Summary Operating System Windows 10 Home 64-bit CPU AMD Ryzen 5 45 °C Raven Ridge 14nm Technology RAM 7.00GB Dual-Channel Unknown @ 299MHz (17-17-17-39) Motherboard SAMSUNG ELECTRONICS CO. LTD. NP750QUA-K01US (FP5) Graphics Generic PnP Monitor (1920x1080@60Hz) 1024MB ATI AMD Radeon Vega 8 Graphics (Samsung) Storage 119GB SAMSUNG MZNLN128HAHQ-000 (SATA (SSD)) 38 °C Optical Drives No optical disk drives detected Audio Realtek High Definition Audio Operating System Windows 10 Home 64-bit Computer type: Tablet Installation Date: 6/21/2019 4:05:10 PM Windows Security Center User Account Control (UAC) Enabled Notify level 2 - Default Firewall Enabled Windows Update AutoUpdate Not configured Windows Defender Windows Defender Disabled Antivirus Trend Micro Internet Security Antivirus Enabled Virus Signature Database Up to date Windows Defender Antivirus Disabled Virus Signature Database Up to date Trend Micro Internet Security Antivirus Enabled Virus Signature Database Up to date .NET Frameworks installed v4.8 Full v4.8 Client v3.5 SP1 v3.0 SP2 v2.0 SP2 Internet Explorer Version 11.1016.18362.0 PowerShell Version 5.1.18362.1 Environment Variables USERPROFILE C:\Users\mckin SystemRoot C:\WINDOWS User Variables OneDrive C:\Users\mckin\OneDrive OneDriveConsumer C:\Users\mckin\OneDrive Path C:\Users\mckin\AppData\Local\Microsoft\WindowsApps TEMP C:\Users\mckin\AppData\Local\Temp TMP C:\Users\mckin\AppData\Local\Temp Machine Variables ComSpec C:\WINDOWS\system32\cmd.exe DriverData C:\Windows\System32\Drivers\DriverData NUMBER_OF_PROCESSORS 8 OS Windows_NT Path C:\WINDOWS\system32 C:\WINDOWS C:\WINDOWS\System32\Wbem C:\WINDOWS\System32\WindowsPowerShell\v1.0\ C:\WINDOWS\System32\OpenSSH\ PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE AMD64 PROCESSOR_IDENTIFIER AMD64 Family 23 Model 17 Stepping 0, AuthenticAMD PROCESSOR_LEVEL 23 PROCESSOR_REVISION 1100 PSModulePath %ProgramFiles%\WindowsPowerShell\Modules C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules TEMP C:\WINDOWS\TEMP TMP C:\WINDOWS\TEMP USERNAME SYSTEM windir C:\WINDOWS Battery AC Line Online Battery Charge % 84 % Battery State High Remaining Battery Time Unknown Power Profile Active power scheme Balanced Hibernation Enabled Turn Off Monitor after: (On AC Power) Never Turn Off Monitor after: (On Battery Power) 15 min Turn Off Hard Disk after: (On AC Power) 20 min Turn Off Hard Disk after: (On Battery Power) 10 min Suspend after: (On AC Power) Never Suspend after: (On Battery Power) 15 min Screen saver Disabled Uptime Current Session Current Time 8/13/2020 11:06:03 AM Current Uptime 9,915 sec (0 d, 02 h, 45 m, 15 s) Last Boot Time 8/13/2020 8:20:48 AM Services Running AMD External Events Utility Running Application Information Running AppX Deployment Service (AppXSVC) Running AtherosSvc Running AVCTP service Running Background Intelligent Transfer Service Running Background Tasks Infrastructure Service Running Base Filtering Engine Running Bluetooth Audio Gateway Service Running Bluetooth Support Service Running Bluetooth User Support Service_9ca4a1 Running Canon Inkjet Printer/Scanner/Fax Extended Survey Program Running Capability Access Manager Service Running Certificate Propagation Running Client License Service (ClipSVC) Running Clipboard User Service_9ca4a1 Running CNG Key Isolation Running COM+ Event System Running Connected Devices Platform Service Running Connected Devices Platform User Service_9ca4a1 Running Connected User Experiences and Telemetry Running Consulting Mode Running Contact Data_9ca4a1 Running CoreMessaging Running Credential Manager Running Cryptographic Services Running Data Usage Running DCOM Server Process Launcher Running Delivery Optimization Running Device Association Service Running DHCP Client Running Diagnostic Policy Service Running Diagnostic Service Host Running Diagnostic System Host Running Display Enhancement Service Running Display Policy Service Running Distributed Link Tracking Client Running DNS Client Running Function Discovery Provider Host Running Function Discovery Resource Publication Running Geolocation Service Running Human Interface Device Service Running Internet Connection Sharing (ICS) Running IP Helper Running Local Session Manager Running Microsoft Account Sign-in Assistant Running Microsoft Office Click-to-Run Service Running Microsoft Passport Running Microsoft Passport Container Running Microsoft Software Shadow Copy Provider Running Microsoft Store Install Service Running Network Connected Devices Auto-Setup Running Network Connection Broker Running Network List Service Running Network Location Awareness Running Network Store Interface Service Running Payments and NFC/SE Manager Running Peer Name Resolution Protocol Running Peer Networking Identity Manager Running Phone Service Running Platinum Host Service Running Plug and Play Running Power Running Print Spooler Running Program Compatibility Assistant Service Running Realtek Audio Universal Service Running Remote Access Connection Manager Running Remote Procedure Call (RPC) Running RPC Endpoint Mapper Running Samsung PC Cleaner 2 Service Running Samsung Recovery Service Running Samsung Settings Expansion Launcher Running Samsung Update Service Running SamsungSecurity Launcher Running Secondary Logon Running Secure Socket Tunneling Protocol Service Running Security Accounts Manager Running Security Center Running Sensor Monitoring Service Running Sensor Service Running Server Running Shell Hardware Detection Running SSDP Discovery Running sService Agent Launcher Running State Repository Service Running Storage Service Running Sync Host_9ca4a1 Running SysMain Running System Event Notification Service Running System Events Broker Running System Guard Runtime Monitor Broker Running Task Scheduler Running TCP/IP NetBIOS Helper Running Telephony Running Themes Running Time Broker Running Touch Keyboard and Handwriting Panel Service Running Trend Micro Password Manager Central Control Service Running Trend Micro Solution Platform Running Update Orchestrator Service Running UPnP Device Host Running User Data Access_9ca4a1 Running User Data Storage_9ca4a1 Running User Manager Running User Profile Service Running Web Account Manager Running Windows Audio Running Windows Audio Endpoint Builder Running Windows Biometric Service Running Windows Connection Manager Running Windows Defender Firewall Running Windows Event Log Running Windows Font Cache Service Running Windows Image Acquisition (WIA) Running Windows License Manager Service Running Windows Management Instrumentation Running Windows Push Notifications System Service Running Windows Push Notifications User Service_9ca4a1 Running Windows Search Running Windows Security Service Running Windows Update Running WinHTTP Web Proxy Auto-Discovery Service Running WLAN AutoConfig Running WMI Performance Adapter Running Workstation Running Xbox Live Auth Manager Stopped ActiveX Installer (AxInstSV) Stopped Adobe Flash Player Update Service Stopped Agent Activation Runtime_9ca4a1 Stopped AllJoyn Router Service Stopped App Readiness Stopped Application Identity Stopped Application Layer Gateway Service Stopped Auto Time Zone Updater Stopped BitLocker Drive Encryption Service Stopped Block Level Backup Engine Service Stopped CaptureService_9ca4a1 Stopped Cellular Time Stopped COM+ System Application Stopped ConsentUX_9ca4a1 Stopped CredentialEnrollmentManagerUserSvc_9ca4a1 Stopped Data Sharing Service Stopped Device Install Service Stopped Device Management Enrollment Service Stopped Device Management Wireless Application Protocol (WAP) Push message Routing Service Stopped Device Setup Manager Stopped DeviceAssociationBroker_9ca4a1 Stopped DevicePicker_9ca4a1 Stopped DevicesFlow_9ca4a1 Stopped DevQuery Background Discovery Broker Stopped Diagnostic Execution Service Stopped Distributed Transaction Coordinator Stopped Downloaded Maps Manager Stopped Embedded Mode Stopped Encrypting File System (EFS) Stopped Enterprise App Management Service Stopped Extensible Authentication Protocol Stopped Fax Stopped File History Service Stopped FileSyncHelper Stopped GameDVR and Broadcast User Service_9ca4a1 Stopped Google Chrome Elevation Service Stopped Google Update Service (gupdate) Stopped Google Update Service (gupdatem) Stopped GraphicsPerfSvc Stopped Group Policy Client Stopped HV Host Service Stopped Hyper-V Data Exchange Service Stopped Hyper-V Guest Service Interface Stopped Hyper-V Guest Shutdown Service Stopped Hyper-V Heartbeat Service Stopped Hyper-V PowerShell Direct Service Stopped Hyper-V Remote Desktop Virtualization Service Stopped Hyper-V Time Synchronization Service Stopped Hyper-V Volume Shadow Copy Requestor Stopped IKE and AuthIP IPsec Keying Modules Stopped IP Translation Configuration Service Stopped IPsec Policy Agent Stopped KtmRm for Distributed Transaction Coordinator Stopped Language Experience Service Stopped Link-Layer Topology Discovery Mapper Stopped Local Profile Assistant Service Stopped MessagingService_9ca4a1 Stopped Microsoft Diagnostics Hub Standard Collector Service Stopped Microsoft Edge Elevation Service Stopped Microsoft Edge Update Service (edgeupdate) Stopped Microsoft Edge Update Service (edgeupdatem) Stopped Microsoft iSCSI Initiator Service Stopped Microsoft Storage Spaces SMP Stopped Microsoft Windows SMS Router Service. Stopped Natural Authentication Stopped Net.Tcp Port Sharing Service Stopped Netlogon Stopped Network Connections Stopped Network Connectivity Assistant Stopped Network Setup Service Stopped Office Source Engine Stopped OneDrive Updater Service Stopped OpenSSH Authentication Agent Stopped Optimize drives Stopped Parental Controls Stopped Peer Networking Grouping Stopped Performance Counter DLL Host Stopped Performance Logs & Alerts Stopped PNRP Machine Name Publication Service Stopped Portable Device Enumerator Service Stopped Printer Extensions and Notifications Stopped PrintWorkflow_9ca4a1 Stopped Problem Reports and Solutions Control Panel Support Stopped Quality Windows Audio Video Experience Stopped Radio Management Service Stopped Recommended Troubleshooting Service Stopped Remote Access Auto Connection Manager Stopped Remote Desktop Configuration Stopped Remote Desktop Services Stopped Remote Desktop Services UserMode Port Redirector Stopped Remote Procedure Call (RPC) Locator Stopped Remote Registry Stopped Retail Demo Service Stopped Routing and Remote Access Stopped Sensor Data Service Stopped Shared PC Account Manager Stopped Smart Card Stopped Smart Card Device Enumeration Service Stopped Smart Card Removal Policy Stopped SNMP Trap Stopped Software Protection Stopped Spatial Data Service Stopped Spot Verifier Stopped sServiceLoopBack Stopped Still Image Acquisition Events Stopped Storage Tiers Management Stopped TmWscSvc Stopped Virtual Disk Stopped Volume Shadow Copy Stopped Volumetric Audio Compositor Service Stopped WalletService Stopped WarpJITSvc Stopped WebClient Stopped Wi-Fi Direct Services Connection Manager Service Stopped Windows Backup Stopped Windows Camera Frame