Summary Operating System Windows 10 Home 64-bit CPU AMD A6-6310 44 °C Mullins 28nm Technology RAM 4.00GB Single-Channel DDR3 @ 798MHz (11-11-12-28) Motherboard HP 80B2 (P0) Graphics Generic PnP Monitor (1366x768@60Hz) 512MB ATI AMD Radeon R4 Graphics (HP) 43 °C Storage 465GB TOSHIBA MQ01ABF050 (SATA ) 37 °C Optical Drives hp DVDRW DU8A6SH Audio Realtek High Definition Audio Operating System Windows 10 Home 64-bit Computer type: Notebook Installation Date: 10/07/2018 10:23:44 PM Serial Number: Windows Security Center User Account Control (UAC) Enabled Notify level 2 - Default Firewall Enabled Windows Update AutoUpdate Not configured Windows Defender Windows Defender Disabled Antivirus Bitdefender Antivirus Free Antimalware Antivirus Enabled Virus Signature Database Up to date Windows Defender Antivirus Disabled Virus Signature Database Up to date .NET Frameworks installed v4.7 Full v4.7 Client v3.5 SP1 v3.0 SP2 v2.0 SP2 Internet Explorer Version 11.165.17134.0 PowerShell Version 5.1.17134.1 Environment Variables USERPROFILE C:\Users\the_mckees SystemRoot C:\WINDOWS User Variables OneDrive C:\Users\the_mckees\OneDrive Path C:\Users\the_mckees\AppData\Local\Microsoft\WindowsApps TEMP C:\Users\the_mckees\AppData\Local\Temp TMP C:\Users\the_mckees\AppData\Local\Temp Machine Variables ComSpec C:\WINDOWS\system32\cmd.exe DriverData C:\Windows\System32\Drivers\DriverData NUMBER_OF_PROCESSORS 4 OnlineServices Online Services OS Windows_NT Path C:\WINDOWS\system32 C:\WINDOWS C:\WINDOWS\System32\Wbem C:\WINDOWS\System32\WindowsPowerShell\v1.0\ c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static C:\Program Files (x86)\Skype\Phone\ C:\WINDOWS\System32\OpenSSH\ C:\Program Files\Intel\WiFi\bin\ C:\Program Files\Common Files\Intel\WirelessCommon\ PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC Platform MCD platformcode KV PROCESSOR_ARCHITECTURE AMD64 PROCESSOR_IDENTIFIER AMD64 Family 22 Model 48 Stepping 1, AuthenticAMD PROCESSOR_LEVEL 22 PROCESSOR_REVISION 3001 PSModulePath C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules\ RegionCode APJ TEMP C:\WINDOWS\TEMP TMP C:\WINDOWS\TEMP USERNAME SYSTEM windir C:\WINDOWS Battery AC Line Online Battery Charge % 100 % Battery State High Remaining Battery Time Unknown Power Profile Active power scheme High performance Hibernation Enabled Turn Off Monitor after: (On AC Power) 10 min Turn Off Monitor after: (On Battery Power) 3 min Turn Off Hard Disk after: (On AC Power) 20 min Turn Off Hard Disk after: (On Battery Power) 20 min Suspend after: (On AC Power) Never Suspend after: (On Battery Power) Never Screen saver Disabled Uptime Current Session Current Time 24/07/2018 10:33:38 AM Current Uptime 65,420 sec (0 d, 18 h, 10 m, 20 s) Last Boot Time 23/07/2018 4:23:18 PM Services Running Adobe Acrobat Update Service Running AMD External Events Utility Running Application Host Helper Service Running Application Information Running AppX Deployment Service (AppXSVC) Running Background Intelligent Transfer Service Running Background Tasks Infrastructure Service Running Base Filtering Engine Running Bitdefender Correlation Service Running Bitdefender Security Service Running Bitdefender Update Service Running Bonjour Service Running Capability Access Manager Service Running CNG Key Isolation Running COM+ Event System Running Connected Devices Platform Service Running Connected Devices Platform User Service_68b6b Running Connected User Experiences and Telemetry Running Contact Data_68b6b Running CoreMessaging Running Credential Manager Running Cryptographic Services Running Cyberlink RichVideo64 Service(CRVS) Running Data Usage Running DCOM Server Process Launcher Running Delivery Optimization Running Device Association Service Running DHCP Client Running Diagnostic Policy Service Running Diagnostic Service Host Running Diagnostic System Host Running Distributed Link Tracking Client Running DNS Client Running Geolocation Service Running Group Policy Client Running HP Software Framework Service Running HP Support Solutions Framework Service Running HPWMISVC Running Human Interface Device Service Running Intel Bluetooth Service Running Intel PROSet/Wireless Event Log Running Intel PROSet/Wireless Registry Service Running Intel PROSet/Wireless Zero Configuration Service Running IP Helper Running Local Session Manager Running Microsoft Passport Running Microsoft Passport Container Running Network Connection Broker Running Network List Service Running Network Location Awareness Running Network Store Interface Service Running Peer Name Resolution Protocol Running Peer Networking Identity Manager Running Plug and Play Running Power Running Print Spooler Running ProductAgentService Running Program Compatibility Assistant Service Running Realtek Audio Service Running RealTimes Desktop Service Running Remote Access Connection Manager Running Remote Desktop Services Running Remote Procedure Call (RPC) Running RPC Endpoint Mapper Running Search Protect Service Running Secure Socket Tunneling Protocol Service Running Security Accounts Manager Running Security Center Running Server Running Shell Hardware Detection Running SSDP Discovery Running State Repository Service Running Storage Service Running Superfetch Running Sync Host_68b6b Running SynTPEnh Caller Service Running System Event Notification Service Running System Events Broker Running System Guard Runtime Monitor Broker Running Task Scheduler Running TCP/IP NetBIOS Helper Running Telephony Running Themes Running Time Broker Running Touch Keyboard and Handwriting Panel Service Running Update Orchestrator Service Running Update service Running User Data Access_68b6b Running User Data Storage_68b6b Running User Manager Running User Profile Service Running Web Account Manager Running Windows 10 Update Facilitation Service Running Windows Audio Running Windows Audio Endpoint Builder Running Windows Connection Manager Running Windows Defender Firewall Running Windows Defender Security Center Service Running Windows Event Log Running Windows Font Cache Service Running Windows License Manager Service Running Windows Management Instrumentation Running Windows Modules Installer Running Windows Push Notifications System Service Running Windows Push Notifications User Service_68b6b Running Windows Search Running Windows Update Running WinHTTP Web Proxy Auto-Discovery Service Running WLAN AutoConfig Running Workstation Stopped ActiveX Installer (AxInstSV) Stopped AdaptiveSleepService Stopped AllJoyn Router Service Stopped App Readiness Stopped Application Identity Stopped Application Layer Gateway Service Stopped ASP.NET State Service Stopped Auto Time Zone Updater Stopped AVCTP service Stopped BattlEye Service Stopped BitLocker Drive Encryption Service Stopped Block Level Backup Engine Service Stopped Bluetooth Audio Gateway Service Stopped Bluetooth Support Service Stopped Bluetooth User Support Service_68b6b Stopped Certificate Propagation Stopped Client License Service (ClipSVC) Stopped COM+ System Application Stopped Data Sharing Service Stopped Device Install Service Stopped Device Management Enrollment Service Stopped Device Setup Manager Stopped DevicePicker_68b6b Stopped DevicesFlow_68b6b Stopped DevQuery Background Discovery Broker Stopped Diagnostic Execution Service Stopped Distributed Transaction Coordinator Stopped dmwappushsvc Stopped Downloaded Maps Manager Stopped EasyAntiCheat Stopped Embedded Mode Stopped Encrypting File System (EFS) Stopped Enterprise App Management Service Stopped Extensible Authentication Protocol Stopped Fax Stopped File History Service Stopped Function Discovery Provider Host Stopped Function Discovery Resource Publication Stopped GameDVR and Broadcast User Service_68b6b Stopped Google Update Service (gupdate) Stopped Google Update Service (gupdatem) Stopped GraphicsPerfSvc Stopped HP Touchpoint Analytics Stopped HV Host Service Stopped Hyper-V Data Exchange Service Stopped Hyper-V Guest Service Interface Stopped Hyper-V Guest Shutdown Service Stopped Hyper-V Heartbeat Service Stopped Hyper-V PowerShell Direct Service Stopped Hyper-V Remote Desktop Virtualization Service Stopped Hyper-V Time Synchronization Service Stopped Hyper-V Volume Shadow Copy Requestor Stopped IKE and AuthIP IPsec Keying Modules Stopped Infrared monitor service Stopped Internet Connection Sharing (ICS) Stopped IP Translation Configuration Service Stopped IPsec Policy Agent Stopped KtmRm for Distributed Transaction Coordinator Stopped Language Experience Service Stopped Link-Layer Topology Discovery Mapper Stopped Local Profile Assistant Service Stopped MessagingService_68b6b Stopped Microsoft Diagnostics Hub Standard Collector Service Stopped Microsoft Account Sign-in Assistant Stopped Microsoft iSCSI Initiator Service Stopped Microsoft Office Diagnostics Service Stopped Microsoft Office Groove Audit Service Stopped Microsoft Software Shadow Copy Provider Stopped Microsoft Storage Spaces SMP Stopped Microsoft Store Install Service Stopped Microsoft Windows SMS Router Service. Stopped Natural Authentication Stopped Net.Tcp Port Sharing Service Stopped Netlogon Stopped Network Connected Devices Auto-Setup Stopped Network Connections Stopped Network Connectivity Assistant Start pending Network Setup Service Stopped Office Source Engine Stopped OpenSSH Authentication Agent Stopped Optimize drives Stopped Parental Controls Stopped Payments and NFC/SE Manager Stopped Peer Networking Grouping Stopped Performance Counter DLL Host Stopped Performance Logs & Alerts Stopped Phone Service Stopped PNRP Machine Name Publication Service Stopped Portable Device Enumerator Service Stopped Printer Extensions and Notifications Stopped PrintWorkflow_68b6b Stopped Problem Reports and Solutions Control Panel Support Stopped Quality Windows Audio Video Experience Stopped Radio Management Service Stopped RealPlayer Update Service Stopped Remote Access Auto Connection Manager Stopped Remote Desktop Configuration Stopped Remote Desktop Services UserMode Port Redirector Stopped Remote Procedure Call (RPC) Locator Stopped Remote Registry Stopped Retail Demo Service Stopped Routing and Remote Access Stopped Secondary Logon Stopped Sensor Data Service Stopped Sensor Monitoring Service Stopped Sensor Service Stopped Shared PC Account Manager Stopped Skype Updater Stopped Smart Card Stopped Smart Card Device Enumeration Service Stopped Smart Card Removal Policy Stopped SNMP Trap Stopped Software Protection Stopped Spatial Data Service Stopped Spot Verifier Stopped Still Image Acquisition Events Stopped Storage Tiers Management Stopped UPnP Device Host Stopped Virtual Disk Stopped Volume Shadow Copy Stopped Volumetric Audio Compositor Service Stopped W3C Logging Service Stopped WalletService Stopped WarpJITSvc Stopped WebClient Stopped Wi-Fi Direct Services Connection