SysInternals SigCheck
Shows file version number, timestamp information, and digital signature details, including certificate chains.
- Category
- System
- License
- Windows
- Platforms
- Windows
- Released
- 2006
- Path
-
c:\sysinternals\sigcheck64.exe - Benefits
- Includes option to check a file's status on VirusTotal, a site that performs automated file scanning against over 40 antivirus engines, and an option to upload a file for scanning.
Version
Latest known: 2.90 (2022-07-19)
Latest known: 2.90 (2022-07-19)
Examples
1. Returns the version of the executeable� often faster than the executable can itself, but some don't expose it correctly and return "n/a" or "0.0.0.0".
sigcheck64.exe -nobanner -n "d:\curl.exe"
SysInternals SigCheck - Help
# SysInternals SigCheck - Help Source: https://learn.microsoft.com/en-us/sysinternals/downloads/sigcheck ``` Sigcheck v2.90 - File version and signature viewer Copyright (C) 2004-2022 Mark Russinovich Sysinternals - www.sysinternals.com C:\CFusionExtra\sysinternals\acceptEula.bat: Verified: Unsigned File date: 7:09 PM 7/19/2025 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 51B6D924F7A3B18F56635503FAC153ED SHA1: 66A0945B22D8E0A88640E4A5E97423482F409458 PESHA1: 66A0945B22D8E0A88640E4A5E97423482F409458 PE256: 87EFD7003C1EC649500FF9188E0588C9AC456EB639425413772A3991A08C20DA SHA256: 87EFD7003C1EC649500FF9188E0588C9AC456EB639425413772A3991A08C20DA IMP: n/a C:\CFusionExtra\sysinternals\accesschk.exe: Verified: Signed Signing date: 9:31 AM 5/10/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Reports effective permissions for securable objects Product: Sysinternals AccessChk Prod version: 6.15 File version: 6.15 MachineType: 32-bit MD5: ACE8996953CD6892793F2832D6EECEB0 SHA1: 6ED68CC4ACF8062B33DA67D0246D04D5C454CBAA PESHA1: A4760FBE14FCA040D487996C9AF6881CCE19F2B2 PE256: D37C1162ADC0A71961244D24B71426D20E17520E62F295BE2CF4E9FFF1E6BE9A SHA256: 69BD46E5DBA2767A63408731B0C7842B9AC37AEB67586682EFCE4CC51057D793 IMP: 446C77F0ABEC6881B2F6970D6E45E222 C:\CFusionExtra\sysinternals\accesschk64.exe: Verified: Signed Signing date: 9:27 AM 5/10/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Reports effective permissions for securable objects Product: Sysinternals AccessChk Prod version: 6.15 File version: 6.15 MachineType: 64-bit MD5: 9B59EE28638232E7EC1E5B3224090A0D SHA1: 6F2CB4F47DD6DEB00B1398E7510887B48E19BDC4 PESHA1: 97D56C89D26B74F1C782904FAD1B0C168156B6B2 PE256: 7055E259204D99A66B087B763045F845F483F707D2685F0F0BECE38F111030AC SHA256: 843B6B1D275946F2C4569169C10C50EEC0968C4B2F0BED68C50E79F828FAB9F3 IMP: 50C713ECFFE5898D7426BCDE54E77034 C:\CFusionExtra\sysinternals\AccessEnum.exe: Verified: Signed Signing date: 8:50 AM 8/21/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: AccessEnum Product: Sysinternals AccessEnum Prod version: 1.35 File version: 1.35 MachineType: 32-bit MD5: B2DE3814A16285ACBDE651A535EBB2F4 SHA1: EA0D3411D05820A5CE8FD9A4A934E31EE2D36091 PESHA1: 760F8A7467C0C7F8107822792BCD82985AC10D7E PE256: EDA0B9CCED86CD3E434F0427CAA15C9B2892F78F939144C2327AD108D9F4F8A5 SHA256: B8A8524DE389E244B57BAA72E8878869436E8ADDFFAF11621EC7A572DBF5C602 IMP: 0AAFD4B71DAACFA4594507AEA753B84B C:\CFusionExtra\sysinternals\AdExplorer.chm: Verified: Unsigned File date: 5:36 PM 11/28/2022 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 9B43056228E3623772B0AD0D3D0474C4 SHA1: ED8B4FD2CF8D78B1C10156CC477E4DBDC5BE3435 PESHA1: ED8B4FD2CF8D78B1C10156CC477E4DBDC5BE3435 PE256: A89A59BE46F8511E385427C942D352429072B5A83D501CA08463942ABCF8E5A3 SHA256: A89A59BE46F8511E385427C942D352429072B5A83D501CA08463942ABCF8E5A3 IMP: n/a C:\CFusionExtra\sysinternals\ADExplorer.exe: Verified: Signed Signing date: 9:21 AM 11/28/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Active Directory Editor Product: Sysinternals ADExplorer Prod version: 1.52 File version: 1.52 MachineType: 32-bit MD5: A9E390237A96E0C6655B1A06F8D72C6F SHA1: 6B242AD80260F3CB3E67A1D2A1EE164DE465C76E PESHA1: AEB678D79CE4213966802072999D2C8ED4266571 PE256: 31F5B70359C90A288965496766729ED51CB4B45712421204A92771F7C7F4065A SHA256: C5C5363D675D1BD6797081B8B7AFD7FB209960A45FE18202D64D36B72A013866 IMP: 98DEB91DD81EF3FA96BEA51984C7B4FE C:\CFusionExtra\sysinternals\ADExplorer64.exe: Verified: Signed Signing date: 9:19 AM 11/28/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Active Directory Editor Product: Sysinternals ADExplorer Prod version: 1.52 File version: 1.52 MachineType: 64-bit MD5: 2661F8272ADA236CF3AEB9CE9323626C SHA1: 98683C358724EDA64BD5C1DF5DF6D2AF8BCEDD15 PESHA1: 446533E8219FE1DCF8CAB407BF9EA09F1E92E4B1 PE256: 49F11624CF20C1471DD2F33620371DA6817506CC36B93756B9E34002391A4491 SHA256: E451287843B3927C6046EAABD3E22B929BC1F445EEC23A73B1398B115D02E4FB IMP: D3598D8C3BCEA975AEA92CD5BBE9EDC5 C:\CFusionExtra\sysinternals\ADInsight.chm: Verified: Unsigned File date: 2:43 AM 9/14/2020 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 46419653F638BAC55A48CCBC05DBAD8F SHA1: FD6F716CB7A8A98ABCA7D5DEFF4FF0E6A4B7B78F PESHA1: FD6F716CB7A8A98ABCA7D5DEFF4FF0E6A4B7B78F PE256: 7F9C32BD71E48C6CD1AECBAEAB7031A4604FC52651272E1446B6773FD6D5B5DA SHA256: 7F9C32BD71E48C6CD1AECBAEAB7031A4604FC52651272E1446B6773FD6D5B5DA IMP: n/a C:\CFusionExtra\sysinternals\ADInsight.exe: Verified: Signed Signing date: 2:35 AM 9/14/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Active directory LDAP monitor Product: ADInsight Prod version: 1.20 File version: 1.20 MachineType: 32-bit MD5: B2E3416A5ABF9BD84FAB03989A629E7E SHA1: 0642DD6A0F3666818451F1FC8A3BA5666FCC456C PESHA1: 7067D98AFFFA949228893D7B8B954FFB8C42F997 PE256: 8DFF94227C3A0A7DAB47082BFC7065DE57566456C999AB72CD69085A82C1A8B5 SHA256: 032DC03FA3E7B3DF5714AEA96DDACC0DA1E4D41EF4D24DE2F2103AD03932F194 IMP: EF7FAEB241D64D8161D20AA03B76E1CB C:\CFusionExtra\sysinternals\ADInsight64.exe: Verified: Signed Signing date: 2:32 AM 9/14/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Active directory LDAP monitor Product: ADInsight Prod version: 1.20 File version: 1.20 MachineType: 64-bit MD5: 2F646FCC13C2C392C4AF2F2D83A08A25 SHA1: 9AC5FAAE7DE79CE79CC4D8DACC078B37C7EC8874 PESHA1: 994A86613EC9AADA4856510AE9852E4387EACD3F PE256: 76FCAB4BEEC34F0230AA32D469FDC36173F6AF9DC1C2F49FD3AC35A01466413A SHA256: 38FF6BCB91BD6CBCEEC26BC60007C60031D9F35181FBAE851BD239F361CF38DB IMP: 96BE6F87D95D39CDB2D6514D1AE9484B C:\CFusionExtra\sysinternals\adrestore.exe: Verified: Signed Signing date: 4:38 PM 11/24/2020 Publisher: Microsoft Corporation Company: n/a Description: Systenternals ADRestore Product: adrestore Prod version: 1.2 File version: 1.2 MachineType: 32-bit MD5: CC3BC9B1A00D3A08CFFCFF39444DA024 SHA1: 24167FB18A9422B58DDC36E0AA1E1B6260D9C943 PESHA1: BCA5CD1FA495D249E77D9B05E29EF52C197C3365 PE256: D7692948841527645B30D362AE6DF432F1B357C92DDFC8C6DBDB215EFEFC6E83 SHA256: 903CAF518C94A78B21B9A8D53920BC3A2A21B223EA5929EBC790EFF2E23C843E IMP: AA0AB20E5E7C46481F2A36E791EC5212 C:\CFusionExtra\sysinternals\adrestore64.exe: Verified: Signed Signing date: 4:35 PM 11/24/2020 Publisher: Microsoft Corporation Company: n/a Description: Systenternals ADRestore Product: adrestore Prod version: 1.2 File version: 1.2 MachineType: 64-bit MD5: CD6E3B21991207942C0003F0C5462729 SHA1: D450F5F5BCFDF390A523943C0F142ED21357D4AD PESHA1: 95D9967762300545A70E15A05286EE70966EA081 PE256: 1BC5241B78FE4AA2598CC7B00C816CBBC5F0889578D4BDEC6534E62C6C97EFDE SHA256: EE55C681013D173EDD53F5ADD0F964F8242ED0783F42BD1B5C4168B27594745F IMP: 57BB15381DF27A027512E595C6CAD65A C:\CFusionExtra\sysinternals\Autologon.exe: Verified: Signed Signing date: 4:24 AM 4/6/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Autologon configuration Product: Sysinternals Autologon Prod version: 3.10 File version: 3.10 MachineType: 32-bit MD5: C6377C648AC8775FCC8302C1DB14A8AA SHA1: 2B5FAA68D1C9FF2572210A6420B39E9B2D4394C9 PESHA1: 6F0F9857EC965F4B12B30531D0254EB78470766D PE256: D34FA576F258ABE3C57CCFEF04B1385AF5FC7CA70CA73028C636510186F7F825 SHA256: DF6589654ABFACB1490A9F19E9C0E32623E73F2A1B852E8A8379B7873D03A33A IMP: 2BBE1701F3DFA2AF6BE3B4EDAED0F081 C:\CFusionExtra\sysinternals\Autologon64.exe: Verified: Signed Signing date: 4:23 AM 4/6/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Autologon configuration Product: Sysinternals Autologon Prod version: 3.10 File version: 3.10 MachineType: 64-bit MD5: FFCA2FBCC7E4637F2ACC0A8A3B0DBAAA SHA1: 3697F037E527A31C013A2FF3EE2F6C373E67A2A7 PESHA1: 59DAF36078E9F5110ED7D42147724F82C7506393 PE256: 19B7352096A9F9E4831BB3F02031B7ECA461B932FED29AC5E7C0CB40177EB07E SHA256: 5D96BBC4E5B726D87C7CF547F5FE98F8F05434EC2130BD60CBF5671FD3A7381B IMP: ECFE7428CD2A05B3F34F531B0AD9CCB7 C:\CFusionExtra\sysinternals\autoruns.chm: Verified: Unsigned File date: 7:49 PM 2/6/2024 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 2C099793584365B8897FCA7A4FA397E8 SHA1: 50EAF2F529B1E923F7D0238EA8D3EB2187AD19CF PESHA1: 50EAF2F529B1E923F7D0238EA8D3EB2187AD19CF PE256: ECB58342290940A5EB6B72BE6FAA1D0AFEEC9DF5898DF3E026D75B7B08BD8F9A SHA256: ECB58342290940A5EB6B72BE6FAA1D0AFEEC9DF5898DF3E026D75B7B08BD8F9A IMP: n/a C:\CFusionExtra\sysinternals\Autoruns.exe: Verified: Signed Signing date: 3:45 AM 2/1/2024 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Autostart program viewer Product: Sysinternals autoruns Prod version: 14.11 File version: 14.11 MachineType: 32-bit MD5: 61506280FC7E663DB6715AC2206AF6D4 SHA1: 3B42F1E497C909D48343768B58E9E5222D540330 PESHA1: 99CE06BF93F12167C2BDE76ADC32354819F65AA4 PE256: 99FE6171C4FB5463D479625AB94B2C0046A224CFB36CC939E9D3BAC2F41A75DE SHA256: F41051697B220757F3612ECD00749B952CE7BCAADD9DC782D79EF0338E45C3B6 IMP: FC18756EF5E758178DA800FD88864516 C:\CFusionExtra\sysinternals\Autoruns64.dll: Verified: Signed Signing date: 1:10 PM 6/28/2019 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Autostart program viewer Product: Sysinternals autoruns Prod version: 13.96 File version: 13.96 MachineType: 64-bit MD5: 2F3746EDFFBD58491D7E795FF20B8ACC SHA1: D6E8B2DE96184B0D13793895EA39070BB62AA630 PESHA1: 488CF7AF2CB84D00A34FD5F2DE379718743BDDF1 PE256: 127E50BF770A815D3B92FBE3F8D1C5E261CDCFB15EA4205AFAC6AFCB31B78BF4 SHA256: DA039D4B3A791FA166FD02D4DF900FD5D9C3DDDE2FFAEFB9D81B0EF9E79645B0 IMP: 03F46FD43D2A2015CCCA9AE4C21EB85F C:\CFusionExtra\sysinternals\Autoruns64.exe: Verified: Signed Signing date: 3:37 AM 2/1/2024 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Autostart program viewer Product: Sysinternals autoruns Prod version: 14.11 File version: 14.11 MachineType: 64-bit MD5: 07F151495C65098FB635D3C95AAFC285 SHA1: 20A8A5BDF45F896FBCA70BCE4B99AFA2C7CB6F35 PESHA1: 3F0E68E0B3B8A3C6530AB14DEEAE5CA85AFD678C PE256: 646C1D8211956D219A2CC96B9B94BF4C95A39F4992B0449201F678506AD2789E SHA256: 32E268B87130B7B24969718F81534BAFEC92985C2ECE6765A88C20C28C55BCA1 IMP: 74734FD45AD3C36817B427E886A8E5D6 C:\CFusionExtra\sysinternals\autorunsc.exe: Verified: Signed Signing date: 3:40 AM 2/1/2024 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Autostart program viewer Product: Sysinternals autoruns Prod version: 14.11 File version: 14.11 MachineType: 32-bit MD5: B76978D483EE6AFCF5B919A51A7D111E SHA1: 6B0292325505FC3BA638D42330A75CBDF237561B PESHA1: 535FD601C71F665E240C79172D15A1275FF8C0D9 PE256: FD13F000FE738D0C1FDDA60DD960C2A899419EF4CB80E5943A1CBC365AE30C4E SHA256: 666AA8972B4B0A1E5DF53C076AF44479F2F94B16F9FB56E15E6D104ED86CA9F4 IMP: 0AF94C7914125BDC592DC05B62958DCC C:\CFusionExtra\sysinternals\autorunsc64.exe: Verified: Signed Signing date: 3:34 AM 2/1/2024 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Autostart program viewer Product: Sysinternals autoruns Prod version: 14.11 File version: 14.11 MachineType: 64-bit MD5: 6BE477F8A7168FE079BFB549114CD890 SHA1: 349C935F210F29E83383B3866AA737EBA486CCB9 PESHA1: 88A367354D4713ACA91269FC296B6F85FD8F8E35 PE256: 015FC1A19D79CDCD38BBDD079AD3AC1A5B6A56244230661BC38627FD9D38170C SHA256: 60638C8B1164293E009BD0326DFC7DCE7D0B1D64EBDF044BEB75F3152387AD04 IMP: D1771FDAA0FF878F929738A634AE0AF2 C:\CFusionExtra\sysinternals\Bginfo.exe: Verified: Signed Signing date: 5:23 AM 8/30/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: BGInfo - Wallpaper text configurator Product: BGInfo Prod version: 4.32 File version: 4.32 MachineType: 32-bit MD5: 3AEF228FB7EE187160482084D36C9726 SHA1: 8B76990C5061890C94F81F504C5782912A58D8A6 PESHA1: 77E7996A0B44F0B609F15DFE264522E9261DFE05 PE256: 926D2822BFF0CD254D9066C0BF68DDCA953F45D4DD0ADAC2FC1044ED6B2F508A SHA256: C885DF88693496D5C28AD16A1ECDE259E191F54AD76428857742AF843B846C53 IMP: 80200B489DD3EAA3B18F8572AD7D3F92 