Summary Operating System Windows 10 Home 64-bit CPU Intel Core i3 @ 1.50GHz 52 °C Haswell ULT 22nm Technology RAM 4.00GB Dual-Channel DDR3 @ 798MHz (11-11-11-28) Motherboard LENOVO VIUU4 (U3E1) 28 °C Graphics Generic PnP Monitor (1366x768@60Hz) Intel HD Graphics Family (Lenovo) Storage 465GB Seagate ST500LX012-SSHD-8GB (SATA) 38 °C Optical Drives No optical disk drives detected Audio Conexant SmartAudio HD Operating System Windows 10 Home 64-bit Computer type: Tablet Installation Date: 2/3/2017 10:06:50 AM Windows Security Center User Account Control (UAC) Enabled Notify level 2 - Default Firewall Enabled Windows Update AutoUpdate Not configured Windows Defender Windows Defender Disabled Antivirus Avast Antivirus Antivirus Enabled Virus Signature Database Up to date Windows Defender Antivirus Disabled Virus Signature Database Up to date .NET Frameworks installed v4.6 Full v4.6 Client v3.5 SP1 v3.0 SP2 v2.0 SP2 Internet Explorer Version 11.576.14393.0 PowerShell Version 5.1.14393.0 Environment Variables USERPROFILE C:\Users\erin SystemRoot C:\WINDOWS User Variables OneDrive C:\Users\erin\OneDrive Path C:\Users\erin\AppData\Local\Microsoft\WindowsApps TEMP C:\Users\erin\AppData\Local\Temp TMP C:\Users\erin\AppData\Local\Temp Machine Variables ComSpec C:\WINDOWS\system32\cmd.exe configsetroot C:\WINDOWS\ConfigSetRoot easyplussdk "C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin" NUMBER_OF_PROCESSORS 4 OS Windows_NT Path C:\WINDOWS\system32 C:\WINDOWS C:\WINDOWS\System32\Wbem C:\WINDOWS\System32\WindowsPowerShell\v1.0\ C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE AMD64 PROCESSOR_IDENTIFIER Intel64 Family 6 Model 69 Stepping 1, GenuineIntel PROCESSOR_LEVEL 6 PROCESSOR_REVISION 4501 PSModulePath C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules\ TEMP C:\WINDOWS\TEMP TMP C:\WINDOWS\TEMP USERNAME SYSTEM windir C:\WINDOWS Battery AC Line Offline Battery Charge % 90 % Battery State High Remaining Battery Time 3 : 32 Power Profile Active power scheme Balanced Hibernation Enabled Turn Off Monitor after: (On AC Power) 10 min Turn Off Monitor after: (On Battery Power) 5 min Turn Off Hard Disk after: (On AC Power) 20 min Turn Off Hard Disk after: (On Battery Power) 10 min Suspend after: (On AC Power) 30 min Suspend after: (On Battery Power) 15 min Screen saver Disabled Uptime Current Session Current Time 6/29/2017 8:14:39 AM Current Uptime 660,367 sec (7 d, 15 h, 26 m, 07 s) Last Boot Time 6/21/2017 4:48:32 PM Services Running Application Information Running AppX Deployment Service (AppXSVC) Running aswbIDSAgent Running AtherosSvc Running Avast Antivirus Running Background Intelligent Transfer Service Running Background Tasks Infrastructure Service Running Base Filtering Engine Running Bluetooth Support Service Running CDPUserSvc_85274 Running Client License Service (ClipSVC) Running CNG Key Isolation Running COM+ Event System Running Conexant Audio Message Service Running Conexant SmartAudio service Running Connected Devices Platform Service Running Connected User Experiences and Telemetry Running Contact Data_85274 Running CoreMessaging Running Credential Manager Running Cryptographic Services Running Data Sharing Service Running DCOM Server Process Launcher Running Delivery Optimization Running Device Association Service Running DHCP Client Running Diagnostic Policy Service Running Diagnostic Service Host Running Diagnostic System Host Running Distributed Link Tracking Client Running DNS Client Running ESIF Upper Framework Service Running Geolocation Service Running Group Policy Client Running Intel HD Graphics Control Panel Service Running Intel Rapid Storage Technology Running IP Helper Running Local Session Manager Running Malwarebytes Service Running Microsoft Account Sign-in Assistant Running Microsoft Office ClickToRun Service Running Microsoft Windows SMS Router Service. Running Network Connection Broker Running Network Connections Running Network List Service Running Network Location Awareness Running Network Setup Service Running Network Store Interface Service Running Peer Name Resolution Protocol Running Peer Networking Identity Manager Running Plug and Play Running Power Running Print Spooler Running Program Compatibility Assistant Service Running Remote Procedure Call (RPC) Running RPC Endpoint Mapper Running Security Accounts Manager Running Security Center Running Sensor Monitoring Service Running Sensor Service Running Server Running Shell Hardware Detection Running SSDP Discovery Running State Repository Service Running Storage Service Running Superfetch Running Sync Host_85274 Running System Event Notification Service Running System Events Broker Running Task Scheduler Running TCP/IP NetBIOS Helper Running Themes Running Tile Data model server Running Time Broker Running Touch Keyboard and Handwriting Panel Service Running User Data Access_85274 Running User Data Storage_85274 Running User Manager Running User Profile Service Running Windows Audio Running Windows Audio Endpoint Builder Running Windows Connection Manager Running Windows Driver Foundation - User-mode Driver Framework Running Windows Event Log Running Windows Firewall Running Windows Font Cache Service Running Windows License Manager Service Running Windows Management Instrumentation Running Windows Presentation Foundation Font Cache 3.0.0.0 Running Windows Push Notifications System Service Running Windows Search Running Windows Update Running WinHTTP Web Proxy Auto-Discovery Service Running WLAN AutoConfig Running Workstation Running ymc Stopped ActiveX Installer (AxInstSV) Stopped AllJoyn Router Service Stopped App Readiness Stopped Application Identity Stopped Application Layer Gateway Service Stopped Auto Time Zone Updater Stopped BitLocker Drive Encryption Service Stopped Block Level Backup Engine Service Stopped Bluetooth Handsfree Service Stopped Certificate Propagation Stopped COM+ System Application Stopped Computer Browser Stopped DataCollectionPublishingService Stopped Device Install Service Stopped Device Management Enrollment Service Stopped Device Setup Manager Stopped DevQuery Background Discovery Broker Stopped Distributed Transaction Coordinator Stopped dmwappushsvc Stopped Downloaded Maps Manager Stopped Embedded Mode Stopped Encrypting File System (EFS) Stopped Enterprise App Management Service Stopped Extensible Authentication Protocol Stopped Fax Stopped File History Service Stopped Function Discovery Provider Host Stopped Function Discovery Resource Publication Stopped Google Update Service (gupdate) Stopped Google Update Service (gupdatem) Stopped HomeGroup Listener Stopped HomeGroup Provider Stopped Human Interface Device Service Stopped HV Host Service Stopped Hyper-V Data Exchange Service Stopped Hyper-V Guest Service Interface Stopped Hyper-V Guest Shutdown Service Stopped Hyper-V Heartbeat Service Stopped Hyper-V PowerShell Direct Service Stopped Hyper-V Remote Desktop Virtualization Service Stopped Hyper-V Time Synchronization Service Stopped Hyper-V Volume Shadow Copy Requestor Stopped IKE and AuthIP IPsec Keying Modules Stopped Infrared monitor service Stopped Intel Content Protection HECI Service Stopped Interactive Services Detection Stopped Internet Connection Sharing (ICS) Stopped IPsec Policy Agent Stopped KtmRm for Distributed Transaction Coordinator Stopped Link-Layer Topology Discovery Mapper Stopped MessagingService_85274 Stopped Microsoft Diagnostics Hub Standard Collector Service Stopped Microsoft iSCSI Initiator Service Stopped Microsoft Passport Stopped Microsoft Passport Container Stopped Microsoft Software Shadow Copy Provider Stopped Microsoft Storage Spaces SMP Stopped Net.Tcp Port Sharing