Top Runs Differences at: 2024-10-06 17.55.29
remark :
runtime : 29
count : 7
previous date : 2024-10-05
previous time : 17.55.30
users - local groups - Administratörer
old: Member : amandabackup
old: Member : carina
old: Member : Domain Admins
users - local groups - Ansvariga för säkerhetskopiering
old: Member : amandabackup
users - local groups - Användare
old: Member : amandabackup
old: Member : Domain Users
users - local groups - Device Administrators
old: Member : Domain Admins
Top Runs Differences at: 2024-10-05 17.55.30
remark :
runtime : 27
count : 8
previous date : 2024-10-04
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 129.0.2792.65
new: Version : 129.0.2792.79
software - product - Microsoft Edge Update
old: Version : 1.3.195.21
new: Version : 1.3.195.25
software - product - Microsoft Edge WebView2 Runtime
old: Version : 129.0.2792.65
new: Version : 129.0.2792.79
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\129.0.2792.65\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\129.0.2792.79\elevation_service.exe"
Top Runs Differences at: 2024-10-04 17.55.30
remark :
runtime : 23
count : 4
previous date : 2024-10-03
previous time : 17.55.30
software - product - Google Chrome
old: Version : 129.0.6668.72
new: Version : 129.0.6668.90
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\129.0.6668.72\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\129.0.6668.90\elevation_service.exe"
Top Runs Differences at: 2024-10-03 17.55.30
remark :
runtime : 33
count : 4
previous date : 2024-10-02
previous time : 17.55.30
software - product - Google Chrome
old: Version : 129.0.6668.71
new: Version : 129.0.6668.72
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\129.0.6668.71\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\129.0.6668.72\elevation_service.exe"
Top Runs Differences at: 2024-09-29 17.56.01
remark :
runtime : 139
count : 163
previous date : 2024-09-28
previous time : 17.55.31
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1108\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\leif
new:
new: Command : C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe --startup_mode
new: Description : GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
boot - startup - OneDrive
new: Command : "C:\Users\leif.CORP\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
new: Description : OneDrive
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1108\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : OneDrive
new: SettingID :
new: User : CORP\leif
new:
software - product - Microsoft Edge
old: Version : 129.0.2792.52
new: Version : 129.0.2792.65
system - services - survey
new: AarSvc_74570ef Manual Unknown Agent Activation Runtime_74570ef
new: BcastDVRUserService_74570ef Manual Unknown Användartjänst för Spel-DVR och sändning_74570ef
new: BluetoothUserService_74570ef Manual Unknown Bluetooth User Support Service_74570ef
new: CaptureService_74570ef Manual Unknown CaptureService_74570ef
new: cbdhsvc_74570ef Manual Unknown Clipboard User Service_74570ef
new: CDPUserSvc_74570ef Auto Unknown Connected Devices Platform User Service_74570ef
new: ConsentUxUserSvc_74570ef Manual Unknown ConsentUX_74570ef
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_74570ef
new: DeviceAssociationBrokerSvc_745 Manual Unknown DeviceAssociationBroker_74570ef
new: DevicePickerUserSvc_74570ef Manual Unknown DevicePicker_74570ef
new: DevicesFlowUserSvc_74570ef Manual Unknown DevicesFlow_74570ef
new: MessagingService_74570ef Manual Unknown MessagingService_74570ef
new: OneSyncSvc_74570ef Auto Unknown Synkroniseringsvärd_74570ef
new: PimIndexMaintenanceSvc_74570ef Manual Unknown Contact Data_74570ef
new: PrintWorkflowUserSvc_74570ef Manual Unknown PrintWorkflow_74570ef
new: UdkUserSvc_74570ef Manual Unknown Udk-användartjänst_74570ef
new: UnistoreSvc_74570ef Manual Unknown User Data Storage_74570ef
new: UserDataSvc_74570ef Manual Unknown User Data Access_74570ef
new: WpnUserService_74570ef Auto Unknown Windows Push Notifications User Service_74570ef
system - services - AarSvc_74570ef
new: DisplayName : Agent Activation Runtime_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_74570ef
new: DisplayName : Användartjänst för Spel-DVR och sändning_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_74570ef
new: DisplayName : Bluetooth User Support Service_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_74570ef
new: DisplayName : CaptureService_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_74570ef
new: DisplayName : Clipboard User Service_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_74570ef
new: DisplayName : Connected Devices Platform User Service_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_74570ef
new: DisplayName : ConsentUX_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_74570ef
new: DisplayName : CredentialEnrollmentManagerUserSvc_74570ef
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_74570ef
new: DisplayName : DeviceAssociationBroker_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_74570ef
new: DisplayName : DevicePicker_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_74570ef
new: DisplayName : DevicesFlow_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_74570ef
new: DisplayName : MessagingService_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\129.0.2792.52\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\129.0.2792.65\elevation_service.exe"
system - services - OneSyncSvc_74570ef
new: DisplayName : Synkroniseringsvärd_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_74570ef
new: DisplayName : Contact Data_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_74570ef
new: DisplayName : PrintWorkflow_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_74570ef
new: DisplayName : Udk-användartjänst_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_74570ef
new: DisplayName : User Data Storage_74570ef
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_74570ef
new: DisplayName : User Data Access_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_74570ef
new: DisplayName : Windows Push Notifications User Service_74570ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-09-28 17.55.31
remark :
runtime : 24
count : 2
previous date : 2024-09-27
previous time : 17.55.31
software - product - Microsoft Edge WebView2 Runtime
old: Version : 129.0.2792.52
new: Version : 129.0.2792.65
Top Runs Differences at: 2024-09-27 17.55.31
remark :
runtime : 131
count : 6
previous date : 2024-09-26
previous time : 17.55.31
software - product - Google Chrome
old: Version : 129.0.6668.60
new: Version : 129.0.6668.71
software - product - Microsoft Edge Update
old: Version : 1.3.195.19
new: Version : 1.3.195.21
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\129.0.6668.60\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\129.0.6668.71\elevation_service.exe"
Top Runs Differences at: 2024-09-26 17.55.31
remark :
runtime : 53
count : 4
previous date : 2024-09-25
previous time : 17.55.33
software - product - Google Chrome
old: Version : 129.0.6668.59
new: Version : 129.0.6668.60
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\129.0.6668.59\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\129.0.6668.60\elevation_service.exe"
Top Runs Differences at: 2024-09-25 17.55.33
remark :
runtime : 55
count : 178
previous date : 2024-09-25
previous time : 04.22.03
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Citrix XenCenter
new: Version : 7.6.0
new: Publisher : Citrix Systems, Inc.
new: ParentKey :
new: Install Location :
new: Windows Installer : 0x00000001
software - product - PuTTY release 0.81 (64-bit)
new: Version : 0.81.0.0
new: Publisher : Simon Tatham
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: Windows Installer : 0x00000001
system - services - survey
new: AarSvc_bfa11f Manual Unknown Agent Activation Runtime_bfa11f
new: BcastDVRUserService_bfa11f Manual Unknown Användartjänst för Spel-DVR och sändning_bfa11f
new: BluetoothUserService_bfa11f Manual Unknown Bluetooth User Support Service_bfa11f
new: CaptureService_bfa11f Manual Unknown CaptureService_bfa11f
new: cbdhsvc_bfa11f Manual Unknown Clipboard User Service_bfa11f
new: CDPUserSvc_bfa11f Auto Unknown Connected Devices Platform User Service_bfa11f
new: ConsentUxUserSvc_bfa11f Manual Unknown ConsentUX_bfa11f
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_bfa11f
new: DeviceAssociationBrokerSvc_bfa Manual Unknown DeviceAssociationBroker_bfa11f
new: DevicePickerUserSvc_bfa11f Manual Unknown DevicePicker_bfa11f
new: DevicesFlowUserSvc_bfa11f Manual Unknown DevicesFlow_bfa11f
new: MessagingService_bfa11f Manual Unknown MessagingService_bfa11f
new: OneSyncSvc_bfa11f Auto Unknown Synkroniseringsvärd_bfa11f
new: PimIndexMaintenanceSvc_bfa11f Manual Unknown Contact Data_bfa11f
new: PrintWorkflowUserSvc_bfa11f Manual Unknown PrintWorkflow_bfa11f
new: UdkUserSvc_bfa11f Manual Unknown Udk-användartjänst_bfa11f
new: UnistoreSvc_bfa11f Manual Unknown User Data Storage_bfa11f
new: UserDataSvc_bfa11f Manual Unknown User Data Access_bfa11f
new: WpnUserService_bfa11f Auto Unknown Windows Push Notifications User Service_bfa11f
new: XenServerHealthCheck Auto Own Process Citrix XenServer Health Check Service
system - services - AarSvc_bfa11f
new: DisplayName : Agent Activation Runtime_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_bfa11f
new: DisplayName : Användartjänst för Spel-DVR och sändning_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_bfa11f
new: DisplayName : Bluetooth User Support Service_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_bfa11f
new: DisplayName : CaptureService_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_bfa11f
new: DisplayName : Clipboard User Service_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_bfa11f
new: DisplayName : Connected Devices Platform User Service_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_bfa11f
new: DisplayName : ConsentUX_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_bfa11f
new: DisplayName : CredentialEnrollmentManagerUserSvc_bfa11f
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_bfa11f
new: DisplayName : DeviceAssociationBroker_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_bfa11f
new: DisplayName : DevicePicker_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_bfa11f
new: DisplayName : DevicesFlow_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_bfa11f
new: DisplayName : MessagingService_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_bfa11f
new: DisplayName : Synkroniseringsvärd_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_bfa11f
new: DisplayName : Contact Data_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_bfa11f
new: DisplayName : PrintWorkflow_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_bfa11f
new: DisplayName : Udk-användartjänst_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_bfa11f
new: DisplayName : User Data Storage_bfa11f
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_bfa11f
new: DisplayName : User Data Access_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_bfa11f
new: DisplayName : Windows Push Notifications User Service_bfa11f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - XenServerHealthCheck
new: DisplayName : Citrix XenServer Health Check Service
new: PathName : "C:\Program Files (x86)\Citrix\XenServerHealthCheckService\XenServerHealthCheck.exe"
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2024-09-25 04.22.03
remark :
runtime : 28
count : 195
previous date : 2024-09-24
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5043064
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5043130
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5043131
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_b921bcf Manual Unknown Agent Activation Runtime_b921bcf
old: BcastDVRUserService_b921bcf Manual Unknown Användartjänst för Spel-DVR och sändning_b921bcf
old: BluetoothUserService_b921bcf Manual Unknown Bluetooth User Support Service_b921bcf
old: CaptureService_b921bcf Manual Unknown CaptureService_b921bcf
old: cbdhsvc_b921bcf Manual Unknown Clipboard User Service_b921bcf
old: CDPUserSvc_b921bcf Auto Unknown Connected Devices Platform User Service_b921bcf
old: ConsentUxUserSvc_b921bcf Manual Unknown ConsentUX_b921bcf
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_b921bcf
old: DeviceAssociationBrokerSvc_b92 Manual Unknown DeviceAssociationBroker_b921bcf
old: DevicePickerUserSvc_b921bcf Manual Unknown DevicePicker_b921bcf
old: DevicesFlowUserSvc_b921bcf Manual Unknown DevicesFlow_b921bcf
old: MessagingService_b921bcf Manual Unknown MessagingService_b921bcf
old: OneSyncSvc_b921bcf Auto Unknown Synkroniseringsvärd_b921bcf
old: PimIndexMaintenanceSvc_b921bcf Manual Unknown Contact Data_b921bcf
old: PrintWorkflowUserSvc_b921bcf Manual Unknown PrintWorkflow_b921bcf
old: UdkUserSvc_b921bcf Manual Unknown Udk-användartjänst_b921bcf
old: UnistoreSvc_b921bcf Manual Unknown User Data Storage_b921bcf
old: UserDataSvc_b921bcf Manual Unknown User Data Access_b921bcf
old: WpnUserService_b921bcf Auto Unknown Windows Push Notifications User Service_b921bcf
system - services - AarSvc_b921bcf
old: DisplayName : Agent Activation Runtime_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_b921bcf
old: DisplayName : Användartjänst för Spel-DVR och sändning_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_b921bcf
old: DisplayName : Bluetooth User Support Service_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_b921bcf
old: DisplayName : CaptureService_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_b921bcf
old: DisplayName : Clipboard User Service_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_b921bcf
old: DisplayName : Connected Devices Platform User Service_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_b921bcf
old: DisplayName : ConsentUX_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_b921bcf
old: DisplayName : CredentialEnrollmentManagerUserSvc_b921bcf
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_b921bcf
old: DisplayName : DeviceAssociationBroker_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_b921bcf
old: DisplayName : DevicePicker_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_b921bcf
old: DisplayName : DevicesFlow_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_b921bcf
old: DisplayName : MessagingService_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_b921bcf
old: DisplayName : Synkroniseringsvärd_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_b921bcf
old: DisplayName : Contact Data_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_b921bcf
old: DisplayName : PrintWorkflow_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_b921bcf
old: DisplayName : Udk-användartjänst_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_b921bcf
old: DisplayName : User Data Storage_b921bcf
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_b921bcf
old: DisplayName : User Data Access_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_b921bcf
old: DisplayName : Windows Push Notifications User Service_b921bcf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\Application Experience\PcaWallpaperAppDetect
new: Logon Mode : Interactive/Background
new: Task To Run : %windir%\system32\rundll32.exe %windir%\system32\PcaSvc.dll,PcaWallpaperAppDetect
new: Start In : N/A
new: Comment : Detect 3rd party wallpaper apps
new: Idle Time : Disabled
new: Power Management :
new: Run As User : Interaktiv
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 24:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
new: Repeat: Every : 72 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
system - scheduled tasks - \Microsoft\Windows\Clip\ClipESU
new: Logon Mode : Interactive/Background
new: Task To Run : %SystemRoot%\system32\clipesu.exe
new: Start In : N/A
new: Comment : ClipESU
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : Disabled
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2024-09-24 17.55.30
remark :
runtime : 21
count : 6
previous date : 2024-09-23
previous time : 17.55.30
software - product - Google Chrome
old: Version : 129.0.6668.58
new: Version : 129.0.6668.59
software - product - Microsoft Edge WebView2 Runtime
old: Version : 128.0.2739.79
new: Version : 129.0.2792.52
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\129.0.6668.58\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\129.0.6668.59\elevation_service.exe"
Top Runs Differences at: 2024-09-21 17.55.30
remark :
runtime : 22
count : 4
previous date : 2024-09-20
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 128.0.2739.79
new: Version : 129.0.2792.52
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\128.0.2739.79\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\129.0.2792.52\elevation_service.exe"
Top Runs Differences at: 2024-09-20 17.55.30
remark :
runtime : 45
count : 16
previous date : 2024-09-19
previous time : 17.55.59
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Google Chrome
old: Version : 128.0.6613.138
new: Version : 129.0.6668.58
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.138\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\129.0.6668.58\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-09-19 17.55.59
remark :
runtime : 61
count : 28
previous date : 2024-09-18
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe --startup_mode
old: User : CORP\administrator
new: User : CORP\Administrator
old: Command : C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 96.0.0.0
new: Version : 97.0.1.0
old: Install Location : C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-09-18 17.55.30
remark :
runtime : 20
count : 176
previous date : 2024-09-17
previous time : 17.55.30
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - JMRI - Java Model Railroad Interface
old: Version : 5.8+Rbc21ce2ce7
new: Version : 5.9.4+R7726763089
system - services - survey
new: AarSvc_b921bcf Manual Unknown Agent Activation Runtime_b921bcf
new: BcastDVRUserService_b921bcf Manual Unknown Användartjänst för Spel-DVR och sändning_b921bcf
new: BluetoothUserService_b921bcf Manual Unknown Bluetooth User Support Service_b921bcf
new: CaptureService_b921bcf Manual Unknown CaptureService_b921bcf
new: cbdhsvc_b921bcf Manual Unknown Clipboard User Service_b921bcf
new: CDPUserSvc_b921bcf Auto Unknown Connected Devices Platform User Service_b921bcf
new: ConsentUxUserSvc_b921bcf Manual Unknown ConsentUX_b921bcf
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_b921bcf
new: DeviceAssociationBrokerSvc_b92 Manual Unknown DeviceAssociationBroker_b921bcf
new: DevicePickerUserSvc_b921bcf Manual Unknown DevicePicker_b921bcf
new: DevicesFlowUserSvc_b921bcf Manual Unknown DevicesFlow_b921bcf
new: MessagingService_b921bcf Manual Unknown MessagingService_b921bcf
new: OneSyncSvc_b921bcf Auto Unknown Synkroniseringsvärd_b921bcf
new: PimIndexMaintenanceSvc_b921bcf Manual Unknown Contact Data_b921bcf
new: PrintWorkflowUserSvc_b921bcf Manual Unknown PrintWorkflow_b921bcf
new: UdkUserSvc_b921bcf Manual Unknown Udk-användartjänst_b921bcf
new: UnistoreSvc_b921bcf Manual Unknown User Data Storage_b921bcf
new: UserDataSvc_b921bcf Manual Unknown User Data Access_b921bcf
new: WpnUserService_b921bcf Auto Unknown Windows Push Notifications User Service_b921bcf
system - services - AarSvc_b921bcf
new: DisplayName : Agent Activation Runtime_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_b921bcf
new: DisplayName : Användartjänst för Spel-DVR och sändning_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_b921bcf
new: DisplayName : Bluetooth User Support Service_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_b921bcf
new: DisplayName : CaptureService_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_b921bcf
new: DisplayName : Clipboard User Service_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_b921bcf
new: DisplayName : Connected Devices Platform User Service_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_b921bcf
new: DisplayName : ConsentUX_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_b921bcf
new: DisplayName : CredentialEnrollmentManagerUserSvc_b921bcf
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_b921bcf
new: DisplayName : DeviceAssociationBroker_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_b921bcf
new: DisplayName : DevicePicker_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_b921bcf
new: DisplayName : DevicesFlow_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MDCoreSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpDefenderCoreService.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpDefenderCoreService.exe"
system - services - MessagingService_b921bcf
new: DisplayName : MessagingService_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_b921bcf
new: DisplayName : Synkroniseringsvärd_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_b921bcf
new: DisplayName : Contact Data_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_b921bcf
new: DisplayName : PrintWorkflow_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_b921bcf
new: DisplayName : Udk-användartjänst_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_b921bcf
new: DisplayName : User Data Storage_b921bcf
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_b921bcf
new: DisplayName : User Data Access_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MsMpEng.exe"
system - services - WpnUserService_b921bcf
new: DisplayName : Windows Push Notifications User Service_b921bcf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2024-09-15 17.55.30
remark :
runtime : 26
count : 16
previous date : 2024-09-14
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Microsoft Edge
old: Version : 128.0.2739.67
new: Version : 128.0.2739.79
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\128.0.2739.67\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\128.0.2739.79\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-09-14 17.55.30
remark :
runtime : 20
count : 56
previous date : 2024-09-13
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Microsoft Edge WebView2 Runtime
old: Version : 128.0.2739.67
new: Version : 128.0.2739.79
system - services - survey
old: GoogleUpdaterInternalService13 Auto Own Process GoogleUpdater InternalService 130.0.6679.0 (GoogleUpdaterInt
old: GoogleUpdaterService130.0.6679 Auto Own Process GoogleUpdater Service 130.0.6679.0 (GoogleUpdaterService130.
new: GoogleUpdaterService130.0.6679 Auto Own Process GoogleUpdater Service 130.0.6679.2 (GoogleUpdaterService130.
system - services - GoogleUpdaterInternalService130.0.6679.0
old: DisplayName : GoogleUpdater InternalService 130.0.6679.0 (GoogleUpdaterInternalService130.0.6679.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe" --system --windows-service --service=update-internal
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService130.0.6679.0
old: DisplayName : GoogleUpdater Service 130.0.6679.0 (GoogleUpdaterService130.0.6679.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe" --system --windows-service --service=update
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService130.0.6679.2
new: DisplayName : GoogleUpdater Service 130.0.6679.2 (GoogleUpdaterService130.0.6679.2)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.2\updater.exe" --system --windows-service --service=update
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - RpcSs
old: Required by : GoogleUpdaterInternalService130.0.6679.0
old: Required by : GoogleUpdaterService130.0.6679.0
new: Required by : GoogleUpdaterService130.0.6679.2
system - services - GoogleUpdaterInternalService130.0.6679.0
old: Requires : RpcSs
system - services - GoogleUpdaterService130.0.6679.0
old: Requires : RpcSs
system - services - GoogleUpdaterService130.0.6679.2
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{FED21B61-BEE7-411E-A63D-9CED355227BA}
old: Logon Mode : Interactive/Background
old: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe" --wake --system
old: Start In : N/A
old: Comment : GoogleUpdater Task System 130.0.6679.0
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : Every 1 day(s)
old: Months : N/A
old: Repeat: Every : 1 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
old: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-09-13 17.55.30
remark :
runtime : 21
count : 28
previous date : 2024-09-12
previous time : 17.55.30
software - product - Google Chrome
old: Version : 128.0.6613.121
new: Version : 128.0.6613.138
system - services - survey
new: GoogleUpdaterInternalService13 Auto Own Process GoogleUpdater InternalService 130.0.6679.2 (GoogleUpdaterInt
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.121\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.138\elevation_service.exe"
system - services - GoogleUpdaterInternalService130.0.6679.2
new: DisplayName : GoogleUpdater InternalService 130.0.6679.2 (GoogleUpdaterInternalService130.0.6679.2)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.2\updater.exe" --system --windows-service --service=update-internal
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - RpcSs
new: Required by : GoogleUpdaterInternalService130.0.6679.2
system - services - GoogleUpdaterInternalService130.0.6679.2
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.2{D46E7A92-36E0-46A8-97AD-BB16FDCDE9B7}
new: Logon Mode : Interactive/Background
new: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.2\updater.exe" --wake --system
new: Start In : N/A
new: Comment : GoogleUpdater Task System 130.0.6679.2
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
new: Repeat: Every : 1 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
new: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
Top Runs Differences at: 2024-09-12 17.55.30
remark :
runtime : 20
count : 4
previous date : 2024-09-11
previous time : 17.55.30
software - product - Google Chrome
old: Version : 128.0.6613.120
new: Version : 128.0.6613.121
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.120\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.121\elevation_service.exe"
Top Runs Differences at: 2024-09-10 21.52.41
remark :
runtime : 31
count : 9
previous date : 2024-09-10
previous time : 17.55.30
system - hotfix - KB5041582
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5043064
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5043935
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
Top Runs Differences at: 2024-09-08 17.55.30
remark :
runtime : 19
count : 2
previous date : 2024-09-07
previous time : 17.55.30
software - product - Microsoft Edge Update
old: Version : 1.3.195.15
new: Version : 1.3.195.19
Top Runs Differences at: 2024-09-07 17.55.30
remark :
runtime : 19
count : 6
previous date : 2024-09-06
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 128.0.2739.63
new: Version : 128.0.2739.67
software - product - Microsoft Edge WebView2 Runtime
old: Version : 128.0.2739.63
new: Version : 128.0.2739.67
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\128.0.2739.63\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\128.0.2739.67\elevation_service.exe"
Top Runs Differences at: 2024-09-06 17.55.30
remark :
runtime : 19
count : 4
previous date : 2024-09-05
previous time : 17.55.30
software - product - Google Chrome
old: Version : 128.0.6613.119
new: Version : 128.0.6613.120
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.119\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.120\elevation_service.exe"
Top Runs Differences at: 2024-09-05 17.55.30
remark :
runtime : 20
count : 10
previous date : 2024-09-04
previous time : 17.55.30
software - product - Google Chrome
old: Version : 128.0.6613.114
new: Version : 128.0.6613.119
software - product - Microsoft Edge
old: Version : 128.0.2739.54
new: Version : 128.0.2739.63
software - product - Microsoft Edge WebView2 Runtime
old: Version : 128.0.2739.54
new: Version : 128.0.2739.63
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.114\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.119\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\128.0.2739.54\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\128.0.2739.63\elevation_service.exe"
Top Runs Differences at: 2024-09-03 17.55.30
remark :
runtime : 20
count : 4
previous date : 2024-09-02
previous time : 17.55.29
software - product - Google Chrome
old: Version : 128.0.6613.86
new: Version : 128.0.6613.114
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.86\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.114\elevation_service.exe"
Top Runs Differences at: 2024-09-01 17.55.29
remark :
runtime : 26
count : 4
previous date : 2024-08-31
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 128.0.2739.42
new: Version : 128.0.2739.54
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\128.0.2739.42\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\128.0.2739.54\elevation_service.exe"
Top Runs Differences at: 2024-08-31 17.55.29
remark :
runtime : 20
count : 2
previous date : 2024-08-30
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 128.0.2739.42
new: Version : 128.0.2739.54
Top Runs Differences at: 2024-08-30 17.55.29
remark :
runtime : 20
count : 46
previous date : 2024-08-30
previous time : 00.12.52
software - product - Google Chrome
old: Version : 128.0.6613.85
new: Version : 128.0.6613.86
system - services - survey
old: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 129.0.6651.2 (GoogleUpdaterInt
old: GoogleUpdaterService129.0.6651 Auto Own Process GoogleUpdater Service 129.0.6651.2 (GoogleUpdaterService129.
new: GoogleUpdaterService130.0.6679 Auto Own Process GoogleUpdater Service 130.0.6679.0 (GoogleUpdaterService130.
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.85\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.86\elevation_service.exe"
system - services - GoogleUpdaterInternalService129.0.6651.2
old: DisplayName : GoogleUpdater InternalService 129.0.6651.2 (GoogleUpdaterInternalService129.0.6651.2)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\129.0.6651.2\updater.exe" --system --windows-service --service=update-internal
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService129.0.6651.2
old: DisplayName : GoogleUpdater Service 129.0.6651.2 (GoogleUpdaterService129.0.6651.2)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\129.0.6651.2\updater.exe" --system --windows-service --service=update
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService130.0.6679.0
new: DisplayName : GoogleUpdater Service 130.0.6679.0 (GoogleUpdaterService130.0.6679.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe" --system --windows-service --service=update
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - RpcSs
old: Required by : GoogleUpdaterInternalService129.0.6651.2
old: Required by : GoogleUpdaterService129.0.6651.2
new: Required by : GoogleUpdaterService130.0.6679.0
system - services - GoogleUpdaterInternalService129.0.6651.2
old: Requires : RpcSs
system - services - GoogleUpdaterService129.0.6651.2
old: Requires : RpcSs
system - services - GoogleUpdaterService130.0.6679.0
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem129.0.6651.2{6DC6D5DB-0701-40E7-8325-444A1FF31F9C}
old: Logon Mode : Interactive/Background
old: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\129.0.6651.2\updater.exe" --wake --system
old: Start In : N/A
old: Comment : GoogleUpdater Task System 129.0.6651.2
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : Every 1 day(s)
old: Months : N/A
old: Repeat: Every : 1 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
old: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
Top Runs Differences at: 2024-08-30 00.12.52
remark :
runtime : 33
count : 59
previous date : 2024-08-29
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 95.0.2.0
new: Version : 96.0.0.0
old: Install Location : C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\96.0.0.0\GoogleDriveFS.exe
system - hotfix - KB5041580
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5041581
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5041582
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: GoogleUpdaterInternalService13 Auto Own Process GoogleUpdater InternalService 130.0.6679.0 (GoogleUpdaterInt
system - services - GoogleUpdaterInternalService130.0.6679.0
new: DisplayName : GoogleUpdater InternalService 130.0.6679.0 (GoogleUpdaterInternalService130.0.6679.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe" --system --windows-service --service=update-internal
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - RpcSs
new: Required by : GoogleUpdaterInternalService130.0.6679.0
system - services - GoogleUpdaterInternalService130.0.6679.0
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{FED21B61-BEE7-411E-A63D-9CED355227BA}
new: Logon Mode : Interactive/Background
new: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe" --wake --system
new: Start In : N/A
new: Comment : GoogleUpdater Task System 130.0.6679.0
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
new: Repeat: Every : 1 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
new: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2024-08-28 17.55.29
remark :
runtime : 21
count : 70
previous date : 2024-08-27
previous time : 17.55.29
software - product - Google Chrome
old: Version : 128.0.6613.84
new: Version : 128.0.6613.85
system - services - survey
old: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 129.0.6651.0 (GoogleUpdaterInt
old: GoogleUpdaterService129.0.6651 Auto Own Process GoogleUpdater Service 129.0.6651.0 (GoogleUpdaterService129.
new: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 129.0.6651.2 (GoogleUpdaterInt
new: GoogleUpdaterService129.0.6651 Auto Own Process GoogleUpdater Service 129.0.6651.2 (GoogleUpdaterService129.
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.84\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.85\elevation_service.exe"
system - services - GoogleUpdaterInternalService129.0.6651.0
old: DisplayName : GoogleUpdater InternalService 129.0.6651.0 (GoogleUpdaterInternalService129.0.6651.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\129.0.6651.0\updater.exe" --system --windows-service --service=update-internal
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService129.0.6651.0
old: DisplayName : GoogleUpdater Service 129.0.6651.0 (GoogleUpdaterService129.0.6651.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\129.0.6651.0\updater.exe" --system --windows-service --service=update
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterInternalService129.0.6651.2
new: DisplayName : GoogleUpdater InternalService 129.0.6651.2 (GoogleUpdaterInternalService129.0.6651.2)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\129.0.6651.2\updater.exe" --system --windows-service --service=update-internal
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - GoogleUpdaterService129.0.6651.2
new: DisplayName : GoogleUpdater Service 129.0.6651.2 (GoogleUpdaterService129.0.6651.2)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\129.0.6651.2\updater.exe" --system --windows-service --service=update
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - RpcSs
old: Required by : GoogleUpdaterInternalService129.0.6651.0
old: Required by : GoogleUpdaterService129.0.6651.0
new: Required by : GoogleUpdaterInternalService129.0.6651.2
new: Required by : GoogleUpdaterService129.0.6651.2
system - services - GoogleUpdaterInternalService129.0.6651.0
old: Requires : RpcSs
system - services - GoogleUpdaterService129.0.6651.0
old: Requires : RpcSs
system - services - GoogleUpdaterInternalService129.0.6651.2
new: Requires : RpcSs
system - services - GoogleUpdaterService129.0.6651.2
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem129.0.6651.0{E6CDBB57-7807-46FB-AB92-8141EDC86F46}
old: Logon Mode : Interactive/Background
old: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\129.0.6651.0\updater.exe" --wake --system
old: Start In : N/A
old: Comment : GoogleUpdater Task System 129.0.6651.0
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : Every 1 day(s)
old: Months : N/A
old: Repeat: Every : 1 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
old: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem129.0.6651.2{6DC6D5DB-0701-40E7-8325-444A1FF31F9C}
new: Logon Mode : Interactive/Background
new: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\129.0.6651.2\updater.exe" --wake --system
new: Start In : N/A
new: Comment : GoogleUpdater Task System 129.0.6651.2
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
new: Repeat: Every : 1 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
new: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
Top Runs Differences at: 2024-08-27 17.55.29
remark :
runtime : 20
count : 18
previous date : 2024-08-26
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Google Chrome
old: Version : 127.0.6533.120
new: Version : 128.0.6613.84
software - product - Microsoft Edge WebView2 Runtime
old: Version : 127.0.2651.105
new: Version : 128.0.2739.42
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.120\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.84\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-08-26 17.55.30
remark :
runtime : 19
count : 12
previous date : 2024-08-25
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-08-25 17.55.29
remark :
runtime : 21
count : 145
previous date : 2024-08-25
previous time : 15.07.36
system - services - survey
old: AarSvc_2d4021 Manual Unknown Agent Activation Runtime_2d4021
old: BcastDVRUserService_2d4021 Manual Unknown Användartjänst för Spel-DVR och sändning_2d4021
old: BluetoothUserService_2d4021 Manual Unknown Bluetooth User Support Service_2d4021
old: CaptureService_2d4021 Manual Unknown CaptureService_2d4021
old: cbdhsvc_2d4021 Manual Unknown Clipboard User Service_2d4021
old: CDPUserSvc_2d4021 Auto Unknown Connected Devices Platform User Service_2d4021
old: ConsentUxUserSvc_2d4021 Manual Unknown ConsentUX_2d4021
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_2d4021
old: DeviceAssociationBrokerSvc_2d4 Manual Unknown DeviceAssociationBroker_2d4021
old: DevicePickerUserSvc_2d4021 Manual Unknown DevicePicker_2d4021
old: DevicesFlowUserSvc_2d4021 Manual Unknown DevicesFlow_2d4021
old: MessagingService_2d4021 Manual Unknown MessagingService_2d4021
old: OneSyncSvc_2d4021 Auto Unknown Synkroniseringsvärd_2d4021
old: PimIndexMaintenanceSvc_2d4021 Manual Unknown Contact Data_2d4021
old: PrintWorkflowUserSvc_2d4021 Manual Unknown PrintWorkflow_2d4021
old: UdkUserSvc_2d4021 Manual Unknown Udk-användartjänst_2d4021
old: UnistoreSvc_2d4021 Manual Unknown User Data Storage_2d4021
old: UserDataSvc_2d4021 Manual Unknown User Data Access_2d4021
old: WpnUserService_2d4021 Auto Unknown Windows Push Notifications User Service_2d4021
system - services - AarSvc_2d4021
old: DisplayName : Agent Activation Runtime_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_2d4021
old: DisplayName : Användartjänst för Spel-DVR och sändning_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_2d4021
old: DisplayName : Bluetooth User Support Service_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_2d4021
old: DisplayName : CaptureService_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_2d4021
old: DisplayName : Clipboard User Service_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_2d4021
old: DisplayName : Connected Devices Platform User Service_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_2d4021
old: DisplayName : ConsentUX_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_2d4021
old: DisplayName : CredentialEnrollmentManagerUserSvc_2d4021
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_2d4021
old: DisplayName : DeviceAssociationBroker_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_2d4021
old: DisplayName : DevicePicker_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_2d4021
old: DisplayName : DevicesFlow_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_2d4021
old: DisplayName : MessagingService_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_2d4021
old: DisplayName : Synkroniseringsvärd_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_2d4021
old: DisplayName : Contact Data_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_2d4021
old: DisplayName : PrintWorkflow_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_2d4021
old: DisplayName : Udk-användartjänst_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_2d4021
old: DisplayName : User Data Storage_2d4021
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_2d4021
old: DisplayName : User Data Access_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_2d4021
old: DisplayName : Windows Push Notifications User Service_2d4021
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2024-08-25 15.07.36
remark :
runtime : 1164
count : 224
previous date : 2024-08-25
previous time : 12.50.22
software - product - Microsoft Edge
old: Version : 127.0.2651.98
new: Version : 128.0.2739.42
software - product - Microsoft Edge WebView2 Runtime
old: Version : 127.0.2651.98
new: Version : 127.0.2651.105
system - hotfix - KB5040525
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5041168
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5041579
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5041580
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5042097
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: AarSvc_2d4021 Manual Unknown Agent Activation Runtime_2d4021
new: BcastDVRUserService_2d4021 Manual Unknown Användartjänst för Spel-DVR och sändning_2d4021
new: BluetoothUserService_2d4021 Manual Unknown Bluetooth User Support Service_2d4021
new: CaptureService_2d4021 Manual Unknown CaptureService_2d4021
new: cbdhsvc_2d4021 Manual Unknown Clipboard User Service_2d4021
new: CDPUserSvc_2d4021 Auto Unknown Connected Devices Platform User Service_2d4021
new: ConsentUxUserSvc_2d4021 Manual Unknown ConsentUX_2d4021
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_2d4021
new: DeviceAssociationBrokerSvc_2d4 Manual Unknown DeviceAssociationBroker_2d4021
new: DevicePickerUserSvc_2d4021 Manual Unknown DevicePicker_2d4021
new: DevicesFlowUserSvc_2d4021 Manual Unknown DevicesFlow_2d4021
old: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 128.0.6597.0 (GoogleUpdaterInt
old: GoogleUpdaterService128.0.6597 Auto Own Process GoogleUpdater Service 128.0.6597.0 (GoogleUpdaterService128.
new: GoogleUpdaterService129.0.6651 Auto Own Process GoogleUpdater Service 129.0.6651.0 (GoogleUpdaterService129.
new: MessagingService_2d4021 Manual Unknown MessagingService_2d4021
new: OneSyncSvc_2d4021 Auto Unknown Synkroniseringsvärd_2d4021
new: PimIndexMaintenanceSvc_2d4021 Manual Unknown Contact Data_2d4021
new: PrintWorkflowUserSvc_2d4021 Manual Unknown PrintWorkflow_2d4021
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
new: UdkUserSvc_2d4021 Manual Unknown Udk-användartjänst_2d4021
new: UnistoreSvc_2d4021 Manual Unknown User Data Storage_2d4021
new: UserDataSvc_2d4021 Manual Unknown User Data Access_2d4021
new: WpnUserService_2d4021 Auto Unknown Windows Push Notifications User Service_2d4021
system - services - AarSvc_2d4021
new: DisplayName : Agent Activation Runtime_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_2d4021
new: DisplayName : Användartjänst för Spel-DVR och sändning_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_2d4021
new: DisplayName : Bluetooth User Support Service_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_2d4021
new: DisplayName : CaptureService_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_2d4021
new: DisplayName : Clipboard User Service_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_2d4021
new: DisplayName : Connected Devices Platform User Service_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_2d4021
new: DisplayName : ConsentUX_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_2d4021
new: DisplayName : CredentialEnrollmentManagerUserSvc_2d4021
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_2d4021
new: DisplayName : DeviceAssociationBroker_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_2d4021
new: DisplayName : DevicePicker_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_2d4021
new: DisplayName : DevicesFlow_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleUpdaterInternalService128.0.6597.0
old: DisplayName : GoogleUpdater InternalService 128.0.6597.0 (GoogleUpdaterInternalService128.0.6597.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe" --system --windows-service --service=update-internal
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService128.0.6597.0
old: DisplayName : GoogleUpdater Service 128.0.6597.0 (GoogleUpdaterService128.0.6597.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe" --system --windows-service --service=update
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService129.0.6651.0
new: DisplayName : GoogleUpdater Service 129.0.6651.0 (GoogleUpdaterService129.0.6651.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\129.0.6651.0\updater.exe" --system --windows-service --service=update
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - MessagingService_2d4021
new: DisplayName : MessagingService_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\127.0.2651.98\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\128.0.2739.42\elevation_service.exe"
system - services - OneSyncSvc_2d4021
new: DisplayName : Synkroniseringsvärd_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_2d4021
new: DisplayName : Contact Data_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_2d4021
new: DisplayName : PrintWorkflow_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UdkUserSvc_2d4021
new: DisplayName : Udk-användartjänst_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_2d4021
new: DisplayName : User Data Storage_2d4021
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_2d4021
new: DisplayName : User Data Access_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_2d4021
new: DisplayName : Windows Push Notifications User Service_2d4021
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - RpcSs
old: Required by : GoogleUpdaterInternalService128.0.6597.0
old: Required by : GoogleUpdaterService128.0.6597.0
new: Required by : GoogleUpdaterService129.0.6651.0
system - services - GoogleUpdaterInternalService128.0.6597.0
old: Requires : RpcSs
system - services - GoogleUpdaterService128.0.6597.0
old: Requires : RpcSs
system - services - GoogleUpdaterService129.0.6651.0
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6597.0{08E3567B-A103-4EA0-B257-DFCE63A66D39}
old: Logon Mode : Interactive/Background
old: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe" --wake --system
old: Start In : N/A
old: Comment : GoogleUpdater Task System 128.0.6597.0
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : Every 1 day(s)
old: Months : N/A
old: Repeat: Every : 1 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
old: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \OneDrive Reporting Task-S-1-5-21-67378208-2373681959-2840377077-1108
old: Run As User : S-1-5-21-67378208-2373681959-2840377077-1108
new: Run As User : leif
system - scheduled tasks - \OneDrive Standalone Update Task-S-1-5-21-67378208-2373681959-2840377077-1108
old: Run As User : S-1-5-21-67378208-2373681959-2840377077-1108
new: Run As User : leif
users - local groups - Administratörer
new: Member : amandabackup
new: Member : carina
new: Member : Domain Admins
users - local groups - Ansvariga för säkerhetskopiering
new: Member : amandabackup
users - local groups - Användare av fjärrskrivbord
new: Member : leif
users - local groups - Användare
new: Member : amandabackup
new: Member : Domain Users
users - local groups - Device Administrators
new: Member : Domain Admins
Top Runs Differences at: 2024-08-25 12.50.22
remark :
runtime : 244
count : 201
previous date : 2024-08-12
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 127.0.6533.100
new: Version : 127.0.6533.120
software - product - Microsoft Edge WebView2 Runtime
old: Version : 126.0.2592.113
new: Version : 127.0.2651.98
system - services - survey
old: AarSvc_160da39a Manual Unknown Agent Activation Runtime_160da39a
old: BcastDVRUserService_160da39a Manual Unknown Användartjänst för Spel-DVR och sändning_160da39a
old: BluetoothUserService_160da39a Manual Unknown Bluetooth User Support Service_160da39a
old: CaptureService_160da39a Manual Unknown CaptureService_160da39a
old: cbdhsvc_160da39a Manual Unknown Clipboard User Service_160da39a
old: CDPUserSvc_160da39a Auto Unknown Connected Devices Platform User Service_160da39a
old: ConsentUxUserSvc_160da39a Manual Unknown ConsentUX_160da39a
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_160da39a
old: DeviceAssociationBrokerSvc_160 Manual Unknown DeviceAssociationBroker_160da39a
old: DevicePickerUserSvc_160da39a Manual Unknown DevicePicker_160da39a
old: DevicesFlowUserSvc_160da39a Manual Unknown DevicesFlow_160da39a
new: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 129.0.6651.0 (GoogleUpdaterInt
old: MessagingService_160da39a Manual Unknown MessagingService_160da39a
old: OneSyncSvc_160da39a Auto Unknown Synkroniseringsvärd_160da39a
old: PimIndexMaintenanceSvc_160da39 Manual Unknown Contact Data_160da39a
old: PrintWorkflowUserSvc_160da39a Manual Unknown PrintWorkflow_160da39a
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
old: UdkUserSvc_160da39a Manual Unknown Udk-användartjänst_160da39a
old: UnistoreSvc_160da39a Manual Unknown User Data Storage_160da39a
old: UserDataSvc_160da39a Manual Unknown User Data Access_160da39a
old: WpnUserService_160da39a Auto Unknown Windows Push Notifications User Service_160da39a
system - services - AarSvc_160da39a
old: DisplayName : Agent Activation Runtime_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_160da39a
old: DisplayName : Användartjänst för Spel-DVR och sändning_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_160da39a
old: DisplayName : Bluetooth User Support Service_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_160da39a
old: DisplayName : CaptureService_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_160da39a
old: DisplayName : Clipboard User Service_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_160da39a
old: DisplayName : Connected Devices Platform User Service_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_160da39a
old: DisplayName : ConsentUX_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_160da39a
old: DisplayName : CredentialEnrollmentManagerUserSvc_160da39a
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_160da39a
old: DisplayName : DeviceAssociationBroker_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_160da39a
old: DisplayName : DevicePicker_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_160da39a
old: DisplayName : DevicesFlow_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.100\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.120\elevation_service.exe"
system - services - GoogleUpdaterInternalService129.0.6651.0
new: DisplayName : GoogleUpdater InternalService 129.0.6651.0 (GoogleUpdaterInternalService129.0.6651.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\129.0.6651.0\updater.exe" --system --windows-service --service=update-internal
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - MessagingService_160da39a
old: DisplayName : MessagingService_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_160da39a
old: DisplayName : Synkroniseringsvärd_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_160da39a
old: DisplayName : Contact Data_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_160da39a
old: DisplayName : PrintWorkflow_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UdkUserSvc_160da39a
old: DisplayName : Udk-användartjänst_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_160da39a
old: DisplayName : User Data Storage_160da39a
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_160da39a
old: DisplayName : User Data Access_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_160da39a
old: DisplayName : Windows Push Notifications User Service_160da39a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - RpcSs
new: Required by : GoogleUpdaterInternalService129.0.6651.0
system - services - GoogleUpdaterInternalService129.0.6651.0
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem129.0.6651.0{E6CDBB57-7807-46FB-AB92-8141EDC86F46}
new: Logon Mode : Interactive/Background
new: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\129.0.6651.0\updater.exe" --wake --system
new: Start In : N/A
new: Comment : GoogleUpdater Task System 129.0.6651.0
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
new: Repeat: Every : 1 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
new: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
system - scheduled tasks - \OneDrive Reporting Task-S-1-5-21-67378208-2373681959-2840377077-1108
old: Run As User : leif
new: Run As User : S-1-5-21-67378208-2373681959-2840377077-1108
system - scheduled tasks - \OneDrive Standalone Update Task-S-1-5-21-67378208-2373681959-2840377077-1108
old: Run As User : leif
new: Run As User : S-1-5-21-67378208-2373681959-2840377077-1108
users - local groups - Administratörer
old: Member : amandabackup
old: Member : carina
old: Member : Domain Admins
users - local groups - Ansvariga för säkerhetskopiering
old: Member : amandabackup
users - local groups - Användare av fjärrskrivbord
old: Member : leif
users - local groups - Användare
old: Member : amandabackup
old: Member : Domain Users
users - local groups - Device Administrators
old: Member : Domain Admins
Top Runs Differences at: 2024-08-12 17.55.30
remark :
runtime : 20
count : 16
previous date : 2024-08-11
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 94.0.1.0
new: Version : 95.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\95.0.2.0\GoogleDriveFS.exe
Top Runs Differences at: 2024-08-11 17.55.30
remark :
runtime : 21
count : 4
previous date : 2024-08-10
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 127.0.2651.86
new: Version : 127.0.2651.98
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\127.0.2651.86\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\127.0.2651.98\elevation_service.exe"
Top Runs Differences at: 2024-08-09 17.55.30
remark :
runtime : 41
count : 4
previous date : 2024-08-08
previous time : 17.55.30
software - product - Google Chrome
old: Version : 127.0.6533.90
new: Version : 127.0.6533.100
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.90\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.100\elevation_service.exe"
Top Runs Differences at: 2024-08-08 17.55.30
remark :
runtime : 40
count : 18
previous date : 2024-08-07
previous time : 17.55.30
software - product - Google Chrome
old: Version : 127.0.6533.89
new: Version : 127.0.6533.90
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.89\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.90\elevation_service.exe"
system - services - MDCoreSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpDefenderCoreService.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpDefenderCoreService.exe"
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2024-08-05 17.55.30
remark :
runtime : 20
count : 2
previous date : 2024-08-04
previous time : 17.55.30
software - product - JMRI - Java Model Railroad Interface
old: Version : 5.6+R89a87446cb
new: Version : 5.8+Rbc21ce2ce7
Top Runs Differences at: 2024-08-04 17.55.30
remark :
runtime : 26
count : 266
previous date : 2024-08-03
previous time : 17.55.30
system - services - survey
old: AarSvc_859c86c Manual Unknown Agent Activation Runtime_859c86c
new: AarSvc_160da39a Manual Unknown Agent Activation Runtime_160da39a
old: BcastDVRUserService_859c86c Manual Unknown Användartjänst för Spel-DVR och sändning_859c86c
new: BcastDVRUserService_160da39a Manual Unknown Användartjänst för Spel-DVR och sändning_160da39a
old: BluetoothUserService_859c86c Manual Unknown Bluetooth User Support Service_859c86c
new: BluetoothUserService_160da39a Manual Unknown Bluetooth User Support Service_160da39a
old: CaptureService_859c86c Manual Unknown CaptureService_859c86c
old: cbdhsvc_859c86c Manual Unknown Clipboard User Service_859c86c
new: CaptureService_160da39a Manual Unknown CaptureService_160da39a
new: cbdhsvc_160da39a Manual Unknown Clipboard User Service_160da39a
old: CDPUserSvc_859c86c Auto Unknown Connected Devices Platform User Service_859c86c
new: CDPUserSvc_160da39a Auto Unknown Connected Devices Platform User Service_160da39a
old: ConsentUxUserSvc_859c86c Manual Unknown ConsentUX_859c86c
new: ConsentUxUserSvc_160da39a Manual Unknown ConsentUX_160da39a
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_859c86c
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_160da39a
old: DeviceAssociationBrokerSvc_859 Manual Unknown DeviceAssociationBroker_859c86c
new: DeviceAssociationBrokerSvc_160 Manual Unknown DeviceAssociationBroker_160da39a
old: DevicePickerUserSvc_859c86c Manual Unknown DevicePicker_859c86c
old: DevicesFlowUserSvc_859c86c Manual Unknown DevicesFlow_859c86c
new: DevicePickerUserSvc_160da39a Manual Unknown DevicePicker_160da39a
new: DevicesFlowUserSvc_160da39a Manual Unknown DevicesFlow_160da39a
old: MessagingService_859c86c Manual Unknown MessagingService_859c86c
new: MessagingService_160da39a Manual Unknown MessagingService_160da39a
old: OneSyncSvc_859c86c Auto Unknown Synkroniseringsvärd_859c86c
new: OneSyncSvc_160da39a Auto Unknown Synkroniseringsvärd_160da39a
old: PimIndexMaintenanceSvc_859c86c Manual Unknown Contact Data_859c86c
new: PimIndexMaintenanceSvc_160da39 Manual Unknown Contact Data_160da39a
old: PrintWorkflowUserSvc_859c86c Manual Unknown PrintWorkflow_859c86c
new: PrintWorkflowUserSvc_160da39a Manual Unknown PrintWorkflow_160da39a
old: UdkUserSvc_859c86c Manual Unknown Udk-användartjänst_859c86c
new: UdkUserSvc_160da39a Manual Unknown Udk-användartjänst_160da39a
old: UnistoreSvc_859c86c Manual Unknown User Data Storage_859c86c
new: UnistoreSvc_160da39a Manual Unknown User Data Storage_160da39a
old: UserDataSvc_859c86c Manual Unknown User Data Access_859c86c
new: UserDataSvc_160da39a Manual Unknown User Data Access_160da39a
old: WpnUserService_859c86c Auto Unknown Windows Push Notifications User Service_859c86c
new: WpnUserService_160da39a Auto Unknown Windows Push Notifications User Service_160da39a
system - services - AarSvc_859c86c
old: DisplayName : Agent Activation Runtime_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_160da39a
new: DisplayName : Agent Activation Runtime_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_859c86c
old: DisplayName : Användartjänst för Spel-DVR och sändning_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_160da39a
new: DisplayName : Användartjänst för Spel-DVR och sändning_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_859c86c
old: DisplayName : Bluetooth User Support Service_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_160da39a
new: DisplayName : Bluetooth User Support Service_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_859c86c
old: DisplayName : CaptureService_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_859c86c
old: DisplayName : Clipboard User Service_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_160da39a
new: DisplayName : CaptureService_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_160da39a
new: DisplayName : Clipboard User Service_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_859c86c
old: DisplayName : Connected Devices Platform User Service_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_160da39a
new: DisplayName : Connected Devices Platform User Service_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_859c86c
old: DisplayName : ConsentUX_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_160da39a
new: DisplayName : ConsentUX_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_859c86c
old: DisplayName : CredentialEnrollmentManagerUserSvc_859c86c
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_160da39a
new: DisplayName : CredentialEnrollmentManagerUserSvc_160da39a
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_859c86c
old: DisplayName : DeviceAssociationBroker_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_160da39a
new: DisplayName : DeviceAssociationBroker_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_859c86c
old: DisplayName : DevicePicker_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_859c86c
old: DisplayName : DevicesFlow_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_160da39a
new: DisplayName : DevicePicker_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_160da39a
new: DisplayName : DevicesFlow_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_859c86c
old: DisplayName : MessagingService_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_160da39a
new: DisplayName : MessagingService_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_859c86c
old: DisplayName : Synkroniseringsvärd_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_160da39a
new: DisplayName : Synkroniseringsvärd_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_859c86c
old: DisplayName : Contact Data_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_160da39a
new: DisplayName : Contact Data_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_859c86c
old: DisplayName : PrintWorkflow_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_160da39a
new: DisplayName : PrintWorkflow_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_859c86c
old: DisplayName : Udk-användartjänst_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_160da39a
new: DisplayName : Udk-användartjänst_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_859c86c
old: DisplayName : User Data Storage_859c86c
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_160da39a
new: DisplayName : User Data Storage_160da39a
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_859c86c
old: DisplayName : User Data Access_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_160da39a
new: DisplayName : User Data Access_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_859c86c
old: DisplayName : Windows Push Notifications User Service_859c86c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_160da39a
new: DisplayName : Windows Push Notifications User Service_160da39a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2024-08-03 17.55.30
remark :
runtime : 23
count : 4
previous date : 2024-08-02
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 127.0.2651.74
new: Version : 127.0.2651.86
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\127.0.2651.74\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\127.0.2651.86\elevation_service.exe"
Top Runs Differences at: 2024-08-02 17.55.30
remark :
runtime : 19
count : 4
previous date : 2024-08-01
previous time : 17.55.30
software - product - Google Chrome
old: Version : 127.0.6533.74
new: Version : 127.0.6533.89
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.74\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.89\elevation_service.exe"
Top Runs Differences at: 2024-08-01 17.55.30
remark :
runtime : 20
count : 4
previous date : 2024-07-31
previous time : 17.55.30
software - product - Google Chrome
old: Version : 127.0.6533.73
new: Version : 127.0.6533.74
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.73\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.74\elevation_service.exe"
Top Runs Differences at: 2024-07-30 17.55.30
remark :
runtime : 19
count : 4
previous date : 2024-07-29
previous time : 17.55.30
software - product - Google Chrome
old: Version : 127.0.6533.72
new: Version : 127.0.6533.73
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.72\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.73\elevation_service.exe"
Top Runs Differences at: 2024-07-29 17.55.30
remark :
runtime : 19
count : 167
previous date : 2024-07-28
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_859c86c Manual Unknown Agent Activation Runtime_859c86c
new: BcastDVRUserService_859c86c Manual Unknown Användartjänst för Spel-DVR och sändning_859c86c
new: BluetoothUserService_859c86c Manual Unknown Bluetooth User Support Service_859c86c
new: CaptureService_859c86c Manual Unknown CaptureService_859c86c
new: cbdhsvc_859c86c Manual Unknown Clipboard User Service_859c86c
new: CDPUserSvc_859c86c Auto Unknown Connected Devices Platform User Service_859c86c
new: ConsentUxUserSvc_859c86c Manual Unknown ConsentUX_859c86c
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_859c86c
new: DeviceAssociationBrokerSvc_859 Manual Unknown DeviceAssociationBroker_859c86c
new: DevicePickerUserSvc_859c86c Manual Unknown DevicePicker_859c86c
new: DevicesFlowUserSvc_859c86c Manual Unknown DevicesFlow_859c86c
new: MessagingService_859c86c Manual Unknown MessagingService_859c86c
new: OneSyncSvc_859c86c Auto Unknown Synkroniseringsvärd_859c86c
new: PimIndexMaintenanceSvc_859c86c Manual Unknown Contact Data_859c86c
new: PrintWorkflowUserSvc_859c86c Manual Unknown PrintWorkflow_859c86c
new: UdkUserSvc_859c86c Manual Unknown Udk-användartjänst_859c86c
new: UnistoreSvc_859c86c Manual Unknown User Data Storage_859c86c
new: UserDataSvc_859c86c Manual Unknown User Data Access_859c86c
new: WpnUserService_859c86c Auto Unknown Windows Push Notifications User Service_859c86c
system - services - AarSvc_859c86c
new: DisplayName : Agent Activation Runtime_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_859c86c
new: DisplayName : Användartjänst för Spel-DVR och sändning_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_859c86c
new: DisplayName : Bluetooth User Support Service_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_859c86c
new: DisplayName : CaptureService_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_859c86c
new: DisplayName : Clipboard User Service_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_859c86c
new: DisplayName : Connected Devices Platform User Service_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_859c86c
new: DisplayName : ConsentUX_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_859c86c
new: DisplayName : CredentialEnrollmentManagerUserSvc_859c86c
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_859c86c
new: DisplayName : DeviceAssociationBroker_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_859c86c
new: DisplayName : DevicePicker_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_859c86c
new: DisplayName : DevicesFlow_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_859c86c
new: DisplayName : MessagingService_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_859c86c
new: DisplayName : Synkroniseringsvärd_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_859c86c
new: DisplayName : Contact Data_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_859c86c
new: DisplayName : PrintWorkflow_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_859c86c
new: DisplayName : Udk-användartjänst_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_859c86c
new: DisplayName : User Data Storage_859c86c
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_859c86c
new: DisplayName : User Data Access_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_859c86c
new: DisplayName : Windows Push Notifications User Service_859c86c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2024-07-28 17.55.29
remark :
runtime : 20
count : 2
previous date : 2024-07-27
previous time : 17.55.29
software - product - Microsoft Edge Update
old: Version : 1.3.193.5
new: Version : 1.3.195.15
Top Runs Differences at: 2024-07-27 17.55.29
remark :
runtime : 20
count : 4
previous date : 2024-07-26
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 126.0.2592.113
new: Version : 127.0.2651.74
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.113\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\127.0.2651.74\elevation_service.exe"
Top Runs Differences at: 2024-07-26 17.55.29
remark :
runtime : 21
count : 16
previous date : 2024-07-25
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Google Chrome
old: Version : 126.0.6478.183
new: Version : 127.0.6533.72
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.183\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.72\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-07-25 17.55.30
remark :
runtime : 19
count : 12
previous date : 2024-07-24
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-07-24 17.55.29
remark :
runtime : 15
count : 28
previous date : 2024-07-24
previous time : 11.12.52
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 93.0.1.0
new: Version : 94.0.1.0
old: Install Location : C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\94.0.1.0\GoogleDriveFS.exe
system - SystemDriver - googledrivefs31357
old: AcceptPause : 0
old: Description : googledrivefs31357
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys
old: ServiceType : File System Driver
old: StartMode : System
system - SystemDriver - googledrivefs31626
new: AcceptPause : 0
new: Description : googledrivefs31626
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : \??\C:\Program Files\Google\Drive File Stream\Drivers\31626\googledrivefs31626.sys
new: ServiceType : File System Driver
new: StartMode : Auto
Top Runs Differences at: 2024-07-24 11.12.52
remark :
runtime : 27
count : 172
previous date : 2024-07-24
previous time : 09.29.54
system - hotfix - KB5040427
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5040525
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5040565
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_230f85 Manual Unknown Agent Activation Runtime_230f85
old: BcastDVRUserService_230f85 Manual Unknown Användartjänst för Spel-DVR och sändning_230f85
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_230f85 Manual Unknown Bluetooth User Support Service_230f85
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_230f85 Manual Unknown CaptureService_230f85
old: cbdhsvc_230f85 Manual Unknown Clipboard User Service_230f85
old: CDPUserSvc_230f85 Auto Unknown Connected Devices Platform User Service_230f85
old: ConsentUxUserSvc_230f85 Manual Unknown ConsentUX_230f85
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_230f85
old: DeviceAssociationBrokerSvc_230 Manual Unknown DeviceAssociationBroker_230f85
old: DevicePickerUserSvc_230f85 Manual Unknown DevicePicker_230f85
old: DevicesFlowUserSvc_230f85 Manual Unknown DevicesFlow_230f85
old: MessagingService_230f85 Manual Unknown MessagingService_230f85
old: OneSyncSvc_230f85 Auto Unknown Synkroniseringsvärd_230f85
old: PimIndexMaintenanceSvc_230f85 Manual Unknown Contact Data_230f85
old: PrintWorkflowUserSvc_230f85 Manual Unknown PrintWorkflow_230f85
old: UdkUserSvc_230f85 Manual Unknown Udk-användartjänst_230f85
old: UnistoreSvc_230f85 Manual Unknown User Data Storage_230f85
old: UserDataSvc_230f85 Manual Unknown User Data Access_230f85
old: WpnUserService_230f85 Auto Unknown Windows Push Notifications User Service_230f85
system - services - AarSvc_230f85
old: DisplayName : Agent Activation Runtime_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_230f85
old: DisplayName : Användartjänst för Spel-DVR och sändning_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_230f85
old: DisplayName : Bluetooth User Support Service_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_230f85
old: DisplayName : CaptureService_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_230f85
old: DisplayName : Clipboard User Service_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_230f85
old: DisplayName : Connected Devices Platform User Service_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_230f85
old: DisplayName : ConsentUX_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_230f85
old: DisplayName : CredentialEnrollmentManagerUserSvc_230f85
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_230f85
old: DisplayName : DeviceAssociationBroker_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_230f85
old: DisplayName : DevicePicker_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_230f85
old: DisplayName : DevicesFlow_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_230f85
old: DisplayName : MessagingService_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_230f85
old: DisplayName : Synkroniseringsvärd_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_230f85
old: DisplayName : Contact Data_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_230f85
old: DisplayName : PrintWorkflow_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_230f85
old: DisplayName : Udk-användartjänst_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_230f85
old: DisplayName : User Data Storage_230f85
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_230f85
old: DisplayName : User Data Access_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_230f85
old: DisplayName : Windows Push Notifications User Service_230f85
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{3E0A038B-D834-4930-9981-E89C9BFF83AA}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:computer
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\PushToInstall\LoginCheck
old: Idle Time : Only Start If Idle for minutes, If Not Idle Retry For minutes Stop the task if Idle State end
new: Idle Time : Disabled
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2024-07-24 09.29.54
remark :
runtime : 577
count : 314
previous date : 2024-07-23
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 126.0.6478.182
new: Version : 126.0.6478.183
system - hotfix - KB5039893
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5041168
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_4432de Manual Unknown Agent Activation Runtime_4432de
new: AarSvc_230f85 Manual Unknown Agent Activation Runtime_230f85
old: BcastDVRUserService_4432de Manual Unknown Användartjänst för Spel-DVR och sändning_4432de
new: BcastDVRUserService_230f85 Manual Unknown Användartjänst för Spel-DVR och sändning_230f85
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_4432de Manual Unknown Bluetooth User Support Service_4432de
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_230f85 Manual Unknown Bluetooth User Support Service_230f85
old: CaptureService_4432de Manual Unknown CaptureService_4432de
old: cbdhsvc_4432de Manual Unknown Clipboard User Service_4432de
new: CaptureService_230f85 Manual Unknown CaptureService_230f85
new: cbdhsvc_230f85 Manual Unknown Clipboard User Service_230f85
old: CDPUserSvc_4432de Auto Unknown Connected Devices Platform User Service_4432de
new: CDPUserSvc_230f85 Auto Unknown Connected Devices Platform User Service_230f85
old: ConsentUxUserSvc_4432de Manual Unknown ConsentUX_4432de
new: ConsentUxUserSvc_230f85 Manual Unknown ConsentUX_230f85
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_4432de
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_230f85
old: DeviceAssociationBrokerSvc_443 Manual Unknown DeviceAssociationBroker_4432de
new: DeviceAssociationBrokerSvc_230 Manual Unknown DeviceAssociationBroker_230f85
old: DevicePickerUserSvc_4432de Manual Unknown DevicePicker_4432de
old: DevicesFlowUserSvc_4432de Manual Unknown DevicesFlow_4432de
new: DevicePickerUserSvc_230f85 Manual Unknown DevicePicker_230f85
new: DevicesFlowUserSvc_230f85 Manual Unknown DevicesFlow_230f85
old: MessagingService_4432de Manual Unknown MessagingService_4432de
new: MessagingService_230f85 Manual Unknown MessagingService_230f85
old: OneSyncSvc_4432de Auto Unknown Synkroniseringsvärd_4432de
new: OneSyncSvc_230f85 Auto Unknown Synkroniseringsvärd_230f85
old: PimIndexMaintenanceSvc_4432de Manual Unknown Contact Data_4432de
new: PimIndexMaintenanceSvc_230f85 Manual Unknown Contact Data_230f85
old: PrintWorkflowUserSvc_4432de Manual Unknown PrintWorkflow_4432de
new: PrintWorkflowUserSvc_230f85 Manual Unknown PrintWorkflow_230f85
old: UdkUserSvc_4432de Manual Unknown Udk-användartjänst_4432de
new: UdkUserSvc_230f85 Manual Unknown Udk-användartjänst_230f85
old: UnistoreSvc_4432de Manual Unknown User Data Storage_4432de
new: UnistoreSvc_230f85 Manual Unknown User Data Storage_230f85
old: UserDataSvc_4432de Manual Unknown User Data Access_4432de
new: UserDataSvc_230f85 Manual Unknown User Data Access_230f85
old: WpnUserService_4432de Auto Unknown Windows Push Notifications User Service_4432de
new: WpnUserService_230f85 Auto Unknown Windows Push Notifications User Service_230f85
system - services - AarSvc_4432de
old: DisplayName : Agent Activation Runtime_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_230f85
new: DisplayName : Agent Activation Runtime_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_4432de
old: DisplayName : Användartjänst för Spel-DVR och sändning_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_230f85
new: DisplayName : Användartjänst för Spel-DVR och sändning_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_4432de
old: DisplayName : Bluetooth User Support Service_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_230f85
new: DisplayName : Bluetooth User Support Service_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_4432de
old: DisplayName : CaptureService_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_4432de
old: DisplayName : Clipboard User Service_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_230f85
new: DisplayName : CaptureService_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_230f85
new: DisplayName : Clipboard User Service_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_4432de
old: DisplayName : Connected Devices Platform User Service_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_230f85
new: DisplayName : Connected Devices Platform User Service_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_4432de
old: DisplayName : ConsentUX_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_230f85
new: DisplayName : ConsentUX_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_4432de
old: DisplayName : CredentialEnrollmentManagerUserSvc_4432de
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_230f85
new: DisplayName : CredentialEnrollmentManagerUserSvc_230f85
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_4432de
old: DisplayName : DeviceAssociationBroker_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_230f85
new: DisplayName : DeviceAssociationBroker_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_4432de
old: DisplayName : DevicePicker_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_4432de
old: DisplayName : DevicesFlow_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_230f85
new: DisplayName : DevicePicker_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_230f85
new: DisplayName : DevicesFlow_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.182\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.183\elevation_service.exe"
system - services - MessagingService_4432de
old: DisplayName : MessagingService_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_230f85
new: DisplayName : MessagingService_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_4432de
old: DisplayName : Synkroniseringsvärd_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_230f85
new: DisplayName : Synkroniseringsvärd_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_4432de
old: DisplayName : Contact Data_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_230f85
new: DisplayName : Contact Data_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_4432de
old: DisplayName : PrintWorkflow_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_230f85
new: DisplayName : PrintWorkflow_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_4432de
old: DisplayName : Udk-användartjänst_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_230f85
new: DisplayName : Udk-användartjänst_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_4432de
old: DisplayName : User Data Storage_4432de
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_230f85
new: DisplayName : User Data Storage_230f85
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_4432de
old: DisplayName : User Data Access_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_230f85
new: DisplayName : User Data Access_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_4432de
old: DisplayName : Windows Push Notifications User Service_4432de
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_230f85
new: DisplayName : Windows Push Notifications User Service_230f85
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{3E0A038B-D834-4930-9981-E89C9BFF83AA}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:computer
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2024-07-23 17.55.30
remark :
runtime : 15
count : 155
previous date : 2024-07-23
previous time : 15.27.10
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_4432de Manual Unknown Agent Activation Runtime_4432de
new: BcastDVRUserService_4432de Manual Unknown Användartjänst för Spel-DVR och sändning_4432de
new: BluetoothUserService_4432de Manual Unknown Bluetooth User Support Service_4432de
new: CaptureService_4432de Manual Unknown CaptureService_4432de
new: cbdhsvc_4432de Manual Unknown Clipboard User Service_4432de
new: CDPUserSvc_4432de Auto Unknown Connected Devices Platform User Service_4432de
new: ConsentUxUserSvc_4432de Manual Unknown ConsentUX_4432de
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_4432de
new: DeviceAssociationBrokerSvc_443 Manual Unknown DeviceAssociationBroker_4432de
new: DevicePickerUserSvc_4432de Manual Unknown DevicePicker_4432de
new: DevicesFlowUserSvc_4432de Manual Unknown DevicesFlow_4432de
new: MessagingService_4432de Manual Unknown MessagingService_4432de
new: OneSyncSvc_4432de Auto Unknown Synkroniseringsvärd_4432de
new: PimIndexMaintenanceSvc_4432de Manual Unknown Contact Data_4432de
new: PrintWorkflowUserSvc_4432de Manual Unknown PrintWorkflow_4432de
new: UdkUserSvc_4432de Manual Unknown Udk-användartjänst_4432de
new: UnistoreSvc_4432de Manual Unknown User Data Storage_4432de
new: UserDataSvc_4432de Manual Unknown User Data Access_4432de
new: WpnUserService_4432de Auto Unknown Windows Push Notifications User Service_4432de
system - services - AarSvc_4432de
new: DisplayName : Agent Activation Runtime_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_4432de
new: DisplayName : Användartjänst för Spel-DVR och sändning_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_4432de
new: DisplayName : Bluetooth User Support Service_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_4432de
new: DisplayName : CaptureService_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_4432de
new: DisplayName : Clipboard User Service_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_4432de
new: DisplayName : Connected Devices Platform User Service_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_4432de
new: DisplayName : ConsentUX_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_4432de
new: DisplayName : CredentialEnrollmentManagerUserSvc_4432de
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_4432de
new: DisplayName : DeviceAssociationBroker_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_4432de
new: DisplayName : DevicePicker_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_4432de
new: DisplayName : DevicesFlow_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_4432de
new: DisplayName : MessagingService_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_4432de
new: DisplayName : Synkroniseringsvärd_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_4432de
new: DisplayName : Contact Data_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_4432de
new: DisplayName : PrintWorkflow_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_4432de
new: DisplayName : Udk-användartjänst_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_4432de
new: DisplayName : User Data Storage_4432de
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_4432de
new: DisplayName : User Data Access_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_4432de
new: DisplayName : Windows Push Notifications User Service_4432de
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2024-07-23 15.27.10
remark :
runtime : 24
count : 155
previous date : 2024-07-22
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - services - survey
old: AarSvc_99ed7d4 Manual Unknown Agent Activation Runtime_99ed7d4
old: BcastDVRUserService_99ed7d4 Manual Unknown Användartjänst för Spel-DVR och sändning_99ed7d4
old: BluetoothUserService_99ed7d4 Manual Unknown Bluetooth User Support Service_99ed7d4
old: CaptureService_99ed7d4 Manual Unknown CaptureService_99ed7d4
old: cbdhsvc_99ed7d4 Manual Unknown Clipboard User Service_99ed7d4
old: CDPUserSvc_99ed7d4 Auto Unknown Connected Devices Platform User Service_99ed7d4
old: ConsentUxUserSvc_99ed7d4 Manual Unknown ConsentUX_99ed7d4
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_99ed7d4
old: DeviceAssociationBrokerSvc_99e Manual Unknown DeviceAssociationBroker_99ed7d4
old: DevicePickerUserSvc_99ed7d4 Manual Unknown DevicePicker_99ed7d4
old: DevicesFlowUserSvc_99ed7d4 Manual Unknown DevicesFlow_99ed7d4
old: MessagingService_99ed7d4 Manual Unknown MessagingService_99ed7d4
old: OneSyncSvc_99ed7d4 Auto Unknown Synkroniseringsvärd_99ed7d4
old: PimIndexMaintenanceSvc_99ed7d4 Manual Unknown Contact Data_99ed7d4
old: PrintWorkflowUserSvc_99ed7d4 Manual Unknown PrintWorkflow_99ed7d4
old: UdkUserSvc_99ed7d4 Manual Unknown Udk-användartjänst_99ed7d4
old: UnistoreSvc_99ed7d4 Manual Unknown User Data Storage_99ed7d4
old: UserDataSvc_99ed7d4 Manual Unknown User Data Access_99ed7d4
old: WpnUserService_99ed7d4 Auto Unknown Windows Push Notifications User Service_99ed7d4
system - services - AarSvc_99ed7d4
old: DisplayName : Agent Activation Runtime_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_99ed7d4
old: DisplayName : Användartjänst för Spel-DVR och sändning_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_99ed7d4
old: DisplayName : Bluetooth User Support Service_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_99ed7d4
old: DisplayName : CaptureService_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_99ed7d4
old: DisplayName : Clipboard User Service_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_99ed7d4
old: DisplayName : Connected Devices Platform User Service_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_99ed7d4
old: DisplayName : ConsentUX_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_99ed7d4
old: DisplayName : CredentialEnrollmentManagerUserSvc_99ed7d4
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_99ed7d4
old: DisplayName : DeviceAssociationBroker_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_99ed7d4
old: DisplayName : DevicePicker_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_99ed7d4
old: DisplayName : DevicesFlow_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_99ed7d4
old: DisplayName : MessagingService_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_99ed7d4
old: DisplayName : Synkroniseringsvärd_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_99ed7d4
old: DisplayName : Contact Data_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_99ed7d4
old: DisplayName : PrintWorkflow_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_99ed7d4
old: DisplayName : Udk-användartjänst_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_99ed7d4
old: DisplayName : User Data Storage_99ed7d4
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_99ed7d4
old: DisplayName : User Data Access_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_99ed7d4
old: DisplayName : Windows Push Notifications User Service_99ed7d4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2024-07-21 17.55.30
remark :
runtime : 26
count : 4
previous date : 2024-07-20
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 126.0.2592.102
new: Version : 126.0.2592.113
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.102\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.113\elevation_service.exe"
Top Runs Differences at: 2024-07-20 17.55.30
remark :
runtime : 19
count : 68
previous date : 2024-07-19
previous time : 17.55.30
software - product - Microsoft Edge WebView2 Runtime
old: Version : 126.0.2592.102
new: Version : 126.0.2592.113
system - services - survey
old: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 128.0.6537.3 (GoogleUpdaterInt
old: GoogleUpdaterService128.0.6537 Auto Own Process GoogleUpdater Service 128.0.6537.3 (GoogleUpdaterService128.
new: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 128.0.6597.0 (GoogleUpdaterInt
new: GoogleUpdaterService128.0.6597 Auto Own Process GoogleUpdater Service 128.0.6597.0 (GoogleUpdaterService128.
system - services - GoogleUpdaterInternalService128.0.6537.3
old: DisplayName : GoogleUpdater InternalService 128.0.6537.3 (GoogleUpdaterInternalService128.0.6537.3)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.3\updater.exe" --system --windows-service --service=update-internal
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService128.0.6537.3
old: DisplayName : GoogleUpdater Service 128.0.6537.3 (GoogleUpdaterService128.0.6537.3)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.3\updater.exe" --system --windows-service --service=update
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterInternalService128.0.6597.0
new: DisplayName : GoogleUpdater InternalService 128.0.6597.0 (GoogleUpdaterInternalService128.0.6597.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe" --system --windows-service --service=update-internal
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - GoogleUpdaterService128.0.6597.0
new: DisplayName : GoogleUpdater Service 128.0.6597.0 (GoogleUpdaterService128.0.6597.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe" --system --windows-service --service=update
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - RpcSs
old: Required by : GoogleUpdaterInternalService128.0.6537.3
old: Required by : GoogleUpdaterService128.0.6537.3
new: Required by : GoogleUpdaterInternalService128.0.6597.0
new: Required by : GoogleUpdaterService128.0.6597.0
system - services - GoogleUpdaterInternalService128.0.6537.3
old: Requires : RpcSs
system - services - GoogleUpdaterService128.0.6537.3
old: Requires : RpcSs
system - services - GoogleUpdaterInternalService128.0.6597.0
new: Requires : RpcSs
system - services - GoogleUpdaterService128.0.6597.0
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6537.3{B774702D-6981-4C4D-87E4-2C5BE58F68E3}
old: Logon Mode : Interactive/Background
old: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.3\updater.exe" --wake --system
old: Start In : N/A
old: Comment : GoogleUpdater Task System 128.0.6537.3
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : Every 1 day(s)
old: Months : N/A
old: Repeat: Every : 1 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
old: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6597.0{08E3567B-A103-4EA0-B257-DFCE63A66D39}
new: Logon Mode : Interactive/Background
new: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe" --wake --system
new: Start In : N/A
new: Comment : GoogleUpdater Task System 128.0.6597.0
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
new: Repeat: Every : 1 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
new: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
Top Runs Differences at: 2024-07-19 17.55.30
remark :
runtime : 43
count : 66
previous date : 2024-07-18
previous time : 17.55.30
system - services - survey
old: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 128.0.6537.0 (GoogleUpdaterInt
old: GoogleUpdaterService128.0.6537 Auto Own Process GoogleUpdater Service 128.0.6537.0 (GoogleUpdaterService128.
new: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 128.0.6537.3 (GoogleUpdaterInt
new: GoogleUpdaterService128.0.6537 Auto Own Process GoogleUpdater Service 128.0.6537.3 (GoogleUpdaterService128.
system - services - GoogleUpdaterInternalService128.0.6537.0
old: DisplayName : GoogleUpdater InternalService 128.0.6537.0 (GoogleUpdaterInternalService128.0.6537.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.0\updater.exe" --system --windows-service --service=update-internal
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService128.0.6537.0
old: DisplayName : GoogleUpdater Service 128.0.6537.0 (GoogleUpdaterService128.0.6537.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.0\updater.exe" --system --windows-service --service=update
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterInternalService128.0.6537.3
new: DisplayName : GoogleUpdater InternalService 128.0.6537.3 (GoogleUpdaterInternalService128.0.6537.3)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.3\updater.exe" --system --windows-service --service=update-internal
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - GoogleUpdaterService128.0.6537.3
new: DisplayName : GoogleUpdater Service 128.0.6537.3 (GoogleUpdaterService128.0.6537.3)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.3\updater.exe" --system --windows-service --service=update
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - RpcSs
old: Required by : GoogleUpdaterInternalService128.0.6537.0
old: Required by : GoogleUpdaterService128.0.6537.0
new: Required by : GoogleUpdaterInternalService128.0.6537.3
new: Required by : GoogleUpdaterService128.0.6537.3
system - services - GoogleUpdaterInternalService128.0.6537.0
old: Requires : RpcSs
system - services - GoogleUpdaterService128.0.6537.0
old: Requires : RpcSs
system - services - GoogleUpdaterInternalService128.0.6537.3
new: Requires : RpcSs
system - services - GoogleUpdaterService128.0.6537.3
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6537.0{F61305A3-780D-425F-B84F-A261A9FE7064}
old: Logon Mode : Interactive/Background
old: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.0\updater.exe" --wake --system
old: Start In : N/A
old: Comment : GoogleUpdater Task System 128.0.6537.0
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : Every 1 day(s)
old: Months : N/A
old: Repeat: Every : 1 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
old: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6537.3{B774702D-6981-4C4D-87E4-2C5BE58F68E3}
new: Logon Mode : Interactive/Background
new: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.3\updater.exe" --wake --system
new: Start In : N/A
new: Comment : GoogleUpdater Task System 128.0.6537.3
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
new: Repeat: Every : 1 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
new: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
Top Runs Differences at: 2024-07-17 17.55.30
remark :
runtime : 41
count : 4
previous date : 2024-07-16
previous time : 17.55.30
software - product - Google Chrome
old: Version : 126.0.6478.127
new: Version : 126.0.6478.182
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.127\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.182\elevation_service.exe"
Top Runs Differences at: 2024-07-16 17.55.30
remark :
runtime : 20
count : 181
previous date : 2024-07-15
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
old: User : CORP\Administrator
new: User : CORP\administrator
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_99ed7d4 Manual Unknown Agent Activation Runtime_99ed7d4
new: BcastDVRUserService_99ed7d4 Manual Unknown Användartjänst för Spel-DVR och sändning_99ed7d4
new: BluetoothUserService_99ed7d4 Manual Unknown Bluetooth User Support Service_99ed7d4
new: CaptureService_99ed7d4 Manual Unknown CaptureService_99ed7d4
new: cbdhsvc_99ed7d4 Manual Unknown Clipboard User Service_99ed7d4
new: CDPUserSvc_99ed7d4 Auto Unknown Connected Devices Platform User Service_99ed7d4
new: ConsentUxUserSvc_99ed7d4 Manual Unknown ConsentUX_99ed7d4
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_99ed7d4
new: DeviceAssociationBrokerSvc_99e Manual Unknown DeviceAssociationBroker_99ed7d4
new: DevicePickerUserSvc_99ed7d4 Manual Unknown DevicePicker_99ed7d4
new: DevicesFlowUserSvc_99ed7d4 Manual Unknown DevicesFlow_99ed7d4
new: MessagingService_99ed7d4 Manual Unknown MessagingService_99ed7d4
new: OneSyncSvc_99ed7d4 Auto Unknown Synkroniseringsvärd_99ed7d4
new: PimIndexMaintenanceSvc_99ed7d4 Manual Unknown Contact Data_99ed7d4
new: PrintWorkflowUserSvc_99ed7d4 Manual Unknown PrintWorkflow_99ed7d4
new: UdkUserSvc_99ed7d4 Manual Unknown Udk-användartjänst_99ed7d4
new: UnistoreSvc_99ed7d4 Manual Unknown User Data Storage_99ed7d4
new: UserDataSvc_99ed7d4 Manual Unknown User Data Access_99ed7d4
new: WpnUserService_99ed7d4 Auto Unknown Windows Push Notifications User Service_99ed7d4
system - services - AarSvc_99ed7d4
new: DisplayName : Agent Activation Runtime_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_99ed7d4
new: DisplayName : Användartjänst för Spel-DVR och sändning_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_99ed7d4
new: DisplayName : Bluetooth User Support Service_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_99ed7d4
new: DisplayName : CaptureService_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_99ed7d4
new: DisplayName : Clipboard User Service_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_99ed7d4
new: DisplayName : Connected Devices Platform User Service_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_99ed7d4
new: DisplayName : ConsentUX_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_99ed7d4
new: DisplayName : CredentialEnrollmentManagerUserSvc_99ed7d4
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_99ed7d4
new: DisplayName : DeviceAssociationBroker_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_99ed7d4
new: DisplayName : DevicePicker_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_99ed7d4
new: DisplayName : DevicesFlow_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MDCoreSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpDefenderCoreService.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpDefenderCoreService.exe"
system - services - MessagingService_99ed7d4
new: DisplayName : MessagingService_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_99ed7d4
new: DisplayName : Synkroniseringsvärd_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_99ed7d4
new: DisplayName : Contact Data_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_99ed7d4
new: DisplayName : PrintWorkflow_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_99ed7d4
new: DisplayName : Udk-användartjänst_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_99ed7d4
new: DisplayName : User Data Storage_99ed7d4
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_99ed7d4
new: DisplayName : User Data Access_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MsMpEng.exe"
system - services - WpnUserService_99ed7d4
new: DisplayName : Windows Push Notifications User Service_99ed7d4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-07-15 17.55.30
remark :
runtime : 18
count : 12
previous date : 2024-07-14
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-07-14 17.55.30
remark :
runtime : 24
count : 12
previous date : 2024-07-13
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-07-13 17.55.30
remark :
runtime : 20
count : 18
previous date : 2024-07-12
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Microsoft Edge
old: Version : 126.0.2592.87
new: Version : 126.0.2592.102
software - product - Microsoft Edge WebView2 Runtime
old: Version : 126.0.2592.87
new: Version : 126.0.2592.102
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.87\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.102\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-07-12 17.55.30
remark :
runtime : 18
count : 14
previous date : 2024-07-11
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 92.0.1.0
new: Version : 93.0.1.0
old: Install Location : C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\93.0.1.0\GoogleDriveFS.exe
Top Runs Differences at: 2024-07-11 17.55.30
remark :
runtime : 18
count : 2
previous date : 2024-07-10
previous time : 17.55.30
software - product - Microsoft Edge Update
old: Version : 1.3.187.41
new: Version : 1.3.193.5
Top Runs Differences at: 2024-07-09 22.03.01
remark :
runtime : 31
count : 167
previous date : 2024-07-09
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5037587
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5039299
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5039893
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5040427
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_7748dcb Manual Unknown Agent Activation Runtime_7748dcb
old: BcastDVRUserService_7748dcb Manual Unknown Användartjänst för Spel-DVR och sändning_7748dcb
old: BluetoothUserService_7748dcb Manual Unknown Bluetooth User Support Service_7748dcb
old: CaptureService_7748dcb Manual Unknown CaptureService_7748dcb
old: cbdhsvc_7748dcb Manual Unknown Clipboard User Service_7748dcb
old: CDPUserSvc_7748dcb Auto Unknown Connected Devices Platform User Service_7748dcb
old: ConsentUxUserSvc_7748dcb Manual Unknown ConsentUX_7748dcb
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_7748dcb
old: DeviceAssociationBrokerSvc_774 Manual Unknown DeviceAssociationBroker_7748dcb
old: DevicePickerUserSvc_7748dcb Manual Unknown DevicePicker_7748dcb
old: DevicesFlowUserSvc_7748dcb Manual Unknown DevicesFlow_7748dcb
old: MessagingService_7748dcb Manual Unknown MessagingService_7748dcb
old: OneSyncSvc_7748dcb Auto Unknown Synkroniseringsvärd_7748dcb
old: PimIndexMaintenanceSvc_7748dcb Manual Unknown Contact Data_7748dcb
old: PrintWorkflowUserSvc_7748dcb Manual Unknown PrintWorkflow_7748dcb
old: UdkUserSvc_7748dcb Manual Unknown Udk-användartjänst_7748dcb
old: UnistoreSvc_7748dcb Manual Unknown User Data Storage_7748dcb
old: UserDataSvc_7748dcb Manual Unknown User Data Access_7748dcb
old: WpnUserService_7748dcb Auto Unknown Windows Push Notifications User Service_7748dcb
system - services - AarSvc_7748dcb
old: DisplayName : Agent Activation Runtime_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_7748dcb
old: DisplayName : Användartjänst för Spel-DVR och sändning_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_7748dcb
old: DisplayName : Bluetooth User Support Service_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_7748dcb
old: DisplayName : CaptureService_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_7748dcb
old: DisplayName : Clipboard User Service_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_7748dcb
old: DisplayName : Connected Devices Platform User Service_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_7748dcb
old: DisplayName : ConsentUX_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_7748dcb
old: DisplayName : CredentialEnrollmentManagerUserSvc_7748dcb
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_7748dcb
old: DisplayName : DeviceAssociationBroker_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_7748dcb
old: DisplayName : DevicePicker_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_7748dcb
old: DisplayName : DevicesFlow_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_7748dcb
old: DisplayName : MessagingService_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_7748dcb
old: DisplayName : Synkroniseringsvärd_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_7748dcb
old: DisplayName : Contact Data_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_7748dcb
old: DisplayName : PrintWorkflow_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_7748dcb
old: DisplayName : Udk-användartjänst_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_7748dcb
old: DisplayName : User Data Storage_7748dcb
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_7748dcb
old: DisplayName : User Data Access_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_7748dcb
old: DisplayName : Windows Push Notifications User Service_7748dcb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2024-07-04 17.55.29
remark :
runtime : 21
count : 6
previous date : 2024-07-03
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 126.0.2592.81
new: Version : 126.0.2592.87
software - product - Microsoft Edge WebView2 Runtime
old: Version : 126.0.2592.81
new: Version : 126.0.2592.87
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.81\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.87\elevation_service.exe"
Top Runs Differences at: 2024-07-01 17.55.29
remark :
runtime : 19
count : 179
previous date : 2024-06-30
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
old: User : CORP\Administrator
new: User : CORP\administrator
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_7748dcb Manual Unknown Agent Activation Runtime_7748dcb
new: BcastDVRUserService_7748dcb Manual Unknown Användartjänst för Spel-DVR och sändning_7748dcb
new: BluetoothUserService_7748dcb Manual Unknown Bluetooth User Support Service_7748dcb
new: CaptureService_7748dcb Manual Unknown CaptureService_7748dcb
new: cbdhsvc_7748dcb Manual Unknown Clipboard User Service_7748dcb
new: CDPUserSvc_7748dcb Auto Unknown Connected Devices Platform User Service_7748dcb
new: ConsentUxUserSvc_7748dcb Manual Unknown ConsentUX_7748dcb
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_7748dcb
new: DeviceAssociationBrokerSvc_774 Manual Unknown DeviceAssociationBroker_7748dcb
new: DevicePickerUserSvc_7748dcb Manual Unknown DevicePicker_7748dcb
new: DevicesFlowUserSvc_7748dcb Manual Unknown DevicesFlow_7748dcb
new: MessagingService_7748dcb Manual Unknown MessagingService_7748dcb
new: OneSyncSvc_7748dcb Auto Unknown Synkroniseringsvärd_7748dcb
new: PimIndexMaintenanceSvc_7748dcb Manual Unknown Contact Data_7748dcb
new: PrintWorkflowUserSvc_7748dcb Manual Unknown PrintWorkflow_7748dcb
new: UdkUserSvc_7748dcb Manual Unknown Udk-användartjänst_7748dcb
new: UnistoreSvc_7748dcb Manual Unknown User Data Storage_7748dcb
new: UserDataSvc_7748dcb Manual Unknown User Data Access_7748dcb
new: WpnUserService_7748dcb Auto Unknown Windows Push Notifications User Service_7748dcb
system - services - AarSvc_7748dcb
new: DisplayName : Agent Activation Runtime_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_7748dcb
new: DisplayName : Användartjänst för Spel-DVR och sändning_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_7748dcb
new: DisplayName : Bluetooth User Support Service_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_7748dcb
new: DisplayName : CaptureService_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_7748dcb
new: DisplayName : Clipboard User Service_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_7748dcb
new: DisplayName : Connected Devices Platform User Service_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_7748dcb
new: DisplayName : ConsentUX_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_7748dcb
new: DisplayName : CredentialEnrollmentManagerUserSvc_7748dcb
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_7748dcb
new: DisplayName : DeviceAssociationBroker_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_7748dcb
new: DisplayName : DevicePicker_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_7748dcb
new: DisplayName : DevicesFlow_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_7748dcb
new: DisplayName : MessagingService_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_7748dcb
new: DisplayName : Synkroniseringsvärd_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_7748dcb
new: DisplayName : Contact Data_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_7748dcb
new: DisplayName : PrintWorkflow_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_7748dcb
new: DisplayName : Udk-användartjänst_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_7748dcb
new: DisplayName : User Data Storage_7748dcb
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_7748dcb
new: DisplayName : User Data Access_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_7748dcb
new: DisplayName : Windows Push Notifications User Service_7748dcb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-06-30 17.55.30
remark :
runtime : 18
count : 12
previous date : 2024-06-29
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-06-29 17.55.30
remark :
runtime : 18
count : 6
previous date : 2024-06-28
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 126.0.2592.68
new: Version : 126.0.2592.81
software - product - Microsoft Edge WebView2 Runtime
old: Version : 126.0.2592.68
new: Version : 126.0.2592.81
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.68\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.81\elevation_service.exe"
Top Runs Differences at: 2024-06-27 17.55.29
remark :
runtime : 20
count : 4
previous date : 2024-06-26
previous time : 17.55.29
software - product - Google Chrome
old: Version : 126.0.6478.126
new: Version : 126.0.6478.127
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.126\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.127\elevation_service.exe"
Top Runs Differences at: 2024-06-26 08.16.15
remark :
runtime : 36
count : 178
previous date : 2024-06-25
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5039211
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5039299
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5039336
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_6a4c8c2 Manual Unknown Agent Activation Runtime_6a4c8c2
old: BcastDVRUserService_6a4c8c2 Manual Unknown Användartjänst för Spel-DVR och sändning_6a4c8c2
old: BluetoothUserService_6a4c8c2 Manual Unknown Bluetooth User Support Service_6a4c8c2
old: CaptureService_6a4c8c2 Manual Unknown CaptureService_6a4c8c2
old: cbdhsvc_6a4c8c2 Manual Unknown Clipboard User Service_6a4c8c2
old: CDPUserSvc_6a4c8c2 Auto Unknown Connected Devices Platform User Service_6a4c8c2
old: ConsentUxUserSvc_6a4c8c2 Manual Unknown ConsentUX_6a4c8c2
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_6a4c8c2
old: DeviceAssociationBrokerSvc_6a4 Manual Unknown DeviceAssociationBroker_6a4c8c2
old: DevicePickerUserSvc_6a4c8c2 Manual Unknown DevicePicker_6a4c8c2
old: DevicesFlowUserSvc_6a4c8c2 Manual Unknown DevicesFlow_6a4c8c2
old: MessagingService_6a4c8c2 Manual Unknown MessagingService_6a4c8c2
old: OneSyncSvc_6a4c8c2 Auto Unknown Synkroniseringsvärd_6a4c8c2
old: PimIndexMaintenanceSvc_6a4c8c2 Manual Unknown Contact Data_6a4c8c2
old: PrintWorkflowUserSvc_6a4c8c2 Manual Unknown PrintWorkflow_6a4c8c2
old: UdkUserSvc_6a4c8c2 Manual Unknown Udk-användartjänst_6a4c8c2
old: UnistoreSvc_6a4c8c2 Manual Unknown User Data Storage_6a4c8c2
old: UserDataSvc_6a4c8c2 Manual Unknown User Data Access_6a4c8c2
old: WpnUserService_6a4c8c2 Auto Unknown Windows Push Notifications User Service_6a4c8c2
system - services - AarSvc_6a4c8c2
old: DisplayName : Agent Activation Runtime_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_6a4c8c2
old: DisplayName : Användartjänst för Spel-DVR och sändning_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_6a4c8c2
old: DisplayName : Bluetooth User Support Service_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_6a4c8c2
old: DisplayName : CaptureService_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_6a4c8c2
old: DisplayName : Clipboard User Service_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_6a4c8c2
old: DisplayName : Connected Devices Platform User Service_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_6a4c8c2
old: DisplayName : ConsentUX_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_6a4c8c2
old: DisplayName : CredentialEnrollmentManagerUserSvc_6a4c8c2
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_6a4c8c2
old: DisplayName : DeviceAssociationBroker_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_6a4c8c2
old: DisplayName : DevicePicker_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_6a4c8c2
old: DisplayName : DevicesFlow_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_6a4c8c2
old: DisplayName : MessagingService_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_6a4c8c2
old: DisplayName : Synkroniseringsvärd_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_6a4c8c2
old: DisplayName : Contact Data_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_6a4c8c2
old: DisplayName : PrintWorkflow_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_6a4c8c2
old: DisplayName : Udk-användartjänst_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_6a4c8c2
old: DisplayName : User Data Storage_6a4c8c2
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_6a4c8c2
old: DisplayName : User Data Access_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_6a4c8c2
old: DisplayName : Windows Push Notifications User Service_6a4c8c2
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\ConsentUX\UnifiedConsent\UnifiedConsentSyncTask
new: Repeat: Every : 24 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2024-06-25 17.55.29
remark :
runtime : 20
count : 4
previous date : 2024-06-24
previous time : 17.55.29
software - product - Google Chrome
old: Version : 126.0.6478.63
new: Version : 126.0.6478.126
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.63\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.126\elevation_service.exe"
Top Runs Differences at: 2024-06-23 17.55.29
remark :
runtime : 40
count : 159
previous date : 2024-06-22
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: Version : 126.0.2592.61
new: Version : 126.0.2592.68
system - services - survey
new: AarSvc_6a4c8c2 Manual Unknown Agent Activation Runtime_6a4c8c2
new: BcastDVRUserService_6a4c8c2 Manual Unknown Användartjänst för Spel-DVR och sändning_6a4c8c2
new: BluetoothUserService_6a4c8c2 Manual Unknown Bluetooth User Support Service_6a4c8c2
new: CaptureService_6a4c8c2 Manual Unknown CaptureService_6a4c8c2
new: cbdhsvc_6a4c8c2 Manual Unknown Clipboard User Service_6a4c8c2
new: CDPUserSvc_6a4c8c2 Auto Unknown Connected Devices Platform User Service_6a4c8c2
new: ConsentUxUserSvc_6a4c8c2 Manual Unknown ConsentUX_6a4c8c2
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_6a4c8c2
new: DeviceAssociationBrokerSvc_6a4 Manual Unknown DeviceAssociationBroker_6a4c8c2
new: DevicePickerUserSvc_6a4c8c2 Manual Unknown DevicePicker_6a4c8c2
new: DevicesFlowUserSvc_6a4c8c2 Manual Unknown DevicesFlow_6a4c8c2
new: MessagingService_6a4c8c2 Manual Unknown MessagingService_6a4c8c2
new: OneSyncSvc_6a4c8c2 Auto Unknown Synkroniseringsvärd_6a4c8c2
new: PimIndexMaintenanceSvc_6a4c8c2 Manual Unknown Contact Data_6a4c8c2
new: PrintWorkflowUserSvc_6a4c8c2 Manual Unknown PrintWorkflow_6a4c8c2
new: UdkUserSvc_6a4c8c2 Manual Unknown Udk-användartjänst_6a4c8c2
new: UnistoreSvc_6a4c8c2 Manual Unknown User Data Storage_6a4c8c2
new: UserDataSvc_6a4c8c2 Manual Unknown User Data Access_6a4c8c2
new: WpnUserService_6a4c8c2 Auto Unknown Windows Push Notifications User Service_6a4c8c2
system - services - AarSvc_6a4c8c2
new: DisplayName : Agent Activation Runtime_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_6a4c8c2
new: DisplayName : Användartjänst för Spel-DVR och sändning_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_6a4c8c2
new: DisplayName : Bluetooth User Support Service_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_6a4c8c2
new: DisplayName : CaptureService_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_6a4c8c2
new: DisplayName : Clipboard User Service_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_6a4c8c2
new: DisplayName : Connected Devices Platform User Service_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_6a4c8c2
new: DisplayName : ConsentUX_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_6a4c8c2
new: DisplayName : CredentialEnrollmentManagerUserSvc_6a4c8c2
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_6a4c8c2
new: DisplayName : DeviceAssociationBroker_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_6a4c8c2
new: DisplayName : DevicePicker_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_6a4c8c2
new: DisplayName : DevicesFlow_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_6a4c8c2
new: DisplayName : MessagingService_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.61\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.68\elevation_service.exe"
system - services - OneSyncSvc_6a4c8c2
new: DisplayName : Synkroniseringsvärd_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_6a4c8c2
new: DisplayName : Contact Data_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_6a4c8c2
new: DisplayName : PrintWorkflow_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_6a4c8c2
new: DisplayName : Udk-användartjänst_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_6a4c8c2
new: DisplayName : User Data Storage_6a4c8c2
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_6a4c8c2
new: DisplayName : User Data Access_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_6a4c8c2
new: DisplayName : Windows Push Notifications User Service_6a4c8c2
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2024-06-22 17.55.29
remark :
runtime : 18
count : 2
previous date : 2024-06-21
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 126.0.2592.61
new: Version : 126.0.2592.68
Top Runs Differences at: 2024-06-21 17.55.29
remark :
runtime : 19
count : 14
previous date : 2024-06-20
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 92.0.0.0
new: Version : 92.0.1.0
old: Install Location : C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe
Top Runs Differences at: 2024-06-20 17.55.29
remark :
runtime : 19
count : 16
previous date : 2024-06-19
previous time : 17.55.29
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Microsoft Edge
old: Version : 126.0.2592.56
new: Version : 126.0.2592.61
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.56\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.61\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-06-19 17.55.29
remark :
runtime : 21
count : 18
previous date : 2024-06-18
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Google Chrome
old: Version : 126.0.6478.61
new: Version : 126.0.6478.63
software - product - Microsoft Edge WebView2 Runtime
old: Version : 125.0.2535.92
new: Version : 126.0.2592.61
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.61\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.63\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-06-18 15.43.55
remark :
runtime : 27
count : 155
previous date : 2024-06-17
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - services - survey
old: AarSvc_745a081 Manual Unknown Agent Activation Runtime_745a081
old: BcastDVRUserService_745a081 Manual Unknown Användartjänst för Spel-DVR och sändning_745a081
old: BluetoothUserService_745a081 Manual Unknown Bluetooth User Support Service_745a081
old: CaptureService_745a081 Manual Unknown CaptureService_745a081
old: cbdhsvc_745a081 Manual Unknown Clipboard User Service_745a081
old: CDPUserSvc_745a081 Auto Unknown Connected Devices Platform User Service_745a081
old: ConsentUxUserSvc_745a081 Manual Unknown ConsentUX_745a081
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_745a081
old: DeviceAssociationBrokerSvc_745 Manual Unknown DeviceAssociationBroker_745a081
old: DevicePickerUserSvc_745a081 Manual Unknown DevicePicker_745a081
old: DevicesFlowUserSvc_745a081 Manual Unknown DevicesFlow_745a081
old: MessagingService_745a081 Manual Unknown MessagingService_745a081
old: OneSyncSvc_745a081 Auto Unknown Synkroniseringsvärd_745a081
old: PimIndexMaintenanceSvc_745a081 Manual Unknown Contact Data_745a081
old: PrintWorkflowUserSvc_745a081 Manual Unknown PrintWorkflow_745a081
old: UdkUserSvc_745a081 Manual Unknown Udk-användartjänst_745a081
old: UnistoreSvc_745a081 Manual Unknown User Data Storage_745a081
old: UserDataSvc_745a081 Manual Unknown User Data Access_745a081
old: WpnUserService_745a081 Auto Unknown Windows Push Notifications User Service_745a081
system - services - AarSvc_745a081
old: DisplayName : Agent Activation Runtime_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_745a081
old: DisplayName : Användartjänst för Spel-DVR och sändning_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_745a081
old: DisplayName : Bluetooth User Support Service_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_745a081
old: DisplayName : CaptureService_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_745a081
old: DisplayName : Clipboard User Service_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_745a081
old: DisplayName : Connected Devices Platform User Service_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_745a081
old: DisplayName : ConsentUX_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_745a081
old: DisplayName : CredentialEnrollmentManagerUserSvc_745a081
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_745a081
old: DisplayName : DeviceAssociationBroker_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_745a081
old: DisplayName : DevicePicker_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_745a081
old: DisplayName : DevicesFlow_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_745a081
old: DisplayName : MessagingService_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_745a081
old: DisplayName : Synkroniseringsvärd_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_745a081
old: DisplayName : Contact Data_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_745a081
old: DisplayName : PrintWorkflow_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_745a081
old: DisplayName : Udk-användartjänst_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_745a081
old: DisplayName : User Data Storage_745a081
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_745a081
old: DisplayName : User Data Access_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_745a081
old: DisplayName : Windows Push Notifications User Service_745a081
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2024-06-17 17.55.29
remark :
runtime : 19
count : 245
previous date : 2024-06-16
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_745a081 Manual Unknown Agent Activation Runtime_745a081
new: BcastDVRUserService_745a081 Manual Unknown Användartjänst för Spel-DVR och sändning_745a081
new: BluetoothUserService_745a081 Manual Unknown Bluetooth User Support Service_745a081
new: CaptureService_745a081 Manual Unknown CaptureService_745a081
new: cbdhsvc_745a081 Manual Unknown Clipboard User Service_745a081
new: CDPUserSvc_745a081 Auto Unknown Connected Devices Platform User Service_745a081
new: ConsentUxUserSvc_745a081 Manual Unknown ConsentUX_745a081
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_745a081
new: DeviceAssociationBrokerSvc_745 Manual Unknown DeviceAssociationBroker_745a081
new: DevicePickerUserSvc_745a081 Manual Unknown DevicePicker_745a081
new: DevicesFlowUserSvc_745a081 Manual Unknown DevicesFlow_745a081
old: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 127.0.6490.0 (GoogleUpdaterInt
old: GoogleUpdaterService127.0.6490 Auto Own Process GoogleUpdater Service 127.0.6490.0 (GoogleUpdaterService127.
new: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 128.0.6537.0 (GoogleUpdaterInt
new: GoogleUpdaterService128.0.6537 Auto Own Process GoogleUpdater Service 128.0.6537.0 (GoogleUpdaterService128.
new: MessagingService_745a081 Manual Unknown MessagingService_745a081
new: OneSyncSvc_745a081 Auto Unknown Synkroniseringsvärd_745a081
new: PimIndexMaintenanceSvc_745a081 Manual Unknown Contact Data_745a081
new: PrintWorkflowUserSvc_745a081 Manual Unknown PrintWorkflow_745a081
new: UdkUserSvc_745a081 Manual Unknown Udk-användartjänst_745a081
new: UnistoreSvc_745a081 Manual Unknown User Data Storage_745a081
new: UserDataSvc_745a081 Manual Unknown User Data Access_745a081
new: WpnUserService_745a081 Auto Unknown Windows Push Notifications User Service_745a081
system - services - AarSvc_745a081
new: DisplayName : Agent Activation Runtime_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_745a081
new: DisplayName : Användartjänst för Spel-DVR och sändning_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_745a081
new: DisplayName : Bluetooth User Support Service_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_745a081
new: DisplayName : CaptureService_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_745a081
new: DisplayName : Clipboard User Service_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_745a081
new: DisplayName : Connected Devices Platform User Service_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_745a081
new: DisplayName : ConsentUX_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_745a081
new: DisplayName : CredentialEnrollmentManagerUserSvc_745a081
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_745a081
new: DisplayName : DeviceAssociationBroker_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_745a081
new: DisplayName : DevicePicker_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_745a081
new: DisplayName : DevicesFlow_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleUpdaterInternalService127.0.6490.0
old: DisplayName : GoogleUpdater InternalService 127.0.6490.0 (GoogleUpdaterInternalService127.0.6490.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe" --system --windows-service --service=update-internal
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService127.0.6490.0
old: DisplayName : GoogleUpdater Service 127.0.6490.0 (GoogleUpdaterService127.0.6490.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe" --system --windows-service --service=update
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterInternalService128.0.6537.0
new: DisplayName : GoogleUpdater InternalService 128.0.6537.0 (GoogleUpdaterInternalService128.0.6537.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.0\updater.exe" --system --windows-service --service=update-internal
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - GoogleUpdaterService128.0.6537.0
new: DisplayName : GoogleUpdater Service 128.0.6537.0 (GoogleUpdaterService128.0.6537.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.0\updater.exe" --system --windows-service --service=update
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - MessagingService_745a081
new: DisplayName : MessagingService_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_745a081
new: DisplayName : Synkroniseringsvärd_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_745a081
new: DisplayName : Contact Data_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_745a081
new: DisplayName : PrintWorkflow_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_745a081
new: DisplayName : Udk-användartjänst_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_745a081
new: DisplayName : User Data Storage_745a081
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_745a081
new: DisplayName : User Data Access_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_745a081
new: DisplayName : Windows Push Notifications User Service_745a081
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - RpcSs
old: Required by : GoogleUpdaterInternalService127.0.6490.0
old: Required by : GoogleUpdaterService127.0.6490.0
new: Required by : GoogleUpdaterInternalService128.0.6537.0
new: Required by : GoogleUpdaterService128.0.6537.0
system - services - GoogleUpdaterInternalService127.0.6490.0
old: Requires : RpcSs
system - services - GoogleUpdaterService127.0.6490.0
old: Requires : RpcSs
system - services - GoogleUpdaterInternalService128.0.6537.0
new: Requires : RpcSs
system - services - GoogleUpdaterService128.0.6537.0
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem127.0.6490.0{48A548B6-481C-4823-8ED6-2ED5E5A1BDE2}
old: Logon Mode : Interactive/Background
old: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe" --wake --system
old: Start In : N/A
old: Comment : GoogleUpdater Task System 127.0.6490.0
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : Every 1 day(s)
old: Months : N/A
old: Repeat: Every : 1 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
old: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6537.0{F61305A3-780D-425F-B84F-A261A9FE7064}
new: Logon Mode : Interactive/Background
new: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.0\updater.exe" --wake --system
new: Start In : N/A
new: Comment : GoogleUpdater Task System 128.0.6537.0
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
new: Repeat: Every : 1 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
new: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2024-06-15 17.55.29
remark :
runtime : 19
count : 4
previous date : 2024-06-14
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 125.0.2535.92
new: Version : 126.0.2592.56
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\125.0.2535.92\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\126.0.2592.56\elevation_service.exe"
Top Runs Differences at: 2024-06-14 17.55.29
remark :
runtime : 18
count : 4
previous date : 2024-06-13
previous time : 17.55.29
software - product - Google Chrome
old: Version : 126.0.6478.56
new: Version : 126.0.6478.61
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.56\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.61\elevation_service.exe"
Top Runs Differences at: 2024-06-13 17.55.29
remark :
runtime : 18
count : 4
previous date : 2024-06-12
previous time : 17.55.29
software - product - Google Chrome
old: Version : 125.0.6422.142
new: Version : 126.0.6478.56
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\125.0.6422.142\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\126.0.6478.56\elevation_service.exe"
Top Runs Differences at: 2024-06-11 23.59.55
remark :
runtime : 33
count : 185
previous date : 2024-06-11
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5037849
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5039211
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_57ea6ba Manual Unknown Agent Activation Runtime_57ea6ba
old: BcastDVRUserService_57ea6ba Manual Unknown Användartjänst för Spel-DVR och sändning_57ea6ba
old: BluetoothUserService_57ea6ba Manual Unknown Bluetooth User Support Service_57ea6ba
old: CaptureService_57ea6ba Manual Unknown CaptureService_57ea6ba
old: cbdhsvc_57ea6ba Manual Unknown Clipboard User Service_57ea6ba
old: CDPUserSvc_57ea6ba Auto Unknown Connected Devices Platform User Service_57ea6ba
old: ConsentUxUserSvc_57ea6ba Manual Unknown ConsentUX_57ea6ba
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_57ea6ba
old: DeviceAssociationBrokerSvc_57e Manual Unknown DeviceAssociationBroker_57ea6ba
old: DevicePickerUserSvc_57ea6ba Manual Unknown DevicePicker_57ea6ba
old: DevicesFlowUserSvc_57ea6ba Manual Unknown DevicesFlow_57ea6ba
old: MessagingService_57ea6ba Manual Unknown MessagingService_57ea6ba
old: OneSyncSvc_57ea6ba Auto Unknown Synkroniseringsvärd_57ea6ba
old: PimIndexMaintenanceSvc_57ea6ba Manual Unknown Contact Data_57ea6ba
old: PrintWorkflowUserSvc_57ea6ba Manual Unknown PrintWorkflow_57ea6ba
old: UdkUserSvc_57ea6ba Manual Unknown Udk-användartjänst_57ea6ba
old: UnistoreSvc_57ea6ba Manual Unknown User Data Storage_57ea6ba
old: UserDataSvc_57ea6ba Manual Unknown User Data Access_57ea6ba
old: WpnUserService_57ea6ba Auto Unknown Windows Push Notifications User Service_57ea6ba
system - services - AarSvc_57ea6ba
old: DisplayName : Agent Activation Runtime_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_57ea6ba
old: DisplayName : Användartjänst för Spel-DVR och sändning_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_57ea6ba
old: DisplayName : Bluetooth User Support Service_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_57ea6ba
old: DisplayName : CaptureService_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_57ea6ba
old: DisplayName : Clipboard User Service_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_57ea6ba
old: DisplayName : Connected Devices Platform User Service_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_57ea6ba
old: DisplayName : ConsentUX_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_57ea6ba
old: DisplayName : CredentialEnrollmentManagerUserSvc_57ea6ba
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_57ea6ba
old: DisplayName : DeviceAssociationBroker_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_57ea6ba
old: DisplayName : DevicePicker_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_57ea6ba
old: DisplayName : DevicesFlow_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_57ea6ba
old: DisplayName : MessagingService_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_57ea6ba
old: DisplayName : Synkroniseringsvärd_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_57ea6ba
old: DisplayName : Contact Data_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_57ea6ba
old: DisplayName : PrintWorkflow_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_57ea6ba
old: DisplayName : Udk-användartjänst_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_57ea6ba
old: DisplayName : User Data Storage_57ea6ba
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_57ea6ba
old: DisplayName : User Data Access_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_57ea6ba
old: DisplayName : Windows Push Notifications User Service_57ea6ba
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2024-06-11 17.55.29
remark :
runtime : 18
count : 16
previous date : 2024-06-10
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 91.0.2.0
new: Version : 92.0.0.0
old: Install Location : C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\92.0.0.0\GoogleDriveFS.exe
Top Runs Differences at: 2024-06-09 17.55.29
remark :
runtime : 18
count : 4
previous date : 2024-06-08
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 125.0.2535.85
new: Version : 125.0.2535.92
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\125.0.2535.85\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\125.0.2535.92\elevation_service.exe"
Top Runs Differences at: 2024-06-08 17.55.29
remark :
runtime : 19
count : 2
previous date : 2024-06-07
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 125.0.2535.85
new: Version : 125.0.2535.92
Top Runs Differences at: 2024-06-07 17.55.29
remark :
runtime : 20
count : 2
previous date : 2024-06-06
previous time : 17.55.29
software - product - Microsoft Edge Update
old: Version : 1.3.187.39
new: Version : 1.3.187.41
Top Runs Differences at: 2024-06-05 17.55.30
remark :
runtime : 20
count : 24
previous date : 2024-06-04
previous time : 17.55.29
software - product - Google Chrome
old: Version : 125.0.6422.141
new: Version : 125.0.6422.142
software - product - Microsoft Edge
old: Version : 125.0.2535.79
new: Version : 125.0.2535.85
software - product - Microsoft Edge WebView2 Runtime
old: Version : 125.0.2535.79
new: Version : 125.0.2535.85
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\125.0.6422.141\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\125.0.6422.142\elevation_service.exe"
system - services - MDCoreSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MpDefenderCoreService.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpDefenderCoreService.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\125.0.2535.79\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\125.0.2535.85\elevation_service.exe"
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2024-06-03 17.55.29
remark :
runtime : 20
count : 12
previous date : 2024-06-02
previous time : 17.55.29
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-06-02 17.55.29
remark :
runtime : 24
count : 183
previous date : 2024-06-01
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: Version : 125.0.2535.67
new: Version : 125.0.2535.79
system - services - survey
new: AarSvc_57ea6ba Manual Unknown Agent Activation Runtime_57ea6ba
new: BcastDVRUserService_57ea6ba Manual Unknown Användartjänst för Spel-DVR och sändning_57ea6ba
new: BluetoothUserService_57ea6ba Manual Unknown Bluetooth User Support Service_57ea6ba
new: CaptureService_57ea6ba Manual Unknown CaptureService_57ea6ba
new: cbdhsvc_57ea6ba Manual Unknown Clipboard User Service_57ea6ba
new: CDPUserSvc_57ea6ba Auto Unknown Connected Devices Platform User Service_57ea6ba
new: ConsentUxUserSvc_57ea6ba Manual Unknown ConsentUX_57ea6ba
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_57ea6ba
new: DeviceAssociationBrokerSvc_57e Manual Unknown DeviceAssociationBroker_57ea6ba
new: DevicePickerUserSvc_57ea6ba Manual Unknown DevicePicker_57ea6ba
new: DevicesFlowUserSvc_57ea6ba Manual Unknown DevicesFlow_57ea6ba
new: MessagingService_57ea6ba Manual Unknown MessagingService_57ea6ba
new: OneSyncSvc_57ea6ba Auto Unknown Synkroniseringsvärd_57ea6ba
new: PimIndexMaintenanceSvc_57ea6ba Manual Unknown Contact Data_57ea6ba
new: PrintWorkflowUserSvc_57ea6ba Manual Unknown PrintWorkflow_57ea6ba
new: UdkUserSvc_57ea6ba Manual Unknown Udk-användartjänst_57ea6ba
new: UnistoreSvc_57ea6ba Manual Unknown User Data Storage_57ea6ba
new: UserDataSvc_57ea6ba Manual Unknown User Data Access_57ea6ba
new: WpnUserService_57ea6ba Auto Unknown Windows Push Notifications User Service_57ea6ba
system - services - AarSvc_57ea6ba
new: DisplayName : Agent Activation Runtime_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_57ea6ba
new: DisplayName : Användartjänst för Spel-DVR och sändning_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_57ea6ba
new: DisplayName : Bluetooth User Support Service_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_57ea6ba
new: DisplayName : CaptureService_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_57ea6ba
new: DisplayName : Clipboard User Service_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_57ea6ba
new: DisplayName : Connected Devices Platform User Service_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_57ea6ba
new: DisplayName : ConsentUX_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_57ea6ba
new: DisplayName : CredentialEnrollmentManagerUserSvc_57ea6ba
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_57ea6ba
new: DisplayName : DeviceAssociationBroker_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_57ea6ba
new: DisplayName : DevicePicker_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_57ea6ba
new: DisplayName : DevicesFlow_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_57ea6ba
new: DisplayName : MessagingService_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\125.0.2535.67\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\125.0.2535.79\elevation_service.exe"
system - services - OneSyncSvc_57ea6ba
new: DisplayName : Synkroniseringsvärd_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_57ea6ba
new: DisplayName : Contact Data_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_57ea6ba
new: DisplayName : PrintWorkflow_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_57ea6ba
new: DisplayName : Udk-användartjänst_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_57ea6ba
new: DisplayName : User Data Storage_57ea6ba
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_57ea6ba
new: DisplayName : User Data Access_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_57ea6ba
new: DisplayName : Windows Push Notifications User Service_57ea6ba
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2024-06-01 17.55.29
remark :
runtime : 18
count : 2
previous date : 2024-05-31
previous time : 17.55.30
software - product - Microsoft Edge WebView2 Runtime
old: Version : 125.0.2535.67
new: Version : 125.0.2535.79
Top Runs Differences at: 2024-05-31 17.55.30
remark :
runtime : 18
count : 16
previous date : 2024-05-30
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Google Chrome
old: Version : 125.0.6422.113
new: Version : 125.0.6422.141
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\125.0.6422.113\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\125.0.6422.141\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-05-30 05.51.30
remark :
runtime : 33
count : 37
previous date : 2024-05-29
previous time : 17.55.30
software - product - Google Chrome
old: Version : 125.0.6422.78
new: Version : 125.0.6422.113
system - hotfix - KB5037768
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5037849
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5037995
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\125.0.6422.78\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\125.0.6422.113\elevation_service.exe"
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2024-05-29 17.55.30
remark :
runtime : 19
count : 16
previous date : 2024-05-28
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Google Chrome
old: Version : 125.0.6422.77
new: Version : 125.0.6422.78
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\125.0.6422.77\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\125.0.6422.78\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-05-28 17.55.30
remark :
runtime : 18
count : 12
previous date : 2024-05-27
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-05-27 17.55.30
remark :
runtime : 18
count : 42
previous date : 2024-05-26
previous time : 20.46.14
system - services - survey
old: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 126.0.6462.0 (GoogleUpdaterInt
old: GoogleUpdaterService126.0.6462 Auto Own Process GoogleUpdater Service 126.0.6462.0 (GoogleUpdaterService126.
new: GoogleUpdaterService127.0.6490 Auto Own Process GoogleUpdater Service 127.0.6490.0 (GoogleUpdaterService127.
system - services - GoogleUpdaterInternalService126.0.6462.0
old: DisplayName : GoogleUpdater InternalService 126.0.6462.0 (GoogleUpdaterInternalService126.0.6462.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\126.0.6462.0\updater.exe" --system --windows-service --service=update-internal
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService126.0.6462.0
old: DisplayName : GoogleUpdater Service 126.0.6462.0 (GoogleUpdaterService126.0.6462.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\126.0.6462.0\updater.exe" --system --windows-service --service=update
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService127.0.6490.0
new: DisplayName : GoogleUpdater Service 127.0.6490.0 (GoogleUpdaterService127.0.6490.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe" --system --windows-service --service=update
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - RpcSs
old: Required by : GoogleUpdaterInternalService126.0.6462.0
old: Required by : GoogleUpdaterService126.0.6462.0
new: Required by : GoogleUpdaterService127.0.6490.0
system - services - GoogleUpdaterInternalService126.0.6462.0
old: Requires : RpcSs
system - services - GoogleUpdaterService126.0.6462.0
old: Requires : RpcSs
system - services - GoogleUpdaterService127.0.6490.0
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem126.0.6462.0{FD527E90-69E7-4E37-9659-635D5A55ADF9}
old: Logon Mode : Interactive/Background
old: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\126.0.6462.0\updater.exe" --wake --system
old: Start In : N/A
old: Comment : GoogleUpdater Task System 126.0.6462.0
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : Every 1 day(s)
old: Months : N/A
old: Repeat: Every : 1 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
old: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
Top Runs Differences at: 2024-05-26 20.46.14
remark :
runtime : 15
count : 8
previous date : 2024-05-26
previous time : 20.34.36
software - product - Microsoft Edge
old: Version : 125.0.2535.51
new: Version : 125.0.2535.67
software - product - Microsoft Edge Update
old: Version : 1.3.187.37
new: Version : 1.3.187.39
software - product - Microsoft Edge WebView2 Runtime
old: Version : 124.0.2478.97
new: Version : 125.0.2535.67
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\125.0.2535.51\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\125.0.2535.67\elevation_service.exe"
Top Runs Differences at: 2024-05-26 20.34.36
remark :
runtime : 64
count : 197
previous date : 2024-05-20
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
old: Command : C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe --startup_mode
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 124.0.6367.208
new: Version : 125.0.6422.77
software - product - Google Drive
old: Version : 90.0.3.0
new: Version : 91.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\91.0.2.0\GoogleDriveFS.exe
system - services - survey
old: AarSvc_1d29b7f Manual Unknown Agent Activation Runtime_1d29b7f
old: BcastDVRUserService_1d29b7f Manual Unknown Användartjänst för Spel-DVR och sändning_1d29b7f
old: BluetoothUserService_1d29b7f Manual Unknown Bluetooth User Support Service_1d29b7f
old: CaptureService_1d29b7f Manual Unknown CaptureService_1d29b7f
old: cbdhsvc_1d29b7f Manual Unknown Clipboard User Service_1d29b7f
old: CDPUserSvc_1d29b7f Auto Unknown Connected Devices Platform User Service_1d29b7f
old: ConsentUxUserSvc_1d29b7f Manual Unknown ConsentUX_1d29b7f
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1d29b7f
old: DeviceAssociationBrokerSvc_1d2 Manual Unknown DeviceAssociationBroker_1d29b7f
old: DevicePickerUserSvc_1d29b7f Manual Unknown DevicePicker_1d29b7f
old: DevicesFlowUserSvc_1d29b7f Manual Unknown DevicesFlow_1d29b7f
new: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 127.0.6490.0 (GoogleUpdaterInt
old: MessagingService_1d29b7f Manual Unknown MessagingService_1d29b7f
old: OneSyncSvc_1d29b7f Auto Unknown Synkroniseringsvärd_1d29b7f
old: PimIndexMaintenanceSvc_1d29b7f Manual Unknown Contact Data_1d29b7f
old: PrintWorkflowUserSvc_1d29b7f Manual Unknown PrintWorkflow_1d29b7f
old: UdkUserSvc_1d29b7f Manual Unknown Udk-användartjänst_1d29b7f
old: UnistoreSvc_1d29b7f Manual Unknown User Data Storage_1d29b7f
old: UserDataSvc_1d29b7f Manual Unknown User Data Access_1d29b7f
old: WpnUserService_1d29b7f Auto Unknown Windows Push Notifications User Service_1d29b7f
system - services - AarSvc_1d29b7f
old: DisplayName : Agent Activation Runtime_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_1d29b7f
old: DisplayName : Användartjänst för Spel-DVR och sändning_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_1d29b7f
old: DisplayName : Bluetooth User Support Service_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_1d29b7f
old: DisplayName : CaptureService_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_1d29b7f
old: DisplayName : Clipboard User Service_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_1d29b7f
old: DisplayName : Connected Devices Platform User Service_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_1d29b7f
old: DisplayName : ConsentUX_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1d29b7f
old: DisplayName : CredentialEnrollmentManagerUserSvc_1d29b7f
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_1d29b7f
old: DisplayName : DeviceAssociationBroker_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_1d29b7f
old: DisplayName : DevicePicker_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_1d29b7f
old: DisplayName : DevicesFlow_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.208\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\125.0.6422.77\elevation_service.exe"
system - services - GoogleUpdaterInternalService127.0.6490.0
new: DisplayName : GoogleUpdater InternalService 127.0.6490.0 (GoogleUpdaterInternalService127.0.6490.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe" --system --windows-service --service=update-internal
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - MessagingService_1d29b7f
old: DisplayName : MessagingService_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_1d29b7f
old: DisplayName : Synkroniseringsvärd_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_1d29b7f
old: DisplayName : Contact Data_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_1d29b7f
old: DisplayName : PrintWorkflow_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_1d29b7f
old: DisplayName : Udk-användartjänst_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_1d29b7f
old: DisplayName : User Data Storage_1d29b7f
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_1d29b7f
old: DisplayName : User Data Access_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_1d29b7f
old: DisplayName : Windows Push Notifications User Service_1d29b7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - RpcSs
new: Required by : GoogleUpdaterInternalService127.0.6490.0
system - services - GoogleUpdaterInternalService127.0.6490.0
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem127.0.6490.0{48A548B6-481C-4823-8ED6-2ED5E5A1BDE2}
new: Logon Mode : Interactive/Background
new: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe" --wake --system
new: Start In : N/A
new: Comment : GoogleUpdater Task System 127.0.6490.0
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
new: Repeat: Every : 1 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
new: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
Top Runs Differences at: 2024-05-19 17.55.29
remark :
runtime : 19
count : 4
previous date : 2024-05-18
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 124.0.2478.105
new: Version : 125.0.2535.51
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\124.0.2478.105\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\125.0.2535.51\elevation_service.exe"
Top Runs Differences at: 2024-05-17 17.55.29
remark :
runtime : 18
count : 18
previous date : 2024-05-16
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 124.0.2478.97
new: Version : 124.0.2478.105
system - services - MDCoreSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpDefenderCoreService.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MpDefenderCoreService.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\124.0.2478.97\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\124.0.2478.105\elevation_service.exe"
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2024-05-16 17.55.29
remark :
runtime : 18
count : 183
previous date : 2024-05-15
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Google Chrome
old: Version : 124.0.6367.207
new: Version : 124.0.6367.208
system - services - survey
new: AarSvc_1d29b7f Manual Unknown Agent Activation Runtime_1d29b7f
new: BcastDVRUserService_1d29b7f Manual Unknown Användartjänst för Spel-DVR och sändning_1d29b7f
new: BluetoothUserService_1d29b7f Manual Unknown Bluetooth User Support Service_1d29b7f
new: CaptureService_1d29b7f Manual Unknown CaptureService_1d29b7f
new: cbdhsvc_1d29b7f Manual Unknown Clipboard User Service_1d29b7f
new: CDPUserSvc_1d29b7f Auto Unknown Connected Devices Platform User Service_1d29b7f
new: ConsentUxUserSvc_1d29b7f Manual Unknown ConsentUX_1d29b7f
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1d29b7f
new: DeviceAssociationBrokerSvc_1d2 Manual Unknown DeviceAssociationBroker_1d29b7f
new: DevicePickerUserSvc_1d29b7f Manual Unknown DevicePicker_1d29b7f
new: DevicesFlowUserSvc_1d29b7f Manual Unknown DevicesFlow_1d29b7f
new: MessagingService_1d29b7f Manual Unknown MessagingService_1d29b7f
new: OneSyncSvc_1d29b7f Auto Unknown Synkroniseringsvärd_1d29b7f
new: PimIndexMaintenanceSvc_1d29b7f Manual Unknown Contact Data_1d29b7f
new: PrintWorkflowUserSvc_1d29b7f Manual Unknown PrintWorkflow_1d29b7f
new: UdkUserSvc_1d29b7f Manual Unknown Udk-användartjänst_1d29b7f
new: UnistoreSvc_1d29b7f Manual Unknown User Data Storage_1d29b7f
new: UserDataSvc_1d29b7f Manual Unknown User Data Access_1d29b7f
new: WpnUserService_1d29b7f Auto Unknown Windows Push Notifications User Service_1d29b7f
system - services - AarSvc_1d29b7f
new: DisplayName : Agent Activation Runtime_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_1d29b7f
new: DisplayName : Användartjänst för Spel-DVR och sändning_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_1d29b7f
new: DisplayName : Bluetooth User Support Service_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_1d29b7f
new: DisplayName : CaptureService_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_1d29b7f
new: DisplayName : Clipboard User Service_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_1d29b7f
new: DisplayName : Connected Devices Platform User Service_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_1d29b7f
new: DisplayName : ConsentUX_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1d29b7f
new: DisplayName : CredentialEnrollmentManagerUserSvc_1d29b7f
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_1d29b7f
new: DisplayName : DeviceAssociationBroker_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_1d29b7f
new: DisplayName : DevicePicker_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_1d29b7f
new: DisplayName : DevicesFlow_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.207\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.208\elevation_service.exe"
system - services - MessagingService_1d29b7f
new: DisplayName : MessagingService_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_1d29b7f
new: DisplayName : Synkroniseringsvärd_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_1d29b7f
new: DisplayName : Contact Data_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_1d29b7f
new: DisplayName : PrintWorkflow_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_1d29b7f
new: DisplayName : Udk-användartjänst_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_1d29b7f
new: DisplayName : User Data Storage_1d29b7f
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_1d29b7f
new: DisplayName : User Data Access_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_1d29b7f
new: DisplayName : Windows Push Notifications User Service_1d29b7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2024-05-15 17.55.29
remark :
runtime : 18
count : 4
previous date : 2024-05-14
previous time : 23.16.35
software - product - Google Chrome
old: Version : 124.0.6367.202
new: Version : 124.0.6367.207
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.202\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.207\elevation_service.exe"
Top Runs Differences at: 2024-05-14 23.16.35
remark :
runtime : 119
count : 185
previous date : 2024-05-14
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5036979
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5037768
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_b1c36b Manual Unknown Agent Activation Runtime_b1c36b
old: BcastDVRUserService_b1c36b Manual Unknown Användartjänst för Spel-DVR och sändning_b1c36b
old: BluetoothUserService_b1c36b Manual Unknown Bluetooth User Support Service_b1c36b
old: CaptureService_b1c36b Manual Unknown CaptureService_b1c36b
old: cbdhsvc_b1c36b Manual Unknown Clipboard User Service_b1c36b
old: CDPUserSvc_b1c36b Auto Unknown Connected Devices Platform User Service_b1c36b
old: ConsentUxUserSvc_b1c36b Manual Unknown ConsentUX_b1c36b
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_b1c36b
old: DeviceAssociationBrokerSvc_b1c Manual Unknown DeviceAssociationBroker_b1c36b
old: DevicePickerUserSvc_b1c36b Manual Unknown DevicePicker_b1c36b
old: DevicesFlowUserSvc_b1c36b Manual Unknown DevicesFlow_b1c36b
old: MessagingService_b1c36b Manual Unknown MessagingService_b1c36b
old: OneSyncSvc_b1c36b Auto Unknown Synkroniseringsvärd_b1c36b
old: PimIndexMaintenanceSvc_b1c36b Manual Unknown Contact Data_b1c36b
old: PrintWorkflowUserSvc_b1c36b Manual Unknown PrintWorkflow_b1c36b
old: UdkUserSvc_b1c36b Manual Unknown Udk-användartjänst_b1c36b
old: UnistoreSvc_b1c36b Manual Unknown User Data Storage_b1c36b
old: UserDataSvc_b1c36b Manual Unknown User Data Access_b1c36b
old: WpnUserService_b1c36b Auto Unknown Windows Push Notifications User Service_b1c36b
system - services - AarSvc_b1c36b
old: DisplayName : Agent Activation Runtime_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_b1c36b
old: DisplayName : Användartjänst för Spel-DVR och sändning_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_b1c36b
old: DisplayName : Bluetooth User Support Service_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_b1c36b
old: DisplayName : CaptureService_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_b1c36b
old: DisplayName : Clipboard User Service_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_b1c36b
old: DisplayName : Connected Devices Platform User Service_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_b1c36b
old: DisplayName : ConsentUX_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_b1c36b
old: DisplayName : CredentialEnrollmentManagerUserSvc_b1c36b
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_b1c36b
old: DisplayName : DeviceAssociationBroker_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_b1c36b
old: DisplayName : DevicePicker_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_b1c36b
old: DisplayName : DevicesFlow_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_b1c36b
old: DisplayName : MessagingService_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_b1c36b
old: DisplayName : Synkroniseringsvärd_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_b1c36b
old: DisplayName : Contact Data_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_b1c36b
old: DisplayName : PrintWorkflow_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_b1c36b
old: DisplayName : Udk-användartjänst_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_b1c36b
old: DisplayName : User Data Storage_b1c36b
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_b1c36b
old: DisplayName : User Data Access_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_b1c36b
old: DisplayName : Windows Push Notifications User Service_b1c36b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2024-05-14 17.55.30
remark :
runtime : 17
count : 4
previous date : 2024-05-13
previous time : 17.55.30
software - product - Google Chrome
old: Version : 124.0.6367.158
new: Version : 124.0.6367.202
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.158\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.202\elevation_service.exe"
Top Runs Differences at: 2024-05-12 17.55.30
remark :
runtime : 18
count : 6
previous date : 2024-05-11
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 124.0.2478.80
new: Version : 124.0.2478.97
software - product - Microsoft Edge WebView2 Runtime
old: Version : 124.0.2478.80
new: Version : 124.0.2478.97
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\124.0.2478.80\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\124.0.2478.97\elevation_service.exe"
Top Runs Differences at: 2024-05-11 17.55.30
remark :
runtime : 39
count : 4
previous date : 2024-05-10
previous time : 17.55.30
software - product - Google Chrome
old: Version : 124.0.6367.156
new: Version : 124.0.6367.158
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.156\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.158\elevation_service.exe"
Top Runs Differences at: 2024-05-10 17.55.30
remark :
runtime : 19
count : 4
previous date : 2024-05-09
previous time : 17.55.30
software - product - Google Chrome
old: Version : 124.0.6367.119
new: Version : 124.0.6367.156
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.119\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.156\elevation_service.exe"
Top Runs Differences at: 2024-05-09 17.55.30
remark :
runtime : 18
count : 42
previous date : 2024-05-08
previous time : 17.55.30
system - services - survey
old: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 126.0.6441.0 (GoogleUpdaterInt
old: GoogleUpdaterService126.0.6441 Auto Own Process GoogleUpdater Service 126.0.6441.0 (GoogleUpdaterService126.
new: GoogleUpdaterService126.0.6462 Auto Own Process GoogleUpdater Service 126.0.6462.0 (GoogleUpdaterService126.
system - services - GoogleUpdaterInternalService126.0.6441.0
old: DisplayName : GoogleUpdater InternalService 126.0.6441.0 (GoogleUpdaterInternalService126.0.6441.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe" --system --windows-service --service=update-internal
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService126.0.6441.0
old: DisplayName : GoogleUpdater Service 126.0.6441.0 (GoogleUpdaterService126.0.6441.0)
old: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe" --system --windows-service --service=update
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - GoogleUpdaterService126.0.6462.0
new: DisplayName : GoogleUpdater Service 126.0.6462.0 (GoogleUpdaterService126.0.6462.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\126.0.6462.0\updater.exe" --system --windows-service --service=update
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - RpcSs
old: Required by : GoogleUpdaterInternalService126.0.6441.0
old: Required by : GoogleUpdaterService126.0.6441.0
new: Required by : GoogleUpdaterService126.0.6462.0
system - services - GoogleUpdaterInternalService126.0.6441.0
old: Requires : RpcSs
system - services - GoogleUpdaterService126.0.6441.0
old: Requires : RpcSs
system - services - GoogleUpdaterService126.0.6462.0
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem126.0.6441.0{6B0AE729-E821-4F9A-A5AF-DC36CEB95B9D}
old: Logon Mode : Interactive/Background
old: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe" --wake --system
old: Start In : N/A
old: Comment : GoogleUpdater Task System 126.0.6441.0
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : Every 1 day(s)
old: Months : N/A
old: Repeat: Every : 1 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
old: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
Top Runs Differences at: 2024-05-08 17.55.30
remark :
runtime : 18
count : 24
previous date : 2024-05-07
previous time : 17.55.30
system - services - survey
new: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 126.0.6462.0 (GoogleUpdaterInt
system - services - GoogleUpdaterInternalService126.0.6462.0
new: DisplayName : GoogleUpdater InternalService 126.0.6462.0 (GoogleUpdaterInternalService126.0.6462.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\126.0.6462.0\updater.exe" --system --windows-service --service=update-internal
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - RpcSs
new: Required by : GoogleUpdaterInternalService126.0.6462.0
system - services - GoogleUpdaterInternalService126.0.6462.0
new: Requires : RpcSs
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem126.0.6462.0{FD527E90-69E7-4E37-9659-635D5A55ADF9}
new: Logon Mode : Interactive/Background
new: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\126.0.6462.0\updater.exe" --wake --system
new: Start In : N/A
new: Comment : GoogleUpdater Task System 126.0.6462.0
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
new: Repeat: Every : 1 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
new: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
Top Runs Differences at: 2024-05-07 17.55.30
remark :
runtime : 17
count : 2
previous date : 2024-05-06
previous time : 17.55.30
software - product - Microsoft Edge Update
old: Version : 1.3.185.29
new: Version : 1.3.187.37
Top Runs Differences at: 2024-05-06 17.55.30
remark :
runtime : 18
count : 155
previous date : 2024-05-05
previous time : 19.24.56
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_b1c36b Manual Unknown Agent Activation Runtime_b1c36b
new: BcastDVRUserService_b1c36b Manual Unknown Användartjänst för Spel-DVR och sändning_b1c36b
new: BluetoothUserService_b1c36b Manual Unknown Bluetooth User Support Service_b1c36b
new: CaptureService_b1c36b Manual Unknown CaptureService_b1c36b
new: cbdhsvc_b1c36b Manual Unknown Clipboard User Service_b1c36b
new: CDPUserSvc_b1c36b Auto Unknown Connected Devices Platform User Service_b1c36b
new: ConsentUxUserSvc_b1c36b Manual Unknown ConsentUX_b1c36b
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_b1c36b
new: DeviceAssociationBrokerSvc_b1c Manual Unknown DeviceAssociationBroker_b1c36b
new: DevicePickerUserSvc_b1c36b Manual Unknown DevicePicker_b1c36b
new: DevicesFlowUserSvc_b1c36b Manual Unknown DevicesFlow_b1c36b
new: MessagingService_b1c36b Manual Unknown MessagingService_b1c36b
new: OneSyncSvc_b1c36b Auto Unknown Synkroniseringsvärd_b1c36b
new: PimIndexMaintenanceSvc_b1c36b Manual Unknown Contact Data_b1c36b
new: PrintWorkflowUserSvc_b1c36b Manual Unknown PrintWorkflow_b1c36b
new: UdkUserSvc_b1c36b Manual Unknown Udk-användartjänst_b1c36b
new: UnistoreSvc_b1c36b Manual Unknown User Data Storage_b1c36b
new: UserDataSvc_b1c36b Manual Unknown User Data Access_b1c36b
new: WpnUserService_b1c36b Auto Unknown Windows Push Notifications User Service_b1c36b
system - services - AarSvc_b1c36b
new: DisplayName : Agent Activation Runtime_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_b1c36b
new: DisplayName : Användartjänst för Spel-DVR och sändning_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_b1c36b
new: DisplayName : Bluetooth User Support Service_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_b1c36b
new: DisplayName : CaptureService_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_b1c36b
new: DisplayName : Clipboard User Service_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_b1c36b
new: DisplayName : Connected Devices Platform User Service_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_b1c36b
new: DisplayName : ConsentUX_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_b1c36b
new: DisplayName : CredentialEnrollmentManagerUserSvc_b1c36b
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_b1c36b
new: DisplayName : DeviceAssociationBroker_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_b1c36b
new: DisplayName : DevicePicker_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_b1c36b
new: DisplayName : DevicesFlow_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_b1c36b
new: DisplayName : MessagingService_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_b1c36b
new: DisplayName : Synkroniseringsvärd_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_b1c36b
new: DisplayName : Contact Data_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_b1c36b
new: DisplayName : PrintWorkflow_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_b1c36b
new: DisplayName : Udk-användartjänst_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_b1c36b
new: DisplayName : User Data Storage_b1c36b
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_b1c36b
new: DisplayName : User Data Access_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_b1c36b
new: DisplayName : Windows Push Notifications User Service_b1c36b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2024-05-05 19.05.01
remark :
runtime : 45
count : 30
previous date : 2024-05-04
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Microsoft Edge
old: Version : 124.0.2478.67
new: Version : 124.0.2478.80
software - product - Microsoft Edge WebView2 Runtime
old: Version : 124.0.2478.67
new: Version : 124.0.2478.80
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\124.0.2478.67\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\124.0.2478.80\elevation_service.exe"
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-05-04 17.55.30
remark :
runtime : 17
count : 12
previous date : 2024-05-03
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-05-03 17.55.30
remark :
runtime : 17
count : 4
previous date : 2024-05-02
previous time : 17.55.30
software - product - Google Chrome
old: Version : 124.0.6367.93
new: Version : 124.0.6367.119
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.93\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.119\elevation_service.exe"
Top Runs Differences at: 2024-05-02 17.55.30
remark :
runtime : 18
count : 12
previous date : 2024-05-01
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-05-01 17.55.30
remark :
runtime : 19
count : 76
previous date : 2024-04-30
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Google Chrome
old: Version : 124.0.6367.63
new: Version : 124.0.6367.93
system - services - survey
new: GoogleUpdaterInternalService12 Auto Own Process GoogleUpdater InternalService 126.0.6441.0 (GoogleUpdaterInt
new: GoogleUpdaterService126.0.6441 Auto Own Process GoogleUpdater Service 126.0.6441.0 (GoogleUpdaterService126.
