Summary Operating System Windows 10 Pro 64-bit CPU Intel Core i7 @ 1.70GHz 60 °C Sandy Bridge 32nm Technology RAM 3.00GB Dual-Channel DDR3 (9-9-9-24) Motherboard Dell Inc. 0Y4RM9 (CPU) 68 °C Graphics Generic PnP Monitor (1280x768@60Hz) Intel HD Graphics 3000 (Dell) Storage 238GB LITEONIT LMT-256M3M mSATA 256GB (SSD) Optical Drives No optical disk drives detected Audio Realtek High Definition Audio Operating System Windows 10 Pro 64-bit Computer type: Portable Installation Date: 26/01/2016 22:56:01 Serial Number: Windows Security Center User Account Control (UAC) Enabled Notify level 3 - Always Notify Firewall Enabled Windows Update AutoUpdate Not configured Windows Defender Windows Defender Enabled Antivirus Antivirus Enabled Display Name Windows Defender Virus Signature Database Up to date .NET Frameworks installed v4.6 Full v4.6 Client v3.5 SP1 v3.0 SP2 v2.0 SP2 Internet Explorer Version 11.103.10586.0 PowerShell Version 5.0.10586.0 Environment Variables USERPROFILE C:\Users\Administrator SystemRoot C:\WINDOWS User Variables TEMP C:\Users\Administrator\AppData\Local\Temp TMP C:\Users\Administrator\AppData\Local\Temp Machine Variables ComSpec C:\WINDOWS\system32\cmd.exe NUMBER_OF_PROCESSORS 4 OS Windows_NT Path C:\WINDOWS\system32 C:\WINDOWS C:\WINDOWS\System32\Wbem C:\WINDOWS\System32\WindowsPowerShell\v1.0\ C:\Program Files (x86)\Windows Kits\10\Windows Performance Toolkit\ C:\WINDOWS\SysWOW64\WindowsPowerShell\v1.0\Modules\TShell\TShell\ C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86 C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64 C:\Program Files\Microsoft DNX\Dnvm\ PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE AMD64 PROCESSOR_IDENTIFIER Intel64 Family 6 Model 42 Stepping 7, GenuineIntel PROCESSOR_LEVEL 6 PROCESSOR_REVISION 2a07 PSModulePath %ProgramFiles%\WindowsPowerShell\Modules C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules TEMP C:\WINDOWS\TEMP TMP C:\WINDOWS\TEMP USERNAME SYSTEM VS140COMNTOOLS C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\Tools\ windir C:\WINDOWS Battery AC Line Online Battery Charge % 78 % Battery State Unknown status Remaining Battery Time Unknown Power Profile Active power scheme Balanced Hibernation Enabled Turn Off Monitor after: (On AC Power) 10 min Turn Off Monitor after: (On Battery Power) 5 min Turn Off Hard Disk after: (On AC Power) 20 min Turn Off Hard Disk after: (On Battery Power) 10 min Suspend after: (On AC Power) 30 min Suspend after: (On Battery Power) 15 min Screen saver Disabled Uptime Current Session Current Time 14/02/2016 15:18:31 Current Uptime 79,217 sec (0 d, 22 h, 00 m, 17 s) Last Boot Time 13/02/2016 17:18:14 Services Running Application Information Running Background Intelligent Transfer Service Running Background Tasks Infrastructure Service Running Base Filtering Engine Running Certificate Propagation Running CNG Key Isolation Running COM+ Event System Running Computer Browser Running Connected User Experiences and Telemetry Running CoreMessaging Running Credential Manager Running Cryptographic Services Running Data Sharing Service Running DCOM Server Process Launcher Running Device Association Service Running DHCP Client Running Diagnostic Policy Service Running Diagnostic Service Host Running Diagnostic System Host Running Distributed Link Tracking Client Running DNS Client Running Function Discovery Provider Host Running Function Discovery Resource Publication Running Geolocation Service Running HomeGroup Provider Running IKE and AuthIP IPsec Keying Modules Running Intel Content Protection HECI Service Running Intel Rapid Storage Technology Running IP Helper Running Local Session Manager Running Network Connected Devices Auto-Setup Running Network Connection Broker Running Network Connections Running Network List Service Running Network Location Awareness Running Network Store Interface Service Running Peer Name Resolution Protocol Running Peer Networking Identity Manager Running Plug and Play Running Power Running Print Spooler Running Program Compatibility Assistant Service Running Realtek Audio Service Running Remote Desktop Configuration Running Remote Desktop Services Running Remote Desktop Services UserMode Port Redirector Running Remote Procedure Call (RPC) Running RPC Endpoint Mapper Running Secondary Log-on Running Security Accounts Manager Running Security Center Running Sensor Monitoring Service Running Server Running Shell Hardware Detection Running SSDP Discovery Running State Repository Service Running Storage Service Running Superfetch Running System Event Notification Service Running System Events Broker Running Task Scheduler Running TCP/IP NetBIOS Helper Running Themes Running Tile Data model server Running Time Broker Running Update Orchestrator Service Running User Manager Running User Profile Service Running Windows Audio Running Windows Audio Endpoint Builder Running Windows Backup Running Windows Connect Now - Config Registrar Running Windows Connection Manager Running Windows Defender Network Inspection Service Running Windows Defender Service Running Windows Driver Foundation - User-mode Driver Framework Running Windows Event Log Running Windows Firewall Running Windows Font Cache Service Running Windows Image Acquisition (WIA) Running Windows License Manager Service Running Windows Management Instrumentation Running Windows Modules Installer Running Windows Phone IP over USB Transport (IpOverUsbSvc) Running Windows Search Running Windows Update Running WinHTTP Web Proxy Auto-Discovery Service Running WLAN AutoConfig Running Workstation Stopped ActiveX Installer (AxInstSV) Stopped AllJoyn Router Service Stopped App Readiness Stopped Application Identity Stopped Application Layer Gateway Service Stopped Application Management Stopped AppX Deployment Service (AppXSVC) Stopped ASP.NET State Service Stopped Auto Time Zone Updater Stopped BitLocker Drive Encryption Service Stopped Block Level Backup Engine Service Stopped Bluetooth Handsfree Service Stopped Bluetooth Support Service Stopped BranchCache Stopped Client License Service (ClipSVC) Stopped COM+ System Application Stopped Connected Device Platform Service Stopped Cypress Trackpad Service Stopped DataCollectionPublishingService Stopped Delivery Optimization Stopped Dell Data Vault Stopped Dell Data Vault Wizard Stopped Dell SupportAssist Agent Stopped Device Install Service Stopped Device Management Enrollment Service Stopped Device Setup Manager Stopped DevQuery Background Discovery Broker Stopped Distributed Transaction Coordinator Stopped dmwappushsvc Stopped Downloaded Maps Manager Stopped embeddedmode Stopped Encrypting File System (EFS) Stopped Enterprise App Management Service Stopped Extensible Authentication Protocol Stopped Fax Stopped File History Service Stopped Google Update Service (gupdate) Stopped Google Update Service (gupdatem) Stopped Group Policy Client Stopped HomeGroup Listener Stopped Human Interface Device Service Stopped Hyper-V Data Exchange Service Stopped Hyper-V Guest Service Interface Stopped Hyper-V Guest Shutdown Service Stopped Hyper-V Heartbeat Service Stopped Hyper-V Remote Desktop Virtualization Service Stopped Hyper-V Time Synchronization Service Stopped Hyper-V VM Session Service Stopped Hyper-V Volume Shadow Copy Requestor Stopped Interactive Services Detection Stopped