Service Stopped Netlogon Stopped Network Connected Devices Auto-Setup Stopped Network Connectivity Assistant Stopped Office Source Engine Stopped Optimize drives Stopped Peer Networking Grouping Stopped Performance Counter DLL Host Stopped Performance Logs & Alerts Stopped Phone Service Stopped PNRP Machine Name Publication Service Stopped Portable Device Enumerator Service Stopped Printer Extensions and Notifications Stopped Problem Reports and Solutions Control Panel Support Stopped Quality Windows Audio Video Experience Stopped Radio Management Service Stopped Remote Access Auto Connection Manager Stopped Remote Access Connection Manager Stopped Remote Desktop Configuration Stopped Remote Desktop Services Stopped Remote Desktop Services UserMode Port Redirector Stopped Remote Procedure Call (RPC) Locator Stopped Remote Registry Stopped Retail Demo Service Stopped Routing and Remote Access Stopped Secondary Logon Stopped Secure Socket Tunneling Protocol Service Stopped Sensor Data Service Stopped Shared PC Account Manager Stopped Smart Card Stopped Smart Card Device Enumeration Service Stopped Smart Card Removal Policy Stopped SNMP Trap Stopped Software Protection Stopped Spot Verifier Stopped Still Image Acquisition Events Stopped Storage Tiers Management Stopped System Interface Foundation Service Stopped Telephony Stopped Update Orchestrator Service for Windows Update Stopped UPnP Device Host Stopped Virtual Disk Stopped Volume Shadow Copy Stopped WalletService Stopped WebClient Stopped Windows Backup Stopped Windows Biometric Service Stopped Windows Camera Frame Server Stopped Windows Connect Now - Config Registrar Stopped Windows Defender Network Inspection Service Stopped Windows Defender Service Stopped Windows Encryption Provider Host Service Stopped Windows Error Reporting Service Stopped Windows Event Collector Stopped Windows Image Acquisition (WIA) Stopped Windows Insider Service Stopped Windows Installer Stopped Windows Media Player Network Sharing Service Stopped Windows Mobile Hotspot Service Stopped Windows Modules Installer Stopped Windows Push Notifications User Service_85274 Stopped Windows Remote Management (WS-Management) Stopped Windows Time Stopped Wired AutoConfig Stopped WMI Performance Adapter Stopped Work Folders Stopped WWAN AutoConfig Stopped Xbox Live Auth Manager Stopped Xbox Live Game Save Stopped Xbox Live Networking Service TimeZone TimeZone GMT -6:00 Hours Language English (United States) Location United States Format English (United States) Currency $ Date Format M/d/yyyy Time Format h:mm:ss tt Scheduler 6/29/2017 8:15 AM; Bing Search Engine sirer 6/29/2017 9:05 AM; GoogleUpdateTaskMachineUA 6/29/2017 12:05 PM; GoogleUpdateTaskMachineCore 6/30/2017 9:49 PM; OneDrive Standalone Update Task v2 CCleanerSkipUAC Hotfixes Installed 3/18/2017 Windows Malicious Software Removal Tool for Windows 8, 8.1, 10 and Windows Server 2012, 2012 R2, 2016 x64 Edition - March 2017 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 3/18/2017 Update for Windows 10 Version 1607 for x64-based Systems (KB4013418) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 3/18/2017 Security Update for Adobe Flash Player for Windows 10 Version 1607 (for x64-based Systems) (KB4014329) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 2/10/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB3213986) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 2/10/2017 Security Update for Adobe Flash Player for Windows 10 Version 1607 (for x64-based Systems) (KB3214628) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. Not Installed 6/28/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4015217) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 4/17/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4015217) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 4/17/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4015217) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 4/17/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4015217) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 4/17/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4015217) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 4/17/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4015217) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 4/7/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4013429) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 3/29/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4013429) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 3/28/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4013429) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 3/18/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4013429) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 3/16/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4013429) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 3/16/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4013429) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 3/16/2017 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4013429) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 2/9/2017 Update for Windows 10 Version 1607 for x64-based Systems (KB3211320) Installation Status Failed Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed 12/30/1899 Installation Status Failed System Folders Application Data C:\ProgramData Cookies C:\Users\erin\AppData\Local\Microsoft\Windows\INetCookies Desktop C:\Users\erin\Desktop Documents C:\Users\Public\Documents Fonts C:\WINDOWS\Fonts Global Favorites C:\Users\erin\Favorites Internet History C:\Users\erin\AppData\Local\Microsoft\Windows\History Local Application Data C:\Users\erin\AppData\Local Music C:\Users\Public\Music Path for burning CD C:\Users\erin\AppData\Local\Microsoft\Windows\Burn\Burn Physical Desktop C:\Users\erin\Desktop Pictures C:\Users\Public\Pictures Program Files C:\Program Files Public Desktop C:\Users\Public\Desktop Start Menu C:\ProgramData\Microsoft\Windows\Start Menu Start Menu Programs C:\ProgramData\Microsoft\Windows\Start Menu\Programs Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Templates C:\ProgramData\Microsoft\Windows\Templates Temporary Internet Files C:\Users\erin\AppData\Local\Microsoft\Windows\INetCache User Favorites C:\Users\erin\Favorites Videos C:\Users\Public\Videos Windows Directory C:\WINDOWS Windows/System C:\WINDOWS\system32 Process List AdminService.exe Process ID 2572 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Bluetooth Suite\AdminService.exe Memory Usage 5.51 MB Peak Memory Usage 6.96 MB ApplicationFrameHost.exe Process ID 8564 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\ApplicationFrameHost.exe Memory Usage 26 MB Peak Memory Usage 29 MB aswidsagenta.exe Process ID 3436 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe Memory Usage 44 MB Peak Memory Usage 53 MB audiodg.exe Process ID 2180 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\audiodg.exe Memory Usage 14 MB Peak Memory Usage 19 MB AvastSvc.exe Process ID 1908 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\AVAST Software\Avast\AvastSvc.exe Memory Usage 103 MB Peak Memory Usage 298 MB AvastUI.exe Process ID 6160 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files\AVAST Software\Avast\AvastUI.exe Memory Usage 41 MB Peak Memory Usage 50 MB backgroundTaskHost.exe Process ID 5428 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\backgroundTaskHost.exe Memory Usage 19 MB Peak Memory Usage 40 MB backgroundTaskHost.exe Process ID 4768 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\backgroundTaskHost.exe Memory Usage 46 MB Peak Memory Usage 51 MB