C:\CFusionExtra\sysinternals\Bginfo64.exe: Verified: Signed Signing date: 5:21 AM 8/30/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: BGInfo - Wallpaper text configurator Product: BGInfo Prod version: 4.32 File version: 4.32 MachineType: 64-bit MD5: 15A712903D393839EDDE2BD426C16172 SHA1: 4CA63E42C1CDCE905DDBE55AC8E0F06D64256EAE PESHA1: 09E85B094E215CF32AAE2D81854B71478120FAC6 PE256: B7FDBD0859A281879EBA5F21A4C6E17C0D0E8F7E3DC76C351FAA263362F2D09E SHA256: 46615EE15D060FBD0C1874A3A0179DCB5668CDC6D59B489A15D564E358E2C698 IMP: 9F999BEA432657B6693946CA0381AD25 C:\CFusionExtra\sysinternals\Cacheset.exe: Verified: Signed Signing date: 9:21 AM 12/15/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Manipulate the working-set parameters of the system file cache Product: Sysinternals Cacheset Prod version: 1.02 File version: 1.02 MachineType: 32-bit MD5: 95D237B678866BE96AD6455CB0B03FC8 SHA1: 563341D84DBC3F64FA9B0B3D3391C9E18128B075 PESHA1: 40138C31486962DB7C1401206964F47F4F0BD2A5 PE256: 7CF2C9874C9C79D65DA10FE5F15437BD05C296822B0EEBE78EC6AA0759007032 SHA256: 43203AE51A144E4FF92D4110C93AF12B7C9525A1F5435EFEDFD3499DC12D16C2 IMP: 5DB68748BCAD0CDD0A8825837565A40B C:\CFusionExtra\sysinternals\Cacheset64.exe: Verified: Signed Signing date: 9:19 AM 12/15/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Manipulate the working-set parameters of the system file cache Product: Sysinternals Cacheset Prod version: 1.02 File version: 1.02 MachineType: 64-bit MD5: 258D791961ED4B264B71A9E8C63EBB73 SHA1: 9E69A1BE1C2835853D6778A8152F07171EAB2ED3 PESHA1: F509B5962613D4AD9DFA4694B3DDE0734B95CAAB PE256: 88EC9C949FBFC06676EA549940EB32E6499C38AED8264473693440F16269C3F3 SHA256: 60420A39645573437FB0E085361EF2D23C08E75B85D7836213D959A4904E9BD8 IMP: 033522FB281D3FB7B2E6833666178205 C:\CFusionExtra\sysinternals\Clockres.exe: Verified: Signed Signing date: 8:17 PM 6/22/2020 Publisher: Microsoft Corporation Company: Sysinternals Description: Clock resolution display utility Product: Sysinternals Clockres Prod version: 2.1 File version: 2.1 MachineType: 32-bit MD5: 0097977DCD28839568F10FEABAD1B623 SHA1: D4B8BD3A2F2D8D495FE18E121C642B5CE3F4EE76 PESHA1: FB9744B0D4148E59A3E35A540AAC5C09678B74CD PE256: F03A3A97208B373EEB997D1C154AD7FB642815324171CA478B8404497D28D5B9 SHA256: 4DB4539C62F448C5CF563CDD02CD6D349E9A5F66BA1D757A66C28C51EFFEB0A5 IMP: 62A04FCA0D3481E7403719E0018B6594 C:\CFusionExtra\sysinternals\Clockres64.exe: Verified: Signed Signing date: 8:15 PM 6/22/2020 Publisher: Microsoft Corporation Company: Sysinternals Description: Clock resolution display utility Product: Sysinternals Clockres Prod version: 2.1 File version: 2.1 MachineType: 64-bit MD5: 12F3605F984AACBDD106BCD57A751EBF SHA1: 3EBA53BEA7BA8268286A6EBDCE11C466E1EEC183 PESHA1: F46E510152863921F8705D0956C1F99E87EE169B PE256: 5C1A6288324CE1D0D9A196FCA30E369780A9EC9CDD6A54CD22F6C0ED8055B13F SHA256: B594B8B9E5D6A706A33AE2E4C7B37C5AAFEE9BEF0B3E156205F65ECDAAB94FCD IMP: 7D9D3C0AA1083962BB7CDC032BD7D101 C:\CFusionExtra\sysinternals\Contig.exe: Verified: Signed Signing date: 4:17 PM 3/7/2023 Publisher: Microsoft Corporation Company: Sysinternals Description: Contig Product: Sysinternals Contig Prod version: 1.83 File version: 1.83 MachineType: 32-bit MD5: 3E4EF0055994BFEF813C9E2944A7AA4B SHA1: DB1F789CD53DF76A73DB2D0361914D6FC02CA618 PESHA1: 39DB3BC93C058251F5367C4E460ADFADFC485F67 PE256: 51CBFCF1647A2C0E7E377AC8E289FC2997BD4F570DC0FABC10382A414BBDDFB1 SHA256: 261A8E5E9C08E835C42AEC964CA27AE63357A4AE435CC91A6C024EA6A8A55D74 IMP: 0BB302807D87BCB4F1BEA5673F0135E9 C:\CFusionExtra\sysinternals\Contig64.exe: Verified: Signed Signing date: 4:14 PM 3/7/2023 Publisher: Microsoft Corporation Company: Sysinternals Description: Contig Product: Sysinternals Contig Prod version: 1.83 File version: 1.83 MachineType: 64-bit MD5: 6B2DAF0875E7E46AE995E34B45615C5C SHA1: 5E5C73392E8A6C5538CC6B7A4CF971957EA18430 PESHA1: 6754AEF90B5C6E556709A3E6147007B5295E7BD1 PE256: A16CEB389EF0F87BF254FDCC753C81A8292A1561B49AE60B74CCFC0DC81B8ADB SHA256: 063473719CDFFA94EF10C380DEE3EACF148CC6643A3A8C2C7CC214A180ED2826 IMP: 47EBCD972D03AB2D5BC320C89135FB06 C:\CFusionExtra\sysinternals\Coreinfo.exe: Verified: Signed Signing date: 10:51 AM 9/29/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Dump information on system CPU and memory topology Product: coreinfo Prod version: 3.6 File version: 3.6 MachineType: 32-bit MD5: 050D1B6D32B2AC4FF2274667617CC0A1 SHA1: 0BB34496D5031177CBDFB4EA109308ABC56B0B2F PESHA1: 9B78C2512A0C080A0E72A35547560FCD17C6DFBE PE256: C4E83F4A2938EAFD46208B2D57ED3E1AA602AC5AE09B0693CA52A53E2C794799 SHA256: 46385BB9B2E321067FA1969662EF9F326498BF4893047504A5D3C71ABC37B3C2 IMP: BB5AFC53DC1F67FD491729F553F81AA1 C:\CFusionExtra\sysinternals\Coreinfo64.exe: Verified: Signed Signing date: 10:46 AM 9/29/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Dump information on system CPU and memory topology Product: coreinfo Prod version: 3.6 File version: 3.6 MachineType: 64-bit MD5: 3AE27D0E66846C2482275D845A469D9B SHA1: 7A512E6B989F70C2CBDB0C7128BE181F9E5F1DA3 PESHA1: DC5102FCF063FC170C18F01FAC92CA7B0CE59A16 PE256: 4F8430903327C1A48EC795542D81CDE4370F139AE3D4CD89F2735BB6267C2C3A SHA256: 9C233B79795EF34595BC149F9C5EBCF0616C43AF1FA6E3C7FB94848A49F7C05E IMP: 2E0F61362196FAB2DBA1C149E83CEC2D C:\CFusionExtra\sysinternals\CPUSTRES.EXE: Verified: Signed Signing date: 4:54 AM 3/25/2019 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: CPU Stress Product: Sysinternals CPUSTRES Prod version: 2.0 File version: 1.0.0.0 MachineType: 32-bit MD5: 8BB9004490C51AAFA9C8259BD9F7E7FF SHA1: DC36FCF5EF6D225DA49082A981D20866BA183BB5 PESHA1: A696C6AD986F3885502CB17EDA3F728864F300EA PE256: 100DD6F785A6BDC95F34DF6112135D13C5245ACE4ACB42C12174A3303B49200E SHA256: 5497724E096B66788E284BC2C90F480A1DC8B79EAB6B616F7F5615F62A651519 IMP: A9B620F86458E0BDA53D087EE7D49A79 C:\CFusionExtra\sysinternals\CPUSTRES64.EXE: Verified: Signed Signing date: 4:52 AM 3/25/2019 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: CPU Stress Product: Sysinternals CPUSTRES Prod version: 2.0 File version: 1.0.0.0 MachineType: 64-bit MD5: D51054D4E40934110FAF1713FBFE5DE5 SHA1: E64E47C8EEE8CD55FAE8234103A610D0DD782563 PESHA1: 816CC173FF75056DC0AE024BBA892F0ECAF14582 PE256: E98C29AE5528E5ABF4F088CFF2F2D0BA4D21742474F611280D22A0CDD341CFB0 SHA256: 85EAB30BE67A554CCDA5E708D6820B84B74AFC9D4DA517BD471D95CAB23380D6 IMP: 0DD8D40CDE90CC2CCF6AF505BBDA4049 C:\CFusionExtra\sysinternals\ctrl2cap.amd.sys: Verified: A certificate was explicitly revoked by its issuer. Link date: 5:04 PM 9/27/2006 Publisher: Sysinternals Company: Systems Internals Description: Windows NT Caps-lock Ctrl Swapper Product: Ctrl2cap Prod version: 2.00 File version: 2.00 built by: WinDDK MachineType: 64-bit MD5: 7D2E1E3EFC4A39D9A6FB916951C64D4F SHA1: 650ECD30E34570BC455030D8DB0D854A176108B3 PESHA1: 29639D1386B76842EFCD8A89C64D8A966E3942F4 PE256: CEBA431DCCAF7668B63B25CD2939F85CF9C4B4C60810F4ADADD7CC55ADD758E2 SHA256: 3040A653A711F6C5758D1F4212F92E74AAE3E6FEDF2BB97DA01185F3E75F2D76 IMP: 053A0AEC95933CBF178D865941AFC5BF C:\CFusionExtra\sysinternals\ctrl2cap.exe: Verified: Signed Signing date: 2:05 PM 11/1/2006 Publisher: Microsoft Corporation Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: 32-bit MD5: C100EA4F0C45C916C795860FD1EB74CC SHA1: 545F885F31333D1207F7CCA593B6FF3C0DFFD89A PESHA1: E7C3FDD16B3727738DF5DE365956811087843593 PE256: 0EA9C6C046C7AB9342D5F6E51F33F491897D8EBCB10D66407DCB17B7B6A4D2B5 SHA256: E7F3E98C6E61E7E6FE363855B0ED67D6952683077DCDA3A08FD181069B96126D IMP: 30DEEC6579F48261855708CBA9A37FD6 C:\CFusionExtra\sysinternals\ctrl2cap.nt4.sys: Verified: Unsigned Link date: 3:20 PM 11/21/1999 Publisher: n/a Company: Systems Internals Description: Windows NT Caps-lock Ctrl Swapper Product: Ctrl2cap Prod version: 2.00 File version: 2.00 MachineType: 32-bit MD5: 4F4A4117FAE1C8A5DEE6C89BC39902C2 SHA1: 83626CD680A1BE177F796C3C6E6BEDE936222FCA PESHA1: 0423D624CE9F3B5930130921BD90ABEC2A11B73F PE256: D413A0AF6C8218AE57A403928D290BB5A4C46EA41B316ECB2E87F69093974138 SHA256: AA12BEFECA6E3CC0A97ADD308AAF55C4B4A8B0A9504899412BD4B0B3FEEE56CD IMP: F8E3459F539BE62994D9E0B7EE4B6DE7 C:\CFusionExtra\sysinternals\ctrl2cap.nt5.sys: Verified: Unsigned Link date: 4:46 PM 11/21/1999 Publisher: n/a Company: Systems Internals Description: Windows NT Caps-lock Ctrl Swapper Product: Ctrl2cap Prod version: 2.00 File version: 2.00 MachineType: 32-bit MD5: B6802359522385FF0F561C8CF2DE46F4 SHA1: 34E1A6D2421F2CAB29798401CE303DBF5C83B956 PESHA1: 6C2FF234303520EBE6B98DCACD182E53D6A3CAEA PE256: 56F9846B9E267D958E02B1C90F9CD6627EF73A6E72C9B5A7B072D76791EE5193 SHA256: 8F1688446EBBB0B9673D060CFD94EE6BE45ABCA1ADAF66DBBC5014AC4F01EDA0 IMP: 4E00A523E4D7D53A2DEE34C0906284EE C:\CFusionExtra\sysinternals\dbgview.chm: Verified: Unsigned File date: 11:19 AM 4/29/2020 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: C7517AF60D377F3FEAAE84DBC279E0E9 SHA1: 72D71ED8B1F1851BDFB9786625CACBAF7AC8FC91 PESHA1: 72D71ED8B1F1851BDFB9786625CACBAF7AC8FC91 PE256: E439D04D29C173AD2B4FFBAA74CE6D2312F0ED9D92EF34ABDBC58D41B9B0A1CC SHA256: E439D04D29C173AD2B4FFBAA74CE6D2312F0ED9D92EF34ABDBC58D41B9B0A1CC IMP: n/a C:\CFusionExtra\sysinternals\Dbgview.exe: Verified: Signed Signing date: 11:13 AM 4/29/2020 Publisher: Microsoft Corporation Company: Sysinternals Description: DebugView Product: Sysinternals Debugview Prod version: 4.90 File version: 4.90 MachineType: 32-bit MD5: 938CF99E2D28B3EE0C21D50F64964C66 SHA1: B61A4B0E348AA1509C2B785C7D86511ED9E003A0 PESHA1: D1D6AE5D12429AC46ABECBB32D5359F691E785E3 PE256: BFBDD88D85258485D70541F28430C45FA140BF519C12763510AE0D48226A5220 SHA256: 374136C3136DFE14EB3B18908F64FA21B00EB0D8456D2DE9E135D3B29CD1DE2F IMP: 1E1114D83AE11299940AFC2459EE7BC5 C:\CFusionExtra\sysinternals\dbgview64.exe: Verified: Signed Signing date: 11:08 AM 4/29/2020 Publisher: Microsoft Corporation Company: Sysinternals Description: DebugView Product: Sysinternals Debugview Prod version: 4.90 File version: 4.90 MachineType: 64-bit MD5: 257D864EABFD8ED32DADDF21DE2C2632 SHA1: 19A4726C06D89096358CD5BB361370F0F863072C PESHA1: 572C2AFD655367FF33351796FB8039935443D93D PE256: 5301B868A4D1743E3F4205078B85169A041CB9ABFF82D83372455D756025C748 SHA256: 29E9C6CEE0617F4ABEB1E8D886A2DF4BF06244C79F49248D83280D33043C3DD6 IMP: 0D2CBE6B8A0B15C4E2F5A77D616D765B C:\CFusionExtra\sysinternals\Desktops.exe: Verified: Signed Signing date: 9:58 AM 10/11/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals Desktops Product: Desktops Prod version: 2.01 File version: 2.01 MachineType: 32-bit MD5: E108F38FF8E45BCC0BD02C084990B6BF SHA1: F97C8B779A023996C52FD82B11F5E13BE28ECAB3 PESHA1: C81B475758DDB69566A3157BC88EBDA138E78839 PE256: 261292948B8DC84371EC36941BA1AB4CAC3974BF1BCC8248A2F1C90C04BA6D12 SHA256: DCDC6EC773103D01EC77CC18E4014A907A3C118743191CAD71AAD3C659E29BA7 IMP: 8BA8EB46B4F94342C4622766115266FD C:\CFusionExtra\sysinternals\Desktops64.exe: Verified: Signed Signing date: 9:56 AM 10/11/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals Desktops Product: Desktops Prod version: 2.01 File version: 2.01 MachineType: 64-bit MD5: 1564B5349ECDDA4F76D152475B74EE2B SHA1: 877888B2AD4E7C94784F8E43AAF66696C9209301 PESHA1: 4D2FE90EE6F1C81016D80BEAB4E7A5D983A902BE PE256: FE508FC7E7EB484FF26237A50D5B8A2652F65951A3B4456A575165E22F60B9C1 SHA256: CD88A57F574AA040D9E5DEC01B35BD06CF8AC6C0456C47C16BCB380E87CA3565 IMP: 86CA6B32C6CA8ED59E4440CF131B831D C:\CFusionExtra\sysinternals\Disk2vhd.chm: Verified: Unsigned File date: 8:20 PM 10/12/2021 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 6039C72DAB885D298515F7DFBF0129C5 SHA1: F4CF5C3A9C098262F75B2934C23B01B5E8569930 PESHA1: F4CF5C3A9C098262F75B2934C23B01B5E8569930 PE256: 56B375C7DB8525C93A308BB095343B74CE85A01355FF486AFA6FFBDF1471A7A9 SHA256: 56B375C7DB8525C93A308BB095343B74CE85A01355FF486AFA6FFBDF1471A7A9 IMP: n/a C:\CFusionExtra\sysinternals\disk2vhd.exe: Verified: Signed Signing date: 10:09 AM 10/11/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Disk to VHD converter Product: Disk2vhd Prod version: 2.02 File version: 2.02 MachineType: 32-bit MD5: 29346E15169118D7FCA8C820FCDDBE77 SHA1: 8B797DA550E45F9FFB84048F5FC2D483439F6EA6 PESHA1: 3C005502D04CBF00A49D5B7B19842536AA408757 PE256: DAE81BCAE9708150726DFCE31964849CC4E987F2733CF38046B644504A38422F SHA256: 7C2CA32561CC5D41606B86EBADD0A6A526F669A818FA40EA2023EAED02EFC4F7 IMP: 4C117F731C41A3FC8C380AC1299A9B92 C:\CFusionExtra\sysinternals\disk2vhd64.exe: Verified: Signed Signing date: 10:07 AM 10/11/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Disk