Internet Connection Sharing (ICS) Stopped Internet Explorer ETW Collector Service Stopped IPsec Policy Agent Stopped KtmRm for Distributed Transaction Coordinator Stopped Link-Layer Topology Discovery Mapper Stopped Microsoft Diagnostics Hub Standard Collector Service Stopped Microsoft Account Sign-in Assistant Stopped Microsoft iSCSI Initiator Service Stopped Microsoft Passport Stopped Microsoft Passport Container Stopped Microsoft Software Shadow Copy Provider Stopped Microsoft Storage Spaces SMP Stopped Microsoft Windows SMS Router Service. Stopped Net.Tcp Port Sharing Service Stopped Netlogon Stopped Network Connectivity Assistant Stopped Network Setup Service Stopped Offline Files Stopped Optimise drives Stopped Peer Networking Grouping Stopped Performance Counter DLL Host Stopped Performance Logs & Alerts Stopped Phone Service Stopped PNRP Machine Name Publication Service Stopped Portable Device Enumerator Service Stopped Printer Extensions and Notifications Stopped Problem Reports and Solutions Control Panel Support Stopped Quality Windows Audio Video Experience Stopped Remote Access Auto Connection Manager Stopped Remote Access Connection Manager Stopped Remote Procedure Call (RPC) Locator Stopped Remote Registry Stopped Retail Demo Service Stopped Routing and Remote Access Stopped Secure Socket Tunneling Protocol Service Stopped Sensor Data Service Stopped Sensor Service Stopped Smart Card Stopped Smart Card Device Enumeration Service Stopped Smart Card Removal Policy Stopped SNMP Trap Stopped Software Protection Stopped Spot Verifier Stopped Still Image Acquisition Events Stopped Storage Tiers Management Stopped Te.Service Stopped Telephony Stopped Touch Keyboard and Handwriting Panel Service Stopped UPnP Device Host Stopped Virtual Disk Stopped Visual Studio Standard Collector Service Stopped Volume Shadow Copy Stopped WalletService Stopped WebClient Stopped Windows Biometric Service Stopped Windows Colour System Stopped Windows Encryption Provider Host Service Stopped Windows Error Reporting Service Stopped Windows Event Collector Stopped Windows Installer Stopped Windows Media Player Network Sharing Service Stopped Windows Mobile Hotspot Service Stopped Windows Presentation Foundation Font Cache 3.0.0.0 Stopped Windows Push Notifications Service Stopped Windows Remote Management (WS-Management) Stopped Windows Store Service (WSService) Stopped Windows Time Stopped Wired AutoConfig Stopped WMI Performance Adapter Stopped Work Folders Stopped WWAN AutoConfig Stopped Xbox Live Auth Manager Stopped Xbox Live Game Save Stopped Xbox Live Networking Service TimeZone TimeZone GMT +12:00 Hours Language English (United Kingdom) Location New Zealand Format English (United Kingdom) Currency Ł Date Format dd/MM/yyyy Time Format HH:mm:ss Scheduler 14/02/2016 15:49; GoogleUpdateTaskMachineUA 15/02/2016 12:38; SystemToolsDailyTest 15/02/2016 12:49; GoogleUpdateTaskMachineCore 19/02/2016 04:00; PCDoctorBackgroundMonitorTask 19/02/2016 08:47; PCDDataUploadTask 21/02/2016 10:44; Dell SupportAssistAgent AutoUpdate CCleanerSkipUAC PCDEventLauncherTask Hotfixes Installed 13/02/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.6097.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 12/02/2016 Windows Malicious Software Removal Tool for Windows 8, 8.1, 10 and Windows Server 2012, 2012 R2 x64 Edition - February 2016 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 12/02/2016 Intel Corporation driver update for Intel(R) HD Graphics 3000 This driver was provided by Intel Corporation for support of Intel HD Graphics 3000 12/02/2016 Security Update for Adobe Flash Player for Windows 10 Version 1511 for x64-based Systems (KB3135782) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 12/02/2016 Cumulative Update for Windows 10 Version 1511 for x64-based Systems (KB3135173) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 12/02/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.6023.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/02/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.5860.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/02/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.5746.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 09/02/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.5647.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 08/02/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.5578.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 04/02/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.5446.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 03/02/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.5352.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 03/02/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.5329.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 03/02/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.5244.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 02/02/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.5220.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 01/02/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.5133.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 01/02/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.5048.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 31/01/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.5004.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 30/01/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.4955.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 30/01/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.4942.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 29/01/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.4870.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 29/01/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.4846.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 28/01/2016 Cumulative Update for Windows 10 Version 1511 for x64-based Systems (KB3124262) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 28/01/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.4702.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 27/01/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.4543.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 27/01/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.4522.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 26/01/2016 Definition Update for Windows Defender - KB2267602 (Definition 1.213.4472.