browser_broker.exe Process ID 7848 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\browser_broker.exe Memory Usage 17 MB Peak Memory Usage 18 MB CAudioFilterAgent64.exe Process ID 5900 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe Memory Usage 7.07 MB Peak Memory Usage 8.18 MB chrome.exe Process ID 7296 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 45 MB Peak Memory Usage 54 MB chrome.exe Process ID 3216 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 8.69 MB Peak Memory Usage 10 MB chrome.exe Process ID 9928 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 106 MB Peak Memory Usage 275 MB chrome.exe Process ID 9048 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 461 MB Peak Memory Usage 599 MB chrome.exe Process ID 9768 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 8.12 MB Peak Memory Usage 9.47 MB chrome.exe Process ID 6516 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 154 MB Peak Memory Usage 186 MB CompatTelRunner.exe Process ID 7788 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\CompatTelRunner.exe Memory Usage 23 MB Peak Memory Usage 42 MB conhost.exe Process ID 6480 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\conhost.exe Memory Usage 5.57 MB Peak Memory Usage 5.91 MB CSISYNCCLIENT.EXE Process ID 9524 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE Memory Usage 24 MB Peak Memory Usage 29 MB csrss.exe Process ID 680 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 4.60 MB Peak Memory Usage 36 MB csrss.exe Process ID 580 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 3.65 MB Peak Memory Usage 4.64 MB CxAudMsg64.exe Process ID 2604 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\CxAudMsg64.exe Memory Usage 6.59 MB Peak Memory Usage 8.10 MB dasHost.exe Process ID 1884 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\dasHost.exe Memory Usage 11 MB Peak Memory Usage 14 MB dllhost.exe Process ID 7416 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\dllhost.exe Memory Usage 11 MB Peak Memory Usage 13 MB dwm.exe Process ID 376 User DWM-1 Domain Window Manager Path C:\Windows\System32\dwm.exe Memory Usage 42 MB Peak Memory Usage 80 MB esif_assist_64.exe Process ID 4304 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\Temp\DPTF\esif_assist_64.exe Memory Usage 3.97 MB Peak Memory Usage 4.80 MB esif_uf.exe Process ID 2536 User SYSTEM Domain NT AUTHORITY Path C:\Windows\SysWOW64\esif_uf.exe Memory Usage 5.19 MB Peak Memory Usage 7.06 MB explorer.exe Process ID 4176 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\explorer.exe Memory Usage 91 MB Peak Memory Usage 109 MB fontdrvhost.exe Process ID 6712 Path C:\Windows\System32\fontdrvhost.exe Memory Usage 2.75 MB Peak Memory Usage 3.30 MB FRST64.exe Process ID 2912 User erin Domain DESKTOP-6S12IL0 Path C:\Users\erin\Desktop\FRST64.exe Memory Usage 18 MB Peak Memory Usage 35 MB GoogleCrashHandler.exe Process ID 6264 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe Memory Usage 1.48 MB Peak Memory Usage 6.49 MB GoogleCrashHandler64.exe Process ID 7220 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe Memory Usage 1.05 MB Peak Memory Usage 6.07 MB IAStorDataMgrSvc.exe Process ID 7204 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Intel\Intel Rapid Storage Technology\IAStorDataMgrSvc.exe Memory Usage 34 MB Peak Memory Usage 49 MB IAStorIcon.exe Process ID 2684 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files\Intel\Intel Rapid Storage Technology\IAStorIcon.exe Memory Usage 28 MB Peak Memory Usage 38 MB igfxCUIService.exe Process ID 1432 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\igfxCUIService.exe Memory Usage 7.37 MB Peak Memory Usage 8.79 MB igfxEM.exe Process ID 4544 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\igfxEM.exe Memory Usage 9.75 MB Peak Memory Usage 12 MB igfxHK.exe Process ID 4700 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\igfxHK.exe Memory Usage 7.39 MB Peak Memory Usage 9.20 MB igfxTray.exe Process ID 4968 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\igfxTray.exe Memory Usage 8.87 MB Peak Memory Usage 11 MB lsass.exe Process ID 804 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\lsass.exe Memory Usage 14 MB Peak Memory Usage 16 MB MBAMService.exe Process ID 2544 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe Memory Usage 19 MB Peak Memory Usage 42 MB mbamtray.exe Process ID 560 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe Memory Usage 23 MB Peak Memory Usage 30 MB Memory Compression Process ID 2716 User SYSTEM Domain NT AUTHORITY Memory Usage 112 MB Peak Memory Usage 220 MB MicrosoftEdge.exe Process ID 4760 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe Memory Usage 65 MB Peak Memory Usage 70 MB MicrosoftEdgeCP.exe Process ID 9364 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe Memory Usage 141 MB Peak Memory Usage 187 MB MicrosoftEdgeCP.exe Process ID 9096 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe Memory Usage 109 MB Peak Memory Usage 116 MB MicrosoftEdgeCP.exe Process ID 9444 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe Memory Usage 106 MB Peak Memory Usage 113 MB notepad.exe Process ID 10752 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\notepad.exe Memory Usage 14 MB Peak Memory Usage 16 MB notepad.exe Process ID 8072 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\notepad.exe Memory Usage 14 MB Peak Memory Usage 16 MB officeclicktorun.exe Process ID 5272 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe Memory Usage 28 MB Peak Memory Usage 67 MB OneDrive.exe Process ID 9144 User erin Domain DESKTOP-6S12IL0 Path C:\Users\erin\AppData\Local\Microsoft\OneDrive\OneDrive.exe Memory Usage 37 MB Peak Memory Usage 43 MB ONENOTEM.EXE Process ID 9708 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE Memory Usage 7.80 MB Peak Memory Usage 16 MB PresentationFontCache.exe Process ID 4724 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe Memory Usage 8.03 MB Peak Memory Usage 19 MB RemindersServer.exe Process ID 5756 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe Memory Usage 21 MB Peak Memory Usage 21 MB rundll32.exe Process ID 10196 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\rundll32.exe Memory Usage 10 MB Peak Memory Usage 12 MB RuntimeBroker.exe Process ID 4684 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 51 MB Peak Memory Usage 61 MB SASrv.exe Process ID 2612 User SYSTEM Domain NT AUTHORITY Path C:\Windows\SysWOW64\SASrv.exe Memory Usage 5.07 MB Peak Memory Usage 6.34 MB SearchFilterHost.exe Process ID 7560 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchFilterHost.exe Memory Usage 9.88 MB Peak Memory Usage 10 MB SearchIndexer.exe Process ID 980 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchIndexer.exe Memory Usage 22 MB Peak Memory Usage 24 MB SearchProtocolHost.exe Process ID 8744 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\SearchProtocolHost.exe Memory Usage 6.97 MB Peak Memory Usage 7.58 MB SearchProtocolHost.exe Process ID 5932 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchProtocolHost.exe Memory Usage 11 MB Peak Memory Usage 17 MB SearchUI.exe Process ID 5180 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe Memory Usage 68 MB Peak Memory Usage 171 MB services.exe Process ID 788 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\services.exe Memory Usage 6.88 MB Peak Memory Usage 14 MB SettingSyncHost.exe Process ID 5504 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\SettingSyncHost.exe Memory Usage 3.69 MB Peak Memory Usage 22 MB ShellExperienceHost.exe Process ID 1572 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Memory Usage 48 MB Peak