Summary Operating System Windows 10 Home 64-bit CPU Intel Core i3 4150T @ 3.00GHz 64 °C Haswell 22nm Technology RAM 8.00GB Dual-Channel DDR3 @ 798MHz (11-11-11-28) Motherboard ASUSTeK COMPUTER INC. ET2230I (LGA1150) 46 °C Graphics ET2230I (1920x1080@60Hz) Intel HD Graphics 4400 (ASUStek Computer Inc) Storage 931GB TOSHIBA DT01ACA100 (SATA ) 46 °C 465GB Seagate Slim BK SCSI Disk Device (USB (SATA) ) 33 °C 14GB Lexar USB Flash Drive USB Device (USB ) Optical Drives HL-DT-ST DVDRAM GUA0N Audio Realtek High Definition Audio Operating System Windows 10 Home 64-bit Computer type: Tablet Installation Date: 5/5/2021 3:32:40 PM Windows Security Center User Account Control (UAC) Enabled Notify level 2 - Default Firewall Enabled Windows Update AutoUpdate Not configured Windows Defender Windows Defender Enabled Antivirus Antivirus Enabled Display Name Windows Defender Virus Signature Database Up to date .NET Frameworks installed v4.8 Full v4.8 Client Internet Explorer Version 11.630.19041.0 PowerShell Version 5.1.19041.1 Environment Variables USERPROFILE C:\Users\clift SystemRoot C:\Windows User Variables OneDrive C:\Users\clift\OneDrive OneDriveConsumer C:\Users\clift\OneDrive Path C:\Users\clift\AppData\Local\Microsoft\WindowsApps TEMP C:\Users\clift\AppData\Local\Temp TMP C:\Users\clift\AppData\Local\Temp Machine Variables ComSpec C:\Windows\system32\cmd.exe DriverData C:\Windows\System32\Drivers\DriverData NUMBER_OF_PROCESSORS 4 OS Windows_NT Path C:\Windows\system32 C:\Windows C:\Windows\System32\Wbem C:\Windows\System32\WindowsPowerShell\v1.0\ C:\Windows\System32\OpenSSH\ PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE AMD64 PROCESSOR_IDENTIFIER Intel64 Family 6 Model 60 Stepping 3, GenuineIntel PROCESSOR_LEVEL 6 PROCESSOR_REVISION 3c03 PSModulePath %ProgramFiles%\WindowsPowerShell\Modules C:\Windows\system32\WindowsPowerShell\v1.0\Modules TEMP C:\Windows\TEMP TMP C:\Windows\TEMP USERNAME SYSTEM windir C:\Windows Power Profile Active power scheme Balanced Hibernation Enabled Turn Off Monitor after: (On AC Power) 10 min Turn Off Hard Disk after: (On AC Power) 20 min Suspend after: (On AC Power) 30 min Screen saver Disabled Uptime Current Session Current Time 5/5/2021 1:12:23 PM Current Uptime 2,435 sec (0 d, 00 h, 40 m, 35 s) Last Boot Time 5/5/2021 12:31:48 PM Services Running Agent Activation Runtime_29b9b1 Running Application Information Running AppX Deployment Service (AppXSVC) Running AVCTP service Running Background Intelligent Transfer Service Running Background Tasks Infrastructure Service Running Base Filtering Engine Running Bluetooth Audio Gateway Service Running Bluetooth Support Service Running Capability Access Manager Service Running Clipboard User Service_29b9b1 Running CNG Key Isolation Running COM+ Event System Running Connected Devices Platform Service Running Connected Devices Platform User Service_29b9b1 Running Connected User Experiences and Telemetry Running Contact Data_29b9b1 Running CoreMessaging Running Credential Manager Running CredentialEnrollmentManagerUserSvc_29b9b1 Running Cryptographic Services Running Data Usage Running DCOM Server Process Launcher Running Delivery Optimization Running Device Association Service Running Device Install Service Running DHCP Client Running Diagnostic Policy Service Running Diagnostic Service Host Running Diagnostic System Host Running Display Enhancement Service Running Display Policy Service Running Distributed Link Tracking Client Running DNS Client Running Encrypting File System (EFS) Running Extensible Authentication Protocol Running Geolocation Service Running Human Interface Device Service Running Intel HD Graphics Control Panel Service Running IP Helper Running Local Session Manager Running Microsoft Defender Antivirus Network Inspection Service Running Microsoft Defender Antivirus Service Running Microsoft Store Install Service Running Network Connection Broker Running Network List Service Running Network Location Awareness Running Network Setup Service Running Network Store Interface Service Running Payments and NFC/SE Manager Running Peer Name Resolution Protocol Running Peer Networking Identity Manager Running Plug and Play Running Power Running Print Spooler Running Program Compatibility Assistant Service Running Radio Management Service Running Realtek Bluetooth Device Manager Service Running Remote Access Connection Manager Running Remote Procedure Call (RPC) Running RPC Endpoint Mapper Running Secure Socket Tunneling Protocol Service Running Security Accounts Manager Running Security Center Running Server Running Shell Hardware Detection Running SSDP Discovery Running State Repository Service Running Storage Service Running Sync Host_29b9b1 Running SysMain Running System Event Notification Service Running System Events Broker Running System Guard Runtime Monitor Broker Running Task Scheduler Running TCP/IP NetBIOS Helper Running Themes Running Time Broker Running Touch Keyboard and Handwriting Panel Service Running Update Orchestrator Service Running UPnP Device Host Running User Data Access_29b9b1 Running User Data Storage_29b9b1 Running User Manager Running User Profile Service Running Web Account Manager Running Windows Audio Running Windows Audio Endpoint Builder Running Windows Biometric Service Running Windows Connect Now - Config Registrar Running Windows Connection Manager Running Windows Defender Firewall Running Windows Event Log Running Windows Font Cache Service Running Windows License Manager Service Running Windows Management Instrumentation Running Windows Push Notifications System Service Running Windows Push Notifications User Service_29b9b1 Running Windows Search Running Windows Security Service Running Windows Time Running Windows Update Running WinHTTP Web Proxy Auto-Discovery Service Running WLAN AutoConfig Running Workstation Stopped ActiveX Installer (AxInstSV) Stopped AllJoyn Router Service Stopped App Readiness Stopped Application Identity Stopped Application Layer Gateway Service Stopped Auto Time Zone Updater Stopped BitLocker Drive Encryption Service Stopped Block Level Backup Engine Service Stopped Bluetooth User Support Service_29b9b1 Stopped CaptureService_29b9b1 Stopped Cellular Time Stopped Certificate Propagation Stopped Client License Service (ClipSVC) Stopped COM+ System Application Stopped Computer Browser Stopped ConsentUX_29b9b1 Stopped Data Sharing Service Stopped Device Management Enrollment Service Stopped Device Management Wireless Application Protocol (WAP) Push message Routing Service Stopped Device Setup Manager Stopped DeviceAssociationBroker_29b9b1 Stopped DevicePicker_29b9b1 Stopped DevicesFlow_29b9b1 Stopped DevQuery Background Discovery Broker Stopped Diagnostic Execution Service Stopped Distributed Transaction Coordinator Stopped Downloaded Maps Manager Stopped Embedded Mode Stopped Enterprise App Management Service Stopped Fax Stopped File History Service Stopped Function Discovery Provider Host Stopped Function Discovery Resource Publication Stopped GameDVR and Broadcast User Service_29b9b1 Stopped GraphicsPerfSvc Stopped Group Policy Client Stopped HV Host Service Stopped Hyper-V Data Exchange Service Stopped Hyper-V Guest Service Interface Stopped Hyper-V Guest Shutdown Service Stopped Hyper-V Heartbeat Service Stopped Hyper-V PowerShell Direct Service Stopped Hyper-V Remote Desktop Virtualization Service Stopped Hyper-V Time Synchronization Service Stopped Hyper-V Volume Shadow Copy Requestor Stopped IKE and AuthIP IPsec Keying Modules Stopped Intel Content Protection HECI Service Stopped Internet Connection Sharing (ICS) Stopped IP Translation Configuration Service Stopped IPsec Policy Agent Stopped KtmRm for Distributed Transaction Coordinator Stopped Language Experience Service Stopped Link-Layer Topology Discovery Mapper Stopped Local Profile Assistant Service Stopped MessagingService_29b9b1 Stopped Microsoft Diagnostics Hub Standard Collector Service Stopped Microsoft Account Sign-in Assistant Stopped Microsoft Edge Elevation Service (MicrosoftEdgeElevationService) Stopped Microsoft Edge Update Service (edgeupdate) Stopped Microsoft Edge Update Service (edgeupdatem) Stopped Microsoft iSCSI Initiator Service Stopped Microsoft Passport Stopped Microsoft Passport Container Stopped Microsoft Software Shadow Copy Provider Stopped Microsoft Storage Spaces SMP Stopped Microsoft Windows SMS Router Service. Stopped Mozilla Maintenance Service Stopped Natural Authentication Stopped Net.Tcp Port Sharing Service Stopped Netlogon Stopped Network Connected Devices Auto-Setup Stopped Network Connections Stopped Network Connectivity Assistant Stopped OpenSSH Authentication Agent Stopped Optimize drives Stopped Parental Controls Stopped Peer Networking Grouping Stopped Performance Counter DLL Host Stopped Performance Logs & Alerts Stopped Phone Service Stopped PNRP Machine Name Publication Service Stopped Portable Device Enumerator Service Stopped Printer Extensions and Notifications Stopped PrintWorkflow_29b9b1 Stopped Problem Reports Control Panel Support Stopped Quality Windows Audio Video Experience Stopped Recommended