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.63\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.93\elevation_service.exe"
system - services - GoogleUpdaterInternalService126.0.6441.0
new: DisplayName : GoogleUpdater InternalService 126.0.6441.0 (GoogleUpdaterInternalService126.0.6441.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe" --system --windows-service --service=update-internal
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - GoogleUpdaterService126.0.6441.0
new: DisplayName : GoogleUpdater Service 126.0.6441.0 (GoogleUpdaterService126.0.6441.0)
new: PathName : "C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe" --system --windows-service --service=update
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - RpcSs
new: Required by : GoogleUpdaterInternalService126.0.6441.0
new: Required by : GoogleUpdaterService126.0.6441.0
system - services - GoogleUpdaterInternalService126.0.6441.0
new: Requires : RpcSs
system - services - GoogleUpdaterService126.0.6441.0
new: Requires : RpcSs
system - scheduled tasks - \GoogleUpdateTaskMachineCore
old: Logon Mode : Interactive/Background
old: Task To Run : "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
old: Start In : N/A
old: Comment : Ser till att programvaran fr†n Google „r uppdaterad. Om aktiviteten inaktiveras eller stoppas uppdateras inte programvaran fr†n Google. Det betyder att vissa funktioner kanske inte fungerar och att eventuella s„kerhetsrisker inte kan †tg„rdas. Aktivitet
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : Every 1 day(s)
old: Months : N/A
system - scheduled tasks - \GoogleUpdateTaskMachineUA
old: Logon Mode : Interactive/Background
old: Task To Run : "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /ua /installsource scheduler
old: Start In : N/A
old: Comment : Ser till att programvaran fr†n Google „r uppdaterad. Om aktiviteten inaktiveras eller stoppas uppdateras inte programvaran fr†n Google. Det betyder att vissa funktioner kanske inte fungerar och att eventuella s„kerhetsrisker inte kan †tg„rdas. Aktivitet
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : Every 1 day(s)
old: Months : N/A
old: Repeat: Every : 1 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
old: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
system - scheduled tasks - \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem126.0.6441.0{6B0AE729-E821-4F9A-A5AF-DC36CEB95B9D}
new: Logon Mode : Interactive/Background
new: Task To Run : "C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe" --wake --system
new: Start In : N/A
new: Comment : GoogleUpdater Task System 126.0.6441.0
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
new: Repeat: Every : 1 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
new: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-04-29 17.55.30
remark :
runtime : 17
count : 2
previous date : 2024-04-28
previous time : 19.57.23
software - product - Microsoft Edge WebView2 Runtime
old: Version : 123.0.2420.97
new: Version : 124.0.2478.67
Top Runs Differences at: 2024-04-28 19.57.23
remark :
runtime : 65
count : 177
previous date : 2024-04-28
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Microsoft Edge
old: Version : 124.0.2478.51
new: Version : 124.0.2478.67
system - hotfix - KB5036618
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5037587
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_3abb015 Manual Unknown Agent Activation Runtime_3abb015
old: BcastDVRUserService_3abb015 Manual Unknown Användartjänst för Spel-DVR och sändning_3abb015
old: BluetoothUserService_3abb015 Manual Unknown Bluetooth User Support Service_3abb015
old: CaptureService_3abb015 Manual Unknown CaptureService_3abb015
old: cbdhsvc_3abb015 Manual Unknown Clipboard User Service_3abb015
old: CDPUserSvc_3abb015 Auto Unknown Connected Devices Platform User Service_3abb015
old: ConsentUxUserSvc_3abb015 Manual Unknown ConsentUX_3abb015
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3abb015
old: DeviceAssociationBrokerSvc_3ab Manual Unknown DeviceAssociationBroker_3abb015
old: DevicePickerUserSvc_3abb015 Manual Unknown DevicePicker_3abb015
old: DevicesFlowUserSvc_3abb015 Manual Unknown DevicesFlow_3abb015
old: MessagingService_3abb015 Manual Unknown MessagingService_3abb015
old: OneSyncSvc_3abb015 Auto Unknown Synkroniseringsvärd_3abb015
old: PimIndexMaintenanceSvc_3abb015 Manual Unknown Contact Data_3abb015
old: PrintWorkflowUserSvc_3abb015 Manual Unknown PrintWorkflow_3abb015
old: UdkUserSvc_3abb015 Manual Unknown Udk-användartjänst_3abb015
old: UnistoreSvc_3abb015 Manual Unknown User Data Storage_3abb015
old: UserDataSvc_3abb015 Manual Unknown User Data Access_3abb015
old: WpnUserService_3abb015 Auto Unknown Windows Push Notifications User Service_3abb015
system - services - AarSvc_3abb015
old: DisplayName : Agent Activation Runtime_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_3abb015
old: DisplayName : Användartjänst för Spel-DVR och sändning_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_3abb015
old: DisplayName : Bluetooth User Support Service_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_3abb015
old: DisplayName : CaptureService_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_3abb015
old: DisplayName : Clipboard User Service_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_3abb015
old: DisplayName : Connected Devices Platform User Service_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_3abb015
old: DisplayName : ConsentUX_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3abb015
old: DisplayName : CredentialEnrollmentManagerUserSvc_3abb015
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_3abb015
old: DisplayName : DeviceAssociationBroker_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_3abb015
old: DisplayName : DevicePicker_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_3abb015
old: DisplayName : DevicesFlow_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_3abb015
old: DisplayName : MessagingService_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\124.0.2478.51\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\124.0.2478.67\elevation_service.exe"
system - services - OneSyncSvc_3abb015
old: DisplayName : Synkroniseringsvärd_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_3abb015
old: DisplayName : Contact Data_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_3abb015
old: DisplayName : PrintWorkflow_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_3abb015
old: DisplayName : Udk-användartjänst_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_3abb015
old: DisplayName : User Data Storage_3abb015
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_3abb015
old: DisplayName : User Data Access_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_3abb015
old: DisplayName : Windows Push Notifications User Service_3abb015
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2024-04-26 17.55.29
remark :
runtime : 18
count : 197
previous date : 2024-04-25
previous time : 17.55.29
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
new: Command : C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe --startup_mode
old: User : CORP\Administrator
new: User : CORP\administrator
old: Command : C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe --startup_mode
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Google Chrome
old: Version : 124.0.6367.62
new: Version : 124.0.6367.63
software - product - Google Drive
old: Version : 89.0.2.0
new: Version : 90.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe
system - services - survey
new: AarSvc_3abb015 Manual Unknown Agent Activation Runtime_3abb015
new: BcastDVRUserService_3abb015 Manual Unknown Användartjänst för Spel-DVR och sändning_3abb015
new: BluetoothUserService_3abb015 Manual Unknown Bluetooth User Support Service_3abb015
new: CaptureService_3abb015 Manual Unknown CaptureService_3abb015
new: cbdhsvc_3abb015 Manual Unknown Clipboard User Service_3abb015
new: CDPUserSvc_3abb015 Auto Unknown Connected Devices Platform User Service_3abb015
new: ConsentUxUserSvc_3abb015 Manual Unknown ConsentUX_3abb015
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3abb015
new: DeviceAssociationBrokerSvc_3ab Manual Unknown DeviceAssociationBroker_3abb015
new: DevicePickerUserSvc_3abb015 Manual Unknown DevicePicker_3abb015
new: DevicesFlowUserSvc_3abb015 Manual Unknown DevicesFlow_3abb015
new: MessagingService_3abb015 Manual Unknown MessagingService_3abb015
new: OneSyncSvc_3abb015 Auto Unknown Synkroniseringsvärd_3abb015
new: PimIndexMaintenanceSvc_3abb015 Manual Unknown Contact Data_3abb015
new: PrintWorkflowUserSvc_3abb015 Manual Unknown PrintWorkflow_3abb015
new: UdkUserSvc_3abb015 Manual Unknown Udk-användartjänst_3abb015
new: UnistoreSvc_3abb015 Manual Unknown User Data Storage_3abb015
new: UserDataSvc_3abb015 Manual Unknown User Data Access_3abb015
new: WpnUserService_3abb015 Auto Unknown Windows Push Notifications User Service_3abb015
system - services - AarSvc_3abb015
new: DisplayName : Agent Activation Runtime_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_3abb015
new: DisplayName : Användartjänst för Spel-DVR och sändning_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_3abb015
new: DisplayName : Bluetooth User Support Service_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_3abb015
new: DisplayName : CaptureService_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_3abb015
new: DisplayName : Clipboard User Service_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_3abb015
new: DisplayName : Connected Devices Platform User Service_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_3abb015
new: DisplayName : ConsentUX_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3abb015
new: DisplayName : CredentialEnrollmentManagerUserSvc_3abb015
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_3abb015
new: DisplayName : DeviceAssociationBroker_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_3abb015
new: DisplayName : DevicePicker_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_3abb015
new: DisplayName : DevicesFlow_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.62\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.63\elevation_service.exe"
system - services - MessagingService_3abb015
new: DisplayName : MessagingService_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_3abb015
new: DisplayName : Synkroniseringsvärd_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_3abb015
new: DisplayName : Contact Data_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_3abb015
new: DisplayName : PrintWorkflow_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_3abb015
new: DisplayName : Udk-användartjänst_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_3abb015
new: DisplayName : User Data Storage_3abb015
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_3abb015
new: DisplayName : User Data Access_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_3abb015
new: DisplayName : Windows Push Notifications User Service_3abb015
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-04-25 17.55.29
remark :
runtime : 19
count : 12
previous date : 2024-04-24
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-04-24 05.39.27
remark :
runtime : 33
count : 184
previous date : 2024-04-23
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 124.0.6367.61
new: Version : 124.0.6367.62
system - hotfix - KB5036892
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5036979
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5037240
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_7198ec6 Manual Unknown Agent Activation Runtime_7198ec6
old: BcastDVRUserService_7198ec6 Manual Unknown Användartjänst för Spel-DVR och sändning_7198ec6
old: BluetoothUserService_7198ec6 Manual Unknown Bluetooth User Support Service_7198ec6
old: CaptureService_7198ec6 Manual Unknown CaptureService_7198ec6
old: cbdhsvc_7198ec6 Manual Unknown Clipboard User Service_7198ec6
old: CDPUserSvc_7198ec6 Auto Unknown Connected Devices Platform User Service_7198ec6
old: ConsentUxUserSvc_7198ec6 Manual Unknown ConsentUX_7198ec6
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_7198ec6
old: DeviceAssociationBrokerSvc_719 Manual Unknown DeviceAssociationBroker_7198ec6
old: DevicePickerUserSvc_7198ec6 Manual Unknown DevicePicker_7198ec6
old: DevicesFlowUserSvc_7198ec6 Manual Unknown DevicesFlow_7198ec6
old: MessagingService_7198ec6 Manual Unknown MessagingService_7198ec6
old: OneSyncSvc_7198ec6 Auto Unknown Synkroniseringsvärd_7198ec6
old: PimIndexMaintenanceSvc_7198ec6 Manual Unknown Contact Data_7198ec6
old: PrintWorkflowUserSvc_7198ec6 Manual Unknown PrintWorkflow_7198ec6
old: UdkUserSvc_7198ec6 Manual Unknown Udk-användartjänst_7198ec6
old: UnistoreSvc_7198ec6 Manual Unknown User Data Storage_7198ec6
old: UserDataSvc_7198ec6 Manual Unknown User Data Access_7198ec6
old: WpnUserService_7198ec6 Auto Unknown Windows Push Notifications User Service_7198ec6
system - services - AarSvc_7198ec6
old: DisplayName : Agent Activation Runtime_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_7198ec6
old: DisplayName : Användartjänst för Spel-DVR och sändning_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_7198ec6
old: DisplayName : Bluetooth User Support Service_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_7198ec6
old: DisplayName : CaptureService_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_7198ec6
old: DisplayName : Clipboard User Service_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_7198ec6
old: DisplayName : Connected Devices Platform User Service_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_7198ec6
old: DisplayName : ConsentUX_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_7198ec6
old: DisplayName : CredentialEnrollmentManagerUserSvc_7198ec6
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_7198ec6
old: DisplayName : DeviceAssociationBroker_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_7198ec6
old: DisplayName : DevicePicker_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_7198ec6
old: DisplayName : DevicesFlow_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.61\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.62\elevation_service.exe"
system - services - MessagingService_7198ec6
old: DisplayName : MessagingService_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_7198ec6
old: DisplayName : Synkroniseringsvärd_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_7198ec6
old: DisplayName : Contact Data_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_7198ec6
old: DisplayName : PrintWorkflow_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_7198ec6
old: DisplayName : Udk-användartjänst_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_7198ec6
old: DisplayName : User Data Storage_7198ec6
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_7198ec6
old: DisplayName : User Data Access_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_7198ec6
old: DisplayName : Windows Push Notifications User Service_7198ec6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\PI\Secure-Boot-Update
old: End Date : N/A
new: End Date : 2024-10-30
new: Repeat: Every : 12 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2024-04-23 17.55.30
remark :
runtime : 37
count : 11
previous date : 2024-04-22
previous time : 17.55.30
software - product - Google Chrome
old: Version : 124.0.6367.60
new: Version : 124.0.6367.61
system - services - survey
new: MDCoreSvc Auto Own Process Microsoft Defender Core Service
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.60\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.61\elevation_service.exe"
system - services - MDCoreSvc
new: DisplayName : Microsoft Defender Core Service
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpDefenderCoreService.exe"
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
Top Runs Differences at: 2024-04-20 17.55.30
remark :
runtime : 18
count : 8
previous date : 2024-04-19
previous time : 17.55.30
software - product - Google Chrome
old: Version : 123.0.6312.123
new: Version : 124.0.6367.60
software - product - Microsoft Edge
old: Version : 123.0.2420.97
new: Version : 124.0.2478.51
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.123\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\124.0.6367.60\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\123.0.2420.97\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\124.0.2478.51\elevation_service.exe"
Top Runs Differences at: 2024-04-16 17.55.30
remark :
runtime : 17
count : 4
previous date : 2024-04-15
previous time : 17.55.29
software - product - Google Chrome
old: Version : 123.0.6312.122
new: Version : 123.0.6312.123
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.122\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.123\elevation_service.exe"
Top Runs Differences at: 2024-04-15 17.55.29
remark :
runtime : 18
count : 6
previous date : 2024-04-14
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 123.0.2420.81
new: Version : 123.0.2420.97
software - product - Microsoft Edge WebView2 Runtime
old: Version : 123.0.2420.81
new: Version : 123.0.2420.97
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\123.0.2420.81\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\123.0.2420.97\elevation_service.exe"
Top Runs Differences at: 2024-04-14 17.55.30
remark :
runtime : 18
count : 167
previous date : 2024-04-13
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_7198ec6 Manual Unknown Agent Activation Runtime_7198ec6
new: BcastDVRUserService_7198ec6 Manual Unknown Användartjänst för Spel-DVR och sändning_7198ec6
new: BluetoothUserService_7198ec6 Manual Unknown Bluetooth User Support Service_7198ec6
new: CaptureService_7198ec6 Manual Unknown CaptureService_7198ec6
new: cbdhsvc_7198ec6 Manual Unknown Clipboard User Service_7198ec6
new: CDPUserSvc_7198ec6 Auto Unknown Connected Devices Platform User Service_7198ec6
new: ConsentUxUserSvc_7198ec6 Manual Unknown ConsentUX_7198ec6
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_7198ec6
new: DeviceAssociationBrokerSvc_719 Manual Unknown DeviceAssociationBroker_7198ec6
new: DevicePickerUserSvc_7198ec6 Manual Unknown DevicePicker_7198ec6
new: DevicesFlowUserSvc_7198ec6 Manual Unknown DevicesFlow_7198ec6
new: MessagingService_7198ec6 Manual Unknown MessagingService_7198ec6
new: OneSyncSvc_7198ec6 Auto Unknown Synkroniseringsvärd_7198ec6
new: PimIndexMaintenanceSvc_7198ec6 Manual Unknown Contact Data_7198ec6
new: PrintWorkflowUserSvc_7198ec6 Manual Unknown PrintWorkflow_7198ec6
new: UdkUserSvc_7198ec6 Manual Unknown Udk-användartjänst_7198ec6
new: UnistoreSvc_7198ec6 Manual Unknown User Data Storage_7198ec6
new: UserDataSvc_7198ec6 Manual Unknown User Data Access_7198ec6
new: WpnUserService_7198ec6 Auto Unknown Windows Push Notifications User Service_7198ec6
system - services - AarSvc_7198ec6
new: DisplayName : Agent Activation Runtime_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_7198ec6
new: DisplayName : Användartjänst för Spel-DVR och sändning_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_7198ec6
new: DisplayName : Bluetooth User Support Service_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_7198ec6
new: DisplayName : CaptureService_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_7198ec6
new: DisplayName : Clipboard User Service_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_7198ec6
new: DisplayName : Connected Devices Platform User Service_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_7198ec6
new: DisplayName : ConsentUX_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_7198ec6
new: DisplayName : CredentialEnrollmentManagerUserSvc_7198ec6
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_7198ec6
new: DisplayName : DeviceAssociationBroker_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_7198ec6
new: DisplayName : DevicePicker_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_7198ec6
new: DisplayName : DevicesFlow_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_7198ec6
new: DisplayName : MessagingService_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_7198ec6
new: DisplayName : Synkroniseringsvärd_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_7198ec6
new: DisplayName : Contact Data_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_7198ec6
new: DisplayName : PrintWorkflow_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_7198ec6
new: DisplayName : Udk-användartjänst_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_7198ec6
new: DisplayName : User Data Storage_7198ec6
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_7198ec6
new: DisplayName : User Data Access_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_7198ec6
new: DisplayName : Windows Push Notifications User Service_7198ec6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2024-04-11 17.55.29
remark :
runtime : 18
count : 4
previous date : 2024-04-10
previous time : 17.55.29
software - product - Google Chrome
old: Version : 123.0.6312.106
new: Version : 123.0.6312.122
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.106\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.122\elevation_service.exe"
Top Runs Differences at: 2024-04-09 22.39.55
remark :
runtime : 29
count : 159
previous date : 2024-04-09
previous time : 21.22.20
system - hotfix - KB5035941
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5036892
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_2bf9fa Manual Unknown Agent Activation Runtime_2bf9fa
old: BcastDVRUserService_2bf9fa Manual Unknown Användartjänst för Spel-DVR och sändning_2bf9fa
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_2bf9fa Manual Unknown Bluetooth User Support Service_2bf9fa
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_2bf9fa Manual Unknown CaptureService_2bf9fa
old: cbdhsvc_2bf9fa Manual Unknown Clipboard User Service_2bf9fa
old: CDPUserSvc_2bf9fa Auto Unknown Connected Devices Platform User Service_2bf9fa
old: ConsentUxUserSvc_2bf9fa Manual Unknown ConsentUX_2bf9fa
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_2bf9fa
old: DeviceAssociationBrokerSvc_2bf Manual Unknown DeviceAssociationBroker_2bf9fa
old: DevicePickerUserSvc_2bf9fa Manual Unknown DevicePicker_2bf9fa
old: DevicesFlowUserSvc_2bf9fa Manual Unknown DevicesFlow_2bf9fa
old: MessagingService_2bf9fa Manual Unknown MessagingService_2bf9fa
old: OneSyncSvc_2bf9fa Auto Unknown Synkroniseringsvärd_2bf9fa
old: PimIndexMaintenanceSvc_2bf9fa Manual Unknown Contact Data_2bf9fa
old: PrintWorkflowUserSvc_2bf9fa Manual Unknown PrintWorkflow_2bf9fa
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
old: UdkUserSvc_2bf9fa Manual Unknown Udk-användartjänst_2bf9fa
old: UnistoreSvc_2bf9fa Manual Unknown User Data Storage_2bf9fa
old: UserDataSvc_2bf9fa Manual Unknown User Data Access_2bf9fa
old: WpnUserService_2bf9fa Auto Unknown Windows Push Notifications User Service_2bf9fa
system - services - AarSvc_2bf9fa
old: DisplayName : Agent Activation Runtime_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_2bf9fa
old: DisplayName : Användartjänst för Spel-DVR och sändning_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_2bf9fa
old: DisplayName : Bluetooth User Support Service_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_2bf9fa
old: DisplayName : CaptureService_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_2bf9fa
old: DisplayName : Clipboard User Service_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_2bf9fa
old: DisplayName : Connected Devices Platform User Service_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_2bf9fa
old: DisplayName : ConsentUX_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_2bf9fa
old: DisplayName : CredentialEnrollmentManagerUserSvc_2bf9fa
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_2bf9fa
old: DisplayName : DeviceAssociationBroker_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_2bf9fa
old: DisplayName : DevicePicker_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_2bf9fa
old: DisplayName : DevicesFlow_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_2bf9fa
old: DisplayName : MessagingService_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_2bf9fa
old: DisplayName : Synkroniseringsvärd_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_2bf9fa
old: DisplayName : Contact Data_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_2bf9fa
old: DisplayName : PrintWorkflow_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UdkUserSvc_2bf9fa
old: DisplayName : Udk-användartjänst_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_2bf9fa
old: DisplayName : User Data Storage_2bf9fa
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_2bf9fa
old: DisplayName : User Data Access_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_2bf9fa
old: DisplayName : Windows Push Notifications User Service_2bf9fa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2024-04-09 21.22.20
remark :
runtime : 560
count : 319
previous date : 2024-04-09
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5036034
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5036618
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5037018
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_1d5418 Manual Unknown Agent Activation Runtime_1d5418
new: AarSvc_2bf9fa Manual Unknown Agent Activation Runtime_2bf9fa
old: BcastDVRUserService_1d5418 Manual Unknown Användartjänst för Spel-DVR och sändning_1d5418
new: BcastDVRUserService_2bf9fa Manual Unknown Användartjänst för Spel-DVR och sändning_2bf9fa
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_1d5418 Manual Unknown Bluetooth User Support Service_1d5418
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_2bf9fa Manual Unknown Bluetooth User Support Service_2bf9fa
old: CaptureService_1d5418 Manual Unknown CaptureService_1d5418
old: cbdhsvc_1d5418 Manual Unknown Clipboard User Service_1d5418
new: CaptureService_2bf9fa Manual Unknown CaptureService_2bf9fa
new: cbdhsvc_2bf9fa Manual Unknown Clipboard User Service_2bf9fa
old: CDPUserSvc_1d5418 Auto Unknown Connected Devices Platform User Service_1d5418
new: CDPUserSvc_2bf9fa Auto Unknown Connected Devices Platform User Service_2bf9fa
old: ConsentUxUserSvc_1d5418 Manual Unknown ConsentUX_1d5418
new: ConsentUxUserSvc_2bf9fa Manual Unknown ConsentUX_2bf9fa
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1d5418
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_2bf9fa
old: DeviceAssociationBrokerSvc_1d5 Manual Unknown DeviceAssociationBroker_1d5418
new: DeviceAssociationBrokerSvc_2bf Manual Unknown DeviceAssociationBroker_2bf9fa
old: DevicePickerUserSvc_1d5418 Manual Unknown DevicePicker_1d5418
old: DevicesFlowUserSvc_1d5418 Manual Unknown DevicesFlow_1d5418
new: DevicePickerUserSvc_2bf9fa Manual Unknown DevicePicker_2bf9fa
new: DevicesFlowUserSvc_2bf9fa Manual Unknown DevicesFlow_2bf9fa
old: MessagingService_1d5418 Manual Unknown MessagingService_1d5418
new: MessagingService_2bf9fa Manual Unknown MessagingService_2bf9fa
old: OneSyncSvc_1d5418 Auto Unknown Synkroniseringsvärd_1d5418
new: OneSyncSvc_2bf9fa Auto Unknown Synkroniseringsvärd_2bf9fa
old: PimIndexMaintenanceSvc_1d5418 Manual Unknown Contact Data_1d5418
new: PimIndexMaintenanceSvc_2bf9fa Manual Unknown Contact Data_2bf9fa
old: PrintWorkflowUserSvc_1d5418 Manual Unknown PrintWorkflow_1d5418
new: PrintWorkflowUserSvc_2bf9fa Manual Unknown PrintWorkflow_2bf9fa
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
old: UdkUserSvc_1d5418 Manual Unknown Udk-användartjänst_1d5418
new: UdkUserSvc_2bf9fa Manual Unknown Udk-användartjänst_2bf9fa
old: UnistoreSvc_1d5418 Manual Unknown User Data Storage_1d5418
new: UnistoreSvc_2bf9fa Manual Unknown User Data Storage_2bf9fa
old: UserDataSvc_1d5418 Manual Unknown User Data Access_1d5418
new: UserDataSvc_2bf9fa Manual Unknown User Data Access_2bf9fa
old: WpnUserService_1d5418 Auto Unknown Windows Push Notifications User Service_1d5418
new: WpnUserService_2bf9fa Auto Unknown Windows Push Notifications User Service_2bf9fa
system - services - AarSvc_1d5418
old: DisplayName : Agent Activation Runtime_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_2bf9fa
new: DisplayName : Agent Activation Runtime_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_1d5418
old: DisplayName : Användartjänst för Spel-DVR och sändning_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_2bf9fa
new: DisplayName : Användartjänst för Spel-DVR och sändning_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_1d5418
old: DisplayName : Bluetooth User Support Service_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_2bf9fa
new: DisplayName : Bluetooth User Support Service_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_1d5418
old: DisplayName : CaptureService_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_1d5418
old: DisplayName : Clipboard User Service_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_2bf9fa
new: DisplayName : CaptureService_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_2bf9fa
new: DisplayName : Clipboard User Service_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_1d5418
old: DisplayName : Connected Devices Platform User Service_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_2bf9fa
new: DisplayName : Connected Devices Platform User Service_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_1d5418
old: DisplayName : ConsentUX_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_2bf9fa
new: DisplayName : ConsentUX_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1d5418
old: DisplayName : CredentialEnrollmentManagerUserSvc_1d5418
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_2bf9fa
new: DisplayName : CredentialEnrollmentManagerUserSvc_2bf9fa
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_1d5418
old: DisplayName : DeviceAssociationBroker_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_2bf9fa
new: DisplayName : DeviceAssociationBroker_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_1d5418
old: DisplayName : DevicePicker_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_1d5418
old: DisplayName : DevicesFlow_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_2bf9fa
new: DisplayName : DevicePicker_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_2bf9fa
new: DisplayName : DevicesFlow_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_1d5418
old: DisplayName : MessagingService_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_2bf9fa
new: DisplayName : MessagingService_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_1d5418
old: DisplayName : Synkroniseringsvärd_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_2bf9fa
new: DisplayName : Synkroniseringsvärd_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_1d5418
old: DisplayName : Contact Data_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_2bf9fa
new: DisplayName : Contact Data_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_1d5418
old: DisplayName : PrintWorkflow_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_2bf9fa
new: DisplayName : PrintWorkflow_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UdkUserSvc_1d5418
old: DisplayName : Udk-användartjänst_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_2bf9fa
new: DisplayName : Udk-användartjänst_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_1d5418
old: DisplayName : User Data Storage_1d5418
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_2bf9fa
new: DisplayName : User Data Storage_2bf9fa
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_1d5418
old: DisplayName : User Data Access_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_2bf9fa
new: DisplayName : User Data Access_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MsMpEng.exe"
system - services - WpnUserService_1d5418
old: DisplayName : Windows Push Notifications User Service_1d5418
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_2bf9fa
new: DisplayName : Windows Push Notifications User Service_2bf9fa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2024-04-09 17.55.29
remark :
runtime : 13
count : 4
previous date : 2024-04-09
previous time : 15.38.57
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
Top Runs Differences at: 2024-04-09 15.38.57
remark :
runtime : 59
count : 272
previous date : 2024-04-08
previous time : 17.55.30
system - services - survey
old: AarSvc_847f735 Manual Unknown Agent Activation Runtime_847f735
new: AarSvc_1d5418 Manual Unknown Agent Activation Runtime_1d5418
old: BcastDVRUserService_847f735 Manual Unknown Användartjänst för Spel-DVR och sändning_847f735
new: BcastDVRUserService_1d5418 Manual Unknown Användartjänst för Spel-DVR och sändning_1d5418
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_847f735 Manual Unknown Bluetooth User Support Service_847f735
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_1d5418 Manual Unknown Bluetooth User Support Service_1d5418
old: CaptureService_847f735 Manual Unknown CaptureService_847f735
old: cbdhsvc_847f735 Manual Unknown Clipboard User Service_847f735
new: CaptureService_1d5418 Manual Unknown CaptureService_1d5418
new: cbdhsvc_1d5418 Manual Unknown Clipboard User Service_1d5418
old: CDPUserSvc_847f735 Auto Unknown Connected Devices Platform User Service_847f735
new: CDPUserSvc_1d5418 Auto Unknown Connected Devices Platform User Service_1d5418
old: ConsentUxUserSvc_847f735 Manual Unknown ConsentUX_847f735
new: ConsentUxUserSvc_1d5418 Manual Unknown ConsentUX_1d5418
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_847f735
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1d5418
old: DeviceAssociationBrokerSvc_847 Manual Unknown DeviceAssociationBroker_847f735
new: DeviceAssociationBrokerSvc_1d5 Manual Unknown DeviceAssociationBroker_1d5418
old: DevicePickerUserSvc_847f735 Manual Unknown DevicePicker_847f735
old: DevicesFlowUserSvc_847f735 Manual Unknown DevicesFlow_847f735
new: DevicePickerUserSvc_1d5418 Manual Unknown DevicePicker_1d5418
new: DevicesFlowUserSvc_1d5418 Manual Unknown DevicesFlow_1d5418
old: MessagingService_847f735 Manual Unknown MessagingService_847f735
new: MessagingService_1d5418 Manual Unknown MessagingService_1d5418
old: OneSyncSvc_847f735 Auto Unknown Synkroniseringsvärd_847f735
new: OneSyncSvc_1d5418 Auto Unknown Synkroniseringsvärd_1d5418
old: PimIndexMaintenanceSvc_847f735 Manual Unknown Contact Data_847f735
new: PimIndexMaintenanceSvc_1d5418 Manual Unknown Contact Data_1d5418
old: PrintWorkflowUserSvc_847f735 Manual Unknown PrintWorkflow_847f735
new: PrintWorkflowUserSvc_1d5418 Manual Unknown PrintWorkflow_1d5418
old: UdkUserSvc_847f735 Manual Unknown Udk-användartjänst_847f735
new: UdkUserSvc_1d5418 Manual Unknown Udk-användartjänst_1d5418
old: UnistoreSvc_847f735 Manual Unknown User Data Storage_847f735
new: UnistoreSvc_1d5418 Manual Unknown User Data Storage_1d5418
old: UserDataSvc_847f735 Manual Unknown User Data Access_847f735
new: UserDataSvc_1d5418 Manual Unknown User Data Access_1d5418
old: WpnUserService_847f735 Auto Unknown Windows Push Notifications User Service_847f735
new: WpnUserService_1d5418 Auto Unknown Windows Push Notifications User Service_1d5418
system - services - AarSvc_847f735
old: DisplayName : Agent Activation Runtime_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_1d5418
new: DisplayName : Agent Activation Runtime_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_847f735
old: DisplayName : Användartjänst för Spel-DVR och sändning_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_1d5418
new: DisplayName : Användartjänst för Spel-DVR och sändning_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_847f735
old: DisplayName : Bluetooth User Support Service_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_1d5418
new: DisplayName : Bluetooth User Support Service_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_847f735
old: DisplayName : CaptureService_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_847f735
old: DisplayName : Clipboard User Service_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_1d5418
new: DisplayName : CaptureService_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_1d5418
new: DisplayName : Clipboard User Service_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_847f735
old: DisplayName : Connected Devices Platform User Service_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_1d5418
new: DisplayName : Connected Devices Platform User Service_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_847f735
old: DisplayName : ConsentUX_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_1d5418
new: DisplayName : ConsentUX_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_847f735
old: DisplayName : CredentialEnrollmentManagerUserSvc_847f735
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1d5418
new: DisplayName : CredentialEnrollmentManagerUserSvc_1d5418
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_847f735
old: DisplayName : DeviceAssociationBroker_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_1d5418
new: DisplayName : DeviceAssociationBroker_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_847f735
old: DisplayName : DevicePicker_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_847f735
old: DisplayName : DevicesFlow_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_1d5418
new: DisplayName : DevicePicker_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_1d5418
new: DisplayName : DevicesFlow_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_847f735
old: DisplayName : MessagingService_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_1d5418
new: DisplayName : MessagingService_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_847f735
old: DisplayName : Synkroniseringsvärd_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_1d5418
new: DisplayName : Synkroniseringsvärd_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_847f735
old: DisplayName : Contact Data_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_1d5418
new: DisplayName : Contact Data_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_847f735
old: DisplayName : PrintWorkflow_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_1d5418
new: DisplayName : PrintWorkflow_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_847f735
old: DisplayName : Udk-användartjänst_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_1d5418
new: DisplayName : Udk-användartjänst_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_847f735
old: DisplayName : User Data Storage_847f735
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_1d5418
new: DisplayName : User Data Storage_1d5418
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_847f735
old: DisplayName : User Data Access_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_1d5418
new: DisplayName : User Data Access_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_847f735
old: DisplayName : Windows Push Notifications User Service_847f735
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_1d5418
new: DisplayName : Windows Push Notifications User Service_1d5418
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2024-04-07 17.55.30
remark :
runtime : 17
count : 173
previous date : 2024-04-06
previous time : 17.55.30
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: Version : 123.0.2420.65
new: Version : 123.0.2420.81
software - product - Microsoft Edge WebView2 Runtime
old: Version : 123.0.2420.65
new: Version : 123.0.2420.81
system - services - survey
new: AarSvc_847f735 Manual Unknown Agent Activation Runtime_847f735
new: BcastDVRUserService_847f735 Manual Unknown Användartjänst för Spel-DVR och sändning_847f735
new: BluetoothUserService_847f735 Manual Unknown Bluetooth User Support Service_847f735
new: CaptureService_847f735 Manual Unknown CaptureService_847f735
new: cbdhsvc_847f735 Manual Unknown Clipboard User Service_847f735
new: CDPUserSvc_847f735 Auto Unknown Connected Devices Platform User Service_847f735
new: ConsentUxUserSvc_847f735 Manual Unknown ConsentUX_847f735
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_847f735
new: DeviceAssociationBrokerSvc_847 Manual Unknown DeviceAssociationBroker_847f735
new: DevicePickerUserSvc_847f735 Manual Unknown DevicePicker_847f735
new: DevicesFlowUserSvc_847f735 Manual Unknown DevicesFlow_847f735
new: MessagingService_847f735 Manual Unknown MessagingService_847f735
new: OneSyncSvc_847f735 Auto Unknown Synkroniseringsvärd_847f735
new: PimIndexMaintenanceSvc_847f735 Manual Unknown Contact Data_847f735
new: PrintWorkflowUserSvc_847f735 Manual Unknown PrintWorkflow_847f735
new: UdkUserSvc_847f735 Manual Unknown Udk-användartjänst_847f735
new: UnistoreSvc_847f735 Manual Unknown User Data Storage_847f735
new: UserDataSvc_847f735 Manual Unknown User Data Access_847f735
new: WpnUserService_847f735 Auto Unknown Windows Push Notifications User Service_847f735
system - services - AarSvc_847f735
new: DisplayName : Agent Activation Runtime_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_847f735
new: DisplayName : Användartjänst för Spel-DVR och sändning_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_847f735
new: DisplayName : Bluetooth User Support Service_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_847f735
new: DisplayName : CaptureService_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_847f735
new: DisplayName : Clipboard User Service_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_847f735
new: DisplayName : Connected Devices Platform User Service_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_847f735
new: DisplayName : ConsentUX_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_847f735
new: DisplayName : CredentialEnrollmentManagerUserSvc_847f735
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_847f735
new: DisplayName : DeviceAssociationBroker_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_847f735
new: DisplayName : DevicePicker_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_847f735
new: DisplayName : DevicesFlow_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_847f735
new: DisplayName : MessagingService_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\123.0.2420.65\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\123.0.2420.81\elevation_service.exe"
system - services - OneSyncSvc_847f735
new: DisplayName : Synkroniseringsvärd_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_847f735
new: DisplayName : Contact Data_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_847f735
new: DisplayName : PrintWorkflow_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_847f735
new: DisplayName : Udk-användartjänst_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_847f735
new: DisplayName : User Data Storage_847f735
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_847f735
new: DisplayName : User Data Access_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_847f735
new: DisplayName : Windows Push Notifications User Service_847f735
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2024-04-05 17.55.30
remark :
runtime : 17
count : 4
previous date : 2024-04-04
previous time : 17.55.30
software - product - Google Chrome
old: Version : 123.0.6312.88
new: Version : 123.0.6312.106
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.88\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.106\elevation_service.exe"
Top Runs Differences at: 2024-04-04 17.55.30
remark :
runtime : 17
count : 20
previous date : 2024-04-03
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe --startup_mode
software - product - Google Chrome
old: Version : 123.0.6312.86
new: Version : 123.0.6312.88
software - product - Google Drive
old: Version : 88.0.0.0
new: Version : 89.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\89.0.2.0\GoogleDriveFS.exe
software - product - Microsoft Edge Update
old: Version : 1.3.185.27
new: Version : 1.3.185.29
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.86\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.88\elevation_service.exe"
Top Runs Differences at: 2024-04-02 01.39.41
remark :
runtime : 39
count : 173
previous date : 2024-04-01
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5034466
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5036034
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_77e8f20 Manual Unknown Agent Activation Runtime_77e8f20
old: BcastDVRUserService_77e8f20 Manual Unknown Användartjänst för Spel-DVR och sändning_77e8f20
old: BluetoothUserService_77e8f20 Manual Unknown Bluetooth User Support Service_77e8f20
old: CaptureService_77e8f20 Manual Unknown CaptureService_77e8f20
old: cbdhsvc_77e8f20 Manual Unknown Clipboard User Service_77e8f20
old: CDPUserSvc_77e8f20 Auto Unknown Connected Devices Platform User Service_77e8f20
old: ConsentUxUserSvc_77e8f20 Manual Unknown ConsentUX_77e8f20
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_77e8f20
old: DeviceAssociationBrokerSvc_77e Manual Unknown DeviceAssociationBroker_77e8f20
old: DevicePickerUserSvc_77e8f20 Manual Unknown DevicePicker_77e8f20
old: DevicesFlowUserSvc_77e8f20 Manual Unknown DevicesFlow_77e8f20
old: MessagingService_77e8f20 Manual Unknown MessagingService_77e8f20
old: OneSyncSvc_77e8f20 Auto Unknown Synkroniseringsvärd_77e8f20
old: PimIndexMaintenanceSvc_77e8f20 Manual Unknown Contact Data_77e8f20
old: PrintWorkflowUserSvc_77e8f20 Manual Unknown PrintWorkflow_77e8f20
old: UdkUserSvc_77e8f20 Manual Unknown Udk-användartjänst_77e8f20
old: UnistoreSvc_77e8f20 Manual Unknown User Data Storage_77e8f20
old: UserDataSvc_77e8f20 Manual Unknown User Data Access_77e8f20
old: WpnUserService_77e8f20 Auto Unknown Windows Push Notifications User Service_77e8f20
system - services - AarSvc_77e8f20
old: DisplayName : Agent Activation Runtime_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_77e8f20
old: DisplayName : Användartjänst för Spel-DVR och sändning_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_77e8f20
old: DisplayName : Bluetooth User Support Service_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_77e8f20
old: DisplayName : CaptureService_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_77e8f20
old: DisplayName : Clipboard User Service_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_77e8f20
old: DisplayName : Connected Devices Platform User Service_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_77e8f20
old: DisplayName : ConsentUX_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_77e8f20
old: DisplayName : CredentialEnrollmentManagerUserSvc_77e8f20
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_77e8f20
old: DisplayName : DeviceAssociationBroker_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_77e8f20
old: DisplayName : DevicePicker_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_77e8f20
old: DisplayName : DevicesFlow_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_77e8f20
old: DisplayName : MessagingService_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_77e8f20
old: DisplayName : Synkroniseringsvärd_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_77e8f20
old: DisplayName : Contact Data_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_77e8f20
old: DisplayName : PrintWorkflow_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_77e8f20
old: DisplayName : Udk-användartjänst_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_77e8f20
old: DisplayName : User Data Storage_77e8f20
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_77e8f20
old: DisplayName : User Data Access_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_77e8f20
old: DisplayName : Windows Push Notifications User Service_77e8f20
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2024-04-01 17.55.30
remark :
runtime : 17
count : 167
previous date : 2024-03-31
previous time : 17.55.30
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_77e8f20 Manual Unknown Agent Activation Runtime_77e8f20
new: BcastDVRUserService_77e8f20 Manual Unknown Användartjänst för Spel-DVR och sändning_77e8f20
new: BluetoothUserService_77e8f20 Manual Unknown Bluetooth User Support Service_77e8f20
new: CaptureService_77e8f20 Manual Unknown CaptureService_77e8f20
new: cbdhsvc_77e8f20 Manual Unknown Clipboard User Service_77e8f20
new: CDPUserSvc_77e8f20 Auto Unknown Connected Devices Platform User Service_77e8f20
new: ConsentUxUserSvc_77e8f20 Manual Unknown ConsentUX_77e8f20
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_77e8f20
new: DeviceAssociationBrokerSvc_77e Manual Unknown DeviceAssociationBroker_77e8f20
new: DevicePickerUserSvc_77e8f20 Manual Unknown DevicePicker_77e8f20
new: DevicesFlowUserSvc_77e8f20 Manual Unknown DevicesFlow_77e8f20
new: MessagingService_77e8f20 Manual Unknown MessagingService_77e8f20
new: OneSyncSvc_77e8f20 Auto Unknown Synkroniseringsvärd_77e8f20
new: PimIndexMaintenanceSvc_77e8f20 Manual Unknown Contact Data_77e8f20
new: PrintWorkflowUserSvc_77e8f20 Manual Unknown PrintWorkflow_77e8f20
new: UdkUserSvc_77e8f20 Manual Unknown Udk-användartjänst_77e8f20
new: UnistoreSvc_77e8f20 Manual Unknown User Data Storage_77e8f20
new: UserDataSvc_77e8f20 Manual Unknown User Data Access_77e8f20
new: WpnUserService_77e8f20 Auto Unknown Windows Push Notifications User Service_77e8f20
system - services - AarSvc_77e8f20
new: DisplayName : Agent Activation Runtime_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_77e8f20
new: DisplayName : Användartjänst för Spel-DVR och sändning_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_77e8f20
new: DisplayName : Bluetooth User Support Service_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_77e8f20
new: DisplayName : CaptureService_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_77e8f20
new: DisplayName : Clipboard User Service_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_77e8f20
new: DisplayName : Connected Devices Platform User Service_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_77e8f20
new: DisplayName : ConsentUX_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_77e8f20
new: DisplayName : CredentialEnrollmentManagerUserSvc_77e8f20
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_77e8f20
new: DisplayName : DeviceAssociationBroker_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_77e8f20
new: DisplayName : DevicePicker_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_77e8f20
new: DisplayName : DevicesFlow_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_77e8f20
new: DisplayName : MessagingService_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_77e8f20
new: DisplayName : Synkroniseringsvärd_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_77e8f20
new: DisplayName : Contact Data_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_77e8f20
new: DisplayName : PrintWorkflow_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_77e8f20
new: DisplayName : Udk-användartjänst_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_77e8f20
new: DisplayName : User Data Storage_77e8f20
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_77e8f20
new: DisplayName : User Data Access_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_77e8f20
new: DisplayName : Windows Push Notifications User Service_77e8f20
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2024-03-31 17.55.30
remark :
runtime : 17
count : 16
previous date : 2024-03-30
previous time : 16.55.30
general
old: user:Administrator
new: user:administrator
old: CurrentTimeZone:60
old: DaylightInEffect:0
new: CurrentTimeZone:120
new: DaylightInEffect:1
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-03-30 16.55.30
remark :
runtime : 21
count : 18
previous date : 2024-03-29
previous time : 16.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Microsoft Edge
old: Version : 122.0.2365.92
new: Version : 123.0.2420.65
software - product - Microsoft Edge WebView2 Runtime
old: Version : 122.0.2365.92
new: Version : 123.0.2420.65
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\122.0.2365.92\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\123.0.2420.65\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-03-29 16.55.30
remark :
runtime : 20
count : 16
previous date : 2024-03-28
previous time : 16.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Google Chrome
old: Version : 123.0.6312.60
new: Version : 123.0.6312.86
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.60\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.86\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-03-28 16.55.30
remark :
runtime : 17
count : 12
previous date : 2024-03-27
previous time : 16.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-03-27 12.20.33
remark :
runtime : 63
count : 181
previous date : 2024-03-26
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 123.0.6312.59
new: Version : 123.0.6312.60
system - hotfix - KB5035845
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5035941
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_749b4 Manual Unknown Agent Activation Runtime_749b4
old: BcastDVRUserService_749b4 Manual Unknown Användartjänst för Spel-DVR och sändning_749b4
old: BluetoothUserService_749b4 Manual Unknown Bluetooth User Support Service_749b4
old: CaptureService_749b4 Manual Unknown CaptureService_749b4
old: cbdhsvc_749b4 Manual Unknown Clipboard User Service_749b4
old: CDPUserSvc_749b4 Auto Unknown Connected Devices Platform User Service_749b4
old: ConsentUxUserSvc_749b4 Manual Unknown ConsentUX_749b4
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_749b4
old: DeviceAssociationBrokerSvc_749 Manual Unknown DeviceAssociationBroker_749b4
old: DevicePickerUserSvc_749b4 Manual Unknown DevicePicker_749b4
old: DevicesFlowUserSvc_749b4 Manual Unknown DevicesFlow_749b4
old: MessagingService_749b4 Manual Unknown MessagingService_749b4
old: OneSyncSvc_749b4 Auto Unknown Synkroniseringsvärd_749b4
old: PimIndexMaintenanceSvc_749b4 Manual Unknown Contact Data_749b4
old: PrintWorkflowUserSvc_749b4 Manual Unknown PrintWorkflow_749b4
old: UdkUserSvc_749b4 Manual Unknown Udk-användartjänst_749b4
old: UnistoreSvc_749b4 Manual Unknown User Data Storage_749b4
old: UserDataSvc_749b4 Manual Unknown User Data Access_749b4
old: WpnUserService_749b4 Auto Unknown Windows Push Notifications User Service_749b4
system - services - AarSvc_749b4
old: DisplayName : Agent Activation Runtime_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_749b4
old: DisplayName : Användartjänst för Spel-DVR och sändning_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_749b4
old: DisplayName : Bluetooth User Support Service_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_749b4
old: DisplayName : CaptureService_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_749b4
old: DisplayName : Clipboard User Service_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_749b4
old: DisplayName : Connected Devices Platform User Service_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_749b4
old: DisplayName : ConsentUX_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_749b4
old: DisplayName : CredentialEnrollmentManagerUserSvc_749b4
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_749b4
old: DisplayName : DeviceAssociationBroker_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_749b4
old: DisplayName : DevicePicker_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_749b4
old: DisplayName : DevicesFlow_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.59\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.60\elevation_service.exe"
system - services - MessagingService_749b4
old: DisplayName : MessagingService_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_749b4
old: DisplayName : Synkroniseringsvärd_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_749b4
old: DisplayName : Contact Data_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_749b4
old: DisplayName : PrintWorkflow_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_749b4
old: DisplayName : Udk-användartjänst_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_749b4
old: DisplayName : User Data Storage_749b4
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_749b4
old: DisplayName : User Data Access_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_749b4
old: DisplayName : Windows Push Notifications User Service_749b4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC EngagedRebootReminder
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery EngagedRebootReminder
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2024-03-26 16.55.29
remark :
runtime : 18
count : 6
previous date : 2024-03-25
previous time : 16.55.29
software - product - Google Chrome
old: Version : 122.0.6261.131
new: Version : 123.0.6312.59
software - product - Microsoft Edge Update
old: Version : 1.3.185.21
new: Version : 1.3.185.27
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.131\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\123.0.6312.59\elevation_service.exe"
Top Runs Differences at: 2024-03-22 16.55.29
remark :
runtime : 19
count : 4
previous date : 2024-03-21
previous time : 16.55.29
software - product - Google Chrome
old: Version : 122.0.6261.129
new: Version : 122.0.6261.131
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.129\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.131\elevation_service.exe"
Top Runs Differences at: 2024-03-19 17.16.54
remark :
runtime : 64
count : 266
previous date : 2024-03-19
previous time : 16.55.30
system - services - survey
old: AarSvc_98df24 Manual Unknown Agent Activation Runtime_98df24
new: AarSvc_749b4 Manual Unknown Agent Activation Runtime_749b4
old: BcastDVRUserService_98df24 Manual Unknown Användartjänst för Spel-DVR och sändning_98df24
new: BcastDVRUserService_749b4 Manual Unknown Användartjänst för Spel-DVR och sändning_749b4
old: BluetoothUserService_98df24 Manual Unknown Bluetooth User Support Service_98df24
new: BluetoothUserService_749b4 Manual Unknown Bluetooth User Support Service_749b4
old: CaptureService_98df24 Manual Unknown CaptureService_98df24
old: cbdhsvc_98df24 Manual Unknown Clipboard User Service_98df24
new: CaptureService_749b4 Manual Unknown CaptureService_749b4
new: cbdhsvc_749b4 Manual Unknown Clipboard User Service_749b4
old: CDPUserSvc_98df24 Auto Unknown Connected Devices Platform User Service_98df24
new: CDPUserSvc_749b4 Auto Unknown Connected Devices Platform User Service_749b4
old: ConsentUxUserSvc_98df24 Manual Unknown ConsentUX_98df24
new: ConsentUxUserSvc_749b4 Manual Unknown ConsentUX_749b4
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_98df24
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_749b4
old: DeviceAssociationBrokerSvc_98d Manual Unknown DeviceAssociationBroker_98df24
new: DeviceAssociationBrokerSvc_749 Manual Unknown DeviceAssociationBroker_749b4
old: DevicePickerUserSvc_98df24 Manual Unknown DevicePicker_98df24
old: DevicesFlowUserSvc_98df24 Manual Unknown DevicesFlow_98df24
new: DevicePickerUserSvc_749b4 Manual Unknown DevicePicker_749b4
new: DevicesFlowUserSvc_749b4 Manual Unknown DevicesFlow_749b4
old: MessagingService_98df24 Manual Unknown MessagingService_98df24
new: MessagingService_749b4 Manual Unknown MessagingService_749b4
old: OneSyncSvc_98df24 Auto Unknown Synkroniseringsvärd_98df24
new: OneSyncSvc_749b4 Auto Unknown Synkroniseringsvärd_749b4
old: PimIndexMaintenanceSvc_98df24 Manual Unknown Contact Data_98df24
new: PimIndexMaintenanceSvc_749b4 Manual Unknown Contact Data_749b4
old: PrintWorkflowUserSvc_98df24 Manual Unknown PrintWorkflow_98df24
new: PrintWorkflowUserSvc_749b4 Manual Unknown PrintWorkflow_749b4
old: UdkUserSvc_98df24 Manual Unknown Udk-användartjänst_98df24
new: UdkUserSvc_749b4 Manual Unknown Udk-användartjänst_749b4
old: UnistoreSvc_98df24 Manual Unknown User Data Storage_98df24
new: UnistoreSvc_749b4 Manual Unknown User Data Storage_749b4
old: UserDataSvc_98df24 Manual Unknown User Data Access_98df24
new: UserDataSvc_749b4 Manual Unknown User Data Access_749b4
old: WpnUserService_98df24 Auto Unknown Windows Push Notifications User Service_98df24
new: WpnUserService_749b4 Auto Unknown Windows Push Notifications User Service_749b4
system - services - AarSvc_98df24
old: DisplayName : Agent Activation Runtime_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_749b4
new: DisplayName : Agent Activation Runtime_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_98df24
old: DisplayName : Användartjänst för Spel-DVR och sändning_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_749b4
new: DisplayName : Användartjänst för Spel-DVR och sändning_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_98df24
old: DisplayName : Bluetooth User Support Service_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_749b4
new: DisplayName : Bluetooth User Support Service_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_98df24
old: DisplayName : CaptureService_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_98df24
old: DisplayName : Clipboard User Service_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_749b4
new: DisplayName : CaptureService_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_749b4
new: DisplayName : Clipboard User Service_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_98df24
old: DisplayName : Connected Devices Platform User Service_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_749b4
new: DisplayName : Connected Devices Platform User Service_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_98df24
old: DisplayName : ConsentUX_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_749b4
new: DisplayName : ConsentUX_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_98df24
old: DisplayName : CredentialEnrollmentManagerUserSvc_98df24
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_749b4
new: DisplayName : CredentialEnrollmentManagerUserSvc_749b4
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_98df24
old: DisplayName : DeviceAssociationBroker_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_749b4
new: DisplayName : DeviceAssociationBroker_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_98df24
old: DisplayName : DevicePicker_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_98df24
old: DisplayName : DevicesFlow_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_749b4
new: DisplayName : DevicePicker_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_749b4
new: DisplayName : DevicesFlow_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_98df24
old: DisplayName : MessagingService_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_749b4
new: DisplayName : MessagingService_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_98df24
old: DisplayName : Synkroniseringsvärd_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_749b4
new: DisplayName : Synkroniseringsvärd_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_98df24
old: DisplayName : Contact Data_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_749b4
new: DisplayName : Contact Data_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_98df24
old: DisplayName : PrintWorkflow_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_749b4
new: DisplayName : PrintWorkflow_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_98df24
old: DisplayName : Udk-användartjänst_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_749b4
new: DisplayName : Udk-användartjänst_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_98df24
old: DisplayName : User Data Storage_98df24
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_749b4
new: DisplayName : User Data Storage_749b4
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_98df24
old: DisplayName : User Data Access_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_749b4
new: DisplayName : User Data Access_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_98df24
old: DisplayName : Windows Push Notifications User Service_98df24
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_749b4
new: DisplayName : Windows Push Notifications User Service_749b4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2024-03-17 16.55.30
remark :
runtime : 19
count : 6
previous date : 2024-03-16
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 122.0.2365.80
new: Version : 122.0.2365.92
software - product - Microsoft Edge WebView2 Runtime
old: Version : 122.0.2365.80
new: Version : 122.0.2365.92
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\122.0.2365.80\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\122.0.2365.92\elevation_service.exe"
Top Runs Differences at: 2024-03-15 16.55.30
remark :
runtime : 19
count : 4
previous date : 2024-03-14
previous time : 16.55.30
software - product - Google Chrome
old: Version : 122.0.6261.128
new: Version : 122.0.6261.129
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.128\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.129\elevation_service.exe"
Top Runs Differences at: 2024-03-14 16.55.30
remark :
runtime : 18
count : 4
previous date : 2024-03-13
previous time : 16.55.29
software - product - Google Chrome
old: Version : 122.0.6261.112
new: Version : 122.0.6261.128
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.112\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.128\elevation_service.exe"
Top Runs Differences at: 2024-03-13 16.55.29
remark :
runtime : 39
count : 193
previous date : 2024-03-12
previous time : 19.56.12
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
new: Command : C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe --startup_mode
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Google Drive
old: Version : 87.0.2.0
new: Version : 88.0.0.0
old: Install Location : C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\88.0.0.0\GoogleDriveFS.exe
system - services - survey
new: AarSvc_98df24 Manual Unknown Agent Activation Runtime_98df24
new: BcastDVRUserService_98df24 Manual Unknown Användartjänst för Spel-DVR och sändning_98df24
new: BluetoothUserService_98df24 Manual Unknown Bluetooth User Support Service_98df24
new: CaptureService_98df24 Manual Unknown CaptureService_98df24
new: cbdhsvc_98df24 Manual Unknown Clipboard User Service_98df24
new: CDPUserSvc_98df24 Auto Unknown Connected Devices Platform User Service_98df24
new: ConsentUxUserSvc_98df24 Manual Unknown ConsentUX_98df24
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_98df24
new: DeviceAssociationBrokerSvc_98d Manual Unknown DeviceAssociationBroker_98df24
new: DevicePickerUserSvc_98df24 Manual Unknown DevicePicker_98df24
new: DevicesFlowUserSvc_98df24 Manual Unknown DevicesFlow_98df24
new: MessagingService_98df24 Manual Unknown MessagingService_98df24
new: OneSyncSvc_98df24 Auto Unknown Synkroniseringsvärd_98df24
new: PimIndexMaintenanceSvc_98df24 Manual Unknown Contact Data_98df24
new: PrintWorkflowUserSvc_98df24 Manual Unknown PrintWorkflow_98df24
new: UdkUserSvc_98df24 Manual Unknown Udk-användartjänst_98df24
new: UnistoreSvc_98df24 Manual Unknown User Data Storage_98df24
new: UserDataSvc_98df24 Manual Unknown User Data Access_98df24
new: WpnUserService_98df24 Auto Unknown Windows Push Notifications User Service_98df24
system - services - AarSvc_98df24
new: DisplayName : Agent Activation Runtime_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_98df24
new: DisplayName : Användartjänst för Spel-DVR och sändning_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_98df24
new: DisplayName : Bluetooth User Support Service_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_98df24
new: DisplayName : CaptureService_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_98df24
new: DisplayName : Clipboard User Service_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_98df24
new: DisplayName : Connected Devices Platform User Service_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_98df24
new: DisplayName : ConsentUX_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_98df24
new: DisplayName : CredentialEnrollmentManagerUserSvc_98df24
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_98df24
new: DisplayName : DeviceAssociationBroker_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_98df24
new: DisplayName : DevicePicker_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_98df24
new: DisplayName : DevicesFlow_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_98df24
new: DisplayName : MessagingService_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_98df24
new: DisplayName : Synkroniseringsvärd_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_98df24
new: DisplayName : Contact Data_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_98df24
new: DisplayName : PrintWorkflow_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_98df24
new: DisplayName : Udk-användartjänst_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_98df24
new: DisplayName : User Data Storage_98df24
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_98df24
new: DisplayName : User Data Access_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MsMpEng.exe"
system - services - WpnUserService_98df24
new: DisplayName : Windows Push Notifications User Service_98df24
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2024-03-12 19.56.12
remark :
runtime : 34
count : 180
previous date : 2024-03-12
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5034843
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5035845
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5036447
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_bbd317 Manual Unknown Agent Activation Runtime_bbd317
old: BcastDVRUserService_bbd317 Manual Unknown Användartjänst för Spel-DVR och sändning_bbd317
old: BluetoothUserService_bbd317 Manual Unknown Bluetooth User Support Service_bbd317
old: CaptureService_bbd317 Manual Unknown CaptureService_bbd317
old: cbdhsvc_bbd317 Manual Unknown Clipboard User Service_bbd317
old: CDPUserSvc_bbd317 Auto Unknown Connected Devices Platform User Service_bbd317
old: ConsentUxUserSvc_bbd317 Manual Unknown ConsentUX_bbd317
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_bbd317
old: DeviceAssociationBrokerSvc_bbd Manual Unknown DeviceAssociationBroker_bbd317
old: DevicePickerUserSvc_bbd317 Manual Unknown DevicePicker_bbd317
old: DevicesFlowUserSvc_bbd317 Manual Unknown DevicesFlow_bbd317
old: MessagingService_bbd317 Manual Unknown MessagingService_bbd317
old: OneSyncSvc_bbd317 Auto Unknown Synkroniseringsvärd_bbd317
old: PimIndexMaintenanceSvc_bbd317 Manual Unknown Contact Data_bbd317
old: PrintWorkflowUserSvc_bbd317 Manual Unknown PrintWorkflow_bbd317
old: UdkUserSvc_bbd317 Manual Unknown Udk-användartjänst_bbd317
old: UnistoreSvc_bbd317 Manual Unknown User Data Storage_bbd317
old: UserDataSvc_bbd317 Manual Unknown User Data Access_bbd317
old: WpnUserService_bbd317 Auto Unknown Windows Push Notifications User Service_bbd317
system - services - AarSvc_bbd317
old: DisplayName : Agent Activation Runtime_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_bbd317
old: DisplayName : Användartjänst för Spel-DVR och sändning_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_bbd317
old: DisplayName : Bluetooth User Support Service_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_bbd317
old: DisplayName : CaptureService_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_bbd317
old: DisplayName : Clipboard User Service_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_bbd317
old: DisplayName : Connected Devices Platform User Service_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_bbd317
old: DisplayName : ConsentUX_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_bbd317
old: DisplayName : CredentialEnrollmentManagerUserSvc_bbd317
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_bbd317
old: DisplayName : DeviceAssociationBroker_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_bbd317
old: DisplayName : DevicePicker_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_bbd317
old: DisplayName : DevicesFlow_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_bbd317
old: DisplayName : MessagingService_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_bbd317
old: DisplayName : Synkroniseringsvärd_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_bbd317
old: DisplayName : Contact Data_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_bbd317
old: DisplayName : PrintWorkflow_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_bbd317
old: DisplayName : Udk-användartjänst_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_bbd317
old: DisplayName : User Data Storage_bbd317
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_bbd317
old: DisplayName : User Data Access_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_bbd317
old: DisplayName : Windows Push Notifications User Service_bbd317
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC EngagedRebootReminder
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery EngagedRebootReminder
Top Runs Differences at: 2024-03-10 16.55.29
remark :
runtime : 20
count : 2
previous date : 2024-03-09
previous time : 16.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 122.0.2365.66
new: Version : 122.0.2365.80
Top Runs Differences at: 2024-03-09 16.55.29
remark :
runtime : 19
count : 4
previous date : 2024-03-08
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 122.0.2365.66
new: Version : 122.0.2365.80
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\122.0.2365.66\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\122.0.2365.80\elevation_service.exe"
Top Runs Differences at: 2024-03-08 16.55.29
remark :
runtime : 21
count : 4
previous date : 2024-03-07
previous time : 16.55.29
software - product - Google Chrome
old: Version : 122.0.6261.111
new: Version : 122.0.6261.112
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.111\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.112\elevation_service.exe"
Top Runs Differences at: 2024-03-07 16.55.29
remark :
runtime : 20
count : 155
previous date : 2024-03-07
previous time : 10.30.43
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_bbd317 Manual Unknown Agent Activation Runtime_bbd317
new: BcastDVRUserService_bbd317 Manual Unknown Användartjänst för Spel-DVR och sändning_bbd317
new: BluetoothUserService_bbd317 Manual Unknown Bluetooth User Support Service_bbd317
new: CaptureService_bbd317 Manual Unknown CaptureService_bbd317
new: cbdhsvc_bbd317 Manual Unknown Clipboard User Service_bbd317
new: CDPUserSvc_bbd317 Auto Unknown Connected Devices Platform User Service_bbd317
new: ConsentUxUserSvc_bbd317 Manual Unknown ConsentUX_bbd317
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_bbd317
new: DeviceAssociationBrokerSvc_bbd Manual Unknown DeviceAssociationBroker_bbd317
new: DevicePickerUserSvc_bbd317 Manual Unknown DevicePicker_bbd317
new: DevicesFlowUserSvc_bbd317 Manual Unknown DevicesFlow_bbd317
new: MessagingService_bbd317 Manual Unknown MessagingService_bbd317
new: OneSyncSvc_bbd317 Auto Unknown Synkroniseringsvärd_bbd317
new: PimIndexMaintenanceSvc_bbd317 Manual Unknown Contact Data_bbd317
new: PrintWorkflowUserSvc_bbd317 Manual Unknown PrintWorkflow_bbd317
new: UdkUserSvc_bbd317 Manual Unknown Udk-användartjänst_bbd317
new: UnistoreSvc_bbd317 Manual Unknown User Data Storage_bbd317
new: UserDataSvc_bbd317 Manual Unknown User Data Access_bbd317
new: WpnUserService_bbd317 Auto Unknown Windows Push Notifications User Service_bbd317
system - services - AarSvc_bbd317
new: DisplayName : Agent Activation Runtime_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_bbd317
new: DisplayName : Användartjänst för Spel-DVR och sändning_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_bbd317
new: DisplayName : Bluetooth User Support Service_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_bbd317
new: DisplayName : CaptureService_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_bbd317
new: DisplayName : Clipboard User Service_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_bbd317
new: DisplayName : Connected Devices Platform User Service_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_bbd317
new: DisplayName : ConsentUX_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_bbd317
new: DisplayName : CredentialEnrollmentManagerUserSvc_bbd317
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_bbd317
new: DisplayName : DeviceAssociationBroker_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_bbd317
new: DisplayName : DevicePicker_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_bbd317
new: DisplayName : DevicesFlow_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_bbd317
new: DisplayName : MessagingService_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_bbd317
new: DisplayName : Synkroniseringsvärd_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_bbd317
new: DisplayName : Contact Data_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_bbd317
new: DisplayName : PrintWorkflow_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_bbd317
new: DisplayName : Udk-användartjänst_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_bbd317
new: DisplayName : User Data Storage_bbd317
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_bbd317
new: DisplayName : User Data Access_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_bbd317
new: DisplayName : Windows Push Notifications User Service_bbd317
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2024-03-07 10.30.43
remark :
runtime : 38
count : 165
previous date : 2024-03-06
previous time : 21.08.21
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 122.0.6261.95
new: Version : 122.0.6261.111
system - services - survey
old: AarSvc_f731e Manual Unknown Agent Activation Runtime_f731e
old: BcastDVRUserService_f731e Manual Unknown Användartjänst för Spel-DVR och sändning_f731e
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_f731e Manual Unknown Bluetooth User Support Service_f731e
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_f731e Manual Unknown CaptureService_f731e
old: cbdhsvc_f731e Manual Unknown Clipboard User Service_f731e
old: CDPUserSvc_f731e Auto Unknown Connected Devices Platform User Service_f731e
old: ConsentUxUserSvc_f731e Manual Unknown ConsentUX_f731e
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_f731e
old: DeviceAssociationBrokerSvc_f73 Manual Unknown DeviceAssociationBroker_f731e
old: DevicePickerUserSvc_f731e Manual Unknown DevicePicker_f731e
old: DevicesFlowUserSvc_f731e Manual Unknown DevicesFlow_f731e
old: MessagingService_f731e Manual Unknown MessagingService_f731e
old: OneSyncSvc_f731e Auto Unknown Synkroniseringsvärd_f731e
old: PimIndexMaintenanceSvc_f731e Manual Unknown Contact Data_f731e
old: PrintWorkflowUserSvc_f731e Manual Unknown PrintWorkflow_f731e
old: UdkUserSvc_f731e Manual Unknown Udk-användartjänst_f731e
old: UnistoreSvc_f731e Manual Unknown User Data Storage_f731e
old: UserDataSvc_f731e Manual Unknown User Data Access_f731e
old: WpnUserService_f731e Auto Unknown Windows Push Notifications User Service_f731e
system - services - AarSvc_f731e
old: DisplayName : Agent Activation Runtime_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_f731e
old: DisplayName : Användartjänst för Spel-DVR och sändning_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_f731e
old: DisplayName : Bluetooth User Support Service_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_f731e
old: DisplayName : CaptureService_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_f731e
old: DisplayName : Clipboard User Service_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_f731e
old: DisplayName : Connected Devices Platform User Service_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_f731e
old: DisplayName : ConsentUX_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_f731e
old: DisplayName : CredentialEnrollmentManagerUserSvc_f731e
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_f731e
old: DisplayName : DeviceAssociationBroker_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_f731e
old: DisplayName : DevicePicker_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_f731e
old: DisplayName : DevicesFlow_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.95\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.111\elevation_service.exe"
system - services - MessagingService_f731e
old: DisplayName : MessagingService_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_f731e
old: DisplayName : Synkroniseringsvärd_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_f731e
old: DisplayName : Contact Data_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_f731e
old: DisplayName : PrintWorkflow_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_f731e
old: DisplayName : Udk-användartjänst_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_f731e
old: DisplayName : User Data Storage_f731e
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_f731e
old: DisplayName : User Data Access_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_f731e
old: DisplayName : Windows Push Notifications User Service_f731e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2024-03-06 21.08.21
remark :
runtime : 46
count : 175
previous date : 2024-03-06
previous time : 17.02.19
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - SystemDriver - UCPD
old: StartMode : Auto
new: StartMode : System
system - services - survey
new: AarSvc_f731e Manual Unknown Agent Activation Runtime_f731e
new: BcastDVRUserService_f731e Manual Unknown Användartjänst för Spel-DVR och sändning_f731e
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_f731e Manual Unknown Bluetooth User Support Service_f731e
new: CaptureService_f731e Manual Unknown CaptureService_f731e
new: cbdhsvc_f731e Manual Unknown Clipboard User Service_f731e
new: CDPUserSvc_f731e Auto Unknown Connected Devices Platform User Service_f731e
new: ConsentUxUserSvc_f731e Manual Unknown ConsentUX_f731e
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_f731e
new: DeviceAssociationBrokerSvc_f73 Manual Unknown DeviceAssociationBroker_f731e
new: DevicePickerUserSvc_f731e Manual Unknown DevicePicker_f731e
new: DevicesFlowUserSvc_f731e Manual Unknown DevicesFlow_f731e
new: MessagingService_f731e Manual Unknown MessagingService_f731e
new: OneSyncSvc_f731e Auto Unknown Synkroniseringsvärd_f731e
new: PimIndexMaintenanceSvc_f731e Manual Unknown Contact Data_f731e
new: PrintWorkflowUserSvc_f731e Manual Unknown PrintWorkflow_f731e
new: UdkUserSvc_f731e Manual Unknown Udk-användartjänst_f731e
new: UnistoreSvc_f731e Manual Unknown User Data Storage_f731e
new: UserDataSvc_f731e Manual Unknown User Data Access_f731e
new: WpnUserService_f731e Auto Unknown Windows Push Notifications User Service_f731e
system - services - AarSvc_f731e
new: DisplayName : Agent Activation Runtime_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_f731e
new: DisplayName : Användartjänst för Spel-DVR och sändning_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_f731e
new: DisplayName : Bluetooth User Support Service_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_f731e
new: DisplayName : CaptureService_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_f731e
new: DisplayName : Clipboard User Service_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_f731e
new: DisplayName : Connected Devices Platform User Service_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_f731e
new: DisplayName : ConsentUX_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_f731e
new: DisplayName : CredentialEnrollmentManagerUserSvc_f731e
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_f731e
new: DisplayName : DeviceAssociationBroker_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_f731e
new: DisplayName : DevicePicker_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_f731e
new: DisplayName : DevicesFlow_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_f731e
new: DisplayName : MessagingService_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_f731e
new: DisplayName : Synkroniseringsvärd_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_f731e
new: DisplayName : Contact Data_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_f731e
new: DisplayName : PrintWorkflow_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_f731e
new: DisplayName : Udk-användartjänst_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_f731e
new: DisplayName : User Data Storage_f731e
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_f731e
new: DisplayName : User Data Access_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_f731e
new: DisplayName : Windows Push Notifications User Service_f731e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2024-03-06 16.55.31
remark :
runtime : 39
count : 188
previous date : 2024-03-05
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
hardware - printer - OneNote for Windows 10
old: PortName : Microsoft.Office.OneNote_16001.14326.21738.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PortName : Microsoft.Office.OneNote_16001.14326.21828.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Update for Windows 10 for x64-based Systems (KB5001716)
old: Version : 8.93.0.0
new: Version : 8.94.0.0
system - SystemDriver - UCPD
old: StartMode : Disabled
new: StartMode : Auto
system - hotfix - KB5034763
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5034843
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5035225
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_10a80e Manual Unknown Agent Activation Runtime_10a80e
old: BcastDVRUserService_10a80e Manual Unknown Användartjänst för Spel-DVR och sändning_10a80e
old: BluetoothUserService_10a80e Manual Unknown Bluetooth User Support Service_10a80e
old: CaptureService_10a80e Manual Unknown CaptureService_10a80e
old: cbdhsvc_10a80e Manual Unknown Clipboard User Service_10a80e
old: CDPUserSvc_10a80e Auto Unknown Connected Devices Platform User Service_10a80e
old: ConsentUxUserSvc_10a80e Manual Unknown ConsentUX_10a80e
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_10a80e
old: dcsvc Manual Own Process dcsvc
new: dcsvc Manual Own Process Declared Configuration(DC) service
old: DeviceAssociationBrokerSvc_10a Manual Unknown DeviceAssociationBroker_10a80e
old: DevicePickerUserSvc_10a80e Manual Unknown DevicePicker_10a80e
old: DevicesFlowUserSvc_10a80e Manual Unknown DevicesFlow_10a80e
old: MessagingService_10a80e Manual Unknown MessagingService_10a80e
old: OneSyncSvc_10a80e Auto Unknown Synkroniseringsvärd_10a80e
old: PimIndexMaintenanceSvc_10a80e Manual Unknown Contact Data_10a80e
old: PrintWorkflowUserSvc_10a80e Manual Unknown PrintWorkflow_10a80e
old: UdkUserSvc_10a80e Manual Unknown Udk-användartjänst_10a80e
old: UnistoreSvc_10a80e Manual Unknown User Data Storage_10a80e
old: UserDataSvc_10a80e Manual Unknown User Data Access_10a80e
old: WpnUserService_10a80e Auto Unknown Windows Push Notifications User Service_10a80e
system - services - AarSvc_10a80e
old: DisplayName : Agent Activation Runtime_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_10a80e
old: DisplayName : Användartjänst för Spel-DVR och sändning_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_10a80e
old: DisplayName : Bluetooth User Support Service_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_10a80e
old: DisplayName : CaptureService_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_10a80e
old: DisplayName : Clipboard User Service_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_10a80e
old: DisplayName : Connected Devices Platform User Service_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_10a80e
old: DisplayName : ConsentUX_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_10a80e
old: DisplayName : CredentialEnrollmentManagerUserSvc_10a80e
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - dcsvc
old: DisplayName : dcsvc
new: DisplayName : Declared Configuration(DC) service
system - services - DeviceAssociationBrokerSvc_10a80e
old: DisplayName : DeviceAssociationBroker_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_10a80e
old: DisplayName : DevicePicker_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_10a80e
old: DisplayName : DevicesFlow_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_10a80e
old: DisplayName : MessagingService_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_10a80e
old: DisplayName : Synkroniseringsvärd_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_10a80e
old: DisplayName : Contact Data_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_10a80e
old: DisplayName : PrintWorkflow_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_10a80e
old: DisplayName : Udk-användartjänst_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_10a80e
old: DisplayName : User Data Storage_10a80e
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_10a80e
old: DisplayName : User Data Access_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_10a80e
old: DisplayName : Windows Push Notifications User Service_10a80e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2024-03-05 16.55.29
remark :
runtime : 20
count : 2
previous date : 2024-03-04
previous time : 16.55.29
software - product - Microsoft Edge Update
old: Version : 1.3.185.17
new: Version : 1.3.185.21
Top Runs Differences at: 2024-03-04 16.55.29
remark :
runtime : 40
count : 2
previous date : 2024-03-03
previous time : 16.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 122.0.2365.59
new: Version : 122.0.2365.66
Top Runs Differences at: 2024-03-03 16.55.29
remark :
runtime : 23
count : 4
previous date : 2024-03-02
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 122.0.2365.59
new: Version : 122.0.2365.66
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\122.0.2365.59\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\122.0.2365.66\elevation_service.exe"
Top Runs Differences at: 2024-03-01 16.55.29
remark :
runtime : 20
count : 10
previous date : 2024-02-29
previous time : 16.55.29
software - product - Google Chrome
old: Version : 122.0.6261.94
new: Version : 122.0.6261.95
software - product - Microsoft Edge
old: Version : 122.0.2365.52
new: Version : 122.0.2365.59
software - product - Microsoft Edge WebView2 Runtime
old: Version : 122.0.2365.52
new: Version : 122.0.2365.59
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.94\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.95\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\122.0.2365.52\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\122.0.2365.59\elevation_service.exe"
Top Runs Differences at: 2024-02-28 16.55.29
remark :
runtime : 18
count : 16
previous date : 2024-02-27
previous time : 16.55.29
software - product - Google Chrome
old: Version : 122.0.6261.70
new: Version : 122.0.6261.94
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.70\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.94\elevation_service.exe"
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2024-02-27 16.55.29
remark :
runtime : 20
count : 20
previous date : 2024-02-26
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe --startup_mode
software - product - Google Chrome
old: Version : 122.0.6261.69
new: Version : 122.0.6261.70
software - product - Google Drive
old: Version : 86.0.9.0
new: Version : 87.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\87.0.2.0\GoogleDriveFS.exe
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.69\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.70\elevation_service.exe"
Top Runs Differences at: 2024-02-26 16.55.29
remark :
runtime : 21
count : 6
previous date : 2024-02-25
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 121.0.2277.128
new: Version : 122.0.2365.52
software - product - Microsoft Edge WebView2 Runtime
old: Version : 121.0.2277.128
new: Version : 122.0.2365.52
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\121.0.2277.128\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\122.0.2365.52\elevation_service.exe"
Top Runs Differences at: 2024-02-25 16.55.29
remark :
runtime : 18
count : 4
previous date : 2024-02-24
previous time : 16.55.29
software - product - Google Chrome
old: Version : 122.0.6261.57
new: Version : 122.0.6261.69
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.57\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.69\elevation_service.exe"
Top Runs Differences at: 2024-02-22 16.55.29
remark :
runtime : 39
count : 6
previous date : 2024-02-21
previous time : 16.55.29
software - product - Google Chrome
old: Version : 121.0.6167.185
new: Version : 122.0.6261.57
software - product - Microsoft Edge Update
old: Version : 1.3.183.29
new: Version : 1.3.185.17
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.185\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.57\elevation_service.exe"
Top Runs Differences at: 2024-02-18 16.55.29
remark :
runtime : 19
count : 2
previous date : 2024-02-17
previous time : 16.55.30
software - product - Microsoft Edge WebView2 Runtime
old: Version : 121.0.2277.112
new: Version : 121.0.2277.128
Top Runs Differences at: 2024-02-17 16.55.30
remark :
runtime : 21
count : 4
previous date : 2024-02-16
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 121.0.2277.112
new: Version : 121.0.2277.128
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\121.0.2277.112\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\121.0.2277.128\elevation_service.exe"
Top Runs Differences at: 2024-02-16 16.55.30
remark :
runtime : 21
count : 4
previous date : 2024-02-15
previous time : 16.55.30
software - product - Google Chrome
old: Version : 121.0.6167.184
new: Version : 121.0.6167.185
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.184\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.185\elevation_service.exe"
Top Runs Differences at: 2024-02-15 16.55.30
remark :
runtime : 20
count : 4
previous date : 2024-02-14
previous time : 16.55.30
software - product - Google Chrome
old: Version : 121.0.6167.161
new: Version : 121.0.6167.184
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.161\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.184\elevation_service.exe"
Top Runs Differences at: 2024-02-14 16.55.30
remark :
runtime : 22
count : 4
previous date : 2024-02-13
previous time : 20.22.21
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
Top Runs Differences at: 2024-02-13 20.22.21
remark :
runtime : 101
count : 292
previous date : 2024-02-13
previous time : 16.55.30
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
software - product - Microsoft Edge
old: NoRemove : 0x00000001
system - hotfix - KB5033918
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5034203
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5034466
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5034763
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_884cc48 Manual Unknown Agent Activation Runtime_884cc48
new: AarSvc_10a80e Manual Unknown Agent Activation Runtime_10a80e
old: BcastDVRUserService_884cc48 Manual Unknown Användartjänst för Spel-DVR och sändning_884cc48
new: BcastDVRUserService_10a80e Manual Unknown Användartjänst för Spel-DVR och sändning_10a80e
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_884cc48 Manual Unknown Bluetooth User Support Service_884cc48
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_10a80e Manual Unknown Bluetooth User Support Service_10a80e
old: CaptureService_884cc48 Manual Unknown CaptureService_884cc48
old: cbdhsvc_884cc48 Manual Unknown Clipboard User Service_884cc48
new: CaptureService_10a80e Manual Unknown CaptureService_10a80e
new: cbdhsvc_10a80e Manual Unknown Clipboard User Service_10a80e
old: CDPUserSvc_884cc48 Auto Unknown Connected Devices Platform User Service_884cc48
new: CDPUserSvc_10a80e Auto Unknown Connected Devices Platform User Service_10a80e
old: ConsentUxUserSvc_884cc48 Manual Unknown ConsentUX_884cc48
new: ConsentUxUserSvc_10a80e Manual Unknown ConsentUX_10a80e
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_884cc48
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_10a80e
old: DeviceAssociationBrokerSvc_884 Manual Unknown DeviceAssociationBroker_884cc48
new: DeviceAssociationBrokerSvc_10a Manual Unknown DeviceAssociationBroker_10a80e
old: DevicePickerUserSvc_884cc48 Manual Unknown DevicePicker_884cc48
old: DevicesFlowUserSvc_884cc48 Manual Unknown DevicesFlow_884cc48
new: DevicePickerUserSvc_10a80e Manual Unknown DevicePicker_10a80e
new: DevicesFlowUserSvc_10a80e Manual Unknown DevicesFlow_10a80e
old: MessagingService_884cc48 Manual Unknown MessagingService_884cc48
new: MessagingService_10a80e Manual Unknown MessagingService_10a80e
old: OneSyncSvc_884cc48 Auto Unknown Synkroniseringsvärd_884cc48
new: OneSyncSvc_10a80e Auto Unknown Synkroniseringsvärd_10a80e
old: PimIndexMaintenanceSvc_884cc48 Manual Unknown Contact Data_884cc48
new: PimIndexMaintenanceSvc_10a80e Manual Unknown Contact Data_10a80e
old: PrintWorkflowUserSvc_884cc48 Manual Unknown PrintWorkflow_884cc48
new: PrintWorkflowUserSvc_10a80e Manual Unknown PrintWorkflow_10a80e
old: UdkUserSvc_884cc48 Manual Unknown Udk-användartjänst_884cc48
new: UdkUserSvc_10a80e Manual Unknown Udk-användartjänst_10a80e
old: UnistoreSvc_884cc48 Manual Unknown User Data Storage_884cc48
new: UnistoreSvc_10a80e Manual Unknown User Data Storage_10a80e
old: UserDataSvc_884cc48 Manual Unknown User Data Access_884cc48
new: UserDataSvc_10a80e Manual Unknown User Data Access_10a80e
old: WpnUserService_884cc48 Auto Unknown Windows Push Notifications User Service_884cc48
new: WpnUserService_10a80e Auto Unknown Windows Push Notifications User Service_10a80e
system - services - AarSvc_884cc48
old: DisplayName : Agent Activation Runtime_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_10a80e
new: DisplayName : Agent Activation Runtime_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_884cc48
old: DisplayName : Användartjänst för Spel-DVR och sändning_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_10a80e
new: DisplayName : Användartjänst för Spel-DVR och sändning_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_884cc48
old: DisplayName : Bluetooth User Support Service_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_10a80e
new: DisplayName : Bluetooth User Support Service_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_884cc48
old: DisplayName : CaptureService_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_884cc48
old: DisplayName : Clipboard User Service_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_10a80e
new: DisplayName : CaptureService_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_10a80e
new: DisplayName : Clipboard User Service_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_884cc48
old: DisplayName : Connected Devices Platform User Service_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_10a80e
new: DisplayName : Connected Devices Platform User Service_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_884cc48
old: DisplayName : ConsentUX_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_10a80e
new: DisplayName : ConsentUX_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_884cc48
old: DisplayName : CredentialEnrollmentManagerUserSvc_884cc48
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_10a80e
new: DisplayName : CredentialEnrollmentManagerUserSvc_10a80e
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_884cc48
old: DisplayName : DeviceAssociationBroker_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_10a80e
new: DisplayName : DeviceAssociationBroker_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_884cc48
old: DisplayName : DevicePicker_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_884cc48
old: DisplayName : DevicesFlow_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_10a80e
new: DisplayName : DevicePicker_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_10a80e
new: DisplayName : DevicesFlow_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_884cc48
old: DisplayName : MessagingService_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_10a80e
new: DisplayName : MessagingService_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_884cc48
old: DisplayName : Synkroniseringsvärd_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_10a80e
new: DisplayName : Synkroniseringsvärd_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_884cc48
old: DisplayName : Contact Data_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_10a80e
new: DisplayName : Contact Data_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_884cc48
old: DisplayName : PrintWorkflow_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_10a80e
new: DisplayName : PrintWorkflow_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_884cc48
old: DisplayName : Udk-användartjänst_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_10a80e
new: DisplayName : Udk-användartjänst_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_884cc48
old: DisplayName : User Data Storage_884cc48
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_10a80e
new: DisplayName : User Data Storage_10a80e
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_884cc48
old: DisplayName : User Data Access_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_10a80e
new: DisplayName : User Data Access_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_884cc48
old: DisplayName : Windows Push Notifications User Service_884cc48
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_10a80e
new: DisplayName : Windows Push Notifications User Service_10a80e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2024-02-13 16.55.30
remark :
runtime : 21
count : 16
previous date : 2024-02-12
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 85.0.37.0
new: Version : 86.0.9.0
old: Install Location : C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe
Top Runs Differences at: 2024-02-11 16.55.30
remark :
runtime : 20
count : 6
previous date : 2024-02-10
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 121.0.2277.106
new: Version : 121.0.2277.112
software - product - Microsoft Edge WebView2 Runtime
old: Version : 121.0.2277.106
new: Version : 121.0.2277.112
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\121.0.2277.106\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\121.0.2277.112\elevation_service.exe"
Top Runs Differences at: 2024-02-09 16.55.30
remark :
runtime : 20
count : 4
previous date : 2024-02-08
previous time : 16.55.30
software - product - Google Chrome
old: Version : 121.0.6167.141
new: Version : 121.0.6167.161
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.141\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.161\elevation_service.exe"
Top Runs Differences at: 2024-02-08 16.55.30
remark :
runtime : 21
count : 10
previous date : 2024-02-07
previous time : 16.55.30
software - product - Google Chrome
old: Version : 121.0.6167.140
new: Version : 121.0.6167.141
software - product - Microsoft Edge
old: Version : 121.0.2277.98
new: Version : 121.0.2277.106
software - product - Microsoft Edge WebView2 Runtime
old: Version : 121.0.2277.98
new: Version : 121.0.2277.106
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.140\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.141\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\121.0.2277.98\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\121.0.2277.106\elevation_service.exe"
Top Runs Differences at: 2024-02-04 16.55.30
remark :
runtime : 18
count : 2
previous date : 2024-02-03
previous time : 16.55.30
software - product - Microsoft Edge WebView2 Runtime
old: Version : 120.0.2210.144
new: Version : 121.0.2277.98
Top Runs Differences at: 2024-02-03 16.55.30
remark :
runtime : 19
count : 4
previous date : 2024-02-02
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 121.0.2277.83
new: Version : 121.0.2277.98
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\121.0.2277.83\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\121.0.2277.98\elevation_service.exe"
Top Runs Differences at: 2024-02-02 16.55.30
remark :
runtime : 43
count : 4
previous date : 2024-02-01
previous time : 16.55.30
software - product - Google Chrome
old: Version : 121.0.6167.87
new: Version : 121.0.6167.140
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.87\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.140\elevation_service.exe"
Top Runs Differences at: 2024-02-01 16.55.30
remark :
runtime : 21
count : 6
previous date : 2024-01-31
previous time : 16.55.30
software - product - Google Chrome
old: Version : 121.0.6167.86
new: Version : 121.0.6167.87
software - product - Microsoft Edge Update
old: Version : 1.3.181.5
new: Version : 1.3.183.29
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.86\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.87\elevation_service.exe"
Top Runs Differences at: 2024-01-31 16.55.30
remark :
runtime : 20
count : 2
previous date : 2024-01-30
previous time : 16.55.30
software - product - JMRI - Java Model Railroad Interface
old: Version : 5.2+R760b98537f
new: Version : 5.6+R89a87446cb
Top Runs Differences at: 2024-01-30 16.55.30
remark :
runtime : 20
count : 4
previous date : 2024-01-29
previous time : 16.55.30
software - product - Google Chrome
old: Version : 120.0.6099.225
new: Version : 121.0.6167.86
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.225\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.86\elevation_service.exe"
Top Runs Differences at: 2024-01-29 16.55.30
remark :
runtime : 18
count : 179
previous date : 2024-01-28
previous time : 16.55.30
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - Logitech Download Assistant
new: Command : C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
new: Description : Logitech Download Assistant
new: Location : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : Logitech Download Assistant
new: SettingID :
new: User : Public
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_884cc48 Manual Unknown Agent Activation Runtime_884cc48
new: BcastDVRUserService_884cc48 Manual Unknown Användartjänst för Spel-DVR och sändning_884cc48
new: BluetoothUserService_884cc48 Manual Unknown Bluetooth User Support Service_884cc48
new: CaptureService_884cc48 Manual Unknown CaptureService_884cc48
new: cbdhsvc_884cc48 Manual Unknown Clipboard User Service_884cc48
new: CDPUserSvc_884cc48 Auto Unknown Connected Devices Platform User Service_884cc48
new: ConsentUxUserSvc_884cc48 Manual Unknown ConsentUX_884cc48
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_884cc48
new: DeviceAssociationBrokerSvc_884 Manual Unknown DeviceAssociationBroker_884cc48
new: DevicePickerUserSvc_884cc48 Manual Unknown DevicePicker_884cc48
new: DevicesFlowUserSvc_884cc48 Manual Unknown DevicesFlow_884cc48
new: MessagingService_884cc48 Manual Unknown MessagingService_884cc48
new: OneSyncSvc_884cc48 Auto Unknown Synkroniseringsvärd_884cc48
new: PimIndexMaintenanceSvc_884cc48 Manual Unknown Contact Data_884cc48
new: PrintWorkflowUserSvc_884cc48 Manual Unknown PrintWorkflow_884cc48
new: UdkUserSvc_884cc48 Manual Unknown Udk-användartjänst_884cc48
new: UnistoreSvc_884cc48 Manual Unknown User Data Storage_884cc48
new: UserDataSvc_884cc48 Manual Unknown User Data Access_884cc48
new: WpnUserService_884cc48 Auto Unknown Windows Push Notifications User Service_884cc48
system - services - AarSvc_884cc48
new: DisplayName : Agent Activation Runtime_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_884cc48
new: DisplayName : Användartjänst för Spel-DVR och sändning_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_884cc48
new: DisplayName : Bluetooth User Support Service_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_884cc48
new: DisplayName : CaptureService_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_884cc48
new: DisplayName : Clipboard User Service_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_884cc48
new: DisplayName : Connected Devices Platform User Service_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_884cc48
new: DisplayName : ConsentUX_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_884cc48
new: DisplayName : CredentialEnrollmentManagerUserSvc_884cc48
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_884cc48
new: DisplayName : DeviceAssociationBroker_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_884cc48
new: DisplayName : DevicePicker_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_884cc48
new: DisplayName : DevicesFlow_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_884cc48
new: DisplayName : MessagingService_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_884cc48
new: DisplayName : Synkroniseringsvärd_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_884cc48
new: DisplayName : Contact Data_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_884cc48
new: DisplayName : PrintWorkflow_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_884cc48
new: DisplayName : Udk-användartjänst_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_884cc48
new: DisplayName : User Data Storage_884cc48
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_884cc48
new: DisplayName : User Data Access_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_884cc48
new: DisplayName : Windows Push Notifications User Service_884cc48
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2024-01-27 16.55.30
remark :
runtime : 20
count : 4
previous date : 2024-01-26
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 120.0.2210.144
new: Version : 121.0.2277.83
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.144\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\121.0.2277.83\elevation_service.exe"
Top Runs Differences at: 2024-01-24 00.21.48
remark :
runtime : 27
count : 35
previous date : 2024-01-23
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 85.0.26.0
new: Version : 85.0.37.0
old: Install Location : C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe
system - hotfix - KB5034122
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5034203
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5034224
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2024-01-23 16.55.29
remark :
runtime : 20
count : 12
previous date : 2024-01-22
previous time : 16.55.29
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-01-22 16.55.29
remark :
runtime : 18
count : 12
previous date : 2024-01-21
previous time : 16.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-01-21 13.51.44
remark :
runtime : 648
count : 22
previous date : 2024-01-17
previous time : 16.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Google Chrome
old: Version : 120.0.6099.218
new: Version : 120.0.6099.225
software - product - Microsoft Edge
old: Version : 120.0.2210.133
new: Version : 120.0.2210.144
software - product - Microsoft Edge WebView2 Runtime
old: Version : 120.0.2210.133
new: Version : 120.0.2210.144
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.218\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.225\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.133\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.144\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-01-17 16.55.30
remark :
runtime : 20
count : 16
previous date : 2024-01-16
previous time : 16.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Google Chrome
old: Version : 120.0.6099.217
new: Version : 120.0.6099.218
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.217\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.218\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-01-15 16.55.30
remark :
runtime : 20
count : 12
previous date : 2024-01-14
previous time : 16.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-01-14 16.55.30
remark :
runtime : 19
count : 18
previous date : 2024-01-13
previous time : 16.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Microsoft Edge
old: Version : 120.0.2210.121
new: Version : 120.0.2210.133
software - product - Microsoft Edge WebView2 Runtime
old: Version : 120.0.2210.121
new: Version : 120.0.2210.133
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.121\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.133\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-01-12 16.55.30
remark :
runtime : 20
count : 16
previous date : 2024-01-11
previous time : 16.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Google Chrome
old: Version : 120.0.6099.216
new: Version : 120.0.6099.217
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.216\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.217\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2024-01-11 16.55.30
remark :
runtime : 20
count : 16
previous date : 2024-01-10
previous time : 16.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Google Chrome
old: Version : 120.0.6099.200
new: Version : 120.0.6099.216
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.200\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.216\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2024-01-09 20.28.57
remark :
runtime : 34
count : 175
previous date : 2024-01-09
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5032005
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5033372
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5033918
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5034122
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5034441
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_22f1dbe Manual Unknown Agent Activation Runtime_22f1dbe
old: BcastDVRUserService_22f1dbe Manual Unknown Användartjänst för Spel-DVR och sändning_22f1dbe
old: BluetoothUserService_22f1dbe Manual Unknown Bluetooth User Support Service_22f1dbe
old: CaptureService_22f1dbe Manual Unknown CaptureService_22f1dbe
old: cbdhsvc_22f1dbe Manual Unknown Clipboard User Service_22f1dbe
old: CDPUserSvc_22f1dbe Auto Unknown Connected Devices Platform User Service_22f1dbe
old: ConsentUxUserSvc_22f1dbe Manual Unknown ConsentUX_22f1dbe
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_22f1dbe
old: DeviceAssociationBrokerSvc_22f Manual Unknown DeviceAssociationBroker_22f1dbe
old: DevicePickerUserSvc_22f1dbe Manual Unknown DevicePicker_22f1dbe
old: DevicesFlowUserSvc_22f1dbe Manual Unknown DevicesFlow_22f1dbe
old: MessagingService_22f1dbe Manual Unknown MessagingService_22f1dbe
old: OneSyncSvc_22f1dbe Auto Unknown Synkroniseringsvärd_22f1dbe
old: PimIndexMaintenanceSvc_22f1dbe Manual Unknown Contact Data_22f1dbe
old: PrintWorkflowUserSvc_22f1dbe Manual Unknown PrintWorkflow_22f1dbe
old: UdkUserSvc_22f1dbe Manual Unknown Udk-användartjänst_22f1dbe
old: UnistoreSvc_22f1dbe Manual Unknown User Data Storage_22f1dbe
old: UserDataSvc_22f1dbe Manual Unknown User Data Access_22f1dbe
old: WpnUserService_22f1dbe Auto Unknown Windows Push Notifications User Service_22f1dbe
system - services - AarSvc_22f1dbe
old: DisplayName : Agent Activation Runtime_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_22f1dbe
old: DisplayName : Användartjänst för Spel-DVR och sändning_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_22f1dbe
old: DisplayName : Bluetooth User Support Service_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_22f1dbe
old: DisplayName : CaptureService_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_22f1dbe
old: DisplayName : Clipboard User Service_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_22f1dbe
old: DisplayName : Connected Devices Platform User Service_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_22f1dbe
old: DisplayName : ConsentUX_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_22f1dbe
old: DisplayName : CredentialEnrollmentManagerUserSvc_22f1dbe
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_22f1dbe
old: DisplayName : DeviceAssociationBroker_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_22f1dbe
old: DisplayName : DevicePicker_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_22f1dbe
old: DisplayName : DevicesFlow_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_22f1dbe
old: DisplayName : MessagingService_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_22f1dbe
old: DisplayName : Synkroniseringsvärd_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_22f1dbe
old: DisplayName : Contact Data_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_22f1dbe
old: DisplayName : PrintWorkflow_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_22f1dbe
old: DisplayName : Udk-användartjänst_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_22f1dbe
old: DisplayName : User Data Storage_22f1dbe
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_22f1dbe
old: DisplayName : User Data Access_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_22f1dbe
old: DisplayName : Windows Push Notifications User Service_22f1dbe
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2024-01-09 16.55.29
remark :
runtime : 23
count : 4
previous date : 2024-01-08
previous time : 16.55.29
software - product - Google Chrome
old: Version : 120.0.6099.131
new: Version : 120.0.6099.200
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.131\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.200\elevation_service.exe"
Top Runs Differences at: 2024-01-08 16.55.29
remark :
runtime : 21
count : 2
previous date : 2024-01-07
previous time : 16.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 120.0.2210.91
new: Version : 120.0.2210.121
Top Runs Differences at: 2024-01-07 16.55.29
remark :
runtime : 21
count : 4
previous date : 2024-01-06
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 120.0.2210.91
new: Version : 120.0.2210.121
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.91\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.121\elevation_service.exe"
Top Runs Differences at: 2024-01-05 16.55.29
remark :
runtime : 20
count : 4
previous date : 2024-01-04
previous time : 16.55.29
software - product - Google Chrome
old: Version : 120.0.6099.130
new: Version : 120.0.6099.131
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.130\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.131\elevation_service.exe"
Top Runs Differences at: 2024-01-03 16.55.29
remark :
runtime : 19
count : 148
previous date : 2024-01-02
previous time : 16.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_22f1dbe Manual Unknown Agent Activation Runtime_22f1dbe
new: BcastDVRUserService_22f1dbe Manual Unknown Användartjänst för Spel-DVR och sändning_22f1dbe
new: BluetoothUserService_22f1dbe Manual Unknown Bluetooth User Support Service_22f1dbe
new: CaptureService_22f1dbe Manual Unknown CaptureService_22f1dbe
new: cbdhsvc_22f1dbe Manual Unknown Clipboard User Service_22f1dbe
new: CDPUserSvc_22f1dbe Auto Unknown Connected Devices Platform User Service_22f1dbe
new: ConsentUxUserSvc_22f1dbe Manual Unknown ConsentUX_22f1dbe
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_22f1dbe
new: DeviceAssociationBrokerSvc_22f Manual Unknown DeviceAssociationBroker_22f1dbe
new: DevicePickerUserSvc_22f1dbe Manual Unknown DevicePicker_22f1dbe
new: DevicesFlowUserSvc_22f1dbe Manual Unknown DevicesFlow_22f1dbe
new: MessagingService_22f1dbe Manual Unknown MessagingService_22f1dbe
new: OneSyncSvc_22f1dbe Auto Unknown Synkroniseringsvärd_22f1dbe
new: PimIndexMaintenanceSvc_22f1dbe Manual Unknown Contact Data_22f1dbe
new: PrintWorkflowUserSvc_22f1dbe Manual Unknown PrintWorkflow_22f1dbe
new: UdkUserSvc_22f1dbe Manual Unknown Udk-användartjänst_22f1dbe
new: UnistoreSvc_22f1dbe Manual Unknown User Data Storage_22f1dbe
new: UserDataSvc_22f1dbe Manual Unknown User Data Access_22f1dbe
new: WpnUserService_22f1dbe Auto Unknown Windows Push Notifications User Service_22f1dbe
system - services - AarSvc_22f1dbe
new: DisplayName : Agent Activation Runtime_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_22f1dbe
new: DisplayName : Användartjänst för Spel-DVR och sändning_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_22f1dbe
new: DisplayName : Bluetooth User Support Service_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_22f1dbe
new: DisplayName : CaptureService_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_22f1dbe
new: DisplayName : Clipboard User Service_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_22f1dbe
new: DisplayName : Connected Devices Platform User Service_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_22f1dbe
new: DisplayName : ConsentUX_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_22f1dbe
new: DisplayName : CredentialEnrollmentManagerUserSvc_22f1dbe
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_22f1dbe
new: DisplayName : DeviceAssociationBroker_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_22f1dbe
new: DisplayName : DevicePicker_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_22f1dbe
new: DisplayName : DevicesFlow_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_22f1dbe
new: DisplayName : MessagingService_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_22f1dbe
new: DisplayName : Synkroniseringsvärd_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_22f1dbe
new: DisplayName : Contact Data_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_22f1dbe
new: DisplayName : PrintWorkflow_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_22f1dbe
new: DisplayName : Udk-användartjänst_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_22f1dbe
new: DisplayName : User Data Storage_22f1dbe
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_22f1dbe
new: DisplayName : User Data Access_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_22f1dbe
new: DisplayName : Windows Push Notifications User Service_22f1dbe
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2024-01-01 17.31.36
remark :
runtime : 35
count : 2
previous date : 2023-12-27
previous time : 16.55.29
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2023-12-27 16.55.29
remark :
runtime : 15
count : 137
previous date : 2023-12-27
previous time : 14.22.05
system - services - survey
old: AarSvc_776f8 Manual Unknown Agent Activation Runtime_776f8
old: BcastDVRUserService_776f8 Manual Unknown Användartjänst för Spel-DVR och sändning_776f8
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_776f8 Manual Unknown Bluetooth User Support Service_776f8
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_776f8 Manual Unknown CaptureService_776f8
old: cbdhsvc_776f8 Manual Unknown Clipboard User Service_776f8
old: CDPUserSvc_776f8 Auto Unknown Connected Devices Platform User Service_776f8
old: ConsentUxUserSvc_776f8 Manual Unknown ConsentUX_776f8
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_776f8
old: DeviceAssociationBrokerSvc_776 Manual Unknown DeviceAssociationBroker_776f8
old: DevicePickerUserSvc_776f8 Manual Unknown DevicePicker_776f8
old: DevicesFlowUserSvc_776f8 Manual Unknown DevicesFlow_776f8
old: MessagingService_776f8 Manual Unknown MessagingService_776f8
old: OneSyncSvc_776f8 Auto Unknown Synkroniseringsvärd_776f8
old: PimIndexMaintenanceSvc_776f8 Manual Unknown Contact Data_776f8
old: PrintWorkflowUserSvc_776f8 Manual Unknown PrintWorkflow_776f8
old: UdkUserSvc_776f8 Manual Unknown Udk-användartjänst_776f8
old: UnistoreSvc_776f8 Manual Unknown User Data Storage_776f8
old: UserDataSvc_776f8 Manual Unknown User Data Access_776f8
old: WpnUserService_776f8 Auto Unknown Windows Push Notifications User Service_776f8
system - services - AarSvc_776f8
old: DisplayName : Agent Activation Runtime_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_776f8
old: DisplayName : Användartjänst för Spel-DVR och sändning_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_776f8
old: DisplayName : Bluetooth User Support Service_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_776f8
old: DisplayName : CaptureService_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_776f8
old: DisplayName : Clipboard User Service_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_776f8
old: DisplayName : Connected Devices Platform User Service_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_776f8
old: DisplayName : ConsentUX_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_776f8
old: DisplayName : CredentialEnrollmentManagerUserSvc_776f8
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_776f8
old: DisplayName : DeviceAssociationBroker_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_776f8
old: DisplayName : DevicePicker_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_776f8
old: DisplayName : DevicesFlow_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_776f8
old: DisplayName : MessagingService_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_776f8
old: DisplayName : Synkroniseringsvärd_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_776f8
old: DisplayName : Contact Data_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_776f8
old: DisplayName : PrintWorkflow_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_776f8
old: DisplayName : Udk-användartjänst_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_776f8
old: DisplayName : User Data Storage_776f8
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_776f8
old: DisplayName : User Data Access_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_776f8
old: DisplayName : Windows Push Notifications User Service_776f8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2023-12-27 14.22.05
remark :
runtime : 18
count : 4
previous date : 2023-12-27
previous time : 14.12.32
software - product - Google Chrome
old: Version : 120.0.6099.111
new: Version : 120.0.6099.130
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.111\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.130\elevation_service.exe"
Top Runs Differences at: 2023-12-27 14.12.32
remark :
runtime : 117
count : 141
previous date : 2023-12-23
previous time : 16.55.30
software - product - Microsoft Edge WebView2 Runtime
old: Version : 120.0.2210.77
new: Version : 120.0.2210.91
system - services - survey
new: AarSvc_776f8 Manual Unknown Agent Activation Runtime_776f8
new: BcastDVRUserService_776f8 Manual Unknown Användartjänst för Spel-DVR och sändning_776f8
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_776f8 Manual Unknown Bluetooth User Support Service_776f8
new: CaptureService_776f8 Manual Unknown CaptureService_776f8
new: cbdhsvc_776f8 Manual Unknown Clipboard User Service_776f8
new: CDPUserSvc_776f8 Auto Unknown Connected Devices Platform User Service_776f8
new: ConsentUxUserSvc_776f8 Manual Unknown ConsentUX_776f8
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_776f8
new: DeviceAssociationBrokerSvc_776 Manual Unknown DeviceAssociationBroker_776f8
new: DevicePickerUserSvc_776f8 Manual Unknown DevicePicker_776f8
new: DevicesFlowUserSvc_776f8 Manual Unknown DevicesFlow_776f8
new: MessagingService_776f8 Manual Unknown MessagingService_776f8
new: OneSyncSvc_776f8 Auto Unknown Synkroniseringsvärd_776f8
new: PimIndexMaintenanceSvc_776f8 Manual Unknown Contact Data_776f8
new: PrintWorkflowUserSvc_776f8 Manual Unknown PrintWorkflow_776f8
new: UdkUserSvc_776f8 Manual Unknown Udk-användartjänst_776f8
new: UnistoreSvc_776f8 Manual Unknown User Data Storage_776f8
new: UserDataSvc_776f8 Manual Unknown User Data Access_776f8
new: WpnUserService_776f8 Auto Unknown Windows Push Notifications User Service_776f8
system - services - AarSvc_776f8
new: DisplayName : Agent Activation Runtime_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_776f8
new: DisplayName : Användartjänst för Spel-DVR och sändning_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_776f8
new: DisplayName : Bluetooth User Support Service_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_776f8
new: DisplayName : CaptureService_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_776f8
new: DisplayName : Clipboard User Service_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_776f8
new: DisplayName : Connected Devices Platform User Service_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_776f8
new: DisplayName : ConsentUX_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_776f8
new: DisplayName : CredentialEnrollmentManagerUserSvc_776f8
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_776f8
new: DisplayName : DeviceAssociationBroker_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_776f8
new: DisplayName : DevicePicker_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_776f8
new: DisplayName : DevicesFlow_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_776f8
new: DisplayName : MessagingService_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_776f8
new: DisplayName : Synkroniseringsvärd_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_776f8
new: DisplayName : Contact Data_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_776f8
new: DisplayName : PrintWorkflow_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_776f8
new: DisplayName : Udk-användartjänst_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_776f8
new: DisplayName : User Data Storage_776f8
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_776f8
new: DisplayName : User Data Access_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_776f8
new: DisplayName : Windows Push Notifications User Service_776f8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2023-12-23 16.55.30
remark :
runtime : 19
count : 4
previous date : 2023-12-22
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 120.0.2210.77
new: Version : 120.0.2210.91
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.77\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.91\elevation_service.exe"
Top Runs Differences at: 2023-12-21 16.55.30
remark :
runtime : 21
count : 4
previous date : 2023-12-20
previous time : 16.55.30
software - product - Google Chrome
old: Version : 120.0.6099.110
new: Version : 120.0.6099.111
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.110\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.111\elevation_service.exe"
Top Runs Differences at: 2023-12-20 16.55.30
remark :
runtime : 22
count : 12
previous date : 2023-12-19
previous time : 16.55.30
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2023-12-19 16.55.30
remark :
runtime : 20
count : 18
previous date : 2023-12-18
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe --startup_mode
software - product - Google Chrome
old: Version : 120.0.6099.72
new: Version : 120.0.6099.110
software - product - Google Drive
old: Version : 85.0.25.0
new: Version : 85.0.26.0
old: Install Location : C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.72\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.110\elevation_service.exe"
Top Runs Differences at: 2023-12-17 16.55.30
remark :
runtime : 31
count : 6
previous date : 2023-12-16
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 120.0.2210.61
new: Version : 120.0.2210.77
software - product - Microsoft Edge WebView2 Runtime
old: Version : 120.0.2210.61
new: Version : 120.0.2210.77
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.61\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.77\elevation_service.exe"
Top Runs Differences at: 2023-12-16 16.55.30
remark :
runtime : 21
count : 14
previous date : 2023-12-15
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\84.0.13.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.13.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.13.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.13.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.13.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 84.0.13.0
new: Version : 85.0.25.0
old: Install Location : C:\Program Files\Google\Drive File Stream\84.0.13.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe
Top Runs Differences at: 2023-12-14 16.55.30
remark :
runtime : 18
count : 4
previous date : 2023-12-13
previous time : 16.55.30
software - product - Google Chrome
old: Version : 120.0.6099.71
new: Version : 120.0.6099.72
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.71\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.72\elevation_service.exe"
Top Runs Differences at: 2023-12-12 22.57.55
remark :
runtime : 27
count : 69
previous date : 2023-12-12
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.13.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.13.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.13.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.13.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.13.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 84.0.11.0
new: Version : 84.0.13.0
old: Install Location : C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\84.0.13.0\GoogleDriveFS.exe
system - SystemDriver - UCPD
new: AcceptPause : 0
new: Description : UCPD
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\UCPD.sys
new: ServiceType : File System Driver
new: StartMode : Disabled
system - hotfix - KB5032189
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5032907
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5033372
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: GameInputSvc Manual Own Process GameInput Service
system - services - GameInputSvc
new: DisplayName : GameInput Service
new: PathName : C:\WINDOWS\System32\GameInputSvc.exe
new: ServiceType : Own Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - scheduled tasks - \Microsoft\Windows\AppxDeploymentClient\UCPD velocity
new: Logon Mode : Interactive/Background
new: Task To Run : %windir%\system32\UCPDMgr.exe
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Only Start If Idle for minutes, If Not Idle Retry For minutes Stop the task if Idle State end
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\PI\SecureBootEncodeUEFI
old: Run As User : Administrat”rer
new: Run As User : SYSTEM
old: Stop Task If Runs X Hours and X Mins : 00:01:00
new: Stop Task If Runs X Hours and X Mins : 00:00:10
old: Days : N/A
old: Months : N/A
new: Days : 01, 15
new: Months : Every month
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2023-12-11 16.55.29
remark :
runtime : 19
count : 12
previous date : 2023-12-10
previous time : 16.55.29
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-12-10 16.55.29
remark :
runtime : 19
count : 14
previous date : 2023-12-09
previous time : 16.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Microsoft Edge WebView2 Runtime
old: Version : 119.0.2151.97
new: Version : 120.0.2210.61
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-12-09 16.32.00
remark :
runtime : 15
count : 4
previous date : 2023-12-09
previous time : 16.25.06
software - product - Microsoft Edge
old: Version : 119.0.2151.97
new: Version : 120.0.2210.61
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\119.0.2151.97\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.61\elevation_service.exe"
Top Runs Differences at: 2023-12-08 13.15.58
remark :
runtime : 24
count : 12
previous date : 2023-12-08
previous time : 13.03.09
software - product - Google Chrome
old: Version : 119.0.6045.200
new: Version : 120.0.6099.71
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.200\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.71\elevation_service.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2023-12-08 13.03.09
remark :
runtime : 80
count : 21
previous date : 2023-12-06
previous time : 14.22.26
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\84.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe --startup_mode
system - SystemDriver - googledrivefs31092
old: AcceptPause : 0
old: Description : googledrivefs31092
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\DRIVERS\googledrivefs31092.sys
old: ServiceType : File System Driver
old: StartMode : Disabled
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe"
Top Runs Differences at: 2023-12-06 14.22.26
remark :
runtime : 662
count : 30
previous date : 2023-11-29
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\84.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.6.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.6.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.6.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.6.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.6.0\GoogleDriveFS.exe --startup_mode
hardware - printer - OneNote for Windows 10
old: PortName : Microsoft.Office.OneNote_16001.14326.21452.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PortName : Microsoft.Office.OneNote_16001.14326.21738.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
software - product - Google Chrome
old: Version : 119.0.6045.199
new: Version : 119.0.6045.200
software - product - Google Drive
old: Version : 84.0.4.0
new: Version : 84.0.11.0
old: Install Location : C:\Program Files\Google\Drive File Stream\84.0.4.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe
software - product - Microsoft Edge
old: Version : 119.0.2151.93
new: Version : 119.0.2151.97
software - product - Microsoft Edge WebView2 Runtime
old: Version : 119.0.2151.72
new: Version : 119.0.2151.97
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.199\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.200\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\119.0.2151.93\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\119.0.2151.97\elevation_service.exe"
system - scheduled tasks - \GoogleUpdateTaskMachineCore
old: Comment : Ser till att programvaran frǾn Google ÇÏr uppdaterad. Om aktiviteten inaktiveras eller stoppas uppdateras inte programvaran frǾn Google. Det betyder att vissa funktioner kanske inte fungerar och att eventuella sÇÏkerhetsrisker inte kan ǾtgÇÏrdas. Akt
new: Comment : Ser till att programvaran fr†n Google „r uppdaterad. Om aktiviteten inaktiveras eller stoppas uppdateras inte programvaran fr†n Google. Det betyder att vissa funktioner kanske inte fungerar och att eventuella s„kerhetsrisker inte kan †tg„rdas. Aktivitet
system - scheduled tasks - \GoogleUpdateTaskMachineUA
old: Comment : Ser till att programvaran frǾn Google ÇÏr uppdaterad. Om aktiviteten inaktiveras eller stoppas uppdateras inte programvaran frǾn Google. Det betyder att vissa funktioner kanske inte fungerar och att eventuella sÇÏkerhetsrisker inte kan ǾtgÇÏrdas. Akt
new: Comment : Ser till att programvaran fr†n Google „r uppdaterad. Om aktiviteten inaktiveras eller stoppas uppdateras inte programvaran fr†n Google. Det betyder att vissa funktioner kanske inte fungerar och att eventuella s„kerhetsrisker inte kan †tg„rdas. Aktivitet
Top Runs Differences at: 2023-11-29 16.55.29
remark :
runtime : 41
count : 8
previous date : 2023-11-28
previous time : 16.55.29
software - product - Google Chrome
old: Version : 119.0.6045.160
new: Version : 119.0.6045.199
software - product - Microsoft Edge
old: Version : 119.0.2151.72
new: Version : 119.0.2151.93
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.160\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.199\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\119.0.2151.72\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\119.0.2151.93\elevation_service.exe"
Top Runs Differences at: 2023-11-25 16.55.29
remark :
runtime : 21
count : 14
previous date : 2023-11-24
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\84.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\84.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.4.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 84.0.3.0
new: Version : 84.0.4.0
old: Install Location : C:\Program Files\Google\Drive File Stream\84.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\84.0.4.0\GoogleDriveFS.exe
Top Runs Differences at: 2023-11-23 16.55.29
remark :
runtime : 20
count : 16
previous date : 2023-11-22
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\84.0.3.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 83.0.2.0
new: Version : 84.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\84.0.3.0\GoogleDriveFS.exe
system - SystemDriver - googledrivefs31092
old: StartMode : System
new: StartMode : Disabled
Top Runs Differences at: 2023-11-22 16.55.29
remark :
runtime : 23
count : 148
previous date : 2023-11-21
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - services - survey
old: AarSvc_8495964 Manual Unknown Agent Activation Runtime_8495964
old: BcastDVRUserService_8495964 Manual Unknown Användartjänst för Spel-DVR och sändning_8495964
old: BluetoothUserService_8495964 Manual Unknown Bluetooth User Support Service_8495964
old: CaptureService_8495964 Manual Unknown CaptureService_8495964
old: cbdhsvc_8495964 Manual Unknown Clipboard User Service_8495964
old: CDPUserSvc_8495964 Auto Unknown Connected Devices Platform User Service_8495964
old: ConsentUxUserSvc_8495964 Manual Unknown ConsentUX_8495964
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_8495964
old: DeviceAssociationBrokerSvc_849 Manual Unknown DeviceAssociationBroker_8495964
old: DevicePickerUserSvc_8495964 Manual Unknown DevicePicker_8495964
old: DevicesFlowUserSvc_8495964 Manual Unknown DevicesFlow_8495964
old: MessagingService_8495964 Manual Unknown MessagingService_8495964
old: OneSyncSvc_8495964 Auto Unknown Synkroniseringsvärd_8495964
old: PimIndexMaintenanceSvc_8495964 Manual Unknown Contact Data_8495964
old: PrintWorkflowUserSvc_8495964 Manual Unknown PrintWorkflow_8495964
old: UdkUserSvc_8495964 Manual Unknown Udk-användartjänst_8495964
old: UnistoreSvc_8495964 Manual Unknown User Data Storage_8495964
old: UserDataSvc_8495964 Manual Unknown User Data Access_8495964
old: WpnUserService_8495964 Auto Unknown Windows Push Notifications User Service_8495964
system - services - AarSvc_8495964
old: DisplayName : Agent Activation Runtime_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_8495964
old: DisplayName : Användartjänst för Spel-DVR och sändning_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_8495964
old: DisplayName : Bluetooth User Support Service_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_8495964
old: DisplayName : CaptureService_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_8495964
old: DisplayName : Clipboard User Service_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_8495964
old: DisplayName : Connected Devices Platform User Service_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_8495964
old: DisplayName : ConsentUX_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_8495964
old: DisplayName : CredentialEnrollmentManagerUserSvc_8495964
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_8495964
old: DisplayName : DeviceAssociationBroker_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_8495964
old: DisplayName : DevicePicker_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_8495964
old: DisplayName : DevicesFlow_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_8495964
old: DisplayName : MessagingService_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_8495964
old: DisplayName : Synkroniseringsvärd_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_8495964
old: DisplayName : Contact Data_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_8495964
old: DisplayName : PrintWorkflow_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_8495964
old: DisplayName : Udk-användartjänst_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_8495964
old: DisplayName : User Data Storage_8495964
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_8495964
old: DisplayName : User Data Access_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_8495964
old: DisplayName : Windows Push Notifications User Service_8495964
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2023-11-20 16.55.29
remark :
runtime : 18
count : 160
previous date : 2023-11-19
previous time : 16.55.30
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_8495964 Manual Unknown Agent Activation Runtime_8495964
new: BcastDVRUserService_8495964 Manual Unknown Användartjänst för Spel-DVR och sändning_8495964
new: BluetoothUserService_8495964 Manual Unknown Bluetooth User Support Service_8495964
new: CaptureService_8495964 Manual Unknown CaptureService_8495964
new: cbdhsvc_8495964 Manual Unknown Clipboard User Service_8495964
new: CDPUserSvc_8495964 Auto Unknown Connected Devices Platform User Service_8495964
new: ConsentUxUserSvc_8495964 Manual Unknown ConsentUX_8495964
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_8495964
new: DeviceAssociationBrokerSvc_849 Manual Unknown DeviceAssociationBroker_8495964
new: DevicePickerUserSvc_8495964 Manual Unknown DevicePicker_8495964
new: DevicesFlowUserSvc_8495964 Manual Unknown DevicesFlow_8495964
new: MessagingService_8495964 Manual Unknown MessagingService_8495964
new: OneSyncSvc_8495964 Auto Unknown Synkroniseringsvärd_8495964
new: PimIndexMaintenanceSvc_8495964 Manual Unknown Contact Data_8495964
new: PrintWorkflowUserSvc_8495964 Manual Unknown PrintWorkflow_8495964
new: UdkUserSvc_8495964 Manual Unknown Udk-användartjänst_8495964
new: UnistoreSvc_8495964 Manual Unknown User Data Storage_8495964
new: UserDataSvc_8495964 Manual Unknown User Data Access_8495964
new: WpnUserService_8495964 Auto Unknown Windows Push Notifications User Service_8495964
system - services - AarSvc_8495964
new: DisplayName : Agent Activation Runtime_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_8495964
new: DisplayName : Användartjänst för Spel-DVR och sändning_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_8495964
new: DisplayName : Bluetooth User Support Service_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_8495964
new: DisplayName : CaptureService_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_8495964
new: DisplayName : Clipboard User Service_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_8495964
new: DisplayName : Connected Devices Platform User Service_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_8495964
new: DisplayName : ConsentUX_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_8495964
new: DisplayName : CredentialEnrollmentManagerUserSvc_8495964
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_8495964
new: DisplayName : DeviceAssociationBroker_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_8495964
new: DisplayName : DevicePicker_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_8495964
new: DisplayName : DevicesFlow_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_8495964
new: DisplayName : MessagingService_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_8495964
new: DisplayName : Synkroniseringsvärd_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_8495964
new: DisplayName : Contact Data_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_8495964
new: DisplayName : PrintWorkflow_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_8495964
new: DisplayName : Udk-användartjänst_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_8495964
new: DisplayName : User Data Storage_8495964
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_8495964
new: DisplayName : User Data Access_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_8495964
new: DisplayName : Windows Push Notifications User Service_8495964
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2023-11-19 16.55.30
remark :
runtime : 20
count : 2
previous date : 2023-11-18
previous time : 16.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 119.0.2151.58
new: Version : 119.0.2151.72
Top Runs Differences at: 2023-11-18 16.55.29
remark :
runtime : 21
count : 8
previous date : 2023-11-17
previous time : 16.55.29
software - product - Google Chrome
old: Version : 119.0.6045.159
new: Version : 119.0.6045.160
software - product - Microsoft Edge
old: Version : 119.0.2151.58
new: Version : 119.0.2151.72
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.159\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.160\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\119.0.2151.58\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\119.0.2151.72\elevation_service.exe"
Top Runs Differences at: 2023-11-16 16.55.32
remark :
runtime : 20
count : 4
previous date : 2023-11-15
previous time : 16.55.29
software - product - Google Chrome
old: Version : 119.0.6045.124
new: Version : 119.0.6045.159
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.124\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.159\elevation_service.exe"
Top Runs Differences at: 2023-11-14 21.46.53
remark :
runtime : 34
count : 175
previous date : 2023-11-14
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5031445
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5031816
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5032005
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5032189
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5032392
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_1e5ddc9 Manual Unknown Agent Activation Runtime_1e5ddc9
old: BcastDVRUserService_1e5ddc9 Manual Unknown Användartjänst för Spel-DVR och sändning_1e5ddc9
old: BluetoothUserService_1e5ddc9 Manual Unknown Bluetooth User Support Service_1e5ddc9
old: CaptureService_1e5ddc9 Manual Unknown CaptureService_1e5ddc9
old: cbdhsvc_1e5ddc9 Manual Unknown Clipboard User Service_1e5ddc9
old: CDPUserSvc_1e5ddc9 Auto Unknown Connected Devices Platform User Service_1e5ddc9
old: ConsentUxUserSvc_1e5ddc9 Manual Unknown ConsentUX_1e5ddc9
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1e5ddc9
old: DeviceAssociationBrokerSvc_1e5 Manual Unknown DeviceAssociationBroker_1e5ddc9
old: DevicePickerUserSvc_1e5ddc9 Manual Unknown DevicePicker_1e5ddc9
old: DevicesFlowUserSvc_1e5ddc9 Manual Unknown DevicesFlow_1e5ddc9
old: MessagingService_1e5ddc9 Manual Unknown MessagingService_1e5ddc9
old: OneSyncSvc_1e5ddc9 Auto Unknown Synkroniseringsvärd_1e5ddc9
old: PimIndexMaintenanceSvc_1e5ddc9 Manual Unknown Contact Data_1e5ddc9
old: PrintWorkflowUserSvc_1e5ddc9 Manual Unknown PrintWorkflow_1e5ddc9
old: UdkUserSvc_1e5ddc9 Manual Unknown Udk-användartjänst_1e5ddc9
old: UnistoreSvc_1e5ddc9 Manual Unknown User Data Storage_1e5ddc9
old: UserDataSvc_1e5ddc9 Manual Unknown User Data Access_1e5ddc9
old: WpnUserService_1e5ddc9 Auto Unknown Windows Push Notifications User Service_1e5ddc9
system - services - AarSvc_1e5ddc9
old: DisplayName : Agent Activation Runtime_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_1e5ddc9
old: DisplayName : Användartjänst för Spel-DVR och sändning_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_1e5ddc9
old: DisplayName : Bluetooth User Support Service_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_1e5ddc9
old: DisplayName : CaptureService_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_1e5ddc9
old: DisplayName : Clipboard User Service_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_1e5ddc9
old: DisplayName : Connected Devices Platform User Service_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_1e5ddc9
old: DisplayName : ConsentUX_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1e5ddc9
old: DisplayName : CredentialEnrollmentManagerUserSvc_1e5ddc9
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_1e5ddc9
old: DisplayName : DeviceAssociationBroker_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_1e5ddc9
old: DisplayName : DevicePicker_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_1e5ddc9
old: DisplayName : DevicesFlow_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_1e5ddc9
old: DisplayName : MessagingService_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_1e5ddc9
old: DisplayName : Synkroniseringsvärd_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_1e5ddc9
old: DisplayName : Contact Data_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_1e5ddc9
old: DisplayName : PrintWorkflow_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_1e5ddc9
old: DisplayName : Udk-användartjänst_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_1e5ddc9
old: DisplayName : User Data Storage_1e5ddc9
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_1e5ddc9
old: DisplayName : User Data Access_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_1e5ddc9
old: DisplayName : Windows Push Notifications User Service_1e5ddc9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2023-11-14 16.55.30
remark :
runtime : 20
count : 4
previous date : 2023-11-13
previous time : 16.55.30
system - scheduled tasks - \GoogleUpdateTaskMachineCore
old: Comment : Ser till att programvaran fr†n Google „r uppdaterad. Om aktiviteten inaktiveras eller stoppas uppdateras inte programvaran fr†n Google. Det betyder att vissa funktioner kanske inte fungerar och att eventuella s„kerhetsrisker inte kan †tg„rdas. Aktivitet
new: Comment : Ser till att programvaran frǾn Google ÇÏr uppdaterad. Om aktiviteten inaktiveras eller stoppas uppdateras inte programvaran frǾn Google. Det betyder att vissa funktioner kanske inte fungerar och att eventuella sÇÏkerhetsrisker inte kan ǾtgÇÏrdas. Akt
system - scheduled tasks - \GoogleUpdateTaskMachineUA
old: Comment : Ser till att programvaran fr†n Google „r uppdaterad. Om aktiviteten inaktiveras eller stoppas uppdateras inte programvaran fr†n Google. Det betyder att vissa funktioner kanske inte fungerar och att eventuella s„kerhetsrisker inte kan †tg„rdas. Aktivitet
new: Comment : Ser till att programvaran frǾn Google ÇÏr uppdaterad. Om aktiviteten inaktiveras eller stoppas uppdateras inte programvaran frǾn Google. Det betyder att vissa funktioner kanske inte fungerar och att eventuella sÇÏkerhetsrisker inte kan ǾtgÇÏrdas. Akt
Top Runs Differences at: 2023-11-12 16.55.30
remark :
runtime : 20
count : 6
previous date : 2023-11-11
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 119.0.2151.44
new: Version : 119.0.2151.58
software - product - Microsoft Edge WebView2 Runtime
old: Version : 119.0.2151.44
new: Version : 119.0.2151.58
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\119.0.2151.44\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\119.0.2151.58\elevation_service.exe"
Top Runs Differences at: 2023-11-10 16.55.30
remark :
runtime : 18
count : 4
previous date : 2023-11-09
previous time : 16.55.30
software - product - Google Chrome
old: Version : 119.0.6045.123
new: Version : 119.0.6045.124
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.123\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.124\elevation_service.exe"
Top Runs Differences at: 2023-11-09 16.55.30
remark :
runtime : 20
count : 4
previous date : 2023-11-08
previous time : 16.55.30
software - product - Google Chrome
old: Version : 119.0.6045.106
new: Version : 119.0.6045.123
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.106\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.123\elevation_service.exe"
Top Runs Differences at: 2023-11-07 16.55.30
remark :
runtime : 17
count : 16
previous date : 2023-11-06
previous time : 16.55.30
software - product - Google Chrome
old: Version : 119.0.6045.105
new: Version : 119.0.6045.106
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.105\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.106\elevation_service.exe"
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2023-11-05 16.55.30
remark :
runtime : 23
count : 2
previous date : 2023-11-04
previous time : 16.55.30
software - product - Microsoft Edge WebView2 Runtime
old: Version : 118.0.2088.76
new: Version : 119.0.2151.44
Top Runs Differences at: 2023-11-04 16.55.30
remark :
runtime : 39
count : 164
previous date : 2023-11-03
previous time : 16.55.30
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: Version : 118.0.2088.76
new: Version : 119.0.2151.44
system - services - survey
new: AarSvc_1e5ddc9 Manual Unknown Agent Activation Runtime_1e5ddc9
new: BcastDVRUserService_1e5ddc9 Manual Unknown Användartjänst för Spel-DVR och sändning_1e5ddc9
new: BluetoothUserService_1e5ddc9 Manual Unknown Bluetooth User Support Service_1e5ddc9
new: CaptureService_1e5ddc9 Manual Unknown CaptureService_1e5ddc9
new: cbdhsvc_1e5ddc9 Manual Unknown Clipboard User Service_1e5ddc9
new: CDPUserSvc_1e5ddc9 Auto Unknown Connected Devices Platform User Service_1e5ddc9
new: ConsentUxUserSvc_1e5ddc9 Manual Unknown ConsentUX_1e5ddc9
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1e5ddc9
new: DeviceAssociationBrokerSvc_1e5 Manual Unknown DeviceAssociationBroker_1e5ddc9
new: DevicePickerUserSvc_1e5ddc9 Manual Unknown DevicePicker_1e5ddc9
new: DevicesFlowUserSvc_1e5ddc9 Manual Unknown DevicesFlow_1e5ddc9
new: MessagingService_1e5ddc9 Manual Unknown MessagingService_1e5ddc9
new: OneSyncSvc_1e5ddc9 Auto Unknown Synkroniseringsvärd_1e5ddc9
new: PimIndexMaintenanceSvc_1e5ddc9 Manual Unknown Contact Data_1e5ddc9
new: PrintWorkflowUserSvc_1e5ddc9 Manual Unknown PrintWorkflow_1e5ddc9
new: UdkUserSvc_1e5ddc9 Manual Unknown Udk-användartjänst_1e5ddc9
new: UnistoreSvc_1e5ddc9 Manual Unknown User Data Storage_1e5ddc9
new: UserDataSvc_1e5ddc9 Manual Unknown User Data Access_1e5ddc9
new: WpnUserService_1e5ddc9 Auto Unknown Windows Push Notifications User Service_1e5ddc9
system - services - AarSvc_1e5ddc9
new: DisplayName : Agent Activation Runtime_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_1e5ddc9
new: DisplayName : Användartjänst för Spel-DVR och sändning_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_1e5ddc9
new: DisplayName : Bluetooth User Support Service_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_1e5ddc9
new: DisplayName : CaptureService_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_1e5ddc9
new: DisplayName : Clipboard User Service_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_1e5ddc9
new: DisplayName : Connected Devices Platform User Service_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_1e5ddc9
new: DisplayName : ConsentUX_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1e5ddc9
new: DisplayName : CredentialEnrollmentManagerUserSvc_1e5ddc9
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_1e5ddc9
new: DisplayName : DeviceAssociationBroker_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_1e5ddc9
new: DisplayName : DevicePicker_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_1e5ddc9
new: DisplayName : DevicesFlow_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_1e5ddc9
new: DisplayName : MessagingService_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\118.0.2088.76\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\119.0.2151.44\elevation_service.exe"
system - services - OneSyncSvc_1e5ddc9
new: DisplayName : Synkroniseringsvärd_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_1e5ddc9
new: DisplayName : Contact Data_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_1e5ddc9
new: DisplayName : PrintWorkflow_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_1e5ddc9
new: DisplayName : Udk-användartjänst_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_1e5ddc9
new: DisplayName : User Data Storage_1e5ddc9
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_1e5ddc9
new: DisplayName : User Data Access_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_1e5ddc9
new: DisplayName : Windows Push Notifications User Service_1e5ddc9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2023-11-03 16.55.30
remark :
runtime : 22
count : 2
previous date : 2023-11-02
previous time : 20.47.56
software - product - Microsoft Update Health Tools
old: Version : 3.73.0.0
new: Version : 3.74.0.0
Top Runs Differences at: 2023-11-02 20.47.56
remark :
runtime : 26
count : 199
previous date : 2023-11-02
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - SystemDriver - BasicDisplay
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicdisplay.inf_amd64_d4186f58a551c471\BasicDisplay.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicdisplay.inf_amd64_19e58b6267591a82\BasicDisplay.sys
system - SystemDriver - BasicRender
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicrender.inf_amd64_9eeaaced803186c6\BasicRender.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicrender.inf_amd64_d3f5994a67770b50\BasicRender.sys
system - hotfix - KB5031356
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5031445
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5031540
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_11248be1 Manual Unknown Agent Activation Runtime_11248be1
old: BcastDVRUserService_11248be1 Manual Unknown Användartjänst för Spel-DVR och sändning_11248be1
old: BluetoothUserService_11248be1 Manual Unknown Bluetooth User Support Service_11248be1
old: CaptureService_11248be1 Manual Unknown CaptureService_11248be1
old: cbdhsvc_11248be1 Manual Unknown Clipboard User Service_11248be1
old: CDPUserSvc_11248be1 Auto Unknown Connected Devices Platform User Service_11248be1
old: ConsentUxUserSvc_11248be1 Manual Unknown ConsentUX_11248be1
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_11248be1
old: DeviceAssociationBrokerSvc_112 Manual Unknown DeviceAssociationBroker_11248be1
old: DevicePickerUserSvc_11248be1 Manual Unknown DevicePicker_11248be1
old: DevicesFlowUserSvc_11248be1 Manual Unknown DevicesFlow_11248be1
old: MessagingService_11248be1 Manual Unknown MessagingService_11248be1
old: OneSyncSvc_11248be1 Auto Unknown Synkroniseringsvärd_11248be1
old: PimIndexMaintenanceSvc_11248be Manual Unknown Contact Data_11248be1
old: PrintWorkflowUserSvc_11248be1 Manual Unknown PrintWorkflow_11248be1
old: UdkUserSvc_11248be1 Manual Unknown Udk-användartjänst_11248be1
old: UnistoreSvc_11248be1 Manual Unknown User Data Storage_11248be1
old: UserDataSvc_11248be1 Manual Unknown User Data Access_11248be1
old: WpnUserService_11248be1 Auto Unknown Windows Push Notifications User Service_11248be1
system - services - AarSvc_11248be1
old: DisplayName : Agent Activation Runtime_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_11248be1
old: DisplayName : Användartjänst för Spel-DVR och sändning_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_11248be1
old: DisplayName : Bluetooth User Support Service_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_11248be1
old: DisplayName : CaptureService_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_11248be1
old: DisplayName : Clipboard User Service_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_11248be1
old: DisplayName : Connected Devices Platform User Service_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_11248be1
old: DisplayName : ConsentUX_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_11248be1
old: DisplayName : CredentialEnrollmentManagerUserSvc_11248be1
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_11248be1
old: DisplayName : DeviceAssociationBroker_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_11248be1
old: DisplayName : DevicePicker_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_11248be1
old: DisplayName : DevicesFlow_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_11248be1
old: DisplayName : MessagingService_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_11248be1
old: DisplayName : Synkroniseringsvärd_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_11248be1
old: DisplayName : Contact Data_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_11248be1
old: DisplayName : PrintWorkflow_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_11248be1
old: DisplayName : Udk-användartjänst_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_11248be1
old: DisplayName : User Data Storage_11248be1
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_11248be1
old: DisplayName : User Data Access_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_11248be1
old: DisplayName : Windows Push Notifications User Service_11248be1
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\CloudRestore\Backup
old: Days : N/A
new: Days : Every 7 day(s)
system - scheduled tasks - \Microsoft\Windows\ConsentUX\UnifiedConsent\UnifiedConsentSyncTask
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : $(@%systemRoot%\system32\unifiedconsent.dll,-101)
new: Idle Time : Disabled
new: Power Management :
new: Run As User : Interaktiv
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 00:05:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\WindowsUpdate\Refresh Group Policy Cache
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : Den h„r uppgiften anv„nds f”r att uppdatera grupprincipcachen i Windows Update
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 01:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2023-11-02 16.55.30
remark :
runtime : 19
count : 23
previous date : 2023-11-01
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 82.0.1.0
new: Version : 83.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\83.0.2.0\GoogleDriveFS.exe
system - SystemDriver - googledrivefs31357
new: AcceptPause : 0
new: Description : googledrivefs31357
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys
new: ServiceType : File System Driver
new: StartMode : System
Top Runs Differences at: 2023-11-01 16.55.30
remark :
runtime : 21
count : 23
previous date : 2023-10-31
previous time : 16.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
boot - startup - Logitech Download Assistant
old: Command : C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
old: Description : Logitech Download Assistant
old: Location : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : Logitech Download Assistant
old: SettingID :
old: User : Public
old:
software - product - Google Chrome
old: Version : 118.0.5993.118
new: Version : 119.0.6045.105
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\118.0.5993.118\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.105\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-10-31 16.55.30
remark :
runtime : 18
count : 12
previous date : 2023-10-30
previous time : 16.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-10-30 16.55.30
remark :
runtime : 18
count : 2
previous date : 2023-10-29
previous time : 16.55.30
software - product - Microsoft Edge WebView2 Runtime
old: Version : 118.0.2088.69
new: Version : 118.0.2088.76
Top Runs Differences at: 2023-10-29 16.55.30
remark :
runtime : 18
count : 156
previous date : 2023-10-28
previous time : 17.55.30
general
old: CurrentTimeZone:120
old: DaylightInEffect:1
new: CurrentTimeZone:60
new: DaylightInEffect:0
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: Version : 118.0.2088.69
new: Version : 118.0.2088.76
system - services - survey
new: AarSvc_11248be1 Manual Unknown Agent Activation Runtime_11248be1
new: BcastDVRUserService_11248be1 Manual Unknown Användartjänst för Spel-DVR och sändning_11248be1
new: BluetoothUserService_11248be1 Manual Unknown Bluetooth User Support Service_11248be1
new: CaptureService_11248be1 Manual Unknown CaptureService_11248be1
new: cbdhsvc_11248be1 Manual Unknown Clipboard User Service_11248be1
new: CDPUserSvc_11248be1 Auto Unknown Connected Devices Platform User Service_11248be1
new: ConsentUxUserSvc_11248be1 Manual Unknown ConsentUX_11248be1
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_11248be1
new: DeviceAssociationBrokerSvc_112 Manual Unknown DeviceAssociationBroker_11248be1
new: DevicePickerUserSvc_11248be1 Manual Unknown DevicePicker_11248be1
new: DevicesFlowUserSvc_11248be1 Manual Unknown DevicesFlow_11248be1
new: MessagingService_11248be1 Manual Unknown MessagingService_11248be1
new: OneSyncSvc_11248be1 Auto Unknown Synkroniseringsvärd_11248be1
new: PimIndexMaintenanceSvc_11248be Manual Unknown Contact Data_11248be1
new: PrintWorkflowUserSvc_11248be1 Manual Unknown PrintWorkflow_11248be1
new: UdkUserSvc_11248be1 Manual Unknown Udk-användartjänst_11248be1
new: UnistoreSvc_11248be1 Manual Unknown User Data Storage_11248be1
new: UserDataSvc_11248be1 Manual Unknown User Data Access_11248be1
new: WpnUserService_11248be1 Auto Unknown Windows Push Notifications User Service_11248be1
system - services - AarSvc_11248be1
new: DisplayName : Agent Activation Runtime_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_11248be1
new: DisplayName : Användartjänst för Spel-DVR och sändning_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_11248be1
new: DisplayName : Bluetooth User Support Service_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_11248be1
new: DisplayName : CaptureService_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_11248be1
new: DisplayName : Clipboard User Service_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_11248be1
new: DisplayName : Connected Devices Platform User Service_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_11248be1
new: DisplayName : ConsentUX_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_11248be1
new: DisplayName : CredentialEnrollmentManagerUserSvc_11248be1
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_11248be1
new: DisplayName : DeviceAssociationBroker_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_11248be1
new: DisplayName : DevicePicker_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_11248be1
new: DisplayName : DevicesFlow_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_11248be1
new: DisplayName : MessagingService_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\118.0.2088.69\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\118.0.2088.76\elevation_service.exe"
system - services - OneSyncSvc_11248be1
new: DisplayName : Synkroniseringsvärd_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_11248be1
new: DisplayName : Contact Data_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_11248be1
new: DisplayName : PrintWorkflow_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_11248be1
new: DisplayName : Udk-användartjänst_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_11248be1
new: DisplayName : User Data Storage_11248be1
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_11248be1
new: DisplayName : User Data Access_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_11248be1
new: DisplayName : Windows Push Notifications User Service_11248be1
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2023-10-28 17.55.30
remark :
runtime : 18
count : 12
previous date : 2023-10-27
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-10-27 17.55.30
remark :
runtime : 19
count : 24
previous date : 2023-10-26
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Google Chrome
old: Version : 118.0.5993.90
new: Version : 118.0.5993.118
software - product - Microsoft Edge WebView2 Runtime
old: Version : 118.0.2088.61
new: Version : 118.0.2088.69
system - hotfix - KB5030649
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5031816
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\118.0.5993.90\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\118.0.5993.118\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-10-26 17.55.30
remark :
runtime : 18
count : 6
previous date : 2023-10-25
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 118.0.2088.61
new: Version : 118.0.2088.69
software - product - Microsoft Edge Update
old: Version : 1.3.177.11
new: Version : 1.3.181.5
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\118.0.2088.61\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\118.0.2088.69\elevation_service.exe"
Top Runs Differences at: 2023-10-25 17.55.30
remark :
runtime : 18
count : 16
previous date : 2023-10-24
previous time : 17.55.31
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Google Chrome
old: Version : 118.0.5993.89
new: Version : 118.0.5993.90
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\118.0.5993.89\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\118.0.5993.90\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-10-24 17.55.31
remark :
runtime : 18
count : 12
previous date : 2023-10-23
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-10-23 17.55.30
remark :
runtime : 17
count : 14
previous date : 2023-10-22
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Microsoft Edge WebView2 Runtime
old: Version : 118.0.2088.46
new: Version : 118.0.2088.61
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-10-22 17.55.30
remark :
runtime : 19
count : 16
previous date : 2023-10-21
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Microsoft Edge
old: Version : 118.0.2088.57
new: Version : 118.0.2088.61
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\118.0.2088.57\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\118.0.2088.61\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-10-21 17.55.30
remark :
runtime : 18
count : 4
previous date : 2023-10-20
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 118.0.2088.46
new: Version : 118.0.2088.57
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\118.0.2088.46\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\118.0.2088.57\elevation_service.exe"
Top Runs Differences at: 2023-10-20 17.55.30
remark :
runtime : 23
count : 4
previous date : 2023-10-19
previous time : 17.55.30
software - product - Google Chrome
old: Version : 118.0.5993.88
new: Version : 118.0.5993.89
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\118.0.5993.88\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\118.0.5993.89\elevation_service.exe"
Top Runs Differences at: 2023-10-18 17.55.30
remark :
runtime : 18
count : 20
previous date : 2023-10-17
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Google Chrome
old: Version : 118.0.5993.71
new: Version : 118.0.5993.88
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\118.0.5993.71\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\118.0.5993.88\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-10-17 17.55.30
remark :
runtime : 18
count : 20
previous date : 2023-10-16
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Google Chrome
old: Version : 117.0.5938.152
new: Version : 118.0.5993.71
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\117.0.5938.152\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\118.0.5993.71\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-10-16 13.56.29
remark :
runtime : 46
count : 18
previous date : 2023-10-15
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 117.0.2045.60
new: Version : 118.0.2088.46
software - product - Microsoft Edge WebView2 Runtime
old: Version : 117.0.2045.60
new: Version : 118.0.2088.46
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.60\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\118.0.2088.46\elevation_service.exe"
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2023-10-13 17.55.30
remark :
runtime : 21
count : 12
previous date : 2023-10-12
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-10-12 17.55.30
remark :
runtime : 20
count : 26
previous date : 2023-10-11
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe --startup_mode
old: User : CORP\administrator
new: User : CORP\Administrator
old: Command : C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 81.0.5.0
new: Version : 82.0.1.0
old: Install Location : C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\82.0.1.0\GoogleDriveFS.exe
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-10-11 17.55.30
remark :
runtime : 18
count : 4
previous date : 2023-10-10
previous time : 21.27.40
software - product - Google Chrome
old: Version : 117.0.5938.150
new: Version : 117.0.5938.152
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\117.0.5938.150\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\117.0.5938.152\elevation_service.exe"
Top Runs Differences at: 2023-10-10 21.27.40
remark :
runtime : 32
count : 177
previous date : 2023-10-10
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - SystemDriver - BasicDisplay
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicdisplay.inf_amd64_fc93ae411c02f280\BasicDisplay.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicdisplay.inf_amd64_d4186f58a551c471\BasicDisplay.sys
system - SystemDriver - BasicRender
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicrender.inf_amd64_ed345fdc37d65139\BasicRender.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicrender.inf_amd64_9eeaaced803186c6\BasicRender.sys
system - hotfix - KB5030300
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5031356
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5031539
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_10e55b8 Manual Unknown Agent Activation Runtime_10e55b8
old: BcastDVRUserService_10e55b8 Manual Unknown Användartjänst för Spel-DVR och sändning_10e55b8
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_10e55b8 Manual Unknown Bluetooth User Support Service_10e55b8
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_10e55b8 Manual Unknown CaptureService_10e55b8
old: cbdhsvc_10e55b8 Manual Unknown Clipboard User Service_10e55b8
old: CDPUserSvc_10e55b8 Auto Unknown Connected Devices Platform User Service_10e55b8
old: ConsentUxUserSvc_10e55b8 Manual Unknown ConsentUX_10e55b8
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_10e55b8
old: DeviceAssociationBrokerSvc_10e Manual Unknown DeviceAssociationBroker_10e55b8
old: DevicePickerUserSvc_10e55b8 Manual Unknown DevicePicker_10e55b8
old: DevicesFlowUserSvc_10e55b8 Manual Unknown DevicesFlow_10e55b8
old: MessagingService_10e55b8 Manual Unknown MessagingService_10e55b8
old: OneSyncSvc_10e55b8 Auto Unknown Synkroniseringsvärd_10e55b8
old: PimIndexMaintenanceSvc_10e55b8 Manual Unknown Contact Data_10e55b8
old: PrintWorkflowUserSvc_10e55b8 Manual Unknown PrintWorkflow_10e55b8
old: UdkUserSvc_10e55b8 Manual Unknown Udk-användartjänst_10e55b8
old: UnistoreSvc_10e55b8 Manual Unknown User Data Storage_10e55b8
old: UserDataSvc_10e55b8 Manual Unknown User Data Access_10e55b8
old: WpnUserService_10e55b8 Auto Unknown Windows Push Notifications User Service_10e55b8
system - services - AarSvc_10e55b8
old: DisplayName : Agent Activation Runtime_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_10e55b8
old: DisplayName : Användartjänst för Spel-DVR och sändning_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_10e55b8
old: DisplayName : Bluetooth User Support Service_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_10e55b8
old: DisplayName : CaptureService_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_10e55b8
old: DisplayName : Clipboard User Service_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_10e55b8
old: DisplayName : Connected Devices Platform User Service_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_10e55b8
old: DisplayName : ConsentUX_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_10e55b8
old: DisplayName : CredentialEnrollmentManagerUserSvc_10e55b8
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_10e55b8
old: DisplayName : DeviceAssociationBroker_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_10e55b8
old: DisplayName : DevicePicker_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_10e55b8
old: DisplayName : DevicesFlow_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_10e55b8
old: DisplayName : MessagingService_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_10e55b8
old: DisplayName : Synkroniseringsvärd_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_10e55b8
old: DisplayName : Contact Data_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_10e55b8
old: DisplayName : PrintWorkflow_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_10e55b8
old: DisplayName : Udk-användartjänst_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_10e55b8
old: DisplayName : User Data Storage_10e55b8
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_10e55b8
old: DisplayName : User Data Access_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_10e55b8
old: DisplayName : Windows Push Notifications User Service_10e55b8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2023-10-10 17.55.30
remark :
runtime : 20
count : 8
previous date : 2023-10-09
previous time : 17.55.30
software - product - Google Chrome
old: Version : 117.0.5938.134
new: Version : 117.0.5938.150
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\117.0.5938.134\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\117.0.5938.150\elevation_service.exe"
Top Runs Differences at: 2023-10-09 17.55.30
remark :
runtime : 20
count : 2
previous date : 2023-10-08
previous time : 17.55.30
software - product - Microsoft Edge WebView2 Runtime
old: Version : 117.0.2045.47
new: Version : 117.0.2045.60
Top Runs Differences at: 2023-10-08 17.55.30
remark :
runtime : 18
count : 4
previous date : 2023-10-07
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 117.0.2045.47
new: Version : 117.0.2045.60
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.47\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.60\elevation_service.exe"
Top Runs Differences at: 2023-10-05 17.55.30
remark :
runtime : 19
count : 172
previous date : 2023-10-04
previous time : 17.55.30
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_10e55b8 Manual Unknown Agent Activation Runtime_10e55b8
new: BcastDVRUserService_10e55b8 Manual Unknown Användartjänst för Spel-DVR och sändning_10e55b8
new: BluetoothUserService_10e55b8 Manual Unknown Bluetooth User Support Service_10e55b8
new: CaptureService_10e55b8 Manual Unknown CaptureService_10e55b8
new: cbdhsvc_10e55b8 Manual Unknown Clipboard User Service_10e55b8
new: CDPUserSvc_10e55b8 Auto Unknown Connected Devices Platform User Service_10e55b8
new: ConsentUxUserSvc_10e55b8 Manual Unknown ConsentUX_10e55b8
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_10e55b8
new: DeviceAssociationBrokerSvc_10e Manual Unknown DeviceAssociationBroker_10e55b8
new: DevicePickerUserSvc_10e55b8 Manual Unknown DevicePicker_10e55b8
new: DevicesFlowUserSvc_10e55b8 Manual Unknown DevicesFlow_10e55b8
new: MessagingService_10e55b8 Manual Unknown MessagingService_10e55b8
new: OneSyncSvc_10e55b8 Auto Unknown Synkroniseringsvärd_10e55b8
new: PimIndexMaintenanceSvc_10e55b8 Manual Unknown Contact Data_10e55b8
new: PrintWorkflowUserSvc_10e55b8 Manual Unknown PrintWorkflow_10e55b8
new: UdkUserSvc_10e55b8 Manual Unknown Udk-användartjänst_10e55b8
new: UnistoreSvc_10e55b8 Manual Unknown User Data Storage_10e55b8
new: UserDataSvc_10e55b8 Manual Unknown User Data Access_10e55b8
new: WpnUserService_10e55b8 Auto Unknown Windows Push Notifications User Service_10e55b8
system - services - AarSvc_10e55b8
new: DisplayName : Agent Activation Runtime_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_10e55b8
new: DisplayName : Användartjänst för Spel-DVR och sändning_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_10e55b8
new: DisplayName : Bluetooth User Support Service_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_10e55b8
new: DisplayName : CaptureService_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_10e55b8
new: DisplayName : Clipboard User Service_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_10e55b8
new: DisplayName : Connected Devices Platform User Service_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_10e55b8
new: DisplayName : ConsentUX_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_10e55b8
new: DisplayName : CredentialEnrollmentManagerUserSvc_10e55b8
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_10e55b8
new: DisplayName : DeviceAssociationBroker_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_10e55b8
new: DisplayName : DevicePicker_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_10e55b8
new: DisplayName : DevicesFlow_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_10e55b8
new: DisplayName : MessagingService_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_10e55b8
new: DisplayName : Synkroniseringsvärd_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_10e55b8
new: DisplayName : Contact Data_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_10e55b8
new: DisplayName : PrintWorkflow_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_10e55b8
new: DisplayName : Udk-användartjänst_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_10e55b8
new: DisplayName : User Data Storage_10e55b8
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_10e55b8
new: DisplayName : User Data Access_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe"
system - services - WpnUserService_10e55b8
new: DisplayName : Windows Push Notifications User Service_10e55b8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2023-10-04 14.16.54
remark :
runtime : 40
count : 26
previous date : 2023-10-03
previous time : 21.12.47
software - product - Update for Windows 10 for x64-based Systems (KB5001716)
new: Version : 8.93.0.0
new: Publisher : Microsoft Corporation
new: URLinfo : http://support.microsoft.com/kb/5001716
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
system - hotfix - KB5029919
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5030649
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler
new: Logon Mode : Interactive/Background
new: Task To Run : "%ProgramFiles%\RUXIM\PLUGscheduler.exe"
new: Start In : %ProgramFiles%\RUXIM
new: Comment : Performs periodic Windows Update maintenance tasks.