Memory Usage 100 MB sihost.exe Process ID 4364 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\sihost.exe Memory Usage 25 MB Peak Memory Usage 25 MB SkypeHost.exe Process ID 11244 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeHost.exe Memory Usage 2.75 MB Peak Memory Usage 82 MB smartscreen.exe Process ID 6872 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\smartscreen.exe Memory Usage 27 MB Peak Memory Usage 33 MB smss.exe Process ID 424 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\smss.exe Memory Usage 956 KB Peak Memory Usage 1.23 MB SnippingTool.exe Process ID 10080 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\SnippingTool.exe Memory Usage 14 MB Peak Memory Usage 26 MB Speccy64.exe Process ID 8424 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files\Speccy\Speccy64.exe Memory Usage 31 MB Peak Memory Usage 31 MB spoolsv.exe Process ID 1280 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\spoolsv.exe Memory Usage 14 MB Peak Memory Usage 16 MB svchost.exe Process ID 892 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 23 MB Peak Memory Usage 32 MB svchost.exe Process ID 516 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 97 MB Peak Memory Usage 145 MB svchost.exe Process ID 4372 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\svchost.exe Memory Usage 33 MB Peak Memory Usage 34 MB svchost.exe Process ID 2672 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 22 MB Peak Memory Usage 27 MB svchost.exe Process ID 952 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 12 MB svchost.exe Process ID 2552 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 25 MB Peak Memory Usage 36 MB svchost.exe Process ID 2300 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 12 MB svchost.exe Process ID 10260 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 58 MB svchost.exe Process ID 1844 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 16 MB svchost.exe Process ID 1796 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 38 MB svchost.exe Process ID 1780 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 14 MB svchost.exe Process ID 1584 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.94 MB Peak Memory Usage 9.61 MB svchost.exe Process ID 552 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 26 MB Peak Memory Usage 30 MB svchost.exe Process ID 1032 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 25 MB Peak Memory Usage 91 MB svchost.exe Process ID 10444 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.19 MB Peak Memory Usage 7.23 MB svchost.exe Process ID 856 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 22 MB Peak Memory Usage 28 MB svchost.exe Process ID 528 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 70 MB Peak Memory Usage 773 MB SynTPEnh.exe Process ID 6332 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files\Synaptics\SynTP\SynTPEnh.exe Memory Usage 19 MB Peak Memory Usage 21 MB SynTPHelper.exe Process ID 6040 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files\Synaptics\SynTP\SynTPHelper.exe Memory Usage 4.06 MB Peak Memory Usage 4.83 MB System Process ID 4 Memory Usage 120 KB Peak Memory Usage 12 MB System Idle Process Process ID 0 TabTip.exe Process ID 6120 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe Memory Usage 13 MB Peak Memory Usage 14 MB TabTip32.exe Process ID 5364 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe Memory Usage 4.05 MB Peak Memory Usage 4.83 MB taskhostw.exe Process ID 7548 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\taskhostw.exe Memory Usage 13 MB Peak Memory Usage 18 MB taskhostw.exe Process ID 4504 User erin Domain DESKTOP-6S12IL0 Path C:\Windows\System32\taskhostw.exe Memory Usage 21 MB Peak Memory Usage 38 MB utility.exe Process ID 2244 User erin Domain DESKTOP-6S12IL0 Path C:\Program Files\Lenovo\LenovoUtility\utility.exe Memory Usage 10 MB Peak Memory Usage 11 MB wininit.exe Process ID 668 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wininit.exe Memory Usage 4.08 MB Peak Memory Usage 5.27 MB winlogon.exe Process ID 740 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\winlogon.exe Memory Usage 7.39 MB Peak Memory Usage 13 MB WmiPrvSE.exe Process ID 3664 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 10 MB Peak Memory Usage 14 MB WmiPrvSE.exe Process ID 5608 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 17 MB Peak Memory Usage 18 MB WUDFHost.exe Process ID 2356 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\WUDFHost.exe Memory Usage 4.52 MB Peak Memory Usage 6.11 MB WUDFHost.exe Process ID 2232 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\WUDFHost.exe Memory Usage 7.14 MB Peak Memory Usage 8.39 MB WUDFHost.exe Process ID 1056 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\WUDFHost.exe Memory Usage 12 MB Peak Memory Usage 36 MB ymc.exe Process ID 2836 User SYSTEM Domain NT AUTHORITY Path C:\ProgramData\LenovoTransition\Server\x64\ymc.exe Memory Usage 19 MB Peak Memory Usage 30 MB Security Options Accounts: Administrator account status Disabled Accounts: Block Microsoft accounts Not Defined Accounts: Guest account status Disabled Accounts: Limit local account use of blank passwords to console logon only Enabled Accounts: Rename administrator account Administrator Accounts: Rename guest account Guest Audit: Audit the access of global system objects Disabled Audit: Audit the use of Backup and Restore privilege Enabled Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings Not Defined Audit: Shut down system immediately if unable to log security audits Disabled DCOM: Machine Access Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined DCOM: Machine Launch Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined Devices: Allow undock without having to log on Enabled Devices: Allowed to format and eject removable media Not Defined Devices: Prevent users from installing printer drivers Disabled Devices: Restrict CD-ROM access to locally logged-on user only Not Defined Devices: Restrict floppy access to locally logged-on user only Not Defined Domain controller: Allow server operators to schedule tasks Not Defined Domain controller: LDAP server signing requirements Not Defined Domain controller: Refuse machine account password changes Not Defined Domain member: Digitally encrypt or sign secure channel data (always) Enabled Domain member: Digitally encrypt secure channel data (when possible) Enabled Domain member: Digitally sign secure channel data (when possible) Enabled Domain member: Disable machine account password changes Disabled Domain member: Maximum machine account password age 30 days Domain member: Require strong (Windows 2000 or later) session key Enabled Interactive logon: Display user information when the session is locked Not Defined Interactive logon: Do not display last user name Disabled Interactive logon: Do not require CTRL+ALT+DEL Not Defined Interactive logon: Machine account lockout threshold Not Defined Interactive logon: Machine inactivity limit Not Defined Interactive logon: Message text for users attempting to log on Interactive logon: Message title for users attempting to log on Interactive logon: Number of previous logons to cache (in case domain controller is not available) 10 logons Interactive logon: Prompt user to change password before expiration 5 days Interactive logon: Require Domain Controller authentication to unlock workstation Disabled Interactive logon: Require smart card Disabled Interactive logon: Smart card removal behavior No Action Microsoft network client: Digitally sign communications (always) Disabled Microsoft network client: Digitally sign communications (if