| Top |
Autorun
| Process Name | Path | Location | Version | Description | Status | Label | Link Name |
| msnmsgr.exe | C:\Program Files\MSN Messenger\ | HKCU\Software\Microsoft\Windows\CurrentVersion\Run | 8.1.178.0 | Messenger | Running | MsnMsgr | |
| SysSense.exe | C:\Program Files\SysSense\ | HKCU\Software\Microsoft\Windows\CurrentVersion\Run | 1.3.0.3 | SysSense | Running | SysSense | |
| RoboTaskBarIcon.exe | C:\Program Files\Siber Systems\AI RoboForm\ | HKCU\Software\Microsoft\Windows\CurrentVersion\Run | 6.9.8.0 | RoboForm TaskBar Icon / RoboForm | Running | RoboForm | |
| cmd /c rmdir /q | | HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce | | | | configmsi | |
| cmd /c rmdir /q /s | | HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce | | | | supportdir | |
| %1 | | HKLM\Software\Classes\exefile\shell\open\command | | | | IsolatedCommand | |
| GrooveShellExtensions.dll | C:\Program Files\Microsoft Office\Office12\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks | 12.0.4518.1014 | GrooveShellExtensions Module | | Groove GFS Stub Execution Hook | |
| browseui.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler | 6.0.6000.16386 | Shell Browser UI Library / Microsoft® Windows® Operating System | | Component Categories cache daemon | |
| MSASCui.exe | C:\Program Files\Windows Defender\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 1.1.1505.0 | Windows Defender User Interface / Windows Defender | Running | Windows Defender | |
| tpfnf7sp.exe | C:\Program Files\Lenovo\NPDIRECT\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 1.0.0.0 | Presentation Director Fn+F7 handler / Presentation Director | Running | TPFNF7 | |
| TPOSDSVC.exe | C:\Program Files\Lenovo\HOTKEY\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 1.0.0.0 | On screen display message handler / On screen display | Running | TPHOTKEY | |
| | rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | | | | PWMTRV | |
| SynTPEnh.exe | C:\Program Files\Synaptics\SynTP\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 9.1.3.5 | Synaptics TouchPad Enhancements / Synaptics Pointing Device Driver | Running | SynTPEnh | |
| TpShocks.exe | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 1.52.0.2 | ThinkVantage Active Protection System | Running | TpShocks | |
| EZEJMNAP.EXE | C:\Program Files\ThinkPad\Utilities\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 2.3.2.0 | ThinkPad EasyEject Support Application / ThinkPad EasyEject Utility | Running | EZEJMNAP | |
| scheduler_proxy.exe | C:\Program Files\Common Files\Lenovo\Scheduler\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 4.0.301.0 | scheduler_proxy Application | Running | TVT Scheduler Proxy | |
| LPMGR.EXE | C:\Program Files\ThinkVantage\PrdCtr\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 1.0.0.2 | ThinkVantage Productivity Center Manager / ThinkVantage Productivity Center | Running | LPManager | |
| Amsg.exe | C:\Program Files\ThinkVantage\AMSG\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 3.0.0.0 | Message Center | | AMSG | |
| ACTray.exe | C:\Program Files\ThinkPad\ConnectUtilities\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 4.4.1.0 | ThinkVantage Access Connections AC Tray Module / ThinkVantage Access Connections | Running | ACTray | |
| ACWLIcon.exe | C:\Program Files\ThinkPad\ConnectUtilities\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 4.4.1.0 | ThinkVantage Access Connections Wireless lan Icon Module / ThinkVantage Access Connections | Running | ACWLIcon | |
| | C:\Program Files\Lenovo\Client Security Solution\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | | | | cssauth | |
| IaNvSrv.exe | C:\Program Files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 1.0.1.1004 | Intel(R) Flash Cache Logic Chip OROM Update Application / Intel(R) Flash Cache Logic Chip | | IaNvSrv | |
| LenovoOobeOffers.exe | c:\SWTOOLS\LenovoWelcome\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 1.0.0.0 | LenovoOobeOffers / LenovoFirstRun | | LenovoOobeOffers | |
| GrooveMonitor.exe | C:\Program Files\Microsoft Office\Office12\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 12.0.4518.1014 | GrooveMonitor Utility | Running | GrooveMonitor | |