to VHD converter Product: Disk2vhd Prod version: 2.02 File version: 2.02 MachineType: 64-bit MD5: C6F706D4A5709A610E6AF7D85521598F SHA1: 38D8FAD968DF6622217646B2B0E014239BA68366 PESHA1: FDA233AFC8A58EEEF173F7672D7FDCA3111F7B48 PE256: 8B0C1764091684F6E3A5E87549D7EE9DF668AD93DCF683D7F9FE2A5DA4B9AB97 SHA256: 029A261AE3AEAB1F8E8EADAA8D2109EE38729936AD44B03EFF8F16F075A3D97A IMP: AC1BBCBD08CDADF92ADE065E4F9FEA41 C:\CFusionExtra\sysinternals\diskext.exe: Verified: Signed Signing date: 1:21 PM 9/11/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Disk extent dumper Product: Sysinternals diskextent Prod version: 1.2 File version: 1.2 MachineType: 32-bit MD5: A1C53A76195FEC5C6355727A013F1D18 SHA1: 08C46DC5ACC20C7130063830C72A9D4975ABB098 PESHA1: 0BD6F87767397FB45A09306776ABA1FB3A39F3BD PE256: 3E9A7AB665DF6A191F93226DB2F9F9ED3477870805F94A407841FE6D273BF0AA SHA256: 21AC7976DB678484DC7823E58D5200AABB01DF3556BE54D7DBDB5427D7B87CCD IMP: 5C8C52D61BD68EF4EE11440C7570000C C:\CFusionExtra\sysinternals\diskext64.exe: Verified: Signed Signing date: 1:20 PM 9/11/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Disk extent dumper Product: Sysinternals diskextent Prod version: 1.2 File version: 1.2 MachineType: 64-bit MD5: 75C6551BB9220726269B2CFEA22EF623 SHA1: 286609569FDD6A61E3B5F893BE137CA8D97F7EF1 PESHA1: E5036E4320041A0EB49496746126C642AC76991A PE256: D3F8B535E599D562DB1FAB1BE181A6A1E89A7E4A3686FD7903AF43686C205357 SHA256: F916C910116A497D80B443A11A10C4EC12DDFE060F29912E3C913B36FE7C4F2C IMP: 4A4461BA7BA5D8B93AA81FFDAF51D071 C:\CFusionExtra\sysinternals\Diskmon.exe: Verified: Signed Signing date: 10:10 AM 10/11/2021 Publisher: Microsoft Corporation Company: Sysinternals Description: Disk Monitor Product: Sysinternals Diskmon Prod version: 2.02 File version: 2.02 MachineType: 32-bit MD5: B0AEE4FA994C2EAFFB454ED191DEC1A0 SHA1: 37B2C1300E0B817B8BA02E9843627D6994797F1D PESHA1: 15F32692716C20EAE8B7E18C551CA553DB37F0A8 PE256: C1054F1C1D63E0BDB95AAE709A292F7EAFBA6B0B31CA1F2E8F713A3B4E3519C5 SHA256: B9B8D53E1C52FA35B9D761ACDAA64316683C3143F89DE7EE1AD47C5C4A2074E1 IMP: 3240E3429B697E055E49695C016A467B C:\CFusionExtra\sysinternals\DISKMON.HLP: Verified: Unsigned File date: 11:40 AM 12/8/2003 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: F5768E7AB96D77E06006E1B8858E5238 SHA1: 660F5D177195E7771D6A1235F79FA7F7CC49FEFB PESHA1: 660F5D177195E7771D6A1235F79FA7F7CC49FEFB PE256: 33278D846BB91E5746CA2BAF78853E5B52AB0FDD7B02A938154C082EC7D85024 SHA256: 33278D846BB91E5746CA2BAF78853E5B52AB0FDD7B02A938154C082EC7D85024 IMP: n/a C:\CFusionExtra\sysinternals\Diskmon64.exe: Verified: Signed Signing date: 10:08 AM 10/11/2021 Publisher: Microsoft Corporation Company: Sysinternals Description: Disk Monitor Product: Sysinternals Diskmon Prod version: 2.02 File version: 2.02 MachineType: 64-bit MD5: 9C5FCA10A71EA0B800A427ED4E2817C0 SHA1: 10F610CB5FF4099CD7DEA99035524C5754BBBE58 PESHA1: 5530B8DC65AF6C18D355DECA5DF56AE6C913381E PE256: 25479F15B1130388C8C43BE1EE67DD8EE8463D388AD8888EA85082C2166782B9 SHA256: 5C30DF87F397E06AEC59AF95A0C2606401A81983295F0978FDC2AFC2DE9859CD IMP: 6A151322C229F54DBCC34C1C2573FAC0 C:\CFusionExtra\sysinternals\DiskView.exe: Verified: Signed Signing date: 9:31 AM 10/13/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals Diskview Product: DiskView Prod version: 2.41 File version: 2.41 MachineType: 32-bit MD5: F2F9BD042A72C36E97B28662F51DF6CB SHA1: 01316147C037D0828A6CE4134D265C5730ECF235 PESHA1: 6BD0046D83EDF47BE0FBB18CDC2B57037CB71D66 PE256: 68FE9A5095033A82614C054153C7E84B54EDAC9739AFE4059131DC73B44EB6D6 SHA256: E0CFCB1F7037A43DC02B4A75B957B1AA866FCE57A34C7441A65DD503FF8F8F52 IMP: 0C5BBCF9ECF664374B2CDC8B9D333D6E C:\CFusionExtra\sysinternals\DiskView64.exe: Verified: Signed Signing date: 9:30 AM 10/13/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals Diskview Product: DiskView Prod version: 2.41 File version: 2.41 MachineType: 64-bit MD5: FBABD691ED7F09A6311565E3E86C4DCB SHA1: 2F3F863E9305EC7E20D71043E25FEF4406BB06EF PESHA1: B084D6F78DEBA551E9D8B7372BA651DEEE062455 PE256: 99026D23DB85A199C8812DB98B13B1E56B47811E83EFEFB981A902F16BFE5985 SHA256: 120BA05E5447A2D51589AB7D53C57ED769BFCF10A3F3A83E2C9740776DA37EDE IMP: AD28E59128DDDEBFEFA92A042E8B34F9 C:\CFusionExtra\sysinternals\DMON.SYS: Verified: Unsigned Link date: 9:45 AM 10/14/1999 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: 32-bit MD5: E2B37C19D129357266FD94DD1443D6C9 SHA1: 8B2809196D7A87F9004007072CAA9944F14F9429 PESHA1: 72B331F5D3C58DABBE3ACC258F1ECCA066D83DD5 PE256: 6860C3AB608E0AB02AE381CCFFBAC4E4823D7F399A97FDC2D7CFDD9324CBA0B6 SHA256: 23417FE51BFCC5EEB16A65C3E583D15AFE9A7370FA388DB10900E59FCF9044B6 IMP: 4A6A9A8E3DC1B05458F7523B9795055C C:\CFusionExtra\sysinternals\du.exe: Verified: Signed Signing date: 11:27 AM 11/4/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Directory disk usage reporter Product: Sysinternals Du Prod version: 1.62 File version: 1.62 MachineType: 32-bit MD5: DF7388E3BC4FCA54012246E6351B59FA SHA1: E8CDF5908465297125B47AB9BB4C357300829381 PESHA1: 311A3204EA384BA68D6E5CB64C909D2B783F6D20 PE256: BCD697CF3CDA48FD1D8738ED518AC2067F62842487D6ED4776737EADC83C597A SHA256: F23C10C525F2273D53293C56821B7095732ACE091B7825ED7B21BF79B05D52A9 IMP: C6C5AAD2B39FA3F37B4203FFE1BF8229 C:\CFusionExtra\sysinternals\du64.exe: Verified: Signed Signing date: 11:25 AM 11/4/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Directory disk usage reporter Product: Sysinternals Du Prod version: 1.62 File version: 1.62 MachineType: 64-bit MD5: 844332AD64C1C017698A9479622297E1 SHA1: 5F695F0BE6C90E0A26B1DC867055DDE8B2D9EA5B PESHA1: FBC2321E4753F67DD521C0B8BE1166BA2368EFC2 PE256: 93CBF48C891A6F06311B841ADCFEAD981CD2E794116327233F432273A6694D9D SHA256: 84D4B083A25D9365A969B7DE20A0BDC7F1AE04F5CE3EEFC4517CA1B13C308D1D IMP: C85981382FB4EB606F6D91AD6BDC7112 C:\CFusionExtra\sysinternals\efsdump.exe: Verified: Signed Signing date: 10:13 AM 10/11/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: EFS information dumper Product: Sysinternals EFSDump Prod version: 1.03 File version: 1.03 MachineType: 32-bit MD5: B2566CFED28B388EC625EB9A81ADE8DA SHA1: 3BAAC4BF363DE66AF6C5E4CAD6EB8BF2621BDD6F PESHA1: 8302DA1D61DDF350B6A175C83C28500787AD8029 PE256: 6910F495E6FB7874E404759F4153FD3FB37926AE0B9926F01EB54F317372E4D8 SHA256: B78823C9C7A52B043F5FA6DE376DF685D6D8308C89973B667792987953CE3191 IMP: E944892A8752C3E7DBD13DCED826E6AA C:\CFusionExtra\sysinternals\Eula.txt: Verified: Unsigned File date: 6:50 PM 6/17/2024 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 8C24C4084CDC3B7E7F7A88444A012BFC SHA1: 5AB806618497189342722D42DC382623AC3E1B55 PESHA1: 5AB806618497189342722D42DC382623AC3E1B55 PE256: 8329BCBADC7F81539A4969CA13F0BE5B8EB7652B912324A1926FC9BFB6EC005A SHA256: 8329BCBADC7F81539A4969CA13F0BE5B8EB7652B912324A1926FC9BFB6EC005A IMP: n/a C:\CFusionExtra\sysinternals\FindLinks.exe: Verified: Signed Signing date: 10:32 AM 4/17/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Locate file hard links Product: Sysinternals FindLinks Prod version: 1.1 File version: 1.1 MachineType: 32-bit MD5: 6B2362B6CE635E97F42DC21B47134CBF SHA1: 60119AB41A9F3B002DCC288C879D1A8FF72E4E85 PESHA1: 65739F874217A51B05F1E7473E937941FA68FFC7 PE256: F93D6E87C3EA639E7ED9AB231D96DFF42B0CB5D5AF798946E1A4C3354A9089C3 SHA256: EB74645B56A4EB4306DE0D0456DC764B58590D6C9A0E0F912B10A4F1DB63BA69 IMP: 5B89F5E8FD683EBD16A938968D6E7CD4 C:\CFusionExtra\sysinternals\FindLinks64.exe: Verified: Signed Signing date: 10:31 AM 4/17/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Locate file hard links Product: Sysinternals FindLinks Prod version: 1.1 File version: 1.1 MachineType: 64-bit MD5: 9352AFA6100B005F4130515A73D920FB SHA1: E87C525616D1942B2D6F0243A5F38DF0A7D2628A PESHA1: 422F55553E6E2227867B60DD59551185C63780A3 PE256: 4B520CFE6ADE90BF2EBF2C87F5586281F42DBC239BA03ED43A28305BCCC33FD1 SHA256: B1BC5A3660C922506BE7F8DB3CE6E229D530BCA8E58EE37FA762B9A9D806854B IMP: B1039D126DFB3A118DAE5EADF55AA799 C:\CFusionExtra\sysinternals\handle.exe: Verified: Signed Signing date: 8:58 AM 10/25/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Handle viewer Product: Sysinternals Handle Prod version: 5.0 File version: 5.0 MachineType: 32-bit MD5: 9F637FBA2D680E23DA0266C1507F870F SHA1: 05D4842C6E9B5F9430DAD76A20C2A4A6FEAE0BF0 PESHA1: AFCCB62EF0EE8F0ABE9BA790E698A18E854833AE PE256: 8D74B42F0D6424AA681F04C0098A7FC0B95CED83EEE8B616FD0048015C28273D SHA256: 84C22579CA09F4FD8A8D9F56A6348C4AD2A92D4722C9F1213DD73C2F68A381E3 IMP: DB7EA7686A4B73D9A24F7648F8623A91 C:\CFusionExtra\sysinternals\handle.txt: Verified: Unsigned File date: 2:28 PM 12/11/2015 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: FCDFF21820BA6CD5EA3EFE088518B407 SHA1: 8C349499DDB1AB7172A759648E054C0BC663DF42 PESHA1: 8C349499DDB1AB7172A759648E054C0BC663DF42 PE256: CCB69567602977FC2B78EF2226DC20F3AC5F6367975F756E8D76107929F529A4 SHA256: CCB69567602977FC2B78EF2226DC20F3AC5F6367975F756E8D76107929F529A4 IMP: n/a C:\CFusionExtra\sysinternals\handle2.txt: Verified: Unsigned File date: 2:29 PM 12/11/2015 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 74CD1A252B7F4F15E85511B72EE36511 SHA1: 3917F1C2621ACEA0FC661A2F7F3372713A3F8FD8 PESHA1: 3917F1C2621ACEA0FC661A2F7F3372713A3F8FD8 PE256: E03EFE5C7A0704916C33CCE3A96B3E1F91B877684F3BE29F43B15316CC924914 SHA256: E03EFE5C7A0704916C33CCE3A96B3E1F91B877684F3BE29F43B15316CC924914 IMP: n/a C:\CFusionExtra\sysinternals\handle3.txt: Verified: Unsigned File date: 2:32 PM 12/11/2015 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: A3525DF7DC3C2F02AF7822CD91D08CAB SHA1: 7AAFD907B95BBE7506F13330683BF9E13D7984F3 PESHA1: 7AAFD907B95BBE7506F13330683BF9E13D7984F3 PE256: 1AFB1F414A6962B4AA8B8471479AFD5E114BE7ED97B6F6AD8D002A7AF5CB6D32 SHA256: 1AFB1F414A6962B4AA8B8471479AFD5E114BE7ED97B6F6AD8D002A7AF5CB6D32 IMP: n/a C:\CFusionExtra\sysinternals\handle64.exe: Verified: Signed Signing date: 8:55 AM 10/25/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Handle viewer Product: Sysinternals Handle Prod version: 5.0 File version: 5.0 MachineType: 64-bit MD5: 89F845FC4898F2D47A3A81F0B57C60F1 SHA1: B04A2347A0F94E87215424D816F9912C7BC248D5 PESHA1: 6126FA77A3557BACA32D2037865D29014515CC26 PE256: D858881BE4BD931A6E41183F13B3F1A2B1FE8A054501AFA3C616D59F81A0156F SHA256: 24BAFCC570CC9BBB6B6E6652A57A519E0464E3996891AABA6F55299CCE20B04F IMP: 16EBC883B0EC2B288357E5C53619EFAD C:\CFusionExtra\sysinternals\handles3.txt: Verified: Unsigned File date: 2:32 PM 12/11/2015 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: D41D8CD98F00B204E9800998ECF8427E SHA1: DA39A3EE5E6B4B0D3255BFEF95601890AFD80709 PESHA1: n/a PE256: n/a SHA256: E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855 IMP: 16EBC883B0EC2B288357E5C53619EFAD C:\CFusionExtra\sysinternals\hex2dec.exe: Verified: Signed Signing date: 10:07 AM 9/14/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: converts hex to decimal and vice versa Product: Sysinternals hex2dec Prod version: 1.1 File version: 1.1 MachineType: 32-bit MD5: 44B21D141B5F3F6D0A5327BE7491B0A7 SHA1: F5708740FDB28A74AC2ED973A8D0BB6698A668F9 PESHA1: D318D64A8F4720B1D9CC91FDF9C6725FA647B19F PE256: A1398804E76187526BC481A7C2510CD31C3751413F73FC2A998F2D4933BD2BFB SHA256: 3E57CC1D455A7C33E74124888BFF4C73501C8B1993A8C1E896F4D995EC93BC53 IMP: 50482B6B264D53C513DBF36D2E801899 C:\CFusionExtra\sysinternals\hex2dec64.exe: Verified: Signed Signing date: 10:06 AM 9/14/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: converts hex to decimal and vice versa Product: Sysinternals hex2dec Prod version: 1.1 File version: 1.1 MachineType: 64-bit MD5: C0252797B03F07A07C560CED7A112419 SHA1: 42A336F17DA3BF16AC639DACE585621CA13B4B1A PESHA1: E8C77447F16381A0F2E155139AF1BD92B2CD90FB PE256: 794755DFA57DDEBF6E51B0DEB40E36624E1735AC95E017AC357F7A91E102F964 SHA256: 786D92B9457A1122DEC26BCD4354E79AF03EB7678A00D4DD930C32662A7D7209 IMP: 6E6C0C38057302550F8298C609DB40BF C:\CFusionExtra\sysinternals\junction.exe: Verified: Signed Signing date: 10:42 AM 9/14/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Creates and lists directory links Product: Sysinternals Junction Prod version: 1.07 File version: 1.07 MachineType: 32-bit MD5: D53E00822AF1527611E5E5C5CE588678 SHA1: 1FBE93056A0458EEFD02B29436FEAA1CF85553D7 PESHA1: 1F856785DFDB52856ED98EC22F18E4D255796E1E PE256: DA3B0D6EE341226394B14E8CC2C1AB5AD1F3C52E6ADA0873E3FEADC2DA537D78 SHA256: 6FB4DF6555A69C2F3C117764D33B48803AE19A8BA40B12F3211195247D9C508F IMP: D252BDC4EC1867967C54FF17556BA9AA C:\CFusionExtra\sysinternals\junction64.exe: Verified: Signed Signing date: 10:40 AM 9/14/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Creates and lists directory links Product: Sysinternals Junction Prod version: 1.07 File version: 1.07 MachineType: 64-bit MD5: A87678BBF8F7752A85ECA00BA3FC6775 SHA1: 7F57A7E6F18FF5D70C38A24737AA2817FBD5C85E PESHA1: 0A85F457C3084B248C1D7874D68A80B7A31B8FD4 PE256: 764BCDEC61F32F1044CF917539B87122E044D929A0020E1DA1AF580C3F2FBF9A SHA256: 98720D8675036560545DB93DA0427B46361F565F7F517F77C11DB7F72D9C8CDD IMP: 88D0A5152AC5965C1C0CC39BE43F6F87 C:\CFusionExtra\sysinternals\ldmdump.exe: Verified: Signed Signing date: 2:06 PM 11/1/2006 Publisher: Microsoft Corporation Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: 32-bit MD5: 202119E519DD179DE64AFD195F0DDA42 SHA1: 9DFCA2C430EF0E0C618EB229D840575411FF6ABA PESHA1: CD66FBCE3919BCB91488647C3AE0218FF0932CEA PE256: A2F32F4396EB63E9C115C392A4DB1736F1A22BD46A55BA3C0564B4FF36409C52 SHA256: 980E64020CFCEB02652A2A08270B84B974F18F290E9CB798F5D46D3AA3A0EC94 IMP: 62430F16891F2BBC3E224C30B3127F73 C:\CFusionExtra\sysinternals\Listdlls.exe: Verified: Signed Signing date: 2:29 AM 5/27/2016 Publisher: Microsoft Corporation Company: Sysinternals Description: Listdlls Product: Sysinternals Listdlls Prod version: 3.2 File version: 3.2 MachineType: 32-bit MD5: 60A2331A2B28968585C7C7229D2424A8 SHA1: FBAC538166D61B4F10DB934BD4BC1B86C81E56FB PESHA1: 625F8D98D11F3EC383DEF8F7E4AD3A7A37BCCF32 PE256: 46FC26BB10D02AC2348B254A89B2D37A4D94ECE1AFFDABF9A4AB38BF1E0AECBC SHA256: B0F6800B2BB4C86E091120E9087C75F9B1B3E46B89CF65744D65CF5AB01FD385 IMP: 89D7B24BD25C29C0F3B867880CCC6D9A C:\CFusionExtra\sysinternals\Listdlls64.exe: Verified: Signed Signing date: 2:27 AM 5/27/2016 Publisher: Microsoft Corporation Company: Sysinternals Description: Listdlls Product: Sysinternals Listdlls Prod version: 3.2 File version: 3.2 MachineType: 64-bit MD5: 8336396D50DCC9D5A5F66B078A8460DC SHA1: 42BF0BB282512E4C638B8F03617DD973EE09AFD9 PESHA1: 12438361A83B1D6EDAA40DDB9A0D3A763738952D PE256: CD99A38EFA56893E48CD13F2102B0E10F7080B37BF61518FDED74703C792F4FC SHA256: 29D23BC492E48A5AE68444302D3430E07D08E04278D53AA70D9367D9CF8BCEB7 IMP: EDBC1EE8C0298A5E2E8295E1F57B55C0 C:\CFusionExtra\sysinternals\livekd.exe: Verified: Signed Signing date: 9:03 AM 4/27/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: livekd Product: Sysinternals LiveKd Prod version: 5.63 File version: 5.63 MachineType: 32-bit MD5: CA9A18EEC3DD7543A56058975CE31987 SHA1: 9BB6FF0696DCAA5E164C6E31E9302E28B6EE4BFC PESHA1: 4C3817A705CA6E7EF92F70B2FE2D1C87D2ACD680 PE256: B8D8C888FA6F87ED50790955D1CD591D4048A1060EFD25A3891E5A9F038CF2BA SHA256: D705F0C95B37E801AFE698DF5F56833099F55F6563713E3B318499F579A5D1CF IMP: 2EC43D81EFE93713D038B08B3F456F1F C:\CFusionExtra\sysinternals\livekd64.exe: Verified: Signed Signing date: 8:59 AM 4/27/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: livekd Product: Sysinternals LiveKd Prod version: 5.63 File version: 5.63 MachineType: 64-bit MD5: 789E183EA5B0B0189E4E5430F442A809 SHA1: 781EAF9B532B573FC5929BAF06FDFCCC4DF6E23F PESHA1: C9F380C941288828594F48F2486B675C730204DB PE256: 5E16A729B95265AB923092E962A55D966180F72BB37EE2AC91F42942ACA86B58 SHA256: F86DC0891DFEC0063E8D4927600863773086249EA95FD10249B0208C2940A261 IMP: 36C4EDBE2CD418F9934759C7B4F7D102 C:\CFusionExtra\sysinternals\LoadOrd.exe: Verified: Signed Signing date: 11:12 AM 10/12/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Startup order viewer Product: Sysinternals Loadord Prod version: 1.02 File version: 1.02 MachineType: 32-bit MD5: 324D2E385754EC5D1BF639303D1F5AD0 SHA1: 802C7961417B2BF3791229C774AB0854810D7553 PESHA1: 1AFF81373D94D184EEAFB10716FD6F7619F67866 PE256: E9F083DE3E697EDF664CE00470D41D317DF1C227EBD207FAD8E4A743A8532EF6 SHA256: 49EA240A4965E0CB2F994530DF4F4993A1B91EEF3B172E1EB74A1AF2972C5C93 IMP: 752CEDB65795DDD3C41A733ED7445860 C:\CFusionExtra\sysinternals\LoadOrd64.exe: Verified: Signed Signing date: 11:10 AM 10/12/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Startup order viewer Product: Sysinternals Loadord Prod version: 1.02 File version: 1.02 MachineType: 64-bit MD5: B47127FCB9DD27C42A9203A79C273B77 SHA1: A413B7D724CB3C0E7578E2866FC4B68293023C5F PESHA1: C4DB662580F93E8877D5440DF2CF0ACCC8424F5A PE256: 039557E09F56E28DFE6A320828BC988C6FF8D7044668FABE6CD14DB81247A805 SHA256: 6D260ED82396F6EA290E61C9F67EBAF0AF0F3A8015D35DC878CE41BDF13FF798 IMP: 349460FD0C615E272B5F9F24E0D15DA4 C:\CFusionExtra\sysinternals\LoadOrdC.exe: Verified: Signed Signing date: 11:12 AM 10/12/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Startup order viewer Product: Sysinternals Loadord Prod version: 1.02 File version: 1.02 MachineType: 32-bit MD5: 3318D68F6E1A6DCE7B268B2C9998F8B5 SHA1: EC59996725CE1813A4FB2BCE734C9F8B58763E95 PESHA1: 06962A756CA65126100F429F277E4B4CA28F3253 PE256: C8E16FDDF57FE80D6D8DCE645195E0CABFB882CBDA5B19B04B29638CB4B2798B SHA256: AAC9FD7FED5BD1FE0BC11321EF08E792F220905FF66CCD2E4BFDFF6D9E848E40 IMP: E9BBBD50DEDF3D875D89993EB911A22F C:\CFusionExtra\sysinternals\LoadOrdC64.exe: Verified: Signed Signing date: 11:10 AM 10/12/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Startup order viewer Product: Sysinternals Loadord Prod version: 1.02 File version: 1.02 MachineType: 64-bit MD5: 80866F094D124038A3BED2FEBE08B49B SHA1: 51C18C873B60EE63A8413A01CCCA9DB2E926D6D8 PESHA1: A7AE19246E6DBCCF5FCC9BE99802C05D5AB9BDC8 PE256: D28D1FF4DD69FC7DEBC043B3392A2193910570466036F209BC50C5B9BF1D3953 SHA256: 17B5ED2DDE571FB0B56E3F4FF48F58D2E2F0B136087046048C461A70B6051BD1 IMP: 0C0832F27CB8376BD924BDBD79EC041E C:\CFusionExtra\sysinternals\logonsessions.exe: Verified: Signed Signing date: 2:56 AM 11/25/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Lists logon session information Product: Sysinternals LogonSessions Prod version: 1.41 File version: 1.41 MachineType: 32-bit MD5: C4CE99E04A7C0D8291F549A09C5F7E00 SHA1: EBD3952D47B053E698FFDE39E8040CCAFBE169C9 PESHA1: 45DB8FA6A09FA419757A5E7E69B6F611DFC3C986 PE256: 24C26A01B014783CDAB641E6AD4F4CCA1CE6A67B1E850F48367BA7FE02C8639E SHA256: 8B3F67426E578BD17608D2BB9855774CFB44DCFDC4793E30DE884C54FBB8BB10 IMP: ED17DAA33FC26BC2797C98474E238063 C:\CFusionExtra\sysinternals\logonsessions64.exe: Verified: Signed Signing date: 2:54 AM 11/25/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Lists logon session information Product: Sysinternals LogonSessions Prod version: 1.41 File version: 1.41 MachineType: 64-bit MD5: 2D7312129A03F5B58925898449787F73 SHA1: 3187773D63C826900B8BD401ACCDAE5971D2C99D PESHA1: 544DF92C7E7A2297696DDD7E08BB5F45BF756AF7 PE256: FA86A9F5EF102AE42FA7303F7A8AD3D848454CA6D2D32C56424B204EA15F5F1C SHA256: 7B646DBCCB20D5EB8C977735D3D69EA449395F8D79FDBE28BF8988B46E0EDE80 IMP: 2A855EAA735C0961587B1B38550D2F4C C:\CFusionExtra\sysinternals\movefile.exe: Verified: Signed Signing date: 10:08 AM 9/3/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Creates pending movefile operations Product: movefile Prod version: 1.02 File version: 1.02 MachineType: 32-bit MD5: 892B25C16DA4069763DE468B2963568D SHA1: 731ED45EEF687415935EE3B3F6162CC38DEDB77D PESHA1: E193269865D5396F296067AD91FC60B7ED5292DB PE256: FAA460445354DC71F2BC5433813C30677AB9D5ACAF59F4A05874E7D5C34ED5E0 SHA256: B1778554BEE9C009176A3FE3C69C5F72B2ADDD7A439F6CCE9851D4F631235B25 IMP: 58CB6D6C0C404F2663C74B01F9277912 C:\CFusionExtra\sysinternals\movefile64.exe: Verified: Signed Signing date: 10:06 AM 9/3/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Creates pending movefile operations Product: movefile Prod version: 1.02 File version: 1.02 MachineType: 64-bit MD5: 36249A4F073F7D3FCD6681D1CF9304D6 SHA1: 30A4D28BAA5C963E26D6566A9DBF1B9FD455B0B2 PESHA1: DE11CA4DA9DDEC052919E967192A7E4D612C561F PE256: C10219D45FD79D4D6820CFD2D5506E008384644EE968296C771C86E6A2ECA399 SHA256: BEBA5A12B0C1A941BAA1427656FC1DA9A2674DBD6C336B0870C960E65C43A87E IMP: A3DA8C3278BE3BAA96793D33C75313B5 C:\CFusionExtra\sysinternals\notmyfault.exe: Verified: Signed Signing date: 9:22 AM 9/29/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Driver Bug Test Program Product: Sysinternals NotMyfault Prod version: 4.21 File version: 4.21 MachineType: 32-bit MD5: 833D5BBDF80D17A384E9B27798EA4D6C SHA1: 4AB55A97E76FD2CDB55ED305C984D87E9A06B1B1 PESHA1: A86222A02168DDC1C5EE01422CCB747CD0720E4D PE256: 3D4AFD5FCC444779E5955787B27E3E35BB7503AF002D5FDF227529DABFB71377 SHA256: 41DDB886060471D702693CBFF1E7AA73C8ADA5B29D9EE313DE9972AB663A100D IMP: 71D2B333657C418A4FC6BF14257A63E8 C:\CFusionExtra\sysinternals\notmyfault64.exe: Verified: Signed Signing date: 9:19 AM 9/29/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Driver Bug Test Program Product: Sysinternals NotMyfault Prod version: 4.21 File version: 4.21 MachineType: 64-bit MD5: C338B6FD5B568411039D8A46394133CF SHA1: 06A684C8E8EC66396DB2685C0419C8BFB78B1220 PESHA1: CA9F2DC498D3397DF1AE420A720A072829D797E3 PE256: 6352BD47A7B1F8DDFFF7D882E16D8CC9E402BFE685821533FDA072B1746C7C7D SHA256: 817CD2E8846C5D90782017A7F29DAF7915E5E38E6DD165FB81CDD4642E90F218 IMP: 299A958CC3AB9FF9641C86B34F45977E C:\CFusionExtra\sysinternals\notmyfaultc.exe: Verified: Signed Signing date: 9:34 AM 9/29/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Driver Bug Test Program Product: Sysinternals NotMyfault Prod version: 4.21 File version: 4.21 MachineType: 32-bit MD5: 0E3A8BBC35CF4178D96AD9D2468481FB SHA1: C088537BB62AFD6B4BB337B0D69B6579AF20EB2B PESHA1: E2A7B805A919D98D3907B7251AEC185C4A7AA7A7 PE256: 07B53A3D6342F470325E1AD420E82F7B852CF25EACD98922F7DC29F76DA49CEB SHA256: 6454A6F2BB7B5EEA6C5E524FC3DF5E93F77C2FBE17892679E458CAC0D2A33ADC IMP: 1876849667143B24D30C9CAE3EB8084A C:\CFusionExtra\sysinternals\notmyfaultc64.exe: Verified: Signed Signing date: 9:28 AM 9/29/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Driver Bug Test Program Product: Sysinternals NotMyfault Prod version: 4.21 File version: 4.21 MachineType: 64-bit MD5: 08B89D543C173FC2ADAE048784FE618B SHA1: 6002F6EC3858C4925B41C7470AC584C0D616116F PESHA1: 54D2EE8438F6CCAD7F0794249F0AEE7166240DB1 PE256: 5109F66C5BDD45DD70A3F283AE24F34DA99B6559B6E6EC712F2EB4B4631FF500 SHA256: 1F4DFE0F4E7421CF2FC7C0B57138C12D65F02B5EDF6EE86F5D7627A1D5A4BAD4 IMP: 35183CEA407883C8FCD73669C0A3536A C:\CFusionExtra\sysinternals\ntfsinfo.exe: Verified: Signed Signing date: 10:28 AM 6/12/2016 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: NTFS Information Dump Product: Sysinternals NtfsInfo Prod version: 1.2 File version: 1.2 MachineType: 32-bit MD5: 8F5C0A6E54D4590B803EFF01BE0394C1 SHA1: D6ED4287B278C9325924054E4C83EBAA884587CA PESHA1: E4BD67F452D37DED4C45F712558A258018B982BA PE256: 9DA4631C3AAAA12BCB69B67D23A5F3BCEA1A18D1389A632814C29D5435C47BED SHA256: A0D29465C4EF4B6C7E146545B50228E5C08AB8888980577F907058757BDAE6DE IMP: 2115F05A06B763DCDD0A46576982562E C:\CFusionExtra\sysinternals\ntfsinfo64.exe: Verified: Signed Signing date: 10:25 AM 6/12/2016 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: NTFS Information Dump Product: Sysinternals NtfsInfo Prod version: 1.2 File version: 1.2 MachineType: 64-bit MD5: C2562DE6FAD25D0529B1FEEF5B15E43F SHA1: BCED2F1B3B55D319A13A2BFA7B545761E593E971 PESHA1: 312E8BF04FA298DF7745C508ED0CD4AB42B7E170 PE256: E6C3E48C282D432C2EF1C9474CF7647CF17730FE881EB7B9FDC08C52BB1D98AF SHA256: E2837BE10257EE5B1441C7056AA5F92C46FB5AC24D1E4E00FFC0A2D1CFE637BC IMP: 802BA2269625BE056D6E4870E3B6D3FF C:\CFusionExtra\sysinternals\pagedfrg.exe: Verified: Signed Signing date: 2:06 PM 11/1/2006 Publisher: Microsoft Corporation Company: Sysinternals Description: System defragmenter Product: Sysinternals System Defragmenter Prod version: 2.32 File version: 2.32 MachineType: 32-bit MD5: 24898BA51CBAAD01A046541CC0A8D26F SHA1: 301BB9951B3363C2A7D9FCD75830AACE96AFEE9C PESHA1: 21C62D4465D6C5C9B3B644701C8AA36D645358DA PE256: 36F2F28957304D7C73675571118CA4C1F1562C3E43E9C0D7AEB580A05376D3D3 SHA256: 19CE7DFFDC417DC1EC126D9E1390F05F931B15AC5F67E8B528DFE55B6BFC3D38 IMP: BD450E46D8E9A796DB50878D454EA94A C:\CFusionExtra\sysinternals\pagedfrg.hlp: Verified: Unsigned File date: 8:58 PM 7/23/2000 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 1F83A0D30804C23E84C23039B59C7C42 SHA1: 41B36542B32DB01E9641227BC414DF1587AB0FD7 PESHA1: 41B36542B32DB01E9641227BC414DF1587AB0FD7 PE256: B7B8C0ACFDD60FDB826F69D1D6396A0C6D8A6BA712D561B7BD2041767549A03D SHA256: B7B8C0ACFDD60FDB826F69D1D6396A0C6D8A6BA712D561B7BD2041767549A03D IMP: n/a C:\CFusionExtra\sysinternals\pendmoves.exe: Verified: Signed Signing date: 10:00 AM 9/3/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Lists pending delayed