new: Idle Time : Disabled
new: Power Management : No Start On Batteries
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 04:00:00
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
Top Runs Differences at: 2023-10-03 21.12.47
remark :
runtime : 29
count : 28
previous date : 2023-10-03
previous time : 17.55.29
software - product - Google Chrome
old: Version : 117.0.5938.132
new: Version : 117.0.5938.134
system - hotfix - KB5030211
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5030300
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5030506
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\117.0.5938.132\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\117.0.5938.134\elevation_service.exe"
system - scheduled tasks - \Agent Activation Runtime\S-1-5-21-67378208-2373681959-2840377077-1107
old: Run As User : S-1-5-21-67378208-2373681959-2840377077-1107
new: Run As User : trains
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
users - local groups - Administratörer
new: Member : amandabackup
new: Member : carina
new: Member : Domain Admins
new: Member : trains
users - local groups - Ansvariga för säkerhetskopiering
new: Member : amandabackup
users - local groups - Användare
new: Member : amandabackup
new: Member : Domain Users
users - local groups - Device Administrators
new: Member : Domain Admins
new: Member : trains
Top Runs Differences at: 2023-10-03 17.55.29
remark :
runtime : 22
count : 16
previous date : 2023-10-02
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Google Chrome
old: Version : 117.0.5938.92
new: Version : 117.0.5938.132
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\117.0.5938.92\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\117.0.5938.132\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-10-02 17.55.30
remark :
runtime : 18
count : 18
previous date : 2023-10-01
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Microsoft Edge
old: Version : 117.0.2045.43
new: Version : 117.0.2045.47
software - product - Microsoft Edge WebView2 Runtime
old: Version : 117.0.2045.43
new: Version : 117.0.2045.47
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.43\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.47\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-10-01 17.55.29
remark :
runtime : 24
count : 5
previous date : 2023-09-30
previous time : 17.55.29
system - scheduled tasks - \OneDrive Reporting Task-S-1-5-21-67378208-2373681959-2840377077-1108
old: Run As User : S-1-5-21-67378208-2373681959-2840377077-1108
new: Run As User : leif
system - scheduled tasks - \OneDrive Standalone Update Task-S-1-5-21-67378208-2373681959-2840377077-1108
old: Run As User : S-1-5-21-67378208-2373681959-2840377077-1108
new: Run As User : leif
users - local groups - Användare av fjärrskrivbord
new: Member : leif
Top Runs Differences at: 2023-09-30 17.55.29
remark :
runtime : 19
count : 12
previous date : 2023-09-29
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-09-29 17.55.30
remark :
runtime : 20
count : 12
previous date : 2023-09-28
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-09-28 17.55.29
remark :
runtime : 19
count : 23
previous date : 2023-09-27
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Microsoft Edge WebView2 Runtime
old: Version : 117.0.2045.36
new: Version : 117.0.2045.43
system - scheduled tasks - \Agent Activation Runtime\S-1-5-21-67378208-2373681959-2840377077-1107
old: Run As User : trains
new: Run As User : S-1-5-21-67378208-2373681959-2840377077-1107
system - scheduled tasks - \OneDrive Reporting Task-S-1-5-21-67378208-2373681959-2840377077-1108
old: Run As User : leif
new: Run As User : S-1-5-21-67378208-2373681959-2840377077-1108
system - scheduled tasks - \OneDrive Standalone Update Task-S-1-5-21-67378208-2373681959-2840377077-1108
old: Run As User : leif
new: Run As User : S-1-5-21-67378208-2373681959-2840377077-1108
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
users - local groups - Administratörer
old: Member : trains
users - local groups - Användare av fjärrskrivbord
old: Member : leif
users - local groups - Device Administrators
old: Member : trains
Top Runs Differences at: 2023-09-27 17.55.30
remark :
runtime : 20
count : 23
previous date : 2023-09-26
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Microsoft Edge
old: Version : 117.0.2045.41
new: Version : 117.0.2045.43
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.41\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.43\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
users - local groups - Administratörer
old: Member : amandabackup
old: Member : carina
old: Member : Domain Admins
users - local groups - Ansvariga för säkerhetskopiering
old: Member : amandabackup
users - local groups - Användare
old: Member : amandabackup
old: Member : Domain Users
users - local groups - Device Administrators
old: Member : Domain Admins
Top Runs Differences at: 2023-09-26 17.55.29
remark :
runtime : 20
count : 12
previous date : 2023-09-25
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-09-25 17.55.30
remark :
runtime : 21
count : 16
previous date : 2023-09-24
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Microsoft Edge
old: Version : 117.0.2045.36
new: Version : 117.0.2045.41
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.36\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.41\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-09-24 17.55.29
remark :
runtime : 20
count : 12
previous date : 2023-09-23
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-09-23 17.55.30
remark :
runtime : 20
count : 12
previous date : 2023-09-22
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-09-22 17.55.29
remark :
runtime : 21
count : 20
previous date : 2023-09-21
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe --startup_mode
software - product - Google Chrome
old: Version : 116.0.5845.190
new: Version : 117.0.5938.92
software - product - Google Drive
old: Version : 80.0.1.0
new: Version : 81.0.5.0
old: Install Location : C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe
software - product - Microsoft Edge WebView2 Runtime
old: Version : 117.0.2045.31
new: Version : 117.0.2045.36
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.190\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\117.0.5938.92\elevation_service.exe"
Top Runs Differences at: 2023-09-21 17.55.29
remark :
runtime : 21
count : 4
previous date : 2023-09-20
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 117.0.2045.31
new: Version : 117.0.2045.36
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.31\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.36\elevation_service.exe"
Top Runs Differences at: 2023-09-18 17.55.29
remark :
runtime : 20
count : 14
previous date : 2023-09-17
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Microsoft Edge WebView2 Runtime
old: Version : 116.0.1938.81
new: Version : 117.0.2045.31
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-09-17 17.55.30
remark :
runtime : 19
count : 16
previous date : 2023-09-16
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Microsoft Edge
old: Version : 116.0.1938.81
new: Version : 117.0.2045.31
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\116.0.1938.81\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.31\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-09-16 17.55.29
remark :
runtime : 19
count : 4
previous date : 2023-09-15
previous time : 17.55.29
software - product - Google Chrome
old: Version : 116.0.5845.189
new: Version : 116.0.5845.190
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.189\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.190\elevation_service.exe"
Top Runs Differences at: 2023-09-15 17.55.29
remark :
runtime : 21
count : 18
previous date : 2023-09-14
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Microsoft Edge
old: Version : 116.0.1938.76
new: Version : 116.0.1938.81
software - product - Microsoft Edge WebView2 Runtime
old: Version : 116.0.1938.76
new: Version : 116.0.1938.81
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\116.0.1938.76\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\116.0.1938.81\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-09-14 17.55.30
remark :
runtime : 20
count : 12
previous date : 2023-09-13
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-09-13 17.55.29
remark :
runtime : 19
count : 4
previous date : 2023-09-12
previous time : 21.26.28
software - product - Google Chrome
old: Version : 116.0.5845.188
new: Version : 116.0.5845.189
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.188\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.189\elevation_service.exe"
Top Runs Differences at: 2023-09-12 21.26.28
remark :
runtime : 75
count : 182
previous date : 2023-09-12
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 116.0.5845.182
new: Version : 116.0.5845.188
system - hotfix - KB5028946
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5029331
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5029919
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5030211
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_5f43e72 Manual Unknown Agent Activation Runtime_5f43e72
old: BcastDVRUserService_5f43e72 Manual Unknown Användartjänst för Spel-DVR och sändning_5f43e72
old: BluetoothUserService_5f43e72 Manual Unknown Bluetooth User Support Service_5f43e72
old: CaptureService_5f43e72 Manual Unknown CaptureService_5f43e72
old: cbdhsvc_5f43e72 Manual Unknown Clipboard User Service_5f43e72
old: CDPUserSvc_5f43e72 Auto Unknown Connected Devices Platform User Service_5f43e72
old: ConsentUxUserSvc_5f43e72 Manual Unknown ConsentUX_5f43e72
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_5f43e72
old: DeviceAssociationBrokerSvc_5f4 Manual Unknown DeviceAssociationBroker_5f43e72
old: DevicePickerUserSvc_5f43e72 Manual Unknown DevicePicker_5f43e72
old: DevicesFlowUserSvc_5f43e72 Manual Unknown DevicesFlow_5f43e72
old: MessagingService_5f43e72 Manual Unknown MessagingService_5f43e72
old: OneSyncSvc_5f43e72 Auto Unknown Synkroniseringsvärd_5f43e72
old: PimIndexMaintenanceSvc_5f43e72 Manual Unknown Contact Data_5f43e72
old: PrintWorkflowUserSvc_5f43e72 Manual Unknown PrintWorkflow_5f43e72
old: UdkUserSvc_5f43e72 Manual Unknown Udk-användartjänst_5f43e72
old: UnistoreSvc_5f43e72 Manual Unknown User Data Storage_5f43e72
old: UserDataSvc_5f43e72 Manual Unknown User Data Access_5f43e72
old: WpnUserService_5f43e72 Auto Unknown Windows Push Notifications User Service_5f43e72
system - services - AarSvc_5f43e72
old: DisplayName : Agent Activation Runtime_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_5f43e72
old: DisplayName : Användartjänst för Spel-DVR och sändning_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_5f43e72
old: DisplayName : Bluetooth User Support Service_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_5f43e72
old: DisplayName : CaptureService_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_5f43e72
old: DisplayName : Clipboard User Service_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_5f43e72
old: DisplayName : Connected Devices Platform User Service_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_5f43e72
old: DisplayName : ConsentUX_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_5f43e72
old: DisplayName : CredentialEnrollmentManagerUserSvc_5f43e72
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_5f43e72
old: DisplayName : DeviceAssociationBroker_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_5f43e72
old: DisplayName : DevicePicker_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_5f43e72
old: DisplayName : DevicesFlow_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.182\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.188\elevation_service.exe"
system - services - MessagingService_5f43e72
old: DisplayName : MessagingService_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_5f43e72
old: DisplayName : Synkroniseringsvärd_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_5f43e72
old: DisplayName : Contact Data_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_5f43e72
old: DisplayName : PrintWorkflow_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_5f43e72
old: DisplayName : Udk-användartjänst_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_5f43e72
old: DisplayName : User Data Storage_5f43e72
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_5f43e72
old: DisplayName : User Data Access_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_5f43e72
old: DisplayName : Windows Push Notifications User Service_5f43e72
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC EngagedRebootReminder
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery EngagedRebootReminder
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2023-09-12 17.55.29
remark :
runtime : 20
count : 4
previous date : 2023-09-11
previous time : 17.55.29
software - product - Google Chrome
old: Version : 116.0.5845.180
new: Version : 116.0.5845.182
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.180\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.182\elevation_service.exe"
Top Runs Differences at: 2023-09-10 17.55.29
remark :
runtime : 21
count : 2
previous date : 2023-09-09
previous time : 17.55.30
software - product - Microsoft Edge WebView2 Runtime
old: Version : 116.0.1938.69
new: Version : 116.0.1938.76
Top Runs Differences at: 2023-09-09 17.55.30
remark :
runtime : 21
count : 4
previous date : 2023-09-08
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 116.0.1938.69
new: Version : 116.0.1938.76
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\116.0.1938.69\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\116.0.1938.76\elevation_service.exe"
Top Runs Differences at: 2023-09-08 17.55.29
remark :
runtime : 21
count : 4
previous date : 2023-09-07
previous time : 17.55.29
software - product - Google Chrome
old: Version : 116.0.5845.179
new: Version : 116.0.5845.180
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.179\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.180\elevation_service.exe"
Top Runs Differences at: 2023-09-06 17.55.29
remark :
runtime : 22
count : 4
previous date : 2023-09-05
previous time : 17.55.29
software - product - Google Chrome
old: Version : 116.0.5845.141
new: Version : 116.0.5845.179
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.141\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.179\elevation_service.exe"
Top Runs Differences at: 2023-09-05 17.55.29
remark :
runtime : 22
count : 16
previous date : 2023-09-04
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 79.0.2.0
new: Version : 80.0.1.0
old: Install Location : C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\80.0.1.0\GoogleDriveFS.exe
Top Runs Differences at: 2023-09-04 17.55.29
remark :
runtime : 22
count : 160
previous date : 2023-09-03
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_5f43e72 Manual Unknown Agent Activation Runtime_5f43e72
new: BcastDVRUserService_5f43e72 Manual Unknown Användartjänst för Spel-DVR och sändning_5f43e72
new: BluetoothUserService_5f43e72 Manual Unknown Bluetooth User Support Service_5f43e72
new: CaptureService_5f43e72 Manual Unknown CaptureService_5f43e72
new: cbdhsvc_5f43e72 Manual Unknown Clipboard User Service_5f43e72
new: CDPUserSvc_5f43e72 Auto Unknown Connected Devices Platform User Service_5f43e72
new: ConsentUxUserSvc_5f43e72 Manual Unknown ConsentUX_5f43e72
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_5f43e72
new: DeviceAssociationBrokerSvc_5f4 Manual Unknown DeviceAssociationBroker_5f43e72
new: DevicePickerUserSvc_5f43e72 Manual Unknown DevicePicker_5f43e72
new: DevicesFlowUserSvc_5f43e72 Manual Unknown DevicesFlow_5f43e72
new: MessagingService_5f43e72 Manual Unknown MessagingService_5f43e72
new: OneSyncSvc_5f43e72 Auto Unknown Synkroniseringsvärd_5f43e72
new: PimIndexMaintenanceSvc_5f43e72 Manual Unknown Contact Data_5f43e72
new: PrintWorkflowUserSvc_5f43e72 Manual Unknown PrintWorkflow_5f43e72
new: UdkUserSvc_5f43e72 Manual Unknown Udk-användartjänst_5f43e72
new: UnistoreSvc_5f43e72 Manual Unknown User Data Storage_5f43e72
new: UserDataSvc_5f43e72 Manual Unknown User Data Access_5f43e72
new: WpnUserService_5f43e72 Auto Unknown Windows Push Notifications User Service_5f43e72
system - services - AarSvc_5f43e72
new: DisplayName : Agent Activation Runtime_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_5f43e72
new: DisplayName : Användartjänst för Spel-DVR och sändning_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_5f43e72
new: DisplayName : Bluetooth User Support Service_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_5f43e72
new: DisplayName : CaptureService_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_5f43e72
new: DisplayName : Clipboard User Service_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_5f43e72
new: DisplayName : Connected Devices Platform User Service_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_5f43e72
new: DisplayName : ConsentUX_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_5f43e72
new: DisplayName : CredentialEnrollmentManagerUserSvc_5f43e72
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_5f43e72
new: DisplayName : DeviceAssociationBroker_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_5f43e72
new: DisplayName : DevicePicker_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_5f43e72
new: DisplayName : DevicesFlow_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_5f43e72
new: DisplayName : MessagingService_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_5f43e72
new: DisplayName : Synkroniseringsvärd_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_5f43e72
new: DisplayName : Contact Data_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_5f43e72
new: DisplayName : PrintWorkflow_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_5f43e72
new: DisplayName : Udk-användartjänst_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_5f43e72
new: DisplayName : User Data Storage_5f43e72
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_5f43e72
new: DisplayName : User Data Access_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_5f43e72
new: DisplayName : Windows Push Notifications User Service_5f43e72
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2023-09-03 17.55.29
remark :
runtime : 23
count : 3
previous date : 2023-09-02
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 116.0.1938.62
new: Version : 116.0.1938.69
new: NoRemove : 0x00000001
Top Runs Differences at: 2023-09-02 17.55.29
remark :
runtime : 22
count : 16
previous date : 2023-09-01
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Microsoft Edge
old: Version : 116.0.1938.62
new: Version : 116.0.1938.69
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\116.0.1938.62\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\116.0.1938.69\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-09-01 17.55.30
remark :
runtime : 22
count : 16
previous date : 2023-08-31
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Google Chrome
old: Version : 116.0.5845.140
new: Version : 116.0.5845.141
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.140\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.141\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-08-31 17.55.29
remark :
runtime : 24
count : 4
previous date : 2023-08-30
previous time : 19.37.01
software - product - Google Chrome
old: Version : 116.0.5845.111
new: Version : 116.0.5845.140
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.111\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.140\elevation_service.exe"
Top Runs Differences at: 2023-08-30 19.37.01
remark :
runtime : 45
count : 340
previous date : 2023-08-30
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5029244
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5029331
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5029709
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_206f59e Manual Unknown Agent Activation Runtime_206f59e
old: AarSvc_26b9b05d Manual Unknown Agent Activation Runtime_26b9b05d
old: BcastDVRUserService_206f59e Manual Unknown Användartjänst för Spel-DVR och sändning_206f59e
old: BcastDVRUserService_26b9b05d Manual Unknown Användartjänst för Spel-DVR och sändning_26b9b05d
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_206f59e Manual Unknown Bluetooth User Support Service_206f59e
old: BluetoothUserService_26b9b05d Manual Unknown Bluetooth User Support Service_26b9b05d
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_206f59e Manual Unknown CaptureService_206f59e
old: CaptureService_26b9b05d Manual Unknown CaptureService_26b9b05d
old: cbdhsvc_206f59e Manual Unknown Clipboard User Service_206f59e
old: cbdhsvc_26b9b05d Manual Unknown Clipboard User Service_26b9b05d
old: CDPUserSvc_206f59e Auto Unknown Connected Devices Platform User Service_206f59e
old: CDPUserSvc_26b9b05d Auto Unknown Connected Devices Platform User Service_26b9b05d
old: ConsentUxUserSvc_206f59e Manual Unknown ConsentUX_206f59e
old: ConsentUxUserSvc_26b9b05d Manual Unknown ConsentUX_26b9b05d
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_206f59e
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_26b9b05d
old: DeviceAssociationBrokerSvc_206 Manual Unknown DeviceAssociationBroker_206f59e
old: DeviceAssociationBrokerSvc_26b Manual Unknown DeviceAssociationBroker_26b9b05d
old: DevicePickerUserSvc_206f59e Manual Unknown DevicePicker_206f59e
old: DevicePickerUserSvc_26b9b05d Manual Unknown DevicePicker_26b9b05d
old: DevicesFlowUserSvc_206f59e Manual Unknown DevicesFlow_206f59e
old: DevicesFlowUserSvc_26b9b05d Manual Unknown DevicesFlow_26b9b05d
old: MessagingService_206f59e Manual Unknown MessagingService_206f59e
old: MessagingService_26b9b05d Manual Unknown MessagingService_26b9b05d
old: OneSyncSvc_206f59e Auto Unknown Synkroniseringsvärd_206f59e
old: OneSyncSvc_26b9b05d Auto Unknown Synkroniseringsvärd_26b9b05d
old: PimIndexMaintenanceSvc_206f59e Manual Unknown Contact Data_206f59e
old: PimIndexMaintenanceSvc_26b9b05 Manual Unknown Contact Data_26b9b05d
old: PrintWorkflowUserSvc_206f59e Manual Unknown PrintWorkflow_206f59e
old: PrintWorkflowUserSvc_26b9b05d Manual Unknown PrintWorkflow_26b9b05d
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
old: UdkUserSvc_206f59e Manual Unknown Udk-användartjänst_206f59e
old: UdkUserSvc_26b9b05d Manual Unknown Udk-användartjänst_26b9b05d
old: UnistoreSvc_206f59e Manual Unknown User Data Storage_206f59e
old: UnistoreSvc_26b9b05d Manual Unknown User Data Storage_26b9b05d
old: UserDataSvc_206f59e Manual Unknown User Data Access_206f59e
old: UserDataSvc_26b9b05d Manual Unknown User Data Access_26b9b05d
old: WpnUserService_206f59e Auto Unknown Windows Push Notifications User Service_206f59e
old: WpnUserService_26b9b05d Auto Unknown Windows Push Notifications User Service_26b9b05d
system - services - AarSvc_206f59e
old: DisplayName : Agent Activation Runtime_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_26b9b05d
old: DisplayName : Agent Activation Runtime_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_206f59e
old: DisplayName : Användartjänst för Spel-DVR och sändning_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_26b9b05d
old: DisplayName : Användartjänst för Spel-DVR och sändning_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_206f59e
old: DisplayName : Bluetooth User Support Service_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_26b9b05d
old: DisplayName : Bluetooth User Support Service_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_206f59e
old: DisplayName : CaptureService_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_26b9b05d
old: DisplayName : CaptureService_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_206f59e
old: DisplayName : Clipboard User Service_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_26b9b05d
old: DisplayName : Clipboard User Service_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_206f59e
old: DisplayName : Connected Devices Platform User Service_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_26b9b05d
old: DisplayName : Connected Devices Platform User Service_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_206f59e
old: DisplayName : ConsentUX_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_26b9b05d
old: DisplayName : ConsentUX_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_206f59e
old: DisplayName : CredentialEnrollmentManagerUserSvc_206f59e
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_26b9b05d
old: DisplayName : CredentialEnrollmentManagerUserSvc_26b9b05d
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_206f59e
old: DisplayName : DeviceAssociationBroker_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_26b9b05d
old: DisplayName : DeviceAssociationBroker_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_206f59e
old: DisplayName : DevicePicker_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_26b9b05d
old: DisplayName : DevicePicker_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_206f59e
old: DisplayName : DevicesFlow_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_26b9b05d
old: DisplayName : DevicesFlow_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_206f59e
old: DisplayName : MessagingService_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_26b9b05d
old: DisplayName : MessagingService_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_206f59e
old: DisplayName : Synkroniseringsvärd_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_26b9b05d
old: DisplayName : Synkroniseringsvärd_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_206f59e
old: DisplayName : Contact Data_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_26b9b05d
old: DisplayName : Contact Data_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_206f59e
old: DisplayName : PrintWorkflow_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_26b9b05d
old: DisplayName : PrintWorkflow_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UdkUserSvc_206f59e
old: DisplayName : Udk-användartjänst_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_26b9b05d
old: DisplayName : Udk-användartjänst_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_206f59e
old: DisplayName : User Data Storage_206f59e
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_26b9b05d
old: DisplayName : User Data Storage_26b9b05d
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_206f59e
old: DisplayName : User Data Access_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_26b9b05d
old: DisplayName : User Data Access_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe"
system - services - WpnUserService_206f59e
old: DisplayName : Windows Push Notifications User Service_206f59e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_26b9b05d
old: DisplayName : Windows Push Notifications User Service_26b9b05d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\AppListBackup\BackupNonMaintenance
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : $(@%SystemRoot%\system32\AppListBackupLauncher.dll,-602)
new: Idle Time : Disabled
new: Power Management :
new: Run As User : Anv„ndare
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 3 day(s)
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC EngagedRebootReminder
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery EngagedRebootReminder
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2023-08-30 17.55.30
remark :
runtime : 41
count : 155
previous date : 2023-08-29
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Microsoft Update Health Tools
old: Version : 3.72.0.0
new: Version : 3.73.0.0
system - services - survey
new: AarSvc_26b9b05d Manual Unknown Agent Activation Runtime_26b9b05d
new: BcastDVRUserService_26b9b05d Manual Unknown Användartjänst för Spel-DVR och sändning_26b9b05d
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_26b9b05d Manual Unknown Bluetooth User Support Service_26b9b05d
new: CaptureService_26b9b05d Manual Unknown CaptureService_26b9b05d
new: cbdhsvc_26b9b05d Manual Unknown Clipboard User Service_26b9b05d
new: CDPUserSvc_26b9b05d Auto Unknown Connected Devices Platform User Service_26b9b05d
new: ConsentUxUserSvc_26b9b05d Manual Unknown ConsentUX_26b9b05d
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_26b9b05d
new: DeviceAssociationBrokerSvc_26b Manual Unknown DeviceAssociationBroker_26b9b05d
new: DevicePickerUserSvc_26b9b05d Manual Unknown DevicePicker_26b9b05d
new: DevicesFlowUserSvc_26b9b05d Manual Unknown DevicesFlow_26b9b05d
new: MessagingService_26b9b05d Manual Unknown MessagingService_26b9b05d
new: OneSyncSvc_26b9b05d Auto Unknown Synkroniseringsvärd_26b9b05d
new: PimIndexMaintenanceSvc_26b9b05 Manual Unknown Contact Data_26b9b05d
new: PrintWorkflowUserSvc_26b9b05d Manual Unknown PrintWorkflow_26b9b05d
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
new: UdkUserSvc_26b9b05d Manual Unknown Udk-användartjänst_26b9b05d
new: UnistoreSvc_26b9b05d Manual Unknown User Data Storage_26b9b05d
new: UserDataSvc_26b9b05d Manual Unknown User Data Access_26b9b05d
new: WpnUserService_26b9b05d Auto Unknown Windows Push Notifications User Service_26b9b05d
system - services - AarSvc_26b9b05d
new: DisplayName : Agent Activation Runtime_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_26b9b05d
new: DisplayName : Användartjänst för Spel-DVR och sändning_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_26b9b05d
new: DisplayName : Bluetooth User Support Service_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_26b9b05d
new: DisplayName : CaptureService_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_26b9b05d
new: DisplayName : Clipboard User Service_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_26b9b05d
new: DisplayName : Connected Devices Platform User Service_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_26b9b05d
new: DisplayName : ConsentUX_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_26b9b05d
new: DisplayName : CredentialEnrollmentManagerUserSvc_26b9b05d
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_26b9b05d
new: DisplayName : DeviceAssociationBroker_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_26b9b05d
new: DisplayName : DevicePicker_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_26b9b05d
new: DisplayName : DevicesFlow_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_26b9b05d
new: DisplayName : MessagingService_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_26b9b05d
new: DisplayName : Synkroniseringsvärd_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_26b9b05d
new: DisplayName : Contact Data_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_26b9b05d
new: DisplayName : PrintWorkflow_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UdkUserSvc_26b9b05d
new: DisplayName : Udk-användartjänst_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_26b9b05d
new: DisplayName : User Data Storage_26b9b05d
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_26b9b05d
new: DisplayName : User Data Access_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_26b9b05d
new: DisplayName : Windows Push Notifications User Service_26b9b05d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-08-29 17.55.30
remark :
runtime : 21
count : 12
previous date : 2023-08-28
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-08-28 17.55.30
remark :
runtime : 21
count : 2
previous date : 2023-08-27
previous time : 17.55.30
software - product - Microsoft Edge WebView2 Runtime
old: Version : 115.0.1901.203
new: Version : 116.0.1938.62
Top Runs Differences at: 2023-08-27 17.55.30
remark :
runtime : 23
count : 4
previous date : 2023-08-26
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 116.0.1938.54
new: Version : 116.0.1938.62
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\116.0.1938.54\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\116.0.1938.62\elevation_service.exe"
Top Runs Differences at: 2023-08-25 17.55.30
remark :
runtime : 22
count : 4
previous date : 2023-08-24
previous time : 17.55.30
software - product - Google Chrome
old: Version : 116.0.5845.110
new: Version : 116.0.5845.111
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.110\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.111\elevation_service.exe"
Top Runs Differences at: 2023-08-24 17.55.30
remark :
runtime : 21
count : 16
previous date : 2023-08-23
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Microsoft Edge
old: Version : 115.0.1901.203
new: Version : 116.0.1938.54
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\115.0.1901.203\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\116.0.1938.54\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-08-23 17.55.30
remark :
runtime : 22
count : 16
previous date : 2023-08-22
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Google Chrome
old: Version : 116.0.5845.97
new: Version : 116.0.5845.110
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.97\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.110\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-08-22 17.55.30
remark :
runtime : 21
count : 4
previous date : 2023-08-21
previous time : 17.55.30
software - product - Google Chrome
old: Version : 115.0.5790.173
new: Version : 116.0.5845.97
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\115.0.5790.173\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\116.0.5845.97\elevation_service.exe"
Top Runs Differences at: 2023-08-16 17.55.30
remark :
runtime : 20
count : 4
previous date : 2023-08-15
previous time : 17.55.30
software - product - Google Chrome
old: Version : 115.0.5790.171
new: Version : 115.0.5790.173
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\115.0.5790.171\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\115.0.5790.173\elevation_service.exe"
Top Runs Differences at: 2023-08-13 17.55.30
remark :
runtime : 20
count : 2
previous date : 2023-08-12
previous time : 17.55.30
software - product - Microsoft Edge WebView2 Runtime
old: Version : 115.0.1901.200
new: Version : 115.0.1901.203
Top Runs Differences at: 2023-08-12 17.55.30
remark :
runtime : 20
count : 4
previous date : 2023-08-11
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 115.0.1901.200
new: Version : 115.0.1901.203
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\115.0.1901.200\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\115.0.1901.203\elevation_service.exe"
Top Runs Differences at: 2023-08-10 17.55.30
remark :
runtime : 19
count : 174
previous date : 2023-08-09
previous time : 17.55.30
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge WebView2 Runtime
old: Version : 115.0.1901.188
new: Version : 115.0.1901.200
system - services - survey
new: AarSvc_206f59e Manual Unknown Agent Activation Runtime_206f59e
new: BcastDVRUserService_206f59e Manual Unknown Användartjänst för Spel-DVR och sändning_206f59e
new: BluetoothUserService_206f59e Manual Unknown Bluetooth User Support Service_206f59e
new: CaptureService_206f59e Manual Unknown CaptureService_206f59e
new: cbdhsvc_206f59e Manual Unknown Clipboard User Service_206f59e
new: CDPUserSvc_206f59e Auto Unknown Connected Devices Platform User Service_206f59e
new: ConsentUxUserSvc_206f59e Manual Unknown ConsentUX_206f59e
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_206f59e
new: DeviceAssociationBrokerSvc_206 Manual Unknown DeviceAssociationBroker_206f59e
new: DevicePickerUserSvc_206f59e Manual Unknown DevicePicker_206f59e
new: DevicesFlowUserSvc_206f59e Manual Unknown DevicesFlow_206f59e
new: MessagingService_206f59e Manual Unknown MessagingService_206f59e
new: OneSyncSvc_206f59e Auto Unknown Synkroniseringsvärd_206f59e
new: PimIndexMaintenanceSvc_206f59e Manual Unknown Contact Data_206f59e
new: PrintWorkflowUserSvc_206f59e Manual Unknown PrintWorkflow_206f59e
new: UdkUserSvc_206f59e Manual Unknown Udk-användartjänst_206f59e
new: UnistoreSvc_206f59e Manual Unknown User Data Storage_206f59e
new: UserDataSvc_206f59e Manual Unknown User Data Access_206f59e
new: WpnUserService_206f59e Auto Unknown Windows Push Notifications User Service_206f59e
system - services - AarSvc_206f59e
new: DisplayName : Agent Activation Runtime_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_206f59e
new: DisplayName : Användartjänst för Spel-DVR och sändning_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_206f59e
new: DisplayName : Bluetooth User Support Service_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_206f59e
new: DisplayName : CaptureService_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_206f59e
new: DisplayName : Clipboard User Service_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_206f59e
new: DisplayName : Connected Devices Platform User Service_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_206f59e
new: DisplayName : ConsentUX_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_206f59e
new: DisplayName : CredentialEnrollmentManagerUserSvc_206f59e
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_206f59e
new: DisplayName : DeviceAssociationBroker_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_206f59e
new: DisplayName : DevicePicker_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_206f59e
new: DisplayName : DevicesFlow_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_206f59e
new: DisplayName : MessagingService_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_206f59e
new: DisplayName : Synkroniseringsvärd_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_206f59e
new: DisplayName : Contact Data_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_206f59e
new: DisplayName : PrintWorkflow_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_206f59e
new: DisplayName : Udk-användartjänst_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_206f59e
new: DisplayName : User Data Storage_206f59e
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_206f59e
new: DisplayName : User Data Access_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MsMpEng.exe"
system - services - WpnUserService_206f59e
new: DisplayName : Windows Push Notifications User Service_206f59e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2023-08-09 17.55.30
remark :
runtime : 20
count : 18
previous date : 2023-08-08
previous time : 21.11.48
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 78.0.1.0
new: Version : 79.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe
software - product - Microsoft Edge
old: Version : 115.0.1901.188
new: Version : 115.0.1901.200
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\115.0.1901.188\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\115.0.1901.200\elevation_service.exe"
Top Runs Differences at: 2023-08-08 21.11.48
remark :
runtime : 37
count : 16
previous date : 2023-08-08
previous time : 17.55.29
system - hotfix - KB5028015
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5028244
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5028946
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5029244
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2023-08-08 00.44.52
remark :
runtime : 34
count : 22
previous date : 2023-08-07
previous time : 17.55.29
software - product - Google Chrome
old: Version : 115.0.5790.111
new: Version : 115.0.5790.171
system - hotfix - KB5028015
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5028849
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\115.0.5790.111\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\115.0.5790.171\elevation_service.exe"
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2023-08-04 17.55.29
remark :
runtime : 22
count : 4
previous date : 2023-08-03
previous time : 17.55.29
software - product - Google Chrome
old: Version : 115.0.5790.110
new: Version : 115.0.5790.111
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\115.0.5790.110\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\115.0.5790.111\elevation_service.exe"
Top Runs Differences at: 2023-08-01 23.47.42
remark :
runtime : 35
count : 197
previous date : 2023-08-01
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5028166
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5028244
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5028380
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_191faa1c Manual Unknown Agent Activation Runtime_191faa1c
old: BcastDVRUserService_191faa1c Manual Unknown Användartjänst för Spel-DVR och sändning_191faa1c
old: BluetoothUserService_191faa1c Manual Unknown Bluetooth User Support Service_191faa1c
old: CaptureService_191faa1c Manual Unknown CaptureService_191faa1c
old: cbdhsvc_191faa1c Manual Unknown Clipboard User Service_191faa1c
old: CDPUserSvc_191faa1c Auto Unknown Connected Devices Platform User Service_191faa1c
old: ConsentUxUserSvc_191faa1c Manual Unknown ConsentUX_191faa1c
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_191faa1c
old: DeviceAssociationBrokerSvc_191 Manual Unknown DeviceAssociationBroker_191faa1c
old: DevicePickerUserSvc_191faa1c Manual Unknown DevicePicker_191faa1c
old: DevicesFlowUserSvc_191faa1c Manual Unknown DevicesFlow_191faa1c
old: MessagingService_191faa1c Manual Unknown MessagingService_191faa1c
old: OneSyncSvc_191faa1c Auto Unknown Synkroniseringsvärd_191faa1c
old: PimIndexMaintenanceSvc_191faa1 Manual Unknown Contact Data_191faa1c
old: PrintWorkflowUserSvc_191faa1c Manual Unknown PrintWorkflow_191faa1c
old: UdkUserSvc_191faa1c Manual Unknown Udk-användartjänst_191faa1c
old: UnistoreSvc_191faa1c Manual Unknown User Data Storage_191faa1c
old: UserDataSvc_191faa1c Manual Unknown User Data Access_191faa1c
old: WpnUserService_191faa1c Auto Unknown Windows Push Notifications User Service_191faa1c
system - services - AarSvc_191faa1c
old: DisplayName : Agent Activation Runtime_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_191faa1c
old: DisplayName : Användartjänst för Spel-DVR och sändning_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_191faa1c
old: DisplayName : Bluetooth User Support Service_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_191faa1c
old: DisplayName : CaptureService_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_191faa1c
old: DisplayName : Clipboard User Service_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_191faa1c
old: DisplayName : Connected Devices Platform User Service_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_191faa1c
old: DisplayName : ConsentUX_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_191faa1c
old: DisplayName : CredentialEnrollmentManagerUserSvc_191faa1c
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_191faa1c
old: DisplayName : DeviceAssociationBroker_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_191faa1c
old: DisplayName : DevicePicker_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_191faa1c
old: DisplayName : DevicesFlow_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_191faa1c
old: DisplayName : MessagingService_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_191faa1c
old: DisplayName : Synkroniseringsvärd_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_191faa1c
old: DisplayName : Contact Data_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_191faa1c
old: DisplayName : PrintWorkflow_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_191faa1c
old: DisplayName : Udk-användartjänst_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_191faa1c
old: DisplayName : User Data Storage_191faa1c
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_191faa1c
old: DisplayName : User Data Access_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_191faa1c
old: DisplayName : Windows Push Notifications User Service_191faa1c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\Application Experience\MareBackup
new: Logon Mode : Interactive/Background
new: Task To Run : Multiple actions
new: Start In : Multiple actions
new: Comment : Collects program telemetry information if opted-in to the Microsoft Customer Experience Improvement Program
new: Idle Time : Disabled
new: Power Management : Stop On Battery Mode, No Start On Batteries
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC ReadyToReboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery ReadyToReboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2023-08-01 17.55.29
remark :
runtime : 23
count : 148
previous date : 2023-07-31
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_191faa1c Manual Unknown Agent Activation Runtime_191faa1c
new: BcastDVRUserService_191faa1c Manual Unknown Användartjänst för Spel-DVR och sändning_191faa1c
new: BluetoothUserService_191faa1c Manual Unknown Bluetooth User Support Service_191faa1c
new: CaptureService_191faa1c Manual Unknown CaptureService_191faa1c
new: cbdhsvc_191faa1c Manual Unknown Clipboard User Service_191faa1c
new: CDPUserSvc_191faa1c Auto Unknown Connected Devices Platform User Service_191faa1c
new: ConsentUxUserSvc_191faa1c Manual Unknown ConsentUX_191faa1c
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_191faa1c
new: DeviceAssociationBrokerSvc_191 Manual Unknown DeviceAssociationBroker_191faa1c
new: DevicePickerUserSvc_191faa1c Manual Unknown DevicePicker_191faa1c
new: DevicesFlowUserSvc_191faa1c Manual Unknown DevicesFlow_191faa1c
new: MessagingService_191faa1c Manual Unknown MessagingService_191faa1c
new: OneSyncSvc_191faa1c Auto Unknown Synkroniseringsvärd_191faa1c
new: PimIndexMaintenanceSvc_191faa1 Manual Unknown Contact Data_191faa1c
new: PrintWorkflowUserSvc_191faa1c Manual Unknown PrintWorkflow_191faa1c
new: UdkUserSvc_191faa1c Manual Unknown Udk-användartjänst_191faa1c
new: UnistoreSvc_191faa1c Manual Unknown User Data Storage_191faa1c
new: UserDataSvc_191faa1c Manual Unknown User Data Access_191faa1c
new: WpnUserService_191faa1c Auto Unknown Windows Push Notifications User Service_191faa1c
system - services - AarSvc_191faa1c
new: DisplayName : Agent Activation Runtime_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_191faa1c
new: DisplayName : Användartjänst för Spel-DVR och sändning_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_191faa1c
new: DisplayName : Bluetooth User Support Service_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_191faa1c
new: DisplayName : CaptureService_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_191faa1c
new: DisplayName : Clipboard User Service_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_191faa1c
new: DisplayName : Connected Devices Platform User Service_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_191faa1c
new: DisplayName : ConsentUX_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_191faa1c
new: DisplayName : CredentialEnrollmentManagerUserSvc_191faa1c
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_191faa1c
new: DisplayName : DeviceAssociationBroker_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_191faa1c
new: DisplayName : DevicePicker_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_191faa1c
new: DisplayName : DevicesFlow_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_191faa1c
new: DisplayName : MessagingService_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_191faa1c
new: DisplayName : Synkroniseringsvärd_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_191faa1c
new: DisplayName : Contact Data_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_191faa1c
new: DisplayName : PrintWorkflow_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_191faa1c
new: DisplayName : Udk-användartjänst_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_191faa1c
new: DisplayName : User Data Storage_191faa1c
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_191faa1c
new: DisplayName : User Data Access_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_191faa1c
new: DisplayName : Windows Push Notifications User Service_191faa1c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2023-07-30 17.55.29
remark :
runtime : 22
count : 2
previous date : 2023-07-29
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 115.0.1901.183
new: Version : 115.0.1901.188
Top Runs Differences at: 2023-07-29 17.55.29
remark :
runtime : 22
count : 4
previous date : 2023-07-28
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 115.0.1901.183
new: Version : 115.0.1901.188
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\115.0.1901.183\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\115.0.1901.188\elevation_service.exe"
Top Runs Differences at: 2023-07-26 17.55.29
remark :
runtime : 21
count : 11
previous date : 2023-07-25
previous time : 17.55.29
software - product - Google Chrome
old: Version : 114.0.5735.248
new: Version : 115.0.5790.110
system - SystemDriver - MpKsle1c3e990
old: AcceptPause : 0
old: Description : MpKsle1c3e990
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A1910FE-A793-48DC-9463-1954266AC110}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.248\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\115.0.5790.110\elevation_service.exe"
Top Runs Differences at: 2023-07-25 17.55.29
remark :
runtime : 21
count : 19
previous date : 2023-07-24
previous time : 17.55.29
system - SystemDriver - MpKsle1c3e990
new: AcceptPause : 0
new: Description : MpKsle1c3e990
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A1910FE-A793-48DC-9463-1954266AC110}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2023-07-24 17.55.29
remark :
runtime : 25
count : 32
previous date : 2023-07-23
previous time : 17.55.29
hardware - printer - OneNote for Windows 10
old: PortName : Microsoft.Office.OneNote_16001.14326.21386.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PortName : Microsoft.Office.OneNote_16001.14326.21452.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
software - product - Microsoft Edge
old: Version : 114.0.1823.82
new: Version : 115.0.1901.183
software - product - Microsoft Edge WebView2 Runtime
old: Version : 114.0.1823.82
new: Version : 115.0.1901.183
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.82\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\115.0.1901.183\elevation_service.exe"
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2023-07-21 17.55.29
remark :
runtime : 22
count : 4
previous date : 2023-07-20
previous time : 17.55.29
software - product - Google Chrome
old: Version : 114.0.5735.201
new: Version : 114.0.5735.248
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.201\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.248\elevation_service.exe"
Top Runs Differences at: 2023-07-20 17.55.29
remark :
runtime : 23
count : 4
previous date : 2023-07-19
previous time : 17.55.29
software - product - Google Chrome
old: Version : 114.0.5735.199
new: Version : 114.0.5735.201
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.199\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.201\elevation_service.exe"
Top Runs Differences at: 2023-07-19 17.55.29
remark :
runtime : 21
count : 14
previous date : 2023-07-18
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\77.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\77.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\77.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\77.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\77.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 77.0.3.0
new: Version : 78.0.1.0
old: Install Location : C:\Program Files\Google\Drive File Stream\77.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\78.0.1.0\GoogleDriveFS.exe
Top Runs Differences at: 2023-07-16 17.55.29
remark :
runtime : 21
count : 6
previous date : 2023-07-15
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 114.0.1823.79
new: Version : 114.0.1823.82
software - product - Microsoft Edge WebView2 Runtime
old: Version : 114.0.1823.79
new: Version : 114.0.1823.82
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.79\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.82\elevation_service.exe"
Top Runs Differences at: 2023-07-14 02.55.21
remark :
runtime : 25
count : 10
previous date : 2023-07-13
previous time : 17.55.29
system - hotfix - KB5011070
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5028849
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC ReadyToReboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery ReadyToReboot
Top Runs Differences at: 2023-07-13 14.43.54
remark :
runtime : 31
count : 29
previous date : 2023-07-12
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 114.0.1823.67
new: Version : 114.0.1823.79
system - hotfix - KB5011048
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2023-07-12 17.55.29
remark :
runtime : 18
count : 16
previous date : 2023-07-11
previous time : 23.34.54
software - product - Microsoft Edge
old: Version : 114.0.1823.67
new: Version : 114.0.1823.79
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.67\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.79\elevation_service.exe"
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2023-07-11 23.34.54
remark :
runtime : 64
count : 45
previous date : 2023-07-11
previous time : 17.55.29
system - hotfix - KB5027122
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5027215
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5028166
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5028318
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5028853
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\CloudRestore\Backup
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : Handles restoring settings from the cloud
new: Idle Time : Disabled
new: Power Management :
new: Run As User : Interaktiv
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC EngagedRebootReminder
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery EngagedRebootReminder
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2023-07-07 17.55.29
remark :
runtime : 18
count : 2
previous date : 2023-07-06
previous time : 17.55.29
software - product - Microsoft Edge Update
old: Version : 1.3.175.29
new: Version : 1.3.177.11
Top Runs Differences at: 2023-07-02 17.55.29
remark :
runtime : 18
count : 2
previous date : 2023-07-01
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 114.0.1823.58
new: Version : 114.0.1823.67
Top Runs Differences at: 2023-07-01 17.55.29
remark :
runtime : 20
count : 4
previous date : 2023-06-30
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 114.0.1823.58
new: Version : 114.0.1823.67
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.58\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.67\elevation_service.exe"
Top Runs Differences at: 2023-06-29 17.55.29
remark :
runtime : 19
count : 4
previous date : 2023-06-28
previous time : 17.55.29
software - product - Google Chrome
old: Version : 114.0.5735.135
new: Version : 114.0.5735.199
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.135\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.199\elevation_service.exe"
Top Runs Differences at: 2023-06-28 17.55.29
remark :
runtime : 20
count : 18
previous date : 2023-06-27
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\77.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\77.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\77.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\77.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\77.0.3.0\GoogleDriveFS.exe --startup_mode
software - product - Google Chrome
old: Version : 114.0.5735.134
new: Version : 114.0.5735.135
software - product - Google Drive
old: Version : 76.0.3.0
new: Version : 77.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\77.0.3.0\GoogleDriveFS.exe
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.134\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.135\elevation_service.exe"
Top Runs Differences at: 2023-06-25 17.55.29
remark :
runtime : 21
count : 2
previous date : 2023-06-24
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 114.0.1823.51
new: Version : 114.0.1823.58
Top Runs Differences at: 2023-06-24 17.55.29
remark :
runtime : 21
count : 4
previous date : 2023-06-23
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 114.0.1823.51
new: Version : 114.0.1823.58
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.51\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.58\elevation_service.exe"
Top Runs Differences at: 2023-06-18 17.55.29
remark :
runtime : 20
count : 2
previous date : 2023-06-17
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 114.0.1823.43
new: Version : 114.0.1823.51
Top Runs Differences at: 2023-06-17 17.55.29
remark :
runtime : 19
count : 4
previous date : 2023-06-16
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 114.0.1823.43
new: Version : 114.0.1823.51
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.43\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.51\elevation_service.exe"
Top Runs Differences at: 2023-06-16 17.55.29
remark :
runtime : 20
count : 16
previous date : 2023-06-15
previous time : 17.55.30
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Google Chrome
old: Version : 114.0.5735.133
new: Version : 114.0.5735.134
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.133\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.134\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-06-15 17.55.30
remark :
runtime : 19
count : 12
previous date : 2023-06-14
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-06-14 17.55.29
remark :
runtime : 17
count : 141
previous date : 2023-06-13
previous time : 20.58.33
software - product - Google Chrome
old: Version : 114.0.5735.110
new: Version : 114.0.5735.133
system - services - survey
old: AarSvc_211ffc Manual Unknown Agent Activation Runtime_211ffc
old: BcastDVRUserService_211ffc Manual Unknown Användartjänst för Spel-DVR och sändning_211ffc
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_211ffc Manual Unknown Bluetooth User Support Service_211ffc
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_211ffc Manual Unknown CaptureService_211ffc
old: cbdhsvc_211ffc Manual Unknown Clipboard User Service_211ffc
old: CDPUserSvc_211ffc Auto Unknown Connected Devices Platform User Service_211ffc
old: ConsentUxUserSvc_211ffc Manual Unknown ConsentUX_211ffc
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_211ffc
old: DeviceAssociationBrokerSvc_211 Manual Unknown DeviceAssociationBroker_211ffc
old: DevicePickerUserSvc_211ffc Manual Unknown DevicePicker_211ffc
old: DevicesFlowUserSvc_211ffc Manual Unknown DevicesFlow_211ffc
old: MessagingService_211ffc Manual Unknown MessagingService_211ffc
old: OneSyncSvc_211ffc Auto Unknown Synkroniseringsvärd_211ffc
old: PimIndexMaintenanceSvc_211ffc Manual Unknown Contact Data_211ffc
old: PrintWorkflowUserSvc_211ffc Manual Unknown PrintWorkflow_211ffc
old: UdkUserSvc_211ffc Manual Unknown Udk-användartjänst_211ffc
old: UnistoreSvc_211ffc Manual Unknown User Data Storage_211ffc
old: UserDataSvc_211ffc Manual Unknown User Data Access_211ffc
old: WpnUserService_211ffc Auto Unknown Windows Push Notifications User Service_211ffc
system - services - AarSvc_211ffc
old: DisplayName : Agent Activation Runtime_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_211ffc
old: DisplayName : Användartjänst för Spel-DVR och sändning_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_211ffc
old: DisplayName : Bluetooth User Support Service_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_211ffc
old: DisplayName : CaptureService_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_211ffc
old: DisplayName : Clipboard User Service_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_211ffc
old: DisplayName : Connected Devices Platform User Service_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_211ffc
old: DisplayName : ConsentUX_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_211ffc
old: DisplayName : CredentialEnrollmentManagerUserSvc_211ffc
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_211ffc
old: DisplayName : DeviceAssociationBroker_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_211ffc
old: DisplayName : DevicePicker_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_211ffc
old: DisplayName : DevicesFlow_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.110\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.133\elevation_service.exe"
system - services - MessagingService_211ffc
old: DisplayName : MessagingService_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_211ffc
old: DisplayName : Synkroniseringsvärd_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_211ffc
old: DisplayName : Contact Data_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_211ffc
old: DisplayName : PrintWorkflow_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_211ffc
old: DisplayName : Udk-användartjänst_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_211ffc
old: DisplayName : User Data Storage_211ffc
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_211ffc
old: DisplayName : User Data Access_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_211ffc
old: DisplayName : Windows Push Notifications User Service_211ffc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2023-06-13 20.58.33
remark :
runtime : 32
count : 315
previous date : 2023-06-13
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5026435
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5026513
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5027122
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5027215
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_78baf54 Manual Unknown Agent Activation Runtime_78baf54
new: AarSvc_211ffc Manual Unknown Agent Activation Runtime_211ffc
old: BcastDVRUserService_78baf54 Manual Unknown Användartjänst för Spel-DVR och sändning_78baf54
new: BcastDVRUserService_211ffc Manual Unknown Användartjänst för Spel-DVR och sändning_211ffc
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_78baf54 Manual Unknown Bluetooth User Support Service_78baf54
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_211ffc Manual Unknown Bluetooth User Support Service_211ffc
old: CaptureService_78baf54 Manual Unknown CaptureService_78baf54
old: cbdhsvc_78baf54 Manual Unknown Clipboard User Service_78baf54
new: CaptureService_211ffc Manual Unknown CaptureService_211ffc
new: cbdhsvc_211ffc Manual Unknown Clipboard User Service_211ffc
old: CDPUserSvc_78baf54 Auto Unknown Connected Devices Platform User Service_78baf54
new: CDPUserSvc_211ffc Auto Unknown Connected Devices Platform User Service_211ffc
old: ConsentUxUserSvc_78baf54 Manual Unknown ConsentUX_78baf54
new: ConsentUxUserSvc_211ffc Manual Unknown ConsentUX_211ffc
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_78baf54
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_211ffc
old: DeviceAssociationBrokerSvc_78b Manual Unknown DeviceAssociationBroker_78baf54
new: DeviceAssociationBrokerSvc_211 Manual Unknown DeviceAssociationBroker_211ffc
old: DevicePickerUserSvc_78baf54 Manual Unknown DevicePicker_78baf54
old: DevicesFlowUserSvc_78baf54 Manual Unknown DevicesFlow_78baf54
new: DevicePickerUserSvc_211ffc Manual Unknown DevicePicker_211ffc
new: DevicesFlowUserSvc_211ffc Manual Unknown DevicesFlow_211ffc
old: MessagingService_78baf54 Manual Unknown MessagingService_78baf54
new: MessagingService_211ffc Manual Unknown MessagingService_211ffc
old: OneSyncSvc_78baf54 Auto Unknown Synkroniseringsvärd_78baf54
new: OneSyncSvc_211ffc Auto Unknown Synkroniseringsvärd_211ffc
old: PimIndexMaintenanceSvc_78baf54 Manual Unknown Contact Data_78baf54
new: PimIndexMaintenanceSvc_211ffc Manual Unknown Contact Data_211ffc
old: PrintWorkflowUserSvc_78baf54 Manual Unknown PrintWorkflow_78baf54
new: PrintWorkflowUserSvc_211ffc Manual Unknown PrintWorkflow_211ffc
old: UdkUserSvc_78baf54 Manual Unknown Udk-användartjänst_78baf54
new: UdkUserSvc_211ffc Manual Unknown Udk-användartjänst_211ffc
old: UnistoreSvc_78baf54 Manual Unknown User Data Storage_78baf54
new: UnistoreSvc_211ffc Manual Unknown User Data Storage_211ffc
old: UserDataSvc_78baf54 Manual Unknown User Data Access_78baf54
new: UserDataSvc_211ffc Manual Unknown User Data Access_211ffc
old: WpnUserService_78baf54 Auto Unknown Windows Push Notifications User Service_78baf54
new: WpnUserService_211ffc Auto Unknown Windows Push Notifications User Service_211ffc
system - services - AarSvc_78baf54
old: DisplayName : Agent Activation Runtime_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_211ffc
new: DisplayName : Agent Activation Runtime_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_78baf54
old: DisplayName : Användartjänst för Spel-DVR och sändning_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_211ffc
new: DisplayName : Användartjänst för Spel-DVR och sändning_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_78baf54
old: DisplayName : Bluetooth User Support Service_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_211ffc
new: DisplayName : Bluetooth User Support Service_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_78baf54
old: DisplayName : CaptureService_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_78baf54
old: DisplayName : Clipboard User Service_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_211ffc
new: DisplayName : CaptureService_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_211ffc
new: DisplayName : Clipboard User Service_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_78baf54
old: DisplayName : Connected Devices Platform User Service_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_211ffc
new: DisplayName : Connected Devices Platform User Service_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_78baf54
old: DisplayName : ConsentUX_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_211ffc
new: DisplayName : ConsentUX_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_78baf54
old: DisplayName : CredentialEnrollmentManagerUserSvc_78baf54
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_211ffc
new: DisplayName : CredentialEnrollmentManagerUserSvc_211ffc
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_78baf54
old: DisplayName : DeviceAssociationBroker_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_211ffc
new: DisplayName : DeviceAssociationBroker_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_78baf54
old: DisplayName : DevicePicker_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_78baf54
old: DisplayName : DevicesFlow_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_211ffc
new: DisplayName : DevicePicker_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_211ffc
new: DisplayName : DevicesFlow_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_78baf54
old: DisplayName : MessagingService_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_211ffc
new: DisplayName : MessagingService_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_78baf54
old: DisplayName : Synkroniseringsvärd_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_211ffc
new: DisplayName : Synkroniseringsvärd_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_78baf54
old: DisplayName : Contact Data_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_211ffc
new: DisplayName : Contact Data_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_78baf54
old: DisplayName : PrintWorkflow_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_211ffc
new: DisplayName : PrintWorkflow_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_78baf54
old: DisplayName : Udk-användartjänst_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_211ffc
new: DisplayName : Udk-användartjänst_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_78baf54
old: DisplayName : User Data Storage_78baf54
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_211ffc
new: DisplayName : User Data Storage_211ffc
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_78baf54
old: DisplayName : User Data Access_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_211ffc
new: DisplayName : User Data Access_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MsMpEng.exe"
system - services - WpnUserService_78baf54
old: DisplayName : Windows Push Notifications User Service_78baf54
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_211ffc
new: DisplayName : Windows Push Notifications User Service_211ffc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC EngagedRebootReminder
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery EngagedRebootReminder
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2023-06-12 17.55.29
remark :
runtime : 19
count : 16
previous date : 2023-06-11
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 75.0.3.0
new: Version : 76.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\76.0.3.0\GoogleDriveFS.exe
Top Runs Differences at: 2023-06-11 17.55.29
remark :
runtime : 18
count : 2
previous date : 2023-06-10
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 114.0.1823.37
new: Version : 114.0.1823.43
Top Runs Differences at: 2023-06-10 17.55.29
remark :
runtime : 19
count : 6
previous date : 2023-06-09
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 114.0.1823.41
new: Version : 114.0.1823.43
software - product - Microsoft Edge Update
old: Version : 1.3.175.27
new: Version : 1.3.175.29
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.41\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.43\elevation_service.exe"
Top Runs Differences at: 2023-06-09 17.55.29
remark :
runtime : 18
count : 4
previous date : 2023-06-08
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 114.0.1823.37
new: Version : 114.0.1823.41
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.37\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.41\elevation_service.exe"
Top Runs Differences at: 2023-06-06 17.55.29
remark :
runtime : 18
count : 4
previous date : 2023-06-05
previous time : 17.55.29
software - product - Google Chrome
old: Version : 113.0.5672.129
new: Version : 114.0.5735.110
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\113.0.5672.129\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.110\elevation_service.exe"
Top Runs Differences at: 2023-06-05 17.55.29
remark :
runtime : 17
count : 9
previous date : 2023-06-04
previous time : 17.55.29
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
old: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
old: SettingID :
old: User : CORP\trains
old:
software - product - Microsoft Edge WebView2 Runtime
old: Version : 113.0.1774.57
new: Version : 114.0.1823.37
Top Runs Differences at: 2023-06-04 17.55.29
remark :
runtime : 18
count : 4
previous date : 2023-06-03
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 113.0.1774.57
new: Version : 114.0.1823.37
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\113.0.1774.57\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.37\elevation_service.exe"
Top Runs Differences at: 2023-06-02 17.55.29
remark :
runtime : 17
count : 20
previous date : 2023-06-01
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe --startup_mode
software - product - Google Chrome
old: Version : 113.0.5672.127
new: Version : 113.0.5672.129
software - product - Google Drive
old: Version : 75.0.2.0
new: Version : 75.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\113.0.5672.127\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\113.0.5672.129\elevation_service.exe"
Top Runs Differences at: 2023-06-01 17.55.29
remark :
runtime : 18
count : 185
previous date : 2023-05-31
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
new: Description : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : MicrosoftEdgeAutoLaunch_B3916B88BB6798C9C84863345B52D6C2
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - hotfix - KB5025183
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5026513
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: AarSvc_78baf54 Manual Unknown Agent Activation Runtime_78baf54
new: BcastDVRUserService_78baf54 Manual Unknown Användartjänst för Spel-DVR och sändning_78baf54
new: BluetoothUserService_78baf54 Manual Unknown Bluetooth User Support Service_78baf54
new: CaptureService_78baf54 Manual Unknown CaptureService_78baf54
new: cbdhsvc_78baf54 Manual Unknown Clipboard User Service_78baf54
new: CDPUserSvc_78baf54 Auto Unknown Connected Devices Platform User Service_78baf54
new: ConsentUxUserSvc_78baf54 Manual Unknown ConsentUX_78baf54
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_78baf54
new: DeviceAssociationBrokerSvc_78b Manual Unknown DeviceAssociationBroker_78baf54
new: DevicePickerUserSvc_78baf54 Manual Unknown DevicePicker_78baf54
new: DevicesFlowUserSvc_78baf54 Manual Unknown DevicesFlow_78baf54
new: MessagingService_78baf54 Manual Unknown MessagingService_78baf54
new: OneSyncSvc_78baf54 Auto Unknown Synkroniseringsvärd_78baf54
new: PimIndexMaintenanceSvc_78baf54 Manual Unknown Contact Data_78baf54
new: PrintWorkflowUserSvc_78baf54 Manual Unknown PrintWorkflow_78baf54
new: UdkUserSvc_78baf54 Manual Unknown Udk-användartjänst_78baf54
new: UnistoreSvc_78baf54 Manual Unknown User Data Storage_78baf54
new: UserDataSvc_78baf54 Manual Unknown User Data Access_78baf54
new: WpnUserService_78baf54 Auto Unknown Windows Push Notifications User Service_78baf54
system - services - AarSvc_78baf54
new: DisplayName : Agent Activation Runtime_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_78baf54
new: DisplayName : Användartjänst för Spel-DVR och sändning_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_78baf54
new: DisplayName : Bluetooth User Support Service_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_78baf54
new: DisplayName : CaptureService_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_78baf54
new: DisplayName : Clipboard User Service_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_78baf54
new: DisplayName : Connected Devices Platform User Service_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_78baf54
new: DisplayName : ConsentUX_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_78baf54
new: DisplayName : CredentialEnrollmentManagerUserSvc_78baf54
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_78baf54
new: DisplayName : DeviceAssociationBroker_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_78baf54
new: DisplayName : DevicePicker_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_78baf54
new: DisplayName : DevicesFlow_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_78baf54
new: DisplayName : MessagingService_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_78baf54
new: DisplayName : Synkroniseringsvärd_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_78baf54
new: DisplayName : Contact Data_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_78baf54
new: DisplayName : PrintWorkflow_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_78baf54
new: DisplayName : Udk-användartjänst_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_78baf54
new: DisplayName : User Data Storage_78baf54
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_78baf54
new: DisplayName : User Data Access_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MsMpEng.exe"
system - services - WpnUserService_78baf54
new: DisplayName : Windows Push Notifications User Service_78baf54
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2023-05-28 17.55.29
remark :
runtime : 17
count : 2
previous date : 2023-05-27
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 113.0.1774.50
new: Version : 113.0.1774.57
Top Runs Differences at: 2023-05-27 17.55.29
remark :
runtime : 19
count : 4
previous date : 2023-05-26
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 113.0.1774.50
new: Version : 113.0.1774.57
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\113.0.1774.50\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\113.0.1774.57\elevation_service.exe"
Top Runs Differences at: 2023-05-26 00.22.46
remark :
runtime : 35
count : 40
previous date : 2023-05-25
previous time : 17.55.29
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
system - SystemDriver - HidSpiCx
new: AcceptPause : 0
new: Description : HidSpi KMDF Class Extension
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\HidSpiCx.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - hotfix - KB5026361
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5026435
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5026879
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-05-25 17.55.29
remark :
runtime : 18
count : 12
previous date : 2023-05-24
previous time : 17.55.29
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-05-24 17.55.29
remark :
runtime : 17
count : 12
previous date : 2023-05-23
previous time : 17.55.29
software - product - LibreOffice 7.4.1.2
old: Version : 7.4.1.2
old: Publisher : The Document Foundation
old: URLinfo : https://www.libreoffice.org/
old: ParentKey :
old: Install Location : C:\Program Files\LibreOffice\
old: Windows Installer : 0x00000001
software - product - LibreOffice 7.5.3.2
new: Version : 7.5.3.2
new: Publisher : The Document Foundation
new: URLinfo : https://www.libreoffice.org/
new: ParentKey :
new: Install Location : C:\Program Files\LibreOffice\
new: Windows Installer : 0x00000001
Top Runs Differences at: 2023-05-22 17.55.29
remark :
runtime : 19
count : 14
previous date : 2023-05-21
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\74.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\74.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\74.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\74.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\74.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 74.0.3.0
new: Version : 75.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\74.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\75.0.2.0\GoogleDriveFS.exe
Top Runs Differences at: 2023-05-21 17.55.29
remark :
runtime : 18
count : 6
previous date : 2023-05-20
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 113.0.1774.42
new: Version : 113.0.1774.50
software - product - Microsoft Edge WebView2 Runtime
old: Version : 113.0.1774.42
new: Version : 113.0.1774.50
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\113.0.1774.42\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\113.0.1774.50\elevation_service.exe"
Top Runs Differences at: 2023-05-19 17.55.29
remark :
runtime : 18
count : 4
previous date : 2023-05-18
previous time : 17.55.29
software - product - Google Chrome
old: Version : 113.0.5672.94
new: Version : 113.0.5672.127
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\113.0.5672.94\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\113.0.5672.127\elevation_service.exe"
Top Runs Differences at: 2023-05-17 17.55.29
remark :
runtime : 19
count : 4
previous date : 2023-05-16
previous time : 17.55.29
software - product - Google Chrome
old: Version : 113.0.5672.93
new: Version : 113.0.5672.94
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\113.0.5672.93\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\113.0.5672.94\elevation_service.exe"
Top Runs Differences at: 2023-05-15 15.38.50
remark :
runtime : 36
count : 142
previous date : 2023-05-14
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
system - services - survey
old: AarSvc_48a1c5b Manual Unknown Agent Activation Runtime_48a1c5b
old: BcastDVRUserService_48a1c5b Manual Unknown Användartjänst för Spel-DVR och sändning_48a1c5b
old: BluetoothUserService_48a1c5b Manual Unknown Bluetooth User Support Service_48a1c5b
old: CaptureService_48a1c5b Manual Unknown CaptureService_48a1c5b
old: cbdhsvc_48a1c5b Manual Unknown Clipboard User Service_48a1c5b
old: CDPUserSvc_48a1c5b Auto Unknown Connected Devices Platform User Service_48a1c5b
old: ConsentUxUserSvc_48a1c5b Manual Unknown ConsentUX_48a1c5b
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_48a1c5b
old: DeviceAssociationBrokerSvc_48a Manual Unknown DeviceAssociationBroker_48a1c5b
old: DevicePickerUserSvc_48a1c5b Manual Unknown DevicePicker_48a1c5b
old: DevicesFlowUserSvc_48a1c5b Manual Unknown DevicesFlow_48a1c5b
old: MessagingService_48a1c5b Manual Unknown MessagingService_48a1c5b
old: OneSyncSvc_48a1c5b Auto Unknown Synkroniseringsvärd_48a1c5b
old: PimIndexMaintenanceSvc_48a1c5b Manual Unknown Contact Data_48a1c5b
old: PrintWorkflowUserSvc_48a1c5b Manual Unknown PrintWorkflow_48a1c5b
old: UdkUserSvc_48a1c5b Manual Unknown Udk-användartjänst_48a1c5b
old: UnistoreSvc_48a1c5b Manual Unknown User Data Storage_48a1c5b
old: UserDataSvc_48a1c5b Manual Unknown User Data Access_48a1c5b
old: WpnUserService_48a1c5b Auto Unknown Windows Push Notifications User Service_48a1c5b
system - services - AarSvc_48a1c5b
old: DisplayName : Agent Activation Runtime_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_48a1c5b
old: DisplayName : Användartjänst för Spel-DVR och sändning_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_48a1c5b
old: DisplayName : Bluetooth User Support Service_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_48a1c5b
old: DisplayName : CaptureService_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_48a1c5b
old: DisplayName : Clipboard User Service_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_48a1c5b
old: DisplayName : Connected Devices Platform User Service_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_48a1c5b
old: DisplayName : ConsentUX_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_48a1c5b
old: DisplayName : CredentialEnrollmentManagerUserSvc_48a1c5b
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_48a1c5b
old: DisplayName : DeviceAssociationBroker_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_48a1c5b
old: DisplayName : DevicePicker_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_48a1c5b
old: DisplayName : DevicesFlow_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_48a1c5b
old: DisplayName : MessagingService_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_48a1c5b
old: DisplayName : Synkroniseringsvärd_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_48a1c5b
old: DisplayName : Contact Data_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_48a1c5b
old: DisplayName : PrintWorkflow_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_48a1c5b
old: DisplayName : Udk-användartjänst_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_48a1c5b
old: DisplayName : User Data Storage_48a1c5b
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_48a1c5b
old: DisplayName : User Data Access_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_48a1c5b
old: DisplayName : Windows Push Notifications User Service_48a1c5b
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2023-05-14 17.55.29
remark :
runtime : 18
count : 2
previous date : 2023-05-13
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 113.0.1774.35
new: Version : 113.0.1774.42
Top Runs Differences at: 2023-05-13 17.55.29
remark :
runtime : 19
count : 144
previous date : 2023-05-12
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
software - product - Microsoft Edge
old: Version : 113.0.1774.35
new: Version : 113.0.1774.42
system - services - survey
new: AarSvc_48a1c5b Manual Unknown Agent Activation Runtime_48a1c5b
new: BcastDVRUserService_48a1c5b Manual Unknown Användartjänst för Spel-DVR och sändning_48a1c5b
new: BluetoothUserService_48a1c5b Manual Unknown Bluetooth User Support Service_48a1c5b
new: CaptureService_48a1c5b Manual Unknown CaptureService_48a1c5b
new: cbdhsvc_48a1c5b Manual Unknown Clipboard User Service_48a1c5b
new: CDPUserSvc_48a1c5b Auto Unknown Connected Devices Platform User Service_48a1c5b
new: ConsentUxUserSvc_48a1c5b Manual Unknown ConsentUX_48a1c5b
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_48a1c5b
new: DeviceAssociationBrokerSvc_48a Manual Unknown DeviceAssociationBroker_48a1c5b
new: DevicePickerUserSvc_48a1c5b Manual Unknown DevicePicker_48a1c5b
new: DevicesFlowUserSvc_48a1c5b Manual Unknown DevicesFlow_48a1c5b
new: MessagingService_48a1c5b Manual Unknown MessagingService_48a1c5b
new: OneSyncSvc_48a1c5b Auto Unknown Synkroniseringsvärd_48a1c5b
new: PimIndexMaintenanceSvc_48a1c5b Manual Unknown Contact Data_48a1c5b
new: PrintWorkflowUserSvc_48a1c5b Manual Unknown PrintWorkflow_48a1c5b
new: UdkUserSvc_48a1c5b Manual Unknown Udk-användartjänst_48a1c5b
new: UnistoreSvc_48a1c5b Manual Unknown User Data Storage_48a1c5b
new: UserDataSvc_48a1c5b Manual Unknown User Data Access_48a1c5b
new: WpnUserService_48a1c5b Auto Unknown Windows Push Notifications User Service_48a1c5b
system - services - AarSvc_48a1c5b
new: DisplayName : Agent Activation Runtime_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_48a1c5b
new: DisplayName : Användartjänst för Spel-DVR och sändning_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_48a1c5b
new: DisplayName : Bluetooth User Support Service_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_48a1c5b
new: DisplayName : CaptureService_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_48a1c5b
new: DisplayName : Clipboard User Service_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_48a1c5b
new: DisplayName : Connected Devices Platform User Service_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_48a1c5b
new: DisplayName : ConsentUX_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_48a1c5b
new: DisplayName : CredentialEnrollmentManagerUserSvc_48a1c5b
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_48a1c5b
new: DisplayName : DeviceAssociationBroker_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_48a1c5b
new: DisplayName : DevicePicker_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_48a1c5b
new: DisplayName : DevicesFlow_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_48a1c5b
new: DisplayName : MessagingService_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\113.0.1774.35\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\113.0.1774.42\elevation_service.exe"
system - services - OneSyncSvc_48a1c5b
new: DisplayName : Synkroniseringsvärd_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_48a1c5b
new: DisplayName : Contact Data_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_48a1c5b
new: DisplayName : PrintWorkflow_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_48a1c5b
new: DisplayName : Udk-användartjänst_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_48a1c5b
new: DisplayName : User Data Storage_48a1c5b
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_48a1c5b
new: DisplayName : User Data Access_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_48a1c5b
new: DisplayName : Windows Push Notifications User Service_48a1c5b
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2023-05-11 17.55.29
remark :
runtime : 19
count : 4
previous date : 2023-05-10
previous time : 17.55.29
software - product - Google Chrome
old: Version : 113.0.5672.92
new: Version : 113.0.5672.93
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\113.0.5672.92\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\113.0.5672.93\elevation_service.exe"
Top Runs Differences at: 2023-05-10 17.55.29
remark :
runtime : 16
count : 6
previous date : 2023-05-09
previous time : 20.12.54
software - product - Google Chrome
old: Version : 112.0.5615.138
new: Version : 113.0.5672.92
software - product - Microsoft Edge Update
old: Version : 1.3.173.55
new: Version : 1.3.175.27
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\112.0.5615.138\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\113.0.5672.92\elevation_service.exe"
Top Runs Differences at: 2023-05-09 20.12.54
remark :
runtime : 30
count : 14
previous date : 2023-05-09
previous time : 17.55.30
system - hotfix - KB5022502
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5025297
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5025183
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5026361
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2023-05-08 17.55.30
remark :
runtime : 17
count : 2
previous date : 2023-05-07
previous time : 17.55.30
software - product - Microsoft Edge WebView2 Runtime
old: Version : 112.0.1722.68
new: Version : 113.0.1774.35
Top Runs Differences at: 2023-05-07 17.55.30
remark :
runtime : 17
count : 4
previous date : 2023-05-06
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 112.0.1722.68
new: Version : 113.0.1774.35
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.68\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\113.0.1774.35\elevation_service.exe"
Top Runs Differences at: 2023-05-04 17.55.30
remark :
runtime : 18
count : 6
previous date : 2023-05-03
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 112.0.1722.64
new: Version : 112.0.1722.68
software - product - Microsoft Edge WebView2 Runtime
old: Version : 112.0.1722.64
new: Version : 112.0.1722.68
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.64\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.68\elevation_service.exe"
Top Runs Differences at: 2023-05-03 17.55.30
remark :
runtime : 21
count : 22
previous date : 2023-05-03
previous time : 01.10.17
software - product - Microsoft Update Health Tools
old: Version : 3.70.0.0
new: Version : 3.72.0.0
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2023-05-03 01.10.17
remark :
runtime : 29
count : 51
previous date : 2023-05-02
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\73.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\74.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\73.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\74.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\73.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\74.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\73.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\74.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\73.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\74.0.3.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 73.0.4.0
new: Version : 74.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\73.0.4.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\74.0.3.0\GoogleDriveFS.exe
system - hotfix - KB5025221
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5025297
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5025315
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\PI\SecureBootEncodeUEFI
new: Logon Mode : Interactive/Background
new: Task To Run : %WINDIR%\system32\SecureBootEncodeUEFI.exe
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : Administrat”rer
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 00:01:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2023-04-30 17.33.21
remark :
runtime : 25
count : 28
previous date : 2023-04-29
previous time : 17.55.29
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: User : CORP\Administrator
new: User : CORP\administrator
software - product - Microsoft Edge WebView2 Runtime
old: Version : 112.0.1722.58
new: Version : 112.0.1722.64
system - scheduled tasks - \OneDrive Reporting Task-S-1-5-21-67378208-2373681959-2840377077-1108
old: Run As User : S-1-5-21-67378208-2373681959-2840377077-1108
new: Run As User : leif
system - scheduled tasks - \OneDrive Standalone Update Task-S-1-5-21-67378208-2373681959-2840377077-1108
old: Run As User : S-1-5-21-67378208-2373681959-2840377077-1108
new: Run As User : leif
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
new: Member : amandabackup
new: Member : carina
new: Member : Domain Admins
users - local groups - Ansvariga för säkerhetskopiering
new: Member : amandabackup
users - local groups - Användare av fjärrskrivbord
new: Member : leif
users - local groups - Användare
new: Member : amandabackup
new: Member : Domain Users
users - local groups - Device Administrators
new: Member : Domain Admins
Top Runs Differences at: 2023-04-29 17.55.29
remark :
runtime : 17
count : 4
previous date : 2023-04-28
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 112.0.1722.58
new: Version : 112.0.1722.64
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.58\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.64\elevation_service.exe"
Top Runs Differences at: 2023-04-24 17.55.29
remark :
runtime : 17
count : 2
previous date : 2023-04-23
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 112.0.1722.48
new: Version : 112.0.1722.58
Top Runs Differences at: 2023-04-23 17.55.29
remark :
runtime : 18
count : 4
previous date : 2023-04-22
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 112.0.1722.48
new: Version : 112.0.1722.58
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.48\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.58\elevation_service.exe"
Top Runs Differences at: 2023-04-21 17.55.29
remark :
runtime : 17
count : 146
previous date : 2023-04-20
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
hardware - printer - OneNote for Windows 10
old: PortName : Microsoft.Office.OneNote_16001.13801.20534.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PortName : Microsoft.Office.OneNote_16001.14326.21386.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
software - product - Google Chrome
old: Version : 112.0.5615.122
new: Version : 112.0.5615.138
system - services - survey
old: AarSvc_973faa Manual Unknown Agent Activation Runtime_973faa
old: BcastDVRUserService_973faa Manual Unknown Användartjänst för Spel-DVR och sändning_973faa
old: BluetoothUserService_973faa Manual Unknown Bluetooth User Support Service_973faa
old: CaptureService_973faa Manual Unknown CaptureService_973faa
old: cbdhsvc_973faa Manual Unknown Clipboard User Service_973faa
old: CDPUserSvc_973faa Auto Unknown Connected Devices Platform User Service_973faa
old: ConsentUxUserSvc_973faa Manual Unknown ConsentUX_973faa
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_973faa
old: DeviceAssociationBrokerSvc_973 Manual Unknown DeviceAssociationBroker_973faa
old: DevicePickerUserSvc_973faa Manual Unknown DevicePicker_973faa
old: DevicesFlowUserSvc_973faa Manual Unknown DevicesFlow_973faa
old: MessagingService_973faa Manual Unknown MessagingService_973faa
old: OneSyncSvc_973faa Auto Unknown Synkroniseringsvärd_973faa
old: PimIndexMaintenanceSvc_973faa Manual Unknown Contact Data_973faa
old: PrintWorkflowUserSvc_973faa Manual Unknown PrintWorkflow_973faa
old: UdkUserSvc_973faa Manual Unknown Udk-användartjänst_973faa
old: UnistoreSvc_973faa Manual Unknown User Data Storage_973faa
old: UserDataSvc_973faa Manual Unknown User Data Access_973faa
old: WpnUserService_973faa Auto Unknown Windows Push Notifications User Service_973faa
system - services - AarSvc_973faa
old: DisplayName : Agent Activation Runtime_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_973faa
old: DisplayName : Användartjänst för Spel-DVR och sändning_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_973faa
old: DisplayName : Bluetooth User Support Service_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_973faa
old: DisplayName : CaptureService_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_973faa
old: DisplayName : Clipboard User Service_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_973faa
old: DisplayName : Connected Devices Platform User Service_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_973faa
old: DisplayName : ConsentUX_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_973faa
old: DisplayName : CredentialEnrollmentManagerUserSvc_973faa
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_973faa
old: DisplayName : DeviceAssociationBroker_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_973faa
old: DisplayName : DevicePicker_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_973faa
old: DisplayName : DevicesFlow_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\112.0.5615.122\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\112.0.5615.138\elevation_service.exe"
system - services - MessagingService_973faa
old: DisplayName : MessagingService_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_973faa
old: DisplayName : Synkroniseringsvärd_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_973faa
old: DisplayName : Contact Data_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_973faa
old: DisplayName : PrintWorkflow_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_973faa
old: DisplayName : Udk-användartjänst_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_973faa
old: DisplayName : User Data Storage_973faa
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_973faa
old: DisplayName : User Data Access_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_973faa
old: DisplayName : Windows Push Notifications User Service_973faa
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2023-04-20 17.55.29
remark :
runtime : 18
count : 177
previous date : 2023-04-20
previous time : 01.38.17
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
hardware - printer - Brother DCP-9020CDW
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment : Brother DCP-9020CDW
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Microsoft IPP Class Driver
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location : Printer Room, Flen, Sweden
new: Network : 0
new: PortName : WSD-816cc8f8-9abc-4b38-b012-2b174aa81137
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
system - SystemDriver - MpKsl474fb189
old: AcceptPause : 0
old: Description : MpKsl474fb189
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{06DFAFD3-4602-419E-A827-1E3B3F6DB1DB}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - survey
new: AarSvc_973faa Manual Unknown Agent Activation Runtime_973faa
new: BcastDVRUserService_973faa Manual Unknown Användartjänst för Spel-DVR och sändning_973faa
new: BluetoothUserService_973faa Manual Unknown Bluetooth User Support Service_973faa
new: CaptureService_973faa Manual Unknown CaptureService_973faa
new: cbdhsvc_973faa Manual Unknown Clipboard User Service_973faa
new: CDPUserSvc_973faa Auto Unknown Connected Devices Platform User Service_973faa
new: ConsentUxUserSvc_973faa Manual Unknown ConsentUX_973faa
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_973faa
old: DeviceAssociationService Manual Share Process Device Association Service
new: DeviceAssociationBrokerSvc_973 Manual Unknown DeviceAssociationBroker_973faa
new: DeviceAssociationService Auto Share Process Device Association Service
new: DevicePickerUserSvc_973faa Manual Unknown DevicePicker_973faa
new: DevicesFlowUserSvc_973faa Manual Unknown DevicesFlow_973faa
new: MessagingService_973faa Manual Unknown MessagingService_973faa
new: OneSyncSvc_973faa Auto Unknown Synkroniseringsvärd_973faa
new: PimIndexMaintenanceSvc_973faa Manual Unknown Contact Data_973faa
new: PrintWorkflowUserSvc_973faa Manual Unknown PrintWorkflow_973faa
new: UdkUserSvc_973faa Manual Unknown Udk-användartjänst_973faa
new: UnistoreSvc_973faa Manual Unknown User Data Storage_973faa
new: UserDataSvc_973faa Manual Unknown User Data Access_973faa
new: WpnUserService_973faa Auto Unknown Windows Push Notifications User Service_973faa
system - services - AarSvc_973faa
new: DisplayName : Agent Activation Runtime_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_973faa
new: DisplayName : Användartjänst för Spel-DVR och sändning_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_973faa
new: DisplayName : Bluetooth User Support Service_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_973faa
new: DisplayName : CaptureService_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_973faa
new: DisplayName : Clipboard User Service_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_973faa
new: DisplayName : Connected Devices Platform User Service_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_973faa
new: DisplayName : ConsentUX_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_973faa
new: DisplayName : CredentialEnrollmentManagerUserSvc_973faa
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_973faa
new: DisplayName : DeviceAssociationBroker_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationService
old: StartMode : Manual
new: StartMode : Auto
system - services - DevicePickerUserSvc_973faa
new: DisplayName : DevicePicker_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_973faa
new: DisplayName : DevicesFlow_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_973faa
new: DisplayName : MessagingService_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_973faa
new: DisplayName : Synkroniseringsvärd_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_973faa
new: DisplayName : Contact Data_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_973faa
new: DisplayName : PrintWorkflow_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_973faa
new: DisplayName : Udk-användartjänst_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_973faa
new: DisplayName : User Data Storage_973faa
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_973faa
new: DisplayName : User Data Access_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_973faa
new: DisplayName : Windows Push Notifications User Service_973faa
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Agent Activation Runtime\S-1-5-21-67378208-2373681959-2840377077-1107
old: Run As User : S-1-5-21-67378208-2373681959-2840377077-1107
new: Run As User : trains
users - local groups - Administratörer
new: Member : trains
users - local groups - Device Administrators
new: Member : trains
Top Runs Differences at: 2023-04-20 01.38.17
remark :
runtime : 55
count : 177
previous date : 2023-04-19
previous time : 17.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
old: User : CORP\administrator
new: User : CORP\Administrator
system - SystemDriver - MpKsl474fb189
new: AcceptPause : 0
new: Description : MpKsl474fb189
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{06DFAFD3-4602-419E-A827-1E3B3F6DB1DB}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
old: AarSvc_6d5575 Manual Unknown Agent Activation Runtime_6d5575
old: BcastDVRUserService_6d5575 Manual Unknown Användartjänst för Spel-DVR och sändning_6d5575
old: BluetoothUserService_6d5575 Manual Unknown Bluetooth User Support Service_6d5575
old: CaptureService_6d5575 Manual Unknown CaptureService_6d5575
old: cbdhsvc_6d5575 Manual Unknown Clipboard User Service_6d5575
old: CDPUserSvc_6d5575 Auto Unknown Connected Devices Platform User Service_6d5575
old: ConsentUxUserSvc_6d5575 Manual Unknown ConsentUX_6d5575
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_6d5575
old: DeviceAssociationBrokerSvc_6d5 Manual Unknown DeviceAssociationBroker_6d5575
old: DevicePickerUserSvc_6d5575 Manual Unknown DevicePicker_6d5575
old: DevicesFlowUserSvc_6d5575 Manual Unknown DevicesFlow_6d5575
old: MessagingService_6d5575 Manual Unknown MessagingService_6d5575
old: OneSyncSvc_6d5575 Auto Unknown Synkroniseringsvärd_6d5575
old: PimIndexMaintenanceSvc_6d5575 Manual Unknown Contact Data_6d5575
old: PrintWorkflowUserSvc_6d5575 Manual Unknown PrintWorkflow_6d5575
old: UdkUserSvc_6d5575 Manual Unknown Udk-användartjänst_6d5575
old: UnistoreSvc_6d5575 Manual Unknown User Data Storage_6d5575
old: UserDataSvc_6d5575 Manual Unknown User Data Access_6d5575
old: WpnUserService_6d5575 Auto Unknown Windows Push Notifications User Service_6d5575
system - services - AarSvc_6d5575
old: DisplayName : Agent Activation Runtime_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_6d5575
old: DisplayName : Användartjänst för Spel-DVR och sändning_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_6d5575
old: DisplayName : Bluetooth User Support Service_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_6d5575
old: DisplayName : CaptureService_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_6d5575
old: DisplayName : Clipboard User Service_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_6d5575
old: DisplayName : Connected Devices Platform User Service_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_6d5575
old: DisplayName : ConsentUX_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_6d5575
old: DisplayName : CredentialEnrollmentManagerUserSvc_6d5575
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_6d5575
old: DisplayName : DeviceAssociationBroker_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_6d5575
old: DisplayName : DevicePicker_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_6d5575
old: DisplayName : DevicesFlow_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_6d5575
old: DisplayName : MessagingService_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_6d5575
old: DisplayName : Synkroniseringsvärd_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_6d5575
old: DisplayName : Contact Data_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_6d5575
old: DisplayName : PrintWorkflow_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_6d5575
old: DisplayName : Udk-användartjänst_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_6d5575
old: DisplayName : User Data Storage_6d5575
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_6d5575
old: DisplayName : User Data Access_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_6d5575
old: DisplayName : Windows Push Notifications User Service_6d5575
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Agent Activation Runtime\S-1-5-21-67378208-2373681959-2840377077-1107
old: Run As User : trains
new: Run As User : S-1-5-21-67378208-2373681959-2840377077-1107
system - scheduled tasks - \OneDrive Reporting Task-S-1-5-21-67378208-2373681959-2840377077-1108
old: Run As User : leif
new: Run As User : S-1-5-21-67378208-2373681959-2840377077-1108
system - scheduled tasks - \OneDrive Standalone Update Task-S-1-5-21-67378208-2373681959-2840377077-1108
old: Run As User : leif
new: Run As User : S-1-5-21-67378208-2373681959-2840377077-1108
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
old: Member : amandabackup
old: Member : carina
old: Member : Domain Admins
old: Member : trains
users - local groups - Ansvariga för säkerhetskopiering
old: Member : amandabackup
users - local groups - Användare av fjärrskrivbord
old: Member : leif
users - local groups - Användare
old: Member : amandabackup
old: Member : Domain Users
users - local groups - Device Administrators
old: Member : Domain Admins
old: Member : trains
Top Runs Differences at: 2023-04-19 17.55.30
remark :
runtime : 18
count : 4
previous date : 2023-04-18
previous time : 17.55.30
software - product - Google Chrome
old: Version : 112.0.5615.86
new: Version : 112.0.5615.122
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\112.0.5615.86\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\112.0.5615.122\elevation_service.exe"
Top Runs Differences at: 2023-04-17 17.55.30
remark :
runtime : 18
count : 6
previous date : 2023-04-16
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 112.0.1722.39
new: Version : 112.0.1722.48
software - product - Microsoft Edge WebView2 Runtime
old: Version : 112.0.1722.39
new: Version : 112.0.1722.48
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.39\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.48\elevation_service.exe"
Top Runs Differences at: 2023-04-13 17.55.30
remark :
runtime : 16
count : 10
previous date : 2023-04-12
previous time : 17.55.30
software - product - Google Chrome
old: Version : 112.0.5615.49
new: Version : 112.0.5615.86
software - product - Microsoft Edge
old: Version : 112.0.1722.34
new: Version : 112.0.1722.39
software - product - Microsoft Edge WebView2 Runtime
old: Version : 112.0.1722.34
new: Version : 112.0.1722.39
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\112.0.5615.49\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\112.0.5615.86\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.34\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.39\elevation_service.exe"
Top Runs Differences at: 2023-04-12 17.55.30
remark :
runtime : 16
count : 164
previous date : 2023-04-11
previous time : 20.46.32
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_6d5575 Manual Unknown Agent Activation Runtime_6d5575
new: BcastDVRUserService_6d5575 Manual Unknown Användartjänst för Spel-DVR och sändning_6d5575
new: BluetoothUserService_6d5575 Manual Unknown Bluetooth User Support Service_6d5575
new: CaptureService_6d5575 Manual Unknown CaptureService_6d5575
new: cbdhsvc_6d5575 Manual Unknown Clipboard User Service_6d5575
new: CDPUserSvc_6d5575 Auto Unknown Connected Devices Platform User Service_6d5575
new: ConsentUxUserSvc_6d5575 Manual Unknown ConsentUX_6d5575
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_6d5575
new: DeviceAssociationBrokerSvc_6d5 Manual Unknown DeviceAssociationBroker_6d5575
new: DevicePickerUserSvc_6d5575 Manual Unknown DevicePicker_6d5575
new: DevicesFlowUserSvc_6d5575 Manual Unknown DevicesFlow_6d5575
new: MessagingService_6d5575 Manual Unknown MessagingService_6d5575
new: OneSyncSvc_6d5575 Auto Unknown Synkroniseringsvärd_6d5575
new: PimIndexMaintenanceSvc_6d5575 Manual Unknown Contact Data_6d5575
new: PrintWorkflowUserSvc_6d5575 Manual Unknown PrintWorkflow_6d5575
new: UdkUserSvc_6d5575 Manual Unknown Udk-användartjänst_6d5575
new: UnistoreSvc_6d5575 Manual Unknown User Data Storage_6d5575
new: UserDataSvc_6d5575 Manual Unknown User Data Access_6d5575
new: WpnUserService_6d5575 Auto Unknown Windows Push Notifications User Service_6d5575
system - services - AarSvc_6d5575
new: DisplayName : Agent Activation Runtime_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_6d5575
new: DisplayName : Användartjänst för Spel-DVR och sändning_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_6d5575
new: DisplayName : Bluetooth User Support Service_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_6d5575
new: DisplayName : CaptureService_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_6d5575
new: DisplayName : Clipboard User Service_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_6d5575
new: DisplayName : Connected Devices Platform User Service_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_6d5575
new: DisplayName : ConsentUX_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_6d5575
new: DisplayName : CredentialEnrollmentManagerUserSvc_6d5575
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_6d5575
new: DisplayName : DeviceAssociationBroker_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_6d5575
new: DisplayName : DevicePicker_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_6d5575
new: DisplayName : DevicesFlow_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_6d5575
new: DisplayName : MessagingService_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_6d5575
new: DisplayName : Synkroniseringsvärd_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_6d5575
new: DisplayName : Contact Data_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_6d5575
new: DisplayName : PrintWorkflow_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_6d5575
new: DisplayName : Udk-användartjänst_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_6d5575
new: DisplayName : User Data Storage_6d5575
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_6d5575
new: DisplayName : User Data Access_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MsMpEng.exe"
system - services - WpnUserService_6d5575
new: DisplayName : Windows Push Notifications User Service_6d5575
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2023-04-11 20.46.32
remark :
runtime : 28
count : 22
previous date : 2023-04-11
previous time : 17.55.29
system - hotfix - KB5023773
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5025221
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2023-04-10 17.55.29
remark :
runtime : 17
count : 14
previous date : 2023-04-09
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\73.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\73.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\73.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\73.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\73.0.4.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 72.0.3.0
new: Version : 73.0.4.0
old: Install Location : C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\73.0.4.0\GoogleDriveFS.exe
Top Runs Differences at: 2023-04-09 17.55.29
remark :
runtime : 18
count : 150
previous date : 2023-04-08
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Microsoft Edge WebView2 Runtime
old: Version : 111.0.1661.62
new: Version : 112.0.1722.34
system - services - survey
old: AarSvc_4fd49d Manual Unknown Agent Activation Runtime_4fd49d
old: BcastDVRUserService_4fd49d Manual Unknown Användartjänst för Spel-DVR och sändning_4fd49d
old: BluetoothUserService_4fd49d Manual Unknown Bluetooth User Support Service_4fd49d
old: CaptureService_4fd49d Manual Unknown CaptureService_4fd49d
old: cbdhsvc_4fd49d Manual Unknown Clipboard User Service_4fd49d
old: CDPUserSvc_4fd49d Auto Unknown Connected Devices Platform User Service_4fd49d
old: ConsentUxUserSvc_4fd49d Manual Unknown ConsentUX_4fd49d
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_4fd49d
old: DeviceAssociationBrokerSvc_4fd Manual Unknown DeviceAssociationBroker_4fd49d
old: DevicePickerUserSvc_4fd49d Manual Unknown DevicePicker_4fd49d
old: DevicesFlowUserSvc_4fd49d Manual Unknown DevicesFlow_4fd49d
old: MessagingService_4fd49d Manual Unknown MessagingService_4fd49d
old: OneSyncSvc_4fd49d Auto Unknown Synkroniseringsvärd_4fd49d
old: PimIndexMaintenanceSvc_4fd49d Manual Unknown Contact Data_4fd49d
old: PrintWorkflowUserSvc_4fd49d Manual Unknown PrintWorkflow_4fd49d
old: UdkUserSvc_4fd49d Manual Unknown Udk-användartjänst_4fd49d
old: UnistoreSvc_4fd49d Manual Unknown User Data Storage_4fd49d
old: UserDataSvc_4fd49d Manual Unknown User Data Access_4fd49d
old: WpnUserService_4fd49d Auto Unknown Windows Push Notifications User Service_4fd49d
system - services - AarSvc_4fd49d
old: DisplayName : Agent Activation Runtime_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_4fd49d
old: DisplayName : Användartjänst för Spel-DVR och sändning_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_4fd49d
old: DisplayName : Bluetooth User Support Service_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_4fd49d
old: DisplayName : CaptureService_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_4fd49d
old: DisplayName : Clipboard User Service_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_4fd49d
old: DisplayName : Connected Devices Platform User Service_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_4fd49d
old: DisplayName : ConsentUX_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_4fd49d
old: DisplayName : CredentialEnrollmentManagerUserSvc_4fd49d
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_4fd49d
old: DisplayName : DeviceAssociationBroker_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_4fd49d
old: DisplayName : DevicePicker_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_4fd49d
old: DisplayName : DevicesFlow_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_4fd49d
old: DisplayName : MessagingService_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_4fd49d
old: DisplayName : Synkroniseringsvärd_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_4fd49d
old: DisplayName : Contact Data_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_4fd49d
old: DisplayName : PrintWorkflow_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_4fd49d
old: DisplayName : Udk-användartjänst_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_4fd49d
old: DisplayName : User Data Storage_4fd49d
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_4fd49d
old: DisplayName : User Data Access_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_4fd49d
old: DisplayName : Windows Push Notifications User Service_4fd49d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2023-04-08 17.55.29
remark :
runtime : 18
count : 4
previous date : 2023-04-07
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 111.0.1661.62
new: Version : 112.0.1722.34
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\111.0.1661.62\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.34\elevation_service.exe"
Top Runs Differences at: 2023-04-05 17.55.29
remark :
runtime : 17
count : 4
previous date : 2023-04-04
previous time : 17.55.29
software - product - Google Chrome
old: Version : 111.0.5563.147
new: Version : 112.0.5615.49
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\111.0.5563.147\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\112.0.5615.49\elevation_service.exe"
Top Runs Differences at: 2023-04-04 17.55.29
remark :
runtime : 12
count : 148
previous date : 2023-04-04
previous time : 12.58.35
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_4fd49d Manual Unknown Agent Activation Runtime_4fd49d
new: BcastDVRUserService_4fd49d Manual Unknown Användartjänst för Spel-DVR och sändning_4fd49d
new: BluetoothUserService_4fd49d Manual Unknown Bluetooth User Support Service_4fd49d
new: CaptureService_4fd49d Manual Unknown CaptureService_4fd49d
new: cbdhsvc_4fd49d Manual Unknown Clipboard User Service_4fd49d
new: CDPUserSvc_4fd49d Auto Unknown Connected Devices Platform User Service_4fd49d
new: ConsentUxUserSvc_4fd49d Manual Unknown ConsentUX_4fd49d
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_4fd49d
new: DeviceAssociationBrokerSvc_4fd Manual Unknown DeviceAssociationBroker_4fd49d
new: DevicePickerUserSvc_4fd49d Manual Unknown DevicePicker_4fd49d
new: DevicesFlowUserSvc_4fd49d Manual Unknown DevicesFlow_4fd49d
new: MessagingService_4fd49d Manual Unknown MessagingService_4fd49d
new: OneSyncSvc_4fd49d Auto Unknown Synkroniseringsvärd_4fd49d
new: PimIndexMaintenanceSvc_4fd49d Manual Unknown Contact Data_4fd49d
new: PrintWorkflowUserSvc_4fd49d Manual Unknown PrintWorkflow_4fd49d
new: UdkUserSvc_4fd49d Manual Unknown Udk-användartjänst_4fd49d
new: UnistoreSvc_4fd49d Manual Unknown User Data Storage_4fd49d
new: UserDataSvc_4fd49d Manual Unknown User Data Access_4fd49d
new: WpnUserService_4fd49d Auto Unknown Windows Push Notifications User Service_4fd49d
system - services - AarSvc_4fd49d
new: DisplayName : Agent Activation Runtime_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_4fd49d
new: DisplayName : Användartjänst för Spel-DVR och sändning_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_4fd49d
new: DisplayName : Bluetooth User Support Service_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_4fd49d
new: DisplayName : CaptureService_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_4fd49d
new: DisplayName : Clipboard User Service_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_4fd49d
new: DisplayName : Connected Devices Platform User Service_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_4fd49d
new: DisplayName : ConsentUX_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_4fd49d
new: DisplayName : CredentialEnrollmentManagerUserSvc_4fd49d
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_4fd49d
new: DisplayName : DeviceAssociationBroker_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_4fd49d
new: DisplayName : DevicePicker_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_4fd49d
new: DisplayName : DevicesFlow_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_4fd49d
new: DisplayName : MessagingService_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_4fd49d
new: DisplayName : Synkroniseringsvärd_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_4fd49d
new: DisplayName : Contact Data_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_4fd49d
new: DisplayName : PrintWorkflow_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_4fd49d
new: DisplayName : Udk-användartjänst_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_4fd49d
new: DisplayName : User Data Storage_4fd49d
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_4fd49d
new: DisplayName : User Data Access_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_4fd49d
new: DisplayName : Windows Push Notifications User Service_4fd49d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2023-04-04 12.58.35
remark :
runtime : 23
count : 150
previous date : 2023-04-04
previous time : 05.25.42
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - services - survey
old: AarSvc_70ad6 Manual Unknown Agent Activation Runtime_70ad6
old: BcastDVRUserService_70ad6 Manual Unknown Användartjänst för Spel-DVR och sändning_70ad6
old: BluetoothUserService_70ad6 Manual Unknown Bluetooth User Support Service_70ad6
old: CaptureService_70ad6 Manual Unknown CaptureService_70ad6
old: cbdhsvc_70ad6 Manual Unknown Clipboard User Service_70ad6
old: CDPUserSvc_70ad6 Auto Unknown Connected Devices Platform User Service_70ad6
old: ConsentUxUserSvc_70ad6 Manual Unknown ConsentUX_70ad6
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_70ad6
old: DeviceAssociationBrokerSvc_70a Manual Unknown DeviceAssociationBroker_70ad6
old: DevicePickerUserSvc_70ad6 Manual Unknown DevicePicker_70ad6
old: DevicesFlowUserSvc_70ad6 Manual Unknown DevicesFlow_70ad6
old: MessagingService_70ad6 Manual Unknown MessagingService_70ad6
old: OneSyncSvc_70ad6 Auto Unknown Synkroniseringsvärd_70ad6
old: PimIndexMaintenanceSvc_70ad6 Manual Unknown Contact Data_70ad6
old: PrintWorkflowUserSvc_70ad6 Manual Unknown PrintWorkflow_70ad6
old: UdkUserSvc_70ad6 Manual Unknown Udk-användartjänst_70ad6
old: UnistoreSvc_70ad6 Manual Unknown User Data Storage_70ad6
old: UserDataSvc_70ad6 Manual Unknown User Data Access_70ad6
old: WpnUserService_70ad6 Auto Unknown Windows Push Notifications User Service_70ad6
system - services - AarSvc_70ad6
old: DisplayName : Agent Activation Runtime_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_70ad6
old: DisplayName : Användartjänst för Spel-DVR och sändning_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_70ad6
old: DisplayName : Bluetooth User Support Service_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_70ad6
old: DisplayName : CaptureService_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_70ad6
old: DisplayName : Clipboard User Service_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_70ad6
old: DisplayName : Connected Devices Platform User Service_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_70ad6
old: DisplayName : ConsentUX_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_70ad6
old: DisplayName : CredentialEnrollmentManagerUserSvc_70ad6
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_70ad6
old: DisplayName : DeviceAssociationBroker_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_70ad6
old: DisplayName : DevicePicker_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_70ad6
old: DisplayName : DevicesFlow_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_70ad6
old: DisplayName : MessagingService_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_70ad6
old: DisplayName : Synkroniseringsvärd_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_70ad6
old: DisplayName : Contact Data_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_70ad6
old: DisplayName : PrintWorkflow_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_70ad6
old: DisplayName : Udk-användartjänst_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_70ad6
old: DisplayName : User Data Storage_70ad6
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_70ad6
old: DisplayName : User Data Access_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_70ad6
old: DisplayName : Windows Push Notifications User Service_70ad6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2023-04-04 05.25.42
remark :
runtime : 26
count : 270
previous date : 2023-04-03
previous time : 17.55.29
software - product - Microsoft Edge Update
old: Version : 1.3.173.51
new: Version : 1.3.173.55
system - services - survey
old: AarSvc_720d2f Manual Unknown Agent Activation Runtime_720d2f
new: AarSvc_70ad6 Manual Unknown Agent Activation Runtime_70ad6
old: BcastDVRUserService_720d2f Manual Unknown Användartjänst för Spel-DVR och sändning_720d2f
new: BcastDVRUserService_70ad6 Manual Unknown Användartjänst för Spel-DVR och sändning_70ad6
old: BluetoothUserService_720d2f Manual Unknown Bluetooth User Support Service_720d2f
new: BluetoothUserService_70ad6 Manual Unknown Bluetooth User Support Service_70ad6
old: CaptureService_720d2f Manual Unknown CaptureService_720d2f
old: cbdhsvc_720d2f Manual Unknown Clipboard User Service_720d2f
new: CaptureService_70ad6 Manual Unknown CaptureService_70ad6
new: cbdhsvc_70ad6 Manual Unknown Clipboard User Service_70ad6
old: CDPUserSvc_720d2f Auto Unknown Connected Devices Platform User Service_720d2f
new: CDPUserSvc_70ad6 Auto Unknown Connected Devices Platform User Service_70ad6
old: ConsentUxUserSvc_720d2f Manual Unknown ConsentUX_720d2f
new: ConsentUxUserSvc_70ad6 Manual Unknown ConsentUX_70ad6
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_720d2f
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_70ad6
old: DeviceAssociationBrokerSvc_720 Manual Unknown DeviceAssociationBroker_720d2f
new: DeviceAssociationBrokerSvc_70a Manual Unknown DeviceAssociationBroker_70ad6
old: DevicePickerUserSvc_720d2f Manual Unknown DevicePicker_720d2f
old: DevicesFlowUserSvc_720d2f Manual Unknown DevicesFlow_720d2f
new: DevicePickerUserSvc_70ad6 Manual Unknown DevicePicker_70ad6
new: DevicesFlowUserSvc_70ad6 Manual Unknown DevicesFlow_70ad6
old: MessagingService_720d2f Manual Unknown MessagingService_720d2f
new: MessagingService_70ad6 Manual Unknown MessagingService_70ad6
old: OneSyncSvc_720d2f Auto Unknown Synkroniseringsvärd_720d2f
new: OneSyncSvc_70ad6 Auto Unknown Synkroniseringsvärd_70ad6
old: PimIndexMaintenanceSvc_720d2f Manual Unknown Contact Data_720d2f
new: PimIndexMaintenanceSvc_70ad6 Manual Unknown Contact Data_70ad6
old: PrintWorkflowUserSvc_720d2f Manual Unknown PrintWorkflow_720d2f
new: PrintWorkflowUserSvc_70ad6 Manual Unknown PrintWorkflow_70ad6
old: UdkUserSvc_720d2f Manual Unknown Udk-användartjänst_720d2f
new: UdkUserSvc_70ad6 Manual Unknown Udk-användartjänst_70ad6
old: UnistoreSvc_720d2f Manual Unknown User Data Storage_720d2f
new: UnistoreSvc_70ad6 Manual Unknown User Data Storage_70ad6
old: UserDataSvc_720d2f Manual Unknown User Data Access_720d2f
new: UserDataSvc_70ad6 Manual Unknown User Data Access_70ad6
old: WpnUserService_720d2f Auto Unknown Windows Push Notifications User Service_720d2f
new: WpnUserService_70ad6 Auto Unknown Windows Push Notifications User Service_70ad6
system - services - AarSvc_720d2f
old: DisplayName : Agent Activation Runtime_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_70ad6
new: DisplayName : Agent Activation Runtime_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_720d2f
old: DisplayName : Användartjänst för Spel-DVR och sändning_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_70ad6
new: DisplayName : Användartjänst för Spel-DVR och sändning_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_720d2f
old: DisplayName : Bluetooth User Support Service_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_70ad6
new: DisplayName : Bluetooth User Support Service_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_720d2f
old: DisplayName : CaptureService_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_720d2f
old: DisplayName : Clipboard User Service_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_70ad6
new: DisplayName : CaptureService_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_70ad6
new: DisplayName : Clipboard User Service_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_720d2f
old: DisplayName : Connected Devices Platform User Service_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_70ad6
new: DisplayName : Connected Devices Platform User Service_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_720d2f
old: DisplayName : ConsentUX_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_70ad6
new: DisplayName : ConsentUX_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_720d2f
old: DisplayName : CredentialEnrollmentManagerUserSvc_720d2f
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_70ad6
new: DisplayName : CredentialEnrollmentManagerUserSvc_70ad6
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_720d2f
old: DisplayName : DeviceAssociationBroker_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_70ad6
new: DisplayName : DeviceAssociationBroker_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_720d2f
old: DisplayName : DevicePicker_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_720d2f
old: DisplayName : DevicesFlow_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_70ad6
new: DisplayName : DevicePicker_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_70ad6
new: DisplayName : DevicesFlow_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_720d2f
old: DisplayName : MessagingService_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_70ad6
new: DisplayName : MessagingService_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_720d2f
old: DisplayName : Synkroniseringsvärd_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_70ad6
new: DisplayName : Synkroniseringsvärd_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_720d2f
old: DisplayName : Contact Data_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_70ad6
new: DisplayName : Contact Data_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_720d2f
old: DisplayName : PrintWorkflow_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_70ad6
new: DisplayName : PrintWorkflow_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_720d2f
old: DisplayName : Udk-användartjänst_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_70ad6
new: DisplayName : Udk-användartjänst_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_720d2f
old: DisplayName : User Data Storage_720d2f
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_70ad6
new: DisplayName : User Data Storage_70ad6
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_720d2f
old: DisplayName : User Data Access_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_70ad6
new: DisplayName : User Data Access_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_720d2f
old: DisplayName : Windows Push Notifications User Service_720d2f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_70ad6
new: DisplayName : Windows Push Notifications User Service_70ad6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2023-04-02 17.55.29
remark :
runtime : 18
count : 6
previous date : 2023-04-01
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 111.0.1661.54
new: Version : 111.0.1661.62
software - product - Microsoft Edge WebView2 Runtime
old: Version : 111.0.1661.54
new: Version : 111.0.1661.62
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\111.0.1661.54\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\111.0.1661.62\elevation_service.exe"
Top Runs Differences at: 2023-03-30 17.55.29
remark :
runtime : 18
count : 12
previous date : 2023-03-29
previous time : 17.55.29
software - product - Google Chrome
old: Version : 111.0.5563.112
new: Version : 111.0.5563.147
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\111.0.5563.112\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\111.0.5563.147\elevation_service.exe"
system - scheduled tasks - \GoogleUpdateTaskMachineCore
old: Task To Run : C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
new: Task To Run : "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
old: Power Management : Stop On Battery Mode
new: Power Management :
system - scheduled tasks - \GoogleUpdateTaskMachineUA
old: Task To Run : C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
new: Task To Run : "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /ua /installsource scheduler
old: Power Management : Stop On Battery Mode
new: Power Management :
Top Runs Differences at: 2023-03-28 17.55.29
remark :
runtime : 17
count : 16
previous date : 2023-03-27
previous time : 17.55.29
software - product - Google Chrome
old: Version : 111.0.5563.111
new: Version : 111.0.5563.112
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\111.0.5563.111\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\111.0.5563.112\elevation_service.exe"
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2023-03-27 17.55.29
remark :
runtime : 17
count : 2
previous date : 2023-03-26
previous time : 17.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 111.0.1661.51
new: Version : 111.0.1661.54
Top Runs Differences at: 2023-03-26 17.55.29
remark :
runtime : 25
count : 168
previous date : 2023-03-25
previous time : 19.10.35
general
old: CurrentTimeZone:60
old: DaylightInEffect:0
new: CurrentTimeZone:120
new: DaylightInEffect:1
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: Version : 111.0.1661.51
new: Version : 111.0.1661.54
system - services - survey
new: AarSvc_720d2f Manual Unknown Agent Activation Runtime_720d2f
new: BcastDVRUserService_720d2f Manual Unknown Användartjänst för Spel-DVR och sändning_720d2f
new: BluetoothUserService_720d2f Manual Unknown Bluetooth User Support Service_720d2f
new: CaptureService_720d2f Manual Unknown CaptureService_720d2f
new: cbdhsvc_720d2f Manual Unknown Clipboard User Service_720d2f
new: CDPUserSvc_720d2f Auto Unknown Connected Devices Platform User Service_720d2f
new: ConsentUxUserSvc_720d2f Manual Unknown ConsentUX_720d2f
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_720d2f
new: DeviceAssociationBrokerSvc_720 Manual Unknown DeviceAssociationBroker_720d2f
new: DevicePickerUserSvc_720d2f Manual Unknown DevicePicker_720d2f
new: DevicesFlowUserSvc_720d2f Manual Unknown DevicesFlow_720d2f
new: MessagingService_720d2f Manual Unknown MessagingService_720d2f
new: OneSyncSvc_720d2f Auto Unknown Synkroniseringsvärd_720d2f
new: PimIndexMaintenanceSvc_720d2f Manual Unknown Contact Data_720d2f
new: PrintWorkflowUserSvc_720d2f Manual Unknown PrintWorkflow_720d2f
new: UdkUserSvc_720d2f Manual Unknown Udk-användartjänst_720d2f
new: UnistoreSvc_720d2f Manual Unknown User Data Storage_720d2f
new: UserDataSvc_720d2f Manual Unknown User Data Access_720d2f
new: WpnUserService_720d2f Auto Unknown Windows Push Notifications User Service_720d2f
system - services - AarSvc_720d2f
new: DisplayName : Agent Activation Runtime_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_720d2f
new: DisplayName : Användartjänst för Spel-DVR och sändning_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_720d2f
new: DisplayName : Bluetooth User Support Service_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_720d2f
new: DisplayName : CaptureService_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_720d2f
new: DisplayName : Clipboard User Service_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_720d2f
new: DisplayName : Connected Devices Platform User Service_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_720d2f
new: DisplayName : ConsentUX_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_720d2f
new: DisplayName : CredentialEnrollmentManagerUserSvc_720d2f
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_720d2f
new: DisplayName : DeviceAssociationBroker_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_720d2f
new: DisplayName : DevicePicker_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_720d2f
new: DisplayName : DevicesFlow_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_720d2f
new: DisplayName : MessagingService_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\111.0.1661.51\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\111.0.1661.54\elevation_service.exe"
system - services - OneSyncSvc_720d2f
new: DisplayName : Synkroniseringsvärd_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_720d2f
new: DisplayName : Contact Data_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_720d2f
new: DisplayName : PrintWorkflow_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_720d2f
new: DisplayName : Udk-användartjänst_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_720d2f
new: DisplayName : User Data Storage_720d2f
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_720d2f
new: DisplayName : User Data Access_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_720d2f
new: DisplayName : Windows Push Notifications User Service_720d2f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2023-03-25 19.10.35
remark :
runtime : 38
count : 203
previous date : 2023-03-25
previous time : 17.13.38
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 111.0.5563.65
new: Version : 111.0.5563.111
software - product - Microsoft Edge
old: Version : 111.0.1661.44
new: Version : 111.0.1661.51
software - product - Microsoft Edge WebView2 Runtime
old: Version : 111.0.1661.44
new: Version : 111.0.1661.51
system - SystemDriver - MsSecCore
new: AcceptPause : 0
new: Description : Startdrivrutin för Microsoft Security Core
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\msseccore.sys
new: ServiceType : Kernel Driver
new: StartMode : Boot
system - SystemDriver - MsSecFlt
old: StartMode : Boot
new: StartMode : Manual
system - SystemDriver - MsSecWfp
new: AcceptPause : 0
new: Description : Microsoft-drivrutin för WFP-pratbubbla för säkerhet
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\mssecwfp.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - hotfix - KB5023696
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5023773
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5023794
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_5b61f6 Manual Unknown Agent Activation Runtime_5b61f6
old: BcastDVRUserService_5b61f6 Manual Unknown Användartjänst för Spel-DVR och sändning_5b61f6
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_5b61f6 Manual Unknown Bluetooth User Support Service_5b61f6
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_5b61f6 Manual Unknown CaptureService_5b61f6
old: cbdhsvc_5b61f6 Manual Unknown Clipboard User Service_5b61f6
old: CDPUserSvc_5b61f6 Auto Unknown Connected Devices Platform User Service_5b61f6
old: ConsentUxUserSvc_5b61f6 Manual Unknown ConsentUX_5b61f6
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_5b61f6
old: DeviceAssociationBrokerSvc_5b6 Manual Unknown DeviceAssociationBroker_5b61f6
old: DevicePickerUserSvc_5b61f6 Manual Unknown DevicePicker_5b61f6
old: DevicesFlowUserSvc_5b61f6 Manual Unknown DevicesFlow_5b61f6
old: MessagingService_5b61f6 Manual Unknown MessagingService_5b61f6
old: OneSyncSvc_5b61f6 Auto Unknown Synkroniseringsvärd_5b61f6
old: PimIndexMaintenanceSvc_5b61f6 Manual Unknown Contact Data_5b61f6
old: PrintWorkflowUserSvc_5b61f6 Manual Unknown PrintWorkflow_5b61f6
old: UdkUserSvc_5b61f6 Manual Unknown Udk-användartjänst_5b61f6
old: UnistoreSvc_5b61f6 Manual Unknown User Data Storage_5b61f6
old: UserDataSvc_5b61f6 Manual Unknown User Data Access_5b61f6
old: WpnUserService_5b61f6 Auto Unknown Windows Push Notifications User Service_5b61f6
system - services - AarSvc_5b61f6
old: DisplayName : Agent Activation Runtime_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_5b61f6
old: DisplayName : Användartjänst för Spel-DVR och sändning_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_5b61f6
old: DisplayName : Bluetooth User Support Service_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_5b61f6
old: DisplayName : CaptureService_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_5b61f6
old: DisplayName : Clipboard User Service_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_5b61f6
old: DisplayName : Connected Devices Platform User Service_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_5b61f6
old: DisplayName : ConsentUX_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_5b61f6
old: DisplayName : CredentialEnrollmentManagerUserSvc_5b61f6
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_5b61f6
old: DisplayName : DeviceAssociationBroker_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_5b61f6
old: DisplayName : DevicePicker_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_5b61f6
old: DisplayName : DevicesFlow_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\111.0.5563.65\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\111.0.5563.111\elevation_service.exe"
system - services - MessagingService_5b61f6
old: DisplayName : MessagingService_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\111.0.1661.44\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\111.0.1661.51\elevation_service.exe"
system - services - OneSyncSvc_5b61f6
old: DisplayName : Synkroniseringsvärd_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_5b61f6
old: DisplayName : Contact Data_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_5b61f6
old: DisplayName : PrintWorkflow_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_5b61f6
old: DisplayName : Udk-användartjänst_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_5b61f6
old: DisplayName : User Data Storage_5b61f6
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_5b61f6
old: DisplayName : User Data Access_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_5b61f6
old: DisplayName : Windows Push Notifications User Service_5b61f6
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2023-03-25 17.13.38
remark :
runtime : 370
count : 152
previous date : 2023-03-21
previous time : 17.51.51
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_5b61f6 Manual Unknown Agent Activation Runtime_5b61f6
new: BcastDVRUserService_5b61f6 Manual Unknown Användartjänst för Spel-DVR och sändning_5b61f6
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_5b61f6 Manual Unknown Bluetooth User Support Service_5b61f6
new: CaptureService_5b61f6 Manual Unknown CaptureService_5b61f6
new: cbdhsvc_5b61f6 Manual Unknown Clipboard User Service_5b61f6
new: CDPUserSvc_5b61f6 Auto Unknown Connected Devices Platform User Service_5b61f6
new: ConsentUxUserSvc_5b61f6 Manual Unknown ConsentUX_5b61f6
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_5b61f6
new: DeviceAssociationBrokerSvc_5b6 Manual Unknown DeviceAssociationBroker_5b61f6
new: DevicePickerUserSvc_5b61f6 Manual Unknown DevicePicker_5b61f6
new: DevicesFlowUserSvc_5b61f6 Manual Unknown DevicesFlow_5b61f6
new: MessagingService_5b61f6 Manual Unknown MessagingService_5b61f6
new: OneSyncSvc_5b61f6 Auto Unknown Synkroniseringsvärd_5b61f6
new: PimIndexMaintenanceSvc_5b61f6 Manual Unknown Contact Data_5b61f6
new: PrintWorkflowUserSvc_5b61f6 Manual Unknown PrintWorkflow_5b61f6
new: UdkUserSvc_5b61f6 Manual Unknown Udk-användartjänst_5b61f6
new: UnistoreSvc_5b61f6 Manual Unknown User Data Storage_5b61f6
new: UserDataSvc_5b61f6 Manual Unknown User Data Access_5b61f6
new: WpnUserService_5b61f6 Auto Unknown Windows Push Notifications User Service_5b61f6
system - services - AarSvc_5b61f6
new: DisplayName : Agent Activation Runtime_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_5b61f6
new: DisplayName : Användartjänst för Spel-DVR och sändning_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_5b61f6
new: DisplayName : Bluetooth User Support Service_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_5b61f6
new: DisplayName : CaptureService_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_5b61f6
new: DisplayName : Clipboard User Service_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_5b61f6
new: DisplayName : Connected Devices Platform User Service_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_5b61f6
new: DisplayName : ConsentUX_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_5b61f6
new: DisplayName : CredentialEnrollmentManagerUserSvc_5b61f6
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_5b61f6
new: DisplayName : DeviceAssociationBroker_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_5b61f6
new: DisplayName : DevicePicker_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_5b61f6
new: DisplayName : DevicesFlow_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_5b61f6
new: DisplayName : MessagingService_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_5b61f6
new: DisplayName : Synkroniseringsvärd_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_5b61f6
new: DisplayName : Contact Data_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_5b61f6
new: DisplayName : PrintWorkflow_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_5b61f6
new: DisplayName : Udk-användartjänst_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_5b61f6
new: DisplayName : User Data Storage_5b61f6
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_5b61f6
new: DisplayName : User Data Access_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_5b61f6
new: DisplayName : Windows Push Notifications User Service_5b61f6
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2023-03-21 17.51.51
remark :
runtime : 26
count : 148
previous date : 2023-03-21
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - services - survey
old: AarSvc_3cac1e Manual Unknown Agent Activation Runtime_3cac1e
old: BcastDVRUserService_3cac1e Manual Unknown Användartjänst för Spel-DVR och sändning_3cac1e
old: BluetoothUserService_3cac1e Manual Unknown Bluetooth User Support Service_3cac1e
old: CaptureService_3cac1e Manual Unknown CaptureService_3cac1e
old: cbdhsvc_3cac1e Manual Unknown Clipboard User Service_3cac1e
old: CDPUserSvc_3cac1e Auto Unknown Connected Devices Platform User Service_3cac1e
old: ConsentUxUserSvc_3cac1e Manual Unknown ConsentUX_3cac1e
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3cac1e
old: DeviceAssociationBrokerSvc_3ca Manual Unknown DeviceAssociationBroker_3cac1e
old: DevicePickerUserSvc_3cac1e Manual Unknown DevicePicker_3cac1e
old: DevicesFlowUserSvc_3cac1e Manual Unknown DevicesFlow_3cac1e
old: MessagingService_3cac1e Manual Unknown MessagingService_3cac1e
old: OneSyncSvc_3cac1e Auto Unknown Synkroniseringsvärd_3cac1e
old: PimIndexMaintenanceSvc_3cac1e Manual Unknown Contact Data_3cac1e
old: PrintWorkflowUserSvc_3cac1e Manual Unknown PrintWorkflow_3cac1e
old: UdkUserSvc_3cac1e Manual Unknown Udk-användartjänst_3cac1e
old: UnistoreSvc_3cac1e Manual Unknown User Data Storage_3cac1e
old: UserDataSvc_3cac1e Manual Unknown User Data Access_3cac1e
old: WpnUserService_3cac1e Auto Unknown Windows Push Notifications User Service_3cac1e
system - services - AarSvc_3cac1e
old: DisplayName : Agent Activation Runtime_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_3cac1e
old: DisplayName : Användartjänst för Spel-DVR och sändning_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_3cac1e
old: DisplayName : Bluetooth User Support Service_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_3cac1e
old: DisplayName : CaptureService_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_3cac1e
old: DisplayName : Clipboard User Service_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_3cac1e
old: DisplayName : Connected Devices Platform User Service_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_3cac1e
old: DisplayName : ConsentUX_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3cac1e
old: DisplayName : CredentialEnrollmentManagerUserSvc_3cac1e
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_3cac1e
old: DisplayName : DeviceAssociationBroker_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_3cac1e
old: DisplayName : DevicePicker_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_3cac1e
old: DisplayName : DevicesFlow_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_3cac1e
old: DisplayName : MessagingService_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_3cac1e
old: DisplayName : Synkroniseringsvärd_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_3cac1e
old: DisplayName : Contact Data_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_3cac1e
old: DisplayName : PrintWorkflow_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_3cac1e
old: DisplayName : Udk-användartjänst_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_3cac1e
old: DisplayName : User Data Storage_3cac1e
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_3cac1e
old: DisplayName : User Data Access_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_3cac1e
old: DisplayName : Windows Push Notifications User Service_3cac1e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2023-03-21 16.55.30
remark :
runtime : 17
count : 16
previous date : 2023-03-20
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 72.0.2.0
new: Version : 72.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\72.0.3.0\GoogleDriveFS.exe
Top Runs Differences at: 2023-03-19 16.55.30
remark :
runtime : 21
count : 6
previous date : 2023-03-18
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 111.0.1661.41
new: Version : 111.0.1661.44
software - product - Microsoft Edge WebView2 Runtime
old: Version : 110.0.1587.69
new: Version : 111.0.1661.44
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\111.0.1661.41\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\111.0.1661.44\elevation_service.exe"
Top Runs Differences at: 2023-03-18 16.55.30
remark :
runtime : 17
count : 2
previous date : 2023-03-17
previous time : 16.55.30
software - product - Microsoft Edge Update
old: Version : 1.3.173.49
new: Version : 1.3.173.51
Top Runs Differences at: 2023-03-17 16.55.30
remark :
runtime : 17
count : 16
previous date : 2023-03-16
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 71.0.3.0
new: Version : 72.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\72.0.2.0\GoogleDriveFS.exe
Top Runs Differences at: 2023-03-16 16.55.30
remark :
runtime : 19
count : 7
previous date : 2023-03-15
previous time : 16.55.30
system - SystemDriver - MpKsl7590be73
old: AcceptPause : 0
old: Description : MpKsl7590be73
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{602A6B1F-53FF-450A-AD97-338283951001}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2023-03-15 16.55.30
remark :
runtime : 16
count : 171
previous date : 2023-03-14
previous time : 20.42.02
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: Version : 110.0.1587.69
new: Version : 111.0.1661.41
system - SystemDriver - MpKsl7590be73
new: AcceptPause : 0
new: Description : MpKsl7590be73
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{602A6B1F-53FF-450A-AD97-338283951001}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
new: AarSvc_3cac1e Manual Unknown Agent Activation Runtime_3cac1e
new: BcastDVRUserService_3cac1e Manual Unknown Användartjänst för Spel-DVR och sändning_3cac1e
new: BluetoothUserService_3cac1e Manual Unknown Bluetooth User Support Service_3cac1e
new: CaptureService_3cac1e Manual Unknown CaptureService_3cac1e
new: cbdhsvc_3cac1e Manual Unknown Clipboard User Service_3cac1e
new: CDPUserSvc_3cac1e Auto Unknown Connected Devices Platform User Service_3cac1e
new: ConsentUxUserSvc_3cac1e Manual Unknown ConsentUX_3cac1e
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3cac1e
new: DeviceAssociationBrokerSvc_3ca Manual Unknown DeviceAssociationBroker_3cac1e
new: DevicePickerUserSvc_3cac1e Manual Unknown DevicePicker_3cac1e
new: DevicesFlowUserSvc_3cac1e Manual Unknown DevicesFlow_3cac1e
new: MessagingService_3cac1e Manual Unknown MessagingService_3cac1e
new: OneSyncSvc_3cac1e Auto Unknown Synkroniseringsvärd_3cac1e
new: PimIndexMaintenanceSvc_3cac1e Manual Unknown Contact Data_3cac1e
new: PrintWorkflowUserSvc_3cac1e Manual Unknown PrintWorkflow_3cac1e
new: UdkUserSvc_3cac1e Manual Unknown Udk-användartjänst_3cac1e
new: UnistoreSvc_3cac1e Manual Unknown User Data Storage_3cac1e
new: UserDataSvc_3cac1e Manual Unknown User Data Access_3cac1e
new: WpnUserService_3cac1e Auto Unknown Windows Push Notifications User Service_3cac1e
system - services - AarSvc_3cac1e
new: DisplayName : Agent Activation Runtime_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_3cac1e
new: DisplayName : Användartjänst för Spel-DVR och sändning_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_3cac1e
new: DisplayName : Bluetooth User Support Service_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_3cac1e
new: DisplayName : CaptureService_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_3cac1e
new: DisplayName : Clipboard User Service_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_3cac1e
new: DisplayName : Connected Devices Platform User Service_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_3cac1e
new: DisplayName : ConsentUX_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3cac1e
new: DisplayName : CredentialEnrollmentManagerUserSvc_3cac1e
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_3cac1e
new: DisplayName : DeviceAssociationBroker_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_3cac1e
new: DisplayName : DevicePicker_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_3cac1e
new: DisplayName : DevicesFlow_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_3cac1e
new: DisplayName : MessagingService_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.69\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\111.0.1661.41\elevation_service.exe"
system - services - OneSyncSvc_3cac1e
new: DisplayName : Synkroniseringsvärd_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_3cac1e
new: DisplayName : Contact Data_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_3cac1e
new: DisplayName : PrintWorkflow_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_3cac1e
new: DisplayName : Udk-användartjänst_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_3cac1e
new: DisplayName : User Data Storage_3cac1e
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_3cac1e
new: DisplayName : User Data Access_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_3cac1e
new: DisplayName : Windows Push Notifications User Service_3cac1e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2023-03-14 20.42.02
remark :
runtime : 32
count : 170
previous date : 2023-03-14
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5022906
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5023696
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_6a6134 Manual Unknown Agent Activation Runtime_6a6134
old: BcastDVRUserService_6a6134 Manual Unknown Användartjänst för Spel-DVR och sändning_6a6134
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_6a6134 Manual Unknown Bluetooth User Support Service_6a6134
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_6a6134 Manual Unknown CaptureService_6a6134
old: cbdhsvc_6a6134 Manual Unknown Clipboard User Service_6a6134
old: CDPUserSvc_6a6134 Auto Unknown Connected Devices Platform User Service_6a6134
old: ConsentUxUserSvc_6a6134 Manual Unknown ConsentUX_6a6134
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_6a6134
old: DeviceAssociationBrokerSvc_6a6 Manual Unknown DeviceAssociationBroker_6a6134
old: DevicePickerUserSvc_6a6134 Manual Unknown DevicePicker_6a6134
old: DevicesFlowUserSvc_6a6134 Manual Unknown DevicesFlow_6a6134
old: MessagingService_6a6134 Manual Unknown MessagingService_6a6134
old: OneSyncSvc_6a6134 Auto Unknown Synkroniseringsvärd_6a6134
old: PimIndexMaintenanceSvc_6a6134 Manual Unknown Contact Data_6a6134
old: PrintWorkflowUserSvc_6a6134 Manual Unknown PrintWorkflow_6a6134
old: UdkUserSvc_6a6134 Manual Unknown Udk-användartjänst_6a6134
old: UnistoreSvc_6a6134 Manual Unknown User Data Storage_6a6134
old: UserDataSvc_6a6134 Manual Unknown User Data Access_6a6134
old: WpnUserService_6a6134 Auto Unknown Windows Push Notifications User Service_6a6134
system - services - AarSvc_6a6134
old: DisplayName : Agent Activation Runtime_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_6a6134
old: DisplayName : Användartjänst för Spel-DVR och sändning_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_6a6134
old: DisplayName : Bluetooth User Support Service_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_6a6134
old: DisplayName : CaptureService_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_6a6134
old: DisplayName : Clipboard User Service_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_6a6134
old: DisplayName : Connected Devices Platform User Service_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_6a6134
old: DisplayName : ConsentUX_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_6a6134
old: DisplayName : CredentialEnrollmentManagerUserSvc_6a6134
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_6a6134
old: DisplayName : DeviceAssociationBroker_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_6a6134
old: DisplayName : DevicePicker_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_6a6134
old: DisplayName : DevicesFlow_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_6a6134
old: DisplayName : MessagingService_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_6a6134
old: DisplayName : Synkroniseringsvärd_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_6a6134
old: DisplayName : Contact Data_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_6a6134
old: DisplayName : PrintWorkflow_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_6a6134
old: DisplayName : Udk-användartjänst_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_6a6134
old: DisplayName : User Data Storage_6a6134
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_6a6134
old: DisplayName : User Data Access_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_6a6134
old: DisplayName : Windows Push Notifications User Service_6a6134
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2023-03-14 16.55.29
remark :
runtime : 17
count : 8
previous date : 2023-03-13
previous time : 16.55.29
software - product - Google Chrome
old: Version : 110.0.5481.180
new: Version : 111.0.5563.65
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\110.0.5481.180\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\111.0.5563.65\elevation_service.exe"
Top Runs Differences at: 2023-03-12 16.55.29
remark :
runtime : 22
count : 2
previous date : 2023-03-11
previous time : 16.55.29
software - product - Microsoft Edge WebView2 Runtime
old: Version : 110.0.1587.63
new: Version : 110.0.1587.69
Top Runs Differences at: 2023-03-11 16.55.29
remark :
runtime : 16
count : 4
previous date : 2023-03-10
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 110.0.1587.63
new: Version : 110.0.1587.69
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.63\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.69\elevation_service.exe"
Top Runs Differences at: 2023-03-10 16.55.29
remark :
runtime : 16
count : 4
previous date : 2023-03-09
previous time : 16.55.29
software - product - Google Chrome
old: Version : 110.0.5481.178
new: Version : 110.0.5481.180
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\110.0.5481.178\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\110.0.5481.180\elevation_service.exe"
Top Runs Differences at: 2023-03-07 16.55.29
remark :
runtime : 16
count : 160
previous date : 2023-03-06
previous time : 17.00.41
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_6a6134 Manual Unknown Agent Activation Runtime_6a6134
new: BcastDVRUserService_6a6134 Manual Unknown Användartjänst för Spel-DVR och sändning_6a6134
new: BluetoothUserService_6a6134 Manual Unknown Bluetooth User Support Service_6a6134
new: CaptureService_6a6134 Manual Unknown CaptureService_6a6134
new: cbdhsvc_6a6134 Manual Unknown Clipboard User Service_6a6134
new: CDPUserSvc_6a6134 Auto Unknown Connected Devices Platform User Service_6a6134
new: ConsentUxUserSvc_6a6134 Manual Unknown ConsentUX_6a6134
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_6a6134
new: DeviceAssociationBrokerSvc_6a6 Manual Unknown DeviceAssociationBroker_6a6134
new: DevicePickerUserSvc_6a6134 Manual Unknown DevicePicker_6a6134
new: DevicesFlowUserSvc_6a6134 Manual Unknown DevicesFlow_6a6134
new: MessagingService_6a6134 Manual Unknown MessagingService_6a6134
new: OneSyncSvc_6a6134 Auto Unknown Synkroniseringsvärd_6a6134
new: PimIndexMaintenanceSvc_6a6134 Manual Unknown Contact Data_6a6134
new: PrintWorkflowUserSvc_6a6134 Manual Unknown PrintWorkflow_6a6134
new: UdkUserSvc_6a6134 Manual Unknown Udk-användartjänst_6a6134
new: UnistoreSvc_6a6134 Manual Unknown User Data Storage_6a6134
new: UserDataSvc_6a6134 Manual Unknown User Data Access_6a6134
new: WpnUserService_6a6134 Auto Unknown Windows Push Notifications User Service_6a6134
system - services - AarSvc_6a6134
new: DisplayName : Agent Activation Runtime_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_6a6134
new: DisplayName : Användartjänst för Spel-DVR och sändning_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_6a6134
new: DisplayName : Bluetooth User Support Service_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_6a6134
new: DisplayName : CaptureService_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_6a6134
new: DisplayName : Clipboard User Service_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_6a6134
new: DisplayName : Connected Devices Platform User Service_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_6a6134
new: DisplayName : ConsentUX_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_6a6134
new: DisplayName : CredentialEnrollmentManagerUserSvc_6a6134
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_6a6134
new: DisplayName : DeviceAssociationBroker_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_6a6134
new: DisplayName : DevicePicker_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_6a6134
new: DisplayName : DevicesFlow_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_6a6134
new: DisplayName : MessagingService_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_6a6134
new: DisplayName : Synkroniseringsvärd_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_6a6134
new: DisplayName : Contact Data_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_6a6134
new: DisplayName : PrintWorkflow_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_6a6134
new: DisplayName : Udk-användartjänst_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_6a6134
new: DisplayName : User Data Storage_6a6134
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_6a6134
new: DisplayName : User Data Access_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_6a6134
new: DisplayName : Windows Push Notifications User Service_6a6134
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2023-03-06 16.55.31
remark :
runtime : 39
count : 188
previous date : 2023-03-05
previous time : 16.55.45
general
old: user:Administrator
new: user:administrator
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
old: User : CORP\Administrator
new: User : CORP\administrator
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - SystemDriver - googledrivefs3758
old: AcceptPause : 0
old: Description : googledrivefs3758
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\DRIVERS\googledrivefs3758.sys
old: ServiceType : File System Driver
old: StartMode : Disabled
system - hotfix - KB5022834
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5022906
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5022924
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_5236d3a Manual Unknown Agent Activation Runtime_5236d3a
old: BcastDVRUserService_5236d3a Manual Unknown Användartjänst för Spel-DVR och sändning_5236d3a
old: BluetoothUserService_5236d3a Manual Unknown Bluetooth User Support Service_5236d3a
old: CaptureService_5236d3a Manual Unknown CaptureService_5236d3a
old: cbdhsvc_5236d3a Manual Unknown Clipboard User Service_5236d3a
old: CDPUserSvc_5236d3a Auto Unknown Connected Devices Platform User Service_5236d3a
old: ConsentUxUserSvc_5236d3a Manual Unknown ConsentUX_5236d3a
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_5236d3a
old: DeviceAssociationBrokerSvc_523 Manual Unknown DeviceAssociationBroker_5236d3a
old: DevicePickerUserSvc_5236d3a Manual Unknown DevicePicker_5236d3a
old: DevicesFlowUserSvc_5236d3a Manual Unknown DevicesFlow_5236d3a
old: MessagingService_5236d3a Manual Unknown MessagingService_5236d3a
old: OneSyncSvc_5236d3a Auto Unknown Synkroniseringsvärd_5236d3a
old: PimIndexMaintenanceSvc_5236d3a Manual Unknown Contact Data_5236d3a
old: PrintWorkflowUserSvc_5236d3a Manual Unknown PrintWorkflow_5236d3a
old: UdkUserSvc_5236d3a Manual Unknown Udk-användartjänst_5236d3a
old: UnistoreSvc_5236d3a Manual Unknown User Data Storage_5236d3a
old: UserDataSvc_5236d3a Manual Unknown User Data Access_5236d3a
old: WpnUserService_5236d3a Auto Unknown Windows Push Notifications User Service_5236d3a
system - services - AarSvc_5236d3a
old: DisplayName : Agent Activation Runtime_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_5236d3a
old: DisplayName : Användartjänst för Spel-DVR och sändning_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_5236d3a
old: DisplayName : Bluetooth User Support Service_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_5236d3a
old: DisplayName : CaptureService_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_5236d3a
old: DisplayName : Clipboard User Service_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_5236d3a
old: DisplayName : Connected Devices Platform User Service_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_5236d3a
old: DisplayName : ConsentUX_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_5236d3a
old: DisplayName : CredentialEnrollmentManagerUserSvc_5236d3a
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_5236d3a
old: DisplayName : DeviceAssociationBroker_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_5236d3a
old: DisplayName : DevicePicker_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_5236d3a
old: DisplayName : DevicesFlow_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_5236d3a
old: DisplayName : MessagingService_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_5236d3a
old: DisplayName : Synkroniseringsvärd_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_5236d3a
old: DisplayName : Contact Data_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_5236d3a
old: DisplayName : PrintWorkflow_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_5236d3a
old: DisplayName : Udk-användartjänst_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_5236d3a
old: DisplayName : User Data Storage_5236d3a
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_5236d3a
old: DisplayName : User Data Access_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_5236d3a
old: DisplayName : Windows Push Notifications User Service_5236d3a
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \SCC
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : Administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : Administrator
new: Run As User : administrator
Top Runs Differences at: 2023-03-05 16.55.45
remark :
runtime : 16
count : 18
previous date : 2023-03-04
previous time : 16.55.30
general
old: user:administrator
new: user:Administrator
boot - startup - GoogleDriveFS
old: User : CORP\administrator
new: User : CORP\Administrator
software - product - Microsoft Edge
old: Version : 110.0.1587.57
new: Version : 110.0.1587.63
software - product - Microsoft Edge WebView2 Runtime
old: Version : 110.0.1587.57
new: Version : 110.0.1587.63
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.57\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.63\elevation_service.exe"
system - scheduled tasks - \SCC
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : administrator
new: Run As User : Administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : administrator
new: Run As User : Administrator
Top Runs Differences at: 2023-03-03 16.55.30
remark :
runtime : 19
count : 7
previous date : 2023-03-02
previous time : 16.55.30
system - SystemDriver - MpKsl20fe3549
old: AcceptPause : 0
old: Description : MpKsl20fe3549
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9924CD3E-265C-4DAF-A68C-F90A6354F955}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2023-03-02 16.55.30
remark :
runtime : 16
count : 9
previous date : 2023-03-01
previous time : 16.55.30
software - product - Microsoft Edge Update
old: Version : 1.3.173.45
new: Version : 1.3.173.49
system - SystemDriver - MpKsl20fe3549
new: AcceptPause : 0
new: Description : MpKsl20fe3549
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9924CD3E-265C-4DAF-A68C-F90A6354F955}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2023-02-28 16.55.30
remark :
runtime : 16
count : 24
previous date : 2023-02-27
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe --startup_mode
software - product - Google Chrome
old: Version : 110.0.5481.177
new: Version : 110.0.5481.178
software - product - Google Drive
old: Version : 70.0.2.0
new: Version : 71.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe
software - product - Microsoft Edge WebView2 Runtime
old: Version : 110.0.1587.56
new: Version : 110.0.1587.57
system - SystemDriver - googledrivefs3758
old: StartMode : System
new: StartMode : Disabled
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\110.0.5481.177\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\110.0.5481.178\elevation_service.exe"
Top Runs Differences at: 2023-02-27 16.55.30
remark :
runtime : 17
count : 4
previous date : 2023-02-26
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 110.0.1587.56
new: Version : 110.0.1587.57
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.56\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.57\elevation_service.exe"
Top Runs Differences at: 2023-02-26 16.55.30
remark :
runtime : 18
count : 6
previous date : 2023-02-25
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 110.0.1587.50
new: Version : 110.0.1587.56
software - product - Microsoft Edge WebView2 Runtime
old: Version : 110.0.1587.50
new: Version : 110.0.1587.56
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.50\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.56\elevation_service.exe"
Top Runs Differences at: 2023-02-23 16.55.30
remark :
runtime : 17
count : 11
previous date : 2023-02-22
previous time : 16.55.30
software - product - Google Chrome
old: Version : 110.0.5481.104
new: Version : 110.0.5481.177
system - SystemDriver - MpKsl3f95281a
old: AcceptPause : 0
old: Description : MpKsl3f95281a
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1100BA3B-52DC-49B3-8E4C-32E3D07E01BC}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\110.0.5481.104\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\110.0.5481.177\elevation_service.exe"
Top Runs Differences at: 2023-02-22 16.55.30
remark :
runtime : 17
count : 11
previous date : 2023-02-21
previous time : 16.55.30
software - product - Google Chrome
old: Version : 109.0.5414.121
new: Version : 110.0.5481.104
system - SystemDriver - MpKsl3f95281a
new: AcceptPause : 0
new: Description : MpKsl3f95281a
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1100BA3B-52DC-49B3-8E4C-32E3D07E01BC}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.121\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\110.0.5481.104\elevation_service.exe"
Top Runs Differences at: 2023-02-20 16.55.30
remark :
runtime : 16
count : 8
previous date : 2023-02-19
previous time : 16.55.30
software - product - JMRI - Java Model Railroad Interface
old: Version : 5.0+Rc441642522
new: Version : 5.2+R760b98537f
software - product - Microsoft Edge
old: Version : 110.0.1587.49
new: Version : 110.0.1587.50
software - product - Microsoft Edge WebView2 Runtime
old: Version : 110.0.1587.49
new: Version : 110.0.1587.50
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.49\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.50\elevation_service.exe"
Top Runs Differences at: 2023-02-19 16.55.30
remark :
runtime : 24
count : 2
previous date : 2023-02-18
previous time : 16.55.30
software - product - Microsoft Edge WebView2 Runtime
old: Version : 110.0.1587.46
new: Version : 110.0.1587.49
Top Runs Differences at: 2023-02-18 16.55.30
remark :
runtime : 17
count : 164
previous date : 2023-02-17
previous time : 16.55.30
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: Version : 110.0.1587.46
new: Version : 110.0.1587.49
system - services - survey
new: AarSvc_5236d3a Manual Unknown Agent Activation Runtime_5236d3a
new: BcastDVRUserService_5236d3a Manual Unknown Användartjänst för Spel-DVR och sändning_5236d3a
new: BluetoothUserService_5236d3a Manual Unknown Bluetooth User Support Service_5236d3a
new: CaptureService_5236d3a Manual Unknown CaptureService_5236d3a
new: cbdhsvc_5236d3a Manual Unknown Clipboard User Service_5236d3a
new: CDPUserSvc_5236d3a Auto Unknown Connected Devices Platform User Service_5236d3a
new: ConsentUxUserSvc_5236d3a Manual Unknown ConsentUX_5236d3a
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_5236d3a
new: DeviceAssociationBrokerSvc_523 Manual Unknown DeviceAssociationBroker_5236d3a
new: DevicePickerUserSvc_5236d3a Manual Unknown DevicePicker_5236d3a
new: DevicesFlowUserSvc_5236d3a Manual Unknown DevicesFlow_5236d3a
new: MessagingService_5236d3a Manual Unknown MessagingService_5236d3a
new: OneSyncSvc_5236d3a Auto Unknown Synkroniseringsvärd_5236d3a
new: PimIndexMaintenanceSvc_5236d3a Manual Unknown Contact Data_5236d3a
new: PrintWorkflowUserSvc_5236d3a Manual Unknown PrintWorkflow_5236d3a
new: UdkUserSvc_5236d3a Manual Unknown Udk-användartjänst_5236d3a
new: UnistoreSvc_5236d3a Manual Unknown User Data Storage_5236d3a
new: UserDataSvc_5236d3a Manual Unknown User Data Access_5236d3a
new: WpnUserService_5236d3a Auto Unknown Windows Push Notifications User Service_5236d3a
system - services - AarSvc_5236d3a
new: DisplayName : Agent Activation Runtime_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_5236d3a
new: DisplayName : Användartjänst för Spel-DVR och sändning_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_5236d3a
new: DisplayName : Bluetooth User Support Service_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_5236d3a
new: DisplayName : CaptureService_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_5236d3a
new: DisplayName : Clipboard User Service_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_5236d3a
new: DisplayName : Connected Devices Platform User Service_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_5236d3a
new: DisplayName : ConsentUX_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_5236d3a
new: DisplayName : CredentialEnrollmentManagerUserSvc_5236d3a
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_5236d3a
new: DisplayName : DeviceAssociationBroker_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_5236d3a
new: DisplayName : DevicePicker_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_5236d3a
new: DisplayName : DevicesFlow_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_5236d3a
new: DisplayName : MessagingService_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.46\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.49\elevation_service.exe"
system - services - OneSyncSvc_5236d3a
new: DisplayName : Synkroniseringsvärd_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_5236d3a
new: DisplayName : Contact Data_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_5236d3a
new: DisplayName : PrintWorkflow_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_5236d3a
new: DisplayName : Udk-användartjänst_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_5236d3a
new: DisplayName : User Data Storage_5236d3a
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_5236d3a
new: DisplayName : User Data Access_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_5236d3a
new: DisplayName : Windows Push Notifications User Service_5236d3a
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2023-02-17 16.55.30
remark :
runtime : 15
count : 6
previous date : 2023-02-16
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 110.0.1587.41
new: Version : 110.0.1587.46
software - product - Microsoft Edge WebView2 Runtime
old: Version : 109.0.1518.78
new: Version : 110.0.1587.46
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.41\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.46\elevation_service.exe"
Top Runs Differences at: 2023-02-16 16.55.30
remark :
runtime : 15
count : 7
previous date : 2023-02-15
previous time : 16.55.30
system - SystemDriver - MpKsl6a09ebda
old: AcceptPause : 0
old: Description : MpKsl6a09ebda
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6A128815-3C0C-4602-9995-DACD289B0690}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2023-02-15 16.55.30
remark :
runtime : 16
count : 19
previous date : 2023-02-14
previous time : 21.51.01
system - SystemDriver - MpKsl6a09ebda
new: AcceptPause : 0
new: Description : MpKsl6a09ebda
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6A128815-3C0C-4602-9995-DACD289B0690}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2023-02-14 21.51.01
remark :
runtime : 35
count : 172
previous date : 2023-02-14
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5019275
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5022405
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5022502
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5022834
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_4c672c Manual Unknown Agent Activation Runtime_4c672c
old: BcastDVRUserService_4c672c Manual Unknown Användartjänst för Spel-DVR och sändning_4c672c
old: BluetoothUserService_4c672c Manual Unknown Bluetooth User Support Service_4c672c
old: CaptureService_4c672c Manual Unknown CaptureService_4c672c
old: cbdhsvc_4c672c Manual Unknown Clipboard User Service_4c672c
old: CDPUserSvc_4c672c Auto Unknown Connected Devices Platform User Service_4c672c
old: ConsentUxUserSvc_4c672c Manual Unknown ConsentUX_4c672c
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_4c672c
old: DeviceAssociationBrokerSvc_4c6 Manual Unknown DeviceAssociationBroker_4c672c
old: DevicePickerUserSvc_4c672c Manual Unknown DevicePicker_4c672c
old: DevicesFlowUserSvc_4c672c Manual Unknown DevicesFlow_4c672c
old: MessagingService_4c672c Manual Unknown MessagingService_4c672c
old: OneSyncSvc_4c672c Auto Unknown Synkroniseringsvärd_4c672c
old: PimIndexMaintenanceSvc_4c672c Manual Unknown Contact Data_4c672c
old: PrintWorkflowUserSvc_4c672c Manual Unknown PrintWorkflow_4c672c
old: UdkUserSvc_4c672c Manual Unknown Udk-användartjänst_4c672c
old: UnistoreSvc_4c672c Manual Unknown User Data Storage_4c672c
old: UserDataSvc_4c672c Manual Unknown User Data Access_4c672c
old: WpnUserService_4c672c Auto Unknown Windows Push Notifications User Service_4c672c
system - services - AarSvc_4c672c
old: DisplayName : Agent Activation Runtime_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_4c672c
old: DisplayName : Användartjänst för Spel-DVR och sändning_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_4c672c
old: DisplayName : Bluetooth User Support Service_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_4c672c
old: DisplayName : CaptureService_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_4c672c
old: DisplayName : Clipboard User Service_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_4c672c
old: DisplayName : Connected Devices Platform User Service_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_4c672c
old: DisplayName : ConsentUX_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_4c672c
old: DisplayName : CredentialEnrollmentManagerUserSvc_4c672c
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_4c672c
old: DisplayName : DeviceAssociationBroker_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_4c672c
old: DisplayName : DevicePicker_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_4c672c
old: DisplayName : DevicesFlow_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_4c672c
old: DisplayName : MessagingService_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_4c672c
old: DisplayName : Synkroniseringsvärd_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_4c672c
old: DisplayName : Contact Data_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_4c672c
old: DisplayName : PrintWorkflow_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_4c672c
old: DisplayName : Udk-användartjänst_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_4c672c
old: DisplayName : User Data Storage_4c672c
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_4c672c
old: DisplayName : User Data Access_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_4c672c
old: DisplayName : Windows Push Notifications User Service_4c672c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2023-02-11 16.55.30
remark :
runtime : 15
count : 4
previous date : 2023-02-10
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 109.0.1518.78
new: Version : 110.0.1587.41
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.78\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\110.0.1587.41\elevation_service.exe"
Top Runs Differences at: 2023-02-09 16.55.30
remark :
runtime : 13
count : 23
previous date : 2023-02-08
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 69.0.0.0
new: Version : 70.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\70.0.2.0\GoogleDriveFS.exe
system - SystemDriver - googledrivefs31092
new: AcceptPause : 0
new: Description : googledrivefs31092
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\DRIVERS\googledrivefs31092.sys
new: ServiceType : File System Driver
new: StartMode : System
Top Runs Differences at: 2023-02-08 16.55.30
remark :
runtime : 13
count : 4
previous date : 2023-02-07
previous time : 16.55.30
software - product - Google Chrome
old: Version : 109.0.5414.120
new: Version : 109.0.5414.121
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.120\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.121\elevation_service.exe"
Top Runs Differences at: 2023-02-07 16.55.30
remark :
runtime : 13
count : 7
previous date : 2023-02-06
previous time : 16.55.29
software - product - Microsoft Edge Update
old: Version : 1.3.171.39
new: Version : 1.3.173.45
software - product - Microsoft Edge WebView2 Runtime
new: Version : 109.0.1518.78
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location : C:\Program Files (x86)\Microsoft\EdgeWebView\Application
new: NoRepair : 0x00000001
Top Runs Differences at: 2023-02-05 16.55.29
remark :
runtime : 13
count : 4
previous date : 2023-02-04
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 109.0.1518.70
new: Version : 109.0.1518.78
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.70\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.78\elevation_service.exe"
Top Runs Differences at: 2023-01-29 16.55.29
remark :
runtime : 14
count : 4
previous date : 2023-01-28
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 109.0.1518.69
new: Version : 109.0.1518.70
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.69\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.70\elevation_service.exe"
Top Runs Differences at: 2023-01-28 16.55.29
remark :
runtime : 13
count : 4
previous date : 2023-01-27
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 109.0.1518.61
new: Version : 109.0.1518.69
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.61\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.69\elevation_service.exe"
Top Runs Differences at: 2023-01-27 16.55.29
remark :
runtime : 14
count : 4
previous date : 2023-01-26
previous time : 16.55.29
software - product - Google Chrome
old: Version : 109.0.5414.119
new: Version : 109.0.5414.120
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.119\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.120\elevation_service.exe"
Top Runs Differences at: 2023-01-26 16.55.29
remark :
runtime : 15
count : 2
previous date : 2023-01-25
previous time : 16.55.29
software - product - Microsoft Update Health Tools
old: Version : 3.68.0.0
new: Version : 3.70.0.0
Top Runs Differences at: 2023-01-25 16.55.29
remark :
runtime : 13
count : 4
previous date : 2023-01-24
previous time : 16.55.29
software - product - Google Chrome
old: Version : 109.0.5414.75
new: Version : 109.0.5414.119
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.75\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.119\elevation_service.exe"
Top Runs Differences at: 2023-01-23 16.55.29
remark :
runtime : 13
count : 166
previous date : 2023-01-22
previous time : 20.17.01
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - hotfix - KB5020872
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5022405
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: AarSvc_4c672c Manual Unknown Agent Activation Runtime_4c672c
new: BcastDVRUserService_4c672c Manual Unknown Användartjänst för Spel-DVR och sändning_4c672c
new: BluetoothUserService_4c672c Manual Unknown Bluetooth User Support Service_4c672c
new: CaptureService_4c672c Manual Unknown CaptureService_4c672c
new: cbdhsvc_4c672c Manual Unknown Clipboard User Service_4c672c
new: CDPUserSvc_4c672c Auto Unknown Connected Devices Platform User Service_4c672c
new: ConsentUxUserSvc_4c672c Manual Unknown ConsentUX_4c672c
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_4c672c
new: DeviceAssociationBrokerSvc_4c6 Manual Unknown DeviceAssociationBroker_4c672c
new: DevicePickerUserSvc_4c672c Manual Unknown DevicePicker_4c672c
new: DevicesFlowUserSvc_4c672c Manual Unknown DevicesFlow_4c672c
new: MessagingService_4c672c Manual Unknown MessagingService_4c672c
new: OneSyncSvc_4c672c Auto Unknown Synkroniseringsvärd_4c672c