server agrees) Enabled Microsoft network client: Send unencrypted password to third-party SMB servers Disabled Microsoft network server: Amount of idle time required before suspending session Not Defined Microsoft network server: Attempt S4U2Self to obtain claim information Not Defined Microsoft network server: Digitally sign communications (always) Disabled Microsoft network server: Digitally sign communications (if client agrees) Disabled Microsoft network server: Disconnect clients when logon hours expire Enabled Microsoft network server: Server SPN target name validation level Not Defined Network access: Allow anonymous SID/Name translation Disabled Network access: Do not allow anonymous enumeration of SAM accounts Enabled Network access: Do not allow anonymous enumeration of SAM accounts and shares Disabled Network access: Do not allow storage of passwords and credentials for network authentication Disabled Network access: Let Everyone permissions apply to anonymous users Disabled Network access: Named Pipes that can be accessed anonymously Network access: Remotely accessible registry paths System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion Network access: Remotely accessible registry paths and sub-paths System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog Network access: Restrict anonymous access to Named Pipes and Shares Enabled Network access: Restrict clients allowed to make remote calls to SAM Network access: Shares that can be accessed anonymously Not Defined Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Network security: Allow Local System to use computer identity for NTLM Not Defined Network security: Allow LocalSystem NULL session fallback Not Defined Network security: Allow PKU2U authentication requests to this computer to use online identities. Not Defined Network security: Configure encryption types allowed for Kerberos Not Defined Network security: Do not store LAN Manager hash value on next password change Enabled Network security: Force logoff when logon hours expire Disabled Network security: LAN Manager authentication level Not Defined Network security: LDAP client signing requirements Negotiate signing Network security: Minimum session security for NTLM SSP based (including secure RPC) clients Require 128-bit encryption Network security: Minimum session security for NTLM SSP based (including secure RPC) servers Require 128-bit encryption Network security: Restrict NTLM: Add remote server exceptions for NTLM authentication Not Defined Network security: Restrict NTLM: Add server exceptions in this domain Not Defined Network security: Restrict NTLM: Audit Incoming NTLM Traffic Not Defined Network security: Restrict NTLM: Audit NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Incoming NTLM traffic Not Defined Network security: Restrict NTLM: NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Outgoing NTLM traffic to remote servers Not Defined Recovery console: Allow automatic administrative logon Not Defined Recovery console: Allow floppy copy and access to all drives and all folders Not Defined Shutdown: Allow system to be shut down without having to log on Enabled Shutdown: Clear virtual memory pagefile Disabled System cryptography: Force strong key protection for user keys stored on the computer Not Defined System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing Disabled System objects: Require case insensitivity for non-Windows subsystems Enabled System objects: Strengthen default permissions of internal system objects (e.g. Symbolic Links) Enabled System settings: Optional subsystems System settings: Use Certificate Rules on Windows Executables for Software Restriction Policies Disabled User Account Control: Admin Approval Mode for the Built-in Administrator account Not Defined User Account Control: Allow UIAccess applications to prompt for elevation without using the secure desktop Disabled User Account Control: Behavior of the elevation prompt for administrators in Admin Approval Mode Prompt for consent for non-Windows binaries User Account Control: Behavior of the elevation prompt for standard users Prompt for credentials User Account Control: Detect application installations and prompt for elevation Enabled User Account Control: Only elevate executables that are signed and validated Disabled User Account Control: Only elevate UIAccess applications that are installed in secure locations Enabled User Account Control: Run all administrators in Admin Approval Mode Enabled User Account Control: Switch to the secure desktop when prompting for elevation Enabled User Account Control: Virtualize file and registry write failures to per-user locations Enabled Device Tree ACPI x64-based PC Microsoft ACPI-Compliant System ACPI Fixed Feature Button ACPI Lid ACPI Power Button ACPI Thermal Zone ACPI Thermal Zone Intel Collaborative Processor Performance Control (CPPC) Driver Intel Core i3-4012Y CPU @ 1.50GHz Intel Core i3-4012Y CPU @ 1.50GHz Intel Core i3-4012Y CPU @ 1.50GHz Intel Core i3-4012Y CPU @ 1.50GHz Intel Dynamic Platform and Thermal Framework Manager Microsoft AC Adapter Motherboard resources PCI Express Root Complex Intel Dynamic Platform and Thermal Framework Chipset Participant Intel Dynamic Platform and Thermal Framework Processor Participant Intel Management Engine Interface Motherboard resources Motherboard resources PCI standard host CPU bridge Synaptics SMBus Driver Intel(R) HD Graphics Family Generic PnP Monitor Intel(R) USB 3.0 eXtensible Host Controller - 1.0 (Microsoft) USB Root Hub (xHCI) USB Composite Device Lenovo EasyCamera Qualcomm Atheros AR3012 Bluetooth 4.0 Bluetooth Device (Personal Area Network) Bluetooth Device (RFCOMM Protocol TDI) Microsoft Bluetooth Enumerator Microsoft Bluetooth LE Enumerator USB Input Device HID Sensor Collection V2 HID-compliant vendor-defined device USB Composite Device USB Input Device HID-compliant device HID-compliant touch screen USB Input Device HID-compliant vendor-defined device High Definition Audio Controller Conexant SmartAudio HD Microphone (Conexant SmartAudio HD) Speakers (Conexant SmartAudio HD) Intel(R) 8 Series PCI Express Root Port #3 - 9C14 Qualcomm Atheros AR956x Wireless Network Adapter Microsoft Hosted Network Virtual Adapter Microsoft Wi-Fi Direct Virtual Adapter Intel(R) 8 Series USB Enhanced Host Controller #1 - 9C26 USB Root Hub Generic USB Hub Intel(R) 8 Series LPC Controller (Premium SKU) - 9C43 Direct memory access controller High precision event timer Legacy device Lenovo Pointing Device Motherboard resources Motherboard resources Programmable interrupt controller Standard PS/2 Keyboard System CMOS/real time clock System timer Microsoft ACPI-Compliant Embedded Controller GPIO Laptop or Slate Indicator Driver Lenovo ACPI-Compliant Virtual Power Controller Microsoft ACPI-Compliant Control Method Battery Intel(R) 8 Series Chipset Family SATA AHCI Controller ST500LX012-SSHD-8GB Microsoft UEFI-Compliant System System Firmware CPU Intel Core i3 Cores 2 Threads 4 Name Intel Core i3 Code Name Haswell ULT Package Socket 1168 BGA Technology 22nm Specification Intel Core i3-4012Y CPU @ 1.50GHz Family 6 Extended Family 6 Model 5 Extended Model 45 Stepping 1 Revision C0 Instructions MMX, SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, Intel 64, NX, VMX, AES, AVX, AVX2, FMA3 Virtualization Supported, Disabled Hyperthreading Supported, Enabled Bus Speed 99.8 MHz Stock Core Speed 1500 MHz Stock Bus Speed 100 MHz Average Temperature 52 °C Caches L1 Data Cache Size 2 x 32 KBytes L1 Instructions Cache Size 2 x 32 KBytes L2 Unified Cache Size 2 x 256 KBytes L3 Unified Cache Size 3072 KBytes Cores Core 0 Core Speed 997.6 MHz Multiplier x 10.0 Bus Speed 99.8 MHz Temperature 52 °C Threads APIC ID: 0, 1 Core 1 Core Speed 598.6 MHz Multiplier x 6.0 Bus Speed 99.8 MHz Temperature 51 °C Threads APIC ID: 2, 3 RAM Memory Type DDR3 Size 3990 MBytes Channels # Dual DRAM Frequency 798.1 MHz CAS# Latency (CL) 11 clocks RAS# to CAS# Delay (tRCD) 11 clocks RAS# Precharge (tRP) 11 clocks Cycle Time (tRAS) 28 clocks Command Rate (CR) 1T Physical Memory Memory Usage 73 % Total Physical 3.89 GB Available Physical 1.04 GB Total Virtual 5.75 GB Available Virtual 2.28 GB SPD Number Of SPD Modules 0 Motherboard Manufacturer LENOVO Model VIUU4 (U3E1) Version SDK0J40700WIN Chipset Vendor Intel Chipset Model Haswell-ULT Chipset Revision 0B Southbridge Vendor Intel Southbridge Model H8x/P8x Southbridge Revision C1 System Temperature 28 °C BIOS Brand LENOVO Version AACN95WW Date 9/18/2015 PCI Data Graphics Monitor Name Generic PnP Monitor on Intel HD Graphics Family Current Resolution 1366x768 pixels Work Resolution 1366x728 pixels State Enabled, Primary Monitor Width 1366 Monitor Height 768 Monitor BPP 32 bits per pixel Monitor Frequency 60 Hz Device \\.