here is the results:
C:\Windows\system32>REG QUERY HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WIN
EVT\Publishers\{e23b33b0-c8c9-472c-a5f9-f2bdfea0f156} /S
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{
e23b33b0-c8c9-472c-a5f9-f2bdfea0f156}
(Standard) REG_SZ Microsoft-Windows-Security-SPP
ResourceFileName REG_EXPAND_SZ %windir%\system32\sppsvc.exe
MessageFileName REG_EXPAND_SZ %windir%\system32\sppsvc.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{
e23b33b0-c8c9-472c-a5f9-f2bdfea0f156}\ChannelReferences
Count REG_DWORD 0x1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{
e23b33b0-c8c9-472c-a5f9-f2bdfea0f156}\ChannelReferences\0
(Standard) REG_SZ Microsoft-Windows-Security-SPP/Perf
Id REG_DWORD 0x10
Flags REG_DWORD 0x0
C:\Windows\system32>REG QUERY HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Dia
gnostics\Performance\Resolvers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Diagnostics\Perform
ance\Resolvers
SystemBinariesList REG_EXPAND_SZ win32k.sys:winlogon.exe:EXPLORER.EXE:
CSRSS.Exe:dwm.exe:logon.scr:logonui.exe:lsass.exe:lsm.exe:ntkrpamp.exe:ntoskrnl.
exe:RUNDLL32.EXE:services.exe:sppsvc.exe:smss.exe:spoolsv.exe:svchost.exe:tasken
g.exe:WinInit.exe:WISPTIS.EXE:dllhost.exe:dllhst3g.exe:cscript.exe:mmc.exe:msiex
ec.exe:upnpcont.exe:wscript.exe:WUDFHost.exe:dfsvc.exe:dfsvc.exe:fdbs.exe:ntfsbs
.exe:memdiag.exe:NETFXSBS10.exe:applaunch.exe:aspnet_compiler.exe:aspnet_regbrow
sers.exe:aspnet_regiis.exe:aspnet_regsql.exe:aspnet_state.exe:aspnet_wp.exe:casp
ol.exe:csc.exe:CVTRES.EXE:dfsvc.exe:dw20.exe:IEExec.exe:ilasm.exe:InstallUtil.ex
e:jsc.exe:MSBuild.exe:mscorsvw.exe:ngen.exe:RegAsm.exe::RegSvcs.exe:vbc.exe:Trus
tedInstaller.exe:Aurora.scr:AutoChk.Exe:AUTOFMT.EXE:CHKDSK.EXE:CHKNTFS.EXE:conse
nt.exe

nPUnattend.exe

nPutil.exe:RacAgent.exe:fsquirt.exe:Uninst.exe:updateWmc
.exe:wmdc.exe:wmdsync.exe:mofcomp.exe:ScrCons.exe:smi2smir.exe:unsecapp.exe:wbem
test.exe:winmgmt.exe:wmic.exe:bfsvc.exe:Twunk_16.exe:Twunk_32.exe:wuauclt.exe:ws
qmcons.exe:sapisvr.exe:WinSAT.exe

2phost.exe:SearchProtocolHost.exe:WerFault.ex
e:drvinst.exe:ehshell.exe:UI0Detect.exe:ehtray.exe:HelpPane.exe:mrt.exe:SearchFi
lterHost.exe:mobsync.exe:Narrator.exe:SLUI.exe:taskmgr.exe

resentationSettings.
exe:vds.exe:sdclt.exe:irftp.exe

FDWiz.exe:SndVol.exe:makecab.exe:msfeedssync.ex
e:unregmp2.exe

eviceProperties.exe:rstrui.exe:MdRes.exe:netsh.exe

rintui.exe:m
cupdate.exe:4mmdat.sys:61883.sys:ACPI.sys:amdk7.sys:amdk8.sys:ASYNCMAC.SYS:atapi
.sys:AVC.SYS:cdfs.sys:cdrom.sys:circlass.sys:cmbatt.sys:crusoe.sys:CSC.Sys:dc21x
4vm.sys:disk.sys:dot4.sys:dot4usb.sys:drmkaud.sys:ecache.sys:fdc.sys:floppy.sys:
hdaudbus.sys:HDAudio.sys:HIDBTH.SYS:HIDIR.SYS:i8042prt.sys:intelppm.sys:irenum.S
YS:IRSIR.SYS:kbdclass.sys:kbdhid.sys:LOOP.SYS:mf.sys:monitor.sys:mouclass.sys:mo
uhid.sys:msisadrv.sys:msiscsi.sys:NDISWAN.SYS:nsiproxy.sys

