Summary Operating System Windows 10 Pro 64-bit CPU Intel Pentium G2020 @ 2.90GHz 36 °C Ivy Bridge 22nm Technology RAM 4.00GB Single-Channel DDR3 @ 665MHz (9-9-9-24) Motherboard Dell Inc. 084J0R (CPU 1) 31 °C Graphics 2D FHD LG TV (1920x1080@59Hz) Intel HD Graphics (Dell) Storage 465GB Western Digital WDC WD5000AAKX-75U6AA0 (SATA ) 40 °C Optical Drives HL-DT-ST DVD+-RW GHA2N Audio Intel Display Audio Operating System Windows 10 Pro 64-bit Computer type: Desktop Installation Date: 29/01/2020 17:02:07 Windows Security Center User Account Control (UAC) Enabled Notify level 2 - Default Windows Update AutoUpdate Download Automatically and Install at Set Scheduled time Schedule Frequency Every Day Schedule Time Windows Defender Windows Defender Disabled Firewall Firewall Enabled Display Name Bitdefender Firewall Antivirus Windows Defender Antivirus Disabled Virus Signature Database Up to date Bitdefender Antivirus Antivirus Enabled Virus Signature Database Up to date .NET Frameworks installed v4.8 Full v4.8 Client v3.5 SP1 v3.0 SP2 v2.0 SP2 Internet Explorer Version 11.657.18362.0 PowerShell Version 5.1.18362.1 Environment Variables USERPROFILE C:\Users\Eddie SystemRoot C:\WINDOWS User Variables OneDrive C:\Users\Eddie\OneDrive Path C:\Users\Eddie\AppData\Local\Microsoft\WindowsApps TEMP C:\Users\Eddie\AppData\Local\Temp TMP C:\Users\Eddie\AppData\Local\Temp Machine Variables ComSpec C:\WINDOWS\system32\cmd.exe DriverData C:\Windows\System32\Drivers\DriverData FP_NO_HOST_CHECK NO NUMBER_OF_PROCESSORS 2 OS Windows_NT Path C:\Program Files (x86)\Intel\iCLS Client\ C:\Program Files\Intel\iCLS Client\ C:\WINDOWS\system32 C:\WINDOWS C:\WINDOWS\System32\Wbem C:\WINDOWS\System32\WindowsPowerShell\v1.0\ C:\WINDOWS\System32\OpenSSH\ PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE AMD64 PROCESSOR_IDENTIFIER Intel64 Family 6 Model 58 Stepping 9, GenuineIntel PROCESSOR_LEVEL 6 PROCESSOR_REVISION 3a09 PSModulePath C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules\ TEMP C:\WINDOWS\TEMP TMP C:\WINDOWS\TEMP USERNAME SYSTEM windir C:\WINDOWS windows_tracing_flags 3 windows_tracing_logfile C:\BVTBin\Tests\installpackage\csilogfile.log Power Profile Active power scheme High performance Hibernation Enabled Turn Off Monitor after: (On AC Power) Never Turn Off Hard Disk after: (On AC Power) Never Suspend after: (On AC Power) Never Screen saver Disabled Uptime Current Session Current Time 13/02/2020 12:45:29 Current Uptime 5,149 sec (0 d, 01 h, 25 m, 49 s) Last Boot Time 13/02/2020 11:19:40 Services Running Application Host Helper Service Running Application Information Running Background Tasks Infrastructure Service Running Base Filtering Engine Running Bitdefender Auxiliary Service Running Bitdefender Desktop Update Service Running Bitdefender Device Management Service Running Bitdefender Product Agent Service Running Bitdefender Protected Service Running Bitdefender RedLine Service Running Bitdefender Virus Shield Running Bitdefender Vpn Service Running Clipboard User Service_40602 Running CNG Key Isolation Running COM+ Event System Running Computer Browser Running Connected Devices Platform Service Running Connected Devices Platform User Service_40602 Running Connected User Experiences and Telemetry Running CoreMessaging Running Credential Manager Running Cryptographic Services Running Data Usage Running DCOM Server Process Launcher Running Delivery Optimization Running Device Association Service Running DHCP Client Running Diagnostic Policy Service Running Diagnostic Service Host Running Diagnostic System Host Running Display Policy Service Running Distributed Link Tracking Client Running DNS Client Running Human Interface Device Service Running IKE and AuthIP IPsec Keying Modules Running IP Helper Running IPsec Policy Agent Running Local Session Manager Running Message Queuing Running Microsoft Store Install Service Running Net.Msmq Listener Adapter Running Net.Pipe Listener Adapter Running Net.Tcp Listener Adapter Running Net.Tcp Port Sharing Service Running Network Connection Broker Running Network List Service Running Network Location Awareness Running Network Store Interface Service Running Offline Files Running Payments and NFC/SE Manager Running Peer Name Resolution Protocol Running Peer Networking Identity Manager Running Plug and Play Running Power Running Print Spooler Running Program Compatibility Assistant Service Running Remote Access Connection Manager Running Remote Procedure Call (RPC) Running RPC Endpoint Mapper Running Secure Socket Tunneling Protocol Service Running Security Accounts Manager Running Security Center Running Server Running Shell Hardware Detection Running SSDP Discovery Running State Repository Service Running Storage Service Running Sync Host_40602 Running SysMain Running System Event Notification Service Running System Events Broker Running System Guard Runtime Monitor Broker Running Task Scheduler Running TCP/IP NetBIOS Helper Running Themes Running Time Broker Running Touch Keyboard and Handwriting Panel Service Running Update Orchestrator Service Running UPnP Device Host Running User Manager Running User Profile Service Running Web Account Manager Running Windows Audio Running Windows Audio Endpoint Builder Running Windows Backup Running Windows Connection Manager Running Windows Defender Firewall Running Windows Event Log Running Windows Font Cache Service Running Windows Image Acquisition (WIA) Running Windows Management Instrumentation Running Windows Process Activation Service Running Windows Push Notifications System Service Running Windows Push Notifications User Service_40602 Running Windows Search Running Windows Security Service Running WinHTTP Web Proxy Auto-Discovery Service Running WLAN AutoConfig Running Workstation Stopped ActiveX Installer (AxInstSV) Stopped AfVpnService Stopped Agent Activation Runtime_40602 Stopped AllJoyn Router Service Stopped App Readiness Stopped Application Identity Stopped Application Layer Gateway Service Stopped Application Management Stopped AppX Deployment Service (AppXSVC) Stopped ASP.NET State Service Stopped AssignedAccessManager Service Stopped Auto Time Zone Updater Stopped AVCTP service Stopped Background Intelligent Transfer Service Stopped BitLocker Drive Encryption Service Stopped Block Level Backup Engine Service Stopped Bluetooth Audio Gateway Service Stopped Bluetooth Support Service Stopped Bluetooth User Support Service_40602 Stopped BranchCache Stopped Capability Access Manager Service Stopped CaptureService_40602 Stopped Cellular Time Stopped Certificate Propagation Stopped Client License Service (ClipSVC) Stopped COM+ System Application Stopped ConsentUX_40602 Stopped Contact Data_40602 Stopped CredentialEnrollmentManagerUserSvc_40602 Stopped Data Sharing Service Stopped Device Install Service Stopped Device Management Enrollment Service Stopped Device Management Wireless Application Protocol (WAP) Push message Routing Service Stopped Device Setup Manager Stopped DeviceAssociationBroker_40602 Stopped DevicePicker_40602 Stopped DevicesFlow_40602 Stopped DevQuery Background Discovery Broker Stopped Diagnostic Execution Service Stopped Display Enhancement Service Stopped Distributed Transaction Coordinator Stopped Downloaded Maps Manager Stopped Embedded Mode Stopped Encrypting File System (EFS) Stopped Enterprise App Management Service Stopped EPSON V3 Service4(01) Stopped EPSON V5 Service4(01) Stopped Extensible Authentication Protocol Stopped Fax Stopped File History Service Stopped Function Discovery Provider Host Stopped Function Discovery Resource Publication Stopped GameDVR and Broadcast User Service_40602 Stopped Geolocation Service Stopped Google Chrome Elevation Service Stopped Google Update Service (gupdate) Stopped Google Update Service (gupdatem) Stopped GraphicsPerfSvc Stopped Group Policy