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 26/01/2016 Cumulative Update for Windows 10 Version 1511 for x64-based Systems (KB3124263) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 26/01/2016 Windows Malicious Software Removal Tool for Windows 8, 8.1, 10 and Windows Server 2012, 2012 R2 x64 Edition - January 2016 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 26/01/2016 Update for Internet Explorer Flash Player for Windows 10 Version 1511 for x64-based Systems (KB3133431) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 26/01/2016 Security Update for Internet Explorer Flash Player for Windows 10 Version 1511 for x64-based Systems (KB3132372) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 26/01/2016 Update for Windows 10 Version 1511 for x64-based Systems (KB3106246) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 26/01/2016 Update for Windows 10 Version 1511 for x64-based Systems (KB3116278) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. Not Installed 28/01/2016 Intel Corporation driver update for Intel(R) HD Graphics 3000 Installation Status Failed This driver was provided by Intel Corporation for support of Intel HD Graphics 3000 26/01/2016 Intel Corporation driver update for Intel(R) HD Graphics 3000 Installation Status Failed This driver was provided by Intel Corporation for support of Intel HD Graphics 3000 System Folders Application Data C:\ProgramData Cookies C:\Users\Administrator\AppData\Local\Microsoft\Windows\INetCookies Desktop C:\Users\Administrator\Desktop Documents C:\Users\Public\Documents Fonts C:\WINDOWS\Fonts Global Favorites C:\Users\Administrator\Favorites Internet History C:\Users\Administrator\AppData\Local\Microsoft\Windows\History Local Application Data C:\Users\Administrator\AppData\Local Music C:\Users\Public\Music Path for burning CD C:\Users\Administrator\AppData\Local\Microsoft\Windows\Burn\Burn Physical Desktop C:\Users\Administrator\Desktop Pictures C:\Users\Public\Pictures Program Files C:\Program Files Public Desktop C:\Users\Public\Desktop Start Menu C:\ProgramData\Microsoft\Windows\Start Menu Start Menu Programs C:\ProgramData\Microsoft\Windows\Start Menu\Programs Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Templates C:\ProgramData\Microsoft\Windows\Templates Temporary Internet Files C:\Users\Administrator\AppData\Local\Microsoft\Windows\INetCache User Favorites C:\Users\Administrator\Favorites Videos C:\Users\Public\Videos Windows Directory C:\WINDOWS Windows/System C:\WINDOWS\system32 Process List ApplicationFrameHost.exe Process ID 4764 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\ApplicationFrameHost.exe Memory Usage 17 MB Peak Memory Usage 24 MB CCleaner64.exe Process ID 5376 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files\CCleaner\CCleaner64.exe Memory Usage 19 MB Peak Memory Usage 22 MB CCleaner64.exe Process ID 9792 User joe Domain DESKTOP-L2QIGK4 Path C:\Program Files\CCleaner\CCleaner64.exe Memory Usage 16 MB Peak Memory Usage 19 MB chrome.exe Process ID 4148 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 50 MB Peak Memory Usage 229 MB chrome.exe Process ID 8316 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 28 MB Peak Memory Usage 67 MB chrome.exe Process ID 6304 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 27 MB Peak Memory Usage 66 MB chrome.exe Process ID 7064 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 37 MB Peak Memory Usage 140 MB chrome.exe Process ID 4164 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 93 MB Peak Memory Usage 120 MB chrome.exe Process ID 2132 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 39 MB Peak Memory Usage 113 MB chrome.exe Process ID 10692 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 69 MB Peak Memory Usage 189 MB chrome.exe Process ID 4960 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 40 MB Peak Memory Usage 115 MB chrome.exe Process ID 6984 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 112 MB Peak Memory Usage 152 MB chrome.exe Process ID 856 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 992 MB Peak Memory Usage 1.02 GB chrome.exe Process ID 5548 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 76 MB Peak Memory Usage 224 MB conhost.exe Process ID 3832 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\conhost.exe Memory Usage 8.94 MB Peak Memory Usage 10 MB csrss.exe Process ID 476 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 2.97 MB Peak Memory Usage 3.57 MB csrss.exe Process ID 5060 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 15 MB Peak Memory Usage 18 MB csrss.exe Process ID 588 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 15 MB Peak Memory Usage 42 MB dasHost.exe Process ID 3180 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\dasHost.exe Memory Usage 11 MB Peak Memory Usage 15 MB devenv.exe Process ID 3940 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe Memory Usage 60 MB Peak Memory Usage 208 MB dllhost.exe Process ID 5716 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\dllhost.exe Memory Usage 8.64 MB Peak Memory Usage 9.43 MB dwm.exe Process ID 7352 User DWM-2 Domain Window Manager Path C:\Windows\System32\dwm.exe Memory Usage 17 MB Peak Memory Usage 36 MB dwm.exe Process ID 1008 User DWM-1 Domain Window Manager Path C:\Windows\System32\dwm.exe Memory Usage 30 MB Peak Memory Usage 60 MB explorer.exe Process ID 6916 User joe Domain DESKTOP-L2QIGK4 Path C:\Windows\explorer.exe Memory Usage 74 MB Peak Memory Usage 124 MB explorer.exe Process ID 3804 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\explorer.exe Memory Usage 83 MB Peak Memory Usage 145 MB FRST64.exe Process ID 7308 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Users\Administrator\Downloads\FRST64.exe Memory Usage 22 MB Peak Memory Usage 89 MB hkcmd.exe Process ID 5216 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\hkcmd.exe Memory Usage 6.84 MB Peak Memory Usage 7.52 MB hkcmd.exe Process ID 7844 User joe Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\hkcmd.exe Memory Usage 6.75 MB Peak Memory Usage 7.57 MB IAStorDataMgrSvc.exe Process ID 3728 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Intel\Intel Rapid Storage Technology\IAStorDataMgrSvc.exe Memory Usage 59 MB Peak Memory Usage 120 MB IAStorIcon.exe Process ID 8312 User joe Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Intel\Intel Rapid Storage Technology\IAStorIcon.exe Memory Usage 29 MB Peak Memory Usage 37 MB IAStorIcon.exe Process ID 4748 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Intel\Intel Rapid Storage Technology\IAStorIcon.exe Memory Usage 32 MB Peak Memory Usage 42 MB igfxpers.exe Process ID 3396 User joe Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\igfxpers.exe Memory Usage 7.84 MB Peak Memory Usage 8.75 MB igfxpers.exe Process ID 5260 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\igfxpers.exe Memory Usage 8.30 MB Peak Memory Usage 9.16 MB igfxtray.exe Process ID 4024 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\igfxtray.exe Memory Usage 7.30 MB Peak Memory Usage 7.98 MB IntelCpHeciSvc.exe Process ID 1620 User SYSTEM Domain NT AUTHORITY Path C:\Windows\syswow64\IntelCpHeciSvc.exe Memory Usage 5.36 MB Peak Memory Usage 6.22 MB IpOverUsbSvc.exe Process ID 1896 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe Memory Usage 11 MB Peak Memory Usage 13 MB LockApp.exe Process ID 8444 User joe Domain DESKTOP-L2QIGK4 Path C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe Memory Usage 29 MB Peak Memory Usage 46 MB LockAppHost.exe Process ID 5372 User joe Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\LockAppHost.exe Memory Usage 28 MB Peak Memory Usage 45 MB LogonUI.exe Process ID 8556 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\LogonUI.exe Memory Usage 44 MB Peak Memory Usage 60 MB lsass.exe Process ID 720 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\lsass.exe Memory Usage 12 MB Peak Memory Usage 13 MB Microsoft.VsHub.Server.HttpHost.exe Process ID 496 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Common Files\Microsoft Shared\VsHub\1.0.0.0\Microsoft.VsHub.Server.HttpHost.exe Memory Usage 62 MB