Summary Operating System Windows 10 Home 64-bit CPU Intel Core i5 @ 1.60GHz 46 °C Kaby Lake-U/Y 14nm Technology RAM 8.00GB Motherboard HP 832A (U3E1) Graphics Generic PnP Monitor (1366x768@60Hz) Intel UHD Graphics 620 (HP) Storage 931GB Western Digital WDC WD10JPVX-60JC3T1 (SATA ) 35 °C Optical Drives hp DVDRW GUE1N Audio Realtek High Definition Audio Operating System Windows 10 Home 64-bit Computer type: Notebook Installation Date: 8/7/2019 3:15:10 AM Serial Number: Windows Security Center User Account Control (UAC) Enabled Notify level 2 - Default Windows Update AutoUpdate Not configured Windows Defender Windows Defender Disabled Firewall Firewall Enabled Display Name Kaspersky Internet Security Antivirus Windows Defender Antivirus Disabled Virus Signature Database Up to date Malwarebytes Antivirus Enabled Virus Signature Database Up to date Kaspersky Internet Security Antivirus Enabled Virus Signature Database Up to date .NET Frameworks installed v4.8 Full v4.8 Client v3.5 SP1 v3.0 SP2 v2.0 SP2 Internet Explorer Version 11.418.18362.0 PowerShell Version 5.1.18362.1 Environment Variables USERPROFILE C:\Users\srone SystemRoot C:\WINDOWS User Variables OneDrive C:\Users\srone\OneDrive Path C:\Users\srone\AppData\Local\Microsoft\WindowsApps C:\Program Files\Intel\WiFi\bin\ C:\Program Files\Common Files\Intel\WirelessCommon\ TEMP C:\Users\srone\AppData\Local\Temp TMP C:\Users\srone\AppData\Local\Temp Machine Variables asl.log Destination=file ComSpec C:\WINDOWS\system32\cmd.exe DriverData C:\Windows\System32\Drivers\DriverData NUMBER_OF_PROCESSORS 8 OnlineServices Online Services OS Windows_NT Path C:\Program Files (x86)\Intel\Intel Management Engine Components\iCLS\ C:\Program Files\Intel\Intel Management Engine Components\iCLS\ C:\WINDOWS\system32 C:\WINDOWS C:\WINDOWS\System32\Wbem C:\WINDOWS\System32\WindowsPowerShell\v1.0\ C:\WINDOWS\System32\OpenSSH\ C:\Program Files (x86)\Intel\Intel Management Engine Components\DAL C:\Program Files\Intel\Intel Management Engine Components\DAL C:\Program Files (x86)\Intel\Intel Management Engine Components\IPT C:\Program Files\Intel\Intel Management Engine Components\IPT C:\Program Files\Intel\WiFi\bin\ C:\Program Files\Common Files\Intel\WirelessCommon\ PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC platformcode KV PROCESSOR_ARCHITECTURE AMD64 PROCESSOR_IDENTIFIER Intel64 Family 6 Model 142 Stepping 10, GenuineIntel PROCESSOR_LEVEL 6 PROCESSOR_REVISION 8e0a PSModulePath %ProgramFiles%\WindowsPowerShell\Modules C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules RegionCode NA TEMP C:\WINDOWS\TEMP TMP C:\WINDOWS\TEMP USERNAME SYSTEM windir C:\WINDOWS Battery AC Line Online Battery Charge % 100 % Battery State High Remaining Battery Time Unknown Power Profile Active power scheme HP Recommended Hibernation Enabled Turn Off Monitor after: (On AC Power) 10 min Turn Off Monitor after: (On Battery Power) 5 min Turn Off Hard Disk after: (On AC Power) 15 min Turn Off Hard Disk after: (On Battery Power) 3 min Suspend after: (On AC Power) 20 min Suspend after: (On Battery Power) 10 min Screen saver Disabled Uptime Current Session Current Time 11/11/2019 10:32:43 PM Current Uptime 774,416 sec (8 d, 23 h, 06 m, 56 s) Last Boot Time 11/3/2019 12:25:47 AM Services Running Adobe Acrobat Update Service Running Apple Mobile Device Service Running Application Host Helper Service Running Application Information Running AppX Deployment Service (AppXSVC) Running AVCTP service Running Background Intelligent Transfer Service Running Background Tasks Infrastructure Service Running Base Filtering Engine Running Bluetooth Audio Gateway Service Running Bluetooth Support Service Running Bonjour Service Running Capability Access Manager Service Running Client License Service (ClipSVC) Running Clipboard User Service_2e8dc1 Running CNG Key Isolation Running COM+ Event System Running Connected Devices Platform Service Running Connected Devices Platform User Service_2e8dc1 Running Connected User Experiences and Telemetry Running Contact Data_2e8dc1 Running CoreMessaging Running Credential Manager Running Cryptographic Services Running Data Sharing Service Running Data Usage Running DbxSvc Running DCOM Server Process Launcher Running Delivery Optimization Running Device Association Service Running DHCP Client Running Diagnostic Policy Service Running Diagnostic Service Host Running Diagnostic System Host Running Display Enhancement Service Running Display Policy Service Running Distributed Link Tracking Client Running DNS Client Running Function Discovery Provider Host Running Function Discovery Resource Publication Running Geolocation Service Running Group Policy Client Running HP CASL Framework Service Running HP Comm Recovery Running HP JumpStart Bridge Running HP Support Solutions Framework Service Running HPWMISVC Running IKE and AuthIP IPsec Keying Modules Running Intel Bluetooth Service Running Intel Content Protection HDCP Service Running Intel Content Protection HECI Service Running Intel Dynamic Application Loader Host Interface Service Running Intel Dynamic Platform and Thermal Framework service Running Intel HD Graphics Control Panel Service Running Intel Management and Security Application Local Management Service Running Intel PROSet/Wireless Event Log Running Intel PROSet/Wireless Registry Service Running Intel PROSet/Wireless Zero Configuration Service Running Intuit Update Service v4 Running IP Helper Running iPod Service Running IPsec Policy Agent Running Kaspersky Anti-Virus Service 19.0.0 Running Kaspersky Secure Connection Service 3.0.0 Running Local Session Manager Running Malwarebytes Service Running Microsoft Account Sign-in Assistant Running Microsoft Office Click-to-Run Service Running Microsoft Passport Running Microsoft Passport Container Running Microsoft Store Install Service Running Network Connection Broker Running Network List Service Running Network Location Awareness Running Network Store Interface Service Running Peer Networking Identity Manager Running Plug and Play Running Power Running Print Spooler Running PrintWorkflow_2e8dc1 Running Program Compatibility Assistant Service Running Quality Windows Audio Video Experience Running Realtek Audio Service Running Remote Procedure Call (RPC) Running RPC Endpoint Mapper Running Security Accounts Manager Running Security Center Running Server Running Shell Hardware Detection Running SSDP Discovery Running State Repository Service Running Storage Service Running Sync Host_2e8dc1 Running SynTPEnhService Running SysMain Running System Event Notification Service Running System Events Broker Running System Guard Runtime Monitor Broker Running Task Scheduler Running TCP/IP NetBIOS Helper Running Themes Running Time Broker Running Touch Keyboard and Handwriting Panel Service Running Update Orchestrator Service Running User Data Access_2e8dc1 Running User Data Storage_2e8dc1 Running User Manager Running User Profile Service Running Web Account Manager Running WildTangentHelper Running Windows Audio Running Windows Audio Endpoint Builder Running Windows Biometric Service Running Windows Connection Manager Running Windows Defender Firewall Running Windows Event Log Running Windows Font Cache Service Running Windows Image Acquisition (WIA) Running Windows License Manager Service Running Windows Management Instrumentation Running Windows Presentation Foundation Font Cache 3.0.0.0 Running Windows Push Notifications System Service Running Windows Push Notifications User Service_2e8dc1 Running Windows Search Running Windows Security Service Running Windows Update Running WinHTTP Web Proxy Auto-Discovery Service Running WLAN AutoConfig Running Workstation Stopped ActiveX Installer (AxInstSV) Stopped Adobe Active File Monitor V4 Stopped Agent Activation Runtime_2e8dc1 Stopped AllJoyn Router Service Stopped App Readiness Stopped Application Identity Stopped Application Layer Gateway Service Stopped ASP.NET State Service Stopped Auto Time Zone Updater Stopped BitLocker Drive Encryption Service Stopped Block Level Backup Engine Service Stopped Bluetooth User Support Service_2e8dc1 Stopped CaptureService_2e8dc1 Stopped Cellular Time Stopped Certificate Propagation Stopped COM+ System Application Stopped ConsentUX_2e8dc1 Stopped CredentialEnrollmentManagerUserSvc_2e8dc1 Stopped Device Install Service Stopped Device Management Enrollment Service Stopped Device Management Wireless Application Protocol (WAP) Push message Routing Service Stopped Device Setup Manager Stopped DeviceAssociationBroker_2e8dc1 Stopped DevicePicker_2e8dc1 Stopped DevicesFlow_2e8dc1 Stopped DevQuery Background Discovery Broker Stopped Diagnostic Execution Service Stopped Distributed Transaction Coordinator Stopped Downloaded Maps Manager Stopped Dropbox Update Service (dbupdate) Stopped Dropbox Update Service (dbupdatem) Stopped Embedded Mode Stopped Encrypting File System (EFS) Stopped Enterprise App Management Service Stopped Extensible Authentication Protocol Stopped Fax Stopped File History Service Stopped GameDVR and Broadcast User Service_2e8dc1 Stopped Google Chrome Elevation Service Stopped Google Update Service (gupdate) Stopped Google Update Service (gupdatem) Stopped GraphicsPerfSvc Stopped Human Interface Device Service Stopped HV Host Service Stopped Hyper-V Data Exchange Service Stopped Hyper-V Guest Service Interface Stopped Hyper-V Guest Shutdown Service Stopped Hyper-V Heartbeat Service Stopped Hyper-V PowerShell Direct Service Stopped Hyper-V Remote Desktop Virtualization Service Stopped Hyper-V Time Synchronization Service Stopped Hyper-V Volume Shadow Copy Requestor Stopped Intel Capability Licensing Service TCP IP Interface Stopped Intel TPM Provisioning Service Stopped Internet Connection Sharing (ICS) Stopped IP Translation Configuration Service Stopped klvssbridge64_19.0.0 Stopped KtmRm for Distributed Transaction Coordinator Stopped Language Experience Service Stopped Link-Layer Topology Discovery Mapper Stopped Local Profile Assistant Service Stopped MessagingService_2e8dc1 Stopped Microsoft Diagnostics Hub Standard Collector Service Stopped Microsoft iSCSI Initiator Service Stopped Microsoft Software Shadow Copy Provider Stopped