Client Stopped HV Host Service Stopped Hyper-V Data Exchange Service Stopped Hyper-V Guest Service Interface Stopped Hyper-V Guest Shutdown Service Stopped Hyper-V Heartbeat Service Stopped Hyper-V PowerShell Direct Service Stopped Hyper-V Remote Desktop Virtualization Service Stopped Hyper-V Time Synchronization Service Stopped Hyper-V Volume Shadow Copy Requestor Stopped Intel Capability Licensing Service Interface Stopped Intel Content Protection HECI Service Stopped Intel HD Graphics Control Panel Service Stopped Intel Management and Security Application Local Management Service Stopped Intel Management and Security Application User Notification Service Stopped Internet Connection Sharing (ICS) Stopped IP Translation Configuration Service Stopped KtmRm for Distributed Transaction Coordinator Stopped Language Experience Service Stopped Link-Layer Topology Discovery Mapper Stopped Local Profile Assistant Service Stopped Malwarebytes Installer Service Stopped MessagingService_40602 Stopped Microsoft Diagnostics Hub Standard Collector Service Stopped Microsoft Account Sign-in Assistant Stopped Microsoft App-V Client Stopped Microsoft iSCSI Initiator Service Stopped Microsoft Passport Stopped Microsoft Passport Container Stopped Microsoft Software Shadow Copy Provider Stopped Microsoft Storage Spaces SMP Stopped Microsoft Windows SMS Router Service. Stopped Mozilla Maintenance Service Stopped Natural Authentication Stopped Netlogon Stopped Network Connected Devices Auto-Setup Stopped Network Connections Stopped Network Connectivity Assistant Stopped Network Setup Service Stopped Office Source Engine Stopped OpenSSH Authentication Agent Stopped Optimize drives Stopped Parental Controls Stopped Peer Networking Grouping Stopped Performance Counter DLL Host Stopped Performance Logs & Alerts Stopped Phone Service Stopped PNRP Machine Name Publication Service Stopped Portable Device Enumerator Service Stopped Printer Extensions and Notifications Stopped PrintWorkflow_40602 Stopped Problem Reports and Solutions Control Panel Support Stopped Quality Windows Audio Video Experience Stopped Radio Management Service Stopped Recommended Troubleshooting Service Stopped Remote Access Auto Connection Manager Stopped Remote Desktop Configuration Stopped Remote Desktop Services Stopped Remote Desktop Services UserMode Port Redirector Stopped Remote Procedure Call (RPC) Locator Stopped Remote Registry Stopped Retail Demo Service Stopped Routing and Remote Access Stopped Secondary Logon Stopped Sensor Data Service Stopped Sensor Monitoring Service Stopped Sensor Service Stopped Shared PC Account Manager Stopped Smart Card Stopped Smart Card Device Enumeration Service Stopped Smart Card Removal Policy Stopped SNMP Trap Stopped Software Protection Stopped Spatial Data Service Stopped Spot Verifier Stopped Still Image Acquisition Events Stopped Storage Tiers Management Stopped Telephony Stopped User Data Access_40602 Stopped User Data Storage_40602 Stopped User Experience Virtualization Service Stopped Virtual Disk Stopped Volume Shadow Copy Stopped Volumetric Audio Compositor Service Stopped W3C Logging Service Stopped WalletService Stopped WarpJITSvc Stopped WebClient Stopped Wi-Fi Direct Services Connection Manager Service Stopped Windows Biometric Service Stopped Windows Camera Frame Server Stopped Windows Connect Now - Config Registrar Stopped Windows Defender Advanced Threat Protection Service Stopped Windows Defender Antivirus Network Inspection Service Stopped Windows Defender Antivirus Service Stopped Windows Encryption Provider Host Service Stopped Windows Error Reporting Service Stopped Windows Event Collector Stopped Windows Insider Service Stopped Windows Installer Stopped Windows License Manager Service Stopped Windows Management Service Stopped Windows Media Player Network Sharing Service Stopped Windows Mobile Hotspot Service Stopped Windows Modules Installer Stopped Windows Perception Service Stopped Windows Perception Simulation Service Stopped Windows Presentation Foundation Font Cache 3.0.0.0 Stopped Windows PushToInstall Service Stopped Windows Remote Management (WS-Management) Stopped Windows Time Stopped Windows Update Stopped Windows Update Medic Service Stopped Wired AutoConfig Stopped WMI Performance Adapter Stopped Work Folders Stopped WWAN AutoConfig Stopped Xbox Accessory Management Service Stopped Xbox Live Auth Manager Stopped Xbox Live Game Save Stopped Xbox Live Networking Service TimeZone TimeZone GMT Language English (United Kingdom) Location United Kingdom Format English (United Kingdom) Currency Ł Date Format dd/MM/yyyy Time Format HH:mm:ss Scheduler 13/02/2020 13:17; GoogleUpdateTaskMachineUA 13/02/2020 20:08; OneDrive Standalone Update Task-S-1-5-21-3631865646-3207491450-1134192123-1000 14/02/2020 10:07; AvastUpdateTaskMachineCore 14/02/2020 11:17; GoogleUpdateTaskMachineCore Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C Hotfixes Installed 13/02/2020 Windows Malicious Software Removal Tool x64 - February 2020 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 13/02/2020 2020-02 Cumulative Update for Windows 10 Version 1909 for x64-based Systems (KB4532693) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 01/02/2020 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.309.167.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 31/01/2020 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.309.102.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 31/01/2020 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.309.99.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 31/01/2020 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.309.97.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 29/01/2020 2020-01 Cumulative Update for Windows 10 Version 1909 for x64-based Systems (KB4532695) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 29/01/2020 Update for Windows Defender Antivirus antimalware platform - KB4052623 (Version 4.18.1911.3) This package will update Windows Defender Antivirus antimalware platform’s components on the user machine. 29/01/2020 Intel Corporation driver update for Intel(R) HD Graphics This driver was provided by Intel Corporation for support of Intel HD Graphics 29/01/2020 2020-01 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1909 for x64 (KB4534132) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 29/01/2020 2020-01 Cumulative Update for Windows 10 Version 1909 for x64-based Systems (KB4528760) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 29/01/2020 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.307.3222.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. Not Installed 13/02/2020 2020-02 Security Update for Adobe Flash Player for Windows 10 Version 1909 for x64-based Systems (KB4537759) Installation Status Failed A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. System Folders Application Data C:\ProgramData Cookies C:\Users\Eddie\AppData\Local\Microsoft\Windows\INetCookies Desktop C:\Users\Eddie\Desktop Documents C:\Users\Public\Documents Fonts C:\WINDOWS\Fonts Global Favorites C:\Users\Eddie\Favorites Internet History C:\Users\Eddie\AppData\Local\Microsoft\Windows\History Local Application Data C:\Users\Eddie\AppData\Local Music C:\Users\Public\Music Path for burning CD C:\Users\Eddie\AppData\Local\Microsoft\Windows\Burn\Burn Physical Desktop C:\Users\Eddie\Desktop Pictures C:\Users\Public\Pictures Program Files C:\Program Files Public Desktop C:\Users\Public\Desktop Start Menu C:\ProgramData\Microsoft\Windows\Start Menu Start Menu Programs C:\ProgramData\Microsoft\Windows\Start Menu\Programs Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Templates C:\ProgramData\Microsoft\Windows\Templates Temporary Internet Files C:\Users\Eddie\AppData\Local\Microsoft\Windows\INetCache User Favorites