Troubleshooting Service Stopped Remote Access Auto Connection Manager Stopped Remote Desktop Configuration Stopped Remote Desktop Services Stopped Remote Desktop Services UserMode Port Redirector Stopped Remote Procedure Call (RPC) Locator Stopped Remote Registry Stopped Retail Demo Service Stopped Routing and Remote Access Stopped Secondary Logon Stopped Sensor Data Service Stopped Sensor Monitoring Service Stopped Sensor Service Stopped Shared PC Account Manager Stopped Smart Card Stopped Smart Card Device Enumeration Service Stopped Smart Card Removal Policy Stopped SNMP Trap Stopped Software Protection Stopped Spatial Data Service Stopped Spot Verifier Stopped Still Image Acquisition Events Stopped Storage Tiers Management Stopped Telephony Stopped Udk User Service_29b9b1 Stopped Virtual Disk Stopped Volume Shadow Copy Stopped Volumetric Audio Compositor Service Stopped WalletService Stopped WarpJITSvc Stopped WebClient Stopped Wi-Fi Direct Services Connection Manager Service Stopped Windows Backup Stopped Windows Camera Frame Server Stopped Windows Encryption Provider Host Service Stopped Windows Error Reporting Service Stopped Windows Event Collector Stopped Windows Image Acquisition (WIA) Stopped Windows Insider Service Stopped Windows Installer Stopped Windows Management Service Stopped Windows Media Player Network Sharing Service Stopped Windows Mixed Reality OpenXR Service Stopped Windows Mobile Hotspot Service Stopped Windows Modules Installer Stopped Windows Perception Service Stopped Windows Perception Simulation Service Stopped Windows PushToInstall Service Stopped Windows Remote Management (WS-Management) Stopped Windows Update Medic Service Stopped Wired AutoConfig Stopped WMI Performance Adapter Stopped Work Folders Stopped WWAN AutoConfig Stopped Xbox Accessory Management Service Stopped Xbox Live Auth Manager Stopped Xbox Live Game Save Stopped Xbox Live Networking Service TimeZone TimeZone GMT -8:00 Hours Language English (United States) Location United States Format English (United States) Currency $ Date Format M/d/yyyy Time Format h:mm:ss tt Scheduler 5/5/2021 1:23 PM; MicrosoftEdgeUpdateTaskMachineCore 5/5/2021 1:53 PM; MicrosoftEdgeUpdateTaskMachineUA 5/6/2021 2:36 AM; OneDrive Standalone Update Task-S-1-5-21-4153435117-4050887545-4204161700-500 5/6/2021 2:41 PM; OneDrive Standalone Update Task-S-1-5-21-4153435117-4050887545-4204161700-1001 Hotfixes Installed 5/5/2021 Realtek Semiconductor Corp. - MEDIA - 10/30/2018 12:00:00 AM - 6.0.1.8564 Realtek Semiconductor Corp. MEDIA driver update released in October 2018 5/5/2021 Realtek Semiconductor Corp. - Bluetooth - 10/17/2018 12:00:00 AM - 1.5.1012.3003 Realtek Semiconductor Corp. Bluetooth driver update released in October 2018 5/5/2021 Intel Corporation driver update for Intel(R) HD Graphics 4400 This driver was provided by Intel Corporation for support of Intel HD Graphics 4400 Not Installed System Folders Application Data C:\ProgramData Cookies C:\Users\clift\AppData\Local\Microsoft\Windows\INetCookies Desktop C:\Users\clift\Desktop Documents C:\Users\Public\Documents Fonts C:\Windows\Fonts Global Favorites C:\Users\clift\Favorites Internet History C:\Users\clift\AppData\Local\Microsoft\Windows\History Local Application Data C:\Users\clift\AppData\Local Music C:\Users\Public\Music Path for burning CD C:\Users\clift\AppData\Local\Microsoft\Windows\Burn\Burn Physical Desktop C:\Users\clift\Desktop Pictures C:\Users\Public\Pictures Program Files C:\Program Files Public Desktop C:\Users\Public\Desktop Start Menu C:\ProgramData\Microsoft\Windows\Start Menu Start Menu Programs C:\ProgramData\Microsoft\Windows\Start Menu\Programs Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Templates C:\ProgramData\Microsoft\Windows\Templates Temporary Internet Files C:\Users\clift\AppData\Local\Microsoft\Windows\INetCache User Favorites C:\Users\clift\Favorites Videos C:\Users\Public\Videos Windows Directory C:\Windows Windows/System C:\Windows\system32 Process List ApplicationFrameHost.exe Process ID 6788 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\ApplicationFrameHost.exe Memory Usage 33 MB Peak Memory Usage 37 MB audiodg.exe Process ID 1536 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\audiodg.exe Memory Usage 14 MB Peak Memory Usage 23 MB backgroundTaskHost.exe Process ID 10208 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\backgroundTaskHost.exe Memory Usage 28 MB Peak Memory Usage 30 MB backgroundTaskHost.exe Process ID 6528 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\backgroundTaskHost.exe Memory Usage 3.47 MB Peak Memory Usage 13 MB CloudExperienceHostBroker.exe Process ID 5988 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\CloudExperienceHostBroker.exe Memory Usage 15 MB Peak Memory Usage 80 MB CompPkgSrv.exe Process ID 2736 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\CompPkgSrv.exe Memory Usage 8.68 MB Peak Memory Usage 8.78 MB CredentialEnrollmentManager.exe Process ID 1836 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\CredentialEnrollmentManager.exe Memory Usage 11 MB Peak Memory Usage 13 MB csrss.exe Process ID 1040 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 6.05 MB Peak Memory Usage 21 MB csrss.exe Process ID 532 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 5.05 MB Peak Memory Usage 5.39 MB ctfmon.exe Process ID 8800 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\ctfmon.exe Memory Usage 20 MB Peak Memory Usage 21 MB dllhost.exe Process ID 9744 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\dllhost.exe Memory Usage 7.00 MB Peak Memory Usage 7.00 MB dllhost.exe Process ID 11088 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\dllhost.exe Memory Usage 7.07 MB Peak Memory Usage 7.07 MB dwm.exe Process ID 2440 User DWM-2 Domain Window Manager Path C:\Windows\System32\dwm.exe Memory Usage 88 MB Peak Memory Usage 105 MB explorer.exe Process ID 852 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\explorer.exe Memory Usage 160 MB Peak Memory Usage 182 MB firefox.exe Process ID 9072 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files\Mozilla Firefox\firefox.exe Memory Usage 89 MB Peak Memory Usage 99 MB firefox.exe Process ID 3008 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files\Mozilla Firefox\firefox.exe Memory Usage 58 MB Peak Memory Usage 59 MB firefox.exe Process ID 2672 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files\Mozilla Firefox\firefox.exe Memory Usage 414 MB Peak Memory Usage 553 MB firefox.exe Process ID 8732 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files\Mozilla Firefox\firefox.exe Memory Usage 37 MB Peak Memory Usage 37 MB firefox.exe Process ID 5952 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files\Mozilla Firefox\firefox.exe Memory Usage 431 MB Peak Memory Usage 556 MB firefox.exe Process ID 6464 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files\Mozilla Firefox\firefox.exe Memory Usage 32 MB Peak Memory Usage 54 MB firefox.exe Process ID 880 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files\Mozilla Firefox\firefox.exe Memory Usage 480 MB Peak Memory Usage 729 MB fontdrvhost.exe Process ID 5376 User UMFD-2 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 6.40 MB Peak Memory Usage 6.41 MB fontdrvhost.exe Process ID 968 User UMFD-0 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 2.77 MB Peak Memory Usage 3.60 MB igfxCUIService.exe Process ID 6832 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\igfxCUIService.exe Memory Usage 9.73 MB Peak Memory Usage 10 MB igfxEM.exe Process ID 7848 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\igfxEM.exe Memory Usage 12 MB Peak Memory Usage 13 MB igfxHK.exe Process ID 8092 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\igfxHK.exe Memory Usage 10 MB Peak Memory Usage 11 MB igfxTray.exe Process ID 4484 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\igfxTray.exe Memory Usage 11 MB Peak Memory Usage 12 MB LocalBridge.exe Process ID 10244 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\LocalBridge.exe Memory Usage 44 MB Peak Memory Usage 45 MB lsass.exe Process ID 788 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\lsass.exe Memory Usage 26 MB Peak Memory Usage 27 MB Memory Compression Process ID 3388 User SYSTEM Domain NT AUTHORITY Memory Usage 89 MB Peak Memory Usage 118 MB Microsoft.Photos.exe Process ID 4592 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.12548.