| Reader_sl.exe | C:\Program Files\Adobe\Reader 8.0\Reader\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 8.0.0.0 | Adobe Acrobat SpeedLauncher / Adobe Acrobat | | Adobe Reader Speed Launcher | |
| | C:\Program Files\Common Files\microsoft shared\DW\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | | | | DWPersistentQueuedReporting | |
| fpdisp5a.exe | C:\Windows\System32\spool\drivers\w32x86\3\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 5.71.0.0 | FinePrint | | FinePrint Dispatcher v5 | |
| flashget.exe | C:\Program Files\FlashGet\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 1.9.4.1063 | FlashGet | Running | Flashget | |
| wmdcBase.exe | C:\Windows\WindowsMobile\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 6.1.6965.0 | Windows Mobile Device Center / Microsoft® Windows Mobile® Device Center | Running | Windows Mobile-based device management | |
| smax4pnp.exe | C:\Program Files\Analog Devices\Core\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 6.1.32.138 | SMax4PNP / SMax4PNP Application | Running | SoundMAXPnP | |
| nvsvc.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 7.15.11.5655 | NVIDIA Driver Helper Service, Version 156.55 | | NvSvc | |
| nvcpl.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 7.15.11.5655 | NVIDIA Display Properties Extension / NVIDIA Compatible Windows 2000 Display driver, Version 156.55 | | NvCplDaemon | |
| nvmctray.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 7.15.11.5655 | NVIDIA Media Center Library | | NvMediaCenter | |
| AwaySch.EXE | C:\Program Files\Lenovo\AwayTask\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 3.0.0.0 | Maintenance Manager Scheduler / Maintenance Manager | Running | AwaySch | |
| ipoint.exe | C:\Program Files\Microsoft IntelliPoint\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Run | 6.10.157.0 | IPoint.exe / Microsoft IntelliPoint | Running | IntelliPoint | |
| | C:\Program Files\Common Files\System\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | | | | Microsoft Data Link | |
| NetworkExplorer.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Network Explorer / Microsoft® Windows® Operating System | | Computers and Devices | |
| shdocvw.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Shell Doc Object and Control Library / Microsoft® Windows® Operating System | | | |
| mmcshext.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | MMC Shell Extension DLL / Microsoft® Windows® Operating System | | MMC Icon Handler | |
| webcheck.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 7.0.6000.16386 | Web Site Monitor / Windows® Internet Explorer | | WebCheckWebCrawler | |
| netshell.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Network Connections Shell / Microsoft® Windows® Operating System | | Network Connections | |
| icsigd.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Internet Gateway Device properties / Microsoft® Windows® Operating System | | IGD Property Sheet Handler | |
| inetcomm.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16480 | Microsoft Internet Messaging API Resources / Microsoft® Windows® Operating System | | Microsoft Windows Mail Html Preview Handler | |
| ieframe.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 7.0.6000.16512 | Internet Explorer / Windows® Internet Explorer | | Shell DocObject Viewer | |
| mshtml.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 7.0.6000.16527 | Microsoft (R) HTML Viewer / Windows® Internet Explorer | | MSHTML Document | |
| sendmail.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16493 | Send Mail / Microsoft® Windows® Operating System | | Mail Service | |
| MLSHEXT.DLL | C:\Program Files\Microsoft Office\Office12\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 12.0.4518.1014 | Microsoft Shell Extension Library / Microsoft Office Outlook | | Microsoft Office Outlook Desktop Icon Handler | |
| shwebsvc.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Windows Shell Web Services / Microsoft® Windows® Operating System | | Web Publishing Wizard | |