Manager Service Stopped Windows Backup Stopped Windows Biometric Service Stopped Windows Camera Frame Server Stopped Windows Connect Now - Config Registrar Stopped Windows Defender Antivirus Network Inspection Service Stopped Windows Defender Antivirus Service Stopped Windows Encryption Provider Host Service Stopped Windows Error Reporting Service Stopped Windows Event Collector Stopped Windows Image Acquisition (WIA) Stopped Windows Insider Service Stopped Windows Installer Stopped Windows Media Player Network Sharing Service Stopped Windows Mobile Hotspot Service Stopped Windows Perception Service Stopped Windows Presentation Foundation Font Cache 3.0.0.0 Stopped Windows Process Activation Service Stopped Windows PushToInstall Service Stopped Windows Remote Management (WS-Management) Stopped Windows Time Stopped Windows Update Medic Service Stopped Wired AutoConfig Stopped Wireless PAN DHCP Server Stopped WMI Performance Adapter Stopped Work Folders Stopped WWAN AutoConfig Stopped Xbox Accessory Management Service Stopped Xbox Game Monitoring Stopped Xbox Live Auth Manager Stopped Xbox Live Game Save Stopped Xbox Live Networking Service TimeZone TimeZone GMT +9:30 Hours Language English (Australia) Location Australia Format English (Australia) Currency $ Date Format d/MM/yyyy Time Format h:mm:ss tt Scheduler 24/07/2018 10:32 AM; RealDownloader Update Check 24/07/2018 10:53 AM; GoogleUpdateTaskMachineUA 24/07/2018 6:53 PM; GoogleUpdateTaskMachineCore 24/07/2018 8:25 PM; bvyvdvyxc 24/07/2018 10:00 PM; Adobe Acrobat Update Task 25/07/2018 5:54 AM; OneDrive Standalone Update Task-S-1-5-21-593274584-2845798583-2150428693-1001 25/07/2018 12:33 PM; HPCeeScheduleForBeck McKee 28/07/2018 9:35 AM; Adobe Flash Player PPAPI Notifier 29/07/2018 6:31 PM; RealDownloaderRealUpgradeScheduledTaskS-1-5-21-593274584-2845798583-2150428693-1001 30/07/2018 6:36 PM; RealDownloaderDownloaderScheduledTaskS-1-5-21-593274584-2845798583-2150428693-1001 Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 DropboxOEM RealDownloaderRealUpgradeLogonTaskS-1-5-21-593274584-2845798583-2150428693-1001 Hotfixes Installed 24/07/2018 HP - HIDClass - 5/10/2018 12:00:00 AM - 2.1.4.1 HP HIDClass driver update released in May 2018 24/07/2018 HP Development Company, L.P. - System - 5/14/2018 12:00:00 AM - 7.0.2.1 HP Development Company, L.P. System driver update released in May 2018 11/07/2018 Windows Malicious Software Removal Tool x64 - July 2018 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 11/07/2018 2018-07 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4338819) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 11/07/2018 2018-07 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4338832) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 10/07/2018 HP Development Company, L.P. - System - 11/19/2017 12:00:00 AM - 7.0.1.1 HP Development Company, L.P. System driver update released in November 2017 10/07/2018 Feature update to Windows 10, version 1803 Install the latest update for Windows 10: the Windows 10 April 2018 Update. Not Installed 23/07/2018 2018-07 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4338832) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 22/07/2018 2018-07 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4338832) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 21/07/2018 2018-07 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4338832) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 20/07/2018 2018-07 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4338832) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 20/07/2018 2018-07 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4338832) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 12/07/2018 2018-07 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4338832) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 11/07/2018 2018-07 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4338832) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 11/07/2018 2018-07 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4338832) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 11/07/2018 2018-07 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4338832) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 11/07/2018 2018-07 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4338832) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. System Folders Application Data C:\ProgramData Cookies C:\Users\the_mckees\AppData\Local\Microsoft\Windows\INetCookies Desktop C:\Users\the_mckees\Desktop Documents C:\Users\Public\Documents Fonts C:\WINDOWS\Fonts Global Favorites C:\Users\the_mckees\Favorites Internet History C:\Users\the_mckees\AppData\Local\Microsoft\Windows\History Local Application Data C:\Users\the_mckees\AppData\Local Music C:\Users\Public\Music Path for burning CD C:\Users\the_mckees\AppData\Local\Microsoft\Windows\Burn\Burn Physical Desktop C:\Users\the_mckees\Desktop Pictures C:\Users\Public\Pictures Program Files C:\Program Files Public Desktop C:\Users\Public\Desktop Start Menu C:\ProgramData\Microsoft\Windows\Start Menu Start Menu Programs C:\ProgramData\Microsoft\Windows\Start Menu\Programs Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Templates C:\ProgramData\Microsoft\Windows\Templates Temporary Internet Files C:\Users\the_mckees\AppData\Local\Microsoft\Windows\INetCache User Favorites C:\Users\the_mckees\Favorites Videos C:\Users\Public\Videos Windows Directory C:\WINDOWS Windows/System C:\WINDOWS\system32 Process List ApplicationFrameHost.exe Process ID 6412 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\ApplicationFrameHost.exe Memory Usage 32 MB Peak Memory Usage 33 MB armsvc.exe Process ID 2528 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe Memory Usage 5.97 MB Peak Memory Usage 6.56 MB atieclxx.exe Process ID 1856 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\atieclxx.exe Memory Usage 8.66 MB Peak Memory Usage 9.37 MB atiesrxx.exe Process ID 1728 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\atiesrxx.exe Memory Usage 4.97 MB Peak Memory Usage 5.61 MB audiodg.exe Process ID 6804 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\audiodg.exe Memory Usage 19 MB Peak Memory Usage 40 MB backgroundTaskHost.exe Process ID 9444 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\backgroundTaskHost.exe Memory Usage 43 MB Peak Memory Usage 46 MB bdagent.exe Process ID 1500 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files\Bitdefender Antivirus Free\bdagent.exe Memory Usage 17 MB Peak Memory Usage 23 MB browser_broker.exe Process ID 7004 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\browser_broker.exe Memory Usage 24 MB Peak Memory Usage 24 MB chrome.exe Process ID 2008 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 120 MB Peak Memory Usage 136 MB chrome.exe Process ID 4632 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 79 MB Peak Memory Usage 87 MB chrome.exe Process ID 7808 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 85 MB Peak Memory Usage 137 MB chrome.exe Process ID 840 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 11 MB Peak Memory Usage 11 MB chrome.exe Process ID 6676 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 10 MB Peak Memory Usage 10 MB chrome.exe Process ID 7416 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 19 MB Peak Memory Usage 19 MB chrome.exe Process ID 12072 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 34 MB Peak Memory Usage 35 MB chrome.exe Process ID 12052 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 36 MB Peak Memory Usage 37 MB chrome.exe Process ID 12044 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 45 MB Peak Memory Usage 46 MB CltMngSvc.exe Process ID 3540 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe Memory Usage 13 MB Peak Memory Usage 13 MB CompatTelRunner.exe Process ID 11656 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\CompatTelRunner.exe Memory Usage 17 MB Peak Memory Usage 20 MB CompatTelRunner.exe Process ID 11436 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\CompatTelRunner.exe Memory Usage 6.94 MB Peak Memory Usage 6.94 MB CompatTelRunner.exe Process ID 7752 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\CompatTelRunner.exe Memory Usage 260 KB Peak Memory Usage 4.41 MB conhost.exe Process ID 7392 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\conhost.exe Memory Usage 11 MB Peak Memory Usage 11 MB conhost.exe Process ID 3852 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\conhost.exe Memory Usage 5.00 MB Peak Memory Usage 9.05 MB conhost.exe Process ID 3688 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\conhost.exe Memory Usage 8.15 MB Peak Memory Usage 9.77 MB conhost.exe Process ID 9956 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\conhost.exe Memory Usage 892 KB Peak Memory Usage 11 MB conhost.exe Process ID 9564 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\conhost.exe Memory Usage 888 KB Peak Memory Usage 11 MB CoolSense.exe Process ID 2196 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe Memory Usage 1.01 MB Peak Memory Usage 11 MB csrss.exe Process ID 696 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 4.50 MB Peak Memory Usage 5.16 MB csrss.exe Process ID 820 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 4.74 MB Peak Memory Usage 8.97 MB ctfmon.exe Process ID 2904 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\ctfmon.exe Memory Usage 15 MB Peak Memory Usage 15 MB dasHost.exe Process ID 3120 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\dasHost.exe Memory Usage 4.48 MB Peak Memory Usage 5.12 MB DeviceCensus.exe Process ID 11636 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\DeviceCensus.exe Memory Usage 6.09 MB Peak Memory Usage 14 MB DeviceCensus.exe Process ID 2896 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\DeviceCensus.exe Memory Usage 9.16 MB Peak Memory Usage 9.64 MB dllhost.exe Process ID 1672 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\dllhost.exe Memory Usage 14 MB Peak Memory Usage 14 MB dllhost.exe Process ID 11776 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\dllhost.exe Memory Usage 9.47 MB Peak Memory Usage 11 MB downloader2.exe Process ID 6392 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe Memory Usage 19 MB Peak Memory Usage 19 MB dwm.exe Process ID 1144 User DWM-1 Domain Window Manager Path C:\Windows\System32\dwm.exe Memory Usage 53 MB Peak Memory Usage 55 MB EpicGamesLauncher.exe Process ID 7832 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe Memory Usage 68 MB Peak Memory Usage 168 MB EvtEng.exe Process ID 2548 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Intel\WiFi\bin\EvtEng.exe Memory Usage 11 MB Peak Memory Usage 13 MB explorer.exe Process ID 5176 