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe Memory Usage 40 MB Peak Memory Usage 61 MB msedge.exe Process ID 7360 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 7.82 MB Peak Memory Usage 7.86 MB msedge.exe Process ID 3308 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 114 MB Peak Memory Usage 141 MB msedge.exe Process ID 7128 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 120 MB Peak Memory Usage 130 MB msedge.exe Process ID 6132 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 135 MB Peak Memory Usage 297 MB msedge.exe Process ID 7080 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 37 MB Peak Memory Usage 54 MB msedge.exe Process ID 8284 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 20 MB Peak Memory Usage 20 MB msedge.exe Process ID 9192 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 75 MB Peak Memory Usage 89 MB msedge.exe Process ID 3196 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 23 MB Peak Memory Usage 23 MB MsMpEng.exe Process ID 3724 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Windows Defender\MsMpEng.exe Memory Usage 187 MB Peak Memory Usage 218 MB NisSrv.exe Process ID 2636 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Program Files\Windows Defender\NisSrv.exe Memory Usage 13 MB Peak Memory Usage 17 MB OneDrive.exe Process ID 9356 User clift Domain DESKTOP-AD3GSKK Path C:\Users\clift\AppData\Local\Microsoft\OneDrive\OneDrive.exe Memory Usage 64 MB Peak Memory Usage 88 MB OpenWith.exe Process ID 10752 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\OpenWith.exe Memory Usage 39 MB Peak Memory Usage 39 MB Registry Process ID 100 User SYSTEM Domain NT AUTHORITY Memory Usage 68 MB Peak Memory Usage 121 MB RtkBtManServ.exe Process ID 7196 User SYSTEM Domain NT AUTHORITY Path C:\Windows\RtkBtManServ.exe Memory Usage 7.56 MB Peak Memory Usage 9.02 MB RuntimeBroker.exe Process ID 320 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 12 MB Peak Memory Usage 14 MB RuntimeBroker.exe Process ID 9492 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 24 MB Peak Memory Usage 28 MB RuntimeBroker.exe Process ID 256 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 24 MB Peak Memory Usage 28 MB RuntimeBroker.exe Process ID 6912 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 41 MB Peak Memory Usage 47 MB RuntimeBroker.exe Process ID 4672 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 19 MB Peak Memory Usage 27 MB RuntimeBroker.exe Process ID 8100 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 26 MB Peak Memory Usage 29 MB RuntimeBroker.exe Process ID 2948 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 45 MB Peak Memory Usage 67 MB RuntimeBroker.exe Process ID 8232 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 14 MB Peak Memory Usage 21 MB SearchApp.exe Process ID 5244 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe Memory Usage 163 MB Peak Memory Usage 186 MB SearchFilterHost.exe Process ID 9404 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchFilterHost.exe Memory Usage 7.13 MB Peak Memory Usage 7.18 MB SearchIndexer.exe Process ID 4640 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchIndexer.exe Memory Usage 36 MB Peak Memory Usage 52 MB SearchProtocolHost.exe Process ID 5832 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchProtocolHost.exe Memory Usage 19 MB Peak Memory Usage 19 MB SecurityHealthService.exe Process ID 3736 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SecurityHealthService.exe Memory Usage 15 MB Peak Memory Usage 21 MB SecurityHealthSystray.exe Process ID 9896 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\SecurityHealthSystray.exe Memory Usage 9.09 MB Peak Memory Usage 9.36 MB services.exe Process ID 768 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\services.exe Memory Usage 11 MB Peak Memory Usage 13 MB SettingSyncHost.exe Process ID 1668 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\SettingSyncHost.exe Memory Usage 6.98 MB Peak Memory Usage 50 MB SgrmBroker.exe Process ID 1476 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SgrmBroker.exe Memory Usage 7.84 MB Peak Memory Usage 8.12 MB ShellExperienceHost.exe Process ID 8048 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Memory Usage 58 MB Peak Memory Usage 60 MB sihost.exe Process ID 7668 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\sihost.exe Memory Usage 29 MB Peak Memory Usage 29 MB SkypeApp.exe Process ID 6612 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.77.0_x64__kzf8qxf38zg5c\SkypeApp.exe Memory Usage 2.40 MB Peak Memory Usage 45 MB smartscreen.exe Process ID 8404 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\smartscreen.exe Memory Usage 26 MB Peak Memory Usage 33 MB smss.exe Process ID 356 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\smss.exe Memory Usage 1.06 MB Peak Memory Usage 1.27 MB Speccy64.exe Process ID 1816 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files\Speccy\Speccy64.exe Memory Usage 31 MB Peak Memory Usage 32 MB SpeechRuntime.exe Process ID 9580 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe Memory Usage 22 MB Peak Memory Usage 22 MB spoolsv.exe Process ID 3652 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\spoolsv.exe Memory Usage 25 MB Peak Memory Usage 29 MB StartMenuExperienceHost.exe Process ID 1392 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe Memory Usage 91 MB Peak Memory Usage 99 MB svchost.exe Process ID 4100 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.57 MB Peak Memory Usage 11 MB svchost.exe Process ID 4108 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.87 MB Peak Memory Usage 7.35 MB svchost.exe Process ID 4200 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.57 MB Peak Memory Usage 9.07 MB svchost.exe Process ID 4316 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 46 MB Peak Memory Usage 109 MB svchost.exe Process ID 1304 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.73 MB Peak Memory Usage 9.91 MB svchost.exe Process ID 6108 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 24 MB svchost.exe Process ID 5196 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 21 MB svchost.exe Process ID 2488 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 16 MB svchost.exe Process ID 6188 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.89 MB Peak Memory Usage 7.55 MB svchost.exe Process ID 6000 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 16 MB svchost.exe Process ID 5960 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 37 MB svchost.exe Process ID 1252 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 20 MB svchost.exe Process ID 6984 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 13 MB svchost.exe Process ID 4584 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.01 MB Peak Memory Usage 8.90 MB svchost.exe Process ID 2644 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 12 MB svchost.exe Process ID 7060 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 13 MB svchost.exe Process ID 444 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.86 MB Peak Memory Usage 10 MB svchost.exe Process ID 6988 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.00 MB Peak Memory Usage 8.47 MB svchost.exe Process ID 8188 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 115 MB svchost.exe Process ID 3896 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 19 MB svchost.exe Process ID 2936 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 41 MB Peak Memory Usage 45 MB svchost.exe Process ID 1592 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.53 MB Peak Memory Usage 11 MB svchost.exe Process ID 916 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.13 MB Peak Memory Usage 3.40 MB svchost.exe Process ID 4836 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\svchost.exe Memory Usage 28 MB Peak Memory Usage 36 MB svchost.exe Process ID 3384 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\svchost.exe Memory Usage 36 MB Peak Memory Usage 37 MB svchost.exe Process ID 940 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 26 MB Peak Memory Usage 27 MB svchost.exe Process ID 508 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 17 MB svchost.exe Process ID 620 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.39 MB Peak Memory Usage 7.77 MB svchost.exe Process ID 1064 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.04 MB Peak Memory Usage 4.33 MB svchost.exe Process ID 4192 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.28 MB Peak Memory Usage 7.09 MB svchost.exe Process ID 7396 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 18 MB svchost.exe Process ID 5708 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.23 MB Peak Memory Usage 5.75 MB svchost.exe Process ID 1136 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.70 MB Peak Memory Usage 6.05 MB svchost.exe Process ID 1216 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.52 MB Peak Memory Usage 7.10 MB svchost.exe Process ID 1372 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.10 MB Peak Memory Usage 8.71 MB svchost.exe Process ID 1436 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 15 MB svchost.exe Process ID 1512 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 31 MB Peak Memory Usage 74 MB svchost.exe Process ID 1568 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.36 MB Peak Memory Usage 9.20 MB svchost.exe Process ID 3972 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.99 MB Peak Memory Usage 5.44 MB svchost.exe Process ID 1684 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.11 MB Peak Memory Usage 7.71 MB svchost.exe Process ID 9632 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\svchost.exe Memory Usage 25 MB Peak Memory