Server Stopped Windows Connect Now - Config Registrar Stopped Windows Defender Antivirus Network Inspection Service Stopped Windows Defender Antivirus Service Stopped Windows Encryption Provider Host Service Stopped Windows Error Reporting Service Stopped Windows Event Collector Stopped Windows Insider Service Stopped Windows Installer Stopped Windows Management Service Stopped Windows Media Player Network Sharing Service Stopped Windows Mixed Reality OpenXR Service Stopped Windows Mobile Hotspot Service Stopped Windows Modules Installer Stopped Windows Perception Service Stopped Windows Perception Simulation Service Stopped Windows Presentation Foundation Font Cache 3.0.0.0 Stopped Windows PushToInstall Service Stopped Windows Remote Management (WS-Management) Stopped Windows Time Stopped Windows Update Medic Service Stopped Wired AutoConfig Stopped Work Folders Stopped WWAN AutoConfig Stopped Xbox Accessory Management Service Stopped Xbox Live Game Save Stopped Xbox Live Networking Service TimeZone TimeZone GMT -7:00 Hours Language English (United States) Location United States Format English (United States) Currency $ Date Format M/d/yyyy Time Format h:mm:ss tt Scheduler 8/13/2020 11:36 AM; Adobe Flash Player Updater 8/13/2020 11:36 AM; GoogleUpdateTaskMachineUA 8/13/2020 11:40 AM; MicrosoftEdgeUpdateTaskMachineUA 8/13/2020 1:40 PM; OneDrive Per-Machine Standalone Update Task 8/13/2020 7:36 PM; GoogleUpdateTaskMachineCore 8/14/2020 10:40 AM; MicrosoftEdgeUpdateTaskMachineCore 8/14/2020 5:15 PM; Adobe Flash Player PPAPI Notifier AirSupport Update DPICustomized ODDAutoFirmwareUpdate PTPFilter RtkAudUService64_BG SamsungUpdateServiceUpdate StartCN Hotfixes Installed 8/13/2020 2020-08 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1903 for x64 (KB4569751) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 8/13/2020 2020-08 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4565351) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 7/14/2020 2020-07 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1903 for x64 (KB4565633) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 7/14/2020 2020-07 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4565483) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 6/19/2020 2020-05 Microsoft Edge Update for Windows 10 Version 1903 for x64-based Systems (KB4559309) This update provides the latest feature and quality updates to Microsoft Edge. 6/17/2020 2020-01 Update for Windows 10 Version 1903 for x64-based Systems (KB4497165) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 6/9/2020 2020-06 Security Update for Adobe Flash Player for Windows 10 Version 1903 for x64-based Systems (KB4561600) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 6/9/2020 2020-06 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4560960) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 5/13/2020 2020-05 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1903 for x64 (KB4552931) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 5/13/2020 Windows Malicious Software Removal Tool x64 - v5.82 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 5/13/2020 2020-05 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4556799) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 4/15/2020 2020-04 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4549951) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 3/14/2020 2020-03 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4551762) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 3/12/2020 Windows Malicious Software Removal Tool x64 - March 2020 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 3/12/2020 2020-03 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4540673) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 3/5/2020 CanvasBio - Biometric - 2.2.30.882 CanvasBio Biometric driver update released in January 2020 2/15/2020 Security Update for Windows 10 Version 1903 for x64-based Systems (KB4524244) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 2/13/2020 2020-02 Security Update for Adobe Flash Player for Windows 10 Version 1903 for x64-based Systems (KB4537759) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 2/13/2020 Windows Malicious Software Removal Tool x64 - February 2020 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 2/13/2020 2020-02 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4532693) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 2/5/2020 2020-01 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1903 for x64 (KB4534132) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 1/25/2020 Security Update for Microsoft Visual C++ 2008 Service Pack 1 Redistributable Package (KB2538243) A security issue has been identified leading to MFC application vulnerability in DLL planting due to MFC not specifying the full path to system/localization DLLs. You can protect your computer by installing this update from Microsoft. After you install this item, you may have to restart your computer. 1/24/2020 Realtek Semiconductor Corp. - MEDIA - 6.0.8858.1 Realtek Semiconductor Corp. MEDIA driver update released in December 2019 1/16/2020 Windows Malicious Software Removal Tool x64 - January 2020 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 1/16/2020 2020-01 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1903 for x64 (KB4532938) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 1/16/2020 2020-01 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4528760) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 1/12/2020 Realtek - SoftwareComponent - 11.0.6000.205 Realtek SoftwareComponent driver update released in December 2019 1/12/2020 Realtek - SoftwareComponent - 1.0.0.224 Realtek SoftwareComponent driver update released in December 2019 1/12/2020 Realtek - SoftwareComponent - 11.0.6000.739 Realtek SoftwareComponent driver update released in December 2019 1/12/2020 Realtek Semiconductor Corp. - Extension - 6.0.8858.1 Realtek Semiconductor Corp. Extension driver update released in December 2019 12/14/2019 Windows Malicious Software Removal Tool x64 - December 2019 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 12/14/2019 2019-12 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1903 for x64 (KB4533002) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 12/14/2019 2019-12 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4530684) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 12/7/2019 CanvasBio - Biometric - 2.2.23.882 CanvasBio Biometric driver update released in November 2019 11/15/2019 Windows Malicious Software Removal Tool x64 - November 2019 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 11/15/2019 2019-11 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4524570) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 10/11/2019 CanvasBio - Biometric - 2.2.13.882 CanvasBio Biometric driver update released in September 2019 10/8/2019 2019-10 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1903 for x64 (KB4524100) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 10/8/2019 Windows Malicious Software Removal Tool x64 - October 2019 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 10/8/2019 2019-10 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4517389) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 10/3/2019 2019-09 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4524147) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 9/12/2019 2019-09 Security Update for Adobe Flash Player for Windows 10 Version 1903 for x64-based Systems (KB4516115) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 9/12/2019 2019-09 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1903 for x64 (KB4514359) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 9/12/2019 2019-09 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4515384) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 8/27/2019 CanvasBio - Biometric - 7/26/2019 12:00:00 AM - 2.2.7.882 CanvasBio Biometric driver update released in July 2019 8/17/2019 Windows Malicious Software Removal Tool x64 - August 2019 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 8/17/2019 2019-08 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4512508) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 7/18/2019 CanvasBio - Biometric - 7/1/2019 12:00:00 AM - 2.2.2.882 CanvasBio Biometric driver update released in July 2019 7/11/2019 2019-07 Cumulative Update for .NET Framework 3.5, 4.8 for Windows 10 Version 1903 for x64 (KB4506991) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 7/11/2019 Windows Malicious Software Removal Tool x64 - July 2019 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 7/11/2019 2019-07 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4507453) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 6/29/2019 Definition Update for Windows Defender Antivirus - KB2267602 (Definition 1.297.159.0) Install this update to revise the definition files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 6/22/2019 Qualcomm Atheros Communications - Bluetooth - 6/27/2018 12:00:00 AM - 10.0.0.714 Qualcomm Atheros Communications Bluetooth driver update released in June 2018 6/22/2019 CanvasBio - Biometric - 1/17/2019 12:00:00 AM - 2.1.32.882 CanvasBio Biometric driver update released in January 2019 6/22/2019 2019-05 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 version 1903 for x64 (KB4495620) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 6/22/2019 2019-06 Security Update for Adobe Flash Player for Windows 10 Version 1903 for x64-based Systems (KB4503308) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 6/21/2019 Feature update to Windows 10, version 1903 Install the latest update for Windows 10: Windows 10, version 1903. Not Installed 10/5/2019 2019-09 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1903 for x64 (KB4522738) Installation Status Failed Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. System Folders Application Data C:\ProgramData Cookies C:\Users\mckin\AppData\Local\Microsoft\Windows\INetCookies Desktop C:\Users\mckin\OneDrive\Desktop Documents C:\Users\Public\Documents Fonts C:\WINDOWS\Fonts Global Favorites C:\Users\mckin\Favorites Internet History C:\Users\mckin\AppData\Local\Microsoft\Windows\History Local Application Data C:\Users\mckin\AppData\Local Music C:\Users\Public\Music Path for burning CD C:\Users\mckin\AppData\Local\Microsoft\Windows\Burn\Burn Physical Desktop C:\Users\mckin\OneDrive\Desktop Pictures C:\Users\Public\Pictures Program Files C:\Program Files Public Desktop C:\Users\Public\Desktop Start Menu C:\ProgramData\Microsoft\Windows\Start Menu Start Menu Programs C:\ProgramData\Microsoft\Windows\Start Menu\Programs Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Templates C:\ProgramData\Microsoft\Windows\Templates Temporary Internet Files C:\Users\mckin\AppData\Local\Microsoft\Windows\INetCache User Favorites C:\Users\mckin\Favorites Videos C:\Users\Public\Videos Windows Directory C:\WINDOWS Windows/System