Peak Memory Usage 149 MB mmc.exe Process ID 5012 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\mmc.exe Memory Usage 14 MB Peak Memory Usage 47 MB MSASCui.exe Process ID 2784 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files\Windows Defender\MSASCui.exe Memory Usage 16 MB Peak Memory Usage 21 MB MsMpEng.exe Process ID 2208 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Windows Defender\MsMpEng.exe Memory Usage 111 MB Peak Memory Usage 521 MB NetworkUXBroker.exe Process ID 5760 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\NetworkUXBroker.exe Memory Usage 16 MB Peak Memory Usage 16 MB NisSrv.exe Process ID 2988 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Program Files\Windows Defender\NisSrv.exe Memory Usage 7.01 MB Peak Memory Usage 39 MB notepad.exe Process ID 3172 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\notepad.exe Memory Usage 11 MB Peak Memory Usage 12 MB notepad.exe Process ID 8188 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\notepad.exe Memory Usage 11 MB Peak Memory Usage 12 MB notepad.exe Process ID 9008 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\notepad.exe Memory Usage 10 MB Peak Memory Usage 12 MB OneDrive.exe Process ID 7460 User joe Domain DESKTOP-L2QIGK4 Path C:\Users\joe\AppData\Local\Microsoft\OneDrive\OneDrive.exe Memory Usage 18 MB Peak Memory Usage 21 MB OneDrive.exe Process ID 5316 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe Memory Usage 16 MB Peak Memory Usage 18 MB pcdrcui.exe Process ID 7828 User joe Domain DESKTOP-L2QIGK4 Path C:\Program Files\Dell\SupportAssist\pcdrcui.exe Memory Usage 18 MB Peak Memory Usage 198 MB pcdrrealtime.p5x Process ID 4416 User joe Domain DESKTOP-L2QIGK4 Path C:\Program Files\Dell\SupportAssist\pcdrrealtime.p5x Memory Usage 14 MB Peak Memory Usage 29 MB perfmon.exe Process ID 9856 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\perfmon.exe Memory Usage 33 MB Peak Memory Usage 47 MB quickset.exe Process ID 8400 User joe Domain DESKTOP-L2QIGK4 Path C:\Program Files\Dell\QuickSet\quickset.exe Memory Usage 11 MB Peak Memory Usage 12 MB quickset.exe Process ID 4468 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files\Dell\QuickSet\quickset.exe Memory Usage 11 MB Peak Memory Usage 12 MB RAVBg64.exe Process ID 9664 User joe Domain DESKTOP-L2QIGK4 Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 12 MB Peak Memory Usage 13 MB RAVBg64.exe Process ID 1508 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 11 MB Peak Memory Usage 14 MB RAVBg64.exe Process ID 1324 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 11 MB Peak Memory Usage 13 MB RAVBg64.exe Process ID 4512 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 11 MB Peak Memory Usage 13 MB RAVBg64.exe Process ID 8972 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 12 MB Peak Memory Usage 13 MB RAVBg64.exe Process ID 8828 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 12 MB Peak Memory Usage 13 MB RtkAudioService64.exe Process ID 1640 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe Memory Usage 5.57 MB Peak Memory Usage 6.67 MB RtkNGUI64.exe Process ID 10180 User joe Domain DESKTOP-L2QIGK4 Path C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe Memory Usage 11 MB Peak Memory Usage 13 MB RtkNGUI64.exe Process ID 3900 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe Memory Usage 11 MB Peak Memory Usage 12 MB RuntimeBroker.exe Process ID 3856 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 31 MB Peak Memory Usage 38 MB RuntimeBroker.exe Process ID 7196 User joe Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 34 MB Peak Memory Usage 39 MB SearchFilterHost.exe Process ID 10976 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchFilterHost.exe Memory Usage 5.33 MB Peak Memory Usage 5.48 MB SearchIndexer.exe Process ID 3932 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchIndexer.exe Memory Usage 31 MB Peak Memory Usage 41 MB SearchProtocolHost.exe Process ID 8488 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchProtocolHost.exe Memory Usage 8.18 MB Peak Memory Usage 10 MB SearchUI.exe Process ID 9432 User joe Domain DESKTOP-L2QIGK4 Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe Memory Usage 50 MB Peak Memory Usage 85 MB SearchUI.exe Process ID 4280 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe Memory Usage 46 MB Peak Memory Usage 148 MB services.exe Process ID 712 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\services.exe Memory Usage 5.69 MB Peak Memory Usage 6.55 MB ShellExperienceHost.exe Process ID 9272 User joe Domain DESKTOP-L2QIGK4 Path C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Memory Usage 36 MB Peak Memory Usage 54 MB ShellExperienceHost.exe Process ID 4128 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Memory Usage 54 MB Peak Memory Usage 87 MB sihost.exe Process ID 124 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\sihost.exe Memory Usage 22 MB Peak Memory Usage 23 MB sihost.exe Process ID 8924 User joe Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\sihost.exe Memory Usage 16 MB Peak Memory Usage 17 MB smss.exe Process ID 340 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\smss.exe Memory Usage 888 KB Peak Memory Usage 1.17 MB Speccy64.exe Process ID 6536 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files\Speccy\Speccy64.exe Memory Usage 26 MB Peak Memory Usage 26 MB spoolsv.exe Process ID 1844 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\spoolsv.exe Memory Usage 11 MB Peak Memory Usage 14 MB svchost.exe Process ID 1088 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 21 MB svchost.exe Process ID 1252 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 23 MB Peak Memory Usage 29 MB svchost.exe Process ID 1288 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 25 MB Peak Memory Usage 79 MB svchost.exe Process ID 2616 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.85 MB Peak Memory Usage 7.85 MB svchost.exe Process ID 1600 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 20 MB Peak Memory Usage 27 MB svchost.exe Process ID 2152 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.89 MB Peak Memory Usage 8.03 MB svchost.exe Process ID 620 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 12 MB svchost.exe Process ID 2168 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 20 MB svchost.exe Process ID 376 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 24 MB Peak Memory Usage 54 MB svchost.exe Process ID 832 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 20 MB svchost.exe Process ID 888 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 13 MB svchost.exe Process ID 360 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 22 MB svchost.exe Process ID 356 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 47 MB Peak Memory Usage 89 MB svchost.exe Process ID 10288 User joe Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 12 MB svchost.exe Process ID 1080 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 47 MB Peak Memory Usage 59 MB svchost.exe Process ID 7204 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.76 MB Peak Memory Usage 13 MB System Process ID 4 Memory Usage 161 MB Peak Memory Usage 554 MB System Idle Process Process ID 0 SystemSettingsAdminFlows.exe Process ID 3252 