\DISPLAY1\Monitor0 Intel HD Graphics Family Manufacturer Intel Model HD Graphics Family Device ID 8086-0A1E Revision C Subvendor Lenovo (17AA) Current Performance Level Level 0 Driver version 20.19.15.4531 Count of performance levels : 1 Level 1 - "Perf Level 0" Storage Hard drives ST500LX012-SSHD-8GB Manufacturer Seagate Heads 15 Cylinders 60,801 Tracks 15,504,255 Sectors 976,768,065 SATA type SATA-III 6.0Gb/s Device type Fixed ATA Standard ACS2 Serial Number W3N1KJKQ Firmware Version Number 0001LVM1 LBA Size 48-bit LBA Power On Count 123 times Power On Time 2.4 days Speed 5400 RPM Features S.M.A.R.T., APM, NCQ Max. Transfer Mode SATA III 6.0Gb/s Used Transfer Mode SATA II 3.0Gb/s Interface SATA Capacity 465 GB Real size 500,107,862,016 bytes RAID Type None S.M.A.R.T Status Good Temperature 38 °C Temperature Range OK (less than 50 °C) S.M.A.R.T attributes 01 Attribute name Read Error Rate Real value 0 Current 113 Worst 100 Threshold 34 Raw Value 000342D8B0 Status Good 03 Attribute name Spin-Up Time Real value 0 ms Current 99 Worst 98 Threshold 0 Raw Value 0000000000 Status Good 04 Attribute name Start/Stop Count Real value 123 Current 100 Worst 100 Threshold 20 Raw Value 000000007B Status Good 05 Attribute name Reallocated Sectors Count Real value 0 Current 100 Worst 100 Threshold 36 Raw Value 0000000000 Status Good 07 Attribute name Seek Error Rate Real value 0 Current 64 Worst 57 Threshold 30 Raw Value 00005412FD Status Good 09 Attribute name Power-On Hours (POH) Real value 2d 10h Current 100 Worst 100 Threshold 0 Raw Value 000000003A Status Good 0A Attribute name Spin Retry Count Real value 0 Current 100 Worst 100 Threshold 97 Raw Value 0000000000 Status Good 0C Attribute name Device Power Cycle Count Real value 123 Current 100 Worst 100 Threshold 20 Raw Value 000000007B Status Good B8 Attribute name End-to-End error / IOEDC Real value 0 Current 100 Worst 100 Threshold 99 Raw Value 0000000000 Status Good BB Attribute name Reported Uncorrectable Errors Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good BC Attribute name Command Timeout Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good BD Attribute name High Fly Writes (WDC) Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good BE Attribute name Airflow Temperature Real value 37 °C Current 63 Worst 53 Threshold 45 Raw Value 0025170025 Status Good BF Attribute name G-sense error rate Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C0 Attribute name Power-off Retract Count Real value 1,099,511,627,779 Current 100 Worst 100 Threshold 0 Raw Value 0000000003 Status Good C1 Attribute name Load/Unload Cycle Count Real value 322 Current 100 Worst 100 Threshold 0 Raw Value 0000000142 Status Good C2 Attribute name Temperature Real value 37 °C Current 37 Worst 47 Threshold 0 Raw Value 0000000025 Status Good C4 Attribute name Reallocation Event Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C5 Attribute name Current Pending Sector Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C6 Attribute name Uncorrectable Sector Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C7 Attribute name UltraDMA CRC Error Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good FE Attribute name Free Fall Protection Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good Partition 0 Partition ID Disk #0, Partition #0 Size 260 MB Partition 1 Partition ID Disk #0, Partition #1 Disk Letter C: File System NTFS Volume Serial Number 00814ABA Size 421 GB Used Space 36.5 GB (8%) Free Space 385 GB (92%) Partition 2 Partition ID Disk #0, Partition #2 Disk Letter D: File System NTFS Volume Serial Number 082C63FD Size 25 GB Used Space 1.82 GB (7%) Free Space 23.2 GB (93%) Partition 3 Partition ID Disk #0, Partition #3 File System NTFS Volume Serial Number 708BF103 Size 999 MB Used Space 409 MB (40%) Free Space 590 MB (60%) Partition 4 Partition ID Disk #0, Partition #4 File System NTFS Volume Serial Number E48CF872 Size 16.6 GB Used Space 11.7 GB (70%) Free Space 4.91 GB (30%) Partition 5 Partition ID Disk #0, Partition #5 Size 0.97 GB Optical Drives No optical disk drives detected Audio Sound Card Conexant SmartAudio HD Playback Device Speakers (Conexant SmartAudio HD) Recording Device Microphone (Conexant SmartAudio HD) Peripherals Standard PS/2 Keyboard Device Kind Keyboard Device Name Standard PS/2 Keyboard Vendor IDEA Location Intel 8 Series LPC Controller (Premium SKU) - 9C43 Driver Date 6-21-2006 Version 10.0.14393.206 File C:\WINDOWS\system32\DRIVERS\i8042prt.sys File C:\WINDOWS\system32\DRIVERS\kbdclass.sys Lenovo Pointing Device Device Kind Mouse Device Name Lenovo Pointing Device Vendor SYN Location Intel 8 Series LPC Controller (Premium SKU) - 9C43 Driver Date 7-9-2015 Version 19.0.16.0 File C:\WINDOWS\system32\DRIVERS\SynTP.sys File C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel_Aux.sys File C:\WINDOWS\system32\DRIVERS\Smb_driver_AMDASF_Aux.sys File C:\WINDOWS\system32\SynTPAPI.dll File C:\WINDOWS\system32\SynCOM.dll File C:\Program Files\Synaptics\SynTP\SynTPRes.dll File C:\Program Files\Synaptics\SynTP\SynTPCpl.dll File C:\Program Files\Synaptics\SynTP\SynCntxt.rtf File C:\Program Files\Synaptics\SynTP\SynZMetr.exe File C:\Program Files\Synaptics\SynTP\SynMood.exe File C:\Program Files\Synaptics\SynTP\SynTPEnh.exe File C:\Program Files\Synaptics\SynTP\Tutorial.exe File C:\Program Files\Synaptics\SynTP\InstNT.exe File C:\Program Files\Synaptics\SynTP\SynISDLL.dll File C:\Program Files\Synaptics\SynTP\SynUnst.ini File C:\Program Files\Synaptics\SynTP\SynRemoveUserSettings.dat File C:\Program Files\Synaptics\SynTP\SynTPHelper.exe File C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe File C:\Program Files\Synaptics\SynTP\Syn3FHSlide.wmv File C:\Program Files\Synaptics\SynTP\Syn3FHSlideNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FTapActionCenter.wmv File C:\Program Files\Synaptics\SynTP\Syn3FTapActionCenterNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FTapCortana.wmv File C:\Program Files\Synaptics\SynTP\Syn3FTapCortanaNB.wmv File C:\Program Files\Synaptics\SynTP\Syn4FTapActionCenter.wmv File C:\Program Files\Synaptics\SynTP\Syn4FTapActionCenterNB.wmv File C:\Program Files\Synaptics\SynTP\Syn4FTapCortana.wmv File C:\Program Files\Synaptics\SynTP\Syn4FTapCortanaNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FClickActionCenterNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FClickCortanaNB.wmv File C:\Program Files\Synaptics\SynTP\Syn4FClickActionCenterNB.wmv File C:\Program Files\Synaptics\SynTP\Syn4FClickCortanaNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FVSlide.wmv