new: PimIndexMaintenanceSvc_4c672c Manual Unknown Contact Data_4c672c
new: PrintWorkflowUserSvc_4c672c Manual Unknown PrintWorkflow_4c672c
new: UdkUserSvc_4c672c Manual Unknown Udk-användartjänst_4c672c
new: UnistoreSvc_4c672c Manual Unknown User Data Storage_4c672c
new: UserDataSvc_4c672c Manual Unknown User Data Access_4c672c
new: WpnUserService_4c672c Auto Unknown Windows Push Notifications User Service_4c672c
system - services - AarSvc_4c672c
new: DisplayName : Agent Activation Runtime_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_4c672c
new: DisplayName : Användartjänst för Spel-DVR och sändning_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_4c672c
new: DisplayName : Bluetooth User Support Service_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_4c672c
new: DisplayName : CaptureService_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_4c672c
new: DisplayName : Clipboard User Service_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_4c672c
new: DisplayName : Connected Devices Platform User Service_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_4c672c
new: DisplayName : ConsentUX_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_4c672c
new: DisplayName : CredentialEnrollmentManagerUserSvc_4c672c
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_4c672c
new: DisplayName : DeviceAssociationBroker_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_4c672c
new: DisplayName : DevicePicker_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_4c672c
new: DisplayName : DevicesFlow_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_4c672c
new: DisplayName : MessagingService_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_4c672c
new: DisplayName : Synkroniseringsvärd_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_4c672c
new: DisplayName : Contact Data_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_4c672c
new: DisplayName : PrintWorkflow_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_4c672c
new: DisplayName : Udk-användartjänst_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_4c672c
new: DisplayName : User Data Storage_4c672c
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_4c672c
new: DisplayName : User Data Access_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_4c672c
new: DisplayName : Windows Push Notifications User Service_4c672c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2023-01-22 20.17.01
remark :
runtime : 24
count : 158
previous date : 2023-01-22
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
old: Command : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe --startup_mode
old: Description : GoogleDriveFS
system - hotfix - KB5019275
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5022282
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - services - survey
old: AarSvc_83b26eb Manual Unknown Agent Activation Runtime_83b26eb
old: BcastDVRUserService_83b26eb Manual Unknown Användartjänst för Spel-DVR och sändning_83b26eb
old: BluetoothUserService_83b26eb Manual Unknown Bluetooth User Support Service_83b26eb
old: CaptureService_83b26eb Manual Unknown CaptureService_83b26eb
old: cbdhsvc_83b26eb Manual Unknown Clipboard User Service_83b26eb
old: CDPUserSvc_83b26eb Auto Unknown Connected Devices Platform User Service_83b26eb
old: ConsentUxUserSvc_83b26eb Manual Unknown ConsentUX_83b26eb
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_83b26eb
old: DeviceAssociationBrokerSvc_83b Manual Unknown DeviceAssociationBroker_83b26eb
old: DevicePickerUserSvc_83b26eb Manual Unknown DevicePicker_83b26eb
old: DevicesFlowUserSvc_83b26eb Manual Unknown DevicesFlow_83b26eb
old: MessagingService_83b26eb Manual Unknown MessagingService_83b26eb
old: OneSyncSvc_83b26eb Auto Unknown Synkroniseringsvärd_83b26eb
old: PimIndexMaintenanceSvc_83b26eb Manual Unknown Contact Data_83b26eb
old: PrintWorkflowUserSvc_83b26eb Manual Unknown PrintWorkflow_83b26eb
old: UdkUserSvc_83b26eb Manual Unknown Udk-användartjänst_83b26eb
old: UnistoreSvc_83b26eb Manual Unknown User Data Storage_83b26eb
old: UserDataSvc_83b26eb Manual Unknown User Data Access_83b26eb
old: WpnUserService_83b26eb Auto Unknown Windows Push Notifications User Service_83b26eb
system - services - AarSvc_83b26eb
old: DisplayName : Agent Activation Runtime_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_83b26eb
old: DisplayName : Användartjänst för Spel-DVR och sändning_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_83b26eb
old: DisplayName : Bluetooth User Support Service_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_83b26eb
old: DisplayName : CaptureService_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_83b26eb
old: DisplayName : Clipboard User Service_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_83b26eb
old: DisplayName : Connected Devices Platform User Service_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_83b26eb
old: DisplayName : ConsentUX_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_83b26eb
old: DisplayName : CredentialEnrollmentManagerUserSvc_83b26eb
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_83b26eb
old: DisplayName : DeviceAssociationBroker_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_83b26eb
old: DisplayName : DevicePicker_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_83b26eb
old: DisplayName : DevicesFlow_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_83b26eb
old: DisplayName : MessagingService_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_83b26eb
old: DisplayName : Synkroniseringsvärd_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_83b26eb
old: DisplayName : Contact Data_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_83b26eb
old: DisplayName : PrintWorkflow_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_83b26eb
old: DisplayName : Udk-användartjänst_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_83b26eb
old: DisplayName : User Data Storage_83b26eb
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_83b26eb
old: DisplayName : User Data Access_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_83b26eb
old: DisplayName : Windows Push Notifications User Service_83b26eb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2023-01-22 16.55.30
remark :
runtime : 13
count : 4
previous date : 2023-01-21
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 109.0.1518.55
new: Version : 109.0.1518.61
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.55\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.61\elevation_service.exe"
Top Runs Differences at: 2023-01-19 16.55.30
remark :
runtime : 13
count : 16
previous date : 2023-01-18
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe" --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 68.0.2.0
new: Version : 69.0.0.0
old: Install Location : C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\69.0.0.0\GoogleDriveFS.exe
Top Runs Differences at: 2023-01-18 16.55.30
remark :
runtime : 13
count : 4
previous date : 2023-01-17
previous time : 16.55.30
software - product - Google Chrome
old: Version : 109.0.5414.74
new: Version : 109.0.5414.75
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.74\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.75\elevation_service.exe"
Top Runs Differences at: 2023-01-17 16.55.30
remark :
runtime : 12
count : 168
previous date : 2023-01-16
previous time : 16.55.30
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
software - product - Microsoft Edge
old: Version : 109.0.1518.52
new: Version : 109.0.1518.55
system - services - survey
new: AarSvc_83b26eb Manual Unknown Agent Activation Runtime_83b26eb
new: BcastDVRUserService_83b26eb Manual Unknown Användartjänst för Spel-DVR och sändning_83b26eb
new: BluetoothUserService_83b26eb Manual Unknown Bluetooth User Support Service_83b26eb
new: CaptureService_83b26eb Manual Unknown CaptureService_83b26eb
new: cbdhsvc_83b26eb Manual Unknown Clipboard User Service_83b26eb
new: CDPUserSvc_83b26eb Auto Unknown Connected Devices Platform User Service_83b26eb
new: ConsentUxUserSvc_83b26eb Manual Unknown ConsentUX_83b26eb
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_83b26eb
new: DeviceAssociationBrokerSvc_83b Manual Unknown DeviceAssociationBroker_83b26eb
new: DevicePickerUserSvc_83b26eb Manual Unknown DevicePicker_83b26eb
new: DevicesFlowUserSvc_83b26eb Manual Unknown DevicesFlow_83b26eb
new: MessagingService_83b26eb Manual Unknown MessagingService_83b26eb
new: OneSyncSvc_83b26eb Auto Unknown Synkroniseringsvärd_83b26eb
new: PimIndexMaintenanceSvc_83b26eb Manual Unknown Contact Data_83b26eb
new: PrintWorkflowUserSvc_83b26eb Manual Unknown PrintWorkflow_83b26eb
new: UdkUserSvc_83b26eb Manual Unknown Udk-användartjänst_83b26eb
new: UnistoreSvc_83b26eb Manual Unknown User Data Storage_83b26eb
new: UserDataSvc_83b26eb Manual Unknown User Data Access_83b26eb
new: WpnUserService_83b26eb Auto Unknown Windows Push Notifications User Service_83b26eb
system - services - AarSvc_83b26eb
new: DisplayName : Agent Activation Runtime_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_83b26eb
new: DisplayName : Användartjänst för Spel-DVR och sändning_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_83b26eb
new: DisplayName : Bluetooth User Support Service_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_83b26eb
new: DisplayName : CaptureService_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_83b26eb
new: DisplayName : Clipboard User Service_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_83b26eb
new: DisplayName : Connected Devices Platform User Service_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_83b26eb
new: DisplayName : ConsentUX_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_83b26eb
new: DisplayName : CredentialEnrollmentManagerUserSvc_83b26eb
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_83b26eb
new: DisplayName : DeviceAssociationBroker_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_83b26eb
new: DisplayName : DevicePicker_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_83b26eb
new: DisplayName : DevicesFlow_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_83b26eb
new: DisplayName : MessagingService_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.52\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.55\elevation_service.exe"
system - services - OneSyncSvc_83b26eb
new: DisplayName : Synkroniseringsvärd_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_83b26eb
new: DisplayName : Contact Data_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_83b26eb
new: DisplayName : PrintWorkflow_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_83b26eb
new: DisplayName : Udk-användartjänst_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_83b26eb
new: DisplayName : User Data Storage_83b26eb
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_83b26eb
new: DisplayName : User Data Access_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_83b26eb
new: DisplayName : Windows Push Notifications User Service_83b26eb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\Registry\OOBE-Maintenance
old: Logon Mode : Interactive/Background
old: Task To Run : %windir%\system32\OOBE-Maintenance.exe 1
old: Start In : %windir%\system32
old: Comment : $(@%SystemRoot%\System32\OOBE-Maintenance.exe,-102)
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 01:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2023-01-15 16.55.30
remark :
runtime : 13
count : 4
previous date : 2023-01-14
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 108.0.1462.76
new: Version : 109.0.1518.52
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\108.0.1462.76\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.52\elevation_service.exe"
Top Runs Differences at: 2023-01-13 16.55.30
remark :
runtime : 13
count : 4
previous date : 2023-01-12
previous time : 16.55.30
software - product - Google Chrome
old: Version : 108.0.5359.125
new: Version : 109.0.5414.74
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\108.0.5359.125\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.74\elevation_service.exe"
Top Runs Differences at: 2023-01-10 20.24.33
remark :
runtime : 31
count : 170
previous date : 2023-01-10
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
system - hotfix - KB5021233
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5022282
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_cbc8751 Manual Unknown Agent Activation Runtime_cbc8751
old: BcastDVRUserService_cbc8751 Manual Unknown Användartjänst för Spel-DVR och sändning_cbc8751
old: BluetoothUserService_cbc8751 Manual Unknown Bluetooth User Support Service_cbc8751
old: CaptureService_cbc8751 Manual Unknown CaptureService_cbc8751
old: cbdhsvc_cbc8751 Manual Unknown Clipboard User Service_cbc8751
old: CDPUserSvc_cbc8751 Auto Unknown Connected Devices Platform User Service_cbc8751
old: ConsentUxUserSvc_cbc8751 Manual Unknown ConsentUX_cbc8751
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_cbc8751
old: DeviceAssociationBrokerSvc_cbc Manual Unknown DeviceAssociationBroker_cbc8751
old: DevicePickerUserSvc_cbc8751 Manual Unknown DevicePicker_cbc8751
old: DevicesFlowUserSvc_cbc8751 Manual Unknown DevicesFlow_cbc8751
old: MessagingService_cbc8751 Manual Unknown MessagingService_cbc8751
old: OneSyncSvc_cbc8751 Auto Unknown Synkroniseringsvärd_cbc8751
old: PimIndexMaintenanceSvc_cbc8751 Manual Unknown Contact Data_cbc8751
old: PrintWorkflowUserSvc_cbc8751 Manual Unknown PrintWorkflow_cbc8751
old: UdkUserSvc_cbc8751 Manual Unknown Udk-användartjänst_cbc8751
old: UnistoreSvc_cbc8751 Manual Unknown User Data Storage_cbc8751
old: UserDataSvc_cbc8751 Manual Unknown User Data Access_cbc8751
old: WpnUserService_cbc8751 Auto Unknown Windows Push Notifications User Service_cbc8751
system - services - AarSvc_cbc8751
old: DisplayName : Agent Activation Runtime_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_cbc8751
old: DisplayName : Användartjänst för Spel-DVR och sändning_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_cbc8751
old: DisplayName : Bluetooth User Support Service_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_cbc8751
old: DisplayName : CaptureService_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_cbc8751
old: DisplayName : Clipboard User Service_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_cbc8751
old: DisplayName : Connected Devices Platform User Service_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_cbc8751
old: DisplayName : ConsentUX_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_cbc8751
old: DisplayName : CredentialEnrollmentManagerUserSvc_cbc8751
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_cbc8751
old: DisplayName : DeviceAssociationBroker_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_cbc8751
old: DisplayName : DevicePicker_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_cbc8751
old: DisplayName : DevicesFlow_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_cbc8751
old: DisplayName : MessagingService_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_cbc8751
old: DisplayName : Synkroniseringsvärd_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_cbc8751
old: DisplayName : Contact Data_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_cbc8751
old: DisplayName : PrintWorkflow_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_cbc8751
old: DisplayName : Udk-användartjänst_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_cbc8751
old: DisplayName : User Data Storage_cbc8751
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_cbc8751
old: DisplayName : User Data Access_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_cbc8751
old: DisplayName : Windows Push Notifications User Service_cbc8751
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\Registry\OOBE-Maintenance
new: Logon Mode : Interactive/Background
new: Task To Run : %windir%\system32\OOBE-Maintenance.exe 1
new: Start In : %windir%\system32
new: Comment : $(@%SystemRoot%\System32\OOBE-Maintenance.exe,-102)
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 01:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2023-01-08 16.55.29
remark :
runtime : 15
count : 4
previous date : 2023-01-07
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 108.0.1462.54
new: Version : 108.0.1462.76
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\108.0.1462.54\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\108.0.1462.76\elevation_service.exe"
Top Runs Differences at: 2022-12-31 16.55.29
remark :
runtime : 13
count : 2
previous date : 2022-12-30
previous time : 16.55.29
software - product - Microsoft Edge Update
old: Version : 1.3.171.37
new: Version : 1.3.171.39
Top Runs Differences at: 2022-12-24 16.55.29
remark :
runtime : 13
count : 152
previous date : 2022-12-23
previous time : 16.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_cbc8751 Manual Unknown Agent Activation Runtime_cbc8751
new: BcastDVRUserService_cbc8751 Manual Unknown Användartjänst för Spel-DVR och sändning_cbc8751
new: BluetoothUserService_cbc8751 Manual Unknown Bluetooth User Support Service_cbc8751
new: CaptureService_cbc8751 Manual Unknown CaptureService_cbc8751
new: cbdhsvc_cbc8751 Manual Unknown Clipboard User Service_cbc8751
new: CDPUserSvc_cbc8751 Auto Unknown Connected Devices Platform User Service_cbc8751
new: ConsentUxUserSvc_cbc8751 Manual Unknown ConsentUX_cbc8751
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_cbc8751
new: DeviceAssociationBrokerSvc_cbc Manual Unknown DeviceAssociationBroker_cbc8751
new: DevicePickerUserSvc_cbc8751 Manual Unknown DevicePicker_cbc8751
new: DevicesFlowUserSvc_cbc8751 Manual Unknown DevicesFlow_cbc8751
new: MessagingService_cbc8751 Manual Unknown MessagingService_cbc8751
new: OneSyncSvc_cbc8751 Auto Unknown Synkroniseringsvärd_cbc8751
new: PimIndexMaintenanceSvc_cbc8751 Manual Unknown Contact Data_cbc8751
new: PrintWorkflowUserSvc_cbc8751 Manual Unknown PrintWorkflow_cbc8751
new: UdkUserSvc_cbc8751 Manual Unknown Udk-användartjänst_cbc8751
new: UnistoreSvc_cbc8751 Manual Unknown User Data Storage_cbc8751
new: UserDataSvc_cbc8751 Manual Unknown User Data Access_cbc8751
new: WpnUserService_cbc8751 Auto Unknown Windows Push Notifications User Service_cbc8751
system - services - AarSvc_cbc8751
new: DisplayName : Agent Activation Runtime_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_cbc8751
new: DisplayName : Användartjänst för Spel-DVR och sändning_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_cbc8751
new: DisplayName : Bluetooth User Support Service_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_cbc8751
new: DisplayName : CaptureService_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_cbc8751
new: DisplayName : Clipboard User Service_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_cbc8751
new: DisplayName : Connected Devices Platform User Service_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_cbc8751
new: DisplayName : ConsentUX_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_cbc8751
new: DisplayName : CredentialEnrollmentManagerUserSvc_cbc8751
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_cbc8751
new: DisplayName : DeviceAssociationBroker_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_cbc8751
new: DisplayName : DevicePicker_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_cbc8751
new: DisplayName : DevicesFlow_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_cbc8751
new: DisplayName : MessagingService_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_cbc8751
new: DisplayName : Synkroniseringsvärd_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_cbc8751
new: DisplayName : Contact Data_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_cbc8751
new: DisplayName : PrintWorkflow_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_cbc8751
new: DisplayName : Udk-användartjänst_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_cbc8751
new: DisplayName : User Data Storage_cbc8751
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_cbc8751
new: DisplayName : User Data Access_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_cbc8751
new: DisplayName : Windows Push Notifications User Service_cbc8751
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-12-17 16.55.29
remark :
runtime : 13
count : 4
previous date : 2022-12-16
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 108.0.1462.46
new: Version : 108.0.1462.54
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\108.0.1462.46\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\108.0.1462.54\elevation_service.exe"
Top Runs Differences at: 2022-12-16 16.55.29
remark :
runtime : 13
count : 4
previous date : 2022-12-15
previous time : 16.55.29
software - product - Google Chrome
old: Version : 108.0.5359.124
new: Version : 108.0.5359.125
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\108.0.5359.124\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\108.0.5359.125\elevation_service.exe"
Top Runs Differences at: 2022-12-15 16.55.29
remark :
runtime : 14
count : 4
previous date : 2022-12-14
previous time : 16.55.29
software - product - Google Chrome
old: Version : 108.0.5359.99
new: Version : 108.0.5359.124
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\108.0.5359.99\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\108.0.5359.124\elevation_service.exe"
Top Runs Differences at: 2022-12-13 20.37.31
remark :
runtime : 22
count : 14
previous date : 2022-12-13
previous time : 16.55.29
system - hotfix - KB5020030
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5020613
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5020872
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5021233
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2022-12-12 16.55.29
remark :
runtime : 13
count : 14
previous date : 2022-12-11
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\67.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\67.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\67.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\67.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\67.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 67.0.2.0
new: Version : 68.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\67.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe
Top Runs Differences at: 2022-12-10 16.55.29
remark :
runtime : 13
count : 4
previous date : 2022-12-09
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 108.0.1462.42
new: Version : 108.0.1462.46
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\108.0.1462.42\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\108.0.1462.46\elevation_service.exe"
Top Runs Differences at: 2022-12-09 16.55.29
remark :
runtime : 13
count : 16
previous date : 2022-12-08
previous time : 16.55.29
software - product - Google Chrome
old: Version : 108.0.5359.96
new: Version : 108.0.5359.99
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\108.0.5359.96\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\108.0.5359.99\elevation_service.exe"
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2022-12-08 16.55.29
remark :
runtime : 13
count : 4
previous date : 2022-12-07
previous time : 16.55.29
software - product - Google Chrome
old: Version : 108.0.5359.95
new: Version : 108.0.5359.96
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\108.0.5359.95\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\108.0.5359.96\elevation_service.exe"
Top Runs Differences at: 2022-12-07 16.55.29
remark :
runtime : 14
count : 8
previous date : 2022-12-06
previous time : 16.55.29
software - product - Google Chrome
old: Version : 108.0.5359.73
new: Version : 108.0.5359.95
software - product - Microsoft Edge
old: Version : 107.0.1418.62
new: Version : 108.0.1462.42
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\108.0.5359.73\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\108.0.5359.95\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.62\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\108.0.1462.42\elevation_service.exe"
Top Runs Differences at: 2022-12-03 16.55.29
remark :
runtime : 13
count : 4
previous date : 2022-12-02
previous time : 16.55.29
software - product - Google Chrome
old: Version : 107.0.5304.123
new: Version : 108.0.5359.73
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.123\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\108.0.5359.73\elevation_service.exe"
Top Runs Differences at: 2022-11-30 16.55.29
remark :
runtime : 12
count : 22
previous date : 2022-11-29
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\67.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\67.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\67.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\67.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\67.0.2.0\GoogleDriveFS.exe --startup_mode
software - product - Google Chrome
old: Version : 107.0.5304.121
new: Version : 107.0.5304.123
software - product - Google Drive
old: Version : 66.0.3.0
new: Version : 67.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\67.0.2.0\GoogleDriveFS.exe
software - product - Microsoft Edge
old: Version : 107.0.1418.56
new: Version : 107.0.1418.62
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.121\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.123\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.56\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.62\elevation_service.exe"
Top Runs Differences at: 2022-11-26 23.07.59
remark :
runtime : 24
count : 163
previous date : 2022-11-26
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
system - hotfix - KB5019959
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5020030
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5020372
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_2c20d28 Manual Unknown Agent Activation Runtime_2c20d28
old: BcastDVRUserService_2c20d28 Manual Unknown Användartjänst för Spel-DVR och sändning_2c20d28
old: BluetoothUserService_2c20d28 Manual Unknown Bluetooth User Support Service_2c20d28
old: CaptureService_2c20d28 Manual Unknown CaptureService_2c20d28
old: cbdhsvc_2c20d28 Manual Unknown Clipboard User Service_2c20d28
old: CDPUserSvc_2c20d28 Auto Unknown Connected Devices Platform User Service_2c20d28
old: ConsentUxUserSvc_2c20d28 Manual Unknown ConsentUX_2c20d28
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_2c20d28
old: DeviceAssociationBrokerSvc_2c2 Manual Unknown DeviceAssociationBroker_2c20d28
old: DevicePickerUserSvc_2c20d28 Manual Unknown DevicePicker_2c20d28
old: DevicesFlowUserSvc_2c20d28 Manual Unknown DevicesFlow_2c20d28
old: MessagingService_2c20d28 Manual Unknown MessagingService_2c20d28
old: OneSyncSvc_2c20d28 Auto Unknown Synkroniseringsvärd_2c20d28
old: PimIndexMaintenanceSvc_2c20d28 Manual Unknown Contact Data_2c20d28
old: PrintWorkflowUserSvc_2c20d28 Manual Unknown PrintWorkflow_2c20d28
old: UdkUserSvc_2c20d28 Manual Unknown Udk-användartjänst_2c20d28
old: UnistoreSvc_2c20d28 Manual Unknown User Data Storage_2c20d28
old: UserDataSvc_2c20d28 Manual Unknown User Data Access_2c20d28
old: WpnUserService_2c20d28 Auto Unknown Windows Push Notifications User Service_2c20d28
system - services - AarSvc_2c20d28
old: DisplayName : Agent Activation Runtime_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_2c20d28
old: DisplayName : Användartjänst för Spel-DVR och sändning_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_2c20d28
old: DisplayName : Bluetooth User Support Service_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_2c20d28
old: DisplayName : CaptureService_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_2c20d28
old: DisplayName : Clipboard User Service_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_2c20d28
old: DisplayName : Connected Devices Platform User Service_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_2c20d28
old: DisplayName : ConsentUX_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_2c20d28
old: DisplayName : CredentialEnrollmentManagerUserSvc_2c20d28
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_2c20d28
old: DisplayName : DeviceAssociationBroker_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_2c20d28
old: DisplayName : DevicePicker_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_2c20d28
old: DisplayName : DevicesFlow_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_2c20d28
old: DisplayName : MessagingService_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_2c20d28
old: DisplayName : Synkroniseringsvärd_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_2c20d28
old: DisplayName : Contact Data_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_2c20d28
old: DisplayName : PrintWorkflow_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_2c20d28
old: DisplayName : Udk-användartjänst_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_2c20d28
old: DisplayName : User Data Storage_2c20d28
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_2c20d28
old: DisplayName : User Data Access_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_2c20d28
old: DisplayName : Windows Push Notifications User Service_2c20d28
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2022-11-25 16.55.29
remark :
runtime : 13
count : 4
previous date : 2022-11-24
previous time : 16.55.29
software - product - Google Chrome
old: Version : 107.0.5304.107
new: Version : 107.0.5304.121
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.107\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.121\elevation_service.exe"
Top Runs Differences at: 2022-11-24 16.55.29
remark :
runtime : 13
count : 4
previous date : 2022-11-23
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 107.0.1418.52
new: Version : 107.0.1418.56
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.52\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.56\elevation_service.exe"
Top Runs Differences at: 2022-11-19 16.55.29
remark :
runtime : 13
count : 4
previous date : 2022-11-18
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 107.0.1418.42
new: Version : 107.0.1418.52
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.42\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.52\elevation_service.exe"
Top Runs Differences at: 2022-11-12 16.55.29
remark :
runtime : 13
count : 4
previous date : 2022-11-11
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 107.0.1418.35
new: Version : 107.0.1418.42
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.35\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.42\elevation_service.exe"
Top Runs Differences at: 2022-11-11 16.55.29
remark :
runtime : 13
count : 168
previous date : 2022-11-10
previous time : 16.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
software - product - Google Chrome
old: Version : 107.0.5304.106
new: Version : 107.0.5304.107
system - services - survey
new: AarSvc_2c20d28 Manual Unknown Agent Activation Runtime_2c20d28
new: BcastDVRUserService_2c20d28 Manual Unknown Användartjänst för Spel-DVR och sändning_2c20d28
new: BluetoothUserService_2c20d28 Manual Unknown Bluetooth User Support Service_2c20d28
new: CaptureService_2c20d28 Manual Unknown CaptureService_2c20d28
new: cbdhsvc_2c20d28 Manual Unknown Clipboard User Service_2c20d28
new: CDPUserSvc_2c20d28 Auto Unknown Connected Devices Platform User Service_2c20d28
new: ConsentUxUserSvc_2c20d28 Manual Unknown ConsentUX_2c20d28
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_2c20d28
new: DeviceAssociationBrokerSvc_2c2 Manual Unknown DeviceAssociationBroker_2c20d28
new: DevicePickerUserSvc_2c20d28 Manual Unknown DevicePicker_2c20d28
new: DevicesFlowUserSvc_2c20d28 Manual Unknown DevicesFlow_2c20d28
new: MessagingService_2c20d28 Manual Unknown MessagingService_2c20d28
new: OneSyncSvc_2c20d28 Auto Unknown Synkroniseringsvärd_2c20d28
new: PimIndexMaintenanceSvc_2c20d28 Manual Unknown Contact Data_2c20d28
new: PrintWorkflowUserSvc_2c20d28 Manual Unknown PrintWorkflow_2c20d28
new: UdkUserSvc_2c20d28 Manual Unknown Udk-användartjänst_2c20d28
new: UnistoreSvc_2c20d28 Manual Unknown User Data Storage_2c20d28
new: UserDataSvc_2c20d28 Manual Unknown User Data Access_2c20d28
new: WpnUserService_2c20d28 Auto Unknown Windows Push Notifications User Service_2c20d28
system - services - AarSvc_2c20d28
new: DisplayName : Agent Activation Runtime_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_2c20d28
new: DisplayName : Användartjänst för Spel-DVR och sändning_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_2c20d28
new: DisplayName : Bluetooth User Support Service_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_2c20d28
new: DisplayName : CaptureService_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_2c20d28
new: DisplayName : Clipboard User Service_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_2c20d28
new: DisplayName : Connected Devices Platform User Service_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_2c20d28
new: DisplayName : ConsentUX_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_2c20d28
new: DisplayName : CredentialEnrollmentManagerUserSvc_2c20d28
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_2c20d28
new: DisplayName : DeviceAssociationBroker_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_2c20d28
new: DisplayName : DevicePicker_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_2c20d28
new: DisplayName : DevicesFlow_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.106\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.107\elevation_service.exe"
system - services - MessagingService_2c20d28
new: DisplayName : MessagingService_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_2c20d28
new: DisplayName : Synkroniseringsvärd_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_2c20d28
new: DisplayName : Contact Data_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_2c20d28
new: DisplayName : PrintWorkflow_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_2c20d28
new: DisplayName : Udk-användartjänst_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_2c20d28
new: DisplayName : User Data Storage_2c20d28
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_2c20d28
new: DisplayName : User Data Access_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.5-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.5-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe"
system - services - WpnUserService_2c20d28
new: DisplayName : Windows Push Notifications User Service_2c20d28
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2022-11-10 16.55.29
remark :
runtime : 13
count : 6
previous date : 2022-11-09
previous time : 16.55.29
software - product - Google Chrome
old: Version : 107.0.5304.88
new: Version : 107.0.5304.106
software - product - Microsoft Edge Update
old: Version : 1.3.169.31
new: Version : 1.3.171.37
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.88\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.106\elevation_service.exe"
Top Runs Differences at: 2022-11-08 23.38.38
remark :
runtime : 27
count : 164
previous date : 2022-11-08
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
system - hotfix - KB5018329
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5018482
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5019959
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5020613
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_8460277 Manual Unknown Agent Activation Runtime_8460277
old: BcastDVRUserService_8460277 Manual Unknown Användartjänst för Spel-DVR och sändning_8460277
old: BluetoothUserService_8460277 Manual Unknown Bluetooth User Support Service_8460277
old: CaptureService_8460277 Manual Unknown CaptureService_8460277
old: cbdhsvc_8460277 Manual Unknown Clipboard User Service_8460277
old: CDPUserSvc_8460277 Auto Unknown Connected Devices Platform User Service_8460277
old: ConsentUxUserSvc_8460277 Manual Unknown ConsentUX_8460277
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_8460277
old: DeviceAssociationBrokerSvc_846 Manual Unknown DeviceAssociationBroker_8460277
old: DevicePickerUserSvc_8460277 Manual Unknown DevicePicker_8460277
old: DevicesFlowUserSvc_8460277 Manual Unknown DevicesFlow_8460277
old: MessagingService_8460277 Manual Unknown MessagingService_8460277
old: OneSyncSvc_8460277 Auto Unknown Synkroniseringsvärd_8460277
old: PimIndexMaintenanceSvc_8460277 Manual Unknown Contact Data_8460277
old: PrintWorkflowUserSvc_8460277 Manual Unknown PrintWorkflow_8460277
old: UdkUserSvc_8460277 Manual Unknown Udk-användartjänst_8460277
old: UnistoreSvc_8460277 Manual Unknown User Data Storage_8460277
old: UserDataSvc_8460277 Manual Unknown User Data Access_8460277
old: WpnUserService_8460277 Auto Unknown Windows Push Notifications User Service_8460277
system - services - AarSvc_8460277
old: DisplayName : Agent Activation Runtime_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_8460277
old: DisplayName : Användartjänst för Spel-DVR och sändning_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_8460277
old: DisplayName : Bluetooth User Support Service_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_8460277
old: DisplayName : CaptureService_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_8460277
old: DisplayName : Clipboard User Service_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_8460277
old: DisplayName : Connected Devices Platform User Service_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_8460277
old: DisplayName : ConsentUX_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_8460277
old: DisplayName : CredentialEnrollmentManagerUserSvc_8460277
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_8460277
old: DisplayName : DeviceAssociationBroker_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_8460277
old: DisplayName : DevicePicker_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_8460277
old: DisplayName : DevicesFlow_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_8460277
old: DisplayName : MessagingService_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_8460277
old: DisplayName : Synkroniseringsvärd_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_8460277
old: DisplayName : Contact Data_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_8460277
old: DisplayName : PrintWorkflow_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_8460277
old: DisplayName : Udk-användartjänst_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_8460277
old: DisplayName : User Data Storage_8460277
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_8460277
old: DisplayName : User Data Access_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_8460277
old: DisplayName : Windows Push Notifications User Service_8460277
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2022-11-08 16.55.30
remark :
runtime : 13
count : 166
previous date : 2022-11-07
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
new: Command : C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 65.0.4.0
new: Version : 66.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe
system - services - survey
new: AarSvc_8460277 Manual Unknown Agent Activation Runtime_8460277
new: BcastDVRUserService_8460277 Manual Unknown Användartjänst för Spel-DVR och sändning_8460277
new: BluetoothUserService_8460277 Manual Unknown Bluetooth User Support Service_8460277
new: CaptureService_8460277 Manual Unknown CaptureService_8460277
new: cbdhsvc_8460277 Manual Unknown Clipboard User Service_8460277
new: CDPUserSvc_8460277 Auto Unknown Connected Devices Platform User Service_8460277
new: ConsentUxUserSvc_8460277 Manual Unknown ConsentUX_8460277
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_8460277
new: DeviceAssociationBrokerSvc_846 Manual Unknown DeviceAssociationBroker_8460277
new: DevicePickerUserSvc_8460277 Manual Unknown DevicePicker_8460277
new: DevicesFlowUserSvc_8460277 Manual Unknown DevicesFlow_8460277
new: MessagingService_8460277 Manual Unknown MessagingService_8460277
new: OneSyncSvc_8460277 Auto Unknown Synkroniseringsvärd_8460277
new: PimIndexMaintenanceSvc_8460277 Manual Unknown Contact Data_8460277
new: PrintWorkflowUserSvc_8460277 Manual Unknown PrintWorkflow_8460277
new: UdkUserSvc_8460277 Manual Unknown Udk-användartjänst_8460277
new: UnistoreSvc_8460277 Manual Unknown User Data Storage_8460277
new: UserDataSvc_8460277 Manual Unknown User Data Access_8460277
new: WpnUserService_8460277 Auto Unknown Windows Push Notifications User Service_8460277
system - services - AarSvc_8460277
new: DisplayName : Agent Activation Runtime_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_8460277
new: DisplayName : Användartjänst för Spel-DVR och sändning_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_8460277
new: DisplayName : Bluetooth User Support Service_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_8460277
new: DisplayName : CaptureService_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_8460277
new: DisplayName : Clipboard User Service_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_8460277
new: DisplayName : Connected Devices Platform User Service_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_8460277
new: DisplayName : ConsentUX_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_8460277
new: DisplayName : CredentialEnrollmentManagerUserSvc_8460277
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_8460277
new: DisplayName : DeviceAssociationBroker_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_8460277
new: DisplayName : DevicePicker_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_8460277
new: DisplayName : DevicesFlow_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_8460277
new: DisplayName : MessagingService_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_8460277
new: DisplayName : Synkroniseringsvärd_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_8460277
new: DisplayName : Contact Data_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_8460277
new: DisplayName : PrintWorkflow_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_8460277
new: DisplayName : Udk-användartjänst_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_8460277
new: DisplayName : User Data Storage_8460277
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_8460277
new: DisplayName : User Data Access_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.5-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.5-0\MsMpEng.exe"
system - services - WpnUserService_8460277
new: DisplayName : Windows Push Notifications User Service_8460277
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2022-11-06 16.55.30
remark :
runtime : 13
count : 4
previous date : 2022-11-05
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 107.0.1418.26
new: Version : 107.0.1418.35
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.26\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.35\elevation_service.exe"
Top Runs Differences at: 2022-11-02 16.55.30
remark :
runtime : 12
count : 4
previous date : 2022-11-01
previous time : 16.55.30
software - product - Google Chrome
old: Version : 106.0.5249.119
new: Version : 107.0.5304.88
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\106.0.5249.119\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.88\elevation_service.exe"
Top Runs Differences at: 2022-11-01 16.55.30
remark :
runtime : 13
count : 12
previous date : 2022-11-01
previous time : 00.10.46
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-11-01 00.10.46
remark :
runtime : 27
count : 180
previous date : 2022-10-31
previous time : 23.14.57
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5018410
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5018482
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5018506
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_c5eae Manual Unknown Agent Activation Runtime_c5eae
old: BcastDVRUserService_c5eae Manual Unknown Användartjänst för Spel-DVR och sändning_c5eae
old: BluetoothUserService_c5eae Manual Unknown Bluetooth User Support Service_c5eae
old: CaptureService_c5eae Manual Unknown CaptureService_c5eae
old: cbdhsvc_c5eae Manual Unknown Clipboard User Service_c5eae
old: CDPUserSvc_c5eae Auto Unknown Connected Devices Platform User Service_c5eae
old: ConsentUxUserSvc_c5eae Manual Unknown ConsentUX_c5eae
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_c5eae
new: dcsvc Manual Own Process dcsvc
old: DeviceAssociationBrokerSvc_c5e Manual Unknown DeviceAssociationBroker_c5eae
old: DevicePickerUserSvc_c5eae Manual Unknown DevicePicker_c5eae
old: DevicesFlowUserSvc_c5eae Manual Unknown DevicesFlow_c5eae
old: MessagingService_c5eae Manual Unknown MessagingService_c5eae
old: OneSyncSvc_c5eae Auto Unknown Synkroniseringsvärd_c5eae
old: PimIndexMaintenanceSvc_c5eae Manual Unknown Contact Data_c5eae
old: PrintWorkflowUserSvc_c5eae Manual Unknown PrintWorkflow_c5eae
old: UdkUserSvc_c5eae Manual Unknown Udk-användartjänst_c5eae
old: UnistoreSvc_c5eae Manual Unknown User Data Storage_c5eae
old: UserDataSvc_c5eae Manual Unknown User Data Access_c5eae
old: WpnUserService_c5eae Auto Unknown Windows Push Notifications User Service_c5eae
system - services - AarSvc_c5eae
old: DisplayName : Agent Activation Runtime_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_c5eae
old: DisplayName : Användartjänst för Spel-DVR och sändning_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_c5eae
old: DisplayName : Bluetooth User Support Service_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_c5eae
old: DisplayName : CaptureService_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_c5eae
old: DisplayName : Clipboard User Service_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_c5eae
old: DisplayName : Connected Devices Platform User Service_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_c5eae
old: DisplayName : ConsentUX_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_c5eae
old: DisplayName : CredentialEnrollmentManagerUserSvc_c5eae
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - dcsvc
new: DisplayName : dcsvc
new: PathName : C:\WINDOWS\system32\svchost.exe -k netsvcs -p
new: ServiceType : Own Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - DeviceAssociationBrokerSvc_c5eae
old: DisplayName : DeviceAssociationBroker_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_c5eae
old: DisplayName : DevicePicker_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_c5eae
old: DisplayName : DevicesFlow_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_c5eae
old: DisplayName : MessagingService_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_c5eae
old: DisplayName : Synkroniseringsvärd_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_c5eae
old: DisplayName : Contact Data_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_c5eae
old: DisplayName : PrintWorkflow_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_c5eae
old: DisplayName : Udk-användartjänst_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_c5eae
old: DisplayName : User Data Storage_c5eae
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_c5eae
old: DisplayName : User Data Access_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_c5eae
old: DisplayName : Windows Push Notifications User Service_c5eae
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - RpcSs
new: Required by : dcsvc
system - services - dcsvc
new: Requires : RpcSs
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2022-10-31 23.14.57
remark :
runtime : 290
count : 293
previous date : 2022-10-31
previous time : 16.55.29
general
old: BuildNumber:19044
new: BuildNumber:19045
old: Version:10.0.19044
new: Version:10.0.19045
software - product - Microsoft Update Health Tools
old: Version : 3.67.0.0
new: Version : 3.68.0.0
system - hotfix - KB5015684
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5017262
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5018329
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_3107813 Manual Unknown Agent Activation Runtime_3107813
new: AarSvc_c5eae Manual Unknown Agent Activation Runtime_c5eae
old: BcastDVRUserService_3107813 Manual Unknown Användartjänst för Spel-DVR och sändning_3107813
new: BcastDVRUserService_c5eae Manual Unknown Användartjänst för Spel-DVR och sändning_c5eae
old: BluetoothUserService_3107813 Manual Unknown Bluetooth User Support Service_3107813
new: BluetoothUserService_c5eae Manual Unknown Bluetooth User Support Service_c5eae
old: CaptureService_3107813 Manual Unknown CaptureService_3107813
old: cbdhsvc_3107813 Manual Unknown Clipboard User Service_3107813
new: CaptureService_c5eae Manual Unknown CaptureService_c5eae
new: cbdhsvc_c5eae Manual Unknown Clipboard User Service_c5eae
old: CDPUserSvc_3107813 Auto Unknown Connected Devices Platform User Service_3107813
new: CDPUserSvc_c5eae Auto Unknown Connected Devices Platform User Service_c5eae
old: ConsentUxUserSvc_3107813 Manual Unknown ConsentUX_3107813
new: ConsentUxUserSvc_c5eae Manual Unknown ConsentUX_c5eae
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3107813
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_c5eae
old: DeviceAssociationBrokerSvc_310 Manual Unknown DeviceAssociationBroker_3107813
new: DeviceAssociationBrokerSvc_c5e Manual Unknown DeviceAssociationBroker_c5eae
old: DevicePickerUserSvc_3107813 Manual Unknown DevicePicker_3107813
old: DevicesFlowUserSvc_3107813 Manual Unknown DevicesFlow_3107813
new: DevicePickerUserSvc_c5eae Manual Unknown DevicePicker_c5eae
new: DevicesFlowUserSvc_c5eae Manual Unknown DevicesFlow_c5eae
old: MessagingService_3107813 Manual Unknown MessagingService_3107813
new: MessagingService_c5eae Manual Unknown MessagingService_c5eae
old: OneSyncSvc_3107813 Auto Unknown Synkroniseringsvärd_3107813
new: OneSyncSvc_c5eae Auto Unknown Synkroniseringsvärd_c5eae
old: PimIndexMaintenanceSvc_3107813 Manual Unknown Contact Data_3107813
new: PimIndexMaintenanceSvc_c5eae Manual Unknown Contact Data_c5eae
old: PrintWorkflowUserSvc_3107813 Manual Unknown PrintWorkflow_3107813
new: PrintWorkflowUserSvc_c5eae Manual Unknown PrintWorkflow_c5eae
old: UdkUserSvc_3107813 Manual Unknown Udk-användartjänst_3107813
new: UdkUserSvc_c5eae Manual Unknown Udk-användartjänst_c5eae
old: UnistoreSvc_3107813 Manual Unknown User Data Storage_3107813
new: UnistoreSvc_c5eae Manual Unknown User Data Storage_c5eae
old: UserDataSvc_3107813 Manual Unknown User Data Access_3107813
new: UserDataSvc_c5eae Manual Unknown User Data Access_c5eae
old: WpnUserService_3107813 Auto Unknown Windows Push Notifications User Service_3107813
new: WpnUserService_c5eae Auto Unknown Windows Push Notifications User Service_c5eae
system - services - AarSvc_3107813
old: DisplayName : Agent Activation Runtime_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_c5eae
new: DisplayName : Agent Activation Runtime_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_3107813
old: DisplayName : Användartjänst för Spel-DVR och sändning_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_c5eae
new: DisplayName : Användartjänst för Spel-DVR och sändning_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_3107813
old: DisplayName : Bluetooth User Support Service_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_c5eae
new: DisplayName : Bluetooth User Support Service_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_3107813
old: DisplayName : CaptureService_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_3107813
old: DisplayName : Clipboard User Service_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_c5eae
new: DisplayName : CaptureService_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_c5eae
new: DisplayName : Clipboard User Service_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_3107813
old: DisplayName : Connected Devices Platform User Service_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_c5eae
new: DisplayName : Connected Devices Platform User Service_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_3107813
old: DisplayName : ConsentUX_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_c5eae
new: DisplayName : ConsentUX_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3107813
old: DisplayName : CredentialEnrollmentManagerUserSvc_3107813
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_c5eae
new: DisplayName : CredentialEnrollmentManagerUserSvc_c5eae
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_3107813
old: DisplayName : DeviceAssociationBroker_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_c5eae
new: DisplayName : DeviceAssociationBroker_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_3107813
old: DisplayName : DevicePicker_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_3107813
old: DisplayName : DevicesFlow_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_c5eae
new: DisplayName : DevicePicker_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_c5eae
new: DisplayName : DevicesFlow_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_3107813
old: DisplayName : MessagingService_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_c5eae
new: DisplayName : MessagingService_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_3107813
old: DisplayName : Synkroniseringsvärd_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_c5eae
new: DisplayName : Synkroniseringsvärd_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_3107813
old: DisplayName : Contact Data_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_c5eae
new: DisplayName : Contact Data_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_3107813
old: DisplayName : PrintWorkflow_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_c5eae
new: DisplayName : PrintWorkflow_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_3107813
old: DisplayName : Udk-användartjänst_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_c5eae
new: DisplayName : Udk-användartjänst_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_3107813
old: DisplayName : User Data Storage_3107813
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_c5eae
new: DisplayName : User Data Storage_c5eae
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_3107813
old: DisplayName : User Data Access_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_c5eae
new: DisplayName : User Data Access_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MsMpEng.exe"
system - services - WpnUserService_3107813
old: DisplayName : Windows Push Notifications User Service_3107813
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_c5eae
new: DisplayName : Windows Push Notifications User Service_c5eae
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2022-10-31 16.55.29
remark :
runtime : 13
count : 4
previous date : 2022-10-30
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 107.0.1418.24
new: Version : 107.0.1418.26
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.24\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.26\elevation_service.exe"
Top Runs Differences at: 2022-10-30 16.55.29
remark :
runtime : 12
count : 4
previous date : 2022-10-29
previous time : 17.55.29
general
old: CurrentTimeZone:120
old: DaylightInEffect:1
new: CurrentTimeZone:60
new: DaylightInEffect:0
Top Runs Differences at: 2022-10-29 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-10-28
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 106.0.1370.52
new: Version : 107.0.1418.24
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\106.0.1370.52\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.24\elevation_service.exe"
Top Runs Differences at: 2022-10-23 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-10-22
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 106.0.1370.47
new: Version : 106.0.1370.52
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\106.0.1370.47\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\106.0.1370.52\elevation_service.exe"
Top Runs Differences at: 2022-10-22 17.55.29
remark :
runtime : 13
count : 7
previous date : 2022-10-21
previous time : 17.55.29
system - SystemDriver - MpKsl49d31137
old: AcceptPause : 0
old: Description : MpKsl49d31137
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B775DBB3-5EBA-4C7E-B61C-A4EAD76B2F27}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2022-10-21 17.55.29
remark :
runtime : 12
count : 7
previous date : 2022-10-20
previous time : 17.55.29
system - SystemDriver - MpKsl49d31137
new: AcceptPause : 0
new: Description : MpKsl49d31137
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B775DBB3-5EBA-4C7E-B61C-A4EAD76B2F27}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2022-10-20 17.55.29
remark :
runtime : 12
count : 16
previous date : 2022-10-19
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 64.0.4.0
new: Version : 65.0.4.0
old: Install Location : C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\65.0.4.0\GoogleDriveFS.exe
Top Runs Differences at: 2022-10-18 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-10-17
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 106.0.1370.42
new: Version : 106.0.1370.47
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\106.0.1370.42\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\106.0.1370.47\elevation_service.exe"
Top Runs Differences at: 2022-10-16 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-10-15
previous time : 17.55.29
system - services - survey
old: TabletInputService Auto Share Process Touch Keyboard and Handwriting Panel Service
new: TabletInputService Manual Share Process Touch Keyboard and Handwriting Panel Service
system - services - TabletInputService
old: StartMode : Auto
new: StartMode : Manual
Top Runs Differences at: 2022-10-14 17.55.29
remark :
runtime : 12
count : 180
previous date : 2022-10-13
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Google Chrome
old: Version : 106.0.5249.103
new: Version : 106.0.5249.119
system - services - survey
new: AarSvc_3107813 Manual Unknown Agent Activation Runtime_3107813
new: BcastDVRUserService_3107813 Manual Unknown Användartjänst för Spel-DVR och sändning_3107813
new: BluetoothUserService_3107813 Manual Unknown Bluetooth User Support Service_3107813
new: CaptureService_3107813 Manual Unknown CaptureService_3107813
new: cbdhsvc_3107813 Manual Unknown Clipboard User Service_3107813
new: CDPUserSvc_3107813 Auto Unknown Connected Devices Platform User Service_3107813
new: ConsentUxUserSvc_3107813 Manual Unknown ConsentUX_3107813
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3107813
new: DeviceAssociationBrokerSvc_310 Manual Unknown DeviceAssociationBroker_3107813
new: DevicePickerUserSvc_3107813 Manual Unknown DevicePicker_3107813
new: DevicesFlowUserSvc_3107813 Manual Unknown DevicesFlow_3107813
new: MessagingService_3107813 Manual Unknown MessagingService_3107813
new: OneSyncSvc_3107813 Auto Unknown Synkroniseringsvärd_3107813
new: PimIndexMaintenanceSvc_3107813 Manual Unknown Contact Data_3107813
new: PrintWorkflowUserSvc_3107813 Manual Unknown PrintWorkflow_3107813
old: TabletInputService Manual Share Process Touch Keyboard and Handwriting Panel Service
new: TabletInputService Auto Share Process Touch Keyboard and Handwriting Panel Service
new: UdkUserSvc_3107813 Manual Unknown Udk-användartjänst_3107813
new: UnistoreSvc_3107813 Manual Unknown User Data Storage_3107813
new: UserDataSvc_3107813 Manual Unknown User Data Access_3107813
new: WpnUserService_3107813 Auto Unknown Windows Push Notifications User Service_3107813
system - services - AarSvc_3107813
new: DisplayName : Agent Activation Runtime_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_3107813
new: DisplayName : Användartjänst för Spel-DVR och sändning_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_3107813
new: DisplayName : Bluetooth User Support Service_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_3107813
new: DisplayName : CaptureService_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_3107813
new: DisplayName : Clipboard User Service_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_3107813
new: DisplayName : Connected Devices Platform User Service_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_3107813
new: DisplayName : ConsentUX_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3107813
new: DisplayName : CredentialEnrollmentManagerUserSvc_3107813
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_3107813
new: DisplayName : DeviceAssociationBroker_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_3107813
new: DisplayName : DevicePicker_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_3107813
new: DisplayName : DevicesFlow_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\106.0.5249.103\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\106.0.5249.119\elevation_service.exe"
system - services - MessagingService_3107813
new: DisplayName : MessagingService_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_3107813
new: DisplayName : Synkroniseringsvärd_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_3107813
new: DisplayName : Contact Data_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_3107813
new: DisplayName : PrintWorkflow_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TabletInputService
old: StartMode : Manual
new: StartMode : Auto
system - services - UdkUserSvc_3107813
new: DisplayName : Udk-användartjänst_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_3107813
new: DisplayName : User Data Storage_3107813
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_3107813
new: DisplayName : User Data Access_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe"
system - services - WpnUserService_3107813
new: DisplayName : Windows Push Notifications User Service_3107813
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2022-10-12 17.55.29
remark :
runtime : 12
count : 6
previous date : 2022-10-11
previous time : 22.09.18
software - product - Microsoft Edge
old: Version : 106.0.1370.37
new: Version : 106.0.1370.42
software - product - Microsoft Edge Update
old: Version : 1.3.167.21
new: Version : 1.3.169.31
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\106.0.1370.37\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\106.0.1370.42\elevation_service.exe"
Top Runs Differences at: 2022-10-11 22.09.18
remark :
runtime : 40
count : 20
previous date : 2022-10-11
previous time : 17.55.29
system - hotfix - KB5017380
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5018410
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2022-10-08 17.55.29
remark :
runtime : 13
count : 4
previous date : 2022-10-07
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 106.0.1370.34
new: Version : 106.0.1370.37
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\106.0.1370.34\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\106.0.1370.37\elevation_service.exe"
Top Runs Differences at: 2022-10-06 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-10-05
previous time : 17.55.29
software - product - Google Chrome
old: Version : 106.0.5249.91
new: Version : 106.0.5249.103
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\106.0.5249.91\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\106.0.5249.103\elevation_service.exe"
Top Runs Differences at: 2022-10-05 16.40.13
remark :
runtime : 28
count : 166
previous date : 2022-10-04
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - LibreOffice 7.3.1.3
old: Version : 7.3.1.3
old: Publisher : The Document Foundation
old: URLinfo : https://www.libreoffice.org/
old: ParentKey :
old: Install Location : C:\Program Files\LibreOffice\
old: Windows Installer : 0x00000001
software - product - LibreOffice 7.4.1.2
new: Version : 7.4.1.2
new: Publisher : The Document Foundation
new: URLinfo : https://www.libreoffice.org/
new: ParentKey :
new: Install Location : C:\Program Files\LibreOffice\
new: Windows Installer : 0x00000001
software - product - Microsoft Edge
old: Version : 105.0.1343.53
new: Version : 106.0.1370.34
system - services - survey
old: AarSvc_fa764 Manual Unknown Agent Activation Runtime_fa764
old: BcastDVRUserService_fa764 Manual Unknown Användartjänst för Spel-DVR och sändning_fa764
old: BluetoothUserService_fa764 Manual Unknown Bluetooth User Support Service_fa764
old: CaptureService_fa764 Manual Unknown CaptureService_fa764
old: cbdhsvc_fa764 Manual Unknown Clipboard User Service_fa764
old: CDPUserSvc_fa764 Auto Unknown Connected Devices Platform User Service_fa764
old: ConsentUxUserSvc_fa764 Manual Unknown ConsentUX_fa764
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_fa764
old: DeviceAssociationBrokerSvc_fa7 Manual Unknown DeviceAssociationBroker_fa764
old: DevicePickerUserSvc_fa764 Manual Unknown DevicePicker_fa764
old: DevicesFlowUserSvc_fa764 Manual Unknown DevicesFlow_fa764
old: MessagingService_fa764 Manual Unknown MessagingService_fa764
old: OneSyncSvc_fa764 Auto Unknown Synkroniseringsvärd_fa764
old: PimIndexMaintenanceSvc_fa764 Manual Unknown Contact Data_fa764
old: PrintWorkflowUserSvc_fa764 Manual Unknown PrintWorkflow_fa764
old: UdkUserSvc_fa764 Manual Unknown Udk-användartjänst_fa764
old: UnistoreSvc_fa764 Manual Unknown User Data Storage_fa764
old: UserDataSvc_fa764 Manual Unknown User Data Access_fa764
old: WpnUserService_fa764 Auto Unknown Windows Push Notifications User Service_fa764
system - services - AarSvc_fa764
old: DisplayName : Agent Activation Runtime_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_fa764
old: DisplayName : Användartjänst för Spel-DVR och sändning_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_fa764
old: DisplayName : Bluetooth User Support Service_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_fa764
old: DisplayName : CaptureService_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_fa764
old: DisplayName : Clipboard User Service_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_fa764
old: DisplayName : Connected Devices Platform User Service_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_fa764
old: DisplayName : ConsentUX_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_fa764
old: DisplayName : CredentialEnrollmentManagerUserSvc_fa764
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_fa764
old: DisplayName : DeviceAssociationBroker_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_fa764
old: DisplayName : DevicePicker_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_fa764
old: DisplayName : DevicesFlow_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_fa764
old: DisplayName : MessagingService_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\105.0.1343.53\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\106.0.1370.34\elevation_service.exe"
system - services - OneSyncSvc_fa764
old: DisplayName : Synkroniseringsvärd_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_fa764
old: DisplayName : Contact Data_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_fa764
old: DisplayName : PrintWorkflow_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_fa764
old: DisplayName : Udk-användartjänst_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_fa764
old: DisplayName : User Data Storage_fa764
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_fa764
old: DisplayName : User Data Access_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_fa764
old: DisplayName : Windows Push Notifications User Service_fa764
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2022-10-03 17.55.29
remark :
runtime : 13
count : 13
previous date : 2022-10-02
previous time : 17.55.29
system - SystemDriver - MpKsl983a1d9a
old: AcceptPause : 0
old: Description : MpKsl983a1d9a
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F35BE495-B7EF-4AA0-A7B1-E1FECCB417DB}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - hotfix - KB5017022
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5017262
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
Top Runs Differences at: 2022-10-02 17.55.29
remark :
runtime : 14
count : 15
previous date : 2022-10-02
previous time : 13.43.51
software - product - Google Chrome
old: Version : 106.0.5249.61
new: Version : 106.0.5249.91
system - SystemDriver - MpKsl983a1d9a
new: AcceptPause : 0
new: Description : MpKsl983a1d9a
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F35BE495-B7EF-4AA0-A7B1-E1FECCB417DB}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\106.0.5249.61\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\106.0.5249.91\elevation_service.exe"
Top Runs Differences at: 2022-10-02 13.43.51
remark :
runtime : 256
count : 166
previous date : 2022-09-29
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_fa764 Manual Unknown Agent Activation Runtime_fa764
new: BcastDVRUserService_fa764 Manual Unknown Användartjänst för Spel-DVR och sändning_fa764
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_fa764 Manual Unknown Bluetooth User Support Service_fa764
new: CaptureService_fa764 Manual Unknown CaptureService_fa764
new: cbdhsvc_fa764 Manual Unknown Clipboard User Service_fa764
new: CDPUserSvc_fa764 Auto Unknown Connected Devices Platform User Service_fa764
new: ConsentUxUserSvc_fa764 Manual Unknown ConsentUX_fa764
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_fa764
new: DeviceAssociationBrokerSvc_fa7 Manual Unknown DeviceAssociationBroker_fa764
new: DevicePickerUserSvc_fa764 Manual Unknown DevicePicker_fa764
new: DevicesFlowUserSvc_fa764 Manual Unknown DevicesFlow_fa764
new: MessagingService_fa764 Manual Unknown MessagingService_fa764
new: OneSyncSvc_fa764 Auto Unknown Synkroniseringsvärd_fa764
new: PimIndexMaintenanceSvc_fa764 Manual Unknown Contact Data_fa764
new: PrintWorkflowUserSvc_fa764 Manual Unknown PrintWorkflow_fa764
new: UdkUserSvc_fa764 Manual Unknown Udk-användartjänst_fa764
new: UnistoreSvc_fa764 Manual Unknown User Data Storage_fa764
new: UserDataSvc_fa764 Manual Unknown User Data Access_fa764
new: WpnUserService_fa764 Auto Unknown Windows Push Notifications User Service_fa764
system - services - AarSvc_fa764
new: DisplayName : Agent Activation Runtime_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_fa764
new: DisplayName : Användartjänst för Spel-DVR och sändning_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_fa764
new: DisplayName : Bluetooth User Support Service_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_fa764
new: DisplayName : CaptureService_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_fa764
new: DisplayName : Clipboard User Service_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_fa764
new: DisplayName : Connected Devices Platform User Service_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_fa764
new: DisplayName : ConsentUX_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_fa764
new: DisplayName : CredentialEnrollmentManagerUserSvc_fa764
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_fa764
new: DisplayName : DeviceAssociationBroker_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_fa764
new: DisplayName : DevicePicker_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_fa764
new: DisplayName : DevicesFlow_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_fa764
new: DisplayName : MessagingService_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_fa764
new: DisplayName : Synkroniseringsvärd_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_fa764
new: DisplayName : Contact Data_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_fa764
new: DisplayName : PrintWorkflow_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_fa764
new: DisplayName : Udk-användartjänst_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_fa764
new: DisplayName : User Data Storage_fa764
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_fa764
new: DisplayName : User Data Access_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_fa764
new: DisplayName : Windows Push Notifications User Service_fa764
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2022-09-29 12.06.10
remark :
runtime : 22
count : 176
previous date : 2022-09-28
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 105.0.5195.127
new: Version : 106.0.5249.61
software - product - Microsoft Edge
old: Version : 105.0.1343.50
new: Version : 105.0.1343.53
system - hotfix - KB5017308
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5017380
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_9b7e3 Manual Unknown Agent Activation Runtime_9b7e3
old: BcastDVRUserService_9b7e3 Manual Unknown Användartjänst för Spel-DVR och sändning_9b7e3
old: BluetoothUserService_9b7e3 Manual Unknown Bluetooth User Support Service_9b7e3
old: CaptureService_9b7e3 Manual Unknown CaptureService_9b7e3
old: cbdhsvc_9b7e3 Manual Unknown Clipboard User Service_9b7e3
old: CDPUserSvc_9b7e3 Auto Unknown Connected Devices Platform User Service_9b7e3
old: ConsentUxUserSvc_9b7e3 Manual Unknown ConsentUX_9b7e3
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_9b7e3
old: DeviceAssociationBrokerSvc_9b7 Manual Unknown DeviceAssociationBroker_9b7e3
old: DevicePickerUserSvc_9b7e3 Manual Unknown DevicePicker_9b7e3
old: DevicesFlowUserSvc_9b7e3 Manual Unknown DevicesFlow_9b7e3
old: MessagingService_9b7e3 Manual Unknown MessagingService_9b7e3
old: OneSyncSvc_9b7e3 Auto Unknown Synkroniseringsvärd_9b7e3
old: PimIndexMaintenanceSvc_9b7e3 Manual Unknown Contact Data_9b7e3
old: PrintWorkflowUserSvc_9b7e3 Manual Unknown PrintWorkflow_9b7e3
old: UdkUserSvc_9b7e3 Manual Unknown Udk-användartjänst_9b7e3
old: UnistoreSvc_9b7e3 Manual Unknown User Data Storage_9b7e3
old: UserDataSvc_9b7e3 Manual Unknown User Data Access_9b7e3
old: WpnUserService_9b7e3 Auto Unknown Windows Push Notifications User Service_9b7e3
system - services - AarSvc_9b7e3
old: DisplayName : Agent Activation Runtime_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_9b7e3
old: DisplayName : Användartjänst för Spel-DVR och sändning_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_9b7e3
old: DisplayName : Bluetooth User Support Service_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_9b7e3
old: DisplayName : CaptureService_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_9b7e3
old: DisplayName : Clipboard User Service_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_9b7e3
old: DisplayName : Connected Devices Platform User Service_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_9b7e3
old: DisplayName : ConsentUX_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_9b7e3
old: DisplayName : CredentialEnrollmentManagerUserSvc_9b7e3
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_9b7e3
old: DisplayName : DeviceAssociationBroker_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_9b7e3
old: DisplayName : DevicePicker_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_9b7e3
old: DisplayName : DevicesFlow_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\105.0.5195.127\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\106.0.5249.61\elevation_service.exe"
system - services - MessagingService_9b7e3
old: DisplayName : MessagingService_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\105.0.1343.50\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\105.0.1343.53\elevation_service.exe"
system - services - OneSyncSvc_9b7e3
old: DisplayName : Synkroniseringsvärd_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_9b7e3
old: DisplayName : Contact Data_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_9b7e3
old: DisplayName : PrintWorkflow_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_9b7e3
old: DisplayName : Udk-användartjänst_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_9b7e3
old: DisplayName : User Data Storage_9b7e3
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_9b7e3
old: DisplayName : User Data Access_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_9b7e3
old: DisplayName : Windows Push Notifications User Service_9b7e3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2022-09-28 17.55.29
remark :
runtime : 12
count : 16
previous date : 2022-09-27
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 63.0.6.0
new: Version : 64.0.4.0
old: Install Location : C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe
Top Runs Differences at: 2022-09-26 17.55.29
remark :
runtime : 12
count : 32
previous date : 2022-09-25
previous time : 20.36.11
boot - startup - tvncontrol
new: Command : "C:\Program Files\TightVNC\tvnserver.exe" -controlservice -slave
new: Description : tvncontrol
new: Location : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : tvncontrol
new: SettingID :
new: User : Public
new:
software - product - TightVNC
new: Version : 2.8.63.0
new: Publisher : GlavSoft LLC.
new: ParentKey :
new: Install Location :
new: Windows Installer : 0x00000001
software - product - VNC Server 6.10.1
old: Version : 6.10.1.47571
old: Publisher : RealVNC
old: URLinfo : https://www.realvnc.com
old: ParentKey :
old: Install Location :
old: Windows Installer : 0x00000001
system - services - survey
new: tvnserver Auto Own Process TightVNC Server
old: vncserver Auto Own Process VNC Server
system - services - tvnserver
new: DisplayName : TightVNC Server
new: PathName : "C:\Program Files\TightVNC\tvnserver.exe" -service
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - vncserver
old: DisplayName : VNC Server
old: PathName : "C:\Program Files\RealVNC\VNC Server\vncserver.exe" -service
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName : LocalSystem
Top Runs Differences at: 2022-09-25 20.36.11
remark :
runtime : 39
count : 288
previous date : 2022-09-25
previous time : 17.55.29
software - product - VNC Server 6.10.1
new: Version : 6.10.1.47571
new: Publisher : RealVNC
new: URLinfo : https://www.realvnc.com
new: ParentKey :
new: Install Location :
new: Windows Installer : 0x00000001
system - SystemDriver - MpKsl6a94c5a7
old: AcceptPause : 0
old: Description : MpKsl6a94c5a7
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{66F74C03-3FBD-4B9B-8213-113BC3347B06}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - survey
old: AarSvc_af6178e Manual Unknown Agent Activation Runtime_af6178e
new: AarSvc_9b7e3 Manual Unknown Agent Activation Runtime_9b7e3
old: BcastDVRUserService_af6178e Manual Unknown Användartjänst för Spel-DVR och sändning_af6178e
new: BcastDVRUserService_9b7e3 Manual Unknown Användartjänst för Spel-DVR och sändning_9b7e3
old: BluetoothUserService_af6178e Manual Unknown Bluetooth User Support Service_af6178e
new: BluetoothUserService_9b7e3 Manual Unknown Bluetooth User Support Service_9b7e3
old: CaptureService_af6178e Manual Unknown CaptureService_af6178e
old: cbdhsvc_af6178e Manual Unknown Clipboard User Service_af6178e
new: CaptureService_9b7e3 Manual Unknown CaptureService_9b7e3
new: cbdhsvc_9b7e3 Manual Unknown Clipboard User Service_9b7e3
old: CDPUserSvc_af6178e Auto Unknown Connected Devices Platform User Service_af6178e
new: CDPUserSvc_9b7e3 Auto Unknown Connected Devices Platform User Service_9b7e3
old: ConsentUxUserSvc_af6178e Manual Unknown ConsentUX_af6178e
new: ConsentUxUserSvc_9b7e3 Manual Unknown ConsentUX_9b7e3
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_af6178e
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_9b7e3
old: DeviceAssociationBrokerSvc_af6 Manual Unknown DeviceAssociationBroker_af6178e
new: DeviceAssociationBrokerSvc_9b7 Manual Unknown DeviceAssociationBroker_9b7e3
old: DevicePickerUserSvc_af6178e Manual Unknown DevicePicker_af6178e
old: DevicesFlowUserSvc_af6178e Manual Unknown DevicesFlow_af6178e
new: DevicePickerUserSvc_9b7e3 Manual Unknown DevicePicker_9b7e3
new: DevicesFlowUserSvc_9b7e3 Manual Unknown DevicesFlow_9b7e3
old: MessagingService_af6178e Manual Unknown MessagingService_af6178e
new: MessagingService_9b7e3 Manual Unknown MessagingService_9b7e3
old: OneSyncSvc_af6178e Auto Unknown Synkroniseringsvärd_af6178e
new: OneSyncSvc_9b7e3 Auto Unknown Synkroniseringsvärd_9b7e3
old: PimIndexMaintenanceSvc_af6178e Manual Unknown Contact Data_af6178e
new: PimIndexMaintenanceSvc_9b7e3 Manual Unknown Contact Data_9b7e3
old: PrintWorkflowUserSvc_af6178e Manual Unknown PrintWorkflow_af6178e
new: PrintWorkflowUserSvc_9b7e3 Manual Unknown PrintWorkflow_9b7e3
old: UdkUserSvc_af6178e Manual Unknown Udk-användartjänst_af6178e
new: UdkUserSvc_9b7e3 Manual Unknown Udk-användartjänst_9b7e3
old: UnistoreSvc_af6178e Manual Unknown User Data Storage_af6178e
new: UnistoreSvc_9b7e3 Manual Unknown User Data Storage_9b7e3
old: UserDataSvc_af6178e Manual Unknown User Data Access_af6178e
new: UserDataSvc_9b7e3 Manual Unknown User Data Access_9b7e3
new: vncserver Auto Own Process VNC Server
old: WpnUserService_af6178e Auto Unknown Windows Push Notifications User Service_af6178e
new: WpnUserService_9b7e3 Auto Unknown Windows Push Notifications User Service_9b7e3
system - services - AarSvc_af6178e
old: DisplayName : Agent Activation Runtime_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_9b7e3
new: DisplayName : Agent Activation Runtime_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_af6178e
old: DisplayName : Användartjänst för Spel-DVR och sändning_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_9b7e3
new: DisplayName : Användartjänst för Spel-DVR och sändning_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_af6178e
old: DisplayName : Bluetooth User Support Service_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_9b7e3
new: DisplayName : Bluetooth User Support Service_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_af6178e
old: DisplayName : CaptureService_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_af6178e
old: DisplayName : Clipboard User Service_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_9b7e3
new: DisplayName : CaptureService_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_9b7e3
new: DisplayName : Clipboard User Service_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_af6178e
old: DisplayName : Connected Devices Platform User Service_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_9b7e3
new: DisplayName : Connected Devices Platform User Service_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_af6178e
old: DisplayName : ConsentUX_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_9b7e3
new: DisplayName : ConsentUX_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_af6178e
old: DisplayName : CredentialEnrollmentManagerUserSvc_af6178e
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_9b7e3
new: DisplayName : CredentialEnrollmentManagerUserSvc_9b7e3
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_af6178e
old: DisplayName : DeviceAssociationBroker_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_9b7e3
new: DisplayName : DeviceAssociationBroker_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_af6178e
old: DisplayName : DevicePicker_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_af6178e
old: DisplayName : DevicesFlow_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_9b7e3
new: DisplayName : DevicePicker_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_9b7e3
new: DisplayName : DevicesFlow_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_af6178e
old: DisplayName : MessagingService_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_9b7e3
new: DisplayName : MessagingService_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_af6178e
old: DisplayName : Synkroniseringsvärd_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_9b7e3
new: DisplayName : Synkroniseringsvärd_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_af6178e
old: DisplayName : Contact Data_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_9b7e3
new: DisplayName : Contact Data_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_af6178e
old: DisplayName : PrintWorkflow_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_9b7e3
new: DisplayName : PrintWorkflow_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_af6178e
old: DisplayName : Udk-användartjänst_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_9b7e3
new: DisplayName : Udk-användartjänst_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_af6178e
old: DisplayName : User Data Storage_af6178e
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_9b7e3
new: DisplayName : User Data Storage_9b7e3
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_af6178e
old: DisplayName : User Data Access_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_9b7e3
new: DisplayName : User Data Access_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - vncserver
new: DisplayName : VNC Server
new: PathName : "C:\Program Files\RealVNC\VNC Server\vncserver.exe" -service
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName : LocalSystem
system - services - WpnUserService_af6178e
old: DisplayName : Windows Push Notifications User Service_af6178e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_9b7e3
new: DisplayName : Windows Push Notifications User Service_9b7e3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - firewall - general
old: enabled : 0x00000001
new: enabled : 0x00000000
Top Runs Differences at: 2022-09-25 17.55.29
remark :
runtime : 12
count : 15
previous date : 2022-09-25
previous time : 10.44.28
software - product - Microsoft Edge
old: Version : 105.0.1343.42
new: Version : 105.0.1343.50
system - SystemDriver - MpKsl6a94c5a7
new: AcceptPause : 0
new: Description : MpKsl6a94c5a7
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{66F74C03-3FBD-4B9B-8213-113BC3347B06}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\105.0.1343.42\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\105.0.1343.50\elevation_service.exe"
Top Runs Differences at: 2022-09-25 10.44.28
remark :
runtime : 170
count : 288
previous date : 2022-09-20
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe --startup_mode
hardware - diskdrive - survey
old: USB 1 GB USB Device partitions: 01 SCSI Bus: 0 LUN: 0
Volume Management - partitions
old: Disk nr 1, partition nr 0 MS-DOS V4 Huge 1896 MB
software - product - Google Drive
old: Version : 63.0.5.0
new: Version : 63.0.6.0
old: Install Location : C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\63.0.6.0\GoogleDriveFS.exe
system - services - survey
old: AarSvc_6848f5 Manual Unknown Agent Activation Runtime_6848f5
new: AarSvc_af6178e Manual Unknown Agent Activation Runtime_af6178e
old: BcastDVRUserService_6848f5 Manual Unknown Användartjänst för Spel-DVR och sändning_6848f5
new: BcastDVRUserService_af6178e Manual Unknown Användartjänst för Spel-DVR och sändning_af6178e
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_6848f5 Manual Unknown Bluetooth User Support Service_6848f5
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_af6178e Manual Unknown Bluetooth User Support Service_af6178e
old: CaptureService_6848f5 Manual Unknown CaptureService_6848f5
old: cbdhsvc_6848f5 Manual Unknown Clipboard User Service_6848f5
new: CaptureService_af6178e Manual Unknown CaptureService_af6178e
new: cbdhsvc_af6178e Manual Unknown Clipboard User Service_af6178e
old: CDPUserSvc_6848f5 Auto Unknown Connected Devices Platform User Service_6848f5
new: CDPUserSvc_af6178e Auto Unknown Connected Devices Platform User Service_af6178e
old: ConsentUxUserSvc_6848f5 Manual Unknown ConsentUX_6848f5
new: ConsentUxUserSvc_af6178e Manual Unknown ConsentUX_af6178e
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_6848f5
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_af6178e
old: DeviceAssociationBrokerSvc_684 Manual Unknown DeviceAssociationBroker_6848f5
new: DeviceAssociationBrokerSvc_af6 Manual Unknown DeviceAssociationBroker_af6178e
old: DevicePickerUserSvc_6848f5 Manual Unknown DevicePicker_6848f5
old: DevicesFlowUserSvc_6848f5 Manual Unknown DevicesFlow_6848f5
new: DevicePickerUserSvc_af6178e Manual Unknown DevicePicker_af6178e
new: DevicesFlowUserSvc_af6178e Manual Unknown DevicesFlow_af6178e
old: MessagingService_6848f5 Manual Unknown MessagingService_6848f5
new: MessagingService_af6178e Manual Unknown MessagingService_af6178e
old: OneSyncSvc_6848f5 Auto Unknown Synkroniseringsvärd_6848f5
new: OneSyncSvc_af6178e Auto Unknown Synkroniseringsvärd_af6178e
old: PimIndexMaintenanceSvc_6848f5 Manual Unknown Contact Data_6848f5
new: PimIndexMaintenanceSvc_af6178e Manual Unknown Contact Data_af6178e
old: PrintWorkflowUserSvc_6848f5 Manual Unknown PrintWorkflow_6848f5
new: PrintWorkflowUserSvc_af6178e Manual Unknown PrintWorkflow_af6178e
old: UdkUserSvc_6848f5 Manual Unknown Udk-användartjänst_6848f5
new: UdkUserSvc_af6178e Manual Unknown Udk-användartjänst_af6178e
old: UnistoreSvc_6848f5 Manual Unknown User Data Storage_6848f5
new: UnistoreSvc_af6178e Manual Unknown User Data Storage_af6178e
old: UserDataSvc_6848f5 Manual Unknown User Data Access_6848f5
new: UserDataSvc_af6178e Manual Unknown User Data Access_af6178e
old: WpnUserService_6848f5 Auto Unknown Windows Push Notifications User Service_6848f5
new: WpnUserService_af6178e Auto Unknown Windows Push Notifications User Service_af6178e
system - services - AarSvc_6848f5
old: DisplayName : Agent Activation Runtime_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_af6178e
new: DisplayName : Agent Activation Runtime_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_6848f5
old: DisplayName : Användartjänst för Spel-DVR och sändning_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_af6178e
new: DisplayName : Användartjänst för Spel-DVR och sändning_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_6848f5
old: DisplayName : Bluetooth User Support Service_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_af6178e
new: DisplayName : Bluetooth User Support Service_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_6848f5
old: DisplayName : CaptureService_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_6848f5
old: DisplayName : Clipboard User Service_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_af6178e
new: DisplayName : CaptureService_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_af6178e
new: DisplayName : Clipboard User Service_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_6848f5
old: DisplayName : Connected Devices Platform User Service_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_af6178e
new: DisplayName : Connected Devices Platform User Service_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_6848f5
old: DisplayName : ConsentUX_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_af6178e
new: DisplayName : ConsentUX_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_6848f5
old: DisplayName : CredentialEnrollmentManagerUserSvc_6848f5
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_af6178e
new: DisplayName : CredentialEnrollmentManagerUserSvc_af6178e
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_6848f5
old: DisplayName : DeviceAssociationBroker_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_af6178e
new: DisplayName : DeviceAssociationBroker_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_6848f5
old: DisplayName : DevicePicker_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_6848f5
old: DisplayName : DevicesFlow_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_af6178e
new: DisplayName : DevicePicker_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_af6178e
new: DisplayName : DevicesFlow_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_6848f5
old: DisplayName : MessagingService_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_af6178e
new: DisplayName : MessagingService_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_6848f5
old: DisplayName : Synkroniseringsvärd_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_af6178e
new: DisplayName : Synkroniseringsvärd_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_6848f5
old: DisplayName : Contact Data_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_af6178e
new: DisplayName : Contact Data_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_6848f5
old: DisplayName : PrintWorkflow_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_af6178e
new: DisplayName : PrintWorkflow_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_6848f5
old: DisplayName : Udk-användartjänst_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_af6178e
new: DisplayName : Udk-användartjänst_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_6848f5
old: DisplayName : User Data Storage_6848f5
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_af6178e
new: DisplayName : User Data Storage_af6178e
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_6848f5
old: DisplayName : User Data Access_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_af6178e
new: DisplayName : User Data Access_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_6848f5
old: DisplayName : Windows Push Notifications User Service_6848f5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_af6178e
new: DisplayName : Windows Push Notifications User Service_af6178e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2022-09-19 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-09-18
previous time : 17.55.29
software - product - Railroad & Co. Version 10.0
new: Version :
new: Publisher :
new: ParentKey :
new: Install Location :
Top Runs Differences at: 2022-09-18 17.55.29
remark :
runtime : 13
count : 4
previous date : 2022-09-17
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 105.0.1343.33
new: Version : 105.0.1343.42
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\105.0.1343.33\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\105.0.1343.42\elevation_service.exe"
Top Runs Differences at: 2022-09-17 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-09-16
previous time : 17.55.29
software - product - Google Chrome
old: Version : 105.0.5195.102
new: Version : 105.0.5195.127
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\105.0.5195.102\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\105.0.5195.127\elevation_service.exe"
Top Runs Differences at: 2022-09-14 17.55.29
remark :
runtime : 12
count : 172
previous date : 2022-09-13
previous time : 20.26.41
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_6848f5 Manual Unknown Agent Activation Runtime_6848f5
new: BcastDVRUserService_6848f5 Manual Unknown Användartjänst för Spel-DVR och sändning_6848f5
new: BluetoothUserService_6848f5 Manual Unknown Bluetooth User Support Service_6848f5
new: CaptureService_6848f5 Manual Unknown CaptureService_6848f5
new: cbdhsvc_6848f5 Manual Unknown Clipboard User Service_6848f5
new: CDPUserSvc_6848f5 Auto Unknown Connected Devices Platform User Service_6848f5
new: ConsentUxUserSvc_6848f5 Manual Unknown ConsentUX_6848f5
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_6848f5
new: DeviceAssociationBrokerSvc_684 Manual Unknown DeviceAssociationBroker_6848f5
new: DevicePickerUserSvc_6848f5 Manual Unknown DevicePicker_6848f5
new: DevicesFlowUserSvc_6848f5 Manual Unknown DevicesFlow_6848f5
new: MessagingService_6848f5 Manual Unknown MessagingService_6848f5
new: OneSyncSvc_6848f5 Auto Unknown Synkroniseringsvärd_6848f5
new: PimIndexMaintenanceSvc_6848f5 Manual Unknown Contact Data_6848f5
new: PrintWorkflowUserSvc_6848f5 Manual Unknown PrintWorkflow_6848f5
new: UdkUserSvc_6848f5 Manual Unknown Udk-användartjänst_6848f5
new: UnistoreSvc_6848f5 Manual Unknown User Data Storage_6848f5
new: UserDataSvc_6848f5 Manual Unknown User Data Access_6848f5
new: WpnUserService_6848f5 Auto Unknown Windows Push Notifications User Service_6848f5
system - services - AarSvc_6848f5
new: DisplayName : Agent Activation Runtime_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_6848f5
new: DisplayName : Användartjänst för Spel-DVR och sändning_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_6848f5
new: DisplayName : Bluetooth User Support Service_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_6848f5
new: DisplayName : CaptureService_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_6848f5
new: DisplayName : Clipboard User Service_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_6848f5
new: DisplayName : Connected Devices Platform User Service_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_6848f5
new: DisplayName : ConsentUX_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_6848f5
new: DisplayName : CredentialEnrollmentManagerUserSvc_6848f5
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_6848f5
new: DisplayName : DeviceAssociationBroker_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_6848f5
new: DisplayName : DevicePicker_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_6848f5
new: DisplayName : DevicesFlow_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_6848f5
new: DisplayName : MessagingService_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_6848f5
new: DisplayName : Synkroniseringsvärd_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_6848f5
new: DisplayName : Contact Data_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_6848f5
new: DisplayName : PrintWorkflow_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_6848f5
new: DisplayName : Udk-användartjänst_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_6848f5
new: DisplayName : User Data Storage_6848f5
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_6848f5
new: DisplayName : User Data Access_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_6848f5
new: DisplayName : Windows Push Notifications User Service_6848f5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-09-13 20.26.41
remark :
runtime : 24
count : 186
previous date : 2022-09-13
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - SystemDriver - BasicRender
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicrender.inf_amd64_df49c4daa6251397\BasicRender.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicrender.inf_amd64_ed345fdc37d65139\BasicRender.sys
system - hotfix - KB5016592
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5016688
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5017022
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5017308
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_cca6f50 Manual Unknown Agent Activation Runtime_cca6f50
old: BcastDVRUserService_cca6f50 Manual Unknown Användartjänst för Spel-DVR och sändning_cca6f50
old: BluetoothUserService_cca6f50 Manual Unknown Bluetooth User Support Service_cca6f50
old: CaptureService_cca6f50 Manual Unknown CaptureService_cca6f50
old: cbdhsvc_cca6f50 Manual Unknown Clipboard User Service_cca6f50
old: CDPUserSvc_cca6f50 Auto Unknown Connected Devices Platform User Service_cca6f50
old: ConsentUxUserSvc_cca6f50 Manual Unknown ConsentUX_cca6f50
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_cca6f50
old: DeviceAssociationBrokerSvc_cca Manual Unknown DeviceAssociationBroker_cca6f50
old: DevicePickerUserSvc_cca6f50 Manual Unknown DevicePicker_cca6f50
old: DevicesFlowUserSvc_cca6f50 Manual Unknown DevicesFlow_cca6f50
old: MessagingService_cca6f50 Manual Unknown MessagingService_cca6f50
old: OneSyncSvc_cca6f50 Auto Unknown Synkroniseringsvärd_cca6f50
old: PimIndexMaintenanceSvc_cca6f50 Manual Unknown Contact Data_cca6f50
old: PrintWorkflowUserSvc_cca6f50 Manual Unknown PrintWorkflow_cca6f50
old: UdkUserSvc_cca6f50 Manual Unknown Udk-användartjänst_cca6f50
old: UnistoreSvc_cca6f50 Manual Unknown User Data Storage_cca6f50
old: UserDataSvc_cca6f50 Manual Unknown User Data Access_cca6f50
old: WpnUserService_cca6f50 Auto Unknown Windows Push Notifications User Service_cca6f50
system - services - AarSvc_cca6f50
old: DisplayName : Agent Activation Runtime_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_cca6f50
old: DisplayName : Användartjänst för Spel-DVR och sändning_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_cca6f50
old: DisplayName : Bluetooth User Support Service_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_cca6f50
old: DisplayName : CaptureService_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_cca6f50
old: DisplayName : Clipboard User Service_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_cca6f50
old: DisplayName : Connected Devices Platform User Service_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_cca6f50
old: DisplayName : ConsentUX_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_cca6f50
old: DisplayName : CredentialEnrollmentManagerUserSvc_cca6f50
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_cca6f50
old: DisplayName : DeviceAssociationBroker_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_cca6f50
old: DisplayName : DevicePicker_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_cca6f50
old: DisplayName : DevicesFlow_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_cca6f50
old: DisplayName : MessagingService_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_cca6f50
old: DisplayName : Synkroniseringsvärd_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_cca6f50
old: DisplayName : Contact Data_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_cca6f50
old: DisplayName : PrintWorkflow_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_cca6f50
old: DisplayName : Udk-användartjänst_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_cca6f50
old: DisplayName : User Data Storage_cca6f50
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_cca6f50
old: DisplayName : User Data Access_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_cca6f50
old: DisplayName : Windows Push Notifications User Service_cca6f50
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2022-09-11 17.55.29
remark :
runtime : 13
count : 12
previous date : 2022-09-11
previous time : 12.49.25
software - product - Google Chrome
old: Version : 104.0.5112.102
new: Version : 105.0.5195.102
software - product - Microsoft Edge
old: Version : 105.0.1343.27
new: Version : 105.0.1343.33
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.102\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\105.0.5195.102\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\105.0.1343.27\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\105.0.1343.33\elevation_service.exe"
Top Runs Differences at: 2022-09-11 12.49.25
remark :
runtime : 255
count : 286
previous date : 2022-09-07
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 62.0.2.0
new: Version : 63.0.5.0
old: Install Location : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\63.0.5.0\GoogleDriveFS.exe
system - services - survey
old: AarSvc_6086c82 Manual Unknown Agent Activation Runtime_6086c82
new: AarSvc_cca6f50 Manual Unknown Agent Activation Runtime_cca6f50
old: BcastDVRUserService_6086c82 Manual Unknown Användartjänst för Spel-DVR och sändning_6086c82
new: BcastDVRUserService_cca6f50 Manual Unknown Användartjänst för Spel-DVR och sändning_cca6f50
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_6086c82 Manual Unknown Bluetooth User Support Service_6086c82
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_cca6f50 Manual Unknown Bluetooth User Support Service_cca6f50
old: CaptureService_6086c82 Manual Unknown CaptureService_6086c82
old: cbdhsvc_6086c82 Manual Unknown Clipboard User Service_6086c82
new: CaptureService_cca6f50 Manual Unknown CaptureService_cca6f50
new: cbdhsvc_cca6f50 Manual Unknown Clipboard User Service_cca6f50
old: CDPUserSvc_6086c82 Auto Unknown Connected Devices Platform User Service_6086c82
new: CDPUserSvc_cca6f50 Auto Unknown Connected Devices Platform User Service_cca6f50
old: ConsentUxUserSvc_6086c82 Manual Unknown ConsentUX_6086c82
new: ConsentUxUserSvc_cca6f50 Manual Unknown ConsentUX_cca6f50
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_6086c82
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_cca6f50
old: DeviceAssociationBrokerSvc_608 Manual Unknown DeviceAssociationBroker_6086c82
new: DeviceAssociationBrokerSvc_cca Manual Unknown DeviceAssociationBroker_cca6f50
old: DevicePickerUserSvc_6086c82 Manual Unknown DevicePicker_6086c82
old: DevicesFlowUserSvc_6086c82 Manual Unknown DevicesFlow_6086c82
new: DevicePickerUserSvc_cca6f50 Manual Unknown DevicePicker_cca6f50
new: DevicesFlowUserSvc_cca6f50 Manual Unknown DevicesFlow_cca6f50
old: MessagingService_6086c82 Manual Unknown MessagingService_6086c82
new: MessagingService_cca6f50 Manual Unknown MessagingService_cca6f50
old: OneSyncSvc_6086c82 Auto Unknown Synkroniseringsvärd_6086c82
new: OneSyncSvc_cca6f50 Auto Unknown Synkroniseringsvärd_cca6f50
old: PimIndexMaintenanceSvc_6086c82 Manual Unknown Contact Data_6086c82
new: PimIndexMaintenanceSvc_cca6f50 Manual Unknown Contact Data_cca6f50
old: PrintWorkflowUserSvc_6086c82 Manual Unknown PrintWorkflow_6086c82
new: PrintWorkflowUserSvc_cca6f50 Manual Unknown PrintWorkflow_cca6f50
old: UdkUserSvc_6086c82 Manual Unknown Udk-användartjänst_6086c82
new: UdkUserSvc_cca6f50 Manual Unknown Udk-användartjänst_cca6f50
old: UnistoreSvc_6086c82 Manual Unknown User Data Storage_6086c82
new: UnistoreSvc_cca6f50 Manual Unknown User Data Storage_cca6f50
old: UserDataSvc_6086c82 Manual Unknown User Data Access_6086c82
new: UserDataSvc_cca6f50 Manual Unknown User Data Access_cca6f50
old: WpnUserService_6086c82 Auto Unknown Windows Push Notifications User Service_6086c82
new: WpnUserService_cca6f50 Auto Unknown Windows Push Notifications User Service_cca6f50
system - services - AarSvc_6086c82
old: DisplayName : Agent Activation Runtime_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_cca6f50
new: DisplayName : Agent Activation Runtime_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_6086c82
old: DisplayName : Användartjänst för Spel-DVR och sändning_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_cca6f50
new: DisplayName : Användartjänst för Spel-DVR och sändning_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_6086c82
old: DisplayName : Bluetooth User Support Service_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_cca6f50
new: DisplayName : Bluetooth User Support Service_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_6086c82
old: DisplayName : CaptureService_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_6086c82
old: DisplayName : Clipboard User Service_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_cca6f50
new: DisplayName : CaptureService_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_cca6f50
new: DisplayName : Clipboard User Service_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_6086c82
old: DisplayName : Connected Devices Platform User Service_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_cca6f50
new: DisplayName : Connected Devices Platform User Service_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_6086c82
old: DisplayName : ConsentUX_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_cca6f50
new: DisplayName : ConsentUX_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_6086c82
old: DisplayName : CredentialEnrollmentManagerUserSvc_6086c82
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_cca6f50
new: DisplayName : CredentialEnrollmentManagerUserSvc_cca6f50
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_6086c82
old: DisplayName : DeviceAssociationBroker_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_cca6f50
new: DisplayName : DeviceAssociationBroker_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_6086c82
old: DisplayName : DevicePicker_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_6086c82
old: DisplayName : DevicesFlow_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_cca6f50
new: DisplayName : DevicePicker_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_cca6f50
new: DisplayName : DevicesFlow_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_6086c82
old: DisplayName : MessagingService_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_cca6f50
new: DisplayName : MessagingService_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_6086c82
old: DisplayName : Synkroniseringsvärd_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_cca6f50
new: DisplayName : Synkroniseringsvärd_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_6086c82
old: DisplayName : Contact Data_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_cca6f50
new: DisplayName : Contact Data_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_6086c82
old: DisplayName : PrintWorkflow_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_cca6f50
new: DisplayName : PrintWorkflow_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_6086c82
old: DisplayName : Udk-användartjänst_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_cca6f50
new: DisplayName : Udk-användartjänst_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_6086c82
old: DisplayName : User Data Storage_6086c82
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_cca6f50
new: DisplayName : User Data Storage_cca6f50
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_6086c82
old: DisplayName : User Data Access_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_cca6f50
new: DisplayName : User Data Access_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_6086c82
old: DisplayName : Windows Push Notifications User Service_6086c82
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_cca6f50
new: DisplayName : Windows Push Notifications User Service_cca6f50
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2022-09-07 17.55.29
remark :
runtime : 12
count : 12
previous date : 2022-09-06
previous time : 17.55.29
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2022-09-05 17.55.29
remark :
runtime : 14
count : 32
previous date : 2022-09-04
previous time : 17.55.29
software - product - Java 8 Update 341 (64-bit)
old: Version : 8.0.3410.10
old: Publisher : Oracle Corporation
old: URLinfo : https://java.com
old: ParentKey :
old: Install Location : C:\Program Files\Java\jre1.8.0_341\
old: NoModify : 0x00000001
old: NoRepair : 0x00000001
old: Windows Installer : 0x00000001
software - product - Java Auto Updater
old: Version : 2.8.341.10
old: Publisher : Oracle Corporation
old: ParentKey :
old: Install Location :
old: NoModify : 0x00000001
old: NoRemove : 0x00000001
old: NoRepair : 0x00000001
old: Windows Installer : 0x00000001
software - product - Java(TM) SE Development Kit 18.0.1.1 (64-bit)
old: Version : 18.0.1.1
old: Publisher : Oracle Corporation
old: URLinfo : http://java.com
old: ParentKey :
old: Install Location : C:\Program Files\Java\jdk-18.0.1.1\
old: NoModify : 0x00000001
old: NoRepair : 0x00000001
old: Windows Installer : 0x00000001
software - product - JMRI - Java Model Railroad Interface
old: Version : 4.26+R381c8dfc32
new: Version : 5.0+Rc441642522
software - product - OpenJDK JRE with Hotspot 11.0.16+8 (x64)
new: Version : 11.0.16.8
new: Publisher : OpenJDK
new: URLinfo : https://www.openlogic.com/solutions/support
new: ParentKey :
new: Install Location : C:\Program Files\OpenJDK\jre-11.0.16.8-hotspot\
new: Windows Installer : 0x00000001
Top Runs Differences at: 2022-09-04 17.55.29
remark :
runtime : 13
count : 182
previous date : 2022-09-03
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: Version : 104.0.1293.70
new: Version : 105.0.1343.27
system - hotfix - KB5015730
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5016592
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: AarSvc_6086c82 Manual Unknown Agent Activation Runtime_6086c82
new: BcastDVRUserService_6086c82 Manual Unknown Användartjänst för Spel-DVR och sändning_6086c82
new: BluetoothUserService_6086c82 Manual Unknown Bluetooth User Support Service_6086c82
new: CaptureService_6086c82 Manual Unknown CaptureService_6086c82
new: cbdhsvc_6086c82 Manual Unknown Clipboard User Service_6086c82
new: CDPUserSvc_6086c82 Auto Unknown Connected Devices Platform User Service_6086c82
new: ConsentUxUserSvc_6086c82 Manual Unknown ConsentUX_6086c82
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_6086c82
new: DeviceAssociationBrokerSvc_608 Manual Unknown DeviceAssociationBroker_6086c82
new: DevicePickerUserSvc_6086c82 Manual Unknown DevicePicker_6086c82
new: DevicesFlowUserSvc_6086c82 Manual Unknown DevicesFlow_6086c82
new: MessagingService_6086c82 Manual Unknown MessagingService_6086c82
new: OneSyncSvc_6086c82 Auto Unknown Synkroniseringsvärd_6086c82
new: PimIndexMaintenanceSvc_6086c82 Manual Unknown Contact Data_6086c82
new: PrintWorkflowUserSvc_6086c82 Manual Unknown PrintWorkflow_6086c82
new: UdkUserSvc_6086c82 Manual Unknown Udk-användartjänst_6086c82
new: UnistoreSvc_6086c82 Manual Unknown User Data Storage_6086c82
new: UserDataSvc_6086c82 Manual Unknown User Data Access_6086c82
new: WpnUserService_6086c82 Auto Unknown Windows Push Notifications User Service_6086c82
system - services - AarSvc_6086c82
new: DisplayName : Agent Activation Runtime_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_6086c82
new: DisplayName : Användartjänst för Spel-DVR och sändning_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_6086c82
new: DisplayName : Bluetooth User Support Service_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_6086c82
new: DisplayName : CaptureService_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_6086c82
new: DisplayName : Clipboard User Service_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_6086c82
new: DisplayName : Connected Devices Platform User Service_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_6086c82
new: DisplayName : ConsentUX_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_6086c82
new: DisplayName : CredentialEnrollmentManagerUserSvc_6086c82
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_6086c82
new: DisplayName : DeviceAssociationBroker_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_6086c82
new: DisplayName : DevicePicker_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_6086c82
new: DisplayName : DevicesFlow_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_6086c82
new: DisplayName : MessagingService_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\104.0.1293.70\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\105.0.1343.27\elevation_service.exe"
system - services - OneSyncSvc_6086c82
new: DisplayName : Synkroniseringsvärd_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_6086c82
new: DisplayName : Contact Data_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_6086c82
new: DisplayName : PrintWorkflow_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_6086c82
new: DisplayName : Udk-användartjänst_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_6086c82
new: DisplayName : User Data Storage_6086c82
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_6086c82
new: DisplayName : User Data Access_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_6086c82
new: DisplayName : Windows Push Notifications User Service_6086c82
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-08-30 17.21.54
remark :
runtime : 26
count : 183
previous date : 2022-08-30
previous time : 15.13.05
boot - startup - GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
old: Command : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe --startup_mode
old: Description : GoogleDriveFS
software - product - Microsoft Edge
old: Version : 104.0.1293.63
new: Version : 104.0.1293.70
system - SystemDriver - BasicDisplay
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicdisplay.inf_amd64_65ab9a260dbf7467\BasicDisplay.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicdisplay.inf_amd64_fc93ae411c02f280\BasicDisplay.sys
system - hotfix - KB5016616
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5016688
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5016705
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_116e7e02 Manual Unknown Agent Activation Runtime_116e7e02
old: BcastDVRUserService_116e7e02 Manual Unknown Användartjänst för Spel-DVR och sändning_116e7e02
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_116e7e02 Manual Unknown Bluetooth User Support Service_116e7e02
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_116e7e02 Manual Unknown CaptureService_116e7e02
old: cbdhsvc_116e7e02 Manual Unknown Clipboard User Service_116e7e02
old: CDPUserSvc_116e7e02 Auto Unknown Connected Devices Platform User Service_116e7e02
old: ConsentUxUserSvc_116e7e02 Manual Unknown ConsentUX_116e7e02
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_116e7e02
old: DeviceAssociationBrokerSvc_116 Manual Unknown DeviceAssociationBroker_116e7e02
old: DevicePickerUserSvc_116e7e02 Manual Unknown DevicePicker_116e7e02
old: DevicesFlowUserSvc_116e7e02 Manual Unknown DevicesFlow_116e7e02
old: MessagingService_116e7e02 Manual Unknown MessagingService_116e7e02
old: OneSyncSvc_116e7e02 Auto Unknown Synkroniseringsvärd_116e7e02
old: PimIndexMaintenanceSvc_116e7e0 Manual Unknown Contact Data_116e7e02
old: PrintWorkflowUserSvc_116e7e02 Manual Unknown PrintWorkflow_116e7e02
old: UdkUserSvc_116e7e02 Manual Unknown Udk-användartjänst_116e7e02
old: UnistoreSvc_116e7e02 Manual Unknown User Data Storage_116e7e02
old: UserDataSvc_116e7e02 Manual Unknown User Data Access_116e7e02
old: WpnUserService_116e7e02 Auto Unknown Windows Push Notifications User Service_116e7e02
system - services - AarSvc_116e7e02
old: DisplayName : Agent Activation Runtime_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_116e7e02
old: DisplayName : Användartjänst för Spel-DVR och sändning_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_116e7e02
old: DisplayName : Bluetooth User Support Service_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_116e7e02
old: DisplayName : CaptureService_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_116e7e02
old: DisplayName : Clipboard User Service_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_116e7e02
old: DisplayName : Connected Devices Platform User Service_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_116e7e02
old: DisplayName : ConsentUX_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_116e7e02
old: DisplayName : CredentialEnrollmentManagerUserSvc_116e7e02
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_116e7e02
old: DisplayName : DeviceAssociationBroker_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_116e7e02
old: DisplayName : DevicePicker_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_116e7e02
old: DisplayName : DevicesFlow_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_116e7e02
old: DisplayName : MessagingService_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\104.0.1293.63\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\104.0.1293.70\elevation_service.exe"
system - services - OneSyncSvc_116e7e02
old: DisplayName : Synkroniseringsvärd_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_116e7e02
old: DisplayName : Contact Data_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_116e7e02
old: DisplayName : PrintWorkflow_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_116e7e02
old: DisplayName : Udk-användartjänst_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_116e7e02
old: DisplayName : User Data Storage_116e7e02
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_116e7e02
old: DisplayName : User Data Access_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_116e7e02
old: DisplayName : Windows Push Notifications User Service_116e7e02
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2022-08-30 15.13.05
remark :
runtime : 87
count : 290
previous date : 2022-08-22
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\62.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\62.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\62.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\62.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\62.0.1.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe --startup_mode
software - product - Google Chrome
old: Version : 104.0.5112.101
new: Version : 104.0.5112.102
software - product - Google Drive
old: Version : 62.0.1.0
new: Version : 62.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\62.0.1.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\62.0.2.0\GoogleDriveFS.exe
system - services - survey
old: AarSvc_ee98059 Manual Unknown Agent Activation Runtime_ee98059
new: AarSvc_116e7e02 Manual Unknown Agent Activation Runtime_116e7e02
old: BcastDVRUserService_ee98059 Manual Unknown Användartjänst för Spel-DVR och sändning_ee98059
new: BcastDVRUserService_116e7e02 Manual Unknown Användartjänst för Spel-DVR och sändning_116e7e02
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_ee98059 Manual Unknown Bluetooth User Support Service_ee98059
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_116e7e02 Manual Unknown Bluetooth User Support Service_116e7e02
old: CaptureService_ee98059 Manual Unknown CaptureService_ee98059
old: cbdhsvc_ee98059 Manual Unknown Clipboard User Service_ee98059
new: CaptureService_116e7e02 Manual Unknown CaptureService_116e7e02
new: cbdhsvc_116e7e02 Manual Unknown Clipboard User Service_116e7e02
old: CDPUserSvc_ee98059 Auto Unknown Connected Devices Platform User Service_ee98059
new: CDPUserSvc_116e7e02 Auto Unknown Connected Devices Platform User Service_116e7e02
old: ConsentUxUserSvc_ee98059 Manual Unknown ConsentUX_ee98059
new: ConsentUxUserSvc_116e7e02 Manual Unknown ConsentUX_116e7e02
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_ee98059
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_116e7e02
old: DeviceAssociationBrokerSvc_ee9 Manual Unknown DeviceAssociationBroker_ee98059
new: DeviceAssociationBrokerSvc_116 Manual Unknown DeviceAssociationBroker_116e7e02
old: DevicePickerUserSvc_ee98059 Manual Unknown DevicePicker_ee98059
old: DevicesFlowUserSvc_ee98059 Manual Unknown DevicesFlow_ee98059
new: DevicePickerUserSvc_116e7e02 Manual Unknown DevicePicker_116e7e02
new: DevicesFlowUserSvc_116e7e02 Manual Unknown DevicesFlow_116e7e02
old: MessagingService_ee98059 Manual Unknown MessagingService_ee98059
new: MessagingService_116e7e02 Manual Unknown MessagingService_116e7e02
old: OneSyncSvc_ee98059 Auto Unknown Synkroniseringsvärd_ee98059
new: OneSyncSvc_116e7e02 Auto Unknown Synkroniseringsvärd_116e7e02
old: PimIndexMaintenanceSvc_ee98059 Manual Unknown Contact Data_ee98059
new: PimIndexMaintenanceSvc_116e7e0 Manual Unknown Contact Data_116e7e02
old: PrintWorkflowUserSvc_ee98059 Manual Unknown PrintWorkflow_ee98059
new: PrintWorkflowUserSvc_116e7e02 Manual Unknown PrintWorkflow_116e7e02
old: UdkUserSvc_ee98059 Manual Unknown Udk-användartjänst_ee98059
new: UdkUserSvc_116e7e02 Manual Unknown Udk-användartjänst_116e7e02
old: UnistoreSvc_ee98059 Manual Unknown User Data Storage_ee98059
new: UnistoreSvc_116e7e02 Manual Unknown User Data Storage_116e7e02
old: UserDataSvc_ee98059 Manual Unknown User Data Access_ee98059
new: UserDataSvc_116e7e02 Manual Unknown User Data Access_116e7e02
old: WpnUserService_ee98059 Auto Unknown Windows Push Notifications User Service_ee98059
new: WpnUserService_116e7e02 Auto Unknown Windows Push Notifications User Service_116e7e02
system - services - AarSvc_ee98059
old: DisplayName : Agent Activation Runtime_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_116e7e02
new: DisplayName : Agent Activation Runtime_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_ee98059
old: DisplayName : Användartjänst för Spel-DVR och sändning_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_116e7e02
new: DisplayName : Användartjänst för Spel-DVR och sändning_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_ee98059
old: DisplayName : Bluetooth User Support Service_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_116e7e02
new: DisplayName : Bluetooth User Support Service_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_ee98059
old: DisplayName : CaptureService_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_ee98059
old: DisplayName : Clipboard User Service_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_116e7e02
new: DisplayName : CaptureService_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_116e7e02
new: DisplayName : Clipboard User Service_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_ee98059
old: DisplayName : Connected Devices Platform User Service_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_116e7e02
new: DisplayName : Connected Devices Platform User Service_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_ee98059
old: DisplayName : ConsentUX_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_116e7e02
new: DisplayName : ConsentUX_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_ee98059
old: DisplayName : CredentialEnrollmentManagerUserSvc_ee98059
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_116e7e02
new: DisplayName : CredentialEnrollmentManagerUserSvc_116e7e02
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_ee98059
old: DisplayName : DeviceAssociationBroker_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_116e7e02
new: DisplayName : DeviceAssociationBroker_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_ee98059
old: DisplayName : DevicePicker_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_ee98059
old: DisplayName : DevicesFlow_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_116e7e02
new: DisplayName : DevicePicker_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_116e7e02
new: DisplayName : DevicesFlow_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.101\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.102\elevation_service.exe"
system - services - MessagingService_ee98059
old: DisplayName : MessagingService_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_116e7e02
new: DisplayName : MessagingService_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_ee98059
old: DisplayName : Synkroniseringsvärd_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_116e7e02
new: DisplayName : Synkroniseringsvärd_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_ee98059
old: DisplayName : Contact Data_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_116e7e02
new: DisplayName : Contact Data_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_ee98059
old: DisplayName : PrintWorkflow_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_116e7e02
new: DisplayName : PrintWorkflow_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_ee98059
old: DisplayName : Udk-användartjänst_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_116e7e02
new: DisplayName : Udk-användartjänst_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_ee98059
old: DisplayName : User Data Storage_ee98059
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_116e7e02
new: DisplayName : User Data Storage_116e7e02
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_ee98059
old: DisplayName : User Data Access_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_116e7e02
new: DisplayName : User Data Access_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_ee98059
old: DisplayName : Windows Push Notifications User Service_ee98059
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_116e7e02
new: DisplayName : Windows Push Notifications User Service_116e7e02
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2022-08-21 17.55.30
remark :
runtime : 12
count : 144
previous date : 2022-08-20
previous time : 17.55.30
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
software - product - Microsoft Edge
old: Version : 104.0.1293.54
new: Version : 104.0.1293.63
system - services - survey
new: AarSvc_ee98059 Manual Unknown Agent Activation Runtime_ee98059
new: BcastDVRUserService_ee98059 Manual Unknown Användartjänst för Spel-DVR och sändning_ee98059
new: BluetoothUserService_ee98059 Manual Unknown Bluetooth User Support Service_ee98059
new: CaptureService_ee98059 Manual Unknown CaptureService_ee98059
new: cbdhsvc_ee98059 Manual Unknown Clipboard User Service_ee98059
new: CDPUserSvc_ee98059 Auto Unknown Connected Devices Platform User Service_ee98059
new: ConsentUxUserSvc_ee98059 Manual Unknown ConsentUX_ee98059
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_ee98059
new: DeviceAssociationBrokerSvc_ee9 Manual Unknown DeviceAssociationBroker_ee98059
new: DevicePickerUserSvc_ee98059 Manual Unknown DevicePicker_ee98059
new: DevicesFlowUserSvc_ee98059 Manual Unknown DevicesFlow_ee98059
new: MessagingService_ee98059 Manual Unknown MessagingService_ee98059
new: OneSyncSvc_ee98059 Auto Unknown Synkroniseringsvärd_ee98059
new: PimIndexMaintenanceSvc_ee98059 Manual Unknown Contact Data_ee98059
new: PrintWorkflowUserSvc_ee98059 Manual Unknown PrintWorkflow_ee98059
new: UdkUserSvc_ee98059 Manual Unknown Udk-användartjänst_ee98059
new: UnistoreSvc_ee98059 Manual Unknown User Data Storage_ee98059
new: UserDataSvc_ee98059 Manual Unknown User Data Access_ee98059
new: WpnUserService_ee98059 Auto Unknown Windows Push Notifications User Service_ee98059
system - services - AarSvc_ee98059
new: DisplayName : Agent Activation Runtime_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_ee98059
new: DisplayName : Användartjänst för Spel-DVR och sändning_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_ee98059
new: DisplayName : Bluetooth User Support Service_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_ee98059
new: DisplayName : CaptureService_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_ee98059
new: DisplayName : Clipboard User Service_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_ee98059
new: DisplayName : Connected Devices Platform User Service_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_ee98059
new: DisplayName : ConsentUX_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_ee98059
new: DisplayName : CredentialEnrollmentManagerUserSvc_ee98059
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_ee98059
new: DisplayName : DeviceAssociationBroker_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_ee98059
new: DisplayName : DevicePicker_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_ee98059
new: DisplayName : DevicesFlow_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_ee98059
new: DisplayName : MessagingService_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\104.0.1293.54\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\104.0.1293.63\elevation_service.exe"
system - services - OneSyncSvc_ee98059
new: DisplayName : Synkroniseringsvärd_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_ee98059
new: DisplayName : Contact Data_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_ee98059
new: DisplayName : PrintWorkflow_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_ee98059
new: DisplayName : Udk-användartjänst_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_ee98059
new: DisplayName : User Data Storage_ee98059
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_ee98059
new: DisplayName : User Data Access_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_ee98059
new: DisplayName : Windows Push Notifications User Service_ee98059
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2022-08-19 17.55.30
remark :
runtime : 12
count : 11
previous date : 2022-08-18
previous time : 17.55.30
software - product - Google Chrome
old: Version : 104.0.5112.81
new: Version : 104.0.5112.101
system - SystemDriver - MpKsl9ba1d429
old: AcceptPause : 0
old: Description : MpKsl9ba1d429
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F4AA198-E384-4CF4-9E4C-B90B231926D1}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.81\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.101\elevation_service.exe"
Top Runs Differences at: 2022-08-18 17.55.30
remark :
runtime : 13
count : 7
previous date : 2022-08-17
previous time : 17.55.30
system - SystemDriver - MpKsl9ba1d429
new: AcceptPause : 0
new: Description : MpKsl9ba1d429
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F4AA198-E384-4CF4-9E4C-B90B231926D1}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2022-08-17 17.55.30
remark :
runtime : 12
count : 2
previous date : 2022-08-16
previous time : 17.55.30
software - product - Microsoft Edge Update
old: Version : 1.3.165.21
new: Version : 1.3.167.21
Top Runs Differences at: 2022-08-15 17.55.30
remark :
runtime : 12
count : 14
previous date : 2022-08-14
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\62.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\62.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\62.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\62.0.1.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\62.0.1.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 61.0.3.0
new: Version : 62.0.1.0
old: Install Location : C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\62.0.1.0\GoogleDriveFS.exe
Top Runs Differences at: 2022-08-14 17.55.30
remark :
runtime : 12
count : 4
previous date : 2022-08-13
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 104.0.1293.47
new: Version : 104.0.1293.54
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\104.0.1293.47\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\104.0.1293.54\elevation_service.exe"
Top Runs Differences at: 2022-08-11 17.55.30
remark :
runtime : 12
count : 7
previous date : 2022-08-10
previous time : 17.55.30
system - SystemDriver - MpKsl4d851285
old: AcceptPause : 0
old: Description : MpKsl4d851285
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AEFDFD5E-5167-4D28-9AFF-6FCDB7B5C20E}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2022-08-10 17.55.30
remark :
runtime : 12
count : 7
previous date : 2022-08-09
previous time : 21.22.51
system - SystemDriver - MpKsl4d851285
new: AcceptPause : 0
new: Description : MpKsl4d851285
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AEFDFD5E-5167-4D28-9AFF-6FCDB7B5C20E}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2022-08-09 21.22.51
remark :
runtime : 34
count : 230
previous date : 2022-08-09
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 104.0.5112.79
new: Version : 104.0.5112.81
software - product - Java 8 Update 331 (64-bit)
old: Version : 8.0.3310.9
old: Publisher : Oracle Corporation
old: URLinfo : https://java.com
old: ParentKey :
old: Install Location : C:\Program Files\Java\jre1.8.0_331\
old: NoModify : 0x00000001
old: NoRepair : 0x00000001
old: Windows Installer : 0x00000001
software - product - Java Auto Updater
old: Version : 2.8.331.9
software - product - Java 8 Update 341 (64-bit)
new: Version : 8.0.3410.10
new: Publisher : Oracle Corporation
new: URLinfo : https://java.com
new: ParentKey :
new: Install Location : C:\Program Files\Java\jre1.8.0_341\
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - Java Auto Updater
new: Version : 2.8.341.10
system - hotfix - KB5012170
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5013887
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5015807
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5015730
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5015895
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5016616
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_28078dc Manual Unknown Agent Activation Runtime_28078dc
old: BcastDVRUserService_28078dc Manual Unknown Användartjänst för Spel-DVR och sändning_28078dc
old: BluetoothUserService_28078dc Manual Unknown Bluetooth User Support Service_28078dc
old: CaptureService_28078dc Manual Unknown CaptureService_28078dc
old: cbdhsvc_28078dc Manual Unknown Clipboard User Service_28078dc
old: CDPUserSvc_28078dc Auto Unknown Connected Devices Platform User Service_28078dc
old: ConsentUxUserSvc_28078dc Manual Unknown ConsentUX_28078dc
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_28078dc
old: DeviceAssociationBrokerSvc_280 Manual Unknown DeviceAssociationBroker_28078dc
old: DevicePickerUserSvc_28078dc Manual Unknown DevicePicker_28078dc
old: DevicesFlowUserSvc_28078dc Manual Unknown DevicesFlow_28078dc
old: MessagingService_28078dc Manual Unknown MessagingService_28078dc
old: OneSyncSvc_28078dc Auto Unknown Synkroniseringsvärd_28078dc
old: PimIndexMaintenanceSvc_28078dc Manual Unknown Contact Data_28078dc
old: PrintWorkflowUserSvc_28078dc Manual Unknown PrintWorkflow_28078dc
old: UdkUserSvc_28078dc Manual Unknown Udk-användartjänst_28078dc
old: UnistoreSvc_28078dc Manual Unknown User Data Storage_28078dc
old: UserDataSvc_28078dc Manual Unknown User Data Access_28078dc
old: WpnUserService_28078dc Auto Unknown Windows Push Notifications User Service_28078dc
system - services - AarSvc_28078dc
old: DisplayName : Agent Activation Runtime_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_28078dc
old: DisplayName : Användartjänst för Spel-DVR och sändning_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_28078dc
old: DisplayName : Bluetooth User Support Service_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_28078dc
old: DisplayName : CaptureService_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_28078dc
old: DisplayName : Clipboard User Service_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_28078dc
old: DisplayName : Connected Devices Platform User Service_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_28078dc
old: DisplayName : ConsentUX_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_28078dc
old: DisplayName : CredentialEnrollmentManagerUserSvc_28078dc
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_28078dc
old: DisplayName : DeviceAssociationBroker_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_28078dc
old: DisplayName : DevicePicker_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_28078dc
old: DisplayName : DevicesFlow_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.79\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.81\elevation_service.exe"
system - services - MessagingService_28078dc
old: DisplayName : MessagingService_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_28078dc
old: DisplayName : Synkroniseringsvärd_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_28078dc
old: DisplayName : Contact Data_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_28078dc
old: DisplayName : PrintWorkflow_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_28078dc
old: DisplayName : Udk-användartjänst_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_28078dc
old: DisplayName : User Data Storage_28078dc
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_28078dc
old: DisplayName : User Data Access_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_28078dc
old: DisplayName : Windows Push Notifications User Service_28078dc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\Clip\LicenseImdsIntegration
new: Logon Mode : Interactive/Background
new: Task To Run : %SystemRoot%\system32\fclip.exe
new: Start In : N/A
new: Comment : FClip
new: Idle Time : Disabled
new: Power Management :
new: Run As User : Anv„ndare
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : Disabled
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Management\Autopilot\DetectHardwareChange
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : $(@%SystemRoot%\system32\Autopilot.dll,-602)
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Management\Autopilot\RemediateHardwareChange
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : $(@%SystemRoot%\system32\Autopilot.dll,-603)
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2022-08-07 17.55.29
remark :
runtime : 13
count : 4
previous date : 2022-08-06
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 103.0.1264.77
new: Version : 104.0.1293.47
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\103.0.1264.77\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\104.0.1293.47\elevation_service.exe"
Top Runs Differences at: 2022-08-04 17.55.29
remark :
runtime : 13
count : 4
previous date : 2022-08-03
previous time : 17.55.29
software - product - Google Chrome
old: Version : 103.0.5060.134
new: Version : 104.0.5112.79
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\103.0.5060.134\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.79\elevation_service.exe"
Top Runs Differences at: 2022-08-03 17.55.29
remark :
runtime : 13
count : 12
previous date : 2022-08-02
previous time : 20.21.06
software - product - Google Chrome
old: Version : 103.0.5060.114
new: Version : 103.0.5060.134
software - product - Microsoft Edge
old: Version : 103.0.1264.62
new: Version : 103.0.1264.77
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\103.0.5060.114\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\103.0.5060.134\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\103.0.1264.62\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\103.0.1264.77\elevation_service.exe"
Top Runs Differences at: 2022-08-02 20.21.06
remark :
runtime : 276
count : 187
previous date : 2022-07-18
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
new: Command : C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe --startup_mode
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Google Drive
old: Version : 60.0.2.0
new: Version : 61.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\61.0.3.0\GoogleDriveFS.exe
software - product - Microsoft Edge Update
old: Version : 1.3.163.19
new: Version : 1.3.165.21
system - SystemDriver - MpKslba44ac27
old: AcceptPause : 0
old: Description : MpKslba44ac27
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F9B4AA15-3CE0-4F87-B235-C4F22138F691}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - survey
new: AarSvc_28078dc Manual Unknown Agent Activation Runtime_28078dc
new: BcastDVRUserService_28078dc Manual Unknown Användartjänst för Spel-DVR och sändning_28078dc
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_28078dc Manual Unknown Bluetooth User Support Service_28078dc
new: CaptureService_28078dc Manual Unknown CaptureService_28078dc
new: cbdhsvc_28078dc Manual Unknown Clipboard User Service_28078dc
new: CDPUserSvc_28078dc Auto Unknown Connected Devices Platform User Service_28078dc
new: ConsentUxUserSvc_28078dc Manual Unknown ConsentUX_28078dc
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_28078dc
new: DeviceAssociationBrokerSvc_280 Manual Unknown DeviceAssociationBroker_28078dc
new: DevicePickerUserSvc_28078dc Manual Unknown DevicePicker_28078dc
new: DevicesFlowUserSvc_28078dc Manual Unknown DevicesFlow_28078dc
new: MessagingService_28078dc Manual Unknown MessagingService_28078dc
new: OneSyncSvc_28078dc Auto Unknown Synkroniseringsvärd_28078dc
new: PimIndexMaintenanceSvc_28078dc Manual Unknown Contact Data_28078dc
new: PrintWorkflowUserSvc_28078dc Manual Unknown PrintWorkflow_28078dc
new: UdkUserSvc_28078dc Manual Unknown Udk-användartjänst_28078dc
new: UnistoreSvc_28078dc Manual Unknown User Data Storage_28078dc
new: UserDataSvc_28078dc Manual Unknown User Data Access_28078dc
new: WpnUserService_28078dc Auto Unknown Windows Push Notifications User Service_28078dc
system - services - AarSvc_28078dc
new: DisplayName : Agent Activation Runtime_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_28078dc
new: DisplayName : Användartjänst för Spel-DVR och sändning_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_28078dc
new: DisplayName : Bluetooth User Support Service_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_28078dc
new: DisplayName : CaptureService_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_28078dc
new: DisplayName : Clipboard User Service_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_28078dc
new: DisplayName : Connected Devices Platform User Service_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_28078dc
new: DisplayName : ConsentUX_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_28078dc
new: DisplayName : CredentialEnrollmentManagerUserSvc_28078dc
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_28078dc
new: DisplayName : DeviceAssociationBroker_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_28078dc
new: DisplayName : DevicePicker_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_28078dc
new: DisplayName : DevicesFlow_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_28078dc
new: DisplayName : MessagingService_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_28078dc
new: DisplayName : Synkroniseringsvärd_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_28078dc
new: DisplayName : Contact Data_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_28078dc
new: DisplayName : PrintWorkflow_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_28078dc
new: DisplayName : Udk-användartjänst_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_28078dc
new: DisplayName : User Data Storage_28078dc
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_28078dc
new: DisplayName : User Data Access_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_28078dc
new: DisplayName : Windows Push Notifications User Service_28078dc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-07-18 17.55.30
remark :
runtime : 11
count : 7
previous date : 2022-07-18
previous time : 00.48.45
system - SystemDriver - MpKslba44ac27
new: AcceptPause : 0
new: Description : MpKslba44ac27
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F9B4AA15-3CE0-4F87-B235-C4F22138F691}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2022-07-18 00.48.45
remark :
runtime : 23
count : 66
previous date : 2022-07-17
previous time : 19.42.30
software - product - Google Chrome
old: Version : 103.0.5060.66
new: Version : 103.0.5060.114
software - product - Microsoft Edge
old: Version : 103.0.1264.44
new: Version : 103.0.1264.62
system - hotfix - KB5014699
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5014671
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5015807
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: McpManagementService Manual Own Process McpManagementService
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\103.0.5060.66\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\103.0.5060.114\elevation_service.exe"
system - services - McpManagementService
new: DisplayName : McpManagementService
new: PathName : C:\WINDOWS\system32\svchost.exe -k McpManagementServiceGroup
new: ServiceType : Own Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\103.0.1264.44\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\103.0.1264.62\elevation_service.exe"
system - services - RpcSs
new: Required by : McpManagementService
system - services - McpManagementService
new: Requires : RpcSs
system - scheduled tasks - \Microsoft\Windows\Printing\PrinterCleanupTask
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management : Stop On Battery Mode, No Start On Batteries
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 30 day(s)
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Shell\ThemesSyncedImageDownload
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : Laddar ned en s„kerhets kopia av dina synkade temabilder
new: Idle Time : Only Start If Idle for 10 minutes, If Not Idle Retry For 60 minutes
new: Power Management : Stop On Battery Mode, No Start On Batteries
new: Run As User : Anv„ndare
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2022-07-17 19.42.30
remark :
runtime : 167
count : 18
previous date : 2022-07-05
previous time : 12.47.21
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 59.0.3.0
new: Version : 60.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
Top Runs Differences at: 2022-07-05 12.47.21
remark :
runtime : 26
count : 20
previous date : 2022-07-01
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 103.0.1264.37
new: Version : 103.0.1264.44
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\103.0.1264.37\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\103.0.1264.44\elevation_service.exe"
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-06-30 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-06-29
previous time : 17.55.29
software - product - Google Chrome
old: Version : 102.0.5005.115
new: Version : 103.0.5060.66
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\102.0.5005.115\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\103.0.5060.66\elevation_service.exe"
Top Runs Differences at: 2022-06-25 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-06-24
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 102.0.1245.44
new: Version : 103.0.1264.37
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\102.0.1245.44\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\103.0.1264.37\elevation_service.exe"
Top Runs Differences at: 2022-06-24 17.55.29
remark :
runtime : 13
count : 7
previous date : 2022-06-23
previous time : 17.55.29
system - SystemDriver - MpKsl6a057866
old: AcceptPause : 0
old: Description : MpKsl6a057866
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3120364E-F7E4-4452-B4C4-5FB01BADC903}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2022-06-23 17.55.29
remark :
runtime : 12
count : 19
previous date : 2022-06-22
previous time : 17.55.29
system - SystemDriver - MpKsl6a057866
new: AcceptPause : 0
new: Description : MpKsl6a057866
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3120364E-F7E4-4452-B4C4-5FB01BADC903}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2022-06-18 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-06-17
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 102.0.1245.41
new: Version : 102.0.1245.44
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\102.0.1245.41\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\102.0.1245.44\elevation_service.exe"
Top Runs Differences at: 2022-06-15 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-06-14
previous time : 21.26.08
software - product - Microsoft Edge
old: Version : 102.0.1245.39
new: Version : 102.0.1245.41
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\102.0.1245.39\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\102.0.1245.41\elevation_service.exe"
Top Runs Differences at: 2022-06-14 21.26.08
remark :
runtime : 29
count : 25
previous date : 2022-06-14
previous time : 17.55.29
system - SystemDriver - MpKsldc8076c4
old: AcceptPause : 0
old: Description : MpKsldc8076c4
old: DesktopInteract :
old: ErrorControl : Unknown
old: PathName :
old: ServiceType : Unknown
old: StartMode : Unknown
system - hotfix - KB5014023
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5014699
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2022-06-14 17.55.29
remark :
runtime : 13
count : 4
previous date : 2022-06-13
previous time : 17.55.30
software - product - Google Chrome
old: Version : 102.0.5005.63
new: Version : 102.0.5005.115
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\102.0.5005.63\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\102.0.5005.115\elevation_service.exe"
Top Runs Differences at: 2022-06-13 17.55.30
remark :
runtime : 12
count : 14
previous date : 2022-06-12
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 58.0.3.0
new: Version : 59.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe
Top Runs Differences at: 2022-06-11 17.55.30
remark :
runtime : 12
count : 18
previous date : 2022-06-10
previous time : 17.55.32
software - product - Microsoft Edge
old: Version : 102.0.1245.33
new: Version : 102.0.1245.39
software - product - Microsoft Edge Update
old: Version : 1.3.161.35
new: Version : 1.3.163.19
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\102.0.1245.33\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\102.0.1245.39\elevation_service.exe"
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-06-08 17.55.30
remark :
runtime : 12
count : 7
previous date : 2022-06-07
previous time : 20.01.03
system - SystemDriver - MpKsldc8076c4
new: AcceptPause : 0
new: Description : MpKsldc8076c4
new: DesktopInteract :
new: ErrorControl : Unknown
new: PathName :
new: ServiceType : Unknown
new: StartMode : Unknown
Top Runs Differences at: 2022-06-07 20.01.03
remark :
runtime : 21
count : 10
previous date : 2022-06-07
previous time : 18.54.07
system - hotfix - KB5013624
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5013887
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC EngagedRebootReminder
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery EngagedRebootReminder
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2022-06-07 18.54.07
remark :
runtime : 19
count : 184
previous date : 2022-06-07
previous time : 17.56.22
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - SystemDriver - MpKsldc8076c4
old: AcceptPause : 0
old: Description : MpKsldc8076c4
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3E8C46E5-F948-4034-A28A-74E71F6D825A}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - hotfix - KB5013942
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5014023
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5014035
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_12e467ef Manual Unknown Agent Activation Runtime_12e467ef
old: BcastDVRUserService_12e467ef Manual Unknown Användartjänst för Spel-DVR och sändning_12e467ef
old: BluetoothUserService_12e467ef Manual Unknown Bluetooth User Support Service_12e467ef
old: CaptureService_12e467ef Manual Unknown CaptureService_12e467ef
old: cbdhsvc_12e467ef Manual Unknown Clipboard User Service_12e467ef
old: CDPUserSvc_12e467ef Auto Unknown Connected Devices Platform User Service_12e467ef
old: ConsentUxUserSvc_12e467ef Manual Unknown ConsentUX_12e467ef
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_12e467ef
old: DeviceAssociationBrokerSvc_12e Manual Unknown DeviceAssociationBroker_12e467ef
old: DevicePickerUserSvc_12e467ef Manual Unknown DevicePicker_12e467ef
old: DevicesFlowUserSvc_12e467ef Manual Unknown DevicesFlow_12e467ef
old: MessagingService_12e467ef Manual Unknown MessagingService_12e467ef
old: OneSyncSvc_12e467ef Auto Unknown Synkroniseringsvärd_12e467ef
old: PimIndexMaintenanceSvc_12e467e Manual Unknown Contact Data_12e467ef
old: PrintWorkflowUserSvc_12e467ef Manual Unknown PrintWorkflow_12e467ef
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
old: UdkUserSvc_12e467ef Manual Unknown Udk-användartjänst_12e467ef
old: UnistoreSvc_12e467ef Manual Unknown User Data Storage_12e467ef
old: UserDataSvc_12e467ef Manual Unknown User Data Access_12e467ef
old: WpnUserService_12e467ef Auto Unknown Windows Push Notifications User Service_12e467ef
system - services - AarSvc_12e467ef
old: DisplayName : Agent Activation Runtime_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_12e467ef
old: DisplayName : Användartjänst för Spel-DVR och sändning_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_12e467ef
old: DisplayName : Bluetooth User Support Service_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_12e467ef
old: DisplayName : CaptureService_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_12e467ef
old: DisplayName : Clipboard User Service_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_12e467ef
old: DisplayName : Connected Devices Platform User Service_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_12e467ef
old: DisplayName : ConsentUX_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_12e467ef
old: DisplayName : CredentialEnrollmentManagerUserSvc_12e467ef
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_12e467ef
old: DisplayName : DeviceAssociationBroker_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_12e467ef
old: DisplayName : DevicePicker_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_12e467ef
old: DisplayName : DevicesFlow_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_12e467ef
old: DisplayName : MessagingService_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_12e467ef
old: DisplayName : Synkroniseringsvärd_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_12e467ef
old: DisplayName : Contact Data_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_12e467ef
old: DisplayName : PrintWorkflow_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UdkUserSvc_12e467ef
old: DisplayName : Udk-användartjänst_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_12e467ef
old: DisplayName : User Data Storage_12e467ef
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_12e467ef
old: DisplayName : User Data Access_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_12e467ef
old: DisplayName : Windows Push Notifications User Service_12e467ef
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC EngagedRebootReminder
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery EngagedRebootReminder
Top Runs Differences at: 2022-06-07 17.56.22
remark :
runtime : 55
count : 167
previous date : 2022-06-07
previous time : 16.32.50
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: Version : 101.0.1210.53
new: Version : 102.0.1245.33
system - SystemDriver - MpKsldc8076c4
new: AcceptPause : 0
new: Description : MpKsldc8076c4
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3E8C46E5-F948-4034-A28A-74E71F6D825A}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
new: AarSvc_12e467ef Manual Unknown Agent Activation Runtime_12e467ef
new: BcastDVRUserService_12e467ef Manual Unknown Användartjänst för Spel-DVR och sändning_12e467ef
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
new: BluetoothUserService_12e467ef Manual Unknown Bluetooth User Support Service_12e467ef
new: CaptureService_12e467ef Manual Unknown CaptureService_12e467ef
new: cbdhsvc_12e467ef Manual Unknown Clipboard User Service_12e467ef
new: CDPUserSvc_12e467ef Auto Unknown Connected Devices Platform User Service_12e467ef
new: ConsentUxUserSvc_12e467ef Manual Unknown ConsentUX_12e467ef
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_12e467ef
new: DeviceAssociationBrokerSvc_12e Manual Unknown DeviceAssociationBroker_12e467ef
new: DevicePickerUserSvc_12e467ef Manual Unknown DevicePicker_12e467ef
new: DevicesFlowUserSvc_12e467ef Manual Unknown DevicesFlow_12e467ef
new: MessagingService_12e467ef Manual Unknown MessagingService_12e467ef
new: OneSyncSvc_12e467ef Auto Unknown Synkroniseringsvärd_12e467ef
new: PimIndexMaintenanceSvc_12e467e Manual Unknown Contact Data_12e467ef
new: PrintWorkflowUserSvc_12e467ef Manual Unknown PrintWorkflow_12e467ef
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
new: UdkUserSvc_12e467ef Manual Unknown Udk-användartjänst_12e467ef
new: UnistoreSvc_12e467ef Manual Unknown User Data Storage_12e467ef
new: UserDataSvc_12e467ef Manual Unknown User Data Access_12e467ef
new: WpnUserService_12e467ef Auto Unknown Windows Push Notifications User Service_12e467ef
system - services - AarSvc_12e467ef
new: DisplayName : Agent Activation Runtime_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_12e467ef
new: DisplayName : Användartjänst för Spel-DVR och sändning_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_12e467ef
new: DisplayName : Bluetooth User Support Service_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_12e467ef
new: DisplayName : CaptureService_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_12e467ef
new: DisplayName : Clipboard User Service_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_12e467ef
new: DisplayName : Connected Devices Platform User Service_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_12e467ef
new: DisplayName : ConsentUX_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_12e467ef
new: DisplayName : CredentialEnrollmentManagerUserSvc_12e467ef
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_12e467ef
new: DisplayName : DeviceAssociationBroker_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_12e467ef
new: DisplayName : DevicePicker_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_12e467ef
new: DisplayName : DevicesFlow_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_12e467ef
new: DisplayName : MessagingService_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\101.0.1210.53\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\102.0.1245.33\elevation_service.exe"
system - services - OneSyncSvc_12e467ef
new: DisplayName : Synkroniseringsvärd_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_12e467ef
new: DisplayName : Contact Data_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_12e467ef
new: DisplayName : PrintWorkflow_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UdkUserSvc_12e467ef
new: DisplayName : Udk-användartjänst_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_12e467ef
new: DisplayName : User Data Storage_12e467ef
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_12e467ef
new: DisplayName : User Data Access_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_12e467ef
new: DisplayName : Windows Push Notifications User Service_12e467ef
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2022-06-07 16.32.50
remark :
runtime : 41
count : 15
previous date : 2022-05-31
previous time : 17.55.29
software - product - Google Chrome
old: Version : 101.0.4951.67
new: Version : 102.0.5005.63
system - SystemDriver - MpKslece794fa
old: AcceptPause : 0
old: Description : MpKslece794fa
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E312B505-CA41-4E2C-A691-2AD40350A7F8}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\101.0.4951.67\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\102.0.5005.63\elevation_service.exe"
Top Runs Differences at: 2022-05-31 17.55.29
remark :
runtime : 13
count : 11
previous date : 2022-05-31
previous time : 10.56.45
system - SystemDriver - MpKslece794fa
new: AcceptPause : 0
new: Description : MpKslece794fa
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E312B505-CA41-4E2C-A691-2AD40350A7F8}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
Top Runs Differences at: 2022-05-31 10.56.45
remark :
runtime : 57
count : 152
previous date : 2022-05-24
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - services - survey
old: AarSvc_88da145 Manual Unknown Agent Activation Runtime_88da145
old: BcastDVRUserService_88da145 Manual Unknown Användartjänst för Spel-DVR och sändning_88da145
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_88da145 Manual Unknown Bluetooth User Support Service_88da145
new: BITS Auto Share Process Background Intelligent Transfer Service
old: CaptureService_88da145 Manual Unknown CaptureService_88da145
old: cbdhsvc_88da145 Manual Unknown Clipboard User Service_88da145
old: CDPUserSvc_88da145 Auto Unknown Connected Devices Platform User Service_88da145
old: ConsentUxUserSvc_88da145 Manual Unknown ConsentUX_88da145
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_88da145
old: DeviceAssociationBrokerSvc_88d Manual Unknown DeviceAssociationBroker_88da145
old: DevicePickerUserSvc_88da145 Manual Unknown DevicePicker_88da145
old: DevicesFlowUserSvc_88da145 Manual Unknown DevicesFlow_88da145
old: MessagingService_88da145 Manual Unknown MessagingService_88da145
old: OneSyncSvc_88da145 Auto Unknown Synkroniseringsvärd_88da145
old: PimIndexMaintenanceSvc_88da145 Manual Unknown Contact Data_88da145
old: PrintWorkflowUserSvc_88da145 Manual Unknown PrintWorkflow_88da145
old: UdkUserSvc_88da145 Manual Unknown Udk-användartjänst_88da145
old: UnistoreSvc_88da145 Manual Unknown User Data Storage_88da145
old: UserDataSvc_88da145 Manual Unknown User Data Access_88da145
old: WpnUserService_88da145 Auto Unknown Windows Push Notifications User Service_88da145
system - services - AarSvc_88da145
old: DisplayName : Agent Activation Runtime_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_88da145
old: DisplayName : Användartjänst för Spel-DVR och sändning_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_88da145
old: DisplayName : Bluetooth User Support Service_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_88da145
old: DisplayName : CaptureService_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_88da145
old: DisplayName : Clipboard User Service_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_88da145
old: DisplayName : Connected Devices Platform User Service_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_88da145
old: DisplayName : ConsentUX_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_88da145
old: DisplayName : CredentialEnrollmentManagerUserSvc_88da145
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_88da145
old: DisplayName : DeviceAssociationBroker_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_88da145
old: DisplayName : DevicePicker_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_88da145
old: DisplayName : DevicesFlow_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_88da145
old: DisplayName : MessagingService_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_88da145
old: DisplayName : Synkroniseringsvärd_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_88da145
old: DisplayName : Contact Data_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_88da145
old: DisplayName : PrintWorkflow_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_88da145
old: DisplayName : Udk-användartjänst_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_88da145
old: DisplayName : User Data Storage_88da145
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_88da145
old: DisplayName : User Data Access_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_88da145
old: DisplayName : Windows Push Notifications User Service_88da145
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2022-05-23 17.55.29
remark :
runtime : 12
count : 16
previous date : 2022-05-22
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 57.0.5.0
new: Version : 58.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\58.0.3.0\GoogleDriveFS.exe
Top Runs Differences at: 2022-05-21 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-05-20
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 101.0.1210.47
new: Version : 101.0.1210.53
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\101.0.1210.47\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\101.0.1210.53\elevation_service.exe"
Top Runs Differences at: 2022-05-20 17.55.29
remark :
runtime : 12
count : 148
previous date : 2022-05-19
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_88da145 Manual Unknown Agent Activation Runtime_88da145
new: BcastDVRUserService_88da145 Manual Unknown Användartjänst för Spel-DVR och sändning_88da145
new: BluetoothUserService_88da145 Manual Unknown Bluetooth User Support Service_88da145
new: CaptureService_88da145 Manual Unknown CaptureService_88da145
new: cbdhsvc_88da145 Manual Unknown Clipboard User Service_88da145
new: CDPUserSvc_88da145 Auto Unknown Connected Devices Platform User Service_88da145
new: ConsentUxUserSvc_88da145 Manual Unknown ConsentUX_88da145
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_88da145
new: DeviceAssociationBrokerSvc_88d Manual Unknown DeviceAssociationBroker_88da145
new: DevicePickerUserSvc_88da145 Manual Unknown DevicePicker_88da145
new: DevicesFlowUserSvc_88da145 Manual Unknown DevicesFlow_88da145
new: MessagingService_88da145 Manual Unknown MessagingService_88da145
new: OneSyncSvc_88da145 Auto Unknown Synkroniseringsvärd_88da145
new: PimIndexMaintenanceSvc_88da145 Manual Unknown Contact Data_88da145
new: PrintWorkflowUserSvc_88da145 Manual Unknown PrintWorkflow_88da145
new: UdkUserSvc_88da145 Manual Unknown Udk-användartjänst_88da145
new: UnistoreSvc_88da145 Manual Unknown User Data Storage_88da145
new: UserDataSvc_88da145 Manual Unknown User Data Access_88da145
new: WpnUserService_88da145 Auto Unknown Windows Push Notifications User Service_88da145
system - services - AarSvc_88da145
new: DisplayName : Agent Activation Runtime_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_88da145
new: DisplayName : Användartjänst för Spel-DVR och sändning_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_88da145
new: DisplayName : Bluetooth User Support Service_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_88da145
new: DisplayName : CaptureService_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_88da145
new: DisplayName : Clipboard User Service_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_88da145
new: DisplayName : Connected Devices Platform User Service_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_88da145
new: DisplayName : ConsentUX_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_88da145
new: DisplayName : CredentialEnrollmentManagerUserSvc_88da145
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_88da145
new: DisplayName : DeviceAssociationBroker_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_88da145
new: DisplayName : DevicePicker_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_88da145
new: DisplayName : DevicesFlow_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_88da145
new: DisplayName : MessagingService_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_88da145
new: DisplayName : Synkroniseringsvärd_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_88da145
new: DisplayName : Contact Data_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_88da145
new: DisplayName : PrintWorkflow_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_88da145
new: DisplayName : Udk-användartjänst_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_88da145
new: DisplayName : User Data Storage_88da145
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_88da145
new: DisplayName : User Data Access_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_88da145
new: DisplayName : Windows Push Notifications User Service_88da145
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2022-05-19 17.55.29
remark :
runtime : 12
count : 148
previous date : 2022-05-18
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - services - survey
old: AarSvc_1f32643 Manual Unknown Agent Activation Runtime_1f32643
old: BcastDVRUserService_1f32643 Manual Unknown Användartjänst för Spel-DVR och sändning_1f32643
old: BluetoothUserService_1f32643 Manual Unknown Bluetooth User Support Service_1f32643
old: CaptureService_1f32643 Manual Unknown CaptureService_1f32643
old: cbdhsvc_1f32643 Manual Unknown Clipboard User Service_1f32643
old: CDPUserSvc_1f32643 Auto Unknown Connected Devices Platform User Service_1f32643
old: ConsentUxUserSvc_1f32643 Manual Unknown ConsentUX_1f32643
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1f32643
old: DeviceAssociationBrokerSvc_1f3 Manual Unknown DeviceAssociationBroker_1f32643
old: DevicePickerUserSvc_1f32643 Manual Unknown DevicePicker_1f32643
old: DevicesFlowUserSvc_1f32643 Manual Unknown DevicesFlow_1f32643
old: MessagingService_1f32643 Manual Unknown MessagingService_1f32643
old: OneSyncSvc_1f32643 Auto Unknown Synkroniseringsvärd_1f32643
old: PimIndexMaintenanceSvc_1f32643 Manual Unknown Contact Data_1f32643
old: PrintWorkflowUserSvc_1f32643 Manual Unknown PrintWorkflow_1f32643
old: UdkUserSvc_1f32643 Manual Unknown Udk-användartjänst_1f32643
old: UnistoreSvc_1f32643 Manual Unknown User Data Storage_1f32643
old: UserDataSvc_1f32643 Manual Unknown User Data Access_1f32643
old: WpnUserService_1f32643 Auto Unknown Windows Push Notifications User Service_1f32643
system - services - AarSvc_1f32643
old: DisplayName : Agent Activation Runtime_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_1f32643
old: DisplayName : Användartjänst för Spel-DVR och sändning_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_1f32643
old: DisplayName : Bluetooth User Support Service_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_1f32643
old: DisplayName : CaptureService_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_1f32643
old: DisplayName : Clipboard User Service_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_1f32643
old: DisplayName : Connected Devices Platform User Service_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_1f32643
old: DisplayName : ConsentUX_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1f32643
old: DisplayName : CredentialEnrollmentManagerUserSvc_1f32643
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_1f32643
old: DisplayName : DeviceAssociationBroker_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_1f32643
old: DisplayName : DevicePicker_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_1f32643
old: DisplayName : DevicesFlow_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_1f32643
old: DisplayName : MessagingService_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_1f32643
old: DisplayName : Synkroniseringsvärd_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_1f32643
old: DisplayName : Contact Data_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_1f32643
old: DisplayName : PrintWorkflow_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_1f32643
old: DisplayName : Udk-användartjänst_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_1f32643
old: DisplayName : User Data Storage_1f32643
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_1f32643
old: DisplayName : User Data Access_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_1f32643
old: DisplayName : Windows Push Notifications User Service_1f32643
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2022-05-18 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-05-17
previous time : 17.55.29
software - product - Google Chrome
old: Version : 101.0.4951.54
new: Version : 101.0.4951.67
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\101.0.4951.54\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\101.0.4951.67\elevation_service.exe"
Top Runs Differences at: 2022-05-15 17.55.29
remark :
runtime : 12
count : 152
previous date : 2022-05-14
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: Version : 101.0.1210.39
new: Version : 101.0.1210.47
system - services - survey
new: AarSvc_1f32643 Manual Unknown Agent Activation Runtime_1f32643
new: BcastDVRUserService_1f32643 Manual Unknown Användartjänst för Spel-DVR och sändning_1f32643
new: BluetoothUserService_1f32643 Manual Unknown Bluetooth User Support Service_1f32643
new: CaptureService_1f32643 Manual Unknown CaptureService_1f32643
new: cbdhsvc_1f32643 Manual Unknown Clipboard User Service_1f32643
new: CDPUserSvc_1f32643 Auto Unknown Connected Devices Platform User Service_1f32643
new: ConsentUxUserSvc_1f32643 Manual Unknown ConsentUX_1f32643
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1f32643
new: DeviceAssociationBrokerSvc_1f3 Manual Unknown DeviceAssociationBroker_1f32643
new: DevicePickerUserSvc_1f32643 Manual Unknown DevicePicker_1f32643
new: DevicesFlowUserSvc_1f32643 Manual Unknown DevicesFlow_1f32643
new: MessagingService_1f32643 Manual Unknown MessagingService_1f32643
new: OneSyncSvc_1f32643 Auto Unknown Synkroniseringsvärd_1f32643
new: PimIndexMaintenanceSvc_1f32643 Manual Unknown Contact Data_1f32643
new: PrintWorkflowUserSvc_1f32643 Manual Unknown PrintWorkflow_1f32643
new: UdkUserSvc_1f32643 Manual Unknown Udk-användartjänst_1f32643
new: UnistoreSvc_1f32643 Manual Unknown User Data Storage_1f32643
new: UserDataSvc_1f32643 Manual Unknown User Data Access_1f32643
new: WpnUserService_1f32643 Auto Unknown Windows Push Notifications User Service_1f32643
system - services - AarSvc_1f32643
new: DisplayName : Agent Activation Runtime_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_1f32643
new: DisplayName : Användartjänst för Spel-DVR och sändning_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_1f32643
new: DisplayName : Bluetooth User Support Service_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_1f32643
new: DisplayName : CaptureService_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_1f32643
new: DisplayName : Clipboard User Service_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_1f32643
new: DisplayName : Connected Devices Platform User Service_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_1f32643
new: DisplayName : ConsentUX_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1f32643
new: DisplayName : CredentialEnrollmentManagerUserSvc_1f32643
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_1f32643
new: DisplayName : DeviceAssociationBroker_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_1f32643
new: DisplayName : DevicePicker_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_1f32643
new: DisplayName : DevicesFlow_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_1f32643
new: DisplayName : MessagingService_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\101.0.1210.39\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\101.0.1210.47\elevation_service.exe"
system - services - OneSyncSvc_1f32643
new: DisplayName : Synkroniseringsvärd_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_1f32643
new: DisplayName : Contact Data_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_1f32643
new: DisplayName : PrintWorkflow_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_1f32643
new: DisplayName : Udk-användartjänst_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_1f32643
new: DisplayName : User Data Storage_1f32643
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_1f32643
new: DisplayName : User Data Access_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_1f32643
new: DisplayName : Windows Push Notifications User Service_1f32643
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2022-05-14 00.30.09
remark :
runtime : 28
count : 162
previous date : 2022-05-13
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Java(TM) SE Development Kit 18.0.1.1 (64-bit)
new: Version : 18.0.1.1
new: Publisher : Oracle Corporation
new: URLinfo : http://java.com
new: ParentKey :
new: Install Location : C:\Program Files\Java\jdk-18.0.1.1\
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - OpenJDK JRE with Hotspot 11.0.15+10 (x64)
new: Version : 11.0.15.10
new: Publisher : OpenJDK
new: URLinfo : https://www.openlogic.com/solutions/support
new: ParentKey :
new: Install Location : C:\Program Files\OpenJDK\jre-11.0.15.10-hotspot\
new: Windows Installer : 0x00000001
system - services - survey
old: AarSvc_1a4bc92 Manual Unknown Agent Activation Runtime_1a4bc92
old: BcastDVRUserService_1a4bc92 Manual Unknown Användartjänst för Spel-DVR och sändning_1a4bc92
old: BluetoothUserService_1a4bc92 Manual Unknown Bluetooth User Support Service_1a4bc92
old: CaptureService_1a4bc92 Manual Unknown CaptureService_1a4bc92
old: cbdhsvc_1a4bc92 Manual Unknown Clipboard User Service_1a4bc92
old: CDPUserSvc_1a4bc92 Auto Unknown Connected Devices Platform User Service_1a4bc92
old: ConsentUxUserSvc_1a4bc92 Manual Unknown ConsentUX_1a4bc92
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1a4bc92
old: DeviceAssociationBrokerSvc_1a4 Manual Unknown DeviceAssociationBroker_1a4bc92
old: DevicePickerUserSvc_1a4bc92 Manual Unknown DevicePicker_1a4bc92
old: DevicesFlowUserSvc_1a4bc92 Manual Unknown DevicesFlow_1a4bc92
old: MessagingService_1a4bc92 Manual Unknown MessagingService_1a4bc92
old: OneSyncSvc_1a4bc92 Auto Unknown Synkroniseringsvärd_1a4bc92
old: PimIndexMaintenanceSvc_1a4bc92 Manual Unknown Contact Data_1a4bc92
old: PrintWorkflowUserSvc_1a4bc92 Manual Unknown PrintWorkflow_1a4bc92
old: UdkUserSvc_1a4bc92 Manual Unknown Udk-användartjänst_1a4bc92
old: UnistoreSvc_1a4bc92 Manual Unknown User Data Storage_1a4bc92
old: UserDataSvc_1a4bc92 Manual Unknown User Data Access_1a4bc92
old: WpnUserService_1a4bc92 Auto Unknown Windows Push Notifications User Service_1a4bc92
system - services - AarSvc_1a4bc92
old: DisplayName : Agent Activation Runtime_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_1a4bc92
old: DisplayName : Användartjänst för Spel-DVR och sändning_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_1a4bc92
old: DisplayName : Bluetooth User Support Service_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_1a4bc92
old: DisplayName : CaptureService_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_1a4bc92
old: DisplayName : Clipboard User Service_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_1a4bc92
old: DisplayName : Connected Devices Platform User Service_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_1a4bc92
old: DisplayName : ConsentUX_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1a4bc92
old: DisplayName : CredentialEnrollmentManagerUserSvc_1a4bc92
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_1a4bc92
old: DisplayName : DeviceAssociationBroker_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_1a4bc92
old: DisplayName : DevicePicker_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_1a4bc92
old: DisplayName : DevicesFlow_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_1a4bc92
old: DisplayName : MessagingService_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_1a4bc92
old: DisplayName : Synkroniseringsvärd_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_1a4bc92
old: DisplayName : Contact Data_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_1a4bc92
old: DisplayName : PrintWorkflow_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_1a4bc92
old: DisplayName : Udk-användartjänst_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_1a4bc92
old: DisplayName : User Data Storage_1a4bc92
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_1a4bc92
old: DisplayName : User Data Access_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_1a4bc92
old: DisplayName : Windows Push Notifications User Service_1a4bc92
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2022-05-12 17.55.30
remark :
runtime : 13
count : 160
previous date : 2022-05-11
previous time : 17.55.30
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_1a4bc92 Manual Unknown Agent Activation Runtime_1a4bc92
new: BcastDVRUserService_1a4bc92 Manual Unknown Användartjänst för Spel-DVR och sändning_1a4bc92
new: BluetoothUserService_1a4bc92 Manual Unknown Bluetooth User Support Service_1a4bc92
new: CaptureService_1a4bc92 Manual Unknown CaptureService_1a4bc92
new: cbdhsvc_1a4bc92 Manual Unknown Clipboard User Service_1a4bc92
new: CDPUserSvc_1a4bc92 Auto Unknown Connected Devices Platform User Service_1a4bc92
new: ConsentUxUserSvc_1a4bc92 Manual Unknown ConsentUX_1a4bc92
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1a4bc92
new: DeviceAssociationBrokerSvc_1a4 Manual Unknown DeviceAssociationBroker_1a4bc92
new: DevicePickerUserSvc_1a4bc92 Manual Unknown DevicePicker_1a4bc92
new: DevicesFlowUserSvc_1a4bc92 Manual Unknown DevicesFlow_1a4bc92
new: MessagingService_1a4bc92 Manual Unknown MessagingService_1a4bc92
new: OneSyncSvc_1a4bc92 Auto Unknown Synkroniseringsvärd_1a4bc92
new: PimIndexMaintenanceSvc_1a4bc92 Manual Unknown Contact Data_1a4bc92
new: PrintWorkflowUserSvc_1a4bc92 Manual Unknown PrintWorkflow_1a4bc92
new: UdkUserSvc_1a4bc92 Manual Unknown Udk-användartjänst_1a4bc92
new: UnistoreSvc_1a4bc92 Manual Unknown User Data Storage_1a4bc92
new: UserDataSvc_1a4bc92 Manual Unknown User Data Access_1a4bc92
new: WpnUserService_1a4bc92 Auto Unknown Windows Push Notifications User Service_1a4bc92
system - services - AarSvc_1a4bc92
new: DisplayName : Agent Activation Runtime_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_1a4bc92
new: DisplayName : Användartjänst för Spel-DVR och sändning_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_1a4bc92
new: DisplayName : Bluetooth User Support Service_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_1a4bc92
new: DisplayName : CaptureService_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_1a4bc92
new: DisplayName : Clipboard User Service_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_1a4bc92
new: DisplayName : Connected Devices Platform User Service_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_1a4bc92
new: DisplayName : ConsentUX_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1a4bc92
new: DisplayName : CredentialEnrollmentManagerUserSvc_1a4bc92
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_1a4bc92
new: DisplayName : DeviceAssociationBroker_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_1a4bc92
new: DisplayName : DevicePicker_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_1a4bc92
new: DisplayName : DevicesFlow_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_1a4bc92
new: DisplayName : MessagingService_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_1a4bc92
new: DisplayName : Synkroniseringsvärd_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_1a4bc92
new: DisplayName : Contact Data_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_1a4bc92
new: DisplayName : PrintWorkflow_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_1a4bc92
new: DisplayName : Udk-användartjänst_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_1a4bc92
new: DisplayName : User Data Storage_1a4bc92
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_1a4bc92
new: DisplayName : User Data Access_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_1a4bc92
new: DisplayName : Windows Push Notifications User Service_1a4bc92
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-05-10 23.42.23
remark :
runtime : 20
count : 22
previous date : 2022-05-10
previous time : 22.17.56
system - hotfix - KB5011831
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5013942
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2022-05-10 22.17.56
remark :
runtime : 190
count : 13
previous date : 2022-05-10
previous time : 17.55.29
system - hotfix - KB5012117
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5013624
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5014032
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
Top Runs Differences at: 2022-05-07 17.55.29
remark :
runtime : 13
count : 4