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\explorer.exe Memory Usage 125 MB Peak Memory Usage 139 MB fontdrvhost.exe Process ID 636 User UMFD-0 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 3.29 MB Peak Memory Usage 3.95 MB fontdrvhost.exe Process ID 632 User UMFD-1 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 6.46 MB Peak Memory Usage 6.46 MB HPMSGSVC.exe Process ID 6124 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe Memory Usage 8.12 MB Peak Memory Usage 8.44 MB hpqwmiex.exe Process ID 5344 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe Memory Usage 9.16 MB Peak Memory Usage 9.77 MB HPSFReport.exe Process ID 11708 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe Memory Usage 20 MB Peak Memory Usage 21 MB HPSupportSolutionsFrameworkService.exe Process ID 9952 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe Memory Usage 35 MB Peak Memory Usage 48 MB HPWMISVC.exe Process ID 2580 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe Memory Usage 7.68 MB Peak Memory Usage 8.09 MB HxOutlook.exe Process ID 5052 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.10228.20127.0_x64__8wekyb3d8bbwe\HxOutlook.exe Memory Usage 51 MB Peak Memory Usage 114 MB HxTsr.exe Process ID 4924 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.10228.20127.0_x64__8wekyb3d8bbwe\HxTsr.exe Memory Usage 37 MB Peak Memory Usage 52 MB ibtsiva.exe Process ID 2588 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\ibtsiva.exe Memory Usage 4.01 MB Peak Memory Usage 4.30 MB lsass.exe Process ID 940 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\lsass.exe Memory Usage 16 MB Peak Memory Usage 16 MB mDNSResponder.exe Process ID 2520 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bonjour\mDNSResponder.exe Memory Usage 6.11 MB Peak Memory Usage 6.54 MB Memory Compression Process ID 1892 User SYSTEM Domain NT AUTHORITY Memory Usage 29 MB Peak Memory Usage 239 MB MicrosoftEdge.exe Process ID 6700 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe Memory Usage 86 MB Peak Memory Usage 86 MB MicrosoftEdgeCP.exe Process ID 5948 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe Memory Usage 24 MB Peak Memory Usage 25 MB MicrosoftEdgeCP.exe Process ID 3440 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe Memory Usage 25 MB Peak Memory Usage 25 MB MicrosoftEdgeCP.exe Process ID 9588 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe Memory Usage 43 MB Peak Memory Usage 43 MB MicrosoftEdgeCP.exe Process ID 12788 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe Memory Usage 25 MB Peak Memory Usage 25 MB MicrosoftEdgeCP.exe Process ID 5648 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe Memory Usage 84 MB Peak Memory Usage 84 MB MSASCuiL.exe Process ID 8116 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files\Windows Defender\MSASCuiL.exe Memory Usage 8.74 MB Peak Memory Usage 9.53 MB OneDrive.exe Process ID 6536 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Users\the_mckees\AppData\Local\Microsoft\OneDrive\OneDrive.exe Memory Usage 43 MB Peak Memory Usage 46 MB ProductAgentService.exe Process ID 2728 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender Agent\ProductAgentService.exe Memory Usage 15 MB Peak Memory Usage 16 MB RAVBg64.exe Process ID 2288 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 11 MB Peak Memory Usage 14 MB realsched.exe Process ID 7764 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe Memory Usage 416 KB Peak Memory Usage 9.19 MB Registry Process ID 104 User SYSTEM Domain NT AUTHORITY Memory Usage 47 MB Peak Memory Usage 95 MB RegSrvc.exe Process ID 2760 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe Memory Usage 8.12 MB Peak Memory Usage 9.13 MB RichVideo64.exe Process ID 2776 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\CyberLink\Shared files\RichVideo64.exe Memory Usage 6.00 MB Peak Memory Usage 6.69 MB rpdsvc.exe Process ID 7128 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe Memory Usage 9.05 MB Peak Memory Usage 17 MB RtkAudioService64.exe Process ID 1944 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe Memory Usage 8.12 MB Peak Memory Usage 8.84 MB RtkNGUI64.exe Process ID 8144 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe Memory Usage 13 MB Peak Memory Usage 17 MB RuntimeBroker.exe Process ID 6256 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 16 MB Peak Memory Usage 19 MB RuntimeBroker.exe Process ID 2348 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 25 MB Peak Memory Usage 26 MB RuntimeBroker.exe Process ID 5336 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 16 MB Peak Memory Usage 24 MB RuntimeBroker.exe Process ID 1220 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 23 MB Peak Memory Usage 30 MB RuntimeBroker.exe Process ID 11196 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 34 MB Peak Memory Usage 41 MB RuntimeBroker.exe Process ID 3648 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 9.64 MB Peak Memory Usage 12 MB RuntimeBroker.exe Process ID 6580 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 23 MB Peak Memory Usage 28 MB RuntimeBroker.exe Process ID 9292 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 31 MB Peak Memory Usage 32 MB SearchFilterHost.exe Process ID 12572 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchFilterHost.exe Memory Usage 11 MB Peak Memory Usage 11 MB SearchIndexer.exe Process ID 6724 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchIndexer.exe Memory Usage 38 MB Peak Memory Usage 42 MB SearchProtocolHost.exe Process ID 11880 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchProtocolHost.exe Memory Usage 11 MB Peak Memory Usage 12 MB SearchUI.exe Process ID 2044 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe Memory Usage 159 MB Peak Memory Usage 169 MB SecurityHealthService.exe Process ID 2868 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SecurityHealthService.exe Memory Usage 14 MB Peak Memory Usage 15 MB services.exe Process ID 880 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\services.exe Memory Usage 7.20 MB Peak Memory Usage 9.04 MB SettingSyncHost.exe Process ID 7876 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\SettingSyncHost.exe Memory Usage 7.85 MB Peak Memory Usage 30 MB SgrmBroker.exe Process ID 6176 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SgrmBroker.exe Memory Usage 4.23 MB Peak Memory Usage 4.63 MB ShellExperienceHost.exe Process ID 5364 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Memory Usage 79 MB Peak Memory Usage 89 MB sihost.exe Process ID 5316 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\sihost.exe Memory Usage 27 MB Peak Memory Usage 27 MB Skype.exe Process ID 6608 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\Skype\Phone\Skype.exe Memory Usage 81 MB Peak Memory Usage 108 MB SkypeHost.exe Process ID 6516 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.210.0_x64__kzf8qxf38zg5c\SkypeHost.exe Memory Usage 24 MB Peak Memory Usage 73 MB smartscreen.exe Process ID 6168 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\smartscreen.exe Memory Usage 32 MB Peak Memory Usage 37 MB smss.exe Process ID 440 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\smss.exe Memory Usage 900 KB Peak Memory Usage 1.12 MB Speccy64.exe Process ID 13216 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files\Speccy\Speccy64.exe Memory Usage 31 MB Peak Memory Usage 31 MB spoolsv.exe Process ID 2400 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\spoolsv.exe Memory Usage 12 MB Peak Memory Usage 17 MB Spotify.exe Process ID 7776 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Users\the_mckees\AppData\Roaming\Spotify\Spotify.exe Memory Usage 48 MB Peak Memory Usage 59 MB Spotify.exe Process ID 8568 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Users\the_mckees\AppData\Roaming\Spotify\Spotify.exe Memory Usage 35 MB Peak Memory Usage 118 MB Spotify.exe Process ID 9036 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Users\the_mckees\AppData\Roaming\Spotify\Spotify.exe Memory Usage 28 MB Peak Memory Usage 59 MB Spotify.exe Process ID 8276 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Users\the_mckees\AppData\Roaming\Spotify\Spotify.exe Memory Usage 14 MB Peak Memory Usage 52 MB SpotifyWebHelper.exe Process ID 6800 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Users\the_mckees\AppData\Roaming\Spotify\SpotifyWebHelper.exe Memory Usage 7.31 MB Peak Memory Usage 7.89 MB svchost.exe Process ID 1508 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 32 MB Peak Memory Usage 32 MB svchost.exe Process ID 1284 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 95 MB Peak Memory Usage 108 MB svchost.exe Process ID 1288 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 33 MB Peak Memory Usage 66 MB svchost.exe Process ID 1232 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 84 MB Peak Memory Usage 417 MB svchost.exe Process ID 1044 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 13 MB svchost.exe Process ID 608 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 28 MB Peak Memory Usage 28 MB svchost.exe Process ID 1592 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 18 MB svchost.exe Process ID 2556 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.57 MB Peak Memory Usage 5.93 MB svchost.exe Process ID 2692 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 10 MB svchost.exe Process ID 2620 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 24 MB Peak Memory Usage 26 MB svchost.exe Process ID 2076 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.12 MB Peak Memory Usage 6.30 MB svchost.exe Process ID 1324 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 31 MB Peak Memory Usage 32 MB svchost.exe Process ID 2540 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.84 MB Peak Memory Usage 10 MB svchost.exe Process ID 2264 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 16 MB svchost.exe Process ID 11768 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.32 MB Peak Memory Usage 7.39 MB svchost.exe Process ID 5628 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.34 MB Peak Memory Usage 7.37 MB svchost.exe Process ID 1056 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\svchost.exe Memory Usage 54 MB Peak Memory Usage 56 MB svchost.exe Process ID 2072 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 12 MB svchost.exe Process ID 1108 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 12 MB svchost.exe Process ID 3936 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.87 MB Peak Memory Usage 7.33 MB svchost.exe Process ID 3220 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 13 MB svchost.exe Process ID 1608 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 28 MB Peak Memory Usage 42 