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\SystemSettingsAdminFlows.exe Memory Usage 8.74 MB Peak Memory Usage 10 MB SystemSettingsBroker.exe Process ID 5632 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\SystemSettingsBroker.exe Memory Usage 16 MB Peak Memory Usage 19 MB taskhostw.exe Process ID 8224 User joe Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\taskhostw.exe Memory Usage 12 MB Peak Memory Usage 13 MB taskhostw.exe Process ID 1704 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\taskhostw.exe Memory Usage 14 MB Peak Memory Usage 16 MB TaskMan.exe Process ID 5700 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Security Task Manager\TaskMan.exe Memory Usage 23 MB Peak Memory Usage 35 MB TaskMan.exe Process ID 2084 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Security Task Manager\TaskMan.exe Memory Usage 22 MB Peak Memory Usage 38 MB Taskmgr.exe Process ID 5988 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\Taskmgr.exe Memory Usage 36 MB Peak Memory Usage 38 MB TiWorker.exe Process ID 9128 User SYSTEM Domain NT AUTHORITY Path C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.0_none_95e4f9a171a1ad95\TiWorker.exe Memory Usage 7.38 MB Peak Memory Usage 8.84 MB TrustedInstaller.exe Process ID 7092 User SYSTEM Domain NT AUTHORITY Path C:\Windows\servicing\TrustedInstaller.exe Memory Usage 5.13 MB Peak Memory Usage 6.05 MB unsecapp.exe Process ID 9888 User joe Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\wbem\unsecapp.exe Memory Usage 6.06 MB Peak Memory Usage 6.46 MB unsecapp.exe Process ID 5504 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Windows\System32\wbem\unsecapp.exe Memory Usage 6.23 MB Peak Memory Usage 6.50 MB VsHub.exe Process ID 1280 User Administrator Domain DESKTOP-L2QIGK4 Path C:\Program Files (x86)\Common Files\Microsoft Shared\VsHub\1.0.0.0\VsHub.exe Memory Usage 34 MB Peak Memory Usage 51 MB wininit.exe Process ID 580 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wininit.exe Memory Usage 3.39 MB Peak Memory Usage 4.64 MB winlogon.exe Process ID 7372 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\winlogon.exe Memory Usage 6.14 MB Peak Memory Usage 10 MB winlogon.exe Process ID 668 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\winlogon.exe Memory Usage 6.26 MB Peak Memory Usage 12 MB WmiPrvSE.exe Process ID 5536 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 17 MB Peak Memory Usage 17 MB WmiPrvSE.exe Process ID 5072 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 8.40 MB Peak Memory Usage 9.80 MB WUDFHost.exe Process ID 1140 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\WUDFHost.exe Memory Usage 5.97 MB Peak Memory Usage 7.95 MB Security Options Accounts: Administrator account status Enabled Accounts: Block Microsoft accounts Not Defined Accounts: Guest account status Disabled Accounts: Limit local account use of blank passwords to console logon only Enabled Accounts: Rename administrator account Administrator Accounts: Rename guest account Guest Audit: Audit the access of global system objects Disabled Audit: Audit the use of Backup and Restore privilege Enabled Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings Not Defined Audit: Shut down system immediately if unable to log security audits Disabled DCOM: Machine Access Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined DCOM: Machine Launch Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined Devices: Allow undock without having to log on Enabled Devices: Allowed to format and eject removable media Not Defined Devices: Prevent users from installing printer drivers Disabled Devices: Restrict CD-ROM access to locally logged-on user only Not Defined Devices: Restrict floppy access to locally logged-on user only Not Defined Domain controller: Allow server operators to schedule tasks Not Defined Domain controller: LDAP server signing requirements Not Defined Domain controller: Refuse machine account password changes Not Defined Domain member: Digitally encrypt or sign secure channel data (always) Enabled Domain member: Digitally encrypt secure channel data (when possible) Enabled Domain member: Digitally sign secure channel data (when possible) Enabled Domain member: Disable machine account password changes Disabled Domain member: Maximum machine account password age 30 days Domain member: Require strong (Windows 2000 or later) session key Enabled Interactive logon: Display user information when the session is locked Not Defined Interactive logon: Do not display last user name Disabled Interactive logon: Do not require CTRL+ALT+DEL Not Defined Interactive logon: Machine account lockout threshold Not Defined Interactive logon: Machine inactivity limit Not Defined Interactive logon: Message text for users attempting to log on Interactive logon: Message title for users attempting to log on Interactive logon: Number of previous logons to cache (in case domain controller is not available) 10 logons Interactive logon: Prompt user to change password before expiration 5 days Interactive logon: Require Domain Controller authentication to unlock workstation Disabled Interactive logon: Require smart card Disabled Interactive logon: Smart card removal behavior No Action Microsoft network client: Digitally sign communications (always) Disabled Microsoft network client: Digitally sign communications (if server agrees) Enabled Microsoft network client: Send unencrypted password to third-party SMB servers Disabled Microsoft network server: Amount of idle time required before suspending session 15 minutes Microsoft network server: Attempt S4U2Self to obtain claim information Not Defined Microsoft network server: Digitally sign communications (always) Disabled Microsoft network server: Digitally sign communications (if client agrees) Disabled Microsoft network server: Disconnect clients when logon hours expire Enabled Microsoft network server: Server SPN target name validation level Not Defined Network access: Allow anonymous SID/Name translation Disabled Network access: Do not allow anonymous enumeration of SAM accounts Enabled Network access: Do not allow anonymous enumeration of SAM accounts and shares Disabled Network access: Do not allow storage of passwords and credentials for network authentication Disabled Network access: Let Everyone permissions apply to anonymous users Disabled Network access: Named Pipes that can be accessed anonymously Network access: Remotely accessible registry paths System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion Network access: Remotely accessible registry paths and sub-paths System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog Network access: Restrict anonymous access to Named Pipes and Shares Enabled Network access: Shares that can be accessed anonymously Not Defined Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Network security: Allow Local System to use computer identity for NTLM Not Defined Network security: Allow LocalSystem NULL session fallback Not Defined Network security: Allow PKU2U authentication requests to this computer to use online identities. Not Defined Network security: Configure encryption types allowed for Kerberos Not Defined Network security: Do not store LAN Manager hash value on next password change Enabled Network security: Force logoff when logon hours