previous date : 2022-05-06
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 101.0.1210.32
new: Version : 101.0.1210.39
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\101.0.1210.32\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\101.0.1210.39\elevation_service.exe"
Top Runs Differences at: 2022-05-06 17.52.11
remark :
runtime : 21
count : 34
previous date : 2022-05-06
previous time : 17.01.45
system - hotfix - KB5011831
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5012599
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2022-05-06 17.01.45
remark :
runtime : 173
count : 172
previous date : 2022-05-05
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 100.0.4896.127
new: Version : 101.0.4951.54
system - SystemDriver - buttonconverter
old: Description : Service for Portable Device Control devices
new: Description : Tjänst för enheter för kontroller för bärbara enheter
system - SystemDriver - googledrivefs3688
old: AcceptPause : 0
old: Description : googledrivefs3688
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\DRIVERS\googledrivefs3688.sys
old: ServiceType : File System Driver
old: StartMode : Disabled
system - hotfix - KB5012677
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_25ab682 Manual Unknown Agent Activation Runtime_25ab682
old: BcastDVRUserService_25ab682 Manual Unknown Användartjänst för Spel-DVR och sändning_25ab682
old: BluetoothUserService_25ab682 Manual Unknown Bluetooth User Support Service_25ab682
old: CaptureService_25ab682 Manual Unknown CaptureService_25ab682
old: cbdhsvc_25ab682 Manual Unknown Clipboard User Service_25ab682
old: CDPUserSvc_25ab682 Auto Unknown Connected Devices Platform User Service_25ab682
old: ConsentUxUserSvc_25ab682 Manual Unknown ConsentUX_25ab682
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_25ab682
old: DeviceAssociationBrokerSvc_25a Manual Unknown DeviceAssociationBroker_25ab682
old: DevicePickerUserSvc_25ab682 Manual Unknown DevicePicker_25ab682
old: DevicesFlowUserSvc_25ab682 Manual Unknown DevicesFlow_25ab682
old: diagnosticshub.standardcollect Manual Own Process Microsoft (R) Diagnostics Hub Standard Collector Service
new: diagnosticshub.standardcollect Manual Own Process Microsoft (R) standardinsamlingstjänsten Diagnostics Hub
old: MessagingService_25ab682 Manual Unknown MessagingService_25ab682
old: OneSyncSvc_25ab682 Auto Unknown Synkroniseringsvärd_25ab682
old: PimIndexMaintenanceSvc_25ab682 Manual Unknown Contact Data_25ab682
old: PrintWorkflowUserSvc_25ab682 Manual Unknown PrintWorkflow_25ab682
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
old: UdkUserSvc_25ab682 Manual Unknown Udk-användartjänst_25ab682
old: UnistoreSvc_25ab682 Manual Unknown User Data Storage_25ab682
old: UserDataSvc_25ab682 Manual Unknown User Data Access_25ab682
old: WpnUserService_25ab682 Auto Unknown Windows Push Notifications User Service_25ab682
system - services - AarSvc_25ab682
old: DisplayName : Agent Activation Runtime_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_25ab682
old: DisplayName : Användartjänst för Spel-DVR och sändning_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_25ab682
old: DisplayName : Bluetooth User Support Service_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_25ab682
old: DisplayName : CaptureService_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_25ab682
old: DisplayName : Clipboard User Service_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_25ab682
old: DisplayName : Connected Devices Platform User Service_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_25ab682
old: DisplayName : ConsentUX_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_25ab682
old: DisplayName : CredentialEnrollmentManagerUserSvc_25ab682
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_25ab682
old: DisplayName : DeviceAssociationBroker_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_25ab682
old: DisplayName : DevicePicker_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_25ab682
old: DisplayName : DevicesFlow_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - diagnosticshub.standardcollector.service
old: DisplayName : Microsoft (R) Diagnostics Hub Standard Collector Service
new: DisplayName : Microsoft (R) standardinsamlingstjänsten Diagnostics Hub
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.127\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\101.0.4951.54\elevation_service.exe"
system - services - MessagingService_25ab682
old: DisplayName : MessagingService_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_25ab682
old: DisplayName : Synkroniseringsvärd_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_25ab682
old: DisplayName : Contact Data_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_25ab682
old: DisplayName : PrintWorkflow_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UdkUserSvc_25ab682
old: DisplayName : Udk-användartjänst_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_25ab682
old: DisplayName : User Data Storage_25ab682
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_25ab682
old: DisplayName : User Data Access_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_25ab682
old: DisplayName : Windows Push Notifications User Service_25ab682
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2022-05-01 17.55.29
remark :
runtime : 14
count : 4
previous date : 2022-04-30
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 100.0.1185.50
new: Version : 101.0.1210.32
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.50\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\101.0.1210.32\elevation_service.exe"
Top Runs Differences at: 2022-04-29 17.55.29
remark :
runtime : 12
count : 2
previous date : 2022-04-28
previous time : 17.55.29
software - product - Microsoft Edge Update
old: Version : 1.3.157.61
new: Version : 1.3.161.35
Top Runs Differences at: 2022-04-25 17.55.29
remark :
runtime : 12
count : 42
previous date : 2022-04-24
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 56.0.11.0
new: Version : 57.0.5.0
old: Install Location : C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\57.0.5.0\GoogleDriveFS.exe
software - product - Java 8 Update 211 (64-bit)
old: Version : 8.0.2110.12
old: Publisher : Oracle Corporation
old: URLinfo : https://java.com
old: ParentKey :
old: Install Location : C:\Program Files\Java\jre1.8.0_211\
old: NoModify : 0x00000001
old: NoRepair : 0x00000001
old: Windows Installer : 0x00000001
software - product - Java 8 Update 331 (64-bit)
new: Version : 8.0.3310.9
new: Publisher : Oracle Corporation
new: URLinfo : https://java.com
new: ParentKey :
new: Install Location : C:\Program Files\Java\jre1.8.0_331\
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - Java Auto Updater
new: Version : 2.8.331.9
new: Publisher : Oracle Corporation
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRemove : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
system - SystemDriver - googledrivefs3688
old: StartMode : System
new: StartMode : Disabled
Top Runs Differences at: 2022-04-23 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-04-22
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 100.0.1185.44
new: Version : 100.0.1185.50
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.44\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.50\elevation_service.exe"
Top Runs Differences at: 2022-04-20 17.55.29
remark :
runtime : 13
count : 4
previous date : 2022-04-19
previous time : 17.55.29
software - product - Google Chrome
old: Version : 100.0.4896.88
new: Version : 100.0.4896.127
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.88\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.127\elevation_service.exe"
Top Runs Differences at: 2022-04-18 17.55.29
remark :
runtime : 13
count : 4
previous date : 2022-04-17
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 100.0.1185.39
new: Version : 100.0.1185.44
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.39\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.44\elevation_service.exe"
Top Runs Differences at: 2022-04-14 17.55.29
remark :
runtime : 11
count : 164
previous date : 2022-04-13
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: Version : 100.0.1185.36
new: Version : 100.0.1185.39
system - services - survey
new: AarSvc_25ab682 Manual Unknown Agent Activation Runtime_25ab682
new: BcastDVRUserService_25ab682 Manual Unknown Användartjänst för Spel-DVR och sändning_25ab682
new: BluetoothUserService_25ab682 Manual Unknown Bluetooth User Support Service_25ab682
new: CaptureService_25ab682 Manual Unknown CaptureService_25ab682
new: cbdhsvc_25ab682 Manual Unknown Clipboard User Service_25ab682
new: CDPUserSvc_25ab682 Auto Unknown Connected Devices Platform User Service_25ab682
new: ConsentUxUserSvc_25ab682 Manual Unknown ConsentUX_25ab682
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_25ab682
new: DeviceAssociationBrokerSvc_25a Manual Unknown DeviceAssociationBroker_25ab682
new: DevicePickerUserSvc_25ab682 Manual Unknown DevicePicker_25ab682
new: DevicesFlowUserSvc_25ab682 Manual Unknown DevicesFlow_25ab682
new: MessagingService_25ab682 Manual Unknown MessagingService_25ab682
new: OneSyncSvc_25ab682 Auto Unknown Synkroniseringsvärd_25ab682
new: PimIndexMaintenanceSvc_25ab682 Manual Unknown Contact Data_25ab682
new: PrintWorkflowUserSvc_25ab682 Manual Unknown PrintWorkflow_25ab682
new: UdkUserSvc_25ab682 Manual Unknown Udk-användartjänst_25ab682
new: UnistoreSvc_25ab682 Manual Unknown User Data Storage_25ab682
new: UserDataSvc_25ab682 Manual Unknown User Data Access_25ab682
new: WpnUserService_25ab682 Auto Unknown Windows Push Notifications User Service_25ab682
system - services - AarSvc_25ab682
new: DisplayName : Agent Activation Runtime_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_25ab682
new: DisplayName : Användartjänst för Spel-DVR och sändning_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_25ab682
new: DisplayName : Bluetooth User Support Service_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_25ab682
new: DisplayName : CaptureService_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_25ab682
new: DisplayName : Clipboard User Service_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_25ab682
new: DisplayName : Connected Devices Platform User Service_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_25ab682
new: DisplayName : ConsentUX_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_25ab682
new: DisplayName : CredentialEnrollmentManagerUserSvc_25ab682
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_25ab682
new: DisplayName : DeviceAssociationBroker_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_25ab682
new: DisplayName : DevicePicker_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_25ab682
new: DisplayName : DevicesFlow_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_25ab682
new: DisplayName : MessagingService_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.39\elevation_service.exe"
system - services - OneSyncSvc_25ab682
new: DisplayName : Synkroniseringsvärd_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_25ab682
new: DisplayName : Contact Data_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_25ab682
new: DisplayName : PrintWorkflow_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_25ab682
new: DisplayName : Udk-användartjänst_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_25ab682
new: DisplayName : User Data Storage_25ab682
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_25ab682
new: DisplayName : User Data Access_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_25ab682
new: DisplayName : Windows Push Notifications User Service_25ab682
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-04-12 20.43.22
remark :
runtime : 35
count : 178
previous date : 2022-04-12
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - JMRI - Java Model Railroad Interface
old: Version : 4.24+Re18b309e8
new: Version : 4.26+R381c8dfc32
system - hotfix - KB5010472
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5011543
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5012117
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5012599
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_a40abd3 Manual Unknown Agent Activation Runtime_a40abd3
old: BcastDVRUserService_a40abd3 Manual Unknown Användartjänst för Spel-DVR och sändning_a40abd3
old: BluetoothUserService_a40abd3 Manual Unknown Bluetooth User Support Service_a40abd3
old: CaptureService_a40abd3 Manual Unknown CaptureService_a40abd3
old: cbdhsvc_a40abd3 Manual Unknown Clipboard User Service_a40abd3
old: CDPUserSvc_a40abd3 Auto Unknown Connected Devices Platform User Service_a40abd3
old: ConsentUxUserSvc_a40abd3 Manual Unknown ConsentUX_a40abd3
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_a40abd3
old: DeviceAssociationBrokerSvc_a40 Manual Unknown DeviceAssociationBroker_a40abd3
old: DevicePickerUserSvc_a40abd3 Manual Unknown DevicePicker_a40abd3
old: DevicesFlowUserSvc_a40abd3 Manual Unknown DevicesFlow_a40abd3
old: MessagingService_a40abd3 Manual Unknown MessagingService_a40abd3
old: OneSyncSvc_a40abd3 Auto Unknown Synkroniseringsvärd_a40abd3
old: PimIndexMaintenanceSvc_a40abd3 Manual Unknown Contact Data_a40abd3
old: PrintWorkflowUserSvc_a40abd3 Manual Unknown PrintWorkflow_a40abd3
old: UdkUserSvc_a40abd3 Manual Unknown Udk-användartjänst_a40abd3
old: UnistoreSvc_a40abd3 Manual Unknown User Data Storage_a40abd3
old: UserDataSvc_a40abd3 Manual Unknown User Data Access_a40abd3
old: WpnUserService_a40abd3 Auto Unknown Windows Push Notifications User Service_a40abd3
system - services - AarSvc_a40abd3
old: DisplayName : Agent Activation Runtime_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_a40abd3
old: DisplayName : Användartjänst för Spel-DVR och sändning_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_a40abd3
old: DisplayName : Bluetooth User Support Service_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_a40abd3
old: DisplayName : CaptureService_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_a40abd3
old: DisplayName : Clipboard User Service_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_a40abd3
old: DisplayName : Connected Devices Platform User Service_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_a40abd3
old: DisplayName : ConsentUX_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_a40abd3
old: DisplayName : CredentialEnrollmentManagerUserSvc_a40abd3
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_a40abd3
old: DisplayName : DeviceAssociationBroker_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_a40abd3
old: DisplayName : DevicePicker_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_a40abd3
old: DisplayName : DevicesFlow_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_a40abd3
old: DisplayName : MessagingService_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_a40abd3
old: DisplayName : Synkroniseringsvärd_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_a40abd3
old: DisplayName : Contact Data_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_a40abd3
old: DisplayName : PrintWorkflow_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_a40abd3
old: DisplayName : Udk-användartjänst_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_a40abd3
old: DisplayName : User Data Storage_a40abd3
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_a40abd3
old: DisplayName : User Data Access_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_a40abd3
old: DisplayName : Windows Push Notifications User Service_a40abd3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2022-04-12 17.55.29
remark :
runtime : 12
count : 20
previous date : 2022-04-11
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe --startup_mode
software - product - Google Chrome
old: Version : 100.0.4896.75
new: Version : 100.0.4896.88
software - product - Google Drive
old: Version : 56.0.9.0
new: Version : 56.0.11.0
old: Install Location : C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\56.0.11.0\GoogleDriveFS.exe
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.75\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.88\elevation_service.exe"
Top Runs Differences at: 2022-04-09 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-04-08
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 100.0.1185.29
new: Version : 100.0.1185.36
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.29\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\elevation_service.exe"
Top Runs Differences at: 2022-04-08 17.55.29
remark :
runtime : 12
count : 12
previous date : 2022-04-07
previous time : 17.55.29
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2022-04-07 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-04-06
previous time : 17.55.29
software - product - Google Chrome
old: Version : 99.0.4844.84
new: Version : 100.0.4896.75
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.84\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.75\elevation_service.exe"
Top Runs Differences at: 2022-04-06 17.55.29
remark :
runtime : 12
count : 2
previous date : 2022-04-05
previous time : 17.55.29
software - product - Microsoft Edge Update
old: Version : 1.3.155.85
new: Version : 1.3.157.61
Top Runs Differences at: 2022-04-05 17.55.29
remark :
runtime : 17
count : 25
previous date : 2022-04-04
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 55.0.3.0
new: Version : 56.0.9.0
old: Install Location : C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\56.0.9.0\GoogleDriveFS.exe
software - product - Microsoft Update Health Tools
old: Version : 3.66.0.0
new: Version : 3.67.0.0
system - SystemDriver - googledrivefs3758
new: AcceptPause : 0
new: Description : googledrivefs3758
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\DRIVERS\googledrivefs3758.sys
new: ServiceType : File System Driver
new: StartMode : System
Top Runs Differences at: 2022-04-03 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-04-02
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 99.0.1150.55
new: Version : 100.0.1185.29
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\99.0.1150.55\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.29\elevation_service.exe"
Top Runs Differences at: 2022-04-02 17.55.29
remark :
runtime : 12
count : 148
previous date : 2022-04-01
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_a40abd3 Manual Unknown Agent Activation Runtime_a40abd3
new: BcastDVRUserService_a40abd3 Manual Unknown Användartjänst för Spel-DVR och sändning_a40abd3
new: BluetoothUserService_a40abd3 Manual Unknown Bluetooth User Support Service_a40abd3
new: CaptureService_a40abd3 Manual Unknown CaptureService_a40abd3
new: cbdhsvc_a40abd3 Manual Unknown Clipboard User Service_a40abd3
new: CDPUserSvc_a40abd3 Auto Unknown Connected Devices Platform User Service_a40abd3
new: ConsentUxUserSvc_a40abd3 Manual Unknown ConsentUX_a40abd3
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_a40abd3
new: DeviceAssociationBrokerSvc_a40 Manual Unknown DeviceAssociationBroker_a40abd3
new: DevicePickerUserSvc_a40abd3 Manual Unknown DevicePicker_a40abd3
new: DevicesFlowUserSvc_a40abd3 Manual Unknown DevicesFlow_a40abd3
new: MessagingService_a40abd3 Manual Unknown MessagingService_a40abd3
new: OneSyncSvc_a40abd3 Auto Unknown Synkroniseringsvärd_a40abd3
new: PimIndexMaintenanceSvc_a40abd3 Manual Unknown Contact Data_a40abd3
new: PrintWorkflowUserSvc_a40abd3 Manual Unknown PrintWorkflow_a40abd3
new: UdkUserSvc_a40abd3 Manual Unknown Udk-användartjänst_a40abd3
new: UnistoreSvc_a40abd3 Manual Unknown User Data Storage_a40abd3
new: UserDataSvc_a40abd3 Manual Unknown User Data Access_a40abd3
new: WpnUserService_a40abd3 Auto Unknown Windows Push Notifications User Service_a40abd3
system - services - AarSvc_a40abd3
new: DisplayName : Agent Activation Runtime_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_a40abd3
new: DisplayName : Användartjänst för Spel-DVR och sändning_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_a40abd3
new: DisplayName : Bluetooth User Support Service_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_a40abd3
new: DisplayName : CaptureService_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_a40abd3
new: DisplayName : Clipboard User Service_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_a40abd3
new: DisplayName : Connected Devices Platform User Service_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_a40abd3
new: DisplayName : ConsentUX_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_a40abd3
new: DisplayName : CredentialEnrollmentManagerUserSvc_a40abd3
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_a40abd3
new: DisplayName : DeviceAssociationBroker_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_a40abd3
new: DisplayName : DevicePicker_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_a40abd3
new: DisplayName : DevicesFlow_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_a40abd3
new: DisplayName : MessagingService_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_a40abd3
new: DisplayName : Synkroniseringsvärd_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_a40abd3
new: DisplayName : Contact Data_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_a40abd3
new: DisplayName : PrintWorkflow_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_a40abd3
new: DisplayName : Udk-användartjänst_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_a40abd3
new: DisplayName : User Data Storage_a40abd3
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_a40abd3
new: DisplayName : User Data Access_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_a40abd3
new: DisplayName : Windows Push Notifications User Service_a40abd3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2022-04-01 17.55.29
remark :
runtime : 13
count : 148
previous date : 2022-03-31
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - services - survey
old: AarSvc_50f11d Manual Unknown Agent Activation Runtime_50f11d
old: BcastDVRUserService_50f11d Manual Unknown Användartjänst för Spel-DVR och sändning_50f11d
old: BluetoothUserService_50f11d Manual Unknown Bluetooth User Support Service_50f11d
old: CaptureService_50f11d Manual Unknown CaptureService_50f11d
old: cbdhsvc_50f11d Manual Unknown Clipboard User Service_50f11d
old: CDPUserSvc_50f11d Auto Unknown Connected Devices Platform User Service_50f11d
old: ConsentUxUserSvc_50f11d Manual Unknown ConsentUX_50f11d
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_50f11d
old: DeviceAssociationBrokerSvc_50f Manual Unknown DeviceAssociationBroker_50f11d
old: DevicePickerUserSvc_50f11d Manual Unknown DevicePicker_50f11d
old: DevicesFlowUserSvc_50f11d Manual Unknown DevicesFlow_50f11d
old: MessagingService_50f11d Manual Unknown MessagingService_50f11d
old: OneSyncSvc_50f11d Auto Unknown Synkroniseringsvärd_50f11d
old: PimIndexMaintenanceSvc_50f11d Manual Unknown Contact Data_50f11d
old: PrintWorkflowUserSvc_50f11d Manual Unknown PrintWorkflow_50f11d
old: UdkUserSvc_50f11d Manual Unknown Udk-användartjänst_50f11d
old: UnistoreSvc_50f11d Manual Unknown User Data Storage_50f11d
old: UserDataSvc_50f11d Manual Unknown User Data Access_50f11d
old: WpnUserService_50f11d Auto Unknown Windows Push Notifications User Service_50f11d
system - services - AarSvc_50f11d
old: DisplayName : Agent Activation Runtime_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_50f11d
old: DisplayName : Användartjänst för Spel-DVR och sändning_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_50f11d
old: DisplayName : Bluetooth User Support Service_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_50f11d
old: DisplayName : CaptureService_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_50f11d
old: DisplayName : Clipboard User Service_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_50f11d
old: DisplayName : Connected Devices Platform User Service_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_50f11d
old: DisplayName : ConsentUX_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_50f11d
old: DisplayName : CredentialEnrollmentManagerUserSvc_50f11d
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_50f11d
old: DisplayName : DeviceAssociationBroker_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_50f11d
old: DisplayName : DevicePicker_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_50f11d
old: DisplayName : DevicesFlow_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_50f11d
old: DisplayName : MessagingService_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_50f11d
old: DisplayName : Synkroniseringsvärd_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_50f11d
old: DisplayName : Contact Data_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_50f11d
old: DisplayName : PrintWorkflow_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_50f11d
old: DisplayName : Udk-användartjänst_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_50f11d
old: DisplayName : User Data Storage_50f11d
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_50f11d
old: DisplayName : User Data Access_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_50f11d
old: DisplayName : Windows Push Notifications User Service_50f11d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2022-03-30 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-03-29
previous time : 17.55.29
software - product - Google Chrome
old: Version : 99.0.4844.82
new: Version : 99.0.4844.84
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.82\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.84\elevation_service.exe"
Top Runs Differences at: 2022-03-28 17.55.29
remark :
runtime : 14
count : 4
previous date : 2022-03-27
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 99.0.1150.52
new: Version : 99.0.1150.55
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\99.0.1150.52\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\99.0.1150.55\elevation_service.exe"
Top Runs Differences at: 2022-03-27 17.55.29
remark :
runtime : 12
count : 4
previous date : 2022-03-26
previous time : 16.55.29
general
old: CurrentTimeZone:60
old: DaylightInEffect:0
new: CurrentTimeZone:120
new: DaylightInEffect:1
Top Runs Differences at: 2022-03-26 16.55.29
remark :
runtime : 12
count : 160
previous date : 2022-03-26
previous time : 13.33.38
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_50f11d Manual Unknown Agent Activation Runtime_50f11d
new: BcastDVRUserService_50f11d Manual Unknown Användartjänst för Spel-DVR och sändning_50f11d
new: BluetoothUserService_50f11d Manual Unknown Bluetooth User Support Service_50f11d
new: CaptureService_50f11d Manual Unknown CaptureService_50f11d
new: cbdhsvc_50f11d Manual Unknown Clipboard User Service_50f11d
new: CDPUserSvc_50f11d Auto Unknown Connected Devices Platform User Service_50f11d
new: ConsentUxUserSvc_50f11d Manual Unknown ConsentUX_50f11d
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_50f11d
new: DeviceAssociationBrokerSvc_50f Manual Unknown DeviceAssociationBroker_50f11d
new: DevicePickerUserSvc_50f11d Manual Unknown DevicePicker_50f11d
new: DevicesFlowUserSvc_50f11d Manual Unknown DevicesFlow_50f11d
new: MessagingService_50f11d Manual Unknown MessagingService_50f11d
new: OneSyncSvc_50f11d Auto Unknown Synkroniseringsvärd_50f11d
new: PimIndexMaintenanceSvc_50f11d Manual Unknown Contact Data_50f11d
new: PrintWorkflowUserSvc_50f11d Manual Unknown PrintWorkflow_50f11d
new: UdkUserSvc_50f11d Manual Unknown Udk-användartjänst_50f11d
new: UnistoreSvc_50f11d Manual Unknown User Data Storage_50f11d
new: UserDataSvc_50f11d Manual Unknown User Data Access_50f11d
new: WpnUserService_50f11d Auto Unknown Windows Push Notifications User Service_50f11d
system - services - AarSvc_50f11d
new: DisplayName : Agent Activation Runtime_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_50f11d
new: DisplayName : Användartjänst för Spel-DVR och sändning_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_50f11d
new: DisplayName : Bluetooth User Support Service_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_50f11d
new: DisplayName : CaptureService_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_50f11d
new: DisplayName : Clipboard User Service_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_50f11d
new: DisplayName : Connected Devices Platform User Service_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_50f11d
new: DisplayName : ConsentUX_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_50f11d
new: DisplayName : CredentialEnrollmentManagerUserSvc_50f11d
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_50f11d
new: DisplayName : DeviceAssociationBroker_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_50f11d
new: DisplayName : DevicePicker_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_50f11d
new: DisplayName : DevicesFlow_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_50f11d
new: DisplayName : MessagingService_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_50f11d
new: DisplayName : Synkroniseringsvärd_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_50f11d
new: DisplayName : Contact Data_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_50f11d
new: DisplayName : PrintWorkflow_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_50f11d
new: DisplayName : Udk-användartjänst_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_50f11d
new: DisplayName : User Data Storage_50f11d
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_50f11d
new: DisplayName : User Data Access_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_50f11d
new: DisplayName : Windows Push Notifications User Service_50f11d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-03-26 13.33.38
remark :
runtime : 20
count : 25
previous date : 2022-03-26
previous time : 09.32.06
system - hotfix - KB5011487
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5011543
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5011651
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2022-03-26 09.32.06
remark :
runtime : 54
count : 160
previous date : 2022-03-22
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 99.0.4844.74
new: Version : 99.0.4844.82
software - product - Microsoft Edge
old: Version : 99.0.1150.46
new: Version : 99.0.1150.52
system - services - survey
old: AarSvc_ad8c9f Manual Unknown Agent Activation Runtime_ad8c9f
old: BcastDVRUserService_ad8c9f Manual Unknown Användartjänst för Spel-DVR och sändning_ad8c9f
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_ad8c9f Manual Unknown Bluetooth User Support Service_ad8c9f
new: BITS Auto Share Process Background Intelligent Transfer Service
old: CaptureService_ad8c9f Manual Unknown CaptureService_ad8c9f
old: cbdhsvc_ad8c9f Manual Unknown Clipboard User Service_ad8c9f
old: CDPUserSvc_ad8c9f Auto Unknown Connected Devices Platform User Service_ad8c9f
old: ConsentUxUserSvc_ad8c9f Manual Unknown ConsentUX_ad8c9f
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_ad8c9f
old: DeviceAssociationBrokerSvc_ad8 Manual Unknown DeviceAssociationBroker_ad8c9f
old: DevicePickerUserSvc_ad8c9f Manual Unknown DevicePicker_ad8c9f
old: DevicesFlowUserSvc_ad8c9f Manual Unknown DevicesFlow_ad8c9f
old: MessagingService_ad8c9f Manual Unknown MessagingService_ad8c9f
old: OneSyncSvc_ad8c9f Auto Unknown Synkroniseringsvärd_ad8c9f
old: PimIndexMaintenanceSvc_ad8c9f Manual Unknown Contact Data_ad8c9f
old: PrintWorkflowUserSvc_ad8c9f Manual Unknown PrintWorkflow_ad8c9f
old: UdkUserSvc_ad8c9f Manual Unknown Udk-användartjänst_ad8c9f
old: UnistoreSvc_ad8c9f Manual Unknown User Data Storage_ad8c9f
old: UserDataSvc_ad8c9f Manual Unknown User Data Access_ad8c9f
old: WpnUserService_ad8c9f Auto Unknown Windows Push Notifications User Service_ad8c9f
system - services - AarSvc_ad8c9f
old: DisplayName : Agent Activation Runtime_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_ad8c9f
old: DisplayName : Användartjänst för Spel-DVR och sändning_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_ad8c9f
old: DisplayName : Bluetooth User Support Service_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_ad8c9f
old: DisplayName : CaptureService_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_ad8c9f
old: DisplayName : Clipboard User Service_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_ad8c9f
old: DisplayName : Connected Devices Platform User Service_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_ad8c9f
old: DisplayName : ConsentUX_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_ad8c9f
old: DisplayName : CredentialEnrollmentManagerUserSvc_ad8c9f
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_ad8c9f
old: DisplayName : DeviceAssociationBroker_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_ad8c9f
old: DisplayName : DevicePicker_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_ad8c9f
old: DisplayName : DevicesFlow_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.74\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.82\elevation_service.exe"
system - services - MessagingService_ad8c9f
old: DisplayName : MessagingService_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\99.0.1150.46\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\99.0.1150.52\elevation_service.exe"
system - services - OneSyncSvc_ad8c9f
old: DisplayName : Synkroniseringsvärd_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_ad8c9f
old: DisplayName : Contact Data_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_ad8c9f
old: DisplayName : PrintWorkflow_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_ad8c9f
old: DisplayName : Udk-användartjänst_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_ad8c9f
old: DisplayName : User Data Storage_ad8c9f
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_ad8c9f
old: DisplayName : User Data Access_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_ad8c9f
old: DisplayName : Windows Push Notifications User Service_ad8c9f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2022-03-22 16.55.30
remark :
runtime : 12
count : 148
previous date : 2022-03-21
previous time : 21.24.49
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_ad8c9f Manual Unknown Agent Activation Runtime_ad8c9f
new: BcastDVRUserService_ad8c9f Manual Unknown Användartjänst för Spel-DVR och sändning_ad8c9f
new: BluetoothUserService_ad8c9f Manual Unknown Bluetooth User Support Service_ad8c9f
new: CaptureService_ad8c9f Manual Unknown CaptureService_ad8c9f
new: cbdhsvc_ad8c9f Manual Unknown Clipboard User Service_ad8c9f
new: CDPUserSvc_ad8c9f Auto Unknown Connected Devices Platform User Service_ad8c9f
new: ConsentUxUserSvc_ad8c9f Manual Unknown ConsentUX_ad8c9f
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_ad8c9f
new: DeviceAssociationBrokerSvc_ad8 Manual Unknown DeviceAssociationBroker_ad8c9f
new: DevicePickerUserSvc_ad8c9f Manual Unknown DevicePicker_ad8c9f
new: DevicesFlowUserSvc_ad8c9f Manual Unknown DevicesFlow_ad8c9f
new: MessagingService_ad8c9f Manual Unknown MessagingService_ad8c9f
new: OneSyncSvc_ad8c9f Auto Unknown Synkroniseringsvärd_ad8c9f
new: PimIndexMaintenanceSvc_ad8c9f Manual Unknown Contact Data_ad8c9f
new: PrintWorkflowUserSvc_ad8c9f Manual Unknown PrintWorkflow_ad8c9f
new: UdkUserSvc_ad8c9f Manual Unknown Udk-användartjänst_ad8c9f
new: UnistoreSvc_ad8c9f Manual Unknown User Data Storage_ad8c9f
new: UserDataSvc_ad8c9f Manual Unknown User Data Access_ad8c9f
new: WpnUserService_ad8c9f Auto Unknown Windows Push Notifications User Service_ad8c9f
system - services - AarSvc_ad8c9f
new: DisplayName : Agent Activation Runtime_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_ad8c9f
new: DisplayName : Användartjänst för Spel-DVR och sändning_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_ad8c9f
new: DisplayName : Bluetooth User Support Service_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_ad8c9f
new: DisplayName : CaptureService_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_ad8c9f
new: DisplayName : Clipboard User Service_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_ad8c9f
new: DisplayName : Connected Devices Platform User Service_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_ad8c9f
new: DisplayName : ConsentUX_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_ad8c9f
new: DisplayName : CredentialEnrollmentManagerUserSvc_ad8c9f
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_ad8c9f
new: DisplayName : DeviceAssociationBroker_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_ad8c9f
new: DisplayName : DevicePicker_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_ad8c9f
new: DisplayName : DevicesFlow_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_ad8c9f
new: DisplayName : MessagingService_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_ad8c9f
new: DisplayName : Synkroniseringsvärd_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_ad8c9f
new: DisplayName : Contact Data_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_ad8c9f
new: DisplayName : PrintWorkflow_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_ad8c9f
new: DisplayName : Udk-användartjänst_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_ad8c9f
new: DisplayName : User Data Storage_ad8c9f
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_ad8c9f
new: DisplayName : User Data Access_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_ad8c9f
new: DisplayName : Windows Push Notifications User Service_ad8c9f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2022-03-21 21.24.49
remark :
runtime : 24
count : 165
previous date : 2022-03-21
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - TeamViewer
old: Version : 15.27.3
old: Publisher : TeamViewer
old: ParentKey :
old: Install Location : C:\Program Files\TeamViewer
old: NoModify : 0x00000001
old: NoRepair : 0x00000001
system - services - survey
old: AarSvc_4edfbed Manual Unknown Agent Activation Runtime_4edfbed
old: BcastDVRUserService_4edfbed Manual Unknown Användartjänst för Spel-DVR och sändning_4edfbed
old: BluetoothUserService_4edfbed Manual Unknown Bluetooth User Support Service_4edfbed
old: CaptureService_4edfbed Manual Unknown CaptureService_4edfbed
old: cbdhsvc_4edfbed Manual Unknown Clipboard User Service_4edfbed
old: CDPUserSvc_4edfbed Auto Unknown Connected Devices Platform User Service_4edfbed
old: ConsentUxUserSvc_4edfbed Manual Unknown ConsentUX_4edfbed
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_4edfbed
old: DeviceAssociationBrokerSvc_4ed Manual Unknown DeviceAssociationBroker_4edfbed
old: DevicePickerUserSvc_4edfbed Manual Unknown DevicePicker_4edfbed
old: DevicesFlowUserSvc_4edfbed Manual Unknown DevicesFlow_4edfbed
old: MessagingService_4edfbed Manual Unknown MessagingService_4edfbed
old: OneSyncSvc_4edfbed Auto Unknown Synkroniseringsvärd_4edfbed
old: PimIndexMaintenanceSvc_4edfbed Manual Unknown Contact Data_4edfbed
old: PrintWorkflowUserSvc_4edfbed Manual Unknown PrintWorkflow_4edfbed
old: TeamViewer Auto Own Process TeamViewer
old: UdkUserSvc_4edfbed Manual Unknown Udk-användartjänst_4edfbed
old: UnistoreSvc_4edfbed Manual Unknown User Data Storage_4edfbed
old: UserDataSvc_4edfbed Manual Unknown User Data Access_4edfbed
old: WpnUserService_4edfbed Auto Unknown Windows Push Notifications User Service_4edfbed
system - services - AarSvc_4edfbed
old: DisplayName : Agent Activation Runtime_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_4edfbed
old: DisplayName : Användartjänst för Spel-DVR och sändning_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_4edfbed
old: DisplayName : Bluetooth User Support Service_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_4edfbed
old: DisplayName : CaptureService_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_4edfbed
old: DisplayName : Clipboard User Service_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_4edfbed
old: DisplayName : Connected Devices Platform User Service_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_4edfbed
old: DisplayName : ConsentUX_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_4edfbed
old: DisplayName : CredentialEnrollmentManagerUserSvc_4edfbed
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_4edfbed
old: DisplayName : DeviceAssociationBroker_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_4edfbed
old: DisplayName : DevicePicker_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_4edfbed
old: DisplayName : DevicesFlow_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_4edfbed
old: DisplayName : MessagingService_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_4edfbed
old: DisplayName : Synkroniseringsvärd_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_4edfbed
old: DisplayName : Contact Data_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_4edfbed
old: DisplayName : PrintWorkflow_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TeamViewer
old: DisplayName : TeamViewer
old: PathName : "C:\Program Files\TeamViewer\TeamViewer_Service.exe"
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - UdkUserSvc_4edfbed
old: DisplayName : Udk-användartjänst_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_4edfbed
old: DisplayName : User Data Storage_4edfbed
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_4edfbed
old: DisplayName : User Data Access_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_4edfbed
old: DisplayName : Windows Push Notifications User Service_4edfbed
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - RpcSs
old: Required by : TeamViewer
system - services - TeamViewer
old: Requires : RpcSs
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2022-03-21 16.55.29
remark :
runtime : 14
count : 152
previous date : 2022-03-21
previous time : 15.29.32
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_4edfbed Manual Unknown Agent Activation Runtime_4edfbed
new: BcastDVRUserService_4edfbed Manual Unknown Användartjänst för Spel-DVR och sändning_4edfbed
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
new: BluetoothUserService_4edfbed Manual Unknown Bluetooth User Support Service_4edfbed
new: CaptureService_4edfbed Manual Unknown CaptureService_4edfbed
new: cbdhsvc_4edfbed Manual Unknown Clipboard User Service_4edfbed
new: CDPUserSvc_4edfbed Auto Unknown Connected Devices Platform User Service_4edfbed
new: ConsentUxUserSvc_4edfbed Manual Unknown ConsentUX_4edfbed
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_4edfbed
new: DeviceAssociationBrokerSvc_4ed Manual Unknown DeviceAssociationBroker_4edfbed
new: DevicePickerUserSvc_4edfbed Manual Unknown DevicePicker_4edfbed
new: DevicesFlowUserSvc_4edfbed Manual Unknown DevicesFlow_4edfbed
new: MessagingService_4edfbed Manual Unknown MessagingService_4edfbed
new: OneSyncSvc_4edfbed Auto Unknown Synkroniseringsvärd_4edfbed
new: PimIndexMaintenanceSvc_4edfbed Manual Unknown Contact Data_4edfbed
new: PrintWorkflowUserSvc_4edfbed Manual Unknown PrintWorkflow_4edfbed
new: UdkUserSvc_4edfbed Manual Unknown Udk-användartjänst_4edfbed
new: UnistoreSvc_4edfbed Manual Unknown User Data Storage_4edfbed
new: UserDataSvc_4edfbed Manual Unknown User Data Access_4edfbed
new: WpnUserService_4edfbed Auto Unknown Windows Push Notifications User Service_4edfbed
system - services - AarSvc_4edfbed
new: DisplayName : Agent Activation Runtime_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_4edfbed
new: DisplayName : Användartjänst för Spel-DVR och sändning_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_4edfbed
new: DisplayName : Bluetooth User Support Service_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_4edfbed
new: DisplayName : CaptureService_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_4edfbed
new: DisplayName : Clipboard User Service_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_4edfbed
new: DisplayName : Connected Devices Platform User Service_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_4edfbed
new: DisplayName : ConsentUX_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_4edfbed
new: DisplayName : CredentialEnrollmentManagerUserSvc_4edfbed
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_4edfbed
new: DisplayName : DeviceAssociationBroker_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_4edfbed
new: DisplayName : DevicePicker_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_4edfbed
new: DisplayName : DevicesFlow_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_4edfbed
new: DisplayName : MessagingService_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_4edfbed
new: DisplayName : Synkroniseringsvärd_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_4edfbed
new: DisplayName : Contact Data_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_4edfbed
new: DisplayName : PrintWorkflow_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_4edfbed
new: DisplayName : Udk-användartjänst_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_4edfbed
new: DisplayName : User Data Storage_4edfbed
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_4edfbed
new: DisplayName : User Data Access_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_4edfbed
new: DisplayName : Windows Push Notifications User Service_4edfbed
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2022-03-21 15.29.32
remark :
runtime : 50
count : 307
previous date : 2022-03-15
previous time : 16.55.29
boot - startup - A7BFB68BAF50D725E7158FD1247DF8F3E6481A95._service_run
old: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=service /prefetch:8
old: Description : A7BFB68BAF50D725E7158FD1247DF8F3E6481A95._service_run
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1108\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : A7BFB68BAF50D725E7158FD1247DF8F3E6481A95._service_run
old: SettingID :
old: User : CORP\leif
old:
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
boot - startup - OneDrive
old: Command : "C:\Users\leif.CORP\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
old: Description : OneDrive
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1108\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : OneDrive
old: SettingID :
old: User : CORP\leif
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 99.0.4844.51
new: Version : 99.0.4844.74
software - product - Microsoft Edge
old: Version : 99.0.1150.39
new: Version : 99.0.1150.46
system - services - survey
old: AarSvc_1c143f9 Manual Unknown Agent Activation Runtime_1c143f9
old: AarSvc_2b72123 Manual Unknown Agent Activation Runtime_2b72123
old: BcastDVRUserService_1c143f9 Manual Unknown Användartjänst för Spel-DVR och sändning_1c143f9
old: BcastDVRUserService_2b72123 Manual Unknown Användartjänst för Spel-DVR och sändning_2b72123
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_1c143f9 Manual Unknown Bluetooth User Support Service_1c143f9
old: BluetoothUserService_2b72123 Manual Unknown Bluetooth User Support Service_2b72123
new: BITS Auto Share Process Background Intelligent Transfer Service
old: CaptureService_1c143f9 Manual Unknown CaptureService_1c143f9
old: CaptureService_2b72123 Manual Unknown CaptureService_2b72123
old: cbdhsvc_1c143f9 Manual Unknown Clipboard User Service_1c143f9
old: cbdhsvc_2b72123 Manual Unknown Clipboard User Service_2b72123
old: CDPUserSvc_1c143f9 Auto Unknown Connected Devices Platform User Service_1c143f9
old: CDPUserSvc_2b72123 Auto Unknown Connected Devices Platform User Service_2b72123
old: ConsentUxUserSvc_1c143f9 Manual Unknown ConsentUX_1c143f9
old: ConsentUxUserSvc_2b72123 Manual Unknown ConsentUX_2b72123
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1c143f9
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_2b72123
old: DeviceAssociationBrokerSvc_1c1 Manual Unknown DeviceAssociationBroker_1c143f9
old: DeviceAssociationBrokerSvc_2b7 Manual Unknown DeviceAssociationBroker_2b72123
old: DevicePickerUserSvc_1c143f9 Manual Unknown DevicePicker_1c143f9
old: DevicePickerUserSvc_2b72123 Manual Unknown DevicePicker_2b72123
old: DevicesFlowUserSvc_1c143f9 Manual Unknown DevicesFlow_1c143f9
old: DevicesFlowUserSvc_2b72123 Manual Unknown DevicesFlow_2b72123
old: MessagingService_1c143f9 Manual Unknown MessagingService_1c143f9
old: MessagingService_2b72123 Manual Unknown MessagingService_2b72123
old: OneSyncSvc_1c143f9 Auto Unknown Synkroniseringsvärd_1c143f9
old: OneSyncSvc_2b72123 Auto Unknown Synkroniseringsvärd_2b72123
old: PimIndexMaintenanceSvc_1c143f9 Manual Unknown Contact Data_1c143f9
old: PimIndexMaintenanceSvc_2b72123 Manual Unknown Contact Data_2b72123
old: PrintWorkflowUserSvc_1c143f9 Manual Unknown PrintWorkflow_1c143f9
old: PrintWorkflowUserSvc_2b72123 Manual Unknown PrintWorkflow_2b72123
old: UdkUserSvc_1c143f9 Manual Unknown Udk-användartjänst_1c143f9
old: UdkUserSvc_2b72123 Manual Unknown Udk-användartjänst_2b72123
old: UnistoreSvc_1c143f9 Manual Unknown User Data Storage_1c143f9
old: UnistoreSvc_2b72123 Manual Unknown User Data Storage_2b72123
old: UserDataSvc_1c143f9 Manual Unknown User Data Access_1c143f9
old: UserDataSvc_2b72123 Manual Unknown User Data Access_2b72123
old: WpnUserService_1c143f9 Auto Unknown Windows Push Notifications User Service_1c143f9
old: WpnUserService_2b72123 Auto Unknown Windows Push Notifications User Service_2b72123
system - services - AarSvc_1c143f9
old: DisplayName : Agent Activation Runtime_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_2b72123
old: DisplayName : Agent Activation Runtime_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_1c143f9
old: DisplayName : Användartjänst för Spel-DVR och sändning_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_2b72123
old: DisplayName : Användartjänst för Spel-DVR och sändning_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_1c143f9
old: DisplayName : Bluetooth User Support Service_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_2b72123
old: DisplayName : Bluetooth User Support Service_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_1c143f9
old: DisplayName : CaptureService_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_2b72123
old: DisplayName : CaptureService_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_1c143f9
old: DisplayName : Clipboard User Service_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_2b72123
old: DisplayName : Clipboard User Service_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_1c143f9
old: DisplayName : Connected Devices Platform User Service_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_2b72123
old: DisplayName : Connected Devices Platform User Service_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_1c143f9
old: DisplayName : ConsentUX_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_2b72123
old: DisplayName : ConsentUX_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1c143f9
old: DisplayName : CredentialEnrollmentManagerUserSvc_1c143f9
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_2b72123
old: DisplayName : CredentialEnrollmentManagerUserSvc_2b72123
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_1c143f9
old: DisplayName : DeviceAssociationBroker_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_2b72123
old: DisplayName : DeviceAssociationBroker_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_1c143f9
old: DisplayName : DevicePicker_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_2b72123
old: DisplayName : DevicePicker_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_1c143f9
old: DisplayName : DevicesFlow_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_2b72123
old: DisplayName : DevicesFlow_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.51\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.74\elevation_service.exe"
system - services - MessagingService_1c143f9
old: DisplayName : MessagingService_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_2b72123
old: DisplayName : MessagingService_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\99.0.1150.39\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\99.0.1150.46\elevation_service.exe"
system - services - OneSyncSvc_1c143f9
old: DisplayName : Synkroniseringsvärd_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_2b72123
old: DisplayName : Synkroniseringsvärd_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_1c143f9
old: DisplayName : Contact Data_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_2b72123
old: DisplayName : Contact Data_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_1c143f9
old: DisplayName : PrintWorkflow_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_2b72123
old: DisplayName : PrintWorkflow_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_1c143f9
old: DisplayName : Udk-användartjänst_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_2b72123
old: DisplayName : Udk-användartjänst_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_1c143f9
old: DisplayName : User Data Storage_1c143f9
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_2b72123
old: DisplayName : User Data Storage_2b72123
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_1c143f9
old: DisplayName : User Data Access_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_2b72123
old: DisplayName : User Data Access_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_1c143f9
old: DisplayName : Windows Push Notifications User Service_1c143f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_2b72123
old: DisplayName : Windows Push Notifications User Service_2b72123
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2022-03-15 16.55.29
remark :
runtime : 12
count : 348
previous date : 2022-03-14
previous time : 16.55.29
boot - startup - A7BFB68BAF50D725E7158FD1247DF8F3E6481A95._service_run
new: Command : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=service /prefetch:8
new: Description : A7BFB68BAF50D725E7158FD1247DF8F3E6481A95._service_run
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1108\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : A7BFB68BAF50D725E7158FD1247DF8F3E6481A95._service_run
new: SettingID :
new: User : CORP\leif
new:
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
boot - startup - OneDrive
new: Command : "C:\Users\leif.CORP\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
new: Description : OneDrive
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1108\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : OneDrive
new: SettingID :
new: User : CORP\leif
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - LibreOffice 7.0.1.2
old: Version : 7.0.1.2
old: Publisher : The Document Foundation
old: URLinfo : https://www.libreoffice.org/
old: ParentKey :
old: Install Location : C:\Program Files\LibreOffice\
old: Windows Installer : 0x00000001
software - product - LibreOffice 7.3.1.3
new: Version : 7.3.1.3
new: Publisher : The Document Foundation
new: URLinfo : https://www.libreoffice.org/
new: ParentKey :
new: Install Location : C:\Program Files\LibreOffice\
new: Windows Installer : 0x00000001
software - product - TeamViewer
new: Version : 15.27.3
new: Publisher : TeamViewer
new: ParentKey :
new: Install Location : C:\Program Files\TeamViewer
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
system - services - survey
new: AarSvc_1c143f9 Manual Unknown Agent Activation Runtime_1c143f9
new: AarSvc_2b72123 Manual Unknown Agent Activation Runtime_2b72123
new: BcastDVRUserService_1c143f9 Manual Unknown Användartjänst för Spel-DVR och sändning_1c143f9
new: BcastDVRUserService_2b72123 Manual Unknown Användartjänst för Spel-DVR och sändning_2b72123
new: BluetoothUserService_1c143f9 Manual Unknown Bluetooth User Support Service_1c143f9
new: BluetoothUserService_2b72123 Manual Unknown Bluetooth User Support Service_2b72123
new: CaptureService_1c143f9 Manual Unknown CaptureService_1c143f9
new: CaptureService_2b72123 Manual Unknown CaptureService_2b72123
new: cbdhsvc_1c143f9 Manual Unknown Clipboard User Service_1c143f9
new: cbdhsvc_2b72123 Manual Unknown Clipboard User Service_2b72123
new: CDPUserSvc_1c143f9 Auto Unknown Connected Devices Platform User Service_1c143f9
new: CDPUserSvc_2b72123 Auto Unknown Connected Devices Platform User Service_2b72123
new: ConsentUxUserSvc_1c143f9 Manual Unknown ConsentUX_1c143f9
new: ConsentUxUserSvc_2b72123 Manual Unknown ConsentUX_2b72123
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1c143f9
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_2b72123
new: DeviceAssociationBrokerSvc_1c1 Manual Unknown DeviceAssociationBroker_1c143f9
new: DeviceAssociationBrokerSvc_2b7 Manual Unknown DeviceAssociationBroker_2b72123
new: DevicePickerUserSvc_1c143f9 Manual Unknown DevicePicker_1c143f9
new: DevicePickerUserSvc_2b72123 Manual Unknown DevicePicker_2b72123
new: DevicesFlowUserSvc_1c143f9 Manual Unknown DevicesFlow_1c143f9
new: DevicesFlowUserSvc_2b72123 Manual Unknown DevicesFlow_2b72123
new: MessagingService_1c143f9 Manual Unknown MessagingService_1c143f9
new: MessagingService_2b72123 Manual Unknown MessagingService_2b72123
new: OneSyncSvc_1c143f9 Auto Unknown Synkroniseringsvärd_1c143f9
new: OneSyncSvc_2b72123 Auto Unknown Synkroniseringsvärd_2b72123
new: PimIndexMaintenanceSvc_1c143f9 Manual Unknown Contact Data_1c143f9
new: PimIndexMaintenanceSvc_2b72123 Manual Unknown Contact Data_2b72123
new: PrintWorkflowUserSvc_1c143f9 Manual Unknown PrintWorkflow_1c143f9
new: PrintWorkflowUserSvc_2b72123 Manual Unknown PrintWorkflow_2b72123
new: TeamViewer Auto Own Process TeamViewer
new: UdkUserSvc_1c143f9 Manual Unknown Udk-användartjänst_1c143f9
new: UdkUserSvc_2b72123 Manual Unknown Udk-användartjänst_2b72123
new: UnistoreSvc_1c143f9 Manual Unknown User Data Storage_1c143f9
new: UnistoreSvc_2b72123 Manual Unknown User Data Storage_2b72123
new: UserDataSvc_1c143f9 Manual Unknown User Data Access_1c143f9
new: UserDataSvc_2b72123 Manual Unknown User Data Access_2b72123
new: WpnUserService_1c143f9 Auto Unknown Windows Push Notifications User Service_1c143f9
new: WpnUserService_2b72123 Auto Unknown Windows Push Notifications User Service_2b72123
system - services - AarSvc_1c143f9
new: DisplayName : Agent Activation Runtime_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - AarSvc_2b72123
new: DisplayName : Agent Activation Runtime_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_1c143f9
new: DisplayName : Användartjänst för Spel-DVR och sändning_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_2b72123
new: DisplayName : Användartjänst för Spel-DVR och sändning_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_1c143f9
new: DisplayName : Bluetooth User Support Service_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_2b72123
new: DisplayName : Bluetooth User Support Service_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_1c143f9
new: DisplayName : CaptureService_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_2b72123
new: DisplayName : CaptureService_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_1c143f9
new: DisplayName : Clipboard User Service_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_2b72123
new: DisplayName : Clipboard User Service_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_1c143f9
new: DisplayName : Connected Devices Platform User Service_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_2b72123
new: DisplayName : Connected Devices Platform User Service_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_1c143f9
new: DisplayName : ConsentUX_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_2b72123
new: DisplayName : ConsentUX_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1c143f9
new: DisplayName : CredentialEnrollmentManagerUserSvc_1c143f9
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_2b72123
new: DisplayName : CredentialEnrollmentManagerUserSvc_2b72123
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_1c143f9
new: DisplayName : DeviceAssociationBroker_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_2b72123
new: DisplayName : DeviceAssociationBroker_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_1c143f9
new: DisplayName : DevicePicker_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_2b72123
new: DisplayName : DevicePicker_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_1c143f9
new: DisplayName : DevicesFlow_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_2b72123
new: DisplayName : DevicesFlow_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_1c143f9
new: DisplayName : MessagingService_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MessagingService_2b72123
new: DisplayName : MessagingService_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_1c143f9
new: DisplayName : Synkroniseringsvärd_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_2b72123
new: DisplayName : Synkroniseringsvärd_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_1c143f9
new: DisplayName : Contact Data_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_2b72123
new: DisplayName : Contact Data_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_1c143f9
new: DisplayName : PrintWorkflow_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - PrintWorkflowUserSvc_2b72123
new: DisplayName : PrintWorkflow_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TeamViewer
new: DisplayName : TeamViewer
new: PathName : "C:\Program Files\TeamViewer\TeamViewer_Service.exe"
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - UdkUserSvc_1c143f9
new: DisplayName : Udk-användartjänst_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_2b72123
new: DisplayName : Udk-användartjänst_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_1c143f9
new: DisplayName : User Data Storage_1c143f9
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UnistoreSvc_2b72123
new: DisplayName : User Data Storage_2b72123
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_1c143f9
new: DisplayName : User Data Access_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_2b72123
new: DisplayName : User Data Access_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe"
system - services - WpnUserService_1c143f9
new: DisplayName : Windows Push Notifications User Service_1c143f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_2b72123
new: DisplayName : Windows Push Notifications User Service_2b72123
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - RpcSs
new: Required by : TeamViewer
system - services - TeamViewer
new: Requires : RpcSs
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
system - scheduled tasks - \OneDrive Reporting Task-S-1-5-21-67378208-2373681959-2840377077-1108
new: Logon Mode : Interactive only
new: Task To Run : %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management : Stop On Battery Mode
new: Run As User : leif
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 02:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
new: Repeat: Every : 24 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
Top Runs Differences at: 2022-03-14 16.55.29
remark :
runtime : 12
count : 86
previous date : 2022-03-14
previous time : 13.05.16
system - SystemDriver - MpKsl1cc83d25
old: AcceptPause : 0
old: Description : MpKsl1cc83d25
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C3AABAD0-8BDE-4FAA-B208-AAC50B808FAA}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - hotfix - KB4561600
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4562830
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4566785
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4570334
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4576754
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4577266
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4577586
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4580325
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4586864
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4589212
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4593175
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4598481
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5000736
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5003791
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5005699
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5006753
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5007273
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5009636
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5010472
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5011352
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5011487
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-03-14 13.05.16
remark :
runtime : 1647
count : 98
previous date : 2022-03-14
previous time : 11.23.38
software - product - Microsoft Edge
old: Version : 99.0.1150.30
new: Version : 99.0.1150.39
software - product - Microsoft Update Health Tools
old: Version : 3.65.0.0
new: Version : 3.66.0.0
system - SystemDriver - MpKsl1cc83d25
new: AcceptPause : 0
new: Description : MpKsl1cc83d25
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C3AABAD0-8BDE-4FAA-B208-AAC50B808FAA}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - hotfix - KB4561600
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4562830
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4566785
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4570334
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4576754
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4577266
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4577586
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4580325
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4586864
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4589212
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4593175
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4598481
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5000736
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5003791
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5005699
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5006753
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5007273
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5009636
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5010415
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5010472
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5011352
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\99.0.1150.30\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\99.0.1150.39\elevation_service.exe"
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2022-03-14 11.23.38
remark :
runtime : 78
count : 10
previous date : 2022-03-07
previous time : 21.28.50
software - product - Google Chrome
old: Version : 98.0.4758.102
new: Version : 99.0.4844.51
software - product - Microsoft Edge Update
old: Version : 1.3.155.77
new: Version : 1.3.155.85
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\98.0.4758.102\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.51\elevation_service.exe"
Top Runs Differences at: 2022-03-07 16.38.19
remark :
runtime : 21
count : 150
previous date : 2022-03-07
previous time : 13.18.27
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
software - product - Microsoft Edge
old: Version : 98.0.1108.56
new: Version : 99.0.1150.30
system - services - survey
old: AarSvc_7429bc Manual Unknown Agent Activation Runtime_7429bc
old: BcastDVRUserService_7429bc Manual Unknown Användartjänst för Spel-DVR och sändning_7429bc
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_7429bc Manual Unknown Bluetooth User Support Service_7429bc
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_7429bc Manual Unknown CaptureService_7429bc
old: cbdhsvc_7429bc Manual Unknown Clipboard User Service_7429bc
old: CDPUserSvc_7429bc Auto Unknown Connected Devices Platform User Service_7429bc
old: ConsentUxUserSvc_7429bc Manual Unknown ConsentUX_7429bc
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_7429bc
old: DeviceAssociationBrokerSvc_742 Manual Unknown DeviceAssociationBroker_7429bc
old: DevicePickerUserSvc_7429bc Manual Unknown DevicePicker_7429bc
old: DevicesFlowUserSvc_7429bc Manual Unknown DevicesFlow_7429bc
old: MessagingService_7429bc Manual Unknown MessagingService_7429bc
old: OneSyncSvc_7429bc Auto Unknown Synkroniseringsvärd_7429bc
old: PimIndexMaintenanceSvc_7429bc Manual Unknown Contact Data_7429bc
old: PrintWorkflowUserSvc_7429bc Manual Unknown PrintWorkflow_7429bc
old: UdkUserSvc_7429bc Manual Unknown Udk-användartjänst_7429bc
old: UnistoreSvc_7429bc Manual Unknown User Data Storage_7429bc
old: UserDataSvc_7429bc Manual Unknown User Data Access_7429bc
old: WpnUserService_7429bc Auto Unknown Windows Push Notifications User Service_7429bc
system - services - AarSvc_7429bc
old: DisplayName : Agent Activation Runtime_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_7429bc
old: DisplayName : Användartjänst för Spel-DVR och sändning_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_7429bc
old: DisplayName : Bluetooth User Support Service_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_7429bc
old: DisplayName : CaptureService_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_7429bc
old: DisplayName : Clipboard User Service_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_7429bc
old: DisplayName : Connected Devices Platform User Service_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_7429bc
old: DisplayName : ConsentUX_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_7429bc
old: DisplayName : CredentialEnrollmentManagerUserSvc_7429bc
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_7429bc
old: DisplayName : DeviceAssociationBroker_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_7429bc
old: DisplayName : DevicePicker_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_7429bc
old: DisplayName : DevicesFlow_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_7429bc
old: DisplayName : MessagingService_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.56\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\99.0.1150.30\elevation_service.exe"
system - services - OneSyncSvc_7429bc
old: DisplayName : Synkroniseringsvärd_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_7429bc
old: DisplayName : Contact Data_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_7429bc
old: DisplayName : PrintWorkflow_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_7429bc
old: DisplayName : Udk-användartjänst_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_7429bc
old: DisplayName : User Data Storage_7429bc
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_7429bc
old: DisplayName : User Data Access_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_7429bc
old: DisplayName : Windows Push Notifications User Service_7429bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2022-03-07 13.18.27
remark :
runtime : 44
count : 266
previous date : 2022-02-22
previous time : 20.18.29
system - services - survey
old: AarSvc_199250 Manual Unknown Agent Activation Runtime_199250
new: AarSvc_7429bc Manual Unknown Agent Activation Runtime_7429bc
old: BcastDVRUserService_199250 Manual Unknown Användartjänst för Spel-DVR och sändning_199250
new: BcastDVRUserService_7429bc Manual Unknown Användartjänst för Spel-DVR och sändning_7429bc
old: BluetoothUserService_199250 Manual Unknown Bluetooth User Support Service_199250
new: BluetoothUserService_7429bc Manual Unknown Bluetooth User Support Service_7429bc
old: CaptureService_199250 Manual Unknown CaptureService_199250
old: cbdhsvc_199250 Manual Unknown Clipboard User Service_199250
new: CaptureService_7429bc Manual Unknown CaptureService_7429bc
new: cbdhsvc_7429bc Manual Unknown Clipboard User Service_7429bc
old: CDPUserSvc_199250 Auto Unknown Connected Devices Platform User Service_199250
new: CDPUserSvc_7429bc Auto Unknown Connected Devices Platform User Service_7429bc
old: ConsentUxUserSvc_199250 Manual Unknown ConsentUX_199250
new: ConsentUxUserSvc_7429bc Manual Unknown ConsentUX_7429bc
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_199250
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_7429bc
old: DeviceAssociationBrokerSvc_199 Manual Unknown DeviceAssociationBroker_199250
new: DeviceAssociationBrokerSvc_742 Manual Unknown DeviceAssociationBroker_7429bc
old: DevicePickerUserSvc_199250 Manual Unknown DevicePicker_199250
old: DevicesFlowUserSvc_199250 Manual Unknown DevicesFlow_199250
new: DevicePickerUserSvc_7429bc Manual Unknown DevicePicker_7429bc
new: DevicesFlowUserSvc_7429bc Manual Unknown DevicesFlow_7429bc
old: MessagingService_199250 Manual Unknown MessagingService_199250
new: MessagingService_7429bc Manual Unknown MessagingService_7429bc
old: OneSyncSvc_199250 Auto Unknown Synkroniseringsvärd_199250
new: OneSyncSvc_7429bc Auto Unknown Synkroniseringsvärd_7429bc
old: PimIndexMaintenanceSvc_199250 Manual Unknown Contact Data_199250
new: PimIndexMaintenanceSvc_7429bc Manual Unknown Contact Data_7429bc
old: PrintWorkflowUserSvc_199250 Manual Unknown PrintWorkflow_199250
new: PrintWorkflowUserSvc_7429bc Manual Unknown PrintWorkflow_7429bc
old: UdkUserSvc_199250 Manual Unknown Udk-användartjänst_199250
new: UdkUserSvc_7429bc Manual Unknown Udk-användartjänst_7429bc
old: UnistoreSvc_199250 Manual Unknown User Data Storage_199250
new: UnistoreSvc_7429bc Manual Unknown User Data Storage_7429bc
old: UserDataSvc_199250 Manual Unknown User Data Access_199250
new: UserDataSvc_7429bc Manual Unknown User Data Access_7429bc
old: WpnUserService_199250 Auto Unknown Windows Push Notifications User Service_199250
new: WpnUserService_7429bc Auto Unknown Windows Push Notifications User Service_7429bc
system - services - AarSvc_199250
old: DisplayName : Agent Activation Runtime_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_7429bc
new: DisplayName : Agent Activation Runtime_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_199250
old: DisplayName : Användartjänst för Spel-DVR och sändning_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_7429bc
new: DisplayName : Användartjänst för Spel-DVR och sändning_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_199250
old: DisplayName : Bluetooth User Support Service_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_7429bc
new: DisplayName : Bluetooth User Support Service_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_199250
old: DisplayName : CaptureService_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_199250
old: DisplayName : Clipboard User Service_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_7429bc
new: DisplayName : CaptureService_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_7429bc
new: DisplayName : Clipboard User Service_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_199250
old: DisplayName : Connected Devices Platform User Service_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_7429bc
new: DisplayName : Connected Devices Platform User Service_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_199250
old: DisplayName : ConsentUX_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_7429bc
new: DisplayName : ConsentUX_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_199250
old: DisplayName : CredentialEnrollmentManagerUserSvc_199250
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_7429bc
new: DisplayName : CredentialEnrollmentManagerUserSvc_7429bc
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_199250
old: DisplayName : DeviceAssociationBroker_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_7429bc
new: DisplayName : DeviceAssociationBroker_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_199250
old: DisplayName : DevicePicker_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_199250
old: DisplayName : DevicesFlow_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_7429bc
new: DisplayName : DevicePicker_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_7429bc
new: DisplayName : DevicesFlow_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_199250
old: DisplayName : MessagingService_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_7429bc
new: DisplayName : MessagingService_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_199250
old: DisplayName : Synkroniseringsvärd_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_7429bc
new: DisplayName : Synkroniseringsvärd_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_199250
old: DisplayName : Contact Data_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_7429bc
new: DisplayName : Contact Data_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_199250
old: DisplayName : PrintWorkflow_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_7429bc
new: DisplayName : PrintWorkflow_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_199250
old: DisplayName : Udk-användartjänst_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_7429bc
new: DisplayName : Udk-användartjänst_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_199250
old: DisplayName : User Data Storage_199250
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_7429bc
new: DisplayName : User Data Storage_7429bc
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_199250
old: DisplayName : User Data Access_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_7429bc
new: DisplayName : User Data Access_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_199250
old: DisplayName : Windows Push Notifications User Service_199250
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_7429bc
new: DisplayName : Windows Push Notifications User Service_7429bc
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2022-02-22 20.18.29
remark :
runtime : 15
count : 294
previous date : 2022-02-22
previous time : 16.55.29
system - SystemDriver - buttonconverter
old: Description : Tjänst för enheter för kontroller för bärbara enheter
new: Description : Service for Portable Device Control devices
system - hotfix - KB5009467
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5010342
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5010415
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5010472
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_4c766e8 Manual Unknown Agent Activation Runtime_4c766e8
new: AarSvc_199250 Manual Unknown Agent Activation Runtime_199250
old: BcastDVRUserService_4c766e8 Manual Unknown Användartjänst för Spel-DVR och sändning_4c766e8
new: BcastDVRUserService_199250 Manual Unknown Användartjänst för Spel-DVR och sändning_199250
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_4c766e8 Manual Unknown Bluetooth User Support Service_4c766e8
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_199250 Manual Unknown Bluetooth User Support Service_199250
old: CaptureService_4c766e8 Manual Unknown CaptureService_4c766e8
old: cbdhsvc_4c766e8 Manual Unknown Clipboard User Service_4c766e8
new: CaptureService_199250 Manual Unknown CaptureService_199250
new: cbdhsvc_199250 Manual Unknown Clipboard User Service_199250
old: CDPUserSvc_4c766e8 Auto Unknown Connected Devices Platform User Service_4c766e8
new: CDPUserSvc_199250 Auto Unknown Connected Devices Platform User Service_199250
old: ConsentUxUserSvc_4c766e8 Manual Unknown ConsentUX_4c766e8
new: ConsentUxUserSvc_199250 Manual Unknown ConsentUX_199250
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_4c766e8
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_199250
old: DeviceAssociationBrokerSvc_4c7 Manual Unknown DeviceAssociationBroker_4c766e8
new: DeviceAssociationBrokerSvc_199 Manual Unknown DeviceAssociationBroker_199250
old: DevicePickerUserSvc_4c766e8 Manual Unknown DevicePicker_4c766e8
old: DevicesFlowUserSvc_4c766e8 Manual Unknown DevicesFlow_4c766e8
new: DevicePickerUserSvc_199250 Manual Unknown DevicePicker_199250
new: DevicesFlowUserSvc_199250 Manual Unknown DevicesFlow_199250
old: diagnosticshub.standardcollect Manual Own Process Microsoft (R) standardinsamlingstjänsten Diagnostics Hub
new: diagnosticshub.standardcollect Manual Own Process Microsoft (R) Diagnostics Hub Standard Collector Service
old: MessagingService_4c766e8 Manual Unknown MessagingService_4c766e8
new: MessagingService_199250 Manual Unknown MessagingService_199250
old: OneSyncSvc_4c766e8 Auto Unknown Synkroniseringsvärd_4c766e8
new: OneSyncSvc_199250 Auto Unknown Synkroniseringsvärd_199250
old: PimIndexMaintenanceSvc_4c766e8 Manual Unknown Contact Data_4c766e8
new: PimIndexMaintenanceSvc_199250 Manual Unknown Contact Data_199250
old: PrintWorkflowUserSvc_4c766e8 Manual Unknown PrintWorkflow_4c766e8
new: PrintWorkflowUserSvc_199250 Manual Unknown PrintWorkflow_199250
old: UdkUserSvc_4c766e8 Manual Unknown Udk-användartjänst_4c766e8
new: UdkUserSvc_199250 Manual Unknown Udk-användartjänst_199250
old: UnistoreSvc_4c766e8 Manual Unknown User Data Storage_4c766e8
new: UnistoreSvc_199250 Manual Unknown User Data Storage_199250
old: UserDataSvc_4c766e8 Manual Unknown User Data Access_4c766e8
new: UserDataSvc_199250 Manual Unknown User Data Access_199250
old: WpnUserService_4c766e8 Auto Unknown Windows Push Notifications User Service_4c766e8
new: WpnUserService_199250 Auto Unknown Windows Push Notifications User Service_199250
system - services - AarSvc_4c766e8
old: DisplayName : Agent Activation Runtime_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_199250
new: DisplayName : Agent Activation Runtime_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_4c766e8
old: DisplayName : Användartjänst för Spel-DVR och sändning_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_199250
new: DisplayName : Användartjänst för Spel-DVR och sändning_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_4c766e8
old: DisplayName : Bluetooth User Support Service_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_199250
new: DisplayName : Bluetooth User Support Service_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_4c766e8
old: DisplayName : CaptureService_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_4c766e8
old: DisplayName : Clipboard User Service_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_199250
new: DisplayName : CaptureService_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_199250
new: DisplayName : Clipboard User Service_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_4c766e8
old: DisplayName : Connected Devices Platform User Service_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_199250
new: DisplayName : Connected Devices Platform User Service_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_4c766e8
old: DisplayName : ConsentUX_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_199250
new: DisplayName : ConsentUX_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_4c766e8
old: DisplayName : CredentialEnrollmentManagerUserSvc_4c766e8
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_199250
new: DisplayName : CredentialEnrollmentManagerUserSvc_199250
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_4c766e8
old: DisplayName : DeviceAssociationBroker_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_199250
new: DisplayName : DeviceAssociationBroker_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_4c766e8
old: DisplayName : DevicePicker_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_4c766e8
old: DisplayName : DevicesFlow_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_199250
new: DisplayName : DevicePicker_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_199250
new: DisplayName : DevicesFlow_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - diagnosticshub.standardcollector.service
old: DisplayName : Microsoft (R) standardinsamlingstjänsten Diagnostics Hub
new: DisplayName : Microsoft (R) Diagnostics Hub Standard Collector Service
system - services - MessagingService_4c766e8
old: DisplayName : MessagingService_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_199250
new: DisplayName : MessagingService_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_4c766e8
old: DisplayName : Synkroniseringsvärd_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_199250
new: DisplayName : Synkroniseringsvärd_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_4c766e8
old: DisplayName : Contact Data_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_199250
new: DisplayName : Contact Data_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_4c766e8
old: DisplayName : PrintWorkflow_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_199250
new: DisplayName : PrintWorkflow_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_4c766e8
old: DisplayName : Udk-användartjänst_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_199250
new: DisplayName : Udk-användartjänst_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_4c766e8
old: DisplayName : User Data Storage_4c766e8
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_199250
new: DisplayName : User Data Storage_199250
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_4c766e8
old: DisplayName : User Data Access_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_199250
new: DisplayName : User Data Access_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_4c766e8
old: DisplayName : Windows Push Notifications User Service_4c766e8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_199250
new: DisplayName : Windows Push Notifications User Service_199250
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2022-02-22 16.55.29
remark :
runtime : 13
count : 4
previous date : 2022-02-22
previous time : 12.09.30
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
Top Runs Differences at: 2022-02-22 12.09.30
remark :
runtime : 40
count : 146
previous date : 2022-02-21
previous time : 11.15.41
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
software - product - Microsoft Edge
old: Version : 98.0.1108.50
new: Version : 98.0.1108.56
software - product - Microsoft Update Health Tools
old: Version : 2.93.0.0
new: Version : 3.65.0.0
system - services - survey
new: AarSvc_4c766e8 Manual Unknown Agent Activation Runtime_4c766e8
new: BcastDVRUserService_4c766e8 Manual Unknown Användartjänst för Spel-DVR och sändning_4c766e8
new: BluetoothUserService_4c766e8 Manual Unknown Bluetooth User Support Service_4c766e8
new: CaptureService_4c766e8 Manual Unknown CaptureService_4c766e8
new: cbdhsvc_4c766e8 Manual Unknown Clipboard User Service_4c766e8
new: CDPUserSvc_4c766e8 Auto Unknown Connected Devices Platform User Service_4c766e8
new: ConsentUxUserSvc_4c766e8 Manual Unknown ConsentUX_4c766e8
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_4c766e8
new: DeviceAssociationBrokerSvc_4c7 Manual Unknown DeviceAssociationBroker_4c766e8
new: DevicePickerUserSvc_4c766e8 Manual Unknown DevicePicker_4c766e8
new: DevicesFlowUserSvc_4c766e8 Manual Unknown DevicesFlow_4c766e8
new: MessagingService_4c766e8 Manual Unknown MessagingService_4c766e8
new: OneSyncSvc_4c766e8 Auto Unknown Synkroniseringsvärd_4c766e8
new: PimIndexMaintenanceSvc_4c766e8 Manual Unknown Contact Data_4c766e8
new: PrintWorkflowUserSvc_4c766e8 Manual Unknown PrintWorkflow_4c766e8
new: UdkUserSvc_4c766e8 Manual Unknown Udk-användartjänst_4c766e8
new: UnistoreSvc_4c766e8 Manual Unknown User Data Storage_4c766e8
new: UserDataSvc_4c766e8 Manual Unknown User Data Access_4c766e8
new: WpnUserService_4c766e8 Auto Unknown Windows Push Notifications User Service_4c766e8
system - services - AarSvc_4c766e8
new: DisplayName : Agent Activation Runtime_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_4c766e8
new: DisplayName : Användartjänst för Spel-DVR och sändning_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_4c766e8
new: DisplayName : Bluetooth User Support Service_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_4c766e8
new: DisplayName : CaptureService_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_4c766e8
new: DisplayName : Clipboard User Service_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_4c766e8
new: DisplayName : Connected Devices Platform User Service_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_4c766e8
new: DisplayName : ConsentUX_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_4c766e8
new: DisplayName : CredentialEnrollmentManagerUserSvc_4c766e8
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_4c766e8
new: DisplayName : DeviceAssociationBroker_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_4c766e8
new: DisplayName : DevicePicker_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_4c766e8
new: DisplayName : DevicesFlow_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_4c766e8
new: DisplayName : MessagingService_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.50\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.56\elevation_service.exe"
system - services - OneSyncSvc_4c766e8
new: DisplayName : Synkroniseringsvärd_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_4c766e8
new: DisplayName : Contact Data_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_4c766e8
new: DisplayName : PrintWorkflow_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_4c766e8
new: DisplayName : Udk-användartjänst_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_4c766e8
new: DisplayName : User Data Storage_4c766e8
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_4c766e8
new: DisplayName : User Data Access_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_4c766e8
new: DisplayName : Windows Push Notifications User Service_4c766e8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2022-02-21 11.15.41
remark :
runtime : 32
count : 148
previous date : 2022-02-14
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
software - product - Google Chrome
old: Version : 98.0.4758.82
new: Version : 98.0.4758.102
system - services - survey
old: AarSvc_33af0cf Manual Unknown Agent Activation Runtime_33af0cf
old: BcastDVRUserService_33af0cf Manual Unknown Användartjänst för Spel-DVR och sändning_33af0cf
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_33af0cf Manual Unknown Bluetooth User Support Service_33af0cf
new: BITS Auto Share Process Background Intelligent Transfer Service
old: CaptureService_33af0cf Manual Unknown CaptureService_33af0cf
old: cbdhsvc_33af0cf Manual Unknown Clipboard User Service_33af0cf
old: CDPUserSvc_33af0cf Auto Unknown Connected Devices Platform User Service_33af0cf
old: ConsentUxUserSvc_33af0cf Manual Unknown ConsentUX_33af0cf
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_33af0cf
old: DeviceAssociationBrokerSvc_33a Manual Unknown DeviceAssociationBroker_33af0cf
old: DevicePickerUserSvc_33af0cf Manual Unknown DevicePicker_33af0cf
old: DevicesFlowUserSvc_33af0cf Manual Unknown DevicesFlow_33af0cf
old: MessagingService_33af0cf Manual Unknown MessagingService_33af0cf
old: OneSyncSvc_33af0cf Auto Unknown Synkroniseringsvärd_33af0cf
old: PimIndexMaintenanceSvc_33af0cf Manual Unknown Contact Data_33af0cf
old: PrintWorkflowUserSvc_33af0cf Manual Unknown PrintWorkflow_33af0cf
old: UdkUserSvc_33af0cf Manual Unknown Udk-användartjänst_33af0cf
old: UnistoreSvc_33af0cf Manual Unknown User Data Storage_33af0cf
old: UserDataSvc_33af0cf Manual Unknown User Data Access_33af0cf
old: WpnUserService_33af0cf Auto Unknown Windows Push Notifications User Service_33af0cf
system - services - AarSvc_33af0cf
old: DisplayName : Agent Activation Runtime_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_33af0cf
old: DisplayName : Användartjänst för Spel-DVR och sändning_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_33af0cf
old: DisplayName : Bluetooth User Support Service_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_33af0cf
old: DisplayName : CaptureService_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_33af0cf
old: DisplayName : Clipboard User Service_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_33af0cf
old: DisplayName : Connected Devices Platform User Service_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_33af0cf
old: DisplayName : ConsentUX_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_33af0cf
old: DisplayName : CredentialEnrollmentManagerUserSvc_33af0cf
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_33af0cf
old: DisplayName : DeviceAssociationBroker_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_33af0cf
old: DisplayName : DevicePicker_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_33af0cf
old: DisplayName : DevicesFlow_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\98.0.4758.82\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\98.0.4758.102\elevation_service.exe"
system - services - MessagingService_33af0cf
old: DisplayName : MessagingService_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_33af0cf
old: DisplayName : Synkroniseringsvärd_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_33af0cf
old: DisplayName : Contact Data_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_33af0cf
old: DisplayName : PrintWorkflow_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_33af0cf
old: DisplayName : Udk-användartjänst_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_33af0cf
old: DisplayName : User Data Storage_33af0cf
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_33af0cf
old: DisplayName : User Data Access_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_33af0cf
old: DisplayName : Windows Push Notifications User Service_33af0cf
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2022-02-14 16.55.29
remark :
runtime : 13
count : 152
previous date : 2022-02-13
previous time : 16.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_33af0cf Manual Unknown Agent Activation Runtime_33af0cf
new: BcastDVRUserService_33af0cf Manual Unknown Användartjänst för Spel-DVR och sändning_33af0cf
new: BluetoothUserService_33af0cf Manual Unknown Bluetooth User Support Service_33af0cf
new: CaptureService_33af0cf Manual Unknown CaptureService_33af0cf
new: cbdhsvc_33af0cf Manual Unknown Clipboard User Service_33af0cf
new: CDPUserSvc_33af0cf Auto Unknown Connected Devices Platform User Service_33af0cf
new: ConsentUxUserSvc_33af0cf Manual Unknown ConsentUX_33af0cf
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_33af0cf
new: DeviceAssociationBrokerSvc_33a Manual Unknown DeviceAssociationBroker_33af0cf
new: DevicePickerUserSvc_33af0cf Manual Unknown DevicePicker_33af0cf
new: DevicesFlowUserSvc_33af0cf Manual Unknown DevicesFlow_33af0cf
new: MessagingService_33af0cf Manual Unknown MessagingService_33af0cf
new: OneSyncSvc_33af0cf Auto Unknown Synkroniseringsvärd_33af0cf
new: PimIndexMaintenanceSvc_33af0cf Manual Unknown Contact Data_33af0cf
new: PrintWorkflowUserSvc_33af0cf Manual Unknown PrintWorkflow_33af0cf
new: UdkUserSvc_33af0cf Manual Unknown Udk-användartjänst_33af0cf
new: UnistoreSvc_33af0cf Manual Unknown User Data Storage_33af0cf
new: UserDataSvc_33af0cf Manual Unknown User Data Access_33af0cf
new: WpnUserService_33af0cf Auto Unknown Windows Push Notifications User Service_33af0cf
system - services - AarSvc_33af0cf
new: DisplayName : Agent Activation Runtime_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_33af0cf
new: DisplayName : Användartjänst för Spel-DVR och sändning_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_33af0cf
new: DisplayName : Bluetooth User Support Service_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_33af0cf
new: DisplayName : CaptureService_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_33af0cf
new: DisplayName : Clipboard User Service_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_33af0cf
new: DisplayName : Connected Devices Platform User Service_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_33af0cf
new: DisplayName : ConsentUX_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_33af0cf
new: DisplayName : CredentialEnrollmentManagerUserSvc_33af0cf
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_33af0cf
new: DisplayName : DeviceAssociationBroker_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_33af0cf
new: DisplayName : DevicePicker_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_33af0cf
new: DisplayName : DevicesFlow_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_33af0cf
new: DisplayName : MessagingService_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_33af0cf
new: DisplayName : Synkroniseringsvärd_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_33af0cf
new: DisplayName : Contact Data_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_33af0cf
new: DisplayName : PrintWorkflow_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_33af0cf
new: DisplayName : Udk-användartjänst_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_33af0cf
new: DisplayName : User Data Storage_33af0cf
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_33af0cf
new: DisplayName : User Data Access_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_33af0cf
new: DisplayName : Windows Push Notifications User Service_33af0cf
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-02-13 16.55.29
remark :
runtime : 12
count : 4
previous date : 2022-02-12
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 98.0.1108.43
new: Version : 98.0.1108.50
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.43\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.50\elevation_service.exe"
Top Runs Differences at: 2022-02-10 16.55.29
remark :
runtime : 13
count : 30
previous date : 2022-02-09
previous time : 16.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe --startup_mode
software - product - Google Chrome
old: Version : 98.0.4758.81
new: Version : 98.0.4758.82
software - product - Google Drive
old: Version : 54.0.3.0
new: Version : 55.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\98.0.4758.81\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\98.0.4758.82\elevation_service.exe"
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2022-02-08 23.59.08
remark :
runtime : 26
count : 19
previous date : 2022-02-08
previous time : 19.52.28
system - hotfix - KB5008876
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5009596
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5009467
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5010342
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5011352
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2022-02-08 19.52.28
remark :
runtime : 23
count : 164
previous date : 2022-02-08
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - services - survey
old: AarSvc_510b22e Manual Unknown Agent Activation Runtime_510b22e
old: BcastDVRUserService_510b22e Manual Unknown Användartjänst för Spel-DVR och sändning_510b22e
old: BluetoothUserService_510b22e Manual Unknown Bluetooth User Support Service_510b22e
old: CaptureService_510b22e Manual Unknown CaptureService_510b22e
old: cbdhsvc_510b22e Manual Unknown Clipboard User Service_510b22e
old: CDPUserSvc_510b22e Auto Unknown Connected Devices Platform User Service_510b22e
old: ConsentUxUserSvc_510b22e Manual Unknown ConsentUX_510b22e
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_510b22e
old: DeviceAssociationBrokerSvc_510 Manual Unknown DeviceAssociationBroker_510b22e
old: DevicePickerUserSvc_510b22e Manual Unknown DevicePicker_510b22e
old: DevicesFlowUserSvc_510b22e Manual Unknown DevicesFlow_510b22e
old: MessagingService_510b22e Manual Unknown MessagingService_510b22e
old: OneSyncSvc_510b22e Auto Unknown Synkroniseringsvärd_510b22e
old: PimIndexMaintenanceSvc_510b22e Manual Unknown Contact Data_510b22e
old: PrintWorkflowUserSvc_510b22e Manual Unknown PrintWorkflow_510b22e
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
old: UdkUserSvc_510b22e Manual Unknown Udk-användartjänst_510b22e
old: UnistoreSvc_510b22e Manual Unknown User Data Storage_510b22e
old: UserDataSvc_510b22e Manual Unknown User Data Access_510b22e
old: WpnUserService_510b22e Auto Unknown Windows Push Notifications User Service_510b22e
system - services - AarSvc_510b22e
old: DisplayName : Agent Activation Runtime_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_510b22e
old: DisplayName : Användartjänst för Spel-DVR och sändning_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_510b22e
old: DisplayName : Bluetooth User Support Service_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_510b22e
old: DisplayName : CaptureService_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_510b22e
old: DisplayName : Clipboard User Service_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_510b22e
old: DisplayName : Connected Devices Platform User Service_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_510b22e
old: DisplayName : ConsentUX_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_510b22e
old: DisplayName : CredentialEnrollmentManagerUserSvc_510b22e
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_510b22e
old: DisplayName : DeviceAssociationBroker_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_510b22e
old: DisplayName : DevicePicker_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_510b22e
old: DisplayName : DevicesFlow_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_510b22e
old: DisplayName : MessagingService_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_510b22e
old: DisplayName : Synkroniseringsvärd_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_510b22e
old: DisplayName : Contact Data_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_510b22e
old: DisplayName : PrintWorkflow_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UdkUserSvc_510b22e
old: DisplayName : Udk-användartjänst_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_510b22e
old: DisplayName : User Data Storage_510b22e
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_510b22e
old: DisplayName : User Data Access_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_510b22e
old: DisplayName : Windows Push Notifications User Service_510b22e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\AppListBackup\Backup
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : $(@%SystemRoot%\system32\AppListBackupLauncher.dll,-602)
new: Idle Time : Disabled
new: Power Management : Stop On Battery Mode, No Start On Batteries
new: Run As User : Anv„ndare
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2022-02-08 16.55.30
remark :
runtime : 21
count : 26
previous date : 2022-02-07
previous time : 16.55.29
software - product - Google Chrome
old: Version : 97.0.4692.99
new: Version : 98.0.4758.81
system - hotfix - KB5009596
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5010793
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\98.0.4758.81\elevation_service.exe"
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2022-02-05 16.55.30
remark :
runtime : 14
count : 4
previous date : 2022-02-04
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 97.0.1072.76
new: Version : 98.0.1108.43
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.76\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.43\elevation_service.exe"
Top Runs Differences at: 2022-01-31 16.55.29
remark :
runtime : 13
count : 8
previous date : 2022-01-31
previous time : 13.53.44
software - product - Microsoft Edge
old: Version : 97.0.1072.69
new: Version : 97.0.1072.76
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.69\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.76\elevation_service.exe"
Top Runs Differences at: 2022-01-31 13.53.44
remark :
runtime : 426
count : 276
previous date : 2022-01-24
previous time : 16.55.29
software - product - Google Chrome
old: Version : 97.0.4692.71
new: Version : 97.0.4692.99
software - product - Microsoft Edge Update
old: Version : 1.3.153.57
new: Version : 1.3.155.77
system - services - survey
old: AarSvc_108f106 Manual Unknown Agent Activation Runtime_108f106
new: AarSvc_510b22e Manual Unknown Agent Activation Runtime_510b22e
old: BcastDVRUserService_108f106 Manual Unknown Användartjänst för Spel-DVR och sändning_108f106
new: BcastDVRUserService_510b22e Manual Unknown Användartjänst för Spel-DVR och sändning_510b22e
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_108f106 Manual Unknown Bluetooth User Support Service_108f106
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_510b22e Manual Unknown Bluetooth User Support Service_510b22e
old: CaptureService_108f106 Manual Unknown CaptureService_108f106
old: cbdhsvc_108f106 Manual Unknown Clipboard User Service_108f106
new: CaptureService_510b22e Manual Unknown CaptureService_510b22e
new: cbdhsvc_510b22e Manual Unknown Clipboard User Service_510b22e
old: CDPUserSvc_108f106 Auto Unknown Connected Devices Platform User Service_108f106
new: CDPUserSvc_510b22e Auto Unknown Connected Devices Platform User Service_510b22e
old: ConsentUxUserSvc_108f106 Manual Unknown ConsentUX_108f106
new: ConsentUxUserSvc_510b22e Manual Unknown ConsentUX_510b22e
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_108f106
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_510b22e
old: DeviceAssociationBrokerSvc_108 Manual Unknown DeviceAssociationBroker_108f106
new: DeviceAssociationBrokerSvc_510 Manual Unknown DeviceAssociationBroker_510b22e
old: DevicePickerUserSvc_108f106 Manual Unknown DevicePicker_108f106
old: DevicesFlowUserSvc_108f106 Manual Unknown DevicesFlow_108f106
new: DevicePickerUserSvc_510b22e Manual Unknown DevicePicker_510b22e
new: DevicesFlowUserSvc_510b22e Manual Unknown DevicesFlow_510b22e
old: MessagingService_108f106 Manual Unknown MessagingService_108f106
new: MessagingService_510b22e Manual Unknown MessagingService_510b22e
old: OneSyncSvc_108f106 Auto Unknown Synkroniseringsvärd_108f106
new: OneSyncSvc_510b22e Auto Unknown Synkroniseringsvärd_510b22e
old: PimIndexMaintenanceSvc_108f106 Manual Unknown Contact Data_108f106
new: PimIndexMaintenanceSvc_510b22e Manual Unknown Contact Data_510b22e
old: PrintWorkflowUserSvc_108f106 Manual Unknown PrintWorkflow_108f106
new: PrintWorkflowUserSvc_510b22e Manual Unknown PrintWorkflow_510b22e
old: UdkUserSvc_108f106 Manual Unknown Udk-användartjänst_108f106
new: UdkUserSvc_510b22e Manual Unknown Udk-användartjänst_510b22e
old: UnistoreSvc_108f106 Manual Unknown User Data Storage_108f106
new: UnistoreSvc_510b22e Manual Unknown User Data Storage_510b22e
old: UserDataSvc_108f106 Manual Unknown User Data Access_108f106
new: UserDataSvc_510b22e Manual Unknown User Data Access_510b22e
old: WpnUserService_108f106 Auto Unknown Windows Push Notifications User Service_108f106
new: WpnUserService_510b22e Auto Unknown Windows Push Notifications User Service_510b22e
system - services - AarSvc_108f106
old: DisplayName : Agent Activation Runtime_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_510b22e
new: DisplayName : Agent Activation Runtime_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_108f106
old: DisplayName : Användartjänst för Spel-DVR och sändning_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_510b22e
new: DisplayName : Användartjänst för Spel-DVR och sändning_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_108f106
old: DisplayName : Bluetooth User Support Service_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_510b22e
new: DisplayName : Bluetooth User Support Service_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_108f106
old: DisplayName : CaptureService_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_108f106
old: DisplayName : Clipboard User Service_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_510b22e
new: DisplayName : CaptureService_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_510b22e
new: DisplayName : Clipboard User Service_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_108f106
old: DisplayName : Connected Devices Platform User Service_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_510b22e
new: DisplayName : Connected Devices Platform User Service_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_108f106
old: DisplayName : ConsentUX_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_510b22e
new: DisplayName : ConsentUX_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_108f106
old: DisplayName : CredentialEnrollmentManagerUserSvc_108f106
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_510b22e
new: DisplayName : CredentialEnrollmentManagerUserSvc_510b22e
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_108f106
old: DisplayName : DeviceAssociationBroker_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_510b22e
new: DisplayName : DeviceAssociationBroker_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_108f106
old: DisplayName : DevicePicker_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_108f106
old: DisplayName : DevicesFlow_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_510b22e
new: DisplayName : DevicePicker_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_510b22e
new: DisplayName : DevicesFlow_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.71\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\elevation_service.exe"
system - services - MessagingService_108f106
old: DisplayName : MessagingService_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_510b22e
new: DisplayName : MessagingService_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_108f106
old: DisplayName : Synkroniseringsvärd_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_510b22e
new: DisplayName : Synkroniseringsvärd_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_108f106
old: DisplayName : Contact Data_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_510b22e
new: DisplayName : Contact Data_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_108f106
old: DisplayName : PrintWorkflow_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_510b22e
new: DisplayName : PrintWorkflow_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_108f106
old: DisplayName : Udk-användartjänst_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_510b22e
new: DisplayName : Udk-användartjänst_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_108f106
old: DisplayName : User Data Storage_108f106
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_510b22e
new: DisplayName : User Data Storage_510b22e
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_108f106
old: DisplayName : User Data Access_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_510b22e
new: DisplayName : User Data Access_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_108f106
old: DisplayName : Windows Push Notifications User Service_108f106
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_510b22e
new: DisplayName : Windows Push Notifications User Service_510b22e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2022-01-23 16.55.29
remark :
runtime : 13
count : 4
previous date : 2022-01-22
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 97.0.1072.62
new: Version : 97.0.1072.69
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.62\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.69\elevation_service.exe"
Top Runs Differences at: 2022-01-21 16.55.29
remark :
runtime : 13
count : 160
previous date : 2022-01-20
previous time : 16.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_108f106 Manual Unknown Agent Activation Runtime_108f106
new: BcastDVRUserService_108f106 Manual Unknown Användartjänst för Spel-DVR och sändning_108f106
new: BluetoothUserService_108f106 Manual Unknown Bluetooth User Support Service_108f106
new: CaptureService_108f106 Manual Unknown CaptureService_108f106
new: cbdhsvc_108f106 Manual Unknown Clipboard User Service_108f106
new: CDPUserSvc_108f106 Auto Unknown Connected Devices Platform User Service_108f106
new: ConsentUxUserSvc_108f106 Manual Unknown ConsentUX_108f106
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_108f106
new: DeviceAssociationBrokerSvc_108 Manual Unknown DeviceAssociationBroker_108f106
new: DevicePickerUserSvc_108f106 Manual Unknown DevicePicker_108f106
new: DevicesFlowUserSvc_108f106 Manual Unknown DevicesFlow_108f106
new: MessagingService_108f106 Manual Unknown MessagingService_108f106
new: OneSyncSvc_108f106 Auto Unknown Synkroniseringsvärd_108f106
new: PimIndexMaintenanceSvc_108f106 Manual Unknown Contact Data_108f106
new: PrintWorkflowUserSvc_108f106 Manual Unknown PrintWorkflow_108f106
new: UdkUserSvc_108f106 Manual Unknown Udk-användartjänst_108f106
new: UnistoreSvc_108f106 Manual Unknown User Data Storage_108f106
new: UserDataSvc_108f106 Manual Unknown User Data Access_108f106
new: WpnUserService_108f106 Auto Unknown Windows Push Notifications User Service_108f106
system - services - AarSvc_108f106
new: DisplayName : Agent Activation Runtime_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_108f106
new: DisplayName : Användartjänst för Spel-DVR och sändning_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_108f106
new: DisplayName : Bluetooth User Support Service_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_108f106
new: DisplayName : CaptureService_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_108f106
new: DisplayName : Clipboard User Service_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_108f106
new: DisplayName : Connected Devices Platform User Service_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_108f106
new: DisplayName : ConsentUX_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_108f106
new: DisplayName : CredentialEnrollmentManagerUserSvc_108f106
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_108f106
new: DisplayName : DeviceAssociationBroker_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_108f106
new: DisplayName : DevicePicker_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_108f106
new: DisplayName : DevicesFlow_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_108f106
new: DisplayName : MessagingService_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_108f106
new: DisplayName : Synkroniseringsvärd_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_108f106
new: DisplayName : Contact Data_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_108f106
new: DisplayName : PrintWorkflow_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_108f106
new: DisplayName : Udk-användartjänst_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_108f106
new: DisplayName : User Data Storage_108f106
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_108f106
new: DisplayName : User Data Access_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_108f106
new: DisplayName : Windows Push Notifications User Service_108f106
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-01-19 12.35.43
remark :
runtime : 39
count : 173
previous date : 2022-01-18
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5009543
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5009636
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5010793
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_842c42 Manual Unknown Agent Activation Runtime_842c42
old: BcastDVRUserService_842c42 Manual Unknown Användartjänst för Spel-DVR och sändning_842c42
old: BluetoothUserService_842c42 Manual Unknown Bluetooth User Support Service_842c42
old: CaptureService_842c42 Manual Unknown CaptureService_842c42
old: cbdhsvc_842c42 Manual Unknown Clipboard User Service_842c42
old: CDPUserSvc_842c42 Auto Unknown Connected Devices Platform User Service_842c42
old: ConsentUxUserSvc_842c42 Manual Unknown ConsentUX_842c42
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_842c42
old: DeviceAssociationBrokerSvc_842 Manual Unknown DeviceAssociationBroker_842c42
old: DevicePickerUserSvc_842c42 Manual Unknown DevicePicker_842c42
old: DevicesFlowUserSvc_842c42 Manual Unknown DevicesFlow_842c42
old: MessagingService_842c42 Manual Unknown MessagingService_842c42
old: OneSyncSvc_842c42 Auto Unknown Synkroniseringsvärd_842c42
old: PimIndexMaintenanceSvc_842c42 Manual Unknown Contact Data_842c42
old: PrintWorkflowUserSvc_842c42 Manual Unknown PrintWorkflow_842c42
old: UdkUserSvc_842c42 Manual Unknown Udk-användartjänst_842c42
old: UnistoreSvc_842c42 Manual Unknown User Data Storage_842c42
old: UserDataSvc_842c42 Manual Unknown User Data Access_842c42
old: WpnUserService_842c42 Auto Unknown Windows Push Notifications User Service_842c42
system - services - AarSvc_842c42
old: DisplayName : Agent Activation Runtime_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_842c42
old: DisplayName : Användartjänst för Spel-DVR och sändning_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_842c42
old: DisplayName : Bluetooth User Support Service_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_842c42
old: DisplayName : CaptureService_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_842c42
old: DisplayName : Clipboard User Service_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_842c42
old: DisplayName : Connected Devices Platform User Service_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_842c42
old: DisplayName : ConsentUX_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_842c42
old: DisplayName : CredentialEnrollmentManagerUserSvc_842c42
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_842c42
old: DisplayName : DeviceAssociationBroker_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_842c42
old: DisplayName : DevicePicker_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_842c42
old: DisplayName : DevicesFlow_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_842c42
old: DisplayName : MessagingService_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_842c42
old: DisplayName : Synkroniseringsvärd_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_842c42
old: DisplayName : Contact Data_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_842c42
old: DisplayName : PrintWorkflow_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_842c42
old: DisplayName : Udk-användartjänst_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_842c42
old: DisplayName : User Data Storage_842c42
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_842c42
old: DisplayName : User Data Access_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_842c42
old: DisplayName : Windows Push Notifications User Service_842c42
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2022-01-18 16.55.30
remark :
runtime : 12
count : 2
previous date : 2022-01-17
previous time : 16.55.30
software - product - Microsoft Edge Update
old: Version : 1.3.153.55
new: Version : 1.3.153.57
Top Runs Differences at: 2022-01-15 16.55.30
remark :
runtime : 14
count : 4
previous date : 2022-01-14
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 97.0.1072.55
new: Version : 97.0.1072.62
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.55\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.62\elevation_service.exe"
Top Runs Differences at: 2022-01-13 16.55.30
remark :
runtime : 12
count : 7
previous date : 2022-01-12
previous time : 16.55.30
system - SystemDriver - MpKsl8d799495
old: AcceptPause : 0
old: Description : MpKsl8d799495
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D461A6E0-74ED-4FF3-9140-363A7F786158}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2022-01-12 16.55.30
remark :
runtime : 12
count : 167
previous date : 2022-01-12
previous time : 02.48.44
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - SystemDriver - MpKsl8d799495
new: AcceptPause : 0
new: Description : MpKsl8d799495
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D461A6E0-74ED-4FF3-9140-363A7F786158}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
new: AarSvc_842c42 Manual Unknown Agent Activation Runtime_842c42
new: BcastDVRUserService_842c42 Manual Unknown Användartjänst för Spel-DVR och sändning_842c42
new: BluetoothUserService_842c42 Manual Unknown Bluetooth User Support Service_842c42
new: CaptureService_842c42 Manual Unknown CaptureService_842c42
new: cbdhsvc_842c42 Manual Unknown Clipboard User Service_842c42
new: CDPUserSvc_842c42 Auto Unknown Connected Devices Platform User Service_842c42
new: ConsentUxUserSvc_842c42 Manual Unknown ConsentUX_842c42
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_842c42
new: DeviceAssociationBrokerSvc_842 Manual Unknown DeviceAssociationBroker_842c42
new: DevicePickerUserSvc_842c42 Manual Unknown DevicePicker_842c42
new: DevicesFlowUserSvc_842c42 Manual Unknown DevicesFlow_842c42
new: MessagingService_842c42 Manual Unknown MessagingService_842c42
new: OneSyncSvc_842c42 Auto Unknown Synkroniseringsvärd_842c42
new: PimIndexMaintenanceSvc_842c42 Manual Unknown Contact Data_842c42
new: PrintWorkflowUserSvc_842c42 Manual Unknown PrintWorkflow_842c42
new: UdkUserSvc_842c42 Manual Unknown Udk-användartjänst_842c42
new: UnistoreSvc_842c42 Manual Unknown User Data Storage_842c42
new: UserDataSvc_842c42 Manual Unknown User Data Access_842c42
new: WpnUserService_842c42 Auto Unknown Windows Push Notifications User Service_842c42
system - services - AarSvc_842c42
new: DisplayName : Agent Activation Runtime_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_842c42
new: DisplayName : Användartjänst för Spel-DVR och sändning_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_842c42
new: DisplayName : Bluetooth User Support Service_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_842c42
new: DisplayName : CaptureService_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_842c42
new: DisplayName : Clipboard User Service_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_842c42
new: DisplayName : Connected Devices Platform User Service_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_842c42
new: DisplayName : ConsentUX_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_842c42
new: DisplayName : CredentialEnrollmentManagerUserSvc_842c42
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_842c42
new: DisplayName : DeviceAssociationBroker_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_842c42
new: DisplayName : DevicePicker_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_842c42
new: DisplayName : DevicesFlow_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_842c42
new: DisplayName : MessagingService_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_842c42
new: DisplayName : Synkroniseringsvärd_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_842c42
new: DisplayName : Contact Data_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_842c42
new: DisplayName : PrintWorkflow_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_842c42
new: DisplayName : Udk-användartjänst_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_842c42
new: DisplayName : User Data Storage_842c42
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_842c42
new: DisplayName : User Data Access_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_842c42
new: DisplayName : Windows Push Notifications User Service_842c42
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2022-01-12 02.48.44
remark :
runtime : 31
count : 49
previous date : 2022-01-11
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 54.0.2.0
new: Version : 54.0.3.0
old: Install Location : C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe
system - SystemDriver - googledrivefs3525
old: AcceptPause : 0
old: Description : googledrivefs3525
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\DRIVERS\googledrivefs3525.sys
old: ServiceType : File System Driver
old: StartMode : Disabled
system - hotfix - KB5007289
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5008212
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5008876
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5009543
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2022-01-11 16.55.30
remark :
runtime : 15
count : 4
previous date : 2022-01-10
previous time : 16.55.30
software - product - Google Chrome
old: Version : 96.0.4664.110
new: Version : 97.0.4692.71
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\96.0.4664.110\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.71\elevation_service.exe"
Top Runs Differences at: 2022-01-08 16.55.30
remark :
runtime : 12
count : 4
previous date : 2022-01-07
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 96.0.1054.62
new: Version : 97.0.1072.55
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\96.0.1054.62\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\97.0.1072.55\elevation_service.exe"
Top Runs Differences at: 2022-01-04 16.55.30
remark :
runtime : 12
count : 23
previous date : 2022-01-04
previous time : 11.01.15
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 53.0.8.0
new: Version : 54.0.2.0
old: Install Location : C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe
system - SystemDriver - googledrivefs3525
old: StartMode : System
new: StartMode : Disabled
system - SystemDriver - googledrivefs3688
new: AcceptPause : 0
new: Description : googledrivefs3688
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\DRIVERS\googledrivefs3688.sys
new: ServiceType : File System Driver
new: StartMode : System
Top Runs Differences at: 2022-01-04 11.01.15
remark :
runtime : 20
count : 10
previous date : 2022-01-03
previous time : 18.10.07
system - hotfix - KB5006365
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5007289
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
Top Runs Differences at: 2022-01-03 18.10.07
remark :
runtime : 54
count : 30
previous date : 2021-12-28
previous time : 16.55.42
software - product - Microsoft Update Health Tools
old: Version : 2.84.0.0
new: Version : 2.93.0.0
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2021-12-28 16.50.09
remark :
runtime : 26
count : 11
previous date : 2021-12-27
previous time : 16.55.29
general
old: BuildNumber:19043
new: BuildNumber:19044
old: Version:10.0.19043
new: Version:10.0.19044
system - hotfix - KB5003791
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2021-12-25 16.55.29
remark :
runtime : 13
count : 7
previous date : 2021-12-24
previous time : 16.55.29
system - SystemDriver - MpKsla2686b2c
old: AcceptPause : 0
old: Description : MpKsla2686b2c
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1D5161AD-3CD6-4BD7-8E33-52D7F853CF0D}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-12-24 16.55.29
remark :
runtime : 13
count : 7
previous date : 2021-12-23
previous time : 16.55.29
system - SystemDriver - MpKsla2686b2c
new: AcceptPause : 0
new: Description : MpKsla2686b2c
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1D5161AD-3CD6-4BD7-8E33-52D7F853CF0D}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-12-23 16.55.29
remark :
runtime : 13
count : 8
previous date : 2021-12-23
previous time : 05.46.59
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2021-12-23 05.46.59
remark :
runtime : 32
count : 179
previous date : 2021-12-22
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - SystemDriver - MpKsle1eb6894
old: AcceptPause : 0
old: Description : MpKsle1eb6894
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{904FAB9D-3887-4773-9D8D-3C178769B7E5}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - survey
old: AarSvc_99f73 Manual Unknown Agent Activation Runtime_99f73
old: BcastDVRUserService_99f73 Manual Unknown Användartjänst för Spel-DVR och sändning_99f73
old: BluetoothUserService_99f73 Manual Unknown Bluetooth User Support Service_99f73
old: CaptureService_99f73 Manual Unknown CaptureService_99f73
old: cbdhsvc_99f73 Manual Unknown Clipboard User Service_99f73
old: CDPUserSvc_99f73 Auto Unknown Connected Devices Platform User Service_99f73
old: ConsentUxUserSvc_99f73 Manual Unknown ConsentUX_99f73
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_99f73
old: DeviceAssociationBrokerSvc_99f Manual Unknown DeviceAssociationBroker_99f73
old: DevicePickerUserSvc_99f73 Manual Unknown DevicePicker_99f73
old: DevicesFlowUserSvc_99f73 Manual Unknown DevicesFlow_99f73
old: MessagingService_99f73 Manual Unknown MessagingService_99f73
old: OneSyncSvc_99f73 Auto Unknown Synkroniseringsvärd_99f73
old: PimIndexMaintenanceSvc_99f73 Manual Unknown Contact Data_99f73
old: PrintWorkflowUserSvc_99f73 Manual Unknown PrintWorkflow_99f73
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
old: UdkUserSvc_99f73 Manual Unknown Udk-användartjänst_99f73
old: UnistoreSvc_99f73 Manual Unknown User Data Storage_99f73
old: UserDataSvc_99f73 Manual Unknown User Data Access_99f73
old: WpnUserService_99f73 Auto Unknown Windows Push Notifications User Service_99f73
system - services - AarSvc_99f73
old: DisplayName : Agent Activation Runtime_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_99f73
old: DisplayName : Användartjänst för Spel-DVR och sändning_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_99f73
old: DisplayName : Bluetooth User Support Service_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_99f73
old: DisplayName : CaptureService_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_99f73
old: DisplayName : Clipboard User Service_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_99f73
old: DisplayName : Connected Devices Platform User Service_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_99f73
old: DisplayName : ConsentUX_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_99f73
old: DisplayName : CredentialEnrollmentManagerUserSvc_99f73
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_99f73
old: DisplayName : DeviceAssociationBroker_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_99f73
old: DisplayName : DevicePicker_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_99f73
old: DisplayName : DevicesFlow_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_99f73
old: DisplayName : MessagingService_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_99f73
old: DisplayName : Synkroniseringsvärd_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_99f73
old: DisplayName : Contact Data_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_99f73
old: DisplayName : PrintWorkflow_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UdkUserSvc_99f73
old: DisplayName : Udk-användartjänst_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_99f73
old: DisplayName : User Data Storage_99f73
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_99f73
old: DisplayName : User Data Access_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe"
system - services - WpnUserService_99f73
old: DisplayName : Windows Push Notifications User Service_99f73
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2021-12-22 16.55.30
remark :
runtime : 22
count : 44
previous date : 2021-12-22
previous time : 11.57.37
software - product - Google Chrome
old: Version : 95.0.4638.69
new: Version : 96.0.4664.110
software - product - Microsoft Edge
old: Version : 95.0.1020.53
new: Version : 96.0.1054.62
system - SystemDriver - MpKsle1eb6894
new: AcceptPause : 0
new: Description : MpKsle1eb6894
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{904FAB9D-3887-4773-9D8D-3C178769B7E5}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - hotfix - KB5007186
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5007273
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5008212
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\95.0.4638.69\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\96.0.4664.110\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\95.0.1020.53\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\96.0.1054.62\elevation_service.exe"
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2021-12-22 11.57.37
remark :
runtime : 714
count : 294
previous date : 2021-11-17
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe" --startup_mode
new: Command : "C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe" --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 52.0.6.0
new: Version : 53.0.8.0
old: Install Location : C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\53.0.8.0\GoogleDriveFS.exe
software - product - Microsoft Edge Update
old: Version : 1.3.153.53
new: Version : 1.3.153.55
system - services - survey
old: AarSvc_f7701c Manual Unknown Agent Activation Runtime_f7701c
new: AarSvc_99f73 Manual Unknown Agent Activation Runtime_99f73
old: BcastDVRUserService_f7701c Manual Unknown Användartjänst för Spel-DVR och sändning_f7701c
new: BcastDVRUserService_99f73 Manual Unknown Användartjänst för Spel-DVR och sändning_99f73
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_f7701c Manual Unknown Bluetooth User Support Service_f7701c
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_99f73 Manual Unknown Bluetooth User Support Service_99f73
old: CaptureService_f7701c Manual Unknown CaptureService_f7701c
old: cbdhsvc_f7701c Manual Unknown Clipboard User Service_f7701c
new: CaptureService_99f73 Manual Unknown CaptureService_99f73
new: cbdhsvc_99f73 Manual Unknown Clipboard User Service_99f73
old: CDPUserSvc_f7701c Auto Unknown Connected Devices Platform User Service_f7701c
new: CDPUserSvc_99f73 Auto Unknown Connected Devices Platform User Service_99f73
old: ConsentUxUserSvc_f7701c Manual Unknown ConsentUX_f7701c
new: ConsentUxUserSvc_99f73 Manual Unknown ConsentUX_99f73
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_f7701c
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_99f73
old: DeviceAssociationBrokerSvc_f77 Manual Unknown DeviceAssociationBroker_f7701c
new: DeviceAssociationBrokerSvc_99f Manual Unknown DeviceAssociationBroker_99f73
old: DevicePickerUserSvc_f7701c Manual Unknown DevicePicker_f7701c
old: DevicesFlowUserSvc_f7701c Manual Unknown DevicesFlow_f7701c
new: DevicePickerUserSvc_99f73 Manual Unknown DevicePicker_99f73
new: DevicesFlowUserSvc_99f73 Manual Unknown DevicesFlow_99f73
old: MessagingService_f7701c Manual Unknown MessagingService_f7701c
new: MessagingService_99f73 Manual Unknown MessagingService_99f73
old: OneSyncSvc_f7701c Auto Unknown Synkroniseringsvärd_f7701c
new: OneSyncSvc_99f73 Auto Unknown Synkroniseringsvärd_99f73
old: PimIndexMaintenanceSvc_f7701c Manual Unknown Contact Data_f7701c
new: PimIndexMaintenanceSvc_99f73 Manual Unknown Contact Data_99f73
old: PrintWorkflowUserSvc_f7701c Manual Unknown PrintWorkflow_f7701c
new: PrintWorkflowUserSvc_99f73 Manual Unknown PrintWorkflow_99f73
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
old: UdkUserSvc_f7701c Manual Unknown Udk-användartjänst_f7701c
new: UdkUserSvc_99f73 Manual Unknown Udk-användartjänst_99f73
old: UnistoreSvc_f7701c Manual Unknown User Data Storage_f7701c
new: UnistoreSvc_99f73 Manual Unknown User Data Storage_99f73
old: UserDataSvc_f7701c Manual Unknown User Data Access_f7701c
new: UserDataSvc_99f73 Manual Unknown User Data Access_99f73
old: WpnUserService_f7701c Auto Unknown Windows Push Notifications User Service_f7701c
new: WpnUserService_99f73 Auto Unknown Windows Push Notifications User Service_99f73
system - services - AarSvc_f7701c
old: DisplayName : Agent Activation Runtime_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_99f73
new: DisplayName : Agent Activation Runtime_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_f7701c
old: DisplayName : Användartjänst för Spel-DVR och sändning_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_99f73
new: DisplayName : Användartjänst för Spel-DVR och sändning_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_f7701c
old: DisplayName : Bluetooth User Support Service_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_99f73
new: DisplayName : Bluetooth User Support Service_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_f7701c
old: DisplayName : CaptureService_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_f7701c
old: DisplayName : Clipboard User Service_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_99f73
new: DisplayName : CaptureService_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_99f73
new: DisplayName : Clipboard User Service_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_f7701c
old: DisplayName : Connected Devices Platform User Service_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_99f73
new: DisplayName : Connected Devices Platform User Service_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_f7701c
old: DisplayName : ConsentUX_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_99f73
new: DisplayName : ConsentUX_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_f7701c
old: DisplayName : CredentialEnrollmentManagerUserSvc_f7701c
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_99f73
new: DisplayName : CredentialEnrollmentManagerUserSvc_99f73
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_f7701c
old: DisplayName : DeviceAssociationBroker_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_99f73
new: DisplayName : DeviceAssociationBroker_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_f7701c
old: DisplayName : DevicePicker_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_f7701c
old: DisplayName : DevicesFlow_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_99f73
new: DisplayName : DevicePicker_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_99f73
new: DisplayName : DevicesFlow_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_f7701c
old: DisplayName : MessagingService_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_99f73
new: DisplayName : MessagingService_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_f7701c
old: DisplayName : Synkroniseringsvärd_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_99f73
new: DisplayName : Synkroniseringsvärd_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_f7701c
old: DisplayName : Contact Data_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_99f73
new: DisplayName : Contact Data_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_f7701c
old: DisplayName : PrintWorkflow_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_99f73
new: DisplayName : PrintWorkflow_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UdkUserSvc_f7701c
old: DisplayName : Udk-användartjänst_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_99f73
new: DisplayName : Udk-användartjänst_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_f7701c
old: DisplayName : User Data Storage_f7701c
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_99f73
new: DisplayName : User Data Storage_99f73
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_f7701c
old: DisplayName : User Data Access_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_99f73
new: DisplayName : User Data Access_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_f7701c
old: DisplayName : Windows Push Notifications User Service_f7701c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_99f73
new: DisplayName : Windows Push Notifications User Service_99f73
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2021-11-17 16.55.30
remark :
runtime : 20
count : 2
previous date : 2021-11-16
previous time : 16.55.30
software - product - Microsoft Edge Update
old: Version : 1.3.153.47
new: Version : 1.3.153.53
Top Runs Differences at: 2021-11-15 16.55.29
remark :
runtime : 12
count : 155
previous date : 2021-11-14
previous time : 16.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - SystemDriver - MpKslcc3607a6
old: AcceptPause : 0
old: Description : MpKslcc3607a6
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7CB34188-4216-4C0B-AAA7-5A873AFC6913}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - survey
new: AarSvc_f7701c Manual Unknown Agent Activation Runtime_f7701c
new: BcastDVRUserService_f7701c Manual Unknown Användartjänst för Spel-DVR och sändning_f7701c
new: BluetoothUserService_f7701c Manual Unknown Bluetooth User Support Service_f7701c
new: CaptureService_f7701c Manual Unknown CaptureService_f7701c
new: cbdhsvc_f7701c Manual Unknown Clipboard User Service_f7701c
new: CDPUserSvc_f7701c Auto Unknown Connected Devices Platform User Service_f7701c
new: ConsentUxUserSvc_f7701c Manual Unknown ConsentUX_f7701c
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_f7701c
new: DeviceAssociationBrokerSvc_f77 Manual Unknown DeviceAssociationBroker_f7701c
new: DevicePickerUserSvc_f7701c Manual Unknown DevicePicker_f7701c
new: DevicesFlowUserSvc_f7701c Manual Unknown DevicesFlow_f7701c
new: MessagingService_f7701c Manual Unknown MessagingService_f7701c
new: OneSyncSvc_f7701c Auto Unknown Synkroniseringsvärd_f7701c
new: PimIndexMaintenanceSvc_f7701c Manual Unknown Contact Data_f7701c
new: PrintWorkflowUserSvc_f7701c Manual Unknown PrintWorkflow_f7701c
new: UdkUserSvc_f7701c Manual Unknown Udk-användartjänst_f7701c
new: UnistoreSvc_f7701c Manual Unknown User Data Storage_f7701c
new: UserDataSvc_f7701c Manual Unknown User Data Access_f7701c
new: WpnUserService_f7701c Auto Unknown Windows Push Notifications User Service_f7701c
system - services - AarSvc_f7701c
new: DisplayName : Agent Activation Runtime_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_f7701c
new: DisplayName : Användartjänst för Spel-DVR och sändning_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_f7701c
new: DisplayName : Bluetooth User Support Service_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_f7701c
new: DisplayName : CaptureService_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_f7701c
new: DisplayName : Clipboard User Service_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_f7701c
new: DisplayName : Connected Devices Platform User Service_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_f7701c
new: DisplayName : ConsentUX_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_f7701c
new: DisplayName : CredentialEnrollmentManagerUserSvc_f7701c
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_f7701c
new: DisplayName : DeviceAssociationBroker_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_f7701c
new: DisplayName : DevicePicker_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_f7701c
new: DisplayName : DevicesFlow_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_f7701c
new: DisplayName : MessagingService_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_f7701c
new: DisplayName : Synkroniseringsvärd_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_f7701c
new: DisplayName : Contact Data_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_f7701c
new: DisplayName : PrintWorkflow_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_f7701c
new: DisplayName : Udk-användartjänst_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_f7701c
new: DisplayName : User Data Storage_f7701c
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_f7701c
new: DisplayName : User Data Access_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_f7701c
new: DisplayName : Windows Push Notifications User Service_f7701c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2021-11-14 13.28.20
remark :
runtime : 21
count : 13
previous date : 2021-11-13
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 95.0.1020.44
new: Version : 95.0.1020.53
system - SystemDriver - MpKslcc3607a6
new: AcceptPause : 0
new: Description : MpKslcc3607a6
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7CB34188-4216-4C0B-AAA7-5A873AFC6913}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\95.0.1020.44\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\95.0.1020.53\elevation_service.exe"
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2021-11-13 16.55.29
remark :
runtime : 13
count : 24
previous date : 2021-11-12
previous time : 16.55.29
system - scheduled tasks - \Microsoft\Windows\Setup\EM
old: Logon Mode : Interactive/Background
old: Task To Run : %windir%\system32\EM.exe
old: Start In : %windir%\system32
old: Comment : $(@%SystemRoot%\System32\EM.exe,-102)
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 01:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2021-11-10 02.12.19
remark :
runtime : 31
count : 182
previous date : 2021-11-09
previous time : 16.55.30
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - hotfix - KB5006738
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5007186
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_5187959 Manual Unknown Agent Activation Runtime_5187959
old: BcastDVRUserService_5187959 Manual Unknown Användartjänst för Spel-DVR och sändning_5187959
old: BluetoothUserService_5187959 Manual Unknown Bluetooth User Support Service_5187959
old: CaptureService_5187959 Manual Unknown CaptureService_5187959
old: cbdhsvc_5187959 Manual Unknown Clipboard User Service_5187959
old: CDPUserSvc_5187959 Auto Unknown Connected Devices Platform User Service_5187959
old: ConsentUxUserSvc_5187959 Manual Unknown ConsentUX_5187959
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_5187959
old: DeviceAssociationBrokerSvc_518 Manual Unknown DeviceAssociationBroker_5187959
old: DevicePickerUserSvc_5187959 Manual Unknown DevicePicker_5187959
old: DevicesFlowUserSvc_5187959 Manual Unknown DevicesFlow_5187959
old: MessagingService_5187959 Manual Unknown MessagingService_5187959
old: OneSyncSvc_5187959 Auto Unknown Synkroniseringsvärd_5187959
old: PimIndexMaintenanceSvc_5187959 Manual Unknown Contact Data_5187959
old: PrintWorkflowUserSvc_5187959 Manual Unknown PrintWorkflow_5187959
old: UdkUserSvc_5187959 Manual Unknown Udk-användartjänst_5187959
old: UnistoreSvc_5187959 Manual Unknown User Data Storage_5187959
old: UserDataSvc_5187959 Manual Unknown User Data Access_5187959
old: WpnUserService_5187959 Auto Unknown Windows Push Notifications User Service_5187959
system - services - AarSvc_5187959
old: DisplayName : Agent Activation Runtime_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_5187959
old: DisplayName : Användartjänst för Spel-DVR och sändning_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_5187959
old: DisplayName : Bluetooth User Support Service_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_5187959
old: DisplayName : CaptureService_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_5187959
old: DisplayName : Clipboard User Service_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_5187959
old: DisplayName : Connected Devices Platform User Service_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_5187959
old: DisplayName : ConsentUX_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_5187959
old: DisplayName : CredentialEnrollmentManagerUserSvc_5187959
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_5187959
old: DisplayName : DeviceAssociationBroker_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_5187959
old: DisplayName : DevicePicker_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_5187959
old: DisplayName : DevicesFlow_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_5187959
old: DisplayName : MessagingService_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_5187959
old: DisplayName : Synkroniseringsvärd_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_5187959
old: DisplayName : Contact Data_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_5187959
old: DisplayName : PrintWorkflow_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_5187959
old: DisplayName : Udk-användartjänst_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_5187959
old: DisplayName : User Data Storage_5187959
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_5187959
old: DisplayName : User Data Access_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_5187959
old: DisplayName : Windows Push Notifications User Service_5187959
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\Setup\EM
new: Logon Mode : Interactive/Background
new: Task To Run : %windir%\system32\EM.exe
new: Start In : %windir%\system32
new: Comment : $(@%SystemRoot%\System32\EM.exe,-102)
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 01:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2021-11-07 16.55.30
remark :
runtime : 17
count : 4
previous date : 2021-11-06
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 95.0.1020.40
new: Version : 95.0.1020.44
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\95.0.1020.40\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\95.0.1020.44\elevation_service.exe"
Top Runs Differences at: 2021-11-06 16.55.30
remark :
runtime : 19
count : 166
previous date : 2021-11-05
previous time : 16.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - hotfix - KB5005539
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5006365
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: AarSvc_5187959 Manual Unknown Agent Activation Runtime_5187959
new: BcastDVRUserService_5187959 Manual Unknown Användartjänst för Spel-DVR och sändning_5187959
new: BluetoothUserService_5187959 Manual Unknown Bluetooth User Support Service_5187959
new: CaptureService_5187959 Manual Unknown CaptureService_5187959
new: cbdhsvc_5187959 Manual Unknown Clipboard User Service_5187959
new: CDPUserSvc_5187959 Auto Unknown Connected Devices Platform User Service_5187959
new: ConsentUxUserSvc_5187959 Manual Unknown ConsentUX_5187959
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_5187959
new: DeviceAssociationBrokerSvc_518 Manual Unknown DeviceAssociationBroker_5187959
new: DevicePickerUserSvc_5187959 Manual Unknown DevicePicker_5187959
new: DevicesFlowUserSvc_5187959 Manual Unknown DevicesFlow_5187959
new: MessagingService_5187959 Manual Unknown MessagingService_5187959
new: OneSyncSvc_5187959 Auto Unknown Synkroniseringsvärd_5187959
new: PimIndexMaintenanceSvc_5187959 Manual Unknown Contact Data_5187959
new: PrintWorkflowUserSvc_5187959 Manual Unknown PrintWorkflow_5187959
new: UdkUserSvc_5187959 Manual Unknown Udk-användartjänst_5187959
new: UnistoreSvc_5187959 Manual Unknown User Data Storage_5187959
new: UserDataSvc_5187959 Manual Unknown User Data Access_5187959
new: WpnUserService_5187959 Auto Unknown Windows Push Notifications User Service_5187959
system - services - AarSvc_5187959
new: DisplayName : Agent Activation Runtime_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_5187959
new: DisplayName : Användartjänst för Spel-DVR och sändning_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_5187959
new: DisplayName : Bluetooth User Support Service_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_5187959
new: DisplayName : CaptureService_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_5187959
new: DisplayName : Clipboard User Service_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_5187959
new: DisplayName : Connected Devices Platform User Service_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_5187959
new: DisplayName : ConsentUX_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_5187959
new: DisplayName : CredentialEnrollmentManagerUserSvc_5187959
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_5187959
new: DisplayName : DeviceAssociationBroker_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_5187959
new: DisplayName : DevicePicker_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_5187959
new: DisplayName : DevicesFlow_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_5187959
new: DisplayName : MessagingService_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_5187959
new: DisplayName : Synkroniseringsvärd_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_5187959
new: DisplayName : Contact Data_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_5187959
new: DisplayName : PrintWorkflow_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_5187959
new: DisplayName : Udk-användartjänst_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_5187959
new: DisplayName : User Data Storage_5187959
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_5187959
new: DisplayName : User Data Access_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_5187959
new: DisplayName : Windows Push Notifications User Service_5187959
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2021-11-03 16.55.29
remark :
runtime : 15
count : 16
previous date : 2021-11-02
previous time : 16.55.29
software - product - Google Chrome
old: Version : 95.0.4638.54
new: Version : 95.0.4638.69
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\95.0.4638.54\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\95.0.4638.69\elevation_service.exe"
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2021-10-31 16.55.29
remark :
runtime : 13
count : 8
previous date : 2021-10-30
previous time : 17.55.29
general
old: CurrentTimeZone:120
old: DaylightInEffect:1
new: CurrentTimeZone:60
new: DaylightInEffect:0
software - product - Microsoft Edge
old: Version : 95.0.1020.30
new: Version : 95.0.1020.40
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\95.0.1020.30\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\95.0.1020.40\elevation_service.exe"
Top Runs Differences at: 2021-10-29 17.55.29
remark :
runtime : 13
count : 7
previous date : 2021-10-28
previous time : 17.55.29
system - SystemDriver - MpKsl6530e4d1
old: AcceptPause : 0
old: Description : MpKsl6530e4d1
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E639EE53-EFF9-4606-BDB5-30EBF221171D}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-10-28 17.55.29
remark :
runtime : 12
count : 7
previous date : 2021-10-27
previous time : 21.25.52
system - SystemDriver - MpKsl6530e4d1
new: AcceptPause : 0
new: Description : MpKsl6530e4d1
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E639EE53-EFF9-4606-BDB5-30EBF221171D}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-10-27 21.25.52
remark :
runtime : 19
count : 175
previous date : 2021-10-27
previous time : 17.55.30
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe --startup_mode
old: Command : "C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
old: Command : C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe --startup_mode
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Drive
old: Version : 51.0.16.0
new: Version : 52.0.6.0
old: Install Location : C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\52.0.6.0\GoogleDriveFS.exe
system - services - survey
old: AarSvc_1137d6c Manual Unknown Agent Activation Runtime_1137d6c
old: BcastDVRUserService_1137d6c Manual Unknown Användartjänst för Spel-DVR och sändning_1137d6c
old: BluetoothUserService_1137d6c Manual Unknown Bluetooth User Support Service_1137d6c
old: CaptureService_1137d6c Manual Unknown CaptureService_1137d6c
old: cbdhsvc_1137d6c Manual Unknown Clipboard User Service_1137d6c
old: CDPUserSvc_1137d6c Auto Unknown Connected Devices Platform User Service_1137d6c
new: cloudidsvc Manual Own Process Microsofts molnidentitetstjänst
old: ConsentUxUserSvc_1137d6c Manual Unknown ConsentUX_1137d6c
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1137d6c
old: DeviceAssociationBrokerSvc_113 Manual Unknown DeviceAssociationBroker_1137d6c
old: DevicePickerUserSvc_1137d6c Manual Unknown DevicePicker_1137d6c
old: DevicesFlowUserSvc_1137d6c Manual Unknown DevicesFlow_1137d6c
old: MessagingService_1137d6c Manual Unknown MessagingService_1137d6c
old: OneSyncSvc_1137d6c Auto Unknown Synkroniseringsvärd_1137d6c
old: PimIndexMaintenanceSvc_1137d6c Manual Unknown Contact Data_1137d6c
old: PrintWorkflowUserSvc_1137d6c Manual Unknown PrintWorkflow_1137d6c
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
old: UdkUserSvc_1137d6c Manual Unknown Udk-användartjänst_1137d6c
old: UnistoreSvc_1137d6c Manual Unknown User Data Storage_1137d6c
old: UserDataSvc_1137d6c Manual Unknown User Data Access_1137d6c
old: WpnUserService_1137d6c Auto Unknown Windows Push Notifications User Service_1137d6c
system - services - AarSvc_1137d6c
old: DisplayName : Agent Activation Runtime_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_1137d6c
old: DisplayName : Användartjänst för Spel-DVR och sändning_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_1137d6c
old: DisplayName : Bluetooth User Support Service_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_1137d6c
old: DisplayName : CaptureService_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_1137d6c
old: DisplayName : Clipboard User Service_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_1137d6c
old: DisplayName : Connected Devices Platform User Service_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - cloudidsvc
new: DisplayName : Microsofts molnidentitetstjänst
new: PathName : C:\WINDOWS\system32\svchost.exe -k CloudIdServiceGroup -p
new: ServiceType : Own Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : NT AUTHORITY\NetworkService
system - services - ConsentUxUserSvc_1137d6c
old: DisplayName : ConsentUX_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1137d6c
old: DisplayName : CredentialEnrollmentManagerUserSvc_1137d6c
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_1137d6c
old: DisplayName : DeviceAssociationBroker_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_1137d6c
old: DisplayName : DevicePicker_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_1137d6c
old: DisplayName : DevicesFlow_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_1137d6c
old: DisplayName : MessagingService_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_1137d6c
old: DisplayName : Synkroniseringsvärd_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_1137d6c
old: DisplayName : Contact Data_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_1137d6c
old: DisplayName : PrintWorkflow_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UdkUserSvc_1137d6c
old: DisplayName : Udk-användartjänst_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_1137d6c
old: DisplayName : User Data Storage_1137d6c
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_1137d6c
old: DisplayName : User Data Access_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_1137d6c
old: DisplayName : Windows Push Notifications User Service_1137d6c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2021-10-27 17.55.30
remark :
runtime : 15
count : 40
previous date : 2021-10-26
previous time : 17.55.30
software - product - Google Chrome
old: Version : 94.0.4606.81
new: Version : 95.0.4638.54
system - SystemDriver - MpKsl1fbb7472
old: AcceptPause : 0
old: Description : MpKsl1fbb7472
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69642CF3-F0F7-4AFB-9052-7B718A754B4F}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - hotfix - KB5006670
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5006738
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5006753
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\94.0.4606.81\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\95.0.4638.54\elevation_service.exe"
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2021-10-26 17.55.30
remark :
runtime : 14
count : 163
previous date : 2021-10-26
previous time : 12.27.22
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: Version : 94.0.992.50
new: Version : 95.0.1020.30
system - SystemDriver - MpKsl1fbb7472
new: AcceptPause : 0
new: Description : MpKsl1fbb7472
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69642CF3-F0F7-4AFB-9052-7B718A754B4F}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
new: AarSvc_1137d6c Manual Unknown Agent Activation Runtime_1137d6c
new: BcastDVRUserService_1137d6c Manual Unknown Användartjänst för Spel-DVR och sändning_1137d6c
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
new: BluetoothUserService_1137d6c Manual Unknown Bluetooth User Support Service_1137d6c
new: CaptureService_1137d6c Manual Unknown CaptureService_1137d6c
new: cbdhsvc_1137d6c Manual Unknown Clipboard User Service_1137d6c
new: CDPUserSvc_1137d6c Auto Unknown Connected Devices Platform User Service_1137d6c
new: ConsentUxUserSvc_1137d6c Manual Unknown ConsentUX_1137d6c
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1137d6c
new: DeviceAssociationBrokerSvc_113 Manual Unknown DeviceAssociationBroker_1137d6c
new: DevicePickerUserSvc_1137d6c Manual Unknown DevicePicker_1137d6c
new: DevicesFlowUserSvc_1137d6c Manual Unknown DevicesFlow_1137d6c
new: MessagingService_1137d6c Manual Unknown MessagingService_1137d6c
new: OneSyncSvc_1137d6c Auto Unknown Synkroniseringsvärd_1137d6c
new: PimIndexMaintenanceSvc_1137d6c Manual Unknown Contact Data_1137d6c
new: PrintWorkflowUserSvc_1137d6c Manual Unknown PrintWorkflow_1137d6c
new: UdkUserSvc_1137d6c Manual Unknown Udk-användartjänst_1137d6c
new: UnistoreSvc_1137d6c Manual Unknown User Data Storage_1137d6c
new: UserDataSvc_1137d6c Manual Unknown User Data Access_1137d6c
new: WpnUserService_1137d6c Auto Unknown Windows Push Notifications User Service_1137d6c
system - services - AarSvc_1137d6c
new: DisplayName : Agent Activation Runtime_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_1137d6c
new: DisplayName : Användartjänst för Spel-DVR och sändning_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_1137d6c
new: DisplayName : Bluetooth User Support Service_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_1137d6c
new: DisplayName : CaptureService_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_1137d6c
new: DisplayName : Clipboard User Service_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_1137d6c
new: DisplayName : Connected Devices Platform User Service_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_1137d6c
new: DisplayName : ConsentUX_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1137d6c
new: DisplayName : CredentialEnrollmentManagerUserSvc_1137d6c
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_1137d6c
new: DisplayName : DeviceAssociationBroker_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_1137d6c
new: DisplayName : DevicePicker_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_1137d6c
new: DisplayName : DevicesFlow_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_1137d6c
new: DisplayName : MessagingService_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\94.0.992.50\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\95.0.1020.30\elevation_service.exe"
system - services - OneSyncSvc_1137d6c
new: DisplayName : Synkroniseringsvärd_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_1137d6c
new: DisplayName : Contact Data_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_1137d6c
new: DisplayName : PrintWorkflow_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_1137d6c
new: DisplayName : Udk-användartjänst_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_1137d6c
new: DisplayName : User Data Storage_1137d6c
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_1137d6c
new: DisplayName : User Data Access_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_1137d6c
new: DisplayName : Windows Push Notifications User Service_1137d6c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2021-10-26 12.27.22
remark :
runtime : 30
count : 4
previous date : 2021-10-18
previous time : 17.55.29
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
Top Runs Differences at: 2021-10-18 16.59.25
remark :
runtime : 16
count : 2
previous date : 2021-10-17
previous time : 17.55.29
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2021-10-17 17.55.29
remark :
runtime : 18
count : 7
previous date : 2021-10-16
previous time : 17.55.29
system - SystemDriver - MpKsld12f2b80
old: AcceptPause : 0
old: Description : MpKsld12f2b80
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EABF413A-23B1-46AB-9E3B-B509D9F4E922}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-10-16 17.55.29
remark :
runtime : 12
count : 11
previous date : 2021-10-16
previous time : 12.05.44
software - product - Microsoft Edge
old: Version : 94.0.992.47
new: Version : 94.0.992.50
system - SystemDriver - MpKsld12f2b80
new: AcceptPause : 0
new: Description : MpKsld12f2b80
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EABF413A-23B1-46AB-9E3B-B509D9F4E922}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\94.0.992.47\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\94.0.992.50\elevation_service.exe"
Top Runs Differences at: 2021-10-16 12.05.44
remark :
runtime : 26
count : 28
previous date : 2021-10-15
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe --startup_mode
old: Command : C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe --startup_mode
new: Command : C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe --startup_mode
software - product - Google Drive
old: Version : 51.0.15.0
new: Version : 51.0.16.0
old: Install Location : C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe
new: Install Location : C:\Program Files\Google\Drive File Stream\51.0.16.0\GoogleDriveFS.exe
system - SystemDriver - kbdhid
old: Description : Keyboard HID Driver
new: Description : HID-drivrutin för tangentbord
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2021-10-14 17.55.29
remark :
runtime : 12
count : 7
previous date : 2021-10-13
previous time : 17.55.29
system - SystemDriver - MpKsl75e5ccb1
old: AcceptPause : 0
old: Description : MpKsl75e5ccb1
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{789A4894-DCA8-4E5A-B260-490448F5A509}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-10-13 17.55.29
remark :
runtime : 12
count : 12
previous date : 2021-10-13
previous time : 07.42.29
software - product - Microsoft Edge
old: Version : 94.0.992.38
new: Version : 94.0.992.47
new: NoRemove : 0x00000001
system - SystemDriver - MpKsl75e5ccb1
new: AcceptPause : 0
new: Description : MpKsl75e5ccb1
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{789A4894-DCA8-4E5A-B260-490448F5A509}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\94.0.992.38\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\94.0.992.47\elevation_service.exe"
Top Runs Differences at: 2021-10-13 07.42.29
remark :
runtime : 30
count : 26
previous date : 2021-10-12
previous time : 17.55.29
software - product - Google Chrome
old: Version : 94.0.4606.71
new: Version : 94.0.4606.81
system - hotfix - KB5005611
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5006670
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\94.0.4606.71\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\94.0.4606.81\elevation_service.exe"
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2021-10-11 17.55.29
remark :
runtime : 13
count : 7
previous date : 2021-10-10
previous time : 17.55.29
system - SystemDriver - MpKsl0ef4729f
old: AcceptPause : 0
old: Description : MpKsl0ef4729f
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0ABC4AA8-4A73-4632-B8D5-906A4D622C9B}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-10-10 17.55.29
remark :
runtime : 21
count : 9
previous date : 2021-10-09
previous time : 18.05.02
software - product - Microsoft Edge Update
old: Version : 1.3.153.45
new: Version : 1.3.153.47
system - SystemDriver - MpKsl0ef4729f
new: AcceptPause : 0
new: Description : MpKsl0ef4729f
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0ABC4AA8-4A73-4632-B8D5-906A4D622C9B}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-10-09 17.55.32
remark :
runtime : 42
count : 150
previous date : 2021-10-08
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
system - services - survey
old: AarSvc_17f46ec Manual Unknown Agent Activation Runtime_17f46ec
old: BcastDVRUserService_17f46ec Manual Unknown Användartjänst för Spel-DVR och sändning_17f46ec
old: BluetoothUserService_17f46ec Manual Unknown Bluetooth User Support Service_17f46ec
old: CaptureService_17f46ec Manual Unknown CaptureService_17f46ec
old: cbdhsvc_17f46ec Manual Unknown Clipboard User Service_17f46ec
old: CDPUserSvc_17f46ec Auto Unknown Connected Devices Platform User Service_17f46ec
old: ConsentUxUserSvc_17f46ec Manual Unknown ConsentUX_17f46ec
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_17f46ec
old: DeviceAssociationBrokerSvc_17f Manual Unknown DeviceAssociationBroker_17f46ec
old: DevicePickerUserSvc_17f46ec Manual Unknown DevicePicker_17f46ec
old: DevicesFlowUserSvc_17f46ec Manual Unknown DevicesFlow_17f46ec
old: MessagingService_17f46ec Manual Unknown MessagingService_17f46ec
old: OneSyncSvc_17f46ec Auto Unknown Synkroniseringsvärd_17f46ec
old: PimIndexMaintenanceSvc_17f46ec Manual Unknown Contact Data_17f46ec
old: PrintWorkflowUserSvc_17f46ec Manual Unknown PrintWorkflow_17f46ec
old: UdkUserSvc_17f46ec Manual Unknown Udk-användartjänst_17f46ec
old: UnistoreSvc_17f46ec Manual Unknown User Data Storage_17f46ec
old: UserDataSvc_17f46ec Manual Unknown User Data Access_17f46ec
old: WpnUserService_17f46ec Auto Unknown Windows Push Notifications User Service_17f46ec
system - services - AarSvc_17f46ec
old: DisplayName : Agent Activation Runtime_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_17f46ec
old: DisplayName : Användartjänst för Spel-DVR och sändning_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_17f46ec
old: DisplayName : Bluetooth User Support Service_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_17f46ec
old: DisplayName : CaptureService_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_17f46ec
old: DisplayName : Clipboard User Service_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_17f46ec
old: DisplayName : Connected Devices Platform User Service_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_17f46ec
old: DisplayName : ConsentUX_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_17f46ec
old: DisplayName : CredentialEnrollmentManagerUserSvc_17f46ec
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_17f46ec
old: DisplayName : DeviceAssociationBroker_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_17f46ec
old: DisplayName : DevicePicker_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_17f46ec
old: DisplayName : DevicesFlow_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_17f46ec
old: DisplayName : MessagingService_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_17f46ec
old: DisplayName : Synkroniseringsvärd_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_17f46ec
old: DisplayName : Contact Data_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_17f46ec
old: DisplayName : PrintWorkflow_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_17f46ec
old: DisplayName : Udk-användartjänst_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_17f46ec
old: DisplayName : User Data Storage_17f46ec
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_17f46ec
old: DisplayName : User Data Access_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_17f46ec
old: DisplayName : Windows Push Notifications User Service_17f46ec
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2021-10-08 17.55.29
remark :
runtime : 15
count : 9
previous date : 2021-10-07
previous time : 17.55.29
software - product - Microsoft Update Health Tools
old: Version : 2.83.0.0
new: Version : 2.84.0.0
system - SystemDriver - MpKslac8e8ceb
old: AcceptPause : 0
old: Description : MpKslac8e8ceb
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5399EC95-0BBF-414C-824E-DD97AE8591B2}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-10-07 17.55.29
remark :
runtime : 13
count : 7
previous date : 2021-10-06
previous time : 17.55.29
system - SystemDriver - MpKslac8e8ceb
new: AcceptPause : 0
new: Description : MpKslac8e8ceb
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5399EC95-0BBF-414C-824E-DD97AE8591B2}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-10-06 17.55.29
remark :
runtime : 13
count : 160
previous date : 2021-10-05
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
system - services - survey
new: AarSvc_17f46ec Manual Unknown Agent Activation Runtime_17f46ec
new: BcastDVRUserService_17f46ec Manual Unknown Användartjänst för Spel-DVR och sändning_17f46ec
new: BluetoothUserService_17f46ec Manual Unknown Bluetooth User Support Service_17f46ec
new: CaptureService_17f46ec Manual Unknown CaptureService_17f46ec
new: cbdhsvc_17f46ec Manual Unknown Clipboard User Service_17f46ec
new: CDPUserSvc_17f46ec Auto Unknown Connected Devices Platform User Service_17f46ec
new: ConsentUxUserSvc_17f46ec Manual Unknown ConsentUX_17f46ec
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_17f46ec
new: DeviceAssociationBrokerSvc_17f Manual Unknown DeviceAssociationBroker_17f46ec
new: DevicePickerUserSvc_17f46ec Manual Unknown DevicePicker_17f46ec
new: DevicesFlowUserSvc_17f46ec Manual Unknown DevicesFlow_17f46ec
new: MessagingService_17f46ec Manual Unknown MessagingService_17f46ec
new: OneSyncSvc_17f46ec Auto Unknown Synkroniseringsvärd_17f46ec
new: PimIndexMaintenanceSvc_17f46ec Manual Unknown Contact Data_17f46ec
new: PrintWorkflowUserSvc_17f46ec Manual Unknown PrintWorkflow_17f46ec
new: UdkUserSvc_17f46ec Manual Unknown Udk-användartjänst_17f46ec
new: UnistoreSvc_17f46ec Manual Unknown User Data Storage_17f46ec
new: UserDataSvc_17f46ec Manual Unknown User Data Access_17f46ec
new: WpnUserService_17f46ec Auto Unknown Windows Push Notifications User Service_17f46ec
system - services - AarSvc_17f46ec
new: DisplayName : Agent Activation Runtime_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_17f46ec
new: DisplayName : Användartjänst för Spel-DVR och sändning_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_17f46ec
new: DisplayName : Bluetooth User Support Service_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_17f46ec
new: DisplayName : CaptureService_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_17f46ec
new: DisplayName : Clipboard User Service_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_17f46ec
new: DisplayName : Connected Devices Platform User Service_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_17f46ec
new: DisplayName : ConsentUX_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_17f46ec
new: DisplayName : CredentialEnrollmentManagerUserSvc_17f46ec
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_17f46ec
new: DisplayName : DeviceAssociationBroker_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_17f46ec
new: DisplayName : DevicePicker_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_17f46ec
new: DisplayName : DevicesFlow_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_17f46ec
new: DisplayName : MessagingService_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_17f46ec
new: DisplayName : Synkroniseringsvärd_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_17f46ec
new: DisplayName : Contact Data_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_17f46ec
new: DisplayName : PrintWorkflow_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_17f46ec
new: DisplayName : Udk-användartjänst_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_17f46ec
new: DisplayName : User Data Storage_17f46ec
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_17f46ec
new: DisplayName : User Data Access_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MsMpEng.exe"
system - services - WpnUserService_17f46ec
new: DisplayName : Windows Push Notifications User Service_17f46ec
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2021-10-05 17.55.29
remark :
runtime : 12
count : 152
previous date : 2021-10-04
previous time : 17.55.29
boot - startup - GoogleDriveFS
old: Command : "C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe" --startup_mode
old: Description : GoogleDriveFS
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveFS
old: SettingID :
old: User : CORP\trains
old:
Volume Management - file systems - I
old: ProviderName :
old: DriveType : Local Disk
old: VolumeName :
old: SerialNumber :
old: Description : Lokal hårddisk
old: FileSystem :
old: Size :
old: Size_byte :
software - product - Google Chrome
old: Version : 94.0.4606.61
new: Version : 94.0.4606.71
system - services - survey
old: AarSvc_e1869 Manual Unknown Agent Activation Runtime_e1869
old: BcastDVRUserService_e1869 Manual Unknown Användartjänst för Spel-DVR och sändning_e1869
old: BluetoothUserService_e1869 Manual Unknown Bluetooth User Support Service_e1869
old: CaptureService_e1869 Manual Unknown CaptureService_e1869
old: cbdhsvc_e1869 Manual Unknown Clipboard User Service_e1869
old: CDPUserSvc_e1869 Auto Unknown Connected Devices Platform User Service_e1869
old: ConsentUxUserSvc_e1869 Manual Unknown ConsentUX_e1869
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_e1869
old: DeviceAssociationBrokerSvc_e18 Manual Unknown DeviceAssociationBroker_e1869
old: DevicePickerUserSvc_e1869 Manual Unknown DevicePicker_e1869
old: DevicesFlowUserSvc_e1869 Manual Unknown DevicesFlow_e1869
old: MessagingService_e1869 Manual Unknown MessagingService_e1869
old: OneSyncSvc_e1869 Auto Unknown Synkroniseringsvärd_e1869
old: PimIndexMaintenanceSvc_e1869 Manual Unknown Contact Data_e1869
old: PrintWorkflowUserSvc_e1869 Manual Unknown PrintWorkflow_e1869
old: UdkUserSvc_e1869 Manual Unknown Udk-användartjänst_e1869
old: UnistoreSvc_e1869 Manual Unknown User Data Storage_e1869
old: UserDataSvc_e1869 Manual Unknown User Data Access_e1869
old: WpnUserService_e1869 Auto Unknown Windows Push Notifications User Service_e1869
system - services - AarSvc_e1869
old: DisplayName : Agent Activation Runtime_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_e1869
old: DisplayName : Användartjänst för Spel-DVR och sändning_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_e1869
old: DisplayName : Bluetooth User Support Service_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_e1869
old: DisplayName : CaptureService_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_e1869
old: DisplayName : Clipboard User Service_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_e1869
old: DisplayName : Connected Devices Platform User Service_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_e1869
old: DisplayName : ConsentUX_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_e1869
old: DisplayName : CredentialEnrollmentManagerUserSvc_e1869
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_e1869
old: DisplayName : DeviceAssociationBroker_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_e1869
old: DisplayName : DevicePicker_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_e1869
old: DisplayName : DevicesFlow_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\94.0.4606.61\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\94.0.4606.71\elevation_service.exe"
system - services - MessagingService_e1869
old: DisplayName : MessagingService_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_e1869
old: DisplayName : Synkroniseringsvärd_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_e1869
old: DisplayName : Contact Data_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_e1869
old: DisplayName : PrintWorkflow_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_e1869
old: DisplayName : Udk-användartjänst_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_e1869
old: DisplayName : User Data Storage_e1869
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_e1869
old: DisplayName : User Data Access_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_e1869
old: DisplayName : Windows Push Notifications User Service_e1869
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2021-10-04 15.31.09
remark :
runtime : 41
count : 173
previous date : 2021-10-04
previous time : 14.34.28
boot - startup - GoogleDriveFS
new: Command : "C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe" --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\trains
new:
Volume Management - file systems - I
new: ProviderName :
new: DriveType : Local Disk
new: VolumeName :
new: SerialNumber :
new: Description : Lokal hårddisk
new: FileSystem :
new: Size :
new: Size_byte :
software - product - Microsoft Edge
old: NoRemove : 0x00000001
system - hotfix - KB5005565
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5005611
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: AarSvc_e1869 Manual Unknown Agent Activation Runtime_e1869
new: BcastDVRUserService_e1869 Manual Unknown Användartjänst för Spel-DVR och sändning_e1869
new: BluetoothUserService_e1869 Manual Unknown Bluetooth User Support Service_e1869
new: CaptureService_e1869 Manual Unknown CaptureService_e1869
new: cbdhsvc_e1869 Manual Unknown Clipboard User Service_e1869
new: CDPUserSvc_e1869 Auto Unknown Connected Devices Platform User Service_e1869
new: ConsentUxUserSvc_e1869 Manual Unknown ConsentUX_e1869
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_e1869
new: DeviceAssociationBrokerSvc_e18 Manual Unknown DeviceAssociationBroker_e1869
new: DevicePickerUserSvc_e1869 Manual Unknown DevicePicker_e1869
new: DevicesFlowUserSvc_e1869 Manual Unknown DevicesFlow_e1869
new: MessagingService_e1869 Manual Unknown MessagingService_e1869
new: OneSyncSvc_e1869 Auto Unknown Synkroniseringsvärd_e1869
new: PimIndexMaintenanceSvc_e1869 Manual Unknown Contact Data_e1869
new: PrintWorkflowUserSvc_e1869 Manual Unknown PrintWorkflow_e1869
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
new: UdkUserSvc_e1869 Manual Unknown Udk-användartjänst_e1869
new: UnistoreSvc_e1869 Manual Unknown User Data Storage_e1869
new: UserDataSvc_e1869 Manual Unknown User Data Access_e1869
new: WpnUserService_e1869 Auto Unknown Windows Push Notifications User Service_e1869
system - services - AarSvc_e1869
new: DisplayName : Agent Activation Runtime_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_e1869
new: DisplayName : Användartjänst för Spel-DVR och sändning_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_e1869
new: DisplayName : Bluetooth User Support Service_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_e1869
new: DisplayName : CaptureService_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_e1869
new: DisplayName : Clipboard User Service_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_e1869
new: DisplayName : Connected Devices Platform User Service_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_e1869
new: DisplayName : ConsentUX_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_e1869
new: DisplayName : CredentialEnrollmentManagerUserSvc_e1869
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_e1869
new: DisplayName : DeviceAssociationBroker_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_e1869
new: DisplayName : DevicePicker_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_e1869
new: DisplayName : DevicesFlow_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_e1869
new: DisplayName : MessagingService_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_e1869
new: DisplayName : Synkroniseringsvärd_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_e1869
new: DisplayName : Contact Data_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_e1869
new: DisplayName : PrintWorkflow_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UdkUserSvc_e1869
new: DisplayName : Udk-användartjänst_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_e1869
new: DisplayName : User Data Storage_e1869
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_e1869
new: DisplayName : User Data Access_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_e1869
new: DisplayName : Windows Push Notifications User Service_e1869
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2021-10-04 14.34.28
remark :
runtime : 76
count : 26
previous date : 2021-10-03
previous time : 17.55.29
system - hotfix - KB5004331
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5005539
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2021-10-03 17.55.29
remark :
runtime : 15
count : 4
previous date : 2021-10-02
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 94.0.992.31
new: Version : 94.0.992.38
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\94.0.992.31\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\94.0.992.38\elevation_service.exe"
Top Runs Differences at: 2021-10-02 17.55.29
remark :
runtime : 13
count : 2
previous date : 2021-10-01
previous time : 17.55.29
software - product - Microsoft Edge Update
old: Version : 1.3.151.27
new: Version : 1.3.153.45
Top Runs Differences at: 2021-10-01 17.55.29
remark :
runtime : 13
count : 7
previous date : 2021-09-30
previous time : 17.55.29
system - SystemDriver - MpKslb0eb2d57
old: AcceptPause : 0
old: Description : MpKslb0eb2d57
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{FCC27FC6-0674-458F-93B7-E40DDF9918B7}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-09-30 17.55.29
remark :
runtime : 14
count : 7
previous date : 2021-09-29
previous time : 17.55.29
system - SystemDriver - MpKslb0eb2d57
new: AcceptPause : 0
new: Description : MpKslb0eb2d57
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{FCC27FC6-0674-458F-93B7-E40DDF9918B7}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-09-28 17.55.29
remark :
runtime : 14
count : 4
previous date : 2021-09-27
previous time : 17.55.29
software - product - Google Chrome
old: Version : 93.0.4577.82
new: Version : 94.0.4606.61
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\93.0.4577.82\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\94.0.4606.61\elevation_service.exe"
Top Runs Differences at: 2021-09-26 17.55.29
remark :
runtime : 14
count : 4
previous date : 2021-09-25
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 93.0.961.52
new: Version : 94.0.992.31
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\93.0.961.52\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\94.0.992.31\elevation_service.exe"
Top Runs Differences at: 2021-09-23 17.55.30
remark :
runtime : 16
count : 27
previous date : 2021-09-22
previous time : 17.55.29
software - product - Backup and Sync from Google
old: Version : 3.57.3958.2866
old: Publisher : Google, Inc.
