122
SpyHolesList Version:10.6 Build:7.70.0.170-64b 28.02.2015 8:28:50 AM WinDir=C:\Windows Startup=C:\Users\$unil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sta rtup\ Common Startup=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ Windows 7 Home Premium (6.1.7601) Internet Explorer 9.11.9600.17633 [Internet Explorer] [Default Home Page] :HKLM Default_Page_URL=http://go.microsoft.com/fwlink/p/?L inkId=255141 [Current Home Page] :HKCU Start Page=http://www.msn.com/?pc=BDT5&ocid=BDT5DHP [Current Home Page] :HKCU HOMEOldSP="" [Current Home Page] :HKCU Default_Page_URL="" [Current Home Page] :HKLM Start Page=http://go.microsoft.com/fwlink/p/?LinkId= 255141 [Current Home Page] :HKLM HOMEOldSP="" [All Users Search] :HKLM Default_Search_URL=http://go.microsoft.com/fwlink/?Li nkId=54896 [All Users Search] :HKLM Search Page=http://go.microsoft.com/fwlink/?LinkId=54 896 [Current Users Search] :HKCU Default_Search_URL=http://www.google.com/ie [Current Users Search] :HKCU Search Page=http://www.google.com [Current Users Search] :HKCU Search Bar=http://www.google.com/ie [IE Local Blank Page] :HKCU Local Page=C:\Windows\system32\blank.htm [IE Local Blank Page] :HKLM Local Page="" [Browser Helper Objects] {0055C089-8582-441B-A0BF-17B458C2A3A8}=C:\PROGRAM FIL ES (X86)\INTERNET DOWNLOAD MANAGER\IDMIECC.DLL ### IDM Browser Helper Object Internet Download Manager, Tonec Inc. Internet D ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRAM FIL ES (X86)\MICROSOFT OFFICE\OFFICE15\OCHELPER.DLL ### Microsoft Lync Microsoft Corporation Microsoft Office 2013 15.0.4667.1000 [Browser Helper Objects] {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}=C:\PROGRAM FIL ES (X86)\JAVA\JRE1.8.0_31\BIN\SSV.DLL ### Java(TM) Platform SE binary Oracle Corporation Java(TM) Platform SE 8 U31 8.0.310.13 [Browser Helper Objects] {9030D464-4C02-4ABF-8ECC-5164760863C6}=C:\PROGRAM FIL ES (X86)\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WINDOWSLIVELOGIN.DLL ### Microsoft® Windows Live ID Login Helper Microsoft Corp. Microsoft® CoReXT 7.25 0.4311.0 [Browser Helper Objects] {AE805869-2E5C-4ED4-8F7B-F1F7851A4497}=C:\PROGRAM FIL ES (X86)\SKYPE\TOOLBARS\INTERNET EXPLORER\SKYPEIEPLUGIN.DLL ### Skype Click to Call IE Add-on Microsoft Corporation Skype Click to Call 7. 3.16540.9015 [Browser Helper Objects] {B4F3A835-0E21-4959-BA22-42B3008E02FF}=C:\PROGRA~2\MI CROS~1\OFFICE15\URLREDIR.DLL ### Microsoft Office Document Cache Handler Microsoft Corporation Microsoft Of fice 2010 15.0.4569.1503 [Browser Helper Objects] {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}=C:\PROGRA~2\MI CROS~1\OFFICE15\GROOVEEX.DLL ### Microsoft OneDrive for Business Extensions Microsoft Corporation Microsoft Office 2013 15.0.4693.1000 [Browser Helper Objects] {DBC80044-A445-435b-BC74-9C25C1C588A9}=C:\PROGRAM FIL ES (X86)\JAVA\JRE1.8.0_31\BIN\JP2SSV.DLL ### Java(TM) Platform SE binary Oracle Corporation Java(TM) Platform SE 8 U31 8.0.310.13 [Browser Helper Objects(x64)] {0055C089-8582-441B-A0BF-17B458C2A3A8}=C:\PROGRA M FILES (X86)\INTERNET DOWNLOAD MANAGER\IDMIECC64.DLL ### IDM Browser Helper Object Internet Download Manager, Tonec Inc. Internet D

Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

  • Upload
    others

  • View
    0

  • Download
    0

Embed Size (px)

Citation preview

Page 1: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

SpyHolesList Version:10.6 Build:7.70.0.170-64b28.02.2015 8:28:50 AMWinDir=C:\WindowsStartup=C:\Users\$unil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Common Startup=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Windows 7 Home Premium (6.1.7601)Internet Explorer 9.11.9600.17633[Internet Explorer] [Default Home Page] :HKLM Default_Page_URL=http://go.microsoft.com/fwlink/p/?LinkId=255141 [Current Home Page] :HKCU Start Page=http://www.msn.com/?pc=BDT5&ocid=BDT5DHP [Current Home Page] :HKCU HOMEOldSP="" [Current Home Page] :HKCU Default_Page_URL="" [Current Home Page] :HKLM Start Page=http://go.microsoft.com/fwlink/p/?LinkId=255141 [Current Home Page] :HKLM HOMEOldSP="" [All Users Search] :HKLM Default_Search_URL=http://go.microsoft.com/fwlink/?LinkId=54896 [All Users Search] :HKLM Search Page=http://go.microsoft.com/fwlink/?LinkId=54896 [Current Users Search] :HKCU Default_Search_URL=http://www.google.com/ie [Current Users Search] :HKCU Search Page=http://www.google.com [Current Users Search] :HKCU Search Bar=http://www.google.com/ie [IE Local Blank Page] :HKCU Local Page=C:\Windows\system32\blank.htm [IE Local Blank Page] :HKLM Local Page="" [Browser Helper Objects] {0055C089-8582-441B-A0BF-17B458C2A3A8}=C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\IDMIECC.DLL ### IDM Browser Helper Object Internet Download Manager, Tonec Inc. Internet Download Manager Module 6, 21, 19, 1 [Browser Helper Objects] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE15\OCHELPER.DLL ### Microsoft Lync Microsoft Corporation Microsoft Office 2013 15.0.4667.1000 [Browser Helper Objects] {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}=C:\PROGRAM FILES (X86)\JAVA\JRE1.8.0_31\BIN\SSV.DLL ### Java(TM) Platform SE binary Oracle Corporation Java(TM) Platform SE 8 U31 8.0.310.13 [Browser Helper Objects] {9030D464-4C02-4ABF-8ECC-5164760863C6}=C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WINDOWSLIVELOGIN.DLL ### Microsoft® Windows Live ID Login Helper Microsoft Corp. Microsoft® CoReXT 7.250.4311.0 [Browser Helper Objects] {AE805869-2E5C-4ED4-8F7B-F1F7851A4497}=C:\PROGRAM FILES (X86)\SKYPE\TOOLBARS\INTERNET EXPLORER\SKYPEIEPLUGIN.DLL ### Skype Click to Call IE Add-on Microsoft Corporation Skype Click to Call 7.3.16540.9015 [Browser Helper Objects] {B4F3A835-0E21-4959-BA22-42B3008E02FF}=C:\PROGRA~2\MICROS~1\OFFICE15\URLREDIR.DLL ### Microsoft Office Document Cache Handler Microsoft Corporation Microsoft Office 2010 15.0.4569.1503 [Browser Helper Objects] {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}=C:\PROGRA~2\MICROS~1\OFFICE15\GROOVEEX.DLL ### Microsoft OneDrive for Business Extensions Microsoft Corporation Microsoft Office 2013 15.0.4693.1000 [Browser Helper Objects] {DBC80044-A445-435b-BC74-9C25C1C588A9}=C:\PROGRAM FILES (X86)\JAVA\JRE1.8.0_31\BIN\JP2SSV.DLL ### Java(TM) Platform SE binary Oracle Corporation Java(TM) Platform SE 8 U31 8.0.310.13 [Browser Helper Objects(x64)] {0055C089-8582-441B-A0BF-17B458C2A3A8}=C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\IDMIECC64.DLL ### IDM Browser Helper Object Internet Download Manager, Tonec Inc. Internet D

Page 2: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE15\OCHELPER.DLL ### Microsoft Lync Microsoft Corporation Microsoft Office 2013 15.0.4681.1000 [Browser Helper Objects(x64)] {9030D464-4C02-4ABF-8ECC-5164760863C6}=C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WINDOWSLIVELOGIN.DLL ### Microsoft® Windows Live ID Login Helper Microsoft Corp. Microsoft® CoReXT 7.250.4311.0 [Browser Helper Objects(x64)] {AE805869-2E5C-4ED4-8F7B-F1F7851A4497}=C:\PROGRAM FILES (X86)\SKYPE\TOOLBARS\INTERNET EXPLORER X64\SKYPEIEPLUGIN.DLL ### Skype Click to Call IE Add-on Microsoft Corporation Skype Click to Call 7.3.16540.9015 [Browser Helper Objects(x64)] {B4F3A835-0E21-4959-BA22-42B3008E02FF}=C:\PROGRA~1\MICROS~2\OFFICE15\URLREDIR.DLL ### Microsoft Office Document Cache Handler Microsoft Corporation Microsoft Office 2010 15.0.4569.1503 [Browser Helper Objects(x64)] {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}=C:\PROGRA~1\MICROS~2\OFFICE15\GROOVEEX.DLL ### Microsoft OneDrive for Business Extensions Microsoft Corporation Microsoft Office 2013 15.0.4693.1000 [Auto Search URL] :HKCU provider="" [Auto Search URL] :HKCU "Default Value"=http://www.google.com/search?q=%s [Search Assistant] :HKCU SearchAssistant=http://www.google.com/ie [Search Assistant] :HKLM SearchAssistant="" [Search Assistant] :HKCU CustomizeSearch="" [Search Assistant] :HKLM CustomizeSearch="" [Search Provider] FD0CB2E5E18449388DD4E90914D02C63=https://www.google.com/search?q={searchTerms} ### Google [Search Provider] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}=https://www.google.com/search?q={searchTerms} [Search Provider] {56C9B745-6934-4704-9727-9BF4D6DFCEB0}=http://www.bing.com/search?FORM=BDT5DF&PC=BDT5&q={searchTerms}&src=IE-SearchBox ### Bing [Search Provider] {95B7759C-8C7F-4BF1-B163-73684A933233}=https://mysearch.avg.com/search?cid={943E2ED0-F4A3-4646-9ED0-67981E889677}&mid=00ce396fefa047cd9f21591a68f417fd-05cea823b9a5a7f38241b7bac0f31b0e6255d4a1&lang=en&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2015-02-21 14:49:52&v=4.1.0.404&pid=wtu&sg=&sap=dsp&q={searchTerms} ### AVG Secure Search [Search Provider] DefaultScope={56C9B745-6934-4704-9727-9BF4D6DFCEB0} [Search Provider for All Users] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC ### Bing [Search Provider for All Users] DefaultScope={0633EE93-D776-472f-A0FF-E1416B8B2E3A} [Search Provider for All Users(x64)] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC ### Bing [Search Provider for All Users(x64)] DefaultScope={0633EE93-D776-472f-A0FF-E1416B8B2E3A} [Search Provider(x64)] FD0CB2E5E18449388DD4E90914D02C63=https://www.google.com/search?q={searchTerms} ### Google [Search Provider(x64)] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}=https://www.google.com/search?q={searchTerms} [Search Provider(x64)] {56C9B745-6934-4704-9727-9BF4D6DFCEB0}=http://www.bing.com/search?FORM=BDT5DF&PC=BDT5&q={searchTerms}&src=IE-SearchBox ### Bing [Search Provider(x64)] {95B7759C-8C7F-4BF1-B163-73684A933233}=https://mysearch

Page 3: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

.avg.com/search?cid={943E2ED0-F4A3-4646-9ED0-67981E889677}&mid=00ce396fefa047cd9f21591a68f417fd-05cea823b9a5a7f38241b7bac0f31b0e6255d4a1&lang=en&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2015-02-21 14:49:52&v=4.1.0.404&pid=wtu&sg=&sap=dsp&q={searchTerms} ### AVG Secure Search [Search Provider(x64)] DefaultScope={56C9B745-6934-4704-9727-9BF4D6DFCEB0} [CustomizeSearch] :HKLM CustomizeSearch="" [URLSearchHook] :HKCU {CFBFAE00-17A6-11D0-99CB-00C04FD64497}=C:\WINDOWS\SYSWOW64\IEFRAME.DLL ### Internet Browser Microsoft Corporation Internet Explorer 11.00.9600.17631 [Search URL Template] :HKLM 1="" [Search URL Template] :HKLM 2="" [Search URL Template] :HKLM 3="" [Search URL Template] :HKLM 4="" [Default Prefix] :HKLM "Default Value"=http:// [URL Default Prefixes] :HKLM mosaic=http:// [URL Default Prefixes] :HKLM www=http:// [URL Default Prefixes] :HKLM home=http:// [URL Default Prefixes] :HKLM ftp=ftp:// [AboutURLs] :HKLM blank=res://mshtml.dll/blank.htm [AboutURLs] :HKLM NoAdd-onsInfo=res://ieframe.dll/noaddoninfo.htm [AboutURLs] :HKLM InPrivate=res://ieframe.dll/inprivate_win7.htm [AboutURLs] :HKLM NavigationFailure=res://ieframe.dll/navcancl.htm [AboutURLs] :HKLM NoAdd-ons=res://ieframe.dll/noaddon.htm [AboutURLs] :HKLM Home=270 [AboutURLs] :HKLM PostNotCached=res://ieframe.dll/repost.htm [AboutURLs] :HKLM DesktopItemNavigationFailure=res://ieframe.dll/navcancl.htm [AboutURLs] :HKLM NavigationCanceled=res://ieframe.dll/navcancl.htm [AboutURLs] :HKLM SecurityRisk=res://ieframe.dll/securityatrisk.htm [User Style Sheet] :HKCU User Stylesheet="" [User Style Sheet] :HKCU Use My Stylesheet=0 [Execute unsigned ActiveX in My Computer Zone] :HKCU 1201=0 [Execute unsigned ActiveX in My Computer Zone] :HKLM 1201=1 [Execute unsigned ActiveX in Local Intranet Zone] :HKCU 1201=0 [Execute unsigned ActiveX in Local Intranet Zone] :HKLM 1201=3 [Execute unsigned ActiveX in Internet Zone] :HKCU 1201=3 [Execute unsigned ActiveX in Internet Zone] :HKLM 1201=3 [Links Toolbar] :HKCU LinksFolderName="" [IE Extensions - All Users] :HKLM {2670000A-7350-4f3c-8081-5663EE0C6C49} ### File is deleted or hidden by a rootkit or could not be located. [IE Extensions - All Users] :HKLM {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE15\OCHELPER.DLL ### Microsoft Lync Microsoft Corporation Microsoft Office 2013 15.0.4667.1000 [IE Extensions - All Users] :HKLM {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} ### File is deleted or hidden by a rootkit or could not be located. [IE Extensions - All Users] :HKLM {898EA8C8-E7FF-479B-8935-AEC46303B9E5}=C:\PROGRAM FILES (X86)\SKYPE\TOOLBARS\INTERNET EXPLORER\SKYPEIEPLUGIN.DLL ### Skype Click to Call IE Add-on Microsoft Corporation Skype Click to Call 7.3.16540.9015 [Context menu items] :HKCU Add to Google Photos Screensa&ver=res://C:\Windows\system32\GPhotos.scr/200 ### File is deleted or hidden by a rootkit or could not be located. [Context menu items] :HKCU Download all links with IDM=C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\IEGETALL.HTM [Context menu items] :HKCU Download with IDM=C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\IEEXT.HTM [Context menu items] :HKCU E&xport to Microsoft Excel=res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000 ### File is deleted or hidden by a rootkit or could not be located. [Context menu items] :HKCU Se&nd to OneNote=res://C:\PROGRA~1\MICROS~2\Office1

Page 4: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

5\ONBttnIE.dll/105 ### File is deleted or hidden by a rootkit or could not be located. [AutoConfigURL] :HKCU AutoConfigURL="" [Protocols Filter] :HKLM application/octet-stream=C:\Windows\system32\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® .NET Framework 4.0.40305.0 mscoree.dll [Protocols Filter] :HKLM application/x-complus=C:\Windows\system32\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® .NET Framework 4.0.40305.0 mscoree.dll [Protocols Filter] :HKLM application/x-msdownload=C:\Windows\system32\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® .NET Framework 4.0.40305.0 mscoree.dll [Protocols Filter] :HKLM text/xml=C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\OFFICE15\MSOXMLMF.DLL ### Microsoft Office XML MIME Filter Microsoft Corporation Microsoft Office InfoPath 15.0.4569.1503 [Protocols Handler] :HKLM about=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Microsoft (R) HTML Viewer Microsoft Corporation Internet Explorer 11.00.9600.17631 [Protocols Handler] :HKLM cdl=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Internet Explorer 11.00.9600.17631 [Protocols Handler] :HKLM dvd=C:\WINDOWS\SYSWOW64\MSVIDCTL.DLL ### ActiveX control for streaming video Microsoft Corporation DirectShow 6.05.7600.16385 [Protocols Handler] :HKLM file=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Internet Explorer 11.00.9600.17631 [Protocols Handler] :HKLM ftp=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Internet Explorer 11.00.9600.17631 [Protocols Handler] :HKLM http=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Internet Explorer 11.00.9600.17631 [Protocols Handler] :HKLM https=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Internet Explorer 11.00.9600.17631 [Protocols Handler] :HKLM its=C:\WINDOWS\SYSTEM32\ITSS.DLL ### Microsoft® InfoTech Storage System Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\itss.dll [Protocols Handler] :HKLM javascript=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Microsoft (R) HTML Viewer Microsoft Corporation Internet Explorer 11.00.9600.17631 [Protocols Handler] :HKLM local=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Internet Explorer 11.00.9600.17631 [Protocols Handler] :HKLM mailto=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Microsoft (R) HTML Viewer Microsoft Corporation Internet Explorer 11.00.9600.17631 [Protocols Handler] :HKLM mhtml=C:\WINDOWS\SYSTEM32\INETCOMM.DLL ### Microsoft Internet Messaging API Resources Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17609 %SystemRoot%\system32\inetcomm.dll [Protocols Handler] :HKLM mk=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Internet Explorer 11.00.9600.17631 [Protocols Handler] :HKLM ms-help={314111c7-a502-11d2-bbca-00c04f8ec294} [Protocols Handler] :HKLM ms-its=C:\WINDOWS\SYSTEM32\ITSS.DLL ### Microsoft® InfoTech Storage System Library Microsoft Corporation Microsoft® Wi

Page 5: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

ndows® Operating System 6.1.7600.16385 %SystemRoot%\System32\itss.dll [Protocols Handler] :HKLM osf=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE15\MSOSB.DLL ### Microsoft Office 2013 component Microsoft Corporation Microsoft Office 2013 15.0.4635.1000 [Protocols Handler] :HKLM res=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Microsoft (R) HTML Viewer Microsoft Corporation Internet Explorer 11.00.9600.17631 [Protocols Handler] :HKLM skypec2c=C:\PROGRAM FILES (X86)\SKYPE\TOOLBARS\INTERNET EXPLORER\SKYPEIEPLUGIN.DLL ### Skype Click to Call IE Add-on Microsoft Corporation Skype Click to Call 7.3.16540.9015 [Protocols Handler] :HKLM tv=C:\WINDOWS\SYSWOW64\MSVIDCTL.DLL ### ActiveX control for streaming video Microsoft Corporation DirectShow 6.05.7600.16385 [Protocols Handler] :HKLM vbscript=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Microsoft (R) HTML Viewer Microsoft Corporation Internet Explorer 11.00.9600.17631 [Protocols Handler] :HKLM wlmailhtml=C:\PROGRAM FILES (X86)\WINDOWS LIVE\MAIL\MAILCOMM.DLL ### Windows Live Mail Microsoft Corporation Windows Live Mail 16.4.3528.0331 [Protocols Handler] :HKLM wlpg=C:\PROGRAM FILES (X86)\WINDOWS LIVE\PHOTO GALLERY\ALBUMDOWNLOADPROTOCOLHANDLER.DLL ### Photo Gallery Album Download Protocol Handler Microsoft Corporation Photo Gallery 16.4.3528.0331 [Proxy] :HKCU ProxyServer="" [Proxy] :HKCU ProxyEnable=0[Network Settings] [Hosts File Path] :HKLM DataBasePath=%SystemRoot%\System32\drivers\etc[Browsers] [Installed Browsers] FIREFOX.EXE=C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\FIREFOX.EXE ### Firefox Mozilla Corporation Firefox 35.0.1 [Installed Browsers] Google Chrome=C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Default Browser Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Installed Browsers] IEXPLORE.EXE=C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE ### Internet Explorer Microsoft Corporation Internet Explorer 11.00.9600.16428 [FireFox Components and Extensions] [email protected]=C:\Users\$unil\AppData\Roaming\IDM\idmmzcc5\ ### [email protected] IDM CC Files idmmzcc.jar idmhelper5.js idmmzcc.dll iIDMHelper5.xpt iIDMMzCC.xpt [FireFox Settings] :HKLM browser.startup.homepage="" [FireFox Settings] :HKLM browser.startup.homepage_override_url="" [FireFox Settings] :HKLM browser.search.selectedEngine="" [FireFox Settings] :HKLM browser.search.selectedEngine,S="" [FireFox Settings] :HKLM browser.search.defaultEnginename="" [FireFox Settings] :HKLM browser.search.defaultEnginename,S="" [FireFox Settings] :HKLM browser.search.order.1="" [FireFox Settings] :HKLM browser.search.order.1,S="" [FireFox Settings] :HKLM browser.search.defaulturl="" [FireFox Settings] :HKLM browser.newtab.url="" [FireFox Settings] :HKLM keyword.URL="" [FireFox Settings] :HKLM network.proxy.autoconfig_url="" [FireFox Settings] :HKLM network.proxy.type="" [FireFox Settings] :HKLM network.proxy.http="" [FireFox Settings] :HKLM network.proxy.http_port=""

Page 6: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Google Chrome Settings] :HKLM backup.homepage="" [Google Chrome Settings] :HKLM backup.session.urls_to_restore_on_startup="" [Google Chrome Settings] :HKLM session.startup_urls="" [Google Chrome Settings] :HKLM default_search_provider.icon_url="" [Google Chrome Settings] :HKLM default_search_provider.keyword="" [Google Chrome Settings] :HKLM default_search_provider.name="" [Google Chrome Settings] :HKLM default_search_provider.search_url="" [Google Chrome Settings] :HKLM default_search_provider.suggest_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.alternate_urls="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.favicon_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.keyword="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.short_name="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.suggest_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.new_tab_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.instant_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.image_url="" [Google Chrome Settings] :HKLM homepage="" [Google Chrome Settings] :HKLM session.urls_to_restore_on_startup="" [Google Chrome Addons] aapocclcgogkmnckokdopfmhonfmgoek=C:\Users\$unil\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0 ### google slides: create and edit presentations [Google Chrome Addons] ahfgeienlihckogmohjhadlkjgocpleb=c:\program files (x86)\google\chrome\application\40.0.2214.115\resources\web_store ### web store: discover great apps, games, extensions and themes for google chrome. [Google Chrome Addons] aohghmighlieiainnegkcijnfilokake=C:\Users\$unil\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0 ### google docs: create and edit documents [Google Chrome Addons] apdfllckaahabafndbhieahigkjlhalf=C:\Users\$unil\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0 ### google drive: google drive: create, share and keep all your stuff in one place. [Google Chrome Addons] blpcfgokakmgnkcojhhkbfbldkacnbeo=C:\Users\$unil\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0 ### youtube: the world's most popular online video community. [Google Chrome Addons] bofbpdmkbmlancfihdncikcigpokmdda=C:\Users\$unil\AppData\Local\Google\Chrome\User Data\Default\Extensions\bofbpdmkbmlancfihdncikcigpokmdda\0.400_0 ### mysmartprice: get the best price on 10 million+ products across 100+ online stores. find more! save more! [Google Chrome Addons] coobgpohoikkiipiblmjeljniedjpjpf=C:\Users\$unil\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 ### google search: the fastest way to search the web. [Google Chrome Addons] dnhpdliibojhegemfjheidglijccjfmc=c:\program files (x86)\google\chrome\application\40.0.2214.115\resources\hotword_helper

Page 7: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### hotword helper: [Google Chrome Addons] eemcgdkfndhakfknompkggombfjjjeno=c:\program files (x86)\google\chrome\application\40.0.2214.115\resources\bookmark_manager ### bookmark manager: bookmark manager [Google Chrome Addons] ennkphjdgehloodpbhlhldgbnhmacadg=c:\program files (x86)\google\chrome\application\40.0.2214.115\resources\settings_app ### settings: settings [Google Chrome Addons] felcaaldnbdncclmgdcncolpebgiejap=C:\Users\$unil\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0 ### google sheets: create and edit spreadsheets [Google Chrome Addons] gfdkimpbcpahaombhbimeihdjnejgicl=c:\program files (x86)\google\chrome\application\40.0.2214.115\resources\feedback ### feedback: user feedback extension [Google Chrome Addons] jlhmfgmfgeifomenelglieieghnjghma=C:\Users\$unil\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhmfgmfgeifomenelglieieghnjghma\1.0.1_0 ### cisco webex extension: join webex meetings using google chrome � [Google Chrome Addons] kmendfapggjehodndflmmgagdbamhnfd=c:\program files (x86)\google\chrome\application\40.0.2214.115\resources\cryptotoken ### cryptotokenextension: cryptotoken component extension [Google Chrome Addons] lifbcibllhkdhoafpjfnlhfpfgnpldfl=C:\Users\$unil\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0 ### skype click to call: skype click to call [Google Chrome Addons] mfehgcgbbipciphmccgaenjidiccnmng=c:\program files (x86)\google\chrome\application\40.0.2214.115\resources\cloud_print ### cloud print: cloud print [Google Chrome Addons] mfffpogegjflfpflabcdkioaeobkgjik=c:\program files (x86)\google\chrome\application\40.0.2214.115\resources\gaia_auth ### gaiaauthextension: gaia component extension [Google Chrome Addons] mgndgikekgjfcpckkfioiadnlibdjbkf=c:\program files (x86)\google\chrome\application\40.0.2214.115\resources\chrome_app ### chrome: a fast, simple, and secure web browser, built for the modern web. [Google Chrome Addons] neajdppkdcdipfabeoofebfddakdcjhd=c:\program files (x86)\google\chrome\application\40.0.2214.115\resources\network_speech_synthesis ### google network speech: component extension providing speech via the google network text-to-speech service. [Google Chrome Addons] nkeimhogjdpnpccoofpliimaahmaaome=c:\program files (x86)\google\chrome\application\40.0.2214.115\resources\hangout_services ### google+ hangouts: [Google Chrome Addons] nmmhkkegccagdldgiimedpiccmgmieda=C:\Users\$unil\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0 ### google wallet: google wallet for digital goods [Google Chrome Addons] pafkbggdmjlpgkdkcbjmhmfcdpncadgh=c:\program files (x86)\google\chrome\application\40.0.2214.115\resources\google_now ### google now: integrates google now into chrome. [Google Chrome Addons] pjkljhegncpnkpknbcohdijeoejaedia=C:\Users\$unil\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 ### gmail: fast, searchable email with less spam. [Google Chrome Addons] bepbmhgboaologfdajaanbcjmnhjmhfn=C:\Users\$unil\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn\0.1.1.5023_0 ### google voice search hotword (beta): Disabled [Google Chrome Addons] jeaohhlajejodfjadcponpnjgkiikocn=C:\Users\$unil\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeaohhlajejodfjadcponpnjgkiikocn\6.21.16_1 ### idm integration module: Disabled

Page 8: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Google Chrome Addons] jeaohhlajejodfjadcponpnjgkiikocn=C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\IDMGCEXT.CRX ### idm integration module: download files with internet download manager [Google Chrome Addons] lifbcibllhkdhoafpjfnlhfpfgnpldfl=C:\PROGRAM FILES (X86)\SKYPE\TOOLBARS\CHROMEEXTENSION\SKYPE_CHROME_EXTENSION.CRX ### skype click to call: skype click to call[Network Settings] [Domain Name] :HKLM Domain="" [Name Server] {22C889AD-0C24-43BC-806E-6504515D342B}=180.151.151.151 180.151.151.152 ### Network Card:Intel(R) Centrino(R) Advanced-N 6230 DHCPNameServer:180.151.151.151 180.151.151.152 DhcpDefaultGateway:192.168.0.1 DhcpServer:192.168.0.1 [WinSock2 Components] NLAapi.dll=C:\WINDOWS\SYSWOW64\NLAAPI.DLL ### Network Location Awareness 2 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18685 %SystemRoot%\SYSWOW64\NLAapi.dll [WinSock2 Components] napinsp.dll=C:\WINDOWS\SYSWOW64\NAPINSP.DLL ### E-mail Naming Shim Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\SYSWOW64\napinsp.dll [WinSock2 Components] pnrpnsp.dll=C:\WINDOWS\SYSWOW64\PNRPNSP.DLL ### PNRP Name Space Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\SYSWOW64\pnrpnsp.dll [WinSock2 Components] WLIDNSP.DLL=C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WLIDNSP.DLL ### Microsoft® Windows Live ID Namespace Provider Microsoft Corp. Microsoft® CoReXT 7.250.4311.0 [WinSock2 Components] mswsock.dll=C:\WINDOWS\SYSWOW64\MSWSOCK.DLL ### Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\SYSWOW64\mswsock.dll [WinSock2 Components] winrnr.dll=C:\WINDOWS\SYSWOW64\WINRNR.DLL ### LDAP RnR Provider DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\SYSWOW64\winrnr.dll [WinSock2 Components] wshbth.dll=C:\WINDOWS\SYSWOW64\WSHBTH.DLL ### Windows Sockets Helper DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 %SystemRoot%\SYSWOW64\wshbth.dll [WinSock2 Components] vsocklib.dll=C:\WINDOWS\SYSWOW64\VSOCKLIB.DLL ### VSockets Library VMware, Inc. VMware Tools 9.3.3 build-1141980 %windir%\SYSWOW64\vsocklib.dll [WinSock2 Components (x64)] NLAapi.dll=C:\WINDOWS\SYSNATIVE\NLAAPI.DLL ### Network Location Awareness 2 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17964 %SystemRoot%\SYSNATIVE\NLAapi.dll [WinSock2 Components (x64)] napinsp.dll=C:\WINDOWS\SYSNATIVE\NAPINSP.DLL ### E-mail Naming Shim Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\SYSNATIVE\napinsp.dll [WinSock2 Components (x64)] pnrpnsp.dll=C:\WINDOWS\SYSNATIVE\PNRPNSP.DLL ### PNRP Name Space Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\SYSNATIVE\pnrpnsp.dll [WinSock2 Components (x64)] WLIDNSP.DLL=C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WLIDNSP.DLL ### Microsoft® Windows Live ID Namespace Provider Microsoft Corp. Microsoft® CoReXT 7.250.4311.0 [WinSock2 Components (x64)] mswsock.dll=C:\WINDOWS\SYSNATIVE\MSWSOCK.DLL ### Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\SYSNATIVE\mswsock.dll [WinSock2 Components (x64)] winrnr.dll=C:\WINDOWS\SYSNATIVE\WINRNR.DLL ### LDAP RnR Provider DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\SYSNATIVE\winrnr.dll [WinSock2 Components (x64)] wshbth.dll=C:\WINDOWS\SYSNATIVE\WSHBTH.DLL ### Windows Sockets Helper DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 %SystemRoot%\SYSNATIVE\wshbth.dll

Page 9: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[WinSock2 Components (x64)] vsocklib.dll=C:\WINDOWS\SYSNATIVE\VSOCKLIB.DLL ### VSockets Library VMware, Inc. VMware Tools 9.3.3 build-1141980 %windir%\SYSNATIVE\vsocklib.dll[Windows Shell] [Display Scrap's Extensions] :HKLM NeverShowExt="" [ScreenSaver] :HKCU SCRNSAVE.EXE="" ### File is deleted or hidden by a rootkit or could not be located. [System.ini] shell=explorer.exe [User Shell] :HKCU shell="" [Main File Extensions] :HKLM .exe="%1" %* [Main File Extensions] :HKLM .com="%1" %* [Main File Extensions] :HKLM .pif="%1" %* [Main File Extensions] :HKLM .bat="%1" %* [Main File Extensions] :HKLM .cmd="%1" %* [Main File Extensions] :HKLM .scr="%1" /S [Main File Extensions] :HKLM .txt=%SystemRoot%\system32\NOTEPAD.EXE %1 [Main File Extensions] :HKLM .reg=regedit.exe "%1" [Main File Extensions] :HKLM .inf=%SystemRoot%\system32\NOTEPAD.EXE %1 [Main File Extensions] :HKLM .ini=%SystemRoot%\system32\NOTEPAD.EXE %1 [Main File Extensions] :HKLM .js=C:\Windows\System32\WScript.exe "%1" %* [Main File Extensions] :HKLM .vbs="%SystemRoot%\System32\WScript.exe" "%1" %* [Main File Extensions] :HKLM .vbe="%SystemRoot%\System32\WScript.exe" "%1" %* [Main File Extensions] :HKLM .msc=%SystemRoot%\system32\mmc.exe "%1" %* [Main File Extensions] :HKLM .jpg=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 [Main File Extensions] :HKLM .jpeg=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 [UserInit Value] :HKLM UserInit=userinit.exe [Shell Services DelayLoad] :HKLM WebCheck={E6FB5E20-DE35-11CF-9C87-00AA005127ED} [System Shell Policies] :HKCU shell="" [System Shell Policies] :HKLM shell="" [System Shell Policies] :HKCU run="" [System Shell Policies] :HKLM run="" [App Paths] :HKLM AcroRd32.exe=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe ### AcroRd32.exe Adobe Reader Adobe Systems Incorporated Adobe Reader 11.0.10.32 [App Paths] :HKLM chrome.exe=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ### chrome.exe Google Chrome Google Inc. Google Chrome 40.0.2214.115 [App Paths] :HKLM dvdmaker.exe=%ProgramFiles%\DVD Maker\dvdmaker.exe ### dvdmaker.exe [App Paths] :HKLM excel.exe=C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE ### excel.exe Microsoft Excel Microsoft Corporation Microsoft Office 2013 15.0.4693.1000 [App Paths] :HKLM firefox.exe=C:\Program Files (x86)\Mozilla Firefox\firefox.exe ### firefox.exe Firefox Mozilla Corporation Firefox 35.0.1 [App Paths] :HKLM fsquirt.exe ### fsquirt.exe [App Paths] :HKLM GROOVE.EXE=C:\PROGRA~1\MICROS~2\Office15\GROOVE.EXE ### GROOVE.EXE Microsoft OneDrive for Business Microsoft Corporation Microsoft Office 2013 15.0.4693.1000 [App Paths] :HKLM IEDIAG.EXE=C:\Program Files\Internet Explorer\IEDIAGCMD.EXE ### IEDIAG.EXE Diagnostics utility for Internet Explorer Microsoft Corporation Internet Explorer 11.00.9600.16428 [App Paths] :HKLM IEDIAGCMD.EXE=C:\Program Files\Internet Explorer\IEDIAGCMD.EXE ### IEDIAGCMD.EXE Diagnostics utility for Internet Explorer Microsoft Corporat

Page 10: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

ion Internet Explorer 11.00.9600.16428 [App Paths] :HKLM IEXPLORE.EXE=C:\Program Files\Internet Explorer\IEXPLORE.EXE ### IEXPLORE.EXE Internet Explorer Microsoft Corporation Internet Explorer 11.00.9600.16428 [App Paths] :HKLM infopath.exe=C:\PROGRA~1\MICROS~2\Office15\INFOPATH.EXE ### infopath.exe Microsoft InfoPath Microsoft Corporation Microsoft Office InfoPath 15.0.4569.1503 [App Paths] :HKLM install.exe ### install.exe [App Paths] :HKLM javaws.exe=C:\Program Files (x86)\Java\jre1.8.0_31\bin\javaws.exe ### javaws.exe Java(TM) Web Start Launcher Oracle Corporation Java(TM) Platform SE 8 U31 8.0.310.13 [App Paths] :HKLM Journal.exe=%ProgramFiles%\Windows Journal\Journal.exe ### Journal.exe [App Paths] :HKLM LangSelector.exe=C:\Program Files (x86)\Windows Live\Installer\LangSelector.exe ### LangSelector.exe Windows Essentials Language Selection Microsoft Corporation Windows Essentials 16.4.3528.0331 [App Paths] :HKLM Lync.exe=C:\Program Files\Microsoft Office\Office15\Lync.exe ### Lync.exe Microsoft Lync Microsoft Corporation Microsoft Office 2013 15.0.4693.1000 [App Paths] :HKLM mip.exe=%CommonProgramFiles%\Microsoft Shared\Ink\mip.exe ### mip.exe [App Paths] :HKLM MovieMaker.exe=C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe ### MovieMaker.exe Movie Maker Microsoft Corporation Movie Maker 16.4.3528.0331 [App Paths] :HKLM mplayer2.exe=%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe ### mplayer2.exe [App Paths] :HKLM MSACCESS.EXE=C:\PROGRA~1\MICROS~2\Office15\MSACCESS.EXE ### MSACCESS.EXE Microsoft Access Microsoft Corporation Microsoft Office 2013 15.0.4691.1000 [App Paths] :HKLM msoxmled.exe=C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLED.EXE ### msoxmled.exe Office XML Handler Microsoft Corporation Microsoft Office InfoPath 15.0.4569.1503 [App Paths] :HKLM MSPUB.EXE=C:\PROGRA~1\MICROS~2\Office15\MSPUB.EXE ### MSPUB.EXE Microsoft Publisher Microsoft Corporation Microsoft Office 2013 15.0.4691.1000 [App Paths] :HKLM OneNote.exe=C:\PROGRA~1\MICROS~2\Office15\ONENOTE.EXE ### OneNote.exe Microsoft OneNote Microsoft Corporation Microsoft OneNote 15.0.4693.1000 [App Paths] :HKLM OUTLOOK.EXE=C:\PROGRA~1\MICROS~2\Office15\OUTLOOK.EXE ### OUTLOOK.EXE Microsoft Outlook Microsoft Corporation Microsoft Outlook 15.0.4693.1000 [App Paths] :HKLM pbrush.exe=%SystemRoot%\System32\mspaint.exe ### pbrush.exe [App Paths] :HKLM powerpnt.exe=C:\PROGRA~1\MICROS~2\Office15\POWERPNT.EXE ### powerpnt.exe Microsoft PowerPoint Microsoft Corporation Microsoft Office 2013 15.0.4693.1002 [App Paths] :HKLM PowerShell.exe=%SystemRoot%\system32\WindowsPowerShell\v1.0\PowerShell.exe ### PowerShell.exe [App Paths] :HKLM setup.exe ### setup.exe [App Paths] :HKLM sidebar.exe="%ProgramFiles%\Windows Sidebar\sidebar.exe" ### sidebar.exe [App Paths] :HKLM SnippingTool.exe=%SystemRoot%\system32\SnippingTool.exe

Page 11: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### SnippingTool.exe [App Paths] :HKLM table30.exe ### table30.exe [App Paths] :HKLM TabTip.exe=%CommonProgramFiles%\microsoft shared\ink\TabTip.exe ### TabTip.exe [App Paths] :HKLM vmplayer.exe=C:\Program Files (x86)\VMware\VMware Workstation\vmplayer.exe ### vmplayer.exe VMware Player VMware, Inc. VMware Workstation 10.0.2 build-1744117 [App Paths] :HKLM vmware.exe=C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe ### vmware.exe VMware Workstation VMware, Inc. VMware Workstation 10.0.2 build-1744117 [App Paths] :HKLM wab.exe=%ProgramFiles%\Windows Mail\wab.exe ### wab.exe [App Paths] :HKLM wabmig.exe=%ProgramFiles%\Windows Mail\wabmig.exe ### wabmig.exe [App Paths] :HKLM WinRAR.exe=C:\Program Files\WinRAR\WinRAR.exe ### WinRAR.exe WinRAR archiver Alexander Roshal WinRAR 5.10.3 [App Paths] :HKLM Winword.exe=C:\PROGRA~1\MICROS~2\Office15\WINWORD.EXE ### Winword.exe Microsoft Word Microsoft Corporation Microsoft Office 2013 15.0.4693.1000 [App Paths] :HKLM wlarp.exe=C:\Program Files (x86)\Windows Live\Installer\wlarp.exe ### wlarp.exe Windows Essentials Installer Microsoft Corporation Windows Essentials 16.4.3528.0331 [App Paths] :HKLM wlmail.exe=C:\Program Files (x86)\Windows Live\Mail\wlmail.exe ### wlmail.exe Windows Live Mail Microsoft Corporation Windows Live Mail 16.4.3528.0331 [App Paths] :HKLM wlsettings.exe=C:\Program Files (x86)\Windows Live\Installer\wlsettings.exe ### wlsettings.exe Windows Essentials Settings Microsoft Corporation Windows Essentials 16.4.3528.0331 [App Paths] :HKLM wlstartup.exe=C:\Program Files (x86)\Windows Live\Installer\wlstartup.exe ### wlstartup.exe Windows Essentials Microsoft Corporation Windows Essentials 16.4.3528.0331 [App Paths] :HKLM WLXAlbumDownloadWizard.exe=C:\Program Files (x86)\Windows Live\Photo Gallery\WLXAlbumDownloadWizard.exe ### WLXAlbumDownloadWizard.exe Photo Gallery Download Wizard Microsoft Corporation Photo Gallery 16.4.3528.0331 [App Paths] :HKLM WLXPhotoGallery.exe=C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe ### WLXPhotoGallery.exe Photo Gallery Microsoft Corporation Photo Gallery 16.4.3528.0331 [App Paths] :HKLM wmplayer.exe=%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe ### wmplayer.exe [App Paths] :HKLM WORDPAD.EXE=C:\PROGRAM FILES (X86)\WINDOWS NT\ACCESSORIES\WORDPAD.EXE ### WORDPAD.EXE Windows Wordpad Application Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" [App Paths] :HKLM WRITE.EXE="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" ### WRITE.EXE [Prevents Display in Control Panel from running.] :HKCU NoDispCpl=0 [Disable Registry Tools] :HKCU DisableRegistryTools =0

Page 12: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Internet Shortcuts] :HKLM C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UnHackMe\Check for UnHackMe updates.lnk=HTTP://GREATIS.COM/UNHACKME.INI ### C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\UnHackMe\CHECKF~1.LNK [User Shortcuts] :HKLM C:\Users\$unil\Desktop\UnHackMe.lnk=C:\Program Files (x86)\UnHackMe\Unhackme.exe ### C:\Users\$unil\Desktop\UnHackMe.lnk [User Shortcuts] :HKLM C:\Users\Public\Desktop\GeForce Experience.lnk=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\GFExperience.exe ### C:\Users\Public\Desktop\GEFORC~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\Mozilla Firefox.lnk=C:\Program Files (x86)\Mozilla Firefox\firefox.exe ### C:\Users\Public\Desktop\MOZILL~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\Skype.lnk=C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe ### C:\Users\Public\Desktop\Skype.lnk [User Shortcuts] :HKLM C:\Users\Public\Desktop\VMware Workstation.lnk=C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe ### C:\Users\Public\Desktop\VMWARE~1.LNK [User Shortcuts] :HKLM C:\Users\$unil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ### C:\Users\$unil\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\GOOGLE~1.LNK [User Shortcuts] :HKLM C:\Users\$unil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk=C:\Program Files (x86)\Internet Explorer\iexplore.exe ### C:\Users\$unil\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\LAUNCH~1.LNK [User Shortcuts] :HKLM C:\Users\$unil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk=C:\Program Files (x86)\Microsoft Office\Office15\OUTLOOK.EXE ### C:\Users\$unil\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\MICROS~1.LNK [User Shortcuts] :HKLM C:\Users\$unil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Picasa 3.lnk=C:\Program Files (x86)\Google\Picasa3\Picasa3.exe ### C:\Users\$unil\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\PICASA~1.LNK [User Shortcuts] :HKLM C:\Users\$unil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk ### C:\Users\$unil\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\SHOWSD~1.LNK [User Shortcuts] :HKLM C:\Users\$unil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ### C:\Users\$unil\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\USERPI~1\TaskBar\GOOGLE~1.LNK [User Shortcuts] :HKLM C:\Users\$unil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk=C:\Program Files (x86)\Internet Explorer\iexplore.exe ### C:\Users\$unil\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\USERPI~1\TaskBar\INTERN~1.LNK [User Shortcuts] :HKLM C:\Users\$unil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk=C:\Program Files (x86)\Mozilla Firefox\firefox.exe ### C:\Users\$unil\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\USERPI~1\TaskBar\MOZILL~1.LNK [User Shortcuts] :HKLM C:\Users\$unil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\VMware Workstation.lnk=C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe ### C:\Users\$unil\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\VMWARE~1.LNK [User Shortcuts] :HKLM C:\Users\$unil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk ### C:\Users\$unil\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\WINDOW~1.LNK [User Shortcuts] :HKLM C:\Users\$unil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk=C:\Users\$unil\AppData\Roaming\uTorrent\uTorrent.exe

Page 13: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### C:\Users\$unil\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\TORREN~1.LNK [Print Monitors] :HKLM Local Port=C:\Windows\system32\LOCALSPL.DLL ### Local Spooler DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 localspl.dll [Print Monitors] :HKLM Microsoft Shared Fax Monitor=C:\Windows\system32\FXSMON.DLL ### Microsoft Fax Print Monitor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 FXSMON.DLL [Print Monitors] :HKLM Standard TCP/IP Port=C:\Windows\system32\TCPMON.DLL ### Standard TCP/IP Port Monitor DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 tcpmon.dll [Print Monitors] :HKLM USB Monitor=C:\Windows\system32\USBMON.DLL ### Standard Dynamic Printing Port Monitor DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 usbmon.dll [Print Monitors] :HKLM WSD Port=C:\Windows\system32\WSDMON.DLL ### WSD Printer Port Monitor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 WSDMon.dll [Shell Icon Overlay Handlers] :HKLM SkyDrive1={F241C880-6982-4CE5-8CF7-7085BA96DA5A} [Shell Icon Overlay Handlers] :HKLM SkyDrive2={A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} [Shell Icon Overlay Handlers] :HKLM SkyDrive3={BBACC218-34EA-4666-9D7A-C78F2274A524} [Shell Icon Overlay Handlers] :HKLM SkyDrivePro1 (ErrorConflict)=C:\PROGRA~2\MICROS~1\OFFICE15\GROOVEEX.DLL ### Microsoft OneDrive for Business Extensions Microsoft Corporation Microsoft Office 2013 15.0.4693.1000 [Shell Icon Overlay Handlers] :HKLM SkyDrivePro2 (SyncInProgress)=C:\PROGRA~2\MICROS~1\OFFICE15\GROOVEEX.DLL ### Microsoft OneDrive for Business Extensions Microsoft Corporation Microsoft Office 2013 15.0.4693.1000 [Shell Icon Overlay Handlers] :HKLM SkyDrivePro3 (InSync)=C:\PROGRA~2\MICROS~1\OFFICE15\GROOVEEX.DLL ### Microsoft OneDrive for Business Extensions Microsoft Corporation Microsoft Office 2013 15.0.4693.1000 [Shell Icon Overlay Handlers] :HKLM EnhancedStorageShell=C:\WINDOWS\SYSTEM32\EHSTORSHELL.DLL ### Windows Enhanced Storage Shell Extension DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\EhStorShell.dll [Shell Icon Overlay Handlers] :HKLM SharingPrivate=C:\WINDOWS\SYSTEM32\NTSHRUI.DLL ### Shell extensions for sharing Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\ntshrui.dll [Context Menu Handlers] :HKLM BriefcaseMenu=C:\WINDOWS\SYSTEM32\SYNCUI.DLL ### Windows Briefcase Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\syncui.dll [Context Menu Handlers] :HKLM EPP={09A47860-11B0-4DA5-AFA5-26D86198A780} [Context Menu Handlers] :HKLM Open With=C:\WINDOWS\SYSTEM32\SHELL32.DLL ### Windows Shell Common Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 %SystemRoot%\system32\shell32.dll [Context Menu Handlers] :HKLM Open With EncryptionMenu=C:\WINDOWS\SYSTEM32\SHELL32.DLL ### Windows Shell Common Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 %SystemRoot%\system32\shell32.dll [Context Menu Handlers] :HKLM Sharing=C:\WINDOWS\SYSTEM32\NTSHRUI.DLL ### Shell extensions for sharing Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\ntshrui.dll [Context Menu Handlers] :HKLM WinRAR={B41DB860-64E4-11D2-9906-E49FADC173CA} [Context Menu Handlers] :HKLM WinRAR32=C:\PROGRAM FILES\WINRAR\RAREXT32.DLL ### WinRAR shell extension Alexander Roshal WinRAR 5.10.3

