
    brucehusker
    Încă nu există evaluări
  • Notes
    Notes
    Document917 pagini
    Notes
    Andrea Brown
    Încă nu există evaluări
  • Msinfo
    Msinfo
    Document169 pagini
    Msinfo
    Jeffery Manzanares
    Încă nu există evaluări
  • Ok
    Ok
    Document110 pagini
    Ok
    Bilal Ahmed
    Încă nu există evaluări
  • 123
    123
    Document139 pagini
    123
    Quang Tuyên
    Încă nu există evaluări
  • System Information
    System Information
    Document227 pagini
    System Information
    Dustin Nguyen
    Încă nu există evaluări
  • My System Information
    My System Information
    Document160 pagini
    My System Information
    Ans Boim
    Încă nu există evaluări
  • DivX Failure
    DivX Failure
    Document92 pagini
    DivX Failure
    Shashidhar Bhandary
    Încă nu există evaluări
  • Msinfo 32
    Msinfo 32
    Document427 pagini
    Msinfo 32
    dellboy__
    Încă nu există evaluări
  • Kelly Comp
    Kelly Comp
    Document529 pagini
    Kelly Comp
    zerophick1
    Încă nu există evaluări
  • 1S7483ABAR8C2953
    1S7483ABAR8C2953
    Document60 pagini
    1S7483ABAR8C2953
    Zabel Iqbal
    Încă nu există evaluări
  • MSinfo
    MSinfo
    Document125 pagini
    MSinfo
    Christos Nelson CH
    Încă nu există evaluări
  • 3dmark 11.7
    3dmark 11.7
    Document346 pagini
    3dmark 11.7
    Mariano Foti
    Încă nu există evaluări
  • System Report 07/06/14
    System Report 07/06/14
    Document153 pagini
    System Report 07/06/14
    Seyed Ibrahim
    Încă nu există evaluări
  • Ms 32 Info
    Ms 32 Info
    Document61 pagini
    Ms 32 Info
    non9524
    Încă nu există evaluări
  • Msinfo32 Extract
    Msinfo32 Extract
    Document409 pagini
    Msinfo32 Extract
    praveenmuslay
    Încă nu există evaluări
  • My System Info
    My System Info
    Document5 pagini
    My System Info
    adityadh
    Încă nu există evaluări
  • Inf853f by Karan Shah
    Inf853f by Karan Shah
    Document128 pagini
    Inf853f by Karan Shah
    Karan Shah
    Încă nu există evaluări
  • FPGAs: Instant Access
    FPGAs: Instant Access
    De la Everand
    FPGAs: Instant Access
    Încă nu există evaluări
  • Mega Drive Architecture: Architecture of Consoles: A Practical Analysis, #3
    Mega Drive Architecture: Architecture of Consoles: A Practical Analysis, #3
    De la Everand
    Mega Drive Architecture: Architecture of Consoles: A Practical Analysis, #3
    Încă nu există evaluări
  • Advanced Raspberry Pi: Raspbian Linux and GPIO Integration
    Advanced Raspberry Pi: Raspbian Linux and GPIO Integration
    De la Everand
    Advanced Raspberry Pi: Raspbian Linux and GPIO Integration
    Încă nu există evaluări
  • Mixed Geometry Questions (Angle Facts, Area of A Triangle, Pythagoras' Theorem, Trigonometry, Sine Rule and Cosine Rule, Similarity) 1
    Mixed Geometry Questions (Angle Facts, Area of A Triangle, Pythagoras' Theorem, Trigonometry, Sine Rule and Cosine Rule, Similarity) 1
    Document11 pagini
    Mixed Geometry Questions (Angle Facts, Area of A Triangle, Pythagoras' Theorem, Trigonometry, Sine Rule and Cosine Rule, Similarity) 1
    JonOstiguy
    Încă nu există evaluări
  • Krishnakumar Guitar Scales
    Krishnakumar Guitar Scales
    Document16 pagini
    Krishnakumar Guitar Scales
    krishna.sonar7071
    Încă nu există evaluări
  • Read Me
    Read Me
    Document1 pagină
    Read Me
    JonOstiguy
    Încă nu există evaluări
  • Installscript Log
    Installscript Log
    Document1 pagină
    Installscript Log
    JonOstiguy
    Încă nu există evaluări
  • Msinfo
    Msinfo
    Document124 pagini
    Msinfo
    JonOstiguy
    Încă nu există evaluări
  • Milestone 1 Sparrow Hill
    Milestone 1 Sparrow Hill
    Document1 pagină
    Milestone 1 Sparrow Hill
    JonOstiguy
    Încă nu există evaluări
  • SFX Machine Pro Read Me
    SFX Machine Pro Read Me
    Document6 pagini
    SFX Machine Pro Read Me
    JonOstiguy
    Încă nu există evaluări
  • Workouts Booklet
    Workouts Booklet
    Document24 pagini
    Workouts Booklet
    JonOstiguy
    100% (2)
  • Ssa 3368
    Ssa 3368
    Document14 pagini
    Ssa 3368
    JonOstiguy
    Încă nu există evaluări
  • Milestone 21 Flight of The Bumblebee
    Milestone 21 Flight of The Bumblebee
    Document2 pagini
    Milestone 21 Flight of The Bumblebee
    JonOstiguy
    Încă nu există evaluări
  • CAGED CheatSheet 1
    CAGED CheatSheet 1
    Document2 pagini
    CAGED CheatSheet 1
    JonOstiguy
    Încă nu există evaluări
  • Guitar-Code - The Fast Way To Ma - Thomas Ender
    Guitar-Code - The Fast Way To Ma - Thomas Ender
    Document145 pagini
    Guitar-Code - The Fast Way To Ma - Thomas Ender
    fuck off theiving scribd
    92% (13)
  • Pentatonic Guitar Magic
    Pentatonic Guitar Magic
    Document7 pagini
    Pentatonic Guitar Magic
    Tiffany Malone
    100% (6)
  • Fretboard in E-1
    Fretboard in E-1
    Document1 pagină
    Fretboard in E-1
    JonOstiguy
    Încă nu există evaluări
  • SecretsOfTheGuitarFretboardRevealed Print
    SecretsOfTheGuitarFretboardRevealed Print
    Document24 pagini
    SecretsOfTheGuitarFretboardRevealed Print
    Dennis Savvidis
    Încă nu există evaluări
  • Padge Lead E Tab Book PDF
    Padge Lead E Tab Book PDF
    Document37 pagini
    Padge Lead E Tab Book PDF
    JonOstiguy
    100% (6)
  • Ssa 3368
    Ssa 3368
    Document14 pagini
    Ssa 3368
    JonOstiguy
    Încă nu există evaluări