MB SynTPEnh.exe Process ID 1952 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files\Synaptics\SynTP\SynTPEnh.exe Memory Usage 20 MB Peak Memory Usage 21 MB SynTPEnhService.exe Process ID 2844 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe Memory Usage 4.38 MB Peak Memory Usage 4.87 MB SynTPHelper.exe Process ID 3004 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files\Synaptics\SynTP\SynTPHelper.exe Memory Usage 4.41 MB Peak Memory Usage 4.90 MB System Process ID 4 Memory Usage 1.44 MB Peak Memory Usage 4.63 MB System Idle Process Process ID 0 SystemSettings.exe Process ID 4548 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\ImmersiveControlPanel\SystemSettings.exe Memory Usage 57 MB Peak Memory Usage 81 MB taskhostw.exe Process ID 1664 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Windows\System32\taskhostw.exe Memory Usage 22 MB Peak Memory Usage 22 MB TiWorker.exe Process ID 8760 User SYSTEM Domain NT AUTHORITY Path C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.17134.165_none_eaf410441d6d7311\TiWorker.exe Memory Usage 71 MB Peak Memory Usage 204 MB TrustedInstaller.exe Process ID 11464 User SYSTEM Domain NT AUTHORITY Path C:\Windows\servicing\TrustedInstaller.exe Memory Usage 7.01 MB Peak Memory Usage 8.68 MB unsecapp.exe Process ID 4512 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\unsecapp.exe Memory Usage 6.14 MB Peak Memory Usage 6.36 MB Updater.exe Process ID 2888 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Popcorn Time\Updater.exe Memory Usage 11 MB Peak Memory Usage 11 MB updatesrv.exe Process ID 2912 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe Memory Usage 11 MB Peak Memory Usage 15 MB Video.UI.exe Process ID 8524 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18061.12711.0_x64__8wekyb3d8bbwe\Video.UI.exe Memory Usage 32 MB Peak Memory Usage 53 MB vsserv.exe Process ID 2932 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender Antivirus Free\vsserv.exe Memory Usage 213 MB Peak Memory Usage 609 MB vsservppl.exe Process ID 2972 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe Memory Usage 22 MB Peak Memory Usage 26 MB wininit.exe Process ID 808 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wininit.exe Memory Usage 5.70 MB Peak Memory Usage 6.55 MB winlogon.exe Process ID 916 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\winlogon.exe Memory Usage 8.02 MB Peak Memory Usage 14 MB wlanext.exe Process ID 3724 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wlanext.exe Memory Usage 12 MB Peak Memory Usage 17 MB WmiPrvSE.exe Process ID 4996 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 11 MB Peak Memory Usage 12 MB WmiPrvSE.exe Process ID 12084 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 16 MB Peak Memory Usage 16 MB wuauclt.exe Process ID 11996 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wuauclt.exe Memory Usage 7.63 MB Peak Memory Usage 7.69 MB YouCamService6.exe Process ID 5728 User Beck McKee Domain DESKTOP-BBQIE4L Path C:\Program Files (x86)\CyberLink\YouCam6\YouCamService6.exe Memory Usage 1.64 MB Peak Memory Usage 14 MB ZeroConfigService.exe Process ID 2984 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe Memory Usage 14 MB Peak Memory Usage 17 MB Security Options Accounts: Administrator account status Disabled Accounts: Block Microsoft accounts Not Defined Accounts: Guest account status Disabled Accounts: Limit local account use of blank passwords to console logon only Enabled Accounts: Rename administrator account Administrator Accounts: Rename guest account Guest Audit: Audit the access of global system objects Disabled Audit: Audit the use of Backup and Restore privilege Enabled Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings Not Defined Audit: Shut down system immediately if unable to log security audits Disabled DCOM: Machine Access Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined DCOM: Machine Launch Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined Devices: Allow undock without having to log on Enabled Devices: Allowed to format and eject removable media Not Defined Devices: Prevent users from installing printer drivers Disabled Devices: Restrict CD-ROM access to locally logged-on user only Not Defined Devices: Restrict floppy access to locally logged-on user only Not Defined Domain controller: Allow server operators to schedule tasks Not Defined Domain controller: LDAP server signing requirements Not Defined Domain controller: Refuse machine account password changes Not Defined Domain member: Digitally encrypt or sign secure channel data (always) Enabled Domain member: Digitally encrypt secure channel data (when possible) Enabled Domain member: Digitally sign secure channel data (when possible) Enabled Domain member: Disable machine account password changes Disabled Domain member: Maximum machine account password age 30 days Domain member: Require strong (Windows 2000 or later) session key Enabled Interactive logon: Display user information when the session is locked Not Defined Interactive logon: Do not require CTRL+ALT+DEL Not Defined Interactive logon: Don't display last signed-in Disabled Interactive logon: Don't display username at sign-in Not Defined Interactive logon: Machine account lockout threshold Not Defined Interactive logon: Machine inactivity limit Not Defined Interactive logon: Message text for users attempting to log on Interactive logon: Message title for users attempting to log on Interactive logon: Number of previous logons to cache (in case domain controller is not available) 10 logons Interactive logon: Prompt user to change password before expiration 5 days Interactive logon: Require Domain Controller authentication to unlock workstation Disabled Interactive logon: Require Windows Hello for Business or smart card Disabled Interactive logon: Smart card removal behavior No Action Microsoft network client: Digitally sign communications (always) Disabled Microsoft network client: Digitally sign communications (if server agrees) Enabled Microsoft network client: Send unencrypted password to third-party SMB servers Disabled Microsoft network server: Amount of idle time required before suspending session Not Defined Microsoft network server: Attempt S4U2Self to obtain claim information Not Defined Microsoft network server: Digitally sign communications (always) Disabled Microsoft network server: Digitally sign communications (if client agrees) Disabled Microsoft network server: Disconnect clients when logon hours expire Enabled Microsoft network server: Server SPN target name validation level Not Defined Network access: Allow anonymous SID/Name translation Disabled Network access: Do not allow anonymous enumeration of SAM accounts Enabled Network access: Do not allow anonymous enumeration of SAM accounts and shares Disabled Network access: Do not allow storage of passwords and credentials for network authentication Disabled Network access: Let Everyone permissions apply to anonymous users Disabled Network access: Named Pipes that can be accessed anonymously Network access: Remotely accessible registry paths System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion Network access: Remotely accessible registry paths and sub-paths System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog Network access: Restrict anonymous access to Named Pipes and Shares Enabled Network access: Restrict clients allowed to make remote calls to SAM Network access: Shares that can be accessed anonymously Not Defined Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Network security: Allow Local System to use computer identity for NTLM Not Defined Network security: Allow LocalSystem NULL session fallback Not Defined Network security: Allow PKU2U authentication requests to this computer to use online identities. Not Defined Network security: Configure encryption types allowed for Kerberos Not Defined Network security: Do not store LAN Manager hash value on next password change Enabled Network security: Force logoff when logon hours expire Disabled Network security: LAN Manager authentication level Not Defined Network security: LDAP client signing requirements Negotiate signing Network security: Minimum session security for NTLM SSP based (including secure RPC) clients Require 128-bit encryption Network security: Minimum session security for NTLM SSP based (including secure RPC) servers Require 128-bit encryption Network security: Restrict NTLM: Add remote server exceptions for NTLM authentication Not Defined Network security: Restrict NTLM: Add server exceptions in this domain Not Defined Network security: Restrict NTLM: Audit Incoming NTLM Traffic Not Defined Network security: Restrict NTLM: Audit NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Incoming NTLM traffic Not Defined Network security: Restrict NTLM: NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Outgoing NTLM traffic to remote servers Not Defined Recovery console: Allow automatic administrative logon Not Defined Recovery console: Allow floppy copy and access to all drives and all folders Not Defined Shutdown: Allow system to be shut down without having to log on Enabled Shutdown: Clear virtual memory pagefile Disabled System cryptography: Force strong key protection for user keys stored on the computer Not Defined System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing Disabled System objects: Require case insensitivity for non-Windows subsystems Enabled System objects: Strengthen default permissions of internal system objects (e.g. Symbolic Links) Enabled System settings: Optional subsystems System settings: Use Certificate Rules on Windows Executables for Software Restriction Policies Disabled User Account Control: Admin Approval Mode for the Built-in Administrator account Not Defined User Account Control: Allow UIAccess applications to prompt for elevation without using the secure desktop Disabled User Account Control: Behavior of the elevation prompt for administrators in Admin Approval Mode Prompt for consent for non-Windows binaries User Account Control: Behavior of the elevation prompt for standard users Prompt for credentials User Account Control: Detect application installations and prompt for elevation Enabled User Account Control: Only elevate executables that are signed and validated Disabled User Account Control: Only elevate UIAccess applications that are installed in secure locations Enabled User Account Control: Run all administrators in Admin Approval Mode Enabled User Account Control: Switch to the secure desktop when prompting for elevation Enabled User Account Control: Virtualize file and registry write failures to per-user locations Enabled Device Tree ACPI x64-based PC Microsoft ACPI-Compliant System ACPI Fixed Feature Button ACPI Lid