| colorui.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Microsoft Color Control Panel / Microsoft® Windows® Operating System | | ICM Scanner Management | |
| dsuiext.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Directory Service Common UI / Microsoft® Windows® Operating System | | Directory Property UI | |
| dsquery.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Directory Service Find / Microsoft® Windows® Operating System | | Directory Query UI | |
| rshx32.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Security Shell Extension / Microsoft® Windows® Operating System | | Printers Security Page | |
| ntshrui.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Shell extensions for sharing / Microsoft® Windows® Operating System | | Shell extensions for sharing | |
| printui.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Printer Settings User Interface / Microsoft® Windows® Operating System | | Web Printer Shell Extension | |
| dssec.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Directory Service Security UI / Microsoft® Windows® Operating System | | DS Security Page | |
| themeui.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Windows Theme API / Microsoft® Windows® Operating System | | PlusPack CPL Extension | |
| devmgr.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Device Manager MMC Snapin / Microsoft® Windows® Operating System | | Device Manager | |
| appwiz.cpl | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Shell Application Manager / Microsoft® Windows® Operating System | | Programs and Features | |
| diskcopy.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Windows DiskCopy / Microsoft® Windows® Operating System | | Disk Copy Extension | |
| mydocs.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | My Documents Folder UI / Microsoft® Windows® Operating System | | MyDocs Drop Target | |
| shell32.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16513 | Windows Shell Common Dll / Microsoft® Windows® Operating System | | Alphabetical Categorizer | |
| propsys.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Microsoft Property System / Microsoft® Windows® Operating System | | Office Document Property Handler | |
| occache.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 7.0.6000.16386 | Object Control Viewer / Windows® Internet Explorer | | ActiveX Cache Folder | |
| comdlg32.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Common Dialogs DLL / Microsoft® Windows® Operating System | | File Open Dialog | |
| dfshim.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 2.0.50727.1378 | Application Deployment Support Library / Microsoft® .NET Framework | | Shell Icon Handler for Application References | |
| oleprn.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Oleprn DLL / Microsoft® Windows® Operating System | | OlePrn.PrinterURL | |
| XPSSHHDR.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Package Document Shell Extension Handler / Microsoft® Windows® Operating System | | Microsoft XPS Properties | |
| wab32.dll | C:\Program Files\Common Files\System\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16480 | Microsoft (R) Contacts DLL / Microsoft® Windows® Operating System | | Windows Contact Preview Handler | |
| | C:\Program Files\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | | | | For People... | |
| cryptext.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Crypto Shell Extensions / Microsoft® Windows® Operating System | | Crypto PKO Extension | |
| acppage.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Compatibility Tab Shell Extension Library / Microsoft® Windows® Operating System | | Compatibility Property Page | |
| remotepg.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Remote Sessions CPL Extension / Microsoft® Windows® Operating System | | Remote Sessions CPL Extension | |
| extmgr.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 7.0.6000.16386 | Extensions Manager / Windows® Internet Explorer | | Extensions Manager Folder | |
| wshext.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 5.7.0.6000 | Microsoft (R) Shell Extension for Windows Script Host / Microsoft (R) Windows Script Host | | Shell extensions for Windows Script Host | |