Microsoft Storage Spaces SMP Stopped Microsoft Windows SMS Router Service. Stopped Natural Authentication Stopped Net.Tcp Port Sharing Service Stopped Netlogon Stopped Network Connected Devices Auto-Setup Stopped Network Connections Stopped Network Connectivity Assistant Stopped Network Setup Service Stopped Office Source Engine Stopped OpenSSH Authentication Agent Stopped Optimize drives Stopped Parental Controls Stopped Payments and NFC/SE Manager Start pending Peer Name Resolution Protocol Stopped Peer Networking Grouping Stopped Performance Counter DLL Host Stopped Performance Logs & Alerts Stopped Phone Service Stopped PNRP Machine Name Publication Service Stopped Portable Device Enumerator Service Stopped Printer Extensions and Notifications Stopped Problem Reports and Solutions Control Panel Support Stopped Radio Management Service Stopped Recommended Troubleshooting Service Stopped Remote Access Auto Connection Manager Stopped Remote Access Connection Manager Stopped Remote Desktop Configuration Stopped Remote Desktop Services Stopped Remote Desktop Services UserMode Port Redirector Stopped Remote Procedure Call (RPC) Locator Stopped Remote Registry Stopped Retail Demo Service Stopped Routing and Remote Access Stopped Secondary Logon Stopped Secure Socket Tunneling Protocol Service Stopped Sensor Data Service Stopped Sensor Monitoring Service Stopped Sensor Service Stopped Shared PC Account Manager Stopped Smart Card Stopped Smart Card Device Enumeration Service Stopped Smart Card Removal Policy Stopped SNMP Trap Stopped Software Protection Stopped Spatial Data Service Stopped Spot Verifier Stopped Still Image Acquisition Events Stopped Storage Tiers Management Stopped Telephony Stopped UPnP Device Host Stopped Virtual Disk Stopped Volume Shadow Copy Stopped Volumetric Audio Compositor Service Stopped W3C Logging Service Stopped WalletService Stopped WarpJITSvc Stopped WebClient Stopped Wi-Fi Direct Services Connection Manager Service Stopped Windows Backup Stopped Windows Camera Frame Server Stopped Windows Connect Now - Config Registrar Stopped Windows Defender Antivirus Network Inspection Service Stopped Windows Defender Antivirus Service Stopped Windows Encryption Provider Host Service Stopped Windows Error Reporting Service Stopped Windows Event Collector Stopped Windows Insider Service Stopped Windows Installer Stopped Windows Management Service Stopped Windows Media Player Network Sharing Service Stopped Windows Mobile Hotspot Service Stopped Windows Modules Installer Stopped Windows Perception Service Stopped Windows Perception Simulation Service Stopped Windows Process Activation Service Stopped Windows PushToInstall Service Stopped Windows Remote Management (WS-Management) Stopped Windows Time Stopped Windows Update Medic Service Stopped Wired AutoConfig Stopped Wireless PAN DHCP Server Stopped WMI Performance Adapter Stopped Work Folders Stopped WWAN AutoConfig Stopped Xbox Accessory Management Service Stopped Xbox Live Auth Manager Stopped Xbox Live Game Save Stopped Xbox Live Networking Service TimeZone TimeZone GMT -5:00 Hours Language English (United States) Location United States Format English (United States) Currency $ Date Format M/d/yyyy Time Format h:mm:ss tt Scheduler 11/11/2019 10:55 PM; GoogleUpdateTaskMachineUA 11/11/2019 11:09 PM; HPCustParticipation HP OfficeJet Pro 7740 series 11/11/2019 11:18 PM; DropboxUpdateTaskMachineUA 11/12/2019 3:50 AM; GarminUpdaterTask 11/12/2019 5:00 PM; Adobe Acrobat Update Task 11/12/2019 5:40 PM; OneDrive Standalone Update Task-S-1-5-21-2384352896-1203634740-2024044642-1001 11/12/2019 6:55 PM; GoogleUpdateTaskMachineCore 11/12/2019 10:18 PM; DropboxUpdateTaskMachineCore 11/13/2019 8:39 PM; HPCeeScheduleForsrone CCleanerSkipUAC HPAudioSwitch HPEA3JOBS HPJumpStartLaunch RTKCPL Hotfixes Installed 10/24/2019 2019-10 Windows Autopilot update for Windows 10 Version 1903 for x64-based systems (KB4523786) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 10/21/2019 HP Inc. - Firmware - 15.52.0.0 HP Inc. Firmware driver update released in March 2019 10/10/2019 2019-10 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1903 for x64 (KB4524100) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 10/10/2019 Windows Malicious Software Removal Tool x64 - October 2019 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 10/10/2019 2019-10 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4517389) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 10/4/2019 2019-09 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4524147) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 9/25/2019 9PG15829SHZ3-SynapticsIncorporated.SynHPConsumerDApp 9PG15829SHZ3-1152921505689079879 9/21/2019 Intel Corporation - HDC - 7/15/2019 12:00:00 AM - 16.8.3.1003 Intel Corporation HDC driver update released in July 2019 9/18/2019 HP - Printer - 5/29/2017 12:00:00 AM - 20.79.1.6686 HP Printer driver update released in May 2017 9/13/2019 2019-09 Security Update for Adobe Flash Player for Windows 10 Version 1903 for x64-based Systems (KB4516115) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 9/13/2019 2019-09 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1903 for x64 (KB4514359) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 9/13/2019 2019-09 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4515384) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 8/28/2019 HP Inc. - HIDClass - 7/29/2019 12:00:00 AM - 2.1.11.1 HP Inc. HIDClass driver update released in July 2019 8/26/2019 Synaptics - Mouse - 7/29/2019 12:00:00 AM - 19.5.35.47 Synaptics Mouse driver update released in July 2019 8/15/2019 Windows Malicious Software Removal Tool x64 - August 2019 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 8/15/2019 2019-08 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4512508) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 8/8/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.299.1495.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 8/8/2019 Update for Windows Defender Antivirus antimalware platform - KB4052623 (Version 4.18.1907.4) This package will update Windows Defender Antivirus antimalware platform’s components on the user machine. 8/7/2019 2019-07 Cumulative Update for .NET Framework 3.5, 4.8 for Windows 10 Version 1903 for x64 (KB4506991) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 8/7/2019 2019-06 Security Update for Adobe Flash Player for Windows 10 Version 1903 for x64-based Systems (KB4503308) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 8/7/2019 Realtek Semiconductor Corp. - MEDIA - 6/18/2019 12:00:00 AM - 6.0.8734.1 Realtek Semiconductor Corp. MEDIA driver update released in June 2019 8/7/2019 Intel Corporation - Display - 1/9/2019 12:00:00 AM - 25.20.100.6518 Intel Corporation Display driver update released in January 2019 8/7/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.299.1479.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 8/7/2019 Feature update to Windows 10, version 1903 Install the latest update for Windows 10: Windows 10, version 1903. Not Installed 8/8/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.299.1495.0) Installation Status Canceled Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. System Folders Application Data C:\ProgramData Cookies C:\Users\srone\AppData\Local\Microsoft\Windows\INetCookies Desktop C:\Users\srone\Desktop Documents C:\Users\Public\Documents Fonts C:\WINDOWS\Fonts Global Favorites C:\Users\srone\Favorites Internet History C:\Users\srone\AppData\Local\Microsoft\Windows\History Local Application Data C:\Users\srone\AppData\Local Music C:\Users\Public\Music Path for burning CD C:\Users\srone\AppData\Local\Microsoft\Windows\Burn\Burn Physical Desktop C:\Users\srone\Desktop Pictures C:\Users\Public\Pictures Program Files C:\Program Files Public Desktop C:\Users\Public\Desktop Start Menu C:\ProgramData\Microsoft\Windows\Start Menu Start Menu Programs C:\ProgramData\Microsoft\Windows\Start Menu\Programs Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Templates C:\ProgramData\Microsoft\Windows\Templates Temporary Internet Files C:\Users\srone\AppData\Local\Microsoft\Windows\INetCache User Favorites C:\Users\srone\Favorites Videos C:\Users\Public\Videos Windows Directory C:\WINDOWS Windows/System C:\WINDOWS\system32 Process List apdproxy.exe Process ID 13520 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\Adobe\Photoshop Elements 4.0\apdproxy.exe Memory Usage 1.94 MB Peak Memory Usage 8.66 MB AppleMobileDeviceService.exe Process ID 4056 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe Memory Usage 3.22 MB Peak Memory Usage 13 MB ApplicationFrameHost.exe Process ID 9860 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\ApplicationFrameHost.exe Memory Usage 29 MB Peak Memory Usage 33 MB AppVShNotify.exe Process ID 14916 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe Memory Usage 2.03 MB Peak Memory Usage 7.92 MB AppVShNotify.exe Process ID 9484 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe Memory Usage 2.43 MB Peak Memory Usage 8.06 MB armsvc.exe Process ID 4048 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe Memory Usage 1.68 MB Peak Memory Usage 6.87 MB audiodg.exe Process ID 11200 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\audiodg.exe Memory Usage 28 MB Peak Memory Usage 30 MB avp.exe Process ID 3484 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\avp.exe Memory Usage 216 MB Peak Memory Usage 460 MB avpui.exe Process ID 10116 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\avpui.exe Memory Usage 18 MB Peak Memory Usage 112 MB browser_broker.exe Process ID 11508 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\browser_broker.exe Memory Usage 6.19 MB Peak Memory Usage 8.43 MB CCleaner64.exe Process ID 10628 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\CCleaner\CCleaner64.exe Memory Usage 19 MB Peak Memory Usage 33 MB CefSharp.BrowserSubprocess.exe Process ID 13956 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\Garmin\Express\CefSharp.BrowserSubprocess.exe Memory Usage 4.20 MB Peak Memory Usage 62 MB CompPkgSrv.exe Process ID 7652 