movefile operations Product: Sysinternals Pendmoves Prod version: 1.3 File version: 1.3 MachineType: 32-bit MD5: 2643293808FC9586788E0D934A8A07B6 SHA1: 555C125CCBD6D5E4DC767AF5E1132C4C26FF41DC PESHA1: F2EF600A4EF37C63CBDB058F079A91A7978A52AA PE256: 41AAABBF69B689A47D7DE67F88E5A856896E41279F4D157458C40E64068B3507 SHA256: E6FB98119483D466C62EB3D51E557FB561595764D3BA474D13591D5C7AA940F6 IMP: DD005E4F996645B1B6E14F7480921380 C:\CFusionExtra\sysinternals\pendmoves64.exe: Verified: Signed Signing date: 9:57 AM 9/3/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Lists pending delayed movefile operations Product: Sysinternals Pendmoves Prod version: 1.3 File version: 1.3 MachineType: 64-bit MD5: 287563A3DCC9BBF15700E4423F6281EB SHA1: A5F96D925B4231C8038CC0EE84F62D153B6290B0 PESHA1: E78EC769DFD85D70B3A55FF353CAC9EE24C29A32 PE256: 31F031880B9D6472044B5380C092CDA7C3BF421B34E8E0B105365E820F559541 SHA256: 3E7B1FCD9E8C0CCA2BFC1140A8CEAA1E319487AC1F466EAB01648443B80D9108 IMP: 5FA6F9B4FEDBB87894233EDF8F593AF2 C:\CFusionExtra\sysinternals\pipelist.exe: Verified: Signed Signing date: 5:20 PM 4/30/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Lists open named pipes Product: Sysinternals PipeList Prod version: 1.02 File version: 1.02 MachineType: 32-bit MD5: 0E7BD3E144E966321068C5E9F5BA301D SHA1: 00919FEAAFECB87369D0605D3ECB9FBE69B41507 PESHA1: 217DD3EA40D3DA05094C0DC6E1EF4274EA66929C PE256: DC5233CDA94B669C665F55B833A8F1DF17061484A91C19C58637042B2620A5F6 SHA256: 2156D7D3158EA589E8187C5CB82442EE6C37EE982BC0D728EDC8A50A2A1C4281 IMP: 750C5946C0A20EE752F648B16312BE3A C:\CFusionExtra\sysinternals\pipelist64.exe: Verified: Signed Signing date: 5:19 PM 4/30/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Lists open named pipes Product: Sysinternals PipeList Prod version: 1.02 File version: 1.02 MachineType: 64-bit MD5: E794CA9CC2AF5F555CA573ACE7FBDE00 SHA1: 9F7CD59B08E2A4F810C68745A26B633C685BD7DE PESHA1: 8D2F71049D00FFBEF530E0033993DD556E325D81 PE256: 4B69DA4AE6485B94E70FC8DF91B9724E567C3F44A7CA7EBFEF838C6DABB7973B SHA256: C7C3E2E7B729891141F5A7CB172390E57072783187EDC92DB95D4B7B7FE8CC4C IMP: D5B082CBCA031E53C7146B44DC0A7B06 C:\CFusionExtra\sysinternals\PORTMON.CNT: Verified: Unsigned File date: 5:28 PM 7/30/1999 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 9CE4AEEC4F31E144D51F3367316D9459 SHA1: 9044279384C5327046AFAAE43AEB542ED7D35476 PESHA1: 9044279384C5327046AFAAE43AEB542ED7D35476 PE256: 0129CF544234E91CE119940A6F2CC9842ECBB3723F9DE9B62FD985C8AD02A21B SHA256: 0129CF544234E91CE119940A6F2CC9842ECBB3723F9DE9B62FD985C8AD02A21B IMP: n/a C:\CFusionExtra\sysinternals\portmon.exe: Verified: Signed Signing date: 5:36 PM 1/13/2012 Publisher: Microsoft Corporation Company: SysInternals Description: Portmon/EE Product: SysInternals Portmon Prod version: 3.03 File version: 3.03 MachineType: 32-bit MD5: 1276ACF39B37A99EA14E760870025584 SHA1: 41E9EDCF56FCD7C6B67256582673BB791BDFCAC7 PESHA1: 36513FB395D33FF4A766B97C8623F8B05C5AFECC PE256: 1912C527B59BD4C2CD65920C94EC12D7BA276D40F840FF7EB974BED789A20D06 SHA256: 0E848A3911070945CB71803D466BA5A02804957B51B177C52A09AC55280BA6DD IMP: D7005CC29D297C93F2C852C56BECD356 C:\CFusionExtra\sysinternals\PORTMON.HLP: Verified: Unsigned File date: 10:20 AM 1/31/2000 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: D790A889CBF0AA672376994794FF2D9A SHA1: 464510B7FA148DE363D83ECB5BD0448CB9E483C7 PESHA1: 464510B7FA148DE363D83ECB5BD0448CB9E483C7 PE256: 4E55C9B6A6147766B0CD6AF4A8691408FEB17AFB196658291BF186FF106312E5 SHA256: 4E55C9B6A6147766B0CD6AF4A8691408FEB17AFB196658291BF186FF106312E5 IMP: n/a C:\CFusionExtra\sysinternals\PORTMSYS.SYS: Verified: Unsigned Link date: 2:03 PM 6/12/2000 Publisher: n/a Company: Systems Internals Description: Windows NT Serial/Parallel Port Monitor Product: Port Monitor for Windows NT Prod version: 2.01 File version: 2.01 MachineType: 32-bit MD5: C58AE9881CD83BB1662A7E062E11CBD6 SHA1: C1FD10B8BE1827422C876839E42D29A5D1727992 PESHA1: FB661414E0762C652C301D35A1516C916E5121AA PE256: B0C25C361E5EDC33B803FBA92418EF5CD9661D70D7757D97B635A55CABAE16B9 SHA256: 80969EC975C15718DC14136B7E1533FFD3E1530E1A1F6B1411ED3EE0F55016E6 IMP: C6DF7488BAE48909C6B681AB5B99BA0B C:\CFusionExtra\sysinternals\procdump.exe: Verified: Signed Signing date: 10:51 AM 10/18/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals process dump utility Product: ProcDump Prod version: 11.0 File version: 11.0 MachineType: 32-bit MD5: F2091C44D89789F689D98BC244358878 SHA1: DB1EF4CE56820C93A3B7F1FDF36D3FFFC7D1EC96 PESHA1: 8E901F1A2276CC36111C3629745F488A2B0F44C8 PE256: B2AA2C01D55FB0580DA2033B625F764CA7BC437EAC4DB27CD432D743B4BD08CD SHA256: E4EA34A7C2B51982A6C42C6367119F34BEC9AEB9A60937836540035583A5B3BC IMP: 06AD3B6FE23128D330B3053F2D666451 C:\CFusionExtra\sysinternals\procdump64.exe: Verified: Signed Signing date: 10:49 AM 10/18/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals process dump utility Product: ProcDump Prod version: 11.0 File version: 11.0 MachineType: 64-bit MD5: 68A1F7C796DE1D0DF6B2D78E182DF3A0 SHA1: 43E3521E0403636150AC0C6C4DA6A536F0AB504F PESHA1: 8A6E5519546F26D137F548CBB7905619DF2500C0 PE256: 3A57370A5FC7A8B5150FCD78788FF7BDE2BA34D48BEFE98F9DB82DE88E9985C3 SHA256: 5B165B01F9A1395CAE79E0F85B7A1C10DC089340CF4E7BE48813AC2F8686ED61 IMP: 6216B9E2015376E4CAB2DF349F9E6CDD C:\CFusionExtra\sysinternals\procexp.chm: Verified: Unsigned File date: 5:30 PM 8/18/2021 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 475AE5061422FF073557D61FCEA2B713 SHA1: DF3F4994759D21059C9F835F621740E3E2FA429B PESHA1: DF3F4994759D21059C9F835F621740E3E2FA429B PE256: 36DAEB8EB206D1CA5A0933FFFCB07645C9AA68A037D64839D3DBC692C403E76F SHA256: 36DAEB8EB206D1CA5A0933FFFCB07645C9AA68A037D64839D3DBC692C403E76F IMP: n/a C:\CFusionExtra\sysinternals\procexp.exe: Verified: Signed Signing date: 8:51 AM 5/28/2024 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals Process Explorer Product: Process Explorer Prod version: 17.06 File version: 17.06 MachineType: 32-bit MD5: 94C60E6704B5DD11A139F2FFEBDE9135 SHA1: CD89F1CF9428A3EAB554A3EB9FF6CA869E5BC368 PESHA1: F342F435623E4D8808B9DA988C453CAC73FEBDE0 PE256: 98C872D7CB39ABCD04BE9DC4E8ED53490DB2DDED06FB84A0BAC2564B0722033A SHA256: 106BF123359D03963B1DF1011FB8560AAF1C5E811DE775DCE1D8A53758A69102 IMP: DBC825879296E020D5134F3622C3ACA0 C:\CFusionExtra\sysinternals\procexp64.exe: Verified: Signed Signing date: 8:47 AM 5/28/2024 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals Process Explorer Product: Process Explorer Prod version: 17.06 File version: 17.06 MachineType: 64-bit MD5: DFEEA73E421C76DEB18D5CA0800DCCF2 SHA1: 0497EBA0B24D0F4500FAAD5AE96DBEBAB9C64608 PESHA1: F501F094BB1A16615478277D9D3AF21A473958ED PE256: C7EB9D3BC6C804B333D817D75E12D052EF17E3581E34AF8AB310787271F68D84 SHA256: 8158DC0569972C10056F507CF9E72F4946600CE163C4C659A610480585CD4935 IMP: 0F09257E903F2692E9B9D8944D8CF0FA C:\CFusionExtra\sysinternals\procmon.chm: Verified: Unsigned File date: 4:44 PM 9/29/2023 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 713906DE48013C249228D5FF19E333EB SHA1: DD3BB7D17ED0CDBB2696D0EDCAD608E1E297B315 PESHA1: DD3BB7D17ED0CDBB2696D0EDCAD608E1E297B315 PE256: 9D9C7E0160537263C60C6AC0941E63F08FCE23431AA4EB19ACD25EE1E2BE20EE SHA256: 9D9C7E0160537263C60C6AC0941E63F08FCE23431AA4EB19ACD25EE1E2BE20EE IMP: n/a C:\CFusionExtra\sysinternals\Procmon.exe: Verified: Signed Signing date: 11:14 AM 6/17/2024 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Process Monitor Product: Sysinternals Procmon Prod version: 4.0 File version: 4.0 MachineType: 32-bit MD5: A789BC7FBBB1AA8EE241A0FEBF836FAB SHA1: 80D717C9532E34D513F7C3B13C9162910355583E PESHA1: F42BDBFEA076BF2B1ACD46373F3CF98118C0860C PE256: BF7EDDF3822C45FEFFD213C710402664EE3FB9FCCF7F3C65EFA1BA11F5224C78 SHA256: E53493423EC51F97F6245A0D2BF4B1BCEF4539C6AC81F661B7E5DA66E23CC25F IMP: 24CB902BD95A8B64ECC677AEE8764F45 C:\CFusionExtra\sysinternals\Procmon64.exe: Verified: Signed Signing date: 11:10 AM 6/17/2024 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Process Monitor Product: Sysinternals Procmon Prod version: 4.0 File version: 4.0 MachineType: 64-bit MD5: 1E43558FA02FAFA1E3082426AEE467DB SHA1: BCB6A870D5C70231E8A139253979A50BF7160B47 PESHA1: 447CDA0F640CC250A00809E64FA067C58C4E2DB5 PE256: 57823330EEBB43F89C633441673E58C80947BEA3B75361E7171A55C12FE3FCD1 SHA256: 46F78D404712333E9BA0A4C479944E8191B1E53826CD500B3AD1CB3CC777DC72 IMP: 749889F11D0DD7648480DC6BD3F90B1F C:\CFusionExtra\sysinternals\PsExec.exe: Verified: Signed Signing date: 1:36 PM 4/6/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Execute processes remotely Product: Sysinternals PsExec Prod version: 2.43 File version: 2.43 MachineType: 32-bit MD5: 24A648A48741B1AC809E47B9543C6F12 SHA1: 3E2272B916DA4BE3C120D17490423230AB62C174 PESHA1: C6DF31A3B61DD168102B8DEA25F43E17B0E79AC4 PE256: 35F4A02299745D2ADD268BE6EBE68A9DBD736F54AD34C8EF67D383F830D2F16F SHA256: 078163D5C16F64CAA5A14784323FD51451B8C831C73396B967B4E35E6879937B IMP: 1193BC223DAD681F22F8248608CBB592 C:\CFusionExtra\sysinternals\PsExec64.exe: Verified: Signed Signing date: 1:30 PM 4/6/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Execute processes remotely Product: Sysinternals PsExec Prod version: 2.43 File version: 2.43 MachineType: 64-bit MD5: DB89EC570E6281934A5C5FCF7F4C8967 SHA1: 0098C79E1404B4399BF0E686D88DBF052269A302 PESHA1: BD16317AF3416643454C22EA2DDB3A6835864DE4 PE256: EDBD9AD65EF45F6DD8D92E1DC50D9D4A17F195888DFFC3A055ED1D199FB6FC13 SHA256: EDFAE1A69522F87B12C6DAC3225D930E4848832E3C551EE1E7D31736BF4525EF IMP: 8A589B59271D320348F6CDEC90A97E6C C:\CFusionExtra\sysinternals\psfile.exe: Verified: Signed Signing date: 8:33 AM 3/30/2023 Publisher: Microsoft Corporation Company: Sysinternals Description: Lists files and directories opened remotely Product: Sysinternals PsFile Prod version: 1.04 File version: 1.04 MachineType: 32-bit MD5: A0C7585C86AB8BFE6D55A2547E7C9382 SHA1: C9088174075B01DCD28046441F67F9A7172D113D PESHA1: B0C81375B7638B33F6081D80D6C28B39A8341950 PE256: A0D253E5360EBC516E4ABA30E69D59D5AC95E43BFDE9202AFCC3F26C157DB0B2 SHA256: 4243DC8B991F5F8B3C0F233CA2110A1E03A1D716C3F51E88FAF1D59B8242D329 IMP: 1ED2F5F2B02CACC8F3A38267975B6895 C:\CFusionExtra\sysinternals\psfile64.exe: Verified: Signed Signing date: 8:31 AM 3/30/2023 Publisher: Microsoft Corporation Company: Sysinternals Description: Lists files and directories opened remotely Product: Sysinternals PsFile Prod version: 1.04 File version: 1.04 MachineType: 64-bit MD5: 880ED8C97E6BDB64A342FAD25094049B SHA1: 253BA984E247C640FA2C6FE1F93CAFDC2D1DF573 PESHA1: 46A120AA89B78A99E1BF23F02C2AF86878801D4A PE256: 2E90834EA122F29EC5657802E8C57B953A5FEF62E56B4B1B5A0C49FDF7CFE729 SHA256: BE922312978A53C92A49FEFD2C9F9CC098767B36F0E4D2E829D24725DF65BC21 IMP: E5F76FA90A1AC194D63D82B31D8420FB C:\CFusionExtra\sysinternals\PsGetsid.exe: Verified: Signed Signing date: 5:41 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Translates SIDs to names and vice versa Product: Sysinternals PsGetSid Prod version: 1.46 File version: 1.46 MachineType: 32-bit MD5: 3D4112B92A8285D8661BBC29125BDBF5 SHA1: 38B53A8767A1C0D7AD774548780E5E071FA0414A PESHA1: 245416E2AB105513FCAF9438159BD2380D9D9E3C PE256: AC21A0FBFD8C9A36830872C4C760BDA38E9D4D7A68939DD12D01DD3960386A71 SHA256: A48AC157609888471BF8578FB8B2AEF6B0068F7E0742FCCF2E0E288B0B2CFDFB IMP: 9DCE7B925F437CDFFE96B118CF300138 C:\CFusionExtra\sysinternals\PsGetsid64.exe: Verified: Signed Signing date: 5:37 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Translates SIDs to names and vice versa Product: Sysinternals PsGetSid Prod version: 1.46 File version: 1.46 MachineType: 64-bit MD5: C2B0F2DE5955AAA313999FF20B675BE4 SHA1: 15EB06D96700387C1EB7214841CF6A1CB667512D PESHA1: D7DB688E88A2809DC9CC3A880157EACEAEB47DD2 PE256: E25ECC90BFAD772D0919012F1F2C073B76F63A1E8E22B0B33940D6C402D33A76 SHA256: 201D8E77CCC2575D910D47042A986480B1DA28CF0033E7EE726AD9D45CCF4DAA IMP: 32D54060B1DBF768DDFE2C3038A10D20 C:\CFusionExtra\sysinternals\PsInfo.exe: Verified: Signed Signing date: 5:48 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Local and remote system information viewer Product: Sysinternals PsInfo Prod version: 1.79 File version: 1.79 MachineType: 32-bit MD5: 2691D7F266050E6849793D4B6661DDDF SHA1: 7F66F109DB5F30E17BC4A6705ACBCACE123C2765 PESHA1: 486B7476D9D56E69F7A5F6338727797F0C781A87 PE256: 7FF7D7E1B2E55E329376C076F90A3D59DC5897B711E9D4EC6708F6E849697F67 SHA256: 951B1B5FD5CB13CDE159CEBC7C60465587E2061363D1D8847AB78B6C4FBA7501 IMP: AD3D06F92D53781231ED31D7B11968C0 