| AgentPsh.dll | C:\Windows\MSAgent\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 5.2.3790.1241 | Microsoft Agent Property Sheet Handler | | Microsoft Agent Character Property Sheet Handler | |
| deskadp.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Advanced display adapter properties / Microsoft® Windows® Operating System | | Display Adapter CPL Extension | |
| deskmon.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Advanced display monitor properties / Microsoft® Windows® Operating System | | Display Monitor CPL Extension | |
| deskperf.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Advanced display performance properties / Microsoft® Windows® Operating System | | Display TroubleShoot CPL Extension | |
| docprop.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | OLE DocFile Property Page / Microsoft® Windows® Operating System | | OLE Docfile Property Page | |
| ExplorerFrame.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | ExplorerFrame / Microsoft® Windows® Operating System | | Execute Folder | |
| dskquoui.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Windows Shell Disk Quota UI DLL / Microsoft® Windows® Operating System | | Disk Quota UI | |
| fontext.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Windows Font Folder / Microsoft® Windows® Operating System | | Microsoft Windows Font Folder | |
| msieftp.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Microsoft Internet Explorer FTP Folder Shell Extension / Microsoft® Windows® Operating System | | FTP Folders Webview | |
| zipfldr.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Compressed (zipped) Folders / Microsoft® Windows® Operating System | | Compressed (zipped) Folder | |
| cabview.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Cabinet File Viewer Shell Extension / Microsoft® Windows® Operating System | | .CAB file viewer | |
| ntlanui2.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Network object shell UI / Microsoft® Windows® Operating System | | Shell extensions for Microsoft Windows Network objects | |
| DfsShlEx.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Distributed File System shell extension / Microsoft® Windows® Operating System | | DfsShell.DfsShell Property Sheet | |
| PhotoMetadataHandler.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Photo Metadata Handler / Microsoft® Windows® Operating System | | IPropertyStore Handler for Images | |
| NcdProp.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Advanced network device properties / Microsoft® Windows® Operating System | | Network Explorer Property Sheet Handler | |
| ole32.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Microsoft OLE for Windows / Microsoft® Windows® Operating System | | Bitmap Image | |
| mediametadatahandler.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Media Metadata Handler / Microsoft® Windows® Operating System | | Video Media Properties Handler | |
| wmpband.dll | C:\Program Files\Windows Media Player\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 11.0.6000.6324 | Windows Media Player Deskband / Microsoft® Windows® Operating System | | Windows Media Player | |
| emdmgmt.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.20620 | ReadyBoost Service / Microsoft® Windows® Operating System | | EMDFileProperties | |
| mssvp.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | MSSearch Vista Platform / Microsoft® Windows® Operating System | | MAPI Search Namespace Extension | |
| cscui.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Client Side Caching UI / Microsoft® Windows® Operating System | | Offline Files Folder | |
| SyncCenter.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Microsoft Sync Center / Microsoft® Windows® Operating System | | Sync Center Simple Conflict Presenter | |
| photowiz.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Photo Printing Wizard / Microsoft® Windows® Operating System | | DropTarget Object for Photo Printing Wizard | |