expire Disabled Network security: LAN Manager authentication level Not Defined Network security: LDAP client signing requirements Negotiate signing Network security: Minimum session security for NTLM SSP based (including secure RPC) clients Require 128-bit encryption Network security: Minimum session security for NTLM SSP based (including secure RPC) servers Require 128-bit encryption Network security: Restrict NTLM: Add remote server exceptions for NTLM authentication Not Defined Network security: Restrict NTLM: Add server exceptions in this domain Not Defined Network security: Restrict NTLM: Audit Incoming NTLM Traffic Not Defined Network security: Restrict NTLM: Audit NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Incoming NTLM traffic Not Defined Network security: Restrict NTLM: NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Outgoing NTLM traffic to remote servers Not Defined Recovery console: Allow automatic administrative logon Disabled Recovery console: Allow floppy copy and access to all drives and all folders Disabled Shutdown: Allow system to be shut down without having to log on Enabled Shutdown: Clear virtual memory pagefile Enabled System cryptography: Force strong key protection for user keys stored on the computer Not Defined System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing Disabled System objects: Require case insensitivity for non-Windows subsystems Enabled System objects: Strengthen default permissions of internal system objects (e.g. Symbolic Links) Enabled System settings: Optional subsystems System settings: Use Certificate Rules on Windows Executables for Software Restriction Policies Disabled User Account Control: Admin Approval Mode for the Built-in Administrator account Not Defined User Account Control: Allow UIAccess applications to prompt for elevation without using the secure desktop Disabled User Account Control: Behavior of the elevation prompt for administrators in Admin Approval Mode Prompt for consent on the secure desktop User Account Control: Behavior of the elevation prompt for standard users Prompt for credentials User Account Control: Detect application installations and prompt for elevation Enabled User Account Control: Only elevate executables that are signed and validated Disabled User Account Control: Only elevate UIAccess applications that are installed in secure locations Enabled User Account Control: Run all administrators in Admin Approval Mode Enabled User Account Control: Switch to the secure desktop when prompting for elevation Enabled User Account Control: Virtualize file and registry write failures to per-user locations Enabled Device Tree ACPI x64-based PC Microsoft ACPI-Compliant System ACPI Fixed Feature Button ACPI Lid ACPI Power Button ACPI Sleep Button ACPI Thermal Zone ACPI Thermal Zone Intel Core i7-2637M CPU @ 1.70GHz Intel Core i7-2637M CPU @ 1.70GHz Intel Core i7-2637M CPU @ 1.70GHz Intel Core i7-2637M CPU @ 1.70GHz Intel Smart Connect Technology Device Microsoft AC Adapter Microsoft ACPI-Compliant Control Method Battery Microsoft Windows Management Interface for ACPI Motherboard resources System board PCI Express Root Complex 2nd Generation Intel Core Processor Family DRAM Controller - 0104 Cypress SMBUS Trackpad Intel 6 Series/C200 Series Chipset Family PCI Express Root Port 1 - 1C10 Intel Management Engine Interface Motherboard resources Intel(R) HD Graphics 3000 Generic PnP Monitor Intel(R) 6 Series/C200 Series Chipset Family USB Enhanced Host Controller - 1C2D USB Root Hub Generic USB Hub USB Composite Device Integrated Webcam High Definition Audio Controller Intel Display Audio Realtek High Definition Audio Microphone (Realtek High Definition Audio) Speakers / Headphones (Realtek High Definition Audio) Intel(R) 6 Series/C200 Series Chipset Family PCI Express Root Port 2 - 1C12 Intel Centrino Advanced-N 6230 Intel(R) 6 Series/C200 Series Chipset Family PCI Express Root Port 4 - 1C16 Fresco Logic USB 3.0 eXtensible Host Controller - 1.0 (Microsoft) USB Root Hub (xHCI) Intel(R) 6 Series/C200 Series Chipset Family USB Enhanced Host Controller - 1C26 USB Root Hub Generic USB Hub Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed Adapter Bluetooth Device (Personal Area Network) Bluetooth Device (RFCOMM Protocol TDI) Microsoft Bluetooth Enumerator Intel(R) QS67 Express Chipset Family LPC Interface Controller - 1C4D Direct Application Launch Button Direct memory access controller High precision event timer Integrated PS/2 Keyboard Motherboard resources Motherboard resources Numeric data processor Programmable interrupt controller System CMOS/real time clock System timer Microsoft ACPI-Compliant Embedded Controller Light Sensor Cypress Trackpad Cypress Input Device HID Keyboard Device HID-compliant mouse Intel(R) Mobile Express Chipset SATA AHCI Controller LITEONIT LMT-256M3M mSATA 256GB CPU Intel Core i7 Cores 2 Threads 4 Name Intel Core i7 Code Name Sandy Bridge Package Socket 1023 FCBGA Technology 32nm Specification Intel Core i7-2637M CPU @ 1.70GHz Family 6 Extended Family 6 Model A Extended Model 2A Stepping 7 Revision D2 Instructions MMX, SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, Intel 64, NX, VMX, AES, AVX Virtualization Supported, Enabled Hyperthreading Supported, Enabled Stock Core Speed 1700 MHz Stock Bus Speed 100 MHz Average Temperature 60 °C Caches L1 Data Cache Size 2 x 32 KBytes L1 Instructions Cache Size 2 x 32 KBytes L2 Unified Cache Size 2 x 256 KBytes L3 Unified Cache Size 4096 KBytes Cores Core 0 Core Speed 798.1 MHz Multiplier x 8.0 Temperature 59 °C Threads APIC ID: 0, 1 Core 1 Core Speed 1696.0 MHz Multiplier x 17.0 Temperature 60 °C Threads APIC ID: 2, 3 RAM Memory Type DDR3 Size 3408 MBytes Channels # Dual CAS# Latency (CL) 9 clocks RAS# to CAS# Delay (tRCD) 9 clocks RAS# Precharge (tRP) 9 clocks Cycle Time (tRAS) 24 clocks Command Rate (CR) 1T Physical Memory Memory Usage 87 % Total Physical 3.33 GB Available Physical 425 MB Total Virtual 7.33 GB Available Virtual 1.84 GB SPD Number Of SPD Modules 0 Motherboard Manufacturer Dell Inc. Model 0Y4RM9 (CPU) Version A00 Chipset Vendor Intel Chipset Model Sandy Bridge Chipset Revision 09 Southbridge Vendor Intel Southbridge Model QS67 Southbridge Revision B3 System Temperature 68 °C BIOS Brand Dell Inc. Version A08 Date 22/01/2013 PCI Data Slot PCI-E Slot Type PCI-E Slot Usage Available Data lanes x16 Slot Designation PEG Gen1/Gen2 X16 Characteristics 3.3V, Shared, PME Slot Number 0 Slot PCI Slot Type PCI Slot Usage Available Data lanes x1 Slot Designation PCI-Express 1 X1 Characteristics 3.3V, Shared, PME Slot Number 1 Slot PCI Slot Type PCI Slot Usage In Use Data lanes x1 Slot Designation PCI-Express 2 X1 Characteristics 3.3V, Shared, PME Slot Number 2 Slot PCI Slot Type PCI Slot Usage Available Data lanes x1 Slot Designation PCI-Express 3 X1 Characteristics 3.3V, Shared, PME Slot Number 3 Slot PCI Slot Type PCI Slot Usage In Use Data lanes x1 Slot Designation PCI-Express 4 X1 Characteristics 3.3V, Shared, PME Slot Number 4 Slot PCI Slot Type PCI Slot Usage Available Data lanes x1 Slot Designation PCI-Express 5 X1 Characteristics 3.3V, Shared, PME Slot Number 5 Graphics Monitor Name Generic PnP Monitor on Intel HD Graphics 3000 Current Resolution 1280x768 pixels Work Resolution 1280x728 pixels State Enabled, Primary Monitor Width 1280 Monitor Height 768 Monitor BPP 32 bits per pixel Monitor Frequency 60 Hz Device \\.