hci1394.sys

ci.sys:
pciide.sys

owerfil.sys

rocessr.sys:rasl2tp.sys:raspppoe.sys:RASPPTP.SYS:RDPCDD
.SYS:rfcomm.sys:sbp2port.sys:sdbus.sys:serenum.sys:serial.sys:sermouse.sys:sffdi
sk.sys:sffp_mmc.sys:smbios.sys:swenum.sys:tdx.sys:termdd.sys:tpm.sys:tunmp.sys:t
unnel.sys:umbus.sys:update.sys:usb8023.sys:USBAudio.sys:USBCCGP.SYS:usbcir.sys:U
SBEHCI.sys:usbhub.sys:USBOHCI.sys:usbprint.sys:USBUHCI.sys:viac7.sys:wacompen.sy
s:wceusbsh.sys:winusb.sys:ws2ifsl.sys:xnacc.sys
ExpirationDays REG_DWORD 0x5a
C:\Windows\system32>REG QUERY "HKLM\SYSTEM\CurrentControlSet\services\eventlog\A
pplication\Software Protection Platform Service"
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\eventlog\Application\Softwa
re Protection Platform Service
EventMessageFile REG_EXPAND_SZ %windir%\system32\sppsvc.exe
TypesSupported REG_DWORD 0x7
ProviderGuid REG_SZ {E23B33B0-C8C9-472C-A5F9-F2BDFEA0F156}
C:\Windows\system32>REG QUERY "HKLM\SYSTEM\CurrentControlSet\services\eventlog\K
ey Management Service\KmsRequests"
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\eventlog\Key Management Ser
vice\KmsRequests
EventMessageFile REG_EXPAND_SZ %windir%\system32\sppsvc.exe
TypesSupported REG_DWORD 0x7
ProviderGuid REG_SZ {E23B33B0-C8C9-472C-A5F9-F2BDFEA0F156}
C:\Windows\system32>REG QUERY HKLM\SYSTEM\CurrentControlSet\Control\WMI
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\WMI\Autologger
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\WMI\Security
C:\Windows\system32>REG QUERY HKLM\SYSTEM\CurrentControlSet\services\sppsvc /S
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\sppsvc
DisplayName REG_SZ @%SystemRoot%\system32\sppsvc.exe,-101
ImagePath REG_EXPAND_SZ %SystemRoot%\system32\sppsvc.exe
Description REG_SZ @%SystemRoot%\system32\sppsvc.exe,-100
ObjectName REG_SZ NT AUTHORITY\NetworkService
ErrorControl REG_DWORD 0x1
Start REG_DWORD 0x2
DelayedAutoStart REG_DWORD 0x1
Type REG_DWORD 0x10
DependOnService REG_MULTI_SZ RpcSs
ServiceSidType REG_DWORD 0x1
RequiredPrivileges REG_MULTI_SZ SeAuditPrivilege\0SeChangeNotifyPrivil
ege\0SeCreateGlobalPrivilege\0SeImpersonatePrivilege
FailureActions REG_BINARY 80510100000000000000000003000000140000000100
0000C0D4010001000000E09304000000000000000000
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\sppsvc\Security
Security REG_BINARY 01001480A0000000AC000000140000003000000002001C0001
00000002801400FF010F00010100000000000100000000020070000500000000001400FD01020001
010000000000051200000000001800FF010F0001020000000000052000000020020000000014009D
010200010100000000000504000000000014009D0102000101000000000005060000000000140014
00000001010000000000050B000000010100000000000512000000010100000000000512000000
C:\Windows\system32>