C:\Users\Eddie\Favorites Videos C:\Users\Public\Videos Windows Directory C:\WINDOWS Windows/System C:\WINDOWS\system32 Process List audiodg.exe Process ID 6892 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\audiodg.exe Memory Usage 12 MB Peak Memory Usage 13 MB bdagent.exe Process ID 4268 User Eddie Domain EDDIEDELL Path C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe Memory Usage 17 MB Peak Memory Usage 44 MB bdredline.exe Process ID 2740 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe Memory Usage 2.69 MB Peak Memory Usage 11 MB bdservicehost.exe Process ID 3580 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe Memory Usage 5.95 MB Peak Memory Usage 18 MB bdservicehost.exe Process ID 1860 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe Memory Usage 26 MB Peak Memory Usage 56 MB bdservicehost.exe Process ID 1652 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe Memory Usage 258 MB Peak Memory Usage 501 MB bdtrackersnmh.exe Process ID 8052 User Eddie Domain EDDIEDELL Path C:\Program Files\Bitdefender\Bitdefender Security\bdtrackersnmh.exe Memory Usage 11 MB Peak Memory Usage 13 MB BdVpnApp.exe Process ID 8132 User Eddie Domain EDDIEDELL Path C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnApp.exe Memory Usage 3.06 MB Peak Memory Usage 14 MB BdVpnService.exe Process ID 1976 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnService.exe Memory Usage 8.59 MB Peak Memory Usage 49 MB cmd.exe Process ID 484 User Eddie Domain EDDIEDELL Path C:\Windows\System32\cmd.exe Memory Usage 4.45 MB Peak Memory Usage 4.57 MB conhost.exe Process ID 1560 User Eddie Domain EDDIEDELL Path C:\Windows\System32\conhost.exe Memory Usage 6.18 MB Peak Memory Usage 11 MB conhost.exe Process ID 3876 User Eddie Domain EDDIEDELL Path C:\Windows\System32\conhost.exe Memory Usage 19 MB Peak Memory Usage 19 MB csrss.exe Process ID 576 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 2.16 MB Peak Memory Usage 5.34 MB csrss.exe Process ID 664 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 2.59 MB Peak Memory Usage 13 MB ctfmon.exe Process ID 6416 User Eddie Domain EDDIEDELL Path C:\Windows\System32\ctfmon.exe Memory Usage 8.21 MB Peak Memory Usage 13 MB dasHost.exe Process ID 4228 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\dasHost.exe Memory Usage 1.08 MB Peak Memory Usage 5.42 MB DevMgmtService.exe Process ID 1900 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender\Bitdefender Device Management\DevMgmtService.exe Memory Usage 9.75 MB Peak Memory Usage 29 MB DiscoverySrv.exe Process ID 6516 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender Agent\DiscoverySrv.exe Memory Usage 2.31 MB Peak Memory Usage 12 MB dllhost.exe Process ID 4552 User Eddie Domain EDDIEDELL Path C:\Windows\System32\dllhost.exe Memory Usage 3.11 MB Peak Memory Usage 6.48 MB dllhost.exe Process ID 4616 User Eddie Domain EDDIEDELL Path C:\Windows\System32\dllhost.exe Memory Usage 11 MB Peak Memory Usage 13 MB dwm.exe Process ID 820 User DWM-1 Domain Window Manager Path C:\Windows\System32\dwm.exe Memory Usage 32 MB Peak Memory Usage 49 MB explorer.exe Process ID 6752 User Eddie Domain EDDIEDELL Path C:\Windows\explorer.exe Memory Usage 80 MB Peak Memory Usage 93 MB firefox.exe Process ID 1648 User Eddie Domain EDDIEDELL Path C:\Program Files (x86)\Mozilla Firefox\firefox.exe Memory Usage 44 MB Peak Memory Usage 44 MB firefox.exe Process ID 6948 User Eddie Domain EDDIEDELL Path C:\Program Files (x86)\Mozilla Firefox\firefox.exe Memory Usage 212 MB Peak Memory Usage 467 MB firefox.exe Process ID 4224 User Eddie Domain EDDIEDELL Path C:\Program Files (x86)\Mozilla Firefox\firefox.exe Memory Usage 207 MB Peak Memory Usage 307 MB firefox.exe Process ID 7876 User Eddie Domain EDDIEDELL Path C:\Program Files (x86)\Mozilla Firefox\firefox.exe Memory Usage 64 MB Peak Memory Usage 80 MB firefox.exe Process ID 6644 User Eddie Domain EDDIEDELL Path C:\Program Files (x86)\Mozilla Firefox\firefox.exe Memory Usage 239 MB Peak Memory Usage 580 MB firefox.exe Process ID 5496 User Eddie Domain EDDIEDELL Path C:\Program Files (x86)\Mozilla Firefox\firefox.exe Memory Usage 233 MB Peak Memory Usage 309 MB firefox.exe Process ID 6884 User Eddie Domain EDDIEDELL Path C:\Program Files (x86)\Mozilla Firefox\firefox.exe Memory Usage 51 MB Peak Memory Usage 53 MB firefox.exe Process ID 6936 User Eddie Domain EDDIEDELL Path C:\Program Files (x86)\Mozilla Firefox\firefox.exe Memory Usage 124 MB Peak Memory Usage 145 MB fontdrvhost.exe Process ID 908 User UMFD-0 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 1.07 MB Peak Memory Usage 3.29 MB fontdrvhost.exe Process ID 916 User UMFD-1 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 4.36 MB Peak Memory Usage 6.00 MB lsass.exe Process ID 792 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\lsass.exe Memory Usage 8.96 MB Peak Memory Usage 17 MB Memory Compression Process ID 2564 User SYSTEM Domain NT AUTHORITY Memory Usage 173 MB Peak Memory Usage 185 MB mqsvc.exe Process ID 3776 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\mqsvc.exe Memory Usage 1.62 MB Peak Memory Usage 13 MB notepad.exe Process ID 1760 User Eddie Domain EDDIEDELL Path C:\Windows\System32\notepad.exe Memory Usage 17 MB Peak Memory Usage 17 MB notepad.exe Process ID 4064 User Eddie Domain EDDIEDELL Path C:\Windows\System32\notepad.exe Memory Usage 17 MB Peak Memory Usage 17 MB ProductAgentService.exe Process ID 3960 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender Agent\ProductAgentService.exe Memory Usage 5.49 MB Peak Memory Usage 16 MB Registry Process ID 88 User SYSTEM Domain NT AUTHORITY Memory Usage 30 MB Peak Memory Usage 88 MB RuntimeBroker.exe Process ID 7260 User Eddie Domain EDDIEDELL Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 31 MB Peak Memory Usage 33 MB RuntimeBroker.exe Process ID 7828 User Eddie Domain EDDIEDELL Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 10 MB Peak Memory Usage 23 MB RuntimeBroker.exe Process ID 6004 User Eddie Domain EDDIEDELL Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 14 MB Peak Memory Usage 23 MB SearchFilterHost.exe Process ID 3088 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchFilterHost.exe Memory Usage 12 MB Peak Memory Usage 12 MB SearchIndexer.exe Process ID 4092 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchIndexer.exe Memory Usage 21 MB Peak Memory Usage 21 MB SearchProtocolHost.exe Process ID 3184 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchProtocolHost.exe Memory Usage 19 MB Peak Memory Usage 20 MB SearchUI.exe Process ID 3636 User Eddie Domain EDDIEDELL Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe Memory Usage 62 MB Peak Memory Usage 156 MB SecurityHealthService.exe Process ID 5872 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SecurityHealthService.exe Memory Usage 5.75 MB Peak Memory Usage 11 MB services.exe Process ID 716 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\services.exe Memory Usage 5.31 MB Peak Memory Usage 9.67 MB SgrmBroker.exe Process ID 1360 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SgrmBroker.exe Memory Usage 3.69 MB Peak Memory Usage 6.62 MB sihost.exe Process ID 1152 User Eddie Domain EDDIEDELL Path C:\Windows\System32\sihost.exe Memory Usage 15 MB Peak Memory Usage 24 MB smartscreen.exe Process ID 508 User Eddie Domain EDDIEDELL Path C:\Windows\System32\smartscreen.exe Memory Usage 27 MB Peak Memory Usage 31 MB smss.exe Process ID 476 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\smss.exe Memory Usage 376 KB Peak Memory Usage 1.23 MB SMSvcHost.exe Process ID 5316 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe Memory Usage 628 KB Peak Memory Usage 16 MB SMSvcHost.exe Process ID 3900 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe Memory Usage 1.98 MB Peak Memory Usage 24 MB