ACPI Power Button ACPI Thermal Zone AMD A6-6310 APU with AMD Radeon R4 Graphics AMD A6-6310 APU with AMD Radeon R4 Graphics AMD A6-6310 APU with AMD Radeon R4 Graphics AMD A6-6310 APU with AMD Radeon R4 Graphics AmdAS4 Device High precision event timer Microsoft AC Adapter Microsoft ACPI-Compliant Control Method Battery Microsoft Windows Management Interface for ACPI Motherboard resources Motherboard resources System board Trusted Platform Module 2.0 Pci Bus AMD PSP 1.0 Device AMD SMBus HP Mobile Data Protection Sensor Motherboard resources PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI-to-PCI Bridge Synaptics SMBus Driver System board PCI standard host CPU bridge Motherboard resources AMD Radeon(TM) R4 Graphics Generic PnP Monitor High Definition Audio Controller AMD High Definition Audio Device PCI-to-PCI Bridge Intel(R) Dual Band Wireless-AC 3165 Microsoft Wi-Fi Direct Virtual Adapter #3 Microsoft Wi-Fi Direct Virtual Adapter #4 PCI-to-PCI Bridge Realtek PCIe FE Family Controller #2 PCI-to-PCI Bridge Realtek PCIE CardReader AMD USB 3.0 eXtensible Host Controller - 1.0 (Microsoft) USB Root Hub (USB 3.0) USB Input Device HID-compliant mouse AMD SATA Controller hp DVDRW DU8A6SH TOSHIBA MQ01ABF050 Standard Enhanced PCI to USB Host Controller USB Root Hub Generic USB Hub Intel Wireless Bluetooth Standard Enhanced PCI to USB Host Controller USB Root Hub Generic USB Hub USB Composite Device HP Truevision HD High Definition Audio Controller Realtek High Definition Audio Microphone (Realtek High Definition Audio) Speaker/HP (Realtek High Definition Audio) PCI standard ISA bridge Direct memory access controller Microsoft ACPI-Compliant Embedded Controller Motherboard resources Motherboard resources Numeric data processor Programmable interrupt controller Standard PS/2 Keyboard Synaptics SMBus TouchPad System CMOS/real time clock System speaker System timer HP Wireless Button Driver HID-compliant wireless radio controls Microsoft UEFI-Compliant System System Firmware CPU AMD A6-6310 Cores 4 Threads 4 Name AMD A6-6310 Code Name Mullins Package Socket FT3 (BGA769) Technology 28nm Specification AMD A6-6310 APU with AMD Radeon R4 Graphics Family F Extended Family 16 Model 0 Extended Model 30 Stepping 1 Revision ML-A1 Instructions MMX (+), SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, SSE4A, AMD 64, NX, VMX, AES, AVX Virtualization Supported, Enabled Hyperthreading Not supported Bus Speed 99.8 MHz Stock Core Speed 1800 MHz Stock Bus Speed 100 MHz Average Temperature 44 °C Caches L1 Data Cache Size 4 x 32 KBytes L1 Instructions Cache Size 4 x 32 KBytes L2 Unified Cache Size 2048 KBytes Cores Core 0 Core Speed 2195.5 MHz Multiplier x 22.0 Bus Speed 99.8 MHz Temperature 44 °C Threads APIC ID: 0 Core 1 Core Speed 1796.4 MHz Multiplier x 18.0 Bus Speed 99.8 MHz Temperature 44 °C Threads APIC ID: 1 Core 2 Core Speed 2195.5 MHz Multiplier x 22.0 Bus Speed 99.8 MHz Temperature 44 °C Threads APIC ID: 2 Core 3 Core Speed 2195.5 MHz Multiplier x 22.0 Bus Speed 99.8 MHz Temperature 44 °C Threads APIC ID: 3 RAM Memory slots Total memory slots 2 Used memory slots 1 Free memory slots 1 Memory Type DDR3 Size 4096 MBytes Channels # Single DRAM Frequency 798.4 MHz CAS# Latency (CL) 11 clocks RAS# to CAS# Delay (tRCD) 11 clocks RAS# Precharge (tRP) 12 clocks Cycle Time (tRAS) 28 clocks Bank Cycle Time (tRC) 39 clocks Physical Memory Memory Usage 81 % Total Physical 3.44 GB Available Physical 642 MB Total Virtual 5.94 GB Available Virtual 2.00 GB SPD Number Of SPD Modules 1 Slot #1 Type DDR3 Size 4096 MBytes Manufacturer Samsung Max Bandwidth PC3-12800 (800 MHz) Part Number M471B5173DB0-YK0 Serial Number 328780854 Week/year 34 / 15 Timing table JEDEC #1 Frequency 381.0 MHz CAS# Latency 5.0 RAS# To CAS# 5 RAS# Precharge 5 tRAS 14 tRC 19 Voltage 1.350 V JEDEC #2 Frequency 457.1 MHz CAS# Latency 6.0 RAS# To CAS# 6 RAS# Precharge 6 tRAS 16 tRC 22 Voltage 1.350 V JEDEC #3 Frequency 533.3 MHz CAS# Latency 7.0 RAS# To CAS# 7 RAS# Precharge 7 tRAS 19 tRC 26 Voltage 1.350 V JEDEC #4 Frequency 609.5 MHz CAS# Latency 8.0 RAS# To CAS# 8 RAS# Precharge 8 tRAS 22 tRC 30 Voltage 1.350 V JEDEC #5 Frequency 685.7 MHz CAS# Latency 9.0 RAS# To CAS# 9 RAS# Precharge 9 tRAS 24 tRC 33 Voltage 1.350 V JEDEC #6 Frequency 761.9 MHz CAS# Latency 10.0 RAS# To CAS# 10 RAS# Precharge 10 tRAS 27 tRC 37 Voltage 1.350 V JEDEC #7 Frequency 800.0 MHz CAS# Latency 11.0 RAS# To CAS# 11 RAS# Precharge 11 tRAS 28 tRC 39 Voltage 1.350 V Motherboard Manufacturer HP Model 80B2 (P0) Version 82.29 Chipset Vendor AMD Chipset Model K16 IMC Chipset Revision 00 Southbridge Vendor AMD Southbridge Model Kabini FCH Southbridge Revision 8.2 BIOS Brand American Megatrends Inc. Version F.17 Date 10/03/2016 PCI Data Slot PCI Slot Type PCI Slot Usage In Use Data lanes x1 Slot Designation PCI Express Slot 1 Characteristics 3.3V, Shared, PME Slot Number 0 Graphics Monitor Name Generic PnP Monitor on AMD Radeon R4 Graphics Current Resolution 1366x768 pixels Work Resolution 1366x728 pixels State Enabled, Primary Monitor Width 1366 Monitor Height 768 Monitor BPP 32 bits per pixel Monitor Frequency 60 Hz Device \\.\DISPLAY1\Monitor0 ATI AMD Radeon(TM) R4 Graphics Manufacturer ATI Model AMD Radeon R4 Graphics Device ID 1002-9851 Subvendor HP (103C) Current Performance Level Level 0 Current GPU Clock 300 MHz Current Memory Clock 800 MHz Current Shader Clock 800 MHz GPU Clock 800.0 MHz Temperature 43 °C Driver version 15.201.1101.0 Memory Type DDR3 Memory 512 MB Bandwidth 12.8 GB/s Count of performance levels : 2 Level 1 - "Perf Level 0" GPU Clock 300 MHz Shader Clock 800 MHz Level 2 - "Perf Level 1" GPU Clock 800 MHz Shader Clock 800 MHz Storage Hard drives TOSHIBA MQ01ABF050 Manufacturer TOSHIBA Heads 16 Cylinders 60,801 Tracks 15,504,255 Sectors 976,768,065 SATA type SATA-III 6.0Gb/s Device type Fixed ATA Standard ATA8-ACS Serial Number 85GMW0WTT Firmware Version Number AM0P2C LBA Size 48-bit LBA Power On Count 2041 times Power On Time 232.5 days Speed 5400 RPM Features S.M.A.R.T., APM, NCQ Max. Transfer Mode SATA III 6.0Gb/s Used Transfer Mode SATA III 6.0Gb/s Interface SATA Capacity 465 GB Real size 500,107,862,016 bytes RAID Type None S.M.A.R.T Status Good Temperature 37 °C Temperature Range OK (less than 50 °C) S.M.A.R.T attributes 01 Attribute name Read Error Rate Real value 0 Current 100 Worst 100 Threshold 50 Raw Value 0000000000 Status Good 02 Attribute name Throughput Performance Real value 0 Current 100 Worst 100 Threshold 50 Raw Value 0000000000 Status Good 03 Attribute name Spin-Up Time Real value 1373 ms Current 100 Worst 100 Threshold 2 Raw Value 000000055D Status Good 04 Attribute name Start/Stop Count Real value 2,045 Current 100 Worst 100 Threshold 0 Raw Value 00000007FD Status Good 05 Attribute name Reallocated Sectors Count Real value 0 Current 100 Worst 100 Threshold 10 Raw Value 0000000000 Status Good 07 Attribute name Seek Error Rate Real value 0 Current 100 Worst 100 Threshold 50 Raw Value 0000000000 Status Good 08 Attribute name Seek Time Performance Real value 0 Current 100 Worst 100 Threshold 50 Raw Value 0000000000 Status Good 09 Attribute name Power-On Hours (POH) Real value 232d 11h Current 87 Worst 87 Threshold 0 Raw Value 00000015CB Status Good 0A Attribute name Spin Retry Count Real value 0 Current 140 Worst 100 Threshold 30 Raw Value 0000000000 Status Good 0C Attribute name Device Power Cycle Count Real value 2,041 Current 100 Worst 100 Threshold 0 Raw Value 00000007F9 Status Good B7 Attribute name SATA Downshift Error Count Real value 0 Current 100 Worst 100 Threshold 1 Raw Value 0000000000 Status Good B8 Attribute name End-to-End error / IOEDC Real value 0 Current 100 Worst 100 Threshold 97 Raw Value 0000000000 Status Good B9 Attribute name Head Stability Real value 65,535 Current 100 Worst 100 Threshold 1 Raw Value 000000FFFF Status Good BB Attribute name Reported Uncorrectable Errors Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good BC Attribute name Command Timeout Real value 98 Current 100 Worst 96 Threshold 0 Raw Value 0000000062 Status Good BD Attribute name High Fly Writes (WDC) Real value 0 Current 100 Worst 100 Threshold 1 Raw Value 0000000000 Status Good BE Attribute name Temperature Difference from 100 Real value 34 °C Current 66 Worst 43 Threshold 40 Raw Value 0022110022 Status Good BF Attribute name G-sense error rate Real value 1,058 Current 100 Worst 100 Threshold 0 Raw Value 0000000422 Status Good C0 Attribute name Power-off Retract Count Real value 4,063,294 Current 100 Worst 100 Threshold 0 Raw Value 00003E003E Status Good C1 Attribute name Load/Unload Cycle Count Real value 87,837 Current 92 Worst 92 Threshold 0 Raw Value 000001571D Status Good C2 Attribute name Temperature Real value 34 °C Current 66 Worst 43 Threshold 40 Raw Value 0022110022 Status Good C4 Attribute name Reallocation Event Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C5 Attribute name Current Pending Sector Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C7 Attribute name UltraDMA CRC Error Count Real value 1 Current 200 Worst 200 Threshold 0 Raw Value 0000000001 Status Good Partition 0 Partition ID Disk #0, Partition #0 File System FAT32 Volume Serial Number BA2D4914 Size 256 MB Used Space 65 MB (25%) Free Space 190 MB (75%) Partition 1 Partition ID Disk #0, Partition #1 Disk Letter C: File System NTFS Volume Serial Number 1E326163 Size 443 GB Used Space 346 GB (78%) Free Space 96 GB (22%) Partition 2 Partition ID Disk #0, Partition #2 File System NTFS Volume Serial Number CCE9531A Size 1.76 GB Used Space 594 MB (32%) Free Space 1.18 GB (68%) Partition 3 Partition ID Disk #0, Partition #3 Disk Letter D: File System NTFS Volume Serial Number E27DA3DA Size 19.8 GB Used Space 17.5 GB (88%) Free Space 2.24 GB (12%) Optical Drives hp DVDRW DU8A6SH Media Type DVD Writer Name hp DVDRW DU8A6SH Availability Running/Full Power Capabilities Random Access, Supports Writing, Supports Removable Media Read capabilities CD-R, CD-RW, CD-ROM, DVD-RAM, DVD-ROM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL Write capabilities CD-R, CD-RW, DVD-RAM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL Config Manager Error Code Device is working properly Config Manager User Config FALSE Drive E: Media Loaded FALSE SCSI Bus 1 SCSI Logical Unit 0 SCSI Port 0 SCSI Target Id 0 Status OK Audio Sound Cards AMD High Definition Audio Device Realtek High Definition Audio Playback Device Speaker/HP (Realtek High Definition Audio) Recording Device Microphone (Realtek High Definition Audio) Peripherals Standard PS/2 Keyboard Device Kind Keyboard Device Name Standard PS/2 Keyboard Vendor HPQ Location PCI standard ISA bridge Driver Date 6-21-2006 Version 10.0.17134.1 File C:\WINDOWS\system32\DRIVERS\i8042prt.sys File C:\WINDOWS\system32\DRIVERS\kbdclass.sys Synaptics SMBus TouchPad