File C:\Program Files\Synaptics\SynTP\Syn3FVSlideNB.wmv File C:\Program Files\Synaptics\SynTP\dpinst.exe File C:\Program Files\Synaptics\SynTP\SynSmbDrv.ini File C:\Program Files\Synaptics\SynTP\SynPalmOnPad.mpg File C:\Program Files\Synaptics\SynTP\SynThreeFingerHFlick.mpg File C:\Program Files\Synaptics\SynTP\Syn4FFlickUpDownAlt.wmv File C:\Program Files\Synaptics\SynTP\SynButtons.wmv File C:\Program Files\Synaptics\SynTP\SynLinearScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\SynLinearScrollingNB_win8.wmv File C:\Program Files\Synaptics\SynTP\SynLinearHScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\SynChiralScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\SynCoastingScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\SynEdgeMotionNB.wmv File C:\Program Files\Synaptics\SynTP\SynChiralRotateNB.wmv File C:\Program Files\Synaptics\SynTP\SynTwistRotateNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FingerHFlickLenovoNewUINB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FingerHFlickLenovoNewUINB_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn3FingerVFlickNB.wmv File C:\Program Files\Synaptics\SynTP\SynLinearVScroll.mpg File C:\Program Files\Synaptics\SynTP\Syn2FingerTappingNB.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerTapping.html File C:\Program Files\Synaptics\SynTP\SynCombinationEdgePullsNB.wmv File C:\Program Files\Synaptics\SynTP\SynCombinationEdgePullsNB_WithoutRightEx.wmv File C:\Program Files\Synaptics\SynTP\Syn4FingerFlickNB_win8.wmv File C:\Program Files\Synaptics\SynTP\SynTwistNB.wmv File C:\Program Files\Synaptics\SynTP\SynTappingNB.wmv File C:\Program Files\Synaptics\SynTP\SynTapHoldToDragNB.wmv File C:\Program Files\Synaptics\SynTP\SynTapLockingDragNB.wmv File C:\Program Files\Synaptics\SynTP\SynTapLockingDragNB_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerRightClickNB.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerScrollingNB_win8.wmv File C:\Program Files\Synaptics\SynTP\SynPinchZoomNB.wmv File C:\Program Files\Synaptics\SynTP\SynPinchZoomNB_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn4FingerFlickLeftRightNB.wmv File C:\Program Files\Synaptics\SynTP\Syn4FingerFlickLeftRightNB_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn4FingerFlickAs3FingerFlick.wmv File C:\Program Files\Synaptics\SynTP\Syn4FingerFlickAs3FingerFlickNB.wmv File C:\Program Files\Synaptics\SynTP\SynSensitivityNB.wmv File C:\Program Files\Synaptics\SynTP\SynPalmCheckNB.wmv File C:\Program Files\Synaptics\SynTP\SynEdgeMotionDraggingNB.wmv File C:\Program Files\Synaptics\SynTP\SynPivotRotate.wmv File C:\Program Files\Synaptics\SynTP\SynPivotRotate_win8.wmv File C:\WINDOWS\SysWOW64\SynCom.dll File C:\WINDOWS\system32\DRIVERS\mouclass.sys File C:\WINDOWS\system32\DRIVERS\i8042prt.sys File C:\WINDOWS\system32\SynTPCo33.dll File C:\WINDOWS\system32\WdfCoInstaller01011.dll Lenovo EasyCamera Device Kind Camera/scanner Device Name Lenovo EasyCamera Vendor Unknown Comment Lenovo EasyCamera Location USB Composite Device Driver Date 6-11-2015 Version 3.5.5.5 File C:\WINDOWS\system32\drivers\SPUVCBv_x64.sys File C:\WINDOWS\SysWOW64\DextUVCB.ax File C:\WINDOWS\SysWOW64\VCamPPage.dll File C:\WINDOWS\system32\DextUVCB_x64.ax File C:\WINDOWS\system32\VCamPPage_x64.dll File C:\Program Files (x86)\Lenovo EasyCamera\SPRemove_x64.exe File C:\Program Files (x86)\Lenovo EasyCamera\Remove.ini File C:\Program Files (x86)\Lenovo EasyCamera\un_dext.exe File C:\Program Files (x86)\Lenovo EasyCamera\Dext_04.ini File C:\Program Files (x86)\Lenovo EasyCamera\Dext_09.ini File C:\Program Files (x86)\Lenovo EasyCamera\Dext_17.ini File C:\Program Files (x86)\Lenovo EasyCamera\Dext_2052.ini File C:\Program Files (x86)\Lenovo EasyCamera\TWAINSP_Lenovo_EasyCamera.ini File C:\Program Files (x86)\Lenovo EasyCamera\TWAINSP_Lenovo_EasyCamera.src File C:\Program Files (x86)\Lenovo EasyCamera\TWAINSP_Lenovo_EasyCamera.ds File C:\WINDOWS\TWAINSP_Lenovo_EasyCamera.ini File C:\WINDOWS\TWAINSP_Lenovo_EasyCamera.src File C:\WINDOWS\twain_32\TWAINSP_Lenovo_EasyCamera.ds Printers Fax Printer Port SHRFAX: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 200 * 200 dpi Monochrome Status Unknown Driver Driver Name Microsoft Shared Fax Driver (v4.00) Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\FXSDRV.DLL Microsoft Print to PDF (Default Printer) Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft Print To PDF (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_7b3eed059f4c3e41\Amd64\mxdwdrv.dll Microsoft XPS Document Writer Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft XPS Document Writer v4 (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_7b3eed059f4c3e41\Amd64\mxdwdrv.dll Send To OneNote 2013 Printer Port nul: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Send to Microsoft OneNote 15 Driver (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_7b3eed059f4c3e41\Amd64\mxdwdrv.dll Network You are connected to the internet Connected through Qualcomm Atheros AR956x Wireless Network Adapter IP Address 10.0.0.252 Subnet mask 255.255.255.0 Gateway server 10.0.0.1 Preferred DNS server 75.75.75.75 Alternate DNS server 75.75.76.76 DHCP Enabled DHCP server 10.0.0.1 External IP Address 71.206.121.25 Adapter Type IEEE 802.11 wireless NetBIOS over TCP/IP Enabled via DHCP NETBIOS Node Type Hybrid node Link Speed 0 Bps Computer Name NetBIOS Name DESKTOP-6S12IL0 DNS Name DESKTOP-6S12IL0 Membership Part of workgroup Workgroup WORKGROUP Remote Desktop Disabled Console State Active Domain DESKTOP-6S12IL0 WinInet Info LAN Connection Local system uses a local area network to connect to the Internet Local system has RAS to connect to the Internet Wi-Fi Info Using native Wi-Fi API version 2 Available access points count 17 Wi-Fi () SSID Frequency 2462000 kHz Channel Number 11 Name No name Signal Strength/Quality 84 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i Robust Security Network Association (RSNA) algorithm (WPA2 is one such algorithm) Wi-Fi () SSID Frequency 2462000 kHz Channel Number 11 Name No name Signal Strength/Quality 52 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi ( MGibson) SSID MGibson Frequency 2462000 kHz Channel Number 11 Name MGibson Signal Strength/Quality 40 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (Beware of Dog) SSID Beware of Dog Frequency 2462000 kHz Channel Number 11 Name Beware of Dog Signal Strength/Quality 86 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags Currently Connected to this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (Chromecast button) SSID Chromecast button Frequency 2437000 kHz Channel Number 6 Name Chromecast button Signal Strength/Quality 62 Security Disabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network No Cipher algorithm is enabled/supported Default Auth used to join this network for the first time IEEE 802.11 Open System authentication algorithm Wi-Fi (HOME-20D9) SSID HOME-20D9 Frequency 2412000 kHz Channel Number 1 Name HOME-20D9 Signal Strength/Quality 14 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (HOME-2308) SSID HOME-2308 Frequency 2462000 kHz Channel Number 11 Name HOME-2308 Signal Strength/Quality 26 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (HOME-592B-2.4) SSID HOME-592B-2.4 Frequency 2437000 kHz Channel Number 6 Name HOME-592B-2.4 Signal Strength/Quality 64 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (HOME-78AF) SSID HOME-78AF Frequency 2462000 kHz Channel Number 11 Name HOME-78AF Signal Strength/Quality 30 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (HOME-B834) SSID HOME-B834 Frequency 2462000 kHz Channel