C:\WINDOWS\system32 Process List AdminService.exe Process ID 4632 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\drivers\AdminService.exe Memory Usage 6.07 MB Peak Memory Usage 7.95 MB ApplicationFrameHost.exe Process ID 17564 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\ApplicationFrameHost.exe Memory Usage 37 MB Peak Memory Usage 42 MB atieclxx.exe Process ID 14148 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\DriverStore\FileRepository\u0335151.inf_amd64_e5705aeeafa5c2ab\B335002\atieclxx.exe Memory Usage 12 MB Peak Memory Usage 12 MB atiesrxx.exe Process ID 2400 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\DriverStore\FileRepository\u0335151.inf_amd64_e5705aeeafa5c2ab\B335002\atiesrxx.exe Memory Usage 4.47 MB Peak Memory Usage 6.35 MB audiodg.exe Process ID 19112 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\audiodg.exe Memory Usage 16 MB Peak Memory Usage 21 MB backgroundTaskHost.exe Process ID 5160 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\backgroundTaskHost.exe Memory Usage 23 MB Peak Memory Usage 26 MB BulletService.exe Process ID 13888 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Samsung\Recovery\BulletService.exe Memory Usage 5.94 MB Peak Memory Usage 6.88 MB CastSrv.exe Process ID 4700 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\CastSrv.exe Memory Usage 9.61 MB Peak Memory Usage 20 MB chrome.exe Process ID 14704 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 31 MB Peak Memory Usage 31 MB chrome.exe Process ID 1480 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 101 MB Peak Memory Usage 114 MB chrome.exe Process ID 9440 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 19 MB Peak Memory Usage 20 MB chrome.exe Process ID 14844 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 38 MB Peak Memory Usage 41 MB chrome.exe Process ID 6064 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 70 MB Peak Memory Usage 80 MB chrome.exe Process ID 12564 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 31 MB Peak Memory Usage 31 MB chrome.exe Process ID 2928 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 30 MB Peak Memory Usage 31 MB chrome.exe Process ID 14220 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 37 MB Peak Memory Usage 41 MB chrome.exe Process ID 14316 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 30 MB Peak Memory Usage 31 MB chrome.exe Process ID 10448 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 43 MB Peak Memory Usage 49 MB chrome.exe Process ID 15940 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 87 MB Peak Memory Usage 91 MB chrome.exe Process ID 14376 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 60 MB Peak Memory Usage 70 MB chrome.exe Process ID 10112 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 109 MB Peak Memory Usage 157 MB chrome.exe Process ID 7540 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 104 MB Peak Memory Usage 127 MB chrome.exe Process ID 1976 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 165 MB Peak Memory Usage 220 MB chrome.exe Process ID 16688 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 8.70 MB Peak Memory Usage 9.96 MB chrome.exe Process ID 16824 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 150 MB Peak Memory Usage 219 MB chrome.exe Process ID 10976 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 70 MB Peak Memory Usage 71 MB chrome.exe Process ID 15820 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 57 MB Peak Memory Usage 61 MB chrome.exe Process ID 5088 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 61 MB Peak Memory Usage 71 MB chrome.exe Process ID 4252 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 55 MB Peak Memory Usage 65 MB chrome.exe Process ID 5336 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 98 MB Peak Memory Usage 119 MB chrome.exe Process ID 8740 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 53 MB Peak Memory Usage 62 MB chrome.exe Process ID 15896 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 26 MB Peak Memory Usage 26 MB chrome.exe Process ID 13544 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 37 MB Peak Memory Usage 42 MB chrome.exe Process ID 9876 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 48 MB Peak Memory Usage 57 MB chrome.exe Process ID 8808 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 80 MB Peak Memory Usage 138 MB chrome.exe Process ID 324 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 32 MB Peak Memory Usage 38 MB CLMLSvc_P2G8.exe Process ID 10868 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe Memory Usage 12 MB Peak Memory Usage 13 MB cmd.exe Process ID 4432 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\cmd.exe Memory Usage 6.55 MB Peak Memory Usage 7.89 MB CNMNSST2.exe Process ID 7208 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe Memory Usage 13 MB Peak Memory Usage 13 MB CNQMMAIN.EXE Process ID 13352 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE Memory Usage 37 MB Peak Memory Usage 98 MB CNQMUPDT.EXE Process ID 5064 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE Memory Usage 19 MB Peak Memory Usage 31 MB ColorEngine.exe Process ID 18392 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Samsung\ColorEngine\ColorEngine.exe Memory Usage 4.54 MB Peak Memory Usage 15 MB commsapps.exe Process ID 392 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13110.41006.0_x64__8wekyb3d8bbwe\commsapps.exe Memory Usage 52 KB Peak Memory Usage 106 MB conhost.exe Process ID 5760 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\conhost.exe Memory Usage 5.80 MB Peak Memory Usage 13 MB conhost.exe Process ID 14740 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\conhost.exe Memory Usage 4.12 MB Peak Memory Usage 11 MB conhost.exe Process ID 18928 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\conhost.exe Memory Usage 7.74 MB Peak Memory Usage 13 MB conhost.exe Process ID 13392 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\conhost.exe Memory Usage 7.76 MB Peak Memory Usage 13 MB conhost.exe Process ID 4768 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\conhost.exe Memory Usage 5.65 MB Peak Memory Usage 13 MB ConsultingMode.exe Process ID 11704 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Samsung\ConsultingMode\ConsultingMode.exe Memory Usage 17 MB Peak Memory Usage 20 MB ConsultingModeService.exe Process ID 4680 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Samsung\ConsultingMode\ConsultingModeService.exe Memory Usage 7.86 MB Peak Memory Usage 9.15 MB coreFrameworkHost.exe Process ID 5716 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Trend Micro\AMSP\coreFrameworkHost.exe Memory Usage 5.21 MB Peak Memory Usage 7.21 MB coreServiceShell.exe Process ID 4504 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe Memory Usage 100 MB Peak Memory Usage 456 MB csrss.exe Process ID 844 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 4.63 MB Peak Memory Usage 5.66 MB csrss.exe Process ID 5344 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 4.96 MB Peak Memory Usage 13 MB ctfmon.exe Process ID 2956 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\ctfmon.exe Memory Usage 36 MB Peak Memory Usage 52 MB dasHost.exe Process ID 2936 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\dasHost.exe Memory Usage 15 MB Peak Memory Usage 18 MB dllhost.exe Process ID 14800 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\dllhost.exe Memory Usage 9.54 MB Peak Memory Usage 11 MB dllhost.exe Process ID 17784 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\dllhost.exe Memory Usage 13 MB Peak Memory Usage 13 MB DrSDKCaller.exe Process ID 14728 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Trend Micro\Titanium\plugin\DiamondRing\DrSDKCaller.exe Memory Usage 17 MB Peak Memory Usage 26 MB dwm.exe Process ID 4564 User DWM-2 Domain Window Manager Path C:\Windows\System32\dwm.exe Memory Usage 67 MB Peak Memory Usage 84 MB explorer.exe Process ID 2852 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\explorer.exe Memory Usage 164 MB Peak Memory Usage 176 MB FileCoAuth.exe Process ID 3888 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Microsoft OneDrive\20.134.0705.0008\FileCoAuth.exe Memory Usage 21 MB Peak Memory Usage 23 MB fontdrvhost.exe Process ID 1220 User UMFD-0 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 2.37 MB Peak Memory Usage 38 MB fontdrvhost.exe Process ID 15136 User UMFD-2 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 7.51 MB Peak Memory Usage 16 MB GameBar.exe Process ID 17808 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.320.6242.0_x64__8wekyb3d8bbwe\GameBar.exe Memory Usage 312 KB Peak Memory Usage 50 MB GoogleCrashHandler.exe Process ID 11232 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe Memory Usage 2.16 MB Peak Memory Usage 9.25 MB GoogleCrashHandler64.exe Process ID 11252 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe Memory Usage 1.44 MB Peak Memory Usage 9.18 MB HxTsr.exe Process ID 6824 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13110.41006.0_x64__8wekyb3d8bbwe\HxTsr.exe Memory Usage 8.57 MB Peak Memory Usage 59 MB ijplmsvc.exe Process ID 4664 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe Memory Usage 9.23 MB Peak Memory Usage 12 MB LockApp.exe Process ID 4764 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe Memory Usage 40 MB Peak Memory Usage 53 MB lsass.exe Process ID 1036 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\lsass.exe Memory Usage 19 MB Peak Memory Usage 23 MB Memory Compression Process ID 3116 User SYSTEM Domain NT AUTHORITY Memory Usage 427 MB Peak Memory Usage 456 MB Microsoft.Photos.exe Process ID 15856 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.20070.10002.