Speccy64.exe Process ID 7636 User Eddie Domain EDDIEDELL Path C:\Program Files\Speccy\Speccy64.exe Memory Usage 31 MB Peak Memory Usage 32 MB spoolsv.exe Process ID 3392 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\spoolsv.exe Memory Usage 4.30 MB Peak Memory Usage 15 MB StartMenuExperienceHost.exe Process ID 3468 User Eddie Domain EDDIEDELL Path C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe Memory Usage 34 MB Peak Memory Usage 60 MB svchost.exe Process ID 3244 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.43 MB Peak Memory Usage 15 MB svchost.exe Process ID 3320 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.56 MB Peak Memory Usage 12 MB svchost.exe Process ID 3424 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.67 MB Peak Memory Usage 21 MB svchost.exe Process ID 3432 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.26 MB Peak Memory Usage 7.93 MB svchost.exe Process ID 3568 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.91 MB Peak Memory Usage 11 MB svchost.exe Process ID 3592 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.56 MB Peak Memory Usage 11 MB svchost.exe Process ID 3604 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.30 MB Peak Memory Usage 6.28 MB svchost.exe Process ID 3640 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 20 MB Peak Memory Usage 37 MB svchost.exe Process ID 3672 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 52 MB svchost.exe Process ID 3704 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.65 MB Peak Memory Usage 7.87 MB svchost.exe Process ID 3736 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 17 MB svchost.exe Process ID 3848 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.35 MB Peak Memory Usage 11 MB svchost.exe Process ID 3976 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.15 MB Peak Memory Usage 6.60 MB svchost.exe Process ID 3988 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.29 MB Peak Memory Usage 8.07 MB svchost.exe Process ID 4048 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 868 KB Peak Memory Usage 5.55 MB svchost.exe Process ID 4056 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.33 MB Peak Memory Usage 21 MB svchost.exe Process ID 4068 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.04 MB Peak Memory Usage 5.41 MB svchost.exe Process ID 3456 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.82 MB Peak Memory Usage 12 MB svchost.exe Process ID 4592 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.31 MB Peak Memory Usage 12 MB svchost.exe Process ID 4976 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.30 MB Peak Memory Usage 6.90 MB svchost.exe Process ID 4996 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.22 MB Peak Memory Usage 8.31 MB svchost.exe Process ID 5040 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.79 MB Peak Memory Usage 7.52 MB svchost.exe Process ID 5716 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.51 MB Peak Memory Usage 11 MB svchost.exe Process ID 3916 User Eddie Domain EDDIEDELL Path C:\Windows\System32\svchost.exe Memory Usage 3.96 MB Peak Memory Usage 15 MB svchost.exe Process ID 6084 User Eddie Domain EDDIEDELL Path C:\Windows\System32\svchost.exe Memory Usage 7.27 MB Peak Memory Usage 25 MB svchost.exe Process ID 6196 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 14 MB svchost.exe Process ID 6344 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.50 MB Peak Memory Usage 7.80 MB svchost.exe Process ID 900 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.05 MB Peak Memory Usage 3.96 MB svchost.exe Process ID 6524 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.36 MB Peak Memory Usage 15 MB svchost.exe Process ID 6600 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.50 MB Peak Memory Usage 15 MB svchost.exe Process ID 984 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 26 MB svchost.exe Process ID 6980 User Eddie Domain EDDIEDELL Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 16 MB svchost.exe Process ID 272 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.40 MB Peak Memory Usage 11 MB svchost.exe Process ID 512 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.02 MB Peak Memory Usage 8.46 MB svchost.exe Process ID 1052 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.13 MB Peak Memory Usage 6.67 MB svchost.exe Process ID 1092 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.23 MB Peak Memory Usage 8.30 MB svchost.exe Process ID 1120 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.54 MB Peak Memory Usage 10 MB svchost.exe Process ID 1140 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.86 MB Peak Memory Usage 5.81 MB svchost.exe Process ID 1284 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.81 MB Peak Memory Usage 15 MB svchost.exe Process ID 1320 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.08 MB Peak Memory Usage 7.10 MB svchost.exe Process ID 1328 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.75 MB Peak Memory Usage 12 MB svchost.exe Process ID 3440 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.01 MB Peak Memory Usage 15 MB svchost.exe Process ID 4216 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.47 MB Peak Memory Usage 12 MB svchost.exe Process ID 1368 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.46 MB Peak Memory Usage 5.95 MB svchost.exe Process ID 6776 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 38 MB svchost.exe Process ID 1812 User Eddie Domain EDDIEDELL Path C:\Windows\System32\svchost.exe Memory Usage 2.33 MB Peak Memory Usage 13 MB svchost.exe Process ID 644 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.33 MB Peak Memory Usage 10 MB svchost.exe Process ID 1408 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.63 MB Peak Memory Usage 20 MB svchost.exe Process ID 7056 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 824 KB Peak Memory Usage 7.18 MB svchost.exe Process ID 6368 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 20 MB svchost.exe Process ID 1476 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.40 MB Peak Memory Usage 9.71 MB svchost.exe Process ID 1524 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.62 MB Peak Memory Usage 8.00 MB svchost.exe Process ID 1564 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.12 MB Peak Memory Usage 7.42 MB svchost.exe Process ID 1728 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.93 MB Peak Memory Usage 11 MB svchost.exe Process ID 1772 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.65 MB Peak Memory Usage 7.86 MB svchost.exe Process ID 2188 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.30 MB Peak Memory Usage 8.46 MB svchost.exe Process ID 2364 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.11 MB Peak Memory Usage 11 MB svchost.exe Process ID 7312 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.27 MB Peak Memory Usage 6.58 MB svchost.exe Process ID 4872 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.64 MB Peak Memory Usage 6.42 MB svchost.exe Process ID 2416 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.24 MB Peak Memory Usage 7.65 MB svchost.exe Process ID 2428 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.77 MB Peak Memory Usage 8.80 MB svchost.exe Process ID 2824 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 15 MB svchost.exe Process ID 2436 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 57 MB Peak Memory Usage 97 MB svchost.exe Process ID 2456 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.46 MB Peak Memory Usage 5.77 MB svchost.exe Process ID 2504 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.64 MB Peak Memory Usage 8.86 MB svchost.exe Process ID 2544 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.57 MB Peak Memory Usage 8.07 MB svchost.exe Process ID 