Usage 26 MB svchost.exe Process ID 1720 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.06 MB Peak Memory Usage 7.96 MB svchost.exe Process ID 1752 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 52 MB Peak Memory Usage 101 MB svchost.exe Process ID 1796 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.07 MB Peak Memory Usage 8.88 MB svchost.exe Process ID 1872 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 21 MB svchost.exe Process ID 1924 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 17 MB svchost.exe Process ID 1048 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.70 MB Peak Memory Usage 7.26 MB svchost.exe Process ID 1120 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 22 MB svchost.exe Process ID 2056 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 13 MB svchost.exe Process ID 2168 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.83 MB Peak Memory Usage 9.52 MB svchost.exe Process ID 2268 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.52 MB Peak Memory Usage 5.77 MB svchost.exe Process ID 2300 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 16 MB svchost.exe Process ID 2332 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.03 MB Peak Memory Usage 7.83 MB svchost.exe Process ID 2368 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 11 MB svchost.exe Process ID 2392 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 12 MB svchost.exe Process ID 2400 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.95 MB Peak Memory Usage 10 MB svchost.exe Process ID 2544 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.48 MB Peak Memory Usage 7.96 MB svchost.exe Process ID 2564 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.24 MB Peak Memory Usage 9.01 MB svchost.exe Process ID 2588 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.97 MB Peak Memory Usage 6.42 MB svchost.exe Process ID 2624 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 12 MB svchost.exe Process ID 2996 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.11 MB Peak Memory Usage 6.55 MB svchost.exe Process ID 8648 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\svchost.exe Memory Usage 22 MB Peak Memory Usage 23 MB svchost.exe Process ID 2188 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 19 MB svchost.exe Process ID 3092 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 15 MB svchost.exe Process ID 3148 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 67 MB Peak Memory Usage 84 MB svchost.exe Process ID 3176 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.13 MB Peak Memory Usage 7.68 MB svchost.exe Process ID 3264 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.83 MB Peak Memory Usage 8.39 MB svchost.exe Process ID 3320 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 24 MB svchost.exe Process ID 3468 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.22 MB Peak Memory Usage 6.75 MB svchost.exe Process ID 3508 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 13 MB svchost.exe Process ID 3560 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 12 MB svchost.exe Process ID 1620 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 20 MB Peak Memory Usage 20 MB svchost.exe Process ID 11080 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 10 MB svchost.exe Process ID 3772 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 20 MB svchost.exe Process ID 3848 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.35 MB Peak Memory Usage 7.95 MB svchost.exe Process ID 3984 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 21 MB svchost.exe Process ID 4056 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 33 MB Peak Memory Usage 72 MB svchost.exe Process ID 4068 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 19 MB svchost.exe Process ID 4076 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 20 MB svchost.exe Process ID 3372 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.32 MB Peak Memory Usage 5.64 MB svchost.exe Process ID 3340 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 20 MB Peak Memory Usage 23 MB svchost.exe Process ID 8528 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.46 MB Peak Memory Usage 6.47 MB svchost.exe Process ID 3820 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.94 MB Peak Memory Usage 6.00 MB svchost.exe Process ID 11104 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.50 MB Peak Memory Usage 7.25 MB System Process ID 4 Memory Usage 148 KB Peak Memory Usage 8.27 MB System Idle Process Process ID 0 TabTip.exe Process ID 8812 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe Memory Usage 16 MB Peak Memory Usage 16 MB taskhostw.exe Process ID 10548 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\taskhostw.exe Memory Usage 16 MB Peak Memory Usage 20 MB taskhostw.exe Process ID 6620 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\taskhostw.exe Memory Usage 12 MB Peak Memory Usage 12 MB taskhostw.exe Process ID 5032 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\taskhostw.exe Memory Usage 36 MB Peak Memory Usage 51 MB TextInputHost.exe Process ID 1208 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe Memory Usage 38 MB Peak Memory Usage 43 MB wininit.exe Process ID 648 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wininit.exe Memory Usage 6.59 MB Peak Memory Usage 7.03 MB winlogon.exe Process ID 4524 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\winlogon.exe Memory Usage 9.86 MB Peak Memory Usage 18 MB WinStore.App.exe Process ID 9160 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files\WindowsApps\Microsoft.WindowsStore_11910.1002.5.0_x64__8wekyb3d8bbwe\WinStore.App.exe Memory Usage 1.42 MB Peak Memory Usage 59 MB WmiPrvSE.exe Process ID 1320 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 14 MB Peak Memory Usage 14 MB WmiPrvSE.exe Process ID 10768 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 20 MB Peak Memory Usage 21 MB wmplayer.exe Process ID 4004 User clift Domain DESKTOP-AD3GSKK Path C:\Program Files (x86)\Windows Media Player\wmplayer.exe Memory Usage 65 MB Peak Memory Usage 76 MB WUDFHost.exe Process ID 2976 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\WUDFHost.exe Memory Usage 18 MB Peak Memory Usage 18 MB WWAHost.exe Process ID 9280 User clift Domain DESKTOP-AD3GSKK Path C:\Windows\System32\WWAHost.exe Memory Usage 63 MB Peak Memory Usage 254 MB Security Options Accounts: Administrator account status Disabled Accounts: Block Microsoft accounts Not Defined Accounts: Guest account status Disabled Accounts: Limit local account use of blank passwords to console logon only Enabled Accounts: Rename administrator account Administrator Accounts: Rename guest account Guest Audit: Audit the access of global system objects Disabled Audit: Audit the use of Backup and Restore privilege Disabled Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings Not Defined Audit: Shut down system immediately if unable to log security audits Disabled DCOM: Machine Access Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined DCOM: Machine Launch Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined Devices: Allow undock without having to log on Enabled Devices: Allowed to format and eject removable media Not Defined Devices: Prevent users from installing printer drivers Disabled Devices: Restrict CD-ROM access to locally logged-on user only Not Defined Devices: Restrict floppy access to locally logged-on user only Not Defined Domain controller: Allow server operators to schedule tasks Not Defined Domain controller: Allow vulnerable Netlogon secure channel connections Not Defined Domain controller: LDAP server channel binding token requirements Not Defined Domain controller: LDAP server signing requirements Not Defined Domain controller: Refuse machine account password changes Not Defined Domain member: Digitally encrypt or sign secure channel data (always) Enabled Domain member: Digitally encrypt secure channel data (when possible) Enabled Domain member: Digitally sign secure channel data (when possible) Enabled Domain member: Disable machine account password changes Disabled Domain member: Maximum machine account password age 30 days Domain member: Require strong (Windows 2000 or later) session key Enabled Interactive logon: Display user information when the session is locked Not Defined Interactive logon: Do not require CTRL+ALT+DEL Not Defined Interactive logon: Don't display last signed-in Disabled Interactive logon: Don't display username at sign-in Not Defined Interactive logon: Machine account lockout threshold Not Defined Interactive logon: Machine inactivity limit Not Defined Interactive logon: Message text for users attempting to log on Interactive logon: Message title for users attempting to log on Interactive logon: Number of previous logons to cache (in case domain controller is not available) 10 logons Interactive logon: Prompt user to change password before expiration 5 days Interactive logon: Require Domain Controller authentication to unlock workstation Disabled Interactive logon: Require Windows