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe Memory Usage 14 MB Peak Memory Usage 118 MB notepad.exe Process ID 11988 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\notepad.exe Memory Usage 19 MB Peak Memory Usage 22 MB ODDFWUpdate.exe Process ID 13020 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\ODD Auto Firmware Update\ODDFWUpdate.exe Memory Usage 7.29 MB Peak Memory Usage 47 MB OfficeClickToRun.exe Process ID 16064 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe Memory Usage 36 MB Peak Memory Usage 68 MB OneDrive.exe Process ID 10756 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe Memory Usage 59 MB Peak Memory Usage 76 MB OUTLOOK.EXE Process ID 11056 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE Memory Usage 141 MB Peak Memory Usage 203 MB PCCleaner2Service.exe Process ID 4828 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Samsung\Samsung PC Cleaner 2 Service\PCCleaner2Service.exe Memory Usage 8.46 MB Peak Memory Usage 10 MB PCCleaner2Status.exe Process ID 13764 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Samsung\Samsung PC Cleaner 2 Service\PCCleaner2Status.exe Memory Usage 24 MB Peak Memory Usage 24 MB PTPCtrl.exe Process ID 9928 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\PTPCtrl\PTPCtrl.exe Memory Usage 2.82 MB Peak Memory Usage 13 MB PtSessionAgent.exe Process ID 7640 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Trend Micro\Titanium\plugin\Pt\PtSessionAgent.exe Memory Usage 13 MB Peak Memory Usage 14 MB PtSvcHost.exe Process ID 4724 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Trend Micro\Titanium\plugin\Pt\PtSvcHost.exe Memory Usage 60 MB Peak Memory Usage 2.01 GB PtWatchDog.exe Process ID 5372 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Trend Micro\Titanium\plugin\Pt\PtWatchDog.exe Memory Usage 4.42 MB Peak Memory Usage 6.10 MB PwmSvc.exe Process ID 4848 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Trend Micro\TMIDS\PwmSvc.exe Memory Usage 17 MB Peak Memory Usage 20 MB PwmTower.exe Process ID 12008 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Trend Micro\TMIDS\tower\PwmTower.exe Memory Usage 59 MB Peak Memory Usage 68 MB PwmTower.exe Process ID 13292 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Trend Micro\TMIDS\tower\PwmTower.exe Memory Usage 28 MB Peak Memory Usage 54 MB PwmTower.exe Process ID 16228 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Trend Micro\TMIDS\tower\PwmTower.exe Memory Usage 43 MB Peak Memory Usage 51 MB RadeonSettings.exe Process ID 13964 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe Memory Usage 6.84 MB Peak Memory Usage 166 MB Registry Process ID 120 User SYSTEM Domain NT AUTHORITY Memory Usage 75 MB Peak Memory Usage 123 MB RemindersServer.exe Process ID 12940 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe Memory Usage 24 MB Peak Memory Usage 24 MB RtkAudUService64.exe Process ID 4880 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\RtkAudUService64.exe Memory Usage 7.18 MB Peak Memory Usage 9.54 MB RtkAudUService64.exe Process ID 13244 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\RtkAudUService64.exe Memory Usage 3.35 MB Peak Memory Usage 13 MB RuntimeBroker.exe Process ID 12656 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 23 MB Peak Memory Usage 36 MB RuntimeBroker.exe Process ID 11584 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 59 MB Peak Memory Usage 59 MB RuntimeBroker.exe Process ID 8188 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 21 MB Peak Memory Usage 30 MB RuntimeBroker.exe Process ID 15908 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 23 MB Peak Memory Usage 36 MB RuntimeBroker.exe Process ID 10484 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 9.76 MB Peak Memory Usage 14 MB RuntimeBroker.exe Process ID 2072 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 39 MB Peak Memory Usage 50 MB RuntimeBroker.exe Process ID 7172 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 18 MB Peak Memory Usage 22 MB RuntimeBroker.exe Process ID 15260 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 37 MB Peak Memory Usage 48 MB RuntimeBroker.exe Process ID 7804 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 15 MB Peak Memory Usage 20 MB RuntimeBroker.exe Process ID 3680 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 22 MB Peak Memory Usage 32 MB SamsungSecurityCmdServer.exe Process ID 18368 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Samsung\SamsungSecurity\CmdServer\SamsungSecurityCmdServer.exe Memory Usage 14 MB Peak Memory Usage 15 MB SamsungSecurityEventHandler.exe Process ID 16584 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Samsung\SamsungSecurity\CmdServer\SamsungSecurityEventHandler.exe Memory Usage 16 MB Peak Memory Usage 18 MB SamsungSecurityLauncher.exe Process ID 4940 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Samsung\SamsungSecurity\CmdServer\SamsungSecurityLauncher.exe Memory Usage 8.85 MB Peak Memory Usage 9.32 MB SamsungSettingsExpansionPack.exe Process ID 18068 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Samsung\SamsungSettings\SamsungSettingsExpansionPack.exe Memory Usage 25 MB Peak Memory Usage 27 MB SamsungSettingsExpansionUI.exe Process ID 17232 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Samsung\SamsungSettings\SamsungSettingsExpansionUI.exe Memory Usage 18 MB Peak Memory Usage 21 MB SamsungSettingsExpLauncher.exe Process ID 4860 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Samsung\SamsungSettings\SamsungSettingsExpLauncher.exe Memory Usage 5.89 MB Peak Memory Usage 7.69 MB SearchFilterHost.exe Process ID 5912 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchFilterHost.exe Memory Usage 6.02 MB Peak Memory Usage 6.07 MB SearchIndexer.exe Process ID 11388 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchIndexer.exe Memory Usage 55 MB Peak Memory Usage 75 MB SearchProtocolHost.exe Process ID 9096 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchProtocolHost.exe Memory Usage 16 MB Peak Memory Usage 18 MB SearchUI.exe Process ID 1884 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe Memory Usage 221 MB Peak Memory Usage 232 MB SecurityHealthService.exe Process ID 11768 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SecurityHealthService.exe Memory Usage 12 MB Peak Memory Usage 15 MB SecurityHealthSystray.exe Process ID 12588 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\SecurityHealthSystray.exe Memory Usage 10 MB Peak Memory Usage 11 MB services.exe Process ID 960 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\services.exe Memory Usage 9.98 MB Peak Memory Usage 10 MB SettingSyncHost.exe Process ID 12136 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\SettingSyncHost.exe Memory Usage 12 MB Peak Memory Usage 42 MB SgrmBroker.exe Process ID 11740 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SgrmBroker.exe Memory Usage 5.82 MB Peak Memory Usage 7.43 MB ShellExperienceHost.exe Process ID 4696 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Memory Usage 42 MB Peak Memory Usage 59 MB sihost.exe Process ID 10372 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\sihost.exe Memory Usage 31 MB Peak Memory Usage 31 MB smartscreen.exe Process ID 3936 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\smartscreen.exe Memory Usage 30 MB Peak Memory Usage 36 MB smss.exe Process ID 660 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\smss.exe Memory Usage 1.10 MB Peak Memory Usage 1.23 MB Speccy64.exe Process ID 11956 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Speccy\Speccy64.exe Memory Usage 32 MB Peak Memory Usage 32 MB splwow64.exe Process ID 17572 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\splwow64.exe Memory Usage 12 MB Peak Memory Usage 14 MB spoolsv.exe Process ID 4072 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\spoolsv.exe Memory Usage 20 MB Peak Memory Usage 23 MB sServiceAgentLauncherSvc.exe Process ID 8928 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Samsung\sService\sServiceAgentLauncherSvc.exe Memory Usage 6.95 MB Peak Memory Usage 7.98 MB sServiceKeyMonitor.exe Process ID 17432 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Samsung\sService\sServiceKeyMonitor.exe Memory Usage 11 MB Peak Memory Usage 13 MB StartMenuExperienceHost.exe Process ID 12884 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe Memory Usage 74 MB Peak Memory Usage 83 MB SUEngine.exe Process ID 17168 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Samsung\SamsungUpdate\SUEngine.exe Memory Usage 328 MB Peak Memory Usage 331 MB SUService.exe Process ID 4952 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Samsung\SamsungUpdate\SUService.exe Memory Usage 5.98 MB Peak Memory Usage 6.98 MB SUUserModeWorker.exe Process ID 7948 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Samsung\SamsungUpdate\SUUserModeWorker.exe Memory Usage 3.96 MB Peak Memory Usage 41 MB svchost.exe Process ID 2440 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.60 MB Peak Memory Usage 10 MB svchost.exe Process ID 1160 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.40 MB Peak Memory Usage 3.95 MB svchost.exe Process ID 1192 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 34 MB Peak Memory Usage 35 MB svchost.exe Process ID 18528 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.64 MB Peak Memory Usage 8.00 MB svchost.exe Process ID 18216 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.17 MB Peak Memory Usage 5.69 MB svchost.exe Process ID 1348 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 19 MB svchost.exe Process ID 11528 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\svchost.exe Memory Usage 21 MB Peak Memory Usage 22 MB svchost.exe Process ID 1408 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.11 MB Peak Memory Usage 8.75 MB svchost.exe Process ID 1564 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 12 MB svchost.exe Process ID 1572 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.95 MB Peak Memory Usage 9.66 MB svchost.exe Process ID 1588 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 14 MB svchost.exe Process ID 1688 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.39 MB Peak Memory Usage 11 MB svchost.exe Process ID 1696 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 12 MB svchost.exe Process ID 1800 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 21 MB svchost.exe Process ID 1840 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.83 MB Peak Memory Usage 8.82 MB svchost.exe Process ID 1872 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.35 MB Peak Memory Usage 6.00 MB svchost.exe Process ID 1940 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.82 MB Peak Memory Usage 8.04 MB svchost.exe Process ID 1980 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.98 MB Peak Memory Usage 7.97 MB svchost.exe Process ID 2000 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.76 MB Peak Memory Usage 7.67 MB svchost.exe Process ID 760 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.73 MB Peak Memory Usage 11 MB svchost.exe Process ID 7612 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\svchost.exe Memory Usage 22 MB Peak Memory Usage 27 MB svchost.exe Process ID 2092 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.45 MB Peak Memory Usage 9.27 MB svchost.exe Process ID 2140 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 18 MB svchost.exe Process ID 2152 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 12 MB svchost.exe Process ID 2216 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.25 MB Peak Memory Usage 8.07 MB svchost.exe Process ID 2456 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 16 MB svchost.exe Process ID 2504 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 13 MB svchost.exe Process ID 2516 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 21 MB svchost.exe Process ID 2668 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.52 MB Peak Memory Usage 9.13 MB svchost.exe Process ID 2676 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 24 MB svchost.exe Process ID 2772 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.59 MB Peak Memory Usage 9.92 MB svchost.exe Process ID 2824 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.71 