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\CompPkgSrv.exe Memory Usage 4.41 MB Peak Memory Usage 8.59 MB csrss.exe Process ID 932 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 4.13 MB Peak Memory Usage 11 MB csrss.exe Process ID 824 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 2.45 MB Peak Memory Usage 5.70 MB ctfmon.exe Process ID 9056 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\ctfmon.exe Memory Usage 12 MB Peak Memory Usage 14 MB dasHost.exe Process ID 2864 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\dasHost.exe Memory Usage 13 MB Peak Memory Usage 18 MB DbxSvc.exe Process ID 3092 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\DbxSvc.exe Memory Usage 1.33 MB Peak Memory Usage 6.51 MB dllhost.exe Process ID 16748 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\dllhost.exe Memory Usage 12 MB Peak Memory Usage 13 MB dllhost.exe Process ID 19980 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\dllhost.exe Memory Usage 7.41 MB Peak Memory Usage 12 MB dllhost.exe Process ID 6200 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\dllhost.exe Memory Usage 4.64 MB Peak Memory Usage 11 MB dptf_helper.exe Process ID 3148 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\Intel\DPTF\dptf_helper.exe Memory Usage 1.53 MB Peak Memory Usage 4.74 MB Dropbox.exe Process ID 13596 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\Dropbox\Client\Dropbox.exe Memory Usage 73 MB Peak Memory Usage 218 MB Dropbox.exe Process ID 13648 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\Dropbox\Client\Dropbox.exe Memory Usage 2.30 MB Peak Memory Usage 8.38 MB Dropbox.exe Process ID 13688 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\Dropbox\Client\Dropbox.exe Memory Usage 3.01 MB Peak Memory Usage 12 MB DropboxUpdate.exe Process ID 3428 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Memory Usage 4.03 MB Peak Memory Usage 10 MB dwm.exe Process ID 1384 User DWM-1 Domain Window Manager Path C:\Windows\System32\dwm.exe Memory Usage 53 MB Peak Memory Usage 63 MB esif_uf.exe Process ID 3292 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\Intel\DPTF\esif_uf.exe Memory Usage 1.55 MB Peak Memory Usage 6.86 MB EvtEng.exe Process ID 3120 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Intel\WiFi\bin\EvtEng.exe Memory Usage 3.89 MB Peak Memory Usage 19 MB EXCEL.EXE Process ID 4296 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Memory Usage 70 MB Peak Memory Usage 136 MB explorer.exe Process ID 8460 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\explorer.exe Memory Usage 129 MB Peak Memory Usage 151 MB express.exe Process ID 10572 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\Garmin\Express\express.exe Memory Usage 62 MB Peak Memory Usage 106 MB Fitbit.exe Process ID 10036 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\WindowsApps\Fitbit.Fitbit_2.44.1997.0_x64__6mqt6hf9g46tw\Fitbit.exe Memory Usage 544 KB Peak Memory Usage 112 MB fontdrvhost.exe Process ID 1064 User UMFD-1 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 6.56 MB Peak Memory Usage 16 MB fontdrvhost.exe Process ID 1072 User UMFD-0 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 628 KB Peak Memory Usage 3.77 MB GameBar.exe Process ID 11492 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.34.15002.0_x64__8wekyb3d8bbwe\GameBar.exe Memory Usage 33 MB Peak Memory Usage 66 MB GameBarFT.exe Process ID 18460 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.34.15002.0_x64__8wekyb3d8bbwe\GameBarFT.exe Memory Usage 12 MB Peak Memory Usage 18 MB HPAudioSwitch.exe Process ID 4180 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe Memory Usage 8.55 MB Peak Memory Usage 46 MB HPCommRecovery.exe Process ID 5112 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\HPCommRecovery\HPCommRecovery.exe Memory Usage 6.61 MB Peak Memory Usage 19 MB HPJumpStartBridge.exe Process ID 8108 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe Memory Usage 4.25 MB Peak Memory Usage 29 MB HPJumpStartLaunch.exe Process ID 8752 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe Memory Usage 748 KB Peak Memory Usage 9.19 MB HPMSGSVC.exe Process ID 13760 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe Memory Usage 3.39 MB Peak Memory Usage 10 MB HPNETW~1.EXE Process ID 14328 User srone Domain LAPTOP-TPQUSEMR Path C:\PROGRA~1\HP\HPOFFI~1\Bin\HPNETW~1.EXE Memory Usage 8.62 MB Peak Memory Usage 16 MB hpqwmiex.exe Process ID 10620 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\HP\Shared\hpqwmiex.exe Memory Usage 7.10 MB Peak Memory Usage 11 MB HPSupportSolutionsFrameworkService.exe Process ID 1120 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe Memory Usage 30 MB Peak Memory Usage 94 MB HPWMISVC.exe Process ID 4168 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe Memory Usage 3.66 MB Peak Memory Usage 8.68 MB ibtsiva.exe Process ID 4116 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\ibtsiva.exe Memory Usage 1.84 MB Peak Memory Usage 4.58 MB igfxCUIService.exe Process ID 2176 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\DriverStore\FileRepository\ki131191.inf_amd64_d668106cb6f2eae0\igfxCUIService.exe Memory Usage 1.79 MB Peak Memory Usage 9.82 MB igfxEM.exe Process ID 9312 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\DriverStore\FileRepository\ki131191.inf_amd64_d668106cb6f2eae0\igfxEM.exe Memory Usage 15 MB Peak Memory Usage 26 MB IntelCpHDCPSvc.exe Process ID 4080 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\DriverStore\FileRepository\ki131191.inf_amd64_d668106cb6f2eae0\IntelCpHDCPSvc.exe Memory Usage 1.73 MB Peak Memory Usage 7.34 MB IntelCpHeciSvc.exe Process ID 4844 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\DriverStore\FileRepository\ki131191.inf_amd64_d668106cb6f2eae0\IntelCpHeciSvc.exe Memory Usage 1.68 MB Peak Memory Usage 6.88 MB IntuitUpdateService.exe Process ID 2000 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe Memory Usage 2.64 MB Peak Memory Usage 37 MB iPodService.exe Process ID 10732 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\iPod\bin\iPodService.exe Memory Usage 2.63 MB Peak Memory Usage 8.60 MB iTunesHelper.exe Process ID 13220 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\iTunes\iTunesHelper.exe Memory Usage 5.38 MB Peak Memory Usage 16 MB jhi_service.exe Process ID 7404 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Intel\Intel Management Engine Components\DAL\jhi_service.exe Memory Usage 1.36 MB Peak Memory Usage 6.97 MB ksde.exe Process ID 7000 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 3.0\ksde.exe Memory Usage 15 MB Peak Memory Usage 33 MB ksdeui.exe Process ID 10124 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 3.0\ksdeui.exe Memory Usage 3.99 MB Peak Memory Usage 67 MB LMS.exe Process ID 1196 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Intel\Intel Management Engine Components\LMS\LMS.exe Memory Usage 2.98 MB Peak Memory Usage 14 MB lsass.exe Process ID 760 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\lsass.exe Memory Usage 15 MB Peak Memory Usage 21 MB MBAMService.exe Process ID 5380 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe Memory Usage 132 MB Peak Memory Usage 639 MB mbamtray.exe Process ID 5592 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe Memory Usage 12 MB Peak Memory Usage 38 MB mDNSResponder.exe Process ID 3300 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bonjour\mDNSResponder.exe Memory Usage 2.93 MB Peak Memory Usage 6.75 MB Memory Compression Process ID 2948 User SYSTEM Domain NT AUTHORITY Memory Usage 444 MB Peak Memory Usage 545 MB Microsoft.Photos.exe Process ID 2248 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe Memory Usage 22 MB Peak Memory Usage 81 MB MicrosoftEdge.exe Process ID 11076 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe Memory Usage 74 MB Peak Memory Usage 75 MB MicrosoftEdgeCP.exe Process ID 7480 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\MicrosoftEdgeCP.exe Memory Usage 49 MB Peak Memory Usage 49 MB MicrosoftEdgeSH.exe Process ID 14792 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\MicrosoftEdgeSH.exe Memory Usage 14 MB Peak Memory Usage 15 MB NavService.exe Process ID 13428 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\Chart Installer\NavService.exe Memory Usage 4.08 MB Peak Memory Usage 12 MB OfficeClickToRun.exe Process ID 14836 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe Memory Usage 34 MB Peak Memory Usage 111 MB OneDrive.exe Process ID 12508 User srone Domain LAPTOP-TPQUSEMR Path C:\Users\srone\AppData\Local\Microsoft\OneDrive\OneDrive.exe Memory Usage 21 MB Peak Memory Usage 44 MB PresentationFontCache.exe Process ID 8464 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe Memory Usage 2.33 MB Peak Memory Usage 20 MB QtWebEngineProcess.exe Process ID 13612 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\Dropbox\Client\84.4.170\QtWebEngineProcess.exe Memory Usage 10 MB Peak Memory Usage 65 MB QtWebEngineProcess.exe Process ID 8484 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\Dropbox\Client\84.4.170\QtWebEngineProcess.exe Memory Usage 20 MB Peak Memory Usage 66 MB QtWebEngineProcess.exe Process ID 8480 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files (x86)\Dropbox\Client\84.4.170\QtWebEngineProcess.exe Memory Usage 14 MB Peak Memory Usage 65 MB Registry Process ID 120 User SYSTEM Domain NT AUTHORITY Memory Usage 60 MB Peak Memory Usage 299 MB RegSrvc.exe Process ID 4288 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe Memory Usage 2.19 MB Peak Memory Usage 9.45 MB RtkAudioService64.exe Process ID 3124 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe Memory Usage 3.30 MB Peak Memory Usage 8.26 MB RtkNGUI64.exe Process ID 13108 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe Memory Usage 4.47 MB Peak Memory Usage 15 MB rundll32.exe Process ID 12380 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\rundll32.exe Memory Usage 2.02 MB Peak Memory Usage 9.05 MB RuntimeBroker.exe Process ID 14316 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 16 MB Peak Memory Usage 21 MB RuntimeBroker.exe Process ID 8660 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 