Page 14: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Context Menu Handlers] :HKLM {90AA3A4E-1CBA-4233-B8BB-535773D48449}=C:\WINDOWS\SYSTEM32\SHELL32.DLL ### Windows Shell Common Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 %SystemRoot%\system32\shell32.dll [Context Menu Handlers] :HKLM {a2a9545d-a0c2-42b4-9708-a0b2badd77c8}=C:\WINDOWS\SYSTEM32\SHELL32.DLL ### Windows Shell Common Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 %SystemRoot%\system32\shell32.dll[Kernel Auto Boot] [ActiveSetup] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95}=C:\WINDOWS\SYSTEM32\UNREGMP2.EXE ### Microsoft Windows Media Player Setup Utility Microsoft Corporation Microsoft® Windows® Operating System 12.0.7600.16385 %SystemRoot%\system32\unregmp2.exe /ShowWMP [Auto Services] AdobeARMservice ### Internal Name: AdobeARMservice. Status: service is running. Actual File: "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" * Adobe Acrobat Updater keeps your Adobe software up to date. Adobe Acrobat Update Service Adobe Systems Incorporated Adobe Acrobat Update Service 1.802.11.4130 [Auto Services] AERTFilters ### Internal Name: AERTFilters. Status: service is running. Actual File: C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe * Andrea filters APO access service (64-bit) Andrea Electronics Corporation APO Access Service (64-bit) [Auto Services] AMPPALR3 ### Internal Name: AMPPALR3. Status: service is running. Actual File: "C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe" * Intel® Centrino® Wireless Bluetooth® + High Speed Service for Intel® Wireless adapters Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter Intel Corporation Intel® Centrino® Wireless Bluetooth® High Speed 16.5.0.1 [Auto Services] AudioEndpointBuilder ### Internal Name: AudioEndpointBuilder. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Manages audio devices for the Windows Audio service. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] AudioSrv ### Internal Name: AudioSrv. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * Manages audio for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] BFE ### Internal Name: BFE. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork * The Base Filtering Engine (BFE) is a service that manages firewall and Internet Protocol security (IPsec) policies and implements user mode filtering. Stopping or disabling the BFE service will significantly reduce the security of the system. It will also result in unpredictable behavior in IPsec management and firewall applications. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] BingDesktopUpdate ### Internal Name: BingDesktopUpdate. Status: service is running. Actual File: "C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe" * Bing Desktop Update Service Bing Desktop updating service Microsoft Corp. Bing Desktop 1.3.470.0 [Auto Services] BITS ### Internal Name: BITS. Status: service is running. Actual File: C:\Windows\S

Page 15: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

ystem32\svchost.exe -k netsvcs * Transfers files in the background using idle network bandwidth. If the service is disabled, then any applications that depend on BITS, such as Windows Update or MSN Explorer, will be unable to automatically download programs and other information. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] BTHSSecurityMgr ### Internal Name: BTHSSecurityMgr. Status: service is running. Actual File: "C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe" * Manages the 802.1x security between two Bluetooth(R) High Speed connections. Intel(R) BlueTooth(R) HS Security Manager Service Intel(R) Corporation Intel(R) BlueTooth(R) High Speed 15.6.0.0 [Auto Services] c2cautoupdatesvc ### Internal Name: c2cautoupdatesvc. Status: service is running. Actual File: "C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service * Downloads and installs product updates. Updates Skype Click to Call Microsoft Corporation Skype Click to Call 7.3.16540.9015 [Auto Services] c2cpnrsvc ### Internal Name: c2cpnrsvc. Status: service is running. Actual File: "C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service * Provides phone number recognition services. Phone Number Recognition (PNR) module Microsoft Corporation Skype Click to Call 7.3.16540.9015 [Auto Services] clr_optimization_v4.0.30319_32 ### Internal Name: clr_optimization_v4.0.30319_32. Status: service stopped. Actual File: C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe * Microsoft .NET Framework NGEN .NET Runtime Optimization Service Microsoft Corporation Microsoft® .NET Framework 4.0.30319.34209 [Auto Services] clr_optimization_v4.0.30319_64 ### Internal Name: clr_optimization_v4.0.30319_64. Status: service stopped. Actual File: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe * Microsoft .NET Framework NGEN .NET Runtime Optimization Service Microsoft Corporation Microsoft® .NET Framework 4.0.30319.34209 [Auto Services] CryptSvc ### Internal Name: CryptSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * Provides four management services: Catalog Database Service, which confirms the signatures of Windows files and allows new programs to be installed; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; Automatic Root Certificate Update Service, which retrieves root certificates from Windows Update and enable scenarios such as SSL; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] DcomLaunch ### Internal Name: DcomLaunch. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * The DCOMLAUNCH service launches COM and DCOM servers in response to object activation requests. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the DCOMLAUNCH service running. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Dhcp ### Internal Name: Dhcp. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted * Registers and updates IP addresses and DNS records for this computer. If this service is stopped, this computer will not receive dynamic IP addresses and DNS updates. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Dnscache

Page 16: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Internal Name: Dnscache. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * The DNS Client service (dnscache) caches Domain Name System (DNS) names and registers the full computer name for this computer. If the service is stopped, DNS names will continue to be resolved. However, the results of DNS name queries will not be cached and the computer's name will not be registered. If the service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] DPS ### Internal Name: DPS. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork * The Diagnostic Policy Service enables problem detection, troubleshooting and resolution for Windows components. If this service is stopped, diagnostics will no longer function. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] EFS ### Internal Name: EFS. Status: service is running. Actual File: C:\Windows\System32\lsass.exe * Provides the core file encryption technology used to store encrypted files on NTFS file system volumes. If this service is stopped or disabled, applications will be unable to access encrypted files. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18719 [Auto Services] eventlog ### Internal Name: eventlog. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * This service manages events and event logs. It supports logging events, querying events, subscribing to events, archiving event logs, and managing event metadata. It can display events in both XML and plain text format. Stopping this service may compromise security and reliability of the system. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] EventSystem ### Internal Name: EventSystem. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] EvtEng ### Internal Name: EvtEng. Status: service is running. Actual File: "C:\Program Files\Intel\WiFi\bin\EvtEng.exe" * Manages the event trace messages for all the Intel® PROSet/Wireless Software components. Intel(R) PROSet/Wireless Event Log Service Intel(R) Corporation Intel(R) PROSet/Wireless 17, 14, 0, 0 [Auto Services] FontCache ### Internal Name: FontCache. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * Optimizes performance of applications by caching commonly used font data. Applications will start this service if it is not already running. It can be disabled, though doing so will degrade application performance. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] GfExperienceService ### Internal Name: GfExperienceService. Status: service is running. Actual File: "C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe" * NVIDIA GeForce Experience Service NVIDIA GeForce Experience Service NVIDIA Corporation NVIDIA GeForce Experience Service 1.0.0.1 [Auto Services] gpsvc ### Internal Name: gpsvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k GPSvcGroup * The service is responsible for applying settings configured by administrators for the computer and users through the Group

Page 17: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

Policy component. If the service is stopped or disabled, the settings will not be applied and applications and components will not be manageable through Group Policy. Any components or applications that depend on the Group Policy component might not be functional if the service is stopped or disabled. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] gupdate ### Internal Name: gupdate. Status: service stopped. Actual File: "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc * Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it. Google Installer Google Inc. Google Update 1.3.26.9 [Auto Services] IKEEXT ### Internal Name: IKEEXT. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * The IKEEXT service hosts the Internet Key Exchange (IKE) and Authenticated Internet Protocol (AuthIP) keying modules. These keying modules are used for authentication and key exchange in Internet Protocol security (IPsec). Stopping or disabling the IKEEXT service will disable IKE and AuthIP key exchange with peer computers. IPsec is typically configured to use IKE or AuthIP; therefore, stopping or disabling the IKEEXT service might result in an IPsec failure and might compromise the security of the system. It is strongly recommended that you have the IKEEXT service running. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] iphlpsvc ### Internal Name: iphlpsvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k NetSvcs * Provides tunnel connectivity using IPv6 transition technologies (6to4, ISATAP, Port Proxy, and Teredo), and IP-HTTPS. If this service is stopped, the computer will not have the enhanced connectivity benefits that these technologies offer. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] LanmanServer ### Internal Name: LanmanServer. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] LanmanWorkstation ### Internal Name: LanmanWorkstation. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k NetworkService * Creates and maintains client network connections to remote servers using the SMB protocol. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] lmhosts ### Internal Name: lmhosts. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted * Provides support for the NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution for clients on the network, therefore enabling users to share files, print, and log on to the network. If this service is stopped, these functions might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] MMCSS ### Internal Name: MMCSS. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Enables relative prioritization of work based on system-wide task priorities. This is intended mainly for multimedia applications. If this service is stopped, individual tasks resort to their default prior

Page 18: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

ity. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] MpsSvc ### Internal Name: MpsSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork * Windows Firewall helps protect your computer by preventing unauthorized users from gaining access to your computer through the Internet or a network. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] MsMpSvc ### Internal Name: MsMpSvc. Status: service is running. Actual File: "C:\Program Files\Microsoft Security Client\MsMpEng.exe" * Helps protect users from malware and other potentially unwanted software Antimalware Service Executable Microsoft Corporation Microsoft Malware Protection 4.7.0205.0 [Auto Services] nam ### Internal Name: nam. Status: service stopped. Actual File: "C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\acnamagent.exe" * Establishes secure, authenticated WiFi or Ethernet connections for this computer. AnyConnect NAM Service Cisco Systems, Inc. Cisco AnyConnect Network Access Manager 3.1.04059 [Auto Services] NlaSvc ### Internal Name: NlaSvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k NetworkService * Collects and stores configuration information for the network and notifies programs when this information is modified. If this service is stopped, configuration information might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] nsi ### Internal Name: nsi. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * This service delivers network notifications (e.g. interface addition/deleting etc) to user mode clients. Stopping this service will cause loss of network connectivity. If this service is disabled, any other services that explicitly depend on this service will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] NvNetworkService ### Internal Name: NvNetworkService. Status: service is running. Actual File: "C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe" * NVIDIA Network Service NVIDIA Network Service NVIDIA Corporation NVIDIA Network Service 2.2.0.50 [Auto Services] NvStreamSvc ### Internal Name: NvStreamSvc. Status: service is running. Actual File: "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" * Service for SHIELD Streaming NVIDIA Streamer Service NVIDIA Corporation NVIDIA Streamer 4.0.1000.0 [Auto Services] nvsvc ### Internal Name: nvsvc. Status: service is running. Actual File: "C:\Windows\system32\nvvsvc.exe" * Provides system and desktop level support to the NVIDIA display driver NVIDIA Driver Helper Service, Version 347.52 NVIDIA Corporation NVIDIA Driver Helper Service, Version 347.52 8.17.13.4752 [Auto Services] PcaSvc ### Internal Name: PcaSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * This service provides support for the Program Compatibility Assistant (PCA). PCA monitors programs installed and run by the user and detects known compatibility problems. If this service is stopped, PCA will not function properly. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] PlugPlay ### Internal Name: PlugPlay. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * Enables a computer to recognize and adap

Page 19: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

t to hardware changes with little or no user input. Stopping or disabling this service will result in system instability. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Power ### Internal Name: Power. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * Manages power policy and power policy notification delivery. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] ProfSvc ### Internal Name: ProfSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * This service is responsible for loading and unloading user profiles. If this service is stopped or disabled, users will no longer be able to successfully logon or logoff, applications may have problems getting to users' data, and components registered to receive profile event notifications will not receive them. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] RegSrvc ### Internal Name: RegSrvc. Status: service is running. Actual File: "C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe" * Provides registry access to all Intel® PROSet/Wireless Software components Intel(R) PROSet/Wireless Registry Service Intel(R) Corporation Intel(R) PROSet/Wireless 17, 14, 0, 0 [Auto Services] RpcEptMapper ### Internal Name: RpcEptMapper. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k RPCSS * Resolves RPC interfaces identifiers to transport endpoints. If this service is stopped or disabled, programs using Remote Procedure Call (RPC) services will not function properly. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] RpcSs ### Internal Name: RpcSs. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k rpcss * The RPCSS service is the Service Control Manager for COM and DCOM servers. It performs object activations requests, object exporter resolutions and distributed garbage collection for COM and DCOM servers. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the RPCSS service running Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] SamSs ### Internal Name: SamSs. Status: service is running. Actual File: C:\Windows\system32\lsass.exe * The startup of this service signals other services that the Security Accounts Manager (SAM) is ready to accept requests. Disabling this service will prevent other services in the system from being notified when the SAM is ready, which may in turn cause those services to fail to start correctly. This service should not be disabled. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18719 [Auto Services] Schedule ### Internal Name: Schedule. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Enables a user to configure and schedule automated tasks on this computer. The service also hosts multiple Windows system-critical tasks. If this service is stopped or disabled, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] SENS ### Internal Name: SENS. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Monitors system events and notifies subscribers to COM+ Event System of these events. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] ShellHWDetection ### Internal Name: ShellHWDetection. Status: service is running. Actual File:

Page 20: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

C:\Windows\System32\svchost.exe -k netsvcs * Provides notifications for AutoPlay hardware events. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] SkypeUpdate ### Internal Name: SkypeUpdate. Status: service stopped. Actual File: "C:\Program Files (x86)\Skype\Updater\Updater.exe" * Enables the detection, download and installation of updates for Skype. Skype Updater Service Skype Technologies Skype 7.0 [Auto Services] Spooler ### Internal Name: Spooler. Status: service is running. Actual File: C:\Windows\System32\spoolsv.exe * Loads files to memory for later printing Spooler SubSystem App Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] sppsvc ### Internal Name: sppsvc. Status: service stopped. Actual File: C:\Windows\system32\sppsvc.exe * Enables the download, installation and enforcement of digital licenses for Windows and Windows applications. If the service is disabled, the operating system and licensed applications may run in a notification mode. It is strongly recommended that you not disable the Software Protection service. Microsoft Software Protection Platform Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Stereo Service ### Internal Name: Stereo Service. Status: service is running. Actual File: "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" * Provides system support for NVIDIA Stereoscopic 3D driver Stereo Vision Control Panel API Server NVIDIA Corporation Stereo Vision Control Panel API Server 7.17.13.4752 [Auto Services] SysMain ### Internal Name: SysMain. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * Maintains and improves system performance over time. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Themes ### Internal Name: Themes. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * Provides user experience theme management. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] TrkWks ### Internal Name: TrkWks. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Maintains links between NTFS files within a computer or across computers in a network. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] UxSms ### Internal Name: UxSms. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Provides Desktop Window Manager startup and maintenance services Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] VMAuthdService ### Internal Name: VMAuthdService. Status: service is running. Actual File: "C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe" * Authorization and authentication service for starting and accessing virtual machines. VMware Authorization Service VMware, Inc. VMware Workstation 10.0.2 build-1744117 [Auto Services] VMnetDHCP ### Internal Name: VMnetDHCP. Status: service is running. Actual File: C:\Windows\system32\vmnetdhcp.exe * DHCP service for virtual networks. [Auto Services] VMUSBArbService ### Internal Name: VMUSBArbService. Status: service is running. Actual File: "C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe" * Arbitration and enumeration of USB devices for virtual machines VMware USB Arbitration Service VMware, Inc. VMware USB Arbitration Service 12.1.17 build-1637009 [Auto Services] VMware NAT Service

Page 21: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Internal Name: VMware NAT Service. Status: service is running. Actual File: C:\Windows\system32\vmnat.exe * Network address translation for virtual networks. [Auto Services] Winmgmt ### Internal Name: Winmgmt. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Wlansvc ### Internal Name: Wlansvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * The WLANSVC service provides the logic required to configure, discover, connect to, and disconnect from a wireless local area network (WLAN) as defined by IEEE 802.11 standards. It also contains the logic to turn your computer into a software access point so that other devices or computers can connect to your computer wirelessly using a WLAN adapter that can support this. Stopping or disabling the WLANSVC service will make all WLAN adapters on your computer inaccessible from the Windows networking UI. It is strongly recommended that you have the WLANSVC service running if your computer has a WLAN adapter. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] wlidsvc ### Internal Name: wlidsvc. Status: service is running. Actual File: "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" * Enables Windows Live ID authentication. Microsoft® Windows Live ID Service Microsoft Corp. Microsoft® CoReXT 7.250.4311.0 [Auto Services] WMPNetworkSvc ### Internal Name: WMPNetworkSvc. Status: service is running. Actual File: "C:\Program Files\Windows Media Player\wmpnetwk.exe" * Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play Windows Media Player Network Sharing Service Microsoft Corporation Microsoft® Windows® Operating System 12.0.7600.16385 [Auto Services] wscsvc ### Internal Name: wscsvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * The WSCSVC (Windows Security Center) service monitors and reports security health settings on the computer. The health settings include firewall (on/off), antivirus (on/off/out of date), antispyware (on/off/out of date), Windows Update (automatically/manually download and install updates), User Account Control (on/off), and Internet settings (recommended/not recommended). The service provides COM APIs for independent software vendors to register and record the state of their products to the Security Center service. The Action Center (AC) UI uses the service to provide systray alerts and a graphical view of the security health states in the AC control panel. Network Access Protection (NAP) uses the service to report the security health states of clients to the NAP Network Policy Server to make network quarantine decisions. The service also has a public API that allows external consumers to programmatically retrieve the aggregated security health state of the system. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] WSearch ### Internal Name: WSearch. Status: service is running. Actual File: C:\Windows\system32\SearchIndexer.exe /Embedding * Provides content indexing, property caching, and search results for files, e-mail, and other content. Microsoft Windows Search Indexer Microsoft Corporation Windows® Search 7.00.7600.16385 [Auto Services] wuauserv ### Internal Name: wuauserv. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Enables the detection, download, and installation of updates for Windows and other programs. If this service is disabled, u

Page 22: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

sers of this computer will not be able to use Windows Update or its automatic updating feature, and programs will not be able to use the Windows Update Agent (WUA) API. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] wudfsvc ### Internal Name: wudfsvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * Creates and manages user-mode driver processes. This service cannot be stopped. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] ZeroConfigService ### Internal Name: ZeroConfigService. Status: service is running. Actual File: "C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe" * Manages the zero configuration service for all the Intel® PROSet/Wireless Software components. Intel® PROSet/Wireless Zero Configure Service Intel® Corporation Intel(R) PROSet/Wireless 17, 14, 0, 0 [Svchost DLLs] :HKLM AeLookupSvc=C:\WINDOWS\SYSTEM32\AELUPSVC.DLL ### Application Experience Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\aelupsvc.dll [Svchost DLLs] :HKLM CertPropSvc=C:\WINDOWS\SYSTEM32\CERTPROP.DLL ### Microsoft Smartcard Certificate Propagation Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\certprop.dll [Svchost DLLs] :HKLM SCPolicySvc=C:\WINDOWS\SYSTEM32\CERTPROP.DLL ### Microsoft Smartcard Certificate Propagation Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\certprop.dll [Svchost DLLs] :HKLM lanmanserver=C:\WINDOWS\SYSTEM32\SRVSVC.DLL ### Server Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\srvsvc.dll [Svchost DLLs] :HKLM gpsvc=C:\WINDOWS\SYSTEM32\GPSVC.DLL ### Group Policy Client Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\gpsvc.dll [Svchost DLLs] :HKLM AudioSrv=C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL ### Windows Audio Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\Audiosrv.dll [Svchost DLLs] :HKLM FastUserSwitchingCompatibility [Svchost DLLs] :HKLM Ias [Svchost DLLs] :HKLM Irmon [Svchost DLLs] :HKLM Nla [Svchost DLLs] :HKLM Ntmssvc [Svchost DLLs] :HKLM NWCWorkstation [Svchost DLLs] :HKLM Nwsapagent [Svchost DLLs] :HKLM Rasauto=C:\WINDOWS\SYSTEM32\RASAUTO.DLL ### Remote Access AutoDial Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\rasauto.dll [Svchost DLLs] :HKLM Rasman=C:\WINDOWS\SYSTEM32\RASMANS.DLL ### Remote Access Connection Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\rasmans.dll [Svchost DLLs] :HKLM Remoteaccess=C:\WINDOWS\SYSTEM32\MPRDIM.DLL ### Dynamic Interface Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\mprdim.dll [Svchost DLLs] :HKLM SENS=C:\WINDOWS\SYSTEM32\SENS.DLL ### System Event Notification Service (SENS) Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\sens.dll [Svchost DLLs] :HKLM Sharedaccess=C:\WINDOWS\SYSTEM32\IPNATHLP.DLL ### Microsoft NAT Helper Components Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\ipnathlp.dll [Svchost DLLs] :HKLM SRService [Svchost DLLs] :HKLM Tapisrv=C:\WINDOWS\SYSTEM32\TAPISRV.DLL

Page 23: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Microsoft® Windows(TM) Telephony Server Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\tapisrv.dll [Svchost DLLs] :HKLM Wmi [Svchost DLLs] :HKLM WmdmPmSp [Svchost DLLs] :HKLM TermService=C:\WINDOWS\SYSTEM32\TERMSRV.DLL ### Remote Desktop Session Host Server Remote Connections Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 %SystemRoot%\System32\termsrv.dll [Svchost DLLs] :HKLM wuauserv=C:\WINDOWS\SYSTEM32\WUAUENG.DLL ### Windows Update Agent Microsoft Corporation Microsoft® Windows® Operating System 7.6.7600.320 %systemroot%\system32\wuaueng.dll [Svchost DLLs] :HKLM BITS=C:\WINDOWS\SYSTEM32\QMGR.DLL ### Background Intelligent Transfer Service Microsoft Corporation Microsoft® Windows® Operating System 7.5.7600.16385 %SystemRoot%\System32\qmgr.dll [Svchost DLLs] :HKLM ShellHWDetection=C:\WINDOWS\SYSTEM32\SHSVCS.DLL ### Windows Shell Services Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\shsvcs.dll [Svchost DLLs] :HKLM LogonHours [Svchost DLLs] :HKLM PCAudit [Svchost DLLs] :HKLM helpsvc [Svchost DLLs] :HKLM uploadmgr [Svchost DLLs] :HKLM iphlpsvc=C:\WINDOWS\SYSTEM32\IPHLPSVC.DLL ### Service that offers IPv6 connectivity over an IPv4 network. Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\iphlpsvc.dll [Svchost DLLs] :HKLM msiscsi=C:\WINDOWS\SYSTEM32\ISCSIEXE.DLL ### iSCSI Discovery service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %systemroot%\system32\iscsiexe.dll [Svchost DLLs] :HKLM schedule=C:\WINDOWS\SYSTEM32\SCHEDSVC.DLL ### Task Scheduler Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %systemroot%\system32\schedsvc.dll [Svchost DLLs] :HKLM SessionEnv=C:\WINDOWS\SYSTEM32\SESSENV.DLL ### Remote Desktop Configuration service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\sessenv.dll [Svchost DLLs] :HKLM winmgmt=C:\WINDOWS\SYSTEM32\WBEM\WMISVC.DLL ### WMI Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\wbem\WMIsvc.dll [Svchost DLLs] :HKLM RemoteRegistry=C:\WINDOWS\SYSTEM32\REGSVC.DLL ### Remote Registry Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\regsvc.dll [Svchost DLLs] :HKLM WinHttpAutoProxySvc=C:\Windows\system32\WINHTTP.DLL ### Windows HTTP Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 winhttp.dll [Svchost DLLs] :HKLM sppuinotify=C:\WINDOWS\SYSTEM32\SPPUINOTIFY.DLL ### SPP Notification Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\sppuinotify.dll [Svchost DLLs] :HKLM netprofm=C:\WINDOWS\SYSTEM32\NETPROFM.DLL ### Network List Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\netprofm.dll [Svchost DLLs] :HKLM WebClient=C:\WINDOWS\SYSTEM32\WEBCLNT.DLL ### Web DAV Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\webclnt.dll [Svchost DLLs] :HKLM Netman=C:\WINDOWS\SYSTEM32\NETMAN.DLL ### Network Connections Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\netman.dll [Svchost DLLs] :HKLM AudioEndpointBuilder=C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL ### Windows Audio Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\Audiosrv.dll [Svchost DLLs] :HKLM dot3svc=C:\WINDOWS\SYSTEM32\DOT3SVC.DLL ### Wired AutoConfig Service Microsoft Corporation Microsoft® Windows® Operating S

Page 24: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

ystem 6.1.7600.16385 %SystemRoot%\System32\dot3svc.dll [Svchost DLLs] :HKLM WPDBusEnum=C:\WINDOWS\SYSTEM32\WPDBUSENUM.DLL ### Portable Device Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\wpdbusenum.dll [Svchost DLLs] :HKLM wlansvc=C:\WINDOWS\SYSTEM32\WLANSVC.DLL ### Windows WLAN AutoConfig Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\wlansvc.dll [Svchost DLLs] :HKLM PLA=C:\WINDOWS\SYSTEM32\PLA.DLL ### Performance Logs & Alerts Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %systemroot%\system32\pla.dll [Svchost DLLs] :HKLM RpcSs=C:\WINDOWS\SYSTEM32\RPCSS.DLL ### Distributed COM Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 %SystemRoot%\system32\rpcss.dll [Svchost DLLs] :HKLM BthHFSrv [Svchost DLLs] :HKLM LmHosts=C:\WINDOWS\SYSTEM32\LMHSVC.DLL ### TCPIP NetBios Transport Services DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\lmhsvc.dll [Svchost DLLs] :HKLM wscsvc=C:\WINDOWS\SYSTEM32\WSCSVC.DLL ### Windows Security Center Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\wscsvc.dll [Svchost DLLs] :HKLM WPCSvc=C:\WINDOWS\SYSTEM32\WPCSVC.DLL ### WPC Filtering Service Microsoft Corporation Windows 1.0.0.1 %SystemRoot%\System32\wpcsvc.dll [Svchost DLLs] :HKLM SSDPSRV=C:\WINDOWS\SYSTEM32\SSDPSRV.DLL ### SSDP Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\ssdpsrv.dll [Svchost DLLs] :HKLM upnphost=C:\WINDOWS\SYSTEM32\UPNPHOST.DLL ### UPnP Device Host Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\upnphost.dll [Svchost DLLs] :HKLM SCardSvr=C:\WINDOWS\SYSTEM32\SCARDSVR.DLL ### Smart Card Resource Management Server Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\SCardSvr.dll [Svchost DLLs] :HKLM TBS=C:\WINDOWS\SYSTEM32\TBSSVC.DLL ### TBS Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\tbssvc.dll [Svchost DLLs] :HKLM QWAVE=C:\WINDOWS\SYSTEM32\QWAVE.DLL ### Windows NT Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %windir%\system32\qwave.dll [Svchost DLLs] :HKLM wcncsvc=C:\WINDOWS\SYSTEM32\WCNCSVC.DLL ### Windows Connect Now - Config Registrar Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\wcncsvc.dll [Svchost DLLs] :HKLM Power=C:\WINDOWS\SYSTEM32\UMPO.DLL ### User-mode Power Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\umpo.dll [Svchost DLLs] :HKLM PlugPlay=C:\WINDOWS\SYSTEM32\UMPNPMGR.DLL ### User-mode Plug-and-Play Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\umpnpmgr.dll [Svchost DLLs] :HKLM DcomLaunch=C:\WINDOWS\SYSTEM32\RPCSS.DLL ### Distributed COM Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 %SystemRoot%\system32\rpcss.dll [Svchost DLLs] :HKLM CryptSvc=C:\WINDOWS\SYSTEM32\CRYPTSVC.DLL ### Cryptographic Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\cryptsvc.dll [Svchost DLLs] :HKLM DHCP=C:\WINDOWS\SYSTEM32\DHCPCORE.DLL ### DHCP Client Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 %SystemRoot%\system32\dhcpcore.dll [Svchost DLLs] :HKLM DNSCache=C:\WINDOWS\SYSTEM32\DNSRSLVR.DLL ### DNS Caching Resolver Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\dnsrslvr.dll [Svchost DLLs] :HKLM NapAgent=C:\WINDOWS\SYSTEM32\QAGENTRT.DLL

Page 25: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Quarantine Agent Service Run-Time Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\qagentRT.dll [Svchost DLLs] :HKLM nlasvc=C:\WINDOWS\SYSTEM32\NLASVC.DLL ### Network Location Awareness 2 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\nlasvc.dll [Svchost DLLs] :HKLM WinRM=C:\WINDOWS\SYSTEM32\WSMSVC.DLL ### WSMan Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\WsmSvc.dll [Svchost DLLs] :HKLM WECSVC=C:\WINDOWS\SYSTEM32\WECSVC.DLL ### Event Collector Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\wecsvc.dll [Svchost DLLs] :HKLM StiSvc=C:\WINDOWS\SYSTEM32\WIASERVC.DLL ### Still Image Devices Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\wiaservc.dll [Svchost DLLs] :HKLM WcsPlugInService=C:\WINDOWS\SYSTEM32\WCSPLUGINSERVICE.DLL ### WcsPlugInService DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\WcsPlugInService.dll [Svchost DLLs] :HKLM AppIDSvc=C:\WINDOWS\SYSTEM32\APPIDSVC.DLL ### Application Identity Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\appidsvc.dll [Svchost DLLs] :HKLM Appinfo=C:\WINDOWS\SYSTEM32\APPINFO.DLL ### Application Information Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\appinfo.dll [Svchost DLLs] :HKLM AxInstSV=C:\WINDOWS\SYSTEM32\AXINSTSV.DLL ### ActiveX Installer Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\AxInstSV.dll [Svchost DLLs] :HKLM BDESVC=C:\WINDOWS\SYSTEM32\BDESVC.DLL ### BDE Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\bdesvc.dll [Svchost DLLs] :HKLM BFE=C:\WINDOWS\SYSTEM32\BFE.DLL ### Base Filtering Engine Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\bfe.dll [Svchost DLLs] :HKLM Browser=C:\WINDOWS\SYSTEM32\BROWSER.DLL ### Computer Browser Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\browser.dll [Svchost DLLs] :HKLM bthserv=C:\WINDOWS\SYSTEM32\BTHSERV.DLL ### Bluetooth Support Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\bthserv.dll [Svchost DLLs] :HKLM defragsvc=C:\WINDOWS\SYSTEM32\DEFRAGSVC.DLL ### Microsoft\Disk Defragmenter Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %Systemroot%\System32\defragsvc.dll [Svchost DLLs] :HKLM DPS=C:\WINDOWS\SYSTEM32\DPS.DLL ### WDI Diagnostic Policy Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\dps.dll [Svchost DLLs] :HKLM EapHost=C:\WINDOWS\SYSTEM32\EAPSVC.DLL ### Microsoft EAPHost service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\eapsvc.dll [Svchost DLLs] :HKLM EventSystem=C:\WINDOWS\SYSTEM32\ES.DLL ### COM+ Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %systemroot%\system32\es.dll [Svchost DLLs] :HKLM fdPHost=C:\WINDOWS\SYSTEM32\FDPHOST.DLL ### Function Discovery Provider host service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\fdPHost.dll [Svchost DLLs] :HKLM FDResPub=C:\WINDOWS\SYSTEM32\FDRESPUB.DLL ### Function Discovery Resource Publication Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\fdrespub.dll [Svchost DLLs] :HKLM FontCache=C:\WINDOWS\SYSTEM32\FNTCACHE.DLL ### Windows Font Cache Service Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492 %SystemRoot%\system32\FntCache.dll [Svchost DLLs] :HKLM hidserv=C:\WINDOWS\SYSTEM32\HIDSERV.DLL

Page 26: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### HID Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\hidserv.dll [Svchost DLLs] :HKLM hkmsvc=C:\WINDOWS\SYSTEM32\KMSVC.DLL ### Key Management Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\kmsvc.dll [Svchost DLLs] :HKLM HomeGroupListener=C:\WINDOWS\SYSTEM32\LISTSVC.DLL ### Windows HomeGroup Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\ListSvc.dll [Svchost DLLs] :HKLM HomeGroupProvider=C:\WINDOWS\SYSTEM32\PROVSVC.DLL ### Windows HomeGroup Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\provsvc.dll [Svchost DLLs] :HKLM IKEEXT=C:\WINDOWS\SYSTEM32\IKEEXT.DLL ### IKE extension Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\ikeext.dll [Svchost DLLs] :HKLM IPBusEnum=C:\WINDOWS\SYSTEM32\IPBUSENUM.DLL ### PnP-X IP Bus Enumerator DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\ipbusenum.dll [Svchost DLLs] :HKLM KtmRm=C:\WINDOWS\SYSTEM32\MSDTCKRM.DLL ### Microsoft Distributed Transaction Coordinator OLE Transactions KTM Resource Manager DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %systemroot%\system32\msdtckrm.dll [Svchost DLLs] :HKLM LanmanWorkstation=C:\WINDOWS\SYSTEM32\WKSSVC.DLL ### Workstation Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\wkssvc.dll [Svchost DLLs] :HKLM lltdsvc=C:\WINDOWS\SYSTEM32\LLTDSVC.DLL ### Link-Layer Topology Mapper Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\lltdsvc.dll [Svchost DLLs] :HKLM Mcx2Svc=C:\WINDOWS\SYSTEM32\MCX2SVC.DLL ### Media Center Extender Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 %SystemRoot%\system32\Mcx2Svc.dll [Svchost DLLs] :HKLM MMCSS=C:\WINDOWS\SYSTEM32\MMCSS.DLL ### Multimedia Class Scheduler Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\mmcss.dll [Svchost DLLs] :HKLM MpsSvc=C:\WINDOWS\SYSTEM32\MPSSVC.DLL ### Microsoft Protection Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\mpssvc.dll [Svchost DLLs] :HKLM nsi=C:\WINDOWS\SYSTEM32\NSISVC.DLL ### Network Store Interface RPC server Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %systemroot%\system32\nsisvc.dll [Svchost DLLs] :HKLM p2pimsvc=C:\WINDOWS\SYSTEM32\PNRPSVC.DLL ### PNRP Service Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\pnrpsvc.dll [Svchost DLLs] :HKLM p2psvc=C:\WINDOWS\SYSTEM32\P2PSVC.DLL ### Peer-to-Peer Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\p2psvc.dll [Svchost DLLs] :HKLM PcaSvc=C:\WINDOWS\SYSTEM32\PCASVC.DLL ### Program Compatibility Assistant Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\pcasvc.dll [Svchost DLLs] :HKLM PolicyAgent=C:\WINDOWS\SYSTEM32\IPSECSVC.DLL ### Windows IPsec SPD Server DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 %SystemRoot%\System32\ipsecsvc.dll [Svchost DLLs] :HKLM ProfSvc=C:\WINDOWS\SYSTEM32\PROFSVC.DLL ### ProfSvc Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %systemroot%\system32\profsvc.dll [Svchost DLLs] :HKLM RpcEptMapper=C:\WINDOWS\SYSTEM32\RPCEPMAP.DLL ### RPC Endpoint Mapper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\RpcEpMap.dll [Svchost DLLs] :HKLM SDRSVC=C:\WINDOWS\SYSTEM32\SDRSVC.DLL ### Microsoft® Windows Backup Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %Systemroot%\System32\SDRSVC.dll

Page 27: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Svchost DLLs] :HKLM seclogon=C:\WINDOWS\SYSTEM32\SECLOGON.DLL ### Secondary Logon Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %windir%\system32\seclogon.dll [Svchost DLLs] :HKLM SensrSvc=C:\WINDOWS\SYSTEM32\SENSRSVC.DLL ### Microsoft Windows ambient light service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\sensrsvc.dll [Svchost DLLs] :HKLM SstpSvc=C:\WINDOWS\SYSTEM32\SSTPSVC.DLL ### Provides the facility of using Secure Socket Tunneling Protocol (SSTP) to connect to remote computers (using VPN). Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\sstpsvc.dll [Svchost DLLs] :HKLM swprv=C:\WINDOWS\SYSTEM32\SWPRV.DLL ### Microsoft® Volume Shadow Copy Service software provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %Systemroot%\System32\swprv.dll [Svchost DLLs] :HKLM SysMain=C:\WINDOWS\SYSTEM32\SYSMAIN.DLL ### Superfetch Service Host Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %systemroot%\system32\sysmain.dll [Svchost DLLs] :HKLM TabletInputService=C:\WINDOWS\SYSTEM32\TABSVC.DLL ### Microsoft Tablet PC Input Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\TabSvc.dll [Svchost DLLs] :HKLM Themes=C:\WINDOWS\SYSTEM32\THEMESERVICE.DLL ### Windows Shell Theme Service Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\themeservice.dll [Svchost DLLs] :HKLM THREADORDER=C:\WINDOWS\SYSTEM32\MMCSS.DLL ### Multimedia Class Scheduler Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\mmcss.dll [Svchost DLLs] :HKLM TrkWks=C:\WINDOWS\SYSTEM32\TRKWKS.DLL ### Distributed Link Tracking Client Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\trkwks.dll [Svchost DLLs] :HKLM UxSms=C:\WINDOWS\SYSTEM32\UXSMS.DLL ### Microsoft User Experience Session Management Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\uxsms.dll [Svchost DLLs] :HKLM W32Time=C:\WINDOWS\SYSTEM32\W32TIME.DLL ### Windows Time Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %systemroot%\system32\w32time.dll [Svchost DLLs] :HKLM WbioSrvc=C:\WINDOWS\SYSTEM32\WBIOSRVC.DLL ### Windows Biometric Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\wbiosrvc.dll [Svchost DLLs] :HKLM WdiServiceHost=C:\WINDOWS\SYSTEM32\WDI.DLL ### Windows Diagnostic Infrastructure Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\wdi.dll [Svchost DLLs] :HKLM WdiSystemHost=C:\WINDOWS\SYSTEM32\WDI.DLL ### Windows Diagnostic Infrastructure Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\system32\wdi.dll [Svchost DLLs] :HKLM wercplsupport=C:\WINDOWS\SYSTEM32\WERCPLSUPPORT.DLL ### Problem Reports and Solutions Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\wercplsupport.dll [Svchost DLLs] :HKLM WerSvc=C:\WINDOWS\SYSTEM32\WERSVC.DLL ### Windows Error Reporting Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 %SystemRoot%\System32\WerSvc.dll [Svchost DLLs] :HKLM WinDefend=C:\PROGRAM FILES\WINDOWS DEFENDER\MPSVC.DLL ### Service Module Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18170 %ProgramFiles%\Windows Defender\mpsvc.dll [Svchost DLLs] :HKLM wudfsvc=C:\WINDOWS\SYSTEM32\WUDFSVC.DLL ### Windows Driver Foundation - User-mode Driver Framework Service Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16384 %SystemRoot%\System32\WUDFSvc.dll [Svchost DLLs] :HKLM WwanSvc=C:\WINDOWS\SYSTEM32\WWANSVC.DLL ### WWAN Auto Config Service Microsoft Corporation Microsoft® Windows® Operating S

Page 28: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

ystem 08.01.02.00 %SystemRoot%\System32\wwansvc.dll [Bootexecute] :HKLM BootExecute=autocheck autochk *

[Winlogon System] :HKLM system="" ### File is deleted or hidden by a rootkit or could not be located. [Winlogon System] :HKLM taskman="" ### File is deleted or hidden by a rootkit or could not be located. [Winlogon System] :HKLM UIHost="" ### File is deleted or hidden by a rootkit or could not be located. [Winlogon Autostart] :HKLM VmApplet=SystemPropertiesPerformance.exe /pagefile [Winlogon Autostart] :HKLM AppSetup="" [Environment - Path] :HKLM Path=C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\ [List of Injected DLLs] :HKLM AppInit_DLLs=C:\Windows\SysWOW64\nvinit.dll [LSA Notification Packages] :HKLM scecli=C:\Windows\system32\SCECLI.DLL ### scecli Windows Security Configuration Editor Client Engine Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 scecli.dll [LSA Security Packages] :HKLM kerberos=C:\Windows\system32\KERBEROS.DLL ### kerberos Kerberos Security Package Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 kerberos.dll [LSA Security Packages] :HKLM msv1_0=C:\Windows\system32\MSV1_0.DLL ### msv1_0 Microsoft Authentication Package v1.0 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 msv1_0.dll [LSA Security Packages] :HKLM schannel=C:\Windows\system32\SCHANNEL.DLL ### schannel TLS / SSL Security Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18714 schannel.dll [LSA Security Packages] :HKLM wdigest=C:\Windows\system32\WDIGEST.DLL ### wdigest Microsoft Digest Access Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18714 wdigest.dll [LSA Security Packages] :HKLM tspkg=C:\Windows\system32\TSPKG.DLL ### tspkg Web Service Security Package Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18714 tspkg.dll [LSA Security Packages] :HKLM pku2u=C:\Windows\system32\PKU2U.DLL ### pku2u Pku2u Security Package Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18658 pku2u.dll [LSA Security Packages] :HKLM livessp=C:\Windows\system32\LIVESSP.DLL ### livessp LiveSSP Microsoft Corp. Microsoft® CoReXT 7.250.4311.0 livessp.dll [Drivers] :HKLM 1394ohci=C:\WINDOWS\SYSTEM32\DRIVERS\1394OHCI.SYS ### 1394 OpenHCI Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\1394ohci.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM ACPI=C:\WINDOWS\SYSTEM32\DRIVERS\ACPI.SYS ### ACPI Driver for NT Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM AcpiPmi=C:\WINDOWS\SYSTEM32\DRIVERS\ACPIPMI.SYS ### ACPI Power Metering Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 \SystemRoot\system32\drivers\acpipmi.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM adp94xx=C:\WINDOWS\SYSTEM32\DRIVERS\ADP94XX.SYS ### Adaptec Windows SAS/SATA Storport Driver Adaptec, Inc. Adaptec Windows 7 SAS/SATA Family Storport Driver 6.1.3790.0 \SystemRoot\system32\DRIVERS\adp94xx.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM adpahci=C:\WINDOWS\SYSTEM32\DRIVERS\ADPAHCI.SYS ### Adaptec Windows SATA Storport Driver Adaptec, Inc. Adaptec Windows Server 2003 SATA Family Storport Driver 6.0.3790.16512 \SystemRoot\system32\DRIVERS\ad

Page 29: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

pahci.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM adpu320=C:\WINDOWS\SYSTEM32\DRIVERS\ADPU320.SYS ### Adaptec StorPort Ultra320 SCSI Driver (X64) Adaptec, Inc. Adaptec Windows Ultra320 Family Driver 6.0.6001.16459 \SystemRoot\system32\DRIVERS\adpu320.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM AFD=C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS ### Ancillary Function Driver for WinSock Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\afd.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM agp440=C:\WINDOWS\SYSTEM32\DRIVERS\AGP440.SYS ### 440 NT AGP Filter Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\agp440.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM aliide=C:\WINDOWS\SYSTEM32\DRIVERS\ALIIDE.SYS ### ALi mini IDE Driver Acer Laboratories Inc. ALi mini IDE Driver 1.20 \SystemRoot\system32\drivers\aliide.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM amdide=C:\WINDOWS\SYSTEM32\DRIVERS\AMDIDE.SYS ### AMD IDE Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\amdide.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM AmdK8=C:\WINDOWS\SYSTEM32\DRIVERS\AMDK8.SYS ### Processor Device Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\amdk8.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM AmdPPM=C:\WINDOWS\SYSTEM32\DRIVERS\AMDPPM.SYS ### Processor Device Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\amdppm.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM amdsata=C:\WINDOWS\SYSTEM32\DRIVERS\AMDSATA.SYS ### AHCI 1.2 Device Driver Advanced Micro Devices AHCI 1.2 Device Driver 1.1.2.5 \SystemRoot\system32\drivers\amdsata.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM amdsbs=C:\WINDOWS\SYSTEM32\DRIVERS\AMDSBS.SYS ### AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform AMD Technologies Inc. AMD Technology AHCI Compatible Controller 3.6.1540.127 \SystemRoot\system32\DRIVERS\amdsbs.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM amdxata=C:\WINDOWS\SYSTEM32\DRIVERS\AMDXATA.SYS ### Storage Filter Driver Advanced Micro Devices Storage Filter Driver 1.1.2.5 Service registry key doesn't exist or hidden. [Drivers] :HKLM AMPPAL=C:\WINDOWS\SYSTEM32\DRIVERS\AMPPAL.SYS ### Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter Windows (R) Win 7 DDK provider Intel® Centrino® Wireless Bluetooth® High Speed 16.5.0.0 Service registry key doesn't exist or hidden. [Drivers] :HKLM AMPPALP=C:\WINDOWS\SYSTEM32\DRIVERS\AMPPAL.SYS ### Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter Windows (R) Win 7 DDK provider Intel® Centrino® Wireless Bluetooth® High Speed 16.5.0.0 Service registry key doesn't exist or hidden. [Drivers] :HKLM AppID=C:\WINDOWS\SYSTEM32\DRIVERS\APPID.SYS ### AppID Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 \SystemRoot\system32\drivers\appid.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM arc=C:\WINDOWS\SYSTEM32\DRIVERS\ARC.SYS ### Adaptec RAID Storport Driver Adaptec, Inc. Adaptec RAID Controller 5.2.0.10384 \SystemRoot\system32\DRIVERS\arc.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM arcsas=C:\WINDOWS\SYSTEM32\DRIVERS\ARCSAS.SYS ### Adaptec SAS RAID WS03 Driver Adaptec, Inc. Adaptec RAID Controller 5.2.0.16119 \SystemRoot\system32\DRIVERS\arcsas.sys Service registry key doesn't exist or hidden.