MB Peak Memory Usage 9.12 MB svchost.exe Process ID 3008 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 17 MB svchost.exe Process ID 3024 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.11 MB Peak Memory Usage 7.86 MB svchost.exe Process ID 3036 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.07 MB Peak Memory Usage 5.84 MB svchost.exe Process ID 836 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.83 MB Peak Memory Usage 11 MB svchost.exe Process ID 3164 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.64 MB Peak Memory Usage 8.92 MB svchost.exe Process ID 3224 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.84 MB Peak Memory Usage 8.29 MB svchost.exe Process ID 15164 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 15 MB svchost.exe Process ID 3232 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.25 MB Peak Memory Usage 8.69 MB svchost.exe Process ID 3456 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.48 MB Peak Memory Usage 9.18 MB svchost.exe Process ID 3604 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 15 MB svchost.exe Process ID 3704 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.96 MB Peak Memory Usage 10 MB svchost.exe Process ID 3712 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.74 MB Peak Memory Usage 6.72 MB svchost.exe Process ID 3860 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.34 MB Peak Memory Usage 7.86 MB svchost.exe Process ID 3944 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 20 MB svchost.exe Process ID 3992 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 15 MB svchost.exe Process ID 3624 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 18 MB svchost.exe Process ID 4124 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 20 MB Peak Memory Usage 30 MB svchost.exe Process ID 4188 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.80 MB Peak Memory Usage 8.14 MB svchost.exe Process ID 4332 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.23 MB Peak Memory Usage 5.86 MB svchost.exe Process ID 4464 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.23 MB Peak Memory Usage 7.14 MB svchost.exe Process ID 4612 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 36 MB Peak Memory Usage 66 MB svchost.exe Process ID 4624 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.74 MB Peak Memory Usage 7.52 MB svchost.exe Process ID 4640 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 20 MB Peak Memory Usage 27 MB svchost.exe Process ID 4648 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 46 MB Peak Memory Usage 173 MB svchost.exe Process ID 4656 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 15 MB svchost.exe Process ID 4740 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.98 MB Peak Memory Usage 8.86 MB svchost.exe Process ID 4780 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.23 MB Peak Memory Usage 6.61 MB svchost.exe Process ID 4988 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 13 MB svchost.exe Process ID 5032 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.27 MB Peak Memory Usage 7.30 MB svchost.exe Process ID 5048 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.73 MB Peak Memory Usage 5.59 MB svchost.exe Process ID 5068 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 22 MB Peak Memory Usage 22 MB svchost.exe Process ID 5044 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 13 MB svchost.exe Process ID 5180 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.45 MB Peak Memory Usage 5.45 MB svchost.exe Process ID 5516 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 13 MB svchost.exe Process ID 6380 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.21 MB Peak Memory Usage 7.46 MB svchost.exe Process ID 5880 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.96 MB Peak Memory Usage 6.98 MB svchost.exe Process ID 6248 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.04 MB Peak Memory Usage 9.26 MB svchost.exe Process ID 7348 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.57 MB Peak Memory Usage 18 MB svchost.exe Process ID 9784 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 20 MB Peak Memory Usage 22 MB svchost.exe Process ID 10256 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 21 MB Peak Memory Usage 23 MB svchost.exe Process ID 10408 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.89 MB Peak Memory Usage 10 MB svchost.exe Process ID 10612 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 22 MB Peak Memory Usage 24 MB svchost.exe Process ID 10808 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.47 MB Peak Memory Usage 8.63 MB svchost.exe Process ID 11948 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 11 MB svchost.exe Process ID 10740 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.22 MB Peak Memory Usage 5.63 MB svchost.exe Process ID 14044 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.86 MB Peak Memory Usage 10 MB svchost.exe Process ID 7144 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 30 MB svchost.exe Process ID 15272 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 12 MB svchost.exe Process ID 15672 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.27 MB Peak Memory Usage 11 MB svchost.exe Process ID 10776 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.75 MB Peak Memory Usage 10 MB svchost.exe Process ID 9960 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 20 MB Peak Memory Usage 23 MB svchost.exe Process ID 10920 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 20 MB Peak Memory Usage 20 MB svchost.exe Process ID 5008 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 16 MB svchost.exe Process ID 10264 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 13 MB svchost.exe Process ID 3872 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 13 MB svchost.exe Process ID 3392 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.15 MB Peak Memory Usage 6.26 MB svchost.exe Process ID 2784 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.85 MB Peak Memory Usage 10 MB svchost.exe Process ID 14140 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\svchost.exe Memory Usage 8.45 MB Peak Memory Usage 8.85 MB svchost.exe Process ID 14056 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.59 MB Peak Memory Usage 6.63 MB svchost.exe Process ID 11724 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.97 MB Peak Memory Usage 6.07 MB svchost.exe Process ID 14332 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\svchost.exe Memory Usage 30 MB Peak Memory Usage 30 MB svchost.exe Process ID 248 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 18 MB svchost.exe Process ID 15724 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\svchost.exe Memory Usage 37 MB Peak Memory Usage 39 MB System Process ID 4 Memory Usage 3.94 MB Peak Memory Usage 11 MB System Idle Process Process ID 0 SystemSettings.exe Process ID 4320 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\ImmersiveControlPanel\SystemSettings.exe Memory Usage 20 KB Peak Memory Usage 123 MB TabTip.exe Process ID 11332 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe Memory Usage 18 MB Peak Memory Usage 18 MB TabTip.exe Process ID 15488 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe Memory Usage 15 MB Peak Memory Usage 15 MB taskhostw.exe Process ID 17864 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\taskhostw.exe Memory Usage 18 MB Peak Memory Usage 21 MB TmsaInstance64.exe Process ID 7764 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Trend Micro\AMSP\module\10011\8.1.2009\8.1.2009\TmsaInstance64.exe Memory Usage 57 MB Peak Memory Usage 76 MB ToolbarNativeMsgHost.exe Process ID 14784 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Trend Micro\Titanium\UIFramework\Toolbar\chromeextension\NativeMessageHost\ToolbarNativeMsgHost.exe Memory Usage 12 MB Peak Memory Usage 13 MB uiSeAgnt.exe Process ID 17700 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiSeAgnt.exe Memory Usage 776 KB Peak Memory Usage 17 MB uiWatchDog.exe Process ID 4604 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiWatchDog.exe Memory Usage 1.14 MB Peak Memory Usage 6.04 MB uiWinMgr.exe Process ID 1500 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\Trend Micro\Titanium\UIFramework\uiWinMgr.exe Memory Usage 31 MB Peak Memory Usage 44 MB unsecapp.exe Process ID 1028 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\unsecapp.exe Memory Usage 6.67 MB Peak Memory Usage 8.98 MB UserOOBEBroker.exe Process ID 17332 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\System32\oobe\UserOOBEBroker.exe Memory Usage 9.91 MB Peak Memory Usage 11 MB Video.UI.exe Process ID 18412 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.20032.16211.0_x64__8wekyb3d8bbwe\Video.UI.exe Memory Usage 432 KB Peak Memory Usage 58 MB VideoGuardMonitor.exe Process ID 10348 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Users\mckin\AppData\Local\Synamedia\VideoGuardPlayer\VideoGuardMonitor\VideoGuardMonitor.exe Memory Usage 11 MB Peak Memory Usage 12 MB WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe Process ID 19236 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe Memory Usage 45 MB Peak Memory Usage 54 MB wininit.exe Process ID 964 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wininit.exe Memory Usage 5.18 MB Peak Memory Usage 6.87 MB winlogon.exe Process ID 4948 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\winlogon.exe Memory Usage 9.49 MB Peak Memory Usage 18 MB WinStore.App.exe Process ID 18840 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\WindowsApps\Microsoft.WindowsStore_12007.1001.2.0_x64__8wekyb3d8bbwe\WinStore.App.exe Memory Usage 52 KB Peak Memory Usage 149 MB WlanAniControl.exe Process ID 16324 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Samsung\SamsungSettings\WlanAniControl.exe Memory Usage 11 MB Peak Memory Usage 12 MB WmiApSrv.exe Process ID 10644 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiApSrv.exe Memory Usage 8.72 MB Peak Memory Usage 8.80 MB WmiPrvSE.exe Process ID 15572 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 44 MB Peak Memory Usage 44 MB WmiPrvSE.exe Process ID 4980 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 32 MB Peak Memory Usage 32 MB WmiPrvSE.exe Process ID 12956 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 14 MB Peak Memory Usage 15 MB WUDFHost.exe Process ID 1232 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\WUDFHost.exe Memory Usage 6.03 MB Peak Memory Usage 8.42 MB WUDFHost.exe Process ID 5240 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\WUDFHost.exe Memory Usage 8.35 MB Peak Memory Usage 8.41 MB YourPhone.exe Process ID 9992 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20071.95.0_x64__8wekyb3d8bbwe\YourPhone.exe Memory Usage 8.79 MB Peak Memory Usage 60 MB YourPhoneServer.exe Process ID 14340 User mckinnik Domain DESKTOP-GLBDK8Q Path C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20071.95.0_x64__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe Memory Usage 18 MB Peak Memory Usage 20 MB Security Options Accounts: Administrator account status Disabled Accounts: Block Microsoft accounts Not Defined Accounts: Guest account status Disabled Accounts: Limit local account use of blank passwords to console logon only Enabled Accounts: Rename administrator account Administrator Accounts: Rename guest account Guest Audit: Audit the access of global system objects Disabled Audit: Audit the use of Backup and Restore privilege Disabled Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings Not Defined Audit: Shut down system immediately if unable to log security audits Disabled DCOM: Machine Access Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined DCOM: Machine Launch Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined Devices: Allow undock without having to log on Enabled Devices: Allowed to format and eject removable media Not Defined Devices: Prevent users from installing printer drivers Disabled Devices: Restrict CD-ROM access to locally logged-on user only Not Defined Devices: Restrict floppy access to locally logged-on user only Not Defined Domain controller: Allow server operators to schedule tasks Not Defined Domain controller: Allow vulnerable Netlogon secure channel connections Not Defined Domain controller: LDAP server channel binding token requirements Not Defined Domain controller: LDAP server signing requirements Not Defined Domain controller: Refuse machine account password changes Not Defined Domain member: Digitally encrypt or sign secure channel data (always) Enabled Domain member: Digitally encrypt secure channel data (when possible) Enabled Domain member: Digitally sign secure channel data (when possible) Enabled Domain member: Disable machine account password changes Disabled Domain member: Maximum machine account password age 30 days Domain member: Require strong (Windows 2000 or later) session key Enabled Interactive logon: Display user information when the session is locked Not Defined Interactive logon: Do not require CTRL+ALT+DEL Not Defined Interactive logon: Don't display last signed-in Disabled Interactive logon: Don't display username at sign-in Not Defined Interactive logon: Machine account lockout threshold Not Defined Interactive logon: Machine inactivity limit Not Defined Interactive logon: Message text for users attempting to log on Interactive logon: Message title for users attempting to log on Interactive logon: Number of previous logons to cache (in case domain controller is not available) 10 logons Interactive logon: Prompt user to change password before expiration 5 days Interactive logon: Require Domain Controller authentication to unlock workstation Disabled Interactive logon: Require Windows Hello for Business or smart card Disabled Interactive logon: Smart card removal behavior No Action Microsoft network client: Digitally sign communications (always) Disabled Microsoft network client: Digitally sign communications (if server agrees) Enabled Microsoft network client: Send unencrypted password to third-party SMB servers Disabled Microsoft network server: Amount of idle time required before suspending session Not Defined Microsoft network server: Attempt S4U2Self to obtain claim information Not Defined Microsoft network server: Digitally sign communications (always) Disabled Microsoft network server: Digitally sign communications (if client agrees) Disabled Microsoft network server: Disconnect clients when logon hours expire Enabled Microsoft network server: Server SPN target name validation level Not Defined Network access: Allow anonymous SID/Name translation Disabled Network access: Do not allow anonymous enumeration of SAM accounts Enabled Network access: Do not allow anonymous enumeration of SAM accounts and shares Disabled Network access: Do not allow storage of passwords and credentials for network authentication Disabled Network access: Let Everyone permissions apply to anonymous users Disabled Network access: Named Pipes that can be accessed anonymously Network access: Remotely accessible registry paths System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion Network access: Remotely accessible registry paths and sub-paths System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog Network access: Restrict anonymous access to Named Pipes and Shares Enabled Network access: Restrict clients allowed to make remote calls to SAM Network access: Shares that can be accessed anonymously Not Defined Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Network security: Allow Local System to use computer identity for NTLM Not Defined Network security: Allow LocalSystem NULL session fallback Not Defined Network security: Allow PKU2U authentication requests to this computer to use online identities. Not Defined Network security: Configure encryption types allowed for Kerberos Not Defined Network security: Do not store LAN Manager hash value on next password change Enabled Network security: Force logoff when logon hours expire Disabled Network security: LAN Manager authentication level Not Defined Network security: LDAP client signing requirements Negotiate signing Network security: Minimum session security for NTLM SSP based (including secure RPC) clients Require 128-bit encryption Network security: Minimum session security for NTLM SSP based (including secure RPC) servers Require 128-bit encryption Network security: Restrict NTLM: Add remote server exceptions for NTLM authentication Not Defined Network security: Restrict NTLM: Add server exceptions in this domain Not Defined Network security: Restrict NTLM: Audit Incoming NTLM Traffic Not Defined Network security: Restrict NTLM: Audit NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Incoming NTLM traffic Not Defined Network security: Restrict NTLM: NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Outgoing NTLM traffic to remote servers Not Defined Recovery console: Allow automatic administrative logon Not Defined Recovery console: Allow floppy copy and access to all drives and all folders Not Defined Shutdown: Allow system to be shut down without having to log on Enabled Shutdown: Clear virtual memory pagefile Disabled System cryptography: Force strong key protection for user keys stored on the computer Not Defined System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing Disabled System objects: Require case insensitivity for non-Windows subsystems Enabled System objects: Strengthen default permissions of internal system objects (e.g. Symbolic Links) Enabled System settings: Optional subsystems System settings: Use Certificate Rules on Windows Executables for Software Restriction Policies Disabled User Account Control: Admin Approval Mode for the Built-in Administrator account Not Defined User Account Control: Allow UIAccess applications to prompt for elevation without using the secure desktop Disabled User Account Control: Behavior of the elevation prompt for administrators in Admin Approval Mode Prompt for consent for non-Windows binaries User Account Control: Behavior of the elevation prompt for standard users Prompt for credentials on the secure desktop User Account Control: Detect application installations and prompt for elevation Enabled User Account Control: Only elevate executables that are signed and validated Disabled User Account Control: Only elevate UIAccess applications that are installed in secure locations Enabled User Account Control: Run all administrators in Admin Approval Mode Enabled User Account Control: Switch to the secure desktop when prompting for elevation Enabled User Account Control: Virtualize file and registry write failures to per-user locations Enabled Device Tree ACPI x64-based PC Microsoft ACPI-Compliant System ACPI Fixed Feature Button ACPI Lid ACPI Power Button ACPI Thermal Zone ACPI Thermal Zone ACPI Wake Alarm AMD GPIO Controller AMD Ryzen 5 2500U with Radeon Vega Mobile Gfx AMD Ryzen 5 2500U with Radeon Vega Mobile Gfx AMD Ryzen 5 2500U with Radeon Vega Mobile Gfx AMD Ryzen 5 2500U with Radeon Vega Mobile Gfx AMD Ryzen 5 2500U with Radeon Vega Mobile Gfx AMD Ryzen 5 2500U with Radeon Vega Mobile Gfx AMD Ryzen 5 2500U with Radeon Vega Mobile Gfx AMD Ryzen 5 2500U with Radeon Vega Mobile Gfx AMD UMDF Sensor GPIO Laptop or Slate Indicator Driver High precision event timer Microsoft AC Adapter Microsoft ACPI-Compliant Control Method Battery Motherboard resources Samsung System Event Controller Trusted Platform Module 2.0 UCM-UCSI ACPI Device PCI Express Root Complex AMD SMBus Microsoft Windows Management Interface for ACPI Motherboard resources Motherboard resources Motherboard resources PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge System board PCI Express Root Port Qualcomm Atheros QCA61x4A Wireless Network Adapter Microsoft Wi-Fi Direct Virtual Adapter Microsoft Wi-Fi Direct Virtual Adapter #2 PCI Express Root Port AMD PSP 10.0 Device AMD Sensor Fusion Hub Motherboard resources AMD Radeon(TM) Vega 8 Graphics Generic PnP Monitor High Definition Audio Controller AMD High Definition Audio Device AMD USB 3.10 eXtensible Host Controller - 1.10 (Microsoft) USB Root Hub (USB 3.0) Generic USB Hub USB Composite Device Logitech USB Input Device HID Keyboard Device USB Input Device HID-compliant consumer control device HID-compliant mouse HID-compliant system controller HID-compliant vendor-defined device USB Input Device HID-compliant vendor-defined device HID-compliant vendor-defined device HID-compliant vendor-defined device USB Composite Device Logitech USB Input Device HID Keyboard Device USB Input Device HID-compliant consumer control device HID-compliant mouse HID-compliant system controller HID-compliant vendor-defined device USB Input Device HID-compliant vendor-defined device HID-compliant vendor-defined device HID-compliant vendor-defined device AMD USB 3.10 eXtensible Host Controller - 1.10 (Microsoft) USB Root Hub (USB 3.0) Generic USB Hub CanvasBio Fingerprint Driver Qualcomm Atheros QCA61x4 Bluetooth Bluetooth Device (Personal Area Network) Bluetooth Device (RFCOMM Protocol TDI) Microsoft Bluetooth LE Enumerator LG Stylo 5 Microsoft Bluetooth Enumerator Audio Source Service Audio Source Service Bluetooth Peripheral Device Bluetooth Peripheral Device Bluetooth Peripheral Device Bluetooth Peripheral Device Headset Audio Gateway Service Headset Audio Gateway Service LG Stylo 5 LG Stylo 5 Avrcp Transport LG Stylo 5 Avrcp Transport MAP SMS/MMS Monster Clarity Monster Clarity Avrcp Transport Monster Clarity Stereo Object Push Service Object Push Service Personal Area Network NAP Service Personal Area Network Service Phonebook Access Pse Service Phonebook Access Pse Service SAMSUNG-SM-J727AZ SAMSUNG-SM-J727AZ Avrcp Transport SAMSUNG-SM-J727AZ Avrcp Transport SMS/MMS SoundBuds Life SoundBuds Life Avrcp Transport SoundBuds Life Avrcp Transport SoundBuds Life Stereo TikiTunes TikiTunes Avrcp Transport TikiTunes Stereo WI-C400 WI-C400 Avrcp Transport WI-C400 Avrcp Transport WI-C400 Stereo WI-C400 