old: URLinfo : http://www.google.com
old: ParentKey :
old: Install Location :
old: NoModify : 0x00000001
old: NoRepair : 0x00000001
old: Windows Installer : 0x00000001
system - SystemDriver - MpKsl31ea7598
old: AcceptPause : 0
old: Description : MpKsl31ea7598
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{22746D94-49C8-4538-B3CD-A1C942FBC38E}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2021-09-22 17.55.29
remark :
runtime : 12
count : 7
previous date : 2021-09-22
previous time : 05.19.54
system - SystemDriver - MpKsl31ea7598
new: AcceptPause : 0
new: Description : MpKsl31ea7598
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{22746D94-49C8-4538-B3CD-A1C942FBC38E}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-09-22 05.19.54
remark :
runtime : 23
count : 67
previous date : 2021-09-21
previous time : 17.55.29
boot - startup - GoogleDriveFS
new: Command : C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : NT instans\SYSTEM
new:
new: Command : C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : NT instans\Lokal tjänst
new:
new: Command : C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : NT instans\Nätverkstjänst
new:
new: Command : C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : CORP\administrator
new:
new: Command : C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe --startup_mode
new: Description : GoogleDriveFS
new: Location : HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveFS
new: SettingID :
new: User : .DEFAULT
new:
software - product - Backup and Sync from Google
old: Version : 3.56.3910.4573
new: Version : 3.57.3958.2866
software - product - Google Drive
new: Version : 51.0.15.0
new: Publisher : Google LLC
new: ParentKey :
new: Install Location : C:\Program Files\Google\Drive File Stream\51.0.15.0\GoogleDriveFS.exe
system - SystemDriver - googledrivefs3525
new: AcceptPause : 0
new: Description : googledrivefs3525
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\DRIVERS\googledrivefs3525.sys
new: ServiceType : File System Driver
new: StartMode : System
system - SystemDriver - MpKsl95b7316c
old: AcceptPause : 0
old: Description : MpKsl95b7316c
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{534206F3-9F4A-4794-9D98-3B2FC8DC9289}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - survey
old: DialogBlockingService Disabled Share Process DialogBlockingService
new: DialogBlockingService Disabled Share Process Dialogblockeringstjänst
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
system - services - DialogBlockingService
old: DisplayName : DialogBlockingService
new: DisplayName : Dialogblockeringstjänst
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2021-09-21 17.55.29
remark :
runtime : 16
count : 57
previous date : 2021-09-21
previous time : 13.42.50
software - product - Microsoft Update Health Tools
old: Version : 2.82.0.0
new: Version : 2.83.0.0
system - SystemDriver - MpKsl95b7316c
new: AcceptPause : 0
new: Description : MpKsl95b7316c
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{534206F3-9F4A-4794-9D98-3B2FC8DC9289}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - hotfix - KB5005033
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5005260
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5005565
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5005699
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2021-09-21 13.42.50
remark :
runtime : 31
count : 16
previous date : 2021-08-24
previous time : 17.55.30
software - product - Google Chrome
old: Version : 92.0.4515.159
new: Version : 93.0.4577.82
software - product - Microsoft Edge
old: Version : 92.0.902.78
new: Version : 93.0.961.52
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
old: GoogleChromeElevationService Manual Own Process Google Chrome Elevation Service
new: GoogleChromeElevationService Manual Own Process Google Chrome Elevation Service (GoogleChromeElevationServic
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - GoogleChromeElevationService
old: DisplayName : Google Chrome Elevation Service
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\92.0.4515.159\elevation_service.exe"
new: DisplayName : Google Chrome Elevation Service (GoogleChromeElevationService)
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\93.0.4577.82\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\92.0.902.78\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\93.0.961.52\elevation_service.exe"
Top Runs Differences at: 2021-08-22 17.55.30
remark :
runtime : 13
count : 2
previous date : 2021-08-21
previous time : 17.55.30
software - product - Backup and Sync from Google
old: Version : 3.56.3802.7766
new: Version : 3.56.3910.4573
Top Runs Differences at: 2021-08-21 17.55.30
remark :
runtime : 13
count : 4
previous date : 2021-08-20
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 92.0.902.73
new: Version : 92.0.902.78
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\92.0.902.73\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\92.0.902.78\elevation_service.exe"
Top Runs Differences at: 2021-08-17 17.55.30
remark :
runtime : 13
count : 4
previous date : 2021-08-16
previous time : 17.55.30
software - product - Google Chrome
old: Version : 92.0.4515.131
new: Version : 92.0.4515.159
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\92.0.4515.131\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\92.0.4515.159\elevation_service.exe"
Top Runs Differences at: 2021-08-16 17.55.30
remark :
runtime : 12
count : 14
previous date : 2021-08-15
previous time : 17.55.30
software - product - Microsoft Edge Update
old: Version : 1.3.147.37
new: Version : 1.3.151.27
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2021-08-14 17.55.30
remark :
runtime : 13
count : 4
previous date : 2021-08-13
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 92.0.902.67
new: Version : 92.0.902.73
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\92.0.902.67\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\92.0.902.73\elevation_service.exe"
Top Runs Differences at: 2021-08-13 17.55.30
remark :
runtime : 14
count : 2
previous date : 2021-08-12
previous time : 17.55.30
software - product - Microsoft Update Health Tools
old: Version : 2.81.0.0
new: Version : 2.82.0.0
Top Runs Differences at: 2021-08-10 23.50.16
remark :
runtime : 22
count : 168
previous date : 2021-08-10
previous time : 17.55.29
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
system - hotfix - KB5004296
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5004347
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5005033
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5005260
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_335e3f9 Manual Unknown Agent Activation Runtime_335e3f9
old: BcastDVRUserService_335e3f9 Manual Unknown Användartjänst för Spel-DVR och sändning_335e3f9
old: BluetoothUserService_335e3f9 Manual Unknown Bluetooth User Support Service_335e3f9
old: CaptureService_335e3f9 Manual Unknown CaptureService_335e3f9
old: cbdhsvc_335e3f9 Manual Unknown Clipboard User Service_335e3f9
old: CDPUserSvc_335e3f9 Auto Unknown Connected Devices Platform User Service_335e3f9
old: ConsentUxUserSvc_335e3f9 Manual Unknown ConsentUX_335e3f9
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_335e3f9
old: DeviceAssociationBrokerSvc_335 Manual Unknown DeviceAssociationBroker_335e3f9
old: DevicePickerUserSvc_335e3f9 Manual Unknown DevicePicker_335e3f9
old: DevicesFlowUserSvc_335e3f9 Manual Unknown DevicesFlow_335e3f9
old: MessagingService_335e3f9 Manual Unknown MessagingService_335e3f9
old: OneSyncSvc_335e3f9 Auto Unknown Synkroniseringsvärd_335e3f9
old: PimIndexMaintenanceSvc_335e3f9 Manual Unknown Contact Data_335e3f9
old: PrintWorkflowUserSvc_335e3f9 Manual Unknown PrintWorkflow_335e3f9
old: UdkUserSvc_335e3f9 Manual Unknown Udk-användartjänst_335e3f9
old: UnistoreSvc_335e3f9 Manual Unknown User Data Storage_335e3f9
old: UserDataSvc_335e3f9 Manual Unknown User Data Access_335e3f9
old: WpnUserService_335e3f9 Auto Unknown Windows Push Notifications User Service_335e3f9
system - services - AarSvc_335e3f9
old: DisplayName : Agent Activation Runtime_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_335e3f9
old: DisplayName : Användartjänst för Spel-DVR och sändning_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_335e3f9
old: DisplayName : Bluetooth User Support Service_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_335e3f9
old: DisplayName : CaptureService_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_335e3f9
old: DisplayName : Clipboard User Service_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_335e3f9
old: DisplayName : Connected Devices Platform User Service_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_335e3f9
old: DisplayName : ConsentUX_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_335e3f9
old: DisplayName : CredentialEnrollmentManagerUserSvc_335e3f9
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_335e3f9
old: DisplayName : DeviceAssociationBroker_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_335e3f9
old: DisplayName : DevicePicker_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_335e3f9
old: DisplayName : DevicesFlow_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_335e3f9
old: DisplayName : MessagingService_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_335e3f9
old: DisplayName : Synkroniseringsvärd_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_335e3f9
old: DisplayName : Contact Data_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_335e3f9
old: DisplayName : PrintWorkflow_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_335e3f9
old: DisplayName : Udk-användartjänst_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_335e3f9
old: DisplayName : User Data Storage_335e3f9
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_335e3f9
old: DisplayName : User Data Access_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_335e3f9
old: DisplayName : Windows Push Notifications User Service_335e3f9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2021-08-09 17.55.29
remark :
runtime : 12
count : 164
previous date : 2021-08-08
previous time : 17.55.29
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_335e3f9 Manual Unknown Agent Activation Runtime_335e3f9
new: BcastDVRUserService_335e3f9 Manual Unknown Användartjänst för Spel-DVR och sändning_335e3f9
new: BluetoothUserService_335e3f9 Manual Unknown Bluetooth User Support Service_335e3f9
new: CaptureService_335e3f9 Manual Unknown CaptureService_335e3f9
new: cbdhsvc_335e3f9 Manual Unknown Clipboard User Service_335e3f9
new: CDPUserSvc_335e3f9 Auto Unknown Connected Devices Platform User Service_335e3f9
new: ConsentUxUserSvc_335e3f9 Manual Unknown ConsentUX_335e3f9
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_335e3f9
new: DeviceAssociationBrokerSvc_335 Manual Unknown DeviceAssociationBroker_335e3f9
new: DevicePickerUserSvc_335e3f9 Manual Unknown DevicePicker_335e3f9
new: DevicesFlowUserSvc_335e3f9 Manual Unknown DevicesFlow_335e3f9
new: MessagingService_335e3f9 Manual Unknown MessagingService_335e3f9
new: OneSyncSvc_335e3f9 Auto Unknown Synkroniseringsvärd_335e3f9
new: PimIndexMaintenanceSvc_335e3f9 Manual Unknown Contact Data_335e3f9
new: PrintWorkflowUserSvc_335e3f9 Manual Unknown PrintWorkflow_335e3f9
new: UdkUserSvc_335e3f9 Manual Unknown Udk-användartjänst_335e3f9
new: UnistoreSvc_335e3f9 Manual Unknown User Data Storage_335e3f9
new: UserDataSvc_335e3f9 Manual Unknown User Data Access_335e3f9
new: WpnUserService_335e3f9 Auto Unknown Windows Push Notifications User Service_335e3f9
system - services - AarSvc_335e3f9
new: DisplayName : Agent Activation Runtime_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_335e3f9
new: DisplayName : Användartjänst för Spel-DVR och sändning_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_335e3f9
new: DisplayName : Bluetooth User Support Service_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_335e3f9
new: DisplayName : CaptureService_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_335e3f9
new: DisplayName : Clipboard User Service_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_335e3f9
new: DisplayName : Connected Devices Platform User Service_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_335e3f9
new: DisplayName : ConsentUX_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_335e3f9
new: DisplayName : CredentialEnrollmentManagerUserSvc_335e3f9
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_335e3f9
new: DisplayName : DeviceAssociationBroker_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_335e3f9
new: DisplayName : DevicePicker_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_335e3f9
new: DisplayName : DevicesFlow_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_335e3f9
new: DisplayName : MessagingService_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_335e3f9
new: DisplayName : Synkroniseringsvärd_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_335e3f9
new: DisplayName : Contact Data_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_335e3f9
new: DisplayName : PrintWorkflow_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_335e3f9
new: DisplayName : Udk-användartjänst_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_335e3f9
new: DisplayName : User Data Storage_335e3f9
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_335e3f9
new: DisplayName : User Data Access_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_335e3f9
new: DisplayName : Windows Push Notifications User Service_335e3f9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2021-08-07 17.55.29
remark :
runtime : 12
count : 4
previous date : 2021-08-06
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 92.0.902.62
new: Version : 92.0.902.67
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\92.0.902.62\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\92.0.902.67\elevation_service.exe"
Top Runs Differences at: 2021-08-06 17.55.29
remark :
runtime : 13
count : 7
previous date : 2021-08-05
previous time : 17.55.30
system - SystemDriver - MpKsl603fb384
old: AcceptPause : 0
old: Description : MpKsl603fb384
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3F4660D8-40D0-4187-9312-747FAF90D9F9}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-08-05 17.55.30
remark :
runtime : 13
count : 26
previous date : 2021-08-04
previous time : 17.55.29
system - SystemDriver - MpKslce916133
old: AcceptPause : 0
old: Description : MpKslce916133
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DE744F86-E6F2-4DF2-AA33-41775063DFEC}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - MpKsl603fb384
new: AcceptPause : 0
new: Description : MpKsl603fb384
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3F4660D8-40D0-4187-9312-747FAF90D9F9}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2021-08-04 17.55.29
remark :
runtime : 14
count : 11
previous date : 2021-08-03
previous time : 23.25.42
software - product - Google Chrome
old: Version : 92.0.4515.107
new: Version : 92.0.4515.131
system - SystemDriver - MpKslce916133
new: AcceptPause : 0
new: Description : MpKslce916133
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DE744F86-E6F2-4DF2-AA33-41775063DFEC}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\92.0.4515.107\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\92.0.4515.131\elevation_service.exe"
Top Runs Differences at: 2021-08-03 23.25.42
remark :
runtime : 21
count : 46
previous date : 2021-08-03
previous time : 17.55.29
system - hotfix - KB5003537
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5003742
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5004237
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5004296
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5004331
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5004347
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: WSearch Auto Own Process Windows Search
new: WSearch Disabled Own Process Windows Search
system - services - WSearch
old: StartMode : Auto
new: StartMode : Disabled
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2021-08-01 17.55.29
remark :
runtime : 15
count : 4
previous date : 2021-07-31
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 92.0.902.55
new: Version : 92.0.902.62
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\92.0.902.55\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\92.0.902.62\elevation_service.exe"
Top Runs Differences at: 2021-07-30 17.55.29
remark :
runtime : 18
count : 9
previous date : 2021-07-29
previous time : 17.55.29
software - product - Microsoft Edge Update
old: Version : 1.3.145.49
new: Version : 1.3.147.37
system - SystemDriver - MpKsl4c41a7a7
old: AcceptPause : 0
old: Description : MpKsl4c41a7a7
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9E6864F8-50D8-45C8-BEDF-A97F4471DA8C}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-07-29 17.55.29
remark :
runtime : 13
count : 7
previous date : 2021-07-28
previous time : 21.38.18
system - SystemDriver - MpKsl4c41a7a7
new: AcceptPause : 0
new: Description : MpKsl4c41a7a7
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9E6864F8-50D8-45C8-BEDF-A97F4471DA8C}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-07-28 21.38.18
remark :
runtime : 20
count : 4
previous date : 2021-07-28
previous time : 17.55.30
system - services - survey
old: DiagTrack Auto Own Process Connected User Experiences and Telemetry
new: DiagTrack Disabled Own Process Connected User Experiences and Telemetry
system - services - DiagTrack
old: StartMode : Auto
new: StartMode : Disabled
Top Runs Differences at: 2021-07-27 17.55.30
remark :
runtime : 13
count : 4
previous date : 2021-07-26
previous time : 17.55.29
software - product - Google Chrome
old: Version : 91.0.4472.164
new: Version : 92.0.4515.107
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.164\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\92.0.4515.107\elevation_service.exe"
Top Runs Differences at: 2021-07-25 17.55.29
remark :
runtime : 17
count : 12
previous date : 2021-07-24
previous time : 17.58.31
software - product - Google Chrome
old: Version : 91.0.4472.124
new: Version : 91.0.4472.164
software - product - Microsoft Edge
old: Version : 91.0.864.67
new: Version : 92.0.902.55
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.124\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.164\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.67\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\92.0.902.55\elevation_service.exe"
Top Runs Differences at: 2021-07-24 17.58.31
remark :
runtime : 205
count : 23
previous date : 2021-07-14
previous time : 17.55.30
system - SystemDriver - MpKsl49a90ac1
old: AcceptPause : 0
old: Description : MpKsl49a90ac1
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BD0724A7-C9E9-4CC3-81C9-431D99B4793C}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2021-07-14 17.55.30
remark :
runtime : 13
count : 7
previous date : 2021-07-13
previous time : 23.37.38
system - SystemDriver - MpKsl49a90ac1
new: AcceptPause : 0
new: Description : MpKsl49a90ac1
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BD0724A7-C9E9-4CC3-81C9-431D99B4793C}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-07-13 23.37.38
remark :
runtime : 25
count : 164
previous date : 2021-07-13
previous time : 17.55.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
system - hotfix - KB5004945
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5004237
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_9a505 Manual Unknown Agent Activation Runtime_9a505
old: BcastDVRUserService_9a505 Manual Unknown Användartjänst för Spel-DVR och sändning_9a505
old: BluetoothUserService_9a505 Manual Unknown Bluetooth User Support Service_9a505
old: CaptureService_9a505 Manual Unknown CaptureService_9a505
old: cbdhsvc_9a505 Manual Unknown Clipboard User Service_9a505
old: CDPUserSvc_9a505 Auto Unknown Connected Devices Platform User Service_9a505
old: ConsentUxUserSvc_9a505 Manual Unknown ConsentUX_9a505
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_9a505
old: DeviceAssociationBrokerSvc_9a5 Manual Unknown DeviceAssociationBroker_9a505
old: DevicePickerUserSvc_9a505 Manual Unknown DevicePicker_9a505
old: DevicesFlowUserSvc_9a505 Manual Unknown DevicesFlow_9a505
old: MessagingService_9a505 Manual Unknown MessagingService_9a505
old: OneSyncSvc_9a505 Auto Unknown Synkroniseringsvärd_9a505
old: PimIndexMaintenanceSvc_9a505 Manual Unknown Contact Data_9a505
old: PrintWorkflowUserSvc_9a505 Manual Unknown PrintWorkflow_9a505
old: UdkUserSvc_9a505 Manual Unknown Udk-användartjänst_9a505
old: UnistoreSvc_9a505 Manual Unknown User Data Storage_9a505
old: UserDataSvc_9a505 Manual Unknown User Data Access_9a505
old: WpnUserService_9a505 Auto Unknown Windows Push Notifications User Service_9a505
system - services - AarSvc_9a505
old: DisplayName : Agent Activation Runtime_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_9a505
old: DisplayName : Användartjänst för Spel-DVR och sändning_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_9a505
old: DisplayName : Bluetooth User Support Service_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_9a505
old: DisplayName : CaptureService_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_9a505
old: DisplayName : Clipboard User Service_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_9a505
old: DisplayName : Connected Devices Platform User Service_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_9a505
old: DisplayName : ConsentUX_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_9a505
old: DisplayName : CredentialEnrollmentManagerUserSvc_9a505
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_9a505
old: DisplayName : DeviceAssociationBroker_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_9a505
old: DisplayName : DevicePicker_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_9a505
old: DisplayName : DevicesFlow_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_9a505
old: DisplayName : MessagingService_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_9a505
old: DisplayName : Synkroniseringsvärd_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_9a505
old: DisplayName : Contact Data_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_9a505
old: DisplayName : PrintWorkflow_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_9a505
old: DisplayName : Udk-användartjänst_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_9a505
old: DisplayName : User Data Storage_9a505
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_9a505
old: DisplayName : User Data Access_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_9a505
old: DisplayName : Windows Push Notifications User Service_9a505
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2021-07-11 17.55.30
remark :
runtime : 13
count : 7
previous date : 2021-07-10
previous time : 17.55.31
system - SystemDriver - MpKsl516cb347
old: AcceptPause : 0
old: Description : MpKsl516cb347
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6327713D-31EA-494A-86CC-F8931AD277E9}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-07-10 17.55.31
remark :
runtime : 13
count : 30
previous date : 2021-07-09
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 91.0.864.64
new: Version : 91.0.864.67
system - SystemDriver - MpKsl6595c4af
old: AcceptPause : 0
old: Description : MpKsl6595c4af
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3DE9BDBC-1EBC-4EDD-95D8-50C314D4466E}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - MpKsl516cb347
new: AcceptPause : 0
new: Description : MpKsl516cb347
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6327713D-31EA-494A-86CC-F8931AD277E9}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.64\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.67\elevation_service.exe"
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2021-07-09 17.55.30
remark :
runtime : 13
count : 11
previous date : 2021-07-09
previous time : 14.59.44
system - SystemDriver - MpKsl6595c4af
new: AcceptPause : 0
new: Description : MpKsl6595c4af
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3DE9BDBC-1EBC-4EDD-95D8-50C314D4466E}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
Top Runs Differences at: 2021-07-09 14.59.44
remark :
runtime : 16
count : 160
previous date : 2021-07-08
previous time : 17.55.30
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
software - product - JMRI - Java Model Railroad Interface
old: Version : 4.20+Rc7ba8249b
new: Version : 4.24+Re18b309e8
system - services - survey
new: AarSvc_9a505 Manual Unknown Agent Activation Runtime_9a505
new: BcastDVRUserService_9a505 Manual Unknown Användartjänst för Spel-DVR och sändning_9a505
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_9a505 Manual Unknown Bluetooth User Support Service_9a505
new: CaptureService_9a505 Manual Unknown CaptureService_9a505
new: cbdhsvc_9a505 Manual Unknown Clipboard User Service_9a505
new: CDPUserSvc_9a505 Auto Unknown Connected Devices Platform User Service_9a505
new: ConsentUxUserSvc_9a505 Manual Unknown ConsentUX_9a505
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_9a505
new: DeviceAssociationBrokerSvc_9a5 Manual Unknown DeviceAssociationBroker_9a505
new: DevicePickerUserSvc_9a505 Manual Unknown DevicePicker_9a505
new: DevicesFlowUserSvc_9a505 Manual Unknown DevicesFlow_9a505
new: MessagingService_9a505 Manual Unknown MessagingService_9a505
new: OneSyncSvc_9a505 Auto Unknown Synkroniseringsvärd_9a505
new: PimIndexMaintenanceSvc_9a505 Manual Unknown Contact Data_9a505
new: PrintWorkflowUserSvc_9a505 Manual Unknown PrintWorkflow_9a505
new: UdkUserSvc_9a505 Manual Unknown Udk-användartjänst_9a505
new: UnistoreSvc_9a505 Manual Unknown User Data Storage_9a505
new: UserDataSvc_9a505 Manual Unknown User Data Access_9a505
new: WpnUserService_9a505 Auto Unknown Windows Push Notifications User Service_9a505
system - services - AarSvc_9a505
new: DisplayName : Agent Activation Runtime_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_9a505
new: DisplayName : Användartjänst för Spel-DVR och sändning_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_9a505
new: DisplayName : Bluetooth User Support Service_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_9a505
new: DisplayName : CaptureService_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_9a505
new: DisplayName : Clipboard User Service_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_9a505
new: DisplayName : Connected Devices Platform User Service_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_9a505
new: DisplayName : ConsentUX_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_9a505
new: DisplayName : CredentialEnrollmentManagerUserSvc_9a505
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_9a505
new: DisplayName : DeviceAssociationBroker_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_9a505
new: DisplayName : DevicePicker_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_9a505
new: DisplayName : DevicesFlow_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_9a505
new: DisplayName : MessagingService_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_9a505
new: DisplayName : Synkroniseringsvärd_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_9a505
new: DisplayName : Contact Data_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_9a505
new: DisplayName : PrintWorkflow_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_9a505
new: DisplayName : Udk-användartjänst_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_9a505
new: DisplayName : User Data Storage_9a505
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_9a505
new: DisplayName : User Data Access_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_9a505
new: DisplayName : Windows Push Notifications User Service_9a505
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2021-07-08 17.55.30
remark :
runtime : 13
count : 7
previous date : 2021-07-07
previous time : 17.55.29
system - SystemDriver - MpKsl9de70e59
old: AcceptPause : 0
old: Description : MpKsl9de70e59
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AB680473-C78A-4E81-8695-A1249C06EB35}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-07-07 17.55.29
remark :
runtime : 13
count : 7
previous date : 2021-07-07
previous time : 06.52.15
system - SystemDriver - MpKsl9de70e59
new: AcceptPause : 0
new: Description : MpKsl9de70e59
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AB680473-C78A-4E81-8695-A1249C06EB35}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-07-07 06.52.15
remark :
runtime : 23
count : 22
previous date : 2021-07-06
previous time : 17.55.29
system - hotfix - KB5003690
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5004945
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2021-07-04 17.55.29
remark :
runtime : 14
count : 2
previous date : 2021-07-03
previous time : 17.55.29
software - product - Backup and Sync from Google
old: Version : 3.55.3625.9414
new: Version : 3.56.3802.7766
Top Runs Differences at: 2021-07-03 17.55.29
remark :
runtime : 14
count : 4
previous date : 2021-07-02
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 91.0.864.59
new: Version : 91.0.864.64
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.59\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.64\elevation_service.exe"
Top Runs Differences at: 2021-06-30 17.55.30
remark :
runtime : 13
count : 9
previous date : 2021-06-29
previous time : 17.55.29
software - product - Microsoft Edge Update
old: Version : 1.3.143.57
new: Version : 1.3.145.49
system - SystemDriver - MpKsl1306b693
old: AcceptPause : 0
old: Description : MpKsl1306b693
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{465C1BB7-E899-440E-9E6B-AD5EEDBA912B}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-06-29 17.55.29
remark :
runtime : 14
count : 7
previous date : 2021-06-28
previous time : 21.26.39
system - SystemDriver - MpKsl1306b693
new: AcceptPause : 0
new: Description : MpKsl1306b693
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{465C1BB7-E899-440E-9E6B-AD5EEDBA912B}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-06-28 21.26.39
remark :
runtime : 22
count : 28
previous date : 2021-06-28
previous time : 17.55.30
hardware - printer - OneNote for Windows 10
old: PortName : Microsoft.Office.OneNote_16001.13801.20202.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PortName : Microsoft.Office.OneNote_16001.13801.20534.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
network - connections - Share h
old: Comment :
old: DisplayType : Share
old: Name : \\truenas-2.lan.sjolund.homelinux.net\Pool_1\administrator (h:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\truenas-2.lan.sjolund.homelinux.net\Pool_1\administrator
old: RemotePath : \\truenas-2.lan.sjolund.homelinux.net\Pool_1\administrator
old: ResourceType : Disk
network - connections - Share p
old: Comment :
old: DisplayType : Share
old: Name : \\truenas-2.lan.sjolund.homelinux.net\pool_1 (p:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\truenas-2.lan.sjolund.homelinux.net\pool_1
old: RemotePath : \\truenas-2.lan.sjolund.homelinux.net\pool_1
old: ResourceType : Disk
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2021-06-26 17.55.29
remark :
runtime : 16
count : 4
previous date : 2021-06-25
previous time : 17.55.29
software - product - Microsoft Edge
old: Version : 91.0.864.54
new: Version : 91.0.864.59
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.54\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.59\elevation_service.exe"
Top Runs Differences at: 2021-06-25 17.55.29
remark :
runtime : 16
count : 4
previous date : 2021-06-24
previous time : 17.55.29
software - product - Google Chrome
old: Version : 91.0.4472.114
new: Version : 91.0.4472.124
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.114\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.124\elevation_service.exe"
Top Runs Differences at: 2021-06-24 17.55.29
remark :
runtime : 16
count : 7
previous date : 2021-06-23
previous time : 17.55.29
system - SystemDriver - MpKslaf6d2bd4
old: AcceptPause : 0
old: Description : MpKslaf6d2bd4
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{90E8D147-9A8E-471B-869B-7378365E5682}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-06-23 17.55.29
remark :
runtime : 16
count : 7
previous date : 2021-06-22
previous time : 18.44.34
system - SystemDriver - MpKslaf6d2bd4
new: AcceptPause : 0
new: Description : MpKslaf6d2bd4
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{90E8D147-9A8E-471B-869B-7378365E5682}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-06-22 18.44.34
remark :
runtime : 26
count : 8
previous date : 2021-06-22
previous time : 17.55.30
system - hotfix - KB5003254
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5003537
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2021-06-22 17.55.30
remark :
runtime : 16
count : 13
previous date : 2021-06-22
previous time : 16.37.10
software - product - Microsoft Update Health Tools
old: Version : 2.77.0.0
new: Version : 2.81.0.0
system - SystemDriver - MpKsl27f5140a
old: AcceptPause : 0
old: Description : MpKsl27f5140a
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B5A1D9DC-39C4-400E-B3D0-9C474328C06E}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - survey
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
Top Runs Differences at: 2021-06-22 16.37.10
remark :
runtime : 467
count : 191
previous date : 2021-06-22
previous time : 15.36.18
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
software - product - Google Chrome
old: Version : 91.0.4472.101
new: Version : 91.0.4472.114
software - product - Microsoft Edge
old: Version : 91.0.864.48
new: Version : 91.0.864.54
system - SystemDriver - MpKsl27f5140a
new: AcceptPause : 0
new: Description : MpKsl27f5140a
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B5A1D9DC-39C4-400E-B3D0-9C474328C06E}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - hotfix - KB5003503
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5004476
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5003690
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5003742
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_8fd2c Manual Unknown Agent Activation Runtime_8fd2c
old: BcastDVRUserService_8fd2c Manual Unknown Användartjänst för Spel-DVR och sändning_8fd2c
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_8fd2c Manual Unknown Bluetooth User Support Service_8fd2c
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_8fd2c Manual Unknown CaptureService_8fd2c
old: cbdhsvc_8fd2c Manual Unknown Clipboard User Service_8fd2c
old: CDPUserSvc_8fd2c Auto Unknown Connected Devices Platform User Service_8fd2c
old: ConsentUxUserSvc_8fd2c Manual Unknown ConsentUX_8fd2c
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_8fd2c
old: DeviceAssociationBrokerSvc_8fd Manual Unknown DeviceAssociationBroker_8fd2c
old: DevicePickerUserSvc_8fd2c Manual Unknown DevicePicker_8fd2c
old: DevicesFlowUserSvc_8fd2c Manual Unknown DevicesFlow_8fd2c
old: MessagingService_8fd2c Manual Unknown MessagingService_8fd2c
old: OneSyncSvc_8fd2c Auto Unknown Synkroniseringsvärd_8fd2c
old: PimIndexMaintenanceSvc_8fd2c Manual Unknown Contact Data_8fd2c
old: PrintWorkflowUserSvc_8fd2c Manual Unknown PrintWorkflow_8fd2c
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
old: UdkUserSvc_8fd2c Manual Unknown Udk-användartjänst_8fd2c
old: UnistoreSvc_8fd2c Manual Unknown User Data Storage_8fd2c
old: UserDataSvc_8fd2c Manual Unknown User Data Access_8fd2c
old: WpnUserService_8fd2c Auto Unknown Windows Push Notifications User Service_8fd2c
system - services - AarSvc_8fd2c
old: DisplayName : Agent Activation Runtime_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_8fd2c
old: DisplayName : Användartjänst för Spel-DVR och sändning_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_8fd2c
old: DisplayName : Bluetooth User Support Service_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_8fd2c
old: DisplayName : CaptureService_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_8fd2c
old: DisplayName : Clipboard User Service_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_8fd2c
old: DisplayName : Connected Devices Platform User Service_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_8fd2c
old: DisplayName : ConsentUX_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_8fd2c
old: DisplayName : CredentialEnrollmentManagerUserSvc_8fd2c
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_8fd2c
old: DisplayName : DeviceAssociationBroker_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_8fd2c
old: DisplayName : DevicePicker_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_8fd2c
old: DisplayName : DevicesFlow_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.101\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.114\elevation_service.exe"
system - services - MessagingService_8fd2c
old: DisplayName : MessagingService_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.48\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.54\elevation_service.exe"
system - services - OneSyncSvc_8fd2c
old: DisplayName : Synkroniseringsvärd_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_8fd2c
old: DisplayName : Contact Data_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_8fd2c
old: DisplayName : PrintWorkflow_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UdkUserSvc_8fd2c
old: DisplayName : Udk-användartjänst_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_8fd2c
old: DisplayName : User Data Storage_8fd2c
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_8fd2c
old: DisplayName : User Data Access_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_8fd2c
old: DisplayName : Windows Push Notifications User Service_8fd2c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2021-06-22 15.36.18
remark :
runtime : 37
count : 169
previous date : 2021-06-15
previous time : 17.55.30
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
system - SystemDriver - MpKslfdbbd95e
old: AcceptPause : 0
old: Description : MpKslfdbbd95e
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8A9710F-3183-4AC2-823C-CDE1519C470E}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - survey
new: AarSvc_8fd2c Manual Unknown Agent Activation Runtime_8fd2c
new: BcastDVRUserService_8fd2c Manual Unknown Användartjänst för Spel-DVR och sändning_8fd2c
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_8fd2c Manual Unknown Bluetooth User Support Service_8fd2c
new: CaptureService_8fd2c Manual Unknown CaptureService_8fd2c
new: cbdhsvc_8fd2c Manual Unknown Clipboard User Service_8fd2c
new: CDPUserSvc_8fd2c Auto Unknown Connected Devices Platform User Service_8fd2c
new: ConsentUxUserSvc_8fd2c Manual Unknown ConsentUX_8fd2c
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_8fd2c
new: DeviceAssociationBrokerSvc_8fd Manual Unknown DeviceAssociationBroker_8fd2c
new: DevicePickerUserSvc_8fd2c Manual Unknown DevicePicker_8fd2c
new: DevicesFlowUserSvc_8fd2c Manual Unknown DevicesFlow_8fd2c
old: DialogBlockingService Disabled Share Process Dialogblockeringstjänst
new: DialogBlockingService Disabled Share Process DialogBlockingService
new: MessagingService_8fd2c Manual Unknown MessagingService_8fd2c
new: OneSyncSvc_8fd2c Auto Unknown Synkroniseringsvärd_8fd2c
new: PimIndexMaintenanceSvc_8fd2c Manual Unknown Contact Data_8fd2c
new: PrintWorkflowUserSvc_8fd2c Manual Unknown PrintWorkflow_8fd2c
new: UdkUserSvc_8fd2c Manual Unknown Udk-användartjänst_8fd2c
new: UnistoreSvc_8fd2c Manual Unknown User Data Storage_8fd2c
new: UserDataSvc_8fd2c Manual Unknown User Data Access_8fd2c
new: WpnUserService_8fd2c Auto Unknown Windows Push Notifications User Service_8fd2c
system - services - AarSvc_8fd2c
new: DisplayName : Agent Activation Runtime_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_8fd2c
new: DisplayName : Användartjänst för Spel-DVR och sändning_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_8fd2c
new: DisplayName : Bluetooth User Support Service_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_8fd2c
new: DisplayName : CaptureService_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_8fd2c
new: DisplayName : Clipboard User Service_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_8fd2c
new: DisplayName : Connected Devices Platform User Service_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_8fd2c
new: DisplayName : ConsentUX_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_8fd2c
new: DisplayName : CredentialEnrollmentManagerUserSvc_8fd2c
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_8fd2c
new: DisplayName : DeviceAssociationBroker_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_8fd2c
new: DisplayName : DevicePicker_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_8fd2c
new: DisplayName : DevicesFlow_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DialogBlockingService
old: DisplayName : Dialogblockeringstjänst
new: DisplayName : DialogBlockingService
system - services - MessagingService_8fd2c
new: DisplayName : MessagingService_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_8fd2c
new: DisplayName : Synkroniseringsvärd_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_8fd2c
new: DisplayName : Contact Data_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_8fd2c
new: DisplayName : PrintWorkflow_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_8fd2c
new: DisplayName : Udk-användartjänst_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_8fd2c
new: DisplayName : User Data Storage_8fd2c
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_8fd2c
new: DisplayName : User Data Access_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_8fd2c
new: DisplayName : Windows Push Notifications User Service_8fd2c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2021-06-15 17.55.30
remark :
runtime : 15
count : 7
previous date : 2021-06-15
previous time : 05.05.05
system - SystemDriver - MpKslfdbbd95e
new: AcceptPause : 0
new: Description : MpKslfdbbd95e
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8A9710F-3183-4AC2-823C-CDE1519C470E}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-06-15 05.05.05
remark :
runtime : 23
count : 15
previous date : 2021-06-14
previous time : 17.55.30
system - SystemDriver - MpKsl828ec4d1
old: AcceptPause : 0
old: Description : MpKsl828ec4d1
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{03F44AB1-2A29-4100-AC68-CBD0FEC0DD89}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - survey
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2021-06-14 17.55.30
remark :
runtime : 16
count : 13
previous date : 2021-06-14
previous time : 16.11.49
system - SystemDriver - MpKsl828ec4d1
new: AcceptPause : 0
new: Description : MpKsl828ec4d1
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{03F44AB1-2A29-4100-AC68-CBD0FEC0DD89}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - hotfix - KB5003173
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5004476
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
Top Runs Differences at: 2021-06-14 16.11.49
remark :
runtime : 84
count : 188
previous date : 2021-06-14
previous time : 15.33.04
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
software - product - Google Chrome
old: Version : 90.0.4430.212
new: Version : 91.0.4472.101
software - product - Microsoft Edge
old: Version : 91.0.864.37
new: Version : 91.0.864.48
system - hotfix - KB4601554
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5003242
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5003254
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5003503
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_74e7f Manual Unknown Agent Activation Runtime_74e7f
old: BcastDVRUserService_74e7f Manual Unknown Användartjänst för Spel-DVR och sändning_74e7f
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_74e7f Manual Unknown Bluetooth User Support Service_74e7f
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_74e7f Manual Unknown CaptureService_74e7f
old: cbdhsvc_74e7f Manual Unknown Clipboard User Service_74e7f
old: CDPUserSvc_74e7f Auto Unknown Connected Devices Platform User Service_74e7f
old: ConsentUxUserSvc_74e7f Manual Unknown ConsentUX_74e7f
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_74e7f
old: DeviceAssociationBrokerSvc_74e Manual Unknown DeviceAssociationBroker_74e7f
old: DevicePickerUserSvc_74e7f Manual Unknown DevicePicker_74e7f
old: DevicesFlowUserSvc_74e7f Manual Unknown DevicesFlow_74e7f
old: MessagingService_74e7f Manual Unknown MessagingService_74e7f
old: OneSyncSvc_74e7f Auto Unknown Synkroniseringsvärd_74e7f
old: PimIndexMaintenanceSvc_74e7f Manual Unknown Contact Data_74e7f
old: PrintWorkflowUserSvc_74e7f Manual Unknown PrintWorkflow_74e7f
old: UdkUserSvc_74e7f Manual Unknown Udk-användartjänst_74e7f
old: UnistoreSvc_74e7f Manual Unknown User Data Storage_74e7f
old: UserDataSvc_74e7f Manual Unknown User Data Access_74e7f
old: WpnUserService_74e7f Auto Unknown Windows Push Notifications User Service_74e7f
system - services - AarSvc_74e7f
old: DisplayName : Agent Activation Runtime_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_74e7f
old: DisplayName : Användartjänst för Spel-DVR och sändning_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_74e7f
old: DisplayName : Bluetooth User Support Service_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_74e7f
old: DisplayName : CaptureService_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_74e7f
old: DisplayName : Clipboard User Service_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_74e7f
old: DisplayName : Connected Devices Platform User Service_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_74e7f
old: DisplayName : ConsentUX_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_74e7f
old: DisplayName : CredentialEnrollmentManagerUserSvc_74e7f
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_74e7f
old: DisplayName : DeviceAssociationBroker_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_74e7f
old: DisplayName : DevicePicker_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_74e7f
old: DisplayName : DevicesFlow_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\90.0.4430.212\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.101\elevation_service.exe"
system - services - MessagingService_74e7f
old: DisplayName : MessagingService_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.37\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.48\elevation_service.exe"
system - services - OneSyncSvc_74e7f
old: DisplayName : Synkroniseringsvärd_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_74e7f
old: DisplayName : Contact Data_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_74e7f
old: DisplayName : PrintWorkflow_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_74e7f
old: DisplayName : Udk-användartjänst_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_74e7f
old: DisplayName : User Data Storage_74e7f
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_74e7f
old: DisplayName : User Data Access_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MsMpEng.exe"
system - services - WpnUserService_74e7f
old: DisplayName : Windows Push Notifications User Service_74e7f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2021-06-14 15.33.04
remark :
runtime : 316
count : 164
previous date : 2021-05-30
previous time : 17.55.30
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_74e7f Manual Unknown Agent Activation Runtime_74e7f
new: BcastDVRUserService_74e7f Manual Unknown Användartjänst för Spel-DVR och sändning_74e7f
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_74e7f Manual Unknown Bluetooth User Support Service_74e7f
new: CaptureService_74e7f Manual Unknown CaptureService_74e7f
new: cbdhsvc_74e7f Manual Unknown Clipboard User Service_74e7f
new: CDPUserSvc_74e7f Auto Unknown Connected Devices Platform User Service_74e7f
new: ConsentUxUserSvc_74e7f Manual Unknown ConsentUX_74e7f
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_74e7f
new: DeviceAssociationBrokerSvc_74e Manual Unknown DeviceAssociationBroker_74e7f
new: DevicePickerUserSvc_74e7f Manual Unknown DevicePicker_74e7f
new: DevicesFlowUserSvc_74e7f Manual Unknown DevicesFlow_74e7f
old: DialogBlockingService Disabled Share Process DialogBlockingService
new: DialogBlockingService Disabled Share Process Dialogblockeringstjänst
new: MessagingService_74e7f Manual Unknown MessagingService_74e7f
new: OneSyncSvc_74e7f Auto Unknown Synkroniseringsvärd_74e7f
new: PimIndexMaintenanceSvc_74e7f Manual Unknown Contact Data_74e7f
new: PrintWorkflowUserSvc_74e7f Manual Unknown PrintWorkflow_74e7f
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
new: UdkUserSvc_74e7f Manual Unknown Udk-användartjänst_74e7f
new: UnistoreSvc_74e7f Manual Unknown User Data Storage_74e7f
new: UserDataSvc_74e7f Manual Unknown User Data Access_74e7f
new: WpnUserService_74e7f Auto Unknown Windows Push Notifications User Service_74e7f
system - services - AarSvc_74e7f
new: DisplayName : Agent Activation Runtime_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_74e7f
new: DisplayName : Användartjänst för Spel-DVR och sändning_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_74e7f
new: DisplayName : Bluetooth User Support Service_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_74e7f
new: DisplayName : CaptureService_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_74e7f
new: DisplayName : Clipboard User Service_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_74e7f
new: DisplayName : Connected Devices Platform User Service_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_74e7f
new: DisplayName : ConsentUX_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_74e7f
new: DisplayName : CredentialEnrollmentManagerUserSvc_74e7f
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_74e7f
new: DisplayName : DeviceAssociationBroker_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_74e7f
new: DisplayName : DevicePicker_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_74e7f
new: DisplayName : DevicesFlow_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DialogBlockingService
old: DisplayName : DialogBlockingService
new: DisplayName : Dialogblockeringstjänst
system - services - MessagingService_74e7f
new: DisplayName : MessagingService_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_74e7f
new: DisplayName : Synkroniseringsvärd_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_74e7f
new: DisplayName : Contact Data_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_74e7f
new: DisplayName : PrintWorkflow_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UdkUserSvc_74e7f
new: DisplayName : Udk-användartjänst_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_74e7f
new: DisplayName : User Data Storage_74e7f
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_74e7f
new: DisplayName : User Data Access_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_74e7f
new: DisplayName : Windows Push Notifications User Service_74e7f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2021-05-29 17.55.30
remark :
runtime : 13
count : 4
previous date : 2021-05-28
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 90.0.818.66
new: Version : 91.0.864.37
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\90.0.818.66\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.37\elevation_service.exe"
Top Runs Differences at: 2021-05-22 17.55.30
remark :
runtime : 13
count : 4
previous date : 2021-05-21
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 90.0.818.62
new: Version : 90.0.818.66
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\90.0.818.62\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\90.0.818.66\elevation_service.exe"
Top Runs Differences at: 2021-05-21 12.14.44
remark :
runtime : 19
count : 163
previous date : 2021-05-20
previous time : 17.55.29
general
old: BuildNumber:19042
new: BuildNumber:19043
old: Version:10.0.19042
new: Version:10.0.19043
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
system - hotfix - KB5000736
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_bd645f Manual Unknown Agent Activation Runtime_bd645f
old: BcastDVRUserService_bd645f Manual Unknown Användartjänst för Spel-DVR och sändning_bd645f
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_bd645f Manual Unknown Bluetooth User Support Service_bd645f
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_bd645f Manual Unknown CaptureService_bd645f
old: cbdhsvc_bd645f Manual Unknown Clipboard User Service_bd645f
old: CDPUserSvc_bd645f Auto Unknown Connected Devices Platform User Service_bd645f
old: ConsentUxUserSvc_bd645f Manual Unknown ConsentUX_bd645f
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_bd645f
old: DeviceAssociationBrokerSvc_bd6 Manual Unknown DeviceAssociationBroker_bd645f
old: DevicePickerUserSvc_bd645f Manual Unknown DevicePicker_bd645f
old: DevicesFlowUserSvc_bd645f Manual Unknown DevicesFlow_bd645f
old: MessagingService_bd645f Manual Unknown MessagingService_bd645f
old: OneSyncSvc_bd645f Auto Unknown Synkroniseringsvärd_bd645f
old: PimIndexMaintenanceSvc_bd645f Manual Unknown Contact Data_bd645f
old: PrintWorkflowUserSvc_bd645f Manual Unknown PrintWorkflow_bd645f
old: UdkUserSvc_bd645f Manual Unknown Udk-användartjänst_bd645f
old: UnistoreSvc_bd645f Manual Unknown User Data Storage_bd645f
old: UserDataSvc_bd645f Manual Unknown User Data Access_bd645f
old: WpnUserService_bd645f Auto Unknown Windows Push Notifications User Service_bd645f
system - services - AarSvc_bd645f
old: DisplayName : Agent Activation Runtime_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_bd645f
old: DisplayName : Användartjänst för Spel-DVR och sändning_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_bd645f
old: DisplayName : Bluetooth User Support Service_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_bd645f
old: DisplayName : CaptureService_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_bd645f
old: DisplayName : Clipboard User Service_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_bd645f
old: DisplayName : Connected Devices Platform User Service_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_bd645f
old: DisplayName : ConsentUX_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_bd645f
old: DisplayName : CredentialEnrollmentManagerUserSvc_bd645f
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_bd645f
old: DisplayName : DeviceAssociationBroker_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_bd645f
old: DisplayName : DevicePicker_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_bd645f
old: DisplayName : DevicesFlow_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_bd645f
old: DisplayName : MessagingService_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_bd645f
old: DisplayName : Synkroniseringsvärd_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_bd645f
old: DisplayName : Contact Data_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_bd645f
old: DisplayName : PrintWorkflow_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_bd645f
old: DisplayName : Udk-användartjänst_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_bd645f
old: DisplayName : User Data Storage_bd645f
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_bd645f
old: DisplayName : User Data Access_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_bd645f
old: DisplayName : Windows Push Notifications User Service_bd645f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2021-05-20 17.55.29
remark :
runtime : 14
count : 11
previous date : 2021-05-20
previous time : 17.46.28
software - product - Microsoft Edge
old: Version : 90.0.818.56
new: Version : 90.0.818.62
system - SystemDriver - MpKsl9d51cda7
old: AcceptPause : 0
old: Description : MpKsl9d51cda7
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4656C2EE-4B20-4168-8420-487AEA6E78FA}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\90.0.818.56\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\90.0.818.62\elevation_service.exe"
Top Runs Differences at: 2021-05-20 17.46.28
remark :
runtime : 69
count : 175
previous date : 2021-05-14
previous time : 19.21.45
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
system - SystemDriver - MpKsl9d51cda7
new: AcceptPause : 0
new: Description : MpKsl9d51cda7
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4656C2EE-4B20-4168-8420-487AEA6E78FA}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
new: AarSvc_bd645f Manual Unknown Agent Activation Runtime_bd645f
new: BcastDVRUserService_bd645f Manual Unknown Användartjänst för Spel-DVR och sändning_bd645f
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_bd645f Manual Unknown Bluetooth User Support Service_bd645f
new: CaptureService_bd645f Manual Unknown CaptureService_bd645f
new: cbdhsvc_bd645f Manual Unknown Clipboard User Service_bd645f
new: CDPUserSvc_bd645f Auto Unknown Connected Devices Platform User Service_bd645f
new: ConsentUxUserSvc_bd645f Manual Unknown ConsentUX_bd645f
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_bd645f
new: DeviceAssociationBrokerSvc_bd6 Manual Unknown DeviceAssociationBroker_bd645f
new: DevicePickerUserSvc_bd645f Manual Unknown DevicePicker_bd645f
new: DevicesFlowUserSvc_bd645f Manual Unknown DevicesFlow_bd645f
new: MessagingService_bd645f Manual Unknown MessagingService_bd645f
new: OneSyncSvc_bd645f Auto Unknown Synkroniseringsvärd_bd645f
new: PimIndexMaintenanceSvc_bd645f Manual Unknown Contact Data_bd645f
new: PrintWorkflowUserSvc_bd645f Manual Unknown PrintWorkflow_bd645f
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
new: UdkUserSvc_bd645f Manual Unknown Udk-användartjänst_bd645f
new: UnistoreSvc_bd645f Manual Unknown User Data Storage_bd645f
new: UserDataSvc_bd645f Manual Unknown User Data Access_bd645f
new: WpnUserService_bd645f Auto Unknown Windows Push Notifications User Service_bd645f
system - services - AarSvc_bd645f
new: DisplayName : Agent Activation Runtime_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_bd645f
new: DisplayName : Användartjänst för Spel-DVR och sändning_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_bd645f
new: DisplayName : Bluetooth User Support Service_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_bd645f
new: DisplayName : CaptureService_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_bd645f
new: DisplayName : Clipboard User Service_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_bd645f
new: DisplayName : Connected Devices Platform User Service_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_bd645f
new: DisplayName : ConsentUX_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_bd645f
new: DisplayName : CredentialEnrollmentManagerUserSvc_bd645f
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_bd645f
new: DisplayName : DeviceAssociationBroker_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_bd645f
new: DisplayName : DevicePicker_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_bd645f
new: DisplayName : DevicesFlow_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_bd645f
new: DisplayName : MessagingService_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_bd645f
new: DisplayName : Synkroniseringsvärd_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_bd645f
new: DisplayName : Contact Data_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_bd645f
new: DisplayName : PrintWorkflow_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UdkUserSvc_bd645f
new: DisplayName : Udk-användartjänst_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_bd645f
new: DisplayName : User Data Storage_bd645f
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_bd645f
new: DisplayName : User Data Access_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_bd645f
new: DisplayName : Windows Push Notifications User Service_bd645f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2021-05-14 19.21.45
remark :
runtime : 196
count : 144
previous date : 2021-05-14
previous time : 17.55.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
system - services - survey
old: AarSvc_1669759 Manual Unknown Agent Activation Runtime_1669759
old: BcastDVRUserService_1669759 Manual Unknown Användartjänst för Spel-DVR och sändning_1669759
old: BluetoothUserService_1669759 Manual Unknown Bluetooth User Support Service_1669759
old: CaptureService_1669759 Manual Unknown CaptureService_1669759
old: cbdhsvc_1669759 Manual Unknown Clipboard User Service_1669759
old: CDPUserSvc_1669759 Auto Unknown Connected Devices Platform User Service_1669759
old: ConsentUxUserSvc_1669759 Manual Unknown ConsentUX_1669759
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1669759
old: DeviceAssociationBrokerSvc_166 Manual Unknown DeviceAssociationBroker_1669759
old: DevicePickerUserSvc_1669759 Manual Unknown DevicePicker_1669759
old: DevicesFlowUserSvc_1669759 Manual Unknown DevicesFlow_1669759
old: MessagingService_1669759 Manual Unknown MessagingService_1669759
old: OneSyncSvc_1669759 Auto Unknown Synkroniseringsvärd_1669759
old: PimIndexMaintenanceSvc_1669759 Manual Unknown Contact Data_1669759
old: PrintWorkflowUserSvc_1669759 Manual Unknown PrintWorkflow_1669759
old: UdkUserSvc_1669759 Manual Unknown Udk-användartjänst_1669759
old: UnistoreSvc_1669759 Manual Unknown User Data Storage_1669759
old: UserDataSvc_1669759 Manual Unknown User Data Access_1669759
old: WpnUserService_1669759 Auto Unknown Windows Push Notifications User Service_1669759
system - services - AarSvc_1669759
old: DisplayName : Agent Activation Runtime_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_1669759
old: DisplayName : Användartjänst för Spel-DVR och sändning_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_1669759
old: DisplayName : Bluetooth User Support Service_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_1669759
old: DisplayName : CaptureService_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_1669759
old: DisplayName : Clipboard User Service_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_1669759
old: DisplayName : Connected Devices Platform User Service_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_1669759
old: DisplayName : ConsentUX_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1669759
old: DisplayName : CredentialEnrollmentManagerUserSvc_1669759
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_1669759
old: DisplayName : DeviceAssociationBroker_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_1669759
old: DisplayName : DevicePicker_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_1669759
old: DisplayName : DevicesFlow_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_1669759
old: DisplayName : MessagingService_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_1669759
old: DisplayName : Synkroniseringsvärd_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_1669759
old: DisplayName : Contact Data_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_1669759
old: DisplayName : PrintWorkflow_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_1669759
old: DisplayName : Udk-användartjänst_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_1669759
old: DisplayName : User Data Storage_1669759
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_1669759
old: DisplayName : User Data Access_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MsMpEng.exe"
system - services - WpnUserService_1669759
old: DisplayName : Windows Push Notifications User Service_1669759
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2021-05-14 17.55.30
remark :
runtime : 15
count : 172
previous date : 2021-05-14
previous time : 13.31.00
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
software - product - Google Chrome
old: Version : 90.0.4430.93
new: Version : 90.0.4430.212
software - product - Microsoft Edge
old: Version : 90.0.818.51
new: Version : 90.0.818.56
system - hotfix - KB5001391
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5003156
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5003173
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5003242
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: AarSvc_1669759 Manual Unknown Agent Activation Runtime_1669759
new: BcastDVRUserService_1669759 Manual Unknown Användartjänst för Spel-DVR och sändning_1669759
new: BluetoothUserService_1669759 Manual Unknown Bluetooth User Support Service_1669759
new: CaptureService_1669759 Manual Unknown CaptureService_1669759
new: cbdhsvc_1669759 Manual Unknown Clipboard User Service_1669759
new: CDPUserSvc_1669759 Auto Unknown Connected Devices Platform User Service_1669759
new: ConsentUxUserSvc_1669759 Manual Unknown ConsentUX_1669759
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1669759
new: DeviceAssociationBrokerSvc_166 Manual Unknown DeviceAssociationBroker_1669759
new: DevicePickerUserSvc_1669759 Manual Unknown DevicePicker_1669759
new: DevicesFlowUserSvc_1669759 Manual Unknown DevicesFlow_1669759
new: MessagingService_1669759 Manual Unknown MessagingService_1669759
new: OneSyncSvc_1669759 Auto Unknown Synkroniseringsvärd_1669759
new: PimIndexMaintenanceSvc_1669759 Manual Unknown Contact Data_1669759
new: PrintWorkflowUserSvc_1669759 Manual Unknown PrintWorkflow_1669759
new: UdkUserSvc_1669759 Manual Unknown Udk-användartjänst_1669759
new: UnistoreSvc_1669759 Manual Unknown User Data Storage_1669759
new: UserDataSvc_1669759 Manual Unknown User Data Access_1669759
new: WpnUserService_1669759 Auto Unknown Windows Push Notifications User Service_1669759
system - services - AarSvc_1669759
new: DisplayName : Agent Activation Runtime_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_1669759
new: DisplayName : Användartjänst för Spel-DVR och sändning_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_1669759
new: DisplayName : Bluetooth User Support Service_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_1669759
new: DisplayName : CaptureService_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_1669759
new: DisplayName : Clipboard User Service_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_1669759
new: DisplayName : Connected Devices Platform User Service_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_1669759
new: DisplayName : ConsentUX_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1669759
new: DisplayName : CredentialEnrollmentManagerUserSvc_1669759
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_1669759
new: DisplayName : DeviceAssociationBroker_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_1669759
new: DisplayName : DevicePicker_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_1669759
new: DisplayName : DevicesFlow_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\90.0.4430.93\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\90.0.4430.212\elevation_service.exe"
system - services - MessagingService_1669759
new: DisplayName : MessagingService_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\90.0.818.51\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\90.0.818.56\elevation_service.exe"
system - services - OneSyncSvc_1669759
new: DisplayName : Synkroniseringsvärd_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_1669759
new: DisplayName : Contact Data_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_1669759
new: DisplayName : PrintWorkflow_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_1669759
new: DisplayName : Udk-användartjänst_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_1669759
new: DisplayName : User Data Storage_1669759
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_1669759
new: DisplayName : User Data Access_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_1669759
new: DisplayName : Windows Push Notifications User Service_1669759
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2021-05-14 13.31.00
remark :
runtime : 128
count : 144
previous date : 2021-05-04
previous time : 17.55.29
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
system - services - survey
old: AarSvc_56962c Manual Unknown Agent Activation Runtime_56962c
old: BcastDVRUserService_56962c Manual Unknown Användartjänst för Spel-DVR och sändning_56962c
old: BluetoothUserService_56962c Manual Unknown Bluetooth User Support Service_56962c
old: CaptureService_56962c Manual Unknown CaptureService_56962c
old: cbdhsvc_56962c Manual Unknown Clipboard User Service_56962c
old: CDPUserSvc_56962c Auto Unknown Connected Devices Platform User Service_56962c
old: ConsentUxUserSvc_56962c Manual Unknown ConsentUX_56962c
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_56962c
old: DeviceAssociationBrokerSvc_569 Manual Unknown DeviceAssociationBroker_56962c
old: DevicePickerUserSvc_56962c Manual Unknown DevicePicker_56962c
old: DevicesFlowUserSvc_56962c Manual Unknown DevicesFlow_56962c
old: MessagingService_56962c Manual Unknown MessagingService_56962c
old: OneSyncSvc_56962c Auto Unknown Synkroniseringsvärd_56962c
old: PimIndexMaintenanceSvc_56962c Manual Unknown Contact Data_56962c
old: PrintWorkflowUserSvc_56962c Manual Unknown PrintWorkflow_56962c
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
old: UdkUserSvc_56962c Manual Unknown Udk-användartjänst_56962c
old: UnistoreSvc_56962c Manual Unknown User Data Storage_56962c
old: UserDataSvc_56962c Manual Unknown User Data Access_56962c
old: WpnUserService_56962c Auto Unknown Windows Push Notifications User Service_56962c
system - services - AarSvc_56962c
old: DisplayName : Agent Activation Runtime_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_56962c
old: DisplayName : Användartjänst för Spel-DVR och sändning_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_56962c
old: DisplayName : Bluetooth User Support Service_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_56962c
old: DisplayName : CaptureService_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_56962c
old: DisplayName : Clipboard User Service_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_56962c
old: DisplayName : Connected Devices Platform User Service_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_56962c
old: DisplayName : ConsentUX_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_56962c
old: DisplayName : CredentialEnrollmentManagerUserSvc_56962c
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_56962c
old: DisplayName : DeviceAssociationBroker_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_56962c
old: DisplayName : DevicePicker_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_56962c
old: DisplayName : DevicesFlow_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_56962c
old: DisplayName : MessagingService_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_56962c
old: DisplayName : Synkroniseringsvärd_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_56962c
old: DisplayName : Contact Data_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_56962c
old: DisplayName : PrintWorkflow_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UdkUserSvc_56962c
old: DisplayName : Udk-användartjänst_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_56962c
old: DisplayName : User Data Storage_56962c
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_56962c
old: DisplayName : User Data Access_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_56962c
old: DisplayName : Windows Push Notifications User Service_56962c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2021-05-04 17.55.29
remark :
runtime : 13
count : 152
previous date : 2021-05-04
previous time : 13.11.57
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_56962c Manual Unknown Agent Activation Runtime_56962c
new: BcastDVRUserService_56962c Manual Unknown Användartjänst för Spel-DVR och sändning_56962c
new: BluetoothUserService_56962c Manual Unknown Bluetooth User Support Service_56962c
new: CaptureService_56962c Manual Unknown CaptureService_56962c
new: cbdhsvc_56962c Manual Unknown Clipboard User Service_56962c
new: CDPUserSvc_56962c Auto Unknown Connected Devices Platform User Service_56962c
new: ConsentUxUserSvc_56962c Manual Unknown ConsentUX_56962c
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_56962c
new: DeviceAssociationBrokerSvc_569 Manual Unknown DeviceAssociationBroker_56962c
new: DevicePickerUserSvc_56962c Manual Unknown DevicePicker_56962c
new: DevicesFlowUserSvc_56962c Manual Unknown DevicesFlow_56962c
new: MessagingService_56962c Manual Unknown MessagingService_56962c
new: OneSyncSvc_56962c Auto Unknown Synkroniseringsvärd_56962c
new: PimIndexMaintenanceSvc_56962c Manual Unknown Contact Data_56962c
new: PrintWorkflowUserSvc_56962c Manual Unknown PrintWorkflow_56962c
new: UdkUserSvc_56962c Manual Unknown Udk-användartjänst_56962c
new: UnistoreSvc_56962c Manual Unknown User Data Storage_56962c
new: UserDataSvc_56962c Manual Unknown User Data Access_56962c
new: WpnUserService_56962c Auto Unknown Windows Push Notifications User Service_56962c
system - services - AarSvc_56962c
new: DisplayName : Agent Activation Runtime_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_56962c
new: DisplayName : Användartjänst för Spel-DVR och sändning_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_56962c
new: DisplayName : Bluetooth User Support Service_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_56962c
new: DisplayName : CaptureService_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_56962c
new: DisplayName : Clipboard User Service_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_56962c
new: DisplayName : Connected Devices Platform User Service_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_56962c
new: DisplayName : ConsentUX_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_56962c
new: DisplayName : CredentialEnrollmentManagerUserSvc_56962c
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_56962c
new: DisplayName : DeviceAssociationBroker_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_56962c
new: DisplayName : DevicePicker_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_56962c
new: DisplayName : DevicesFlow_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_56962c
new: DisplayName : MessagingService_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_56962c
new: DisplayName : Synkroniseringsvärd_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_56962c
new: DisplayName : Contact Data_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_56962c
new: DisplayName : PrintWorkflow_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_56962c
new: DisplayName : Udk-användartjänst_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_56962c
new: DisplayName : User Data Storage_56962c
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_56962c
new: DisplayName : User Data Access_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_56962c
new: DisplayName : Windows Push Notifications User Service_56962c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2021-05-04 13.11.57
remark :
runtime : 23
count : 168
previous date : 2021-05-03
previous time : 17.55.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
system - hotfix - KB5001330
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5001405
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5001391
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5003156
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_364f254 Manual Unknown Agent Activation Runtime_364f254
old: BcastDVRUserService_364f254 Manual Unknown Användartjänst för Spel-DVR och sändning_364f254
old: BluetoothUserService_364f254 Manual Unknown Bluetooth User Support Service_364f254
old: CaptureService_364f254 Manual Unknown CaptureService_364f254
old: cbdhsvc_364f254 Manual Unknown Clipboard User Service_364f254
old: CDPUserSvc_364f254 Auto Unknown Connected Devices Platform User Service_364f254
old: ConsentUxUserSvc_364f254 Manual Unknown ConsentUX_364f254
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_364f254
old: DeviceAssociationBrokerSvc_364 Manual Unknown DeviceAssociationBroker_364f254
old: DevicePickerUserSvc_364f254 Manual Unknown DevicePicker_364f254
old: DevicesFlowUserSvc_364f254 Manual Unknown DevicesFlow_364f254
old: MessagingService_364f254 Manual Unknown MessagingService_364f254
old: OneSyncSvc_364f254 Auto Unknown Synkroniseringsvärd_364f254
old: PimIndexMaintenanceSvc_364f254 Manual Unknown Contact Data_364f254
old: PrintWorkflowUserSvc_364f254 Manual Unknown PrintWorkflow_364f254
old: UdkUserSvc_364f254 Manual Unknown Udk-användartjänst_364f254
old: UnistoreSvc_364f254 Manual Unknown User Data Storage_364f254
old: UserDataSvc_364f254 Manual Unknown User Data Access_364f254
old: WpnUserService_364f254 Auto Unknown Windows Push Notifications User Service_364f254
system - services - AarSvc_364f254
old: DisplayName : Agent Activation Runtime_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_364f254
old: DisplayName : Användartjänst för Spel-DVR och sändning_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_364f254
old: DisplayName : Bluetooth User Support Service_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_364f254
old: DisplayName : CaptureService_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_364f254
old: DisplayName : Clipboard User Service_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_364f254
old: DisplayName : Connected Devices Platform User Service_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_364f254
old: DisplayName : ConsentUX_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_364f254
old: DisplayName : CredentialEnrollmentManagerUserSvc_364f254
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_364f254
old: DisplayName : DeviceAssociationBroker_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_364f254
old: DisplayName : DevicePicker_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_364f254
old: DisplayName : DevicesFlow_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_364f254
old: DisplayName : MessagingService_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_364f254
old: DisplayName : Synkroniseringsvärd_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_364f254
old: DisplayName : Contact Data_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_364f254
old: DisplayName : PrintWorkflow_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_364f254
old: DisplayName : Udk-användartjänst_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_364f254
old: DisplayName : User Data Storage_364f254
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_364f254
old: DisplayName : User Data Access_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_364f254
old: DisplayName : Windows Push Notifications User Service_364f254
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2021-05-03 17.55.30
remark :
runtime : 13
count : 146
previous date : 2021-05-03
previous time : 15.15.53
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
software - product - Microsoft Update Health Tools
old: Version : 2.75.0.0
new: Version : 2.77.0.0
system - services - survey
new: AarSvc_364f254 Manual Unknown Agent Activation Runtime_364f254
new: BcastDVRUserService_364f254 Manual Unknown Användartjänst för Spel-DVR och sändning_364f254
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
new: BluetoothUserService_364f254 Manual Unknown Bluetooth User Support Service_364f254
new: CaptureService_364f254 Manual Unknown CaptureService_364f254
new: cbdhsvc_364f254 Manual Unknown Clipboard User Service_364f254
new: CDPUserSvc_364f254 Auto Unknown Connected Devices Platform User Service_364f254
new: ConsentUxUserSvc_364f254 Manual Unknown ConsentUX_364f254
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_364f254
new: DeviceAssociationBrokerSvc_364 Manual Unknown DeviceAssociationBroker_364f254
new: DevicePickerUserSvc_364f254 Manual Unknown DevicePicker_364f254
new: DevicesFlowUserSvc_364f254 Manual Unknown DevicesFlow_364f254
new: MessagingService_364f254 Manual Unknown MessagingService_364f254
new: OneSyncSvc_364f254 Auto Unknown Synkroniseringsvärd_364f254
new: PimIndexMaintenanceSvc_364f254 Manual Unknown Contact Data_364f254
new: PrintWorkflowUserSvc_364f254 Manual Unknown PrintWorkflow_364f254
new: UdkUserSvc_364f254 Manual Unknown Udk-användartjänst_364f254
new: UnistoreSvc_364f254 Manual Unknown User Data Storage_364f254
new: UserDataSvc_364f254 Manual Unknown User Data Access_364f254
new: WpnUserService_364f254 Auto Unknown Windows Push Notifications User Service_364f254
system - services - AarSvc_364f254
new: DisplayName : Agent Activation Runtime_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_364f254
new: DisplayName : Användartjänst för Spel-DVR och sändning_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_364f254
new: DisplayName : Bluetooth User Support Service_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_364f254
new: DisplayName : CaptureService_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_364f254
new: DisplayName : Clipboard User Service_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_364f254
new: DisplayName : Connected Devices Platform User Service_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_364f254
new: DisplayName : ConsentUX_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_364f254
new: DisplayName : CredentialEnrollmentManagerUserSvc_364f254
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_364f254
new: DisplayName : DeviceAssociationBroker_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_364f254
new: DisplayName : DevicePicker_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_364f254
new: DisplayName : DevicesFlow_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_364f254
new: DisplayName : MessagingService_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_364f254
new: DisplayName : Synkroniseringsvärd_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_364f254
new: DisplayName : Contact Data_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_364f254
new: DisplayName : PrintWorkflow_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_364f254
new: DisplayName : Udk-användartjänst_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_364f254
new: DisplayName : User Data Storage_364f254
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_364f254
new: DisplayName : User Data Access_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_364f254
new: DisplayName : Windows Push Notifications User Service_364f254
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2021-05-03 15.15.53
remark :
runtime : 77
count : 148
previous date : 2021-04-27
previous time : 17.55.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
software - product - Microsoft Edge
old: Version : 90.0.818.46
new: Version : 90.0.818.51
system - services - survey
old: AarSvc_2b3843e Manual Unknown Agent Activation Runtime_2b3843e
old: BcastDVRUserService_2b3843e Manual Unknown Användartjänst för Spel-DVR och sändning_2b3843e
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_2b3843e Manual Unknown Bluetooth User Support Service_2b3843e
new: BITS Auto Share Process Background Intelligent Transfer Service
old: CaptureService_2b3843e Manual Unknown CaptureService_2b3843e
old: cbdhsvc_2b3843e Manual Unknown Clipboard User Service_2b3843e
old: CDPUserSvc_2b3843e Auto Unknown Connected Devices Platform User Service_2b3843e
old: ConsentUxUserSvc_2b3843e Manual Unknown ConsentUX_2b3843e
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_2b3843e
old: DeviceAssociationBrokerSvc_2b3 Manual Unknown DeviceAssociationBroker_2b3843e
old: DevicePickerUserSvc_2b3843e Manual Unknown DevicePicker_2b3843e
old: DevicesFlowUserSvc_2b3843e Manual Unknown DevicesFlow_2b3843e
old: MessagingService_2b3843e Manual Unknown MessagingService_2b3843e
old: OneSyncSvc_2b3843e Auto Unknown Synkroniseringsvärd_2b3843e
old: PimIndexMaintenanceSvc_2b3843e Manual Unknown Contact Data_2b3843e
old: PrintWorkflowUserSvc_2b3843e Manual Unknown PrintWorkflow_2b3843e
old: UdkUserSvc_2b3843e Manual Unknown Udk-användartjänst_2b3843e
old: UnistoreSvc_2b3843e Manual Unknown User Data Storage_2b3843e
old: UserDataSvc_2b3843e Manual Unknown User Data Access_2b3843e
old: WpnUserService_2b3843e Auto Unknown Windows Push Notifications User Service_2b3843e
system - services - AarSvc_2b3843e
old: DisplayName : Agent Activation Runtime_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_2b3843e
old: DisplayName : Användartjänst för Spel-DVR och sändning_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_2b3843e
old: DisplayName : Bluetooth User Support Service_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_2b3843e
old: DisplayName : CaptureService_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_2b3843e
old: DisplayName : Clipboard User Service_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_2b3843e
old: DisplayName : Connected Devices Platform User Service_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_2b3843e
old: DisplayName : ConsentUX_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_2b3843e
old: DisplayName : CredentialEnrollmentManagerUserSvc_2b3843e
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_2b3843e
old: DisplayName : DeviceAssociationBroker_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_2b3843e
old: DisplayName : DevicePicker_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_2b3843e
old: DisplayName : DevicesFlow_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_2b3843e
old: DisplayName : MessagingService_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\90.0.818.46\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\90.0.818.51\elevation_service.exe"
system - services - OneSyncSvc_2b3843e
old: DisplayName : Synkroniseringsvärd_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_2b3843e
old: DisplayName : Contact Data_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_2b3843e
old: DisplayName : PrintWorkflow_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_2b3843e
old: DisplayName : Udk-användartjänst_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_2b3843e
old: DisplayName : User Data Storage_2b3843e
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_2b3843e
old: DisplayName : User Data Access_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_2b3843e
old: DisplayName : Windows Push Notifications User Service_2b3843e
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2021-04-27 17.55.30
remark :
runtime : 14
count : 278
previous date : 2021-04-26
previous time : 18.27.46
software - product - Google Chrome
old: Version : 89.0.4389.128
new: Version : 90.0.4430.93
software - product - Microsoft Edge
old: Version : 89.0.774.77
new: Version : 90.0.818.46
system - services - survey
old: AarSvc_1e5dee7 Manual Unknown Agent Activation Runtime_1e5dee7
new: AarSvc_2b3843e Manual Unknown Agent Activation Runtime_2b3843e
old: BcastDVRUserService_1e5dee7 Manual Unknown Användartjänst för Spel-DVR och sändning_1e5dee7
new: BcastDVRUserService_2b3843e Manual Unknown Användartjänst för Spel-DVR och sändning_2b3843e
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_1e5dee7 Manual Unknown Bluetooth User Support Service_1e5dee7
new: BITS Manual Share Process Background Intelligent Transfer Service
new: BluetoothUserService_2b3843e Manual Unknown Bluetooth User Support Service_2b3843e
old: CaptureService_1e5dee7 Manual Unknown CaptureService_1e5dee7
old: cbdhsvc_1e5dee7 Manual Unknown Clipboard User Service_1e5dee7
new: CaptureService_2b3843e Manual Unknown CaptureService_2b3843e
new: cbdhsvc_2b3843e Manual Unknown Clipboard User Service_2b3843e
old: CDPUserSvc_1e5dee7 Auto Unknown Connected Devices Platform User Service_1e5dee7
new: CDPUserSvc_2b3843e Auto Unknown Connected Devices Platform User Service_2b3843e
old: ConsentUxUserSvc_1e5dee7 Manual Unknown ConsentUX_1e5dee7
new: ConsentUxUserSvc_2b3843e Manual Unknown ConsentUX_2b3843e
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1e5dee7
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_2b3843e
old: DeviceAssociationBrokerSvc_1e5 Manual Unknown DeviceAssociationBroker_1e5dee7
new: DeviceAssociationBrokerSvc_2b3 Manual Unknown DeviceAssociationBroker_2b3843e
old: DevicePickerUserSvc_1e5dee7 Manual Unknown DevicePicker_1e5dee7
old: DevicesFlowUserSvc_1e5dee7 Manual Unknown DevicesFlow_1e5dee7
new: DevicePickerUserSvc_2b3843e Manual Unknown DevicePicker_2b3843e
new: DevicesFlowUserSvc_2b3843e Manual Unknown DevicesFlow_2b3843e
old: MessagingService_1e5dee7 Manual Unknown MessagingService_1e5dee7
new: MessagingService_2b3843e Manual Unknown MessagingService_2b3843e
old: OneSyncSvc_1e5dee7 Auto Unknown Synkroniseringsvärd_1e5dee7
new: OneSyncSvc_2b3843e Auto Unknown Synkroniseringsvärd_2b3843e
old: PimIndexMaintenanceSvc_1e5dee7 Manual Unknown Contact Data_1e5dee7
new: PimIndexMaintenanceSvc_2b3843e Manual Unknown Contact Data_2b3843e
old: PrintWorkflowUserSvc_1e5dee7 Manual Unknown PrintWorkflow_1e5dee7
new: PrintWorkflowUserSvc_2b3843e Manual Unknown PrintWorkflow_2b3843e
old: UdkUserSvc_1e5dee7 Manual Unknown Udk-användartjänst_1e5dee7
new: UdkUserSvc_2b3843e Manual Unknown Udk-användartjänst_2b3843e
old: UnistoreSvc_1e5dee7 Manual Unknown User Data Storage_1e5dee7
new: UnistoreSvc_2b3843e Manual Unknown User Data Storage_2b3843e
old: UserDataSvc_1e5dee7 Manual Unknown User Data Access_1e5dee7
new: UserDataSvc_2b3843e Manual Unknown User Data Access_2b3843e
old: WpnUserService_1e5dee7 Auto Unknown Windows Push Notifications User Service_1e5dee7
new: WpnUserService_2b3843e Auto Unknown Windows Push Notifications User Service_2b3843e
system - services - AarSvc_1e5dee7
old: DisplayName : Agent Activation Runtime_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_2b3843e
new: DisplayName : Agent Activation Runtime_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_1e5dee7
old: DisplayName : Användartjänst för Spel-DVR och sändning_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_2b3843e
new: DisplayName : Användartjänst för Spel-DVR och sändning_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_1e5dee7
old: DisplayName : Bluetooth User Support Service_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_2b3843e
new: DisplayName : Bluetooth User Support Service_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_1e5dee7
old: DisplayName : CaptureService_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_1e5dee7
old: DisplayName : Clipboard User Service_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_2b3843e
new: DisplayName : CaptureService_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_2b3843e
new: DisplayName : Clipboard User Service_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_1e5dee7
old: DisplayName : Connected Devices Platform User Service_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_2b3843e
new: DisplayName : Connected Devices Platform User Service_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_1e5dee7
old: DisplayName : ConsentUX_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_2b3843e
new: DisplayName : ConsentUX_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1e5dee7
old: DisplayName : CredentialEnrollmentManagerUserSvc_1e5dee7
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_2b3843e
new: DisplayName : CredentialEnrollmentManagerUserSvc_2b3843e
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_1e5dee7
old: DisplayName : DeviceAssociationBroker_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_2b3843e
new: DisplayName : DeviceAssociationBroker_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_1e5dee7
old: DisplayName : DevicePicker_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_1e5dee7
old: DisplayName : DevicesFlow_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_2b3843e
new: DisplayName : DevicePicker_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_2b3843e
new: DisplayName : DevicesFlow_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.128\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\90.0.4430.93\elevation_service.exe"
system - services - MessagingService_1e5dee7
old: DisplayName : MessagingService_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_2b3843e
new: DisplayName : MessagingService_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.77\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\90.0.818.46\elevation_service.exe"
system - services - OneSyncSvc_1e5dee7
old: DisplayName : Synkroniseringsvärd_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_2b3843e
new: DisplayName : Synkroniseringsvärd_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_1e5dee7
old: DisplayName : Contact Data_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_2b3843e
new: DisplayName : Contact Data_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_1e5dee7
old: DisplayName : PrintWorkflow_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_2b3843e
new: DisplayName : PrintWorkflow_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_1e5dee7
old: DisplayName : Udk-användartjänst_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_2b3843e
new: DisplayName : Udk-användartjänst_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_1e5dee7
old: DisplayName : User Data Storage_1e5dee7
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_2b3843e
new: DisplayName : User Data Storage_2b3843e
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_1e5dee7
old: DisplayName : User Data Access_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_2b3843e
new: DisplayName : User Data Access_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_1e5dee7
old: DisplayName : Windows Push Notifications User Service_1e5dee7
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_2b3843e
new: DisplayName : Windows Push Notifications User Service_2b3843e
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2021-04-26 18.27.46
remark :
runtime : 59
count : 170
previous date : 2021-04-20
previous time : 17.55.30
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
software - product - Microsoft Edge Update
old: Version : 1.3.143.45
new: Version : 1.3.143.57
system - services - survey
new: AarSvc_1e5dee7 Manual Unknown Agent Activation Runtime_1e5dee7
new: BcastDVRUserService_1e5dee7 Manual Unknown Användartjänst för Spel-DVR och sändning_1e5dee7
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_1e5dee7 Manual Unknown Bluetooth User Support Service_1e5dee7
new: CaptureService_1e5dee7 Manual Unknown CaptureService_1e5dee7
new: cbdhsvc_1e5dee7 Manual Unknown Clipboard User Service_1e5dee7
new: CDPUserSvc_1e5dee7 Auto Unknown Connected Devices Platform User Service_1e5dee7
new: ConsentUxUserSvc_1e5dee7 Manual Unknown ConsentUX_1e5dee7
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1e5dee7
new: DeviceAssociationBrokerSvc_1e5 Manual Unknown DeviceAssociationBroker_1e5dee7
new: DevicePickerUserSvc_1e5dee7 Manual Unknown DevicePicker_1e5dee7
new: DevicesFlowUserSvc_1e5dee7 Manual Unknown DevicesFlow_1e5dee7
new: MessagingService_1e5dee7 Manual Unknown MessagingService_1e5dee7
new: OneSyncSvc_1e5dee7 Auto Unknown Synkroniseringsvärd_1e5dee7
new: PimIndexMaintenanceSvc_1e5dee7 Manual Unknown Contact Data_1e5dee7
new: PrintWorkflowUserSvc_1e5dee7 Manual Unknown PrintWorkflow_1e5dee7
new: UdkUserSvc_1e5dee7 Manual Unknown Udk-användartjänst_1e5dee7
new: UnistoreSvc_1e5dee7 Manual Unknown User Data Storage_1e5dee7
new: UserDataSvc_1e5dee7 Manual Unknown User Data Access_1e5dee7
new: WpnUserService_1e5dee7 Auto Unknown Windows Push Notifications User Service_1e5dee7
system - services - AarSvc_1e5dee7
new: DisplayName : Agent Activation Runtime_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_1e5dee7
new: DisplayName : Användartjänst för Spel-DVR och sändning_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_1e5dee7
new: DisplayName : Bluetooth User Support Service_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_1e5dee7
new: DisplayName : CaptureService_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_1e5dee7
new: DisplayName : Clipboard User Service_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_1e5dee7
new: DisplayName : Connected Devices Platform User Service_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_1e5dee7
new: DisplayName : ConsentUX_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1e5dee7
new: DisplayName : CredentialEnrollmentManagerUserSvc_1e5dee7
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_1e5dee7
new: DisplayName : DeviceAssociationBroker_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_1e5dee7
new: DisplayName : DevicePicker_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_1e5dee7
new: DisplayName : DevicesFlow_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_1e5dee7
new: DisplayName : MessagingService_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_1e5dee7
new: DisplayName : Synkroniseringsvärd_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_1e5dee7
new: DisplayName : Contact Data_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_1e5dee7
new: DisplayName : PrintWorkflow_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_1e5dee7
new: DisplayName : Udk-användartjänst_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_1e5dee7
new: DisplayName : User Data Storage_1e5dee7
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_1e5dee7
new: DisplayName : User Data Access_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_1e5dee7
new: DisplayName : Windows Push Notifications User Service_1e5dee7
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonReboot
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonRebootDialog
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2021-04-17 23.59.29
remark :
runtime : 29
count : 23
previous date : 2021-04-17
previous time : 17.55.29
system - hotfix - KB4601050
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonReboot
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonRebootDialog
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2021-04-17 17.13.53
remark :
runtime : 20
count : 16
previous date : 2021-04-16
previous time : 17.55.30
hardware - printer - OneNote for Windows 10
old: PortName : Microsoft.Office.OneNote_16001.13328.20478.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PortName : Microsoft.Office.OneNote_16001.13801.20202.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
system - hotfix - KB4589212
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4601554
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2021-04-16 17.55.30
remark :
runtime : 15
count : 11
previous date : 2021-04-15
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 89.0.774.76
new: Version : 89.0.774.77
system - SystemDriver - MpKsl7f4b63a2
old: AcceptPause : 0
old: Description : MpKsl7f4b63a2
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{706E365A-1C90-440D-8FCA-ECB18584E707}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.76\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.77\elevation_service.exe"
Top Runs Differences at: 2021-04-15 17.55.30
remark :
runtime : 13
count : 11
previous date : 2021-04-15
previous time : 00.02.50
software - product - Google Chrome
old: Version : 89.0.4389.114
new: Version : 89.0.4389.128
system - SystemDriver - MpKsl7f4b63a2
new: AcceptPause : 0
new: Description : MpKsl7f4b63a2
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{706E365A-1C90-440D-8FCA-ECB18584E707}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.114\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.128\elevation_service.exe"
Top Runs Differences at: 2021-04-15 00.02.50
remark :
runtime : 26
count : 38
previous date : 2021-04-14
previous time : 17.55.31
system - SystemDriver - BasicDisplay
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicdisplay.inf_amd64_62ba5773ba05edee\BasicDisplay.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicdisplay.inf_amd64_65ab9a260dbf7467\BasicDisplay.sys
system - SystemDriver - BasicRender
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicrender.inf_amd64_49a8589f00d970d9\BasicRender.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicrender.inf_amd64_df49c4daa6251397\BasicRender.sys
system - services - survey
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\termsrv\RemoteFX\RemoteFXvGPUDisableTask
old: Logon Mode : Interactive/Background
old: Task To Run : %windir%\System32\RemoteFXvGPUDisablement.exe Disable
old: Start In : N/A
old: Comment : $(@%SystemRoot%\system32\RemoteFXvGPUDisablement.exe,-2)
old: Idle Time : Disabled
old: Power Management : No Start On Batteries
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 00:05:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\termsrv\RemoteFX\RemoteFXWarningTask
old: Logon Mode : Interactive/Background
old: Task To Run : %windir%\System32\RemoteFXvGPUDisablement.exe Warning
old: Start In : N/A
old: Comment : $(@%SystemRoot%\system32\RemoteFXvGPUDisablement.exe,-2)
old: Idle Time : Disabled
old: Power Management : No Start On Batteries
old: Run As User : Anv„ndare
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 00:05:00
old: End Date : N/A
old: Days : Every 30 day(s)
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2021-04-14 17.55.31
remark :
runtime : 20
count : 24
previous date : 2021-04-13
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 89.0.774.75
new: Version : 89.0.774.76
system - hotfix - KB5000802
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5000858
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5001330
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5001405
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.75\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.76\elevation_service.exe"
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2021-04-13 17.55.30
remark :
runtime : 13
count : 2
previous date : 2021-04-12
previous time : 17.55.30
software - product - Microsoft Edge Update
old: Version : 1.3.141.63
new: Version : 1.3.143.45
Top Runs Differences at: 2021-04-11 17.55.30
remark :
runtime : 17
count : 16
previous date : 2021-04-10
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 89.0.774.68
new: Version : 89.0.774.75
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.68\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.75\elevation_service.exe"
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2021-04-09 17.55.30
remark :
runtime : 17
count : 7
previous date : 2021-04-08
previous time : 17.55.30
system - SystemDriver - MpKsl68eaf87b
old: AcceptPause : 0
old: Description : MpKsl68eaf87b
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9C2BDAE8-36B4-4D8E-A47F-B8E1173A063B}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-04-08 17.55.30
remark :
runtime : 17
count : 7
previous date : 2021-04-07
previous time : 17.55.30
system - SystemDriver - MpKsl68eaf87b
new: AcceptPause : 0
new: Description : MpKsl68eaf87b
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9C2BDAE8-36B4-4D8E-A47F-B8E1173A063B}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-04-03 17.55.30
remark :
runtime : 17
count : 4
previous date : 2021-04-02
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 89.0.774.63
new: Version : 89.0.774.68
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.63\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.68\elevation_service.exe"
Top Runs Differences at: 2021-04-02 17.55.30
remark :
runtime : 20
count : 11
previous date : 2021-04-01
previous time : 17.55.30
software - product - Google Chrome
old: Version : 89.0.4389.90
new: Version : 89.0.4389.114
system - SystemDriver - MpKsl3b6ed79b
old: AcceptPause : 0
old: Description : MpKsl3b6ed79b
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D176572D-180B-4F22-ADA9-31F21C5E3041}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.90\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.114\elevation_service.exe"
Top Runs Differences at: 2021-04-01 17.55.30
remark :
runtime : 17
count : 7
previous date : 2021-03-31
previous time : 17.55.30
system - SystemDriver - MpKsl3b6ed79b
new: AcceptPause : 0
new: Description : MpKsl3b6ed79b
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D176572D-180B-4F22-ADA9-31F21C5E3041}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-03-29 17.55.30
remark :
runtime : 17
count : 2
previous date : 2021-03-28
previous time : 17.55.30
software - product - Backup and Sync from Google
old: Version : 3.54.3529.0458
new: Version : 3.55.3625.9414
Top Runs Differences at: 2021-03-28 17.55.30
remark :
runtime : 17
count : 4
previous date : 2021-03-27
previous time : 16.55.30
general
old: CurrentTimeZone:60
old: DaylightInEffect:0
new: CurrentTimeZone:120
new: DaylightInEffect:1
Top Runs Differences at: 2021-03-27 16.55.30
remark :
runtime : 18
count : 4
previous date : 2021-03-26
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 89.0.774.57
new: Version : 89.0.774.63
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.57\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.63\elevation_service.exe"
Top Runs Differences at: 2021-03-20 16.55.30
remark :
runtime : 18
count : 4
previous date : 2021-03-19
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 89.0.774.54
new: Version : 89.0.774.57
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.54\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.57\elevation_service.exe"
Top Runs Differences at: 2021-03-18 16.55.30
remark :
runtime : 17
count : 11
previous date : 2021-03-17
previous time : 16.55.30
software - product - Google Chrome
old: Version : 89.0.4389.82
new: Version : 89.0.4389.90
system - SystemDriver - MpKsl112fc257
old: AcceptPause : 0
old: Description : MpKsl112fc257
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B807FD2A-88C2-4C14-9BB9-DF7D5D539947}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.82\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.90\elevation_service.exe"
Top Runs Differences at: 2021-03-17 16.55.30
remark :
runtime : 16
count : 7
previous date : 2021-03-16
previous time : 16.55.30
system - SystemDriver - MpKsl112fc257
new: AcceptPause : 0
new: Description : MpKsl112fc257
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B807FD2A-88C2-4C14-9BB9-DF7D5D539947}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-03-16 16.55.30
remark :
runtime : 17
count : 12
previous date : 2021-03-15
previous time : 16.55.29
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2021-03-15 16.55.29
remark :
runtime : 19
count : 4
previous date : 2021-03-14
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 89.0.774.50
new: Version : 89.0.774.54
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.50\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.54\elevation_service.exe"
Top Runs Differences at: 2021-03-13 16.55.30
remark :
runtime : 18
count : 4
previous date : 2021-03-12
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 89.0.774.45
new: Version : 89.0.774.50
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.45\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.50\elevation_service.exe"
Top Runs Differences at: 2021-03-12 16.55.29
remark :
runtime : 17
count : 7
previous date : 2021-03-11
previous time : 16.55.29
system - SystemDriver - MpKsl07c6e503
old: AcceptPause : 0
old: Description : MpKsl07c6e503
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{83A9C716-C175-466C-9300-FBCD89E272B7}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-03-11 05.39.22
remark :
runtime : 47
count : 24
previous date : 2021-03-10
previous time : 16.55.30
system - SystemDriver - MpKsl76fa2fc3
old: AcceptPause : 0
old: Description : MpKsl76fa2fc3
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{25A90EF6-4457-4DED-8DC9-24868940B07E}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - MpKsl07c6e503
new: AcceptPause : 0
new: Description : MpKsl07c6e503
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{83A9C716-C175-466C-9300-FBCD89E272B7}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2021-03-10 16.55.30
remark :
runtime : 21
count : 27
previous date : 2021-03-09
previous time : 16.55.29
system - SystemDriver - MpKsl76fa2fc3
new: AcceptPause : 0
new: Description : MpKsl76fa2fc3
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{25A90EF6-4457-4DED-8DC9-24868940B07E}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - hotfix - KB4601382
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5000911
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB5000802
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5000858
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2021-03-06 16.55.29
remark :
runtime : 17
count : 20
previous date : 2021-03-05
previous time : 16.55.29
software - product - Google Chrome
old: Version : 89.0.4389.72
new: Version : 89.0.4389.82
software - product - Microsoft Edge
old: Version : 88.0.705.81
new: Version : 89.0.774.45
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.72\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.82\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\88.0.705.81\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.45\elevation_service.exe"
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2021-03-04 16.55.29
remark :
runtime : 17
count : 6
previous date : 2021-03-03
previous time : 16.55.29
software - product - Google Chrome
old: Version : 88.0.4324.190
new: Version : 89.0.4389.72
software - product - Microsoft Edge Update
old: Version : 1.3.141.59
new: Version : 1.3.141.63
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.190\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.72\elevation_service.exe"
Top Runs Differences at: 2021-03-03 16.55.29
remark :
runtime : 17
count : 7
previous date : 2021-03-02
previous time : 16.55.29
system - SystemDriver - MpKsl81fb71fc
old: AcceptPause : 0
old: Description : MpKsl81fb71fc
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9CFDF6C8-DF78-4933-8AE4-3794356A6D92}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2021-03-02 16.55.29
remark :
runtime : 38
count : 7
previous date : 2021-03-02
previous time : 05.23.44
system - SystemDriver - MpKsl81fb71fc
new: AcceptPause : 0
new: Description : MpKsl81fb71fc
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9CFDF6C8-DF78-4933-8AE4-3794356A6D92}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
Top Runs Differences at: 2021-03-02 05.23.44
remark :
runtime : 23
count : 169
previous date : 2021-03-01
previous time : 16.55.29
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
system - SystemDriver - kbldfltr
new: AcceptPause : 0
new: Description : kbldfltr
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\kbldfltr.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
old: AarSvc_437181 Manual Unknown Agent Activation Runtime_437181
old: BcastDVRUserService_437181 Manual Unknown Användartjänst för Spel-DVR och sändning_437181
old: BluetoothUserService_437181 Manual Unknown Bluetooth User Support Service_437181
old: CaptureService_437181 Manual Unknown CaptureService_437181
old: cbdhsvc_437181 Manual Unknown Clipboard User Service_437181
old: CDPUserSvc_437181 Auto Unknown Connected Devices Platform User Service_437181
old: ConsentUxUserSvc_437181 Manual Unknown ConsentUX_437181
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_437181
old: DeviceAssociationBrokerSvc_437 Manual Unknown DeviceAssociationBroker_437181
old: DevicePickerUserSvc_437181 Manual Unknown DevicePicker_437181
old: DevicesFlowUserSvc_437181 Manual Unknown DevicesFlow_437181
new: DialogBlockingService Disabled Share Process DialogBlockingService
old: MessagingService_437181 Manual Unknown MessagingService_437181
new: MsKeyboardFilter Disabled Share Process Microsoft Tangentbordsfilter
old: OneSyncSvc_437181 Auto Unknown Synkroniseringsvärd_437181
old: PimIndexMaintenanceSvc_437181 Manual Unknown Contact Data_437181
old: PrintWorkflowUserSvc_437181 Manual Unknown PrintWorkflow_437181
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
old: UdkUserSvc_437181 Manual Unknown Udk-användartjänst_437181
old: UnistoreSvc_437181 Manual Unknown User Data Storage_437181
old: UserDataSvc_437181 Manual Unknown User Data Access_437181
old: WpnUserService_437181 Auto Unknown Windows Push Notifications User Service_437181
system - services - AarSvc_437181
old: DisplayName : Agent Activation Runtime_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_437181
old: DisplayName : Användartjänst för Spel-DVR och sändning_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_437181
old: DisplayName : Bluetooth User Support Service_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_437181
old: DisplayName : CaptureService_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_437181
old: DisplayName : Clipboard User Service_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_437181
old: DisplayName : Connected Devices Platform User Service_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_437181
old: DisplayName : ConsentUX_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_437181
old: DisplayName : CredentialEnrollmentManagerUserSvc_437181
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_437181
old: DisplayName : DeviceAssociationBroker_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_437181
old: DisplayName : DevicePicker_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_437181
old: DisplayName : DevicesFlow_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DialogBlockingService
new: DisplayName : DialogBlockingService
new: PathName : C:\WINDOWS\system32\svchost.exe -k DialogBlockingService
new: ServiceType : Share Process
new: StartMode : Disabled
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - MessagingService_437181
old: DisplayName : MessagingService_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MsKeyboardFilter
new: DisplayName : Microsoft Tangentbordsfilter
new: PathName : C:\WINDOWS\system32\svchost.exe -k netsvcs -p
new: ServiceType : Share Process
new: StartMode : Disabled
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - OneSyncSvc_437181
old: DisplayName : Synkroniseringsvärd_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_437181
old: DisplayName : Contact Data_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_437181
old: DisplayName : PrintWorkflow_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UdkUserSvc_437181
old: DisplayName : Udk-användartjänst_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_437181
old: DisplayName : User Data Storage_437181
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_437181
old: DisplayName : User Data Access_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_437181
old: DisplayName : Windows Push Notifications User Service_437181
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2021-03-01 16.55.29
remark :
runtime : 17
count : 153
previous date : 2021-03-01
previous time : 13.26.47
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
system - hotfix - KB4601319
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4601382
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB5000911
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: AarSvc_437181 Manual Unknown Agent Activation Runtime_437181
new: BcastDVRUserService_437181 Manual Unknown Användartjänst för Spel-DVR och sändning_437181
new: BluetoothUserService_437181 Manual Unknown Bluetooth User Support Service_437181
new: CaptureService_437181 Manual Unknown CaptureService_437181
new: cbdhsvc_437181 Manual Unknown Clipboard User Service_437181
new: CDPUserSvc_437181 Auto Unknown Connected Devices Platform User Service_437181
new: ConsentUxUserSvc_437181 Manual Unknown ConsentUX_437181
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_437181
new: DeviceAssociationBrokerSvc_437 Manual Unknown DeviceAssociationBroker_437181
new: DevicePickerUserSvc_437181 Manual Unknown DevicePicker_437181
new: DevicesFlowUserSvc_437181 Manual Unknown DevicesFlow_437181
new: MessagingService_437181 Manual Unknown MessagingService_437181
new: OneSyncSvc_437181 Auto Unknown Synkroniseringsvärd_437181
new: PimIndexMaintenanceSvc_437181 Manual Unknown Contact Data_437181
new: PrintWorkflowUserSvc_437181 Manual Unknown PrintWorkflow_437181
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
new: UdkUserSvc_437181 Manual Unknown Udk-användartjänst_437181
new: UnistoreSvc_437181 Manual Unknown User Data Storage_437181
new: UserDataSvc_437181 Manual Unknown User Data Access_437181
new: WpnUserService_437181 Auto Unknown Windows Push Notifications User Service_437181
system - services - AarSvc_437181
new: DisplayName : Agent Activation Runtime_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_437181
new: DisplayName : Användartjänst för Spel-DVR och sändning_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_437181
new: DisplayName : Bluetooth User Support Service_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_437181
new: DisplayName : CaptureService_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_437181
new: DisplayName : Clipboard User Service_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_437181
new: DisplayName : Connected Devices Platform User Service_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_437181
new: DisplayName : ConsentUX_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_437181
new: DisplayName : CredentialEnrollmentManagerUserSvc_437181
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_437181
new: DisplayName : DeviceAssociationBroker_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_437181
new: DisplayName : DevicePicker_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_437181
new: DisplayName : DevicesFlow_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_437181
new: DisplayName : MessagingService_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_437181
new: DisplayName : Synkroniseringsvärd_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_437181
new: DisplayName : Contact Data_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_437181
new: DisplayName : PrintWorkflow_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UdkUserSvc_437181
new: DisplayName : Udk-användartjänst_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_437181
new: DisplayName : User Data Storage_437181
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_437181
new: DisplayName : User Data Access_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_437181
new: DisplayName : Windows Push Notifications User Service_437181
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2021-03-01 13.26.47
remark :
runtime : 34
count : 75
previous date : 2021-03-01
previous time : 11.38.35
software - product - Backup and Sync from Google
old: Version : 3.53.3404.7585
new: Version : 3.54.3529.0458
software - product - Google Chrome
old: Version : 88.0.4324.104
new: Version : 88.0.4324.190
software - product - Microsoft Edge
old: Version : 88.0.705.50
new: Version : 88.0.705.81
software - product - Microsoft Update Health Tools
new: Version : 2.75.0.0
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
system - hotfix - KB4577586
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4586876
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4598242
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4601050
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4601319
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
new: uhssvc Auto Own Process Microsoft Update Health Service
old: wisvc Manual Share Process Windows Insider Service
new: wisvc Manual Share Process Windows Insider-tjänsten
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.104\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.190\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\88.0.705.50\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\88.0.705.81\elevation_service.exe"
system - services - uhssvc
new: DisplayName : Microsoft Update Health Service
new: PathName : "C:\Program Files\Microsoft Update Health Tools\uhssvc.exe"
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe"
system - services - wisvc
old: DisplayName : Windows Insider Service
new: DisplayName : Windows Insider-tjänsten
system - services - EventLog
new: Required by : uhssvc
system - services - uhssvc
new: Requires : EventLog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2021-03-01 11.38.35
remark :
runtime : 116
count : 11
previous date : 2021-01-26
previous time : 16.55.30
software - product - Google Update Helper
old: Version : 1.3.36.51
old: Publisher : Google LLC
old: ParentKey :
old: Install Location :
old: Windows Installer : 0x00000001
software - product - Microsoft Edge Update
old: Version : 1.3.139.71
new: Version : 1.3.141.59
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
Top Runs Differences at: 2021-01-25 16.55.29
remark :
runtime : 25
count : 184
previous date : 2021-01-25
previous time : 16.41.54
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
software - product - Adobe Flash Player 32 NPAPI
old: Version : 32.0.0.465
old: Publisher : Adobe
old: URLinfo : http://www.adobe.com
old: ParentKey :
old: Install Location :
old: NoModify : 0x00000001
old: NoRepair : 0x00000001
system - services - survey
old: AarSvc_b3c15 Manual Unknown Agent Activation Runtime_b3c15
old: AdobeFlashPlayerUpdateSvc Manual Own Process Adobe Flash Player Update Service
old: BcastDVRUserService_b3c15 Manual Unknown Användartjänst för Spel-DVR och sändning_b3c15
old: BluetoothUserService_b3c15 Manual Unknown Bluetooth User Support Service_b3c15
old: CaptureService_b3c15 Manual Unknown CaptureService_b3c15
old: cbdhsvc_b3c15 Manual Unknown Clipboard User Service_b3c15
old: CDPUserSvc_b3c15 Auto Unknown Connected Devices Platform User Service_b3c15
old: ConsentUxUserSvc_b3c15 Manual Unknown ConsentUX_b3c15
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_b3c15
old: DeviceAssociationBrokerSvc_b3c Manual Unknown DeviceAssociationBroker_b3c15
old: DevicePickerUserSvc_b3c15 Manual Unknown DevicePicker_b3c15
old: DevicesFlowUserSvc_b3c15 Manual Unknown DevicesFlow_b3c15
old: MessagingService_b3c15 Manual Unknown MessagingService_b3c15
old: OneSyncSvc_b3c15 Auto Unknown Synkroniseringsvärd_b3c15
old: PimIndexMaintenanceSvc_b3c15 Manual Unknown Contact Data_b3c15
old: PrintWorkflowUserSvc_b3c15 Manual Unknown PrintWorkflow_b3c15
old: UdkUserSvc_b3c15 Manual Unknown Udk-användartjänst_b3c15
old: UnistoreSvc_b3c15 Manual Unknown User Data Storage_b3c15
old: UserDataSvc_b3c15 Manual Unknown User Data Access_b3c15
old: WpnUserService_b3c15 Auto Unknown Windows Push Notifications User Service_b3c15
system - services - AarSvc_b3c15
old: DisplayName : Agent Activation Runtime_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AdobeFlashPlayerUpdateSvc
old: DisplayName : Adobe Flash Player Update Service
old: PathName : C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
old: ServiceType : Own Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - BcastDVRUserService_b3c15
old: DisplayName : Användartjänst för Spel-DVR och sändning_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_b3c15
old: DisplayName : Bluetooth User Support Service_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_b3c15
old: DisplayName : CaptureService_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_b3c15
old: DisplayName : Clipboard User Service_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_b3c15
old: DisplayName : Connected Devices Platform User Service_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_b3c15
old: DisplayName : ConsentUX_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_b3c15
old: DisplayName : CredentialEnrollmentManagerUserSvc_b3c15
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_b3c15
old: DisplayName : DeviceAssociationBroker_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_b3c15
old: DisplayName : DevicePicker_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_b3c15
old: DisplayName : DevicesFlow_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_b3c15
old: DisplayName : MessagingService_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_b3c15
old: DisplayName : Synkroniseringsvärd_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_b3c15
old: DisplayName : Contact Data_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_b3c15
old: DisplayName : PrintWorkflow_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_b3c15
old: DisplayName : Udk-användartjänst_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_b3c15
old: DisplayName : User Data Storage_b3c15
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_b3c15
old: DisplayName : User Data Access_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_b3c15
old: DisplayName : Windows Push Notifications User Service_b3c15
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Adobe Flash Player NPAPI Notifier
old: Logon Mode : Interactive only
old: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe -check plugin
old: Start In : N/A
old: Comment : Den h„r funktionen h†ller Adobe Flash NPAPI Player-installationen uppdaterad med de senaste f”rb„ttringarna och s„kerhetskorrigeringarna. Om du inaktiverar eller tar bort funktionen kan Adobe Flash Player inte skydda enheten automatiskt med de senaste s
old: Idle Time : Disabled
old: Power Management : Stop On Battery Mode
old: Run As User : trains
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : Every 7 day(s)
old: Months : N/A
old: Repeat: Every : 1 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
old: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
system - scheduled tasks - \Adobe Flash Player Updater
old: Logon Mode : Interactive/Background
old: Task To Run : C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
old: Start In : N/A
old: Comment : Med den h„r uppgiften h†lls Adobe Flash Player-installationen uppdaterad med de senaste f”rb„ttringarna och s„kerhetskorrigeringarna. Om du inaktiverar eller tar bort uppgiften kan Adobe Flash Player inte skydda datorn automatiskt med de senaste s„kerhe
old: Idle Time : Disabled
old: Power Management : Stop On Battery Mode
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : Every 1 day(s)
old: Months : N/A
old: Repeat: Every : 1 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
old: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
Top Runs Differences at: 2021-01-25 16.41.54
remark :
runtime : 33
count : 161
previous date : 2021-01-25
previous time : 14.39.32
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
software - product - Microsoft Edge
old: Version : 87.0.664.66
new: Version : 88.0.705.50
system - SystemDriver - WUDFWpdFs
old: PathName : C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
new: PathName : C:\WINDOWS\system32\drivers\WUDFRd.sys
system - hotfix - KB4592438
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4598242
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4598481
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: AarSvc_b3c15 Manual Unknown Agent Activation Runtime_b3c15
new: BcastDVRUserService_b3c15 Manual Unknown Användartjänst för Spel-DVR och sändning_b3c15
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
new: BluetoothUserService_b3c15 Manual Unknown Bluetooth User Support Service_b3c15
new: CaptureService_b3c15 Manual Unknown CaptureService_b3c15
new: cbdhsvc_b3c15 Manual Unknown Clipboard User Service_b3c15
new: CDPUserSvc_b3c15 Auto Unknown Connected Devices Platform User Service_b3c15
new: ConsentUxUserSvc_b3c15 Manual Unknown ConsentUX_b3c15
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_b3c15
new: DeviceAssociationBrokerSvc_b3c Manual Unknown DeviceAssociationBroker_b3c15
new: DevicePickerUserSvc_b3c15 Manual Unknown DevicePicker_b3c15
new: DevicesFlowUserSvc_b3c15 Manual Unknown DevicesFlow_b3c15
new: MessagingService_b3c15 Manual Unknown MessagingService_b3c15
new: OneSyncSvc_b3c15 Auto Unknown Synkroniseringsvärd_b3c15
new: PimIndexMaintenanceSvc_b3c15 Manual Unknown Contact Data_b3c15
new: PrintWorkflowUserSvc_b3c15 Manual Unknown PrintWorkflow_b3c15
new: UdkUserSvc_b3c15 Manual Unknown Udk-användartjänst_b3c15
new: UnistoreSvc_b3c15 Manual Unknown User Data Storage_b3c15
new: UserDataSvc_b3c15 Manual Unknown User Data Access_b3c15
new: WpnUserService_b3c15 Auto Unknown Windows Push Notifications User Service_b3c15
system - services - AarSvc_b3c15
new: DisplayName : Agent Activation Runtime_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_b3c15
new: DisplayName : Användartjänst för Spel-DVR och sändning_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_b3c15
new: DisplayName : Bluetooth User Support Service_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_b3c15
new: DisplayName : CaptureService_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_b3c15
new: DisplayName : Clipboard User Service_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_b3c15
new: DisplayName : Connected Devices Platform User Service_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_b3c15
new: DisplayName : ConsentUX_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_b3c15
new: DisplayName : CredentialEnrollmentManagerUserSvc_b3c15
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_b3c15
new: DisplayName : DeviceAssociationBroker_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_b3c15
new: DisplayName : DevicePicker_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_b3c15
new: DisplayName : DevicesFlow_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_b3c15
new: DisplayName : MessagingService_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.66\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\88.0.705.50\elevation_service.exe"
system - services - OneSyncSvc_b3c15
new: DisplayName : Synkroniseringsvärd_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_b3c15
new: DisplayName : Contact Data_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_b3c15
new: DisplayName : PrintWorkflow_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_b3c15
new: DisplayName : Udk-användartjänst_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_b3c15
new: DisplayName : User Data Storage_b3c15
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_b3c15
new: DisplayName : User Data Access_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_b3c15
new: DisplayName : Windows Push Notifications User Service_b3c15
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2021-01-25 14.39.32
remark :
runtime : 69
count : 150
previous date : 2020-12-25
previous time : 16.55.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
software - product - Google Chrome
old: Version : 87.0.4280.88
new: Version : 88.0.4324.104
software - product - Microsoft Edge Update
old: Version : 1.3.139.59
new: Version : 1.3.139.71
system - services - survey
old: AarSvc_97e210 Manual Unknown Agent Activation Runtime_97e210
old: BcastDVRUserService_97e210 Manual Unknown Användartjänst för Spel-DVR och sändning_97e210
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_97e210 Manual Unknown Bluetooth User Support Service_97e210
new: BITS Auto Share Process Background Intelligent Transfer Service
old: CaptureService_97e210 Manual Unknown CaptureService_97e210
old: cbdhsvc_97e210 Manual Unknown Clipboard User Service_97e210
old: CDPUserSvc_97e210 Auto Unknown Connected Devices Platform User Service_97e210
old: ConsentUxUserSvc_97e210 Manual Unknown ConsentUX_97e210
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_97e210
old: DeviceAssociationBrokerSvc_97e Manual Unknown DeviceAssociationBroker_97e210
old: DevicePickerUserSvc_97e210 Manual Unknown DevicePicker_97e210
old: DevicesFlowUserSvc_97e210 Manual Unknown DevicesFlow_97e210
old: MessagingService_97e210 Manual Unknown MessagingService_97e210
old: OneSyncSvc_97e210 Auto Unknown Synkroniseringsvärd_97e210
old: PimIndexMaintenanceSvc_97e210 Manual Unknown Contact Data_97e210
old: PrintWorkflowUserSvc_97e210 Manual Unknown PrintWorkflow_97e210
old: UdkUserSvc_97e210 Manual Unknown Udk-användartjänst_97e210
old: UnistoreSvc_97e210 Manual Unknown User Data Storage_97e210
old: UserDataSvc_97e210 Manual Unknown User Data Access_97e210
old: WpnUserService_97e210 Auto Unknown Windows Push Notifications User Service_97e210
system - services - AarSvc_97e210
old: DisplayName : Agent Activation Runtime_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_97e210
old: DisplayName : Användartjänst för Spel-DVR och sändning_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_97e210
old: DisplayName : Bluetooth User Support Service_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_97e210
old: DisplayName : CaptureService_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_97e210
old: DisplayName : Clipboard User Service_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_97e210
old: DisplayName : Connected Devices Platform User Service_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_97e210
old: DisplayName : ConsentUX_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_97e210
old: DisplayName : CredentialEnrollmentManagerUserSvc_97e210
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_97e210
old: DisplayName : DeviceAssociationBroker_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_97e210
old: DisplayName : DevicePicker_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_97e210
old: DisplayName : DevicesFlow_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.88\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.104\elevation_service.exe"
system - services - MessagingService_97e210
old: DisplayName : MessagingService_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_97e210
old: DisplayName : Synkroniseringsvärd_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_97e210
old: DisplayName : Contact Data_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_97e210
old: DisplayName : PrintWorkflow_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_97e210
old: DisplayName : Udk-användartjänst_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_97e210
old: DisplayName : User Data Storage_97e210
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_97e210
old: DisplayName : User Data Access_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_97e210
old: DisplayName : Windows Push Notifications User Service_97e210
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2020-12-22 16.55.30
remark :
runtime : 17
count : 140
previous date : 2020-12-21
previous time : 17.04.11
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_97e210 Manual Unknown Agent Activation Runtime_97e210
new: BcastDVRUserService_97e210 Manual Unknown Användartjänst för Spel-DVR och sändning_97e210
new: BluetoothUserService_97e210 Manual Unknown Bluetooth User Support Service_97e210
new: CaptureService_97e210 Manual Unknown CaptureService_97e210
new: cbdhsvc_97e210 Manual Unknown Clipboard User Service_97e210
new: CDPUserSvc_97e210 Auto Unknown Connected Devices Platform User Service_97e210
new: ConsentUxUserSvc_97e210 Manual Unknown ConsentUX_97e210
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_97e210
new: DeviceAssociationBrokerSvc_97e Manual Unknown DeviceAssociationBroker_97e210
new: DevicePickerUserSvc_97e210 Manual Unknown DevicePicker_97e210
new: DevicesFlowUserSvc_97e210 Manual Unknown DevicesFlow_97e210
new: MessagingService_97e210 Manual Unknown MessagingService_97e210
new: OneSyncSvc_97e210 Auto Unknown Synkroniseringsvärd_97e210
new: PimIndexMaintenanceSvc_97e210 Manual Unknown Contact Data_97e210
new: PrintWorkflowUserSvc_97e210 Manual Unknown PrintWorkflow_97e210
new: UdkUserSvc_97e210 Manual Unknown Udk-användartjänst_97e210
new: UnistoreSvc_97e210 Manual Unknown User Data Storage_97e210
new: UserDataSvc_97e210 Manual Unknown User Data Access_97e210
new: WpnUserService_97e210 Auto Unknown Windows Push Notifications User Service_97e210
system - services - AarSvc_97e210
new: DisplayName : Agent Activation Runtime_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_97e210
new: DisplayName : Användartjänst för Spel-DVR och sändning_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_97e210
new: DisplayName : Bluetooth User Support Service_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_97e210
new: DisplayName : CaptureService_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_97e210
new: DisplayName : Clipboard User Service_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_97e210
new: DisplayName : Connected Devices Platform User Service_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_97e210
new: DisplayName : ConsentUX_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_97e210
new: DisplayName : CredentialEnrollmentManagerUserSvc_97e210
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_97e210
new: DisplayName : DeviceAssociationBroker_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_97e210
new: DisplayName : DevicePicker_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_97e210
new: DisplayName : DevicesFlow_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_97e210
new: DisplayName : MessagingService_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_97e210
new: DisplayName : Synkroniseringsvärd_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_97e210
new: DisplayName : Contact Data_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_97e210
new: DisplayName : PrintWorkflow_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_97e210
new: DisplayName : Udk-användartjänst_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_97e210
new: DisplayName : User Data Storage_97e210
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_97e210
new: DisplayName : User Data Access_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_97e210
new: DisplayName : Windows Push Notifications User Service_97e210
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2020-12-21 16.55.34
remark :
runtime : 43
count : 16
previous date : 2020-12-20
previous time : 16.55.30
software - product - Railroad & Co. Version 9.0
new: Version :
new: Publisher :
new: ParentKey :
new: Install Location :
system - scheduled tasks - \Agent Activation Runtime\S-1-5-21-67378208-2373681959-2840377077-1107
new: Logon Mode : Interactive only
new: Task To Run : C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : trains
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2020-12-20 16.55.30
remark :
runtime : 16
count : 4
previous date : 2020-12-19
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 87.0.664.60
new: Version : 87.0.664.66
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.60\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.66\elevation_service.exe"
Top Runs Differences at: 2020-12-19 16.55.30
remark :
runtime : 15
count : 140
previous date : 2020-12-18
previous time : 16.55.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
system - services - survey
old: AarSvc_80b865 Manual Unknown Agent Activation Runtime_80b865
old: BcastDVRUserService_80b865 Manual Unknown Användartjänst för Spel-DVR och sändning_80b865
old: BluetoothUserService_80b865 Manual Unknown Bluetooth User Support Service_80b865
old: CaptureService_80b865 Manual Unknown CaptureService_80b865
old: cbdhsvc_80b865 Manual Unknown Clipboard User Service_80b865
old: CDPUserSvc_80b865 Auto Unknown Connected Devices Platform User Service_80b865
old: ConsentUxUserSvc_80b865 Manual Unknown ConsentUX_80b865
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_80b865
old: DeviceAssociationBrokerSvc_80b Manual Unknown DeviceAssociationBroker_80b865
old: DevicePickerUserSvc_80b865 Manual Unknown DevicePicker_80b865
old: DevicesFlowUserSvc_80b865 Manual Unknown DevicesFlow_80b865
old: MessagingService_80b865 Manual Unknown MessagingService_80b865
old: OneSyncSvc_80b865 Auto Unknown Synkroniseringsvärd_80b865
old: PimIndexMaintenanceSvc_80b865 Manual Unknown Contact Data_80b865
old: PrintWorkflowUserSvc_80b865 Manual Unknown PrintWorkflow_80b865
old: UdkUserSvc_80b865 Manual Unknown Udk-användartjänst_80b865
old: UnistoreSvc_80b865 Manual Unknown User Data Storage_80b865
old: UserDataSvc_80b865 Manual Unknown User Data Access_80b865
old: WpnUserService_80b865 Auto Unknown Windows Push Notifications User Service_80b865
system - services - AarSvc_80b865
old: DisplayName : Agent Activation Runtime_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_80b865
old: DisplayName : Användartjänst för Spel-DVR och sändning_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_80b865
old: DisplayName : Bluetooth User Support Service_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_80b865
old: DisplayName : CaptureService_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_80b865
old: DisplayName : Clipboard User Service_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_80b865
old: DisplayName : Connected Devices Platform User Service_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_80b865
old: DisplayName : ConsentUX_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_80b865
old: DisplayName : CredentialEnrollmentManagerUserSvc_80b865
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_80b865
old: DisplayName : DeviceAssociationBroker_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_80b865
old: DisplayName : DevicePicker_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_80b865
old: DisplayName : DevicesFlow_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_80b865
old: DisplayName : MessagingService_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_80b865
old: DisplayName : Synkroniseringsvärd_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_80b865
old: DisplayName : Contact Data_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_80b865
old: DisplayName : PrintWorkflow_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_80b865
old: DisplayName : Udk-användartjänst_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_80b865
old: DisplayName : User Data Storage_80b865
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_80b865
old: DisplayName : User Data Access_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_80b865
old: DisplayName : Windows Push Notifications User Service_80b865
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2020-12-18 16.55.30
remark :
runtime : 16
count : 37
previous date : 2020-12-17
previous time : 16.55.29
system - hotfix - KB4561600
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4562830
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4566785
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4570334
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4576754
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4577266
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4580325
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4586864
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4586876
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4592438
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4593175
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
Top Runs Differences at: 2020-12-17 16.55.29
remark :
runtime : 1252
count : 41
previous date : 2020-12-17
previous time : 15.46.20
system - hotfix - KB4561600
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4562830
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4566785
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4570334
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4576754
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4577266
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4580325
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4586864
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4586876
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4592438
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4593175
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
Top Runs Differences at: 2020-12-17 15.46.20
remark :
runtime : 45
count : 162
previous date : 2020-12-15
previous time : 18.18.09
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
hardware - printer - OneNote for Windows 10
old: PortName : Microsoft.Office.OneNote_16001.13328.20348.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PortName : Microsoft.Office.OneNote_16001.13328.20478.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
software - product - Adobe Flash Player 32 NPAPI
old: Version : 32.0.0.453
new: Version : 32.0.0.465
system - services - survey
new: AarSvc_80b865 Manual Unknown Agent Activation Runtime_80b865
new: BcastDVRUserService_80b865 Manual Unknown Användartjänst för Spel-DVR och sändning_80b865
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_80b865 Manual Unknown Bluetooth User Support Service_80b865
new: CaptureService_80b865 Manual Unknown CaptureService_80b865
new: cbdhsvc_80b865 Manual Unknown Clipboard User Service_80b865
new: CDPUserSvc_80b865 Auto Unknown Connected Devices Platform User Service_80b865
new: ConsentUxUserSvc_80b865 Manual Unknown ConsentUX_80b865
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_80b865
new: DeviceAssociationBrokerSvc_80b Manual Unknown DeviceAssociationBroker_80b865
new: DevicePickerUserSvc_80b865 Manual Unknown DevicePicker_80b865
new: DevicesFlowUserSvc_80b865 Manual Unknown DevicesFlow_80b865
new: MessagingService_80b865 Manual Unknown MessagingService_80b865
new: OneSyncSvc_80b865 Auto Unknown Synkroniseringsvärd_80b865
new: PimIndexMaintenanceSvc_80b865 Manual Unknown Contact Data_80b865
new: PrintWorkflowUserSvc_80b865 Manual Unknown PrintWorkflow_80b865
new: UdkUserSvc_80b865 Manual Unknown Udk-användartjänst_80b865
new: UnistoreSvc_80b865 Manual Unknown User Data Storage_80b865
new: UserDataSvc_80b865 Manual Unknown User Data Access_80b865
new: WpnUserService_80b865 Auto Unknown Windows Push Notifications User Service_80b865
system - services - AarSvc_80b865
new: DisplayName : Agent Activation Runtime_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_80b865
new: DisplayName : Användartjänst för Spel-DVR och sändning_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_80b865
new: DisplayName : Bluetooth User Support Service_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_80b865
new: DisplayName : CaptureService_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_80b865
new: DisplayName : Clipboard User Service_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_80b865
new: DisplayName : Connected Devices Platform User Service_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_80b865
new: DisplayName : ConsentUX_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_80b865
new: DisplayName : CredentialEnrollmentManagerUserSvc_80b865
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_80b865
new: DisplayName : DeviceAssociationBroker_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_80b865
new: DisplayName : DevicePicker_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_80b865
new: DisplayName : DevicesFlow_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_80b865
new: DisplayName : MessagingService_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_80b865
new: DisplayName : Synkroniseringsvärd_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_80b865
new: DisplayName : Contact Data_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_80b865
new: DisplayName : PrintWorkflow_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_80b865
new: DisplayName : Udk-användartjänst_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_80b865
new: DisplayName : User Data Storage_80b865
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_80b865
new: DisplayName : User Data Access_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_80b865
new: DisplayName : Windows Push Notifications User Service_80b865
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Adobe Flash Player NPAPI Notifier
old: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_453_Plugin.exe -check plugin
new: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe -check plugin
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-12-15 18.18.09
remark :
runtime : 22
count : 153
previous date : 2020-12-15
previous time : 16.55.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
system - SystemDriver - MpKslcec55f19
old: AcceptPause : 0
old: Description : MpKslcec55f19
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BD8193E2-C39C-4F1D-AE35-6E1B8F261F93}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - services - survey
old: AarSvc_3b0b977 Manual Unknown Agent Activation Runtime_3b0b977
old: BcastDVRUserService_3b0b977 Manual Unknown Användartjänst för Spel-DVR och sändning_3b0b977
old: BluetoothUserService_3b0b977 Manual Unknown Bluetooth User Support Service_3b0b977
old: CaptureService_3b0b977 Manual Unknown CaptureService_3b0b977
old: cbdhsvc_3b0b977 Manual Unknown Clipboard User Service_3b0b977
old: CDPUserSvc_3b0b977 Auto Unknown Connected Devices Platform User Service_3b0b977
old: ConsentUxUserSvc_3b0b977 Manual Unknown ConsentUX_3b0b977
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3b0b977
old: DeviceAssociationBrokerSvc_3b0 Manual Unknown DeviceAssociationBroker_3b0b977
old: DevicePickerUserSvc_3b0b977 Manual Unknown DevicePicker_3b0b977
old: DevicesFlowUserSvc_3b0b977 Manual Unknown DevicesFlow_3b0b977
old: MessagingService_3b0b977 Manual Unknown MessagingService_3b0b977
old: OneSyncSvc_3b0b977 Auto Unknown Synkroniseringsvärd_3b0b977
old: PimIndexMaintenanceSvc_3b0b977 Manual Unknown Contact Data_3b0b977
old: PrintWorkflowUserSvc_3b0b977 Manual Unknown PrintWorkflow_3b0b977
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
old: UdkUserSvc_3b0b977 Manual Unknown Udk-användartjänst_3b0b977
old: UnistoreSvc_3b0b977 Manual Unknown User Data Storage_3b0b977
old: UserDataSvc_3b0b977 Manual Unknown User Data Access_3b0b977
old: WpnUserService_3b0b977 Auto Unknown Windows Push Notifications User Service_3b0b977
system - services - AarSvc_3b0b977
old: DisplayName : Agent Activation Runtime_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_3b0b977
old: DisplayName : Användartjänst för Spel-DVR och sändning_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_3b0b977
old: DisplayName : Bluetooth User Support Service_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_3b0b977
old: DisplayName : CaptureService_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_3b0b977
old: DisplayName : Clipboard User Service_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_3b0b977
old: DisplayName : Connected Devices Platform User Service_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_3b0b977
old: DisplayName : ConsentUX_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3b0b977
old: DisplayName : CredentialEnrollmentManagerUserSvc_3b0b977
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_3b0b977
old: DisplayName : DeviceAssociationBroker_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_3b0b977
old: DisplayName : DevicePicker_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_3b0b977
old: DisplayName : DevicesFlow_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_3b0b977
old: DisplayName : MessagingService_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_3b0b977
old: DisplayName : Synkroniseringsvärd_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_3b0b977
old: DisplayName : Contact Data_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_3b0b977
old: DisplayName : PrintWorkflow_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UdkUserSvc_3b0b977
old: DisplayName : Udk-användartjänst_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_3b0b977
old: DisplayName : User Data Storage_3b0b977
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_3b0b977
old: DisplayName : User Data Access_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_3b0b977
old: DisplayName : Windows Push Notifications User Service_3b0b977
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2020-12-15 16.55.30
remark :
runtime : 18
count : 310
previous date : 2020-12-15
previous time : 12.09.28
software - product - Microsoft Edge
old: Version : 87.0.664.55
new: Version : 87.0.664.60
system - SystemDriver - MpKslcec55f19
new: AcceptPause : 0
new: Description : MpKslcec55f19
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BD8193E2-C39C-4F1D-AE35-6E1B8F261F93}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - hotfix - KB4586853
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4592438
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4593175
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_290058f Manual Unknown Agent Activation Runtime_290058f
new: AarSvc_3b0b977 Manual Unknown Agent Activation Runtime_3b0b977
old: BcastDVRUserService_290058f Manual Unknown Användartjänst för Spel-DVR och sändning_290058f
new: BcastDVRUserService_3b0b977 Manual Unknown Användartjänst för Spel-DVR och sändning_3b0b977
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_290058f Manual Unknown Bluetooth User Support Service_290058f
new: BITS Manual Share Process Background Intelligent Transfer Service
new: BluetoothUserService_3b0b977 Manual Unknown Bluetooth User Support Service_3b0b977
old: CaptureService_290058f Manual Unknown CaptureService_290058f
old: cbdhsvc_290058f Manual Unknown Clipboard User Service_290058f
new: CaptureService_3b0b977 Manual Unknown CaptureService_3b0b977
new: cbdhsvc_3b0b977 Manual Unknown Clipboard User Service_3b0b977
old: CDPUserSvc_290058f Auto Unknown Connected Devices Platform User Service_290058f
new: CDPUserSvc_3b0b977 Auto Unknown Connected Devices Platform User Service_3b0b977
old: ConsentUxUserSvc_290058f Manual Unknown ConsentUX_290058f
new: ConsentUxUserSvc_3b0b977 Manual Unknown ConsentUX_3b0b977
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_290058f
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3b0b977
old: DeviceAssociationBrokerSvc_290 Manual Unknown DeviceAssociationBroker_290058f
new: DeviceAssociationBrokerSvc_3b0 Manual Unknown DeviceAssociationBroker_3b0b977
old: DevicePickerUserSvc_290058f Manual Unknown DevicePicker_290058f
old: DevicesFlowUserSvc_290058f Manual Unknown DevicesFlow_290058f
new: DevicePickerUserSvc_3b0b977 Manual Unknown DevicePicker_3b0b977
new: DevicesFlowUserSvc_3b0b977 Manual Unknown DevicesFlow_3b0b977
old: MessagingService_290058f Manual Unknown MessagingService_290058f
new: MessagingService_3b0b977 Manual Unknown MessagingService_3b0b977
old: OneSyncSvc_290058f Auto Unknown Synkroniseringsvärd_290058f
new: OneSyncSvc_3b0b977 Auto Unknown Synkroniseringsvärd_3b0b977
old: PimIndexMaintenanceSvc_290058f Manual Unknown Contact Data_290058f
new: PimIndexMaintenanceSvc_3b0b977 Manual Unknown Contact Data_3b0b977
old: PrintWorkflowUserSvc_290058f Manual Unknown PrintWorkflow_290058f
new: PrintWorkflowUserSvc_3b0b977 Manual Unknown PrintWorkflow_3b0b977
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
old: UdkUserSvc_290058f Manual Unknown Udk-användartjänst_290058f
new: UdkUserSvc_3b0b977 Manual Unknown Udk-användartjänst_3b0b977
old: UnistoreSvc_290058f Manual Unknown User Data Storage_290058f
new: UnistoreSvc_3b0b977 Manual Unknown User Data Storage_3b0b977
old: UserDataSvc_290058f Manual Unknown User Data Access_290058f
new: UserDataSvc_3b0b977 Manual Unknown User Data Access_3b0b977
old: WpnUserService_290058f Auto Unknown Windows Push Notifications User Service_290058f
new: WpnUserService_3b0b977 Auto Unknown Windows Push Notifications User Service_3b0b977
system - services - AarSvc_290058f
old: DisplayName : Agent Activation Runtime_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_3b0b977
new: DisplayName : Agent Activation Runtime_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_290058f
old: DisplayName : Användartjänst för Spel-DVR och sändning_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_3b0b977
new: DisplayName : Användartjänst för Spel-DVR och sändning_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_290058f
old: DisplayName : Bluetooth User Support Service_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_3b0b977
new: DisplayName : Bluetooth User Support Service_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_290058f
old: DisplayName : CaptureService_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_290058f
old: DisplayName : Clipboard User Service_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_3b0b977
new: DisplayName : CaptureService_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_3b0b977
new: DisplayName : Clipboard User Service_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_290058f
old: DisplayName : Connected Devices Platform User Service_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_3b0b977
new: DisplayName : Connected Devices Platform User Service_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_290058f
old: DisplayName : ConsentUX_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_3b0b977
new: DisplayName : ConsentUX_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_290058f
old: DisplayName : CredentialEnrollmentManagerUserSvc_290058f
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3b0b977
new: DisplayName : CredentialEnrollmentManagerUserSvc_3b0b977
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_290058f
old: DisplayName : DeviceAssociationBroker_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_3b0b977
new: DisplayName : DeviceAssociationBroker_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_290058f
old: DisplayName : DevicePicker_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_290058f
old: DisplayName : DevicesFlow_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_3b0b977
new: DisplayName : DevicePicker_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_3b0b977
new: DisplayName : DevicesFlow_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_290058f
old: DisplayName : MessagingService_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_3b0b977
new: DisplayName : MessagingService_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.55\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.60\elevation_service.exe"
system - services - OneSyncSvc_290058f
old: DisplayName : Synkroniseringsvärd_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_3b0b977
new: DisplayName : Synkroniseringsvärd_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_290058f
old: DisplayName : Contact Data_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_3b0b977
new: DisplayName : Contact Data_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_290058f
old: DisplayName : PrintWorkflow_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_3b0b977
new: DisplayName : PrintWorkflow_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UdkUserSvc_290058f
old: DisplayName : Udk-användartjänst_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_3b0b977
new: DisplayName : Udk-användartjänst_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_290058f
old: DisplayName : User Data Storage_290058f
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_3b0b977
new: DisplayName : User Data Storage_3b0b977
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_290058f
old: DisplayName : User Data Access_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_3b0b977
new: DisplayName : User Data Access_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_290058f
old: DisplayName : Windows Push Notifications User Service_290058f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_3b0b977
new: DisplayName : Windows Push Notifications User Service_3b0b977
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2020-12-15 12.09.28
remark :
runtime : 78
count : 172
previous date : 2020-12-07
previous time : 16.55.29
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
software - product - Google Chrome
old: Version : 86.0.4240.198
new: Version : 87.0.4280.88
system - services - survey
new: AarSvc_290058f Manual Unknown Agent Activation Runtime_290058f
new: BcastDVRUserService_290058f Manual Unknown Användartjänst för Spel-DVR och sändning_290058f
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_290058f Manual Unknown Bluetooth User Support Service_290058f
new: CaptureService_290058f Manual Unknown CaptureService_290058f
new: cbdhsvc_290058f Manual Unknown Clipboard User Service_290058f
new: CDPUserSvc_290058f Auto Unknown Connected Devices Platform User Service_290058f
new: ConsentUxUserSvc_290058f Manual Unknown ConsentUX_290058f
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_290058f
new: DeviceAssociationBrokerSvc_290 Manual Unknown DeviceAssociationBroker_290058f
new: DevicePickerUserSvc_290058f Manual Unknown DevicePicker_290058f
new: DevicesFlowUserSvc_290058f Manual Unknown DevicesFlow_290058f
new: MessagingService_290058f Manual Unknown MessagingService_290058f
new: OneSyncSvc_290058f Auto Unknown Synkroniseringsvärd_290058f
new: PimIndexMaintenanceSvc_290058f Manual Unknown Contact Data_290058f
new: PrintWorkflowUserSvc_290058f Manual Unknown PrintWorkflow_290058f
new: UdkUserSvc_290058f Manual Unknown Udk-användartjänst_290058f
new: UnistoreSvc_290058f Manual Unknown User Data Storage_290058f
new: UserDataSvc_290058f Manual Unknown User Data Access_290058f
new: WpnUserService_290058f Auto Unknown Windows Push Notifications User Service_290058f
system - services - AarSvc_290058f
new: DisplayName : Agent Activation Runtime_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_290058f
new: DisplayName : Användartjänst för Spel-DVR och sändning_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_290058f
new: DisplayName : Bluetooth User Support Service_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_290058f
new: DisplayName : CaptureService_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_290058f
new: DisplayName : Clipboard User Service_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_290058f
new: DisplayName : Connected Devices Platform User Service_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_290058f
new: DisplayName : ConsentUX_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_290058f
new: DisplayName : CredentialEnrollmentManagerUserSvc_290058f
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_290058f
new: DisplayName : DeviceAssociationBroker_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_290058f
new: DisplayName : DevicePicker_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_290058f
new: DisplayName : DevicesFlow_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.198\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.88\elevation_service.exe"
system - services - MessagingService_290058f
new: DisplayName : MessagingService_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_290058f
new: DisplayName : Synkroniseringsvärd_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_290058f
new: DisplayName : Contact Data_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_290058f
new: DisplayName : PrintWorkflow_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_290058f
new: DisplayName : Udk-användartjänst_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_290058f
new: DisplayName : User Data Storage_290058f
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_290058f
new: DisplayName : User Data Access_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_290058f
new: DisplayName : Windows Push Notifications User Service_290058f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonReboot
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonRebootDialog
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-12-06 16.55.30
remark :
runtime : 17
count : 4
previous date : 2020-12-05
previous time : 16.55.29
software - product - Microsoft Edge
old: Version : 87.0.664.52
new: Version : 87.0.664.55
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.52\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.55\elevation_service.exe"
Top Runs Differences at: 2020-12-05 16.55.29
remark :
runtime : 17
count : 12
previous date : 2020-12-04
previous time : 16.55.29
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2020-12-04 16.55.29
remark :
runtime : 21
count : 6
previous date : 2020-12-03
previous time : 23.54.13
software - product - Google Update Helper
old: Version : 1.3.36.31
new: Version : 1.3.36.51
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
Top Runs Differences at: 2020-12-03 23.54.13
remark :
runtime : 21
count : 29
previous date : 2020-12-03
previous time : 22.17.11
system - hotfix - KB4580419
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonReboot
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonRebootDialog
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2020-12-03 22.17.11
remark :
runtime : 20
count : 495
previous date : 2020-12-03
previous time : 16.55.30
system - hotfix - KB4586781
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4586853
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4586876
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Adobe Flash Player NPAPI Notifier
old: Run As User : CORP\trains
new: Run As User : trains
system - scheduled tasks - \Adobe Flash Player Updater
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \GoogleUpdateTaskMachineCore
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \GoogleUpdateTaskMachineUA
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated)
old: Run As User : \Alla
new: Run As User : Alla
system - scheduled tasks - \Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual)
old: Run As User : \Alla
new: Run As User : Alla
system - scheduled tasks - \Microsoft\Windows\AppID\EDP Policy Manager
old: Run As User : NT instans\Lokal tj„nst
new: Run As User : Lokal tj„nst
system - scheduled tasks - \Microsoft\Windows\AppID\PolicyConverter
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck
old: Run As User : NT instans\Lokal tj„nst
new: Run As User : Lokal tj„nst
system - scheduled tasks - \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Application Experience\PcaPatchDbTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Application Experience\ProgramDataUpdater
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Application Experience\StartupAppTask
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\ApplicationData\appuriverifierdaily
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\ApplicationData\appuriverifierinstall
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\ApplicationData\CleanupTemporaryState
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\ApplicationData\DsSvcCleanup
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Autochk\Proxy
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\BitLocker\BitLocker Encrypt All Drives
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Bluetooth\UninstallDeviceTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\CertificateServicesClient\KeyPreGenTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\CertificateServicesClient\SystemTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\CertificateServicesClient\UserTask
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\CertificateServicesClient\UserTask-Roam
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Chkdsk\ProactiveScan
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Chkdsk\SyspartRepair
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Clip\License Validation
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\CloudExperienceHost\CreateObjectTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Customer Experience Improvement Program\Consolidator
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Customer Experience Improvement Program\UsbCeip
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Data Integrity Scan\Data Integrity Check And Scan
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Data Integrity Scan\Data Integrity Scan
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Defrag\ScheduledDefrag
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Device Information\Device
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Device Information\Device User
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Device Setup\Metadata Refresh
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\DeviceDirectoryClient\HandleCommand
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Diagnosis\Scheduled
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\DirectX\DirectXDatabaseUpdater
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\DirectX\DXGIAdapterCache
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\DiskFootprint\Diagnostics
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\DUSM\dusmtask
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\EDP\EDP App Launch Task
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\EDP\EDP Auth Task
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\EDP\EDP Inaccessible Credentials Task
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\EDP\StorageCardEncryption Task
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\ExploitGuard\ExploitGuard MDM policy Refresh
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Feedback\Siuf\DmClient
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\File Classification Infrastructure\Property Definition Sync
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\FileHistory\File History (maintenance mode)
old: Run As User : NT instans\Lokal tj„nst
new: Run As User : Lokal tj„nst
system - scheduled tasks - \Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Flighting\FeatureConfig\UsageDataFlushing
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Flighting\FeatureConfig\UsageDataReporting
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Flighting\OneSettings\RefreshCache
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{3E0A038B-D834-4930-9981-E89C9BFF83AA}
old: Run As User : NT instans\N„tverkstj„nst
new: Run As User : N„tverkstj„nst
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Run As User : NT instans\N„tverkstj„nst
new: Run As User : N„tverkstj„nst
system - scheduled tasks - \Microsoft\Windows\HelloFace\FODCleanupTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Input\LocalUserSyncDataAvailable
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Input\MouseSyncDataAvailable
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Input\PenSyncDataAvailable
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Input\TouchpadSyncDataAvailable
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\InstallService\ScanForUpdates
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\InstallService\ScanForUpdatesAsUser
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\InstallService\SmartRetry
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\InstallService\WakeUpAndContinueUpdates
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\InstallService\WakeUpAndScanForUpdates
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\International\Synchronize Language Settings
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\LanguageComponentsInstaller\Installation
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\LanguageComponentsInstaller\ReconcileLanguageResources
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\LanguageComponentsInstaller\Uninstallation
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\License Manager\TempSignedLicenseExchange
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Location\Notifications
old: Run As User : NT instans\Autentiserade anv„ndare
new: Run As User : Autentiserade anv„ndare
system - scheduled tasks - \Microsoft\Windows\Location\WindowsActionDialog
old: Run As User : NT instans\Autentiserade anv„ndare
new: Run As User : Autentiserade anv„ndare
system - scheduled tasks - \Microsoft\Windows\Management\Provisioning\Cellular
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Management\Provisioning\Logon
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Management\Provisioning\Retry
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Management\Provisioning\RunOnReboot
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Maps\MapsToastTask
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Maps\MapsUpdateTask
old: Run As User : NT instans\N„tverkstj„nst
new: Run As User : N„tverkstj„nst
system - scheduled tasks - \Microsoft\Windows\Media Center\ActivateWindowsSearch
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Media Center\ConfigureInternetTimeService
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Media Center\DispatchRecoveryTasks
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Media Center\ehDRMInit
old: Run As User : NT instans\Lokal tj„nst
new: Run As User : Lokal tj„nst
system - scheduled tasks - \Microsoft\Windows\Media Center\InstallPlayReady
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Media Center\mcupdate
old: Run As User : NT instans\N„tverkstj„nst
new: Run As User : N„tverkstj„nst
system - scheduled tasks - \Microsoft\Windows\Media Center\MediaCenterRecoveryTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask
old: Run As User : NT instans\N„tverkstj„nst
new: Run As User : N„tverkstj„nst
system - scheduled tasks - \Microsoft\Windows\Media Center\OCURActivate
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Media Center\OCURDiscovery
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Media Center\PBDADiscovery
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Media Center\PBDADiscoveryW1
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Media Center\PBDADiscoveryW2
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Media Center\PeriodicScanRetry
old: Run As User : NT instans\N„tverkstj„nst
new: Run As User : N„tverkstj„nst
system - scheduled tasks - \Microsoft\Windows\Media Center\PvrRecoveryTask
old: Run As User : NT instans\N„tverkstj„nst
new: Run As User : N„tverkstj„nst