16 MB Peak Memory Usage 19 MB RuntimeBroker.exe Process ID 17452 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 11 MB Peak Memory Usage 26 MB RuntimeBroker.exe Process ID 11596 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 18 MB Peak Memory Usage 26 MB RuntimeBroker.exe Process ID 14940 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 25 MB Peak Memory Usage 34 MB RuntimeBroker.exe Process ID 16608 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 6.08 MB Peak Memory Usage 11 MB RuntimeBroker.exe Process ID 15628 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 20 MB Peak Memory Usage 27 MB RuntimeBroker.exe Process ID 7124 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 5.25 MB Peak Memory Usage 11 MB RuntimeBroker.exe Process ID 8976 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 19 MB Peak Memory Usage 34 MB RuntimeBroker.exe Process ID 10492 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 39 MB Peak Memory Usage 92 MB RuntimeBroker.exe Process ID 12068 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 23 MB Peak Memory Usage 38 MB RuntimeBroker.exe Process ID 12560 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 17 MB Peak Memory Usage 28 MB ScanToPCActivationApp.exe Process ID 10704 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\ScanToPCActivationApp.exe Memory Usage 7.91 MB Peak Memory Usage 16 MB SearchFilterHost.exe Process ID 10044 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchFilterHost.exe Memory Usage 12 MB Peak Memory Usage 12 MB SearchIndexer.exe Process ID 17368 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchIndexer.exe Memory Usage 38 MB Peak Memory Usage 51 MB SearchProtocolHost.exe Process ID 18208 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchProtocolHost.exe Memory Usage 19 MB Peak Memory Usage 20 MB SearchProtocolHost.exe Process ID 2584 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\SearchProtocolHost.exe Memory Usage 7.43 MB Peak Memory Usage 7.76 MB SearchUI.exe Process ID 3360 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe Memory Usage 123 MB Peak Memory Usage 198 MB SecurityHealthService.exe Process ID 1180 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SecurityHealthService.exe Memory Usage 8.48 MB Peak Memory Usage 17 MB SecurityHealthSystray.exe Process ID 12804 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\SecurityHealthSystray.exe Memory Usage 3.14 MB Peak Memory Usage 8.89 MB services.exe Process ID 740 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\services.exe Memory Usage 6.75 MB Peak Memory Usage 21 MB SettingSyncHost.exe Process ID 11972 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\SettingSyncHost.exe Memory Usage 5.57 MB Peak Memory Usage 64 MB SgrmBroker.exe Process ID 1812 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SgrmBroker.exe Memory Usage 3.78 MB Peak Memory Usage 6.36 MB ShellExperienceHost.exe Process ID 1204 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Memory Usage 34 MB Peak Memory Usage 52 MB sihost.exe Process ID 8332 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\sihost.exe Memory Usage 23 MB Peak Memory Usage 26 MB SkypeApp.exe Process ID 14572 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.54.85.0_x64__kzf8qxf38zg5c\SkypeApp.exe Memory Usage 28 MB Peak Memory Usage 1.04 GB SkypeBackgroundHost.exe Process ID 12776 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.54.85.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe Memory Usage 184 KB Peak Memory Usage 7.71 MB smartscreen.exe Process ID 6576 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\smartscreen.exe Memory Usage 30 MB Peak Memory Usage 36 MB smss.exe Process ID 616 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\smss.exe Memory Usage 440 KB Peak Memory Usage 39 MB Speccy64.exe Process ID 6636 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\Speccy\Speccy64.exe Memory Usage 28 MB Peak Memory Usage 28 MB spoolsv.exe Process ID 3764 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\spoolsv.exe Memory Usage 21 MB Peak Memory Usage 30 MB StartMenuExperienceHost.exe Process ID 9376 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe Memory Usage 76 MB Peak Memory Usage 99 MB svchost.exe Process ID 1972 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.06 MB Peak Memory Usage 12 MB svchost.exe Process ID 1040 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 848 KB Peak Memory Usage 3.96 MB svchost.exe Process ID 1164 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 23 MB Peak Memory Usage 43 MB svchost.exe Process ID 1248 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 16 MB svchost.exe Process ID 1308 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.46 MB Peak Memory Usage 8.39 MB svchost.exe Process ID 1468 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.86 MB Peak Memory Usage 5.76 MB svchost.exe Process ID 1532 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.88 MB Peak Memory Usage 7.90 MB svchost.exe Process ID 1548 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.13 MB Peak Memory Usage 11 MB svchost.exe Process ID 1576 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.11 MB Peak Memory Usage 12 MB svchost.exe Process ID 1772 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.85 MB Peak Memory Usage 11 MB svchost.exe Process ID 1788 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.30 MB Peak Memory Usage 12 MB svchost.exe Process ID 1872 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 63 MB svchost.exe Process ID 1896 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 21 MB svchost.exe Process ID 1944 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.26 MB Peak Memory Usage 8.55 MB svchost.exe Process ID 1988 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.02 MB Peak Memory Usage 7.96 MB svchost.exe Process ID 1328 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.43 MB Peak Memory Usage 9.98 MB svchost.exe Process ID 2084 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.08 MB Peak Memory Usage 8.58 MB svchost.exe Process ID 2148 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.52 MB Peak Memory Usage 7.95 MB svchost.exe Process ID 2236 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.65 MB Peak Memory Usage 19 MB svchost.exe Process ID 2312 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.33 MB Peak Memory Usage 13 MB svchost.exe Process ID 2324 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.19 MB Peak Memory Usage 9.94 MB svchost.exe Process ID 2496 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.62 MB Peak Memory Usage 8.98 MB svchost.exe Process ID 2560 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.14 MB Peak Memory Usage 7.33 MB svchost.exe Process ID 2656 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.92 MB Peak Memory Usage 9.50 MB svchost.exe Process ID 9676 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.89 MB Peak Memory Usage 12 MB svchost.exe Process ID 9964 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 17 MB svchost.exe Process ID 4616 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.82 MB Peak Memory Usage 20 MB svchost.exe Process ID 8000 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.87 MB Peak Memory Usage 8.94 MB svchost.exe Process ID 10800 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 22 MB svchost.exe Process ID 8376 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\svchost.exe Memory Usage 20 MB Peak Memory Usage 28 MB svchost.exe Process ID 8168 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.89 MB Peak Memory Usage 11 MB svchost.exe Process ID 4696 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.21 MB Peak Memory Usage 10 MB svchost.exe Process ID 6400 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.83 MB Peak Memory Usage 10 MB svchost.exe Process ID 13260 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.78 MB Peak Memory Usage 16 MB svchost.exe Process ID 6332 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.64 MB Peak Memory Usage 7.64 MB svchost.exe Process ID 5984 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.24 MB Peak Memory Usage 9.13 MB svchost.exe Process ID 5388 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.41 MB Peak Memory Usage 13 MB svchost.exe Process ID 4708 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.18 MB Peak Memory Usage 5.34 MB svchost.exe Process ID 4480 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 22 MB svchost.exe Process ID 4400 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.12 MB Peak Memory Usage 5.53 MB svchost.exe Process ID 4336 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.90 MB Peak Memory Usage 17 MB svchost.exe Process ID 4236 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 41 MB svchost.exe Process ID 4128 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.55 MB Peak Memory Usage 8.00 MB svchost.exe Process ID 3636 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.81 MB Peak Memory Usage 11 MB svchost.exe Process ID 3644 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 22 MB Peak Memory Usage 46 MB svchost.exe Process ID 8472 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\svchost.exe Memory Usage 28 MB Peak Memory Usage 36 MB svchost.exe Process ID 3432 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 49 MB svchost.exe Process ID 2832 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 33 MB Peak Memory Usage 64 MB svchost.exe Process ID 4064 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.24 MB Peak Memory Usage 7.13 MB svchost.exe Process ID 11288 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 28 MB svchost.exe Process ID 16312 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\svchost.exe Memory Usage 3.74 MB Peak Memory Usage 8.25 MB svchost.exe Process ID 14704 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.96 MB Peak Memory Usage 16 MB svchost.exe Process ID 3924 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.41 MB Peak Memory Usage 8.16 MB svchost.exe Process ID 6344 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 23 MB svchost.exe