Hands-Free AG WI-C400 Hands-Free AG Audio Monster Clarity Hands-Free AG Monster Clarity Hands-Free AG Audio SoundBuds Life Hands-Free AG SoundBuds Life Hands-Free AG Audio LG Stylo 5 Hands-Free HF LG Stylo 5 Hands-Free HF Audio SAMSUNG-SM-J727AZ Hands-Free HF SAMSUNG-SM-J727AZ Hands-Free HF Audio USB Composite Device Web Camera High Definition Audio Controller Realtek(R) Audio Microphone Array (Realtek Audio) Realtek Audio Effects Component Realtek Audio Universal Service Realtek Hardware Support Application Speakers (Realtek Audio) Stereo Mix (Realtek Audio) PCI Express Root Port Standard SATA AHCI Controller SAMSUNG MZNLN128HAHQ-000 PCI standard ISA bridge Direct memory access controller Microsoft ACPI-Compliant Embedded Controller Programmable interrupt controller Standard PS/2 Keyboard System CMOS/real time clock System speaker System timer AMD I2C Controller maxTouch I2C Boot Bridge Peripheral Driver I2C HID Device HID-compliant mouse HID-compliant vendor-defined device Microsoft Input Configuration Device Samsung PTP Component Device I2C HID Device HID-compliant device HID-compliant pen HID-compliant touch screen HID-compliant vendor-defined device HID-compliant vendor-defined device HID-compliant vendor-defined device HID-compliant vendor-defined device Microsoft UEFI-Compliant System SAMSUNG ELECTRONICS System Firmware CPU AMD Ryzen 5 Cores 4 Threads 8 Name AMD Ryzen 5 Code Name Raven Ridge Technology 14nm Specification AMD Ryzen 5 2500U with Radeon Vega Mobile Gfx Family F Extended Family 17 Model 1 Extended Model 11 Stepping 0 Revision RV-A0 Instructions MMX (+), SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, SSE4A, AMD 64, NX, VMX, AES, AVX, AVX2, FMA3 Virtualization Supported, Disabled Hyperthreading Supported, Enabled Average Temperature 45 °C Caches L1 Data Cache Size 4 x 32 KBytes L1 Instructions Cache Size 4 x 64 KBytes L2 Unified Cache Size 4 x 512 KBytes L3 Unified Cache Size 4096 KBytes Cores Core 0 Core Speed 698.6 MHz Multiplier x 28.0 Bus Speed 24.9 MHz Temperature 45 °C Threads APIC ID: 0, 1 Core 1 Core Speed 399.2 MHz Multiplier x 16.0 Bus Speed 24.9 MHz Temperature 45 °C Threads APIC ID: 2, 3 Core 2 Core Speed 698.6 MHz Multiplier x 28.0 Bus Speed 24.9 MHz Temperature 45 °C Threads APIC ID: 4, 5 Core 3 Core Speed 698.6 MHz Multiplier x 28.0 Bus Speed 24.9 MHz Temperature 45 °C Threads APIC ID: 6, 7 RAM Memory Type Unknown Size 7126 MBytes Channels # Dual DRAM Frequency 299.4 MHz CAS# Latency (CL) 17 clocks RAS# to CAS# Delay (tRCD) 17 clocks RAS# Precharge (tRP) 17 clocks Cycle Time (tRAS) 39 clocks Bank Cycle Time (tRC) 56 clocks Command Rate (CR) 1T Physical Memory Memory Usage 66 % Total Physical 6.96 GB Available Physical 2.36 GB Total Virtual 13 GB Available Virtual 5.81 GB SPD Number Of SPD Modules 0 Motherboard Manufacturer SAMSUNG ELECTRONICS CO. LTD. Model NP750QUA-K01US (FP5) Version SGL9548A0J-C01-G001-S0001+10.0.17134 Chipset Vendor AMD Chipset Model Ryzen SOC Chipset Revision 00 Southbridge Vendor AMD Southbridge Model Carrizo FCH Southbridge Revision 51 BIOS Brand American Megatrends Inc. Version P03AGV.032.180928.MK Date 9/28/2018 PCI Data Slot PCI-E x8 Slot Type PCI-E x8 Slot Usage Available Data lanes x8 Slot Designation J3604 Characteristics 3.3V, PME, Hot Plug Slot Number 0 Slot Unknown Slot Type Unknown Slot Usage In Use Data lanes x1 Slot Designation J3711 Characteristics 3.3V, PME, Hot Plug Slot Number 1 Slot Unknown Slot Type Unknown Slot Usage Available Data lanes x2 Slot Designation J3704 Characteristics 3.3V, PME, Hot Plug Slot Number 2 Slot Unknown Slot Type Unknown Slot Usage Available Data lanes x1 Slot Designation J3709 Characteristics 3.3V, PME, Hot Plug Slot Number 3 Graphics Monitor Name Generic PnP Monitor on AMD Radeon Vega 8 Graphics Current Resolution 1536x864 pixels Work Resolution 1536x864 pixels State Enabled, Primary Monitor Width 1920 Monitor Height 1080 Monitor BPP 32 bits per pixel Monitor Frequency 60 Hz Device \\.\DISPLAY1\Monitor0 ATI AMD Radeon(TM) Vega 8 Graphics Manufacturer ATI Model AMD Radeon Vega 8 Graphics Device ID 1002-15DD Revision C5 Subvendor Samsung (144D) Current Performance Level Level 0 Current GPU Clock 381 MHz Current Memory Clock 933 MHz Current Shader Clock 933 MHz Voltage 0.001 V GPU Clock 1101.0 MHz Core Voltage 0.001 V Driver version 23.20.826.14080 BIOS Version 113-RAVEN-107 Memory Type DDR4 Memory 1024 MB Bandwidth 21.3 GB/s Count of performance levels : 8 Level 1 - "Perf Level 0" Level 2 - "Perf Level 1" Level 3 - "Perf Level 2" Level 4 - "Perf Level 3" Level 5 - "Perf Level 4" Level 6 - "Perf Level 5" Level 7 - "Perf Level 6" Level 8 - "Perf Level 7" Storage Hard drives SAMSUNG MZNLN128HAHQ-000 (SSD) Manufacturer SAMSUNG Heads 16 Cylinders 15,566 Tracks 3,969,330 Sectors 250,067,790 SATA type SATA-III 6.0Gb/s Device type Fixed ATA Standard ACS2 Serial Number S3WJNF0K806532 Firmware Version Number MVT22K0Q LBA Size 48-bit LBA Power On Count 1400 times Power On Time 177.7 days Speed Not used (SSD Drive) Features S.M.A.R.T., NCQ, TRIM, SSD Max. Transfer Mode SATA III 6.0Gb/s Used Transfer Mode SATA III 6.0Gb/s Interface SATA Capacity 119 GB Real size 128,035,676,160 bytes RAID Type None S.M.A.R.T Status Good Temperature 38 °C Temperature Range OK (less than 50 °C) S.M.A.R.T attributes 05 Attribute name Reallocated Sectors Count Real value 0 Current 100 Worst 100 Threshold 10 Raw Value 0000000000 Status Good 09 Attribute name Power-On Hours (POH) Real value 177d 16h Current 99 Worst 99 Threshold 0 Raw Value 00000010A8 Status Good 0C Attribute name Device Power Cycle Count Real value 1,400 Current 98 Worst 98 Threshold 0 Raw Value 0000000578 Status Good AA Attribute name Reserved Block Count Real value 0 Current 100 Worst 100 Threshold 10 Raw Value 0000000000 Status Good AB Attribute name Program Fail Count Real value 0 Current 100 Worst 100 Threshold 10 Raw Value 0000000000 Status Good AC Attribute name Erase Fail Count Real value 0 Current 100 Worst 100 Threshold 10 Raw Value 0000000000 Status Good AD Attribute name Wear Leveling Count Real value 55 Current 95 Worst 95 Threshold 5 Raw Value 0000000037 Status Good AE Attribute name Unexpected Power Loss Real value 9 Current 99 Worst 99 Threshold 0 Raw Value 0000000009 Status Good B2 Attribute name Used Reserved Block Count (Chip) Real value 0 Current 100 Worst 100 Threshold 10 Raw Value 0000000000 Status Good B4 Attribute name Unused Reserved Block Count (Total) Real value 310 Current 100 Worst 100 Threshold 10 Raw Value 0000000136 Status Good B8 Attribute name End-to-End error / IOEDC Real value 0 Current 100 Worst 100 Threshold 97 Raw Value 0000000000 Status Good BB Attribute name Uncorrectable Error Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C2 Attribute name Airflow Temperature Real value 63 °C Current 63 Worst 47 Threshold 0 Raw Value 0000000025 Status Good C7 Attribute name CRC Error Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good E9 Attribute name Media Wearout Indicator Real value 16,008,259 Current 95 Worst 95 Threshold 0 Raw Value 0000F44443 Status Good F1 Attribute name Total LBAs Written Real value 8,432 Current 99 Worst 99 Threshold 0 Raw Value 00000020F0 Status Good F2 Attribute name Total LBAs Read Real value 7,354 Current 99 Worst 99 Threshold 0 Raw Value 0000001CBA Status Good F9 Attribute name Total NAND Writes Real value 15,481 Current 99 Worst 99 Threshold 0 Raw Value 0000003C79 Status Good Partition 0 Partition ID Disk #0, Partition #0 File System FAT32 Volume Serial Number 0E44956F Size 256 MB Used Space 45 MB (17%) Free Space 210 MB (83%) Partition 1 Partition ID Disk #0, Partition #1 Disk Letter C: File System NTFS Volume Serial Number 16451A26 Size 104 GB Used Space 55 GB (53%) Free Space 49 GB (47%) Partition 2 Partition ID Disk #0, Partition #2 File System NTFS Volume Serial Number A6D5B42D Size 849 MB Used Space 404 MB (47%) Free Space 445 MB (53%) Partition 3 Partition ID Disk #0, Partition #3 File System NTFS Volume Serial Number 44A200EC Size 12.2 GB Used Space 10.5 GB (85%) Free Space 1.71 GB (15%) Partition 4 Partition ID Disk #0, Partition #4 File System FAT32 Volume Serial Number A2485664 Size 1020 MB Used Space 558 MB (54%) Free Space 461 MB (46%) Optical Drives No optical disk drives detected Audio Sound Cards Realtek High Definition Audio AMD High Definition Audio Device Playback Device Speakers (Realtek Audio) Recording Devices Stereo Mix (Realtek Audio) Microphone Array (Realtek Audio) (default) Peripherals Standard PS/2 Keyboard Device Kind Keyboard Device Name Standard PS/2 Keyboard Vendor MSF Location PCI standard ISA bridge Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\i8042prt.sys File C:\WINDOWS\system32\DRIVERS\kbdclass.sys HID Keyboard Device Device Kind Keyboard Device Name HID Keyboard Device Vendor Logitech Location Logitech USB Input Device Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\kbdhid.sys File C:\WINDOWS\system32\DRIVERS\kbdclass.sys HID Keyboard Device Device Kind Keyboard Device Name HID Keyboard Device Vendor Logitech Location Logitech USB Input Device Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\kbdhid.sys File C:\WINDOWS\system32\DRIVERS\kbdclass.sys HID-compliant mouse Device Kind Mouse Device Name HID-compliant mouse Vendor ATML Location I2C HID Device Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\mouhid.sys File C:\WINDOWS\system32\DRIVERS\mouclass.sys HID-compliant mouse Device Kind Mouse Device Name HID-compliant mouse Vendor Logitech Location USB Input Device Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\mouhid.sys File C:\WINDOWS\system32\DRIVERS\mouclass.sys HID-compliant mouse Device Kind Mouse Device Name HID-compliant mouse Vendor Logitech Location USB Input Device Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\mouhid.sys File C:\WINDOWS\system32\DRIVERS\mouclass.sys WSD Scan Device Device Kind Camera/scanner Device Name WSD Scan Device Vendor BF Comment TS6100 series _4E1DE1000000 Location http://192.168.0.18:80/wsd/pnpx-metadata.cgi Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\System32\drivers\WSDScan.sys Printers Canon TS6100 series (Default Printer) Printer Port 4E1DE1000000 Print Processor Canon TS6100 series Print Processor Availability Always Priority 1 Duplex None Print Quality 4294967293 dpi Color Status Unknown Driver Driver Name Canon TS6100 series (v12.010) Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\CNMDRDP.DLL Fax Printer Port SHRFAX: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 200 * 200 dpi Monochrome Status Unknown Driver Driver Name Microsoft Shared Fax Driver (v4.00) Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\FXSDRV.DLL Microsoft Print to PDF Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft Print To PDF (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_9739b9b0059f5e67\Amd64\mxdwdrv.dll Microsoft XPS Document Writer Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft XPS Document Writer v4 (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_9739b9b0059f5e67\Amd64\mxdwdrv.dll OneNote (Desktop) Printer Port nul: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Send to Microsoft OneNote 16 Driver (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_9739b9b0059f5e67\Amd64\mxdwdrv.dll OneNote for Windows 10 Printer Port Microsoft.Office.OneNote_16001.12827.20538.