Page 30: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Drivers] :HKLM AsyncMac=C:\WINDOWS\SYSTEM32\DRIVERS\ASYNCMAC.SYS ### MS Remote Access serial network driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM atapi=C:\WINDOWS\SYSTEM32\DRIVERS\ATAPI.SYS ### ATAPI IDE Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM b06bdrv=C:\WINDOWS\SYSTEM32\DRIVERS\BXVBDA.SYS ### Broadcom NetXtreme II GigE VBD Broadcom Corporation Broadcom NetXtreme II GigE 4.8.2.0 \SystemRoot\system32\DRIVERS\bxvbda.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM b57nd60a=C:\WINDOWS\SYSTEM32\DRIVERS\B57ND60A.SYS ### Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver. Broadcom Corporation Broadcom NetXtreme Gigabit Ethernet Driver 10.100.4.0 Service registry key doesn't exist or hidden. [Drivers] :HKLM blbdrive=C:\WINDOWS\SYSTEM32\DRIVERS\BLBDRIVE.SYS ### BLB Drive Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM bowser=C:\WINDOWS\SYSTEM32\DRIVERS\BOWSER.SYS ### NT Lan Manager Datagram Receiver Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17565 Service registry key doesn't exist or hidden. [Drivers] :HKLM BrFiltLo=C:\WINDOWS\SYSTEM32\DRIVERS\BRFILTLO.SYS ### Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver Brother Industries, Ltd. RemovableDisk 1.10.000 \SystemRoot\system32\DRIVERS\BrFiltLo.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM BrFiltUp=C:\WINDOWS\SYSTEM32\DRIVERS\BRFILTUP.SYS ### Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver Brother Industries, Ltd. RemovableDisk 1.04.000 \SystemRoot\system32\DRIVERS\BrFiltUp.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM Brserid=C:\WINDOWS\SYSTEM32\DRIVERS\BRSERID.SYS ### Brotehr Serial I/F Driver (WDM) Brother Industries Ltd. Microsoft® Windows® Operating System 1.0.0.0,2006 \SystemRoot\System32\Drivers\Brserid.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM BrSerWdm=C:\WINDOWS\SYSTEM32\DRIVERS\BRSERWDM.SYS ### Brother Serial driver (WDM version) Brother Industries Ltd. Brother MFL Pro 1.0.0.20,2003 \SystemRoot\System32\Drivers\BrSerWdm.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM BrUsbMdm=C:\WINDOWS\SYSTEM32\DRIVERS\BRUSBMDM.SYS ### Brother USB MDM Driver Brother Industries Ltd. Microsoft® Windows® Operating System 6.0.5479.0 \SystemRoot\System32\Drivers\BrUsbMdm.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM BrUsbSer=C:\WINDOWS\SYSTEM32\DRIVERS\BRUSBSER.SYS ### Brother USB Serial Driver Brother Industries Ltd. Microsoft® Windows® Operating System 6.0.5479.0 \SystemRoot\System32\Drivers\BrUsbSer.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM BthEnum=C:\WINDOWS\SYSTEM32\DRIVERS\BTHENUM.SYS ### Bluetooth Bus Extender Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM BTHMODEM=C:\WINDOWS\SYSTEM32\DRIVERS\BTHMODEM.SYS ### Bluetooth Communications Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\bthmodem.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM BthPan=C:\WINDOWS\SYSTEM32\DRIVERS\BTHPAN.SYS ### Bluetooth Personal Area Networking Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM BTHPORT=C:\WINDOWS\SYSTEM32\DRIVERS\BTHPORT.SYS ### Bluetooth Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM BTHUSB=C:\WINDOWS\SYSTEM32\DRIVERS\BTHUSB.SYS

Page 31: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Bluetooth Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM btmaux=C:\Windows\system32\DRIVERS\btmaux.sys ### File is deleted or hidden by a rootkit or could not be located. Service registry key doesn't exist or hidden. [Drivers] :HKLM btmhsf=C:\Windows\system32\DRIVERS\btmhsf.sys ### File is deleted or hidden by a rootkit or could not be located. Service registry key doesn't exist or hidden. [Drivers] :HKLM cdfs=C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS ### CD-ROM File System Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM cdrom=C:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS ### SCSI CD-ROM Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM circlass=C:\WINDOWS\SYSTEM32\DRIVERS\CIRCLASS.SYS ### Consumer IR Class Driver for eHome Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\circlass.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM CLFS=C:\WINDOWS\SYSTEM32\CLFS.SYS ### Common Log File System Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM CmBatt=C:\WINDOWS\SYSTEM32\DRIVERS\CMBATT.SYS ### Control Method Battery Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM cmdide=C:\WINDOWS\SYSTEM32\DRIVERS\CMDIDE.SYS ### CMD PCI IDE Bus Driver CMD Technology, Inc. Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\cmdide.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM CNG=C:\WINDOWS\SYSTEM32\DRIVERS\CNG.SYS ### Kernel Cryptography, Next Generation Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18717 Service registry key doesn't exist or hidden. [Drivers] :HKLM Compbatt=C:\WINDOWS\SYSTEM32\DRIVERS\COMPBATT.SYS ### Composite Battery Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM CompositeBus=C:\WINDOWS\SYSTEM32\DRIVERS\COMPOSITEBUS.SYS ### Multi-Transport Composite Bus Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 \SystemRoot\system32\drivers\CompositeBus.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM crcdisk=C:\WINDOWS\SYSTEM32\DRIVERS\CRCDISK.SYS ### Disk Block Verification Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\crcdisk.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM DfsC=C:\WINDOWS\SYSTEM32\DRIVERS\DFSC.SYS ### DFS Namespace Client Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM discache=C:\WINDOWS\SYSTEM32\DRIVERS\DISCACHE.SYS ### System Indexer/Cache Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM Disk=C:\WINDOWS\SYSTEM32\DRIVERS\DISK.SYS ### PnP Disk Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM drmkaud=C:\WINDOWS\SYSTEM32\DRIVERS\DRMKAUD.SYS ### Microsoft Trusted Audio Drivers Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\drmkaud.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM DXGKrnl=C:\WINDOWS\SYSTEM32\DRIVERS\DXGKRNL.SYS ### DirectX Graphics Kernel Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18510 \SystemRoot\System32\drivers\dxgkrnl.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM ebdrv=C:\WINDOWS\SYSTEM32\DRIVERS\EVBDA.SYS

Page 32: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Broadcom NetXtreme II 10 GigE VBD Broadcom Corporation Broadcom NetXtreme II 10 GigE 4.8.13.0 \SystemRoot\system32\DRIVERS\evbda.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM elxstor=C:\WINDOWS\SYSTEM32\DRIVERS\ELXSTOR.SYS ### Storport Miniport Driver for LightPulse HBAs Emulex Emulex LightPulse Storport Miniport Driver 7-2.10.211 01/23/2009 WS2K3 64 bit x64 \SystemRoot\system32\DRIVERS\elxstor.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM ErrDev=C:\WINDOWS\SYSTEM32\DRIVERS\ERRDEV.SYS ### Error Device Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\errdev.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM fdc=C:\WINDOWS\SYSTEM32\DRIVERS\FDC.SYS ### Floppy Disk Controller Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\fdc.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM FileInfo=C:\WINDOWS\SYSTEM32\DRIVERS\FILEINFO.SYS ### FileInfo Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM Filetrace=C:\WINDOWS\SYSTEM32\DRIVERS\FILETRACE.SYS ### File Trace Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM flpydisk=C:\WINDOWS\SYSTEM32\DRIVERS\FLPYDISK.SYS ### Floppy Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\flpydisk.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM FltMgr=C:\WINDOWS\SYSTEM32\DRIVERS\FLTMGR.SYS ### Microsoft Filesystem Filter Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM FsDepends=C:\WINDOWS\SYSTEM32\DRIVERS\FSDEPENDS.SYS ### File System Dependency Manager Mini Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM fvevol=C:\WINDOWS\SYSTEM32\DRIVERS\FVEVOL.SYS ### BitLocker Drive Encryption Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM gagp30kx=C:\WINDOWS\SYSTEM32\DRIVERS\GAGP30KX.SYS ### MS Generic AGPv3.0 Filter for K8/9 Processor Platforms Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\gagp30kx.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM hcmon=C:\WINDOWS\SYSTEM32\DRIVERS\HCMON.SYS ### VMware USB monitor VMware, Inc. VMware USB monitor 8.5.7.1 build-1637009 \??\C:\Windows\system32\drivers\hcmon.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM hcw85cir=C:\WINDOWS\SYSTEM32\DRIVERS\HCW85CIR.SYS ### Hauppauge WinTV 885 Consumer IR Driver for eHome Hauppauge Computer Works, Inc. hcw85cir.sys 1.31.27127 \SystemRoot\system32\drivers\hcw85cir.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM HdAudAddService=C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDIO.SYS ### High Definition Audio Function Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\HdAudio.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM HDAudBus=C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDBUS.SYS ### High Definition Audio Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\HDAudBus.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM HidBatt=C:\WINDOWS\SYSTEM32\DRIVERS\HIDBATT.SYS ### Hid Battery Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\HidBatt.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM HidBth=C:\WINDOWS\SYSTEM32\DRIVERS\HIDBTH.SYS

Page 33: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Bluetooth Miniport Driver for HID Devices Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\hidbth.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM HidIr=C:\WINDOWS\SYSTEM32\DRIVERS\HIDIR.SYS ### Infrared Miniport Driver for Input Devices Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\hidir.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM HidUsb=C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS ### USB Miniport Driver for Input Devices Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM HpSAMD=C:\WINDOWS\SYSTEM32\DRIVERS\HPSAMD.SYS ### Smart Array SAS/SATA Controller Media Driver Hewlett-Packard Company Smart Array SAS/SATA Controller Media Driver 6.12.6.64 Build 2 Media Driver (x86-64) \SystemRoot\system32\drivers\HpSAMD.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM HTTP=C:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS ### HTTP Protocol Stack Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM hwpolicy=C:\WINDOWS\SYSTEM32\DRIVERS\HWPOLICY.SYS ### Hardware Policy Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM i8042prt=C:\WINDOWS\SYSTEM32\DRIVERS\I8042PRT.SYS ### i8042 Port Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\i8042prt.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM iaStorV=C:\WINDOWS\SYSTEM32\DRIVERS\IASTORV.SYS ### Intel Matrix Storage Manager driver - x64 Intel Corporation Intel Matrix Storage Manager driver 8.6.2.1014 \SystemRoot\system32\drivers\iaStorV.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM ibtfltcoex=C:\Windows\system32\DRIVERS\iBtFltCoex.sys ### File is deleted or hidden by a rootkit or could not be located. Service registry key doesn't exist or hidden. [Drivers] :HKLM IDMWFP=C:\WINDOWS\SYSTEM32\DRIVERS\IDMWFP.SYS ### Internet Download Manager WFP Driver Tonec Inc. Internet Download Manager 6.21.16.0 Service registry key doesn't exist or hidden. [Drivers] :HKLM igfx=C:\WINDOWS\SYSTEM32\DRIVERS\IGDKMD64.SYS ### Intel Graphics Kernel Mode Driver Intel Corporation Intel Graphics Accelerator Drivers for Windows 8(R) 9.17.10.3347 Service registry key doesn't exist or hidden. [Drivers] :HKLM iirsp=C:\WINDOWS\SYSTEM32\DRIVERS\IIRSP.SYS ### Intel/ICP Raid Storport Driver Intel Corp./ICP vortex GmbH Intel/ICP Raid Storport Driver 4.22.0 \SystemRoot\system32\DRIVERS\iirsp.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM IntcAzAudAddService=C:\WINDOWS\SYSTEM32\DRIVERS\RTKVHD64.SYS ### Realtek(r) High Definition Audio Function Driver Realtek Semiconductor Corp. Realtek(r) High Definition Audio Function Driver 6.0.1.6312 Service registry key doesn't exist or hidden. [Drivers] :HKLM intelide=C:\WINDOWS\SYSTEM32\DRIVERS\INTELIDE.SYS ### Intel PCI IDE Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\intelide.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM intelppm=C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS ### Processor Device Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM IpFilterDriver=C:\WINDOWS\SYSTEM32\DRIVERS\IPFLTDRV.SYS ### IP FILTER DRIVER Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM IPMIDRV=C:\WINDOWS\SYSTEM32\DRIVERS\IPMIDRV.SYS ### WMI IPMI DRIVER Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 \SystemRoot\system32\drivers\IPMIDrv.sys Service registry key doesn

Page 34: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

't exist or hidden. [Drivers] :HKLM IPNAT=C:\WINDOWS\SYSTEM32\DRIVERS\IPNAT.SYS ### IP Network Address Translator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM IRENUM=C:\WINDOWS\SYSTEM32\DRIVERS\IRENUM.SYS ### Infra-Red Bus Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM isapnp=C:\WINDOWS\SYSTEM32\DRIVERS\ISAPNP.SYS ### PNP ISA Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\isapnp.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM iScsiPrt=C:\WINDOWS\SYSTEM32\DRIVERS\MSISCSI.SYS ### Microsoft iSCSI Initiator Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18386 \SystemRoot\system32\drivers\msiscsi.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM kbdclass=C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS ### Keyboard Class Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM kbdhid=C:\WINDOWS\SYSTEM32\DRIVERS\KBDHID.SYS ### HID Keyboard Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM KSecDD=C:\WINDOWS\SYSTEM32\DRIVERS\KSECDD.SYS ### Kernel Security Support Provider Interface Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18719 Service registry key doesn't exist or hidden. [Drivers] :HKLM KSecPkg=C:\WINDOWS\SYSTEM32\DRIVERS\KSECPKG.SYS ### Kernel Security Support Provider Interface Packages Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18719 Service registry key doesn't exist or hidden. [Drivers] :HKLM ksthunk=C:\WINDOWS\SYSTEM32\DRIVERS\KSTHUNK.SYS ### Kernel Streaming WOW Thunk Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\ksthunk.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM lltdio=C:\WINDOWS\SYSTEM32\DRIVERS\LLTDIO.SYS ### Link-Layer Topology Mapper I/O Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM LSI_FC=C:\WINDOWS\SYSTEM32\DRIVERS\LSI_FC.SYS ### LSI Fusion-MPT FC Driver (StorPort) LSI Corporation Microsoft® Windows® Operating System 6.1.7007.0 \SystemRoot\system32\DRIVERS\lsi_fc.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM LSI_SAS=C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS.SYS ### LSI Fusion-MPT SAS Driver (StorPort) LSI Corporation Microsoft® Windows® Operating System 6.1.7100.4100 \SystemRoot\system32\DRIVERS\lsi_sas.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM LSI_SAS2=C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS2.SYS ### LSI SAS Gen2 Driver (StorPort) LSI Corporation Microsoft® Windows® Operating System 6.1.7100.4100 \SystemRoot\system32\DRIVERS\lsi_sas2.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM LSI_SCSI=C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SCSI.SYS ### LSI Fusion-MPT SCSI Driver (StorPort) LSI Corporation Microsoft® Windows® Operating System 6.1.7083.0 \SystemRoot\system32\DRIVERS\lsi_scsi.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM luafv=C:\WINDOWS\SYSTEM32\DRIVERS\LUAFV.SYS ### LUA File Virtualization Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\luafv.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM megasas=C:\WINDOWS\SYSTEM32\DRIVERS\MEGASAS.SYS ### MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for x64 LSI Corporation MEGASAS Storport Driver for Windows 7\Server 2008 R2 for x64 4.5.1.64 \SystemRoot\system32\DRIVERS\megasas.sys Service registry key doesn't exist or

Page 35: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

hidden. [Drivers] :HKLM MegaSR=C:\WINDOWS\SYSTEM32\DRIVERS\MEGASR.SYS ### LSI MegaRAID Software RAID Driver LSI Corporation, Inc. MegaRAID Software RAID 13.05.0409.2009 \SystemRoot\system32\DRIVERS\MegaSR.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM MEIx64=C:\WINDOWS\SYSTEM32\DRIVERS\HECIX64.SYS ### Intel(R) Management Engine Interface Intel Corporation Intel(R) Management Engine Interface 7.0.0.1144 Service registry key doesn't exist or hidden. [Drivers] :HKLM Modem=C:\WINDOWS\SYSTEM32\DRIVERS\MODEM.SYS ### Modem Device Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM monitor=C:\WINDOWS\SYSTEM32\DRIVERS\MONITOR.SYS ### Monitor Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM mouclass=C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS ### Mouse Class Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM mouhid=C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS ### HID Mouse Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM mountmgr=C:\WINDOWS\SYSTEM32\DRIVERS\MOUNTMGR.SYS ### Mount Point Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM MpFilter=C:\WINDOWS\SYSTEM32\DRIVERS\MPFILTER.SYS ### Microsoft antimalware file system filter driver Microsoft Corporation Microsoft Malware Protection 4.7.0200.0 Service registry key doesn't exist or hidden. [Drivers] :HKLM mpio=C:\WINDOWS\SYSTEM32\DRIVERS\MPIO.SYS ### MultiPath Support Bus-Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\mpio.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM mpsdrv=C:\WINDOWS\SYSTEM32\DRIVERS\MPSDRV.SYS ### Microsoft Protection Service Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM MRxDAV=C:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS ### Windows NT WebDav Minirdr Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18706 \SystemRoot\system32\drivers\mrxdav.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM mrxsmb=C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS ### Windows NT SMB Minirdr Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17605 Service registry key doesn't exist or hidden. [Drivers] :HKLM mrxsmb10=C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB10.SYS ### Longhorn SMB Downlevel SubRdr Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17647 Service registry key doesn't exist or hidden. [Drivers] :HKLM mrxsmb20=C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB20.SYS ### Longhorn SMB 2.0 Redirector Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17605 Service registry key doesn't exist or hidden. [Drivers] :HKLM msahci=C:\WINDOWS\SYSTEM32\DRIVERS\MSAHCI.SYS ### MS AHCI 1.0 Standard Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM msdsm=C:\WINDOWS\SYSTEM32\DRIVERS\MSDSM.SYS ### Microsoft Device Specific Module Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\msdsm.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM mshidkmdf=C:\WINDOWS\SYSTEM32\DRIVERS\MSHIDKMDF.SYS ### Pass-through HID to KMDF Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\System32\drivers\mshidkmdf.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM msisadrv=C:\WINDOWS\SYSTEM32\DRIVERS\MSISADRV.SYS ### ISA Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600

Page 36: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM MSKSSRV=C:\WINDOWS\SYSTEM32\DRIVERS\MSKSSRV.SYS ### MS KS Server Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM MSPCLOCK=C:\WINDOWS\SYSTEM32\DRIVERS\MSPCLOCK.SYS ### MS Proxy Clock Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM MSPQM=C:\WINDOWS\SYSTEM32\DRIVERS\MSPQM.SYS ### MS Proxy Quality Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM mssmbios=C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS ### System Management BIOS Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\mssmbios.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM MSTEE=C:\WINDOWS\SYSTEM32\DRIVERS\MSTEE.SYS ### WDM Tee/Communication Transform Filter Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM MTConfig=C:\WINDOWS\SYSTEM32\DRIVERS\MTCONFIG.SYS ### Microsoft Multi-Touch HID Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\MTConfig.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM Mup=C:\WINDOWS\SYSTEM32\DRIVERS\MUP.SYS ### Multiple UNC Provider Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM NativeWifiP=C:\WINDOWS\SYSTEM32\DRIVERS\NWIFI.SYS ### NativeWiFi Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM NDIS=C:\WINDOWS\SYSTEM32\DRIVERS\NDIS.SYS ### NDIS 6.20 driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM NdisCap=C:\WINDOWS\SYSTEM32\DRIVERS\NDISCAP.SYS ### NDIS Packet Capture Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM NdisTapi=C:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS ### NDIS 3.0 connection wrapper driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM Ndisuio=C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS ### NDIS User mode I/O driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM NdisWan=C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS ### MS PPP Framing Driver (Strong Encryption) Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM NetBIOS=C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS ### NetBIOS interface driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM NetBT=C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS ### MBT Transport driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM NETwNs64=C:\WINDOWS\SYSTEM32\DRIVERS\NETWSW01.SYS ### Intel® Wireless WiFi Link Driver Intel Corporation Intel® Wireless WiFi Link Adapter Service registry key doesn't exist or hidden. [Drivers] :HKLM nfrd960=C:\WINDOWS\SYSTEM32\DRIVERS\NFRD960.SYS ### IBM ServeRAID Controller Driver IBM Corporation IBM ServeRAID Controller 7.10.56 \SystemRoot\system32\DRIVERS\nfrd960.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM NisDrv=C:\WINDOWS\SYSTEM32\DRIVERS\NISDRVWFP.SYS ### Microsoft Network Realtime Inspection Driver Microsoft Corporation Microsoft Malware Protection 4.7.0200.0 Service registry key doesn't exist or hidden.

Page 37: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Drivers] :HKLM nsiproxy=C:\WINDOWS\SYSTEM32\DRIVERS\NSIPROXY.SYS ### NSI Proxy Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM nusb3hub=C:\WINDOWS\SYSTEM32\DRIVERS\NUSB3HUB.SYS ### USB 3.0 Hub Driver Renesas Electronics Corporation USB 3.0 Device Driver 2.1.27.0 Service registry key doesn't exist or hidden. [Drivers] :HKLM nusb3xhc=C:\WINDOWS\SYSTEM32\DRIVERS\NUSB3XHC.SYS ### USB 3.0 Host Controller Driver Renesas Electronics Corporation USB 3.0 Device Driver 2.1.27.0 Service registry key doesn't exist or hidden. [Drivers] :HKLM nvkflt=C:\WINDOWS\SYSTEM32\DRIVERS\NVKFLT.SYS ### NVIDIA Windows Kernel Mode Driver, Version 347.52 NVIDIA Corporation NVIDIA Windows Kernel Mode Driver, Version 347.52 9.18.13.4752 Service registry key doesn't exist or hidden. [Drivers] :HKLM nvlddmkm=C:\WINDOWS\SYSTEM32\DRIVERS\NVLDDMKM.SYS ### NVIDIA Windows Kernel Mode Driver, Version 347.52 NVIDIA Corporation NVIDIA Windows Kernel Mode Driver, Version 347.52 9.18.13.4752 Service registry key doesn't exist or hidden. [Drivers] :HKLM nvpciflt=C:\WINDOWS\SYSTEM32\DRIVERS\NVPCIFLT.SYS ### NVIDIA Windows Kernel Mode Driver, Version 347.52 NVIDIA Corporation NVIDIA Windows Kernel Mode Driver, Version 347.52 9.18.13.4752 Service registry key doesn't exist or hidden. [Drivers] :HKLM nvraid=C:\WINDOWS\SYSTEM32\DRIVERS\NVRAID.SYS ### NVIDIA® nForce(TM) RAID Driver NVIDIA Corporation NVIDIA nForce(TM) RAID Driver 10.6.0.18 \SystemRoot\system32\drivers\nvraid.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM nvstor=C:\WINDOWS\SYSTEM32\DRIVERS\NVSTOR.SYS ### NVIDIA® nForce(TM) Sata Performance Driver NVIDIA Corporation NVIDIA nForce(TM) SATA Driver 10.6.0.18 \SystemRoot\system32\drivers\nvstor.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM NvStreamKms=C:\PROGRAM FILES\NVIDIA CORPORATION\NVSTREAMSRV\NVSTREAMKMS.SYS ### Nvidia Streaming Kernel Service NVIDIA Corporation Nvidia Streaming Kernel Service 1.1.0001 \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM nvvad_WaveExtensible=C:\WINDOWS\SYSTEM32\DRIVERS\NVVAD64V.SYS ### NVIDIA Virtual Audio Driver NVIDIA Corporation NVIDIA Virtual Audio Driver 1.2.27 Service registry key doesn't exist or hidden. [Drivers] :HKLM nv_agp=C:\WINDOWS\SYSTEM32\DRIVERS\NV_AGP.SYS ### NForce NT AGP Filter Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\nv_agp.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM ohci1394=C:\WINDOWS\SYSTEM32\DRIVERS\OHCI1394.SYS ### 1394 OpenHCI Port Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\ohci1394.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM Parport=C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS ### Parallel Port Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\parport.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM Partizan=C:\Windows\system32\drivers\Partizan.sys ### File is deleted or hidden by a rootkit or could not be located. Service registry key doesn't exist or hidden. [Drivers] :HKLM partmgr=C:\WINDOWS\SYSTEM32\DRIVERS\PARTMGR.SYS ### Partition Management Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM pci=C:\WINDOWS\SYSTEM32\DRIVERS\PCI.SYS ### NT Plug and Play PCI Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM pciide=C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDE.SYS ### Generic PCI IDE Bus Driver Microsoft Corporation Microsoft® Windows® Operating

Page 38: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

System 6.1.7600.16385 \SystemRoot\system32\drivers\pciide.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM pcmcia=C:\WINDOWS\SYSTEM32\DRIVERS\PCMCIA.SYS ### PCMCIA Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\pcmcia.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM pcw=C:\WINDOWS\SYSTEM32\DRIVERS\PCW.SYS ### Performance Counters for Windows Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM PEAUTH=C:\WINDOWS\SYSTEM32\DRIVERS\PEAUTH.SYS ### Protected Environment Authentication and Authorization Export Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM PptpMiniport=C:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS ### Peer-to-Peer Tunneling Protocol Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM Processor=C:\WINDOWS\SYSTEM32\DRIVERS\PROCESSR.SYS ### Processor Device Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\processr.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM Psched=C:\WINDOWS\SYSTEM32\DRIVERS\PACER.SYS ### QoS Packet Scheduler Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM qicflt=C:\WINDOWS\SYSTEM32\DRIVERS\QICFLT.SYS ### Win7 QicFilterDriver-64Bits Quanta Computer QIC1802 Filter Driver 1.0.1404.1011 Service registry key doesn't exist or hidden. [Drivers] :HKLM ql2300=C:\WINDOWS\SYSTEM32\DRIVERS\QL2300.SYS ### QLogic Fibre Channel Stor Miniport Driver QLogic Corporation QLogic Fibre Channel Stor Miniport Driver 9.1.8.6 \SystemRoot\system32\DRIVERS\ql2300.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM ql40xx=C:\WINDOWS\SYSTEM32\DRIVERS\QL40XX.SYS ### QLogic iSCSI Storport Miniport Driver QLogic Corporation QLA40XX iSCSI Host Bus Adapter 2.1.3.20 (STOR wx64) \SystemRoot\system32\DRIVERS\ql40xx.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM QWAVEdrv=C:\WINDOWS\SYSTEM32\DRIVERS\QWAVEDRV.SYS ### Microsoft Quality Windows Audio Video Experience (qWave) Support Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\qwavedrv.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM RasAcd=C:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS ### RAS Automatic Connection Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM RasAgileVpn=C:\WINDOWS\SYSTEM32\DRIVERS\AGILEVPN.SYS ### RAS Agile Vpn Miniport Call Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM Rasl2tp=C:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS ### RAS L2TP mini-port/call-manager driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM RasPppoe=C:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS ### RAS PPPoE mini-port/call-manager driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM RasSstp=C:\WINDOWS\SYSTEM32\DRIVERS\RASSSTP.SYS ### RAS SSTP Miniport Call Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM rdbss=C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS ### Redirected Drive Buffering SubSystem Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden.

Page 39: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Drivers] :HKLM rdpbus=C:\WINDOWS\SYSTEM32\DRIVERS\RDPBUS.SYS ### Microsoft RDP Bus Device driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\rdpbus.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM RDPCDD=C:\WINDOWS\SYSTEM32\DRIVERS\RDPCDD.SYS ### RDP Miniport Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM RDPENCDD=C:\WINDOWS\SYSTEM32\DRIVERS\RDPENCDD.SYS ### RDP Encoder Miniport Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM RDPREFMP=C:\WINDOWS\SYSTEM32\DRIVERS\RDPREFMP.SYS ### RDP Reflector Driver Miniport Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM RdpVideoMiniport=C:\WINDOWS\SYSTEM32\DRIVERS\RDPVIDEOMINIPORT.SYS ### Microsoft RDP Video Miniport driver Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16398 Service registry key doesn't exist or hidden. [Drivers] :HKLM rdyboost=C:\WINDOWS\SYSTEM32\DRIVERS\RDYBOOST.SYS ### ReadyBoost Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM RFCOMM=C:\WINDOWS\SYSTEM32\DRIVERS\RFCOMM.SYS ### Bluetooth RFCOMM Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM rspndr=C:\WINDOWS\SYSTEM32\DRIVERS\RSPNDR.SYS ### Link-Layer Topology Responder Driver for NDIS 6 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM RTL8167=C:\WINDOWS\SYSTEM32\DRIVERS\RT64WIN7.SYS ### Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver Realtek Realtek 8136/8168/8169 PCI/PCIe Adapters 7.046.0610.2011 Service registry key doesn't exist or hidden. [Drivers] :HKLM sbp2port=C:\WINDOWS\SYSTEM32\DRIVERS\SBP2PORT.SYS ### SBP-2 Protocol Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 \SystemRoot\system32\drivers\sbp2port.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM scfilter=C:\WINDOWS\SYSTEM32\DRIVERS\SCFILTER.SYS ### Microsoft Smart Card Reader Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM Serenum=C:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS ### Serial Port Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\serenum.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM Serial=C:\WINDOWS\SYSTEM32\DRIVERS\SERIAL.SYS ### Serial Device Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\serial.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM sermouse=C:\WINDOWS\SYSTEM32\DRIVERS\SERMOUSE.SYS ### Serial Mouse Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\sermouse.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM sffdisk=C:\WINDOWS\SYSTEM32\DRIVERS\SFFDISK.SYS ### Small Form Factor Disk Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\sffdisk.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM sffp_mmc=C:\WINDOWS\SYSTEM32\DRIVERS\SFFP_MMC.SYS ### Small Form Factor MMC Protocol Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\sffp_mmc.sys Service registry key doesn't exist or hidden.

Page 40: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Drivers] :HKLM sffp_sd=C:\WINDOWS\SYSTEM32\DRIVERS\SFFP_SD.SYS ### Small Form Factor SD Protocol Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 \SystemRoot\system32\drivers\sffp_sd.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM sfloppy=C:\WINDOWS\SYSTEM32\DRIVERS\SFLOPPY.SYS ### SCSI Floppy Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\sfloppy.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM SiSRaid2=C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID2.SYS ### SiS RAID Stor Miniport Driver Silicon Integrated Systems Corp. Microsoft® Windows® Operating System 2.60.01 \SystemRoot\system32\DRIVERS\SiSRaid2.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM SiSRaid4=C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID4.SYS ### SiS AHCI Stor-Miniport Driver Silicon Integrated Systems Microsoft® Windows® Operating System 6.1.6918.0 \SystemRoot\system32\DRIVERS\sisraid4.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM Smb=C:\WINDOWS\SYSTEM32\DRIVERS\SMB.SYS ### SMB Transport driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM srv=C:\WINDOWS\SYSTEM32\DRIVERS\SRV.SYS ### Server driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM srv2=C:\WINDOWS\SYSTEM32\DRIVERS\SRV2.SYS ### Smb 2.0 Server driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17608 Service registry key doesn't exist or hidden. [Drivers] :HKLM srvnet=C:\WINDOWS\SYSTEM32\DRIVERS\SRVNET.SYS ### Server Network driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17608 Service registry key doesn't exist or hidden. [Drivers] :HKLM stexstor=C:\WINDOWS\SYSTEM32\DRIVERS\STEXSTOR.SYS ### Promise SuperTrak EX Series Driver for Windows Promise Technology Promise SuperTrak EX Series 5.00 \SystemRoot\system32\DRIVERS\stexstor.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM swenum=C:\WINDOWS\SYSTEM32\DRIVERS\SWENUM.SYS ### Plug and Play Software Device Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\swenum.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM SynTP=C:\WINDOWS\SYSTEM32\DRIVERS\SYNTP.SYS ### Synaptics Touchpad Driver Synaptics Incorporated Synaptics Pointing Device Driver 15.2.6 16Dec10 Service registry key doesn't exist or hidden. [Drivers] :HKLM Tcpip=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS ### TCP/IP Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM TCPIP6=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS ### TCP/IP Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM tcpipreg=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIPREG.SYS ### TCP/IP Registry Compatibility Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17964 Service registry key doesn't exist or hidden. [Drivers] :HKLM TDPIPE=C:\WINDOWS\SYSTEM32\DRIVERS\TDPIPE.SYS ### Named Pipe Transport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM TDTCP=C:\WINDOWS\SYSTEM32\DRIVERS\TDTCP.SYS ### TCP Transport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17779 Service registry key doesn't exist or hidden. [Drivers] :HKLM tdx=C:\WINDOWS\SYSTEM32\DRIVERS\TDX.SYS ### TDI Translation Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18658 Service registry key doesn't exist or hidden. [Drivers] :HKLM TermDD=C:\WINDOWS\SYSTEM32\DRIVERS\TERMDD.SYS ### Remote Desktop Server Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 \SystemRoot\system32\drivers\termdd.sys Service regist

Page 41: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

ry key doesn't exist or hidden. [Drivers] :HKLM tssecsrv=C:\WINDOWS\SYSTEM32\DRIVERS\TSSECSRV.SYS ### TS Security Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18540 Service registry key doesn't exist or hidden. [Drivers] :HKLM TsUsbFlt=C:\WINDOWS\SYSTEM32\DRIVERS\TSUSBFLT.SYS ### Remote Desktop USB Hub Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.3.9600.16415 Service registry key doesn't exist or hidden. [Drivers] :HKLM tunnel=C:\WINDOWS\SYSTEM32\DRIVERS\TUNNEL.SYS ### Microsoft Tunnel Interface Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM uagp35=C:\WINDOWS\SYSTEM32\DRIVERS\UAGP35.SYS ### MS AGPv3.5 Filter Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\uagp35.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM udfs=C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS ### UDF File System Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM uliagpkx=C:\WINDOWS\SYSTEM32\DRIVERS\ULIAGPKX.SYS ### ULi AGPv3.0 Filter for K8/9 Processor Platforms Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\uliagpkx.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM umbus=C:\WINDOWS\SYSTEM32\DRIVERS\UMBUS.SYS ### User-Mode Bus Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM UmPass=C:\WINDOWS\SYSTEM32\DRIVERS\UMPASS.SYS ### Generic pass-through driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\umpass.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM usbccgp=C:\WINDOWS\SYSTEM32\DRIVERS\USBCCGP.SYS ### USB Common Class Generic Parent Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18328 Service registry key doesn't exist or hidden. [Drivers] :HKLM usbcir=C:\WINDOWS\SYSTEM32\DRIVERS\USBCIR.SYS ### USB Consumer IR Driver for eHome Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18208 \SystemRoot\system32\drivers\usbcir.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM usbehci=C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS ### EHCI eUSB Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18328 Service registry key doesn't exist or hidden. [Drivers] :HKLM usbhub=C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS ### Default Hub Driver for USB Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM usbohci=C:\WINDOWS\SYSTEM32\DRIVERS\USBOHCI.SYS ### OHCI USB Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18328 \SystemRoot\system32\drivers\usbohci.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM usbprint=C:\WINDOWS\SYSTEM32\DRIVERS\USBPRINT.SYS ### USB Printer driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\usbprint.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM USBSTOR=C:\WINDOWS\SYSTEM32\DRIVERS\USBSTOR.SYS ### USB Mass Storage Class Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17577 \SystemRoot\system32\drivers\USBSTOR.SYS Service registry key doesn't exist or hidden. [Drivers] :HKLM usbuhci=C:\WINDOWS\SYSTEM32\DRIVERS\USBUHCI.SYS ### UHCI USB Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18328 \SystemRoot\system32\drivers\usbuhci.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM usbvideo=C:\WINDOWS\SYSTEM32\DRIVERS\USBVIDEO.SYS ### USB Video Class Driver Microsoft Corporation Microsoft® Windows® Operating Sys

Page 42: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

tem 6.1.7601.18208 \SystemRoot\System32\Drivers\usbvideo.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM vdrvroot=C:\WINDOWS\SYSTEM32\DRIVERS\VDRVROOT.SYS ### Virtual Drive Root Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM vga=C:\WINDOWS\SYSTEM32\DRIVERS\VGAPNP.SYS ### VGA/Super VGA Video Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM VgaSave=C:\WINDOWS\SYSTEM32\DRIVERS\VGA.SYS ### VGA/Super VGA Video Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\System32\drivers\vga.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM vhdmp=C:\WINDOWS\SYSTEM32\DRIVERS\VHDMP.SYS ### VHD Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\vhdmp.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM viaide=C:\WINDOWS\SYSTEM32\DRIVERS\VIAIDE.SYS ### VIA Generic PCI IDE Bus Driver VIA Technologies, Inc. VIA PCI IDE MINI Driver 6,0,6000,170 \SystemRoot\system32\drivers\viaide.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM vmci=C:\WINDOWS\SYSTEM32\DRIVERS\VMCI.SYS ### VMware PCI VMCI Bus Device VMware, Inc. VMware PCI VMCI Bus Device 9.5.10.0 build-1141980 Service registry key doesn't exist or hidden. [Drivers] :HKLM VMnetAdapter=C:\WINDOWS\SYSTEM32\DRIVERS\VMNETADAPTER.SYS ### VMware virtual network adapter driver (64-bit) VMware, Inc. VMware virtual network adapter driver (64-bit) 4.2.1.0 build-1233679 Service registry key doesn't exist or hidden. [Drivers] :HKLM VMnetBridge=C:\WINDOWS\SYSTEM32\DRIVERS\VMNETBRIDGE.SYS ### VMware bridge driver (64-bit) VMware, Inc. VMware bridge driver (64-bit) 4.2.1.0 build-1233679 Service registry key doesn't exist or hidden. [Drivers] :HKLM VMnetuserif=C:\WINDOWS\SYSTEM32\DRIVERS\VMNETUSERIF.SYS ### VMware network application interface driver (64-bit) VMware, Inc. VMware network application interface driver (64-bit) 4.2.1.0 build-1744117 \??\C:\Windows\system32\drivers\vmnetuserif.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM vmx86=C:\WINDOWS\SYSTEM32\DRIVERS\VMX86.SYS ### VMware kernel driver VMware, Inc. VMware kernel driver 10.0.2 build-1744117 \??\C:\Windows\system32\drivers\vmx86.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM volmgr=C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGR.SYS ### Volume Manager Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM volmgrx=C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGRX.SYS ### Volume Manager Extension Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM volsnap=C:\WINDOWS\SYSTEM32\DRIVERS\VOLSNAP.SYS ### Volume Shadow Copy Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM vpnva=C:\WINDOWS\SYSTEM32\DRIVERS\VPNVA64-6.SYS ### Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows Cisco Systems, Inc. Cisco AnyConnect Secure Mobility Client 3, 1, 04058 Service registry key doesn't exist or hidden. [Drivers] :HKLM vsmraid=C:\WINDOWS\SYSTEM32\DRIVERS\VSMRAID.SYS ### VIA RAID DRIVER FOR AMD-X86-64 VIA Technologies Inc.,Ltd VIA RAID driver 6.0.6000.6210 \SystemRoot\system32\DRIVERS\vsmraid.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM vsock=C:\WINDOWS\SYSTEM32\DRIVERS\VSOCK.SYS ### VMware vSockets Service VMware, Inc. VMware vSockets Service 9.5.7.0 build-1253991 Service registry key doesn't exist or hidden. [Drivers] :HKLM vstor2-mntapi20-shared=SysWOW64\drivers\vstor2-mntapi20-shared

Page 43: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

.sys ### VMware Virtual Storage Volume Driver VMware, Inc. VMware vCenter Converter Standalone 5.1.0 build-1027190 VMware Virtual Storage Volume Driver VMware, Inc. VMware vCenter Converter Standalone 5.1.0 build-1027190 File is deleted or hidden by a rootkit or could not be located. Service registry key doesn't exist or hidden. [Drivers] :HKLM vwifibus=C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIBUS.SYS ### Virtual WiFi Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM vwififlt=C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIFLT.SYS ### Virtual WiFi Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM vwifimp=C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIMP.SYS ### Virtual WiFi Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM WacomPen=C:\WINDOWS\SYSTEM32\DRIVERS\WACOMPEN.SYS ### Wacom Serial Pen Tablet HID Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\wacompen.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM WANARP=C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS ### MS Remote Access and Routing ARP Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM Wanarpv6=C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS ### MS Remote Access and Routing ARP Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 Service registry key doesn't exist or hidden. [Drivers] :HKLM Wd=C:\WINDOWS\SYSTEM32\DRIVERS\WD.SYS ### Microsoft Watchdog Timer Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\DRIVERS\wd.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM Wdf01000=C:\WINDOWS\SYSTEM32\DRIVERS\WDF01000.SYS ### Kernel Mode Driver Framework Runtime Microsoft Corporation Microsoft® Windows® Operating System 1.11.9200.16384 Service registry key doesn't exist or hidden. [Drivers] :HKLM WfpLwf=C:\WINDOWS\SYSTEM32\DRIVERS\WFPLWF.SYS ### WFP NDIS 6.20 Lightweight Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM WIMMount=C:\WINDOWS\SYSTEM32\DRIVERS\WIMMOUNT.SYS ### Wim file system Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 Service registry key doesn't exist or hidden. [Drivers] :HKLM WmiAcpi=C:\WINDOWS\SYSTEM32\DRIVERS\WMIACPI.SYS ### Windows Management Interface for ACPI Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\wmiacpi.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM ws2ifsl=C:\WINDOWS\SYSTEM32\DRIVERS\WS2IFSL.SYS ### Winsock2 IFS Layer Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 \SystemRoot\system32\drivers\ws2ifsl.sys Service registry key doesn't exist or hidden. [Drivers] :HKLM WudfPf=C:\WINDOWS\SYSTEM32\DRIVERS\WUDFPF.SYS ### Windows Driver Foundation - User-mode Driver Framework Platform Driver Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16384 Service registry key doesn't exist or hidden. [Drivers] :HKLM WUDFRd=C:\WINDOWS\SYSTEM32\DRIVERS\WUDFRD.SYS ### Windows Driver Foundation - User-mode Driver Framework Reflector Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16384 Service registry key doesn't exist or hidden. [Codecs] :HKLM vidc.mrle=C:\Windows\system32\MSRLE32.DLL ### Microsoft RLE Compressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 msrle32.dll

Page 44: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Codecs] :HKLM vidc.msvc=C:\Windows\system32\MSVIDC32.DLL ### Microsoft Video 1 Compressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 msvidc32.dll [Codecs] :HKLM msacm.imaadpcm=C:\Windows\system32\IMAADP32.ACM ### IMA ADPCM CODEC for MSACM Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 imaadp32.acm [Codecs] :HKLM msacm.msg711=C:\Windows\system32\MSG711.ACM ### Microsoft CCITT G.711 (A-Law and u-Law) CODEC for MSACM Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 msg711.acm [Codecs] :HKLM msacm.msgsm610=C:\Windows\system32\MSGSM32.ACM ### Microsoft GSM 6.10 Audio CODEC for MSACM Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 msgsm32.acm [Codecs] :HKLM msacm.msadpcm=C:\Windows\system32\MSADP32.ACM ### Microsoft ADPCM CODEC for MSACM Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 msadp32.acm [Codecs] :HKLM midimapper=C:\Windows\system32\MIDIMAP.DLL ### Microsoft MIDI Mapper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 midimap.dll [Codecs] :HKLM wavemapper=C:\Windows\system32\MSACM32.DRV ### Microsoft Sound Mapper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 msacm32.drv [Codecs] :HKLM vidc.uyvy=C:\Windows\system32\MSYUV.DLL ### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 msyuv.dll [Codecs] :HKLM vidc.yuy2=C:\Windows\system32\MSYUV.DLL ### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 msyuv.dll [Codecs] :HKLM vidc.yvyu=C:\Windows\system32\MSYUV.DLL ### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 msyuv.dll [Codecs] :HKLM vidc.iyuv=C:\Windows\system32\IYUV_32.DLL ### Intel Indeo(R) Video YUV Codec Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 iyuv_32.dll [Codecs] :HKLM vidc.i420=C:\Windows\system32\IYUV_32.DLL ### Intel Indeo(R) Video YUV Codec Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 iyuv_32.dll [Codecs] :HKLM vidc.yvu9=C:\Windows\system32\TSBYUV.DLL ### Toshiba Video Codec Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 tsbyuv.dll [Codecs] :HKLM msacm.l3acm=C:\WINDOWS\SYSWOW64\L3CODECA.ACM ### MPEG Layer-3 Audio Codec for MSACM Fraunhofer Institut Integrierte Schaltungen IIS MPEG Layer-3 Audio Codec for MSACM 1, 0, 0, 0 [Codecs] :HKLM vidc.cvid=C:\WINDOWS\Syswow64\ICCVID.DLL ### Cinepak® Codec Radius Inc. Cinepak for Windows 32 1.10.0.0 iccvid.dll [Codecs] :HKLM wave1=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 wdmaud.drv [Codecs] :HKLM midi1=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 wdmaud.drv [Codecs] :HKLM mixer1=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 wdmaud.drv [Codecs] :HKLM aux1=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 wdmaud.drv [Codecs] :HKLM wave=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 wdmaud.drv [Codecs] :HKLM midi=C:\Windows\system32\WDMAUD.DRV

Page 45: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 wdmaud.drv [Codecs] :HKLM mixer=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 wdmaud.drv [Codecs] :HKLM aux=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 wdmaud.drv [Codecs] :HKLM wave2=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 wdmaud.drv [Codecs] :HKLM midi2=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 wdmaud.drv [Codecs] :HKLM mixer2=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 wdmaud.drv [DCOM Components] :HKLM {F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}="" [DCOM Components] :HKLM {5839FCA9-774D-42A1-ACDA-D6A79037F57F}=C:\WINDOWS\SYSTEM32\WBEM\FASTPROX.DLL ### WMI Custom Marshaller Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [DCOM Components] :HKLM {42AEDC87-2188-41FD-B9A3-0C966FEABEC1}=C:\WINDOWS\SYSTEM32\SHELL32.DLL ### Windows Shell Common Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [DCOM User Components] :HKCU {F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}="" [DCOM User Components] :HKCU {FBEB8A05-BEEE-4442-804E-409D6C4515E9}="" [DCOM User Components] :HKCU {42AEDC87-2188-41FD-B9A3-0C966FEABEC1}=""[Auto Start Apps] [Registry Run] :HKCU GoogleChromeAutoLaunch_AA6900251BF3B10B439C9FCB29BCA2FD=C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Google Chrome Google Inc. Google Chrome 40.0.2214.115 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window [Registry Run] :HKCU Google Update=C:\USERS\$UNIL\APPDATA\LOCAL\GOOGLE\UPDATE\GOOGLEUPDATE.EXE ### Google Installer Google Inc. Google Update 1.3.21.103 "C:\Users\$unil\AppData\Local\Google\Update\GoogleUpdate.exe" /c [Registry Run] :HKCU Google+ Auto Backup=C:\USERS\$UNIL\APPDATA\LOCAL\PROGRAMS\GOOGLE\GOOGLE+ AUTO BACKUP\GOOGLE+ AUTO BACKUP.EXE ### AutoBackup Google Inc. AutoBackup 1.0.26.151 "C:\Users\$unil\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart [Registry Run] :HKCU uTorrent=C:\USERS\$UNIL\APPDATA\ROAMING\UTORRENT\UTORRENT.EXE ### µTorrent BitTorrent Inc. µTorrent 3.4.2.38758 "C:\Users\$unil\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED [Registry Run] :HKCU IDMan=C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\IDMAN.EXE ### Internet Download Manager (IDM) Tonec Inc. Internet Download Manager (IDM) 6, 22, 1, 3 C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot [Registry Run] :HKCU Skype=C:\PROGRAM FILES (X86)\SKYPE\PHONE\SKYPE.EXE ### Skype Skype Technologies S.A. Skype 7.1 "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [Registry Run] :HKCU Lync=C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE15\LYNC.EXE ### Microsoft Lync Microsoft Corporation Microsoft Office 2013 15.0.4693.1000 "C:\Program Files\Microsoft Office\Office15\lync.exe" /fromrunkey [Registry Run] :HKCU DellSystemDetect=C:\Users\$unil\AppData\Local\Apps\2.0\2ACD3OXW.0BE\KDATV99D.CAC\dell..tion_e30b47f5d4a30e9e_0005.000e_4ab3a7332dd76702\DellSystemDetect.exe ### File is deleted or hidden by a rootkit or could not be located.