Process ID 3808 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.77 MB Peak Memory Usage 23 MB svchost.exe Process ID 8652 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 21 MB svchost.exe Process ID 14400 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 30 MB Peak Memory Usage 79 MB svchost.exe Process ID 15644 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.90 MB Peak Memory Usage 10 MB svchost.exe Process ID 16024 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.73 MB Peak Memory Usage 131 MB svchost.exe Process ID 3696 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.29 MB Peak Memory Usage 13 MB svchost.exe Process ID 3612 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.56 MB Peak Memory Usage 19 MB svchost.exe Process ID 3400 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.66 MB Peak Memory Usage 8.13 MB svchost.exe Process ID 3320 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.22 MB Peak Memory Usage 10 MB svchost.exe Process ID 3312 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.55 MB Peak Memory Usage 6.53 MB svchost.exe Process ID 1220 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.71 MB Peak Memory Usage 13 MB svchost.exe Process ID 2532 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 35 MB svchost.exe Process ID 3180 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 25 MB svchost.exe Process ID 2936 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.85 MB Peak Memory Usage 15 MB svchost.exe Process ID 2928 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.25 MB Peak Memory Usage 7.94 MB svchost.exe Process ID 1272 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.63 MB Peak Memory Usage 7.34 MB svchost.exe Process ID 3564 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.86 MB Peak Memory Usage 8.39 MB svchost.exe Process ID 2856 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 98 MB Peak Memory Usage 156 MB svchost.exe Process ID 8932 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.52 MB Peak Memory Usage 8.04 MB svchost.exe Process ID 19340 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.23 MB Peak Memory Usage 6.16 MB svchost.exe Process ID 1396 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.19 MB Peak Memory Usage 6.71 MB svchost.exe Process ID 964 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.84 MB Peak Memory Usage 11 MB svchost.exe Process ID 2848 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.39 MB Peak Memory Usage 5.70 MB svchost.exe Process ID 9028 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.37 MB Peak Memory Usage 5.37 MB svchost.exe Process ID 3212 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 40 MB svchost.exe Process ID 2792 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.48 MB Peak Memory Usage 7.53 MB svchost.exe Process ID 2712 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.09 MB Peak Memory Usage 9.63 MB svchost.exe Process ID 5564 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 16 MB svchost.exe Process ID 2456 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.64 MB Peak Memory Usage 6.73 MB svchost.exe Process ID 19200 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.59 MB Peak Memory Usage 9.91 MB svchost.exe Process ID 4816 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.71 MB Peak Memory Usage 7.71 MB svchost.exe Process ID 18420 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.01 MB Peak Memory Usage 6.02 MB SynTPEnh.exe Process ID 12368 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\SynTPEnh.exe Memory Usage 16 MB Peak Memory Usage 23 MB SynTPEnhService.exe Process ID 2388 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SynTPEnhService.exe Memory Usage 3.07 MB Peak Memory Usage 14 MB System Process ID 4 Memory Usage 1.20 MB Peak Memory Usage 18 MB System Idle Process Process ID 0 SystemSettings.exe Process ID 11136 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\ImmersiveControlPanel\SystemSettings.exe Memory Usage 24 KB Peak Memory Usage 83 MB taskhostw.exe Process ID 12020 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\taskhostw.exe Memory Usage 18 MB Peak Memory Usage 22 MB taskhostw.exe Process ID 8812 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\taskhostw.exe Memory Usage 13 MB Peak Memory Usage 16 MB unsecapp.exe Process ID 7812 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\unsecapp.exe Memory Usage 2.14 MB Peak Memory Usage 6.75 MB unsecapp.exe Process ID 14212 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\System32\wbem\unsecapp.exe Memory Usage 4.28 MB Peak Memory Usage 6.96 MB Video.UI.exe Process ID 3376 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Memory Usage 5.68 MB Peak Memory Usage 58 MB WildTangentHelperService.exe Process ID 4408 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe Memory Usage 7.83 MB Peak Memory Usage 18 MB WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe Process ID 8496 User srone Domain LAPTOP-TPQUSEMR Path C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe Memory Usage 30 MB Peak Memory Usage 47 MB wininit.exe Process ID 920 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wininit.exe Memory Usage 1.26 MB Peak Memory Usage 6.82 MB winlogon.exe Process ID 1000 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\winlogon.exe Memory Usage 2.88 MB Peak Memory Usage 15 MB WinStore.App.exe Process ID 20396 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\WindowsApps\Microsoft.WindowsStore_11911.1001.9.0_x64__8wekyb3d8bbwe\WinStore.App.exe Memory Usage 64 KB Peak Memory Usage 113 MB WmiPrvSE.exe Process ID 18720 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\SysWOW64\wbem\WmiPrvSE.exe Memory Usage 7.75 MB Peak Memory Usage 9.93 MB WmiPrvSE.exe Process ID 18736 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 8.57 MB Peak Memory Usage 8.66 MB WmiPrvSE.exe Process ID 7892 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 42 MB Peak Memory Usage 47 MB WmiPrvSE.exe Process ID 9428 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 14 MB Peak Memory Usage 14 MB WmiPrvSE.exe Process ID 1048 User SYSTEM Domain NT AUTHORITY Path C:\Windows\SysWOW64\wbem\WmiPrvSE.exe Memory Usage 8.90 MB Peak Memory Usage 10 MB WUDFHost.exe Process ID 1080 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\WUDFHost.exe Memory Usage 6.70 MB Peak Memory Usage 13 MB YourPhone.exe Process ID 17924 User srone Domain LAPTOP-TPQUSEMR Path C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19101.469.0_x64__8wekyb3d8bbwe\YourPhone.exe Memory Usage 1.70 MB Peak Memory Usage 41 MB ZeroConfigService.exe Process ID 4496 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe Memory Usage 4.25 MB Peak Memory Usage 18 MB Security Options Accounts: Administrator account status Disabled Accounts: Block Microsoft accounts Not Defined Accounts: Guest account status Disabled Accounts: Limit local account use of blank passwords to console logon only Enabled Accounts: Rename administrator account Administrator Accounts: Rename guest account Guest Audit: Audit the access of global system objects Disabled Audit: Audit the use of Backup and Restore privilege Disabled Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings Not Defined Audit: Shut down system immediately if unable to log security audits Disabled DCOM: Machine Access Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined DCOM: Machine Launch Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined Devices: Allow undock without having to log on Enabled Devices: Allowed to format and eject removable media Not Defined Devices: Prevent users from installing printer drivers Disabled Devices: Restrict CD-ROM access to locally logged-on user only Not Defined Devices: Restrict floppy access to locally logged-on user only Not Defined Domain controller: Allow server operators to schedule tasks Not Defined Domain controller: LDAP server signing requirements Not Defined Domain controller: Refuse machine account password changes Not Defined Domain member: Digitally encrypt or sign secure channel data (always) Enabled Domain member: Digitally encrypt secure channel data (when possible) Enabled Domain member: Digitally sign secure channel data (when possible) Enabled Domain member: Disable machine account password changes Disabled Domain member: Maximum machine account password age 30 days Domain member: Require strong (Windows 2000 or later) session key Enabled Interactive logon: Display user information when the session is locked Not Defined Interactive logon: Do not require CTRL+ALT+DEL Not Defined Interactive logon: Don't display last signed-in Disabled Interactive logon: Don't display username at sign-in Not Defined Interactive logon: Machine account lockout threshold Not Defined Interactive logon: Machine inactivity limit Not Defined Interactive logon: Message text for users attempting to log on Interactive logon: Message title for users attempting to log on Interactive logon: Number of previous logons to cache (in case domain controller is not available) 10 logons Interactive logon: Prompt user to change password before expiration 5 days Interactive logon: Require Domain Controller authentication to unlock workstation Disabled Interactive logon: Require Windows Hello for Business or smart card Disabled Interactive logon: Smart card removal behavior No Action Microsoft network client: Digitally sign communications (always) Disabled Microsoft network client: Digitally sign communications (if server agrees) Enabled Microsoft network client: Send unencrypted password to third-party SMB servers Disabled Microsoft network server: Amount of idle time required before suspending session Not Defined Microsoft network server: Attempt S4U2Self to obtain claim information Not Defined Microsoft network server: Digitally sign communications (always) Disabled Microsoft network server: Digitally sign communications (if client agrees) Disabled Microsoft network server: Disconnect clients when logon hours expire Enabled Microsoft network server: Server SPN target name validation level Not Defined Network access: Allow anonymous SID/Name translation Disabled