Number 11 Name HOME-B834 Signal Strength/Quality 68 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (MILLER WIFI 1) SSID MILLER WIFI 1 Frequency 2462000 kHz Channel Number 11 Name MILLER WIFI 1 Signal Strength/Quality 12 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (Malware) SSID Malware Frequency 2412000 kHz Channel Number 1 Name Malware Signal Strength/Quality 46 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (P1UQONMV) SSID P1UQONMV Frequency 2412000 kHz Channel Number 1 Name P1UQONMV Signal Strength/Quality 38 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (ZyXEL20406) SSID ZyXEL20406 Frequency 2412000 kHz Channel Number 1 Name ZyXEL20406 Signal Strength/Quality 38 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (tmhouse) SSID tmhouse Frequency 2447000 kHz Channel Number 8 Name tmhouse Signal Strength/Quality 42 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (virus.exe) SSID virus.exe Frequency 2462000 kHz Channel Number 11 Name virus.exe Signal Strength/Quality 46 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (xfinitywifi) SSID xfinitywifi Frequency 2462000 kHz Channel Number 11 Name xfinitywifi Signal Strength/Quality 82 Security Disabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network No Cipher algorithm is enabled/supported Default Auth used to join this network for the first time IEEE 802.11 Open System authentication algorithm WinHTTPInfo WinHTTPSessionProxyType No proxy Session Proxy Session Proxy Bypass Connect Retries 5 Connect Timeout (ms) 60,000 HTTP Version HTTP 1.1 Max Connects Per 1.0 Servers INFINITE Max Connects Per Servers INFINITE Max HTTP automatic redirects 10 Max HTTP status continue 10 Send Timeout (ms) 30,000 IEProxy Auto Detect Yes IEProxy Auto Config IEProxy IEProxy Bypass Default Proxy Config Access Type No proxy Default Config Proxy Default Config Proxy Bypass Sharing and Discovery Network Discovery Disabled File and Printer Sharing Disabled File and printer sharing service Enabled Simple File Sharing Enabled Administrative Shares Enabled Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Adapters List Enabled Bluetooth Device (Personal Area Network) Connection Name Bluetooth Network Connection DHCP enabled Yes MAC Address C8-FF-28-9A-93-A2 Qualcomm Atheros AR956x Wireless Network Adapter Connection-specific DNS Suffix hsd1.tn.comcast.net Connection Name Wi-Fi NetBIOS over TCPIP Yes DHCP enabled Yes MAC Address C8-FF-28-9A-84-02 IP Address 10.0.0.252 Subnet mask 255.255.255.0 Gateway server 10.0.0.1 DHCP 10.0.0.1 DNS Server 75.75.75.75 75.75.76.76 Network Shares No network shares Current TCP Connections AvastSvc.exe (1908) Local 127.0.0.1:12110 LISTEN Local 10.0.0.252:56023 CLOSE-WAIT Remote 77.234.41.253:80 (Querying... ) (HTTP) Local 10.0.0.252:56827 ESTABLISHED Remote 77.234.44.24:80 (Querying... ) (HTTP) Local 127.0.0.1:27275 LISTEN Local 127.0.0.1:12025 LISTEN Local 127.0.0.1:12119 LISTEN Local 127.0.0.1:12143 LISTEN Local 127.0.0.1:12465 LISTEN Local 127.0.0.1:12563 LISTEN Local 127.0.0.1:12993 LISTEN Local 127.0.0.1:12995 LISTEN C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (6516) Local 10.0.0.252:57813 ESTABLISHED Remote 108.161.189.5:80 (Querying... ) (HTTP) C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeHost.exe (11244) Local 10.0.0.252:57708 ESTABLISHED Remote 157.56.52.35:40025 (Querying... ) Local 10.0.0.252:54063 LISTEN Local 10.0.0.252:57710 ESTABLISHED Remote 91.190.216.65:12350 (Querying... ) C:\Users\erin\AppData\Local\Microsoft\OneDrive\OneDrive.exe (9144) Local 10.0.0.252:56727 ESTABLISHED Remote 65.52.108.189:443 (Querying... ) (HTTPS) C:\Windows\explorer.exe (4176) Local 10.0.0.252:56729 ESTABLISHED Remote 65.52.108.191:443 (Querying... ) (HTTPS) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (4760) Local 10.0.0.252:57792 LAST-ACK Remote 198.232.125.83:80 (Querying... ) (HTTP) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (9096) Local 10.0.0.252:57781 LAST-ACK Remote 50.97.40.233:80 (Querying... ) (HTTP) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (9444) Local 10.0.0.252:57823 ESTABLISHED Remote 151.101.44.64:80 (Querying... ) (HTTP) Local 10.0.0.252:57824 ESTABLISHED Remote 198.232.125.83:80 (Querying... ) (HTTP) Local 10.0.0.252:57825 ESTABLISHED Remote 172.217.2.34:80 (Querying... ) (HTTP) Local 10.0.0.252:57826 ESTABLISHED Remote 151.101.44.64:80 (Querying... ) (HTTP) Local 10.0.0.252:57827 ESTABLISHED Remote 198.232.125.83:80 (Querying... ) (HTTP) Local 10.0.0.252:57829 ESTABLISHED Remote 151.101.44.64:80 (Querying... ) (HTTP) Local 10.0.0.252:57830 ESTABLISHED Remote 198.232.125.83:80 (Querying... ) (HTTP) Local 10.0.0.252:57831 ESTABLISHED Remote 198.232.125.83:80 (Querying... ) (HTTP) Local 10.0.0.252:57834 ESTABLISHED Remote 50.97.40.233:80 (Querying... ) (HTTP) Local 10.0.0.252:57836 ESTABLISHED Remote 50.97.40.233:80 (Querying... ) (HTTP) Local 10.0.0.252:57837 ESTABLISHED Remote 50.97.40.233:80 (Querying... ) (HTTP) Local 10.0.0.252:57839 ESTABLISHED Remote 104.244.43.140:80 (Querying... ) (HTTP) Local 10.0.0.252:57815 ESTABLISHED Remote 151.101.44.64:80 (Querying... ) (HTTP) Local 10.0.0.252:57816 ESTABLISHED Remote 23.60.55.42:80 (Querying... ) (HTTP) Local 10.0.0.252:57819 ESTABLISHED Remote 169.54.33.188:80 (Querying... ) (HTTP) Local 10.0.0.252:57820 ESTABLISHED Remote 169.54.33.188:80 (Querying... ) (HTTP) Local 10.0.0.252:57821 ESTABLISHED Remote 151.101.44.64:80 (Querying... ) (HTTP) Local 10.0.0.252:57822 ESTABLISHED Remote 151.101.44.64:80 (Querying... ) (HTTP) Local 10.0.0.252:57828 ESTABLISHED Remote 198.232.125.83:80 (Querying... ) (HTTP) lsass.exe (804) Local 0.0.0.0:49669 LISTEN services.exe (788) Local 0.0.0.0:49673 LISTEN spoolsv.exe (1280) Local 0.0.0.0:49667 LISTEN svchost.exe (2552) Local 10.0.0.252:57808 ESTABLISHED Remote 64.4.54.253:443 (Querying... ) (HTTPS) svchost.exe (528) Local 0.0.0.0:49665 LISTEN Local 10.0.0.252:56732 ESTABLISHED Remote 65.52.108.219:443 (Querying... ) (HTTPS) svchost.exe (856) Local 0.0.0.0:49666 LISTEN svchost.exe (952) Local 0.0.0.0:135 (DCE) LISTEN System Process Local 10.0.0.252:57774 TIME-WAIT Remote 74.125.21.157:80 (Querying... ) (HTTP) Local 10.0.0.252:57804 TIME-WAIT Remote 205.185.208.139:80 (Querying... ) (HTTP) Local 10.0.0.252:57810 TIME-WAIT Remote 65.52.234.109:443 (Querying... ) (HTTPS) Local 10.0.0.252:57786 TIME-WAIT Remote 72.5.205.26:80 (Querying... ) (HTTP) Local 10.0.0.252:57806 TIME-WAIT Remote 131.253.61.98:443 (Querying... ) (HTTPS) Local 10.0.0.252:57796 TIME-WAIT Remote 72.5.205.54:80 (Querying... ) (HTTP) Local 10.0.0.252:57801 TIME-WAIT Remote 77.234.41.56:80 (Querying... ) (HTTP) Local 10.0.0.252:57802 TIME-WAIT Remote 10.0.0.192:8008 (Querying... ) Local 10.0.0.252:57814 TIME-WAIT Remote 77.234.41.58:80 (Querying... ) (HTTP) Local 10.0.0.252:57750 TIME-WAIT Remote 77.234.44.238:80 (Querying... ) (HTTP) Local 10.0.0.252:57751 TIME-WAIT Remote 151.101.44.64:80 (Querying... ) (HTTP) Local 10.0.0.252:57757 TIME-WAIT Remote 151.101.44.64:80 (Querying... ) (HTTP) Local 10.0.0.252:57758 TIME-WAIT Remote 151.101.44.64:80 (Querying... ) (HTTP) Local 10.0.0.252:57763 TIME-WAIT Remote 151.101.44.64:80 (Querying... ) (HTTP) Local 10.0.0.252:57765 TIME-WAIT Remote 151.101.44.64:80 (Querying... ) (HTTP) Local 10.0.0.252:57766 TIME-WAIT Remote 151.101.44.64:80 (Querying... ) (HTTP) Local 10.0.0.252:57767 TIME-WAIT Remote 151.101.44.64:80 (Querying... ) (HTTP) Local 10.0.0.252:57768 TIME-WAIT Remote 151.101.44.64:80 (Querying... ) (HTTP) System Process Local 10.0.0.252:139 (NetBIOS session service) LISTEN Local 0.0.0.0:445 (Windows shares) LISTEN wininit.exe (668) Local 0.0.0.0:49664 LISTEN Generated with Speccy v1.30.730