Hello for Business or smart card Disabled Interactive logon: Smart card removal behavior No Action Microsoft network client: Digitally sign communications (always) Disabled Microsoft network client: Digitally sign communications (if server agrees) Enabled Microsoft network client: Send unencrypted password to third-party SMB servers Disabled Microsoft network server: Amount of idle time required before suspending session 15 minutes Microsoft network server: Attempt S4U2Self to obtain claim information Not Defined Microsoft network server: Digitally sign communications (always) Disabled Microsoft network server: Digitally sign communications (if client agrees) Disabled Microsoft network server: Disconnect clients when logon hours expire Enabled Microsoft network server: Server SPN target name validation level Not Defined Minimum password length audit Not Defined Network access: Allow anonymous SID/Name translation Disabled Network access: Do not allow anonymous enumeration of SAM accounts Enabled Network access: Do not allow anonymous enumeration of SAM accounts and shares Disabled Network access: Do not allow storage of passwords and credentials for network authentication Disabled Network access: Let Everyone permissions apply to anonymous users Disabled Network access: Named Pipes that can be accessed anonymously Network access: Remotely accessible registry paths System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion Network access: Remotely accessible registry paths and sub-paths System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog Network access: Restrict anonymous access to Named Pipes and Shares Enabled Network access: Restrict clients allowed to make remote calls to SAM Network access: Shares that can be accessed anonymously Not Defined Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Network security: Allow Local System to use computer identity for NTLM Not Defined Network security: Allow LocalSystem NULL session fallback Not Defined Network security: Allow PKU2U authentication requests to this computer to use online identities. Not Defined Network security: Configure encryption types allowed for Kerberos Not Defined Network security: Do not store LAN Manager hash value on next password change Enabled Network security: Force logoff when logon hours expire Disabled Network security: LAN Manager authentication level Not Defined Network security: LDAP client signing requirements Negotiate signing Network security: Minimum session security for NTLM SSP based (including secure RPC) clients Require 128-bit encryption Network security: Minimum session security for NTLM SSP based (including secure RPC) servers Require 128-bit encryption Network security: Restrict NTLM: Add remote server exceptions for NTLM authentication Not Defined Network security: Restrict NTLM: Add server exceptions in this domain Not Defined Network security: Restrict NTLM: Audit Incoming NTLM Traffic Not Defined Network security: Restrict NTLM: Audit NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Incoming NTLM traffic Not Defined Network security: Restrict NTLM: NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Outgoing NTLM traffic to remote servers Not Defined Recovery console: Allow automatic administrative logon Disabled Recovery console: Allow floppy copy and access to all drives and all folders Disabled Relax minimum password length limits Not Defined Shutdown: Allow system to be shut down without having to log on Enabled Shutdown: Clear virtual memory pagefile Disabled System cryptography: Force strong key protection for user keys stored on the computer Not Defined System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing Disabled System objects: Require case insensitivity for non-Windows subsystems Enabled System objects: Strengthen default permissions of internal system objects (e.g. Symbolic Links) Enabled System settings: Optional subsystems System settings: Use Certificate Rules on Windows Executables for Software Restriction Policies Disabled User Account Control: Admin Approval Mode for the Built-in Administrator account Not Defined User Account Control: Allow UIAccess applications to prompt for elevation without using the secure desktop Disabled User Account Control: Behavior of the elevation prompt for administrators in Admin Approval Mode Prompt for consent for non-Windows binaries User Account Control: Behavior of the elevation prompt for standard users Prompt for credentials User Account Control: Detect application installations and prompt for elevation Enabled User Account Control: Only elevate executables that are signed and validated Disabled User Account Control: Only elevate UIAccess applications that are installed in secure locations Enabled User Account Control: Run all administrators in Admin Approval Mode Enabled User Account Control: Switch to the secure desktop when prompting for elevation Enabled User Account Control: Virtualize file and registry write failures to per-user locations Enabled Device Tree ACPI x64-based PC Microsoft ACPI-Compliant System ACPI Fan ACPI Fan ACPI Fan ACPI Fan ACPI Fan ACPI Fixed Feature Button ACPI Power Button ACPI Thermal Zone ACPI Thermal Zone Intel Core i3-4150T CPU @ 3.00GHz Intel Core i3-4150T CPU @ 3.00GHz Intel Core i3-4150T CPU @ 3.00GHz Intel Core i3-4150T CPU @ 3.00GHz Microsoft Windows Management Interface for ACPI PCI Express Root Complex Motherboard resources PCI Simple Communications Controller PCI standard host CPU bridge PCI-to-PCI Bridge PCI-to-PCI Bridge SM Bus Controller System board Intel(R) HD Graphics 4400 Generic PnP Monitor High Definition Audio Controller Intel Display Audio Intel(R) USB 3.0 eXtensible Host Controller - 1.0 (Microsoft) USB Root Hub (USB 3.0) USB Input Device HID-compliant touch screen USB Composite Device USB Input Device HID Keyboard Device USB Input Device HID-compliant consumer control device HID-compliant mouse HID-compliant system controller HID-compliant vendor-defined device USB Input Device HID-compliant vendor-defined device HID-compliant vendor-defined device HID-compliant vendor-defined device USB Composite Device USB2.0 UVC HD Webcam USB Mass Storage Device Lexar USB Flash Drive USB Device Realtek Bluetooth 4.0 Adapter Bluetooth Device (Personal Area Network) Bluetooth Device (RFCOMM Protocol TDI) Microsoft Bluetooth Enumerator Microsoft Bluetooth LE Enumerator Intel(R) 8 Series/C220 Series USB EHCI #2 - 8C2D USB Root Hub Generic USB Hub High Definition Audio Controller Realtek High Definition Audio Headphones (Realtek High Definition Audio) Microphone (Realtek High Definition Audio) Speakers (Realtek High Definition Audio) PCI-to-PCI Bridge Realtek 8821AE Wireless LAN 802.11ac PCI-E NIC Microsoft Wi-Fi Direct Virtual Adapter Microsoft Wi-Fi Direct Virtual Adapter #2 PCI-to-PCI Bridge ASMedia USB 3.0 eXtensible Host Controller - 1.0 (Microsoft) USB Root Hub (USB 3.0) USB Attached SCSI (UAS) Mass Storage Device Seagate Slim BK SCSI Disk Device USB Composite Device USB Input Device HID Keyboard Device USB Input Device HID-compliant consumer control device HID-compliant mouse HID-compliant system controller HID-compliant vendor-defined device HID-compliant vendor-defined device HID-compliant vendor-defined device HID-compliant vendor-defined device HID-compliant vendor-defined device PCI-to-PCI Bridge Realtek PCIe GbE Family Controller Intel(R) 8 Series/C220 Series USB EHCI #1 - 8C26 USB Root Hub Generic USB Hub PCI standard ISA bridge Direct memory access controller High precision event timer Legacy device Motherboard resources Motherboard resources Motherboard resources Motherboard resources Numeric data processor Programmable interrupt controller System CMOS/real time clock System timer Unknown Device Standard SATA AHCI Controller HL-DT-ST DVDRAM GUA0N TOSHIBA DT01ACA100 Microsoft UEFI-Compliant System System Firmware CPU Intel Core i3 4150T Cores 2 Threads 4 Name Intel Core i3 4150T Code Name Haswell Package Socket 1150 LGA Technology 22nm Specification Intel Core i3-4150T CPU @ 3.00GHz Family 6 Extended Family 6 Model C Extended Model 3C Stepping 3 Revision C0 Instructions MMX, SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, Intel 64, NX, VMX, AES, AVX, AVX2, FMA3 Virtualization Supported, Disabled Hyperthreading Supported, Enabled Fan Speed 3349 RPM Stock Core Speed 3000 MHz Stock Bus Speed 100 MHz Average Temperature 64 °C Caches L1 Data Cache Size 2 x 32 KBytes L1 Instructions Cache Size 2 x 32 KBytes L2 Unified Cache Size 2 x 256 KBytes L3 Unified Cache Size 3072 KBytes Cores Core 0 Core Speed 798.1 MHz Multiplier x 8.0 Bus Speed 99.8 MHz Temperature 66 °C Threads APIC ID: 0, 1 Core 1 Core Speed 798.1 MHz Multiplier x 8.0 Bus Speed 99.8 MHz Temperature 62 °C Threads APIC ID: 2, 3 RAM Memory slots Total memory slots 4 Used memory slots 2 Free memory slots 2 Memory Type DDR3 Size 8192 MBytes Channels # Dual DRAM Frequency 798.1 MHz CAS# Latency (CL) 11 clocks RAS# to CAS# Delay (tRCD) 11 clocks RAS# Precharge (tRP) 11 clocks Cycle Time (tRAS) 28 clocks Command Rate (CR) 1T Physical Memory Memory Usage 51 % Total Physical 