Network access: Do not allow anonymous enumeration of SAM accounts Enabled Network access: Do not allow anonymous enumeration of SAM accounts and shares Disabled Network access: Do not allow storage of passwords and credentials for network authentication Disabled Network access: Let Everyone permissions apply to anonymous users Disabled Network access: Named Pipes that can be accessed anonymously Network access: Remotely accessible registry paths System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion Network access: Remotely accessible registry paths and sub-paths System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog Network access: Restrict anonymous access to Named Pipes and Shares Enabled Network access: Restrict clients allowed to make remote calls to SAM Network access: Shares that can be accessed anonymously Not Defined Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Network security: Allow Local System to use computer identity for NTLM Not Defined Network security: Allow LocalSystem NULL session fallback Not Defined Network security: Allow PKU2U authentication requests to this computer to use online identities. Not Defined Network security: Configure encryption types allowed for Kerberos Not Defined Network security: Do not store LAN Manager hash value on next password change Enabled Network security: Force logoff when logon hours expire Disabled Network security: LAN Manager authentication level Not Defined Network security: LDAP client signing requirements Negotiate signing Network security: Minimum session security for NTLM SSP based (including secure RPC) clients Require 128-bit encryption Network security: Minimum session security for NTLM SSP based (including secure RPC) servers Require 128-bit encryption Network security: Restrict NTLM: Add remote server exceptions for NTLM authentication Not Defined Network security: Restrict NTLM: Add server exceptions in this domain Not Defined Network security: Restrict NTLM: Audit Incoming NTLM Traffic Not Defined Network security: Restrict NTLM: Audit NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Incoming NTLM traffic Not Defined Network security: Restrict NTLM: NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Outgoing NTLM traffic to remote servers Not Defined Recovery console: Allow automatic administrative logon Not Defined Recovery console: Allow floppy copy and access to all drives and all folders Not Defined Shutdown: Allow system to be shut down without having to log on Enabled Shutdown: Clear virtual memory pagefile Disabled System cryptography: Force strong key protection for user keys stored on the computer Not Defined System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing Disabled System objects: Require case insensitivity for non-Windows subsystems Enabled System objects: Strengthen default permissions of internal system objects (e.g. Symbolic Links) Enabled System settings: Optional subsystems System settings: Use Certificate Rules on Windows Executables for Software Restriction Policies Disabled User Account Control: Admin Approval Mode for the Built-in Administrator account Not Defined User Account Control: Allow UIAccess applications to prompt for elevation without using the secure desktop Disabled User Account Control: Behavior of the elevation prompt for administrators in Admin Approval Mode Prompt for consent for non-Windows binaries User Account Control: Behavior of the elevation prompt for standard users Prompt for credentials User Account Control: Detect application installations and prompt for elevation Enabled User Account Control: Only elevate executables that are signed and validated Disabled User Account Control: Only elevate UIAccess applications that are installed in secure locations Enabled User Account Control: Run all administrators in Admin Approval Mode Enabled User Account Control: Switch to the secure desktop when prompting for elevation Enabled User Account Control: Virtualize file and registry write failures to per-user locations Enabled Device Tree ACPI x64-based PC Microsoft ACPI-Compliant System ACPI Fan ACPI Fan ACPI Fan ACPI Fan ACPI Fan ACPI Fixed Feature Button ACPI Processor Aggregator ACPI Thermal Zone ACPI Thermal Zone ACPI Thermal Zone Intel Core i5-8250U CPU @ 1.60GHz Intel Core i5-8250U CPU @ 1.60GHz Intel Core i5-8250U CPU @ 1.60GHz Intel Core i5-8250U CPU @ 1.60GHz Intel Core i5-8250U CPU @ 1.60GHz Intel Core i5-8250U CPU @ 1.60GHz Intel Core i5-8250U CPU @ 1.60GHz Intel Core i5-8250U CPU @ 1.60GHz Intel Dynamic Platform and Thermal Framework Manager Intel Power Engine Plug-in Microsoft Windows Management Interface for ACPI Microsoft Windows Management Interface for ACPI Motherboard resources Trusted Platform Module 2.0 PCI Express Root Complex Intel Dynamic Platform and Thermal Framework Processor Participant Intel Management Engine Interface Intel Xeon E3 - 1200 v6/7th Gen Intel Core Host Bridge/DRAM Registers - 5914 Intel Xeon E3 - 1200/1500 v5/6th Gen Intel Core Gaussian Mixture Model - 1911 Mobile Intel Processor Family I/O PMC - 9D21 Mobile Intel Processor Family I/O Thermal subsystem - 9D31 Motherboard resources Motherboard resources Motherboard resources Motherboard resources Synaptics SMBus Driver Intel(R) UHD Graphics 620 Generic PnP Monitor Intel(R) USB 3.0 eXtensible Host Controller - 1.0 (Microsoft) USB Root Hub (USB 3.0) Intel(R) Wireless Bluetooth(R) Bluetooth Device (Personal Area Network) Bluetooth Device (RFCOMM Protocol TDI) Microsoft Bluetooth Enumerator Microsoft Bluetooth LE Enumerator USB Composite Device HP TrueVision HD Camera Intel(R) 6th Generation Core Processor Family Platform I/O SATA AHCI Controller hp DVDRW GUE1N WDC WD10JPVX-60JC3T1 Mobile Intel(R) Processor Family I/O PCI Express Root Port #5 - 9D14 Realtek PCIe GBE Family Controller #2 Mobile Intel(R) Processor Family I/O PCI Express Root Port #6 - 9D15 Intel(R) Dual Band Wireless-AC 3168 Microsoft Wi-Fi Direct Virtual Adapter Microsoft Wi-Fi Direct Virtual Adapter #2 Mobile 7th/8th Generation Intel(R) Processor Family I/O LPC Controller (U with iHDCP2.2 Premium) - 9D4E ACPI Lid High precision event timer Legacy device Microsoft AC Adapter Microsoft ACPI-Compliant Control Method Battery Microsoft ACPI-Compliant Embedded Controller Motherboard resources Motherboard resources Programmable interrupt controller Standard PS/2 Keyboard System CMOS/real time clock System timer Synaptics SMBus TouchPad Synaptics Service binaries High Definition Audio Controller Intel Display Audio Realtek High Definition Audio Microphone (Realtek High Definition Audio) Speaker/Headphone (Realtek High Definition Audio) HP Wireless Button Driver HID-compliant wireless radio controls Microsoft UEFI-Compliant System System Firmware CPU Intel Core i5 Cores 4 Threads 8 Name Intel Core i5 Code Name Kaby Lake-U/Y Package Socket 1356 FCBGA Technology 14nm Specification Intel Core i5-8250U CPU @ 1.60GHz Family 6 Extended Family 6 Model E Extended Model 8E Stepping A Instructions MMX, SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, Intel 64, NX, VMX, AES, AVX, AVX2, FMA3 Virtualization Supported, Disabled Hyperthreading Supported, Enabled Bus Speed 99.8 MHz Stock Core Speed 1800 MHz Stock Bus Speed 100 MHz Average Temperature 46 °C Caches L1 Data Cache Size 4 x 32 KBytes L1 Instructions Cache Size 4 x 32 KBytes L2 Unified Cache Size 4 x 256 KBytes L3 Unified Cache Size 6144 KBytes Cores Core 0 Core Speed 897.8 MHz Multiplier x 9.0 Bus Speed 99.8 MHz Temperature 47 °C Threads APIC ID: 0, 1 Core 1 Core Speed 897.8 MHz Multiplier x 9.0 Bus Speed 99.8 MHz Temperature 46 °C Threads APIC ID: 2, 3 Core 2 Core Speed 897.8 MHz Multiplier x 9.0 Bus Speed 99.8 MHz Temperature 47 °C Threads APIC ID: 4, 5 Core 3 Core Speed 897.8 MHz Multiplier x 9.0 Bus Speed 99.8 MHz Temperature 43 °C Threads APIC ID: 6, 7 RAM Memory slots Total memory slots 2 Used memory slots 1 Free memory slots 1 Memory Size 8192 MBytes Physical Memory Memory Usage 50 % Total Physical 7.92 GB Available Physical 3.93 GB Total Virtual 9.17 GB Available Virtual 3.61 GB SPD Number Of SPD Modules 1 Slot #1 Type Unknown Size 8192 MBytes Manufacturer Hyundai Electronics Max Bandwidth DDR4-2400 (1200 MHz) Part Number HMA81GS6AFR8N-UH Serial Number 712620355 Week/year 36 / 17 Timing table JEDEC #1 Frequency 727.3 MHz CAS# Latency 10.0 RAS# To CAS# 10 RAS# Precharge 10 tRAS 24 tRC 34 Voltage 1.200 V JEDEC #2 Frequency 800.0 MHz CAS# Latency 11.0 RAS# To CAS# 11 RAS# Precharge 11 tRAS 26 tRC 37 Voltage 1.200 V JEDEC #3 Frequency 872.7 MHz CAS# Latency 12.0 RAS# To CAS# 12 RAS# Precharge 12 tRAS 28 tRC 40 Voltage 1.200 V JEDEC #4 Frequency 945.5 MHz CAS# Latency 13.0 RAS# To CAS# 13 RAS# Precharge 13 tRAS 31 tRC 44 Voltage 1.200 V JEDEC #5 Frequency 1018.2 MHz CAS# Latency 14.0 RAS# To CAS# 14 RAS# Precharge 14 tRAS 33 tRC 47 Voltage 1.200 V JEDEC #6 Frequency 1090.9 MHz CAS# Latency 15.0 RAS# To CAS# 15 RAS# Precharge 15 tRAS 35 tRC 50 Voltage 1.200 V JEDEC #7 Frequency 1163.6 MHz CAS# Latency 16.0 RAS# To CAS# 16 RAS# Precharge 16 tRAS 38 tRC 54 Voltage 1.200 V JEDEC #8 Frequency 1200.5 MHz CAS# Latency 17.0 RAS# To CAS# 17 RAS# Precharge 17 tRAS 39 tRC 55 Voltage 1.200 V JEDEC #9 Frequency 1200.5 MHz CAS# Latency 18.0 RAS# To CAS# 17 RAS# Precharge 17 tRAS 39 tRC 55 Voltage 1.200 V Motherboard Manufacturer HP Model 832A (U3E1) Version 23.70 Chipset Vendor Intel Chipset Model ID5914 Chipset Revision 08 Southbridge Vendor Intel Southbridge Model ID9D4E Southbridge Revision 21 BIOS Brand Insyde Version F.52 Date 3/4/2019 PCI Data Slot PCI-E x1 Slot Type PCI-E x1 Slot Usage In Use Data lanes x1 Slot Designation J6C1 Characteristics PME, Hot Plug Slot Number 0 Slot PCI-E x1 Slot Type PCI-E x1 Slot Usage Available Data lanes x1 Slot Designation J6D2 Characteristics PME, Hot Plug Slot Number 1 Slot PCI-E x1 Slot Type PCI-E x1 Slot Usage Available Data lanes x1 Slot Designation J7C1 Characteristics PME, Hot Plug Slot Number 2 Slot PCI-E x1 Slot Type PCI-E x1 Slot Usage Available Data lanes x1 Slot Designation J7D1 Characteristics PME, Hot Plug Slot Number 3 Slot PCI-E x4 Slot Type PCI-E x4 Slot Usage Available Data lanes x4 Slot Designation J8C1 Characteristics PME, Hot Plug Slot Number 4 Graphics Monitor Name Generic PnP Monitor on Intel UHD Graphics 620 Current Resolution 1366x768 pixels Work Resolution 1366x728 pixels State Enabled, Primary Monitor Width 1366 Monitor Height 768 Monitor BPP 32 bits per pixel Monitor Frequency 60 Hz Device \\.