Page 46: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Registry Run] :HKLM SunJavaUpdateSched=C:\PROGRAM FILES (X86)\COMMON FILES\JAVA\JAVA UPDATE\JUSCHED.EXE ### Java Update Scheduler Oracle Corporation Java Platform SE Auto Updater 2.8.31.13 "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [Registry Run] :HKLM BingDesktop=C:\PROGRAM FILES (X86)\MICROSOFT\BINGDESKTOP\BINGDESKTOP.EXE ### Bing Desktop Application Microsoft Corp. Bing Desktop 1.3.470.0 C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe /fromkey [Registry Run] :HKLM vmware-tray.exe=C:\PROGRAM FILES (X86)\VMWARE\VMWARE WORKSTATION\VMWARE-TRAY.EXE ### VMware Tray Process VMware, Inc. VMware Workstation 10.0.2 build-1744117 "C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe" [Registry Run] :HKLM NUSB3MON=C:\PROGRAM FILES (X86)\RENESAS ELECTRONICS\USB 3.0 HOST CONTROLLER DRIVER\APPLICATION\NUSB3MON.EXE ### USB 3.0 Monitor Renesas Electronics Corporation USB 3.0 Monitor 2.1.26.0 "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [Registry Run(x64)] :HKLM QuickSet=C:\PROGRAM FILES\DELL\QUICKSET\QUICKSET.EXE ### QuickSet Dell Inc. QuickSet 11, 0, 24, 2 [Registry Run(x64)] :HKLM MSC=C:\PROGRAM FILES\MICROSOFT SECURITY CLIENT\MSSECES.EXE ### Microsoft Security Client User Interface Microsoft Corporation Microsoft Security Client 4.7.0205.0 "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [Registry Run(x64)] :HKLM RTHDVCPL=C:\PROGRAM FILES\REALTEK\AUDIO\HDA\RTKNGUI64.EXE ### Realtek HD Audio Manager Realtek Semiconductor Realtek HD Audio Manager 1.0.0.99 C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s [Registry Run(x64)] :HKLM RtHDVBg=C:\PROGRAM FILES\REALTEK\AUDIO\HDA\RAVBG64.EXE ### HD Audio Background Process Realtek Semiconductor HD Audio Background Process 1.0.0.58 C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /MAXX3 [Registry Run(x64)] :HKLM IgfxTray=C:\WINDOWS\SYSTEM32\IGFXTRAY.EXE ### igfxTray Module Intel Corporation Intel(R) Common User Interface 8.15.10.3347 "C:\Windows\system32\igfxtray.exe" [Registry Run(x64)] :HKLM HotKeysCmds=C:\WINDOWS\SYSTEM32\HKCMD.EXE ### hkcmd Module Intel Corporation Intel(R) Common User Interface 8.15.10.3347 "C:\Windows\system32\hkcmd.exe" [Registry Run(x64)] :HKLM Persistence=C:\WINDOWS\SYSTEM32\IGFXPERS.EXE ### persistence Module Intel Corporation Intel(R) Common User Interface 8.15.10.3347 "C:\Windows\system32\igfxpers.exe" [Registry Run(x64)] :HKLM NvBackend=C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\UPDATE CORE\NVBACKEND.EXE ### NVIDIA Backend NVIDIA Corporation NVIDIA Backend 17.12.8.0 "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [Registry Run(x64)] :HKLM ShadowPlay=C:\WINDOWS\SYSTEM32\NVSPCAP64.DLL ### NVIDIA Capture Server Proxy NVIDIA Corporation NVIDIA GeForce Experience 17.12.8.0 C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart [Registry Run(x64)] :HKLM SynTPEnh=C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPENH.EXE ### Synaptics TouchPad Enhancements Synaptics Incorporated Synaptics Pointing Device Driver 15.2.6 16Dec10 %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [Win.ini] :HKCU load="" ### File is deleted or hidden by a rootkit or could not be located. [Win.ini] :HKCU run="" ### File is deleted or hidden by a rootkit or could not be located. [Scheduled Tasks] GoogleUpdateTaskUserS-1-5-21-2114291827-790987161-653555402-1000UA=C:\USERS\$UNIL\APPDATA\LOCAL\GOOGLE\UPDATE\GOOGLEUPDATE.EXE ### Google Installer Google Inc. Google Update 1.3.21.103

Page 47: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Scheduled Tasks] GoogleUpdateTaskUserS-1-5-21-2114291827-790987161-653555402-1000Core=C:\USERS\$UNIL\APPDATA\LOCAL\GOOGLE\UPDATE\GOOGLEUPDATE.EXE ### Google Installer Google Inc. Google Update 1.3.21.103 [Scheduled Tasks] GoogleUpdateTaskMachineUA=C:\PROGRAM FILES (X86)\GOOGLE\UPDATE\GOOGLEUPDATE.EXE ### Google Installer Google Inc. Google Update 1.3.26.9 [Scheduled Tasks] GoogleUpdateTaskMachineCore=C:\PROGRAM FILES (X86)\GOOGLE\UPDATE\GOOGLEUPDATE.EXE ### Google Installer Google Inc. Google Update 1.3.26.9 [Scheduled Tasks] Adobe Flash Player Updater=C:\WINDOWS\SYSWOW64\MACROMED\FLASH\FLASHPLAYERUPDATESERVICE.EXE ### Adobe® Flash® Player Update Service 16.0 r0 Adobe Systems Incorporated Adobe® Flash® Player Update Service 16,0,0,305 [Unwanted Software Files] :HKLM OpenCandy=C:\USERS\$UNIL\APPDATA\ROAMING\OPENCANDY\ [Unwanted Software Files] :HKLM AVG Security Toolbar=C:\PROGRAMDATA\AVG SECURITY TOOLBAR\ [Detected using Heuristic Algorithm] :HKLM ADOBE=C:\PROGRAM FILES (X86)\ADOBE\ [Detected using Heuristic Algorithm] :HKLM AVG WEB TUNEUP=C:\PROGRAM FILES (X86)\AVG WEB TUNEUP\ [Detected using Heuristic Algorithm] :HKLM AVIRA=C:\PROGRAM FILES (X86)\AVIRA\ [Detected using Heuristic Algorithm] :HKLM BING BAR INSTALLER=C:\PROGRAM FILES (X86)\BING BAR INSTALLER\ [Detected using Heuristic Algorithm] :HKLM CISCO=C:\PROGRAM FILES (X86)\CISCO\ [Detected using Heuristic Algorithm] :HKLM COMMON FILES=C:\PROGRAM FILES (X86)\COMMON FILES\ [Detected using Heuristic Algorithm] :HKLM ADOBE=C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ [Detected using Heuristic Algorithm] :HKLM INSTALLSHIELD=C:\PROGRAM FILES (X86)\COMMON FILES\INSTALLSHIELD\ [Detected using Heuristic Algorithm] :HKLM JAVA=C:\PROGRAM FILES (X86)\COMMON FILES\JAVA\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT SHARED=C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\ [Detected using Heuristic Algorithm] :HKLM SKYPE=C:\PROGRAM FILES (X86)\COMMON FILES\SKYPE\ [Detected using Heuristic Algorithm] :HKLM SYSTEM=C:\PROGRAM FILES (X86)\COMMON FILES\SYSTEM\ [Detected using Heuristic Algorithm] :HKLM VMWARE=C:\PROGRAM FILES (X86)\COMMON FILES\VMWARE\ [Detected using Heuristic Algorithm] :HKLM WINDOWS LIVE=C:\PROGRAM FILES (X86)\COMMON FILES\WINDOWS LIVE\ [Detected using Heuristic Algorithm] :HKLM GOOGLE=C:\PROGRAM FILES (X86)\GOOGLE\ [Detected using Heuristic Algorithm] :HKLM INSTALLSHIELD INSTALLATION INFORMATION=C:\PROGRAM FILES (X86)\INSTALLSHIELD INSTALLATION INFORMATION\ [Detected using Heuristic Algorithm] :HKLM INTEL=C:\PROGRAM FILES (X86)\INTEL\ [Detected using Heuristic Algorithm] :HKLM INTERNET DOWNLOAD MANAGER=C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\ [Detected using Heuristic Algorithm] :HKLM INTERNET EXPLORER=C:\PROGRAM FILES (X86)\INTERNET EXPLORER\ [Detected using Heuristic Algorithm] :HKLM JAVA=C:\PROGRAM FILES (X86)\JAVA\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT=C:\PROGRAM FILES (X86)\MICROSOFT\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT ANALYSIS SERVICES=C:\PROGRAM FILES (X86)\MICROSOFT ANALYSIS SERVICES\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT ASP.NET=C:\PROGRAM FILES (X86)\MICROSOFT ASP.NET\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT OFFICE=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\

Page 48: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Detected using Heuristic Algorithm] :HKLM MICROSOFT SECURITY CLIENT=C:\PROGRAM FILES (X86)\MICROSOFT SECURITY CLIENT\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT SILVERLIGHT=C:\PROGRAM FILES (X86)\MICROSOFT SILVERLIGHT\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT SKYDRIVE=C:\PROGRAM FILES (X86)\MICROSOFT SKYDRIVE\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT SQL SERVER=C:\PROGRAM FILES (X86)\MICROSOFT SQL SERVER\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT SQL SERVER COMPACT EDITION=C:\PROGRAM FILES (X86)\MICROSOFT SQL SERVER COMPACT EDITION\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT.NET=C:\PROGRAM FILES (X86)\MICROSOFT.NET\ [Detected using Heuristic Algorithm] :HKLM MOZILLA FIREFOX=C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\ [Detected using Heuristic Algorithm] :HKLM MOZILLA MAINTENANCE SERVICE=C:\PROGRAM FILES (X86)\MOZILLA MAINTENANCE SERVICE\ [Detected using Heuristic Algorithm] :HKLM NVIDIA CORPORATION=C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\ [Detected using Heuristic Algorithm] :HKLM REALTEK=C:\PROGRAM FILES (X86)\REALTEK\ [Detected using Heuristic Algorithm] :HKLM RENESAS ELECTRONICS=C:\PROGRAM FILES (X86)\RENESAS ELECTRONICS\ [Detected using Heuristic Algorithm] :HKLM SKYPE=C:\PROGRAM FILES (X86)\SKYPE\ [Detected using Heuristic Algorithm] :HKLM TEMP=C:\PROGRAM FILES (X86)\TEMP\ [Detected using Heuristic Algorithm] :HKLM UNHACKME=C:\PROGRAM FILES (X86)\UNHACKME\ [Detected using Heuristic Algorithm] :HKLM VIDEOLAN=C:\PROGRAM FILES (X86)\VIDEOLAN\ [Detected using Heuristic Algorithm] :HKLM VMWARE=C:\PROGRAM FILES (X86)\VMWARE\ [Detected using Heuristic Algorithm] :HKLM WINDOWS DEFENDER=C:\PROGRAM FILES (X86)\WINDOWS DEFENDER\ [Detected using Heuristic Algorithm] :HKLM WINDOWS LIVE=C:\PROGRAM FILES (X86)\WINDOWS LIVE\ [Detected using Heuristic Algorithm] :HKLM WINDOWS MAIL=C:\PROGRAM FILES (X86)\WINDOWS MAIL\ [Detected using Heuristic Algorithm] :HKLM WINDOWS MEDIA PLAYER=C:\PROGRAM FILES (X86)\WINDOWS MEDIA PLAYER\ [Detected using Heuristic Algorithm] :HKLM WINDOWS PHOTO VIEWER=C:\PROGRAM FILES (X86)\WINDOWS PHOTO VIEWER\ [Detected using Heuristic Algorithm] :HKLM WINDOWS PORTABLE DEVICES=C:\PROGRAM FILES (X86)\WINDOWS PORTABLE DEVICES\ [Detected using Heuristic Algorithm] :HKLM WINDOWS SIDEBAR=C:\PROGRAM FILES (X86)\WINDOWS SIDEBAR\ [Detected using Heuristic Algorithm] :HKLM COMMON FILES=C:\PROGRAM FILES\COMMON FILES\ [Detected using Heuristic Algorithm] :HKLM DELL=C:\PROGRAM FILES\DELL\ [Detected using Heuristic Algorithm] :HKLM DESKTOPSLIDES=C:\PROGRAM FILES\DESKTOPSLIDES\ [Detected using Heuristic Algorithm] :HKLM DVD MAKER=C:\PROGRAM FILES\DVD MAKER\ [Detected using Heuristic Algorithm] :HKLM INTEL=C:\PROGRAM FILES\INTEL\ [Detected using Heuristic Algorithm] :HKLM INTERNET EXPLORER=C:\PROGRAM FILES\INTERNET EXPLORER\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT ANALYSIS SERVICES=C:\PROGRAM FILES\MICROSOFT ANALYSIS SERVICES\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT OFFICE=C:\PROGRAM FILES\MICROSOFT OFFICE\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT SECURITY CLIENT=C:\PROGRAM FILES\MICROSOFT SECURITY CLIENT\

Page 49: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Detected using Heuristic Algorithm] :HKLM MICROSOFT SILVERLIGHT=C:\PROGRAM FILES\MICROSOFT SILVERLIGHT\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT SQL SERVER=C:\PROGRAM FILES\MICROSOFT SQL SERVER\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT.NET=C:\PROGRAM FILES\MICROSOFT.NET\ [Detected using Heuristic Algorithm] :HKLM NVIDIA CORPORATION=C:\PROGRAM FILES\NVIDIA CORPORATION\ [Detected using Heuristic Algorithm] :HKLM REALTEK=C:\PROGRAM FILES\REALTEK\ [Detected using Heuristic Algorithm] :HKLM SYNAPTICS=C:\PROGRAM FILES\SYNAPTICS\ [Detected using Heuristic Algorithm] :HKLM WINDOWS DEFENDER=C:\PROGRAM FILES\WINDOWS DEFENDER\ [Detected using Heuristic Algorithm] :HKLM WINDOWS JOURNAL=C:\PROGRAM FILES\WINDOWS JOURNAL\ [Detected using Heuristic Algorithm] :HKLM WINDOWS LIVE=C:\PROGRAM FILES\WINDOWS LIVE\ [Detected using Heuristic Algorithm] :HKLM WINDOWS MAIL=C:\PROGRAM FILES\WINDOWS MAIL\ [Detected using Heuristic Algorithm] :HKLM WINDOWS MEDIA PLAYER=C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\ [Detected using Heuristic Algorithm] :HKLM WINDOWS PHOTO VIEWER=C:\PROGRAM FILES\WINDOWS PHOTO VIEWER\ [Detected using Heuristic Algorithm] :HKLM WINDOWS PORTABLE DEVICES=C:\PROGRAM FILES\WINDOWS PORTABLE DEVICES\ [Detected using Heuristic Algorithm] :HKLM WINDOWS SIDEBAR=C:\PROGRAM FILES\WINDOWS SIDEBAR\ [Detected using Heuristic Algorithm] :HKLM WINRAR=C:\PROGRAM FILES\WINRAR\ [Detected using Heuristic Algorithm] :HKLM ADOBE=C:\PROGRAMDATA\ADOBE\ [Detected using Heuristic Algorithm] :HKLM AVIRA=C:\PROGRAMDATA\AVIRA\ [Detected using Heuristic Algorithm] :HKLM CISCO=C:\PROGRAMDATA\CISCO\ [Detected using Heuristic Algorithm] :HKLM COMMON FILES=C:\PROGRAMDATA\COMMON FILES\ [Detected using Heuristic Algorithm] :HKLM DELL=C:\PROGRAMDATA\DELL\ [Detected using Heuristic Algorithm] :HKLM IDM=C:\PROGRAMDATA\IDM\ [Detected using Heuristic Algorithm] :HKLM INTEL=C:\PROGRAMDATA\INTEL\ [Detected using Heuristic Algorithm] :HKLM INTEL.SAV=C:\PROGRAMDATA\INTEL.SAV\ [Detected using Heuristic Algorithm] :HKLM MFADATA=C:\PROGRAMDATA\MFADATA\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT=C:\PROGRAMDATA\MICROSOFT\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT HELP=C:\PROGRAMDATA\MICROSOFT HELP\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT ONEDRIVE=C:\PROGRAMDATA\MICROSOFT ONEDRIVE\ [Detected using Heuristic Algorithm] :HKLM MOZILLA=C:\PROGRAMDATA\MOZILLA\ [Detected using Heuristic Algorithm] :HKLM NVIDIA=C:\PROGRAMDATA\NVIDIA\ [Detected using Heuristic Algorithm] :HKLM NVIDIA CORPORATION=C:\PROGRAMDATA\NVIDIA CORPORATION\ [Detected using Heuristic Algorithm] :HKLM ORACLE=C:\PROGRAMDATA\ORACLE\ [Detected using Heuristic Algorithm] :HKLM PACKAGE CACHE=C:\PROGRAMDATA\PACKAGE CACHE\ [Detected using Heuristic Algorithm] :HKLM PCDR=C:\PROGRAMDATA\PCDR\ [Detected using Heuristic Algorithm] :HKLM REGID.1991-06.COM.MICROSOFT=C:\PROGRAMDATA\REGID.1991-06.COM.MICROSOFT\ [Detected using Heuristic Algorithm] :HKLM ROAMING=C:\PROGRAMDATA\ROAMING\ [Detected using Heuristic Algorithm] :HKLM SKYPE=C:\PROGRAMDATA\SKYPE\ [Detected using Heuristic Algorithm] :HKLM SUN=C:\PROGRAMDATA\SUN\ [Detected using Heuristic Algorithm] :HKLM VMWARE=C:\PROGRAMDATA\VMWARE\ [Detected using Heuristic Algorithm] :HKLM APPDATA=C:\USERS\$UNIL\APPDATA\ [Detected using Heuristic Algorithm] :HKLM ADOBE=C:\USERS\$UNIL\APPDATA\LOCAL\ADOBE\

Page 50: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Detected using Heuristic Algorithm] :HKLM APPLICATION DATA=C:\USERS\$UNIL\APPDATA\LOCAL\APPLICATION DATA\ [Detected using Heuristic Algorithm] :HKLM APPS=C:\USERS\$UNIL\APPDATA\LOCAL\APPS\ [Detected using Heuristic Algorithm] :HKLM CISCO=C:\USERS\$UNIL\APPDATA\LOCAL\CISCO\ [Detected using Heuristic Algorithm] :HKLM DEPLOYMENT=C:\USERS\$UNIL\APPDATA\LOCAL\DEPLOYMENT\ [Detected using Heuristic Algorithm] :HKLM DIAGNOSTICS=C:\USERS\$UNIL\APPDATA\LOCAL\DIAGNOSTICS\ [Detected using Heuristic Algorithm] :HKLM ELEVATEDDIAGNOSTICS=C:\USERS\$UNIL\APPDATA\LOCAL\ELEVATEDDIAGNOSTICS\ [Detected using Heuristic Algorithm] :HKLM GOOGLE=C:\USERS\$UNIL\APPDATA\LOCAL\GOOGLE\ [Detected using Heuristic Algorithm] :HKLM HISTORY=C:\USERS\$UNIL\APPDATA\LOCAL\HISTORY\ [Detected using Heuristic Algorithm] :HKLM INTEL=C:\USERS\$UNIL\APPDATA\LOCAL\INTEL\ [Detected using Heuristic Algorithm] :HKLM MFADATA=C:\USERS\$UNIL\APPDATA\LOCAL\MFADATA\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT=C:\USERS\$UNIL\APPDATA\LOCAL\MICROSOFT\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT HELP=C:\USERS\$UNIL\APPDATA\LOCAL\MICROSOFT HELP\ [Detected using Heuristic Algorithm] :HKLM MOZILLA=C:\USERS\$UNIL\APPDATA\LOCAL\MOZILLA\ [Detected using Heuristic Algorithm] :HKLM NVIDIA=C:\USERS\$UNIL\APPDATA\LOCAL\NVIDIA\ [Detected using Heuristic Algorithm] :HKLM NVIDIA CORPORATION=C:\USERS\$UNIL\APPDATA\LOCAL\NVIDIA CORPORATION\ [Detected using Heuristic Algorithm] :HKLM PROGRAMS=C:\USERS\$UNIL\APPDATA\LOCAL\PROGRAMS\ [Detected using Heuristic Algorithm] :HKLM SKYPE=C:\USERS\$UNIL\APPDATA\LOCAL\SKYPE\ [Detected using Heuristic Algorithm] :HKLM TEMP=C:\USERS\$UNIL\APPDATA\LOCAL\TEMP\ [Detected using Heuristic Algorithm] :HKLM TEMPORARY INTERNET FILES=C:\USERS\$UNIL\APPDATA\LOCAL\TEMPORARY INTERNET FILES\ [Detected using Heuristic Algorithm] :HKLM VIRTUALSTORE=C:\USERS\$UNIL\APPDATA\LOCAL\VIRTUALSTORE\ [Detected using Heuristic Algorithm] :HKLM VMWARE=C:\USERS\$UNIL\APPDATA\LOCAL\VMWARE\ [Detected using Heuristic Algorithm] :HKLM WALLPAPERSWIDE.COM=C:\USERS\$UNIL\APPDATA\LOCAL\WALLPAPERSWIDE.COM\ [Detected using Heuristic Algorithm] :HKLM WINDOWS LIVE=C:\USERS\$UNIL\APPDATA\LOCAL\WINDOWS LIVE\ [Detected using Heuristic Algorithm] :HKLM WINDOWS LIVE WRITER=C:\USERS\$UNIL\APPDATA\LOCAL\WINDOWS LIVE WRITER\ [Detected using Heuristic Algorithm] :HKLM ADOBE=C:\USERS\$UNIL\APPDATA\LOCALLOW\ADOBE\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT=C:\USERS\$UNIL\APPDATA\LOCALLOW\MICROSOFT\ [Detected using Heuristic Algorithm] :HKLM PCDR=C:\USERS\$UNIL\APPDATA\LOCALLOW\PCDR\ [Detected using Heuristic Algorithm] :HKLM SUN=C:\USERS\$UNIL\APPDATA\LOCALLOW\SUN\ [Detected using Heuristic Algorithm] :HKLM ADOBE=C:\USERS\$UNIL\APPDATA\ROAMING\ADOBE\ [Detected using Heuristic Algorithm] :HKLM DELL=C:\USERS\$UNIL\APPDATA\ROAMING\DELL\

Page 51: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Detected using Heuristic Algorithm] :HKLM DMCACHE=C:\USERS\$UNIL\APPDATA\ROAMING\DMCACHE\ [Detected using Heuristic Algorithm] :HKLM IDENTITIES=C:\USERS\$UNIL\APPDATA\ROAMING\IDENTITIES\ [Detected using Heuristic Algorithm] :HKLM IDM=C:\USERS\$UNIL\APPDATA\ROAMING\IDM\ [Detected using Heuristic Algorithm] :HKLM INTEL=C:\USERS\$UNIL\APPDATA\ROAMING\INTEL\ [Detected using Heuristic Algorithm] :HKLM MICROSOFT=C:\USERS\$UNIL\APPDATA\ROAMING\MICROSOFT\ [Detected using Heuristic Algorithm] :HKLM MOZILLA=C:\USERS\$UNIL\APPDATA\ROAMING\MOZILLA\ [Detected using Heuristic Algorithm] :HKLM PCDR=C:\USERS\$UNIL\APPDATA\ROAMING\PCDR\ [Detected using Heuristic Algorithm] :HKLM SKYPE=C:\USERS\$UNIL\APPDATA\ROAMING\SKYPE\ [Detected using Heuristic Algorithm] :HKLM TUNEUP SOFTWARE=C:\USERS\$UNIL\APPDATA\ROAMING\TUNEUP SOFTWARE\ [Detected using Heuristic Algorithm] :HKLM UTORRENT=C:\USERS\$UNIL\APPDATA\ROAMING\UTORRENT\ [Detected using Heuristic Algorithm] :HKLM VLC=C:\USERS\$UNIL\APPDATA\ROAMING\VLC\ [Detected using Heuristic Algorithm] :HKLM VMWARE=C:\USERS\$UNIL\APPDATA\ROAMING\VMWARE\ [Detected using Heuristic Algorithm] :HKLM WINDOWS LIVE WRITER=C:\USERS\$UNIL\APPDATA\ROAMING\WINDOWS LIVE WRITER\ [Detected using Heuristic Algorithm] :HKLM WINRAR=C:\USERS\$UNIL\APPDATA\ROAMING\WINRAR\ [Detected using Heuristic Algorithm] :HKLM APPLICATION DATA=C:\USERS\$UNIL\APPLICATION DATA\ [Detected using Heuristic Algorithm] :HKLM CONTACTS=C:\USERS\$UNIL\CONTACTS\ [Detected using Heuristic Algorithm] :HKLM COOKIES=C:\USERS\$UNIL\COOKIES\ [Detected using Heuristic Algorithm] :HKLM DESKTOP=C:\USERS\$UNIL\DESKTOP\ [Detected using Heuristic Algorithm] :HKLM DOCUMENTS=C:\USERS\$UNIL\DOCUMENTS\ [Detected using Heuristic Algorithm] :HKLM DOWNLOADS=C:\USERS\$UNIL\DOWNLOADS\ [Detected using Heuristic Algorithm] :HKLM FAVORITES=C:\USERS\$UNIL\FAVORITES\ [Detected using Heuristic Algorithm] :HKLM LINKS=C:\USERS\$UNIL\LINKS\ [Detected using Heuristic Algorithm] :HKLM LOCAL SETTINGS=C:\USERS\$UNIL\LOCAL SETTINGS\ [Detected using Heuristic Algorithm] :HKLM MUSIC=C:\USERS\$UNIL\MUSIC\ [Detected using Heuristic Algorithm] :HKLM MY DOCUMENTS=C:\USERS\$UNIL\MY DOCUMENTS\ [Detected using Heuristic Algorithm] :HKLM NETHOOD=C:\USERS\$UNIL\NETHOOD\ [Detected using Heuristic Algorithm] :HKLM PICTURES=C:\USERS\$UNIL\PICTURES\ [Detected using Heuristic Algorithm] :HKLM PRINTHOOD=C:\USERS\$UNIL\PRINTHOOD\ [Detected using Heuristic Algorithm] :HKLM RECENT=C:\USERS\$UNIL\RECENT\ [Detected using Heuristic Algorithm] :HKLM ROAMING=C:\USERS\$UNIL\ROAMING\ [Detected using Heuristic Algorithm] :HKLM SAVED GAMES=C:\USERS\$UNIL\SAVED GAMES\ [Detected using Heuristic Algorithm] :HKLM SEARCHES=C:\USERS\$UNIL\SEARCHES\ [Detected using Heuristic Algorithm] :HKLM SENDTO=C:\USERS\$UNIL\SENDTO\ [Detected using Heuristic Algorithm] :HKLM SKYDRIVE=C:\USERS\$UNIL\SKYDRIVE\ [Detected using Heuristic Algorithm] :HKLM START MENU=C:\USERS\$UNIL\START MENU\ [Detected using Heuristic Algorithm] :HKLM TEMPLATES=C:\USERS\$UNIL\TEMPLATES\ [Detected using Heuristic Algorithm] :HKLM VIDEOS=C:\USERS\$UNIL\VIDEOS\[In memory] [Running Processes] C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\UPDATE CORE\NVBACKEND.EXE ### NVIDIA Backend NVIDIA Corporation NVIDIA Backend 17.12.8.0

Page 52: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Running Processes] C:\USERS\$UNIL\APPDATA\LOCAL\PROGRAMS\GOOGLE\GOOGLE+ AUTO BACKUP\GOOGLE+ AUTO BACKUP.EXE ### AutoBackup Google Inc. AutoBackup 1.0.26.151 [Running Processes] C:\USERS\$UNIL\APPDATA\ROAMING\UTORRENT\UTORRENT.EXE ### µTorrent BitTorrent Inc. µTorrent 3.4.2.38758 [Running Processes] C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\IDMAN.EXE ### Internet Download Manager (IDM) Tonec Inc. Internet Download Manager (IDM) 6, 22, 1, 3 [Running Processes] C:\PROGRAM FILES (X86)\SKYPE\PHONE\SKYPE.EXE ### Skype Skype Technologies S.A. Skype 7.1 [Running Processes] C:\PROGRAM FILES (X86)\COMMON FILES\JAVA\JAVA UPDATE\JUSCHED.EXE ### Java Update Scheduler Oracle Corporation Java Platform SE Auto Updater 2.8.31.13 [Running Processes] C:\PROGRAM FILES (X86)\MICROSOFT\BINGDESKTOP\BINGDESKTOP.EXE ### Bing Desktop Application Microsoft Corp. Bing Desktop 1.3.470.0 [Running Processes] C:\PROGRAM FILES (X86)\VMWARE\VMWARE WORKSTATION\VMWARE-TRAY.EXE ### VMware Tray Process VMware, Inc. VMware Workstation 10.0.2 build-1744117 [Running Processes] C:\PROGRAM FILES (X86)\RENESAS ELECTRONICS\USB 3.0 HOST CONTROLLER DRIVER\APPLICATION\NUSB3MON.EXE ### USB 3.0 Monitor Renesas Electronics Corporation USB 3.0 Monitor 2.1.26.0 [Running Processes] C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\IEMONITOR.EXE ### Internet Download Manager agent for click monitoring in IE-based browsers Tonec Inc. IEMonitor Application 6, 22, 1, 1 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Running Processes] C:\PROGRAM FILES (X86)\MICROSOFT\BINGDESKTOP\BDEXTHOST.EXE ### BDExtHost.exe Microsoft Corp. Bing Desktop 1.3.470.0 [Running Processes] C:\PROGRAM FILES (X86)\MICROSOFT\BINGDESKTOP\BDAPPHOST.EXE ### BDAppHost.exe Microsoft Corp. Bing Desktop 1.3.470.0 [Running Processes] C:\PROGRAM FILES (X86)\MICROSOFT\BINGDESKTOP\BDRUNTIMEHOST.EXE ### BDRuntimeHost.exe Microsoft Corp. Bing Desktop 1.3.470.0 [Running Processes] C:\PROGRAM FILES (X86)\MICROSOFT\BINGDESKTOP\BDSURROGATEHOST.EXE ### BDSurrogateHost.exe Microsoft Corp. Bing Desktop 1.3.470.0 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Running Processes] C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE

Page 53: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Running Processes] C:\PROGRAM FILES (X86)\UNHACKME\UNHACKME.EXE ### Detects and removes rootkits Greatis Software UnHackMe 7.70 [Running Processes] C:\PROGRAM FILES (X86)\UNHACKME\HACKMON.EXE ### Detects Rootkits in background Greatis Software UnHackMe 7.1 [Running Processes] C:\PROGRAM FILES (X86)\UNHACKME\REANIMATOR.EXE ### RegRun Start Control Greatis Software RegRun Security Suite 7.70 release [Loaded DLLs] C:\Windows\System32\mstask.dll ### Task Scheduler interface DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\ieframe.dll ### Internet Browser Microsoft Corporation Internet Explorer 11.00.9600.17631 [Loaded DLLs] C:\Program Files (x86)\UnHackMe\parser.dll ### Analytics Parser Greatis Software UnHackMe 7.65 [Loaded DLLs] C:\Windows\system32\ksuser.dll ### User CSA Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\MF.dll ### Media Foundation DLL Microsoft Corporation Microsoft® Windows® Operating System 12.0.7600.16385 [Loaded DLLs] C:\Windows\system32\EVR.dll ### Enhanced Video Renderer DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\msmpeg2vdec.dll ### Microsoft DTV-DVD Video Decoder Microsoft Corporation Microsoft® Windows® Operating System 12.0.9200.17037 [Loaded DLLs] C:\Windows\system32\MFPlat.dll ### Media Foundation Platform DLL Microsoft Corporation Microsoft® Windows® Operating System 12.0.7600.16385 [Loaded DLLs] C:\Windows\system32\igd10umd32.dll [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\libegl.dll ### ANGLE libEGL Dynamic Link Library ANGLE libEGL Dynamic Link Library 2.1.d77bd1632e4c [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\libglesv2.dll ### ANGLE libGLESv2 Dynamic Link Library ANGLE libGLESv2 Dynamic Link Library 2.1.d77bd1632e4c [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\D3DCompiler_46.dll ### Direct3D HLSL Compiler Microsoft Corporation Microsoft® DirectX for Windows® 9.30.9200.20789 [Loaded DLLs] C:\Windows\system32\dxva2.dll ### DirectX Video Acceleration 2.0 DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\PepperFlash\pepflashplayer.dll [Loaded DLLs] C:\Windows\system32\IconCodecService.dll ### Converts a PNG part of the icon to a legacy bmp icon Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\shell32.dll ### Windows Shell Common Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\comctl32.dll ### Common Controls Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Users\$unil\AppData\Local\Microsoft\BingDesktop\en-US\Apps\Wallpaper_5386c77076d04cf9a8b5d619b4cba48e\1.4.82\wallpaper.dll [Loaded DLLs] C:\Program Files (x86)\Internet Explorer\ieproxy.dll

Page 54: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### IE ActiveX Interface Marshaling Library Microsoft Corporation Internet Explorer 11.00.9600.17631 [Loaded DLLs] C:\Windows\SysWOW64\dispex.dll ### Microsoft ® DispEx Microsoft Corporation Microsoft ® DispEx 5.8.7600.16385 [Loaded DLLs] C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL ### Microsoft Office XML MIME Filter Microsoft Corporation Microsoft Office InfoPath 15.0.4569.1503 [Loaded DLLs] C:\Windows\SysWOW64\scrrun.dll ### Microsoft ® Script Runtime Microsoft Corporation Microsoft ® Script Runtime 5.8.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\jscript.dll ### Microsoft ® JScript Microsoft Corporation Microsoft ® JScript 5.8.9600.16428 [Loaded DLLs] C:\Windows\SysWOW64\ieframe.dll ### Internet Browser Microsoft Corporation Internet Explorer 11.00.9600.17631 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\ffmpegsumo.dll ### Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\libpeerconnection.dll ### Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\pdf.dll ### Chrome PDF Viewer Chrome PDF Viewer 1, 0, 0, 1 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\chrome_child.dll ### Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Loaded DLLs] C:\Windows\system32\dbghelp.dll ### Windows Image Helper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.dll ### USB 3.0 Monitor Renesas Electronics Corporation USB 3.0 Monitor 2.1.26.0 [Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCP90.dll ### Microsoft® C++ Runtime Library Microsoft Corporation Microsoft® Visual Studio® 2008 9.00.30729.6161 [Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll ### Microsoft® C Runtime Library Microsoft Corporation Microsoft® Visual Studio® 2008 9.00.30729.6161 [Loaded DLLs] C:\Windows\SysWOW64\wer.dll ### Windows Error Reporting DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\XmlLite.dll ### Microsoft XmlLite Library Microsoft Corporation Microsoft XML Core Services 1.3.1001.0 [Loaded DLLs] C:\Windows\SysWOW64\gameux.dll ### Games Explorer Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop_Res.dll ### Bing Desktop resources Microsoft Corp. Bing Desktop 1.3.470.0 [Loaded DLLs] C:\Windows\syswow64\IMM32.dll ### Multi-User Windows IMM32 API Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\UIAutomationCore.DLL ### Microsoft UI Automation Core Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\System32\msxml6.dll ### MSXML 6.0 SP3 Microsoft Corporation Microsoft(R) MSXML 6.0 SP3 6.30.7601.1

Page 55: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

8431 [Loaded DLLs] C:\Windows\system32\windowscodecsext.dll ### Microsoft Windows Codecs Extended Library Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492 [Loaded DLLs] C:\Windows\SysWOW64\vbscript.dll ### Microsoft ® VBScript Microsoft Corporation Microsoft ® VBScript 5.8.9600.16428 [Loaded DLLs] C:\Windows\SysWOW64\ieframe.dll ### Internet Browser Microsoft Corporation Internet Explorer 11.00.9600.17631 [Loaded DLLs] C:\Windows\system32\nvd3dum.dll [Loaded DLLs] C:\Windows\system32\wbem\fastprox.dll ### WMI Custom Marshaller Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\wbem\wbemsvc.dll ### WMI Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\igdumd32.dll [Loaded DLLs] C:\Windows\system32\wbemcomn.dll ### WMI Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\wbem\wbemprox.dll ### WMI Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\nvumdshim.dll [Loaded DLLs] C:\Program Files (x86)\Skype\Updater\Updater.dll ### Skype Updater Library Skype Technologies Skype 7.0 [Loaded DLLs] C:\Windows\system32\mapi32.dll ### Extended MAPI 1.0 for Windows NT Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\cryptui.dll ### Microsoft Trust UI Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\MSACM32.dll ### Microsoft ACM Audio Filter Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\POWRPROF.dll ### Power Profile Helper DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\pdh.dll ### Windows Performance Data Helper DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\d3d8thk.dll ### Microsoft Direct3D OS Thunk Layer Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\d3d9.dll ### Direct3D 9 Runtime Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\SHFolder.dll ### Shell Folder Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\winspool.drv ### Windows Spooler Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\DEVRTL.dll ### Device Management Run Time Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17621 [Loaded DLLs] C:\Program Files (x86)\Internet Download Manager\idmindex.dll ### Internet Download Manager module Tonec Inc. Internet Download Manager module 6, 18, 2, 1 [Loaded DLLs] C:\Windows\system32\EhStorShell.dll ### Windows Enhanced Storage Shell Extension DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\PROGRA~2\MICROS~1\Office15\1033\GrooveIntlResource.dll

Page 56: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Loaded DLLs] C:\Windows\system32\msi.dll ### Windows Installer Microsoft Corporation Windows Installer - Unicode 5.0.7601.18637 [Loaded DLLs] C:\Windows\system32\ATL100.DLL ### ATL Module for Windows Microsoft Corporation Microsoft® Visual Studio® 10 10.00.40219.325 [Loaded DLLs] C:\Windows\system32\MSVCP100.dll ### Microsoft® C Runtime Library Microsoft Corporation Microsoft® Visual Studio® 2010 10.00.40219.325 [Loaded DLLs] C:\Windows\system32\MSVCR100.dll ### Microsoft® C Runtime Library Microsoft Corporation Microsoft® Visual Studio® 2010 10.00.40219.325 [Loaded DLLs] C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL ### Microsoft OneDrive for Business Extensions Microsoft Corporation Microsoft Office 2013 15.0.4693.1000 [Loaded DLLs] C:\Windows\system32\XmlLite.dll ### Microsoft XmlLite Library Microsoft Corporation Microsoft XML Core Services 1.3.1001.0 [Loaded DLLs] C:\Windows\system32\Cabinet.dll ### Microsoft® Cabinet File API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\WSOCK32.dll ### Windows Socket 32-Bit DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\faultrep.dll ### Windows User Mode Crash Reporting DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Users\$unil\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\logging.dll ### Logging Library Microsoft Corporation Microsoft OneDrive 17.0.4035.0328 [Loaded DLLs] C:\Users\$unil\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\Telemetry.dll ### Telemetry Library Microsoft Corporation Microsoft OneDrive 17.0.4035.0328 [Loaded DLLs] C:\Users\$unil\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\MSVCR110.dll ### Microsoft® C Runtime Library Microsoft Corporation Microsoft® Visual Studio® 2012 11.00.50727.1 [Loaded DLLs] C:\Users\$unil\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\MSVCP110.dll ### Microsoft® C Runtime Library Microsoft Corporation Microsoft® Visual Studio® 2012 11.00.50727.1 [Loaded DLLs] C:\Users\$unil\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll ### Microsoft OneDrive Shell Extension Microsoft Corporation Microsoft OneDrive 17.0.4035.0328 [Loaded DLLs] C:\Windows\system32\asycfilt.dll ### Microsoft Corporation 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\RICHED20.dll ### Rich Text Edit Control, v3.1 Microsoft Corporation Microsoft RichEdit Control, version 3.1 3.1 [Loaded DLLs] C:\Windows\system32\RichEd32.Dll ### Wrapper Dll for Richedit 1.0 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\rasman.dll ### Remote Access Connection Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\RASAPI32.DLL ### Remote Access API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\Connect.dll

Page 57: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Get Connected Wizards Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\OLEPRO32.DLL [Loaded DLLs] C:\Windows\system32\oledlg.dll ### OLE User Interface Support Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\System32\netshell.dll ### Network Connections Shell Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\SSDPAPI.dll ### SSDP Client API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\upnp.dll ### UPnP Control Point API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\ATL.DLL ### ATL Module for Windows XP (Unicode) Microsoft Corporation Microsoft (R) Visual C++ 6.05.2284 [Loaded DLLs] C:\Windows\system32\hnetcfg.dll ### Home Networking Configuration Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\SXS.DLL ### Fusion 2.5 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\System32\msxml3.dll ### MSXML 3.0 SP11 Microsoft Corporation Microsoft(R) MSXML 3.0 SP11 8.110.7601.18576 [Loaded DLLs] C:\Windows\SysWOW64\jscript9.dll ### Microsoft ® JScript Microsoft Corporation Internet Explorer 11.00.9600.17640 [Loaded DLLs] C:\Windows\system32\msls31.dll ### Microsoft Line Services library file Microsoft Corporation Microsoft® Line Services 3.10 [Loaded DLLs] C:\Windows\system32\D3D10Warp.dll ### Direct3D 10 Rasterizer Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.17033 [Loaded DLLs] C:\Windows\system32\d3d11.dll ### Direct3D 11 Runtime Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16570 [Loaded DLLs] C:\Windows\system32\dxgi.dll ### DirectX Graphics Infrastructure Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492 [Loaded DLLs] C:\Windows\system32\DWrite.dll ### Microsoft DirectX Typography Services Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492 [Loaded DLLs] C:\Windows\system32\d2d1.dll ### Microsoft D2D Library Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492 [Loaded DLLs] C:\Windows\system32\MLANG.dll ### Multi Language Support DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\msimtf.dll ### Active IMM Server DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\mshtml.dll ### Microsoft (R) HTML Viewer Microsoft Corporation Internet Explorer 11.00.9600.17631 [Loaded DLLs] C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll ### ApiSet Stub DLL Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492

Page 58: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Loaded DLLs] C:\Windows\SysWOW64\ieframe.dll ### Internet Browser Microsoft Corporation Internet Explorer 11.00.9600.17631 [Loaded DLLs] C:\Windows\system32\WindowsCodecs.dll ### Microsoft Windows Codecs Library Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.17226 [Loaded DLLs] C:\Windows\SysWOW64\FirewallAPI.dll ### Windows Firewall API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\MSIMG32.dll ### GDIEXT Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18455_none_72d576ad8665e853\gdiplus.dll ### Microsoft GDI+ Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18455 [Loaded DLLs] C:\Windows\SysWOW64\schannel.dll ### TLS / SSL Security Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18714 [Loaded DLLs] C:\Windows\System32\npmproxy.dll ### Network List Manager Proxy Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Users\$unil\AppData\Local\Programs\Google\Google+ Auto Backup\gpuploader_i18n.dll [Loaded DLLs] C:\Windows\system32\wiatrace.dll ### WIA Tracing Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\sti.dll ### Still Image Devices client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\PortableDeviceTypes.dll ### Windows Portable Device (Parameter) Types Component Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\PortableDeviceApi.dll ### Windows Portable Device API Components Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\rtutils.dll ### Routing Utilities Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll ### ApiSet Stub DLL Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492 [Loaded DLLs] C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll ### ApiSet Stub DLL Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492 [Loaded DLLs] C:\Windows\system32\netprofm.dll ### Network List Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\comdlg32.dll ### Common Dialogs DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\api-ms-win-downlevel-ole32-l1-1-0.dll ### ApiSet Stub DLL Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492 [Loaded DLLs] C:\Windows\syswow64\urlmon.dll ### OLE32 Extensions for Win32 Microsoft Corporation Internet Explorer 11.00.9600.17631 [Loaded DLLs] C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll ### ApiSet Stub DLL Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492 [Loaded DLLs] C:\Windows\syswow64\iertutil.dll

Page 59: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Run time utility for Internet Explorer Microsoft Corporation Internet Explorer 11.00.9600.17631 [Loaded DLLs] C:\Windows\syswow64\normaliz.DLL ### Unicode Normalization DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll ### ApiSet Stub DLL Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492 [Loaded DLLs] C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll ### ApiSet Stub DLL Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492 [Loaded DLLs] C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll ### ApiSet Stub DLL Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492 [Loaded DLLs] C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll ### ApiSet Stub DLL Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16492 [Loaded DLLs] C:\Windows\syswow64\WININET.dll ### Internet Extensions for Win32 Microsoft Corporation Internet Explorer 11.00.9600.16428 [Loaded DLLs] C:\Windows\system32\MPR.dll ### Multiple Provider Router DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\odbcint.dll ### ODBC Resources Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\ODBC32.dll ### ODBC Driver Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\SysWOW64\MFC42.dll ### MFCDLL Shared Library - Retail Version Microsoft Corporation Microsoft (R) Visual C++ 6.06.400 [Loaded DLLs] C:\Windows\SysWOW64\kswdmcap.ax ### WDM Streaming Video Capture Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\vidcap.ax ### Video Capture Interface Server Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\d3d8thk.dll ### Microsoft Direct3D OS Thunk Layer Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\d3d9.dll ### Direct3D 9 Runtime Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\SysWOW64\ksuser.dll ### User CSA Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\ksproxy.ax ### WDM Streaming ActiveMovie Proxy Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\msdmo.dll ### DMO Runtime Microsoft Corporation Microsoft® Windows® Operating System 6.6.7601.17514 [Loaded DLLs] C:\Windows\SysWOW64\devenum.dll ### Device enumeration. Microsoft Corporation Microsoft® Windows® Operating System 6.6.7600.16385 [Loaded DLLs] C:\Windows\system32\SensApi.dll ### SENS Connectivity API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\avrt.dll

Page 60: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Multimedia Realtime Runtime Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\cryptnet.dll ### Crypto Network Related API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18205 [Loaded DLLs] C:\Windows\SysWOW64\bcryptprimitives.dll ### Windows Cryptographic Primitives Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\bcrypt.dll ### Windows Cryptographic Primitives Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\ncrypt.dll ### Windows cryptographic library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Program Files (x86)\Internet Download Manager\idmmkb.dll ### Internet Download Manager module Tonec Inc. Internet Download Manager 6, 19, 9, 1 [Loaded DLLs] C:\Windows\System32\shdocvw.dll ### Shell Doc Object and Control Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18222 [Loaded DLLs] C:\Windows\system32\LINKINFO.dll ### Windows Volume Tracking Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\slc.dll ### Software Licensing Client Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\cscapi.dll ### Offline Files Win32 API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\ntshrui.dll ### Shell extensions for sharing Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\actxprxy.dll ### ActiveX Interface Marshaling Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\DUI70.dll ### Windows DirectUI Engine Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\DUser.dll ### Windows DirectUser Engine Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\explorerframe.dll ### ExplorerFrame Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\WINSTA.dll ### Winstation Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18540 [Loaded DLLs] C:\Windows\system32\mscms.dll ### Microsoft Color Matching System DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\mssprxy.dll ### Microsoft Search Proxy Microsoft Corporation Windows® Search 7.00.7600.16385 [Loaded DLLs] C:\Windows\system32\apphelp.dll ### Application Compatibility Client Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\wlanutil.dll ### Windows Wireless LAN 802.11 Utility DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\wlanapi.dll

Page 61: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Windows WLAN AutoConfig Client Side API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\GPAPI.dll ### Group Policy Client API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\dhcpcsvc6.DLL ### DHCPv6 Client Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17970 [Loaded DLLs] C:\Windows\system32\dhcpcsvc.DLL ### DHCP Client Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\PROPSYS.dll ### Microsoft Property System Microsoft Corporation Windows® Search 7.00.7600.16385 [Loaded DLLs] C:\Windows\system32\MMDevAPI.DLL ### MMDevice API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\audioses.dll ### Audio Session Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\SAMLIB.dll ### SAM Library DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\System32\wevtapi.dll ### Eventing Consumption and Configuration API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\System32\Wpc.dll ### WPC Settings Library Microsoft Corporation Windows 1.0.0.1 [Loaded DLLs] C:\Windows\system32\HID.DLL ### Hid User Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\NTDSAPI.dll ### Active Directory Domain Services API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\credui.dll ### Credential Manager User Interface Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\COMCTL32.dll ### User Experience Controls Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\Secur32.dll ### Security Support Provider Interface Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18719 [Loaded DLLs] C:\Windows\system32\OLEACC.dll ### Active Accessibility Core Component Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17676 [Loaded DLLs] C:\Windows\system32\SAMCLI.DLL ### Security Accounts Manager Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\wkscli.dll ### Workstation Service Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\srvcli.dll ### Server Service Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\netutils.dll ### Net Win32 API Helpers DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\NETAPI32.dll

Page 62: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Net Win32 API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17887 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\chrome.dll ### Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Loaded DLLs] C:\Windows\system32\WTSAPI32.dll ### Windows Remote Desktop Session Host Server SDK APIs Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\profapi.dll ### User Profile Basic API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\USERENV.dll ### Userenv Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\WINMM.dll ### MCI API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\chrome_elf.dll ### Google Chrome Google Inc. Google Chrome 40.0.2214.115 [Loaded DLLs] C:\Windows\System32\wship6.dll ### Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\credssp.dll ### Credential Delegation Security Package Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18714 [Loaded DLLs] C:\Windows\system32\RpcRtRemote.dll ### Remote RPC Extension Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\syswow64\CLBCatQ.DLL ### COM+ Configuration Catalog Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\rasadhlp.dll ### Remote Access AutoDial Helper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\System32\fwpuclnt.dll ### FWP/IPsec User-Mode API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\wshbth.dll ### Windows Sockets Helper DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\System32\winrnr.dll ### LDAP RnR Provider DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\DNSAPI.dll ### DNS Client API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\PSAPI.DLL ### Process Status Helper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL ### Microsoft® Windows Live ID Namespace Provider Microsoft Corp. Microsoft® CoReXT 7.250.4311.0 [Loaded DLLs] C:\Windows\system32\pnrpnsp.dll ### PNRP Name Space Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\napinsp.dll ### E-mail Naming Shim Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385

Page 63: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Loaded DLLs] C:\Windows\system32\NLAapi.dll ### Network Location Awareness 2 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17964 [Loaded DLLs] C:\Windows\System32\wshtcpip.dll ### Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\mswsock.dll ### Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\rsaenh.dll ### Microsoft Enhanced Cryptographic Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\CRYPTSP.dll ### Cryptographic Service Provider API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Users\$unil\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\Ontology.dll ### Application Ontology library NVIDIA Corporation NVIDIA GeForce Experience Application Ontology 23.0.2.0 [Loaded DLLs] C:\Windows\syswow64\MSASN1.dll ### ASN.1 Runtime APIs Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\syswow64\CRYPT32.dll ### Crypto API32 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18526 [Loaded DLLs] C:\Windows\syswow64\WINTRUST.dll ### Microsoft Trust Verification APIs Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18526 [Loaded DLLs] C:\Windows\system32\dwmapi.dll ### Microsoft Desktop Window Manager API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\uxtheme.dll ### Microsoft UxTheme Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\WLDAP32.dll ### Win32 LDAP API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\ntmarta.dll ### Windows NT MARTA provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\nvdxgiwrap.dll ### NVIDIA dxgiwrap dll, Version 347.52 NVIDIA Corporation NVIDIA D3D shim drivers 9.18.13.4752 [Loaded DLLs] C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\nvd3d9wrap.dll ### NVIDIA d3d9wrap dll, Version 347.52 NVIDIA Corporation NVIDIA D3D shim drivers 9.18.13.4752 [Loaded DLLs] C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll [Loaded DLLs] C:\Windows\SysWOW64\nvinit.dll ### NVIDIA shim initialization dll, Version 347.52 NVIDIA Corporation NVIDIA D3D shim drivers 9.18.13.4752 [Loaded DLLs] C:\Windows\syswow64\MSCTF.dll ### MSCTF Server DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\IMM32.DLL ### Multi-User Windows IMM32 API Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\webio.dll

Page 64: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Web Transfer Protocols API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\system32\WINHTTP.dll ### Windows HTTP Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\VERSION.dll ### Version Checking and File Installation Libraries Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\DEVOBJ.dll ### Device Information Set DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17621 [Loaded DLLs] C:\Windows\syswow64\ole32.dll ### Microsoft OLE for Windows Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\OLEAUT32.dll ### Microsoft Corporation 6.1.7601.18679 [Loaded DLLs] C:\Windows\syswow64\CFGMGR32.dll ### Configuration Manager DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17621 [Loaded DLLs] C:\Windows\syswow64\SETUPAPI.dll ### Windows Setup API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\SHLWAPI.dll ### Shell Light-weight Utility Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\SHELL32.dll ### Windows Shell Common Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\syswow64\ADVAPI32.dll ### Advanced Windows 32 Base API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\USP10.dll ### Uniscribe Unicode script processor Microsoft Corporation Microsoft(R) Uniscribe Unicode script processor 1.0626.7601.18454 [Loaded DLLs] C:\Windows\syswow64\LPK.dll ### Language Pack Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18177 [Loaded DLLs] C:\Windows\syswow64\GDI32.dll ### GDI Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18577 [Loaded DLLs] C:\Windows\syswow64\USER32.dll ### Multi-User Windows USER API Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514 [Loaded DLLs] C:\Windows\syswow64\WS2_32.dll ### Windows Socket 2.0 32-Bit DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\sechost.dll ### Host for SCM/SDDL/LSA Lookup APIs Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\CRYPTBASE.dll ### Base cryptographic API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\SspiCli.dll ### Security Support Provider Interface Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18719 [Loaded DLLs] C:\Windows\syswow64\RPCRT4.dll ### Remote Procedure Call Runtime Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\WINNSI.DLL ### Network Store Information RPC interface Microsoft Corporation Microsoft® Win