Device Kind Mouse Device Name Synaptics SMBus TouchPad Vendor SYN Location PCI standard ISA bridge Driver Date 8-16-2017 Version 19.3.31.31 File C:\WINDOWS\system32\DRIVERS\SynTP.sys File C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel_Aux.sys File C:\WINDOWS\system32\DRIVERS\Smb_driver_AMDASF_Aux.sys File C:\WINDOWS\system32\DRIVERS\SynRMIHID_Aux.sys File C:\WINDOWS\system32\SynTPAPI.dll File C:\WINDOWS\system32\SynCOM.dll File C:\Program Files\Synaptics\SynTP\SynTPRes.dll File C:\Program Files\Synaptics\SynTP\SynTPCpl.dll File C:\Program Files\Synaptics\SynTP\SynCntxt.rtf File C:\Program Files\Synaptics\SynTP\SynZMetr.exe File C:\Program Files\Synaptics\SynTP\SynMood.exe File C:\Program Files\Synaptics\SynTP\SynTPEnh.exe File C:\Program Files\Synaptics\SynTP\Tutorial.exe File C:\Program Files\Synaptics\SynTP\InstNT.exe File C:\Program Files\Synaptics\SynTP\SynISDLL.dll File C:\Program Files\Synaptics\SynTP\SynUnst.ini File C:\Program Files\Synaptics\SynTP\SynRemoveUserSettings.dat File C:\Program Files\Synaptics\SynTP\SynTPHelper.exe File C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe File C:\Program Files\Synaptics\SynTP\SynPivotRotate.mpg File C:\Program Files\Synaptics\SynTP\SynChiralRotate.mpg File C:\Program Files\Synaptics\SynTP\SynFlick.mpg File C:\Program Files\Synaptics\SynTP\SynPinch.mpg File C:\Program Files\Synaptics\SynTP\SynMomentum.mpg File C:\Program Files\Synaptics\SynTP\SynLinearVHScroll.mpg File C:\Program Files\Synaptics\SynTP\SynChiralVHScroll.mpg File C:\Program Files\Synaptics\SynTP\SynTwoFingerVHScroll.mpg File C:\Program Files\Synaptics\SynTP\SynPivotRotate_ChiralRotate.mpg File C:\Program Files\Synaptics\SynTP\SynThreeFingerFlick.mpg File C:\Program Files\Synaptics\SynTP\SynThreeFingersDown.mpg File C:\Program Files\Synaptics\SynTP\SynTwistRotate.mpg File C:\Program Files\Synaptics\SynTP\SynChiralTwistRotate.mpg File C:\Program Files\Synaptics\SynTP\StaticImg.html File C:\Program Files\Synaptics\SynTP\StaticImg.png File C:\Program Files\Synaptics\SynTP\StaticImgNB.html File C:\Program Files\Synaptics\SynTP\StaticImgNB.png File C:\Program Files\Synaptics\SynTP\SynSysDetect.js File C:\Program Files\Synaptics\SynTP\Syn2FingerScrolling.wmv File C:\Program Files\Synaptics\SynTP\Syn3FingerFlick.wmv File C:\Program Files\Synaptics\SynTP\Syn4FingerFlick.wmv File C:\Program Files\Synaptics\SynTP\Syn4FFlickVNB.wmv File C:\Program Files\Synaptics\SynTP\SynSmartSense.wmv File C:\Program Files\Synaptics\SynTP\SynSmartSenseNB.wmv File C:\Program Files\Synaptics\SynTP\Syn4FingerFlickUpDown.wmv File C:\Program Files\Synaptics\SynTP\Syn4FingerFlickUpDownNB.wmv File C:\Program Files\Synaptics\SynTP\Syn4FingerFlickLeftRight.wmv File C:\Program Files\Synaptics\SynTP\Syn4FingerFlickLeftRightNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FingerPress.wmv File C:\Program Files\Synaptics\SynTP\SynEdgeMotion.wmv File C:\Program Files\Synaptics\SynTP\SynLinearScrolling.wmv File C:\Program Files\Synaptics\SynTP\SynMomentum.wmv File C:\Program Files\Synaptics\SynTP\SynMomentumScrolling.wmv File C:\Program Files\Synaptics\SynTP\SynPinchZoom.wmv File C:\Program Files\Synaptics\SynTP\SynBlackScreen.wmv File C:\Program Files\Synaptics\SynTP\SynPivotRotate.wmv File C:\Program Files\Synaptics\SynTP\SynTwistRotate.wmv File C:\Program Files\Synaptics\SynTP\SynCoverGesture.wmv File C:\Program Files\Synaptics\SynTP\SynChiralRotate.wmv File C:\Program Files\Synaptics\SynTP\SynChiralScrolling.wmv File C:\Program Files\Synaptics\SynTP\SynCoastingScrolling.wmv File C:\Program Files\Synaptics\SynTP\SynPointing.wmv File C:\Program Files\Synaptics\SynTP\SynPalmCheck.wmv File C:\Program Files\Synaptics\SynTP\SynSensitivity.wmv File C:\Program Files\Synaptics\SynTP\SynWindowConstrained.wmv File C:\Program Files\Synaptics\SynTP\SynSlowMotion.wmv File C:\Program Files\Synaptics\SynTP\SynConstrainedMotion.wmv File C:\Program Files\Synaptics\SynTP\SynTapping.wmv File C:\Program Files\Synaptics\SynTP\SynButtons.wmv File C:\Program Files\Synaptics\SynTP\SynTouchStykSelect.wmv File C:\Program Files\Synaptics\SynTP\SynTouchStykButton.wmv File C:\Program Files\Synaptics\SynTP\SynTouchStykSensitivity.wmv File C:\Program Files\Synaptics\SynTP\SynEdgeMotionDragging.wmv File C:\Program Files\Synaptics\SynTP\SynEdgeMotionFixedSpeed.wmv File C:\Program Files\Synaptics\SynTP\SynEdgeMotionPointing.wmv File C:\Program Files\Synaptics\SynTP\SynEdgeMotionPressure.wmv File C:\Program Files\Synaptics\SynTP\SynNoButtons.wmv File C:\Program Files\Synaptics\SynTP\SynTapZones.wmv File C:\Program Files\Synaptics\SynTP\SynLinearHScrolling.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerHScrolling.wmv File C:\Program Files\Synaptics\SynTP\SynTapHoldToDrag.wmv File C:\Program Files\Synaptics\SynTP\SynTapLockingDrag.wmv File C:\Program Files\Synaptics\SynTP\Syn1FingerClickNB.wmv File C:\Program Files\Synaptics\SynTP\Syn1FingerClickDrag.wmv File C:\Program Files\Synaptics\SynTP\Syn1FingerClickDragNB.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerClickDrag.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerFlickNB.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerFlickLR.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerHScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FingerFlickNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FingerPressNB.wmv File C:\Program Files\Synaptics\SynTP\Syn4FingerFlickNB.wmv File C:\Program Files\Synaptics\SynTP\SynButtonsNB.wmv File C:\Program Files\Synaptics\SynTP\SynChiralRotateNB.wmv File C:\Program Files\Synaptics\SynTP\SynChiralScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\SynCoastingScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\SynCoverGestureNB.wmv File C:\Program Files\Synaptics\SynTP\SynEdgeMotionDraggingNB.wmv File C:\Program Files\Synaptics\SynTP\SynEdgeMotionFixedSpeedNB.wmv File C:\Program Files\Synaptics\SynTP\SynEdgeMotionPointingNB.wmv File C:\Program Files\Synaptics\SynTP\SynEdgeMotionPressureNB.wmv File C:\Program Files\Synaptics\SynTP\SynLinearHScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\SynMomentumScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\SynPinchZoomNB.wmv File C:\Program Files\Synaptics\SynTP\SynPivotRotateNB.wmv File C:\Program Files\Synaptics\SynTP\SynTapHoldToDragNB.wmv File C:\Program Files\Synaptics\SynTP\SynTapLockingDragNB.wmv File C:\Program Files\Synaptics\SynTP\SynTwistRotateNB.wmv File C:\Program Files\Synaptics\SynTP\SynPointingNB.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerMomentumVHScrolling.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerMomentumVHScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerMomentumVScrolling_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerMomentumVScrollingNB_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerMomentumHScrolling_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerMomentumHScrollingNB_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerVHCoasting.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerVHCoastingNB.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerVCoasting_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerHCoasting_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerVCoastingNB_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerHCoastingNB_win8.wmv File C:\Program Files\Synaptics\SynTP\SynMomentumVHScrolling.wmv File C:\Program Files\Synaptics\SynTP\SynMomentumVHScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\SynVHCoasting.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerHScrolling_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerHScrollingNB_win8.wmv File C:\Program Files\Synaptics\SynTP\SynChiralScrolling_win8.wmv File C:\Program Files\Synaptics\SynTP\SynChiralScrollingNB_win8.wmv File C:\Program Files\Synaptics\SynTP\SynLinearHScrolling_win8.wmv File C:\Program Files\Synaptics\SynTP\SynLinearHScrollingNB_win8.wmv File C:\Program Files\Synaptics\SynTP\SynLinearScrolling_win8.wmv File C:\Program Files\Synaptics\SynTP\SynLinearScrollingNB_win8.wmv File C:\Program Files\Synaptics\SynTP\SynPivotRotate_win8.wmv File C:\Program Files\Synaptics\SynTP\SynPivotRotateNB_win8.wmv File C:\Program Files\Synaptics\SynTP\SynTwistRotate_win8.wmv File C:\Program Files\Synaptics\SynTP\SynTwistRotateNB_win8.wmv File C:\Program Files\Synaptics\SynTP\SynEdgePulls.wmv File C:\Program Files\Synaptics\SynTP\Syn4FingerFlick_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn4FingerFlickNB_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerScrolling.html File C:\Program Files\Synaptics\SynTP\Syn2FingerFlick.html File C:\Program Files\Synaptics\SynTP\Syn3FingerFlick.html File C:\Program Files\Synaptics\SynTP\Syn4FingerFlick.html File C:\Program Files\Synaptics\SynTP\Syn4FingerFlickUpDown.html File C:\Program Files\Synaptics\SynTP\Syn4FingerFlickLeftRight.html File C:\Program Files\Synaptics\SynTP\Syn3FingerPress.html File C:\Program Files\Synaptics\SynTP\SynEdgeMotion.html File C:\Program Files\Synaptics\SynTP\SynMomentum.html File C:\Program Files\Synaptics\SynTP\SynPinchZoom.html File C:\Program Files\Synaptics\SynTP\SynRotating.html File C:\Program Files\Synaptics\SynTP\SynTwistRotate.html File C:\Program Files\Synaptics\SynTP\SynCoverGesture.html File C:\Program Files\Synaptics\SynTP\SynAccessibility.html File C:\Program Files\Synaptics\SynTP\SynSmartSense.html File C:\Program Files\Synaptics\SynTP\SynButtons.html File C:\Program Files\Synaptics\SynTP\SynClicking.html File C:\Program Files\Synaptics\SynTP\SynMultiFingerGestures.html File C:\Program Files\Synaptics\SynTP\SynPalmCheck.html File C:\Program Files\Synaptics\SynTP\SynPointing.html File C:\Program Files\Synaptics\SynTP\SynScrolling.html File C:\Program Files\Synaptics\SynTP\SynSensitivity.html File C:\Program Files\Synaptics\SynTP\SynTapping.html File C:\Program Files\Synaptics\SynTP\SynTouchStykButton.html File C:\Program Files\Synaptics\SynTP\SynTouchStykSelect.html File C:\Program Files\Synaptics\SynTP\SynTouchStykSensitivity.html File C:\Program Files\Synaptics\SynTP\SynScrollingVertical.html File C:\Program Files\Synaptics\SynTP\SynScrollingHorizontal.html File C:\Program Files\Synaptics\SynTP\SynScrollingChiral.html File C:\Program Files\Synaptics\SynTP\SynLockingDrags.html File C:\Program Files\Synaptics\SynTP\SynEdgePulls.html File C:\Program Files\Synaptics\SynTP\Syn3FingerTapping.html File C:\Program Files\Synaptics\SynTP\Syn2FingerScrolling_win8.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerScrollingNB_win8.wmv File C:\Program Files\Synaptics\SynTP\SynTappingNB.