7.90 GB Available Physical 3.86 GB Total Virtual 9.78 GB Available Virtual 5.54 GB SPD Number Of SPD Modules 2 Slot #1 Type DDR3 Size 4096 MBytes Manufacturer Samsung Max Bandwidth PC3-12800 (800 MHz) Part Number M471B5173DB0-YK0 Serial Number 2548257712 Week/year 34 / 14 Timing table JEDEC #1 Frequency 381.0 MHz CAS# Latency 5.0 RAS# To CAS# 5 RAS# Precharge 5 tRAS 14 tRC 19 Voltage 1.350 V JEDEC #2 Frequency 457.1 MHz CAS# Latency 6.0 RAS# To CAS# 6 RAS# Precharge 6 tRAS 16 tRC 22 Voltage 1.350 V JEDEC #3 Frequency 533.3 MHz CAS# Latency 7.0 RAS# To CAS# 7 RAS# Precharge 7 tRAS 19 tRC 26 Voltage 1.350 V JEDEC #4 Frequency 609.5 MHz CAS# Latency 8.0 RAS# To CAS# 8 RAS# Precharge 8 tRAS 22 tRC 30 Voltage 1.350 V JEDEC #5 Frequency 685.7 MHz CAS# Latency 9.0 RAS# To CAS# 9 RAS# Precharge 9 tRAS 24 tRC 33 Voltage 1.350 V JEDEC #6 Frequency 761.9 MHz CAS# Latency 10.0 RAS# To CAS# 10 RAS# Precharge 10 tRAS 27 tRC 37 Voltage 1.350 V JEDEC #7 Frequency 800.0 MHz CAS# Latency 11.0 RAS# To CAS# 11 RAS# Precharge 11 tRAS 28 tRC 39 Voltage 1.350 V Slot #2 Type DDR3 Size 4096 MBytes Manufacturer Samsung Max Bandwidth PC3-12800 (800 MHz) Part Number M471B5173DB0-YK0 Serial Number 2548258029 Week/year 34 / 14 Timing table JEDEC #1 Frequency 381.0 MHz CAS# Latency 5.0 RAS# To CAS# 5 RAS# Precharge 5 tRAS 14 tRC 19 Voltage 1.350 V JEDEC #2 Frequency 457.1 MHz CAS# Latency 6.0 RAS# To CAS# 6 RAS# Precharge 6 tRAS 16 tRC 22 Voltage 1.350 V JEDEC #3 Frequency 533.3 MHz CAS# Latency 7.0 RAS# To CAS# 7 RAS# Precharge 7 tRAS 19 tRC 26 Voltage 1.350 V JEDEC #4 Frequency 609.5 MHz CAS# Latency 8.0 RAS# To CAS# 8 RAS# Precharge 8 tRAS 22 tRC 30 Voltage 1.350 V JEDEC #5 Frequency 685.7 MHz CAS# Latency 9.0 RAS# To CAS# 9 RAS# Precharge 9 tRAS 24 tRC 33 Voltage 1.350 V JEDEC #6 Frequency 761.9 MHz CAS# Latency 10.0 RAS# To CAS# 10 RAS# Precharge 10 tRAS 27 tRC 37 Voltage 1.350 V JEDEC #7 Frequency 800.0 MHz CAS# Latency 11.0 RAS# To CAS# 11 RAS# Precharge 11 tRAS 28 tRC 39 Voltage 1.350 V Motherboard Manufacturer ASUSTeK COMPUTER INC. Model ET2230I (LGA1150) Version Rev 1.xx Chipset Vendor Intel Chipset Model Haswell Chipset Revision 06 Southbridge Vendor Intel Southbridge Model H81 Southbridge Revision C2 System Temperature 46 °C BIOS Brand American Megatrends Inc. Version 0501 Date 7/24/2014 Voltage CPU CORE 1.736 V MEMORY CONTROLLER 1.520 V AVCC 3.376 V 3VCC 3.360 V VIN4 1.856 V PCI Data Slot PCI-E Slot Type PCI-E Slot Usage In Use Data lanes x16 Slot Designation PCIEX16_1 Characteristics 3.3V, Shared, PME Slot Number 0 Slot PCI-E Slot Type PCI-E Slot Usage Available Data lanes x1 Slot Designation PCIEX1_1 Characteristics 3.3V, Shared, PME Slot Number 1 Slot PCI-E Slot Type PCI-E Slot Usage Available Data lanes x4 Slot Designation PCIEX4 Characteristics 3.3V, Shared, PME Slot Number 2 Slot PCI-E Slot Type PCI-E Slot Usage Available Data lanes x16 Slot Designation PCIEX16_2 Characteristics 3.3V, Shared, PME Slot Number 3 Slot PCI-E Slot Type PCI-E Slot Usage Available Data lanes x1 Slot Designation PCIEX1_2 Characteristics 3.3V, Shared, PME Slot Number 4 Graphics Monitor Name ET2230I on Intel HD Graphics 4400 Current Resolution 1920x1080 pixels Work Resolution 1920x1040 pixels State Enabled, Primary Monitor Width 1920 Monitor Height 1080 Monitor BPP 32 bits per pixel Monitor Frequency 60 Hz Device \\.\DISPLAY1\Monitor0 Intel HD Graphics 4400 Manufacturer Intel Model HD Graphics 4400 Device ID 8086-041E Revision 7 Subvendor ASUStek Computer Inc (1043) Current Performance Level Level 0 Current GPU Clock 598 MHz Driver version 20.19.15.4531 Count of performance levels : 1 Level 1 - "Perf Level 0" GPU Clock 600 MHz Storage Hard drives TOSHIBA DT01ACA100 Manufacturer TOSHIBA Heads 16 Cylinders 121,601 Tracks 31,008,255 Sectors 1,953,520,065 SATA type SATA-III 6.0Gb/s Device type Fixed ATA Standard ATA8-ACS Serial Number 74CWTWNPS Firmware Version Number MS2OA7L0 LBA Size 48-bit LBA Power On Count 3480 times Power On Time 1640.8 days Speed 7200 RPM Features S.M.A.R.T., APM, NCQ Max. Transfer Mode SATA III 6.0Gb/s Used Transfer Mode SATA III 6.0Gb/s Interface SATA Capacity 931 GB Real size 1,000,204,886,016 bytes RAID Type None S.M.A.R.T Status Good Temperature 46 °C Temperature Range OK (less than 50 °C) S.M.A.R.T attributes 01 Attribute name Read Error Rate Real value 0 Current 95 Worst 95 Threshold 16 Raw Value 000000000A Status Good 02 Attribute name Throughput Performance Real value 73 Current 141 Worst 141 Threshold 54 Raw Value 0000000049 Status Good 03 Attribute name Spin-Up Time Real value 11337903 ms Current 132 Worst 132 Threshold 24 Raw Value 0000AD00AF Status Good 04 Attribute name Start/Stop Count Real value 3,881 Current 100 Worst 100 Threshold 0 Raw Value 0000000F29 Status Good 05 Attribute name Reallocated Sectors Count Real value 0 Current 100 Worst 100 Threshold 5 Raw Value 0000000000 Status Good 07 Attribute name Seek Error Rate Real value 0 Current 100 Worst 100 Threshold 67 Raw Value 0000000000 Status Good 08 Attribute name Seek Time Performance Real value 34 Current 115 Worst 115 Threshold 20 Raw Value 0000000022 Status Good 09 Attribute name Power-On Hours (POH) Real value 1640d 20h Current 95 Worst 95 Threshold 0 Raw Value 00000099D4 Status Good 0A Attribute name Spin Retry Count Real value 0 Current 100 Worst 100 Threshold 60 Raw Value 0000000000 Status Good 0C Attribute name Device Power Cycle Count Real value 3,480 Current 100 Worst 100 Threshold 0 Raw Value 0000000D98 Status Good C0 Attribute name Power-off Retract Count Real value 3,891 Current 97 Worst 97 Threshold 0 Raw Value 0000000F33 Status Good C1 Attribute name Load/Unload Cycle Count Real value 3,891 Current 97 Worst 97 Threshold 0 Raw Value 0000000F33 Status Good C2 Attribute name Temperature Real value 46 °C Current 130 Worst 130 Threshold 0 Raw Value 000011002E Status Good C4 Attribute name Reallocation Event Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C5 Attribute name Current Pending Sector Count Real value 136 Current 100 Worst 100 Threshold 0 Raw Value 0000000088 Status Good C6 Attribute name Uncorrectable Sector Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C7 Attribute name UltraDMA CRC Error Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good Partition 0 Partition ID Disk #0, Partition #0 File System NTFS Volume Serial Number 3CA8D296 Size 799 MB Used Space 239 MB (29%) Free Space 560 MB (71%) Partition 1 Partition ID Disk #0, Partition #1 File System FAT32 Volume Serial Number 58AB0B9F Size 256 MB Used Space 51 MB (20%) Free Space 204 MB (80%) Partition 2 Partition ID Disk #0, Partition #2 Disk Letter C: File System NTFS Volume Serial Number DC5A7AB7 Size 917 GB Used Space 25.4 GB (2%) Free Space 891 GB (98%) Partition 3 Partition ID Disk #0, Partition #3 File System NTFS Volume Serial Number E0AF70B9 Size 13.3 GB Used Space 10.7 GB (80%) Free Space 2.63 GB (20%) Seagate Slim BK SCSI Disk Device Heads 16 Cylinders 60,801 Tracks 15,504,255 Sectors 976,768,065 SATA type SATA-III 6.0Gb/s Device type Fixed ATA Standard ATA8-ACS Serial Number W3P01PAD Firmware Version Number 0001SDM1 LBA Size 48-bit LBA Power On Count 464 times Power On Time 1995.7 days Speed 5400 RPM Features S.M.A.R.T., APM, NCQ Max. Transfer Mode SATA III 6.0Gb/s Used Transfer Mode SATA II 3.0Gb/s Interface USB (SATA) Capacity 465 GB Real size 500,107,861,504 bytes RAID Type None S.M.A.R.T Status Good Temperature 33 °C Temperature Range OK (less than 50 °C) S.M.A.R.T attributes 01 Attribute name Read Error Rate Real value 0 Current 118 Worst 99 Threshold 6 Raw Value 000B599290 Status Good 03 Attribute name Spin-Up Time Real value 0 ms Current 99 Worst 98 Threshold 0 Raw Value 0000000000 Status Good 04 Attribute name Start/Stop Count Real value 10,396 Current 90 Worst 90 Threshold 20 Raw Value 000000289C Status Good 05 Attribute name Reallocated Sectors Count Real value 0 Current 100 Worst 100 Threshold 36 Raw Value 0000000000 Status Good 07 Attribute name Seek Error Rate Real value 0 Current 54 Worst 54 Threshold 30 Raw Value 0000127C7F Status Good 09 Attribute name Power-On Hours (POH) Real value 1995d 16h Current 46 Worst 46 Threshold 0 Raw Value 000000BB18 Status Good 0A Attribute name Spin Retry Count Real value 0 Current 100 Worst 100 Threshold 97 Raw Value 0000000000 Status Good 0C Attribute name Device Power Cycle Count Real value 464 Current 100 Worst 100 Threshold 20 Raw Value 00000001D0 Status Good B8 Attribute name End-to-End error / IOEDC Real value 0 Current 100 Worst 100 Threshold 99 Raw Value 0000000000 Status Good BB Attribute name Reported Uncorrectable Errors Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good BC Attribute name Command Timeout Real value 260 Current 100 Worst 91 Threshold 0 Raw Value 0000000104 Status Good BD Attribute name High Fly Writes (WDC) Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good BE Attribute name Airflow Temperature Real value 33 °C Current 67 Worst 59 Threshold 45 Raw Value 00211D0021 Status Good BF Attribute name G-sense error rate Real value 53 Current 100 Worst 100 Threshold 0 Raw Value 0000000035 Status Good C0 Attribute name