C:\CFusionExtra\sysinternals\PsInfo64.exe: Verified: Signed Signing date: 5:43 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Local and remote system information viewer Product: Sysinternals PsInfo Prod version: 1.79 File version: 1.79 MachineType: 64-bit MD5: 86A65CFA9F258B0A46ED54E1AD235078 SHA1: E65D43D47FC1CAB8359906711631BEBA78AB23B5 PESHA1: 3D6BABB7635D189296657F406CC3076D6AEC2E7B PE256: E145D2C62E811E7ED1967C74358AC70B1DC656F2AE9AB4760D75ABD4B86EBFF5 SHA256: DE73B73EEB156F877DE61F4A6975D06759292ED69F31AAF06C9811F3311E03E7 IMP: D32907B6625B89BD2D503E3D54F41AB9 C:\CFusionExtra\sysinternals\pskill.exe: Verified: Signed Signing date: 5:48 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Terminates processes on local or remote systems Product: Sysinternals PsKill Prod version: 1.17 File version: 1.17 MachineType: 32-bit MD5: 5801303C49E5BB612AA55FB8B909A9C9 SHA1: B9CF22418A5C45EDE9FB44680FA7F3D90A1E0BEE PESHA1: 3343436C19F4AB337B29E108B9DA52669BC5BF5D PE256: B19E69FBF045F03A56ECD340B609C0729E4C4842FDE309F1E5EE931F07128F83 SHA256: 5EF168F83B55D2CBD2426AFC5E6FA8161270FA6A2A312831332DC472C95DFA42 IMP: 8A30BE24460F0838196A2B088C183F27 C:\CFusionExtra\sysinternals\pskill64.exe: Verified: Signed Signing date: 5:44 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Terminates processes on local or remote systems Product: Sysinternals PsKill Prod version: 1.17 File version: 1.17 MachineType: 64-bit MD5: BA9345119C1175C96D27370B0D203E70 SHA1: AEB2A53E9C8730C2CBD15D620C001D0501E4BB91 PESHA1: 1D2972F78C5D387BAAFC4952DADC306DDF0ADF85 PE256: 914CD64A80462042BF4C4D19A93DCD6FB244096B9265956D6E15ECC4771E7403 SHA256: 7BA47558C99E18C2C6449BE804B5E765C48D3A70CEAA04C1E0FAE67FF1D7178D IMP: E54DE68B3C8F563F7052D60B420D7670 C:\CFusionExtra\sysinternals\pslist.exe: Verified: Signed Signing date: 8:36 AM 3/30/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Process information lister Product: Sysinternals PsList Prod version: 1.41 File version: 1.41 MachineType: 32-bit MD5: 6C08BAE0981841E0CD22FF0F0E8F7510 SHA1: CAD5355C534CCCF48CA8DF5A1007CC34D37CB619 PESHA1: C7F69694AC7990110BFD06B569BC68A543607431 PE256: D917593955015D337F5A24DFCDA7CBDEBE7560ED21C646348856DD28B3CEBC7E SHA256: ED05F5D462767B3986583188000143F0EB24F7D89605523A28950E72E6B9039A IMP: 5C2AB5C01A2C8EE5199F1A7F701340EE C:\CFusionExtra\sysinternals\pslist64.exe: Verified: Signed Signing date: 8:31 AM 3/30/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Process information lister Product: Sysinternals PsList Prod version: 1.41 File version: 1.41 MachineType: 64-bit MD5: 77BF50713A9EB7B270A73A9797F8DDFE SHA1: 630CCB6BEA18F6224F830216273297AE0BB43718 PESHA1: A981573F77F55E250BD38CA70D49A73E9756F025 PE256: B92841B9CB8E6E0C1256DEB2AB0E2B3EC1C3E84DD03734A34F51A09BA4A0D97B SHA256: D3247F03DCD7B9335344EBBA76A0B92370F32F1CB0E480C734DA52DB2BD8DF60 IMP: B90273415271D9E95441B930BD78C618 C:\CFusionExtra\sysinternals\PsLoggedon.exe: Verified: Signed Signing date: 9:50 AM 6/28/2016 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: See who's logged on Product: Sysinternals PsLoggedon Prod version: 1.35 File version: 1.35 MachineType: 32-bit MD5: E3EA271E748CCDAD6A6D3E692D6F337E SHA1: F02E06BC439A28AAD6DD957DF8D0022F22798A09 PESHA1: 4F653993657A1BFD3E63590C7462BDB362CCD31C PE256: BC74E7FCFDEE152368D70180CD168002F2EEE15E5EB787762561A576CCB39BCF SHA256: D689CB1DBD2E4C06CD15E51A6871C406C595790DDCDCD7DC8D0401C7183720EF IMP: 2D2CEE6D005EEC5676742BA250D53D92 C:\CFusionExtra\sysinternals\PsLoggedon64.exe: Verified: Signed Signing date: 9:48 AM 6/28/2016 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: See who's logged on Product: Sysinternals PsLoggedon Prod version: 1.35 File version: 1.35 MachineType: 64-bit MD5: 07ED30D2343BF8914DAAED872B681118 SHA1: 1F5B5E40C420F64AA8E8DE471367E3DECC9763CD PESHA1: 8BE83555D2510BCFA49AF88DB46A404C8C348F5B PE256: 1F1ECC50780B058CBA3BA4574C07CCCBAED06DA0AF46D1DAC6FB3AAA36F405AD SHA256: FDADB6E15C52C41A31E3C22659DD490D5B616E017D1B1AA6070008CE09ED27EA IMP: E4941A2A5BD3B0E41593AE57BDCEF195 C:\CFusionExtra\sysinternals\psloglist.exe: Verified: Signed Signing date: 5:36 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: local and remote event log viewer Product: Sysinternals PsLogList Prod version: 2.82 File version: 2.82 MachineType: 32-bit MD5: 4F7F8D6C8B22EB5C0C35B29210E2127C SHA1: B03D70220E185124BE9189D979026810D002A6CB PESHA1: B956F51F9DF044E7BC012607DB751107A197271B PE256: D946894F677C55ED20B564AA47871052E0EC54AD524DC687DAE41ABDC536BCAA SHA256: DCDB9BD39B6014434190A9949DEDF633726FDB470E95CC47CDAA47C1964B969F IMP: BC7573D2C2E264BBDEB092984C5474F4 C:\CFusionExtra\sysinternals\psloglist64.exe: Verified: Signed Signing date: 5:34 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: local and remote event log viewer Product: Sysinternals PsLogList Prod version: 2.82 File version: 2.82 MachineType: 64-bit MD5: 14B2F5291036BE454AE2FC762FF6EAAA SHA1: 185C0507011D51D3BF998EA5C4F0618AAE52AE41 PESHA1: D09AB70D96E820EE1698915381CF900F2C9D1766 PE256: 17BC69EDB51B5649EA4D8B127BB4C745BD26E7191E9904027609304B05ECF1A3 SHA256: 5E55B4CAF47A248A10ABD009617684E969DBE5C448D087EE8178262AAAB68636 IMP: E66ACCE85B8F413B2D80E902CFBA5219 C:\CFusionExtra\sysinternals\pspasswd.exe: Verified: Signed Signing date: 5:45 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Local and remote password changer Product: Sysinternals PsPasswd Prod version: 1.25 File version: 1.25 MachineType: 32-bit MD5: 427214D675B6BCE9F273EB2DDE0AEEFC SHA1: 423D9B37EF7155C3C36B71CA7F3E6AE154E212E8 PESHA1: E2AF5A1EDE926D831963EAF9F90961835B577CFA PE256: 20AE9854D4D7E6ABC8183CD1ED04AA48D9488FA575F475B8660500A53D595407 SHA256: 6ED5D50CF9D07DB73EAA92C5405F6B1BF670028C602C605DFA7D4FCB80EF0801 IMP: BEB825A4BA2898DA0E0EB4699252687F C:\CFusionExtra\sysinternals\pspasswd64.exe: Verified: Signed Signing date: 5:43 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Local and remote password changer Product: Sysinternals PsPasswd Prod version: 1.25 File version: 1.25 MachineType: 64-bit MD5: 2A23848AC28D73352BA80584327FF713 SHA1: 4E131910E0080799D86ACEEE036C0E288C0AE6BF PESHA1: 49C27340E1E4FE30A48E775B8B5F6166424498BE PE256: 70D9A847DA4920DA0DE8279615B10FDF8FA125E04B04304EBA7A36CE64892974 SHA256: 8D950068F46A04E77AD6637C680CCCF5D703A1828FBD6BDCA513268AF4F2170F IMP: 368E6F75B2CD054E7534D8AC445F391A C:\CFusionExtra\sysinternals\psping.exe: Verified: Signed Signing date: 5:49 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: PsPing - ping, latency, bandwidth measurement utility Product: Sysinternals PsPing Prod version: 2.12 File version: 2.12 MachineType: 32-bit MD5: 93F162D9E1AE290F47695E71589FD4D4 SHA1: 6E4E76AF6078A0272DD1B24822A82058B98A6026 PESHA1: F074CE94F0CC3358E0A54E6A41502504585CB8B8 PE256: EB9FAA0538B219E472CD34FC02CD5F77B68D4E09887685F40A4625402A55DA77 SHA256: 355B4A82313074999BD8FA1332B1ED00034E63BD2A0D0367E2622F35D75CF140 IMP: 6A7F82C6F198BDB6DD72BFD1ED836C7B C:\CFusionExtra\sysinternals\psping64.exe: Verified: Signed Signing date: 5:46 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: PsPing - ping, latency, bandwidth measurement utility Product: Sysinternals PsPing Prod version: 2.12 File version: 2.12 MachineType: 64-bit MD5: AD7E3DDF557E1DE0170E384031D3A221 SHA1: A57CBD620C3DAD284B5D88D1CF5FA0D2CD44C4B9 PESHA1: B37101FC7C3B155779CD14EC005A1742B204AECF PE256: AB535938EAB60B9D249DAA4274719E3759AEFD16B46C9C16B898303713F2D405 SHA256: D1F718D219930E57794BDADF9DDA61406294B0759038CEF282F7544B44B92285 IMP: 24CCD13A810C618C22DE1EAF21D1FBBB C:\CFusionExtra\sysinternals\PsService.exe: Verified: Signed Signing date: 5:48 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Service information and configuration utility Product: Sysinternals psservice Prod version: 2.26 File version: 2.26 MachineType: 32-bit MD5: 136F9205A5945681EC470B8461DFEE5F SHA1: 1CA7E6AC6128BB1F4E0318A28310525BAF7C67C6 PESHA1: 9530D4B092D36D325CA74FDE5F013381AC322A7E PE256: 8C9A7AD64B1721BCF1B6C76421F624DA72EAD80691C8A3C59D1714E13E9D5956 SHA256: D3A816FE5D545A80E4639B34B90D92D1039EB71EF59E6E81B3C0E043A45B751C IMP: AAA7D15D37857E2F934DA45595B8B029 C:\CFusionExtra\sysinternals\PsService64.exe: Verified: Signed Signing date: 5:46 PM 3/29/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Service information and configuration utility Product: Sysinternals psservice Prod version: 2.26 File version: 2.26 MachineType: 64-bit MD5: 657C2DA84107644A1397D49E0B526F24 SHA1: 5C9EA381169E745D68E717CB7AD4ADBF6AFD6391 PESHA1: 9B2D5302B3E4F0CA1ADFA2888C7F4C654207A459 PE256: 7323E8D8C254AA69F8DDE6EFA193587BFAF37775CC73DCB4A5019E15A6361E19 SHA256: 554F523914CDBAED8B17527170502199C185BD69A41C81102C50DBB0E5E5A78D IMP: 0F2FA98CEDA2F32075297BF5A98D45B8 C:\CFusionExtra\sysinternals\psshutdown.exe: Verified: Signed Signing date: 9:51 AM 3/30/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Shutdown, logoff and power manage local and remote systems Product: Sysinternals PsShutdown Prod version: 2.6 File version: 2.6 MachineType: 32-bit MD5: 31E8E12D02A6CAC9088D89215CF4552C SHA1: 587C934F44EC69520D465E13CA7B3B43DD172A41 PESHA1: 49956B3F08E0C20AC97AE3A20CCD4A4A889AD3E4 PE256: 4CBE4EFE74A01F8847CFF0C96E2C5293BB3E4ED4A781460E0D2CC98A23A6BB27 SHA256: 13FD3AD690C73CF0AD26C6716D4E9D1581B47C22FB7518B1D3BF9CFB8F9E9123 IMP: 6F3DEFA520C038B2AC3D0D132CD7F0CC C:\CFusionExtra\sysinternals\psshutdown64.exe: Verified: Signed Signing date: 9:47 AM 3/30/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Shutdown, logoff and power manage local and remote systems Product: Sysinternals PsShutdown Prod version: 2.6 File version: 2.6 MachineType: 64-bit MD5: B5B4ABC85D5D8C817CE552C3C6A0ABA5 SHA1: 3F4805854201987DD3D7B834CD5A1958D2CD82F5 PESHA1: 583FE61049D6C6EF2DC3B7CB08589E2C358430FC PE256: 3DB55CA1CCE028E2F2A9E47E10E758B12A8311C624D33FA0F96CC5F2D65E4148 SHA256: 4226738489C2A67852D51DBF96574F33E44E509BC265B950D495DA79BB457400 IMP: EA7CC7105D5EBDAC4BE9A38503F7DD74 C:\CFusionExtra\sysinternals\pssuspend.exe: Verified: Signed Signing date: 8:36 AM 3/30/2023 Publisher: Microsoft Corporation Company: Sysinternals Description: Process Suspender Product: Sysinternals PsSuspend Prod version: 1.08 File version: 1.08 MachineType: 32-bit MD5: 1B9F1A75593DFC670FA7C54659AB5796 SHA1: C9F0C40E012F8CFE20B1E5CD6A9A7B078E89A00B PESHA1: 5F04336283697BDDACA784AFE42725BE6CA39CAB PE256: 94B1874B6789C98250BF089B47DC4C8DAD323D6A8A7850B1E5A853E52B076B61 SHA256: 95A922E178075FB771066DB4AB1BD70C7016F794709D514AB1C7F11500F016CD IMP: 32F7A5E0ECD105D509A9D9677D178190 C:\CFusionExtra\sysinternals\pssuspend64.exe: Verified: Signed Signing date: 8:32 AM 3/30/2023 Publisher: Microsoft Corporation Company: Sysinternals Description: Process Suspender Product: Sysinternals PsSuspend Prod version: 1.08 File version: 1.08 MachineType: 64-bit MD5: 6EEEEB93F86C729FAA2280525C699CAF SHA1: 35FCA62D65DAE3B6C4BFE746F04B5077FB5937D3 PESHA1: 2009DC5FD2BFC3D8C62969C74CFF1F49ED4F28AD PE256: 74FBAFF6E5519A630940128373EAC65A78799AD11B35FD66C278E428768F96A5 SHA256: 4BF8FBB7DB583E1AACBF36C5F740D012C8321F221066CC68107031BD8B6BC1EE IMP: 50BBE0B584A6C8BBC1F492AC8CAA2E72 C:\CFusionExtra\sysinternals\Pstools.chm: Verified: Unsigned File date: 10:23 AM 10/1/2012 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 009AC2BE60F92DC2C41B094CE2D3857C SHA1: 2FE7A164B987856721FE43EB174090CF69AFAD54 PESHA1: 2FE7A164B987856721FE43EB174090CF69AFAD54 PE256: 2813B6C07D17D25670163E0F66453B42D2F157BF2E42007806EBC6BB9D114ACC SHA256: 2813B6C07D17D25670163E0F66453B42D2F157BF2E42007806EBC6BB9D114ACC IMP: n/a C:\CFusionExtra\sysinternals\psversion.txt: Verified: Unsigned File date: 10:17 AM 11/6/2007 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 2149051BDB4C98E4BF0EDC7185104E07 SHA1: F5AD734B9751D78FAAA3F1DA4CA3486D9283B5E1 PESHA1: F5AD734B9751D78FAAA3F1DA4CA3486D9283B5E1 PE256: 208469D3238653CC03607C08CDB4B5278EC1FDE1C543B11CC3AE43A8A0E77A20 SHA256: 208469D3238653CC03607C08CDB4B5278EC1FDE1C543B11CC3AE43A8A0E77A20 IMP: n/a C:\CFusionExtra\sysinternals\RAMMap.exe: Verified: Signed Signing date: 3:45 PM 5/6/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: RamMap - physical memory analyzer Product: RamMap Prod version: 1.61 File version: 1.61 MachineType: 32-bit MD5: F8C7E41D1FBE9BEE01FB44244087AE86 SHA1: 342FB0C13F31697C4F032BC51D4083A69E479F59 PESHA1: 2A59461702C6BBF0520B6EF5F4603D617FB33F4E PE256: 61EC31C77522C5DF0346FF9781B0E7BB6AA265E0978A1D9351DEE0CC1FE9AC18 SHA256: 9200237404FC7936ED5854D904907F0AB9A4C689F38F98B49D30599A5498C84D IMP: 42B3A2F550CFA3685C43208B8CCE1150 