system - scheduled tasks - \Microsoft\Windows\Media Center\PvrScheduleTask
old: Run As User : NT instans\N„tverkstj„nst
new: Run As User : N„tverkstj„nst
system - scheduled tasks - \Microsoft\Windows\Media Center\RecordingRestart
old: Run As User : NT instans\N„tverkstj„nst
new: Run As User : N„tverkstj„nst
system - scheduled tasks - \Microsoft\Windows\Media Center\RegisterSearch
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Media Center\ReindexSearchRoot
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Media Center\SqlLiteRecoveryTask
old: Run As User : NT instans\N„tverkstj„nst
new: Run As User : N„tverkstj„nst
system - scheduled tasks - \Microsoft\Windows\Media Center\UpdateRecordPath
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\MobilePC\HotStart
old: Run As User : NT instans\Autentiserade anv„ndare
new: Run As User : Autentiserade anv„ndare
system - scheduled tasks - \Microsoft\Windows\MUI\Lpksetup
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\MUI\LPRemove
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\MUI\Mcbuilder
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\NlaSvc\WiFiTask
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Offline Files\Background Synchronization
old: Run As User : NT instans\Autentiserade anv„ndare
new: Run As User : Autentiserade anv„ndare
system - scheduled tasks - \Microsoft\Windows\Offline Files\Logon Synchronization
old: Run As User : NT instans\Autentiserade anv„ndare
new: Run As User : Autentiserade anv„ndare
system - scheduled tasks - \Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor
old: Run As User : NT instans\Lokal tj„nst
new: Run As User : Lokal tj„nst
system - scheduled tasks - \Microsoft\Windows\PI\Secure-Boot-Update
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\PI\Sqm-Tasks
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Plug and Play\Device Install Group Policy
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Plug and Play\Device Install Reboot Required
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Printing\EduPrintProv
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\PushToInstall\LoginCheck
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\PushToInstall\Registration
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\RAC\RacTask
old: Run As User : NT instans\Lokal tj„nst
new: Run As User : Lokal tj„nst
system - scheduled tasks - \Microsoft\Windows\Ras\MobilityManager
old: Run As User : NT instans\Lokal tj„nst
new: Run As User : Lokal tj„nst
system - scheduled tasks - \Microsoft\Windows\Registry\RegIdleBackup
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Servicing\StartComponentCleanup
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\SettingSync\BackgroundUploadTask
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\SettingSync\NetworkStateChangeTask
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\SharedPC\Account Cleanup
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Shell\CreateObjectTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Shell\FamilySafetyMonitor
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Shell\FamilySafetyRefreshTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Shell\IndexerAutomaticMaintenance
old: Run As User : NT instans\Lokal tj„nst
new: Run As User : Lokal tj„nst
system - scheduled tasks - \Microsoft\Windows\Shell\UpdateUserPictureTask
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Shell\WindowsParentalControls
old: Run As User : NT instans\Autentiserade anv„ndare
new: Run As User : Autentiserade anv„ndare
system - scheduled tasks - \Microsoft\Windows\Shell\WindowsParentalControlsMigration
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\SideShow\AutoWake
old: Run As User : NT instans\Lokal tj„nst
new: Run As User : Lokal tj„nst
system - scheduled tasks - \Microsoft\Windows\SideShow\SystemDataProviders
old: Run As User : NT instans\Lokal tj„nst
new: Run As User : Lokal tj„nst
system - scheduled tasks - \Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask
old: Run As User : NT instans\N„tverkstj„nst
new: Run As User : N„tverkstj„nst
system - scheduled tasks - \Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork
old: Run As User : NT instans\N„tverkstj„nst
new: Run As User : N„tverkstj„nst
system - scheduled tasks - \Microsoft\Windows\SpacePort\SpaceAgentTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\SpacePort\SpaceManagerTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Speech\HeadsetButtonPress
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Speech\SpeechModelDownloadTask
old: Run As User : NT instans\N„tverkstj„nst
new: Run As User : N„tverkstj„nst
system - scheduled tasks - \Microsoft\Windows\StateRepository\MaintenanceTasks
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Subscription\EnableLicenseAcquisition
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Subscription\LicenseAcquisition
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Sysmain\ResPriStaticDbSync
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Sysmain\WsSwapAssessmentTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\SystemRestore\SR
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Task Manager\Interactive
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\termsrv\RemoteFX\RemoteFXvGPUDisableTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Time Synchronization\ForceSynchronizeTime
old: Run As User : NT instans\Lokal tj„nst
new: Run As User : Lokal tj„nst
system - scheduled tasks - \Microsoft\Windows\Time Synchronization\SynchronizeTime
old: Run As User : NT instans\Lokal tj„nst
new: Run As User : Lokal tj„nst
system - scheduled tasks - \Microsoft\Windows\Time Zone\SynchronizeTimeZone
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\TPM\Tpm-HASCertRetr
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\TPM\Tpm-Maintenance
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UNP\RunUpdateNotificationMgr
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\AC Power Install
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Backup Scan
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Maintenance Install
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Report policies
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work
old: Logon Mode : Interactive only
new: Logon Mode : Interactive/Background
old: Run As User : CORP\railroad4$
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Schedule Scan
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Schedule Scan Static Task
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Schedule Wake To Work
old: Logon Mode : Interactive only
new: Logon Mode : Interactive/Background
old: Run As User : CORP\railroad4$
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Schedule Work
old: Logon Mode : Interactive only
new: Logon Mode : Interactive/Background
old: Run As User : CORP\railroad4$
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\UpdateModelTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\UPnP\UPnPHostConfig
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\USB\Usb-Notifications
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\User Profile Service\HiveUploadTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\WaaSMedic\PerformRemediation
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\WCM\WiFiTask
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\WDI\ResolutionHost
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Windows Error Reporting\QueueReporting
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Windows Media Sharing\UpdateLibrary
old: Run As User : NT instans\Autentiserade anv„ndare
new: Run As User : Autentiserade anv„ndare
system - scheduled tasks - \Microsoft\Windows\WindowsUpdate\Scheduled Start
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\WindowsUpdate\sihpostreboot
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\WlanSvc\CDSSync
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\WOF\WIM-Hash-Management
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\WOF\WIM-Hash-Validation
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Work Folders\Work Folders Maintenance Work
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\Workplace Join\Automatic-Device-Join
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Workplace Join\Device-Sync
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\Windows\Workplace Join\Recovery-Check
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\WwanSvc\NotificationTask
old: Run As User : NT instans\Interaktiv
new: Run As User : Interaktiv
system - scheduled tasks - \Microsoft\Windows\WwanSvc\OobeDiscovery
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \Microsoft\XblGameSave\XblGameSaveTask
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \MicrosoftEdgeUpdateTaskMachineCore
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \MicrosoftEdgeUpdateTaskMachineUA
old: Run As User : NT instans\SYSTEM
new: Run As User : SYSTEM
system - scheduled tasks - \OneDrive Standalone Update Task-S-1-5-21-67378208-2373681959-2840377077-1108
old: Run As User : CORP\leif
new: Run As User : leif
system - scheduled tasks - \SCC
old: Run As User : CORP\administrator
new: Run As User : administrator
system - scheduled tasks - \User_Feed_Synchronization-{2FD05E4F-F802-4484-9844-73B0E8BD8207}
old: Run As User : railroad4\Administrat”r
new: Run As User : Administrat”r
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : CORP\administrator
new: Run As User : administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : CORP\administrator
new: Run As User : administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : CORP\administrator
new: Run As User : administrator
Top Runs Differences at: 2020-12-03 16.55.30
remark :
runtime : 18
count : 4
previous date : 2020-12-02
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 87.0.664.47
new: Version : 87.0.664.52
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.47\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.52\elevation_service.exe"
Top Runs Differences at: 2020-12-02 16.55.30
remark :
runtime : 17
count : 7
previous date : 2020-12-01
previous time : 16.55.29
system - SystemDriver - MpKsla77f372d
old: AcceptPause : 0
old: Description : MpKsla77f372d
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1E6E3FB0-CCBD-4AD3-9860-018CC8D59539}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2020-12-01 16.55.29
remark :
runtime : 19
count : 155
previous date : 2020-12-01
previous time : 12.49.40
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
software - product - Microsoft Edge
old: Version : 87.0.664.41
new: Version : 87.0.664.47
system - SystemDriver - MpKsla77f372d
new: AcceptPause : 0
new: Description : MpKsla77f372d
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1E6E3FB0-CCBD-4AD3-9860-018CC8D59539}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
old: AarSvc_1b511bd Manual Unknown Agent Activation Runtime_1b511bd
old: BcastDVRUserService_1b511bd Manual Unknown Användartjänst för Spel-DVR och sändning_1b511bd
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_1b511bd Manual Unknown Bluetooth User Support Service_1b511bd
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_1b511bd Manual Unknown CaptureService_1b511bd
old: cbdhsvc_1b511bd Manual Unknown Clipboard User Service_1b511bd
old: CDPUserSvc_1b511bd Auto Unknown Connected Devices Platform User Service_1b511bd
old: ConsentUxUserSvc_1b511bd Manual Unknown ConsentUX_1b511bd
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1b511bd
old: DeviceAssociationBrokerSvc_1b5 Manual Unknown DeviceAssociationBroker_1b511bd
old: DevicePickerUserSvc_1b511bd Manual Unknown DevicePicker_1b511bd
old: DevicesFlowUserSvc_1b511bd Manual Unknown DevicesFlow_1b511bd
old: MessagingService_1b511bd Manual Unknown MessagingService_1b511bd
old: OneSyncSvc_1b511bd Auto Unknown Synkroniseringsvärd_1b511bd
old: PimIndexMaintenanceSvc_1b511bd Manual Unknown Contact Data_1b511bd
old: PrintWorkflowUserSvc_1b511bd Manual Unknown PrintWorkflow_1b511bd
old: UdkUserSvc_1b511bd Manual Unknown Udk-användartjänst_1b511bd
old: UnistoreSvc_1b511bd Manual Unknown User Data Storage_1b511bd
old: UserDataSvc_1b511bd Manual Unknown User Data Access_1b511bd
old: WpnUserService_1b511bd Auto Unknown Windows Push Notifications User Service_1b511bd
system - services - AarSvc_1b511bd
old: DisplayName : Agent Activation Runtime_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_1b511bd
old: DisplayName : Användartjänst för Spel-DVR och sändning_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_1b511bd
old: DisplayName : Bluetooth User Support Service_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_1b511bd
old: DisplayName : CaptureService_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_1b511bd
old: DisplayName : Clipboard User Service_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_1b511bd
old: DisplayName : Connected Devices Platform User Service_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_1b511bd
old: DisplayName : ConsentUX_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1b511bd
old: DisplayName : CredentialEnrollmentManagerUserSvc_1b511bd
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_1b511bd
old: DisplayName : DeviceAssociationBroker_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_1b511bd
old: DisplayName : DevicePicker_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_1b511bd
old: DisplayName : DevicesFlow_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_1b511bd
old: DisplayName : MessagingService_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.41\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.47\elevation_service.exe"
system - services - OneSyncSvc_1b511bd
old: DisplayName : Synkroniseringsvärd_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_1b511bd
old: DisplayName : Contact Data_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_1b511bd
old: DisplayName : PrintWorkflow_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_1b511bd
old: DisplayName : Udk-användartjänst_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_1b511bd
old: DisplayName : User Data Storage_1b511bd
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_1b511bd
old: DisplayName : User Data Access_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_1b511bd
old: DisplayName : Windows Push Notifications User Service_1b511bd
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2020-12-01 12.49.40
remark :
runtime : 33
count : 146
previous date : 2020-11-24
previous time : 16.55.30
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
software - product - Microsoft Edge Update
old: Version : 1.3.137.99
new: Version : 1.3.139.59
system - services - survey
new: AarSvc_1b511bd Manual Unknown Agent Activation Runtime_1b511bd
new: BcastDVRUserService_1b511bd Manual Unknown Användartjänst för Spel-DVR och sändning_1b511bd
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_1b511bd Manual Unknown Bluetooth User Support Service_1b511bd
new: CaptureService_1b511bd Manual Unknown CaptureService_1b511bd
new: cbdhsvc_1b511bd Manual Unknown Clipboard User Service_1b511bd
new: CDPUserSvc_1b511bd Auto Unknown Connected Devices Platform User Service_1b511bd
new: ConsentUxUserSvc_1b511bd Manual Unknown ConsentUX_1b511bd
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1b511bd
new: DeviceAssociationBrokerSvc_1b5 Manual Unknown DeviceAssociationBroker_1b511bd
new: DevicePickerUserSvc_1b511bd Manual Unknown DevicePicker_1b511bd
new: DevicesFlowUserSvc_1b511bd Manual Unknown DevicesFlow_1b511bd
new: MessagingService_1b511bd Manual Unknown MessagingService_1b511bd
new: OneSyncSvc_1b511bd Auto Unknown Synkroniseringsvärd_1b511bd
new: PimIndexMaintenanceSvc_1b511bd Manual Unknown Contact Data_1b511bd
new: PrintWorkflowUserSvc_1b511bd Manual Unknown PrintWorkflow_1b511bd
new: UdkUserSvc_1b511bd Manual Unknown Udk-användartjänst_1b511bd
new: UnistoreSvc_1b511bd Manual Unknown User Data Storage_1b511bd
new: UserDataSvc_1b511bd Manual Unknown User Data Access_1b511bd
new: WpnUserService_1b511bd Auto Unknown Windows Push Notifications User Service_1b511bd
system - services - AarSvc_1b511bd
new: DisplayName : Agent Activation Runtime_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_1b511bd
new: DisplayName : Användartjänst för Spel-DVR och sändning_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_1b511bd
new: DisplayName : Bluetooth User Support Service_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_1b511bd
new: DisplayName : CaptureService_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_1b511bd
new: DisplayName : Clipboard User Service_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_1b511bd
new: DisplayName : Connected Devices Platform User Service_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_1b511bd
new: DisplayName : ConsentUX_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1b511bd
new: DisplayName : CredentialEnrollmentManagerUserSvc_1b511bd
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_1b511bd
new: DisplayName : DeviceAssociationBroker_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_1b511bd
new: DisplayName : DevicePicker_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_1b511bd
new: DisplayName : DevicesFlow_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_1b511bd
new: DisplayName : MessagingService_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_1b511bd
new: DisplayName : Synkroniseringsvärd_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_1b511bd
new: DisplayName : Contact Data_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_1b511bd
new: DisplayName : PrintWorkflow_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_1b511bd
new: DisplayName : Udk-användartjänst_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_1b511bd
new: DisplayName : User Data Storage_1b511bd
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_1b511bd
new: DisplayName : User Data Access_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_1b511bd
new: DisplayName : Windows Push Notifications User Service_1b511bd
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2020-11-24 16.55.30
remark :
runtime : 16
count : 7
previous date : 2020-11-23
previous time : 16.55.29
system - SystemDriver - MpKsl0de4286c
old: AcceptPause : 0
old: Description : MpKsl0de4286c
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{543E19B8-1D18-42F8-9242-0E3A8D3D85EF}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2020-11-23 16.55.29
remark :
runtime : 15
count : 144
previous date : 2020-11-23
previous time : 12.54.34
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
system - services - survey
old: AarSvc_608dfb Manual Unknown Agent Activation Runtime_608dfb
old: BcastDVRUserService_608dfb Manual Unknown Användartjänst för Spel-DVR och sändning_608dfb
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_608dfb Manual Unknown Bluetooth User Support Service_608dfb
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_608dfb Manual Unknown CaptureService_608dfb
old: cbdhsvc_608dfb Manual Unknown Clipboard User Service_608dfb
old: CDPUserSvc_608dfb Auto Unknown Connected Devices Platform User Service_608dfb
old: ConsentUxUserSvc_608dfb Manual Unknown ConsentUX_608dfb
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_608dfb
old: DeviceAssociationBrokerSvc_608 Manual Unknown DeviceAssociationBroker_608dfb
old: DevicePickerUserSvc_608dfb Manual Unknown DevicePicker_608dfb
old: DevicesFlowUserSvc_608dfb Manual Unknown DevicesFlow_608dfb
old: MessagingService_608dfb Manual Unknown MessagingService_608dfb
old: OneSyncSvc_608dfb Auto Unknown Synkroniseringsvärd_608dfb
old: PimIndexMaintenanceSvc_608dfb Manual Unknown Contact Data_608dfb
old: PrintWorkflowUserSvc_608dfb Manual Unknown PrintWorkflow_608dfb
old: UdkUserSvc_608dfb Manual Unknown Udk-användartjänst_608dfb
old: UnistoreSvc_608dfb Manual Unknown User Data Storage_608dfb
old: UserDataSvc_608dfb Manual Unknown User Data Access_608dfb
old: WpnUserService_608dfb Auto Unknown Windows Push Notifications User Service_608dfb
system - services - AarSvc_608dfb
old: DisplayName : Agent Activation Runtime_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_608dfb
old: DisplayName : Användartjänst för Spel-DVR och sändning_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_608dfb
old: DisplayName : Bluetooth User Support Service_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_608dfb
old: DisplayName : CaptureService_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_608dfb
old: DisplayName : Clipboard User Service_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_608dfb
old: DisplayName : Connected Devices Platform User Service_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_608dfb
old: DisplayName : ConsentUX_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_608dfb
old: DisplayName : CredentialEnrollmentManagerUserSvc_608dfb
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_608dfb
old: DisplayName : DeviceAssociationBroker_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_608dfb
old: DisplayName : DevicePicker_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_608dfb
old: DisplayName : DevicesFlow_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_608dfb
old: DisplayName : MessagingService_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_608dfb
old: DisplayName : Synkroniseringsvärd_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_608dfb
old: DisplayName : Contact Data_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_608dfb
old: DisplayName : PrintWorkflow_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_608dfb
old: DisplayName : Udk-användartjänst_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_608dfb
old: DisplayName : User Data Storage_608dfb
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_608dfb
old: DisplayName : User Data Access_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_608dfb
old: DisplayName : Windows Push Notifications User Service_608dfb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2020-11-23 12.54.34
remark :
runtime : 17
count : 163
previous date : 2020-11-23
previous time : 12.42.53
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
software - product - Microsoft Edge
old: Version : 86.0.622.69
new: Version : 87.0.664.41
system - SystemDriver - MpKsl0de4286c
new: AcceptPause : 0
new: Description : MpKsl0de4286c
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{543E19B8-1D18-42F8-9242-0E3A8D3D85EF}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - survey
new: AarSvc_608dfb Manual Unknown Agent Activation Runtime_608dfb
new: BcastDVRUserService_608dfb Manual Unknown Användartjänst för Spel-DVR och sändning_608dfb
new: BluetoothUserService_608dfb Manual Unknown Bluetooth User Support Service_608dfb
new: CaptureService_608dfb Manual Unknown CaptureService_608dfb
new: cbdhsvc_608dfb Manual Unknown Clipboard User Service_608dfb
new: CDPUserSvc_608dfb Auto Unknown Connected Devices Platform User Service_608dfb
new: ConsentUxUserSvc_608dfb Manual Unknown ConsentUX_608dfb
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_608dfb
new: DeviceAssociationBrokerSvc_608 Manual Unknown DeviceAssociationBroker_608dfb
new: DevicePickerUserSvc_608dfb Manual Unknown DevicePicker_608dfb
new: DevicesFlowUserSvc_608dfb Manual Unknown DevicesFlow_608dfb
new: MessagingService_608dfb Manual Unknown MessagingService_608dfb
new: OneSyncSvc_608dfb Auto Unknown Synkroniseringsvärd_608dfb
new: PimIndexMaintenanceSvc_608dfb Manual Unknown Contact Data_608dfb
new: PrintWorkflowUserSvc_608dfb Manual Unknown PrintWorkflow_608dfb
new: UdkUserSvc_608dfb Manual Unknown Udk-användartjänst_608dfb
new: UnistoreSvc_608dfb Manual Unknown User Data Storage_608dfb
new: UserDataSvc_608dfb Manual Unknown User Data Access_608dfb
new: WpnUserService_608dfb Auto Unknown Windows Push Notifications User Service_608dfb
system - services - AarSvc_608dfb
new: DisplayName : Agent Activation Runtime_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_608dfb
new: DisplayName : Användartjänst för Spel-DVR och sändning_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_608dfb
new: DisplayName : Bluetooth User Support Service_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_608dfb
new: DisplayName : CaptureService_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_608dfb
new: DisplayName : Clipboard User Service_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_608dfb
new: DisplayName : Connected Devices Platform User Service_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_608dfb
new: DisplayName : ConsentUX_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_608dfb
new: DisplayName : CredentialEnrollmentManagerUserSvc_608dfb
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_608dfb
new: DisplayName : DeviceAssociationBroker_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_608dfb
new: DisplayName : DevicePicker_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_608dfb
new: DisplayName : DevicesFlow_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_608dfb
new: DisplayName : MessagingService_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.69\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.41\elevation_service.exe"
system - services - OneSyncSvc_608dfb
new: DisplayName : Synkroniseringsvärd_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_608dfb
new: DisplayName : Contact Data_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_608dfb
new: DisplayName : PrintWorkflow_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_608dfb
new: DisplayName : Udk-användartjänst_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_608dfb
new: DisplayName : User Data Storage_608dfb
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_608dfb
new: DisplayName : User Data Access_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_608dfb
new: DisplayName : Windows Push Notifications User Service_608dfb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-11-23 12.42.53
remark :
runtime : 54
count : 4
previous date : 2020-11-18
previous time : 16.55.30
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
Top Runs Differences at: 2020-11-15 16.55.30
remark :
runtime : 16
count : 4
previous date : 2020-11-14
previous time : 16.55.30
software - product - Microsoft Edge
old: Version : 86.0.622.68
new: Version : 86.0.622.69
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.68\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.69\elevation_service.exe"
Top Runs Differences at: 2020-11-13 16.55.30
remark :
runtime : 17
count : 4
previous date : 2020-11-12
previous time : 18.44.09
software - product - Microsoft Edge
old: Version : 86.0.622.63
new: Version : 86.0.622.68
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.63\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.68\elevation_service.exe"
Top Runs Differences at: 2020-11-12 18.44.09
remark :
runtime : 23
count : 15
previous date : 2020-11-12
previous time : 16.55.30
general
old: BuildNumber:19041
new: BuildNumber:19042
old: Version:10.0.19041
new: Version:10.0.19042
hardware - printer - OneNote for Windows 10
old: PortName : Microsoft.Office.OneNote_16001.13127.20190.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PortName : Microsoft.Office.OneNote_16001.13328.20348.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
network - connections - Share h
old: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
new: Name : \\truenas-2.lan.sjolund.homelinux.net\Pool_1\administrator (h:)
old: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: RemoteName : \\truenas-2.lan.sjolund.homelinux.net\Pool_1\administrator
new: RemotePath : \\truenas-2.lan.sjolund.homelinux.net\Pool_1\administrator
system - hotfix - KB4562830
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
Top Runs Differences at: 2020-11-12 16.55.30
remark :
runtime : 16
count : 6
previous date : 2020-11-11
previous time : 22.42.29
software - product - Backup and Sync from Google
old: Version : 3.52.3372.2621
new: Version : 3.53.3404.7585
software - product - Google Chrome
old: Version : 86.0.4240.193
new: Version : 86.0.4240.198
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.193\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.198\elevation_service.exe"
Top Runs Differences at: 2020-11-11 22.42.29
remark :
runtime : 24
count : 56
previous date : 2020-11-11
previous time : 16.55.29
hardware - diskdrive - survey
old: USB 1 GB USB Device partitions: 01 SCSI Bus: 0 LUN: 0
new: USB 1 GB USB Device partitions: 01 SCSI Bus: 0 LUN: 0
Volume Management - partitions
old: Disk nr 1, partition nr 0 MS-DOS V4 Huge 1896 MB
new: Disk nr 1, partition nr 0 MS-DOS V4 Huge 1896 MB
network - connections - Share i
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Applications
old: RemotePath : \\WIN-PL3BEWOIR9X\Applications
old: ResourceType : Disk
network - connections - Share p
new: Comment :
new: DisplayType : Share
new: Name : \\truenas-2.lan.sjolund.homelinux.net\pool_1 (p:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\truenas-2.lan.sjolund.homelinux.net\pool_1
new: RemotePath : \\truenas-2.lan.sjolund.homelinux.net\pool_1
new: ResourceType : Disk
network - connections - Share t
new: Comment :
new: DisplayType : Share
new: Name : \\truenas-3.lan.sjolund.homelinux.net\Pool_1 (t:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\truenas-3.lan.sjolund.homelinux.net\Pool_1
new: RemotePath : \\truenas-3.lan.sjolund.homelinux.net\Pool_1
new: ResourceType : Disk
system - hotfix - KB4578968
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4579311
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4580419
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4586781
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4586864
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2020-11-11 16.55.29
remark :
runtime : 19
count : 10
previous date : 2020-11-10
previous time : 16.55.29
software - product - Adobe Flash Player 32 NPAPI
old: Version : 32.0.0.445
new: Version : 32.0.0.453
software - product - Microsoft Edge
old: Version : 86.0.622.51
new: Version : 86.0.622.63
software - product - Microsoft Edge Update
old: Version : 1.3.137.93
new: Version : 1.3.137.99
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.51\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.63\elevation_service.exe"
system - scheduled tasks - \Adobe Flash Player NPAPI Notifier
old: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_445_Plugin.exe -check plugin
new: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_453_Plugin.exe -check plugin
Top Runs Differences at: 2020-11-10 16.55.29
remark :
runtime : 17
count : 144
previous date : 2020-11-09
previous time : 16.55.29
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
software - product - Google Chrome
old: Version : 86.0.4240.183
new: Version : 86.0.4240.193
system - services - survey
old: AarSvc_e592354 Manual Unknown Agent Activation Runtime_e592354
old: BcastDVRUserService_e592354 Manual Unknown Användartjänst för Spel-DVR och sändning_e592354
old: BluetoothUserService_e592354 Manual Unknown Bluetooth User Support Service_e592354
old: CaptureService_e592354 Manual Unknown CaptureService_e592354
old: cbdhsvc_e592354 Manual Unknown Clipboard User Service_e592354
old: CDPUserSvc_e592354 Auto Unknown Connected Devices Platform User Service_e592354
old: ConsentUxUserSvc_e592354 Manual Unknown ConsentUX_e592354
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_e592354
old: DeviceAssociationBrokerSvc_e59 Manual Unknown DeviceAssociationBroker_e592354
old: DevicePickerUserSvc_e592354 Manual Unknown DevicePicker_e592354
old: DevicesFlowUserSvc_e592354 Manual Unknown DevicesFlow_e592354
old: MessagingService_e592354 Manual Unknown MessagingService_e592354
old: OneSyncSvc_e592354 Auto Unknown Synkroniseringsvärd_e592354
old: PimIndexMaintenanceSvc_e592354 Manual Unknown Contact Data_e592354
old: PrintWorkflowUserSvc_e592354 Manual Unknown PrintWorkflow_e592354
old: UdkUserSvc_e592354 Manual Unknown Udk-användartjänst_e592354
old: UnistoreSvc_e592354 Manual Unknown User Data Storage_e592354
old: UserDataSvc_e592354 Manual Unknown User Data Access_e592354
old: WpnUserService_e592354 Auto Unknown Windows Push Notifications User Service_e592354
system - services - AarSvc_e592354
old: DisplayName : Agent Activation Runtime_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_e592354
old: DisplayName : Användartjänst för Spel-DVR och sändning_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_e592354
old: DisplayName : Bluetooth User Support Service_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_e592354
old: DisplayName : CaptureService_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_e592354
old: DisplayName : Clipboard User Service_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_e592354
old: DisplayName : Connected Devices Platform User Service_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_e592354
old: DisplayName : ConsentUX_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_e592354
old: DisplayName : CredentialEnrollmentManagerUserSvc_e592354
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_e592354
old: DisplayName : DeviceAssociationBroker_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_e592354
old: DisplayName : DevicePicker_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_e592354
old: DisplayName : DevicesFlow_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.183\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.193\elevation_service.exe"
system - services - MessagingService_e592354
old: DisplayName : MessagingService_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_e592354
old: DisplayName : Synkroniseringsvärd_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_e592354
old: DisplayName : Contact Data_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_e592354
old: DisplayName : PrintWorkflow_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_e592354
old: DisplayName : Udk-användartjänst_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_e592354
old: DisplayName : User Data Storage_e592354
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_e592354
old: DisplayName : User Data Access_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_e592354
old: DisplayName : Windows Push Notifications User Service_e592354
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2020-11-09 16.55.29
remark :
runtime : 16
count : 140
previous date : 2020-11-08
previous time : 16.55.29
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_e592354 Manual Unknown Agent Activation Runtime_e592354
new: BcastDVRUserService_e592354 Manual Unknown Användartjänst för Spel-DVR och sändning_e592354
new: BluetoothUserService_e592354 Manual Unknown Bluetooth User Support Service_e592354
new: CaptureService_e592354 Manual Unknown CaptureService_e592354
new: cbdhsvc_e592354 Manual Unknown Clipboard User Service_e592354
new: CDPUserSvc_e592354 Auto Unknown Connected Devices Platform User Service_e592354
new: ConsentUxUserSvc_e592354 Manual Unknown ConsentUX_e592354
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_e592354
new: DeviceAssociationBrokerSvc_e59 Manual Unknown DeviceAssociationBroker_e592354
new: DevicePickerUserSvc_e592354 Manual Unknown DevicePicker_e592354
new: DevicesFlowUserSvc_e592354 Manual Unknown DevicesFlow_e592354
new: MessagingService_e592354 Manual Unknown MessagingService_e592354
new: OneSyncSvc_e592354 Auto Unknown Synkroniseringsvärd_e592354
new: PimIndexMaintenanceSvc_e592354 Manual Unknown Contact Data_e592354
new: PrintWorkflowUserSvc_e592354 Manual Unknown PrintWorkflow_e592354
new: UdkUserSvc_e592354 Manual Unknown Udk-användartjänst_e592354
new: UnistoreSvc_e592354 Manual Unknown User Data Storage_e592354
new: UserDataSvc_e592354 Manual Unknown User Data Access_e592354
new: WpnUserService_e592354 Auto Unknown Windows Push Notifications User Service_e592354
system - services - AarSvc_e592354
new: DisplayName : Agent Activation Runtime_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_e592354
new: DisplayName : Användartjänst för Spel-DVR och sändning_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_e592354
new: DisplayName : Bluetooth User Support Service_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_e592354
new: DisplayName : CaptureService_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_e592354
new: DisplayName : Clipboard User Service_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_e592354
new: DisplayName : Connected Devices Platform User Service_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_e592354
new: DisplayName : ConsentUX_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_e592354
new: DisplayName : CredentialEnrollmentManagerUserSvc_e592354
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_e592354
new: DisplayName : DeviceAssociationBroker_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_e592354
new: DisplayName : DevicePicker_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_e592354
new: DisplayName : DevicesFlow_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_e592354
new: DisplayName : MessagingService_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_e592354
new: DisplayName : Synkroniseringsvärd_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_e592354
new: DisplayName : Contact Data_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_e592354
new: DisplayName : PrintWorkflow_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_e592354
new: DisplayName : Udk-användartjänst_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_e592354
new: DisplayName : User Data Storage_e592354
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_e592354
new: DisplayName : User Data Access_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_e592354
new: DisplayName : Windows Push Notifications User Service_e592354
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2020-11-08 16.55.29
remark :
runtime : 16
count : 7
previous date : 2020-11-07
previous time : 16.55.29
system - SystemDriver - MpKsl032bbec2
old: AcceptPause : 0
old: Description : MpKsl032bbec2
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AF121D15-DFFA-4E39-AC9F-372949EC3762}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
Top Runs Differences at: 2020-11-07 16.55.29
remark :
runtime : 20
count : 19
previous date : 2020-11-06
previous time : 16.55.29
system - SystemDriver - MpKsl032bbec2
new: AcceptPause : 0
new: Description : MpKsl032bbec2
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AF121D15-DFFA-4E39-AC9F-372949EC3762}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2020-11-05 16.55.29
remark :
runtime : 16
count : 4
previous date : 2020-11-04
previous time : 16.55.29
software - product - Google Chrome
old: Version : 86.0.4240.111
new: Version : 86.0.4240.183
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.111\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.183\elevation_service.exe"
Top Runs Differences at: 2020-11-04 16.55.29
remark :
runtime : 17
count : 140
previous date : 2020-11-03
previous time : 16.55.29
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
system - services - survey
old: AarSvc_a404091 Manual Unknown Agent Activation Runtime_a404091
old: BcastDVRUserService_a404091 Manual Unknown Användartjänst för Spel-DVR och sändning_a404091
old: BluetoothUserService_a404091 Manual Unknown Bluetooth User Support Service_a404091
old: CaptureService_a404091 Manual Unknown CaptureService_a404091
old: cbdhsvc_a404091 Manual Unknown Clipboard User Service_a404091
old: CDPUserSvc_a404091 Auto Unknown Connected Devices Platform User Service_a404091
old: ConsentUxUserSvc_a404091 Manual Unknown ConsentUX_a404091
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_a404091
old: DeviceAssociationBrokerSvc_a40 Manual Unknown DeviceAssociationBroker_a404091
old: DevicePickerUserSvc_a404091 Manual Unknown DevicePicker_a404091
old: DevicesFlowUserSvc_a404091 Manual Unknown DevicesFlow_a404091
old: MessagingService_a404091 Manual Unknown MessagingService_a404091
old: OneSyncSvc_a404091 Auto Unknown Synkroniseringsvärd_a404091
old: PimIndexMaintenanceSvc_a404091 Manual Unknown Contact Data_a404091
old: PrintWorkflowUserSvc_a404091 Manual Unknown PrintWorkflow_a404091
old: UdkUserSvc_a404091 Manual Unknown Udk-användartjänst_a404091
old: UnistoreSvc_a404091 Manual Unknown User Data Storage_a404091
old: UserDataSvc_a404091 Manual Unknown User Data Access_a404091
old: WpnUserService_a404091 Auto Unknown Windows Push Notifications User Service_a404091
system - services - AarSvc_a404091
old: DisplayName : Agent Activation Runtime_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_a404091
old: DisplayName : Användartjänst för Spel-DVR och sändning_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_a404091
old: DisplayName : Bluetooth User Support Service_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_a404091
old: DisplayName : CaptureService_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_a404091
old: DisplayName : Clipboard User Service_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_a404091
old: DisplayName : Connected Devices Platform User Service_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_a404091
old: DisplayName : ConsentUX_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_a404091
old: DisplayName : CredentialEnrollmentManagerUserSvc_a404091
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_a404091
old: DisplayName : DeviceAssociationBroker_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_a404091
old: DisplayName : DevicePicker_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_a404091
old: DisplayName : DevicesFlow_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_a404091
old: DisplayName : MessagingService_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_a404091
old: DisplayName : Synkroniseringsvärd_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_a404091
old: DisplayName : Contact Data_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_a404091
old: DisplayName : PrintWorkflow_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_a404091
old: DisplayName : Udk-användartjänst_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_a404091
old: DisplayName : User Data Storage_a404091
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_a404091
old: DisplayName : User Data Access_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_a404091
old: DisplayName : Windows Push Notifications User Service_a404091
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2020-11-02 16.55.29
remark :
runtime : 18
count : 140
previous date : 2020-11-01
previous time : 16.55.29
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_a404091 Manual Unknown Agent Activation Runtime_a404091
new: BcastDVRUserService_a404091 Manual Unknown Användartjänst för Spel-DVR och sändning_a404091
new: BluetoothUserService_a404091 Manual Unknown Bluetooth User Support Service_a404091
new: CaptureService_a404091 Manual Unknown CaptureService_a404091
new: cbdhsvc_a404091 Manual Unknown Clipboard User Service_a404091
new: CDPUserSvc_a404091 Auto Unknown Connected Devices Platform User Service_a404091
new: ConsentUxUserSvc_a404091 Manual Unknown ConsentUX_a404091
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_a404091
new: DeviceAssociationBrokerSvc_a40 Manual Unknown DeviceAssociationBroker_a404091
new: DevicePickerUserSvc_a404091 Manual Unknown DevicePicker_a404091
new: DevicesFlowUserSvc_a404091 Manual Unknown DevicesFlow_a404091
new: MessagingService_a404091 Manual Unknown MessagingService_a404091
new: OneSyncSvc_a404091 Auto Unknown Synkroniseringsvärd_a404091
new: PimIndexMaintenanceSvc_a404091 Manual Unknown Contact Data_a404091
new: PrintWorkflowUserSvc_a404091 Manual Unknown PrintWorkflow_a404091
new: UdkUserSvc_a404091 Manual Unknown Udk-användartjänst_a404091
new: UnistoreSvc_a404091 Manual Unknown User Data Storage_a404091
new: UserDataSvc_a404091 Manual Unknown User Data Access_a404091
new: WpnUserService_a404091 Auto Unknown Windows Push Notifications User Service_a404091
system - services - AarSvc_a404091
new: DisplayName : Agent Activation Runtime_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_a404091
new: DisplayName : Användartjänst för Spel-DVR och sändning_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_a404091
new: DisplayName : Bluetooth User Support Service_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_a404091
new: DisplayName : CaptureService_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_a404091
new: DisplayName : Clipboard User Service_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_a404091
new: DisplayName : Connected Devices Platform User Service_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_a404091
new: DisplayName : ConsentUX_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_a404091
new: DisplayName : CredentialEnrollmentManagerUserSvc_a404091
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_a404091
new: DisplayName : DeviceAssociationBroker_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_a404091
new: DisplayName : DevicePicker_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_a404091
new: DisplayName : DevicesFlow_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_a404091
new: DisplayName : MessagingService_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_a404091
new: DisplayName : Synkroniseringsvärd_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_a404091
new: DisplayName : Contact Data_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_a404091
new: DisplayName : PrintWorkflow_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_a404091
new: DisplayName : Udk-användartjänst_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_a404091
new: DisplayName : User Data Storage_a404091
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_a404091
new: DisplayName : User Data Access_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_a404091
new: DisplayName : Windows Push Notifications User Service_a404091
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2020-10-31 16.55.29
remark :
runtime : 17
count : 7
previous date : 2020-10-30
previous time : 16.55.29
system - SystemDriver - MpKslDrv
old: AcceptPause : 0
old: Description : MpKslDrv
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3568EA2E-C07D-4C6C-B282-4A15CFDA0249}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : System
Top Runs Differences at: 2020-10-30 16.55.29
remark :
runtime : 16
count : 7
previous date : 2020-10-29
previous time : 16.55.30
system - SystemDriver - MpKslDrv
new: AcceptPause : 0
new: Description : MpKslDrv
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3568EA2E-C07D-4C6C-B282-4A15CFDA0249}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : System
Top Runs Differences at: 2020-10-26 16.55.30
remark :
runtime : 17
count : 2
previous date : 2020-10-25
previous time : 16.55.30
software - product - Microsoft Edge Update
old: Version : 1.3.135.49
new: Version : 1.3.137.93
Top Runs Differences at: 2020-10-25 16.55.30
remark :
runtime : 16
count : 4
previous date : 2020-10-24
previous time : 17.55.30
general
old: CurrentTimeZone:120
old: DaylightInEffect:1
new: CurrentTimeZone:60
new: DaylightInEffect:0
Top Runs Differences at: 2020-10-23 17.55.31
remark :
runtime : 18
count : 8
previous date : 2020-10-22
previous time : 17.55.30
software - product - Google Chrome
old: Version : 86.0.4240.75
new: Version : 86.0.4240.111
software - product - Microsoft Edge
old: Version : 86.0.622.48
new: Version : 86.0.622.51
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.75\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.111\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.48\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.51\elevation_service.exe"
Top Runs Differences at: 2020-10-22 17.55.30
remark :
runtime : 18
count : 4
previous date : 2020-10-21
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 86.0.622.43
new: Version : 86.0.622.48
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.43\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.48\elevation_service.exe"
Top Runs Differences at: 2020-10-21 17.55.30
remark :
runtime : 16
count : 2
previous date : 2020-10-20
previous time : 17.55.30
software - product - Backup and Sync from Google
old: Version : 3.51.3307.8076
new: Version : 3.52.3372.2621
Top Runs Differences at: 2020-10-18 17.55.30
remark :
runtime : 16
count : 16
previous date : 2020-10-17
previous time : 17.55.30
system - scheduled tasks - \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser
old: Comment : Samlar in programtelemetriinformation om du accepterat att delta i Microsoft Customer Experience Improvement Program.
new: Comment : Collects program telemetry information if opted-in to the Microsoft Customer Experience Improvement Program.
system - scheduled tasks - \Microsoft\Windows\Application Experience\ProgramDataUpdater
old: Comment : Samlar in programtelemetriinformation om du accepterat att delta i Programmet f”r kvalitetsf”rb„ttring
new: Comment : Collects program telemetry information if opted-in to the Microsoft Customer Experience Improvement Program
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-10-17 17.55.30
remark :
runtime : 16
count : 4
previous date : 2020-10-16
previous time : 17.55.30
software - product - Microsoft Edge
old: Version : 86.0.622.38
new: Version : 86.0.622.43
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.38\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.43\elevation_service.exe"
Top Runs Differences at: 2020-10-16 17.55.30
remark :
runtime : 16
count : 2
previous date : 2020-10-15
previous time : 17.55.30
software - product - Microsoft Edge Update
old: Version : 1.3.135.41
new: Version : 1.3.135.49
Top Runs Differences at: 2020-10-15 17.55.30
remark :
runtime : 18
count : 13
previous date : 2020-10-14
previous time : 17.55.30
software - product - Adobe Flash Player 32 NPAPI
old: Version : 32.0.0.433
new: Version : 32.0.0.445
software - product - Google Update Helper
old: Version : 1.3.35.451
new: Version : 1.3.36.31
system - SystemDriver - MpKslDrv
old: AcceptPause : 0
old: Description : MpKslDrv
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A11A536-6385-4B80-AEC8-0267A906E194}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : System
system - scheduled tasks - \Adobe Flash Player NPAPI Notifier
old: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_433_Plugin.exe -check plugin
new: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_445_Plugin.exe -check plugin
Top Runs Differences at: 2020-10-14 17.55.30
remark :
runtime : 15
count : 7
previous date : 2020-10-14
previous time : 05.29.06
system - SystemDriver - MpKslDrv
new: AcceptPause : 0
new: Description : MpKslDrv
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A11A536-6385-4B80-AEC8-0267A906E194}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : System
Top Runs Differences at: 2020-10-14 05.29.06
remark :
runtime : 22
count : 35
previous date : 2020-10-13
previous time : 17.55.29
hardware - diskdrive - survey
old: IDE 465 GB TOSHIBA DT01ACA050 SCSI Disk Device partitions: 04 SCSI Bus: 0 LUN: 0
new: IDE 465 GB TOSHIBA DT01ACA050 partitions: 04 SCSI Bus: 0 LUN: 0
software - product - Realtek High Definition Audio Driver
old: Version : 6.0.1.7548
new: Version : 6.0.1.8328
system - SystemDriver - MEIx64
old: PathName : C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys
new: PathName : C:\WINDOWS\system32\drivers\TeeDriverW8x64.sys
system - hotfix - KB4571756
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4576478
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4578968
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4579311
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4580325
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - BrokerInfrastructure
new: Required by : NcbService
system - services - NcbService
new: Requires : BrokerInfrastructure
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2020-10-13 17.55.29
remark :
runtime : 15
count : 11
previous date : 2020-10-12
previous time : 17.55.29
software - product - Google Chrome
old: Version : 85.0.4183.121
new: Version : 86.0.4240.75
system - SystemDriver - MpKslDrv
old: AcceptPause : 0
old: Description : MpKslDrv
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C93D602-8CFE-4D43-AFA1-78F6B46686D9}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : System
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\85.0.4183.121\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.75\elevation_service.exe"
Top Runs Differences at: 2020-10-12 17.55.29
remark :
runtime : 15
count : 15
previous date : 2020-10-12
previous time : 12.37.36
software - product - Microsoft Edge
old: Version : 85.0.564.68
new: Version : 86.0.622.38
system - SystemDriver - MpKslDrv
new: AcceptPause : 0
new: Description : MpKslDrv
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C93D602-8CFE-4D43-AFA1-78F6B46686D9}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : System
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.68\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.38\elevation_service.exe"
Top Runs Differences at: 2020-10-12 12.37.36
remark :
runtime : 17
count : 10
previous date : 2020-10-12
previous time : 12.25.48
software - product - Microsoft Edge Update
old: Version : 1.3.135.37
new: Version : 1.3.135.41
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2020-10-12 12.25.48
remark :
runtime : 52
count : 148
previous date : 2020-10-06
previous time : 17.55.29
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
system - services - survey
old: AarSvc_42ba32 Manual Unknown Agent Activation Runtime_42ba32
old: BcastDVRUserService_42ba32 Manual Unknown Användartjänst för Spel-DVR och sändning_42ba32
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_42ba32 Manual Unknown Bluetooth User Support Service_42ba32
new: BITS Auto Share Process Background Intelligent Transfer Service
old: CaptureService_42ba32 Manual Unknown CaptureService_42ba32
old: cbdhsvc_42ba32 Manual Unknown Clipboard User Service_42ba32
old: CDPUserSvc_42ba32 Auto Unknown Connected Devices Platform User Service_42ba32
old: ConsentUxUserSvc_42ba32 Manual Unknown ConsentUX_42ba32
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_42ba32
old: DeviceAssociationBrokerSvc_42b Manual Unknown DeviceAssociationBroker_42ba32
old: DevicePickerUserSvc_42ba32 Manual Unknown DevicePicker_42ba32
old: DevicesFlowUserSvc_42ba32 Manual Unknown DevicesFlow_42ba32
old: MessagingService_42ba32 Manual Unknown MessagingService_42ba32
old: OneSyncSvc_42ba32 Auto Unknown Synkroniseringsvärd_42ba32
old: PimIndexMaintenanceSvc_42ba32 Manual Unknown Contact Data_42ba32
old: PrintWorkflowUserSvc_42ba32 Manual Unknown PrintWorkflow_42ba32
old: UdkUserSvc_42ba32 Manual Unknown Udk-användartjänst_42ba32
old: UnistoreSvc_42ba32 Manual Unknown User Data Storage_42ba32
old: UserDataSvc_42ba32 Manual Unknown User Data Access_42ba32
old: WpnUserService_42ba32 Auto Unknown Windows Push Notifications User Service_42ba32
system - services - AarSvc_42ba32
old: DisplayName : Agent Activation Runtime_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_42ba32
old: DisplayName : Användartjänst för Spel-DVR och sändning_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_42ba32
old: DisplayName : Bluetooth User Support Service_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_42ba32
old: DisplayName : CaptureService_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_42ba32
old: DisplayName : Clipboard User Service_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_42ba32
old: DisplayName : Connected Devices Platform User Service_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_42ba32
old: DisplayName : ConsentUX_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_42ba32
old: DisplayName : CredentialEnrollmentManagerUserSvc_42ba32
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_42ba32
old: DisplayName : DeviceAssociationBroker_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_42ba32
old: DisplayName : DevicePicker_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_42ba32
old: DisplayName : DevicesFlow_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_42ba32
old: DisplayName : MessagingService_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_42ba32
old: DisplayName : Synkroniseringsvärd_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_42ba32
old: DisplayName : Contact Data_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_42ba32
old: DisplayName : PrintWorkflow_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_42ba32
old: DisplayName : Udk-användartjänst_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_42ba32
old: DisplayName : User Data Storage_42ba32
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_42ba32
old: DisplayName : User Data Access_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MsMpEng.exe"
system - services - WpnUserService_42ba32
old: DisplayName : Windows Push Notifications User Service_42ba32
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2020-10-06 17.55.29
remark :
runtime : 15
count : 152
previous date : 2020-10-06
previous time : 05.58.13
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_42ba32 Manual Unknown Agent Activation Runtime_42ba32
new: BcastDVRUserService_42ba32 Manual Unknown Användartjänst för Spel-DVR och sändning_42ba32
new: BluetoothUserService_42ba32 Manual Unknown Bluetooth User Support Service_42ba32
new: CaptureService_42ba32 Manual Unknown CaptureService_42ba32
new: cbdhsvc_42ba32 Manual Unknown Clipboard User Service_42ba32
new: CDPUserSvc_42ba32 Auto Unknown Connected Devices Platform User Service_42ba32
new: ConsentUxUserSvc_42ba32 Manual Unknown ConsentUX_42ba32
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_42ba32
new: DeviceAssociationBrokerSvc_42b Manual Unknown DeviceAssociationBroker_42ba32
new: DevicePickerUserSvc_42ba32 Manual Unknown DevicePicker_42ba32
new: DevicesFlowUserSvc_42ba32 Manual Unknown DevicesFlow_42ba32
new: MessagingService_42ba32 Manual Unknown MessagingService_42ba32
new: OneSyncSvc_42ba32 Auto Unknown Synkroniseringsvärd_42ba32
new: PimIndexMaintenanceSvc_42ba32 Manual Unknown Contact Data_42ba32
new: PrintWorkflowUserSvc_42ba32 Manual Unknown PrintWorkflow_42ba32
new: UdkUserSvc_42ba32 Manual Unknown Udk-användartjänst_42ba32
new: UnistoreSvc_42ba32 Manual Unknown User Data Storage_42ba32
new: UserDataSvc_42ba32 Manual Unknown User Data Access_42ba32
new: WpnUserService_42ba32 Auto Unknown Windows Push Notifications User Service_42ba32
system - services - AarSvc_42ba32
new: DisplayName : Agent Activation Runtime_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_42ba32
new: DisplayName : Användartjänst för Spel-DVR och sändning_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_42ba32
new: DisplayName : Bluetooth User Support Service_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_42ba32
new: DisplayName : CaptureService_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_42ba32
new: DisplayName : Clipboard User Service_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_42ba32
new: DisplayName : Connected Devices Platform User Service_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_42ba32
new: DisplayName : ConsentUX_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_42ba32
new: DisplayName : CredentialEnrollmentManagerUserSvc_42ba32
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_42ba32
new: DisplayName : DeviceAssociationBroker_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_42ba32
new: DisplayName : DevicePicker_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_42ba32
new: DisplayName : DevicesFlow_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_42ba32
new: DisplayName : MessagingService_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_42ba32
new: DisplayName : Synkroniseringsvärd_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_42ba32
new: DisplayName : Contact Data_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_42ba32
new: DisplayName : PrintWorkflow_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_42ba32
new: DisplayName : Udk-användartjänst_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_42ba32
new: DisplayName : User Data Storage_42ba32
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_42ba32
new: DisplayName : User Data Access_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_42ba32
new: DisplayName : Windows Push Notifications User Service_42ba32
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-10-06 05.58.13
remark :
runtime : 30
count : 150
previous date : 2020-10-05
previous time : 17.55.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
hardware - display
old: Name : Current Display Controller Configuration
new: Name : Intel(R) HD Graphics 4600
system - services - survey
old: AarSvc_44727c5 Manual Unknown Agent Activation Runtime_44727c5
old: BcastDVRUserService_44727c5 Manual Unknown Användartjänst för Spel-DVR och sändning_44727c5
old: BluetoothUserService_44727c5 Manual Unknown Bluetooth User Support Service_44727c5
old: CaptureService_44727c5 Manual Unknown CaptureService_44727c5
old: cbdhsvc_44727c5 Manual Unknown Clipboard User Service_44727c5
old: CDPUserSvc_44727c5 Auto Unknown Connected Devices Platform User Service_44727c5
old: ConsentUxUserSvc_44727c5 Manual Unknown ConsentUX_44727c5
old: cphs Auto Own Process Intel(R) Content Protection HECI Service
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_44727c5
new: cphs Manual Own Process Intel(R) Content Protection HECI Service
old: DeviceAssociationBrokerSvc_447 Manual Unknown DeviceAssociationBroker_44727c5
old: DevicePickerUserSvc_44727c5 Manual Unknown DevicePicker_44727c5
old: DevicesFlowUserSvc_44727c5 Manual Unknown DevicesFlow_44727c5
old: MessagingService_44727c5 Manual Unknown MessagingService_44727c5
old: OneSyncSvc_44727c5 Auto Unknown Synkroniseringsvärd_44727c5
old: PimIndexMaintenanceSvc_44727c5 Manual Unknown Contact Data_44727c5
old: PrintWorkflowUserSvc_44727c5 Manual Unknown PrintWorkflow_44727c5
old: UdkUserSvc_44727c5 Manual Unknown Udk-användartjänst_44727c5
old: UnistoreSvc_44727c5 Manual Unknown User Data Storage_44727c5
old: UserDataSvc_44727c5 Manual Unknown User Data Access_44727c5
old: WpnUserService_44727c5 Auto Unknown Windows Push Notifications User Service_44727c5
system - services - AarSvc_44727c5
old: DisplayName : Agent Activation Runtime_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_44727c5
old: DisplayName : Användartjänst för Spel-DVR och sändning_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_44727c5
old: DisplayName : Bluetooth User Support Service_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_44727c5
old: DisplayName : CaptureService_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_44727c5
old: DisplayName : Clipboard User Service_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_44727c5
old: DisplayName : Connected Devices Platform User Service_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_44727c5
old: DisplayName : ConsentUX_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cphs
old: StartMode : Auto
new: StartMode : Manual
system - services - CredentialEnrollmentManagerUserSvc_44727c5
old: DisplayName : CredentialEnrollmentManagerUserSvc_44727c5
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_44727c5
old: DisplayName : DeviceAssociationBroker_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_44727c5
old: DisplayName : DevicePicker_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_44727c5
old: DisplayName : DevicesFlow_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_44727c5
old: DisplayName : MessagingService_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_44727c5
old: DisplayName : Synkroniseringsvärd_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_44727c5
old: DisplayName : Contact Data_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_44727c5
old: DisplayName : PrintWorkflow_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_44727c5
old: DisplayName : Udk-användartjänst_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_44727c5
old: DisplayName : User Data Storage_44727c5
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_44727c5
old: DisplayName : User Data Access_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_44727c5
old: DisplayName : Windows Push Notifications User Service_44727c5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2020-10-05 17.55.30
remark :
runtime : 15
count : 164
previous date : 2020-10-05
previous time : 11.17.38
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
software - product - Microsoft Edge
old: Version : 85.0.564.63
new: Version : 85.0.564.68
system - services - survey
new: AarSvc_44727c5 Manual Unknown Agent Activation Runtime_44727c5
new: BcastDVRUserService_44727c5 Manual Unknown Användartjänst för Spel-DVR och sändning_44727c5
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
new: BluetoothUserService_44727c5 Manual Unknown Bluetooth User Support Service_44727c5
new: CaptureService_44727c5 Manual Unknown CaptureService_44727c5
new: cbdhsvc_44727c5 Manual Unknown Clipboard User Service_44727c5
new: CDPUserSvc_44727c5 Auto Unknown Connected Devices Platform User Service_44727c5
new: ConsentUxUserSvc_44727c5 Manual Unknown ConsentUX_44727c5
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_44727c5
new: DeviceAssociationBrokerSvc_447 Manual Unknown DeviceAssociationBroker_44727c5
new: DevicePickerUserSvc_44727c5 Manual Unknown DevicePicker_44727c5
new: DevicesFlowUserSvc_44727c5 Manual Unknown DevicesFlow_44727c5
new: MessagingService_44727c5 Manual Unknown MessagingService_44727c5
new: OneSyncSvc_44727c5 Auto Unknown Synkroniseringsvärd_44727c5
new: PimIndexMaintenanceSvc_44727c5 Manual Unknown Contact Data_44727c5
new: PrintWorkflowUserSvc_44727c5 Manual Unknown PrintWorkflow_44727c5
new: UdkUserSvc_44727c5 Manual Unknown Udk-användartjänst_44727c5
new: UnistoreSvc_44727c5 Manual Unknown User Data Storage_44727c5
new: UserDataSvc_44727c5 Manual Unknown User Data Access_44727c5
new: WpnUserService_44727c5 Auto Unknown Windows Push Notifications User Service_44727c5
system - services - AarSvc_44727c5
new: DisplayName : Agent Activation Runtime_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_44727c5
new: DisplayName : Användartjänst för Spel-DVR och sändning_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_44727c5
new: DisplayName : Bluetooth User Support Service_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_44727c5
new: DisplayName : CaptureService_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_44727c5
new: DisplayName : Clipboard User Service_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_44727c5
new: DisplayName : Connected Devices Platform User Service_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_44727c5
new: DisplayName : ConsentUX_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_44727c5
new: DisplayName : CredentialEnrollmentManagerUserSvc_44727c5
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_44727c5
new: DisplayName : DeviceAssociationBroker_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_44727c5
new: DisplayName : DevicePicker_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_44727c5
new: DisplayName : DevicesFlow_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_44727c5
new: DisplayName : MessagingService_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.63\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.68\elevation_service.exe"
system - services - OneSyncSvc_44727c5
new: DisplayName : Synkroniseringsvärd_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_44727c5
new: DisplayName : Contact Data_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_44727c5
new: DisplayName : PrintWorkflow_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_44727c5
new: DisplayName : Udk-användartjänst_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_44727c5
new: DisplayName : User Data Storage_44727c5
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_44727c5
new: DisplayName : User Data Access_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_44727c5
new: DisplayName : Windows Push Notifications User Service_44727c5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2020-10-05 11.17.38
remark :
runtime : 28
count : 6
previous date : 2020-09-30
previous time : 17.55.29
software - product - Microsoft Edge Update
old: Version : 1.3.135.29
new: Version : 1.3.135.37
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
Top Runs Differences at: 2020-09-30 17.55.29
remark :
runtime : 17
count : 20
previous date : 2020-09-30
previous time : 11.15.34
hardware - display
old: Name : Intel(R) HD Graphics 4600
new: Name : Current Display Controller Configuration
hardware - printer - \\WIN-PL3BEWOIR9X\Brother DCP-9020CDW Printer
old: Comment :
new: Comment : Leif Sjölund
hardware - printer - \\win2k8srv-2\Brother DCP-9020CDW Printer
old: Comment :
new: Comment : Leif Sjölund
software - product - Google Chrome
old: Version : 85.0.4183.102
new: Version : 85.0.4183.121
software - product - Intel(R) Processor Graphics
old: Version : 20.19.15.4835
new: Version : 20.19.15.5126
software - product - Microsoft Edge
old: Version : 85.0.564.51
new: Version : 85.0.564.63
system - services - survey
old: cphs Manual Own Process Intel(R) Content Protection HECI Service
new: cphs Auto Own Process Intel(R) Content Protection HECI Service
system - services - cphs
old: StartMode : Manual
new: StartMode : Auto
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\85.0.4183.102\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\85.0.4183.121\elevation_service.exe"
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.51\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.63\elevation_service.exe"
Top Runs Differences at: 2020-09-30 11.15.34
remark :
runtime : 106
count : 6
previous date : 2020-09-14
previous time : 17.55.30
software - product - Backup and Sync from Google
old: Version : 3.50.3166.0017
new: Version : 3.51.3307.8076
system - services - survey
old: W32Time Manual Share Process Windows Time
new: W32Time Auto Share Process Windows Time
system - services - W32Time
old: StartMode : Manual
new: StartMode : Auto
Top Runs Differences at: 2020-09-14 17.55.30
remark :
runtime : 15
count : 16
previous date : 2020-09-13
previous time : 17.55.30
system - services - survey
old: IKEEXT Manual Share Process IKE and AuthIP IPsec Keying Modules
new: IKEEXT Auto Share Process IKE and AuthIP IPsec Keying Modules
system - services - IKEEXT
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-09-11 17.55.30
remark :
runtime : 15
count : 8
previous date : 2020-09-10
previous time : 17.55.29
software - product - Microsoft Edge
new: Version : 85.0.564.51
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location : C:\Program Files (x86)\Microsoft\Edge\Application
new: NoRemove : 0x00000001
new: NoRepair : 0x00000001
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.44\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.51\elevation_service.exe"
Top Runs Differences at: 2020-09-10 00.06.17
remark :
runtime : 26
count : 152
previous date : 2020-09-09
previous time : 17.55.29
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
software - product - Google Chrome
old: Version : 85.0.4183.83
new: Version : 85.0.4183.102
system - services - survey
old: AarSvc_535f3d Manual Unknown Agent Activation Runtime_535f3d
old: BcastDVRUserService_535f3d Manual Unknown Användartjänst för Spel-DVR och sändning_535f3d
old: BluetoothUserService_535f3d Manual Unknown Bluetooth User Support Service_535f3d
old: CaptureService_535f3d Manual Unknown CaptureService_535f3d
old: cbdhsvc_535f3d Manual Unknown Clipboard User Service_535f3d
old: CDPUserSvc_535f3d Auto Unknown Connected Devices Platform User Service_535f3d
old: ConsentUxUserSvc_535f3d Manual Unknown ConsentUX_535f3d
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_535f3d
old: DeviceAssociationBrokerSvc_535 Manual Unknown DeviceAssociationBroker_535f3d
old: DevicePickerUserSvc_535f3d Manual Unknown DevicePicker_535f3d
old: DevicesFlowUserSvc_535f3d Manual Unknown DevicesFlow_535f3d
old: MessagingService_535f3d Manual Unknown MessagingService_535f3d
old: OneSyncSvc_535f3d Auto Unknown Synkroniseringsvärd_535f3d
old: PimIndexMaintenanceSvc_535f3d Manual Unknown Contact Data_535f3d
old: PrintWorkflowUserSvc_535f3d Manual Unknown PrintWorkflow_535f3d
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
old: UdkUserSvc_535f3d Manual Unknown Udk-användartjänst_535f3d
old: UnistoreSvc_535f3d Manual Unknown User Data Storage_535f3d
old: UserDataSvc_535f3d Manual Unknown User Data Access_535f3d
old: WpnUserService_535f3d Auto Unknown Windows Push Notifications User Service_535f3d
system - services - AarSvc_535f3d
old: DisplayName : Agent Activation Runtime_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_535f3d
old: DisplayName : Användartjänst för Spel-DVR och sändning_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_535f3d
old: DisplayName : Bluetooth User Support Service_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_535f3d
old: DisplayName : CaptureService_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_535f3d
old: DisplayName : Clipboard User Service_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_535f3d
old: DisplayName : Connected Devices Platform User Service_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_535f3d
old: DisplayName : ConsentUX_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_535f3d
old: DisplayName : CredentialEnrollmentManagerUserSvc_535f3d
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_535f3d
old: DisplayName : DeviceAssociationBroker_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_535f3d
old: DisplayName : DevicePicker_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_535f3d
old: DisplayName : DevicesFlow_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\85.0.4183.83\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\85.0.4183.102\elevation_service.exe"
system - services - MessagingService_535f3d
old: DisplayName : MessagingService_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_535f3d
old: DisplayName : Synkroniseringsvärd_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_535f3d
old: DisplayName : Contact Data_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_535f3d
old: DisplayName : PrintWorkflow_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UdkUserSvc_535f3d
old: DisplayName : Udk-användartjänst_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_535f3d
old: DisplayName : User Data Storage_535f3d
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_535f3d
old: DisplayName : User Data Access_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_535f3d
old: DisplayName : Windows Push Notifications User Service_535f3d
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2020-09-09 17.55.29
remark :
runtime : 17
count : 39
previous date : 2020-09-08
previous time : 17.55.30
software - product - Adobe Flash Player 32 NPAPI
old: Version : 32.0.0.414
new: Version : 32.0.0.433
system - hotfix - KB4570721
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4571744
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4571756
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4576478
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4577266
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Adobe Flash Player NPAPI Notifier
old: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_414_Plugin.exe -check plugin
new: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_433_Plugin.exe -check plugin
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2020-09-08 17.55.30
remark :
runtime : 16
count : 176
previous date : 2020-09-07
previous time : 23.55.04
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_535f3d Manual Unknown Agent Activation Runtime_535f3d
new: BcastDVRUserService_535f3d Manual Unknown Användartjänst för Spel-DVR och sändning_535f3d
new: BluetoothUserService_535f3d Manual Unknown Bluetooth User Support Service_535f3d
new: CaptureService_535f3d Manual Unknown CaptureService_535f3d
new: cbdhsvc_535f3d Manual Unknown Clipboard User Service_535f3d
new: CDPUserSvc_535f3d Auto Unknown Connected Devices Platform User Service_535f3d
new: ConsentUxUserSvc_535f3d Manual Unknown ConsentUX_535f3d
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_535f3d
new: DeviceAssociationBrokerSvc_535 Manual Unknown DeviceAssociationBroker_535f3d
new: DevicePickerUserSvc_535f3d Manual Unknown DevicePicker_535f3d
new: DevicesFlowUserSvc_535f3d Manual Unknown DevicesFlow_535f3d
new: MessagingService_535f3d Manual Unknown MessagingService_535f3d
new: OneSyncSvc_535f3d Auto Unknown Synkroniseringsvärd_535f3d
new: PimIndexMaintenanceSvc_535f3d Manual Unknown Contact Data_535f3d
new: PrintWorkflowUserSvc_535f3d Manual Unknown PrintWorkflow_535f3d
new: UdkUserSvc_535f3d Manual Unknown Udk-användartjänst_535f3d
new: UnistoreSvc_535f3d Manual Unknown User Data Storage_535f3d
new: UserDataSvc_535f3d Manual Unknown User Data Access_535f3d
new: WpnUserService_535f3d Auto Unknown Windows Push Notifications User Service_535f3d
system - services - AarSvc_535f3d
new: DisplayName : Agent Activation Runtime_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_535f3d
new: DisplayName : Användartjänst för Spel-DVR och sändning_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_535f3d
new: DisplayName : Bluetooth User Support Service_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_535f3d
new: DisplayName : CaptureService_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_535f3d
new: DisplayName : Clipboard User Service_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_535f3d
new: DisplayName : Connected Devices Platform User Service_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_535f3d
new: DisplayName : ConsentUX_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_535f3d
new: DisplayName : CredentialEnrollmentManagerUserSvc_535f3d
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_535f3d
new: DisplayName : DeviceAssociationBroker_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_535f3d
new: DisplayName : DevicePicker_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_535f3d
new: DisplayName : DevicesFlow_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_535f3d
new: DisplayName : MessagingService_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_535f3d
new: DisplayName : Synkroniseringsvärd_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_535f3d
new: DisplayName : Contact Data_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_535f3d
new: DisplayName : PrintWorkflow_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_535f3d
new: DisplayName : Udk-användartjänst_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_535f3d
new: DisplayName : User Data Storage_535f3d
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_535f3d
new: DisplayName : User Data Access_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_535f3d
new: DisplayName : Windows Push Notifications User Service_535f3d
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonReboot
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonRebootDialog
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-09-07 23.55.04
remark :
runtime : 20
count : 29
previous date : 2020-09-07
previous time : 20.24.29
system - hotfix - KB4569745
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonReboot
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonRebootDialog
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
users - local groups - Administratörer
old: Member : Administrator
new: Member : administrator
Top Runs Differences at: 2020-09-07 20.24.29
remark :
runtime : 21
count : 57
previous date : 2020-09-07
previous time : 17.55.29
software - product - LibreOffice 6.4.4.2
old: Version : 6.4.4.2
old: Publisher : The Document Foundation
old: URLinfo : https://www.libreoffice.org/
old: ParentKey :
old: Install Location : C:\Program Files\LibreOffice\
old: Windows Installer : 0x00000001
software - product - LibreOffice 7.0.1.2
new: Version : 7.0.1.2
new: Publisher : The Document Foundation
new: URLinfo : https://www.libreoffice.org/
new: ParentKey :
new: Install Location : C:\Program Files\LibreOffice\
new: Windows Installer : 0x00000001
system - hotfix - KB4566782
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4570721
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4571744
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonReboot
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonRebootDialog
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2020-09-04 17.55.29
remark :
runtime : 16
count : 4
previous date : 2020-09-03
previous time : 17.55.30
software - product - Google Chrome
old: Version : 84.0.4147.135
new: Version : 85.0.4183.83
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.135\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\85.0.4183.83\elevation_service.exe"
Top Runs Differences at: 2020-09-03 17.55.30
remark :
runtime : 14
count : 4
previous date : 2020-09-02
previous time : 23.52.42
software - product - Microsoft Edge Update
old: Version : 1.3.133.5
new: Version : 1.3.135.29
system - services - MicrosoftEdgeElevationService
old: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\84.0.522.52\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.44\elevation_service.exe"
Top Runs Differences at: 2020-09-02 23.52.42
remark :
runtime : 23
count : 101
previous date : 2020-09-02
previous time : 17.55.29
software - product - Microsoft Edge Update
new: Version : 1.3.133.5
new: Publisher :
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
system - hotfix - KB4576754
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: edgeupdate Auto Own Process Microsoft Edge-uppdatering Service (edgeupdate)
new: edgeupdatem Manual Own Process Microsoft Edge-uppdatering Service (edgeupdatem)
new: MicrosoftEdgeElevationService Manual Own Process Microsoft Edge Elevation Service (MicrosoftEdgeElevationServ
system - services - edgeupdate
new: DisplayName : Microsoft Edge-uppdatering Service (edgeupdate)
new: PathName : "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /svc
new: ServiceType : Own Process
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - edgeupdatem
new: DisplayName : Microsoft Edge-uppdatering Service (edgeupdatem)
new: PathName : "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /medsvc
new: ServiceType : Own Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - MicrosoftEdgeElevationService
new: DisplayName : Microsoft Edge Elevation Service (MicrosoftEdgeElevationService)
new: PathName : "C:\Program Files (x86)\Microsoft\Edge\Application\84.0.522.52\elevation_service.exe"
new: ServiceType : Own Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MsMpEng.exe"
system - services - RpcSs
new: Required by : edgeupdate
new: Required by : edgeupdatem
new: Required by : MicrosoftEdgeElevationService
system - services - edgeupdate
new: Requires : RpcSs
system - services - edgeupdatem
new: Requires : RpcSs
system - services - MicrosoftEdgeElevationService
new: Requires : RpcSs
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonReboot
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonRebootDialog
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
system - scheduled tasks - \MicrosoftEdgeUpdateTaskMachineCore
new: Logon Mode : Interactive/Background
new: Task To Run : C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /c
new: Start In : N/A
new: Comment : Ser till att h†lla din Microsoft-programvara uppdaterad. Om du stoppar eller inaktiverar den h„r aktiviteten h†lls inte din Microsoft-programvara uppdaterad vilket inneb„r att eventuella nya s†rbarheter inte kan †tg„rdas och funktioner slutar eventuellt
new: Idle Time : Disabled
new: Power Management : Stop On Battery Mode
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
system - scheduled tasks - \MicrosoftEdgeUpdateTaskMachineUA
new: Logon Mode : Interactive/Background
new: Task To Run : C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /ua /installsource scheduler
new: Start In : N/A
new: Comment : Ser till att h†lla din Microsoft-programvara uppdaterad. Om du stoppar eller inaktiverar den h„r aktiviteten h†lls inte din Microsoft-programvara uppdaterad vilket inneb„r att eventuella nya s†rbarheter inte kan †tg„rdas och funktioner slutar eventuellt
new: Idle Time : Disabled
new: Power Management : Stop On Battery Mode
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : Every 1 day(s)
new: Months : N/A
new: Repeat: Every : 1 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
new: Repeat: Until: Duration : 24 Hour(s), 0 Minute(s)
users - local groups - Administratörer
old: Member : administrator
new: Member : Administrator
Top Runs Differences at: 2020-08-31 17.55.30
remark :
runtime : 15
count : 2
previous date : 2020-08-30
previous time : 17.55.29
hardware - printer - OneNote for Windows 10
old: PortName : Microsoft.Office.OneNote_16001.12827.20538.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PortName : Microsoft.Office.OneNote_16001.13127.20190.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
Top Runs Differences at: 2020-08-24 17.55.29
remark :
runtime : 16
count : 12
previous date : 2020-08-23
previous time : 17.55.29
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-08-21 17.55.29
remark :
runtime : 16
count : 7
previous date : 2020-08-20
previous time : 17.55.29
system - SystemDriver - MpKslDrv
old: AcceptPause : 0
old: Description : MpKslDrv
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{96D95CBC-1137-4215-A19A-684A9F97735D}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : System
Top Runs Differences at: 2020-08-20 17.55.29
remark :
runtime : 16
count : 7
previous date : 2020-08-19
previous time : 17.55.29
system - SystemDriver - MpKslDrv
new: AcceptPause : 0
new: Description : MpKslDrv
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{96D95CBC-1137-4215-A19A-684A9F97735D}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : System
Top Runs Differences at: 2020-08-19 17.55.29
remark :
runtime : 17
count : 4
previous date : 2020-08-18
previous time : 17.55.29
software - product - Google Chrome
old: Version : 84.0.4147.125
new: Version : 84.0.4147.135
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.125\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.135\elevation_service.exe"
Top Runs Differences at: 2020-08-13 17.55.29
remark :
runtime : 16
count : 7
previous date : 2020-08-12
previous time : 17.55.30
system - SystemDriver - MpKslDrv
old: AcceptPause : 0
old: Description : MpKslDrv
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AA135641-F57A-4E57-855E-FD36B174C5C5}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : System
Top Runs Differences at: 2020-08-12 17.55.30
remark :
runtime : 16
count : 11
previous date : 2020-08-12
previous time : 00.36.50
software - product - Adobe Flash Player 32 NPAPI
old: Version : 32.0.0.403
new: Version : 32.0.0.414
system - SystemDriver - MpKslDrv
new: AcceptPause : 0
new: Description : MpKslDrv
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AA135641-F57A-4E57-855E-FD36B174C5C5}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : System
system - scheduled tasks - \Adobe Flash Player NPAPI Notifier
old: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_403_Plugin.exe -check plugin
new: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_414_Plugin.exe -check plugin
Top Runs Differences at: 2020-08-12 00.36.50
remark :
runtime : 23
count : 207
previous date : 2020-08-11
previous time : 17.55.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
software - product - Google Chrome
old: Version : 84.0.4147.105
new: Version : 84.0.4147.125
system - SystemDriver - WUDFRd
old: PathName : C:\WINDOWS\system32\drivers\WudfRd.sys
new: PathName : C:\WINDOWS\system32\drivers\WUDFRd.sys
system - hotfix - KB4562899
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4565503
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4566782
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4569745
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4570334
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_22dbde9 Manual Unknown Agent Activation Runtime_22dbde9
old: BcastDVRUserService_22dbde9 Manual Unknown Användartjänst för Spel-DVR och sändning_22dbde9
old: BluetoothUserService_22dbde9 Manual Unknown Bluetooth User Support Service_22dbde9
old: CaptureService_22dbde9 Manual Unknown CaptureService_22dbde9
old: cbdhsvc_22dbde9 Manual Unknown Clipboard User Service_22dbde9
old: CDPUserSvc_22dbde9 Auto Unknown Connected Devices Platform User Service_22dbde9
old: ConsentUxUserSvc_22dbde9 Manual Unknown ConsentUX_22dbde9
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_22dbde9
old: DeviceAssociationBrokerSvc_22d Manual Unknown DeviceAssociationBroker_22dbde9
old: DevicePickerUserSvc_22dbde9 Manual Unknown DevicePicker_22dbde9
old: DevicesFlowUserSvc_22dbde9 Manual Unknown DevicesFlow_22dbde9
old: MessagingService_22dbde9 Manual Unknown MessagingService_22dbde9
old: OneSyncSvc_22dbde9 Auto Unknown Synkroniseringsvärd_22dbde9
old: PimIndexMaintenanceSvc_22dbde9 Manual Unknown Contact Data_22dbde9
old: PrintWorkflowUserSvc_22dbde9 Manual Unknown PrintWorkflow_22dbde9
old: UdkUserSvc_22dbde9 Manual Unknown Udk-användartjänst_22dbde9
old: UnistoreSvc_22dbde9 Manual Unknown User Data Storage_22dbde9
old: UserDataSvc_22dbde9 Manual Unknown User Data Access_22dbde9
old: WpnUserService_22dbde9 Auto Unknown Windows Push Notifications User Service_22dbde9
system - services - AarSvc_22dbde9
old: DisplayName : Agent Activation Runtime_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_22dbde9
old: DisplayName : Användartjänst för Spel-DVR och sändning_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_22dbde9
old: DisplayName : Bluetooth User Support Service_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_22dbde9
old: DisplayName : CaptureService_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_22dbde9
old: DisplayName : Clipboard User Service_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_22dbde9
old: DisplayName : Connected Devices Platform User Service_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_22dbde9
old: DisplayName : ConsentUX_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_22dbde9
old: DisplayName : CredentialEnrollmentManagerUserSvc_22dbde9
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_22dbde9
old: DisplayName : DeviceAssociationBroker_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_22dbde9
old: DisplayName : DevicePicker_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_22dbde9
old: DisplayName : DevicesFlow_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.105\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.125\elevation_service.exe"
system - services - MessagingService_22dbde9
old: DisplayName : MessagingService_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_22dbde9
old: DisplayName : Synkroniseringsvärd_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_22dbde9
old: DisplayName : Contact Data_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_22dbde9
old: DisplayName : PrintWorkflow_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_22dbde9
old: DisplayName : Udk-användartjänst_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_22dbde9
old: DisplayName : User Data Storage_22dbde9
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_22dbde9
old: DisplayName : User Data Access_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_22dbde9
old: DisplayName : Windows Push Notifications User Service_22dbde9
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\DiskCleanup\SilentCleanup
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\DiskFootprint\StorageSense
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\Maintenance\WinSAT
old: Run As User : BUILTIN\Administrat”rer
new: Run As User : Administrat”rer
system - scheduled tasks - \Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents
old: Run As User : BUILTIN\Administrat”rer
new: Run As User : Administrat”rer
system - scheduled tasks - \Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic
old: Run As User : BUILTIN\Administrat”rer
new: Run As User : Administrat”rer
system - scheduled tasks - \Microsoft\Windows\Multimedia\SystemSoundsService
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\NetTrace\GatherNetworkInfo
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
old: Run As User : BUILTIN\Administrat”rer
new: Run As User : Administrat”rer
system - scheduled tasks - \Microsoft\Windows\SideShow\GadgetManager
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\SideShow\SessionAgent
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\Tcpip\IpAddressConflict1
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\Tcpip\IpAddressConflict2
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\termsrv\RemoteFX\RemoteFXWarningTask
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\TextServicesFramework\MsCtfMonitor
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\WindowsColorSystem\Calibration Loader
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\Wininet\CacheTask
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
Top Runs Differences at: 2020-08-06 17.55.30
remark :
runtime : 15
count : 7
previous date : 2020-08-05
previous time : 17.55.30
system - SystemDriver - MpKslDrv
old: AcceptPause : 0
old: Description : MpKslDrv
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B866E1F5-7552-4067-B31E-1326702D8BF8}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : System
Top Runs Differences at: 2020-08-05 17.55.30
remark :
runtime : 15
count : 163
previous date : 2020-08-04
previous time : 17.55.30
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
software - product - JMRI - Java Model Railroad Interface
old: Version : 4.17.4+Rbf0d1af
new: Version : 4.20+Rc7ba8249b
old: URLinfo : http://jmri.org/
new: URLinfo : https://jmri.org/
system - SystemDriver - MpKslDrv
new: AcceptPause : 0
new: Description : MpKslDrv
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B866E1F5-7552-4067-B31E-1326702D8BF8}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : System
system - services - survey
new: AarSvc_22dbde9 Manual Unknown Agent Activation Runtime_22dbde9
new: BcastDVRUserService_22dbde9 Manual Unknown Användartjänst för Spel-DVR och sändning_22dbde9
new: BluetoothUserService_22dbde9 Manual Unknown Bluetooth User Support Service_22dbde9
new: CaptureService_22dbde9 Manual Unknown CaptureService_22dbde9
new: cbdhsvc_22dbde9 Manual Unknown Clipboard User Service_22dbde9
new: CDPUserSvc_22dbde9 Auto Unknown Connected Devices Platform User Service_22dbde9
new: ConsentUxUserSvc_22dbde9 Manual Unknown ConsentUX_22dbde9
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_22dbde9
new: DeviceAssociationBrokerSvc_22d Manual Unknown DeviceAssociationBroker_22dbde9
new: DevicePickerUserSvc_22dbde9 Manual Unknown DevicePicker_22dbde9
new: DevicesFlowUserSvc_22dbde9 Manual Unknown DevicesFlow_22dbde9
new: MessagingService_22dbde9 Manual Unknown MessagingService_22dbde9
new: OneSyncSvc_22dbde9 Auto Unknown Synkroniseringsvärd_22dbde9
new: PimIndexMaintenanceSvc_22dbde9 Manual Unknown Contact Data_22dbde9
new: PrintWorkflowUserSvc_22dbde9 Manual Unknown PrintWorkflow_22dbde9
new: UdkUserSvc_22dbde9 Manual Unknown Udk-användartjänst_22dbde9
new: UnistoreSvc_22dbde9 Manual Unknown User Data Storage_22dbde9
new: UserDataSvc_22dbde9 Manual Unknown User Data Access_22dbde9
new: WpnUserService_22dbde9 Auto Unknown Windows Push Notifications User Service_22dbde9
system - services - AarSvc_22dbde9
new: DisplayName : Agent Activation Runtime_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_22dbde9
new: DisplayName : Användartjänst för Spel-DVR och sändning_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_22dbde9
new: DisplayName : Bluetooth User Support Service_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_22dbde9
new: DisplayName : CaptureService_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_22dbde9
new: DisplayName : Clipboard User Service_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_22dbde9
new: DisplayName : Connected Devices Platform User Service_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_22dbde9
new: DisplayName : ConsentUX_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_22dbde9
new: DisplayName : CredentialEnrollmentManagerUserSvc_22dbde9
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_22dbde9
new: DisplayName : DeviceAssociationBroker_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_22dbde9
new: DisplayName : DevicePicker_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_22dbde9
new: DisplayName : DevicesFlow_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_22dbde9
new: DisplayName : MessagingService_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_22dbde9
new: DisplayName : Synkroniseringsvärd_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_22dbde9
new: DisplayName : Contact Data_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_22dbde9
new: DisplayName : PrintWorkflow_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_22dbde9
new: DisplayName : Udk-användartjänst_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_22dbde9
new: DisplayName : User Data Storage_22dbde9
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_22dbde9
new: DisplayName : User Data Access_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MsMpEng.exe"
system - services - WpnUserService_22dbde9
new: DisplayName : Windows Push Notifications User Service_22dbde9
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2020-08-03 17.55.30
remark :
runtime : 15
count : 24
previous date : 2020-08-02
previous time : 17.55.30
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonReboot
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonRebootDialog
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-08-01 23.46.45
remark :
runtime : 27
count : 176
previous date : 2020-08-01
previous time : 17.55.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
hardware - printer - OneNote for Windows 10
old: PortName : Microsoft.Office.OneNote_16001.12827.20182.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PortName : Microsoft.Office.OneNote_16001.12827.20538.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
system - hotfix - KB4562899
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4565627
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - services - survey
old: AarSvc_45a8051 Manual Unknown Agent Activation Runtime_45a8051
old: BcastDVRUserService_45a8051 Manual Unknown Användartjänst för Spel-DVR och sändning_45a8051
old: BluetoothUserService_45a8051 Manual Unknown Bluetooth User Support Service_45a8051
old: CaptureService_45a8051 Manual Unknown CaptureService_45a8051
old: cbdhsvc_45a8051 Manual Unknown Clipboard User Service_45a8051
old: CDPUserSvc_45a8051 Auto Unknown Connected Devices Platform User Service_45a8051
old: ConsentUxUserSvc_45a8051 Manual Unknown ConsentUX_45a8051
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_45a8051
old: DeviceAssociationBrokerSvc_45a Manual Unknown DeviceAssociationBroker_45a8051
old: DevicePickerUserSvc_45a8051 Manual Unknown DevicePicker_45a8051
old: DevicesFlowUserSvc_45a8051 Manual Unknown DevicesFlow_45a8051
old: MessagingService_45a8051 Manual Unknown MessagingService_45a8051
old: OneSyncSvc_45a8051 Auto Unknown Synkroniseringsvärd_45a8051
old: PimIndexMaintenanceSvc_45a8051 Manual Unknown Contact Data_45a8051
old: PrintWorkflowUserSvc_45a8051 Manual Unknown PrintWorkflow_45a8051
old: UdkUserSvc_45a8051 Manual Unknown Udk-användartjänst_45a8051
old: UnistoreSvc_45a8051 Manual Unknown User Data Storage_45a8051
old: UserDataSvc_45a8051 Manual Unknown User Data Access_45a8051
old: WpnUserService_45a8051 Auto Unknown Windows Push Notifications User Service_45a8051
system - services - AarSvc_45a8051
old: DisplayName : Agent Activation Runtime_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_45a8051
old: DisplayName : Användartjänst för Spel-DVR och sändning_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_45a8051
old: DisplayName : Bluetooth User Support Service_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_45a8051
old: DisplayName : CaptureService_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_45a8051
old: DisplayName : Clipboard User Service_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_45a8051
old: DisplayName : Connected Devices Platform User Service_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_45a8051
old: DisplayName : ConsentUX_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_45a8051
old: DisplayName : CredentialEnrollmentManagerUserSvc_45a8051
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_45a8051
old: DisplayName : DeviceAssociationBroker_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_45a8051
old: DisplayName : DevicePicker_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_45a8051
old: DisplayName : DevicesFlow_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_45a8051
old: DisplayName : MessagingService_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_45a8051
old: DisplayName : Synkroniseringsvärd_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_45a8051
old: DisplayName : Contact Data_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_45a8051
old: DisplayName : PrintWorkflow_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_45a8051
old: DisplayName : Udk-användartjänst_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_45a8051
old: DisplayName : User Data Storage_45a8051
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_45a8051
old: DisplayName : User Data Access_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_45a8051
old: DisplayName : Windows Push Notifications User Service_45a8051
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonReboot
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonRebootDialog
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2020-07-29 17.55.30
remark :
runtime : 15
count : 14
previous date : 2020-07-28
previous time : 17.55.29
system - scheduled tasks - \Microsoft\Windows\Setup\SetupCleanupTask
old: Logon Mode : Interactive/Background
old: Task To Run : COM handler
old: Start In : N/A
old: Comment : Tar bort tidigare Windows-installationsfiler n†gra dagar efter installationen.
old: Idle Time : Disabled
old: Power Management : Stop On Battery Mode, No Start On Batteries
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
old: Repeat: Every : 120 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
Top Runs Differences at: 2020-07-28 17.55.29
remark :
runtime : 16
count : 277
previous date : 2020-07-27
previous time : 20.55.29
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
software - product - Google Chrome
old: Version : 84.0.4147.89
new: Version : 84.0.4147.105
system - services - survey
old: AarSvc_32ab868 Manual Unknown Agent Activation Runtime_32ab868
new: AarSvc_45a8051 Manual Unknown Agent Activation Runtime_45a8051
old: BcastDVRUserService_32ab868 Manual Unknown Användartjänst för Spel-DVR och sändning_32ab868
new: BcastDVRUserService_45a8051 Manual Unknown Användartjänst för Spel-DVR och sändning_45a8051
old: BluetoothUserService_32ab868 Manual Unknown Bluetooth User Support Service_32ab868
new: BluetoothUserService_45a8051 Manual Unknown Bluetooth User Support Service_45a8051
old: CaptureService_32ab868 Manual Unknown CaptureService_32ab868
old: cbdhsvc_32ab868 Manual Unknown Clipboard User Service_32ab868
new: CaptureService_45a8051 Manual Unknown CaptureService_45a8051
new: cbdhsvc_45a8051 Manual Unknown Clipboard User Service_45a8051
old: CDPUserSvc_32ab868 Auto Unknown Connected Devices Platform User Service_32ab868
new: CDPUserSvc_45a8051 Auto Unknown Connected Devices Platform User Service_45a8051
old: ConsentUxUserSvc_32ab868 Manual Unknown ConsentUX_32ab868
new: ConsentUxUserSvc_45a8051 Manual Unknown ConsentUX_45a8051
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_32ab868
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_45a8051
old: DeviceAssociationBrokerSvc_32a Manual Unknown DeviceAssociationBroker_32ab868
new: DeviceAssociationBrokerSvc_45a Manual Unknown DeviceAssociationBroker_45a8051
old: DevicePickerUserSvc_32ab868 Manual Unknown DevicePicker_32ab868
old: DevicesFlowUserSvc_32ab868 Manual Unknown DevicesFlow_32ab868
new: DevicePickerUserSvc_45a8051 Manual Unknown DevicePicker_45a8051
new: DevicesFlowUserSvc_45a8051 Manual Unknown DevicesFlow_45a8051
old: MessagingService_32ab868 Manual Unknown MessagingService_32ab868
new: MessagingService_45a8051 Manual Unknown MessagingService_45a8051
old: OneSyncSvc_32ab868 Auto Unknown Synkroniseringsvärd_32ab868
new: OneSyncSvc_45a8051 Auto Unknown Synkroniseringsvärd_45a8051
old: PimIndexMaintenanceSvc_32ab868 Manual Unknown Contact Data_32ab868
new: PimIndexMaintenanceSvc_45a8051 Manual Unknown Contact Data_45a8051
old: PrintWorkflowUserSvc_32ab868 Manual Unknown PrintWorkflow_32ab868
new: PrintWorkflowUserSvc_45a8051 Manual Unknown PrintWorkflow_45a8051
old: UdkUserSvc_32ab868 Manual Unknown Udk-användartjänst_32ab868
new: UdkUserSvc_45a8051 Manual Unknown Udk-användartjänst_45a8051
old: UnistoreSvc_32ab868 Manual Unknown User Data Storage_32ab868
new: UnistoreSvc_45a8051 Manual Unknown User Data Storage_45a8051
old: UserDataSvc_32ab868 Manual Unknown User Data Access_32ab868
new: UserDataSvc_45a8051 Manual Unknown User Data Access_45a8051
old: WpnUserService_32ab868 Auto Unknown Windows Push Notifications User Service_32ab868
new: WpnUserService_45a8051 Auto Unknown Windows Push Notifications User Service_45a8051
system - services - AarSvc_32ab868
old: DisplayName : Agent Activation Runtime_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_45a8051
new: DisplayName : Agent Activation Runtime_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_32ab868
old: DisplayName : Användartjänst för Spel-DVR och sändning_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_45a8051
new: DisplayName : Användartjänst för Spel-DVR och sändning_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_32ab868
old: DisplayName : Bluetooth User Support Service_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_45a8051
new: DisplayName : Bluetooth User Support Service_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_32ab868
old: DisplayName : CaptureService_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_32ab868
old: DisplayName : Clipboard User Service_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_45a8051
new: DisplayName : CaptureService_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_45a8051
new: DisplayName : Clipboard User Service_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_32ab868
old: DisplayName : Connected Devices Platform User Service_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_45a8051
new: DisplayName : Connected Devices Platform User Service_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_32ab868
old: DisplayName : ConsentUX_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_45a8051
new: DisplayName : ConsentUX_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_32ab868
old: DisplayName : CredentialEnrollmentManagerUserSvc_32ab868
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_45a8051
new: DisplayName : CredentialEnrollmentManagerUserSvc_45a8051
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_32ab868
old: DisplayName : DeviceAssociationBroker_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_45a8051
new: DisplayName : DeviceAssociationBroker_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_32ab868
old: DisplayName : DevicePicker_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_32ab868
old: DisplayName : DevicesFlow_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_45a8051
new: DisplayName : DevicePicker_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_45a8051
new: DisplayName : DevicesFlow_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.89\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.105\elevation_service.exe"
system - services - MessagingService_32ab868
old: DisplayName : MessagingService_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_45a8051
new: DisplayName : MessagingService_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_32ab868
old: DisplayName : Synkroniseringsvärd_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_45a8051
new: DisplayName : Synkroniseringsvärd_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_32ab868
old: DisplayName : Contact Data_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_45a8051
new: DisplayName : Contact Data_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_32ab868
old: DisplayName : PrintWorkflow_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_45a8051
new: DisplayName : PrintWorkflow_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_32ab868
old: DisplayName : Udk-användartjänst_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_45a8051
new: DisplayName : Udk-användartjänst_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_32ab868
old: DisplayName : User Data Storage_32ab868
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_45a8051
new: DisplayName : User Data Storage_45a8051
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_32ab868
old: DisplayName : User Data Access_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_45a8051
new: DisplayName : User Data Access_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_32ab868
old: DisplayName : Windows Push Notifications User Service_32ab868
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_45a8051
new: DisplayName : Windows Push Notifications User Service_45a8051
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2020-07-27 17.33.29
remark :
runtime : 17
count : 247
previous date : 2020-07-27
previous time : 00.58.08
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 6)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 6)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 6)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 6)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Fax (omdirigerade 6)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 0
new: Default : 1
hardware - printer - iR C3380 (omdirigerade 6)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 6)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS007
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 6)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS008
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 6)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS010
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 6)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS009
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
network - connections - Share g
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
new: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
new: ResourceType : Disk
network - connections - Share h
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: ResourceType : Disk
network - connections - Share i
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Applications
new: RemotePath : \\WIN-PL3BEWOIR9X\Applications
new: ResourceType : Disk
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
Top Runs Differences at: 2020-07-27 00.58.08
remark :
runtime : 19
count : 520
previous date : 2020-07-26
previous time : 17.33.29
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 6)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 1
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS001
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 6)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS002
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 6)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS003
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 6)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS004
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Fax (omdirigerade 6)
new: CapabilityDescriptions : Color,Duplex
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS005
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 1
new: Default : 0
hardware - printer - iR C3380 (omdirigerade 6)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS006
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 6)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS007
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 6)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS008
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 6)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS010
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 6)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS009
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
network - connections - Share g
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
old: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
old: ResourceType : Disk
network - connections - Share h
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: ResourceType : Disk
network - connections - Share i
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Applications
old: RemotePath : \\WIN-PL3BEWOIR9X\Applications
old: ResourceType : Disk
system - SystemDriver - MpKslDrv
old: AcceptPause : 0
old: Description : MpKslDrv
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{91780774-2593-4443-8B77-67FC1F6F257C}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : System
system - services - survey
old: AarSvc_283a9a8 Manual Unknown Agent Activation Runtime_283a9a8
new: AarSvc_32ab868 Manual Unknown Agent Activation Runtime_32ab868
old: BcastDVRUserService_283a9a8 Manual Unknown Användartjänst för Spel-DVR och sändning_283a9a8
new: BcastDVRUserService_32ab868 Manual Unknown Användartjänst för Spel-DVR och sändning_32ab868
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_283a9a8 Manual Unknown Bluetooth User Support Service_283a9a8
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_32ab868 Manual Unknown Bluetooth User Support Service_32ab868
old: CaptureService_283a9a8 Manual Unknown CaptureService_283a9a8
old: cbdhsvc_283a9a8 Manual Unknown Clipboard User Service_283a9a8
new: CaptureService_32ab868 Manual Unknown CaptureService_32ab868
new: cbdhsvc_32ab868 Manual Unknown Clipboard User Service_32ab868
old: CDPUserSvc_283a9a8 Auto Unknown Connected Devices Platform User Service_283a9a8
new: CDPUserSvc_32ab868 Auto Unknown Connected Devices Platform User Service_32ab868
old: ConsentUxUserSvc_283a9a8 Manual Unknown ConsentUX_283a9a8
new: ConsentUxUserSvc_32ab868 Manual Unknown ConsentUX_32ab868
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_283a9a8
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_32ab868
old: DeviceAssociationBrokerSvc_283 Manual Unknown DeviceAssociationBroker_283a9a8
new: DeviceAssociationBrokerSvc_32a Manual Unknown DeviceAssociationBroker_32ab868
old: DevicePickerUserSvc_283a9a8 Manual Unknown DevicePicker_283a9a8
old: DevicesFlowUserSvc_283a9a8 Manual Unknown DevicesFlow_283a9a8
new: DevicePickerUserSvc_32ab868 Manual Unknown DevicePicker_32ab868
new: DevicesFlowUserSvc_32ab868 Manual Unknown DevicesFlow_32ab868
old: MessagingService_283a9a8 Manual Unknown MessagingService_283a9a8
new: MessagingService_32ab868 Manual Unknown MessagingService_32ab868
old: OneSyncSvc_283a9a8 Auto Unknown Synkroniseringsvärd_283a9a8
new: OneSyncSvc_32ab868 Auto Unknown Synkroniseringsvärd_32ab868
old: PimIndexMaintenanceSvc_283a9a8 Manual Unknown Contact Data_283a9a8
new: PimIndexMaintenanceSvc_32ab868 Manual Unknown Contact Data_32ab868
old: PrintWorkflowUserSvc_283a9a8 Manual Unknown PrintWorkflow_283a9a8
new: PrintWorkflowUserSvc_32ab868 Manual Unknown PrintWorkflow_32ab868
old: UdkUserSvc_283a9a8 Manual Unknown Udk-användartjänst_283a9a8
new: UdkUserSvc_32ab868 Manual Unknown Udk-användartjänst_32ab868
old: UnistoreSvc_283a9a8 Manual Unknown User Data Storage_283a9a8
new: UnistoreSvc_32ab868 Manual Unknown User Data Storage_32ab868
old: UserDataSvc_283a9a8 Manual Unknown User Data Access_283a9a8
new: UserDataSvc_32ab868 Manual Unknown User Data Access_32ab868
old: WpnUserService_283a9a8 Auto Unknown Windows Push Notifications User Service_283a9a8
new: WpnUserService_32ab868 Auto Unknown Windows Push Notifications User Service_32ab868
system - services - AarSvc_283a9a8
old: DisplayName : Agent Activation Runtime_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_32ab868
new: DisplayName : Agent Activation Runtime_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_283a9a8
old: DisplayName : Användartjänst för Spel-DVR och sändning_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_32ab868
new: DisplayName : Användartjänst för Spel-DVR och sändning_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_283a9a8
old: DisplayName : Bluetooth User Support Service_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_32ab868
new: DisplayName : Bluetooth User Support Service_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_283a9a8
old: DisplayName : CaptureService_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_283a9a8
old: DisplayName : Clipboard User Service_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_32ab868
new: DisplayName : CaptureService_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_32ab868
new: DisplayName : Clipboard User Service_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_283a9a8
old: DisplayName : Connected Devices Platform User Service_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_32ab868
new: DisplayName : Connected Devices Platform User Service_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_283a9a8
old: DisplayName : ConsentUX_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_32ab868
new: DisplayName : ConsentUX_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_283a9a8
old: DisplayName : CredentialEnrollmentManagerUserSvc_283a9a8
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_32ab868
new: DisplayName : CredentialEnrollmentManagerUserSvc_32ab868
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_283a9a8
old: DisplayName : DeviceAssociationBroker_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_32ab868
new: DisplayName : DeviceAssociationBroker_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_283a9a8
old: DisplayName : DevicePicker_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_283a9a8
old: DisplayName : DevicesFlow_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_32ab868
new: DisplayName : DevicePicker_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_32ab868
new: DisplayName : DevicesFlow_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_283a9a8
old: DisplayName : MessagingService_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_32ab868
new: DisplayName : MessagingService_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_283a9a8
old: DisplayName : Synkroniseringsvärd_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_32ab868
new: DisplayName : Synkroniseringsvärd_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_283a9a8
old: DisplayName : Contact Data_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_32ab868
new: DisplayName : Contact Data_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_283a9a8
old: DisplayName : PrintWorkflow_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_32ab868
new: DisplayName : PrintWorkflow_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_283a9a8
old: DisplayName : Udk-användartjänst_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UdkUserSvc_32ab868
new: DisplayName : Udk-användartjänst_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_283a9a8
old: DisplayName : User Data Storage_283a9a8
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_32ab868
new: DisplayName : User Data Storage_32ab868
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_283a9a8
old: DisplayName : User Data Access_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_32ab868
new: DisplayName : User Data Access_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_283a9a8
old: DisplayName : Windows Push Notifications User Service_283a9a8
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_32ab868
new: DisplayName : Windows Push Notifications User Service_32ab868
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2020-07-26 17.33.29
remark :
runtime : 15
count : 243
previous date : 2020-07-26
previous time : 17.01.56
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 4)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 4)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 4)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 4)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Fax (omdirigerade 4)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 0
new: Default : 1
hardware - printer - iR C3380 (omdirigerade 4)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 4)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS007
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 4)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS008
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 4)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS010
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 4)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS009
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
network - connections - Share g
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
new: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
new: ResourceType : Disk
network - connections - Share h
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: ResourceType : Disk
network - connections - Share i
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Applications
new: RemotePath : \\WIN-PL3BEWOIR9X\Applications
new: ResourceType : Disk
Top Runs Differences at: 2020-07-26 17.01.56
remark :
runtime : 18
count : 4
previous date : 2020-07-26
previous time : 16.53.33
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
Top Runs Differences at: 2020-07-26 16.53.33
remark :
runtime : 18
count : 384
previous date : 2020-07-26
previous time : 15.52.48
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 4)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 1
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS001
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 4)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS002
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 4)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS003
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 4)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS004
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Fax (omdirigerade 4)
new: CapabilityDescriptions : Color,Duplex
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS005
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 1
new: Default : 0
hardware - printer - iR C3380 (omdirigerade 4)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS006
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 4)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS007
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 4)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS008
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 4)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS010
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 4)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS009
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
network - connections - Share g
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
old: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
old: ResourceType : Disk
network - connections - Share h
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: ResourceType : Disk
network - connections - Share i
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Applications
old: RemotePath : \\WIN-PL3BEWOIR9X\Applications
old: ResourceType : Disk
system - SystemDriver - MpKslDrv
new: AcceptPause : 0
new: Description : MpKslDrv
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{91780774-2593-4443-8B77-67FC1F6F257C}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : System
system - services - survey
new: AarSvc_283a9a8 Manual Unknown Agent Activation Runtime_283a9a8
new: BcastDVRUserService_283a9a8 Manual Unknown Användartjänst för Spel-DVR och sändning_283a9a8
new: BluetoothUserService_283a9a8 Manual Unknown Bluetooth User Support Service_283a9a8
new: CaptureService_283a9a8 Manual Unknown CaptureService_283a9a8
new: cbdhsvc_283a9a8 Manual Unknown Clipboard User Service_283a9a8
new: CDPUserSvc_283a9a8 Auto Unknown Connected Devices Platform User Service_283a9a8
new: ConsentUxUserSvc_283a9a8 Manual Unknown ConsentUX_283a9a8
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_283a9a8
new: DeviceAssociationBrokerSvc_283 Manual Unknown DeviceAssociationBroker_283a9a8
new: DevicePickerUserSvc_283a9a8 Manual Unknown DevicePicker_283a9a8
new: DevicesFlowUserSvc_283a9a8 Manual Unknown DevicesFlow_283a9a8
new: MessagingService_283a9a8 Manual Unknown MessagingService_283a9a8
new: OneSyncSvc_283a9a8 Auto Unknown Synkroniseringsvärd_283a9a8
new: PimIndexMaintenanceSvc_283a9a8 Manual Unknown Contact Data_283a9a8
new: PrintWorkflowUserSvc_283a9a8 Manual Unknown PrintWorkflow_283a9a8
new: UdkUserSvc_283a9a8 Manual Unknown Udk-användartjänst_283a9a8
new: UnistoreSvc_283a9a8 Manual Unknown User Data Storage_283a9a8
new: UserDataSvc_283a9a8 Manual Unknown User Data Access_283a9a8
new: WpnUserService_283a9a8 Auto Unknown Windows Push Notifications User Service_283a9a8
system - services - AarSvc_283a9a8
new: DisplayName : Agent Activation Runtime_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_283a9a8
new: DisplayName : Användartjänst för Spel-DVR och sändning_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_283a9a8
new: DisplayName : Bluetooth User Support Service_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_283a9a8
new: DisplayName : CaptureService_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_283a9a8
new: DisplayName : Clipboard User Service_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_283a9a8
new: DisplayName : Connected Devices Platform User Service_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_283a9a8
new: DisplayName : ConsentUX_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_283a9a8
new: DisplayName : CredentialEnrollmentManagerUserSvc_283a9a8
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_283a9a8
new: DisplayName : DeviceAssociationBroker_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_283a9a8
new: DisplayName : DevicePicker_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_283a9a8
new: DisplayName : DevicesFlow_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_283a9a8
new: DisplayName : MessagingService_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_283a9a8
new: DisplayName : Synkroniseringsvärd_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_283a9a8
new: DisplayName : Contact Data_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_283a9a8
new: DisplayName : PrintWorkflow_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UdkUserSvc_283a9a8
new: DisplayName : Udk-användartjänst_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_283a9a8
new: DisplayName : User Data Storage_283a9a8
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_283a9a8
new: DisplayName : User Data Access_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_283a9a8
new: DisplayName : Windows Push Notifications User Service_283a9a8
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
users - local groups - Administratörer
new: Member : administrator
Top Runs Differences at: 2020-07-26 15.52.48
remark :
runtime : 62
count : 18
previous date : 2020-07-19
previous time : 17.33.30
system - services - survey
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - scheduled tasks - \Microsoft\Windows\Setup\SnapshotCleanupTask
old: Logon Mode : Interactive/Background
old: Task To Run : C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe -removesnapshot
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management : Stop On Battery Mode, No Start On Batteries
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
old: Repeat: Every : 120 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
Top Runs Differences at: 2020-07-19 17.33.30
remark :
runtime : 15
count : 26
previous date : 2020-07-18
previous time : 17.48.58
system - scheduled tasks - \Microsoft\Windows\Application Experience\PcaPatchDbTask
new: Logon Mode : Interactive/Background
new: Task To Run : %windir%\system32\rundll32.exe %windir%\system32\PcaSvc.dll,PcaPatchSdbTask
new: Start In : N/A
new: Comment : Updates compatibility database
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 24:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
new: Repeat: Every : 12 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-07-18 17.39.04
remark :
runtime : 56
count : 411
previous date : 2020-07-18
previous time : 16.27.44
boot - startup - OneDriveSetup
old: Command : C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
old: Description : OneDriveSetup
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1123\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : OneDriveSetup
old: SettingID :
old: User : CORP\Tickoff
old:
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Fax (omdirigerade 2)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 0
new: Default : 1
hardware - printer - iR C3380 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS007
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS008
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS010
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS009
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
network - connections - Share g
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
new: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
new: ResourceType : Disk
network - connections - Share h
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: ResourceType : Disk
network - connections - Share i
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Applications
new: RemotePath : \\WIN-PL3BEWOIR9X\Applications
new: ResourceType : Disk
system - hotfix - KB4561600
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4565627
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_47c2a4 Manual Unknown Agent Activation Runtime_47c2a4
old: BcastDVRUserService_47c2a4 Manual Unknown Användartjänst för Spel-DVR och sändning_47c2a4
old: BluetoothUserService_47c2a4 Manual Unknown Bluetooth User Support Service_47c2a4
old: CaptureService_47c2a4 Manual Unknown CaptureService_47c2a4
old: cbdhsvc_47c2a4 Manual Unknown Clipboard User Service_47c2a4
old: CDPUserSvc_47c2a4 Auto Unknown Connected Devices Platform User Service_47c2a4
old: ConsentUxUserSvc_47c2a4 Manual Unknown ConsentUX_47c2a4
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_47c2a4
old: DeviceAssociationBrokerSvc_47c Manual Unknown DeviceAssociationBroker_47c2a4
old: DevicePickerUserSvc_47c2a4 Manual Unknown DevicePicker_47c2a4
old: DevicesFlowUserSvc_47c2a4 Manual Unknown DevicesFlow_47c2a4
old: MessagingService_47c2a4 Manual Unknown MessagingService_47c2a4
old: OneSyncSvc_47c2a4 Auto Unknown Synkroniseringsvärd_47c2a4
old: PimIndexMaintenanceSvc_47c2a4 Manual Unknown Contact Data_47c2a4
old: PrintWorkflowUserSvc_47c2a4 Manual Unknown PrintWorkflow_47c2a4
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
old: UdkUserSvc_47c2a4 Manual Unknown Udk-användartjänst_47c2a4
old: UnistoreSvc_47c2a4 Manual Unknown User Data Storage_47c2a4
old: UserDataSvc_47c2a4 Manual Unknown User Data Access_47c2a4
old: WpnUserService_47c2a4 Auto Unknown Windows Push Notifications User Service_47c2a4
system - services - AarSvc_47c2a4
old: DisplayName : Agent Activation Runtime_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_47c2a4
old: DisplayName : Användartjänst för Spel-DVR och sändning_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_47c2a4
old: DisplayName : Bluetooth User Support Service_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_47c2a4
old: DisplayName : CaptureService_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_47c2a4
old: DisplayName : Clipboard User Service_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_47c2a4
old: DisplayName : Connected Devices Platform User Service_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_47c2a4
old: DisplayName : ConsentUX_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_47c2a4
old: DisplayName : CredentialEnrollmentManagerUserSvc_47c2a4
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_47c2a4
old: DisplayName : DeviceAssociationBroker_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_47c2a4
old: DisplayName : DevicePicker_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_47c2a4
old: DisplayName : DevicesFlow_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_47c2a4
old: DisplayName : MessagingService_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_47c2a4
old: DisplayName : Synkroniseringsvärd_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_47c2a4
old: DisplayName : Contact Data_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_47c2a4
old: DisplayName : PrintWorkflow_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UdkUserSvc_47c2a4
old: DisplayName : Udk-användartjänst_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_47c2a4
old: DisplayName : User Data Storage_47c2a4
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_47c2a4
old: DisplayName : User Data Access_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_47c2a4
old: DisplayName : Windows Push Notifications User Service_47c2a4
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work
old: Run As User : CORP\RAILROAD4$
new: Run As User : CORP\railroad4$
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Schedule Wake To Work
old: Run As User : CORP\RAILROAD4$
new: Run As User : CORP\railroad4$
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Schedule Work
old: Run As User : CORP\RAILROAD4$
new: Run As User : CORP\railroad4$
Top Runs Differences at: 2020-07-18 16.27.44
remark :
runtime : 35
count : 258
previous date : 2020-07-18
previous time : 14.49.50
boot - startup - OneDriveSetup
old: Command : C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
old: Description : OneDriveSetup
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : OneDriveSetup
old: SettingID :
old: User : CORP\administrator
old:
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 1
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS001
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS002
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS003
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS004
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Fax (omdirigerade 2)
new: CapabilityDescriptions : Color,Duplex
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS005
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 1
new: Default : 0
hardware - printer - iR C3380 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS006
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS007
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS008
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS010
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS009
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
network - connections - Share g
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
old: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
old: ResourceType : Disk
network - connections - Share h
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: ResourceType : Disk
network - connections - Share i
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Applications
old: RemotePath : \\WIN-PL3BEWOIR9X\Applications
old: ResourceType : Disk
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
Top Runs Differences at: 2020-07-18 14.49.50
remark :
runtime : 48
count : 1504
previous date : 2020-07-17
previous time : 20.20.01
general
old: BuildNumber:18363
new: BuildNumber:19041
old: Version:10.0.18363
new: Version:10.0.19041
old: SerialNumber:00330-80000-00000-AA827
new: SerialNumber:00330-80000-00000-AA176
boot - startup - HotKeysCmds
old: Command : "C:\windows\system32\hkcmd.exe"
old: Description : HotKeysCmds
old: Location : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : HotKeysCmds
old: SettingID :
old: User : Public
old:
boot - startup - OneDrive
old: Command : "C:\Users\administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
old: Description : OneDrive
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : OneDrive
old: SettingID :
old: User : CORP\administrator
old:
boot - startup - Persistence
old: Command : "C:\windows\system32\igfxpers.exe"
old: Description : Persistence
old: Location : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : Persistence
old: SettingID :
old: User : Public
old:
boot - startup - OneDriveSetup
new: Command : C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
new: Description : OneDriveSetup
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1123\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : OneDriveSetup
new: SettingID :
new: User : CORP\Tickoff
new:
new: Command : C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
new: Description : OneDriveSetup
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : OneDriveSetup
new: SettingID :
new: User : CORP\administrator
new:
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Fax (omdirigerade 2)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 0
new: Default : 1
hardware - printer - iR C3380 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS007
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS008
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS010
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS009
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
network - connections - Share g
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
new: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
new: ResourceType : Disk
network - connections - Share h
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: ResourceType : Disk
network - connections - Share i
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Applications
new: RemotePath : \\WIN-PL3BEWOIR9X\Applications
new: ResourceType : Disk
system - SystemDriver - BasicDisplay
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicdisplay.inf_amd64_307898c750ba9e44\BasicDisplay.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicdisplay.inf_amd64_62ba5773ba05edee\BasicDisplay.sys
system - SystemDriver - BasicRender
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicrender.inf_amd64_ba2a8de08ea0d469\BasicRender.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\basicrender.inf_amd64_49a8589f00d970d9\BasicRender.sys
system - SystemDriver - bindflt
old: StartMode : Manual
new: StartMode : Auto
system - SystemDriver - CimFS
new: AcceptPause : 0
new: Description : CimFS
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\CimFS.sys
new: ServiceType : File System Driver
new: StartMode : System
system - SystemDriver - CompositeBus
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\compositebus.inf_amd64_43ac632006e874bb\CompositeBus.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\compositebus.inf_amd64_7500cffa210c6946\CompositeBus.sys
system - SystemDriver - genericusbfn
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\genericusbfn.inf_amd64_b9c53b80e63af230\genericusbfn.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\genericusbfn.inf_amd64_53931f0ae21d6d2c\genericusbfn.sys
system - SystemDriver - hvservice
new: AcceptPause : 0
new: Description : Hypervisor/Virtual Machine Support Driver
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\hvservice.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
old: AcceptPause : 0
old: Description : Hypervisor/Virtual Machine Support Driver
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\hvservice.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - IntcDAud
old: PathName : C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
new: PathName : C:\WINDOWS\system32\drivers\IntcDAud.sys
system - SystemDriver - intelpmax
old: Description : Intel Power Limit Driver
new: Description : Intel(R) Dynamic Device Peak Power Manager Driver
system - SystemDriver - MQAC
old: Description : Message Queuing Access Control
new: Description : Message Queuing-åtkomstkontroll
system - SystemDriver - MsQuic
new: AcceptPause : 0
new: Description : MsQuic
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\msquic.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - SystemDriver - NdisCap
old: StartMode : Manual
new: StartMode : System
system - SystemDriver - NdisVirtualBus
new: AcceptPause : 0
new: Description : Microsoft Virtual Network Adapter Enumerator
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\NdisVirtualBus.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
old: AcceptPause : 0
old: Description : Microsoft Virtual Network Adapter Enumerator
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\NdisVirtualBus.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - Serenum
old: Description : Serenum Filter Driver
new: Description : Serenum-filterdrivrutin
system - SystemDriver - Serial
old: Description : Serial port driver
new: Description : Drivrutin för seriell port
old: StartMode : System
new: StartMode : Manual
system - SystemDriver - spaceparser
new: AcceptPause : 0
new: Description : Space Parser
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\spaceparser.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - SystemDriver - swenum
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\swenum.inf_amd64_1c567926e5b29133\swenum.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\swenum.inf_amd64_16a14542b63c02af\swenum.sys
system - SystemDriver - Telemetry
new: AcceptPause : 0
new: Description : Intel(R) Telemetry Service
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\IntelTA.sys
new: ServiceType : Kernel Driver
new: StartMode : Boot
system - SystemDriver - UEFI
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\uefi.inf_amd64_4fcaf0fc6eaf7533\UEFI.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\uefi.inf_amd64_c1628ffa62c8e54c\UEFI.sys
system - SystemDriver - UfxChipidea
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\ufxchipidea.inf_amd64_624eef84faf426d6\UfxChipidea.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\ufxchipidea.inf_amd64_1c78775fffab6a0a\UfxChipidea.sys
system - SystemDriver - umbus
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\umbus.inf_amd64_e566af5dd9858a0e\umbus.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\umbus.inf_amd64_b78a9c5b6fd62c27\umbus.sys
system - SystemDriver - UrsChipidea
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\urschipidea.inf_amd64_86da23c455846f41\urschipidea.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\urschipidea.inf_amd64_78ad1c14e33df968\urschipidea.sys
system - SystemDriver - UrsSynopsys
old: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\urssynopsys.inf_amd64_7302ce5d1420ed71\urssynopsys.sys
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\urssynopsys.inf_amd64_057fa37902020500\urssynopsys.sys
system - SystemDriver - vdrvroot
new: AcceptPause : 0
new: Description : Microsoft Virtual Drive Enumerator
new: DesktopInteract : 0
new: ErrorControl : Critical
new: PathName : C:\WINDOWS\system32\drivers\vdrvroot.sys
new: ServiceType : Kernel Driver
new: StartMode : Boot
system - SystemDriver - VerifierExt
new: AcceptPause : 0
new: Description : Tillägg för Drivrutinsverifieraren
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\VerifierExt.sys
new: ServiceType : Kernel Driver
new: StartMode : Disabled
system - SystemDriver - vhdmp
new: AcceptPause : 0
new: Description : vhdmp
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\vhdmp.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - SystemDriver - vhf
new: AcceptPause : 0
new: Description : VHF-drivrutin (Virtual HID Framework)
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\vhf.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - SystemDriver - Vid
new: AcceptPause : 0
new: Description : Vid
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\Vid.sys
new: ServiceType : Kernel Driver
new: StartMode : System
system - SystemDriver - VirtualRender
new: AcceptPause : 0
new: Description : VirtualRender
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : C:\WINDOWS\system32\DriverStore\FileRepository\vrd.inf_amd64_81fbd405ff2470fc\vrd.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - SystemDriver - vmbus
new: AcceptPause : 0
new: Description : Buss för virtuell dator
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\vmbus.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - SystemDriver - VMBusHID
new: AcceptPause : 0
new: Description : VMBusHID
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : C:\WINDOWS\system32\drivers\VMBusHID.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - SystemDriver - vmgid
new: AcceptPause : 0
new: Description : Drivrutin för Microsoft Hyper-V-gästinfrastruktur
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\vmgid.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - SystemDriver - volmgr
new: AcceptPause : 0
new: Description : Volume Manager Driver
new: DesktopInteract : 0
new: ErrorControl : Critical
new: PathName : C:\WINDOWS\system32\drivers\volmgr.sys
new: ServiceType : Kernel Driver
new: StartMode : Boot
system - SystemDriver - volmgrx
new: AcceptPause : 0
new: Description : Dynamic Volume Manager
new: DesktopInteract : 0
new: ErrorControl : Critical
new: PathName : C:\WINDOWS\system32\drivers\volmgrx.sys
new: ServiceType : Kernel Driver
new: StartMode : Boot
system - SystemDriver - volsnap
new: AcceptPause : 0
new: Description : Drivrutin för skuggkopior av volymer
new: DesktopInteract : 0
new: ErrorControl : Critical
new: PathName : C:\WINDOWS\system32\drivers\volsnap.sys
new: ServiceType : Kernel Driver
new: StartMode : Boot
system - SystemDriver - volume
new: AcceptPause : 0
new: Description : Volymdrivrutin
new: DesktopInteract : 0
new: ErrorControl : Critical
new: PathName : C:\WINDOWS\system32\drivers\volume.sys
new: ServiceType : Kernel Driver
new: StartMode : Boot
system - SystemDriver - vpci
new: AcceptPause : 0
new: Description : Virtuell PCI-buss för Hyper-V från Microsoft
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\vpci.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - SystemDriver - vsmraid
new: AcceptPause : 0
new: Description : vsmraid
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\vsmraid.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - SystemDriver - VSTXRAID
new: AcceptPause : 0
new: Description : VIA StorX Storage RAID Controller Windows Driver
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\vstxraid.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - SystemDriver - vwifibus
new: AcceptPause : 0
new: Description : Virtual Wireless Bus Driver
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\vwifibus.sys
new: ServiceType : Kernel Driver
new: StartMode : Manual
system - SystemDriver - vwififlt
new: AcceptPause : 0
new: Description : Virtual WiFi Filter Driver
new: DesktopInteract : 0
new: ErrorControl : Normal
new: PathName : C:\WINDOWS\system32\drivers\vwififlt.sys
new: ServiceType : Kernel Driver
new: StartMode : System
system - SystemDriver - WdBoot
old: Description : Windows Defender Antivirus Boot Driver
new: Description : Microsoft Defender Antivirus Boot Driver
system - SystemDriver - WdFilter
old: Description : Windows Defender Antivirus Mini-Filter Driver
new: Description : Microsoft Defender Antivirus Mini-Filter Driver
system - SystemDriver - WdNisDrv
old: Description : Windows Defender Antivirus Network Inspection System Driver
new: Description : Microsoft Defender Antivirus Network Inspection System Driver
system - SystemDriver - vdrvroot
old: AcceptPause : 0
old: Description : Microsoft Virtual Drive Enumerator
old: DesktopInteract : 0
old: ErrorControl : Critical
old: PathName : C:\WINDOWS\system32\drivers\vdrvroot.sys
old: ServiceType : Kernel Driver
old: StartMode : Boot
system - SystemDriver - VerifierExt
old: AcceptPause : 0
old: Description : Tillägg för Drivrutinsverifieraren
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\VerifierExt.sys
old: ServiceType : Kernel Driver
old: StartMode : Disabled
system - SystemDriver - vhdmp
old: AcceptPause : 0
old: Description : vhdmp
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\vhdmp.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - vhf
old: AcceptPause : 0
old: Description : VHF-drivrutin (Virtual HID Framework)
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\vhf.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - Vid
old: AcceptPause : 0
old: Description : Vid
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\Vid.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - WinQuic
old: AcceptPause : 0
old: Description : WinQuic
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\winquic.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - vmbus
old: AcceptPause : 0
old: Description : Buss för virtuell dator
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\vmbus.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - VMBusHID
old: AcceptPause : 0
old: Description : VMBusHID
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : C:\WINDOWS\system32\drivers\VMBusHID.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - vmgid
old: AcceptPause : 0
old: Description : Drivrutin för Microsoft Hyper-V-gästinfrastruktur
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\vmgid.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - volmgr
old: AcceptPause : 0
old: Description : Volume Manager Driver
old: DesktopInteract : 0
old: ErrorControl : Critical
old: PathName : C:\WINDOWS\system32\drivers\volmgr.sys
old: ServiceType : Kernel Driver
old: StartMode : Boot
system - SystemDriver - volmgrx
old: AcceptPause : 0
old: Description : Dynamic Volume Manager
old: DesktopInteract : 0
old: ErrorControl : Critical
old: PathName : C:\WINDOWS\system32\drivers\volmgrx.sys
old: ServiceType : Kernel Driver
old: StartMode : Boot
system - SystemDriver - volsnap
old: AcceptPause : 0
old: Description : Drivrutin för skuggkopior av volymer
old: DesktopInteract : 0
old: ErrorControl : Critical
old: PathName : C:\WINDOWS\system32\drivers\volsnap.sys
old: ServiceType : Kernel Driver
old: StartMode : Boot
system - SystemDriver - volume
old: AcceptPause : 0
old: Description : Volymdrivrutin
old: DesktopInteract : 0
old: ErrorControl : Critical
old: PathName : C:\WINDOWS\system32\drivers\volume.sys
old: ServiceType : Kernel Driver
old: StartMode : Boot
system - SystemDriver - vpci
old: AcceptPause : 0
old: Description : Virtuell PCI-buss för Hyper-V från Microsoft
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\vpci.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - vsmraid
old: AcceptPause : 0
old: Description : vsmraid
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\vsmraid.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - VSTXRAID
old: AcceptPause : 0
old: Description : VIA StorX Storage RAID Controller Windows Driver
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\vstxraid.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - WUDFRd
old: PathName : C:\WINDOWS\system32\drivers\WUDFRd.sys
new: PathName : C:\WINDOWS\system32\drivers\WudfRd.sys
system - SystemDriver - vwifibus
old: AcceptPause : 0
old: Description : Virtual Wireless Bus Driver
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\vwifibus.sys
old: ServiceType : Kernel Driver
old: StartMode : Manual
system - SystemDriver - vwififlt
old: AcceptPause : 0
old: Description : Virtual WiFi Filter Driver
old: DesktopInteract : 0
old: ErrorControl : Normal
old: PathName : C:\WINDOWS\system32\drivers\vwififlt.sys
old: ServiceType : Kernel Driver
old: StartMode : System
system - hotfix - KB4497165
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4503308
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4506472
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4508433
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4509096
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4515383
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4516115
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4517245
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4520390
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4521863
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4524569
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4528759
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4537759
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4538674
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4541338
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4552152
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4560959
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4561600
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4565483
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4565554
old: Description : Security Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4565633
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4565503
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4566785
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_12413c0 Manual Unknown Agent Activation Runtime_12413c0
new: AarSvc_47c2a4 Manual Unknown Agent Activation Runtime_47c2a4
old: BcastDVRUserService_12413c0 Manual Unknown Användartjänst för Spel-DVR och sändning_12413c0
new: BcastDVRUserService_47c2a4 Manual Unknown Användartjänst för Spel-DVR och sändning_47c2a4
old: BluetoothUserService_12413c0 Manual Unknown Bluetooth User Support Service_12413c0
new: BluetoothUserService_47c2a4 Manual Unknown Bluetooth User Support Service_47c2a4
old: CaptureService_12413c0 Manual Unknown CaptureService_12413c0
old: cbdhsvc_12413c0 Manual Unknown Clipboard User Service_12413c0
new: CaptureService_47c2a4 Manual Unknown CaptureService_47c2a4
new: cbdhsvc_47c2a4 Manual Unknown Clipboard User Service_47c2a4
old: CDPUserSvc_12413c0 Auto Unknown Connected Devices Platform User Service_12413c0
new: CDPUserSvc_47c2a4 Auto Unknown Connected Devices Platform User Service_47c2a4
old: ConsentUxUserSvc_12413c0 Manual Unknown ConsentUX_12413c0
new: ConsentUxUserSvc_47c2a4 Manual Unknown ConsentUX_47c2a4
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_12413c0
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_47c2a4
old: DeviceAssociationBrokerSvc_124 Manual Unknown DeviceAssociationBroker_12413c0
new: DeviceAssociationBrokerSvc_47c Manual Unknown DeviceAssociationBroker_47c2a4
old: DevicePickerUserSvc_12413c0 Manual Unknown DevicePicker_12413c0
old: DevicesFlowUserSvc_12413c0 Manual Unknown DevicesFlow_12413c0
new: DevicePickerUserSvc_47c2a4 Manual Unknown DevicePicker_47c2a4
new: DevicesFlowUserSvc_47c2a4 Manual Unknown DevicesFlow_47c2a4
old: IKEEXT Auto Share Process IKE and AuthIP IPsec Keying Modules
new: IKEEXT Manual Share Process IKE and AuthIP IPsec Keying Modules
old: MessagingService_12413c0 Manual Unknown MessagingService_12413c0
new: MessagingService_47c2a4 Manual Unknown MessagingService_47c2a4
old: MSMQ Auto Own Process Message Queuing
new: MSMQ Auto Own Process Meddelandeköer
old: OneSyncSvc_12413c0 Auto Unknown Synkroniseringsvärd_12413c0
new: OneSyncSvc_47c2a4 Auto Unknown Synkroniseringsvärd_47c2a4
old: PimIndexMaintenanceSvc_12413c0 Manual Unknown Contact Data_12413c0
new: PimIndexMaintenanceSvc_47c2a4 Manual Unknown Contact Data_47c2a4
old: PrintWorkflowUserSvc_12413c0 Manual Unknown PrintWorkflow_12413c0
new: PrintWorkflowUserSvc_47c2a4 Manual Unknown PrintWorkflow_47c2a4
old: StorSvc Manual Share Process Storage Service
old: swprv Manual Own Process Microsoft Software Shadow Copy Provider
new: StorSvc Auto Share Process Storage Service
new: swprv Manual Own Process Microsoft Software Shadow Copy Provider
new: UdkUserSvc_47c2a4 Manual Unknown Udk-användartjänst_47c2a4
old: UnistoreSvc_12413c0 Manual Unknown User Data Storage_12413c0
new: UnistoreSvc_47c2a4 Manual Unknown User Data Storage_47c2a4
old: UserDataSvc_12413c0 Manual Unknown User Data Access_12413c0
new: UserDataSvc_47c2a4 Manual Unknown User Data Access_47c2a4
new: VacSvc Manual Own Process Tjänsten för volymetrisk ljudkomposition
new: VaultSvc Manual Share Process Credential Manager
new: vds Manual Own Process Virtual Disk
new: vmicguestinterface Manual Share Process Hyper-V Guest Service Interface
new: vmicheartbeat Manual Share Process Hyper-V Heartbeat Service
new: vmickvpexchange Manual Share Process Hyper-V Data Exchange Service
new: vmicrdv Manual Share Process Tjänsten Virtualisering av fjärrskrivbord för Hyper-V
new: vmicshutdown Manual Share Process Hyper-V Guest Shutdown Service
new: vmictimesync Manual Share Process Hyper-V Time Synchronization Service
new: vmicvmsession Manual Share Process Hyper-V PowerShell Direct Service
new: vmicvss Manual Share Process Hyper-V Volume Shadow Copy Requestor
new: VSS Manual Own Process Volume Shadow Copy
old: VacSvc Manual Own Process Tjänsten för volymetrisk ljudkomposition
old: VaultSvc Manual Share Process Credential Manager
old: WdNisSvc Manual Own Process Windows Defender Antivirus Network Inspection Service
old: vds Manual Own Process Virtual Disk
new: WdNisSvc Manual Own Process Microsoft Defender Antivirus Network Inspection Service
old: wercplsupport Manual Share Process Problem Reports and Solutions Control Panel Support
new: wercplsupport Manual Share Process Problem Reports Control Panel Support
old: WinDefend Auto Own Process Windows Defender Antivirus Service
new: WinDefend Auto Own Process Microsoft Defender Antivirus Service
old: vmicguestinterface Manual Share Process Hyper-V Guest Service Interface
old: vmicheartbeat Manual Share Process Hyper-V Heartbeat Service
old: vmickvpexchange Manual Share Process Hyper-V Data Exchange Service
old: vmicrdv Manual Share Process Tjänsten Virtualisering av fjärrskrivbord för Hyper-V
old: vmicshutdown Manual Share Process Hyper-V Guest Shutdown Service
old: vmictimesync Manual Share Process Hyper-V Time Synchronization Service
old: vmicvmsession Manual Share Process Hyper-V PowerShell Direct Service
old: vmicvss Manual Share Process Hyper-V Volume Shadow Copy Requestor
old: WpnUserService_12413c0 Auto Unknown Windows Push Notifications User Service_12413c0
new: WpnUserService_47c2a4 Auto Unknown Windows Push Notifications User Service_47c2a4
old: VSS Manual Own Process Volume Shadow Copy
system - services - AarSvc_12413c0
old: DisplayName : Agent Activation Runtime_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_47c2a4
new: DisplayName : Agent Activation Runtime_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_12413c0
old: DisplayName : Användartjänst för Spel-DVR och sändning_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_47c2a4
new: DisplayName : Användartjänst för Spel-DVR och sändning_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_12413c0
old: DisplayName : Bluetooth User Support Service_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_47c2a4
new: DisplayName : Bluetooth User Support Service_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_12413c0
old: DisplayName : CaptureService_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_12413c0
old: DisplayName : Clipboard User Service_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_47c2a4
new: DisplayName : CaptureService_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_47c2a4
new: DisplayName : Clipboard User Service_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_12413c0
old: DisplayName : Connected Devices Platform User Service_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_47c2a4
new: DisplayName : Connected Devices Platform User Service_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_12413c0
old: DisplayName : ConsentUX_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_47c2a4
new: DisplayName : ConsentUX_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_12413c0
old: DisplayName : CredentialEnrollmentManagerUserSvc_12413c0
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_47c2a4
new: DisplayName : CredentialEnrollmentManagerUserSvc_47c2a4
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_12413c0
old: DisplayName : DeviceAssociationBroker_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_47c2a4
new: DisplayName : DeviceAssociationBroker_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_12413c0
old: DisplayName : DevicePicker_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_12413c0
old: DisplayName : DevicesFlow_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_47c2a4
new: DisplayName : DevicePicker_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_47c2a4
new: DisplayName : DevicesFlow_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - FrameServer
old: StartName : NT AUTHORITY\LocalService
new: StartName : LocalSystem
system - services - IKEEXT
old: StartMode : Auto
new: StartMode : Manual
system - services - MessagingService_12413c0
old: DisplayName : MessagingService_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_47c2a4
new: DisplayName : MessagingService_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - MSMQ
old: DisplayName : Message Queuing
new: DisplayName : Meddelandeköer
system - services - OneSyncSvc_12413c0
old: DisplayName : Synkroniseringsvärd_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_47c2a4
new: DisplayName : Synkroniseringsvärd_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_12413c0
old: DisplayName : Contact Data_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_47c2a4
new: DisplayName : Contact Data_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_12413c0
old: DisplayName : PrintWorkflow_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_47c2a4
new: DisplayName : PrintWorkflow_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - StorSvc
old: StartMode : Manual
new: StartMode : Auto
system - services - swprv
old: DisplayName : Microsoft Software Shadow Copy Provider
old: PathName : C:\WINDOWS\System32\svchost.exe -k swprv
old: ServiceType : Own Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : LocalSystem
new: DisplayName : Microsoft Software Shadow Copy Provider
new: PathName : C:\WINDOWS\System32\svchost.exe -k swprv
new: ServiceType : Own Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - UdkUserSvc_47c2a4
new: DisplayName : Udk-användartjänst_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_12413c0
old: DisplayName : User Data Storage_12413c0
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_47c2a4
new: DisplayName : User Data Storage_47c2a4
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_12413c0
old: DisplayName : User Data Access_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_47c2a4
new: DisplayName : User Data Access_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - VacSvc
new: DisplayName : Tjänsten för volymetrisk ljudkomposition
new: PathName : C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
new: ServiceType : Own Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : NT AUTHORITY\LocalService
system - services - VaultSvc
new: DisplayName : Credential Manager
new: PathName : C:\WINDOWS\system32\lsass.exe
new: ServiceType : Share Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - vds
new: DisplayName : Virtual Disk
new: PathName : C:\WINDOWS\System32\vds.exe
new: ServiceType : Own Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - vmicguestinterface
new: DisplayName : Hyper-V Guest Service Interface
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
new: ServiceType : Share Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - vmicheartbeat
new: DisplayName : Hyper-V Heartbeat Service
new: PathName : C:\WINDOWS\system32\svchost.exe -k ICService -p
new: ServiceType : Share Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - vmickvpexchange
new: DisplayName : Hyper-V Data Exchange Service
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
new: ServiceType : Share Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - vmicrdv
new: DisplayName : Tjänsten Virtualisering av fjärrskrivbord för Hyper-V
new: PathName : C:\WINDOWS\system32\svchost.exe -k ICService -p
new: ServiceType : Share Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - vmicshutdown
new: DisplayName : Hyper-V Guest Shutdown Service
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
new: ServiceType : Share Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - vmictimesync
new: DisplayName : Hyper-V Time Synchronization Service
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
new: ServiceType : Share Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : NT AUTHORITY\LocalService
system - services - vmicvmsession
new: DisplayName : Hyper-V PowerShell Direct Service
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
new: ServiceType : Share Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - vmicvss
new: DisplayName : Hyper-V Volume Shadow Copy Requestor
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
new: ServiceType : Share Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - VSS
new: DisplayName : Volume Shadow Copy
new: PathName : C:\WINDOWS\system32\vssvc.exe
new: ServiceType : Own Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - VacSvc
old: DisplayName : Tjänsten för volymetrisk ljudkomposition
old: PathName : C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
old: ServiceType : Own Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : NT AUTHORITY\LocalService
system - services - VaultSvc
old: DisplayName : Credential Manager
old: PathName : C:\WINDOWS\system32\lsass.exe
old: ServiceType : Share Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - WdNisSvc
old: DisplayName : Windows Defender Antivirus Network Inspection Service
new: DisplayName : Microsoft Defender Antivirus Network Inspection Service
system - services - vds
old: DisplayName : Virtual Disk
old: PathName : C:\WINDOWS\System32\vds.exe
old: ServiceType : Own Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - wercplsupport
old: DisplayName : Problem Reports and Solutions Control Panel Support
new: DisplayName : Problem Reports Control Panel Support
system - services - WinDefend
old: DisplayName : Windows Defender Antivirus Service
new: DisplayName : Microsoft Defender Antivirus Service
system - services - vmicguestinterface
old: DisplayName : Hyper-V Guest Service Interface
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
old: ServiceType : Share Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - vmicheartbeat
old: DisplayName : Hyper-V Heartbeat Service
old: PathName : C:\WINDOWS\system32\svchost.exe -k ICService -p
old: ServiceType : Share Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - vmickvpexchange
old: DisplayName : Hyper-V Data Exchange Service
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
old: ServiceType : Share Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - vmicrdv
old: DisplayName : Tjänsten Virtualisering av fjärrskrivbord för Hyper-V
old: PathName : C:\WINDOWS\system32\svchost.exe -k ICService -p
old: ServiceType : Share Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - vmicshutdown
old: DisplayName : Hyper-V Guest Shutdown Service
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
old: ServiceType : Share Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - vmictimesync
old: DisplayName : Hyper-V Time Synchronization Service
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
old: ServiceType : Share Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : NT AUTHORITY\LocalService
system - services - vmicvmsession
old: DisplayName : Hyper-V PowerShell Direct Service
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
old: ServiceType : Share Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - vmicvss
old: DisplayName : Hyper-V Volume Shadow Copy Requestor
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
old: ServiceType : Share Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - WpnUserService_12413c0
old: DisplayName : Windows Push Notifications User Service_12413c0
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_47c2a4
new: DisplayName : Windows Push Notifications User Service_47c2a4
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - VSS
old: DisplayName : Volume Shadow Copy
old: PathName : C:\WINDOWS\system32\vssvc.exe
old: ServiceType : Own Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - RpcSs
old: Required by : WaaSMedicSvc
old: Required by : WAS
new: Required by : vds
new: Required by : VSS
new: Required by : WaaSMedicSvc
new: Required by : WAS
old: Required by : vds
old: Required by : VSS
system - services - WaaSMedicSvc
old: Requires : RpcSs
system - services - WAS
old: Requires : RpcSs
system - services - vds
new: Requires : RpcSs
system - services - VSS
new: Requires : RpcSs
system - services - WaaSMedicSvc
new: Requires : RpcSs
system - services - WAS
new: Requires : RpcSs
system - services - vds
old: Requires : RpcSs
system - services - VSS
old: Requires : RpcSs
system - scheduled tasks - \Microsoft\Windows\Application Experience\ProgramDataUpdater
old: Comment : $(@%SystemRoot%\system32\invagent.dll,-702)
new: Comment : Samlar in programtelemetriinformation om du accepterat att delta i Programmet f”r kvalitetsf”rb„ttring
system - scheduled tasks - \Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask
old: Stop Task If Runs X Hours and X Mins : 00:06:00
new: Stop Task If Runs X Hours and X Mins : 00:05:00
system - scheduled tasks - \Microsoft\Windows\Data Integrity Scan\Data Integrity Check And Scan
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : Skannar feltoleranta volymer med avseende p† latenta skador
new: Idle Time : Disabled
new: Power Management : Stop On Battery Mode, No Start On Batteries
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : Disabled
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Device Information\Device
old: Task To Run : %windir%\system32\devicecensus.exe
new: Task To Run : %windir%\system32\devicecensus.exe SystemCxt
system - scheduled tasks - \Microsoft\Windows\Device Information\Device User
new: Logon Mode : Interactive/Background
new: Task To Run : %windir%\system32\devicecensus.exe UserCxt
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Only Start If Idle for 1 minutes, If Not Idle Retry For 1440 minutes
new: Power Management :
new: Run As User : NT instans\Interaktiv
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 96:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner
old: Task To Run : %windir%\system32\mitigationscanner.exe
new: Task To Run : COM handler
old: Stop Task If Runs X Hours and X Mins : 00:05:00
new: Stop Task If Runs X Hours and X Mins : 00:30:00
system - scheduled tasks - \Microsoft\Windows\DiskCleanup\SilentCleanup
old: Run As User : Anv„ndare
new: Run As User : BUILTIN\Anv„ndare
system - scheduled tasks - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver
old: Run As User : Anv„ndare
new: Run As User : BUILTIN\Anv„ndare
system - scheduled tasks - \Microsoft\Windows\DiskFootprint\StorageSense
old: Run As User : Anv„ndare
new: Run As User : BUILTIN\Anv„ndare
system - scheduled tasks - \Microsoft\Windows\Flighting\FeatureConfig\UsageDataFlushing
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : Aktiviteten sparar data om funktionsanv„ndning till disk
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 00:05:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Flighting\FeatureConfig\UsageDataReporting
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : Aktivitet som med j„mna mellanrum loggar rapporter med funktionsanv„ndning
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 00:05:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Input\LocalUserSyncDataAvailable
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\Interaktiv
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : Disabled
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Input\MouseSyncDataAvailable
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\Interaktiv
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : Disabled
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Input\PenSyncDataAvailable
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\Interaktiv
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : Disabled
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Input\TouchpadSyncDataAvailable
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\Interaktiv
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : Disabled
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\International\Synchronize Language Settings
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : Synchronize User Language Settings from other devices.