| audiodev.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Portable Media Devices Shell Extension / Microsoft® Windows® Operating System | | Portable Media Devices | |
| gameux.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16485 | Games Explorer / Microsoft® Windows® Operating System | | Games Folder | |
| wmpshell.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 11.0.6000.6324 | Windows Media Player Launcher / Microsoft® Windows® Operating System | | Windows Media Player Add to Playlist Context Menu Handler | |
| TouchX.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Microsoft Tablet PC Touch Input Component / Microsoft® Windows® Operating System | | Touch Band | |
| syncui.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Windows Briefcase / Microsoft® Windows® Operating System | | Briefcase | |
| twext.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Previous Versions property page / Microsoft® Windows® Operating System | | Previous Versions | |
| sdshext.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Microsoft® Windows Backup Shell Extension / Microsoft® Windows® Operating System | | File Backup Index | |
| wpdshext.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Portable Devices Shell Extension / Microsoft® Windows® Operating System | | Portable Devices Menu | |
| oobefldr.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Welcome Center / Microsoft® Windows® Operating System | | Welcome Center | |
| wlanpref.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.6000.16386 | Wireless Preferred Networks / Microsoft® Windows® Operating System | | Manage Wireless Networks | |
| SynTPCpl.dll | C:\Program Files\Synaptics\SynTP\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 9.1.3.5 | TouchPad Control Panel Extensions / Synaptics Pointing Device Driver | | Synaptics Control Panel | |
| BTNCopy.dll | C:\Windows\System32\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.0.1.4900 | BTNCopy Module / Bluetooth Software | | Monitor | |
| 7-zip.dll | C:\Program Files\ThinkVantage\SMA\7z\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 4.42.0.0 | | | 7-Zip Shell Extension | |
| OLKFSTUB.DLL | C:\Program Files\Microsoft Office\Office12\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 12.0.4518.1014 | Outlook Shell Hook for Start/Find / Microsoft Office Outlook | | Microsoft Office Outlook Custom Icon Handler | |
| ONFILTER.DLL | C:\Program Files\Microsoft Office\Office12\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 12.0.4518.1014 | Microsoft Office OneNote Filter / Microsoft Office OneNote | | Microsoft Office OneNote Namespace Extension for Windows Desktop Search | |
| MSOHEVI.DLL | C:\Program Files\Microsoft Office\Office12\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 12.0.4518.1014 | 2007 Microsoft Office component / 2007 Microsoft Office system | | Microsoft Office HTML Icon Handler | |
| msoshext.dll | C:\Program Files\Common Files\microsoft shared\OFFICE12\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 12.0.4518.1014 | Microsoft Office Shell Extension Handlers / Microsoft Office | | Microsoft Office Metadata Handler | |
| fsshext.8.1.0178.00.dll | C:\Program Files\MSN Messenger\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 8.1.178.0 | Messenger File Sharing Shell Extensions / Messenger | | Messenger Sharing Folders | |
| isoshell.dll | C:\Program Files\UltraISO\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 1.0.0.2 | ISOShell | | UltraISO | |
| ipcplwir.dll | C:\Program Files\Microsoft IntelliPoint\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.10.156.0 | ipcplwir.dll / Microsoft IntelliPoint | | IntelliPoint Wireless Control Panel Property Page | |
| ipcplwhl.dll | C:\Program Files\Microsoft IntelliPoint\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.10.156.0 | ipcplwhl.dll / Microsoft IntelliPoint | | IntelliPoint Wheel Control Panel Property Page | |
| ipcplact.dll | C:\Program Files\Microsoft IntelliPoint\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.10.156.0 | ipcplact.dll / Microsoft IntelliPoint | | IntelliPoint Activities Control Panel Property Page | |