\DISPLAY1\Monitor0 Intel HD Graphics 3000 Manufacturer Intel Model HD Graphics 3000 Device ID 8086-0116 Revision A Subvendor Dell (1028) Current Performance Level Level 0 Technology 32 nm Driver version 9.17.10.4229 Count of performance levels : 1 Level 1 - "Perf Level 0" GPU Clock 350 MHz Storage Hard drives LITEONIT LMT-256M3M mSATA 256GB Heads 16 Cylinders 31,130 Tracks 7,938,150 Sectors 500,103,450 SATA type SATA-III 6.0Gb/s Device type Fixed ATA Standard ATA8-ACS Serial Number TW0V6PN8550852554141 Firmware Version Number VZDC LBA Size 48-bit LBA Power On Count 1403 times Power On Time Unknown Speed Not used (SSD Drive) Features S.M.A.R.T., AAM, NCQ, TRIM, SSD Max. Transfer Mode SATA III 6.0Gb/s Used Transfer Mode SATA III 6.0Gb/s Interface SATA Capacity 238 GB Real size 256,060,514,304 bytes RAID Type None S.M.A.R.T Status Good S.M.A.R.T attributes 05 Attribute name Reallocated Sectors Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good 0C Attribute name Device Power Cycle Count Real value 1,403 Current 100 Worst 100 Threshold 0 Raw Value 000000057B Status Good AF Attribute name Program Fail Count (Chip) Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good B0 Attribute name Erase Fail Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good B1 Attribute name Wear Leveling Count Real value 48,669 Current 100 Worst 100 Threshold 0 Raw Value 000000BE1D Status Good B2 Attribute name Unexpected Power Loss Real value 1 Current 100 Worst 100 Threshold 0 Raw Value 0000000001 Status Good B4 Attribute name Reserved Block Count Real value 1,440 Current 100 Worst 100 Threshold 5 Raw Value 00000005A0 Status Good BB Attribute name Reported Uncorrectable Errors Real value 1 Current 100 Worst 100 Threshold 0 Raw Value 0000000001 Status Good C3 Attribute name Hardware ECC Recovered Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good F1 Attribute name Total LBAs Written Real value 175,216 Current 100 Worst 100 Threshold 0 Raw Value 000002AC70 Status Good F2 Attribute name Total LBAs Read Real value 155,434 Current 100 Worst 100 Threshold 0 Raw Value 0000025F2A Status Good Partition 0 Partition ID Disk #0, Partition #0 File System NTFS Volume Serial Number 5462F9F1 Size 99 MB Used Space 33.4 MB (33%) Free Space 66 MB (67%) Partition 1 Partition ID Disk #0, Partition #1 Disk Letter C: File System NTFS Volume Serial Number 846915CF Size 237 GB Used Space 49 GB (20%) Free Space 188 GB (80%) Partition 2 Partition ID Disk #0, Partition #2 File System NTFS Volume Serial Number 92A26FE2 Size 449 MB Used Space 333 MB (74%) Free Space 116 MB (26%) Optical Drives No optical disk drives detected Audio Sound Cards Intel Display Audio Realtek High Definition Audio Playback Device Speakers / Headphones (Realtek High Definition Audio) Recording Device Microphone (Realtek High Definition Audio) Peripherals Integrated PS/2 Keyboard Device Kind Keyboard Device Name Integrated PS/2 Keyboard Vendor PNP Location Intel QS67 Express Chipset Family LPC Interface Controller - 1C4D Driver Date 12-4-2013 Version 2.5.1.65 File C:\WINDOWS\system32\DRIVERS\cykbfltr.sys File C:\WINDOWS\system32\DRIVERS\i8042prt.sys File C:\WINDOWS\system32\DRIVERS\kbdclass.sys HID Keyboard Device Device Kind Keyboard Device Name HID Keyboard Device Vendor Cypress Semiconductor Corp Location Cypress Input Device Driver Date 6-21-2006 Version 10.0.10586.0 File C:\WINDOWS\system32\DRIVERS\kbdhid.sys File C:\WINDOWS\system32\DRIVERS\kbdclass.sys HID-compliant mouse Device Kind Mouse Device Name HID-compliant mouse Vendor Cypress Semiconductor Corp Location Cypress Input Device Driver Date 6-21-2006 Version 10.0.10586.0 File C:\WINDOWS\system32\DRIVERS\mouhid.sys File C:\WINDOWS\system32\DRIVERS\mouclass.sys Cypress Trackpad Device Kind Mouse Device Name Cypress Trackpad Vendor DLL Location Intel QS67 Express Chipset Family LPC Interface Controller - 1C4D Driver Date 6-24-2015 Version 2.5.1.72 File C:\WINDOWS\system32\DRIVERS\cymfltr.sys File C:\Program Files\Cypress\TrackPad\CyCpIo.exe File C:\Program Files\Cypress\TrackPad\CyHidWin.exe File C:\Program Files\Cypress\TrackPad\CyTp64.dll File C:\Program Files\Cypress\TrackPad\unins000.exe File C:\Program Files\Cypress\TrackPad\DellDevices.exe File C:\Program Files\Cypress\TrackPad\DellDevices.exe.config File C:\Program Files\Cypress\TrackPad\Dell.Framework.Library.dll File C:\Program Files\Cypress\TrackPad\CyTpService.exe File C:\Program Files\Cypress\TrackPad\CyTpService.exe.config File C:\Program Files\Cypress\TrackPad\CySpelunker.dll File C:\WINDOWS\system32\DRIVERS\mouclass.sys File C:\WINDOWS\system32\DRIVERS\i8042prt.sys USB Video Device Device Kind Camera/scanner Device Name USB Video Device Vendor Unknown Comment Integrated Webcam Location 0000.001a.0000.001.005.000.000.000.000 Driver Date 6-21-2006 Version 10.0.10586.0 File C:\WINDOWS\system32\drivers\usbvideo.sys Printers Fax Printer Port SHRFAX: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 200 * 200 dpi Monochrome Status Unknown Driver Driver Name Microsoft Shared Fax Driver (v4.00) Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\FXSDRV.DLL Microsoft Print to PDF (Default Printer) Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft Print To PDF (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_f9853ae82ff0dda6\Amd64\mxdwdrv.dll Microsoft XPS Document Writer Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft XPS Document Writer v4 (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_f9853ae82ff0dda6\Amd64\mxdwdrv.dll Network You are connected to the internet Connected through Intel Centrino Advanced-N 6230 IP Address 192.168.1.4 Subnet mask 255.255.255.0 Gateway server 192.168.1.1 Preferred DNS server 192.168.1.1 DHCP Enabled DHCP server 192.168.1.1 External IP Address 118.93.110.125 Adapter Type IEEE 802.11 wireless NetBIOS over TCP/IP Enabled via DHCP NETBIOS Node Type Hybrid node Link Speed 3.3 KBps Computer Name NetBIOS Name DESKTOP-L2QIGK4 DNS Name DESKTOP-L2QIGK4 Membership Part of workgroup Workgroup WORKGROUP Remote Desktop Disabled Console State Active Domain DESKTOP-L2QIGK4 7A78855482A04FA781DC State Listen WinInet Info LAN Connection Local system uses a local area network to connect to the Internet Local system has RAS to connect to the Internet Wi-Fi Info Using native Wi-Fi API version 2 Available access points count 3 Wi-Fi (SPARK-YUEAPF) SSID SPARK-YUEAPF Frequency 2417000 kHz Channel Number 2 Name SPARK-YUEAPF Signal Strength/Quality 13 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (Thomson6F1FD8) SSID Thomson6F1FD8 Frequency 2437000 kHz Channel Number 6 Name Thomson6F1FD8 Signal Strength/Quality 16 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (vodafone6451) SSID vodafone6451 Frequency 2437000 kHz Channel Number 6 Name vodafone6451 Signal Strength/Quality 99 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags Currently Connected to this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK WinHTTPInfo WinHTTPSessionProxyType No proxy Session Proxy Session Proxy Bypass Connect Retries 5 Connect Timeout (ms) 60,000 HTTP Version HTTP 1.1 Max Connects Per 1.0 Servers INFINITE Max Connects Per Servers INFINITE Max HTTP automatic redirects 10 Max HTTP status continue 10 Send Timeout (ms) 