Page 65: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

dows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\NSI.dll ### NSI User-mode interface DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\msvcrt.dll ### Windows NT CRT DLL Microsoft Corporation Microsoft® Windows® Operating System 7.0.7601.17744 [Loaded DLLs] C:\Windows\system32\IPHLPAPI.DLL ### IP Helper API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\KERNELBASE.dll ### Windows NT BASE API Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18015 [Loaded DLLs] C:\Windows\syswow64\kernel32.dll ### Windows NT BASE API Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18015 [Loaded DLLs] C:\Windows\SysWOW64\ntdll.dll ### NT Layer DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] AdobeARMservice ### Internal Name: AdobeARMservice. Status: service is running. Actual File: "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" * Adobe Acrobat Updater keeps your Adobe software up to date. Adobe Acrobat Update Service Adobe Systems Incorporated Adobe Acrobat Update Service 1.802.11.4130 [Running Services] AeLookupSvc ### Internal Name: AeLookupSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Processes application compatibility cache requests for applications as they are launched Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] AERTFilters ### Internal Name: AERTFilters. Status: service is running. Actual File: C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe * Andrea filters APO access service (64-bit) Andrea Electronics Corporation APO Access Service (64-bit) [Running Services] AMPPALR3 ### Internal Name: AMPPALR3. Status: service is running. Actual File: "C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe" * Intel® Centrino® Wireless Bluetooth® + High Speed Service for Intel® Wireless adapters Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter Intel Corporation Intel® Centrino® Wireless Bluetooth® High Speed 16.5.0.1 [Running Services] Appinfo ### Internal Name: Appinfo. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Facilitates the running of interactive applications with additional administrative privileges. If this service is stopped, users will be unable to launch applications with the additional administrative privileges they may require to perform desired user tasks. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] AudioEndpointBuilder ### Internal Name: AudioEndpointBuilder. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Manages audio devices for the Windows Audio service. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] AudioSrv ### Internal Name: AudioSrv. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * Manages audio for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicit

Page 66: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

ly depend on it will fail to start Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] BFE ### Internal Name: BFE. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork * The Base Filtering Engine (BFE) is a service that manages firewall and Internet Protocol security (IPsec) policies and implements user mode filtering. Stopping or disabling the BFE service will significantly reduce the security of the system. It will also result in unpredictable behavior in IPsec management and firewall applications. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] BingDesktopUpdate ### Internal Name: BingDesktopUpdate. Status: service is running. Actual File: "C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe" * Bing Desktop Update Service Bing Desktop updating service Microsoft Corp. Bing Desktop 1.3.470.0 [Running Services] BITS ### Internal Name: BITS. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * Transfers files in the background using idle network bandwidth. If the service is disabled, then any applications that depend on BITS, such as Windows Update or MSN Explorer, will be unable to automatically download programs and other information. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Browser ### Internal Name: Browser. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * Maintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] bthserv ### Internal Name: bthserv. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k bthsvcs * The Bluetooth service supports discovery and association of remote Bluetooth devices. Stopping or disabling this service may cause already installed Bluetooth devices to fail to operate properly and prevent new devices from being discovered or associated. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] BTHSSecurityMgr ### Internal Name: BTHSSecurityMgr. Status: service is running. Actual File: "C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe" * Manages the 802.1x security between two Bluetooth(R) High Speed connections. Intel(R) BlueTooth(R) HS Security Manager Service Intel(R) Corporation Intel(R) BlueTooth(R) High Speed 15.6.0.0 [Running Services] c2cautoupdatesvc ### Internal Name: c2cautoupdatesvc. Status: service is running. Actual File: "C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service * Downloads and installs product updates. Updates Skype Click to Call Microsoft Corporation Skype Click to Call 7.3.16540.9015 [Running Services] c2cpnrsvc ### Internal Name: c2cpnrsvc. Status: service is running. Actual File: "C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service * Provides phone number recognition services. Phone Number Recognition (PNR) module Microsoft Corporation Skype Click to Call 7.3.16540.9015 [Running Services] CryptSvc ### Internal Name: CryptSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * Provides four management services: Catalog Database Service, which confirms the signatures of Windows files and allows new programs to be installed; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; Automatic

Page 67: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

Root Certificate Update Service, which retrieves root certificates from Windows Update and enable scenarios such as SSL; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] DcomLaunch ### Internal Name: DcomLaunch. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * The DCOMLAUNCH service launches COM and DCOM servers in response to object activation requests. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the DCOMLAUNCH service running. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Dhcp ### Internal Name: Dhcp. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted * Registers and updates IP addresses and DNS records for this computer. If this service is stopped, this computer will not receive dynamic IP addresses and DNS updates. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Dnscache ### Internal Name: Dnscache. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * The DNS Client service (dnscache) caches Domain Name System (DNS) names and registers the full computer name for this computer. If the service is stopped, DNS names will continue to be resolved. However, the results of DNS name queries will not be cached and the computer's name will not be registered. If the service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] DPS ### Internal Name: DPS. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork * The Diagnostic Policy Service enables problem detection, troubleshooting and resolution for Windows components. If this service is stopped, diagnostics will no longer function. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] EapHost ### Internal Name: EapHost. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * The Extensible Authentication Protocol (EAP) service provides network authentication in such scenarios as 802.1x wired and wireless, VPN, and Network Access Protection (NAP). EAP also provides application programming interfaces (APIs) that are used by network access clients, including wireless and VPN clients, during the authentication process. If you disable this service, this computer is prevented from accessing networks that require EAP authentication. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] EFS ### Internal Name: EFS. Status: service is running. Actual File: C:\Windows\System32\lsass.exe * Provides the core file encryption technology used to store encrypted files on NTFS file system volumes. If this service is stopped or disabled, applications will be unable to access encrypted files. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18719 [Running Services] eventlog ### Internal Name: eventlog. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * This service manages events and event logs. It supports logging events, querying events, subscribing to events, archiving event logs, and managing event metadata. It can display eve

Page 68: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

nts in both XML and plain text format. Stopping this service may compromise security and reliability of the system. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] EventSystem ### Internal Name: EventSystem. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] EvtEng ### Internal Name: EvtEng. Status: service is running. Actual File: "C:\Program Files\Intel\WiFi\bin\EvtEng.exe" * Manages the event trace messages for all the Intel® PROSet/Wireless Software components. Intel(R) PROSet/Wireless Event Log Service Intel(R) Corporation Intel(R) PROSet/Wireless 17, 14, 0, 0 [Running Services] fdPHost ### Internal Name: fdPHost. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * The FDPHOST service hosts the Function Discovery (FD) network discovery providers. These FD providers supply network discovery services for the Simple Services Discovery Protocol (SSDP) and Web Services � Discovery (WS-D) protocol. Stopping or disabling the FDPHOST service will disable network discovery for these protocols when using FD. When this service is unavailable, network services using FD and relying on these discovery protocols will be unable to find network devices or resources. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] FDResPub ### Internal Name: FDResPub. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation * Publishes this computer and resources attached to this computer so they can be discovered over the network. If this service is stopped, network resources will no longer be published and they will not be discovered by other computers on the network. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] FontCache ### Internal Name: FontCache. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * Optimizes performance of applications by caching commonly used font data. Applications will start this service if it is not already running. It can be disabled, though doing so will degrade application performance. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] GfExperienceService ### Internal Name: GfExperienceService. Status: service is running. Actual File: "C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe" * NVIDIA GeForce Experience Service NVIDIA GeForce Experience Service NVIDIA Corporation NVIDIA GeForce Experience Service 1.0.0.1 [Running Services] gpsvc ### Internal Name: gpsvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k GPSvcGroup * The service is responsible for applying settings configured by administrators for the computer and users through the Group Policy component. If the service is stopped or disabled, the settings will not be applied and applications and components will not be manageable through Group Policy. Any components or applications that depend on the Group Policy component might not be functional if the service is stopped or disabled. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] HomeGroupListener ### Internal Name: HomeGroupListener. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Makes local c

Page 69: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

omputer changes associated with configuration and maintenance of the homegroup-joined computer. If this service is stopped or disabled, your computer will not work properly in a homegroup and your homegroup might not work properly. It is recommended that you keep this service running. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] HomeGroupProvider ### Internal Name: HomeGroupProvider. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * Performs networking tasks associated with configuration and maintenance of homegroups. If this service is stopped or disabled, your computer will be unable to detect other homegroups and your homegroup might not work properly. It is recommended that you keep this service running. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] IKEEXT ### Internal Name: IKEEXT. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * The IKEEXT service hosts the Internet Key Exchange (IKE) and Authenticated Internet Protocol (AuthIP) keying modules. These keying modules are used for authentication and key exchange in Internet Protocol security (IPsec). Stopping or disabling the IKEEXT service will disable IKE and AuthIP key exchange with peer computers. IPsec is typically configured to use IKE or AuthIP; therefore, stopping or disabling the IKEEXT service might result in an IPsec failure and might compromise the security of the system. It is strongly recommended that you have the IKEEXT service running. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] iphlpsvc ### Internal Name: iphlpsvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k NetSvcs * Provides tunnel connectivity using IPv6 transition technologies (6to4, ISATAP, Port Proxy, and Teredo), and IP-HTTPS. If this service is stopped, the computer will not have the enhanced connectivity benefits that these technologies offer. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] KeyIso ### Internal Name: KeyIso. Status: service is running. Actual File: C:\Windows\system32\lsass.exe * The CNG key isolation service is hosted in the LSA process. The service provides key process isolation to private keys and associated cryptographic operations as required by the Common Criteria. The service stores and uses long-lived keys in a secure process complying with Common Criteria requirements. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18719 [Running Services] LanmanServer ### Internal Name: LanmanServer. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] LanmanWorkstation ### Internal Name: LanmanWorkstation. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k NetworkService * Creates and maintains client network connections to remote servers using the SMB protocol. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] lmhosts ### Internal Name: lmhosts. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted * Provides support for the NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution for clients on the network, therefore enabling users to share files, print, and log on to the network. If this service is stopped, these functions might be unavailable. If t

Page 70: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

his service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] MMCSS ### Internal Name: MMCSS. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Enables relative prioritization of work based on system-wide task priorities. This is intended mainly for multimedia applications. If this service is stopped, individual tasks resort to their default priority. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] MpsSvc ### Internal Name: MpsSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork * Windows Firewall helps protect your computer by preventing unauthorized users from gaining access to your computer through the Internet or a network. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] MsMpSvc ### Internal Name: MsMpSvc. Status: service is running. Actual File: "C:\Program Files\Microsoft Security Client\MsMpEng.exe" * Helps protect users from malware and other potentially unwanted software Antimalware Service Executable Microsoft Corporation Microsoft Malware Protection 4.7.0205.0 [Running Services] Netman ### Internal Name: Netman. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] netprofm ### Internal Name: netprofm. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalService * Identifies the networks to which the computer has connected, collects and stores properties for these networks, and notifies applications when these properties change. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] NisSrv ### Internal Name: NisSrv. Status: service is running. Actual File: "C:\Program Files\Microsoft Security Client\NisSrv.exe" * Helps guard against intrusion attempts targeting known and newly discovered vulnerabilities in network protocols Microsoft Network Realtime Inspection Service Microsoft Corporation Microsoft Malware Protection 4.7.0205.0 [Running Services] NlaSvc ### Internal Name: NlaSvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k NetworkService * Collects and stores configuration information for the network and notifies programs when this information is modified. If this service is stopped, configuration information might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] nsi ### Internal Name: nsi. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * This service delivers network notifications (e.g. interface addition/deleting etc) to user mode clients. Stopping this service will cause loss of network connectivity. If this service is disabled, any other services that explicitly depend on this service will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] NvNetworkService ### Internal Name: NvNetworkService. Status: service is running. Actual File: "C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe" * NVIDIA Network Service NVIDIA Network Service NVIDIA Corporation NVIDIA Network Service 2.2.0.50

Page 71: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Running Services] NvStreamSvc ### Internal Name: NvStreamSvc. Status: service is running. Actual File: "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" * Service for SHIELD Streaming NVIDIA Streamer Service NVIDIA Corporation NVIDIA Streamer 4.0.1000.0 [Running Services] nvsvc ### Internal Name: nvsvc. Status: service is running. Actual File: "C:\Windows\system32\nvvsvc.exe" * Provides system and desktop level support to the NVIDIA display driver NVIDIA Driver Helper Service, Version 347.52 NVIDIA Corporation NVIDIA Driver Helper Service, Version 347.52 8.17.13.4752 [Running Services] p2pimsvc ### Internal Name: p2pimsvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServicePeerNet * Provides identity services for the Peer Name Resolution Protocol (PNRP) and Peer-to-Peer Grouping services. If disabled, the Peer Name Resolution Protocol (PNRP) and Peer-to-Peer Grouping services may not function, and some applications, such as HomeGroup and Remote Assistance, may not function correctly. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] p2psvc ### Internal Name: p2psvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServicePeerNet * Enables multi-party communication using Peer-to-Peer Grouping. If disabled, some applications, such as HomeGroup, may not function. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] PcaSvc ### Internal Name: PcaSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * This service provides support for the Program Compatibility Assistant (PCA). PCA monitors programs installed and run by the user and detects known compatibility problems. If this service is stopped, PCA will not function properly. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] PlugPlay ### Internal Name: PlugPlay. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] PNRPsvc ### Internal Name: PNRPsvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServicePeerNet * Enables serverless peer name resolution over the Internet using the Peer Name Resolution Protocol (PNRP). If disabled, some peer-to-peer and collaborative applications, such as Remote Assistance, may not function. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] PolicyAgent ### Internal Name: PolicyAgent. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted * Internet Protocol security (IPsec) supports network-level peer authentication, data origin authentication, data integrity, data confidentiality (encryption), and replay protection. This service enforces IPsec policies created through the IP Security Policies snap-in or the command-line tool "netsh ipsec". If you stop this service, you may experience network connectivity issues if your policy requires that connections use IPsec. Also,remote management of Windows Firewall is not available when this service is stopped. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Power ### Internal Name: Power. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * Manages power policy and power policy notification delivery. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385

Page 72: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Running Services] ProfSvc ### Internal Name: ProfSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * This service is responsible for loading and unloading user profiles. If this service is stopped or disabled, users will no longer be able to successfully logon or logoff, applications may have problems getting to users' data, and components registered to receive profile event notifications will not receive them. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] RegSrvc ### Internal Name: RegSrvc. Status: service is running. Actual File: "C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe" * Provides registry access to all Intel® PROSet/Wireless Software components Intel(R) PROSet/Wireless Registry Service Intel(R) Corporation Intel(R) PROSet/Wireless 17, 14, 0, 0 [Running Services] RpcEptMapper ### Internal Name: RpcEptMapper. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k RPCSS * Resolves RPC interfaces identifiers to transport endpoints. If this service is stopped or disabled, programs using Remote Procedure Call (RPC) services will not function properly. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] RpcSs ### Internal Name: RpcSs. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k rpcss * The RPCSS service is the Service Control Manager for COM and DCOM servers. It performs object activations requests, object exporter resolutions and distributed garbage collection for COM and DCOM servers. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the RPCSS service running Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] SamSs ### Internal Name: SamSs. Status: service is running. Actual File: C:\Windows\system32\lsass.exe * The startup of this service signals other services that the Security Accounts Manager (SAM) is ready to accept requests. Disabling this service will prevent other services in the system from being notified when the SAM is ready, which may in turn cause those services to fail to start correctly. This service should not be disabled. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.18719 [Running Services] Schedule ### Internal Name: Schedule. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Enables a user to configure and schedule automated tasks on this computer. The service also hosts multiple Windows system-critical tasks. If this service is stopped or disabled, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] SENS ### Internal Name: SENS. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Monitors system events and notifies subscribers to COM+ Event System of these events. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] ShellHWDetection ### Internal Name: ShellHWDetection. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * Provides notifications for AutoPlay hardware events. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Spooler ### Internal Name: Spooler. Status: service is running. Actual File: C:\Windows\System32\spoolsv.exe * Loads files to memory for later printing Spooler SubSystem App Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] SSDPSRV

Page 73: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Internal Name: SSDPSRV. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation * Discovers networked devices and services that use the SSDP discovery protocol, such as UPnP devices. Also announces SSDP devices and services running on the local computer. If this service is stopped, SSDP-based devices will not be discovered. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Stereo Service ### Internal Name: Stereo Service. Status: service is running. Actual File: "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" * Provides system support for NVIDIA Stereoscopic 3D driver Stereo Vision Control Panel API Server NVIDIA Corporation Stereo Vision Control Panel API Server 7.17.13.4752 [Running Services] SysMain ### Internal Name: SysMain. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * Maintains and improves system performance over time. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Themes ### Internal Name: Themes. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * Provides user experience theme management. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] TrkWks ### Internal Name: TrkWks. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Maintains links between NTFS files within a computer or across computers in a network. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] upnphost ### Internal Name: upnphost. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation * Allows UPnP devices to be hosted on this computer. If this service is stopped, any hosted UPnP devices will stop functioning and no additional hosted devices can be added. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] UxSms ### Internal Name: UxSms. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Provides Desktop Window Manager startup and maintenance services Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] VMAuthdService ### Internal Name: VMAuthdService. Status: service is running. Actual File: "C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe" * Authorization and authentication service for starting and accessing virtual machines. VMware Authorization Service VMware, Inc. VMware Workstation 10.0.2 build-1744117 [Running Services] VMnetDHCP ### Internal Name: VMnetDHCP. Status: service is running. Actual File: C:\Windows\system32\vmnetdhcp.exe * DHCP service for virtual networks. [Running Services] VMUSBArbService ### Internal Name: VMUSBArbService. Status: service is running. Actual File: "C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe" * Arbitration and enumeration of USB devices for virtual machines VMware USB Arbitration Service VMware, Inc. VMware USB Arbitration Service 12.1.17 build-1637009 [Running Services] VMware NAT Service ### Internal Name: VMware NAT Service. Status: service is running. Actual File: C:\Windows\system32\vmnat.exe * Network address translation for virtual networks. [Running Services] WdiServiceHost

Page 74: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Internal Name: WdiServiceHost. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalService * The Diagnostic Service Host is used by the Diagnostic Policy Service to host diagnostics that need to run in a Local Service context. If this service is stopped, any diagnostics that depend on it will no longer function. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] WerSvc ### Internal Name: WerSvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k WerSvcGroup * Allows errors to be reported when programs stop working or responding and allows existing solutions to be delivered. Also allows logs to be generated for diagnostic and repair services. If this service is stopped, error reporting might not work correctly and results of diagnostic services and repairs might not be displayed. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] WinHttpAutoProxySvc ### Internal Name: WinHttpAutoProxySvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * WinHTTP implements the client HTTP stack and provides developers with a Win32 API and COM Automation component for sending HTTP requests and receiving responses. In addition, WinHTTP provides support for auto-discovering a proxy configuration via its implementation of the Web Proxy Auto-Discovery (WPAD) protocol. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Winmgmt ### Internal Name: Winmgmt. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Wlansvc ### Internal Name: Wlansvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * The WLANSVC service provides the logic required to configure, discover, connect to, and disconnect from a wireless local area network (WLAN) as defined by IEEE 802.11 standards. It also contains the logic to turn your computer into a software access point so that other devices or computers can connect to your computer wirelessly using a WLAN adapter that can support this. Stopping or disabling the WLANSVC service will make all WLAN adapters on your computer inaccessible from the Windows networking UI. It is strongly recommended that you have the WLANSVC service running if your computer has a WLAN adapter. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] wlidsvc ### Internal Name: wlidsvc. Status: service is running. Actual File: "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" * Enables Windows Live ID authentication. Microsoft® Windows Live ID Service Microsoft Corp. Microsoft® CoReXT 7.250.4311.0 [Running Services] WMPNetworkSvc ### Internal Name: WMPNetworkSvc. Status: service is running. Actual File: "C:\Program Files\Windows Media Player\wmpnetwk.exe" * Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play Windows Media Player Network Sharing Service Microsoft Corporation Microsoft® Windows® Operating System 12.0.7600.16385 [Running Services] wscsvc ### Internal Name: wscsvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * The WSCSVC (Windows Security Center) service monitors and reports security health settings on the computer. The health settings include firewall (on/off), antivirus (on/off/out of date), antispyware (on/off/out of date), Windows Update (automatically/manually download and install updates), User Account Control (on/off), and Internet setting

Page 75: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

s (recommended/not recommended). The service provides COM APIs for independent software vendors to register and record the state of their products to the Security Center service. The Action Center (AC) UI uses the service to provide systray alerts and a graphical view of the security health states in the AC control panel. Network Access Protection (NAP) uses the service to report the security health states of clients to the NAP Network Policy Server to make network quarantine decisions. The service also has a public API that allows external consumers to programmatically retrieve the aggregated security health state of the system. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] WSearch ### Internal Name: WSearch. Status: service is running. Actual File: C:\Windows\system32\SearchIndexer.exe /Embedding * Provides content indexing, property caching, and search results for files, e-mail, and other content. Microsoft Windows Search Indexer Microsoft Corporation Windows® Search 7.00.7600.16385 [Running Services] wuauserv ### Internal Name: wuauserv. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Enables the detection, download, and installation of updates for Windows and other programs. If this service is disabled, users of this computer will not be able to use Windows Update or its automatic updating feature, and programs will not be able to use the Windows Update Agent (WUA) API. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] wudfsvc ### Internal Name: wudfsvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * Creates and manages user-mode driver processes. This service cannot be stopped. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] ZeroConfigService ### Internal Name: ZeroConfigService. Status: service is running. Actual File: "C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe" * Manages the zero configuration service for all the Intel® PROSet/Wireless Software components. Intel® PROSet/Wireless Zero Configure Service Intel® Corporation Intel(R) PROSet/Wireless 17, 14, 0, 0 [Uninstall] [Applications] :HKLM UnHackMe_is1="C:\Program Files (x86)\UnHackMe\unins000.exe" ### UnHackMe 7.70 release - (28) 02-2015 [Applications] :HKLM {0CA72D12-F6C6-4D43-A2A0-41F5AA17E2B6}=MsiExec.exe /X{0CA72D12-F6C6-4D43-A2A0-41F5AA17E2B6} ### Netflix in Windows Media Center - (28) 02-2015 [Applications] :HKLM SynTPDeinstKey=rundll32.exe "%ProgramFiles%\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall ### Synaptics Pointing Device Driver - (28) 02-2015 [Applications] :HKLM {89a03d4c-5e14-4180-984e-6932893138fc}="C:\ProgramData\Package Cache\{89a03d4c-5e14-4180-984e-6932893138fc}\Setup.exe" /uninstall ### Intel® PROSet/Wireless Software - (27) 02-2015 [Applications] :HKLM {01BFBBA5-F5D4-48A2-86AD-F8A3DF0D4FE6}=MsiExec.exe /X{01BFBBA5-F5D4-48A2-86AD-F8A3DF0D4FE6} ### Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed - (27) 02-2015 [Applications] :HKLM {F27A944C-C95A-4DB7-BC8A-AEFD9B1B5E40}=MsiExec.exe /I{F27A944C-C95A-4DB7-BC8A-AEFD9B1B5E40} ### Intel® PROSet/Wireless WiFi Software - (27) 02-2015 [Applications] :HKLM {17e91253-12f4-4fa1-bd55-5d950e7799a8} ### Intel(R) PRO/Wireless Driver - (27) 02-2015 [Applications] :HKLM {54120ACC-670A-4DD4-884D-8F5C9B6802C2} ### - (27) 02-2015 [Applications] :HKLM {9BE518E6-ECC6-35A9-88E4-87755C07200F}=MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}

Page 76: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (25) 02-2015 [Applications] :HKLM {3FE312D5-B862-40CE-8E4E-A6D8ABF62736}=MsiExec.exe /X{3FE312D5-B862-40CE-8E4E-A6D8ABF62736} ### Microsoft ASP.NET MVC 4 Runtime - (25) 02-2015 [Applications] :HKLM {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}=MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4} ### Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 - (24) 02-2015 [Applications] :HKLM SchedulingAgent ### - (22) 02-2015 [Applications] :HKLM IE40 ### - (22) 02-2015 [Applications] :HKLM Fontcore ### - (22) 02-2015 [Applications] :HKLM DirectDrawEx ### - (22) 02-2015 [Applications] :HKLM IE4Data ### - (22) 02-2015 [Applications] :HKLM MobileOptionPack ### - (22) 02-2015 [Applications] :HKLM IEData ### - (22) 02-2015 [Applications] :HKLM IE5BAKEX ### - (22) 02-2015 [Applications] :HKLM InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}="C:\Program Files (x86)\InstallShield Installation Information\{5442DAB8-7177-49E1-8B22-09A049EA5996}\setup.exe" -runfromtemp -l0x0409 -removeonly ### Renesas Electronics USB 3.0 Host Controller Driver - (22) 02-2015 [Applications] :HKLM InstallShield Uninstall Information ### - (22) 02-2015 [Applications] :HKLM {5442DAB8-7177-49E1-8B22-09A049EA5996}=MsiExec.exe /X{5442DAB8-7177-49E1-8B22-09A049EA5996} ### Renesas Electronics USB 3.0 Host Controller Driver - (22) 02-2015 [Applications] :HKLM {26784146-6E05-3FF9-9335-786C7C0FB5BE}=MsiExec.exe /X{26784146-6E05-3FF9-9335-786C7C0FB5BE} ### Microsoft .NET Framework 4.5.2 - (21) 02-2015 [Applications] :HKLM {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2972107=C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.51209\setup.exe /uninstallpatch {59923C0F-51CB-3F2C-8465-E69019472533} ### Security Update for Microsoft .NET Framework 4.5.2 (KB2972107) - (21) 02-2015 [Applications] :HKLM {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2979578v2=C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.51209\setup.exe /uninstallpatch {48006B2D-366F-3386-92C7-785D3A523042} ### Security Update for Microsoft .NET Framework 4.5.2 (KB2979578v2) - (21) 02-2015 [Applications] :HKLM {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2972216=C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.51209\setup.exe /uninstallpatch {47FA5DCB-D13C-331E-BC32-65E53BDD949C} ### Security Update for Microsoft .NET Framework 4.5.2 (KB2972216) - (21) 02-2015 [Applications] :HKLM {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033=C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.51209\\Setup.exe /repair /x86 /x64 ### Microsoft .NET Framework 4.5.2 - (21) 02-2015 [Applications] :HKLM {003BFBBD-6C67-419E-A24D-0DCAFC3A5249}=MsiExec.exe /X{003BFBBD-6C67-419E-A24D-0DCAFC3A5249} ### tools-freebsd - (21) 02-2015 [Applications] :HKLM {9495AEB4-AB97-39DE-8C42-806EEF75ECA7}=MsiExec.exe /X{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}

Page 77: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (21) 02-2015 [Applications] :HKLM {AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4}=MsiExec.exe /X{AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4} ### tools-solaris - (21) 02-2015 [Applications] :HKLM {FFD9383C-01D5-4897-A954-43AF599AED30}=MsiExec.exe /X{FFD9383C-01D5-4897-A954-43AF599AED30} ### tools-windows - (21) 02-2015 [Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}=MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} ### Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (21) 02-2015 [Applications] :HKLM {996D32B6-F629-4764-894B-CB24D9C19051}=MsiExec.exe /X{996D32B6-F629-4764-894B-CB24D9C19051} ### Microsoft Security Client - (21) 02-2015 [Applications] :HKLM {AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D}=MsiExec.exe /X{AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D} ### tools-winPre2k - (21) 02-2015 [Applications] :HKLM {0D94F75A-0EA6-4951-B3AF-B145FA9E05C6}=MsiExec.exe /I{0D94F75A-0EA6-4951-B3AF-B145FA9E05C6} ### VMware Workstation - (21) 02-2015 [Applications] :HKLM {7D095455-D971-4D4C-9EFD-9AF6A6584F3A}=MsiExec.exe /I{7D095455-D971-4D4C-9EFD-9AF6A6584F3A} ### Bing Desktop - (21) 02-2015 [Applications] :HKLM {1D8E6291-B0D5-35EC-8441-6616F567A0F7}=MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7} ### Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (21) 02-2015 [Applications] :HKLM {D102611A-6466-4101-A51D-51069303AC65}=MsiExec.exe /X{D102611A-6466-4101-A51D-51069303AC65} ### tools-linux - (21) 02-2015 [Applications] :HKLM {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}=MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ### Microsoft Silverlight - (21) 02-2015 [Applications] :HKLM {197597A7-AD33-4898-9D8E-73066818B464}=MsiExec.exe /X{197597A7-AD33-4898-9D8E-73066818B464} ### tools-netware - (21) 02-2015 [Applications] :HKLM MozillaMaintenanceService="C:\Program Files (x86)\Mozilla Maintenance Service\uninstall.exe" ### Mozilla Maintenance Service - (21) 02-2015 [Applications] :HKLM Mozilla Firefox 35.0.1 (x86 en-US)="C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe" ### Mozilla Firefox 35.0.1 (x86 en-US) - (21) 02-2015 [Applications] :HKLM {0D94F75A-0EA6-4951-B3AF-B145FA9E05C6} ### - (21) 02-2015 [Applications] :HKLM VMware_Workstation="C:\ProgramData\VMware\VMware Workstation\Uninstaller\\uninstall.exe" -x -S "C:\ProgramData\VMware\VMware Workstation\Uninstaller\" ### VMware Workstation - (21) 02-2015 [Applications] :HKLM {38F03569-A636-4CF3-BDDE-032C8C251304}=MsiExec.exe /X{38F03569-A636-4CF3-BDDE-032C8C251304} ### Movie Maker - (21) 02-2015 [Applications] :HKLM {C992FFE0-AC32-4FA9-BC9A-F1637B9E655D}=MsiExec.exe /X{C992FFE0-AC32-4FA9-BC9A-F1637B9E655D} ### Photo Gallery - (21) 02-2015 [Applications] :HKLM {BAD27F0E-5165-49A5-BE66-AF5BF73F2FEE}=MsiExec.exe /I{BAD27F0E-5165-49A5-BE66-AF5BF73F2FEE} ### Windows Live Mail - (21) 02-2015 [Applications] :HKLM {CAA0F57A-BA8C-4AD8-AA03-F32B0E4F5623}=MsiExec.exe /X{CAA0F57A-BA8C-4AD8-AA03-F32B0E4F5623} ### Photo Common - (21) 02-2015 [Applications] :HKLM {0F974770-76EB-4C38-986E-E7BDD9C0DFC4}=MsiExec.exe /X{0F974770-76EB-4C38-986E-E7BDD9C0DFC4}

Page 78: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Windows Live Writer Resources - (21) 02-2015 [Applications] :HKLM {66B5819D-DE70-42BE-B40F-978FBA12452E}=MsiExec.exe /I{66B5819D-DE70-42BE-B40F-978FBA12452E} ### Windows Live Essentials - (21) 02-2015 [Applications] :HKLM WinLiveSuite=C:\Program Files (x86)\Windows Live\Installer\wlarp.exe ### Windows Live Essentials - (21) 02-2015 [Applications] :HKLM {6522F5F9-411B-4513-A75B-CEA00395F032}=MsiExec.exe /I{6522F5F9-411B-4513-A75B-CEA00395F032} ### Windows Live UX Platform Language Pack - (21) 02-2015 [Applications] :HKLM {DD67BE4B-7E62-4215-AFA3-F123A800A389}=MsiExec.exe /X{DD67BE4B-7E62-4215-AFA3-F123A800A389} ### Movie Maker - (21) 02-2015 [Applications] :HKLM {07AAB66E-4718-422D-9218-4AFB3C922A71}=MsiExec.exe /X{07AAB66E-4718-422D-9218-4AFB3C922A71} ### Photo Gallery - (21) 02-2015 [Applications] :HKLM {1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}=MsiExec.exe /X{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9} ### Windows Live Photo Common - (21) 02-2015 [Applications] :HKLM {714E162E-CD4F-4F1B-8302-7F5179409C25}=MsiExec.exe /X{714E162E-CD4F-4F1B-8302-7F5179409C25} ### Windows Live Writer - (21) 02-2015 [Applications] :HKLM {B775C26B-EAA8-4A11-ACBF-76E52DF6B805}=MsiExec.exe /I{B775C26B-EAA8-4A11-ACBF-76E52DF6B805} ### Windows Live Mail - (21) 02-2015 [Applications] :HKLM {0BE9E708-5DC0-4963-9CFD-0AA519090E79}=MsiExec.exe /I{0BE9E708-5DC0-4963-9CFD-0AA519090E79} ### Junk Mail filter update - (21) 02-2015 [Applications] :HKLM {00F9DB8C-65D7-4D47-AB5F-F698EE38580D}=MsiExec.exe /I{00F9DB8C-65D7-4D47-AB5F-F698EE38580D} ### Windows Live UX Platform - (21) 02-2015 [Applications] :HKLM {B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}=MsiExec.exe /I{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4} ### Windows Live PIMT Platform - (21) 02-2015 [Applications] :HKLM {41C61308-6CFD-4D54-AB6A-7136ED08A18E}=MsiExec.exe /I{41C61308-6CFD-4D54-AB6A-7136ED08A18E} ### Windows Live Communications Platform - (21) 02-2015 [Applications] :HKLM {CDC1AB00-01FF-4FC7-816A-16C67F0923C0}=MsiExec.exe /I{CDC1AB00-01FF-4FC7-816A-16C67F0923C0} ### Windows Live SOXE - (21) 02-2015 [Applications] :HKLM {D1893000-EA77-493C-8DDD-E262436E959B}=MsiExec.exe /I{D1893000-EA77-493C-8DDD-E262436E959B} ### Windows Live SOXE Definitions - (21) 02-2015 [Applications] :HKLM {25058321-C33E-496B-8915-6FD64D362CAF}=MsiExec.exe /I{25058321-C33E-496B-8915-6FD64D362CAF} ### Windows Live MIME IFilter - (21) 02-2015 [Applications] :HKLM {659CB81C-B54E-4DF1-B618-F35777393A54}=MsiExec.exe /I{659CB81C-B54E-4DF1-B618-F35777393A54} ### Windows Live Installer - (21) 02-2015 [Applications] :HKCU OneDriveSetup.exe=C:\Users\$unil\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\OneDriveSetup.exe /uninstall ### Microsoft OneDrive - (21) 02-2015 [Applications] :HKLM {6D1221A9-17BF-4EC0-81F2-27D30EC30701}=MsiExec.exe /X{6D1221A9-17BF-4EC0-81F2-27D30EC30701} ### Skype Click to Call - (21) 02-2015 [Applications] :HKLM {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}=MsiExec.exe /X{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} ### Skype� 7.1 - (21) 02-2015 [Applications] :HKLM {B455E95A-B804-439F-B533-336B1635AE97}=MsiExec.exe /I{B455E95A-B804-439F-B533-336B1635AE97}

Page 79: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### NVIDIA PhysX - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX="C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.PhysX ### NVIDIA PhysX System Software 9.14.0702 - (21) 02-2015 [Applications] :HKLM {582876EC-A178-44D4-9823-C10D6C62EAFF}=MsiExec /X{B455E95A-B804-439F-B533-336B1635AE97} ### - (21) 02-2015 [Applications] :HKLM NVIDIAStereo="C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask ### NVIDIA Stereoscopic 3D Driver - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision="C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.3DVision ### NVIDIA 3D Vision Driver 347.52 - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer ### NVIDIA Install Application - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver="C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.Driver ### NVIDIA Graphics Driver 347.52 - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel ### NVIDIA Control Panel 347.52 - (21) 02-2015 [Applications] :HKLM {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}=MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} ### Microsoft SQL Server 2005 Compact Edition [ENU] - (21) 02-2015 [Applications] :HKLM {E09C4DB7-630C-4F06-A631-8EA7239923AF}=MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF} ### D3DX10 - (21) 02-2015 [Applications] :HKLM {95120000-00B9-0409-1000-0000000FF1CE} ### Microsoft Application Error Reporting - (21) 02-2015 [Applications] :HKLM {CE52672C-A0E9-4450-8875-88A221D5CD50}=MsiExec.exe /I{CE52672C-A0E9-4450-8875-88A221D5CD50} ### Windows Live ID Sign-in Assistant - (21) 02-2015 [Applications] :HKLM {D0B44725-3666-492D-BEF6-587A14BD9BD9}=MsiExec.exe /I{D0B44725-3666-492D-BEF6-587A14BD9BD9} ### MSVCRT_amd64 - (21) 02-2015 [Applications] :HKLM {E9FA781F-3E80-4399-825A-AD3E11C28C77}=MsiExec.exe /I{E9FA781F-3E80-4399-825A-AD3E11C28C77} ### MSVCRT110_amd64 - (21) 02-2015 [Applications] :HKLM {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}=MsiExec.exe /I{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} ### MSVCRT110 - (21) 02-2015 [Applications] :HKLM {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}=MsiExec.exe /I{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} ### MSVCRT - (21) 02-2015 [Applications] :HKLM {4A03706F-666A-4037-7777-5F2748764D10} ### Java Auto Updater - (21) 02-2015 [Applications] :HKLM {26A24AE4-039D-4CA4-87B4-2F83218031F0}=MsiExec.exe /I{26A24AE4-039D-4CA4-87B4-2F83218031F0} ### Java 8 Update 31 - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService ### NVIDIA GeForce Experience Service - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController ### SHIELD Wireless Controller Driver - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay ### NVIDIA ShadowPlay 17.12.8 - (21) 02-2015

Page 80: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer ### NVIDIA LED Visualizer 1.0 - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv ### SHIELD Streaming - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience="C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.GFExperience ### NVIDIA GeForce Experience 2.2.2 - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update ### NVIDIA Update 17.12.8 - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core ### NVIDIA Update Core - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus ### NVIDIA Optimus Update 17.12.8 - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver ### NVIDIA Virtual Audio 1.2.27 - (21) 02-2015 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service ### NVIDIA Network Service - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{DD8CA28C-FAA8-4BB7-B13B-979FF2E3C44B}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{DD8CA28C-FAA8-4BB7-B13B-979FF2E3C44B}" "1033" "0" ### Definition Update for Microsoft Office 2013 (KB2920752) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D7FAA622-6BCF-4EDF-8C34-A48E1838D57B}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{D7FAA622-6BCF-4EDF-8C34-A48E1838D57B}" "1033" "0" ### Update for Microsoft Office 2013 (KB2899498) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{E54A479E-936E-4FC0-942D-23E1605FCA34}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{E54A479E-936E-4FC0-942D-23E1605FCA34}" "1033" "0" ### Update for Microsoft Office 2013 (KB2920798) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{DF1B7B95-4A86-4605-A628-556394B5580A}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{DF1B7B95-4A86-4605-A628-556394B5580A}" "1033" "0" ### Update for Microsoft Office 2013 (KB2881001) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{3E5BE283-3216-4578-94BF-3FC62AC7F64F}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{3E5BE283-3216-4578-94BF-3FC62AC7F64F}" "1033" "0" ### Update for Microsoft Lync 2013 (KB2920744) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{3D35F8A5-11A2-4A7C-B6A5-7B8B8BCDB3FB}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{3D35F8A5-11A2-4A7C-B6A5-7B8B8BCDB3FB}" "1033" "0" ### Security Update for Microsoft Excel 2013 (KB2920753) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{31BC612F-D234-47E7-A9BA-6EEE1F86B42F}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{31BC612F-D234-47E7-A9BA-6EEE1F86B42F}" "1033" "0" ### Update for Microsoft Office 2013 (KB2920735) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{3FF26B00-AC61-487F-B03B-5D83415C5408}="C:\Program Files\Common Files\Microsoft S

Page 81: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

hared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{3FF26B00-AC61-487F-B03B-5D83415C5408}" "1033" "0" ### Update for Microsoft Office 2013 (KB2880977) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{C906EC6B-8610-487F-8528-658FE2575C86}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{C906EC6B-8610-487F-8528-658FE2575C86}" "1033" "0" ### Update for Microsoft Office 2013 (KB2920769) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{E919ACF4-A1D7-4CAA-A103-5EB115563721}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{E919ACF4-A1D7-4CAA-A103-5EB115563721}" "1033" "0" ### Update for Microsoft Office 2013 (KB2883036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{EF77B4A6-DFEC-4010-A87D-9B6BF87FABEC}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{EF77B4A6-DFEC-4010-A87D-9B6BF87FABEC}" "1033" "0" ### Update for Microsoft Office 2013 (KB2760344) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{F24DFA32-C8EE-4AFB-89AB-07EE7A52E414}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{F24DFA32-C8EE-4AFB-89AB-07EE7A52E414}" "1033" "0" ### Update for Microsoft Publisher 2013 (KB2883048) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{EADBF225-163E-406B-B11A-26ECCCAB5A0E}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{EADBF225-163E-406B-B11A-26ECCCAB5A0E}" "1033" "0" ### Update for Microsoft Office 2013 (KB2883095) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{ED7FE277-965E-4812-8E2F-16D3D49AD03B}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{ED7FE277-965E-4812-8E2F-16D3D49AD03B}" "1033" "0" ### Update for Microsoft Access 2013 (KB2910930) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{F2AC488A-A8D5-44BC-8546-CE0A75961E32}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{F2AC488A-A8D5-44BC-8546-CE0A75961E32}" "1033" "0" ### Update for Microsoft Word 2013 (KB2956085) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{B4D575C6-32FA-403E-B84F-F67BCA3E94CE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{B4D575C6-32FA-403E-B84F-F67BCA3E94CE}" "1033" "0" ### Update for Microsoft Office 2013 (KB2910921) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{A976D761-90AF-42FE-8FEA-898498F38FDB}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{A976D761-90AF-42FE-8FEA-898498F38FDB}" "1033" "0" ### Update for Microsoft Office 2013 (KB2827223) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}" "1033" "0" ### Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{B6D56E2E-AC7F-49AA-BD95-6577A7DA55E3}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{B6D56E2E-AC7F-49AA-BD95-6577A7DA55E3}" "1033" "0" ### Update for Microsoft PowerPoint 2013 (KB2956149) 64-Bit Edition - (21) 02-

Page 82: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{290D80DE-03AB-47EC-9402-108AF4CE4F66}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{290D80DE-03AB-47EC-9402-108AF4CE4F66}" "1033" "0" ### Update for Microsoft Office 2013 (KB2863843) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{0814662C-FD28-4DE0-ACE5-EE50D1D6C8FB}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{0814662C-FD28-4DE0-ACE5-EE50D1D6C8FB}" "1033" "0" ### Update for Microsoft Office 2013 (KB2768012) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8116ED50-F1E7-49E1-9D8D-421497D34B0F}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{8116ED50-F1E7-49E1-9D8D-421497D34B0F}" "1033" "0" ### Update for Microsoft Office 2013 (KB2880478) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{04375E3E-AED6-4994-BC46-FAB2254322B1}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{04375E3E-AED6-4994-BC46-FAB2254322B1}" "1033" "0" ### Update for Microsoft Outlook 2013 (KB2956087) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{89A83BFE-CB3A-4482-947B-C9D5B12968E2}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{89A83BFE-CB3A-4482-947B-C9D5B12968E2}" "1033" "0" ### Update for Microsoft Office 2013 (KB2956102) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{885C981B-F1E3-430A-A099-31CA9D28C251}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{885C981B-F1E3-430A-A099-31CA9D28C251}" "1033" "0" ### Update for Microsoft Office 2013 (KB2881035) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{62857CDD-2985-4939-91BA-19ED0B0031A5}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{62857CDD-2985-4939-91BA-19ED0B0031A5}" "1033" "0" ### Update for Microsoft Office 2013 (KB2760544) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5E642F23-B29D-4589-80CF-D25E8D90C8DA}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{5E642F23-B29D-4589-80CF-D25E8D90C8DA}" "1033" "0" ### Security Update for Microsoft Office 2013 (KB2726958) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{A4E88D96-814F-4183-8DB2-BA3EC2B7E434}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{A4E88D96-814F-4183-8DB2-BA3EC2B7E434}" "1033" "0" ### Update for Microsoft Office 2013 (KB2899522) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{98F3EBD3-07A0-4239-85BB-7DB8A1185CA6}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{98F3EBD3-07A0-4239-85BB-7DB8A1185CA6}" "1033" "0" ### Update for Microsoft OneDrive for Business (KB2920746) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{7A4AB8E1-C091-4BD3-B308-844BA6EE752A}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{7A4AB8E1-C091-4BD3-B308-844BA6EE752A}" "1033" "0" ### Update for Microsoft Office 2013 (KB2760249) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{

Page 83: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

A86306A9-993A-4B17-A3E2-ED9E6ADA2285}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{A86306A9-993A-4B17-A3E2-ED9E6ADA2285}" "1033" "0" ### Update for Microsoft Office 2013 (KB2920742) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{94303C15-A3C4-4A5A-9763-B63726F9DDEC}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{94303C15-A3C4-4A5A-9763-B63726F9DDEC}" "1033" "0" ### Update for Microsoft Office 2013 (KB2889846) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{25DEA344-FF6F-41BD-B88F-5242BB8E80E1}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{25DEA344-FF6F-41BD-B88F-5242BB8E80E1}" "1033" "0" ### Update for Microsoft Office 2013 (KB2760371) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{260C3274-6E83-4EDA-9D35-AD7BA782269D}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{260C3274-6E83-4EDA-9D35-AD7BA782269D}" "1033" "0" ### Update for Microsoft OneNote 2013 (KB2920739) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{BC51FE30-3A56-4802-8D9E-E9BC05B56B49}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{BC51FE30-3A56-4802-8D9E-E9BC05B56B49}" "1033" "0" ### Update for Microsoft Word 2013 (KB2878319) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{2228A0A3-3737-4E2B-8ED6-7713D5E76D27}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{2228A0A3-3737-4E2B-8ED6-7713D5E76D27}" "1033" "0" ### Update for Microsoft Office 2013 (KB2920745) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{2147FFF7-71C4-4306-AFE2-1AA7A6025BB1}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{2147FFF7-71C4-4306-AFE2-1AA7A6025BB1}" "1033" "0" ### Update for Microsoft Office 2013 (KB2837654) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{43ECCB82-45DF-4800-8930-0689BF91F765}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{43ECCB82-45DF-4800-8930-0689BF91F765}" "1033" "0" ### Security Update for Microsoft Office 2013 (KB2910941) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}=MsiExec.exe /X{90150000-0011-0000-1000-0000000FF1CE} ### Microsoft Office Professional Plus 2013 - (21) 02-2015 [Applications] :HKLM {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-1000-0000000FF1CE}" "{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{8260F0BF-F234-41FC-AB11-218A9925F77B}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0409-1000-0000000FF1CE}" "{8260F0BF-F234-41FC-AB11-218A9925F77B}" "1033" "0" ### Update for Microsoft Lync 2013 (KB2881083) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{F2AC488A-A8D5-44BC-8546-CE0A75961E32}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0409-1000-0000000FF1CE}" "{F2AC488A-A8D5-44BC-8546-CE0A75961E32}" "1033" "0" ### Update for Microsoft Word 2013 (KB2956085) 64-Bit Edition - (21) 02-2015

Page 84: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Applications] :HKLM {90150000-012B-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-012B-0409-1000-0000000FF1CE} ### Microsoft Lync MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{3E5BE283-3216-4578-94BF-3FC62AC7F64F}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0409-1000-0000000FF1CE}" "{3E5BE283-3216-4578-94BF-3FC62AC7F64F}" "1033" "0" ### Update for Microsoft Lync 2013 (KB2920744) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{260C3274-6E83-4EDA-9D35-AD7BA782269D}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{260C3274-6E83-4EDA-9D35-AD7BA782269D}" "1033" "0" ### Update for Microsoft OneNote 2013 (KB2920739) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{337AA80D-C94C-43B7-A64B-355B3E26F2B8}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{337AA80D-C94C-43B7-A64B-355B3E26F2B8}" "1033" "0" ### Update for Microsoft Project 2013 (KB2956091) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{3E5BE283-3216-4578-94BF-3FC62AC7F64F}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{3E5BE283-3216-4578-94BF-3FC62AC7F64F}" "1033" "0" ### Update for Microsoft Lync 2013 (KB2920744) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00C1-0000-1000-0000000FF1CE}=MsiExec.exe /X{90150000-00C1-0000-1000-0000000FF1CE} ### Microsoft Office 32-bit Components 2013 - (21) 02-2015 [Applications] :HKLM {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1931508C-C004-4983-81E3-70BE6252904B}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{1931508C-C004-4983-81E3-70BE6252904B}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{2228A0A3-3737-4E2B-8ED6-7713D5E76D27}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{2228A0A3-3737-4E2B-8ED6-7713D5E76D27}" "1033" "0" ### Update for Microsoft Office 2013 (KB2920745) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{E54A479E-936E-4FC0-942D-23E1605FCA34}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{E54A479E-936E-4FC0-942D-23E1605FCA34}" "1033" "0" ### Update for Microsoft Office 2013 (KB2920798) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{B4D575C6-32FA-403E-B84F-F67BCA3E94CE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{B4D575C6-32FA-403E-B84F-F67BCA3E94CE}" "1033" "0" ### Update for Microsoft Office 2013 (KB2910921) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{98F3EBD3-07A0-4239-85BB-7DB8A1185CA6}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{98F3EBD3-07A0-4239-85BB-7DB8A1185CA6}" "1033" "0" ### Update for Microsoft OneDrive for Business (KB2920746) 64-Bit Edition - (2