| ipcplbtn.dll | C:\Program Files\Microsoft IntelliPoint\ | HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | 6.10.156.0 | ipcplbtn.dll / Microsoft IntelliPoint | | IntelliPoint Buttons Control Panel Property Page | |
| BTTray.exe | C:\Program Files\ThinkPad\Bluetooth Software\ | C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ | 6.0.1.4900 | Bluetooth Tray Application / Bluetooth Software | Running | Bluetooth start-up shortcut | Bluetooth.lnk |
| DLG.exe | C:\Program Files\Digital Line Detect\ | C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ | 1.0.0.2 | Digital Line Detection | Running | | Digital Line Detect.lnk |
| Icon3E5562ED7.ico | C:\Windows\Installer\{CCBAA1F7-E5E1-48B2-9ED9-A79C6A37CE78}\ | C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ | | | | Cisco Systems Inc. VPN Client | VPN Client.lnk |
| BTTray.exe | C:\Program Files\ThinkPad\Bluetooth Software\ | C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ | 6.0.1.4900 | Bluetooth Tray Application / Bluetooth Software | Running | Bluetooth start-up shortcut | Bluetooth.lnk |
| DLG.exe | C:\Program Files\Digital Line Detect\ | C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ | 1.0.0.2 | Digital Line Detection | Running | | Digital Line Detect.lnk |
| Icon3E5562ED7.ico | C:\Windows\Installer\{CCBAA1F7-E5E1-48B2-9ED9-A79C6A37CE78}\ | C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ | | | | Cisco Systems Inc. VPN Client | VPN Client.lnk |
| AcroIEHelper.dll | C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\ | {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} | | BHO: Adobe PDF Reader Link Helper | | | |
| jccatch.dll | C:\Program Files\FlashGet\ | {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} | | BHO: FGCatchUrl | | | |
| roboform.dll | C:\Program Files\Siber Systems\AI RoboForm\ | {724d43a9-0d85-11d4-9908-00400523e39a} | | BHO: <unknown> | | | |
| GrooveShellExtensions.dll | C:\Program Files\Microsoft Office\Office12\ | {72853161-30C5-4D22-B7F9-0BBC1D38A37E} | | BHO: Groove GFS Browser Helper | | | |
| WindowsLiveLogin.dll | C:\Program Files\Common Files\Microsoft Shared\Windows Live\ | {9030D464-4C02-4ABF-8ECC-5164760863C6} | | BHO: Windows Live Sign-in Helper | | | |
| Microsoft.VisualStudio.QualityTools.RecorderBarBHO90.dll | C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\PrivateAssemblies\ | {E31CE47F-C268-41ba-897B-B415E613947D} | | BHO: Microsoft Web Test Recorder 9.0 Helper | | | |
| tvtpwm_ie_com.dll | C:\Program Files\Lenovo\Client Security Solution\ | {F040E541-A427-4CF7-85D8-75E3E0F476C5} | | BHO: CPwmIEBrowserHelper Object | | | |
| getflash.dll | C:\Program Files\FlashGet\ | {F156768E-81EF-470C-9057-481BA8380DBA} | | BHO: FlashGet GetFlash Class | | | |
| Top |
Open Ports
| Protocol | Program [PID] | State | Local Address | Port | Remote Address | Remote Port | Path and File | Description |
| [TCP] | svchost.exe [1008] | Listening | 0.0.0.0 (GABRIEL-PC) | 135 epmap | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [TCP] | svchost.exe [900] | Listening | 0.0.0.0 (GABRIEL-PC) | 990 ftps | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [TCP] | vssrvc.exe [2736] | Listening | 0.0.0.0 (GABRIEL-PC) | 5900 | 0.0.0.0 | 0 | C:\Program Files\Microsoft Virtual Server\vssrvc.exe | Virtual Server 2005 R2 SP1 Service / Microsoft Virtual Server 2005 R2 SP1 |
| [TCP] | tvttcsd.exe [2316] | Listening | 0.0.0.0 (GABRIEL-PC) | 6060 | 0.0.0.0 | 0 | C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe | tvttcsd Application / TSS Core Service |
| [TCP] | flashget.exe [1900] | Listening | 0.0.0.0 (GABRIEL-PC) | 10361 | 0.0.0.0 | 0 | C:\Program Files\FlashGet\flashget.exe | FlashGet |
| [TCP] | wininit.exe [668] | Listening | 0.0.0.0 (GABRIEL-PC) | 49152 | 0.0.0.0 | 0 | C:\Windows\System32\wininit.exe | Windows Start-Up Application / Microsoft® Windows® Operating System |
| [TCP] | svchost.exe [1120] | Listening | 0.0.0.0 (GABRIEL-PC) | 49153 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [TCP] | svchost.exe [1380] | Listening | 0.0.0.0 (GABRIEL-PC) | 49154 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [TCP] | svchost.exe [1208] | Listening | 0.0.0.0 (GABRIEL-PC) | 49155 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [TCP] | lsass.exe [768] | Listening | 0.0.0.0 (GABRIEL-PC) | 49156 | 0.0.0.0 | 0 | C:\Windows\System32\lsass.exe | Local Security Authority Process / Microsoft® Windows® Operating System |