2692 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.14 MB Peak Memory Usage 7.70 MB svchost.exe Process ID 2724 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.44 MB Peak Memory Usage 7.08 MB svchost.exe Process ID 2816 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.73 MB Peak Memory Usage 7.36 MB svchost.exe Process ID 3004 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.37 MB Peak Memory Usage 13 MB svchost.exe Process ID 1720 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 16 MB svchost.exe Process ID 3124 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.84 MB Peak Memory Usage 6.40 MB svchost.exe Process ID 3132 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.47 MB Peak Memory Usage 9.68 MB svchost.exe Process ID 4108 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 13 MB svchost.exe Process ID 3816 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.40 MB Peak Memory Usage 6.48 MB svchost.exe Process ID 5304 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.89 MB Peak Memory Usage 7.84 MB System Process ID 4 Memory Usage 3.27 MB Peak Memory Usage 3.29 MB System Idle Process Process ID 0 taskhostw.exe Process ID 6184 User Eddie Domain EDDIEDELL Path C:\Windows\System32\taskhostw.exe Memory Usage 8.54 MB Peak Memory Usage 13 MB updatesrv.exe Process ID 4080 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe Memory Usage 8.42 MB Peak Memory Usage 17 MB WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe Process ID 2732 User Eddie Domain EDDIEDELL Path C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe Memory Usage 39 MB Peak Memory Usage 40 MB wininit.exe Process ID 648 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wininit.exe Memory Usage 1.32 MB Peak Memory Usage 6.84 MB winlogon.exe Process ID 752 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\winlogon.exe Memory Usage 2.99 MB Peak Memory Usage 20 MB WmiPrvSE.exe Process ID 3016 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 21 MB Peak Memory Usage 22 MB WmiPrvSE.exe Process ID 3096 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 8.94 MB Peak Memory Usage 8.95 MB WUDFHost.exe Process ID 1740 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\WUDFHost.exe Memory Usage 1.62 MB Peak Memory Usage 8.15 MB Security Options Accounts: Administrator account status Disabled Accounts: Block Microsoft accounts Not Defined Accounts: Guest account status Disabled Accounts: Limit local account use of blank passwords to console logon only Enabled Accounts: Rename administrator account Administrator Accounts: Rename guest account Guest Audit: Audit the access of global system objects Disabled Audit: Audit the use of Backup and Restore privilege Disabled Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings Not Defined Audit: Shut down system immediately if unable to log security audits Disabled DCOM: Machine Access Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined DCOM: Machine Launch Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined Devices: Allow undock without having to log on Enabled Devices: Allowed to format and eject removable media Not Defined Devices: Prevent users from installing printer drivers Disabled Devices: Restrict CD-ROM access to locally logged-on user only Not Defined Devices: Restrict floppy access to locally logged-on user only Not Defined Domain controller: Allow server operators to schedule tasks Not Defined Domain controller: LDAP server signing requirements Not Defined Domain controller: Refuse machine account password changes Not Defined Domain member: Digitally encrypt or sign secure channel data (always) Enabled Domain member: Digitally encrypt secure channel data (when possible) Enabled Domain member: Digitally sign secure channel data (when possible) Enabled Domain member: Disable machine account password changes Disabled Domain member: Maximum machine account password age 30 days Domain member: Require strong (Windows 2000 or later) session key Enabled Interactive logon: Display user information when the session is locked Not Defined Interactive logon: Do not require CTRL+ALT+DEL Not Defined Interactive logon: Don't display last signed-in Disabled Interactive logon: Don't display username at sign-in Not Defined Interactive logon: Machine account lockout threshold Not Defined Interactive logon: Machine inactivity limit Not Defined Interactive logon: Message text for users attempting to log on Interactive logon: Message title for users attempting to log on Interactive logon: Number of previous logons to cache (in case domain controller is not available) 10 logons Interactive logon: Prompt user to change password before expiration 5 days Interactive logon: Require Domain Controller authentication to unlock workstation Disabled Interactive logon: Require Windows Hello for Business or smart card Disabled Interactive logon: Smart card removal behavior No Action Microsoft network client: Digitally sign communications (always) Disabled Microsoft network client: Digitally sign communications (if server agrees) Enabled Microsoft network client: Send unencrypted password to third-party SMB servers Disabled Microsoft network server: Amount of idle time required before suspending session Not Defined Microsoft network server: Attempt S4U2Self to obtain claim information Not Defined Microsoft network server: Digitally sign communications (always) Disabled Microsoft network server: Digitally sign communications (if client agrees) Disabled Microsoft network server: Disconnect clients when logon hours expire Enabled Microsoft network server: Server SPN target name validation level Not Defined Network access: Allow anonymous SID/Name translation Disabled Network access: Do not allow anonymous enumeration of SAM accounts Enabled Network access: Do not allow anonymous enumeration of SAM accounts and shares Disabled Network access: Do not allow storage of passwords and credentials for network authentication Disabled Network access: Let Everyone permissions apply to anonymous users Disabled Network access: Named Pipes that can be accessed anonymously Network access: Remotely accessible registry paths System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion Network access: Remotely accessible registry paths and sub-paths System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog Network access: Restrict anonymous access to Named Pipes and Shares Enabled Network access: Restrict clients allowed to make remote calls to SAM Network access: Shares that can be accessed anonymously Not Defined Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Network security: Allow Local System to use computer identity for NTLM Not Defined Network security: Allow LocalSystem NULL session fallback Not Defined Network security: Allow PKU2U authentication requests to this computer to use online identities. Not Defined Network security: Configure encryption types allowed for Kerberos Not Defined Network security: Do not store LAN Manager hash value on next password change Enabled Network security: Force logoff when logon hours expire Disabled Network security: LAN Manager authentication level Not Defined Network security: LDAP client signing requirements Negotiate signing Network security: Minimum session security for NTLM SSP based (including secure RPC) clients Require 128-bit encryption Network security: Minimum session security for NTLM SSP based (including secure RPC) servers Require 128-bit encryption Network security: Restrict NTLM: Add remote server exceptions for NTLM authentication Not Defined Network security: Restrict NTLM: Add server exceptions in this domain Not Defined Network security: Restrict NTLM: Audit Incoming NTLM Traffic Not Defined Network security: Restrict NTLM: Audit NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Incoming