Power-off Retract Count Real value 7 Current 100 Worst 100 Threshold 0 Raw Value 0000000007 Status Good C1 Attribute name Load/Unload Cycle Count Real value 1,426,478 Current 1 Worst 1 Threshold 0 Raw Value 000015C42E Status Good C2 Attribute name Temperature Real value 33 °C Current 33 Worst 41 Threshold 0 Raw Value 0000000021 Status Good C5 Attribute name Current Pending Sector Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C6 Attribute name Uncorrectable Sector Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C7 Attribute name UltraDMA CRC Error Count Real value 1 Current 200 Worst 200 Threshold 0 Raw Value 0000000001 Status Good F0 Attribute name Head Flying Hours Real value 198d 0h Current 95 Worst 95 Threshold 0 Raw Value 0000001290 Status Good F1 Attribute name Total LBAs Written Real value 255,307,368 Current 100 Worst 253 Threshold 0 Raw Value 000F37AE68 Status Good F2 Attribute name Total LBAs Read Real value 1,390,598,370 Current 100 Worst 253 Threshold 0 Raw Value 0052E2D8E2 Status Good FE Attribute name Free Fall Protection Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good Partition 0 Partition ID Disk #1, Partition #0 Disk Letter D: File System NTFS Volume Serial Number 78377679 Size 465 GB Used Space 61 GB (13%) Free Space 404 GB (87%) Flash drives Lexar USB Flash Drive USB Device Interface USB Capacity 14.9 GB Real size 16,013,852,672 bytes RAID Type None S.M.A.R.T S.M.A.R.T not supported Partition 0 Partition ID Disk #2, Partition #0 Disk Letter E: File System FAT32 Volume Serial Number 041A7B33 Size 14.9 GB Used Space 4.56 GB (30%) Free Space 10.3 GB (70%) Optical Drives HL-DT-ST DVDRAM GUA0N Media Type DVD Writer Name HL-DT-ST DVDRAM GUA0N Availability Running/Full Power Capabilities Random Access, Supports Writing, Supports Removable Media Read capabilities CD-R, CD-RW, CD-ROM, DVD-RAM, DVD-ROM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL Write capabilities CD-R, CD-RW, DVD-RAM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL Config Manager Error Code Device is working properly Config Manager User Config FALSE Drive F: Media Loaded FALSE SCSI Bus 1 SCSI Logical Unit 0 SCSI Port 0 SCSI Target Id 0 Status OK Audio Sound Cards Realtek High Definition Audio Intel Display Audio Playback Devices Speakers (Realtek High Definition Audio) Headphones (Realtek High Definition Audio) (default) Recording Device Microphone (Realtek High Definition Audio) Peripherals HID Keyboard Device Device Kind Keyboard Device Name HID Keyboard Device Vendor Chicony Electronics Co Ltd Location USB Input Device Driver Date 6-21-2006 Version 10.0.19041.1 File C:\Windows\system32\DRIVERS\kbdhid.sys File C:\Windows\system32\DRIVERS\kbdclass.sys HID Keyboard Device Device Kind Keyboard Device Name HID Keyboard Device Vendor Logitech Location USB Input Device Driver Date 6-21-2006 Version 10.0.19041.1 File C:\Windows\system32\DRIVERS\kbdhid.sys File C:\Windows\system32\DRIVERS\kbdclass.sys HID-compliant mouse Device Kind Mouse Device Name HID-compliant mouse Vendor Logitech Location USB Input Device Driver Date 6-21-2006 Version 10.0.19041.1 File C:\Windows\system32\DRIVERS\mouhid.sys File C:\Windows\system32\DRIVERS\mouclass.sys HID-compliant mouse Device Kind Mouse Device Name HID-compliant mouse Vendor Chicony Electronics Co Ltd Location USB Input Device Driver Date 6-21-2006 Version 10.0.19041.1 File C:\Windows\system32\DRIVERS\mouhid.sys File C:\Windows\system32\DRIVERS\mouclass.sys Slim BK Device Kind Portable Device Device Name Slim BK Vendor Seagate Comment Seagate Slim Drive Location Volume Driver Date 6-21-2006 Version 10.0.19041.1 File C:\Windows\system32\DRIVERS\WUDFRd.sys USB Flash Drive Device Kind Portable Device Device Name USB Flash Drive Vendor LEXAR Comment ESD-USB Location Volume Driver Date 6-21-2006 Version 10.0.19041.1 File C:\Windows\system32\DRIVERS\WUDFRd.sys Printers Fax Printer Port SHRFAX: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 200 * 200 dpi Monochrome Status Unknown Driver Driver Name Microsoft Shared Fax Driver (v4.00) Driver Path C:\Windows\system32\spool\DRIVERS\x64\3\FXSDRV.DLL Microsoft Print to PDF (Default Printer) Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft Print To PDF (v6.03) Driver Path C:\Windows\System32\DriverStore\FileRepository\ntprint.inf_amd64_ec1e73781eaf7fda\Amd64\mxdwdrv.dll Microsoft XPS Document Writer Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft XPS Document Writer v4 (v6.03) Driver Path C:\Windows\System32\DriverStore\FileRepository\ntprint.inf_amd64_ec1e73781eaf7fda\Amd64\mxdwdrv.dll OneNote Printer Port Microsoft.Office.OneNote_16001.12026.20112.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-4153435117-4050887545-4204161700-1001 Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 300 * 300 dpi Color Status Unknown Driver Driver Name Microsoft Software Printer Driver (v6.03) Driver Path C:\Windows\System32\DriverStore\FileRepository\ntprint.inf_amd64_ec1e73781eaf7fda\Amd64\mxdwdrv.dll Network You are connected to the internet Connected through Realtek 8821AE Wireless LAN 802.11ac PCI-E NIC IP Address 192.168.1.142 Subnet mask 255.255.255.0 Gateway server 192.168.1.254 Preferred DNS server 192.168.1.254 DHCP Enabled DHCP server 192.168.1.254 External IP Address 71.132.239.101 Adapter Type IEEE 802.11 wireless NetBIOS over TCP/IP Enabled via DHCP NETBIOS Node Type Hybrid node Link Speed 0 Bps Computer Name NetBIOS Name DESKTOP-AD3GSKK DNS Name DESKTOP-AD3GSKK Membership Part of workgroup Workgroup WORKGROUP Remote Desktop Disabled Console State Active Domain DESKTOP-AD3GSKK WinInet Info LAN Connection Local system uses a local area network to connect to the Internet Local system has RAS to connect to the Internet Wi-Fi Info Using native Wi-Fi API version 2 Available access points count 8 Wi-Fi () SSID Frequency 2432000 kHz Channel Number 5 Name No name Signal Strength/Quality 100 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (ATT2f9T7K5) SSID ATT2f9T7K5 Frequency 2412000 kHz Channel Number 1 Name ATT2f9T7K5 Signal Strength/Quality 25 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (ATT6zWN8Xi) SSID ATT6zWN8Xi Frequency 5200000 kHz Channel Number 40 Name ATT6zWN8Xi Signal Strength/Quality 100 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags Currently Connected to this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (ATT6zWN8Xi_EXT) SSID ATT6zWN8Xi_EXT Frequency 2412000 kHz Channel Number 1 Name ATT6zWN8Xi_EXT Signal Strength/Quality 100 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (ATTGQhtPtA) SSID ATTGQhtPtA Frequency 2412000 kHz Channel Number 1 Name ATTGQhtPtA Signal Strength/Quality 55 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (Brown2) SSID Brown2 Frequency 2432000 kHz Channel Number 5 Name Brown2 Signal Strength/Quality 25 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (Pvt.WiFiRanger_Sky4LTE.5615) SSID Pvt.WiFiRanger_Sky4LTE.5615 Frequency 2412000 kHz Channel Number 1 Name Pvt.WiFiRanger_Sky4LTE.5615 Signal Strength/Quality 95 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (Sale500jMaeR3A) SSID Sale500jMaeR3A Frequency 2462000 kHz Channel Number 11 Name Sale500jMaeR3A Signal Strength/Quality 35 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK WinHTTPInfo WinHTTPSessionProxyType No proxy Session Proxy Session Proxy Bypass Connect Retries 5 Connect Timeout (ms) 60,000 HTTP Version HTTP 1.1 Max Connects Per 1.0 Servers INFINITE Max Connects Per Servers INFINITE Max HTTP automatic redirects 10 Max HTTP status continue 10 Send Timeout (ms) 30,000 IEProxy Auto Detect Yes IEProxy Auto Config IEProxy IEProxy Bypass Default Proxy Config Access Type No proxy Default Config Proxy Default Config Proxy Bypass Sharing and Discovery Network Discovery Disabled File and Printer Sharing Disabled File and printer sharing service Enabled Simple File Sharing Enabled Administrative Shares Enabled Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Adapters List Enabled Bluetooth Device (Personal Area Network) Connection Name Bluetooth Network Connection DHCP enabled Yes MAC Address 54-27-1E-D6-EB-CE Realtek 8821AE Wireless LAN 802.11ac PCI-E NIC Connection-specific DNS Suffix attlocal.net Connection Name Wi-Fi NetBIOS over TCPIP Yes DHCP enabled Yes MAC Address 54-27-1E-D6-EB-CF IP Address 192.168.1.142 Subnet mask 255.255.255.0 Gateway server 192.168.1.254 DHCP 192.168.1.254 DNS Server 192.168.1.254 Realtek PCIe GbE Family Controller Connection Name Ethernet DHCP enabled Yes MAC Address 38-2C-4A-A2-90-25 Network Shares No network shares Current TCP Connections C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (7080) Local 192.168.1.142:50079 ESTABLISHED Remote 52.242.211.89:443 (Querying... ) (HTTPS) C:\Program Files\Mozilla Firefox\firefox.exe (3008) Local 127.0.0.1:50132 ESTABLISHED Remote 127.0.0.1:50133 (Querying... ) Local 127.0.0.1:50133 ESTABLISHED Remote 127.0.0.1:50132 (Querying... ) C:\Program Files\Mozilla Firefox\firefox.exe (5952) Local 127.0.0.1:50127 ESTABLISHED Remote 127.0.0.1:50128 (Querying... ) Local 127.0.0.1:50128 ESTABLISHED Remote 127.0.0.1:50127 (Querying... ) Local 