C:\CFusionExtra\sysinternals\RAMMap64.exe: Verified: Signed Signing date: 3:43 PM 5/6/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: RamMap - physical memory analyzer Product: RamMap Prod version: 1.61 File version: 1.61 MachineType: 64-bit MD5: 633470671CC8035B945F7CCAD2CD4024 SHA1: C3807EAD9F2081D8D92BF25EC7FDB8A777C837D6 PESHA1: 97B0F8E803D39F31FA1EFABEF697C0DC5F3776A1 PE256: E2F2DCC499AD821F5ABFB375E9E0F7C40E8F98E23183A4BACB0549CCE586F0EF SHA256: F80852A5AB710DDE6489760B3FBA6907BA63A7D9704DD2FC58B387C472541BF0 IMP: 602C1E41C152BFA37542E045C7A387C1 C:\CFusionExtra\sysinternals\RDCMan.exe: Verified: Signed Signing date: 9:32 AM 7/17/2023 Publisher: Microsoft Corporation Company: Microsoft Description: Remote Desktop Connection Manager Product: Remote Desktop Connection Manager Prod version: 2.93.1431.0 File version: 2.93.1431.0 MachineType: 32-bit MD5: 3D756DC27945A345DE1F2ED0EA0940B1 SHA1: AF536D4C3366B58594A6D15D3FC51715BBAE933C PESHA1: 20D87538CF0571CC8B8363E48245FF93D0A58245 PE256: CD22A62F5AAEDA3EDA7D0DB1FE591101C577328989228EF6644F9EC9000640B6 SHA256: D11CF847DF9DAC6EDA1891022986729EFE690B3DB8E6F876BEF4E7A6AFFFC759 IMP: F34D5F2D4577ED6D9CEEC516C1F5A744 C:\CFusionExtra\sysinternals\readme.txt: Verified: Unsigned File date: 1:07 PM 12/7/2011 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 81000E8B26992B0B590B491A1BBAABBC SHA1: 44946FD1DF84F9B7616F980A4CE9ECCA99A5852D PESHA1: 44946FD1DF84F9B7616F980A4CE9ECCA99A5852D PE256: 0F2FF4D516AA1D265C13805CEBC2FE9042556C1BB7E8EB2E6C289D5255242AC9 SHA256: 0F2FF4D516AA1D265C13805CEBC2FE9042556C1BB7E8EB2E6C289D5255242AC9 IMP: n/a C:\CFusionExtra\sysinternals\RegDelNull.exe: Verified: Signed Signing date: 4:37 PM 6/30/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Delete Registry keys with embedded Nulls Product: Sysinternals RegDelNull Prod version: 1.11 File version: 1.11 MachineType: 32-bit MD5: BCB5CCFC0A924A222FB88BA35BC623B9 SHA1: 68E4A057BBEFE71A02D864223167BABD57DFF28E PESHA1: 3B37509FF24E901B3239DB0756D1772F36569DFE PE256: D82A3E738228D5288B24D56A8672DD97B4FC3AB7C9EDDE1AFFFD778027C0BFC4 SHA256: E39DA31D87C447CFA9C5B1251DF92FF418F9E873997E76CCAB1CCCA72C9D65D9 IMP: 3139255730B05278872883E46827DE09 C:\CFusionExtra\sysinternals\RegDelNull64.exe: Verified: Signed Signing date: 4:35 PM 6/30/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Delete Registry keys with embedded Nulls Product: Sysinternals RegDelNull Prod version: 1.11 File version: 1.11 MachineType: 64-bit MD5: C1229FA275258FA7DEEB14DAD758646A SHA1: 331EBD7F0708224B32E41E26C8B32DF3B2C607A3 PESHA1: 3604D0F4F8A12A198D0D90FB607B30C8A93F6A0E PE256: 16AC570CCC857E7ED168106940D428EB211EC05D3973FB4A1EB798E333C75860 SHA256: F80D7E9727A1BE93DFA035BF0427FB2DEACD01CBE97CD75E218E1E772E21DF10 IMP: C58F62F2683389DEB81E1A7A9C1BB05E C:\CFusionExtra\sysinternals\regjump.exe: Verified: Signed Signing date: 11:08 AM 10/7/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Jumps in Regedit Product: Sysinternals Regjump Prod version: 1.11 File version: 1.11 MachineType: 32-bit MD5: 0754F552BF43D0EA03E7FFAE3764F76C SHA1: 003A0CEE6FDCDBA86CCD2241213D827F462FCB7C PESHA1: DCE5D2B8F3627D8C887597FE920E38D5BBA9CB9D PE256: 486397C1D85E93617A70DFA2D8EB357E23FF5ED999748B24BEC6D6A013944C52 SHA256: D9B8B767E7DD8253D4EB6883ED168F0C6AC89A7EA589A67D9FAD1D04FB9ACBAB IMP: E80B2E3B401F381B46C54E6390FD1833 C:\CFusionExtra\sysinternals\RootkitRevealer.chm: Verified: Unsigned File date: 4:19 PM 12/7/2005 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: F0F3E20B031C0C87586B8DA9020195E8 SHA1: CC570F58C79EE1C54E8879FFC890033D74A748BA PESHA1: CC570F58C79EE1C54E8879FFC890033D74A748BA PE256: 637D4D96F73A2EA2F1F22F36FA39345FC0AE8AECD16E5F6B5A2B5F0553A59B1B SHA256: 637D4D96F73A2EA2F1F22F36FA39345FC0AE8AECD16E5F6B5A2B5F0553A59B1B IMP: n/a C:\CFusionExtra\sysinternals\RootkitRevealer.exe: Verified: Signed Signing date: 2:07 PM 11/1/2006 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Rootkit detection utility Product: Sysinternals Rootkitrevealer Prod version: 1.70 File version: 1.70 MachineType: 32-bit MD5: EE738FE9BCDD605821002CEC8C7206DB SHA1: D39E8A3FE92ADC7D7FBC5293EDF8A7B965484A59 PESHA1: 01C2D895BA793268575449ABF3E2CE9601B8EDFC PE256: 1B871F506720A8D3A81433A9B102200637AE6BE0900394515F811113F737E8EB SHA256: 0B3DFD1D00A0D5DA5A88EE2B4734E817EE9C9B13F61EB04DC81660C22051FC27 IMP: C2971E27E558678B614D78284A46F77E C:\CFusionExtra\sysinternals\ru.exe: Verified: Signed Signing date: 5:16 PM 4/30/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Registry size usage reporter Product: Sysinternals Ru Prod version: 1.2 File version: 1.2 MachineType: 32-bit MD5: 4F8F031E1D712E3DF9D4E4A4DFDFCF03 SHA1: 75BA8F746B10089F549ABD30A87B317403E1A0B9 PESHA1: F84FDE2A8A32B1C7A89BE30993B9D92F0137C2DC PE256: 474F0B200CC1A5AF98DB1DDA08B21FDB507DCCC7A43866873E36E8CFBDECBCE2 SHA256: 85AA361EF398B441D0B95E46AD354EC734A2CF2B482ACF163807641D596A94AE IMP: 754456476D1F9F89213E05AA2F4A558A C:\CFusionExtra\sysinternals\ru64.exe: Verified: Signed Signing date: 5:15 PM 4/30/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Registry size usage reporter Product: Sysinternals Ru Prod version: 1.2 File version: 1.2 MachineType: 64-bit MD5: DECF51343743702EDF309E8EBAC4542A SHA1: 46C6DB6E6A15B8FE3582BA50FFE77BC48DBE9593 PESHA1: 959B811C26AB93C2E9E17CEBA5FA0A3E3566DE2B PE256: 861F64032600B7E9A36AD934C4A1F65E29FE316FFD6766ED7F04EB25E157AA86 SHA256: C48A4859AC614ED008BEC1CEE58E85EC23272538A4ED73823A2050E2E048E0FC IMP: 883DF0A8FE04D10C456FA1A0D219F93C C:\CFusionExtra\sysinternals\sdelete.exe: Verified: Signed Signing date: 11:34 AM 9/28/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Secure file delete Product: Sysinternals Sdelete Prod version: 2.05 File version: 2.05 MachineType: 32-bit MD5: 9B7C326B2A662F478DA2C515777A06EB SHA1: 8D5992B142E0A0E580513A0F29C87A0B8B97842E PESHA1: 18DE696BC4B6A590C72E231E752AED07AF3BCD86 PE256: 9A8B8CABBEB3EE965BE95B535F203D4311C5BB326C1511BDCC453F573C78BD00 SHA256: A39D548BB5B0EEC77B8259B2A7A0C9E7CA108D16D1FC6DF6EBEA30F3B0918B30 IMP: 4274420E3274A647D7C521BD5A1C5A64 C:\CFusionExtra\sysinternals\sdelete64.exe: Verified: Signed Signing date: 11:28 AM 9/28/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Secure file delete Product: Sysinternals Sdelete Prod version: 2.05 File version: 2.05 MachineType: 64-bit MD5: 6A4E049D8C497D350A7BD54DFFF99808 SHA1: 7F1D32424C961542AE172C5B8C1611291C30FC4F PESHA1: 773A867FF4974A9B21016EDE454C032B627044CD PE256: B41EA146CD173AB62DE7C2883755E74F6C079F9D82361EABD62347DF74B76EFB SHA256: 59E5AE1E99C6A4CCC01E8ABDC2534210EC5FAA945754A89524B06381DA8C20A1 IMP: 730EAA8AFC04F17C114E03EE980E8F19 C:\CFusionExtra\sysinternals\ShareEnum.exe: Verified: Signed Signing date: 10:13 AM 10/11/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Allows to lock down file shares in network Product: Sysinternals ShareEnum Prod version: 1.61 File version: 1.61 MachineType: 32-bit MD5: 51E7D805454332A325C6046F9F8B6474 SHA1: 907B9B26996D3BB7C7AFFF2BC1EE678B404CD007 PESHA1: 831D59190FBD2717F2C8538633D1213FBA1128A8 PE256: DD0F891741DC8257554242B70A7AE3EA722D51FD82F05385CF3656ED063C980C SHA256: 24193DAF52407A536F63E2C74EB6FC590E8502B059CE14D7D79584CAE5A00940 IMP: 0827B1B6B65CC6701E5F70E868D62AA5 C:\CFusionExtra\sysinternals\ShareEnum64.exe: Verified: Signed Signing date: 10:12 AM 10/11/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Allows to lock down file shares in network Product: Sysinternals ShareEnum Prod version: 1.61 File version: 1.61 MachineType: 64-bit MD5: 8F4C251A46184494CE86AC21ABED3424 SHA1: AA7F345450622DAC0742257129F3DCEE52FA0EC1 PESHA1: 1FA3391973D27A912A7A812C7223118A10E841F9 PE256: D5A2CA9422716DDB9ED8328D6F32E80F62C7546EC21A5451A3D61C11BB225A98 SHA256: 5DE2FE59BBC844D958BED9AD27C4BF09D92342B3607059D5598BFE9D86F9395A IMP: 6F91A79CF7C2B0946291CBED2D12C127 C:\CFusionExtra\sysinternals\ShellRunas.exe: Verified: Signed Signing date: 1:13 PM 10/12/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Run as different user Product: Sysinternals ShellRunAs Prod version: 1.02 File version: 1.02 MachineType: 32-bit MD5: 97B14304761A2BAA620007B2DF8D6547 SHA1: 92628B4F54630CC93FFB560279C58BD3116ED955 PESHA1: B3716CE208783DB2F036414E52C5F78492129545 PE256: BEA5FBC297A2EFADF2200397C4D9DE3B3113C42D39E6C17C950F20BEDA6709CC SHA256: D7D1EBAC76FD713759B996E9B8724FAD508717A6C385DD8E04D0D756DC9A3DC5 IMP: 8BB695CC87441034B0CEE42E4E553DE2 C:\CFusionExtra\sysinternals\sigcheck.exe: Verified: Signed Signing date: 7:54 AM 7/18/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: File version and signature viewer Product: Sysinternals Sigcheck Prod version: 2.90 File version: 2.90 MachineType: 32-bit MD5: E1ABD0C9E37D96346DE222176C4FD2AE SHA1: 75BE04D4ADC55551FACEB6514AFD369EF8FE99E6 PESHA1: 9514C871BB8EE06D0BA1A0A050B626333569B604 PE256: C8361AEC219D230E6ABA29521F523E79CAC271F3CE45418D80681438DCDBEDC0 SHA256: 4FE9A2BD4B160A5352333D00D0B0C10F13685AF7ACDB48E9E9D0C3877A19EED4 IMP: 38D879C4CB89623EE891A8398EA8CFDC C:\CFusionExtra\sysinternals\sigcheck64.exe: Verified: Signed Signing date: 7:52 AM 7/18/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: File version and signature viewer Product: Sysinternals Sigcheck Prod version: 2.90 File version: 2.90 MachineType: 64-bit MD5: 32FEE0AFF79CCE5F14A9E6B03C08C019 SHA1: E1579E0BDD5AF494E59B817BABA2F4BDE5C4AF65 PESHA1: F56644FF9CCBEE1221888A070B0EA41EF180225C PE256: D13616227D305C3B2ADB65E6F44DD2A1B8972E14AA224F3CD23139014E960A4A SHA256: 5D9E06BA65BB4D365E98FBB468F44FA8926F05984BF1A77EC7B1DF19C43DC5EF IMP: 025C44399D2713A669B700D79B3832DD C:\CFusionExtra\sysinternals\streams.exe: Verified: Signed Signing date: 4:55 PM 4/30/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Reveal NTFS alternate streams. Product: Sysinternals Streams Prod version: 1.60 File version: 1.60 MachineType: 32-bit MD5: AAF553D0591FC515265078B4FF6EE8D2 SHA1: 9C4603BA02CF751B583549CB12AC83D5A37117A4 PESHA1: 38A47B52623E2F2FAE42E4C7D0A0EE788C347A9F PE256: BC43DD8B23F3A2635DD24F9BA798871BEC9B570956FFF8E2580E29426A42448F SHA256: F0E8BDBF4F75C13FA55EB983CA9380CE5DA0AC0FDC9A8F02D82446FAB664FE96 IMP: 2BBED49DEAAC0A22468BEB62FDFCAAAE C:\CFusionExtra\sysinternals\streams64.exe: Verified: Signed Signing date: 4:53 PM 4/30/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Reveal NTFS alternate streams. Product: Sysinternals Streams Prod version: 1.60 File version: 1.60 MachineType: 64-bit MD5: FF73C9CB2FF29F0AF030224840C1C451 SHA1: 62B176DE99D918AA72798314C882CDC95C16BAE9 PESHA1: D836D15A2C051F6A6DAC9349BBDD826EAF5506B6 PE256: F09CBC3E77623D93412AF8B2D4B61406CA6B7ED0BA415D653DE153C9C324A483 SHA256: A243C44FE32D9AFAFB7FEC5C6DA2F133BF605563E068A95CC5043DE2D9E50257 IMP: C0D5D2F94119736B1DA483C808E6BC48 C:\CFusionExtra\sysinternals\strings.exe: Verified: Signed Signing date: 4:25 AM 6/22/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Search for ANSI and Unicode strings in binary images. Product: Sysinternals Strings Prod version: 2.54 File version: 2.54 MachineType: 32-bit MD5: 818A6B4770D7090CFA60D53E4FCB854A SHA1: 9EFC50EDF5A7C92D51503C78EFBE755313871E7B PESHA1: C1DF4680545400F3710686EA9773CBDB9970841C PE256: 0FFD5E4EC6392F29F2777D8203215B2A2DA5F4D5619ADC20ED1960FFE602690E SHA256: A7553D77EDCA85BEC980E38E69BF0E9F36962F20BE0EE759E9A96030D519C5A0 IMP: 03A0E8DA139A5EED63CD002618EB6590 C:\CFusionExtra\sysinternals\strings64.exe: Verified: Signed Signing date: 4:23 AM 6/22/2021 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Search for ANSI and Unicode strings in binary images. Product: Sysinternals Strings Prod version: 2.54 File version: 2.54 MachineType: 64-bit MD5: E911A217D43FF6C453785E5606B46CE5 SHA1: 510C712A3AE8F376070438618A50C7399EF8B0DD PESHA1: A3441819C1F2D66770BA9FC4160EC3DE2F740EB3 PE256: B46997DC046D7E383CEE7C0930833F38B34C7C9B001D7CD3E82DF72668770AF6 SHA256: 05DBB43499BCFF44424C7AC2D987EA9E9742CD90AFE360E84BA0BCCADE17F71B IMP: 4D936B630620FF7FC59DA22B1206636E C:\CFusionExtra\sysinternals\sync.exe: Verified: Signed Signing date: 4:45 PM 4/30/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Flush cached data to disk. Product: Sysinternals Sync Prod version: 2.2 File version: 2.2 MachineType: 32-bit MD5: 8A13A3E311E2B4EAF8EBE26CA2349A0E SHA1: 0CFF0598EAEFDE1783370CCE39C7A7308BB4786C PESHA1: AE1DB7ED05EA202447591A49C138D9A4CDC531F3 PE256: 7D5AE0242EA9026DDB94144B65B7E65D99416C094A0D4C755EC7EEDE09030120 SHA256: 2CD0A14D50EC5C989627DF57CAFB78F0C43D7BFBCDA1D59F2199E5D6CE053ECD IMP: AF94C5E77B726CC4352DA35DEBB2E184 C:\CFusionExtra\sysinternals\sync64.exe: Verified: Signed Signing date: 4:44 PM 4/30/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Flush cached data to disk. Product: Sysinternals Sync Prod version: 2.2 File version: 2.2 MachineType: 64-bit MD5: 45F3D0B8841CE1A52D81B3FB4222D17E SHA1: 2F2080350821E8A0D53A194DBE4C8D17BFF1AAC1 PESHA1: 2B5D6A36224D60E4E1208399E9DEE83FBD0AFA9F PE256: 85C0EAA7891609337ECB697E41C5E454F73FD2BAE1FFA46D15BC39FAAFEAB323 SHA256: 27038CB10080D92915C08D08F3EC37A85BED87BDB05D47B90425917B00F4654F IMP: 99197F3296550481A848EA8D4E097487 C:\CFusionExtra\sysinternals\Sysmon.exe: Verified: Signed Signing date: 5:26 AM 2/13/2024 Publisher: Microsoft Windows Publisher Company: Sysinternals - www.sysinternals.com Description: System activity monitor Product: Sysinternals Sysmon Prod version: 15.14 File version: 15.14 MachineType: 32-bit MD5: 4BC35649F9D9AEC62490376C47B6C143 SHA1: 005A057B79EADED9178FAFB0DF9EED7DDEB3E329 PESHA1: 25D92C8FDAD4A6DE19CC68AC966A7523CAF16CC5 PE256: 7C539CFF92A5ECBB732928A37183E7521B1B603AC8A2B0205C5BE5045FCD58BE SHA256: 71485D919102387E71F20DDC809BD849B7694D2B3F2CDD45A15A4EF9F9C788F2 IMP: 585F6F71377CDF184B4A45BA1F63FD55 C:\CFusionExtra\sysinternals\Sysmon64.exe: Verified: Signed Signing date: 5:16 AM 2/13/2024 Publisher: Microsoft Windows Publisher Company: Sysinternals - www.sysinternals.com Description: System activity monitor Product: Sysinternals Sysmon Prod version: 15.14 File version: 15.14 MachineType: 64-bit MD5: 99C68A0A2EE8E42EBB52E1C84F80B730 SHA1: 2F707CC7A635CA9824EBE825ADE3BAA77BC5874C PESHA1: 7C005189A8A4AF799F98A69307D2CD5BCAA9B389 PE256: C231938BD781938994F6F96CEB2A745BCC2D81EAD4E300C83239650690D70494 SHA256: 39B094613132377BC236F4AD940A3E02C544F86347C0179A9425EDC1BD3B85CD IMP: A039666F8D08DD16E0909469DA998438 C:\CFusionExtra\sysinternals\Tcpvcon.exe: Verified: Signed Signing date: 9:42 AM 4/6/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals TcpVcon Product: TcpVcon Prod version: 4.19 File version: 4.19 MachineType: 32-bit MD5: 356ED0FC156993551A484964F99E65B8 SHA1: 6B936B5A5B4451BC4F147DAD6CD2A7072A799D03 PESHA1: 15DDD9C769484E83D898F92B555EE50925634F05 PE256: 47FD252A21BB7E0AD285038ADF72208E607A8CDA51D80853B7B1EFE9F0CA96E3 SHA256: 37621BDAC3CED1103278E8C0EF7B73DFA1CBE9BECFBAFF421A46FBC78D636B5F IMP: 72C1A86648092F912D3D16A4A8E5EBE4 C:\CFusionExtra\sysinternals\tcpvcon64.exe: Verified: Signed Signing date: 9:40 AM 4/6/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals TcpVcon Product: TcpVcon Prod version: 4.19 File version: 4.19 MachineType: 64-bit MD5: 93D2AEA4B5923F7B63A4EC2EF3DD9C68 SHA1: 402B0D55F36E67153939B5EC9A91493E2671B9DB PESHA1: 6C4885829F2B1A41B7FF180FCBF3DD1A73C9B81B PE256: A61CBF559467BCA137B5A07D2C5B79EBDC41E87881AF8B6A8EF9AC875A850F15 SHA256: F9FDC027050D59608062A95C41E3965E3800FD5A91F35DE080A432D62BD129C1 IMP: B56BD544C09E1C797FA8F7DDC6706C38 C:\CFusionExtra\sysinternals\tcpview.chm: Verified: Unsigned File date: 6:10 PM 4/11/2023 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: C2CDF24AC6324CEAE9F1E0414A4486F2 SHA1: A211580283ED53896C0C789C1F2A363DC5A1D2B0 PESHA1: A211580283ED53896C0C789C1F2A363DC5A1D2B0 PE256: 37B11010A35761703E914DFD88FB26776DBFB29531934244A3BAB7B6219A764F SHA256: 37B11010A35761703E914DFD88FB26776DBFB29531934244A3BAB7B6219A764F IMP: n/a C:\CFusionExtra\sysinternals\Tcpview.exe: Verified: Signed Signing date: 9:42 AM 4/6/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals TcpView Product: TcpView Prod version: 4.19 File version: 4.19 MachineType: 32-bit MD5: 7CE89829F9FB955DC377529C461852FD SHA1: 8B14F5345BFCFAC08C31C284C1A0EEE2CD53BCFB PESHA1: 8B5628509C5CDFAC8313CE9AC00651E8DAD931DF PE256: 4D8035CD5F63F07B4B3B13540AEC8B555D2731835C1B44FE72DCED36957ACEB3 SHA256: 9775B4BBE23B8EB93727EFE0A6D0B160AE5132A10B223F43200499CF0051A18F IMP: B49357CA9F479242C82CDA47CCB11321 C:\CFusionExtra\sysinternals\TCPVIEW.HLP: Verified: Unsigned File date: 2:13 PM 9/2/2002 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: C183C33BFFE69A1B69C8CD23F736AC21 SHA1: B869CF04285FDB4F8B69D3ADB686716ECBFA3FBD PESHA1: B869CF04285FDB4F8B69D3ADB686716ECBFA3FBD PE256: D9C7EE2F08B944466D81B8D87BF645FB91F219B143FB3F2BB1A38B9384357EA6 SHA256: D9C7EE2F08B944466D81B8D87BF645FB91F219B143FB3F2BB1A38B9384357EA6 IMP: n/a C:\CFusionExtra\sysinternals\tcpview64.exe: Verified: Signed Signing date: 9:40 AM 4/6/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals TcpView Product: TcpView Prod version: 4.19 File version: 4.19 MachineType: 64-bit MD5: E6A59B12C9FF25259178F5645B8749B1 SHA1: E59DC87C158BB02690E577D3D1BDB169CF89EEE6 PESHA1: A5CC9A1FFB4B460AB5D766A5A77C8F2B4B64FBE8 PE256: A1A53E7D0B83E99EC9681D6C9F1AFF88746529D5251F57EFB1A3345684D58EB5 SHA256: 0CBCB7EC4A042622B0D9D91B18F908E4208E4725EE1FA74A3555C4DCB622CFC1 IMP: C928863939B9BC9B79E9EEA80B207D70 C:\CFusionExtra\sysinternals\Testlimit.exe: Verified: Signed Signing date: 3:39 PM 11/17/2016 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Test Windows Limits Product: Sysinternals Testlimit Prod version: 5.24 File version: 5.24 MachineType: 32-bit MD5: 3842204E96C9E70987B2CCD68FF6C502 SHA1: ABE651E98F2EDD2DC4449E66EEE7E37C733E2E50 PESHA1: A58C77FD6F1D415A1DCD56FB65AD1073FBF06BE3 PE256: 5805B2EBE7BD89B69E8EFD732F68A7454A04FB2FC804D5663774501F964C3B10 SHA256: 81CE87149A14C466738903B6180D9B79EC8D3005C137870A05DAFA815714D394 IMP: 5B0D2C8A351C6D461AD97A49997CF8BA C:\CFusionExtra\sysinternals\Testlimit64.exe: Verified: Signed Signing date: 3:37 PM 11/17/2016 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Test Windows Limits Product: Sysinternals Testlimit Prod version: 5.24 File version: 5.24 MachineType: 64-bit MD5: 110197E4076BCD7CDC97066F73566EC0 SHA1: 14412A4188C4FF8DB5EFA03B4CE5CC4C55C8CF39 PESHA1: 12296CE3E0DBEC2FBEAA0DC437CE68914B4BEC83 PE256: 2BBA1ECEB07FE261129FF67C4C4916157CCA14106C923C6D385A413227E58C3C SHA256: F1564B3C3EEE87D62EF04CCF2C6B453020D3547FAA2CCC5C9E2CEF94FE659F2F IMP: 6CAFE31FAA06152D26FAB31DE1C700B8 C:\CFusionExtra\sysinternals\Vmmap.chm: Verified: Unsigned File date: 4:50 PM 7/26/2023 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 46B38747311387E640B4322F6C03137C SHA1: 8A2CE0A73BEFF8A74F4E6EBEB106DBBA3DB536E6 PESHA1: 8A2CE0A73BEFF8A74F4E6EBEB106DBBA3DB536E6 PE256: 3A7618D52C9C0B50DE7E9D263FD2AFC017D0D446393263D8853453E15D00F551 SHA256: 3A7618D52C9C0B50DE7E9D263FD2AFC017D0D446393263D8853453E15D00F551 IMP: n/a C:\CFusionExtra\sysinternals\vmmap.exe: Verified: Signed Signing date: 9:46 AM 10/18/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Vmmap - process memory analyzer Product: Vmmap Prod version: 3.4 File version: 3.4 MachineType: 32-bit MD5: 37B52B8F3EF93FE869C98B2A4E63E145 SHA1: 9577D32B82CF000F1CFC4252DCFE98B769DB3591 PESHA1: 2BA279D578309760EBC60A65D0A6DAF09E600690 PE256: 9F6F6F9ECE71BE8511AA24D9C8D0CFEF81EEA1FD422FB4BD65529668DCAA10B5 SHA256: A834987F7B6098027E3392366F3985F5644BBE7396406E2A43E5688DDC00BBDF IMP: C7E1E07C45DCC3152BE6002D0E9BE64A C:\CFusionExtra\sysinternals\vmmap64.exe: Verified: Signed Signing date: 9:38 AM 10/18/2023 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Vmmap - process memory analyzer Product: Vmmap Prod version: 3.4 File version: 3.4 MachineType: 64-bit MD5: 8F28087D8D0E716368314C2F1A159280 SHA1: 7E383AE0F632C02EF98168B6C1A33FD449D6C393 PESHA1: 853B49CB77B40BA96EE0DD1F56AB8FDE3ACB52CE PE256: 97A767FF8E0FFBD18E098E0E822D701574CEC7FB90F517CD8737407BF4B1BC48 SHA256: 0B3731C524E6BA716F15087D85EAE7E6225B6B51D4AE2FA6C142FF1523F57046 IMP: F8F4A11BA928AD759CCD74A6AA21FDD9 C:\CFusionExtra\sysinternals\Volumeid.exe: Verified: Signed Signing date: 7:16 PM 6/12/2016 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Set disk volume id Product: Sysinternals VolumeId Prod version: 2.1 File version: 2.1 MachineType: 32-bit MD5: 4D867033B27C8A603DE4885B449C4923 SHA1: F1ACE1A241BAB6EFB3C7059A68B6E9BBE258DA83 PESHA1: 0B5924995412F4C9D5039A1B010C8829CD1CF010 PE256: 31E84624B95C81155DA7F11AAB8F86BCB4C80E61439D613448D823FCF3C12644 SHA256: 22A2484D7FA799E6E71E310141614884F3BC8DAD8AC749B6F1C475B5398A72F3 IMP: 196B8047C609CCADCE7FD294C9A3E6A2 C:\CFusionExtra\sysinternals\Volumeid64.exe: Verified: Signed Signing date: 7:14 PM 6/12/2016 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Set disk volume id Product: Sysinternals VolumeId Prod version: 2.1 File version: 2.1 MachineType: 64-bit MD5: 81A45F1A91448313B76D2E6D5308AA7A SHA1: 0D615343D5DE03DA03BCE52E11B233093B404083 PESHA1: 25F38149D750AD699FDA991845E2BD847C664CA4 PE256: 65979C4BC056293C65681DC851CC906A9743FED991A6DB5CB95C478EBF737BF7 SHA256: FB0D02EA26BB1E5DF5A07147931CAF1AE3D7D1D9B4D83F168B678E7F3A1C0ECD IMP: 735AED1002EE8FF1BE0E1DEE668E8B0D C:\CFusionExtra\sysinternals\whois.exe: Verified: Signed Signing date: 9:38 AM 4/6/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Domain information lookup Product: Sysinternals Whois Prod version: 1.21 File version: 1.21 MachineType: 32-bit MD5: CC15CEBF5FF64EA1727B4DE5F3210328 SHA1: A33FB1E1E723F06FE3300DFBE731A71C297C38A1 PESHA1: 826FD7F5BA20106C4007ECAA1DC90A1D6C993C90 PE256: 9595C643C605B028AF9F20136AC4BA30985E1A830B854ADD9573B7C96B1348AD SHA256: EA845B43C323E35DF041B8914A520F1D9643E3689454AB3049C2103458A0142D IMP: 0B29BD01E42EB3C976398C7D94126E64 C:\CFusionExtra\sysinternals\whois64.exe: Verified: Signed Signing date: 9:37 AM 4/6/2020 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Domain information lookup Product: Sysinternals Whois Prod version: 1.21 File version: 1.21 MachineType: 64-bit MD5: 8DD9E6EC7B140CE8DF8621529CB33E16 SHA1: 4CA099288AFF1CDDAAA7233831BBC0E6F4F42D8D PESHA1: D1FFCA0EE1FF4018808B1C21CAE25411933BB3A1 PE256: 6CA9A30D8E48BDBC768AD3976F84321788DB822C4B7AC79E488EADB76F6CAA08 SHA256: 0797B9F6E0281D8F31791D8F92B375D1074FF7C68266F9372AB54F26B9DCDD3C IMP: 79DAADC0F542259DBB60D203AF99B225 C:\CFusionExtra\sysinternals\Winobj.exe: Verified: Signed Signing date: 11:23 PM 1/26/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals WinObj Product: WinObj Prod version: 3.14 File version: 3.14 MachineType: 32-bit MD5: 9E81410ABD780D6698EACE1151ED53EF SHA1: 17372BC309823ABA2B2C3F62A1CB52AA45A92E40 PESHA1: 27F76340D4CDDF2AD52EEF23DB489B61688B0034 PE256: 5532116BB05B0B34ABDDCDBED5E7AC8E48216530C1D2FB80496BCF223447F5CD SHA256: C8313C8EA55733451A27DD43B66F90B27FF7CEE5AB207C6826387A9B79C8F8A7 IMP: 5D2F7B01308E94C361A46BE0512F190E C:\CFusionExtra\sysinternals\WINOBJ.HLP: Verified: Unsigned File date: 12:26 PM 12/30/1999 Publisher: n/a Company: n/a Description: n/a Product: n/a Prod version: n/a File version: n/a MachineType: n/a MD5: 52C9916A910087F024F6B34A445CD529 SHA1: 8F2AF52423FCD3FD55C1C188782CFB65A8298265 PESHA1: 8F2AF52423FCD3FD55C1C188782CFB65A8298265 PE256: 3541C0BC3C682552988BE4823A3D3656DE95D4D83078D53435DDAB407F7313A3 SHA256: 3541C0BC3C682552988BE4823A3D3656DE95D4D83078D53435DDAB407F7313A3 IMP: n/a C:\CFusionExtra\sysinternals\Winobj64.exe: Verified: Signed Signing date: 11:21 PM 1/26/2022 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals WinObj Product: WinObj Prod version: 3.14 File version: 3.14 MachineType: 64-bit MD5: 7F7B396B4FC5929DCC53576E34B2AAA7 SHA1: 9B27F3AEB3ADEB42ACA869EC673FEEAF1F640781 PESHA1: 9A81B66275E701969D19B940FBE4194AE0184CF7 PE256: 093FC32A4DC1BA5139B61A657FDB97FC2CFB8665D949E36B7ED9E7FA7F4F6DDF SHA256: E2A2A818AB71C388FA2E4D4AF6A1ABBEB32C9FCBAA22EC7E7C0CC8A044639662 IMP: C756B7086475DD0BE56A0C6BBBB41D73 C:\CFusionExtra\sysinternals\ZoomIt.exe: Verified: Signed Signing date: 6:41 PM 2/6/2024 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals Screen Magnifier Product: Sysinternals ZoomIt Prod version: 8.01 File version: 8.01 MachineType: 32-bit MD5: 762BB5E31673B0C9121F17752F6A9AF4 SHA1: 55EC3CA1B65B583EEB637F406667F3B112543279 PESHA1: 4DA404B814DAC78224C6B751A2B9B6B79C50344B PE256: 1284370023E3D1CAF03FDEB0F1CE1094B13BCC8886C8509484F49B38CA5ACE4C SHA256: 51D2EC0948AA2E18B6019D6EC81A2C1E7688FDFF301438BA894C491B25CE3328 IMP: F1EDF524BFB066401B5D21F7DB3203E0 C:\CFusionExtra\sysinternals\ZoomIt64.exe: Verified: Signed Signing date: 6:37 PM 2/6/2024 Publisher: Microsoft Corporation Company: Sysinternals - www.sysinternals.com Description: Sysinternals Screen Magnifier Product: Sysinternals ZoomIt Prod version: 8.01 File version: 8.01 MachineType: 64-bit MD5: D56367A6C7C36AAE95B97492F6C52CFD SHA1: EE49A362C53B8929877183C290AF6C3F22162DFB PESHA1: 6E0AAB97FA6B01966FC95EB2AED62EE9DD4DDFF6 PE256: F81B23C399370217A4C41931072B638B7156DB5ACF7DD1C8F451DB71D76F3D08 SHA256: FF58943FBB5FD97A1246E1E2A34CB1A630804893DEB6C06E28D31614FAAA58A0 IMP: 0FD7E3EE519BC08EC895B789AD056548 ```