NTLM traffic Not Defined Network security: Restrict NTLM: NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Outgoing NTLM traffic to remote servers Not Defined Recovery console: Allow automatic administrative logon Not Defined Recovery console: Allow floppy copy and access to all drives and all folders Not Defined Shutdown: Allow system to be shut down without having to log on Enabled Shutdown: Clear virtual memory pagefile Disabled System cryptography: Force strong key protection for user keys stored on the computer Not Defined System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing Disabled System objects: Require case insensitivity for non-Windows subsystems Enabled System objects: Strengthen default permissions of internal system objects (e.g. Symbolic Links) Enabled System settings: Optional subsystems Posix System settings: Use Certificate Rules on Windows Executables for Software Restriction Policies Disabled User Account Control: Admin Approval Mode for the Built-in Administrator account Disabled User Account Control: Allow UIAccess applications to prompt for elevation without using the secure desktop Disabled User Account Control: Behavior of the elevation prompt for administrators in Admin Approval Mode Prompt for consent for non-Windows binaries User Account Control: Behavior of the elevation prompt for standard users Prompt for credentials User Account Control: Detect application installations and prompt for elevation Enabled User Account Control: Only elevate executables that are signed and validated Disabled User Account Control: Only elevate UIAccess applications that are installed in secure locations Enabled User Account Control: Run all administrators in Admin Approval Mode Enabled User Account Control: Switch to the secure desktop when prompting for elevation Enabled User Account Control: Virtualize file and registry write failures to per-user locations Enabled Device Tree ACPI x64-based PC Microsoft ACPI-Compliant System ACPI Fan ACPI Fan ACPI Fan ACPI Fan ACPI Fan ACPI Fixed Feature Button ACPI Power Button ACPI Thermal Zone ACPI Thermal Zone Intel Pentium CPU G2020 @ 2.90GHz Intel Pentium CPU G2020 @ 2.90GHz System board PCI bus Intel 7 Series/C216 Chipset Family PCI Express Root Port 1 - 1E10 Intel 7 Series/C216 Chipset Family SMBus Host Controller - 1E22 Intel Management Engine Interface Motherboard resources PCI-to-PCI Bridge System board Xeon processor E3-1200 v2/3rd Gen Core processor DRAM Controller - 0150 Xeon processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151 Intel(R) HD Graphics Generic PnP Monitor Intel(R) USB 3.0 eXtensible Host Controller - 1.0 (Microsoft) USB Root Hub (USB 3.0) Intel(R) 7 Series/C216 Chipset Family USB Enhanced Host Controller - 1E2D USB Root Hub Generic USB Hub USB Mass Storage Device Generic- Compact Flash USB Device Generic- MS/MS-Pro USB Device Generic- SD/MMC USB Device Generic- SM/xD Picture USB Device High Definition Audio Controller High Definition Audio Device Intel(R) Display Audio 2D FHD LG TV (Intel Display Audio) Intel(R) 7 Series/C216 Chipset Family PCI Express Root Port 6 - 1E1A Realtek PCIe GBE Family Controller Intel(R) 7 Series/C216 Chipset Family USB Enhanced Host Controller - 1E26 USB Root Hub Generic USB Hub USB Composite Device USB Input Device (Logitech Download Assistant) HID Keyboard Device USB Input Device HID-compliant consumer control device HID-compliant mouse HID-compliant system controller HID-compliant vendor-defined device USB Input Device HID-compliant vendor-defined device HID-compliant vendor-defined device HID-compliant vendor-defined device Intel(R) B75 Express Chipset LPC Controller - 1E49 Direct memory access controller High precision event timer Legacy device Motherboard resources Motherboard resources Motherboard resources Motherboard resources Numeric data processor Programmable interrupt controller System CMOS/real time clock System timer Intel(R) 7 Series/C216 Chipset Family SATA AHCI Controller - 1E02 HL-DT-ST DVD+-RW GHA2N WDC WD5000AAKX-75U6AA0 CPU Intel Pentium G2020 Cores 2 Threads 2 Name Intel Pentium G2020 Code Name Ivy Bridge Package Socket 1155 LGA Technology 22nm Specification Intel Pentium CPU G2020 @ 2.90GHz Family 6 Extended Family 6 Model A Extended Model 3A Stepping 9 Revision P0 Instructions MMX, SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, Intel 64, NX, VMX Virtualization Supported, Enabled Hyperthreading Not supported Fan Speed 492 RPM Bus Speed 99.8 MHz Stock Core Speed 2900 MHz Stock Bus Speed 100 MHz Average Temperature 36 °C Caches L1 Data Cache Size 2 x 32 KBytes L1 Instructions Cache Size 2 x 32 KBytes L2 Unified Cache Size 2 x 256 KBytes L3 Unified Cache Size 3072 KBytes Cores Core 0 Core Speed 2694.5 MHz Multiplier x 27.0 Bus Speed 99.8 MHz Temperature 36 °C Threads APIC ID: 0 Core 1 Core Speed 2694.5 MHz Multiplier x 27.0 Bus Speed 99.8 MHz Temperature 35 °C Threads APIC ID: 2 RAM Memory slots Total memory slots 2 Used memory slots 1 Free memory slots 1 Memory Type DDR3 Size 4096 MBytes Channels # Single DRAM Frequency 665.4 MHz CAS# Latency (CL) 9 clocks RAS# to CAS# Delay (tRCD) 9 clocks RAS# Precharge (tRP) 9 clocks Cycle Time (tRAS) 24 clocks Command Rate (CR) 1T Physical Memory Memory Usage 62 % Total Physical 3.87 GB Available Physical 1.44 GB Total Virtual 7.75 GB Available Virtual 4.73 GB SPD Number Of SPD Modules 1 Slot #1 Type DDR3 Size 4096 MBytes Manufacturer Nanya Technology Max Bandwidth PC3-12800 (800 MHz) Part Number NT4GC64B8HG0NF-DI Serial Number 3943110679 Week/year 26 / 12 Timing table JEDEC #1 Frequency 381.0 MHz CAS# Latency 5.0 RAS# To CAS# 5 RAS# Precharge 5 tRAS 14 tRC 19 Voltage 1.500 V JEDEC #2 Frequency 457.1 MHz CAS# Latency 6.0 RAS# To CAS# 6 RAS# Precharge 6 tRAS 16 tRC 22 Voltage 1.500 V JEDEC #3 Frequency 533.3 MHz CAS# Latency 7.0 RAS# To CAS# 7 RAS# Precharge 7 tRAS 19 tRC 26 Voltage 1.500 V JEDEC #4 Frequency 609.5 MHz CAS# Latency 8.0 RAS# To CAS# 8 RAS# Precharge 8 tRAS 22 tRC 30 Voltage 1.500 V JEDEC #5 Frequency 685.7 MHz CAS# Latency 9.0 RAS# To CAS# 9 RAS# Precharge 9 tRAS 24 tRC 33 Voltage 1.500 V JEDEC #6 Frequency 761.9 MHz CAS# Latency 10.0 RAS# To CAS# 10 RAS# Precharge 10 tRAS 27 tRC 37 Voltage 1.500 V JEDEC #7 Frequency 800.0 MHz CAS# Latency 11.0 RAS# To CAS# 11 RAS# Precharge 11 tRAS 28 tRC 39 Voltage 1.500 V Motherboard Manufacturer Dell Inc. Model 084J0R (CPU 1) Version A00 Chipset Vendor Intel Chipset Model Ivy Bridge Chipset Revision 09 Southbridge Vendor Intel Southbridge Model P75/B75 Southbridge Revision 04 System Temperature 31 °C BIOS Brand Dell Inc. Version A09 Date 01/02/2013 Voltage CPU CORE 0.792 V MEMORY CONTROLLER 1.464 V +3.3V 2.040 V +5V 2.822 V -5V -11.904 V +5V HIGH THRESHOLD 2.802 V PCI Data Slot PCI-E Slot Type PCI-E Slot Usage In Use Data lanes x16 Slot Designation PCIEX16 Characteristics 3.3V, Shared, PME Slot Number 0 Slot PCI-E Slot Type PCI-E Slot Usage In Use Data lanes x1 Slot Designation PCIEX1 Characteristics 3.3V, Shared, PME Slot Number 1 Slot PCI-E Slot Type PCI-E Slot Usage In Use Data lanes x1 Slot Designation PCIEX1 Characteristics 3.3V, Shared, PME Slot Number 2 Slot PCI-E Slot Type PCI-E Slot Usage In Use Data lanes x1 Slot Designation PCIEX1 Characteristics 3.3V, Shared, PME Slot Number 3 Slot PCI-E Slot Type PCI-E Slot Usage In Use Data lanes x1 Slot Designation PCIEX1 Characteristics 3.3V, Shared, PME Slot Number 4 Graphics Monitor Name 2D FHD LG TV on Intel HD Graphics Current Resolution 1920x1080 pixels Work Resolution 1920x1030 pixels State Enabled, Primary Monitor Width 1920 Monitor Height 1080 Monitor BPP 32 bits per pixel Monitor Frequency 59 Hz Device \\.