192.168.1.142:50185 ESTABLISHED Remote 52.10.189.118:443 (Querying... ) (HTTPS) Local 192.168.1.142:51353 ESTABLISHED Remote 13.249.110.97:443 (Querying... ) (HTTPS) Local 192.168.1.142:51397 ESTABLISHED Remote 18.219.31.212:443 (Querying... ) (HTTPS) Local 192.168.1.142:51402 ESTABLISHED Remote 151.101.2.137:443 (Querying... ) (HTTPS) Local 192.168.1.142:51408 ESTABLISHED Remote 18.219.31.212:443 (Querying... ) (HTTPS) Local 192.168.1.142:51410 ESTABLISHED Remote 104.36.115.111:443 (Querying... ) (HTTPS) Local 192.168.1.142:51411 ESTABLISHED Remote 34.98.64.218:443 (Querying... ) (HTTPS) Local 192.168.1.142:51420 ESTABLISHED Remote 76.223.111.131:443 (Querying... ) (HTTPS) Local 192.168.1.142:51520 ESTABLISHED Remote 142.250.9.155:443 (Querying... ) (HTTPS) Local 192.168.1.142:51710 ESTABLISHED Remote 35.186.241.3:443 (Querying... ) (HTTPS) Local 192.168.1.142:51726 ESTABLISHED Remote 151.101.2.133:443 (Querying... ) (HTTPS) Local 192.168.1.142:51731 ESTABLISHED Remote 23.199.181.152:443 (Querying... ) (HTTPS) Local 192.168.1.142:51732 ESTABLISHED Remote 54.230.255.80:443 (Querying... ) (HTTPS) Local 192.168.1.142:51740 ESTABLISHED Remote 54.236.99.230:443 (Querying... ) (HTTPS) Local 192.168.1.142:51745 ESTABLISHED Remote 54.165.90.4:443 (Querying... ) (HTTPS) Local 192.168.1.142:51746 ESTABLISHED Remote 54.204.74.56:443 (Querying... ) (HTTPS) Local 192.168.1.142:51758 ESTABLISHED Remote 151.101.206.132:443 (Querying... ) (HTTPS) Local 192.168.1.142:51762 ESTABLISHED Remote 199.232.194.133:443 (Querying... ) (HTTPS) Local 192.168.1.142:51769 ESTABLISHED Remote 173.194.219.156:443 (Querying... ) (HTTPS) Local 192.168.1.142:51770 ESTABLISHED Remote 151.101.130.137:443 (Querying... ) (HTTPS) Local 192.168.1.142:51775 ESTABLISHED Remote 54.145.80.111:443 (Querying... ) (HTTPS) Local 192.168.1.142:51779 ESTABLISHED Remote 192.35.249.120:443 (Querying... ) (HTTPS) Local 192.168.1.142:51781 ESTABLISHED Remote 136.144.59.88:443 (Querying... ) (HTTPS) Local 192.168.1.142:51782 ESTABLISHED Remote 54.230.252.145:80 (Querying... ) (HTTP) Local 192.168.1.142:51785 ESTABLISHED Remote 52.201.141.91:443 (Querying... ) (HTTPS) Local 192.168.1.142:51786 ESTABLISHED Remote 104.36.113.35:443 (Querying... ) (HTTPS) Local 192.168.1.142:51787 ESTABLISHED Remote 104.36.113.35:443 (Querying... ) (HTTPS) Local 192.168.1.142:51789 ESTABLISHED Remote 54.208.15.78:443 (Querying... ) (HTTPS) Local 192.168.1.142:51791 ESTABLISHED Remote 35.211.99.204:443 (Querying... ) (HTTPS) Local 192.168.1.142:51794 ESTABLISHED Remote 74.125.21.155:443 (Querying... ) (HTTPS) Local 192.168.1.142:51800 ESTABLISHED Remote 3.217.174.117:443 (Querying... ) (HTTPS) Local 192.168.1.142:51802 ESTABLISHED Remote 54.230.252.145:80 (Querying... ) (HTTP) Local 192.168.1.142:51806 ESTABLISHED Remote 23.220.188.238:443 (Querying... ) (HTTPS) Local 192.168.1.142:51807 ESTABLISHED Remote 13.249.125.110:443 (Querying... ) (HTTPS) Local 192.168.1.142:51812 ESTABLISHED Remote 3.229.162.116:443 (Querying... ) (HTTPS) Local 192.168.1.142:51828 ESTABLISHED Remote 13.226.93.35:443 (Querying... ) (HTTPS) Local 192.168.1.142:51829 ESTABLISHED Remote 192.35.249.124:443 (Querying... ) (HTTPS) Local 192.168.1.142:51831 ESTABLISHED Remote 150.136.156.92:443 (Querying... ) (HTTPS) Local 192.168.1.142:51832 ESTABLISHED Remote 150.136.156.92:443 (Querying... ) (HTTPS) Local 192.168.1.142:51833 ESTABLISHED Remote 192.35.249.124:443 (Querying... ) (HTTPS) Local 192.168.1.142:51834 ESTABLISHED Remote 100.24.81.70:443 (Querying... ) (HTTPS) Local 192.168.1.142:51838 ESTABLISHED Remote 193.122.174.27:443 (Querying... ) (HTTPS) Local 192.168.1.142:51839 ESTABLISHED Remote 193.122.174.27:443 (Querying... ) (HTTPS) Local 192.168.1.142:51860 ESTABLISHED Remote 199.127.204.110:443 (Querying... ) (HTTPS) Local 192.168.1.142:51861 ESTABLISHED Remote 104.95.203.149:443 (Querying... ) (HTTPS) Local 192.168.1.142:51865 ESTABLISHED Remote 199.127.207.191:443 (Querying... ) (HTTPS) Local 192.168.1.142:51868 ESTABLISHED Remote 54.226.184.31:443 (Querying... ) (HTTPS) Local 192.168.1.142:51884 ESTABLISHED Remote 52.54.72.143:443 (Querying... ) (HTTPS) Local 192.168.1.142:51885 ESTABLISHED Remote 34.236.80.166:443 (Querying... ) (HTTPS) Local 192.168.1.142:51887 ESTABLISHED Remote 54.230.227.43:443 (Querying... ) (HTTPS) Local 192.168.1.142:51888 ESTABLISHED Remote 13.249.125.41:443 (Querying... ) (HTTPS) Local 192.168.1.142:51890 ESTABLISHED Remote 88.214.206.73:443 (Querying... ) (HTTPS) Local 192.168.1.142:51894 ESTABLISHED Remote 204.154.111.131:443 (Querying... ) (HTTPS) Local 192.168.1.142:51895 ESTABLISHED Remote 204.154.111.131:443 (Querying... ) (HTTPS) Local 192.168.1.142:51896 ESTABLISHED Remote 204.154.111.145:443 (Querying... ) (HTTPS) Local 192.168.1.142:51897 ESTABLISHED Remote 204.154.111.145:443 (Querying... ) (HTTPS) Local 192.168.1.142:51899 ESTABLISHED Remote 23.46.245.33:443 (Querying... ) (HTTPS) Local 192.168.1.142:51901 ESTABLISHED Remote 18.219.148.83:443 (Querying... ) (HTTPS) C:\Program Files\Mozilla Firefox\firefox.exe (8732) Local 127.0.0.1:51660 ESTABLISHED Remote 127.0.0.1:51661 (Querying... ) Local 127.0.0.1:51661 ESTABLISHED Remote 127.0.0.1:51660 (Querying... ) C:\Program Files\Mozilla Firefox\firefox.exe (880) Local 127.0.0.1:50197 ESTABLISHED Remote 127.0.0.1:50198 (Querying... ) Local 127.0.0.1:50198 ESTABLISHED Remote 127.0.0.1:50197 (Querying... ) C:\Program Files\Mozilla Firefox\firefox.exe (9072) Local 127.0.0.1:50135 ESTABLISHED Remote 127.0.0.1:50134 (Querying... ) Local 127.0.0.1:50134 ESTABLISHED Remote 127.0.0.1:50135 (Querying... ) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\LocalBridge.exe (10244) Local 192.168.1.142:51169 ESTABLISHED Remote 52.114.32.7:443 (Querying... ) (HTTPS) C:\Users\clift\AppData\Local\Microsoft\OneDrive\OneDrive.exe (9356) Local 192.168.1.142:49977 ESTABLISHED Remote 52.242.211.89:443 (Querying... ) (HTTPS) C:\Windows\System32\smartscreen.exe (8404) Local 192.168.1.142:51842 ESTABLISHED Remote 72.21.91.29:80 (Querying... ) (HTTP) C:\Windows\System32\WWAHost.exe (9280) Local 192.168.1.142:50870 CLOSE-WAIT Remote 72.21.91.29:80 (Querying... ) (HTTP) lsass.exe (788) Local 0.0.0.0:49664 LISTEN MsMpEng.exe (3724) Local 192.168.1.142:51844 ESTABLISHED Remote 40.76.203.101:443 (Querying... ) (HTTPS) services.exe (768) Local 0.0.0.0:49669 LISTEN spoolsv.exe (3652) Local 0.0.0.0:49668 LISTEN svchost.exe (1120) Local 0.0.0.0:49666 LISTEN svchost.exe (2300) Local 0.0.0.0:49667 LISTEN svchost.exe (3340) Local 192.168.1.142:49893 ESTABLISHED Remote 52.230.222.68:443 (Querying... ) (HTTPS) svchost.exe (508) Local 0.0.0.0:135 (DCE) LISTEN svchost.exe (5196) Local 0.0.0.0:5040 LISTEN svchost.exe (8188) Local 0.0.0.0:7680 LISTEN System Process Local 192.168.1.142:51653 TIME-WAIT Remote 65.55.44.109:443 (Querying... ) (HTTPS) Local 192.168.1.142:51678 TIME-WAIT Remote 20.190.9.86:443 (Querying... ) (HTTPS) Local 192.168.1.142:51687 TIME-WAIT Remote 18.225.22.38:443 (Querying... ) (HTTPS) Local 192.168.1.142:51693 TIME-WAIT Remote 65.55.44.109:443 (Querying... ) (HTTPS) Local 192.168.1.142:51886 TIME-WAIT Remote 3.218.194.163:443 (Querying... ) (HTTPS) Local 192.168.1.142:51780 TIME-WAIT Remote 18.219.148.83:443 (Querying... ) (HTTPS) Local 192.168.1.142:51694 TIME-WAIT Remote 65.55.44.109:443 (Querying... ) (HTTPS) Local 192.168.1.142:51695 TIME-WAIT Remote 65.55.44.109:443 (Querying... ) (HTTPS) Local 192.168.1.142:51704 TIME-WAIT Remote 104.21.5.220:80 (Querying... ) (HTTP) Local 192.168.1.142:51468 TIME-WAIT Remote 132.226.41.106:443 (Querying... ) (HTTPS) Local 192.168.1.142:51492 TIME-WAIT Remote 192.35.249.124:443 (Querying... ) (HTTPS) Local 192.168.1.142:51539 TIME-WAIT Remote 54.230.227.83:443 (Querying... ) (HTTPS) Local 192.168.1.142:51543 TIME-WAIT Remote 65.55.44.109:443 (Querying... ) (HTTPS) Local 192.168.1.142:51498 TIME-WAIT Remote 150.136.156.92:443 (Querying... ) (HTTPS) Local 192.168.1.142:51500 TIME-WAIT Remote 52.54.24.15:443 (Querying... ) (HTTPS) Local 192.168.1.142:51875 TIME-WAIT Remote 199.127.204.110:443 (Querying... ) (HTTPS) Local 192.168.1.142:51874 TIME-WAIT Remote 199.127.204.110:443 (Querying... ) (HTTPS) Local 192.168.1.142:51501 TIME-WAIT Remote 192.35.249.123:443 (Querying... ) (HTTPS) Local 192.168.1.142:51508 TIME-WAIT Remote 132.226.41.106:443 (Querying... ) (HTTPS) Local 192.168.1.142:51845 TIME-WAIT Remote 3.91.171.249:443 (Querying... ) (HTTPS) Local 192.168.1.142:51705 TIME-WAIT Remote 104.21.5.220:80 (Querying... ) (HTTP) Local 192.168.1.142:51497 TIME-WAIT Remote 150.136.156.92:443 (Querying... ) (HTTPS) Local 192.168.1.142:51798 TIME-WAIT Remote 3.91.171.249:443 (Querying... ) (HTTPS) Local 192.168.1.142:51797 TIME-WAIT Remote 3.91.171.249:443 (Querying... ) (HTTPS) Local 192.168.1.142:51544 TIME-WAIT Remote 65.55.44.109:443 (Querying... ) (HTTPS) Local 192.168.1.142:51756 TIME-WAIT Remote 8.43.72.42:443 (Querying... ) (HTTPS) System Process Local 0.0.0.0:445 (Windows shares) LISTEN Local 0.0.0.0:2869 LISTEN Local 192.168.1.142:139 (NetBIOS session service) LISTEN wininit.exe (648) Local 0.0.0.0:49665 LISTEN Generated with Speccy v1.32.774