Page 85: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

1) 02-2015 [Applications] :HKLM {90150000-00C1-0409-1000-0000000FF1CE}_Office15.PROPLUS_{E4F470B2-3601-4E1C-B291-D6B580F53136}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0409-1000-0000000FF1CE}" "{E4F470B2-3601-4E1C-B291-D6B580F53136}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00C1-0409-1000-0000000FF1CE}_Office15.PROPLUS_{98F3EBD3-07A0-4239-85BB-7DB8A1185CA6}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0409-1000-0000000FF1CE}" "{98F3EBD3-07A0-4239-85BB-7DB8A1185CA6}" "1033" "0" ### Update for Microsoft OneDrive for Business (KB2920746) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00C1-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-00C1-0409-1000-0000000FF1CE} ### Microsoft Office Shared 32-bit MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-00BA-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-00BA-0409-1000-0000000FF1CE} ### Microsoft Groove MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-00BA-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00BA-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00BA-0409-1000-0000000FF1CE}_Office15.PROPLUS_{98F3EBD3-07A0-4239-85BB-7DB8A1185CA6}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00BA-0409-1000-0000000FF1CE}" "{98F3EBD3-07A0-4239-85BB-7DB8A1185CA6}" "1033" "0" ### Update for Microsoft OneDrive for Business (KB2920746) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0090-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-0090-0409-1000-0000000FF1CE} ### Microsoft DCF MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-0090-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0090-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0090-0409-1000-0000000FF1CE}_Office15.PROPLUS_{885C981B-F1E3-430A-A099-31CA9D28C251}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0090-0409-1000-0000000FF1CE}" "{885C981B-F1E3-430A-A099-31CA9D28C251}" "1033" "0" ### Update for Microsoft Office 2013 (KB2881035) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{3D35F8A5-11A2-4A7C-B6A5-7B8B8BCDB3FB}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0409-1000-0000000FF1CE}" "{3D35F8A5-11A2-4A7C-B6A5-7B8B8BCDB3FB}" "1033" "0" ### Security Update for Microsoft Excel 2013 (KB2920753) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-001B-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-001B-0409-1000-0000000FF1CE} ### Microsoft Word MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{F2AC488A-A8D5-44BC-8546-CE0A75961E32}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0409-1000-0000000FF1CE}" "{F2AC488A-A8D5-44BC-8546-CE0A75961E32}" "1033" "0" ### Update for Microsoft Word 2013 (KB2956085) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{

Page 86: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0019-0409-1000-0000000FF1CE}_Office15.PROPLUS_{F24DFA32-C8EE-4AFB-89AB-07EE7A52E414}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0019-0409-1000-0000000FF1CE}" "{F24DFA32-C8EE-4AFB-89AB-07EE7A52E414}" "1033" "0" ### Update for Microsoft Publisher 2013 (KB2883048) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0019-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0019-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0019-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-0019-0409-1000-0000000FF1CE} ### Microsoft Publisher MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUS_{B6D56E2E-AC7F-49AA-BD95-6577A7DA55E3}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0409-1000-0000000FF1CE}" "{B6D56E2E-AC7F-49AA-BD95-6577A7DA55E3}" "1033" "0" ### Update for Microsoft PowerPoint 2013 (KB2956149) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUS_{3D35F8A5-11A2-4A7C-B6A5-7B8B8BCDB3FB}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0409-1000-0000000FF1CE}" "{3D35F8A5-11A2-4A7C-B6A5-7B8B8BCDB3FB}" "1033" "0" ### Security Update for Microsoft Excel 2013 (KB2920753) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0018-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-0018-0409-1000-0000000FF1CE} ### Microsoft PowerPoint MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUS_{F2AC488A-A8D5-44BC-8546-CE0A75961E32}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0409-1000-0000000FF1CE}" "{F2AC488A-A8D5-44BC-8546-CE0A75961E32}" "1033" "0" ### Update for Microsoft Word 2013 (KB2956085) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-001A-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-001A-0409-1000-0000000FF1CE} ### Microsoft Outlook MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUS_{04375E3E-AED6-4994-BC46-FAB2254322B1}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0409-1000-0000000FF1CE}" "{04375E3E-AED6-4994-BC46-FAB2254322B1}" "1033" "0" ### Update for Microsoft Outlook 2013 (KB2956087) 64-Bit Edition - (21) 02-201

Page 87: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

5 [Applications] :HKLM {90150000-00E2-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-00E2-0409-1000-0000000FF1CE} ### Microsoft Office OSM UX MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-00E2-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00E2-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00E1-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-00E1-0409-1000-0000000FF1CE} ### Microsoft Office OSM MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-00E1-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00E1-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00A1-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00A1-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00A1-0409-1000-0000000FF1CE}_Office15.PROPLUS_{260C3274-6E83-4EDA-9D35-AD7BA782269D}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00A1-0409-1000-0000000FF1CE}" "{260C3274-6E83-4EDA-9D35-AD7BA782269D}" "1033" "0" ### Update for Microsoft OneNote 2013 (KB2920739) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-00A1-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-00A1-0409-1000-0000000FF1CE} ### Microsoft OneNote MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-0044-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0044-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0044-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-0044-0409-1000-0000000FF1CE} ### Microsoft InfoPath MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUS_{885C981B-F1E3-430A-A099-31CA9D28C251}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0409-1000-0000000FF1CE}" "{885C981B-F1E3-430A-A099-31CA9D28C251}" "1033" "0" ### Update for Microsoft Office 2013 (KB2881035) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUS_{D7FAA622-6BCF-4EDF-8C34-A48E1838D57B}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0409-1000-0000000FF1CE}" "{D7FAA622-6BCF-4EDF-8C34-A48E1838D57B}" "1033" "0" ### Update for Microsoft Office 2013 (KB2899498) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0016-0409-1000-0000000FF1CE}=MsiExec.exe /X{901

Page 88: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

50000-0016-0409-1000-0000000FF1CE} ### Microsoft Excel MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUS_{3D35F8A5-11A2-4A7C-B6A5-7B8B8BCDB3FB}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0409-1000-0000000FF1CE}" "{3D35F8A5-11A2-4A7C-B6A5-7B8B8BCDB3FB}" "1033" "0" ### Security Update for Microsoft Excel 2013 (KB2920753) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0117-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0117-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0117-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-0117-0409-1000-0000000FF1CE} ### Microsoft Access Setup Metadata MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-0015-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-0015-0409-1000-0000000FF1CE} ### Microsoft Access MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-0015-0409-1000-0000000FF1CE}_Office15.PROPLUS_{ED7FE277-965E-4812-8E2F-16D3D49AD03B}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0015-0409-1000-0000000FF1CE}" "{ED7FE277-965E-4812-8E2F-16D3D49AD03B}" "1033" "0" ### Update for Microsoft Access 2013 (KB2910930) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0015-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0015-0409-1000-0000000FF1CE}" "{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0115-0409-1000-0000000FF1CE}_Office15.PROPLUS_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0115-0409-1000-0000000FF1CE}" "{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-0115-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-0115-0409-1000-0000000FF1CE} ### Microsoft Office Shared Setup Metadata MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUS_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0409-1000-0000000FF1CE}" "{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUS_{E54A479E-936E-4FC0-942D-23E1605FCA34}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0409-1000-0000000FF1CE}" "{E54A479E-936E-4FC0-942D-23E1605FCA34}" "1033" "0" ### Update for Microsoft Office 2013 (KB2920798) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUS_{B4D575C6-32FA-403E-B84F-F67BCA3E94CE}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0409-1000-0000000FF1CE}" "{B4D575C6-32FA-403E-B84F-F67BCA3E94CE}" "1033" "0" ### Update for Microsoft Office 2013 (KB2910921) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUS_{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0409-1000-0000000FF1CE}" "{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}" "1033" "0"

Page 89: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUS_{A976D761-90AF-42FE-8FEA-898498F38FDB}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0409-1000-0000000FF1CE}" "{A976D761-90AF-42FE-8FEA-898498F38FDB}" "1033" "0" ### Update for Microsoft Office 2013 (KB2827223) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-006E-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-006E-0409-1000-0000000FF1CE} ### Microsoft Office Shared MUI (English) 2013 - (21) 02-2015 [Applications] :HKLM {90150000-001F-0C0A-1000-0000000FF1CE}=MsiExec.exe /X{90150000-001F-0C0A-1000-0000000FF1CE} ### Microsoft Office Proofing Tools 2013 - Español - (21) 02-2015 [Applications] :HKLM {90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUS_{4BF13B26-3A95-4E42-900A-DEB16FDA75A0}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0C0A-1000-0000000FF1CE}" "{4BF13B26-3A95-4E42-900A-DEB16FDA75A0}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUS_{E0C1DB0B-BAD1-49FE-A20F-2F39969EE1EF}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0C0A-1000-0000000FF1CE}" "{E0C1DB0B-BAD1-49FE-A20F-2F39969EE1EF}" "1033" "0" ### Update for Microsoft Office 2013 (KB2920740) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM Office15.PROPLUS="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL ### Microsoft Office Professional Plus 2013 - (21) 02-2015 [Applications] :HKLM {90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUS_{04740595-CBB6-43F2-8C73-736600D41ADD}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0409-1000-0000000FF1CE}" "{04740595-CBB6-43F2-8C73-736600D41ADD}" "1033" "0" ### Update for Microsoft Office 2013 (KB2920740) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-001F-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-001F-0409-1000-0000000FF1CE} ### Microsoft Office Proofing Tools 2013 - English - (21) 02-2015 [Applications] :HKLM {90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUS_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0409-1000-0000000FF1CE}" "{835E4BED-E265-4103-AE14-0B4C70CF3FE8}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUS_{1F7000D3-A917-4AD2-BA55-59E6FDAF062A}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-040C-1000-0000000FF1CE}" "{1F7000D3-A917-4AD2-BA55-59E6FDAF062A}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUS_{73100196-0C9D-4465-9DF7-8B437AC380EA}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-040C-1000-0000000FF1CE}" "{73100196-0C9D-4465-9DF7-8B437AC380EA}" "1033" "0" ### Update for Microsoft Office 2013 (KB2920740) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {90150000-001F-040C-1000-0000000FF1CE}=MsiExec.exe /X{90150000-001F-040C-1000-0000000FF1CE} ### Outils de vérification linguistique 2013 de Microsoft Office - Français - (21) 02-2015 [Applications] :HKLM {90150000-002C-0409-1000-0000000FF1CE}=MsiExec.exe /X{90150000-002C-0409-1000-0000000FF1CE} ### Microsoft Office Proofing (English) 2013 - (21) 02-2015

Page 90: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Applications] :HKLM {90150000-002C-0409-1000-0000000FF1CE}_Office15.PROPLUS_{C5D14A1B-6E3E-491A-96C6-ABDEEEC4E97D}="C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002C-0409-1000-0000000FF1CE}" "{C5D14A1B-6E3E-491A-96C6-ABDEEEC4E97D}" "1033" "0" ### Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (21) 02-2015 [Applications] :HKLM {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}=C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\setup.exe -uninstall ### Intel(R) Processor Graphics - (21) 02-2015 [Applications] :HKLM {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}=RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\setup.exe" -removeonly ### Realtek High Definition Audio Driver - (21) 02-2015 [Applications] :HKLM Microsoft Visual Studio 2010 Tools for Office Runtime (x64)=C:\Program Files\Common Files\Microsoft Shared\VSTO\10.0\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)\install.exe ### Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (21) 02-2015 [Applications] :HKLM {1D8E6291-B0D5-35EC-8441-6616F567A0F7}.KB2549743 ### - (21) 02-2015 [Applications] :HKLM {1D8E6291-B0D5-35EC-8441-6616F567A0F7}.KB2565063 ### - (21) 02-2015 [Applications] :HKLM {1D8E6291-B0D5-35EC-8441-6616F567A0F7}.KB982573 ### - (21) 02-2015 [Applications] :HKLM {1D8E6291-B0D5-35EC-8441-6616F567A0F7}.KB2544655 ### - (21) 02-2015 [Applications] :HKLM {1D8E6291-B0D5-35EC-8441-6616F567A0F7}.KB2151757 ### - (21) 02-2015 [Applications] :HKLM {1D8E6291-B0D5-35EC-8441-6616F567A0F7}.KB2467173 ### - (21) 02-2015 [Applications] :HKLM {1D8E6291-B0D5-35EC-8441-6616F567A0F7}.KB2524860 ### - (21) 02-2015 [Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}.KB2524860 ### - (21) 02-2015 [Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}.KB982573 ### - (21) 02-2015 [Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}.KB2151757 ### - (21) 02-2015 [Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}.KB2467173 ### - (21) 02-2015 [Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}.KB2549743 ### - (21) 02-2015 [Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}.KB2544655 ### - (21) 02-2015 [Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}.KB2565063 ### - (21) 02-2015 [Applications] :HKLM Microsoft Security Client="C:\Program Files\Microsoft Security Client\Setup.exe" /x ### Microsoft Security Essentials - (21) 02-2015 [Applications] :HKLM {8C775E70-A791-4DA8-BCC3-6AB7136F4484}=MsiExec.exe /I{8C775E70-A791-4DA8-BCC3-6AB7136F4484} ### Visual Studio 2012 x64 Redistributables - (21) 02-2015 [Applications] :HKLM {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}=MsiExec.exe /I{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} ### Visual Studio 2012 x86 Redistributables - (21) 02-2015 [Applications] :HKLM {5BE0342D-6501-4AF4-98F7-8D212A9759BC}_is1="C:\Program Files\DesktopSlides\unins000.exe" ### DesktopSlides - (21) 02-2015 [Applications] :HKLM Internet Download Manager=C:\Program Files (x86)\Internet Download Manager\Uninstall.exe

Page 91: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

### Internet Download Manager - (21) 02-2015 [Applications] :HKCU Google+ Auto Backup="C:\Users\$unil\AppData\Local\Programs\Google\Google+ Auto Backup\Uninstall.exe" ### Google+ Auto Backup - (21) 02-2015 [Applications] :HKLM {AC76BA86-0804-1033-1959-001802114130}=MsiExec.exe /I{AC76BA86-0804-1033-1959-001802114130} ### Adobe Refresh Manager - (21) 02-2015 [Applications] :HKCU uTorrent="C:\Users\$unil\AppData\Roaming\uTorrent\uTorrent.exe" /UNINSTALL ### µTorrent - (21) 02-2015 [Applications] :HKLM {AC76BA86-7AD7-1033-7B44-AB0000000001}=MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-AB0000000001} ### Adobe Reader XI (11.0.10) - (21) 02-2015 [Applications] :HKLM Picasa 3="C:\Program Files (x86)\Google\Picasa3\Uninstall.exe" ### Picasa 3 - (21) 02-2015 [Applications] :HKLM VLC media player=C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe ### VLC media player - (21) 02-2015 [Applications] :HKLM Adobe Flash Player NPAPI=C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_305_Plugin.exe -maintain plugin ### Adobe Flash Player 16 NPAPI - (21) 02-2015 [Applications] :HKLM {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}=MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ### Google Update Helper - (21) 02-2015 [Applications] :HKLM {87CF757E-C1F1-4D22-865C-00C6950B5258}=MsiExec.exe /I{87CF757E-C1F1-4D22-865C-00C6950B5258} ### Quickset64 - (21) 02-2015 [Applications] :HKLM Google Chrome="C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\Installer\setup.exe" --uninstall --multi-install --chrome --system-level --verbose-logging ### Google Chrome - (21) 02-2015 [Applications] :HKLM WinRAR archiver=C:\Program Files\WinRAR\uninstall.exe ### WinRAR 5.10 beta 3 (64-bit) - (21) 02-2015 [Applications] :HKLM {5ae11e9e-c192-4030-97b5-2f83e0edf570}="C:\ProgramData\Package Cache\{5ae11e9e-c192-4030-97b5-2f83e0edf570}\SetupChipset.exe" /uninstall ### Intel(R) Chipset Device Software - (21) 02-2015 [Applications] :HKLM {C7090522-1436-4FD6-9449-B06A665E2537}=MsiExec.exe /I{C7090522-1436-4FD6-9449-B06A665E2537} ### Intel(R) Chipset Device Software - (21) 02-2015 [Applications] :HKLM Connection Manager ### - (14) 07-2009 [Applications] :HKLM WIC ### - (14) 07-2009 [Applications] :HKLM IE40 ### - (14) 07-2009 [Applications] :HKLM IEData ### - (14) 07-2009 [Applications] :HKLM IE4Data ### - (14) 07-2009 [Applications] :HKLM IE5BAKEX ### - (14) 07-2009 [Applications] :HKLM MobileOptionPack ### - (14) 07-2009 [Applications] :HKLM SchedulingAgent ### - (14) 07-2009 [Applications] :HKLM AddressBook ### - (14) 07-2009 [Applications] :HKLM WIC ### - (14) 07-2009

Page 92: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[Applications] :HKLM Fontcore ### - (14) 07-2009 [Applications] :HKLM DirectDrawEx ### - (14) 07-2009 [Applications] :HKLM Connection Manager ### - (14) 07-2009[MD5] [E9DBFC3F84CB6FE4EAA266CD32A2CBEE][1 2334928 4032B94F29C30960551EA73E256168A9563BB541 ]C:\PROGRA~1\MICROS~2\OFFICE15\GROOVEEX.DLL [CC7FF380941AA4DE8069003DFEF673A5][1 881880 ]C:\PROGRA~1\MICROS~2\OFFICE15\URLREDIR.DLL [BBEB25855C75F552C3FFFA1F32D1D2C7][1 1729744 7D7F0E85B247461D09D307192BCF09482346E761 ]C:\PROGRA~2\MICROS~1\OFFICE15\GROOVEEX.DLL [EEBF68CB652502A6D6B16B03487E05EC][1 707800 ]C:\PROGRA~2\MICROS~1\OFFICE15\URLREDIR.DLL [EDCACE34D98A36D8ECCE37221676C219][1 870288 9AC43A8DA52EFADEB506C0DCE1F2856B1D7D48EF ]C:\PROGRAM FILES (X86)\CISCO\CISCO ANYCONNECT SECURE MOBILITY CLIENT\ACNAMAGENT.EXE [FC5B75CA6A1DA31EDD4F8D53F5540B98][1 81088 87A8F7C8C18D56EC34FB9C251F844D2887DD14A5 ]C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ARM\1.0\ARMSVC.EXE [9153F2335BCDB87F41559CF066223BF9][1 508800 BE359084E9507D28BD08AD43EFD7E49D97B8A7D4 ]C:\PROGRAM FILES (X86)\COMMON FILES\JAVA\JAVA UPDATE\JUSCHED.EXE [29629208BED94C3E70B0A6C2FAB61A3F][1 45768 ]C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\OFFICE15\MSOXMLMF.DLL [E527FAC0EC3AA363C09C2E0AD13BC882][1 441592 ]C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WINDOWSLIVELOGIN.DLL [4355CF8BD07B0E48C111FC3D2F36D313][1 145648 ]C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WLIDNSP.DLL [41FAE6618768DC93D98DDAF3F8282D3E][1 906432 ]C:\PROGRAM FILES (X86)\COMMON FILES\VMWARE\USB\VMWARE-USBARBITRATOR64.EXE [B9D6D7E6E5C4FCD8DD7F88EC9D563085][1 843592 59178DB3C0D01A96BBA1C145297F2A26F2CAD3BD ]C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE [C1B577B2169900F4CF7190C39F085794][1 136120 ]C:\PROGRAM FILES (X86)\GOOGLE\COMMON\GOOGLE UPDATER\GOOGLEUPDATERSERVICE.EXE [E1B44A75947137F4143308D566889837][1 107848 2BBB25793FB06E79462911A3F51C4E71EA86034E ]C:\PROGRAM FILES (X86)\GOOGLE\UPDATE\GOOGLEUPDATE.EXE [1E3F8251CBD1A202334AFB1EAC199A05][2 3890768 C56E5ADE03C245A27443A8EBC7FB0D989E53A67F ]C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\IDMAN.EXE [1227FFE3D7F6C019FC10966414575105][2 266160 255EF7DC7226F451DD8E2BDDE87818C33A17BB65 ]C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\IDMGCEXT.CRX [A812AE8B0AD5A21812507FD98B71038E][1 418328 7B2D725E923D8B9C79CE30DA46DA68D3EFD0C7AC ]C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\IDMIECC.DLL [039320696D7D792E0A4E7883AC371B18][1 477720 13E6512DB977AE1F6B39DC9F706D7A02C33918E1 ]C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\IDMIECC64.DLL [E9C6EF9437ECB30911488F9313AD821A][1 269848 52EB881E93DD0C3E7E923CC0DA6257640079FE68 ]C:\PROGRAM FILES (X86)\INTERNET DOWNLOAD MANAGER\IEMONITOR.EXE [DA41FC2EA6E979D147258AB053E2D136][1 172968 40BC8BEAE1C11BDC527A7AB6B1640A2B89142876 ]C:\PROGRAM FILES (X86)\JAVA\JRE1.8.0_31\BIN\JP2SSV.DLL [7C15112AEB2A24A7B21FA7A534C083C5][1 460712 B14E58CCEEF2244F136D491C94CA832FBFDE9B4B ]C:\PROGRAM FILES (X86)\JAVA\JRE1.8.0_31\BIN\SSV.DLL [405251ED82D69E5893F1E7E923B7F38B][1 59072 ]C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE15\MSOSB.DLL [D2FA55F98AEC5D82D055062101145C20][1 153248 ]C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE15\OCHELPER.DLL

Page 93: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[E84E5E8888FDB6B3D908113D784A9920][1 153304 ]C:\PROGRAM FILES (X86)\MICROSOFT\BINGDESKTOP\BDAPPHOST.EXE [B59421860FD19D81BE1385C594795389][1 208608 ]C:\PROGRAM FILES (X86)\MICROSOFT\BINGDESKTOP\BDEXTHOST.EXE [C423E09CD8D2FDD19F1C1728D30623B1][1 370400 ]C:\PROGRAM FILES (X86)\MICROSOFT\BINGDESKTOP\BDRUNTIMEHOST.EXE [E39C48B65200C28FE0F7CB700732F332][1 44768 ]C:\PROGRAM FILES (X86)\MICROSOFT\BINGDESKTOP\BDSURROGATEHOST.EXE [30EE672AD2C53BFB7DD4BE6993B07C71][1 2368736 ]C:\PROGRAM FILES (X86)\MICROSOFT\BINGDESKTOP\BINGDESKTOP.EXE [9BF7ED72685E81BF8763B1585D40C57F][1 173792 ]C:\PROGRAM FILES (X86)\MICROSOFT\BINGDESKTOP\BINGDESKTOPUPDATER.EXE [265B49EF94A5AA713192EE97A7D248B5][1 338032 BE64E10900EC0D0B40D09C213D2B065D0E0ED0D5 ]C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\FIREFOX.EXE [345477F02C308B7480702767218C86A2][1 114800 02BAB5D83C7E5808FC8000C88653B189703DDF63 ]C:\PROGRAM FILES (X86)\MOZILLA MAINTENANCE SERVICE\MAINTENANCESERVICE.EXE [49B1E5AF3AA400752A20BE169CB73DFA][1 410952 3576025FFCA8B9A21B05765B7FAE754C73BFB54E ]C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\3D VISION\NVSCPAPISVR.EXE [93C82F365F9C0A2058A211E305A5CCFA][1 1706128 16FBB345C74FCA1DA5267CDFC15A234341DD3425 ]C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\NETSERVICE\NVNETWORKSERVICE.EXE [059E588FDF6B7E83227D45D026D21874][1 2585744 4C82C5C0A6352575A2222B51388B14FB32738536 ]C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\UPDATE CORE\NVBACKEND.EXE [8943465BEFA91044227D42E84ECB8280][1 115048 ]C:\PROGRAM FILES (X86)\RENESAS ELECTRONICS\USB 3.0 HOST CONTROLLER DRIVER\APPLICATION\NUSB3MON.EXE [7D6E1809C844B1D2AA02B6DCF1950084][1 31087200 50661F66F89443A9EF3B89FB1E13B82CB5B9A1EF ]C:\PROGRAM FILES (X86)\SKYPE\PHONE\SKYPE.EXE [1F79342D9EB530A48742F651E570983A][1 1390176 ]C:\PROGRAM FILES (X86)\SKYPE\TOOLBARS\AUTOUPDATE\SKYPEC2CAUTOUPDATESVC.EXE [3F6232CBE41363F0C43DDD5F91D3FC35][2 102275 ]C:\PROGRAM FILES (X86)\SKYPE\TOOLBARS\CHROMEEXTENSION\SKYPE_CHROME_EXTENSION.CRX [B15862B3DB1F5396FD3CB27ED584B681][1 2117216 ]C:\PROGRAM FILES (X86)\SKYPE\TOOLBARS\INTERNET EXPLORER X64\SKYPEIEPLUGIN.DLL [C89F814492178585DA89F452CE19B720][1 1709152 ]C:\PROGRAM FILES (X86)\SKYPE\TOOLBARS\INTERNET EXPLORER\SKYPEIEPLUGIN.DLL [E4938E0A376CF0B9D989EE5C0A146891][1 1767520 ]C:\PROGRAM FILES (X86)\SKYPE\TOOLBARS\PNRSVC\SKYPEC2CPNRSVC.EXE [A9C057A9463C25490CF99EA8DF8A4B35][1 315488 DC20831CED91E7AB944F15DC75D82911ABF61FF3 ]C:\PROGRAM FILES (X86)\SKYPE\UPDATER\UPDATER.EXE [515377905CC9A2EB0E585DD9AB457722][1 592656 21EF1C0A2FD3E137D246CFD6B7B80206E19C9F65 ]C:\PROGRAM FILES (X86)\UNHACKME\HACKMON.EXE [A597D3A1073271330191EE30046C121A][1 10342712 9D2658D05059F15B2BD794F016D18B5CD70868FB ]C:\PROGRAM FILES (X86)\UNHACKME\REANIMATOR.EXE [5B724E4F86661343DDFD19EEE2316578][1 2130192 EE36304EDF54AF78BFFDB45053CE4143759DACA6 ]C:\PROGRAM FILES (X86)\UNHACKME\UNHACKME.EXE [D07589E4434BD14E192ACED6C398B0CB][1 86744 ]C:\PROGRAM FILES (X86)\VMWARE\VMWARE WORKSTATION\VMWARE-AUTHD.EXE [81BC96818A1A718342B5A03BA34AED2A][1 14407384

Page 94: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

]C:\PROGRAM FILES (X86)\VMWARE\VMWARE WORKSTATION\VMWARE-HOSTD.EXE [F121A4E1799C490EAA3765FB6295E43E][1 112856 ]C:\PROGRAM FILES (X86)\VMWARE\VMWARE WORKSTATION\VMWARE-TRAY.EXE [CDE6C2310C30C97A4C518CE2D2453890][1 764616 ]C:\PROGRAM FILES (X86)\WINDOWS LIVE\MAIL\MAILCOMM.DLL [4CF29C44E072C377B6866C399947E99A][1 50880 ]C:\PROGRAM FILES (X86)\WINDOWS LIVE\PHOTO GALLERY\ALBUMDOWNLOADPROTOCOLHANDLER.DLL [A9F3BFC9345F49614D5859EC95B9E994][6 1525248 ]C:\PROGRAM FILES (X86)\WINDOWS MEDIA PLAYER\WMPNETWK.EXE [B3DD214F23037E3D3C27D6C9447B40B5][1 4247040 ]C:\PROGRAM FILES (X86)\WINDOWS NT\ACCESSORIES\WORDPAD.EXE [B16782353A0FF62FF4E92145FC9FEDDA][1 157088 AAAA7AB1CF35BF8D813091BFDAEA580796190F40 ]C:\PROGRAM FILES\COMMON FILES\INTEL\WIRELESSCOMMON\REGSRVC.EXE [FE9C0029E1AF26350D9985D00520E5C8][1 5132888 ]C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\OFFICESOFTWAREPROTECTIONPLATFORM\OSPPSVC.EXE [11E0B35479C895888BA3D7F619DCFFF3][1 178760 ]C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\SOURCE ENGINE\OSE.EXE [4439E8B55CF0B2EA122F4FDC780270A2][1 529664 ]C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WINDOWSLIVELOGIN.DLL [AF528B4ECA925F63D437F76E87D8971D][1 171760 1EC56055537609987ADC5E29F3EE4B22E799029C ]C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WLIDNSP.DLL [357CABBF155AFD1D3926E62539D2A3A7][1 2292480 ]C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WLIDSVC.EXE [E7B32C61E8AA6CD40DF6557FEDD2EB77][2 4146848 7E5650DA9D59ABF0F1FB6DB9723271963AA6890B ]C:\PROGRAM FILES\DELL\QUICKSET\QUICKSET.EXE [E307ED976D238B30B247108D1978A377][1 772064 ]C:\PROGRAM FILES\INTEL\BLUETOOTHHS\BTHSAMPPALSERVICE.EXE [D30286FF3C7B6318C024D2BC2955C1BF][1 135984 ]C:\PROGRAM FILES\INTEL\BLUETOOTHHS\BTHSSECURITYMGR.EXE [2761809D0BA8BD0F83463509624FD74A][1 638368 F76ED22282B03F21EFEBB3D10FF913A32F8D0177 ]C:\PROGRAM FILES\INTEL\WIFI\BIN\EVTENG.EXE [FAA1B47AEADDB64CB9A4D31A894AA8F8][1 268192 06595D1703B9EE9E505D34D9A54D3B7BF7987701 ]C:\PROGRAM FILES\INTEL\WIFI\BIN\PANDHCPDNS.EXE [DFE071BEAA1AC65D49ECBEFC15B73D30][1 3820960 5FDE9FE17E43FB43D84C37BFFE7567157309F3D8 ]C:\PROGRAM FILES\INTEL\WIFI\BIN\ZEROCONFIGSERVICE.EXE [2D4AB594AABBEBA938F36BA1BC71C3F6][1 813744 2FF4DF6922780F00A5657683B80C7EA1A09A373E ]C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE [E6227F2A14DE7BB9B01153D10C825F19][1 22765728 44622F3D7C75E36F419EDDD3F3B3A6AFE295A831 ]C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE15\LYNC.EXE [EBD994B2A1BF365CD2B448D381FB9112][1 218776 CD2EEDEA42EC523E55D7124A24354E0532DFA49A ]C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE15\OCHELPER.DLL [F46BA4E7F4A34295B20917CD77F6CEC9][1 23784 426C2B359CC769E70723EDABE101D2B532DBA740 ]C:\PROGRAM FILES\MICROSOFT SECURITY CLIENT\MSMPENG.EXE [87A4BA086E5B5DF0F36E3F6D7234D701][1 1332296 2B828B41C3A5C026ED09CA12EDB54C21FA918B59 ]C:\PROGRAM FILES\MICROSOFT SECURITY CLIENT\MSSECES.EXE [9BF50324444C46997C2492D505B47F2D][1 366512 7E96A852A8D332275953C64F3F43EAAE8E06783C ]C:\PROGRAM FILES\MICROSOFT SECURITY CLIENT\NISSRV.EXE [28D0B60C58D1F734449E735E2C4FCE94][1 1148560 8F86460DFE983215771F829D7493BA528C024A42 ]C:\PROGRAM FILES\NVIDIA CORPORATION\GEFORCE EXPERIENCE SERVICE\GFEXPERIENCESERVICE.EXE [977C9F7656D07D36887814A7D570FE1A][1 19600 563C023A51A18A8DA43C5FFE6BE6733A3E3CC806 ]C:\PROGRAM FILES\NVIDIA CORPORATION\NVSTREAMSRV\NVSTREAMKMS.SY

Page 95: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

S [40BF0BFC7F7B95DF824064EE1848B05E][1 21833360 B4AD3272CF7655CE7AA9E518BEEA30ECCFC305F2 ]C:\PROGRAM FILES\NVIDIA CORPORATION\NVSTREAMSRV\NVSTREAMSVC.EXE [D1E343BC00136CE03C4D403194D06A80][1 98208 ]C:\PROGRAM FILES\REALTEK\AUDIO\HDA\AERTSR64.EXE [495B01F44E917CCDF79005CC0EC56F5A][6 2188904 ]C:\PROGRAM FILES\REALTEK\AUDIO\HDA\RAVBG64.EXE [29A1AA60BEB49F0D270817F138618647][1 6611048 ]C:\PROGRAM FILES\REALTEK\AUDIO\HDA\RTKNGUI64.EXE [0D549EF461685EC23BB111CDAE7A91AE][1 2531624 ]C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPENH.EXE [7CBB1D4D13DC62D7F529D87151FD3CD3][1 1011712 ]C:\PROGRAM FILES\WINDOWS DEFENDER\MPSVC.DLL [A9F3BFC9345F49614D5859EC95B9E994][6 1525248 ]C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\WMPNETWK.EXE [83EF203C123F288E227C5B1DEB467DE8][1 267352 2BE86A7D1BC8B8B81A55341D085C8E81DBD3B5F1 ]C:\PROGRAM FILES\WINRAR\RAREXT32.DLL [ -2][0 -1 ]C:\USERS\$UNIL\APPDATA\LOCAL\APPS\2.0\2ACD3OXW.0BE\KDATV99D.CAC\DELL..TION_E30B47F5D4A30E9E_0005.000E_4AB3A7332DD76702\DELLSYSTEMDETECT.EXE [506708142BC63DABA64F2D3AD1DCD5BF][1 116648 ]C:\USERS\$UNIL\APPDATA\LOCAL\GOOGLE\UPDATE\GOOGLEUPDATE.EXE [BAB442AE1AEF7D7CFAB62344FCCCFEA7][1 3746120 ]C:\USERS\$UNIL\APPDATA\LOCAL\PROGRAMS\GOOGLE\GOOGLE+ AUTO BACKUP\GOOGLE+ AUTO BACKUP.EXE [F4CB6977FACFD7C51C5AE061B1D4289D][1 34216 ]C:\USERS\$UNIL\APPDATA\ROAMING\IDM\IDMMZCC5\COMPONENTS\\IDMMZCC.DLL [4825955B4DADAA8F8FE05A2864BB6E6B][1 26136 FA8BF3EDDEE5C73A186F3130F5626DAA86F255B5 ]C:\USERS\$UNIL\APPDATA\ROAMING\IDM\IDMMZCC5\COMPONENTS11\\IDMMZCC.DLL [A43DD6FE91EB6A92D7C238A7A965F1CB][1 31256 FD84337F3EB6CF89888AFBD33B82A583C8F88A87 ]C:\USERS\$UNIL\APPDATA\ROAMING\IDM\IDMMZCC5\COMPONENTS11\\IDMMZCC64.DLL [BAB8CB7D533AC3FA418AF4153F06A29F][1 330264 215CCDF0B8586F751DBD9C8DF95EE51F49C6FF0B ]C:\USERS\$UNIL\APPDATA\ROAMING\IDM\IDMMZCC5\COMPONENTS2\\IDMCCHANDLER2.DLL [E04723A39DDDE7EBFB4A517A42B4A24F][1 459800 EBDC8974FE3769EEEB86C10CD8B133C04A904B13 ]C:\USERS\$UNIL\APPDATA\ROAMING\IDM\IDMMZCC5\COMPONENTS2\\IDMCCHANDLER2_64.DLL [8FAE57C6C9A27C01E9D4591F4E2CD6B2][1 34216 ]C:\USERS\$UNIL\APPDATA\ROAMING\IDM\IDMMZCC5\COMPONENTS2\\IDMMZCC.DLL [8B640FB5A8A1A7358AE8BEAA7C208D9A][1 28512 ]C:\USERS\$UNIL\APPDATA\ROAMING\IDM\IDMMZCC5\COMPONENTS2\\IDMMZCC64.DLL [2D7C5669058EF750FADB83B36D7A55A8][1 1738576 4E9FA9E41FE9899973013DFD5489998E8BE00AC5 ]C:\USERS\$UNIL\APPDATA\ROAMING\UTORRENT\UTORRENT.EXE [C4002B6B41975F057D98C439030CEA07][1 696832 ]C:\WINDOWS\EHOME\EHRECVR.EXE [4705E8EF9934482C5BB488CE28AFC681][1 127488 ]C:\WINDOWS\EHOME\EHSCHED.EXE [332FEAB1435662FC6C672E25BEB37BE3][1 2871808 ]C:\WINDOWS\EXPLORER.EXE [F13EC8A783E0CB0D6DC26A3CA848B7B8][1 67224 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V2.0.50727\MSCORSVW.EXE [F5AB4D2E36625F355E81539239765107][1 103608 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\MSCORSVW.EXE [B4D73F04E9BC076F7CDAC4327DF636BB][1 90776

Page 96: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V2.0.50727\MSCORSVW.EXE [C98A5B9D932430AD8EEBD3EF73756EF7][1 859280 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION FOUNDATION\INFOCARD.EXE [A8B7F3818AB65695E3A0BB3279F6DCE6][1 42856 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WPF\PRESENTATIONFONTCACHE.EXE [F15AB80B867D3332D5DDFB0A05B9CE04][1 50864 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\ASPNET_STATE.EXE [9ACBE5EC13C2CC95833BFB7636CA8B1A][1 124088 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\MSCORSVW.EXE [E58808846B62041BFB05395E1CED6499][1 139944 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SMSVCHOST.EXE [773212B2AAA24C1E31F10246B15B276C][1 194048 ]C:\WINDOWS\SERVICING\TRUSTEDINSTALLER.EXE [1A47D52E303B7543E4E6026595B95422][1 1297408 ]C:\WINDOWS\SYSNATIVE\COMRES.DLL [3044D07ABDF4BBEA27E2EE7B1E0C0C65][1 12288 ]C:\WINDOWS\SYSNATIVE\D3D8THK.DLL [A6C09924C6730DE8DEED9890A12AA691][1 569344 ]C:\WINDOWS\SYSNATIVE\DDRAW.DLL [9110FFAD124283F37D38771BB60556AF][1 540672 ]C:\WINDOWS\SYSNATIVE\DSOUND.DLL [3B367397320C26DBA890B260F80D1B1B][1 424448 ]C:\WINDOWS\SYSNATIVE\HNETCFG.DLL [AA2C08CE85653B1A0D2E4AB407FA176C][1 167424 ]C:\WINDOWS\SYSNATIVE\IMM32.DLL [2B81776DA02017A37FE26C662827470E][1 145920 ]C:\WINDOWS\SYSNATIVE\IPHLPAPI.DLL [8560FFFC8EB3A806DCD4F82252CFC8C6][1 5120 ]C:\WINDOWS\SYSNATIVE\KSUSER.DLL [796B47A4B82EF1C39F13435B88834C48][1 41472 ]C:\WINDOWS\SYSNATIVE\LPK.DLL [CA2A0750ED830678997695FF61B04C30][1 20480 ]C:\WINDOWS\SYSNATIVE\MIDIMAP.DLL [C210E0DF28F3B0E5D45F928F08726650][1 8704 ]C:\WINDOWS\SYSNATIVE\MSCTFIME.IME [CD726C899BD9A398E8420564A957320B][1 25056256 CCF7258404B299C9B77638528F24306B695CB484 ]C:\WINDOWS\SYSNATIVE\MSHTML.DLL [E424B3EF666B184CEE0B6871AAA8C9F6][1 8192 ]C:\WINDOWS\SYSNATIVE\MSIMG32.DLL [9A9F9F1A77D6A80EE28B57664F00013E][1 327168 ]C:\WINDOWS\SYSNATIVE\MSWSOCK.DLL [58A0CDABEA255616827B1C22C9994466][1 68096 ]C:\WINDOWS\SYSNATIVE\NAPINSP.DLL [46BB91A169B9B31FF44EB04C48EC1D41][1 70656 ]C:\WINDOWS\SYSNATIVE\NLAAPI.DLL [613C8CE10A5FDE582BA5FA64C4D56AAA][1 86016 ]C:\WINDOWS\SYSNATIVE\PNRPNSP.DLL [88351B29B622B30962D2FEB6CA8D860B][1 16384 ]C:\WINDOWS\SYSNATIVE\RASADHLP.DLL [019CD868461B646E09BDF04474C19341][1 384512 ]C:\WINDOWS\SYSNATIVE\RASAPI32.DLL [5C627D1B1138676C0A7AB2C2C190D123][1 512000 ]C:\WINDOWS\SYSNATIVE\RPCSS.DLL [ED78427259134C63ED69804D2132B86C][1 232960 ]C:\WINDOWS\SYSNATIVE\SCECLI.DLL [24ACB7E5BE595468E3B9AA488B9B4FCB][6 328704 ]C:\WINDOWS\SYSNATIVE\SERVICES.EXE

Page 97: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[09F7401D56F2393C6CA534FF0241A590][1 257024 ]C:\WINDOWS\SYSNATIVE\TASKMGR.EXE [FE70103391A64039A921DBFFF9C7AB1B][1 1008128 ]C:\WINDOWS\SYSNATIVE\USER32.DLL [D29E998E8277666982B4F0303BF4E7AF][1 332288 ]C:\WINDOWS\SYSNATIVE\UXTHEME.DLL [9B8F9FE94C614E90908CC2B8D4184939][1 67664 ]C:\WINDOWS\SYSNATIVE\VSOCKLIB.DLL [8CEBD9D0A0A879CDE9F36F4383B7CAEA][1 455168 ]C:\WINDOWS\SYSNATIVE\WINLOGON.EXE [2E2072EB48238FCA8FBB7A9F5FABAC45][1 28672 ]C:\WINDOWS\SYSNATIVE\WINRNR.DLL [8396C6C26AADDFE4590CCEF0F419B6B7][1 4608 ]C:\WINDOWS\SYSNATIVE\WS2HELP.DLL [748849C42DEA24C723048E24BCA1BD55][1 47104 ]C:\WINDOWS\SYSNATIVE\WSHBTH.DLL [4B78B431F225FD8624C5655CB1DE7B61][1 72192 ]C:\WINDOWS\SYSTEM32\AELUPSVC.DLL [3290D6946B5E30E70414990574883DDB][1 79360 ]C:\WINDOWS\SYSTEM32\ALG.EXE [0BC381A15355A3982216F7172F545DE1][1 32256 ]C:\WINDOWS\SYSTEM32\APPIDSVC.DLL [9D2A2369AB4B08A4905FE72DB104498F][1 70144 ]C:\WINDOWS\SYSTEM32\APPINFO.DLL [DE3E38431B00C2EA247C53675DCF01A0][1 680960 ]C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL [A6BF31A71B409DFA8CAC83159E1E2AFF][1 114688 ]C:\WINDOWS\SYSTEM32\AXINSTSV.DLL [FDE360167101B4E45A96F939F388AEB0][1 100864 ]C:\WINDOWS\SYSTEM32\BDESVC.DLL [82974D6A2FD19445CC5171FC378668A4][1 705024 ]C:\WINDOWS\SYSTEM32\BFE.DLL [05F5A0D14A2EE1D8255C2AA0E9E8E694][1 136704 ]C:\WINDOWS\SYSTEM32\BROWSER.DLL [95F9C2976059462CBBF227F7AAB10DE9][1 83968 ]C:\WINDOWS\SYSTEM32\BTHSERV.DLL [F17D1D393BBC69C5322FBFAFACA28C7F][1 80384 ]C:\WINDOWS\SYSTEM32\CERTPROP.DLL [FE1EC06F2253F691FE36217C592A0206][1 367696 ]C:\WINDOWS\SYSTEM32\CLFS.SYS [19D511CC455C19DE1ADF60E6C39C85B6][1 187904 ]C:\WINDOWS\SYSTEM32\CRYPTSVC.DLL [3CEC7631A84943677AA8FA8EE5B6B43D][1 291328 ]C:\WINDOWS\SYSTEM32\DEFRAGSVC.DLL [43D808F5D9E1A18E5EEB5EBC83969E4E][1 317952 ]C:\WINDOWS\SYSTEM32\DHCPCORE.DLL [A8EDB86FC2A4D6D1285E4C70384AC35A][1 9728 ]C:\WINDOWS\SYSTEM32\DLLHOST.EXE [16835866AAA693C7D7FCEBA8FFF706E4][1 183296 ]C:\WINDOWS\SYSTEM32\DNSRSLVR.DLL [B1FB3DDCA0FDF408750D5843591AFBC6][1 252416 ]C:\WINDOWS\SYSTEM32\DOT3SVC.DLL [B26F4F737E8F9DF4F31AF6CF31D05820][1 162816 ]C:\WINDOWS\SYSTEM32\DPS.DLL [A87D604AEA360176311474C87A63BB88][1 229888 ]C:\WINDOWS\SYSTEM32\DRIVERS\1394OHCI.SYS [D81D9E70B8A6DD14D42D7B4EFA65D5F2][1 334208 ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPI.SYS [99F8E788246D495CE3794D7E7821D2CA][1 12800 ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPIPMI.SYS

Page 98: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[2F6B34B83843F0C5118B63AC634F5BF4][1 491088 ]C:\WINDOWS\SYSTEM32\DRIVERS\ADP94XX.SYS [597F78224EE9224EA1A13D6350CED962][1 339536 ]C:\WINDOWS\SYSTEM32\DRIVERS\ADPAHCI.SYS [E109549C90F62FB570B9540C4B148E54][1 182864 ]C:\WINDOWS\SYSTEM32\DRIVERS\ADPU320.SYS [FA886682CFC5D36718D3E436AACF10B9][1 497152 ]C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS [7ECFF9B22276B73F43A99A15A6094E90][1 60416 ]C:\WINDOWS\SYSTEM32\DRIVERS\AGILEVPN.SYS [608C14DBA7299D8CB6ED035A68A15799][1 61008 ]C:\WINDOWS\SYSTEM32\DRIVERS\AGP440.SYS [5812713A477A3AD7363C7438CA2EE038][1 15440 ]C:\WINDOWS\SYSTEM32\DRIVERS\ALIIDE.SYS [1FF8B4431C353CE385C875F194924C0C][1 15440 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDIDE.SYS [7024F087CFF1833A806193EF9D22CDA9][1 64512 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDK8.SYS [1E56388B3FE0D031C44144EB8C4D6217][1 60928 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDPPM.SYS [D4121AE6D0C0E7E13AA221AA57EF2D49][1 107904 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDSATA.SYS [F67F933E79241ED32FF46A4F29B5120B][1 194128 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDSBS.SYS [540DAF1CEA6094886D72126FD7C33048][1 27008 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDXATA.SYS [888B1D8C4F7B6D2106D178204724ECAD][1 164832 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMPPAL.SYS [89A69C3F2F319B43379399547526D952][1 61440 ]C:\WINDOWS\SYSTEM32\DRIVERS\APPID.SYS [C484F8CEB1717C540242531DB7845C4E][1 87632 ]C:\WINDOWS\SYSTEM32\DRIVERS\ARC.SYS [019AF6924AEFE7839F61C830227FE79C][1 97856 ]C:\WINDOWS\SYSTEM32\DRIVERS\ARCSAS.SYS [769765CE2CC62867468CEA93969B2242][1 23040 ]C:\WINDOWS\SYSTEM32\DRIVERS\ASYNCMAC.SYS [02062C0B390B7729EDC9E69C680A6F3C][1 24128 ]C:\WINDOWS\SYSTEM32\DRIVERS\ATAPI.SYS [B5ACE6968304A3900EEB1EBFD9622DF2][1 270848 ]C:\WINDOWS\SYSTEM32\DRIVERS\B57ND60A.SYS [61583EE3C3A17003C4ACD0475646B4D3][1 45056 ]C:\WINDOWS\SYSTEM32\DRIVERS\BLBDRIVE.SYS [6C02A83164F5CC0A262F4199F0871CF5][1 90624 ]C:\WINDOWS\SYSTEM32\DRIVERS\BOWSER.SYS [F09EEE9EDC320B5E1501F749FDE686C8][1 18432 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRFILTLO.SYS [B114D3098E9BDB8BEA8B053685831BE6][1 8704 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRFILTUP.SYS [43BEA8D483BF1870F018E2D02E06A5BD][1 286720 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRSERID.SYS [A6ECA2151B08A09CACECA35C07F05B42][1 47104 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRSERWDM.SYS [B79968002C277E869CF38BD22CD61524][1 14976 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRUSBMDM.SYS [A87528880231C54E75EA7A44943B38BF][1 14720 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRUSBSER.SYS [CF98190A94F62E405C8CB255018B2315][1 41984 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHENUM.SYS [9DA669F11D1F894AB4EB69BF546A42E8][1 72192 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHMODEM.SYS