\DISPLAY1\Monitor0 Intel HD Graphics Manufacturer Intel Model HD Graphics Device ID 8086-0152 Revision A Subvendor Dell (1028) Current Performance Level Level 0 Driver version 10.18.10.4252 Count of performance levels : 1 Level 1 - "Perf Level 0" Storage Hard drives WDC WD5000AAKX-75U6AA0 Manufacturer Western Digital Form Factor GB/3.5-inch Business Unit/Brand Desktop/WD Caviar Heads 16 Cylinders 60,801 Tracks 15,504,255 Sectors 976,768,065 SATA type SATA-III 6.0Gb/s Device type Fixed ATA Standard ATA8-ACS Serial Number WD-WCC2EY593390 Firmware Version Number 19.01H19 LBA Size 48-bit LBA Power On Count 5713 times Power On Time 521.8 days Features S.M.A.R.T., NCQ Max. Transfer Mode SATA III 6.0Gb/s Used Transfer Mode SATA III 6.0Gb/s Interface SATA Capacity 465 GB Real size 500,107,862,016 bytes RAID Type None S.M.A.R.T Status Good Temperature 40 °C Temperature Range OK (less than 50 °C) S.M.A.R.T attributes 01 Attribute name Read Error Rate Real value 0 Current 200 Worst 200 Threshold 51 Raw Value 000000003D Status Good 03 Attribute name Spin-Up Time Real value 3883 ms Current 142 Worst 141 Threshold 21 Raw Value 0000000F2B Status Good 04 Attribute name Start/Stop Count Real value 5,735 Current 95 Worst 95 Threshold 0 Raw Value 0000001667 Status Good 05 Attribute name Reallocated Sectors Count Real value 0 Current 200 Worst 200 Threshold 140 Raw Value 0000000000 Status Good 07 Attribute name Seek Error Rate Real value 0 Current 100 Worst 253 Threshold 0 Raw Value 0000000000 Status Good 09 Attribute name Power-On Hours (POH) Real value 521d 18h Current 83 Worst 83 Threshold 0 Raw Value 00000030EA Status Good 0A Attribute name Spin Retry Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good 0B Attribute name Recalibration Retries Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good 0C Attribute name Device Power Cycle Count Real value 5,713 Current 95 Worst 95 Threshold 0 Raw Value 0000001651 Status Good C0 Attribute name Power-off Retract Count Real value 56 Current 200 Worst 200 Threshold 0 Raw Value 0000000038 Status Good C1 Attribute name Load/Unload Cycle Count Real value 5,678 Current 199 Worst 199 Threshold 0 Raw Value 000000162E Status Good C2 Attribute name Temperature Real value 40 °C Current 103 Worst 100 Threshold 0 Raw Value 0000000028 Status Good C4 Attribute name Reallocation Event Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good C5 Attribute name Current Pending Sector Count Real value 1 Current 200 Worst 200 Threshold 0 Raw Value 0000000001 Status Good C6 Attribute name Uncorrectable Sector Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good C7 Attribute name UltraDMA CRC Error Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good C8 Attribute name Write Error Rate / Multi-Zone Error Rate Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good F0 Attribute name Head Flying Hours Real value 497d 8h Current 84 Worst 84 Threshold 0 Raw Value 0000002EA0 Status Good F1 Attribute name Total LBAs Written Real value 22,604,535,160 Current 200 Worst 200 Threshold 0 Raw Value 004355D578 Status Good F2 Attribute name Total LBAs Read Real value 29,744,068,507 Current 200 Worst 200 Threshold 0 Raw Value 00ECE2779B Status Good Partition 0 Partition ID Disk #0, Partition #0 Size 39.1 MB Partition 1 Partition ID Disk #0, Partition #1 File System NTFS Volume Serial Number 30395C52 Size 9.22 GB Used Space 5.15 GB (55%) Free Space 4.07 GB (45%) Partition 2 Partition ID Disk #0, Partition #2 Disk Letter C: File System NTFS Volume Serial Number D43B6F09 Size 456 GB Used Space 48 GB (10%) Free Space 408 GB (90%) Optical Drives HL-DT-ST DVD+-RW GHA2N Media Type DVD Writer Name HL-DT-ST DVD+-RW GHA2N Availability Running/Full Power Capabilities Random Access, Supports Writing, Supports Removable Media Read capabilities CD-R, CD-RW, CD-ROM, DVD-RAM, DVD-ROM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL Write capabilities CD-R, CD-RW, DVD-RAM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL Config Manager Error Code Device is working properly Config Manager User Config FALSE Drive D: Media Loaded FALSE SCSI Bus 4 SCSI Logical Unit 0 SCSI Port 0 SCSI Target Id 0 Status OK Audio Sound Cards High Definition Audio Device Intel Display Audio Playback Device 2D FHD LG TV (Intel Display Audio) Peripherals HID Keyboard Device Device Kind Keyboard Device Name HID Keyboard Device Vendor Logitech Location USB Input Device (Logitech Download Assistant) Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\kbdhid.sys File C:\WINDOWS\system32\DRIVERS\kbdclass.sys HID-compliant mouse Device Kind Mouse Device Name HID-compliant mouse Vendor Logitech Location USB Input Device Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\mouhid.sys File C:\WINDOWS\system32\DRIVERS\mouclass.sys Compact Flash Device Kind Portable Device Device Name Compact Flash Vendor GENERIC- Comment F:\ Location Volume Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\WUDFRd.sys SM/xD Picture Device Kind Portable Device Device Name SM/xD Picture Vendor GENERIC- Comment G:\ Location Volume Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\WUDFRd.sys MS/MS-Pro Device Kind Portable Device Device Name MS/MS-Pro Vendor GENERIC- Comment H:\ Location Volume Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\WUDFRd.sys SD/MMC Device Kind Portable Device Device Name SD/MMC Vendor GENERIC- Comment E:\ Location Volume Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\WUDFRd.sys Printers EPSON SX410 Series Printer Port USB002 Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 360 * 360 dpi Color Status Unknown Driver Driver Name EPSON SX410 Series (v5.10) Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IMAIFCE.DLL Fax Printer Port SHRFAX: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 200 * 200 dpi Monochrome Status Unknown Driver Driver Name Microsoft Shared Fax Driver (v4.00) Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\FXSDRV.DLL Microsoft Print to PDF (Default Printer) Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft Print To PDF (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ce3301b66255a0fb\Amd64\mxdwdrv.dll Microsoft XPS Document Writer Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft XPS Document Writer v4 (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ce3301b66255a0fb\Amd64\mxdwdrv.dll Network You are connected to the internet Connected through Realtek PCIe GBE Family Controller IP Address 192.168.132.148 Subnet mask 255.255.255.0 Gateway server 192.168.132.1 Preferred DNS server 192.168.132.1 DHCP Enabled DHCP server 192.168.132.1 External IP Address 109.146.104.107 Adapter Type Ethernet NetBIOS over TCP/IP Enabled via DHCP NETBIOS Node Type Hybrid node Link Speed 0 Bps Computer Name NetBIOS Name EDDIEDELL DNS Name EddieDell Membership Part of workgroup Workgroup WORKGROUP Remote Desktop Disabled Console State Active Domain EDDIEDELL WinInet Info LAN Connection Local system uses a local area network to connect to the Internet Local system has RAS to connect to the Internet Wi-Fi Info Wi-Fi not enabled WinHTTPInfo WinHTTPSessionProxyType No proxy Session Proxy Session Proxy Bypass Connect Retries 5 Connect Timeout (ms) 60,000 HTTP Version HTTP 1.1 Max Connects Per 1.0 Servers INFINITE Max Connects Per Servers INFINITE Max HTTP automatic redirects 10 Max HTTP status continue 10 Send Timeout (ms) 30,000 IEProxy Auto Detect Yes IEProxy Auto Config IEProxy IEProxy Bypass Default Proxy Config Access Type No proxy Default Config Proxy Default Config Proxy Bypass Sharing and Discovery Network Discovery Disabled File and Printer Sharing Enabled File and printer sharing service Enabled Simple File Sharing Enabled Administrative Shares Enabled Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Adapters List Enabled AnchorFree TAP-Windows Adapter V9 Connection Name Ethernet DHCP enabled Yes MAC Address 00-FF-AF-EA-9F-22 Realtek PCIe GBE Family Controller Connection Name Local Area Connection NetBIOS over TCPIP Yes DHCP enabled Yes MAC Address