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerRightClickNB.wmv File C:\Program Files\Synaptics\SynTP\SynVHCoastingNB.wmv File C:\Program Files\Synaptics\SynTP\SynEdgePullsNB.wmv File C:\Program Files\Synaptics\SynTP\SynPalmCheckNB.wmv File C:\Program Files\Synaptics\SynTP\SynLinearScrollingNB.wmv File C:\Program Files\Synaptics\SynTP\SynSensitivityNB.wmv File C:\Program Files\Synaptics\SynTP\SynMomentumNB.wmv File C:\Program Files\Synaptics\SynTP\SynTapZonesNB.wmv File C:\Program Files\Synaptics\SynTP\SynTapZonesNB_win8.wmv File C:\Program Files\Synaptics\SynTP\SynEdgeMotionNB.wmv File C:\Program Files\Synaptics\SynTP\SynSlowMotionNB.wmv File C:\Program Files\Synaptics\SynTP\SynConstrainedMotionNB.wmv File C:\Program Files\Synaptics\SynTP\SynWindowConstrainedNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FHSlide.wmv File C:\Program Files\Synaptics\SynTP\Syn3FHSlideNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FTapActionCenter.wmv File C:\Program Files\Synaptics\SynTP\Syn3FTapActionCenterNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FTapCortana.wmv File C:\Program Files\Synaptics\SynTP\Syn3FTapCortanaNB.wmv File C:\Program Files\Synaptics\SynTP\Syn4FTapActionCenter.wmv File C:\Program Files\Synaptics\SynTP\Syn4FTapActionCenterNB.wmv File C:\Program Files\Synaptics\SynTP\Syn4FTapCortana.wmv File C:\Program Files\Synaptics\SynTP\Syn4FTapCortanaNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FClickActionCenterNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FClickCortanaNB.wmv File C:\Program Files\Synaptics\SynTP\Syn4FClickActionCenterNB.wmv File C:\Program Files\Synaptics\SynTP\Syn4FClickCortanaNB.wmv File C:\Program Files\Synaptics\SynTP\Syn3FVSlide.wmv File C:\Program Files\Synaptics\SynTP\Syn3FVSlideNB.wmv File C:\Program Files\Synaptics\SynTP\dpinst.exe File C:\Program Files\Synaptics\SynTP\SynSmbDrv.ini File C:\Program Files\Synaptics\SynTP\SynRMIHID.ini File C:\Program Files\Synaptics\SynTP\SynLinearVScroll.mpg File C:\Program Files\Synaptics\SynTP\SynWingGesture.wmv File C:\Program Files\Synaptics\SynTP\SynWingGesture.html File C:\Program Files\Synaptics\SynTP\Syn2FingerTappingNB.wmv File C:\Program Files\Synaptics\SynTP\Syn2FingerTapping.html File C:\Program Files\Synaptics\SynTP\Syn4FingerTapping.html File C:\Program Files\Synaptics\SynTP\Ckp2FingerScrolling.mpg File C:\Program Files\Synaptics\SynTP\Ckp3FingerDown.mpg File C:\Program Files\Synaptics\SynTP\Ckp3FingerFlick.mpg File C:\Program Files\Synaptics\SynTP\CkpChiralMotion.mpg File C:\Program Files\Synaptics\SynTP\CkpClickDrag.mpg File C:\Program Files\Synaptics\SynTP\CkpLinearScroll.mpg File C:\Program Files\Synaptics\SynTP\CkpLRClick.mpg File C:\Program Files\Synaptics\SynTP\CkpMomentum.mpg File C:\Program Files\Synaptics\SynTP\CkpPinch.mpg File C:\Program Files\Synaptics\SynTP\CkpPivotRotate.mpg File C:\Program Files\Synaptics\SynTP\CkpPivotRotate2.mpg File C:\Program Files\Synaptics\SynTP\CkpTouchpadDisable.mpg File C:\WINDOWS\SysWOW64\SynCom.dll File C:\WINDOWS\system32\DRIVERS\mouclass.sys File C:\WINDOWS\system32\DRIVERS\i8042prt.sys File C:\WINDOWS\system32\SynTPCo59.dll File C:\WINDOWS\system32\WdfCoInstaller01011.dll HID-compliant mouse Device Kind Mouse Device Name HID-compliant mouse Location USB Input Device Driver Date 6-21-2006 Version 10.0.17134.1 File C:\WINDOWS\system32\DRIVERS\mouhid.sys File C:\WINDOWS\system32\DRIVERS\mouclass.sys Printers Fax Printer Port SHRFAX: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 200 * 200 dpi Monochrome Status Unknown Driver Driver Name Microsoft Shared Fax Driver (v4.00) Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\FXSDRV.DLL HP ePrint (Default Printer) Printer Port LPT1: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 4294967294 dpi Color Status Unknown Driver Driver Name HP ePrint (v1.04) Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\mxdwdrv.dll Microsoft Print to PDF Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft Print To PDF (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_d174002f2f9e1a17\Amd64\mxdwdrv.dll Microsoft XPS Document Writer Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft XPS Document Writer v4 (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_d174002f2f9e1a17\Amd64\mxdwdrv.dll Network You are connected to the internet Connected through Intel Dual Band Wireless-AC 3165 IP Address 10.1.1.160 Subnet mask 255.255.255.0 Gateway server 10.1.1.1 Preferred DNS server 10.1.1.1 DHCP Enabled DHCP server 10.1.1.1 External IP Address 14.2.39.231 Adapter Type IEEE 802.11 wireless NetBIOS over TCP/IP Enabled via DHCP NETBIOS Node Type Hybrid node Link Speed 0 Bps Computer Name NetBIOS Name DESKTOP-BBQIE4L DNS Name DESKTOP-BBQIE4L Membership Part of workgroup Workgroup WORKGROUP Remote Desktop Disabled Console State Active Domain DESKTOP-BBQIE4L WinInet Info LAN Connection Local system uses a local area network to connect to the Internet Local system has RAS to connect to the Internet Wi-Fi Info Using native Wi-Fi API version 2 Available access points count 3 Wi-Fi (This_is_also_sparta) SSID This_is_also_sparta Frequency 5785000 kHz Channel Number 157 Name This_is_also_sparta Signal Strength/Quality 95 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags Currently Connected to this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (This_is_sparta) SSID This_is_sparta Frequency 2462000 kHz Channel Number 11 Name This_is_sparta Signal Strength/Quality 41 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (ihaapha_2.4G) SSID ihaapha_2.4G Frequency 2437000 kHz Channel Number 6 Name ihaapha_2.4G Signal Strength/Quality 23 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK WinHTTPInfo WinHTTPSessionProxyType No proxy Session Proxy Session Proxy Bypass Connect Retries 5 Connect Timeout (ms) 60,000 HTTP Version HTTP 1.1 Max Connects Per 1.0 Servers INFINITE Max Connects Per Servers INFINITE Max HTTP automatic redirects 10 Max HTTP status continue 10 Send Timeout (ms) 30,000 IEProxy Auto Detect Yes IEProxy Auto Config IEProxy IEProxy Bypass Default Proxy Config Access Type No proxy Default Config Proxy Default Config Proxy Bypass Sharing and Discovery Network Discovery Disabled File and Printer Sharing Disabled File and printer sharing service Enabled Simple File Sharing Enabled Administrative Shares Enabled Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Adapters List Enabled Intel(R) Dual Band Wireless-AC 3165 Connection-specific DNS Suffix lan Connection Name Wi-Fi NetBIOS over TCPIP Yes DHCP enabled Yes MAC Address DC-53-60-7C-3A-AD IP Address 10.1.1.160 Subnet mask 255.255.255.0 Gateway server 10.1.1.1 DHCP 10.1.1.1 DNS Server 10.1.1.1 Realtek PCIe FE Family Controller #2 Connection Name Ethernet 2 DHCP enabled Yes MAC Address B0-5A-DA-DE-18-6A Network Shares No network shares Current TCP Connections C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe (7832) Local 10.1.1.160:52709 ESTABLISHED Remote 54.210.203.204:443 (Querying... ) (HTTPS) Local 10.1.1.160:51853 ESTABLISHED Remote 34.232.1.38:5222 (Querying... ) Local 10.1.1.160:52124 LAST-ACK Remote 52.2.103.56:80 (Querying... ) (HTTP) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2008) Local 10.1.1.160:51782 ESTABLISHED Remote 74.125.204.188:5228 (Querying... ) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.10228.20127.0_x64__8wekyb3d8bbwe\HxTsr.exe (4924) Local 10.1.1.160:52599 ESTABLISHED Remote 40.100.149.226:443 (Querying... ) (HTTPS) Local 10.1.1.160:52591 ESTABLISHED Remote 40.100.149.226:443 (Querying... ) (HTTPS) C:\Users\the_mckees\AppData\Local\Microsoft\OneDrive\OneDrive.exe (6536) Local 10.1.1.160:51854 ESTABLISHED Remote 52.230.83.250:443 (Querying... ) (HTTPS) C:\Users\the_mckees\AppData\Roaming\Spotify\Spotify.exe (7776) Local 127.0.0.1:4381 LISTEN C:\Users\the_mckees\AppData\Roaming\Spotify\SpotifyWebHelper.exe (6800) Local 127.0.0.1:4380 LISTEN C:\Windows\System32\backgroundTaskHost.exe (9444) Local 10.1.1.160:52122 ESTABLISHED Remote 52.229.207.60:443 (Querying... ) (HTTPS) Local 10.1.1.160:52621 ESTABLISHED Remote 13.75.122.216:443 (Querying... ) (HTTPS) C:\Windows\System32\browser_broker.exe (7004) Local 10.1.1.160:52721 ESTABLISHED Remote 117.18.232.200:443 (Querying... ) (HTTPS) C:\Windows\System32\smartscreen.exe (6168) Local 10.1.1.160:52617 ESTABLISHED Remote 23.37.139.27:80 (Querying... ) (HTTP) C:\Windows\System32\svchost.exe (1056) Local 10.1.1.160:52217 ESTABLISHED Remote 23.53.239.186:80 (Querying... ) (HTTP) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (6700) Local 10.1.1.160:52716 ESTABLISHED Remote 40.113.0.39:443 (Querying... ) (HTTPS) Local 10.1.1.160:52717 ESTABLISHED Remote 40.113.0.39:443 (Querying... ) (HTTPS) Local 127.0.0.1:52720 SYN-SENT Remote 127.127.127.127:3939 (Querying... ) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe (2044) Local 10.1.1.160:52715 ESTABLISHED Remote 204.79.197.222:443 (Querying... ) (HTTPS) Local 10.1.1.160:52714 ESTABLISHED Remote 52.98.0.146:443 (Querying... ) (HTTPS) Local 10.1.1.160:51949 CLOSE-WAIT Remote 23.38.251.21:443 (Querying... ) (HTTPS) Local 10.1.1.160:51950 CLOSE-WAIT Remote 23.38.251.21:443 (Querying... ) (HTTPS) Local 10.1.1.160:52713 ESTABLISHED Remote 13.107.246.254:443 (Querying... ) (HTTPS) Local 10.1.1.160:52712 ESTABLISHED Remote 13.107.42.254:443 (Querying... ) (HTTPS) lsass.exe (940) Local 0.0.0.0:49691 LISTEN mDNSResponder.exe (2520) Local 127.0.0.1:5354 LISTEN ProductAgentService.exe (2728) Local 10.1.1.160:51734 ESTABLISHED Remote 81.161.59.96:80 (Querying... ) (HTTP) Local 127.0.0.1:51660 ESTABLISHED Remote 127.0.0.1:51661 (Querying... ) Local 127.0.0.1:51661 ESTABLISHED Remote 127.0.0.1:51660 (Querying... ) Local 127.0.0.1:51738 ESTABLISHED Remote 127.0.0.1:51739 (Querying... ) Local 127.0.0.1:51739 ESTABLISHED Remote 127.0.0.1:51738 (Querying... ) rpdsvc.exe (7128) Local 127.0.0.1:49956 ESTABLISHED Remote 127.0.0.1:49957 (Querying... ) Local 127.0.0.1:49957 ESTABLISHED Remote 127.0.0.1:49956 (Querying... ) Local 127.0.0.1:49958 ESTABLISHED Remote 127.0.0.1:49959 (Querying... ) Local 127.0.0.1:49959 ESTABLISHED Remote 127.0.0.1:49958 (Querying... ) Local 0.0.0.0:20121 LISTEN Local 127.0.0.1:49965 ESTABLISHED Remote 127.0.0.1:49964 (Querying... ) Local 127.0.0.1:49961 ESTABLISHED Remote 127.0.0.1:49960 (Querying... ) Local 127.0.0.1:49962 ESTABLISHED Remote 127.0.0.1:49963 (Querying... ) Local 127.0.0.1:49963 ESTABLISHED Remote 127.0.0.1:49962 (Querying... ) Local 127.0.0.1:49964 ESTABLISHED Remote 127.0.0.1:49965 (Querying... ) Local 127.0.0.1:49955 ESTABLISHED Remote 127.0.0.1:49954 (Querying... ) Local 127.0.0.1:49952 ESTABLISHED Remote 127.0.0.1:49953 (Querying... ) Local 127.0.0.1:49953 ESTABLISHED Remote 127.0.0.1:49952 (Querying... ) Local 127.0.0.1:49954 ESTABLISHED Remote 127.0.0.1:49955 (Querying... ) Local 127.0.0.1:49960 ESTABLISHED Remote 127.0.0.1:49961 (Querying... ) services.exe (880) Local 0.0.0.0:49680 LISTEN spoolsv.exe (2400) Local 0.0.0.0:49667 LISTEN svchost.exe (1044) Local 0.0.0.0:135 (DCE) LISTEN svchost.exe (1232) Local 