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-3518604814-232533841-1677687598-1002 Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 300 * 300 dpi Color Status Unknown Driver Driver Name Microsoft Software Printer Driver (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_9739b9b0059f5e67\Amd64\mxdwdrv.dll Network You are connected to the internet Connected through Qualcomm Atheros QCA61x4A Wireless Network Adapter IP Address 192.168.0.13 Subnet mask 255.255.255.0 Gateway server 192.168.0.1 Preferred DNS server 68.105.28.11 Alternate DNS server 68.105.29.11 Alternate DNS server 68.105.28.12 DHCP Enabled DHCP server 192.168.0.1 External IP Address 70.162.93.34 Adapter Type IEEE 802.11 wireless NetBIOS over TCP/IP Enabled via DHCP NETBIOS Node Type Hybrid node Link Speed 0 Bps Computer Name NetBIOS Name DESKTOP-GLBDK8Q DNS Name DESKTOP-GLBDK8Q Membership Part of workgroup Workgroup WORKGROUP Remote Desktop Disabled Console State Active Domain DESKTOP-GLBDK8Q WinInet Info LAN Connection Local system uses a local area network to connect to the Internet Local system has RAS to connect to the Internet Wi-Fi Info Using native Wi-Fi API version 2 Available access points count 4 Wi-Fi (2CA45E) SSID 2CA45E Frequency 2462000 kHz Channel Number 11 Name 2CA45E Signal Strength/Quality 100 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags Currently Connected to this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (DIRECT-eoE1-TS6100series) SSID DIRECT-eoE1-TS6100series Frequency 2462000 kHz Channel Number 11 Name DIRECT-eoE1-TS6100series Signal Strength/Quality 100 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (DIRECTV_WVB_3F1ACA76) SSID DIRECTV_WVB_3F1ACA76 Frequency 5680000 kHz Channel Number 136 Name DIRECTV_WVB_3F1ACA76 Signal Strength/Quality 100 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (NETGEAR92) SSID NETGEAR92 Frequency 2412000 kHz Channel Number 1 Name NETGEAR92 Signal Strength/Quality 44 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK WinHTTPInfo WinHTTPSessionProxyType No proxy Session Proxy Session Proxy Bypass Connect Retries 5 Connect Timeout (ms) 60,000 HTTP Version HTTP 1.1 Max Connects Per 1.0 Servers INFINITE Max Connects Per Servers INFINITE Max HTTP automatic redirects 10 Max HTTP status continue 10 Send Timeout (ms) 30,000 IEProxy Auto Detect Yes IEProxy Auto Config IEProxy IEProxy Bypass Default Proxy Config Access Type No proxy Default Config Proxy Default Config Proxy Bypass Sharing and Discovery File and printer sharing service Enabled Simple File Sharing Enabled Administrative Shares Enabled Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Private profile Network Discovery Enabled File and Printer Sharing Enabled Public profile Network Discovery Enabled File and Printer Sharing Enabled Adapters List Enabled Bluetooth Device (Personal Area Network) Connection Name Bluetooth Network Connection DHCP enabled Yes MAC Address 00-F4-8D-5F-44-F8 Microsoft Wi-Fi Direct Virtual Adapter #2 Connection Name Local Area Connection* 3 NetBIOS over TCPIP Yes DHCP enabled No MAC Address 12-F4-8D-5F-44-F7 IP Address 192.168.137.1 Subnet mask 255.255.255.0 Qualcomm Atheros QCA61x4A Wireless Network Adapter Connection Name Wi-Fi NetBIOS over TCPIP Yes DHCP enabled Yes MAC Address 00-F4-8D-5F-44-F7 IP Address 192.168.0.13 Subnet mask 255.255.255.0 Gateway server 192.168.0.1 DHCP 192.168.0.1 DNS Server 68.105.28.11 68.105.29.11 68.105.28.12 Network Shares No network shares Current TCP Connections C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (14220) Local 127.0.0.1:54815 ESTABLISHED Remote 127.0.0.1:49153 (Querying... ) Local 127.0.0.1:54816 ESTABLISHED Remote 127.0.0.1:49153 (Querying... ) Local 192.168.0.13:54817 ESTABLISHED Remote 35.168.163.196:443 (Querying... ) (HTTPS) Local 192.168.0.13:54285 ESTABLISHED Remote 142.250.101.188:5228 (Querying... ) Local 192.168.0.13:54819 CLOSE-WAIT Remote 152.195.12.97:443 (Querying... ) (HTTPS) Local 192.168.0.13:54828 ESTABLISHED Remote 151.101.26.202:443 (Querying... ) (HTTPS) Local 192.168.0.13:54811 ESTABLISHED Remote 151.101.26.202:443 (Querying... ) (HTTPS) Local 192.168.0.13:54810 ESTABLISHED Remote 151.101.26.202:80 (Querying... ) (HTTP) Local 192.168.0.13:54809 ESTABLISHED Remote 151.101.26.202:80 (Querying... ) (HTTP) Local 127.0.0.1:53218 ESTABLISHED Remote 127.0.0.1:51223 (Querying... ) Local 192.168.0.13:54745 ESTABLISHED Remote 13.33.68.155:443 (Querying... ) (HTTPS) Local 192.168.0.13:54701 ESTABLISHED Remote 151.101.42.133:443 (Querying... ) (HTTPS) C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe (10756) Local 192.168.0.13:53826 ESTABLISHED Remote 52.230.222.68:443 (Querying... ) (HTTPS) C:\Program Files\Trend Micro\TMIDS\tower\PwmTower.exe (12008) Local 127.0.0.1:51223 LISTEN Local 127.0.0.1:49153 ESTABLISHED Remote 127.0.0.1:54816 (Querying... ) Local 127.0.0.1:49153 ESTABLISHED Remote 127.0.0.1:54815 (Querying... ) Local 127.0.0.1:49153 ESTABLISHED Remote 127.0.0.1:51738 (Querying... ) Local 127.0.0.1:49153 LISTEN Local 127.0.0.1:51223 ESTABLISHED Remote 127.0.0.1:53218 (Querying... ) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.20070.10002.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (15856) Local 192.168.0.13:54248 ESTABLISHED Remote 13.107.42.12:443 (Querying... ) (HTTPS) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12007.1001.2.0_x64__8wekyb3d8bbwe\WinStore.App.exe (18840) Local 192.168.0.13:51845 ESTABLISHED Remote 23.55.249.219:443 (Querying... ) (HTTPS) Local 192.168.0.13:51846 ESTABLISHED Remote 23.55.249.219:443 (Querying... ) (HTTPS) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.20032.16211.0_x64__8wekyb3d8bbwe\Video.UI.exe (18412) Local 192.168.0.13:51858 ESTABLISHED Remote 23.55.248.10:443 (Querying... ) (HTTPS) C:\Users\mckin\AppData\Local\Synamedia\VideoGuardPlayer\VideoGuardMonitor\VideoGuardMonitor.exe (10348) Local 127.0.0.1:843 LISTEN Local 127.0.0.1:9006 LISTEN Local 127.0.0.1:9016 LISTEN C:\Windows\ImmersiveControlPanel\SystemSettings.exe (4320) Local 192.168.0.13:51815 CLOSE-WAIT Remote 13.93.150.192:443 (Querying... ) (HTTPS) C:\Windows\System32\CastSrv.exe (4700) Local 0.0.0.0:7250 LISTEN C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe (1884) Local 192.168.0.13:54880 ESTABLISHED Remote 204.79.197.200:443 (Querying... ) (HTTPS) Local 192.168.0.13:54886 ESTABLISHED Remote 204.79.197.222:443 (Querying... ) (HTTPS) Local 192.168.0.13:54887 ESTABLISHED Remote 131.253.33.254:443 (Querying... ) (HTTPS) Local 192.168.0.13:54888 ESTABLISHED Remote 204.79.197.254:443 (Querying... ) (HTTPS) Local 192.168.0.13:54889 ESTABLISHED Remote 204.79.197.222:443 (Querying... ) (HTTPS) Local 192.168.0.13:53688 FIN-WAIT-1 Remote 52.96.18.2:443 (Querying... ) (HTTPS) Local 192.168.0.13:54738 ESTABLISHED Remote 13.107.42.254:443 (Querying... ) (HTTPS) coreServiceShell.exe (4504) Local 192.168.0.13:54703 ESTABLISHED Remote 23.64.177.208:80 (Querying... ) (HTTP) Local 192.168.0.13:54834 ESTABLISHED Remote 23.64.177.208:80 (Querying... ) (HTTP) Local 192.168.0.13:54314 ESTABLISHED Remote 23.65.186.157:443 (Querying... ) (HTTPS) Local 192.168.0.13:54857 ESTABLISHED Remote 23.64.177.208:80 (Querying... ) (HTTP) Local 192.168.0.13:50488 ESTABLISHED Remote 23.65.186.157:443 (Querying... ) (HTTPS) Local 127.0.0.1:37848 LISTEN Local 192.168.0.13:54755 ESTABLISHED Remote 184.30.171.52:80 (Querying... ) (HTTP) lsass.exe (1036) Local 0.0.0.0:49664 LISTEN PwmSvc.exe (4848) Local 127.0.0.1:51738 ESTABLISHED Remote 127.0.0.1:49153 (Querying... ) services.exe (960) Local 0.0.0.0:49670 LISTEN spoolsv.exe (4072) Local 0.0.0.0:49668 LISTEN svchost.exe (10256) Local 0.0.0.0:5040 LISTEN svchost.exe (1348) Local 0.0.0.0:135 (DCE) LISTEN svchost.exe (1800) Local 0.0.0.0:49666 LISTEN svchost.exe (2456) Local 0.0.0.0:49667 LISTEN svchost.exe (248) Local 192.168.0.13:54882 ESTABLISHED Remote 40.90.22.186:443 (Querying... ) (HTTPS) svchost.exe (5008) Local 0.0.0.0:7680 LISTEN svchost.exe (5068) Local 192.168.0.13:54474 ESTABLISHED Remote 52.242.211.89:443 (Querying... ) (HTTPS) System Process Local 192.168.0.13:54876 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54862 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54861 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54849 TIME-WAIT Remote 23.48.0.77:80 (Querying... ) (HTTP) Local 192.168.0.13:54860 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54879 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54878 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54850 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54845 TIME-WAIT Remote 23.48.0.77:80 (Querying... ) (HTTP) Local 192.168.0.13:54853 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54855 TIME-WAIT Remote 23.48.0.77:80 (Querying... ) (HTTP) Local 192.168.0.13:54856 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54877 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54858 TIME-WAIT Remote 23.48.0.77:80 (Querying... ) (HTTP) Local 192.168.0.13:54859 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54875 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54874 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54871 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54870 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54869 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54868 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54867 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54866 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54864 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54863 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54846 TIME-WAIT Remote 23.48.0.77:80 (Querying... ) (HTTP) Local 192.168.0.13:54844 TIME-WAIT Remote 23.48.0.77:80 (Querying... ) (HTTP) Local 192.168.0.13:54843 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54842 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54883 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54841 TIME-WAIT Remote 13.107.21.200:443 (Querying... ) (HTTPS) Local 192.168.0.13:54840 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54839 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54836 TIME-WAIT Remote 23.48.0.77:80 (Querying... ) (HTTP) Local 192.168.0.13:54833 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54885 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) Local 192.168.0.13:54890 TIME-WAIT Remote 192.168.0.18:80 (Querying... ) (HTTP) System Process Local 0.0.0.0:5357 LISTEN Local 0.0.0.0:10247 LISTEN Local 192.168.0.13:139 (NetBIOS session service) LISTEN Local 192.168.137.1:139 (NetBIOS session service) LISTEN Local 0.0.0.0:445 (Windows shares) LISTEN Local 0.0.0.0:2869 LISTEN wininit.exe (964) Local 0.0.0.0:49665 LISTEN Generated with Speccy v1.32.740