\DISPLAY1\Monitor0 Intel UHD Graphics 620 Manufacturer Intel Model UHD Graphics 620 Device ID 8086-5917 Revision 8 Subvendor HP (103C) Current Performance Level Level 0 Driver version 25.20.100.6518 Count of performance levels : 1 Level 1 - "Perf Level 0" Storage Hard drives WDC WD10JPVX-60JC3T1 Manufacturer Western Digital Heads 16 Cylinders 121,601 Tracks 31,008,255 Sectors 1,953,520,065 SATA type SATA-III 6.0Gb/s Device type Fixed ATA Standard ACS2 Serial Number WD-WXC1A97RY5NH Firmware Version Number 02.01A02 LBA Size 48-bit LBA Power On Count 1774 times Power On Time 47.3 days Speed 5400 RPM Features S.M.A.R.T., APM, NCQ Max. Transfer Mode SATA III 6.0Gb/s Used Transfer Mode SATA III 6.0Gb/s Interface SATA Capacity 931 GB Real size 1,000,204,886,016 bytes RAID Type None S.M.A.R.T Status Good Temperature 35 °C Temperature Range OK (less than 50 °C) S.M.A.R.T attributes 01 Attribute name Read Error Rate Real value 0 Current 200 Worst 200 Threshold 51 Raw Value 0000000000 Status Good 03 Attribute name Spin-Up Time Real value 1891 ms Current 182 Worst 179 Threshold 21 Raw Value 0000000763 Status Good 04 Attribute name Start/Stop Count Real value 4,571 Current 96 Worst 96 Threshold 0 Raw Value 00000011DB Status Good 05 Attribute name Reallocated Sectors Count Real value 0 Current 200 Worst 200 Threshold 140 Raw Value 0000000000 Status Good 07 Attribute name Seek Error Rate Real value 0 Current 200 Worst 200 Threshold 51 Raw Value 0000000000 Status Good 09 Attribute name Power-On Hours (POH) Real value 47d 7h Current 99 Worst 99 Threshold 0 Raw Value 000000046F Status Good 0A Attribute name Spin Retry Count Real value 0 Current 100 Worst 100 Threshold 51 Raw Value 0000000000 Status Good 0B Attribute name Recalibration Retries Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good 0C Attribute name Device Power Cycle Count Real value 1,774 Current 99 Worst 99 Threshold 0 Raw Value 00000006EE Status Good B7 Attribute name SATA Downshift Error Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good B8 Attribute name End-to-End error / IOEDC Real value 0 Current 100 Worst 100 Threshold 97 Raw Value 0000000000 Status Good BB Attribute name Reported Uncorrectable Errors Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good BC Attribute name Command Timeout Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good BE Attribute name Temperature Difference from 100 Real value 35 °C Current 65 Worst 58 Threshold 40 Raw Value 0023140023 Status Good BF Attribute name G-sense error rate Real value 18 Current 82 Worst 82 Threshold 0 Raw Value 0000000012 Status Good C0 Attribute name Power-off Retract Count Real value 19 Current 200 Worst 200 Threshold 0 Raw Value 0000000013 Status Good C1 Attribute name Load/Unload Cycle Count Real value 16,639 Current 195 Worst 195 Threshold 0 Raw Value 00000040FF Status Good C2 Attribute name Temperature Real value 35 °C Current 112 Worst 105 Threshold 0 Raw Value 0000000023 Status Good C4 Attribute name Reallocation Event Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good C5 Attribute name Current Pending Sector Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good C6 Attribute name Uncorrectable Sector Count Real value 0 Current 100 Worst 253 Threshold 0 Raw Value 0000000000 Status Good C7 Attribute name UltraDMA CRC Error Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good C8 Attribute name Write Error Rate / Multi-Zone Error Rate Real value 0 Current 100 Worst 253 Threshold 51 Raw Value 0000000000 Status Good Partition 0 Partition ID Disk #0, Partition #0 File System FAT32 Volume Serial Number EEA8C63A Size 256 MB Used Space 81 MB (31%) Free Space 174 MB (69%) Partition 1 Partition ID Disk #0, Partition #1 Disk Letter C: File System NTFS Volume Serial Number 9445833D Size 915 GB Used Space 122 GB (13%) Free Space 793 GB (87%) Partition 2 Partition ID Disk #0, Partition #2 File System NTFS Volume Serial Number 4E4C4C21 Size 979 MB Used Space 625 MB (63%) Free Space 354 MB (37%) Partition 3 Partition ID Disk #0, Partition #3 Disk Letter D: File System NTFS Volume Serial Number D00B038D Size 14.5 GB Used Space 13 GB (89%) Free Space 1.53 GB (11%) Optical Drives hp DVDRW GUE1N Media Type DVD Writer Name hp DVDRW GUE1N Availability Running/Full Power Capabilities Random Access, Supports Writing, Supports Removable Media Read capabilities CD-R, CD-RW, CD-ROM, DVD-RAM, DVD-ROM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL Write capabilities CD-R, CD-RW, DVD-RAM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL Config Manager Error Code Device is working properly Config Manager User Config FALSE Drive E: Media Loaded FALSE SCSI Bus 0 SCSI Logical Unit 0 SCSI Port 0 SCSI Target Id 1 Status OK Audio Sound Cards Realtek High Definition Audio Intel Display Audio Playback Device Speaker/Headphone (Realtek High Definition Audio) Recording Device Microphone (Realtek High Definition Audio) Speaker Configuration Speaker type Stereo Peripherals Standard PS/2 Keyboard Device Kind Keyboard Device Name Standard PS/2 Keyboard Vendor MSFT Location Mobile 7th/8th Generation Intel Processor Family I/O LPC Controller (U with iHDCP2.2 Premium) - 9D4E Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\i8042prt.sys File C:\WINDOWS\system32\DRIVERS\kbdclass.sys Synaptics SMBus TouchPad Device Kind Mouse Device Name Synaptics SMBus TouchPad Vendor SYN Location Mobile 7th/8th Generation Intel Processor Family I/O LPC Controller (U with iHDCP2.2 Premium) - 9D4E Driver Date 7-29-2019 Version 19.5.35.47 File C:\WINDOWS\system32\DRIVERS\SynTP.sys File C:\WINDOWS\system32\SynTPEnh.exe File C:\WINDOWS\system32\SynTPRes.dll File C:\WINDOWS\system32\SynTPAPI.dll File C:\WINDOWS\system32\SynCOM.dll File C:\WINDOWS\system32\SynTPEnhService.exe File C:\WINDOWS\system32\DRIVERS\mouclass.sys File C:\WINDOWS\system32\DRIVERS\i8042prt.sys HP OfficeJet Pro 6970 PCL-3 Device Kind Printer Device Name HP OfficeJet Pro 6970 PCL-3 Vendor HP Location http://[fe80::82e8:2cff:fe03:5417%16]:3911/ Driver Date 5-29-2017 Version 20.79.1.6686 HP OfficeJet Pro 7740 series PCL-3 Device Kind Printer Device Name HP OfficeJet Pro 7740 series PCL-3 Vendor HP Location http://192.168.1.5:3911/ Driver Date 5-31-2017 Version 20.79.1.6733 HP OfficeJet Pro 7740 (NET) Device Kind Camera/scanner Device Name HP OfficeJet Pro 7740 (NET) Vendor HP Driver Date 5-31-2017 Version 40.11.1139.17151 File C:\WINDOWS\system32\HPWia2_OJ7740.dll File C:\WINDOWS\system32\HPScanTEDrv_OJ7740_x64.dll File C:\WINDOWS\system32\HPScanTEDrv_OJ7740_x64_DiscoveryLibDyn.dll File C:\WINDOWS\SysWOW64\HPScanTEDrv_OJ7740.dll File C:\WINDOWS\SysWOW64\HPScanTEDrv_OJ7740_DiscoveryLibDyn.dll File C:\WINDOWS\system32\drivers\serscan.sys WSD Scan Device Device Kind Camera/scanner Device Name WSD Scan Device Vendor Hewlett-Packard Comment HP035416 (HP OfficeJet Pro 6970) Location http://[fe80::82e8:2cff:fe03:5417%16]:3911/ Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\WSDScan.sys WSD Scan Device Device Kind Camera/scanner Device Name WSD Scan Device Vendor Hewlett-Packard Comment HP65354C (HP OfficeJet Pro 7740 series) Location http://192.168.1.10:3911/ Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\WSDScan.sys Printers Fax Printer Port SHRFAX: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 200 * 200 dpi Monochrome Status Unknown Driver Driver Name Microsoft Shared Fax Driver (v4.00) Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\FXSDRV.DLL Fax - HP OfficeJet Pro 7740 series Printer Port HPOJ7740_Fax_Port Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 300 * 300 dpi Color Status Unknown Driver Driver Name HPOJ7740_Fax_Driver (v6.03) Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\unidrv.dll HP ePrint + JetAdvantage Printer Port HP ePrint Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name HP Delivery Driver V4 (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ce3301b66255a0fb\Amd64\mxdwdrv.dll HP035416 (HP OfficeJet Pro 6970) (Default Printer) Printer Port WSD-35badf47-c463-4bf1-938c-bd647a4205a5 Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name HP OfficeJet Pro 6970 PCL-3 (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ce3301b66255a0fb\Amd64\mxdwdrv.dll HP65354C (HP OfficeJet Pro 7740 series) Printer Port WSD-a0828c52-6971-4ef5-aece-7792ed2e18ff.0037 Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name HP OfficeJet Pro 7740 series PCL-3 (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ce3301b66255a0fb\Amd64\mxdwdrv.dll Microsoft Print to PDF Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft Print To PDF (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ce3301b66255a0fb\Amd64\mxdwdrv.dll Microsoft XPS Document Writer Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft XPS Document Writer v4 (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ce3301b66255a0fb\Amd64\mxdwdrv.dll OneNote Printer Port Microsoft.Office.OneNote_16001.12130.20090.