| [TCP] | services.exe [712] | Listening | 0.0.0.0 (GABRIEL-PC) | 49157 | 0.0.0.0 | 0 | C:\Windows\System32\services.exe | Services and Controller app / Microsoft® Windows® Operating System |
| [TCP] | svchost.exe [900] | Listening | 127.0.0.1 (localhost) | 5679 dccm | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [TCP] | svchost.exe [900] | Listening | 127.0.0.1 (localhost) | 7438 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [TCP] | cvpnd.exe [380] | Listening | 127.0.0.1 (localhost) | 62514 | 0.0.0.0 | 0 | C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe | Cisco Systems VPN Client |
| [TCP] | System [4] | Listening | 192.168.2.85 (Gabriel-PC.WORKGROUP) | 139 netbios-ssn | 0.0.0.0 | 0 | <file not found> | |
| [TCP] | msnmsgr.exe [2024] | Established | 192.168.2.85 (Gabriel-PC.WORKGROUP) | 49205 | 207.46.106.80 (by1msg2275506.phx.gbl) | 1863 msnp | C:\Program Files\MSN Messenger\msnmsgr.exe | Messenger |
| [TCP] | flashget.exe [1900] | Established | 192.168.2.85 (Gabriel-PC.WORKGROUP) | 53787 | 59.151.31.139 | 53 domain | C:\Program Files\FlashGet\flashget.exe | FlashGet |
| [TCP] | flashget.exe [1900] | Established | 192.168.2.85 (Gabriel-PC.WORKGROUP) | 53798 | 59.151.31.139 | 53 domain | C:\Program Files\FlashGet\flashget.exe | FlashGet |
| [TCP] | flashget.exe [1900] | SYN Sent | 192.168.2.85 (Gabriel-PC.WORKGROUP) | 53802 | 60.28.197.35 | 28221 | C:\Program Files\FlashGet\flashget.exe | FlashGet |
| [TCP] | flashget.exe [1900] | SYN Sent | 192.168.2.85 (Gabriel-PC.WORKGROUP) | 53803 | 72.51.37.237 | 8899 | C:\Program Files\FlashGet\flashget.exe | FlashGet |
| [TCP] | flashget.exe [1900] | SYN Sent | 192.168.2.85 (Gabriel-PC.WORKGROUP) | 53804 | 66.199.250.170 (66-199-250-170.reverse.ezzi.net) | 8911 | C:\Program Files\FlashGet\flashget.exe | FlashGet |
| [TCP6] | System [4] | Listening | 0.0.0.0 (GABRIEL-PC) | 80 | 0.0.0.0 | 0 | <file not found> | |
| [TCP6] | svchost.exe [1008] | Listening | 0.0.0.0 (GABRIEL-PC) | 135 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [TCP6] | System [4] | Listening | 0.0.0.0 (GABRIEL-PC) | 445 | 0.0.0.0 | 0 | <file not found> | |
| [TCP6] | svchost.exe [900] | Listening | 0.0.0.0 (GABRIEL-PC) | 990 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [TCP6] | System [4] | Listening | 0.0.0.0 (GABRIEL-PC) | 2869 | 0.0.0.0 | 0 | <file not found> | |
| [TCP6] | System [4] | Listening | 0.0.0.0 (GABRIEL-PC) | 5357 | 0.0.0.0 | 0 | <file not found> | |
| [TCP6] | wininit.exe [668] | Listening | 0.0.0.0 (GABRIEL-PC) | 49152 | 0.0.0.0 | 0 | C:\Windows\System32\wininit.exe | Windows Start-Up Application / Microsoft® Windows® Operating System |
| [TCP6] | svchost.exe [1120] | Listening | 0.0.0.0 (GABRIEL-PC) | 49153 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [TCP6] | svchost.exe [1380] | Listening | 0.0.0.0 (GABRIEL-PC) | 49154 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [TCP6] | svchost.exe [1208] | Listening | 0.0.0.0 (GABRIEL-PC) | 49155 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [TCP6] | lsass.exe [768] | Listening | 0.0.0.0 (GABRIEL-PC) | 49156 | 0.0.0.0 | 0 | C:\Windows\System32\lsass.exe | Local Security Authority Process / Microsoft® Windows® Operating System |
| [TCP6] | services.exe [712] | Listening | 0.0.0.0 (GABRIEL-PC) | 49157 | 0.0.0.0 | 0 | C:\Windows\System32\services.exe | Services and Controller app / Microsoft® Windows® Operating System |
| [TCP6] | svchost.exe [900] | Listening | 0.0.0.0 (GABRIEL-PC) | 5679 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP] | svchost.exe [1380] | | 0.0.0.0 (GABRIEL-PC) | 123 ntp | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP] | svchost.exe [1208] | | 0.0.0.0 (GABRIEL-PC) | 500 isakmp | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP] | svchost.exe [1380] | | 0.0.0.0 (GABRIEL-PC) | 3702 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP] | svchost.exe [1380] | | 0.0.0.0 (GABRIEL-PC) | 3702 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP] | svchost.exe [1208] | | 0.0.0.0 (GABRIEL-PC) | 4500 ipsec-msft | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP] | svchost.exe [1516] | | 0.0.0.0 (GABRIEL-PC) | 5355 llmnr | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP] | flashget.exe [1900] | | 0.0.0.0 (GABRIEL-PC) | 10361 | 0.0.0.0 | 0 | C:\Program Files\FlashGet\flashget.exe | FlashGet |