30,000 IEProxy Auto Detect Yes IEProxy Auto Config IEProxy IEProxy Bypass Default Proxy Config Access Type No proxy Default Config Proxy Default Config Proxy Bypass Sharing and Discovery Network Discovery Enabled File and Printer Sharing Enabled File and printer sharing service Enabled Simple File Sharing Enabled Administrative Shares Enabled Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Adapters List Enabled Bluetooth Device (Personal Area Network) Connection Name Bluetooth Network Connection DHCP enabled Yes MAC Address 00-DB-DF-0D-73-B0 Intel(R) Centrino(R) Advanced-N 6230 Connection-specific DNS Suffix home Connection Name WiFi NetBIOS over TCPIP Yes DHCP enabled Yes MAC Address 00-DB-DF-0D-73-AC IP Address 192.168.1.4 Subnet mask 255.255.255.0 Gateway server 192.168.1.1 DHCP 192.168.1.1 DNS Server 192.168.1.1 192.168.1.1 Network Shares Users C:\Users Current TCP Connections C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (4164) Local 192.168.1.4:59498 ESTABLISHED Remote 104.84.85.205:80 (Querying... ) (HTTP) Local 192.168.1.4:59504 ESTABLISHED Remote 203.118.141.238:443 (Querying... ) (HTTPS) Local 192.168.1.4:59508 ESTABLISHED Remote 203.118.141.219:443 (Querying... ) (HTTPS) Local 192.168.1.4:59517 CLOSE-WAIT Remote 203.118.141.223:80 (Querying... ) (HTTP) Local 192.168.1.4:59533 ESTABLISHED Remote 203.109.247.89:80 (Querying... ) (HTTP) Local 192.168.1.4:59535 ESTABLISHED Remote 216.58.220.130:443 (Querying... ) (HTTPS) Local 192.168.1.4:59536 ESTABLISHED Remote 179.60.193.36:443 (Querying... ) (HTTPS) Local 192.168.1.4:59538 ESTABLISHED Remote 216.58.220.109:443 (Querying... ) (HTTPS) Local 192.168.1.4:59542 ESTABLISHED Remote 104.84.85.205:80 (Querying... ) (HTTP) Local 192.168.1.4:59543 ESTABLISHED Remote 104.84.85.205:80 (Querying... ) (HTTP) Local 192.168.1.4:59544 ESTABLISHED Remote 104.84.85.205:80 (Querying... ) (HTTP) Local 192.168.1.4:59545 ESTABLISHED Remote 104.84.85.205:80 (Querying... ) (HTTP) Local 192.168.1.4:59546 ESTABLISHED Remote 104.84.85.205:80 (Querying... ) (HTTP) Local 192.168.1.4:59547 ESTABLISHED Remote 104.84.85.205:80 (Querying... ) (HTTP) Local 192.168.1.4:59548 CLOSE-WAIT Remote 203.118.141.219:80 (Querying... ) (HTTP) Local 192.168.1.4:59567 ESTABLISHED Remote 203.109.247.88:80 (Querying... ) (HTTP) Local 192.168.1.4:59554 ESTABLISHED Remote 104.84.49.140:80 (Querying... ) (HTTP) Local 192.168.1.4:59556 ESTABLISHED Remote 203.118.141.249:443 (Querying... ) (HTTPS) Local 192.168.1.4:59557 ESTABLISHED Remote 216.58.199.38:443 (Querying... ) (HTTPS) Local 192.168.1.4:59551 ESTABLISHED Remote 104.244.42.72:443 (Querying... ) (HTTPS) Local 192.168.1.4:59641 ESTABLISHED Remote 216.58.199.66:443 (Querying... ) (HTTPS) Local 192.168.1.4:59642 ESTABLISHED Remote 203.109.247.73:80 (Querying... ) (HTTP) Local 192.168.1.4:59488 ESTABLISHED Remote 216.58.199.42:443 (Querying... ) (HTTPS) Local 192.168.1.4:59644 ESTABLISHED Remote 54.248.110.173:443 (Querying... ) (HTTPS) Local 192.168.1.4:59645 CLOSE-WAIT Remote 203.118.141.219:80 (Querying... ) (HTTP) Local 192.168.1.4:59652 ESTABLISHED Remote 54.251.115.224:443 (Querying... ) (HTTPS) Local 192.168.1.4:59553 ESTABLISHED Remote 64.233.188.154:443 (Querying... ) (HTTPS) Local 192.168.1.4:59656 ESTABLISHED Remote 104.84.49.72:443 (Querying... ) (HTTPS) Local 192.168.1.4:59658 ESTABLISHED Remote 104.84.76.117:443 (Querying... ) (HTTPS) Local 192.168.1.4:59659 ESTABLISHED Remote 104.84.72.8:80 (Querying... ) (HTTP) Local 192.168.1.4:59660 ESTABLISHED Remote 104.84.72.8:80 (Querying... ) (HTTP) Local 192.168.1.4:59621 ESTABLISHED Remote 52.17.1.241:443 (Querying... ) (HTTPS) Local 192.168.1.4:59566 ESTABLISHED Remote 216.58.199.38:443 (Querying... ) (HTTPS) lsass.exe (720) Local 0.0.0.0:49695 LISTEN services.exe (712) Local 0.0.0.0:49668 LISTEN spoolsv.exe (1844) Local 0.0.0.0:49667 LISTEN svchost.exe (1080) Local 0.0.0.0:49665 LISTEN svchost.exe (356) Local 0.0.0.0:49666 LISTEN svchost.exe (888) Local 0.0.0.0:135 (DCE) LISTEN System Process Local 192.168.1.4:59512 TIME-WAIT Remote 104.84.72.8:80 (Querying... ) (HTTP) Local 192.168.1.4:59653 TIME-WAIT Remote 54.248.110.173:443 (Querying... ) (HTTPS) Local 192.168.1.4:59661 TIME-WAIT Remote 104.84.72.8:80 (Querying... ) (HTTP) Local 192.168.1.4:59672 TIME-WAIT Remote 212.124.124.30:80 (Querying... ) (HTTP) Local 192.168.1.4:59549 TIME-WAIT Remote 203.109.247.89:80 (Querying... ) (HTTP) Local 192.168.1.4:59643 TIME-WAIT Remote 203.118.141.216:80 (Querying... ) (HTTP) Local 192.168.1.4:59560 TIME-WAIT Remote 203.118.141.216:80 (Querying... ) (HTTP) Local 192.168.1.4:59564 TIME-WAIT Remote 216.58.199.66:80 (Querying... ) (HTTP) Local 192.168.1.4:59591 TIME-WAIT Remote 212.124.124.30:80 (Querying... ) (HTTP) Local 192.168.1.4:59598 TIME-WAIT Remote 192.168.1.1:1990 (Querying... ) Local 192.168.1.4:59550 TIME-WAIT Remote 203.109.247.89:80 (Querying... ) (HTTP) Local 192.168.1.4:59608 TIME-WAIT Remote 23.235.33.196:80 (Querying... ) (HTTP) Local 192.168.1.4:59611 TIME-WAIT Remote 216.58.199.66:80 (Querying... ) (HTTP) Local 192.168.1.4:59612 TIME-WAIT Remote 216.58.199.66:80 (Querying... ) (HTTP) Local 192.168.1.4:59613 TIME-WAIT Remote 216.58.199.66:80 (Querying... ) (HTTP) Local 192.168.1.4:59614 TIME-WAIT Remote 203.118.141.229:80 (Querying... ) (HTTP) Local 192.168.1.4:59615 TIME-WAIT Remote 203.118.141.229:80 (Querying... ) (HTTP) Local 192.168.1.4:59509 TIME-WAIT Remote 104.84.72.8:80 (Querying... ) (HTTP) Local 192.168.1.4:59510 TIME-WAIT Remote 104.84.72.8:80 (Querying... ) (HTTP) Local 192.168.1.4:59511 TIME-WAIT Remote 104.84.72.8:80 (Querying... ) (HTTP) Local 192.168.1.4:59616 TIME-WAIT Remote 203.118.141.229:80 (Querying... ) (HTTP) Local 192.168.1.4:59513 TIME-WAIT Remote 50.19.246.28:80 (Querying... ) (HTTP) Local 192.168.1.4:59514 TIME-WAIT Remote 50.19.246.28:80 (Querying... ) (HTTP) Local 192.168.1.4:59617 TIME-WAIT Remote 74.125.203.95:80 (Querying... ) (HTTP) Local 192.168.1.4:59522 TIME-WAIT Remote 64.156.167.77:443 (Querying... ) (HTTPS) Local 192.168.1.4:59523 TIME-WAIT Remote 64.156.167.77:443 (Querying... ) (HTTPS) Local 192.168.1.4:59527 TIME-WAIT Remote 192.229.237.25:80 (Querying... ) (HTTP) Local 192.168.1.4:59529 TIME-WAIT Remote 64.156.167.77:443 (Querying... ) (HTTPS) Local 192.168.1.4:59618 TIME-WAIT Remote 74.125.203.95:80 (Querying... ) (HTTP) Local 192.168.1.4:59619 TIME-WAIT Remote 74.125.203.95:80 (Querying... ) (HTTP) Local 192.168.1.4:59623 TIME-WAIT Remote 54.192.135.53:80 (Querying... ) (HTTP) Local 192.168.1.4:59625 TIME-WAIT Remote 179.60.193.7:80 (Querying... ) (HTTP) Local 192.168.1.4:59539 TIME-WAIT Remote 179.60.193.7:80 (Querying... ) (HTTP) Local 192.168.1.4:59540 TIME-WAIT Remote 179.60.193.7:80 (Querying... ) (HTTP) Local 192.168.1.4:59626 TIME-WAIT Remote 179.60.193.7:80 (Querying... ) (HTTP) Local 192.168.1.4:59627 TIME-WAIT Remote 52.17.1.241:443 (Querying... ) (HTTPS) Local 192.168.1.4:59629 TIME-WAIT Remote 203.109.247.89:80 (Querying... ) (HTTP) Local 192.168.1.4:59630 TIME-WAIT Remote 203.109.247.89:80 (Querying... ) (HTTP) System Process Local 0.0.0.0:445 (Windows shares) LISTEN Local 0.0.0.0:5357 LISTEN Local 0.0.0.0:49152 LISTEN Local 0.0.0.0:49153 LISTEN Local 0.0.0.0:49154 LISTEN Local 192.168.1.4:139 (NetBIOS session service) LISTEN wininit.exe (580) Local 0.0.0.0:49664 LISTEN Generated with Speccy v1.29.714