Page 99: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[02DD601B708DD0667E1331FA8518E9FF][1 118784 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHPAN.SYS [738D0E9272F59EB7A1449C3EC118E6C4][1 552960 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHPORT.SYS [F188B7394D81010767B6DF3178519A37][1 80384 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHUSB.SYS [ -2][0 -1 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTMAUX.SYS [ -2][0 -1 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTMHSF.SYS [3E5B191307609F7514148C6832BB0842][1 468480 ]C:\WINDOWS\SYSTEM32\DRIVERS\BXVBDA.SYS [B8BD2BB284668C84865658C77574381A][1 92160 ]C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS [F036CE71586E93D94DAB220D7BDF4416][1 147456 ]C:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS [D7CD5C4E1B71FA62050515314CFB52CF][1 45568 ]C:\WINDOWS\SYSTEM32\DRIVERS\CIRCLASS.SYS [0840155D0BDDF1190F84A663C284BD33][1 17664 ]C:\WINDOWS\SYSTEM32\DRIVERS\CMBATT.SYS [E19D3F095812725D88F9001985B94EDD][1 17488 ]C:\WINDOWS\SYSTEM32\DRIVERS\CMDIDE.SYS [E45CDE1C8340DFEDF1D6724263F39E5B][1 458824 1E9FF34730C51188B77D35D02C5F0F9B92D52E87 ]C:\WINDOWS\SYSTEM32\DRIVERS\CNG.SYS [102DE219C3F61415F964C88E9085AD14][1 21584 ]C:\WINDOWS\SYSTEM32\DRIVERS\COMPBATT.SYS [03EDB043586CCEBA243D689BDDA370A8][1 38912 ]C:\WINDOWS\SYSTEM32\DRIVERS\COMPOSITEBUS.SYS [1C827878A998C18847245FE1F34EE597][1 24144 ]C:\WINDOWS\SYSTEM32\DRIVERS\CRCDISK.SYS [9BB2EF44EAA163B29C4A4587887A0FE4][1 102400 ]C:\WINDOWS\SYSTEM32\DRIVERS\DFSC.SYS [13096B05847EC78F0977F2C0F79E9AB3][1 40448 ]C:\WINDOWS\SYSTEM32\DRIVERS\DISCACHE.SYS [9819EEE8B5EA3784EC4AF3B137A5244C][1 73280 ]C:\WINDOWS\SYSTEM32\DRIVERS\DISK.SYS [9B19F34400D24DF84C858A421C205754][1 5632 ]C:\WINDOWS\SYSTEM32\DRIVERS\DRMKAUD.SYS [87CE5C8965E101CCCED1F4675557E868][1 985536 ]C:\WINDOWS\SYSTEM32\DRIVERS\DXGKRNL.SYS [0E5DA5369A0FCAEA12456DD852545184][1 530496 ]C:\WINDOWS\SYSTEM32\DRIVERS\ELXSTOR.SYS [34A3C54752046E79A126E15C51DB409B][1 9728 ]C:\WINDOWS\SYSTEM32\DRIVERS\ERRDEV.SYS [DC5D737F51BE844D8C82C695EB17372F][1 3286016 ]C:\WINDOWS\SYSTEM32\DRIVERS\EVBDA.SYS [D765D19CD8EF61F650C384F62FAC00AB][1 29696 ]C:\WINDOWS\SYSTEM32\DRIVERS\FDC.SYS [655661BE46B5F5F3FD454E2C3095B930][1 70224 ]C:\WINDOWS\SYSTEM32\DRIVERS\FILEINFO.SYS [5F671AB5BC87EEA04EC38A6CD5962A47][1 34304 ]C:\WINDOWS\SYSTEM32\DRIVERS\FILETRACE.SYS [C172A0F53008EAEB8EA33FE10E177AF5][1 24576 ]C:\WINDOWS\SYSTEM32\DRIVERS\FLPYDISK.SYS [DA6B67270FD9DB3697B20FCE94950741][1 289664 ]C:\WINDOWS\SYSTEM32\DRIVERS\FLTMGR.SYS [D43703496149971890703B4B1B723EAC][1 55376 ]C:\WINDOWS\SYSTEM32\DRIVERS\FSDEPENDS.SYS [8F6322049018354F45F05A2FD2D4E5E0][1 223752 ]C:\WINDOWS\SYSTEM32\DRIVERS\FVEVOL.SYS

Page 100: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[8C778D335C9D272CFD3298AB02ABE3B6][1 65088 ]C:\WINDOWS\SYSTEM32\DRIVERS\GAGP30KX.SYS [BDDBCFF870442B3C24C158CD53079132][1 54464 ]C:\WINDOWS\SYSTEM32\DRIVERS\HCMON.SYS [F2523EF6460FC42405B12248338AB2F0][1 31232 ]C:\WINDOWS\SYSTEM32\DRIVERS\HCW85CIR.SYS [97BFED39B6B79EB12CDDBFEED51F56BB][1 122368 ]C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDBUS.SYS [975761C778E33CD22498059B91E7373A][1 350208 ]C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDIO.SYS [A6518DCC42F7A6E999BB3BEA8FD87567][1 56344 ]C:\WINDOWS\SYSTEM32\DRIVERS\HECIX64.SYS [78E86380454A7B10A5EB255DC44A355F][1 26624 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDBATT.SYS [7FD2A313F7AFE5C4DAB14798C48DD104][1 100864 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDBTH.SYS [0A77D29F311B88CFAE3B13F9C1A73825][1 46592 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDIR.SYS [9592090A7E2B61CD582B612B6DF70536][1 30208 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS [39D2ABCD392F3D8A6DCE7B60AE7B8EFC][1 78720 ]C:\WINDOWS\SYSTEM32\DRIVERS\HPSAMD.SYS [0EA7DE1ACB728DD5A369FD742D6EEE28][1 753664 ]C:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS [A5462BD6884960C9DC85ED49D34FF392][1 14720 ]C:\WINDOWS\SYSTEM32\DRIVERS\HWPOLICY.SYS [FA55C73D4AFFA7EE23AC4BE53B4592D3][1 105472 ]C:\WINDOWS\SYSTEM32\DRIVERS\I8042PRT.SYS [AAAF44DB3BD0B9D1FB6969B23ECC8366][1 410496 ]C:\WINDOWS\SYSTEM32\DRIVERS\IASTORV.SYS [ -2][0 -1 ]C:\WINDOWS\SYSTEM32\DRIVERS\IBTFLTCOEX.SYS [3F2013A2880FE503B1B3BC8212764923][1 180648 0381927D15B9326062C304EE7147F2111B885C49 ]C:\WINDOWS\SYSTEM32\DRIVERS\IDMWFP.SYS [8C44E6B688790E2AD3846C97661C54F1][1 5363200 ]C:\WINDOWS\SYSTEM32\DRIVERS\IGDKMD64.SYS [5C18831C61933628F5BB0EA2675B9D21][1 44112 ]C:\WINDOWS\SYSTEM32\DRIVERS\IIRSP.SYS [F00F20E70C6EC3AA366910083A0518AA][1 16960 ]C:\WINDOWS\SYSTEM32\DRIVERS\INTELIDE.SYS [ADA036632C664CAA754079041CF1F8C1][1 62464 ]C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS [C9F0E1BD74365A8771590E9008D22AB6][1 82944 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPFLTDRV.SYS [0FC1AEA580957AA8817B8F305D18CA3A][1 78848 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPMIDRV.SYS [AF9B39A7E7B6CAA203B3862582E9F2D0][1 116224 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPNAT.SYS [3ABF5E7213EB28966D55D58B515D5CE9][1 17920 ]C:\WINDOWS\SYSTEM32\DRIVERS\IRENUM.SYS [2F7B28DC3E1183E5EB418DF55C204F38][1 20544 ]C:\WINDOWS\SYSTEM32\DRIVERS\ISAPNP.SYS [BC02336F1CBA7DCC7D1213BB588A68A5][1 50768 ]C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS [0705EFF5B42A9DB58548EEC3B26BB484][1 33280 ]C:\WINDOWS\SYSTEM32\DRIVERS\KBDHID.SYS [C60C6B9A2E50B0404F6789C62B428C03][1 95680 22E6E87C39F8C731968F2A320A34A27B686CE656 ]C:\WINDOWS\SYSTEM32\DRIVERS\KSECDD.SYS [78D152A9FD5747FF6AA89C79F0346F62][1 155072 581AD5EF115A29D67A8D37506ECA76FC11573A74 ]C:\WINDOWS\SYSTEM32\DRIVERS\KSECPKG.SYS

Page 101: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[6869281E78CB31A43E969F06B57347C4][1 20992 ]C:\WINDOWS\SYSTEM32\DRIVERS\KSTHUNK.SYS [1538831CF8AD2979A04C423779465827][1 60928 ]C:\WINDOWS\SYSTEM32\DRIVERS\LLTDIO.SYS [1A93E54EB0ECE102495A51266DCDB6A6][1 114752 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_FC.SYS [1047184A9FDC8BDBFF857175875EE810][1 106560 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS.SYS [30F5C0DE1EE8B5BC9306C1F0E4A75F93][1 65600 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS2.SYS [0504EACAFF0D3C8AED161C4B0D369D4A][1 115776 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SCSI.SYS [43D0F98E1D56CCDDB0D5254CFF7B356E][1 113152 ]C:\WINDOWS\SYSTEM32\DRIVERS\LUAFV.SYS [A55805F747C6EDB6A9080D7C633BD0F4][1 35392 ]C:\WINDOWS\SYSTEM32\DRIVERS\MEGASAS.SYS [BAF74CE0072480C3B6B7C13B2A94D6B3][1 284736 ]C:\WINDOWS\SYSTEM32\DRIVERS\MEGASR.SYS [800BA92F7010378B09F9ED9270F07137][1 40448 ]C:\WINDOWS\SYSTEM32\DRIVERS\MODEM.SYS [B03D591DC7DA45ECE20B3B467E6AADAA][1 30208 ]C:\WINDOWS\SYSTEM32\DRIVERS\MONITOR.SYS [7D27EA49F3C1F687D357E77A470AEA99][1 49216 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS [D3BF052C40B0C4166D9FD86A4288C1E6][1 31232 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS [32E7A3D591D671A6DF2DB515A5CBE0FA][1 94592 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUNTMGR.SYS [FBA4CDA6B3B00D7A116DCC2B5C7E9790][1 274696 F6FD1BCFAF7F442E6A259323090D03E86FB89D60 ]C:\WINDOWS\SYSTEM32\DRIVERS\MPFILTER.SYS [A44B420D30BD56E145D6A2BC8768EC58][1 155008 ]C:\WINDOWS\SYSTEM32\DRIVERS\MPIO.SYS [6C38C9E45AE0EA2FA5E551F2ED5E978F][1 77312 ]C:\WINDOWS\SYSTEM32\DRIVERS\MPSDRV.SYS [AE3334958D8F631FF14A0AEB3D7EFB3A][1 141312 B28413986C97338D19EA5C0BD3C498DFCB2B8DC1 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS [A5D9106A73DC88564C825D317CAC68AC][1 158208 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS [D711B3C1D5F42C0C2415687BE09FC163][1 288768 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB10.SYS [9423E9D355C8D303E76B8CFBD8A5C30C][1 128000 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB20.SYS [C25F0BAFA182CBCA2DD3C851C2E75796][1 31104 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSAHCI.SYS [DB801A638D011B9633829EB6F663C900][1 140672 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSDSM.SYS [F9D215A46A8B9753F61767FA72A20326][1 8192 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSHIDKMDF.SYS [D916874BBD4F8B07BFB7FA9B3CCAE29D][1 15424 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSISADRV.SYS [96BB922A0981BC7432C8CF52B5410FE6][1 274880 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSISCSI.SYS [49CCF2C4FEA34FFAD8B1B59D49439366][1 11136 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSKSSRV.SYS [BDD71ACE35A232104DDD349EE70E1AB3][1 7168 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSPCLOCK.SYS [4ED981241DB27C3383D72092B618A1D0][1 6784 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSPQM.SYS [0EED230E37515A0EAEE3C2E1BC97B288][1 32320 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS

Page 102: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[2E66F9ECB30B4221A318C92AC2250779][1 8064 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSTEE.SYS [7EA404308934E675BFFDE8EDF0757BCD][1 15360 ]C:\WINDOWS\SYSTEM32\DRIVERS\MTCONFIG.SYS [F9A18612FD3526FE473C1BDA678D61C8][1 60496 ]C:\WINDOWS\SYSTEM32\DRIVERS\MUP.SYS [760E38053BF56E501D562B70AD796B88][1 950128 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDIS.SYS [9F9A1F53AAD7DA4D6FEF5BB73AB811AC][1 35328 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISCAP.SYS [30639C932D9FEF22B31268FE25A1B6E5][1 24064 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS [136185F9FB2CC61E573E676AA5402356][1 56832 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS [53F7305169863F0A2BDDC49E116C2E11][1 164352 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS [86743D9F5D2B1048062B14B1D84501C4][1 44544 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS [09594D1089C523423B32A4229263F068][1 261632 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS [F0EAD8863514E25E62D008C0D752A79F][1 11523584 D089559782C6CEB210CA5C9BDC9E6E6848A7E7DC ]C:\WINDOWS\SYSTEM32\DRIVERS\NETWSW01.SYS [77889813BE4D166CDAB78DDBA990DA92][1 51264 ]C:\WINDOWS\SYSTEM32\DRIVERS\NFRD960.SYS [E10B84385C3FEEF4BDE8E6A980535522][1 124560 0A1909B4DD43C69FFA478B7D7EC08D20339B7631 ]C:\WINDOWS\SYSTEM32\DRIVERS\NISDRVWFP.SYS [E7F5AE18AF4168178A642A9247C63001][1 24576 ]C:\WINDOWS\SYSTEM32\DRIVERS\NSIPROXY.SYS [D584ABB6A308933A5F72B46C9E5A783F][1 95744 ]C:\WINDOWS\SYSTEM32\DRIVERS\NUSB3HUB.SYS [345B9C04E2036DA4346E3249A5BDFD06][1 212992 ]C:\WINDOWS\SYSTEM32\DRIVERS\NUSB3XHC.SYS [270D7CD42D6E3979F6DD0146650F0E05][1 122960 ]C:\WINDOWS\SYSTEM32\DRIVERS\NV_AGP.SYS [7DCF1DA29EC1B9E8CE1C11CE7C7B6419][1 299848 E0D8A31DA37AD14F263D9E1D53BB890217D8CADE ]C:\WINDOWS\SYSTEM32\DRIVERS\NVKFLT.SYS [3B99271224C43ADAB5A7F8D4B574AE3F][1 10284872 412D24A191B259B35666F19B672895BC0EF55FE8 ]C:\WINDOWS\SYSTEM32\DRIVERS\NVLDDMKM.SYS [6DBDE7A7C81F05C20C82291401627503][1 31376 8BC197A80267B6995D99168F925378F34043F384 ]C:\WINDOWS\SYSTEM32\DRIVERS\NVPCIFLT.SYS [0A92CB65770442ED0DC44834632F66AD][1 148352 ]C:\WINDOWS\SYSTEM32\DRIVERS\NVRAID.SYS [DAB0E87525C10052BF65F06152F37E4A][1 166272 ]C:\WINDOWS\SYSTEM32\DRIVERS\NVSTOR.SYS [DBFE7B2DF103F74AE51840B3C5F25FE9][1 38032 E5BF40AC00E618C19886F6FA411E9600DD59501A ]C:\WINDOWS\SYSTEM32\DRIVERS\NVVAD64V.SYS [1EA3749C4114DB3E3161156FFFFA6B33][1 318976 ]C:\WINDOWS\SYSTEM32\DRIVERS\NWIFI.SYS [3589478E4B22CE21B41FA1BFC0B8B8A0][1 72832 ]C:\WINDOWS\SYSTEM32\DRIVERS\OHCI1394.SYS [0557CF5A2556BD58E26384169D72438D][1 131584 ]C:\WINDOWS\SYSTEM32\DRIVERS\PACER.SYS [0086431C29C35BE1DBC43F52CC273887][1 97280 ]C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS [6DDCF3F801EC15FE698F6A215CF30A1F][1 35816 ]C:\WINDOWS\SYSTEM32\DRIVERS\PARTIZAN.SYS [E9766131EEADE40A27DC27D2D68FBA9C][1 75120 ]C:\WINDOWS\SYSTEM32\DRIVERS\PARTMGR.SYS [94575C0571D1462A0F70BDE6BD6EE6B3][1 184704 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCI.SYS

Page 103: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[B5B8B5EF2E5CB34DF8DCF8831E3534FA][1 12352 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDE.SYS [B2E81D4E87CE48589F98CB8C05B01F2F][1 220752 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCMCIA.SYS [D6B9C2E1A11A3A4B26A182FFEF18F603][1 50768 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCW.SYS [68769C3356B3BE5D1C732C97B9A80D6E][1 651264 ]C:\WINDOWS\SYSTEM32\DRIVERS\PEAUTH.SYS [0D922E23C041EFB1C3FAC2A6F943C9BF][1 60416 ]C:\WINDOWS\SYSTEM32\DRIVERS\PROCESSR.SYS [0928BD20273625622722FE1DE5BBDE57][1 29288 ]C:\WINDOWS\SYSTEM32\DRIVERS\QICFLT.SYS [A53A15A11EBFD21077463EE2C7AFEEF0][1 1524816 ]C:\WINDOWS\SYSTEM32\DRIVERS\QL2300.SYS [4F6D12B51DE1AAEFF7DC58C4D75423C8][1 128592 ]C:\WINDOWS\SYSTEM32\DRIVERS\QL40XX.SYS [76707BB36430888D9CE9D705398ADB6C][1 46592 ]C:\WINDOWS\SYSTEM32\DRIVERS\QWAVEDRV.SYS [5A0DA8AD5762FA2D91678A8A01311704][1 14848 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS [471815800AE33E6F1C32FB1B97C490CA][1 129536 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS [855C9B1CD4756C5E9A2AA58A15F58C25][1 92672 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS [F92A2C41117A11A00BE01CA01A7FCDE9][1 111104 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS [E8B1E447B008D07FF47D016C2B0EEECB][1 83968 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASSSTP.SYS [77F665941019A1594D887A74F301FA2F][1 309248 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS [302DA2A0539F2CF54D7C6CC30C1F2D8D][1 24064 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPBUS.SYS [CEA6CC257FC9B7715F1C2B4849286D24][1 7680 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPCDD.SYS [BB5971A4F00659529A5C44831AF22365][1 7680 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPENCDD.SYS [216F3FA57533D98E1F74DED70113177A][1 8192 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPREFMP.SYS [313F68E1A3E6345A4F47A36B07062F34][1 19456 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPVIDEOMINIPORT.SYS [34ED295FA0121C241BFEF24764FC4520][1 213888 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDYBOOST.SYS [3DD798846E2C28102B922C56E71B7932][1 158720 ]C:\WINDOWS\SYSTEM32\DRIVERS\RFCOMM.SYS [DDC86E4F8E7456261E637E3552E804FF][1 76800 ]C:\WINDOWS\SYSTEM32\DRIVERS\RSPNDR.SYS [EE082E06A82FF630351D1E0EBBD3D8D0][1 539240 ]C:\WINDOWS\SYSTEM32\DRIVERS\RT64WIN7.SYS [8FED6428FDE53D7F4C105095F22524BE][1 2748520 ]C:\WINDOWS\SYSTEM32\DRIVERS\RTKVHD64.SYS [AC03AF3329579FFFB455AA2DAABBE22B][1 103808 ]C:\WINDOWS\SYSTEM32\DRIVERS\SBP2PORT.SYS [253F38D0D7074C02FF8DEB9836C97D2B][1 29696 ]C:\WINDOWS\SYSTEM32\DRIVERS\SCFILTER.SYS [CB624C0035412AF0DEBEC78C41F5CA1B][1 23552 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS [C1D8E28B2C2ADFAEC4BA89E9FDA69BD6][1 94208 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERIAL.SYS [1C545A7D0691CC4A027396535691C3E3][1 26624 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERMOUSE.SYS

Page 104: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[A554811BCD09279536440C964AE35BBF][1 14336 ]C:\WINDOWS\SYSTEM32\DRIVERS\SFFDISK.SYS [FF414F0BAEFEBA59BC6C04B3DB0B87BF][1 13824 ]C:\WINDOWS\SYSTEM32\DRIVERS\SFFP_MMC.SYS [DD85B78243A19B59F0637DCF284DA63C][1 14336 ]C:\WINDOWS\SYSTEM32\DRIVERS\SFFP_SD.SYS [A9D601643A1647211A1EE2EC4E433FF4][1 16896 ]C:\WINDOWS\SYSTEM32\DRIVERS\SFLOPPY.SYS [843CAF1E5FDE1FFD5FF768F23A51E2E1][1 43584 ]C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID2.SYS [6A6C106D42E9FFFF8B9FCB4F754F6DA4][1 80464 ]C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID4.SYS [548260A7B8654E024DC30BF8A7C5BAA4][1 93184 ]C:\WINDOWS\SYSTEM32\DRIVERS\SMB.SYS [441FBA48BFF01FDB9D5969EBC1838F0B][1 467456 ]C:\WINDOWS\SYSTEM32\DRIVERS\SRV.SYS [B4ADEBBF5E3677CCE9651E0F01F7CC28][1 410112 ]C:\WINDOWS\SYSTEM32\DRIVERS\SRV2.SYS [27E461F0BE5BFF5FC737328F749538C3][1 168448 ]C:\WINDOWS\SYSTEM32\DRIVERS\SRVNET.SYS [F3817967ED533D08327DC73BC4D5542A][1 24656 ]C:\WINDOWS\SYSTEM32\DRIVERS\STEXSTOR.SYS [D01EC09B6711A5F8E7E6564A4D0FBC90][1 12496 ]C:\WINDOWS\SYSTEM32\DRIVERS\SWENUM.SYS [B0C7D4DCF4800DF2F2145B500D0161E8][1 1404464 ]C:\WINDOWS\SYSTEM32\DRIVERS\SYNTP.SYS [04ADD18EE5CC9FBEDAEC1DD1CD0CB45E][1 1903552 ]C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS [1B16D0BD9841794A6E0CDE0CEF744ABC][1 45568 ]C:\WINDOWS\SYSTEM32\DRIVERS\TCPIPREG.SYS [3371D21011695B16333A3934340C4E7C][1 15872 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDPIPE.SYS [51C5ECEB1CDEE2468A1748BE550CFBC8][1 23552 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDTCP.SYS [70988118145F5F10EF24720B97F35F65][1 119296 A28F8F08B5255C80381AEDA7F1E2E1DEFEC1DAB7 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDX.SYS [561E7E1F06895D78DE991E01DD0FB6E5][1 63360 ]C:\WINDOWS\SYSTEM32\DRIVERS\TERMDD.SYS [E232A3B43A894BB327FC161529BD9ED1][1 39936 ]C:\WINDOWS\SYSTEM32\DRIVERS\TSSECSRV.SYS [E9981ECE8D894CEF7038FD1D040EB426][1 56832 ]C:\WINDOWS\SYSTEM32\DRIVERS\TSUSBFLT.SYS [3566A8DAAFA27AF944F5D705EAA64894][1 125440 ]C:\WINDOWS\SYSTEM32\DRIVERS\TUNNEL.SYS [B4DD609BD7E282BFC683CEC7EAAAAD67][1 64080 ]C:\WINDOWS\SYSTEM32\DRIVERS\UAGP35.SYS [FF4232A1A64012BAA1FD97C7B67DF593][1 328192 ]C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS [4BFE1BC28391222894CBF1E7D0E42320][1 64592 ]C:\WINDOWS\SYSTEM32\DRIVERS\ULIAGPKX.SYS [DC54A574663A895C8763AF0FA1FF7561][1 48640 ]C:\WINDOWS\SYSTEM32\DRIVERS\UMBUS.SYS [B2E8E8CB557B156DA5493BBDDCC1474D][1 9728 ]C:\WINDOWS\SYSTEM32\DRIVERS\UMPASS.SYS [24E8F8C3BDF9CEFC2135F9A3C399F37D][1 12800 9A2A42B8FE27EEF1B0922D99A4E2EC1F01DE941F ]C:\WINDOWS\SYSTEM32\DRIVERS\UnHackMeDrv.sys [DCA68B0943D6FA415F0C56C92158A83A][1 99840 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBCCGP.SYS [80B0F7D5CCF86CEB5D402EAAF61FEC31][1 100864 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBCIR.SYS

Page 105: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[18A85013A3E0F7E1755365D287443965][1 53248 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS [8D1196CFBB223621F2C67D45710F25BA][1 343040 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS [765A92D428A8DB88B960DA5A8D6089DC][1 25600 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBOHCI.SYS [73188F58FB384E75C4063D29413CEE3D][1 25088 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBPRINT.SYS [FED648B01349A3C8395A5169DB5FB7D6][1 91648 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBSTOR.SYS [DD253AFC3BC6CBA412342DE60C3647F3][1 30720 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBUHCI.SYS [1F775DA4CF1A3A1834207E975A72E9D7][1 185344 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBVIDEO.SYS [C5C876CCFC083FF3B128F933823E87BD][1 36432 ]C:\WINDOWS\SYSTEM32\DRIVERS\VDRVROOT.SYS [53E92A310193CB3C03BEA963DE7D9CFC][1 29184 ]C:\WINDOWS\SYSTEM32\DRIVERS\VGA.SYS [DA4DA3F5E02943C2DC8C6ED875DE68DD][1 29184 ]C:\WINDOWS\SYSTEM32\DRIVERS\VGAPNP.SYS [2CE2DF28C83AEAF30084E1B1EB253CBB][1 215936 ]C:\WINDOWS\SYSTEM32\DRIVERS\VHDMP.SYS [E5689D93FFE4E5D66C0178761240DD54][1 17488 ]C:\WINDOWS\SYSTEM32\DRIVERS\VIAIDE.SYS [BE8E5E5D53ACF71D4E8E686B68C99B04][1 85584 ]C:\WINDOWS\SYSTEM32\DRIVERS\VMCI.SYS [18AA5F4A3B1204AD00045EE5AD39BCDB][1 20560 ]C:\WINDOWS\SYSTEM32\DRIVERS\VMNETADAPTER.SYS [04CD4347CD9E8C40F78AD51F7FF426D0][1 46160 ]C:\WINDOWS\SYSTEM32\DRIVERS\VMNETBRIDGE.SYS [50160AC31D1820C10BEE0D26707298E0][1 31448 ]C:\WINDOWS\SYSTEM32\DRIVERS\VMNETUSERIF.SYS [11CAB5305913D3510854A2BD6D5ED1FB][1 64728 ]C:\WINDOWS\SYSTEM32\DRIVERS\VMX86.SYS [D2AAFD421940F640B407AEFAAEBD91B0][1 71552 ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGR.SYS [A255814907C89BE58B79EF2F189B843B][1 363392 ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGRX.SYS [0D08D2F3B3FF84E433346669B5E0F639][1 295808 ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLSNAP.SYS [5B3644AB5E8E210F60869EA6895DE822][1 52080 B253C785DFAE553285C871F09038880428D19A30 ]C:\WINDOWS\SYSTEM32\DRIVERS\VPNVA64-6.SYS [5E2016EA6EBACA03C04FEAC5F330D997][1 161872 ]C:\WINDOWS\SYSTEM32\DRIVERS\VSMRAID.SYS [CB4D2E3C5E8BFA3CF6AFFF6DDC6CC70D][1 73296 ]C:\WINDOWS\SYSTEM32\DRIVERS\VSOCK.SYS [E7CE8988B98202A5CF429CA358D26CC5][1 33872 ]C:\WINDOWS\SYSTEM32\DRIVERS\vstor2-mntapi20-shared.sys [36D4720B72B5C5D9CB2B9C29E9DF67A1][1 24576 ]C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIBUS.SYS [6A3D66263414FF0D6FA754C646612F3F][1 59904 ]C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIFLT.SYS [6A638FC4BFDDC4D9B186C28C91BD1A01][1 17920 ]C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIMP.SYS [4E9440F4F152A7B944CB1663D3935A3E][1 27776 ]C:\WINDOWS\SYSTEM32\DRIVERS\WACOMPEN.SYS [356AFD78A6ED4457169241AC3965230C][1 88576 ]C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS [72889E16FF12BA0F235467D6091B17DC][1 21056 ]C:\WINDOWS\SYSTEM32\DRIVERS\WD.SYS

Page 106: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[E2C933EDBC389386EBE6D2BA953F43D8][1 785624 ]C:\WINDOWS\SYSTEM32\DRIVERS\WDF01000.SYS [611B23304BF067451A9FDEE01FBDD725][1 12800 ]C:\WINDOWS\SYSTEM32\DRIVERS\WFPLWF.SYS [05ECAEC3E4529A7153B3136CEB49F0EC][1 22096 ]C:\WINDOWS\SYSTEM32\DRIVERS\WIMMOUNT.SYS [F6FF8944478594D0E414D3F048F0D778][1 14336 ]C:\WINDOWS\SYSTEM32\DRIVERS\WMIACPI.SYS [6BCC1D7D2FD2453957C5479A32364E52][1 21504 ]C:\WINDOWS\SYSTEM32\DRIVERS\WS2IFSL.SYS [AB886378EEB55C6C75B4F2D14B6C869F][1 87040 ]C:\WINDOWS\SYSTEM32\DRIVERS\WUDFPF.SYS [DDA4CAF29D8C0A297F886BFE561E6659][1 198656 ]C:\WINDOWS\SYSTEM32\DRIVERS\WUDFRD.SYS [E2DDA8726DA9CB5B2C4000C9018A9633][1 111104 ]C:\WINDOWS\SYSTEM32\EAPSVC.DLL [024352FEEC9042260BB4CFB4D79A206B][1 203264 ]C:\WINDOWS\SYSTEM32\EHSTORSHELL.DLL [4166F82BE4D24938977DD1746BE9B8A0][1 402944 ]C:\WINDOWS\SYSTEM32\ES.DLL [0438CAB2E03F4FB61455A7956026FE86][1 16384 ]C:\WINDOWS\SYSTEM32\FDPHOST.DLL [802496CB59A30349F9A6DD22D6947644][1 34816 ]C:\WINDOWS\SYSTEM32\FDRESPUB.DLL [C4C183E6551084039EC862DA1C945E3D][1 1175552 ]C:\WINDOWS\SYSTEM32\FNTCACHE.DLL [19E41CCCEE697CC9465396B370929792][1 41984 ]C:\WINDOWS\SYSTEM32\FXSMON.DLL [DBEFD454F8318A0EF691FDD2EAAB44EB][1 689152 ]C:\WINDOWS\SYSTEM32\FXSSVC.EXE [277BBC7E1AA1EE957F573A10ECA7EF3A][1 777728 ]C:\WINDOWS\SYSTEM32\GPSVC.DLL [BD9EB3958F213F96B97B1D897DEE006D][1 38912 ]C:\WINDOWS\SYSTEM32\HIDSERV.DLL [28FC280487F0BAAE5E8119257C4EEF8C][1 399832 ]C:\WINDOWS\SYSTEM32\HKCMD.EXE [01A314677CC80041A63ED109B56A76B0][1 114688 D3A76E0CF5DAD19B81683454C60229376AFB2C76 ]C:\WINDOWS\SYSTEM32\IEETWCOLLECTOR.EXE [F29BEA821C753E4F00177690F70CDC13][1 442328 ]C:\WINDOWS\SYSTEM32\IGFXPERS.EXE [28062B17191C9450BF6C6C3EF8C7EB27][1 171992 ]C:\WINDOWS\SYSTEM32\IGFXTRAY.EXE [344789398EC3EE5A4E00C52B31847946][1 859648 ]C:\WINDOWS\SYSTEM32\IKEEXT.DLL [DA6C4B5FEEEA4DC7162B5D0C055EB967][1 22016 ]C:\WINDOWS\SYSTEM32\IMAADP32.ACM [142E90CF1A4C5B6E7505810E38B07B9F][1 976896 ]C:\WINDOWS\SYSTEM32\INETCOMM.DLL [098A91C54546A3B878DAD6A7E90A455B][1 101888 ]C:\WINDOWS\SYSTEM32\IPBUSENUM.DLL [08C2957BB30058E663720C5606885653][1 569344 ]C:\WINDOWS\SYSTEM32\IPHLPSVC.DLL [B95F6501A2F8B2E78C697FEC401970CE][1 359424 ]C:\WINDOWS\SYSTEM32\IPNATHLP.DLL [4F15D75ADF6156BF56ECED6D4A55C389][1 501248 ]C:\WINDOWS\SYSTEM32\IPSECSVC.DLL [808E98FF49B155C522E6400953177B08][1 156672 ]C:\WINDOWS\SYSTEM32\ISCSIEXE.DLL [06DC527364A8CF48E472ECF2BA3F8403][1 170496 ]C:\WINDOWS\SYSTEM32\ITSS.DLL

Page 107: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[5CE9241C030C004FF92037DF8F7401B0][1 54272 ]C:\WINDOWS\SYSTEM32\IYUV_32.DLL [C1F9E139B8AE80803CE44DC0377CA342][1 728064 116A5EFB65BCF907B47AF2BAD014B5C9DB450419 ]C:\WINDOWS\SYSTEM32\KERBEROS.DLL [387E72E739E15E3D37907A86D9FF98E2][1 90624 ]C:\WINDOWS\SYSTEM32\KMSVC.DLL [EFDFB3DD38A4376F93E7985173813ABD][1 232448 ]C:\WINDOWS\SYSTEM32\LISTSVC.DLL [94AA2DFFF94DF789AAA0081333A6CADA][1 253184 ]C:\WINDOWS\SYSTEM32\LIVESSP.DLL [C1185803384AB3FEED115F79F109427F][1 300032 ]C:\WINDOWS\SYSTEM32\LLTDSVC.DLL [F993A32249B66C9D622EA5592A8B76B8][1 23552 ]C:\WINDOWS\SYSTEM32\LMHSVC.DLL [45CFBFA8EDC3DF4E2B7FB0D0260FE051][1 956928 ]C:\WINDOWS\SYSTEM32\LOCALSPL.DLL [D5BA242D4CF8E384DB90E6A8ED850B8C][1 10240 ]C:\WINDOWS\SYSTEM32\LOCATOR.EXE [E0105F3B5B1C4B0F5B3D788A13504EC6][1 31232 C798A7BBA8EEE24FF42089BD2DAD147412449D25 ]C:\WINDOWS\SYSTEM32\LSASS.EXE [0BE09CD858ABF9DF6ED259D57A1A1663][1 84992 ]C:\WINDOWS\SYSTEM32\MCX2SVC.DLL [CA2A0750ED830678997695FF61B04C30][1 20480 ]C:\WINDOWS\SYSTEM32\MIDIMAP.DLL [E40E80D0304A73E8D269F7141D77250B][1 67584 ]C:\WINDOWS\SYSTEM32\MMCSS.DLL [254FB7A22D74E5511C73A3F6D802F192][1 97792 ]C:\WINDOWS\SYSTEM32\MPRDIM.DLL [54FFC9C8898113ACE189D4AA7199D2C1][1 828416 ]C:\WINDOWS\SYSTEM32\MPSSVC.DLL [1B7C3A37362C7B2890168C5FC61C8D9B][1 25600 ]C:\WINDOWS\SYSTEM32\MSACM32.DRV [329FEB3452982A377726DEDAFE9BBDF0][1 24064 ]C:\WINDOWS\SYSTEM32\MSADP32.ACM [A08C010D859F8EB42BDD7E1D55B8CA27][1 444752 ]C:\WINDOWS\SYSTEM32\MSCOREE.DLL [DE0ECE52236CFA3ED2DBFC03F28253A8][1 141824 ]C:\WINDOWS\SYSTEM32\MSDTC.EXE [6AB66E16AA859232F64DEB66887A8C9C][1 368640 ]C:\WINDOWS\SYSTEM32\MSDTCKRM.DLL [1C81E1BEA4847F406BBDB74D19721CE6][1 14848 ]C:\WINDOWS\SYSTEM32\MSG711.ACM [E5B9A2FA94D21C44DA2B898DC326B0C2][1 29184 ]C:\WINDOWS\SYSTEM32\MSGSM32.ACM [A190DA6546501CB4146BBCC0B6A3F48B][1 128000 ]C:\WINDOWS\SYSTEM32\MSIEXEC.EXE [45989C268EC2CC9EEA80030AF96CDA5A][1 16384 ]C:\WINDOWS\SYSTEM32\MSRLE32.DLL [6A06BCED1DF1CFE8A32E7D10ABAA7188][1 314880 BA7ABBC0927DB1F99BCD67FF10A73DA228CCF209 ]C:\WINDOWS\SYSTEM32\MSV1_0.DLL [69A4347A8EAD86185EFF2F75755176E6][1 38912 ]C:\WINDOWS\SYSTEM32\MSVIDC32.DLL [B94D3DACCF5882B697A1C53D00BE643A][1 25600 ]C:\WINDOWS\SYSTEM32\MSYUV.DLL [847D3AE376C0817161A14A82C8922A9E][1 360448 ]C:\WINDOWS\SYSTEM32\NETMAN.DLL [5F28111C648F1E24F7DBC87CDEB091B8][1 459776 ]C:\WINDOWS\SYSTEM32\NETPROFM.DLL [8B301D474B478E9A92823BAB50A7BC49][1 303616 6864386DD2081E5C538D57129C3229FCFFAB3D9F ]C:\WINDOWS\SYSTEM32\NLASVC.DLL

Page 108: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[D54BFDF3E0C953F823B3D0BFE4732528][1 25600 ]C:\WINDOWS\SYSTEM32\NSISVC.DLL [037A719DAD50603202C978CD802623E4][1 509952 ]C:\WINDOWS\SYSTEM32\NTSHRUI.DLL [BE2C89FB061849265EE3C35DAFC59775][2 1514528 1165F972BDD667D05D6A2FAA26EA548C8661702C ]C:\WINDOWS\SYSTEM32\NVSPCAP64.DLL [97ADEBE576474D4CEC53F8E06590FFC8][1 935056 0328D1A92BB67DC006CBD9EB8B481E2F3114F8C1 ]C:\WINDOWS\SYSTEM32\NVVSVC.EXE [927463ECB02179F88E4B9A17568C63C3][1 438784 ]C:\WINDOWS\SYSTEM32\P2PSVC.DLL [3AEAA8B561E63452C655DC0584922257][1 186368 ]C:\WINDOWS\SYSTEM32\PCASVC.DLL [1306E6A1BF4D506CD687DF9F947270F2][1 241152 61F62B821B5D8786BAD3E6EE572168FBC0CC2CD3 ]C:\WINDOWS\SYSTEM32\PKU2U.DLL [C7CF6A6E137463219E1259E3F0F0DD6C][1 1389056 ]C:\WINDOWS\SYSTEM32\PLA.DLL [3EAC4455472CC2C97107B5291E0DCAFE][1 327168 ]C:\WINDOWS\SYSTEM32\PNRPSVC.DLL [B6A58491307B4CADA572583D863DC602][1 210432 B4DDE27EDCA58D9166CB79245477370F61BB069D ]C:\WINDOWS\SYSTEM32\PROFSVC.DLL [908ACB1F594274965A53926B10C81E89][1 187904 ]C:\WINDOWS\SYSTEM32\PROVSVC.DLL [582AC6D9873E31DFA28A4547270862DD][1 476160 ]C:\WINDOWS\SYSTEM32\QAGENTRT.DLL [1EA7969E3271CBC59E1730697DC74682][1 849920 ]C:\WINDOWS\SYSTEM32\QMGR.DLL [906191634E99AEA92C4816150BDA3732][1 242688 ]C:\WINDOWS\SYSTEM32\QWAVE.DLL [8F26510C5383B8DBE976DE1CD00FC8C7][1 99328 ]C:\WINDOWS\SYSTEM32\RASAUTO.DLL [EE867A0870FC9E4972BA9EAAD35651E2][1 344064 ]C:\WINDOWS\SYSTEM32\RASMANS.DLL [E4D94F24081440B5FC5AA556C7C62702][1 159232 ]C:\WINDOWS\SYSTEM32\REGSVC.DLL [E4DC58CF7B3EA515AE917FF0D402A7BB][1 67072 ]C:\WINDOWS\SYSTEM32\RPCEPMAP.DLL [5C627D1B1138676C0A7AB2C2C190D123][1 512000 ]C:\WINDOWS\SYSTEM32\RPCSS.DLL [9B7395789E3791A3B6D000FE6F8B131E][1 190976 ]C:\WINDOWS\SYSTEM32\SCARDSVR.DLL [ED78427259134C63ED69804D2132B86C][1 232960 ]C:\WINDOWS\SYSTEM32\SCECLI.DLL [DDACB408E607655EC64269706BFD504C][1 341504 AE77D9F7372B375CBAD46DCE975F1D19B9401657 ]C:\WINDOWS\SYSTEM32\SCHANNEL.DLL [262F6592C3299C005FD6BEC90FC4463A][1 1110016 ]C:\WINDOWS\SYSTEM32\SCHEDSVC.DLL [6EA4234DC55346E0709560FE7C2C1972][1 170496 ]C:\WINDOWS\SYSTEM32\SDRSVC.DLL [E0B340996A41C9A75DFA3B99BBA9C500][1 591872 ]C:\WINDOWS\SYSTEM32\SEARCHINDEXER.EXE [BC617A4E1B4FA8DF523A061739A0BD87][1 30720 ]C:\WINDOWS\SYSTEM32\SECLOGON.DLL [C32AB8FA018EF34C0F113BD501436D21][1 64512 ]C:\WINDOWS\SYSTEM32\SENS.DLL [0336CFFAFAAB87A11541F1CF1594B2B2][1 29184 ]C:\WINDOWS\SYSTEM32\SENSRSVC.DLL [0B6231BF38174A1628C4AC812CC75804][1 121856 ]C:\WINDOWS\SYSTEM32\SESSENV.DLL [AE57F6C7AB3ED244B5F14151C4EA0057][1 14175744 ]C:\WINDOWS\SYSTEM32\SHELL32.DLL

Page 109: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[AAF932B4011D14052955D4B212A4DA8D][1 370688 ]C:\WINDOWS\SYSTEM32\SHSVCS.DLL [6313F223E817CC09AA41811DAA7F541D][1 14336 ]C:\WINDOWS\SYSTEM32\SNMPTRAP.EXE [85DAA09A98C9286D4EA2BA8D0E644377][1 559104 ]C:\WINDOWS\SYSTEM32\SPOOLSV.EXE [E17E0188BB90FAE42D83E98707EFA59C][1 3524608 ]C:\WINDOWS\SYSTEM32\SPPSVC.EXE [93D7D61317F3D4BC4F4E9F8A96A7DE45][1 65536 ]C:\WINDOWS\SYSTEM32\SPPUINOTIFY.DLL [D9F42719019740BAA6D1C6D536CBDAA6][1 236032 ]C:\WINDOWS\SYSTEM32\SRVSVC.DLL [51B52FBD583CDE8AA9BA62B8B4298F33][1 193024 ]C:\WINDOWS\SYSTEM32\SSDPSRV.DLL [AB7AEBF58DAD8DAAB7A6C45E6A8885CB][1 75264 ]C:\WINDOWS\SYSTEM32\SSTPSVC.DLL [C78655BC80301D76ED4FEF1C1EA40A7D][1 27136 ]C:\WINDOWS\SYSTEM32\SVCHOST.EXE [E08E46FDD841B7184194011CA1955A0B][1 524288 ]C:\WINDOWS\SYSTEM32\SWPRV.DLL [A10B048B681C38E26CA90CD1BC123604][1 200192 ]C:\WINDOWS\SYSTEM32\SYNCUI.DLL [BF9CCC0BF39B418C8D0AE8B05CF95B7D][1 1743360 ]C:\WINDOWS\SYSTEM32\SYSMAIN.DLL [870726CDCC241A92785572628B89CC07][1 82432 ]C:\WINDOWS\SYSTEM32\SYSTEMPROPERTIESPERFORMANCE.EXE [E3C61FD7B7C2557E1F1B0B4CEC713585][1 92672 ]C:\WINDOWS\SYSTEM32\TABSVC.DLL [40F0849F65D13EE87B9A9AE3C1DD6823][1 316928 ]C:\WINDOWS\SYSTEM32\TAPISRV.DLL [1BE03AC720F4D302EA01D40F588162F6][1 65536 ]C:\WINDOWS\SYSTEM32\TBSSVC.DLL [32A3C8600AF124CBAAD845F13CFAE3CB][6 195072 ]C:\WINDOWS\SYSTEM32\TCPMON.DLL [008CD4EBFABCF78D0F19B3778492648C][1 683520 ]C:\WINDOWS\SYSTEM32\TERMSRV.DLL [F0344071948D1A1FA732231785A0664C][1 44544 ]C:\WINDOWS\SYSTEM32\THEMESERVICE.DLL [7E7AFD841694F6AC397E99D75CEAD49D][1 119808 ]C:\WINDOWS\SYSTEM32\TRKWKS.DLL [CEED624D1291081B1B7D921FBB9C61D9][1 14848 ]C:\WINDOWS\SYSTEM32\TSBYUV.DLL [8F33880F1863BE3925D3A0121FAC5E8F][1 86528 0465B3AE4EF9BF48725EB9892F078405C9D4DB52 ]C:\WINDOWS\SYSTEM32\TSPKG.DLL [3CBDEC8D06B9968ABA702EBA076364A1][1 40960 ]C:\WINDOWS\SYSTEM32\UI0DETECT.EXE [25FBDEF06C4D92815B353F6E792C8129][1 404480 ]C:\WINDOWS\SYSTEM32\UMPNPMGR.DLL [6BA9D927DDED70BD1A9CADED45F8B184][1 163840 ]C:\WINDOWS\SYSTEM32\UMPO.DLL [64B328D52DFC8CDA123093E3F6E4C37C][1 323584 ]C:\WINDOWS\SYSTEM32\UNREGMP2.EXE [D47EC6A8E81633DD18D2436B19BAF6DE][1 353792 ]C:\WINDOWS\SYSTEM32\UPNPHOST.DLL [DF72A9936D0C3F517083119648814B09][6 45056 ]C:\WINDOWS\SYSTEM32\USBMON.DLL [BAFE84E637BF7388C96EF48D4D3FDD53][1 30720 ]C:\WINDOWS\SYSTEM32\USERINIT.EXE [EDBB23CBCF2CDF727D64FF9B51A6070E][1 38912 ]C:\WINDOWS\SYSTEM32\UXSMS.DLL

Page 110: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[8D6B481601D01A456E75C3210F1830BE][1 533504 ]C:\WINDOWS\SYSTEM32\VDS.EXE [08E2C72275EEB2E74575D8176CC08EA6][1 437976 ]C:\WINDOWS\SYSTEM32\VMNAT.EXE [C04DA837FBC636DC88A2ACAEDB4E95F6][1 359128 ]C:\WINDOWS\SYSTEM32\VMNETDHCP.EXE [B60BA0BC31B0CB414593E169F6F21CC2][1 1600512 ]C:\WINDOWS\SYSTEM32\VSSVC.EXE [1C9D80CC3849B3788048078C26486E1A][1 381952 ]C:\WINDOWS\SYSTEM32\W32TIME.DLL [3CEC96DE223E49EAAE3651FCF8FAEA6C][1 1255736 ]C:\WINDOWS\SYSTEM32\WAT\WATADMINSVC.EXE [A3F5E8EC1316C3E2562B82694A251C9E][1 909312 ]C:\WINDOWS\SYSTEM32\WBEM\FASTPROX.DLL [38B84C94C5A8AF291ADFEA478AE54F93][1 203264 ]C:\WINDOWS\SYSTEM32\WBEM\WMIAPSRV.EXE [19B07E7E8915D701225DA41CB3877306][1 242688 ]C:\WINDOWS\SYSTEM32\WBEM\WMISVC.DLL [78F4E7F5C56CB9716238EB57DA4B6A75][1 1504256 ]C:\WINDOWS\SYSTEM32\WBENGINE.EXE [3AA101E8EDAB2DB4131333F4325C76A3][1 202240 ]C:\WINDOWS\SYSTEM32\WBIOSRVC.DLL [7368A2AFD46E5A4481D1DE9D14848EDD][1 367104 ]C:\WINDOWS\SYSTEM32\WCNCSVC.DLL [20F7441334B18CEE52027661DF4A6129][1 40960 ]C:\WINDOWS\SYSTEM32\WCSPLUGINSERVICE.DLL [C6F7473B55510F0B93961DA03D8E3B38][1 91136 A47F1ACF0F3674E75FEB3773D2D89E325233B062 ]C:\WINDOWS\SYSTEM32\WDI.DLL [5350A548BEC957978B7014CDFF091542][1 210944 6C77C629C2AD0C737D05785AC97B02B6E181E0DA ]C:\WINDOWS\SYSTEM32\WDIGEST.DLL [1473768973453DE50DC738C2955FC4DD][1 217088 ]C:\WINDOWS\SYSTEM32\WDMAUD.DRV [0EB0E5D22B1760F2DBCE632F2DD7A54D][1 259584 ]C:\WINDOWS\SYSTEM32\WEBCLNT.DLL [C749025A679C5103E575E3B48E092C43][1 237568 ]C:\WINDOWS\SYSTEM32\WECSVC.DLL [7E591867422DC788B9E5BD337A669A08][1 84480 ]C:\WINDOWS\SYSTEM32\WERCPLSUPPORT.DLL [6D137963730144698CBD10F202E9F251][1 76800 ]C:\WINDOWS\SYSTEM32\WERSVC.DLL [8DD52E8E6128F4B2DA92CE27402871C1][1 580096 ]C:\WINDOWS\SYSTEM32\WIASERVC.DLL [58F4493BF748A3A89689997B7BD00E95][1 444416 ]C:\WINDOWS\SYSTEM32\WINHTTP.DLL [851A1382EED3E3A7476DB004F4EE3E1A][1 118784 ]C:\WINDOWS\SYSTEM32\WKSSVC.DLL [4FADA86E62F18A1B2F42BA18AE24E6AA][1 886784 ]C:\WINDOWS\SYSTEM32\WLANSVC.DLL [96C6E7100D724C69FCF9E7BF590D1DCA][1 12288 ]C:\WINDOWS\SYSTEM32\WPCSVC.DLL [93221146D4EBBF314C29B23CD6CC391D][1 117248 ]C:\WINDOWS\SYSTEM32\WPDBUSENUM.DLL [045451FA238A75305CC26AC982472367][1 168960 ]C:\WINDOWS\SYSTEM32\WSCRIPT.EXE [E8B1FE6669397D1772D8196DF0E57A9E][1 97280 ]C:\WINDOWS\SYSTEM32\WSCSVC.DLL [A1D7E3ADCDB07DDB6F423862DCB1A52B][6 224768 ]C:\WINDOWS\SYSTEM32\WSDMON.DLL [D929ABD465A2DED963DA8B30946A8D5C][1 2020352 C9C780FCD8F2C892F4E200A28541E17ECE677B34 ]C:\WINDOWS\SYSTEM32\WSMSVC.DLL