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-2384352896-1203634740-2024044642-1001 Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 300 * 300 dpi Color Status Unknown Driver Driver Name Microsoft Software Printer Driver (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ce3301b66255a0fb\Amd64\mxdwdrv.dll Send To OneNote 2016 Printer Port nul: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Send to Microsoft OneNote 16 Driver (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ce3301b66255a0fb\Amd64\mxdwdrv.dll Network You are connected to the internet Connected through Intel Dual Band Wireless-AC 3168 IP Address 192.168.1.25 Subnet mask 255.255.255.0 Gateway server 192.168.1.1 Preferred DNS server 192.168.1.1 DHCP Enabled DHCP server 192.168.1.1 External IP Address 73.184.90.184 Adapter Type IEEE 802.11 wireless NetBIOS over TCP/IP Enabled via DHCP NETBIOS Node Type Hybrid node Link Speed 0 Bps Computer Name NetBIOS Name LAPTOP-TPQUSEMR DNS Name LAPTOP-TPQUSEMR Membership Part of workgroup Workgroup WORKGROUP Remote Desktop Disabled Console State Active Domain LAPTOP-TPQUSEMR WinInet Info LAN Connection Local system uses a local area network to connect to the Internet Local system has RAS to connect to the Internet Wi-Fi Info Using native Wi-Fi API version 2 Available access points count 12 Wi-Fi () SSID Frequency 2462000 kHz Channel Number 11 Name No name Signal Strength/Quality 40 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i Robust Security Network Association (RSNA) algorithm (WPA2 is one such algorithm) Wi-Fi (ATTWNsN2ea) SSID ATTWNsN2ea Frequency 2462000 kHz Channel Number 11 Name ATTWNsN2ea Signal Strength/Quality 8 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (DIRECT-17-HP OfficeJet Pro 6970) SSID DIRECT-17-HP OfficeJet Pro 6970 Frequency 2417000 kHz Channel Number 2 Name DIRECT-17-HP OfficeJet Pro 6970 Signal Strength/Quality 56 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (DIRECT-4D-HP OfficeJet Pro 7740) SSID DIRECT-4D-HP OfficeJet Pro 7740 Frequency 2417000 kHz Channel Number 2 Name DIRECT-4D-HP OfficeJet Pro 7740 Signal Strength/Quality 51 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (DIRECT-OA-FireTV_1398) SSID DIRECT-OA-FireTV_1398 Frequency 5765000 kHz Channel Number 153 Name DIRECT-OA-FireTV_1398 Signal Strength/Quality 70 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (HOME-D48A-2.4) SSID HOME-D48A-2.4 Frequency 2437000 kHz Channel Number 6 Name HOME-D48A-2.4 Signal Strength/Quality 38 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (Markhamfam6) SSID Markhamfam6 Frequency 2462000 kHz Channel Number 11 Name Markhamfam6 Signal Strength/Quality 30 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (McDaniel) SSID McDaniel Frequency 2462000 kHz Channel Number 11 Name McDaniel Signal Strength/Quality 26 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (NETGEAR) SSID NETGEAR Frequency 2437000 kHz Channel Number 6 Name NETGEAR Signal Strength/Quality 15 Security Disabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network No Cipher algorithm is enabled/supported Default Auth used to join this network for the first time IEEE 802.11 Open System authentication algorithm Wi-Fi (NETGEAR14) SSID NETGEAR14 Frequency 2417000 kHz Channel Number 2 Name NETGEAR14 Signal Strength/Quality 99 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags Currently Connected to this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (NETGEAR14-5G) SSID NETGEAR14-5G Frequency 5765000 kHz Channel Number 153 Name NETGEAR14-5G Signal Strength/Quality 99 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (xfinitywifi) SSID xfinitywifi Frequency 2462000 kHz Channel Number 11 Name xfinitywifi Signal Strength/Quality 26 Security Disabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network No Cipher algorithm is enabled/supported Default Auth used to join this network for the first time IEEE 802.11 Open System authentication algorithm WinHTTPInfo WinHTTPSessionProxyType No proxy Session Proxy Session Proxy Bypass Connect Retries 5 Connect Timeout (ms) 60,000 HTTP Version HTTP 1.1 Max Connects Per 1.0 Servers INFINITE Max Connects Per Servers INFINITE Max HTTP automatic redirects 10 Max HTTP status continue 10 Send Timeout (ms) 30,000 IEProxy Auto Detect Yes IEProxy Auto Config IEProxy IEProxy Bypass Default Proxy Config Access Type No proxy Default Config Proxy Default Config Proxy Bypass Sharing and Discovery Network Discovery Disabled File and Printer Sharing Disabled File and printer sharing service Enabled Simple File Sharing Enabled Administrative Shares Enabled Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Adapters List Enabled Bluetooth Device (Personal Area Network) Connection Name Bluetooth Network Connection DHCP enabled Yes MAC Address 28-C6-3F-44-BB-04 Intel(R) Dual Band Wireless-AC 3168 Connection Name Wi-Fi NetBIOS over TCPIP Yes DHCP enabled Yes MAC Address 28-C6-3F-44-BB-00 IP Address 192.168.1.25 Subnet mask 255.255.255.0 Gateway server 192.168.1.1 DHCP 192.168.1.1 DNS Server 192.168.1.1 Kaspersky Security Data Escort Adapter Connection Name Ethernet DHCP enabled No MAC Address 00-FF-50-93-9E-F9 Realtek PCIe GBE Family Controller #2 Connection Name Ethernet 2 DHCP enabled Yes MAC Address AC-E2-D3-3A-4A-F4 Network Shares No network shares Current TCP Connections AppleMobileDeviceService.exe (4056) Local 127.0.0.1:27015 LISTEN Local 127.0.0.1:27015 ESTABLISHED Remote 127.0.0.1:50062 (Querying... ) Local 127.0.0.1:49676 ESTABLISHED Remote 127.0.0.1:5354 (Querying... ) Local 127.0.0.1:49670 ESTABLISHED Remote 127.0.0.1:5354 (Querying... ) avp.exe (3484) Local 127.0.0.1:49682 LISTEN Local 127.0.0.1:49682 ESTABLISHED Remote 127.0.0.1:53888 (Querying... ) Local 127.0.0.1:55024 ESTABLISHED Remote 127.0.0.1:55025 (Querying... ) Local 127.0.0.1:55025 ESTABLISHED Remote 127.0.0.1:55024 (Querying... ) Local 192.168.1.25:58052 ESTABLISHED Remote 62.128.100.49:443 (Querying... ) (HTTPS) Local 192.168.1.25:55026 ESTABLISHED Remote 213.155.156.74:443 (Querying... ) (HTTPS) Local 192.168.1.25:58026 CLOSE-WAIT Remote 81.19.104.172:443 (Querying... ) (HTTPS) Local 192.168.1.25:58051 ESTABLISHED Remote 38.113.165.183:443 (Querying... ) (HTTPS) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (13596) Local 127.0.0.1:17600 LISTEN Local 192.168.1.25:54932 ESTABLISHED Remote 162.125.9.3:443 (Querying... ) (HTTPS) Local 192.168.1.25:55559 CLOSE-WAIT Remote 3.231.46.251:443 (Querying... ) (HTTPS) Local 192.168.1.25:56575 CLOSE-WAIT Remote 162.125.9.7:443 (Querying... ) (HTTPS) Local 192.168.1.25:56878 CLOSE-WAIT Remote 162.125.9.3:443 (Querying... ) (HTTPS) Local 192.168.1.25:57591 CLOSE-WAIT Remote 162.125.36.1:443 (Querying... ) (HTTPS) Local 192.168.1.25:57644 ESTABLISHED Remote 162.125.19.131:443 (Querying... ) (HTTPS) Local 127.0.0.1:54955 ESTABLISHED Remote 127.0.0.1:54954 (Querying... ) Local 127.0.0.1:50106 ESTABLISHED Remote 127.0.0.1:50105 (Querying... ) Local 127.0.0.1:54954 ESTABLISHED Remote 127.0.0.1:54955 (Querying... ) Local 127.0.0.1:50105 ESTABLISHED Remote 127.0.0.1:50106 (Querying... ) Local 0.0.0.0:17500 LISTEN Local 127.0.0.1:843 LISTEN Local 192.168.1.25:57624 ESTABLISHED Remote 162.125.19.131:443 (Querying... ) (HTTPS) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE (4296) Local 192.168.1.25:58044 ESTABLISHED Remote 52.114.128.10:443 (Querying... ) (HTTPS) C:\Program Files\iTunes\iTunesHelper.exe (13220) Local 127.0.0.1:50062 ESTABLISHED Remote 127.0.0.1:27015 (Querying... ) C:\Program Files\WindowsApps\Fitbit.Fitbit_2.44.1997.0_x64__6mqt6hf9g46tw\Fitbit.exe (10036) Local 192.168.1.25:54850 ESTABLISHED Remote 72.21.91.29:80 (Querying... ) (HTTP) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11911.1001.9.0_x64__8wekyb3d8bbwe\WinStore.App.exe (20396) Local 192.168.1.25:56049 CLOSE-WAIT Remote 72.246.253.227:80 (Querying... ) (HTTP) Local 192.168.1.25:56048 CLOSE-WAIT Remote 72.246.253.227:80 (Querying... ) (HTTP) Local 192.168.1.25:56047 CLOSE-WAIT Remote 72.246.253.227:80 (Querying... ) (HTTP) Local 192.168.1.25:56023 CLOSE-WAIT Remote 23.0.175.186:443 (Querying... ) (HTTPS) Local 192.168.1.25:55935 CLOSE-WAIT Remote 104.97.178.33:443 (Querying... ) (HTTPS) Local 192.168.1.25:55934 CLOSE-WAIT Remote 104.97.178.33:443 (Querying... ) (HTTPS) Local 192.168.1.25:56046 CLOSE-WAIT Remote 72.246.253.227:80 (Querying... ) (HTTP) Local 192.168.1.25:56050 CLOSE-WAIT Remote 72.246.253.227:80 (Querying... ) (HTTP) Local 192.168.1.25:56024 CLOSE-WAIT Remote 23.0.175.186:443 (Querying... ) (HTTPS) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe (3376) Local 192.168.1.25:55528 CLOSE-WAIT Remote 23.55.228.35:443 (Querying... ) (HTTPS) C:\PROGRA~1\HP\HPOFFI~1\Bin\HPNETW~1.EXE (14328) Local 192.168.1.25:55085 ESTABLISHED Remote 192.168.1.10:8080 (Querying... ) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe (3360) Local 192.168.1.25:58048 ESTABLISHED Remote 13.107.21.200:443 (Querying... ) (HTTPS) HPJumpStartBridge.exe (8108) Local 0.0.0.0:8733 LISTEN ksde.exe (7000) Local 127.0.0.1:54961 ESTABLISHED Remote 127.0.0.1:54962 (Querying... ) Local 127.0.0.1:54962 ESTABLISHED Remote 127.0.0.1:54961 (Querying... ) Local 192.168.1.25:58024 CLOSE-WAIT Remote 62.67.238.151:443 (Querying... ) (HTTPS) Local 192.168.1.25:54968 ESTABLISHED Remote 213.155.156.71:443 (Querying... ) (HTTPS) lsass.exe (760) Local 0.0.0.0:49664 LISTEN MBAMService.exe (5380) Local 127.0.0.1:43227 LISTEN mDNSResponder.exe (3300) Local 127.0.0.1:5354 LISTEN Local 127.0.0.1:5354 ESTABLISHED Remote 127.0.0.1:49670 (Querying... ) Local 127.0.0.1:5354 ESTABLISHED Remote 127.0.0.1:49676 (Querying... ) OfficeClickToRun.exe (14836) Local 192.168.1.25:58049 ESTABLISHED Remote 52.109.8.20:443 (Querying... ) (HTTPS) services.exe (740) Local 0.0.0.0:49706 LISTEN spoolsv.exe (3764) Local 0.0.0.0:49668 LISTEN svchost.exe (1248) Local 0.0.0.0:135 (DCE) LISTEN svchost.exe (1872) Local 0.0.0.0:49667 LISTEN svchost.exe (1896) Local 0.0.0.0:49666 LISTEN svchost.exe (4480) Local 192.168.1.25:55019 ESTABLISHED Remote 52.179.224.121:443 (Querying... ) (HTTPS) svchost.exe (4616) Local 0.0.0.0:5040 LISTEN System Process Local 192.168.1.25:58046 TIME-WAIT Remote 66.110.49.34:443 (Querying... ) (HTTPS) Local 192.168.1.25:58043 TIME-WAIT Remote 52.109.8.21:443 (Querying... ) (HTTPS) Local 192.168.1.25:58041 TIME-WAIT Remote 104.18.21.226:80 (Querying... ) (HTTP) Local 192.168.1.25:58039 TIME-WAIT Remote 192.168.1.11:60000 (Querying... ) Local 192.168.1.25:58037 TIME-WAIT Remote 62.128.100.49:443 (Querying... ) (HTTPS) Local 192.168.1.25:58036 TIME-WAIT Remote 38.113.165.183:443 (Querying... ) (HTTPS) Local 192.168.1.25:58034 TIME-WAIT Remote 66.110.49.34:443 (Querying... ) (HTTPS) Local 192.168.1.25:58042 TIME-WAIT Remote 192.168.1.11:60000 (Querying... ) Local 192.168.1.25:58050 TIME-WAIT Remote 66.110.49.34:443 (Querying... ) (HTTPS) Local 192.168.1.25:58047 TIME-WAIT Remote 66.110.49.32:443 (Querying... ) (HTTPS) System Process Local 0.0.0.0:445 (Windows shares) LISTEN Local 0.0.0.0:5357 LISTEN Local 192.168.1.25:139 (NetBIOS session service) LISTEN wininit.exe (920) Local 0.0.0.0:49665 LISTEN Generated with Speccy v1.32.740