| [UDP] | flashget.exe [1900] | | 0.0.0.0 (GABRIEL-PC) | 10362 | 0.0.0.0 | 0 | C:\Program Files\FlashGet\flashget.exe | FlashGet |
| [UDP] | svchost.exe [1380] | | 0.0.0.0 (GABRIEL-PC) | 49156 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP] | flashget.exe [1900] | | 0.0.0.0 (GABRIEL-PC) | 49178 | 0.0.0.0 | 0 | C:\Program Files\FlashGet\flashget.exe | FlashGet |
| [UDP] | svchost.exe [1380] | | 127.0.0.1 (localhost) | 1900 ssdp | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP] | flashget.exe [1900] | | 127.0.0.1 (localhost) | 49179 | 0.0.0.0 | 0 | C:\Program Files\FlashGet\flashget.exe | FlashGet |
| [UDP] | svchost.exe [1208] | | 127.0.0.1 (localhost) | 49185 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP] | msnmsgr.exe [2024] | | 127.0.0.1 (localhost) | 49187 | 0.0.0.0 | 0 | C:\Program Files\MSN Messenger\msnmsgr.exe | Messenger |
| [UDP] | msnmsgr.exe [2024] | | 127.0.0.1 (localhost) | 49204 | 0.0.0.0 | 0 | C:\Program Files\MSN Messenger\msnmsgr.exe | Messenger |
| [UDP] | svchost.exe [1380] | | 127.0.0.1 (localhost) | 49256 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP] | OUTLOOK.EXE [4768] | | 127.0.0.1 (localhost) | 49264 | 0.0.0.0 | 0 | C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE | Microsoft Office Outlook |
| [UDP] | devenv.exe [3128] | | 127.0.0.1 (localhost) | 49758 | 0.0.0.0 | 0 | C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\devenv.exe | Microsoft Visual Studio 2008 / Microsoft® Visual Studio® 2008 |
| [UDP] | cvpnd.exe [380] | | 127.0.0.1 (localhost) | 62514 | 0.0.0.0 | 0 | C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe | Cisco Systems VPN Client |
| [UDP] | msnmsgr.exe [2024] | | 192.168.2.85 (Gabriel-PC.WORKGROUP) | 9 discard | 0.0.0.0 | 0 | C:\Program Files\MSN Messenger\msnmsgr.exe | Messenger |
| [UDP] | System [4] | | 192.168.2.85 (Gabriel-PC.WORKGROUP) | 137 netbios-ns | 0.0.0.0 | 0 | <file not found> | |
| [UDP] | System [4] | | 192.168.2.85 (Gabriel-PC.WORKGROUP) | 138 netbios-dgm | 0.0.0.0 | 0 | <file not found> | |
| [UDP] | svchost.exe [1380] | | 192.168.2.85 (Gabriel-PC.WORKGROUP) | 1900 ssdp | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP] | msnmsgr.exe [2024] | | 192.168.2.85 (Gabriel-PC.WORKGROUP) | 10619 | 0.0.0.0 | 0 | C:\Program Files\MSN Messenger\msnmsgr.exe | Messenger |
| [UDP] | svchost.exe [1380] | | 192.168.2.85 (Gabriel-PC.WORKGROUP) | 49255 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1380] | | 204.204.204.204 | 123 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1208] | | 204.204.204.204 | 500 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1380] | | 204.204.204.204 | 3702 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1380] | | 204.204.204.204 | 3702 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1516] | | 204.204.204.204 | 5355 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1380] | | 204.204.204.204 | 49157 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1380] | | 204.204.204.204 | 1900 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1380] | | 204.204.204.204 | 49253 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1380] | | 204.204.204.204 | 1900 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1380] | | 204.204.204.204 | 49254 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1380] | | 204.204.204.204 | 1900 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1380] | | 204.204.204.204 | 49251 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1380] | | 204.204.204.204 | 1900 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |
| [UDP6] | svchost.exe [1380] | | 204.204.204.204 | 49252 | 0.0.0.0 | 0 | C:\Windows\System32\svchost.exe | Host Process for Windows Services / Microsoft® Windows® Operating System |