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\Interaktiv
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 00:10:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\LanguageComponentsInstaller\Uninstallation
old: Power Management : No Start On Batteries
new: Power Management : Stop On Battery Mode, No Start On Batteries
system - scheduled tasks - \Microsoft\Windows\Maintenance\WinSAT
old: Run As User : Administrat”rer
new: Run As User : BUILTIN\Administrat”rer
system - scheduled tasks - \Microsoft\Windows\Management\Provisioning\Cellular
old: Comment : $(@%systemRoot%\system32\ProvTool.exe,-102)
new: Comment : N/A
system - scheduled tasks - \Microsoft\Windows\Management\Provisioning\Logon
old: Comment : $(@%systemRoot%\system32\ProvTool.exe,-102)
new: Comment : N/A
system - scheduled tasks - \Microsoft\Windows\Management\Provisioning\Retry
new: Logon Mode : Interactive/Background
new: Task To Run : %windir%\system32\ProvTool.exe /turn 5 /source ProvRetryTask
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Management\Provisioning\RunOnReboot
new: Logon Mode : Interactive/Background
new: Task To Run : %windir%\system32\ProvTool.exe /turn 5 /source ContinueSessionTask
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents
old: Run As User : Administrat”rer
new: Run As User : BUILTIN\Administrat”rer
system - scheduled tasks - \Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic
old: Run As User : Administrat”rer
new: Run As User : BUILTIN\Administrat”rer
system - scheduled tasks - \Microsoft\Windows\Multimedia\SystemSoundsService
old: Run As User : Anv„ndare
new: Run As User : BUILTIN\Anv„ndare
system - scheduled tasks - \Microsoft\Windows\NetTrace\GatherNetworkInfo
old: Run As User : Anv„ndare
new: Run As User : BUILTIN\Anv„ndare
system - scheduled tasks - \Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
old: Run As User : Administrat”rer
new: Run As User : BUILTIN\Administrat”rer
system - scheduled tasks - \Microsoft\Windows\Setup\SetupCleanupTask
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : Tar bort tidigare Windows-installationsfiler n†gra dagar efter installationen.
new: Idle Time : Disabled
new: Power Management : Stop On Battery Mode, No Start On Batteries
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
new: Repeat: Every : 120 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
system - scheduled tasks - \Microsoft\Windows\Setup\SnapshotCleanupTask
new: Logon Mode : Interactive/Background
new: Task To Run : C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe -removesnapshot
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management : Stop On Battery Mode, No Start On Batteries
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
new: Repeat: Every : 120 Hour(s), 0 Minute(s)
new: Repeat: Until: Time : None
system - scheduled tasks - \Microsoft\Windows\Shell\UpdateUserPictureTask
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\Interaktiv
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\SideShow\GadgetManager
old: Run As User : Anv„ndare
new: Run As User : BUILTIN\Anv„ndare
system - scheduled tasks - \Microsoft\Windows\SideShow\SessionAgent
old: Run As User : Anv„ndare
new: Run As User : BUILTIN\Anv„ndare
system - scheduled tasks - \Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization
old: Power Management : Stop On Battery Mode, No Start On Batteries
new: Power Management :
system - scheduled tasks - \Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization
old: Power Management : Stop On Battery Mode, No Start On Batteries
new: Power Management :
system - scheduled tasks - \Microsoft\Windows\Tcpip\IpAddressConflict1
old: Run As User : Anv„ndare
new: Run As User : BUILTIN\Anv„ndare
system - scheduled tasks - \Microsoft\Windows\Tcpip\IpAddressConflict2
old: Run As User : Anv„ndare
new: Run As User : BUILTIN\Anv„ndare
system - scheduled tasks - \Microsoft\Windows\termsrv\RemoteFX\RemoteFXWarningTask
old: Run As User : Anv„ndare
new: Run As User : BUILTIN\Anv„ndare
system - scheduled tasks - \Microsoft\Windows\TextServicesFramework\MsCtfMonitor
old: Run As User : Anv„ndare
new: Run As User : BUILTIN\Anv„ndare
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\AC Power Install
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\usoclient.exe StartInstall
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Report policies
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\usoclient.exe ReportPolicies
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work
new: Logon Mode : Interactive only
new: Task To Run : %systemroot%\system32\usoclient.exe StartMaintenanceWork
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management : Stop On Battery Mode, No Start On Batteries
new: Run As User : CORP\RAILROAD4$
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Schedule Wake To Work
new: Logon Mode : Interactive only
new: Task To Run : %systemroot%\system32\usoclient.exe StartWork
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management : Stop On Battery Mode, No Start On Batteries
new: Run As User : CORP\RAILROAD4$
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Schedule Work
new: Logon Mode : Interactive only
new: Task To Run : %systemroot%\system32\usoclient.exe StartWork
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management : Stop On Battery Mode, No Start On Batteries
new: Run As User : CORP\RAILROAD4$
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\UpdateModelTask
old: Comment : $(@%systemRoot%\system32\usocore.dll,-108)
new: Comment : Den h„r †tg„rden uppdaterar ML-modeller.
system - scheduled tasks - \Microsoft\Windows\WaaSMedic\PerformRemediation
old: Comment : Helps recover update-related services to the supported configuration.
new: Comment : Hj„lper till med att †terst„lla uppdateringsrelaterade tj„nster f”r den konfiguration som st”ds.
system - scheduled tasks - \Microsoft\Windows\WindowsColorSystem\Calibration Loader
old: Run As User : Anv„ndare
new: Run As User : BUILTIN\Anv„ndare
system - scheduled tasks - \Microsoft\Windows\Wininet\CacheTask
old: Run As User : Anv„ndare
new: Run As User : BUILTIN\Anv„ndare
system - scheduled tasks - \Microsoft\Windows\WwanSvc\OobeDiscovery
new: Logon Mode : Interactive/Background
new: Task To Run : COM handler
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 01:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \OneDrive Standalone Update Task-S-1-5-21-67378208-2373681959-2840377077-500
old: Logon Mode : Interactive only
old: Task To Run : %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management : Stop On Battery Mode
old: Run As User : CORP\administrator
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 24:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
old: Repeat: Every : 24 Hour(s), 0 Minute(s)
old: Repeat: Until: Time : None
Top Runs Differences at: 2020-07-17 20.20.01
remark :
runtime : 13
count : 385
previous date : 2020-07-17
previous time : 17.33.29
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 1
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS001
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS002
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS003
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS004
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Fax (omdirigerade 2)
new: CapabilityDescriptions : Color,Duplex
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS005
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 1
new: Default : 0
hardware - printer - iR C3380 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS006
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS007
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS008
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS010
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS009
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
network - connections - Share g
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
old: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
old: ResourceType : Disk
network - connections - Share h
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: ResourceType : Disk
network - connections - Share i
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Applications
old: RemotePath : \\WIN-PL3BEWOIR9X\Applications
old: ResourceType : Disk
system - services - survey
new: AarSvc_12413c0 Manual Unknown Agent Activation Runtime_12413c0
new: BcastDVRUserService_12413c0 Manual Unknown Användartjänst för Spel-DVR och sändning_12413c0
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_12413c0 Manual Unknown Bluetooth User Support Service_12413c0
new: CaptureService_12413c0 Manual Unknown CaptureService_12413c0
new: cbdhsvc_12413c0 Manual Unknown Clipboard User Service_12413c0
new: CDPUserSvc_12413c0 Auto Unknown Connected Devices Platform User Service_12413c0
new: ConsentUxUserSvc_12413c0 Manual Unknown ConsentUX_12413c0
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_12413c0
new: DeviceAssociationBrokerSvc_124 Manual Unknown DeviceAssociationBroker_12413c0
new: DevicePickerUserSvc_12413c0 Manual Unknown DevicePicker_12413c0
new: DevicesFlowUserSvc_12413c0 Manual Unknown DevicesFlow_12413c0
new: MessagingService_12413c0 Manual Unknown MessagingService_12413c0
new: OneSyncSvc_12413c0 Auto Unknown Synkroniseringsvärd_12413c0
new: PimIndexMaintenanceSvc_12413c0 Manual Unknown Contact Data_12413c0
new: PrintWorkflowUserSvc_12413c0 Manual Unknown PrintWorkflow_12413c0
new: UnistoreSvc_12413c0 Manual Unknown User Data Storage_12413c0
new: UserDataSvc_12413c0 Manual Unknown User Data Access_12413c0
new: WpnUserService_12413c0 Auto Unknown Windows Push Notifications User Service_12413c0
system - services - AarSvc_12413c0
new: DisplayName : Agent Activation Runtime_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_12413c0
new: DisplayName : Användartjänst för Spel-DVR och sändning_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_12413c0
new: DisplayName : Bluetooth User Support Service_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_12413c0
new: DisplayName : CaptureService_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_12413c0
new: DisplayName : Clipboard User Service_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_12413c0
new: DisplayName : Connected Devices Platform User Service_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_12413c0
new: DisplayName : ConsentUX_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_12413c0
new: DisplayName : CredentialEnrollmentManagerUserSvc_12413c0
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_12413c0
new: DisplayName : DeviceAssociationBroker_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_12413c0
new: DisplayName : DevicePicker_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_12413c0
new: DisplayName : DevicesFlow_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_12413c0
new: DisplayName : MessagingService_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_12413c0
new: DisplayName : Synkroniseringsvärd_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_12413c0
new: DisplayName : Contact Data_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_12413c0
new: DisplayName : PrintWorkflow_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_12413c0
new: DisplayName : User Data Storage_12413c0
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_12413c0
new: DisplayName : User Data Access_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_12413c0
new: DisplayName : Windows Push Notifications User Service_12413c0
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-07-17 17.33.29
remark :
runtime : 9
count : 4
previous date : 2020-07-16
previous time : 17.33.29
software - product - Google Chrome
old: Version : 83.0.4103.116
new: Version : 84.0.4147.89
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.116\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.89\elevation_service.exe"
Top Runs Differences at: 2020-07-16 17.33.29
remark :
runtime : 10
count : 7
previous date : 2020-07-15
previous time : 17.33.29
system - SystemDriver - MpKslDrv
old: AcceptPause : 0
old: Description : MpKslDrv
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7F9FA2BB-3DCA-404D-A134-36DC1E5642C5}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : System
Top Runs Differences at: 2020-07-15 17.33.29
remark :
runtime : 9
count : 7
previous date : 2020-07-15
previous time : 13.42.45
system - SystemDriver - MpKslDrv
new: AcceptPause : 0
new: Description : MpKslDrv
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7F9FA2BB-3DCA-404D-A134-36DC1E5642C5}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : System
Top Runs Differences at: 2020-07-15 13.42.45
remark :
runtime : 18
count : 188
previous date : 2020-07-14
previous time : 17.33.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
software - product - Adobe Flash Player 32 NPAPI
old: Version : 32.0.0.387
new: Version : 32.0.0.403
system - hotfix - KB4552931
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4560960
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4565483
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4565554
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4565633
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_3bb2843 Manual Unknown Agent Activation Runtime_3bb2843
old: BcastDVRUserService_3bb2843 Manual Unknown Användartjänst för Spel-DVR och sändning_3bb2843
old: BluetoothUserService_3bb2843 Manual Unknown Bluetooth User Support Service_3bb2843
old: CaptureService_3bb2843 Manual Unknown CaptureService_3bb2843
old: cbdhsvc_3bb2843 Manual Unknown Clipboard User Service_3bb2843
old: CDPUserSvc_3bb2843 Auto Unknown Connected Devices Platform User Service_3bb2843
old: ConsentUxUserSvc_3bb2843 Manual Unknown ConsentUX_3bb2843
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3bb2843
old: DeviceAssociationBrokerSvc_3bb Manual Unknown DeviceAssociationBroker_3bb2843
old: DevicePickerUserSvc_3bb2843 Manual Unknown DevicePicker_3bb2843
old: DevicesFlowUserSvc_3bb2843 Manual Unknown DevicesFlow_3bb2843
old: MessagingService_3bb2843 Manual Unknown MessagingService_3bb2843
old: OneSyncSvc_3bb2843 Auto Unknown Synkroniseringsvärd_3bb2843
old: PimIndexMaintenanceSvc_3bb2843 Manual Unknown Contact Data_3bb2843
old: PrintWorkflowUserSvc_3bb2843 Manual Unknown PrintWorkflow_3bb2843
old: UnistoreSvc_3bb2843 Manual Unknown User Data Storage_3bb2843
old: UserDataSvc_3bb2843 Manual Unknown User Data Access_3bb2843
old: WpnUserService_3bb2843 Auto Unknown Windows Push Notifications User Service_3bb2843
system - services - AarSvc_3bb2843
old: DisplayName : Agent Activation Runtime_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_3bb2843
old: DisplayName : Användartjänst för Spel-DVR och sändning_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_3bb2843
old: DisplayName : Bluetooth User Support Service_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_3bb2843
old: DisplayName : CaptureService_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_3bb2843
old: DisplayName : Clipboard User Service_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_3bb2843
old: DisplayName : Connected Devices Platform User Service_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_3bb2843
old: DisplayName : ConsentUX_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3bb2843
old: DisplayName : CredentialEnrollmentManagerUserSvc_3bb2843
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_3bb2843
old: DisplayName : DeviceAssociationBroker_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_3bb2843
old: DisplayName : DevicePicker_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_3bb2843
old: DisplayName : DevicesFlow_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_3bb2843
old: DisplayName : MessagingService_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_3bb2843
old: DisplayName : Synkroniseringsvärd_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_3bb2843
old: DisplayName : Contact Data_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_3bb2843
old: DisplayName : PrintWorkflow_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_3bb2843
old: DisplayName : User Data Storage_3bb2843
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_3bb2843
old: DisplayName : User Data Access_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_3bb2843
old: DisplayName : Windows Push Notifications User Service_3bb2843
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Adobe Flash Player NPAPI Notifier
old: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_387_Plugin.exe -check plugin
new: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_403_Plugin.exe -check plugin
system - scheduled tasks - \Microsoft\Windows\termsrv\RemoteFX\RemoteFXvGPUDisableTask
new: Logon Mode : Interactive/Background
new: Task To Run : %windir%\System32\RemoteFXvGPUDisablement.exe Disable
new: Start In : N/A
new: Comment : $(@%SystemRoot%\system32\RemoteFXvGPUDisablement.exe,-2)
new: Idle Time : Disabled
new: Power Management : No Start On Batteries
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 00:05:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\termsrv\RemoteFX\RemoteFXWarningTask
new: Logon Mode : Interactive/Background
new: Task To Run : %windir%\System32\RemoteFXvGPUDisablement.exe Warning
new: Start In : N/A
new: Comment : $(@%SystemRoot%\system32\RemoteFXvGPUDisablement.exe,-2)
new: Idle Time : Disabled
new: Power Management : No Start On Batteries
new: Run As User : Anv„ndare
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 00:05:00
new: End Date : N/A
new: Days : Every 30 day(s)
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2020-07-14 17.33.30
remark :
runtime : 9
count : 506
previous date : 2020-07-13
previous time : 18.21.39
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 11)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 11)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 11)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 11)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Fax (omdirigerade 11)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 0
new: Default : 1
hardware - printer - iR C3380 (omdirigerade 11)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 11)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS008
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 11)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS007
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 11)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS010
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 11)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS009
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
network - connections - Share g
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
new: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
new: ResourceType : Disk
network - connections - Share h
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: ResourceType : Disk
network - connections - Share i
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Applications
new: RemotePath : \\WIN-PL3BEWOIR9X\Applications
new: ResourceType : Disk
system - services - survey
old: AarSvc_3a29aa3 Manual Unknown Agent Activation Runtime_3a29aa3
new: AarSvc_3bb2843 Manual Unknown Agent Activation Runtime_3bb2843
old: BcastDVRUserService_3a29aa3 Manual Unknown Användartjänst för Spel-DVR och sändning_3a29aa3
new: BcastDVRUserService_3bb2843 Manual Unknown Användartjänst för Spel-DVR och sändning_3bb2843
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_3a29aa3 Manual Unknown Bluetooth User Support Service_3a29aa3
new: BITS Manual Share Process Background Intelligent Transfer Service
new: BluetoothUserService_3bb2843 Manual Unknown Bluetooth User Support Service_3bb2843
old: CaptureService_3a29aa3 Manual Unknown CaptureService_3a29aa3
old: cbdhsvc_3a29aa3 Manual Unknown Clipboard User Service_3a29aa3
new: CaptureService_3bb2843 Manual Unknown CaptureService_3bb2843
new: cbdhsvc_3bb2843 Manual Unknown Clipboard User Service_3bb2843
old: CDPUserSvc_3a29aa3 Auto Unknown Connected Devices Platform User Service_3a29aa3
new: CDPUserSvc_3bb2843 Auto Unknown Connected Devices Platform User Service_3bb2843
old: ConsentUxUserSvc_3a29aa3 Manual Unknown ConsentUX_3a29aa3
new: ConsentUxUserSvc_3bb2843 Manual Unknown ConsentUX_3bb2843
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3a29aa3
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3bb2843
old: DeviceAssociationBrokerSvc_3a2 Manual Unknown DeviceAssociationBroker_3a29aa3
new: DeviceAssociationBrokerSvc_3bb Manual Unknown DeviceAssociationBroker_3bb2843
old: DevicePickerUserSvc_3a29aa3 Manual Unknown DevicePicker_3a29aa3
old: DevicesFlowUserSvc_3a29aa3 Manual Unknown DevicesFlow_3a29aa3
new: DevicePickerUserSvc_3bb2843 Manual Unknown DevicePicker_3bb2843
new: DevicesFlowUserSvc_3bb2843 Manual Unknown DevicesFlow_3bb2843
old: MessagingService_3a29aa3 Manual Unknown MessagingService_3a29aa3
new: MessagingService_3bb2843 Manual Unknown MessagingService_3bb2843
old: OneSyncSvc_3a29aa3 Auto Unknown Synkroniseringsvärd_3a29aa3
new: OneSyncSvc_3bb2843 Auto Unknown Synkroniseringsvärd_3bb2843
old: PimIndexMaintenanceSvc_3a29aa3 Manual Unknown Contact Data_3a29aa3
new: PimIndexMaintenanceSvc_3bb2843 Manual Unknown Contact Data_3bb2843
old: PrintWorkflowUserSvc_3a29aa3 Manual Unknown PrintWorkflow_3a29aa3
new: PrintWorkflowUserSvc_3bb2843 Manual Unknown PrintWorkflow_3bb2843
old: UnistoreSvc_3a29aa3 Manual Unknown User Data Storage_3a29aa3
new: UnistoreSvc_3bb2843 Manual Unknown User Data Storage_3bb2843
old: UserDataSvc_3a29aa3 Manual Unknown User Data Access_3a29aa3
new: UserDataSvc_3bb2843 Manual Unknown User Data Access_3bb2843
old: WpnUserService_3a29aa3 Auto Unknown Windows Push Notifications User Service_3a29aa3
new: WpnUserService_3bb2843 Auto Unknown Windows Push Notifications User Service_3bb2843
system - services - AarSvc_3a29aa3
old: DisplayName : Agent Activation Runtime_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_3bb2843
new: DisplayName : Agent Activation Runtime_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_3a29aa3
old: DisplayName : Användartjänst för Spel-DVR och sändning_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_3bb2843
new: DisplayName : Användartjänst för Spel-DVR och sändning_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_3a29aa3
old: DisplayName : Bluetooth User Support Service_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_3bb2843
new: DisplayName : Bluetooth User Support Service_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_3a29aa3
old: DisplayName : CaptureService_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_3a29aa3
old: DisplayName : Clipboard User Service_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_3bb2843
new: DisplayName : CaptureService_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_3bb2843
new: DisplayName : Clipboard User Service_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_3a29aa3
old: DisplayName : Connected Devices Platform User Service_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_3bb2843
new: DisplayName : Connected Devices Platform User Service_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_3a29aa3
old: DisplayName : ConsentUX_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_3bb2843
new: DisplayName : ConsentUX_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3a29aa3
old: DisplayName : CredentialEnrollmentManagerUserSvc_3a29aa3
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3bb2843
new: DisplayName : CredentialEnrollmentManagerUserSvc_3bb2843
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_3a29aa3
old: DisplayName : DeviceAssociationBroker_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_3bb2843
new: DisplayName : DeviceAssociationBroker_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_3a29aa3
old: DisplayName : DevicePicker_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_3a29aa3
old: DisplayName : DevicesFlow_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_3bb2843
new: DisplayName : DevicePicker_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_3bb2843
new: DisplayName : DevicesFlow_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_3a29aa3
old: DisplayName : MessagingService_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_3bb2843
new: DisplayName : MessagingService_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_3a29aa3
old: DisplayName : Synkroniseringsvärd_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_3bb2843
new: DisplayName : Synkroniseringsvärd_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_3a29aa3
old: DisplayName : Contact Data_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_3bb2843
new: DisplayName : Contact Data_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_3a29aa3
old: DisplayName : PrintWorkflow_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_3bb2843
new: DisplayName : PrintWorkflow_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_3a29aa3
old: DisplayName : User Data Storage_3a29aa3
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_3bb2843
new: DisplayName : User Data Storage_3bb2843
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_3a29aa3
old: DisplayName : User Data Access_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_3bb2843
new: DisplayName : User Data Access_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_3a29aa3
old: DisplayName : Windows Push Notifications User Service_3a29aa3
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_3bb2843
new: DisplayName : Windows Push Notifications User Service_3bb2843
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2020-07-13 18.21.39
remark :
runtime : 9
count : 373
previous date : 2020-07-13
previous time : 17.33.28
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 11)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 1
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS001
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 11)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS002
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 11)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS003
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 11)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS004
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Fax (omdirigerade 11)
new: CapabilityDescriptions : Color,Duplex
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS005
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 1
new: Default : 0
hardware - printer - iR C3380 (omdirigerade 11)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS006
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 11)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS008
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 11)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS007
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 11)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS010
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 11)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS009
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
network - connections - Share g
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
old: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
old: ResourceType : Disk
network - connections - Share h
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: ResourceType : Disk
network - connections - Share i
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Applications
old: RemotePath : \\WIN-PL3BEWOIR9X\Applications
old: ResourceType : Disk
system - services - survey
new: AarSvc_3a29aa3 Manual Unknown Agent Activation Runtime_3a29aa3
new: BcastDVRUserService_3a29aa3 Manual Unknown Användartjänst för Spel-DVR och sändning_3a29aa3
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_3a29aa3 Manual Unknown Bluetooth User Support Service_3a29aa3
new: CaptureService_3a29aa3 Manual Unknown CaptureService_3a29aa3
new: cbdhsvc_3a29aa3 Manual Unknown Clipboard User Service_3a29aa3
new: CDPUserSvc_3a29aa3 Auto Unknown Connected Devices Platform User Service_3a29aa3
new: ConsentUxUserSvc_3a29aa3 Manual Unknown ConsentUX_3a29aa3
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3a29aa3
new: DeviceAssociationBrokerSvc_3a2 Manual Unknown DeviceAssociationBroker_3a29aa3
new: DevicePickerUserSvc_3a29aa3 Manual Unknown DevicePicker_3a29aa3
new: DevicesFlowUserSvc_3a29aa3 Manual Unknown DevicesFlow_3a29aa3
new: MessagingService_3a29aa3 Manual Unknown MessagingService_3a29aa3
new: OneSyncSvc_3a29aa3 Auto Unknown Synkroniseringsvärd_3a29aa3
new: PimIndexMaintenanceSvc_3a29aa3 Manual Unknown Contact Data_3a29aa3
new: PrintWorkflowUserSvc_3a29aa3 Manual Unknown PrintWorkflow_3a29aa3
new: UnistoreSvc_3a29aa3 Manual Unknown User Data Storage_3a29aa3
new: UserDataSvc_3a29aa3 Manual Unknown User Data Access_3a29aa3
new: WpnUserService_3a29aa3 Auto Unknown Windows Push Notifications User Service_3a29aa3
system - services - AarSvc_3a29aa3
new: DisplayName : Agent Activation Runtime_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_3a29aa3
new: DisplayName : Användartjänst för Spel-DVR och sändning_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_3a29aa3
new: DisplayName : Bluetooth User Support Service_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_3a29aa3
new: DisplayName : CaptureService_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_3a29aa3
new: DisplayName : Clipboard User Service_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_3a29aa3
new: DisplayName : Connected Devices Platform User Service_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_3a29aa3
new: DisplayName : ConsentUX_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3a29aa3
new: DisplayName : CredentialEnrollmentManagerUserSvc_3a29aa3
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_3a29aa3
new: DisplayName : DeviceAssociationBroker_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_3a29aa3
new: DisplayName : DevicePicker_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_3a29aa3
new: DisplayName : DevicesFlow_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_3a29aa3
new: DisplayName : MessagingService_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_3a29aa3
new: DisplayName : Synkroniseringsvärd_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_3a29aa3
new: DisplayName : Contact Data_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_3a29aa3
new: DisplayName : PrintWorkflow_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_3a29aa3
new: DisplayName : User Data Storage_3a29aa3
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_3a29aa3
new: DisplayName : User Data Access_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_3a29aa3
new: DisplayName : Windows Push Notifications User Service_3a29aa3
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2020-07-13 17.33.28
remark :
runtime : 16
count : 373
previous date : 2020-07-13
previous time : 15.31.17
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 9)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 9)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 9)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 9)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Fax (omdirigerade 9)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 0
new: Default : 1
hardware - printer - iR C3380 (omdirigerade 9)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 9)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS007
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 9)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS008
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 9)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS010
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 9)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS009
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
network - connections - Share g
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
new: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
new: ResourceType : Disk
network - connections - Share h
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: ResourceType : Disk
network - connections - Share i
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Applications
new: RemotePath : \\WIN-PL3BEWOIR9X\Applications
new: ResourceType : Disk
system - services - survey
old: AarSvc_35a9343 Manual Unknown Agent Activation Runtime_35a9343
old: BcastDVRUserService_35a9343 Manual Unknown Användartjänst för Spel-DVR och sändning_35a9343
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_35a9343 Manual Unknown Bluetooth User Support Service_35a9343
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_35a9343 Manual Unknown CaptureService_35a9343
old: cbdhsvc_35a9343 Manual Unknown Clipboard User Service_35a9343
old: CDPUserSvc_35a9343 Auto Unknown Connected Devices Platform User Service_35a9343
old: ConsentUxUserSvc_35a9343 Manual Unknown ConsentUX_35a9343
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_35a9343
old: DeviceAssociationBrokerSvc_35a Manual Unknown DeviceAssociationBroker_35a9343
old: DevicePickerUserSvc_35a9343 Manual Unknown DevicePicker_35a9343
old: DevicesFlowUserSvc_35a9343 Manual Unknown DevicesFlow_35a9343
old: MessagingService_35a9343 Manual Unknown MessagingService_35a9343
old: OneSyncSvc_35a9343 Auto Unknown Synkroniseringsvärd_35a9343
old: PimIndexMaintenanceSvc_35a9343 Manual Unknown Contact Data_35a9343
old: PrintWorkflowUserSvc_35a9343 Manual Unknown PrintWorkflow_35a9343
old: UnistoreSvc_35a9343 Manual Unknown User Data Storage_35a9343
old: UserDataSvc_35a9343 Manual Unknown User Data Access_35a9343
old: WpnUserService_35a9343 Auto Unknown Windows Push Notifications User Service_35a9343
system - services - AarSvc_35a9343
old: DisplayName : Agent Activation Runtime_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_35a9343
old: DisplayName : Användartjänst för Spel-DVR och sändning_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_35a9343
old: DisplayName : Bluetooth User Support Service_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_35a9343
old: DisplayName : CaptureService_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_35a9343
old: DisplayName : Clipboard User Service_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_35a9343
old: DisplayName : Connected Devices Platform User Service_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_35a9343
old: DisplayName : ConsentUX_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_35a9343
old: DisplayName : CredentialEnrollmentManagerUserSvc_35a9343
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_35a9343
old: DisplayName : DeviceAssociationBroker_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_35a9343
old: DisplayName : DevicePicker_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_35a9343
old: DisplayName : DevicesFlow_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_35a9343
old: DisplayName : MessagingService_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_35a9343
old: DisplayName : Synkroniseringsvärd_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_35a9343
old: DisplayName : Contact Data_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_35a9343
old: DisplayName : PrintWorkflow_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_35a9343
old: DisplayName : User Data Storage_35a9343
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_35a9343
old: DisplayName : User Data Access_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_35a9343
old: DisplayName : Windows Push Notifications User Service_35a9343
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2020-07-13 15.31.17
remark :
runtime : 10
count : 373
previous date : 2020-07-12
previous time : 19.33.31
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 9)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 1
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS001
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 9)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS002
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 9)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS004
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 9)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS003
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Fax (omdirigerade 9)
new: CapabilityDescriptions : Color,Duplex
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS005
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 1
new: Default : 0
hardware - printer - iR C3380 (omdirigerade 9)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS006
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 9)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS007
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 9)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS008
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 9)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS010
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 9)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS009
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
network - connections - Share g
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
old: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
old: ResourceType : Disk
network - connections - Share h
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: ResourceType : Disk
network - connections - Share i
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Applications
old: RemotePath : \\WIN-PL3BEWOIR9X\Applications
old: ResourceType : Disk
system - services - survey
new: AarSvc_35a9343 Manual Unknown Agent Activation Runtime_35a9343
new: BcastDVRUserService_35a9343 Manual Unknown Användartjänst för Spel-DVR och sändning_35a9343
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_35a9343 Manual Unknown Bluetooth User Support Service_35a9343
new: CaptureService_35a9343 Manual Unknown CaptureService_35a9343
new: cbdhsvc_35a9343 Manual Unknown Clipboard User Service_35a9343
new: CDPUserSvc_35a9343 Auto Unknown Connected Devices Platform User Service_35a9343
new: ConsentUxUserSvc_35a9343 Manual Unknown ConsentUX_35a9343
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_35a9343
new: DeviceAssociationBrokerSvc_35a Manual Unknown DeviceAssociationBroker_35a9343
new: DevicePickerUserSvc_35a9343 Manual Unknown DevicePicker_35a9343
new: DevicesFlowUserSvc_35a9343 Manual Unknown DevicesFlow_35a9343
new: MessagingService_35a9343 Manual Unknown MessagingService_35a9343
new: OneSyncSvc_35a9343 Auto Unknown Synkroniseringsvärd_35a9343
new: PimIndexMaintenanceSvc_35a9343 Manual Unknown Contact Data_35a9343
new: PrintWorkflowUserSvc_35a9343 Manual Unknown PrintWorkflow_35a9343
new: UnistoreSvc_35a9343 Manual Unknown User Data Storage_35a9343
new: UserDataSvc_35a9343 Manual Unknown User Data Access_35a9343
new: WpnUserService_35a9343 Auto Unknown Windows Push Notifications User Service_35a9343
system - services - AarSvc_35a9343
new: DisplayName : Agent Activation Runtime_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_35a9343
new: DisplayName : Användartjänst för Spel-DVR och sändning_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_35a9343
new: DisplayName : Bluetooth User Support Service_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_35a9343
new: DisplayName : CaptureService_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_35a9343
new: DisplayName : Clipboard User Service_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_35a9343
new: DisplayName : Connected Devices Platform User Service_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_35a9343
new: DisplayName : ConsentUX_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_35a9343
new: DisplayName : CredentialEnrollmentManagerUserSvc_35a9343
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_35a9343
new: DisplayName : DeviceAssociationBroker_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_35a9343
new: DisplayName : DevicePicker_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_35a9343
new: DisplayName : DevicesFlow_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_35a9343
new: DisplayName : MessagingService_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_35a9343
new: DisplayName : Synkroniseringsvärd_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_35a9343
new: DisplayName : Contact Data_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_35a9343
new: DisplayName : PrintWorkflow_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_35a9343
new: DisplayName : User Data Storage_35a9343
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_35a9343
new: DisplayName : User Data Access_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_35a9343
new: DisplayName : Windows Push Notifications User Service_35a9343
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2020-07-12 19.33.31
remark :
runtime : 26
count : 126
previous date : 2020-07-12
previous time : 18.30.44
system - services - survey
old: AarSvc_2b02cb5 Manual Unknown Agent Activation Runtime_2b02cb5
old: BcastDVRUserService_2b02cb5 Manual Unknown Användartjänst för Spel-DVR och sändning_2b02cb5
old: BluetoothUserService_2b02cb5 Manual Unknown Bluetooth User Support Service_2b02cb5
old: CaptureService_2b02cb5 Manual Unknown CaptureService_2b02cb5
old: cbdhsvc_2b02cb5 Manual Unknown Clipboard User Service_2b02cb5
old: CDPUserSvc_2b02cb5 Auto Unknown Connected Devices Platform User Service_2b02cb5
old: ConsentUxUserSvc_2b02cb5 Manual Unknown ConsentUX_2b02cb5
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_2b02cb5
old: DeviceAssociationBrokerSvc_2b0 Manual Unknown DeviceAssociationBroker_2b02cb5
old: DevicePickerUserSvc_2b02cb5 Manual Unknown DevicePicker_2b02cb5
old: DevicesFlowUserSvc_2b02cb5 Manual Unknown DevicesFlow_2b02cb5
old: MessagingService_2b02cb5 Manual Unknown MessagingService_2b02cb5
old: OneSyncSvc_2b02cb5 Auto Unknown Synkroniseringsvärd_2b02cb5
old: PimIndexMaintenanceSvc_2b02cb5 Manual Unknown Contact Data_2b02cb5
old: PrintWorkflowUserSvc_2b02cb5 Manual Unknown PrintWorkflow_2b02cb5
old: UnistoreSvc_2b02cb5 Manual Unknown User Data Storage_2b02cb5
old: UserDataSvc_2b02cb5 Manual Unknown User Data Access_2b02cb5
old: WpnUserService_2b02cb5 Auto Unknown Windows Push Notifications User Service_2b02cb5
system - services - AarSvc_2b02cb5
old: DisplayName : Agent Activation Runtime_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_2b02cb5
old: DisplayName : Användartjänst för Spel-DVR och sändning_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_2b02cb5
old: DisplayName : Bluetooth User Support Service_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_2b02cb5
old: DisplayName : CaptureService_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_2b02cb5
old: DisplayName : Clipboard User Service_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_2b02cb5
old: DisplayName : Connected Devices Platform User Service_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_2b02cb5
old: DisplayName : ConsentUX_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_2b02cb5
old: DisplayName : CredentialEnrollmentManagerUserSvc_2b02cb5
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_2b02cb5
old: DisplayName : DeviceAssociationBroker_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_2b02cb5
old: DisplayName : DevicePicker_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_2b02cb5
old: DisplayName : DevicesFlow_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_2b02cb5
old: DisplayName : MessagingService_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_2b02cb5
old: DisplayName : Synkroniseringsvärd_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_2b02cb5
old: DisplayName : Contact Data_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_2b02cb5
old: DisplayName : PrintWorkflow_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_2b02cb5
old: DisplayName : User Data Storage_2b02cb5
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_2b02cb5
old: DisplayName : User Data Access_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_2b02cb5
old: DisplayName : Windows Push Notifications User Service_2b02cb5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2020-07-12 18.30.44
remark :
runtime : 13
count : 416
previous date : 2020-07-07
previous time : 20.33.30
general
old: user:Administrator
new: user:administrator
boot - startup - OneDrive
old: User : CORP\Administrator
new: User : CORP\administrator
hardware - printer - OneNote for Windows 10
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 0
new: DriverName : Microsoft Software Printer Driver
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : Microsoft.Office.OneNote_16001.12827.20182.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
software - product - ActivePerl 5.20.1 Build 2000 (64-bit)
old: Version : 5.20.2000
old: Publisher : ActiveState
old: URLinfo : http://www.activestate.com/
old: ParentKey :
old: Install Location : C:\Perl64\
old: Windows Installer : 0x00000001
software - product - Adobe Flash Player 32 NPAPI
new: Version : 32.0.0.387
new: Publisher : Adobe
new: URLinfo : http://www.adobe.com
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
software - product - Arduino
new: Version : 1.6.9
new: Publisher : Arduino LLC
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
software - product - CyberLink Power2Go 8
new: Version : 8.0.3.3207
new: Publisher : CyberLink Corp.
new: URLinfo : http://www.CyberLink.com
new: ParentKey :
new: Install Location : c:\Program Files (x86)\CyberLink\Power2Go8
new: NoModify : 0x00000001
new: NoRemove : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - CyberLink PowerDVD 12
new: Version : 12.0.2.3212
new: Publisher : CyberLink Corp.
new: URLinfo : http://www.CyberLink.com
new: ParentKey :
new: Install Location : c:\Program Files (x86)\CyberLink\PowerDVD12
new: NoModify : 0x00000001
new: NoRemove : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - DigiLEDsConf
new: Version : 1.0.0
new: Publisher : Digikeijs
new: URLinfo : http://www.digikeijs.com/
new: ParentKey :
new: Install Location :
new: Windows Installer : 0x00000001
software - product - DirectX for Managed Code Update (Summer 2004)
new: Version : 9.02.2904
new: Publisher : Microsoft
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRemove : 0x00000001
new: Windows Installer : 0x00000001
software - product - Foxit PhantomPDF
new: Version : 6.0.16.324
new: Publisher : Foxit Corporation
new: ParentKey :
new: Install Location : C:\Program Files (x86)\Foxit PhantomPDF\
new: Windows Installer : 0x00000001
software - product - Google Chrome
new: Version : 83.0.4103.116
new: Publisher : Google LLC
new: ParentKey :
new: Install Location : C:\Program Files (x86)\Google\Chrome\Application
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
software - product - Google Update Helper
new: Version : 1.3.35.451
new: Publisher : Google LLC
new: ParentKey :
new: Install Location :
new: Windows Installer : 0x00000001
software - product - Hewlett-Packard ACLM.NET v1.2.2.3
new: Version : 1.00.0000
new: Publisher : Hewlett-Packard Company
new: URLinfo : www.hp.com
new: ParentKey :
new: Install Location : C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\
new: Windows Installer : 0x00000001
software - product - HP Customer Experience Enhancements
new: Version : 6.0.1.8
new: Publisher : Hewlett-Packard
new: URLinfo : http://www.Hewlett-Packard.com
new: ParentKey :
new: Install Location : C:\Program Files (x86)\
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - HP Support Information
new: Version : 13.00.0000
new: Publisher : Hewlett-Packard
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRemove : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - Intel(R) Control Center
new: Version : 1.2.1.1011
new: Publisher : Intel Corporation
new: ParentKey :
new: Install Location : C:\Program Files (x86)\Intel\Intel Control Center
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
software - product - Intel(R) Management Engine Components
new: Version : 9.5.15.1730
new: Publisher : Intel Corporation
new: ParentKey :
new: Install Location : C:\Program Files (x86)\Intel\Intel(R) Management Engine Components
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
software - product - Intel(R) Processor Graphics
new: Version : 20.19.15.4835
new: Publisher : Intel Corporation
new: ParentKey :
new: Install Location : C:\Program Files (x86)\Intel\Intel(R) Processor Graphics
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
software - product - Intel(R) USB 3.0 eXtensible Host Controller Driver
new: Version : 2.5.0.19
new: Publisher : Intel Corporation
new: ParentKey :
new: Install Location : C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
software - product - JMRI - Java Model Railroad Interface
new: Version : 4.17.4+Rbf0d1af
new: Publisher : JMRI Community
new: URLinfo : http://jmri.org/
new: ParentKey :
new: Install Location : C:\Program Files (x86)\JMRI
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
software - product - LI-USB Anwendungen
new: Version : 1.6.0.0
new: Publisher : Lenz Elektronik GmbH
new: ParentKey :
new: Install Location :
new: Windows Installer : 0x00000001
software - product - Microsoft Visual C++ 2005 Redistributable
new: Version : 8.0.61001
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
new: Version : 9.0.21022
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
new: Version : 9.0.30729
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
new: Version : 9.0.30729.4148
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
new: Version : 9.0.30729.6161
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
new: Version : 10.0.40219
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
new: Version : 11.0.61030.0
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location :
software - product - Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
new: Version : 11.0.61030.0
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location :
software - product - Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
new: Version : 11.0.61030
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: Windows Installer : 0x00000001
software - product - Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
new: Version : 11.0.61030
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location :
new: NoModify : 0x00000001
new: Windows Installer : 0x00000001
software - product - Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215
new: Version : 14.0.24215.1
new: Publisher : Microsoft Corporation
new: ParentKey :
new: Install Location :
software - product - Notepad++
new: Version : 6.8.3
new: Publisher : Notepad++ Team
new: URLinfo : http://notepad-plus-plus.org/
new: ParentKey :
new: Install Location :
software - product - opensource
new: Version : 1.0.14960.3876
new: Publisher : Your Company Name
new: ParentKey :
new: Install Location : C:\Program Files (x86)\Hewlett-Packard\OpenSource\
new: Windows Installer : 0x00000001
software - product - PL-2303 USB-to-Serial
new: Version : 1.9.0
new: Publisher : Prolific Technology INC
new: ParentKey :
new: Install Location : C:\Program Files (x86)\Prolific Technology INC\PL-2303 USB-to-Serial
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
software - product - Railroad & Co. Version 8.0
new: Version :
new: Publisher :
new: ParentKey :
new: Install Location :
software - product - Realtek High Definition Audio Driver
new: Version : 6.0.1.7548
new: Publisher : Realtek Semiconductor Corp.
new: ParentKey :
new: Install Location : C:\Program Files\Realtek\Audio\HDA
new: NoModify : 0x00000001
new: NoRemove : 0x00000000
new: NoRepair : 0x00000001
software - product - SCC for Windows
new: Version : 1.9.35
new: Publisher : QNH
new: URLinfo : http://sourceforge.net/projects/sysconfcollect
new: ParentKey :
new: Install Location :
new: Windows Installer : 0x00000001
software - product - Skype version 8.25
new: Version : 8.25
new: Publisher : Skype Technologies S.A.
new: URLinfo : http://www.skype.com/
new: ParentKey :
new: Install Location : C:\Program Files (x86)\Microsoft\Skype for Desktop\
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
software - product - Skype™ 7.0
new: Version : 7.0.102
new: Publisher : Skype Technologies S.A.
new: URLinfo : http://www.skype.com
new: ParentKey :
new: Install Location : C:\Program Files (x86)\Skype\
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
new: Windows Installer : 0x00000001
software - product - Strawberry Perl (64-bit)
new: Version : 5.30.2001
new: Publisher : strawberryperl.com project
new: URLinfo : http://strawberryperl.com/
new: ParentKey :
new: Install Location : C:\Strawberry\
new: NoModify : 0x00000001
new: Windows Installer : 0x00000001
software - product - WinMerge 2.14.0
new: Version : 2.14.0
new: Publisher : Thingamahoochie Software
new: URLinfo : http://WinMerge.org/
new: ParentKey :
new: Install Location : C:\Program Files (x86)\WinMerge\
new: NoModify : 0x00000001
new: NoRepair : 0x00000001
system - services - survey
new: AarSvc_2b02cb5 Manual Unknown Agent Activation Runtime_2b02cb5
new: BcastDVRUserService_2b02cb5 Manual Unknown Användartjänst för Spel-DVR och sändning_2b02cb5
new: BluetoothUserService_2b02cb5 Manual Unknown Bluetooth User Support Service_2b02cb5
new: CaptureService_2b02cb5 Manual Unknown CaptureService_2b02cb5
new: cbdhsvc_2b02cb5 Manual Unknown Clipboard User Service_2b02cb5
new: CDPUserSvc_2b02cb5 Auto Unknown Connected Devices Platform User Service_2b02cb5
new: ConsentUxUserSvc_2b02cb5 Manual Unknown ConsentUX_2b02cb5
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_2b02cb5
new: DeviceAssociationBrokerSvc_2b0 Manual Unknown DeviceAssociationBroker_2b02cb5
new: DevicePickerUserSvc_2b02cb5 Manual Unknown DevicePicker_2b02cb5
new: DevicesFlowUserSvc_2b02cb5 Manual Unknown DevicesFlow_2b02cb5
new: MessagingService_2b02cb5 Manual Unknown MessagingService_2b02cb5
new: OneSyncSvc_2b02cb5 Auto Unknown Synkroniseringsvärd_2b02cb5
new: PimIndexMaintenanceSvc_2b02cb5 Manual Unknown Contact Data_2b02cb5
new: PrintWorkflowUserSvc_2b02cb5 Manual Unknown PrintWorkflow_2b02cb5
new: UnistoreSvc_2b02cb5 Manual Unknown User Data Storage_2b02cb5
new: UserDataSvc_2b02cb5 Manual Unknown User Data Access_2b02cb5
new: WpnUserService_2b02cb5 Auto Unknown Windows Push Notifications User Service_2b02cb5
system - services - AarSvc_2b02cb5
new: DisplayName : Agent Activation Runtime_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_2b02cb5
new: DisplayName : Användartjänst för Spel-DVR och sändning_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_2b02cb5
new: DisplayName : Bluetooth User Support Service_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_2b02cb5
new: DisplayName : CaptureService_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_2b02cb5
new: DisplayName : Clipboard User Service_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_2b02cb5
new: DisplayName : Connected Devices Platform User Service_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_2b02cb5
new: DisplayName : ConsentUX_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_2b02cb5
new: DisplayName : CredentialEnrollmentManagerUserSvc_2b02cb5
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_2b02cb5
new: DisplayName : DeviceAssociationBroker_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_2b02cb5
new: DisplayName : DevicePicker_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_2b02cb5
new: DisplayName : DevicesFlow_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_2b02cb5
new: DisplayName : MessagingService_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_2b02cb5
new: DisplayName : Synkroniseringsvärd_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_2b02cb5
new: DisplayName : Contact Data_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_2b02cb5
new: DisplayName : PrintWorkflow_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_2b02cb5
new: DisplayName : User Data Storage_2b02cb5
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_2b02cb5
new: DisplayName : User Data Access_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_2b02cb5
new: DisplayName : Windows Push Notifications User Service_2b02cb5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \OneDrive Standalone Update Task-S-1-5-21-67378208-2373681959-2840377077-500
old: Run As User : CORP\Administrator
new: Run As User : CORP\administrator
system - scheduled tasks - \SCC
old: Power Management : Stop On Battery Mode, No Start On Batteries
old: Run As User : CORP\Administrator
new: Power Management : Stop On Battery Mode
new: Run As User : CORP\administrator
system - scheduled tasks - \{29EE1689-C63E-4636-A959-08C3902384B0}
old: Run As User : CORP\Administrator
new: Run As User : CORP\administrator
system - scheduled tasks - \{303F3114-A93D-455D-A188-A924E4B300BE}
old: Run As User : CORP\Administrator
new: Run As User : CORP\administrator
system - scheduled tasks - \{55C1F676-C221-49C4-A91E-C80A4E814520}
old: Run As User : CORP\Administrator
new: Run As User : CORP\administrator
Top Runs Differences at: 2020-07-07 20.33.30
remark :
runtime : 11
count : 142
previous date : 2020-07-06
previous time : 20.33.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
software - product - Backup and Sync from Google
old: Version : 3.49.9800.0000
new: Version : 3.50.3166.0017
system - SystemDriver - MpKslDrv
old: AcceptPause : 0
old: Description : MpKslDrv
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A99C893B-9C14-476D-869E-A64BF08A1016}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : System
system - services - survey
old: AarSvc_f8c549 Manual Unknown Agent Activation Runtime_f8c549
old: BcastDVRUserService_f8c549 Manual Unknown Användartjänst för Spel-DVR och sändning_f8c549
old: BluetoothUserService_f8c549 Manual Unknown Bluetooth User Support Service_f8c549
old: CaptureService_f8c549 Manual Unknown CaptureService_f8c549
old: cbdhsvc_f8c549 Manual Unknown Clipboard User Service_f8c549
old: CDPUserSvc_f8c549 Auto Unknown Connected Devices Platform User Service_f8c549
old: ConsentUxUserSvc_f8c549 Manual Unknown ConsentUX_f8c549
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_f8c549
old: DeviceAssociationBrokerSvc_f8c Manual Unknown DeviceAssociationBroker_f8c549
old: DevicePickerUserSvc_f8c549 Manual Unknown DevicePicker_f8c549
old: DevicesFlowUserSvc_f8c549 Manual Unknown DevicesFlow_f8c549
old: MessagingService_f8c549 Manual Unknown MessagingService_f8c549
old: OneSyncSvc_f8c549 Auto Unknown Synkroniseringsvärd_f8c549
old: PimIndexMaintenanceSvc_f8c549 Manual Unknown Contact Data_f8c549
old: PrintWorkflowUserSvc_f8c549 Manual Unknown PrintWorkflow_f8c549
old: UnistoreSvc_f8c549 Manual Unknown User Data Storage_f8c549
old: UserDataSvc_f8c549 Manual Unknown User Data Access_f8c549
old: WpnUserService_f8c549 Auto Unknown Windows Push Notifications User Service_f8c549
system - services - AarSvc_f8c549
old: DisplayName : Agent Activation Runtime_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_f8c549
old: DisplayName : Användartjänst för Spel-DVR och sändning_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_f8c549
old: DisplayName : Bluetooth User Support Service_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_f8c549
old: DisplayName : CaptureService_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_f8c549
old: DisplayName : Clipboard User Service_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_f8c549
old: DisplayName : Connected Devices Platform User Service_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_f8c549
old: DisplayName : ConsentUX_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_f8c549
old: DisplayName : CredentialEnrollmentManagerUserSvc_f8c549
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_f8c549
old: DisplayName : DeviceAssociationBroker_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_f8c549
old: DisplayName : DevicePicker_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_f8c549
old: DisplayName : DevicesFlow_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_f8c549
old: DisplayName : MessagingService_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_f8c549
old: DisplayName : Synkroniseringsvärd_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_f8c549
old: DisplayName : Contact Data_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_f8c549
old: DisplayName : PrintWorkflow_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_f8c549
old: DisplayName : User Data Storage_f8c549
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_f8c549
old: DisplayName : User Data Access_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_f8c549
old: DisplayName : Windows Push Notifications User Service_f8c549
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2020-07-06 20.33.30
remark :
runtime : 9
count : 135
previous date : 2020-07-05
previous time : 20.33.30
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
system - SystemDriver - MpKslDrv
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2372B5EE-3D09-4E8A-9D15-0904EF8DB2C2}\MpKslDrv.sys
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A99C893B-9C14-476D-869E-A64BF08A1016}\MpKslDrv.sys
system - services - survey
new: AarSvc_f8c549 Manual Unknown Agent Activation Runtime_f8c549
new: BcastDVRUserService_f8c549 Manual Unknown Användartjänst för Spel-DVR och sändning_f8c549
new: BluetoothUserService_f8c549 Manual Unknown Bluetooth User Support Service_f8c549
new: CaptureService_f8c549 Manual Unknown CaptureService_f8c549
new: cbdhsvc_f8c549 Manual Unknown Clipboard User Service_f8c549
new: CDPUserSvc_f8c549 Auto Unknown Connected Devices Platform User Service_f8c549
new: ConsentUxUserSvc_f8c549 Manual Unknown ConsentUX_f8c549
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_f8c549
new: DeviceAssociationBrokerSvc_f8c Manual Unknown DeviceAssociationBroker_f8c549
new: DevicePickerUserSvc_f8c549 Manual Unknown DevicePicker_f8c549
new: DevicesFlowUserSvc_f8c549 Manual Unknown DevicesFlow_f8c549
new: MessagingService_f8c549 Manual Unknown MessagingService_f8c549
new: OneSyncSvc_f8c549 Auto Unknown Synkroniseringsvärd_f8c549
new: PimIndexMaintenanceSvc_f8c549 Manual Unknown Contact Data_f8c549
new: PrintWorkflowUserSvc_f8c549 Manual Unknown PrintWorkflow_f8c549
new: UnistoreSvc_f8c549 Manual Unknown User Data Storage_f8c549
new: UserDataSvc_f8c549 Manual Unknown User Data Access_f8c549
new: WpnUserService_f8c549 Auto Unknown Windows Push Notifications User Service_f8c549
system - services - AarSvc_f8c549
new: DisplayName : Agent Activation Runtime_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_f8c549
new: DisplayName : Användartjänst för Spel-DVR och sändning_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_f8c549
new: DisplayName : Bluetooth User Support Service_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_f8c549
new: DisplayName : CaptureService_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_f8c549
new: DisplayName : Clipboard User Service_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_f8c549
new: DisplayName : Connected Devices Platform User Service_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_f8c549
new: DisplayName : ConsentUX_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_f8c549
new: DisplayName : CredentialEnrollmentManagerUserSvc_f8c549
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_f8c549
new: DisplayName : DeviceAssociationBroker_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_f8c549
new: DisplayName : DevicePicker_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_f8c549
new: DisplayName : DevicesFlow_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_f8c549
new: DisplayName : MessagingService_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_f8c549
new: DisplayName : Synkroniseringsvärd_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_f8c549
new: DisplayName : Contact Data_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_f8c549
new: DisplayName : PrintWorkflow_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_f8c549
new: DisplayName : User Data Storage_f8c549
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_f8c549
new: DisplayName : User Data Access_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_f8c549
new: DisplayName : Windows Push Notifications User Service_f8c549
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2020-07-05 20.33.30
remark :
runtime : 20
count : 448
previous date : 2020-07-05
previous time : 19.32.00
general
old: user:trains
new: user:Administrator
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Fax (omdirigerade 1)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - \\win2k8srv-2\Brother DCP-9020CDW Printer
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Brother DCP-9020CDW Printer
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 0
new: Location : Datarum
new: Network : 1
new: PortName : 192.168.253.70
new: PrintJobDataType : RAW
new: PrintProcessor : WinPrint
new: Priority : 1
new: RawOnly : 0
new: ServerName : \\win2k8srv-2
new: Shared : 1
new: ShareName : Brother DCP-9020CDW Printer
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 0
new: Default : 1
hardware - printer - iR C3380 (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS007
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS008
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS010
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 0
old: DriverName : Microsoft Software Printer Driver
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : Microsoft.Office.OneNote_16001.12827.20182.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-1107
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS009
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 0
new: DriverName : Microsoft Software Printer Driver
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : Microsoft.Office.OneNote_16001.12026.20112.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
network - connections - Share g
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
new: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
new: ResourceType : Disk
network - connections - Share h
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: ResourceType : Disk
network - connections - Share i
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Applications
new: RemotePath : \\WIN-PL3BEWOIR9X\Applications
new: ResourceType : Disk
system - services - survey
old: AarSvc_c28685 Manual Unknown Agent Activation Runtime_c28685
old: BcastDVRUserService_c28685 Manual Unknown Användartjänst för Spel-DVR och sändning_c28685
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_c28685 Manual Unknown Bluetooth User Support Service_c28685
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_c28685 Manual Unknown CaptureService_c28685
old: cbdhsvc_c28685 Manual Unknown Clipboard User Service_c28685
old: CDPUserSvc_c28685 Auto Unknown Connected Devices Platform User Service_c28685
old: ConsentUxUserSvc_c28685 Manual Unknown ConsentUX_c28685
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_c28685
old: DeviceAssociationBrokerSvc_c28 Manual Unknown DeviceAssociationBroker_c28685
old: DevicePickerUserSvc_c28685 Manual Unknown DevicePicker_c28685
old: DevicesFlowUserSvc_c28685 Manual Unknown DevicesFlow_c28685
old: MessagingService_c28685 Manual Unknown MessagingService_c28685
old: OneSyncSvc_c28685 Auto Unknown Synkroniseringsvärd_c28685
old: PimIndexMaintenanceSvc_c28685 Manual Unknown Contact Data_c28685
old: PrintWorkflowUserSvc_c28685 Manual Unknown PrintWorkflow_c28685
old: UnistoreSvc_c28685 Manual Unknown User Data Storage_c28685
old: UserDataSvc_c28685 Manual Unknown User Data Access_c28685
old: WpnUserService_c28685 Auto Unknown Windows Push Notifications User Service_c28685
system - services - AarSvc_c28685
old: DisplayName : Agent Activation Runtime_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_c28685
old: DisplayName : Användartjänst för Spel-DVR och sändning_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_c28685
old: DisplayName : Bluetooth User Support Service_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_c28685
old: DisplayName : CaptureService_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_c28685
old: DisplayName : Clipboard User Service_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_c28685
old: DisplayName : Connected Devices Platform User Service_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_c28685
old: DisplayName : ConsentUX_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_c28685
old: DisplayName : CredentialEnrollmentManagerUserSvc_c28685
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_c28685
old: DisplayName : DeviceAssociationBroker_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_c28685
old: DisplayName : DevicePicker_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_c28685
old: DisplayName : DevicesFlow_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_c28685
old: DisplayName : MessagingService_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_c28685
old: DisplayName : Synkroniseringsvärd_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_c28685
old: DisplayName : Contact Data_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_c28685
old: DisplayName : PrintWorkflow_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_c28685
old: DisplayName : User Data Storage_c28685
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_c28685
old: DisplayName : User Data Access_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_c28685
old: DisplayName : Windows Push Notifications User Service_c28685
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
Top Runs Differences at: 2020-07-05 19.32.00
remark :
runtime : 11
count : 639
previous date : 2020-06-22
previous time : 12.47.40
hardware - printer - Brother DCP-9020CDW Printer (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - DYMO LabelManager 280 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Fax (omdirigerade 2)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 1
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS001
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS002
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS003
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS004
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Fax (omdirigerade 1)
new: CapabilityDescriptions : Color,Duplex
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS005
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - iR C3380 (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS006
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS007
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS008
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS010
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS009
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
system - SystemDriver - MpKslDrv
new: AcceptPause : 0
new: Description : MpKslDrv
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2372B5EE-3D09-4E8A-9D15-0904EF8DB2C2}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : System
system - services - survey
old: AarSvc_56877f Manual Unknown Agent Activation Runtime_56877f
new: AarSvc_c28685 Manual Unknown Agent Activation Runtime_c28685
old: BcastDVRUserService_56877f Manual Unknown Användartjänst för Spel-DVR och sändning_56877f
new: BcastDVRUserService_c28685 Manual Unknown Användartjänst för Spel-DVR och sändning_c28685
old: BluetoothUserService_56877f Manual Unknown Bluetooth User Support Service_56877f
new: BluetoothUserService_c28685 Manual Unknown Bluetooth User Support Service_c28685
old: CaptureService_56877f Manual Unknown CaptureService_56877f
old: cbdhsvc_56877f Manual Unknown Clipboard User Service_56877f
new: CaptureService_c28685 Manual Unknown CaptureService_c28685
new: cbdhsvc_c28685 Manual Unknown Clipboard User Service_c28685
old: CDPUserSvc_56877f Auto Unknown Connected Devices Platform User Service_56877f
new: CDPUserSvc_c28685 Auto Unknown Connected Devices Platform User Service_c28685
old: ConsentUxUserSvc_56877f Manual Unknown ConsentUX_56877f
new: ConsentUxUserSvc_c28685 Manual Unknown ConsentUX_c28685
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_56877f
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_c28685
old: DeviceAssociationBrokerSvc_568 Manual Unknown DeviceAssociationBroker_56877f
new: DeviceAssociationBrokerSvc_c28 Manual Unknown DeviceAssociationBroker_c28685
old: DevicePickerUserSvc_56877f Manual Unknown DevicePicker_56877f
old: DevicesFlowUserSvc_56877f Manual Unknown DevicesFlow_56877f
new: DevicePickerUserSvc_c28685 Manual Unknown DevicePicker_c28685
new: DevicesFlowUserSvc_c28685 Manual Unknown DevicesFlow_c28685
old: MessagingService_56877f Manual Unknown MessagingService_56877f
new: MessagingService_c28685 Manual Unknown MessagingService_c28685
old: OneSyncSvc_56877f Auto Unknown Synkroniseringsvärd_56877f
new: OneSyncSvc_c28685 Auto Unknown Synkroniseringsvärd_c28685
old: PimIndexMaintenanceSvc_56877f Manual Unknown Contact Data_56877f
new: PimIndexMaintenanceSvc_c28685 Manual Unknown Contact Data_c28685
old: PrintWorkflowUserSvc_56877f Manual Unknown PrintWorkflow_56877f
new: PrintWorkflowUserSvc_c28685 Manual Unknown PrintWorkflow_c28685
old: UnistoreSvc_56877f Manual Unknown User Data Storage_56877f
new: UnistoreSvc_c28685 Manual Unknown User Data Storage_c28685
old: UserDataSvc_56877f Manual Unknown User Data Access_56877f
new: UserDataSvc_c28685 Manual Unknown User Data Access_c28685
old: WpnUserService_56877f Auto Unknown Windows Push Notifications User Service_56877f
new: WpnUserService_c28685 Auto Unknown Windows Push Notifications User Service_c28685
system - services - AarSvc_56877f
old: DisplayName : Agent Activation Runtime_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_c28685
new: DisplayName : Agent Activation Runtime_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_56877f
old: DisplayName : Användartjänst för Spel-DVR och sändning_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_c28685
new: DisplayName : Användartjänst för Spel-DVR och sändning_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_56877f
old: DisplayName : Bluetooth User Support Service_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_c28685
new: DisplayName : Bluetooth User Support Service_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_56877f
old: DisplayName : CaptureService_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_56877f
old: DisplayName : Clipboard User Service_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_c28685
new: DisplayName : CaptureService_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_c28685
new: DisplayName : Clipboard User Service_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_56877f
old: DisplayName : Connected Devices Platform User Service_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_c28685
new: DisplayName : Connected Devices Platform User Service_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_56877f
old: DisplayName : ConsentUX_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_c28685
new: DisplayName : ConsentUX_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_56877f
old: DisplayName : CredentialEnrollmentManagerUserSvc_56877f
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_c28685
new: DisplayName : CredentialEnrollmentManagerUserSvc_c28685
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_56877f
old: DisplayName : DeviceAssociationBroker_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_c28685
new: DisplayName : DeviceAssociationBroker_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_56877f
old: DisplayName : DevicePicker_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_56877f
old: DisplayName : DevicesFlow_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_c28685
new: DisplayName : DevicePicker_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_c28685
new: DisplayName : DevicesFlow_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.106\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.116\elevation_service.exe"
system - services - MessagingService_56877f
old: DisplayName : MessagingService_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_c28685
new: DisplayName : MessagingService_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_56877f
old: DisplayName : Synkroniseringsvärd_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_c28685
new: DisplayName : Synkroniseringsvärd_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_56877f
old: DisplayName : Contact Data_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_c28685
new: DisplayName : Contact Data_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_56877f
old: DisplayName : PrintWorkflow_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_c28685
new: DisplayName : PrintWorkflow_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_56877f
old: DisplayName : User Data Storage_56877f
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_c28685
new: DisplayName : User Data Storage_c28685
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_56877f
old: DisplayName : User Data Access_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_c28685
new: DisplayName : User Data Access_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2005.5-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2005.5-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MsMpEng.exe"
system - services - WpnUserService_56877f
old: DisplayName : Windows Push Notifications User Service_56877f
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_c28685
new: DisplayName : Windows Push Notifications User Service_c28685
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Adobe Flash Player NPAPI Notifier
old: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_371_Plugin.exe -check plugin
new: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_387_Plugin.exe -check plugin
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\AC Power Download
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\usoclient.exe StartDownload
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2005.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2005.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2005.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55 -IdleScheduledJob
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2005.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2020-06-22 12.47.40
remark :
runtime : 8
count : 403
previous date : 2020-06-22
previous time : 11.34.25
general
old: user:Administrator
new: user:trains
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description : GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
hardware - printer - \\win2k8srv-2\Brother DCP-9020CDW Printer
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Brother DCP-9020CDW Printer
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 0
old: Location : Datarum
old: Network : 1
old: PortName : 192.168.253.70
old: PrintJobDataType : RAW
old: PrintProcessor : WinPrint
old: Priority : 1
old: RawOnly : 0
old: ServerName : \\win2k8srv-2
old: Shared : 1
old: ShareName : Brother DCP-9020CDW Printer
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS002
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 1
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS001
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - DYMO LabelManager 280 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS003
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Fax (omdirigerade 2)
new: CapabilityDescriptions : Color,Duplex
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS004
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 1
new: Default : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS005
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS006
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - OneNote
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 0
old: DriverName : Microsoft Software Printer Driver
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : Microsoft.Office.OneNote_16001.12026.20112.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 0
new: DriverName : Microsoft Software Printer Driver
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : Microsoft.Office.OneNote_16001.12827.20182.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-1107
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
network - connections - Share g
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
old: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
old: ResourceType : Disk
network - connections - Share h
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: ResourceType : Disk
network - connections - Share i
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Applications
old: RemotePath : \\WIN-PL3BEWOIR9X\Applications
old: ResourceType : Disk
system - SystemDriver - MpKslDrv
old: AcceptPause : 0
old: Description : MpKslDrv
old: DesktopInteract : 0
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DF95CC43-0D22-41B0-9BA9-46ED2BC791F1}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : System
system - services - survey
new: AarSvc_56877f Manual Unknown Agent Activation Runtime_56877f
new: BcastDVRUserService_56877f Manual Unknown Användartjänst för Spel-DVR och sändning_56877f
new: BluetoothUserService_56877f Manual Unknown Bluetooth User Support Service_56877f
new: CaptureService_56877f Manual Unknown CaptureService_56877f
new: cbdhsvc_56877f Manual Unknown Clipboard User Service_56877f
new: CDPUserSvc_56877f Auto Unknown Connected Devices Platform User Service_56877f
new: ConsentUxUserSvc_56877f Manual Unknown ConsentUX_56877f
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_56877f
new: DeviceAssociationBrokerSvc_568 Manual Unknown DeviceAssociationBroker_56877f
new: DevicePickerUserSvc_56877f Manual Unknown DevicePicker_56877f
new: DevicesFlowUserSvc_56877f Manual Unknown DevicesFlow_56877f
new: MessagingService_56877f Manual Unknown MessagingService_56877f
new: OneSyncSvc_56877f Auto Unknown Synkroniseringsvärd_56877f
new: PimIndexMaintenanceSvc_56877f Manual Unknown Contact Data_56877f
new: PrintWorkflowUserSvc_56877f Manual Unknown PrintWorkflow_56877f
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
new: UnistoreSvc_56877f Manual Unknown User Data Storage_56877f
new: UserDataSvc_56877f Manual Unknown User Data Access_56877f
new: WpnUserService_56877f Auto Unknown Windows Push Notifications User Service_56877f
system - services - AarSvc_56877f
new: DisplayName : Agent Activation Runtime_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_56877f
new: DisplayName : Användartjänst för Spel-DVR och sändning_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_56877f
new: DisplayName : Bluetooth User Support Service_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_56877f
new: DisplayName : CaptureService_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_56877f
new: DisplayName : Clipboard User Service_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_56877f
new: DisplayName : Connected Devices Platform User Service_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_56877f
new: DisplayName : ConsentUX_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_56877f
new: DisplayName : CredentialEnrollmentManagerUserSvc_56877f
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_56877f
new: DisplayName : DeviceAssociationBroker_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_56877f
new: DisplayName : DevicePicker_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_56877f
new: DisplayName : DevicesFlow_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_56877f
new: DisplayName : MessagingService_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_56877f
new: DisplayName : Synkroniseringsvärd_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_56877f
new: DisplayName : Contact Data_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_56877f
new: DisplayName : PrintWorkflow_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UnistoreSvc_56877f
new: DisplayName : User Data Storage_56877f
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_56877f
new: DisplayName : User Data Access_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_56877f
new: DisplayName : Windows Push Notifications User Service_56877f
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management : No Start On Batteries
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-06-22 11.34.25
remark :
runtime : 71
count : 429
previous date : 2020-06-08
previous time : 10.03.06
general
old: user:trains
new: user:Administrator
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description : GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
hardware - printer - Brother DCP-9020CDW Printer (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - DYMO LabelManager 280 (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Fax (omdirigerade 1)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - \\win2k8srv-2\Brother DCP-9020CDW Printer
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Brother DCP-9020CDW Printer
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 0
new: Location : Datarum
new: Network : 1
new: PortName : 192.168.253.70
new: PrintJobDataType : RAW
new: PrintProcessor : WinPrint
new: Priority : 1
new: RawOnly : 0
new: ServerName : \\win2k8srv-2
new: Shared : 1
new: ShareName : Brother DCP-9020CDW Printer
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 0
new: Default : 1
hardware - printer - Microsoft Print to PDF (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 0
old: DriverName : Microsoft Software Printer Driver
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : Microsoft.Office.OneNote_16001.12827.20182.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-1107
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 0
new: DriverName : Microsoft Software Printer Driver
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : Microsoft.Office.OneNote_16001.12026.20112.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
network - connections - Share g
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
new: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
new: ResourceType : Disk
network - connections - Share h
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: ResourceType : Disk
network - connections - Share i
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Applications
new: RemotePath : \\WIN-PL3BEWOIR9X\Applications
new: ResourceType : Disk
system - SystemDriver - MpKslDrv
new: AcceptPause : 0
new: Description : MpKslDrv
new: DesktopInteract : 0
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DF95CC43-0D22-41B0-9BA9-46ED2BC791F1}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : System
system - hotfix - KB4556799
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4560959
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4560960
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4561600
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_163c7d5 Manual Unknown Agent Activation Runtime_163c7d5
old: BcastDVRUserService_163c7d5 Manual Unknown Användartjänst för Spel-DVR och sändning_163c7d5
old: BluetoothUserService_163c7d5 Manual Unknown Bluetooth User Support Service_163c7d5
old: CaptureService_163c7d5 Manual Unknown CaptureService_163c7d5
old: cbdhsvc_163c7d5 Manual Unknown Clipboard User Service_163c7d5
old: CDPUserSvc_163c7d5 Auto Unknown Connected Devices Platform User Service_163c7d5
old: ConsentUxUserSvc_163c7d5 Manual Unknown ConsentUX_163c7d5
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_163c7d5
old: DeviceAssociationBrokerSvc_163 Manual Unknown DeviceAssociationBroker_163c7d5
old: DevicePickerUserSvc_163c7d5 Manual Unknown DevicePicker_163c7d5
old: DevicesFlowUserSvc_163c7d5 Manual Unknown DevicesFlow_163c7d5
old: MessagingService_163c7d5 Manual Unknown MessagingService_163c7d5
old: OneSyncSvc_163c7d5 Auto Unknown Synkroniseringsvärd_163c7d5
old: PimIndexMaintenanceSvc_163c7d5 Manual Unknown Contact Data_163c7d5
old: PrintWorkflowUserSvc_163c7d5 Manual Unknown PrintWorkflow_163c7d5
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
old: UnistoreSvc_163c7d5 Manual Unknown User Data Storage_163c7d5
old: UserDataSvc_163c7d5 Manual Unknown User Data Access_163c7d5
old: WpnUserService_163c7d5 Auto Unknown Windows Push Notifications User Service_163c7d5
system - services - AarSvc_163c7d5
old: DisplayName : Agent Activation Runtime_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_163c7d5
old: DisplayName : Användartjänst för Spel-DVR och sändning_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_163c7d5
old: DisplayName : Bluetooth User Support Service_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_163c7d5
old: DisplayName : CaptureService_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_163c7d5
old: DisplayName : Clipboard User Service_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_163c7d5
old: DisplayName : Connected Devices Platform User Service_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_163c7d5
old: DisplayName : ConsentUX_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_163c7d5
old: DisplayName : CredentialEnrollmentManagerUserSvc_163c7d5
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_163c7d5
old: DisplayName : DeviceAssociationBroker_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_163c7d5
old: DisplayName : DevicePicker_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_163c7d5
old: DisplayName : DevicesFlow_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.61\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.106\elevation_service.exe"
system - services - MessagingService_163c7d5
old: DisplayName : MessagingService_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_163c7d5
old: DisplayName : Synkroniseringsvärd_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_163c7d5
old: DisplayName : Contact Data_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_163c7d5
old: DisplayName : PrintWorkflow_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UnistoreSvc_163c7d5
old: DisplayName : User Data Storage_163c7d5
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_163c7d5
old: DisplayName : User Data Access_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_163c7d5
old: DisplayName : Windows Push Notifications User Service_163c7d5
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\AC Power Download
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\usoclient.exe StartDownload
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management : No Start On Batteries
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2020-06-08 10.03.06
remark :
runtime : 9
count : 620
previous date : 2020-06-02
previous time : 00.38.32
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Fax (omdirigerade 2)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS002
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 1
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS001
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - DYMO LabelManager 280 (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS003
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Fax (omdirigerade 1)
new: CapabilityDescriptions : Color,Duplex
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS004
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - iR C3380 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS007
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS005
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS008
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS006
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS010
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS009
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
system - services - survey
old: AarSvc_6ddbb Manual Unknown Agent Activation Runtime_6ddbb
new: AarSvc_163c7d5 Manual Unknown Agent Activation Runtime_163c7d5
old: BcastDVRUserService_6ddbb Manual Unknown Användartjänst för Spel-DVR och sändning_6ddbb
new: BcastDVRUserService_163c7d5 Manual Unknown Användartjänst för Spel-DVR och sändning_163c7d5
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_6ddbb Manual Unknown Bluetooth User Support Service_6ddbb
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_163c7d5 Manual Unknown Bluetooth User Support Service_163c7d5
old: CaptureService_6ddbb Manual Unknown CaptureService_6ddbb
old: cbdhsvc_6ddbb Manual Unknown Clipboard User Service_6ddbb
new: CaptureService_163c7d5 Manual Unknown CaptureService_163c7d5
new: cbdhsvc_163c7d5 Manual Unknown Clipboard User Service_163c7d5
old: CDPUserSvc_6ddbb Auto Unknown Connected Devices Platform User Service_6ddbb
new: CDPUserSvc_163c7d5 Auto Unknown Connected Devices Platform User Service_163c7d5
old: ConsentUxUserSvc_6ddbb Manual Unknown ConsentUX_6ddbb
new: ConsentUxUserSvc_163c7d5 Manual Unknown ConsentUX_163c7d5
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_6ddbb
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_163c7d5
old: DeviceAssociationBrokerSvc_6dd Manual Unknown DeviceAssociationBroker_6ddbb
new: DeviceAssociationBrokerSvc_163 Manual Unknown DeviceAssociationBroker_163c7d5
old: DevicePickerUserSvc_6ddbb Manual Unknown DevicePicker_6ddbb
old: DevicesFlowUserSvc_6ddbb Manual Unknown DevicesFlow_6ddbb
new: DevicePickerUserSvc_163c7d5 Manual Unknown DevicePicker_163c7d5
new: DevicesFlowUserSvc_163c7d5 Manual Unknown DevicesFlow_163c7d5
old: MessagingService_6ddbb Manual Unknown MessagingService_6ddbb
new: MessagingService_163c7d5 Manual Unknown MessagingService_163c7d5
old: OneSyncSvc_6ddbb Auto Unknown Synkroniseringsvärd_6ddbb
new: OneSyncSvc_163c7d5 Auto Unknown Synkroniseringsvärd_163c7d5
old: PimIndexMaintenanceSvc_6ddbb Manual Unknown Contact Data_6ddbb
new: PimIndexMaintenanceSvc_163c7d5 Manual Unknown Contact Data_163c7d5
old: PrintWorkflowUserSvc_6ddbb Manual Unknown PrintWorkflow_6ddbb
new: PrintWorkflowUserSvc_163c7d5 Manual Unknown PrintWorkflow_163c7d5
old: UnistoreSvc_6ddbb Manual Unknown User Data Storage_6ddbb
new: UnistoreSvc_163c7d5 Manual Unknown User Data Storage_163c7d5
old: UserDataSvc_6ddbb Manual Unknown User Data Access_6ddbb
new: UserDataSvc_163c7d5 Manual Unknown User Data Access_163c7d5
old: WpnUserService_6ddbb Auto Unknown Windows Push Notifications User Service_6ddbb
new: WpnUserService_163c7d5 Auto Unknown Windows Push Notifications User Service_163c7d5
system - services - AarSvc_6ddbb
old: DisplayName : Agent Activation Runtime_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_163c7d5
new: DisplayName : Agent Activation Runtime_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_6ddbb
old: DisplayName : Användartjänst för Spel-DVR och sändning_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_163c7d5
new: DisplayName : Användartjänst för Spel-DVR och sändning_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_6ddbb
old: DisplayName : Bluetooth User Support Service_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_163c7d5
new: DisplayName : Bluetooth User Support Service_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_6ddbb
old: DisplayName : CaptureService_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_6ddbb
old: DisplayName : Clipboard User Service_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_163c7d5
new: DisplayName : CaptureService_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_163c7d5
new: DisplayName : Clipboard User Service_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_6ddbb
old: DisplayName : Connected Devices Platform User Service_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_163c7d5
new: DisplayName : Connected Devices Platform User Service_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_6ddbb
old: DisplayName : ConsentUX_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_163c7d5
new: DisplayName : ConsentUX_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_6ddbb
old: DisplayName : CredentialEnrollmentManagerUserSvc_6ddbb
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_163c7d5
new: DisplayName : CredentialEnrollmentManagerUserSvc_163c7d5
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_6ddbb
old: DisplayName : DeviceAssociationBroker_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_163c7d5
new: DisplayName : DeviceAssociationBroker_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_6ddbb
old: DisplayName : DevicePicker_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_6ddbb
old: DisplayName : DevicesFlow_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_163c7d5
new: DisplayName : DevicePicker_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_163c7d5
new: DisplayName : DevicesFlow_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_6ddbb
old: DisplayName : MessagingService_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_163c7d5
new: DisplayName : MessagingService_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_6ddbb
old: DisplayName : Synkroniseringsvärd_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_163c7d5
new: DisplayName : Synkroniseringsvärd_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_6ddbb
old: DisplayName : Contact Data_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_163c7d5
new: DisplayName : Contact Data_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_6ddbb
old: DisplayName : PrintWorkflow_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_163c7d5
new: DisplayName : PrintWorkflow_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_6ddbb
old: DisplayName : User Data Storage_6ddbb
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_163c7d5
new: DisplayName : User Data Storage_163c7d5
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_6ddbb
old: DisplayName : User Data Access_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_163c7d5
new: DisplayName : User Data Access_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2005.5-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2005.5-0\MsMpEng.exe"
system - services - WpnUserService_6ddbb
old: DisplayName : Windows Push Notifications User Service_6ddbb
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_163c7d5
new: DisplayName : Windows Push Notifications User Service_163c7d5
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2005.5-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2005.5-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2005.5-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2005.5-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2020-06-02 00.38.32
remark :
runtime : 10
count : 311
previous date : 2020-06-01
previous time : 20.33.30
general
old: user:Administrator
new: user:trains
hardware - printer - \\win2k8srv-2\Brother DCP-9020CDW Printer
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Brother DCP-9020CDW Printer
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 0
old: Location : Datarum
old: Network : 1
old: PortName : 192.168.253.70
old: PrintJobDataType : RAW
old: PrintProcessor : WinPrint
old: Priority : 1
old: RawOnly : 0
old: ServerName : \\win2k8srv-2
old: Shared : 1
old: ShareName : Brother DCP-9020CDW Printer
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 1
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS001
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS003
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Canon TS5000 series (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS002
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS004
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Fax (omdirigerade 2)
new: CapabilityDescriptions : Color,Duplex
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS005
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 1
new: Default : 0
hardware - printer - iR C3380 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS006
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS007
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS008
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - OneNote
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 0
old: DriverName : Microsoft Software Printer Driver
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : Microsoft.Office.OneNote_16001.12026.20112.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS010
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - OneNote for Windows 10
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 0
new: DriverName : Microsoft Software Printer Driver
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : Microsoft.Office.OneNote_16001.12827.20182.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-1107
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - PDF24 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS009
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
network - connections - Share g
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
old: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
old: ResourceType : Disk
network - connections - Share h
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: ResourceType : Disk
network - connections - Share i
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Applications
old: RemotePath : \\WIN-PL3BEWOIR9X\Applications
old: ResourceType : Disk
Top Runs Differences at: 2020-06-01 20.33.30
remark :
runtime : 8
count : 223
previous date : 2020-06-01
previous time : 15.31.49
general
old: user:trains
new: user:Administrator
hardware - printer - Brother DCP-9020CDW Printer (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - DYMO LabelManager 280 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Fax (omdirigerade 2)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - \\win2k8srv-2\Brother DCP-9020CDW Printer
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Brother DCP-9020CDW Printer
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 0
new: Location : Datarum
new: Network : 1
new: PortName : 192.168.253.70
new: PrintJobDataType : RAW
new: PrintProcessor : WinPrint
new: Priority : 1
new: RawOnly : 0
new: ServerName : \\win2k8srv-2
new: Shared : 1
new: ShareName : Brother DCP-9020CDW Printer
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 0
new: Default : 1
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 0
old: DriverName : Microsoft Software Printer Driver
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : Microsoft.Office.OneNote_16001.12827.20182.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-1107
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 0
new: DriverName : Microsoft Software Printer Driver
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : Microsoft.Office.OneNote_16001.12026.20112.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
network - connections - Share g
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
new: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
new: ResourceType : Disk
network - connections - Share h
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: ResourceType : Disk
network - connections - Share i
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Applications
new: RemotePath : \\WIN-PL3BEWOIR9X\Applications
new: ResourceType : Disk
Top Runs Differences at: 2020-06-01 15.31.49
remark :
runtime : 232
count : 223
previous date : 2020-06-01
previous time : 15.29.52
general
old: user:Administrator
new: user:trains
hardware - printer - \\win2k8srv-2\Brother DCP-9020CDW Printer
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Brother DCP-9020CDW Printer
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 0
old: Location : Datarum
old: Network : 1
old: PortName : 192.168.253.70
old: PrintJobDataType : RAW
old: PrintProcessor : WinPrint
old: Priority : 1
old: RawOnly : 0
old: ServerName : \\win2k8srv-2
old: Shared : 1
old: ShareName : Brother DCP-9020CDW Printer
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS002
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 1
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS001
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - DYMO LabelManager 280 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS003
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Fax (omdirigerade 2)
new: CapabilityDescriptions : Color,Duplex
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS004
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 1
new: Default : 0
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS005
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : TS006
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - OneNote
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 0
old: DriverName : Microsoft Software Printer Driver
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : Microsoft.Office.OneNote_16001.12026.20112.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 0
new: DriverName : Microsoft Software Printer Driver
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : Microsoft.Office.OneNote_16001.12827.20182.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-1107
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
network - connections - Share g
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
old: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
old: ResourceType : Disk
network - connections - Share h
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: ResourceType : Disk
network - connections - Share i
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Applications
old: RemotePath : \\WIN-PL3BEWOIR9X\Applications
old: ResourceType : Disk
Top Runs Differences at: 2020-06-01 15.29.52
remark :
runtime : 7
count : 258
previous date : 2020-06-01
previous time : 15.17.19
general
old: user:trains
new: user:Administrator
boot - startup - OneDrive
new: Command : "C:\Users\administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
new: Description : OneDrive
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : OneDrive
new: SettingID :
new: User : CORP\Administrator
new:
hardware - printer - Brother DCP-9020CDW Printer (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - DYMO LabelManager 280 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Fax (omdirigerade 2)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - \\win2k8srv-2\Brother DCP-9020CDW Printer
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 1
new: DriverName : Brother DCP-9020CDW Printer
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 0
new: Location : Datarum
new: Network : 1
new: PortName : 192.168.253.70
new: PrintJobDataType : RAW
new: PrintProcessor : WinPrint
new: Priority : 1
new: RawOnly : 0
new: ServerName : \\win2k8srv-2
new: Shared : 1
new: ShareName : Brother DCP-9020CDW Printer
new: SpoolEnabled : 1
new: WorkOffline : 0
hardware - printer - HP ePrint
old: Default : 0
new: Default : 1
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - Microsoft XPS Document Writer (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote for Windows 10
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 0
old: Description :
old: Direct : 0
old: DoCompleteFirst : 0
old: DriverName : Microsoft Software Printer Driver
old: EnableBIDI : 0
old: EnableDevQueryPrint : 0
old: Local : 1
old: Location :
old: Network : 0
old: PortName : Microsoft.Office.OneNote_16001.12827.20182.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-1107
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly : 0
old: ServerName :
old: Shared : 0
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline : 0
hardware - printer - OneNote
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 0
new: Description :
new: Direct : 0
new: DoCompleteFirst : 0
new: DriverName : Microsoft Software Printer Driver
new: EnableBIDI : 0
new: EnableDevQueryPrint : 0
new: Local : 1
new: Location :
new: Network : 0
new: PortName : Microsoft.Office.OneNote_16001.12026.20112.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly : 0
new: ServerName :
new: Shared : 0
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline : 0
network - connections - Share g
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
new: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
new: ResourceType : Disk
network - connections - Share h
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: ResourceType : Disk
network - connections - Share i
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Applications
new: RemotePath : \\WIN-PL3BEWOIR9X\Applications
new: ResourceType : Disk
software - product - LibreOffice 6.4.3.2
old: Version : 6.4.3.2
old: Publisher : The Document Foundation
old: URLinfo : https://www.libreoffice.org/
old: ParentKey :
old: Install Location : C:\Program Files\LibreOffice\
old: Windows Installer : 0x00000001
software - product - LibreOffice 6.4.4.2
new: Version : 6.4.4.2
new: Publisher : The Document Foundation
new: URLinfo : https://www.libreoffice.org/
new: ParentKey :
new: Install Location : C:\Program Files\LibreOffice\
new: Windows Installer : 0x00000001
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-06-01 15.17.19
remark :
runtime : 50
count : 271
previous date : 2020-06-01
previous time : 15.13.12
boot - startup - OneDrive
old: Command : "C:\Users\administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
old: Description : OneDrive
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : OneDrive
old: SettingID :
old: User : CORP\Administrator
old:
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
old: Default : 0
new: Default : 1
hardware - printer - Fax (omdirigerade 2)
old: PortName : TS005
new: PortName : TS004
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
old: PortName : TS004
new: PortName : TS005
hardware - printer - OneNote for Windows 10
old: Default : 1
new: Default : 0
system - services - survey
old: AarSvc_d4053 Manual Unknown Agent Activation Runtime_d4053
new: AarSvc_6ddbb Manual Unknown Agent Activation Runtime_6ddbb
old: BcastDVRUserService_d4053 Manual Unknown Användartjänst för Spel-DVR och sändning_d4053
new: BcastDVRUserService_6ddbb Manual Unknown Användartjänst för Spel-DVR och sändning_6ddbb
old: BluetoothUserService_d4053 Manual Unknown Bluetooth User Support Service_d4053
new: BluetoothUserService_6ddbb Manual Unknown Bluetooth User Support Service_6ddbb
old: CaptureService_d4053 Manual Unknown CaptureService_d4053
old: cbdhsvc_d4053 Manual Unknown Clipboard User Service_d4053
new: CaptureService_6ddbb Manual Unknown CaptureService_6ddbb
new: cbdhsvc_6ddbb Manual Unknown Clipboard User Service_6ddbb
old: CDPUserSvc_d4053 Auto Unknown Connected Devices Platform User Service_d4053
new: CDPUserSvc_6ddbb Auto Unknown Connected Devices Platform User Service_6ddbb
old: ConsentUxUserSvc_d4053 Manual Unknown ConsentUX_d4053
new: ConsentUxUserSvc_6ddbb Manual Unknown ConsentUX_6ddbb
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_d4053
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_6ddbb
old: DeviceAssociationBrokerSvc_d40 Manual Unknown DeviceAssociationBroker_d4053
new: DeviceAssociationBrokerSvc_6dd Manual Unknown DeviceAssociationBroker_6ddbb
old: DevicePickerUserSvc_d4053 Manual Unknown DevicePicker_d4053
old: DevicesFlowUserSvc_d4053 Manual Unknown DevicesFlow_d4053
new: DevicePickerUserSvc_6ddbb Manual Unknown DevicePicker_6ddbb
new: DevicesFlowUserSvc_6ddbb Manual Unknown DevicesFlow_6ddbb
old: MessagingService_d4053 Manual Unknown MessagingService_d4053
new: MessagingService_6ddbb Manual Unknown MessagingService_6ddbb
old: OneSyncSvc_d4053 Auto Unknown Synkroniseringsvärd_d4053
new: OneSyncSvc_6ddbb Auto Unknown Synkroniseringsvärd_6ddbb
old: PimIndexMaintenanceSvc_d4053 Manual Unknown Contact Data_d4053
new: PimIndexMaintenanceSvc_6ddbb Manual Unknown Contact Data_6ddbb
old: PrintWorkflowUserSvc_d4053 Manual Unknown PrintWorkflow_d4053
new: PrintWorkflowUserSvc_6ddbb Manual Unknown PrintWorkflow_6ddbb
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
old: UnistoreSvc_d4053 Manual Unknown User Data Storage_d4053
new: UnistoreSvc_6ddbb Manual Unknown User Data Storage_6ddbb
old: UserDataSvc_d4053 Manual Unknown User Data Access_d4053
new: UserDataSvc_6ddbb Manual Unknown User Data Access_6ddbb
old: WpnUserService_d4053 Auto Unknown Windows Push Notifications User Service_d4053
new: WpnUserService_6ddbb Auto Unknown Windows Push Notifications User Service_6ddbb
system - services - AarSvc_d4053
old: DisplayName : Agent Activation Runtime_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_6ddbb
new: DisplayName : Agent Activation Runtime_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_d4053
old: DisplayName : Användartjänst för Spel-DVR och sändning_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_6ddbb
new: DisplayName : Användartjänst för Spel-DVR och sändning_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_d4053
old: DisplayName : Bluetooth User Support Service_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_6ddbb
new: DisplayName : Bluetooth User Support Service_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_d4053
old: DisplayName : CaptureService_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_d4053
old: DisplayName : Clipboard User Service_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_6ddbb
new: DisplayName : CaptureService_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_6ddbb
new: DisplayName : Clipboard User Service_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_d4053
old: DisplayName : Connected Devices Platform User Service_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_6ddbb
new: DisplayName : Connected Devices Platform User Service_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_d4053
old: DisplayName : ConsentUX_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_6ddbb
new: DisplayName : ConsentUX_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_d4053
old: DisplayName : CredentialEnrollmentManagerUserSvc_d4053
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_6ddbb
new: DisplayName : CredentialEnrollmentManagerUserSvc_6ddbb
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_d4053
old: DisplayName : DeviceAssociationBroker_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_6ddbb
new: DisplayName : DeviceAssociationBroker_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_d4053
old: DisplayName : DevicePicker_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_d4053
old: DisplayName : DevicesFlow_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_6ddbb
new: DisplayName : DevicePicker_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_6ddbb
new: DisplayName : DevicesFlow_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_d4053
old: DisplayName : MessagingService_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_6ddbb
new: DisplayName : MessagingService_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_d4053
old: DisplayName : Synkroniseringsvärd_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_6ddbb
new: DisplayName : Synkroniseringsvärd_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_d4053
old: DisplayName : Contact Data_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_6ddbb
new: DisplayName : Contact Data_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_d4053
old: DisplayName : PrintWorkflow_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_6ddbb
new: DisplayName : PrintWorkflow_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - services - UnistoreSvc_d4053
old: DisplayName : User Data Storage_d4053
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_6ddbb
new: DisplayName : User Data Storage_6ddbb
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_d4053
old: DisplayName : User Data Access_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_6ddbb
new: DisplayName : User Data Access_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_d4053
old: DisplayName : Windows Push Notifications User Service_d4053
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_6ddbb
new: DisplayName : Windows Push Notifications User Service_6ddbb
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2020-06-01 15.11.10
remark :
runtime : 8
count : 230
previous date : 2020-06-01
previous time : 15.09.40
general
old: user:trains
new: user:Administrator
boot - startup - OneDrive
new: Command : "C:\Users\administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
new: Description: OneDrive
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : OneDrive
new: SettingID :
new: User : CORP\Administrator
new:
hardware - printer - Brother DCP-9020CDW Printer (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - DYMO LabelManager 280 (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - Fax (omdirigerade 2)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - \\win2k8srv-2\Brother DCP-9020CDW Printer
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Brother DCP-9020CDW Printer
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local :
new: Location : Datarum
new: Network : 1
new: PortName : 192.168.253.70
new: PrintJobDataType : RAW
new: PrintProcessor : WinPrint
new: Priority : 1
new: RawOnly :
new: ServerName : \\win2k8srv-2
new: Shared : 1
new: ShareName : Brother DCP-9020CDW Printer
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - HP ePrint
old: Default :
new: Default : 1
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - Microsoft XPS Document Writer (omdirigerade 2)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - OneNote for Windows 10
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default : 1
old: Description :
old: Direct :
old: DoCompleteFirst :
old: DriverName : Microsoft Software Printer Driver
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : Microsoft.Office.OneNote_16001.12827.20182.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-1107
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - OneNote
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst :
new: DriverName : Microsoft Software Printer Driver
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : Microsoft.Office.OneNote_16001.12026.20112.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
network - connections - Share g
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
new: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
new: ResourceType : Disk
network - connections - Share h
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: ResourceType : Disk
network - connections - Share i
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Applications
new: RemotePath : \\WIN-PL3BEWOIR9X\Applications
new: ResourceType : Disk
Top Runs Differences at: 2020-06-01 15.09.40
remark :
runtime : 15
count : 712
previous date : 2020-05-13
previous time : 10.38.20
boot - startup - OneDrive
old: Command : "C:\Users\administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
old: Description: OneDrive
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : OneDrive
old: SettingID :
old: User : CORP\Administrator
old:
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - Canon TS5000 series (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - Fax (omdirigerade 1)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - Brother DCP-9020CDW Printer (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS002
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS001
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - DYMO LabelManager 280 (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS003
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - Fax (omdirigerade 2)
new: CapabilityDescriptions : Color,Duplex
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS005
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - iR C3380 (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS006
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - Microsoft Print to PDF (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS007
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - Microsoft Print to PDF (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS004
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - Microsoft XPS Document Writer (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS008
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - Microsoft XPS Document Writer (omdirigerade 2)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS006
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - OneNote for Windows 10 (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS010
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - OneNote
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst :
old: DriverName : Microsoft Software Printer Driver
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : Microsoft.Office.OneNote_16001.12624.20042.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-1107
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - PDF24 (omdirigerade 1)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS009
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - OneNote for Windows 10
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default : 1
new: Description :
new: Direct :
new: DoCompleteFirst :
new: DriverName : Microsoft Software Printer Driver
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : Microsoft.Office.OneNote_16001.12827.20182.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-1107
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
system - hotfix - KB4497165
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4537572
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4550945
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4552931
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4556799
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_66bb93 Manual Unknown Agent Activation Runtime_66bb93
new: AarSvc_d4053 Manual Unknown Agent Activation Runtime_d4053
old: BcastDVRUserService_66bb93 Manual Unknown Användartjänst för Spel-DVR och sändning_66bb93
new: BcastDVRUserService_d4053 Manual Unknown Användartjänst för Spel-DVR och sändning_d4053
old: BITS Manual Share Process Background Intelligent Transfer Service
old: BluetoothUserService_66bb93 Manual Unknown Bluetooth User Support Service_66bb93
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_d4053 Manual Unknown Bluetooth User Support Service_d4053
old: CaptureService_66bb93 Manual Unknown CaptureService_66bb93
old: cbdhsvc_66bb93 Manual Unknown Clipboard User Service_66bb93
new: CaptureService_d4053 Manual Unknown CaptureService_d4053
new: cbdhsvc_d4053 Manual Unknown Clipboard User Service_d4053
old: CDPUserSvc_66bb93 Auto Unknown Connected Devices Platform User Service_66bb93
new: CDPUserSvc_d4053 Auto Unknown Connected Devices Platform User Service_d4053
old: ConsentUxUserSvc_66bb93 Manual Unknown ConsentUX_66bb93
new: ConsentUxUserSvc_d4053 Manual Unknown ConsentUX_d4053
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_66bb93
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_d4053
old: DeviceAssociationBrokerSvc_66b Manual Unknown DeviceAssociationBroker_66bb93
new: DeviceAssociationBrokerSvc_d40 Manual Unknown DeviceAssociationBroker_d4053
old: DevicePickerUserSvc_66bb93 Manual Unknown DevicePicker_66bb93
old: DevicesFlowUserSvc_66bb93 Manual Unknown DevicesFlow_66bb93
new: DevicePickerUserSvc_d4053 Manual Unknown DevicePicker_d4053
new: DevicesFlowUserSvc_d4053 Manual Unknown DevicesFlow_d4053
old: MessagingService_66bb93 Manual Unknown MessagingService_66bb93
new: MessagingService_d4053 Manual Unknown MessagingService_d4053
old: OneSyncSvc_66bb93 Auto Unknown Synkroniseringsvärd_66bb93
new: OneSyncSvc_d4053 Auto Unknown Synkroniseringsvärd_d4053
old: PimIndexMaintenanceSvc_66bb93 Manual Unknown Contact Data_66bb93
new: PimIndexMaintenanceSvc_d4053 Manual Unknown Contact Data_d4053
old: PrintWorkflowUserSvc_66bb93 Manual Unknown PrintWorkflow_66bb93
new: PrintWorkflowUserSvc_d4053 Manual Unknown PrintWorkflow_d4053
old: UnistoreSvc_66bb93 Manual Unknown User Data Storage_66bb93
new: UnistoreSvc_d4053 Manual Unknown User Data Storage_d4053
old: UserDataSvc_66bb93 Manual Unknown User Data Access_66bb93
new: UserDataSvc_d4053 Manual Unknown User Data Access_d4053
old: WpnUserService_66bb93 Auto Unknown Windows Push Notifications User Service_66bb93
new: WpnUserService_d4053 Auto Unknown Windows Push Notifications User Service_d4053
system - services - AarSvc_66bb93
old: DisplayName : Agent Activation Runtime_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - AarSvc_d4053
new: DisplayName : Agent Activation Runtime_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_66bb93
old: DisplayName : Användartjänst för Spel-DVR och sändning_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_d4053
new: DisplayName : Användartjänst för Spel-DVR och sändning_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_66bb93
old: DisplayName : Bluetooth User Support Service_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_d4053
new: DisplayName : Bluetooth User Support Service_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_66bb93
old: DisplayName : CaptureService_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_66bb93
old: DisplayName : Clipboard User Service_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_d4053
new: DisplayName : CaptureService_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_d4053
new: DisplayName : Clipboard User Service_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_66bb93
old: DisplayName : Connected Devices Platform User Service_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_d4053
new: DisplayName : Connected Devices Platform User Service_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_66bb93
old: DisplayName : ConsentUX_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_d4053
new: DisplayName : ConsentUX_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_66bb93
old: DisplayName : CredentialEnrollmentManagerUserSvc_66bb93
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_d4053
new: DisplayName : CredentialEnrollmentManagerUserSvc_d4053
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_66bb93
old: DisplayName : DeviceAssociationBroker_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_d4053
new: DisplayName : DeviceAssociationBroker_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_66bb93
old: DisplayName : DevicePicker_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_66bb93
old: DisplayName : DevicesFlow_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_d4053
new: DisplayName : DevicePicker_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_d4053
new: DisplayName : DevicesFlow_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\81.0.4044.138\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.61\elevation_service.exe"
system - services - MessagingService_66bb93
old: DisplayName : MessagingService_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - MessagingService_d4053
new: DisplayName : MessagingService_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_66bb93
old: DisplayName : Synkroniseringsvärd_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_d4053
new: DisplayName : Synkroniseringsvärd_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_66bb93
old: DisplayName : Contact Data_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_d4053
new: DisplayName : Contact Data_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_66bb93
old: DisplayName : PrintWorkflow_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - PrintWorkflowUserSvc_d4053
new: DisplayName : PrintWorkflow_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_66bb93
old: DisplayName : User Data Storage_66bb93
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UnistoreSvc_d4053
new: DisplayName : User Data Storage_d4053
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_66bb93
old: DisplayName : User Data Access_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_d4053
new: DisplayName : User Data Access_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_66bb93
old: DisplayName : Windows Push Notifications User Service_66bb93
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_d4053
new: DisplayName : Windows Push Notifications User Service_d4053
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\AC Power Install
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\usoclient.exe StartInstall
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management : No Start On Batteries
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-05-13 10.38.20
remark :
runtime : 10
count : 470
previous date : 2020-04-22
previous time : 12.36.56
general
old: user:Administrator
new: user:trains
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description: GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
hardware - printer - \\win2k8srv-2\Brother DCP-9020CDW Printer
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Brother DCP-9020CDW Printer
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local :
old: Location : Datarum
old: Network : 1
old: PortName : 192.168.253.70
old: PrintJobDataType : RAW
old: PrintProcessor : WinPrint
old: Priority : 1
old: RawOnly :
old: ServerName : \\win2k8srv-2
old: Shared : 1
old: ShareName : Brother DCP-9020CDW Printer
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default : 1
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS001
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - Brother DCP-9020CDW Printer på win2k8srv-2 (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS002
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - Canon TS5000 series (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS003
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - EPSON XP-342 343 345 Series (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS004
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - Fax (omdirigerade 1)
new: CapabilityDescriptions : Color,Duplex
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS005
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - HP ePrint
old: Default : 1
new: Default :
hardware - printer - iR C3380 (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS006
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - Microsoft Print to PDF (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS007
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - Microsoft XPS Document Writer (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS008
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - OneNote for Windows 10 (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS010
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - OneNote
old: PortName : Microsoft.Office.OneNote_16001.12026.20112.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
new: PortName : Microsoft.Office.OneNote_16001.12624.20042.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-1107
hardware - printer - PDF24 (omdirigerade 1)
new: CapabilityDescriptions : Copies,Color,Collate
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Remote Desktop Easy Print
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local : 1
new: Location :
new: Network :
new: PortName : TS009
new: PrintJobDataType : RAW
new: PrintProcessor : winprint
new: Priority : 1
new: RawOnly :
new: ServerName :
new: Shared :
new: ShareName :
new: SpoolEnabled : 1
new: WorkOffline :
network - connections - Share g
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
old: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
old: ResourceType : Disk
network - connections - Share h
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
old: ResourceType : Disk
network - connections - Share i
old: Comment :
old: DisplayType : Share
old: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
old: ProviderName : Microsoft Windows Network
old: RemoteName : \\WIN-PL3BEWOIR9X\Applications
old: RemotePath : \\WIN-PL3BEWOIR9X\Applications
old: ResourceType : Disk
system - services - survey
new: AarSvc_66bb93 Manual Unknown Agent Activation Runtime_66bb93
new: BcastDVRUserService_66bb93 Manual Unknown Användartjänst för Spel-DVR och sändning_66bb93
new: BluetoothUserService_66bb93 Manual Unknown Bluetooth User Support Service_66bb93
new: CaptureService_66bb93 Manual Unknown CaptureService_66bb93
new: cbdhsvc_66bb93 Manual Unknown Clipboard User Service_66bb93
new: CDPUserSvc_66bb93 Auto Unknown Connected Devices Platform User Service_66bb93
new: ConsentUxUserSvc_66bb93 Manual Unknown ConsentUX_66bb93
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_66bb93
new: DeviceAssociationBrokerSvc_66b Manual Unknown DeviceAssociationBroker_66bb93
new: DevicePickerUserSvc_66bb93 Manual Unknown DevicePicker_66bb93
new: DevicesFlowUserSvc_66bb93 Manual Unknown DevicesFlow_66bb93
new: MessagingService_66bb93 Manual Unknown MessagingService_66bb93
new: OneSyncSvc_66bb93 Auto Unknown Synkroniseringsvärd_66bb93
new: PimIndexMaintenanceSvc_66bb93 Manual Unknown Contact Data_66bb93
new: PrintWorkflowUserSvc_66bb93 Manual Unknown PrintWorkflow_66bb93
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
new: UnistoreSvc_66bb93 Manual Unknown User Data Storage_66bb93
new: UserDataSvc_66bb93 Manual Unknown User Data Access_66bb93
new: WpnUserService_66bb93 Auto Unknown Windows Push Notifications User Service_66bb93
system - services - AarSvc_66bb93
new: DisplayName : Agent Activation Runtime_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_66bb93
new: DisplayName : Användartjänst för Spel-DVR och sändning_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_66bb93
new: DisplayName : Bluetooth User Support Service_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_66bb93
new: DisplayName : CaptureService_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_66bb93
new: DisplayName : Clipboard User Service_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_66bb93
new: DisplayName : Connected Devices Platform User Service_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_66bb93
new: DisplayName : ConsentUX_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_66bb93
new: DisplayName : CredentialEnrollmentManagerUserSvc_66bb93
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_66bb93
new: DisplayName : DeviceAssociationBroker_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_66bb93
new: DisplayName : DevicePicker_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_66bb93
new: DisplayName : DevicesFlow_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\81.0.4044.113\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\81.0.4044.138\elevation_service.exe"
system - services - MessagingService_66bb93
new: DisplayName : MessagingService_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_66bb93
new: DisplayName : Synkroniseringsvärd_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_66bb93
new: DisplayName : Contact Data_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_66bb93
new: DisplayName : PrintWorkflow_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UnistoreSvc_66bb93
new: DisplayName : User Data Storage_66bb93
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_66bb93
new: DisplayName : User Data Access_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MsMpEng.exe"
system - services - WpnUserService_66bb93
new: DisplayName : Windows Push Notifications User Service_66bb93
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Adobe Flash Player NPAPI Notifier
old: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_363_Plugin.exe -check plugin
new: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_371_Plugin.exe -check plugin
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
new: Logon Mode : Interactive/Background
new: Task To Run : gpupdate.exe /target:user
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\N„tverkstj„nst
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\AC Power Install
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\usoclient.exe StartInstall
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management : No Start On Batteries
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2020-04-22 12.36.56
remark :
runtime : 17
count : 31
previous date : 2020-04-22
previous time : 11.38.44
software - product - LibreOffice 6.2.4.2
old: Version : 6.2.4.2
old: Publisher : The Document Foundation
old: URLinfo : https://www.libreoffice.org/
old: ParentKey :
old: Install Location : C:\Program Files\LibreOffice\
old: Windows Installer : 0x00000001
software - product - LibreOffice 6.4.3.2
new: Version : 6.4.3.2
new: Publisher : The Document Foundation
new: URLinfo : https://www.libreoffice.org/
new: ParentKey :
new: Install Location : C:\Program Files\LibreOffice\
new: Windows Installer : 0x00000001
system - hotfix - KB4549951
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4550945
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
new: MixedRealityOpenXRSvc Manual Share Process Windows Mixed Reality OpenXR Service
system - services - MixedRealityOpenXRSvc
new: DisplayName : Windows Mixed Reality OpenXR Service
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
new: ServiceType : Share Process
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName : LocalSystem
system - services - RpcSs
new: Required by : MixedRealityOpenXRSvc
system - services - MixedRealityOpenXRSvc
new: Requires : RpcSs
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2020-04-22 11.38.44
remark :
runtime : 15
count : 90
previous date : 2020-04-22
previous time : 11.10.06
system - hotfix - KB4551762
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4549951
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: TrustedInstaller Auto Own Process Windows Modules Installer
new: TrustedInstaller Manual Own Process Windows Modules Installer
system - services - TrustedInstaller
old: StartMode : Auto
new: StartMode : Manual
system - scheduled tasks - \Microsoft\Windows\DiskCleanup\SilentCleanup
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\DiskFootprint\StorageSense
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
old: Logon Mode : Interactive/Background
old: Task To Run : gpupdate.exe /target:user
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\N„tverkstj„nst
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Maintenance\WinSAT
old: Run As User : BUILTIN\Administrat”rer
new: Run As User : Administrat”rer
system - scheduled tasks - \Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents
old: Run As User : BUILTIN\Administrat”rer
new: Run As User : Administrat”rer
system - scheduled tasks - \Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic
old: Run As User : BUILTIN\Administrat”rer
new: Run As User : Administrat”rer
system - scheduled tasks - \Microsoft\Windows\Multimedia\SystemSoundsService
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\NetTrace\GatherNetworkInfo
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
old: Run As User : BUILTIN\Administrat”rer
new: Run As User : Administrat”rer
system - scheduled tasks - \Microsoft\Windows\SideShow\GadgetManager
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\SideShow\SessionAgent
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\Tcpip\IpAddressConflict1
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\Tcpip\IpAddressConflict2
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\TextServicesFramework\MsCtfMonitor
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\AC Power Install
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\usoclient.exe StartInstall
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management : No Start On Batteries
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\WindowsColorSystem\Calibration Loader
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
system - scheduled tasks - \Microsoft\Windows\Wininet\CacheTask
old: Run As User : BUILTIN\Anv„ndare
new: Run As User : Anv„ndare
Top Runs Differences at: 2020-04-22 11.10.06
remark :
runtime : 39
count : 170
previous date : 2020-04-01
previous time : 20.33.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description: GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
software - product - Backup and Sync from Google
old: Version : 3.49.9760.2421
new: Version : 3.49.9800.0000
system - hotfix - KB4552152
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_3b597c Manual Unknown Agent Activation Runtime_3b597c
old: BcastDVRUserService_3b597c Manual Unknown Användartjänst för Spel-DVR och sändning_3b597c
old: BluetoothUserService_3b597c Manual Unknown Bluetooth User Support Service_3b597c
old: CaptureService_3b597c Manual Unknown CaptureService_3b597c
old: cbdhsvc_3b597c Manual Unknown Clipboard User Service_3b597c
old: CDPUserSvc_3b597c Auto Unknown Connected Devices Platform User Service_3b597c
old: ConsentUxUserSvc_3b597c Manual Unknown ConsentUX_3b597c
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3b597c
old: DeviceAssociationBrokerSvc_3b5 Manual Unknown DeviceAssociationBroker_3b597c
old: DevicePickerUserSvc_3b597c Manual Unknown DevicePicker_3b597c
old: DevicesFlowUserSvc_3b597c Manual Unknown DevicesFlow_3b597c
old: MessagingService_3b597c Manual Unknown MessagingService_3b597c
old: OneSyncSvc_3b597c Auto Unknown Synkroniseringsvärd_3b597c
old: PimIndexMaintenanceSvc_3b597c Manual Unknown Contact Data_3b597c
old: PrintWorkflowUserSvc_3b597c Manual Unknown PrintWorkflow_3b597c
old: TrustedInstaller Manual Own Process Windows Modules Installer
new: TrustedInstaller Auto Own Process Windows Modules Installer
old: UnistoreSvc_3b597c Manual Unknown User Data Storage_3b597c
old: UserDataSvc_3b597c Manual Unknown User Data Access_3b597c
old: WpnUserService_3b597c Auto Unknown Windows Push Notifications User Service_3b597c
system - services - AarSvc_3b597c
old: DisplayName : Agent Activation Runtime_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_3b597c
old: DisplayName : Användartjänst för Spel-DVR och sändning_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_3b597c
old: DisplayName : Bluetooth User Support Service_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_3b597c
old: DisplayName : CaptureService_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_3b597c
old: DisplayName : Clipboard User Service_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_3b597c
old: DisplayName : Connected Devices Platform User Service_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_3b597c
old: DisplayName : ConsentUX_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3b597c
old: DisplayName : CredentialEnrollmentManagerUserSvc_3b597c
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_3b597c
old: DisplayName : DeviceAssociationBroker_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_3b597c
old: DisplayName : DevicePicker_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_3b597c
old: DisplayName : DevicesFlow_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.149\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\81.0.4044.113\elevation_service.exe"
system - services - MessagingService_3b597c
old: DisplayName : MessagingService_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_3b597c
old: DisplayName : Synkroniseringsvärd_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_3b597c
old: DisplayName : Contact Data_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_3b597c
old: DisplayName : PrintWorkflow_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - TrustedInstaller
old: StartMode : Manual
new: StartMode : Auto
system - services - UnistoreSvc_3b597c
old: DisplayName : User Data Storage_3b597c
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_3b597c
old: DisplayName : User Data Access_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_3b597c
old: DisplayName : Windows Push Notifications User Service_3b597c
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Adobe Flash Player NPAPI Notifier
old: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_344_Plugin.exe -check plugin
new: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_363_Plugin.exe -check plugin
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\AC Power Install
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\usoclient.exe StartInstall
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management : No Start On Batteries
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2020-03-29 20.33.30
remark :
runtime : 9
count : 4
previous date : 2020-03-28
previous time : 19.33.30
general
old: CurrentTimeZone:60
old: DaylightInEffect:
new: CurrentTimeZone:120
new: DaylightInEffect:1
Top Runs Differences at: 2020-03-25 19.33.30
remark :
runtime : 10
count : 12
previous date : 2020-03-24
previous time : 19.33.30
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2020-03-24 19.33.30
remark :
runtime : 10
count : 2
previous date : 2020-03-23
previous time : 19.33.30
software - product - Backup and Sync from Google
old: Version : 3.48.8668.1933
new: Version : 3.49.9760.2421
Top Runs Differences at: 2020-03-23 19.33.30
remark :
runtime : 16
count : 171
previous date : 2020-03-17
previous time : 06.36.14
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description: GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_3b597c Manual Unknown Agent Activation Runtime_3b597c
new: BcastDVRUserService_3b597c Manual Unknown Användartjänst för Spel-DVR och sändning_3b597c
new: BluetoothUserService_3b597c Manual Unknown Bluetooth User Support Service_3b597c
new: CaptureService_3b597c Manual Unknown CaptureService_3b597c
new: cbdhsvc_3b597c Manual Unknown Clipboard User Service_3b597c
new: CDPUserSvc_3b597c Auto Unknown Connected Devices Platform User Service_3b597c
new: ConsentUxUserSvc_3b597c Manual Unknown ConsentUX_3b597c
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3b597c
new: DeviceAssociationBrokerSvc_3b5 Manual Unknown DeviceAssociationBroker_3b597c
new: DevicePickerUserSvc_3b597c Manual Unknown DevicePicker_3b597c
new: DevicesFlowUserSvc_3b597c Manual Unknown DevicesFlow_3b597c
new: MessagingService_3b597c Manual Unknown MessagingService_3b597c
new: OneSyncSvc_3b597c Auto Unknown Synkroniseringsvärd_3b597c
new: PimIndexMaintenanceSvc_3b597c Manual Unknown Contact Data_3b597c
new: PrintWorkflowUserSvc_3b597c Manual Unknown PrintWorkflow_3b597c
new: UnistoreSvc_3b597c Manual Unknown User Data Storage_3b597c
new: UserDataSvc_3b597c Manual Unknown User Data Access_3b597c
new: WpnUserService_3b597c Auto Unknown Windows Push Notifications User Service_3b597c
system - services - AarSvc_3b597c
new: DisplayName : Agent Activation Runtime_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_3b597c
new: DisplayName : Användartjänst för Spel-DVR och sändning_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_3b597c
new: DisplayName : Bluetooth User Support Service_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_3b597c
new: DisplayName : CaptureService_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_3b597c
new: DisplayName : Clipboard User Service_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_3b597c
new: DisplayName : Connected Devices Platform User Service_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_3b597c
new: DisplayName : ConsentUX_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3b597c
new: DisplayName : CredentialEnrollmentManagerUserSvc_3b597c
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_3b597c
new: DisplayName : DeviceAssociationBroker_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_3b597c
new: DisplayName : DevicePicker_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_3b597c
new: DisplayName : DevicesFlow_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.132\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.149\elevation_service.exe"
system - services - MessagingService_3b597c
new: DisplayName : MessagingService_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_3b597c
new: DisplayName : Synkroniseringsvärd_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_3b597c
new: DisplayName : Contact Data_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_3b597c
new: DisplayName : PrintWorkflow_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_3b597c
new: DisplayName : User Data Storage_3b597c
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_3b597c
new: DisplayName : User Data Access_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\MsMpEng.exe"
system - services - WpnUserService_3b597c
new: DisplayName : Windows Push Notifications User Service_3b597c
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\AC Power Download
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\usoclient.exe StartDownload
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2020-03-17 06.36.14
remark :
runtime : 15
count : 23
previous date : 2020-03-16
previous time : 19.38.36
general
old: BuildNumber:18362
new: BuildNumber:18363
old: Version:10.0.18362
new: Version:10.0.18363
system - hotfix - KB4517245
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\AC Power Download
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\usoclient.exe StartDownload
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC Reboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot
Top Runs Differences at: 2020-03-16 19.33.31
remark :
runtime : 20
count : 208
previous date : 2020-03-12
previous time : 19.33.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description: GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MEGAsync
old: Command : MEGAsync.lnk
old: Description: MEGAsync
old: Location : Startup
old: Name : MEGAsync
old: SettingID :
old: User : CORP\trains
old:
system - hotfix - KB4534132
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4537572
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4540673
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4551762
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_3fae90 Manual Unknown Agent Activation Runtime_3fae90
old: BcastDVRUserService_3fae90 Manual Unknown Användartjänst för Spel-DVR och sändning_3fae90
old: BluetoothUserService_3fae90 Manual Unknown Bluetooth User Support Service_3fae90
old: CaptureService_3fae90 Manual Unknown CaptureService_3fae90
old: cbdhsvc_3fae90 Manual Unknown Clipboard User Service_3fae90
old: CDPUserSvc_3fae90 Auto Unknown Connected Devices Platform User Service_3fae90
old: ConsentUxUserSvc_3fae90 Manual Unknown ConsentUX_3fae90
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3fae90
old: DeviceAssociationBrokerSvc_3fa Manual Unknown DeviceAssociationBroker_3fae90
old: DevicePickerUserSvc_3fae90 Manual Unknown DevicePicker_3fae90
old: DevicesFlowUserSvc_3fae90 Manual Unknown DevicesFlow_3fae90
old: HP Support Assistant Service Auto Own Process HP Support Assistant Service
old: hpqwmiex Manual Own Process HP Software Framework Service
old: MessagingService_3fae90 Manual Unknown MessagingService_3fae90
old: OneSyncSvc_3fae90 Auto Unknown Synkroniseringsvärd_3fae90
old: PimIndexMaintenanceSvc_3fae90 Manual Unknown Contact Data_3fae90
old: PrintWorkflowUserSvc_3fae90 Manual Unknown PrintWorkflow_3fae90
old: UnistoreSvc_3fae90 Manual Unknown User Data Storage_3fae90
old: UserDataSvc_3fae90 Manual Unknown User Data Access_3fae90
old: WpnUserService_3fae90 Auto Unknown Windows Push Notifications User Service_3fae90
system - services - AarSvc_3fae90
old: DisplayName : Agent Activation Runtime_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_3fae90
old: DisplayName : Användartjänst för Spel-DVR och sändning_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_3fae90
old: DisplayName : Bluetooth User Support Service_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_3fae90
old: DisplayName : CaptureService_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_3fae90
old: DisplayName : Clipboard User Service_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_3fae90
old: DisplayName : Connected Devices Platform User Service_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_3fae90
old: DisplayName : ConsentUX_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3fae90
old: DisplayName : CredentialEnrollmentManagerUserSvc_3fae90
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_3fae90
old: DisplayName : DeviceAssociationBroker_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_3fae90
old: DisplayName : DevicePicker_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_3fae90
old: DisplayName : DevicesFlow_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - HP Support Assistant Service
old: DisplayName : HP Support Assistant Service
old: PathName : "C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
old: ServiceType : Own Process
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - hpqwmiex
old: DisplayName : HP Software Framework Service
old: PathName : "C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
old: ServiceType : Own Process
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName : LocalSystem
system - services - MessagingService_3fae90
old: DisplayName : MessagingService_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_3fae90
old: DisplayName : Synkroniseringsvärd_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_3fae90
old: DisplayName : Contact Data_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_3fae90
old: DisplayName : PrintWorkflow_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_3fae90
old: DisplayName : User Data Storage_3fae90
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_3fae90
old: DisplayName : User Data Access_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_3fae90
old: DisplayName : Windows Push Notifications User Service_3fae90
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - RpcSs
old: Required by : hpqwmiex
system - services - hpqwmiex
old: Requires : RpcSs
system - scheduled tasks - \Hewlett-Packard\HP Support Assistant\PC Health Analysis
old: Logon Mode : Interactive/Background
old: Task To Run : C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe /L Analysis
old: Start In : C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : BUILTIN\Administrat”rer
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 24:00:00
old: End Date : 2023-02-17
old: Days : WED
old: Months : Every 1 week(s)
system - scheduled tasks - \Hewlett-Packard\HP Support Assistant\Update Check
old: Logon Mode : Interactive/Background
old: Task To Run : C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe /s /p 1
old: Start In : C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\
old: Comment : Check for updates to HP Support Assistant
old: Idle Time : Disabled
old: Power Management :
old: Run As User : BUILTIN\Administrat”rer
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 24:00:00
old: End Date : 2023-02-17
old: Days : THU
old: Months : Every 1 week(s)
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC ReadyToReboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery ReadyToReboot
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
Top Runs Differences at: 2020-03-12 19.33.30
remark :
runtime : 9
count : 164
previous date : 2020-03-12
previous time : 06.58.09
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description: GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MEGAsync
new: Command : MEGAsync.lnk
new: Description: MEGAsync
new: Location : Startup
new: Name : MEGAsync
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_3fae90 Manual Unknown Agent Activation Runtime_3fae90
new: BcastDVRUserService_3fae90 Manual Unknown Användartjänst för Spel-DVR och sändning_3fae90
new: BluetoothUserService_3fae90 Manual Unknown Bluetooth User Support Service_3fae90
new: CaptureService_3fae90 Manual Unknown CaptureService_3fae90
new: cbdhsvc_3fae90 Manual Unknown Clipboard User Service_3fae90
new: CDPUserSvc_3fae90 Auto Unknown Connected Devices Platform User Service_3fae90
new: ConsentUxUserSvc_3fae90 Manual Unknown ConsentUX_3fae90
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_3fae90
new: DeviceAssociationBrokerSvc_3fa Manual Unknown DeviceAssociationBroker_3fae90
new: DevicePickerUserSvc_3fae90 Manual Unknown DevicePicker_3fae90
new: DevicesFlowUserSvc_3fae90 Manual Unknown DevicesFlow_3fae90
new: MessagingService_3fae90 Manual Unknown MessagingService_3fae90
new: OneSyncSvc_3fae90 Auto Unknown Synkroniseringsvärd_3fae90
new: PimIndexMaintenanceSvc_3fae90 Manual Unknown Contact Data_3fae90
new: PrintWorkflowUserSvc_3fae90 Manual Unknown PrintWorkflow_3fae90
new: UnistoreSvc_3fae90 Manual Unknown User Data Storage_3fae90
new: UserDataSvc_3fae90 Manual Unknown User Data Access_3fae90
new: WpnUserService_3fae90 Auto Unknown Windows Push Notifications User Service_3fae90
system - services - AarSvc_3fae90
new: DisplayName : Agent Activation Runtime_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_3fae90
new: DisplayName : Användartjänst för Spel-DVR och sändning_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_3fae90
new: DisplayName : Bluetooth User Support Service_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_3fae90
new: DisplayName : CaptureService_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_3fae90
new: DisplayName : Clipboard User Service_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_3fae90
new: DisplayName : Connected Devices Platform User Service_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_3fae90
new: DisplayName : ConsentUX_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_3fae90
new: DisplayName : CredentialEnrollmentManagerUserSvc_3fae90
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_3fae90
new: DisplayName : DeviceAssociationBroker_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_3fae90
new: DisplayName : DevicePicker_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_3fae90
new: DisplayName : DevicesFlow_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_3fae90
new: DisplayName : MessagingService_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_3fae90
new: DisplayName : Synkroniseringsvärd_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_3fae90
new: DisplayName : Contact Data_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_3fae90
new: DisplayName : PrintWorkflow_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_3fae90
new: DisplayName : User Data Storage_3fae90
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_3fae90
new: DisplayName : User Data Access_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_3fae90
new: DisplayName : Windows Push Notifications User Service_3fae90
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management : No Start On Batteries
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-03-12 06.58.09
remark :
runtime : 16
count : 179
previous date : 2020-03-11
previous time : 19.33.29
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description: GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MEGAsync
old: Command : MEGAsync.lnk
old: Description: MEGAsync
old: Location : Startup
old: Name : MEGAsync
old: SettingID :
old: User : CORP\trains
old:
system - hotfix - KB4532693
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4540673
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4541338
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_1472de Manual Unknown Agent Activation Runtime_1472de
old: BcastDVRUserService_1472de Manual Unknown Användartjänst för Spel-DVR och sändning_1472de
old: BluetoothUserService_1472de Manual Unknown Bluetooth User Support Service_1472de
old: CaptureService_1472de Manual Unknown CaptureService_1472de
old: cbdhsvc_1472de Manual Unknown Clipboard User Service_1472de
old: CDPUserSvc_1472de Auto Unknown Connected Devices Platform User Service_1472de
old: ConsentUxUserSvc_1472de Manual Unknown ConsentUX_1472de
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1472de
old: DeviceAssociationBrokerSvc_147 Manual Unknown DeviceAssociationBroker_1472de
old: DevicePickerUserSvc_1472de Manual Unknown DevicePicker_1472de
old: DevicesFlowUserSvc_1472de Manual Unknown DevicesFlow_1472de
old: MessagingService_1472de Manual Unknown MessagingService_1472de
old: OneSyncSvc_1472de Auto Unknown Synkroniseringsvärd_1472de
old: PimIndexMaintenanceSvc_1472de Manual Unknown Contact Data_1472de
old: PrintWorkflowUserSvc_1472de Manual Unknown PrintWorkflow_1472de
old: UnistoreSvc_1472de Manual Unknown User Data Storage_1472de
old: UserDataSvc_1472de Manual Unknown User Data Access_1472de
old: WpnUserService_1472de Auto Unknown Windows Push Notifications User Service_1472de
system - services - AarSvc_1472de
old: DisplayName : Agent Activation Runtime_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_1472de
old: DisplayName : Användartjänst för Spel-DVR och sändning_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_1472de
old: DisplayName : Bluetooth User Support Service_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_1472de
old: DisplayName : CaptureService_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_1472de
old: DisplayName : Clipboard User Service_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_1472de
old: DisplayName : Connected Devices Platform User Service_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_1472de
old: DisplayName : ConsentUX_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1472de
old: DisplayName : CredentialEnrollmentManagerUserSvc_1472de
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_1472de
old: DisplayName : DeviceAssociationBroker_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_1472de
old: DisplayName : DevicePicker_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_1472de
old: DisplayName : DevicesFlow_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_1472de
old: DisplayName : MessagingService_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_1472de
old: DisplayName : Synkroniseringsvärd_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_1472de
old: DisplayName : Contact Data_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_1472de
old: DisplayName : PrintWorkflow_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_1472de
old: DisplayName : User Data Storage_1472de
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_1472de
old: DisplayName : User Data Access_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_1472de
old: DisplayName : Windows Push Notifications User Service_1472de
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask
old: Stop Task If Runs X Hours and X Mins : 00:05:00
new: Stop Task If Runs X Hours and X Mins : 00:06:00
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_AC
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnAC ReadyToReboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery
old: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
new: Task To Run : %systemroot%\system32\MusNotification.exe /RunOnBattery ReadyToReboot
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management : No Start On Batteries
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2020-03-11 19.33.29
remark :
runtime : 9
count : 2
previous date : 2020-03-10
previous time : 19.33.29
system - scheduled tasks - \Adobe Flash Player NPAPI Notifier
old: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_330_Plugin.exe -check plugin
new: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_344_Plugin.exe -check plugin
Top Runs Differences at: 2020-03-10 19.33.29
remark :
runtime : 10
count : 28
previous date : 2020-03-10
previous time : 12.58.15
system - services - survey
old: BITS Auto Share Process Background Intelligent Transfer Service
new: BITS Manual Share Process Background Intelligent Transfer Service
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - WdNisSvc
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\NisSrv.exe"
system - services - WinDefend
old: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe"
new: PathName : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MsMpEng.exe"
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management : No Start On Batteries
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MpCmdRun.exe -IdleTask -TaskName WdCleanup
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55
system - scheduled tasks - \Microsoft\Windows\Windows Defender\Windows Defender Verification
old: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
new: Task To Run : C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MpCmdRun.exe -IdleTask -TaskName WdVerification
Top Runs Differences at: 2020-03-10 12.58.15
remark :
runtime : 9
count : 170
previous date : 2020-02-21
previous time : 19.33.30
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description: GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MEGAsync
new: Command : MEGAsync.lnk
new: Description: MEGAsync
new: Location : Startup
new: Name : MEGAsync
new: SettingID :
new: User : CORP\trains
new:
system - services - survey
new: AarSvc_1472de Manual Unknown Agent Activation Runtime_1472de
new: BcastDVRUserService_1472de Manual Unknown Användartjänst för Spel-DVR och sändning_1472de
old: BITS Manual Share Process Background Intelligent Transfer Service
new: BITS Auto Share Process Background Intelligent Transfer Service
new: BluetoothUserService_1472de Manual Unknown Bluetooth User Support Service_1472de
new: CaptureService_1472de Manual Unknown CaptureService_1472de
new: cbdhsvc_1472de Manual Unknown Clipboard User Service_1472de
new: CDPUserSvc_1472de Auto Unknown Connected Devices Platform User Service_1472de
new: ConsentUxUserSvc_1472de Manual Unknown ConsentUX_1472de
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_1472de
new: DeviceAssociationBrokerSvc_147 Manual Unknown DeviceAssociationBroker_1472de
new: DevicePickerUserSvc_1472de Manual Unknown DevicePicker_1472de
new: DevicesFlowUserSvc_1472de Manual Unknown DevicesFlow_1472de
new: MessagingService_1472de Manual Unknown MessagingService_1472de
new: OneSyncSvc_1472de Auto Unknown Synkroniseringsvärd_1472de
new: PimIndexMaintenanceSvc_1472de Manual Unknown Contact Data_1472de
new: PrintWorkflowUserSvc_1472de Manual Unknown PrintWorkflow_1472de
new: UnistoreSvc_1472de Manual Unknown User Data Storage_1472de
new: UserDataSvc_1472de Manual Unknown User Data Access_1472de
new: WpnUserService_1472de Auto Unknown Windows Push Notifications User Service_1472de
system - services - AarSvc_1472de
new: DisplayName : Agent Activation Runtime_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_1472de
new: DisplayName : Användartjänst för Spel-DVR och sändning_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BITS
old: StartMode : Manual
new: StartMode : Auto
system - services - BluetoothUserService_1472de
new: DisplayName : Bluetooth User Support Service_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_1472de
new: DisplayName : CaptureService_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_1472de
new: DisplayName : Clipboard User Service_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_1472de
new: DisplayName : Connected Devices Platform User Service_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_1472de
new: DisplayName : ConsentUX_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_1472de
new: DisplayName : CredentialEnrollmentManagerUserSvc_1472de
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_1472de
new: DisplayName : DeviceAssociationBroker_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_1472de
new: DisplayName : DevicePicker_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_1472de
new: DisplayName : DevicesFlow_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.130\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.132\elevation_service.exe"
system - services - MessagingService_1472de
new: DisplayName : MessagingService_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_1472de
new: DisplayName : Synkroniseringsvärd_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_1472de
new: DisplayName : Contact Data_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_1472de
new: DisplayName : PrintWorkflow_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_1472de
new: DisplayName : User Data Storage_1472de
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_1472de
new: DisplayName : User Data Access_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_1472de
new: DisplayName : Windows Push Notifications User Service_1472de
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management :
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management : No Start On Batteries
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2020-02-20 19.33.30
remark :
runtime : 9
count : 12
previous date : 2020-02-19
previous time : 19.33.30
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management : No Start On Batteries
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-02-19 19.33.30
remark :
runtime : 9
count : 12
previous date : 2020-02-18
previous time : 19.33.30
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management : No Start On Batteries
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2020-02-18 19.33.30
remark :
runtime : 9
count : 12
previous date : 2020-02-18
previous time : 17.06.10
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management : No Start On Batteries
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-02-18 17.06.10
remark :
runtime : 15
count : 201
previous date : 2020-01-20
previous time : 19.33.30
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description: GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MEGAsync
old: Command : MEGAsync.lnk
old: Description: MEGAsync
old: Location : Startup
old: Name : MEGAsync
old: SettingID :
old: User : CORP\trains
old:
software - product - Backup and Sync from Google
old: Version : 3.47.8667.1399
new: Version : 3.48.8668.1933
system - SystemDriver - MpKslDrv
old: AcceptPause :
old: Description : MpKslDrv
old: DesktopInteract :
old: ErrorControl : Ignore
old: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6ACBEFF-3235-4C4A-9D4E-9567DBFBBD05}\MpKslDrv.sys
old: ServiceType : Kernel Driver
old: StartMode : System
system - SystemDriver - wanarp
old: StartMode : Manual
new: StartMode : Auto
system - hotfix - KB4528760
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4532938
old: Description : Update
old: FixComments :
old: ServicePackInEffect :
system - hotfix - KB4532693
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4534132
new: Description : Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4537759
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - hotfix - KB4538674
new: Description : Security Update
new: FixComments :
new: ServicePackInEffect :
system - services - survey
old: AarSvc_dce289 Manual Unknown Agent Activation Runtime_dce289
old: BcastDVRUserService_dce289 Manual Unknown Användartjänst för Spel-DVR och sändning_dce289
old: BluetoothUserService_dce289 Manual Unknown Bluetooth User Support Service_dce289
old: CaptureService_dce289 Manual Unknown CaptureService_dce289
old: cbdhsvc_dce289 Manual Unknown Clipboard User Service_dce289
old: CDPUserSvc_dce289 Auto Unknown Connected Devices Platform User Service_dce289
old: ConsentUxUserSvc_dce289 Manual Unknown ConsentUX_dce289
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_dce289
old: DeviceAssociationBrokerSvc_dce Manual Unknown DeviceAssociationBroker_dce289
old: DevicePickerUserSvc_dce289 Manual Unknown DevicePicker_dce289
old: DevicesFlowUserSvc_dce289 Manual Unknown DevicesFlow_dce289
old: MessagingService_dce289 Manual Unknown MessagingService_dce289
old: OneSyncSvc_dce289 Auto Unknown Synkroniseringsvärd_dce289
old: PimIndexMaintenanceSvc_dce289 Manual Unknown Contact Data_dce289
old: PrintWorkflowUserSvc_dce289 Manual Unknown PrintWorkflow_dce289
old: RasMan Manual Share Process Remote Access Connection Manager
new: RasMan Auto Share Process Remote Access Connection Manager
old: UnistoreSvc_dce289 Manual Unknown User Data Storage_dce289
old: UserDataSvc_dce289 Manual Unknown User Data Access_dce289
old: WpnUserService_dce289 Auto Unknown Windows Push Notifications User Service_dce289
system - services - AarSvc_dce289
old: DisplayName : Agent Activation Runtime_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_dce289
old: DisplayName : Användartjänst för Spel-DVR och sändning_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BluetoothUserService_dce289
old: DisplayName : Bluetooth User Support Service_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_dce289
old: DisplayName : CaptureService_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_dce289
old: DisplayName : Clipboard User Service_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_dce289
old: DisplayName : Connected Devices Platform User Service_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_dce289
old: DisplayName : ConsentUX_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_dce289
old: DisplayName : CredentialEnrollmentManagerUserSvc_dce289
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_dce289
old: DisplayName : DeviceAssociationBroker_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_dce289
old: DisplayName : DevicePicker_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_dce289
old: DisplayName : DevicesFlow_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - GoogleChromeElevationService
old: PathName : "C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.117\elevation_service.exe"
new: PathName : "C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.130\elevation_service.exe"
system - services - MessagingService_dce289
old: DisplayName : MessagingService_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_dce289
old: DisplayName : Synkroniseringsvärd_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_dce289
old: DisplayName : Contact Data_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_dce289
old: DisplayName : PrintWorkflow_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - RasMan
old: StartMode : Manual
new: StartMode : Auto
system - services - UnistoreSvc_dce289
old: DisplayName : User Data Storage_dce289
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_dce289
old: DisplayName : User Data Access_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_dce289
old: DisplayName : Windows Push Notifications User Service_dce289
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - scheduled tasks - \Adobe Flash Player NPAPI Notifier
old: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_314_Plugin.exe -check plugin
new: Task To Run : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_330_Plugin.exe -check plugin
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\MusNotification.exe LogonUpdateResults
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management :
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
new: Logon Mode : Interactive/Background
new: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
new: Start In : N/A
new: Comment : N/A
new: Idle Time : Disabled
new: Power Management : No Start On Batteries
new: Run As User : NT instans\SYSTEM
new: Delete Task If Not Rescheduled : Disabled
new: Stop Task If Runs X Hours and X Mins : 72:00:00
new: End Date : N/A
new: Days : N/A
new: Months : N/A
Top Runs Differences at: 2020-01-20 19.33.30
remark :
runtime : 10
count : 147
previous date : 2020-01-19
previous time : 19.33.30
boot - startup - GoogleDriveSync
new: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
new: Description: GoogleDriveSync
new: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
new: Name : GoogleDriveSync
new: SettingID :
new: User : CORP\trains
new:
boot - startup - MEGAsync
new: Command : MEGAsync.lnk
new: Description: MEGAsync
new: Location : Startup
new: Name : MEGAsync
new: SettingID :
new: User : CORP\trains
new:
system - SystemDriver - MpKslDrv
new: AcceptPause :
new: Description : MpKslDrv
new: DesktopInteract :
new: ErrorControl : Ignore
new: PathName : \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6ACBEFF-3235-4C4A-9D4E-9567DBFBBD05}\MpKslDrv.sys
new: ServiceType : Kernel Driver
new: StartMode : System
system - services - survey
new: AarSvc_dce289 Manual Unknown Agent Activation Runtime_dce289
new: BcastDVRUserService_dce289 Manual Unknown Användartjänst för Spel-DVR och sändning_dce289
new: BluetoothUserService_dce289 Manual Unknown Bluetooth User Support Service_dce289
new: CaptureService_dce289 Manual Unknown CaptureService_dce289
new: cbdhsvc_dce289 Manual Unknown Clipboard User Service_dce289
new: CDPUserSvc_dce289 Auto Unknown Connected Devices Platform User Service_dce289
new: ConsentUxUserSvc_dce289 Manual Unknown ConsentUX_dce289
new: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_dce289
new: DeviceAssociationBrokerSvc_dce Manual Unknown DeviceAssociationBroker_dce289
new: DevicePickerUserSvc_dce289 Manual Unknown DevicePicker_dce289
new: DevicesFlowUserSvc_dce289 Manual Unknown DevicesFlow_dce289
new: MessagingService_dce289 Manual Unknown MessagingService_dce289
new: OneSyncSvc_dce289 Auto Unknown Synkroniseringsvärd_dce289
new: PimIndexMaintenanceSvc_dce289 Manual Unknown Contact Data_dce289
new: PrintWorkflowUserSvc_dce289 Manual Unknown PrintWorkflow_dce289
new: UnistoreSvc_dce289 Manual Unknown User Data Storage_dce289
new: UserDataSvc_dce289 Manual Unknown User Data Access_dce289
new: WpnUserService_dce289 Auto Unknown Windows Push Notifications User Service_dce289
system - services - AarSvc_dce289
new: DisplayName : Agent Activation Runtime_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BcastDVRUserService_dce289
new: DisplayName : Användartjänst för Spel-DVR och sändning_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - BluetoothUserService_dce289
new: DisplayName : Bluetooth User Support Service_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CaptureService_dce289
new: DisplayName : CaptureService_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - cbdhsvc_dce289
new: DisplayName : Clipboard User Service_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CDPUserSvc_dce289
new: DisplayName : Connected Devices Platform User Service_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Normal
new: StartName :
system - services - ConsentUxUserSvc_dce289
new: DisplayName : ConsentUX_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - CredentialEnrollmentManagerUserSvc_dce289
new: DisplayName : CredentialEnrollmentManagerUserSvc_dce289
new: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DeviceAssociationBrokerSvc_dce289
new: DisplayName : DeviceAssociationBroker_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicePickerUserSvc_dce289
new: DisplayName : DevicePicker_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - DevicesFlowUserSvc_dce289
new: DisplayName : DevicesFlow_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - MessagingService_dce289
new: DisplayName : MessagingService_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - OneSyncSvc_dce289
new: DisplayName : Synkroniseringsvärd_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
system - services - PimIndexMaintenanceSvc_dce289
new: DisplayName : Contact Data_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - PrintWorkflowUserSvc_dce289
new: DisplayName : PrintWorkflow_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Normal
new: StartName :
system - services - UnistoreSvc_dce289
new: DisplayName : User Data Storage_dce289
new: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - UserDataSvc_dce289
new: DisplayName : User Data Access_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Manual
new: ErrorControl : Ignore
new: StartName :
system - services - WpnUserService_dce289
new: DisplayName : Windows Push Notifications User Service_dce289
new: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
new: ServiceType : Unknown
new: StartMode : Auto
new: ErrorControl : Ignore
new: StartName :
Top Runs Differences at: 2020-01-19 19.33.30
remark :
runtime : 8
count : 12
previous date : 2020-01-19
previous time : 18.38.20
system - scheduled tasks - \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start
old: Logon Mode : Interactive/Background
old: Task To Run : %systemroot%\system32\usoclient.exe StartUWork
old: Start In : N/A
old: Comment : N/A
old: Idle Time : Disabled
old: Power Management : No Start On Batteries
old: Run As User : NT instans\SYSTEM
old: Delete Task If Not Rescheduled : Disabled
old: Stop Task If Runs X Hours and X Mins : 72:00:00
old: End Date : N/A
old: Days : N/A
old: Months : N/A
Top Runs Differences at: 2020-01-19 18.38.20
remark :
runtime : 15
count : 317
previous date : 2020-01-19
previous time : 18.21.32
general
old: user:trains
new: user:Administrator
boot - startup - GoogleDriveSync
old: Command : "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
old: Description: GoogleDriveSync
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1107\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : GoogleDriveSync
old: SettingID :
old: User : CORP\trains
old:
boot - startup - MEGAsync
old: Command : MEGAsync.lnk
old: Description: MEGAsync
old: Location : Startup
old: Name : MEGAsync
old: SettingID :
old: User : CORP\trains
old:
boot - startup - OneDriveSetup
old: Command : C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
old: Description: OneDriveSetup
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1114\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : OneDriveSetup
old: SettingID :
old: User : CORP\amandabackup
old:
boot - startup - Sidebar
old: Command : %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
old: Description: Sidebar
old: Location : HKU\S-1-5-21-67378208-2373681959-2840377077-1114\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
old: Name : Sidebar
old: SettingID :
old: User : CORP\amandabackup
old:
hardware - printer - Brother DCP-9020CDW Printer på WIN-PL3BEWOIR9X (omdirigerade 5)
old: CapabilityDescriptions : Copies,Color,Duplex,Collate
old: Comment :
old: Default : 1
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS001
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - DYMO LabelManager 280 (omdirigerade 5)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS002
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - Fax (omdirigerade 5)
old: CapabilityDescriptions : Color,Duplex
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS003
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - \\win2k8srv-2\Brother DCP-9020CDW Printer
new: CapabilityDescriptions : Copies,Color,Duplex,Collate
new: Comment :
new: Default :
new: Description :
new: Direct :
new: DoCompleteFirst : 1
new: DriverName : Brother DCP-9020CDW Printer
new: EnableBIDI :
new: EnableDevQueryPrint :
new: Local :
new: Location : Datarum
new: Network : 1
new: PortName : 192.168.253.70
new: PrintJobDataType : RAW
new: PrintProcessor : WinPrint
new: Priority : 1
new: RawOnly :
new: ServerName : \\win2k8srv-2
new: Shared : 1
new: ShareName : Brother DCP-9020CDW Printer
new: SpoolEnabled : 1
new: WorkOffline :
hardware - printer - HP ePrint
old: Default :
new: Default : 1
hardware - printer - Microsoft Print to PDF (omdirigerade 5)
old: CapabilityDescriptions : Copies,Color
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS004
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - Microsoft XPS Document Writer (omdirigerade 5)
old: CapabilityDescriptions : Copies,Color,Collate
old: Comment :
old: Default :
old: Description :
old: Direct :
old: DoCompleteFirst : 1
old: DriverName : Remote Desktop Easy Print
old: EnableBIDI :
old: EnableDevQueryPrint :
old: Local : 1
old: Location :
old: Network :
old: PortName : TS005
old: PrintJobDataType : RAW
old: PrintProcessor : winprint
old: Priority : 1
old: RawOnly :
old: ServerName :
old: Shared :
old: ShareName :
old: SpoolEnabled : 1
old: WorkOffline :
hardware - printer - OneNote
old: PortName : Microsoft.Office.OneNote_16001.12325.20040.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-1107
new: PortName : Microsoft.Office.OneNote_16001.12026.20112.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-67378208-2373681959-2840377077-500
network - connections - Share g
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Gemensam (g:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Gemensam
new: RemotePath : \\WIN-PL3BEWOIR9X\Gemensam
new: ResourceType : Disk
network - connections - Share h
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Userhome$\administrator (h:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: RemotePath : \\WIN-PL3BEWOIR9X\Userhome$\administrator
new: ResourceType : Disk
network - connections - Share i
new: Comment :
new: DisplayType : Share
new: Name : \\WIN-PL3BEWOIR9X\Applications (i:)
new: ProviderName : Microsoft Windows Network
new: RemoteName : \\WIN-PL3BEWOIR9X\Applications
new: RemotePath : \\WIN-PL3BEWOIR9X\Applications
new: ResourceType : Disk
system - services - survey
old: AarSvc_17223bc Manual Unknown Agent Activation Runtime_17223bc
old: BcastDVRUserService_17223bc Manual Unknown Användartjänst för Spel-DVR och sändning_17223bc
old: BITS Auto Share Process Background Intelligent Transfer Service
old: BluetoothUserService_17223bc Manual Unknown Bluetooth User Support Service_17223bc
new: BITS Manual Share Process Background Intelligent Transfer Service
old: CaptureService_17223bc Manual Unknown CaptureService_17223bc
old: cbdhsvc_17223bc Manual Unknown Clipboard User Service_17223bc
old: CDPUserSvc_17223bc Auto Unknown Connected Devices Platform User Service_17223bc
old: ConsentUxUserSvc_17223bc Manual Unknown ConsentUX_17223bc
old: CredentialEnrollmentManagerUse Manual Unknown CredentialEnrollmentManagerUserSvc_17223bc
old: DeviceAssociationBrokerSvc_172 Manual Unknown DeviceAssociationBroker_17223bc
old: DevicePickerUserSvc_17223bc Manual Unknown DevicePicker_17223bc
old: DevicesFlowUserSvc_17223bc Manual Unknown DevicesFlow_17223bc
old: MessagingService_17223bc Manual Unknown MessagingService_17223bc
old: OneSyncSvc_17223bc Auto Unknown Synkroniseringsvärd_17223bc
old: PimIndexMaintenanceSvc_17223bc Manual Unknown Contact Data_17223bc
old: PrintWorkflowUserSvc_17223bc Manual Unknown PrintWorkflow_17223bc
old: UnistoreSvc_17223bc Manual Unknown User Data Storage_17223bc
old: UserDataSvc_17223bc Manual Unknown User Data Access_17223bc
old: WpnUserService_17223bc Auto Unknown Windows Push Notifications User Service_17223bc
system - services - AarSvc_17223bc
old: DisplayName : Agent Activation Runtime_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BcastDVRUserService_17223bc
old: DisplayName : Användartjänst för Spel-DVR och sändning_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - BITS
old: StartMode : Auto
new: StartMode : Manual
system - services - BluetoothUserService_17223bc
old: DisplayName : Bluetooth User Support Service_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CaptureService_17223bc
old: DisplayName : CaptureService_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k LocalService -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - cbdhsvc_17223bc
old: DisplayName : Clipboard User Service_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CDPUserSvc_17223bc
old: DisplayName : Connected Devices Platform User Service_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Normal
old: StartName :
system - services - ConsentUxUserSvc_17223bc
old: DisplayName : ConsentUX_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - CredentialEnrollmentManagerUserSvc_17223bc
old: DisplayName : CredentialEnrollmentManagerUserSvc_17223bc
old: PathName : C:\WINDOWS\system32\CredentialEnrollmentManager.exe
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DeviceAssociationBrokerSvc_17223bc
old: DisplayName : DeviceAssociationBroker_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicePickerUserSvc_17223bc
old: DisplayName : DevicePicker_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - DevicesFlowUserSvc_17223bc
old: DisplayName : DevicesFlow_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k DevicesFlow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - MessagingService_17223bc
old: DisplayName : MessagingService_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - OneSyncSvc_17223bc
old: DisplayName : Synkroniseringsvärd_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :
system - services - PimIndexMaintenanceSvc_17223bc
old: DisplayName : Contact Data_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - PrintWorkflowUserSvc_17223bc
old: DisplayName : PrintWorkflow_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Normal
old: StartName :
system - services - UnistoreSvc_17223bc
old: DisplayName : User Data Storage_17223bc
old: PathName : C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - UserDataSvc_17223bc
old: DisplayName : User Data Access_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Manual
old: ErrorControl : Ignore
old: StartName :
system - services - WpnUserService_17223bc
old: DisplayName : Windows Push Notifications User Service_17223bc
old: PathName : C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
old: ServiceType : Unknown
old: StartMode : Auto
old: ErrorControl : Ignore
old: StartName :