0.0.0.0:49666 LISTEN Local 10.1.1.160:51639 ESTABLISHED Remote 52.230.83.250:443 (Querying... ) (HTTPS) svchost.exe (1324) Local 0.0.0.0:49665 LISTEN svchost.exe (1508) Local 0.0.0.0:5040 LISTEN System Process Local 10.1.1.160:52139 TIME-WAIT Remote 117.18.237.29:80 (Querying... ) (HTTP) Local 10.1.1.160:52650 TIME-WAIT Remote 54.88.133.2:443 (Querying... ) (HTTPS) Local 10.1.1.160:52653 TIME-WAIT Remote 54.88.133.2:443 (Querying... ) (HTTPS) Local 10.1.1.160:52661 TIME-WAIT Remote 23.23.143.172:443 (Querying... ) (HTTPS) Local 10.1.1.160:52671 TIME-WAIT Remote 68.67.179.23:443 (Querying... ) (HTTPS) Local 10.1.1.160:52672 TIME-WAIT Remote 35.156.214.8:443 (Querying... ) (HTTPS) Local 10.1.1.160:52678 TIME-WAIT Remote 204.2.197.204:443 (Querying... ) (HTTPS) Local 10.1.1.160:52679 TIME-WAIT Remote 204.2.197.204:443 (Querying... ) (HTTPS) Local 10.1.1.160:52680 TIME-WAIT Remote 204.2.197.204:443 (Querying... ) (HTTPS) Local 10.1.1.160:52681 TIME-WAIT Remote 66.117.25.36:443 (Querying... ) (HTTPS) Local 10.1.1.160:52682 TIME-WAIT Remote 66.117.25.36:443 (Querying... ) (HTTPS) Local 10.1.1.160:52683 TIME-WAIT Remote 66.117.25.36:443 (Querying... ) (HTTPS) Local 10.1.1.160:52689 TIME-WAIT Remote 149.174.66.131:443 (Querying... ) (HTTPS) Local 10.1.1.160:52690 TIME-WAIT Remote 149.174.66.131:443 (Querying... ) (HTTPS) Local 10.1.1.160:52691 TIME-WAIT Remote 149.174.66.131:443 (Querying... ) (HTTPS) Local 10.1.1.160:52698 TIME-WAIT Remote 52.194.114.177:443 (Querying... ) (HTTPS) Local 10.1.1.160:52702 TIME-WAIT Remote 149.174.66.131:443 (Querying... ) (HTTPS) Local 10.1.1.160:52703 TIME-WAIT Remote 167.114.0.225:443 (Querying... ) (HTTPS) Local 10.1.1.160:52120 TIME-WAIT Remote 52.229.207.60:443 (Querying... ) (HTTPS) Local 10.1.1.160:52121 TIME-WAIT Remote 52.229.207.60:443 (Querying... ) (HTTPS) Local 10.1.1.160:52704 TIME-WAIT Remote 204.2.197.204:443 (Querying... ) (HTTPS) Local 10.1.1.160:52123 TIME-WAIT Remote 52.229.207.60:443 (Querying... ) (HTTPS) Local 10.1.1.160:52705 TIME-WAIT Remote 52.207.145.163:443 (Querying... ) (HTTPS) Local 10.1.1.160:52524 TIME-WAIT Remote 103.243.221.87:443 (Querying... ) (HTTPS) Local 10.1.1.160:52140 TIME-WAIT Remote 117.18.237.29:80 (Querying... ) (HTTP) Local 10.1.1.160:52141 TIME-WAIT Remote 117.18.237.29:80 (Querying... ) (HTTP) Local 10.1.1.160:52142 TIME-WAIT Remote 117.18.237.29:80 (Querying... ) (HTTP) Local 10.1.1.160:52161 TIME-WAIT Remote 184.51.124.27:80 (Querying... ) (HTTP) Local 10.1.1.160:52215 TIME-WAIT Remote 52.192.233.164:443 (Querying... ) (HTTPS) Local 10.1.1.160:52706 TIME-WAIT Remote 54.95.194.252:443 (Querying... ) (HTTPS) Local 10.1.1.160:52317 TIME-WAIT Remote 117.18.237.29:80 (Querying... ) (HTTP) Local 10.1.1.160:52320 TIME-WAIT Remote 117.18.237.29:80 (Querying... ) (HTTP) Local 10.1.1.160:52381 TIME-WAIT Remote 23.37.139.27:80 (Querying... ) (HTTP) Local 10.1.1.160:52382 TIME-WAIT Remote 23.37.139.27:80 (Querying... ) (HTTP) Local 10.1.1.160:52446 TIME-WAIT Remote 117.18.237.29:80 (Querying... ) (HTTP) Local 10.1.1.160:52447 TIME-WAIT Remote 117.18.237.29:80 (Querying... ) (HTTP) Local 10.1.1.160:52484 TIME-WAIT Remote 107.178.254.65:443 (Querying... ) (HTTPS) Local 10.1.1.160:52492 TIME-WAIT Remote 147.75.43.132:443 (Querying... ) (HTTPS) Local 10.1.1.160:52510 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52511 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52512 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52516 TIME-WAIT Remote 34.196.78.94:443 (Querying... ) (HTTPS) Local 10.1.1.160:52518 TIME-WAIT Remote 52.84.206.131:443 (Querying... ) (HTTPS) Local 10.1.1.160:52519 TIME-WAIT Remote 52.84.206.131:443 (Querying... ) (HTTPS) Local 10.1.1.160:52520 TIME-WAIT Remote 104.36.113.23:443 (Querying... ) (HTTPS) Local 10.1.1.160:52523 TIME-WAIT Remote 104.36.113.23:443 (Querying... ) (HTTPS) Local 10.1.1.160:52707 TIME-WAIT Remote 54.246.129.36:443 (Querying... ) (HTTPS) Local 10.1.1.160:52525 TIME-WAIT Remote 192.229.232.81:443 (Querying... ) (HTTPS) Local 10.1.1.160:52528 TIME-WAIT Remote 13.228.60.11:443 (Querying... ) (HTTPS) Local 10.1.1.160:52530 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52532 TIME-WAIT Remote 173.241.248.143:443 (Querying... ) (HTTPS) Local 10.1.1.160:52535 TIME-WAIT Remote 63.251.88.56:443 (Querying... ) (HTTPS) Local 10.1.1.160:52537 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52538 TIME-WAIT Remote 52.207.127.82:443 (Querying... ) (HTTPS) Local 10.1.1.160:52541 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52542 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52543 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52544 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52545 TIME-WAIT Remote 103.231.98.244:443 (Querying... ) (HTTPS) Local 10.1.1.160:52549 TIME-WAIT Remote 52.84.206.57:443 (Querying... ) (HTTPS) Local 10.1.1.160:52550 TIME-WAIT Remote 52.84.206.57:443 (Querying... ) (HTTPS) Local 10.1.1.160:52551 TIME-WAIT Remote 52.84.206.57:443 (Querying... ) (HTTPS) Local 10.1.1.160:52552 TIME-WAIT Remote 52.84.206.57:443 (Querying... ) (HTTPS) Local 10.1.1.160:52553 TIME-WAIT Remote 52.84.206.161:443 (Querying... ) (HTTPS) Local 10.1.1.160:52554 TIME-WAIT Remote 52.84.206.70:443 (Querying... ) (HTTPS) Local 10.1.1.160:52555 TIME-WAIT Remote 52.84.206.70:443 (Querying... ) (HTTPS) Local 10.1.1.160:52556 TIME-WAIT Remote 52.84.206.70:443 (Querying... ) (HTTPS) Local 10.1.1.160:52557 TIME-WAIT Remote 52.84.206.70:443 (Querying... ) (HTTPS) Local 10.1.1.160:52558 TIME-WAIT Remote 13.236.112.29:443 (Querying... ) (HTTPS) Local 10.1.1.160:52560 TIME-WAIT Remote 52.84.206.161:443 (Querying... ) (HTTPS) Local 10.1.1.160:52708 TIME-WAIT Remote 52.114.7.37:443 (Querying... ) (HTTPS) Local 10.1.1.160:52710 TIME-WAIT Remote 52.114.7.37:443 (Querying... ) (HTTPS) Local 10.1.1.160:52563 TIME-WAIT Remote 52.196.182.51:443 (Querying... ) (HTTPS) Local 10.1.1.160:52564 TIME-WAIT Remote 52.196.8.153:443 (Querying... ) (HTTPS) Local 10.1.1.160:52565 TIME-WAIT Remote 23.21.62.227:443 (Querying... ) (HTTPS) Local 10.1.1.160:52566 TIME-WAIT Remote 52.193.88.8:443 (Querying... ) (HTTPS) Local 10.1.1.160:52571 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52573 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52576 TIME-WAIT Remote 69.16.175.42:443 (Querying... ) (HTTPS) Local 10.1.1.160:52577 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52578 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52579 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52580 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52589 TIME-WAIT Remote 205.185.208.139:443 (Querying... ) (HTTPS) Local 127.0.0.1:20121 TIME-WAIT Remote 127.0.0.1:52252 (Querying... ) Local 10.1.1.160:52595 TIME-WAIT Remote 192.229.232.81:443 (Querying... ) (HTTPS) Local 10.1.1.160:52596 TIME-WAIT Remote 192.229.232.81:443 (Querying... ) (HTTPS) Local 10.1.1.160:52597 TIME-WAIT Remote 192.229.232.81:443 (Querying... ) (HTTPS) Local 10.1.1.160:52598 TIME-WAIT Remote 159.127.41.190:443 (Querying... ) (HTTPS) Local 127.0.0.1:20121 TIME-WAIT Remote 127.0.0.1:52615 (Querying... ) Local 10.1.1.160:52601 TIME-WAIT Remote 192.229.232.81:443 (Querying... ) (HTTPS) Local 10.1.1.160:52602 TIME-WAIT Remote 34.233.208.109:443 (Querying... ) (HTTPS) Local 10.1.1.160:52604 TIME-WAIT Remote 104.36.113.23:443 (Querying... ) (HTTPS) Local 10.1.1.160:52607 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52608 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52609 TIME-WAIT Remote 204.11.109.66:443 (Querying... ) (HTTPS) Local 10.1.1.160:52611 TIME-WAIT Remote 64.233.184.94:443 (Querying... ) (HTTPS) Local 10.1.1.160:52612 TIME-WAIT Remote 192.229.232.81:443 (Querying... ) (HTTPS) Local 10.1.1.160:52614 TIME-WAIT Remote 192.229.232.81:443 (Querying... ) (HTTPS) Local 10.1.1.160:52616 TIME-WAIT Remote 184.51.124.29:80 (Querying... ) (HTTP) Local 10.1.1.160:52619 TIME-WAIT Remote 52.114.132.21:443 (Querying... ) (HTTPS) Local 10.1.1.160:52620 TIME-WAIT Remote 52.114.132.21:443 (Querying... ) (HTTPS) Local 10.1.1.160:52622 TIME-WAIT Remote 52.114.132.21:443 (Querying... ) (HTTPS) Local 10.1.1.160:52623 TIME-WAIT Remote 52.114.132.21:443 (Querying... ) (HTTPS) Local 10.1.1.160:52625 TIME-WAIT Remote 168.1.4.148:443 (Querying... ) (HTTPS) Local 10.1.1.160:52631 TIME-WAIT Remote 192.229.232.81:443 (Querying... ) (HTTPS) Local 10.1.1.160:52632 TIME-WAIT Remote 52.73.189.24:443 (Querying... ) (HTTPS) Local 10.1.1.160:52638 TIME-WAIT Remote 172.64.162.8:443 (Querying... ) (HTTPS) Local 10.1.1.160:52641 TIME-WAIT Remote 103.243.221.51:443 (Querying... ) (HTTPS) Local 10.1.1.160:52642 TIME-WAIT Remote 103.243.221.51:443 (Querying... ) (HTTPS) Local 10.1.1.160:52643 TIME-WAIT Remote 103.243.221.51:443 (Querying... ) (HTTPS) Local 10.1.1.160:52644 TIME-WAIT Remote 103.243.221.51:443 (Querying... ) (HTTPS) Local 10.1.1.160:52645 TIME-WAIT Remote 103.243.221.51:443 (Querying... ) (HTTPS) Local 10.1.1.160:52646 TIME-WAIT Remote 103.243.221.51:443 (Querying... ) (HTTPS) Local 10.1.1.160:52648 TIME-WAIT Remote 199.244.51.60:443 (Querying... ) (HTTPS) Local 10.1.1.160:52649 TIME-WAIT Remote 103.243.221.17:443 (Querying... ) (HTTPS) System Process Local 0.0.0.0:445 (Windows shares) LISTEN Local 10.1.1.160:139 (NetBIOS session service) LISTEN Local 127.127.127.127:3939 LISTEN Local 127.0.0.1:3939 LISTEN updatesrv.exe (2912) Local 127.0.0.1:51654 ESTABLISHED Remote 127.0.0.1:51656 (Querying... ) Local 127.0.0.1:51656 ESTABLISHED Remote 127.0.0.1:51654 (Querying... ) Local 127.0.0.1:51655 ESTABLISHED Remote 127.0.0.1:51657 (Querying... ) Local 127.0.0.1:51657 ESTABLISHED Remote 127.0.0.1:51655 (Querying... ) vsserv.exe (2932) Local 127.0.0.1:51574 ESTABLISHED Remote 127.0.0.1:51575 (Querying... ) Local 127.0.0.1:51575 ESTABLISHED Remote 127.0.0.1:51574 (Querying... ) Local 127.0.0.1:51584 ESTABLISHED Remote 127.0.0.1:51585 (Querying... ) Local 127.0.0.1:51585 ESTABLISHED Remote 127.0.0.1:51584 (Querying... ) Local 127.0.0.1:49884 ESTABLISHED Remote 127.0.0.1:49885 (Querying... ) Local 10.1.1.160:52562 ESTABLISHED Remote 52.192.244.219:443 (Querying... ) (HTTPS) Local 10.1.1.160:52561 ESTABLISHED Remote 52.193.15.171:443 (Querying... ) (HTTPS) Local 10.1.1.160:52718 ESTABLISHED Remote 104.18.24.243:80 (Querying... ) (HTTP) Local 10.1.1.160:52719 ESTABLISHED Remote 104.18.24.243:80 (Querying... ) (HTTP) Local 127.0.0.1:49885 ESTABLISHED Remote 127.0.0.1:49884 (Querying... ) vsservppl.exe (2972) Local 127.0.0.1:51572 ESTABLISHED Remote 127.0.0.1:51571 (Querying... ) Local 127.0.0.1:50840 ESTABLISHED Remote 127.0.0.1:50841 (Querying... ) Local 127.0.0.1:50841 ESTABLISHED Remote 127.0.0.1:50840 (Querying... ) Local 127.0.0.1:51571 ESTABLISHED Remote 127.0.0.1:51572 (Querying... ) wininit.exe (808) Local 0.0.0.0:49664 LISTEN Generated with Speccy v1.32.740