Page 111: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[61FF576450CCC80564B850BC3FB6713A][1 2477536 ]C:\WINDOWS\SYSTEM32\WUAUENG.DLL [B20F051B03A966392364C83F009F7D17][1 84992 ]C:\WINDOWS\SYSTEM32\WUDFSVC.DLL [04F82965C09CBDF646B487E145060301][1 228864 ]C:\WINDOWS\SYSTEM32\WWANSVC.DLL [241A1900C52DCBA38B20A4F3671444E0][1 1036800 ]C:\WINDOWS\SYSWOW64\D3D8.DLL [1DE21EC4A2232FF4F5298ADCAE7B3690][1 82944 ]C:\WINDOWS\SYSWOW64\ICCVID.DLL [78A1A938D51D4F83A772123B93EE1612][1 12829184 76327F87DE085AEAC773DE5519C1AA15BAF68C25 ]C:\WINDOWS\SYSWOW64\IEFRAME.DLL [08F934092E0429BADF88E9F91DB0F61E][1 279000 ]C:\WINDOWS\SYSWOW64\INTELCPHECISVC.EXE [1C7F1C3EA5894995E6C563E9AE9F029F][1 64000 ]C:\WINDOWS\SYSWOW64\L3CODECA.ACM [080255CDCB878813B481B8C348D47D8E][1 267440 CDBD0CE61D2CD73F985C374A9C73CA803A6E8F7A ]C:\WINDOWS\SYSWOW64\MACROMED\FLASH\FLASHPLAYERUPDATESERVICE.EXE [61C74D794C14E9FC94D93F5F0F72A3F9][1 19740160 DF490D10B48BFA75D7BC7187C41FEDF0474AA358 ]C:\WINDOWS\SYSWOW64\MSHTML.DLL [59D16C3D5CC0D573256A01783ED5CCB4][1 2291712 ]C:\WINDOWS\SYSWOW64\MSVIDCTL.DLL [E94C583CDE2348950155F2AF2876F34D][1 231424 ]C:\WINDOWS\SYSWOW64\MSWSOCK.DLL [0B7E85364CB878E2AD531DB7B601A9E5][1 52224 ]C:\WINDOWS\SYSWOW64\NAPINSP.DLL [FE48346938C1CDDDF4E4097DB9B99764][1 52224 4B4B6B6082E719BF766F2B44B7B0B1C46B13634D ]C:\WINDOWS\SYSWOW64\NLAAPI.DLL [5C75272E819BD2F906623EF1C4C6D425][1 164752 DE086A7A4D45FD8A63E02F010D2975C6FDD8C4F4 ]C:\WINDOWS\SYSWOW64\NVINIT.DLL [703FFD301AB900B047337C5D40FD6F96][1 90112 ]C:\WINDOWS\SYSWOW64\OLEPRO32.DLL [E495E408C93141E8FC72DC0C6046DDFA][1 20992 ]C:\WINDOWS\SYSWOW64\PERFHOST.EXE [5CF640EDDB1E40A5AB1BB743BCDEC610][1 65024 ]C:\WINDOWS\SYSWOW64\PNRPNSP.DLL [8E8137569741D3693F88DDF94CC38C20][1 1307136 619A0B45AC8EFA2ED5B181CCF0557D65AC01A23D ]C:\WINDOWS\SYSWOW64\URLMON.DLL [341AF37351A69534645C8F98241ACDF6][1 63568 C9CE098387CA916CD64F3DBE2808546B9BAE2AC7 ]C:\WINDOWS\SYSWOW64\VSOCKLIB.DLL [5DF5D8CFD9B9573FA3B2C89D9061A240][1 20992 ]C:\WINDOWS\SYSWOW64\WINRNR.DLL [AC122407B29378FF9646F03404AC7C54][1 36352 ]C:\WINDOWS\SYSWOW64\WSHBTH.DLL [ -2][0 -1 ]SYSWOW64\DRIVERS\VSTOR2-MNTAPI20-SHARED.SYS===[MBR][MD5=004BC502E8A0AB7DDDB5C2C67E1CDFEE]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==

Page 112: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[PT] 0x42 Unknown, 63, 1985A 0x42 Unknown, 2048, 716800 0x42 Unknown, 718848, 716800000 0x42 Unknown, 717518848, 194666496===[VBR]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

Page 113: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

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=[SIGN] [E9DBFC3F84CB6FE4EAA266CD32A2CBEE] Microsoft Corporation [CC7FF380941AA4DE8069003DFEF673A5] Microsoft Corporation [BBEB25855C75F552C3FFFA1F32D1D2C7] Microsoft Corporation [EEBF68CB652502A6D6B16B03487E05EC] Microsoft Corporation [EDCACE34D98A36D8ECCE37221676C219] Cisco Systems, Inc. [FC5B75CA6A1DA31EDD4F8D53F5540B98] Adobe Systems, Incorporated [9153F2335BCDB87F41559CF066223BF9] Oracle America, Inc. [29629208BED94C3E70B0A6C2FAB61A3F] Microsoft Corporation [E527FAC0EC3AA363C09C2E0AD13BC882] Microsoft Corporation [4355CF8BD07B0E48C111FC3D2F36D313] Microsoft Corporation [41FAE6618768DC93D98DDAF3F8282D3E] VMware, Inc. [B9D6D7E6E5C4FCD8DD7F88EC9D563085] Google Inc [C1B577B2169900F4CF7190C39F085794] Google Inc [E1B44A75947137F4143308D566889837] Google Inc [A812AE8B0AD5A21812507FD98B71038E] Tonec Inc. [039320696D7D792E0A4E7883AC371B18] Tonec Inc. [E9C6EF9437ECB30911488F9313AD821A] Tonec Inc. [DA41FC2EA6E979D147258AB053E2D136] Oracle America, Inc. [7C15112AEB2A24A7B21FA7A534C083C5] Oracle America, Inc. [405251ED82D69E5893F1E7E923B7F38B] Microsoft Corporation [D2FA55F98AEC5D82D055062101145C20] Microsoft Corporation [E84E5E8888FDB6B3D908113D784A9920] Microsoft Corporation [B59421860FD19D81BE1385C594795389] Microsoft Corporation [C423E09CD8D2FDD19F1C1728D30623B1] Microsoft Corporation [E39C48B65200C28FE0F7CB700732F332] Microsoft Corporation

Page 114: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[30EE672AD2C53BFB7DD4BE6993B07C71] Microsoft Corporation [9BF7ED72685E81BF8763B1585D40C57F] Microsoft Corporation [265B49EF94A5AA713192EE97A7D248B5] Mozilla Corporation [345477F02C308B7480702767218C86A2] Mozilla Corporation [49B1E5AF3AA400752A20BE169CB73DFA] NVIDIA Corporation [93C82F365F9C0A2058A211E305A5CCFA] NVIDIA Corporation [059E588FDF6B7E83227D45D026D21874] NVIDIA Corporation [8943465BEFA91044227D42E84ECB8280] Renesas Electronics Corporation [7D6E1809C844B1D2AA02B6DCF1950084] Skype Software Sarl [1F79342D9EB530A48742F651E570983A] Skype Software Sarl [B15862B3DB1F5396FD3CB27ED584B681] Skype Software Sarl [C89F814492178585DA89F452CE19B720] Skype Software Sarl [E4938E0A376CF0B9D989EE5C0A146891] Skype Software Sarl [A9C057A9463C25490CF99EA8DF8A4B35] Skype Software Sarl [515377905CC9A2EB0E585DD9AB457722] Greatis Software LLC [A597D3A1073271330191EE30046C121A] Greatis Software LLC [5B724E4F86661343DDFD19EEE2316578] Greatis Software LLC [D07589E4434BD14E192ACED6C398B0CB] VMware, Inc. [81BC96818A1A718342B5A03BA34AED2A] VMware, Inc. [F121A4E1799C490EAA3765FB6295E43E] VMware, Inc. [CDE6C2310C30C97A4C518CE2D2453890] Microsoft Corporation [4CF29C44E072C377B6866C399947E99A] Microsoft Corporation [B3DD214F23037E3D3C27D6C9447B40B5] Microsoft Windows [B16782353A0FF62FF4E92145FC9FEDDA] Intel Corporation-Wireless Connectivity Solutions [FE9C0029E1AF26350D9985D00520E5C8] Microsoft Corporation [11E0B35479C895888BA3D7F619DCFFF3] Microsoft Corporation [4439E8B55CF0B2EA122F4FDC780270A2] Microsoft Corporation [AF528B4ECA925F63D437F76E87D8971D] Microsoft Corporation [357CABBF155AFD1D3926E62539D2A3A7] Microsoft Corporation [E307ED976D238B30B247108D1978A377] Intel Corporation-Mobile Wireless Group [D30286FF3C7B6318C024D2BC2955C1BF] Intel Corporation-Mobile Wireless Group [2761809D0BA8BD0F83463509624FD74A] Intel Corporation-Wireless Connectivity Solutions [FAA1B47AEADDB64CB9A4D31A894AA8F8] Intel Corporation-Wireless Connectivity Solutions [DFE071BEAA1AC65D49ECBEFC15B73D30] Intel Corporation-Wireless Connectivity Solutions [2D4AB594AABBEBA938F36BA1BC71C3F6] Microsoft Windows [E6227F2A14DE7BB9B01153D10C825F19] Microsoft Corporation [EBD994B2A1BF365CD2B448D381FB9112] Microsoft Corporation [F46BA4E7F4A34295B20917CD77F6CEC9] Microsoft Corporation [87A4BA086E5B5DF0F36E3F6D7234D701] Microsoft Corporation [9BF50324444C46997C2492D505B47F2D] Microsoft Corporation [28D0B60C58D1F734449E735E2C4FCE94] NVIDIA Corporation [977C9F7656D07D36887814A7D570FE1A] NVIDIA Corporation [40BF0BFC7F7B95DF824064EE1848B05E] NVIDIA Corporation [D1E343BC00136CE03C4D403194D06A80] Microsoft Windows [29A1AA60BEB49F0D270817F138618647] Microsoft Windows [0D549EF461685EC23BB111CDAE7A91AE] Microsoft Windows [7CBB1D4D13DC62D7F529D87151FD3CD3] Microsoft Windows [83EF203C123F288E227C5B1DEB467DE8] win.rar GmbH [506708142BC63DABA64F2D3AD1DCD5BF] Google Inc [BAB442AE1AEF7D7CFAB62344FCCCFEA7] Google Inc [F4CB6977FACFD7C51C5AE061B1D4289D] Tonec Inc. [4825955B4DADAA8F8FE05A2864BB6E6B] Tonec Inc. [A43DD6FE91EB6A92D7C238A7A965F1CB] Tonec Inc. [BAB8CB7D533AC3FA418AF4153F06A29F] Tonec Inc. [E04723A39DDDE7EBFB4A517A42B4A24F] Tonec Inc. [8FAE57C6C9A27C01E9D4591F4E2CD6B2] Tonec Inc.

Page 115: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[8B640FB5A8A1A7358AE8BEAA7C208D9A] Tonec Inc. [2D7C5669058EF750FADB83B36D7A55A8] BitTorrent Inc [C4002B6B41975F057D98C439030CEA07] Microsoft Windows [4705E8EF9934482C5BB488CE28AFC681] Microsoft Windows [332FEAB1435662FC6C672E25BEB37BE3] Microsoft Windows [F13EC8A783E0CB0D6DC26A3CA848B7B8] Microsoft Windows [F5AB4D2E36625F355E81539239765107] Microsoft Dynamic Code Publisher [B4D73F04E9BC076F7CDAC4327DF636BB] Microsoft Windows [C98A5B9D932430AD8EEBD3EF73756EF7] Microsoft Windows [A8B7F3818AB65695E3A0BB3279F6DCE6] Microsoft Windows [F15AB80B867D3332D5DDFB0A05B9CE04] Microsoft Corporation [9ACBE5EC13C2CC95833BFB7636CA8B1A] Microsoft Dynamic Code Publisher [E58808846B62041BFB05395E1CED6499] Microsoft Corporation [773212B2AAA24C1E31F10246B15B276C] Microsoft Windows [1A47D52E303B7543E4E6026595B95422] Microsoft Windows [3044D07ABDF4BBEA27E2EE7B1E0C0C65] Microsoft Windows [A6C09924C6730DE8DEED9890A12AA691] Microsoft Windows [9110FFAD124283F37D38771BB60556AF] Microsoft Windows [3B367397320C26DBA890B260F80D1B1B] Microsoft Windows [AA2C08CE85653B1A0D2E4AB407FA176C] Microsoft Windows [2B81776DA02017A37FE26C662827470E] Microsoft Windows [8560FFFC8EB3A806DCD4F82252CFC8C6] Microsoft Windows [796B47A4B82EF1C39F13435B88834C48] Microsoft Windows [CA2A0750ED830678997695FF61B04C30] Microsoft Windows [C210E0DF28F3B0E5D45F928F08726650] Microsoft Windows [CD726C899BD9A398E8420564A957320B] Microsoft Windows [E424B3EF666B184CEE0B6871AAA8C9F6] Microsoft Windows [9A9F9F1A77D6A80EE28B57664F00013E] Microsoft Windows [58A0CDABEA255616827B1C22C9994466] Microsoft Windows [46BB91A169B9B31FF44EB04C48EC1D41] Microsoft Windows [613C8CE10A5FDE582BA5FA64C4D56AAA] Microsoft Windows [88351B29B622B30962D2FEB6CA8D860B] Microsoft Windows [019CD868461B646E09BDF04474C19341] Microsoft Windows [5C627D1B1138676C0A7AB2C2C190D123] Microsoft Windows [ED78427259134C63ED69804D2132B86C] Microsoft Windows [09F7401D56F2393C6CA534FF0241A590] Microsoft Windows [FE70103391A64039A921DBFFF9C7AB1B] Microsoft Windows [D29E998E8277666982B4F0303BF4E7AF] Microsoft Windows [9B8F9FE94C614E90908CC2B8D4184939] VMware, Inc. [8CEBD9D0A0A879CDE9F36F4383B7CAEA] Microsoft Windows [2E2072EB48238FCA8FBB7A9F5FABAC45] Microsoft Windows [8396C6C26AADDFE4590CCEF0F419B6B7] Microsoft Windows [748849C42DEA24C723048E24BCA1BD55] Microsoft Windows [4B78B431F225FD8624C5655CB1DE7B61] Microsoft Windows [3290D6946B5E30E70414990574883DDB] Microsoft Windows [0BC381A15355A3982216F7172F545DE1] Microsoft Windows [9D2A2369AB4B08A4905FE72DB104498F] Microsoft Windows [DE3E38431B00C2EA247C53675DCF01A0] Microsoft Windows [A6BF31A71B409DFA8CAC83159E1E2AFF] Microsoft Windows [FDE360167101B4E45A96F939F388AEB0] Microsoft Windows [82974D6A2FD19445CC5171FC378668A4] Microsoft Windows [05F5A0D14A2EE1D8255C2AA0E9E8E694] Microsoft Windows [95F9C2976059462CBBF227F7AAB10DE9] Microsoft Windows [F17D1D393BBC69C5322FBFAFACA28C7F] Microsoft Windows [FE1EC06F2253F691FE36217C592A0206] Microsoft Windows [19D511CC455C19DE1ADF60E6C39C85B6] Microsoft Windows [3CEC7631A84943677AA8FA8EE5B6B43D] Microsoft Windows [43D808F5D9E1A18E5EEB5EBC83969E4E] Microsoft Windows [A8EDB86FC2A4D6D1285E4C70384AC35A] Microsoft Windows [16835866AAA693C7D7FCEBA8FFF706E4] Microsoft Windows

Page 116: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[B1FB3DDCA0FDF408750D5843591AFBC6] Microsoft Windows [B26F4F737E8F9DF4F31AF6CF31D05820] Microsoft Windows [A87D604AEA360176311474C87A63BB88] Microsoft Windows [D81D9E70B8A6DD14D42D7B4EFA65D5F2] Microsoft Windows [99F8E788246D495CE3794D7E7821D2CA] Microsoft Windows [2F6B34B83843F0C5118B63AC634F5BF4] Microsoft Windows [597F78224EE9224EA1A13D6350CED962] Microsoft Windows [E109549C90F62FB570B9540C4B148E54] Microsoft Windows [FA886682CFC5D36718D3E436AACF10B9] Microsoft Windows [7ECFF9B22276B73F43A99A15A6094E90] Microsoft Windows [608C14DBA7299D8CB6ED035A68A15799] Microsoft Windows [5812713A477A3AD7363C7438CA2EE038] Microsoft Windows [1FF8B4431C353CE385C875F194924C0C] Microsoft Windows [7024F087CFF1833A806193EF9D22CDA9] Microsoft Windows [1E56388B3FE0D031C44144EB8C4D6217] Microsoft Windows [D4121AE6D0C0E7E13AA221AA57EF2D49] Microsoft Windows [F67F933E79241ED32FF46A4F29B5120B] Microsoft Windows [540DAF1CEA6094886D72126FD7C33048] Microsoft Windows [888B1D8C4F7B6D2106D178204724ECAD] Microsoft Windows [89A69C3F2F319B43379399547526D952] Microsoft Windows [C484F8CEB1717C540242531DB7845C4E] Microsoft Windows [019AF6924AEFE7839F61C830227FE79C] Microsoft Windows [769765CE2CC62867468CEA93969B2242] Microsoft Windows [02062C0B390B7729EDC9E69C680A6F3C] Microsoft Windows [B5ACE6968304A3900EEB1EBFD9622DF2] Microsoft Windows [61583EE3C3A17003C4ACD0475646B4D3] Microsoft Windows [6C02A83164F5CC0A262F4199F0871CF5] Microsoft Windows [F09EEE9EDC320B5E1501F749FDE686C8] Microsoft Windows [B114D3098E9BDB8BEA8B053685831BE6] Microsoft Windows [43BEA8D483BF1870F018E2D02E06A5BD] Microsoft Windows [A6ECA2151B08A09CACECA35C07F05B42] Microsoft Windows [B79968002C277E869CF38BD22CD61524] Microsoft Windows [A87528880231C54E75EA7A44943B38BF] Microsoft Windows [CF98190A94F62E405C8CB255018B2315] Microsoft Windows [9DA669F11D1F894AB4EB69BF546A42E8] Microsoft Windows [02DD601B708DD0667E1331FA8518E9FF] Microsoft Windows [738D0E9272F59EB7A1449C3EC118E6C4] Microsoft Windows [F188B7394D81010767B6DF3178519A37] Microsoft Windows [3E5B191307609F7514148C6832BB0842] Microsoft Windows [B8BD2BB284668C84865658C77574381A] Microsoft Windows [F036CE71586E93D94DAB220D7BDF4416] Microsoft Windows [D7CD5C4E1B71FA62050515314CFB52CF] Microsoft Windows [0840155D0BDDF1190F84A663C284BD33] Microsoft Windows [E19D3F095812725D88F9001985B94EDD] Microsoft Windows [E45CDE1C8340DFEDF1D6724263F39E5B] Microsoft Windows [102DE219C3F61415F964C88E9085AD14] Microsoft Windows [03EDB043586CCEBA243D689BDDA370A8] Microsoft Windows [1C827878A998C18847245FE1F34EE597] Microsoft Windows [9BB2EF44EAA163B29C4A4587887A0FE4] Microsoft Windows [13096B05847EC78F0977F2C0F79E9AB3] Microsoft Windows [9819EEE8B5EA3784EC4AF3B137A5244C] Microsoft Windows [9B19F34400D24DF84C858A421C205754] Microsoft Windows [87CE5C8965E101CCCED1F4675557E868] Microsoft Windows [0E5DA5369A0FCAEA12456DD852545184] Microsoft Windows [34A3C54752046E79A126E15C51DB409B] Microsoft Windows [DC5D737F51BE844D8C82C695EB17372F] Microsoft Windows [D765D19CD8EF61F650C384F62FAC00AB] Microsoft Windows [655661BE46B5F5F3FD454E2C3095B930] Microsoft Windows [5F671AB5BC87EEA04EC38A6CD5962A47] Microsoft Windows [C172A0F53008EAEB8EA33FE10E177AF5] Microsoft Windows

Page 117: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[DA6B67270FD9DB3697B20FCE94950741] Microsoft Windows [D43703496149971890703B4B1B723EAC] Microsoft Windows [8F6322049018354F45F05A2FD2D4E5E0] Microsoft Windows [8C778D335C9D272CFD3298AB02ABE3B6] Microsoft Windows [BDDBCFF870442B3C24C158CD53079132] VMware, Inc. [F2523EF6460FC42405B12248338AB2F0] Microsoft Windows [97BFED39B6B79EB12CDDBFEED51F56BB] Microsoft Windows [975761C778E33CD22498059B91E7373A] Microsoft Windows [A6518DCC42F7A6E999BB3BEA8FD87567] Microsoft Windows [78E86380454A7B10A5EB255DC44A355F] Microsoft Windows [7FD2A313F7AFE5C4DAB14798C48DD104] Microsoft Windows [0A77D29F311B88CFAE3B13F9C1A73825] Microsoft Windows [9592090A7E2B61CD582B612B6DF70536] Microsoft Windows [39D2ABCD392F3D8A6DCE7B60AE7B8EFC] Microsoft Windows [0EA7DE1ACB728DD5A369FD742D6EEE28] Microsoft Windows [A5462BD6884960C9DC85ED49D34FF392] Microsoft Windows [FA55C73D4AFFA7EE23AC4BE53B4592D3] Microsoft Windows [AAAF44DB3BD0B9D1FB6969B23ECC8366] Microsoft Windows [3F2013A2880FE503B1B3BC8212764923] Tonec Inc. [8C44E6B688790E2AD3846C97661C54F1] Microsoft Windows [5C18831C61933628F5BB0EA2675B9D21] Microsoft Windows [F00F20E70C6EC3AA366910083A0518AA] Microsoft Windows [ADA036632C664CAA754079041CF1F8C1] Microsoft Windows [C9F0E1BD74365A8771590E9008D22AB6] Microsoft Windows [0FC1AEA580957AA8817B8F305D18CA3A] Microsoft Windows [AF9B39A7E7B6CAA203B3862582E9F2D0] Microsoft Windows [3ABF5E7213EB28966D55D58B515D5CE9] Microsoft Windows [2F7B28DC3E1183E5EB418DF55C204F38] Microsoft Windows [BC02336F1CBA7DCC7D1213BB588A68A5] Microsoft Windows [0705EFF5B42A9DB58548EEC3B26BB484] Microsoft Windows [C60C6B9A2E50B0404F6789C62B428C03] Microsoft Windows [78D152A9FD5747FF6AA89C79F0346F62] Microsoft Windows [6869281E78CB31A43E969F06B57347C4] Microsoft Windows [1538831CF8AD2979A04C423779465827] Microsoft Windows [1A93E54EB0ECE102495A51266DCDB6A6] Microsoft Windows [1047184A9FDC8BDBFF857175875EE810] Microsoft Windows [30F5C0DE1EE8B5BC9306C1F0E4A75F93] Microsoft Windows [0504EACAFF0D3C8AED161C4B0D369D4A] Microsoft Windows [43D0F98E1D56CCDDB0D5254CFF7B356E] Microsoft Windows [A55805F747C6EDB6A9080D7C633BD0F4] Microsoft Windows [BAF74CE0072480C3B6B7C13B2A94D6B3] Microsoft Windows [800BA92F7010378B09F9ED9270F07137] Microsoft Windows [B03D591DC7DA45ECE20B3B467E6AADAA] Microsoft Windows [7D27EA49F3C1F687D357E77A470AEA99] Microsoft Windows [D3BF052C40B0C4166D9FD86A4288C1E6] Microsoft Windows [32E7A3D591D671A6DF2DB515A5CBE0FA] Microsoft Windows [FBA4CDA6B3B00D7A116DCC2B5C7E9790] Microsoft Windows [A44B420D30BD56E145D6A2BC8768EC58] Microsoft Windows [6C38C9E45AE0EA2FA5E551F2ED5E978F] Microsoft Windows [AE3334958D8F631FF14A0AEB3D7EFB3A] Microsoft Windows [A5D9106A73DC88564C825D317CAC68AC] Microsoft Windows [D711B3C1D5F42C0C2415687BE09FC163] Microsoft Windows [9423E9D355C8D303E76B8CFBD8A5C30C] Microsoft Windows [C25F0BAFA182CBCA2DD3C851C2E75796] Microsoft Windows [DB801A638D011B9633829EB6F663C900] Microsoft Windows [F9D215A46A8B9753F61767FA72A20326] Microsoft Windows [D916874BBD4F8B07BFB7FA9B3CCAE29D] Microsoft Windows [96BB922A0981BC7432C8CF52B5410FE6] Microsoft Windows [49CCF2C4FEA34FFAD8B1B59D49439366] Microsoft Windows [BDD71ACE35A232104DDD349EE70E1AB3] Microsoft Windows

Page 118: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[4ED981241DB27C3383D72092B618A1D0] Microsoft Windows [0EED230E37515A0EAEE3C2E1BC97B288] Microsoft Windows [2E66F9ECB30B4221A318C92AC2250779] Microsoft Windows [7EA404308934E675BFFDE8EDF0757BCD] Microsoft Windows [F9A18612FD3526FE473C1BDA678D61C8] Microsoft Windows [760E38053BF56E501D562B70AD796B88] Microsoft Windows [9F9A1F53AAD7DA4D6FEF5BB73AB811AC] Microsoft Windows [30639C932D9FEF22B31268FE25A1B6E5] Microsoft Windows [136185F9FB2CC61E573E676AA5402356] Microsoft Windows [53F7305169863F0A2BDDC49E116C2E11] Microsoft Windows [86743D9F5D2B1048062B14B1D84501C4] Microsoft Windows [09594D1089C523423B32A4229263F068] Microsoft Windows [F0EAD8863514E25E62D008C0D752A79F] Microsoft Windows [77889813BE4D166CDAB78DDBA990DA92] Microsoft Windows [E10B84385C3FEEF4BDE8E6A980535522] Microsoft Windows [E7F5AE18AF4168178A642A9247C63001] Microsoft Windows [D584ABB6A308933A5F72B46C9E5A783F] Microsoft Windows [345B9C04E2036DA4346E3249A5BDFD06] Microsoft Windows [270D7CD42D6E3979F6DD0146650F0E05] Microsoft Windows [7DCF1DA29EC1B9E8CE1C11CE7C7B6419] Microsoft Windows [3B99271224C43ADAB5A7F8D4B574AE3F] Microsoft Windows [6DBDE7A7C81F05C20C82291401627503] Microsoft Windows [0A92CB65770442ED0DC44834632F66AD] Microsoft Windows [DAB0E87525C10052BF65F06152F37E4A] Microsoft Windows [DBFE7B2DF103F74AE51840B3C5F25FE9] Microsoft Windows [1EA3749C4114DB3E3161156FFFFA6B33] Microsoft Windows [3589478E4B22CE21B41FA1BFC0B8B8A0] Microsoft Windows [0557CF5A2556BD58E26384169D72438D] Microsoft Windows [0086431C29C35BE1DBC43F52CC273887] Microsoft Windows [6DDCF3F801EC15FE698F6A215CF30A1F] Greatis Software, LLC [E9766131EEADE40A27DC27D2D68FBA9C] Microsoft Windows [94575C0571D1462A0F70BDE6BD6EE6B3] Microsoft Windows [B5B8B5EF2E5CB34DF8DCF8831E3534FA] Microsoft Windows [B2E81D4E87CE48589F98CB8C05B01F2F] Microsoft Windows [D6B9C2E1A11A3A4B26A182FFEF18F603] Microsoft Windows [68769C3356B3BE5D1C732C97B9A80D6E] Microsoft Windows [0D922E23C041EFB1C3FAC2A6F943C9BF] Microsoft Windows [0928BD20273625622722FE1DE5BBDE57] Microsoft Windows [A53A15A11EBFD21077463EE2C7AFEEF0] Microsoft Windows [4F6D12B51DE1AAEFF7DC58C4D75423C8] Microsoft Windows [76707BB36430888D9CE9D705398ADB6C] Microsoft Windows [5A0DA8AD5762FA2D91678A8A01311704] Microsoft Windows [471815800AE33E6F1C32FB1B97C490CA] Microsoft Windows [855C9B1CD4756C5E9A2AA58A15F58C25] Microsoft Windows [F92A2C41117A11A00BE01CA01A7FCDE9] Microsoft Windows [E8B1E447B008D07FF47D016C2B0EEECB] Microsoft Windows [77F665941019A1594D887A74F301FA2F] Microsoft Windows [302DA2A0539F2CF54D7C6CC30C1F2D8D] Microsoft Windows [CEA6CC257FC9B7715F1C2B4849286D24] Microsoft Windows [BB5971A4F00659529A5C44831AF22365] Microsoft Windows [216F3FA57533D98E1F74DED70113177A] Microsoft Windows [313F68E1A3E6345A4F47A36B07062F34] Microsoft Windows [34ED295FA0121C241BFEF24764FC4520] Microsoft Windows [3DD798846E2C28102B922C56E71B7932] Microsoft Windows [DDC86E4F8E7456261E637E3552E804FF] Microsoft Windows [EE082E06A82FF630351D1E0EBBD3D8D0] Microsoft Windows [8FED6428FDE53D7F4C105095F22524BE] Microsoft Windows [AC03AF3329579FFFB455AA2DAABBE22B] Microsoft Windows [253F38D0D7074C02FF8DEB9836C97D2B] Microsoft Windows [CB624C0035412AF0DEBEC78C41F5CA1B] Microsoft Windows

Page 119: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[C1D8E28B2C2ADFAEC4BA89E9FDA69BD6] Microsoft Windows [1C545A7D0691CC4A027396535691C3E3] Microsoft Windows [A554811BCD09279536440C964AE35BBF] Microsoft Windows [FF414F0BAEFEBA59BC6C04B3DB0B87BF] Microsoft Windows [DD85B78243A19B59F0637DCF284DA63C] Microsoft Windows [A9D601643A1647211A1EE2EC4E433FF4] Microsoft Windows [843CAF1E5FDE1FFD5FF768F23A51E2E1] Microsoft Windows [6A6C106D42E9FFFF8B9FCB4F754F6DA4] Microsoft Windows [548260A7B8654E024DC30BF8A7C5BAA4] Microsoft Windows [441FBA48BFF01FDB9D5969EBC1838F0B] Microsoft Windows [B4ADEBBF5E3677CCE9651E0F01F7CC28] Microsoft Windows [27E461F0BE5BFF5FC737328F749538C3] Microsoft Windows [F3817967ED533D08327DC73BC4D5542A] Microsoft Windows [D01EC09B6711A5F8E7E6564A4D0FBC90] Microsoft Windows [B0C7D4DCF4800DF2F2145B500D0161E8] Microsoft Windows [04ADD18EE5CC9FBEDAEC1DD1CD0CB45E] Microsoft Windows [1B16D0BD9841794A6E0CDE0CEF744ABC] Microsoft Windows [3371D21011695B16333A3934340C4E7C] Microsoft Windows [51C5ECEB1CDEE2468A1748BE550CFBC8] Microsoft Windows [70988118145F5F10EF24720B97F35F65] Microsoft Windows [561E7E1F06895D78DE991E01DD0FB6E5] Microsoft Windows [E232A3B43A894BB327FC161529BD9ED1] Microsoft Windows [E9981ECE8D894CEF7038FD1D040EB426] Microsoft Windows [3566A8DAAFA27AF944F5D705EAA64894] Microsoft Windows [B4DD609BD7E282BFC683CEC7EAAAAD67] Microsoft Windows [FF4232A1A64012BAA1FD97C7B67DF593] Microsoft Windows [4BFE1BC28391222894CBF1E7D0E42320] Microsoft Windows [DC54A574663A895C8763AF0FA1FF7561] Microsoft Windows [B2E8E8CB557B156DA5493BBDDCC1474D] Microsoft Windows [24E8F8C3BDF9CEFC2135F9A3C399F37D] Greatis Software LLC [DCA68B0943D6FA415F0C56C92158A83A] Microsoft Windows [80B0F7D5CCF86CEB5D402EAAF61FEC31] Microsoft Windows [18A85013A3E0F7E1755365D287443965] Microsoft Windows [8D1196CFBB223621F2C67D45710F25BA] Microsoft Windows [765A92D428A8DB88B960DA5A8D6089DC] Microsoft Windows [73188F58FB384E75C4063D29413CEE3D] Microsoft Windows [FED648B01349A3C8395A5169DB5FB7D6] Microsoft Windows [DD253AFC3BC6CBA412342DE60C3647F3] Microsoft Windows [1F775DA4CF1A3A1834207E975A72E9D7] Microsoft Windows [C5C876CCFC083FF3B128F933823E87BD] Microsoft Windows [53E92A310193CB3C03BEA963DE7D9CFC] Microsoft Windows [DA4DA3F5E02943C2DC8C6ED875DE68DD] Microsoft Windows [2CE2DF28C83AEAF30084E1B1EB253CBB] Microsoft Windows [E5689D93FFE4E5D66C0178761240DD54] Microsoft Windows [BE8E5E5D53ACF71D4E8E686B68C99B04] Microsoft Windows [18AA5F4A3B1204AD00045EE5AD39BCDB] Microsoft Windows [04CD4347CD9E8C40F78AD51F7FF426D0] Microsoft Windows [50160AC31D1820C10BEE0D26707298E0] VMware, Inc. [11CAB5305913D3510854A2BD6D5ED1FB] VMware, Inc. [D2AAFD421940F640B407AEFAAEBD91B0] Microsoft Windows [A255814907C89BE58B79EF2F189B843B] Microsoft Windows [0D08D2F3B3FF84E433346669B5E0F639] Microsoft Windows [5B3644AB5E8E210F60869EA6895DE822] Microsoft Windows [5E2016EA6EBACA03C04FEAC5F330D997] Microsoft Windows [CB4D2E3C5E8BFA3CF6AFFF6DDC6CC70D] VMware, Inc. [E7CE8988B98202A5CF429CA358D26CC5] VMware, Inc. [36D4720B72B5C5D9CB2B9C29E9DF67A1] Microsoft Windows [6A3D66263414FF0D6FA754C646612F3F] Microsoft Windows [6A638FC4BFDDC4D9B186C28C91BD1A01] Microsoft Windows [4E9440F4F152A7B944CB1663D3935A3E] Microsoft Windows

Page 120: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[356AFD78A6ED4457169241AC3965230C] Microsoft Windows [72889E16FF12BA0F235467D6091B17DC] Microsoft Windows [E2C933EDBC389386EBE6D2BA953F43D8] Microsoft Windows [611B23304BF067451A9FDEE01FBDD725] Microsoft Windows [05ECAEC3E4529A7153B3136CEB49F0EC] Microsoft Windows [F6FF8944478594D0E414D3F048F0D778] Microsoft Windows [6BCC1D7D2FD2453957C5479A32364E52] Microsoft Windows [AB886378EEB55C6C75B4F2D14B6C869F] Microsoft Windows [DDA4CAF29D8C0A297F886BFE561E6659] Microsoft Windows [E2DDA8726DA9CB5B2C4000C9018A9633] Microsoft Windows [024352FEEC9042260BB4CFB4D79A206B] Microsoft Windows [4166F82BE4D24938977DD1746BE9B8A0] Microsoft Windows [0438CAB2E03F4FB61455A7956026FE86] Microsoft Windows [802496CB59A30349F9A6DD22D6947644] Microsoft Windows [C4C183E6551084039EC862DA1C945E3D] Microsoft Windows [19E41CCCEE697CC9465396B370929792] Microsoft Windows [DBEFD454F8318A0EF691FDD2EAAB44EB] Microsoft Windows [277BBC7E1AA1EE957F573A10ECA7EF3A] Microsoft Windows [BD9EB3958F213F96B97B1D897DEE006D] Microsoft Windows [28FC280487F0BAAE5E8119257C4EEF8C] Microsoft Windows [01A314677CC80041A63ED109B56A76B0] Microsoft Windows [F29BEA821C753E4F00177690F70CDC13] Microsoft Windows [28062B17191C9450BF6C6C3EF8C7EB27] Microsoft Windows [344789398EC3EE5A4E00C52B31847946] Microsoft Windows [DA6C4B5FEEEA4DC7162B5D0C055EB967] Microsoft Windows [142E90CF1A4C5B6E7505810E38B07B9F] Microsoft Windows [098A91C54546A3B878DAD6A7E90A455B] Microsoft Windows [08C2957BB30058E663720C5606885653] Microsoft Windows [B95F6501A2F8B2E78C697FEC401970CE] Microsoft Windows [4F15D75ADF6156BF56ECED6D4A55C389] Microsoft Windows [808E98FF49B155C522E6400953177B08] Microsoft Windows [06DC527364A8CF48E472ECF2BA3F8403] Microsoft Windows [5CE9241C030C004FF92037DF8F7401B0] Microsoft Windows [C1F9E139B8AE80803CE44DC0377CA342] Microsoft Windows [387E72E739E15E3D37907A86D9FF98E2] Microsoft Windows [EFDFB3DD38A4376F93E7985173813ABD] Microsoft Windows [94AA2DFFF94DF789AAA0081333A6CADA] Microsoft Corporation [C1185803384AB3FEED115F79F109427F] Microsoft Windows [F993A32249B66C9D622EA5592A8B76B8] Microsoft Windows [45CFBFA8EDC3DF4E2B7FB0D0260FE051] Microsoft Windows [D5BA242D4CF8E384DB90E6A8ED850B8C] Microsoft Windows [E0105F3B5B1C4B0F5B3D788A13504EC6] Microsoft Windows [0BE09CD858ABF9DF6ED259D57A1A1663] Microsoft Windows [CA2A0750ED830678997695FF61B04C30] Microsoft Windows [E40E80D0304A73E8D269F7141D77250B] Microsoft Windows [254FB7A22D74E5511C73A3F6D802F192] Microsoft Windows [54FFC9C8898113ACE189D4AA7199D2C1] Microsoft Windows [1B7C3A37362C7B2890168C5FC61C8D9B] Microsoft Windows [329FEB3452982A377726DEDAFE9BBDF0] Microsoft Windows [A08C010D859F8EB42BDD7E1D55B8CA27] Microsoft Windows [DE0ECE52236CFA3ED2DBFC03F28253A8] Microsoft Windows [6AB66E16AA859232F64DEB66887A8C9C] Microsoft Windows [1C81E1BEA4847F406BBDB74D19721CE6] Microsoft Windows [E5B9A2FA94D21C44DA2B898DC326B0C2] Microsoft Windows [A190DA6546501CB4146BBCC0B6A3F48B] Microsoft Windows [45989C268EC2CC9EEA80030AF96CDA5A] Microsoft Windows [6A06BCED1DF1CFE8A32E7D10ABAA7188] Microsoft Windows [69A4347A8EAD86185EFF2F75755176E6] Microsoft Windows [B94D3DACCF5882B697A1C53D00BE643A] Microsoft Windows [847D3AE376C0817161A14A82C8922A9E] Microsoft Windows

Page 121: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[5F28111C648F1E24F7DBC87CDEB091B8] Microsoft Windows [8B301D474B478E9A92823BAB50A7BC49] Microsoft Windows [D54BFDF3E0C953F823B3D0BFE4732528] Microsoft Windows [037A719DAD50603202C978CD802623E4] Microsoft Windows [97ADEBE576474D4CEC53F8E06590FFC8] NVIDIA Corporation [927463ECB02179F88E4B9A17568C63C3] Microsoft Windows [3AEAA8B561E63452C655DC0584922257] Microsoft Windows [1306E6A1BF4D506CD687DF9F947270F2] Microsoft Windows [C7CF6A6E137463219E1259E3F0F0DD6C] Microsoft Windows [3EAC4455472CC2C97107B5291E0DCAFE] Microsoft Windows [B6A58491307B4CADA572583D863DC602] Microsoft Windows [908ACB1F594274965A53926B10C81E89] Microsoft Windows [582AC6D9873E31DFA28A4547270862DD] Microsoft Windows [1EA7969E3271CBC59E1730697DC74682] Microsoft Windows [906191634E99AEA92C4816150BDA3732] Microsoft Windows [8F26510C5383B8DBE976DE1CD00FC8C7] Microsoft Windows [EE867A0870FC9E4972BA9EAAD35651E2] Microsoft Windows [E4D94F24081440B5FC5AA556C7C62702] Microsoft Windows [E4DC58CF7B3EA515AE917FF0D402A7BB] Microsoft Windows [5C627D1B1138676C0A7AB2C2C190D123] Microsoft Windows [9B7395789E3791A3B6D000FE6F8B131E] Microsoft Windows [ED78427259134C63ED69804D2132B86C] Microsoft Windows [DDACB408E607655EC64269706BFD504C] Microsoft Windows [262F6592C3299C005FD6BEC90FC4463A] Microsoft Windows [6EA4234DC55346E0709560FE7C2C1972] Microsoft Windows [E0B340996A41C9A75DFA3B99BBA9C500] Microsoft Windows [BC617A4E1B4FA8DF523A061739A0BD87] Microsoft Windows [C32AB8FA018EF34C0F113BD501436D21] Microsoft Windows [0336CFFAFAAB87A11541F1CF1594B2B2] Microsoft Windows [0B6231BF38174A1628C4AC812CC75804] Microsoft Windows [AE57F6C7AB3ED244B5F14151C4EA0057] Microsoft Windows [AAF932B4011D14052955D4B212A4DA8D] Microsoft Windows [6313F223E817CC09AA41811DAA7F541D] Microsoft Windows [85DAA09A98C9286D4EA2BA8D0E644377] Microsoft Windows [E17E0188BB90FAE42D83E98707EFA59C] Microsoft Windows [93D7D61317F3D4BC4F4E9F8A96A7DE45] Microsoft Windows [D9F42719019740BAA6D1C6D536CBDAA6] Microsoft Windows [51B52FBD583CDE8AA9BA62B8B4298F33] Microsoft Windows [AB7AEBF58DAD8DAAB7A6C45E6A8885CB] Microsoft Windows [C78655BC80301D76ED4FEF1C1EA40A7D] Microsoft Windows [E08E46FDD841B7184194011CA1955A0B] Microsoft Windows [A10B048B681C38E26CA90CD1BC123604] Microsoft Windows [BF9CCC0BF39B418C8D0AE8B05CF95B7D] Microsoft Windows [870726CDCC241A92785572628B89CC07] Microsoft Windows [E3C61FD7B7C2557E1F1B0B4CEC713585] Microsoft Windows [40F0849F65D13EE87B9A9AE3C1DD6823] Microsoft Windows [1BE03AC720F4D302EA01D40F588162F6] Microsoft Windows [008CD4EBFABCF78D0F19B3778492648C] Microsoft Windows [F0344071948D1A1FA732231785A0664C] Microsoft Windows [7E7AFD841694F6AC397E99D75CEAD49D] Microsoft Windows [CEED624D1291081B1B7D921FBB9C61D9] Microsoft Windows [8F33880F1863BE3925D3A0121FAC5E8F] Microsoft Windows [3CBDEC8D06B9968ABA702EBA076364A1] Microsoft Windows [25FBDEF06C4D92815B353F6E792C8129] Microsoft Windows [6BA9D927DDED70BD1A9CADED45F8B184] Microsoft Windows [64B328D52DFC8CDA123093E3F6E4C37C] Microsoft Windows [D47EC6A8E81633DD18D2436B19BAF6DE] Microsoft Windows [BAFE84E637BF7388C96EF48D4D3FDD53] Microsoft Windows [EDBB23CBCF2CDF727D64FF9B51A6070E] Microsoft Windows [8D6B481601D01A456E75C3210F1830BE] Microsoft Windows

Page 122: Windows Windows 7 Home Premium (6.1.7601)docshare01.docshare.tips/files/25777/257775453.pdf · 2016. 7. 8. · ownload Manager Module 6, 21, 19, 1 [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRA

[08E2C72275EEB2E74575D8176CC08EA6] VMware, Inc. [C04DA837FBC636DC88A2ACAEDB4E95F6] VMware, Inc. [B60BA0BC31B0CB414593E169F6F21CC2] Microsoft Windows [1C9D80CC3849B3788048078C26486E1A] Microsoft Windows [3CEC96DE223E49EAAE3651FCF8FAEA6C] Microsoft Windows [A3F5E8EC1316C3E2562B82694A251C9E] Microsoft Windows [38B84C94C5A8AF291ADFEA478AE54F93] Microsoft Windows [19B07E7E8915D701225DA41CB3877306] Microsoft Windows [78F4E7F5C56CB9716238EB57DA4B6A75] Microsoft Windows [3AA101E8EDAB2DB4131333F4325C76A3] Microsoft Windows [7368A2AFD46E5A4481D1DE9D14848EDD] Microsoft Windows [20F7441334B18CEE52027661DF4A6129] Microsoft Windows [C6F7473B55510F0B93961DA03D8E3B38] Microsoft Windows [5350A548BEC957978B7014CDFF091542] Microsoft Windows [1473768973453DE50DC738C2955FC4DD] Microsoft Windows [0EB0E5D22B1760F2DBCE632F2DD7A54D] Microsoft Windows [C749025A679C5103E575E3B48E092C43] Microsoft Windows [7E591867422DC788B9E5BD337A669A08] Microsoft Windows [6D137963730144698CBD10F202E9F251] Microsoft Windows [8DD52E8E6128F4B2DA92CE27402871C1] Microsoft Windows [58F4493BF748A3A89689997B7BD00E95] Microsoft Windows [851A1382EED3E3A7476DB004F4EE3E1A] Microsoft Windows [4FADA86E62F18A1B2F42BA18AE24E6AA] Microsoft Windows [96C6E7100D724C69FCF9E7BF590D1DCA] Microsoft Windows [93221146D4EBBF314C29B23CD6CC391D] Microsoft Windows [045451FA238A75305CC26AC982472367] Microsoft Windows [E8B1FE6669397D1772D8196DF0E57A9E] Microsoft Windows [D929ABD465A2DED963DA8B30946A8D5C] Microsoft Windows [61FF576450CCC80564B850BC3FB6713A] Microsoft Windows [B20F051B03A966392364C83F009F7D17] Microsoft Windows [04F82965C09CBDF646B487E145060301] Microsoft Windows [241A1900C52DCBA38B20A4F3671444E0] Microsoft Windows [1DE21EC4A2232FF4F5298ADCAE7B3690] Microsoft Windows [78A1A938D51D4F83A772123B93EE1612] Microsoft Windows [08F934092E0429BADF88E9F91DB0F61E] Microsoft Windows [1C7F1C3EA5894995E6C563E9AE9F029F] Microsoft Windows [080255CDCB878813B481B8C348D47D8E] Adobe Systems Incorporated [61C74D794C14E9FC94D93F5F0F72A3F9] Microsoft Windows [59D16C3D5CC0D573256A01783ED5CCB4] Microsoft Windows [E94C583CDE2348950155F2AF2876F34D] Microsoft Windows [0B7E85364CB878E2AD531DB7B601A9E5] Microsoft Windows [FE48346938C1CDDDF4E4097DB9B99764] Microsoft Windows [5C75272E819BD2F906623EF1C4C6D425] Microsoft Windows [703FFD301AB900B047337C5D40FD6F96] Microsoft Windows [E495E408C93141E8FC72DC0C6046DDFA] Microsoft Windows [5CF640EDDB1E40A5AB1BB743BCDEC610] Microsoft Windows [8E8137569741D3693F88DDF94CC38C20] Microsoft Windows [341AF37351A69534645C8F98241ACDF6] VMware, Inc. [5DF5D8CFD9B9573FA3B2C89D9061A240] Microsoft Windows [AC122407B29378FF9646F03404AC7C54] Microsoft Windows===