A4-1F-72-78-3B-6A IP Address 192.168.132.148 Subnet mask 255.255.255.0 Gateway server 192.168.132.1 DHCP 192.168.132.1 DNS Server 192.168.132.1 Network Shares Users C:\Users Current TCP Connections bdservicehost.exe (1652) Local 127.0.0.1:49668 ESTABLISHED Remote 127.0.0.1:49669 (Querying... ) Local 127.0.0.1:49669 ESTABLISHED Remote 127.0.0.1:49668 (Querying... ) Local 192.168.132.148:50407 ESTABLISHED Remote 52.30.208.166:443 (Querying... ) (HTTPS) Local 192.168.132.148:50322 ESTABLISHED Remote 34.255.185.237:443 (Querying... ) (HTTPS) Local 127.0.0.1:49842 ESTABLISHED Remote 127.0.0.1:49843 (Querying... ) Local 192.168.132.148:50394 ESTABLISHED Remote 104.17.107.108:443 (Querying... ) (HTTPS) Local 127.0.0.1:49843 ESTABLISHED Remote 127.0.0.1:49842 (Querying... ) bdservicehost.exe (1860) Local 127.0.0.1:49709 ESTABLISHED Remote 127.0.0.1:49710 (Querying... ) Local 127.0.0.1:49710 ESTABLISHED Remote 127.0.0.1:49709 (Querying... ) BdVpnService.exe (1976) Local 127.0.0.1:49742 ESTABLISHED Remote 127.0.0.1:49743 (Querying... ) Local 127.0.0.1:49743 ESTABLISHED Remote 127.0.0.1:49742 (Querying... ) Local 192.168.132.148:50137 ESTABLISHED Remote 104.17.108.108:443 (Querying... ) (HTTPS) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (1648) Local 127.0.0.1:50417 ESTABLISHED Remote 127.0.0.1:50416 (Querying... ) Local 127.0.0.1:50416 ESTABLISHED Remote 127.0.0.1:50417 (Querying... ) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (4224) Local 127.0.0.1:49930 ESTABLISHED Remote 127.0.0.1:49929 (Querying... ) Local 127.0.0.1:49929 ESTABLISHED Remote 127.0.0.1:49930 (Querying... ) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (5496) Local 127.0.0.1:50222 ESTABLISHED Remote 127.0.0.1:50221 (Querying... ) Local 127.0.0.1:50221 ESTABLISHED Remote 127.0.0.1:50222 (Querying... ) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (6644) Local 192.168.132.148:50326 ESTABLISHED Remote 35.227.228.85:443 (Querying... ) (HTTPS) Local 192.168.132.148:50329 ESTABLISHED Remote 216.58.206.136:443 (Querying... ) (HTTPS) Local 192.168.132.148:50330 ESTABLISHED Remote 199.232.58.133:443 (Querying... ) (HTTPS) Local 192.168.132.148:50332 ESTABLISHED Remote 216.58.206.110:443 (Querying... ) (HTTPS) Local 192.168.132.148:50356 ESTABLISHED Remote 199.232.58.202:443 (Querying... ) (HTTPS) Local 192.168.132.148:50363 ESTABLISHED Remote 172.217.20.132:443 (Querying... ) (HTTPS) Local 192.168.132.148:50348 ESTABLISHED Remote 152.195.132.202:443 (Querying... ) (HTTPS) Local 192.168.132.148:50415 ESTABLISHED Remote 151.101.62.202:80 (Querying... ) (HTTP) Local 192.168.132.148:50331 ESTABLISHED Remote 104.20.184.68:443 (Querying... ) (HTTPS) Local 192.168.132.148:50370 ESTABLISHED Remote 216.58.205.42:443 (Querying... ) (HTTPS) Local 192.168.132.148:50372 ESTABLISHED Remote 216.58.210.227:443 (Querying... ) (HTTPS) Local 192.168.132.148:50373 ESTABLISHED Remote 13.224.227.47:443 (Querying... ) (HTTPS) Local 192.168.132.148:50418 ESTABLISHED Remote 208.118.62.70:443 (Querying... ) (HTTPS) Local 192.168.132.148:50377 ESTABLISHED Remote 5.10.110.36:443 (Querying... ) (HTTPS) Local 192.168.132.148:50341 ESTABLISHED Remote 104.16.77.166:443 (Querying... ) (HTTPS) Local 192.168.132.148:50380 ESTABLISHED Remote 93.184.220.29:80 (Querying... ) (HTTP) Local 192.168.132.148:50382 ESTABLISHED Remote 93.184.220.29:80 (Querying... ) (HTTP) Local 127.0.0.1:49927 ESTABLISHED Remote 127.0.0.1:49926 (Querying... ) Local 127.0.0.1:49926 ESTABLISHED Remote 127.0.0.1:49927 (Querying... ) Local 192.168.132.148:50339 ESTABLISHED Remote 104.16.79.166:443 (Querying... ) (HTTPS) Local 192.168.132.148:50334 ESTABLISHED Remote 216.58.210.227:443 (Querying... ) (HTTPS) Local 192.168.132.148:50404 ESTABLISHED Remote 104.82.71.25:443 (Querying... ) (HTTPS) Local 192.168.132.148:49937 ESTABLISHED Remote 34.213.147.57:443 (Querying... ) (HTTPS) Local 192.168.132.148:50408 ESTABLISHED Remote 216.58.204.238:443 (Querying... ) (HTTPS) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (6884) Local 127.0.0.1:49939 ESTABLISHED Remote 127.0.0.1:49940 (Querying... ) Local 127.0.0.1:49940 ESTABLISHED Remote 127.0.0.1:49939 (Querying... ) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (6936) Local 127.0.0.1:50289 ESTABLISHED Remote 127.0.0.1:50288 (Querying... ) Local 127.0.0.1:50288 ESTABLISHED Remote 127.0.0.1:50289 (Querying... ) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (6948) Local 127.0.0.1:49935 ESTABLISHED Remote 127.0.0.1:49934 (Querying... ) Local 127.0.0.1:49934 ESTABLISHED Remote 127.0.0.1:49935 (Querying... ) C:\Windows\System32\smartscreen.exe (508) Local 192.168.132.148:50409 ESTABLISHED Remote 23.51.123.27:80 (Querying... ) (HTTP) DevMgmtService.exe (1900) Local 127.0.0.1:49670 ESTABLISHED Remote 127.0.0.1:49671 (Querying... ) Local 127.0.0.1:49671 ESTABLISHED Remote 127.0.0.1:49670 (Querying... ) Local 192.168.132.148:50142 ESTABLISHED Remote 104.17.108.108:443 (Querying... ) (HTTPS) lsass.exe (792) Local 0.0.0.0:49664 LISTEN mqsvc.exe (3776) Local 0.0.0.0:2103 LISTEN Local 0.0.0.0:2105 LISTEN Local 0.0.0.0:2107 LISTEN Local 0.0.0.0:1801 LISTEN Local 0.0.0.0:49717 LISTEN ProductAgentService.exe (3960) Local 192.168.132.148:50319 ESTABLISHED Remote 104.17.108.108:443 (Querying... ) (HTTPS) Local 127.0.0.1:49812 ESTABLISHED Remote 127.0.0.1:49813 (Querying... ) Local 127.0.0.1:49813 ESTABLISHED Remote 127.0.0.1:49812 (Querying... ) services.exe (716) Local 0.0.0.0:49725 LISTEN spoolsv.exe (3392) Local 0.0.0.0:49692 LISTEN svchost.exe (1284) Local 0.0.0.0:49667 LISTEN svchost.exe (1408) Local 0.0.0.0:49666 LISTEN svchost.exe (272) Local 0.0.0.0:135 (DCE) LISTEN svchost.exe (3440) Local 0.0.0.0:7680 LISTEN svchost.exe (4056) Local 192.168.132.148:50316 ESTABLISHED Remote 40.67.251.132:443 (Querying... ) (HTTPS) svchost.exe (6600) Local 0.0.0.0:5040 LISTEN System Process Local 192.168.132.148:50379 TIME-WAIT Remote 81.130.107.18:80 (Querying... ) (HTTP) Local 192.168.132.148:50378 TIME-WAIT Remote 5.10.110.36:443 (Querying... ) (HTTPS) Local 192.168.132.148:50376 TIME-WAIT Remote 208.118.62.70:443 (Querying... ) (HTTPS) Local 192.168.132.148:50375 TIME-WAIT Remote 13.224.227.47:443 (Querying... ) (HTTPS) Local 192.168.132.148:50369 TIME-WAIT Remote 93.184.220.29:80 (Querying... ) (HTTP) Local 192.168.132.148:50368 TIME-WAIT Remote 93.184.220.29:80 (Querying... ) (HTTP) Local 192.168.132.148:50384 TIME-WAIT Remote 172.217.20.131:80 (Querying... ) (HTTP) Local 192.168.132.148:50367 TIME-WAIT Remote 93.184.220.29:80 (Querying... ) (HTTP) Local 192.168.132.148:50366 TIME-WAIT Remote 93.184.220.29:80 (Querying... ) (HTTP) Local 192.168.132.148:50365 TIME-WAIT Remote 93.184.220.29:80 (Querying... ) (HTTP) Local 192.168.132.148:50364 TIME-WAIT Remote 93.184.220.29:80 (Querying... ) (HTTP) Local 192.168.132.148:50355 TIME-WAIT Remote 13.35.199.122:80 (Querying... ) (HTTP) Local 192.168.132.148:50354 TIME-WAIT Remote 13.35.199.122:80 (Querying... ) (HTTP) Local 192.168.132.148:50333 TIME-WAIT Remote 216.58.211.163:80 (Querying... ) (HTTP) Local 192.168.132.148:50324 TIME-WAIT Remote 52.35.81.173:443 (Querying... ) (HTTPS) Local 192.168.132.148:50323 TIME-WAIT Remote 52.35.81.173:443 (Querying... ) (HTTPS) Local 192.168.132.148:50321 TIME-WAIT Remote 13.224.227.40:443 (Querying... ) (HTTPS) Local 192.168.132.148:50403 TIME-WAIT Remote 208.118.62.70:443 (Querying... ) (HTTPS) Local 192.168.132.148:50396 TIME-WAIT Remote 208.118.62.70:443 (Querying... ) (HTTPS) Local 192.168.132.148:50393 TIME-WAIT Remote 208.118.62.70:443 (Querying... ) (HTTPS) Local 192.168.132.148:50385 TIME-WAIT Remote 62.6.232.121:80 (Querying... ) (HTTP) System Process Local 0.0.0.0:445 (Windows shares) LISTEN Local 0.0.0.0:2869 LISTEN Local 192.168.132.148:139 (NetBIOS session service) LISTEN wininit.exe (648) Local 0.0.0.0:49665 LISTEN Generated with Speccy v1.32.740